Guest User

Untitled

a guest
Jul 4th, 2020
95
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 91.54 KB | None | 0 0
  1. ========================== AUTO DUMP ANALYZER ==========================
  2. Auto Dump Analyzer
  3. Version: 0.91
  4. Time to analyze file(s): 00 hours and 02 minutes and 23 seconds
  5.  
  6. ================================ SYSTEM ================================
  7. SKU: [Removed]
  8.  
  9. ================================= BIOS =================================
  10. VENDOR: American Megatrends Inc.
  11. VERSION: 1502
  12. DATE: 02/21/2020
  13.  
  14. ============================= MOTHERBOARD ==============================
  15. MANUFACTURER: ASUSTeK COMPUTER INC.
  16. PRODUCT: ROG STRIX Z390-E GAMING
  17. VERSION: Rev 1.xx
  18.  
  19. ================================= RAM ==================================
  20. Size Speed Manufacturer Part No.
  21. -------------- -------------- ------------------- ----------------------
  22. 8192MB 2666MHz Corsair CMK16GX4M2A2666C16
  23. 8192MB 2666MHz Corsair CMK16GX4M2A2666C16
  24. 8192MB 2666MHz Corsair CMK16GX4M2A2666C16
  25. 8192MB 2666MHz Corsair CMK16GX4M2A2666C16
  26.  
  27. ================================= CPU ==================================
  28. Processor Version: Intel(R) Core(TM) i7-9700K CPU @ 3.60GHz
  29. COUNT: 8
  30. MHZ: 3600
  31. VENDOR: GenuineIntel
  32. FAMILY: 6
  33. MODEL: 9e
  34. STEPPING: c
  35. MICROCODE: 6,9e,c,0 (F,M,S,R) SIG: CA'00000000 (cache) CA'00000000 (init)
  36.  
  37. ================================== OS ==================================
  38. Product: WinNt, suite: TerminalServer SingleUserTS
  39. Built by: 19041.1.amd64fre.vb_release.191206-1406
  40. BUILD_VERSION: 10.0.19041.329 (WinBuild.160101.0800)
  41. BUILD: 19041
  42. SERVICEPACK: 329
  43. PLATFORM_TYPE: x64
  44. NAME: Windows 10
  45. EDITION: Windows 10 WinNt TerminalServer SingleUserTS
  46. BUILD_TIMESTAMP: unknown_date
  47. BUILDDATESTAMP: 160101.0800
  48. BUILDLAB: WinBuild
  49. BUILDOSVER: 10.0.19041.329
  50.  
  51. =============================== DEBUGGER ===============================
  52. Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
  53. Copyright (c) Microsoft Corporation. All rights reserved.
  54.  
  55. =============================== COMMENTS ===============================
  56. * Information gathered from different dump files may be different. If
  57. Windows updates between two dump files, two or more OS versions may
  58. be shown above.
  59. * If the user updates the BIOS between dump files, two or more versions
  60. and dates may be shown above.
  61. * More RAM information can be found below in a full BIOS section.
  62.  
  63. ========================================================================
  64. ======================= Dump #1: ANALYZE VERBOSE =======================
  65. ====================== File: 070320-10906-01.dmp =======================
  66. ========================================================================
  67.  
  68. Mini Kernel Dump File: Only registers and stack trace are available
  69. Windows 10 Kernel Version 19041 MP (8 procs) Free x64
  70. Kernel base = 0xfffff807`76a00000 PsLoadedModuleList = 0xfffff807`7762a2b0
  71. Debug session time: Fri Jul 3 16:27:47.831 2020 (UTC - 4:00)
  72. System Uptime: 0 days 0:02:02.532
  73.  
  74. BugCheck 1E, {ffffffffc0000005, fffff80776ff922a, 0, ffffffffffffffff}
  75. Probably caused by : memory_corruption
  76. Followup: memory_corruption
  77.  
  78. KMODE_EXCEPTION_NOT_HANDLED (1e)
  79. This is a very common bugcheck. Usually the exception address pinpoints
  80. the driver/function that caused the problem. Always note this address
  81. as well as the link date of the driver/image that contains this address.
  82.  
  83. Arguments:
  84. Arg1: ffffffffc0000005, The exception code that was not handled
  85. Arg2: fffff80776ff922a, The address that the exception occurred at
  86. Arg3: 0000000000000000, Parameter 0 of the exception
  87. Arg4: ffffffffffffffff, Parameter 1 of the exception
  88.  
  89. Debugging Details:
  90. DUMP_CLASS: 1
  91. DUMP_QUALIFIER: 400
  92. DUMP_TYPE: 2
  93. READ_ADDRESS: fffff807776fa388: Unable to get MiVisibleState
  94. ffffffffffffffff
  95. EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.
  96. FAULTING_IP:
  97. nt!ObpReferenceObjectByHandleWithTag+24a
  98. fffff807`76ff922a c3 ret
  99. EXCEPTION_PARAMETER2: ffffffffffffffff
  100. BUGCHECK_STR: 0x1E_c0000005_R
  101. CUSTOMER_CRASH_COUNT: 1
  102. DEFAULT_BUCKET_ID: CODE_CORRUPTION
  103.  
  104. PROCESS_NAME: RuneLite.exe
  105.  
  106. CURRENT_IRQL: 0
  107. LAST_CONTROL_TRANSFER: from fffff80776e2edf9 to fffff80776ddda20
  108. STACK_TEXT:
  109. fffff98f`62756dd8 fffff807`76e2edf9 : 00000000`0000001e ffffffff`c0000005 fffff807`76ff922a 00000000`00000000 : nt!KeBugCheckEx
  110. fffff98f`62756de0 fffff807`76defa6c : 00000000`00000000 00000000`00000001 fffff98f`62757670 00000001`00000000 : nt!KiDispatchException+0x1b3d59
  111. fffff98f`627574a0 fffff807`76deb7a0 : 0000023b`e374bb30 0000023b`e3731970 0000023b`e3731980 0000023b`e3731f70 : nt!KiExceptionDispatch+0x12c
  112. fffff98f`62757680 fffff807`76ff922a : 8b0a7b3d`50508b07 00000000`00001410 00000000`00000000 ffff8b0a`79dbb080 : nt!KiGeneralProtectionFault+0x320
  113. fffff98f`62757810 8b0a7b3d`50508b07 : 00000000`00001410 00000000`00000000 ffff8b0a`79dbb080 fffff98f`62757a80 : nt!ObpReferenceObjectByHandleWithTag+0x24a
  114. fffff98f`62757818 00000000`00001410 : 00000000`00000000 ffff8b0a`79dbb080 fffff98f`62757a80 00000000`00000088 : 0x8b0a7b3d`50508b07
  115. fffff98f`62757820 00000000`00000000 : ffff8b0a`79dbb080 fffff98f`62757a80 00000000`00000088 0000023b`e374bb20 : 0x1410
  116. STACK_COMMAND: kb
  117. CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
  118. fffff80776d84f1e-fffff80776d84f21 4 bytes - nt!MiFreeUltraMapping+32
  119. [ a0 7d fb f6:40 ac 58 b1 ]
  120. 4 errors : !nt (fffff80776d84f1e-fffff80776d84f21)
  121. MODULE_NAME: memory_corruption
  122.  
  123. IMAGE_NAME: memory_corruption
  124.  
  125. FOLLOWUP_NAME: memory_corruption
  126. DEBUG_FLR_IMAGE_TIMESTAMP: 0
  127. MEMORY_CORRUPTOR: LARGE
  128. FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
  129. BUCKET_ID: MEMORY_CORRUPTION_LARGE
  130. PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
  131. TARGET_TIME: 2020-07-03T20:27:47.000Z
  132. SUITE_MASK: 272
  133. PRODUCT_TYPE: 1
  134. USER_LCID: 0
  135. FAILURE_ID_HASH_STRING: km:memory_corruption_large
  136. FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
  137. Followup: memory_corruption
  138.  
  139. ====================== Dump #1: 3RD PARTY DRIVERS ======================
  140.  
  141. Sep 12 1975 - klmouflt.sys - Kaspersky Mouse Device Filter https://www.kaspersky.com/
  142. May 05 2007 - klwtp.sys - Kaspersky WFP Network Connection Filter Driver https://www.kaspersky.com/
  143. Apr 13 2008 - klbackupdisk.sys - Kaspersky Backup Disk Filter https://www.kaspersky.com/
  144. Jun 15 2009 - pwdrvio.sys - MiniTool Partition Wizard https://www.partitionwizard.com/
  145. Jun 29 2011 - mi2c.sys - WINI2C-DDC Kernel Mode driver (AOC International GmbH)
  146. Aug 22 2012 - AsIO.sys - ASUS Input Output driver http://www.asus.com/
  147. Jan 07 2015 - klim6.sys - Kaspersky Lab Intermediate Network Driver https://www.kaspersky.com/
  148. May 16 2016 - LifeCamTrueColor.sys - Microsoft LifeCam TrueColor driver
  149. Jul 06 2016 - ALSysIO64.sys - Arthur Liberman System Input Output driver - VIPRE Internet Security or Adobe Photoshop Elements
  150. Feb 12 2018 - MsIo64.sys - MSI Gaming App driver
  151. Feb 15 2018 - AmdTools64.sys - AMD Special Tools driver
  152. Apr 17 2018 - iaLPSS2i_GPIO2_CNL.sys - Intel(R) Serial IO GPIO driver
  153. Jan 22 2019 - klupd_klif_kimul.sys - Kaspersky Kernel Heuristics Engine https://www.kaspersky.com/
  154. Feb 15 2019 - cm_km.sys - Kaspersky Cryptographic Module Driver
  155. Feb 26 2019 - klwfp.sys - Kaspersky Network filtering component https://www.kaspersky.com/
  156. Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
  157. Mar 26 2019 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
  158. Apr 09 2019 - AsIO2.sys - Asus Input Output driver
  159. Apr 22 2019 - GLCKIO2.sys - ASUS RGB driver
  160. Apr 24 2019 - iqvw64e.sys - Intel Network Adapter Diagnostic driver http://www.intel.com/
  161. May 13 2019 - AsUpIO.sys - ASUS Update Input Output driver http://www.asus.com/
  162. May 16 2019 - dump_IaNVMe.sys - (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  163. May 16 2019 - IaNVMe.sys - Intel NVMe Storport Miniport Module driver
  164. Jun 27 2019 - e1d68x64.sys - Intel(R) Gigabit Adapter driver
  165. Sep 19 2019 - RTCore64.sys - !!! Overclocking Software - RivaTuner - MSI Afterburner http://www.msi.com/ or EVGA Precision X http://www.evga.com/
  166. Oct 14 2019 - ene.sys - (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
  167. Dec 09 2019 - iaStorAC.sys - Intel Rapid Storage Technology driver
  168. Dec 25 2019 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
  169. Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
  170. Jan 26 2020 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
  171. Feb 17 2020 - RzCommon.sys - Razer Common driver (Razer Inc)
  172. Feb 17 2020 - RzDev_005c.sys - Razer driver
  173. Feb 17 2020 - RzDev_0209.sys - Razer driver
  174. Feb 25 2020 - IntcDAud.sys - Intel Display Audio Driver http://www.intel.com/
  175. Mar 13 2020 - klif.sys - Kaspersky Lab Intruder Filter driver https://www.kaspersky.com/
  176. Mar 20 2020 - klupd_klif_mark.sys - Kaspersky Lab Anti-Rootkit Engine https://www.kaspersky.com
  177. Mar 22 2020 - klupd_klif_arkmon.sys - Kaspersky Anti-Virus Anti-Rootkit Monitor https://www.kaspersky.com/
  178. Apr 22 2020 - ibtusb.sys - Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
  179. Apr 28 2020 - klgse.sys - Kaspersky Security Extender driver
  180. Apr 28 2020 - klhk.sys - Kaspersky Lab service driver https://www.kaspersky.com/
  181. Apr 29 2020 - klids.sys - Kaspersky Lab IDS Engine https://www.kaspersky.com/
  182. May 07 2020 - Netwtw08.sys - Intel(R) Wireless Networking driver
  183. Jun 09 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
  184. Jun 16 2020 - igdkmd64.sys - Intel HD graphics driver
  185. Jun 17 2020 - klupd_klif_klbg.sys - Kaspersky Anti-Virus Lab Boot Guard Driver https://www.kaspersky.com/
  186. Jun 21 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
  187. Nov 16 2021 - klkbdflt.sys - Kaspersky Keyboard Device Filter https://www.kaspersky.com/
  188. Mar 13 2029 - klpd.sys - Kaspersky Format Recognizer https://www.kaspersky.com/
  189. Aug 13 2029 - klflt.sys - Kaspersky Filter Core https://www.kaspersky.com/
  190. ***** Invalid (946E4501) - klbackupflt.sys - Kaspersky Backup File Filter https://www.kaspersky.com/
  191. ***** Invalid (B1F414C8) - kldisk.sys - Kaspersky Virtual Disk driver https://www.kaspersky.com/
  192. ***** Invalid (E34C73F4) - kneps.sys - Kaspersky KNEPS Power https://www.kaspersky.com/
  193.  
  194. ================== Dump #1: 3RD PARTY DRIVERS (FULL) ===================
  195.  
  196. Image path: \SystemRoot\system32\DRIVERS\klmouflt.sys
  197. Image name: klmouflt.sys
  198. Search : https://www.google.com/search?q=klmouflt.sys
  199. ADA Info : Kaspersky Mouse Device Filter https://www.kaspersky.com/
  200. Timestamp : Fri Sep 12 1975
  201.  
  202. Image path: \SystemRoot\system32\DRIVERS\klwtp.sys
  203. Image name: klwtp.sys
  204. Search : https://www.google.com/search?q=klwtp.sys
  205. ADA Info : Kaspersky WFP Network Connection Filter Driver https://www.kaspersky.com/
  206. Timestamp : Sat May 5 2007
  207.  
  208. Image path: \SystemRoot\system32\DRIVERS\klbackupdisk.sys
  209. Image name: klbackupdisk.sys
  210. Search : https://www.google.com/search?q=klbackupdisk.sys
  211. ADA Info : Kaspersky Backup Disk Filter https://www.kaspersky.com/
  212. Timestamp : Sun Apr 13 2008
  213.  
  214. Image path: \SystemRoot\system32\pwdrvio.sys
  215. Image name: pwdrvio.sys
  216. Search : https://www.google.com/search?q=pwdrvio.sys
  217. ADA Info : MiniTool Partition Wizard https://www.partitionwizard.com/
  218. Timestamp : Mon Jun 15 2009
  219.  
  220. Image path: \??\C:\Windows\system32\drivers\mi2c.sys
  221. Image name: mi2c.sys
  222. Search : https://www.google.com/search?q=mi2c.sys
  223. ADA Info : WINI2C-DDC Kernel Mode driver (AOC International GmbH)
  224. Timestamp : Wed Jun 29 2011
  225.  
  226. Image path: \SystemRoot\SysWow64\drivers\AsIO.sys
  227. Image name: AsIO.sys
  228. Search : https://www.google.com/search?q=AsIO.sys
  229. ADA Info : ASUS Input Output driver http://www.asus.com/
  230. Timestamp : Wed Aug 22 2012
  231.  
  232. Image path: \SystemRoot\system32\DRIVERS\klim6.sys
  233. Image name: klim6.sys
  234. Search : https://www.google.com/search?q=klim6.sys
  235. ADA Info : Kaspersky Lab Intermediate Network Driver https://www.kaspersky.com/
  236. Timestamp : Wed Jan 7 2015
  237.  
  238. Image path: \SystemRoot\system32\DRIVERS\LifeCamTrueColor.sys
  239. Image name: LifeCamTrueColor.sys
  240. Search : https://www.google.com/search?q=LifeCamTrueColor.sys
  241. ADA Info : Microsoft LifeCam TrueColor driver
  242. Timestamp : Mon May 16 2016
  243.  
  244. Image path: \??\C:\Users\Stuar\AppData\Local\Temp\ALSysIO64.sys
  245. Image name: ALSysIO64.sys
  246. Search : https://www.google.com/search?q=ALSysIO64.sys
  247. ADA Info : Arthur Liberman System Input Output driver - VIPRE Internet Security or Adobe Photoshop Elements
  248. Timestamp : Wed Jul 6 2016
  249.  
  250. Image path: \??\C:\WINDOWS\system32\drivers\MsIo64.sys
  251. Image name: MsIo64.sys
  252. Search : https://www.google.com/search?q=MsIo64.sys
  253. ADA Info : MSI Gaming App driver
  254. Timestamp : Mon Feb 12 2018
  255.  
  256. Image path: \SystemRoot\System32\drivers\AmdTools64.sys
  257. Image name: AmdTools64.sys
  258. Search : https://www.google.com/search?q=AmdTools64.sys
  259. ADA Info : AMD Special Tools driver
  260. Timestamp : Thu Feb 15 2018
  261.  
  262. Mapped memory image file: C:\ProgramData\dbg\sym\iaLPSS2i_GPIO2_CNL.sys\5AD59D1721000\iaLPSS2i_GPIO2_CNL.sys
  263. Image path: \SystemRoot\System32\drivers\iaLPSS2i_GPIO2_CNL.sys
  264. Image name: iaLPSS2i_GPIO2_CNL.sys
  265. Search : https://www.google.com/search?q=iaLPSS2i_GPIO2_CNL.sys
  266. ADA Info : Intel(R) Serial IO GPIO driver
  267. Timestamp : Tue Apr 17 2018
  268. File version: 30.100.1816.3
  269. Product version: 30.100.1816.3
  270. File flags: 8 (Mask 3F) Private
  271. File OS: 40004 NT Win32
  272. File type: 3.7 Driver
  273. File date: 00000000.00000000
  274. CompanyName: Intel Corporation
  275. ProductName: Intel(R) Serial IO Driver
  276. InternalName: iaLPSS2i_GPIO2_CNL.sys
  277. OriginalFilename: iaLPSS2i_GPIO2_CNL.sys
  278. ProductVersion: 30.100.1816.3
  279. FileVersion: 30.100.1816.3
  280. FileDescription: Intel(R) Serial IO GPIO Driver v2
  281. LegalCopyright: Copyright © 2015, Intel Corporation.
  282.  
  283. Image path: \SystemRoot\System32\Drivers\klupd_klif_kimul.sys
  284. Image name: klupd_klif_kimul.sys
  285. Search : https://www.google.com/search?q=klupd_klif_kimul.sys
  286. ADA Info : Kaspersky Kernel Heuristics Engine https://www.kaspersky.com/
  287. Timestamp : Tue Jan 22 2019
  288.  
  289. Image path: \SystemRoot\system32\DRIVERS\cm_km.sys
  290. Image name: cm_km.sys
  291. Search : https://www.google.com/search?q=cm_km.sys
  292. ADA Info : Kaspersky Cryptographic Module Driver
  293. Timestamp : Fri Feb 15 2019
  294.  
  295. Image path: \SystemRoot\system32\DRIVERS\klwfp.sys
  296. Image name: klwfp.sys
  297. Search : https://www.google.com/search?q=klwfp.sys
  298. ADA Info : Kaspersky Network filtering component https://www.kaspersky.com/
  299. Timestamp : Tue Feb 26 2019
  300.  
  301. Image path: \SystemRoot\system32\drivers\nvvad64v.sys
  302. Image name: nvvad64v.sys
  303. Search : https://www.google.com/search?q=nvvad64v.sys
  304. ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
  305. Timestamp : Thu Mar 14 2019
  306.  
  307. Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
  308. Image name: RTKVHD64.sys
  309. Search : https://www.google.com/search?q=RTKVHD64.sys
  310. ADA Info : Realtek Audio System driver https://www.realtek.com/en/
  311. Timestamp : Tue Mar 26 2019
  312.  
  313. Image path: \??\C:\Windows\system32\drivers\AsIO2.sys
  314. Image name: AsIO2.sys
  315. Search : https://www.google.com/search?q=AsIO2.sys
  316. ADA Info : Asus Input Output driver
  317. Timestamp : Tue Apr 9 2019
  318.  
  319. Image path: \??\C:\Windows\system32\drivers\GLCKIO2.sys
  320. Image name: GLCKIO2.sys
  321. Search : https://www.google.com/search?q=GLCKIO2.sys
  322. ADA Info : ASUS RGB driver
  323. Timestamp : Mon Apr 22 2019
  324.  
  325. Image path: \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys
  326. Image name: iqvw64e.sys
  327. Search : https://www.google.com/search?q=iqvw64e.sys
  328. ADA Info : Intel Network Adapter Diagnostic driver http://www.intel.com/
  329. Timestamp : Wed Apr 24 2019
  330.  
  331. Image path: \SystemRoot\SysWow64\drivers\AsUpIO.sys
  332. Image name: AsUpIO.sys
  333. Search : https://www.google.com/search?q=AsUpIO.sys
  334. ADA Info : ASUS Update Input Output driver http://www.asus.com/
  335. Timestamp : Mon May 13 2019
  336.  
  337. Image path: \SystemRoot\System32\drivers\dump_IaNVMe.sys
  338. Image name: dump_IaNVMe.sys
  339. Search : https://www.google.com/search?q=dump_IaNVMe.sys
  340. ADA Info : (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  341. Timestamp : Thu May 16 2019
  342.  
  343. Image path: \SystemRoot\System32\drivers\IaNVMe.sys
  344. Image name: IaNVMe.sys
  345. Search : https://www.google.com/search?q=IaNVMe.sys
  346. ADA Info : Intel NVMe Storport Miniport Module driver
  347. Timestamp : Thu May 16 2019
  348.  
  349. Image path: \SystemRoot\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_61aa07b8041d598f\e1d68x64.sys
  350. Image name: e1d68x64.sys
  351. Search : https://www.google.com/search?q=e1d68x64.sys
  352. ADA Info : Intel(R) Gigabit Adapter driver
  353. Timestamp : Thu Jun 27 2019
  354.  
  355. Image path: \??\C:\Program Files (x86)\MSI Afterburner\RTCore64.sys
  356. Image name: RTCore64.sys
  357. Search : https://www.google.com/search?q=RTCore64.sys
  358. ADA Info : !!! Overclocking Software - RivaTuner - MSI Afterburner http://www.msi.com/ or EVGA Precision X http://www.evga.com/
  359. Timestamp : Thu Sep 19 2019
  360.  
  361. Image path: \??\C:\WINDOWS\system32\drivers\ene.sys
  362. Image name: ene.sys
  363. Search : https://www.google.com/search?q=ene.sys
  364. ADA Info : (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
  365. Timestamp : Mon Oct 14 2019
  366.  
  367. Image path: \SystemRoot\System32\drivers\iaStorAC.sys
  368. Image name: iaStorAC.sys
  369. Search : https://www.google.com/search?q=iaStorAC.sys
  370. ADA Info : Intel Rapid Storage Technology driver
  371. Timestamp : Mon Dec 9 2019
  372.  
  373. Image path: \SystemRoot\System32\drivers\TeeDriverW8x64.sys
  374. Image name: TeeDriverW8x64.sys
  375. Search : https://www.google.com/search?q=TeeDriverW8x64.sys
  376. ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
  377. Timestamp : Wed Dec 25 2019
  378.  
  379. Image path: \SystemRoot\System32\drivers\nvvhci.sys
  380. Image name: nvvhci.sys
  381. Search : https://www.google.com/search?q=nvvhci.sys
  382. ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
  383. Timestamp : Fri Jan 10 2020
  384.  
  385. Image path: \SystemRoot\System32\DriverStore\FileRepository\nvppc.inf_amd64_6ba0cf1d869f4c36\UcmCxUcsiNvppc.sys
  386. Image name: UcmCxUcsiNvppc.sys
  387. Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
  388. ADA Info : NVIDIA USB Type-C Port Policy Controller driver
  389. Timestamp : Sun Jan 26 2020
  390.  
  391. Image path: \SystemRoot\System32\drivers\RzCommon.sys
  392. Image name: RzCommon.sys
  393. Search : https://www.google.com/search?q=RzCommon.sys
  394. ADA Info : Razer Common driver (Razer Inc)
  395. Timestamp : Mon Feb 17 2020
  396.  
  397. Image path: \SystemRoot\System32\drivers\RzDev_005c.sys
  398. Image name: RzDev_005c.sys
  399. Search : https://www.google.com/search?q=RzDev_005c.sys
  400. ADA Info : Razer driver
  401. Timestamp : Mon Feb 17 2020
  402.  
  403. Image path: \SystemRoot\System32\drivers\RzDev_0209.sys
  404. Image name: RzDev_0209.sys
  405. Search : https://www.google.com/search?q=RzDev_0209.sys
  406. ADA Info : Razer driver
  407. Timestamp : Mon Feb 17 2020
  408.  
  409. Image path: \SystemRoot\System32\DriverStore\FileRepository\intcdaud.inf_amd64_1b570d7b9a790b1a\IntcDAud.sys
  410. Image name: IntcDAud.sys
  411. Search : https://www.google.com/search?q=IntcDAud.sys
  412. ADA Info : Intel Display Audio Driver http://www.intel.com/
  413. Timestamp : Tue Feb 25 2020
  414.  
  415. Image path: \SystemRoot\system32\DRIVERS\klif.sys
  416. Image name: klif.sys
  417. Search : https://www.google.com/search?q=klif.sys
  418. ADA Info : Kaspersky Lab Intruder Filter driver https://www.kaspersky.com/
  419. Timestamp : Fri Mar 13 2020
  420.  
  421. Image path: \SystemRoot\System32\Drivers\klupd_klif_mark.sys
  422. Image name: klupd_klif_mark.sys
  423. Search : https://www.google.com/search?q=klupd_klif_mark.sys
  424. ADA Info : Kaspersky Lab Anti-Rootkit Engine https://www.kaspersky.com
  425. Timestamp : Fri Mar 20 2020
  426.  
  427. Image path: \SystemRoot\System32\Drivers\klupd_klif_arkmon.sys
  428. Image name: klupd_klif_arkmon.sys
  429. Search : https://www.google.com/search?q=klupd_klif_arkmon.sys
  430. ADA Info : Kaspersky Anti-Virus Anti-Rootkit Monitor https://www.kaspersky.com/
  431. Timestamp : Sun Mar 22 2020
  432.  
  433. Image path: \SystemRoot\system32\DRIVERS\ibtusb.sys
  434. Image name: ibtusb.sys
  435. Search : https://www.google.com/search?q=ibtusb.sys
  436. ADA Info : Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
  437. Timestamp : Wed Apr 22 2020
  438.  
  439. Image path: \SystemRoot\system32\DRIVERS\klgse.sys
  440. Image name: klgse.sys
  441. Search : https://www.google.com/search?q=klgse.sys
  442. ADA Info : Kaspersky Security Extender driver
  443. Timestamp : Tue Apr 28 2020
  444.  
  445. Image path: \SystemRoot\system32\DRIVERS\klhk.sys
  446. Image name: klhk.sys
  447. Search : https://www.google.com/search?q=klhk.sys
  448. ADA Info : Kaspersky Lab service driver https://www.kaspersky.com/
  449. Timestamp : Tue Apr 28 2020
  450.  
  451. Image path: \??\C:\ProgramData\Kaspersky Lab\AVP20.0\Bases\klids.sys
  452. Image name: klids.sys
  453. Search : https://www.google.com/search?q=klids.sys
  454. ADA Info : Kaspersky Lab IDS Engine https://www.kaspersky.com/
  455. Timestamp : Wed Apr 29 2020
  456.  
  457. Image path: \SystemRoot\System32\drivers\Netwtw08.sys
  458. Image name: Netwtw08.sys
  459. Search : https://www.google.com/search?q=Netwtw08.sys
  460. ADA Info : Intel(R) Wireless Networking driver
  461. Timestamp : Thu May 7 2020
  462.  
  463. Image path: \SystemRoot\system32\drivers\nvhda64v.sys
  464. Image name: nvhda64v.sys
  465. Search : https://www.google.com/search?q=nvhda64v.sys
  466. ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
  467. Timestamp : Tue Jun 9 2020
  468.  
  469. Image path: \SystemRoot\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_ed7038d3c09dda61\igdkmd64.sys
  470. Image name: igdkmd64.sys
  471. Search : https://www.google.com/search?q=igdkmd64.sys
  472. ADA Info : Intel HD graphics driver
  473. Timestamp : Tue Jun 16 2020
  474.  
  475. Image path: \SystemRoot\System32\Drivers\klupd_klif_klbg.sys
  476. Image name: klupd_klif_klbg.sys
  477. Search : https://www.google.com/search?q=klupd_klif_klbg.sys
  478. ADA Info : Kaspersky Anti-Virus Lab Boot Guard Driver https://www.kaspersky.com/
  479. Timestamp : Wed Jun 17 2020
  480.  
  481. Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2b99a29f071e5d25\nvlddmkm.sys
  482. Image name: nvlddmkm.sys
  483. Search : https://www.google.com/search?q=nvlddmkm.sys
  484. ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
  485. Timestamp : Sun Jun 21 2020
  486.  
  487. Image path: \SystemRoot\system32\DRIVERS\klkbdflt.sys
  488. Image name: klkbdflt.sys
  489. Search : https://www.google.com/search?q=klkbdflt.sys
  490. ADA Info : Kaspersky Keyboard Device Filter https://www.kaspersky.com/
  491. Timestamp : Tue Nov 16 2021
  492.  
  493. Image path: \SystemRoot\system32\DRIVERS\klpd.sys
  494. Image name: klpd.sys
  495. Search : https://www.google.com/search?q=klpd.sys
  496. ADA Info : Kaspersky Format Recognizer https://www.kaspersky.com/
  497. Timestamp : Tue Mar 13 2029
  498.  
  499. Image path: \SystemRoot\system32\DRIVERS\klflt.sys
  500. Image name: klflt.sys
  501. Search : https://www.google.com/search?q=klflt.sys
  502. ADA Info : Kaspersky Filter Core https://www.kaspersky.com/
  503. Timestamp : Mon Aug 13 2029
  504.  
  505. Image path: \SystemRoot\system32\DRIVERS\klbackupflt.sys
  506. Image name: klbackupflt.sys
  507. Search : https://www.google.com/search?q=klbackupflt.sys
  508. ADA Info : Kaspersky Backup File Filter https://www.kaspersky.com/
  509. Timestamp : ***** Invalid (946E4501)
  510.  
  511. Image path: \SystemRoot\system32\DRIVERS\kldisk.sys
  512. Image name: kldisk.sys
  513. Search : https://www.google.com/search?q=kldisk.sys
  514. ADA Info : Kaspersky Virtual Disk driver https://www.kaspersky.com/
  515. Timestamp : ***** Invalid (B1F414C8)
  516.  
  517. Image path: \SystemRoot\system32\DRIVERS\kneps.sys
  518. Image name: kneps.sys
  519. Search : https://www.google.com/search?q=kneps.sys
  520. ADA Info : Kaspersky KNEPS Power https://www.kaspersky.com/
  521. Timestamp : ***** Invalid (E34C73F4)
  522.  
  523. ====================== Dump #1: MICROSOFT DRIVERS ======================
  524.  
  525. ACPI.sys ACPI Driver for NT (Microsoft)
  526. acpiex.sys ACPIEx Driver (Microsoft)
  527. acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
  528. acpitime.sys ACPI Wake Alarm (Microsoft)
  529. afd.sys Ancillary Function Driver for WinSock (Microsoft)
  530. afunix.sys AF_UNIX Socket Provider driver (Microsoft)
  531. AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
  532. ahcache.sys Application Compatibility Cache (Microsoft)
  533. bam.sys BAM Kernal driver (Microsoft)
  534. BasicDisplay.sys Basic Display driver (Microsoft)
  535. BasicRender.sys Basic Render driver (Microsoft)
  536. Beep.SYS BEEP driver (Microsoft)
  537. bindflt.sys Windows Bind Filter driver (Microsoft)
  538. BOOTVID.dll VGA Boot Driver (Microsoft)
  539. bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
  540. btampm.sys Microsoft Bluetooth Audio Multiprofile Manager
  541. BthA2dp.sys Bluetooth A2DP Driver
  542. BthEnum.sys Bluetooth Bus Extender
  543. BthHfAud.sys Bluetooth Hands-free Audio Device driver (Microsoft)
  544. bthhfenum.sys Bluetooth Hands-Free Audio and Call Control HID Enumerator
  545. bthpan.sys Bluetooth Personal Area Networking
  546. BTHport.sys Bluetooth Bus driver (Microsoft)
  547. BTHUSB.sys Bluetooth Miniport driver (Microsoft)
  548. cdd.dll Canonical Display Driver (Microsoft)
  549. cdrom.sys SCSI CD-ROM Driver (Microsoft)
  550. CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
  551. CI.dll Code Integrity Module (Microsoft)
  552. CimFS.SYS Consumer IR Class Driver for eHome (Microsoft)
  553. CLASSPNP.SYS SCSI Class System Dll (Microsoft)
  554. cldflt.sys Cloud Files Mini Filter driver (Microsoft)
  555. CLFS.SYS Common Log File System Driver (Microsoft)
  556. clipsp.sys CLIP Service (Microsoft)
  557. cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
  558. cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
  559. CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
  560. condrv.sys Console Driver (Microsoft)
  561. crashdmp.sys Crash Dump driver (Microsoft)
  562. csc.sys Windows Client Side Caching driver (Microsoft)
  563. dfsc.sys DFS Namespace Client Driver (Microsoft)
  564. disk.sys PnP Disk Driver (Microsoft)
  565. drmk.sys Digital Rights Management (DRM) driver (Microsoft)
  566. dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  567. dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  568. dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
  569. dxgmms2.sys DirectX Graphics MMS
  570. EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
  571. filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
  572. fileinfo.sys FileInfo Filter Driver (Microsoft)
  573. FLTMGR.SYS Filesystem Filter Manager (Microsoft)
  574. Fs_Rec.sys File System Recognizer Driver (Microsoft)
  575. fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
  576. fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
  577. gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
  578. hal.dll Hardware Abstraction Layer DLL (Microsoft)
  579. HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
  580. HIDCLASS.SYS Hid Class Library (Microsoft)
  581. HIDPARSE.SYS Hid Parsing Library (Microsoft)
  582. hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
  583. HTTP.sys HTTP Protocol Stack (Microsoft)
  584. intelpep.sys Intel Power Engine Plugin (Microsoft)
  585. intelppm.sys Processor Device Driver (Microsoft)
  586. IntelTA.sys Intel Telemetry Driver
  587. iorate.sys I/O rate control Filter (Microsoft)
  588. kbdclass.sys Keyboard Class Driver (Microsoft)
  589. kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
  590. kd.dll Local Kernal Debugger (Microsoft)
  591. kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
  592. ks.sys Kernal CSA Library (Microsoft)
  593. ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
  594. ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
  595. ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
  596. lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
  597. luafv.sys LUA File Virtualization Filter Driver (Microsoft)
  598. mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
  599. Microsoft.Bluetooth.AvrcpTransport.sys Microsoft Bluetooth Avrcp Transport Driver
  600. Microsoft.Bluetooth.Legacy.LEEnumerator.sys Microsoft Bluetooth Legacy LE Enumerator driver (Microsoft)
  601. mmcss.sys MMCSS Driver (Microsoft)
  602. monitor.sys Monitor Driver (Microsoft)
  603. mouclass.sys Mouse Class Driver (Microsoft)
  604. mouhid.sys HID Mouse Filter Driver (Microsoft)
  605. mountmgr.sys Mount Point Manager (Microsoft)
  606. mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
  607. mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
  608. mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
  609. Msfs.SYS Mailslot driver (Microsoft)
  610. msgpioclx.sys GPIO Class Extension Driver (Microsoft)
  611. mshidkmdf.sys Pass-through HID to KMDF Filter driver (Microsoft)
  612. msisadrv.sys ISA Driver (Microsoft)
  613. mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
  614. msquic.sys Windows QUIC Driver
  615. msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
  616. mssecflt.sys Microsoft Security Events Component file system filter driver (Microsoft)
  617. mssmbios.sys System Management BIOS driver (Microsoft)
  618. mup.sys Multiple UNC Provider driver (Microsoft)
  619. ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
  620. ndiscap.sys Microsoft NDIS Packet Capture Filter Driver
  621. ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
  622. ndisuio.sys NDIS User mode I/O driver (Microsoft)
  623. NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
  624. ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
  625. NDProxy.sys NDIS Proxy driver (Microsoft)
  626. Ndu.sys Network Data Usage Monitoring driver (Microsoft)
  627. netbios.sys NetBIOS Interface driver (Microsoft)
  628. netbt.sys MBT Transport driver (Microsoft)
  629. NETIO.SYS Network I/O Subsystem (Microsoft)
  630. Npfs.SYS NPFS driver (Microsoft)
  631. npsvctrig.sys Named pipe service triggers (Microsoft)
  632. nsiproxy.sys NSI Proxy driver (Microsoft)
  633. Ntfs.sys NT File System Driver (Microsoft)
  634. ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
  635. ntosext.sys NTOS Extension Host driver (Microsoft)
  636. Null.SYS NULL Driver (Microsoft)
  637. nwifi.sys NativeWiFi Miniport Driver (Microsoft)
  638. pacer.sys QoS Packet Scheduler (Microsoft)
  639. partmgr.sys Partition driver (Microsoft)
  640. pci.sys NT Plug and Play PCI Enumerator (Microsoft)
  641. pcw.sys Performance Counter Driver (Microsoft)
  642. pdc.sys Power Dependency Coordinator Driver (Microsoft)
  643. peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
  644. portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
  645. PSHED.dll Platform Specific Hardware Error driver (Microsoft)
  646. qwavedrv.sys Quality Windows Audio Video Experience (qWave) Support driver (Microsoft)
  647. rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
  648. raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
  649. raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
  650. rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
  651. rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
  652. rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
  653. rdyboost.sys ReadyBoost Driver (Microsoft)
  654. rfcomm.sys Bluetooth RFCOMM driver (Microsoft)
  655. rspndr.sys Link-Layer Topology Responder driver (Microsoft)
  656. serenum.sys Serial Port Enumerator (Microsoft)
  657. serial.sys Serial Device Driver
  658. SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
  659. SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
  660. spaceport.sys Storage Spaces driver (Microsoft)
  661. srv2.sys Smb 2.0 Server driver (Microsoft)
  662. srvnet.sys Server Network driver (Microsoft)
  663. storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
  664. storqosflt.sys Storage QoS Filter driver (Microsoft)
  665. swenum.sys Plug and Play Software Device Enumerator (Microsoft)
  666. tbs.sys Export driver for kernel mode TPM API (Microsoft)
  667. tcpip.sys TCP/IP Protocol driver (Microsoft)
  668. tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
  669. TDI.SYS TDI Wrapper driver (Microsoft)
  670. tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
  671. tm.sys Kernel Transaction Manager driver (Microsoft)
  672. UcmCx.sys USB Connector Manager KMDF Class Extension
  673. ucx01000.sys USB Controller Extension (Microsoft)
  674. umbus.sys User-Mode Bus Enumerator (Microsoft)
  675. usbaudio.sys USB Audio Class Driver (Microsoft)
  676. usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
  677. USBD.SYS Universal Serial Bus Driver (Microsoft)
  678. UsbHub3.sys USB3 HUB driver (Microsoft)
  679. usbvideo.sys USB Video Class Driver (Microsoft)
  680. USBXHCI.SYS USB XHCI driver (Microsoft)
  681. vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
  682. Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
  683. volmgr.sys Volume Manager Driver (Microsoft)
  684. volmgrx.sys Volume Manager Extension Driver (Microsoft)
  685. volsnap.sys Volume Shadow Copy driver (Microsoft)
  686. volume.sys Volume driver (Microsoft)
  687. vwifibus.sys Virtual Wireless Bus driver (Microsoft)
  688. vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
  689. vwifimp.sys Virtual WiFi Miniport Driver (Microsoft)
  690. wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
  691. watchdog.sys Watchdog driver (Microsoft)
  692. wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
  693. Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
  694. WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
  695. wdiwifi.sys WDI Driver Framework driver (Microsoft)
  696. werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
  697. wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
  698. win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
  699. win32kbase.sys Base Win32k Kernel Driver (Microsoft)
  700. win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
  701. WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
  702. WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
  703. winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
  704. wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
  705. WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
  706. Wof.sys Windows Overlay Filter (Microsoft)
  707. WppRecorder.sys WPP Trace Recorder (Microsoft)
  708.  
  709. ====================== Dump #1: UNLOADED MODULES =======================
  710.  
  711. fffff807`73ee0000 fffff807`73eeb000 klpnpflt.sys
  712. fffff807`73ec0000 fffff807`73ed1000 MSKSSRV.sys
  713. fffff807`83580000 fffff807`8358b000 klpnpflt.sys
  714. fffff807`83560000 fffff807`83571000 MSKSSRV.sys
  715. fffff807`7e9c0000 fffff807`7e9f3000 klids.sys
  716. fffff807`7dc10000 fffff807`7dc1f000 dump_storpor
  717. fffff807`7dc50000 fffff807`7dc77000 dump_IaNVMe.
  718. fffff807`7dca0000 fffff807`7dcbe000 dump_dumpfve
  719. fffff807`83220000 fffff807`8322b000 klpnpflt.sys
  720. fffff807`83210000 fffff807`8321b000 klpnpflt.sys
  721. fffff807`83190000 fffff807`8319b000 klpnpflt.sys
  722. fffff807`83180000 fffff807`8318b000 klpnpflt.sys
  723. fffff807`83030000 fffff807`8303b000 klpnpflt.sys
  724. fffff807`86fe0000 fffff807`86feb000 klpnpflt.sys
  725. fffff807`855c0000 fffff807`855cb000 klpnpflt.sys
  726. fffff807`854f0000 fffff807`854fb000 klpnpflt.sys
  727. fffff807`85430000 fffff807`8543b000 klpnpflt.sys
  728. fffff807`7ea80000 fffff807`7ea9c000 dam.sys
  729. fffff807`7ba60000 fffff807`7ba69000 MbamElam.sys
  730. fffff807`7ba50000 fffff807`7ba5e000 klelam.sys
  731. fffff807`7d710000 fffff807`7d720000 hwpolicy.sys
  732.  
  733. ====================== Dump #1: BIOS INFORMATION =======================
  734.  
  735. sysinfo: could not find necessary interfaces.
  736. sysinfo: note that mssmbios.sys must be loaded (XPSP2+).
  737.  
  738. ========================== Dump #1: Extra #1 ===========================
  739.  
  740. 0: kd> !verifier
  741. Verify Flags Level 0x00000000
  742. STANDARD FLAGS:
  743. [X] (0x00000000) Automatic Checks
  744. [ ] (0x00000001) Special pool
  745. [ ] (0x00000002) Force IRQL checking
  746. [ ] (0x00000008) Pool tracking
  747. [ ] (0x00000010) I/O verification
  748. [ ] (0x00000020) Deadlock detection
  749. [ ] (0x00000080) DMA checking
  750. [ ] (0x00000100) Security checks
  751. [ ] (0x00000800) Miscellaneous checks
  752. [ ] (0x00020000) DDI compliance checking
  753. ADDITIONAL FLAGS:
  754. [ ] (0x00000004) Randomized low resources simulation
  755. [ ] (0x00000200) Force pending I/O requests
  756. [ ] (0x00000400) IRP logging
  757. [ ] (0x00002000) Invariant MDL checking for stack
  758. [ ] (0x00004000) Invariant MDL checking for driver
  759. [ ] (0x00008000) Power framework delay fuzzing
  760. [ ] (0x00010000) Port/miniport interface checking
  761. [ ] (0x00040000) Systematic low resources simulation
  762. [ ] (0x00080000) DDI compliance checking (additional)
  763. [ ] (0x00200000) NDIS/WIFI verification
  764. [ ] (0x00800000) Kernel synchronization delay fuzzing
  765. [ ] (0x01000000) VM switch verification
  766. [ ] (0x02000000) Code integrity checks
  767. [X] Indicates flag is enabled
  768. Summary of All Verifier Statistics
  769. RaiseIrqls 0x0
  770. AcquireSpinLocks 0x0
  771. Synch Executions 0x0
  772. Trims 0x0
  773. Pool Allocations Attempted 0x0
  774. Pool Allocations Succeeded 0x0
  775. Pool Allocations Succeeded SpecialPool 0x0
  776. Pool Allocations With NO TAG 0x0
  777. Pool Allocations Failed 0x0
  778. Current paged pool allocations 0x0 for 00000000 bytes
  779. Peak paged pool allocations 0x0 for 00000000 bytes
  780. Current nonpaged pool allocations 0x0 for 00000000 bytes
  781. Peak nonpaged pool allocations 0x0 for 00000000 bytes
  782.  
  783. ========================== Dump #1: Extra #2 ===========================
  784.  
  785. 0: kd> !thread
  786. THREAD ffff8b0a79dbb080 Cid 1c4c.4be4 Teb: 000000fcc7769000 Win32Thread: 0000000000000000 RUNNING on processor 0
  787. Not impersonating
  788. GetUlongFromAddress: unable to read from fffff8077761143c
  789. Owning Process ffff8b0a7b3d5080 Image: RuneLite.exe
  790. Attached Process N/A Image: N/A
  791. fffff78000000000: Unable to get shared data
  792. Wait Start TickCount 7842
  793. Context Switch Count 1068 IdealProcessor: 2
  794. ReadMemory error: Cannot get nt!KeMaximumIncrement value.
  795. UserTime 00:00:00.000
  796. KernelTime 00:00:00.000
  797. Win32 Start Address 0x00007ffbfd0b1500
  798. Stack Init fffff98f62757b90 Current fffff98f62757160
  799. Base fffff98f62758000 Limit fffff98f62751000 Call 0000000000000000
  800. Priority 10 BasePriority 10 PriorityDecrement 0 IoPriority 2 PagePriority 5
  801. Child-SP RetAddr : Args to Child : Call Site
  802. fffff98f`62756dd8 fffff807`76e2edf9 : 00000000`0000001e ffffffff`c0000005 fffff807`76ff922a 00000000`00000000 : nt!KeBugCheckEx
  803. fffff98f`62756de0 fffff807`76defa6c : 00000000`00000000 00000000`00000001 fffff98f`62757670 00000001`00000000 : nt!KiDispatchException+0x1b3d59
  804. fffff98f`627574a0 fffff807`76deb7a0 : 0000023b`e374bb30 0000023b`e3731970 0000023b`e3731980 0000023b`e3731f70 : nt!KiExceptionDispatch+0x12c
  805. fffff98f`62757680 fffff807`76ff922a : 8b0a7b3d`50508b07 00000000`00001410 00000000`00000000 ffff8b0a`79dbb080 : nt!KiGeneralProtectionFault+0x320 (TrapFrame @ fffff98f`62757680)
  806. fffff98f`62757810 8b0a7b3d`50508b07 : 00000000`00001410 00000000`00000000 ffff8b0a`79dbb080 fffff98f`62757a80 : nt!ObpReferenceObjectByHandleWithTag+0x24a
  807. fffff98f`62757818 00000000`00001410 : 00000000`00000000 ffff8b0a`79dbb080 fffff98f`62757a80 00000000`00000088 : 0x8b0a7b3d`50508b07
  808. fffff98f`62757820 00000000`00000000 : ffff8b0a`79dbb080 fffff98f`62757a80 00000000`00000088 0000023b`e374bb20 : 0x1410
  809.  
  810.  
  811. ========================================================================
  812. ======================= Dump #2: ANALYZE VERBOSE =======================
  813. ====================== File: 070320-10843-01.dmp =======================
  814. ========================================================================
  815.  
  816. Mini Kernel Dump File: Only registers and stack trace are available
  817. Windows 10 Kernel Version 19041 MP (8 procs) Free x64
  818. Kernel base = 0xfffff803`33a00000 PsLoadedModuleList = 0xfffff803`3462a2b0
  819. Debug session time: Fri Jul 3 16:24:49.011 2020 (UTC - 4:00)
  820. System Uptime: 0 days 2:16:20.712
  821.  
  822. BugCheck 9C, {80000001, ffffc881da3d5b10, 0, 0}
  823. Probably caused by : memory_corruption
  824. Followup: memory_corruption
  825.  
  826. MACHINE_CHECK_EXCEPTION (9c)
  827. A fatal Machine Check Exception has occurred.
  828. KeBugCheckEx parameters;
  829. x86 Processors
  830. If the processor has ONLY MCE feature available (For example Intel
  831. Pentium), the parameters are:
  832. 1 - Low 32 bits of P5_MC_TYPE MSR
  833. 2 - Address of MCA_EXCEPTION structure
  834. 3 - High 32 bits of P5_MC_ADDR MSR
  835. 4 - Low 32 bits of P5_MC_ADDR MSR
  836. If the processor also has MCA feature available (For example Intel
  837. Pentium Pro), the parameters are:
  838. 1 - Bank number
  839. 2 - Address of MCA_EXCEPTION structure
  840. 3 - High 32 bits of MCi_STATUS MSR for the MCA bank that had the error
  841. 4 - Low 32 bits of MCi_STATUS MSR for the MCA bank that had the error
  842. IA64 Processors
  843. 1 - Bugcheck Type
  844. 1 - MCA_ASSERT
  845. 2 - MCA_GET_STATEINFO
  846. SAL returned an error for SAL_GET_STATEINFO while processing MCA.
  847. 3 - MCA_CLEAR_STATEINFO
  848. SAL returned an error for SAL_CLEAR_STATEINFO while processing MCA.
  849. 4 - MCA_FATAL
  850. FW reported a fatal MCA.
  851. 5 - MCA_NONFATAL
  852. SAL reported a recoverable MCA and we don't support currently
  853. support recovery or SAL generated an MCA and then couldn't
  854. produce an error record.
  855. 0xB - INIT_ASSERT
  856. 0xC - INIT_GET_STATEINFO
  857. SAL returned an error for SAL_GET_STATEINFO while processing INIT event.
  858. 0xD - INIT_CLEAR_STATEINFO
  859. SAL returned an error for SAL_CLEAR_STATEINFO while processing INIT event.
  860. 0xE - INIT_FATAL
  861. Not used.
  862. 2 - Address of log
  863. 3 - Size of log
  864. 4 - Error code in the case of x_GET_STATEINFO or x_CLEAR_STATEINFO
  865. AMD64 Processors
  866. 1 - Bank number
  867. 2 - Address of MCA_EXCEPTION structure
  868. 3 - High 32 bits of MCi_STATUS MSR for the MCA bank that had the error
  869. 4 - Low 32 bits of MCi_STATUS MSR for the MCA bank that had the error
  870.  
  871. Arguments:
  872. Arg1: 0000000080000001
  873. Arg2: ffffc881da3d5b10
  874. Arg3: 0000000000000000
  875. Arg4: 0000000000000000
  876.  
  877. Debugging Details:
  878. DUMP_CLASS: 1
  879. DUMP_QUALIFIER: 400
  880. DUMP_TYPE: 2
  881. BUGCHECK_STR: 0x9C_GenuineIntel
  882. CUSTOMER_CRASH_COUNT: 1
  883. DEFAULT_BUCKET_ID: CODE_CORRUPTION
  884.  
  885. PROCESS_NAME: SurSvc.exe
  886.  
  887. CURRENT_IRQL: f
  888. BAD_STACK_POINTER: ffffc881da3d5ac8
  889. LAST_CONTROL_TRANSFER: from fffff80333ebfcf9 to fffff80333ddda20
  890. STACK_TEXT:
  891. ffffc881`da3d5ac8 fffff803`33ebfcf9 : 00000000`0000009c 00000000`80000001 ffffc881`da3d5b10 00000000`00000000 : nt!KeBugCheckEx
  892. ffffc881`da3d5ad0 fffff803`33ec0154 : 00000000`00000008 ffffc881`da3d5e50 00000000`00000000 00000000`00000008 : nt!HalpMcaReportError+0x149
  893. ffffc881`da3d5c40 fffff803`33ebf36b : 00000000`00000000 00000000`80000001 ffffc881`da3d5ed0 ccccffba`c192e82d : nt!HalpMceHandlerWithRendezvous+0x11c
  894. ffffc881`da3d5c70 fffff803`33ec1bb5 : ffffb588`7c0acc08 0d3d8d48`01b32824 000496f0`e800049c 89bbffea`d118e990 : nt!HalpHandleMachineCheck+0x5f
  895. ffffc881`da3d5ca0 fffff803`33f18889 : e9c00000`0dbbffea 0005033d`ffead56a 8bffead5`5f850fc0 8d48ffea`d558e9df : nt!HalHandleMcheck+0x35
  896. ffffc881`da3d5cd0 fffff803`33decaba : ffeada5a`e9c00000 da50e9c0`000425bb e9c00001`89bbffea 00009abb`ffeada46 : nt!KiHandleMcheck+0x9
  897. ffffc881`da3d5d00 fffff803`33dec777 : 00000000`00000000 fffff803`33dec6ac 00000000`00000000 00000000`00000000 : nt!KxMcheckAbort+0x7a
  898. ffffc881`da3d5e40 fffff803`33c690b4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiMcheckAbort+0x277
  899. ffffd886`8d542790 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ExpWaitForSpinLockSharedAndAcquire+0x64
  900. STACK_COMMAND: kb
  901. CHKIMG_EXTENSION: !chkimg -lo 50 -d !FLTMGR
  902. fffff803331dcd05-fffff803331dcd06 2 bytes - FLTMGR!DeleteStreamListCtrlCallback+35
  903. [ 48 ff:4c 8b ]
  904. fffff803331dcd0c-fffff803331dcd0f 4 bytes - FLTMGR!DeleteStreamListCtrlCallback+3c (+0x07)
  905. [ 0f 1f 44 00:e8 ff 5a b3 ]
  906. fffff803331dcd1a-fffff803331dcd1b 2 bytes - FLTMGR!DeleteStreamListCtrlCallback+4a (+0x0e)
  907. [ 48 ff:4c 8b ]
  908. fffff803331dcd21-fffff803331dcd24 4 bytes - FLTMGR!DeleteStreamListCtrlCallback+51 (+0x07)
  909. [ 0f 1f 44 00:e8 da 63 a4 ]
  910. fffff803331dcd6a-fffff803331dcd6b 2 bytes - FLTMGR!DeleteStreamListCtrlCallback+9a (+0x49)
  911. [ 48 ff:4c 8b ]
  912. fffff803331dcd71-fffff803331dcd74 4 bytes - FLTMGR!DeleteStreamListCtrlCallback+a1 (+0x07)
  913. [ 0f 1f 44 00:e8 da 5b a4 ]
  914. fffff803331dcd76-fffff803331dcd77 2 bytes - FLTMGR!DeleteStreamListCtrlCallback+a6 (+0x05)
  915. [ 48 ff:4c 8b ]
  916. fffff803331dcd7d-fffff803331dcd80 4 bytes - FLTMGR!DeleteStreamListCtrlCallback+ad (+0x07)
  917. [ 0f 1f 44 00:e8 3e eb b1 ]
  918. 24 errors : !FLTMGR (fffff803331dcd05-fffff803331dcd80)
  919. MODULE_NAME: memory_corruption
  920.  
  921. IMAGE_NAME: memory_corruption
  922.  
  923. FOLLOWUP_NAME: memory_corruption
  924. DEBUG_FLR_IMAGE_TIMESTAMP: 0
  925. MEMORY_CORRUPTOR: LARGE
  926. FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
  927. BUCKET_ID: MEMORY_CORRUPTION_LARGE
  928. PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
  929. TARGET_TIME: 2020-07-03T20:24:49.000Z
  930. SUITE_MASK: 272
  931. PRODUCT_TYPE: 1
  932. USER_LCID: 0
  933. FAILURE_ID_HASH_STRING: km:memory_corruption_large
  934. FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
  935. Followup: memory_corruption
  936.  
  937. ====================== Dump #2: 3RD PARTY DRIVERS ======================
  938.  
  939. Sep 12 1975 - klmouflt.sys - Kaspersky Mouse Device Filter https://www.kaspersky.com/
  940. May 05 2007 - klwtp.sys - Kaspersky WFP Network Connection Filter Driver https://www.kaspersky.com/
  941. Apr 13 2008 - klbackupdisk.sys - Kaspersky Backup Disk Filter https://www.kaspersky.com/
  942. Jun 15 2009 - pwdrvio.sys - MiniTool Partition Wizard https://www.partitionwizard.com/
  943. Jun 29 2011 - mi2c.sys - WINI2C-DDC Kernel Mode driver (AOC International GmbH)
  944. Aug 22 2012 - AsIO.sys - ASUS Input Output driver http://www.asus.com/
  945. Jan 07 2015 - klim6.sys - Kaspersky Lab Intermediate Network Driver https://www.kaspersky.com/
  946. May 16 2016 - LifeCamTrueColor.sys - Microsoft LifeCam TrueColor driver
  947. Jul 06 2016 - ALSysIO64.sys - Arthur Liberman System Input Output driver - VIPRE Internet Security or Adobe Photoshop Elements
  948. Feb 12 2018 - MsIo64.sys - MSI Gaming App driver
  949. Feb 15 2018 - AmdTools64.sys - AMD Special Tools driver
  950. Apr 17 2018 - iaLPSS2i_GPIO2_CNL.sys - Intel(R) Serial IO GPIO driver
  951. Jan 22 2019 - klupd_klif_kimul.sys - Kaspersky Kernel Heuristics Engine https://www.kaspersky.com/
  952. Feb 15 2019 - cm_km.sys - Kaspersky Cryptographic Module Driver
  953. Feb 26 2019 - klwfp.sys - Kaspersky Network filtering component https://www.kaspersky.com/
  954. Mar 14 2019 - nvvad64v.sys - Nvidia Virtual Audio driver http://www.nvidia.com/
  955. Mar 26 2019 - RTKVHD64.sys - Realtek Audio System driver https://www.realtek.com/en/
  956. Apr 09 2019 - AsIO2.sys - Asus Input Output driver
  957. Apr 22 2019 - GLCKIO2.sys - ASUS RGB driver
  958. Apr 24 2019 - iqvw64e.sys - Intel Network Adapter Diagnostic driver http://www.intel.com/
  959. May 13 2019 - AsUpIO.sys - ASUS Update Input Output driver http://www.asus.com/
  960. May 16 2019 - dump_IaNVMe.sys - (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  961. May 16 2019 - IaNVMe.sys - Intel NVMe Storport Miniport Module driver
  962. Jun 27 2019 - e1d68x64.sys - Intel(R) Gigabit Adapter driver
  963. Jul 18 2019 - semav6msr64.sys - Intel Driver Update Utility http://www.intel.com/ OR (SEMA Software) http://www.sema-soft.de/en/home/
  964. Sep 19 2019 - RTCore64.sys - !!! Overclocking Software - RivaTuner - MSI Afterburner http://www.msi.com/ or EVGA Precision X http://www.evga.com/
  965. Oct 14 2019 - ene.sys - (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
  966. Dec 09 2019 - iaStorAC.sys - Intel Rapid Storage Technology driver
  967. Dec 25 2019 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
  968. Jan 10 2020 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
  969. Jan 26 2020 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
  970. Feb 17 2020 - RzCommon.sys - Razer Common driver (Razer Inc)
  971. Feb 17 2020 - RzDev_005c.sys - Razer driver
  972. Feb 17 2020 - RzDev_0209.sys - Razer driver
  973. Feb 25 2020 - IntcDAud.sys - Intel Display Audio Driver http://www.intel.com/
  974. Mar 13 2020 - klif.sys - Kaspersky Lab Intruder Filter driver https://www.kaspersky.com/
  975. Mar 20 2020 - klupd_klif_klark.sys - Kaspersky https://www.kaspersky.com/
  976. Mar 20 2020 - klupd_klif_mark.sys - Kaspersky Lab Anti-Rootkit Engine https://www.kaspersky.com
  977. Mar 22 2020 - klupd_klif_arkmon.sys - Kaspersky Anti-Virus Anti-Rootkit Monitor https://www.kaspersky.com/
  978. Apr 22 2020 - ibtusb.sys - Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
  979. Apr 28 2020 - klgse.sys - Kaspersky Security Extender driver
  980. Apr 28 2020 - klhk.sys - Kaspersky Lab service driver https://www.kaspersky.com/
  981. Apr 29 2020 - klids.sys - Kaspersky Lab IDS Engine https://www.kaspersky.com/
  982. May 07 2020 - Netwtw08.sys - Intel(R) Wireless Networking driver
  983. Jun 09 2020 - nvhda64v.sys - Nvidia HDMI Audio Device http://www.nvidia.com/
  984. Jun 16 2020 - igdkmd64.sys - Intel HD graphics driver
  985. Jun 17 2020 - klupd_klif_klbg.sys - Kaspersky Anti-Virus Lab Boot Guard Driver https://www.kaspersky.com/
  986. Jun 21 2020 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
  987. Nov 16 2021 - klkbdflt.sys - Kaspersky Keyboard Device Filter https://www.kaspersky.com/
  988. Mar 13 2029 - klpd.sys - Kaspersky Format Recognizer https://www.kaspersky.com/
  989. Aug 13 2029 - klflt.sys - Kaspersky Filter Core https://www.kaspersky.com/
  990. ***** Invalid (946E4501) - klbackupflt.sys - Kaspersky Backup File Filter https://www.kaspersky.com/
  991. ***** Invalid (B1F414C8) - kldisk.sys - Kaspersky Virtual Disk driver https://www.kaspersky.com/
  992. ***** Invalid (E34C73F4) - kneps.sys - Kaspersky KNEPS Power https://www.kaspersky.com/
  993.  
  994. ================== Dump #2: 3RD PARTY DRIVERS (FULL) ===================
  995.  
  996. Image path: \SystemRoot\system32\DRIVERS\klmouflt.sys
  997. Image name: klmouflt.sys
  998. Search : https://www.google.com/search?q=klmouflt.sys
  999. ADA Info : Kaspersky Mouse Device Filter https://www.kaspersky.com/
  1000. Timestamp : Fri Sep 12 1975
  1001.  
  1002. Image path: \SystemRoot\system32\DRIVERS\klwtp.sys
  1003. Image name: klwtp.sys
  1004. Search : https://www.google.com/search?q=klwtp.sys
  1005. ADA Info : Kaspersky WFP Network Connection Filter Driver https://www.kaspersky.com/
  1006. Timestamp : Sat May 5 2007
  1007.  
  1008. Image path: \SystemRoot\system32\DRIVERS\klbackupdisk.sys
  1009. Image name: klbackupdisk.sys
  1010. Search : https://www.google.com/search?q=klbackupdisk.sys
  1011. ADA Info : Kaspersky Backup Disk Filter https://www.kaspersky.com/
  1012. Timestamp : Sun Apr 13 2008
  1013.  
  1014. Image path: \SystemRoot\system32\pwdrvio.sys
  1015. Image name: pwdrvio.sys
  1016. Search : https://www.google.com/search?q=pwdrvio.sys
  1017. ADA Info : MiniTool Partition Wizard https://www.partitionwizard.com/
  1018. Timestamp : Mon Jun 15 2009
  1019.  
  1020. Image path: \??\C:\Windows\system32\drivers\mi2c.sys
  1021. Image name: mi2c.sys
  1022. Search : https://www.google.com/search?q=mi2c.sys
  1023. ADA Info : WINI2C-DDC Kernel Mode driver (AOC International GmbH)
  1024. Timestamp : Wed Jun 29 2011
  1025.  
  1026. Image path: \SystemRoot\SysWow64\drivers\AsIO.sys
  1027. Image name: AsIO.sys
  1028. Search : https://www.google.com/search?q=AsIO.sys
  1029. ADA Info : ASUS Input Output driver http://www.asus.com/
  1030. Timestamp : Wed Aug 22 2012
  1031.  
  1032. Image path: \SystemRoot\system32\DRIVERS\klim6.sys
  1033. Image name: klim6.sys
  1034. Search : https://www.google.com/search?q=klim6.sys
  1035. ADA Info : Kaspersky Lab Intermediate Network Driver https://www.kaspersky.com/
  1036. Timestamp : Wed Jan 7 2015
  1037.  
  1038. Image path: \SystemRoot\system32\DRIVERS\LifeCamTrueColor.sys
  1039. Image name: LifeCamTrueColor.sys
  1040. Search : https://www.google.com/search?q=LifeCamTrueColor.sys
  1041. ADA Info : Microsoft LifeCam TrueColor driver
  1042. Timestamp : Mon May 16 2016
  1043.  
  1044. Image path: \??\C:\Users\Stuar\AppData\Local\Temp\ALSysIO64.sys
  1045. Image name: ALSysIO64.sys
  1046. Search : https://www.google.com/search?q=ALSysIO64.sys
  1047. ADA Info : Arthur Liberman System Input Output driver - VIPRE Internet Security or Adobe Photoshop Elements
  1048. Timestamp : Wed Jul 6 2016
  1049.  
  1050. Image path: \??\C:\WINDOWS\system32\drivers\MsIo64.sys
  1051. Image name: MsIo64.sys
  1052. Search : https://www.google.com/search?q=MsIo64.sys
  1053. ADA Info : MSI Gaming App driver
  1054. Timestamp : Mon Feb 12 2018
  1055.  
  1056. Image path: \SystemRoot\System32\drivers\AmdTools64.sys
  1057. Image name: AmdTools64.sys
  1058. Search : https://www.google.com/search?q=AmdTools64.sys
  1059. ADA Info : AMD Special Tools driver
  1060. Timestamp : Thu Feb 15 2018
  1061.  
  1062. Mapped memory image file: C:\ProgramData\dbg\sym\iaLPSS2i_GPIO2_CNL.sys\5AD59D1721000\iaLPSS2i_GPIO2_CNL.sys
  1063. Image path: \SystemRoot\System32\drivers\iaLPSS2i_GPIO2_CNL.sys
  1064. Image name: iaLPSS2i_GPIO2_CNL.sys
  1065. Search : https://www.google.com/search?q=iaLPSS2i_GPIO2_CNL.sys
  1066. ADA Info : Intel(R) Serial IO GPIO driver
  1067. Timestamp : Tue Apr 17 2018
  1068. File version: 30.100.1816.3
  1069. Product version: 30.100.1816.3
  1070. File flags: 8 (Mask 3F) Private
  1071. File OS: 40004 NT Win32
  1072. File type: 3.7 Driver
  1073. File date: 00000000.00000000
  1074. CompanyName: Intel Corporation
  1075. ProductName: Intel(R) Serial IO Driver
  1076. InternalName: iaLPSS2i_GPIO2_CNL.sys
  1077. OriginalFilename: iaLPSS2i_GPIO2_CNL.sys
  1078. ProductVersion: 30.100.1816.3
  1079. FileVersion: 30.100.1816.3
  1080. FileDescription: Intel(R) Serial IO GPIO Driver v2
  1081. LegalCopyright: Copyright © 2015, Intel Corporation.
  1082.  
  1083. Image path: \SystemRoot\System32\Drivers\klupd_klif_kimul.sys
  1084. Image name: klupd_klif_kimul.sys
  1085. Search : https://www.google.com/search?q=klupd_klif_kimul.sys
  1086. ADA Info : Kaspersky Kernel Heuristics Engine https://www.kaspersky.com/
  1087. Timestamp : Tue Jan 22 2019
  1088.  
  1089. Image path: \SystemRoot\system32\DRIVERS\cm_km.sys
  1090. Image name: cm_km.sys
  1091. Search : https://www.google.com/search?q=cm_km.sys
  1092. ADA Info : Kaspersky Cryptographic Module Driver
  1093. Timestamp : Fri Feb 15 2019
  1094.  
  1095. Image path: \SystemRoot\system32\DRIVERS\klwfp.sys
  1096. Image name: klwfp.sys
  1097. Search : https://www.google.com/search?q=klwfp.sys
  1098. ADA Info : Kaspersky Network filtering component https://www.kaspersky.com/
  1099. Timestamp : Tue Feb 26 2019
  1100.  
  1101. Image path: \SystemRoot\system32\drivers\nvvad64v.sys
  1102. Image name: nvvad64v.sys
  1103. Search : https://www.google.com/search?q=nvvad64v.sys
  1104. ADA Info : Nvidia Virtual Audio driver http://www.nvidia.com/
  1105. Timestamp : Thu Mar 14 2019
  1106.  
  1107. Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
  1108. Image name: RTKVHD64.sys
  1109. Search : https://www.google.com/search?q=RTKVHD64.sys
  1110. ADA Info : Realtek Audio System driver https://www.realtek.com/en/
  1111. Timestamp : Tue Mar 26 2019
  1112.  
  1113. Image path: \??\C:\Windows\system32\drivers\AsIO2.sys
  1114. Image name: AsIO2.sys
  1115. Search : https://www.google.com/search?q=AsIO2.sys
  1116. ADA Info : Asus Input Output driver
  1117. Timestamp : Tue Apr 9 2019
  1118.  
  1119. Image path: \??\C:\Windows\system32\drivers\GLCKIO2.sys
  1120. Image name: GLCKIO2.sys
  1121. Search : https://www.google.com/search?q=GLCKIO2.sys
  1122. ADA Info : ASUS RGB driver
  1123. Timestamp : Mon Apr 22 2019
  1124.  
  1125. Image path: \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys
  1126. Image name: iqvw64e.sys
  1127. Search : https://www.google.com/search?q=iqvw64e.sys
  1128. ADA Info : Intel Network Adapter Diagnostic driver http://www.intel.com/
  1129. Timestamp : Wed Apr 24 2019
  1130.  
  1131. Image path: \SystemRoot\SysWow64\drivers\AsUpIO.sys
  1132. Image name: AsUpIO.sys
  1133. Search : https://www.google.com/search?q=AsUpIO.sys
  1134. ADA Info : ASUS Update Input Output driver http://www.asus.com/
  1135. Timestamp : Mon May 13 2019
  1136.  
  1137. Image path: \SystemRoot\System32\drivers\dump_IaNVMe.sys
  1138. Image name: dump_IaNVMe.sys
  1139. Search : https://www.google.com/search?q=dump_IaNVMe.sys
  1140. ADA Info : (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  1141. Timestamp : Thu May 16 2019
  1142.  
  1143. Image path: \SystemRoot\System32\drivers\IaNVMe.sys
  1144. Image name: IaNVMe.sys
  1145. Search : https://www.google.com/search?q=IaNVMe.sys
  1146. ADA Info : Intel NVMe Storport Miniport Module driver
  1147. Timestamp : Thu May 16 2019
  1148.  
  1149. Image path: \SystemRoot\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_61aa07b8041d598f\e1d68x64.sys
  1150. Image name: e1d68x64.sys
  1151. Search : https://www.google.com/search?q=e1d68x64.sys
  1152. ADA Info : Intel(R) Gigabit Adapter driver
  1153. Timestamp : Thu Jun 27 2019
  1154.  
  1155. Image path: \??\C:\WINDOWS\system32\drivers\semav6msr64.sys
  1156. Image name: semav6msr64.sys
  1157. Search : https://www.google.com/search?q=semav6msr64.sys
  1158. ADA Info : Intel Driver Update Utility http://www.intel.com/ OR (SEMA Software) http://www.sema-soft.de/en/home/
  1159. Timestamp : Thu Jul 18 2019
  1160.  
  1161. Image path: \??\C:\Program Files (x86)\MSI Afterburner\RTCore64.sys
  1162. Image name: RTCore64.sys
  1163. Search : https://www.google.com/search?q=RTCore64.sys
  1164. ADA Info : !!! Overclocking Software - RivaTuner - MSI Afterburner http://www.msi.com/ or EVGA Precision X http://www.evga.com/
  1165. Timestamp : Thu Sep 19 2019
  1166.  
  1167. Image path: \??\C:\WINDOWS\system32\drivers\ene.sys
  1168. Image name: ene.sys
  1169. Search : https://www.google.com/search?q=ene.sys
  1170. ADA Info : (Ptolemy Tech Co.) or ASUS RGB driver or Gigabyte RGB driver
  1171. Timestamp : Mon Oct 14 2019
  1172.  
  1173. Image path: \SystemRoot\System32\drivers\iaStorAC.sys
  1174. Image name: iaStorAC.sys
  1175. Search : https://www.google.com/search?q=iaStorAC.sys
  1176. ADA Info : Intel Rapid Storage Technology driver
  1177. Timestamp : Mon Dec 9 2019
  1178.  
  1179. Image path: \SystemRoot\System32\drivers\TeeDriverW8x64.sys
  1180. Image name: TeeDriverW8x64.sys
  1181. Search : https://www.google.com/search?q=TeeDriverW8x64.sys
  1182. ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
  1183. Timestamp : Wed Dec 25 2019
  1184.  
  1185. Image path: \SystemRoot\System32\drivers\nvvhci.sys
  1186. Image name: nvvhci.sys
  1187. Search : https://www.google.com/search?q=nvvhci.sys
  1188. ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
  1189. Timestamp : Fri Jan 10 2020
  1190.  
  1191. Image path: \SystemRoot\System32\DriverStore\FileRepository\nvppc.inf_amd64_6ba0cf1d869f4c36\UcmCxUcsiNvppc.sys
  1192. Image name: UcmCxUcsiNvppc.sys
  1193. Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
  1194. ADA Info : NVIDIA USB Type-C Port Policy Controller driver
  1195. Timestamp : Sun Jan 26 2020
  1196.  
  1197. Image path: \SystemRoot\System32\drivers\RzCommon.sys
  1198. Image name: RzCommon.sys
  1199. Search : https://www.google.com/search?q=RzCommon.sys
  1200. ADA Info : Razer Common driver (Razer Inc)
  1201. Timestamp : Mon Feb 17 2020
  1202.  
  1203. Image path: \SystemRoot\System32\drivers\RzDev_005c.sys
  1204. Image name: RzDev_005c.sys
  1205. Search : https://www.google.com/search?q=RzDev_005c.sys
  1206. ADA Info : Razer driver
  1207. Timestamp : Mon Feb 17 2020
  1208.  
  1209. Image path: \SystemRoot\System32\drivers\RzDev_0209.sys
  1210. Image name: RzDev_0209.sys
  1211. Search : https://www.google.com/search?q=RzDev_0209.sys
  1212. ADA Info : Razer driver
  1213. Timestamp : Mon Feb 17 2020
  1214.  
  1215. Image path: \SystemRoot\System32\DriverStore\FileRepository\intcdaud.inf_amd64_1b570d7b9a790b1a\IntcDAud.sys
  1216. Image name: IntcDAud.sys
  1217. Search : https://www.google.com/search?q=IntcDAud.sys
  1218. ADA Info : Intel Display Audio Driver http://www.intel.com/
  1219. Timestamp : Tue Feb 25 2020
  1220.  
  1221. Image path: \SystemRoot\system32\DRIVERS\klif.sys
  1222. Image name: klif.sys
  1223. Search : https://www.google.com/search?q=klif.sys
  1224. ADA Info : Kaspersky Lab Intruder Filter driver https://www.kaspersky.com/
  1225. Timestamp : Fri Mar 13 2020
  1226.  
  1227. Image path: \SystemRoot\System32\Drivers\klupd_klif_klark.sys
  1228. Image name: klupd_klif_klark.sys
  1229. Search : https://www.google.com/search?q=klupd_klif_klark.sys
  1230. ADA Info : Kaspersky https://www.kaspersky.com/
  1231. Timestamp : Fri Mar 20 2020
  1232.  
  1233. Image path: \SystemRoot\System32\Drivers\klupd_klif_mark.sys
  1234. Image name: klupd_klif_mark.sys
  1235. Search : https://www.google.com/search?q=klupd_klif_mark.sys
  1236. ADA Info : Kaspersky Lab Anti-Rootkit Engine https://www.kaspersky.com
  1237. Timestamp : Fri Mar 20 2020
  1238.  
  1239. Image path: \SystemRoot\System32\Drivers\klupd_klif_arkmon.sys
  1240. Image name: klupd_klif_arkmon.sys
  1241. Search : https://www.google.com/search?q=klupd_klif_arkmon.sys
  1242. ADA Info : Kaspersky Anti-Virus Anti-Rootkit Monitor https://www.kaspersky.com/
  1243. Timestamp : Sun Mar 22 2020
  1244.  
  1245. Image path: \SystemRoot\system32\DRIVERS\ibtusb.sys
  1246. Image name: ibtusb.sys
  1247. Search : https://www.google.com/search?q=ibtusb.sys
  1248. ADA Info : Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
  1249. Timestamp : Wed Apr 22 2020
  1250.  
  1251. Image path: \SystemRoot\system32\DRIVERS\klgse.sys
  1252. Image name: klgse.sys
  1253. Search : https://www.google.com/search?q=klgse.sys
  1254. ADA Info : Kaspersky Security Extender driver
  1255. Timestamp : Tue Apr 28 2020
  1256.  
  1257. Image path: \SystemRoot\system32\DRIVERS\klhk.sys
  1258. Image name: klhk.sys
  1259. Search : https://www.google.com/search?q=klhk.sys
  1260. ADA Info : Kaspersky Lab service driver https://www.kaspersky.com/
  1261. Timestamp : Tue Apr 28 2020
  1262.  
  1263. Image path: \??\C:\ProgramData\Kaspersky Lab\AVP20.0\Bases\klids.sys
  1264. Image name: klids.sys
  1265. Search : https://www.google.com/search?q=klids.sys
  1266. ADA Info : Kaspersky Lab IDS Engine https://www.kaspersky.com/
  1267. Timestamp : Wed Apr 29 2020
  1268.  
  1269. Image path: \SystemRoot\System32\drivers\Netwtw08.sys
  1270. Image name: Netwtw08.sys
  1271. Search : https://www.google.com/search?q=Netwtw08.sys
  1272. ADA Info : Intel(R) Wireless Networking driver
  1273. Timestamp : Thu May 7 2020
  1274.  
  1275. Image path: \SystemRoot\system32\drivers\nvhda64v.sys
  1276. Image name: nvhda64v.sys
  1277. Search : https://www.google.com/search?q=nvhda64v.sys
  1278. ADA Info : Nvidia HDMI Audio Device http://www.nvidia.com/
  1279. Timestamp : Tue Jun 9 2020
  1280.  
  1281. Image path: \SystemRoot\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_ed7038d3c09dda61\igdkmd64.sys
  1282. Image name: igdkmd64.sys
  1283. Search : https://www.google.com/search?q=igdkmd64.sys
  1284. ADA Info : Intel HD graphics driver
  1285. Timestamp : Tue Jun 16 2020
  1286.  
  1287. Image path: \SystemRoot\System32\Drivers\klupd_klif_klbg.sys
  1288. Image name: klupd_klif_klbg.sys
  1289. Search : https://www.google.com/search?q=klupd_klif_klbg.sys
  1290. ADA Info : Kaspersky Anti-Virus Lab Boot Guard Driver https://www.kaspersky.com/
  1291. Timestamp : Wed Jun 17 2020
  1292.  
  1293. Image path: \SystemRoot\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2b99a29f071e5d25\nvlddmkm.sys
  1294. Image name: nvlddmkm.sys
  1295. Search : https://www.google.com/search?q=nvlddmkm.sys
  1296. ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
  1297. Timestamp : Sun Jun 21 2020
  1298.  
  1299. Image path: \SystemRoot\system32\DRIVERS\klkbdflt.sys
  1300. Image name: klkbdflt.sys
  1301. Search : https://www.google.com/search?q=klkbdflt.sys
  1302. ADA Info : Kaspersky Keyboard Device Filter https://www.kaspersky.com/
  1303. Timestamp : Tue Nov 16 2021
  1304.  
  1305. Image path: \SystemRoot\system32\DRIVERS\klpd.sys
  1306. Image name: klpd.sys
  1307. Search : https://www.google.com/search?q=klpd.sys
  1308. ADA Info : Kaspersky Format Recognizer https://www.kaspersky.com/
  1309. Timestamp : Tue Mar 13 2029
  1310.  
  1311. Image path: \SystemRoot\system32\DRIVERS\klflt.sys
  1312. Image name: klflt.sys
  1313. Search : https://www.google.com/search?q=klflt.sys
  1314. ADA Info : Kaspersky Filter Core https://www.kaspersky.com/
  1315. Timestamp : Mon Aug 13 2029
  1316.  
  1317. Image path: \SystemRoot\system32\DRIVERS\klbackupflt.sys
  1318. Image name: klbackupflt.sys
  1319. Search : https://www.google.com/search?q=klbackupflt.sys
  1320. ADA Info : Kaspersky Backup File Filter https://www.kaspersky.com/
  1321. Timestamp : ***** Invalid (946E4501)
  1322.  
  1323. Image path: \SystemRoot\system32\DRIVERS\kldisk.sys
  1324. Image name: kldisk.sys
  1325. Search : https://www.google.com/search?q=kldisk.sys
  1326. ADA Info : Kaspersky Virtual Disk driver https://www.kaspersky.com/
  1327. Timestamp : ***** Invalid (B1F414C8)
  1328.  
  1329. Image path: \SystemRoot\system32\DRIVERS\kneps.sys
  1330. Image name: kneps.sys
  1331. Search : https://www.google.com/search?q=kneps.sys
  1332. ADA Info : Kaspersky KNEPS Power https://www.kaspersky.com/
  1333. Timestamp : ***** Invalid (E34C73F4)
  1334.  
  1335. ====================== Dump #2: MICROSOFT DRIVERS ======================
  1336.  
  1337. ACPI.sys ACPI Driver for NT (Microsoft)
  1338. acpiex.sys ACPIEx Driver (Microsoft)
  1339. acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
  1340. acpitime.sys ACPI Wake Alarm (Microsoft)
  1341. afd.sys Ancillary Function Driver for WinSock (Microsoft)
  1342. afunix.sys AF_UNIX Socket Provider driver (Microsoft)
  1343. AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
  1344. ahcache.sys Application Compatibility Cache (Microsoft)
  1345. bam.sys BAM Kernal driver (Microsoft)
  1346. BasicDisplay.sys Basic Display driver (Microsoft)
  1347. BasicRender.sys Basic Render driver (Microsoft)
  1348. Beep.SYS BEEP driver (Microsoft)
  1349. bindflt.sys Windows Bind Filter driver (Microsoft)
  1350. BOOTVID.dll VGA Boot Driver (Microsoft)
  1351. bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
  1352. btampm.sys Microsoft Bluetooth Audio Multiprofile Manager
  1353. BthA2dp.sys Bluetooth A2DP Driver
  1354. BthEnum.sys Bluetooth Bus Extender
  1355. BthHfAud.sys Bluetooth Hands-free Audio Device driver (Microsoft)
  1356. bthhfenum.sys Bluetooth Hands-Free Audio and Call Control HID Enumerator
  1357. bthpan.sys Bluetooth Personal Area Networking
  1358. BTHport.sys Bluetooth Bus driver (Microsoft)
  1359. BTHUSB.sys Bluetooth Miniport driver (Microsoft)
  1360. cdd.dll Canonical Display Driver (Microsoft)
  1361. cdrom.sys SCSI CD-ROM Driver (Microsoft)
  1362. CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
  1363. CI.dll Code Integrity Module (Microsoft)
  1364. CimFS.SYS Consumer IR Class Driver for eHome (Microsoft)
  1365. CLASSPNP.SYS SCSI Class System Dll (Microsoft)
  1366. cldflt.sys Cloud Files Mini Filter driver (Microsoft)
  1367. CLFS.SYS Common Log File System Driver (Microsoft)
  1368. clipsp.sys CLIP Service (Microsoft)
  1369. cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
  1370. cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
  1371. CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
  1372. condrv.sys Console Driver (Microsoft)
  1373. crashdmp.sys Crash Dump driver (Microsoft)
  1374. csc.sys Windows Client Side Caching driver (Microsoft)
  1375. dfsc.sys DFS Namespace Client Driver (Microsoft)
  1376. disk.sys PnP Disk Driver (Microsoft)
  1377. drmk.sys Digital Rights Management (DRM) driver (Microsoft)
  1378. dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  1379. dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
  1380. dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
  1381. dxgmms2.sys DirectX Graphics MMS
  1382. fastfat.SYS Fast FAT File System Driver (Microsoft)
  1383. filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
  1384. fileinfo.sys FileInfo Filter Driver (Microsoft)
  1385. FLTMGR.SYS Filesystem Filter Manager (Microsoft)
  1386. Fs_Rec.sys File System Recognizer Driver (Microsoft)
  1387. fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
  1388. fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
  1389. gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
  1390. hal.dll Hardware Abstraction Layer DLL (Microsoft)
  1391. HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
  1392. HIDCLASS.SYS Hid Class Library (Microsoft)
  1393. HIDPARSE.SYS Hid Parsing Library (Microsoft)
  1394. hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
  1395. HTTP.sys HTTP Protocol Stack (Microsoft)
  1396. intelpep.sys Intel Power Engine Plugin (Microsoft)
  1397. intelppm.sys Processor Device Driver (Microsoft)
  1398. IntelTA.sys Intel Telemetry Driver
  1399. iorate.sys I/O rate control Filter (Microsoft)
  1400. kbdclass.sys Keyboard Class Driver (Microsoft)
  1401. kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
  1402. kd.dll Local Kernal Debugger (Microsoft)
  1403. kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
  1404. ks.sys Kernal CSA Library (Microsoft)
  1405. ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
  1406. ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
  1407. ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
  1408. lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
  1409. luafv.sys LUA File Virtualization Filter Driver (Microsoft)
  1410. mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
  1411. Microsoft.Bluetooth.AvrcpTransport.sys Microsoft Bluetooth Avrcp Transport Driver
  1412. Microsoft.Bluetooth.Legacy.LEEnumerator.sys Microsoft Bluetooth Legacy LE Enumerator driver (Microsoft)
  1413. mmcss.sys MMCSS Driver (Microsoft)
  1414. monitor.sys Monitor Driver (Microsoft)
  1415. mouclass.sys Mouse Class Driver (Microsoft)
  1416. mouhid.sys HID Mouse Filter Driver (Microsoft)
  1417. mountmgr.sys Mount Point Manager (Microsoft)
  1418. mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
  1419. mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
  1420. mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
  1421. Msfs.SYS Mailslot driver (Microsoft)
  1422. msgpioclx.sys GPIO Class Extension Driver (Microsoft)
  1423. mshidkmdf.sys Pass-through HID to KMDF Filter driver (Microsoft)
  1424. msisadrv.sys ISA Driver (Microsoft)
  1425. mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
  1426. msquic.sys Windows QUIC Driver
  1427. msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
  1428. mssecflt.sys Microsoft Security Events Component file system filter driver (Microsoft)
  1429. mssmbios.sys System Management BIOS driver (Microsoft)
  1430. mup.sys Multiple UNC Provider driver (Microsoft)
  1431. ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
  1432. ndiscap.sys Microsoft NDIS Packet Capture Filter Driver
  1433. ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
  1434. ndisuio.sys NDIS User mode I/O driver (Microsoft)
  1435. NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
  1436. ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
  1437. NDProxy.sys NDIS Proxy driver (Microsoft)
  1438. Ndu.sys Network Data Usage Monitoring driver (Microsoft)
  1439. netbios.sys NetBIOS Interface driver (Microsoft)
  1440. netbt.sys MBT Transport driver (Microsoft)
  1441. NETIO.SYS Network I/O Subsystem (Microsoft)
  1442. Npfs.SYS NPFS driver (Microsoft)
  1443. npsvctrig.sys Named pipe service triggers (Microsoft)
  1444. nsiproxy.sys NSI Proxy driver (Microsoft)
  1445. Ntfs.sys NT File System Driver (Microsoft)
  1446. ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
  1447. ntosext.sys NTOS Extension Host driver (Microsoft)
  1448. Null.SYS NULL Driver (Microsoft)
  1449. nwifi.sys NativeWiFi Miniport Driver (Microsoft)
  1450. pacer.sys QoS Packet Scheduler (Microsoft)
  1451. partmgr.sys Partition driver (Microsoft)
  1452. pci.sys NT Plug and Play PCI Enumerator (Microsoft)
  1453. pcw.sys Performance Counter Driver (Microsoft)
  1454. pdc.sys Power Dependency Coordinator Driver (Microsoft)
  1455. peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
  1456. portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
  1457. PSHED.dll Platform Specific Hardware Error driver (Microsoft)
  1458. qwavedrv.sys Quality Windows Audio Video Experience (qWave) Support driver (Microsoft)
  1459. rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
  1460. raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
  1461. raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
  1462. rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
  1463. rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
  1464. rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
  1465. rdyboost.sys ReadyBoost Driver (Microsoft)
  1466. rfcomm.sys Bluetooth RFCOMM driver (Microsoft)
  1467. rspndr.sys Link-Layer Topology Responder driver (Microsoft)
  1468. serenum.sys Serial Port Enumerator (Microsoft)
  1469. serial.sys Serial Device Driver
  1470. SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
  1471. SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
  1472. spaceport.sys Storage Spaces driver (Microsoft)
  1473. srv2.sys Smb 2.0 Server driver (Microsoft)
  1474. srvnet.sys Server Network driver (Microsoft)
  1475. storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
  1476. storqosflt.sys Storage QoS Filter driver (Microsoft)
  1477. swenum.sys Plug and Play Software Device Enumerator (Microsoft)
  1478. tbs.sys Export driver for kernel mode TPM API (Microsoft)
  1479. tcpip.sys TCP/IP Protocol driver (Microsoft)
  1480. tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
  1481. TDI.SYS TDI Wrapper driver (Microsoft)
  1482. tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
  1483. tm.sys Kernel Transaction Manager driver (Microsoft)
  1484. UcmCx.sys USB Connector Manager KMDF Class Extension
  1485. ucx01000.sys USB Controller Extension (Microsoft)
  1486. umbus.sys User-Mode Bus Enumerator (Microsoft)
  1487. usbaudio.sys USB Audio Class Driver (Microsoft)
  1488. usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
  1489. USBD.SYS Universal Serial Bus Driver (Microsoft)
  1490. UsbHub3.sys USB3 HUB driver (Microsoft)
  1491. USBSTOR.SYS USB Mass Storage Class driver (Microsoft)
  1492. usbvideo.sys USB Video Class Driver (Microsoft)
  1493. USBXHCI.SYS USB XHCI driver (Microsoft)
  1494. vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
  1495. Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
  1496. volmgr.sys Volume Manager Driver (Microsoft)
  1497. volmgrx.sys Volume Manager Extension Driver (Microsoft)
  1498. volsnap.sys Volume Shadow Copy driver (Microsoft)
  1499. volume.sys Volume driver (Microsoft)
  1500. vwifibus.sys Virtual Wireless Bus driver (Microsoft)
  1501. vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
  1502. vwifimp.sys Virtual WiFi Miniport Driver (Microsoft)
  1503. wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
  1504. watchdog.sys Watchdog driver (Microsoft)
  1505. wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
  1506. Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
  1507. WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
  1508. wdiwifi.sys WDI Driver Framework driver (Microsoft)
  1509. werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
  1510. wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
  1511. win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
  1512. win32kbase.sys Base Win32k Kernel Driver (Microsoft)
  1513. win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
  1514. WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
  1515. WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
  1516. winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
  1517. wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
  1518. WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
  1519. Wof.sys Windows Overlay Filter (Microsoft)
  1520. WpdUpFltr.sys Portable Device Upper Class Filter driver (Microsoft)
  1521. WppRecorder.sys WPP Trace Recorder (Microsoft)
  1522. WUDFRd.sys Windows Driver Foundation - User-mode Driver Framework Reflector driver (Microsoft)
  1523.  
  1524. ====================== Dump #2: UNLOADED MODULES =======================
  1525.  
  1526. fffff803`37440000 fffff803`3744b000 klpnpflt.sys
  1527. fffff803`37420000 fffff803`37431000 MSKSSRV.sys
  1528. fffff803`37450000 fffff803`3745e000 MSTEE.sys
  1529. fffff803`37460000 fffff803`3746d000 MSPQM.sys
  1530. fffff803`37400000 fffff803`3740d000 MSPCLOCK.sys
  1531. fffff803`37410000 fffff803`3741b000 klpnpflt.sys
  1532. fffff803`37380000 fffff803`3738b000 klpnpflt.sys
  1533. fffff803`372e0000 fffff803`372ec000 bertreader.s
  1534. fffff803`372c0000 fffff803`372cb000 klpnpflt.sys
  1535. fffff803`372b0000 fffff803`372bb000 klpnpflt.sys
  1536. fffff803`37230000 fffff803`3723b000 klpnpflt.sys
  1537. fffff803`37220000 fffff803`3722b000 klpnpflt.sys
  1538. fffff803`37ed0000 fffff803`37edc000 cpuz147_x64.
  1539. fffff803`3be50000 fffff803`3be83000 klids.sys
  1540. fffff803`3bdf0000 fffff803`3bdff000 dump_storpor
  1541. fffff803`3b030000 fffff803`3b057000 dump_IaNVMe.
  1542. fffff803`3b080000 fffff803`3b09e000 dump_dumpfve
  1543. fffff803`39f70000 fffff803`39f8d000 EhStorClass.
  1544. fffff803`3d730000 fffff803`3d73b000 klpnpflt.sys
  1545. fffff803`3d6c0000 fffff803`3d6cb000 klpnpflt.sys
  1546. fffff803`3f9f0000 fffff803`3f9fb000 klpnpflt.sys
  1547. fffff803`3f930000 fffff803`3f93b000 klpnpflt.sys
  1548. fffff803`3bf10000 fffff803`3bf2c000 dam.sys
  1549. fffff803`38e60000 fffff803`38e69000 MbamElam.sys
  1550. fffff803`38e50000 fffff803`38e5e000 klelam.sys
  1551. fffff803`3ab10000 fffff803`3ab20000 hwpolicy.sys
  1552.  
  1553. ====================== Dump #2: BIOS INFORMATION =======================
  1554.  
  1555. [SMBIOS Data Tables v3.2]
  1556. [DMI Version - 0]
  1557. [2.0 Calling Convention - No]
  1558. [Table Size - 5312 bytes]
  1559. [BIOS Information (Type 0) - Length 26 - Handle 0000h]
  1560. Vendor American Megatrends Inc.
  1561. BIOS Version 1502
  1562. BIOS Starting Address Segment f000
  1563. BIOS Release Date 02/21/2020
  1564. BIOS ROM Size 1000000
  1565. BIOS Characteristics
  1566. 07: - PCI Supported
  1567. 10: - APM Supported
  1568. 11: - Upgradeable FLASH BIOS
  1569. 12: - BIOS Shadowing Supported
  1570. 15: - CD-Boot Supported
  1571. 16: - Selectable Boot Supported
  1572. 17: - BIOS ROM Socketed
  1573. 19: - EDD Supported
  1574. 23: - 1.2MB Floppy Supported
  1575. 24: - 720KB Floppy Supported
  1576. 25: - 2.88MB Floppy Supported
  1577. 26: - Print Screen Device Supported
  1578. 27: - Keyboard Services Supported
  1579. 28: - Serial Services Supported
  1580. 29: - Printer Services Supported
  1581. 32: - BIOS Vendor Reserved
  1582. BIOS Characteristic Extensions
  1583. 00: - ACPI Supported
  1584. 01: - USB Legacy Supported
  1585. 08: - BIOS Boot Specification Supported
  1586. 10: - Specification Reserved
  1587. 11: - Specification Reserved
  1588. BIOS Major Revision 15
  1589. BIOS Minor Revision 2
  1590. EC Firmware Major Revision 255
  1591. EC Firmware Minor Revision 255
  1592. [System Information (Type 1) - Length 27 - Handle 0001h]
  1593. Manufacturer System manufacturer
  1594. Product Name System Product Name
  1595. Version System Version
  1596. UUID 00000000-0000-0000-0000-000000000000
  1597. Wakeup Type Power Switch
  1598. SKUNumber ASUS_MB_CNL
  1599. [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
  1600. Manufacturer ASUSTeK COMPUTER INC.
  1601. Product ROG STRIX Z390-E GAMING
  1602. Version Rev 1.xx
  1603. Feature Flags 09h
  1604. -240404768: - -240404720: - ÷7!ü
  1605. Location Default string
  1606. Chassis Handle 0003h
  1607. Board Type 0ah - Processor/Memory Module
  1608. Number of Child Handles 0
  1609. [System Enclosure (Type 3) - Length 22 - Handle 0003h]
  1610. Manufacturer Default string
  1611. Chassis Type Desktop
  1612. Version Default string
  1613. Bootup State Safe
  1614. Power Supply State Safe
  1615. Thermal State Safe
  1616. Security Status None
  1617. OEM Defined 0
  1618. Height 0U
  1619. Number of Power Cords 1
  1620. Number of Contained Elements 0
  1621. Contained Element Size 3
  1622. [Onboard Devices Information (Type 10) - Length 6 - Handle 002fh]
  1623. Number of Devices 1
  1624. 01: Type Video [enabled]
  1625. [OEM Strings (Type 11) - Length 5 - Handle 0030h]
  1626. Number of Strings 8
  1627. 1 Default string
  1628. 2 Default string
  1629. 3 DENALI
  1630. 4 Default string
  1631. 5 FFFFFFFFFFFFF
  1632. 6 FFFFFFFFFFFFF
  1633. 7 FFFFFFFFFFFFF
  1634. 8 Default string
  1635. [System Configuration Options (Type 12) - Length 5 - Handle 0031h]
  1636. [Physical Memory Array (Type 16) - Length 23 - Handle 0049h]
  1637. Location 03h - SystemBoard/Motherboard
  1638. Use 03h - System Memory
  1639. Memory Error Correction 03h - None
  1640. Maximum Capacity 67108864KB
  1641. Number of Memory Devices 4
  1642. [Memory Device (Type 17) - Length 40 - Handle 004ah]
  1643. Physical Memory Array Handle 0049h
  1644. Total Width 64 bits
  1645. Data Width 64 bits
  1646. Size 8192MB
  1647. Form Factor 09h - DIMM
  1648. Device Locator ChannelA-DIMM1
  1649. Bank Locator BANK 0
  1650. Memory Type 1ah - Specification Reserved
  1651. Type Detail 0080h - Synchronous
  1652. Speed 2666MHz
  1653. Manufacturer Corsair
  1654. Part Number CMK16GX4M2A2666C16
  1655. [Memory Device (Type 17) - Length 40 - Handle 004bh]
  1656. Physical Memory Array Handle 0049h
  1657. Total Width 64 bits
  1658. Data Width 64 bits
  1659. Size 8192MB
  1660. Form Factor 09h - DIMM
  1661. Device Locator ChannelA-DIMM2
  1662. Bank Locator BANK 1
  1663. Memory Type 1ah - Specification Reserved
  1664. Type Detail 0080h - Synchronous
  1665. Speed 2666MHz
  1666. Manufacturer Corsair
  1667. Part Number CMK16GX4M2A2666C16
  1668. [Memory Device (Type 17) - Length 40 - Handle 004ch]
  1669. Physical Memory Array Handle 0049h
  1670. Total Width 64 bits
  1671. Data Width 64 bits
  1672. Size 8192MB
  1673. Form Factor 09h - DIMM
  1674. Device Locator ChannelB-DIMM1
  1675. Bank Locator BANK 2
  1676. Memory Type 1ah - Specification Reserved
  1677. Type Detail 0080h - Synchronous
  1678. Speed 2666MHz
  1679. Manufacturer Corsair
  1680. Part Number CMK16GX4M2A2666C16
  1681. [Memory Device (Type 17) - Length 40 - Handle 004dh]
  1682. Physical Memory Array Handle 0049h
  1683. Total Width 64 bits
  1684. Data Width 64 bits
  1685. Size 8192MB
  1686. Form Factor 09h - DIMM
  1687. Device Locator ChannelB-DIMM2
  1688. Bank Locator BANK 3
  1689. Memory Type 1ah - Specification Reserved
  1690. Type Detail 0080h - Synchronous
  1691. Speed 2666MHz
  1692. Manufacturer Corsair
  1693. Part Number CMK16GX4M2A2666C16
  1694. [Memory Array Mapped Address (Type 19) - Length 31 - Handle 004eh]
  1695. Starting Address 00000000h
  1696. Ending Address 01ffffffh
  1697. Memory Array Handle 0049h
  1698. Partition Width 04
  1699. [Cache Information (Type 7) - Length 27 - Handle 0054h]
  1700. Socket Designation L1 Cache
  1701. Cache Configuration 0180h - WB Enabled Int NonSocketed L1
  1702. Maximum Cache Size 0200h - 512K
  1703. Installed Size 0200h - 512K
  1704. Supported SRAM Type 0020h - Synchronous
  1705. Current SRAM Type 0020h - Synchronous
  1706. Cache Speed 0ns
  1707. Error Correction Type ParitySingle-Bit ECC
  1708. System Cache Type Unified
  1709. Associativity 8-way Set-Associative
  1710. [Cache Information (Type 7) - Length 27 - Handle 0055h]
  1711. Socket Designation L2 Cache
  1712. Cache Configuration 0181h - WB Enabled Int NonSocketed L2
  1713. Maximum Cache Size 0800h - 2048K
  1714. Installed Size 0800h - 2048K
  1715. Supported SRAM Type 0020h - Synchronous
  1716. Current SRAM Type 0020h - Synchronous
  1717. Cache Speed 0ns
  1718. Error Correction Type Multi-Bit ECC
  1719. System Cache Type Unified
  1720. Associativity 4-way Set-Associative
  1721. [Cache Information (Type 7) - Length 27 - Handle 0056h]
  1722. Socket Designation L3 Cache
  1723. Cache Configuration 0182h - WB Enabled Int NonSocketed L3
  1724. Maximum Cache Size 3000h - 12288K
  1725. Installed Size 3000h - 12288K
  1726. Supported SRAM Type 0020h - Synchronous
  1727. Current SRAM Type 0020h - Synchronous
  1728. Cache Speed 0ns
  1729. Error Correction Type Specification Reserved
  1730. System Cache Type Unified
  1731. Associativity Specification Reserved
  1732. [Processor Information (Type 4) - Length 48 - Handle 0057h]
  1733. Socket Designation LGA1151
  1734. Processor Type Central Processor
  1735. Processor Family c6h - Specification Reserved
  1736. Processor Manufacturer Intel(R) Corporation
  1737. Processor ID ec060900fffbebbf
  1738. Processor Version Intel(R) Core(TM) i7-9700K CPU @ 3.60GHz
  1739. Processor Voltage 80h - 0.0V
  1740. External Clock 100MHz
  1741. Max Speed 8300MHz
  1742. Current Speed 3600MHz
  1743. Status Enabled Populated
  1744. Processor Upgrade Specification Reserved
  1745. L1 Cache Handle 0054h
  1746. L2 Cache Handle 0055h
  1747. L3 Cache Handle 0056h
  1748. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0058h]
  1749. Starting Address 00000000h
  1750. Ending Address 007fffffh
  1751. Memory Device Handle 004ah
  1752. Mem Array Mapped Adr Handle 004eh
  1753. Interleave Position 01
  1754. Interleave Data Depth 02
  1755. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0059h]
  1756. Starting Address 01000000h
  1757. Ending Address 017fffffh
  1758. Memory Device Handle 004bh
  1759. Mem Array Mapped Adr Handle 004eh
  1760. Interleave Position 01
  1761. Interleave Data Depth 02
  1762. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 005ah]
  1763. Starting Address 00800000h
  1764. Ending Address 00ffffffh
  1765. Memory Device Handle 004ch
  1766. Mem Array Mapped Adr Handle 004eh
  1767. Interleave Position 02
  1768. Interleave Data Depth 02
  1769. [Memory Device Mapped Address (Type 20) - Length 35 - Handle 005bh]
  1770. Starting Address 01800000h
  1771. Ending Address 01ffffffh
  1772. Memory Device Handle 004dh
  1773. Mem Array Mapped Adr Handle 004eh
  1774. Interleave Position 02
  1775. Interleave Data Depth 02
  1776.  
  1777. ========================== Dump #2: Extra #1 ===========================
  1778.  
  1779. 1: kd> !verifier
  1780. Verify Flags Level 0x00000000
  1781. STANDARD FLAGS:
  1782. [X] (0x00000000) Automatic Checks
  1783. [ ] (0x00000001) Special pool
  1784. [ ] (0x00000002) Force IRQL checking
  1785. [ ] (0x00000008) Pool tracking
  1786. [ ] (0x00000010) I/O verification
  1787. [ ] (0x00000020) Deadlock detection
  1788. [ ] (0x00000080) DMA checking
  1789. [ ] (0x00000100) Security checks
  1790. [ ] (0x00000800) Miscellaneous checks
  1791. [ ] (0x00020000) DDI compliance checking
  1792. ADDITIONAL FLAGS:
  1793. [ ] (0x00000004) Randomized low resources simulation
  1794. [ ] (0x00000200) Force pending I/O requests
  1795. [ ] (0x00000400) IRP logging
  1796. [ ] (0x00002000) Invariant MDL checking for stack
  1797. [ ] (0x00004000) Invariant MDL checking for driver
  1798. [ ] (0x00008000) Power framework delay fuzzing
  1799. [ ] (0x00010000) Port/miniport interface checking
  1800. [ ] (0x00040000) Systematic low resources simulation
  1801. [ ] (0x00080000) DDI compliance checking (additional)
  1802. [ ] (0x00200000) NDIS/WIFI verification
  1803. [ ] (0x00800000) Kernel synchronization delay fuzzing
  1804. [ ] (0x01000000) VM switch verification
  1805. [ ] (0x02000000) Code integrity checks
  1806. [X] Indicates flag is enabled
  1807. Summary of All Verifier Statistics
  1808. RaiseIrqls 0x0
  1809. AcquireSpinLocks 0x0
  1810. Synch Executions 0x0
  1811. Trims 0x0
  1812. Pool Allocations Attempted 0x0
  1813. Pool Allocations Succeeded 0x0
  1814. Pool Allocations Succeeded SpecialPool 0x0
  1815. Pool Allocations With NO TAG 0x0
  1816. Pool Allocations Failed 0x0
  1817. Current paged pool allocations 0x0 for 00000000 bytes
  1818. Peak paged pool allocations 0x0 for 00000000 bytes
  1819. Current nonpaged pool allocations 0x0 for 00000000 bytes
  1820. Peak nonpaged pool allocations 0x0 for 00000000 bytes
  1821.  
  1822. ========================== Dump #2: Extra #2 ===========================
  1823.  
  1824. 1: kd> !thread
  1825. THREAD ffffb588943620c0 Cid 1148.04fc Teb: 0000000000312000 Win32Thread: 0000000000000000 RUNNING on processor 1
  1826. Not impersonating
  1827. GetUlongFromAddress: unable to read from fffff8033461143c
  1828. Owning Process ffffb5888bee6080 Image: SurSvc.exe
  1829. Attached Process N/A Image: N/A
  1830. fffff78000000000: Unable to get shared data
  1831. Wait Start TickCount 523565
  1832. Context Switch Count 4 IdealProcessor: 0
  1833. ReadMemory error: Cannot get nt!KeMaximumIncrement value.
  1834. UserTime 00:00:00.000
  1835. KernelTime 00:00:00.000
  1836. Win32 Start Address 0x00007ffffd7cb530
  1837. Stack Init ffffd8868d542b90 Current ffffd8868d542880
  1838. Base ffffd8868d543000 Limit ffffd8868d53c000 Call 0000000000000000
  1839. Priority 5 BasePriority 4 PriorityDecrement 0 IoPriority 2 PagePriority 5
  1840. Child-SP RetAddr : Args to Child : Call Site
  1841. ffffc881`da3d5ac8 fffff803`33ebfcf9 : 00000000`0000009c 00000000`80000001 ffffc881`da3d5b10 00000000`00000000 : nt!KeBugCheckEx
  1842. ffffc881`da3d5ad0 fffff803`33ec0154 : 00000000`00000008 ffffc881`da3d5e50 00000000`00000000 00000000`00000008 : nt!HalpMcaReportError+0x149
  1843. ffffc881`da3d5c40 fffff803`33ebf36b : 00000000`00000000 00000000`80000001 ffffc881`da3d5ed0 ccccffba`c192e82d : nt!HalpMceHandlerWithRendezvous+0x11c
  1844. ffffc881`da3d5c70 fffff803`33ec1bb5 : ffffb588`7c0acc08 0d3d8d48`01b32824 000496f0`e800049c 89bbffea`d118e990 : nt!HalpHandleMachineCheck+0x5f
  1845. ffffc881`da3d5ca0 fffff803`33f18889 : e9c00000`0dbbffea 0005033d`ffead56a 8bffead5`5f850fc0 8d48ffea`d558e9df : nt!HalHandleMcheck+0x35
  1846. ffffc881`da3d5cd0 fffff803`33decaba : ffeada5a`e9c00000 da50e9c0`000425bb e9c00001`89bbffea 00009abb`ffeada46 : nt!KiHandleMcheck+0x9
  1847. ffffc881`da3d5d00 fffff803`33dec777 : 00000000`00000000 fffff803`33dec6ac 00000000`00000000 00000000`00000000 : nt!KxMcheckAbort+0x7a
  1848. ffffc881`da3d5e40 fffff803`33c690b4 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiMcheckAbort+0x277 (TrapFrame @ ffffc881`da3d5e50)
  1849. ffffd886`8d542790 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!ExpWaitForSpinLockSharedAndAcquire+0x64
Add Comment
Please, Sign In to add comment