Source: | Binary string: winspool.pdba% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: wkernel32.pdb source: WerFault.exe, 0000000B.00000003.434205216.0000000004E75000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.437623888.0000000002A82000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.558772594.0000000004597000.00000004.00000001.sdmp |
Source: | Binary string: sfc_os.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: bcrypt.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: ucrtbase.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596797767.0000000004960000.00000004.00000040.sdmp |
Source: | Binary string: msvcrt.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: wrpcrt4.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: wntdll.pdb source: WerFault.exe, 0000000B.00000003.435060985.0000000002F40000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.438760333.0000000002A7C000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: CoreMessaging.pdb source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: ole32.pdbE% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: opengl32.pdb[% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: advapi32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: wsspicli.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: ntmarta.pdb source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wkernelbase.pdb source: WerFault.exe, 0000000B.00000003.434470631.0000000002F4C000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.438229075.0000000002A88000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: mpr.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp |
Source: | Binary string: shlwapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: ws2_32.pdbp source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: msctf.pdb.LK source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: rasman.pdb2LG source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: dwmapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: powrprof.pdbI% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: shlwapi.pdb]% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: shcore.pdbk source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593519957.0000000004DF5000.00000004.00000040.sdmp |
Source: | Binary string: opengl32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: ws2_32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: winspool.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: shell32.pdbk source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp |
Source: | Binary string: iphlpapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: glu32.pdb7 source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: nsi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596797767.0000000004960000.00000004.00000040.sdmp |
Source: | Binary string: ucrtbase.pdbk source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp |
Source: | Binary string: opengl32.pdb% source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: powrprof.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: ole32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596797767.0000000004960000.00000004.00000040.sdmp |
Source: | Binary string: setupapi.pdbW% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: AcLayers.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp |
Source: | Binary string: dwmapi.pdb|0 source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: combase.pdbC% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: FGERN.pdb source: f845ef61_by_Libranalysis.dll |
Source: | Binary string: dwmapi.pdb(LM source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: cfgmgr32.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp |
Source: | Binary string: combase.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: Windows.Storage.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp |
Source: | Binary string: wkernel32.pdb( source: WerFault.exe, 0000000B.00000003.434230037.0000000002F46000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.437623888.0000000002A82000.00000004.00000001.sdmp |
Source: | Binary string: rundll32.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp |
Source: | Binary string: sfc.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: CoreUIComponents.pdb_ source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: apphelp.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: ole32.pdbCC source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: mpr.pdbs source: WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp |
Source: | Binary string: a/pjr2pCReportStore::Prune: MaxReportCount=%d MaxSizeInMb=%dRSDSwkernel32.pdb source: WerFault.exe, 0000000D.00000002.602833822.00000000023D2000.00000004.00000001.sdmp |
Source: | Binary string: WinTypes.pdb source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: ClusApi.pdbm source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: ClusApi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: sfc.pdbp source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: glu32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: shcore.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593519957.0000000004DF5000.00000004.00000040.sdmp |
Source: | Binary string: wgdi32.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596557954.0000000004962000.00000004.00000040.sdmp |
Source: | Binary string: fltLib.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wwin32u.pdbk source: WerFault.exe, 00000014.00000003.596557954.0000000004962000.00000004.00000040.sdmp |
Source: | Binary string: shell32.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp |
Source: | Binary string: msctf.pdbL0 source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: ClusApi.pdb*0!% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: msvcp_win.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596797767.0000000004960000.00000004.00000040.sdmp |
Source: | Binary string: wgdi32.pdbk source: WerFault.exe, 00000014.00000003.596557954.0000000004962000.00000004.00000040.sdmp |
Source: | Binary string: dnsapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: rasapi32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: wimm32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: CoreUIComponents.pdb source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wwin32u.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596557954.0000000004962000.00000004.00000040.sdmp |
Source: | Binary string: setupapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: dnsapi.pdb$LQ source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: imagehlp.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wUxTheme.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wntdll.pdb( source: WerFault.exe, 0000000B.00000003.435060985.0000000002F40000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.438760333.0000000002A7C000.00000004.00000001.sdmp |
Source: | Binary string: profapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wgdi32full.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596797767.0000000004960000.00000004.00000040.sdmp |
Source: | Binary string: wUxTheme.pdb<Ly source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: sechost.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: combase.pdbs source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: rasman.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: propsys.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: cfgmgr32.pdbk source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp |
Source: | Binary string: dnsapi.pdb source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: msctf.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: dnsapi.pdbz0 source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: rundll32.pdb( source: WerFault.exe, 0000000D.00000003.436771504.0000000002A76000.00000004.00000001.sdmp |
Source: | Binary string: bcrypt.pdbg source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: TextInputFramework.pdb source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wUxTheme.pdb,0+% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: ws2_32.pdba source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: rasapi32.pdbh0 source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: Kernel.Appcore.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp |
Source: | Binary string: cryptbase.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: bcryptprimitives.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: wkernelbase.pdb( source: WerFault.exe, 0000000B.00000003.434470631.0000000002F4C000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.438229075.0000000002A88000.00000004.00000001.sdmp |
Source: | Binary string: wimm32.pdbeN source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: rasman.pdbF^ source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: oleaut32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wuser32.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: unknown | Process created: C:\Windows\System32\loaddll32.exe loaddll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll' |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /C rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',#1 |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll,LoxmtYt |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',#1 |
Source: C:\Windows\SysWOW64\rundll32.exe | Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 6624 -s 764 |
Source: C:\Windows\SysWOW64\rundll32.exe | Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 6612 -s 888 |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',DllCanUnloadNow |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',DllGetClassObject |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',WdiAddFileToInstance |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',WdiAddParameter |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',WdiCancel |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 6560 -s 604 |
Source: C:\Windows\SysWOW64\rundll32.exe | Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 340 -s 760 |
Source: C:\Windows\SysWOW64\rundll32.exe | Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 340 -s 760 |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\cmd.exe cmd.exe /C rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',#1 |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll,LoxmtYt |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',DllCanUnloadNow |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',DllGetClassObject |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',WdiAddFileToInstance |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',WdiAddParameter |
Source: C:\Windows\System32\loaddll32.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',WdiCancel |
Source: C:\Windows\SysWOW64\cmd.exe | Process created: C:\Windows\SysWOW64\rundll32.exe rundll32.exe 'C:\Users\user\Desktop\f845ef61_by_Libranalysis.dll',#1 |
Source: C:\Windows\SysWOW64\rundll32.exe | Process created: C:\Windows\SysWOW64\WerFault.exe C:\Windows\SysWOW64\WerFault.exe -u -p 340 -s 760 |
Source: | Binary string: winspool.pdba% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: wkernel32.pdb source: WerFault.exe, 0000000B.00000003.434205216.0000000004E75000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.437623888.0000000002A82000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.558772594.0000000004597000.00000004.00000001.sdmp |
Source: | Binary string: sfc_os.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: bcrypt.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: ucrtbase.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596797767.0000000004960000.00000004.00000040.sdmp |
Source: | Binary string: msvcrt.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: wrpcrt4.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: wntdll.pdb source: WerFault.exe, 0000000B.00000003.435060985.0000000002F40000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.438760333.0000000002A7C000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: CoreMessaging.pdb source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: ole32.pdbE% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: opengl32.pdb[% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: advapi32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: wsspicli.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: ntmarta.pdb source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wkernelbase.pdb source: WerFault.exe, 0000000B.00000003.434470631.0000000002F4C000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.438229075.0000000002A88000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: mpr.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp |
Source: | Binary string: shlwapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: ws2_32.pdbp source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: msctf.pdb.LK source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: rasman.pdb2LG source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: dwmapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: powrprof.pdbI% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: shlwapi.pdb]% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: shcore.pdbk source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593519957.0000000004DF5000.00000004.00000040.sdmp |
Source: | Binary string: opengl32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: ws2_32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: winspool.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: shell32.pdbk source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp |
Source: | Binary string: iphlpapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: glu32.pdb7 source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: nsi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596797767.0000000004960000.00000004.00000040.sdmp |
Source: | Binary string: ucrtbase.pdbk source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp |
Source: | Binary string: opengl32.pdb% source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: powrprof.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: ole32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596797767.0000000004960000.00000004.00000040.sdmp |
Source: | Binary string: setupapi.pdbW% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: AcLayers.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp |
Source: | Binary string: dwmapi.pdb|0 source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: combase.pdbC% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: FGERN.pdb source: f845ef61_by_Libranalysis.dll |
Source: | Binary string: dwmapi.pdb(LM source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: cfgmgr32.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp |
Source: | Binary string: combase.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: Windows.Storage.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp |
Source: | Binary string: wkernel32.pdb( source: WerFault.exe, 0000000B.00000003.434230037.0000000002F46000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.437623888.0000000002A82000.00000004.00000001.sdmp |
Source: | Binary string: rundll32.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp |
Source: | Binary string: sfc.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: CoreUIComponents.pdb_ source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: apphelp.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: ole32.pdbCC source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: mpr.pdbs source: WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp |
Source: | Binary string: a/pjr2pCReportStore::Prune: MaxReportCount=%d MaxSizeInMb=%dRSDSwkernel32.pdb source: WerFault.exe, 0000000D.00000002.602833822.00000000023D2000.00000004.00000001.sdmp |
Source: | Binary string: WinTypes.pdb source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: ClusApi.pdbm source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: ClusApi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: sfc.pdbp source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: glu32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: shcore.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593519957.0000000004DF5000.00000004.00000040.sdmp |
Source: | Binary string: wgdi32.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596557954.0000000004962000.00000004.00000040.sdmp |
Source: | Binary string: fltLib.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wwin32u.pdbk source: WerFault.exe, 00000014.00000003.596557954.0000000004962000.00000004.00000040.sdmp |
Source: | Binary string: shell32.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp |
Source: | Binary string: msctf.pdbL0 source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: ClusApi.pdb*0!% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: msvcp_win.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596797767.0000000004960000.00000004.00000040.sdmp |
Source: | Binary string: wgdi32.pdbk source: WerFault.exe, 00000014.00000003.596557954.0000000004962000.00000004.00000040.sdmp |
Source: | Binary string: dnsapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: rasapi32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: wimm32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: CoreUIComponents.pdb source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wwin32u.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596557954.0000000004962000.00000004.00000040.sdmp |
Source: | Binary string: setupapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: dnsapi.pdb$LQ source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: imagehlp.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wUxTheme.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wntdll.pdb( source: WerFault.exe, 0000000B.00000003.435060985.0000000002F40000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.438760333.0000000002A7C000.00000004.00000001.sdmp |
Source: | Binary string: profapi.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wgdi32full.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596797767.0000000004960000.00000004.00000040.sdmp |
Source: | Binary string: wUxTheme.pdb<Ly source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: sechost.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: combase.pdbs source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: rasman.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: propsys.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: cfgmgr32.pdbk source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593173201.0000000004DF2000.00000004.00000040.sdmp |
Source: | Binary string: dnsapi.pdb source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: msctf.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: dnsapi.pdbz0 source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: rundll32.pdb( source: WerFault.exe, 0000000D.00000003.436771504.0000000002A76000.00000004.00000001.sdmp |
Source: | Binary string: bcrypt.pdbg source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: TextInputFramework.pdb source: WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wUxTheme.pdb,0+% source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: ws2_32.pdba source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: rasapi32.pdbh0 source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: Kernel.Appcore.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp |
Source: | Binary string: cryptbase.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: bcryptprimitives.pdb source: WerFault.exe, 0000000B.00000003.440503440.00000000052D0000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593477740.0000000004DF0000.00000004.00000040.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: | Binary string: wkernelbase.pdb( source: WerFault.exe, 0000000B.00000003.434470631.0000000002F4C000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.438229075.0000000002A88000.00000004.00000001.sdmp |
Source: | Binary string: wimm32.pdbeN source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp |
Source: | Binary string: rasman.pdbF^ source: WerFault.exe, 00000014.00000003.596847466.0000000004968000.00000004.00000040.sdmp |
Source: | Binary string: oleaut32.pdb source: WerFault.exe, 0000000B.00000003.440529525.00000000052D6000.00000004.00000040.sdmp, WerFault.exe, 0000000D.00000003.593251198.0000000004DF8000.00000004.00000040.sdmp |
Source: | Binary string: wuser32.pdb source: WerFault.exe, 0000000B.00000003.440473246.0000000005301000.00000004.00000001.sdmp, WerFault.exe, 0000000D.00000003.593009404.0000000004CC1000.00000004.00000001.sdmp, WerFault.exe, 00000014.00000003.596512885.0000000004B51000.00000004.00000001.sdmp |
Source: C:\Windows\SysWOW64\rundll32.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\rundll32.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\rundll32.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\rundll32.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\rundll32.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\rundll32.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\rundll32.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\rundll32.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: FAILCRITICALERRORS | NOGPFAULTERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |
Source: C:\Windows\SysWOW64\WerFault.exe | Process information set: NOOPENFILEERRORBOX |