Bugreport
Bugreport
thread $6d8:
7699cc07 +47 USER32.dll MsgWaitForMultipleObjectsEx
7699cbaa +1a USER32.dll MsgWaitForMultipleObjects
007598c1 +0d MacroRecorder.exe madExcept CallThreadProcSafe
00759926 +32 MacroRecorder.exe madExcept ThreadExceptFrame
0075999c +a8 MacroRecorder.exe madExcept ThreadExceptFrame
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
>> created by main thread ($1284) at:
722d67df +00 gdiplus.dll
thread $1180:
752fa49d +fd KERNELBASE.dll WaitForMultipleObjectsEx
007598c1 +0d MacroRecorder.exe madExcept CallThreadProcSafe
00759926 +32 MacroRecorder.exe madExcept ThreadExceptFrame
0075999c +a8 MacroRecorder.exe madExcept ThreadExceptFrame
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
>> created by main thread ($1284) at:
75b9ce57 +00 combase.dll
thread $21d0:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1d04:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1d3c:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $c2c:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $26ec:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $870:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1a80:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $16e8:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1b70:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1854:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $50c:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $2b3c:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $2714:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1f98:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $27cc:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $24d8:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $12e0:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $26e8:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $14d4:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $16b0:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $144c:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1bdc:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1624:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1698:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1358:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $109c:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1ff4: <priority:15>
7699c0f8 +28 USER32.dll GetMessageW
007598c1 +0d MacroRecorder.exe madExcept CallThreadProcSafe
00759926 +32 MacroRecorder.exe madExcept ThreadExceptFrame
0075999c +a8 MacroRecorder.exe madExcept ThreadExceptFrame
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
>> created by main thread ($1284) at:
00406b2f +00 mrkey.dll
modules:
00400000 mrkey.dll 2.0.67.0 C:\Users\Usuario\
Desktop\Macro Recorder (xMacros)
006a0000 MacroRecorder.exe 3.0.40.0 C:\Users\Usuario\
Desktop\Macro Recorder (xMacros)
05a40000 security.dll 10.0.19041.1 C:\Windows\SYSTEM32
6f060000 propsys.dll 7.0.19041.4355 C:\Windows\system32
6f1f0000 CoreMessaging.dll 10.0.19041.4474 C:\Windows\System32
6f290000 CoreUIComponents.dll 10.0.19041.3636 C:\Windows\System32
6f510000 textinputframework.dll 10.0.19041.4651 C:\Windows\SYSTEM32
6f5d0000 msxml6.dll 6.30.19041.4355 C:\Windows\System32
6f7b0000 OneCoreUAPCommonProxyStub.dll 10.0.19041.4474 C:\Windows\System32
6fb70000 wintypes.dll 10.0.19041.4355 C:\Windows\SYSTEM32
6fc50000 windowscodecs.dll 10.0.19041.4648 C:\Windows\system32
6fdd0000 DWRITE.DLL 10.0.19041.4355 C:\Windows\SYSTEM32
6ffe0000 d2d1.dll 10.0.19041.4355 C:\Windows\SYSTEM32
70500000 igdusc32.dll 20.19.15.4531 C:\Windows\SYSTEM32
70dd0000 igd10iumd32.dll 20.19.15.4531 C:\Windows\SYSTEM32
719b0000 twinapi.appcore.dll 10.0.19041.4597 C:\Windows\system32
71b50000 dcomp.dll 10.0.19041.4597 C:\Windows\system32
71f60000 wpnapps.dll 10.0.19041.4597 C:\Windows\System32
72080000 d3d11.dll 10.0.19041.4355 C:\Windows\system32
72260000 gdiplus.dll 10.0.19041.4597 C:\Windows\WinSxS\
x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.19041.4597_none_d954b6f7e1016a2a
723d0000 dbghelp.dll 10.0.19041.3996 C:\Windows\SYSTEM32
72560000 dxcore.dll 10.0.19041.4474 C:\Windows\SYSTEM32
72850000 netapi32.dll 10.0.19041.3636 C:\Windows\SYSTEM32
72b30000 WINSTA.dll 10.0.19041.3636 C:\Windows\SYSTEM32
72c10000 TextShaping.dll C:\Windows\SYSTEM32
72d20000 usermgrcli.dll 10.0.19041.4355 C:\Windows\SYSTEM32
72d30000 XmlLite.dll 10.0.19041.3636 C:\Windows\System32
72d60000 NTASN1.dll 10.0.19041.3636 C:\Windows\SYSTEM32
72d90000 COMCTL32.dll 6.10.19041.4355 C:\Windows\WinSxS\
x86_microsoft.windows.common-
controls_6595b64144ccf1df_6.0.19041.4355_none_a865f0c28672571c
72fa0000 NETUTILS.DLL 10.0.19041.3636 C:\Windows\SYSTEM32
73050000 RMCLIENT.dll 10.0.19041.3636 C:\Windows\System32
73070000 ncrypt.dll 10.0.19041.4412 C:\Windows\SYSTEM32
730a0000 d3d10_1core.dll 10.0.19041.1 C:\Windows\SYSTEM32
730b0000 d3d10_1.dll 10.0.19041.1 C:\Windows\SYSTEM32
73270000 apphelp.dll 10.0.19041.4597 C:\Windows\SYSTEM32
73370000 ntmarta.dll 10.0.19041.3636 C:\Windows\SYSTEM32
73450000 Wldp.dll 10.0.19041.4597 C:\Windows\SYSTEM32
73480000 windows.storage.dll 10.0.19041.4648 C:\Windows\SYSTEM32
73ad0000 kernel.appcore.dll 10.0.19041.3758 C:\Windows\SYSTEM32
73c00000 wininet.dll 11.0.19041.4355 C:\Windows\SYSTEM32
74150000 SSPICLI.DLL 10.0.19041.4239 C:\Windows\SYSTEM32
74240000 Oleacc.dll 7.2.19041.3636 C:\Windows\system32
74330000 winmm.dll 10.0.19041.3636 C:\Windows\SYSTEM32
74360000 version.dll 10.0.19041.3636 C:\Windows\SYSTEM32
74370000 wsock32.dll 10.0.19041.1 C:\Windows\SYSTEM32
74380000 uxtheme.dll 10.0.19041.4648 C:\Windows\system32
74400000 winspool.drv 10.0.19041.4597 C:\Windows\SYSTEM32
74560000 dxgi.dll 10.0.19041.4597 C:\Windows\system32
74630000 dataexchange.dll 10.0.19041.4355 C:\Windows\system32
74670000 dbgcore.DLL 10.0.19041.4355 C:\Windows\SYSTEM32
746a0000 d3d9.dll 10.0.19041.4597 C:\Windows\SYSTEM32
74cb0000 wtsapi32.dll 10.0.19041.3636 C:\Windows\SYSTEM32
74cc0000 olepro32.dll 10.0.19041.3636 C:\Windows\SYSTEM32
74eb0000 SECUR32.DLL 10.0.19041.3636 C:\Windows\SYSTEM32
74ec0000 FaultRep.dll 10.0.19041.4355 C:\Windows\SYSTEM32
74f30000 SHFolder.dll 10.0.19041.1 C:\Windows\SYSTEM32
74f40000 winhttp.dll 10.0.19041.4355 C:\Windows\SYSTEM32
75010000 dwmapi.dll 10.0.19041.4355 C:\Windows\SYSTEM32
751d0000 KERNELBASE.dll 10.0.19041.4648 C:\Windows\System32
75410000 gdi32full.dll 10.0.19041.4648 C:\Windows\System32
75500000 msvcp_win.dll 10.0.19041.3636 C:\Windows\System32
75a20000 cfgmgr32.dll 10.0.19041.3996 C:\Windows\System32
75ac0000 combase.dll 10.0.19041.4597 C:\Windows\System32
75d40000 bcrypt.dll 10.0.19041.3636 C:\Windows\System32
75d60000 win32u.dll 10.0.19041.4648 C:\Windows\System32
75e10000 shlwapi.dll 10.0.19041.4355 C:\Windows\System32
75eb0000 msvcrt.dll 7.0.19041.3636 C:\Windows\System32
75f70000 RPCRT4.dll 10.0.19041.4597 C:\Windows\System32
76030000 KERNEL32.DLL 10.0.19041.4597 C:\Windows\System32
76120000 shcore.dll 10.0.19041.4522 C:\Windows\System32
761b0000 oleaut32.dll 10.0.19041.3636 C:\Windows\System32
762b0000 sechost.dll 10.0.19041.4597 C:\Windows\System32
76330000 ole32.dll 10.0.19041.4355 C:\Windows\System32
76420000 bcryptPrimitives.dll 10.0.19041.3636 C:\Windows\System32
76590000 comdlg32.dll 10.0.19041.4355 C:\Windows\System32
76640000 advapi32.dll 10.0.19041.4597 C:\Windows\System32
766c0000 ucrtbase.dll 10.0.19041.3636 C:\Windows\System32
767e0000 WS2_32.dll 10.0.19041.3636 C:\Windows\System32
76850000 MSCTF.dll 10.0.19041.4597 C:\Windows\System32
76930000 IMM32.DLL 10.0.19041.4474 C:\Windows\System32
76960000 USER32.dll 10.0.19041.4648 C:\Windows\System32
76b00000 clbcatq.dll 2001.12.10941.16384 C:\Windows\System32
76b80000 SHELL32.dll 10.0.19041.4648 C:\Windows\System32
77180000 gdi32.dll 10.0.19041.4474 C:\Windows\System32
771c0000 ntdll.dll 10.0.19041.4522 C:\Windows\SYSTEM32
processes:
0000 Idle 0 0 0
0004 System 0 0 0
0064 Registry 0 0 0
018c smss.exe 0 0 0
0230 csrss.exe 0 0 0
0304 wininit.exe 0 0 0
030c csrss.exe 1 0 0
035c services.exe 0 0 0
036c lsass.exe 0 0 0
03e4 svchost.exe 0 0 0
0164 fontdrvhost.exe 0 0 0
0268 svchost.exe 0 0 0
02d4 svchost.exe 0 0 0
0398 winlogon.exe 1 0 0
0404 fontdrvhost.exe 1 0 0
0484 svchost.exe 0 0 0
048c svchost.exe 0 0 0
0494 svchost.exe 0 0 0
049c svchost.exe 0 0 0
04e4 svchost.exe 0 0 0
051c svchost.exe 0 0 0
05a0 svchost.exe 0 0 0
05c0 svchost.exe 0 0 0
05dc dwm.exe 1 0 0
060c svchost.exe 0 0 0
0628 svchost.exe 0 0 0
0694 svchost.exe 0 0 0
0714 svchost.exe 0 0 0
073c svchost.exe 0 0 0
0750 svchost.exe 0 0 0
07bc svchost.exe 0 0 0
07d4 svchost.exe 0 0 0
07dc svchost.exe 0 0 0
0618 svchost.exe 0 0 0
0764 dasHost.exe 0 0 0
0838 atiesrxx.exe 0 0 0
0840 WUDFHost.exe 0 0 0
0848 svchost.exe 0 0 0
08a8 svchost.exe 0 0 0
0948 svchost.exe 0 0 0
09a4 svchost.exe 0 0 0
09ac svchost.exe 0 0 0
09f0 svchost.exe 0 0 0
0a74 svchost.exe 0 0 0
0a9c svchost.exe 0 0 0
0ab4 svchost.exe 0 0 0
0ac4 atieclxx.exe 1 0 0
0ad8 svchost.exe 0 0 0
0ae8 svchost.exe 0 0 0
0b4c Memory Compression 0 0 0
0b5c svchost.exe 0 0 0
0b98 svchost.exe 0 0 0
0ba0 igfxCUIService.exe 0 0 0
0bc8 svchost.exe 0 0 0
07e8 svchost.exe 0 0 0
0968 svchost.exe 0 0 0
0c20 svchost.exe 0 0 0
0dd0 svchost.exe 0 0 0
0e14 RtkAudioService64.exe 0 0 0
0e40 svchost.exe 0 0 0
0ecc RAVBg64.exe 1 0 0
0ee0 RAVBg64.exe 1 0 0
0ef4 svchost.exe 0 0 0
0efc svchost.exe 0 0 0
0f78 svchost.exe 0 0 0
0fb0 svchost.exe 0 0 0
0ff4 spoolsv.exe 0 0 0
0c38 svchost.exe 0 0 0
1004 svchost.exe 0 0 0
1084 svchost.exe 0 0 0
108c svchost.exe 0 0 0
10f4 AdminService.exe 0 0 0
10fc svchost.exe 0 0 0
110c svchost.exe 0 0 0
1104 armsvc.exe 0 0 0
1118 svchost.exe 0 0 0
1130 svchost.exe 0 0 0
1148 OfficeClickToRun.exe 0 0 0
1154 LicSrv66.exe 0 0 0
1184 MpDefenderCoreService.exe 0 0 0
11bc svchost.exe 0 0 0
11e8 SynTPEnhService.exe 0 0 0
11f0 PsiService_2.exe 0 0 0
1200 svchost.exe 0 0 0
1228 svchost.exe 0 0 0
1234 MsMpEng.exe 0 0 0
1258 TeamViewer_Service.exe 0 0 0
1260 svchost.exe 0 0 0
1270 svchost.exe 0 0 0
1500 svchost.exe 0 0 0
1610 svchost.exe 0 0 0
1724 svchost.exe 0 0 0
1884 svchost.exe 0 0 0
18e0 SearchIndexer.exe 0 0 0
18fc svchost.exe 0 0 0
1960 WmiPrvSE.exe 0 0 0
1a90 dllhost.exe 0 0 0
1a98 sihost.exe 1 0 15 normal C:\Windows\System32
1b04 svchost.exe 1 0 1 normal C:\Windows\System32
1b38 svchost.exe 1 4 10 normal C:\Windows\System32
1b98 taskhostw.exe 1 10 6 normal C:\Windows\System32
1ba0 MicrosoftEdgeUpdate.exe 0 0 0
1144 svchost.exe 0 0 0
14b0 svchost.exe 0 0 0
1ce0 AggregatorHost.exe 0 0 0
1df4 SynTPEnh.exe 1 84 54 above normal C:\Program Files\Synaptics\
SynTP
1ed0 svchost.exe 0 0 0
1ee8 explorer.exe 1 290 322 normal C:\Windows
1fcc SynTPHelper.exe 1 0 0
1fe0 svchost.exe 0 0 0
1cb0 igfxEM.exe 1 10 15 normal C:\Windows\System32
08e8 igfxHK.exe 1 10 14 normal C:\Windows\System32
0d34 igfxTray.exe 1 7 4 normal C:\Windows\System32
1ac4 svchost.exe 1 0 5 normal C:\Windows\System32
1f08 StartMenuExperienceHost.exe 1 0 14 normal C:\Windows\SystemApps\
Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy
1eb0 RuntimeBroker.exe 1 40 2 normal C:\Windows\System32
2090 svchost.exe 0 0 0
214c SearchApp.exe 1 14 56 normal C:\Windows\SystemApps\
Microsoft.Windows.Search_cw5n1h2txyewy
21b8 svchost.exe 0 0 0
22a4 RuntimeBroker.exe 1 42 5 normal C:\Windows\System32
2528 svchost.exe 0 0 0
25cc svchost.exe 0 0 0
2670 ctfmon.exe 1 0 0
2690 TabTip.exe 1 0 0
2798 NisSrv.exe 0 0 0
27e0 TextInputHost.exe 1 0 26 normal C:\Windows\SystemApps\
MicrosoftWindows.Client.CBS_cw5n1h2txyewy
24d4 svchost.exe 0 0 0
1738 PhoneExperienceHost.exe 1 0 17 normal C:\Program Files\
WindowsApps\Microsoft.YourPhone_1.24062.101.0_x64__8wekyb3d8bbwe
163c dllhost.exe 1 0 3 normal C:\Windows\System32
15f0 RuntimeBroker.exe 1 0 2 normal C:\Windows\System32
2658 RuntimeBroker.exe 1 0 2 normal C:\Windows\System32
1d0c smartscreen.exe 1 0 6 normal C:\Windows\System32
15ec SecurityHealthSystray.exe 1 7 6 normal C:\Windows\System32
2034 SecurityHealthService.exe 0 0 0
16ac OneDrive.exe 1 242 115 normal C:\Users\Usuario\AppData\
Local\Microsoft\OneDrive
28a0 msedge.exe 1 4 42 normal C:\Program Files (x86)\
Microsoft\Edge\Application
29a4 msedge.exe 1 0 3 normal C:\Program Files (x86)\
Microsoft\Edge\Application
2ad0 msedge.exe 1 1 5 above normal C:\Program Files (x86)\
Microsoft\Edge\Application
2b08 msedge.exe 1 0 3 normal C:\Program Files (x86)\
Microsoft\Edge\Application
2b10 msedge.exe 1 0 0 normal C:\Program Files (x86)\
Microsoft\Edge\Application
2860 jusched.exe 1 0 3 normal C:\Program Files (x86)\
Common Files\Java\Java Update
0e90 ApplicationFrameHost.exe 1 56 31 normal C:\Windows\System32
2bec CalculatorApp.exe 1 0 14 normal C:\Program Files\
WindowsApps\Microsoft.WindowsCalculator_11.2405.2.0_x64__8wekyb3d8bbwe
07c4 RuntimeBroker.exe 1 0 1 normal C:\Windows\System32
29b4 SystemSettings.exe 1 11 34 normal C:\Windows\
ImmersiveControlPanel
12c8 UserOOBEBroker.exe 1 0 1 normal C:\Windows\System32\oobe
1388 svchost.exe 1 0 1 normal C:\Windows\System32
0af8 ShellExperienceHost.exe 1 6 35 normal C:\Windows\SystemApps\
ShellExperienceHost_cw5n1h2txyewy
0c3c RuntimeBroker.exe 1 0 10 normal C:\Windows\System32
2bbc audiodg.exe 0 0 0
2514 svchost.exe 0 0 0
0f28 svchost.exe 0 0 0
24e8 SgrmBroker.exe 0 0 0
215c svchost.exe 0 0 0
0780 MacroRecorder.exe 1 99 93 normal C:\Users\Usuario\Desktop\
Macro Recorder (xMacros)
059c svchost.exe 0 0 0
192c svchost.exe 0 0 0
2350 CorelDRW.exe 1 290 168 normal C:\Program Files (x86)\
Corel\CorelDRAW Graphics Suite X7\Programs
1788 splwow64.exe 1 0 6 normal C:\Windows
1dec svchost.exe 1 0 1 normal C:\Windows\System32
0bb8 SearchApp.exe 1 1 51 normal C:\Windows\SystemApps\
Microsoft.Windows.Search_cw5n1h2txyewy
2538 jucheck.exe 1 7 6 normal C:\Program Files (x86)\
Common Files\Java\Java Update
hardware:
+ {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}
- Fax
- Fila de Impressão da Raiz
- Microsoft Print to PDF
- Microsoft XPS Document Writer
- OneNote for Windows 10
+ {36fc9e60-c465-11cf-8056-444553540000}
- Generic USB Hub
- Generic USB Hub
- Generic USB Hub
- Intel(R) 8 Series USB Enhanced Host Controller #1 - 9C26
- Intel(R) USB 3.0 eXtensible Host Controller - 1.0 (Microsoft)
- Realtek USB 2.0 Card Reader (driver 10.0.17134.31243)
- USB Composite Device
- USB Composite Device
- USB Mass Storage Device
- USB Root Hub
- USB Root Hub (USB 3.0)
+ {4d36e966-e325-11ce-bfc1-08002be10318}
- PC ACPI de base x64
+ {4d36e967-e325-11ce-bfc1-08002be10318}
- KINGSTON SA400S37240G
- WD Elements 2621 USB Device
+ {4d36e968-e325-11ce-bfc1-08002be10318}
- AMD Radeon R7 M260 (driver 27.20.1034.6)
- Intel(R) HD Graphics Family (driver 20.19.15.4531)
+ {4d36e96a-e325-11ce-bfc1-08002be10318}
- Controlador AHCI SATA Padrão
+ {4d36e96b-e325-11ce-bfc1-08002be10318}
- Dispositivo de teclado HID
- Teclado Padrão PS/2
+ {4d36e96c-e325-11ce-bfc1-08002be10318}
- Realtek High Definition Audio (driver 6.0.1.7544)
- Áudio Intel(R) para telas (driver 6.16.0.3197)
+ {4d36e96e-e325-11ce-bfc1-08002be10318}
- Monitor Genérico PnP
- Monitor Genérico PnP
+ {4d36e96f-e325-11ce-bfc1-08002be10318}
- Dell Touchpad (driver 19.0.15.2)
- Mouse compatível com HID
- Mouse compatível com PS/2
+ {4d36e972-e325-11ce-bfc1-08002be10318}
- Bluetooth Device (Personal Area Network)
- Microsoft Kernel Debug Network Adapter
- Microsoft Wi-Fi Direct Virtual Adapter
- Microsoft Wi-Fi Direct Virtual Adapter #2
- Qualcomm QCA9565 802.11b/g/n Wireless Adapter (driver 10.0.3.458)
- Realtek PCIe FE Family Controller (driver 10.3.723.2015)
- WAN Miniport (IKEv2)
- WAN Miniport (IP)
- WAN Miniport (IPv6)
- WAN Miniport (L2TP)
- WAN Miniport (Network Monitor)
- WAN Miniport (PPPOE)
- WAN Miniport (PPTP)
- WAN Miniport (SSTP)
+ {4d36e97b-e325-11ce-bfc1-08002be10318}
- Controlador de Espaços de Armazenamento da Microsoft
+ {4d36e97d-e325-11ce-bfc1-08002be10318}
- Barramento do Redirecionador de Dispositivos de Área de Trabalho Remota
- Botão de Recurso fixo ACPI
- Botão Suspensão ACPI
- CMOS do sistema/relógio em tempo real
- Complexo da Raiz de PCI Express
- Controlador de acesso direto à memória
- Controlador de High Definition Audio
- Controlador de High Definition Audio
- Controlador de interrupção programável
- Controlador Host Intel(R) Serial IO I2C - 9C62 (driver 1.1.253.0)
- desligar ACPI
- Dispositivo herdado
- Driver de Arbitragem de Carregamento
- Driver de Infraestrutura de Virtualização Microsoft Hyper-V
- Driver de Renderização Básico da Microsoft
- Driver de Vídeo Básico da Microsoft
- Enumerador de Adaptador de Rede Virtual NDIS
- Enumerador de Barramento de Composição
- Enumerador de Barramento de Raiz UMBus
- Enumerador de Dispositivos de Software Plug and Play
- Enumerador de Unidade Virtual Microsoft
- Gerenciador de Volumes
- Intel(R) 8 Series LPC Controller (Premium SKU) - 9C43 (driver 10.1.1.38)
- Intel(R) 8 Series PCI Express Root Port #3 - 9C14 (driver 10.1.1.38)
- Intel(R) 8 Series PCI Express Root Port #4 - 9C16 (driver 10.1.1.38)
- Intel(R) 8 Series PCI Express Root Port #5 - 9C18 (driver 10.1.1.38)
- Intel(R) 8 Series SMBus Controller - 9C22 (driver 10.1.1.38)
- Intel(R) Management Engine Interface (driver 11.7.0.1045)
- Intel(R) Serial IO GPIO Host Controller - INT33C7 (driver 1.1.253.0)
- Interface de Gerenciamento do Microsoft Windows para ACPI
- Microsoft ACPI-Compliant Embedded Controller
- Microsoft ACPI-Compliant System
- Microsoft System Management BIOS Driver
- PCI standard host CPU bridge
- Recursos da placa-mãe
- Recursos da placa-mãe
- Recursos da placa-mãe
- Recursos da placa-mãe
- Recursos da placa-mãe
- Tampa ACPI
- Timer de eventos de alta precisão
- Timer do sistema
+ {50127dc3-0f36-415e-a6cc-4cb3be910b65}
- Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
- Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
- Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
- Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
+ {533c5b84-ec70-11d2-9505-00c04f79deaf}
- Cópia de sombra de volume genérica
- Cópia de sombra de volume genérica
+ {5c4c3332-344d-483c-8739-259e934c9cc8}
- Componente de software genérico
+ {62f9c741-b25a-46ce-b54c-9bccce08b6f2}
- Bluetooth
- Microsoft Device Association Root Enumerator
- Microsoft GS Wavetable Synth
- Microsoft Radio Device Enumeration Bus
- Microsoft RRAS Root Enumerator
- Wi-Fi
+ {72631e54-78a4-11d0-bcf7-00aa00b7b32a}
- Adaptador de CA da Microsoft
- Bateria de Método de Controle Compatível com ACPI da Microsoft
+ {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
- Airplane Mode Switch (driver 1.4.2.0)
- Airplane Mode Switch Collection (driver 1.4.2.0)
- Controlador de sistema compatível com HID
- Dispositivo compatível com HID
- Dispositivo de controle de consumidor compatível com HID
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo definido pelo fornecedor compatível com HID
- Dispositivo definido pelo fornecedor compatível com HID
- Dispositivo HID I2C
- Synaptics HID Device (driver 19.0.15.2)
- Tela touch compatível com HID
+ {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
- Fones de ouvido / Alto falantes (Realtek High Definition Audio)
- Microfone (Realtek High Definition Audio)
- SyncMaster (Áudio Intel(R) para telas)
+ {ca3e7ab9-b4c3-4ae6-8251-579ef933890f}
- Integrated Webcam
+ {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
- Bluetooth Device (RFCOMM Protocol TDI)
- Enumerador Bluetooth da Microsoft
- Enumerador LE Bluetooth da Microsoft
- Qualcomm QCA9565 Bluetooth 4.0 (driver 10.0.3.15)
+ {eec5ad98-8080-425f-922a-dabf3de3f69a}
- Backup
cpu registers:
eax = 0a9caec8
ebx = 00000578
ecx = 007a0bf4
edx = 01dfec5c
esi = 00000000
edi = 00000000
eip = 00d158b8
esp = 01dfec8c
ebp = 01dfeed0
stack dump:
01dfec8c b8 58 d1 00 de fa ed 0e - 01 00 00 00 07 00 00 00 .X..............
01dfec9c a0 ec df 01 b8 58 d1 00 - c8 ae 9c 0a 78 05 00 00 .....X......x...
01dfecac 00 00 00 00 00 00 00 00 - d0 ee df 01 bc ec df 01 ................
01dfecbc e0 ee df 01 f0 aa 6a 00 - d0 ee df 01 00 00 00 00 ......j.........
01dfeccc 00 00 00 00 4f 00 20 00 - 69 00 64 00 65 00 6e 00 ....O. .i.d.e.n.
01dfecdc 74 00 69 00 66 00 69 00 - 63 00 61 00 64 00 6f 00 t.i.f.i.c.a.d.o.
01dfecec 72 00 20 00 64 00 61 00 - 20 00 6a 00 61 00 6e 00 r. .d.a. .j.a.n.
01dfecfc 65 00 6c 00 61 00 20 00 - e9 00 20 00 69 00 6e 00 e.l.a. ... .i.n.
01dfed0c 76 00 e1 00 6c 00 69 00 - 64 00 6f 00 2e 00 0d 00 v...l.i.d.o.....
01dfed1c 0a 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
01dfed2c 60 ed df 01 a8 8c 3d 71 - 00 00 00 00 e4 ed df 01 `.....=q........
01dfed3c 00 00 00 00 e4 ed df 01 - c8 0b 87 0f 00 05 00 40 ...............@
01dfed4c 00 ee 01 c0 00 00 00 00 - 80 01 00 00 00 00 00 00 ................
01dfed5c 80 e9 84 71 80 ed df 01 - 62 84 3d 71 00 00 00 00 ...q....b.=q....
01dfed6c e4 ed df 01 20 c5 11 0b - 78 c3 11 0b 30 c3 11 0b .... ...x...0...
01dfed7c 00 00 00 00 18 ef df 01 - 2e 4d 10 71 c8 0b 87 0f .........M.q....
01dfed8c e4 ed df 01 38 c2 28 02 - 50 42 10 71 d3 53 10 71 ....8.(.PB.q.S.q
01dfed9c 00 00 00 00 57 00 00 00 - 74 ef df 01 00 00 00 00 ....W...t.......
01dfedac 00 00 40 00 30 2d 29 02 - 01 00 00 00 00 00 00 00 [email protected]).........
01dfedbc 30 c3 11 0b 00 00 00 00 - 11 04 00 00 03 00 00 00 0...............
disassembling:
[...]
00e0095f 60 lea eax, [ebp-$20]
00e00962 call -$74a0ab ($6b68bc) ; System.Types.TRect.GetHeight
00e00967 mov edx, eax
00e00969 mov eax, [ebp-$c]
00e0096c mov ecx, [eax]
00e0096e > call dword ptr [ecx+$38]
00e00971 63 push $26
00e00973 push ebx
00e00974 call -$744071 ($6bc908) ; Winapi.Windows.GetDeviceCaps
00e00979 and eax, $100
00e0097e cmp eax, $100
[...]
thread $1ea8:
7699cc07 +47 USER32.dll MsgWaitForMultipleObjectsEx
7699cbaa +1a USER32.dll MsgWaitForMultipleObjects
007598c1 +0d MacroRecorder.exe madExcept CallThreadProcSafe
00759926 +32 MacroRecorder.exe madExcept ThreadExceptFrame
0075999c +a8 MacroRecorder.exe madExcept ThreadExceptFrame
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
>> created by main thread ($1edc) at:
722d67df +00 gdiplus.dll
thread $2dc:
752fa49d +fd KERNELBASE.dll WaitForMultipleObjectsEx
007598c1 +0d MacroRecorder.exe madExcept CallThreadProcSafe
00759926 +32 MacroRecorder.exe madExcept ThreadExceptFrame
0075999c +a8 MacroRecorder.exe madExcept ThreadExceptFrame
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
>> created by main thread ($1edc) at:
75b9ce57 +00 combase.dll
thread $eb0:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $2048:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $2328:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $bbc:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $11a8:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $b08:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $29c0:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $af4:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $27f0:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $dec:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $23f8:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1210:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $3ec:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $464:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $44c:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $9d0:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $1f58:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $c04:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $e20:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $2a60:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $b0c:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $2a58:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $3ac:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $b3c:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $261c:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
thread $278:
7604fcc7 +17 KERNEL32.DLL BaseThreadInitThunk
modules:
00400000 mrkey.dll 2.0.67.0 C:\Users\Usuario\
Desktop\Macro Recorder (xMacros)
006a0000 MacroRecorder.exe 3.0.40.0 C:\Users\Usuario\
Desktop\Macro Recorder (xMacros)
05a70000 security.dll 10.0.19041.1 C:\Windows\SYSTEM32
6f060000 propsys.dll 7.0.19041.4355 C:\Windows\system32
6f1f0000 CoreMessaging.dll 10.0.19041.4474 C:\Windows\System32
6f290000 CoreUIComponents.dll 10.0.19041.3636 C:\Windows\System32
6f510000 textinputframework.dll 10.0.19041.4651 C:\Windows\SYSTEM32
6f5d0000 msxml6.dll 6.30.19041.4355 C:\Windows\System32
6f7b0000 OneCoreUAPCommonProxyStub.dll 10.0.19041.4474 C:\Windows\System32
6fb70000 wintypes.dll 10.0.19041.4355 C:\Windows\SYSTEM32
6fc50000 windowscodecs.dll 10.0.19041.4648 C:\Windows\system32
6fdd0000 DWRITE.DLL 10.0.19041.4355 C:\Windows\SYSTEM32
6ffe0000 d2d1.dll 10.0.19041.4355 C:\Windows\SYSTEM32
70500000 igdusc32.dll 20.19.15.4531 C:\Windows\SYSTEM32
70dd0000 igd10iumd32.dll 20.19.15.4531 C:\Windows\SYSTEM32
719b0000 twinapi.appcore.dll 10.0.19041.4597 C:\Windows\system32
71b50000 dcomp.dll 10.0.19041.4597 C:\Windows\system32
71f60000 wpnapps.dll 10.0.19041.4597 C:\Windows\System32
72080000 d3d11.dll 10.0.19041.4355 C:\Windows\system32
72260000 gdiplus.dll 10.0.19041.4597 C:\Windows\WinSxS\
x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.19041.4597_none_d954b6f7e1016a2a
723d0000 dbghelp.dll 10.0.19041.3996 C:\Windows\SYSTEM32
72560000 dxcore.dll 10.0.19041.4474 C:\Windows\SYSTEM32
72850000 netapi32.dll 10.0.19041.3636 C:\Windows\SYSTEM32
72b30000 WINSTA.dll 10.0.19041.3636 C:\Windows\SYSTEM32
72c10000 TextShaping.dll C:\Windows\SYSTEM32
72d20000 usermgrcli.dll 10.0.19041.4355 C:\Windows\SYSTEM32
72d30000 XmlLite.dll 10.0.19041.3636 C:\Windows\System32
72d60000 NTASN1.dll 10.0.19041.3636 C:\Windows\SYSTEM32
72d90000 COMCTL32.dll 6.10.19041.4355 C:\Windows\WinSxS\
x86_microsoft.windows.common-
controls_6595b64144ccf1df_6.0.19041.4355_none_a865f0c28672571c
72fa0000 NETUTILS.DLL 10.0.19041.3636 C:\Windows\SYSTEM32
73050000 RMCLIENT.dll 10.0.19041.3636 C:\Windows\System32
73070000 ncrypt.dll 10.0.19041.4412 C:\Windows\SYSTEM32
730a0000 d3d10_1core.dll 10.0.19041.1 C:\Windows\SYSTEM32
730b0000 d3d10_1.dll 10.0.19041.1 C:\Windows\SYSTEM32
73270000 apphelp.dll 10.0.19041.4597 C:\Windows\SYSTEM32
73370000 ntmarta.dll 10.0.19041.3636 C:\Windows\SYSTEM32
73450000 Wldp.dll 10.0.19041.4597 C:\Windows\SYSTEM32
73480000 windows.storage.dll 10.0.19041.4648 C:\Windows\SYSTEM32
73ad0000 kernel.appcore.dll 10.0.19041.3758 C:\Windows\SYSTEM32
73c00000 wininet.dll 11.0.19041.4355 C:\Windows\SYSTEM32
74150000 SSPICLI.DLL 10.0.19041.4239 C:\Windows\SYSTEM32
74240000 Oleacc.dll 7.2.19041.3636 C:\Windows\system32
74330000 winmm.dll 10.0.19041.3636 C:\Windows\SYSTEM32
74360000 version.dll 10.0.19041.3636 C:\Windows\SYSTEM32
74370000 wsock32.dll 10.0.19041.1 C:\Windows\SYSTEM32
74380000 uxtheme.dll 10.0.19041.4648 C:\Windows\system32
74400000 winspool.drv 10.0.19041.4597 C:\Windows\SYSTEM32
74560000 dxgi.dll 10.0.19041.4597 C:\Windows\system32
74630000 dataexchange.dll 10.0.19041.4355 C:\Windows\system32
74670000 dbgcore.DLL 10.0.19041.4355 C:\Windows\SYSTEM32
746a0000 d3d9.dll 10.0.19041.4597 C:\Windows\SYSTEM32
74cb0000 wtsapi32.dll 10.0.19041.3636 C:\Windows\SYSTEM32
74cc0000 olepro32.dll 10.0.19041.3636 C:\Windows\SYSTEM32
74eb0000 SECUR32.DLL 10.0.19041.3636 C:\Windows\SYSTEM32
74ec0000 FaultRep.dll 10.0.19041.4355 C:\Windows\SYSTEM32
74f30000 SHFolder.dll 10.0.19041.1 C:\Windows\SYSTEM32
74f40000 winhttp.dll 10.0.19041.4355 C:\Windows\SYSTEM32
75010000 dwmapi.dll 10.0.19041.4355 C:\Windows\SYSTEM32
751d0000 KERNELBASE.dll 10.0.19041.4648 C:\Windows\System32
75410000 gdi32full.dll 10.0.19041.4648 C:\Windows\System32
75500000 msvcp_win.dll 10.0.19041.3636 C:\Windows\System32
75a20000 cfgmgr32.dll 10.0.19041.3996 C:\Windows\System32
75ac0000 combase.dll 10.0.19041.4597 C:\Windows\System32
75d40000 bcrypt.dll 10.0.19041.3636 C:\Windows\System32
75d60000 win32u.dll 10.0.19041.4648 C:\Windows\System32
75e10000 shlwapi.dll 10.0.19041.4355 C:\Windows\System32
75eb0000 msvcrt.dll 7.0.19041.3636 C:\Windows\System32
75f70000 RPCRT4.dll 10.0.19041.4597 C:\Windows\System32
76030000 KERNEL32.DLL 10.0.19041.4597 C:\Windows\System32
76120000 shcore.dll 10.0.19041.4522 C:\Windows\System32
761b0000 oleaut32.dll 10.0.19041.3636 C:\Windows\System32
762b0000 sechost.dll 10.0.19041.4597 C:\Windows\System32
76330000 ole32.dll 10.0.19041.4355 C:\Windows\System32
76420000 bcryptPrimitives.dll 10.0.19041.3636 C:\Windows\System32
76590000 comdlg32.dll 10.0.19041.4355 C:\Windows\System32
76640000 advapi32.dll 10.0.19041.4597 C:\Windows\System32
766c0000 ucrtbase.dll 10.0.19041.3636 C:\Windows\System32
767e0000 WS2_32.dll 10.0.19041.3636 C:\Windows\System32
76850000 MSCTF.dll 10.0.19041.4597 C:\Windows\System32
76930000 IMM32.DLL 10.0.19041.4474 C:\Windows\System32
76960000 USER32.dll 10.0.19041.4648 C:\Windows\System32
76b00000 clbcatq.dll 2001.12.10941.16384 C:\Windows\System32
76b80000 SHELL32.dll 10.0.19041.4648 C:\Windows\System32
77180000 GDI32.dll 10.0.19041.4474 C:\Windows\System32
771c0000 ntdll.dll 10.0.19041.4522 C:\Windows\SYSTEM32
processes:
0000 Idle 0 0 0
0004 System 0 0 0
0064 Registry 0 0 0
018c smss.exe 0 0 0
0230 csrss.exe 0 0 0
0304 wininit.exe 0 0 0
030c csrss.exe 1 0 0
035c services.exe 0 0 0
036c lsass.exe 0 0 0
03e4 svchost.exe 0 0 0
0164 fontdrvhost.exe 0 0 0
0268 svchost.exe 0 0 0
02d4 svchost.exe 0 0 0
0398 winlogon.exe 1 0 0
0404 fontdrvhost.exe 1 0 0
0484 svchost.exe 0 0 0
048c svchost.exe 0 0 0
0494 svchost.exe 0 0 0
049c svchost.exe 0 0 0
04e4 svchost.exe 0 0 0
051c svchost.exe 0 0 0
05a0 svchost.exe 0 0 0
05c0 svchost.exe 0 0 0
05dc dwm.exe 1 0 0
060c svchost.exe 0 0 0
0628 svchost.exe 0 0 0
0694 svchost.exe 0 0 0
0714 svchost.exe 0 0 0
073c svchost.exe 0 0 0
0750 svchost.exe 0 0 0
07bc svchost.exe 0 0 0
07d4 svchost.exe 0 0 0
07dc svchost.exe 0 0 0
0618 svchost.exe 0 0 0
0764 dasHost.exe 0 0 0
0838 atiesrxx.exe 0 0 0
0840 WUDFHost.exe 0 0 0
0848 svchost.exe 0 0 0
08a8 svchost.exe 0 0 0
0948 svchost.exe 0 0 0
09a4 svchost.exe 0 0 0
09ac svchost.exe 0 0 0
09f0 svchost.exe 0 0 0
0a74 svchost.exe 0 0 0
0a9c svchost.exe 0 0 0
0ab4 svchost.exe 0 0 0
0ac4 atieclxx.exe 1 0 0
0ad8 svchost.exe 0 0 0
0ae8 svchost.exe 0 0 0
0b4c Memory Compression 0 0 0
0b5c svchost.exe 0 0 0
0b98 svchost.exe 0 0 0
0ba0 igfxCUIService.exe 0 0 0
0bc8 svchost.exe 0 0 0
07e8 svchost.exe 0 0 0
0968 svchost.exe 0 0 0
0c20 svchost.exe 0 0 0
0dd0 svchost.exe 0 0 0
0e14 RtkAudioService64.exe 0 0 0
0e40 svchost.exe 0 0 0
0ecc RAVBg64.exe 1 0 0
0ee0 RAVBg64.exe 1 0 0
0ef4 svchost.exe 0 0 0
0efc svchost.exe 0 0 0
0f78 svchost.exe 0 0 0
0fb0 svchost.exe 0 0 0
0ff4 spoolsv.exe 0 0 0
0c38 svchost.exe 0 0 0
1004 svchost.exe 0 0 0
1084 svchost.exe 0 0 0
108c svchost.exe 0 0 0
10f4 AdminService.exe 0 0 0
10fc svchost.exe 0 0 0
110c svchost.exe 0 0 0
1104 armsvc.exe 0 0 0
1118 svchost.exe 0 0 0
1130 svchost.exe 0 0 0
1148 OfficeClickToRun.exe 0 0 0
1154 LicSrv66.exe 0 0 0
1184 MpDefenderCoreService.exe 0 0 0
11bc svchost.exe 0 0 0
11e8 SynTPEnhService.exe 0 0 0
11f0 PsiService_2.exe 0 0 0
1200 svchost.exe 0 0 0
1228 svchost.exe 0 0 0
1234 MsMpEng.exe 0 0 0
1258 TeamViewer_Service.exe 0 0 0
1260 svchost.exe 0 0 0
1270 svchost.exe 0 0 0
1500 svchost.exe 0 0 0
1610 svchost.exe 0 0 0
1724 svchost.exe 0 0 0
1884 svchost.exe 0 0 0
18e0 SearchIndexer.exe 0 0 0
18fc svchost.exe 0 0 0
1960 WmiPrvSE.exe 0 0 0
1a90 dllhost.exe 0 0 0
1a98 sihost.exe 1 0 11 normal C:\Windows\System32
1b04 svchost.exe 1 0 1 normal C:\Windows\System32
1b38 svchost.exe 1 4 8 normal C:\Windows\System32
1b98 taskhostw.exe 1 10 6 normal C:\Windows\System32
1ba0 MicrosoftEdgeUpdate.exe 0 0 0
1144 svchost.exe 0 0 0
14b0 svchost.exe 0 0 0
1ce0 AggregatorHost.exe 0 0 0
1df4 SynTPEnh.exe 1 84 54 above normal C:\Program Files\Synaptics\
SynTP
1ed0 svchost.exe 0 0 0
1ee8 explorer.exe 1 290 323 normal C:\Windows
1fcc SynTPHelper.exe 1 0 0
1fe0 svchost.exe 0 0 0
1cb0 igfxEM.exe 1 10 15 normal C:\Windows\System32
08e8 igfxHK.exe 1 10 14 normal C:\Windows\System32
0d34 igfxTray.exe 1 7 4 normal C:\Windows\System32
1ac4 svchost.exe 1 0 5 normal C:\Windows\System32
1f08 StartMenuExperienceHost.exe 1 0 14 normal C:\Windows\SystemApps\
Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy
1eb0 RuntimeBroker.exe 1 40 1 normal C:\Windows\System32
2090 svchost.exe 0 0 0
214c SearchApp.exe 1 14 56 normal C:\Windows\SystemApps\
Microsoft.Windows.Search_cw5n1h2txyewy
21b8 svchost.exe 0 0 0
22a4 RuntimeBroker.exe 1 42 4 normal C:\Windows\System32
2528 svchost.exe 0 0 0
2670 ctfmon.exe 1 0 0
2690 TabTip.exe 1 0 0
2798 NisSrv.exe 0 0 0
27e0 TextInputHost.exe 1 0 26 normal C:\Windows\SystemApps\
MicrosoftWindows.Client.CBS_cw5n1h2txyewy
24d4 svchost.exe 0 0 0
1738 PhoneExperienceHost.exe 1 0 16 normal C:\Program Files\
WindowsApps\Microsoft.YourPhone_1.24062.101.0_x64__8wekyb3d8bbwe
163c dllhost.exe 1 0 3 normal C:\Windows\System32
15f0 RuntimeBroker.exe 1 0 1 normal C:\Windows\System32
2658 RuntimeBroker.exe 1 0 1 normal C:\Windows\System32
1d0c smartscreen.exe 1 0 5 normal C:\Windows\System32
15ec SecurityHealthSystray.exe 1 7 5 normal C:\Windows\System32
2034 SecurityHealthService.exe 0 0 0
16ac OneDrive.exe 1 242 115 normal C:\Users\Usuario\AppData\
Local\Microsoft\OneDrive
28a0 msedge.exe 1 4 42 normal C:\Program Files (x86)\
Microsoft\Edge\Application
29a4 msedge.exe 1 0 3 normal C:\Program Files (x86)\
Microsoft\Edge\Application
2ad0 msedge.exe 1 1 5 above normal C:\Program Files (x86)\
Microsoft\Edge\Application
2b08 msedge.exe 1 0 3 normal C:\Program Files (x86)\
Microsoft\Edge\Application
2b10 msedge.exe 1 0 0 normal C:\Program Files (x86)\
Microsoft\Edge\Application
2860 jusched.exe 1 0 2 normal C:\Program Files (x86)\
Common Files\Java\Java Update
0e90 ApplicationFrameHost.exe 1 56 31 normal C:\Windows\System32
2bec CalculatorApp.exe 1 0 14 normal C:\Program Files\
WindowsApps\Microsoft.WindowsCalculator_11.2405.2.0_x64__8wekyb3d8bbwe
07c4 RuntimeBroker.exe 1 0 1 normal C:\Windows\System32
29b4 SystemSettings.exe 1 11 34 normal C:\Windows\
ImmersiveControlPanel
12c8 UserOOBEBroker.exe 1 0 1 normal C:\Windows\System32\oobe
1388 svchost.exe 1 0 1 normal C:\Windows\System32
0af8 ShellExperienceHost.exe 1 6 32 normal C:\Windows\SystemApps\
ShellExperienceHost_cw5n1h2txyewy
0c3c RuntimeBroker.exe 1 0 6 normal C:\Windows\System32
2bbc audiodg.exe 0 0 0
2514 svchost.exe 0 0 0
0f28 svchost.exe 0 0 0
24e8 SgrmBroker.exe 0 0 0
215c svchost.exe 0 0 0
059c svchost.exe 0 0 0
192c svchost.exe 0 0 0
2350 CorelDRW.exe 1 290 167 normal C:\Program Files (x86)\
Corel\CorelDRAW Graphics Suite X7\Programs
1788 splwow64.exe 1 0 5 normal C:\Windows
1dec svchost.exe 1 0 1 normal C:\Windows\System32
0bb8 SearchApp.exe 1 1 51 normal C:\Windows\SystemApps\
Microsoft.Windows.Search_cw5n1h2txyewy
2538 jucheck.exe 1 7 6 normal C:\Program Files (x86)\
Common Files\Java\Java Update
042c MacroRecorder.exe 1 86 82 normal C:\Users\Usuario\Desktop\
Macro Recorder (xMacros)
1848 SearchProtocolHost.exe 0 0 0
04c4 SearchFilterHost.exe 0 0 0
0860 backgroundTaskHost.exe 1 0 6 normal C:\Windows\System32
2308 chrome.exe 1 21 57 normal C:\Program Files (x86)\
Google\Chrome\Application
22f0 chrome.exe 1 0 4 normal C:\Program Files (x86)\
Google\Chrome\Application
0b10 chrome.exe 1 7 12 above normal C:\Program Files (x86)\
Google\Chrome\Application
105c chrome.exe 1 0 1 normal C:\Program Files (x86)\
Google\Chrome\Application
0fc8 chrome.exe 1 0 0 normal C:\Program Files (x86)\
Google\Chrome\Application
2994 chrome.exe 1 0 0 idle C:\Program Files (x86)\
Google\Chrome\Application
29ac chrome.exe 1 0 0 normal C:\Program Files (x86)\
Google\Chrome\Application
175c chrome.exe 1 0 0 normal C:\Program Files (x86)\
Google\Chrome\Application
283c chrome.exe 1 0 0 normal C:\Program Files (x86)\
Google\Chrome\Application
1518 chrome.exe 1 0 0 idle C:\Program Files (x86)\
Google\Chrome\Application
1418 chrome.exe 1 0 0 idle C:\Program Files (x86)\
Google\Chrome\Application
2938 svchost.exe 0 0 0
0be8 WmiPrvSE.exe 0 0 0
0dcc svchost.exe 0 0 0
hardware:
+ {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}
- Fax
- Fila de Impressão da Raiz
- Microsoft Print to PDF
- Microsoft XPS Document Writer
- OneNote for Windows 10
+ {36fc9e60-c465-11cf-8056-444553540000}
- Generic USB Hub
- Generic USB Hub
- Generic USB Hub
- Intel(R) 8 Series USB Enhanced Host Controller #1 - 9C26
- Intel(R) USB 3.0 eXtensible Host Controller - 1.0 (Microsoft)
- Realtek USB 2.0 Card Reader (driver 10.0.17134.31243)
- USB Composite Device
- USB Composite Device
- USB Mass Storage Device
- USB Root Hub
- USB Root Hub (USB 3.0)
+ {4d36e966-e325-11ce-bfc1-08002be10318}
- PC ACPI de base x64
+ {4d36e967-e325-11ce-bfc1-08002be10318}
- KINGSTON SA400S37240G
- WD Elements 2621 USB Device
+ {4d36e968-e325-11ce-bfc1-08002be10318}
- AMD Radeon R7 M260 (driver 27.20.1034.6)
- Intel(R) HD Graphics Family (driver 20.19.15.4531)
+ {4d36e96a-e325-11ce-bfc1-08002be10318}
- Controlador AHCI SATA Padrão
+ {4d36e96b-e325-11ce-bfc1-08002be10318}
- Dispositivo de teclado HID
- Teclado Padrão PS/2
+ {4d36e96c-e325-11ce-bfc1-08002be10318}
- Realtek High Definition Audio (driver 6.0.1.7544)
- Áudio Intel(R) para telas (driver 6.16.0.3197)
+ {4d36e96e-e325-11ce-bfc1-08002be10318}
- Monitor Genérico PnP
- Monitor Genérico PnP
+ {4d36e96f-e325-11ce-bfc1-08002be10318}
- Dell Touchpad (driver 19.0.15.2)
- Mouse compatível com HID
- Mouse compatível com PS/2
+ {4d36e972-e325-11ce-bfc1-08002be10318}
- Bluetooth Device (Personal Area Network)
- Microsoft Kernel Debug Network Adapter
- Microsoft Wi-Fi Direct Virtual Adapter
- Microsoft Wi-Fi Direct Virtual Adapter #2
- Qualcomm QCA9565 802.11b/g/n Wireless Adapter (driver 10.0.3.458)
- Realtek PCIe FE Family Controller (driver 10.3.723.2015)
- WAN Miniport (IKEv2)
- WAN Miniport (IP)
- WAN Miniport (IPv6)
- WAN Miniport (L2TP)
- WAN Miniport (Network Monitor)
- WAN Miniport (PPPOE)
- WAN Miniport (PPTP)
- WAN Miniport (SSTP)
+ {4d36e97b-e325-11ce-bfc1-08002be10318}
- Controlador de Espaços de Armazenamento da Microsoft
+ {4d36e97d-e325-11ce-bfc1-08002be10318}
- Barramento do Redirecionador de Dispositivos de Área de Trabalho Remota
- Botão de Recurso fixo ACPI
- Botão Suspensão ACPI
- CMOS do sistema/relógio em tempo real
- Complexo da Raiz de PCI Express
- Controlador de acesso direto à memória
- Controlador de High Definition Audio
- Controlador de High Definition Audio
- Controlador de interrupção programável
- Controlador Host Intel(R) Serial IO I2C - 9C62 (driver 1.1.253.0)
- desligar ACPI
- Dispositivo herdado
- Driver de Arbitragem de Carregamento
- Driver de Infraestrutura de Virtualização Microsoft Hyper-V
- Driver de Renderização Básico da Microsoft
- Driver de Vídeo Básico da Microsoft
- Enumerador de Adaptador de Rede Virtual NDIS
- Enumerador de Barramento de Composição
- Enumerador de Barramento de Raiz UMBus
- Enumerador de Dispositivos de Software Plug and Play
- Enumerador de Unidade Virtual Microsoft
- Gerenciador de Volumes
- Intel(R) 8 Series LPC Controller (Premium SKU) - 9C43 (driver 10.1.1.38)
- Intel(R) 8 Series PCI Express Root Port #3 - 9C14 (driver 10.1.1.38)
- Intel(R) 8 Series PCI Express Root Port #4 - 9C16 (driver 10.1.1.38)
- Intel(R) 8 Series PCI Express Root Port #5 - 9C18 (driver 10.1.1.38)
- Intel(R) 8 Series SMBus Controller - 9C22 (driver 10.1.1.38)
- Intel(R) Management Engine Interface (driver 11.7.0.1045)
- Intel(R) Serial IO GPIO Host Controller - INT33C7 (driver 1.1.253.0)
- Interface de Gerenciamento do Microsoft Windows para ACPI
- Microsoft ACPI-Compliant Embedded Controller
- Microsoft ACPI-Compliant System
- Microsoft System Management BIOS Driver
- PCI standard host CPU bridge
- Recursos da placa-mãe
- Recursos da placa-mãe
- Recursos da placa-mãe
- Recursos da placa-mãe
- Recursos da placa-mãe
- Tampa ACPI
- Timer de eventos de alta precisão
- Timer do sistema
+ {50127dc3-0f36-415e-a6cc-4cb3be910b65}
- Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
- Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
- Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
- Intel(R) Core(TM) i7-4510U CPU @ 2.00GHz
+ {533c5b84-ec70-11d2-9505-00c04f79deaf}
- Cópia de sombra de volume genérica
- Cópia de sombra de volume genérica
+ {5c4c3332-344d-483c-8739-259e934c9cc8}
- Componente de software genérico
+ {62f9c741-b25a-46ce-b54c-9bccce08b6f2}
- Bluetooth
- Microsoft Device Association Root Enumerator
- Microsoft GS Wavetable Synth
- Microsoft Radio Device Enumeration Bus
- Microsoft RRAS Root Enumerator
- Wi-Fi
+ {72631e54-78a4-11d0-bcf7-00aa00b7b32a}
- Adaptador de CA da Microsoft
- Bateria de Método de Controle Compatível com ACPI da Microsoft
+ {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
- Airplane Mode Switch (driver 1.4.2.0)
- Airplane Mode Switch Collection (driver 1.4.2.0)
- Controlador de sistema compatível com HID
- Dispositivo compatível com HID
- Dispositivo de controle de consumidor compatível com HID
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo definido pelo fornecedor compatível com HID
- Dispositivo definido pelo fornecedor compatível com HID
- Dispositivo HID I2C
- Synaptics HID Device (driver 19.0.15.2)
- Tela touch compatível com HID
+ {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
- Fones de ouvido / Alto falantes (Realtek High Definition Audio)
- Microfone (Realtek High Definition Audio)
- SyncMaster (Áudio Intel(R) para telas)
+ {ca3e7ab9-b4c3-4ae6-8251-579ef933890f}
- Integrated Webcam
+ {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
- Bluetooth Device (RFCOMM Protocol TDI)
- Enumerador Bluetooth da Microsoft
- Enumerador LE Bluetooth da Microsoft
- Qualcomm QCA9565 Bluetooth 4.0 (driver 10.0.3.15)
+ {eec5ad98-8080-425f-922a-dabf3de3f69a}
- Backup
cpu registers:
eax = 10a10958
ebx = 00000578
ecx = 007a0bf4
edx = 01d6f1a4
esi = 00000000
edi = 00000000
eip = 00d158b8
esp = 01d6f1d4
ebp = 01d6f418
stack dump:
01d6f1d4 b8 58 d1 00 de fa ed 0e - 01 00 00 00 07 00 00 00 .X..............
01d6f1e4 e8 f1 d6 01 b8 58 d1 00 - 58 09 a1 10 78 05 00 00 .....X..X...x...
01d6f1f4 00 00 00 00 00 00 00 00 - 18 f4 d6 01 04 f2 d6 01 ................
01d6f204 28 f4 d6 01 f0 aa 6a 00 - 18 f4 d6 01 00 00 00 00 (.....j.........
01d6f214 00 00 00 00 4f 00 20 00 - 69 00 64 00 65 00 6e 00 ....O. .i.d.e.n.
01d6f224 74 00 69 00 66 00 69 00 - 63 00 61 00 64 00 6f 00 t.i.f.i.c.a.d.o.
01d6f234 72 00 20 00 64 00 61 00 - 20 00 6a 00 61 00 6e 00 r. .d.a. .j.a.n.
01d6f244 65 00 6c 00 61 00 20 00 - e9 00 20 00 69 00 6e 00 e.l.a. ... .i.n.
01d6f254 76 00 e1 00 6c 00 69 00 - 64 00 6f 00 2e 00 0d 00 v...l.i.d.o.....
01d6f264 0a 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
01d6f274 a8 f2 d6 01 a8 8c 3d 71 - 00 00 00 00 2c f3 d6 01 ......=q....,...
01d6f284 00 00 00 00 2c f3 d6 01 - f8 ad f2 0e 00 05 00 40 ....,..........@
01d6f294 c0 20 02 c0 00 00 00 00 - 50 00 00 00 00 00 00 00 . ......P.......
01d6f2a4 80 e9 84 71 c8 f2 d6 01 - 62 84 3d 71 00 00 00 00 ...q....b.=q....
01d6f2b4 2c f3 d6 01 a0 2c 25 0b - f8 2a 25 0b b0 2a 25 0b ,....,%..*%..*%.
01d6f2c4 00 00 00 00 60 f4 d6 01 - 2e 4d 10 71 f8 ad f2 0e ....`....M.q....
01d6f2d4 2c f3 d6 01 b0 d1 0a 02 - 50 42 10 71 d3 53 10 71 ,.......PB.q.S.q
01d6f2e4 84 b0 2f 71 57 00 00 00 - 00 00 40 00 02 00 00 00 ../qW.....@.....
01d6f2f4 0a 83 10 40 b0 3c 0b 02 - 01 00 00 00 00 00 00 00 ...@.<..........
01d6f304 b0 2a 25 0b 00 00 00 00 - 11 04 00 00 03 00 00 00 .*%.............
disassembling:
[...]
00e0095f 60 lea eax, [ebp-$20]
00e00962 call -$74a0ab ($6b68bc) ; System.Types.TRect.GetHeight
00e00967 mov edx, eax
00e00969 mov eax, [ebp-$c]
00e0096c mov ecx, [eax]
00e0096e > call dword ptr [ecx+$38]
00e00971 63 push $26
00e00973 push ebx
00e00974 call -$744071 ($6bc908) ; Winapi.Windows.GetDeviceCaps
00e00979 and eax, $100
00e0097e cmp eax, $100
[...]