Advertisement
Guest User

Untitled

a guest
Jun 1st, 2021
63
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 46.77 KB | None | 0 0
  1. ========================== AUTO DUMP ANALYZER ==========================
  2. Auto Dump Analyzer
  3. Version: 0.91
  4. Time to analyze file(s): 00 hours and 06 minutes and 51 seconds
  5.  
  6. ================================ SYSTEM ================================
  7. MANUFACTURER: ASUS
  8.  
  9. ================================= BIOS =================================
  10. VENDOR: American Megatrends Inc.
  11. VERSION: 0805
  12. DATE: 07/01/2020
  13.  
  14. ============================= MOTHERBOARD ==============================
  15. MANUFACTURER: ASUSTeK COMPUTER INC.
  16. PRODUCT: PRIME B550M-A (WI-FI)
  17. VERSION: Rev X.0x
  18.  
  19. ================================= RAM ==================================
  20. Size Speed Manufacturer Part No.
  21. -------------- -------------- ------------------- ----------------------
  22. 0MHz Unknown Unknown
  23. 8192MB 2133MHz Corsair CMK16GX4M2D3600C18
  24. 0MHz Unknown Unknown
  25. 8192MB 2133MHz Corsair CMK16GX4M2D3600C18
  26.  
  27. ================================= CPU ==================================
  28. Processor Version: AMD Ryzen 5 3600 6-Core Processor
  29. COUNT: c
  30. MHZ: 3593
  31. VENDOR: AuthenticAMD
  32. FAMILY: 17
  33. MODEL: 71
  34. STEPPING: 0
  35.  
  36. ================================== OS ==================================
  37. Product: WinNt, suite: TerminalServer SingleUserTS
  38. Built by: 19041.1.amd64fre.vb_release.191206-1406
  39. BUILD_VERSION: 10.0.19041.1023 (WinBuild.160101.0800)
  40. BUILD: 19041
  41. SERVICEPACK: 1023
  42. PLATFORM_TYPE: x64
  43. NAME: Windows 10
  44. EDITION: Windows 10 WinNt TerminalServer SingleUserTS
  45. BUILD_TIMESTAMP: unknown_date
  46. BUILDDATESTAMP: 160101.0800
  47. BUILDLAB: WinBuild
  48. BUILDOSVER: 10.0.19041.1023
  49.  
  50. =============================== DEBUGGER ===============================
  51. Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
  52. Copyright (c) Microsoft Corporation. All rights reserved.
  53.  
  54. =============================== COMMENTS ===============================
  55. * Information gathered from different dump files may be different. If
  56. Windows updates between two dump files, two or more OS versions may
  57. be shown above.
  58. * If the user updates the BIOS between dump files, two or more versions
  59. and dates may be shown above.
  60. * More RAM information can be found below in a full BIOS section.
  61.  
  62. ========================================================================
  63. ======================= Dump #1: ANALYZE VERBOSE =======================
  64. ====================== File: 060121-11000-01.dmp =======================
  65. ========================================================================
  66.  
  67. Mini Kernel Dump File: Only registers and stack trace are available
  68. Windows 10 Kernel Version 19041 MP (12 procs) Free x64
  69. Kernel base = 0xfffff805`49600000 PsLoadedModuleList = 0xfffff805`4a22a2b0
  70. Debug session time: Tue Jun 1 13:51:53.851 2021 (UTC - 4:00)
  71. System Uptime: 0 days 16:24:18.640
  72.  
  73. BugCheck 139, {3, ffff83878dceb060, ffff83878dceafb8, 0}
  74. Probably caused by : memory_corruption
  75. Followup: memory_corruption
  76.  
  77. KERNEL_SECURITY_CHECK_FAILURE (139)
  78. A kernel component has corrupted a critical data structure. The corruption
  79. could potentially allow a malicious user to gain control of this machine.
  80.  
  81. Arguments:
  82. Arg1: 0000000000000003, A LIST_ENTRY has been corrupted (i.e. double remove).
  83. Arg2: ffff83878dceb060, Address of the trap frame for the exception that caused the bugcheck
  84. Arg3: ffff83878dceafb8, Address of the exception record for the exception that caused the bugcheck
  85. Arg4: 0000000000000000, Reserved
  86.  
  87. Debugging Details:
  88. DUMP_CLASS: 1
  89. DUMP_QUALIFIER: 400
  90. DUMP_TYPE: 2
  91. TRAP_FRAME: ffff83878dceb060 -- (.trap 0xffff83878dceb060)
  92. NOTE: The trap frame does not contain all registers.
  93. Some register values may be zeroed or incorrect.
  94. rax=ffff8a05f704ebc8 rbx=0000000000000000 rcx=0000000000000003
  95. rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
  96. rip=fffff80549a18e75 rsp=ffff83878dceb1f0 rbp=ffff83878dceb281
  97. r8=0000000000000000 r9=0000000000000000 r10=0000000000000000
  98. r11=fffff780000003b0 r12=0000000000000000 r13=0000000000000000
  99. r14=0000000000000000 r15=0000000000000000
  100. iopl=0 nv up ei ng nz ac po cy
  101. nt!KeWaitForSingleObject+0x20d965:
  102. fffff805`49a18e75 cd29 int 29h
  103. Resetting default scope
  104. EXCEPTION_RECORD: ffff83878dceafb8 -- (.exr 0xffff83878dceafb8)
  105. ExceptionAddress: fffff80549a18e75 (nt!KeWaitForSingleObject+0x000000000020d965)
  106. ExceptionCode: c0000409 (Security check failure or stack buffer overrun)
  107. ExceptionFlags: 00000001
  108. NumberParameters: 1
  109. Parameter[0]: 0000000000000003
  110. Subcode: 0x3 FAST_FAIL_CORRUPT_LIST_ENTRY
  111. CUSTOMER_CRASH_COUNT: 1
  112. DEFAULT_BUCKET_ID: CODE_CORRUPTION
  113. BUGCHECK_STR: 0x139
  114.  
  115. PROCESS_NAME: ArmouryCrate.UserSessionHelper.exe
  116.  
  117. CURRENT_IRQL: 2
  118. ERROR_CODE: (NTSTATUS) 0xc0000409 - The system detected an overrun of a stack-based buffer in this application. This overrun could potentially allow a malicious user to gain control of this application.
  119. EXCEPTION_CODE: (NTSTATUS) 0xc0000409 - The system detected an overrun of a stack-based buffer in this application. This overrun could potentially allow a malicious user to gain control of this application.
  120. EXCEPTION_CODE_STR: c0000409
  121. EXCEPTION_PARAMETER1: 0000000000000003
  122. LAST_CONTROL_TRANSFER: from fffff80549a08c69 to fffff805499f6c90
  123. STACK_TEXT:
  124. ffff8387`8dcead38 fffff805`49a08c69 : 00000000`00000139 00000000`00000003 ffff8387`8dceb060 ffff8387`8dceafb8 : nt!KeBugCheckEx
  125. ffff8387`8dcead40 fffff805`49a09090 : 00000000`00000000 ffffc381`d8907180 ffffc381`d8907100 ffff4182`9d2350a8 : nt!KiBugCheckDispatch+0x69
  126. ffff8387`8dceae80 fffff805`49a07423 : 00000000`00000006 00000000`00000001 00000000`00000000 00000000`00000006 : nt!KiFastFailDispatch+0xd0
  127. ffff8387`8dceb060 fffff805`49a18e75 : 00000000`00000001 00000000`00000000 00000000`00000001 fffff805`4980a6d3 : nt!KiRaiseSecurityCheckFailure+0x323
  128. ffff8387`8dceb1f0 fffff805`499095bb : ffff8a05`f704ebc0 fffff805`0000000d ffff8a05`00000001 00000000`00000000 : nt!KeWaitForSingleObject+0x20d965
  129. ffff8387`8dceb2e0 ffff9ed4`d50a7bf7 : ffff9e9e`44703010 ffff9e9e`44703010 00000000`00000000 fffff805`4988d7eb : nt!KeWaitForMultipleObjects+0x45b
  130. ffff8387`8dceb3f0 ffff9ed4`d50a77c5 : ffff00c7`ba15000f ffff9e9e`44700000 00000000`00000001 ffff8387`00000000 : win32kfull!xxxRealSleepThread+0x367
  131. ffff8387`8dceb510 ffff9ed4`d50a5d4d : ffff8387`8dcebb80 00000000`00000000 ffff8387`8dceba78 ffff9e9e`44703010 : win32kfull!xxxSleepThread2+0xb5
  132. ffff8387`8dceb560 ffff9ed4`d50a4e12 : ffff8387`8dceba78 000000c3`fdaff901 00000000`00000000 00000000`00000000 : win32kfull!xxxRealInternalGetMessage+0xcfd
  133. ffff8387`8dceba30 ffff9ed4`d4126275 : ffff8a06`069540c0 00000000`00000000 00000000`00000020 fffff805`49a08518 : win32kfull!NtUserGetMessage+0x92
  134. ffff8387`8dcebac0 fffff805`49a086b8 : 000000c3`fdaff9e0 0000022b`00000000 00000000`00000001 ffff8a05`00000000 : win32k!NtUserGetMessage+0x15
  135. ffff8387`8dcebb00 00007ffb`66b31104 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x28
  136. 000000c3`fdaff8c8 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x00007ffb`66b31104
  137. STACK_COMMAND: kb
  138. CHKIMG_EXTENSION: !chkimg -lo 50 -d !win32kbase
  139. ffff9ed4d3c5e7e1-ffff9ed4d3c5e7e2 2 bytes - win32kbase!EnterCrit+231
  140. [ 48 ff:4c 8b ]
  141. ffff9ed4d3c5e7e8-ffff9ed4d3c5e7eb 4 bytes - win32kbase!EnterCrit+238 (+0x07)
  142. [ 0f 1f 44 00:e8 33 9c 27 ]
  143. ffff9ed4d3c5e7f0-ffff9ed4d3c5e7f1 2 bytes - win32kbase!EnterCrit+240 (+0x08)
  144. [ 48 ff:4c 8b ]
  145. ffff9ed4d3c5e7f7-ffff9ed4d3c5e7fa 4 bytes - win32kbase!EnterCrit+247 (+0x07)
  146. [ 0f 1f 44 00:e8 24 9c 27 ]
  147. ffff9ed4d3c5e7fe-ffff9ed4d3c5e7ff 2 bytes - win32kbase!EnterCrit+24e (+0x07)
  148. [ 48 ff:4c 8b ]
  149. ffff9ed4d3c5e805-ffff9ed4d3c5e808 4 bytes - win32kbase!EnterCrit+255 (+0x07)
  150. [ 0f 1f 44 00:e8 16 9c 27 ]
  151. ffff9ed4d3c5e80d-ffff9ed4d3c5e80e 2 bytes - win32kbase!EnterCrit+25d (+0x08)
  152. [ 48 ff:4c 8b ]
  153. ffff9ed4d3c5e814-ffff9ed4d3c5e817 4 bytes - win32kbase!EnterCrit+264 (+0x07)
  154. [ 0f 1f 44 00:e8 07 9c 27 ]
  155. ffff9ed4d3c5e853-ffff9ed4d3c5e854 2 bytes - win32kbase!EtwTraceAcquiredExclusiveUserCrit+23 (+0x3f)
  156. [ 48 ff:4c 8b ]
  157. ffff9ed4d3c5e85a-ffff9ed4d3c5e85d 4 bytes - win32kbase!EtwTraceAcquiredExclusiveUserCrit+2a (+0x07)
  158. [ 0f 1f 44 00:e8 c1 9b 27 ]
  159. ffff9ed4d3c5e89d-ffff9ed4d3c5e89e 2 bytes - win32kbase!EtwTraceAcquiredExclusiveUserCrit+6d (+0x43)
  160. [ 48 ff:4c 8b ]
  161. ffff9ed4d3c5e8a4-ffff9ed4d3c5e8a7 4 bytes - win32kbase!EtwTraceAcquiredExclusiveUserCrit+74 (+0x07)
  162. [ 0f 1f 44 00:e8 77 9b 27 ]
  163. ffff9ed4d3c5ebc4-ffff9ed4d3c5ebc5 2 bytes - win32kbase!IsThreadCrossSessionAttached+4 (+0x320)
  164. [ 48 ff:4c 8b ]
  165. ffff9ed4d3c648b4-ffff9ed4d3c648b5 2 bytes - win32kbase!UserSessionSwitchLeaveCrit+94 (+0x5cf0)
  166. [ 48 ff:4c 8b ]
  167. ffff9ed4d3c648bb-ffff9ed4d3c648be 4 bytes - win32kbase!UserSessionSwitchLeaveCrit+9b (+0x07)
  168. [ 0f 1f 44 00:e8 60 3b 27 ]
  169. 44 errors : !win32kbase (ffff9ed4d3c5e7e1-ffff9ed4d3c648be)
  170. MODULE_NAME: memory_corruption
  171.  
  172. IMAGE_NAME: memory_corruption
  173.  
  174. FOLLOWUP_NAME: memory_corruption
  175. DEBUG_FLR_IMAGE_TIMESTAMP: 0
  176. MEMORY_CORRUPTOR: LARGE
  177. FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
  178. BUCKET_ID: MEMORY_CORRUPTION_LARGE
  179. PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
  180. TARGET_TIME: 2021-06-01T17:51:53.000Z
  181. SUITE_MASK: 272
  182. PRODUCT_TYPE: 1
  183. USER_LCID: 0
  184. FAILURE_ID_HASH_STRING: km:memory_corruption_large
  185. FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
  186. Followup: memory_corruption
  187.  
  188. ====================== Dump #1: 3RD PARTY DRIVERS ======================
  189.  
  190. Nov 18 2009 - jnprvamgr.sys - Juniper Network Agent Virtual Adapter Manager driver
  191. Aug 22 2012 - AsIO.sys - ASUS Input Output driver http://www.asus.com/
  192. Oct 30 2014 - jnprns.sys - Juniper Network Service Light Weight Filter driver
  193. Mar 14 2016 - amdgpio3.sys - AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  194. Apr 09 2019 - AsIO2.sys - Asus Input Output driver
  195. Apr 22 2019 - GLCKIO2.sys - ASUS RGB driver
  196. Jul 16 2019 - vmci.sys - VMware PCI VMCI Bus Device driver https://www.vmware.com/
  197. Jan 19 2020 - MsIo64.sys - MSI Gaming App driver
  198. Mar 06 2020 - amdpsp.sys - Advanced Micro Devices, Inc http://support.amd.com/
  199. Mar 11 2020 - amdgpio2.sys - AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  200. May 08 2020 - ene.sys - RGB driver used by Ptolemy Tech Co., ASUS, Gigabyte, MSI, and others
  201. May 19 2020 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
  202. May 26 2020 - rt640x64.sys - Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
  203. Jun 09 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
  204. Jun 25 2020 - vsock.sys - VMware vSockets Service https://www.vmware.com/
  205. Jul 09 2020 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
  206. Jul 22 2020 - VMNET.SYS - VMware Network driver https://www.vmware.com/
  207. Jul 22 2020 - vmnetadapter.sys - VMware Virtual Network Adapter driver https://www.vmware.com/
  208. Jul 22 2020 - vmnetbridge.sys - VMware Bridge driver https://www.vmware.com/
  209. Jul 22 2020 - vmnetuserif.sys - VMware Network Application Interface driver https://www.vmware.com/
  210. Jul 23 2020 - hcmon.sys - VMware USB monitor https://www.vmware.com/
  211. Sep 10 2020 - AiCharger.sys - Asus Charger driver
  212. Oct 02 2020 - AMDPCIDev.sys - Advanced Micro Devices PCI Device driver
  213. Nov 03 2020 - vmx86.sys - VMware kernel driver https://www.vmware.com/
  214. Nov 06 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
  215. Jan 04 2021 - McPvDrv.sys - McAfee Anti-Theft driver (McAfee, Inc.)
  216. Feb 11 2021 - cfwids.sys - McAfee Personal Firewall IDS Plugin driver (McAfee, Inc.)
  217. Feb 11 2021 - mfeaack.sys - McAfee Arbitrary Access Control driver (McAfee, Inc.) https://www.mcafee.com/
  218. Feb 11 2021 - mfeavfk.sys - Anti-Virus File System Filter driver (McAfee, Inc.) https://www.mcafee.com/
  219. Feb 11 2021 - mfefirek.sys - McAfee Core Firewall Engine Driver http://support.mcafee.com/
  220. Feb 11 2021 - mfehidk.sys - Host Intrusion Detection Link Driver (McAfee, Inc.) https://www.mcafee.com/
  221. Feb 11 2021 - mfencbdc.sys - McAfee Anti-Malware Core http://support.mcafee.com/
  222. Feb 11 2021 - mfeplk.sys - McAfee Anti-Virus File System Filter Driver http://support.mcafee.com/
  223. Feb 11 2021 - mfewfpk.sys - Anti-Virus Mini-Firewall driver (McAfee, Inc.) http://support.mcafee.com/
  224. Feb 26 2021 - logi_core_temp.sys - Logitech G HUB driver https://support.logitech.com/en_us/software/lghub
  225. Feb 26 2021 - logi_joy_bus_enum.sys - Logitech Joystick driver
  226. Feb 26 2021 - logi_joy_xlcore.sys - Logitech Joystick driver
  227. May 02 2021 - Netwtw10.sys - Intel Wi-Fi driver
  228.  
  229. ================== Dump #1: 3RD PARTY DRIVERS (FULL) ===================
  230.  
  231. Image path: \SystemRoot\System32\drivers\jnprvamgr.sys
  232. Image name: jnprvamgr.sys
  233. Search : https://www.google.com/search?q=jnprvamgr.sys
  234. ADA Info : Juniper Network Agent Virtual Adapter Manager driver
  235. Timestamp : Wed Nov 18 2009
  236.  
  237. Image path: \SystemRoot\SysWow64\drivers\AsIO.sys
  238. Image name: AsIO.sys
  239. Search : https://www.google.com/search?q=AsIO.sys
  240. ADA Info : ASUS Input Output driver http://www.asus.com/
  241. Timestamp : Wed Aug 22 2012
  242.  
  243. Image path: \SystemRoot\system32\DRIVERS\jnprns.sys
  244. Image name: jnprns.sys
  245. Search : https://www.google.com/search?q=jnprns.sys
  246. ADA Info : Juniper Network Service Light Weight Filter driver
  247. Timestamp : Thu Oct 30 2014
  248.  
  249. Image path: \SystemRoot\System32\drivers\amdgpio3.sys
  250. Image name: amdgpio3.sys
  251. Search : https://www.google.com/search?q=amdgpio3.sys
  252. ADA Info : AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  253. Timestamp : Mon Mar 14 2016
  254.  
  255. Image path: \??\C:\Windows\system32\drivers\AsIO2.sys
  256. Image name: AsIO2.sys
  257. Search : https://www.google.com/search?q=AsIO2.sys
  258. ADA Info : Asus Input Output driver
  259. Timestamp : Tue Apr 9 2019
  260.  
  261. Image path: \??\C:\Windows\system32\drivers\GLCKIO2.sys
  262. Image name: GLCKIO2.sys
  263. Search : https://www.google.com/search?q=GLCKIO2.sys
  264. ADA Info : ASUS RGB driver
  265. Timestamp : Mon Apr 22 2019
  266.  
  267. Image path: \SystemRoot\System32\drivers\vmci.sys
  268. Image name: vmci.sys
  269. Search : https://www.google.com/search?q=vmci.sys
  270. ADA Info : VMware PCI VMCI Bus Device driver https://www.vmware.com/
  271. Timestamp : Tue Jul 16 2019
  272.  
  273. Image path: \??\C:\Windows\system32\drivers\MsIo64.sys
  274. Image name: MsIo64.sys
  275. Search : https://www.google.com/search?q=MsIo64.sys
  276. ADA Info : MSI Gaming App driver
  277. Timestamp : Sun Jan 19 2020
  278.  
  279. Image path: \SystemRoot\System32\drivers\amdpsp.sys
  280. Image name: amdpsp.sys
  281. Search : https://www.google.com/search?q=amdpsp.sys
  282. ADA Info : Advanced Micro Devices, Inc http://support.amd.com/
  283. Timestamp : Fri Mar 6 2020
  284.  
  285. Image path: \SystemRoot\System32\drivers\amdgpio2.sys
  286. Image name: amdgpio2.sys
  287. Search : https://www.google.com/search?q=amdgpio2.sys
  288. ADA Info : AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
  289. Timestamp : Wed Mar 11 2020
  290.  
  291. Image path: \??\C:\Windows\system32\drivers\ene.sys
  292. Image name: ene.sys
  293. Search : https://www.google.com/search?q=ene.sys
  294. ADA Info : RGB driver used by Ptolemy Tech Co., ASUS, Gigabyte, MSI, and others
  295. Timestamp : Fri May 8 2020
  296.  
  297. Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
  298. Image name: RTKVHD64.sys
  299. Search : https://www.google.com/search?q=RTKVHD64.sys
  300. ADA Info : Realtek Audio System driver https://www.realtek.com/en/
  301. Timestamp : Tue May 19 2020
  302.  
  303. Image path: \SystemRoot\System32\drivers\rt640x64.sys
  304. Image name: rt640x64.sys
  305. Search : https://www.google.com/search?q=rt640x64.sys
  306. ADA Info : Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
  307. Timestamp : Tue May 26 2020
  308.  
  309. Image path: \SystemRoot\system32\drivers\nvhda64v.sys
  310. Image name: nvhda64v.sys
  311. Search : https://www.google.com/search?q=nvhda64v.sys
  312. ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
  313. Timestamp : Tue Jun 9 2020
  314.  
  315. Image path: \SystemRoot\system32\DRIVERS\vsock.sys
  316. Image name: vsock.sys
  317. Search : https://www.google.com/search?q=vsock.sys
  318. ADA Info : VMware vSockets Service https://www.vmware.com/
  319. Timestamp : Thu Jun 25 2020
  320.  
  321. Image path: \SystemRoot\System32\DriverStore\FileRepository\nvppc.inf_amd64_61e9a7eac960089c\UcmCxUcsiNvppc.sys
  322. Image name: UcmCxUcsiNvppc.sys
  323. Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
  324. ADA Info : NVIDIA USB Type-C Port Policy Controller driver
  325. Timestamp : Thu Jul 9 2020
  326.  
  327. Image path: \SystemRoot\system32\DRIVERS\VMNET.SYS
  328. Image name: VMNET.SYS
  329. Search : https://www.google.com/search?q=VMNET.SYS
  330. ADA Info : VMware Network driver https://www.vmware.com/
  331. Timestamp : Wed Jul 22 2020
  332.  
  333. Image path: \SystemRoot\system32\DRIVERS\vmnetadapter.sys
  334. Image name: vmnetadapter.sys
  335. Search : https://www.google.com/search?q=vmnetadapter.sys
  336. ADA Info : VMware Virtual Network Adapter driver https://www.vmware.com/
  337. Timestamp : Wed Jul 22 2020
  338.  
  339. Image path: \SystemRoot\system32\DRIVERS\vmnetbridge.sys
  340. Image name: vmnetbridge.sys
  341. Search : https://www.google.com/search?q=vmnetbridge.sys
  342. ADA Info : VMware Bridge driver https://www.vmware.com/
  343. Timestamp : Wed Jul 22 2020
  344.  
  345. Image path: \SystemRoot\system32\DRIVERS\vmnetuserif.sys
  346. Image name: vmnetuserif.sys
  347. Search : https://www.google.com/search?q=vmnetuserif.sys
  348. ADA Info : VMware Network Application Interface driver https://www.vmware.com/
  349. Timestamp : Wed Jul 22 2020
  350.  
  351. Image path: \SystemRoot\system32\DRIVERS\hcmon.sys
  352. Image name: hcmon.sys
  353. Search : https://www.google.com/search?q=hcmon.sys
  354. ADA Info : VMware USB monitor https://www.vmware.com/
  355. Timestamp : Thu Jul 23 2020
  356.  
  357. Image path: \SystemRoot\SysWow64\drivers\AiCharger.sys
  358. Image name: AiCharger.sys
  359. Search : https://www.google.com/search?q=AiCharger.sys
  360. ADA Info : Asus Charger driver
  361. Timestamp : Thu Sep 10 2020
  362.  
  363. Image path: \SystemRoot\System32\drivers\AMDPCIDev.sys
  364. Image name: AMDPCIDev.sys
  365. Search : https://www.google.com/search?q=AMDPCIDev.sys
  366. ADA Info : Advanced Micro Devices PCI Device driver
  367. Timestamp : Fri Oct 2 2020
  368.  
  369. Image path: \SystemRoot\system32\DRIVERS\vmx86.sys
  370. Image name: vmx86.sys
  371. Search : https://www.google.com/search?q=vmx86.sys
  372. ADA Info : VMware kernel driver https://www.vmware.com/
  373. Timestamp : Tue Nov 3 2020
  374.  
  375. Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5dcb5bbf5c3edcf2\nvlddmkm.sys
  376. Image name: nvlddmkm.sys
  377. Search : https://www.google.com/search?q=nvlddmkm.sys
  378. ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
  379. Timestamp : Fri Nov 6 2020
  380.  
  381. Image path: \SystemRoot\system32\drivers\McPvDrv.sys
  382. Image name: McPvDrv.sys
  383. Search : https://www.google.com/search?q=McPvDrv.sys
  384. ADA Info : McAfee Anti-Theft driver (McAfee, Inc.)
  385. Timestamp : Mon Jan 4 2021
  386.  
  387. Image path: \SystemRoot\system32\drivers\cfwids.sys
  388. Image name: cfwids.sys
  389. Search : https://www.google.com/search?q=cfwids.sys
  390. ADA Info : McAfee Personal Firewall IDS Plugin driver (McAfee, Inc.)
  391. Timestamp : Thu Feb 11 2021
  392.  
  393. Image path: \SystemRoot\system32\drivers\mfeaack.sys
  394. Image name: mfeaack.sys
  395. Search : https://www.google.com/search?q=mfeaack.sys
  396. ADA Info : McAfee Arbitrary Access Control driver (McAfee, Inc.) https://www.mcafee.com/
  397. Timestamp : Thu Feb 11 2021
  398.  
  399. Image path: \SystemRoot\system32\drivers\mfeavfk.sys
  400. Image name: mfeavfk.sys
  401. Search : https://www.google.com/search?q=mfeavfk.sys
  402. ADA Info : Anti-Virus File System Filter driver (McAfee, Inc.) https://www.mcafee.com/
  403. Timestamp : Thu Feb 11 2021
  404.  
  405. Image path: \SystemRoot\system32\drivers\mfefirek.sys
  406. Image name: mfefirek.sys
  407. Search : https://www.google.com/search?q=mfefirek.sys
  408. ADA Info : McAfee Core Firewall Engine Driver http://support.mcafee.com/
  409. Timestamp : Thu Feb 11 2021
  410.  
  411. Image path: \SystemRoot\system32\drivers\mfehidk.sys
  412. Image name: mfehidk.sys
  413. Search : https://www.google.com/search?q=mfehidk.sys
  414. ADA Info : Host Intrusion Detection Link Driver (McAfee, Inc.) https://www.mcafee.com/
  415. Timestamp : Thu Feb 11 2021
  416.  
  417. Image path: \SystemRoot\system32\DRIVERS\mfencbdc.sys
  418. Image name: mfencbdc.sys
  419. Search : https://www.google.com/search?q=mfencbdc.sys
  420. ADA Info : McAfee Anti-Malware Core http://support.mcafee.com/
  421. Timestamp : Thu Feb 11 2021
  422.  
  423. Image path: \SystemRoot\system32\drivers\mfeplk.sys
  424. Image name: mfeplk.sys
  425. Search : https://www.google.com/search?q=mfeplk.sys
  426. ADA Info : McAfee Anti-Virus File System Filter Driver http://support.mcafee.com/
  427. Timestamp : Thu Feb 11 2021
  428.  
  429. Image path: \SystemRoot\system32\drivers\mfewfpk.sys
  430. Image name: mfewfpk.sys
  431. Search : https://www.google.com/search?q=mfewfpk.sys
  432. ADA Info : Anti-Virus Mini-Firewall driver (McAfee, Inc.) http://support.mcafee.com/
  433. Timestamp : Thu Feb 11 2021
  434.  
  435. Image path: \??\C:\Program Files\LGHUB\logi_core_temp.sys
  436. Image name: logi_core_temp.sys
  437. Search : https://www.google.com/search?q=logi_core_temp.sys
  438. ADA Info : Logitech G HUB driver https://support.logitech.com/en_us/software/lghub
  439. Timestamp : Fri Feb 26 2021
  440.  
  441. Image path: \SystemRoot\system32\drivers\logi_joy_bus_enum.sys
  442. Image name: logi_joy_bus_enum.sys
  443. Search : https://www.google.com/search?q=logi_joy_bus_enum.sys
  444. ADA Info : Logitech Joystick driver
  445. Timestamp : Fri Feb 26 2021
  446.  
  447. Image path: \SystemRoot\system32\drivers\logi_joy_xlcore.sys
  448. Image name: logi_joy_xlcore.sys
  449. Search : https://www.google.com/search?q=logi_joy_xlcore.sys
  450. ADA Info : Logitech Joystick driver
  451. Timestamp : Fri Feb 26 2021
  452.  
  453. Image path: \SystemRoot\System32\drivers\Netwtw10.sys
  454. Image name: Netwtw10.sys
  455. Search : https://www.google.com/search?q=Netwtw10.sys
  456. ADA Info : Intel Wi-Fi driver
  457. Timestamp : Sun May 2 2021
  458.  
  459. ====================== Dump #1: MICROSOFT DRIVERS ======================
  460.  
  461. ACPI.sys ACPI Driver for NT (Microsoft)
  462. acpiex.sys ACPIEx Driver (Microsoft)
  463. afd.sys Ancillary Function Driver for WinSock (Microsoft)
  464. afunix.sys AF_UNIX Socket Provider driver (Microsoft)
  465. AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
  466. ahcache.sys Application Compatibility Cache (Microsoft)
  467. amdppm.sys Processor Device Driver
  468. bam.sys BAM Kernal driver (Microsoft)
  469. BasicDisplay.sys Basic Display driver (Microsoft)
  470. BasicRender.sys Basic Render driver (Microsoft)
  471. Beep.SYS BEEP driver (Microsoft)
  472. bindflt.sys Windows Bind Filter driver (Microsoft)
  473. BOOTVID.dll VGA Boot Driver (Microsoft)
  474. bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
  475. cdd.dll Canonical Display Driver (Microsoft)
  476. cdrom.sys SCSI CD-ROM Driver (Microsoft)
  477. CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
  478. CI.dll Code Integrity Module (Microsoft)
  479. CimFS.SYS Consumer IR Class Driver for eHome (Microsoft)
  480. CLASSPNP.SYS SCSI Class System Dll (Microsoft)
  481. cldflt.sys Cloud Files Mini Filter driver (Microsoft)
  482. CLFS.SYS Common Log File System Driver (Microsoft)
  483. clipsp.sys CLIP Service (Microsoft)
  484. cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
  485. cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
  486. CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
  487. condrv.sys Console Driver (Microsoft)
  488. crashdmp.sys Crash Dump driver (Microsoft)
  489. csc.sys Windows Client Side Caching driver (Microsoft)
  490. dfsc.sys DFS Namespace Client Driver (Microsoft)
  491. disk.sys PnP Disk Driver (Microsoft)
  492. drmk.sys Digital Rights Management (DRM) driver (Microsoft)
  493. dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  494. dump_dumpstorport.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  495. dump_stornvme.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  496. dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
  497. dxgmms2.sys DirectX Graphics MMS
  498. EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
  499. fastfat.SYS Fast FAT File System Driver (Microsoft)
  500. filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
  501. fileinfo.sys FileInfo Filter Driver (Microsoft)
  502. FLTMGR.SYS Filesystem Filter Manager (Microsoft)
  503. Fs_Rec.sys File System Recognizer Driver (Microsoft)
  504. fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
  505. fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
  506. gameflt.sys Gaming Install Filter driver (Microsoft)
  507. gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
  508. hal.dll Hardware Abstraction Layer DLL (Microsoft)
  509. HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
  510. HIDCLASS.SYS Hid Class Library (Microsoft)
  511. HIDPARSE.SYS Hid Parsing Library (Microsoft)
  512. hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
  513. HTTP.sys HTTP Protocol Stack (Microsoft)
  514. intelpep.sys Intel Power Engine Plugin (Microsoft)
  515. IntelTA.sys Intel Telemetry Driver
  516. iorate.sys I/O rate control Filter (Microsoft)
  517. kbdclass.sys Keyboard Class Driver (Microsoft)
  518. kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
  519. kd.dll Local Kernal Debugger (Microsoft)
  520. kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
  521. ks.sys Kernal CSA Library (Microsoft)
  522. ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
  523. ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
  524. ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
  525. lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
  526. luafv.sys LUA File Virtualization Filter Driver (Microsoft)
  527. mcupdate_AuthenticAMD.dll AMD Microcode Update Library (Microsoft)
  528. mmcss.sys MMCSS Driver (Microsoft)
  529. monitor.sys Monitor Driver (Microsoft)
  530. mouclass.sys Mouse Class Driver (Microsoft)
  531. mouhid.sys HID Mouse Filter Driver (Microsoft)
  532. mountmgr.sys Mount Point Manager (Microsoft)
  533. mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
  534. mrxdav.sys Microsoft Windows XP Web Distributed Authoring and Versioning (Microsoft)
  535. mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
  536. mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
  537. Msfs.SYS Mailslot driver (Microsoft)
  538. msgpioclx.sys GPIO Class Extension Driver (Microsoft)
  539. msisadrv.sys ISA Driver (Microsoft)
  540. mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
  541. msquic.sys Windows QUIC Driver
  542. msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
  543. mssecflt.sys Microsoft Security Events Component file system filter driver (Microsoft)
  544. mssmbios.sys System Management BIOS driver (Microsoft)
  545. mup.sys Multiple UNC Provider driver (Microsoft)
  546. ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
  547. ndiscap.sys Microsoft NDIS Packet Capture Filter Driver
  548. ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
  549. ndisuio.sys NDIS User mode I/O driver (Microsoft)
  550. NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
  551. ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
  552. NDProxy.sys NDIS Proxy driver (Microsoft)
  553. Ndu.sys Network Data Usage Monitoring driver (Microsoft)
  554. netbios.sys NetBIOS Interface driver (Microsoft)
  555. netbt.sys MBT Transport driver (Microsoft)
  556. NETIO.SYS Network I/O Subsystem (Microsoft)
  557. Npfs.SYS NPFS driver (Microsoft)
  558. npsvctrig.sys Named pipe service triggers (Microsoft)
  559. nsiproxy.sys NSI Proxy driver (Microsoft)
  560. Ntfs.sys NT File System Driver (Microsoft)
  561. ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
  562. ntosext.sys NTOS Extension Host driver (Microsoft)
  563. Null.SYS NULL Driver (Microsoft)
  564. nwifi.sys NativeWiFi Miniport Driver (Microsoft)
  565. pacer.sys QoS Packet Scheduler (Microsoft)
  566. partmgr.sys Partition driver (Microsoft)
  567. pci.sys NT Plug and Play PCI Enumerator (Microsoft)
  568. pcw.sys Performance Counter Driver (Microsoft)
  569. pdc.sys Power Dependency Coordinator Driver (Microsoft)
  570. peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
  571. portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
  572. PSHED.dll Platform Specific Hardware Error driver (Microsoft)
  573. qwavedrv.sys Quality Windows Audio Video Experience (qWave) Support driver (Microsoft)
  574. rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
  575. raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
  576. raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
  577. rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
  578. rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
  579. rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
  580. rdpvideominiport.sys RDP Video Miniport driver (Microsoft)
  581. rdyboost.sys ReadyBoost Driver (Microsoft)
  582. rspndr.sys Link-Layer Topology Responder driver (Microsoft)
  583. sbp2port.sys SBP-2 Protocol Driver
  584. serenum.sys Serial Port Enumerator (Microsoft)
  585. serial.sys Serial Device Driver
  586. SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
  587. SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
  588. spaceport.sys Storage Spaces driver (Microsoft)
  589. srv2.sys Smb 2.0 Server driver (Microsoft)
  590. srvnet.sys Server Network driver (Microsoft)
  591. storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
  592. stornvme.sys NVM Express Storport Miniport driver (Microsoft)
  593. storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
  594. storqosflt.sys Storage QoS Filter driver (Microsoft)
  595. storufs.sys MS UFS Storport Miniport Driver
  596. swenum.sys Plug and Play Software Device Enumerator (Microsoft)
  597. tbs.sys Export driver for kernel mode TPM API (Microsoft)
  598. tcpip.sys TCP/IP Protocol driver (Microsoft)
  599. tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
  600. TDI.SYS TDI Wrapper driver (Microsoft)
  601. tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
  602. tm.sys Kernel Transaction Manager driver (Microsoft)
  603. UcmCx.sys USB Connector Manager KMDF Class Extension
  604. ucx01000.sys USB Controller Extension (Microsoft)
  605. UEFI.sys UEFI NT driver (Microsoft)
  606. umbus.sys User-Mode Bus Enumerator (Microsoft)
  607. usbaudio.sys USB Audio Class Driver (Microsoft)
  608. usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
  609. USBD.SYS Universal Serial Bus Driver (Microsoft)
  610. UsbHub3.sys USB3 HUB driver (Microsoft)
  611. usbvideo.sys USB Video Class Driver (Microsoft)
  612. USBXHCI.SYS USB XHCI driver (Microsoft)
  613. vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
  614. Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
  615. volmgr.sys Volume Manager Driver (Microsoft)
  616. volmgrx.sys Volume Manager Extension Driver (Microsoft)
  617. volsnap.sys Volume Shadow Copy driver (Microsoft)
  618. volume.sys Volume driver (Microsoft)
  619. vwifibus.sys Virtual Wireless Bus driver (Microsoft)
  620. vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
  621. vwifimp.sys Virtual WiFi Miniport Driver (Microsoft)
  622. wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
  623. watchdog.sys Watchdog driver (Microsoft)
  624. wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
  625. Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
  626. WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
  627. wdiwifi.sys WDI Driver Framework driver (Microsoft)
  628. werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
  629. wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
  630. win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
  631. win32kbase.sys Base Win32k Kernel Driver (Microsoft)
  632. win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
  633. WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
  634. WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
  635. winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
  636. WinUSB.SYS Windows WinUSB Class driver (Microsoft)
  637. wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
  638. WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
  639. Wof.sys Windows Overlay Filter (Microsoft)
  640. WppRecorder.sys WPP Trace Recorder (Microsoft)
  641. ws2ifsl.sys Winsock2 IFS Layer
  642. WUDFRd.sys Windows Driver Foundation - User-mode Driver Framework Reflector driver (Microsoft)
  643. xvdd.sys XVD Disk driver (Microsoft)
  644.  
  645. ====================== Dump #1: UNLOADED MODULES =======================
  646.  
  647. fffff805`46500000 fffff805`46511000 MSKSSRV.sys
  648. fffff805`464b0000 fffff805`464cc000 mfencrk.sys
  649. fffff805`45a50000 fffff805`45a61000 MSKSSRV.sys
  650. fffff805`46500000 fffff805`4650f000 hiber_storpo
  651. fffff805`46510000 fffff805`4653c000 hiber_stornv
  652. fffff805`46540000 fffff805`4655e000 hiber_dumpfv
  653. fffff805`464b0000 fffff805`464c1000 MSKSSRV.sys
  654. fffff805`45a50000 fffff805`45a61000 MSKSSRV.sys
  655. fffff805`58fc0000 fffff805`58fcf000 dump_storpor
  656. fffff805`58e00000 fffff805`58e2c000 dump_stornvm
  657. fffff805`58e50000 fffff805`58e6e000 dump_dumpfve
  658. fffff805`59e60000 fffff805`59eb5000 WUDFRd.sys
  659. fffff805`58f00000 fffff805`58f1c000 dam.sys
  660. fffff805`59870000 fffff805`59e8b000 vgk.sys
  661. fffff805`4c7f0000 fffff805`4c80a000 mfeelamk.sys
  662. fffff805`4c810000 fffff805`4c81f000 tbs.sys
  663. fffff805`4da80000 fffff805`4da91000 hwpolicy.sys
  664.  
  665. ====================== Dump #1: BIOS INFORMATION =======================
  666.  
  667. [SMBIOS Data Tables v3.2]
  668. [DMI Version - 0]
  669. [2.0 Calling Convention - No]
  670. [Table Size - 2837 bytes]
  671. [BIOS Information (Type 0) - Length 26 - Handle 0000h]
  672. Vendor American Megatrends Inc.
  673. BIOS Version 0805
  674. BIOS Starting Address Segment f000
  675. BIOS Release Date 07/01/2020
  676. BIOS ROM Size 1000000
  677. BIOS Characteristics
  678. 07: - PCI Supported
  679. 10: - APM Supported
  680. 11: - Upgradeable FLASH BIOS
  681. 12: - BIOS Shadowing Supported
  682. 15: - CD-Boot Supported
  683. 16: - Selectable Boot Supported
  684. 17: - BIOS ROM Socketed
  685. 19: - EDD Supported
  686. 23: - 1.2MB Floppy Supported
  687. 24: - 720KB Floppy Supported
  688. 25: - 2.88MB Floppy Supported
  689. 26: - Print Screen Device Supported
  690. 27: - Keyboard Services Supported
  691. 28: - Serial Services Supported
  692. 29: - Printer Services Supported
  693. 32: - BIOS Vendor Reserved
  694. BIOS Characteristic Extensions
  695. 00: - ACPI Supported
  696. 01: - USB Legacy Supported
  697. 08: - BIOS Boot Specification Supported
  698. 10: - Specification Reserved
  699. 11: - Specification Reserved
  700. BIOS Major Revision 5
  701. BIOS Minor Revision 17
  702. EC Firmware Major Revision 255
  703. EC Firmware Minor Revision 255
  704. [System Information (Type 1) - Length 27 - Handle 0001h]
  705. Manufacturer ASUS
  706. Product Name System Product Name
  707. Version System Version
  708. UUID 00000000-0000-0000-0000-000000000000
  709. Wakeup Type Power Switch
  710. SKUNumber SKU
  711. [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
  712. Manufacturer ASUSTeK COMPUTER INC.
  713. Product PRIME B550M-A (WI-FI)
  714. Version Rev X.0x
  715. Feature Flags 09h
  716. -2141931808: - -2141931760: - 7
  717. êÆü
  718. Location Default string
  719. Chassis Handle 0003h
  720. Board Type 0ah - Processor/Memory Module
  721. Number of Child Handles 0
  722. [System Enclosure (Type 3) - Length 22 - Handle 0003h]
  723. Manufacturer Default string
  724. Chassis Type Desktop
  725. Version Default string
  726. Bootup State Safe
  727. Power Supply State Safe
  728. Thermal State Safe
  729. Security Status None
  730. OEM Defined 0
  731. Height 0U
  732. Number of Power Cords 1
  733. Number of Contained Elements 0
  734. Contained Element Size 3
  735. [Onboard Devices Information (Type 10) - Length 6 - Handle 0023h]
  736. Number of Devices 1
  737. 01: Type Video [enabled]
  738. [OEM Strings (Type 11) - Length 5 - Handle 0024h]
  739. Number of Strings 8
  740. 1 Default string
  741. 2 Default string
  742. 3 Nanjing
  743. 4 Default string
  744. 5 Default string
  745. 6 Default string
  746. 7 Default string
  747. 8 Default string
  748. [System Configuration Options (Type 12) - Length 5 - Handle 0025h]
  749. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 002ah]
  750. [Physical Memory Array (Type 16) - Length 23 - Handle 002bh]
  751. Location 03h - SystemBoard/Motherboard
  752. Use 03h - System Memory
  753. Memory Error Correction 03h - None
  754. Maximum Capacity 134217728KB
  755. Memory Error Inf Handle 002ah
  756. Number of Memory Devices 4
  757. [Memory Array Mapped Address (Type 19) - Length 31 - Handle 002ch]
  758. Starting Address 00000000h
  759. Ending Address 0033ffffh
  760. Memory Array Handle 002bh
  761. Partition Width 02
  762. [Memory Array Mapped Address (Type 19) - Length 31 - Handle 002dh]
  763. Starting Address 00400000h
  764. Ending Address 010bffffh
  765. Memory Array Handle 002bh
  766. Partition Width 02
  767. [Cache Information (Type 7) - Length 27 - Handle 002eh]
  768. Socket Designation L1 - Cache
  769. Cache Configuration 0180h - WB Enabled Int NonSocketed L1
  770. Maximum Cache Size 0180h - 384K
  771. Installed Size 0180h - 384K
  772. Supported SRAM Type 0010h - Pipeline-Burst
  773. Current SRAM Type 0010h - Pipeline-Burst
  774. Cache Speed 1ns
  775. Error Correction Type Specification Reserved
  776. System Cache Type Unified
  777. Associativity 8-way Set-Associative
  778. [Cache Information (Type 7) - Length 27 - Handle 002fh]
  779. Socket Designation L2 - Cache
  780. Cache Configuration 0181h - WB Enabled Int NonSocketed L2
  781. Maximum Cache Size 0c00h - 3072K
  782. Installed Size 0c00h - 3072K
  783. Supported SRAM Type 0010h - Pipeline-Burst
  784. Current SRAM Type 0010h - Pipeline-Burst
  785. Cache Speed 1ns
  786. Error Correction Type Specification Reserved
  787. System Cache Type Unified
  788. Associativity 8-way Set-Associative
  789. [Cache Information (Type 7) - Length 27 - Handle 0030h]
  790. Socket Designation L3 - Cache
  791. Cache Configuration 0182h - WB Enabled Int NonSocketed L3
  792. Maximum Cache Size 8200h - 32768K
  793. Installed Size 8200h - 32768K
  794. Supported SRAM Type 0010h - Pipeline-Burst
  795. Current SRAM Type 0010h - Pipeline-Burst
  796. Cache Speed 1ns
  797. Error Correction Type Specification Reserved
  798. System Cache Type Unified
  799. Associativity 16-way Set-Associative
  800. [Processor Information (Type 4) - Length 48 - Handle 0031h]
  801. Socket Designation AM4
  802. Processor Type Central Processor
  803. Processor Family 6bh - Specification Reserved
  804. Processor Manufacturer Advanced Micro Devices, Inc.
  805. Processor ID 100f8700fffb8b17
  806. Processor Version AMD Ryzen 5 3600 6-Core Processor
  807. Processor Voltage 8bh - 1.1V
  808. External Clock 100MHz
  809. Max Speed 4200MHz
  810. Current Speed 3600MHz
  811. Status Enabled Populated
  812. Processor Upgrade Specification Reserved
  813. L1 Cache Handle 002eh
  814. L2 Cache Handle 002fh
  815. L3 Cache Handle 0030h
  816. Part Number Unknown
  817. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0032h]
  818. [Memory Device (Type 17) - Length 84 - Handle 0033h]
  819. Physical Memory Array Handle 002bh
  820. Memory Error Info Handle 0032h
  821. Form Factor 02h - Unknown
  822. Device Locator DIMM_A1
  823. Bank Locator BANK 0
  824. Memory Type 02h - Unknown
  825. Type Detail 0004h - Unknown
  826. Speed 0MHz
  827. Manufacturer Unknown
  828. Part Number Unknown
  829. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0034h]
  830. [Memory Device (Type 17) - Length 84 - Handle 0035h]
  831. Physical Memory Array Handle 002bh
  832. Memory Error Info Handle 0034h
  833. Total Width 64 bits
  834. Data Width 64 bits
  835. Size 8192MB
  836. Form Factor 09h - DIMM
  837. Device Locator DIMM_A2
  838. Bank Locator BANK 1
  839. Memory Type 1ah - Specification Reserved
  840. Type Detail 4080h - Synchronous
  841. Speed 2133MHz
  842. Manufacturer Corsair
  843. Part Number CMK16GX4M2D3600C18
  844. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0036h]
  845. Starting Address 00000000h
  846. Ending Address 00ffffffh
  847. Memory Device Handle 0035h
  848. Mem Array Mapped Adr Handle 002dh
  849. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0037h]
  850. [Memory Device (Type 17) - Length 84 - Handle 0038h]
  851. Physical Memory Array Handle 002bh
  852. Memory Error Info Handle 0037h
  853. Form Factor 02h - Unknown
  854. Device Locator DIMM_B1
  855. Bank Locator BANK 2
  856. Memory Type 02h - Unknown
  857. Type Detail 0004h - Unknown
  858. Speed 0MHz
  859. Manufacturer Unknown
  860. Part Number Unknown
  861. [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0039h]
  862. [Memory Device (Type 17) - Length 84 - Handle 003ah]
  863. Physical Memory Array Handle 002bh
  864. Memory Error Info Handle 0039h
  865. Total Width 64 bits
  866. Data Width 64 bits
  867. Size 8192MB
  868. Form Factor 09h - DIMM
  869. Device Locator DIMM_B2
  870. Bank Locator BANK 3
  871. Memory Type 1ah - Specification Reserved
  872. Type Detail 4080h - Synchronous
  873. Speed 2133MHz
  874. Manufacturer Corsair
  875. Part Number CMK16GX4M2D3600C18
  876. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 003bh]
  877. Starting Address 00000000h
  878. Ending Address 00ffffffh
  879. Memory Device Handle 003ah
  880. Mem Array Mapped Adr Handle 002dh
  881.  
  882. ========================== Dump #1: Extra #1 ===========================
  883.  
  884. 10: kd> !verifier
  885. Verify Flags Level 0x00000000
  886. STANDARD FLAGS:
  887. [X] (0x00000000) Automatic Checks
  888. [ ] (0x00000001) Special pool
  889. [ ] (0x00000002) Force IRQL checking
  890. [ ] (0x00000008) Pool tracking
  891. [ ] (0x00000010) I/O verification
  892. [ ] (0x00000020) Deadlock detection
  893. [ ] (0x00000080) DMA checking
  894. [ ] (0x00000100) Security checks
  895. [ ] (0x00000800) Miscellaneous checks
  896. [ ] (0x00020000) DDI compliance checking
  897. ADDITIONAL FLAGS:
  898. [ ] (0x00000004) Randomized low resources simulation
  899. [ ] (0x00000200) Force pending I/O requests
  900. [ ] (0x00000400) IRP logging
  901. [ ] (0x00002000) Invariant MDL checking for stack
  902. [ ] (0x00004000) Invariant MDL checking for driver
  903. [ ] (0x00008000) Power framework delay fuzzing
  904. [ ] (0x00010000) Port/miniport interface checking
  905. [ ] (0x00040000) Systematic low resources simulation
  906. [ ] (0x00080000) DDI compliance checking (additional)
  907. [ ] (0x00200000) NDIS/WIFI verification
  908. [ ] (0x00800000) Kernel synchronization delay fuzzing
  909. [ ] (0x01000000) VM switch verification
  910. [ ] (0x02000000) Code integrity checks
  911. [X] Indicates flag is enabled
  912. Summary of All Verifier Statistics
  913. RaiseIrqls 0x0
  914. AcquireSpinLocks 0x0
  915. Synch Executions 0x0
  916. Trims 0x0
  917. Pool Allocations Attempted 0x0
  918. Pool Allocations Succeeded 0x0
  919. Pool Allocations Succeeded SpecialPool 0x0
  920. Pool Allocations With NO TAG 0x0
  921. Pool Allocations Failed 0x0
  922. Current paged pool allocations 0x0 for 00000000 bytes
  923. Peak paged pool allocations 0x0 for 00000000 bytes
  924. Current nonpaged pool allocations 0x0 for 00000000 bytes
  925. Peak nonpaged pool allocations 0x0 for 00000000 bytes
  926.  
  927. ========================== Dump #1: Extra #2 ===========================
  928.  
  929. 10: kd> !thread
  930. THREAD ffff8a06069540c0 Cid 428c.48f0 Teb: 000000c3fb25e000 Win32Thread: ffff8a05f7431f00 WAIT: (WrUserRequest) UserMode Non-Alertable
  931. ffff8a05f704ebc0 QueueObject
  932. Not impersonating
  933. GetUlongFromAddress: unable to read from fffff8054a21151c
  934. Owning Process ffff8a05fce76300 Image: ArmouryCrate.UserSessionHelper.exe
  935. Attached Process N/A Image: N/A
  936. Wait Start TickCount 3779753 Ticks: 0
  937. Context Switch Count 2827724 IdealProcessor: 0
  938. ReadMemory error: Cannot get nt!KeMaximumIncrement value.
  939. UserTime 00:00:00.000
  940. KernelTime 00:00:00.000
  941. Win32 Start Address 0x00007ffb66bb1b70
  942. Stack Init ffff83878dcebc90 Current ffff83878dcead50
  943. Base ffff83878dcec000 Limit ffff83878dce6000 Call 0000000000000000
  944. Priority 9 BasePriority 8 PriorityDecrement 0 IoPriority 2 PagePriority 5
  945. Child-SP RetAddr : Args to Child : Call Site
  946. ffff8387`8dcead90 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x0
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement