Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ========================== AUTO DUMP ANALYZER ==========================
- Auto Dump Analyzer
- Version: 0.9
- Time to analyze file(s): 00 hours and 02 minutes and 54 seconds
- ================================= CPU ==================================
- COUNT: 4
- MHZ: 2496
- VENDOR: GenuineIntel
- FAMILY: 6
- MODEL: 9e
- STEPPING: 9
- ================================== OS ==================================
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 17763.1.amd64fre.rs5_release.180914-1434
- BUILD_VERSION: 10.0.17763.379 (WinBuild.160101.0800)
- BUILD: 17763
- SERVICEPACK: 379
- PLATFORM_TYPE: x64
- NAME: Windows 10
- EDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- BUILD_TIMESTAMP: unknown_date
- BUILDDATESTAMP: 160101.0800
- BUILDLAB: WinBuild
- BUILDOSVER: 10.0.17763.379
- =============================== DEBUGGER ===============================
- Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- =============================== COMMENTS ===============================
- * Information gathered from different dump files may be different. If
- Windows updates between two dump files, two or more OS versions may
- be shown above.
- * Additional BIOS information (including RAM information) was unreadable
- from the first dump file. This can be caused by an outdated BIOS.
- ========================================================================
- ==================== Dump File: 031519-13500-01.dmp ====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 17763 MP (4 procs) Free x64
- Kernel base = 0xfffff807`33209000 PsLoadedModuleList = 0xfffff807`336249f0
- Debug session time: Fri Mar 15 19:55:28.169 2019 (UTC - 4:00)
- System Uptime: 0 days 0:02:54.973
- BugCheck 19, {22, 0, 0, 0}
- Probably caused by : memory_corruption
- Followup: memory_corruption
- BAD_POOL_HEADER (19)
- The pool is already corrupt at the time of the current request.
- This may or may not be due to the caller.
- The internal pool links must be walked to figure out a possible cause of
- the problem, and then special pool applied to the suspect tags or the driver
- verifier to a suspect driver.
- Arguments:
- Arg1: 0000000000000022,
- Arg2: 0000000000000000
- Arg3: 0000000000000000
- Arg4: 0000000000000000
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- BUGCHECK_STR: 0x19_22
- POOL_ADDRESS: fffff8073374b390: Unable to get MiVisibleState
- 0000000000000000
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- PROCESS_NAME: LeagueClientUxRender.
- CURRENT_IRQL: 2
- DPC_STACK_BASE: FFFFF605BE037FB0
- LAST_CONTROL_TRANSFER: from fffff807333e5645 to fffff807333bc5e0
- STACK_TEXT:
- fffff605`be037828 fffff807`333e5645 : 00000000`00000019 00000000`00000022 00000000`00000000 00000000`00000000 : nt!KeBugCheckEx
- fffff605`be037830 fffff807`332527f0 : ffffda8d`5beef1a0 fffff605`be037948 fffff605`be037950 fffff605`be0379d9 : nt!ExFreeLargePool+0x1baee5
- fffff605`be0378d0 fffff807`33343c59 : ffffa381`e537b440 fffff808`37c7e95a ffffda8d`5beef1a0 00000000`00000000 : nt!MmFreeContiguousMemory+0x80
- fffff605`be037940 fffff808`37c72385 : 00000000`00000002 ffffda8d`671cc580 00000000`00000000 fffff807`49e29da6 : nt!HvlpFreeOverlayPages+0x9
- fffff605`be037970 fffff808`37bcfe20 : fffff605`be037a50 ffffda8d`5bf38010 00000000`00000000 00000000`00000000 : storport!StorPortExtendedFunction+0x365
- fffff605`be037a40 fffff808`37bea3d3 : ffffda8d`5bf640b0 fffff808`37c7e95a ffffda8d`5beef1a0 ffffda8d`5f9c3670 : iaStorAVC!Wcdl::Allocator::freeContiguous+0x20
- fffff605`be037a80 fffff808`37be1d67 : ffffa381`e537b440 fffff808`37b6c834 ffffda8d`5be880c0 ffffda8d`5bf640b0 : iaStorAVC!readSmartAttribsCompletion+0x2bf
- fffff605`be037b30 fffff808`37bde81c : ffffda8d`5bf640b0 fffff605`be037d01 ffffa381`e537b440 fffff808`37c4c820 : iaStorAVC!NvmRequest::complete+0x1b7
- fffff605`be037b70 fffff808`37bdd2ef : ffffda8d`5bf640b0 fffff605`be037d60 00000000`00000000 ffffda8d`632a5000 : iaStorAVC!NvmePort::processCompletionQueueForSharedInterrupt+0x144
- fffff605`be037c00 fffff807`332c1c67 : ffffa381`e4e26f80 fffff605`be037d60 ffffda8d`5beacdc8 ffffa381`e4e26f80 : iaStorAVC!NvmePort::dpc+0x47
- fffff605`be037c60 fffff807`332c12ae : ffffa381`e4e24180 00000000`00000000 00000000`00000002 00000000`00000025 : nt!KiExecuteAllDpcs+0x2e7
- fffff605`be037da0 fffff807`333c3445 : 00000000`00000000 ffffa381`e4e24180 fffff605`c259fa80 ffffa381`e55bdc80 : nt!KiRetireDpcList+0x1ae
- fffff605`be037fb0 fffff807`333c3230 : 00000000`012fe398 fffff807`33c7bae6 00000000`00000000 00000000`01050000 : nt!KxRetireDpcList+0x5
- fffff605`c259f9c0 fffff807`333c2af5 : 00000000`00000000 fffff807`333be0a1 00000000`2ad1848c fffff605`c259fa80 : nt!KiDispatchInterruptContinue
- fffff605`c259f9f0 fffff807`333be0a1 : 00000000`2ad1848c fffff605`c259fa80 ffffa381`e55bdc80 ffffda8d`67250460 : nt!KiDpcInterruptBypass+0x25
- fffff605`c259fa00 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiInterruptDispatch+0xb1
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !nt
- fffff807332528d9-fffff807332528da 2 bytes - nt!MiFreeContiguousPages+35
- [ 80 fa:00 f2 ]
- fffff80733252a4f - nt!MmUnmapIoSpace+7f (+0x176)
- [ f6:d8 ]
- fffff8073327ab73-fffff8073327ab74 2 bytes - nt!MiInsertDecayClusterTimer+13 (+0x28124)
- [ 80 fa:00 f2 ]
- fffff80733306465-fffff80733306469 5 bytes - nt!MiPfnShareCountIsZero+145 (+0x8b8f2)
- [ d0 be 7d fb f6:10 3b 76 ec d8 ]
- fffff80733306472-fffff80733306476 5 bytes - nt!MiPfnShareCountIsZero+152 (+0x0d)
- [ d7 be 7d fb f6:17 3b 76 ec d8 ]
- fffff807333064e2 - nt!MiPfnShareCountIsZero+1c2 (+0x70)
- [ f6:d8 ]
- fffff80733308bb1-fffff80733308bb2 2 bytes - nt!MiGetUltraMapping+c1 (+0x26cf)
- [ fb f6:ec d8 ]
- fffff80733308bbf - nt!MiGetUltraMapping+cf (+0x0e)
- [ f6:d8 ]
- fffff8073337d341 - nt!MiZeroPageThread+191 (+0x74782)
- [ f6:d8 ]
- 20 errors : !nt (fffff807332528d9-fffff8073337d341)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2019-03-15T23:55:28.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ========================================================================
- ===================== 3RD PARTY DRIVER QUICK LIST ======================
- ========================================================================
- Jun 22 2017 - iaLPSS2_I2C.sys - Intel(R) Serial IO I2C driver
- Oct 03 2017 - TeeDriverW8x64.sys - Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Oct 17 2017 - igdkmd64.sys - Intel HD graphics driver
- Nov 01 2017 - HidEventFilter.sys - Intel(R) HID Event Filter driver (Intel Corporation)
- Nov 02 2017 - dptf_acpi.sys - Dynamic Platform Thermal Framework driver https://downloadcenter.intel.com/
- Nov 02 2017 - dptf_cpu.sys - Dynamic Platform Thermal Framework driver https://downloadcenter.intel.com/
- Nov 02 2017 - esif_lf.sys - Dynamic Platform Thermal Framework driver https://downloadcenter.intel.com/
- Nov 14 2017 - rt640x64.sys - Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
- Feb 07 2018 - iaStorAVC.sys - Intel Rapid Storage Technology driver
- Mar 14 2018 - Netwtw04.sys - Intel Wireless Wifi Link driver https://downloadcenter.intel.com/
- Apr 02 2018 - logi_joy_vir_hid.sys - Logitech Joystick driver
- Apr 22 2018 - RzDev_005c.sys - Razer driver
- Apr 24 2018 - RTKVHD64.sys - Realtek Audio Driver system driver https://www.realtek.com/en/
- May 04 2018 - ibtusb.sys - Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
- May 07 2018 - IntcAudioBus.sys - Intel® Smart Sound Technology (SST) Bus driver
- May 07 2018 - IntcOED.sys - Intel Smart Sound Technology (Intel SST) OED driver
- Aug 16 2018 - nvvhci.sys - Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Aug 22 2018 - nvvad64v.sys - Nvidia Virtual Audio Driver http://www.nvidia.com/
- Oct 11 2018 - dddriver64Dcsa.sys - Dell Diagnostics Device driver
- Nov 16 2018 - logi_core_temp.sys - Logitech G HUB driver https://support.logitech.com/en_us/software/lghub
- Nov 20 2018 - logi_joy_bus_enum.sys - Logitech Joystick driver
- Nov 20 2018 - logi_joy_xlcore.sys - Logitech Joystick driver
- Jan 16 2019 - RzCommon.sys - Razer Common driver (Razer Inc)
- Mar 01 2019 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- ========================================================================
- ========================== 3RD PARTY DRIVERS ===========================
- ========================================================================
- Image path: \SystemRoot\System32\drivers\iaLPSS2_I2C.sys
- Image name: iaLPSS2_I2C.sys
- Search : https://www.google.com/search?q=iaLPSS2_I2C.sys
- ADA Info : Intel(R) Serial IO I2C driver
- Timestamp : Thu Jun 22 2017
- Image path: \SystemRoot\System32\drivers\TeeDriverW8x64.sys
- Image name: TeeDriverW8x64.sys
- Search : https://www.google.com/search?q=TeeDriverW8x64.sys
- ADA Info : Intel Management Engine Interface driver https://downloadcenter.intel.com/
- Timestamp : Tue Oct 3 2017
- Image path: \SystemRoot\System32\DriverStore\FileRepository\ki125170.inf_amd64_b4d72b8af850c069\igdkmd64.sys
- Image name: igdkmd64.sys
- Search : https://www.google.com/search?q=igdkmd64.sys
- ADA Info : Intel HD graphics driver
- Timestamp : Tue Oct 17 2017
- Image path: \SystemRoot\System32\drivers\HidEventFilter.sys
- Image name: HidEventFilter.sys
- Search : https://www.google.com/search?q=HidEventFilter.sys
- ADA Info : Intel(R) HID Event Filter driver (Intel Corporation)
- Timestamp : Wed Nov 1 2017
- Image path: \SystemRoot\System32\drivers\dptf_acpi.sys
- Image name: dptf_acpi.sys
- Search : https://www.google.com/search?q=dptf_acpi.sys
- ADA Info : Dynamic Platform Thermal Framework driver https://downloadcenter.intel.com/
- Timestamp : Thu Nov 2 2017
- Image path: \SystemRoot\System32\drivers\dptf_cpu.sys
- Image name: dptf_cpu.sys
- Search : https://www.google.com/search?q=dptf_cpu.sys
- ADA Info : Dynamic Platform Thermal Framework driver https://downloadcenter.intel.com/
- Timestamp : Thu Nov 2 2017
- Image path: \SystemRoot\System32\drivers\esif_lf.sys
- Image name: esif_lf.sys
- Search : https://www.google.com/search?q=esif_lf.sys
- ADA Info : Dynamic Platform Thermal Framework driver https://downloadcenter.intel.com/
- Timestamp : Thu Nov 2 2017
- Mapped memory image file: C:\ProgramData\dbg\sym\rt640x64.sys\5A0A844E98000\rt640x64.sys
- Image path: \SystemRoot\System32\drivers\rt640x64.sys
- Image name: rt640x64.sys
- Search : https://www.google.com/search?q=rt640x64.sys
- ADA Info : Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
- Timestamp : Tue Nov 14 2017
- File version: 9.1.407.2015
- Product version: 9.1.407.2015
- File flags: 8 (Mask 3F) Private
- File OS: 40004 NT Win32
- File type: 3.6 Driver
- File date: 00000000.00000000
- CompanyName: Realtek
- ProductName: Realtek 8136/8168/8169 PCI/PCIe Adapters
- InternalName: rt640x64.sys
- OriginalFilename: rt640x64.sys
- ProductVersion: 9.001.0407.2015
- FileVersion: 9.001.0407.2015
- FileDescription: Realtek 8136/8168/8169 NDIS 6.40 64-bit Driver
- LegalCopyright: Copyright (C) 2017 Realtek Semiconductor Corporation. All Right Reserved.
- Mapped memory image file: C:\ProgramData\dbg\sym\iaStorAVC.sys\5A7AE8C0115000\iaStorAVC.sys
- Image path: \SystemRoot\System32\drivers\iaStorAVC.sys
- Image name: iaStorAVC.sys
- Search : https://www.google.com/search?q=iaStorAVC.sys
- ADA Info : Intel Rapid Storage Technology driver
- Timestamp : Wed Feb 7 2018
- File version: 15.44.0.1010
- Product version: 15.44.0.1010
- File flags: 8 (Mask 3F) Private
- File OS: 40004 NT Win32
- File type: 3.7 Driver
- File date: 00000000.00000000
- CompanyName: Intel Corporation
- ProductName: Intel(R) Rapid Storage Technology driver (inbox)
- InternalName: iaStorAVC.sys
- OriginalFilename: iaStorAVC.sys
- ProductVersion: 15.44.0.1010
- FileVersion: 15.44.0.1010
- PrivateBuild: 15.44.0.1010
- SpecialBuild: 15.44.0.1010
- FileDescription: Intel(R) Rapid Storage Technology driver (inbox) - x64
- LegalCopyright: Copyright (C), Intel Corporation. All rights reserved.
- LegalTrademarks: Copyright (C), Intel Corporation. All rights reserved.
- Comments: -x64
- Image path: \SystemRoot\System32\drivers\Netwtw04.sys
- Image name: Netwtw04.sys
- Search : https://www.google.com/search?q=Netwtw04.sys
- ADA Info : Intel Wireless Wifi Link driver https://downloadcenter.intel.com/
- Timestamp : Wed Mar 14 2018
- Image path: \SystemRoot\system32\drivers\logi_joy_vir_hid.sys
- Image name: logi_joy_vir_hid.sys
- Search : https://www.google.com/search?q=logi_joy_vir_hid.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Mon Apr 2 2018
- Image path: \SystemRoot\System32\drivers\RzDev_005c.sys
- Image name: RzDev_005c.sys
- Search : https://www.google.com/search?q=RzDev_005c.sys
- ADA Info : Razer driver
- Timestamp : Sun Apr 22 2018
- Image path: \SystemRoot\system32\drivers\RTKVHD64.sys
- Image name: RTKVHD64.sys
- Search : https://www.google.com/search?q=RTKVHD64.sys
- ADA Info : Realtek Audio Driver system driver https://www.realtek.com/en/
- Timestamp : Tue Apr 24 2018
- Image path: \SystemRoot\system32\DRIVERS\ibtusb.sys
- Image name: ibtusb.sys
- Search : https://www.google.com/search?q=ibtusb.sys
- ADA Info : Intel(R) Wireless Bluetooth(R) Filter driver (Intel Corporation)
- Timestamp : Fri May 4 2018
- Image path: \SystemRoot\System32\drivers\IntcAudioBus.sys
- Image name: IntcAudioBus.sys
- Search : https://www.google.com/search?q=IntcAudioBus.sys
- ADA Info : Intel® Smart Sound Technology (SST) Bus driver
- Timestamp : Mon May 7 2018
- Image path: \SystemRoot\System32\drivers\IntcOED.sys
- Image name: IntcOED.sys
- Search : https://www.google.com/search?q=IntcOED.sys
- ADA Info : Intel Smart Sound Technology (Intel SST) OED driver
- Timestamp : Mon May 7 2018
- Image path: \SystemRoot\System32\drivers\nvvhci.sys
- Image name: nvvhci.sys
- Search : https://www.google.com/search?q=nvvhci.sys
- ADA Info : Nvidia Virtual USB Host Controller driver http://www.nvidia.com/
- Timestamp : Thu Aug 16 2018
- Image path: \SystemRoot\system32\drivers\nvvad64v.sys
- Image name: nvvad64v.sys
- Search : https://www.google.com/search?q=nvvad64v.sys
- ADA Info : Nvidia Virtual Audio Driver http://www.nvidia.com/
- Timestamp : Wed Aug 22 2018
- Image path: \SystemRoot\System32\drivers\dddriver64Dcsa.sys
- Image name: dddriver64Dcsa.sys
- Search : https://www.google.com/search?q=dddriver64Dcsa.sys
- ADA Info : Dell Diagnostics Device driver
- Timestamp : Thu Oct 11 2018
- Image path: \??\C:\ProgramData\LGHUB\depots\6546\core\drivers\logi_core_temp\logi_core_temp.sys
- Image name: logi_core_temp.sys
- Search : https://www.google.com/search?q=logi_core_temp.sys
- ADA Info : Logitech G HUB driver https://support.logitech.com/en_us/software/lghub
- Timestamp : Fri Nov 16 2018
- Image path: \SystemRoot\system32\drivers\logi_joy_bus_enum.sys
- Image name: logi_joy_bus_enum.sys
- Search : https://www.google.com/search?q=logi_joy_bus_enum.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Tue Nov 20 2018
- Image path: \SystemRoot\system32\drivers\logi_joy_xlcore.sys
- Image name: logi_joy_xlcore.sys
- Search : https://www.google.com/search?q=logi_joy_xlcore.sys
- ADA Info : Logitech Joystick driver
- Timestamp : Tue Nov 20 2018
- Image path: \SystemRoot\System32\drivers\RzCommon.sys
- Image name: RzCommon.sys
- Search : https://www.google.com/search?q=RzCommon.sys
- ADA Info : Razer Common driver (Razer Inc)
- Timestamp : Wed Jan 16 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nvdmi.inf_amd64_29a377e944363297\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Fri Mar 1 2019
- If any of the above drivers are from Microsoft then please let me know.
- I will have them moved to the Microsoft list on the next update.
- ========================================================================
- ========================== MICROSOFT DRIVERS ===========================
- ========================================================================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- acpipagr.sys ACPI Processor Aggregator Device driver (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- BATTC.SYS Battery Class driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- BthEnum.sys Bluetooth Bus Extender
- bthpan.sys Bluetooth Personal Area Networking
- bthport.sys Bluetooth Bus driver (Microsoft)
- BTHUSB.sys Bluetooth Miniport driver (Microsoft)
- buttonconverter.sys Button Converter Driver
- CAD.sys Charge Arbiration driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- CmBatt.sys Control Method Battery driver (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_iaStorAVC.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- EhStorClass.sys Enhanced Storage Class driver for IEEE... (Microsoft)
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- hidbth.sys Bluetooth Miniport Driver for HID Devices
- HIDCLASS.SYS Hid Class Library (Microsoft)
- hidi2c.sys I2C HID Miniport driver (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- i8042prt.sys i8042 Keyboard / PS/2 Mouse driver (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- intelppm.sys Processor Device Driver (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_GenuineIntel.dll Intel Microcode Update Library (Microsoft)
- Microsoft.Bluetooth.Legacy.LEEnumerator.sys Microsoft Bluetooth Legacy LE Enumerator driver (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb10.sys Longhorn SMB Downlevel SubRdr (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- mshidkmdf.sys Pass-through HID to KMDF Filter driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- MSPQM.sys MS Proxy Quality Manager (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- MTConfig.sys Microsoft Multi-Touch HID Driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
- ndisuio.sys NDIS User mode I/O driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
- NDProxy.sys NDIS Proxy driver (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- nwifi.sys NativeWiFi Miniport Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
- raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
- raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
- rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rfcomm.sys Bluetooth RFCOMM driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- SpbCx.sys SPB Class Extension (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- tpm.sys Trusted Platform Module Device driver (Microsoft)
- ucx01000.sys USB Controller Extension (Microsoft)
- UEFI.sys UEFI NT driver (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- usbser.sys USB Serial driver (Microsoft)
- usbvideo.sys USB Video Class Driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwifibus.sys Virtual Wireless Bus driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- vwifimp.sys Virtual WiFi Miniport Driver (Microsoft)
- wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- wdiwifi.sys WDI Driver Framework driver (Microsoft)
- WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface Driver
- winquic.sys Windows QUIC Driver
- WinUSB.SYS Windows WinUSB Class driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WpdUpFltr.sys Portable Device Upper Class Filter driver (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WUDFRd.sys Windows Driver Foundation - User-mode Driver Framework Reflector driver (Microsoft)
- Unloaded modules:
- fffff807`4b4b0000 fffff807`4b4bf000 pcdsrvc_x64.
- fffff807`90cf0000 fffff807`912c9000 iqvw64e.sys
- fffff807`4b4a0000 fffff807`4b4b1000 MSKSSRV.sys
- fffff807`48d90000 fffff807`48daf000 WinUSB.SYS
- fffff807`48db0000 fffff807`48dcb000 usbser.sys
- fffff807`4cdd0000 fffff807`4cdde000 WpdUpFltr.sy
- fffff807`4cfb0000 fffff807`4cfbc000 WdmCompanion
- fffff807`48d90000 fffff807`48daf000 WinUSB.SYS
- fffff807`4cf30000 fffff807`4cf7d000 WUDFRd.sys
- fffff808`38ac0000 fffff808`38ad0000 dump_storpor
- fffff807`47ca0000 fffff807`47db6000 dump_iaStorA
- fffff807`47de0000 fffff807`47dfe000 dump_dumpfve
- fffff807`4cb80000 fffff807`4cbcd000 WUDFRd.sys
- fffff807`4c800000 fffff807`4c860000 esif_lf.sys
- fffff807`4c860000 fffff807`4c8ad000 WUDFRd.sys
- fffff808`38cb0000 fffff808`38ccc000 dam.sys
- fffff808`37890000 fffff808`378a1000 WdBoot.sys
- fffff808`389d0000 fffff808`389e0000 hwpolicy.sys
- ========================================================================
- ============================== BIOS INFO ===============================
- ========================================================================
- sysinfo: could not find necessary interfaces.
- sysinfo: note that mssmbios.sys must be loaded (XPSP2+).
- ========================================================================
- ============================== IMAGE SCAN ==============================
- ========================================================================
- MZ at fffff807`33209000, prot 00000040, type 01000000 - size a6f000
- Name: ntoskrnl.exe
- MZ at fffff807`33c79000, prot 00000040, type 01000000 - size 97000
- Name: HAL.dll
- MZ at fffff807`33e00000, prot 00000040, type 01000000 - size b000
- Name: KD.dll
- MZ at fffff807`47600000, prot 00000040, type 01000000 - size 2e000
- Name: cdrom.exe
- MZ at fffff807`47630000, prot 00000040, type 01000000 - size 15000
- Name: filecrypt.exe
- MZ at fffff807`47650000, prot 00000040, type 01000000 - size e000
- Name: tbs.sys
- MZ at fffff807`47660000, prot 00000040, type 01000000 - size a000
- Name: null.exe
- MZ at fffff807`47670000, prot 00000040, type 01000000 - size a000
- Name: beep.exe
- MZ at fffff807`47680000, prot 00000040, type 01000000 - size 33e000
- Name: dxgkrnl.sys
- MZ at fffff807`479c0000, prot 00000040, type 01000000 - size 16000
- Name: watchdog.sys
- MZ at fffff807`479e0000, prot 00000040, type 01000000 - size 16000
- Name: BasicDisplay.exe
- MZ at fffff807`47a00000, prot 00000040, type 01000000 - size 11000
- Name: BasicRender.exe
- MZ at fffff807`47a20000, prot 00000040, type 01000000 - size 1c000
- Name: npfs.exe
- MZ at fffff807`47a40000, prot 00000040, type 01000000 - size 11000
- Name: msfs.exe
- MZ at fffff807`47a60000, prot 00000040, type 01000000 - size 27000
- Name: tdx.exe
- MZ at fffff807`47a90000, prot 00000040, type 01000000 - size 10000
- Name: TDI.SYS
- MZ at fffff807`47ab0000, prot 00000040, type 01000000 - size 51000
- Name: netbt.exe
- MZ at fffff807`47b10000, prot 00000040, type 01000000 - size 13000
- Name: afunix.dll
- MZ at fffff807`47b30000, prot 00000040, type 01000000 - size a6000
- Name: afd.exe
- MZ at fffff807`47be0000, prot 00000040, type 01000000 - size 1a000
- Name: vwififlt.SYS
- MZ at fffff807`47c00000, prot 00000040, type 01000000 - size 2b000
- Name: pacer.exe
- MZ at fffff807`47c30000, prot 00000040, type 01000000 - size 14000
- Name: netbios.exe
- MZ at fffff807`47c50000, prot 00000040, type 01000000 - size 12000
- Name: nsiproxy.exe
- MZ at fffff807`47c70000, prot 00000040, type 01000000 - size d000
- Name: NpSvcTrig.exe
- MZ at fffff807`47c80000, prot 00000040, type 01000000 - size 10000
- Name: mssmbios.exe
- MZ at fffff807`47ee0000, prot 00000040, type 01000000 - size 1a000
- Name: USBSER.exe
- MZ at fffff807`47f00000, prot 00000040, type 01000000 - size 27000
- Name: AgileVpn.exe
- MZ at fffff807`47f30000, prot 00000040, type 01000000 - size 21000
- Name: rasl2tp.exe
- MZ at fffff807`47f60000, prot 00000040, type 01000000 - size 20000
- Name: raspptp.exe
- MZ at fffff807`47f90000, prot 00000040, type 01000000 - size 1c000
- Name: raspppoe.exe
- MZ at fffff807`47fb0000, prot 00000040, type 01000000 - size 3b000
- Name: ndiswan.exe
- MZ at fffff807`47ff0000, prot 00000040, type 01000000 - size 12000
- Name: vwifimp.exe
- MZ at fffff807`48010000, prot 00000040, type 01000000 - size 12000
- Name: wdnisdrv.exe
- MZ at fffff807`48320000, prot 00000040, type 01000000 - size 15000
- Name: UmBus.exe
- MZ at fffff807`48340000, prot 00000040, type 01000000 - size 15000
- Name: CAD.exe
- MZ at fffff807`48c00000, prot 00000040, type 01000000 - size d8000
- Name: dxgmms2.sys
- MZ at fffff807`48ce0000, prot 00000040, type 01000000 - size 16000
- Name: monitor.exe
- MZ at fffff807`48d00000, prot 00000040, type 01000000 - size 31000
- Name: usbccgp.exe
- MZ at fffff807`48d70000, prot 00000040, type 01000000 - size 1d000
- Name: bthusb.exe
- MZ at fffff807`48d90000, prot 00000040, type 01000000 - size 18000
- Name: ndproxy.exe
- MZ at fffff807`48db0000, prot 00000040, type 01000000 - size 1c000
- Name: rassstp.exe
- MZ at fffff807`49a00000, prot 00000040, type 01000000 - size 139000
- Name: http.exe
- MZ at fffff807`49b40000, prot 00000040, type 01000000 - size 89000
- Name: mrxsmb.sys
- MZ at fffff807`49bd0000, prot 00000040, type 01000000 - size 4e000
- Name: srvnet.sys
- MZ at fffff807`49c20000, prot 00000040, type 01000000 - size 51000
- Name: mrxsmb10.exe
- MZ at fffff807`49c80000, prot 00000040, type 01000000 - size 27000
- Name: ndu.exe
- MZ at fffff807`4b0f0000, prot 00000040, type 01000000 - size c4000
- Name: srv2.exe
- MZ at fffff807`4b1c0000, prot 00000040, type 01000000 - size 14000
- Name: tcpipreg.exe
- MZ at fffff807`4b1e0000, prot 00000040, type 01000000 - size 1e000
- Name: winusb.exe
- MZ at fffff807`4b200000, prot 00000040, type 01000000 - size 78000
- Name: usbxhci.exe
- MZ at fffff807`4b280000, prot 00000040, type 01000000 - size 3f000
- Name: ucx01000.exe
- MZ at fffff807`4b2f0000, prot 00000040, type 01000000 - size 19000
- Name: SpbCx.exe
- MZ at fffff807`4b350000, prot 00000040, type 01000000 - size 98000
- Name: rt640x64.exe
- MZ at fffff807`4b3f0000, prot 00000040, type 01000000 - size 2d000
- Name: wcifs.exe
- MZ at fffff807`4b420000, prot 00000040, type 01000000 - size 76000
- Name: cldflt.exe
- MZ at fffff807`4b4c0000, prot 00000040, type 01000000 - size 18000
- Name: lltdio.exe
- MZ at fffff807`4b4e0000, prot 00000040, type 01000000 - size 1a000
- Name: mslldp.exe
- MZ at fffff807`4b500000, prot 00000040, type 01000000 - size 1b000
- Name: rspndr.exe
- MZ at fffff807`4b520000, prot 00000040, type 01000000 - size 1c000
- Name: wanarp.exe
- MZ at fffff807`4b540000, prot 00000040, type 01000000 - size 8c000
- Name: nwifi.exe
- MZ at fffff807`4b5d0000, prot 00000040, type 01000000 - size 13000
- Name: condrv.exe
- MZ at fffff807`4b5f0000, prot 00000040, type 01000000 - size 18000
- Name: ndisuio.exe
- MZ at fffff807`4b610000, prot 00000040, type 01000000 - size 2b000
- Name: winquic.sys
- MZ at fffff807`4b640000, prot 00000040, type 01000000 - size 25000
- Name: bowser.exe
- MZ at fffff807`4b670000, prot 00000040, type 01000000 - size 1a000
- Name: mpsdrv.exe
- MZ at fffff807`4b690000, prot 00000040, type 01000000 - size c000
- Name: mspqm.exe
- MZ at fffff807`4c3b0000, prot 00000040, type 01000000 - size 46000
- Name: mrxsmb20.exe
- MZ at fffff807`4c400000, prot 00000040, type 01000000 - size cc000
- Name: WdiWiFi.sys
- MZ at fffff807`4c4d0000, prot 00000040, type 01000000 - size e000
- Name: vwifibus.exe
- MZ at fffff807`4c500000, prot 00000040, type 01000000 - size 21000
- Name: i8042prt.exe
- MZ at fffff807`4c530000, prot 00000040, type 01000000 - size 13000
- Name: kbdclass.exe
- MZ at fffff807`4c550000, prot 00000040, type 01000000 - size 13000
- Name: mouclass.exe
- MZ at fffff807`4c5c0000, prot 00000040, type 01000000 - size 65000
- Name: portcls.sys
- MZ at fffff807`4c660000, prot 00000040, type 01000000 - size 76000
- Name: ks.sys
- MZ at fffff807`4c6e0000, prot 00000040, type 01000000 - size c000
- Name: wmiacpi.exe
- MZ at fffff807`4c6f0000, prot 00000040, type 01000000 - size 3e000
- Name: intelppm.exe
- MZ at fffff807`4c730000, prot 00000040, type 01000000 - size b000
- Name: acpipagr.exe
- MZ at fffff807`4c740000, prot 00000040, type 01000000 - size f000
- Name: cmbatt.exe
- MZ at fffff807`4c750000, prot 00000040, type 01000000 - size 10000
- Name: BATTC.SYS
- MZ at fffff807`4c790000, prot 00000040, type 01000000 - size b000
- Name: mshidkmdf.exe
- MZ at fffff807`4c7a0000, prot 00000040, type 01000000 - size 3b000
- Name: HIDCLASS.SYS
- MZ at fffff807`4c7e0000, prot 00000040, type 01000000 - size 13000
- Name: HIDPARSE.SYS
- MZ at fffff807`4c860000, prot 00000040, type 01000000 - size 4c000
- Name: WUDFRd.exe
- MZ at fffff807`4c8b0000, prot 00000040, type 01000000 - size d000
- Name: UEFI.SYS
- MZ at fffff807`4c8e0000, prot 00000040, type 01000000 - size f000
- Name: ksthunk.exe
- MZ at fffff807`4c910000, prot 00000040, type 01000000 - size d000
- Name: NdisVirtualBus.exe
- MZ at fffff807`4c920000, prot 00000040, type 01000000 - size c000
- Name: swenum.exe
- MZ at fffff807`4c970000, prot 00000040, type 01000000 - size e000
- Name: rdpbus.exe
- MZ at fffff807`4c980000, prot 00000040, type 01000000 - size 11000
- Name: ButtonConverter.exe
- MZ at fffff807`4c9a0000, prot 00000040, type 01000000 - size 93000
- Name: usbhub3.sys
- MZ at fffff807`4ca40000, prot 00000040, type 01000000 - size e000
- Name: USBD.SYS
- MZ at fffff807`4ca50000, prot 00000040, type 01000000 - size 14000
- Name: hidi2c.exe
- MZ at fffff807`4cb40000, prot 00000040, type 01000000 - size f000
- Name: mouhid.exe
- MZ at fffff807`4cb50000, prot 00000040, type 01000000 - size c000
- Name: MTConfig.exe
- MZ at fffff807`4cb60000, prot 00000040, type 01000000 - size 11000
- Name: kbdhid.exe
- MZ at fffff807`4cb80000, prot 00000040, type 01000000 - size 115000
- Name: iaStorAVC.exe
- MZ at fffff807`4ccc0000, prot 00000040, type 01000000 - size 1d000
- Name: DUMPFVE.SYS
- MZ at fffff807`4cce0000, prot 00000040, type 01000000 - size 1c000
- Name: Microsoft.Bluetooth.Legacy.LEEnumerator.exe
- MZ at fffff807`4cd00000, prot 00000040, type 01000000 - size 38000
- Name: rfcomm.exe
- MZ at fffff807`4cd40000, prot 00000040, type 01000000 - size 22000
- Name: bthenum.exe
- MZ at fffff807`4cd70000, prot 00000040, type 01000000 - size 26000
- Name: bthpan.exe
- MZ at fffff807`4cda0000, prot 00000040, type 01000000 - size 22000
- Name: hidbth.exe
- MZ at fffff807`4cdd0000, prot 00000040, type 01000000 - size f000
- Name: NDISTAPI.SYS
- MZ at fffff807`4cdf0000, prot 00000040, type 01000000 - size 132000
- Name: bthport.sys
- MZ at fffff807`4cf30000, prot 00000040, type 01000000 - size 14000
- Name: mmcss.exe
- MZ at fffff807`4cf50000, prot 00000040, type 01000000 - size 28000
- Name: luafv.exe
- MZ at fffff807`4cf80000, prot 00000040, type 01000000 - size 12000
- Name: hidusb.exe
- MZ at fffff807`4cfb0000, prot 00000040, type 01000000 - size d000
- Name: WpdUpFltr.exe
- MZ at fffff807`4cfc0000, prot 00000040, type 01000000 - size 4e000
- Name: usbvideo.exe
- MZ at fffff807`4d030000, prot 00000040, type 01000000 - size f000
- Name: SYS.exe
- MZ at fffff807`4d9e0000, prot 00000040, type 01000000 - size 1b000
- Name: storqosflt.exe
- MZ at fffff808`37200000, prot 00000040, type 01000000 - size b000
- Name: BOOTVID.dll
- MZ at fffff808`37210000, prot 00000040, type 01000000 - size 70000
- Name: FLTMGR.SYS
- MZ at fffff808`37290000, prot 00000040, type 01000000 - size 109000
- Name: clipsp.sys
- MZ at fffff808`373a0000, prot 00000040, type 01000000 - size e000
- Name: cmimcext.dll
- MZ at fffff808`373b0000, prot 00000040, type 01000000 - size c000
- Name: ntosext.dll
- MZ at fffff808`373c0000, prot 00000040, type 01000000 - size d3000
- Name: CI.dll
- MZ at fffff808`374a0000, prot 00000040, type 01000000 - size b7000
- Name: cng.sys
- MZ at fffff808`37560000, prot 00000040, type 01000000 - size d1000
- Name: Wdf01000.exe
- MZ at fffff808`37640000, prot 00000040, type 01000000 - size 13000
- Name: WDFLDR.SYS
- MZ at fffff808`37660000, prot 00000040, type 01000000 - size 10000
- Name: WppRecorder.sys
- MZ at fffff808`37680000, prot 00000040, type 01000000 - size f000
- Name: SleepStudyHelper.sys
- MZ at fffff808`37690000, prot 00000040, type 01000000 - size 24000
- Name: acpiex.exe
- MZ at fffff808`376c0000, prot 00000040, type 01000000 - size 1a000
- Name: SgrmAgent.exe
- MZ at fffff808`376e0000, prot 00000040, type 01000000 - size c8000
- Name: ACPI.SYS
- MZ at fffff808`377b0000, prot 00000040, type 01000000 - size c000
- Name: WMILIB.SYS
- MZ at fffff808`377c0000, prot 00000040, type 01000000 - size b000
- Name: msisadrv.exe
- MZ at fffff808`377d0000, prot 00000040, type 01000000 - size 6b000
- Name: pci.exe
- MZ at fffff808`37840000, prot 00000040, type 01000000 - size 40000
- Name: tpm.exe
- MZ at fffff808`37890000, prot 00000040, type 01000000 - size 11000
- Name: CompositeBus.exe
- MZ at fffff808`378b0000, prot 00000040, type 01000000 - size 43000
- Name: intelpep.exe
- MZ at fffff808`37900000, prot 00000040, type 01000000 - size 16000
- Name: WindowsTrustedRT.exe
- MZ at fffff808`37920000, prot 00000040, type 01000000 - size b000
- Name: WindowsTrustedRTProxy.exe
- MZ at fffff808`37930000, prot 00000040, type 01000000 - size 14000
- Name: pcw.exe
- MZ at fffff808`37950000, prot 00000040, type 01000000 - size 12000
- Name: vdrvroot.exe
- MZ at fffff808`37970000, prot 00000040, type 01000000 - size 2e000
- Name: PDC.exe
- MZ at fffff808`379a0000, prot 00000040, type 01000000 - size 19000
- Name: CEA.sys
- MZ at fffff808`379c0000, prot 00000040, type 01000000 - size 2f000
- Name: partmgr.exe
- MZ at fffff808`379f0000, prot 00000040, type 01000000 - size a3000
- Name: spaceport.exe
- MZ at fffff808`37aa0000, prot 00000040, type 01000000 - size 19000
- Name: volmgr.exe
- MZ at fffff808`37ac0000, prot 00000040, type 01000000 - size 63000
- Name: volmgrx.exe
- MZ at fffff808`37b30000, prot 00000040, type 01000000 - size 1f000
- Name: mountmgr.exe
- MZ at fffff808`37b50000, prot 00000040, type 01000000 - size 115000
- Name: iaStorAVC.exe
- MZ at fffff808`37c70000, prot 00000040, type 01000000 - size 9b000
- Name: storport.sys
- MZ at fffff808`37d10000, prot 00000040, type 01000000 - size 1c000
- Name: EhStorClass.exe
- MZ at fffff808`37d30000, prot 00000040, type 01000000 - size 1a000
- Name: fileinfo.exe
- MZ at fffff808`37d50000, prot 00000040, type 01000000 - size 3e000
- Name: wof.exe
- MZ at fffff808`37d90000, prot 00000040, type 01000000 - size 54000
- Name: WdFilter.exe
- MZ at fffff808`37df0000, prot 00000040, type 01000000 - size 6b000
- Name: fastfat.exe
- MZ at fffff808`37e60000, prot 00000040, type 01000000 - size 84000
- Name: Vid.exe
- MZ at fffff808`37ef0000, prot 00000040, type 01000000 - size 18e000
- Name: mcupdate_GenuineIntel.exe
- MZ at fffff808`38080000, prot 00000040, type 01000000 - size 62000
- Name: msrpc.sys
- MZ at fffff808`380f0000, prot 00000040, type 01000000 - size 2b000
- Name: ksecdd.sys
- MZ at fffff808`38120000, prot 00000040, type 01000000 - size 11000
- Name: WerLiveKernelApi.dll
- MZ at fffff808`38140000, prot 00000040, type 01000000 - size 6a000
- Name: CLFS.SYS
- MZ at fffff808`381b0000, prot 00000040, type 01000000 - size 27000
- Name: ntostmhost.dll
- MZ at fffff808`381e0000, prot 00000040, type 01000000 - size 18000
- Name: PSHED.dll
- MZ at fffff808`38200000, prot 00000040, type 01000000 - size 153000
- Name: NDIS.SYS
- MZ at fffff808`38360000, prot 00000040, type 01000000 - size 95000
- Name: NETIO.SYS
- MZ at fffff808`38400000, prot 00000040, type 01000000 - size 32000
- Name: ksecpkg.exe
- MZ at fffff808`38440000, prot 00000040, type 01000000 - size 2db000
- Name: TCPIP.SYS
- MZ at fffff808`38720000, prot 00000040, type 01000000 - size 78000
- Name: fwpkclnt.sys
- MZ at fffff808`387a0000, prot 00000040, type 01000000 - size 30000
- Name: wfplwfs.exe
- MZ at fffff808`387e0000, prot 00000040, type 01000000 - size c8000
- Name: fvevol.exe
- MZ at fffff808`388b0000, prot 00000040, type 01000000 - size b000
- Name: volume.exe
- MZ at fffff808`388c0000, prot 00000040, type 01000000 - size 6d000
- Name: volsnap.exe
- MZ at fffff808`38930000, prot 00000040, type 01000000 - size 4f000
- Name: rdyboost.exe
- MZ at fffff808`38980000, prot 00000040, type 01000000 - size 25000
- Name: MUP.SYS
- MZ at fffff808`389b0000, prot 00000040, type 01000000 - size 11000
- Name: iorate.exe
- MZ at fffff808`389e0000, prot 00000040, type 01000000 - size 1c000
- Name: disk.exe
- MZ at fffff808`38a00000, prot 00000040, type 01000000 - size 6f000
- Name: CLASSPNP.SYS
- MZ at fffff808`38a90000, prot 00000040, type 01000000 - size 1c000
- Name: CRASHDMP.SYS
- MZ at fffff808`38bf0000, prot 00000040, type 01000000 - size 7a000
- Name: rdbss.sys
- MZ at fffff808`38c70000, prot 00000040, type 01000000 - size a000
- Name: gpuenergydrv.exe
- MZ at fffff808`38c80000, prot 00000040, type 01000000 - size 2c000
- Name: dfsc.exe
- MZ at fffff808`38cb0000, prot 00000040, type 01000000 - size 1e000
- Name: winhvr.sys
- MZ at fffff808`38cd0000, prot 00000040, type 01000000 - size 14000
- Name: bam.exe
- MZ at fffff808`38cf0000, prot 00000040, type 01000000 - size d000
- Name: kdnic.sys
- MZ at fffff808`38d00000, prot 00000040, type 01000000 - size 28d000
- Name: ntfs.exe
- MZ at fffff808`38f90000, prot 00000040, type 01000000 - size d000
- Name: fs_rec.exe
- MZ at fffff808`38fa0000, prot 00000040, type 01000000 - size 4e000
- Name: ahcache.exe
- MZ at fffffd5a`76e00000, prot 00000040, type 01000000 - size 391000
- Name: win32kfull.sys
- MZ at fffffd5a`771a0000, prot 00000040, type 01000000 - size 26d000
- Name: win32kbase.sys
- MZ at fffffd5a`77410000, prot 00000040, type 01000000 - size 48000
- Name: cdd.dll
- MZ at fffffd5a`77cd0000, prot 00000040, type 01000000 - size 8b000
- Name: WIN32K.SYS
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement