SPDebugger/2.16.23119.A Exception Raised at 00515ffe because ACCESS_VIOLATION (#c0000005) ->Reading 0000008a Data Windows NT 10.0.19042 UAC: Enabled,Limited Time: 2021/11/8 19:42:06.803 Phys.Mem: 2076/8069MB PageFile: 2375/13233MB CPU : Intel 0.6.10.9 2594MHz Features:MMX SSE HT AES-NI (Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz2) Package:1 Node:1 Core:2 Thread:4 SSP/2.5.43 (20211109-2; Windows NT 10.0.19042) Volume Information: C:\ Fixed [ 312970MB Free | 476837MB Total | 65%] (NTFS,Normal) D:\ Fixed [ 674818MB Free | 953245MB Total | 70%] (NTFS,Normal) E:\ Removable F:\ CD-ROM G:\ Fixed [ 297321MB Free | 476837MB Total | 62%] (FAT32,Normal) Monitor Information: 0: \\.\DISPLAY1 - Work=0,40,1600,900 Size=1600x900 [PRIMARY] Env. Variables: =::=::\ ALLUSERSPROFILE=C:\ProgramData APPDATA=C:\Users\Era\AppData\Roaming ChocolateyInstall=C:\ProgramData\chocolatey ChocolateyLastPathUpdate=132554625091523543 CommonProgramFiles=C:\Program Files (x86)\Common Files CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files CommonProgramW6432=C:\Program Files\Common Files COMPUTERNAME=SERENITY ComSpec=C:\Windows\system32\cmd.exe DriverData=C:\Windows\System32\Drivers\DriverData HOMEDRIVE=C: HOMEPATH=\Users\Era LOCALAPPDATA=C:\Users\Era\AppData\Local LOGONSERVER=\\SERENITY NUMBER_OF_PROCESSORS=4 OneDrive=C:\Users\Owner\OneDrive OS=Windows_NT Path=C:\Users\Era\Desktop\SSP\;C:\Program Files\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\ProgramData\chocolatey\bin;C:\Users\Era\AppData\Local\Microsoft\WindowsApps; PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE=x86 PROCESSOR_ARCHITEW6432=AMD64 PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 58 Stepping 9, GenuineIntel PROCESSOR_LEVEL=6 PROCESSOR_REVISION=3a09 ProgramData=C:\ProgramData ProgramFiles=C:\Program Files (x86) ProgramFiles(x86)=C:\Program Files (x86) ProgramW6432=C:\Program Files PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\Windows\system32\WindowsPowerShell\v1.0\Modules PUBLIC=C:\Users\Public SESSIONNAME=Console SystemDrive=C: SystemRoot=C:\Windows TEMP=C:\Users\Era\AppData\Local\Temp TMP=C:\Users\Era\AppData\Local\Temp USERDOMAIN=SERENITY USERDOMAIN_ROAMINGPROFILE=SERENITY USERNAME=Era USERPROFILE=C:\Users\Era windir=C:\Windows Loaded Drivers: -02790000 : mcupdate_GenuineIntel.dll -02a20000 : hal.dll -02a30000 : kd.dll -02a40000 : tm.sys -02a70000 : CLFS.SYS -02ae0000 : PSHED.dll -02b00000 : BOOTVID.dll -02b10000 : FLTMGR.SYS -02b80000 : cmimcext.sys -03000000 : ntoskrnl.exe -04200000 : HTTP.sys -04390000 : mpsdrv.sys -043b0000 : bowser.sys -043e0000 : mrxsmb.sys -04480000 : mrxsmb20.sys -044f0000 : BstkDrv_nxt.sys -04550000 : srvnet.sys -045b0000 : Ndu.sys -045e0000 : peauth.sys -046c0000 : tcpipreg.sys -046e0000 : rfcomm.sys -04720000 : srv2.sys -047f0000 : BthEnum.sys -04820000 : bthpan.sys -04850000 : rassstp.sys -04870000 : NDProxy.sys -04890000 : AgileVpn.sys -048c0000 : condrv.sys -048e0000 : rasl2tp.sys -04910000 : raspptp.sys -04940000 : raspppoe.sys -04960000 : ndistapi.sys -04970000 : ndiswan.sys -049d0000 : googledrivefs3525.sys -04a40000 : qwavedrv.sys -04a60000 : athw8x.sys -04e90000 : vwifibus.sys -04ea0000 : vwifimp.sys -04ec0000 : hidusb.sys -04ee0000 : mouhid.sys -04f10000 : WdNisDrv.sys -04f30000 : mrxdav.sys -04f60000 : msquic.sys -08000000 : clipsp.sys -08120000 : ksecdd.sys -08150000 : msrpc.sys -081c0000 : werkernel.sys -081e0000 : ntosext.sys -081f0000 : CI.dll -082e0000 : cng.sys -083a0000 : Wdf01000.sys -08480000 : WDFLDR.SYS -084a0000 : SleepStudyHelper.sys -084b0000 : WppRecorder.sys -084d0000 : acpiex.sys -08500000 : SgrmAgent.sys -08520000 : ACPI.sys -085f0000 : WMILIB.SYS -08630000 : intelpep.sys -086a0000 : WindowsTrustedRT.sys -086c0000 : IntelTA.sys -086d0000 : WindowsTrustedRTProxy.sys -086e0000 : pcw.sys -08700000 : msisadrv.sys -08710000 : pci.sys -08790000 : vdrvroot.sys -087b0000 : pdc.sys -087e0000 : CEA.sys -08800000 : partmgr.sys -08840000 : pciide.sys -08850000 : PCIIDEX.SYS -08870000 : spaceport.sys -08920000 : intelide.sys -08930000 : volmgr.sys -08950000 : volmgrx.sys -089c0000 : mountmgr.sys -089e0000 : atapi.sys -089f0000 : ataport.SYS -08a30000 : storahci.sys -08a70000 : storport.sys -08b30000 : stornvme.sys -08b80000 : fileinfo.sys -08ba0000 : Wof.sys -08c60000 : Ntfs.sys -08f40000 : Fs_Rec.sys -08f50000 : ndis.sys -090d0000 : NETIO.SYS -09170000 : ksecpkg.sys -091b0000 : tcpip.sys -094a0000 : fwpkclnt.sys -09520000 : wfplwfs.sys -09560000 : fvevol.sys -09630000 : volume.sys -09640000 : volsnap.sys -096b0000 : sbp2port.sys -096e0000 : rdyboost.sys -09740000 : pwdrvio.sys -09750000 : nvpciflt.sys -09760000 : mup.sys -09790000 : iorate.sys -097d0000 : EUDCPEPM.sys -097f0000 : EPMVolFl.sys -09800000 : disk.sys -09820000 : CLASSPNP.SYS -09e00000 : fastfat.SYS -09e70000 : bam.sys -09e90000 : ahcache.sys -09ee0000 : CompositeBus.sys -09f00000 : kdnic.sys -09f10000 : umbus.sys -09f30000 : CAD.sys -09f50000 : ndisuio.sys -09fa0000 : EUEDKEPM.sys -09fb0000 : dfsc.sys -13e00000 : cdrom.sys -13e40000 : filecrypt.sys -13e60000 : tbs.sys -13e70000 : Null.SYS -13e80000 : Beep.SYS -13e90000 : dxgkrnl.sys -14240000 : watchdog.sys -14260000 : BasicDisplay.sys -14280000 : BasicRender.sys -142a0000 : Npfs.SYS -142c0000 : Msfs.SYS -142e0000 : CimFS.SYS -14300000 : tdx.sys -14330000 : TDI.SYS -14350000 : netbt.sys -143b0000 : afunix.sys -143d0000 : afd.sys -14480000 : vwififlt.sys -144a0000 : pacer.sys -144d0000 : ndiscap.sys -144f0000 : netbios.sys -14510000 : Vid.sys -145c0000 : winhvr.sys -145f0000 : rdbss.sys -14670000 : nsiproxy.sys -14690000 : npsvctrig.sys -146a0000 : mssmbios.sys -146c0000 : GUBootStartup.sys -146d0000 : gpuenergydrv.sys -14700000 : crashdmp.sys -14720000 : nwifi.sys -14800000 : BTHport.sys -149a0000 : dump_diskdump.sys -149f0000 : dump_storahci.sys -14a50000 : dump_dumpfve.sys -14a70000 : USBSTOR.SYS -14aa0000 : usbccgp.sys -14af0000 : usbvideo.sys -14b50000 : dxgmms1.sys -14bd0000 : monitor.sys -14bf0000 : dxgmms2.sys -14ce0000 : luafv.sys -14d10000 : wcifs.sys -14d50000 : cldflt.sys -14dd0000 : WUDFRd.sys -14e30000 : WpdUpFltr.sys -14e40000 : storqosflt.sys -14e60000 : mmcss.sys -14e90000 : HdAudio.sys -14f00000 : ksthunk.sys -14f50000 : BTHUSB.sys -14f80000 : bindflt.sys -14fd0000 : lltdio.sys -15a00000 : igdkmd64.sys -15dc0000 : USBXHCI.SYS -15e70000 : ucx01000.sys -15ec0000 : usbehci.sys -15ee0000 : USBPORT.SYS -15f60000 : HDAudBus.sys -15f90000 : portcls.sys -16000000 : drmk.sys -16030000 : ks.sys -160b0000 : rt640x64.sys -16160000 : WdFilter.sys -165a0000 : i8042prt.sys -165d0000 : ETD.sys -16660000 : mouclass.sys -16680000 : kbdclass.sys -166a0000 : CmBatt.sys -166b0000 : BATTC.SYS -166d0000 : wmiacpi.sys -166e0000 : intelppm.sys -16730000 : AsRadioControl.sys -16740000 : HIDCLASS.SYS -16780000 : HIDPARSE.SYS -167a0000 : NdisVirtualBus.sys -167b0000 : swenum.sys -167c0000 : iwdbus.sys -167d0000 : rdpbus.sys -167e0000 : rspndr.sys -16800000 : nvlddmkm.sys -17890000 : usbhub.sys -17920000 : USBD.SYS -17930000 : UsbHub3.sys -179e0000 : mslldp.sys -ec000000 : win32kbase.sys -ec2e0000 : win32kfull.sys -ec6a0000 : cdd.dll -ecd10000 : win32k.sys Executing Processes: [With ToolHelp32] -00000000 : [System Process] (4 Threads.) -00000004 : System (152 Threads.) -00000064 : Registry (4 Threads.) -00000190 : smss.exe (2 Threads.) -0000020c : csrss.exe (12 Threads.) -0000034c : wininit.exe (1 Threads.) -00000354 : csrss.exe (14 Threads.) -000003a8 : services.exe (5 Threads.) -000003b8 : lsass.exe (8 Threads.) -000003fc : winlogon.exe (7 Threads.) -0000025c : svchost.exe (14 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000274 : fontdrvhost.exe (5 Threads.) 10.0.19041.1165 - Usermode Font Driver Host © Microsoft Corporation. All rights reserved. -00000278 : fontdrvhost.exe (5 Threads.) 10.0.19041.1165 - Usermode Font Driver Host © Microsoft Corporation. All rights reserved. -000002f0 : svchost.exe (8 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000328 : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000003d0 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000040c : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000430 : svchost.exe (11 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000047c : dwm.exe (14 Threads.) -000004a4 : svchost.exe (8 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000550 : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000590 : WUDFHost.exe (6 Threads.) -00000598 : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000005a8 : NVDisplay.Container.exe (6 Threads.) -0000062c : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000634 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000063c : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000648 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000694 : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000006a0 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000006ec : Memory Compression (42 Threads.) -0000071c : svchost.exe (8 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000730 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000760 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000768 : svchost.exe (10 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000007c0 : igfxCUIService.exe (2 Threads.) -0000051c : svchost.exe (8 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000082c : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000834 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000844 : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000928 : svchost.exe (12 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000988 : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000990 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000998 : svchost.exe (9 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000a14 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000a70 : svchost.exe (12 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000ac0 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000b18 : spoolsv.exe (7 Threads.) -00000b3c : svchost.exe (13 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000b58 : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000bd8 : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000bf4 : dasHost.exe (3 Threads.) -00000c20 : ETDService.exe (1 Threads.) -00000c28 : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000c30 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000c38 : svchost.exe (10 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000c40 : svchost.exe (10 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000c48 : svchost.exe (25 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000c50 : svchost.exe (7 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000c58 : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000c68 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000c7c : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000cb8 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000d0c : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000d14 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000d20 : svchost.exe (7 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000d74 : svchost.exe (9 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000da0 : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000e50 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000ea0 : svchost.exe (12 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000fb4 : svchost.exe (10 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001124 : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001148 : svchost.exe (9 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000c18 : NVDisplay.Container.exe (15 Threads.) -00000c1c : svchost.exe (7 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000828 : ETDCtrl.exe (11 Threads.) -0000094c : sihost.exe (35 Threads.) -0000140c : svchost.exe (13 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001440 : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001538 : PresentationFontCache.exe (4 Threads.) -00001540 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001550 : taskhostw.exe (7 Threads.) -000015f0 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001634 : ctfmon.exe (9 Threads.) 10.0.19041.1 - CTF Loader © Microsoft Corporation. All rights reserved. -00001680 : svchost.exe (9 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001698 : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000174c : ETDCtrlHelper.exe (1 Threads.) -000017c8 : explorer.exe (311 Threads.) 10.0.19041.1266 - Windows Explorer © Microsoft Corporation. All rights reserved. -00001718 : igfxEM.exe (5 Threads.) -000016e4 : igfxHK.exe (2 Threads.) -00001744 : igfxTray.exe (2 Threads.) -00001884 : BraveCrashHandler.exe (3 Threads.) -0000188c : GoogleCrashHandler.exe (3 Threads.) -00001894 : BraveCrashHandler64.exe (3 Threads.) -0000189c : GoogleCrashHandler64.exe (3 Threads.) -00001a80 : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001b04 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001bb0 : SearchIndexer.exe (26 Threads.) 7.0.19041.1151 - Microsoft Windows Search Indexer © Microsoft Corporation. All rights reserved. -00000b88 : StartMenuExperienceHost.exe (11 Threads.) -000011cc : RuntimeBroker.exe (7 Threads.) -00001500 : SearchApp.exe (39 Threads.) -00001b8c : RuntimeBroker.exe (20 Threads.) -00001ee0 : RuntimeBroker.exe (2 Threads.) -00001f50 : SecurityHealthSystray.exe (1 Threads.) -00001f70 : SecurityHealthService.exe (6 Threads.) -00001ff0 : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001dc0 : svchost.exe (12 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001fe0 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000202c : svchost.exe (10 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000020a0 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00002338 : SettingSyncHost.exe (3 Threads.) 10.0.19041.1202 - Host Process for Setting Synchronization © Microsoft Corporation. All rights reserved. -00000504 : svchost.exe (9 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000e78 : ApplicationFrameHost.exe (7 Threads.) -00002218 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001f14 : SgrmBroker.exe (7 Threads.) -00001e2c : svchost.exe (8 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000220c : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000005bc : UserOOBEBroker.exe (3 Threads.) -00001ed4 : TextInputHost.exe (9 Threads.) -00001a48 : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001b3c : dllhost.exe (6 Threads.) 10.0.19041.546 - COM Surrogate © Microsoft Corporation. All rights reserved. -000003e4 : LockApp.exe (12 Threads.) -000018f0 : RuntimeBroker.exe (12 Threads.) -00000950 : MoUsoCoreWorker.exe (8 Threads.) -00001974 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00002988 : ShellExperienceHost.exe (21 Threads.) -0000186c : RuntimeBroker.exe (13 Threads.) -0000294c : OriginWebHelperService.exe (14 Threads.) -000023b0 : svchost.exe (16 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -0000143c : rundll32.exe (1 Threads.) 10.0.19041.746 - Windows host process (Rundll32) © Microsoft Corporation. All rights reserved. -00002874 : dllhost.exe (10 Threads.) 10.0.19041.546 - COM Surrogate © Microsoft Corporation. All rights reserved. -00001b28 : msdtc.exe (9 Threads.) -00000148 : dllhost.exe (3 Threads.) 10.0.19041.546 - COM Surrogate © Microsoft Corporation. All rights reserved. -00000978 : taskhostw.exe (4 Threads.) -000041c8 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00003e1c : SystemSettingsBroker.exe (13 Threads.) -00005b64 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000061e0 : javaw.exe (25 Threads.) 16.0.1.0 - Java(TM) Platform SE binary Copyright © 2021 -00004574 : javaw.exe (25 Threads.) 16.0.1.0 - Java(TM) Platform SE binary Copyright © 2021 -00003144 : svchost.exe (1 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000058a8 : Discord.exe (36 Threads.) -00004108 : Discord.exe (7 Threads.) -00002474 : Discord.exe (18 Threads.) -00004e6c : Discord.exe (10 Threads.) -00005680 : Discord.exe (46 Threads.) -000006fc : Discord.exe (7 Threads.) -00005f70 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00003dd0 : SearchApp.exe (37 Threads.) -00005048 : GoogleDriveFS.exe (2 Threads.) -00003428 : crashpad_handler.exe (6 Threads.) -00004d1c : GoogleDriveFS.exe (98 Threads.) -00002ca8 : GoogleDriveFS.exe (10 Threads.) -00003c20 : GoogleDriveFS.exe (8 Threads.) -000057d4 : GoogleDriveFS.exe (9 Threads.) -00004d04 : GoogleDriveFS.exe (14 Threads.) -00001238 : DataExchangeHost.exe (1 Threads.) -00003f10 : crashpad_handler.exe (6 Threads.) -000013c0 : svchost.exe (4 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000017b0 : crashpad_handler.exe (6 Threads.) -00002ebc : SystemSettings.exe (21 Threads.) -0000548c : svchost.exe (5 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00003de8 : steam.exe (37 Threads.) -000023e8 : steamwebhelper.exe (16 Threads.) -0000575c : SteamService.exe (4 Threads.) -00003df8 : steamwebhelper.exe (6 Threads.) -00003454 : steamwebhelper.exe (16 Threads.) -000053c8 : steamwebhelper.exe (8 Threads.) -00003120 : steamwebhelper.exe (16 Threads.) -00005e00 : steamwebhelper.exe (16 Threads.) -0000421c : steamwebhelper.exe (16 Threads.) -00004488 : GoogleDriveFS.exe (14 Threads.) -00003804 : MsMpEng.exe (28 Threads.) -0000288c : NisSrv.exe (4 Threads.) -00005c58 : crashpad_handler.exe (6 Threads.) -00001ad8 : crashpad_handler.exe (6 Threads.) -000032dc : crashpad_handler.exe (6 Threads.) -00004190 : crashpad_handler.exe (6 Threads.) -00002d00 : MpCopyAccelerator.exe (2 Threads.) -00000780 : PCHealthCheck.exe (9 Threads.) -000003b4 : UserOOBEBroker.exe (1 Threads.) -00005c84 : crashpad_handler.exe (6 Threads.) -00000eb8 : brave.exe (31 Threads.) -000063e0 : brave.exe (8 Threads.) -00000cdc : brave.exe (19 Threads.) -00003bac : brave.exe (13 Threads.) -00004830 : brave.exe (8 Threads.) -00003d88 : brave.exe (7 Threads.) -00004544 : brave.exe (14 Threads.) -00002ff0 : brave.exe (14 Threads.) -00002bcc : brave.exe (14 Threads.) -000039f0 : brave.exe (15 Threads.) -000065e4 : brave.exe (21 Threads.) -000006d0 : brave.exe (15 Threads.) -00003bc4 : brave.exe (14 Threads.) -00005eb4 : brave.exe (7 Threads.) -00001a1c : brave.exe (15 Threads.) -00005720 : brave.exe (14 Threads.) -00003dfc : brave.exe (14 Threads.) -00002070 : brave.exe (14 Threads.) -00000c64 : dllhost.exe (3 Threads.) 10.0.19041.546 - COM Surrogate © Microsoft Corporation. All rights reserved. -00002c4c : crashpad_handler.exe (6 Threads.) -00004608 : brave.exe (15 Threads.) -000008e0 : crashpad_handler.exe (6 Threads.) -000017e8 : crashpad_handler.exe (6 Threads.) -000065d8 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00000e00 : Cortana.exe (18 Threads.) -00003ad4 : RuntimeBroker.exe (4 Threads.) -00004bc4 : brave.exe (14 Threads.) -00006508 : brave.exe (14 Threads.) -00004a28 : brave.exe (14 Threads.) -00000140 : brave.exe (16 Threads.) -00003854 : brave.exe (14 Threads.) -000050ac : brave.exe (15 Threads.) -00001f44 : Calculator.exe (20 Threads.) -0000042c : RuntimeBroker.exe (1 Threads.) -00002134 : svchost.exe (3 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00004270 : crashpad_handler.exe (6 Threads.) -0000552c : notepad++.exe (2 Threads.) -00001390 : Microsoft.Photos.exe (32 Threads.) -00006170 : RuntimeBroker.exe (9 Threads.) -00002dc4 : crashpad_handler.exe (6 Threads.) -00004490 : audiodg.exe (5 Threads.) -000018fc : svchost.exe (6 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00004a80 : svchost.exe (11 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00004db0 : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -00001e44 : crashpad_handler.exe (6 Threads.) ==> -000017f4 : ssp.exe (22 Threads.) 2.5.43.3000 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ -000031fc : svchost.exe (2 Threads.) 10.0.19041.546 - Host Process for Windows Services © Microsoft Corporation. All rights reserved. -000009b0 : SearchProtocolHost.exe (5 Threads.) 7.0.19041.1151 - Microsoft Windows Search Protocol Host © Microsoft Corporation. All rights reserved. -000053bc : SearchFilterHost.exe (5 Threads.) 7.0.19041.1151 - Microsoft Windows Search Filter Host © Microsoft Corporation. All rights reserved. -00003424 : brave.exe (13 Threads.) Executing Threads: [With ToolHelp32] -000010a4 : 8(0) -00005cb4 : 8(0) -0000208c : 8(0) -0000593c : 8(0) -0000555c : 7(0) -00001628 : 8(0) -000053e0 : 9(0) -00004bb0 : 7(0) ==> -00004184 : 8(0) -00005e5c : 7(0) -00004bbc : 7(0) -00005248 : 8(0) -00001298 : 8(0) -00004b04 : 8(0) -00001934 : 8(0) -00001358 : 7(0) -00003de0 : 7(0) -00006230 : 8(0) -00001bd0 : 8(0) -00002f70 : 8(0) -000056dc : 8(0) -00003614 : 8(0) Executing Services: [With SCM/NT] ---AJRouter (AllJoyn Router Service) - Stopped/Paused ---ALG (Application Layer Gateway Service) - Stopped/Paused ---AppIDSvc (Application Identity) - Stopped/Paused ***Appinfo (Application Information) - Running ---AppReadiness (App Readiness) - Stopped/Paused ***AppXSvc (AppX Deployment Service (AppXSVC)) - Running ***AudioEndpointBuilder (Windows Audio Endpoint Builder) - Running ***Audiosrv (Windows Audio) - Running ---autotimesvc (Cellular Time) - Stopped/Paused ---AxInstSV (ActiveX Installer (AxInstSV)) - Stopped/Paused ---BDESVC (BitLocker Drive Encryption Service) - Stopped/Paused ***BFE (Base Filtering Engine) - Running ***BITS (Background Intelligent Transfer Service) - Running ---brave (Brave Update Service (brave)) - Stopped/Paused ---bravem (Brave Update Service (bravem)) - Stopped/Paused ***BrokerInfrastructure (Background Tasks Infrastructure Service) - Running ***BTAGService (Bluetooth Audio Gateway Service) - Running ***BthAvctpSvc (AVCTP service) - Running ***bthserv (Bluetooth Support Service) - Running ***camsvc (Capability Access Manager Service) - Running ***CDPSvc (Connected Devices Platform Service) - Running ---CertPropSvc (Certificate Propagation) - Stopped/Paused ***ClipSVC (Client License Service (ClipSVC)) - Running ***COMSysApp (COM+ System Application) - Running ***CoreMessagingRegistrar (CoreMessaging) - Running ---cphs (Intel(R) Content Protection HECI Service) - Stopped/Paused ***CryptSvc (Cryptographic Services) - Running ***DcomLaunch (DCOM Server Process Launcher) - Running ---defragsvc (Optimize drives) - Stopped/Paused ***DeviceAssociationService (Device Association Service) - Running ---DeviceInstall (Device Install Service) - Stopped/Paused ---DevQueryBroker (DevQuery Background Discovery Broker) - Stopped/Paused ***Dhcp (DHCP Client) - Running ---diagnosticshub.standardcollector.service (Microsoft (R) Diagnostics Hub Standard Collector Service) - Stopped/Paused ---diagsvc (Diagnostic Execution Service) - Stopped/Paused ***DiagTrack (Connected User Experiences and Telemetry) - Running ***DispBrokerDesktopSvc (Display Policy Service) - Running ***DisplayEnhancementService (Display Enhancement Service) - Running ---DmEnrollmentSvc (Device Management Enrollment Service) - Stopped/Paused ---dmwappushservice (Device Management Wireless Application Protocol (WAP) Push message Routing Service) - Stopped/Paused ***Dnscache (DNS Client) - Running ***DoSvc (Delivery Optimization) - Running ---dot3svc (Wired AutoConfig) - Stopped/Paused ***DPS (Diagnostic Policy Service) - Running ---DsmSvc (Device Setup Manager) - Stopped/Paused ***DsSvc (Data Sharing Service) - Running ***DusmSvc (Data Usage) - Running ---Eaphost (Extensible Authentication Protocol) - Stopped/Paused ---edgeupdate (Microsoft Edge Update Service (edgeupdate)) - Stopped/Paused ---edgeupdatem (Microsoft Edge Update Service (edgeupdatem)) - Stopped/Paused ***EFS (Encrypting File System (EFS)) - Running ---embeddedmode (Embedded Mode) - Stopped/Paused ---EntAppSvc (Enterprise App Management Service) - Stopped/Paused ---EPMVssEaseusProvider (EPMVssEaseusProvider) - Stopped/Paused ***ETDService (Elan Service) - Running ***EventLog (Windows Event Log) - Running ***EventSystem (COM+ Event System) - Running ---Fax (Fax) - Stopped/Paused ***fdPHost (Function Discovery Provider Host) - Running ***FDResPub (Function Discovery Resource Publication) - Running ---fhsvc (File History Service) - Stopped/Paused ***FontCache (Windows Font Cache Service) - Running ***FontCache3.0.0.0 (Windows Presentation Foundation Font Cache 3.0.0.0) - Running ---FrameServer (Windows Camera Frame Server) - Stopped/Paused ---GoogleChromeElevationService (Google Chrome Elevation Service (GoogleChromeElevationService)) - Stopped/Paused ---gpsvc (Group Policy Client) - Stopped/Paused ---GraphicsPerfSvc (GraphicsPerfSvc) - Stopped/Paused ---GUBootService (GUBootService) - Stopped/Paused ---gupdate (Google Update Service (gupdate)) - Stopped/Paused ---gupdatem (Google Update Service (gupdatem)) - Stopped/Paused ---hidserv (Human Interface Device Service) - Stopped/Paused ---HvHost (HV Host Service) - Stopped/Paused ---icssvc (Windows Mobile Hotspot Service) - Stopped/Paused ***igfxCUIService1.0.0.0 (Intel(R) HD Graphics Control Panel Service) - Running ---IKEEXT (IKE and AuthIP IPsec Keying Modules) - Stopped/Paused ***InstallService (Microsoft Store Install Service) - Running ***iphlpsvc (IP Helper) - Running ---IpxlatCfgSvc (IP Translation Configuration Service) - Stopped/Paused ***KeyIso (CNG Key Isolation) - Running ---KtmRm (KtmRm for Distributed Transaction Coordinator) - Stopped/Paused ***LanmanServer (Server) - Running ***LanmanWorkstation (Workstation) - Running ***lfsvc (Geolocation Service) - Running ***LicenseManager (Windows License Manager Service) - Running ---lltdsvc (Link-Layer Topology Discovery Mapper) - Stopped/Paused ***lmhosts (TCP/IP NetBIOS Helper) - Running ***LSM (Local Session Manager) - Running ---LxpSvc (Language Experience Service) - Stopped/Paused ---MapsBroker (Downloaded Maps Manager) - Stopped/Paused ---MBAMService (Malwarebytes Service) - Stopped/Paused ---MicrosoftEdgeElevationService (Microsoft Edge Elevation Service (MicrosoftEdgeElevationService)) - Stopped/Paused ---MixedRealityOpenXRSvc (Windows Mixed Reality OpenXR Service) - Stopped/Paused ---MozillaMaintenance (Mozilla Maintenance Service) - Stopped/Paused ***mpssvc (Windows Defender Firewall) - Running ***MSDTC (Distributed Transaction Coordinator) - Running ---MSiSCSI (Microsoft iSCSI Initiator Service) - Stopped/Paused ---msiserver (Windows Installer) - Stopped/Paused ---NaturalAuthentication (Natural Authentication) - Stopped/Paused ---NcaSvc (Network Connectivity Assistant) - Stopped/Paused ***NcbService (Network Connection Broker) - Running ---NcdAutoSetup (Network Connected Devices Auto-Setup) - Stopped/Paused ---Netlogon (Netlogon) - Stopped/Paused ---Netman (Network Connections) - Stopped/Paused ***netprofm (Network List Service) - Running ---NetSetupSvc (Network Setup Service) - Stopped/Paused ---NetTcpPortSharing (Net.Tcp Port Sharing Service) - Stopped/Paused ---NgcCtnrSvc (Microsoft Passport Container) - Stopped/Paused ---NgcSvc (Microsoft Passport) - Stopped/Paused ***NlaSvc (Network Location Awareness) - Running ***nsi (Network Store Interface Service) - Running ***NVDisplay.ContainerLocalSystem (NVIDIA Display Container LS) - Running ---Origin Client Service (Origin Client Service) - Stopped/Paused ---p2pimsvc (Peer Networking Identity Manager) - Stopped/Paused ---p2psvc (Peer Networking Grouping) - Stopped/Paused ***PcaSvc (Program Compatibility Assistant Service) - Running ---perceptionsimulation (Windows Perception Simulation Service) - Stopped/Paused ---PerfHost (Performance Counter DLL Host) - Stopped/Paused ---PhoneSvc (Phone Service) - Stopped/Paused ---pla (Performance Logs & Alerts) - Stopped/Paused ***PlugPlay (Plug and Play) - Running ---PNRPAutoReg (PNRP Machine Name Publication Service) - Stopped/Paused ---PNRPsvc (Peer Name Resolution Protocol) - Stopped/Paused ---PolicyAgent (IPsec Policy Agent) - Stopped/Paused ***Power (Power) - Running ---PrintNotify (Printer Extensions and Notifications) - Stopped/Paused ***ProfSvc (User Profile Service) - Running ---PushToInstall (Windows PushToInstall Service) - Stopped/Paused ***QWAVE (Quality Windows Audio Video Experience) - Running ---RasAuto (Remote Access Auto Connection Manager) - Stopped/Paused ***RasMan (Remote Access Connection Manager) - Running ---RemoteAccess (Routing and Remote Access) - Stopped/Paused ---RemoteRegistry (Remote Registry) - Stopped/Paused ---RetailDemo (Retail Demo Service) - Stopped/Paused ***RmSvc (Radio Management Service) - Running ***RpcEptMapper (RPC Endpoint Mapper) - Running ---RpcLocator (Remote Procedure Call (RPC) Locator) - Stopped/Paused ***RpcSs (Remote Procedure Call (RPC)) - Running ***SamSs (Security Accounts Manager) - Running ---SCardSvr (Smart Card) - Stopped/Paused ---ScDeviceEnum (Smart Card Device Enumeration Service) - Stopped/Paused ***Schedule (Task Scheduler) - Running ---SCPolicySvc (Smart Card Removal Policy) - Stopped/Paused ---SDRSVC (Windows Backup) - Stopped/Paused ***seclogon (Secondary Logon) - Running ***SecurityHealthService (Windows Security Service) - Running ***SEMgrSvc (Payments and NFC/SE Manager) - Running ***SENS (System Event Notification Service) - Running ---SensorDataService (Sensor Data Service) - Stopped/Paused ---SensorService (Sensor Service) - Stopped/Paused ---SensrSvc (Sensor Monitoring Service) - Stopped/Paused ---SessionEnv (Remote Desktop Configuration) - Stopped/Paused ***SgrmBroker (System Guard Runtime Monitor Broker) - Running ---SharedAccess (Internet Connection Sharing (ICS)) - Stopped/Paused ---SharedRealitySvc (Spatial Data Service) - Stopped/Paused ***ShellHWDetection (Shell Hardware Detection) - Running ---shpamsvc (Shared PC Account Manager) - Stopped/Paused ---smphost (Microsoft Storage Spaces SMP) - Stopped/Paused ---SmsRouter (Microsoft Windows SMS Router Service.) - Stopped/Paused ---SNMPTRAP (SNMP Trap) - Stopped/Paused ---spectrum (Windows Perception Service) - Stopped/Paused ***Spooler (Print Spooler) - Running ---sppsvc (Software Protection) - Stopped/Paused ***SSDPSRV (SSDP Discovery) - Running ---ssh-agent (OpenSSH Authentication Agent) - Stopped/Paused ***SstpSvc (Secure Socket Tunneling Protocol Service) - Running ***StateRepository (State Repository Service) - Running ***Steam Client Service (Steam Client Service) - Running ***stisvc (Windows Image Acquisition (WIA)) - Running ***StorSvc (Storage Service) - Running ---svsvc (Spot Verifier) - Stopped/Paused ---swprv (Microsoft Software Shadow Copy Provider) - Stopped/Paused ***SysMain (SysMain) - Running ***SystemEventsBroker (System Events Broker) - Running ***TabletInputService (Touch Keyboard and Handwriting Panel Service) - Running ***TapiSrv (Telephony) - Running ---TermService (Remote Desktop Services) - Stopped/Paused ***Themes (Themes) - Running ---TieringEngineService (Storage Tiers Management) - Stopped/Paused ***TimeBrokerSvc (Time Broker) - Running ***TokenBroker (Web Account Manager) - Running ***TrkWks (Distributed Link Tracking Client) - Running ---TroubleshootingSvc (Recommended Troubleshooting Service) - Stopped/Paused ---TrustedInstaller (Windows Modules Installer) - Stopped/Paused ---tzautoupdate (Auto Time Zone Updater) - Stopped/Paused ---uhssvc (Microsoft Update Health Service) - Stopped/Paused ---UmRdpService (Remote Desktop Services UserMode Port Redirector) - Stopped/Paused ---upnphost (UPnP Device Host) - Stopped/Paused ***UserManager (User Manager) - Running ***UsoSvc (Update Orchestrator Service) - Running ---VacSvc (Volumetric Audio Compositor Service) - Stopped/Paused ***VaultSvc (Credential Manager) - Running ---vds (Virtual Disk) - Stopped/Paused ---vmicguestinterface (Hyper-V Guest Service Interface) - Stopped/Paused ---vmicheartbeat (Hyper-V Heartbeat Service) - Stopped/Paused ---vmickvpexchange (Hyper-V Data Exchange Service) - Stopped/Paused ---vmicrdv (Hyper-V Remote Desktop Virtualization Service) - Stopped/Paused ---vmicshutdown (Hyper-V Guest Shutdown Service) - Stopped/Paused ---vmictimesync (Hyper-V Time Synchronization Service) - Stopped/Paused ---vmicvmsession (Hyper-V PowerShell Direct Service) - Stopped/Paused ---vmicvss (Hyper-V Volume Shadow Copy Requestor) - Stopped/Paused ---VSS (Volume Shadow Copy) - Stopped/Paused ---W32Time (Windows Time) - Stopped/Paused ---WaaSMedicSvc (Windows Update Medic Service) - Stopped/Paused ---WalletService (WalletService) - Stopped/Paused ---WarpJITSvc (WarpJITSvc) - Stopped/Paused ---wbengine (Block Level Backup Engine Service) - Stopped/Paused ***WbioSrvc (Windows Biometric Service) - Running ***Wcmsvc (Windows Connection Manager) - Running ***wcncsvc (Windows Connect Now - Config Registrar) - Running ***WdiServiceHost (Diagnostic Service Host) - Running ***WdiSystemHost (Diagnostic System Host) - Running ***WdNisSvc (Microsoft Defender Antivirus Network Inspection Service) - Running ***WebClient (WebClient) - Running ---Wecsvc (Windows Event Collector) - Stopped/Paused ---WEPHOSTSVC (Windows Encryption Provider Host Service) - Stopped/Paused ---wercplsupport (Problem Reports Control Panel Support) - Stopped/Paused ---WerSvc (Windows Error Reporting Service) - Stopped/Paused ---WFDSConMgrSvc (Wi-Fi Direct Services Connection Manager Service) - Stopped/Paused ---WiaRpc (Still Image Acquisition Events) - Stopped/Paused ***WinDefend (Microsoft Defender Antivirus Service) - Running ***WinHttpAutoProxySvc (WinHTTP Web Proxy Auto-Discovery Service) - Running ***Winmgmt (Windows Management Instrumentation) - Running ---WinRM (Windows Remote Management (WS-Management)) - Stopped/Paused ---wisvc (Windows Insider Service) - Stopped/Paused ***WlanSvc (WLAN AutoConfig) - Running ---wlidsvc (Microsoft Account Sign-in Assistant) - Stopped/Paused ---wlpasvc (Local Profile Assistant Service) - Stopped/Paused ---WManSvc (Windows Management Service) - Stopped/Paused ---wmiApSrv (WMI Performance Adapter) - Stopped/Paused ---WMPNetworkSvc (Windows Media Player Network Sharing Service) - Stopped/Paused ---workfolderssvc (Work Folders) - Stopped/Paused ---WpcMonSvc (Parental Controls) - Stopped/Paused ---WPDBusEnum (Portable Device Enumerator Service) - Stopped/Paused ***WpnService (Windows Push Notifications System Service) - Running ***wscsvc (Security Center) - Running ***WSearch (Windows Search) - Running ***wuauserv (Windows Update) - Running ---WwanSvc (WWAN AutoConfig) - Stopped/Paused ---XblAuthManager (Xbox Live Auth Manager) - Stopped/Paused ---XblGameSave (Xbox Live Game Save) - Stopped/Paused ---XboxGipSvc (Xbox Accessory Management Service) - Stopped/Paused ---XboxNetApiSvc (Xbox Live Networking Service) - Stopped/Paused ***AarSvc_859be (Agent Activation Runtime_859be) - Running ---BcastDVRUserService_859be (GameDVR and Broadcast User Service_859be) - Stopped/Paused ---BluetoothUserService_859be (Bluetooth User Support Service_859be) - Stopped/Paused ---CaptureService_859be (CaptureService_859be) - Stopped/Paused ***cbdhsvc_859be (Clipboard User Service_859be) - Running ***CDPUserSvc_859be (Connected Devices Platform User Service_859be) - Running ---ConsentUxUserSvc_859be (ConsentUX_859be) - Stopped/Paused ---CredentialEnrollmentManagerUserSvc_859be (CredentialEnrollmentManagerUserSvc_859be) - Stopped/Paused ---DeviceAssociationBrokerSvc_859be (DeviceAssociationBroker_859be) - Stopped/Paused ---DevicePickerUserSvc_859be (DevicePicker_859be) - Stopped/Paused ---DevicesFlowUserSvc_859be (DevicesFlow_859be) - Stopped/Paused ---MessagingService_859be (MessagingService_859be) - Stopped/Paused ***OneSyncSvc_859be (Sync Host_859be) - Running ***PimIndexMaintenanceSvc_859be (Contact Data_859be) - Running ***PrintWorkflowUserSvc_859be (PrintWorkflow_859be) - Running ***UdkUserSvc_859be (Udk User Service_859be) - Running ***UnistoreSvc_859be (User Data Storage_859be) - Running ***UserDataSvc_859be (User Data Access_859be) - Running ***WpnUserService_859be (Windows Push Notifications User Service_859be) - Running ***Origin Web Helper Service (Origin Web Helper Service) - Running Loaded Modules: [With ToolHelp32] ==> -00400000 : C:\Users\Era\Desktop\SSP\ssp.exe 2.5.43.3000 - SSP (C) D-EXCLAMATION / SSP BUGTRAQ -00fd0000 : C:\Users\Era\Desktop\SSP\ghost\z_gaster\ghost\master\findwin.dll -03740000 : C:\Users\Era\Desktop\SSP\plugin\CDIEvent\CDIEvent.dll 1.0.0.0 - CrystalDiskInfo Event Plugin Copyright (C) CSaori Project -03880000 : C:\Users\Era\Desktop\SSP\plugin\SAKNIFE\SAKNIFE.dll 1.5.3.0 - SwissArmyKnife (C) 2004 SSP BUGTRAQ -038c0000 : C:\Users\Era\Desktop\SSP\plugin\shared_value\shared_value.dll 1.0.0.0 - Shared Value Plugin Copyright (C) CSaori Project -0a800000 : C:\Users\Era\Desktop\SSP\ghost\flux\ghost\master\yaya.dll 5.59.1.0 - yaya -0b2c0000 : C:\Users\Era\Desktop\SSP\ghost\flux\ghost\master\time_check.dll 1.11.0.0 - -10000000 : C:\Users\Era\Desktop\SSP\data\language\english\resource.dll 2.5.33.12 - Language Resource DLL (C) D-EXCLAMATION / SSP BUGTRAQ -13700000 : C:\Users\Era\Desktop\SSP\ghost\z_gaster\ghost\master\yaya.dll 5.50.4.0 - yaya -5ee40000 : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\X86\MPCLIENT.DLL 4.18.2110.6 - Client Interface © Microsoft Corporation. All rights reserved. -5ef20000 : C:\Windows\SYSTEM32\QUARTZ.dll 10.0.19041.746 - DirectShow Runtime. © Microsoft Corporation. All rights reserved. -630a0000 : C:\Windows\System32\LocationApi.dll 10.0.19041.746 - Microsoft Windows Location API © Microsoft Corporation. All rights reserved. -635f0000 : C:\Windows\System32\SensorsApi.dll 10.0.19041.746 - Sensor API © Microsoft Corporation. All rights reserved. -63c80000 : C:\Windows\SYSTEM32\iertutil.dll 11.0.19041.1266 - Run time utility for Internet Explorer © Microsoft Corporation. All rights reserved. -64110000 : C:\Windows\System32\ActXPrxy.dll 10.0.19041.844 - ActiveX Interface Marshaling Library © Microsoft Corporation. All rights reserved. -64170000 : C:\Users\Era\Desktop\SSP\plugin\discord\discord.dll -64260000 : C:\Windows\System32\msvcp110_win.dll 10.0.19041.546 - Microsoft® STL110 C++ Runtime Library © Microsoft Corporation. All rights reserved. -642d0000 : C:\Windows\SYSTEM32\policymanager.dll 10.0.19041.1266 - Policy Manager DLL © Microsoft Corporation. All rights reserved. -64380000 : C:\Windows\System32\deviceaccess.dll 10.0.19041.746 - Device Broker And Policy COM Server © Microsoft Corporation. All rights reserved. -643b0000 : C:\Windows\SYSTEM32\WindowsCodecs.dll 10.0.19041.1151 - Microsoft Windows Codecs Library © Microsoft Corporation. All rights reserved. -64530000 : C:\Windows\SYSTEM32\srvcli.dll 10.0.19041.546 - Server Service Client DLL © Microsoft Corporation. All rights reserved. -64550000 : C:\Windows\SYSTEM32\ntshrui.dll 10.0.19041.844 - Shell extensions for sharing © Microsoft Corporation. All rights reserved. -645c0000 : C:\Windows\System32\SensorsNativeApi.V2.dll 10.0.19041.1 - Sensors Native API (V2 stack) © Microsoft Corporation. All rights reserved. -646c0000 : C:\Windows\System32\SensorsUtilsV2.dll 10.0.19041.746 - Sensors v2 Utilities DLL © Microsoft Corporation. All rights reserved. -65100000 : C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.19041.1288_none_d9539a9fe102720c\gdiplus.dll 10.0.19041.1288 - Microsoft GDI+ © Microsoft Corporation. All rights reserved. -67090000 : C:\Windows\system32\explorerframe.dll 10.0.19041.1023 - ExplorerFrame © Microsoft Corporation. All rights reserved. -67830000 : C:\Windows\System32\wuapi.dll 10.0.19041.1288 - Windows Update Client API © Microsoft Corporation. All rights reserved. -6c190000 : C:\Windows\System32\OneCoreUAPCommonProxyStub.dll 10.0.19041.1266 - OneCoreUAP Common Proxy Stub © Microsoft Corporation. All rights reserved. -6d5c0000 : C:\Windows\System32\WindowManagementAPI.dll -6d640000 : C:\Windows\System32\Windows.UI.dll 10.0.19041.746 - Windows Runtime UI Foundation DLL © Microsoft Corporation. All rights reserved. -6d760000 : C:\Windows\System32\ShellCommonCommonProxyStub.dll 10.0.19041.546 - ShellCommon Common Proxy Stub © Microsoft Corporation. All rights reserved. -6d7d0000 : C:\Windows\SYSTEM32\MSACM32.dll 10.0.19041.1 - Microsoft ACM Audio Filter © Microsoft Corporation. All rights reserved. -6d800000 : C:\Windows\system32\amsi.dll 10.0.19041.746 - Anti-Malware Scan Interface © Microsoft Corporation. All rights reserved. -6d820000 : C:\Windows\SYSTEM32\AUDIOSES.DLL 10.0.19041.1023 - Audio Session © Microsoft Corporation. All rights reserved. -6da40000 : C:\Windows\SYSTEM32\ksuser.dll 10.0.19041.1 - User CSA Library © Microsoft Corporation. All rights reserved. -6da50000 : C:\Windows\SYSTEM32\AVRT.dll 10.0.19041.546 - Multimedia Realtime Runtime © Microsoft Corporation. All rights reserved. -6da70000 : C:\Windows\System32\PortableDeviceTypes.dll 10.0.19041.746 - Windows Portable Device (Parameter) Types Component © Microsoft Corporation. All rights reserved. -6daa0000 : C:\Windows\SYSTEM32\MMDevAPI.DLL 10.0.19041.1023 - MMDevice API © Microsoft Corporation. All rights reserved. -6db10000 : C:\Windows\SYSTEM32\winmmbase.dll 10.0.19041.1 - Base Multimedia Extension API DLL © Microsoft Corporation. All rights reserved. -6dbe0000 : C:\Windows\system32\wshunix.dll 10.0.19041.1 - AF_UNIX Winsock2 Helper DLL © Microsoft Corporation. All rights reserved. -6dbf0000 : C:\Windows\SYSTEM32\ondemandconnroutehelper.dll 10.0.19041.546 - On Demand Connctiond Route Helper © Microsoft Corporation. All rights reserved. -6e2d0000 : C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\X86\MpOav.dll 4.18.2110.6 - IOfficeAntiVirus Module © Microsoft Corporation. All rights reserved. -6e8a0000 : C:\Windows\system32\pdh.dll 10.0.19041.1202 - Windows Performance Data Helper DLL © Microsoft Corporation. All rights reserved. -6e8e0000 : C:\Windows\SYSTEM32\oledlg.dll 10.0.19041.746 - OLE User Interface Support © Microsoft Corporation. All rights reserved. -6e960000 : C:\Windows\SYSTEM32\DSOUND.DLL 10.0.19041.1 - DirectSound © Microsoft Corporation. All rights reserved. -6f450000 : C:\Windows\System32\twinapi.appcore.dll 10.0.19041.746 - twinapi.appcore © Microsoft Corporation. All rights reserved. -6f5e0000 : C:\Windows\system32\dxgi.dll 10.0.19041.1266 - DirectX Graphics Infrastructure © Microsoft Corporation. All rights reserved. -6f6b0000 : C:\Windows\system32\dcomp.dll 10.0.19041.1266 - Microsoft DirectComposition Library © Microsoft Corporation. All rights reserved. -6f820000 : C:\Windows\system32\d3d11.dll 10.0.19041.1202 - Direct3D 11 Runtime © Microsoft Corporation. All rights reserved. -6fc30000 : C:\Windows\SYSTEM32\PROPSYS.dll 7.0.19041.1023 - Microsoft Property System © Microsoft Corporation. All rights reserved. -6fd00000 : C:\Windows\System32\InputHost.dll 10.0.19041.906 - InputHost © Microsoft Corporation. All rights reserved. -6fdf0000 : C:\Windows\System32\wups.dll 10.0.19041.1266 - Windows Update client proxy stub © Microsoft Corporation. All rights reserved. -71480000 : C:\Windows\SYSTEM32\cscapi.dll 10.0.19041.546 - Offline Files Win32 API © Microsoft Corporation. All rights reserved. -71ae0000 : C:\Windows\System32\fwpuclnt.dll 10.0.19041.964 - FWP/IPsec User-Mode API © Microsoft Corporation. All rights reserved. -71b50000 : C:\Windows\system32\dataexchange.dll 10.0.19041.1151 - Data exchange © Microsoft Corporation. All rights reserved. -71b90000 : C:\Windows\SYSTEM32\wdmaud.drv 10.0.19041.1 - Winmm audio system driver © Microsoft Corporation. All rights reserved. -71c10000 : C:\Windows\SYSTEM32\DEVOBJ.dll 10.0.19041.1151 - Device Information Set DLL © Microsoft Corporation. All rights reserved. -723b0000 : C:\Windows\system32\msimg32.dll 10.0.19041.546 - GDIEXT Client DLL © Microsoft Corporation. All rights reserved. -723f0000 : C:\Windows\System32\perfos.dll 10.0.19041.488 - Windows System Performance Objects DLL © Microsoft Corporation. All rights reserved. -729c0000 : C:\Windows\System32\CoreUIComponents.dll 10.0.19041.546 - Microsoft Core UI Components Dll © Microsoft Corporation. All rights reserved. -72c90000 : C:\Windows\SYSTEM32\TextShaping.dll -72d30000 : C:\Windows\SYSTEM32\wintypes.dll 10.0.19041.1202 - Windows Base Types DLL © Microsoft Corporation. All rights reserved. -72e10000 : C:\Windows\System32\CoreMessaging.dll 10.0.19041.867 - Microsoft CoreMessaging Dll © Microsoft Corporation. All rights reserved. -72eb0000 : C:\Windows\System32\TextInputFramework.dll 10.0.19041.1202 - "TextInputFramework.DYNLINK" © Microsoft Corporation. All rights reserved. -72f70000 : C:\Windows\SYSTEM32\WINNSI.DLL 10.0.19041.546 - Network Store Information RPC interface © Microsoft Corporation. All rights reserved. -72fb0000 : C:\Windows\SYSTEM32\gpapi.dll 10.0.19041.572 - Group Policy Client API © Microsoft Corporation. All rights reserved. -73090000 : C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.1110_none_a8625c1886757984\COMCTL32.dll 6.10.19041.1110 - User Experience Controls Library © Microsoft Corporation. All rights reserved. -732a0000 : C:\Windows\System32\rasadhlp.dll 10.0.19041.546 - Remote Access AutoDial Helper © Microsoft Corporation. All rights reserved. -732b0000 : C:\Windows\System32\winrnr.dll 10.0.19041.546 - LDAP RnR Provider DLL © Microsoft Corporation. All rights reserved. -732c0000 : C:\Windows\system32\NLAapi.dll 10.0.19041.546 - Network Location Awareness 2 © Microsoft Corporation. All rights reserved. -732e0000 : C:\Windows\system32\wshbth.dll 10.0.19041.546 - Windows Sockets Helper DLL © Microsoft Corporation. All rights reserved. -732f0000 : C:\Windows\system32\pnrpnsp.dll 10.0.19041.546 - PNRP Name Space Provider © Microsoft Corporation. All rights reserved. -73310000 : C:\Windows\system32\napinsp.dll 10.0.19041.546 - E-mail Naming Shim Provider © Microsoft Corporation. All rights reserved. -73330000 : C:\Windows\SYSTEM32\resourcepolicyclient.dll 10.0.19041.546 - Resource Policy Client © Microsoft Corporation. All rights reserved. -73380000 : C:\Windows\SYSTEM32\winhttp.dll 10.0.19041.1151 - Windows HTTP Services © Microsoft Corporation. All rights reserved. -73680000 : C:\Windows\system32\mswsock.dll 10.0.19041.546 - Microsoft Windows Sockets 2.0 Service Provider © Microsoft Corporation. All rights reserved. -736e0000 : C:\Windows\SYSTEM32\SspiCli.dll 10.0.19041.906 - Security Support Provider Interface © Microsoft Corporation. All rights reserved. -73710000 : C:\Windows\system32\rsaenh.dll 10.0.19041.1052 - Microsoft Enhanced Cryptographic Provider © Microsoft Corporation. All rights reserved. -73740000 : C:\Windows\SYSTEM32\CRYPTSP.dll 10.0.19041.546 - Cryptographic Service Provider API © Microsoft Corporation. All rights reserved. -73760000 : C:\Windows\SYSTEM32\kernel.appcore.dll 10.0.19041.546 - AppModel API Host © Microsoft Corporation. All rights reserved. -73770000 : C:\Windows\SYSTEM32\ntmarta.dll 10.0.19041.546 - Windows NT MARTA provider © Microsoft Corporation. All rights reserved. -737a0000 : C:\Windows\SYSTEM32\profapi.dll 10.0.19041.844 - User Profile Basic API © Microsoft Corporation. All rights reserved. -737c0000 : C:\Windows\SYSTEM32\Wldp.dll 10.0.19041.662 - Windows Lockdown Policy © Microsoft Corporation. All rights reserved. -737f0000 : C:\Windows\SYSTEM32\windows.storage.dll 10.0.19041.1266 - Microsoft WinRT Storage API © Microsoft Corporation. All rights reserved. -73e00000 : C:\Windows\SYSTEM32\CRYPTBASE.dll 10.0.19041.546 - Base cryptographic API DLL © Microsoft Corporation. All rights reserved. -73e10000 : C:\Windows\SYSTEM32\UMPDC.dll -73e20000 : C:\Windows\SYSTEM32\MSASN1.dll 10.0.19041.546 - ASN.1 Runtime APIs © Microsoft Corporation. All rights reserved. -73e50000 : C:\Windows\system32\dwmapi.dll 10.0.19041.746 - Microsoft Desktop Window Manager API © Microsoft Corporation. All rights reserved. -73e80000 : C:\Windows\system32\uxtheme.dll 10.0.19041.1266 - Microsoft UxTheme Library © Microsoft Corporation. All rights reserved. -73f00000 : C:\Windows\SYSTEM32\DNSAPI.dll 10.0.19041.1266 - DNS Client API DLL © Microsoft Corporation. All rights reserved. -73fa0000 : C:\Windows\SYSTEM32\iphlpapi.dll 10.0.19041.546 - IP Helper API © Microsoft Corporation. All rights reserved. -74120000 : C:\Windows\SYSTEM32\powrprof.dll 10.0.19041.546 - Power Profile Helper DLL © Microsoft Corporation. All rights reserved. -74180000 : C:\Windows\SYSTEM32\VERSION.dll 10.0.19041.546 - Version Checking and File Installation Libraries © Microsoft Corporation. All rights reserved. -74190000 : C:\Windows\SYSTEM32\USERENV.dll 10.0.19041.572 - Userenv © Microsoft Corporation. All rights reserved. -747d0000 : C:\Windows\SYSTEM32\WINMM.dll 10.0.19041.546 - MCI API DLL © Microsoft Corporation. All rights reserved. -74820000 : C:\Windows\system32\wininet.dll 11.0.19041.1202 - Internet Extensions for Win32 © Microsoft Corporation. All rights reserved. -75350000 : C:\Windows\System32\npmproxy.dll 10.0.19041.546 - Network List Manager Proxy © Microsoft Corporation. All rights reserved. -75360000 : C:\Windows\System32\netprofm.dll 10.0.19041.746 - Network List Manager © Microsoft Corporation. All rights reserved. -753f0000 : C:\Windows\system32\twinapi.dll 10.0.19041.1202 - twinapi © Microsoft Corporation. All rights reserved. -754b0000 : C:\Windows\SYSTEM32\LINKINFO.dll 10.0.19041.546 - Windows Volume Tracking © Microsoft Corporation. All rights reserved. -754e0000 : C:\Windows\SYSTEM32\midimap.dll 10.0.19041.488 - Microsoft MIDI Mapper © Microsoft Corporation. All rights reserved. -755a0000 : C:\Windows\SYSTEM32\mscms.dll 10.0.19041.746 - Microsoft Color Matching System DLL © Microsoft Corporation. All rights reserved. -75690000 : C:\Windows\SYSTEM32\msacm32.drv 10.0.19041.488 - Microsoft Sound Mapper © Microsoft Corporation. All rights reserved. -756c0000 : C:\Windows\SYSTEM32\ColorAdapterClient.dll 10.0.19041.546 - Microsoft Color Adapter Client © Microsoft Corporation. All rights reserved. -757d0000 : C:\Windows\system32\mlang.dll 10.0.19041.746 - Multi Language Support DLL © Microsoft Corporation. All rights reserved. -75850000 : C:\Windows\System32\MSCTF.dll 10.0.19041.1202 - MSCTF Server DLL © Microsoft Corporation. All rights reserved. -75930000 : C:\Windows\System32\RPCRT4.dll 10.0.19041.1288 - Remote Procedure Call Runtime © Microsoft Corporation. All rights reserved. -759f0000 : C:\Windows\System32\win32u.dll 10.0.19041.1288 - Win32u © Microsoft Corporation. All rights reserved. -75a20000 : C:\Windows\System32\KERNELBASE.dll 10.0.19041.1288 - Windows NT BASE API Client DLL © Microsoft Corporation. All rights reserved. -75c40000 : C:\Windows\System32\WINTRUST.dll 10.0.19041.1266 - Microsoft Trust Verification APIs © Microsoft Corporation. All rights reserved. -75c90000 : C:\Windows\System32\comdlg32.dll 10.0.19041.906 - Common Dialogs DLL © Microsoft Corporation. All rights reserved. -75d40000 : C:\Windows\System32\msvcp_win.dll 10.0.19041.789 - Microsoft® C Runtime Library © Microsoft Corporation. All rights reserved. -75dc0000 : C:\Windows\System32\normaliz.dll 10.0.19041.546 - Unicode Normalization DLL © Microsoft Corporation. All rights reserved. -75dd0000 : C:\Windows\System32\IMM32.DLL 10.0.19041.546 - Multi-User Windows IMM32 API Client DLL © Microsoft Corporation. All rights reserved. -75e00000 : C:\Windows\System32\SETUPAPI.dll 10.0.19041.1237 - Windows Setup API © Microsoft Corporation. All rights reserved. -76240000 : C:\Windows\System32\imagehlp.dll 10.0.19041.546 - Windows NT Image Helper © Microsoft Corporation. All rights reserved. -76260000 : C:\Windows\System32\ucrtbase.dll 10.0.19041.789 - Microsoft® C Runtime Library © Microsoft Corporation. All rights reserved. -76380000 : C:\Windows\System32\shcore.dll 10.0.19041.1266 - SHCORE © Microsoft Corporation. All rights reserved. -76410000 : C:\Windows\System32\gdi32full.dll 10.0.19041.1110 - GDI Client DLL © Microsoft Corporation. All rights reserved. -76550000 : C:\Windows\System32\sechost.dll 10.0.19041.906 - Host for SCM/SDDL/LSA Lookup APIs © Microsoft Corporation. All rights reserved. -765d0000 : C:\Windows\System32\cfgmgr32.dll 10.0.19041.1151 - Configuration Manager DLL © Microsoft Corporation. All rights reserved. -76610000 : C:\Windows\System32\SHLWAPI.dll 10.0.19041.1023 - Shell Light-weight Utility Library © Microsoft Corporation. All rights reserved. -76660000 : C:\Windows\System32\bcryptPrimitives.dll 10.0.19041.1202 - Windows Cryptographic Primitives Library © Microsoft Corporation. All rights reserved. -766c0000 : C:\Windows\System32\WS2_32.dll 10.0.19041.546 - Windows Socket 2.0 32-Bit DLL © Microsoft Corporation. All rights reserved. -76790000 : C:\Windows\System32\msvcrt.dll 7.0.19041.546 - Windows NT CRT DLL © Microsoft Corporation. All rights reserved. -76850000 : C:\Windows\System32\ADVAPI32.dll 10.0.19041.1052 - Advanced Windows 32 Base API © Microsoft Corporation. All rights reserved. -76960000 : C:\Windows\System32\USER32.dll 10.0.19041.1288 - Multi-User Windows USER API Client DLL © Microsoft Corporation. All rights reserved. -76b00000 : C:\Windows\System32\ole32.dll 10.0.19041.1202 - Microsoft OLE for Windows © Microsoft Corporation. All rights reserved. -76bf0000 : C:\Windows\System32\SHELL32.dll 10.0.19041.1266 - Windows Shell Common Dll © Microsoft Corporation. All rights reserved. -771b0000 : C:\Windows\System32\CRYPT32.dll 10.0.19041.1202 - Crypto API32 © Microsoft Corporation. All rights reserved. -772b0000 : C:\Windows\System32\GDI32.dll 10.0.19041.1202 - GDI Client DLL © Microsoft Corporation. All rights reserved. -772e0000 : C:\Windows\System32\bcrypt.dll 10.0.19041.1023 - Windows Cryptographic Primitives Library © Microsoft Corporation. All rights reserved. -77300000 : C:\Windows\System32\clbcatq.dll 2001.12.10941.16384 - COM+ Configuration Catalog © Microsoft Corporation. All rights reserved. -77380000 : C:\Windows\System32\OLEAUT32.dll 10.0.19041.985 - OLEAUT32.DLL © Microsoft Corporation. All rights reserved. -77420000 : C:\Windows\System32\NSI.dll 10.0.19041.610 - NSI User-mode interface DLL © Microsoft Corporation. All rights reserved. -775a0000 : C:\Windows\System32\KERNEL32.DLL 10.0.19041.1202 - Windows NT BASE API Client DLL © Microsoft Corporation. All rights reserved. -776f0000 : C:\Windows\System32\combase.dll 10.0.19041.1288 - Microsoft COM for Windows © Microsoft Corporation. All rights reserved. -77990000 : C:\Windows\SYSTEM32\ntdll.dll 10.0.19041.1288 - NT Layer DLL © Microsoft Corporation. All rights reserved. Registers: EAX 00000009 EBX 02e04f48 ECX 00000000 EDX 02e04f54 ESI 0000000a EDI fffffffc DS 002b ES 002b FS 0053 GS 002b SS/ESP/EBP 002b/08b8f6f4/08b8f750 CS/EIP 0023/00515ffe EFlags 00210297 (Carry,Parity,Adjust,Sign,Interrupt,Restart,ID) Stack Dump: 00000000 00000003 00000000 08b8f708 00000001 00d80000 00000000 08b8f750 ffffffff 00000000 00d80038 08b8f700 5ef47760 08b8f938 767eccc0 a92add8c fffffffe 02e04f98 00000009 01d80038 08b8f938 00848aa8 00000002 08b8f764 0057c74a 07dfc470 00871184 00000000 08b8f944 00422c37 07dfc470 00000000 00000000 00000803 07dec440 00000000 00730041 006e0079 00460063 006c0069 00520065 00610065 00650064 00000072 00650072 00000072 07dec440 00000000 02d302c0 02d30c40 08b8f7e0 77a86678 02d30780 00000030 00000000 02d30000 00000030 00000030 02d30700 08b8f800 77a883b8 00000030 00000000 00000000 CallStack Trace: 00 : 00515ffe/00114ffe [07dfc470,00871184,00000000,08b8f944] @ ssp.exe (SPLogManagerCore::Add->0xee) 01 : 0057c74a/0017b74a [07dfc470,00000000,00000000,00000803] @ ssp.exe (SPScriptPlayer::AddErrorLog->0x1a) 02 : 00422c37/00021c37 [00000803,07dec440,00000602,ffffffff] @ ssp.exe (CGhostATSoundImplDShow::Open->0x1297) 03 : 004213e4/000203e4 [00000000,00000803,00000602,08b8fac4] @ ssp.exe (CGhostATSoundImplDShow::SendCommandReal->0x34) 04 : 0042137f/0002037f [00000000,00000803,00000602,08b8fac4] @ ssp.exe (CGhostATSoundImplDShow::SendCommand->0x1f) 05 : 00420bc6/0001fbc6 [00000000,00000202,00000000,0344a990] @ ssp.exe (CGhostATSoundDesc::SendCommandWithParam->0x166) 06 : 00423ed2/00022ed2 [0344a990,07ae2188,00000000,02efb470] @ ssp.exe (CGhostAsyncTaskWnd::MCILoadFile->0x1f2) 07 : 00424461/00023461 [00090000,00000009,08b8fab4,00090000] @ ssp.exe (CGhostAsyncTaskWnd::OnMCIExecuteReal->0x181) 08 : 004240ea/000230ea [00090000,07ae2188,07ae2188,02efb470] @ ssp.exe (CGhostAsyncTaskWnd::OnMCIExecute->0x2a) 09 : 008283f7/004273f7 [004240c0,0085e6c0,0085e6f8,08b8fc94] @ ssp.exe (CWnd::OnWndMsg->0x5a7) 10 : 00827e1a/00426e1a [00008012,00090000,07ae2188,00008012] @ ssp.exe (CWnd::WindowProc->0x2a) 11 : 00826b98/00425b98 [02efb470,00000000,00008012,00090000] @ ssp.exe (AfxCallWndProc->0xa8) 12 : 00826e4d/00425e4d [005024d0,00008012,00090000,07ae2188] @ ssp.exe (AfxWndProc->0x3d) 13 : 769a348b/0004248b [00826e10,005024d0,00008012,00090000] @ USER32.dll (AddClipboardFormatListener->0x4b) 14 : 7699a42a/0003942a [00826e10,00000000,00008012,00090000] @ USER32.dll (GetClassLongW->0x7aa) 15 : 7699819a/0003719a [08b8fed0,0045fd3e,02ebcde0,00000001] @ USER32.dll (DispatchMessageW->0x24a) 16 : 7698a330/00029330 [02ebcde0,00000001,02ebcdb0,0082ac38] @ USER32.dll (DispatchMessageA->0x10) 17 : 0045fd3e/0005ed3e [0080b6f6,02ebce30,02ebce30,00000000] @ ssp.exe (CWinThreadAdapter::PumpMessage->0x3e) 18 : 0082a90d/0042990d [0019f2d4,0080b6f6,0080b6f6,02ebce30] @ ssp.exe (_AfxThreadEntry->0x11d) 19 : 0080b77f/0040a77f [02ebce30,775bfa10,08b8ffdc,779f7a9e] @ ssp.exe (_beginthreadex 0080b68b f libcmt:threadex.obj->0xf4) 20 : 775bfa29/0000fa29 [02ebce30,ac40f258,00000000,00000000] @ KERNEL32.DLL (BaseThreadInitThunk->0x19) 21 : 779f7a9e/00066a9e [ffffffff,77a18a50,00000000,00000000] @ ntdll.dll (RtlGetAppContainerNamedObjectPath->0x11e) 22 : 779f7a6e/00066a6e [0080b6f6,02ebce30,00000000,00000000] @ ntdll.dll (RtlGetAppContainerNamedObjectPath->0xee) Total StackDepth : 23