Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ========================== AUTO DUMP ANALYZER ==========================
- Auto Dump Analyzer
- Version: 0.9
- Time to analyze file(s): 00 hours and 01 minutes and 58 seconds
- ================================ SYSTEM ================================
- MANUFACTURER: Micro-Star International Co., Ltd.
- PRODUCT_NAME: MS-7B87
- VERSION: 1.0
- ================================= BIOS =================================
- VENDOR: American Megatrends Inc.
- VERSION: 1.30
- DATE: 12/20/2018
- ============================= MOTHERBOARD ==============================
- MANUFACTURER: Micro-Star International Co., Ltd.
- PRODUCT: B450M GAMING PLUS (MS-7B87)
- VERSION: 1.0
- ================================= RAM ==================================
- Size Speed Manufacturer Part No.
- -------------- -------------- ------------------- ----------------------
- 8192MB 2133MHz Unknown F4-3000C16-8GISB
- 8192MB 2133MHz Unknown F4-3000C16-8GISB
- ================================= CPU ==================================
- Processor Version: AMD Ryzen 5 2600 Six-Core Processor
- COUNT: c
- MHZ: 3400
- VENDOR: AuthenticAMD
- FAMILY: 17
- MODEL: 8
- STEPPING: 2
- ================================== OS ==================================
- Product: WinNt, suite: TerminalServer SingleUserTS Personal
- Built by: 18362.1.amd64fre.19h1_release.190318-1202
- BUILD_VERSION: 10.0.18362.535 (WinBuild.160101.0800)
- BUILD: 18362
- SERVICEPACK: 535
- PLATFORM_TYPE: x64
- NAME: Windows 10
- EDITION: Windows 10 WinNt TerminalServer SingleUserTS Personal
- BUILD_TIMESTAMP: 1980-01-11 10:53:20
- BUILDDATESTAMP: 160101.0800
- BUILDLAB: WinBuild
- BUILDOSVER: 10.0.18362.535
- =============================== DEBUGGER ===============================
- Microsoft (R) Windows Debugger Version 10.0.14321.1024 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- =============================== COMMENTS ===============================
- * More RAM information can be found below in the full BIOS section.
- ========================================================================
- ==================== Dump File: 121219-7937-01.dmp =====================
- ========================================================================
- Mini Kernel Dump File: Only registers and stack trace are available
- Windows 10 Kernel Version 18362 MP (12 procs) Free x64
- Kernel base = 0xfffff802`50200000 PsLoadedModuleList = 0xfffff802`50648130
- Debug session time: Thu Dec 12 07:30:20.546 2019 (UTC - 5:00)
- System Uptime: 0 days 0:04:03.247
- BugCheck FC, {ffff8c81dcf03000, 8a000004014009e3, fffff80256479490, 3}
- *** WARNING: Unable to verify timestamp for nvlddmkm.sys
- *** ERROR: Module load completed but symbols could not be loaded for nvlddmkm.sys
- *** WARNING: Unable to verify timestamp for win32k.sys
- *** ERROR: Module load completed but symbols could not be loaded for win32k.sys
- Probably caused by : memory_corruption
- Followup: memory_corruption
- ATTEMPTED_EXECUTE_OF_NOEXECUTE_MEMORY (fc)
- An attempt was made to execute non-executable memory. The guilty driver
- is on the stack trace (and is typically the current instruction pointer).
- When possible, the guilty driver's name (Unicode string) is printed on
- the bugcheck screen and saved in KiBugCheckDriver.
- Arguments:
- Arg1: ffff8c81dcf03000, Virtual address for the attempted execute.
- Arg2: 8a000004014009e3, PTE contents.
- Arg3: fffff80256479490, (reserved)
- Arg4: 0000000000000003, (reserved)
- Debugging Details:
- DUMP_CLASS: 1
- DUMP_QUALIFIER: 400
- DUMP_TYPE: 2
- CUSTOMER_CRASH_COUNT: 1
- DEFAULT_BUCKET_ID: CODE_CORRUPTION
- BUGCHECK_STR: 0xFC
- PROCESS_NAME: System
- CURRENT_IRQL: e
- TRAP_FRAME: fffff80256479490 -- (.trap 0xfffff80256479490)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=ffff8c81df0eada8 rbx=0000000000000000 rcx=ffff8c81df0eada8
- rdx=ffffc8013a141540 rsi=0000000000000000 rdi=0000000000000000
- rip=ffff8c81dcf03000 rsp=fffff80256479628 rbp=0000000000000000
- r8=fffff80260cfc6f8 r9=fffff80260cfcce8 r10=fffff80260cfcce8
- r11=fffff802564795f8 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei ng nz na po cy
- ffff8c81`dcf03000 90 nop
- Resetting default scope
- LAST_CONTROL_TRANSFER: from fffff80250454aac to fffff802503c14e0
- STACK_TEXT:
- fffff802`56479268 fffff802`50454aac : 00000000`000000fc ffff8c81`dcf03000 8a000004`014009e3 fffff802`56479490 : nt!KeBugCheckEx
- fffff802`56479270 fffff802`5044f199 : 00000000`00000003 00000000`00000001 00000000`00000000 fffff802`564793b0 : nt!MiCheckSystemNxFault+0x1298a0
- fffff802`564792b0 fffff802`5027302a : ffff8c81`df24e000 00000000`00000011 fffff802`564793f0 00000000`00000000 : nt!MiRaisedIrqlFault+0x12ebf9
- fffff802`564792f0 fffff802`503cf520 : ffff8c81`dcf03000 fffff802`56479760 fffff802`564795b0 fffff802`60576817 : nt!MmAccessFault+0x48a
- fffff802`56479490 ffff8c81`dcf03000 : fffff802`60cb7120 ffff8c81`dcecc000 00000000`00000000 ffff8c81`dcecc000 : nt!KiPageFault+0x360
- fffff802`56479628 fffff802`60cb7120 : ffff8c81`dcecc000 00000000`00000000 ffff8c81`dcecc000 fffff802`56479770 : 0xffff8c81`dcf03000
- fffff802`56479630 ffff8c81`dcecc000 : 00000000`00000000 ffff8c81`dcecc000 fffff802`56479770 ffff8c81`dcf03000 : nvlddmkm+0x787120
- fffff802`56479638 00000000`00000000 : ffff8c81`dcecc000 fffff802`56479770 ffff8c81`dcf03000 00000000`00000000 : 0xffff8c81`dcecc000
- STACK_COMMAND: kb
- CHKIMG_EXTENSION: !chkimg -lo 50 -d !hal
- fffff8025015e8a6-fffff8025015e8ab 6 bytes - hal!KeQueryPerformanceCounter+e6
- [ ff 15 5c 70 07 00:e8 f5 59 3f 00 90 ]
- fffff802501601d5-fffff802501601d6 2 bytes - hal!HalpTimerClockIpiRoutine+15 (+0x192f)
- [ 48 ff:4c 8b ]
- fffff802501601dc-fffff802501601df 4 bytes - hal!HalpTimerClockIpiRoutine+1c (+0x07)
- [ 0f 1f 44 00:e8 af ea 0b ]
- fffff80250160237-fffff8025016023c 6 bytes - hal!HalpTimerClockIpiRoutine+77 (+0x5b)
- [ ff 15 cb 56 07 00:e8 64 40 3f 00 90 ]
- fffff80250160283-fffff80250160288 6 bytes - hal!HalpTimerClockIpiRoutine+c3 (+0x4c)
- [ ff 15 7f 56 07 00:e8 18 40 3f 00 90 ]
- 24 errors : !hal (fffff8025015e8a6-fffff80250160288)
- MODULE_NAME: memory_corruption
- IMAGE_NAME: memory_corruption
- FOLLOWUP_NAME: memory_corruption
- DEBUG_FLR_IMAGE_TIMESTAMP: 0
- MEMORY_CORRUPTOR: LARGE
- FAILURE_BUCKET_ID: MEMORY_CORRUPTION_LARGE
- BUCKET_ID: MEMORY_CORRUPTION_LARGE
- PRIMARY_PROBLEM_CLASS: MEMORY_CORRUPTION_LARGE
- TARGET_TIME: 2019-12-12T12:30:20.000Z
- SUITE_MASK: 784
- PRODUCT_TYPE: 1
- USER_LCID: 0
- FAILURE_ID_HASH_STRING: km:memory_corruption_large
- FAILURE_ID_HASH: {e29154ac-69a4-0eb8-172a-a860f73c0a3c}
- Followup: memory_corruption
- ========================================================================
- ===================== 3RD PARTY DRIVER QUICK LIST ======================
- ========================================================================
- Oct 22 2012 - lvbflt64.sys - Logitech USB Video Class Filter Driver http://support.logitech.com/
- Oct 22 2012 - lvrs64.sys - Logitech Kernel Audio Improvement Filter Driver http://support.logitech.com/
- Oct 22 2012 - lvuvc64.sys - Logitech USB Video Class Driver (WebCam) http://support.logitech.com/
- Oct 09 2015 - wdcsam64.sys - Western Digital SCSI Arcitecture Model (SAM) WDM driver https://support.wdc.com/
- Mar 14 2016 - amdgpio3.sys - AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
- Aug 28 2018 - rt640x64.sys - Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
- Sep 10 2018 - amdpsp.sys - Advanced Micro Devices, Inc http://support.amd.com/
- Oct 11 2018 - AMDPCIDev.sys - Advanced Micro Devices PCI Device driver
- Oct 18 2018 - AMDRyzenMasterDriver.sys - AMD Ryzen Master driver
- Dec 09 2018 - UcmCxUcsiNvppc.sys - NVIDIA USB Type-C Port Policy Controller driver
- Dec 11 2018 - cpuz148_x64.sys - CPUID driver
- Apr 11 2019 - CorsairVBusDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Apr 11 2019 - CorsairVHidDriver.sys - Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- May 22 2019 - nvlddmkm.sys - Nvidia Graphics Card driver http://www.nvidia.com/
- Sep 05 2019 - CorsairLLAccess64.sys - CORSAIR iCUE Software driver
- Sep 24 2019 - CorsairGamingAudio64.sys - Corsair Gaming Audio 64-bit driver
- Sep 29 2019 - amdgpio2.sys - AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
- ========================================================================
- ========================== 3RD PARTY DRIVERS ===========================
- ========================================================================
- Image path: \SystemRoot\System32\drivers\lvbflt64.sys
- Image name: lvbflt64.sys
- Search : https://www.google.com/search?q=lvbflt64.sys
- ADA Info : Logitech USB Video Class Filter Driver http://support.logitech.com/
- Timestamp : Mon Oct 22 2012
- Image path: \SystemRoot\system32\DRIVERS\lvrs64.sys
- Image name: lvrs64.sys
- Search : https://www.google.com/search?q=lvrs64.sys
- ADA Info : Logitech Kernel Audio Improvement Filter Driver http://support.logitech.com/
- Timestamp : Mon Oct 22 2012
- Image path: \SystemRoot\system32\DRIVERS\lvuvc64.sys
- Image name: lvuvc64.sys
- Search : https://www.google.com/search?q=lvuvc64.sys
- ADA Info : Logitech USB Video Class Driver (WebCam) http://support.logitech.com/
- Timestamp : Mon Oct 22 2012
- Image path: \SystemRoot\System32\drivers\wdcsam64.sys
- Image name: wdcsam64.sys
- Search : https://www.google.com/search?q=wdcsam64.sys
- ADA Info : Western Digital SCSI Arcitecture Model (SAM) WDM driver https://support.wdc.com/
- Timestamp : Fri Oct 9 2015
- Image path: \SystemRoot\System32\drivers\amdgpio3.sys
- Image name: amdgpio3.sys
- Search : https://www.google.com/search?q=amdgpio3.sys
- ADA Info : AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
- Timestamp : Mon Mar 14 2016
- Image path: \SystemRoot\System32\drivers\rt640x64.sys
- Image name: rt640x64.sys
- Search : https://www.google.com/search?q=rt640x64.sys
- ADA Info : Realtek NICDRV 8169 PCIe GBE Family Controller driver https://www.realtek.com/en/
- Timestamp : Tue Aug 28 2018
- Image path: \SystemRoot\System32\drivers\amdpsp.sys
- Image name: amdpsp.sys
- Search : https://www.google.com/search?q=amdpsp.sys
- ADA Info : Advanced Micro Devices, Inc http://support.amd.com/
- Timestamp : Mon Sep 10 2018
- Image path: \SystemRoot\System32\drivers\AMDPCIDev.sys
- Image name: AMDPCIDev.sys
- Search : https://www.google.com/search?q=AMDPCIDev.sys
- ADA Info : Advanced Micro Devices PCI Device driver
- Timestamp : Thu Oct 11 2018
- Image path: \??\C:\Program Files\AMD\RyzenMaster\bin\AMDRyzenMasterDriver.sys
- Image name: AMDRyzenMasterDriver.sys
- Search : https://www.google.com/search?q=AMDRyzenMasterDriver.sys
- ADA Info : AMD Ryzen Master driver
- Timestamp : Thu Oct 18 2018
- Image path: \SystemRoot\System32\drivers\UcmCxUcsiNvppc.sys
- Image name: UcmCxUcsiNvppc.sys
- Search : https://www.google.com/search?q=UcmCxUcsiNvppc.sys
- ADA Info : NVIDIA USB Type-C Port Policy Controller driver
- Timestamp : Sun Dec 9 2018
- Image path: \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys
- Image name: cpuz148_x64.sys
- Search : https://www.google.com/search?q=cpuz148_x64.sys
- ADA Info : CPUID driver
- Timestamp : Tue Dec 11 2018
- Image path: \SystemRoot\System32\drivers\CorsairVBusDriver.sys
- Image name: CorsairVBusDriver.sys
- Search : https://www.google.com/search?q=CorsairVBusDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\drivers\CorsairVHidDriver.sys
- Image name: CorsairVHidDriver.sys
- Search : https://www.google.com/search?q=CorsairVHidDriver.sys
- ADA Info : Corsair Virtual Device driver (Corsair Utility Engine) http://www.corsair.com/
- Timestamp : Thu Apr 11 2019
- Image path: \SystemRoot\System32\DriverStore\FileRepository\nvmd.inf_amd64_91da6d9092d2907a\nvlddmkm.sys
- Image name: nvlddmkm.sys
- Search : https://www.google.com/search?q=nvlddmkm.sys
- ADA Info : Nvidia Graphics Card driver http://www.nvidia.com/
- Timestamp : Wed May 22 2019
- Image path: \??\C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\CorsairLLAccess64.sys
- Image name: CorsairLLAccess64.sys
- Search : https://www.google.com/search?q=CorsairLLAccess64.sys
- ADA Info : CORSAIR iCUE Software driver
- Timestamp : Thu Sep 5 2019
- Image path: \SystemRoot\system32\DRIVERS\CorsairGamingAudio64.sys
- Image name: CorsairGamingAudio64.sys
- Search : https://www.google.com/search?q=CorsairGamingAudio64.sys
- ADA Info : Corsair Gaming Audio 64-bit driver
- Timestamp : Tue Sep 24 2019
- Image path: \SystemRoot\System32\drivers\amdgpio2.sys
- Image name: amdgpio2.sys
- Search : https://www.google.com/search?q=amdgpio2.sys
- ADA Info : AMD GPIO Controller Driver from Advanced Micro Devices http://support.amd.com/
- Timestamp : Sun Sep 29 2019
- If any of the above drivers are from Microsoft then please let me know.
- I will have them moved to the Microsoft list on the next update.
- ========================================================================
- ========================== MICROSOFT DRIVERS ===========================
- ========================================================================
- ACPI.sys ACPI Driver for NT (Microsoft)
- acpiex.sys ACPIEx Driver (Microsoft)
- afd.sys Ancillary Function Driver for WinSock (Microsoft)
- afunix.sys AF_UNIX Socket Provider driver (Microsoft)
- AgileVpn.sys RAS Agil VPN Miniport Call Manager driver (Microsoft)
- ahcache.sys Application Compatibility Cache (Microsoft)
- amdppm.sys Processor Device Driver
- bam.sys BAM Kernal driver (Microsoft)
- BasicDisplay.sys Basic Display driver (Microsoft)
- BasicRender.sys Basic Render driver (Microsoft)
- Beep.SYS BEEP driver (Microsoft)
- BOOTVID.dll VGA Boot Driver (Microsoft)
- bowser.sys NT Lan Manager Datagram Receiver Driver (Microsoft)
- cdd.dll Canonical Display Driver (Microsoft)
- cdrom.sys SCSI CD-ROM Driver (Microsoft)
- CEA.sys Event Aggregation Kernal Mode Library (Microsoft)
- CI.dll Code Integrity Module (Microsoft)
- CLASSPNP.SYS SCSI Class System Dll (Microsoft)
- cldflt.sys Cloud Files Mini Filter driver (Microsoft)
- CLFS.SYS Common Log File System Driver (Microsoft)
- clipsp.sys CLIP Service (Microsoft)
- cmimcext.sys Kernal Configuration Manager Initial Con. Driver (Microsoft)
- cng.sys Kernal Cryptography, Next Generation Driver (Microsoft)
- CompositeBus.sys Multi-Transport Composite Bus Enumerator (Microsoft)
- condrv.sys Console Driver (Microsoft)
- crashdmp.sys Crash Dump driver (Microsoft)
- dfsc.sys DFS Namespace Client Driver (Microsoft)
- disk.sys PnP Disk Driver (Microsoft)
- drmk.sys Digital Rights Management (DRM) driver (Microsoft)
- dump_diskdump.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_dumpfve.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dump_storahci.sys (Generic Description) dump_*.sys drivers usually provide disk access during a crash to write dump files.
- dxgkrnl.sys DirectX Graphics Kernal (Microsoft)
- dxgmms2.sys DirectX Graphics MMS
- fastfat.SYS Fast FAT File System Driver (Microsoft)
- filecrypt.sys Windows sandboxing and encryption filter (Microsoft)
- fileinfo.sys FileInfo Filter Driver (Microsoft)
- FLTMGR.SYS Filesystem Filter Manager (Microsoft)
- Fs_Rec.sys File System Recognizer Driver (Microsoft)
- fvevol.sys BitLocker Driver Encryption Driver (Microsoft)
- fwpkclnt.sys FWP/IPsec Kernal-Mode API (Microsoft)
- gpuenergydrv.sys GPU Energy Kernal Driver (Microsoft)
- hal.dll Hardware Abstraction Layer DLL (Microsoft)
- HDAudBus.sys High Definition Audio Bus Driver (Microsoft)
- HdAudio.sys High Definition Audio Function driver (Microsoft)
- HIDCLASS.SYS Hid Class Library (Microsoft)
- HIDPARSE.SYS Hid Parsing Library (Microsoft)
- hidusb.sys USB Miniport Driver for Input Devices (Microsoft)
- HTTP.sys HTTP Protocol Stack (Microsoft)
- intelpep.sys Intel Power Engine Plugin (Microsoft)
- iorate.sys I/O rate control Filter (Microsoft)
- kbdclass.sys Keyboard Class Driver (Microsoft)
- kbdhid.sys HID Mouse Filter Driver or HID Keyboard Filter Driver (Microsoft)
- kd.dll Local Kernal Debugger (Microsoft)
- kdnic.sys Microsoft Kernel Debugger Network Miniport (Microsoft)
- ks.sys Kernal CSA Library (Microsoft)
- ksecdd.sys Kernel Security Support Provider Interface (Microsoft)
- ksecpkg.sys Kernel Security Support Provider Interface Packages (Microsoft)
- ksthunk.sys Kernal Streaming WOW Thunk Service (Microsoft)
- lltdio.sys Link-Layer Topology Mapper I/O Driver (Microsoft)
- luafv.sys LUA File Virtualization Filter Driver (Microsoft)
- mcupdate_AuthenticAMD.dll AMD Microcode Update Library (Microsoft)
- mmcss.sys MMCSS Driver (Microsoft)
- monitor.sys Monitor Driver (Microsoft)
- mouclass.sys Mouse Class Driver (Microsoft)
- mouhid.sys HID Mouse Filter Driver (Microsoft)
- mountmgr.sys Mount Point Manager (Microsoft)
- mpsdrv.sys Microsoft Protection Service Driver (Microsoft)
- mrxsmb.sys SMB MiniRedirector Wrapper and Engine (Microsoft)
- mrxsmb20.sys Longhorn SMB 2.0 Redirector (Microsoft)
- Msfs.SYS Mailslot driver (Microsoft)
- msgpioclx.sys GPIO Class Extension Driver (Microsoft)
- msisadrv.sys ISA Driver (Microsoft)
- mslldp.sys Microsoft Link-Layer Discovery Protocol... (Microsoft)
- msrpc.sys Kernel Remote Procedure Call Provider (Microsoft)
- mssmbios.sys System Management BIOS driver (Microsoft)
- mup.sys Multiple UNC Provider driver (Microsoft)
- ndis.sys Network Driver Interface Specification (NDIS) driver (Microsoft)
- ndistapi.sys NDIS 3.0 Connection Wrapper driver (Microsoft)
- NdisVirtualBus.sys Virtual Network Adapter Enumerator (Microsoft)
- ndiswan.sys MS PPP Framing Driver (Strong Encryption) Microsoft)
- NDProxy.sys NDIS Proxy driver (Microsoft)
- Ndu.sys Network Data Usage Monitoring driver (Microsoft)
- netbios.sys NetBIOS Interface driver (Microsoft)
- netbt.sys MBT Transport driver (Microsoft)
- NETIO.SYS Network I/O Subsystem (Microsoft)
- Npfs.SYS NPFS driver (Microsoft)
- npsvctrig.sys Named pipe service triggers (Microsoft)
- nsiproxy.sys NSI Proxy driver (Microsoft)
- Ntfs.sys NT File System Driver (Microsoft)
- ntkrnlmp.exe Windows NT operating system kernel (Microsoft)
- ntosext.sys NTOS Extension Host driver (Microsoft)
- Null.SYS NULL Driver (Microsoft)
- pacer.sys QoS Packet Scheduler (Microsoft)
- partmgr.sys Partition driver (Microsoft)
- pci.sys NT Plug and Play PCI Enumerator (Microsoft)
- pcw.sys Performance Counter Driver (Microsoft)
- pdc.sys Power Dependency Coordinator Driver (Microsoft)
- peauth.sys Protected Environment Authentication and Authorization Export Driver (Microsoft)
- portcls.sys Class Driver for Port/Miniport Devices system driver (Microsoft)
- PSHED.dll Platform Specific Hardware Error driver (Microsoft)
- rasl2tp.sys RAS L2TP Mini-port/Call-manager driver (Microsoft)
- raspppoe.sys RAS PPPoE Mini-port/Call manager driver (Microsoft)
- raspptp.sys Peer-to-Peer Tunneling Protocol (Microsoft)
- rassstp.sys RAS SSTP Miniport Call Manager driver (Microsoft)
- rdbss.sys Redirected Drive Buffering SubSystem driver (Microsoft)
- rdpbus.sys Microsoft RDP Bus Device driver (Microsoft)
- rdyboost.sys ReadyBoost Driver (Microsoft)
- rspndr.sys Link-Layer Topology Responder driver (Microsoft)
- serenum.sys Serial Port Enumerator (Microsoft)
- serial.sys Serial Device Driver
- serscan.sys Serial Imaging Device Driver (Microsoft)
- SgrmAgent.sys System Guard Runtime Monitor Agent driver (Microsoft)
- SleepStudyHelper.sys Sleep Study Helper driver (Microsoft)
- spaceport.sys Storage Spaces driver (Microsoft)
- srv2.sys Smb 2.0 Server driver (Microsoft)
- srvnet.sys Server Network driver (Microsoft)
- storahci.sys MS AHCI Storport Miniport Driver (Microsoft)
- storport.sys Storage port driver for use with high-performance buses such as fibre channel buses and RAID adapters. (Microsoft)
- storqosflt.sys Storage QoS Filter driver (Microsoft)
- swenum.sys Plug and Play Software Device Enumerator (Microsoft)
- tbs.sys Export driver for kernel mode TPM API (Microsoft)
- tcpip.sys TCP/IP Protocol driver (Microsoft)
- tcpipreg.sys Microsoft Windows TCP/IP Registry Compatibility driver (Microsoft)
- TDI.SYS TDI Wrapper driver (Microsoft)
- tdx.sys NetIO Legacy TDI x-bit Support Driver (Microsoft)
- tm.sys Kernel Transaction Manager driver (Microsoft)
- UcmCx.sys USB Connector Manager KMDF Class Extension
- ucx01000.sys USB Controller Extension (Microsoft)
- UEFI.sys UEFI NT driver (Microsoft)
- umbus.sys User-Mode Bus Enumerator (Microsoft)
- usbaudio.sys USB Audio Class Driver (Microsoft)
- usbccgp.sys USB Common Class Generic Parent Driver (Microsoft)
- USBD.SYS Universal Serial Bus Driver (Microsoft)
- UsbHub3.sys USB3 HUB driver (Microsoft)
- USBSTOR.SYS USB Mass Storage Class driver (Microsoft)
- USBXHCI.SYS USB XHCI driver (Microsoft)
- vdrvroot.sys Virtual Drive Root Enumerator (Microsoft)
- Vid.sys Microsoft Hyper-V Virtualization Infrastructure Driver
- volmgr.sys Volume Manager Driver (Microsoft)
- volmgrx.sys Volume Manager Extension Driver (Microsoft)
- volsnap.sys Volume Shadow Copy driver (Microsoft)
- volume.sys Volume driver (Microsoft)
- vwififlt.sys Virtual WiFi Filter Driver (Microsoft)
- wanarp.sys MS Remote Access and Routing ARP driver (Microsoft)
- watchdog.sys Watchdog driver (Microsoft)
- wcifs.sys Windows Container Isolation FS Filter driver (Microsoft)
- Wdf01000.sys Kernel Mode Driver Framework Runtime (Microsoft)
- WdFilter.sys Microsoft Anti-malware file system filter driver (Microsoft)
- WDFLDR.SYS Kernel Mode Driver Framework Loader (Microsoft)
- WdNisDrv.sys Microsoft Network Realtime Inspection driver (Microsoft)
- werkernel.sys Windows Error Reporting Kernel driver (Microsoft)
- wfplwfs.sys WPF NDIS Lightweight Filter driver (Microsoft)
- win32k.sys Full/Desktop Multi-User Win32 driver (Microsoft)
- win32kbase.sys Base Win32k Kernel Driver (Microsoft)
- win32kfull.sys Full/Desktop Win32k Kernel Driver (Microsoft)
- WindowsTrustedRT.sys Windows Trusted Runtime Interface driver (Microsoft)
- WindowsTrustedRTProxy.sys Windows Trusted Runtime Service Proxy driver (Microsoft)
- winhvr.sys Windows Hypervisor Root Interface driver (Microsoft)
- winquic.sys QUIC Transport Protocol driver (Microsoft)
- wmiacpi.sys Windows Management Interface for ACPI (Microsoft)
- WMILIB.SYS WMILIB WMI support library DLL (Microsoft)
- Wof.sys Windows Overlay Filter (Microsoft)
- WpdUpFltr.sys Portable Device Upper Class Filter driver (Microsoft)
- WppRecorder.sys WPP Trace Recorder (Microsoft)
- WSDPrint.sys Web Services Print Device driver (Microsoft)
- WSDScan.sys Web Service Based Scan Device driver (Microsoft)
- WUDFRd.sys Windows Driver Foundation - User-mode Driver Framework Reflector driver (Microsoft)
- Unloaded modules:
- fffff802`5efa0000 fffff802`5efb1000 MSKSSRV.sys
- fffff802`5e050000 fffff802`5e05e000 WSDScan.sys
- fffff802`5d870000 fffff802`5d87e000 WSDPrint.sys
- fffff802`5d860000 fffff802`5d86e000 WSDScan.sys
- fffff802`5d850000 fffff802`5d85e000 WSDPrint.sys
- fffff802`5d840000 fffff802`5d848000 NTIOLib_X64.
- fffff802`5e1e0000 fffff802`5e1ef000 dump_storpor
- fffff802`5d830000 fffff802`5d85f000 dump_storahc
- fffff802`5d880000 fffff802`5d89e000 dump_dumpfve
- fffff802`553d0000 fffff802`553ec000 EhStorClass.
- fffff802`5e050000 fffff802`5e06e000 dam.sys
- fffff802`54f80000 fffff802`54f91000 WdBoot.sys
- fffff802`55f90000 fffff802`55fa0000 hwpolicy.sys
- ========================================================================
- ============================== BIOS INFO ===============================
- ========================================================================
- [SMBIOS Data Tables v2.8]
- [DMI Version - 0]
- [2.0 Calling Convention - No]
- [Table Size - 2285 bytes]
- [BIOS Information (Type 0) - Length 26 - Handle 0000h]
- Vendor American Megatrends Inc.
- BIOS Version 1.30
- BIOS Starting Address Segment f000
- BIOS Release Date 12/20/2018
- BIOS ROM Size 1000000
- BIOS Characteristics
- 07: - PCI Supported
- 11: - Upgradeable FLASH BIOS
- 12: - BIOS Shadowing Supported
- 15: - CD-Boot Supported
- 16: - Selectable Boot Supported
- 17: - BIOS ROM Socketed
- 19: - EDD Supported
- 23: - 1.2MB Floppy Supported
- 24: - 720KB Floppy Supported
- 25: - 2.88MB Floppy Supported
- 26: - Print Screen Device Supported
- 27: - Keyboard Services Supported
- 28: - Serial Services Supported
- 29: - Printer Services Supported
- 32: - BIOS Vendor Reserved
- BIOS Characteristic Extensions
- 00: - ACPI Supported
- 01: - USB Legacy Supported
- 08: - BIOS Boot Specification Supported
- 10: - Specification Reserved
- 11: - Specification Reserved
- BIOS Major Revision 5
- BIOS Minor Revision 13
- EC Firmware Major Revision 255
- EC Firmware Minor Revision 255
- [System Information (Type 1) - Length 27 - Handle 0001h]
- Manufacturer Micro-Star International Co., Ltd.
- Product Name MS-7B87
- Version 1.0
- UUID 00000000-0000-0000-0000-000000000000
- Wakeup Type Power Switch
- [BaseBoard Information (Type 2) - Length 15 - Handle 0002h]
- Manufacturer Micro-Star International Co., Ltd.
- Product B450M GAMING PLUS (MS-7B87)
- Version 1.0
- Feature Flags 09h
- 1004254944: - 1004254992: - w8รgรพ
- Chassis Handle 0003h
- Board Type 0ah - Processor/Memory Module
- Number of Child Handles 0
- [System Enclosure (Type 3) - Length 22 - Handle 0003h]
- Manufacturer Micro-Star International Co., Ltd.
- Chassis Type Desktop
- Version 1.0
- Bootup State Safe
- Power Supply State Safe
- Thermal State Safe
- Security Status None
- OEM Defined 0
- Height 0U
- Number of Power Cords 1
- Number of Contained Elements 0
- Contained Element Size 3
- [OEM Strings (Type 11) - Length 5 - Handle 000bh]
- Number of Strings 1
- [System Configuration Options (Type 12) - Length 5 - Handle 000ch]
- [32Bit Memory Error Information (Type 18) - Length 23 - Handle 000eh]
- [Physical Memory Array (Type 16) - Length 23 - Handle 000fh]
- Location 03h - SystemBoard/Motherboard
- Use 03h - System Memory
- Memory Error Correction 03h - None
- Maximum Capacity 268435456KB
- Memory Error Inf Handle 000eh
- Number of Memory Devices 2
- [Memory Array Mapped Address (Type 19) - Length 31 - Handle 0010h]
- Starting Address 00000000h
- Ending Address 00ffffffh
- Memory Array Handle 000fh
- Partition Width 02
- [Cache Information (Type 7) - Length 19 - Handle 0011h]
- Socket Designation L1 - Cache
- Cache Configuration 0180h - WB Enabled Int NonSocketed L1
- Maximum Cache Size 0240h - 576K
- Installed Size 0240h - 576K
- Supported SRAM Type 0010h - Pipeline-Burst
- Current SRAM Type 0010h - Pipeline-Burst
- Cache Speed 1ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0012h]
- Socket Designation L2 - Cache
- Cache Configuration 0181h - WB Enabled Int NonSocketed L2
- Maximum Cache Size 0c00h - 3072K
- Installed Size 0c00h - 3072K
- Supported SRAM Type 0010h - Pipeline-Burst
- Current SRAM Type 0010h - Pipeline-Burst
- Cache Speed 1ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 8-way Set-Associative
- [Cache Information (Type 7) - Length 19 - Handle 0013h]
- Socket Designation L3 - Cache
- Cache Configuration 0182h - WB Enabled Int NonSocketed L3
- Maximum Cache Size 4000h - 16384K
- Installed Size 4000h - 16384K
- Supported SRAM Type 0010h - Pipeline-Burst
- Current SRAM Type 0010h - Pipeline-Burst
- Cache Speed 1ns
- Error Correction Type Specification Reserved
- System Cache Type Unified
- Associativity 16-way Set-Associative
- [Processor Information (Type 4) - Length 48 - Handle 0014h]
- Socket Designation AM4
- Processor Type Central Processor
- Processor Family 6bh - Specification Reserved
- Processor Manufacturer Advanced Micro Devices, Inc.
- Processor ID 820f8000fffb8b17
- Processor Version AMD Ryzen 5 2600 Six-Core Processor
- Processor Voltage 8bh - 1.1V
- External Clock 100MHz
- Max Speed 3900MHz
- Current Speed 3400MHz
- Status Enabled Populated
- Processor Upgrade Specification Reserved
- L1 Cache Handle 0011h
- L2 Cache Handle 0012h
- L3 Cache Handle 0013h
- Part Number Unknown
- [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0015h]
- [Memory Device (Type 17) - Length 40 - Handle 0016h]
- Physical Memory Array Handle 000fh
- Memory Error Info Handle 0015h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator DIMM 0
- Bank Locator P0 CHANNEL A
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Unknown
- Part Number F4-3000C16-8GISB
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 0017h]
- Starting Address 00000000h
- Ending Address 00ffffffh
- Memory Device Handle 0016h
- Mem Array Mapped Adr Handle 0010h
- [32Bit Memory Error Information (Type 18) - Length 23 - Handle 0018h]
- [Memory Device (Type 17) - Length 40 - Handle 0019h]
- Physical Memory Array Handle 000fh
- Memory Error Info Handle 0018h
- Total Width 64 bits
- Data Width 64 bits
- Size 8192MB
- Form Factor 09h - DIMM
- Device Locator DIMM 0
- Bank Locator P0 CHANNEL B
- Memory Type 1ah - Specification Reserved
- Type Detail 4080h - Synchronous
- Speed 2133MHz
- Manufacturer Unknown
- Part Number F4-3000C16-8GISB
- [Memory Device Mapped Address (Type 20) - Length 35 - Handle 001ah]
- Starting Address 00000000h
- Ending Address 00ffffffh
- Memory Device Handle 0019h
- Mem Array Mapped Adr Handle 0010h
- ========================================================================
- ============================== IMAGE SCAN ==============================
- ========================================================================
- MZ at fffff802`5015d000, prot 00000040, type 01000000 - size a3000
- Name: HAL.dll
- MZ at fffff802`50200000, prot 00000040, type 01000000 - size ab6000
- Name: ntoskrnl.exe
- MZ at fffff802`54800000, prot 00000040, type 01000000 - size b000
- Name: KD.dll
- MZ at fffff802`54840000, prot 00000040, type 01000000 - size 11000
- Name: WerLiveKernelApi.dll
- MZ at fffff802`54860000, prot 00000040, type 01000000 - size 2a000
- Name: ksecdd.sys
- MZ at fffff802`54890000, prot 00000040, type 01000000 - size 60000
- Name: msrpc.sys
- MZ at fffff802`54900000, prot 00000040, type 01000000 - size 27000
- Name: ntostmhost.dll
- MZ at fffff802`54930000, prot 00000040, type 01000000 - size 68000
- Name: CLFS.SYS
- MZ at fffff802`549a0000, prot 00000040, type 01000000 - size 1a000
- Name: PSHED.dll
- MZ at fffff802`549c0000, prot 00000040, type 01000000 - size b000
- Name: BOOTVID.dll
- MZ at fffff802`549d0000, prot 00000040, type 01000000 - size 105000
- Name: clipsp.sys
- MZ at fffff802`54ae0000, prot 00000040, type 01000000 - size 71000
- Name: FLTMGR.SYS
- MZ at fffff802`54b60000, prot 00000040, type 01000000 - size e000
- Name: cmimcext.dll
- MZ at fffff802`54b70000, prot 00000040, type 01000000 - size c000
- Name: ntosext.dll
- MZ at fffff802`54b80000, prot 00000040, type 01000000 - size dc000
- Name: CI.dll
- MZ at fffff802`54c60000, prot 00000040, type 01000000 - size bc000
- Name: cng.sys
- MZ at fffff802`54d20000, prot 00000040, type 01000000 - size d5000
- Name: Wdf01000.exe
- MZ at fffff802`54e00000, prot 00000040, type 01000000 - size 13000
- Name: WDFLDR.SYS
- MZ at fffff802`54e20000, prot 00000040, type 01000000 - size f000
- Name: SleepStudyHelper.sys
- MZ at fffff802`54e30000, prot 00000040, type 01000000 - size 10000
- Name: WppRecorder.sys
- MZ at fffff802`54e50000, prot 00000040, type 01000000 - size 25000
- Name: acpiex.exe
- MZ at fffff802`54e80000, prot 00000040, type 01000000 - size 1a000
- Name: SgrmAgent.exe
- MZ at fffff802`54ea0000, prot 00000040, type 01000000 - size cc000
- Name: ACPI.SYS
- MZ at fffff802`54f70000, prot 00000040, type 01000000 - size c000
- Name: WMILIB.SYS
- MZ at fffff802`54fa0000, prot 00000040, type 01000000 - size 5b000
- Name: intelpep.exe
- MZ at fffff802`55000000, prot 00000040, type 01000000 - size 17000
- Name: WindowsTrustedRT.exe
- MZ at fffff802`55020000, prot 00000040, type 01000000 - size b000
- Name: WindowsTrustedRTProxy.exe
- MZ at fffff802`55030000, prot 00000040, type 01000000 - size 15000
- Name: pcw.exe
- MZ at fffff802`55050000, prot 00000040, type 01000000 - size b000
- Name: msisadrv.exe
- MZ at fffff802`55060000, prot 00000040, type 01000000 - size 6f000
- Name: pci.exe
- MZ at fffff802`550d0000, prot 00000040, type 01000000 - size 13000
- Name: vdrvroot.exe
- MZ at fffff802`550f0000, prot 00000040, type 01000000 - size 33000
- Name: PDC.exe
- MZ at fffff802`55130000, prot 00000040, type 01000000 - size 19000
- Name: CEA.sys
- MZ at fffff802`55150000, prot 00000040, type 01000000 - size 30000
- Name: partmgr.exe
- MZ at fffff802`55190000, prot 00000040, type 01000000 - size a5000
- Name: spaceport.exe
- MZ at fffff802`55240000, prot 00000040, type 01000000 - size 1a000
- Name: volmgr.exe
- MZ at fffff802`55260000, prot 00000040, type 01000000 - size 63000
- Name: volmgrx.exe
- MZ at fffff802`552d0000, prot 00000040, type 01000000 - size 1f000
- Name: mountmgr.exe
- MZ at fffff802`552f0000, prot 00000040, type 01000000 - size 2e000
- Name: storahci.exe
- MZ at fffff802`55320000, prot 00000040, type 01000000 - size a2000
- Name: storport.sys
- MZ at fffff802`553f0000, prot 00000040, type 01000000 - size 1a000
- Name: fileinfo.exe
- MZ at fffff802`55410000, prot 00000040, type 01000000 - size 3d000
- Name: wof.exe
- MZ at fffff802`554b0000, prot 00000040, type 01000000 - size 29d000
- Name: ntfs.exe
- MZ at fffff802`55750000, prot 00000040, type 01000000 - size d000
- Name: fs_rec.exe
- MZ at fffff802`55760000, prot 00000040, type 01000000 - size 94000
- Name: NETIO.SYS
- MZ at fffff802`55800000, prot 00000040, type 01000000 - size 172000
- Name: NDIS.SYS
- MZ at fffff802`55980000, prot 00000040, type 01000000 - size 32000
- Name: ksecpkg.exe
- MZ at fffff802`559f0000, prot 00000040, type 01000000 - size 2ea000
- Name: TCPIP.SYS
- MZ at fffff802`55ce0000, prot 00000040, type 01000000 - size 7a000
- Name: fwpkclnt.sys
- MZ at fffff802`55d60000, prot 00000040, type 01000000 - size 30000
- Name: wfplwfs.exe
- MZ at fffff802`55da0000, prot 00000040, type 01000000 - size c9000
- Name: fvevol.exe
- MZ at fffff802`55e70000, prot 00000040, type 01000000 - size b000
- Name: volume.exe
- MZ at fffff802`55e80000, prot 00000040, type 01000000 - size 6d000
- Name: volsnap.exe
- MZ at fffff802`55ef0000, prot 00000040, type 01000000 - size 4e000
- Name: rdyboost.exe
- MZ at fffff802`55f40000, prot 00000040, type 01000000 - size 25000
- Name: MUP.SYS
- MZ at fffff802`55f70000, prot 00000040, type 01000000 - size 12000
- Name: iorate.exe
- MZ at fffff802`55fa0000, prot 00000040, type 01000000 - size 1c000
- Name: disk.exe
- MZ at fffff802`55fc0000, prot 00000040, type 01000000 - size 6b000
- Name: CLASSPNP.SYS
- MZ at fffff802`5d800000, prot 00000040, type 01000000 - size 3a000
- Name: ndiswan.exe
- MZ at fffff802`5d840000, prot 00000040, type 01000000 - size d000
- Name: WSDPrint.exe
- MZ at fffff802`5d850000, prot 00000040, type 01000000 - size d000
- Name: WSDScan.exe
- MZ at fffff802`5d880000, prot 00000040, type 01000000 - size 13000
- Name: condrv.exe
- MZ at fffff802`5d8a0000, prot 00000040, type 01000000 - size 30000
- Name: cdrom.exe
- MZ at fffff802`5d8e0000, prot 00000040, type 01000000 - size 15000
- Name: filecrypt.exe
- MZ at fffff802`5d900000, prot 00000040, type 01000000 - size e000
- Name: tbs.sys
- MZ at fffff802`5d920000, prot 00000040, type 01000000 - size a000
- Name: beep.exe
- MZ at fffff802`5d930000, prot 00000040, type 01000000 - size 374000
- Name: dxgkrnl.sys
- MZ at fffff802`5dcb0000, prot 00000040, type 01000000 - size 16000
- Name: watchdog.sys
- MZ at fffff802`5dcd0000, prot 00000040, type 01000000 - size 16000
- Name: BasicDisplay.exe
- MZ at fffff802`5dcf0000, prot 00000040, type 01000000 - size 11000
- Name: BasicRender.exe
- MZ at fffff802`5dd10000, prot 00000040, type 01000000 - size 1c000
- Name: npfs.exe
- MZ at fffff802`5dd30000, prot 00000040, type 01000000 - size 11000
- Name: msfs.exe
- MZ at fffff802`5dd50000, prot 00000040, type 01000000 - size 26000
- Name: tdx.exe
- MZ at fffff802`5dd80000, prot 00000040, type 01000000 - size 10000
- Name: TDI.SYS
- MZ at fffff802`5dda0000, prot 00000040, type 01000000 - size 59000
- Name: netbt.exe
- MZ at fffff802`5de00000, prot 00000040, type 01000000 - size 13000
- Name: afunix.dll
- MZ at fffff802`5de20000, prot 00000040, type 01000000 - size a7000
- Name: afd.exe
- MZ at fffff802`5ded0000, prot 00000040, type 01000000 - size 1a000
- Name: vwififlt.SYS
- MZ at fffff802`5def0000, prot 00000040, type 01000000 - size 2b000
- Name: pacer.exe
- MZ at fffff802`5df20000, prot 00000040, type 01000000 - size 14000
- Name: netbios.exe
- MZ at fffff802`5df40000, prot 00000040, type 01000000 - size 7b000
- Name: rdbss.sys
- MZ at fffff802`5dfc0000, prot 00000040, type 01000000 - size 12000
- Name: nsiproxy.exe
- MZ at fffff802`5dfe0000, prot 00000040, type 01000000 - size d000
- Name: NpSvcTrig.exe
- MZ at fffff802`5dff0000, prot 00000040, type 01000000 - size 10000
- Name: mssmbios.exe
- MZ at fffff802`5e010000, prot 00000040, type 01000000 - size a000
- Name: gpuenergydrv.exe
- MZ at fffff802`5e020000, prot 00000040, type 01000000 - size 2c000
- Name: dfsc.exe
- MZ at fffff802`5e070000, prot 00000040, type 01000000 - size 6b000
- Name: fastfat.exe
- MZ at fffff802`5e0e0000, prot 00000040, type 01000000 - size 16000
- Name: bam.exe
- MZ at fffff802`5e100000, prot 00000040, type 01000000 - size 4f000
- Name: ahcache.exe
- MZ at fffff802`5e150000, prot 00000040, type 01000000 - size 20000
- Name: raspptp.exe
- MZ at fffff802`5e180000, prot 00000040, type 01000000 - size f000
- Name: NDISTAPI.SYS
- MZ at fffff802`5e1b0000, prot 00000040, type 01000000 - size 1d000
- Name: CRASHDMP.SYS
- MZ at fffff802`5e200000, prot 00000040, type 01000000 - size 1f000
- Name: winhvr.sys
- MZ at fffff802`5e220000, prot 00000040, type 01000000 - size 11000
- Name: CompositeBus.exe
- MZ at fffff802`5e240000, prot 00000040, type 01000000 - size d000
- Name: kdnic.sys
- MZ at fffff802`5e250000, prot 00000040, type 01000000 - size 15000
- Name: UmBus.exe
- MZ at fffff802`5e270000, prot 00000040, type 01000000 - size 89000
- Name: usbxhci.exe
- MZ at fffff802`5e300000, prot 00000040, type 01000000 - size 41000
- Name: ucx01000.exe
- MZ at fffff802`5e470000, prot 00000040, type 01000000 - size c000
- Name: wmiacpi.exe
- MZ at fffff802`5e490000, prot 00000040, type 01000000 - size e000
- Name: UEFI.SYS
- MZ at fffff802`5e4a0000, prot 00000040, type 01000000 - size b000
- Name: serscan.exe
- MZ at fffff802`5e4b0000, prot 00000040, type 01000000 - size f000
- Name: ksthunk.exe
- MZ at fffff802`5e4c0000, prot 00000040, type 01000000 - size d000
- Name: NdisVirtualBus.exe
- MZ at fffff802`5e4d0000, prot 00000040, type 01000000 - size c000
- Name: swenum.exe
- MZ at fffff802`5e4f0000, prot 00000040, type 01000000 - size e000
- Name: rdpbus.exe
- MZ at fffff802`5e510000, prot 00000040, type 01000000 - size 3b000
- Name: HIDCLASS.SYS
- MZ at fffff802`5e550000, prot 00000040, type 01000000 - size 13000
- Name: HIDPARSE.SYS
- MZ at fffff802`5e570000, prot 00000040, type 01000000 - size 9c000
- Name: usbhub3.sys
- MZ at fffff802`5e610000, prot 00000040, type 01000000 - size e000
- Name: USBD.SYS
- MZ at fffff802`5e620000, prot 00000040, type 01000000 - size 6e000
- Name: HDAudio.exe
- MZ at fffff802`5e690000, prot 00000040, type 01000000 - size 11000
- Name: kbdhid.exe
- MZ at fffff802`5e6b0000, prot 00000040, type 01000000 - size 14000
- Name: kbdclass.exe
- MZ at fffff802`5e6d0000, prot 00000040, type 01000000 - size 25000
- Name: usbstor.exe
- MZ at fffff802`5e710000, prot 00000040, type 01000000 - size 33000
- Name: usbccgp.exe
- MZ at fffff802`5e750000, prot 00000040, type 01000000 - size 12000
- Name: hidusb.exe
- MZ at fffff802`5e770000, prot 00000040, type 01000000 - size 10000
- Name: mouhid.exe
- MZ at fffff802`5e790000, prot 00000040, type 01000000 - size 13000
- Name: mouclass.exe
- MZ at fffff802`5e7c0000, prot 00000040, type 01000000 - size 37000
- Name: USBAudio.exe
- MZ at fffff802`5ecf0000, prot 00000040, type 01000000 - size 27000
- Name: AgileVpn.exe
- MZ at fffff802`5ed20000, prot 00000040, type 01000000 - size 22000
- Name: rasl2tp.exe
- MZ at fffff802`5ed50000, prot 00000040, type 01000000 - size 1c000
- Name: raspppoe.exe
- MZ at fffff802`5ed70000, prot 00000040, type 01000000 - size 8c000
- Name: Vid.exe
- MZ at fffff802`5ee00000, prot 00000040, type 01000000 - size 2a000
- Name: luafv.exe
- MZ at fffff802`5ee30000, prot 00000040, type 01000000 - size 37000
- Name: wcifs.exe
- MZ at fffff802`5ee70000, prot 00000040, type 01000000 - size 50000
- Name: WUDFRd.exe
- MZ at fffff802`5eed0000, prot 00000040, type 01000000 - size e000
- Name: WpdUpFltr.exe
- MZ at fffff802`5eee0000, prot 00000040, type 01000000 - size 14000
- Name: mmcss.exe
- MZ at fffff802`5ef00000, prot 00000040, type 01000000 - size 77000
- Name: cldflt.exe
- MZ at fffff802`5ef80000, prot 00000040, type 01000000 - size 1a000
- Name: storqosflt.exe
- MZ at fffff802`5efc0000, prot 00000040, type 01000000 - size 18000
- Name: lltdio.exe
- MZ at fffff802`5efe0000, prot 00000040, type 01000000 - size 19000
- Name: mslldp.exe
- MZ at fffff802`5f000000, prot 00000040, type 01000000 - size 1b000
- Name: rspndr.exe
- MZ at fffff802`5f020000, prot 00000040, type 01000000 - size 1d000
- Name: wanarp.exe
- MZ at fffff802`5f040000, prot 00000040, type 01000000 - size 38000
- Name: winquic.sys
- MZ at fffff802`5f080000, prot 00000040, type 01000000 - size 145000
- Name: http.exe
- MZ at fffff802`5f1d0000, prot 00000040, type 01000000 - size 25000
- Name: bowser.exe
- MZ at fffff802`5f200000, prot 00000040, type 01000000 - size 1a000
- Name: mpsdrv.exe
- MZ at fffff802`5f220000, prot 00000040, type 01000000 - size 8f000
- Name: mrxsmb.sys
- MZ at fffff802`5f2b0000, prot 00000040, type 01000000 - size 45000
- Name: mrxsmb20.exe
- MZ at fffff802`5f350000, prot 00000040, type 01000000 - size 53000
- Name: srvnet.sys
- MZ at fffff802`5f3b0000, prot 00000040, type 01000000 - size 27000
- Name: ndu.exe
- MZ at fffff802`5f4c0000, prot 00000040, type 01000000 - size 14000
- Name: tcpipreg.exe
- MZ at fffff802`5f4e0000, prot 00000040, type 01000000 - size c5000
- Name: srv2.exe
- MZ at fffff802`5f5b0000, prot 00000040, type 01000000 - size 1d000
- Name: rassstp.exe
- MZ at fffff802`5f5d0000, prot 00000040, type 01000000 - size 41000
- Name: ndproxy.exe
- MZ at fffff802`5f620000, prot 00000040, type 01000000 - size da000
- Name: dxgmms2.sys
- MZ at fffff802`5f720000, prot 00000040, type 01000000 - size 18000
- Name: monitor.exe
- MZ at fffff802`5f750000, prot 00000040, type 01000000 - size e000
- Name: SYS.exe
- MZ at fffff802`5f790000, prot 00000040, type 01000000 - size 2e000
- Name: storahci.exe
- MZ at fffff802`5f7e0000, prot 00000040, type 01000000 - size 1d000
- Name: DUMPFVE.SYS
- MZ at fffff802`60470000, prot 00000040, type 01000000 - size 2c000
- Name: UcmCx.exe
- MZ at fffff802`604b0000, prot 00000040, type 01000000 - size 1c000
- Name: serial.exe
- MZ at fffff802`604d0000, prot 00000040, type 01000000 - size f000
- Name: SerEnum.exe
- MZ at fffff802`604e0000, prot 00000040, type 01000000 - size 3a000
- Name: amdppm.exe
- MZ at fffff802`60530000, prot 00000004, type 00020000
- MZ at fffff802`61a70000, prot 00000040, type 01000000 - size 22000
- Name: hdaudbus.exe
- MZ at fffff802`61aa0000, prot 00000040, type 01000000 - size 67000
- Name: portcls.sys
- MZ at fffff802`61b40000, prot 00000040, type 01000000 - size 78000
- Name: ks.sys
- MZ at fffff802`61bc0000, prot 00000040, type 01000000 - size 30000
- Name: msgpioclx.exe
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement