PC Hunter Free --- Computer Examination Report
Examination Date: 2013-05-05 13:05
OS Information: Microsoft Windows 8  (build 9200), 64-bit
Internet Explorer: 9.10.9200.16384

Examination Items:
      Process
      Process Modules
      Process Threads
      Kernel Module
      Notify Routine
      Filter
      DPC Timer
      Worker Thread
      HalDispatchTable
      HalPrivateDispatchTable
      HalAcpiDispatchTable
      HalSubComponents
      Filter
      File System
      Sfilter FileSystem Filter Callback
      ClassInitData Callback
      System Debug
      Object Hijack
      Direct IO
      GDT
      SSDT
      Shadow SSDT
      FSD
      Keyboard
      Mouclass
      Classpnp
      Atapi
      Acpi
      Scsi
      Kernel Hook
      PTE HOOK
      Object Type
      IDT
      Message Hook
      Process Hook
      KernelCallbackTable
      Port
      Tcpip
      Nsiproxy
      Tdx
      Ndis Handler
      IE Plugin
      IE Shell
      Spi
      Hosts File
      Startup
      Service
      Schedule Task
      File Association
      IFEO
      IME
      Firewall Rule
      System User Name
      Scan MBR Rootkit

==========================================================================================

Process

       System - System - 
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       firefox.exe *32 - C:\Program Files (x86)\Mozilla Firefox\firefox.exe - Mozilla Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       smss.exe - C:\Windows\System32\smss.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       lsass.exe - C:\Windows\System32\lsass.exe - Microsoft Corporation
       dwm.exe - C:\Windows\System32\dwm.exe - Microsoft Corporation
       csrss.exe - C:\Windows\System32\csrss.exe - Microsoft Corporation
       wininit.exe - C:\Windows\System32\wininit.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       csrss.exe - C:\Windows\System32\csrss.exe - Microsoft Corporation
       PCHunter64.exe - C:\Users\GAMELASTER\Desktop\PCHunter64.exe - ????(??)????????
       winlogon.exe - C:\Windows\System32\winlogon.exe - Microsoft Corporation
       services.exe - C:\Windows\System32\services.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       dllhost.exe - C:\Windows\System32\dllhost.exe - Microsoft Corporation
       svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
       explorer.exe - C:\Windows\explorer.exe - Microsoft Corporation
       ctfmon.exe - C:\Windows\System32\ctfmon.exe - Microsoft Corporation
       Idle - Idle - 

==========================================================================================

Process Modules

      Image File Name[System]Modules

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation
             user32.dll - C:\Windows\SYSTEM32\user32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             dnsrslvr.dll - c:\windows\system32\dnsrslvr.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             DNSAPI.dll - c:\windows\system32\DNSAPI.dll - Microsoft Corporation
             WINNSI.DLL - c:\windows\system32\WINNSI.DLL - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             Fwpuclnt.dll - C:\Windows\SYSTEM32\Fwpuclnt.dll - Microsoft Corporation
             dnsext.dll - C:\Windows\System32\dnsext.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             gpapi.dll - C:\Windows\SYSTEM32\gpapi.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             iphlpapi.dll - C:\Windows\SYSTEM32\iphlpapi.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\system32\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             wkssvc.dll - c:\windows\system32\wkssvc.dll - Microsoft Corporation
             netutils.dll - c:\windows\system32\netutils.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             cryptsvc.dll - c:\windows\system32\cryptsvc.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             nlasvc.dll - c:\windows\system32\nlasvc.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             wevtapi.dll - c:\windows\system32\wevtapi.dll - Microsoft Corporation
             ncsi.dll - c:\windows\system32\ncsi.dll - Microsoft Corporation
             WINHTTP.dll - c:\windows\system32\WINHTTP.dll - Microsoft Corporation
             ssdpapi.dll - C:\Windows\system32\ssdpapi.dll - Microsoft Corporation
             cryptcatsvc.dll - C:\Windows\System32\cryptcatsvc.dll - Microsoft Corporation
             WMICLNT.dll - C:\Windows\system32\WMICLNT.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             WlanApi.dll - C:\Windows\system32\WlanApi.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             netjoin.dll - C:\Windows\SYSTEM32\netjoin.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             ESENT.dll - C:\Windows\system32\ESENT.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[firefox.exe]Modules
             firefox.exe - C:\Program Files (x86)\Mozilla Firefox\firefox.exe - Mozilla Corporation
             ntdll.dll - C:\Windows\SYSwow64\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\SYSwow64\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\SYSwow64\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\SYSwow64\USER32.dll - Microsoft Corporation
             MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\SYSwow64\GDI32.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\syswow64\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\SYSwow64\MSCTF.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\SYSwow64\msvcrt.dll - Microsoft Corporation
             mozglue.dll - C:\Program Files (x86)\Mozilla Firefox\mozglue.dll - Mozilla Foundation
             nspr4.dll - C:\Program Files (x86)\Mozilla Firefox\nspr4.dll - Mozilla Foundation
             ADVAPI32.dll - C:\Windows\SYSwow64\ADVAPI32.dll - Microsoft Corporation
             WSOCK32.dll - C:\Windows\SYSwow64\WSOCK32.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\SYSwow64\WINMM.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSwow64\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\SYSwow64\RPCRT4.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\SYSwow64\WS2_32.dll - Microsoft Corporation
             WINMMBASE.dll - C:\Windows\SYSwow64\WINMMBASE.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\SYSwow64\SspiCli.dll - Microsoft Corporation
             NSI.dll - C:\Windows\SYSwow64\NSI.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\SYSwow64\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\SYSwow64\bcryptPrimitives.dll - Microsoft Corporation
             MSVCP100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCP100.dll - Microsoft Corporation
             mozjs.dll - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll - 
             PSAPI.DLL - C:\Windows\SYSwow64\PSAPI.DLL - Microsoft Corporation
             plc4.dll - C:\Program Files (x86)\Mozilla Firefox\plc4.dll - Mozilla Foundation
             plds4.dll - C:\Program Files (x86)\Mozilla Firefox\plds4.dll - Mozilla Foundation
             nssutil3.dll - C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll - Mozilla Foundation
             nss3.dll - C:\Program Files (x86)\Mozilla Firefox\nss3.dll - Mozilla Foundation
             smime3.dll - C:\Program Files (x86)\Mozilla Firefox\smime3.dll - Mozilla Foundation
             ssl3.dll - C:\Program Files (x86)\Mozilla Firefox\ssl3.dll - Mozilla Foundation
             mozsqlite3.dll - C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll - sqlite.org
             mozalloc.dll - C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll - Mozilla Foundation
             gkmedias.dll - C:\Program Files (x86)\Mozilla Firefox\gkmedias.dll - Mozilla Foundation
             USP10.dll - C:\Windows\SYSwow64\USP10.dll - Microsoft Corporation
             ole32.dll - C:\Windows\SYSwow64\ole32.dll - Microsoft Corporation
             MSIMG32.dll - C:\Windows\SYSwow64\MSIMG32.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSwow64\combase.dll - Microsoft Corporation
             xul.dll - C:\Program Files (x86)\Mozilla Firefox\xul.dll - Mozilla Foundation
             NETAPI32.dll - C:\Windows\SYSwow64\NETAPI32.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\SYSwow64\IPHLPAPI.DLL - Microsoft Corporation
             msdmo.dll - C:\Windows\SYSwow64\msdmo.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\SYSwow64\SHELL32.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\SYSwow64\VERSION.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\SYSwow64\SHLWAPI.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\SYSwow64\UxTheme.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\SYSwow64\SETUPAPI.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\SYSwow64\OLEAUT32.dll - Microsoft Corporation
             netutils.dll - C:\Windows\SYSwow64\netutils.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\SYSwow64\srvcli.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\SYSwow64\wkscli.dll - Microsoft Corporation
             WINNSI.DLL - C:\Windows\SYSwow64\WINNSI.DLL - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\SYSwow64\CFGMGR32.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\SYSwow64\DEVOBJ.dll - Microsoft Corporation
             SAMCLI.DLL - C:\Windows\SYSwow64\SAMCLI.DLL - Microsoft Corporation
             dwmapi.dll - C:\Windows\SYSwow64\dwmapi.dll - Microsoft Corporation
             xpcom.dll - C:\Program Files (x86)\Mozilla Firefox\xpcom.dll - Mozilla Foundation
             dwrite.dll - C:\Windows\SYSwow64\dwrite.dll - Microsoft Corporation
             dbghelp.dll - C:\Windows\SYSwow64\dbghelp.dll - Microsoft Corporation
             SHCORE.dll - C:\Windows\SYSwow64\SHCORE.dll - Microsoft Corporation
             clbcatq.dll - C:\Windows\SYSwow64\clbcatq.dll - Microsoft Corporation
             propsys.dll - C:\Windows\syswow64\propsys.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\SYSwow64\mswsock.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\.\globalroot\systemroot\syswow64\mswsock.dll - File not found
             browsercomps.dll - C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll - Mozilla Foundation
             feclient.dll - C:\Windows\SYSwow64\feclient.dll - Microsoft Corporation
             shdocvw.dll - C:\Windows\syswow64\shdocvw.dll - Microsoft Corporation
             comctl32.dll - C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_893961408605e985\comctl32.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\SYSwow64\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\syswow64\rsaenh.dll - Microsoft Corporation
             MMDevApi.dll - C:\Windows\Syswow64\MMDevApi.dll - Microsoft Corporation
             profapi.dll - C:\Windows\SYSwow64\profapi.dll - Microsoft Corporation
             softokn3.dll - C:\Program Files (x86)\Mozilla Firefox\softokn3.dll - Mozilla Foundation
             nssdbm3.dll - C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll - Mozilla Foundation
             freebl3.dll - C:\Program Files (x86)\Mozilla Firefox\freebl3.dll - Mozilla Foundation
             nssckbi.dll - C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll - Mozilla Foundation
             WINTRUST.dll - C:\Windows\SYSwow64\WINTRUST.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\SYSwow64\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\SYSwow64\MSASN1.dll - Microsoft Corporation
             t2embed.dll - C:\Windows\SYSwow64\t2embed.dll - Microsoft Corporation
             napinsp.dll - C:\Windows\syswow64\napinsp.dll - Microsoft Corporation
             pnrpnsp.dll - C:\Windows\syswow64\pnrpnsp.dll - Microsoft Corporation
             DNSAPI.dll - C:\Windows\SYSwow64\DNSAPI.dll - Microsoft Corporation
             winrnr.dll - C:\Windows\Syswow64\winrnr.dll - Microsoft Corporation
             mscms.dll - C:\Windows\SYSwow64\mscms.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\SYSwow64\USERENV.dll - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\SYSwow64\WindowsCodecs.dll - Microsoft Corporation
             thumbcache.dll - C:\Windows\SYSwow64\thumbcache.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\SYSwow64\ntmarta.dll - Microsoft Corporation
             explorerframe.dll - C:\Windows\syswow64\explorerframe.dll - Microsoft Corporation
             DUser.dll - C:\Windows\syswow64\DUser.dll - Microsoft Corporation
             DUI70.dll - C:\Windows\syswow64\DUI70.dll - Microsoft Corporation
             WININET.dll - C:\Windows\SYSwow64\WININET.dll - Microsoft Corporation
             iertutil.dll - C:\Windows\SYSwow64\iertutil.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\SYSwow64\Secur32.dll - Microsoft Corporation
             winhttp.dll - C:\Windows\SYSwow64\winhttp.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\SYSwow64\dhcpcsvc6.DLL - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\SYSwow64\dhcpcsvc.DLL - Microsoft Corporation
             rasadhlp.dll - C:\Windows\Syswow64\rasadhlp.dll - Microsoft Corporation
             LINKINFO.dll - C:\Windows\SYSwow64\LINKINFO.dll - Microsoft Corporation
             ntshrui.dll - C:\Windows\SYSwow64\ntshrui.dll - Microsoft Corporation
             cscapi.dll - C:\Windows\SYSwow64\cscapi.dll - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             wow64.dll - C:\Windows\SYSTEM32\wow64.dll - Microsoft Corporation
             wow64win.dll - C:\Windows\system32\wow64win.dll - Microsoft Corporation
             wow64cpu.dll - C:\Windows\system32\wow64cpu.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation
             user32.dll - C:\Windows\SYSTEM32\user32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             wlansvc.dll - c:\windows\system32\wlansvc.dll - Microsoft Corporation
             WLANMSM.DLL - c:\windows\system32\WLANMSM.DLL - Microsoft Corporation
             OneX.DLL - c:\windows\system32\OneX.DLL - Microsoft Corporation
             SYSNTFY.dll - c:\windows\system32\SYSNTFY.dll - Microsoft Corporation
             WLANSEC.dll - c:\windows\system32\WLANSEC.dll - Microsoft Corporation
             IPHLPAPI.DLL - c:\windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             dhcpcsvc.DLL - c:\windows\system32\dhcpcsvc.DLL - Microsoft Corporation
             eappprxy.dll - c:\windows\system32\eappprxy.dll - Microsoft Corporation
             WINNSI.DLL - c:\windows\system32\WINNSI.DLL - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             clbcatq.dll - C:\Windows\SYSTEM32\clbcatq.dll - Microsoft Corporation
             msxml6.dll - C:\Windows\System32\msxml6.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             DPAPI.DLL - C:\Windows\system32\DPAPI.DLL - Microsoft Corporation
             WMICLNT.dll - C:\Windows\system32\WMICLNT.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             AUTHZ.dll - C:\Windows\system32\AUTHZ.dll - Microsoft Corporation
             sspicli.dll - C:\Windows\system32\sspicli.dll - Microsoft Corporation
             wlgpclnt.dll - C:\Windows\SYSTEM32\wlgpclnt.dll - Microsoft Corporation
             l2gpstore.dll - C:\Windows\system32\l2gpstore.dll - Microsoft Corporation
             gpapi.dll - C:\Windows\SYSTEM32\gpapi.dll - Microsoft Corporation
             DSROLE.dll - C:\Windows\system32\DSROLE.dll - Microsoft Corporation
             wtsapi32.dll - C:\Windows\SYSTEM32\wtsapi32.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             cfgmgr32.dll - C:\Windows\system32\cfgmgr32.dll - Microsoft Corporation
             powrprof.dll - C:\Windows\SYSTEM32\powrprof.dll - Microsoft Corporation
             kerberos.DLL - C:\Windows\system32\kerberos.DLL - Microsoft Corporation
             cryptdll.dll - C:\Windows\system32\cryptdll.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             netcfgx.dll - C:\Windows\System32\netcfgx.dll - Microsoft Corporation
             advapi32.dll - C:\Windows\SYSTEM32\advapi32.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[smss.exe]Modules
             smss.exe - C:\Windows\System32\smss.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\System32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\System32\bcryptPrimitives.dll - Microsoft Corporation
             user32.dll - C:\Windows\SYSTEM32\user32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             wevtsvc.dll - c:\windows\system32\wevtsvc.dll - Microsoft Corporation
             powrprof.dll - C:\Windows\SYSTEM32\powrprof.dll - Microsoft Corporation
             sspicli.dll - C:\Windows\System32\sspicli.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\System32\mswsock.dll - Microsoft Corporation
             gpapi.dll - C:\Windows\SYSTEM32\gpapi.dll - Microsoft Corporation
             lmhsvc.dll - c:\windows\system32\lmhsvc.dll - Microsoft Corporation
             IPHLPAPI.DLL - c:\windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             nrpsrv.DLL - c:\windows\system32\nrpsrv.DLL - Microsoft Corporation
             WINNSI.DLL - c:\windows\system32\WINNSI.DLL - Microsoft Corporation
             wcmsvc.dll - c:\windows\system32\wcmsvc.dll - Microsoft Corporation
             nlaapi.dll - c:\windows\system32\nlaapi.dll - Microsoft Corporation
             WTSAPI32.dll - c:\windows\system32\WTSAPI32.dll - Microsoft Corporation
             dhcpcore.dll - c:\windows\system32\dhcpcore.dll - Microsoft Corporation
             DNSAPI.dll - c:\windows\system32\DNSAPI.dll - Microsoft Corporation
             firewallapi.dll - C:\Windows\System32\firewallapi.dll - Microsoft Corporation
             dhcpcore6.dll - C:\Windows\System32\dhcpcore6.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[lsass.exe]Modules
             lsass.exe - C:\Windows\system32\lsass.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             SspiSrv.dll - C:\Windows\system32\SspiSrv.dll - Microsoft Corporation
             lsasrv.dll - C:\Windows\system32\lsasrv.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             samsrv.dll - C:\Windows\SYSTEM32\samsrv.dll - Microsoft Corporation
             bcrypt.dll - C:\Windows\system32\bcrypt.dll - Microsoft Corporation
             ncrypt.dll - C:\Windows\system32\ncrypt.dll - Microsoft Corporation
             NTASN1.dll - C:\Windows\system32\NTASN1.dll - Microsoft Corporation
             msprivs.DLL - C:\Windows\system32\msprivs.DLL - Microsoft Corporation
             netjoin.dll - C:\Windows\SYSTEM32\netjoin.dll - Microsoft Corporation
             negoexts.DLL - C:\Windows\system32\negoexts.DLL - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             cryptdll.dll - C:\Windows\system32\cryptdll.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation
             kerberos.DLL - C:\Windows\system32\kerberos.DLL - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             msv1_0.DLL - C:\Windows\system32\msv1_0.DLL - Microsoft Corporation
             netlogon.DLL - C:\Windows\system32\netlogon.DLL - Microsoft Corporation
             DNSAPI.dll - C:\Windows\system32\DNSAPI.dll - Microsoft Corporation
             logoncli.dll - C:\Windows\system32\logoncli.dll - Microsoft Corporation
             powrprof.dll - C:\Windows\SYSTEM32\powrprof.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\system32\USERENV.dll - Microsoft Corporation
             advapi32.dll - C:\Windows\SYSTEM32\advapi32.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             schannel.DLL - C:\Windows\system32\schannel.DLL - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             wdigest.DLL - C:\Windows\system32\wdigest.DLL - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             tspkg.DLL - C:\Windows\system32\tspkg.DLL - Microsoft Corporation
             pku2u.DLL - C:\Windows\system32\pku2u.DLL - Microsoft Corporation
             livessp.DLL - C:\Windows\system32\livessp.DLL - Microsoft Corporation
             efslsaext.dll - C:\Windows\system32\efslsaext.dll - Microsoft Corporation
             dpapisrv.dll - C:\Windows\system32\dpapisrv.dll - Microsoft Corporation
             scecli.DLL - C:\Windows\system32\scecli.DLL - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             winsta.dll - C:\Windows\SYSTEM32\winsta.dll - Microsoft Corporation
             wevtapi.dll - C:\Windows\SYSTEM32\wevtapi.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[dwm.exe]Modules
             dwm.exe - C:\Windows\system32\dwm.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             dwmredir.dll - C:\Windows\system32\dwmredir.dll - Microsoft Corporation
             dwmcore.dll - C:\Windows\system32\dwmcore.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             dcomp.dll - C:\Windows\system32\dcomp.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\system32\WindowsCodecs.dll - Microsoft Corporation
             d3d10_1.dll - C:\Windows\system32\d3d10_1.dll - Microsoft Corporation
             d3d10_1core.dll - C:\Windows\system32\d3d10_1core.dll - Microsoft Corporation
             dxgi.dll - C:\Windows\system32\dxgi.dll - Microsoft Corporation
             d3d11.dll - C:\Windows\system32\d3d11.dll - Microsoft Corporation
             DXGIDebug.dll - C:\Windows\system32\DXGIDebug.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             d3d10warp.dll - C:\Windows\system32\d3d10warp.dll - Microsoft Corporation
             uDWM.dll - C:\Windows\system32\uDWM.dll - Microsoft Corporation
             slc.dll - C:\Windows\system32\slc.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation
             clbcatq.dll - C:\Windows\SYSTEM32\clbcatq.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             UIAnimation.dll - C:\Windows\System32\UIAnimation.dll - Microsoft Corporation
             powrprof.dll - C:\Windows\SYSTEM32\powrprof.dll - Microsoft Corporation
             d2d1.dll - C:\Windows\system32\d2d1.dll - Microsoft Corporation
             XmlLite.dll - C:\Windows\system32\XmlLite.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[csrss.exe]Modules
             csrss.exe - C:\Windows\system32\csrss.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             basesrv.DLL - C:\Windows\system32\basesrv.DLL - Microsoft Corporation
             winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             kernelbase.dll - C:\Windows\SYSTEM32\kernelbase.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\SYSTEM32\kernel32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             sxssrv.DLL - C:\Windows\system32\sxssrv.DLL - Microsoft Corporation
             sxs.dll - C:\Windows\system32\sxs.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[wininit.exe]Modules
             wininit.exe - C:\Windows\system32\wininit.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             wininitext.dll - C:\Windows\SYSTEM32\wininitext.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             sspicli.dll - C:\Windows\system32\sspicli.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation
             user32.dll - C:\Windows\SYSTEM32\user32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             profsvc.dll - c:\windows\system32\profsvc.dll - Microsoft Corporation
             USERENV.dll - c:\windows\system32\USERENV.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             SYSNTFY.dll - c:\windows\system32\SYSNTFY.dll - Microsoft Corporation
             profapi.dll - c:\windows\system32\profapi.dll - Microsoft Corporation
             profsvcext.dll - C:\Windows\SYSTEM32\profsvcext.dll - Microsoft Corporation
             NTDSAPI.dll - C:\Windows\system32\NTDSAPI.dll - Microsoft Corporation
             WLDAP32.dll - C:\Windows\system32\WLDAP32.dll - Microsoft Corporation
             NETAPI32.dll - C:\Windows\system32\NETAPI32.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             ATL.DLL - C:\Windows\system32\ATL.DLL - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             netutils.dll - C:\Windows\system32\netutils.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\system32\wkscli.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             DFSCLI.DLL - C:\Windows\system32\DFSCLI.DLL - Microsoft Corporation
             LOGONCLI.DLL - C:\Windows\system32\LOGONCLI.DLL - Microsoft Corporation
             clbcatq.dll - C:\Windows\SYSTEM32\clbcatq.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             gpapi.dll - C:\Windows\SYSTEM32\gpapi.dll - Microsoft Corporation
             wmisvc.dll - c:\windows\system32\wbem\wmisvc.dll - Microsoft Corporation
             wbemcomn.dll - C:\Windows\SYSTEM32\wbemcomn.dll - Microsoft Corporation
             WMICLNT.dll - C:\Windows\system32\WMICLNT.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             shacct.dll - C:\Windows\System32\shacct.dll - Microsoft Corporation
             powrprof.dll - C:\Windows\SYSTEM32\powrprof.dll - Microsoft Corporation
             SHCORE.dll - C:\Windows\System32\SHCORE.dll - Microsoft Corporation
             SAMLIB.dll - C:\Windows\system32\SAMLIB.dll - Microsoft Corporation
             advapi32.dll - C:\Windows\SYSTEM32\advapi32.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\SYSTEM32\ntmarta.dll - Microsoft Corporation
             SettingSyncInfo.dll - C:\Windows\system32\SettingSyncInfo.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             IDStore.dll - C:\Windows\System32\IDStore.dll - Microsoft Corporation
             VSSAPI.DLL - C:\Windows\system32\VSSAPI.DLL - Microsoft Corporation
             VssTrace.DLL - C:\Windows\system32\VssTrace.DLL - Microsoft Corporation
             DSROLE.dll - C:\Windows\system32\DSROLE.dll - Microsoft Corporation
             wbemcore.dll - C:\Windows\system32\wbem\wbemcore.dll - Microsoft Corporation
             esscli.dll - C:\Windows\system32\wbem\esscli.dll - Microsoft Corporation
             FastProx.dll - C:\Windows\system32\wbem\FastProx.dll - Microsoft Corporation
             authZ.dll - C:\Windows\system32\authZ.dll - Microsoft Corporation
             wmiutils.dll - C:\Windows\system32\wbem\wmiutils.dll - Microsoft Corporation
             y - c:\windows\system32\y - File not found
             MSWSOCK.dll - C:\Windows\SYSTEM32\MSWSOCK.dll - Microsoft Corporation
             repdrvfs.dll - C:\Windows\system32\wbem\repdrvfs.dll - Microsoft Corporation
             wmiprvsd.dll - C:\Windows\system32\wbem\wmiprvsd.dll - Microsoft Corporation
             NCObjAPI.DLL - C:\Windows\SYSTEM32\NCObjAPI.DLL - Microsoft Corporation
             wbemess.dll - C:\Windows\system32\wbem\wbemess.dll - Microsoft Corporation
             ncprov.dll - C:\Windows\system32\wbem\ncprov.dll - Microsoft Corporation
             wbemsvc.dll - C:\Windows\system32\wbem\wbemsvc.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[csrss.exe]Modules
             csrss.exe - C:\Windows\system32\csrss.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             basesrv.DLL - C:\Windows\system32\basesrv.DLL - Microsoft Corporation
             winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             kernelbase.dll - C:\Windows\SYSTEM32\kernelbase.dll - Microsoft Corporation
             kernel32.dll - C:\Windows\SYSTEM32\kernel32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             sxssrv.DLL - C:\Windows\system32\sxssrv.DLL - Microsoft Corporation
             sxs.dll - C:\Windows\system32\sxs.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[PCHunter64.exe]Modules
             PCHunter64.exe - C:\Users\GAMELASTER\Desktop\PCHunter64.exe - ????(??)????????
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             MSIMG32.dll - C:\Windows\SYSTEM32\MSIMG32.dll - Microsoft Corporation
             COMDLG32.dll - C:\Windows\system32\COMDLG32.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\SYSTEM32\WINSPOOL.DRV - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             COMCTL32.dll - C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.9200.16384_none_7762d5fd3178b04e\COMCTL32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             oledlg.dll - C:\Windows\SYSTEM32\oledlg.dll - Microsoft Corporation
             urlmon.dll - C:\Windows\system32\urlmon.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16384_none_72771d4ecc1c3a4d\gdiplus.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\SYSTEM32\VERSION.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\SYSTEM32\IPHLPAPI.DLL - Microsoft Corporation
             NETAPI32.dll - C:\Windows\SYSTEM32\NETAPI32.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             OLEACC.dll - C:\Windows\SYSTEM32\OLEACC.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\SYSTEM32\WINMM.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             WINNSI.DLL - C:\Windows\SYSTEM32\WINNSI.DLL - Microsoft Corporation
             netutils.dll - C:\Windows\SYSTEM32\netutils.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\SYSTEM32\srvcli.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\SYSTEM32\wkscli.dll - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             WINMMBASE.dll - C:\Windows\SYSTEM32\WINMMBASE.dll - Microsoft Corporation
             SAMCLI.DLL - C:\Windows\SYSTEM32\SAMCLI.DLL - Microsoft Corporation
             SHCORE.DLL - C:\Windows\SYSTEM32\SHCORE.DLL - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation
             Psapi.dll - C:\Windows\system32\Psapi.dll - Microsoft Corporation
             RICHED32.DLL - C:\Windows\SYSTEM32\RICHED32.DLL - Microsoft Corporation
             RICHED20.dll - C:\Windows\SYSTEM32\RICHED20.dll - Microsoft Corporation
             USP10.dll - C:\Windows\SYSTEM32\USP10.dll - Microsoft Corporation
             msls31.dll - C:\Windows\SYSTEM32\msls31.dll - Microsoft Corporation
             comctl32.DLL - C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_418c2a697189c07f\comctl32.DLL - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\SYSTEM32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\SYSTEM32\bcryptPrimitives.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\SYSTEM32\PROPSYS.dll - Microsoft Corporation
             clbcatq.dll - C:\Windows\SYSTEM32\clbcatq.dll - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\SYSTEM32\WindowsCodecs.dll - Microsoft Corporation
             MrmCoreR.dll - C:\Windows\SYSTEM32\MrmCoreR.dll - Microsoft Corporation
             Bcp47Langs.dll - C:\Windows\SYSTEM32\Bcp47Langs.dll - Microsoft Corporation
             profapi.dll - C:\Windows\SYSTEM32\profapi.dll - Microsoft Corporation
             thumbcache.dll - C:\Windows\System32\thumbcache.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[winlogon.exe]Modules
             winlogon.exe - C:\Windows\system32\winlogon.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             powrprof.dll - C:\Windows\SYSTEM32\powrprof.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             samcli.dll - C:\Windows\system32\samcli.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             UXINIT.dll - C:\Windows\system32\UXINIT.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\system32\UxTheme.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             DPAPI.dll - C:\Windows\system32\DPAPI.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\SYSTEM32\ntmarta.dll - Microsoft Corporation
             MPR.dll - C:\Windows\system32\MPR.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[services.exe]Modules
             services.exe - C:\Windows\system32\services.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation
             scext.dll - C:\Windows\system32\scext.dll - Microsoft Corporation
             UBPM.dll - C:\Windows\system32\UBPM.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\system32\srvcli.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             spinf.dll - C:\Windows\SYSTEM32\spinf.dll - Microsoft Corporation
             scesrv.dll - C:\Windows\SYSTEM32\scesrv.dll - Microsoft Corporation
             AUTHZ.dll - C:\Windows\system32\AUTHZ.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             wtsapi32.dll - C:\Windows\SYSTEM32\wtsapi32.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             umpnpmgr.dll - c:\windows\system32\umpnpmgr.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             CFGMGR32.dll - C:\Windows\system32\CFGMGR32.dll - Microsoft Corporation
             DEVRTL.dll - c:\windows\system32\DEVRTL.dll - Microsoft Corporation
             umpo.dll - c:\windows\system32\umpo.dll - Microsoft Corporation
             umpoext.dll - C:\Windows\SYSTEM32\umpoext.dll - Microsoft Corporation
             powrprof.dll - C:\Windows\SYSTEM32\powrprof.dll - Microsoft Corporation
             pcwum.dll - C:\Windows\system32\pcwum.dll - Microsoft Corporation
             HID.DLL - C:\Windows\system32\HID.DLL - Microsoft Corporation
             gpapi.dll - C:\Windows\SYSTEM32\gpapi.dll - Microsoft Corporation
             rpcss.dll - c:\windows\system32\rpcss.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\system32\SspiCli.dll - Microsoft Corporation
             bisrv.dll - c:\windows\system32\bisrv.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             psmsrv.dll - c:\windows\system32\psmsrv.dll - Microsoft Corporation
             WINSTA.dll - c:\windows\system32\WINSTA.dll - Microsoft Corporation
             lsm.dll - c:\windows\system32\lsm.dll - Microsoft Corporation
             SYSNTFY.dll - c:\windows\system32\SYSNTFY.dll - Microsoft Corporation
             WMsgAPI.dll - c:\windows\system32\WMsgAPI.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation
             Userenv.dll - C:\Windows\System32\Userenv.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             user32.dll - C:\Windows\SYSTEM32\user32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             clbcatq.dll - C:\Windows\SYSTEM32\clbcatq.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             wtsapi32.dll - C:\Windows\SYSTEM32\wtsapi32.dll - Microsoft Corporation
             actxprxy.dll - C:\Windows\System32\actxprxy.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             rpcepmap.dll - c:\windows\system32\rpcepmap.dll - Microsoft Corporation
             sspicli.dll - C:\Windows\system32\sspicli.dll - Microsoft Corporation
             RpcRtRemote.dll - C:\Windows\system32\RpcRtRemote.dll - Microsoft Corporation
             rpcss.dll - c:\windows\system32\rpcss.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             FirewallAPI.dll - C:\Windows\system32\FirewallAPI.dll - Microsoft Corporation
             clbcatq.dll - C:\Windows\SYSTEM32\clbcatq.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             advapi32.dll - C:\Windows\SYSTEM32\advapi32.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[dllhost.exe]Modules
             DllHost.exe - C:\Windows\system32\DllHost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation
             clbcatq.dll - C:\Windows\SYSTEM32\clbcatq.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             user32.dll - C:\Windows\SYSTEM32\user32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             wininet.dll - C:\Windows\system32\wininet.dll - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             ADVAPI32.dll - C:\Windows\system32\ADVAPI32.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             SHCORE.dll - C:\Windows\system32\SHCORE.dll - Microsoft Corporation
             profapi.dll - C:\Windows\system32\profapi.dll - Microsoft Corporation
             sqmapi.dll - C:\Program Files\Internet Explorer\sqmapi.dll - Microsoft Corporation
             ESENT.dll - C:\Windows\system32\ESENT.dll - Microsoft Corporation
             POWRPROF.dll - C:\Windows\system32\POWRPROF.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Modules
             svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\system32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\system32\bcryptPrimitives.dll - Microsoft Corporation
             user32.dll - C:\Windows\SYSTEM32\user32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             nsisvc.dll - c:\windows\system32\nsisvc.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             netprofmsvc.dll - c:\windows\system32\netprofmsvc.dll - Microsoft Corporation
             nlaapi.dll - c:\windows\system32\nlaapi.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\system32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             clbcatq.dll - C:\Windows\SYSTEM32\clbcatq.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             ole32.dll - C:\Windows\SYSTEM32\ole32.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\system32\IPHLPAPI.DLL - Microsoft Corporation
             WINNSI.DLL - C:\Windows\system32\WINNSI.DLL - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             gpapi.dll - C:\Windows\SYSTEM32\gpapi.dll - Microsoft Corporation
             mswsock.dll - C:\Windows\system32\mswsock.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[explorer.exe]Modules
             Explorer.EXE - C:\Windows\Explorer.EXE - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             OLEAUT32.dll - C:\Windows\system32\OLEAUT32.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             powrprof.dll - C:\Windows\SYSTEM32\powrprof.dll - Microsoft Corporation
             advapi32.dll - C:\Windows\SYSTEM32\advapi32.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             SHLWAPI.dll - C:\Windows\system32\SHLWAPI.dll - Microsoft Corporation
             SHELL32.dll - C:\Windows\system32\SHELL32.dll - Microsoft Corporation
             UxTheme.dll - C:\Windows\SYSTEM32\UxTheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\SYSTEM32\dwmapi.dll - Microsoft Corporation
             USERENV.dll - C:\Windows\SYSTEM32\USERENV.dll - Microsoft Corporation
             SspiCli.dll - C:\Windows\SYSTEM32\SspiCli.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             PROPSYS.dll - C:\Windows\SYSTEM32\PROPSYS.dll - Microsoft Corporation
             gdiplus.dll - C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16384_none_72771d4ecc1c3a4d\gdiplus.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             profapi.dll - C:\Windows\SYSTEM32\profapi.dll - Microsoft Corporation
             IMM32.DLL - C:\Windows\system32\IMM32.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             CRYPTBASE.dll - C:\Windows\SYSTEM32\CRYPTBASE.dll - Microsoft Corporation
             bcryptPrimitives.dll - C:\Windows\SYSTEM32\bcryptPrimitives.dll - Microsoft Corporation
             ole32.dll - C:\Windows\system32\ole32.dll - Microsoft Corporation
             DUI70.dll - C:\Windows\SYSTEM32\DUI70.dll - Microsoft Corporation
             Comctl32.dll - C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_418c2a697189c07f\Comctl32.dll - Microsoft Corporation
             DUser.dll - C:\Windows\SYSTEM32\DUser.dll - Microsoft Corporation
             SndVolSSO.DLL - C:\Windows\SYSTEM32\SndVolSSO.DLL - Microsoft Corporation
             HID.DLL - C:\Windows\SYSTEM32\HID.DLL - Microsoft Corporation
             clbcatq.dll - C:\Windows\SYSTEM32\clbcatq.dll - Microsoft Corporation
             MMDevApi.dll - C:\Windows\System32\MMDevApi.dll - Microsoft Corporation
             DEVOBJ.dll - C:\Windows\system32\DEVOBJ.dll - Microsoft Corporation
             cfgmgr32.dll - C:\Windows\SYSTEM32\cfgmgr32.dll - Microsoft Corporation
             oleacc.dll - C:\Windows\System32\oleacc.dll - Microsoft Corporation
             explorerframe.dll - C:\Windows\system32\explorerframe.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\SYSTEM32\WINSTA.dll - Microsoft Corporation
             CRYPTSP.dll - C:\Windows\SYSTEM32\CRYPTSP.dll - Microsoft Corporation
             rsaenh.dll - C:\Windows\system32\rsaenh.dll - Microsoft Corporation
             twinapi.dll - C:\Windows\System32\twinapi.dll - Microsoft Corporation
             Bcp47Langs.dll - C:\Windows\SYSTEM32\Bcp47Langs.dll - Microsoft Corporation
             twinui.dll - C:\Windows\System32\twinui.dll - Microsoft Corporation
             XmlLite.dll - C:\Windows\System32\XmlLite.dll - Microsoft Corporation
             Windows.UI.Immersive.dll - C:\Windows\System32\Windows.UI.Immersive.dll - Microsoft Corporation
             SLCHook.dll - C:\Windows\System32\SLCHook.dll - KJ inside
             windows.immersiveshell.serviceprovider.dll - C:\Windows\System32\windows.immersiveshell.serviceprovider.dll - Microsoft Corporation
             apphelp.dll - C:\Windows\SYSTEM32\apphelp.dll - Microsoft Corporation
             CRYPT32.dll - C:\Windows\system32\CRYPT32.dll - Microsoft Corporation
             MSASN1.dll - C:\Windows\system32\MSASN1.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\SYSTEM32\WTSAPI32.dll - Microsoft Corporation
             wpncore.dll - C:\Windows\System32\wpncore.dll - Microsoft Corporation
             WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             iertutil.dll - C:\Windows\system32\iertutil.dll - Microsoft Corporation
             WindowsCodecs.dll - C:\Windows\SYSTEM32\WindowsCodecs.dll - Microsoft Corporation
             actxprxy.dll - C:\Windows\System32\actxprxy.dll - Microsoft Corporation
             slc.dll - C:\Windows\SYSTEM32\slc.dll - Microsoft Corporation
             sppc.dll - C:\Windows\SYSTEM32\sppc.dll - Microsoft Corporation
             dwrite.dll - C:\Windows\system32\dwrite.dll - Microsoft Corporation
             UIAnimation.dll - C:\Windows\System32\UIAnimation.dll - Microsoft Corporation
             dxgi.dll - C:\Windows\SYSTEM32\dxgi.dll - Microsoft Corporation
             DXGIDebug.dll - C:\Windows\SYSTEM32\DXGIDebug.dll - Microsoft Corporation
             d3d11.dll - C:\Windows\SYSTEM32\d3d11.dll - Microsoft Corporation
             d3d10warp.dll - C:\Windows\SYSTEM32\d3d10warp.dll - Microsoft Corporation
             dcomp.dll - C:\Windows\SYSTEM32\dcomp.dll - Microsoft Corporation
             IDStore.dll - C:\Windows\System32\IDStore.dll - Microsoft Corporation
             wlidprov.dll - C:\Windows\System32\wlidprov.dll - Microsoft Corporation
             InputSwitch.dll - C:\Windows\System32\InputSwitch.dll - Microsoft Corporation
             elscore.dll - C:\Windows\SYSTEM32\elscore.dll - Microsoft Corporation
             ElsLad.dll - C:\Windows\system32\ElsLad.dll - Microsoft Corporation
             thumbcache.dll - C:\Windows\System32\thumbcache.dll - Microsoft Corporation
             MrmCoreR.dll - C:\Windows\System32\MrmCoreR.dll - Microsoft Corporation
             stobject.dll - C:\Windows\system32\stobject.dll - Microsoft Corporation
             BatMeter.dll - C:\Windows\system32\BatMeter.dll - Microsoft Corporation
             sxs.dll - C:\Windows\SYSTEM32\sxs.dll - Microsoft Corporation
             es.dll - C:\Windows\system32\es.dll - Microsoft Corporation
             prnfldr.dll - C:\Windows\system32\prnfldr.dll - Microsoft Corporation
             WINSPOOL.DRV - C:\Windows\system32\WINSPOOL.DRV - Microsoft Corporation
             urlmon.dll - C:\Windows\system32\urlmon.dll - Microsoft Corporation
             Bcrypt.dll - C:\Windows\SYSTEM32\Bcrypt.dll - Microsoft Corporation
             dxp.dll - C:\Windows\system32\dxp.dll - Microsoft Corporation
             SETUPAPI.dll - C:\Windows\system32\SETUPAPI.dll - Microsoft Corporation
             SHDOCVW.dll - C:\Windows\system32\SHDOCVW.dll - Microsoft Corporation
             Syncreg.dll - C:\Windows\system32\Syncreg.dll - Microsoft Corporation
             Secur32.dll - C:\Windows\SYSTEM32\Secur32.dll - Microsoft Corporation
             windows.globalization.fontgroups.dll - C:\Windows\SYSTEM32\windows.globalization.fontgroups.dll - Microsoft Corporation
             HelpPaneProxy.dll - C:\Windows\System32\HelpPaneProxy.dll - Microsoft Corporation
             Windows.Networking.Connectivity.dll - C:\Windows\System32\Windows.Networking.Connectivity.dll - Microsoft Corporation
             AltTab.dll - C:\Windows\System32\AltTab.dll - Microsoft Corporation
             authui.dll - C:\Windows\system32\authui.dll - Microsoft Corporation
             npmproxy.dll - C:\Windows\System32\npmproxy.dll - Microsoft Corporation
             pnidui.dll - C:\Windows\System32\pnidui.dll - Microsoft Corporation
             IPHLPAPI.DLL - C:\Windows\System32\IPHLPAPI.DLL - Microsoft Corporation
             NcaApi.dll - C:\Windows\System32\NcaApi.dll - Microsoft Corporation
             NSI.dll - C:\Windows\system32\NSI.dll - Microsoft Corporation
             WINNSI.DLL - C:\Windows\System32\WINNSI.DLL - Microsoft Corporation
             NetworkStatus.dll - C:\Windows\system32\NetworkStatus.dll - Microsoft Corporation
             shacct.dll - C:\Windows\System32\shacct.dll - Microsoft Corporation
             SAMLIB.dll - C:\Windows\SYSTEM32\SAMLIB.dll - Microsoft Corporation
             samcli.dll - C:\Windows\SYSTEM32\samcli.dll - Microsoft Corporation
             netutils.dll - C:\Windows\SYSTEM32\netutils.dll - Microsoft Corporation
             PhotoMetadataHandler.dll - C:\Windows\system32\PhotoMetadataHandler.dll - Microsoft Corporation
             dhcpcsvc6.DLL - C:\Windows\SYSTEM32\dhcpcsvc6.DLL - Microsoft Corporation
             WS2_32.dll - C:\Windows\system32\WS2_32.dll - Microsoft Corporation
             dhcpcsvc.DLL - C:\Windows\SYSTEM32\dhcpcsvc.DLL - Microsoft Corporation
             netprofm.dll - C:\Windows\System32\netprofm.dll - Microsoft Corporation
             bthprops.cpl - C:\Windows\System32\bthprops.cpl - Microsoft Corporation
             BluetoothApis.dll - C:\Windows\System32\BluetoothApis.dll - Microsoft Corporation
             ntshrui.dll - C:\Windows\SYSTEM32\ntshrui.dll - Microsoft Corporation
             srvcli.dll - C:\Windows\SYSTEM32\srvcli.dll - Microsoft Corporation
             cscapi.dll - C:\Windows\SYSTEM32\cscapi.dll - Microsoft Corporation
             LINKINFO.dll - C:\Windows\SYSTEM32\LINKINFO.dll - Microsoft Corporation
             ntmarta.dll - C:\Windows\SYSTEM32\ntmarta.dll - Microsoft Corporation
             NetworkExplorer.dll - C:\Windows\system32\NetworkExplorer.dll - Microsoft Corporation
             wkscli.dll - C:\Windows\SYSTEM32\wkscli.dll - Microsoft Corporation
             provsvc.dll - C:\Windows\System32\provsvc.dll - Microsoft Corporation
             EhStorShell.dll - C:\Windows\System32\EhStorShell.dll - Microsoft Corporation
             cscui.dll - C:\Windows\System32\cscui.dll - Microsoft Corporation
             CSCDLL.dll - C:\Windows\System32\CSCDLL.dll - Microsoft Corporation
             wpdshserviceobj.dll - C:\Windows\system32\wpdshserviceobj.dll - Microsoft Corporation
             PortableDeviceTypes.dll - C:\Windows\System32\PortableDeviceTypes.dll - Microsoft Corporation
             PortableDeviceApi.dll - C:\Windows\System32\PortableDeviceApi.dll - Microsoft Corporation
             cscobj.dll - C:\Windows\System32\cscobj.dll - Microsoft Corporation
             WINTRUST.dll - C:\Windows\system32\WINTRUST.dll - Microsoft Corporation
             srchadmin.dll - C:\Windows\System32\srchadmin.dll - Microsoft Corporation
             SqmApi.dll - C:\Program Files\Windows Portable Devices\SqmApi.dll - Microsoft Corporation
             SyncCenter.dll - C:\Windows\System32\SyncCenter.dll - Microsoft Corporation
             taskschd.dll - C:\Windows\System32\taskschd.dll - Microsoft Corporation
             y - c:\windows\system32\y - File not found
             MSWSOCK.dll - C:\Windows\SYSTEM32\MSWSOCK.dll - Microsoft Corporation
             imapi2.dll - C:\Windows\System32\imapi2.dll - Microsoft Corporation
             mstask.dll - C:\Windows\System32\mstask.dll - Microsoft Corporation
             msiltcfg.dll - C:\Windows\SYSTEM32\msiltcfg.dll - Microsoft Corporation
             VERSION.dll - C:\Windows\SYSTEM32\VERSION.dll - Microsoft Corporation
             IconCodecService.dll - C:\Windows\system32\IconCodecService.dll - Microsoft Corporation
             msi.dll - C:\Windows\SYSTEM32\msi.dll - Microsoft Corporation
             hgcpl.dll - C:\Windows\System32\hgcpl.dll - Microsoft Corporation
             igfxpph.dll - C:\Windows\system32\igfxpph.dll - Intel Corporation
             hccutils.DLL - C:\Windows\system32\hccutils.DLL - Intel Corporation
             igfxrSKY.lrc - C:\Windows\system32\igfxrSKY.lrc - Intel Corporation
             igfxsrvc.dll - C:\Windows\system32\igfxsrvc.dll - Intel Corporation
             igfxdev.dll - C:\Windows\system32\igfxdev.dll - Intel Corporation
             OPENGL32.dll - C:\Windows\system32\OPENGL32.dll - Microsoft Corporation
             GLU32.dll - C:\Windows\system32\GLU32.dll - Microsoft Corporation
             DDRAW.dll - C:\Windows\system32\DDRAW.dll - Microsoft Corporation
             DCIMAN32.dll - C:\Windows\system32\DCIMAN32.dll - Microsoft Corporation
             msxml3.dll - C:\Windows\System32\msxml3.dll - Microsoft Corporation
             MsftEdit.dll - C:\Windows\SYSTEM32\MsftEdit.dll - Microsoft Corporation
             Windows.Globalization.dll - C:\Windows\System32\Windows.Globalization.dll - Microsoft Corporation
             tiptsf.dll - C:\Program Files\Common Files\microsoft shared\ink\tiptsf.dll - Microsoft Corporation
             Display.dll - C:\Windows\System32\Display.dll - Microsoft Corporation
             WINMM.dll - C:\Windows\SYSTEM32\WINMM.dll - Microsoft Corporation
             WINMMBASE.dll - C:\Windows\SYSTEM32\WINMMBASE.dll - Microsoft Corporation
             pcacli.dll - C:\Windows\SYSTEM32\pcacli.dll - Microsoft Corporation
             MPR.dll - C:\Windows\SYSTEM32\MPR.dll - Microsoft Corporation
             ieframe.dll - C:\Windows\System32\ieframe.dll - Microsoft Corporation
             MLANG.dll - C:\Windows\SYSTEM32\MLANG.dll - Microsoft Corporation
             UIAutomationCore.DLL - C:\Windows\SYSTEM32\UIAutomationCore.DLL - Microsoft Corporation
             audioses.dll - C:\Windows\SYSTEM32\audioses.dll - Microsoft Corporation
             twext.dll - C:\Windows\system32\twext.dll - Microsoft Corporation
             rarext.dll - C:\Program Files\WinRAR\rarext.dll - Alexander Roshal
             misosh64.dll - C:\Program Files (x86)\MagicISO\misosh64.dll - MagicISO, Inc.
             syncui.dll - C:\Windows\system32\syncui.dll - Microsoft Corporation
             SYNCENG.dll - C:\Windows\system32\SYNCENG.dll - Microsoft Corporation
             avgsea.dll - C:\Program Files (x86)\AVG\AVG2013\avgsea.dll - AVG Technologies CZ, s.r.o.
             MSVCP100.dll - C:\Windows\SYSTEM32\MSVCP100.dll - Microsoft Corporation
             MSVCR100.dll - C:\Windows\SYSTEM32\MSVCR100.dll - Microsoft Corporation
             avgsysa.dll - C:\Program Files (x86)\AVG\AVG2013\avgsysa.dll - AVG Technologies CZ, s.r.o.
             NppShell_05.dll - C:\Program Files (x86)\Notepad++\NppShell_05.dll - 
             MSIMG32.dll - C:\Windows\SYSTEM32\MSIMG32.dll - Microsoft Corporation
             MSVCR90.dll - C:\Windows\WinSxS\amd64_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6871_none_08e717a5a83adddf\MSVCR90.dll - Microsoft Corporation
             acppage.dll - C:\Windows\system32\acppage.dll - Microsoft Corporation
             sfc.dll - C:\Windows\system32\sfc.dll - Microsoft Corporation
             sfc_os.DLL - C:\Windows\system32\sfc_os.DLL - Microsoft Corporation
             DEVRTL.dll - C:\Windows\SYSTEM32\DEVRTL.dll - Microsoft Corporation
             drprov.dll - C:\Windows\System32\drprov.dll - Microsoft Corporation
             ntlanman.dll - C:\Windows\System32\ntlanman.dll - Microsoft Corporation
             davclnt.dll - C:\Windows\System32\davclnt.dll - Microsoft Corporation
             DAVHLPR.dll - C:\Windows\System32\DAVHLPR.dll - Microsoft Corporation
             dlnashext.dll - C:\Windows\System32\dlnashext.dll - Microsoft Corporation
             Windows.Media.Streaming.dll - C:\Windows\System32\Windows.Media.Streaming.dll - Microsoft Corporation
             DevDispItemProvider.dll - C:\Windows\System32\DevDispItemProvider.dll - Microsoft Corporation
             EhStorAPI.dll - C:\Windows\System32\EhStorAPI.dll - Microsoft Corporation
             SearchFolder.dll - C:\Windows\system32\SearchFolder.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[ctfmon.exe]Modules
             ctfmon.exe - C:\Windows\system32\ctfmon.exe - Microsoft Corporation
             ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             KERNEL32.DLL - C:\Windows\system32\KERNEL32.DLL - Microsoft Corporation
             KERNELBASE.dll - C:\Windows\system32\KERNELBASE.dll - Microsoft Corporation
             msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             MsCtfMonitor.DLL - C:\Windows\system32\MsCtfMonitor.DLL - Microsoft Corporation
             MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation
             MSUTB.dll - C:\Windows\system32\MSUTB.dll - Microsoft Corporation
             USER32.dll - C:\Windows\system32\USER32.dll - Microsoft Corporation
             IMM32.dll - C:\Windows\system32\IMM32.dll - Microsoft Corporation
             combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             WINSTA.dll - C:\Windows\system32\WINSTA.dll - Microsoft Corporation
             WTSAPI32.dll - C:\Windows\system32\WTSAPI32.dll - Microsoft Corporation
             GDI32.dll - C:\Windows\system32\GDI32.dll - Microsoft Corporation
             RPCRT4.dll - C:\Windows\system32\RPCRT4.dll - Microsoft Corporation
             sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             uxtheme.dll - C:\Windows\system32\uxtheme.dll - Microsoft Corporation
             dwmapi.dll - C:\Windows\system32\dwmapi.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[Idle]Modules

==========================================================================================

Process Threads

      Image File Name[System]Threads
             8 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             12 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             16 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             20 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             24 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             28 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             32 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             36 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             40 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             44 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             48 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             52 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             56 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             60 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             64 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             68 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             72 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             76 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             80 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             84 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             88 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             92 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             96 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             100 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             104 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             108 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             112 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             124 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             128 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             132 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             136 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             140 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             144 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             148 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             152 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             156 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             160 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             164 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             168 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             172 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             176 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             180 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             184 - Wait - ACPI.sys - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
             188 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             192 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             196 - Wait - pci.sys - C:\Windows\System32\drivers\pci.sys - Microsoft Corporation
             200 - Wait - ACPI.sys - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
             204 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             208 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             212 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             216 - Wait - nvraid.sys - C:\Windows\System32\drivers\nvraid.sys - NVIDIA Corporation
             220 - Wait - iaStorV.sys - C:\Windows\System32\drivers\iaStorV.sys - Intel Corporation
             224 - Wait - ndis.sys - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
             228 - Wait - ndis.sys - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
             232 - Wait - avgloga.sys - C:\Windows\system32\DRIVERS\avgloga.sys - AVG Technologies CZ, s.r.o.
             248 - Wait - volsnap.sys - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
             252 - Wait - volsnap.sys - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
             256 - Wait - volsnap.sys - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
             260 - Wait - volsnap.sys - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
             264 - Wait - volsnap.sys - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
             268 - Wait - volsnap.sys - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
             272 - Wait - volsnap.sys - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
             276 - Wait - volsnap.sys - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
             280 - Wait - volsnap.sys - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
             288 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             292 - Wait - watchdog.sys - C:\Windows\System32\drivers\watchdog.sys - Microsoft Corporation
             296 - Wait - dtsoftbus01.sys - C:\Windows\System32\drivers\dtsoftbus01.sys - DT Soft Ltd
             300 - Wait - WlanGZG.sys - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
             304 - Wait - raspptp.sys - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
             308 - Wait - avgloga.sys - C:\Windows\system32\DRIVERS\avgloga.sys - AVG Technologies CZ, s.r.o.
             312 - Wait - avgwfpa.sys - C:\Windows\system32\DRIVERS\avgwfpa.sys - AVG Technologies CZ, s.r.o.
             316 - Terminate - avgwfpa.sys - C:\Windows\system32\DRIVERS\avgwfpa.sys - AVG Technologies CZ, s.r.o.
             320 - Wait - ndis.sys - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
             328 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             384 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             392 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             412 - Wait - BasicRender.sys - C:\Windows\System32\drivers\BasicRender.sys - Microsoft Corporation
             416 - Wait - dxgmms1.sys - C:\Windows\System32\drivers\dxgmms1.sys - Microsoft Corporation
             420 - Wait - dxgkrnl.sys - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
             464 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             508 - Wait - msrpc.sys - C:\Windows\System32\drivers\msrpc.sys - Microsoft Corporation
             660 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             696 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             716 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
             1324 - Wait - pwtoquoc.sys - C:\Users\GAMELA~1\AppData\Local\Temp\pwtoquoc.sys - File not found
             1776 - Wait - ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             116 - Wait - dnsrslvr.dll - c:\windows\system32\dnsrslvr.dll - Microsoft Corporation
             120 - Wait - dnsrslvr.dll - c:\windows\system32\dnsrslvr.dll - Microsoft Corporation
             284 - Wait - dnsrslvr.dll - c:\windows\system32\dnsrslvr.dll - Microsoft Corporation
             368 - Wait - wkssvc.dll - c:\windows\system32\wkssvc.dll - Microsoft Corporation
             396 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             552 - Wait - cryptcatsvc.dll - C:\Windows\System32\cryptcatsvc.dll - Microsoft Corporation
             592 - Wait - nlasvc.dll - c:\windows\system32\nlasvc.dll - Microsoft Corporation
             596 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             748 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             976 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             980 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             984 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1020 - Wait - dnsrslvr.dll - c:\windows\system32\dnsrslvr.dll - Microsoft Corporation
             1372 - Wait - msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             1580 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1680 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1908 - Wait - ESENT.dll - C:\Windows\system32\ESENT.dll - Microsoft Corporation
             1916 - Wait - ESENT.dll - C:\Windows\system32\ESENT.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[firefox.exe]Threads
             244 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             664 - Wait - ntdll.dll - C:\Windows\SYSwow64\ntdll.dll - Microsoft Corporation
             812 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             904 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1028 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1036 - Wait - mswsock.dll - C:\Windows\.\globalroot\systemroot\syswow64\mswsock.dll - File not found
             1044 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1048 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1120 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1184 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1236 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1244 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1248 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1260 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1316 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1376 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1400 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1420 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1428 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1432 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1436 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1440 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1444 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1488 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1496 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1552 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             1972 - Wait - firefox.exe - C:\Program Files (x86)\Mozilla Firefox\firefox.exe - Mozilla Corporation
             2020 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2024 - Wait - xul.dll - C:\Program Files (x86)\Mozilla Firefox\xul.dll - Mozilla Foundation
             2032 - Wait - ntdll.dll - C:\Windows\SYSwow64\ntdll.dll - Microsoft Corporation
             2036 - Wait - xul.dll - C:\Program Files (x86)\Mozilla Firefox\xul.dll - Mozilla Foundation
             2040 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation
             2044 - Wait - MSVCR100.dll - C:\Program Files (x86)\Mozilla Firefox\MSVCR100.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             324 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             372 - Wait - msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             380 - Wait - wlgpclnt.dll - C:\Windows\SYSTEM32\wlgpclnt.dll - Microsoft Corporation
             1000 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             1004 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1008 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[smss.exe]Threads
             336 - Wait - smss.exe - C:\Windows\System32\smss.exe - Microsoft Corporation
             340 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             344 - Wait - wevtsvc.dll - c:\windows\system32\wevtsvc.dll - Microsoft Corporation
             360 - Wait - wevtsvc.dll - c:\windows\system32\wevtsvc.dll - Microsoft Corporation
             720 - Wait - wevtsvc.dll - c:\windows\system32\wevtsvc.dll - Microsoft Corporation
             880 - Wait - svchost.exe - C:\Windows\System32\svchost.exe - Microsoft Corporation
             884 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             892 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             896 - Terminate - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             900 - Wait - wevtsvc.dll - c:\windows\system32\wevtsvc.dll - Microsoft Corporation
             940 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             968 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             992 - Wait - lmhsvc.dll - c:\windows\system32\lmhsvc.dll - Microsoft Corporation
             1016 - Wait - dhcpcore6.dll - C:\Windows\System32\dhcpcore6.dll - Microsoft Corporation
             1712 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[lsass.exe]Threads
             352 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             556 - Wait - lsass.exe - C:\Windows\system32\lsass.exe - Microsoft Corporation
             560 - Wait - lsasrv.dll - C:\Windows\system32\lsasrv.dll - Microsoft Corporation
             568 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             572 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             584 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1740 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[dwm.exe]Threads
             376 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             616 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             772 - Wait - dwm.exe - C:\Windows\system32\dwm.exe - Microsoft Corporation
             796 - Wait - dwm.exe - C:\Windows\system32\dwm.exe - Microsoft Corporation
             808 - Wait - dwmcore.dll - C:\Windows\system32\dwmcore.dll - Microsoft Corporation
             820 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             824 - Wait - dwmcore.dll - C:\Windows\system32\dwmcore.dll - Microsoft Corporation
             872 - Wait - uDWM.dll - C:\Windows\system32\uDWM.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[csrss.exe]Threads
             424 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             428 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             432 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             436 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             500 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             520 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             524 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             740 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[wininit.exe]Threads
             444 - Wait - wininit.exe - C:\Windows\system32\wininit.exe - Microsoft Corporation
             496 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             504 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             576 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             580 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             452 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             916 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             928 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             932 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             1040 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1796 - Wait - authZ.dll - C:\Windows\system32\authZ.dll - Microsoft Corporation
             1800 - Wait - y - c:\windows\system32\y - File not found
             1804 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1808 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1812 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1944 - Wait - ncprov.dll - C:\Windows\system32\wbem\ncprov.dll - Microsoft Corporation
             1948 - Wait - NCObjAPI.DLL - C:\Windows\SYSTEM32\NCObjAPI.DLL - Microsoft Corporation
             1952 - Wait - NCObjAPI.DLL - C:\Windows\SYSTEM32\NCObjAPI.DLL - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[csrss.exe]Threads
             468 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             472 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             476 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             480 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             492 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             528 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             532 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             732 - Wait - winsrv.DLL - C:\Windows\system32\winsrv.DLL - Microsoft Corporation
             776 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             1564 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             1652 - Wait - CSRSRV.dll - C:\Windows\system32\CSRSRV.dll - Microsoft Corporation
             1824 - Wait - cdd.dll - C:\Windows\System32\cdd.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[PCHunter64.exe]Threads
             460 - Run - PCHunter64.exe - C:\Users\GAMELASTER\Desktop\PCHunter64.exe - ????(??)????????
             1560 - Wait - PCHunter64.exe - C:\Users\GAMELASTER\Desktop\PCHunter64.exe - ????(??)????????
             1840 - Wait - PCHunter64.exe - C:\Users\GAMELASTER\Desktop\PCHunter64.exe - ????(??)????????
             1964 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[winlogon.exe]Threads
             488 - Wait - winlogon.exe - C:\Windows\system32\winlogon.exe - Microsoft Corporation
             788 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1276 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1484 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[services.exe]Threads
             544 - Terminate - services.exe - C:\Windows\system32\services.exe - Microsoft Corporation
             600 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             604 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             608 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             620 - Wait - UBPM.dll - C:\Windows\system32\UBPM.dll - Microsoft Corporation
             628 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             656 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             868 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             908 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1620 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1716 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             636 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             644 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             668 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             672 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             736 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1272 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1644 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             684 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             688 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             692 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             700 - Wait - sechost.dll - C:\Windows\SYSTEM32\sechost.dll - Microsoft Corporation
             704 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             724 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             952 - Wait - rpcss.dll - c:\windows\system32\rpcss.dll - Microsoft Corporation
             1896 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[dllhost.exe]Threads
             792 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1296 - Wait - DllHost.exe - C:\Windows\system32\DllHost.exe - Microsoft Corporation
             1300 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1304 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1312 - Wait - combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             1456 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1464 - Wait - ESENT.dll - C:\Windows\system32\ESENT.dll - Microsoft Corporation
             1468 - Wait - ESENT.dll - C:\Windows\system32\ESENT.dll - Microsoft Corporation
             1756 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[svchost.exe]Threads
             948 - Wait - svchost.exe - C:\Windows\system32\svchost.exe - Microsoft Corporation
             956 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1344 - Wait - netprofmsvc.dll - c:\windows\system32\netprofmsvc.dll - Microsoft Corporation
             1352 - Wait - netprofmsvc.dll - c:\windows\system32\netprofmsvc.dll - Microsoft Corporation
             1356 - Wait - netprofmsvc.dll - c:\windows\system32\netprofmsvc.dll - Microsoft Corporation
             1360 - Wait - netprofmsvc.dll - c:\windows\system32\netprofmsvc.dll - Microsoft Corporation
             1364 - Wait - netprofmsvc.dll - c:\windows\system32\netprofmsvc.dll - Microsoft Corporation
             1956 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[explorer.exe]Threads
             1064 - Wait - Explorer.EXE - C:\Windows\Explorer.EXE - Microsoft Corporation
             1080 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1084 - Wait - msvcrt.dll - C:\Windows\system32\msvcrt.dll - Microsoft Corporation
             1108 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1116 - Wait - combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             1128 - Wait - windows.immersiveshell.serviceprovider.dll - C:\Windows\System32\windows.immersiveshell.serviceprovider.dll - Microsoft Corporation
             1132 - Wait - twinui.dll - C:\Windows\System32\twinui.dll - Microsoft Corporation
             1144 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1156 - Wait - sppc.dll - C:\Windows\SYSTEM32\sppc.dll - Microsoft Corporation
             1160 - Wait - DUI70.dll - C:\Windows\SYSTEM32\DUI70.dll - Microsoft Corporation
             1164 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1168 - Wait - wlidprov.dll - C:\Windows\System32\wlidprov.dll - Microsoft Corporation
             1172 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1176 - Wait - UxTheme.dll - C:\Windows\SYSTEM32\UxTheme.dll - Microsoft Corporation
             1180 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1188 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1192 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1196 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1200 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1208 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1212 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1216 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1220 - Wait - wlidprov.dll - C:\Windows\System32\wlidprov.dll - Microsoft Corporation
             1224 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1228 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1232 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1264 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1328 - Wait - WININET.dll - C:\Windows\system32\WININET.dll - Microsoft Corporation
             1332 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1340 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1508 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1548 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1568 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1572 - Wait - y - c:\windows\system32\y - File not found
             1584 - Wait - combase.dll - C:\Windows\SYSTEM32\combase.dll - Microsoft Corporation
             1600 - Wait - msiltcfg.dll - C:\Windows\SYSTEM32\msiltcfg.dll - Microsoft Corporation
             1660 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1724 - Terminate - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1728 - Wait - SHCORE.dll - C:\Windows\SYSTEM32\SHCORE.dll - Microsoft Corporation
             1736 - Wait - gdiplus.dll - C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16384_none_72771d4ecc1c3a4d\gdiplus.dll - Microsoft Corporation
             1768 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1772 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             1792 - Wait - ntdll.dll - C:\Windows\SYSTEM32\ntdll.dll - Microsoft Corporation
             2016 - Wait - audioses.dll - C:\Windows\SYSTEM32\audioses.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[ctfmon.exe]Threads
             1092 - Wait - ctfmon.exe - C:\Windows\system32\ctfmon.exe - Microsoft Corporation
             1104 - Wait - MSCTF.dll - C:\Windows\system32\MSCTF.dll - Microsoft Corporation

------------------------------------------------------------------------------------------

      Image File Name[Idle]Threads

==========================================================================================

Kernel Module

       ntoskrnl.exe - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       hal.dll - C:\Windows\system32\hal.dll - Microsoft Corporation
       kd.dll - C:\Windows\system32\kd.dll - Microsoft Corporation
       mcupdate_GenuineIntel.dll - C:\Windows\system32\mcupdate_GenuineIntel.dll - Microsoft Corporation
       CLFS.SYS - C:\Windows\System32\drivers\CLFS.SYS - Microsoft Corporation
       tm.sys - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       PSHED.dll - C:\Windows\system32\PSHED.dll - Microsoft Corporation
       BOOTVID.dll - C:\Windows\system32\BOOTVID.dll - Microsoft Corporation
       CI.dll - C:\Windows\system32\CI.dll - Microsoft Corporation
       msrpc.sys - C:\Windows\System32\drivers\msrpc.sys - Microsoft Corporation
       Wdf01000.sys - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       WDFLDR.SYS - C:\Windows\system32\drivers\WDFLDR.SYS - Microsoft Corporation
       acpiex.sys - C:\Windows\System32\Drivers\acpiex.sys - Microsoft Corporation
       WppRecorder.sys - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       ACPI.sys - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       WMILIB.SYS - C:\Windows\System32\drivers\WMILIB.SYS - Microsoft Corporation
       msisadrv.sys - C:\Windows\System32\drivers\msisadrv.sys - Microsoft Corporation
       pci.sys - C:\Windows\System32\drivers\pci.sys - Microsoft Corporation
       cng.sys - C:\Windows\System32\Drivers\cng.sys - Microsoft Corporation
       tpm.sys - C:\Windows\system32\drivers\tpm.sys - Microsoft Corporation
       avgboota.sys - C:\Windows\system32\DRIVERS\avgboota.sys - AVG Technologies CZ, s.r.o.
       isapnp.sys - C:\Windows\System32\drivers\isapnp.sys - Microsoft Corporation
       vdrvroot.sys - C:\Windows\System32\drivers\vdrvroot.sys - Microsoft Corporation
       pdc.sys - C:\Windows\system32\drivers\pdc.sys - Microsoft Corporation
       partmgr.sys - C:\Windows\System32\drivers\partmgr.sys - Microsoft Corporation
       spaceport.sys - C:\Windows\System32\drivers\spaceport.sys - Microsoft Corporation
       volmgr.sys - C:\Windows\System32\drivers\volmgr.sys - Microsoft Corporation
       volmgrx.sys - C:\Windows\System32\drivers\volmgrx.sys - Microsoft Corporation
       vmbus.sys - C:\Windows\System32\drivers\vmbus.sys - Microsoft Corporation
       vmbkmcl.sys - C:\Windows\System32\drivers\vmbkmcl.sys - Microsoft Corporation
       winhv.sys - C:\Windows\System32\drivers\winhv.sys - Microsoft Corporation
       nvraid.sys - C:\Windows\System32\drivers\nvraid.sys - NVIDIA Corporation
       CLASSPNP.SYS - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       pciide.sys - C:\Windows\System32\drivers\pciide.sys - Microsoft Corporation
       PCIIDEX.SYS - C:\Windows\System32\drivers\PCIIDEX.SYS - Microsoft Corporation
       intelide.sys - C:\Windows\System32\drivers\intelide.sys - Microsoft Corporation
       viaide.sys - C:\Windows\System32\drivers\viaide.sys - VIA Technologies, Inc.
       bxvbda.sys - C:\Windows\System32\drivers\bxvbda.sys - Broadcom Corporation
       evbda.sys - C:\Windows\System32\drivers\evbda.sys - Broadcom Corporation
       sdbus.sys - C:\Windows\System32\drivers\sdbus.sys - Microsoft Corporation
       pcmcia.sys - C:\Windows\System32\drivers\pcmcia.sys - Microsoft Corporation
       mountmgr.sys - C:\Windows\System32\drivers\mountmgr.sys - Microsoft Corporation
       iaStorV.sys - C:\Windows\System32\drivers\iaStorV.sys - Intel Corporation
       nvstor.sys - C:\Windows\System32\drivers\nvstor.sys - NVIDIA Corporation
       storport.sys - C:\Windows\System32\drivers\storport.sys - Microsoft Corporation
       lsi_sas.sys - C:\Windows\System32\drivers\lsi_sas.sys - LSI Corporation
       lsi_sas2.sys - C:\Windows\System32\drivers\lsi_sas2.sys - LSI Corporation
       lsi_sss.sys - C:\Windows\System32\drivers\lsi_sss.sys - LSI Corporation
       3ware.sys - C:\Windows\System32\drivers\3ware.sys - LSI
       mvumis.sys - C:\Windows\System32\drivers\mvumis.sys - Marvell Semiconductor, Inc.
       vstxraid.sys - C:\Windows\System32\drivers\vstxraid.sys - VIA Corporation
       lsi_scsi.sys - C:\Windows\System32\drivers\lsi_scsi.sys - LSI Corporation
       megasas.sys - C:\Windows\System32\drivers\megasas.sys - LSI Corporation
       MegaSR.sys - C:\Windows\System32\drivers\MegaSR.sys - LSI Corporation, Inc.
       amdsata.sys - C:\Windows\System32\drivers\amdsata.sys - Advanced Micro Devices
       amdxata.sys - C:\Windows\System32\drivers\amdxata.sys - Advanced Micro Devices
       amdsbs.sys - C:\Windows\System32\drivers\amdsbs.sys - AMD Technologies Inc.
       adp94xx.sys - C:\Windows\System32\drivers\adp94xx.sys - Adaptec, Inc.
       adpahci.sys - C:\Windows\System32\drivers\adpahci.sys - Adaptec, Inc.
       adpu320.sys - C:\Windows\System32\drivers\adpu320.sys - Adaptec, Inc.
       arc.sys - C:\Windows\System32\drivers\arc.sys - PMC-Sierra, Inc.
       arcsas.sys - C:\Windows\System32\drivers\arcsas.sys - PMC-Sierra, Inc.
       iirsp.sys - C:\Windows\System32\drivers\iirsp.sys - Intel Corp./ICP vortex GmbH
       nfrd960.sys - C:\Windows\System32\drivers\nfrd960.sys - IBM Corporation
       vsmraid.sys - C:\Windows\System32\drivers\vsmraid.sys - VIA Technologies Inc.,Ltd
       SiSRaid2.sys - C:\Windows\System32\drivers\SiSRaid2.sys - Silicon Integrated Systems Corp.
       sisraid4.sys - C:\Windows\System32\drivers\sisraid4.sys - Silicon Integrated Systems
       atapi.sys - C:\Windows\System32\drivers\atapi.sys - Microsoft Corporation
       ataport.SYS - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       storahci.sys - C:\Windows\System32\drivers\storahci.sys - Microsoft Corporation
       stexstor.sys - C:\Windows\System32\drivers\stexstor.sys - Promise Technology, Inc.
       HpSAMD.sys - C:\Windows\System32\drivers\HpSAMD.sys - Hewlett-Packard Company
       EhStorTcgDrv.sys - C:\Windows\System32\drivers\EhStorTcgDrv.sys - Microsoft Corporation
       EhStorClass.sys - C:\Windows\System32\drivers\EhStorClass.sys - Microsoft Corporation
       fltmgr.sys - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       fileinfo.sys - C:\Windows\System32\drivers\fileinfo.sys - Microsoft Corporation
       PxHlpa64.sys - C:\Windows\System32\Drivers\PxHlpa64.sys - Sonic Solutions
       Ntfs.sys - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       ksecdd.sys - C:\Windows\System32\Drivers\ksecdd.sys - Microsoft Corporation
       storvsc.sys - C:\Windows\System32\drivers\storvsc.sys - Microsoft Corporation
       usbhub.sys - C:\Windows\System32\drivers\usbhub.sys - Microsoft Corporation
       USBD.SYS - C:\Windows\System32\drivers\USBD.SYS - Microsoft Corporation
       usbehci.sys - C:\Windows\System32\drivers\usbehci.sys - Microsoft Corporation
       USBPORT.SYS - C:\Windows\System32\drivers\USBPORT.SYS - Microsoft Corporation
       ucx01000.sys - C:\Windows\System32\drivers\ucx01000.sys - Microsoft Corporation
       UsbHub3.sys - C:\Windows\System32\drivers\UsbHub3.sys - Microsoft Corporation
       pcw.sys - C:\Windows\System32\drivers\pcw.sys - Microsoft Corporation
       Fs_Rec.sys - C:\Windows\System32\Drivers\Fs_Rec.sys - Microsoft Corporation
       ndis.sys - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       NETIO.SYS - C:\Windows\system32\drivers\NETIO.SYS - Microsoft Corporation
       ksecpkg.sys - C:\Windows\System32\Drivers\ksecpkg.sys - Microsoft Corporation
       tcpip.sys - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       fwpkclnt.sys - C:\Windows\System32\drivers\fwpkclnt.sys - Microsoft Corporation
       wfplwfs.sys - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       vmstorfl.sys - C:\Windows\system32\DRIVERS\vmstorfl.sys - Microsoft Corporation
       avgloga.sys - C:\Windows\system32\DRIVERS\avgloga.sys - AVG Technologies CZ, s.r.o.
       avgmfx64.sys - C:\Windows\system32\DRIVERS\avgmfx64.sys - AVG Technologies CZ, s.r.o.
       fvevol.sys - C:\Windows\System32\DRIVERS\fvevol.sys - Microsoft Corporation
       gagp30kx.sys - C:\Windows\System32\drivers\gagp30kx.sys - Microsoft Corporation
       uagp35.sys - C:\Windows\System32\drivers\uagp35.sys - Microsoft Corporation
       agp440.sys - C:\Windows\System32\drivers\agp440.sys - Microsoft Corporation
       avgidsha.sys - C:\Windows\system32\DRIVERS\avgidsha.sys - AVG Technologies CZ, s.r.o.
       nv_agp.sys - C:\Windows\System32\drivers\nv_agp.sys - Microsoft Corporation
       uliagpkx.sys - C:\Windows\System32\drivers\uliagpkx.sys - Microsoft Corporation
       wd.sys - C:\Windows\System32\drivers\wd.sys - Microsoft Corporation
       volsnap.sys - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
       USBXHCI.SYS - C:\Windows\System32\drivers\USBXHCI.SYS - Microsoft Corporation
       USBSTOR.SYS - C:\Windows\System32\drivers\USBSTOR.SYS - Microsoft Corporation
       uaspstor.sys - C:\Windows\System32\drivers\uaspstor.sys - Microsoft Corporation
       sdstor.sys - C:\Windows\System32\drivers\sdstor.sys - Microsoft Corporation
       sbp2port.sys - C:\Windows\System32\drivers\sbp2port.sys - Microsoft Corporation
       rdyboost.sys - C:\Windows\System32\drivers\rdyboost.sys - Microsoft Corporation
       mup.sys - C:\Windows\System32\Drivers\mup.sys - Microsoft Corporation
       disk.sys - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       avgrkx64.sys - C:\Windows\system32\DRIVERS\avgrkx64.sys - AVG Technologies CZ, s.r.o.
       crashdmp.sys - C:\Windows\System32\Drivers\crashdmp.sys - Microsoft Corporation
       hidusb.sys - C:\Windows\System32\drivers\hidusb.sys - Microsoft Corporation
       HIDCLASS.SYS - C:\Windows\System32\drivers\HIDCLASS.SYS - Microsoft Corporation
       HIDPARSE.SYS - C:\Windows\System32\drivers\HIDPARSE.SYS - Microsoft Corporation
       Null.SYS - C:\Windows\System32\Drivers\Null.SYS - Microsoft Corporation
       mouhid.sys - C:\Windows\System32\drivers\mouhid.sys - Microsoft Corporation
       Beep.SYS - C:\Windows\System32\Drivers\Beep.SYS - Microsoft Corporation
       mouclass.sys - C:\Windows\System32\drivers\mouclass.sys - Microsoft Corporation
       BasicRender.sys - C:\Windows\System32\drivers\BasicRender.sys - Microsoft Corporation
       dxgkrnl.sys - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       watchdog.sys - C:\Windows\System32\drivers\watchdog.sys - Microsoft Corporation
       BasicDisplay.sys - C:\Windows\System32\drivers\BasicDisplay.sys - Microsoft Corporation
       dxgmms1.sys - C:\Windows\System32\drivers\dxgmms1.sys - Microsoft Corporation
       ndistapi.sys - C:\Windows\system32\DRIVERS\ndistapi.sys - Microsoft Corporation
       ndiswan.sys - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       rassstp.sys - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       AgileVpn.sys - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       tunnel.sys - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       CompositeBus.sys - C:\Windows\System32\drivers\CompositeBus.sys - Microsoft Corporation
       kdnic.sys - C:\Windows\system32\DRIVERS\kdnic.sys - Microsoft Corporation
       umbus.sys - C:\Windows\System32\drivers\umbus.sys - Microsoft Corporation
       usbccgp.sys - C:\Windows\System32\drivers\usbccgp.sys - Microsoft Corporation
       HECIx64.sys - C:\Windows\System32\drivers\HECIx64.sys - Intel Corporation
       WlanGZG.sys - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       HDAudBus.sys - C:\Windows\System32\drivers\HDAudBus.sys - Microsoft Corporation
       Rt630x64.sys - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       wmiacpi.sys - C:\Windows\System32\drivers\wmiacpi.sys - Microsoft Corporation
       raspptp.sys - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       rasl2tp.sys - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       raspppoe.sys - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       mssmbios.sys - C:\Windows\System32\drivers\mssmbios.sys - Microsoft Corporation
       swenum.sys - C:\Windows\System32\drivers\swenum.sys - Microsoft Corporation
       ks.sys - C:\Windows\System32\drivers\ks.sys - Microsoft Corporation
       dtsoftbus01.sys - C:\Windows\System32\drivers\dtsoftbus01.sys - DT Soft Ltd
       rdpbus.sys - C:\Windows\System32\drivers\rdpbus.sys - Microsoft Corporation
       NDProxy.SYS - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       cdrom.sys - C:\Windows\System32\drivers\cdrom.sys - Microsoft Corporation
       kbdhid.sys - C:\Windows\System32\drivers\kbdhid.sys - Microsoft Corporation
       kbdclass.sys - C:\Windows\System32\drivers\kbdclass.sys - Microsoft Corporation
       Npfs.SYS - C:\Windows\System32\Drivers\Npfs.SYS - Microsoft Corporation
       Msfs.SYS - C:\Windows\System32\Drivers\Msfs.SYS - Microsoft Corporation
       avgwfpa.sys - C:\Windows\system32\DRIVERS\avgwfpa.sys - AVG Technologies CZ, s.r.o.
       avgfwd6a.sys - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       tdx.sys - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       TDI.SYS - C:\Windows\system32\DRIVERS\TDI.SYS - Microsoft Corporation
       netbt.sys - C:\Windows\System32\DRIVERS\netbt.sys - Microsoft Corporation
       afd.sys - C:\Windows\system32\drivers\afd.sys - Microsoft Corporation
       pacer.sys - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       ndisrd.sys - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       netbios.sys - C:\Windows\system32\DRIVERS\netbios.sys - Microsoft Corporation
       rdbss.sys - C:\Windows\system32\DRIVERS\rdbss.sys - Microsoft Corporation
       csc.sys - C:\Windows\system32\drivers\csc.sys - Microsoft Corporation
       nsiproxy.sys - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       npsvctrig.sys - C:\Windows\System32\drivers\npsvctrig.sys - Microsoft Corporation
       dfsc.sys - C:\Windows\System32\Drivers\dfsc.sys - Microsoft Corporation
       dump_dumpata.sys - C:\Windows\System32\Drivers\dump_dumpata.sys - File not found
       dump_atapi.sys - C:\Windows\System32\Drivers\dump_atapi.sys - File not found
       dump_dumpfve.sys - C:\Windows\System32\Drivers\dump_dumpfve.sys - File not found
       win32k.sys - C:\Windows\System32\win32k.sys - Microsoft Corporation
       TSDDD.dll - C:\Windows\System32\TSDDD.dll - Microsoft Corporation
       cdd.dll - C:\Windows\System32\cdd.dll - Microsoft Corporation
       ATMFD.DLL - C:\Windows\System32\ATMFD.DLL - Adobe Systems Incorporated
       nwifi.sys - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       ndisuio.sys - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       bowser.sys - C:\Windows\system32\DRIVERS\bowser.sys - Microsoft Corporation
       mrxsmb.sys - C:\Windows\system32\DRIVERS\mrxsmb.sys - Microsoft Corporation
       mrxsmb10.sys - C:\Windows\system32\DRIVERS\mrxsmb10.sys - Microsoft Corporation
       mrxsmb20.sys - C:\Windows\system32\DRIVERS\mrxsmb20.sys - Microsoft Corporation
       pwtoquoc.sys - C:\Users\GAMELA~1\AppData\Local\Temp\pwtoquoc.sys - File not found
       ffudzxiocxlxomo.sys - C:\Users\GAMELASTER\Desktop\ffudzxiocxlxomo.sys - File not found
      
       [UnloadDriver] VSPerfDrv100.sys - C:\Program Files (x86)\Microsoft Visual Studio 10.0\Team Tools\Performance Tools\x64\VSPerfDrv100.sys - Microsoft Corporation
       [UnloadDriver] FairplayKD.sys - C:\ProgramData\MTA San Andreas All\1.3\temp\FairplayKD.sys - File not found
       [UnloadDriver] ASUSFILTER.sys - C:\Windows\SysWow64\drivers\ASUSFILTER.sys - MCCI Corporation
       [UnloadDriver] AsIO.sys - C:\Windows\SysWow64\drivers\AsIO.sys - 
       [UnloadDriver] AsUpIO.sys - C:\Windows\SysWow64\drivers\AsUpIO.sys - 
       [UnloadDriver] rasacd.sys - C:\Windows\System32\DRIVERS\rasacd.sys - Microsoft Corporation
       [UnloadDriver] scfilter.sys - C:\Windows\System32\DRIVERS\scfilter.sys - Microsoft Corporation
       [UnloadDriver] srv.sys - C:\Windows\System32\DRIVERS\srv.sys - Microsoft Corporation
       [UnloadDriver] srv2.sys - C:\Windows\System32\DRIVERS\srv2.sys - Microsoft Corporation
       [UnloadDriver] srvnet.sys - C:\Windows\System32\DRIVERS\srvnet.sys - Microsoft Corporation
       [UnloadDriver] msgpioclx.sys - C:\Windows\System32\Drivers\msgpioclx.sys - Microsoft Corporation
       [UnloadDriver] 1394ohci.sys - C:\Windows\System32\drivers\1394ohci.sys - Microsoft Corporation
       [UnloadDriver] BthAvrcpTg.sys - C:\Windows\System32\drivers\BthAvrcpTg.sys - Microsoft Corporation
       [UnloadDriver] BthHFHid.sys - C:\Windows\System32\drivers\BthHFHid.sys - Microsoft Corporation
       [UnloadDriver] CmBatt.sys - C:\Windows\System32\drivers\CmBatt.sys - Microsoft Corporation
       [UnloadDriver] FsDepends.sys - C:\Windows\System32\drivers\FsDepends.sys - Microsoft Corporation
       [UnloadDriver] HidBatt.sys - C:\Windows\System32\drivers\HidBatt.sys - Microsoft Corporation
       [UnloadDriver] IPMIDrv.sys - C:\Windows\System32\drivers\IPMIDrv.sys - Microsoft Corporation
       [UnloadDriver] MTConfig.sys - C:\Windows\System32\drivers\MTConfig.sys - Microsoft Corporation
       [UnloadDriver] TsUsbGD.sys - C:\Windows\System32\drivers\TsUsbGD.sys - Microsoft Corporation
       [UnloadDriver] VMBusHID.sys - C:\Windows\System32\drivers\VMBusHID.sys - Microsoft Corporation
       [UnloadDriver] Vid.sys - C:\Windows\System32\drivers\Vid.sys - Microsoft Corporation
       [UnloadDriver] WUDFRd.sys - C:\Windows\System32\drivers\WUDFRd.sys - Microsoft Corporation
       [UnloadDriver] WpdUpFltr.sys - C:\Windows\System32\drivers\WpdUpFltr.sys - Microsoft Corporation
       [UnloadDriver] acpipagr.sys - C:\Windows\System32\drivers\acpipagr.sys - Microsoft Corporation
       [UnloadDriver] acpipmi.sys - C:\Windows\System32\drivers\acpipmi.sys - Microsoft Corporation
       [UnloadDriver] acpitime.sys - C:\Windows\System32\drivers\acpitime.sys - Microsoft Corporation
       [UnloadDriver] amdk8.sys - C:\Windows\System32\drivers\amdk8.sys - Microsoft Corporation
       [UnloadDriver] amdppm.sys - C:\Windows\System32\drivers\amdppm.sys - Microsoft Corporation
       [UnloadDriver] bthhfenum.sys - C:\Windows\System32\drivers\bthhfenum.sys - Microsoft Corporation
       [UnloadDriver] bthmodem.sys - C:\Windows\System32\drivers\bthmodem.sys - Microsoft Corporation
       [UnloadDriver] circlass.sys - C:\Windows\System32\drivers\circlass.sys - Microsoft Corporation
       [UnloadDriver] condrv.sys - C:\Windows\System32\drivers\condrv.sys - Microsoft Corporation
       [UnloadDriver] discache.sys - C:\Windows\System32\drivers\discache.sys - Microsoft Corporation
       [UnloadDriver] dmvsc.sys - C:\Windows\System32\drivers\dmvsc.sys - Microsoft Corporation
       [UnloadDriver] errdev.sys - C:\Windows\System32\drivers\errdev.sys - Microsoft Corporation
       [UnloadDriver] fdc.sys - C:\Windows\System32\drivers\fdc.sys - Microsoft Corporation
       [UnloadDriver] flpydisk.sys - C:\Windows\System32\drivers\flpydisk.sys - Microsoft Corporation
       [UnloadDriver] fxppm.sys - C:\Windows\System32\drivers\fxppm.sys - Microsoft Corporation
       [UnloadDriver] hidbth.sys - C:\Windows\System32\drivers\hidbth.sys - Microsoft Corporation
       [UnloadDriver] hidi2c.sys - C:\Windows\System32\drivers\hidi2c.sys - Microsoft Corporation
       [UnloadDriver] hidir.sys - C:\Windows\System32\drivers\hidir.sys - Microsoft Corporation
       [UnloadDriver] hwpolicy.sys - C:\Windows\System32\drivers\hwpolicy.sys - Microsoft Corporation
       [UnloadDriver] hyperkbd.sys - C:\Windows\System32\drivers\hyperkbd.sys - Microsoft Corporation
       [UnloadDriver] i8042prt.sys - C:\Windows\System32\drivers\i8042prt.sys - Microsoft Corporation
       [UnloadDriver] intelppm.sys - C:\Windows\System32\drivers\intelppm.sys - Microsoft Corporation
       [UnloadDriver] ipnat.sys - C:\Windows\System32\drivers\ipnat.sys - Microsoft Corporation
       [UnloadDriver] mpsdrv.sys - C:\Windows\System32\drivers\mpsdrv.sys - Microsoft Corporation
       [UnloadDriver] msgpiowin32.sys - C:\Windows\System32\drivers\msgpiowin32.sys - Microsoft Corporation
       [UnloadDriver] mshidkmdf.sys - C:\Windows\System32\drivers\mshidkmdf.sys - Microsoft Corporation
       [UnloadDriver] mshidumdf.sys - C:\Windows\System32\drivers\mshidumdf.sys - Microsoft Corporation
       [UnloadDriver] msiscsi.sys - C:\Windows\System32\drivers\msiscsi.sys - Microsoft Corporation
       [UnloadDriver] parport.sys - C:\Windows\System32\drivers\parport.sys - Microsoft Corporation
       [UnloadDriver] processr.sys - C:\Windows\System32\drivers\processr.sys - Microsoft Corporation
       [UnloadDriver] rdpdr.sys - C:\Windows\System32\drivers\rdpdr.sys - Microsoft Corporation
       [UnloadDriver] rdpvideominiport.sys - C:\Windows\System32\drivers\rdpvideominiport.sys - Microsoft Corporation
       [UnloadDriver] serenum.sys - C:\Windows\System32\drivers\serenum.sys - Microsoft Corporation
       [UnloadDriver] serial.sys - C:\Windows\System32\drivers\serial.sys - Microsoft Corporation
       [UnloadDriver] sermouse.sys - C:\Windows\System32\drivers\sermouse.sys - Microsoft Corporation
       [UnloadDriver] sfloppy.sys - C:\Windows\System32\drivers\sfloppy.sys - Microsoft Corporation
       [UnloadDriver] storvsp.sys - C:\Windows\System32\drivers\storvsp.sys - Microsoft Corporation
       [UnloadDriver] tcpipreg.sys - C:\Windows\System32\drivers\tcpipreg.sys - Microsoft Corporation
       [UnloadDriver] terminpt.sys - C:\Windows\System32\drivers\terminpt.sys - Microsoft Corporation
       [UnloadDriver] umpass.sys - C:\Windows\System32\drivers\umpass.sys - Microsoft Corporation
       [UnloadDriver] usbcir.sys - C:\Windows\System32\drivers\usbcir.sys - Microsoft Corporation
       [UnloadDriver] usbohci.sys - C:\Windows\System32\drivers\usbohci.sys - Microsoft Corporation
       [UnloadDriver] usbprint.sys - C:\Windows\System32\drivers\usbprint.sys - Microsoft Corporation
       [UnloadDriver] usbuhci.sys - C:\Windows\System32\drivers\usbuhci.sys - Microsoft Corporation
       [UnloadDriver] vhdmp.sys - C:\Windows\System32\drivers\vhdmp.sys - Microsoft Corporation
       [UnloadDriver] vmbusr.sys - C:\Windows\System32\drivers\vmbusr.sys - Microsoft Corporation
       [UnloadDriver] vmgencounter.sys - C:\Windows\System32\drivers\vmgencounter.sys - Microsoft Corporation
       [UnloadDriver] vms3cap.sys - C:\Windows\System32\drivers\vms3cap.sys - Microsoft Corporation
       [UnloadDriver] vpci.sys - C:\Windows\System32\drivers\vpci.sys - Microsoft Corporation
       [UnloadDriver] vpcivsp.sys - C:\Windows\System32\drivers\vpcivsp.sys - Microsoft Corporation
       [UnloadDriver] vwifibus.sys - C:\Windows\System32\drivers\vwifibus.sys - Microsoft Corporation
       [UnloadDriver] wacompen.sys - C:\Windows\System32\drivers\wacompen.sys - Microsoft Corporation
       [UnloadDriver] HyperVideo.sys - C:\Windows\system32\DRIVERS\HyperVideo.sys - Microsoft Corporation
       [UnloadDriver] NdisImPlatform.sys - C:\Windows\system32\DRIVERS\NdisImPlatform.sys - Microsoft Corporation
       [UnloadDriver] RsFx0103.sys - C:\Windows\system32\DRIVERS\RsFx0103.sys - Microsoft Corporation
       [UnloadDriver] WUDFRd.sys - C:\Windows\system32\DRIVERS\WUDFRd.sys - Microsoft Corporation
       [UnloadDriver] WinUSB.sys - C:\Windows\system32\DRIVERS\WinUSB.sys - Microsoft Corporation
       [UnloadDriver] WlanGZ64.SYS - C:\Windows\system32\DRIVERS\WlanGZ64.SYS - Atheros Communications, Inc.
       [UnloadDriver] asyncmac.sys - C:\Windows\system32\DRIVERS\asyncmac.sys - Microsoft Corporation
       [UnloadDriver] athrxusb.sys - C:\Windows\system32\DRIVERS\athrxusb.sys - Atheros Communications, Inc.
       [UnloadDriver] avgidsdrivera.sys - C:\Windows\system32\DRIVERS\avgidsdrivera.sys - AVG Technologies CZ, s.r.o.
       [UnloadDriver] avgldx64.sys - C:\Windows\system32\DRIVERS\avgldx64.sys - AVG Technologies CZ, s.r.o.
       [UnloadDriver] bridge.sys - C:\Windows\system32\DRIVERS\bridge.sys - Microsoft Corporation
       [UnloadDriver] cdfs.sys - C:\Windows\system32\DRIVERS\cdfs.sys - Microsoft Corporation
       [UnloadDriver] igdkmd64.sys - C:\Windows\system32\DRIVERS\igdkmd64.sys - Intel Corporation
       [UnloadDriver] ipfltdrv.sys - C:\Windows\system32\DRIVERS\ipfltdrv.sys - Microsoft Corporation
       [UnloadDriver] lltdio.sys - C:\Windows\system32\DRIVERS\lltdio.sys - Microsoft Corporation
       [UnloadDriver] monitor.sys - C:\Windows\system32\DRIVERS\monitor.sys - Microsoft Corporation
       [UnloadDriver] mslldp.sys - C:\Windows\system32\DRIVERS\mslldp.sys - Microsoft Corporation
       [UnloadDriver] ndiscap.sys - C:\Windows\system32\DRIVERS\ndiscap.sys - Microsoft Corporation
       [UnloadDriver] pneteth.sys - C:\Windows\system32\DRIVERS\pneteth.sys - June Fabrics Technology Inc.
       [UnloadDriver] rspndr.sys - C:\Windows\system32\DRIVERS\rspndr.sys - Microsoft Corporation
       [UnloadDriver] tcpip.sys - C:\Windows\system32\DRIVERS\tcpip.sys - Microsoft Corporation
       [UnloadDriver] udfs.sys - C:\Windows\system32\DRIVERS\udfs.sys - Microsoft Corporation
       [UnloadDriver] wanarp.sys - C:\Windows\system32\DRIVERS\wanarp.sys - Microsoft Corporation
       [UnloadDriver] wpcfltr.sys - C:\Windows\system32\DRIVERS\wpcfltr.sys - Microsoft Corporation
       [UnloadDriver] ZDCNDIS6a64.sys - C:\Windows\system32\ZDCNDIS6a64.sys - Printing Communications Assoc., Inc. (PCAUSA)
       [UnloadDriver] HTTP.sys - C:\Windows\system32\drivers\HTTP.sys - Microsoft Corporation
       [UnloadDriver] HdAudio.sys - C:\Windows\system32\drivers\HdAudio.sys - Microsoft Corporation
       [UnloadDriver] MSKSSRV.sys - C:\Windows\system32\drivers\MSKSSRV.sys - Microsoft Corporation
       [UnloadDriver] MSPCLOCK.sys - C:\Windows\system32\drivers\MSPCLOCK.sys - Microsoft Corporation
       [UnloadDriver] MSPQM.sys - C:\Windows\system32\drivers\MSPQM.sys - Microsoft Corporation
       [UnloadDriver] MSTEE.sys - C:\Windows\system32\drivers\MSTEE.sys - Microsoft Corporation
       [UnloadDriver] Ndu.sys - C:\Windows\system32\drivers\Ndu.sys - Microsoft Corporation
       [UnloadDriver] SerCx.sys - C:\Windows\system32\drivers\SerCx.sys - Microsoft Corporation
       [UnloadDriver] SpbCx.sys - C:\Windows\system32\drivers\SpbCx.sys - Microsoft Corporation
       [UnloadDriver] VerifierExt.sys - C:\Windows\system32\drivers\VerifierExt.sys - Microsoft Corporation
       [UnloadDriver] WdBoot.sys - C:\Windows\system32\drivers\WdBoot.sys - Microsoft Corporation
       [UnloadDriver] WdFilter.sys - C:\Windows\system32\drivers\WdFilter.sys - Microsoft Corporation
       [UnloadDriver] WudfPf.sys - C:\Windows\system32\drivers\WudfPf.sys - Microsoft Corporation
       [UnloadDriver] appid.sys - C:\Windows\system32\drivers\appid.sys - Microsoft Corporation
       [UnloadDriver] dam.sys - C:\Windows\system32\drivers\dam.sys - Microsoft Corporation
       [UnloadDriver] drmkaud.sys - C:\Windows\system32\drivers\drmkaud.sys - Microsoft Corporation
       [UnloadDriver] filetrace.sys - C:\Windows\system32\drivers\filetrace.sys - Microsoft Corporation
       [UnloadDriver] irenum.sys - C:\Windows\system32\drivers\irenum.sys - Microsoft Corporation
       [UnloadDriver] ksthunk.sys - C:\Windows\system32\drivers\ksthunk.sys - Microsoft Corporation
       [UnloadDriver] luafv.sys - C:\Windows\system32\drivers\luafv.sys - Microsoft Corporation
       [UnloadDriver] modem.sys - C:\Windows\system32\drivers\modem.sys - Microsoft Corporation
       [UnloadDriver] mrxdav.sys - C:\Windows\system32\drivers\mrxdav.sys - Microsoft Corporation
       [UnloadDriver] peauth.sys - C:\Windows\system32\drivers\peauth.sys - Microsoft Corporation
       [UnloadDriver] qwavedrv.sys - C:\Windows\system32\drivers\qwavedrv.sys - Microsoft Corporation
       [UnloadDriver] tsusbflt.sys - C:\Windows\system32\drivers\tsusbflt.sys - Microsoft Corporation
       [UnloadDriver] usbaudio.sys - C:\Windows\system32\drivers\usbaudio.sys - Microsoft Corporation
       [UnloadDriver] viahduaa.sys - C:\Windows\system32\drivers\viahduaa.sys - VIA Technologies, Inc.
       [UnloadDriver] wimmount.sys - C:\Windows\system32\drivers\wimmount.sys - Microsoft Corporation
       [UnloadDriver] ws2ifsl.sys - C:\Windows\system32\drivers\ws2ifsl.sys - Microsoft Corporation
       [UnloadDriver] VSPerfDrv110.sys - E:\Program Files (x86)\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\x64\VSPerfDrv110.sys - Microsoft Corporation

==========================================================================================

Notify Routine

       CreateProcess - 0xFFFFF803C62D8F30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CreateProcess - 0xFFFFF880012C9470 - C:\Windows\System32\Drivers\cng.sys - Microsoft Corporation
       CreateProcess - 0xFFFFF8800247E260 - C:\Windows\System32\Drivers\ksecdd.sys - Microsoft Corporation
       CreateProcess - 0xFFFFF88002753C78 - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       CreateProcess - 0xFFFFF88000C2AC10 - C:\Windows\system32\CI.dll - Microsoft Corporation
       CreateProcess - 0xFFFFF88004B2FC00 - C:\Windows\system32\DRIVERS\avgwfpa.sys - AVG Technologies CZ, s.r.o.
       BugCheckCallback - 0xFFFFF88002133C54 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       BugCheckCallback - 0xFFFFF803C6232F30 - C:\Windows\system32\hal.dll - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880020575FC - C:\Windows\System32\Drivers\crashdmp.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF88002053C80 - C:\Windows\System32\Drivers\crashdmp.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF88004841154 - C:\Windows\System32\drivers\mssmbios.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800484110C - C:\Windows\System32\drivers\mssmbios.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF88004841070 - C:\Windows\System32\drivers\mssmbios.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800484102C - C:\Windows\System32\drivers\mssmbios.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF88004464844 - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880014F10EC - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880024C5D78 - C:\Windows\System32\drivers\usbhub.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880024C5DCC - C:\Windows\System32\drivers\usbhub.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880016CAD78 - C:\Windows\System32\drivers\evbda.sys - Broadcom Corporation
       BugCheckReasonCallback - 0xFFFFF880015844CC - C:\Windows\System32\drivers\bxvbda.sys - Broadcom Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800255B504 - C:\Windows\System32\drivers\USBPORT.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800255B420 - C:\Windows\System32\drivers\USBPORT.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800255B498 - C:\Windows\System32\drivers\USBPORT.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF88001F6E708 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF88001F6E604 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011236A0 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF8800117805C - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF880011780B4 - C:\Windows\System32\Drivers\WppRecorder.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF88001123750 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       BugCheckReasonCallback - 0xFFFFF803C644008C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeFileSystem - 0xFFFFF880077817E0 - C:\Windows\system32\DRIVERS\mrxsmb.sys - Microsoft Corporation
       Shutdown - 0xFFFFF88007393F70 - C:\Windows\system32\drivers\csc.sys - Microsoft Corporation
       Shutdown - 0xFFFFF880047D85D4 - C:\Windows\System32\drivers\HECIx64.sys - Intel Corporation
       Shutdown - 0xFFFFF880024C5E24 - C:\Windows\System32\drivers\usbhub.sys - Microsoft Corporation
       Shutdown - 0xFFFFF880024C5E24 - C:\Windows\System32\drivers\usbhub.sys - Microsoft Corporation
       Shutdown - 0xFFFFF88001096A00 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       Shutdown - 0xFFFFF880029B5BE0 - C:\Windows\system32\DRIVERS\avgloga.sys - AVG Technologies CZ, s.r.o.
       Shutdown - 0xFFFFF880024C5E24 - C:\Windows\System32\drivers\usbhub.sys - Microsoft Corporation
       Shutdown - 0xFFFFF880024C5E24 - C:\Windows\System32\drivers\usbhub.sys - Microsoft Corporation
       Shutdown - 0xFFFFF8800247E010 - C:\Windows\System32\Drivers\ksecdd.sys - Microsoft Corporation
       Shutdown - 0xFFFFF88001A860A0 - C:\Windows\System32\drivers\mountmgr.sys - Microsoft Corporation
       Shutdown - 0xFFFFF803C680B408 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Shutdown - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Shutdown - 0xFFFFF8800124CF8C - C:\Windows\System32\drivers\volmgr.sys - Microsoft Corporation
       Shutdown - 0xFFFFF88001203204 - C:\Windows\System32\drivers\spaceport.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF803C6801B74 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PlugPlay - 0xFFFFF8800132AA24 - C:\Windows\System32\Drivers\cng.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF880013A8054 - C:\Windows\system32\drivers\pdc.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF88001232B1C - C:\Windows\System32\drivers\spaceport.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF960003063E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF8800478C968 - C:\Windows\System32\drivers\CompositeBus.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF803C6801B74 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PlugPlay - 0xFFFFF803C6801B74 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PlugPlay - 0xFFFFF803C62714DC - C:\Windows\system32\hal.dll - Microsoft Corporation
       PlugPlay - 0xFFFFF8800132AB68 - C:\Windows\System32\Drivers\cng.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF880013A8054 - C:\Windows\system32\drivers\pdc.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF8800478C968 - C:\Windows\System32\drivers\CompositeBus.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF88001255D30 - C:\Windows\System32\drivers\volmgr.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF880044F8408 - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF960003063E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF9600035705C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF88000DE869C - C:\Windows\System32\drivers\winhv.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF88001255D30 - C:\Windows\System32\drivers\volmgr.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF88001A7BEBC - C:\Windows\System32\drivers\mountmgr.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF88001C1E060 - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF960003063E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF803C6801B74 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PlugPlay - 0xFFFFF880013C0FC0 - C:\Windows\System32\drivers\partmgr.sys - Microsoft Corporation
       PlugPlay - 0xFFFFF88001223540 - C:\Windows\System32\drivers\spaceport.sys - Microsoft Corporation
       FsNotifyChange - 0xFFFFF880020A8EF0 - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       PriorityCallback - 0xFFFFF880014D8B10 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       PriorityCallback - 0xFFFFF880014D8B10 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF803C678AAD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF803C64155F4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF803C63CAD30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF803C63CAD30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF803C63CAD30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF803C63CAD30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF803C63CAD30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF803C63CAD30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF803C63CAD30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF880013A7E08 - C:\Windows\system32\drivers\pdc.sys - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF88002212D8C - C:\Windows\System32\drivers\UsbHub3.sys - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF88002212D8C - C:\Windows\System32\drivers\UsbHub3.sys - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF88002212D8C - C:\Windows\System32\drivers\UsbHub3.sys - Microsoft Corporation
       PowerSettingCallback - 0xFFFFF88002212D8C - C:\Windows\System32\drivers\UsbHub3.sys - Microsoft Corporation
       CoalescingCallback - 0xFFFFF803C63DF10C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CoalescingCallback - 0xFFFFF880022C1E00 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       CoalescingCallback - 0xFFFFF803C62E4DA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CoalescingCallback - 0xFFFFF803C63E1EFC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation

==========================================================================================

Filter

       File - \FileSystem\FltMgr->\FileSystem\Ntfs - 0xFFFFFA8004D1C740[] - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       Disk - \Driver\partmgr->\Driver\disk - 0xFFFFFA80049A3B10[] - C:\Windows\System32\drivers\partmgr.sys - Microsoft Corporation
       Raw - \FileSystem\FltMgr->\FileSystem\RAW - 0xFFFFFA8004368B50[] - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       Raw - \FileSystem\FltMgr->\FileSystem\RAW - 0xFFFFFA8004368040[] - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       Volume - \Driver\fvevol->\Driver\volmgr - 0xFFFFFA8004997040[] - C:\Windows\System32\DRIVERS\fvevol.sys - Microsoft Corporation
       Volume - \Driver\rdyboost->\Driver\fvevol - 0xFFFFFA8004999040[] - C:\Windows\System32\drivers\rdyboost.sys - Microsoft Corporation
       Volume - \Driver\volsnap->\Driver\rdyboost - 0xFFFFFA8004996040[] - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
       PnpManager - \Driver\rdpbus->\Driver\PnpManager - 0xFFFFFA8004CB2630[RdpBus] - C:\Windows\System32\drivers\rdpbus.sys - Microsoft Corporation
       PnpManager - \Driver\dtsoftbus01->\Driver\PnpManager - 0xFFFFFA8004CDCA20[] - C:\Windows\System32\drivers\dtsoftbus01.sys - DT Soft Ltd
       PnpManager - \Driver\swenum->\Driver\PnpManager - 0xFFFFFA8004C91E30[] - C:\Windows\System32\drivers\swenum.sys - Microsoft Corporation
       PnpManager - \Driver\mssmbios->\Driver\PnpManager - 0xFFFFFA8004CBECF0[] - C:\Windows\System32\drivers\mssmbios.sys - Microsoft Corporation
       PnpManager - \Driver\RasPppoe->\Driver\PnpManager - 0xFFFFFA8004C8E050[NDMP12] - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       PnpManager - \Driver\Rasl2tp->\Driver\PnpManager - 0xFFFFFA8004C90050[NDMP11] - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       PnpManager - \Driver\NdisWan->\Driver\PnpManager - 0xFFFFFA8004C92050[NDMP10] - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       PnpManager - \Driver\tunnel->\Driver\PnpManager - 0xFFFFFA8004C94050[NDMP9] - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       PnpManager - \Driver\PptpMiniport->\Driver\PnpManager - 0xFFFFFA8004C96050[NDMP8] - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       PnpManager - \Driver\BasicRender->\Driver\PnpManager - 0xFFFFFA800530E040[] - C:\Windows\System32\drivers\BasicRender.sys - Microsoft Corporation
       PnpManager - \Driver\ACPI_HAL->\Driver\PnpManager - 0xFFFFFA80036C2B70[] -  - 
       PnpManager - \Driver\umbus->\Driver\PnpManager - 0xFFFFFA8004C69E10[] - C:\Windows\System32\drivers\umbus.sys - Microsoft Corporation
       PnpManager - \Driver\NdisWan->\Driver\PnpManager - 0xFFFFFA8004C7E050[NDMP5] - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       PnpManager - \Driver\spaceport->\Driver\PnpManager - 0xFFFFFA80043316B0[Spaceport] - C:\Windows\System32\drivers\spaceport.sys - Microsoft Corporation
       PnpManager - \Driver\vdrvroot->\Driver\PnpManager - 0xFFFFFA8004312040[] - C:\Windows\System32\drivers\vdrvroot.sys - Microsoft Corporation
       PnpManager - \Driver\CompositeBus->\Driver\PnpManager - 0xFFFFFA8004C6EA80[] - C:\Windows\System32\drivers\CompositeBus.sys - Microsoft Corporation
       PnpManager - \Driver\tunnel->\Driver\PnpManager - 0xFFFFFA8004590050[NDMP4] - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       PnpManager - \Driver\RasAgileVpn->\Driver\PnpManager - 0xFFFFFA8004592050[NDMP3] - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       PnpManager - \Driver\RasSstp->\Driver\PnpManager - 0xFFFFFA8004594050[NDMP2] - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       PnpManager - \Driver\NdisWan->\Driver\PnpManager - 0xFFFFFA8004596050[NDMP1] - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       PnpManager - \Driver\BasicDisplay->\Driver\PnpManager - 0xFFFFFA8004BC9040[] - C:\Windows\System32\drivers\BasicDisplay.sys - Microsoft Corporation
       PnpManager - \Driver\volmgr->\Driver\PnpManager - 0xFFFFFA8004330640[VolMgrControl] - C:\Windows\System32\drivers\volmgr.sys - Microsoft Corporation

==========================================================================================

DPC Timer

       0xFFFFF803C65695A0 - 0xFFFFF803C63A020C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFF880013446A0 - 0xFFFFF880012DC360 - C:\Windows\System32\Drivers\cng.sys - Microsoft Corporation
       0xFFFFF803C6516DE0 - 0xFFFFF803C62C381C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFF803C651BF00 - 0xFFFFF803C62DE980 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFF88004779E48 - 0xFFFFF8800475A64C - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFF803C65694E0 - 0xFFFFF803C62AE038 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFF880022F1678 - 0xFFFFF8800229A5B0 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       0xFFFFF803C6513EE0 - 0xFFFFF803C64422F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFFA8004C9C278 - 0xFFFFF880020F0258 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004BED148 - 0xFFFFF88004465980 - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       0xFFFFF880022F1760 - 0xFFFFF88002291BF0 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       0xFFFFF880028845C0 - 0xFFFFF88002737484 - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFF803C650C070 - 0xFFFFF803C62A13A4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFFA80036C2560 - 0xFFFFF803C62A1390 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFF88000D9C720 - 0xFFFFF88000D97F54 - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       0xFFFFF803C6513F20 - 0xFFFFF803C628CCE4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFF88002027250 - 0xFFFFF88002002D68 - C:\Windows\System32\drivers\rdyboost.sys - Microsoft Corporation
       0xFFFFF803C625B0E0 - 0xFFFFF803C6239960 - C:\Windows\system32\hal.dll - Microsoft Corporation
       0xFFFFF803C655C530 - 0xFFFFF803C62B7384 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFFA8004A30140 - 0xFFFFF88001C1D0F0 - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
       0xFFFFFA8004929C58 - 0xFFFFF8800109A330 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       0xFFFFF803C6513DE0 - 0xFFFFF803C63D72CC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFF88004A084E0 - 0xFFFFF88004A04410 - C:\Windows\System32\Drivers\dfsc.sys - Microsoft Corporation
       0xFFFFF803C656AEC0 - 0xFFFFF803C62A1070 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFFA8004FCA0D0 - 0xFFFFF88004B8B330 - C:\Windows\System32\DRIVERS\netbt.sys - Microsoft Corporation
       0xFFFFFA8004405480 - 0xFFFFF88002075700 - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       0xFFFFF803C6513DA0 - 0xFFFFF803C628EA5C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFFA8004CE7B90 - 0xFFFFF880020F0664 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CE5BA8 - 0xFFFFF88002134FF4 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005273190 - 0xFFFFF880072C00C8 - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FF3690 - 0xFFFFF880072C00C8 - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052641A0 - 0xFFFFF880072C00C8 - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA800528B1A0 - 0xFFFFF880072C00C8 - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8003686460 - 0xFFFFF88001F79440 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       0xFFFFFA8003683460 - 0xFFFFF88001F79440 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       0xFFFFFA8003680460 - 0xFFFFF88001F79440 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       0xFFFFFA800367D460 - 0xFFFFF88001F79440 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       0xFFFFF803C657F7F8 - 0xFFFFF803C62E0690 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFF880009CC7F8 - 0xFFFFF803C62E0690 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFF803C65698E0 - 0xFFFFF803C62F4040 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFFA8004FD17F0 - 0xFFFFF880072C00C8 - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004C65960 - 0xFFFFF880047DCE34 - C:\Windows\System32\drivers\HECIx64.sys - Intel Corporation
       0xFFFFFA800499F090 - 0xFFFFF88001C03B70 - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
       0xFFFFFA8004995EA0 - 0xFFFFF88001C03B70 - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation
       0xFFFFF88002093680 - 0xFFFFF88002071D10 - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       0xFFFFFA8004C98278 - 0xFFFFF880020F0258 - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F0D348 - 0xFFFFF8800109A330 - C:\Windows\system32\drivers\Wdf01000.sys - Microsoft Corporation
       0xFFFFF803C656AD00 - 0xFFFFF803C6385130 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       0xFFFFFA8003679B40 - 0xFFFFF8800253CCC0 - C:\Windows\System32\drivers\USBPORT.SYS - Microsoft Corporation
       0xFFFFFA8003676B40 - 0xFFFFF8800253CCC0 - C:\Windows\System32\drivers\USBPORT.SYS - Microsoft Corporation
       0xFFFFFA8004A339E0 - 0xFFFFF88001C03B70 - C:\Windows\System32\drivers\volsnap.sys - Microsoft Corporation

==========================================================================================

Worker Thread

       CriticalWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CriticalWorkQueue - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DelayedWorkQueue - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation

==========================================================================================

HalDispatchTable

       0 - 0xFFFFF803C626F38C - HaliQuerySystemInformation - C:\Windows\system32\hal.dll
       1 - 0xFFFFF803C6273060 - HalpSetSystemInformation - C:\Windows\system32\hal.dll
       2 - 0xFFFFF803C6852254 - xHalAllocatePmcCounterSet - C:\Windows\system32\ntoskrnl.exe
       3 - 0x0000000000000000 - - - 
       4 - 0xFFFFF803C6287090 - HalExamineMBR - C:\Windows\system32\ntoskrnl.exe
       5 - 0xFFFFF803C65FE7D0 - IoReadPartitionTable - C:\Windows\system32\ntoskrnl.exe
       6 - 0xFFFFF803C65FEEBC - IoSetPartitionInformation - C:\Windows\system32\ntoskrnl.exe
       7 - 0xFFFFF803C67C8710 - IoWritePartitionTable - C:\Windows\system32\ntoskrnl.exe
       8 - 0xFFFFF803C62AA0F0 - MiInitializeCombining - C:\Windows\system32\ntoskrnl.exe
       9 - 0xFFFFF803C62E4DA0 - xHalReferenceHandler - C:\Windows\system32\ntoskrnl.exe
       10 - 0xFFFFF803C62E4DA0 - xHalReferenceHandler - C:\Windows\system32\ntoskrnl.exe
       11 - 0xFFFFF803C626F868 - HaliInitPnpDriver - C:\Windows\system32\hal.dll
       12 - 0xFFFFF803C6272BFC - HaliInitPowerManagement - C:\Windows\system32\hal.dll
       13 - 0xFFFFF803C621FD70 - HaliGetDmaAdapter - C:\Windows\system32\hal.dll
       14 - 0xFFFFF803C626F30C - HaliGetInterruptTranslator - C:\Windows\system32\hal.dll
       15 - 0xFFFFF803C6852254 - MmChannelPowerRequest - C:\Windows\system32\ntoskrnl.exe
       16 - 0xFFFFF803C62D7AF0 - xHalRequestInterrupt - C:\Windows\system32\ntoskrnl.exe
       17 - 0xFFFFF803C62D7AF0 - ext_ms_win_ntos_ksigningpolicy_l1_1_0_SeQuerySigningPolicyExt - C:\Windows\system32\ntoskrnl.exe
       18 - 0xFFFFF803C6273058 - HalpEndOfBoot - C:\Windows\system32\hal.dll
       19 - 0xFFFFF803C62D7AF0 - HalAcpiGetTableDispatch - C:\Windows\system32\ntoskrnl.exe
       20 - 0xFFFFF803C621D310 - HaliSetPciErrorHandlerCallback - C:\Windows\system32\hal.dll

==========================================================================================

HalPrivateDispatchTable

       0 - 0xFFFFF803C62AA0F0 - xHalHandlerForBus - C:\Windows\system32\ntoskrnl.exe
       1 - 0xFFFFF803C62AA0F0 - xHalHandlerForBus - C:\Windows\system32\ntoskrnl.exe
       2 - 0xFFFFF803C6268C60 - HaliLocateHiberRanges - C:\Windows\system32\hal.dll
       3 - 0xFFFFF803C6852254 - xHalRegisterBusHandler - C:\Windows\system32\ntoskrnl.exe
       4 - 0x0000000000000000 - - - 
       5 - 0xFFFFF803C6268998 - HaliSetWakeAlarm - C:\Windows\system32\hal.dll
       6 - 0xFFFFF88000C87794 - xHalTranslateBusAddress - C:\Windows\System32\drivers\pci.sys
       7 - 0xFFFFF88000CB2F70 - xHalTranslateBusAddress - C:\Windows\System32\drivers\pci.sys
       8 - 0xFFFFF803C623434C - HaliHaltSystem - C:\Windows\system32\hal.dll
       9 - 0xFFFFF803C623F20C - HalpFindBusAddressTranslation - C:\Windows\system32\hal.dll
       10 - 0xFFFFF803C623B420 - HalpBiosDisplayReset - C:\Windows\system32\hal.dll
       11 - 0xFFFFF803C626D01C - HalpAllocateMapRegisters - C:\Windows\system32\hal.dll
       12 - 0xFFFFF803C6276C40 - HalpKdSetupDebuggingDevice - C:\Windows\system32\hal.dll
       13 - 0xFFFFF803C624DDE8 - HalpKdReleaseDebuggingDevice - C:\Windows\system32\hal.dll
       14 - 0xFFFFF803C621D3B0 - HalAcpiGetTable - C:\Windows\system32\hal.dll
       15 - 0xFFFFF803C62343F0 - HalpCheckPowerButton - C:\Windows\system32\hal.dll
       16 - 0xFFFFF803C6399164 - xHalVectorToIDTEntry - C:\Windows\system32\ntoskrnl.exe
       17 - 0xFFFFF803C62333E4 - HalpMapPhysicalMemoryWriteThrough64 - C:\Windows\system32\hal.dll
       18 - 0xFFFFF803C623354C - HalpUnmapVirtualAddress - C:\Windows\system32\hal.dll
       19 - 0xFFFFF803C624DEC8 - HalpKdReadPCIConfig - C:\Windows\system32\hal.dll
       20 - 0xFFFFF803C624DF68 - HalpKdWritePCIConfig - C:\Windows\system32\hal.dll
       21 - 0xFFFFF880011E00D4 - xHalGetInterruptVector - C:\Windows\System32\drivers\ACPI.sys
       22 - 0xFFFFF8800119341C - xHalGetVectorInput - C:\Windows\System32\drivers\ACPI.sys
       23 - 0xFFFFF803C62717DC - HalpLoadMicrocode - C:\Windows\system32\hal.dll
       24 - 0xFFFFF803C62718BC - HalpUnloadMicrocode - C:\Windows\system32\hal.dll
       25 - 0xFFFFF803C6234D08 - HalpMcUpdatePostUpdate - C:\Windows\system32\hal.dll
       26 - 0xFFFFF880011DFA50 - xHalAllocateMessageTarget - C:\Windows\System32\drivers\ACPI.sys
       27 - 0xFFFFF880011DFCC4 - xKdUnmapVirtualAddress - C:\Windows\System32\drivers\ACPI.sys
       28 - 0xFFFFF803C6271D90 - HalpDpReplaceBegin - C:\Windows\system32\hal.dll
       29 - 0xFFFFF803C6269134 - HalpDpReplaceTarget - C:\Windows\system32\hal.dll
       30 - 0xFFFFF803C6269240 - HalpDpReplaceControl - C:\Windows\system32\hal.dll
       31 - 0xFFFFF803C6271FB8 - HalpDpReplaceEnd - C:\Windows\system32\hal.dll
       32 - 0xFFFFF803C623C838 - HalpPrepareForBugcheck - C:\Windows\system32\hal.dll
       33 - 0xFFFFF803C6239908 - HalpTimerQueryWakeTime - C:\Windows\system32\hal.dll
       34 - 0xFFFFF803C624204C - HalpTimerReportIdleStateUsage - C:\Windows\system32\hal.dll
       35 - 0xFFFFF803C6240DD8 - HalpTscSynchronization - C:\Windows\system32\hal.dll
       36 - 0xFFFFF803C6246D40 - HalpWheaInitProcessorGenericSection - C:\Windows\system32\hal.dll
       37 - 0xFFFFF803C6269BD0 - HalStopLegacyUsbInterrupts - C:\Windows\system32\hal.dll
       38 - 0xFFFFF803C6247A7C - HalpReadWheaPhysicalMemory - C:\Windows\system32\hal.dll
       39 - 0xFFFFF803C6247AA0 - HalpWriteWheaPhysicalMemory - C:\Windows\system32\hal.dll
       40 - 0xFFFFF803C624E4A0 - HalpInterruptMaskLevelTriggeredLines - C:\Windows\system32\hal.dll
       41 - 0xFFFFF803C624E5BC - HalpInterruptUnmaskLevelTriggeredLines - C:\Windows\system32\hal.dll
       42 - 0xFFFFF803C62698C4 - HalpDpGetInterruptReplayState - C:\Windows\system32\hal.dll
       43 - 0xFFFFF803C6269964 - HalpDpReplayInterrupts - C:\Windows\system32\hal.dll
       44 - 0xFFFFF803C632CC68 - xHalQueryIoPortAccessSupported - C:\Windows\system32\ntoskrnl.exe
       45 - 0xFFFFF803C6276C40 - HalpKdSetupDebuggingDevice - C:\Windows\system32\hal.dll
       46 - 0xFFFFF803C624DDE8 - HalpKdReleaseDebuggingDevice - C:\Windows\system32\hal.dll
       47 - 0x0000000000000000 - - - 
       48 - 0xFFFFF803C62335F4 - HalpAllocateEarlyPages - C:\Windows\system32\hal.dll
       49 - 0xFFFFF803C62333C4 - HalpMapEarlyPages - C:\Windows\system32\hal.dll
       50 - 0xFFFFF803C6237DDC - HalpTimerGetClockOwner - C:\Windows\system32\hal.dll
       51 - 0xFFFFF803C6237F60 - HalpTimerGetClockConfiguration - C:\Windows\system32\hal.dll
       52 - 0xFFFFF803C6236224 - HalpTimerNotifyProcessorFreeze - C:\Windows\system32\hal.dll
       53 - 0xFFFFF803C6237840 - HalpTimerPrepareProcessorForIdle - C:\Windows\system32\hal.dll
       54 - 0xFFFFF803C623AF50 - xHalPrepareForBugcheck - C:\Windows\system32\hal.dll
       55 - 0xFFFFF803C6237B80 - HalpTimerResumeProcessorFromIdle - C:\Windows\system32\hal.dll
       56 - 0x0000000000000000 - - - 
       57 - 0xFFFFF803C63E584C - xHalVectorToIDTEntryEx - C:\Windows\system32\ntoskrnl.exe
       58 - 0xFFFFF803C626E89C - HalpSecondaryInterruptQueryPrimaryInformation - C:\Windows\system32\hal.dll
       59 - 0xFFFFF803C622B400 - HalpMaskInterrupt - C:\Windows\system32\hal.dll
       60 - 0xFFFFF803C622B514 - HalpUnmaskInterrupt - C:\Windows\system32\hal.dll
       61 - 0xFFFFF803C6230CAC - HalpIsInterruptTypeSecondary - C:\Windows\system32\hal.dll
       62 - 0xFFFFF803C6230C40 - HalpAllocateGsivForSecondaryInterrupt - C:\Windows\system32\hal.dll
       63 - 0xFFFFF803C626E6B0 - HaliAddInterruptRemapping - C:\Windows\system32\hal.dll
       64 - 0xFFFFF803C626E700 - HaliRemoveInterruptRemapping - C:\Windows\system32\hal.dll
       65 - 0xFFFFF803C623C91C - HalpSaveAndDisableEnlightenment - C:\Windows\system32\hal.dll
       66 - 0xFFFFF803C623CB18 - HalpRestoreHvEnlightenment - C:\Windows\system32\hal.dll
       67 - 0xFFFFF803C62E4DA0 - _ext_ms_win_ntos_tm_l1_1_0_TmGetTransactionId - C:\Windows\system32\ntoskrnl.exe
       68 - 0xFFFFF803C62E4DA0 - xHalPrepareForBugcheck - C:\Windows\system32\ntoskrnl.exe
       69 - 0xFFFFF88000C8427C - xHalPciEarlyRestore - C:\Windows\System32\drivers\pci.sys
       70 - 0xFFFFF803C622DFE4 - HalpInterruptGetLocalIdentifier - C:\Windows\system32\hal.dll
       71 - 0xFFFFF803C622A67C - HalpAllocatePmcCounterSet - C:\Windows\system32\hal.dll
       72 - 0xFFFFF803C622A900 - HalpCollectPmcCounters - C:\Windows\system32\hal.dll
       73 - 0xFFFFF803C622A964 - HalpFreePmcCounterSet - C:\Windows\system32\hal.dll
       74 - 0xFFFFF803C63E5834 - xHalProcessorHalt - C:\Windows\system32\ntoskrnl.exe
       75 - 0xFFFFF803C6234D8C - HalpTimerQueryCycleCounter - C:\Windows\system32\hal.dll
       76 - 0xFFFFF803C6237DE4 - HalpTimerGetNextTickDuration - C:\Windows\system32\hal.dll
       77 - 0xFFFFF88000C8A3F4 - HalPciMarkHiberPhase - C:\Windows\System32\drivers\pci.sys
       78 - 0xFFFFF803C62323A0 - HalpInterruptQueryProcessorRestartEntryPoint - C:\Windows\system32\hal.dll
       79 - 0xFFFFF803C622E510 - HalpInterruptRequestInterrupt - C:\Windows\system32\hal.dll
       80 - 0xFFFFF803C622AC50 - HalpInterruptEnumerateUnmaskedInterrupts - C:\Windows\system32\hal.dll
       81 - 0xFFFFF803C62E4DA0 - ext_ms_win_ntos_tm_l1_1_0_TmGetTransactionId - C:\Windows\system32\ntoskrnl.exe
       82 - 0xFFFFF803C62750F0 - HalpKdEnumerateDebuggingDevices - C:\Windows\system32\hal.dll
       83 - 0xFFFFF803C62E4DA0 - xHalFlushIoRectangleExternalCache - C:\Windows\system32\ntoskrnl.exe
       84 - 0xFFFFF803C62347F4 - HalpPowerEarlyRestore - C:\Windows\system32\hal.dll
       85 - 0xFFFFF803C6229E68 - HalpQueryCapsuleCapabilities - C:\Windows\system32\hal.dll
       86 - 0xFFFFF803C6229F48 - HalpUpdateCapsule - C:\Windows\system32\hal.dll
       87 - 0xFFFFF88000C86664 - xHalPciMultiStageResumeCapable - C:\Windows\System32\drivers\pci.sys
       88 - 0xFFFFF803C621F830 - HalpDmaFreeCrashDumpRegisters - C:\Windows\system32\hal.dll
       89 - 0xFFFFF803C62728B0 - HalpAcpiAoacCapable - C:\Windows\system32\hal.dll

==========================================================================================

HalAcpiDispatchTable

       KeFlushWriteBuffer - 0xFFFFF803C623EF80 - - - 0xFFFFF803C623EF80 - C:\Windows\system32\hal.dll
       HaliAcpiMachineStateInit - 0xFFFFF803C62728BC - - - 0xFFFFF803C62728BC - C:\Windows\system32\hal.dll
       HaliAcpiQueryFlags - 0xFFFFF803C6272BF4 - - - 0xFFFFF803C6272BF4 - C:\Windows\system32\hal.dll
       HalpInterruptIsPicStateIntact - 0xFFFFF803C62672F8 - - - 0xFFFFF803C62672F8 - C:\Windows\system32\hal.dll
       HalpInterruptRestoreAllControllerState - 0xFFFFF803C626777C - - - 0xFFFFF803C626777C - C:\Windows\system32\hal.dll
       HaliPciInterfaceReadConfig - 0xFFFFF803C623FFAC - - - 0xFFFFF803C623FFAC - C:\Windows\system32\hal.dll
       HaliPciInterfaceWriteConfig - 0xFFFFF803C6240058 - - - 0xFFFFF803C6240058 - C:\Windows\system32\hal.dll
       HalpInterruptGetApicVersion - 0xFFFFF803C622AC0C - - - 0xFFFFF803C622AC0C - C:\Windows\system32\hal.dll
       HaliSetMaxLegacyPciBusNumber - 0xFFFFF803C623FC10 - - - 0xFFFFF803C623FC10 - C:\Windows\system32\hal.dll
       HalpInterruptIsGsiValid - 0xFFFFF803C626E698 - - - 0xFFFFF803C626E698 - C:\Windows\system32\hal.dll
       HalAcpiGetTableDispatch - 0xFFFFF803C621D310 - - - 0xFFFFF803C621D310 - C:\Windows\system32\hal.dll
       HalAcpiGetRsdpDispatch - 0xFFFFF803C621D368 - - - 0xFFFFF803C621D368 - C:\Windows\system32\hal.dll
       HalAcpiGetFacsMappingDispatch - 0xFFFFF803C621D370 - - - 0xFFFFF803C621D370 - C:\Windows\system32\hal.dll
       HalAcpiGetAllTablesDispatch - 0xFFFFF803C621D378 - - - 0xFFFFF803C621D378 - C:\Windows\system32\hal.dll
       HalpAcpiPmRegisterAvailable - 0xFFFFF803C624DA3C - - - 0xFFFFF803C624DA3C - C:\Windows\system32\hal.dll
       HalpAcpiPmRegisterRead - 0xFFFFF803C624DB48 - - - 0xFFFFF803C624DB48 - C:\Windows\system32\hal.dll
       HalpAcpiPmRegisterWrite - 0xFFFFF803C624DBA0 - - - 0xFFFFF803C624DBA0 - C:\Windows\system32\hal.dll

==========================================================================================

HalSubComponents

       0 - 0xFFFFF803C626B99C - HalpAcpiInitSystem - C:\Windows\system32\hal.dll
       1 - 0xFFFFF803C626BFC8 - HalpDbgInitSystem - C:\Windows\system32\hal.dll
       2 - 0xFFFFF803C626906C - HalpDiagInitSystem - C:\Windows\system32\hal.dll
       3 - 0xFFFFF803C626C098 - HalpDmaInitSystem - C:\Windows\system32\hal.dll
       4 - 0xFFFFF803C6269084 - HalpDpInitSystem - C:\Windows\system32\hal.dll
       5 - 0xFFFFF803C62699BC - HalpErrataInitSystem - C:\Windows\system32\hal.dll
       6 - 0xFFFFF803C62670F8 - HalpFirmwareInitSystem - C:\Windows\system32\hal.dll
       7 - 0xFFFFF803C6267130 - HalpHalExtInitSystem - C:\Windows\system32\hal.dll
       8 - 0xFFFFF803C626A47C - HalpHvInitSystem - C:\Windows\system32\hal.dll
       9 - 0xFFFFF803C6267140 - HalpHwPerfCntInitSystem - C:\Windows\system32\hal.dll
       10 - 0xFFFFF803C62677E4 - HalpInterruptInitSystem - C:\Windows\system32\hal.dll
       11 - 0xFFFFF803C6267918 - HalpMiscInitSystem - C:\Windows\system32\hal.dll
       12 - 0xFFFFF803C6267A00 - HalpMmInitSystem - C:\Windows\system32\hal.dll
       13 - 0xFFFFF803C626A8DC - HalpPciInitSystem - C:\Windows\system32\hal.dll
       14 - 0xFFFFF803C6267E40 - HalpPnpInitSystem - C:\Windows\system32\hal.dll
       15 - 0xFFFFF803C6267F10 - HalpPowerInitSystem - C:\Windows\system32\hal.dll
       16 - 0xFFFFF803C6269024 - HalpProcInitSystem - C:\Windows\system32\hal.dll
       17 - 0xFFFFF803C6235304 - HalpTimerInitSystem - C:\Windows\system32\hal.dll
       18 - 0xFFFFF803C626B940 - HalpWheaInitSystem - C:\Windows\system32\hal.dll

==========================================================================================

Filter

       [0xFFFFFA8005312460]FilterUnload - 0xFFFFF880073EE760 - C:\Windows\System32\drivers\npsvctrig.sys
       [0xFFFFFA8005312460]InstanceSetup - 0xFFFFF880073EE978 - C:\Windows\System32\drivers\npsvctrig.sys
       [0xFFFFFA8005312460]InstanceTeardownStart - 0xFFFFF880073EEAC4 - C:\Windows\System32\drivers\npsvctrig.sys
       [0xFFFFFA8005312460]OldDriverUnload - 0xFFFFF880073EE3CC - C:\Windows\System32\drivers\npsvctrig.sys
       [0xFFFFFA8005312460]IRP_MJ_CREATE PostFun - 0xFFFFF880073EEBA0 - C:\Windows\System32\drivers\npsvctrig.sys
       [0xFFFFFA8005312460]IRP_MJ_CREATE_NAMED_PIPE PostFun - 0xFFFFF880073EECF4 - C:\Windows\System32\drivers\npsvctrig.sys
       [0xFFFFFA8005312460]IRP_MJ_FILE_SYSTEM_CONTROL PostFun - 0xFFFFF880073EA380 - C:\Windows\System32\drivers\npsvctrig.sys
       [0xFFFFFA8004367010]FilterUnload - 0xFFFFF880020DACC0 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_CREATE PreFun - 0xFFFFF880020D44EC - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_CREATE PostFun - 0xFFFFF880020D423C - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_CLEANUP PreFun - 0xFFFFF880020D4BA0 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_CLEANUP PostFun - 0xFFFFF880020D4AC8 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_CLOSE PreFun - 0xFFFFF880020D4A48 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_CLOSE PostFun - 0xFFFFF880020CF670 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_READ PreFun - 0xFFFFF880020CE0C0 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_READ PostFun - 0xFFFFF880020CE360 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_WRITE PreFun - 0xFFFFF880020CE0C0 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_WRITE PostFun - 0xFFFFF880020CE360 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_SET_INFORMATION PreFun - 0xFFFFF880020CE520 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_SET_INFORMATION PostFun - 0xFFFFF880020CEE98 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_FILE_SYSTEM_CONTROL PreFun - 0xFFFFF880020D4BCC - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_FILE_SYSTEM_CONTROL PostFun - 0xFFFFF880020CF34C - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_FLUSH_BUFFERS PreFun - 0xFFFFF880020D41F8 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_FLUSH_BUFFERS PostFun - 0xFFFFF880020CF670 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_DIRECTORY_CONTROL PreFun - 0xFFFFF880020D60D8 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_DIRECTORY_CONTROL PostFun - 0xFFFFF880020CF670 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_QUERY_INFORMATION PreFun - 0xFFFFF880020CE860 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_QUERY_INFORMATION PostFun - 0xFFFFF880020CF670 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_PNP_POWER PreFun - 0xFFFFF880020D8988 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_PNP_POWER PostFun - 0xFFFFF880020CF660 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_MDL_READ PreFun - 0xFFFFF880020CEE5C - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_MDL_READ PostFun - 0xFFFFF880020CF670 - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_MDL_WRITE_COMPLETE PreFun - 0xFFFFF880020CEE5C - C:\Windows\System32\drivers\fileinfo.sys
       [0xFFFFFA8004367010]IRP_MJ_MDL_WRITE_COMPLETE PostFun - 0xFFFFF880020CF670 - C:\Windows\System32\drivers\fileinfo.sys

==========================================================================================

File System

       Disk - 0xFFFFFA8004588E30 - ReFSRecognizer - 0xFFFFFA800458A5A0 - \FileSystem\Fs_Rec
       Disk - 0xFFFFFA8004588060 - ExFatRecognizer - 0xFFFFFA800458A5A0 - \FileSystem\Fs_Rec
       Disk - 0xFFFFFA8004589560 - FatDiskRecognizer - 0xFFFFFA800458A5A0 - \FileSystem\Fs_Rec
       Disk - 0xFFFFFA8004589790 - UdfsDiskRecognizer - 0xFFFFFA800458A5A0 - \FileSystem\Fs_Rec
       Disk - 0xFFFFFA8004367580 - Ntfs - 0xFFFFFA80043677A0 - \FileSystem\Ntfs
       Disk - 0xFFFFFA8003BB4210 - RawDisk - 0xFFFFFA8003BB4430 - \FileSystem\RAW
       Network - 0xFFFFFA8004A0EDA0 - Mup - 0xFFFFFA80049AF270 - \FileSystem\Mup
       CdRom - 0xFFFFFA8004589330 - FatCdRomRecognizer - 0xFFFFFA800458A5A0 - \FileSystem\Fs_Rec
       CdRom - 0xFFFFFA80045899C0 - UdfsCdRomRecognizer - 0xFFFFFA800458A5A0 - \FileSystem\Fs_Rec
       CdRom - 0xFFFFFA8004589BF0 - CdfsRecognizer - 0xFFFFFA800458A5A0 - \FileSystem\Fs_Rec
       CdRom - 0xFFFFFA8003BB3060 - RawCdRom - 0xFFFFFA8003BB4430 - \FileSystem\RAW
       Tape - 0xFFFFFA8003BB3E40 - RawTape - 0xFFFFFA8003BB4430 - \FileSystem\RAW

==========================================================================================

Sfilter FileSystem Filter Callback

       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PreAcquireForSectionSynchronization - 0xFFFFF880020711F0 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PostAcquireForSectionSynchronization - 0xFFFFF880020713A0 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PreReleaseForSectionSynchronization - 0xFFFFF880020711F0 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PostReleaseForSectionSynchronization - 0xFFFFF880020713A0 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PreAcquireForCcFlush - 0xFFFFF880020711F0 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PostAcquireForCcFlush - 0xFFFFF880020713A0 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PreReleaseForCcFlush - 0xFFFFF880020711F0 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PostReleaseForCcFlush - 0xFFFFF880020713A0 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PreAcquireForModifiedPageWriter - 0xFFFFF880020711F0 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PostAcquireForModifiedPageWriter - 0xFFFFF880020713A0 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PreReleaseForModifiedPageWriter - 0xFFFFF880020711F0 - C:\Windows\system32\drivers\fltmgr.sys
       \FileSystem\FltMgr - 0xFFFFFA800440BCD0 - PostReleaseForModifiedPageWriter - 0xFFFFF880020713A0 - C:\Windows\system32\drivers\fltmgr.sys

==========================================================================================

ClassInitData Callback

       Disk FdoData.ClassError - OK - 0xFFFFF88000A7C040 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassReadWriteVerification - OK - 0xFFFFF88000A7C240 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassDeviceControl - OK - 0xFFFFF88000A7C850 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassShutdownFlush - OK - 0xFFFFF88000A7C320 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassInitDevice - OK - 0xFFFFF88000A88280 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassStartDevice - OK - 0xFFFFF88000A87EF0 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassPowerDevice - OK - 0xFFFFF880014DA1C0 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       Disk FdoData.ClassStopDevice - OK - 0xFFFFF88000A7F6EC - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassRemoveDevice - OK - 0xFFFFF88000A8C130 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassQueryWmiRegInfo - OK - 0xFFFFF88000A87E30 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassQueryWmiDataBlock - OK - 0xFFFFF88000A8BB34 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassSetWmiDataBlock - OK - 0xFFFFF88000A8B1F0 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassSetWmiDataItem - OK - 0xFFFFF88000A8B384 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassExecuteWmiMethod - OK - 0xFFFFF88000A8B464 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk FdoData.ClassWmiInfo.ClassWmiFunctionControl - OK - 0xFFFFF88000A8B958 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk ClassAddDevice - OK - 0xFFFFF88000A888C0 - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation
       Disk ClassUnload - OK - 0xFFFFF88000A8AB6C - C:\Windows\System32\drivers\disk.sys - Microsoft Corporation

==========================================================================================

System Debug

       KiDebugRoutine OK - 0xFFFFF803C63F63D4 - 0xFFFFF803C63F63D4 - C:\Windows\system32\ntoskrnl.exe

==========================================================================================

Object Hijack

       Nothing

==========================================================================================

Direct IO

       Nothing

==========================================================================================

GDT

       cpu[0] - Selector(0x0002) - Type(Code RE Ac)
       cpu[0] - Selector(0x0003) - Type(Data RW Ac)
       cpu[0] - Selector(0x0004) - Type(Code RE Ac)
       cpu[0] - Selector(0x0005) - Type(Data RW Ac)
       cpu[0] - Selector(0x0006) - Type(Code RE Ac)
       cpu[0] - Selector(0x0008) - Type(T5532 Busy)
       cpu[0] - Selector(0x000A) - Type(Data RW Ac)
       cpu[0] - Selector(0x000C) - Type(Code RE Ac)
       cpu[1] - Selector(0x0002) - Type(Code RE Ac)
       cpu[1] - Selector(0x0003) - Type(Data RW Ac)
       cpu[1] - Selector(0x0004) - Type(Code RE Ac)
       cpu[1] - Selector(0x0005) - Type(Data RW Ac)
       cpu[1] - Selector(0x0006) - Type(Code RE Ac)
       cpu[1] - Selector(0x0008) - Type(T5532 Busy)
       cpu[1] - Selector(0x000A) - Type(Data RW Ac)
       cpu[1] - Selector(0x000C) - Type(Code RE Ac)

==========================================================================================

SSDT

       NtWorkerFactoryWorkerReady - OK - 0xFFFFF803C62E58B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtMapUserPhysicalPagesScatter - OK - 0xFFFFF803C67F83CC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWaitForSingleObject - OK - 0xFFFFF803C66C9E70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCallbackReturn - OK - 0xFFFFF803C62F97B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReadFile - OK - 0xFFFFF803C666F5B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDeviceIoControlFile - OK - 0xFFFFF803C66E8D60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWriteFile - OK - 0xFFFFF803C66E9ED0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRemoveIoCompletion - OK - 0xFFFFF803C66AFC90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReleaseSemaphore - OK - 0xFFFFF803C66557B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReplyWaitReceivePort - OK - 0xFFFFF803C66F32F4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReplyPort - OK - 0xFFFFF803C6694F74 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationThread - OK - 0xFFFFF803C6668C80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetEvent - OK - 0xFFFFF803C66D0F20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtClose - OK - 0xFFFFF803C66CE3E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryObject - OK - 0xFFFFF803C6655C80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationFile - OK - 0xFFFFF803C666E360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenKey - OK - 0xFFFFF803C66C34AC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtEnumerateValueKey - OK - 0xFFFFF803C6691D10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFindAtom - OK - 0xFFFFF803C6667620 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryDefaultLocale - OK - 0xFFFFF803C669F584 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryKey - OK - 0xFFFFF803C667DA40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryValueKey - OK - 0xFFFFF803C6679780 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAllocateVirtualMemory - OK - 0xFFFFF803C66F9070 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationProcess - OK - 0xFFFFF803C66B7650 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWaitForMultipleObjects32 - OK - 0xFFFFF803C6606C60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWriteFileGather - OK - 0xFFFFF803C6617148 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationProcess - OK - 0xFFFFF803C66B02A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateKey - OK - 0xFFFFF803C6691688 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFreeVirtualMemory - OK - 0xFFFFF803C636F910 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtImpersonateClientOfPort - OK - 0xFFFFF803C67F168C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReleaseMutant - OK - 0xFFFFF803C66C9FD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationToken - OK - 0xFFFFF803C667A460 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRequestWaitReplyPort - OK - 0xFFFFF803C6693E88 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryVirtualMemory - OK - 0xFFFFF803C6680D90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenThreadToken - OK - 0xFFFFF803C6682C84 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationThread - OK - 0xFFFFF803C66AD650 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenProcess - OK - 0xFFFFF803C668BD94 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationFile - OK - 0xFFFFF803C666AFB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtMapViewOfSection - OK - 0xFFFFF803C66F1590 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAccessCheckAndAuditAlarm - OK - 0xFFFFF803C66849EC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtUnmapViewOfSection - OK - 0xFFFFF803C66863A8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReplyWaitReceivePortEx - OK - 0xFFFFF803C66F3390 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtTerminateProcess - OK - 0xFFFFF803C66A7ED0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetEventBoostPriority - OK - 0xFFFFF803C6830ABC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReadFileScatter - OK - 0xFFFFF803C660D46C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenThreadTokenEx - OK - 0xFFFFF803C66827C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenProcessTokenEx - OK - 0xFFFFF803C666A3E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryPerformanceCounter - OK - 0xFFFFF803C66FAB80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtEnumerateKey - OK - 0xFFFFF803C665C180 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenFile - OK - 0xFFFFF803C66B91C4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDelayExecution - OK - 0xFFFFF803C66CA0D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryDirectoryFile - OK - 0xFFFFF803C66B9860 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQuerySystemInformation - OK - 0xFFFFF803C66FA030 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenSection - OK - 0xFFFFF803C66F2700 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryTimer - OK - 0xFFFFF803C68396A4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFsControlFile - OK - 0xFFFFF803C6655C10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWriteVirtualMemory - OK - 0xFFFFF803C669BF50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCloseObjectAuditAlarm - OK - 0xFFFFF803C6683DE8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDuplicateObject - OK - 0xFFFFF803C668C440 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryAttributesFile - OK - 0xFFFFF803C6680DF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtClearEvent - OK - 0xFFFFF803C66D0FF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReadVirtualMemory - OK - 0xFFFFF803C66A48B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenEvent - OK - 0xFFFFF803C6683BB8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAdjustPrivilegesToken - OK - 0xFFFFF803C669002C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDuplicateToken - OK - 0xFFFFF803C666EE7C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtContinue - OK - 0xFFFFF803C62FB150 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryDefaultUILanguage - OK - 0xFFFFF803C6733080 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueueApcThread - OK - 0xFFFFF803C664567C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtYieldExecution - OK - 0xFFFFF803C62AB708 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAddAtom - OK - 0xFFFFF803C6837B48 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateEvent - OK - 0xFFFFF803C66E3690 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryVolumeInformationFile - OK - 0xFFFFF803C66EB0D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateSection - OK - 0xFFFFF803C66FBD80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFlushBuffersFile - OK - 0xFFFFF803C6647B2C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtApphelpCacheControl - OK - 0xFFFFF803C66FA478 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateProcessEx - OK - 0xFFFFF803C680808C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateThread - OK - 0xFFFFF803C6808180 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtIsProcessInJob - OK - 0xFFFFF803C6750170 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtProtectVirtualMemory - OK - 0xFFFFF803C66F5E80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQuerySection - OK - 0xFFFFF803C66FC164 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtResumeThread - OK - 0xFFFFF803C66B1C48 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtTerminateThread - OK - 0xFFFFF803C66AF630 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReadRequestData - OK - 0xFFFFF803C67F154C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateFile - OK - 0xFFFFF803C66E3590 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryEvent - OK - 0xFFFFF803C663A68C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWriteRequestData - OK - 0xFFFFF803C67F14C8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenDirectoryObject - OK - 0xFFFFF803C66FD720 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAccessCheckByTypeAndAuditAlarm - OK - 0xFFFFF803C668DF98 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQuerySystemTime - OK - 0xFFFFF803C682E2D8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWaitForMultipleObjects - OK - 0xFFFFF803C66CA770 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationObject - OK - 0xFFFFF803C6650014 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCancelIoFile - OK - 0xFFFFF803C660DAF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtTraceEvent - OK - 0xFFFFF803C62CE210 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPowerInformation - OK - 0xFFFFF803C6688CB4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetValueKey - OK - 0xFFFFF803C665FFD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCancelTimer - OK - 0xFFFFF803C62AD9F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetTimer - OK - 0xFFFFF803C63AFBBC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAcceptConnectPort - OK - 0xFFFFF803C66AAF24 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAccessCheck - OK - 0xFFFFF803C62CC3AC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAccessCheckByType - OK - 0xFFFFF803C62D2420 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAccessCheckByTypeResultList - OK - 0xFFFFF803C6426DF8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAccessCheckByTypeResultListAndAuditAlarm - OK - 0xFFFFF803C681A75C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAccessCheckByTypeResultListAndAuditAlarmByHandle - OK - 0xFFFFF803C681A6AC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAddAtomEx - OK - 0xFFFFF803C66786A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAddBootEntry - OK - 0xFFFFF803C683660C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAddDriverEntry - OK - 0xFFFFF803C6835220 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAdjustGroupsToken - OK - 0xFFFFF803C6642084 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAdjustTokenClaimsAndDeviceGroups - OK - 0xFFFFF803C67C85E8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlertResumeThread - OK - 0xFFFFF803C680A448 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlertThread - OK - 0xFFFFF803C674E6A8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlertThreadByThreadId - OK - 0xFFFFF803C66A4EE4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAllocateLocallyUniqueId - OK - 0xFFFFF803C66EFB30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAllocateReserveObject - OK - 0xFFFFF803C6808A94 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAllocateUserPhysicalPages - OK - 0xFFFFF803C67F7C88 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAllocateUuids - OK - 0xFFFFF803C660E818 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcAcceptConnectPort - OK - 0xFFFFF803C6680224 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcCancelMessage - OK - 0xFFFFF803C6732D80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcConnectPort - OK - 0xFFFFF803C6685D48 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcConnectPortEx - OK - 0xFFFFF803C66916B8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcCreatePort - OK - 0xFFFFF803C6693220 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcCreatePortSection - OK - 0xFFFFF803C6644F30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcCreateResourceReserve - OK - 0xFFFFF803C661C320 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcCreateSectionView - OK - 0xFFFFF803C6645110 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcCreateSecurityContext - OK - 0xFFFFF803C668F5D8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcDeletePortSection - OK - 0xFFFFF803C6644478 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcDeleteResourceReserve - OK - 0xFFFFF803C67F20BC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcDeleteSectionView - OK - 0xFFFFF803C66A5E80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcDeleteSecurityContext - OK - 0xFFFFF803C668F7F8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcDisconnectPort - OK - 0xFFFFF803C66A6004 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcImpersonateClientOfPort - OK - 0xFFFFF803C6682050 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcOpenSenderProcess - OK - 0xFFFFF803C6678234 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcOpenSenderThread - OK - 0xFFFFF803C66A8664 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcQueryInformation - OK - 0xFFFFF803C6685BCC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcQueryInformationMessage - OK - 0xFFFFF803C6637840 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcRevokeSecurityContext - OK - 0xFFFFF803C67F21E8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcSendWaitReceivePort - OK - 0xFFFFF803C66C1940 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAlpcSetInformation - OK - 0xFFFFF803C66884A4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAreMappedFilesTheSame - OK - 0xFFFFF803C660D294 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAssignProcessToJobObject - OK - 0xFFFFF803C6688A48 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtAssociateWaitCompletionPacket - OK - 0xFFFFF803C62EB91C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCancelIoFileEx - OK - 0xFFFFF803C662C6A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCancelSynchronousIoFile - OK - 0xFFFFF803C6724000 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCancelWaitCompletionPacket - OK - 0xFFFFF803C62ADF10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCommitComplete - OK - 0xFFFFF803C63D7660 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCommitEnlistment - OK - 0xFFFFF803C63D766C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCommitTransaction - OK - 0xFFFFF803C628E560 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCompactKeys - OK - 0xFFFFF803C67AE890 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCompareTokens - OK - 0xFFFFF803C6753050 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCompleteConnectPort - OK - 0xFFFFF803C66AAFD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCompressKey - OK - 0xFFFFF803C67AE790 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtConnectPort - OK - 0xFFFFF803C66A07AC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateDebugObject - OK - 0xFFFFF803C67C3C74 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateDirectoryObject - OK - 0xFFFFF803C66F51E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateDirectoryObjectEx - OK - 0xFFFFF803C6750038 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateEnlistment - OK - 0xFFFFF803C628E56C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateEventPair - OK - 0xFFFFF803C6839C28 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateIRTimer - OK - 0xFFFFF803C678F66C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateIoCompletion - OK - 0xFFFFF803C6697400 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateJobObject - OK - 0xFFFFF803C66AB5F8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateJobSet - OK - 0xFFFFF803C6852254 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateKeyTransacted - OK - 0xFFFFF803C66106E4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateKeyedEvent - OK - 0xFFFFF803C67654B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateLowBoxToken - OK - 0xFFFFF803C674F540 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateMailslotFile - OK - 0xFFFFF803C664AAE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateMutant - OK - 0xFFFFF803C66F617C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateNamedPipeFile - OK - 0xFFFFF803C6663384 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreatePagingFile - OK - 0xFFFFF803C6785BFC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreatePort - OK - 0xFFFFF803C67257D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreatePrivateNamespace - OK - 0xFFFFF803C66381C4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateProcess - OK - 0xFFFFF803C6808110 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateProfile - OK - 0xFFFFF803C6839094 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateProfileEx - OK - 0xFFFFF803C6839168 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateResourceManager - OK - 0xFFFFF803C628A210 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateSemaphore - OK - 0xFFFFF803C6698908 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateSymbolicLinkObject - OK - 0xFFFFF803C6650370 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateThreadEx - OK - 0xFFFFF803C66B6C38 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateTimer - OK - 0xFFFFF803C6685A40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateToken - OK - 0xFFFFF803C681AE48 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateTokenEx - OK - 0xFFFFF803C664EE8C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateTransaction - OK - 0xFFFFF803C628E58C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateTransactionManager - OK - 0xFFFFF803C628A220 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateUserProcess - OK - 0xFFFFF803C66A0960 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateWaitCompletionPacket - OK - 0xFFFFF803C669922C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateWaitablePort - OK - 0xFFFFF803C67A03EC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateWnfStateName - OK - 0xFFFFF803C66187C8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtCreateWorkerFactory - OK - 0xFFFFF803C6697100 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDebugActiveProcess - OK - 0xFFFFF803C67C271C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDebugContinue - OK - 0xFFFFF803C67C1DD8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDeleteAtom - OK - 0xFFFFF803C6752380 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDeleteBootEntry - OK - 0xFFFFF803C6836420 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDeleteDriverEntry - OK - 0xFFFFF803C6835028 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDeleteFile - OK - 0xFFFFF803C67CD7D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDeleteKey - OK - 0xFFFFF803C6642D0C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDeleteObjectAuditAlarm - OK - 0xFFFFF803C6700380 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDeletePrivateNamespace - OK - 0xFFFFF803C6752C60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDeleteValueKey - OK - 0xFFFFF803C6640630 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDeleteWnfStateData - OK - 0xFFFFF803C678C280 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDeleteWnfStateName - OK - 0xFFFFF803C662BC00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDisableLastKnownGood - OK - 0xFFFFF803C6853264 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDisplayString - OK - 0xFFFFF803C682E36C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtDrawText - OK - 0xFFFFF803C64427B4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtEnableLastKnownGood - OK - 0xFFFFF803C6852FF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtEnumerateBootEntries - OK - 0xFFFFF803C6835E50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtEnumerateDriverEntries - OK - 0xFFFFF803C6834B5C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtEnumerateSystemEnvironmentValuesEx - OK - 0xFFFFF803C683662C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtEnumerateTransactionObject - OK - 0xFFFFF803C63D7678 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtExtendSection - OK - 0xFFFFF803C67F5BF4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFilterBootOption - OK - 0xFFFFF803C681B6E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFilterToken - OK - 0xFFFFF803C6619778 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFilterTokenEx - OK - 0xFFFFF803C67C85E8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFlushBuffersFileEx - OK - 0xFFFFF803C6647880 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFlushInstallUILanguage - OK - 0xFFFFF803C678B1F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFlushInstructionCache - OK - 0xFFFFF803C66AAFD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFlushKey - OK - 0xFFFFF803C661CB00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFlushProcessWriteBuffers - OK - 0xFFFFF803C62ACBE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFlushVirtualMemory - OK - 0xFFFFF803C6606180 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFlushWriteBuffer - OK - 0xFFFFF803C67F9800 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFreeUserPhysicalPages - OK - 0xFFFFF803C67F77E4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFreezeRegistry - OK - 0xFFFFF803C63E1C28 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtFreezeTransactions - OK - 0xFFFFF803C63D7690 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtGetCachedSigningLevel - OK - 0xFFFFF803C6815620 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtGetContextThread - OK - 0xFFFFF803C663749C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtGetCurrentProcessorNumber - OK - 0xFFFFF803C66456A4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtGetDevicePowerState - OK - 0xFFFFF803C680329C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtGetMUIRegistryInfo - OK - 0xFFFFF803C669C820 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtGetNextProcess - OK - 0xFFFFF803C679E000 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtGetNextThread - OK - 0xFFFFF803C67A9A10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtGetNlsSectionPtr - OK - 0xFFFFF803C66053F4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtGetNotificationResourceManager - OK - 0xFFFFF803C63D769C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtGetWriteWatch - OK - 0xFFFFF803C62A73C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtImpersonateAnonymousToken - OK - 0xFFFFF803C6687E58 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtImpersonateThread - OK - 0xFFFFF803C66A6C70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtInitializeNlsFiles - OK - 0xFFFFF803C66A1FB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtInitializeRegistry - OK - 0xFFFFF803C67A7C10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtInitiatePowerAction - OK - 0xFFFFF803C673B5F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtIsSystemResumeAutomatic - OK - 0xFFFFF803C673CD70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtIsUILanguageComitted - OK - 0xFFFFF803C66657E4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtListenPort - OK - 0xFFFFF803C6787754 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtLoadDriver - OK - 0xFFFFF803C679CA80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtLoadKey - OK - 0xFFFFF803C678B4CC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtLoadKey2 - OK - 0xFFFFF803C67A8AF8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtLoadKeyEx - OK - 0xFFFFF803C672AC48 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtLockFile - OK - 0xFFFFF803C6648BA4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtLockProductActivationKeys - OK - 0xFFFFF803C676E3D4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtLockRegistryKey - OK - 0xFFFFF803C6777238 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtLockVirtualMemory - OK - 0xFFFFF803C63ADA40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtMakePermanentObject - OK - 0xFFFFF803C6635A90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtMakeTemporaryObject - OK - 0xFFFFF803C664D700 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtMapCMFModule - OK - 0xFFFFF803C66A25E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtMapUserPhysicalPages - OK - 0xFFFFF803C67F8B24 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtModifyBootEntry - OK - 0xFFFFF803C68363F8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtModifyDriverEntry - OK - 0xFFFFF803C683500C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtNotifyChangeDirectoryFile - OK - 0xFFFFF803C662DBD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtNotifyChangeKey - OK - 0xFFFFF803C66575C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtNotifyChangeMultipleKeys - OK - 0xFFFFF803C6656B88 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtNotifyChangeSession - OK - 0xFFFFF803C66FFE50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenEnlistment - OK - 0xFFFFF803C63D76B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenEventPair - OK - 0xFFFFF803C6839B70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenIoCompletion - OK - 0xFFFFF803C67CD700 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenJobObject - OK - 0xFFFFF803C680AC08 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenKeyEx - OK - 0xFFFFF803C6680828 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenKeyTransacted - OK - 0xFFFFF803C67B08B8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenKeyTransactedEx - OK - 0xFFFFF803C6610860 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenKeyedEvent - OK - 0xFFFFF803C6839D50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenMutant - OK - 0xFFFFF803C66F2D28 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenObjectAuditAlarm - OK - 0xFFFFF803C673F36C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenPrivateNamespace - OK - 0xFFFFF803C6695300 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenProcessToken - OK - 0xFFFFF803C666A5C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenResourceManager - OK - 0xFFFFF803C628A4A4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenSemaphore - OK - 0xFFFFF803C66069A4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenSession - OK - 0xFFFFF803C6731C54 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenSymbolicLinkObject - OK - 0xFFFFF803C66942D4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenThread - OK - 0xFFFFF803C66A9640 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenTimer - OK - 0xFFFFF803C6839800 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenTransaction - OK - 0xFFFFF803C63D76C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtOpenTransactionManager - OK - 0xFFFFF803C63D76CC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPlugPlayControl - OK - 0xFFFFF803C663CB04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPrePrepareComplete - OK - 0xFFFFF803C63D76E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPrePrepareEnlistment - OK - 0xFFFFF803C63D76EC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPrepareComplete - OK - 0xFFFFF803C63D7700 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPrepareEnlistment - OK - 0xFFFFF803C63D770C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPrivilegeCheck - OK - 0xFFFFF803C6691ADC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPrivilegeObjectAuditAlarm - OK - 0xFFFFF803C67A41F8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPrivilegedServiceAuditAlarm - OK - 0xFFFFF803C6619BFC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPropagationComplete - OK - 0xFFFFF803C63D7720 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPropagationFailed - OK - 0xFFFFF803C63D772C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtPulseEvent - OK - 0xFFFFF803C66F3138 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryBootEntryOrder - OK - 0xFFFFF803C6835BF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryBootOptions - OK - 0xFFFFF803C68356D4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryDebugFilterState - OK - 0xFFFFF803C637C370 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryDirectoryObject - OK - 0xFFFFF803C66F38C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryDriverEntryOrder - OK - 0xFFFFF803C6835240 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryEaFile - OK - 0xFFFFF803C6651C2C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryFullAttributesFile - OK - 0xFFFFF803C66588EC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationAtom - OK - 0xFFFFF803C67521EC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationEnlistment - OK - 0xFFFFF803C63D7740 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationJobObject - OK - 0xFFFFF803C6750DD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationPort - OK - 0xFFFFF803C67F15D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationResourceManager - OK - 0xFFFFF803C63D774C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationTransaction - OK - 0xFFFFF803C63A6220 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationTransactionManager - OK - 0xFFFFF803C628A4B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInformationWorkerFactory - OK - 0xFFFFF803C6444268 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryInstallUILanguage - OK - 0xFFFFF803C6663E90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryIntervalProfile - OK - 0xFFFFF803C6722690 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryIoCompletion - OK - 0xFFFFF803C67CD5B4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryLicenseValue - OK - 0xFFFFF803C6663EDC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryMultipleValueKey - OK - 0xFFFFF803C665509C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryMutant - OK - 0xFFFFF803C67A9814 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryOpenSubKeys - OK - 0xFFFFF803C67AF0C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryOpenSubKeysEx - OK - 0xFFFFF803C67A25A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryPortInformationProcess - OK - 0xFFFFF803C6808BF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryQuotaInformationFile - OK - 0xFFFFF803C67CF000 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQuerySecurityAttributesToken - OK - 0xFFFFF803C669C0B8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQuerySecurityObject - OK - 0xFFFFF803C6686E30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQuerySemaphore - OK - 0xFFFFF803C6837A10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQuerySymbolicLinkObject - OK - 0xFFFFF803C669405C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQuerySystemEnvironmentValue - OK - 0xFFFFF803C6836FC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQuerySystemEnvironmentValueEx - OK - 0xFFFFF803C6836A3C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQuerySystemInformationEx - OK - 0xFFFFF803C669C5B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryTimerResolution - OK - 0xFFFFF803C66057D8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryWnfStateData - OK - 0xFFFFF803C6693284 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueryWnfStateNameInformation - OK - 0xFFFFF803C6744988 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtQueueApcThreadEx - OK - 0xFFFFF803C6645514 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRaiseException - OK - 0xFFFFF803C62FB390 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRaiseHardError - OK - 0xFFFFF803C6700514 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReadOnlyEnlistment - OK - 0xFFFFF803C63D7760 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRecoverEnlistment - OK - 0xFFFFF803C63D776C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRecoverResourceManager - OK - 0xFFFFF803C6387F50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRecoverTransactionManager - OK - 0xFFFFF803C628A498 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRegisterProtocolAddressInformation - OK - 0xFFFFF803C63D7950 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRegisterThreadTerminatePort - OK - 0xFFFFF803C6725980 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReleaseKeyedEvent - OK - 0xFFFFF803C6750C30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReleaseWorkerFactoryWorker - OK - 0xFFFFF803C63672D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRemoveIoCompletionEx - OK - 0xFFFFF803C6650AA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRemoveProcessDebug - OK - 0xFFFFF803C67C2630 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRenameKey - OK - 0xFFFFF803C67AEAA8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRenameTransactionManager - OK - 0xFFFFF803C63D795C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReplaceKey - OK - 0xFFFFF803C67AF304 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReplacePartitionUnit - OK - 0xFFFFF803C64488F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtReplyWaitReplyPort - OK - 0xFFFFF803C67F1330 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRequestPort - OK - 0xFFFFF803C664D4DC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtResetEvent - OK - 0xFFFFF803C6746E70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtResetWriteWatch - OK - 0xFFFFF803C62A7A60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRestoreKey - OK - 0xFFFFF803C67B0428 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtResumeProcess - OK - 0xFFFFF803C680A520 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRollbackComplete - OK - 0xFFFFF803C63D7780 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRollbackEnlistment - OK - 0xFFFFF803C63D778C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRollbackTransaction - OK - 0xFFFFF803C63D77A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtRollforwardTransactionManager - OK - 0xFFFFF803C63D7970 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSaveKey - OK - 0xFFFFF803C67B0038 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSaveKeyEx - OK - 0xFFFFF803C67AFBA8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSaveMergedKeys - OK - 0xFFFFF803C67AF830 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSecureConnectPort - OK - 0xFFFFF803C6687494 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSerializeBoot - OK - 0xFFFFF803C67845D4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetBootEntryOrder - OK - 0xFFFFF803C68359C4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetBootOptions - OK - 0xFFFFF803C68354A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetCachedSigningLevel - OK - 0xFFFFF803C6743150 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetContextThread - OK - 0xFFFFF803C6613D14 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetDebugFilterState - OK - 0xFFFFF803C6766964 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetDefaultHardErrorPort - OK - 0xFFFFF803C6786FFC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetDefaultLocale - OK - 0xFFFFF803C67A6AD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetDefaultUILanguage - OK - 0xFFFFF803C67A8BCC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetDriverEntryOrder - OK - 0xFFFFF803C6834930 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetEaFile - OK - 0xFFFFF803C67CE82C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetHighEventPair - OK - 0xFFFFF803C68398B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetHighWaitLowEventPair - OK - 0xFFFFF803C6839988 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetIRTimer - OK - 0xFFFFF803C63A79A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationDebugObject - OK - 0xFFFFF803C67C1C38 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationEnlistment - OK - 0xFFFFF803C63D77AC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationJobObject - OK - 0xFFFFF803C6649450 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationKey - OK - 0xFFFFF803C66907E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationResourceManager - OK - 0xFFFFF803C63D77C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationToken - OK - 0xFFFFF803C664D824 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationTransaction - OK - 0xFFFFF803C63D77CC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationTransactionManager - OK - 0xFFFFF803C63D797C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationVirtualMemory - OK - 0xFFFFF803C6754C90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetInformationWorkerFactory - OK - 0xFFFFF803C62EBE40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetIntervalProfile - OK - 0xFFFFF803C6722830 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetIoCompletion - OK - 0xFFFFF803C66AFE28 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetIoCompletionEx - OK - 0xFFFFF803C67CD484 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetLdtEntries - OK - 0xFFFFF803C641AE14 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetLowEventPair - OK - 0xFFFFF803C683991C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetLowWaitHighEventPair - OK - 0xFFFFF803C68399F8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetQuotaInformationFile - OK - 0xFFFFF803C67CEFF8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetSecurityObject - OK - 0xFFFFF803C6651638 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetSystemEnvironmentValue - OK - 0xFFFFF803C6836C60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetSystemEnvironmentValueEx - OK - 0xFFFFF803C6836810 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetSystemInformation - OK - 0xFFFFF803C6699330 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetSystemPowerState - OK - 0xFFFFF803C65E498C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetSystemTime - OK - 0xFFFFF803C682DF14 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetThreadExecutionState - OK - 0xFFFFF803C6731F88 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetTimerEx - OK - 0xFFFFF803C62EB580 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetTimerResolution - OK - 0xFFFFF803C6605C3C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetUuidSeed - OK - 0xFFFFF803C678C7F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSetVolumeInformationFile - OK - 0xFFFFF803C66095B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtShutdownSystem - OK - 0xFFFFF803C682E510 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtShutdownWorkerFactory - OK - 0xFFFFF803C629EDA8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSignalAndWaitForSingleObject - OK - 0xFFFFF803C638750C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSinglePhaseReject - OK - 0xFFFFF803C63D7990 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtStartProfile - OK - 0xFFFFF803C6838E2C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtStopProfile - OK - 0xFFFFF803C6838D44 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSubscribeWnfStateChange - OK - 0xFFFFF803C6692CE8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSuspendProcess - OK - 0xFFFFF803C680A588 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSuspendThread - OK - 0xFFFFF803C66372C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtSystemDebugControl - OK - 0xFFFFF803C6644594 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtTerminateJobObject - OK - 0xFFFFF803C66459B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtTestAlert - OK - 0xFFFFF803C66B3AF4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtThawRegistry - OK - 0xFFFFF803C63E1BF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtThawTransactions - OK - 0xFFFFF803C63D77E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtTraceControl - OK - 0xFFFFF803C6683F88 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtTranslateFilePath - OK - 0xFFFFF803C6834624 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtUmsThreadYield - OK - 0xFFFFF803C67EC73C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtUnloadDriver - OK - 0xFFFFF803C67CFC40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtUnloadKey - OK - 0xFFFFF803C6613330 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtUnloadKey2 - OK - 0xFFFFF803C6612D50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtUnloadKeyEx - OK - 0xFFFFF803C670B738 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtUnlockFile - OK - 0xFFFFF803C66490C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtUnlockVirtualMemory - OK - 0xFFFFF803C629B950 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtUnmapViewOfSectionEx - OK - 0xFFFFF803C66F29B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtUnsubscribeWnfStateChange - OK - 0xFFFFF803C662D084 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtUpdateWnfStateData - OK - 0xFFFFF803C6641100 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtVdmControl - OK - 0xFFFFF803C67C85E8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWaitForAlertByThreadId - OK - 0xFFFFF803C66A4F50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWaitForDebugEvent - OK - 0xFFFFF803C67C1FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWaitForKeyedEvent - OK - 0xFFFFF803C6750A68 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWaitForWnfNotifications - OK - 0xFFFFF803C662C930 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWaitForWorkViaWorkerFactory - OK - 0xFFFFF803C633E120 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWaitHighEventPair - OK - 0xFFFFF803C6839A68 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       NtWaitLowEventPair - OK - 0xFFFFF803C6839AEC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation

==========================================================================================

Shadow SSDT

       NtUserYieldTask - OK - 0xFFFFF96000360710 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetThreadState - OK - 0xFFFFF960001E1B60 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPeekMessage - OK - 0xFFFFF96000227EF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallOneParam - OK - 0xFFFFF9600022C3F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetKeyState - OK - 0xFFFFF9600031C320 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInvalidateRect - OK - 0xFFFFF960002F2AB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallNoParam - OK - 0xFFFFF9600022C580 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetMessage - OK - 0xFFFFF96000249560 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMessageCall - OK - 0xFFFFF960001FB9F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBitBlt - OK - 0xFFFFF9600021A480 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCharSet - OK - 0xFFFFF9600033B6E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetDC - OK - 0xFFFFF9600021F250 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSelectBitmap - OK - 0xFFFFF960002104F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWaitMessage - OK - 0xFFFFF9600028EF40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserTranslateMessage - OK - 0xFFFFF960002AFFF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetProp - OK - 0xFFFFF960002FF840 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPostMessage - OK - 0xFFFFF96000231D50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserQueryWindow - OK - 0xFFFFF96000300240 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserTranslateAccelerator - OK - 0xFFFFF960002D4DE0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFlush - OK - 0xFFFFF960001DA6F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRedrawWindow - OK - 0xFFFFF9600032A840 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWindowFromPoint - OK - 0xFFFFF960002933F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallMsgFilter - OK - 0xFFFFF9600028ECA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserValidateTimerCallback - OK - 0xFFFFF96000249D9C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserBeginPaint - OK - 0xFFFFF9600032AAC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetTimer - OK - 0xFFFFF960001E5420 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEndPaint - OK - 0xFFFFF96000328FE0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetCursor - OK - 0xFFFFF9600028FFC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserKillTimer - OK - 0xFFFFF960001E7250 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserBuildHwndList - OK - 0xFFFFF960002921E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSelectPalette - OK - 0xFFFFF9600021B844 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallNextHookEx - OK - 0xFFFFF960002AEC40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHideCaret - OK - 0xFFFFF960002AC9E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiIntersectClipRect - OK - 0xFFFFF960001B3264 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallHwndLock - OK - 0xFFFFF960002A5A50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetProcessWindowStation - OK - 0xFFFFF9600020C7F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDeleteObjectApp - OK - 0xFFFFF96000220F70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowPos - OK - 0xFFFFF960002AE550 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserShowCaret - OK - 0xFFFFF960002AC94C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEndDeferWindowPosEx - OK - 0xFFFFF9600033AE30 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallHwndParamLock - OK - 0xFFFFF9600032FBB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserVkKeyScanEx - OK - 0xFFFFF960003142D8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetDIBitsToDeviceInternal - OK - 0xFFFFF9600021B2A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallTwoParam - OK - 0xFFFFF960002510B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetRandomRgn - OK - 0xFFFFF960002A4620 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCopyAcceleratorTable - OK - 0xFFFFF9600032C3C4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserNotifyWinEvent - OK - 0xFFFFF960002F29A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtSelectClipRgn - OK - 0xFFFFF960001A9580 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserIsClipboardFormatAvailable - OK - 0xFFFFF960002A6BD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetScrollInfo - OK - 0xFFFFF960001E4930 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiStretchBlt - OK - 0xFFFFF96000331040 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateCaret - OK - 0xFFFFF9600033ABC8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRectVisible - OK - 0xFFFFF960002F3170 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCombineRgn - OK - 0xFFFFF96000335800 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDCObject - OK - 0xFFFFF9600021CA80 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDispatchMessage - OK - 0xFFFFF960002AAE60 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterWindowMessage - OK - 0xFFFFF960002273F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtTextOutW - OK - 0xFFFFF96000180CB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSelectFont - OK - 0xFFFFF9600033B6D8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRestoreDC - OK - 0xFFFFF9600021D078 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSaveDC - OK - 0xFFFFF9600021D080 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetForegroundWindow - OK - 0xFFFFF9600032D5A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserShowScrollBar - OK - 0xFFFFF9600028FAC4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserFindExistingCursorIcon - OK - 0xFFFFF96000223640 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDCDword - OK - 0xFFFFF960001B4870 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetRegionData - OK - 0xFFFFF960002A2600 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiLineTo - OK - 0xFFFFF96000183EC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSystemParametersInfo - OK - 0xFFFFF96000224420 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetAppClipBox - OK - 0xFFFFF960001AF724 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetAsyncKeyState - OK - 0xFFFFF960002A6E68 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCPD - OK - 0xFFFFF9600032D9E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoveProp - OK - 0xFFFFF960002F2270 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDoPalette - OK - 0xFFFFF96000204650 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPolyPolyDraw - OK - 0xFFFFF960001BD3E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetCapture - OK - 0xFFFFF9600029D210 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnumDisplayMonitors - OK - 0xFFFFF9600032F914 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateCompatibleBitmap - OK - 0xFFFFF960001E9B50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetProp - OK - 0xFFFFF960002D3DC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTextCharsetInfo - OK - 0xFFFFF960002D2498 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSBGetParms - OK - 0xFFFFF9600032B7B4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetIconInfo - OK - 0xFFFFF960002067A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserExcludeUpdateRgn - OK - 0xFFFFF9600034DB60 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetFocus - OK - 0xFFFFF960002A55AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtGetObjectW - OK - 0xFFFFF96000218EF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetUpdateRect - OK - 0xFFFFF960002E69F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateCompatibleDC - OK - 0xFFFFF960002101F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipboardSequenceNumber - OK - 0xFFFFF9600034B67C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreatePen - OK - 0xFFFFF96000182E20 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserShowWindow - OK - 0xFFFFF960002038D8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetKeyboardLayoutList - OK - 0xFFFFF960002272AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPatBlt - OK - 0xFFFFF960002BB830 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMapVirtualKeyEx - OK - 0xFFFFF960003140A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowLong - OK - 0xFFFFF960001DDA90 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiHfontCreate - OK - 0xFFFFF960001DCD18 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMoveWindow - OK - 0xFFFFF96000331148 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPostThreadMessage - OK - 0xFFFFF960001E7010 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDrawIconEx - OK - 0xFFFFF960002D42F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetSystemMenu - OK - 0xFFFFF96000206220 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDrawStream - OK - 0xFFFFF960002DA1B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInternalGetWindowText - OK - 0xFFFFF9600032C2A4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowDC - OK - 0xFFFFF96000329130 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiInvertRgn - OK - 0xFFFFF96000348220 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetRgnBox - OK - 0xFFFFF96000321E70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetAndSetDCDword - OK - 0xFFFFF960001AF034 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMaskBlt - OK - 0xFFFFF960002CF520 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetWidthTable - OK - 0xFFFFF960001E40F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserScrollDC - OK - 0xFFFFF9600029F160 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetObjectInformation - OK - 0xFFFFF9600020CFE0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateBitmap - OK - 0xFFFFF96000210394 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserFindWindowEx - OK - 0xFFFFF960002924E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPolyPatBlt - OK - 0xFFFFF960002D7370 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnhookWindowsHookEx - OK - 0xFFFFF9600022BE70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetNearestColor - OK - 0xFFFFF960001DCD10 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiTransformPoints - OK - 0xFFFFF960002E6CE8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDCPoint - OK - 0xFFFFF960002C9FB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateDIBBrush - OK - 0xFFFFF9600032A53C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTextMetricsW - OK - 0xFFFFF96000227B70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateWindowEx - OK - 0xFFFFF960001FBFC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetParent - OK - 0xFFFFF960002E8570 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetKeyboardState - OK - 0xFFFFF960002A8150 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserToUnicodeEx - OK - 0xFFFFF96000305738 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetControlBrush - OK - 0xFFFFF96000339340 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClassName - OK - 0xFFFFF960001E5620 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAlphaBlend - OK - 0xFFFFF960002D7BA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiOffsetRgn - OK - 0xFFFFF960002BABAC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDefSetText - OK - 0xFFFFF96000339FF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTextFaceW - OK - 0xFFFFF960001DE030 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiStretchDIBitsInternal - OK - 0xFFFFF960002008AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSendInput - OK - 0xFFFFF960002A7930 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetThreadDesktop - OK - 0xFFFFF9600020B1D4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateRectRgn - OK - 0xFFFFF960001E4440 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDIBitsInternal - OK - 0xFFFFF96000204080 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetUpdateRgn - OK - 0xFFFFF960002E67C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDeleteClientObj - OK - 0xFFFFF960001CE000 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetIconSize - OK - 0xFFFFF960002070D4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserFillWindow - OK - 0xFFFFF960002B9830 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtCreateRegion - OK - 0xFFFFF960001B3AB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiComputeXformCoefficients - OK - 0xFFFFF96000337798 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowsHookEx - OK - 0xFFFFF9600022AE10 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserNotifyProcessCreate - OK - 0xFFFFF9600020CC14 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiUnrealizeObject - OK - 0xFFFFF960003DD938 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetTitleBarInfo - OK - 0xFFFFF96000290BB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRectangle - OK - 0xFFFFF960002CFD10 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetThreadDesktop - OK - 0xFFFFF9600027C69C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetDCEx - OK - 0xFFFFF960002CAF80 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetScrollBarInfo - OK - 0xFFFFF960002B10CC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTextExtent - OK - 0xFFFFF960003DD7A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowFNID - OK - 0xFFFFF9600033A2C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetLayout - OK - 0xFFFFF960001A950C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCalcMenuBar - OK - 0xFFFFF960002C7AE0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserThunkedMenuItemInfo - OK - 0xFFFFF96000206A00 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExcludeClipRect - OK - 0xFFFFF9600032AE08 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateDIBSection - OK - 0xFFFFF960001734E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDCforBitmap - OK - 0xFFFFF9600021CDEC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDestroyCursor - OK - 0xFFFFF96000173424 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDestroyWindow - OK - 0xFFFFF96000231124 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallHwndParam - OK - 0xFFFFF9600033AF04 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateDIBitmapInternal - OK - 0xFFFFF9600021A024 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserOpenWindowStation - OK - 0xFFFFF960001D12B8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetCursorIconData - OK - 0xFFFFF96000219D94 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCloseDesktop - OK - 0xFFFFF960001D10C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserOpenDesktop - OK - 0xFFFFF960002F1D40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetProcessWindowStation - OK - 0xFFFFF960001D11E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetAtomName - OK - 0xFFFFF960001E5A50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtCreatePen - OK - 0xFFFFF960001858C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreatePaletteInternal - OK - 0xFFFFF960001E5F7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBrushOrg - OK - 0xFFFFF96000344760 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserBuildNameList - OK - 0xFFFFF960002F199C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetPixel - OK - 0xFFFFF960002CB250 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterClassExWOW - OK - 0xFFFFF96000227490 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreatePatternBrushInternal - OK - 0xFFFFF9600029639C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetAncestor - OK - 0xFFFFF960002F2D30 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetOutlineTextMetricsInternalW - OK - 0xFFFFF960002D1658 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBitmapBits - OK - 0xFFFFF960002D5408 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCloseWindowStation - OK - 0xFFFFF960001D1220 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetDoubleClickTime - OK - 0xFFFFF96000227CA8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnableScrollBar - OK - 0xFFFFF9600034A644 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateSolidBrush - OK - 0xFFFFF9600020C358 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClassInfoEx - OK - 0xFFFFF960002EEB4C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateClientObj - OK - 0xFFFFF960001979FC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnregisterClass - OK - 0xFFFFF9600022EBD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDeleteMenu - OK - 0xFFFFF96000207850 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRectInRegion - OK - 0xFFFFF9600034CFFC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserScrollWindowEx - OK - 0xFFFFF960002AB1AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetPixel - OK - 0xFFFFF960002A1390 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetClassLong - OK - 0xFFFFF96000346810 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetMenuBarInfo - OK - 0xFFFFF96000290540 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetNearestPaletteIndex - OK - 0xFFFFF960002CBCE0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCharWidthW - OK - 0xFFFFF96000321EB8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInvalidateRgn - OK - 0xFFFFF96000338198 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipboardOwner - OK - 0xFFFFF9600034C8B4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowRgn - OK - 0xFFFFF960002B9518 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserBitBltSysBmp - OK - 0xFFFFF96000347220 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCharWidthInfo - OK - 0xFFFFF9600029C370 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserValidateRect - OK - 0xFFFFF96000343A18 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCloseClipboard - OK - 0xFFFFF9600033CF48 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserOpenClipboard - OK - 0xFFFFF9600033C930 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetStockObject - OK - 0xFFFFF9600020AC7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetClipboardData - OK - 0xFFFFF960002E4160 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnableMenuItem - OK - 0xFFFFF9600028F78C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserAlterWindowStyle - OK - 0xFFFFF96000360194 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFillRgn - OK - 0xFFFFF960002D6E6C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowPlacement - OK - 0xFFFFF960002B0D40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiModifyWorldTransform - OK - 0xFFFFF960001CC240 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetFontData - OK - 0xFFFFF96000297B40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetOpenClipboardWindow - OK - 0xFFFFF96000353E7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetThreadState - OK - 0xFFFFF9600034A308 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiOpenDCW - OK - 0xFFFFF96000223430 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserTrackMouseEvent - OK - 0xFFFFF9600028CCE8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTransform - OK - 0xFFFFF960001AF6D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDestroyMenu - OK - 0xFFFFF96000343400 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetBitmapBits - OK - 0xFFFFF960002D3A20 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserConsoleControl - OK - 0xFFFFF960001E0D10 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetActiveWindow - OK - 0xFFFFF960001E1A60 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetInformationThread - OK - 0xFFFFF96000172DB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowPlacement - OK - 0xFFFFF96000341490 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetControlColor - OK - 0xFFFFF96000361030 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetMetaRgn - OK - 0xFFFFF960001AF6C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetMiterLimit - OK - 0xFFFFF960001ACA04 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetVirtualResolution - OK - 0xFFFFF960001ACC64 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetRasterizerCaps - OK - 0xFFFFF960003DDBD4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowWord - OK - 0xFFFFF96000350584 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipboardFormatName - OK - 0xFFFFF9600034B2A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRealInternalGetMessage - OK - 0xFFFFF9600031DAF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateLocalMemHandle - OK - 0xFFFFF96000348F30 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserAttachThreadInput - OK - 0xFFFFF960002A6B1C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateHalftonePalette - OK - 0xFFFFF960001E5580 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPaintMenuBar - OK - 0xFFFFF960002C7884 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetKeyboardState - OK - 0xFFFFF96000334B98 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCombineTransform - OK - 0xFFFFF960001AB800 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateAcceleratorTable - OK - 0xFFFFF9600033D178 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCursorFrameInfo - OK - 0xFFFFF960003479E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetAltTabInfo - OK - 0xFFFFF96000361AB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCaretBlinkTime - OK - 0xFFFFF960001DFA7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiQueryFontAssocInfo - OK - 0xFFFFF9600020A874 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserProcessConnect - OK - 0xFFFFF9600020B3F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnumDisplayDevices - OK - 0xFFFFF960001720AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEmptyClipboard - OK - 0xFFFFF960002E4AA8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipboardData - OK - 0xFFFFF960002F8DE0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoveMenu - OK - 0xFFFFF96000348E7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBoundsRect - OK - 0xFFFFF9600032C55C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetBitmapDimension - OK - 0xFFFFF960003DCC08 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserConvertMemHandle - OK - 0xFFFFF9600034CDF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDestroyAcceleratorTable - OK - 0xFFFFF960003443B8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetGUIThreadInfo - OK - 0xFFFFF9600031ABC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCloseFigure - OK - 0xFFFFF960001881F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowsHookAW - OK - 0xFFFFF96000360B70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetMenuDefaultItem - OK - 0xFFFFF9600028F710 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCheckMenuItem - OK - 0xFFFFF9600034D634 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWinEventHook - OK - 0xFFFFF960002E4670 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnhookWinEvent - OK - 0xFFFFF960002EE128 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserLockWindowUpdate - OK - 0xFFFFF9600036172C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetSystemMenu - OK - 0xFFFFF9600028F83C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserThunkedMenuInfo - OK - 0xFFFFF9600034A420 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBeginPath - OK - 0xFFFFF960001BD8F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEndPath - OK - 0xFFFFF960001BD894 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFillPath - OK - 0xFFFFF96000177200 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallHwnd - OK - 0xFFFFF960002C96AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDdeInitialize - OK - 0xFFFFF960002EE7D8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserModifyUserStartupInfoFlags - OK - 0xFFFFF96000358190 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCountClipboardFormats - OK - 0xFFFFF96000346164 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAddFontMemResourceEx - OK - 0xFFFFF960003DD648 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEqualRgn - OK - 0xFFFFF960002CAF24 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetSystemPaletteUse - OK - 0xFFFFF9600035915C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRemoveFontMemResourceEx - OK - 0xFFFFF960003DD440 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnumDisplaySettings - OK - 0xFFFFF9600029E0B4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPaintDesktop - OK - 0xFFFFF96000361260 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtEscape - OK - 0xFFFFF9600018D1F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBitmapDimension - OK - 0xFFFFF960003DCBC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetFontEnumeration - OK - 0xFFFFF960003E2A40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserChangeClipboardChain - OK - 0xFFFFF960003515D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetClipboardViewer - OK - 0xFFFFF9600033CE08 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserShowWindowAsync - OK - 0xFFFFF96000360AB4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateColorSpace - OK - 0xFFFFF960003E3AF4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDeleteColorSpace - OK - 0xFFFFF960003E3A90 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserActivateKeyboardLayout - OK - 0xFFFFF9600035FC58 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtBindCompositionSurface - OK - 0xFFFFF9600030FD70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtCreateCompositionSurfaceHandle - OK - 0xFFFFF96000335844 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionAddCrossDeviceVisualChild - OK - 0xFFFFF9600030C298 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionAddVisualChild - OK - 0xFFFFF960002BFFA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionBeginFrame - OK - 0xFFFFF960002BEFA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionCommitChannel - OK - 0xFFFFF960002DC8D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionConfirmFrame - OK - 0xFFFFF96000302340 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionConnectPipe - OK - 0xFFFFF960003A2130 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionCreateChannel - OK - 0xFFFFF9600030AA0C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionCreateConnectionContext - OK - 0xFFFFF960003550DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionCreateDwmChannel - OK - 0xFFFFF96000308EFC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionCreateResource - OK - 0xFFFFF960002C1590 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionCurrentBatchId - OK - 0xFFFFF960002C0320 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionDestroyChannel - OK - 0xFFFFF96000309A68 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionDestroyConnectionContext - OK - 0xFFFFF960003A2150 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionDiscardFrame - OK - 0xFFFFF960003028F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionDwmSyncFlush - OK - 0xFFFFF960003A2138 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionConnectPipe - OK - 0xFFFFF960003A2130 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionGetConnectionContextBatch - OK - 0xFFFFF96000303890 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionGetDeletedResources - OK - 0xFFFFF9600030D30C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionGetFrameLegacyTokens - OK - 0xFFFFF960003196B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionGetFrameStatistics - OK - 0xFFFFF9600030C300 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionGetFrameSurfaceUpdates - OK - 0xFFFFF960002D2BC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionReleaseAllResources - OK - 0xFFFFF96000309B44 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionReleaseResource - OK - 0xFFFFF960002C1350 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionRemoveCrossDeviceVisualChild - OK - 0xFFFFF9600030B600 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionRemoveVisualChild - OK - 0xFFFFF9600032B240 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionReplaceVisualChildren - OK - 0xFFFFF96000309840 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionRetireFrame - OK - 0xFFFFF96000302BF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionSetChannelCommitCompletionEvent - OK - 0xFFFFF96000343870 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionSetResourceAnimationProperty - OK - 0xFFFFF9600030BE4C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionSetResourceBufferProperty - OK - 0xFFFFF960002C1760 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionSetResourceDeletedNotificationTag - OK - 0xFFFFF960003291C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionSetResourceFloatProperty - OK - 0xFFFFF9600030B950 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionSetResourceIntegerProperty - OK - 0xFFFFF960002C01E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionSetResourceReferenceArrayProperty - OK - 0xFFFFF9600030D69C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionSetResourceReferenceProperty - OK - 0xFFFFF960002C1AF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionSignalGpuFence - OK - 0xFFFFF96000302614 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionSubmitDWMBatch - OK - 0xFFFFF960002C0580 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionSynchronize - OK - 0xFFFFF9600030D4F4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionTelemetryTouchInteractionBegin - OK - 0xFFFFF960003059F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionTelemetryTouchInteractionEnd - OK - 0xFFFFF96000305C2C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionTelemetryTouchInteractionUpdate - OK - 0xFFFFF960003374B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionValidateAndReferenceSystemVisualForHwndTarget - OK - 0xFFFFF9600031159C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtDCompositionWaitForChannel - OK - 0xFFFFF9600035306C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAbortDoc - OK - 0xFFFFF960003B6DA4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAbortPath - OK - 0xFFFFF960003E2978 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAddEmbFontToDC - OK - 0xFFFFF960003B6AB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAddFontResourceW - OK - 0xFFFFF96000284218 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAddRemoteFontToDC - OK - 0xFFFFF960003CEADC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAddRemoteMMInstanceToDC - OK - 0xFFFFF960003B65D8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAngleArc - OK - 0xFFFFF960003DDDA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiAnyLinkedFonts - OK - 0xFFFFF9600033B9A8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiArcInternal - OK - 0xFFFFF960003E3C44 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBRUSHOBJ_DeleteRbrush - OK - 0xFFFFF960003E5DC8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBRUSHOBJ_hGetColorTransform - OK - 0xFFFFF960003E6B10 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBRUSHOBJ_pvAllocRbrush - OK - 0xFFFFF960003E6BF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBRUSHOBJ_pvGetRbrush - OK - 0xFFFFF960003E6B80 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBRUSHOBJ_ulGetBrushColor - OK - 0xFFFFF960001AFA68 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiBeginGdiRendering - OK - 0xFFFFF960002CB954 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCLIPOBJ_bEnum - OK - 0xFFFFF960003E6C70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCLIPOBJ_cEnumStart - OK - 0xFFFFF960003E6D94 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCLIPOBJ_ppoGetPath - OK - 0xFFFFF960003E6FC4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCancelDC - OK - 0xFFFFF960003DD9F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiChangeGhostFont - OK - 0xFFFFF960003DD1CC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCheckBitmapBits - OK - 0xFFFFF960003E32D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiClearBitmapAttributes - OK - 0xFFFFF960003DD960 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiClearBrushAttributes - OK - 0xFFFFF960003DD940 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiColorCorrectPalette - OK - 0xFFFFF960003E3120 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiConfigureOPMProtectedOutput - OK - 0xFFFFF960003E8CE4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiConvertMetafileRect - OK - 0xFFFFF960003D3A84 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateBitmapFromDxSurface - OK - 0xFFFFF960003DD970 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateBitmapFromDxSurface2 - OK - 0xFFFFF96000313120 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateColorTransform - OK - 0xFFFFF960003E36DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateEllipticRgn - OK - 0xFFFFF960003C5290 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateHatchBrushInternal - OK - 0xFFFFF960003E0B08 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateMetafileDC - OK - 0xFFFFF960002CA7C8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateOPMProtectedOutputs - OK - 0xFFFFF9600033E3E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateRoundRectRgn - OK - 0xFFFFF96000296170 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateServerMetaFile - OK - 0xFFFFF96000358080 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiCreateSessionMappedDIBSection - OK - 0xFFFFF9600033A900 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCIGetCapabilitiesString - OK - 0xFFFFF960003E9600 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCIGetCapabilitiesStringLength - OK - 0xFFFFF960003E9610 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCIGetTimingReport - OK - 0xFFFFF960003E95A4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCIGetVCPFeature - OK - 0xFFFFF960003E966C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCISaveCurrentSettings - OK - 0xFFFFF960003E965C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDDCCISetVCPFeature - OK - 0xFFFFF960003E9664 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdCreateFullscreenSprite - OK - 0xFFFFF960003B0840 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIAcquireKeyedMutex - OK - 0xFFFFF960003B0B2C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIAcquireKeyedMutex2 - OK - 0xFFFFF960003591E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICheckExclusiveOwnership - OK - 0xFFFFF9600033A8E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICheckMonitorPowerState - OK - 0xFFFFF9600032E208 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICheckOcclusion - OK - 0xFFFFF960003560B8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICheckSharedResourceAccess - OK - 0xFFFFF960003B0AD4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICheckVidPnExclusiveOwnership - OK - 0xFFFFF9600033583C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICloseAdapter - OK - 0xFFFFF960001720A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIConfigureSharedResource - OK - 0xFFFFF960003493E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateAllocation - OK - 0xFFFFF9600033FCF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateContext - OK - 0xFFFFF960003506F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateDCFromMemory - OK - 0xFFFFF960002D5E70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateDevice - OK - 0xFFFFF9600035271C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateKeyedMutex - OK - 0xFFFFF960003B0B3C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateKeyedMutex2 - OK - 0xFFFFF9600035925C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateOutputDupl - OK - 0xFFFFF960003B09F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateOverlay - OK - 0xFFFFF960003B0BA4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDICreateSynchronizationObject - OK - 0xFFFFF9600034265C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyAllocation - OK - 0xFFFFF9600033E2F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyContext - OK - 0xFFFFF96000351400 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyDCFromMemory - OK - 0xFFFFF960002D54D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyDevice - OK - 0xFFFFF96000353238 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyKeyedMutex - OK - 0xFFFFF96000359154 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyOutputDupl - OK - 0xFFFFF960003B09E4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroyOverlay - OK - 0xFFFFF960003B0B8C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIDestroySynchronizationObject - OK - 0xFFFFF96000342718 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIEnumAdapters - OK - 0xFFFFF9600034C8F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIEscape - OK - 0xFFFFF9600031DE70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIFlipOverlay - OK - 0xFFFFF960003B0B94 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetContextInProcessSchedulingPriority - OK - 0xFFFFF960003B0D48 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetContextSchedulingPriority - OK - 0xFFFFF96000359274 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetDeviceState - OK - 0xFFFFF960003195B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetDisplayModeList - OK - 0xFFFFF9600034F528 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetMultisampleMethodList - OK - 0xFFFFF960003B0D40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetOverlayState - OK - 0xFFFFF960003B0B1C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetPresentHistory - OK - 0xFFFFF960003B0BBC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetPresentQueueEvent - OK - 0xFFFFF960003B0BC8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetProcessSchedulingPriorityClass - OK - 0xFFFFF960003B0B7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetRuntimeData - OK - 0xFFFFF960003B0D50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetScanLine - OK - 0xFFFFF9600033DC44 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetSharedPrimaryHandle - OK - 0xFFFFF960003B0BB4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIGetSharedResourceAdapterLuid - OK - 0xFFFFF960003B09B4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIInvalidateActiveVidPn - OK - 0xFFFFF960003B0B64 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDILock - OK - 0xFFFFF96000332348 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOfferAllocations - OK - 0xFFFFF960003343E4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenAdapterFromDeviceName - OK - 0xFFFFF960001729B8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenAdapterFromHdc - OK - 0xFFFFF9600029C4A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenAdapterFromLuid - OK - 0xFFFFF960003547C8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenKeyedMutex - OK - 0xFFFFF960003B0B34 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenKeyedMutex2 - OK - 0xFFFFF96000359254 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenNtHandleFromName - OK - 0xFFFFF960003B0D60 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenResource - OK - 0xFFFFF9600034C724 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenResourceFromNtHandle - OK - 0xFFFFF960003493E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenSyncObjectFromNtHandle - OK - 0xFFFFF96000349590 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOpenSynchronizationObject - OK - 0xFFFFF9600035924C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOutputDuplGetFrameInfo - OK - 0xFFFFF960003B09DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOutputDuplGetMetaData - OK - 0xFFFFF960003B09D4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOutputDuplGetPointerShapeData - OK - 0xFFFFF960003B09CC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOutputDuplPresent - OK - 0xFFFFF960003B09C4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIOutputDuplReleaseFrame - OK - 0xFFFFF960003B09BC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIPinDirectFlipResources - OK - 0xFFFFF96000358FB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIPollDisplayChildren - OK - 0xFFFFF960003B0B6C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIPresent - OK - 0xFFFFF96000330E74 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIQueryAdapterInfo - OK - 0xFFFFF96000172098 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIQueryAllocationResidency - OK - 0xFFFFF96000356154 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIQueryRemoteVidPnSourceFromGdiDisplayName - OK - 0xFFFFF960003B0C60 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIQueryResourceInfo - OK - 0xFFFFF9600034C72C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIQueryResourceInfoFromNtHandle - OK - 0xFFFFF960003493F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIQueryStatistics - OK - 0xFFFFF960003B0BAC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIReclaimAllocations - OK - 0xFFFFF96000330E6C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIReleaseKeyedMutex - OK - 0xFFFFF960003B0B24 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIReleaseKeyedMutex2 - OK - 0xFFFFF96000359264 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIReleaseProcessVidPnSourceOwners - OK - 0xFFFFF960003B0B74 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIRender - OK - 0xFFFFF96000332340 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetAllocationPriority - OK - 0xFFFFF960003B0D58 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetContextInProcessSchedulingPriority - OK - 0xFFFFF96000358BB4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetContextSchedulingPriority - OK - 0xFFFFF960003586F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetDisplayMode - OK - 0xFFFFF9600029D738 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetDisplayPrivateDriverFormat - OK - 0xFFFFF960003B0B44 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetGammaRamp - OK - 0xFFFFF960003B0B84 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetProcessSchedulingPriorityClass - OK - 0xFFFFF9600035926C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetQueuedLimit - OK - 0xFFFFF9600033DC70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetStereoEnabled - OK - 0xFFFFF960003B09AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetVidPnSourceOwner - OK - 0xFFFFF96000357D2C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISetVidPnSourceOwner1 - OK - 0xFFFFF96000357240 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIShareObjects - OK - 0xFFFFF960003447A8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISharedPrimaryLockNotification - OK - 0xFFFFF960003B0DA4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISharedPrimaryUnLockNotification - OK - 0xFFFFF960003B0D68 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDISignalSynchronizationObject - OK - 0xFFFFF96000331660 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIUnlock - OK - 0xFFFFF96000332350 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIUnpinDirectFlipResources - OK - 0xFFFFF96000358FB8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIUpdateOverlay - OK - 0xFFFFF960003B0B9C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIWaitForIdle - OK - 0xFFFFF960003B0B5C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIWaitForSynchronizationObject - OK - 0xFFFFF96000331360 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIWaitForVerticalBlankEvent - OK - 0xFFFFF960003345DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDDIWaitForVerticalBlankEvent2 - OK - 0xFFFFF96000346320 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdDestroyFullscreenSprite - OK - 0xFFFFF960003B0830 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdNotifyFullscreenSpriteUpdate - OK - 0xFFFFF960003B0838 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdQueryVisRgnUniqueness - OK - 0xFFFFF960003B0828 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDdUnattachSurface - OK - 0xFFFFF960003B2460 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDeleteColorTransform - OK - 0xFFFFF960003E3640 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDescribePixelFormat - OK - 0xFFFFF960003DCB2C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDestroyOPMProtectedOutput - OK - 0xFFFFF9600033E2F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       CMonitorAPI::DestroyPhysicalMonitor - OK - 0xFFFFF960003E959C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDoBanding - OK - 0xFFFFF960001CC690 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDrawEscape - OK - 0xFFFFF960003DDC58 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDwmCreatedBitmapRemotingOutput - OK - 0xFFFFF960003DC9D8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiDxgGenericThunk - OK - 0xFFFFF960003B243C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEllipse - OK - 0xFFFFF960003DF820 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEnableEudc - OK - 0xFFFFF96000357BFC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEndDoc - OK - 0xFFFFF960001CE2F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEndGdiRendering - OK - 0xFFFFF960002CBB5C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEndPage - OK - 0xFFFFF960003B6C38 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngAlphaBlend - OK - 0xFFFFF960003E7828 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngAssociateSurface - OK - 0xFFFFF9600018FFB8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngBitBlt - OK - 0xFFFFF960001ADA60 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCheckAbort - OK - 0xFFFFF960003E53AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngComputeGlyphSet - OK - 0xFFFFF960003E52F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCopyBits - OK - 0xFFFFF960001828B8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCreateBitmap - OK - 0xFFFFF9600018EFC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCreateClip - OK - 0xFFFFF960003E6EF4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCreateDeviceBitmap - OK - 0xFFFFF960003E5D00 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCreateDeviceSurface - OK - 0xFFFFF9600018FEA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngCreatePalette - OK - 0xFFFFF9600018E960 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngDeleteClip - OK - 0xFFFFF960003E6E78 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngDeletePalette - OK - 0xFFFFF960001CE57C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngDeletePath - OK - 0xFFFFF960003E6F44 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngDeleteSurface - OK - 0xFFFFF960001CE5CC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngEraseSurface - OK - 0xFFFFF960003E7024 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngFillPath - OK - 0xFFFFF960003E80D4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngGradientFill - OK - 0xFFFFF960003E73A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngLineTo - OK - 0xFFFFF960003E7A88 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngLockSurface - OK - 0xFFFFF9600018F1F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngMarkBandingSurface - OK - 0xFFFFF9600018FF30 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngPaint - OK - 0xFFFFF960003E7C90 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngPlgBlt - OK - 0xFFFFF960003E853C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngStretchBlt - OK - 0xFFFFF960001BA0CC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngStretchBltROP - OK - 0xFFFFF960001BC8CC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngStrokeAndFillPath - OK - 0xFFFFF960003E7E0C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngStrokePath - OK - 0xFFFFF960003E82B4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngTextOut - OK - 0xFFFFF960001ADF00 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngTransparentBlt - OK - 0xFFFFF960003E7170 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEngUnlockSurface - OK - 0xFFFFF960001CE754 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEnumFonts - OK - 0xFFFFF960001DCB40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEnumObjects - OK - 0xFFFFF960003ED0A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiEudcLoadUnloadLink - OK - 0xFFFFF960003EAD1C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiExtFloodFill - OK - 0xFFFFF9600031C564 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_cGetAllGlyphHandles - OK - 0xFFFFF960003E6500 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_cGetGlyphs - OK - 0xFFFFF960003E6614 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_pQueryGlyphAttrs - OK - 0xFFFFF960003E6204 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_pfdg - OK - 0xFFFFF960003E6330 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_pifi - OK - 0xFFFFF960001AC098 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_pvTrueTypeFontFile - OK - 0xFFFFF960003E561C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_pxoGetXform - OK - 0xFFFFF960001B04D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFONTOBJ_vGetInfo - OK - 0xFFFFF960003E687C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFlattenPath - OK - 0xFFFFF960003E28AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFontIsLinked - OK - 0xFFFFF9600033A104 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiForceUFIMapping - OK - 0xFFFFF960001AFB70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiFrameRgn - OK - 0xFFFFF960002CAA50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInitTask - OK - 0xFFFFF960003CC1E4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetBoundsRect - OK - 0xFFFFF960002D2660 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCOPPCompatibleOPMInformation - OK - 0xFFFFF960003E8DFC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCertificate - OK - 0xFFFFF9600033EEE0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCertificateSize - OK - 0xFFFFF9600033E334 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCharABCWidthsW - OK - 0xFFFFF960002D0FC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetCharacterPlacementW - OK - 0xFFFFF960003DE080 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetColorAdjustment - OK - 0xFFFFF960003DDB2C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetColorSpaceforBitmap - OK - 0xFFFFF960003E0C38 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDeviceCaps - OK - 0xFFFFF96000227CA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDeviceCapsAll - OK - 0xFFFFF9600018EA50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDeviceGammaRamp - OK - 0xFFFFF960003E3094 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDeviceWidth - OK - 0xFFFFF960003DCC9C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetDhpdev - OK - 0xFFFFF960003E5EA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetETM - OK - 0xFFFFF960002C6B24 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetEmbUFI - OK - 0xFFFFF960003DD08C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetEmbedFonts - OK - 0xFFFFF960003DD234 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetEudcTimeStampEx - OK - 0xFFFFF960003EB424 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetFontFileData - OK - 0xFFFFF960003ED8F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetFontFileInfo - OK - 0xFFFFF96000343FC4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetFontResourceInfoInternalW - OK - 0xFFFFF960003DD23C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetFontUnicodeRanges - OK - 0xFFFFF960002D1B4C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetGlyphIndicesW - OK - 0xFFFFF960001DC944 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetGlyphIndicesWInternal - OK - 0xFFFFF960001E3614 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetGlyphOutline - OK - 0xFFFFF96000338F6C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetKerningPairs - OK - 0xFFFFF960002D157C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetLinkedUFIs - OK - 0xFFFFF96000298120 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetMiterLimit - OK - 0xFFFFF9600034FC64 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetMonitorID - OK - 0xFFFFF960003C81EC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetNumberOfPhysicalMonitors - OK - 0xFFFFF960003E9858 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetOPMInformation - OK - 0xFFFFF9600033F1A8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetOPMRandomNumber - OK - 0xFFFFF9600033EFFC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetObjectBitmapHandle - OK - 0xFFFFF960003DDB7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetPath - OK - 0xFFFFF960003E20DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetPerBandInfo - OK - 0xFFFFF960001AAE40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetPhysicalMonitorDescription - OK - 0xFFFFF960003E9720 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetPhysicalMonitors - OK - 0xFFFFF960003E97B8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetRealizationInfo - OK - 0xFFFFF960001DC640 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetServerMetaFileBits - OK - 0xFFFFF960003E90F4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       CCompositionBuffer::GetWindow(void) - OK - 0xFFFFF96000248FF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetStats - OK - 0xFFFFF960003EE7DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetStringBitmapW - OK - 0xFFFFF960003EAC20 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetSuggestedOPMProtectedOutputArraySize - OK - 0xFFFFF9600033E79C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetTextExtentExW - OK - 0xFFFFF96000280920 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetUFI - OK - 0xFFFFF96000297E80 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGetUFIPathname - OK - 0xFFFFF960003DCD18 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiGradientFill - OK - 0xFFFFF960002ACB1C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiHLSurfGetInformation - OK - 0xFFFFF960002D5640 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiHLSurfSetInformation - OK - 0xFFFFF960002B5D00 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiHT_Get8BPPFormatPalette - OK - 0xFFFFF960003E5224 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiHT_Get8BPPMaskPalette - OK - 0xFFFFF96000178AE4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiIcmBrushInfo - OK - 0xFFFFF960003E2A5C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NlsNullProc(tagKE *,unsigned __int64,ulong) - OK - 0xFFFFF9600020AF54 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiInitSpool - OK - 0xFFFFF960003C7CF8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMakeFontDir - OK - 0xFFFFF960003DC9EC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMakeInfoDC - OK - 0xFFFFF96000334490 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMakeObjectUnXferable - OK - 0xFFFFF960002CF2A4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMakeObjectXferable - OK - 0xFFFFF960002CF190 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMirrorWindowOrg - OK - 0xFFFFF960003DCCA4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMonoBitmap - OK - 0xFFFFF960003E0AB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiMoveTo - OK - 0xFFFFF960003DD99C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiOffsetClipRgn - OK - 0xFFFFF960001AC49C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPATHOBJ_bEnum - OK - 0xFFFFF960003E5AD4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPATHOBJ_bEnumClipLines - OK - 0xFFFFF960003E5710 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPATHOBJ_vEnumStart - OK - 0xFFFFF960003E5A2C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPATHOBJ_vEnumStartClipLines - OK - 0xFFFFF960003E58C8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPATHOBJ_vGetBounds - OK - 0xFFFFF960003E5C5C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPathToRegion - OK - 0xFFFFF960003E25E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPlgBlt - OK - 0xFFFFF9600031DF94 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPolyDraw - OK - 0xFFFFF960003DDE30 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPolyTextOutW - OK - 0xFFFFF960001D9BB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPtInRegion - OK - 0xFFFFF9600031D9B4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiPtVisible - OK - 0xFFFFF960003C5150 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiQueryFonts - OK - 0xFFFFF9600018FD50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRemoveFontResourceW - OK - 0xFFFFF960003DD450 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRemoveMergeFont - OK - 0xFFFFF960003B6854 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiResetDC - OK - 0xFFFFF960001781F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiResizePalette - OK - 0xFFFFF960003E10E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiRoundRect - OK - 0xFFFFF960002C91F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSTROBJ_bEnum - OK - 0xFFFFF960003E60B8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSTROBJ_bEnumPositionsOnly - OK - 0xFFFFF960003E60B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSTROBJ_bGetAdvanceWidths - OK - 0xFFFFF960003E5FB4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSTROBJ_dwGetCodePage - OK - 0xFFFFF960003E5EE0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSTROBJ_vEnumStart - OK - 0xFFFFF960003E5F48 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiScaleViewportExtEx - OK - 0xFFFFF960003D36C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiScaleWindowExtEx - OK - 0xFFFFF960003DCC4C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSelectBrush - OK - 0xFFFFF960003DD9E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSelectClipPath - OK - 0xFFFFF960001BD9BC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSelectPen - OK - 0xFFFFF960003DD9E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBitmapAttributes - OK - 0xFFFFF9600033B548 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetBrushAttributes - OK - 0xFFFFF960003DD950 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetColorAdjustment - OK - 0xFFFFF960003DD9F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetColorSpace - OK - 0xFFFFF960002CCE70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetDeviceGammaRamp - OK - 0xFFFFF960003E2FF4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetFontXform - OK - 0xFFFFF960001853A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetIcmMode - OK - 0xFFFFF960001CC3B4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetLinkedUFIs - OK - 0xFFFFF960001AC8C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetMagicColors - OK - 0xFFFFF960003E0DC4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetOPMSigningKeyAndSequenceNumbers - OK - 0xFFFFF9600033F728 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetPUMPDOBJ - OK - 0xFFFFF960001CB710 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetPixelFormat - OK - 0xFFFFF960003EEE00 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetRectRgn - OK - 0xFFFFF960003DD920 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetSizeDevice - OK - 0xFFFFF960001ABCD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetSystemPaletteUse - OK - 0xFFFFF960003DD994 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetTextJustification - OK - 0xFFFFF960003E0418 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSetUMPDSandboxState - OK - 0xFFFFF96000358988 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiStartDoc - OK - 0xFFFFF9600018E2C4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiStartPage - OK - 0xFFFFF96000197AC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiStrokeAndFillPath - OK - 0xFFFFF960003E2478 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiStrokePath - OK - 0xFFFFF960003E2330 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiSwapBuffers - OK - 0xFFFFF960003EEC48 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiTransparentBlt - OK - 0xFFFFF96000296468 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiUMPDEngFreeUserMem - OK - 0xFFFFF960003E5D40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       CCompositionBuffer::GetWindow(void) - OK - 0xFFFFF96000248FF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NlsNullProc(tagKE *,unsigned __int64,ulong) - OK - 0xFFFFF9600020AF54 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiUpdateColors - OK - 0xFFFFF960003E0E8C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiUpdateTransform - OK - 0xFFFFF960003D3544 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiWidenPath - OK - 0xFFFFF960003E273C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiXFORMOBJ_bApplyXform - OK - 0xFFFFF960003E6970 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiXFORMOBJ_iGetXform - OK - 0xFFFFF960001B03E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiXLATEOBJ_cGetPalette - OK - 0xFFFFF960003E54AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiXLATEOBJ_hGetColorTransform - OK - 0xFFFFF960003E55AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtGdiXLATEOBJ_iXlate - OK - 0xFFFFF960003E542C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtNotifyPresentToCompositionSurface - OK - 0xFFFFF960003A3AA8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtOpenCompositionSurfaceDirtyRegion - OK - 0xFFFFF9600030EBA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtOpenCompositionSurfaceSectionInfo - OK - 0xFFFFF960003A3310 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtOpenCompositionSurfaceSwapChainHandleInfo - OK - 0xFFFFF96000310270 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtQueryCompositionSurfaceBinding - OK - 0xFFFFF960003104A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtQueryCompositionSurfaceRenderingRealization - OK - 0xFFFFF9600030FB38 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtQueryCompositionSurfaceStatistics - OK - 0xFFFFF96000323DD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtSetCompositionSurfaceOutOfFrameDirectFlipNotification - OK - 0xFFFFF96000311074 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtSetCompositionSurfaceStatistics - OK - 0xFFFFF9600030F93C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtTokenManagerGetOutOfFrameDirectFlipSurfaceUpdates - OK - 0xFFFFF9600030DE10 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtTokenManagerOpenEvent - OK - 0xFFFFF96000356A90 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtTokenManagerThread - OK - 0xFFFFF9600031111C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUnBindCompositionSurface - OK - 0xFFFFF9600031086C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserAcquireIAMKey - OK - 0xFFFFF96000336340 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserAddClipboardFormatListener - OK - 0xFFFFF96000356FA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserAssociateInputContext - OK - 0xFFFFF9600033C480 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserAutoPromoteMouseInPointer - OK - 0xFFFFF9600034D1CC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserAutoRotateScreen - OK - 0xFFFFF96000341AB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserBlockInput - OK - 0xFFFFF9600035FA0C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserBuildHimcList - OK - 0xFFFFF960003409B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserBuildPropList - OK - 0xFFFFF9600035FCF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCalculatePopupWindowPosition - OK - 0xFFFFF9600035A95C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCallHwndOpt - OK - 0xFFFFF9600035497C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCanBrokerForceForeground - OK - 0xFFFFF9600034F25C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserChangeDisplaySettings - OK - 0xFFFFF960003420D4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserChangeWindowMessageFilterEx - OK - 0xFFFFF960002B1854 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCheckAccessForIntegrityLevel - OK - 0xFFFFF9600035C000 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCheckProcessForClipboardAccess - OK - 0xFFFFF96000359660 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCheckProcessSession - OK - 0xFFFFF960002F1890 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCheckWindowThreadDesktop - OK - 0xFFFFF960003600E4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserChildWindowFromPointEx - OK - 0xFFFFF9600031D800 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserClipCursor - OK - 0xFFFFF9600034C794 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateDCompositionHwndTarget - OK - 0xFFFFF96000311790 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateDesktopEx - OK - 0xFFFFF960001CFCBC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateInputContext - OK - 0xFFFFF960003563D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCreateWindowStation - OK - 0xFFFFF960001CF150 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserCtxDisplayIOCtl - OK - 0xFFFFF96000362870 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDeferWindowPosAndBand - OK - 0xFFFFF96000331D90 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDelegateCapturePointers - OK - 0xFFFFF9600032FF50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDelegateInput - OK - 0xFFFFF960003458D4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDestroyDCompositionHwndTarget - OK - 0xFFFFF96000311210 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDestroyInputContext - OK - 0xFFFFF960002EDF00 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDisableImmersiveOwner - OK - 0xFFFFF9600032FA94 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDisableProcessWindowFiltering - OK - 0xFFFFF96000341A48 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDisableThreadIme - OK - 0xFFFFF9600020DF50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDiscardPointerFrameMessages - OK - 0xFFFFF9600035A330 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDisplayConfigGetDeviceInfo - OK - 0xFFFFF960002A4F50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDisplayConfigSetDeviceInfo - OK - 0xFFFFF9600035EF90 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDoSoundConnect - OK - 0xFFFFF960003045DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDoSoundDisconnect - OK - 0xFFFFF9600035C518 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDragDetect - OK - 0xFFFFF9600035FB70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDragObject - OK - 0xFFFFF960003622F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDrawAnimatedRects - OK - 0xFFFFF96000361414 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDrawCaption - OK - 0xFFFFF960003612F4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDrawCaptionTemp - OK - 0xFFFFF9600035EBB8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDrawMenuBarTemp - OK - 0xFFFFF9600035EE58 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDwmGetRemoteSessionOcclusionEvent - OK - 0xFFFFF9600035C8B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDwmGetRemoteSessionOcclusionState - OK - 0xFFFFF9600035C87C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDwmStartRedirection - OK - 0xFFFFF96000313E7C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDwmStopRedirection - OK - 0xFFFFF9600035C954 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserDwmValidateWindow - OK - 0xFFFFF9600033493C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnableIAMAccess - OK - 0xFFFFF96000336558 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnableMouseInPointer - OK - 0xFFFFF960002E3964 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEnableMouseInputForCursorSuppression - OK - 0xFFFFF96000315F40 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEndMenu - OK - 0xFFFFF960003512DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserEvent - OK - 0xFFFFF96000361FD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserFlashWindowEx - OK - 0xFFFFF9600035D050 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserFrostCrashedWindow - OK - 0xFFFFF9600035C418 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetAppImeLevel - OK - 0xFFFFF9600035D74C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetAutoRotationState - OK - 0xFFFFF9600034F368 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCIMSSM - OK - 0xFFFFF9600035A188 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCaretPos - OK - 0xFFFFF9600034A5D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipCursor - OK - 0xFFFFF96000361684 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipboardAccessToken - OK - 0xFFFFF96000359570 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetClipboardViewer - OK - 0xFFFFF96000360FF8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetComboBoxInfo - OK - 0xFFFFF9600033D2F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCurrentInputMessageSource - OK - 0xFFFFF96000332274 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetCursorInfo - OK - 0xFFFFF960002F0CCC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetDesktopID - OK - 0xFFFFF9600033E024 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetDisplayAutoRotationPreferences - OK - 0xFFFFF96000351428 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetDisplayAutoRotationPreferencesByProcessId - OK - 0xFFFFF96000341BD4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetDisplayConfigBufferSizes - OK - 0xFFFFF960003435B4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetGestureConfig - OK - 0xFFFFF960003554B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetGestureExtArgs - OK - 0xFFFFF9600035A3C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetGestureInfo - OK - 0xFFFFF9600035A508 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetGlobalIMEStatus - OK - 0xFFFFF9600033605C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetGuiResources - OK - 0xFFFFF960003621AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetImeHotKey - OK - 0xFFFFF9600035D880 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetImeInfoEx - OK - 0xFFFFF9600032D348 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetInputLocaleInfo - OK - 0xFFFFF9600035F710 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetInternalWindowPos - OK - 0xFFFFF96000361E18 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetKeyNameText - OK - 0xFFFFF9600035F8A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetKeyboardLayoutName - OK - 0xFFFFF96000348070 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetLayeredWindowAttributes - OK - 0xFFFFF9600035CF00 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetListBoxInfo - OK - 0xFFFFF96000361CE8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetMenuIndex - OK - 0xFFFFF96000361600 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetMenuItemRect - OK - 0xFFFFF960003476E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetMouseMovePointsEx - OK - 0xFFFFF96000360828 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetPointerCursorId - OK - 0xFFFFF960003578C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetPointerDevice - OK - 0xFFFFF960002EB870 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetPointerDeviceCursors - OK - 0xFFFFF960002EB4A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetPointerDeviceProperties - OK - 0xFFFFF960002EB5EC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetPointerDeviceRects - OK - 0xFFFFF960002EBD68 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetPointerDevices - OK - 0xFFFFF960002EB928 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetPointerInfoList - OK - 0xFFFFF960002E0D88 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetPointerType - OK - 0xFFFFF960003493F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetPriorityClipboardFormat - OK - 0xFFFFF96000360F18 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetProcessUIContextInformation - OK - 0xFFFFF9600020C5D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetQueueEventStatus - OK - 0xFFFFF9600033BE30 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetRawInputBuffer - OK - 0xFFFFF9600035CA44 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetRawInputData - OK - 0xFFFFF96000339568 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetRawInputDeviceInfo - OK - 0xFFFFF96000344428 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetRawInputDeviceList - OK - 0xFFFFF96000347AD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetRawPointerDeviceData - OK - 0xFFFFF960002ED498 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetRegisteredRawInputDevices - OK - 0xFFFFF9600035CDBC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetTopLevelWindow - OK - 0xFFFFF96000361914 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetTouchInputInfo - OK - 0xFFFFF9600035AB88 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetTouchValidationStatus - OK - 0xFFFFF96000359780 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetUpdatedClipboardFormats - OK - 0xFFFFF9600035C5E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWOWClass - OK - 0xFFFFF96000361F20 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowBand - OK - 0xFFFFF960002F2C70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowCompositionAttribute - OK - 0xFFFFF960002ADE20 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowCompositionInfo - OK - 0xFFFFF9600035C2A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowDisplayAffinity - OK - 0xFFFFF96000361844 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowFeedbackSetting - OK - 0xFFFFF960003495A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowMinimizeRect - OK - 0xFFFFF9600033B6E8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGetWindowRgnEx - OK - 0xFFFFF960002BAC50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserGhostWindowFromHungWindow - OK - 0xFFFFF960002A6190 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHandleDelegatedInput - OK - 0xFFFFF960003372A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHardErrorControl - OK - 0xFFFFF96000362774 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHidePointerContactVisualization - OK - 0xFFFFF96000352358 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHiliteMenuItem - OK - 0xFFFFF96000360E10 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHungWindowFromGhostWindow - OK - 0xFFFFF9600028FF00 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHwndQueryRedirectionInfo - OK - 0xFFFFF960002D66E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserHwndSetRedirectionInfo - OK - 0xFFFFF960002AB91C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserImpersonateDdeClientWindow - OK - 0xFFFFF9600035F950 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInitTask - OK - 0xFFFFF960003CC1E4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInitialize - OK - 0xFFFFF96000250660 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInitializeClientPfnArrays - OK - 0xFFFFF960002600EC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInitializeTouchInjection - OK - 0xFFFFF9600034DF50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInjectGesture - OK - 0xFFFFF9600035A688 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInjectTouchInput - OK - 0xFFFFF9600034B7F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInternalClipCursor - OK - 0xFFFFF9600034B3E4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserInternalGetWindowIcon - OK - 0xFFFFF96000350B30 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserIsMouseInPointerEnabled - OK - 0xFFFFF960003598A4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserIsMouseInputEnabled - OK - 0xFFFFF9600035973C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserIsTopLevelWindow - OK - 0xFFFFF960002B36AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserIsTouchWindow - OK - 0xFFFFF9600035849C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserLayoutCompleted - OK - 0xFFFFF960003507E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserLoadKeyboardLayoutEx - OK - 0xFFFFF9600027AE20 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserLockWindowStation - OK - 0xFFFFF96000355318 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserLockWorkStation - OK - 0xFFFFF96000355DC8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserLogicalToPhysicalPoint - OK - 0xFFFFF96000323800 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMNDragLeave - OK - 0xFFFFF96000360C3C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMNDragOver - OK - 0xFFFFF96000360C70 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMagControl - OK - 0xFFFFF9600035BDD8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMagGetContextInformation - OK - 0xFFFFF9600035B180 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMagSetContextInformation - OK - 0xFFFFF9600035B5F8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMenuItemFromPoint - OK - 0xFFFFF96000360498 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserMinMaximize - OK - 0xFFFFF96000360D34 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserModifyWindowTouchCapability - OK - 0xFFFFF96000350DAC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserNotifyIMEStatus - OK - 0xFFFFF96000337B58 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserOpenInputDesktop - OK - 0xFFFFF960003144DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserOpenThreadDesktop - OK - 0xFFFFF96000355AC8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPaintMonitor - OK - 0xFFFFF96000361134 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPhysicalToLogicalPoint - OK - 0xFFFFF96000330E84 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPrintWindow - OK - 0xFFFFF9600035CE34 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPromoteMouseInPointer - OK - 0xFFFFF9600035983C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserPromotePointer - OK - 0xFFFFF960003529D0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserQueryBSDRWindow - OK - 0xFFFFF960003597FC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserQueryDisplayConfig - OK - 0xFFFFF960002F98B8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserQueryInformationThread - OK - 0xFFFFF960003602DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserQueryInputContext - OK - 0xFFFFF960002D5344 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserQuerySendMessage - OK - 0xFFFFF9600035FA50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRealChildWindowFromPoint - OK - 0xFFFFF96000361C94 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRealWaitMessageEx - OK - 0xFFFFF960003606AC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterBSDRWindow - OK - 0xFFFFF96000357248 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterEdgy - OK - 0xFFFFF9600033FDA0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterErrorReportingDialog - OK - 0xFFFFF9600035C498 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterHotKey - OK - 0xFFFFF960002F08DC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterPointerDeviceNotifications - OK - 0xFFFFF960002E5318 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterPointerInputTarget - OK - 0xFFFFF9600035A248 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterRawInputDevices - OK - 0xFFFFF960002F8B44 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterServicesProcess - OK - 0xFFFFF9600035BE68 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterSessionPort - OK - 0xFFFFF960002C5290 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterTasklist - OK - 0xFFFFF96000361DB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterTouchHitTestingWindow - OK - 0xFFFFF96000316DF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRegisterUserApiHook - OK - 0xFFFFF96000353508 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoteConnect - OK - 0xFFFFF960002C4E80 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoteRedrawRectangle - OK - 0xFFFFF96000362A60 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoteRedrawScreen - OK - 0xFFFFF960003629FC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoteStopScreenUpdates - OK - 0xFFFFF960003629A0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserRemoveClipboardFormatListener - OK - 0xFFFFF96000313FB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserResolveDesktopForWOW - OK - 0xFFFFF96000362480 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSendEventMessage - OK - 0xFFFFF9600034345C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetActiveProcess - OK - 0xFFFFF960002A5508 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetAppImeLevel - OK - 0xFFFFF9600035D7D8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetAutoRotation - OK - 0xFFFFF9600034FD64 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetBrokeredForeground - OK - 0xFFFFF96000336204 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetCalibrationData - OK - 0xFFFFF96000359EF0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetChildWindowNoActivate - OK - 0xFFFFF96000351FC8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetClassWord - OK - 0xFFFFF96000360BCC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetCursorContents - OK - 0xFFFFF960003605C0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetDisplayAutoRotationPreferences - OK - 0xFFFFF9600034204C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetDisplayConfig - OK - 0xFFFFF9600035F1B0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetDisplayMapping - OK - 0xFFFFF96000359DA8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetFallbackForeground - OK - 0xFFFFF960003363F4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetGestureConfig - OK - 0xFFFFF96000304DB4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetImeHotKey - OK - 0xFFFFF96000282D90 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetImeInfoEx - OK - 0xFFFFF96000313C74 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetImeOwnerWindow - OK - 0xFFFFF96000293964 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetImmersiveBackgroundWindow - OK - 0xFFFFF96000355CCC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetInternalWindowPos - OK - 0xFFFFF96000361970 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetLayeredWindowAttributes - OK - 0xFFFFF96000294DD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetMenu - OK - 0xFFFFF9600028FCB8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetMenuContextHelpId - OK - 0xFFFFF96000361594 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetMenuFlagRtoL - OK - 0xFFFFF96000361540 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetMirrorRendering - OK - 0xFFFFF960003609F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetObjectInformation - OK - 0xFFFFF96000362618 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetProcessDPIAware - OK - 0xFFFFF960001DFADC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetProcessRestrictionExemption - OK - 0xFFFFF960003598E0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetProcessUIAccessZorder - OK - 0xFFFFF9600035C594 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetSensorPresence - OK - 0xFFFFF9600034FDF4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetShellWindowEx - OK - 0xFFFFF960003146D8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetSysColors - OK - 0xFFFFF96000304810 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetSystemCursor - OK - 0xFFFFF96000360650 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetSystemTimer - OK - 0xFFFFF9600035FAE0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetThreadInputBlocked - OK - 0xFFFFF9600032AD50 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetThreadLayoutHandles - OK - 0xFFFFF9600035D690 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowBand - OK - 0xFFFFF96000331B98 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowCompositionAttribute - OK - 0xFFFFF96000291724 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowCompositionTransition - OK - 0xFFFFF96000342374 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowDisplayAffinity - OK - 0xFFFFF96000361790 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowFeedbackSetting - OK - 0xFFFFF9600033C2A8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowRgnEx - OK - 0xFFFFF9600034EE74 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowStationUser - OK - 0xFFFFF96000283004 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserShowSystemCursor - OK - 0xFFFFF96000360980 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserShutdownBlockReasonCreate - OK - 0xFFFFF96000359BC4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserShutdownBlockReasonQuery - OK - 0xFFFFF960003599F0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserShutdownReasonDestroy - OK - 0xFFFFF96000359950 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSignalRedirectionStartComplete - OK - 0xFFFFF96000357CBC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSlicerControl - OK - 0xFFFFF9600035ACE0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSoundSentry - OK - 0xFFFFF960003602A8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSwitchDesktop - OK - 0xFFFFF96000276794 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserTestForInteractiveUser - OK - 0xFFFFF9600036022C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserTrackPopupMenuEx - OK - 0xFFFFF9600028A050 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUndelegateInput - OK - 0xFFFFF96000337150 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnloadKeyboardLayout - OK - 0xFFFFF9600035FBF8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnlockWindowStation - OK - 0xFFFFF96000354AB0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnregisterHotKey - OK - 0xFFFFF960002F02FC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnregisterSessionPort - OK - 0xFFFFF9600035C9EC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUnregisterUserApiHook - OK - 0xFFFFF96000361D68 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUpdateDefaultDesktopThumbnail - OK - 0xFFFFF9600035C150 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUpdateInputContext - OK - 0xFFFFF96000339BD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUpdateInstance - OK - 0xFFFFF960003620BC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUpdateLayeredWindow - OK - 0xFFFFF960002B31EC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUpdatePerUserSystemParameters - OK - 0xFFFFF960002745A8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUpdateWindowTransform - OK - 0xFFFFF9600035D178 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserUserHandleGrantAccess - OK - 0xFFFFF9600035FE20 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserValidateHandleSecure - OK - 0xFFFFF960001E7584 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWaitAvailableMessageEx - OK - 0xFFFFF960002F1E90 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWaitForInputIdle - OK - 0xFFFFF96000346328 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWaitForMsgAndEvent - OK - 0xFFFFF9600036244C - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWaitForRedirectionStartComplete - OK - 0xFFFFF9600035C7C8 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserWindowFromPhysicalPoint - OK - 0xFFFFF96000338AFC - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtValidateCompositionSurfaceHandle - OK - 0xFFFFF9600030EFD0 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetClassLongPtr - OK - 0xFFFFF960003469B4 - C:\Windows\System32\win32k.sys - Microsoft Corporation
       NtUserSetWindowLongPtr - OK - 0xFFFFF960001E4CC0 - C:\Windows\System32\win32k.sys - Microsoft Corporation

==========================================================================================

FSD

       IRP_MJ_CREATE - OK - 0xFFFFF88002369620 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0xFFFFF88002369C20 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0xFFFFF880022AC280 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0xFFFFF880022A65D0 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0xFFFFF8800234F660 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0xFFFFF88002361784 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0xFFFFF8800234F660 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0xFFFFF8800234F660 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0xFFFFF880023560D4 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0xFFFFF88002354C34 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0xFFFFF88002354C34 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0xFFFFF88002364780 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0xFFFFF8800238AD90 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0xFFFFF8800233ED00 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0xFFFFF880023FBC58 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0xFFFFF880022B0C1C - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0xFFFFF880023692E0 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0xFFFFF88002354C34 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0xFFFFF88002354C34 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_POWER - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0xFFFFF8800234F660 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0xFFFFF8800234F660 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0xFFFFF88002303000 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoCheckIfPossible[FastIo] - OK - 0xFFFFF880023E4D5C - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoRead[FastIo] - OK - 0xFFFFF8800234A560 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoWrite[FastIo] - OK - 0xFFFFF88002358D90 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoQueryBasicInfo[FastIo] - OK - 0xFFFFF88002347C40 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoQueryStandardInfo[FastIo] - OK - 0xFFFFF88002357DF0 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoLock[FastIo] - OK - 0xFFFFF880023AF510 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoUnlockSingle[FastIo] - OK - 0xFFFFF880023AF7F4 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoUnlockAll[FastIo] - OK - 0xFFFFF880023E4384 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoUnlockAllByKey[FastIo] - OK - 0xFFFFF880023E4100 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       ReleaseFileForNtCreateSection[FastIo] - OK - 0xFFFFF8800229CB70 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       FastIoQueryNetworkOpenInfo[FastIo] - OK - 0xFFFFF88002337E84 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       AcquireForModWrite[FastIo] - OK - 0xFFFFF880022AA11C - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       MdlRead[FastIo] - OK - 0xFFFFF8800234B470 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       MdlReadComplete[FastIo] - OK - 0xFFFFF803C62BE52C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PrepareMdlWrite[FastIo] - OK - 0xFFFFF8800234B330 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       MdlWriteComplete[FastIo] - OK - 0xFFFFF803C66585D4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       FastIoQueryOpen[FastIo] - OK - 0xFFFFF88002358B78 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       ReleaseForModWrite[FastIo] - OK - 0xFFFFF880022AA0F0 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       AcquireForCcFlush[FastIo] - OK - 0xFFFFF8800229A6AC - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation
       ReleaseForCcFlush[FastIo] - OK - 0xFFFFF8800229A650 - C:\Windows\System32\Drivers\Ntfs.sys - Microsoft Corporation

==========================================================================================

Keyboard

       IRP_MJ_CREATE - OK - 0xFFFFF88004ADFBB4 - C:\Windows\System32\drivers\kbdclass.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0xFFFFF88004AE0D00 - C:\Windows\System32\drivers\kbdclass.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0xFFFFF88004ADF940 - C:\Windows\System32\drivers\kbdclass.sys - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0xFFFFF88004AE1C68 - C:\Windows\System32\drivers\kbdclass.sys - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0xFFFFF88004AE6200 - C:\Windows\System32\drivers\kbdclass.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0xFFFFF88004AE846C - C:\Windows\System32\drivers\kbdclass.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0xFFFFF88004AE0F84 - C:\Windows\System32\drivers\kbdclass.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0xFFFFF88004AE6650 - C:\Windows\System32\drivers\kbdclass.sys - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0xFFFFF88004AE6AC4 - C:\Windows\System32\drivers\kbdclass.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0xFFFFF88004AE0570 - C:\Windows\System32\drivers\kbdclass.sys - Microsoft Corporation

==========================================================================================

Mouclass

       IRP_MJ_CREATE - OK - 0xFFFFF8800147ED2C - C:\Windows\System32\drivers\mouclass.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0xFFFFF8800147F05C - C:\Windows\System32\drivers\mouclass.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0xFFFFF8800147F618 - C:\Windows\System32\drivers\mouclass.sys - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0xFFFFF8800147EC58 - C:\Windows\System32\drivers\mouclass.sys - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0xFFFFF88001485A28 - C:\Windows\System32\drivers\mouclass.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0xFFFFF880014853F4 - C:\Windows\System32\drivers\mouclass.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0xFFFFF8800147EBCC - C:\Windows\System32\drivers\mouclass.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0xFFFFF88001486CB4 - C:\Windows\System32\drivers\mouclass.sys - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0xFFFFF8800148707C - C:\Windows\System32\drivers\mouclass.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0xFFFFF8800147FFF4 - C:\Windows\System32\drivers\mouclass.sys - Microsoft Corporation

==========================================================================================

Classpnp

       IRP_MJ_CREATE - OK - 0xFFFFF880014D3490 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0xFFFFF880014D3490 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_READ - OK - 0xFFFFF880014D3490 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0xFFFFF880014D3490 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0xFFFFF880014D3490 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0xFFFFF880014D3490 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0xFFFFF880014D3490 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0xFFFFF880014D3490 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0xFFFFF880014D3490 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0xFFFFF880014D3490 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0xFFFFF880014D3490 - C:\Windows\System32\drivers\CLASSPNP.SYS - Microsoft Corporation

==========================================================================================

Atapi

       IRP_MJ_CREATE - OK - 0xFFFFF88001F93508 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0xFFFFF88001F93508 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       IRP_MJ_READ - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0xFFFFF88001F74000 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0xFFFFF88001F73FE0 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0xFFFFF88001F74020 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0xFFFFF88001F8C7A4 - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0xFFFFF88001F8C69C - C:\Windows\System32\drivers\ataport.SYS - Microsoft Corporation

==========================================================================================

Acpi

       IRP_MJ_CREATE - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_POWER - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0xFFFFF8800118203C - C:\Windows\System32\drivers\ACPI.sys - Microsoft Corporation

==========================================================================================

Scsi

       IRP_MJ_CREATE - OK - 0xFFFFF8800163A920 - C:\Windows\System32\drivers\storport.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0xFFFFF8800163A838 - C:\Windows\System32\drivers\storport.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0xFFFFF88001605AD0 - C:\Windows\System32\drivers\storport.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0xFFFFF88001602660 - C:\Windows\System32\drivers\storport.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0xFFFFF8800160FDEC - C:\Windows\System32\drivers\storport.sys - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0xFFFFF8800163A774 - C:\Windows\System32\drivers\storport.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0xFFFFF8800160FED4 - C:\Windows\System32\drivers\storport.sys - Microsoft Corporation

==========================================================================================

Kernel Hook

       Inline - len(1) [ntoskrnl.exe] - [0xFFFFF803C63257DC]->[-]
       Inline - len(2) [ntoskrnl.exe] - [0xFFFFF803C63257EF]->[-]
       Inline - len(3) [ntoskrnl.exe] - [0xFFFFF803C63258BF]->[-]
       Inline - len(1) [ntoskrnl.exe] - [0xFFFFF803C6325A5C]->[-]
       Inline - len(2) [ntoskrnl.exe] - [0xFFFFF803C6325A6F]->[-]
       Inline - len(3) [ntoskrnl.exe] - [0xFFFFF803C6325B41]->[-]
       Inline - len(8) [kd.dll] - [0xFFFFF803C56BA038]->[-]
       Inline - len(32) [BOOTVID.dll] - [0xFFFFF88000DD3050]->[-]

==========================================================================================

PTE HOOK

       Nothing

==========================================================================================

Object Type

       CmpCloseKeyObject - CmpKeyObjectType - OK - 0xFFFFF803C66C29C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpDeleteKeyObject - CmpKeyObjectType - OK - 0xFFFFF803C66C2BF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpParseKey - CmpKeyObjectType - OK - 0xFFFFF803C66BC2F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpSecurityMethod - CmpKeyObjectType - OK - 0xFFFFF803C666DC40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpQueryKeyName - CmpKeyObjectType - OK - 0xFFFFF803C66643F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IopCloseFile - IoFileObjectType - OK - 0xFFFFF803C66E8DD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IopDeleteFile - IoFileObjectType - OK - 0xFFFFF803C66E2620 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IopParseFile - IoFileObjectType - OK - 0xFFFFF803C66EFA44 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IopGetSetSecurityObject - IoFileObjectType - OK - 0xFFFFF803C666F0A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IopQueryName - IoFileObjectType - OK - 0xFFFFF803C669D76C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IopDeleteDriver - IoDriverObjectType - OK - 0xFFFFF803C6711D40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - IoDriverObjectType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IopDeleteDevice - IoDeviceObjectType - OK - 0xFFFFF803C660CAAC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IopParseDevice - IoDeviceObjectType - OK - 0xFFFFF803C66CE8E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IopGetSetSecurityObject - IoDeviceObjectType - OK - 0xFFFFF803C666F0A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IopCloseIoCompletion - IoCompletionObjectType - OK - 0xFFFFF803C66A9594 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IopDeleteIoCompletion - IoCompletionObjectType - OK - 0xFFFFF803C6667D60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - IoCompletionObjectType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PspJobClose - PsJobType - OK - 0xFFFFF803C66AB95C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PspJobDelete - PsJobType - OK - 0xFFFFF803C62DDB10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - PsJobType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PspThreadOpen - PsThreadType - OK - 0xFFFFF803C66B3FEC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PspThreadDelete - PsThreadType - OK - 0xFFFFF803C66AF20C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - PsThreadType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PspProcessOpen - PsProcessType - OK - 0xFFFFF803C666EE20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PspProcessClose - PsProcessType - OK - 0xFFFFF803C668C9BC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       PspProcessDelete - PsProcessType - OK - 0xFFFFF803C66A6D9C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - PsProcessType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - ObpTypeObjectType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       ObpCloseDirectoryObject - ObpDirectoryObjectType - OK - 0xFFFFF803C66B6E94 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       ObpDeleteDirectoryObject - ObpDirectoryObjectType - OK - 0xFFFFF803C66B6EB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - ObpDirectoryObjectType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       MiSectionDelete - MmSectionObjectType - OK - 0xFFFFF803C66FBCDC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - MmSectionObjectType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - ExEventObjectType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       ExpDeleteMutant - ExMutantObjectType - OK - 0xFFFFF803C62D5320 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - ExMutantObjectType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - ExSemaphoreObjectType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SepTokenDeleteMethod - SeTokenObjectType - OK - 0xFFFFF803C66BAAE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - SeTokenObjectType - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OpenProcedure - TmTm - OK - 0xFFFFF88000DAC378 - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       CloseProcedure - TmTm - OK - 0xFFFFF88000DAC384 - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       DeleteProcedure - TmTm - OK - 0xFFFFF88000DAC4A0 - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       SeDefaultObjectMethod - TmTm - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OpenProcedure - Desktop - OK - 0xFFFFF803C66A34C4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - Desktop - OK - 0xFFFFF803C66A85EC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - Desktop - OK - 0xFFFFF803C67523C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - Desktop - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OkayToCloseProcedure - Desktop - OK - 0xFFFFF803C66A8B48 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - DebugObject - OK - 0xFFFFF803C67C3F20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - DebugObject - OK - 0xFFFFF803C66EDE94 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - DebugObject - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - TpWorkerFactory - OK - 0xFFFFF803C66A8B30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - TpWorkerFactory - OK - 0xFFFFF803C62DBA84 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - TpWorkerFactory - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - Adapter - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OpenProcedure - DxgkSharedResource - OK - 0xFFFFF8800450A114 - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       DeleteProcedure - DxgkSharedResource - OK - 0xFFFFF880044F0D10 - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       SeDefaultObjectMethod - DxgkSharedResource - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - EventPair - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OpenProcedure - PcwObject - OK - 0xFFFFF8800227C360 - C:\Windows\System32\drivers\pcw.sys - Microsoft Corporation
       CloseProcedure - PcwObject - OK - 0xFFFFF8800227C370 - C:\Windows\System32\drivers\pcw.sys - Microsoft Corporation
       DeleteProcedure - PcwObject - OK - 0xFFFFF8800227C394 - C:\Windows\System32\drivers\pcw.sys - Microsoft Corporation
       SeDefaultObjectMethod - PcwObject - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - WmiGuid - OK - 0xFFFFF803C6643E70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - WmiGuid - OK - 0xFFFFF803C6643DB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OpenProcedure - EtwRegistration - OK - 0xFFFFF803C668454C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - EtwRegistration - OK - 0xFFFFF803C6694AD8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - EtwRegistration - OK - 0xFFFFF803C6694768 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - EtwRegistration - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - Session - OK - 0xFFFFF803C67A2F40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - Session - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - Timer - OK - 0xFFFFF803C62D263C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - Timer - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - IRTimer - OK - 0xFFFFF803C64444A8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - IRTimer - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OpenProcedure - DxgkSharedSyncObject - OK - 0xFFFFF8800450A114 - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       DeleteProcedure - DxgkSharedSyncObject - OK - 0xFFFFF880044F2ADC - C:\Windows\System32\drivers\dxgkrnl.sys - Microsoft Corporation
       SeDefaultObjectMethod - DxgkSharedSyncObject - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OpenProcedure - WindowStation - OK - 0xFFFFF803C66A34C4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - WindowStation - OK - 0xFFFFF803C66A85EC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - WindowStation - OK - 0xFFFFF803C67523C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       ParseProcedure - WindowStation - OK - 0xFFFFF803C66A3550 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - WindowStation - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OkayToCloseProcedure - WindowStation - OK - 0xFFFFF803C66A8B48 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - Profile - OK - 0xFFFFF803C6839650 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - Profile - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OpenProcedure - EtwConsumer - OK - 0xFFFFF803C668454C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - EtwConsumer - OK - 0xFFFFF803C6620D24 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - EtwConsumer - OK - 0xFFFFF803C6620BC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - EtwConsumer - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OpenProcedure - CompositionSurface - OK - 0xFFFFF803C66A34C4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - CompositionSurface - OK - 0xFFFFF803C66A85EC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - CompositionSurface - OK - 0xFFFFF803C67523C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - CompositionSurface - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OkayToCloseProcedure - CompositionSurface - OK - 0xFFFFF803C66A8B48 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - TmTx - OK - 0xFFFFF88000DA68E0 - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       DeleteProcedure - TmTx - OK - 0xFFFFF88000DA6908 - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       SeDefaultObjectMethod - TmTx - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - SymbolicLink - OK - 0xFFFFF803C664D5BC - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       ParseProcedure - SymbolicLink - OK - 0xFFFFF803C66F4730 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - SymbolicLink - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - FilterConnectionPort - OK - 0xFFFFF880020B1AF8 - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       DeleteProcedure - FilterConnectionPort - OK - 0xFFFFF880020B1AA4 - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       SeDefaultObjectMethod - FilterConnectionPort - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - KeyedEvent - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - Callback - OK - 0xFFFFF803C66EDE94 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - Callback - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - WaitCompletionPacket - OK - 0xFFFFF803C62DB69C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - WaitCompletionPacket - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - UserApcReserve - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - Controller - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - IoCompletionReserve - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - TmEn - OK - 0xFFFFF88000DA5268 - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       DeleteProcedure - TmEn - OK - 0xFFFFF88000DA52A8 - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       SeDefaultObjectMethod - TmEn - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - FilterCommunicationPort - OK - 0xFFFFF880020B1B80 - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       DeleteProcedure - FilterCommunicationPort - OK - 0xFFFFF880020B1B6C - C:\Windows\system32\drivers\fltmgr.sys - Microsoft Corporation
       SeDefaultObjectMethod - FilterCommunicationPort - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - PowerRequest - OK - 0xFFFFF803C663A110 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - PowerRequest - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OpenProcedure - TmRm - OK - 0xFFFFF88000DA8EE8 - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       CloseProcedure - TmRm - OK - 0xFFFFF88000DA9030 - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       DeleteProcedure - TmRm - OK - 0xFFFFF88000DA9374 - C:\Windows\System32\drivers\tm.sys - Microsoft Corporation
       SeDefaultObjectMethod - TmRm - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       OpenProcedure - ALPC Port - OK - 0xFFFFF803C6681804 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CloseProcedure - ALPC Port - OK - 0xFFFFF803C668ECD4 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       DeleteProcedure - ALPC Port - OK - 0xFFFFF803C668F0D8 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SeDefaultObjectMethod - ALPC Port - OK - 0xFFFFF803C66F48E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       GetCellRoutine - HHIVE - OK - 0xFFFFF803C66C3360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpAllocate - HHIVE - OK - 0xFFFFF803C6660B04 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFree - HHIVE - OK - 0xFFFFF803C6660794 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileWrite - HHIVE - OK - 0xFFFFF803C6647FE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       CmpFileRead - HHIVE - OK - 0xFFFFF803C6730748 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation

==========================================================================================

IDT

       Divide error - cpu[0] - 0x02 - OK - 0xFFFFF803C62FB740 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Debug - cpu[0] - 0x02 - OK - 0xFFFFF803C62FB840 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[0] - 0x02 - OK - 0xFFFFF803C62FBA00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Breakpoint - cpu[0] - 0x02 - OK - 0xFFFFF803C62FBD80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Overflow - cpu[0] - 0x02 - OK - 0xFFFFF803C62FBE80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Bounds check - cpu[0] - 0x02 - OK - 0xFFFFF803C62FBF80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Invalid opcode - cpu[0] - 0x02 - OK - 0xFFFFF803C62FC080 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Device not available - cpu[0] - 0x02 - OK - 0xFFFFF803C62FC2C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Double fault - cpu[0] - 0x02 - OK - 0xFFFFF803C62FC380 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Coprocessor segment overrun - cpu[0] - 0x02 - OK - 0xFFFFF803C62FC440 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Invalid TSS - cpu[0] - 0x02 - OK - 0xFFFFF803C62FC500 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Segment not present - cpu[0] - 0x02 - OK - 0xFFFFF803C62FC5C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Stack segment fault - cpu[0] - 0x02 - OK - 0xFFFFF803C62FC700 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       General protection - cpu[0] - 0x02 - OK - 0xFFFFF803C62FC840 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Page Fault - cpu[0] - 0x02 - OK - 0xFFFFF803C62FC980 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F50F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Floating-point error - cpu[0] - 0x02 - OK - 0xFFFFF803C62FCD40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Alignment check - cpu[0] - 0x02 - OK - 0xFFFFF803C62FCEC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Machine check - cpu[0] - 0x02 - OK - 0xFFFFF803C62FCFC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SIMD floating point exception - cpu[0] - 0x02 - OK - 0xFFFFF803C62FD640 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5140 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5150 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5160 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5170 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5180 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5190 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F51A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F51B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F51C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F51D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C64F51E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[0] - 0x02 - OK - 0xFFFFF803C63610D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5200 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5210 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5220 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5230 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5240 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5250 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5260 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5270 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5280 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[0] - 0x02 - OK - 0xFFFFF803C62FD800 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiGetTickCount - cpu[0] - 0x02 - OK - 0xFFFFF803C64F52A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiCallbackReturn - cpu[0] - 0x02 - OK - 0xFFFFF803C64F52B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiSetLowWaitHighThread - cpu[0] - 0x02 - OK - 0xFFFFF803C62FD900 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiDebugService - cpu[0] - 0x02 - OK - 0xFFFFF803C62FDA00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiSystemService - cpu[0] - 0x02 - OK - 0xFFFFF803C64F52E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved for APIC - cpu[0] - 0x02 - OK - 0xFFFFF803C63C02D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiStartUnexpectedRange - cpu[0] - 0x02 - OK - 0xFFFFF803C62F69D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt1 - cpu[0] - 0x02 - OK - 0xFFFFF803C62F6D20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt2 - cpu[0] - 0x02 - OK - 0xFFFFF803C62F7060 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt3 - cpu[0] - 0x02 - OK - 0xFFFFF803C62F73A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt4 - cpu[0] - 0x02 - OK - 0xFFFFF803C62F76E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt5 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5350 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt6 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt7 - cpu[0] - 0x02 - OK - 0xFFFFF803C6264560 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt8 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5380 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt9 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5390 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt10 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F53A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt11 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F53B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt12 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F53C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt13 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F53D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt14 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F53E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt15 - cpu[0] - 0x02 - OK - 0xFFFFF803C62641F0 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt16 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5400 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt17 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5410 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt18 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5420 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt19 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5430 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt20 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5440 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt21 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5450 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt22 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5460 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt23 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5470 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt24 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5480 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt25 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5490 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt26 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F54A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt27 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F54B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt28 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F54C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt29 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F54D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt30 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F54E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt31 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F54F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt32 - cpu[0] - 0x02 - OK - 0xFFFFF803C6264090 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt33 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5510 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt34 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5520 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt35 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5530 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt36 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5540 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt37 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5550 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt38 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5560 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt39 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5570 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt40 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5580 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt41 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5590 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt42 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F55A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt43 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F55B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt44 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F55C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt45 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F55D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt46 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F55E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt47 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F55F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt48 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5600 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt49 - cpu[0] - 0x02 - idt hook - 0xFFFFF88003A58990 - unknown image - 
       KiUnexpectedInterrupt50 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5620 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt51 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5630 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt52 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5640 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt53 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5650 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt54 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5660 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt55 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5670 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt56 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5680 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt57 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5690 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt58 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F56A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt59 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F56B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt60 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F56C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt61 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F56D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt62 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F56E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt63 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F56F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt64 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5700 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt65 - cpu[0] - 0x02 - idt hook - 0xFFFFF88003A588D0 - unknown image - 
       KiUnexpectedInterrupt66 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5720 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt67 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5730 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt68 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5740 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt69 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5750 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt70 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5760 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt71 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5770 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt72 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5780 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt73 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5790 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt74 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F57A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt75 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F57B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt76 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F57C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt77 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F57D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt78 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F57E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt79 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F57F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt80 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5800 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt81 - cpu[0] - 0x02 - idt hook - 0xFFFFF88003A58810 - unknown image - 
       KiUnexpectedInterrupt82 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5820 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt83 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5830 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt84 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5840 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt85 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5850 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt86 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5860 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt87 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5870 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt88 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5880 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt89 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5890 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt90 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F58A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt91 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F58B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt92 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F58C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt93 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F58D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt94 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F58E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt95 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F58F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt96 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5900 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt97 - cpu[0] - 0x02 - idt hook - 0xFFFFF88003A58C90 - unknown image - 
       KiUnexpectedInterrupt98 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5920 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt99 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5930 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt100 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5940 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt101 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5950 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt102 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5960 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt103 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5970 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt104 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5980 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt105 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5990 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt106 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F59A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt107 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F59B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt108 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F59C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt109 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F59D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt110 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F59E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt111 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F59F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt112 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5A00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt113 - cpu[0] - 0x02 - idt hook - 0xFFFFF88003A58BD0 - unknown image - 
       KiUnexpectedInterrupt114 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5A20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt115 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5A30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt116 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5A40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt117 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5A50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt118 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5A60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt119 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5A70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt120 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5A80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt121 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5A90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt122 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5AA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt123 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5AB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt124 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5AC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt125 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5AD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt126 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5AE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt127 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5AF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt128 - cpu[0] - 0x02 - idt hook - 0xFFFFF88003A58F90 - unknown image - 
       KiUnexpectedInterrupt129 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5B10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt130 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5B20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt131 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5B30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt132 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5B40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt133 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5B50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt134 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5B60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt135 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5B70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt136 - cpu[0] - 0x02 - idt hook - 0xFFFFF88003A58A50 - unknown image - 
       KiUnexpectedInterrupt137 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5B90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt138 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5BA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt139 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5BB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt140 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5BC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt141 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5BD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt142 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5BE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt143 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5BF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt144 - cpu[0] - 0x02 - OK - 0xFFFFF803C62642A0 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt145 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5C10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt146 - cpu[0] - 0x02 - OK - 0xFFFFF803C62646C0 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt147 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5C30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt148 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5C40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt149 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5C50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt150 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5C60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt151 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5C70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt152 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5C80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt153 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5C90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt154 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5CA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt155 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5CB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt156 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5CC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt157 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5CD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt158 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5CE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt159 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5CF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt160 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5D00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt161 - cpu[0] - 0x02 - OK - 0xFFFFF803C6264610 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt162 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5D20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt163 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5D30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt164 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5D40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt165 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5D50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt166 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5D60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt167 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5D70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt168 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5D80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt169 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5D90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt170 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5DA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt171 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5DB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt172 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5DC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt173 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5DD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt174 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5DE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt175 - cpu[0] - 0x02 - OK - 0xFFFFF803C6264400 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt176 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5E00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt177 - cpu[0] - 0x02 - OK - 0xFFFFF803C62F4290 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt178 - cpu[0] - 0x02 - OK - 0xFFFFF803C6264350 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt179 - cpu[0] - 0x02 - OK - 0xFFFFF803C6264140 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt180 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5E40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt181 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5E50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt182 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5E60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt183 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5E70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt184 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5E80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt185 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5E90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt186 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5EA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt187 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5EB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt188 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5EC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt189 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5ED0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt190 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5EE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt191 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5EF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt192 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5F00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt193 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5F10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt194 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5F20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt195 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5F30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt196 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5F40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt197 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5F50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt198 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5F60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt199 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5F70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt200 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5F80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt201 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5F90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt202 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5FA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt203 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5FB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt204 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5FC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt205 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5FD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt206 - cpu[0] - 0x02 - OK - 0xFFFFF803C62644B0 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt207 - cpu[0] - 0x02 - OK - 0xFFFFF803C64F5FF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Divide error - cpu[1] - 0x02 - OK - 0xFFFFF803C62FB740 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Debug - cpu[1] - 0x02 - OK - 0xFFFFF803C62FB840 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[1] - 0x02 - OK - 0xFFFFF803C62FBA00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Breakpoint - cpu[1] - 0x02 - OK - 0xFFFFF803C62FBD80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Overflow - cpu[1] - 0x02 - OK - 0xFFFFF803C62FBE80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Bounds check - cpu[1] - 0x02 - OK - 0xFFFFF803C62FBF80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Invalid opcode - cpu[1] - 0x02 - OK - 0xFFFFF803C62FC080 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Device not available - cpu[1] - 0x02 - OK - 0xFFFFF803C62FC2C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Double fault - cpu[1] - 0x02 - OK - 0xFFFFF803C62FC380 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Coprocessor segment overrun - cpu[1] - 0x02 - OK - 0xFFFFF803C62FC440 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Invalid TSS - cpu[1] - 0x02 - OK - 0xFFFFF803C62FC500 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Segment not present - cpu[1] - 0x02 - OK - 0xFFFFF803C62FC5C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Stack segment fault - cpu[1] - 0x02 - OK - 0xFFFFF803C62FC700 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       General protection - cpu[1] - 0x02 - OK - 0xFFFFF803C62FC840 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Page Fault - cpu[1] - 0x02 - OK - 0xFFFFF803C62FC980 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F50F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Floating-point error - cpu[1] - 0x02 - OK - 0xFFFFF803C62FCD40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Alignment check - cpu[1] - 0x02 - OK - 0xFFFFF803C62FCEC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Machine check - cpu[1] - 0x02 - OK - 0xFFFFF803C62FCFC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       SIMD floating point exception - cpu[1] - 0x02 - OK - 0xFFFFF803C62FD640 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5140 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5150 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5160 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5170 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5180 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5190 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F51A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F51B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F51C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F51D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C64F51E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved by Intel - cpu[1] - 0x02 - OK - 0xFFFFF803C63610D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5200 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5210 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5220 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5230 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5240 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5250 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5260 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5270 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5280 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Not used - cpu[1] - 0x02 - OK - 0xFFFFF803C62FD800 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiGetTickCount - cpu[1] - 0x02 - OK - 0xFFFFF803C64F52A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiCallbackReturn - cpu[1] - 0x02 - OK - 0xFFFFF803C64F52B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiSetLowWaitHighThread - cpu[1] - 0x02 - OK - 0xFFFFF803C62FD900 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiDebugService - cpu[1] - 0x02 - OK - 0xFFFFF803C62FDA00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiSystemService - cpu[1] - 0x02 - OK - 0xFFFFF803C64F52E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       Reserved for APIC - cpu[1] - 0x02 - OK - 0xFFFFF803C63C02D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiStartUnexpectedRange - cpu[1] - 0x02 - OK - 0xFFFFF803C62F69D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt1 - cpu[1] - 0x02 - OK - 0xFFFFF803C62F6D20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt2 - cpu[1] - 0x02 - OK - 0xFFFFF803C62F7060 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt3 - cpu[1] - 0x02 - OK - 0xFFFFF803C62F73A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt4 - cpu[1] - 0x02 - OK - 0xFFFFF803C62F76E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt5 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5350 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt6 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5360 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt7 - cpu[1] - 0x02 - OK - 0xFFFFF803C6264560 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt8 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5380 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt9 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5390 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt10 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F53A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt11 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F53B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt12 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F53C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt13 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F53D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt14 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F53E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt15 - cpu[1] - 0x02 - OK - 0xFFFFF803C62641F0 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt16 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5400 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt17 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5410 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt18 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5420 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt19 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5430 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt20 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5440 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt21 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5450 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt22 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5460 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt23 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5470 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt24 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5480 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt25 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5490 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt26 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F54A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt27 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F54B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt28 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F54C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt29 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F54D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt30 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F54E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt31 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F54F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt32 - cpu[1] - 0x02 - OK - 0xFFFFF803C6264090 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt33 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5510 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt34 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5520 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt35 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5530 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt36 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5540 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt37 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5550 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt38 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5560 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt39 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5570 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt40 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5580 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt41 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5590 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt42 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F55A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt43 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F55B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt44 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F55C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt45 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F55D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt46 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F55E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt47 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F55F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt48 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5600 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt49 - cpu[1] - 0x02 - idt hook - 0xFFFFF88003A58990 - unknown image - 
       KiUnexpectedInterrupt50 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5620 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt51 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5630 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt52 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5640 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt53 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5650 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt54 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5660 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt55 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5670 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt56 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5680 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt57 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5690 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt58 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F56A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt59 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F56B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt60 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F56C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt61 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F56D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt62 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F56E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt63 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F56F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt64 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5700 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt65 - cpu[1] - 0x02 - idt hook - 0xFFFFF88003A588D0 - unknown image - 
       KiUnexpectedInterrupt66 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5720 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt67 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5730 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt68 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5740 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt69 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5750 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt70 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5760 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt71 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5770 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt72 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5780 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt73 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5790 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt74 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F57A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt75 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F57B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt76 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F57C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt77 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F57D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt78 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F57E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt79 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F57F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt80 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5800 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt81 - cpu[1] - 0x02 - idt hook - 0xFFFFF88003A58810 - unknown image - 
       KiUnexpectedInterrupt82 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5820 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt83 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5830 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt84 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5840 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt85 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5850 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt86 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5860 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt87 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5870 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt88 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5880 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt89 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5890 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt90 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F58A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt91 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F58B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt92 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F58C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt93 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F58D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt94 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F58E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt95 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F58F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt96 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5900 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt97 - cpu[1] - 0x02 - idt hook - 0xFFFFF88003A58C90 - unknown image - 
       KiUnexpectedInterrupt98 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5920 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt99 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5930 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt100 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5940 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt101 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5950 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt102 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5960 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt103 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5970 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt104 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5980 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt105 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5990 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt106 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F59A0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt107 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F59B0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt108 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F59C0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt109 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F59D0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt110 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F59E0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt111 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F59F0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt112 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5A00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt113 - cpu[1] - 0x02 - idt hook - 0xFFFFF88003A58BD0 - unknown image - 
       KiUnexpectedInterrupt114 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5A20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt115 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5A30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt116 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5A40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt117 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5A50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt118 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5A60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt119 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5A70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt120 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5A80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt121 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5A90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt122 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5AA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt123 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5AB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt124 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5AC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt125 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5AD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt126 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5AE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt127 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5AF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt128 - cpu[1] - 0x02 - idt hook - 0xFFFFF88003A58F90 - unknown image - 
       KiUnexpectedInterrupt129 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5B10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt130 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5B20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt131 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5B30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt132 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5B40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt133 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5B50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt134 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5B60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt135 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5B70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt136 - cpu[1] - 0x02 - idt hook - 0xFFFFF88003A58A50 - unknown image - 
       KiUnexpectedInterrupt137 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5B90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt138 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5BA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt139 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5BB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt140 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5BC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt141 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5BD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt142 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5BE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt143 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5BF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt144 - cpu[1] - 0x02 - OK - 0xFFFFF803C62642A0 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt145 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5C10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt146 - cpu[1] - 0x02 - OK - 0xFFFFF803C62646C0 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt147 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5C30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt148 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5C40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt149 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5C50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt150 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5C60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt151 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5C70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt152 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5C80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt153 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5C90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt154 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5CA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt155 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5CB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt156 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5CC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt157 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5CD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt158 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5CE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt159 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5CF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt160 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5D00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt161 - cpu[1] - 0x02 - OK - 0xFFFFF803C6264610 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt162 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5D20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt163 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5D30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt164 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5D40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt165 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5D50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt166 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5D60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt167 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5D70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt168 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5D80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt169 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5D90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt170 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5DA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt171 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5DB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt172 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5DC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt173 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5DD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt174 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5DE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt175 - cpu[1] - 0x02 - OK - 0xFFFFF803C6264400 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt176 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5E00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt177 - cpu[1] - 0x02 - OK - 0xFFFFF803C62F4290 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt178 - cpu[1] - 0x02 - OK - 0xFFFFF803C6264350 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt179 - cpu[1] - 0x02 - OK - 0xFFFFF803C6264140 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt180 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5E40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt181 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5E50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt182 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5E60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt183 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5E70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt184 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5E80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt185 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5E90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt186 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5EA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt187 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5EB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt188 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5EC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt189 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5ED0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt190 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5EE0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt191 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5EF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt192 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5F00 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt193 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5F10 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt194 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5F20 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt195 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5F30 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt196 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5F40 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt197 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5F50 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt198 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5F60 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt199 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5F70 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt200 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5F80 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt201 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5F90 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt202 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5FA0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt203 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5FB0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt204 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5FC0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt205 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5FD0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       KiUnexpectedInterrupt206 - cpu[1] - 0x02 - OK - 0xFFFFF803C62644B0 - C:\Windows\system32\hal.dll - Microsoft Corporation
       KiUnexpectedInterrupt207 - cpu[1] - 0x02 - OK - 0xFFFFF803C64F5FF0 - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation

==========================================================================================

Message Hook

       PCHunter64.exe - C:\Users\GAMELASTER\Desktop\PCHunter64.exe - WH_CBT - PCHunter64.exe
       PCHunter64.exe - C:\Users\GAMELASTER\Desktop\PCHunter64.exe - WH_MSGFILTER - PCHunter64.exe

==========================================================================================

Process Hook

      Image File Name[972 svchost.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[1968 firefox.exe]Process Hook
             inline - len(2) ntdll.dll->LdrLoadDll - 0x00000000770A71BB->_
             inline - len(7) ntdll.dll - 0x00000000770A71B6->_
             inline - len(5) KERNEL32.DLL->MapViewOfFile - 0x000000007527520F->_
             inline - len(5) KERNEL32.DLL->SetUnhandledExceptionFilter - 0x00000000752757E6->_
             inline - len(5) KERNEL32.DLL->VirtualAlloc - 0x000000007527592E->_
             inline - len(2) GDI32.dll->CreateDIBSection - 0x0000000075514144->_
             inline - len(7) GDI32.dll - 0x000000007551413F->_

------------------------------------------------------------------------------------------

      Image File Name[996 svchost.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[332 smss.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[876 svchost.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[548 lsass.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[768 dwm.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[404 csrss.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[440 wininit.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[912 svchost.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[456 csrss.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[1844 PCHunter64.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[484 winlogon.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[540 services.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[632 svchost.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[680 svchost.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[1292 dllhost.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[944 svchost.exe]Process Hook
             Nothing

------------------------------------------------------------------------------------------

      Image File Name[1060 explorer.exe]Process Hook
             inline - len(6) ntdll.dll->NtQueryLicenseValue - 0x000007FFF29E3ED1->_
             inline - len(6) ntdll.dll->ZwQueryLicenseValue - 0x000007FFF29E3ED1->_
             inline - len(5) KERNELBASE.dll->GetModuleFileNameW - 0x000007FFEF9E2120->_
             inline - len(2) twinui.dll - 0x000007FFEA7D6EF4->_
             inline - len(3) Windows.UI.Immersive.dll - 0x000007FFEB559EB9->_
             inline - len(7) slc.dll->SLIsWindowsGenuineLocal - 0x000007FFED41D724->_
             inline - len(5) sppc.dll->SLIsGenuineLocalEx - 0x000007FFEA06CBF4->_

------------------------------------------------------------------------------------------

      Image File Name[1088 ctfmon.exe]Process Hook
             Nothing

==========================================================================================

KernelCallbackTable

      Image File Name[4 System]KernelCallbackTable

------------------------------------------------------------------------------------------

      Image File Name[972 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnNCDESTROY - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTDRAG - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDEVICECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOWERBROADCAST - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOPTINLPUINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOUTLPINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnSENTDDEMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientEventCallback - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFindMnemChar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeDDEHandle - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetCharsetInfo - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEFlags - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEHookData - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetListboxString - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetMessageMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadMenu - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPSMTextOut - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\SYSTEM32\user32.dll
             ClientExtTextOutW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCharToWchar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientAddFontResourceW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientThreadSetup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientDeliverUserApc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientNoMemoryPopup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientMonitorEnumProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCallWinEventProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWGetProcModule - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmLoadLayout - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmProcessKey - OK - C:\Windows\SYSTEM32\user32.dll
             fnIMECONTROL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadStringW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadOLE - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRegisterDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRevokeDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPrinterThunk - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCH - OK - C:\Windows\SYSTEM32\user32.dll
             fnGESTURE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\SYSTEM32\user32.dll
             fnEMPTY - OK - C:\Windows\SYSTEM32\user32.dll

------------------------------------------------------------------------------------------

      Image File Name[1968 firefox.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\SYSwow64\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\SYSwow64\USER32.dll
             fnDWORD - OK - C:\Windows\SYSwow64\USER32.dll
             fnNCDESTROY - OK - C:\Windows\SYSwow64\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\SYSwow64\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\SYSwow64\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSwow64\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\SYSwow64\USER32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\SYSwow64\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\SYSwow64\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\SYSwow64\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\SYSwow64\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\SYSwow64\USER32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\SYSwow64\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\SYSwow64\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\SYSwow64\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\SYSwow64\USER32.dll
             fnINSTRING - OK - C:\Windows\SYSwow64\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\SYSwow64\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\SYSwow64\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\SYSwow64\USER32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\SYSwow64\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\SYSwow64\USER32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\SYSwow64\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\SYSwow64\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\SYSwow64\USER32.dll
             fnOUTSTRING - OK - C:\Windows\SYSwow64\USER32.dll
             fnPOPTINLPUINT - OK - C:\Windows\SYSwow64\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\SYSwow64\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\SYSwow64\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\SYSwow64\USER32.dll
             fnHkINDWORD - OK - C:\Windows\SYSwow64\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\SYSwow64\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\SYSwow64\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\SYSwow64\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\SYSwow64\USER32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\SYSwow64\USER32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\SYSwow64\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\SYSwow64\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\SYSwow64\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\SYSwow64\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\SYSwow64\USER32.dll
             ClientCopyImage - OK - C:\Windows\SYSwow64\USER32.dll
             ClientEventCallback - OK - C:\Windows\SYSwow64\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\SYSwow64\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\SYSwow64\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\SYSwow64\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\SYSwow64\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\SYSwow64\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\SYSwow64\USER32.dll
             ClientGetListboxString - OK - C:\Windows\SYSwow64\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\SYSwow64\USER32.dll
             ClientLoadImage - OK - C:\Windows\SYSwow64\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\SYSwow64\USER32.dll
             ClientLoadMenu - OK - C:\Windows\SYSwow64\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\SYSwow64\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\SYSwow64\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\SYSwow64\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\SYSwow64\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\SYSwow64\USER32.dll
             ClientCharToWchar - OK - C:\Windows\SYSwow64\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\SYSwow64\USER32.dll
             ClientThreadSetup - OK - C:\Windows\SYSwow64\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\SYSwow64\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\SYSwow64\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\SYSwow64\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\SYSwow64\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\SYSwow64\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\SYSwow64\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\SYSwow64\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\SYSwow64\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\SYSwow64\USER32.dll
             fnIMECONTROL - OK - C:\Windows\SYSwow64\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\SYSwow64\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\SYSwow64\USER32.dll
             ClientLoadStringW - OK - C:\Windows\SYSwow64\USER32.dll
             ClientLoadOLE - OK - C:\Windows\SYSwow64\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\SYSwow64\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\SYSwow64\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\SYSwow64\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\SYSwow64\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\SYSwow64\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\SYSwow64\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\SYSwow64\USER32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\SYSwow64\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\SYSwow64\USER32.dll
             fnTOUCH - OK - C:\Windows\SYSwow64\USER32.dll
             fnGESTURE - OK - C:\Windows\SYSwow64\USER32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\SYSwow64\USER32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\SYSwow64\USER32.dll
             fnEMPTY - OK - C:\Windows\SYSwow64\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[996 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnNCDESTROY - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTDRAG - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDEVICECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOWERBROADCAST - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOPTINLPUINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOUTLPINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnSENTDDEMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientEventCallback - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFindMnemChar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeDDEHandle - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetCharsetInfo - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEFlags - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEHookData - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetListboxString - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetMessageMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadMenu - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPSMTextOut - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\SYSTEM32\user32.dll
             ClientExtTextOutW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCharToWchar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientAddFontResourceW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientThreadSetup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientDeliverUserApc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientNoMemoryPopup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientMonitorEnumProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCallWinEventProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWGetProcModule - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmLoadLayout - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmProcessKey - OK - C:\Windows\SYSTEM32\user32.dll
             fnIMECONTROL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadStringW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadOLE - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRegisterDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRevokeDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPrinterThunk - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCH - OK - C:\Windows\SYSTEM32\user32.dll
             fnGESTURE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\SYSTEM32\user32.dll
             fnEMPTY - OK - C:\Windows\SYSTEM32\user32.dll

------------------------------------------------------------------------------------------

      Image File Name[332 smss.exe]KernelCallbackTable

------------------------------------------------------------------------------------------

      Image File Name[876 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnNCDESTROY - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTDRAG - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDEVICECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOWERBROADCAST - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOPTINLPUINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOUTLPINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnSENTDDEMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientEventCallback - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFindMnemChar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeDDEHandle - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetCharsetInfo - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEFlags - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEHookData - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetListboxString - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetMessageMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadMenu - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPSMTextOut - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\SYSTEM32\user32.dll
             ClientExtTextOutW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCharToWchar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientAddFontResourceW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientThreadSetup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientDeliverUserApc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientNoMemoryPopup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientMonitorEnumProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCallWinEventProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWGetProcModule - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmLoadLayout - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmProcessKey - OK - C:\Windows\SYSTEM32\user32.dll
             fnIMECONTROL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadStringW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadOLE - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRegisterDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRevokeDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPrinterThunk - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCH - OK - C:\Windows\SYSTEM32\user32.dll
             fnGESTURE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\SYSTEM32\user32.dll
             fnEMPTY - OK - C:\Windows\SYSTEM32\user32.dll

------------------------------------------------------------------------------------------

      Image File Name[548 lsass.exe]KernelCallbackTable

------------------------------------------------------------------------------------------

      Image File Name[768 dwm.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRING - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOPTINLPUINT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\system32\USER32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\system32\USER32.dll
             fnEMPTY - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[404 csrss.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRING - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOPTINLPUINT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\system32\USER32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\system32\USER32.dll
             fnEMPTY - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[440 wininit.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRING - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOPTINLPUINT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\system32\USER32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\system32\USER32.dll
             fnEMPTY - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[912 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnNCDESTROY - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTDRAG - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDEVICECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOWERBROADCAST - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOPTINLPUINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOUTLPINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnSENTDDEMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientEventCallback - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFindMnemChar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeDDEHandle - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetCharsetInfo - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEFlags - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEHookData - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetListboxString - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetMessageMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadMenu - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPSMTextOut - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\SYSTEM32\user32.dll
             ClientExtTextOutW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCharToWchar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientAddFontResourceW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientThreadSetup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientDeliverUserApc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientNoMemoryPopup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientMonitorEnumProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCallWinEventProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWGetProcModule - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmLoadLayout - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmProcessKey - OK - C:\Windows\SYSTEM32\user32.dll
             fnIMECONTROL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadStringW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadOLE - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRegisterDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRevokeDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPrinterThunk - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCH - OK - C:\Windows\SYSTEM32\user32.dll
             fnGESTURE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\SYSTEM32\user32.dll
             fnEMPTY - OK - C:\Windows\SYSTEM32\user32.dll

------------------------------------------------------------------------------------------

      Image File Name[456 csrss.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRING - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOPTINLPUINT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\system32\USER32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\system32\USER32.dll
             fnEMPTY - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1844 PCHunter64.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRING - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOPTINLPUINT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\system32\USER32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\system32\USER32.dll
             fnEMPTY - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[484 winlogon.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRING - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOPTINLPUINT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\system32\USER32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\system32\USER32.dll
             fnEMPTY - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[540 services.exe]KernelCallbackTable

------------------------------------------------------------------------------------------

      Image File Name[632 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnNCDESTROY - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTDRAG - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDEVICECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOWERBROADCAST - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOPTINLPUINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOUTLPINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnSENTDDEMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientEventCallback - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFindMnemChar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeDDEHandle - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetCharsetInfo - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEFlags - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEHookData - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetListboxString - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetMessageMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadMenu - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPSMTextOut - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\SYSTEM32\user32.dll
             ClientExtTextOutW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCharToWchar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientAddFontResourceW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientThreadSetup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientDeliverUserApc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientNoMemoryPopup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientMonitorEnumProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCallWinEventProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWGetProcModule - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmLoadLayout - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmProcessKey - OK - C:\Windows\SYSTEM32\user32.dll
             fnIMECONTROL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadStringW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadOLE - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRegisterDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRevokeDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPrinterThunk - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCH - OK - C:\Windows\SYSTEM32\user32.dll
             fnGESTURE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\SYSTEM32\user32.dll
             fnEMPTY - OK - C:\Windows\SYSTEM32\user32.dll

------------------------------------------------------------------------------------------

      Image File Name[680 svchost.exe]KernelCallbackTable

------------------------------------------------------------------------------------------

      Image File Name[1292 dllhost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnNCDESTROY - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTDRAG - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDEVICECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOWERBROADCAST - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOPTINLPUINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOUTLPINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnSENTDDEMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientEventCallback - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFindMnemChar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeDDEHandle - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetCharsetInfo - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEFlags - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEHookData - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetListboxString - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetMessageMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadMenu - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPSMTextOut - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\SYSTEM32\user32.dll
             ClientExtTextOutW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCharToWchar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientAddFontResourceW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientThreadSetup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientDeliverUserApc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientNoMemoryPopup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientMonitorEnumProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCallWinEventProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWGetProcModule - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmLoadLayout - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmProcessKey - OK - C:\Windows\SYSTEM32\user32.dll
             fnIMECONTROL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadStringW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadOLE - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRegisterDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRevokeDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPrinterThunk - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCH - OK - C:\Windows\SYSTEM32\user32.dll
             fnGESTURE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\SYSTEM32\user32.dll
             fnEMPTY - OK - C:\Windows\SYSTEM32\user32.dll

------------------------------------------------------------------------------------------

      Image File Name[944 svchost.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnNCDESTROY - OK - C:\Windows\SYSTEM32\user32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTDRAG - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnINSTRINGNULL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINDEVICECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOWERBROADCAST - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTSTRING - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOPTINLPUINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnPOUTLPINT - OK - C:\Windows\SYSTEM32\user32.dll
             fnSENTDDEMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINDWORD - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPMSG - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkINLPRECT - OK - C:\Windows\SYSTEM32\user32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\SYSTEM32\user32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCopyImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientEventCallback - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFindMnemChar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeDDEHandle - OK - C:\Windows\SYSTEM32\user32.dll
             ClientFreeLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetCharsetInfo - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEFlags - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetDDEHookData - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetListboxString - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetMessageMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadImage - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLibrary - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadMenu - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPSMTextOut - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\SYSTEM32\user32.dll
             ClientExtTextOutW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCharToWchar - OK - C:\Windows\SYSTEM32\user32.dll
             ClientAddFontResourceW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientThreadSetup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientDeliverUserApc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientNoMemoryPopup - OK - C:\Windows\SYSTEM32\user32.dll
             ClientMonitorEnumProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientCallWinEventProc - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWGetProcModule - OK - C:\Windows\SYSTEM32\user32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmLoadLayout - OK - C:\Windows\SYSTEM32\user32.dll
             ClientImmProcessKey - OK - C:\Windows\SYSTEM32\user32.dll
             fnIMECONTROL - OK - C:\Windows\SYSTEM32\user32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\SYSTEM32\user32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadStringW - OK - C:\Windows\SYSTEM32\user32.dll
             ClientLoadOLE - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRegisterDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             ClientRevokeDragDrop - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\SYSTEM32\user32.dll
             ClientPrinterThunk - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\SYSTEM32\user32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\SYSTEM32\user32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\SYSTEM32\user32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCH - OK - C:\Windows\SYSTEM32\user32.dll
             fnGESTURE - OK - C:\Windows\SYSTEM32\user32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\SYSTEM32\user32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\SYSTEM32\user32.dll
             fnEMPTY - OK - C:\Windows\SYSTEM32\user32.dll

------------------------------------------------------------------------------------------

      Image File Name[1060 explorer.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRING - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOPTINLPUINT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\system32\USER32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\system32\USER32.dll
             fnEMPTY - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[1088 ctfmon.exe]KernelCallbackTable
             fnCOPYDATA - OK - C:\Windows\system32\USER32.dll
             fnCOPYGLOBALDATA - OK - C:\Windows\system32\USER32.dll
             fnDWORD - OK - C:\Windows\system32\USER32.dll
             fnNCDESTROY - OK - C:\Windows\system32\USER32.dll
             fnDWORDOPTINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTDRAG - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnINCNTOUTSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINLPCOMPAREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDELETEITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPDRAWITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHELPINFOSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPHLPSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPMDICREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPMEASUREITEMSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnINLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPPOINT5 - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPSCROLLINFO - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnINOUTNCCALCSIZE - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPWINDOWPOS - OK - C:\Windows\system32\USER32.dll
             fnINPAINTCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSIZECLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINDESTROYCLIPBRD - OK - C:\Windows\system32\USER32.dll
             fnINSTRING - OK - C:\Windows\system32\USER32.dll
             fnINSTRINGNULL - OK - C:\Windows\system32\USER32.dll
             fnINDEVICECHANGE - OK - C:\Windows\system32\USER32.dll
             fnPOWERBROADCAST - OK - C:\Windows\system32\USER32.dll
             fnINOUTNEXTMENU - OK - C:\Windows\system32\USER32.dll
             fnOPTOUTLPDWORDOPTOUTLPDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTDWORDINDWORD - OK - C:\Windows\system32\USER32.dll
             fnOUTLPRECT - OK - C:\Windows\system32\USER32.dll
             fnOUTSTRING - OK - C:\Windows\system32\USER32.dll
             fnPOPTINLPUINT - OK - C:\Windows\system32\USER32.dll
             fnPOUTLPINT - OK - C:\Windows\system32\USER32.dll
             fnSENTDDEMSG - OK - C:\Windows\system32\USER32.dll
             fnINOUTSTYLECHANGE - OK - C:\Windows\system32\USER32.dll
             fnHkINDWORD - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTACTIVATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPCBTCREATESTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPDEBUGHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMOUSEHOOKSTRUCTEX - OK - C:\Windows\system32\USER32.dll
             fnHkINLPKBDLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSLLHOOKSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnHkINLPMSG - OK - C:\Windows\system32\USER32.dll
             fnHkINLPRECT - OK - C:\Windows\system32\USER32.dll
             fnHkOPTINLPEVENTMSG - OK - C:\Windows\system32\USER32.dll
             xxxClientCallDelegateThread - OK - C:\Windows\system32\USER32.dll
             xxxClientEnableMMCSS - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEIn2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut1 - OK - C:\Windows\system32\USER32.dll
             ClientCopyDDEOut2 - OK - C:\Windows\system32\USER32.dll
             ClientCopyImage - OK - C:\Windows\system32\USER32.dll
             ClientEventCallback - OK - C:\Windows\system32\USER32.dll
             ClientFindMnemChar - OK - C:\Windows\system32\USER32.dll
             ClientFreeDDEHandle - OK - C:\Windows\system32\USER32.dll
             ClientFreeLibrary - OK - C:\Windows\system32\USER32.dll
             ClientGetCharsetInfo - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEFlags - OK - C:\Windows\system32\USER32.dll
             ClientGetDDEHookData - OK - C:\Windows\system32\USER32.dll
             ClientGetListboxString - OK - C:\Windows\system32\USER32.dll
             ClientGetMessageMPH - OK - C:\Windows\system32\USER32.dll
             ClientLoadImage - OK - C:\Windows\system32\USER32.dll
             ClientLoadLibrary - OK - C:\Windows\system32\USER32.dll
             ClientLoadMenu - OK - C:\Windows\system32\USER32.dll
             ClientLoadLocalT1Fonts - OK - C:\Windows\system32\USER32.dll
             ClientPSMTextOut - OK - C:\Windows\system32\USER32.dll
             ClientLpkDrawTextEx - OK - C:\Windows\system32\USER32.dll
             ClientExtTextOutW - OK - C:\Windows\system32\USER32.dll
             ClientGetTextExtentPointW - OK - C:\Windows\system32\USER32.dll
             ClientCharToWchar - OK - C:\Windows\system32\USER32.dll
             ClientAddFontResourceW - OK - C:\Windows\system32\USER32.dll
             ClientThreadSetup - OK - C:\Windows\system32\USER32.dll
             ClientDeliverUserApc - OK - C:\Windows\system32\USER32.dll
             ClientNoMemoryPopup - OK - C:\Windows\system32\USER32.dll
             ClientMonitorEnumProc - OK - C:\Windows\system32\USER32.dll
             ClientCallWinEventProc - OK - C:\Windows\system32\USER32.dll
             ClientWaitMessageExMPH - OK - C:\Windows\system32\USER32.dll
             ClientWOWGetProcModule - OK - C:\Windows\system32\USER32.dll
             ClientWOWTask16SchedNotify - OK - C:\Windows\system32\USER32.dll
             ClientImmLoadLayout - OK - C:\Windows\system32\USER32.dll
             ClientImmProcessKey - OK - C:\Windows\system32\USER32.dll
             fnIMECONTROL - OK - C:\Windows\system32\USER32.dll
             fnINWPARAMDBCSCHAR - OK - C:\Windows\system32\USER32.dll
             fnGETTEXTLENGTHS - OK - C:\Windows\system32\USER32.dll
             fnINLPKDRAWSWITCHWND - OK - C:\Windows\system32\USER32.dll
             ClientLoadStringW - OK - C:\Windows\system32\USER32.dll
             ClientLoadOLE - OK - C:\Windows\system32\USER32.dll
             ClientRegisterDragDrop - OK - C:\Windows\system32\USER32.dll
             ClientRevokeDragDrop - OK - C:\Windows\system32\USER32.dll
             fnINOUTMENUGETOBJECT - OK - C:\Windows\system32\USER32.dll
             ClientPrinterThunk - OK - C:\Windows\system32\USER32.dll
             fnOUTLPCOMBOBOXINFO - OK - C:\Windows\system32\USER32.dll
             fnOUTLPSCROLLBARINFO - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENU - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHDRAWMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHINITMENU - OK - C:\Windows\system32\USER32.dll
             fnINOUTLPUAHMEASUREMENUITEM - OK - C:\Windows\system32\USER32.dll
             fnINLPUAHNCPAINTMENUPOPUP - OK - C:\Windows\system32\USER32.dll
             fnOUTLPTITLEBARINFOEX - OK - C:\Windows\system32\USER32.dll
             fnTOUCH - OK - C:\Windows\system32\USER32.dll
             fnGESTURE - OK - C:\Windows\system32\USER32.dll
             fnINPGESTURENOTIFYSTRUCT - OK - C:\Windows\system32\USER32.dll
             fnTOUCHHITTESTING - OK - C:\Windows\system32\USER32.dll
             fnEMPTY - OK - C:\Windows\system32\USER32.dll

------------------------------------------------------------------------------------------

      Image File Name[0 Idle]KernelCallbackTable

==========================================================================================

Port

       Tcp 0.0.0.0 : 135 - 0.0.0.0 : 0 - LISTENING - 680 - C:\Windows\System32\svchost.exe
       Tcp 0.0.0.0 : 1025 - 0.0.0.0 : 0 - LISTENING - 440 - C:\Windows\System32\wininit.exe
       Tcp 0.0.0.0 : 1026 - 0.0.0.0 : 0 - LISTENING - 876 - C:\Windows\System32\svchost.exe
       Tcp 0.0.0.0 : 1027 - 0.0.0.0 : 0 - LISTENING - 540 - C:\Windows\System32\services.exe
       Tcp 0.0.0.0 : 1028 - 0.0.0.0 : 0 - LISTENING - 548 - C:\Windows\System32\lsass.exe
       Tcp 127.0.0.1 : 1029 - 127.0.0.1 : 1030 - ESTABLISHED - 1968 - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
       Tcp 127.0.0.1 : 1030 - 127.0.0.1 : 1029 - ESTABLISHED - 1968 - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
       Tcp 0.0.0.0 : 16470 - 0.0.0.0 : 0 - LISTENING - 912 - C:\Windows\System32\svchost.exe
       Tcp 0.0.0.0 : 135 - 0.0.0.0 : 0 - LISTENING - 680 - C:\Windows\System32\svchost.exe
       Tcp 0.0.0.0 : 1025 - 0.0.0.0 : 0 - LISTENING - 440 - C:\Windows\System32\wininit.exe
       Tcp 0.0.0.0 : 1026 - 0.0.0.0 : 0 - LISTENING - 876 - C:\Windows\System32\svchost.exe
       Tcp 0.0.0.0 : 1027 - 0.0.0.0 : 0 - LISTENING - 540 - C:\Windows\System32\services.exe
       Tcp 0.0.0.0 : 1028 - 0.0.0.0 : 0 - LISTENING - 548 - C:\Windows\System32\lsass.exe
       Udp 0.0.0.0 : 16470 - * : * - 912 - C:\Windows\System32\svchost.exe
       Udp 0.0.0.0 : 49152 - * : * - 912 - C:\Windows\System32\svchost.exe
       Udp 127.0.0.1 : 49153 - * : * - 1844 - C:\Users\GAMELASTER\Desktop\PCHunter64.exe

==========================================================================================

Tcpip

       IRP_MJ_CREATE - OK - 0xFFFFF880027A232C - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0xFFFFF880027A232C - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0xFFFFF880027020E0 - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0xFFFFF880027A232C - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0xFFFFF880027A232C - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation

==========================================================================================

Nsiproxy

       IRP_MJ_CREATE - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_POWER - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0xFFFFF880073DF888 - C:\Windows\system32\drivers\nsiproxy.sys - Microsoft Corporation

==========================================================================================

Tdx

       IRP_MJ_CREATE - OK - 0xFFFFF88004B60CE0 - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_CREATE_NAMED_PIPE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLOSE - OK - 0xFFFFF88004B5E470 - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_READ - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_WRITE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_EA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FLUSH_BUFFERS - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_VOLUME_INFORMATION - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DIRECTORY_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_FILE_SYSTEM_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_DEVICE_CONTROL - OK - 0xFFFFF88004B61A40 - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_INTERNAL_DEVICE_CONTROL - OK - 0xFFFFF88004B5C5B0 - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_SHUTDOWN - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_LOCK_CONTROL - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_CLEANUP - OK - 0xFFFFF88004B5D400 - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_CREATE_MAILSLOT - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_SECURITY - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_POWER - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SYSTEM_CONTROL - OK - 0xFFFFF88004B62CF0 - C:\Windows\system32\DRIVERS\tdx.sys - Microsoft Corporation
       IRP_MJ_DEVICE_CHANGE - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_QUERY_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_SET_QUOTA - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation
       IRP_MJ_PNP_POWER - OK - 0xFFFFF803C62CC38C - C:\Windows\system32\ntoskrnl.exe - Microsoft Corporation

==========================================================================================

Ndis Handler

       0xFFFFFA8005AA5260 - NdisProtocolBlock - 0xFFFFF8800773B228 - StatusHandler - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005AA5260 - NdisProtocolBlock - 0xFFFFF8800773A764 - PnPEventHandler - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005AA5260 - NdisProtocolBlock - 0xFFFFF8800773A4E4 - BindAdapterHandlerEx - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005AA5260 - NdisProtocolBlock - 0xFFFFF8800773A6AC - UnbindAdapterHandlerEx - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005AA5260 - NdisProtocolBlock - 0xFFFFF8800773A670 - OpenAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005AA5260 - NdisProtocolBlock - 0xFFFFF8800773A730 - CloseAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005AA5260 - NdisProtocolBlock - 0xFFFFF8800773BF94 - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005AA5260 - NdisProtocolBlock - 0xFFFFF8800773D06C - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005AA5260 - NdisProtocolBlock - 0xFFFFF8800773B154 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF88002132440 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF880021324D8 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF880021325C4 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF8800773B228 - StatusHandler - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF8800773D06C - ProtSendNetBufferListsComplete - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF8800773BF94 - ReceiveNetBufferLists - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF880048A4710 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005A9C830 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF88002132440 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF880021324D8 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF880021325C4 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF8800773B228 - StatusHandler - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF8800773D06C - ProtSendNetBufferListsComplete - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF8800773BF94 - ReceiveNetBufferLists - C:\Windows\system32\DRIVERS\ndisuio.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF8800460379C - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA6850 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A9A010 - PnPEventHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A90D6C - CoStatusHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A8EE0C - CoAfRegisterNotifyHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A8E280 - BindAdapterHandlerEx - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A8F884 - UnbindAdapterHandlerEx - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A9A088 - OpenAdapterCompleteHandlerEx - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A9A0C0 - CloseAdapterCompleteHandlerEx - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A90DF8 - ReceiveNetBufferListsHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A90DF8 - SendNetBufferListsCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A90E10 - CoReceiveNetBufferListsHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A90DF8 - CoSendNetBufferListsCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB4010 - NdisProtocolBlock - 0xFFFFF88004A8DDE0 - OidRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88004827188 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88004A90DF8 - CmDeactivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ProtSendNetBufferListsComplete - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ReceiveNetBufferLists - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88004827188 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88004826010 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88004A90CE0 - CoOidRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF88004A8FF88 - CoOidRequestHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F9A010 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88004827188 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88004A95010 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88004A95010 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88004A95010 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ProtSendNetBufferListsComplete - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ReceiveNetBufferLists - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88004827188 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88004826010 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88004A8EA6C - CoOidRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF88004A90680 - CoOidRequestHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F98BA0 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF8800480244C - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF88004A90DF8 - CmDeactivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ProtSendNetBufferListsComplete - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ReceiveNetBufferLists - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF8800480244C - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF88004801010 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF88004A90CE0 - CoOidRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF88004A8FF88 - CoOidRequestHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99730 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF8800480244C - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF88004A95010 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF88004A95010 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF88004A95010 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ProtSendNetBufferListsComplete - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ReceiveNetBufferLists - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF8800480244C - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF88004801010 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF88004A8EA6C - CoOidRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF88004A90680 - CoOidRequestHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F99BA0 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF880049C25D0 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF88004A90DF8 - CmDeactivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ProtSendNetBufferListsComplete - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ReceiveNetBufferLists - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF880049C25D0 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF880049C0230 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF88004A90CE0 - CoOidRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF88004A8FF88 - CoOidRequestHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F3F010 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF880049C25D0 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF88004A95010 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF88004A95010 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF88004A95010 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ProtSendNetBufferListsComplete - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ReceiveNetBufferLists - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF880049C25D0 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF880049C0230 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF88004A8EA6C - CoOidRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF88004A90680 - CoOidRequestHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004F468E0 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF880047513A0 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88004744380 - MiniportCoCreateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88004A90DF8 - CmDeactivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ProtSendNetBufferListsComplete - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ReceiveNetBufferLists - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF880047513A0 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88004742240 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88004A90CE0 - CoOidRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF88004A8FF88 - CoOidRequestHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDA010 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF880047513A0 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF88004744380 - MiniportCoCreateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF88004A95010 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF88004A95010 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF88004A95010 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ProtSendNetBufferListsComplete - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ReceiveNetBufferLists - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF880047513A0 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF88004742240 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF88004A8EA6C - CoOidRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF88004A90680 - CoOidRequestHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CDB2E0 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88004725EE0 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88004A90CD4 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - CmDeactivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ProtSendNetBufferListsComplete - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ReceiveNetBufferLists - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88004725EE0 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88004724010 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88004A90CE0 - CoOidRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF88004A8FF88 - CoOidRequestHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CBABA0 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88004725EE0 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88004A95010 - CoCreateVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88004A95010 - CoDeleteVcHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88004A95010 - CmActivateVcCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ProtSendNetBufferListsComplete - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88004A90DF8 - ReceiveNetBufferLists - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88004725EE0 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88004724010 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88004A8EA6C - CoOidRequestCompleteHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF88004A90680 - CoOidRequestHandler - C:\Windows\System32\Drivers\NDProxy.SYS - Microsoft Corporation
       0xFFFFFA8004CB3BA0 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CBB010 - NdisProtocolBlock - 0xFFFFF8800482AC78 - StatusHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBB010 - NdisProtocolBlock - 0xFFFFF88004827E68 - PnPEventHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBB010 - NdisProtocolBlock - 0xFFFFF880048278D0 - BindAdapterHandlerEx - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBB010 - NdisProtocolBlock - 0xFFFFF8800482A964 - UnbindAdapterHandlerEx - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBB010 - NdisProtocolBlock - 0xFFFFF8800482A64C - OpenAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBB010 - NdisProtocolBlock - 0xFFFFF8800482ABE4 - CloseAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBB010 - NdisProtocolBlock - 0xFFFFF88004827188 - UninstallHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBB010 - NdisProtocolBlock - 0xFFFFF88004838158 - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBB010 - NdisProtocolBlock - 0xFFFFF88004838048 - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBB010 - NdisProtocolBlock - 0xFFFFF8800482A720 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FEE90 - OpenAdapterCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FEDB8 - CloseAdapterCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FEA8C - (Wan)SendCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FED10 - ResetCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FE728 - RequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FE7F8 - (Wan)ReceiveHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FEC98 - ReceiveCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FEBF8 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FB300 - StatusCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FE374 - BindAdapterHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FE234 - UnbindAdapterHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FC2F0 - PnPEventHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C784D0 - NdisProtocolBlock - 0xFFFFF880046FE1BC - UnloadHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF880046FB3A0 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF880046FA320 - PnPEventHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF880046F79D0 - CoStatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF880046FB3F0 - CoAfRegisterNotifyHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF880046FB050 - BindAdapterHandlerEx - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF880046FB710 - UnbindAdapterHandlerEx - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF8800471D120 - OpenAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF8800471D1A0 - CloseAdapterCompleteHandlerEx - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF880046FDE90 - UninstallHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF88004714B28 - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF88004714B28 - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF880046F55C0 - CoReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF880046F61D0 - CoSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C788A0 - NdisProtocolBlock - 0xFFFFF880046FB310 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880046FB3A0 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF88004827188 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880046F8890 - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880046F8890 - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880046F8890 - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF88004714B28 - ProtSendNetBufferListsComplete - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF88004714B28 - ReceiveNetBufferLists - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF88004827188 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF88004826010 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880046F6E80 - CoOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880046FDC98 - CoOidRequestHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F9CBA0 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880046FB3A0 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF8800480244C - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880046F8890 - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880046F8890 - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880046F8890 - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF88004714B28 - ProtSendNetBufferListsComplete - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF88004714B28 - ReceiveNetBufferLists - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF8800480244C - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF88004801010 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880046F6E80 - CoOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880046FDC98 - CoOidRequestHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F99010 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880046FB3A0 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880049C25D0 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880046F8890 - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880046F8890 - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880046F8890 - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF88004714B28 - ProtSendNetBufferListsComplete - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF88004714B28 - ReceiveNetBufferLists - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880049C25D0 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880049C0230 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880046F6E80 - CoOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880046FDC98 - CoOidRequestHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F41010 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880046FB3A0 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880047513A0 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF88004744380 - MiniportCoCreateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880046F8890 - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880046F8890 - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880046F8890 - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF88004714B28 - ProtSendNetBufferListsComplete - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF88004714B28 - ReceiveNetBufferLists - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880047513A0 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF88004742240 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880046F6E80 - CoOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880046FDC98 - CoOidRequestHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CDBBA0 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880021292D0 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF88002132078 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880046FB3A0 - StatusHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF88004725EE0 - CancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880046F8890 - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880046F8890 - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880046F8890 - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF88004714B28 - ProtSendNetBufferListsComplete - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF88004714B28 - ReceiveNetBufferLists - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF88004725EE0 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF88004724010 - MiniportCoOidRequestHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880046F6E80 - CoOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880046FDC98 - CoOidRequestHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004CB2BA0 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF880027099B8 - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF880026F1AB0 - PnPEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF880027FAB34 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF880027FABF0 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF880027FABB0 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF880027FACA0 - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF880027FACE0 - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF880026F8628 - BindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF880026F434C - UnbindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF880027FC4E0 - OpenAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF880026F16D0 - CloseAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF88002765550 - ReceiveNetBufferListsHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF8800277B9E0 - SendNetBufferListsCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF8800276E00C - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004963810 - NdisProtocolBlock - 0xFFFFF8800276E00C - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF88002132440 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880021324D8 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880021325C4 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027099B8 - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027FAB34 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027FABF0 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027FABB0 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027FACA0 - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027FACE0 - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027BAA34 - TcpOffloadSendCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027BAA34 - TcpOffloadReceiveCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027BAA34 - TcpOffloadDisconnectCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027BAA34 - TcpOffloadForwardCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027B81BC - TcpOffloadEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880027B791C - TcpOffloadReceiveIndicateHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF8800277B9E0 - ProtSendNetBufferListsComplete - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF88002765550 - ReceiveNetBufferLists - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF8800475C858 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F3E670 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF88002132440 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880021324D8 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880021325C4 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027099B8 - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027FAB34 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027FABF0 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027FABB0 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027FACA0 - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027FACE0 - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027BAA34 - TcpOffloadSendCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027BAA34 - TcpOffloadReceiveCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027BAA34 - TcpOffloadDisconnectCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027BAA34 - TcpOffloadForwardCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027B81BC - TcpOffloadEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880027B791C - TcpOffloadReceiveIndicateHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF8800277B9E0 - ProtSendNetBufferListsComplete - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF88002765550 - ReceiveNetBufferLists - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF8800475C858 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CD5010 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF880027099B8 - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF880027992AC - PnPEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF880027FAB34 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF880027FABF0 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF880027FABB0 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF880027FACA0 - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF880027FACE0 - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF880026F8628 - BindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF880026F434C - UnbindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF880027FC4E0 - OpenAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF880026F16D0 - CloseAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF88002765550 - ReceiveNetBufferListsHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF8800277B9E0 - SendNetBufferListsCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF8800276E00C - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80049680E0 - NdisProtocolBlock - 0xFFFFF8800276E00C - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF880027099B8 - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF88002787B90 - PnPEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF880027FAB34 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF880027FABF0 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF880027FABB0 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF880027FACA0 - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF880027FACE0 - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF880026F8628 - BindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF880026F434C - UnbindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF880027FC4E0 - OpenAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF880026F16D0 - CloseAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF88002765550 - ReceiveNetBufferListsHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF8800277B9E0 - SendNetBufferListsCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF8800276E00C - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045FF010 - NdisProtocolBlock - 0xFFFFF8800276E00C - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF88002132440 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880021324D8 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880021325C4 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027099B8 - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027FAB34 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027FABF0 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027FABB0 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027FACA0 - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027FACE0 - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadSendCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027FA4C4 - TcpOffloadReceiveCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadDisconnectCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadForwardCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027B81BC - TcpOffloadEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880027FA424 - TcpOffloadReceiveIndicateHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF8800277B9E0 - ProtSendNetBufferListsComplete - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF88002765550 - ReceiveNetBufferLists - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880048A4710 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA9C30 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF88002132440 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880021324D8 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880021325C4 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027099B8 - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027FAB34 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027FABF0 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027FABB0 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027FACA0 - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027FACE0 - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadSendCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027FA4C4 - TcpOffloadReceiveCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadDisconnectCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadForwardCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027B81BC - TcpOffloadEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880027FA424 - TcpOffloadReceiveIndicateHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF8800277B9E0 - ProtSendNetBufferListsComplete - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF88002765550 - ReceiveNetBufferLists - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF8800460379C - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052AA8D0 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF880027099B8 - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF88002787BAC - PnPEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF880027FAB34 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF880027FABF0 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF880027FABB0 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF880027FACA0 - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF880027FACE0 - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF880026F8628 - BindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF880026F434C - UnbindAdapterHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF880027FC4E0 - OpenAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF880026F16D0 - CloseAdapterCompleteHandlerEx - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF88002765550 - ReceiveNetBufferListsHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF8800277B9E0 - SendNetBufferListsCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF8800276E00C - OidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA80045DC690 - NdisProtocolBlock - 0xFFFFF8800276E00C - DirectOidRequestCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF88002132440 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880021324D8 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880021325C4 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027099B8 - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027FAB34 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027FABF0 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027FABB0 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027FACA0 - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027FACE0 - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadSendCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027FA4C4 - TcpOffloadReceiveCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadDisconnectCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadForwardCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027B81BC - TcpOffloadEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880027FA424 - TcpOffloadReceiveIndicateHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF8800277B9E0 - ProtSendNetBufferListsComplete - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF88002765550 - ReceiveNetBufferLists - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880048A4710 - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AA7C30 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF88002132440 - (Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880021278D0 - TransferDataHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF8800213D0C8 - ReceiveCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880021324D8 - SendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880021325C4 - ResetHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF88002119FB4 - RequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027099B8 - StatusHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027FAB34 - InitiateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027FABF0 - TerminateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027FABB0 - UpdateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027FACA0 - InvalidateOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027FACE0 - QueryOffloadCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadSendCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027FA4C4 - TcpOffloadReceiveCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadDisconnectCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027FA520 - TcpOffloadForwardCompleteHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027B81BC - TcpOffloadEventHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880027FA424 - TcpOffloadReceiveIndicateHandler - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880020F2910 - OidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF8800277B9E0 - ProtSendNetBufferListsComplete - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF88002765550 - ReceiveNetBufferLists - C:\Windows\System32\drivers\tcpip.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF8800460379C - SavedCancelSendPacketsHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880021292D0 - Saved(Wan)SendHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880020F2BB0 - OidRequestCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28340 - NdisOpenBlock - 0xFFFFF880020FEFCC - DirectOidRequestHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DB70C - SetOptionsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076EA0CC - SetFilterModuleOptionsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DB730 - AttachHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DC1D8 - DetachHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DBE3C - RestartHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DBC88 - PauseHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DCAC0 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076D5E94 - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DCBAC - CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076D5B9C - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DCB9C - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DC7D0 - OidRequestHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076D3128 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF88007706E4C - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DC918 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DC92C - NetPnPEventHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076D65D4 - StatusHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DC6F0 - DirectOidRequestHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AAE010 - NdisFilterDriverBlock - 0xFFFFF880076DC75C - DirectOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF88002986370 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF88004B4CC70 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF88004B4CE50 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF880029856C0 - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF88002126A50 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF880076DCAC0 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF880076D5E94 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF880076DCBAC - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF880076D5B9C - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF880076DCB9C - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF880020F3D20 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF8800212BD9C - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8005AB2880 - NdisFilterBlock - 0xFFFFF8800212AAB8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BF040 - SetOptionsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072C00BC - SetFilterModuleOptionsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BF064 - AttachHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BF58C - DetachHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BF440 - RestartHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BF3E4 - PauseHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BF8CC - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BF860 - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072C00A8 - CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BFDF0 - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BFC2C - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072C0D1C - OidRequestHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072C0E84 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072C0E04 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BF838 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BF84C - NetPnPEventHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE56C0 - NdisFilterDriverBlock - 0xFFFFF880072BF6CC - StatusHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF88004B4CCF4 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF88007295280 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF88007299BB4 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF88004B4CDCC - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF88004B4CF20 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF880072BF8CC - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF880072BF860 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF880072C00A8 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF880072BFDF0 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF880072BFC2C - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF880020F3D20 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF880020F0420 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052F08F0 - NdisFilterBlock - 0xFFFFF8800212AAB8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF88004B4CCF4 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF88007295280 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF88007299BB4 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF88004B4CDCC - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF88004B4CF20 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF880072BF8CC - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF880072BF860 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF880072C00A8 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF880072BFDF0 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF880072BFC2C - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF880020F3D20 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF880020F0420 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052E5B00 - NdisFilterBlock - 0xFFFFF8800212AAB8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF88004B4CCF4 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF88007295280 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF88007299BB4 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF88004B4CDCC - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF88004B4CF20 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF880072BF8CC - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF880072BF860 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF880072C00A8 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF880072BFDF0 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF880072BFC2C - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF880020F3D20 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF880020F0420 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F8CB00 - NdisFilterBlock - 0xFFFFF8800212AAB8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF88004B4CCF4 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF88007295280 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF8800210E9C0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF88004B4CDCC - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF88004B4CF20 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF880072BF8CC - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF880072BF860 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF880072C00A8 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF880072BFDF0 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF880072BFC2C - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF8800212BE14 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF8800212BD9C - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80052F0C80 - NdisFilterBlock - 0xFFFFF8800213D0C8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF88004B4CCF4 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF88007295280 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF8800210E9C0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF88004B4CDCC - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF88004B4CF20 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF880072BF8CC - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF880072BF860 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF880072C00A8 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF880072BFDF0 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF880072BFC2C - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF8800212BE14 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF8800212BD9C - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FCF010 - NdisFilterBlock - 0xFFFFF8800213D0C8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FD59F0 - NdisFilterDriverBlock - 0xFFFFF88007297230 - SetOptionsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD59F0 - NdisFilterDriverBlock - 0xFFFFF880072968E0 - SetFilterModuleOptionsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD59F0 - NdisFilterDriverBlock - 0xFFFFF88007296380 - AttachHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD59F0 - NdisFilterDriverBlock - 0xFFFFF8800729A5B0 - DetachHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD59F0 - NdisFilterDriverBlock - 0xFFFFF880072AA030 - RestartHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD59F0 - NdisFilterDriverBlock - 0xFFFFF88007295520 - PauseHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD59F0 - NdisFilterDriverBlock - 0xFFFFF880072950E0 - OidRequestHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD59F0 - NdisFilterDriverBlock - 0xFFFFF88007295010 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD59F0 - NdisFilterDriverBlock - 0xFFFFF880072AA1A0 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD59F0 - NdisFilterDriverBlock - 0xFFFFF880072AA010 - NetPnPEventHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD59F0 - NdisFilterDriverBlock - 0xFFFFF88007295460 - StatusHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF880072BF8CC - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF880020F3B00 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF8800210E9C0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF880072BFC2C - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF880072C00A8 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF88007295170 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF88007295280 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF88007299CE0 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF88007299BB4 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF880020F3D20 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF880020F0420 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FD3C80 - NdisFilterBlock - 0xFFFFF8800212AAB8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF880072BF8CC - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF880020F3B00 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF8800210E9C0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF880072BFC2C - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF880072C00A8 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF88007295170 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF88007295280 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF88007299CE0 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF88007299BB4 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF880020F3D20 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF880020F0420 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FE01E0 - NdisFilterBlock - 0xFFFFF8800212AAB8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF880072BF8CC - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF880020F3B00 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF8800210E9C0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF880072BFC2C - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF880072C00A8 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF88007295170 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF88007295280 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF88007299CE0 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF88007299BB4 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF880020F3D20 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF880020F0420 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FE0570 - NdisFilterBlock - 0xFFFFF8800212AAB8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FBC370 - NdisFilterBlock - 0xFFFFF880072BF8CC - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FBC370 - NdisFilterBlock - 0xFFFFF880020F3B00 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FBC370 - NdisFilterBlock - 0xFFFFF8800210E9C0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FBC370 - NdisFilterBlock - 0xFFFFF880072BFC2C - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FBC370 - NdisFilterBlock - 0xFFFFF880072C00A8 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FBC370 - NdisFilterBlock - 0xFFFFF88007295170 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FBC370 - NdisFilterBlock - 0xFFFFF88007295280 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FBC370 - NdisFilterBlock - 0xFFFFF88007299CE0 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FBC370 - NdisFilterBlock - 0xFFFFF8800212BE14 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FBC370 - NdisFilterBlock - 0xFFFFF8800212BD9C - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FBC370 - NdisFilterBlock - 0xFFFFF8800213D0C8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FB4880 - NdisFilterBlock - 0xFFFFF880072BF8CC - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FB4880 - NdisFilterBlock - 0xFFFFF880020F3B00 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FB4880 - NdisFilterBlock - 0xFFFFF8800210E9C0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FB4880 - NdisFilterBlock - 0xFFFFF880072BFC2C - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FB4880 - NdisFilterBlock - 0xFFFFF880072C00A8 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004FB4880 - NdisFilterBlock - 0xFFFFF88007295170 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FB4880 - NdisFilterBlock - 0xFFFFF88007295280 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FB4880 - NdisFilterBlock - 0xFFFFF88007299CE0 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004FB4880 - NdisFilterBlock - 0xFFFFF8800212BE14 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FB4880 - NdisFilterBlock - 0xFFFFF8800212BD9C - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004FB4880 - NdisFilterBlock - 0xFFFFF8800213D0C8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4C3D8 - SetOptionsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4CFFC - SetFilterModuleOptionsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4C3FC - AttachHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4C8EC - DetachHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4C75C - RestartHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4C5EC - PauseHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4CCF4 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4CC70 - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4CF20 - CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4CE50 - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4CDCC - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4C9EC - OidRequestHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4CB28 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4CAA8 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4CC48 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4CC5C - NetPnPEventHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004EFD010 - NdisFilterDriverBlock - 0xFFFFF88004B4CC34 - StatusHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF880076DCAC0 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF880072BF860 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF880072BFDF0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF880076DCB9C - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF880076DCBAC - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF88004B4CCF4 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF88004B4CC70 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF88004B4CF20 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF88004B4CE50 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF88004B4CDCC - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF8800212BE14 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF8800212BD9C - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004D3D010 - NdisFilterBlock - 0xFFFFF8800213D0C8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF880020F75B0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF880072BF860 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF880072BFDF0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF880046F5A50 - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF88002126A50 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF88004B4CCF4 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF88004B4CC70 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF88004B4CF20 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF88004B4CE50 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF88004B4CDCC - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF880020F3D20 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF880020F0420 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F92C80 - NdisFilterBlock - 0xFFFFF8800212AAB8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF880020F75B0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF880072BF860 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF880072BFDF0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF880046F5A50 - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF88002126A50 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF88004B4CCF4 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF88004B4CC70 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF88004B4CF20 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF88004B4CE50 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF88004B4CDCC - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF880020F3D20 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF880020F0420 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F96620 - NdisFilterBlock - 0xFFFFF8800212AAB8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF880020F75B0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF880072BF860 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF880072BFDF0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF880046F5A50 - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF88002126A50 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF88004B4CCF4 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF88004B4CC70 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF88004B4CF20 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF88004B4CE50 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF88004B4CDCC - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF880020F3D20 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF880020F0420 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F9C010 - NdisFilterBlock - 0xFFFFF8800212AAB8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF88002986370 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF880072BF860 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF880072BFDF0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF880029856C0 - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF88002126A50 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF88004B4CCF4 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF88004B4CC70 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF88004B4CF20 - Characteristics.CancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF88004B4CE50 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF88004B4CDCC - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF8800212BE14 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF8800212BD9C - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F418F0 - NdisFilterBlock - 0xFFFFF8800213D0C8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8003669C60 - NdisFilterDriverBlock - 0xFFFFF8800298E128 - SetFilterModuleOptionsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8003669C60 - NdisFilterDriverBlock - 0xFFFFF8800298DD30 - AttachHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8003669C60 - NdisFilterDriverBlock - 0xFFFFF8800298E5E0 - DetachHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8003669C60 - NdisFilterDriverBlock - 0xFFFFF8800298E4D0 - RestartHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8003669C60 - NdisFilterDriverBlock - 0xFFFFF88002987728 - PauseHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8003669C60 - NdisFilterDriverBlock - 0xFFFFF8800298F8F8 - OidRequestHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8003669C60 - NdisFilterDriverBlock - 0xFFFFF8800298FBBC - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8003669C60 - NdisFilterDriverBlock - 0xFFFFF88002989940 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8003669C60 - NdisFilterDriverBlock - 0xFFFFF8800298E260 - NetPnPEventHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8003669C60 - NdisFilterDriverBlock - 0xFFFFF88002986440 - StatusHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF88002987478 - SetFilterModuleOptionsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF880029879F8 - AttachHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF8800298983C - DetachHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF880029875B0 - RestartHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF88002987728 - PauseHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF88002986370 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF880029862B0 - SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF88002985780 - ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF880029856C0 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF880029860A4 - OidRequestHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF88002985E38 - OidRequestCompleteHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF88002989940 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800366C550 - NdisFilterDriverBlock - 0xFFFFF88002986440 - StatusHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF880020F75B0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF88004B4CC70 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF88004B4CE50 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF8800210475C - NextReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF88002126A50 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF88002986370 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF880029862B0 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF88002985780 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF880029856C0 - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF8800212BE14 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF8800212BD9C - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F41C80 - NdisFilterBlock - 0xFFFFF8800213D0C8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF880020F75B0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF880076D5E94 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF880076D5B9C - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\nwifi.sys - Microsoft Corporation
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF880048A3300 - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF88002126A50 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF88002986370 - Characteristics.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF880029862B0 - Characteristics.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF88002985780 - Characteristics.ReceiveNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF880029856C0 - Characteristics.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF880020F3D20 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF880020F0420 - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F48C80 - NdisFilterBlock - 0xFFFFF8800212AAB8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80049420F0 - NdisFilterDriverBlock - 0xFFFFF88002987320 - SetFilterModuleOptionsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA80049420F0 - NdisFilterDriverBlock - 0xFFFFF88002987788 - AttachHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA80049420F0 - NdisFilterDriverBlock - 0xFFFFF880029891A8 - DetachHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA80049420F0 - NdisFilterDriverBlock - 0xFFFFF88002987458 - RestartHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA80049420F0 - NdisFilterDriverBlock - 0xFFFFF88002987728 - PauseHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA80049420F0 - NdisFilterDriverBlock - 0xFFFFF88002986440 - StatusHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004F28C80 - NdisFilterBlock - 0xFFFFF88007295170 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004F28C80 - NdisFilterBlock - 0xFFFFF880020F3B00 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28C80 - NdisFilterBlock - 0xFFFFF8800210E9C0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28C80 - NdisFilterBlock - 0xFFFFF880072BFC2C - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004F28C80 - NdisFilterBlock - 0xFFFFF88007299CE0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004F28C80 - NdisFilterBlock - 0xFFFFF8800212BE14 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28C80 - NdisFilterBlock - 0xFFFFF8800212BD9C - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004F28C80 - NdisFilterBlock - 0xFFFFF8800213D0C8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004EFD390 - NdisFilterBlock - 0xFFFFF88007295170 - NextSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004EFD390 - NdisFilterBlock - 0xFFFFF880020F3B00 - NextSendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004EFD390 - NdisFilterBlock - 0xFFFFF8800210E9C0 - NextIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004EFD390 - NdisFilterBlock - 0xFFFFF880072BFC2C - NextReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004EFD390 - NdisFilterBlock - 0xFFFFF88007299CE0 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004EFD390 - NdisFilterBlock - 0xFFFFF8800212BE14 - FilterSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004EFD390 - NdisFilterBlock - 0xFFFFF8800212BD9C - FilterIndicateReceiveNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004EFD390 - NdisFilterBlock - 0xFFFFF8800213D0C8 - FilterCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF880048330F4 - CoSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004826010 - CoOidRequestHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF8800482B6F0 - CmCreateVcHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF8800482B9D4 - CmDeleteVcHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004826BE8 - CmOpenAfHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004826A88 - CmCloseAfHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF8800482B6E4 - CmRegisterSapHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF8800482B6E4 - CmDeregisterSapHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF8800482BAB0 - CmMakeCallHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF8800482BCC8 - CmCloseCallHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF8800483AB0C - CmIncomingCallCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF8800483ABF4 - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF8800483AF44 - CmDeactivateVcCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF8800482BDA0 - CmModifyCallQoSHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004827300 - CmOidRequestHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004827188 - CmOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004827188 - CmNotifyCloseAfCompleteHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004827C28 - SetOptionsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004830790 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004828658 - HaltHandlerEx - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF880048318F0 - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF8800482667C - PauseHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF880048270C0 - RestartHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004827188 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004833010 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004827188 - CancelSendHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004827188 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004827188 - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBE7B0 - NdisMiniDriverBlock - 0xFFFFF88004827188 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800480E570 - CoSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004801010 - CoOidRequestHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004801820 - CmCreateVcHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004801D80 - CmDeleteVcHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004802460 - CmOpenAfHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004801EF0 - CmCloseAfHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800480359C - CmRegisterSapHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004803304 - CmDeregisterSapHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800480313C - CmMakeCallHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004801C80 - CmCloseCallHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004810CF0 - CmIncomingCallCompleteHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004814CB8 - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004814CB8 - CmDeactivateVcCompleteHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004814CAC - CmModifyCallQoSHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004802310 - CmOidRequestHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800480244C - CmOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800480244C - CmNotifyCloseAfCompleteHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF880048024C0 - SetOptionsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800481C4C0 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800481DD80 - HaltHandlerEx - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800481D970 - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004802010 - PauseHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF88004802390 - RestartHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800480244C - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800480D410 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800480244C - CancelSendHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800480244C - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800480244C - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004CBF4B0 - NdisMiniDriverBlock - 0xFFFFF8800480244C - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049CF430 - CoSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C0230 - CoOidRequestHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C5084 - CmCreateVcHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C4380 - CmDeleteVcHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C25E0 - CmOpenAfHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C1FA0 - CmCloseAfHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C4494 - CmRegisterSapHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C4F78 - CmDeregisterSapHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C46B8 - CmMakeCallHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C1A30 - CmCloseCallHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049D02B0 - CmIncomingCallCompleteHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C4488 - CmAddPartyHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C4488 - CmDropPartyHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049CF8B0 - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049D08E0 - CmDeactivateVcCompleteHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049D4AEC - CmModifyCallQoSHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C20C0 - CmOidRequestHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C25D0 - CmOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C25D0 - CmNotifyCloseAfCompleteHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C26E0 - SetOptionsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049D8B10 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C3D10 - HaltHandlerEx - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049D4774 - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C1F40 - PauseHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C2520 - RestartHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C25D0 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049CE010 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C25D0 - CancelSendHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C25D0 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C25D0 - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C62680 - NdisMiniDriverBlock - 0xFFFFF880049C25D0 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004603E3C - FilterResourceRequirementsHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004603DF0 - SetOptionsHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004601104 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004601008 - HaltHandlerEx - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004603B94 - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004601CD8 - PauseHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004601DF0 - RestartHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF8800460A8C8 - OidRequestHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF880046036BC - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004602E30 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF8800460379C - CancelSendHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004603BA8 - CheckForHangHandlerEx - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004602B40 - ResetHandlerEx - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004603978 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF88004602F0C - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C601E0 - NdisMiniDriverBlock - 0xFFFFF8800460A9C4 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\Rt630x64.sys - Realtek                                            
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF880048958A0 - SetOptionsHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF88004894B20 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF88004895C60 - HaltHandlerEx - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF880048949D0 - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF88004895400 - PauseHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF880048951F0 - RestartHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF880048956B0 - OidRequestHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF880048A4920 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF880048A3300 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF880048A4710 - CancelSendHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF880048958D0 - CheckForHangHandlerEx - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF880048959E0 - ResetHandlerEx - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF88004895B60 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF88004895C00 - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C634B0 - NdisMiniDriverBlock - 0xFFFFF88004930EB0 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF8800475E370 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF88004767910 - HaltHandlerEx - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF8800477BB40 - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF8800475C878 - PauseHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF8800475CD34 - RestartHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF8800475A038 - OidRequestHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF8800475BD6C - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF8800475BD98 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF8800475C858 - CancelSendHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF88004767A58 - CheckForHangHandlerEx - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF8800477B010 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF88004767A70 - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C73850 - NdisMiniDriverBlock - 0xFFFFF880047677E4 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004744380 - CoCreateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004744380 - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004744380 - CoActivateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004744380 - CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF8800474F6D0 - CoSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004742240 - CoOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004743910 - CmCreateVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004743300 - CmDeleteVcHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004743EA0 - CmOpenAfHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004743B90 - CmCloseAfHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004745050 - CmRegisterSapHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004744FF4 - CmDeregisterSapHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004744BA0 - CmMakeCallHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004743040 - CmCloseCallHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004751280 - CmIncomingCallCompleteHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF8800475148C - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF880047513AC - CmDeactivateVcCompleteHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004751480 - CmModifyCallQoSHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004743BF0 - CmOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004744464 - CmOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004744464 - CmNotifyCloseAfCompleteHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF8800474D680 - SetOptionsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF8800474DF30 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004744470 - HaltHandlerEx - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF8800474E2B0 - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004743AA0 - PauseHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004743F20 - RestartHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF880047513A0 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF8800474F650 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF880047513A0 - CancelSendHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF8800474D3A0 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004744464 - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74640 - NdisMiniDriverBlock - 0xFFFFF88004744464 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004733FA0 - CoSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004724010 - CoOidRequestHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725180 - CmCreateVcHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725B20 - CmDeleteVcHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725E80 - CmOpenAfHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725D80 - CmCloseAfHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004727080 - CmRegisterSapHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004726F10 - CmDeregisterSapHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004727330 - CmMakeCallHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725670 - CmCloseCallHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004735B80 - CmIncomingCallCompleteHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF880047367C0 - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004735760 - CmDeactivateVcCompleteHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF880047382AC - CmModifyCallQoSHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725EF0 - CmOidRequestHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725EE0 - CmOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725EE0 - CmNotifyCloseAfCompleteHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004726390 - SetOptionsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004731A50 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004732374 - HaltHandlerEx - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004732030 - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725C50 - PauseHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725DE0 - RestartHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725EE0 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004733950 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725EE0 - CancelSendHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725EE0 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725EE0 - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004C74020 - NdisMiniDriverBlock - 0xFFFFF88004725EE0 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FD998 - CoCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FD920 - CoDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FD8A8 - CoActivateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FD830 - CoDeactivateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FD5F8 - CoSendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046F5430 - CoOidRequestHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880047112C0 - CmCreateVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF88004711228 - CmDeleteVcHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF88004711160 - CmOpenAfHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880047110D0 - CmCloseAfHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF88004711030 - CmRegisterSapHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF88004710FB4 - CmDeregisterSapHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF88004710CEC - CmMakeCallHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF88004710B6C - CmCloseCallHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF8800471092C - CmIncomingCallCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880047108B0 - CmActivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF88004710830 - CmDeactivateVcCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880047109A8 - CmModifyCallQoSHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF88004710778 - CmOidRequestHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046F6E80 - CmOidRequestCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FB300 - CmNotifyCloseAfCompleteHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FBDA0 - SetOptionsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF8800471D2A0 - InitializeHandlerEx - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FDA10 - HaltHandlerEx - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF8800471309C - MiniportDriverCharacteristics.UnloadHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FA690 - PauseHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FB280 - RestartHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FDBF0 - OidRequestHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046F5BE0 - SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046F5A50 - ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FB300 - CancelSendHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FB300 - DevicePnPEventNotifyHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FB300 - ShutdownHandlerEx - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004BCC020 - NdisMiniDriverBlock - 0xFFFFF880046FB300 - CancelOidRequestHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002136D7C - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800213687C - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800212F604 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800213687C - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88004833010 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - Next.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF88004833010 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\raspppoe.sys - Microsoft Corporation
       0xFFFFFA8004C8E1A0 - NdisMiniportBlock - 0xFFFFF8800213687C - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002136D7C - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800213687C - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800212F604 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800213687C - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800480D410 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - Next.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800480D410 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\rasl2tp.sys - Microsoft Corporation
       0xFFFFFA8004C901A0 - NdisMiniportBlock - 0xFFFFF8800213687C - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800212F604 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800212D69C - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800212D69C - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF880046F5A50 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88007299CE0 - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88004B4CC70 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88004B4CE50 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF880072BFC2C - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88007295170 - Next.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004C921A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002136D7C - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800213687C - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF880020F7CE0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800213687C - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800475BD98 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - Next.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800475BD98 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA8004C941A0 - NdisMiniportBlock - 0xFFFFF8800213687C - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002136D7C - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800213687C - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800212F604 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800213687C - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF880049CE010 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - Next.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF880049CE010 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\raspptp.sys - Microsoft Corporation
       0xFFFFFA8004C961A0 - NdisMiniportBlock - 0xFFFFF8800213687C - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002136D7C - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF880020F7CE0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800212D69C - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800210475C - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88007299CE0 - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF880029862B0 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002985780 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF880072BFC2C - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88007295170 - Next.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004C981A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800213687C - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800213687C - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF880020F7CE0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800212D69C - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800213687C - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF880048A3300 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\WlanGZG.sys - Atheros Communications, Inc.
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88007299CE0 - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF880029862B0 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002985780 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF880072BFC2C - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88007295170 - Next.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004C9C1A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800212F604 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800212D69C - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800212D69C - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF880046F5A50 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88007299CE0 - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88004B4CC70 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88004B4CE50 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF880072BFC2C - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88007295170 - Next.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA8004C7E1A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002136D7C - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800213687C - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF880020F7CE0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800213687C - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800475BD98 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - Next.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800475BD98 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\tunnel.sys - Microsoft Corporation
       0xFFFFFA80045901A0 - NdisMiniportBlock - 0xFFFFF8800213687C - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002136D7C - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800213687C - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800212F604 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800213687C - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800474F650 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - Next.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800474F650 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\AgileVpn.sys - Microsoft Corporation
       0xFFFFFA80045921A0 - NdisMiniportBlock - 0xFFFFF8800213687C - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002136D7C - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800213687C - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800212F604 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800213687C - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88004733950 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - Next.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF88004733950 - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\rassstp.sys - Microsoft Corporation
       0xFFFFFA80045941A0 - NdisMiniportBlock - 0xFFFFF8800213687C - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF880021296EC - SendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002127C8C - SendResourcesHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002131090 - ResetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002135698 - EthRxIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002135AC0 - EthRxCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002130640 - StatusHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800213D0C8 - StatusCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002127A9C - TDCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800211A380 - QueryCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800211A2D4 - SetCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800212750C - WanSendCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002131620 - WanRcvHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002131550 - WanRcvCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - SavedPacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800212F604 - NextCancelSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800212D69C - NextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800212D69C - SavedNextSendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF880020F4040 - SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002126400 - NextSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002126400 - FinalSendPacketsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800213C460 - TopIndicateLoopbackNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - Ndis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800213C148 - SynchronousReturnPacketHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002126A50 - NoFilter.CancelSend(Packets)Handler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF880020F3B00 - NoFilter.SendNetBufferListsCompleteHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - NoFilter.IndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF880046F5A50 - NoFilter.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndiswan.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF880020F75B0 - NoFilter.SendNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88007299CE0 - Next.CancelSend(Packets)Handler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88004B4CC70 - Next.SendNetBufferListsCompleteHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88004B4CE50 - Next.IndicateNetBufferListsHandler - C:\Windows\system32\DRIVERS\avgfwd6a.sys - AVG Technologies CZ, s.r.o.
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF8800210E9C0 - Next.SaveIndicateNetBufferListsHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF880072BFC2C - Next.ReturnNetBufferListsHandler - C:\Windows\system32\DRIVERS\ndisrd.sys - NT Kernel Resources
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88007295170 - Next.SendNetBufferListsHandler - C:\Windows\system32\DRIVERS\pacer.sys - Microsoft Corporation
       0xFFFFFA80045961A0 - NdisMiniportBlock - 0xFFFFF88002135B98 - TopNdis5PacketIndicateHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA8004942088 - NdisIfProviderBlock - 0xFFFFF88002993C94 - QueryObjectHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA8004942088 - NdisIfProviderBlock - 0xFFFFF88002993C94 - SetObjectHandler - C:\Windows\system32\DRIVERS\wfplwfs.sys - Microsoft Corporation
       0xFFFFFA800458FC38 - NdisIfProviderBlock - 0xFFFFF88002170E6C - QueryObjectHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA800458FC38 - NdisIfProviderBlock - 0xFFFFF88002188BF0 - SetObjectHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA800458FCA8 - NdisIfProviderBlock - 0xFFFFF88002170434 - QueryObjectHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation
       0xFFFFFA800458FCA8 - NdisIfProviderBlock - 0xFFFFF88002188BF0 - SetObjectHandler - C:\Windows\system32\drivers\ndis.sys - Microsoft Corporation

==========================================================================================

IE Plugin

       Browser Helper Objects(Wow64) - ContributeBHO Class - E:\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll - Adobe Systems, Inc. - {074C1DC5-9320-4A9A-947D-C042949C6216}
       Browser Helper Objects(Wow64) - Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll - Oracle Corporation - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
       Browser Helper Objects(Wow64) - Microsoft Web Test Recorder 10.0 Helper - E:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll - Microsoft Corporation - {876d9f09-c6d6-4324-a2cc-04dd9a4de12f}
       Browser Helper Objects(Wow64) - Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll - Oracle Corporation - {DBC80044-A445-435b-BC74-9C25C1C588A9}
       Browser Helper Objects(Wow64) - Microsoft Web Test Recorder 10.0 Helper - C:\Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll - Microsoft Corporation - {DDA57003-0068-4ed2-9D32-4D1EC707D94D}
       ToolBar(Wow64) -  - E:\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll - Adobe Systems, Inc. - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7}
       URLSearchHooks - Microsoft Url Search Hook - C:\Windows\System32\ieframe.dll - Microsoft Corporation - {CFBFAE00-17A6-11D0-99CB-00C04FD64497}
       ActiveX - HTML Document - C:\Windows\System32\mshtml.dll - Microsoft Corporation - {25336920-03F9-11CF-8FD0-00AA00686F13}
       ActiveX -  -  -  - {444785F1-DE89-4295-863A-D46C3A781394}
       ActiveX -  -  -  - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
       ActiveX - Shockwave Flash Object - C:\Windows\System32\Macromed\Flash\Flash.ocx - Adobe Systems, Inc. - {D27CDB6E-AE6D-11CF-96B8-444553540000}
       ActiveX -  -  -  - {DBC80044-A445-435B-BC74-9C25C1C588A9}
       ActiveX -  -  -  - {DDA57003-0068-4ED2-9D32-4D1EC707D94D}
       ActiveX -  -  -  - {DFEAF541-F3E1-4C24-ACAC-99C30715084A}

==========================================================================================

IE Shell

       Nothing

==========================================================================================

Spi

       @%SystemRoot%\System32\mswsock.dll,-60100 - mswsock.dll -  - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
       @%SystemRoot%\System32\mswsock.dll,-60101 - mswsock.dll -  - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
       @%SystemRoot%\System32\mswsock.dll,-60102 - mswsock.dll -  - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
       @%SystemRoot%\System32\mswsock.dll,-60200 - mswsock.dll -  - {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
       @%SystemRoot%\System32\mswsock.dll,-60201 - mswsock.dll -  - {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
       @%SystemRoot%\System32\mswsock.dll,-60202 - mswsock.dll -  - {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
       @%SystemRoot%\System32\wshqos.dll,-100 - mswsock.dll -  - {9D60A9E0-337A-11D0-BD88-0000C082E69A}
       @%SystemRoot%\System32\wshqos.dll,-101 - mswsock.dll -  - {9D60A9E0-337A-11D0-BD88-0000C082E69A}
       @%SystemRoot%\System32\wshqos.dll,-102 - mswsock.dll -  - {9D60A9E0-337A-11D0-BD88-0000C082E69A}
       @%SystemRoot%\System32\wshqos.dll,-103 - mswsock.dll -  - {9D60A9E0-337A-11D0-BD88-0000C082E69A}
       @%SystemRoot%\system32\napinsp.dll,-1000 - C:\Windows\System32\NapiNSP.dll - Microsoft Corporation
       @%SystemRoot%\system32\pnrpnsp.dll,-1000 - C:\Windows\System32\pnrpnsp.dll - Microsoft Corporation
       @%SystemRoot%\system32\pnrpnsp.dll,-1001 - C:\Windows\System32\pnrpnsp.dll - Microsoft Corporation
       @%SystemRoot%\system32\nlasvc.dll,-1000 - mswsock.dll - 
       @%SystemRoot%\system32\wshtcpip.dll,-60103 - mswsock.dll - 
       @%SystemRoot%\System32\winrnr.dll,-1000 - C:\Windows\System32\winrnr.dll - Microsoft Corporation

==========================================================================================

Hosts File

       

       

       127.0.0.1 activate.adobe.com 

       127.0.0.1 practivate.adobe.com 

       127.0.0.1 ereg.adobe.com 

       127.0.0.1 activate.wip3.adobe.com 

       127.0.0.1 wip3.adobe.com 

       127.0.0.1 3dns-3.adobe.com 

       127.0.0.1 3dns-2.adobe.com 

       127.0.0.1 adobe-dns.adobe.com 

       127.0.0.1 adobe-dns-2.adobe.com 

       127.0.0.1 adobe-dns-3.adobe.com 

       127.0.0.1 ereg.wip3.adobe.com 

       127.0.0.1 activate-sea.adobe.com 

       127.0.0.1 wwis-dubc1-vip60.adobe.com 

       127.0.0.1 activate-sjc0.adobe.com 

       127.0.0.1 wwis-dubc1-vip60.adobe.com

==========================================================================================

Startup

       IgfxTray - C:\Windows\System32\igfxtray.exe - Intel Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Windows\CurrentVersion\Run IgfxTray]
       HotKeysCmds - C:\Windows\System32\hkcmd.exe - Intel Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Windows\CurrentVersion\Run HotKeysCmds]
       Persistence - C:\Windows\System32\igfxpers.exe - Intel Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Persistence]
       AdobeAAMUpdater-1.0 - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe - Adobe Systems Incorporated - [\Registry\Machine\SOFTWARE\Microsoft\Windows\CurrentVersion\Run AdobeAAMUpdater-1.0]
       WinampAgent - C:\Program Files (x86)\Winamp\winampa.exe - Nullsoft, Inc. - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run WinampAgent]
       HDAudDeck - C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe - VIA - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run HDAudDeck]
       SunJavaUpdateSched - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe - Sun Microsystems, Inc. - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run SunJavaUpdateSched]
       AVG_UI - C:\Program Files (x86)\AVG\AVG2013\avgui.exe - AVG Technologies CZ, s.r.o. - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run AVG_UI]
       AdobeCS5ServiceManager - C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe - Adobe Systems Incorporated - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run AdobeCS5ServiceManager]
       SwitchBoard - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe - Adobe Systems Incorporated - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run SwitchBoard]
       APSDaemon - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe - Apple Inc. - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run APSDaemon]
       QuickTime Task - C:\Program Files (x86)\QuickTime\QTTask.exe - Apple Inc. - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run QuickTime Task]
       Skype - C:\Program Files (x86)\Skype\Phone\Skype.exe - Skype Technologies S.A. - [\REGISTRY\USER\S-1-5-21-3732101377-2479867636-1582925402-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Skype]
       DAEMON Tools Lite - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe - Disc Soft Ltd - [\REGISTRY\USER\S-1-5-21-3732101377-2479867636-1582925402-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run DAEMON Tools Lite]
       LightShot - C:\Users\GAMELASTER\AppData\Local\Skillbrains\lightshot\LightShot.exe Flags: uninsdeletevalue - File not found - [\REGISTRY\USER\S-1-5-21-3732101377-2479867636-1582925402-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run LightShot]
       Clownfish - C:\Program Files (x86)\Clownfish\Clownfish.exe - Bogdan Sharkov - [\REGISTRY\USER\S-1-5-21-3732101377-2479867636-1582925402-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Clownfish]
       uTorrent - C:\Users\GAMELASTER\AppData\Roaming\uTorrent\uTorrent.exe - BitTorrent Inc. - [\REGISTRY\USER\S-1-5-21-3732101377-2479867636-1582925402-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run uTorrent]
       ZyXEL G-202 Wireless Adapter Utility.lnk - C:\Program Files (x86)\ZyXEL G-202\ZyXEL G-202.exe - ZyXEL Communications Corp. - [C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ZyXEL G-202 Wireless Adapter Utility.lnk]
       wdmaud.drv - C:\Windows\system32\wdmaud.drv - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32 aux]
       wdmaud.drv - C:\Windows\system32\wdmaud.drv - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32 aux]
       Shell - explorer.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Shell]
       Userinit - C:\Windows\system32\userinit.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Userinit]
       Shell - explorer.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon Shell]
       Userinit - userinit.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon Userinit]
       igfxcui - C:\Windows\system32\igfxdev.dll - Intel Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui DllName]
       Local Port - C:\Windows\system32\localspl.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Monitors Local Port]
       Microsoft Shared Fax Monitor - C:\Windows\system32\FXSMON.DLL - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Monitors Microsoft Shared Fax Monitor]
       Standard TCP/IP Port - C:\Windows\system32\tcpmon.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Monitors Standard TCP/IP Port]
       USB Monitor - C:\Windows\system32\usbmon.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Monitors USB Monitor]
       WSD Port - C:\Windows\system32\WSDMon.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Monitors WSD Port]
       Internet Print Provider - C:\Windows\system32\inetpp.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Providers Internet Print Provider]
       LanMan Print Services - C:\Windows\system32\win32spl.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Print\Providers LanMan Print Services]
       rpcrt4 - C:\Windows\System32\rpcrt4.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs rpcrt4]
       combase - C:\Windows\System32\combase.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs combase]
       gdiplus - C:\Windows\System32\GdiPlus.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs gdiplus]
       IMAGEHLP - C:\Windows\System32\imagehlp.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs IMAGEHLP]
       MSVCRT - C:\Windows\System32\msvcrt.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs MSVCRT]
       SHLWAPI - C:\Windows\System32\shlwapi.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs SHLWAPI]
       COMDLG32 - C:\Windows\System32\comdlg32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs COMDLG32]
       NORMALIZ - C:\Windows\System32\normaliz.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs NORMALIZ]
       PSAPI - C:\Windows\System32\psapi.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs PSAPI]
       WLDAP32 - C:\Windows\System32\Wldap32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs WLDAP32]
       ole32 - C:\Windows\System32\ole32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs ole32]
       DllDirectory32 - C:\Windows\system32\ -  - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs DllDirectory32]
       IMM32 - C:\Windows\System32\imm32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs IMM32]
       _Wow64cpu - C:\Windows\System32\wow64cpu.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs _Wow64cpu]
       URLMON - C:\Windows\System32\urlmon.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs URLMON]
       MSCTF - C:\Windows\System32\msctf.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs MSCTF]
       _Wow64win - C:\Windows\System32\wow64win.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs _Wow64win]
       OLEAUT32 - C:\Windows\System32\oleaut32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs OLEAUT32]
       LPK - C:\Windows\System32\lpk.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs LPK]
       clbcatq - C:\Windows\System32\clbcatq.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs clbcatq]
       WS2_32 - C:\Windows\System32\ws2_32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs WS2_32]
       SHELL32 - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs SHELL32]
       gdi32 - C:\Windows\System32\gdi32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs gdi32]
       _Wow64 - C:\Windows\System32\wow64.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs _Wow64]
       DifxApi - C:\Windows\System32\difxapi.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs DifxApi]
       Setupapi - C:\Windows\System32\setupapi.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs Setupapi]
       kernel32 - C:\Windows\System32\kernel32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs kernel32]
       advapi32 - C:\Windows\System32\advapi32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs advapi32]
       user32 - C:\Windows\System32\user32.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs user32]
       IERTUTIL - C:\Windows\System32\iertutil.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs IERTUTIL]
       WININET - C:\Windows\System32\wininet.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs WININET]
       NSI - C:\Windows\System32\nsi.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs NSI]
       sechost - C:\Windows\System32\sechost.dll - Microsoft Corporation - [\Registry\Machine\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs sechost]
       NppShell_05.dll(ANotepad++64) - C:\Program Files (x86)\Notepad++\NppShell_05.dll -  - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers ANotepad++64]
       avgsea.dll(AVG Shell Extension) - C:\Program Files (x86)\AVG\AVG2013\avgsea.dll - AVG Technologies CZ, s.r.o. - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers AVG Shell Extension]
       syncui.dll(BriefcaseMenu) - C:\Windows\System32\syncui.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers BriefcaseMenu]
       misosh64.dll(MagicISO) - C:\Program Files (x86)\MagicISO\misosh64.dll - MagicISO, Inc. - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers MagicISO]
       shell32.dll(Open With) - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers Open With]
       shell32.dll(Open With EncryptionMenu) - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers Open With EncryptionMenu]
       ntshrui.dll(Sharing) - C:\Windows\System32\ntshrui.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers Sharing]
       RarExt.dll(WinRAR) - C:\Program Files\WinRAR\RarExt.dll - Alexander Roshal - [\Registry\Machine\SOFTWARE\Classes\*\shellex\ContextMenuHandlers WinRAR]
       shell32.dll(CopyAsPathMenu) - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers CopyAsPathMenu]
       shell32.dll(SendTo) - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers SendTo]
       avgsea.dll(AVG Shell Extension) - C:\Program Files (x86)\AVG\AVG2013\avgsea.dll - AVG Technologies CZ, s.r.o. - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers AVG Shell Extension]
       syncui.dll(BriefcaseMenu) - C:\Windows\System32\syncui.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers BriefcaseMenu]
       shell32.dll(Library Location) - C:\Windows\System32\shell32.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers Library Location]
       misosh64.dll(MagicISO) - C:\Program Files (x86)\MagicISO\misosh64.dll - MagicISO, Inc. - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers MagicISO]
       cscui.dll(Offline Files) - C:\Windows\System32\cscui.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers Offline Files]
       RarExt.dll(WinRAR) - C:\Program Files\WinRAR\RarExt.dll - Alexander Roshal - [\Registry\Machine\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers WinRAR]
       Microsoft Windows Media Player(>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}) - C:\Windows\System32\unregmp2.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components >{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
       Themes Setup({2C7339CF-2B09-4501-B3F3-F3508C9228ED}) - C:\Windows\System32\regsvr32.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
       Microsoft Windows({44BBA840-CC51-11CF-AAFA-00AA00B6015C}) - C:\Program Files\Windows Mail\WinMail.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
       Microsoft Windows Media Player({6BF52A52-394A-11d3-B153-00C04F79FAA6}) - C:\Windows\System32\unregmp2.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {6BF52A52-394A-11d3-B153-00C04F79FAA6}]
       Windows Desktop Update({89820200-ECBD-11cf-8B85-00AA005B4340}) - C:\Windows\system32\regsvr32.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {89820200-ECBD-11cf-8B85-00AA005B4340}]
       Web Platform Customizations({89820200-ECBD-11cf-8B85-00AA005B4383}) - C:\Windows\System32\ie4uinit.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {89820200-ECBD-11cf-8B85-00AA005B4383}]
       ({89B4C1CD-B018-4511-B0A1-5476DBF70820}) - C:\Windows\System32\mscories.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Microsoft\Active Setup\Installed Components {89B4C1CD-B018-4511-B0A1-5476DBF70820}]
       Microsoft Windows Media Player(>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}) - C:\Windows\System32\unregmp2.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components >{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
       Microsoft Windows({44BBA840-CC51-11CF-AAFA-00AA00B6015C}) - C:\Program Files\Windows Mail\WinMail.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components {44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
       Microsoft Windows Media Player({6BF52A52-394A-11d3-B153-00C04F79FAA6}) - C:\Windows\System32\unregmp2.exe - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components {6BF52A52-394A-11d3-B153-00C04F79FAA6}]
       ({89B4C1CD-B018-4511-B0A1-5476DBF70820}) - C:\Windows\SysWOW64\mscories.dll - Microsoft Corporation - [\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Active Setup\Installed Components {89B4C1CD-B018-4511-B0A1-5476DBF70820}]

==========================================================================================

Service

       AdobeFlashPlayerUpdateSvc - Stopped - Manual - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe - Adobe Systems Incorporated -  - 
       AeLookupSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       ALG - Stopped - Manual - C:\Windows\System32\alg.exe - Microsoft Corporation -  - 
       AllUserInstallAgent - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       AppIDSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       Appinfo - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       AppMgmt - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       asComSvc - Stopped - Automatic - C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe -  -  - 
       asHmComSvc - Stopped - Automatic - C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe - ASUSTeK Computer Inc. -  - 
       aspnet_state - Stopped - Manual - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe - Microsoft Corporation -  - 
       AsSysCtrlService - Stopped - Automatic - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe - ASUSTeK Computer Inc. -  - 
       AsusFanControlService - Stopped - Automatic - "C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.06\AsusFanControlService.exe" - ASUSTeK Computer Inc. -  - 
       AudioEndpointBuilder - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       Audiosrv - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       avgfws - Stopped - Automatic - "C:\Program Files (x86)\AVG\AVG2013\avgfws.exe" - AVG Technologies CZ, s.r.o. -  - 
       AVGIDSAgent - Stopped - Automatic - "C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe" - AVG Technologies CZ, s.r.o. -  - 
       avgwd - Stopped - Automatic - "C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe" - AVG Technologies CZ, s.r.o. -  - 
       AxInstSV - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k AxInstSVGroup - Microsoft Corporation -  - 
       BDESVC - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       BITS - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       BrokerInfrastructure - Started - Automatic - C:\Windows\syswow64\svchost.exe -k DcomLaunch - Microsoft Corporation -  - 
       Browser - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       bthserv - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       CertPropSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       COMSysApp - Stopped - Manual - C:\Windows\syswow64\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235} - Microsoft Corporation -  - 
       cphs - Stopped - Manual - C:\Windows\SysWOW64\IntelCpHeciSvc.exe - Intel Corporation -  - 
       CryptSvc - Started - Automatic - C:\Windows\syswow64\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       CscService - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       DcomLaunch - Started - Automatic - C:\Windows\syswow64\svchost.exe -k DcomLaunch - Microsoft Corporation -  - 
       defragsvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k defragsvc - Microsoft Corporation -  - 
       DeviceAssociationService - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       DeviceInstall - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k DcomLaunch - Microsoft Corporation -  - 
       Dhcp - Started - Automatic - C:\Windows\syswow64\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       Dnscache - Started - Automatic - C:\Windows\syswow64\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       dot3svc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       DPS - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k LocalServiceNoNetwork - Microsoft Corporation -  - 
       DsmSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       Eaphost - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       EFS - Stopped - Manual - C:\Windows\System32\lsass.exe - Microsoft Corporation -  - 
       EventLog - Started - Automatic - C:\Windows\syswow64\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       EventSystem - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       Fax - Stopped - Manual - C:\Windows\System32\FXSSVC.exe - Microsoft Corporation -  - 
       fdPHost - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       FDResPub - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       fhsvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       FontCache - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       FontCache3.0.0.0 - Stopped - Manual - C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe - Microsoft Corporation -  - 
       fussvc - Stopped - Manual - "C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe" - Microsoft Corporation -  - 
       gpsvc - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       hidserv - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       hkmsvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       HomeGroupListener - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       HomeGroupProvider - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       ICCS - Stopped - Manual - "C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe" - Intel Corporation -  - 
       IKEEXT - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       KeyIso - Stopped - Manual - C:\Windows\System32\lsass.exe - Microsoft Corporation -  - 
       KtmRm - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k NetworkServiceAndNoImpersonation - Microsoft Corporation -  - 
       LanmanServer - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       LanmanWorkstation - Started - Automatic - C:\Windows\syswow64\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       lltdsvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       lmhosts - Started - Automatic - C:\Windows\syswow64\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       LSM - Started - Automatic - C:\Windows\syswow64\svchost.exe -k DcomLaunch - Microsoft Corporation -  - 
       MMCSS - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       MozillaMaintenance - Stopped - Manual - "C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe" - Mozilla Foundation -  - 
       MSDTC - Stopped - Manual - C:\Windows\System32\msdtc.exe - Microsoft Corporation -  - 
       MSiSCSI - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       msiserver - Stopped - Manual - C:\Windows\syswow64\msiexec.exe /V - Microsoft Corporation -  - 
       MSSQL$SQLEXPRESS - Stopped - Automatic - "C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS - Microsoft Corporation -  - 
       MSSQLServerADHelper100 - Stopped - Disabled - "C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE" - Microsoft Corporation -  - 
       napagent - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       NcaSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k NetSvcs - Microsoft Corporation -  - 
       NcdAutoSetup - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceNoNetwork - Microsoft Corporation -  - 
       Netlogon - Stopped - Manual - C:\Windows\System32\lsass.exe - Microsoft Corporation -  - 
       Netman - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       netprofm - Started - Manual - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       NetTcpPortSharing - Stopped - Disabled - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe - Microsoft Corporation -  - 
       NlaSvc - Started - Automatic - C:\Windows\syswow64\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       nsi - Started - Automatic - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       p2pimsvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServicePeerNet - Microsoft Corporation -  - 
       p2psvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServicePeerNet - Microsoft Corporation -  - 
       PcaSvc - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       PeerDistSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k PeerDist - Microsoft Corporation -  - 
       PerfHost - Stopped - Manual - C:\Windows\SysWOW64\perfhost.exe - Microsoft Corporation -  - 
       pla - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceNoNetwork - Microsoft Corporation -  - 
       PlugPlay - Started - Manual - C:\Windows\syswow64\svchost.exe -k DcomLaunch - Microsoft Corporation -  - 
       PNRPAutoReg - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServicePeerNet - Microsoft Corporation -  - 
       PNRPsvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServicePeerNet - Microsoft Corporation -  - 
       PolicyAgent - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k NetworkServiceNetworkRestricted - Microsoft Corporation -  - 
       Power - Started - Automatic - C:\Windows\syswow64\svchost.exe -k DcomLaunch - Microsoft Corporation -  - 
       PrintNotify - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k print - Microsoft Corporation -  - 
       ProfSvc - Started - Automatic - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       QWAVE - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       RasAuto - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       RasMan - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       RemoteAccess - Stopped - Disabled - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       RemoteRegistry - Stopped - Disabled - C:\Windows\syswow64\svchost.exe -k localService - Microsoft Corporation -  - 
       RpcEptMapper - Started - Automatic - C:\Windows\syswow64\svchost.exe -k RPCSS - Microsoft Corporation -  - 
       RpcLocator - Stopped - Manual - C:\Windows\System32\Locator.exe - Microsoft Corporation -  - 
       RpcSs - Started - Automatic - C:\Windows\syswow64\svchost.exe -k rpcss - Microsoft Corporation -  - 
       SamSs - Stopped - Automatic - C:\Windows\System32\lsass.exe - Microsoft Corporation -  - 
       SCardSvr - Stopped - Disabled - C:\Windows\syswow64\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       Schedule - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       SCPolicySvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       SDRSVC - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k SDRSVC - Microsoft Corporation -  - 
       seclogon - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       SENS - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       SensrSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       SessionEnv - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       ShellHWDetection - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       SkypeUpdate - Stopped - Automatic - "C:\Program Files (x86)\Skype\Updater\Updater.exe" - Skype Technologies -  - 
       SNMPTRAP - Stopped - Manual - C:\Windows\System32\snmptrap.exe - Microsoft Corporation -  - 
       Spooler - Stopped - Automatic - C:\Windows\System32\spoolsv.exe - Microsoft Corporation -  - 
       sppsvc - Stopped - Automatic - C:\Windows\System32\sppsvc.exe - Microsoft Corporation -  - 
       SQLAgent$SQLEXPRESS - Stopped - Disabled - "C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE" -i SQLEXPRESS - Microsoft Corporation -  - 
       SQLBrowser - Stopped - Disabled - "C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe" - Microsoft Corporation -  - 
       SQLWriter - Stopped - Automatic - "C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe" - Microsoft Corporation -  - 
       SSDPSRV - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       SstpSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       Steam Client Service - Stopped - Manual - C:\Program Files (x86)\Common Files\Steam\SteamService.exe /RunAsService - Valve Corporation -  - 
       stisvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k imgsvc - Microsoft Corporation -  - 
       StorSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       svsvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       SwitchBoard - Stopped - Manual - "C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" - Adobe Systems Incorporated -  - 
       swprv - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k swprv - Microsoft Corporation -  - 
       SysMain - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       SystemEventsBroker - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       TabletInputService - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       TapiSrv - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       Te.Service - Stopped - Manual - "C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe" - Microsoft Corporation -  - 
       TermService - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       Themes - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       THREADORDER - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       TimeBroker - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       TrkWks - Stopped - Automatic - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       TrustedInstaller - Stopped - Manual - C:\Windows\servicing\TrustedInstaller.exe - Microsoft Corporation -  - 
       UI0Detect - Stopped - Manual - C:\Windows\System32\UI0Detect.exe - Microsoft Corporation -  - 
       UmRdpService - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       upnphost - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       VaultSvc - Stopped - Manual - C:\Windows\System32\lsass.exe - Microsoft Corporation -  - 
       vds - Stopped - Manual - C:\Windows\System32\vds.exe - Microsoft Corporation -  - 
       VIAKaraokeService - Stopped - Automatic - C:\Windows\System32\viakaraokesrv.exe - VIA Technologies, Inc. -  - 
       vmicheartbeat - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k ICService - Microsoft Corporation -  - 
       vmickvpexchange - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       vmicrdv - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k ICService - Microsoft Corporation -  - 
       vmicshutdown - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       vmictimesync - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       vmicvss - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       VSS - Stopped - Manual - C:\Windows\System32\VSSVC.exe - Microsoft Corporation -  - 
       W32Time - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       wbengine - Stopped - Manual - "C:\Windows\system32\wbengine.exe" - Microsoft Corporation -  - 
       WbioSrvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k WbioSvcGroup - Microsoft Corporation -  - 
       Wcmsvc - Started - Automatic - C:\Windows\syswow64\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       wcncsvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       WcsPlugInService - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k wcssvc - Microsoft Corporation -  - 
       WdiServiceHost - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       WdiSystemHost - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       WebClient - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       Wecsvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       wercplsupport - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       WerSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k WerSvcGroup - Microsoft Corporation -  - 
       WiaRpc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       WinDefend - Stopped - Manual - C:\Program Files\Windows Defender\MsMpEng.exe - Microsoft Corporation -  - 
       WinHttpAutoProxySvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalService - Microsoft Corporation -  - 
       Winmgmt - Started - Automatic - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       WinRM - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k NetworkService - Microsoft Corporation -  - 
       WlanSvc - Started - Automatic - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       wlidsvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       wmiApSrv - Stopped - Manual - C:\Windows\System32\wbem\WmiApSrv.exe - Microsoft Corporation -  - 
       WMPNetworkSvc - Stopped - Manual - "C:\Program Files\Windows Media Player\wmpnetwk.exe" - Microsoft Corporation -  - 
       WPCSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceNetworkRestricted - Microsoft Corporation -  - 
       WPDBusEnum - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       WSearch - Stopped - Automatic - C:\Windows\syswow64\SearchIndexer.exe /Embedding - Microsoft Corporation -  - 
       WSService - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceAndNoImpersonation - Microsoft Corporation -  - 
       wuauserv - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k netsvcs - Microsoft Corporation -  - 
       wudfsvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalSystemNetworkRestricted - Microsoft Corporation -  - 
       WwanSvc - Stopped - Manual - C:\Windows\syswow64\svchost.exe -k LocalServiceNoNetwork - Microsoft Corporation -  - 

==========================================================================================

Schedule Task

       Nothing

==========================================================================================

File Association

       .bat - "%1" %* - HKEY_CLASSES_ROOT\.bat
       .cmd - "%1" %* - HKEY_CLASSES_ROOT\.cmd
       .com - "%1" %* - HKEY_CLASSES_ROOT\.com
       .exe - "%1" %* - HKEY_CLASSES_ROOT\.exe
       .scr - "%1" /S - HKEY_CLASSES_ROOT\.scr
       .txt - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\.txt
       .ini - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\.ini
       .pif - "%1" %* - HKEY_CLASSES_ROOT\.pif
       .reg - regedit.exe "%1" - HKEY_CLASSES_ROOT\.reg
       .inf - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\.inf
       .hlp - %SystemRoot%\winhlp32.exe %1 - HKEY_CLASSES_ROOT\.hlp
       .chm - "%SystemRoot%\hh.exe" %1 - HKEY_CLASSES_ROOT\.chm
       .vbs - "%SystemRoot%\System32\WScript.exe" "%1" %* - HKEY_CLASSES_ROOT\.vbs
       .js - C:\Windows\System32\WScript.exe "%1" %* - HKEY_CLASSES_ROOT\.js
       .lnk - lnkfile - HKEY_CLASSES_ROOT\.lnk
       batfile - "%1" %* - HKEY_CLASSES_ROOT\batfile\Shell\Open\Command
       cmdfile - "%1" %* - HKEY_CLASSES_ROOT\cmdfile\Shell\Open\Command
       comfile - "%1" %* - HKEY_CLASSES_ROOT\comfile\Shell\Open\Command
       exefile - "%1" %* - HKEY_CLASSES_ROOT\exefile\Shell\Open\Command
       scrfile - "%1" /S - HKEY_CLASSES_ROOT\scrfile\Shell\Open\Command
       txtfile - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\txtfile\Shell\Open\Command
       inifile - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\inifile\Shell\Open\Command
       piffile - "%1" %* - HKEY_CLASSES_ROOT\piffile\Shell\Open\Command
       regfile - regedit.exe "%1" - HKEY_CLASSES_ROOT\regfile\Shell\Open\Command
       inffile - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CLASSES_ROOT\inffile\Shell\Open\Command
       hlpfile - %SystemRoot%\winhlp32.exe %1 - HKEY_CLASSES_ROOT\hlpfile\Shell\Open\Command
       chm.file - "%SystemRoot%\hh.exe" %1 - HKEY_CLASSES_ROOT\chm.file\Shell\Open\Command
       vbsfile - "%SystemRoot%\System32\WScript.exe" "%1" %* - HKEY_CLASSES_ROOT\vbsfile\Shell\Open\Command
       jsfile - C:\Windows\System32\WScript.exe "%1" %* - HKEY_CLASSES_ROOT\jsfile\Shell\Open\Command
       HKCU .exe Progid - "%1" %* - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exe\OpenWithProgids
       HKCU .txt Progid - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.txt\OpenWithProgids
       HKCU .ini Progid - %SystemRoot%\system32\NOTEPAD.EXE %1 - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ini\OpenWithProgids
       HKCU .chm Progid - "%SystemRoot%\hh.exe" %1 - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.chm\OpenWithProgids
       HKCU .vbs Progid - "%SystemRoot%\System32\WScript.exe" "%1" %* - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vbs\OpenWithProgids
       HKCU .js Progid - C:\Windows\System32\WScript.exe "%1" %* - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.js\OpenWithProgids
       HKCU .lnk Progid -  - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lnk\OpenWithProgids
       HKCU .txt Progid - txtfile - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.txt\UserChoice
       HKCU .vbs Progid - VBSFile - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vbs\UserChoice

==========================================================================================

IFEO

       Nothing

==========================================================================================

IME

       Slovak -  -  - C:\Windows\system32\KBDSL.DLL - Microsoft Corporation

==========================================================================================

Firewall Rule

       Nothing

==========================================================================================

System User Name

       Administrator
       GAMELASTER
       Guest

==========================================================================================

Scan MBR Rootkit

       MBR OK!
