SPDebugger/2.16.23119.A Exception Raised at 006d6ea7 because ACCESS_VIOLATION (#c0000005) ->Reading 15775000 Data Windows NT 10.0.19043 UAC: Enabled,Limited Time: 2021/7/10 03:40:00.236 Phys.Mem: 7877/16335MB PageFile: 41053/63439MB CPU : AMD 0.23.8.2 3200MHz Features:MMX SSE HT AES-NI (AMD Ryzen 7 2700 Eight-Core Processor) Package:1 Node:1 Core:8 Thread:16 SSP/2.5.07 (20210629-1; Windows NT 10.0.19043) Volume Information: C:\ Fixed [ 1825MB Free | 113827MB Total | 1%] (NTFS,Normal) D:\ Fixed [ 63MB Free | 99MB Total | 63%] (NTFS,Normal) E:\ CD-ROM F:\ Fixed [ 786525MB Free | 1907625MB Total | 41%] (NTFS,Normal) Monitor Information: 0: \\.\DISPLAY1 - Work=-1920,0,0,1040 Size=1920x1080 1: \\.\DISPLAY2 - Work=0,0,1920,1040 Size=1920x1080 [PRIMARY] Env. Variables: =::=::\ ALLUSERSPROFILE=C:\ProgramData APPDATA=C:\Users\Zichqec\AppData\Roaming CommonProgramFiles=C:\Program Files (x86)\Common Files CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files CommonProgramW6432=C:\Program Files\Common Files COMPUTERNAME=VANTA-BLACK ComSpec=C:\WINDOWS\system32\cmd.exe DriverData=C:\Windows\System32\Drivers\DriverData FPS_BROWSER_APP_PROFILE_STRING=Internet Explorer FPS_BROWSER_USER_PROFILE_STRING=Default HOMEDRIVE=C: HOMEPATH=\Users\Zichqec LOCALAPPDATA=C:\Users\Zichqec\AppData\Local LOGONSERVER=\\VANTA-BLACK NUMBER_OF_PROCESSORS=16 OneDrive=C:\Users\Zichqec\OneDrive OPENSSL_ia32cap=~0x200000200000000 OS=Windows_NT Path=F:\Stuff\SSP\;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;F:\Stuff\Programs\QT Lite\QTSystem;C:\Program Files (x86)\Brackets\command;F:\Stuff\Python\Python-3.9\Scripts\;F:\Stuff\Python\Python-3.9\;C:\Users\Zichqec\AppData\Local\Microsoft\WindowsApps;C:\Users\Zichqec\AppData\Local\GitHubDesktop\bin;F:\Stuff\Programs\Microsoft VS Code\bin;C:\Users\Zichqec\AppData\Local\Microsoft\WindowsApps; PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE=x86 PROCESSOR_ARCHITEW6432=AMD64 PROCESSOR_IDENTIFIER=AMD64 Family 23 Model 8 Stepping 2, AuthenticAMD PROCESSOR_LEVEL=23 PROCESSOR_REVISION=0802 ProgramData=C:\ProgramData ProgramFiles=C:\Program Files (x86) ProgramFiles(x86)=C:\Program Files (x86) ProgramW6432=C:\Program Files PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules PUBLIC=C:\Users\Public SESSIONNAME=Console SystemDrive=C: SystemRoot=C:\WINDOWS TEMP=C:\Users\Zichqec\AppData\Local\Temp TMP=C:\Users\Zichqec\AppData\Local\Temp USERDOMAIN=VANTA-BLACK USERDOMAIN_ROAMINGPROFILE=VANTA-BLACK USERNAME=Zichqec USERPROFILE=C:\Users\Zichqec windir=C:\WINDOWS Loaded Drivers: -3d380000 : mcupdate_AuthenticAMD.dll -3d3b0000 : hal.dll -3d3c0000 : kd.dll -3d3d0000 : tm.sys -3d400000 : CLFS.SYS -3d470000 : PSHED.dll -3d490000 : BOOTVID.dll -3d4a0000 : clipsp.sys -3d5c0000 : FLTMGR.SYS -3d630000 : ksecdd.sys -3d660000 : msrpc.sys -3d6d0000 : cmimcext.sys -3d6e0000 : werkernel.sys -3d700000 : ntosext.sys -3d710000 : WDFLDR.SYS -3d730000 : SleepStudyHelper.sys -3d740000 : WppRecorder.sys -3d760000 : SgrmAgent.sys -3ea00000 : ntoskrnl.exe -42c00000 : CI.dll -42cf0000 : cng.sys -42db0000 : Wdf01000.sys -42e90000 : acpiex.sys -42ec0000 : mssecflt.sys -42f10000 : ACPI.sys -42fe0000 : WMILIB.SYS -43010000 : intelpep.sys -43080000 : WindowsTrustedRT.sys -430a0000 : IntelTA.sys -430b0000 : WindowsTrustedRTProxy.sys -430c0000 : pcw.sys -430e0000 : msisadrv.sys -430f0000 : pci.sys -43170000 : vdrvroot.sys -43190000 : amdkmpfd.sys -431b0000 : pdc.sys -431e0000 : CEA.sys -43200000 : partmgr.sys -43240000 : spaceport.sys -432f0000 : volmgr.sys -43310000 : volmgrx.sys -43380000 : mountmgr.sys -433a0000 : storahci.sys -433e0000 : EhStorClass.sys -43400000 : storport.sys -434c0000 : fileinfo.sys -434e0000 : Wof.sys -435a0000 : Ntfs.sys -43880000 : Fs_Rec.sys -43890000 : ndis.sys -43a00000 : NETIO.SYS -43aa0000 : ksecpkg.sys -43ae0000 : amdpsp.sys -43b20000 : tcpip.sys -43e10000 : fwpkclnt.sys -43e90000 : wfplwfs.sys -43ed0000 : fvevol.sys -43fa0000 : volume.sys -43fb0000 : volsnap.sys -44020000 : rdyboost.sys -44080000 : mup.sys -440b0000 : iorate.sys -440f0000 : disk.sys -44110000 : CLASSPNP.SYS -4c4e0000 : cdrom.sys -4c520000 : filecrypt.sys -4c540000 : tbs.sys -4c550000 : Null.SYS -4c560000 : Beep.SYS -4c570000 : dxgkrnl.sys -4c920000 : watchdog.sys -4c940000 : BasicDisplay.sys -4c960000 : BasicRender.sys -4c980000 : Npfs.SYS -4c9a0000 : Msfs.SYS -4c9e0000 : crashdmp.sys -4ca00000 : TDI.SYS -4ca20000 : netbt.sys -4ca80000 : afunix.sys -4caa0000 : afd.sys -4cb50000 : vwififlt.sys -4cb70000 : pacer.sys -4cba0000 : ndiscap.sys -4cbc0000 : netbios.sys -4cbe0000 : Vid.sys -4cc90000 : winhvr.sys -4ccc0000 : rdbss.sys -4cd40000 : csc.sys -4cde0000 : nsiproxy.sys -4ce00000 : npsvctrig.sys -4ce10000 : mssmbios.sys -4ce30000 : gpuenergydrv.sys -4ce40000 : dfsc.sys -4ce90000 : fastfat.SYS -4cf00000 : bam.sys -4cf20000 : ahcache.sys -4cf70000 : CompositeBus.sys -4cf90000 : kdnic.sys -4cfa0000 : umbus.sys -4cfc0000 : USBXHCI.SYS -4d060000 : ucx01000.sys -4d0b0000 : rt640x64.sys -4d5b0000 : CimFS.SYS -4d5d0000 : tdx.sys -4dc00000 : lvrs64.sys -4dc60000 : dxgmms2.sys -4dd50000 : rfcomm.sys -4dd90000 : BthEnum.sys -4ddc0000 : bthpan.sys -4ddf0000 : Microsoft.Bluetooth.Legacy.LEEnumerator.sys -4de20000 : monitor.sys -4de40000 : BthA2dp.sys -4de90000 : btampm.sys -4deb0000 : Microsoft.Bluetooth.AvrcpTransport.sys -4ded0000 : bthhfenum.sys -4df00000 : hidbth.sys -4df30000 : luafv.sys -4df60000 : wcifs.sys -4dfa0000 : cldflt.sys -4e030000 : storqosflt.sys -4e050000 : bindflt.sys -4e080000 : mmcss.sys -4e0a0000 : BthHfAud.sys -4e0c0000 : mslldp.sys -4e110000 : dump_diskdump.sys -4e160000 : dump_storahci.sys -4e1c0000 : dump_dumpfve.sys -4e200000 : lltdio.sys -4e220000 : wanarp.sys -4e240000 : rspndr.sys -4e260000 : msquic.sys -4e2c0000 : HTTP.sys -4e450000 : bowser.sys -4e480000 : mpsdrv.sys -4e4a0000 : mrxsmb.sys -4e540000 : mrxsmb20.sys -4e590000 : WSDScan.sys -4e5a0000 : WSDPrint.sys -4e5b0000 : srvnet.sys -4e610000 : Ndu.sys -4e640000 : peauth.sys -4e720000 : tcpipreg.sys -4e740000 : srv2.sys -4e810000 : rassstp.sys -4e830000 : NDProxy.sys -4e850000 : AgileVpn.sys -4e880000 : rasl2tp.sys -4e8b0000 : raspptp.sys -4e8e0000 : raspppoe.sys -4e900000 : ndistapi.sys -4e910000 : ndiswan.sys -4e970000 : condrv.sys -4e9b0000 : AMDPCIDev.sys -4ea70000 : WdFilter.sys -4eae0000 : WdNisDrv.sys -4eb00000 : lvuvc64.sys -4ef90000 : usbaudio.sys -4efd0000 : MpKslDrv.sys -51c10000 : parport.sys -51c30000 : serial.sys -51c50000 : serenum.sys -51c60000 : amdgpio2.sys -51c70000 : msgpioclx.sys -51cb0000 : wmiacpi.sys -51cc0000 : amdppm.sys -51d00000 : amdgpio3.sys -51d10000 : UEFI.sys -51d20000 : NdisVirtualBus.sys -51d30000 : swenum.sys -51d40000 : wachidrouter.sys -51d70000 : mshidkmdf.sys -51d80000 : HIDCLASS.SYS -51dc0000 : HIDPARSE.SYS -51de0000 : rdpbus.sys -51df0000 : mouhid.sys -51e10000 : wacomrouterfilter.sys -51e20000 : mouclass.sys -51e40000 : UsbHub3.sys -51ef0000 : USBD.SYS -51f00000 : AtihdWT6.sys -51f20000 : ksthunk.sys -51f30000 : HdAudio.sys -51fa0000 : Nahimic_Mirroring.sys -51fc0000 : usbccgp.sys -52000000 : hidusb.sys -52020000 : kbdhid.sys -52040000 : kbdclass.sys -52060000 : bcbtums.sys -520a0000 : BTHport.sys -52230000 : cdfs.sys -52250000 : BTHUSB.sys -526a0000 : amdkmdag.sys -56ab0000 : HDAudBus.sys -56ae0000 : portcls.sys -56b50000 : drmk.sys -56b80000 : ks.sys -6fe40000 : win32k.sys -70320000 : win32kbase.sys -70cf0000 : win32kfull.sys -710b0000 : cdd.dll Executing Processes: [With ToolHelp32] -00000000 : [System Process] (16 Threads.) -00000004 : System (233 Threads.) -000000ac : Registry (4 Threads.) -00000270 : smss.exe (2 Threads.) -000002e0 : csrss.exe (14 Threads.) -00000378 : wininit.exe (1 Threads.) -00000380 : csrss.exe (14 Threads.) -000003dc : winlogon.exe (5 Threads.) -00000204 : services.exe (5 Threads.) -00000294 : lsass.exe (8 Threads.) -0000041c : svchost.exe (12 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000043c : fontdrvhost.exe (5 Threads.) 10.0.19041.906 - Usermode Font Driver Host © Microsoft Corporation. All rights reserved. -00000438 : fontdrvhost.exe (5 Threads.) 10.0.19041.906 - Usermode Font Driver Host © Microsoft Corporation. All rights reserved. -000004a4 : svchost.exe (10 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000004d8 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000051c : dwm.exe (18 Threads.) -00000584 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000588 : svchost.exe (8 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000594 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000059c : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000062c : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000634 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000694 : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000006cc : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000740 : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000076c : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000780 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000007c8 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000007f4 : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000049c : atiesrxx.exe (4 Threads.) -0000085c : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000864 : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000890 : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000008b0 : svchost.exe (7 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000008e8 : svchost.exe (8 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000914 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000984 : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000098c : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000009bc : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000009c8 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000ac8 : dasHost.exe (2 Threads.) -00000ad0 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000ad8 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000ae8 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000b50 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000b64 : Memory Compression (286 Threads.) -00000b8c : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000b94 : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000008d4 : svchost.exe (11 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000508 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000c70 : svchost.exe (9 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000c98 : dasHost.exe (1 Threads.) -00000cec : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000cf8 : svchost.exe (7 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000d30 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000da4 : spoolsv.exe (11 Threads.) -00000ddc : svchost.exe (12 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000dfc : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000ef8 : svchost.exe (13 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000f00 : svchost.exe (16 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000f08 : svchost.exe (7 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000f10 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000f18 : svchost.exe (21 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000f20 : svchost.exe (13 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000f28 : escsvc64.exe (2 Threads.) -00000f30 : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000f38 : BtwRSupportService.exe (3 Threads.) -00000f40 : NahimicService.exe (7 Threads.) -00000f48 : WTabletServicePro.exe (4 Threads.) -00000f50 : PMAService.exe (4 Threads.) -00000f6c : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001014 : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001044 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000010f4 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001128 : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001174 : svchost.exe (13 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000ea8 : atieclxx.exe (7 Threads.) -0000142c : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001484 : svchost.exe (7 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001784 : sihost.exe (27 Threads.) -000017b0 : svchost.exe (7 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000017e0 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000166c : taskhostw.exe (6 Threads.) -000014ec : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001890 : explorer.exe (151 Threads.) 10.0.19041.1023 - Windows Explorer © Microsoft Corporation. All rights reserved. -000018b8 : svchost.exe (8 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000018d4 : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001a04 : WmiPrvSE.exe (7 Threads.) 10.0.19041.546 - WMI Provider Host © Microsoft Corporation. All rights reserved. -00001b30 : svchost.exe (7 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000a80 : StartMenuExperienceHost.exe (9 Threads.) -00001c5c : RuntimeBroker.exe (3 Threads.) -00001d18 : SearchApp.exe (48 Threads.) -00001d38 : SearchIndexer.exe (19 Threads.) 7.0.19041.1023 - Microsoft Windows Search Indexer © Microsoft Corporation. All rights reserved. -00001db8 : RuntimeBroker.exe (6 Threads.) -00001e8c : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001fd8 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00002278 : GoogleCrashHandler.exe (3 Threads.) -00002280 : GoogleCrashHandler64.exe (3 Threads.) -000021a0 : svchost.exe (7 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00002300 : ctfmon.exe (11 Threads.) 10.0.19041.1 - CTF Loader © Microsoft Corporation. All rights reserved. -00002330 : TabTip.exe (6 Threads.) -00001394 : TextInputHost.exe (12 Threads.) -00002520 : Wacom_TabletUser.exe (3 Threads.) -00002558 : WacomHost.exe (1 Threads.) -000025e8 : Wacom_Tablet.exe (27 Threads.) -00002618 : Wacom_TouchUser.exe (14 Threads.) -00001710 : nahimicNotifSys.exe (12 Threads.) -00002500 : RuntimeBroker.exe (1 Threads.) -000006a0 : SecurityHealthSystray.exe (1 Threads.) -0000275c : SecurityHealthService.exe (6 Threads.) -000026cc : steam.exe (29 Threads.) -00001d60 : ShellExperienceHost.exe (27 Threads.) -00001f28 : RuntimeBroker.exe (6 Threads.) -00001020 : steamwebhelper.exe (18 Threads.) -000014f4 : SteamService.exe (4 Threads.) -00001550 : steamwebhelper.exe (6 Threads.) -00002340 : steamwebhelper.exe (30 Threads.) -00000fa0 : steamwebhelper.exe (8 Threads.) -0000249c : Discord.exe (34 Threads.) -00002270 : googledrivesync.exe (1 Threads.) -000027fc : Discord.exe (7 Threads.) -00001920 : Discord.exe (30 Threads.) -000005bc : Discord.exe (8 Threads.) -000028a4 : GyStation.exe (20 Threads.) -000029cc : RadeonSoftware.exe (49 Threads.) -00002be8 : E_YATIWBE.EXE (1 Threads.) -00002958 : steamwebhelper.exe (18 Threads.) -00002964 : steamwebhelper.exe (20 Threads.) -00002a50 : steamwebhelper.exe (18 Threads.) -00002c24 : googledrivesync.exe (40 Threads.) -00002d20 : DeepL.exe (67 Threads.) -00002dc4 : Discord.exe (8 Threads.) -00002b7c : audiodg.exe (4 Threads.) -00002f40 : CefSharp.BrowserSubprocess.exe (33 Threads.) -0000284c : CefSharp.BrowserSubprocess.exe (11 Threads.) -00002fa0 : CefSharp.BrowserSubprocess.exe (18 Threads.) -00003078 : svchost.exe (12 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000030c8 : EEventManager.exe (4 Threads.) -0000313c : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000032a8 : FUFAXRCV.exe (5 Threads.) -00003394 : FUFAXSTM.exe (3 Threads.) -000033e4 : AMDRSServ.exe (97 Threads.) -00003150 : amdow.exe (25 Threads.) -0000332c : jusched.exe (2 Threads.) -00003358 : svchost.exe (12 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000af4 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001678 : ApplicationFrameHost.exe (4 Threads.) -00000b60 : Calculator.exe (23 Threads.) -0000044c : RuntimeBroker.exe (1 Threads.) -00002b90 : SgrmBroker.exe (6 Threads.) -000037a4 : svchost.exe (8 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000023f0 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000007ec : CompPkgSrv.exe (1 Threads.) -00000ed4 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00003910 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00003bc0 : dllhost.exe (5 Threads.) 10.0.19041.546 - COM Surrogate © Microsoft Corporation. All rights reserved. -00003ff0 : UserOOBEBroker.exe (4 Threads.) -00001818 : brave.exe (28 Threads.) -000027b0 : brave.exe (7 Threads.) -00001c80 : brave.exe (9 Threads.) -00003edc : brave.exe (14 Threads.) -000035a8 : brave.exe (8 Threads.) -00003f7c : brave.exe (7 Threads.) -00002d1c : brave.exe (16 Threads.) -00003ff4 : brave.exe (15 Threads.) -0000095c : brave.exe (17 Threads.) -00003788 : brave.exe (7 Threads.) -00002c90 : brave.exe (15 Threads.) -00003678 : brave.exe (15 Threads.) -00003c60 : brave.exe (19 Threads.) -00002110 : brave.exe (22 Threads.) -00003838 : brave.exe (15 Threads.) -0000356c : brave.exe (11 Threads.) -00003874 : brave.exe (16 Threads.) -000005d0 : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000031e8 : SystemSettingsBroker.exe (2 Threads.) -0000139c : LockApp.exe (14 Threads.) -00003938 : RuntimeBroker.exe (3 Threads.) -0000195c : notepad++.exe (2 Threads.) -00001ed0 : brave.exe (17 Threads.) -000027d8 : brave.exe (15 Threads.) -00003b70 : brave.exe (15 Threads.) -00001554 : brave.exe (21 Threads.) -00000684 : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001f80 : svchost.exe (15 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000b20 : brave.exe (16 Threads.) -00001c18 : brave.exe (15 Threads.) -0000218c : brave.exe (16 Threads.) -00001d30 : brave.exe (16 Threads.) -00003850 : brave.exe (15 Threads.) -00001440 : brave.exe (15 Threads.) -00001530 : brave.exe (15 Threads.) -00001f20 : brave.exe (15 Threads.) -00003c10 : brave.exe (15 Threads.) -00001814 : brave.exe (17 Threads.) -00000408 : brave.exe (15 Threads.) -00001944 : SystemSettings.exe (18 Threads.) -00002c30 : SettingSyncHost.exe (2 Threads.) 10.0.19041.746 - Host Process for Setting Synchronization © Microsoft Corporation. All rights reserved. -00001b70 : brave.exe (15 Threads.) -00003930 : brave.exe (16 Threads.) -000012e0 : brave.exe (18 Threads.) -00001f8c : brave.exe (15 Threads.) -00002044 : brave.exe (15 Threads.) -00004314 : brave.exe (18 Threads.) -00003064 : GitHubDesktop.exe (25 Threads.) -00003524 : GitHubDesktop.exe (29 Threads.) -00001540 : GitHubDesktop.exe (8 Threads.) -00000398 : GitHubDesktop.exe (23 Threads.) -0000413c : brave.exe (15 Threads.) -00000678 : svchost.exe (11 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000479c : brave.exe (16 Threads.) -00003998 : sai2.exe (20 Threads.) -00004438 : brave.exe (15 Threads.) -00004024 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000464c : brave.exe (15 Threads.) -00002698 : brave.exe (16 Threads.) -00004510 : brave.exe (15 Threads.) -000045e8 : brave.exe (27 Threads.) -000020d8 : brave.exe (17 Threads.) -000046d8 : brave.exe (17 Threads.) -00004a84 : brave.exe (15 Threads.) -00004b78 : brave.exe (15 Threads.) -000017cc : brave.exe (15 Threads.) -0000395c : brave.exe (15 Threads.) ==> -000019f4 : ssp.exe (59 Threads.) 2.5.7.3000 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ -00004890 : brave.exe (15 Threads.) -0000499c : brave.exe (15 Threads.) -000043c4 : brave.exe (15 Threads.) -00004150 : brave.exe (16 Threads.) -00000228 : brave.exe (15 Threads.) -00004298 : brave.exe (16 Threads.) -00003680 : brave.exe (16 Threads.) -000052b8 : YourPhone.exe (22 Threads.) -00005564 : RuntimeBroker.exe (4 Threads.) -000056e8 : brave.exe (17 Threads.) -00004f58 : brave.exe (15 Threads.) -0000388c : brave.exe (15 Threads.) -0000509c : brave.exe (15 Threads.) -00004d6c : TrustedInstaller.exe (5 Threads.) -00005568 : TiWorker.exe (4 Threads.) -00004bc8 : MusNotifyIcon.exe (3 Threads.) -00002338 : MsMpEng.exe (55 Threads.) -00005638 : NisSrv.exe (7 Threads.) -00000d74 : Discord.exe (45 Threads.) -00004d78 : MoUsoCoreWorker.exe (10 Threads.) -0000175c : brave.exe (17 Threads.) -00005160 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00005b38 : SearchProtocolHost.exe (5 Threads.) 7.0.19041.1023 - Microsoft Windows Search Protocol Host © Microsoft Corporation. All rights reserved. -000047a8 : brave.exe (20 Threads.) -00003bec : brave.exe (15 Threads.) -000047b8 : tama.exe (1 Threads.) -000058fc : DataExchangeHost.exe (2 Threads.) -00003434 : brave.exe (45 Threads.) -00005d98 : Microsoft.Photos.exe (18 Threads.) -00005c28 : RuntimeBroker.exe (6 Threads.) -00005e28 : brave.exe (14 Threads.) -00001db4 : WmiPrvSE.exe (5 Threads.) 10.0.19041.546 - WMI Provider Host © Microsoft Corporation. All rights reserved. -00005f5c : PMA.exe (3 Threads.) -00002b08 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000058c4 : SearchFilterHost.exe (3 Threads.) 7.0.19041.1023 - Microsoft Windows Search Filter Host © Microsoft Corporation. All rights reserved. Executing Threads: [With ToolHelp32] -0000084c : 8(0) -00002128 : 8(0) -0000495c : 8(0) -0000333c : 8(0) -00004818 : 8(0) -0000418c : 15(0) -000005b0 : 8(0) -00003884 : 8(0) -000041e4 : 9(0) -00004074 : 7(0) -00003e50 : 8(0) -00002170 : 8(0) -00003b8c : 7(0) -000044fc : 7(0) -00004080 : 8(0) -0000405c : 8(0) -00002dc0 : 8(0) -00002dcc : 8(0) -000040a8 : 8(0) -0000422c : 7(0) -00004598 : 7(0) -000043b4 : 8(0) -00001994 : 8(0) -000049a0 : 7(0) -00001bec : 7(0) -00003518 : 8(0) -00004bac : 8(0) -000044f8 : 7(0) -00001d84 : 7(0) -0000312c : 8(0) -000005c0 : 15(0) -0000556c : 15(0) -00005008 : 15(0) -00005554 : 15(0) -000051d0 : 15(0) -00005330 : 15(0) -00005784 : 15(0) -00004274 : 15(0) -000026b0 : 15(0) -00003340 : 15(0) -00000c0c : 15(0) -0000300c : 15(0) -00003ff8 : 15(0) -00004e00 : 15(0) -00003cfc : 15(0) -000051d8 : 9(0) -000057b0 : 8(0) -000041c4 : 22(0) -00005b20 : 8(0) -00005b8c : 7(0) -000056bc : 7(0) -000003f4 : 8(0) -00000c64 : 8(0) -00001574 : 7(0) -00003e18 : 7(0) -00005cec : 8(0) -000040a4 : 8(0) ==> -00005c7c : 7(0) -00005664 : 7(0) Executing Services: [With SCM/NT] ---AJRouter (AllJoyn Router Service) - Stopped/Paused ---ALG (Application Layer Gateway Service) - Stopped/Paused ***AMD External Events Utility (AMD External Events Utility) - Running ---AppIDSvc (Application Identity) - Stopped/Paused ***Appinfo (Application Information) - Running ---AppMgmt (Application Management) - Stopped/Paused ---AppReadiness (App Readiness) - Stopped/Paused ---AppVClient (Microsoft App-V Client) - Stopped/Paused ***AppXSvc (AppX Deployment Service (AppXSVC)) - Running ---AssignedAccessManagerSvc (AssignedAccessManager Service) - Stopped/Paused ***AudioEndpointBuilder (Windows Audio Endpoint Builder) - Running ***Audiosrv (Windows Audio) - Running ---autotimesvc (Cellular Time) - Stopped/Paused ---AxInstSV (ActiveX Installer (AxInstSV)) - Stopped/Paused ***BcmBtRSupport (Bluetooth Driver Management Service) - Running ---BDESVC (BitLocker Drive Encryption Service) - Stopped/Paused ***BFE (Base Filtering Engine) - Running ---BITS (Background Intelligent Transfer Service) - Stopped/Paused ---brave (Brave Update Service (brave)) - Stopped/Paused ---bravem (Brave Update Service (bravem)) - Stopped/Paused ***BrokerInfrastructure (Background Tasks Infrastructure Service) - Running ***BTAGService (Bluetooth Audio Gateway Service) - Running ***BthAvctpSvc (AVCTP service) - Running ***bthserv (Bluetooth Support Service) - Running ***camsvc (Capability Access Manager Service) - Running ***CDPSvc (Connected Devices Platform Service) - Running ---CertPropSvc (Certificate Propagation) - Stopped/Paused ---ClipSVC (Client License Service (ClipSVC)) - Stopped/Paused ---COMSysApp (COM+ System Application) - Stopped/Paused ***CoreMessagingRegistrar (CoreMessaging) - Running ***CryptSvc (Cryptographic Services) - Running ---CscService (Offline Files) - Stopped/Paused ***DcomLaunch (DCOM Server Process Launcher) - Running ---defragsvc (Optimize drives) - Stopped/Paused ***DeviceAssociationService (Device Association Service) - Running ---DeviceInstall (Device Install Service) - Stopped/Paused ---DevQueryBroker (DevQuery Background Discovery Broker) - Stopped/Paused ***Dhcp (DHCP Client) - Running ---diagnosticshub.standardcollector.service (Microsoft (R) Diagnostics Hub Standard Collector Service) - Stopped/Paused ---diagsvc (Diagnostic Execution Service) - Stopped/Paused ***DiagTrack (Connected User Experiences and Telemetry) - Running ---DialogBlockingService (DialogBlockingService) - Stopped/Paused ***DispBrokerDesktopSvc (Display Policy Service) - Running ***DisplayEnhancementService (Display Enhancement Service) - Running ---DmEnrollmentSvc (Device Management Enrollment Service) - Stopped/Paused ---dmwappushservice (Device Management Wireless Application Protocol (WAP) Push message Routing Service) - Stopped/Paused ***Dnscache (DNS Client) - Running ---DoSvc (Delivery Optimization) - Stopped/Paused ---dot3svc (Wired AutoConfig) - Stopped/Paused ***DPS (Diagnostic Policy Service) - Running ---DsmSvc (Device Setup Manager) - Stopped/Paused ***DsSvc (Data Sharing Service) - Running ***DusmSvc (Data Usage) - Running ---Eaphost (Extensible Authentication Protocol) - Stopped/Paused ---edgeupdate (Microsoft Edge Update Service (edgeupdate)) - Stopped/Paused ---edgeupdatem (Microsoft Edge Update Service (edgeupdatem)) - Stopped/Paused ***EFS (Encrypting File System (EFS)) - Running ---embeddedmode (Embedded Mode) - Stopped/Paused ---EntAppSvc (Enterprise App Management Service) - Stopped/Paused ***Epson PMAService A (Epson PMAService A) - Running ***EpsonScanSvc (Epson Scanner Service) - Running ***EventLog (Windows Event Log) - Running ***EventSystem (COM+ Event System) - Running ---Fax (Fax) - Stopped/Paused ---fdPHost (Function Discovery Provider Host) - Stopped/Paused ---FDResPub (Function Discovery Resource Publication) - Stopped/Paused ---fhsvc (File History Service) - Stopped/Paused ***FontCache (Windows Font Cache Service) - Running ---FrameServer (Windows Camera Frame Server) - Stopped/Paused ---GoogleChromeElevationService (Google Chrome Elevation Service) - Stopped/Paused ---gpsvc (Group Policy Client) - Stopped/Paused ---GraphicsPerfSvc (GraphicsPerfSvc) - Stopped/Paused ---gupdate (Google Update Service (gupdate)) - Stopped/Paused ---gupdatem (Google Update Service (gupdatem)) - Stopped/Paused ***hidserv (Human Interface Device Service) - Running ---HvHost (HV Host Service) - Stopped/Paused ---icssvc (Windows Mobile Hotspot Service) - Stopped/Paused ---IKEEXT (IKE and AuthIP IPsec Keying Modules) - Stopped/Paused ***InstallService (Microsoft Store Install Service) - Running ***iphlpsvc (IP Helper) - Running ---IpxlatCfgSvc (IP Translation Configuration Service) - Stopped/Paused ***KeyIso (CNG Key Isolation) - Running ---KtmRm (KtmRm for Distributed Transaction Coordinator) - Stopped/Paused ***LanmanServer (Server) - Running ***LanmanWorkstation (Workstation) - Running ***lfsvc (Geolocation Service) - Running ***LicenseManager (Windows License Manager Service) - Running ---lltdsvc (Link-Layer Topology Discovery Mapper) - Stopped/Paused ***lmhosts (TCP/IP NetBIOS Helper) - Running ***LSM (Local Session Manager) - Running ---LxpSvc (Language Experience Service) - Stopped/Paused ---MapsBroker (Downloaded Maps Manager) - Stopped/Paused ---MicrosoftEdgeElevationService (Microsoft Edge Elevation Service) - Stopped/Paused ---MixedRealityOpenXRSvc (Windows Mixed Reality OpenXR Service) - Stopped/Paused ---MozillaMaintenance (Mozilla Maintenance Service) - Stopped/Paused ***mpssvc (Windows Defender Firewall) - Running ---MSDTC (Distributed Transaction Coordinator) - Stopped/Paused ---MSiSCSI (Microsoft iSCSI Initiator Service) - Stopped/Paused ---msiserver (Windows Installer) - Stopped/Paused ---MsKeyboardFilter (Microsoft Keyboard Filter) - Stopped/Paused ***NahimicService (Nahimic service) - Running ---NaturalAuthentication (Natural Authentication) - Stopped/Paused ---NcaSvc (Network Connectivity Assistant) - Stopped/Paused ***NcbService (Network Connection Broker) - Running ---NcdAutoSetup (Network Connected Devices Auto-Setup) - Stopped/Paused ---Netlogon (Netlogon) - Stopped/Paused ---Netman (Network Connections) - Stopped/Paused ***netprofm (Network List Service) - Running ---NetSetupSvc (Network Setup Service) - Stopped/Paused ---NetTcpPortSharing (Net.Tcp Port Sharing Service) - Stopped/Paused ---NgcCtnrSvc (Microsoft Passport Container) - Stopped/Paused ---NgcSvc (Microsoft Passport) - Stopped/Paused ***NlaSvc (Network Location Awareness) - Running ***nsi (Network Store Interface Service) - Running ---p2pimsvc (Peer Networking Identity Manager) - Stopped/Paused ---p2psvc (Peer Networking Grouping) - Stopped/Paused ***PcaSvc (Program Compatibility Assistant Service) - Running ---PeerDistSvc (BranchCache) - Stopped/Paused ---perceptionsimulation (Windows Perception Simulation Service) - Stopped/Paused ---PerfHost (Performance Counter DLL Host) - Stopped/Paused ***PhoneSvc (Phone Service) - Running ---pla (Performance Logs & Alerts) - Stopped/Paused ***PlugPlay (Plug and Play) - Running ---PNRPAutoReg (PNRP Machine Name Publication Service) - Stopped/Paused ---PNRPsvc (Peer Name Resolution Protocol) - Stopped/Paused ---PolicyAgent (IPsec Policy Agent) - Stopped/Paused ***Power (Power) - Running ---PrintNotify (Printer Extensions and Notifications) - Stopped/Paused ***ProfSvc (User Profile Service) - Running ---PushToInstall (Windows PushToInstall Service) - Stopped/Paused ---QWAVE (Quality Windows Audio Video Experience) - Stopped/Paused ---RasAuto (Remote Access Auto Connection Manager) - Stopped/Paused ***RasMan (Remote Access Connection Manager) - Running ---RemoteAccess (Routing and Remote Access) - Stopped/Paused ---RemoteRegistry (Remote Registry) - Stopped/Paused ---RetailDemo (Retail Demo Service) - Stopped/Paused ***RmSvc (Radio Management Service) - Running ***RpcEptMapper (RPC Endpoint Mapper) - Running ---RpcLocator (Remote Procedure Call (RPC) Locator) - Stopped/Paused ***RpcSs (Remote Procedure Call (RPC)) - Running ***SamSs (Security Accounts Manager) - Running ---SCardSvr (Smart Card) - Stopped/Paused ---ScDeviceEnum (Smart Card Device Enumeration Service) - Stopped/Paused ***Schedule (Task Scheduler) - Running ---SCPolicySvc (Smart Card Removal Policy) - Stopped/Paused ---SDRSVC (Windows Backup) - Stopped/Paused ---seclogon (Secondary Logon) - Stopped/Paused ***SecurityHealthService (Windows Security Service) - Running ***SEMgrSvc (Payments and NFC/SE Manager) - Running ***SENS (System Event Notification Service) - Running ---Sense (Windows Defender Advanced Threat Protection Service) - Stopped/Paused ---SensorDataService (Sensor Data Service) - Stopped/Paused ---SensorService (Sensor Service) - Stopped/Paused ---SensrSvc (Sensor Monitoring Service) - Stopped/Paused ---SessionEnv (Remote Desktop Configuration) - Stopped/Paused ***SgrmBroker (System Guard Runtime Monitor Broker) - Running ---SharedAccess (Internet Connection Sharing (ICS)) - Stopped/Paused ---SharedRealitySvc (Spatial Data Service) - Stopped/Paused ***ShellHWDetection (Shell Hardware Detection) - Running ---shpamsvc (Shared PC Account Manager) - Stopped/Paused ---smphost (Microsoft Storage Spaces SMP) - Stopped/Paused ---SmsRouter (Microsoft Windows SMS Router Service.) - Stopped/Paused ---SNMPTRAP (SNMP Trap) - Stopped/Paused ---spectrum (Windows Perception Service) - Stopped/Paused ***Spooler (Print Spooler) - Running ---sppsvc (Software Protection) - Stopped/Paused ***SSDPSRV (SSDP Discovery) - Running ---ssh-agent (OpenSSH Authentication Agent) - Stopped/Paused ***SstpSvc (Secure Socket Tunneling Protocol Service) - Running ***StateRepository (State Repository Service) - Running ***Steam Client Service (Steam Client Service) - Running ***stisvc (Windows Image Acquisition (WIA)) - Running ***StorSvc (Storage Service) - Running ---svsvc (Spot Verifier) - Stopped/Paused ---swprv (Microsoft Software Shadow Copy Provider) - Stopped/Paused ***SysMain (SysMain) - Running ***SystemEventsBroker (System Events Broker) - Running ***TabletInputService (Touch Keyboard and Handwriting Panel Service) - Running ***TapiSrv (Telephony) - Running ---TermService (Remote Desktop Services) - Stopped/Paused ***Themes (Themes) - Running ---TieringEngineService (Storage Tiers Management) - Stopped/Paused ***TimeBrokerSvc (Time Broker) - Running ***TokenBroker (Web Account Manager) - Running ***TrkWks (Distributed Link Tracking Client) - Running ---TroubleshootingSvc (Recommended Troubleshooting Service) - Stopped/Paused ***TrustedInstaller (Windows Modules Installer) - Running ---tzautoupdate (Auto Time Zone Updater) - Stopped/Paused ---UevAgentService (User Experience Virtualization Service) - Stopped/Paused ---uhssvc (Microsoft Update Health Service) - Stopped/Paused ---UmRdpService (Remote Desktop Services UserMode Port Redirector) - Stopped/Paused ---upnphost (UPnP Device Host) - Stopped/Paused ***UserManager (User Manager) - Running ***UsoSvc (Update Orchestrator Service) - Running ---VacSvc (Volumetric Audio Compositor Service) - Stopped/Paused ***VaultSvc (Credential Manager) - Running ---vds (Virtual Disk) - Stopped/Paused ---vmicguestinterface (Hyper-V Guest Service Interface) - Stopped/Paused ---vmicheartbeat (Hyper-V Heartbeat Service) - Stopped/Paused ---vmickvpexchange (Hyper-V Data Exchange Service) - Stopped/Paused ---vmicrdv (Hyper-V Remote Desktop Virtualization Service) - Stopped/Paused ---vmicshutdown (Hyper-V Guest Shutdown Service) - Stopped/Paused ---vmictimesync (Hyper-V Time Synchronization Service) - Stopped/Paused ---vmicvmsession (Hyper-V PowerShell Direct Service) - Stopped/Paused ---vmicvss (Hyper-V Volume Shadow Copy Requestor) - Stopped/Paused ---VSS (Volume Shadow Copy) - Stopped/Paused ---VSStandardCollectorService150 (Visual Studio Standard Collector Service 150) - Stopped/Paused ---W32Time (Windows Time) - Stopped/Paused ***WaaSMedicSvc (Windows Update Medic Service) - Running ---WalletService (WalletService) - Stopped/Paused ---WarpJITSvc (WarpJITSvc) - Stopped/Paused ---wbengine (Block Level Backup Engine Service) - Stopped/Paused ***WbioSrvc (Windows Biometric Service) - Running ***Wcmsvc (Windows Connection Manager) - Running ---wcncsvc (Windows Connect Now - Config Registrar) - Stopped/Paused ***WdiServiceHost (Diagnostic Service Host) - Running ***WdiSystemHost (Diagnostic System Host) - Running ***WdNisSvc (Microsoft Defender Antivirus Network Inspection Service) - Running ---WebClient (WebClient) - Stopped/Paused ---Wecsvc (Windows Event Collector) - Stopped/Paused ---WEPHOSTSVC (Windows Encryption Provider Host Service) - Stopped/Paused ---wercplsupport (Problem Reports Control Panel Support) - Stopped/Paused ---WerSvc (Windows Error Reporting Service) - Stopped/Paused ---WFDSConMgrSvc (Wi-Fi Direct Services Connection Manager Service) - Stopped/Paused ---WiaRpc (Still Image Acquisition Events) - Stopped/Paused ***WinDefend (Microsoft Defender Antivirus Service) - Running ***WinHttpAutoProxySvc (WinHTTP Web Proxy Auto-Discovery Service) - Running ***Winmgmt (Windows Management Instrumentation) - Running ---WinRM (Windows Remote Management (WS-Management)) - Stopped/Paused ---wisvc (Windows Insider Service) - Stopped/Paused ---WlanSvc (WLAN AutoConfig) - Stopped/Paused ---wlidsvc (Microsoft Account Sign-in Assistant) - Stopped/Paused ---wlpasvc (Local Profile Assistant Service) - Stopped/Paused ---WManSvc (Windows Management Service) - Stopped/Paused ---wmiApSrv (WMI Performance Adapter) - Stopped/Paused ---WMPNetworkSvc (Windows Media Player Network Sharing Service) - Stopped/Paused ---workfolderssvc (Work Folders) - Stopped/Paused ---WpcMonSvc (Parental Controls) - Stopped/Paused ---WPDBusEnum (Portable Device Enumerator Service) - Stopped/Paused ***WpnService (Windows Push Notifications System Service) - Running ***wscsvc (Security Center) - Running ***WSearch (Windows Search) - Running ***WTabletServicePro (Wacom Professional Service) - Running ***wuauserv (Windows Update) - Running ---WwanSvc (WWAN AutoConfig) - Stopped/Paused ---XblAuthManager (Xbox Live Auth Manager) - Stopped/Paused ---XblGameSave (Xbox Live Game Save) - Stopped/Paused ---XboxGipSvc (Xbox Accessory Management Service) - Stopped/Paused ---XboxNetApiSvc (Xbox Live Networking Service) - Stopped/Paused ***AarSvc_8f7f3 (Agent Activation Runtime_8f7f3) - Running ---BcastDVRUserService_8f7f3 (GameDVR and Broadcast User Service_8f7f3) - Stopped/Paused ---BluetoothUserService_8f7f3 (Bluetooth User Support Service_8f7f3) - Stopped/Paused ***CaptureService_8f7f3 (CaptureService_8f7f3) - Running ***cbdhsvc_8f7f3 (Clipboard User Service_8f7f3) - Running ***CDPUserSvc_8f7f3 (Connected Devices Platform User Service_8f7f3) - Running ---ConsentUxUserSvc_8f7f3 (ConsentUX_8f7f3) - Stopped/Paused ---CredentialEnrollmentManagerUserSvc_8f7f3 (CredentialEnrollmentManagerUserSvc_8f7f3) - Stopped/Paused ---DeviceAssociationBrokerSvc_8f7f3 (DeviceAssociationBroker_8f7f3) - Stopped/Paused ---DevicePickerUserSvc_8f7f3 (DevicePicker_8f7f3) - Stopped/Paused ---DevicesFlowUserSvc_8f7f3 (DevicesFlow_8f7f3) - Stopped/Paused ---MessagingService_8f7f3 (MessagingService_8f7f3) - Stopped/Paused ***OneSyncSvc_8f7f3 (Sync Host_8f7f3) - Running ---PimIndexMaintenanceSvc_8f7f3 (Contact Data_8f7f3) - Stopped/Paused ---PrintWorkflowUserSvc_8f7f3 (PrintWorkflow_8f7f3) - Stopped/Paused ***UdkUserSvc_8f7f3 (Udk User Service_8f7f3) - Running ---UnistoreSvc_8f7f3 (User Data Storage_8f7f3) - Stopped/Paused ---UserDataSvc_8f7f3 (User Data Access_8f7f3) - Stopped/Paused ***WpnUserService_8f7f3 (Windows Push Notifications User Service_8f7f3) - Running Loaded Modules: [With ToolHelp32] ==> -00400000 : F:\Stuff\SSP\ssp.exe 2.5.7.3000 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ -03b70000 : F:\Stuff\SSP\plugin\eject\eject.dll 1.0.0.0 - eject Plugin Copyright (C) CSaori Project -03e00000 : F:\Stuff\SSP\plugin\stampcollection\yaya.dll 5.30.0.2 - yaya -03fa0000 : F:\Stuff\SSP\plugin\ukaten\akari.dll -042c0000 : F:\Stuff\SSP\plugin\shared_value\shared_value.dll 1.0.0.0 - Shared Value Plugin Copyright (C) CSaori Project -043b0000 : F:\Stuff\SSP\plugin\SAKNIFE\SAKNIFE.dll 1.5.3.0 - SwissArmyKnife (C) 2004 SSP BUGTRAQ -062e0000 : F:\Stuff\SSP\plugin\balloonselector\yaya.dll 5.39.2.0 - yaya -06800000 : F:\Stuff\SSP\plugin\balloonmaker\yaya.dll 5.30.0.2 - yaya -068d0000 : F:\Stuff\SSP\plugin\playlistmaker\yaya.dll 5.39.2.0 - yaya -06e00000 : F:\Stuff\SSP\plugin\group_events\yaya.dll 5.52.1.0 - yaya -08400000 : F:\Stuff\SSP\ghost\Dev\dusty_and_obsidian\ghost\master\yaya.dll 5.48.1.0 - yaya -0e690000 : F:\Stuff\SSP\ghost\Dev\flux\ghost\master\yaya.dll 5.56.3.0 - yaya -10000000 : F:\Stuff\SSP\data\language\english\resource.dll 2.5.0.2 - Language Resource DLL (C) D-EXCLAMATION / SSP BUGTRAQ -116d0000 : F:\Stuff\SSP\ghost\Dev\dusty_and_obsidian\ghost\master\time_check.dll 1.11.0.0 - -11eb0000 : F:\Stuff\SSP\ghost\Dev\hydrate\ghost\master\yaya.dll 5.48.1.0 - yaya -13530000 : F:\Stuff\SSP\ghost\LD_Aziraphale\ghost\master\aya5.dll 5.8.0.240 - aya5 -13700000 : F:\Stuff\SSP\plugin\recghost_plus\yaya.dll 5.52.1.0 - yaya -15270000 : F:\Stuff\SSP\ghost\Dev\lulo\ghost\master\yaya.dll 5.48.1.0 - yaya -18000000 : F:\Stuff\SSP\ghost\Dev\s_the_skeleton\ghost\master\yaya.dll 5.56.3.0 - yaya -19bc0000 : F:\Stuff\SSP\ghost\Dev\s_the_skeleton\ghost\master\time_check.dll 1.11.0.0 - -52a60000 : C:\Windows\System32\WMVCore.DLL 12.0.19041.1052 - Windows Media Playback/Authoring DLL © Microsoft Corporation. All rights reserved. -52c70000 : C:\Program Files (x86)\LAV Filters\x86\avresample-lav-4.dll 4.0.0.0 - Libav audio resampling library Copyright (C) 2000-2021 FFmpeg Project -52ca0000 : C:\Program Files (x86)\LAV Filters\x86\libbluray.dll -52d00000 : C:\Program Files (x86)\LAV Filters\x86\avcodec-lav-58.dll 58.131.100.0 - FFmpeg codec library Copyright (C) 2000-2021 FFmpeg Project -53e80000 : C:\Program Files (x86)\LAV Filters\x86\avformat-lav-58.dll 58.74.100.0 - FFmpeg container format library Copyright (C) 2000-2021 FFmpeg Project -54360000 : C:\Program Files (x86)\LAV Filters\x86\avutil-lav-56.dll 56.68.100.0 - FFmpeg utility library Copyright (C) 2000-2021 FFmpeg Project -54620000 : C:\Program Files (x86)\LAV Filters\x86\LAVSplitter.ax 0.75.0.0 - LAV Splitter - DirectShow Media Splitter Copyright (C) 2010-2021 Hendrik Leppkes -546b0000 : C:\WINDOWS\SYSTEM32\DUser.dll 10.0.19041.546 - Windows DirectUser Engine © Microsoft Corporation. All rights reserved. -54890000 : C:\WINDOWS\SYSTEM32\apphelp.dll 10.0.19041.928 - Application Compatibility Client Library © Microsoft Corporation. All rights reserved. -54f50000 : C:\Windows\System32\WMASF.DLL 12.0.19041.1 - Windows Media ASF DLL © Microsoft Corporation. All rights reserved. -573f0000 : C:\Windows\System32\cdp.dll 10.0.19041.844 - Microsoft (R) CDP Client API © Microsoft Corporation. All rights reserved. -57810000 : C:\Windows\System32\msvcp110_win.dll 10.0.19041.546 - Microsoft® STL110 C++ Runtime Library © Microsoft Corporation. All rights reserved. -578c0000 : C:\WINDOWS\SYSTEM32\rometadata.dll 4.8.3673.0 - Microsoft MetaData Library © Microsoft Corporation. All rights reserved. -578f0000 : C:\Windows\System32\cdprt.dll 10.0.19041.789 - Microsoft (R) CDP Client WinRT API © Microsoft Corporation. All rights reserved. -57a50000 : C:\WINDOWS\SYSTEM32\d2d1.dll 10.0.19041.546 - Microsoft D2D Library © Microsoft Corporation. All rights reserved. -57f70000 : C:\Windows\System32\Windows.UI.Xaml.dll 10.0.19041.1052 - Windows.UI.Xaml dll © Microsoft Corporation. All rights reserved. -59030000 : C:\Windows\System32\dsreg.dll 10.0.19041.964 - AD/AAD User Device Registration © Microsoft Corporation. All rights reserved. -59140000 : C:\WINDOWS\system32\pdh.dll 10.0.19041.906 - Windows Performance Data Helper DLL © Microsoft Corporation. All rights reserved. -59330000 : C:\WINDOWS\System32\netprofm.dll 10.0.19041.746 - Network List Manager © Microsoft Corporation. All rights reserved. -59460000 : C:\Windows\System32\qasf.dll 12.0.19041.1 - DirectShow ASF Support © Microsoft Corporation. All rights reserved. -594c0000 : C:\Windows\System32\UiaManager.dll 10.0.19041.746 - UiaManager © Microsoft Corporation. All rights reserved. -59550000 : F:\Stuff\SSP\plugin\discord\discord.dll 1.0.2.1 - Discord Rich Presence Plugin Copyright (C) 2018 SSP BUGTRAQ -59600000 : C:\Windows\System32\Windows.UI.Immersive.dll 10.0.19041.867 - WINDOWS.UI.IMMERSIVE © Microsoft Corporation. All rights reserved. -5e210000 : C:\WINDOWS\SYSTEM32\D3D9.DLL 10.0.19041.928 - Direct3D 9 Runtime © Microsoft Corporation. All rights reserved. -5ec70000 : C:\WINDOWS\SYSTEM32\TextShaping.dll -5ede0000 : C:\Windows\System32\deviceaccess.dll 10.0.19041.746 - Device Broker And Policy COM Server © Microsoft Corporation. All rights reserved. -5ee10000 : C:\Windows\System32\ShellCommonCommonProxyStub.dll 10.0.19041.546 - ShellCommon Common Proxy Stub © Microsoft Corporation. All rights reserved. -5ee80000 : C:\WINDOWS\SYSTEM32\usermgrcli.dll 10.0.19041.546 - UserMgr API DLL © Microsoft Corporation. All rights reserved. -5ee90000 : C:\Windows\System32\PortableDeviceTypes.dll 10.0.19041.746 - Windows Portable Device (Parameter) Types Component © Microsoft Corporation. All rights reserved. -5eec0000 : C:\WINDOWS\System32\SensorsUtilsV2.dll 10.0.19041.746 - Sensors v2 Utilities DLL © Microsoft Corporation. All rights reserved. -5eef0000 : C:\WINDOWS\system32\twinapi.dll 10.0.19041.844 - twinapi © Microsoft Corporation. All rights reserved. -5ef80000 : C:\WINDOWS\SYSTEM32\windows.staterepositorycore.dll 10.0.19041.844 - Windows StateRepository API Core © Microsoft Corporation. All rights reserved. -5f070000 : C:\WINDOWS\System32\SensorsApi.dll 10.0.19041.746 - Sensor API © Microsoft Corporation. All rights reserved. -5f0d0000 : C:\WINDOWS\SYSTEM32\policymanager.dll 10.0.19041.1023 - Policy Manager DLL © Microsoft Corporation. All rights reserved. -5f410000 : C:\Windows\System32\mp3dmod.dll 10.0.19041.1 - Microsoft MP3 Decoder DMO © Microsoft Corporation. All rights reserved. -5f430000 : C:\WINDOWS\SYSTEM32\QUARTZ.dll 10.0.19041.746 - DirectShow Runtime. © Microsoft Corporation. All rights reserved. -5f6c0000 : C:\WINDOWS\SYSTEM32\sxs.dll 10.0.19041.546 - Fusion 2.5 © Microsoft Corporation. All rights reserved. -5f9d0000 : C:\WINDOWS\SYSTEM32\ntshrui.dll 10.0.19041.844 - Shell extensions for sharing © Microsoft Corporation. All rights reserved. -5fa40000 : C:\WINDOWS\SYSTEM32\oledlg.dll 10.0.19041.746 - OLE User Interface Support © Microsoft Corporation. All rights reserved. -63aa0000 : C:\WINDOWS\System32\winrnr.dll 10.0.19041.546 - LDAP RnR Provider DLL © Microsoft Corporation. All rights reserved. -63ab0000 : C:\WINDOWS\system32\NLAapi.dll 10.0.19041.546 - Network Location Awareness 2 © Microsoft Corporation. All rights reserved. -63ad0000 : C:\WINDOWS\system32\wshbth.dll 10.0.19041.546 - Windows Sockets Helper DLL © Microsoft Corporation. All rights reserved. -63ae0000 : C:\WINDOWS\system32\pnrpnsp.dll 10.0.19041.546 - PNRP Name Space Provider © Microsoft Corporation. All rights reserved. -665b0000 : C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.844_none_11adecdf30011423\COMCTL32.dll 6.10.19041.844 - User Experience Controls Library © Microsoft Corporation. All rights reserved. -66830000 : C:\WINDOWS\SYSTEM32\srvcli.dll 10.0.19041.546 - Server Service Client DLL © Microsoft Corporation. All rights reserved. -66850000 : C:\WINDOWS\System32\CoreUIComponents.dll 10.0.19041.546 - Microsoft Core UI Components Dll © Microsoft Corporation. All rights reserved. -66ad0000 : C:\WINDOWS\System32\CoreMessaging.dll 10.0.19041.867 - Microsoft CoreMessaging Dll © Microsoft Corporation. All rights reserved. -66b70000 : C:\Windows\System32\InputHost.dll 10.0.19041.906 - InputHost © Microsoft Corporation. All rights reserved. -66c60000 : C:\WINDOWS\SYSTEM32\resourcepolicyclient.dll 10.0.19041.546 - Resource Policy Client © Microsoft Corporation. All rights reserved. -67190000 : C:\WINDOWS\SYSTEM32\DEVOBJ.dll 10.0.19041.546 - Device Information Set DLL © Microsoft Corporation. All rights reserved. -671d0000 : C:\Windows\System32\devenum.dll 10.0.19041.746 - Device enumeration. © Microsoft Corporation. All rights reserved. -68170000 : C:\WINDOWS\system32\napinsp.dll 10.0.19041.546 - E-mail Naming Shim Provider © Microsoft Corporation. All rights reserved. -68280000 : C:\WINDOWS\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.19041.1023_none_d94e0b13e107593b\gdiplus.dll 10.0.19041.1023 - Microsoft GDI+ © Microsoft Corporation. All rights reserved. -68fb0000 : C:\Windows\System32\twinapi.appcore.dll 10.0.19041.746 - twinapi.appcore © Microsoft Corporation. All rights reserved. -69140000 : C:\WINDOWS\SYSTEM32\dxgi.dll 10.0.19041.964 - DirectX Graphics Infrastructure © Microsoft Corporation. All rights reserved. -69210000 : C:\Windows\System32\dcomp.dll 10.0.19041.1023 - Microsoft DirectComposition Library © Microsoft Corporation. All rights reserved. -69380000 : C:\WINDOWS\SYSTEM32\d3d11.dll 10.0.19041.746 - Direct3D 11 Runtime © Microsoft Corporation. All rights reserved. -69560000 : C:\WINDOWS\system32\msimg32.dll 10.0.19041.546 - GDIEXT Client DLL © Microsoft Corporation. All rights reserved. -695b0000 : C:\WINDOWS\SYSTEM32\ncrypt.dll 10.0.19041.546 - Windows NCrypt Router © Microsoft Corporation. All rights reserved. -695e0000 : C:\WINDOWS\system32\DataExchange.dll 10.0.19041.746 - Data exchange © Microsoft Corporation. All rights reserved. -6c990000 : C:\WINDOWS\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atidxx32.dll 27.20.1034.6 - atidxx32.dll Copyright (C) 1998-2011 AMD Inc. -6dee0000 : C:\WINDOWS\SYSTEM32\dwrite.dll 10.0.19041.804 - Microsoft DirectX Typography Services © Microsoft Corporation. All rights reserved. -6e0f0000 : C:\WINDOWS\SYSTEM32\NTASN1.dll 10.0.19041.546 - Microsoft ASN.1 API © Microsoft Corporation. All rights reserved. -6e150000 : C:\WINDOWS\SYSTEM32\LINKINFO.dll 10.0.19041.546 - Windows Volume Tracking © Microsoft Corporation. All rights reserved. -6ee00000 : C:\Windows\System32\mfperfhelper.dll 10.0.19041.1 - MFPerf DLL © Microsoft Corporation. All rights reserved. -6f160000 : C:\WINDOWS\SYSTEM32\msdmo.dll 10.0.19041.1 - DMO Runtime © Microsoft Corporation. All rights reserved. -6f7a0000 : C:\WINDOWS\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\aticfx32.dll 27.20.1034.6 - aticfx32.dll Copyright (C) 1998-2012 AMD Inc. -702d0000 : C:\WINDOWS\system32\explorerframe.dll 10.0.19041.1023 - ExplorerFrame © Microsoft Corporation. All rights reserved. -70820000 : C:\WINDOWS\system32\Oleacc.dll 7.2.19041.746 - Active Accessibility Core Component © Microsoft Corporation. All rights reserved. -708b0000 : C:\WINDOWS\SYSTEM32\D3DSCache.dll 10.0.19041.746 - Microsoft (R) D3D Shader Caching Library © Microsoft Corporation. All rights reserved. -709d0000 : C:\WINDOWS\SYSTEM32\dxcore.dll 10.0.19041.546 - DXCore © Microsoft Corporation. All rights reserved. -70a00000 : C:\WINDOWS\SYSTEM32\amdihk32.dll 2.0.0.1788 - Radeon Settings: Host Service Copyright (C) 2020 Advanced Micro Devices, Inc. -70a30000 : C:\WINDOWS\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atiuxpag.dll 27.20.1034.6 - atiuxpag.dll Copyright (C) 2007 Advanced Micro Devices, Inc. -70ae0000 : C:\WINDOWS\SYSTEM32\RTWorkQ.DLL 10.0.19041.546 - Realtime WorkQueue DLL © Microsoft Corporation. All rights reserved. -70b10000 : C:\WINDOWS\SYSTEM32\mfplat.DLL 10.0.19041.746 - Media Foundation Platform DLL © Microsoft Corporation. All rights reserved. -70c90000 : C:\WINDOWS\SYSTEM32\mscms.dll 10.0.19041.746 - Microsoft Color Matching System DLL © Microsoft Corporation. All rights reserved. -70dc0000 : C:\WINDOWS\system32\directmanipulation.dll 10.0.19041.964 - Microsoft Direct Manipulation Component © Microsoft Corporation. All rights reserved. -72710000 : C:\Windows\System32\OneCoreUAPCommonProxyStub.dll 10.0.19041.1023 - OneCoreUAP Common Proxy Stub © Microsoft Corporation. All rights reserved. -72ab0000 : C:\Windows\System32\iertutil.dll 11.0.19041.1023 - Run time utility for Internet Explorer © Microsoft Corporation. All rights reserved. -72e70000 : C:\WINDOWS\SYSTEM32\WSOCK32.dll 10.0.19041.1 - Windows Socket 32-Bit DLL © Microsoft Corporation. All rights reserved. -72e80000 : C:\WINDOWS\system32\rsaenh.dll 10.0.19041.1052 - Microsoft Enhanced Cryptographic Provider © Microsoft Corporation. All rights reserved. -72eb0000 : C:\WINDOWS\SYSTEM32\CRYPTSP.dll 10.0.19041.546 - Cryptographic Service Provider API © Microsoft Corporation. All rights reserved. -73090000 : C:\WINDOWS\SYSTEM32\ntmarta.dll 10.0.19041.546 - Windows NT MARTA provider © Microsoft Corporation. All rights reserved. -730c0000 : C:\WINDOWS\SYSTEM32\cscapi.dll 10.0.19041.546 - Offline Files Win32 API © Microsoft Corporation. All rights reserved. -730d0000 : C:\WINDOWS\SYSTEM32\WINMM.dll 10.0.19041.546 - MCI API DLL © Microsoft Corporation. All rights reserved. -73100000 : C:\WINDOWS\system32\dwmapi.dll 10.0.19041.746 - Microsoft Desktop Window Manager API © Microsoft Corporation. All rights reserved. -731c0000 : C:\WINDOWS\SYSTEM32\textinputframework.dll 10.0.19041.964 - "TextInputFramework.DYNLINK" © Microsoft Corporation. All rights reserved. -73280000 : C:\WINDOWS\SYSTEM32\CRYPTBASE.dll 10.0.19041.546 - Base cryptographic API DLL © Microsoft Corporation. All rights reserved. -732a0000 : C:\WINDOWS\SYSTEM32\WININET.dll 11.0.19041.1052 - Internet Extensions for Win32 © Microsoft Corporation. All rights reserved. -73710000 : C:\WINDOWS\System32\fwpuclnt.dll 10.0.19041.964 - FWP/IPsec User-Mode API © Microsoft Corporation. All rights reserved. -73770000 : C:\Windows\System32\WindowManagementAPI.dll -737f0000 : C:\Windows\System32\Windows.UI.dll 10.0.19041.746 - Windows Runtime UI Foundation DLL © Microsoft Corporation. All rights reserved. -738f0000 : C:\WINDOWS\SYSTEM32\DSOUND.DLL 10.0.19041.1 - DirectSound © Microsoft Corporation. All rights reserved. -73990000 : C:\WINDOWS\SYSTEM32\VERSION.dll 10.0.19041.546 - Version Checking and File Installation Libraries © Microsoft Corporation. All rights reserved. -739a0000 : C:\WINDOWS\SYSTEM32\ColorAdapterClient.dll 10.0.19041.546 - Microsoft Color Adapter Client © Microsoft Corporation. All rights reserved. -739b0000 : C:\WINDOWS\SYSTEM32\atlthunk.dll 10.0.19041.546 - atlthunk.dll © Microsoft Corporation. All rights reserved. -73a30000 : C:\WINDOWS\SYSTEM32\DNSAPI.dll 10.0.19041.1023 - DNS Client API DLL © Microsoft Corporation. All rights reserved. -73ad0000 : C:\WINDOWS\SYSTEM32\iphlpapi.dll 10.0.19041.546 - IP Helper API © Microsoft Corporation. All rights reserved. -73b10000 : C:\WINDOWS\system32\mswsock.dll 10.0.19041.546 - Microsoft Windows Sockets 2.0 Service Provider © Microsoft Corporation. All rights reserved. -73b70000 : C:\Windows\System32\rasadhlp.dll 10.0.19041.546 - Remote Access AutoDial Helper © Microsoft Corporation. All rights reserved. -73b80000 : C:\WINDOWS\SYSTEM32\midimap.dll 10.0.19041.488 - Microsoft MIDI Mapper © Microsoft Corporation. All rights reserved. -73b90000 : C:\WINDOWS\SYSTEM32\MSACM32.dll 10.0.19041.1 - Microsoft ACM Audio Filter © Microsoft Corporation. All rights reserved. -73bb0000 : C:\WINDOWS\SYSTEM32\msacm32.drv 10.0.19041.488 - Microsoft Sound Mapper © Microsoft Corporation. All rights reserved. -73be0000 : C:\WINDOWS\SYSTEM32\AUDIOSES.DLL 10.0.19041.1023 - Audio Session © Microsoft Corporation. All rights reserved. -73df0000 : C:\WINDOWS\SYSTEM32\ksuser.dll 10.0.19041.1 - User CSA Library © Microsoft Corporation. All rights reserved. -73e00000 : C:\WINDOWS\SYSTEM32\wdmaud.drv 10.0.19041.1 - Winmm audio system driver © Microsoft Corporation. All rights reserved. -73e40000 : C:\WINDOWS\SYSTEM32\MMDevAPI.DLL 10.0.19041.1023 - MMDevice API © Microsoft Corporation. All rights reserved. -73ee0000 : C:\WINDOWS\system32\wshunix.dll 10.0.19041.1 - AF_UNIX Winsock2 Helper DLL © Microsoft Corporation. All rights reserved. -73ef0000 : C:\WINDOWS\System32\SensorsNativeApi.V2.dll 10.0.19041.1 - Sensors Native API (V2 stack) © Microsoft Corporation. All rights reserved. -73f40000 : C:\Windows\System32\Bcp47Langs.dll 10.0.19041.746 - BCP47 Language Classes © Microsoft Corporation. All rights reserved. -73f90000 : C:\WINDOWS\SYSTEM32\wintypes.dll 10.0.19041.1052 - Windows Base Types DLL © Microsoft Corporation. All rights reserved. -74070000 : C:\WINDOWS\SYSTEM32\winmmbase.dll 10.0.19041.1 - Base Multimedia Extension API DLL © Microsoft Corporation. All rights reserved. -74090000 : C:\WINDOWS\SYSTEM32\MSASN1.dll 10.0.19041.546 - ASN.1 Runtime APIs © Microsoft Corporation. All rights reserved. -740a0000 : C:\WINDOWS\SYSTEM32\AVRT.dll 10.0.19041.546 - Multimedia Realtime Runtime © Microsoft Corporation. All rights reserved. -74270000 : C:\WINDOWS\SYSTEM32\MLANG.dll 10.0.19041.746 - Multi Language Support DLL © Microsoft Corporation. All rights reserved. -742b0000 : C:\Windows\System32\ActXPrxy.dll 10.0.19041.844 - ActiveX Interface Marshaling Library © Microsoft Corporation. All rights reserved. -74330000 : C:\WINDOWS\System32\npmproxy.dll 10.0.19041.546 - Network List Manager Proxy © Microsoft Corporation. All rights reserved. -74340000 : C:\Windows\System32\usoapi.dll 10.0.19041.906 - Update Session Orchestrator API © Microsoft Corporation. All rights reserved. -743a0000 : C:\WINDOWS\System32\perfos.dll 10.0.19041.488 - Windows System Performance Objects DLL © Microsoft Corporation. All rights reserved. -743e0000 : C:\WINDOWS\SYSTEM32\powrprof.dll 10.0.19041.546 - Power Profile Helper DLL © Microsoft Corporation. All rights reserved. -74450000 : C:\WINDOWS\SYSTEM32\urlmon.dll 11.0.19041.1052 - OLE32 Extensions for Win32 © Microsoft Corporation. All rights reserved. -74600000 : C:\WINDOWS\SYSTEM32\edputil.dll 10.0.19041.546 - EDP util © Microsoft Corporation. All rights reserved. -74620000 : C:\WINDOWS\SYSTEM32\SspiCli.dll 10.0.19041.906 - Security Support Provider Interface © Microsoft Corporation. All rights reserved. -74650000 : C:\WINDOWS\SYSTEM32\UMPDC.dll -74660000 : C:\WINDOWS\SYSTEM32\Secur32.dll 10.0.19041.546 - Security Support Provider Interface © Microsoft Corporation. All rights reserved. -746e0000 : C:\WINDOWS\SYSTEM32\uiautomationcore.dll 7.2.19041.1023 - Microsoft UI Automation Core © Microsoft Corporation. All rights reserved. -74960000 : C:\WINDOWS\system32\uxtheme.dll 10.0.19041.746 - Microsoft UxTheme Library © Microsoft Corporation. All rights reserved. -74a30000 : C:\Windows\System32\PROPSYS.dll 7.0.19041.1023 - Microsoft Property System © Microsoft Corporation. All rights reserved. -74b00000 : C:\Windows\System32\profapi.dll 10.0.19041.844 - User Profile Basic API © Microsoft Corporation. All rights reserved. -74b20000 : C:\WINDOWS\SYSTEM32\Wldp.dll 10.0.19041.662 - Windows Lockdown Policy © Microsoft Corporation. All rights reserved. -74b50000 : C:\WINDOWS\SYSTEM32\windows.storage.dll 10.0.19041.1023 - Microsoft WinRT Storage API © Microsoft Corporation. All rights reserved. -75160000 : C:\WINDOWS\SYSTEM32\kernel.appcore.dll 10.0.19041.546 - AppModel API Host © Microsoft Corporation. All rights reserved. -75180000 : C:\WINDOWS\SYSTEM32\USERENV.dll 10.0.19041.572 - Userenv © Microsoft Corporation. All rights reserved. -751b0000 : C:\WINDOWS\System32\USER32.dll 10.0.19041.906 - Multi-User Windows USER API Client DLL © Microsoft Corporation. All rights reserved. -75350000 : C:\WINDOWS\System32\KERNEL32.DLL 10.0.19041.1023 - Windows NT BASE API Client DLL © Microsoft Corporation. All rights reserved. -754d0000 : C:\WINDOWS\System32\normaliz.dll 10.0.19041.546 - Unicode Normalization DLL © Microsoft Corporation. All rights reserved. -754e0000 : C:\WINDOWS\System32\ucrtbase.dll 10.0.19041.789 - Microsoft® C Runtime Library © Microsoft Corporation. All rights reserved. -75600000 : C:\WINDOWS\System32\ole32.dll 10.0.19041.746 - Microsoft OLE for Windows © Microsoft Corporation. All rights reserved. -756f0000 : C:\WINDOWS\System32\msvcp_win.dll 10.0.19041.789 - Microsoft® C Runtime Library © Microsoft Corporation. All rights reserved. -75770000 : C:\WINDOWS\System32\bcryptPrimitives.dll 10.0.19041.1023 - Windows Cryptographic Primitives Library © Microsoft Corporation. All rights reserved. -757d0000 : C:\WINDOWS\System32\OLEAUT32.dll 10.0.19041.985 - OLEAUT32.DLL © Microsoft Corporation. All rights reserved. -75870000 : C:\WINDOWS\System32\GDI32.dll 10.0.19041.746 - GDI Client DLL © Microsoft Corporation. All rights reserved. -758a0000 : C:\WINDOWS\System32\win32u.dll 10.0.19041.1052 - Win32u © Microsoft Corporation. All rights reserved. -758c0000 : C:\WINDOWS\System32\SHELL32.dll 10.0.19041.1023 - Windows Shell Common Dll © Microsoft Corporation. All rights reserved. -75e80000 : C:\WINDOWS\System32\cfgmgr32.dll 10.0.19041.546 - Configuration Manager DLL © Microsoft Corporation. All rights reserved. -75ec0000 : C:\WINDOWS\System32\MSCTF.dll 10.0.19041.964 - MSCTF Server DLL © Microsoft Corporation. All rights reserved. -76000000 : C:\WINDOWS\System32\bcrypt.dll 10.0.19041.1023 - Windows Cryptographic Primitives Library © Microsoft Corporation. All rights reserved. -76020000 : C:\WINDOWS\System32\KERNELBASE.dll 10.0.19041.1023 - Windows NT BASE API Client DLL © Microsoft Corporation. All rights reserved. -76240000 : C:\WINDOWS\System32\WS2_32.dll 10.0.19041.546 - Windows Socket 2.0 32-Bit DLL © Microsoft Corporation. All rights reserved. -762b0000 : C:\WINDOWS\System32\RPCRT4.dll 10.0.19041.1052 - Remote Procedure Call Runtime © Microsoft Corporation. All rights reserved. -76370000 : C:\WINDOWS\System32\imagehlp.dll 10.0.19041.546 - Windows NT Image Helper © Microsoft Corporation. All rights reserved. -76390000 : C:\WINDOWS\System32\NSI.dll 10.0.19041.610 - NSI User-mode interface DLL © Microsoft Corporation. All rights reserved. -763a0000 : C:\WINDOWS\System32\sechost.dll 10.0.19041.906 - Host for SCM/SDDL/LSA Lookup APIs © Microsoft Corporation. All rights reserved. -76480000 : C:\WINDOWS\System32\ADVAPI32.dll 10.0.19041.1052 - Advanced Windows 32 Base API © Microsoft Corporation. All rights reserved. -76500000 : C:\WINDOWS\System32\clbcatq.dll 2001.12.10941.16384 - COM+ Configuration Catalog © Microsoft Corporation. All rights reserved. -76590000 : C:\WINDOWS\System32\IMM32.DLL 10.0.19041.546 - Multi-User Windows IMM32 API Client DLL © Microsoft Corporation. All rights reserved. -76610000 : C:\WINDOWS\System32\SHLWAPI.dll 10.0.19041.1023 - Shell Light-weight Utility Library © Microsoft Corporation. All rights reserved. -76660000 : C:\WINDOWS\System32\shcore.dll 10.0.19041.1023 - SHCORE © Microsoft Corporation. All rights reserved. -766f0000 : C:\WINDOWS\System32\CRYPT32.dll 10.0.19041.844 - Crypto API32 © Microsoft Corporation. All rights reserved. -76860000 : C:\WINDOWS\System32\combase.dll 10.0.19041.1052 - Microsoft COM for Windows © Microsoft Corporation. All rights reserved. -76af0000 : C:\WINDOWS\System32\comdlg32.dll 10.0.19041.906 - Common Dialogs DLL © Microsoft Corporation. All rights reserved. -76d10000 : C:\WINDOWS\System32\msvcrt.dll 7.0.19041.546 - Windows NT CRT DLL © Microsoft Corporation. All rights reserved. -76dd0000 : C:\WINDOWS\System32\SETUPAPI.dll 10.0.19041.844 - Windows Setup API © Microsoft Corporation. All rights reserved. -77210000 : C:\WINDOWS\System32\gdi32full.dll 10.0.19041.928 - GDI Client DLL © Microsoft Corporation. All rights reserved. -77300000 : C:\WINDOWS\SYSTEM32\ntdll.dll 10.0.19041.1023 - NT Layer DLL © Microsoft Corporation. All rights reserved. Registers: EAX 00000030 EBX 00000000 ECX 00077350 EDX 156fdcc0 ESI 1743ec34 EDI 1743ec04 DS 002b ES 002b FS 0053 GS 002b SS/ESP/EBP 002b/1743eb4c/156fdca0 CS/EIP 0023/006d6ea7 EFlags 00010206 (Parity,Interrupt,Restart) Stack Dump: 006d73c5 00000030 02effee0 02effee0 1743eb80 00679c8a 1743ec34 1743ec04 00000030 156fdca0 00000001 00000000 00000030 1743eba4 00664d41 02effee0 1743ec04 1743ec34 00000030 00000010 00000030 02e08404 1743ebc0 00664c35 00000010 1743ec04 1743ec64 1743ec34 00000030 1743ebdc 00664b03 02effee0 1743ec04 1743ec64 1743ec34 00000030 1743ec6c 00674c2b 02effee0 1743ec04 1743ec64 1743ec34 00000030 108e92c0 02e083a0 00000004 00000000 03c4ae48 00000000 03c4ae50 00000004 b9bd79b9 fffffffe 1743ec60 72eb5194 00000000 4d87887c 1743f200 00000000 00000000 00000000 01000000 00000000 00000000 CallStack Trace: 00 : 006d6ea7/002d5ea7 [00000030,02effee0,02effee0,1743eb80] @ ssp.exe (aesni_decrypt 006d6d50 libcrypto:aesni-x86.obj->0x157) 01 : 006d73c5/002d63c5 [1743ec34,1743ec04,00000030,156fdca0] @ ssp.exe (aesni_ecb_encrypt 006d7240 libcrypto:aesni-x86.obj->0x185) 02 : 00679c8a/00278c8a [02effee0,1743ec04,1743ec34,00000030] @ ssp.exe (EVP_chacha20_poly1305 00679af0 f libcrypto:e_chacha20_poly1305.obj->0x19a) 03 : 00664d41/00263d41 [00000010,1743ec04,1743ec64,1743ec34] @ ssp.exe (EVP_EncryptUpdate 00664bf0 f libcrypto:evp_enc.obj->0x151) 04 : 00664c35/00263c35 [02effee0,1743ec04,1743ec64,1743ec34] @ ssp.exe (EVP_EncryptUpdate 00664bf0 f libcrypto:evp_enc.obj->0x45) 05 : 00664b03/00263b03 [02effee0,1743ec04,1743ec64,1743ec34] @ ssp.exe (EVP_CipherUpdate 00664ae0 f libcrypto:evp_enc.obj->0x23) 06 : 00674c2b/00273c2b [02e083a0,108e92c0,00000020,1743ed28] @ ssp.exe (EVP_SignFinal 00674980 f libcrypto:p_sign.obj->0x2ab) 07 : 00675214/00274214 [02e083a0,108e92c0,00000020,1743ed28] @ ssp.exe (EVP_SignFinal 00674980 f libcrypto:p_sign.obj->0x894) 08 : 00655e14/00254e14 [02e083a0,1743ed28,00000004,00000000] @ ssp.exe (RAND_DRBG_reseed 00655d50 f libcrypto:drbg_lib.obj->0xc4) 09 : 00656191/00255191 [02e083a0,108e94f0,00000030,00000000] @ ssp.exe (RAND_DRBG_generate 00656060 f libcrypto:drbg_lib.obj->0x131) 10 : 006579e4/002569e4 [156fd280,1743ed54,108e94f0,00000030] @ ssp.exe (rand_drbg_get_entropy 00657930 f libcrypto:rand_lib.obj->0xb4) 11 : 00655bb2/00254bb2 [156fd280,00821c44,0000001c,00000020] @ ssp.exe (RAND_DRBG_instantiate 00655af0 f libcrypto:drbg_lib.obj->0xc2) 12 : 006566c0/002556c0 [02e083a0,17db876c,00656428,1743ed9c] @ ssp.exe (RAND_DRBG_get0_master 006565b0 f libcrypto:drbg_lib.obj->0x110) 13 : 00656724/00255724 [17db876c,00000020,1743edb4,0073f569] @ ssp.exe (RAND_DRBG_get0_public 006566d0 f libcrypto:drbg_lib.obj->0x54) 14 : 0065848d/0025748d [17db876c,00000020,00000000,00000020] @ ssp.exe (RAND_bytes 00658470 f libcrypto:rand_lib.obj->0x1d) 15 : 0073f569/0033e569 [15639040,00000000,17db876c,00000020] @ ssp.exe (ssl_fill_hello_random 0073f4f0 f libssl:s3_lib.obj->0x79) 16 : 00742a0b/00341a0b [15639040,1743edfc,00000000,15639040] @ ssp.exe (tls_construct_client_hello 00742950 f libssl:statem_clnt.obj->0xbb) 17 : 00725e7d/00324e7d [00000001,00000125,15639040,00000000] @ ssp.exe (ossl_statem_accept 007255d0 f libssl:statem.obj->0x8ad) 18 : 007258f5/003248f5 [ffffffff,00000000,1743ef00,0072d410] @ ssp.exe (ossl_statem_accept 007255d0 f libssl:statem.obj->0x325) 19 : 007255be/003245be [15639040,00000125,15639040,00000125] @ ssp.exe (ossl_statem_connect 007255b0 f libssl:statem.obj->0xe) 20 : 0072d410/0032c410 [15639040,00000017,17b539d8,00000125] @ ssp.exe (ssl3_write_bytes 0072d360 f libssl:rec_layer_s3.obj->0xb0) 21 : 0073f2cc/0033e2cc [15639040,17b539d8,00000125,1743ef9c] @ ssp.exe (ssl3_write 0073f290 f libssl:s3_lib.obj->0x3c) 22 : 00720999/0031f999 [15639040,17b539d8,00000125,1743ef9c] @ ssp.exe (ssl_write_internal 007208b0 f libssl:ssl_lib.obj->0xe9) 23 : 007209e8/0031f9e8 [15639040,17b539d8,00000125,1743ef9c] @ ssp.exe (SSL_write_ex 007209d0 f libssl:ssl_lib.obj->0x18) 24 : 0047bfaf/0007afaf [17b539d8,00000125,00000000,00000000] @ ssp.exe (JSocket::send_wrapper->0x9f) 25 : 0047d20c/0007c20c [17b539d8,00000125,03c3e210,1743f4f4] @ ssp.exe (JSocket::Send->0x3c) 26 : 004fb052/000fa052 [108e95d0,1230e598,00000000,00000001] @ ssp.exe (SPHttp::RealRead->0xcb2) 27 : 004f9dfd/000f8dfd [108e95d0,1230e598,0eed8ba4,00000001] @ ssp.exe (SPHttp::Read->0x8d) 28 : 004f9d26/000f8d26 [108e95d0,ffffffff,0eed8ba4,00000001] @ ssp.exe (SPHttp::ReadSimple->0x196) 29 : 004f9b67/000f8b67 [108e95d0,03c3e990,0eed8ba4,00000001] @ ssp.exe (SPHttp::ReadSimple->0x97) 30 : 004d2692/000d1692 [0eed8b28,0eeed8cc,0eeed8b0,1743fef8] @ ssp.exe (SPGhost::Execute_HTTP_RSS_Get_Thread->0x302) 31 : 004d3c83/000d2c83 [0eed8b28,0eeed8cc,1743ff28,0055da2c] @ ssp.exe (SPCmdNotifier::SPCmdNotifier->0x63) 32 : 0055dbe4/0015cbe4 [0eed8b28,00780994,0eee4db0,0eee4db0] @ ssp.exe (SPSTMThreadDescProc::Execute->0x14) 33 : 0055da2c/0015ca2c [02eb5034,00000001,1743ff70,00780a15] @ ssp.exe (SPSimpleThreadManager::BeginThreadProcShared->0xac) 34 : 0055db33/0015cb33 [0eeed8b0,00780994,00780994,0eee4db0] @ ssp.exe (SPSimpleThreadManager::BeginThreadProcNormal->0x13) 35 : 00780a15/0037fa15 [0eee4db0,7536fa10,1743ffdc,77367a9e] @ ssp.exe (_beginthread 0078091d f libcmt:thread.obj->0xf8) 36 : 7536fa29/0000fa29 [0eee4db0,1b9efb5e,00000000,00000000] @ KERNEL32.DLL (BaseThreadInitThunk->0x19) 37 : 77367a9e/00066a9e [ffffffff,77388a68,00000000,00000000] @ ntdll.dll (RtlGetAppContainerNamedObjectPath->0x11e) 38 : 77367a6e/00066a6e [00780994,0eee4db0,00000000,00000000] @ ntdll.dll (RtlGetAppContainerNamedObjectPath->0xee) Total StackDepth : 39