Source: Yara match | File source: 0.2.kdsyitkxmS.exe.30c0e67.14.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 0.2.kdsyitkxmS.exe.400000.0.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 0.3.kdsyitkxmS.exe.39b0000.1.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 5.2.kdsyitkxmS.exe.400000.0.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 5.3.kdsyitkxmS.exe.3820000.1.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 5.2.kdsyitkxmS.exe.2f30e67.9.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 00000005.00000002.619390815.0000000000843000.00000040.00000001.01000000.00000003.sdmp, type: MEMORY |
Source: Yara match | File source: 00000005.00000003.368338557.0000000003C61000.00000004.00001000.00020000.00000000.sdmp, type: MEMORY |
Source: Yara match | File source: 00000005.00000002.624452357.0000000003373000.00000040.00001000.00020000.00000000.sdmp, type: MEMORY |
Source: Yara match | File source: 00000000.00000002.374126530.0000000003503000.00000040.00001000.00020000.00000000.sdmp, type: MEMORY |
Source: Yara match | File source: 00000000.00000003.353503298.0000000003DF1000.00000004.00001000.00020000.00000000.sdmp, type: MEMORY |
Source: Yara match | File source: 00000000.00000002.367355865.0000000000843000.00000040.00000001.01000000.00000003.sdmp, type: MEMORY |
Source: Yara match | File source: Process Memory Space: kdsyitkxmS.exe PID: 4652, type: MEMORYSTR |
Source: Yara match | File source: Process Memory Space: kdsyitkxmS.exe PID: 3320, type: MEMORYSTR |
Source: Yara match | File source: 0.2.kdsyitkxmS.exe.30c0e67.14.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 0.2.kdsyitkxmS.exe.400000.0.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 0.3.kdsyitkxmS.exe.39b0000.1.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 5.2.kdsyitkxmS.exe.400000.0.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 5.3.kdsyitkxmS.exe.3820000.1.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 5.2.kdsyitkxmS.exe.2f30e67.9.unpack, type: UNPACKEDPE |
Source: Yara match | File source: 00000005.00000002.619390815.0000000000843000.00000040.00000001.01000000.00000003.sdmp, type: MEMORY |
Source: Yara match | File source: 00000005.00000003.368338557.0000000003C61000.00000004.00001000.00020000.00000000.sdmp, type: MEMORY |
Source: Yara match | File source: 00000005.00000002.624452357.0000000003373000.00000040.00001000.00020000.00000000.sdmp, type: MEMORY |
Source: Yara match | File source: 00000000.00000002.374126530.0000000003503000.00000040.00001000.00020000.00000000.sdmp, type: MEMORY |
Source: Yara match | File source: 00000000.00000003.353503298.0000000003DF1000.00000004.00001000.00020000.00000000.sdmp, type: MEMORY |
Source: Yara match | File source: 00000000.00000002.367355865.0000000000843000.00000040.00000001.01000000.00000003.sdmp, type: MEMORY |
Source: Yara match | File source: Process Memory Space: kdsyitkxmS.exe PID: 4652, type: MEMORYSTR |
Source: Yara match | File source: Process Memory Space: kdsyitkxmS.exe PID: 3320, type: MEMORYSTR |
Source: | Binary string: Loader.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.0000000003503000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000003.353503298.0000000003DF1000.00000004.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.0000000003373000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000003.368338557.0000000003C61000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: EfiGuardDxe.pdb7 source: kdsyitkxmS.exe, kdsyitkxmS.exe, 00000005.00000002.622953381.0000000002B35000.00000040.00000020.00020000.00000000.sdmp |
Source: | Binary string: Unrecognized pdb formatThis error indicates attempting to access a .pdb file with source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: A connection with the server could not be establishedAn extended error was returned from the WinHttp serverThe .pdb file is probably no longer indexed in the symbol server share location. source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: Age does not matchThe module age and .pdb age do not match. source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: symsrv.pdb source: kdsyitkxmS.exe, kdsyitkxmS.exe, 00000005.00000003.368338557.0000000004098000.00000004.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000037A9000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000C79000.00000040.00000001.01000000.00000003.sdmp |
Source: | Binary string: Cvinfo is corruptThe .pdb file contains a corrupted debug codeview information. source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: Downloading symbols for [%s] %ssrv*symsrv*http://https://_bad_pdb_file.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: The symbol server has never indexed any version of this symbol fileNo version of the .pdb file with the given name has ever been registered. source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: PDB not foundUnable to locate the .pdb file in any of the symbol search path locations. source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: c:\Users\Admin\documents\visual studio 2015\Projects\Winmon\Release\Winmon.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.0000000003503000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000003.353503298.0000000003DF1000.00000004.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.0000000003373000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000003.368338557.0000000003C61000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: C:\vbox\branch\w64-1.6\out\win.amd64\release\obj\src\VBox\HostDrivers\VBoxDrv\VBoxDrv.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.0000000003503000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000003.353503298.0000000003DF1000.00000004.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.0000000003373000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000003.368338557.0000000003C61000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: Drive not readyThis error indicates a .pdb file related failure. source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: c:\Users\Admin\documents\visual studio 2015\Projects\Winmon\x64\Release\Winmon.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.0000000003503000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000003.353503298.0000000003DF1000.00000004.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.0000000003373000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000003.368338557.0000000003C61000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: Error while loading symbolsUnable to locate the .pdb file in any of the symbol search source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: zzz_AsmCodeRange_*FrameDatainvalid string positionstring too long.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: Pdb read access deniedYou may be attempting to access a .pdb file with read-only attributes source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: Unable to locate the .pdb file in this location source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: C:\Users\Admin\documents\visual studio 2015\Projects\WinmonFS\x64\Release\WinmonFS.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.0000000003503000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000003.353503298.0000000003DF1000.00000004.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.0000000003373000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000003.368338557.0000000003C61000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: The module signature does not match with .pdb signature. source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: .pdb.dbg source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: '(EfiGuardDxe.pdbx source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: symsrv.pdbGCTL source: kdsyitkxmS.exe, 00000000.00000003.353503298.0000000004228000.00000004.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.374126530.0000000003939000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000C79000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000003.368338557.0000000004098000.00000004.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000037A9000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000C79000.00000040.00000001.01000000.00000003.sdmp |
Source: | Binary string: ZZC:\winirun92 cedojuhexoy.pdb source: kdsyitkxmS.exe |
Source: | Binary string: C:\Users\admin\source\repos\driver-process-monitor-master\Release\WinmonProcessMonitor.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.0000000003503000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000003.353503298.0000000003DF1000.00000004.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.0000000003373000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000003.368338557.0000000003C61000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: or you do not have access permission to the .pdb location. source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: C:\Users\Admin\documents\visual studio 2015\Projects\WinmonFS\Release\WinmonFS.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.0000000003503000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000003.353503298.0000000003DF1000.00000004.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.0000000003373000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000003.368338557.0000000003C61000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: An Exception happened while downloading the module .pdbPlease open a bug if this is a consistent repro. source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: EfiGuardDxe.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: C:\Users\admin\source\repos\driver-process-monitor-master\x64\Release\WinmonProcessMonitor.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.0000000003503000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000003.353503298.0000000003DF1000.00000004.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000843000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.0000000003373000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000005.00000003.368338557.0000000003C61000.00000004.00001000.00020000.00000000.sdmp |
Source: | Binary string: C:\winirun92 cedojuhexoy.pdb source: kdsyitkxmS.exe |
Source: | Binary string: Signature does not matchThe module signature does not match with .pdb signature source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: dbghelp.pdb source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |
Source: | Binary string: dbghelp.pdbGCTL source: kdsyitkxmS.exe, 00000000.00000002.374126530.000000000378B000.00000040.00001000.00020000.00000000.sdmp, kdsyitkxmS.exe, 00000000.00000002.367355865.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.619390815.0000000000ACC000.00000040.00000001.01000000.00000003.sdmp, kdsyitkxmS.exe, 00000005.00000002.624452357.00000000035FB000.00000040.00001000.00020000.00000000.sdmp |