Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ========================== AUTO DUMP ANALYZER ==========================
- Auto Dump Analyzer
- Version: 0.9
- Time to analyze file(s): 00 hours and 00 minutes and 57 seconds
- ================================= CPU ==================================
- COUNT: 10
- MHZ: 3394
- VENDOR: AuthenticAMD
- FAMILY: 17
- MODEL: 1
- STEPPING: 1
- ================================== OS ==================================
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- BUILD_VERSION: 10.0.17763.615 (WinBuild.160101.0800)
- BUILD: 17763
- SERVICEPACK: 615
- PLATFORM_TYPE: x64
- NAME: Windows 10
- EDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- BUILD_TIMESTAMP: 2020-05-15 12:13:35
- BUILDDATESTAMP: 160101.0800
- BUILDLAB: WinBuild
- BUILDOSVER: 10.0.17763.615
- =============================== DEBUGGER ===============================
- Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- =============================== COMMENTS ===============================
- * Information gathered from different dump files may be different. If
- Windows updates between two dump files, two or more OS versions may
- be shown above.
- * Additional BIOS information (including RAM information) was unreadable
- from the first dump file. This can be caused by an outdated BIOS.
- ========================================================================
- ==================== Dump File: 071219-14156-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 17763 MP (16 procs) Free x64
- Kernel base = 0xfffff803`57203000 PsLoadedModuleList = 0xfffff803`5761e670
- Debug session time: Fri Jul 12 10:12:28.671 2019 (UTC - 4:00)
- System Uptime: 0 days 14:36:16.360
- BugCheck 50, {ffffd484a626f2a0, 0, fffff803572b58bc, 2}
- Could not read faulting driver name
- Probably caused by : memory_corruption
- Followup: memory_corruption
- PAGE_FAULT_IN_NONPAGED_AREA (50)
- Invalid system memory was referenced. This cannot be protected by try-except.
- Typically the address is just plain bad or it is pointing at freed memory.
- Arguments:
- Arg1: ffffd484a626f2a0, memory referenced.
- Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
- Arg3: fffff803572b58bc, If non-zero, the instruction address which referenced the bad memory
- address.
- Arg4: 0000000000000002, (reserved)
- Debugging Details:
- Could not read faulting driver name
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- DUMP_FILE_ATTRIBUTES: 0x8
- Kernel Generated Triage Dump
- READ_ADDRESS: fffff80357745390: Unable to get MiVisibleState
- ffffd484a626f2a0
- FAULTING_IP:
- nt!KeSetPriorityBoost+1c
- fffff803`572b58bc 48398120024000 cmp qword ptr [rcx+400220h],rax
- MM_INTERNAL_CODE: 2
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: AV
- PROCESS_NAME: csrss.exe
- CURRENT_IRQL: 0
- TRAP_FRAME: ffffc580e0c99300 -- (.trap 0xffffc580e0c99300)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=fffff803577609c0 rbx=0000000000000000 rcx=ffffd484a5e6f080
- rdx=000000000000000f rsi=0000000000000000 rdi=0000000000000000
- rip=fffff803572b58bc rsp=ffffc580e0c99490 rbp=ffffc580e0c994c9
- r8=0000000000000004 r9=0000000000000000 r10=ffffd484b09e2080
- r11=ffff6fffdce00000 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na po nc
- nt!KeSetPriorityBoost+0x1c:
- fffff803`572b58bc 48398120024000 cmp qword ptr [rcx+400220h],rax ds:ffffd484`a626f2a0=????????????????
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff8035745a731 to fffff803573b6f50
- STACK_TEXT:
- ffffc580`e0c99018 fffff803`5745a731 : 00000000`00000050 ffffd484`a626f2a0 00000000`00000000 ffffc580`e0c99300 : nt!KeBugCheckEx
- ffffc580`e0c99020 fffff803`572cb2e7 : ffff8001`923cc000 00000000`00000000 00000000`00000000 ffffd484`a626f2a0 : nt!MiSystemFault+0x12ffa1
- ffffc580`e0c99160 fffff803`573c4ac9 : ffffd484`b09e2180 00000000`00000002 00000000`00000002 fffff803`572dcfa4 : nt!MmAccessFault+0x327
- ffffc580`e0c99300 fffff803`572b58bc : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiPageFault+0x349
- ffffc580`e0c99490 fffff803`572b6371 : 00000000`00000000 fffff803`0000000f ffffd484`b09e2080 00000000`00000000 : nt!KeSetPriorityBoost+0x1c
- ffffc580`e0c99530 fffff803`572d7725 : 00000000`03224002 ffffd484`00000002 ffffd484`b75cfdf0 00000000`00000000 : nt!ExpApplyPriorityBoost+0x371
- ffffc580`e0c995d0 fffff803`572d698f : fffff803`57c79a02 00000000`00000001 ffffd484`00000000 ffffc580`e0c99729 : nt!ExpAcquireResourceExclusiveLite+0x335
- ffffc580`e0c996a0 ffffc4ca`933a413d : ffffd484`a9ccc9c0 00000000`00989680 00000000`00000001 00000000`00000000 : nt!ExEnterCriticalRegionAndAcquireResourceExclusive+0x3f
- ffffc580`e0c996e0 ffffc4ca`931b840c : ffffc580`e0c99844 ffffc580`e0c998f0 ffffc4ca`9330c400 ffff563d`981e7f0c : win32kbase!EnterCrit+0x8d
- ffffc580`e0c997c0 ffffc4ca`930b950b : 00000000`00000001 00000000`00000001 ffffc4ca`9330c400 00000000`00000004 : win32kfull!EnterLeaveCrit::EnterLeaveCrit+0x1c
- ffffc580`e0c997f0 ffffc4ca`934281d3 : ffffd484`b09e2080 ffffd484`b09e2080 00000000`00000000 00000000`00000005 : win32kfull!RawInputThread+0xcdb
- ffffc580`e0c99a50 ffffc4ca`9303da9f : ffffd484`b09e2080 ffffc580`e0c99b80 00000000`00000000 ffff6fff`dce00000 : win32kbase!xxxCreateSystemThreads+0x93
- ffffc580`e0c99ad0 fffff803`573c8208 : ffffd484`b09e2080 00000000`00000005 0000021b`d2804650 00000000`000033a4 : win32kfull!NtUserCallNoParam+0x6f
- ffffc580`e0c99b00 00007fff`5bbb1144 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
- 000000fb`8007fba8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007fff`5bbb1144
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff803572b51b3-fffff803572b51b7 5 bytes - nt!MiDeleteKernelStack+a3
- [ d0 be 7d fb f6:c0 99 33 67 ce ]
- fffff803572b51c0-fffff803572b51c1 2 bytes - nt!MiDeleteKernelStack+b0 (+0x0d)
- [ 80 f6:00 ce ]
- fffff803572b51d1-fffff803572b51d5 5 bytes - nt!MiDeleteKernelStack+c1 (+0x11)
- [ d7 be 7d fb f6:c7 99 33 67 ce ]
- fffff803572b51de-fffff803572b51df 2 bytes - nt!MiDeleteKernelStack+ce (+0x0d)
- [ 80 fa:00 c0 ]
- fffff803572b524b-fffff803572b524c 2 bytes - nt!MiDeleteKernelStack+13b (+0x6d)
- [ 80 fa:00 c0 ]
- fffff803572b535b-fffff803572b535c 2 bytes - nt!MiDeleteKernelStack+24b (+0x110)
- [ 80 fa:00 c0 ]
- fffff803572b53f7-fffff803572b53fb 5 bytes - nt!MiDeleteValidSystemPage+37 (+0x9c)
- [ d0 be 7d fb f6:c0 99 33 67 ce ]
- fffff803572b5404-fffff803572b5408 5 bytes - nt!MiDeleteValidSystemPage+44 (+0x0d)
- [ d7 be 7d fb f6:c7 99 33 67 ce ]
- fffff803572b5463-fffff803572b5464 2 bytes - nt!MiDeleteValidSystemPage+a3 (+0x5f)
- [ 80 fa:00 c0 ]
- fffff803572b54f0-fffff803572b54f1 2 bytes - nt!MiDeleteValidSystemPage+130 (+0x8d)
- [ 80 fa:00 c0 ]
- fffff803572b5584-fffff803572b5588 5 bytes - nt!MiDeleteValidSystemPage+1c4 (+0x94)
- [ d0 be 7d fb f6:c0 99 33 67 ce ]
- fffff803572b5697-fffff803572b569b 5 bytes - nt!MiDeleteValidSystemPage+2d7 (+0x113)
- [ d7 be 7d fb f6:c7 99 33 67 ce ]
- fffff803572b56e5-fffff803572b56e6 2 bytes - nt!MiDeleteValidSystemPage+325 (+0x4e)
- [ 80 fa:00 c0 ]
- fffff803572b58c1 - nt!KeSetPriorityBoost+21 (+0x1dc)
- [ 00:40 ]
- 45 errors : !nt (fffff803572b51b3-fffff803572b58c1)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2019-07-12T14:12:28.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ========================================================================
- ===================== 3RD PARTY DRIVER QUICK LIST ======================
- ========================================================================
- Jul 26 2008 - OpenHardwareMonitorLib.sys - Open Hardware Monitor driver http://openhardwaremonitor.org/
- Aug 22 2012 - AsIO.sys - ASUS Input Output driver http://www.asus.com/
- Sep 12 2012 - btwsecfl.sys - Broadcom Bluetooth IT Manager Filter driver (Broadcom Corporation)
- Feb 28 2013 - npf.sys - NetGroup Packet Filter driver, a component of WinPCap by Riverbed
- Mar 14 2016 - amdgpio3.sys - AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
- Jun 15 2016 - rzendpt.sys - Razer RzEndPt driver https://www.razer.com/
- Jun 15 2016 - rzudd.sys - Razer Rzudd Engine Driver https://www.razer.com/
- Jun 22 2016 - btwusb.sys - Bluetooth USB Device driver (Broadcom Corporation)
- Jul 30 2016 - e1r65x64.sys - Intel(R) Gigabit Adapter NDIS 6.x driver https://downloadcenter.intel.com/
- Nov 28 2016 - CMUSBDAC.sys - C-Media USB Audio Class 1.0 and 2.0 DAC Device Driver https://www.cmedia.com.tw/
- Mar 14 2017 - RTKVHD64.sys - Realtek Audio Driver system driver https://www.realtek.com/en/
- Mar 27 2017 - AMDRyzenMasterDriver.sys - AMD Ryzen Master driver
- Jul 20 2017 - SteamStreamingSpeakers.sys - Steam Streaming Speakers driver (Valve Corporation)
- Jul 28 2017 - SteamStreamingMicrophone.sys - Steam Streaming Microphone driver (Valve Corporation)
- Sep 15 2017 - iocbios2.sys - !!! Overclocking Software - Intel(R) Extreme Tuning Utility Performance Tuning driver
- Aug 16 2018 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Sep 10 2018 - amdpsp.sys - Advanced Micro Devices, Inc http://support.amd.com/
- Sep 14 2018 - aow_drv_x64_ev.sys - Tencent Gaming Buddy driver
- Oct 11 2018 - AMDPCIDev.sys - Advanced Micro Devices PCI Device driver
- Nov 12 2018 - amdgpio2.sys - AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
- Dec 11 2018 - cpuz148_x64.sys - CPUID driver
- Jan 21 2019 - FACEIT.sys - FACEIT Client https://www.faceit.com/
- Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio Driver http://www.nvidia.com/
- Mar 19 2019 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
- Mar 29 2019 - mbamswissarmy.sys - MalwareBytes Anti-Malware system driver https://www.malwarebytes.com/
- Jul 03 2019 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- ========================================================================
- ========================== 3RD PARTY DRIVERS ===========================
- ========================================================================
- Image name: OpenHardwareMonitorLib.sys
- Search : https://www.google.com/search?q=OpenHardwareMonitorLib.sys
- ADA Info : Open Hardware Monitor driver http://openhardwaremonitor.org/
- Timestamp : Sat Jul 26 2008
- Image name: AsIO.sys
- Search : https://www.google.com/search?q=AsIO.sys
- ADA Info : ASUS Input Output driver http://www.asus.com/
- Timestamp : Wed Aug 22 2012
- Image name: btwsecfl.sys
- Search : https://www.google.com/search?q=btwsecfl.sys
- ADA Info : Broadcom Bluetooth IT Manager Filter driver (Broadcom Corporation)
- Timestamp : Wed Sep 12 2012
- Image name: npf.sys
- Search : https://www.google.com/search?q=npf.sys
- ADA Info : NetGroup Packet Filter driver, a component of WinPCap by Riverbed
- Timestamp : Thu Feb 28 2013
- Image name: amdgpio3.sys
- Search : https://www.google.com/search?q=amdgpio3.sys
- ADA Info : AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
- Timestamp : Mon Mar 14 2016
- Image name: rzendpt.sys
- Search : https://www.google.com/search?q=rzendpt.sys
- ADA Info : Razer RzEndPt driver https://www.razer.com/
- Timestamp : Wed Jun 15 2016
- Image name: rzudd.sys
- Search : https://www.google.com/search?q=rzudd.sys
- ADA Info : Razer Rzudd Engine Driver https://www.razer.com/
- Timestamp : Wed Jun 15 2016
- Image name: btwusb.sys
- Search : https://www.google.com/search?q=btwusb.sys
- ADA Info : Bluetooth USB Device driver (Broadcom Corporation)
- Timestamp : Wed Jun 22 2016
- Image name: e1r65x64.sys
- Search : https://www.google.com/search?q=e1r65x64.sys
- ADA Info : Intel(R) Gigabit Adapter NDIS 6.x driver https://downloadcenter.intel.com/
- Timestamp : Sat Jul 30 2016
- Image name: CMUSBDAC.sys
- Search : https://www.google.com/search?q=CMUSBDAC.sys
- ADA Info : C-Media USB Audio Class 1.0 and 2.0 DAC Device Driver https://www.cmedia.com.tw/
- Timestamp : Mon Nov 28 2016
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio Driver system driver https://www.realtek.com/en/
- Timestamp : Tue Mar 14 2017
- Image name: AMDRyzenMasterDriver.sys
- Search : https://www.google.com/search?q=AMDRyzenMasterDriver.sys
- ADA Info : AMD Ryzen Master driver
- Timestamp : Mon Mar 27 2017
- Image name: SteamStreamingSpeakers.sys
- Search : https://www.google.com/search?q=SteamStreamingSpeakers.sys
- ADA Info : Steam Streaming Speakers driver (Valve Corporation)
- Timestamp : Thu Jul 20 2017
- Image name: SteamStreamingMicrophone.sys
- Search : https://www.google.com/search?q=SteamStreamingMicrophone.sys
- ADA Info : Steam Streaming Microphone driver (Valve Corporation)
- Timestamp : Fri Jul 28 2017
- Image name: iocbios2.sys
- Search : https://www.google.com/search?q=iocbios2.sys
- ADA Info : !!! Overclocking Software - Intel(R) Extreme Tuning Utility Performance Tuning driver
- Timestamp : Fri Sep 15 2017
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Thu Aug 16 2018
- Image name: amdpsp.sys
- Search : https://www.google.com/search?q=amdpsp.sys
- ADA Info : Advanced Micro Devices, Inc http://support.amd.com/
- Timestamp : Mon Sep 10 2018
- Image name: aow_drv_x64_ev.sys
- Search : https://www.google.com/search?q=aow_drv_x64_ev.sys
- ADA Info : Tencent Gaming Buddy driver
- Timestamp : Fri Sep 14 2018
- Image name: AMDPCIDev.sys
- Search : https://www.google.com/search?q=AMDPCIDev.sys
- ADA Info : Advanced Micro Devices PCI Device driver
- Timestamp : Thu Oct 11 2018
- Image name: amdgpio2.sys
- Search : https://www.google.com/search?q=amdgpio2.sys
- ADA Info : AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
- Timestamp : Mon Nov 12 2018
- Image name: cpuz148_x64.sys
- Search : https://www.google.com/search?q=cpuz148_x64.sys
- ADA Info : CPUID driver
- Timestamp : Tue Dec 11 2018
- Image name: FACEIT.sys
- Search : https://www.google.com/search?q=FACEIT.sys
- ADA Info : FACEIT Client https://www.faceit.com/
- Timestamp : Mon Jan 21 2019
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio Driver http://www.nvidia.com/
- Timestamp : Thu Mar 14 2019
- Image name: nvhda64v.sys
- Search : https://www.google.com/search?q=nvhda64v.sys
- ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
- Timestamp : Tue Mar 19 2019
- Image name: mbamswissarmy.sys
- Search : https://www.google.com/search?q=mbamswissarmy.sys
- ADA Info : MalwareBytes Anti-Malware system driver https://www.malwarebytes.com/
- Timestamp : Fri Mar 29 2019
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Wed Jul 3 2019
- If any of the above drivers are from Microsoft then please let me know.
- I will have them moved to the Microsoft list on the next update.
- ========================================================================
- ========================== MICROSOFT DRIVERS ===========================
- ========================================================================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- amdppm.sys Processor Device Driver
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_storahci.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_storport.sys Provides disk access during crash dump file generation (Microsoft)
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kdcom.dll Kernel Debugger HW Extension DLL (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate.dll Media Center Update (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb10.sys Longhorn SMB Downlevel SubRdr (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msgpioclx.sys GPIO Class Extension Driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
- ndisuio.sys NDIS User mode I/O driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
- NDProxy.sys NDIS Proxy driver (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
- raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
- raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
- rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdpvideominiport.sys RDP Video Miniport driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- ucx01000.sys USB Controller Extension (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- umpass.sys Generic pass-through driver (Microsoft)
- usbaudio.sys USB Audio Class Driver (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- usbser.sys USB Serial driver (Microsoft)
- usbvideo.sys USB Video Class Driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface Driver
- winquic.sys QUIC Transport Protocol driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WSDPrint.sys Web Services Print Device driver (Microsoft)
- WSDScan.sys Web Service Based Scan Device driver (Microsoft)
- Unloaded modules:
- fffff803`56570000 fffff803`56581000 MSKSSRV.sys
- fffff803`56420000 fffff803`56430000 hiber_storpo
- fffff803`56430000 fffff803`5645e000 hiber_storah
- fffff803`56460000 fffff803`5647e000 hiber_dumpfv
- fffff803`563c0000 fffff803`563cc000 umpass.sys
- fffff803`599f0000 fffff803`59a01000 MSKSSRV.sys
- fffff803`602b0000 fffff803`602bc000 WdmCompanion
- fffff803`5ddf0000 fffff803`5de00000 dump_storpor
- fffff803`5b330000 fffff803`5b35e000 dump_storahc
- fffff803`5b1c0000 fffff803`5b1de000 dump_dumpfve
- fffff803`59320000 fffff803`5933c000 dam.sys
- fffff803`5b340000 fffff803`5b351000 WdBoot.sys
- fffff803`5b330000 fffff803`5b339000 MbamElam.sys
- fffff803`5ddf0000 fffff803`5de00000 hwpolicy.sys
- ========================================================================
- ============================== BIOS INFO ===============================
- ========================================================================
- sysinfo: could not find necessary interfaces.
- sysinfo: note that mssmbios.sys must be loaded (XPSP2+).
- ========================================================================
- ============================== IMAGE SCAN ==============================
- ========================================================================
- MZ at ffffc4ca`93000000, prot 00000040, type 01000000 - size 38b000
- Name: win32kfull.sys
- MZ at ffffc4ca`93390000, prot 00000040, type 01000000 - size 25c000
- Name: win32kbase.sys
- MZ at ffffc4ca`93640000, prot 00000040, type 01000000 - size 48000
- Name: cdd.dll
- MZ at ffffc4ca`938d0000, prot 00000040, type 01000000 - size 8b000
- Name: WIN32K.SYS
- MZ at fffff803`55f30000, prot 00000040, type 01000000 - size 4f000
- Name: srvnet.sys
- MZ at fffff803`55f80000, prot 00000040, type 01000000 - size 27000
- Name: ndu.exe
- MZ at fffff803`55fb0000, prot 00000040, type 01000000 - size 51000
- Name: mrxsmb10.exe
- MZ at fffff803`56100000, prot 00000040, type 01000000 - size 14000
- Name: tcpipreg.exe
- MZ at fffff803`56120000, prot 00000040, type 01000000 - size c5000
- Name: srv2.exe
- MZ at fffff803`561f0000, prot 00000040, type 01000000 - size 1c000
- Name: rassstp.exe
- MZ at fffff803`56210000, prot 00000040, type 01000000 - size 18000
- Name: ndproxy.exe
- MZ at fffff803`56230000, prot 00000040, type 01000000 - size 27000
- Name: AgileVpn.exe
- MZ at fffff803`56260000, prot 00000040, type 01000000 - size 21000
- Name: rasl2tp.exe
- MZ at fffff803`56290000, prot 00000040, type 01000000 - size 20000
- Name: raspptp.exe
- MZ at fffff803`562c0000, prot 00000040, type 01000000 - size 1c000
- Name: raspppoe.exe
- MZ at fffff803`562e0000, prot 00000040, type 01000000 - size f000
- Name: NDISTAPI.SYS
- MZ at fffff803`562f0000, prot 00000040, type 01000000 - size 3b000
- Name: ndiswan.exe
- MZ at fffff803`56330000, prot 00000040, type 01000000 - size d000
- Name: WSDPrint.exe
- MZ at fffff803`56340000, prot 00000040, type 01000000 - size d000
- Name: WSDScan.exe
- MZ at fffff803`563f0000, prot 00000040, type 01000000 - size 18000
- Name: ndisuio.exe
- MZ at fffff803`56410000, prot 00000040, type 01000000 - size d000
- Name: rdpvideominiport.exe
- MZ at fffff803`56490000, prot 00000040, type 01000000 - size 89000
- Name: mrxsmb.sys
- MZ at fffff803`56520000, prot 00000040, type 01000000 - size 46000
- Name: mrxsmb20.exe
- MZ at fffff803`56590000, prot 00000040, type 01000000 - size b000
- Name: umpass.exe
- MZ at fffff803`57203000, prot 00000040, type 01000000 - size a71000
- Name: ntoskrnl.exe
- MZ at fffff803`57c75000, prot 00000040, type 01000000 - size 9c000
- Name: HAL.dll
- MZ at fffff803`57e2d000, prot 00000040, type 01000000 - size 11000
- Name: WerLiveKernelApi.dll
- MZ at fffff803`57e6b000, prot 00000040, type 01000000 - size 62000
- Name: msrpc.sys
- MZ at fffff803`57ece000, prot 00000040, type 01000000 - size 27000
- Name: ntostmhost.dll
- MZ at fffff803`57ef6000, prot 00000040, type 01000000 - size 6a000
- Name: CLFS.SYS
- MZ at fffff803`57f61000, prot 00000040, type 01000000 - size 18000
- Name: PSHED.dll
- MZ at fffff803`58102000, prot 00000040, type 01000000 - size e000
- Name: cmimcext.dll
- MZ at fffff803`58111000, prot 00000040, type 01000000 - size c000
- Name: ntosext.dll
- MZ at fffff803`5811e000, prot 00000040, type 01000000 - size d3000
- Name: CI.dll
- MZ at fffff803`581f2000, prot 00000040, type 01000000 - size b7000
- Name: cng.sys
- MZ at fffff803`59000000, prot 00000040, type 01000000 - size 11000
- Name: msfs.exe
- MZ at fffff803`59020000, prot 00000040, type 01000000 - size 27000
- Name: tdx.exe
- MZ at fffff803`59050000, prot 00000040, type 01000000 - size 10000
- Name: TDI.SYS
- MZ at fffff803`59070000, prot 00000040, type 01000000 - size 51000
- Name: netbt.exe
- MZ at fffff803`590d0000, prot 00000040, type 01000000 - size 13000
- Name: afunix.dll
- MZ at fffff803`590f0000, prot 00000040, type 01000000 - size a6000
- Name: afd.exe
- MZ at fffff803`591a0000, prot 00000040, type 01000000 - size 1a000
- Name: vwififlt.SYS
- MZ at fffff803`591c0000, prot 00000040, type 01000000 - size 2b000
- Name: pacer.exe
- MZ at fffff803`591f0000, prot 00000040, type 01000000 - size 14000
- Name: netbios.exe
- MZ at fffff803`59210000, prot 00000040, type 01000000 - size 7a000
- Name: rdbss.sys
- MZ at fffff803`59290000, prot 00000040, type 01000000 - size 12000
- Name: nsiproxy.exe
- MZ at fffff803`592b0000, prot 00000040, type 01000000 - size d000
- Name: NpSvcTrig.exe
- MZ at fffff803`592c0000, prot 00000040, type 01000000 - size 10000
- Name: mssmbios.exe
- MZ at fffff803`592e0000, prot 00000040, type 01000000 - size a000
- Name: gpuenergydrv.exe
- MZ at fffff803`592f0000, prot 00000040, type 01000000 - size 2c000
- Name: dfsc.exe
- MZ at fffff803`59340000, prot 00000040, type 01000000 - size 14000
- Name: bam.exe
- MZ at fffff803`59370000, prot 00000040, type 01000000 - size 4e000
- Name: ahcache.exe
- MZ at fffff803`593c0000, prot 00000040, type 01000000 - size 84000
- Name: Vid.exe
- MZ at fffff803`59450000, prot 00000040, type 01000000 - size 1e000
- Name: winhvr.sys
- MZ at fffff803`59470000, prot 00000040, type 01000000 - size 11000
- Name: CompositeBus.exe
- MZ at fffff803`59490000, prot 00000040, type 01000000 - size d000
- Name: kdnic.sys
- MZ at fffff803`594a0000, prot 00000040, type 01000000 - size 15000
- Name: UmBus.exe
- MZ at fffff803`594c0000, prot 00000040, type 01000000 - size 78000
- Name: usbxhci.exe
- MZ at fffff803`59540000, prot 00000040, type 01000000 - size 3f000
- Name: ucx01000.exe
- MZ at fffff803`59610000, prot 00000040, type 01000000 - size 2b000
- Name: winquic.sys
- MZ at fffff803`59640000, prot 00000040, type 01000000 - size 18000
- Name: lltdio.exe
- MZ at fffff803`59660000, prot 00000040, type 01000000 - size 1a000
- Name: mslldp.exe
- MZ at fffff803`59680000, prot 00000040, type 01000000 - size 1b000
- Name: rspndr.exe
- MZ at fffff803`596a0000, prot 00000040, type 01000000 - size 1c000
- Name: wanarp.exe
- MZ at fffff803`596c0000, prot 00000040, type 01000000 - size 139000
- Name: http.exe
- MZ at fffff803`59800000, prot 00000040, type 01000000 - size 25000
- Name: bowser.exe
- MZ at fffff803`59830000, prot 00000040, type 01000000 - size 1a000
- Name: mpsdrv.exe
- MZ at fffff803`59870000, prot 00000040, type 01000000 - size d8000
- Name: dxgmms2.sys
- MZ at fffff803`59950000, prot 00000040, type 01000000 - size 76000
- Name: cldflt.exe
- MZ at fffff803`599d0000, prot 00000040, type 01000000 - size 1b000
- Name: storqosflt.exe
- MZ at fffff803`59a10000, prot 00000040, type 01000000 - size 13000
- Name: condrv.exe
- MZ at fffff803`59a30000, prot 00000040, type 01000000 - size 33b000
- Name: dxgkrnl.sys
- MZ at fffff803`59d70000, prot 00000040, type 01000000 - size 16000
- Name: watchdog.sys
- MZ at fffff803`59d90000, prot 00000040, type 01000000 - size 16000
- Name: BasicDisplay.exe
- MZ at fffff803`59db0000, prot 00000040, type 01000000 - size 11000
- Name: BasicRender.exe
- MZ at fffff803`59dd0000, prot 00000040, type 01000000 - size 1c000
- Name: npfs.exe
- MZ at fffff803`5b000000, prot 00000040, type 01000000 - size 2e000
- Name: cdrom.exe
- MZ at fffff803`5b030000, prot 00000040, type 01000000 - size 15000
- Name: filecrypt.exe
- MZ at fffff803`5b050000, prot 00000040, type 01000000 - size a000
- Name: null.exe
- MZ at fffff803`5b060000, prot 00000040, type 01000000 - size a000
- Name: beep.exe
- MZ at fffff803`5b0e0000, prot 00000040, type 01000000 - size 2b000
- Name: ksecdd.sys
- MZ at fffff803`5b110000, prot 00000040, type 01000000 - size b000
- Name: BOOTVID.dll
- MZ at fffff803`5b120000, prot 00000040, type 01000000 - size 70000
- Name: FLTMGR.SYS
- MZ at fffff803`5b200000, prot 00000040, type 01000000 - size 24000
- Name: acpiex.exe
- MZ at fffff803`5b230000, prot 00000040, type 01000000 - size 1a000
- Name: SgrmAgent.exe
- MZ at fffff803`5b250000, prot 00000040, type 01000000 - size c8000
- Name: ACPI.SYS
- MZ at fffff803`5b320000, prot 00000040, type 01000000 - size c000
- Name: WMILIB.SYS
- MZ at fffff803`5b360000, prot 00000040, type 01000000 - size 43000
- Name: intelpep.exe
- MZ at fffff803`5b3b0000, prot 00000040, type 01000000 - size 16000
- Name: WindowsTrustedRT.exe
- MZ at fffff803`5b3d0000, prot 00000040, type 01000000 - size b000
- Name: WindowsTrustedRTProxy.exe
- MZ at fffff803`5b3e0000, prot 00000040, type 01000000 - size 14000
- Name: pcw.exe
- MZ at fffff803`5b400000, prot 00000040, type 01000000 - size b000
- Name: msisadrv.exe
- MZ at fffff803`5b410000, prot 00000040, type 01000000 - size 6b000
- Name: pci.exe
- MZ at fffff803`5b480000, prot 00000040, type 01000000 - size 12000
- Name: vdrvroot.exe
- MZ at fffff803`5b4a0000, prot 00000040, type 01000000 - size 2e000
- Name: PDC.exe
- MZ at fffff803`5b4d0000, prot 00000040, type 01000000 - size 19000
- Name: CEA.sys
- MZ at fffff803`5b4f0000, prot 00000040, type 01000000 - size 2f000
- Name: partmgr.exe
- MZ at fffff803`5b520000, prot 00000040, type 01000000 - size a4000
- Name: spaceport.exe
- MZ at fffff803`5b5d0000, prot 00000040, type 01000000 - size 19000
- Name: volmgr.exe
- MZ at fffff803`5b5f0000, prot 00000040, type 01000000 - size 63000
- Name: volmgrx.exe
- MZ at fffff803`5b660000, prot 00000040, type 01000000 - size 1f000
- Name: mountmgr.exe
- MZ at fffff803`5b680000, prot 00000040, type 01000000 - size 2d000
- Name: storahci.exe
- MZ at fffff803`5b6b0000, prot 00000040, type 01000000 - size 9c000
- Name: storport.sys
- MZ at fffff803`5b750000, prot 00000040, type 01000000 - size 1c000
- Name: EhStorClass.exe
- MZ at fffff803`5b770000, prot 00000040, type 01000000 - size 2db000
- Name: TCPIP.SYS
- MZ at fffff803`5ba50000, prot 00000040, type 01000000 - size 78000
- Name: fwpkclnt.sys
- MZ at fffff803`5bad0000, prot 00000040, type 01000000 - size c8000
- Name: fvevol.exe
- MZ at fffff803`5bba0000, prot 00000040, type 01000000 - size 6d000
- Name: volsnap.exe
- MZ at fffff803`5bc10000, prot 00000040, type 01000000 - size 4f000
- Name: rdyboost.exe
- MZ at fffff803`5bc60000, prot 00000040, type 01000000 - size 25000
- Name: MUP.SYS
- MZ at fffff803`5bc90000, prot 00000040, type 01000000 - size 11000
- Name: iorate.exe
- MZ at fffff803`5bcb0000, prot 00000040, type 01000000 - size 1c000
- Name: disk.exe
- MZ at fffff803`5bcd0000, prot 00000040, type 01000000 - size 6f000
- Name: CLASSPNP.SYS
- MZ at fffff803`5bd60000, prot 00000040, type 01000000 - size 1c000
- Name: CRASHDMP.SYS
- MZ at fffff803`5bdb0000, prot 00000040, type 01000000 - size 10a000
- Name: clipsp.sys
- MZ at fffff803`5bec0000, prot 00000040, type 01000000 - size d1000
- Name: Wdf01000.exe
- MZ at fffff803`5bfa0000, prot 00000040, type 01000000 - size 13000
- Name: WDFLDR.SYS
- MZ at fffff803`5bfc0000, prot 00000040, type 01000000 - size 10000
- Name: WppRecorder.sys
- MZ at fffff803`5bfe0000, prot 00000040, type 01000000 - size f000
- Name: SleepStudyHelper.sys
- MZ at fffff803`5bff0000, prot 00000040, type 01000000 - size e000
- Name: tbs.sys
- MZ at fffff803`5c000000, prot 00000040, type 01000000 - size 28d000
- Name: ntfs.exe
- MZ at fffff803`5c290000, prot 00000040, type 01000000 - size d000
- Name: fs_rec.exe
- MZ at fffff803`5c2a0000, prot 00000040, type 01000000 - size 153000
- Name: NDIS.SYS
- MZ at fffff803`5c400000, prot 00000040, type 01000000 - size 95000
- Name: NETIO.SYS
- MZ at fffff803`5c4a0000, prot 00000040, type 01000000 - size 32000
- Name: ksecpkg.exe
- MZ at fffff803`5dcb0000, prot 00000040, type 01000000 - size 1a000
- Name: fileinfo.exe
- MZ at fffff803`5dcd0000, prot 00000040, type 01000000 - size 3e000
- Name: wof.exe
- MZ at fffff803`5dda0000, prot 00000040, type 01000000 - size 30000
- Name: wfplwfs.exe
- MZ at fffff803`5dde0000, prot 00000040, type 01000000 - size b000
- Name: volume.exe
- MZ at fffff803`5f400000, prot 00000040, type 01000000 - size 75000
- Name: ks.sys
- MZ at fffff803`5f490000, prot 00000040, type 01000000 - size c000
- Name: wmiacpi.exe
- MZ at fffff803`5f4b0000, prot 00000040, type 01000000 - size 2d000
- Name: msgpioclx.exe
- MZ at fffff803`5f4e0000, prot 00000040, type 01000000 - size 3a000
- Name: amdppm.exe
- MZ at fffff803`5f540000, prot 00000040, type 01000000 - size f000
- Name: ksthunk.exe
- MZ at fffff803`5f5a0000, prot 00000040, type 01000000 - size d000
- Name: NdisVirtualBus.exe
- MZ at fffff803`5f5b0000, prot 00000040, type 01000000 - size c000
- Name: swenum.exe
- MZ at fffff803`5f5c0000, prot 00000040, type 01000000 - size e000
- Name: rdpbus.exe
- MZ at fffff803`5f5d0000, prot 00000040, type 01000000 - size 93000
- Name: usbhub3.sys
- MZ at fffff803`5f670000, prot 00000040, type 01000000 - size e000
- Name: USBD.SYS
- MZ at fffff803`5fc70000, prot 00000040, type 01000000 - size 31000
- Name: usbccgp.exe
- MZ at fffff803`5fcb0000, prot 00000040, type 01000000 - size 12000
- Name: hidusb.exe
- MZ at fffff803`5fcd0000, prot 00000040, type 01000000 - size 3b000
- Name: HIDCLASS.SYS
- MZ at fffff803`5fd10000, prot 00000040, type 01000000 - size 13000
- Name: HIDPARSE.SYS
- MZ at fffff803`5fd40000, prot 00000040, type 01000000 - size f000
- Name: mouhid.exe
- MZ at fffff803`5fd90000, prot 00000040, type 01000000 - size 13000
- Name: mouclass.exe
- MZ at fffff803`5fdb0000, prot 00000040, type 01000000 - size 11000
- Name: kbdhid.exe
- MZ at fffff803`5fdd0000, prot 00000040, type 01000000 - size 13000
- Name: kbdclass.exe
- MZ at fffff803`601d0000, prot 00000040, type 01000000 - size 1a000
- Name: USBSER.exe
- MZ at fffff803`60240000, prot 00000040, type 01000000 - size 2d000
- Name: storahci.exe
- MZ at fffff803`60290000, prot 00000040, type 01000000 - size 1d000
- Name: DUMPFVE.SYS
- MZ at fffff803`602c0000, prot 00000040, type 01000000 - size 4e000
- Name: usbvideo.exe
- MZ at fffff803`60310000, prot 00000040, type 01000000 - size 35000
- Name: USBAudio.exe
- MZ at fffff803`60350000, prot 00000040, type 01000000 - size 16000
- Name: monitor.exe
- MZ at fffff803`60370000, prot 00000040, type 01000000 - size 29000
- Name: luafv.exe
- MZ at fffff803`603a0000, prot 00000040, type 01000000 - size 2d000
- Name: wcifs.exe
- MZ at fffff803`61920000, prot 00000040, type 01000000 - size 1f000
- Name: hdaudbus.exe
- MZ at fffff803`61940000, prot 00000040, type 01000000 - size 65000
- Name: portcls.sys
- MZ at fffff803`619e0000, prot 00000040, type 01000000 - size 14000
- Name: mmcss.exe
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement