View Issue Details
Category | |||||
---|---|---|---|---|---|
SSPBT:本体(SSP) | |||||
Severity | crash | Reproducibility | sometimes | ||
Status | new | ||||
Summary | 0000673: Trying to cancel an email check can cause SSP to crash | ||||
Description | This seems to happen if you try to cancel an email check almost immediately. After a second or two, the email check can be cancelled like normal without causing a crash. I wonder if it's something to do with the login process? Sometimes it was able to generate a STACKTRC.TXT, but other times it simply closed silently. I was able to replicate this with 3 different email services, including Gmail which has a special "app password" system that must be used in order to make it work with SSP, so I think it's unlikely to be on the end of the email services. (Although I did find it much more difficult to cause this crash with the Gmail account... I'm unsure if that was a coincidence or not.) I replicated this with both a ghost written in Aosora, and a ghost written in YAYA (this ghost also does not have any of the BIFF related events), so I don't believe it is a problem on the ghost side or SHIORI side. I was able to replicate this on the following versions: SSP/2.6.95 (20250401-5; Windows NT 10.0.19045) SSP/2.7.00 Pre3 (20240716-1; Windows NT 10.0.19045) If you would like information about the specific email providers, please DM me on Ukadon (@Zichqec) | ||||
Tags | No tags attached. | ||||
Attach Tags | |||||
Attached Files | STACKTRC_00.TXT (87,477 bytes)
SPDebugger/2.17.24106.A Exception Raised at 77a96d23 because HEAP_CORRUPTION (#c0000374) Windows NT 10.0.19045 UAC: Enabled,Limited Time: 2025/4/11 15:45:26.916 Phys.Mem: 17520/32693MB PageFile: 14983/37557MB CPU : AMD 0.23.8.7 3200MHz Features:MMX SSE HT AES-NI (AMD Ryzen 7 2700 Eight-Core Processor) Package:1 Node:1 Core:8 Thread:16 SSP/2.7.00 Pre3 (20240716-1; Windows NT 10.0.19045) Volume Information: A:\ CD-ROM B:\ Fixed [ 506679MB Free | 1907625MB Total | 26%] (NTFS,Normal) C:\ Fixed [ 35180MB Free | 113832MB Total | 30%] (NTFS,Normal) D:\ Fixed [ 6735541MB Free | 7630867MB Total | 88%] (NTFS,Normal) E:\ Fixed [ 63MB Free | 99MB Total | 63%] (NTFS,Normal) G:\ Fixed [ 4265MB Free | 102400MB Total | 4%] (FAT32,Normal) Monitor Information: 0: \\.\DISPLAY1 - Work=0,0,1920,1040 Size=1920x1080 1: \\.\DISPLAY2 - Work=-1920,0,0,1040 Size=1920x1080 2: \\.\DISPLAY3 - Work=1920,0,3840,1040 Size=1920x1080 Env. Variables: =::=::\ ALLUSERSPROFILE=C:\ProgramData APPDATA=C:\Users\Zichqec\AppData\Roaming CommonProgramFiles=C:\Program Files (x86)\Common Files CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files CommonProgramW6432=C:\Program Files\Common Files COMPUTERNAME=DESKTOP-GJS901G ComSpec=C:\Windows\system32\cmd.exe DriverData=C:\Windows\System32\Drivers\DriverData FPS_BROWSER_APP_PROFILE_STRING=Internet Explorer FPS_BROWSER_USER_PROFILE_STRING=Default HOMEDRIVE=C: HOMEPATH=\Users\Zichqec LOCALAPPDATA=C:\Users\Zichqec\AppData\Local LOGONSERVER=\\DESKTOP-GJS901G NUMBER_OF_PROCESSORS=16 OneDrive=C:\Users\Zichqec\OneDrive OS=Windows_NT Path=D:\SSP\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Users\Zichqec\AppData\Local\Microsoft\WindowsApps;C:\Users\Zichqec\AppData\Local\GitHubDesktop\bin;C:\Users\Zichqec\AppData\Roaming\Programs\Zero Install PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE=x86 PROCESSOR_ARCHITEW6432=AMD64 PROCESSOR_IDENTIFIER=AMD64 Family 23 Model 8 Stepping 2, AuthenticAMD PROCESSOR_LEVEL=23 PROCESSOR_REVISION=0802 ProgramData=C:\ProgramData ProgramFiles=C:\Program Files (x86) ProgramFiles(x86)=C:\Program Files (x86) ProgramW6432=C:\Program Files PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\Windows\system32\WindowsPowerShell\v1.0\Modules PUBLIC=C:\Users\Public SESSIONNAME=Console SystemDrive=C: SystemRoot=C:\Windows TEMP=C:\Users\Zichqec\AppData\Local\Temp TMP=C:\Users\Zichqec\AppData\Local\Temp USERDOMAIN=DESKTOP-GJS901G USERDOMAIN_ROAMINGPROFILE=DESKTOP-GJS901G USERNAME=Zichqec USERPROFILE=C:\Users\Zichqec windir=C:\Windows Loaded Drivers: -22800000 : win32kbase.sys -22d60000 : win32k.sys -23650000 : win32kfull.sys -23a10000 : cdd.dll -409f0000 : mcupdate_AuthenticAMD.dll -40a20000 : hal.dll -40a30000 : kd.dll -40a40000 : tm.sys -40a70000 : CLFS.SYS -40ae0000 : PSHED.dll -40b00000 : BOOTVID.dll -40b10000 : clipsp.sys -40c30000 : FLTMGR.SYS -40ca0000 : ksecdd.sys -40cd0000 : msrpc.sys -40d40000 : cmimcext.sys -40d60000 : werkernel.sys -40d80000 : ntosext.sys -40d90000 : WDFLDR.SYS -40db0000 : SleepStudyHelper.sys -40dc0000 : WppRecorder.sys -40de0000 : msseccore.sys -44800000 : ntoskrnl.exe -46200000 : CI.dll -462f0000 : cng.sys -463b0000 : Wdf01000.sys -46490000 : acpiex.sys -464c0000 : SgrmAgent.sys -464e0000 : ACPI.sys -465b0000 : WMILIB.SYS -465d0000 : intelpep.sys -46640000 : WindowsTrustedRT.sys -46660000 : IntelTA.sys -46670000 : WindowsTrustedRTProxy.sys -46680000 : pcw.sys -466a0000 : msisadrv.sys -466b0000 : pci.sys -46730000 : vdrvroot.sys -46750000 : pdc.sys -46790000 : CEA.sys -467b0000 : partmgr.sys -467f0000 : spaceport.sys -468a0000 : volmgr.sys -468c0000 : volmgrx.sys -46930000 : mountmgr.sys -46950000 : storahci.sys -46990000 : EhStorClass.sys -469b0000 : fileinfo.sys -469d0000 : Fs_Rec.sys -469e0000 : volume.sys -46a00000 : storport.sys -46ac0000 : Wof.sys -46b10000 : WdFilter.sys -46bb0000 : ndis.sys -46d20000 : NETIO.SYS -46dc0000 : ksecpkg.sys -46e00000 : Ntfs.sys -470e0000 : tcpip.sys -473d0000 : fwpkclnt.sys -47450000 : wfplwfs.sys -47490000 : fvevol.sys -47560000 : volsnap.sys -475d0000 : rdyboost.sys -47630000 : mup.sys -47660000 : iorate.sys -476a0000 : disk.sys -476c0000 : CLASSPNP.SYS -520d0000 : cdrom.sys -52110000 : filecrypt.sys -52130000 : tbs.sys -52140000 : UCPD.sys -52160000 : Null.SYS -52170000 : Beep.SYS -52180000 : dxgkrnl.sys -52530000 : watchdog.sys -52550000 : BasicDisplay.sys -52570000 : BasicRender.sys -52590000 : Npfs.SYS -525d0000 : crashdmp.sys -53400000 : netbt.sys -53460000 : afunix.sys -53480000 : afd.sys -53530000 : vwififlt.sys -53550000 : pacer.sys -53580000 : ndiscap.sys -535a0000 : netbios.sys -535c0000 : Vid.sys -53670000 : winhvr.sys -536a0000 : rdbss.sys -53720000 : csc.sys -537c0000 : nsiproxy.sys -537e0000 : npsvctrig.sys -537f0000 : mssmbios.sys -53810000 : gpuenergydrv.sys -53820000 : dfsc.sys -53870000 : fastfat.SYS -538e0000 : bam.sys -53900000 : ahcache.sys -53960000 : amdxe.sys -53970000 : amdfendr.sys -539d0000 : CompositeBus.sys -539f0000 : kdnic.sys -53a00000 : amdsafd.sys -53a20000 : portcls.sys -53a90000 : drmk.sys -53ac0000 : ks.sys -53b40000 : ksthunk.sys -53b60000 : umbus.sys -53b80000 : USBXHCI.SYS -53c20000 : ucx01000.sys -53c70000 : rt640x64.sys -53d20000 : condrv.sys -53d40000 : KslD.sys -53da0000 : WdNisDrv.sys -54100000 : Msfs.SYS -54120000 : CimFS.SYS -54140000 : amdpsp.sys -54180000 : tdx.sys -541b0000 : TDI.SYS -67400000 : UsbHub3.sys -674b0000 : USBD.SYS -674c0000 : AtihdWT6.sys -67500000 : HdAudio.sys -67570000 : Nahimic_Mirroring.sys -67590000 : usbccgp.sys -675d0000 : hidusb.sys -675f0000 : HIDCLASS.SYS -67640000 : HIDPARSE.SYS -67660000 : mouhid.sys -67680000 : mouclass.sys -676a0000 : kbdhid.sys -676c0000 : kbdclass.sys -676e0000 : usbaudio.sys -67720000 : wachidrouter.sys -67740000 : mshidkmdf.sys -67750000 : wacomrouterfilter.sys -67770000 : dump_diskdump.sys -677c0000 : dump_storahci.sys -67820000 : dump_dumpfve.sys -67840000 : dxgmms2.sys -67920000 : monitor.sys -67940000 : luafv.sys -67970000 : wcifs.sys -679b0000 : cldflt.sys -67a40000 : storqosflt.sys -67a60000 : bindflt.sys -67a90000 : mslldp.sys -67ab0000 : msquic.sys -67b10000 : HTTP.sys -67ca0000 : lltdio.sys -67cc0000 : wanarp.sys -67ce0000 : rspndr.sys -67d00000 : bowser.sys -67d30000 : mpsdrv.sys -67d50000 : mrxsmb.sys -67df0000 : mrxsmb20.sys -67e40000 : AMDRyzenMasterDriver.sys -67e80000 : googledrivefs31626.sys -67ef0000 : srvnet.sys -67f50000 : mmcss.sys -67f70000 : Ndu.sys -67fa0000 : peauth.sys -68080000 : tcpipreg.sys -680a0000 : srv2.sys -68170000 : rassstp.sys -68190000 : NDProxy.sys -681b0000 : cdfs.sys -681d0000 : AgileVpn.sys -68200000 : rasl2tp.sys -68230000 : raspptp.sys -68260000 : raspppoe.sys -68280000 : amdkmdag.sys -6e830000 : HDAudBus.sys -6e860000 : AMDPCIDev.sys -6e870000 : parport.sys -6e890000 : serial.sys -6e8b0000 : serenum.sys -6e8c0000 : amdgpio2.sys -6e8d0000 : msgpioclx.sys -6e910000 : wmiacpi.sys -6e920000 : amdppm.sys -6e960000 : amdgpio3.sys -6e970000 : amdfendrmgr.sys -6e980000 : NdisVirtualBus.sys -6e990000 : swenum.sys -6e9a0000 : rdpbus.sys -6e9b0000 : ndistapi.sys -6e9c0000 : ndiswan.sys Executing Processes: [With ToolHelp32] -00000000 : [System Process] (16 Threads.) -00000004 : System (260 Threads.) -000000ac : Registry (4 Threads.) -00000208 : smss.exe (2 Threads.) -000002d8 : csrss.exe (12 Threads.) -000003c4 : wininit.exe (1 Threads.) -000003cc : csrss.exe (15 Threads.) -00000290 : services.exe (7 Threads.) -000002b0 : winlogon.exe (6 Threads.) -00000300 : lsass.exe (11 Threads.) -0000045c : svchost.exe (13 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000478 : fontdrvhost.exe (5 Threads.) 10.0.19041.5369 - Usermode Font Driver Host � Microsoft Corporation. All rights reserved. -00000480 : fontdrvhost.exe (5 Threads.) 10.0.19041.5369 - Usermode Font Driver Host � Microsoft Corporation. All rights reserved. -000004d8 : svchost.exe (9 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000050c : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000588 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000005b4 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000005b8 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000005f8 : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000060c : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000630 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000006a8 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000006b0 : dwm.exe (28 Threads.) -0000070c : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000728 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000076c : amdfendrsr.exe (4 Threads.) -00000774 : atiesrxx.exe (8 Threads.) -000007b0 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000007d0 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000280 : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000081c : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000828 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000830 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000838 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000008f4 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000910 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000918 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000930 : Memory Compression (102 Threads.) -00000968 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000009b0 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000009e8 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000a54 : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000acc : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000b3c : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000b68 : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000b9c : svchost.exe (11 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000a0c : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000a88 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000c34 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000c44 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000cac : spoolsv.exe (14 Threads.) -00000cd0 : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000cfc : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000d64 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dc4 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dd0 : svchost.exe (9 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000ddc : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000de4 : svchost.exe (17 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dec : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000df4 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dfc : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e04 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e0c : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e14 : escsvc64.exe (2 Threads.) -00000e58 : NahimicService.exe (13 Threads.) -00000e98 : BtwRSupportService.exe (3 Threads.) -00000ecc : WTabletServicePro.exe (3 Threads.) -00000edc : MsMpEng.exe (55 Threads.) -00000ee8 : svchost.exe (21 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000f04 : MpDefenderCoreService.exe (8 Threads.) -00000fc8 : dasHost.exe (3 Threads.) -0000100c : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000010a8 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000010d8 : svchost.exe (12 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000012a0 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001410 : dasHost.exe (1 Threads.) -0000158c : dllhost.exe (4 Threads.) 10.0.19041.3636 - COM Surrogate � Microsoft Corporation. All rights reserved. -000015bc : SearchIndexer.exe (14 Threads.) 7.0.19041.5438 - Microsoft Windows Search Indexer � Microsoft Corporation. All rights reserved. -00001694 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000424 : AggregatorHost.exe (4 Threads.) -00001bac : svchost.exe (9 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001898 : NisSrv.exe (10 Threads.) -00001b8c : atieclxx.exe (14 Threads.) -000016a8 : svchost.exe (11 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000019c0 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001b28 : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001b38 : sihost.exe (12 Threads.) -00001b10 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e50 : taskhostw.exe (8 Threads.) -000016a4 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001c9c : explorer.exe (229 Threads.) 10.0.19041.5678 - Windows Explorer � Microsoft Corporation. All rights reserved. -00001cb4 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001ee8 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001f90 : svchost.exe (8 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002054 : svchost.exe (8 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002188 : StartMenuExperienceHost.exe (6 Threads.) -000021d4 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002288 : RuntimeBroker.exe (1 Threads.) -0000235c : SearchApp.exe (84 Threads.) -00001d8c : RuntimeBroker.exe (8 Threads.) -00002688 : ctfmon.exe (15 Threads.) 10.0.19041.1 - CTF Loader � Microsoft Corporation. All rights reserved. -000026dc : TabTip.exe (7 Threads.) -00002500 : LockApp.exe (27 Threads.) -0000260c : RuntimeBroker.exe (3 Threads.) -00002918 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000029ec : PhoneExperienceHost.exe (34 Threads.) -00002b3c : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002b94 : Wacom_TabletUser.exe (4 Threads.) -00002bcc : Wacom_UpdateUtil.exe (6 Threads.) -00002bf0 : WacomHost.exe (1 Threads.) -00002954 : Wacom_Tablet.exe (55 Threads.) -00002bb4 : Wacom_TouchUser.exe (11 Threads.) -00002c9c : TextInputHost.exe (32 Threads.) -00002d48 : RuntimeBroker.exe (1 Threads.) -00002db4 : SecurityHealthSystray.exe (1 Threads.) -00002dd4 : SecurityHealthService.exe (6 Threads.) -00002e28 : OneDrive.exe (40 Threads.) -00002ccc : Discord.exe (56 Threads.) -00001e10 : steam.exe (34 Threads.) -00001de4 : GoogleDriveFS.exe (2 Threads.) -00001e54 : Discord.exe (7 Threads.) -00002b0c : E_YATIWBE.EXE (1 Threads.) -00002b18 : crashpad_handler.exe (6 Threads.) -00000608 : GoogleDriveFS.exe (127 Threads.) -00000780 : Discord.exe (67 Threads.) -00002ca8 : GoogleDriveFS.exe (36 Threads.) -0000085c : Discord.exe (16 Threads.) -00000960 : conhost.exe (4 Threads.) -00000c3c : GoogleDriveFS.exe (8 Threads.) -000009bc : GoogleDriveFS.exe (14 Threads.) -00000e44 : GoogleDriveFS.exe (12 Threads.) -00000c04 : GoogleDriveFS.exe (26 Threads.) -000031ac : steamwebhelper.exe (27 Threads.) -00003280 : steamservice.exe (4 Threads.) -000032e4 : steamwebhelper.exe (6 Threads.) -0000339c : steamwebhelper.exe (32 Threads.) -0000354c : EEventManager.exe (5 Threads.) -00003620 : CompPkgSrv.exe (1 Threads.) -000036ec : steamwebhelper.exe (13 Threads.) -00003578 : steamwebhelper.exe (6 Threads.) -00003344 : FUFAXRCV.exe (5 Threads.) -000010b4 : steamwebhelper.exe (17 Threads.) -000035e4 : RadeonSoftware.exe (93 Threads.) -000037f0 : notepad++.exe (26 Threads.) -0000381c : FUFAXSTM.exe (3 Threads.) -000038ec : firefox.exe (106 Threads.) -00003b04 : DeepL.exe (74 Threads.) -00003b4c : firefox.exe (178 Threads.) -00003bdc : firefox.exe (5 Threads.) -00003844 : RuntimeBroker.exe (1 Threads.) -00003bbc : CPUMetricsServer.exe (1 Threads.) -000033e0 : firefox.exe (27 Threads.) -000034c0 : firefox.exe (21 Threads.) -00003ccc : NhNotifSys.exe (4 Threads.) -00003440 : Discord.exe (55 Threads.) -00003ea8 : firefox.exe (29 Threads.) -00003f38 : firefox.exe (27 Threads.) -00003c94 : firefox.exe (29 Threads.) -00003e40 : firefox.exe (27 Threads.) -0000365c : firefox.exe (29 Threads.) -00003f4c : firefox.exe (28 Threads.) -00003ef4 : firefox.exe (29 Threads.) -00003c28 : firefox.exe (29 Threads.) -00004018 : firefox.exe (28 Threads.) -00004090 : firefox.exe (28 Threads.) -000040e4 : firefox.exe (28 Threads.) -00004150 : firefox.exe (27 Threads.) -000041b0 : firefox.exe (28 Threads.) -00004220 : firefox.exe (29 Threads.) -0000425c : Discord.exe (7 Threads.) -00004280 : firefox.exe (28 Threads.) -000042f0 : firefox.exe (27 Threads.) -00004324 : firefox.exe (28 Threads.) -00004398 : firefox.exe (27 Threads.) -000040fc : firefox.exe (30 Threads.) -000047a4 : firefox.exe (28 Threads.) -00004b08 : firefox.exe (29 Threads.) -00004b24 : firefox.exe (27 Threads.) -00004b6c : firefox.exe (29 Threads.) -00004718 : firefox.exe (29 Threads.) -00004c78 : firefox.exe (28 Threads.) -00004dd0 : firefox.exe (28 Threads.) -00004e14 : cncmd.exe (1 Threads.) -00004ea8 : firefox.exe (27 Threads.) -00004eb0 : cmd.exe (1 Threads.) 10.0.19041.4355 - Windows Command Processor � Microsoft Corporation. All rights reserved. -00004ec0 : conhost.exe (2 Threads.) -00004f5c : firefox.exe (31 Threads.) -00004f98 : firefox.exe (31 Threads.) -00004fec : firefox.exe (5 Threads.) -00004ee8 : firefox.exe (31 Threads.) -00005018 : firefox.exe (31 Threads.) -00005110 : firefox.exe (28 Threads.) -00005124 : AMDRSServ.exe (47 Threads.) -00005220 : firefox.exe (28 Threads.) -0000539c : firefox.exe (5 Threads.) -000055a0 : steamwebhelper.exe (19 Threads.) -00003bd4 : firefox.exe (32 Threads.) -00002878 : AMDRSSrcExt.exe (25 Threads.) -0000248c : amdow.exe (23 Threads.) -000033a8 : firefox.exe (5 Threads.) -00001aa8 : firefox.exe (28 Threads.) -0000596c : firefox.exe (27 Threads.) -00005a80 : firefox.exe (27 Threads.) -00005b0c : firefox.exe (28 Threads.) -00003730 : CefSharp.BrowserSubprocess.exe (36 Threads.) -00005a6c : CefSharp.BrowserSubprocess.exe (22 Threads.) -00002c80 : CefSharp.BrowserSubprocess.exe (14 Threads.) -00003314 : CefSharp.BrowserSubprocess.exe (18 Threads.) -0000583c : CefSharp.BrowserSubprocess.exe (31 Threads.) -00001e84 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00005154 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000039e8 : ApplicationFrameHost.exe (2 Threads.) -000056b4 : CalculatorApp.exe (31 Threads.) -00002a7c : RuntimeBroker.exe (1 Threads.) -00001b00 : UserOOBEBroker.exe (3 Threads.) -00002dac : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000021d0 : svchost.exe (8 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001c90 : FileCoAuth.exe (3 Threads.) -00002c94 : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000155c : ShellExperienceHost.exe (37 Threads.) -000026ec : RuntimeBroker.exe (6 Threads.) -00000b28 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000046fc : firefox.exe (33 Threads.) -00002820 : firefox.exe (27 Threads.) -00001934 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00003f34 : sai2.exe (20 Threads.) -000002a4 : firefox.exe (28 Threads.) -00000a5c : firefox.exe (30 Threads.) -00002768 : dllhost.exe (5 Threads.) 10.0.19041.3636 - COM Surrogate � Microsoft Corporation. All rights reserved. -000039dc : explorer.exe (19 Threads.) 10.0.19041.5678 - Windows Explorer � Microsoft Corporation. All rights reserved. -0000230c : GitHubDesktop.exe (39 Threads.) -0000153c : GitHubDesktop.exe (68 Threads.) -00005774 : GitHubDesktop.exe (15 Threads.) -00000294 : GitHubDesktop.exe (35 Threads.) -00004b7c : firefox.exe (27 Threads.) ==> -00005218 : ssp.exe (68 Threads.) 2.7.0.1003 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ -00001ffc : audiodg.exe (4 Threads.) -000014ac : firefox.exe (29 Threads.) -00003af0 : firefox.exe (28 Threads.) -00003cd8 : firefox.exe (28 Threads.) -00004804 : firefox.exe (29 Threads.) -0000452c : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000012e4 : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000f18 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000269c : firefox.exe (32 Threads.) Executing Threads: [With ToolHelp32] -00005874 : 8(0) -0000061c : 8(0) -000023ac : 8(0) -00002758 : 8(0) -00000e6c : 9(0) -000058ac : 7(0) -00001d78 : 7(0) -000053c4 : 7(0) -000005ac : 8(0) -000026d8 : 7(0) -00005bb8 : 7(0) -000028a0 : 7(0) -00001778 : 8(0) -00000c28 : 7(0) -0000287c : 7(0) -00004064 : 7(0) -00001940 : 8(0) -00000fac : 7(0) -00005968 : 7(0) -00001b2c : 7(0) -00003380 : 8(0) -00000640 : 8(0) -00000760 : 7(0) -000024c4 : 7(0) -000034b0 : 7(0) -0000226c : 8(0) -00002d40 : 7(0) -00001588 : 7(0) -00001a30 : 7(0) -00005b58 : 8(0) -00002c98 : 7(0) -00001250 : 7(0) -000056a0 : 7(0) -000051c0 : 7(0) -00005088 : 8(0) -00005558 : 7(0) -0000466c : 7(0) -000021e4 : 7(0) -00000d24 : 8(0) -00001ad4 : 7(0) -0000156c : 7(0) -000056c0 : 7(0) -00001058 : 8(0) -00002b5c : 7(0) -00003c04 : 7(0) -00001df0 : 7(0) -00000880 : 7(0) -00003664 : 8(0) -00003690 : 7(0) -00002060 : 7(0) -000009f0 : 7(0) -00004b18 : 8(0) -00003be4 : 7(0) -00000544 : 7(0) -00000c14 : 7(0) -000044b0 : 7(0) -00003450 : 8(0) -00003c30 : 8(0) -00004ee0 : 15(0) -00002f78 : 8(0) -000041f4 : 15(0) -0000138c : 15(0) -00001ac4 : 15(0) -00002458 : 9(0) -0000298c : 8(0) -00005568 : 22(0) -00001be0 : 8(0) ==> -00001a6c : 7(0) Executing Services: [With SCM/NT] ---AJRouter (AllJoyn Router Service) - Stopped/Paused ---ALG (Application Layer Gateway Service) - Stopped/Paused ***AMD Crash Defender Service (AMD Crash Defender Service) - Running ***AMD External Events Utility (AMD External Events Utility) - Running ---AppIDSvc (Application Identity) - Stopped/Paused ***Appinfo (Application Information) - Running ---AppMgmt (Application Management) - Stopped/Paused ---AppReadiness (App Readiness) - Stopped/Paused ---AppVClient (Microsoft App-V Client) - Stopped/Paused ***AppXSvc (AppX Deployment Service (AppXSVC)) - Running ---AssignedAccessManagerSvc (AssignedAccessManager Service) - Stopped/Paused ***AudioEndpointBuilder (Windows Audio Endpoint Builder) - Running ***Audiosrv (Windows Audio) - Running ---autotimesvc (Cellular Time) - Stopped/Paused ---AxInstSV (ActiveX Installer (AxInstSV)) - Stopped/Paused ***BcmBtRSupport (Bluetooth Driver Management Service) - Running ---BDESVC (BitLocker Drive Encryption Service) - Stopped/Paused ***BFE (Base Filtering Engine) - Running ---BITS (Background Intelligent Transfer Service) - Stopped/Paused ***BrokerInfrastructure (Background Tasks Infrastructure Service) - Running ---BTAGService (Bluetooth Audio Gateway Service) - Stopped/Paused ***BthAvctpSvc (AVCTP service) - Running ---bthserv (Bluetooth Support Service) - Stopped/Paused ***camsvc (Capability Access Manager Service) - Running ***CDPSvc (Connected Devices Platform Service) - Running ---CertPropSvc (Certificate Propagation) - Stopped/Paused ---ClipSVC (Client License Service (ClipSVC)) - Stopped/Paused ---cloudidsvc (Microsoft Cloud Identity Service) - Stopped/Paused ---COMSysApp (COM+ System Application) - Stopped/Paused ***CoreMessagingRegistrar (CoreMessaging) - Running ***CryptSvc (Cryptographic Services) - Running ---CscService (Offline Files) - Stopped/Paused ***DcomLaunch (DCOM Server Process Launcher) - Running ---dcsvc (Declared Configuration(DC) service) - Stopped/Paused ---defragsvc (Optimize drives) - Stopped/Paused ***DeviceAssociationService (Device Association Service) - Running ---DeviceInstall (Device Install Service) - Stopped/Paused ---DevQueryBroker (DevQuery Background Discovery Broker) - Stopped/Paused ***Dhcp (DHCP Client) - Running ---diagnosticshub.standardcollector.service (Microsoft (R) Diagnostics Hub Standard Collector Service) - Stopped/Paused ---diagsvc (Diagnostic Execution Service) - Stopped/Paused ***DiagTrack (Connected User Experiences and Telemetry) - Running ---DialogBlockingService (DialogBlockingService) - Stopped/Paused ***DispBrokerDesktopSvc (Display Policy Service) - Running ---DisplayEnhancementService (Display Enhancement Service) - Stopped/Paused ---DmEnrollmentSvc (Device Management Enrollment Service) - Stopped/Paused ---dmwappushservice (Device Management Wireless Application Protocol (WAP) Push message Routing Service) - Stopped/Paused ***Dnscache (DNS Client) - Running ***DoSvc (Delivery Optimization) - Running ---dot3svc (Wired AutoConfig) - Stopped/Paused ***DPS (Diagnostic Policy Service) - Running ---DsmSvc (Device Setup Manager) - Stopped/Paused ***DsSvc (Data Sharing Service) - Running ***DusmSvc (Data Usage) - Running ---Eaphost (Extensible Authentication Protocol) - Stopped/Paused ---edgeupdate (Microsoft Edge Update Service (edgeupdate)) - Stopped/Paused ---edgeupdatem (Microsoft Edge Update Service (edgeupdatem)) - Stopped/Paused ***EFS (Encrypting File System (EFS)) - Running ---embeddedmode (Embedded Mode) - Stopped/Paused ---EntAppSvc (Enterprise App Management Service) - Stopped/Paused ***EpsonScanSvc (Epson Scanner Service) - Running ***EventLog (Windows Event Log) - Running ***EventSystem (COM+ Event System) - Running ---Fax (Fax) - Stopped/Paused ***fdPHost (Function Discovery Provider Host) - Running ***FDResPub (Function Discovery Resource Publication) - Running ---fhsvc (File History Service) - Stopped/Paused ***FontCache (Windows Font Cache Service) - Running ---FontCache3.0.0.0 (Windows Presentation Foundation Font Cache 3.0.0.0) - Stopped/Paused ---FrameServer (Windows Camera Frame Server) - Stopped/Paused ---GameInputSvc (GameInput Service) - Stopped/Paused ---GoogleUpdaterInternalService136.0.7079.0 (Google Updater Internal Service (GoogleUpdaterInternalService136.0.7079.0)) - Stopped/Paused ---GoogleUpdaterService136.0.7079.0 (Google Updater Service (GoogleUpdaterService136.0.7079.0)) - Stopped/Paused ---gpsvc (Group Policy Client) - Stopped/Paused ---GraphicsPerfSvc (GraphicsPerfSvc) - Stopped/Paused ***hidserv (Human Interface Device Service) - Running ---HvHost (HV Host Service) - Stopped/Paused ---icssvc (Windows Mobile Hotspot Service) - Stopped/Paused ---IKEEXT (IKE and AuthIP IPsec Keying Modules) - Stopped/Paused ***InstallService (Microsoft Store Install Service) - Running ***iphlpsvc (IP Helper) - Running ---IpxlatCfgSvc (IP Translation Configuration Service) - Stopped/Paused ***KeyIso (CNG Key Isolation) - Running ---KtmRm (KtmRm for Distributed Transaction Coordinator) - Stopped/Paused ***LanmanServer (Server) - Running ***LanmanWorkstation (Workstation) - Running ---lfsvc (Geolocation Service) - Stopped/Paused ***LicenseManager (Windows License Manager Service) - Running ---lltdsvc (Link-Layer Topology Discovery Mapper) - Stopped/Paused ***lmhosts (TCP/IP NetBIOS Helper) - Running ***LSM (Local Session Manager) - Running ---LxpSvc (Language Experience Service) - Stopped/Paused ---MapsBroker (Downloaded Maps Manager) - Stopped/Paused ---McpManagementService (McpManagementService) - Stopped/Paused ***MDCoreSvc (Microsoft Defender Core Service) - Running ---MicrosoftEdgeElevationService (Microsoft Edge Elevation Service (MicrosoftEdgeElevationService)) - Stopped/Paused ---MixedRealityOpenXRSvc (Windows Mixed Reality OpenXR Service) - Stopped/Paused ---MozillaMaintenance (Mozilla Maintenance Service) - Stopped/Paused ***mpssvc (Windows Defender Firewall) - Running ---MSDTC (Distributed Transaction Coordinator) - Stopped/Paused ---MSiSCSI (Microsoft iSCSI Initiator Service) - Stopped/Paused ---msiserver (Windows Installer) - Stopped/Paused ---MsKeyboardFilter (Microsoft Keyboard Filter) - Stopped/Paused ***NahimicService (Nahimic service) - Running ---NaturalAuthentication (Natural Authentication) - Stopped/Paused ---NcaSvc (Network Connectivity Assistant) - Stopped/Paused ***NcbService (Network Connection Broker) - Running ***NcdAutoSetup (Network Connected Devices Auto-Setup) - Running ---Netlogon (Netlogon) - Stopped/Paused ---Netman (Network Connections) - Stopped/Paused ***netprofm (Network List Service) - Running ---NetSetupSvc (Network Setup Service) - Stopped/Paused ---NetTcpPortSharing (Net.Tcp Port Sharing Service) - Stopped/Paused ---NgcCtnrSvc (Microsoft Passport Container) - Stopped/Paused ---NgcSvc (Microsoft Passport) - Stopped/Paused ***NlaSvc (Network Location Awareness) - Running ***nsi (Network Store Interface Service) - Running ---p2pimsvc (Peer Networking Identity Manager) - Stopped/Paused ---p2psvc (Peer Networking Grouping) - Stopped/Paused ***PcaSvc (Program Compatibility Assistant Service) - Running ---PeerDistSvc (BranchCache) - Stopped/Paused ---perceptionsimulation (Windows Perception Simulation Service) - Stopped/Paused ---PerfHost (Performance Counter DLL Host) - Stopped/Paused ---PhoneSvc (Phone Service) - Stopped/Paused ---pla (Performance Logs & Alerts) - Stopped/Paused ***PlugPlay (Plug and Play) - Running ---PNRPAutoReg (PNRP Machine Name Publication Service) - Stopped/Paused ---PNRPsvc (Peer Name Resolution Protocol) - Stopped/Paused ---PolicyAgent (IPsec Policy Agent) - Stopped/Paused ***Power (Power) - Running ---PrintNotify (Printer Extensions and Notifications) - Stopped/Paused ***ProfSvc (User Profile Service) - Running ---PushToInstall (Windows PushToInstall Service) - Stopped/Paused ---QWAVE (Quality Windows Audio Video Experience) - Stopped/Paused ---RasAuto (Remote Access Auto Connection Manager) - Stopped/Paused ***RasMan (Remote Access Connection Manager) - Running ---RemoteAccess (Routing and Remote Access) - Stopped/Paused ---RemoteRegistry (Remote Registry) - Stopped/Paused ---RetailDemo (Retail Demo Service) - Stopped/Paused ***RmSvc (Radio Management Service) - Running ***RpcEptMapper (RPC Endpoint Mapper) - Running ---RpcLocator (Remote Procedure Call (RPC) Locator) - Stopped/Paused ***RpcSs (Remote Procedure Call (RPC)) - Running ***SamSs (Security Accounts Manager) - Running ---SCardSvr (Smart Card) - Stopped/Paused ---ScDeviceEnum (Smart Card Device Enumeration Service) - Stopped/Paused ***Schedule (Task Scheduler) - Running ---SCPolicySvc (Smart Card Removal Policy) - Stopped/Paused ---SDRSVC (Windows Backup) - Stopped/Paused ---seclogon (Secondary Logon) - Stopped/Paused ***SecurityHealthService (Windows Security Service) - Running ***SEMgrSvc (Payments and NFC/SE Manager) - Running ***SENS (System Event Notification Service) - Running ---Sense (Windows Defender Advanced Threat Protection Service) - Stopped/Paused ---SensorDataService (Sensor Data Service) - Stopped/Paused ---SensorService (Sensor Service) - Stopped/Paused ---SensrSvc (Sensor Monitoring Service) - Stopped/Paused ---SessionEnv (Remote Desktop Configuration) - Stopped/Paused ---SgrmBroker (System Guard Runtime Monitor Broker) - Stopped/Paused ---SharedAccess (Internet Connection Sharing (ICS)) - Stopped/Paused ---SharedRealitySvc (Spatial Data Service) - Stopped/Paused ***ShellHWDetection (Shell Hardware Detection) - Running ---shpamsvc (Shared PC Account Manager) - Stopped/Paused ---smphost (Microsoft Storage Spaces SMP) - Stopped/Paused ---SmsRouter (Microsoft Windows SMS Router Service.) - Stopped/Paused ---SNMPTRAP (SNMP Trap) - Stopped/Paused ---spectrum (Windows Perception Service) - Stopped/Paused ***Spooler (Print Spooler) - Running ---sppsvc (Software Protection) - Stopped/Paused ***SSDPSRV (SSDP Discovery) - Running ---ssh-agent (OpenSSH Authentication Agent) - Stopped/Paused ***SstpSvc (Secure Socket Tunneling Protocol Service) - Running ***StateRepository (State Repository Service) - Running ***Steam Client Service (Steam Client Service) - Running ***stisvc (Windows Image Acquisition (WIA)) - Running ***StorSvc (Storage Service) - Running ---svsvc (Spot Verifier) - Stopped/Paused ---swprv (Microsoft Software Shadow Copy Provider) - Stopped/Paused ***SysMain (SysMain) - Running ***SystemEventsBroker (System Events Broker) - Running ***TabletInputService (Touch Keyboard and Handwriting Panel Service) - Running ***TapiSrv (Telephony) - Running ---TermService (Remote Desktop Services) - Stopped/Paused ***Themes (Themes) - Running ---TieringEngineService (Storage Tiers Management) - Stopped/Paused ***TimeBrokerSvc (Time Broker) - Running ***TokenBroker (Web Account Manager) - Running ***TrkWks (Distributed Link Tracking Client) - Running ---TroubleshootingSvc (Recommended Troubleshooting Service) - Stopped/Paused ---TrustedInstaller (Windows Modules Installer) - Stopped/Paused ---tzautoupdate (Auto Time Zone Updater) - Stopped/Paused ---UevAgentService (User Experience Virtualization Service) - Stopped/Paused ---uhssvc (Microsoft Update Health Service) - Stopped/Paused ---UmRdpService (Remote Desktop Services UserMode Port Redirector) - Stopped/Paused ---upnphost (UPnP Device Host) - Stopped/Paused ***UserManager (User Manager) - Running ***UsoSvc (Update Orchestrator Service) - Running ---VacSvc (Volumetric Audio Compositor Service) - Stopped/Paused ***VaultSvc (Credential Manager) - Running ---vds (Virtual Disk) - Stopped/Paused ---vmicguestinterface (Hyper-V Guest Service Interface) - Stopped/Paused ---vmicheartbeat (Hyper-V Heartbeat Service) - Stopped/Paused ---vmickvpexchange (Hyper-V Data Exchange Service) - Stopped/Paused ---vmicrdv (Hyper-V Remote Desktop Virtualization Service) - Stopped/Paused ---vmicshutdown (Hyper-V Guest Shutdown Service) - Stopped/Paused ---vmictimesync (Hyper-V Time Synchronization Service) - Stopped/Paused ---vmicvmsession (Hyper-V PowerShell Direct Service) - Stopped/Paused ---vmicvss (Hyper-V Volume Shadow Copy Requestor) - Stopped/Paused ---VSS (Volume Shadow Copy) - Stopped/Paused ---W32Time (Windows Time) - Stopped/Paused ***WaaSMedicSvc (Windows Update Medic Service) - Running ---WalletService (WalletService) - Stopped/Paused ---WarpJITSvc (WarpJITSvc) - Stopped/Paused ---wbengine (Block Level Backup Engine Service) - Stopped/Paused ---WbioSrvc (Windows Biometric Service) - Stopped/Paused ***Wcmsvc (Windows Connection Manager) - Running ---wcncsvc (Windows Connect Now - Config Registrar) - Stopped/Paused ***WdiServiceHost (Diagnostic Service Host) - Running ---WdiSystemHost (Diagnostic System Host) - Stopped/Paused ***WdNisSvc (Microsoft Defender Antivirus Network Inspection Service) - Running ---WebClient (WebClient) - Stopped/Paused ---Wecsvc (Windows Event Collector) - Stopped/Paused ---WEPHOSTSVC (Windows Encryption Provider Host Service) - Stopped/Paused ---wercplsupport (Problem Reports Control Panel Support) - Stopped/Paused ---WerSvc (Windows Error Reporting Service) - Stopped/Paused ---WFDSConMgrSvc (Wi-Fi Direct Services Connection Manager Service) - Stopped/Paused ---WiaRpc (Still Image Acquisition Events) - Stopped/Paused ***WinDefend (Microsoft Defender Antivirus Service) - Running ***WinHttpAutoProxySvc (WinHTTP Web Proxy Auto-Discovery Service) - Running ***Winmgmt (Windows Management Instrumentation) - Running ---WinRM (Windows Remote Management (WS-Management)) - Stopped/Paused ---wisvc (Windows Insider Service) - Stopped/Paused ---WlanSvc (WLAN AutoConfig) - Stopped/Paused ***wlidsvc (Microsoft Account Sign-in Assistant) - Running ---wlpasvc (Local Profile Assistant Service) - Stopped/Paused ---WManSvc (Windows Management Service) - Stopped/Paused ---wmiApSrv (WMI Performance Adapter) - Stopped/Paused ---WMPNetworkSvc (Windows Media Player Network Sharing Service) - Stopped/Paused ---workfolderssvc (Work Folders) - Stopped/Paused ---WpcMonSvc (Parental Controls) - Stopped/Paused ---WPDBusEnum (Portable Device Enumerator Service) - Stopped/Paused ***WpnService (Windows Push Notifications System Service) - Running ***wscsvc (Security Center) - Running ***WSearch (Windows Search) - Running ***WTabletServicePro (Wacom Professional Service) - Running ***wuauserv (Windows Update) - Running ---WwanSvc (WWAN AutoConfig) - Stopped/Paused ---XblAuthManager (Xbox Live Auth Manager) - Stopped/Paused ---XblGameSave (Xbox Live Game Save) - Stopped/Paused ---XboxGipSvc (Xbox Accessory Management Service) - Stopped/Paused ---XboxNetApiSvc (Xbox Live Networking Service) - Stopped/Paused ---AarSvc_a8c26 (Agent Activation Runtime_a8c26) - Stopped/Paused ---BcastDVRUserService_a8c26 (GameDVR and Broadcast User Service_a8c26) - Stopped/Paused ---BluetoothUserService_a8c26 (Bluetooth User Support Service_a8c26) - Stopped/Paused ***CaptureService_a8c26 (CaptureService_a8c26) - Running ***cbdhsvc_a8c26 (Clipboard User Service_a8c26) - Running ***CDPUserSvc_a8c26 (Connected Devices Platform User Service_a8c26) - Running ---ConsentUxUserSvc_a8c26 (ConsentUX_a8c26) - Stopped/Paused ---CredentialEnrollmentManagerUserSvc_a8c26 (CredentialEnrollmentManagerUserSvc_a8c26) - Stopped/Paused ---DeviceAssociationBrokerSvc_a8c26 (DeviceAssociationBroker_a8c26) - Stopped/Paused ---DevicePickerUserSvc_a8c26 (DevicePicker_a8c26) - Stopped/Paused ---DevicesFlowUserSvc_a8c26 (DevicesFlow_a8c26) - Stopped/Paused ---MessagingService_a8c26 (MessagingService_a8c26) - Stopped/Paused ***OneSyncSvc_a8c26 (Sync Host_a8c26) - Running ***PimIndexMaintenanceSvc_a8c26 (Contact Data_a8c26) - Running ---PrintWorkflowUserSvc_a8c26 (PrintWorkflow_a8c26) - Stopped/Paused ---UdkUserSvc_a8c26 (Udk User Service_a8c26) - Stopped/Paused ***UnistoreSvc_a8c26 (User Data Storage_a8c26) - Running ***UserDataSvc_a8c26 (User Data Access_a8c26) - Running ***WpnUserService_a8c26 (Windows Push Notifications User Service_a8c26) - Running Loaded Modules: [With ToolHelp32] -00400000 <RAW> : D:\SSP\ssp.exe 2.7.0.1003 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ -03bc0000 <CMP> : D:\SSP\plugin\batontouch\batontouch.dll 1.0.0.3 - batontouch c3 umeici -04000000 <CMP> : D:\SSP\plugin\balloonselector\yaya.dll 5.39.2.0 - yaya -04120000 <RAW> : D:\SSP\plugin\Dev\collection_zi\yaya.dll 5.71.5.0 - yaya -04400000 <CMP> : D:\SSP\plugin\eject\eject.dll 1.0.0.0 - eject Plugin Copyright (C) CSaori Project -04500000 <CMP> : D:\SSP\plugin\Dev\weather_station_zi\saori\httpc.dll -09e60000 <CMP> : D:\SSP\plugin\playlistmaker\yaya.dll 5.39.2.0 - yaya -09fa0000 <CMP> : D:\SSP\plugin\shared_value\shared_value.dll 1.0.0.0 - Shared Value Plugin Copyright (C) CSaori Project -0a200000 <CMP> : D:\SSP\plugin\ukaten\akari.dll -0a500000 <RAW> : D:\SSP\plugin\wallet_of_unyu\yaya.dll 5.71.5.0 - yaya -0b020000 <RAW> : D:\SSP\plugin\Dev\group_events\yaya.dll 5.52.1.0 - yaya -0b160000 <RAW> : D:\SSP\plugin\SAKNIFE\SAKNIFE.dll 1.5.3.0 - SwissArmyKnife (C) 2004 SSP BUGTRAQ -0b600000 <RAW> : D:\SSP\plugin\achievements\yaya.dll 5.71.5.0 - yaya -0b6e0000 <RAW> : D:\SSP\plugin\Dev\spectre_gz\yaya.dll 5.71.9.0 - yaya -0be00000 <CMP> : D:\SSP\plugin\balloonmaker\yaya.dll 5.30.0.2 - yaya -0bed0000 <CMP> : D:\SSP\plugin\BeerShower\yaya.dll 5.32.1.0 - yaya -0c600000 <RAW> : D:\SSP\plugin\Dev\interval_stacker\yaya.dll 5.69.8.0 - yaya -0c6d0000 <CMP> : D:\SSP\plugin\stampcollection\yaya.dll 5.30.0.2 - yaya -0ca00000 <RAW> : D:\SSP\plugin\recghost_plus\yaya.dll 5.52.1.0 - yaya -0d200000 <RAW> : D:\SSP\plugin\Dev\todo_list_zi\yaya.dll 5.69.8.0 - yaya -0d2d0000 <RAW> : D:\SSP\plugin\Dev\balloon_test_sstp\yaya.dll 5.71.5.0 - yaya -0d600000 <RAW> : D:\SSP\plugin\ghostexplorer2\yaya.dll 5.51.1.0 - yaya -0da00000 <RAW> : D:\SSP\plugin\Dev\note_pad_zi\yaya.dll 5.69.8.0 - yaya -0dad0000 <RAW> : D:\SSP\plugin\Dev\simplicity_plugin_zi\yaya.dll 5.71.8.0 - yaya -0de00000 <RAW> : D:\SSP\ghost\Dev\hydrate\ghost\master\yaya.dll 5.71.3.0 - yaya -10000000 <CMP> : D:\SSP\data\language\english\resource.dll 2.7.0.0 - Language Resource DLL (C) D-EXCLAMATION / SSP BUGTRAQ -10010000 <RAW> : D:\SSP\ghost\Dev\flux\ghost\master\yaya.dll 5.71.8.0 - yaya -12240000 <CMP> : D:\SSP\ghost\Dev\flux\ghost\master\time_check.dll 1.11.0.0 - -128e0000 <RAW> : D:\SSP\ghost\Dev\freeshell_tester_zi\ghost\master\yaya.dll 5.71.8.0 - yaya -13700000 <RAW> : D:\SSP\plugin\Dev\weather_station_zi\yaya.dll 5.71.3.0 - yaya -17000000 <CMP> : D:\SSP\ghost\ghost_jam_2024\lobo_okuajub\ghost\master\shiori.dll -17ca0000 <RAW> : D:\SSP\ghost\Dev\needle_gz\ghost\master\yaya.dll 5.71.9.0 - yaya -19af0000 <RAW> : D:\SSP\ghost\Dev\s_the_skeleton\ghost\master\yaya.dll 5.71.6.0 - yaya -1cc80000 <CMP> : D:\SSP\ghost\Dev\s_the_skeleton\ghost\master\time_check.dll 1.11.0.0 - -1d0e0000 <RAW> : D:\SSP\ghost\Dev\ssp_angel\ghost\master\yaya.dll 5.71.8.0 - yaya -1f600000 <RAW> : D:\SSP\ghost\Dev\very_fast_snail\ghost\master\yaya.dll 5.71.8.0 - yaya -22a00000 <RAW> : D:\SSP\ghost\random_rotation\ph_zzzzzzzzz\ghost\master\yaya.dll 5.71.5.0 - yaya -23930000 <CMP> : D:\SSP\ghost\random_rotation\ph_zzzzzzzzz\ghost\master\saori\time_check.dll 1.11.0.0 - -642f0000 <RAW> : C:\Windows\SYSTEM32\apphelp.dll 10.0.19041.5678 - Application Compatibility Client Library � Microsoft Corporation. All rights reserved. -643a0000 <RAW> : C:\Windows\SYSTEM32\d3d9.dll 10.0.19041.5438 - Direct3D 9 Runtime � Microsoft Corporation. All rights reserved. -64540000 <RAW> : C:\Program Files (x86)\LAV Filters\x86\swscale-lav-8.dll 8.0.100.0 - FFmpeg image rescaling library Copyright (C) 2000-2024 FFmpeg Project -645d0000 <RAW> : C:\Program Files (x86)\LAV Filters\x86\LAVVideo.ax 0.79.2.0 - LAV Video Decoder - DirectShow Video Decoder Copyright (C) 2010-2021 Hendrik Leppkes -646e0000 <RAW> : C:\Program Files (x86)\LAV Filters\x86\avcodec-lav-61.dll 61.2.100.0 - FFmpeg codec library Copyright (C) 2000-2024 FFmpeg Project -65930000 <RAW> : C:\Program Files (x86)\LAV Filters\x86\avutil-lav-59.dll 59.6.100.0 - FFmpeg utility library Copyright (C) 2000-2024 FFmpeg Project -66a30000 <RAW> : C:\Program Files (x86)\LAV Filters\x86\avformat-lav-61.dll 61.0.100.0 - FFmpeg container format library Copyright (C) 2000-2024 FFmpeg Project -66f90000 <RAW> : C:\Program Files (x86)\LAV Filters\x86\LAVSplitter.ax 0.79.2.0 - LAV Splitter - DirectShow Media Splitter Copyright (C) 2010-2021 Hendrik Leppkes -67020000 <RAW> : D:\SSP\ghost\dev_misc\xanders_refuge_aosora\ghost\master\aosora.dll 0.1.4.39 - aosora-shiori Copyright (C) 2025 @kanadelab -670e0000 <RAW> : C:\Windows\SYSTEM32\WindowsCodecs.dll 10.0.19041.5129 - Microsoft Windows Codecs Library � Microsoft Corporation. All rights reserved. -67260000 <RAW> : D:\SSP\plugin\MailBox\main.dll -67570000 <RAW> : C:\Windows\SYSTEM32\urlmon.dll 11.0.19041.5737 - OLE32 Extensions for Win32 � Microsoft Corporation. All rights reserved. -67720000 <RAW> : C:\Windows\System32\DriverStore\FileRepository\u0404579.inf_amd64_89599f81cb58902d\B404520\AMDXN32.DLL 32.0.11021.1011 - AMD DX9 UMD Copyright (C) 2018-2023 AMD Inc. -6a9f0000 <RAW> : C:\Windows\SYSTEM32\msvcp110_win.dll 10.0.19041.3636 - Microsoft� STL110 C++ Runtime Library � Microsoft Corporation. All rights reserved. -6aa60000 <RAW> : C:\Windows\SYSTEM32\policymanager.dll 10.0.19041.5678 - Policy Manager DLL � Microsoft Corporation. All rights reserved. -6ab30000 <RAW> : C:\Windows\SYSTEM32\ntshrui.dll 10.0.19041.4355 - Shell extensions for sharing � Microsoft Corporation. All rights reserved. -6ab90000 <RAW> : C:\Windows\System32\OneCoreUAPCommonProxyStub.dll 10.0.19041.5438 - OneCoreUAP Common Proxy Stub � Microsoft Corporation. All rights reserved. -6b0a0000 <RAW> : D:\SSP\ghost\Dev\hoard_of_shinies\ghost\master\aosora.dll 0.1.4.39 - aosora-shiori Copyright (C) 2025 @kanadelab -6b190000 <RAW> : C:\Windows\System32\ShellCommonCommonProxyStub.dll 10.0.19041.5737 - ShellCommon Common Proxy Stub � Microsoft Corporation. All rights reserved. -6b210000 <RAW> : C:\Windows\System32\ActXPrxy.dll 10.0.19041.3758 - ActiveX Interface Marshaling Library � Microsoft Corporation. All rights reserved. -6b370000 <RAW> : C:\Windows\system32\twinapi.dll 10.0.19041.4355 - twinapi � Microsoft Corporation. All rights reserved. -6b710000 <RAW> : C:\Windows\SYSTEM32\TextShaping.dll -6b9a0000 <RAW> : C:\Program Files (x86)\LAV Filters\x86\avfilter-lav-10.dll 10.0.100.0 - FFmpeg audio/video filtering library Copyright (C) 2000-2024 FFmpeg Project -6b9e0000 <RAW> : C:\Windows\SYSTEM32\QUARTZ.dll 10.0.19041.3636 - DirectShow Runtime. � Microsoft Corporation. All rights reserved. -6bdc0000 <RAW> : C:\Windows\System32\cryptnet.dll 10.0.19041.3636 - Crypto Network Related API � Microsoft Corporation. All rights reserved. -6be10000 <RAW> : C:\Windows\system32\rsaenh.dll 10.0.19041.5553 - Microsoft Enhanced Cryptographic Provider � Microsoft Corporation. All rights reserved. -6be50000 <RAW> : C:\Windows\SYSTEM32\CRYPTSP.dll 10.0.19041.5438 - Cryptographic Service Provider API � Microsoft Corporation. All rights reserved. -6be70000 <RAW> : C:\Windows\SYSTEM32\sxs.dll 10.0.19041.5438 - Fusion 2.5 � Microsoft Corporation. All rights reserved. -6c1f0000 <RAW> : C:\Windows\system32\mlang.dll 10.0.19041.3636 - Multi Language Support DLL � Microsoft Corporation. All rights reserved. -6c2e0000 <RAW> : C:\Windows\system32\d2d1.dll 10.0.19041.4355 - Microsoft D2D Library � Microsoft Corporation. All rights reserved. -6c800000 <RAW> : C:\Windows\system32\explorerframe.dll 10.0.19041.5438 - ExplorerFrame � Microsoft Corporation. All rights reserved. -6c9e0000 <RAW> : C:\Windows\SYSTEM32\DPAPI.DLL 10.0.19041.3636 - Data Protection API � Microsoft Corporation. All rights reserved. -6c9f0000 <RAW> : C:\Windows\System32\fwpuclnt.dll 10.0.19041.4123 - FWP/IPsec User-Mode API � Microsoft Corporation. All rights reserved. -6caf0000 <RAW> : C:\Windows\System32\rasadhlp.dll 10.0.19041.3636 - Remote Access AutoDial Helper � Microsoft Corporation. All rights reserved. -6cb00000 <RAW> : C:\Windows\SYSTEM32\winhttp.dll 10.0.19041.5438 - Windows HTTP Services � Microsoft Corporation. All rights reserved. -6cbd0000 <RAW> : C:\Windows\SYSTEM32\WINNSI.DLL 10.0.19041.3636 - Network Store Information RPC interface � Microsoft Corporation. All rights reserved. -6cc80000 <RAW> : C:\Windows\System32\WindowManagementAPI.dll -6cd00000 <RAW> : C:\Windows\SYSTEM32\textinputframework.dll 10.0.19041.5198 - "TextInputFramework.DYNLINK" � Microsoft Corporation. All rights reserved. -6cdc0000 <RAW> : C:\Windows\System32\Windows.UI.dll 10.0.19041.4355 - Windows Runtime UI Foundation DLL � Microsoft Corporation. All rights reserved. -6cec0000 <RAW> : C:\Program Files (x86)\LAV Filters\x86\LAVAudio.ax 0.79.2.0 - LAV Audio Decoder - DirectShow Audio Decoder Copyright (C) 2010-2021 Hendrik Leppkes -6cf10000 <RAW> : C:\Windows\System32\wuapi.dll 10.0.19041.5198 - Windows Update Client API � Microsoft Corporation. All rights reserved. -6cfd0000 <RAW> : D:\SSP\plugin\discord\discord.dll -6d050000 <RAW> : C:\Windows\SYSTEM32\midimap.dll 10.0.19041.3636 - Microsoft MIDI Mapper � Microsoft Corporation. All rights reserved. -6d060000 <RAW> : C:\Windows\SYSTEM32\MSACM32.dll 10.0.19041.1 - Microsoft ACM Audio Filter � Microsoft Corporation. All rights reserved. -6d080000 <RAW> : C:\Windows\SYSTEM32\msacm32.drv 10.0.19041.3636 - Microsoft Sound Mapper � Microsoft Corporation. All rights reserved. -6d090000 <RAW> : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\X86\MpOav.dll 4.18.25030.2 - IOfficeAntiVirus Module � Microsoft Corporation. All rights reserved. -6d120000 <RAW> : C:\Windows\system32\amsi.dll 10.0.19041.4355 - Anti-Malware Scan Interface � Microsoft Corporation. All rights reserved. -6d140000 <RAW> : C:\Windows\SYSTEM32\AUDIOSES.DLL 10.0.19041.4355 - Audio Session � Microsoft Corporation. All rights reserved. -6d350000 <RAW> : C:\Windows\SYSTEM32\ksuser.dll 10.0.19041.1 - User CSA Library � Microsoft Corporation. All rights reserved. -6d360000 <RAW> : C:\Windows\SYSTEM32\AVRT.dll 10.0.19041.5438 - Multimedia Realtime Runtime � Microsoft Corporation. All rights reserved. -6d370000 <RAW> : C:\Windows\SYSTEM32\wdmaud.drv 10.0.19041.4355 - Winmm audio system driver � Microsoft Corporation. All rights reserved. -6d3c0000 <RAW> : C:\Windows\SYSTEM32\MMDevAPI.DLL 10.0.19041.5438 - MMDevice API � Microsoft Corporation. All rights reserved. -6d4b0000 <RAW> : C:\Windows\SYSTEM32\winmmbase.dll 10.0.19041.1 - Base Multimedia Extension API DLL � Microsoft Corporation. All rights reserved. -6d4d0000 <RAW> : C:\Windows\SYSTEM32\DSOUND.DLL 10.0.19041.4355 - DirectSound � Microsoft Corporation. All rights reserved. -6d550000 <RAW> : C:\Windows\SYSTEM32\UMPDC.dll -6d560000 <RAW> : C:\Windows\SYSTEM32\powrprof.dll 10.0.19041.3636 - Power Profile Helper DLL � Microsoft Corporation. All rights reserved. -6ed80000 <RAW> : C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.19041.5369_none_d9518ab7e1044dec\gdiplus.dll 10.0.19041.5369 - Microsoft GDI+ � Microsoft Corporation. All rights reserved. -6eef0000 <RAW> : C:\Windows\SYSTEM32\oledlg.dll 10.0.19041.4355 - OLE User Interface Support � Microsoft Corporation. All rights reserved. -6efa0000 <RAW> : C:\Windows\system32\Oleacc.dll 7.2.19041.3636 - Active Accessibility Core Component � Microsoft Corporation. All rights reserved. -6f000000 <RAW> : C:\Program Files (x86)\LAV Filters\x86\libbluray.dll -6f0e0000 <RAW> : C:\Windows\SYSTEM32\edputil.dll 10.0.19041.4355 - EDP util � Microsoft Corporation. All rights reserved. -6f3d0000 <RAW> : C:\Program Files (x86)\LAV Filters\x86\swresample-lav-5.dll 5.0.100.0 - FFmpeg audio resampling library Copyright (C) 2000-2024 FFmpeg Project -6f400000 <RAW> : C:\Windows\SYSTEM32\cscapi.dll 10.0.19041.3636 - Offline Files Win32 API � Microsoft Corporation. All rights reserved. -6f410000 <RAW> : C:\Windows\SYSTEM32\dxcore.dll 10.0.19041.4474 - DXCore � Microsoft Corporation. All rights reserved. -6f440000 <RAW> : C:\Windows\System32\DriverStore\FileRepository\u0404579.inf_amd64_89599f81cb58902d\B404520\amdihk32.dll 2.0.0.1788 - Radeon Settings: Host Service Copyright (C) 2024 Advanced Micro Devices, Inc. -6f470000 <RAW> : C:\Windows\SYSTEM32\srvcli.dll 10.0.19041.3636 - Server Service Client DLL � Microsoft Corporation. All rights reserved. -6f490000 <RAW> : C:\Windows\SYSTEM32\resourcepolicyclient.dll 10.0.19041.4355 - Resource Policy Client � Microsoft Corporation. All rights reserved. -6f4a0000 <RAW> : C:\Windows\System32\npmproxy.dll 10.0.19041.3636 - Network List Manager Proxy � Microsoft Corporation. All rights reserved. -6f4b0000 <RAW> : C:\Windows\System32\netprofm.dll 10.0.19041.4355 - Network List Manager � Microsoft Corporation. All rights reserved. -6f4f0000 <RAW> : C:\Windows\System32\wups.dll 10.0.19041.4597 - Windows Update client proxy stub � Microsoft Corporation. All rights reserved. -6f500000 <RAW> : C:\Windows\SYSTEM32\ncrypt.dll 10.0.19041.5438 - Windows NCrypt Router � Microsoft Corporation. All rights reserved. -6f530000 <RAW> : C:\Windows\SYSTEM32\SspiCli.dll 10.0.19041.4239 - Security Support Provider Interface � Microsoft Corporation. All rights reserved. -6f560000 <RAW> : C:\Windows\SYSTEM32\LINKINFO.dll 10.0.19041.3636 - Windows Volume Tracking � Microsoft Corporation. All rights reserved. -6f570000 <RAW> : D:\SSP\plugin\CharameL\CharameL.dll 1.0.0.0 - CharameL sin imanari -6f690000 <RAW> : C:\Windows\system32\ncryptsslp.dll 10.0.19041.5438 - Microsoft SChannel Provider � Microsoft Corporation. All rights reserved. -6f6b0000 <RAW> : C:\Windows\SYSTEM32\NTASN1.dll 10.0.19041.3636 - Microsoft ASN.1 API � Microsoft Corporation. All rights reserved. -6f6e0000 <RAW> : C:\Windows\SYSTEM32\mskeyprotect.dll 10.0.19041.5438 - Microsoft Key Protection Provider � Microsoft Corporation. All rights reserved. -6f6f0000 <RAW> : C:\Windows\System32\schannel.dll 10.0.19041.5438 - TLS / SSL Security Provider � Microsoft Corporation. All rights reserved. -6f770000 <RAW> : C:\Windows\system32\pdh.dll 10.0.19041.5072 - Windows Performance Data Helper DLL � Microsoft Corporation. All rights reserved. -6f7c0000 <RAW> : C:\Windows\SYSTEM32\ondemandconnroutehelper.dll 10.0.19041.4355 - On Demand Connctiond Route Helper � Microsoft Corporation. All rights reserved. -6f7e0000 <RAW> : C:\Windows\SYSTEM32\netutils.dll 10.0.19041.3636 - Net Win32 API Helpers DLL � Microsoft Corporation. All rights reserved. -6f7f0000 <RAW> : C:\Windows\SYSTEM32\iertutil.dll 11.0.19041.5737 - Run time utility for Internet Explorer � Microsoft Corporation. All rights reserved. -6fa30000 <RAW> : C:\Windows\system32\wshunix.dll 10.0.19041.5438 - AF_UNIX Winsock2 Helper DLL � Microsoft Corporation. All rights reserved. -6fa40000 <RAW> : C:\Windows\SYSTEM32\profapi.dll 10.0.19041.5553 - User Profile Basic API � Microsoft Corporation. All rights reserved. -6ff70000 <RAW> : C:\Windows\System32\winrnr.dll 10.0.19041.3636 - LDAP RnR Provider DLL � Microsoft Corporation. All rights reserved. -6ff80000 <RAW> : C:\Windows\SYSTEM32\DNSAPI.dll 10.0.19041.5369 - DNS Client API DLL � Microsoft Corporation. All rights reserved. -70010000 <RAW> : C:\Windows\system32\NLAapi.dll 10.0.19041.3636 - Network Location Awareness 2 � Microsoft Corporation. All rights reserved. -70030000 <RAW> : C:\Windows\system32\wshbth.dll 10.0.19041.3636 - Windows Sockets Helper DLL � Microsoft Corporation. All rights reserved. -70040000 <RAW> : C:\Windows\system32\pnrpnsp.dll 10.0.19041.3636 - PNRP Name Space Provider � Microsoft Corporation. All rights reserved. -70060000 <RAW> : C:\Windows\system32\napinsp.dll 10.0.19041.3636 - E-mail Naming Shim Provider � Microsoft Corporation. All rights reserved. -70080000 <RAW> : C:\Windows\system32\dwrite.dll 10.0.19041.5678 - Microsoft DirectX Typography Services � Microsoft Corporation. All rights reserved. -702e0000 <RAW> : C:\Windows\System32\twinapi.appcore.dll 10.0.19041.4597 - twinapi.appcore � Microsoft Corporation. All rights reserved. -70480000 <RAW> : C:\Windows\system32\dxgi.dll 10.0.19041.5438 - DirectX Graphics Infrastructure � Microsoft Corporation. All rights reserved. -70550000 <RAW> : C:\Windows\system32\dcomp.dll 10.0.19041.5737 - Microsoft DirectComposition Library � Microsoft Corporation. All rights reserved. -706c0000 <RAW> : C:\Windows\system32\d3d11.dll 10.0.19041.4355 - Direct3D 11 Runtime � Microsoft Corporation. All rights reserved. -708a0000 <RAW> : C:\Windows\system32\dataexchange.dll 10.0.19041.4355 - Data exchange � Microsoft Corporation. All rights reserved. -708e0000 <RAW> : C:\Windows\SYSTEM32\Wldp.dll 10.0.19041.5737 - Windows Lockdown Policy � Microsoft Corporation. All rights reserved. -70910000 <RAW> : C:\Windows\SYSTEM32\windows.storage.dll 10.0.19041.5678 - Microsoft WinRT Storage API � Microsoft Corporation. All rights reserved. -70f30000 <RAW> : C:\Windows\system32\dwmapi.dll 10.0.19041.5737 - Microsoft Desktop Window Manager API � Microsoft Corporation. All rights reserved. -71220000 <RAW> : C:\Windows\SYSTEM32\MSIMG32.dll 10.0.19041.3636 - GDIEXT Client DLL � Microsoft Corporation. All rights reserved. -71390000 <RAW> : C:\Windows\SYSTEM32\ntmarta.dll 10.0.19041.3636 - Windows NT MARTA provider � Microsoft Corporation. All rights reserved. -713c0000 <RAW> : C:\Windows\SYSTEM32\kernel.appcore.dll 10.0.19041.3758 - AppModel API Host � Microsoft Corporation. All rights reserved. -713d0000 <RAW> : C:\Windows\System32\CoreUIComponents.dll 10.0.19041.3636 - Microsoft Core UI Components Dll � Microsoft Corporation. All rights reserved. -71650000 <RAW> : C:\Windows\System32\CoreMessaging.dll 10.0.19041.5486 - Microsoft CoreMessaging Dll � Microsoft Corporation. All rights reserved. -716f0000 <RAW> : C:\Windows\SYSTEM32\PROPSYS.dll 7.0.19041.5369 - Microsoft Property System � Microsoft Corporation. All rights reserved. -717c0000 <RAW> : C:\Windows\SYSTEM32\wintypes.dll 10.0.19041.5369 - Windows Base Types DLL � Microsoft Corporation. All rights reserved. -718a0000 <RAW> : C:\Windows\System32\InputHost.dll 10.0.19041.4355 - InputHost � Microsoft Corporation. All rights reserved. -74090000 <RAW> : C:\Windows\SYSTEM32\iphlpapi.dll 10.0.19041.3636 - IP Helper API � Microsoft Corporation. All rights reserved. -740d0000 <RAW> : C:\Windows\SYSTEM32\WINMM.dll 10.0.19041.3636 - MCI API DLL � Microsoft Corporation. All rights reserved. -74ed0000 <RAW> : C:\Windows\SYSTEM32\CRYPTBASE.dll 10.0.19041.3636 - Base cryptographic API DLL � Microsoft Corporation. All rights reserved. -74ee0000 <RAW> : C:\Windows\system32\uxtheme.dll 10.0.19041.5247 - Microsoft UxTheme Library � Microsoft Corporation. All rights reserved. -74f60000 <RAW> : C:\Windows\SYSTEM32\WININET.dll 11.0.19041.5438 - Internet Extensions for Win32 � Microsoft Corporation. All rights reserved. -75470000 <RAW> : C:\Windows\SYSTEM32\MSASN1.dll 10.0.19041.3636 - ASN.1 Runtime APIs � Microsoft Corporation. All rights reserved. -75480000 <RAW> : C:\Windows\SYSTEM32\DEVOBJ.dll 10.0.19041.4355 - Device Information Set DLL � Microsoft Corporation. All rights reserved. -754b0000 <RAW> : C:\Windows\system32\mswsock.dll 10.0.19041.5553 - Microsoft Windows Sockets 2.0 Service Provider � Microsoft Corporation. All rights reserved. -75510000 <RAW> : C:\Windows\SYSTEM32\WSOCK32.dll 10.0.19041.1 - Windows Socket 32-Bit DLL � Microsoft Corporation. All rights reserved. -75520000 <RAW> : C:\Windows\SYSTEM32\VERSION.dll 10.0.19041.3636 - Version Checking and File Installation Libraries � Microsoft Corporation. All rights reserved. -75530000 <RAW> : C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.4355_none_a865f0c28672571c\COMCTL32.dll 6.10.19041.4355 - User Experience Controls Library � Microsoft Corporation. All rights reserved. -75750000 <RAW> : C:\Windows\SYSTEM32\USERENV.dll 10.0.19041.4355 - Userenv � Microsoft Corporation. All rights reserved. -75810000 <RAW> : C:\Windows\System32\WS2_32.dll 10.0.19041.3636 - Windows Socket 2.0 32-Bit DLL � Microsoft Corporation. All rights reserved. -75880000 <RAW> : C:\Windows\System32\SHELL32.dll 10.0.19041.5678 - Windows Shell Common Dll � Microsoft Corporation. All rights reserved. -75e60000 <RAW> : C:\Windows\System32\KERNEL32.DLL 10.0.19041.5678 - Windows NT BASE API Client DLL � Microsoft Corporation. All rights reserved. -75fb0000 <RAW> : C:\Windows\System32\SETUPAPI.dll 10.0.19041.5369 - Windows Setup API � Microsoft Corporation. All rights reserved. -763f0000 <RAW> : C:\Windows\System32\ucrtbase.dll 10.0.19041.3636 - Microsoft� C Runtime Library � Microsoft Corporation. All rights reserved. -76510000 <RAW> : C:\Windows\System32\imagehlp.dll 10.0.19041.3636 - Windows NT Image Helper � Microsoft Corporation. All rights reserved. -76530000 <RAW> : C:\Windows\System32\normaliz.dll 10.0.19041.3636 - Unicode Normalization DLL � Microsoft Corporation. All rights reserved. -76540000 <RAW> : C:\Windows\System32\NSI.dll 10.0.19041.5438 - NSI User-mode interface DLL � Microsoft Corporation. All rights reserved. -76550000 <RAW> : C:\Windows\System32\CRYPT32.dll 10.0.19041.5737 - Crypto API32 � Microsoft Corporation. All rights reserved. -76650000 <RAW> : C:\Windows\System32\OLEAUT32.dll 10.0.19041.3636 - OLEAUT32.DLL � Microsoft Corporation. All rights reserved. -766f0000 <RAW> : C:\Windows\System32\ole32.dll 10.0.19041.5369 - Microsoft OLE for Windows � Microsoft Corporation. All rights reserved. -76840000 <RAW> : C:\Windows\System32\MSCTF.dll 10.0.19041.5678 - MSCTF Server DLL � Microsoft Corporation. All rights reserved. -769c0000 <RAW> : C:\Windows\System32\cfgmgr32.dll 10.0.19041.3996 - Configuration Manager DLL � Microsoft Corporation. All rights reserved. -76a00000 <RAW> : C:\Windows\System32\sechost.dll 10.0.19041.5737 - Host for SCM/SDDL/LSA Lookup APIs � Microsoft Corporation. All rights reserved. -76a80000 <RAW> : C:\Windows\System32\win32u.dll 10.0.19041.5737 - Win32u � Microsoft Corporation. All rights reserved. -76aa0000 <RAW> : C:\Windows\System32\SHLWAPI.dll 10.0.19041.4355 - Shell Light-weight Utility Library � Microsoft Corporation. All rights reserved. -76af0000 <RAW> : C:\Windows\System32\clbcatq.dll 2001.12.10941.16384 - COM+ Configuration Catalog � Microsoft Corporation. All rights reserved. -76b70000 <RAW> : C:\Windows\System32\msvcrt.dll 7.0.19041.3636 - Windows NT CRT DLL � Microsoft Corporation. All rights reserved. -76c30000 <RAW> : C:\Windows\System32\bcrypt.dll 10.0.19041.5438 - Windows Cryptographic Primitives Library � Microsoft Corporation. All rights reserved. -76dc0000 <RAW> : C:\Windows\System32\gdi32full.dll 10.0.19041.5737 - GDI Client DLL � Microsoft Corporation. All rights reserved. -76eb0000 <RAW> : C:\Windows\System32\RPCRT4.dll 10.0.19041.5438 - Remote Procedure Call Runtime � Microsoft Corporation. All rights reserved. -76f70000 <RAW> : C:\Windows\System32\GDI32.dll 10.0.19041.5737 - GDI Client DLL � Microsoft Corporation. All rights reserved. -76fa0000 <RAW> : C:\Windows\System32\KERNELBASE.dll 10.0.19041.5737 - Windows NT BASE API Client DLL � Microsoft Corporation. All rights reserved. -771e0000 <RAW> : C:\Windows\System32\combase.dll 10.0.19041.5369 - Microsoft COM for Windows � Microsoft Corporation. All rights reserved. -774d0000 <RAW> : C:\Windows\System32\USER32.dll 10.0.19041.5737 - Multi-User Windows USER API Client DLL � Microsoft Corporation. All rights reserved. -77670000 <RAW> : C:\Windows\System32\comdlg32.dll 10.0.19041.4355 - Common Dialogs DLL � Microsoft Corporation. All rights reserved. -77720000 <RAW> : C:\Windows\System32\msvcp_win.dll 10.0.19041.3636 - Microsoft� C Runtime Library � Microsoft Corporation. All rights reserved. -777a0000 <RAW> : C:\Windows\System32\IMM32.DLL 10.0.19041.5737 - Multi-User Windows IMM32 API Client DLL � Microsoft Corporation. All rights reserved. -777d0000 <RAW> : C:\Windows\System32\bcryptPrimitives.dll 10.0.19041.5438 - Windows Cryptographic Primitives Library � Microsoft Corporation. All rights reserved. -77830000 <RAW> : C:\Windows\System32\ADVAPI32.dll 10.0.19041.5737 - Advanced Windows 32 Base API � Microsoft Corporation. All rights reserved. -778b0000 <RAW> : C:\Windows\System32\shcore.dll 10.0.19041.5678 - SHCORE � Microsoft Corporation. All rights reserved. -77940000 <RAW> : C:\Windows\System32\WINTRUST.dll 10.0.19041.5737 - Microsoft Trust Verification APIs � Microsoft Corporation. All rights reserved. ==> -779b0000 <RAW> : C:\Windows\SYSTEM32\ntdll.dll 10.0.19041.5737 - NT Layer DLL � Microsoft Corporation. All rights reserved. Registers: EAX 25ffefa8 EBX 1eef6000 ECX 25ffefd8 EDX 77ad3960 ESI 00000002 EDI 00d802c0 DS 002b ES 002b FS 0053 GS 002b SS/ESP/EBP 002b/25ffef80/25ffefb8 CS/EIP 0023/77a96d23 EFlags 00000246 (Parity,Zero,Interrupt) Stack Dump: c10b92a6 00d802c0 00000002 1eef6000 77aa8938 25ffeff4 77a37ad5 00000000 25ffef80 77a37b1a 25fff03c 77a2b570 935fab46 00000000 25fff04c 77a96cfb c10b8d52 00d802c0 00000002 1eef6000 77ad3960 c0000374 c0000374 00000001 00000000 77a96d23 00000001 77ad3960 c10b8d2a 25fff04c 0000001d 25fff024 26000000 00000000 0000001d 25ffefe0 00d80000 25fff078 77a2b570 935fbbce fffffffe 25fff048 77a0c591 77ad3990 c10b8d52 25ffefc0 00000002 25fff078 77a2b570 935fab66 fffffffe 25fff088 77a9fdc4 00000001 77ad3990 77a9dcb9 c10b8d96 00d802c0 1eef8290 1eef6000 25fff060 1a1fd730 25fff1cc 77a2b570 CallStack Trace: 00 : 77a96d23/000e5d23 <RAW> [c10b8d52,00d802c0,00000002,1eef6000] @ ntdll.dll (RtlIsZeroMemory->0xf3) 01 : 77a96cfb/000e5cfb <RAW> [00000001,77ad3990,77a9dcb9,c10b8d96] @ ntdll.dll (RtlIsZeroMemory->0xcb) 02 : 77a9fdc4/000eedc4 <RAW> [00000011,00d80100,1eef8290,00000000] @ ntdll.dll (RtlpNtSetValueKey->0x27c4) 03 : 77aa6130/000f5130 <RAW> [1eef8290,1eef6000,0000010b,00000000] @ ntdll.dll (RtlpNtSetValueKey->0x8b30) 04 : 77aa77a8/000f67a8 <RAW> [1eef8290,00000000,00d80000,00000000] @ ntdll.dll (RtlpNtSetValueKey->0xa1a8) 05 : 77aabbc5/000fabc5 <RAW> [00000000,1eef8290,00d80000,00000000] @ ntdll.dll (RtlpNtSetValueKey->0xe5c5) 06 : 77aa8938/000f7938 <RAW> [00000000,00000000,00000000,1eef8290] @ ntdll.dll (RtlpNtSetValueKey->0xb338) 07 : 77a37ad5/00086ad5 <RAW> [00000000,00000000,00000000,c10b8cc2] @ ntdll.dll (RtlGetNtGlobalFlags->0x65) 08 : 77a7d6b4/000cc6b4 <RAW> [00000000,1eef8290,1eef8290,25fff238] @ ntdll.dll (RtlImageRvaToVa->0x104) 09 : 77a46b0e/00095b0e <RAW> [00d80000,00000000,1eef8290,1eef8290] @ ntdll.dll (RtlCaptureStackContext->0xd5ce) 10 : 008b4570/004b3570 <RAW> [1eef8290,25fff258,006e291d,1eef8290] @ ssp.exe (free 008b4496 f libcmt:free.obj->0xda) 11 : 004c9eb0/000c8eb0 <RAW> [1eef8290,0097b7f4,000001c0,25fff27c] @ ssp.exe (JSocketManager::InitSSL->0x850) 12 : 006e291d/002e191d <RAW> [1eef8290,0097b7f4,000001c0,00000000] @ ssp.exe (CRYPTO_free 006e2900 f libcrypto:libcrypto-lib-mem.obj->0x1d) 13 : 006e7d7e/002e6d7e <RAW> [1eef8290,1f1c9ba8,03da2e38,25fff2ac] @ ssp.exe (OPENSSL_sk_free 006e7d50 f libcrypto:libcrypto-lib-stack.obj->0x2e) 14 : 006e7d46/002e6d46 <RAW> [1eef8290,006fe970,00000000,0070a4c0] @ ssp.exe (OPENSSL_sk_pop_free 006e7d10 f libcrypto:libcrypto-lib-stack.obj->0x36) 15 : 006fe927/002fd927 <RAW> [1f1c9ba8,00000000,03da2e38,25fff2d0] @ ssp.exe (X509_VERIFY_PARAM_free 006fe900 f libcrypto:libcrypto-lib-x509_vpm.obj->0x27) 16 : 0084d48c/0044c48c <RAW> [03da2e38,03da2e38,25fff2f8,004cb9be] @ ssp.exe (ossl_ssl_connection_free 0084d460 f libssl:libssl-lib-ssl_lib.obj->0x2c) 17 : 0084d434/0044c434 <RAW> [03da2e38,00000000,00000006,0dd12380] @ ssp.exe (SSL_free 0084d400 f libssl:libssl-lib-ssl_lib.obj->0x34) 18 : 004cb9be/000ca9be <RAW> [00943380,00000006,00000000,00000000] @ ssp.exe (JSocket::send_wrapper->0x14e) 19 : 004cccb2/000cbcb2 <RAW> [00943380,00000006,0dd12380,0dd12020] @ ssp.exe (JSocket::Send->0x42) 20 : 004ccc5c/000cbc5c <RAW> [00943380,0dd12380,0dd12020,0059a38a] @ ssp.exe (JSocket::SendString->0x1c) 21 : 00598bf9/00197bf9 <RAW> [049afc48,0dd12020,25fffef0,0059bb95] @ ssp.exe (SPPopAccount::Logout->0x59) 22 : 0059a08b/0019908b <RAW> [12bbe688,049afc48,12bb6b88,00000000] @ ssp.exe (SPPopAccount::CheckMail->0x2b) 23 : 0059bb95/0019ab95 <RAW> [12bb6b88,75e7ea50,034556c8,00000001] @ ssp.exe (SPPop::LoopMain->0x395) 24 : 0059b7e3/0019a7e3 <RAW> [008b8bbd,13dff5b0,13dff5b0,00000000] @ ssp.exe (SPPop::Loop->0x33) 25 : 004db707/000da707 <RAW> [12bb6c68,008b8bbd,008b8bbd,13dff5b0] @ ssp.exe (JWinThread::SetInterval->0xf7) 26 : 008b8c46/004b7c46 <RAW> [13dff5b0,75e7fcb0,25ffffdc,77a182ae] @ ssp.exe (_beginthreadex 008b8b52 f libcmt:threadex.obj->0xf4) 27 : 75e7fcc9/0000fcc9 <RAW> [13dff5b0,c10b82c2,00000000,00000000] @ KERNEL32.DLL (BaseThreadInitThunk->0x19) 28 : 77a182ae/000672ae <RAW> [ffffffff,77a39330,00000000,00000000] @ ntdll.dll (RtlGetAppContainerNamedObjectPath->0x11e) 29 : 77a1827e/0006727e <RAW> [008b8bbd,13dff5b0,00000000,000d0208] @ ntdll.dll (RtlGetAppContainerNamedObjectPath->0xee) Total StackDepth : 30 STACKTRC_01.TXT (76,478 bytes)
SPDebugger/2.17.24106.A Exception Raised at 77a96d23 because HEAP_CORRUPTION (#c0000374) Windows NT 10.0.19045 UAC: Enabled,Limited Time: 2025/4/11 15:57:35.777 Phys.Mem: 17484/32693MB PageFile: 15074/37557MB CPU : AMD 0.23.8.7 3200MHz Features:MMX SSE HT AES-NI (AMD Ryzen 7 2700 Eight-Core Processor) Package:1 Node:1 Core:8 Thread:16 SSP/2.6.95 (20250401-5; Windows NT 10.0.19045) Volume Information: A:\ CD-ROM B:\ Fixed [ 506679MB Free | 1907625MB Total | 26%] (NTFS,Normal) C:\ Fixed [ 35171MB Free | 113832MB Total | 30%] (NTFS,Normal) D:\ Fixed [ 6735543MB Free | 7630867MB Total | 88%] (NTFS,Normal) E:\ Fixed [ 63MB Free | 99MB Total | 63%] (NTFS,Normal) G:\ Fixed [ 4265MB Free | 102400MB Total | 4%] (FAT32,Normal) Monitor Information: 0: \\.\DISPLAY1 - Work=0,0,1920,1040 Size=1920x1080 [PRIMARY] 1: \\.\DISPLAY2 - Work=-1920,0,0,1040 Size=1920x1080 2: \\.\DISPLAY3 - Work=1920,0,3840,1040 Size=1920x1080 Env. Variables: =::=::\ ALLUSERSPROFILE=C:\ProgramData APPDATA=C:\Users\Zichqec\AppData\Roaming CommonProgramFiles=C:\Program Files (x86)\Common Files CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files CommonProgramW6432=C:\Program Files\Common Files COMPUTERNAME=DESKTOP-GJS901G ComSpec=C:\Windows\system32\cmd.exe DriverData=C:\Windows\System32\Drivers\DriverData FPS_BROWSER_APP_PROFILE_STRING=Internet Explorer FPS_BROWSER_USER_PROFILE_STRING=Default HOMEDRIVE=C: HOMEPATH=\Users\Zichqec LOCALAPPDATA=C:\Users\Zichqec\AppData\Local LOGONSERVER=\\DESKTOP-GJS901G NUMBER_OF_PROCESSORS=16 OneDrive=C:\Users\Zichqec\OneDrive OS=Windows_NT Path=D:\SSP\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Users\Zichqec\AppData\Local\Microsoft\WindowsApps;C:\Users\Zichqec\AppData\Local\GitHubDesktop\bin;C:\Users\Zichqec\AppData\Roaming\Programs\Zero Install PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE=x86 PROCESSOR_ARCHITEW6432=AMD64 PROCESSOR_IDENTIFIER=AMD64 Family 23 Model 8 Stepping 2, AuthenticAMD PROCESSOR_LEVEL=23 PROCESSOR_REVISION=0802 ProgramData=C:\ProgramData ProgramFiles=C:\Program Files (x86) ProgramFiles(x86)=C:\Program Files (x86) ProgramW6432=C:\Program Files PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\Windows\system32\WindowsPowerShell\v1.0\Modules PUBLIC=C:\Users\Public SESSIONNAME=Console SystemDrive=C: SystemRoot=C:\Windows TEMP=C:\Users\Zichqec\AppData\Local\Temp TMP=C:\Users\Zichqec\AppData\Local\Temp USERDOMAIN=DESKTOP-GJS901G USERDOMAIN_ROAMINGPROFILE=DESKTOP-GJS901G USERNAME=Zichqec USERPROFILE=C:\Users\Zichqec windir=C:\Windows Loaded Drivers: -22800000 : win32kbase.sys -22d60000 : win32k.sys -23650000 : win32kfull.sys -23a10000 : cdd.dll -409f0000 : mcupdate_AuthenticAMD.dll -40a20000 : hal.dll -40a30000 : kd.dll -40a40000 : tm.sys -40a70000 : CLFS.SYS -40ae0000 : PSHED.dll -40b00000 : BOOTVID.dll -40b10000 : clipsp.sys -40c30000 : FLTMGR.SYS -40ca0000 : ksecdd.sys -40cd0000 : msrpc.sys -40d40000 : cmimcext.sys -40d60000 : werkernel.sys -40d80000 : ntosext.sys -40d90000 : WDFLDR.SYS -40db0000 : SleepStudyHelper.sys -40dc0000 : WppRecorder.sys -40de0000 : msseccore.sys -44800000 : ntoskrnl.exe -46200000 : CI.dll -462f0000 : cng.sys -463b0000 : Wdf01000.sys -46490000 : acpiex.sys -464c0000 : SgrmAgent.sys -464e0000 : ACPI.sys -465b0000 : WMILIB.SYS -465d0000 : intelpep.sys -46640000 : WindowsTrustedRT.sys -46660000 : IntelTA.sys -46670000 : WindowsTrustedRTProxy.sys -46680000 : pcw.sys -466a0000 : msisadrv.sys -466b0000 : pci.sys -46730000 : vdrvroot.sys -46750000 : pdc.sys -46790000 : CEA.sys -467b0000 : partmgr.sys -467f0000 : spaceport.sys -468a0000 : volmgr.sys -468c0000 : volmgrx.sys -46930000 : mountmgr.sys -46950000 : storahci.sys -46990000 : EhStorClass.sys -469b0000 : fileinfo.sys -469d0000 : Fs_Rec.sys -469e0000 : volume.sys -46a00000 : storport.sys -46ac0000 : Wof.sys -46b10000 : WdFilter.sys -46bb0000 : ndis.sys -46d20000 : NETIO.SYS -46dc0000 : ksecpkg.sys -46e00000 : Ntfs.sys -470e0000 : tcpip.sys -473d0000 : fwpkclnt.sys -47450000 : wfplwfs.sys -47490000 : fvevol.sys -47560000 : volsnap.sys -475d0000 : rdyboost.sys -47630000 : mup.sys -47660000 : iorate.sys -476a0000 : disk.sys -476c0000 : CLASSPNP.SYS -520d0000 : cdrom.sys -52110000 : filecrypt.sys -52130000 : tbs.sys -52140000 : UCPD.sys -52160000 : Null.SYS -52170000 : Beep.SYS -52180000 : dxgkrnl.sys -52530000 : watchdog.sys -52550000 : BasicDisplay.sys -52570000 : BasicRender.sys -52590000 : Npfs.SYS -525d0000 : crashdmp.sys -53400000 : netbt.sys -53460000 : afunix.sys -53480000 : afd.sys -53530000 : vwififlt.sys -53550000 : pacer.sys -53580000 : ndiscap.sys -535a0000 : netbios.sys -535c0000 : Vid.sys -53670000 : winhvr.sys -536a0000 : rdbss.sys -53720000 : csc.sys -537c0000 : nsiproxy.sys -537e0000 : npsvctrig.sys -537f0000 : mssmbios.sys -53810000 : gpuenergydrv.sys -53820000 : dfsc.sys -53870000 : fastfat.SYS -538e0000 : bam.sys -53900000 : ahcache.sys -53960000 : amdxe.sys -53970000 : amdfendr.sys -539d0000 : CompositeBus.sys -539f0000 : kdnic.sys -53a00000 : amdsafd.sys -53a20000 : portcls.sys -53a90000 : drmk.sys -53ac0000 : ks.sys -53b40000 : ksthunk.sys -53b60000 : umbus.sys -53b80000 : USBXHCI.SYS -53c20000 : ucx01000.sys -53c70000 : rt640x64.sys -53d20000 : condrv.sys -53d40000 : KslD.sys -53da0000 : WdNisDrv.sys -54100000 : Msfs.SYS -54120000 : CimFS.SYS -54140000 : amdpsp.sys -54180000 : tdx.sys -541b0000 : TDI.SYS -67400000 : UsbHub3.sys -674b0000 : USBD.SYS -674c0000 : AtihdWT6.sys -67500000 : HdAudio.sys -67570000 : Nahimic_Mirroring.sys -67590000 : usbccgp.sys -675d0000 : hidusb.sys -675f0000 : HIDCLASS.SYS -67640000 : HIDPARSE.SYS -67660000 : mouhid.sys -67680000 : mouclass.sys -676a0000 : kbdhid.sys -676c0000 : kbdclass.sys -676e0000 : usbaudio.sys -67720000 : wachidrouter.sys -67740000 : mshidkmdf.sys -67750000 : wacomrouterfilter.sys -67770000 : dump_diskdump.sys -677c0000 : dump_storahci.sys -67820000 : dump_dumpfve.sys -67840000 : dxgmms2.sys -67920000 : monitor.sys -67940000 : luafv.sys -67970000 : wcifs.sys -679b0000 : cldflt.sys -67a40000 : storqosflt.sys -67a60000 : bindflt.sys -67a90000 : mslldp.sys -67ab0000 : msquic.sys -67b10000 : HTTP.sys -67ca0000 : lltdio.sys -67cc0000 : wanarp.sys -67ce0000 : rspndr.sys -67d00000 : bowser.sys -67d30000 : mpsdrv.sys -67d50000 : mrxsmb.sys -67df0000 : mrxsmb20.sys -67e40000 : AMDRyzenMasterDriver.sys -67e80000 : googledrivefs31626.sys -67ef0000 : srvnet.sys -67f50000 : mmcss.sys -67f70000 : Ndu.sys -67fa0000 : peauth.sys -68080000 : tcpipreg.sys -680a0000 : srv2.sys -68170000 : rassstp.sys -68190000 : NDProxy.sys -681b0000 : cdfs.sys -681d0000 : AgileVpn.sys -68200000 : rasl2tp.sys -68230000 : raspptp.sys -68260000 : raspppoe.sys -68280000 : amdkmdag.sys -6e830000 : HDAudBus.sys -6e860000 : AMDPCIDev.sys -6e870000 : parport.sys -6e890000 : serial.sys -6e8b0000 : serenum.sys -6e8c0000 : amdgpio2.sys -6e8d0000 : msgpioclx.sys -6e910000 : wmiacpi.sys -6e920000 : amdppm.sys -6e960000 : amdgpio3.sys -6e970000 : amdfendrmgr.sys -6e980000 : NdisVirtualBus.sys -6e990000 : swenum.sys -6e9a0000 : rdpbus.sys -6e9b0000 : ndistapi.sys -6e9c0000 : ndiswan.sys Executing Processes: [With ToolHelp32] -00000000 : [System Process] (16 Threads.) -00000004 : System (273 Threads.) -000000ac : Registry (4 Threads.) -00000208 : smss.exe (2 Threads.) -000002d8 : csrss.exe (13 Threads.) -000003c4 : wininit.exe (1 Threads.) -000003cc : csrss.exe (15 Threads.) -00000290 : services.exe (7 Threads.) -000002b0 : winlogon.exe (6 Threads.) -00000300 : lsass.exe (11 Threads.) -0000045c : svchost.exe (17 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000478 : fontdrvhost.exe (5 Threads.) 10.0.19041.5369 - Usermode Font Driver Host � Microsoft Corporation. All rights reserved. -00000480 : fontdrvhost.exe (5 Threads.) 10.0.19041.5369 - Usermode Font Driver Host � Microsoft Corporation. All rights reserved. -000004d8 : svchost.exe (11 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000050c : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000588 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000005b4 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000005b8 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000005f8 : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000060c : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000630 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000006a8 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000006b0 : dwm.exe (28 Threads.) -0000070c : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000728 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000076c : amdfendrsr.exe (4 Threads.) -00000774 : atiesrxx.exe (8 Threads.) -000007b0 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000007d0 : svchost.exe (8 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000280 : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000081c : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000828 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000830 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000838 : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000008f4 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000910 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000918 : svchost.exe (8 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000930 : Memory Compression (114 Threads.) -00000968 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000009b0 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000009e8 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000a54 : svchost.exe (11 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000acc : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000b3c : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000b68 : svchost.exe (14 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000b9c : svchost.exe (11 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000a0c : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000a88 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000c34 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000c44 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000cac : spoolsv.exe (14 Threads.) -00000cd0 : svchost.exe (12 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000cfc : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000d64 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dc4 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dd0 : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000ddc : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000de4 : svchost.exe (17 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dec : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000df4 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dfc : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e04 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e0c : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e14 : escsvc64.exe (2 Threads.) -00000e58 : NahimicService.exe (14 Threads.) -00000e98 : BtwRSupportService.exe (3 Threads.) -00000ecc : WTabletServicePro.exe (4 Threads.) -00000edc : MsMpEng.exe (63 Threads.) -00000ee8 : svchost.exe (21 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000f04 : MpDefenderCoreService.exe (8 Threads.) -00000fc8 : dasHost.exe (3 Threads.) -0000100c : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000010a8 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000010d8 : svchost.exe (12 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000012a0 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001410 : dasHost.exe (1 Threads.) -0000158c : dllhost.exe (4 Threads.) 10.0.19041.3636 - COM Surrogate � Microsoft Corporation. All rights reserved. -000015bc : SearchIndexer.exe (14 Threads.) 7.0.19041.5438 - Microsoft Windows Search Indexer � Microsoft Corporation. All rights reserved. -00001694 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000424 : AggregatorHost.exe (4 Threads.) -00001bac : svchost.exe (9 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001898 : NisSrv.exe (8 Threads.) -00001b8c : atieclxx.exe (15 Threads.) -000016a8 : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000019c0 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001b28 : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001b38 : sihost.exe (9 Threads.) -00001b10 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e50 : taskhostw.exe (8 Threads.) -000016a4 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001c9c : explorer.exe (238 Threads.) 10.0.19041.5678 - Windows Explorer � Microsoft Corporation. All rights reserved. -00001cb4 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001ee8 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001f90 : svchost.exe (11 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002054 : svchost.exe (8 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002188 : StartMenuExperienceHost.exe (7 Threads.) -000021d4 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002288 : RuntimeBroker.exe (2 Threads.) -0000235c : SearchApp.exe (84 Threads.) -00001d8c : RuntimeBroker.exe (7 Threads.) -00002688 : ctfmon.exe (12 Threads.) 10.0.19041.1 - CTF Loader � Microsoft Corporation. All rights reserved. -000026dc : TabTip.exe (7 Threads.) -00002500 : LockApp.exe (27 Threads.) -0000260c : RuntimeBroker.exe (4 Threads.) -00002918 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000029ec : PhoneExperienceHost.exe (36 Threads.) -00002b3c : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002b94 : Wacom_TabletUser.exe (4 Threads.) -00002bcc : Wacom_UpdateUtil.exe (6 Threads.) -00002bf0 : WacomHost.exe (1 Threads.) -00002954 : Wacom_Tablet.exe (55 Threads.) -00002bb4 : Wacom_TouchUser.exe (11 Threads.) -00002c9c : TextInputHost.exe (32 Threads.) -00002d48 : RuntimeBroker.exe (2 Threads.) -00002db4 : SecurityHealthSystray.exe (1 Threads.) -00002dd4 : SecurityHealthService.exe (6 Threads.) -00002e28 : OneDrive.exe (40 Threads.) -00002ccc : Discord.exe (57 Threads.) -00001e10 : steam.exe (34 Threads.) -00001de4 : GoogleDriveFS.exe (2 Threads.) -00001e54 : Discord.exe (7 Threads.) -00002b0c : E_YATIWBE.EXE (3 Threads.) -00002b18 : crashpad_handler.exe (6 Threads.) -00000608 : GoogleDriveFS.exe (133 Threads.) -00000780 : Discord.exe (67 Threads.) -00002ca8 : GoogleDriveFS.exe (36 Threads.) -0000085c : Discord.exe (16 Threads.) -00000960 : conhost.exe (4 Threads.) -00000c3c : GoogleDriveFS.exe (8 Threads.) -000009bc : GoogleDriveFS.exe (14 Threads.) -00000e44 : GoogleDriveFS.exe (12 Threads.) -00000c04 : GoogleDriveFS.exe (26 Threads.) -000031ac : steamwebhelper.exe (27 Threads.) -00003280 : steamservice.exe (4 Threads.) -000032e4 : steamwebhelper.exe (6 Threads.) -0000339c : steamwebhelper.exe (32 Threads.) -0000354c : EEventManager.exe (5 Threads.) -00003620 : CompPkgSrv.exe (1 Threads.) -000036ec : steamwebhelper.exe (13 Threads.) -00003578 : steamwebhelper.exe (6 Threads.) -00003344 : FUFAXRCV.exe (5 Threads.) -000010b4 : steamwebhelper.exe (17 Threads.) -000035e4 : RadeonSoftware.exe (93 Threads.) -000037f0 : notepad++.exe (24 Threads.) -0000381c : FUFAXSTM.exe (3 Threads.) -000038ec : firefox.exe (103 Threads.) -00003b04 : DeepL.exe (72 Threads.) -00003b4c : firefox.exe (178 Threads.) -00003bdc : firefox.exe (5 Threads.) -00003844 : RuntimeBroker.exe (2 Threads.) -00003bbc : CPUMetricsServer.exe (1 Threads.) -000033e0 : firefox.exe (27 Threads.) -000034c0 : firefox.exe (22 Threads.) -00003ccc : NhNotifSys.exe (4 Threads.) -00003440 : Discord.exe (57 Threads.) -00003ea8 : firefox.exe (29 Threads.) -00003f38 : firefox.exe (28 Threads.) -00003c94 : firefox.exe (28 Threads.) -00003e40 : firefox.exe (27 Threads.) -0000365c : firefox.exe (29 Threads.) -00003f4c : firefox.exe (29 Threads.) -00003ef4 : firefox.exe (30 Threads.) -00003c28 : firefox.exe (29 Threads.) -00004018 : firefox.exe (29 Threads.) -00004090 : firefox.exe (28 Threads.) -000040e4 : firefox.exe (28 Threads.) -00004150 : firefox.exe (28 Threads.) -000041b0 : firefox.exe (28 Threads.) -00004220 : firefox.exe (29 Threads.) -0000425c : Discord.exe (7 Threads.) -00004280 : firefox.exe (27 Threads.) -000042f0 : firefox.exe (27 Threads.) -00004324 : firefox.exe (28 Threads.) -00004398 : firefox.exe (27 Threads.) -000040fc : firefox.exe (29 Threads.) -000047a4 : firefox.exe (27 Threads.) -00004b08 : firefox.exe (28 Threads.) -00004b24 : firefox.exe (27 Threads.) -00004b6c : firefox.exe (28 Threads.) -00004718 : firefox.exe (29 Threads.) -00004c78 : firefox.exe (29 Threads.) -00004dd0 : firefox.exe (28 Threads.) -00004e14 : cncmd.exe (1 Threads.) -00004ea8 : firefox.exe (28 Threads.) -00004eb0 : cmd.exe (1 Threads.) 10.0.19041.4355 - Windows Command Processor � Microsoft Corporation. All rights reserved. -00004ec0 : conhost.exe (2 Threads.) -00004f5c : firefox.exe (31 Threads.) -00004f98 : firefox.exe (31 Threads.) -00004fec : firefox.exe (5 Threads.) -00004ee8 : firefox.exe (31 Threads.) -00005018 : firefox.exe (31 Threads.) -00005110 : firefox.exe (28 Threads.) -00005124 : AMDRSServ.exe (48 Threads.) -00005220 : firefox.exe (28 Threads.) -0000539c : firefox.exe (5 Threads.) -000055a0 : steamwebhelper.exe (19 Threads.) -00003bd4 : firefox.exe (32 Threads.) -00002878 : AMDRSSrcExt.exe (26 Threads.) -0000248c : amdow.exe (23 Threads.) -000033a8 : firefox.exe (5 Threads.) -00001aa8 : firefox.exe (27 Threads.) -0000596c : firefox.exe (27 Threads.) -00005a80 : firefox.exe (27 Threads.) -00005b0c : firefox.exe (27 Threads.) -00003730 : CefSharp.BrowserSubprocess.exe (36 Threads.) -00005a6c : CefSharp.BrowserSubprocess.exe (21 Threads.) -00002c80 : CefSharp.BrowserSubprocess.exe (14 Threads.) -00003314 : CefSharp.BrowserSubprocess.exe (18 Threads.) -0000583c : CefSharp.BrowserSubprocess.exe (31 Threads.) -00001e84 : svchost.exe (8 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00005154 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000039e8 : ApplicationFrameHost.exe (2 Threads.) -000056b4 : CalculatorApp.exe (31 Threads.) -00002a7c : RuntimeBroker.exe (1 Threads.) -00001b00 : UserOOBEBroker.exe (1 Threads.) -00002dac : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000021d0 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001c90 : FileCoAuth.exe (4 Threads.) -00002c94 : svchost.exe (11 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000155c : ShellExperienceHost.exe (36 Threads.) -000026ec : RuntimeBroker.exe (4 Threads.) -00000b28 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000046fc : firefox.exe (33 Threads.) -00002820 : firefox.exe (27 Threads.) -00001934 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00003f34 : sai2.exe (20 Threads.) -000002a4 : firefox.exe (28 Threads.) -00000a5c : firefox.exe (29 Threads.) -00002768 : dllhost.exe (5 Threads.) 10.0.19041.3636 - COM Surrogate � Microsoft Corporation. All rights reserved. -000039dc : explorer.exe (20 Threads.) 10.0.19041.5678 - Windows Explorer � Microsoft Corporation. All rights reserved. -0000230c : GitHubDesktop.exe (40 Threads.) -0000153c : GitHubDesktop.exe (68 Threads.) -00005774 : GitHubDesktop.exe (15 Threads.) -00000294 : GitHubDesktop.exe (35 Threads.) -00004b7c : firefox.exe (27 Threads.) -00001ffc : audiodg.exe (6 Threads.) -000014ac : firefox.exe (29 Threads.) -00003af0 : firefox.exe (28 Threads.) -00003cd8 : firefox.exe (28 Threads.) -00004804 : firefox.exe (29 Threads.) -00002774 : ssp.exe (67 Threads.) 2.6.95.3000 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ -00001244 : 7zFM.exe (5 Threads.) -00002654 : notepad.exe (4 Threads.) 10.0.19041.1 - Notepad � Microsoft Corporation. All rights reserved. -000052b8 : smartscreen.exe (11 Threads.) -00002680 : WmiPrvSE.exe (7 Threads.) 10.0.19041.3636 - WMI Provider Host � Microsoft Corporation. All rights reserved. -0000328c : svchost.exe (8 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00004ce4 : svchost.exe (13 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000046c4 : firefox.exe (32 Threads.) ==> -000023d8 : ssp.exe (23 Threads.) 2.6.95.3000 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ Executing Threads: [With ToolHelp32] -000005a8 : 8(0) -00005920 : 8(0) -00001d28 : 8(0) -00002520 : 8(0) -00005958 : 8(0) -000001e0 : 8(0) -00005bbc : 8(0) -00002748 : 8(0) -000024cc : 8(0) -00001d0c : 8(0) -00004064 : 9(0) -00000904 : 7(0) -000015c8 : 7(0) -00000b20 : 8(0) -00001488 : 8(0) -000020d4 : 8(0) -000027b0 : 8(0) -00005b60 : 7(0) -00001b70 : 8(0) -00003380 : 7(0) -00000bdc : 7(0) -0000125c : 8(0) ==> -000004bc : 7(0) Executing Services: [With SCM/NT] ---AJRouter (AllJoyn Router Service) - Stopped/Paused ---ALG (Application Layer Gateway Service) - Stopped/Paused ***AMD Crash Defender Service (AMD Crash Defender Service) - Running ***AMD External Events Utility (AMD External Events Utility) - Running ---AppIDSvc (Application Identity) - Stopped/Paused ***Appinfo (Application Information) - Running ---AppMgmt (Application Management) - Stopped/Paused ---AppReadiness (App Readiness) - Stopped/Paused ---AppVClient (Microsoft App-V Client) - Stopped/Paused ---AppXSvc (AppX Deployment Service (AppXSVC)) - Stopped/Paused ---AssignedAccessManagerSvc (AssignedAccessManager Service) - Stopped/Paused ***AudioEndpointBuilder (Windows Audio Endpoint Builder) - Running ***Audiosrv (Windows Audio) - Running ---autotimesvc (Cellular Time) - Stopped/Paused ---AxInstSV (ActiveX Installer (AxInstSV)) - Stopped/Paused ***BcmBtRSupport (Bluetooth Driver Management Service) - Running ---BDESVC (BitLocker Drive Encryption Service) - Stopped/Paused ***BFE (Base Filtering Engine) - Running ---BITS (Background Intelligent Transfer Service) - Stopped/Paused ***BrokerInfrastructure (Background Tasks Infrastructure Service) - Running ---BTAGService (Bluetooth Audio Gateway Service) - Stopped/Paused ***BthAvctpSvc (AVCTP service) - Running ---bthserv (Bluetooth Support Service) - Stopped/Paused ---camsvc (Capability Access Manager Service) - Stopped/Paused ***CDPSvc (Connected Devices Platform Service) - Running ---CertPropSvc (Certificate Propagation) - Stopped/Paused ---ClipSVC (Client License Service (ClipSVC)) - Stopped/Paused ---cloudidsvc (Microsoft Cloud Identity Service) - Stopped/Paused ---COMSysApp (COM+ System Application) - Stopped/Paused ***CoreMessagingRegistrar (CoreMessaging) - Running ***CryptSvc (Cryptographic Services) - Running ---CscService (Offline Files) - Stopped/Paused ***DcomLaunch (DCOM Server Process Launcher) - Running ---dcsvc (Declared Configuration(DC) service) - Stopped/Paused ---defragsvc (Optimize drives) - Stopped/Paused ***DeviceAssociationService (Device Association Service) - Running ---DeviceInstall (Device Install Service) - Stopped/Paused ---DevQueryBroker (DevQuery Background Discovery Broker) - Stopped/Paused ***Dhcp (DHCP Client) - Running ---diagnosticshub.standardcollector.service (Microsoft (R) Diagnostics Hub Standard Collector Service) - Stopped/Paused ---diagsvc (Diagnostic Execution Service) - Stopped/Paused ***DiagTrack (Connected User Experiences and Telemetry) - Running ---DialogBlockingService (DialogBlockingService) - Stopped/Paused ***DispBrokerDesktopSvc (Display Policy Service) - Running ---DisplayEnhancementService (Display Enhancement Service) - Stopped/Paused ---DmEnrollmentSvc (Device Management Enrollment Service) - Stopped/Paused ---dmwappushservice (Device Management Wireless Application Protocol (WAP) Push message Routing Service) - Stopped/Paused ***Dnscache (DNS Client) - Running ***DoSvc (Delivery Optimization) - Running ---dot3svc (Wired AutoConfig) - Stopped/Paused ***DPS (Diagnostic Policy Service) - Running ---DsmSvc (Device Setup Manager) - Stopped/Paused ***DsSvc (Data Sharing Service) - Running ***DusmSvc (Data Usage) - Running ---Eaphost (Extensible Authentication Protocol) - Stopped/Paused ---edgeupdate (Microsoft Edge Update Service (edgeupdate)) - Stopped/Paused ---edgeupdatem (Microsoft Edge Update Service (edgeupdatem)) - Stopped/Paused ***EFS (Encrypting File System (EFS)) - Running ---embeddedmode (Embedded Mode) - Stopped/Paused ---EntAppSvc (Enterprise App Management Service) - Stopped/Paused ***EpsonScanSvc (Epson Scanner Service) - Running ***EventLog (Windows Event Log) - Running ***EventSystem (COM+ Event System) - Running ---Fax (Fax) - Stopped/Paused ***fdPHost (Function Discovery Provider Host) - Running ***FDResPub (Function Discovery Resource Publication) - Running ---fhsvc (File History Service) - Stopped/Paused ***FontCache (Windows Font Cache Service) - Running ---FontCache3.0.0.0 (Windows Presentation Foundation Font Cache 3.0.0.0) - Stopped/Paused ---FrameServer (Windows Camera Frame Server) - Stopped/Paused ---GameInputSvc (GameInput Service) - Stopped/Paused ---GoogleUpdaterInternalService136.0.7079.0 (Google Updater Internal Service (GoogleUpdaterInternalService136.0.7079.0)) - Stopped/Paused ---GoogleUpdaterService136.0.7079.0 (Google Updater Service (GoogleUpdaterService136.0.7079.0)) - Stopped/Paused ---gpsvc (Group Policy Client) - Stopped/Paused ---GraphicsPerfSvc (GraphicsPerfSvc) - Stopped/Paused ***hidserv (Human Interface Device Service) - Running ---HvHost (HV Host Service) - Stopped/Paused ---icssvc (Windows Mobile Hotspot Service) - Stopped/Paused ---IKEEXT (IKE and AuthIP IPsec Keying Modules) - Stopped/Paused ***InstallService (Microsoft Store Install Service) - Running ***iphlpsvc (IP Helper) - Running ---IpxlatCfgSvc (IP Translation Configuration Service) - Stopped/Paused ***KeyIso (CNG Key Isolation) - Running ---KtmRm (KtmRm for Distributed Transaction Coordinator) - Stopped/Paused ***LanmanServer (Server) - Running ***LanmanWorkstation (Workstation) - Running ---lfsvc (Geolocation Service) - Stopped/Paused ***LicenseManager (Windows License Manager Service) - Running ---lltdsvc (Link-Layer Topology Discovery Mapper) - Stopped/Paused ***lmhosts (TCP/IP NetBIOS Helper) - Running ***LSM (Local Session Manager) - Running ---LxpSvc (Language Experience Service) - Stopped/Paused ---MapsBroker (Downloaded Maps Manager) - Stopped/Paused ---McpManagementService (McpManagementService) - Stopped/Paused ***MDCoreSvc (Microsoft Defender Core Service) - Running ---MicrosoftEdgeElevationService (Microsoft Edge Elevation Service (MicrosoftEdgeElevationService)) - Stopped/Paused ---MixedRealityOpenXRSvc (Windows Mixed Reality OpenXR Service) - Stopped/Paused ---MozillaMaintenance (Mozilla Maintenance Service) - Stopped/Paused ***mpssvc (Windows Defender Firewall) - Running ---MSDTC (Distributed Transaction Coordinator) - Stopped/Paused ---MSiSCSI (Microsoft iSCSI Initiator Service) - Stopped/Paused ---msiserver (Windows Installer) - Stopped/Paused ---MsKeyboardFilter (Microsoft Keyboard Filter) - Stopped/Paused ***NahimicService (Nahimic service) - Running ---NaturalAuthentication (Natural Authentication) - Stopped/Paused ---NcaSvc (Network Connectivity Assistant) - Stopped/Paused ***NcbService (Network Connection Broker) - Running ***NcdAutoSetup (Network Connected Devices Auto-Setup) - Running ---Netlogon (Netlogon) - Stopped/Paused ---Netman (Network Connections) - Stopped/Paused ***netprofm (Network List Service) - Running ---NetSetupSvc (Network Setup Service) - Stopped/Paused ---NetTcpPortSharing (Net.Tcp Port Sharing Service) - Stopped/Paused ---NgcCtnrSvc (Microsoft Passport Container) - Stopped/Paused ---NgcSvc (Microsoft Passport) - Stopped/Paused ***NlaSvc (Network Location Awareness) - Running ***nsi (Network Store Interface Service) - Running ---p2pimsvc (Peer Networking Identity Manager) - Stopped/Paused ---p2psvc (Peer Networking Grouping) - Stopped/Paused ***PcaSvc (Program Compatibility Assistant Service) - Running ---PeerDistSvc (BranchCache) - Stopped/Paused ---perceptionsimulation (Windows Perception Simulation Service) - Stopped/Paused ---PerfHost (Performance Counter DLL Host) - Stopped/Paused ---PhoneSvc (Phone Service) - Stopped/Paused ---pla (Performance Logs & Alerts) - Stopped/Paused ***PlugPlay (Plug and Play) - Running ---PNRPAutoReg (PNRP Machine Name Publication Service) - Stopped/Paused ---PNRPsvc (Peer Name Resolution Protocol) - Stopped/Paused ---PolicyAgent (IPsec Policy Agent) - Stopped/Paused ***Power (Power) - Running ---PrintNotify (Printer Extensions and Notifications) - Stopped/Paused ***ProfSvc (User Profile Service) - Running ---PushToInstall (Windows PushToInstall Service) - Stopped/Paused ---QWAVE (Quality Windows Audio Video Experience) - Stopped/Paused ---RasAuto (Remote Access Auto Connection Manager) - Stopped/Paused ***RasMan (Remote Access Connection Manager) - Running ---RemoteAccess (Routing and Remote Access) - Stopped/Paused ---RemoteRegistry (Remote Registry) - Stopped/Paused ---RetailDemo (Retail Demo Service) - Stopped/Paused ***RmSvc (Radio Management Service) - Running ***RpcEptMapper (RPC Endpoint Mapper) - Running ---RpcLocator (Remote Procedure Call (RPC) Locator) - Stopped/Paused ***RpcSs (Remote Procedure Call (RPC)) - Running ***SamSs (Security Accounts Manager) - Running ---SCardSvr (Smart Card) - Stopped/Paused ---ScDeviceEnum (Smart Card Device Enumeration Service) - Stopped/Paused ***Schedule (Task Scheduler) - Running ---SCPolicySvc (Smart Card Removal Policy) - Stopped/Paused ---SDRSVC (Windows Backup) - Stopped/Paused ---seclogon (Secondary Logon) - Stopped/Paused ***SecurityHealthService (Windows Security Service) - Running ***SEMgrSvc (Payments and NFC/SE Manager) - Running ***SENS (System Event Notification Service) - Running ---Sense (Windows Defender Advanced Threat Protection Service) - Stopped/Paused ---SensorDataService (Sensor Data Service) - Stopped/Paused ---SensorService (Sensor Service) - Stopped/Paused ---SensrSvc (Sensor Monitoring Service) - Stopped/Paused ---SessionEnv (Remote Desktop Configuration) - Stopped/Paused ---SgrmBroker (System Guard Runtime Monitor Broker) - Stopped/Paused ---SharedAccess (Internet Connection Sharing (ICS)) - Stopped/Paused ---SharedRealitySvc (Spatial Data Service) - Stopped/Paused ***ShellHWDetection (Shell Hardware Detection) - Running ---shpamsvc (Shared PC Account Manager) - Stopped/Paused ---smphost (Microsoft Storage Spaces SMP) - Stopped/Paused ---SmsRouter (Microsoft Windows SMS Router Service.) - Stopped/Paused ---SNMPTRAP (SNMP Trap) - Stopped/Paused ---spectrum (Windows Perception Service) - Stopped/Paused ***Spooler (Print Spooler) - Running ---sppsvc (Software Protection) - Stopped/Paused ***SSDPSRV (SSDP Discovery) - Running ---ssh-agent (OpenSSH Authentication Agent) - Stopped/Paused ***SstpSvc (Secure Socket Tunneling Protocol Service) - Running ***StateRepository (State Repository Service) - Running ***Steam Client Service (Steam Client Service) - Running ***stisvc (Windows Image Acquisition (WIA)) - Running ***StorSvc (Storage Service) - Running ---svsvc (Spot Verifier) - Stopped/Paused ---swprv (Microsoft Software Shadow Copy Provider) - Stopped/Paused ***SysMain (SysMain) - Running ***SystemEventsBroker (System Events Broker) - Running ***TabletInputService (Touch Keyboard and Handwriting Panel Service) - Running ***TapiSrv (Telephony) - Running ---TermService (Remote Desktop Services) - Stopped/Paused ***Themes (Themes) - Running ---TieringEngineService (Storage Tiers Management) - Stopped/Paused ***TimeBrokerSvc (Time Broker) - Running ***TokenBroker (Web Account Manager) - Running ***TrkWks (Distributed Link Tracking Client) - Running ---TroubleshootingSvc (Recommended Troubleshooting Service) - Stopped/Paused ---TrustedInstaller (Windows Modules Installer) - Stopped/Paused ---tzautoupdate (Auto Time Zone Updater) - Stopped/Paused ---UevAgentService (User Experience Virtualization Service) - Stopped/Paused ---uhssvc (Microsoft Update Health Service) - Stopped/Paused ---UmRdpService (Remote Desktop Services UserMode Port Redirector) - Stopped/Paused ---upnphost (UPnP Device Host) - Stopped/Paused ***UserManager (User Manager) - Running ***UsoSvc (Update Orchestrator Service) - Running ---VacSvc (Volumetric Audio Compositor Service) - Stopped/Paused ***VaultSvc (Credential Manager) - Running ---vds (Virtual Disk) - Stopped/Paused ---vmicguestinterface (Hyper-V Guest Service Interface) - Stopped/Paused ---vmicheartbeat (Hyper-V Heartbeat Service) - Stopped/Paused ---vmickvpexchange (Hyper-V Data Exchange Service) - Stopped/Paused ---vmicrdv (Hyper-V Remote Desktop Virtualization Service) - Stopped/Paused ---vmicshutdown (Hyper-V Guest Shutdown Service) - Stopped/Paused ---vmictimesync (Hyper-V Time Synchronization Service) - Stopped/Paused ---vmicvmsession (Hyper-V PowerShell Direct Service) - Stopped/Paused ---vmicvss (Hyper-V Volume Shadow Copy Requestor) - Stopped/Paused ---VSS (Volume Shadow Copy) - Stopped/Paused ---W32Time (Windows Time) - Stopped/Paused ***WaaSMedicSvc (Windows Update Medic Service) - Running ---WalletService (WalletService) - Stopped/Paused ---WarpJITSvc (WarpJITSvc) - Stopped/Paused ---wbengine (Block Level Backup Engine Service) - Stopped/Paused ---WbioSrvc (Windows Biometric Service) - Stopped/Paused ***Wcmsvc (Windows Connection Manager) - Running ---wcncsvc (Windows Connect Now - Config Registrar) - Stopped/Paused ***WdiServiceHost (Diagnostic Service Host) - Running ---WdiSystemHost (Diagnostic System Host) - Stopped/Paused ***WdNisSvc (Microsoft Defender Antivirus Network Inspection Service) - Running ---WebClient (WebClient) - Stopped/Paused ---Wecsvc (Windows Event Collector) - Stopped/Paused ---WEPHOSTSVC (Windows Encryption Provider Host Service) - Stopped/Paused ---wercplsupport (Problem Reports Control Panel Support) - Stopped/Paused ***WerSvc (Windows Error Reporting Service) - Running ---WFDSConMgrSvc (Wi-Fi Direct Services Connection Manager Service) - Stopped/Paused ---WiaRpc (Still Image Acquisition Events) - Stopped/Paused ***WinDefend (Microsoft Defender Antivirus Service) - Running ***WinHttpAutoProxySvc (WinHTTP Web Proxy Auto-Discovery Service) - Running ***Winmgmt (Windows Management Instrumentation) - Running ---WinRM (Windows Remote Management (WS-Management)) - Stopped/Paused ---wisvc (Windows Insider Service) - Stopped/Paused ---WlanSvc (WLAN AutoConfig) - Stopped/Paused ***wlidsvc (Microsoft Account Sign-in Assistant) - Running ---wlpasvc (Local Profile Assistant Service) - Stopped/Paused ---WManSvc (Windows Management Service) - Stopped/Paused ---wmiApSrv (WMI Performance Adapter) - Stopped/Paused ---WMPNetworkSvc (Windows Media Player Network Sharing Service) - Stopped/Paused ---workfolderssvc (Work Folders) - Stopped/Paused ---WpcMonSvc (Parental Controls) - Stopped/Paused ---WPDBusEnum (Portable Device Enumerator Service) - Stopped/Paused ***WpnService (Windows Push Notifications System Service) - Running ***wscsvc (Security Center) - Running ***WSearch (Windows Search) - Running ***WTabletServicePro (Wacom Professional Service) - Running ***wuauserv (Windows Update) - Running ---WwanSvc (WWAN AutoConfig) - Stopped/Paused ---XblAuthManager (Xbox Live Auth Manager) - Stopped/Paused ---XblGameSave (Xbox Live Game Save) - Stopped/Paused ---XboxGipSvc (Xbox Accessory Management Service) - Stopped/Paused ---XboxNetApiSvc (Xbox Live Networking Service) - Stopped/Paused ---AarSvc_a8c26 (Agent Activation Runtime_a8c26) - Stopped/Paused ---BcastDVRUserService_a8c26 (GameDVR and Broadcast User Service_a8c26) - Stopped/Paused ---BluetoothUserService_a8c26 (Bluetooth User Support Service_a8c26) - Stopped/Paused ***CaptureService_a8c26 (CaptureService_a8c26) - Running ***cbdhsvc_a8c26 (Clipboard User Service_a8c26) - Running ***CDPUserSvc_a8c26 (Connected Devices Platform User Service_a8c26) - Running ---ConsentUxUserSvc_a8c26 (ConsentUX_a8c26) - Stopped/Paused ---CredentialEnrollmentManagerUserSvc_a8c26 (CredentialEnrollmentManagerUserSvc_a8c26) - Stopped/Paused ---DeviceAssociationBrokerSvc_a8c26 (DeviceAssociationBroker_a8c26) - Stopped/Paused ---DevicePickerUserSvc_a8c26 (DevicePicker_a8c26) - Stopped/Paused ---DevicesFlowUserSvc_a8c26 (DevicesFlow_a8c26) - Stopped/Paused ---MessagingService_a8c26 (MessagingService_a8c26) - Stopped/Paused ***OneSyncSvc_a8c26 (Sync Host_a8c26) - Running ***PimIndexMaintenanceSvc_a8c26 (Contact Data_a8c26) - Running ---PrintWorkflowUserSvc_a8c26 (PrintWorkflow_a8c26) - Stopped/Paused ---UdkUserSvc_a8c26 (Udk User Service_a8c26) - Stopped/Paused ***UnistoreSvc_a8c26 (User Data Storage_a8c26) - Running ***UserDataSvc_a8c26 (User Data Access_a8c26) - Running ***WpnUserService_a8c26 (Windows Push Notifications User Service_a8c26) - Running Loaded Modules: [With ToolHelp32] -00400000 <RAW> : D:\SSP\000_Dev\000_dupe SSPs\2.6.93\ssp.exe 2.6.95.3000 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ -04570000 <CMP> : D:\SSP\000_Dev\000_dupe SSPs\2.6.93\plugin\shared_value\shared_value.dll 1.0.0.0 - Shared Value Plugin Copyright (C) CSaori Project -048f0000 <RAW> : D:\SSP\000_Dev\000_dupe SSPs\2.6.93\plugin\SAKNIFE\SAKNIFE.dll 1.5.3.0 - SwissArmyKnife (C) 2004 SSP BUGTRAQ -10000000 <CMP> : D:\SSP\000_Dev\000_dupe SSPs\2.6.93\data\language\english\resource.dll 2.6.49.16 - Language Resource DLL (C) D-EXCLAMATION / SSP BUGTRAQ -66dd0000 <RAW> : C:\Windows\SYSTEM32\mscms.dll 10.0.19041.5129 - Microsoft Color Matching System DLL � Microsoft Corporation. All rights reserved. -66e70000 <RAW> : D:\SSP\000_Dev\000_dupe SSPs\2.6.93\ghost\hoard_of_shinies_zi_0\ghost\master\aosora.dll 0.1.4.39 - aosora-shiori Copyright (C) 2025 @kanadelab -66f30000 <RAW> : C:\Windows\System32\LocationApi.dll 10.0.19041.4355 - Microsoft Windows Location API � Microsoft Corporation. All rights reserved. -67050000 <RAW> : C:\Windows\SYSTEM32\WindowsCodecs.dll 10.0.19041.5129 - Microsoft Windows Codecs Library � Microsoft Corporation. All rights reserved. -674e0000 <RAW> : C:\Windows\SYSTEM32\iertutil.dll 11.0.19041.5737 - Run time utility for Internet Explorer � Microsoft Corporation. All rights reserved. -6a9f0000 <RAW> : C:\Windows\System32\msvcp110_win.dll 10.0.19041.3636 - Microsoft� STL110 C++ Runtime Library � Microsoft Corporation. All rights reserved. -6aa60000 <RAW> : C:\Windows\SYSTEM32\policymanager.dll 10.0.19041.5678 - Policy Manager DLL � Microsoft Corporation. All rights reserved. -6ab30000 <RAW> : C:\Windows\SYSTEM32\ntshrui.dll 10.0.19041.4355 - Shell extensions for sharing � Microsoft Corporation. All rights reserved. -6ab90000 <RAW> : C:\Windows\System32\OneCoreUAPCommonProxyStub.dll 10.0.19041.5438 - OneCoreUAP Common Proxy Stub � Microsoft Corporation. All rights reserved. -6b1a0000 <RAW> : C:\Windows\System32\wuapi.dll 10.0.19041.5198 - Windows Update Client API � Microsoft Corporation. All rights reserved. -6b370000 <RAW> : C:\Windows\System32\deviceaccess.dll 10.0.19041.4355 - Device Broker And Policy COM Server � Microsoft Corporation. All rights reserved. -6b3a0000 <RAW> : C:\Windows\System32\SensorsApi.dll 10.0.19041.4355 - Sensor API � Microsoft Corporation. All rights reserved. -6b730000 <RAW> : C:\Windows\SYSTEM32\DUser.dll 10.0.19041.3636 - Windows DirectUser Engine � Microsoft Corporation. All rights reserved. -6b9a0000 <RAW> : C:\Windows\System32\PortableDeviceTypes.dll 10.0.19041.5553 - Windows Portable Device (Parameter) Types Component � Microsoft Corporation. All rights reserved. -6be10000 <RAW> : C:\Windows\system32\rsaenh.dll 10.0.19041.5553 - Microsoft Enhanced Cryptographic Provider � Microsoft Corporation. All rights reserved. -6be50000 <RAW> : C:\Windows\SYSTEM32\CRYPTSP.dll 10.0.19041.5438 - Cryptographic Service Provider API � Microsoft Corporation. All rights reserved. -6c1f0000 <RAW> : C:\Windows\SYSTEM32\ColorAdapterClient.dll 10.0.19041.5129 - Microsoft Color Adapter Client � Microsoft Corporation. All rights reserved. -6c200000 <RAW> : C:\Windows\System32\SensorsNativeApi.V2.dll 10.0.19041.4355 - Sensors Native API (V2 stack) � Microsoft Corporation. All rights reserved. -6c2e0000 <RAW> : C:\Windows\system32\d2d1.dll 10.0.19041.4355 - Microsoft D2D Library � Microsoft Corporation. All rights reserved. -6c800000 <RAW> : C:\Windows\system32\explorerframe.dll 10.0.19041.5438 - ExplorerFrame � Microsoft Corporation. All rights reserved. -6c9f0000 <RAW> : C:\Windows\System32\fwpuclnt.dll 10.0.19041.4123 - FWP/IPsec User-Mode API � Microsoft Corporation. All rights reserved. -6caf0000 <RAW> : C:\Windows\System32\rasadhlp.dll 10.0.19041.3636 - Remote Access AutoDial Helper � Microsoft Corporation. All rights reserved. -6cb00000 <RAW> : C:\Windows\SYSTEM32\winhttp.dll 10.0.19041.5438 - Windows HTTP Services � Microsoft Corporation. All rights reserved. -6cbd0000 <RAW> : C:\Windows\SYSTEM32\WINNSI.DLL 10.0.19041.3636 - Network Store Information RPC interface � Microsoft Corporation. All rights reserved. -6cbe0000 <RAW> : C:\Windows\SYSTEM32\atlthunk.dll 10.0.19041.5438 - atlthunk.dll � Microsoft Corporation. All rights reserved. -6cd00000 <RAW> : C:\Windows\SYSTEM32\textinputframework.dll 10.0.19041.5198 - "TextInputFramework.DYNLINK" � Microsoft Corporation. All rights reserved. -6cec0000 <RAW> : C:\Windows\System32\SensorsUtilsV2.dll 10.0.19041.4355 - Sensors v2 Utilities DLL � Microsoft Corporation. All rights reserved. -6cef0000 <RAW> : C:\Windows\System32\netprofm.dll 10.0.19041.4355 - Network List Manager � Microsoft Corporation. All rights reserved. -6d090000 <RAW> : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\X86\MpOav.dll 4.18.25030.2 - IOfficeAntiVirus Module � Microsoft Corporation. All rights reserved. -6d120000 <RAW> : C:\Windows\system32\amsi.dll 10.0.19041.4355 - Anti-Malware Scan Interface � Microsoft Corporation. All rights reserved. -6d550000 <RAW> : C:\Windows\SYSTEM32\UMPDC.dll -6d560000 <RAW> : C:\Windows\SYSTEM32\powrprof.dll 10.0.19041.3636 - Power Profile Helper DLL � Microsoft Corporation. All rights reserved. -6ed00000 <RAW> : C:\Windows\System32\npmproxy.dll 10.0.19041.3636 - Network List Manager Proxy � Microsoft Corporation. All rights reserved. -6ed80000 <RAW> : C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.19041.5369_none_d9518ab7e1044dec\gdiplus.dll 10.0.19041.5369 - Microsoft GDI+ � Microsoft Corporation. All rights reserved. -6eef0000 <RAW> : C:\Windows\SYSTEM32\oledlg.dll 10.0.19041.4355 - OLE User Interface Support � Microsoft Corporation. All rights reserved. -6efa0000 <RAW> : C:\Windows\system32\Oleacc.dll 7.2.19041.3636 - Active Accessibility Core Component � Microsoft Corporation. All rights reserved. -6f080000 <RAW> : C:\Windows\System32\ShellCommonCommonProxyStub.dll 10.0.19041.5737 - ShellCommon Common Proxy Stub � Microsoft Corporation. All rights reserved. -6f3c0000 <RAW> : C:\Windows\System32\wups.dll 10.0.19041.4597 - Windows Update client proxy stub � Microsoft Corporation. All rights reserved. -6f3e0000 <RAW> : C:\Windows\SYSTEM32\ondemandconnroutehelper.dll 10.0.19041.4355 - On Demand Connctiond Route Helper � Microsoft Corporation. All rights reserved. -6f400000 <RAW> : C:\Windows\SYSTEM32\cscapi.dll 10.0.19041.3636 - Offline Files Win32 API � Microsoft Corporation. All rights reserved. -6f470000 <RAW> : C:\Windows\SYSTEM32\srvcli.dll 10.0.19041.3636 - Server Service Client DLL � Microsoft Corporation. All rights reserved. -6f490000 <RAW> : C:\Windows\system32\pdh.dll 10.0.19041.5072 - Windows Performance Data Helper DLL � Microsoft Corporation. All rights reserved. -6f4e0000 <RAW> : C:\Windows\System32\ActXPrxy.dll 10.0.19041.3758 - ActiveX Interface Marshaling Library � Microsoft Corporation. All rights reserved. -6f530000 <RAW> : C:\Windows\SYSTEM32\SspiCli.dll 10.0.19041.4239 - Security Support Provider Interface � Microsoft Corporation. All rights reserved. -6f560000 <RAW> : C:\Windows\SYSTEM32\LINKINFO.dll 10.0.19041.3636 - Windows Volume Tracking � Microsoft Corporation. All rights reserved. -6f570000 <RAW> : C:\Windows\SYSTEM32\netutils.dll 10.0.19041.3636 - Net Win32 API Helpers DLL � Microsoft Corporation. All rights reserved. -6f580000 <RAW> : C:\Windows\system32\wshunix.dll 10.0.19041.5438 - AF_UNIX Winsock2 Helper DLL � Microsoft Corporation. All rights reserved. -6f690000 <RAW> : C:\Windows\System32\OneCoreCommonProxyStub.dll 10.0.19041.4597 - OneCore Common Proxy Stub � Microsoft Corporation. All rights reserved. -6f6d0000 <RAW> : C:\Windows\system32\twinapi.dll 10.0.19041.4355 - twinapi � Microsoft Corporation. All rights reserved. -6f760000 <RAW> : C:\Windows\system32\es.dll 2001.12.10941.16384 - COM+ � Microsoft Corporation. All rights reserved. -6f7c0000 <RAW> : C:\Windows\system32\mlang.dll 10.0.19041.3636 - Multi Language Support DLL � Microsoft Corporation. All rights reserved. -6f800000 <RAW> : C:\Windows\SYSTEM32\TextShaping.dll -6f8a0000 <RAW> : C:\Windows\SYSTEM32\QUARTZ.dll 10.0.19041.3636 - DirectShow Runtime. � Microsoft Corporation. All rights reserved. -6fa40000 <RAW> : C:\Windows\SYSTEM32\profapi.dll 10.0.19041.5553 - User Profile Basic API � Microsoft Corporation. All rights reserved. -6ff70000 <RAW> : C:\Windows\System32\winrnr.dll 10.0.19041.3636 - LDAP RnR Provider DLL � Microsoft Corporation. All rights reserved. -6ff80000 <RAW> : C:\Windows\SYSTEM32\DNSAPI.dll 10.0.19041.5369 - DNS Client API DLL � Microsoft Corporation. All rights reserved. -70010000 <RAW> : C:\Windows\system32\NLAapi.dll 10.0.19041.3636 - Network Location Awareness 2 � Microsoft Corporation. All rights reserved. -70030000 <RAW> : C:\Windows\system32\wshbth.dll 10.0.19041.3636 - Windows Sockets Helper DLL � Microsoft Corporation. All rights reserved. -70040000 <RAW> : C:\Windows\system32\pnrpnsp.dll 10.0.19041.3636 - PNRP Name Space Provider � Microsoft Corporation. All rights reserved. -70060000 <RAW> : C:\Windows\system32\napinsp.dll 10.0.19041.3636 - E-mail Naming Shim Provider � Microsoft Corporation. All rights reserved. -70080000 <RAW> : C:\Windows\system32\dwrite.dll 10.0.19041.5678 - Microsoft DirectX Typography Services � Microsoft Corporation. All rights reserved. -702e0000 <RAW> : C:\Windows\System32\twinapi.appcore.dll 10.0.19041.4597 - twinapi.appcore � Microsoft Corporation. All rights reserved. -70480000 <RAW> : C:\Windows\system32\dxgi.dll 10.0.19041.5438 - DirectX Graphics Infrastructure � Microsoft Corporation. All rights reserved. -70550000 <RAW> : C:\Windows\system32\dcomp.dll 10.0.19041.5737 - Microsoft DirectComposition Library � Microsoft Corporation. All rights reserved. -706c0000 <RAW> : C:\Windows\system32\d3d11.dll 10.0.19041.4355 - Direct3D 11 Runtime � Microsoft Corporation. All rights reserved. -708a0000 <RAW> : C:\Windows\system32\dataexchange.dll 10.0.19041.4355 - Data exchange � Microsoft Corporation. All rights reserved. -708e0000 <RAW> : C:\Windows\SYSTEM32\Wldp.dll 10.0.19041.5737 - Windows Lockdown Policy � Microsoft Corporation. All rights reserved. -70910000 <RAW> : C:\Windows\SYSTEM32\windows.storage.dll 10.0.19041.5678 - Microsoft WinRT Storage API � Microsoft Corporation. All rights reserved. -70f30000 <RAW> : C:\Windows\system32\dwmapi.dll 10.0.19041.5737 - Microsoft Desktop Window Manager API � Microsoft Corporation. All rights reserved. -71220000 <RAW> : C:\Windows\system32\msimg32.dll 10.0.19041.3636 - GDIEXT Client DLL � Microsoft Corporation. All rights reserved. -71390000 <RAW> : C:\Windows\SYSTEM32\ntmarta.dll 10.0.19041.3636 - Windows NT MARTA provider � Microsoft Corporation. All rights reserved. -713c0000 <RAW> : C:\Windows\SYSTEM32\kernel.appcore.dll 10.0.19041.3758 - AppModel API Host � Microsoft Corporation. All rights reserved. -713d0000 <RAW> : C:\Windows\System32\CoreUIComponents.dll 10.0.19041.3636 - Microsoft Core UI Components Dll � Microsoft Corporation. All rights reserved. -71650000 <RAW> : C:\Windows\System32\CoreMessaging.dll 10.0.19041.5486 - Microsoft CoreMessaging Dll � Microsoft Corporation. All rights reserved. -716f0000 <RAW> : C:\Windows\SYSTEM32\PROPSYS.dll 7.0.19041.5369 - Microsoft Property System � Microsoft Corporation. All rights reserved. -717c0000 <RAW> : C:\Windows\SYSTEM32\wintypes.dll 10.0.19041.5369 - Windows Base Types DLL � Microsoft Corporation. All rights reserved. -74090000 <RAW> : C:\Windows\SYSTEM32\iphlpapi.dll 10.0.19041.3636 - IP Helper API � Microsoft Corporation. All rights reserved. -740d0000 <RAW> : C:\Windows\SYSTEM32\WINMM.dll 10.0.19041.3636 - MCI API DLL � Microsoft Corporation. All rights reserved. -74ed0000 <RAW> : C:\Windows\SYSTEM32\CRYPTBASE.dll 10.0.19041.3636 - Base cryptographic API DLL � Microsoft Corporation. All rights reserved. -74ee0000 <RAW> : C:\Windows\system32\uxtheme.dll 10.0.19041.5247 - Microsoft UxTheme Library � Microsoft Corporation. All rights reserved. -74f60000 <RAW> : C:\Windows\system32\wininet.dll 11.0.19041.5438 - Internet Extensions for Win32 � Microsoft Corporation. All rights reserved. -75470000 <RAW> : C:\Windows\SYSTEM32\MSASN1.dll 10.0.19041.3636 - ASN.1 Runtime APIs � Microsoft Corporation. All rights reserved. -754b0000 <RAW> : C:\Windows\system32\mswsock.dll 10.0.19041.5553 - Microsoft Windows Sockets 2.0 Service Provider � Microsoft Corporation. All rights reserved. -75520000 <RAW> : C:\Windows\SYSTEM32\VERSION.dll 10.0.19041.3636 - Version Checking and File Installation Libraries � Microsoft Corporation. All rights reserved. -75530000 <RAW> : C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.4355_none_a865f0c28672571c\COMCTL32.dll 6.10.19041.4355 - User Experience Controls Library � Microsoft Corporation. All rights reserved. -75750000 <RAW> : C:\Windows\SYSTEM32\USERENV.dll 10.0.19041.4355 - Userenv � Microsoft Corporation. All rights reserved. -75810000 <RAW> : C:\Windows\System32\WS2_32.dll 10.0.19041.3636 - Windows Socket 2.0 32-Bit DLL � Microsoft Corporation. All rights reserved. -75880000 <RAW> : C:\Windows\System32\SHELL32.dll 10.0.19041.5678 - Windows Shell Common Dll � Microsoft Corporation. All rights reserved. -75e60000 <RAW> : C:\Windows\System32\KERNEL32.DLL 10.0.19041.5678 - Windows NT BASE API Client DLL � Microsoft Corporation. All rights reserved. -75fb0000 <RAW> : C:\Windows\System32\SETUPAPI.dll 10.0.19041.5369 - Windows Setup API � Microsoft Corporation. All rights reserved. -763f0000 <RAW> : C:\Windows\System32\ucrtbase.dll 10.0.19041.3636 - Microsoft� C Runtime Library � Microsoft Corporation. All rights reserved. -76510000 <RAW> : C:\Windows\System32\imagehlp.dll 10.0.19041.3636 - Windows NT Image Helper � Microsoft Corporation. All rights reserved. -76530000 <RAW> : C:\Windows\System32\normaliz.dll 10.0.19041.3636 - Unicode Normalization DLL � Microsoft Corporation. All rights reserved. -76540000 <RAW> : C:\Windows\System32\NSI.dll 10.0.19041.5438 - NSI User-mode interface DLL � Microsoft Corporation. All rights reserved. -76550000 <RAW> : C:\Windows\System32\CRYPT32.dll 10.0.19041.5737 - Crypto API32 � Microsoft Corporation. All rights reserved. -76650000 <RAW> : C:\Windows\System32\OLEAUT32.dll 10.0.19041.3636 - OLEAUT32.DLL � Microsoft Corporation. All rights reserved. -766f0000 <RAW> : C:\Windows\System32\ole32.dll 10.0.19041.5369 - Microsoft OLE for Windows � Microsoft Corporation. All rights reserved. -76840000 <RAW> : C:\Windows\System32\MSCTF.dll 10.0.19041.5678 - MSCTF Server DLL � Microsoft Corporation. All rights reserved. -769c0000 <RAW> : C:\Windows\System32\cfgmgr32.dll 10.0.19041.3996 - Configuration Manager DLL � Microsoft Corporation. All rights reserved. -76a00000 <RAW> : C:\Windows\System32\sechost.dll 10.0.19041.5737 - Host for SCM/SDDL/LSA Lookup APIs � Microsoft Corporation. All rights reserved. -76a80000 <RAW> : C:\Windows\System32\win32u.dll 10.0.19041.5737 - Win32u � Microsoft Corporation. All rights reserved. -76aa0000 <RAW> : C:\Windows\System32\SHLWAPI.dll 10.0.19041.4355 - Shell Light-weight Utility Library � Microsoft Corporation. All rights reserved. -76af0000 <RAW> : C:\Windows\System32\clbcatq.dll 2001.12.10941.16384 - COM+ Configuration Catalog � Microsoft Corporation. All rights reserved. -76b70000 <RAW> : C:\Windows\System32\msvcrt.dll 7.0.19041.3636 - Windows NT CRT DLL � Microsoft Corporation. All rights reserved. -76c30000 <RAW> : C:\Windows\System32\bcrypt.dll 10.0.19041.5438 - Windows Cryptographic Primitives Library � Microsoft Corporation. All rights reserved. -76dc0000 <RAW> : C:\Windows\System32\gdi32full.dll 10.0.19041.5737 - GDI Client DLL � Microsoft Corporation. All rights reserved. -76eb0000 <RAW> : C:\Windows\System32\RPCRT4.dll 10.0.19041.5438 - Remote Procedure Call Runtime � Microsoft Corporation. All rights reserved. -76f70000 <RAW> : C:\Windows\System32\GDI32.dll 10.0.19041.5737 - GDI Client DLL � Microsoft Corporation. All rights reserved. -76fa0000 <RAW> : C:\Windows\System32\KERNELBASE.dll 10.0.19041.5737 - Windows NT BASE API Client DLL � Microsoft Corporation. All rights reserved. -771e0000 <RAW> : C:\Windows\System32\combase.dll 10.0.19041.5369 - Microsoft COM for Windows � Microsoft Corporation. All rights reserved. -774d0000 <RAW> : C:\Windows\System32\USER32.dll 10.0.19041.5737 - Multi-User Windows USER API Client DLL � Microsoft Corporation. All rights reserved. -77670000 <RAW> : C:\Windows\System32\comdlg32.dll 10.0.19041.4355 - Common Dialogs DLL � Microsoft Corporation. All rights reserved. -77720000 <RAW> : C:\Windows\System32\msvcp_win.dll 10.0.19041.3636 - Microsoft� C Runtime Library � Microsoft Corporation. All rights reserved. -777a0000 <RAW> : C:\Windows\System32\IMM32.DLL 10.0.19041.5737 - Multi-User Windows IMM32 API Client DLL � Microsoft Corporation. All rights reserved. -777d0000 <RAW> : C:\Windows\System32\bcryptPrimitives.dll 10.0.19041.5438 - Windows Cryptographic Primitives Library � Microsoft Corporation. All rights reserved. -77830000 <RAW> : C:\Windows\System32\ADVAPI32.dll 10.0.19041.5737 - Advanced Windows 32 Base API � Microsoft Corporation. All rights reserved. -778b0000 <RAW> : C:\Windows\System32\shcore.dll 10.0.19041.5678 - SHCORE � Microsoft Corporation. All rights reserved. ==> -779b0000 <RAW> : C:\Windows\SYSTEM32\ntdll.dll 10.0.19041.5737 - NT Layer DLL � Microsoft Corporation. All rights reserved. Registers: EAX 0e6cf2c8 EBX 00d80200 ECX 0e6cf2f8 EDX 77ad3960 ESI 00000002 EDI 0b8e6f00 DS 002b ES 002b FS 0053 GS 002b SS/ESP/EBP 002b/0e6cf2a0/0e6cf2d8 CS/EIP 0023/77a96d23 EFlags 00000246 (Parity,Zero,Interrupt) Stack Dump: 04aeb2ac 0b8e6f00 00000002 00d80200 00000000 00000000 00000000 00000000 0e6cf2a0 00000000 0e6cf35c 77a2b570 7d69962c 00000000 0e6cf36c 77a96cfb 04aeb318 0b8e6f00 00000002 00d80200 77ad3960 c0000374 c0000374 00000001 00000000 77a96d23 00000001 77ad3960 00000000 00000000 0000001d 0e6cf344 0e6d0000 00000000 0000001d 0e6cf300 00000000 0e6cf398 77a2b570 7d6986a4 fffffffe 0e6cf368 77a0c591 77ad3990 04aeb318 0e6cf2e0 00000002 0e6cf398 77a2b570 7d69960c fffffffe 0e6cf3a8 77a9fdc4 00000001 77ad3990 77a9dcb9 04aeb3dc 0b8e6f00 0b8e6f08 00d80200 0e6cf380 00000000 0e6cf4dc 77a2b570 CallStack Trace: 00 : 77a96d23/000e5d23 <RAW> [04aeb318,0b8e6f00,00000002,00d80200] @ ntdll.dll (RtlIsZeroMemory->0xf3) 01 : 77a96cfb/000e5cfb <RAW> [00000001,77ad3990,77a9dcb9,04aeb3dc] @ ntdll.dll (RtlIsZeroMemory->0xcb) 02 : 77a9fdc4/000eedc4 <RAW> [00000008,00d80100,0b8e6f08,00000000] @ ntdll.dll (RtlpNtSetValueKey->0x27c4) 03 : 77aa6130/000f5130 <RAW> [0b8e6f08,0b8e6f00,00000000,00000000] @ ntdll.dll (RtlpNtSetValueKey->0x8b30) 04 : 77aaf785/000fe785 <RAW> [0b8e6f08,00000000,0e6cf410,00d80000] @ ntdll.dll (RtlpNtSetValueKey->0x12185) 05 : 77aabbd9/000fabd9 <RAW> [00000000,0b8e6f08,00d80000,00000000] @ ntdll.dll (RtlpNtSetValueKey->0xe5d9) 06 : 77aa8938/000f7938 <RAW> [00000000,00000000,00000000,0b8e6f08] @ ntdll.dll (RtlpNtSetValueKey->0xb338) 07 : 77a37ad5/00086ad5 <RAW> [00000000,00000000,00000000,04aeb498] @ ntdll.dll (RtlGetNtGlobalFlags->0x65) 08 : 77a7d6b4/000cc6b4 <RAW> [00000000,00000000,0b8e6f08,0e6cf548] @ ntdll.dll (RtlImageRvaToVa->0x104) 09 : 77a46b0e/00095b0e <RAW> [00d80000,00000000,0b8e6f08,00000000] @ ntdll.dll (RtlCaptureStackContext->0xd5ce) 10 : 008b27c0/004b17c0 <RAW> [0b8e6f08,0e6cf568,006df64d,0b8e6f08] @ ssp.exe (free 008b2736 f libcmt:free.obj->0x8a) 11 : 004c8ad0/000c7ad0 <RAW> [0b8e6f08,009c8aa8,00000367,0e6cf580] @ ssp.exe (JSocketManager::InitSSL->0x980) 12 : 006df64d/002de64d <RAW> [0b8e6f08,009c8aa8,00000367,0b8e6f08] @ ssp.exe (OBJ_obj2txt 006df430 f libcrypto_a:libcrypto-lib-obj_dat.obj->0x21d) 13 : 006df68a/002de68a <RAW> [0b8e6f08,00000320,009c8aa8,00000367] @ ssp.exe (OBJ_obj2txt 006df430 f libcrypto_a:libcrypto-lib-obj_dat.obj->0x25a) 14 : 008521f0/004511f0 <RAW> [0b8e6f08,034b1c68,034b1c68,00000000] @ ssp.exe (SSL_set_session 008521e0 f libssl_a:libssl-lib-ssl_sess.obj->0x10) 15 : 004ccc2b/000cbc2b <RAW> [0b8d5918,00000001,00000000,034b1c68] @ ssp.exe (JSocket::ProcessX509Info->0x1eb) 16 : 004ccb85/000cbb85 <RAW> [0b8d5918,00000001,00000000,0b8d5918] @ ssp.exe (JSocket::ProcessX509Info->0x145) 17 : 004cd4b9/000cc4b9 <RAW> [0b8d5918,00000000,00000001,00000000] @ ssp.exe (JSocket::SSLProcessAfterConnect->0x179) 18 : 004ca548/000c9548 <RAW> [00941240,00000006,00000000,00000000] @ ssp.exe (JSocket::ConnectSOCKS->0xb8) 19 : 004cb802/000ca802 <RAW> [00941240,00000006,034b1c68,034b1b00] @ ssp.exe (JSocket::SendTo->0x102) 20 : 004cb7ac/000ca7ac <RAW> [00941240,034b1c68,034b1b00,00596ba3] @ ssp.exe (JSocket::SendTo->0xac) 21 : 005953d9/001943d9 <RAW> [0340a290,034b1b00,0e6cfef0,005981fb] @ ssp.exe (SPPopAccount::GetMailUIDL->0xc9) 22 : 005967cb/001957cb <RAW> [034c5020,0340a290,03485f08,00000000] @ ssp.exe (SPPopAccount::CheckMailMain->0x17b) 23 : 005981fb/001971fb <RAW> [03485f08,75e7ea50,03489148,00000001] @ ssp.exe (SPPop::LoopMain->0x52b) 24 : 00597e43/00196e43 <RAW> [008b6e19,0b8b3f30,0b8b3f30,00000000] @ ssp.exe (SPPop::LoopMain->0x173) 25 : 004da277/000d9277 <RAW> [03485ef8,008b6e19,008b6e19,0b8b3f30] @ ssp.exe (JWinThread::PostQueue->0x27) 26 : 008b6ea2/004b5ea2 <RAW> [0b8b3f30,75e7fcb0,0e6cffdc,77a182ae] @ ssp.exe (_beginthreadex 008b6dfe f libcmt:threadex.obj->0xa4) 27 : 75e7fcc9/0000fcc9 <RAW> [0b8b3f30,04aebfa8,00000000,00000000] @ KERNEL32.DLL (BaseThreadInitThunk->0x19) 28 : 77a182ae/000672ae <RAW> [ffffffff,77a39335,00000000,00000000] @ ntdll.dll (RtlGetAppContainerNamedObjectPath->0x11e) 29 : 77a1827e/0006727e <RAW> [008b6e19,0b8b3f30,00000000,00905a4d] @ ntdll.dll (RtlGetAppContainerNamedObjectPath->0xee) Total StackDepth : 30 STACKTRC_02.TXT (76,877 bytes)
SPDebugger/2.17.24106.A Exception Raised at 77a96d23 because HEAP_CORRUPTION (#c0000374) Windows NT 10.0.19045 UAC: Enabled,Limited Time: 2025/4/11 16:16:25.568 Phys.Mem: 17408/32693MB PageFile: 14905/37557MB CPU : AMD 0.23.8.7 3200MHz Features:MMX SSE HT AES-NI (AMD Ryzen 7 2700 Eight-Core Processor) Package:1 Node:1 Core:8 Thread:16 SSP/2.6.95 (20250401-5; Windows NT 10.0.19045) Volume Information: A:\ CD-ROM B:\ Fixed [ 506679MB Free | 1907625MB Total | 26%] (NTFS,Normal) C:\ Fixed [ 35169MB Free | 113832MB Total | 30%] (NTFS,Normal) D:\ Fixed [ 6735541MB Free | 7630867MB Total | 88%] (NTFS,Normal) E:\ Fixed [ 63MB Free | 99MB Total | 63%] (NTFS,Normal) G:\ Fixed [ 4265MB Free | 102400MB Total | 4%] (FAT32,Normal) Monitor Information: 0: \\.\DISPLAY1 - Work=0,0,1920,1040 Size=1920x1080 [PRIMARY] 1: \\.\DISPLAY2 - Work=-1920,0,0,1040 Size=1920x1080 2: \\.\DISPLAY3 - Work=1920,0,3840,1040 Size=1920x1080 Env. Variables: =::=::\ ALLUSERSPROFILE=C:\ProgramData APPDATA=C:\Users\Zichqec\AppData\Roaming CommonProgramFiles=C:\Program Files (x86)\Common Files CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files CommonProgramW6432=C:\Program Files\Common Files COMPUTERNAME=DESKTOP-GJS901G ComSpec=C:\Windows\system32\cmd.exe DriverData=C:\Windows\System32\Drivers\DriverData FPS_BROWSER_APP_PROFILE_STRING=Internet Explorer FPS_BROWSER_USER_PROFILE_STRING=Default HOMEDRIVE=C: HOMEPATH=\Users\Zichqec LOCALAPPDATA=C:\Users\Zichqec\AppData\Local LOGONSERVER=\\DESKTOP-GJS901G NUMBER_OF_PROCESSORS=16 OneDrive=C:\Users\Zichqec\OneDrive OS=Windows_NT Path=D:\SSP\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Users\Zichqec\AppData\Local\Microsoft\WindowsApps;C:\Users\Zichqec\AppData\Local\GitHubDesktop\bin;C:\Users\Zichqec\AppData\Roaming\Programs\Zero Install PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE=x86 PROCESSOR_ARCHITEW6432=AMD64 PROCESSOR_IDENTIFIER=AMD64 Family 23 Model 8 Stepping 2, AuthenticAMD PROCESSOR_LEVEL=23 PROCESSOR_REVISION=0802 ProgramData=C:\ProgramData ProgramFiles=C:\Program Files (x86) ProgramFiles(x86)=C:\Program Files (x86) ProgramW6432=C:\Program Files PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\Windows\system32\WindowsPowerShell\v1.0\Modules PUBLIC=C:\Users\Public SESSIONNAME=Console SystemDrive=C: SystemRoot=C:\Windows TEMP=C:\Users\Zichqec\AppData\Local\Temp TMP=C:\Users\Zichqec\AppData\Local\Temp USERDOMAIN=DESKTOP-GJS901G USERDOMAIN_ROAMINGPROFILE=DESKTOP-GJS901G USERNAME=Zichqec USERPROFILE=C:\Users\Zichqec windir=C:\Windows Loaded Drivers: -22800000 : win32kbase.sys -22d60000 : win32k.sys -23650000 : win32kfull.sys -23a10000 : cdd.dll -409f0000 : mcupdate_AuthenticAMD.dll -40a20000 : hal.dll -40a30000 : kd.dll -40a40000 : tm.sys -40a70000 : CLFS.SYS -40ae0000 : PSHED.dll -40b00000 : BOOTVID.dll -40b10000 : clipsp.sys -40c30000 : FLTMGR.SYS -40ca0000 : ksecdd.sys -40cd0000 : msrpc.sys -40d40000 : cmimcext.sys -40d60000 : werkernel.sys -40d80000 : ntosext.sys -40d90000 : WDFLDR.SYS -40db0000 : SleepStudyHelper.sys -40dc0000 : WppRecorder.sys -40de0000 : msseccore.sys -44800000 : ntoskrnl.exe -46200000 : CI.dll -462f0000 : cng.sys -463b0000 : Wdf01000.sys -46490000 : acpiex.sys -464c0000 : SgrmAgent.sys -464e0000 : ACPI.sys -465b0000 : WMILIB.SYS -465d0000 : intelpep.sys -46640000 : WindowsTrustedRT.sys -46660000 : IntelTA.sys -46670000 : WindowsTrustedRTProxy.sys -46680000 : pcw.sys -466a0000 : msisadrv.sys -466b0000 : pci.sys -46730000 : vdrvroot.sys -46750000 : pdc.sys -46790000 : CEA.sys -467b0000 : partmgr.sys -467f0000 : spaceport.sys -468a0000 : volmgr.sys -468c0000 : volmgrx.sys -46930000 : mountmgr.sys -46950000 : storahci.sys -46990000 : EhStorClass.sys -469b0000 : fileinfo.sys -469d0000 : Fs_Rec.sys -469e0000 : volume.sys -46a00000 : storport.sys -46ac0000 : Wof.sys -46b10000 : WdFilter.sys -46bb0000 : ndis.sys -46d20000 : NETIO.SYS -46dc0000 : ksecpkg.sys -46e00000 : Ntfs.sys -470e0000 : tcpip.sys -473d0000 : fwpkclnt.sys -47450000 : wfplwfs.sys -47490000 : fvevol.sys -47560000 : volsnap.sys -475d0000 : rdyboost.sys -47630000 : mup.sys -47660000 : iorate.sys -476a0000 : disk.sys -476c0000 : CLASSPNP.SYS -520d0000 : cdrom.sys -52110000 : filecrypt.sys -52130000 : tbs.sys -52140000 : UCPD.sys -52160000 : Null.SYS -52170000 : Beep.SYS -52180000 : dxgkrnl.sys -52530000 : watchdog.sys -52550000 : BasicDisplay.sys -52570000 : BasicRender.sys -52590000 : Npfs.SYS -525d0000 : crashdmp.sys -53400000 : netbt.sys -53460000 : afunix.sys -53480000 : afd.sys -53530000 : vwififlt.sys -53550000 : pacer.sys -53580000 : ndiscap.sys -535a0000 : netbios.sys -535c0000 : Vid.sys -53670000 : winhvr.sys -536a0000 : rdbss.sys -53720000 : csc.sys -537c0000 : nsiproxy.sys -537e0000 : npsvctrig.sys -537f0000 : mssmbios.sys -53810000 : gpuenergydrv.sys -53820000 : dfsc.sys -53870000 : fastfat.SYS -538e0000 : bam.sys -53900000 : ahcache.sys -53960000 : amdxe.sys -53970000 : amdfendr.sys -539d0000 : CompositeBus.sys -539f0000 : kdnic.sys -53a00000 : amdsafd.sys -53a20000 : portcls.sys -53a90000 : drmk.sys -53ac0000 : ks.sys -53b40000 : ksthunk.sys -53b60000 : umbus.sys -53b80000 : USBXHCI.SYS -53c20000 : ucx01000.sys -53c70000 : rt640x64.sys -53d20000 : condrv.sys -53d40000 : KslD.sys -53da0000 : WdNisDrv.sys -54100000 : Msfs.SYS -54120000 : CimFS.SYS -54140000 : amdpsp.sys -54180000 : tdx.sys -541b0000 : TDI.SYS -67400000 : UsbHub3.sys -674b0000 : USBD.SYS -674c0000 : AtihdWT6.sys -67500000 : HdAudio.sys -67570000 : Nahimic_Mirroring.sys -67590000 : usbccgp.sys -675d0000 : hidusb.sys -675f0000 : HIDCLASS.SYS -67640000 : HIDPARSE.SYS -67660000 : mouhid.sys -67680000 : mouclass.sys -676a0000 : kbdhid.sys -676c0000 : kbdclass.sys -676e0000 : usbaudio.sys -67720000 : wachidrouter.sys -67740000 : mshidkmdf.sys -67750000 : wacomrouterfilter.sys -67770000 : dump_diskdump.sys -677c0000 : dump_storahci.sys -67820000 : dump_dumpfve.sys -67840000 : dxgmms2.sys -67920000 : monitor.sys -67940000 : luafv.sys -67970000 : wcifs.sys -679b0000 : cldflt.sys -67a40000 : storqosflt.sys -67a60000 : bindflt.sys -67a90000 : mslldp.sys -67ab0000 : msquic.sys -67b10000 : HTTP.sys -67ca0000 : lltdio.sys -67cc0000 : wanarp.sys -67ce0000 : rspndr.sys -67d00000 : bowser.sys -67d30000 : mpsdrv.sys -67d50000 : mrxsmb.sys -67df0000 : mrxsmb20.sys -67e40000 : AMDRyzenMasterDriver.sys -67e80000 : googledrivefs31626.sys -67ef0000 : srvnet.sys -67f50000 : mmcss.sys -67f70000 : Ndu.sys -67fa0000 : peauth.sys -68080000 : tcpipreg.sys -680a0000 : srv2.sys -68170000 : rassstp.sys -68190000 : NDProxy.sys -681b0000 : cdfs.sys -681d0000 : AgileVpn.sys -68200000 : rasl2tp.sys -68230000 : raspptp.sys -68260000 : raspppoe.sys -68280000 : amdkmdag.sys -6e830000 : HDAudBus.sys -6e860000 : AMDPCIDev.sys -6e870000 : parport.sys -6e890000 : serial.sys -6e8b0000 : serenum.sys -6e8c0000 : amdgpio2.sys -6e8d0000 : msgpioclx.sys -6e910000 : wmiacpi.sys -6e920000 : amdppm.sys -6e960000 : amdgpio3.sys -6e970000 : amdfendrmgr.sys -6e980000 : NdisVirtualBus.sys -6e990000 : swenum.sys -6e9a0000 : rdpbus.sys -6e9b0000 : ndistapi.sys -6e9c0000 : ndiswan.sys Executing Processes: [With ToolHelp32] -00000000 : [System Process] (16 Threads.) -00000004 : System (257 Threads.) -000000ac : Registry (4 Threads.) -00000208 : smss.exe (2 Threads.) -000002d8 : csrss.exe (12 Threads.) -000003c4 : wininit.exe (1 Threads.) -000003cc : csrss.exe (15 Threads.) -00000290 : services.exe (7 Threads.) -000002b0 : winlogon.exe (7 Threads.) -00000300 : lsass.exe (11 Threads.) -0000045c : svchost.exe (23 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000478 : fontdrvhost.exe (5 Threads.) 10.0.19041.5369 - Usermode Font Driver Host � Microsoft Corporation. All rights reserved. -00000480 : fontdrvhost.exe (5 Threads.) 10.0.19041.5369 - Usermode Font Driver Host � Microsoft Corporation. All rights reserved. -000004d8 : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000050c : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000588 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000005b4 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000005b8 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000005f8 : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000060c : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000630 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000006a8 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000006b0 : dwm.exe (28 Threads.) -0000070c : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000728 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000076c : amdfendrsr.exe (4 Threads.) -00000774 : atiesrxx.exe (8 Threads.) -000007b0 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000007d0 : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000280 : svchost.exe (9 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000081c : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000828 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000830 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000838 : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000008f4 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000910 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000918 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000930 : Memory Compression (126 Threads.) -00000968 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000009b0 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000009e8 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000a54 : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000acc : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000b3c : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000b68 : svchost.exe (15 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000b9c : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000a0c : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000a88 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000c34 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000c44 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000cac : spoolsv.exe (14 Threads.) -00000cd0 : svchost.exe (13 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000cfc : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000d64 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dc4 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dd0 : svchost.exe (11 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000ddc : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000de4 : svchost.exe (17 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dec : svchost.exe (7 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000df4 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000dfc : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e04 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e0c : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e14 : escsvc64.exe (2 Threads.) -00000e58 : NahimicService.exe (14 Threads.) -00000e98 : BtwRSupportService.exe (3 Threads.) -00000ecc : WTabletServicePro.exe (4 Threads.) -00000edc : MsMpEng.exe (62 Threads.) -00000ee8 : svchost.exe (21 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000f04 : MpDefenderCoreService.exe (9 Threads.) -00000fc8 : dasHost.exe (3 Threads.) -0000100c : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000010a8 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000010d8 : svchost.exe (12 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000012a0 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001410 : dasHost.exe (1 Threads.) -0000158c : dllhost.exe (4 Threads.) 10.0.19041.3636 - COM Surrogate � Microsoft Corporation. All rights reserved. -000015bc : SearchIndexer.exe (15 Threads.) 7.0.19041.5438 - Microsoft Windows Search Indexer � Microsoft Corporation. All rights reserved. -00001694 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000424 : AggregatorHost.exe (4 Threads.) -00001bac : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001898 : NisSrv.exe (11 Threads.) -00001b8c : atieclxx.exe (15 Threads.) -000016a8 : svchost.exe (9 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000019c0 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001b28 : svchost.exe (10 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001b38 : sihost.exe (11 Threads.) -00001b10 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000e50 : taskhostw.exe (8 Threads.) -000016a4 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001c9c : explorer.exe (242 Threads.) 10.0.19041.5678 - Windows Explorer � Microsoft Corporation. All rights reserved. -00001cb4 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001ee8 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001f90 : svchost.exe (11 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002054 : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002188 : StartMenuExperienceHost.exe (8 Threads.) -000021d4 : svchost.exe (6 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002288 : RuntimeBroker.exe (2 Threads.) -0000235c : SearchApp.exe (84 Threads.) -00001d8c : RuntimeBroker.exe (7 Threads.) -00002688 : ctfmon.exe (12 Threads.) 10.0.19041.1 - CTF Loader � Microsoft Corporation. All rights reserved. -000026dc : TabTip.exe (7 Threads.) -00002500 : LockApp.exe (27 Threads.) -0000260c : RuntimeBroker.exe (4 Threads.) -00002918 : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000029ec : PhoneExperienceHost.exe (35 Threads.) -00002b3c : svchost.exe (2 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002b94 : Wacom_TabletUser.exe (4 Threads.) -00002bcc : Wacom_UpdateUtil.exe (6 Threads.) -00002bf0 : WacomHost.exe (1 Threads.) -00002954 : Wacom_Tablet.exe (55 Threads.) -00002bb4 : Wacom_TouchUser.exe (11 Threads.) -00002c9c : TextInputHost.exe (32 Threads.) -00002d48 : RuntimeBroker.exe (2 Threads.) -00002db4 : SecurityHealthSystray.exe (1 Threads.) -00002dd4 : SecurityHealthService.exe (6 Threads.) -00002e28 : OneDrive.exe (40 Threads.) -00002ccc : Discord.exe (55 Threads.) -00001e10 : steam.exe (34 Threads.) -00001de4 : GoogleDriveFS.exe (2 Threads.) -00001e54 : Discord.exe (7 Threads.) -00002b0c : E_YATIWBE.EXE (1 Threads.) -00002b18 : crashpad_handler.exe (6 Threads.) -00000608 : GoogleDriveFS.exe (125 Threads.) -00000780 : Discord.exe (67 Threads.) -00002ca8 : GoogleDriveFS.exe (36 Threads.) -0000085c : Discord.exe (16 Threads.) -00000960 : conhost.exe (4 Threads.) -00000c3c : GoogleDriveFS.exe (8 Threads.) -000009bc : GoogleDriveFS.exe (14 Threads.) -00000e44 : GoogleDriveFS.exe (12 Threads.) -00000c04 : GoogleDriveFS.exe (26 Threads.) -000031ac : steamwebhelper.exe (27 Threads.) -00003280 : steamservice.exe (4 Threads.) -000032e4 : steamwebhelper.exe (6 Threads.) -0000339c : steamwebhelper.exe (32 Threads.) -0000354c : EEventManager.exe (5 Threads.) -00003620 : CompPkgSrv.exe (1 Threads.) -000036ec : steamwebhelper.exe (14 Threads.) -00003578 : steamwebhelper.exe (6 Threads.) -00003344 : FUFAXRCV.exe (5 Threads.) -000010b4 : steamwebhelper.exe (17 Threads.) -000035e4 : RadeonSoftware.exe (93 Threads.) -000037f0 : notepad++.exe (24 Threads.) -0000381c : FUFAXSTM.exe (3 Threads.) -000038ec : firefox.exe (110 Threads.) -00003b04 : DeepL.exe (72 Threads.) -00003b4c : firefox.exe (181 Threads.) -00003bdc : firefox.exe (5 Threads.) -00003844 : RuntimeBroker.exe (1 Threads.) -00003bbc : CPUMetricsServer.exe (1 Threads.) -000033e0 : firefox.exe (27 Threads.) -000034c0 : firefox.exe (22 Threads.) -00003ccc : NhNotifSys.exe (4 Threads.) -00003440 : Discord.exe (58 Threads.) -00003ea8 : firefox.exe (29 Threads.) -00003f38 : firefox.exe (27 Threads.) -00003c94 : firefox.exe (29 Threads.) -00003e40 : firefox.exe (27 Threads.) -0000365c : firefox.exe (28 Threads.) -00003f4c : firefox.exe (29 Threads.) -00003ef4 : firefox.exe (29 Threads.) -00003c28 : firefox.exe (29 Threads.) -00004018 : firefox.exe (29 Threads.) -00004090 : firefox.exe (27 Threads.) -000040e4 : firefox.exe (29 Threads.) -00004150 : firefox.exe (27 Threads.) -000041b0 : firefox.exe (29 Threads.) -00004220 : firefox.exe (29 Threads.) -0000425c : Discord.exe (7 Threads.) -00004280 : firefox.exe (28 Threads.) -000042f0 : firefox.exe (28 Threads.) -00004324 : firefox.exe (29 Threads.) -00004398 : firefox.exe (27 Threads.) -000040fc : firefox.exe (30 Threads.) -000047a4 : firefox.exe (28 Threads.) -00004b08 : firefox.exe (28 Threads.) -00004b24 : firefox.exe (27 Threads.) -00004b6c : firefox.exe (29 Threads.) -00004718 : firefox.exe (29 Threads.) -00004c78 : firefox.exe (29 Threads.) -00004dd0 : firefox.exe (28 Threads.) -00004e14 : cncmd.exe (1 Threads.) -00004ea8 : firefox.exe (27 Threads.) -00004eb0 : cmd.exe (1 Threads.) 10.0.19041.4355 - Windows Command Processor � Microsoft Corporation. All rights reserved. -00004ec0 : conhost.exe (2 Threads.) -00004f5c : firefox.exe (31 Threads.) -00004f98 : firefox.exe (31 Threads.) -00004fec : firefox.exe (5 Threads.) -00004ee8 : firefox.exe (31 Threads.) -00005018 : firefox.exe (31 Threads.) -00005110 : firefox.exe (28 Threads.) -00005124 : AMDRSServ.exe (48 Threads.) -00005220 : firefox.exe (28 Threads.) -0000539c : firefox.exe (5 Threads.) -000055a0 : steamwebhelper.exe (19 Threads.) -00003bd4 : firefox.exe (31 Threads.) -00002878 : AMDRSSrcExt.exe (26 Threads.) -0000248c : amdow.exe (23 Threads.) -000033a8 : firefox.exe (5 Threads.) -00001aa8 : firefox.exe (28 Threads.) -0000596c : firefox.exe (27 Threads.) -00005a80 : firefox.exe (28 Threads.) -00005b0c : firefox.exe (28 Threads.) -00003730 : CefSharp.BrowserSubprocess.exe (36 Threads.) -00005a6c : CefSharp.BrowserSubprocess.exe (22 Threads.) -00002c80 : CefSharp.BrowserSubprocess.exe (14 Threads.) -00003314 : CefSharp.BrowserSubprocess.exe (18 Threads.) -0000583c : CefSharp.BrowserSubprocess.exe (31 Threads.) -00001e84 : svchost.exe (8 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00005154 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000039e8 : ApplicationFrameHost.exe (2 Threads.) -000056b4 : CalculatorApp.exe (31 Threads.) -00002a7c : RuntimeBroker.exe (1 Threads.) -00001b00 : UserOOBEBroker.exe (3 Threads.) -00002dac : svchost.exe (5 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000021d0 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00001c90 : FileCoAuth.exe (3 Threads.) -00002c94 : svchost.exe (11 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -0000155c : ShellExperienceHost.exe (36 Threads.) -000026ec : RuntimeBroker.exe (4 Threads.) -00000b28 : svchost.exe (1 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -000046fc : firefox.exe (33 Threads.) -00002820 : firefox.exe (27 Threads.) -00001934 : svchost.exe (3 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00003f34 : sai2.exe (20 Threads.) -000002a4 : firefox.exe (28 Threads.) -00000a5c : firefox.exe (30 Threads.) -00002768 : dllhost.exe (5 Threads.) 10.0.19041.3636 - COM Surrogate � Microsoft Corporation. All rights reserved. -000039dc : explorer.exe (20 Threads.) 10.0.19041.5678 - Windows Explorer � Microsoft Corporation. All rights reserved. -0000230c : GitHubDesktop.exe (39 Threads.) -0000153c : GitHubDesktop.exe (68 Threads.) -00005774 : GitHubDesktop.exe (15 Threads.) -00000294 : GitHubDesktop.exe (35 Threads.) -00004b7c : firefox.exe (27 Threads.) -00001ffc : audiodg.exe (6 Threads.) -000014ac : firefox.exe (28 Threads.) -00003af0 : firefox.exe (28 Threads.) -00003cd8 : firefox.exe (27 Threads.) -00004804 : firefox.exe (29 Threads.) -00002774 : ssp.exe (67 Threads.) 2.6.95.3000 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ -00001244 : 7zFM.exe (2 Threads.) -00002654 : notepad.exe (1 Threads.) 10.0.19041.1 - Notepad � Microsoft Corporation. All rights reserved. -000052b8 : smartscreen.exe (8 Threads.) -000004bc : firefox.exe (28 Threads.) -00000b04 : svchost.exe (4 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00002fc0 : backgroundTaskHost.exe (7 Threads.) 10.0.19041.3636 - Background Task Host � Microsoft Corporation. All rights reserved. -00001abc : RuntimeBroker.exe (4 Threads.) -00000f18 : WmiPrvSE.exe (7 Threads.) 10.0.19041.3636 - WMI Provider Host � Microsoft Corporation. All rights reserved. -00002560 : firefox.exe (32 Threads.) -00005958 : svchost.exe (8 Threads.) 10.0.19041.4355 - Host Process for Windows Services � Microsoft Corporation. All rights reserved. -00000760 : firefox.exe (32 Threads.) ==> -000024c4 : ssp.exe (23 Threads.) 2.6.95.3000 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ Executing Threads: [With ToolHelp32] -00000f10 : 8(0) -00001588 : 8(0) -00004778 : 8(0) -000035f0 : 8(0) -00001488 : 8(0) -00003840 : 8(0) -000017a4 : 8(0) -000028cc : 8(0) -000028b8 : 8(0) -00001998 : 8(0) -000005d4 : 9(0) -00002498 : 7(0) -00002b68 : 7(0) -00002e10 : 8(0) -000015c8 : 8(0) -000052a4 : 8(0) -00001a84 : 8(0) -000022b8 : 7(0) -00003328 : 8(0) -00005b40 : 7(0) -00005a34 : 7(0) -00000cb4 : 8(0) ==> -00000880 : 7(0) Executing Services: [With SCM/NT] ---AJRouter (AllJoyn Router Service) - Stopped/Paused ---ALG (Application Layer Gateway Service) - Stopped/Paused ***AMD Crash Defender Service (AMD Crash Defender Service) - Running ***AMD External Events Utility (AMD External Events Utility) - Running ---AppIDSvc (Application Identity) - Stopped/Paused ***Appinfo (Application Information) - Running ---AppMgmt (Application Management) - Stopped/Paused ---AppReadiness (App Readiness) - Stopped/Paused ---AppVClient (Microsoft App-V Client) - Stopped/Paused ***AppXSvc (AppX Deployment Service (AppXSVC)) - Running ---AssignedAccessManagerSvc (AssignedAccessManager Service) - Stopped/Paused ***AudioEndpointBuilder (Windows Audio Endpoint Builder) - Running ***Audiosrv (Windows Audio) - Running ---autotimesvc (Cellular Time) - Stopped/Paused ---AxInstSV (ActiveX Installer (AxInstSV)) - Stopped/Paused ***BcmBtRSupport (Bluetooth Driver Management Service) - Running ---BDESVC (BitLocker Drive Encryption Service) - Stopped/Paused ***BFE (Base Filtering Engine) - Running ---BITS (Background Intelligent Transfer Service) - Stopped/Paused ***BrokerInfrastructure (Background Tasks Infrastructure Service) - Running ---BTAGService (Bluetooth Audio Gateway Service) - Stopped/Paused ***BthAvctpSvc (AVCTP service) - Running ---bthserv (Bluetooth Support Service) - Stopped/Paused ---camsvc (Capability Access Manager Service) - Stopped/Paused ***CDPSvc (Connected Devices Platform Service) - Running ---CertPropSvc (Certificate Propagation) - Stopped/Paused ---ClipSVC (Client License Service (ClipSVC)) - Stopped/Paused ---cloudidsvc (Microsoft Cloud Identity Service) - Stopped/Paused ---COMSysApp (COM+ System Application) - Stopped/Paused ***CoreMessagingRegistrar (CoreMessaging) - Running ***CryptSvc (Cryptographic Services) - Running ---CscService (Offline Files) - Stopped/Paused ***DcomLaunch (DCOM Server Process Launcher) - Running ---dcsvc (Declared Configuration(DC) service) - Stopped/Paused ---defragsvc (Optimize drives) - Stopped/Paused ***DeviceAssociationService (Device Association Service) - Running ---DeviceInstall (Device Install Service) - Stopped/Paused ---DevQueryBroker (DevQuery Background Discovery Broker) - Stopped/Paused ***Dhcp (DHCP Client) - Running ---diagnosticshub.standardcollector.service (Microsoft (R) Diagnostics Hub Standard Collector Service) - Stopped/Paused ---diagsvc (Diagnostic Execution Service) - Stopped/Paused ***DiagTrack (Connected User Experiences and Telemetry) - Running ---DialogBlockingService (DialogBlockingService) - Stopped/Paused ***DispBrokerDesktopSvc (Display Policy Service) - Running ---DisplayEnhancementService (Display Enhancement Service) - Stopped/Paused ---DmEnrollmentSvc (Device Management Enrollment Service) - Stopped/Paused ---dmwappushservice (Device Management Wireless Application Protocol (WAP) Push message Routing Service) - Stopped/Paused ***Dnscache (DNS Client) - Running ***DoSvc (Delivery Optimization) - Running ---dot3svc (Wired AutoConfig) - Stopped/Paused ***DPS (Diagnostic Policy Service) - Running ---DsmSvc (Device Setup Manager) - Stopped/Paused ***DsSvc (Data Sharing Service) - Running ***DusmSvc (Data Usage) - Running ---Eaphost (Extensible Authentication Protocol) - Stopped/Paused ---edgeupdate (Microsoft Edge Update Service (edgeupdate)) - Stopped/Paused ---edgeupdatem (Microsoft Edge Update Service (edgeupdatem)) - Stopped/Paused ***EFS (Encrypting File System (EFS)) - Running ---embeddedmode (Embedded Mode) - Stopped/Paused ---EntAppSvc (Enterprise App Management Service) - Stopped/Paused ***EpsonScanSvc (Epson Scanner Service) - Running ***EventLog (Windows Event Log) - Running ***EventSystem (COM+ Event System) - Running ---Fax (Fax) - Stopped/Paused ***fdPHost (Function Discovery Provider Host) - Running ***FDResPub (Function Discovery Resource Publication) - Running ---fhsvc (File History Service) - Stopped/Paused ***FontCache (Windows Font Cache Service) - Running ---FontCache3.0.0.0 (Windows Presentation Foundation Font Cache 3.0.0.0) - Stopped/Paused ---FrameServer (Windows Camera Frame Server) - Stopped/Paused ---GameInputSvc (GameInput Service) - Stopped/Paused ---GoogleUpdaterInternalService136.0.7079.0 (Google Updater Internal Service (GoogleUpdaterInternalService136.0.7079.0)) - Stopped/Paused ---GoogleUpdaterService136.0.7079.0 (Google Updater Service (GoogleUpdaterService136.0.7079.0)) - Stopped/Paused ---gpsvc (Group Policy Client) - Stopped/Paused ---GraphicsPerfSvc (GraphicsPerfSvc) - Stopped/Paused ***hidserv (Human Interface Device Service) - Running ---HvHost (HV Host Service) - Stopped/Paused ---icssvc (Windows Mobile Hotspot Service) - Stopped/Paused ---IKEEXT (IKE and AuthIP IPsec Keying Modules) - Stopped/Paused ***InstallService (Microsoft Store Install Service) - Running ***iphlpsvc (IP Helper) - Running ---IpxlatCfgSvc (IP Translation Configuration Service) - Stopped/Paused ***KeyIso (CNG Key Isolation) - Running ---KtmRm (KtmRm for Distributed Transaction Coordinator) - Stopped/Paused ***LanmanServer (Server) - Running ***LanmanWorkstation (Workstation) - Running ---lfsvc (Geolocation Service) - Stopped/Paused ***LicenseManager (Windows License Manager Service) - Running ---lltdsvc (Link-Layer Topology Discovery Mapper) - Stopped/Paused ***lmhosts (TCP/IP NetBIOS Helper) - Running ***LSM (Local Session Manager) - Running ---LxpSvc (Language Experience Service) - Stopped/Paused ---MapsBroker (Downloaded Maps Manager) - Stopped/Paused ---McpManagementService (McpManagementService) - Stopped/Paused ***MDCoreSvc (Microsoft Defender Core Service) - Running ---MicrosoftEdgeElevationService (Microsoft Edge Elevation Service (MicrosoftEdgeElevationService)) - Stopped/Paused ---MixedRealityOpenXRSvc (Windows Mixed Reality OpenXR Service) - Stopped/Paused ---MozillaMaintenance (Mozilla Maintenance Service) - Stopped/Paused ***mpssvc (Windows Defender Firewall) - Running ---MSDTC (Distributed Transaction Coordinator) - Stopped/Paused ---MSiSCSI (Microsoft iSCSI Initiator Service) - Stopped/Paused ---msiserver (Windows Installer) - Stopped/Paused ---MsKeyboardFilter (Microsoft Keyboard Filter) - Stopped/Paused ***NahimicService (Nahimic service) - Running ---NaturalAuthentication (Natural Authentication) - Stopped/Paused ---NcaSvc (Network Connectivity Assistant) - Stopped/Paused ***NcbService (Network Connection Broker) - Running ***NcdAutoSetup (Network Connected Devices Auto-Setup) - Running ---Netlogon (Netlogon) - Stopped/Paused ---Netman (Network Connections) - Stopped/Paused ***netprofm (Network List Service) - Running ---NetSetupSvc (Network Setup Service) - Stopped/Paused ---NetTcpPortSharing (Net.Tcp Port Sharing Service) - Stopped/Paused ---NgcCtnrSvc (Microsoft Passport Container) - Stopped/Paused ---NgcSvc (Microsoft Passport) - Stopped/Paused ***NlaSvc (Network Location Awareness) - Running ***nsi (Network Store Interface Service) - Running ---p2pimsvc (Peer Networking Identity Manager) - Stopped/Paused ---p2psvc (Peer Networking Grouping) - Stopped/Paused ***PcaSvc (Program Compatibility Assistant Service) - Running ---PeerDistSvc (BranchCache) - Stopped/Paused ---perceptionsimulation (Windows Perception Simulation Service) - Stopped/Paused ---PerfHost (Performance Counter DLL Host) - Stopped/Paused ---PhoneSvc (Phone Service) - Stopped/Paused ---pla (Performance Logs & Alerts) - Stopped/Paused ***PlugPlay (Plug and Play) - Running ---PNRPAutoReg (PNRP Machine Name Publication Service) - Stopped/Paused ---PNRPsvc (Peer Name Resolution Protocol) - Stopped/Paused ---PolicyAgent (IPsec Policy Agent) - Stopped/Paused ***Power (Power) - Running ---PrintNotify (Printer Extensions and Notifications) - Stopped/Paused ***ProfSvc (User Profile Service) - Running ---PushToInstall (Windows PushToInstall Service) - Stopped/Paused ---QWAVE (Quality Windows Audio Video Experience) - Stopped/Paused ---RasAuto (Remote Access Auto Connection Manager) - Stopped/Paused ***RasMan (Remote Access Connection Manager) - Running ---RemoteAccess (Routing and Remote Access) - Stopped/Paused ---RemoteRegistry (Remote Registry) - Stopped/Paused ---RetailDemo (Retail Demo Service) - Stopped/Paused ***RmSvc (Radio Management Service) - Running ***RpcEptMapper (RPC Endpoint Mapper) - Running ---RpcLocator (Remote Procedure Call (RPC) Locator) - Stopped/Paused ***RpcSs (Remote Procedure Call (RPC)) - Running ***SamSs (Security Accounts Manager) - Running ---SCardSvr (Smart Card) - Stopped/Paused ---ScDeviceEnum (Smart Card Device Enumeration Service) - Stopped/Paused ***Schedule (Task Scheduler) - Running ---SCPolicySvc (Smart Card Removal Policy) - Stopped/Paused ---SDRSVC (Windows Backup) - Stopped/Paused ---seclogon (Secondary Logon) - Stopped/Paused ***SecurityHealthService (Windows Security Service) - Running ***SEMgrSvc (Payments and NFC/SE Manager) - Running ***SENS (System Event Notification Service) - Running ---Sense (Windows Defender Advanced Threat Protection Service) - Stopped/Paused ---SensorDataService (Sensor Data Service) - Stopped/Paused ---SensorService (Sensor Service) - Stopped/Paused ---SensrSvc (Sensor Monitoring Service) - Stopped/Paused ---SessionEnv (Remote Desktop Configuration) - Stopped/Paused ---SgrmBroker (System Guard Runtime Monitor Broker) - Stopped/Paused ---SharedAccess (Internet Connection Sharing (ICS)) - Stopped/Paused ---SharedRealitySvc (Spatial Data Service) - Stopped/Paused ***ShellHWDetection (Shell Hardware Detection) - Running ---shpamsvc (Shared PC Account Manager) - Stopped/Paused ---smphost (Microsoft Storage Spaces SMP) - Stopped/Paused ---SmsRouter (Microsoft Windows SMS Router Service.) - Stopped/Paused ---SNMPTRAP (SNMP Trap) - Stopped/Paused ---spectrum (Windows Perception Service) - Stopped/Paused ***Spooler (Print Spooler) - Running ---sppsvc (Software Protection) - Stopped/Paused ***SSDPSRV (SSDP Discovery) - Running ---ssh-agent (OpenSSH Authentication Agent) - Stopped/Paused ***SstpSvc (Secure Socket Tunneling Protocol Service) - Running ***StateRepository (State Repository Service) - Running ***Steam Client Service (Steam Client Service) - Running ***stisvc (Windows Image Acquisition (WIA)) - Running ***StorSvc (Storage Service) - Running ---svsvc (Spot Verifier) - Stopped/Paused ---swprv (Microsoft Software Shadow Copy Provider) - Stopped/Paused ***SysMain (SysMain) - Running ***SystemEventsBroker (System Events Broker) - Running ***TabletInputService (Touch Keyboard and Handwriting Panel Service) - Running ***TapiSrv (Telephony) - Running ---TermService (Remote Desktop Services) - Stopped/Paused ***Themes (Themes) - Running ---TieringEngineService (Storage Tiers Management) - Stopped/Paused ***TimeBrokerSvc (Time Broker) - Running ***TokenBroker (Web Account Manager) - Running ***TrkWks (Distributed Link Tracking Client) - Running ---TroubleshootingSvc (Recommended Troubleshooting Service) - Stopped/Paused ---TrustedInstaller (Windows Modules Installer) - Stopped/Paused ---tzautoupdate (Auto Time Zone Updater) - Stopped/Paused ---UevAgentService (User Experience Virtualization Service) - Stopped/Paused ---uhssvc (Microsoft Update Health Service) - Stopped/Paused ---UmRdpService (Remote Desktop Services UserMode Port Redirector) - Stopped/Paused ---upnphost (UPnP Device Host) - Stopped/Paused ***UserManager (User Manager) - Running ***UsoSvc (Update Orchestrator Service) - Running ---VacSvc (Volumetric Audio Compositor Service) - Stopped/Paused ***VaultSvc (Credential Manager) - Running ---vds (Virtual Disk) - Stopped/Paused ---vmicguestinterface (Hyper-V Guest Service Interface) - Stopped/Paused ---vmicheartbeat (Hyper-V Heartbeat Service) - Stopped/Paused ---vmickvpexchange (Hyper-V Data Exchange Service) - Stopped/Paused ---vmicrdv (Hyper-V Remote Desktop Virtualization Service) - Stopped/Paused ---vmicshutdown (Hyper-V Guest Shutdown Service) - Stopped/Paused ---vmictimesync (Hyper-V Time Synchronization Service) - Stopped/Paused ---vmicvmsession (Hyper-V PowerShell Direct Service) - Stopped/Paused ---vmicvss (Hyper-V Volume Shadow Copy Requestor) - Stopped/Paused ---VSS (Volume Shadow Copy) - Stopped/Paused ---W32Time (Windows Time) - Stopped/Paused ***WaaSMedicSvc (Windows Update Medic Service) - Running ---WalletService (WalletService) - Stopped/Paused ---WarpJITSvc (WarpJITSvc) - Stopped/Paused ---wbengine (Block Level Backup Engine Service) - Stopped/Paused ---WbioSrvc (Windows Biometric Service) - Stopped/Paused ***Wcmsvc (Windows Connection Manager) - Running ---wcncsvc (Windows Connect Now - Config Registrar) - Stopped/Paused ***WdiServiceHost (Diagnostic Service Host) - Running ---WdiSystemHost (Diagnostic System Host) - Stopped/Paused ***WdNisSvc (Microsoft Defender Antivirus Network Inspection Service) - Running ---WebClient (WebClient) - Stopped/Paused ---Wecsvc (Windows Event Collector) - Stopped/Paused ---WEPHOSTSVC (Windows Encryption Provider Host Service) - Stopped/Paused ---wercplsupport (Problem Reports Control Panel Support) - Stopped/Paused ***WerSvc (Windows Error Reporting Service) - Running ---WFDSConMgrSvc (Wi-Fi Direct Services Connection Manager Service) - Stopped/Paused ---WiaRpc (Still Image Acquisition Events) - Stopped/Paused ***WinDefend (Microsoft Defender Antivirus Service) - Running ***WinHttpAutoProxySvc (WinHTTP Web Proxy Auto-Discovery Service) - Running ***Winmgmt (Windows Management Instrumentation) - Running ---WinRM (Windows Remote Management (WS-Management)) - Stopped/Paused ---wisvc (Windows Insider Service) - Stopped/Paused ---WlanSvc (WLAN AutoConfig) - Stopped/Paused ---wlidsvc (Microsoft Account Sign-in Assistant) - Stopped/Paused ---wlpasvc (Local Profile Assistant Service) - Stopped/Paused ---WManSvc (Windows Management Service) - Stopped/Paused ---wmiApSrv (WMI Performance Adapter) - Stopped/Paused ---WMPNetworkSvc (Windows Media Player Network Sharing Service) - Stopped/Paused ---workfolderssvc (Work Folders) - Stopped/Paused ---WpcMonSvc (Parental Controls) - Stopped/Paused ---WPDBusEnum (Portable Device Enumerator Service) - Stopped/Paused ***WpnService (Windows Push Notifications System Service) - Running ***wscsvc (Security Center) - Running ***WSearch (Windows Search) - Running ***WTabletServicePro (Wacom Professional Service) - Running ***wuauserv (Windows Update) - Running ---WwanSvc (WWAN AutoConfig) - Stopped/Paused ---XblAuthManager (Xbox Live Auth Manager) - Stopped/Paused ---XblGameSave (Xbox Live Game Save) - Stopped/Paused ---XboxGipSvc (Xbox Accessory Management Service) - Stopped/Paused ---XboxNetApiSvc (Xbox Live Networking Service) - Stopped/Paused ---AarSvc_a8c26 (Agent Activation Runtime_a8c26) - Stopped/Paused ---BcastDVRUserService_a8c26 (GameDVR and Broadcast User Service_a8c26) - Stopped/Paused ---BluetoothUserService_a8c26 (Bluetooth User Support Service_a8c26) - Stopped/Paused ***CaptureService_a8c26 (CaptureService_a8c26) - Running ***cbdhsvc_a8c26 (Clipboard User Service_a8c26) - Running ***CDPUserSvc_a8c26 (Connected Devices Platform User Service_a8c26) - Running ---ConsentUxUserSvc_a8c26 (ConsentUX_a8c26) - Stopped/Paused ---CredentialEnrollmentManagerUserSvc_a8c26 (CredentialEnrollmentManagerUserSvc_a8c26) - Stopped/Paused ---DeviceAssociationBrokerSvc_a8c26 (DeviceAssociationBroker_a8c26) - Stopped/Paused ---DevicePickerUserSvc_a8c26 (DevicePicker_a8c26) - Stopped/Paused ---DevicesFlowUserSvc_a8c26 (DevicesFlow_a8c26) - Stopped/Paused ---MessagingService_a8c26 (MessagingService_a8c26) - Stopped/Paused ***OneSyncSvc_a8c26 (Sync Host_a8c26) - Running ***PimIndexMaintenanceSvc_a8c26 (Contact Data_a8c26) - Running ---PrintWorkflowUserSvc_a8c26 (PrintWorkflow_a8c26) - Stopped/Paused ---UdkUserSvc_a8c26 (Udk User Service_a8c26) - Stopped/Paused ***UnistoreSvc_a8c26 (User Data Storage_a8c26) - Running ***UserDataSvc_a8c26 (User Data Access_a8c26) - Running ***WpnUserService_a8c26 (Windows Push Notifications User Service_a8c26) - Running Loaded Modules: [With ToolHelp32] -00400000 <RAW> : D:\SSP\000_Dev\000_dupe SSPs\2.6.93\ssp.exe 2.6.95.3000 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ -04570000 <CMP> : D:\SSP\000_Dev\000_dupe SSPs\2.6.93\plugin\shared_value\shared_value.dll 1.0.0.0 - Shared Value Plugin Copyright (C) CSaori Project -048f0000 <RAW> : D:\SSP\000_Dev\000_dupe SSPs\2.6.93\plugin\SAKNIFE\SAKNIFE.dll 1.5.3.0 - SwissArmyKnife (C) 2004 SSP BUGTRAQ -10000000 <CMP> : D:\SSP\000_Dev\000_dupe SSPs\2.6.93\data\language\english\resource.dll 2.6.49.16 - Language Resource DLL (C) D-EXCLAMATION / SSP BUGTRAQ -13700000 <RAW> : D:\SSP\000_Dev\000_dupe SSPs\2.6.93\ghost\KEEP_FROZEN\ghost\master\yaya.dll 5.71.5.0 - yaya -66e90000 <RAW> : C:\Windows\SYSTEM32\mscms.dll 10.0.19041.5129 - Microsoft Color Matching System DLL � Microsoft Corporation. All rights reserved. -66f30000 <RAW> : C:\Windows\System32\LocationApi.dll 10.0.19041.4355 - Microsoft Windows Location API � Microsoft Corporation. All rights reserved. -67050000 <RAW> : C:\Windows\SYSTEM32\WindowsCodecs.dll 10.0.19041.5129 - Microsoft Windows Codecs Library � Microsoft Corporation. All rights reserved. -674e0000 <RAW> : C:\Windows\SYSTEM32\iertutil.dll 11.0.19041.5737 - Run time utility for Internet Explorer � Microsoft Corporation. All rights reserved. -6a9f0000 <RAW> : C:\Windows\System32\msvcp110_win.dll 10.0.19041.3636 - Microsoft� STL110 C++ Runtime Library � Microsoft Corporation. All rights reserved. -6aa60000 <RAW> : C:\Windows\SYSTEM32\policymanager.dll 10.0.19041.5678 - Policy Manager DLL � Microsoft Corporation. All rights reserved. -6ab30000 <RAW> : C:\Windows\SYSTEM32\ntshrui.dll 10.0.19041.4355 - Shell extensions for sharing � Microsoft Corporation. All rights reserved. -6ab90000 <RAW> : C:\Windows\System32\OneCoreUAPCommonProxyStub.dll 10.0.19041.5438 - OneCoreUAP Common Proxy Stub � Microsoft Corporation. All rights reserved. -6b1a0000 <RAW> : C:\Windows\System32\wuapi.dll 10.0.19041.5198 - Windows Update Client API � Microsoft Corporation. All rights reserved. -6b370000 <RAW> : C:\Windows\System32\deviceaccess.dll 10.0.19041.4355 - Device Broker And Policy COM Server � Microsoft Corporation. All rights reserved. -6b3a0000 <RAW> : C:\Windows\System32\SensorsApi.dll 10.0.19041.4355 - Sensor API � Microsoft Corporation. All rights reserved. -6b730000 <RAW> : C:\Windows\SYSTEM32\DUser.dll 10.0.19041.3636 - Windows DirectUser Engine � Microsoft Corporation. All rights reserved. -6b9a0000 <RAW> : C:\Windows\System32\PortableDeviceTypes.dll 10.0.19041.5553 - Windows Portable Device (Parameter) Types Component � Microsoft Corporation. All rights reserved. -6be10000 <RAW> : C:\Windows\system32\rsaenh.dll 10.0.19041.5553 - Microsoft Enhanced Cryptographic Provider � Microsoft Corporation. All rights reserved. -6be50000 <RAW> : C:\Windows\SYSTEM32\CRYPTSP.dll 10.0.19041.5438 - Cryptographic Service Provider API � Microsoft Corporation. All rights reserved. -6c1f0000 <RAW> : C:\Windows\System32\OneCoreCommonProxyStub.dll 10.0.19041.4597 - OneCore Common Proxy Stub � Microsoft Corporation. All rights reserved. -6c2e0000 <RAW> : C:\Windows\system32\d2d1.dll 10.0.19041.4355 - Microsoft D2D Library � Microsoft Corporation. All rights reserved. -6c800000 <RAW> : C:\Windows\system32\explorerframe.dll 10.0.19041.5438 - ExplorerFrame � Microsoft Corporation. All rights reserved. -6c9f0000 <RAW> : C:\Windows\System32\fwpuclnt.dll 10.0.19041.4123 - FWP/IPsec User-Mode API � Microsoft Corporation. All rights reserved. -6caf0000 <RAW> : C:\Windows\System32\rasadhlp.dll 10.0.19041.3636 - Remote Access AutoDial Helper � Microsoft Corporation. All rights reserved. -6cb00000 <RAW> : C:\Windows\SYSTEM32\winhttp.dll 10.0.19041.5438 - Windows HTTP Services � Microsoft Corporation. All rights reserved. -6cbd0000 <RAW> : C:\Windows\SYSTEM32\WINNSI.DLL 10.0.19041.3636 - Network Store Information RPC interface � Microsoft Corporation. All rights reserved. -6cbe0000 <RAW> : C:\Windows\SYSTEM32\ColorAdapterClient.dll 10.0.19041.5129 - Microsoft Color Adapter Client � Microsoft Corporation. All rights reserved. -6cd00000 <RAW> : C:\Windows\SYSTEM32\textinputframework.dll 10.0.19041.5198 - "TextInputFramework.DYNLINK" � Microsoft Corporation. All rights reserved. -6cec0000 <RAW> : C:\Windows\System32\SensorsNativeApi.V2.dll 10.0.19041.4355 - Sensors Native API (V2 stack) � Microsoft Corporation. All rights reserved. -6cef0000 <RAW> : C:\Windows\System32\netprofm.dll 10.0.19041.4355 - Network List Manager � Microsoft Corporation. All rights reserved. -6d090000 <RAW> : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\X86\MpOav.dll 4.18.25030.2 - IOfficeAntiVirus Module � Microsoft Corporation. All rights reserved. -6d120000 <RAW> : C:\Windows\system32\amsi.dll 10.0.19041.4355 - Anti-Malware Scan Interface � Microsoft Corporation. All rights reserved. -6d550000 <RAW> : C:\Windows\SYSTEM32\UMPDC.dll -6d560000 <RAW> : C:\Windows\SYSTEM32\powrprof.dll 10.0.19041.3636 - Power Profile Helper DLL � Microsoft Corporation. All rights reserved. -6ed00000 <RAW> : C:\Windows\System32\npmproxy.dll 10.0.19041.3636 - Network List Manager Proxy � Microsoft Corporation. All rights reserved. -6ed80000 <RAW> : C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.19041.5369_none_d9518ab7e1044dec\gdiplus.dll 10.0.19041.5369 - Microsoft GDI+ � Microsoft Corporation. All rights reserved. -6eef0000 <RAW> : C:\Windows\SYSTEM32\oledlg.dll 10.0.19041.4355 - OLE User Interface Support � Microsoft Corporation. All rights reserved. -6efa0000 <RAW> : C:\Windows\system32\Oleacc.dll 7.2.19041.3636 - Active Accessibility Core Component � Microsoft Corporation. All rights reserved. -6f080000 <RAW> : C:\Windows\System32\ShellCommonCommonProxyStub.dll 10.0.19041.5737 - ShellCommon Common Proxy Stub � Microsoft Corporation. All rights reserved. -6f3c0000 <RAW> : C:\Windows\System32\wups.dll 10.0.19041.4597 - Windows Update client proxy stub � Microsoft Corporation. All rights reserved. -6f3e0000 <RAW> : C:\Windows\SYSTEM32\ondemandconnroutehelper.dll 10.0.19041.4355 - On Demand Connctiond Route Helper � Microsoft Corporation. All rights reserved. -6f400000 <RAW> : C:\Windows\SYSTEM32\cscapi.dll 10.0.19041.3636 - Offline Files Win32 API � Microsoft Corporation. All rights reserved. -6f470000 <RAW> : C:\Windows\SYSTEM32\srvcli.dll 10.0.19041.3636 - Server Service Client DLL � Microsoft Corporation. All rights reserved. -6f490000 <RAW> : C:\Windows\system32\pdh.dll 10.0.19041.5072 - Windows Performance Data Helper DLL � Microsoft Corporation. All rights reserved. -6f4e0000 <RAW> : C:\Windows\System32\ActXPrxy.dll 10.0.19041.3758 - ActiveX Interface Marshaling Library � Microsoft Corporation. All rights reserved. -6f530000 <RAW> : C:\Windows\SYSTEM32\SspiCli.dll 10.0.19041.4239 - Security Support Provider Interface � Microsoft Corporation. All rights reserved. -6f560000 <RAW> : C:\Windows\SYSTEM32\LINKINFO.dll 10.0.19041.3636 - Windows Volume Tracking � Microsoft Corporation. All rights reserved. -6f570000 <RAW> : C:\Windows\SYSTEM32\netutils.dll 10.0.19041.3636 - Net Win32 API Helpers DLL � Microsoft Corporation. All rights reserved. -6f580000 <RAW> : C:\Windows\system32\wshunix.dll 10.0.19041.5438 - AF_UNIX Winsock2 Helper DLL � Microsoft Corporation. All rights reserved. -6f690000 <RAW> : C:\Windows\SYSTEM32\atlthunk.dll 10.0.19041.5438 - atlthunk.dll � Microsoft Corporation. All rights reserved. -6f6a0000 <RAW> : C:\Windows\System32\SensorsUtilsV2.dll 10.0.19041.4355 - Sensors v2 Utilities DLL � Microsoft Corporation. All rights reserved. -6f6d0000 <RAW> : C:\Windows\system32\twinapi.dll 10.0.19041.4355 - twinapi � Microsoft Corporation. All rights reserved. -6f760000 <RAW> : C:\Windows\system32\es.dll 2001.12.10941.16384 - COM+ � Microsoft Corporation. All rights reserved. -6f7c0000 <RAW> : C:\Windows\system32\mlang.dll 10.0.19041.3636 - Multi Language Support DLL � Microsoft Corporation. All rights reserved. -6f800000 <RAW> : C:\Windows\SYSTEM32\TextShaping.dll -6f8a0000 <RAW> : C:\Windows\SYSTEM32\QUARTZ.dll 10.0.19041.3636 - DirectShow Runtime. � Microsoft Corporation. All rights reserved. -6fa40000 <RAW> : C:\Windows\SYSTEM32\profapi.dll 10.0.19041.5553 - User Profile Basic API � Microsoft Corporation. All rights reserved. -6ff70000 <RAW> : C:\Windows\System32\winrnr.dll 10.0.19041.3636 - LDAP RnR Provider DLL � Microsoft Corporation. All rights reserved. -6ff80000 <RAW> : C:\Windows\SYSTEM32\DNSAPI.dll 10.0.19041.5369 - DNS Client API DLL � Microsoft Corporation. All rights reserved. -70010000 <RAW> : C:\Windows\system32\NLAapi.dll 10.0.19041.3636 - Network Location Awareness 2 � Microsoft Corporation. All rights reserved. -70030000 <RAW> : C:\Windows\system32\wshbth.dll 10.0.19041.3636 - Windows Sockets Helper DLL � Microsoft Corporation. All rights reserved. -70040000 <RAW> : C:\Windows\system32\pnrpnsp.dll 10.0.19041.3636 - PNRP Name Space Provider � Microsoft Corporation. All rights reserved. -70060000 <RAW> : C:\Windows\system32\napinsp.dll 10.0.19041.3636 - E-mail Naming Shim Provider � Microsoft Corporation. All rights reserved. -70080000 <RAW> : C:\Windows\system32\dwrite.dll 10.0.19041.5678 - Microsoft DirectX Typography Services � Microsoft Corporation. All rights reserved. -702e0000 <RAW> : C:\Windows\System32\twinapi.appcore.dll 10.0.19041.4597 - twinapi.appcore � Microsoft Corporation. All rights reserved. -70480000 <RAW> : C:\Windows\system32\dxgi.dll 10.0.19041.5438 - DirectX Graphics Infrastructure � Microsoft Corporation. All rights reserved. -70550000 <RAW> : C:\Windows\system32\dcomp.dll 10.0.19041.5737 - Microsoft DirectComposition Library � Microsoft Corporation. All rights reserved. -706c0000 <RAW> : C:\Windows\system32\d3d11.dll 10.0.19041.4355 - Direct3D 11 Runtime � Microsoft Corporation. All rights reserved. -708a0000 <RAW> : C:\Windows\system32\dataexchange.dll 10.0.19041.4355 - Data exchange � Microsoft Corporation. All rights reserved. -708e0000 <RAW> : C:\Windows\SYSTEM32\Wldp.dll 10.0.19041.5737 - Windows Lockdown Policy � Microsoft Corporation. All rights reserved. -70910000 <RAW> : C:\Windows\SYSTEM32\windows.storage.dll 10.0.19041.5678 - Microsoft WinRT Storage API � Microsoft Corporation. All rights reserved. -70f30000 <RAW> : C:\Windows\system32\dwmapi.dll 10.0.19041.5737 - Microsoft Desktop Window Manager API � Microsoft Corporation. All rights reserved. -71220000 <RAW> : C:\Windows\system32\msimg32.dll 10.0.19041.3636 - GDIEXT Client DLL � Microsoft Corporation. All rights reserved. -71390000 <RAW> : C:\Windows\SYSTEM32\ntmarta.dll 10.0.19041.3636 - Windows NT MARTA provider � Microsoft Corporation. All rights reserved. -713c0000 <RAW> : C:\Windows\SYSTEM32\kernel.appcore.dll 10.0.19041.3758 - AppModel API Host � Microsoft Corporation. All rights reserved. -713d0000 <RAW> : C:\Windows\System32\CoreUIComponents.dll 10.0.19041.3636 - Microsoft Core UI Components Dll � Microsoft Corporation. All rights reserved. -71650000 <RAW> : C:\Windows\System32\CoreMessaging.dll 10.0.19041.5486 - Microsoft CoreMessaging Dll � Microsoft Corporation. All rights reserved. -716f0000 <RAW> : C:\Windows\SYSTEM32\PROPSYS.dll 7.0.19041.5369 - Microsoft Property System � Microsoft Corporation. All rights reserved. -717c0000 <RAW> : C:\Windows\SYSTEM32\wintypes.dll 10.0.19041.5369 - Windows Base Types DLL � Microsoft Corporation. All rights reserved. -74090000 <RAW> : C:\Windows\SYSTEM32\iphlpapi.dll 10.0.19041.3636 - IP Helper API � Microsoft Corporation. All rights reserved. -740d0000 <RAW> : C:\Windows\SYSTEM32\WINMM.dll 10.0.19041.3636 - MCI API DLL � Microsoft Corporation. All rights reserved. -74ed0000 <RAW> : C:\Windows\SYSTEM32\CRYPTBASE.dll 10.0.19041.3636 - Base cryptographic API DLL � Microsoft Corporation. All rights reserved. -74ee0000 <RAW> : C:\Windows\system32\uxtheme.dll 10.0.19041.5247 - Microsoft UxTheme Library � Microsoft Corporation. All rights reserved. -74f60000 <RAW> : C:\Windows\system32\wininet.dll 11.0.19041.5438 - Internet Extensions for Win32 � Microsoft Corporation. All rights reserved. -75470000 <RAW> : C:\Windows\SYSTEM32\MSASN1.dll 10.0.19041.3636 - ASN.1 Runtime APIs � Microsoft Corporation. All rights reserved. -754b0000 <RAW> : C:\Windows\system32\mswsock.dll 10.0.19041.5553 - Microsoft Windows Sockets 2.0 Service Provider � Microsoft Corporation. All rights reserved. -75520000 <RAW> : C:\Windows\SYSTEM32\VERSION.dll 10.0.19041.3636 - Version Checking and File Installation Libraries � Microsoft Corporation. All rights reserved. -75530000 <RAW> : C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.4355_none_a865f0c28672571c\COMCTL32.dll 6.10.19041.4355 - User Experience Controls Library � Microsoft Corporation. All rights reserved. -75750000 <RAW> : C:\Windows\SYSTEM32\USERENV.dll 10.0.19041.4355 - Userenv � Microsoft Corporation. All rights reserved. -75810000 <RAW> : C:\Windows\System32\WS2_32.dll 10.0.19041.3636 - Windows Socket 2.0 32-Bit DLL � Microsoft Corporation. All rights reserved. -75880000 <RAW> : C:\Windows\System32\SHELL32.dll 10.0.19041.5678 - Windows Shell Common Dll � Microsoft Corporation. All rights reserved. -75e60000 <RAW> : C:\Windows\System32\KERNEL32.DLL 10.0.19041.5678 - Windows NT BASE API Client DLL � Microsoft Corporation. All rights reserved. -75fb0000 <RAW> : C:\Windows\System32\SETUPAPI.dll 10.0.19041.5369 - Windows Setup API � Microsoft Corporation. All rights reserved. -763f0000 <RAW> : C:\Windows\System32\ucrtbase.dll 10.0.19041.3636 - Microsoft� C Runtime Library � Microsoft Corporation. All rights reserved. -76510000 <RAW> : C:\Windows\System32\imagehlp.dll 10.0.19041.3636 - Windows NT Image Helper � Microsoft Corporation. All rights reserved. -76530000 <RAW> : C:\Windows\System32\normaliz.dll 10.0.19041.3636 - Unicode Normalization DLL � Microsoft Corporation. All rights reserved. -76540000 <RAW> : C:\Windows\System32\NSI.dll 10.0.19041.5438 - NSI User-mode interface DLL � Microsoft Corporation. All rights reserved. -76550000 <RAW> : C:\Windows\System32\CRYPT32.dll 10.0.19041.5737 - Crypto API32 � Microsoft Corporation. All rights reserved. -76650000 <RAW> : C:\Windows\System32\OLEAUT32.dll 10.0.19041.3636 - OLEAUT32.DLL � Microsoft Corporation. All rights reserved. -766f0000 <RAW> : C:\Windows\System32\ole32.dll 10.0.19041.5369 - Microsoft OLE for Windows � Microsoft Corporation. All rights reserved. -76840000 <RAW> : C:\Windows\System32\MSCTF.dll 10.0.19041.5678 - MSCTF Server DLL � Microsoft Corporation. All rights reserved. -769c0000 <RAW> : C:\Windows\System32\cfgmgr32.dll 10.0.19041.3996 - Configuration Manager DLL � Microsoft Corporation. All rights reserved. -76a00000 <RAW> : C:\Windows\System32\sechost.dll 10.0.19041.5737 - Host for SCM/SDDL/LSA Lookup APIs � Microsoft Corporation. All rights reserved. -76a80000 <RAW> : C:\Windows\System32\win32u.dll 10.0.19041.5737 - Win32u � Microsoft Corporation. All rights reserved. -76aa0000 <RAW> : C:\Windows\System32\SHLWAPI.dll 10.0.19041.4355 - Shell Light-weight Utility Library � Microsoft Corporation. All rights reserved. -76af0000 <RAW> : C:\Windows\System32\clbcatq.dll 2001.12.10941.16384 - COM+ Configuration Catalog � Microsoft Corporation. All rights reserved. -76b70000 <RAW> : C:\Windows\System32\msvcrt.dll 7.0.19041.3636 - Windows NT CRT DLL � Microsoft Corporation. All rights reserved. -76c30000 <RAW> : C:\Windows\System32\bcrypt.dll 10.0.19041.5438 - Windows Cryptographic Primitives Library � Microsoft Corporation. All rights reserved. -76dc0000 <RAW> : C:\Windows\System32\gdi32full.dll 10.0.19041.5737 - GDI Client DLL � Microsoft Corporation. All rights reserved. -76eb0000 <RAW> : C:\Windows\System32\RPCRT4.dll 10.0.19041.5438 - Remote Procedure Call Runtime � Microsoft Corporation. All rights reserved. -76f70000 <RAW> : C:\Windows\System32\GDI32.dll 10.0.19041.5737 - GDI Client DLL � Microsoft Corporation. All rights reserved. -76fa0000 <RAW> : C:\Windows\System32\KERNELBASE.dll 10.0.19041.5737 - Windows NT BASE API Client DLL � Microsoft Corporation. All rights reserved. -771e0000 <RAW> : C:\Windows\System32\combase.dll 10.0.19041.5369 - Microsoft COM for Windows � Microsoft Corporation. All rights reserved. -774d0000 <RAW> : C:\Windows\System32\USER32.dll 10.0.19041.5737 - Multi-User Windows USER API Client DLL � Microsoft Corporation. All rights reserved. -77670000 <RAW> : C:\Windows\System32\comdlg32.dll 10.0.19041.4355 - Common Dialogs DLL � Microsoft Corporation. All rights reserved. -77720000 <RAW> : C:\Windows\System32\msvcp_win.dll 10.0.19041.3636 - Microsoft� C Runtime Library � Microsoft Corporation. All rights reserved. -777a0000 <RAW> : C:\Windows\System32\IMM32.DLL 10.0.19041.5737 - Multi-User Windows IMM32 API Client DLL � Microsoft Corporation. All rights reserved. -777d0000 <RAW> : C:\Windows\System32\bcryptPrimitives.dll 10.0.19041.5438 - Windows Cryptographic Primitives Library � Microsoft Corporation. All rights reserved. -77830000 <RAW> : C:\Windows\System32\ADVAPI32.dll 10.0.19041.5737 - Advanced Windows 32 Base API � Microsoft Corporation. All rights reserved. -778b0000 <RAW> : C:\Windows\System32\shcore.dll 10.0.19041.5678 - SHCORE � Microsoft Corporation. All rights reserved. ==> -779b0000 <RAW> : C:\Windows\SYSTEM32\ntdll.dll 10.0.19041.5737 - NT Layer DLL � Microsoft Corporation. All rights reserved. Registers: EAX 0c28f3a0 EBX 03485000 ECX 0c28f3d0 EDX 77ad3960 ESI 00000002 EDI 00d802c0 DS 002b ES 002b FS 0053 GS 002b SS/ESP/EBP 002b/0c28f378/0c28f3b0 CS/EIP 0023/77a96d23 EFlags 00000246 (Parity,Zero,Interrupt) Stack Dump: f6faa935 00d802c0 00000002 03485000 0c28f3b8 00000000 00000000 0c28f3c4 0c28f378 00d80200 0c28f434 77a2b570 8d798cdd 00000000 0c28f444 77a96cfb f6faaec1 00d802c0 00000002 03485000 77ad3960 c0000374 c0000374 00000001 00000000 77a96d23 00000001 77ad3960 00000001 0c28f40c 0000001d 0c28f41c 0c290000 00000000 0000001d 0c28f3d8 00000320 0c28f470 77a2b570 8d799c55 fffffffe 0c28f440 77a0c591 77ad3990 f6faaec1 0c28f3b8 00000002 0c28f470 77a2b570 8d798cfd fffffffe 0c28f480 77a9fdc4 00000001 77ad3990 77a9dcb9 f6faae05 00d802c0 03485ea8 03485000 0c28f458 00000001 0c28f5c4 77a2b570 CallStack Trace: 00 : 77a96d23/000e5d23 <RAW> [f6faaec1,00d802c0,00000002,03485000] @ ntdll.dll (RtlIsZeroMemory->0xf3) 01 : 77a96cfb/000e5cfb <RAW> [00000001,77ad3990,77a9dcb9,f6faae05] @ ntdll.dll (RtlIsZeroMemory->0xcb) 02 : 77a9fdc4/000eedc4 <RAW> [00000011,00d80100,03485ea8,00000000] @ ntdll.dll (RtlpNtSetValueKey->0x27c4) 03 : 77aa6130/000f5130 <RAW> [03485ea8,03485000,000000d8,00000000] @ ntdll.dll (RtlpNtSetValueKey->0x8b30) 04 : 77aa77a8/000f67a8 <RAW> [03485ea8,00000000,00d80000,00000000] @ ntdll.dll (RtlpNtSetValueKey->0xa1a8) 05 : 77aabbc5/000fabc5 <RAW> [00000000,03485ea8,00d80000,00000000] @ ntdll.dll (RtlpNtSetValueKey->0xe5c5) 06 : 77aa8938/000f7938 <RAW> [00000000,00000000,00000000,03485ea8] @ ntdll.dll (RtlpNtSetValueKey->0xb338) 07 : 77a37ad5/00086ad5 <RAW> [00000000,00000000,00000000,f6faaf51] @ ntdll.dll (RtlGetNtGlobalFlags->0x65) 08 : 77a7d6b4/000cc6b4 <RAW> [00000000,0b8e6da8,03485ea8,00000000] @ ntdll.dll (RtlImageRvaToVa->0x104) 09 : 77a46b0e/00095b0e <RAW> [00d80000,00000000,03485ea8,0b8e6da8] @ ntdll.dll (RtlCaptureStackContext->0xd5ce) 10 : 008b27c0/004b17c0 <RAW> [03485ea8,0c28f654,006df64d,03485ea8] @ ssp.exe (free 008b2736 f libcmt:free.obj->0x8a) 11 : 004c8ad0/000c7ad0 <RAW> [03485ea8,00979c24,000001bf,0c28f66c] @ ssp.exe (JSocketManager::InitSSL->0x980) 12 : 006df64d/002de64d <RAW> [03485ea8,00979c24,000001bf,00000001] @ ssp.exe (OBJ_obj2txt 006df430 f libcrypto_a:libcrypto-lib-obj_dat.obj->0x21d) 13 : 006e4a8e/002e3a8e <RAW> [0b8e6da8,0b8a0368,0b8967a0,0c28f69c] @ ssp.exe (X509_verify_cert 006e4620 f libcrypto_a:libcrypto-lib-x509_vfy.obj->0x46e) 14 : 006e4a66/002e3a66 <RAW> [0b8e6da8,006fb7a0,00000000,007072a0] @ ssp.exe (X509_verify_cert 006e4620 f libcrypto_a:libcrypto-lib-x509_vfy.obj->0x446) 15 : 006fb757/002fa757 <RAW> [0b8a0368,00000000,0b8967a0,0c28f6c0] @ ssp.exe (X509_VERIFY_PARAM_lookup 006fb700 f libcrypto_a:libcrypto-lib-x509_vpm.obj->0x57) 16 : 0084b54c/0044a54c <RAW> [0b8967a0,0b8967a0,0c28f6e8,004ca54e] @ ssp.exe (ossl_ssl_connection_free 0084b4d0 f libssl_a:libssl-lib-ssl_lib.obj->0x7c) 17 : 0084b4f4/0044a4f4 <RAW> [0b8967a0,00000000,00000006,034bc0d0] @ ssp.exe (ossl_ssl_connection_free 0084b4d0 f libssl_a:libssl-lib-ssl_lib.obj->0x24) 18 : 004ca54e/000c954e <RAW> [00941240,00000006,00000000,00000000] @ ssp.exe (JSocket::ConnectSOCKS->0xbe) 19 : 004cb802/000ca802 <RAW> [00941240,00000006,034bc0d0,034bbf68] @ ssp.exe (JSocket::SendTo->0x102) 20 : 004cb7ac/000ca7ac <RAW> [00941240,fffffffe,034bbf68,005969b0] @ ssp.exe (JSocket::SendTo->0xac) 21 : 005953d9/001943d9 <RAW> [0349d520,034bbf68,0c28fef0,005981fb] @ ssp.exe (SPPopAccount::GetMailUIDL->0xc9) 22 : 005967cb/001957cb <RAW> [034ce8d8,0349d520,03485e88,00000000] @ ssp.exe (SPPopAccount::CheckMailMain->0x17b) 23 : 005981fb/001971fb <RAW> [03485e88,75e7ea50,03489208,00000001] @ ssp.exe (SPPop::LoopMain->0x52b) 24 : 00597e43/00196e43 <RAW> [008b6e19,03495eb0,03495eb0,00000000] @ ssp.exe (SPPop::LoopMain->0x173) 25 : 004da277/000d9277 <RAW> [03485eb8,008b6e19,008b6e19,03495eb0] @ ssp.exe (JWinThread::PostQueue->0x27) 26 : 008b6ea2/004b5ea2 <RAW> [03495eb0,75e7fcb0,0c28ffdc,77a182ae] @ ssp.exe (_beginthreadex 008b6dfe f libcmt:threadex.obj->0xa4) 27 : 75e7fcc9/0000fcc9 <RAW> [03495eb0,f6faa559,00000000,00000000] @ KERNEL32.DLL (BaseThreadInitThunk->0x19) 28 : 77a182ae/000672ae <RAW> [ffffffff,77a39345,00000000,00000000] @ ntdll.dll (RtlGetAppContainerNamedObjectPath->0x11e) 29 : 77a1827e/0006727e <RAW> [008b6e19,03495eb0,00000000,00000000] @ ntdll.dll (RtlGetAppContainerNamedObjectPath->0xee) Total StackDepth : 30 | ||||