EurekaLog 7.9.1.0 8D15780CC9CEB34C98151D73D556A099 7154637D8B9421419118A53AB05B635D DA39A3EE5E6B4B0D3255BFEF95601890AFD80709 C4F4B0213397B0418BC47F35224F2699 Application: ------------------------------------------------------- 1.1 Start Date : Tue, 12 Oct 2021 06:25:15 -0700 1.2 Name/Description: Toad.exe - (Toad® for Oracle) 1.3 Version Number : 15.0.94.1173 1.4 Parameters : 1.5 Compilation Date: Mon, 13 Sep 2021 06:22:19 -0700 1.6 Up Time : 9 minute(s), 8 second(s) Exception: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- 2.1 Date : Tue, 12 Oct 2021 06:34:23 -0700 2.2 Address : 0000000006594F9E 2.3 Module Name : Toad.exe - (Toad® for Oracle) 2.4 Module Version: 15.0.94.1173 2.5 Type : EipzGzip 2.6 Message : 111: Could not open archive file "C:\Users\308881\AppData\Roaming\Quest Software\Toad for Oracle\15.0 beta\User Files\OracleTraceFiles\edwprod_p019_24173.trc.gz". (error 0x2). 2.7 ID : 1767C4AE 2.8 Count : 1 2.11 Sent : 0 User: ------------------------ 3.2 Name: Spotnitz, Ed Active Controls: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ 4.1 Form Class : TfrmMain 4.2 Form Text : ESPOTNITZ@EDWPROD - Toad for Oracle (x64) BETA Expires on 01-November-2021 - [Trace File Browser (C:\Users\308881\AppData\Roaming\Quest Software\Toad for Ora] 4.3 Control Class: TPageControl 4.4 Control Text : Computer: --------------------------------------------------------------------------------------------------------------------------- 5.2 Total Memory : 16976740352 (15.81 Gb) 5.3 Free Memory : 4222119936 (3.93 Gb) 5.4 Total Disk : 252847321088 (235.48 Gb) 5.5 Free Disk : 74526957568 (69.41 Gb) 5.6 System Up Time : 5 day(s), 18 hour(s), 50 minute(s), 36 second(s) / 5 day(s), 18 hour(s), 51 minute(s), 30 second(s) 5.7 Processor : Intel(R) Core(TM) i5-8365U CPU @ 1.60GHz 5.8 Display Mode : 1920 x 1080, 32 bit 5.9 Display DPI : 96 5.10 Video Card : Intel(R) UHD Graphics 620 (driver 27.20.100.9664 - RAM 1073741824) 5.11 Printer : Microsoft Print To PDF (driver 10.0.19041.906) 5.12 Virtual Machine: Operating System: --------------------------------------------------------- 6.1 Type : Microsoft Windows 10 (64 bit) 6.2 Build # : 2009 (10.0.19043.1237) 6.4 Non-Unicode Language: English (0409) 6.5 Charset/ACP : 0/1252 6.6 Install Language : English (0409) 6.7 UI Language : English (0409) Steps to reproduce: ------------ 8.1 Text: Call Stack Information: -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Methods |Details|Stack |Address |Module |Offset |Source |Unit |Class |Procedure/Method |Line | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=23392; Parent=0; Priority=0 | |Class=; Name=MAIN | |DeadLock=0; Wait Chain= | |Comment= | |------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|04 |0000000000000000|0000000006594F9E|Toad.exe |0000000002404F9E|ipzgzip.pas |ipzgzip |TipzGzip |TreatErr |649[6] | |00000040|04 |00000000007FF498|00000000065960A2|Toad.exe |00000000024060A2|ipzgzip.pas |ipzgzip |TipzGzip |ExtractAll |1142[17] | |00000040|04 |00000000007FF508|0000000009ADFCF6|Toad.exe |000000000594FCF6|frmTraceFileBrowser.pas|frmTraceFileBrowser| |UnZipLocalCompressedFile |1008[8] | |00000040|04 |00000000007FF568|0000000009AE43ED|Toad.exe |00000000059543ED|frmTraceFileBrowser.pas|frmTraceFileBrowser| |GetTraceFileForSession |1474[138] | |00000040|04 |00000000007FF768|000000000A8B31CA|Toad.exe |00000000067231CA|dmCommonActions.pas |dmCommonActions |TdmCommonActions |LoadTraceFileBrowserOrTKProf |4089[1] | |00000040|04 |00000000007FF7E8|000000000A727386|Toad.exe |0000000006597386|frmSessionBrowser.pas |frmSessionBrowser |TSessionBrowserForm|PerformTrace |8688[129] | |00000040|04 |00000000007FF978|000000000A72635B|Toad.exe |000000000659635B|frmSessionBrowser.pas |frmSessionBrowser |TSessionBrowserForm|tbStopTraceClick |8524[1] | |00000040|03 |00000000007FF9A8|0000000004699C69|Toad.exe |0000000000509C69|Vcl.Menus.pas |Vcl.Menus |TMenuItem |Click | | |00000040|03 |00000000007FF9E8|000000000469C4BF|Toad.exe |000000000050C4BF|Vcl.Menus.pas |Vcl.Menus |TMenu |DispatchCommand | | |00000040|03 |00000000007FFA18|000000000469E7F4|Toad.exe |000000000050E7F4|Vcl.Menus.pas |Vcl.Menus |TPopupList |WndProc | | |00000040|03 |00000000007FFAC8|000000000469E6F5|Toad.exe |000000000050E6F5|Vcl.Menus.pas |Vcl.Menus |TPopupList |MainWndProc | | |00000040|03 |00000000007FFB18|000000000434FAB4|Toad.exe |00000000001BFAB4|System.Classes.pas |System.Classes | |StdWndProc | | |00000040|03 |00000000007FFB68|00007FFAEA64E7E2|user32.dll |000000000000E7E2|user32.dll |user32 | | (possible CallWindowProcW+1010)| | |00000040|03 |00000000007FFCF8|00007FFAEA64E224|user32.dll |000000000000E224|user32.dll |user32 | | (possible DispatchMessageW+596)| | |00000040|03 |00000000007FFD78|00000000046C2E0F|Toad.exe |0000000000532E0F|Vcl.Forms.pas |Vcl.Forms |TApplication |ProcessMessage | | |00000040|03 |00000000007FFDF8|00000000046C2E83|Toad.exe |0000000000532E83|Vcl.Forms.pas |Vcl.Forms |TApplication |HandleMessage | | |00000040|03 |00000000007FFE68|00000000046C32EF|Toad.exe |00000000005332EF|Vcl.Forms.pas |Vcl.Forms |TApplication |Run | | |00000040|04 |00000000007FFEA8|000000000AA2F502|Toad.exe |000000000689F502|Toad.dpr |Toad | |initialization |2010[154] | |7FFF7FFE|03 |00000000007FFF28|00007FFAEA3A702E|kernel32.dll|000000000001702E|KERNEL32.DLL |KERNEL32 | |BaseThreadInitThunk | | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |Handle |Name |Description |Version |Size |Modified |Path | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |00000000016C0000|ReactiveClientLibrary.dll |Reactive Client Delphi Library |3.0.0.130 |4101208 |2021-09-13 12:43:48|C:\Program Files\Quest Software\Toad for Oracle Beta\ | |0000000001AC0000|QuestSecTech.dll | |4.5.2.491 |2911520 |2021-09-13 12:43:48|C:\Program Files\Quest Software\Toad for Oracle Beta\ | |0000000004190000|Toad.exe |Toad® for Oracle |15.0.94.1173 |180803584|2021-09-13 13:22:24|C:\Program Files\Quest Software\Toad for Oracle Beta\ | |0000000011D50000|security.dll |Security Support Provider Interface |10.0.19041.1 |5632 |2019-12-07 02:09:05|C:\Windows\System32\ | |0000000055370000|sysfer.dll |Symantec CMC Firewall sysfer |14.3.1121.100 |588216 |2021-06-21 16:19:08|C:\Windows\System32\ | |0000000180000000|icmp.dll |ICMP DLL |10.0.19041.1 |3072 |2019-12-07 02:09:34|C:\Windows\System32\ | |00007FFA61720000|QP5.dll |M~~7747f9497 |5.374.21240.22145 |29724288 |2021-08-28 10:42:54|C:\Program Files\Quest Software\Toad for Oracle Beta\ | |00007FFA6D880000|QSE.dll |Quest® Script Engine |15.0.94.1173 |5257728 |2021-09-13 13:08:32|C:\Program Files\Quest Software\Toad for Oracle Beta\ | |00007FFA7DE10000|tiptsf.dll |Touch Keyboard and Handwriting Panel Text Services Framework|10.0.19041.746 |673592 |2021-06-21 17:23:41|C:\Program Files\Common Files\microsoft shared\ink\ | |00007FFA7DFB0000|usp10.dll |Uniscribe Unicode script processor |10.0.19041.546 |79360 |2020-10-09 13:47:26|C:\Windows\System32\ | |00007FFA8E090000|SciLexer.dll |Scintilla.DLL - a Source Editing Component |4.1.2.3 |1757696 |2021-09-13 13:35:10|C:\Program Files\Quest Software\Toad for Oracle Beta\ | |00007FFA908C0000|qwave.dll |Windows NT |10.0.19041.1 |287232 |2019-12-07 02:09:05|C:\Windows\System32\ | |00007FFA96D40000|traffic.dll |Microsoft Traffic Control 1.0 DLL |10.0.19041.1 |45056 |2019-12-07 02:09:05|C:\Windows\System32\ | |00007FFAAD390000|dataexchange.dll |Data exchange |10.0.19041.1151 |238080 |2021-08-24 18:35:37|C:\Windows\System32\ | |00007FFAAD3D0000|oleacc.dll |Active Accessibility Core Component |7.2.19041.746 |403968 |2021-06-21 17:23:11|C:\Windows\System32\ | |00007FFAAE210000|atlthunk.dll |atlthunk.dll |10.0.19041.546 |40960 |2020-10-09 13:46:55|C:\Windows\System32\ | |00007FFAB0DC0000|Faultrep.dll |Windows User Mode Crash Reporting DLL |10.0.19041.1081 |488608 |2021-06-22 08:45:06|C:\Windows\System32\ | |00007FFAB2CD0000|msftedit.dll |Rich Text Edit Control, v8.5 |10.0.19041.789 |3408384 |2021-06-21 17:22:41|C:\Windows\System32\ | |00007FFAB5E20000|ondemandconnroutehelper.dll|On Demand Connctiond Route Helper |10.0.19041.546 |73728 |2020-10-09 13:46:59|C:\Windows\System32\ | |00007FFAB6BB0000|duser.dll |Windows DirectUser Engine |10.0.19041.546 |589312 |2020-10-09 13:47:28|C:\Windows\System32\ | |00007FFAB6ED0000|winspool.drv |Windows Spooler Driver |10.0.19041.1237 |566784 |2021-09-15 08:23:09|C:\Windows\System32\ | |00007FFABA540000|msvcp140.dll |Microsoft® C Runtime Library |14.29.30038.0 |565648 |2021-06-03 09:30:46|C:\Windows\System32\ | |00007FFABA930000|winrnr.dll |LDAP RnR Provider DLL |10.0.19041.546 |49152 |2020-10-09 13:47:28|C:\Windows\System32\ | |00007FFABA950000|pnrpnsp.dll |PNRP Name Space Provider |10.0.19041.546 |89088 |2020-10-09 13:48:01|C:\Windows\System32\ | |00007FFABA970000|NapiNSP.dll |E-mail Naming Shim Provider |10.0.19041.546 |70144 |2020-10-09 13:47:18|C:\Windows\System32\ | |00007FFABAEE0000|oraocrb.dll |Oracle OPSM OCRB DLL |21.0.0.0 |3318784 |2021-09-23 11:07:46|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABB210000|oci.dll |Oracle Call Interface |21.3.0.0 |817152 |2021-09-27 15:00:14|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABB2F0000|orahasgen.dll |Oracle PCW generic Library |21.0.0.0 |7889408 |2021-09-23 11:08:38|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABBB30000|wsnmp32.dll |Microsoft WinSNMP v2.0 Manager API |10.0.19041.1 |66048 |2019-12-07 02:08:58|C:\Windows\System32\ | |00007FFABBBB0000|oracell.dll |Oracle SAGE shared library |11.1.0.6 |2321408 |2021-09-27 16:10:06|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABBDF0000|orapls.dll |Oracle PLS runtime Library |21.0.0.0 |6806016 |2021-09-27 15:19:48|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABC480000|cryptui.dll |Microsoft Trust UI Provider |10.0.19041.572 |308224 |2020-10-09 13:47:27|C:\Windows\System32\ | |00007FFABC4E0000|oraztkg.dll |Oracle Kerberos/GSS-API DLL |11.1.0.1 |5301760 |2021-07-08 09:02:52|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABCB00000|oraplp.dll |Oracle PLP runtime Library |21.0.0.0 |1264128 |2021-09-27 15:20:12|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABCC40000|oraldapclnt.dll |Oracle Internet Directory Client Library |10.1.4.0 |5490176 |2021-07-08 09:01:44|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABD190000|oraxml.dll |Oracle XML Library |21.0.0.0 |7884288 |2021-07-09 15:21:36|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABD920000|orazt.dll |Oracle Security Library Supplement |21.0.0.0 |5549056 |2021-07-08 09:02:00|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABE1C0000|oraocr.dll |Oracle OPSM OCR DLL |21.0.0.0 |1255424 |2021-09-23 11:08:02|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABE300000|oraasmclnt.dll |ASM Client Access Library |21.0.0.0 |1771520 |2021-09-27 22:38:06|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABE4C0000|oranls.dll |Oracle NLS Runtime Library |21.0.0.0 |1284096 |2021-07-13 02:40:20|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABE600000|orannzsbb.dll |Oracle Security Library Core |21.0.0.0 |5123072 |2021-07-08 09:02:20|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFABEAF0000|orageneric.dll |Oracle RDBMS Generic Library |21.0.0.0 |23662592 |2021-09-27 15:25:04|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAC01B0000|oran.dll |Oracle SQL*Net ORAN DLL |21.0.0.0 |5153280 |2021-07-09 12:46:46|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAC06A0000|oracommon.dll |Oracle RDBMS Common Library |21.0.0.0 |19812864 |2021-09-27 15:22:00|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAC1990000|oraclient.dll |Oracle RDBMS Client Library |21.0.0.0 |7721472 |2021-09-27 15:22:54|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAC2110000|oracore.dll |Oracle CORE Library |12.0.0.0 |2010624 |2021-07-07 12:14:28|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAC2330000|hhctrl.ocx |Microsoft® HTML Help Control |10.0.19041.746 |729600 |2021-06-21 17:23:34|C:\Windows\System32\ | |00007FFAC4DA0000|orasnls.dll |Oracle SNLS Runtime Library |21.0.0.0 |312320 |2021-07-13 02:40:28|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAC4F50000|oranl.dll |Oracle SQL*Net ORANL DLL |21.0.0.0 |721920 |2021-07-09 12:37:22|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAC5EB0000|oranro.dll |Oracle SQL*Net ORANRO DLL |21.0.0.0 |390656 |2021-07-09 12:36:56|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAC5F50000|oraons.dll |Oracle Notification Service |18.1.0.1 |355328 |2021-09-20 18:17:30|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAC6030000|orawsec.dll | | |328192 |2021-09-27 04:26:58|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAC60D0000|oraplc.dll |Oracle PLC runtime Library |21.0.0.0 |150016 |2021-09-27 15:19:28|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAC61E0000|cscapi.dll |Offline Files Win32 API |10.0.19041.546 |51200 |2020-10-09 13:47:33|C:\Windows\System32\ | |00007FFAC62C0000|TextShaping.dll | | |707016 |2021-06-21 17:22:46|C:\Windows\System32\ | |00007FFAC70C0000|DWrite.dll |Microsoft DirectX Typography Services |10.0.19041.1165 |2586112 |2021-08-24 18:35:42|C:\Windows\System32\ | |00007FFAC9210000|oraclsce.dll |Oracle Clusterware Cluster Events Library |19.0.0.0 |203776 |2021-09-23 11:09:16|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFACAD80000|textinputframework.dll |"TextInputFramework.DYNLINK" |10.0.19041.1202 |1015944 |2021-09-15 08:23:15|C:\Windows\System32\ | |00007FFACB8C0000|credui.dll |Credential Manager User Interface |10.0.19041.546 |50688 |2020-10-09 13:47:27|C:\Windows\System32\ | |00007FFACB900000|oranldap.dll |Oracle SQL*Net ORANLDAP DLL |21.0.0.0 |346112 |2021-07-09 12:38:04|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFACCCD0000|orantcp.dll |Oracle SQL*Net ORANTCP DLL |21.0.0.0 |362496 |2021-07-09 12:37:26|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFACCDC0000|VCRUNTIME140.dll |Microsoft® C Runtime Library |14.27.29114.0 |94088 |2021-07-21 17:17:11|C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ | |00007FFACCE20000|C_G18030.DLL |GB18030 DBCS-Unicode Conversion DLL |10.0.19041.867 |227840 |2021-06-21 17:23:03|C:\Windows\System32\ | |00007FFACCF50000|wininet.dll |Internet Extensions for Win32 |11.0.19041.1202 |5016064 |2021-09-15 08:23:26|C:\Windows\System32\ | |00007FFACD420000|comctl32.dll |User Experience Controls Library |6.10.19041.1110 |2710352 |2021-07-09 14:18:06|C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.1110_none_60b5254171f9507e\| |00007FFACFBA0000|mpr.dll |Multiple Provider Router DLL |10.0.19041.546 |109504 |2020-10-09 13:47:26|C:\Windows\System32\ | |00007FFACFD20000|winmm.dll |MCI API DLL |10.0.19041.546 |147200 |2020-10-09 13:46:51|C:\Windows\System32\ | |00007FFACFD50000|GdiPlus.dll |Microsoft GDI+ |10.0.19041.1151 |1721856 |2021-07-31 20:45:40|C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.19041.1151_none_91a40286cc884949\ | |00007FFAD0190000|oledlg.dll |OLE User Interface Support |10.0.19041.746 |210432 |2021-06-21 17:22:59|C:\Windows\System32\ | |00007FFAD01F0000|C_ISCII.DLL |ISCII Code Page Translation DLL |10.0.19041.1 |14848 |2019-12-07 02:09:39|C:\Windows\System32\ | |00007FFAD0270000|MSOXMLMF.DLL |Microsoft Office XML MIME Filter |16.0.55555.10000 |76152 |2021-07-21 17:17:11|C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ | |00007FFAD08C0000|msimg32.dll |GDIEXT Client DLL |10.0.19041.546 |8192 |2020-10-09 13:47:26|C:\Windows\System32\ | |00007FFAD08D0000|wsock32.dll |Windows Socket 32-Bit DLL |10.0.19041.1 |18944 |2019-12-07 02:08:41|C:\Windows\System32\ | |00007FFAD12C0000|oraocrutl.dll |Oracle OPSM OCRUTL DLL |21.0.0.0 |120832 |2021-09-23 11:07:34|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAD1F50000|srvcli.dll |Server Service Client DLL |10.0.19041.546 |117800 |2020-10-09 13:47:24|C:\Windows\System32\ | |00007FFAD36D0000|orasql.dll |Oracle SQL Runtime Library |21.0.0.0 |237568 |2021-09-27 14:52:40|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAD3EF0000|oraslax.dll |Oracle SLAX runtime Library |21.0.0.0 |63488 |2021-07-13 02:58:06|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAD3FA0000|orancrypt.dll |Oracle SQL*Net ORANCRYPT DLL |21.0.0.0 |155136 |2021-07-09 12:37:50|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAD4010000|orangsmshd.dll |Oracle SQL*Net ORANGSMSHD DLL |21.0.0.0 |160256 |2021-07-09 12:37:08|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAD4330000|dbgcore.dll |Windows Core Debugging Helpers |10.0.19041.789 |166400 |2021-06-21 17:23:01|C:\Windows\System32\ | |00007FFAD4360000|dbghelp.dll |Windows Image Helper |10.0.19041.867 |1866240 |2021-06-21 17:23:01|C:\Windows\System32\ | |00007FFAD4900000|C_IS2022.DLL |ISO-2022 Code Page Translation DLL |10.0.19041.867 |17920 |2021-06-21 17:23:03|C:\Windows\System32\ | |00007FFAD4920000|oraunls.dll |Oracle UNLS Runtime Library |21.0.0.0 |155648 |2021-07-13 02:40:24|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAD4950000|netapi32.dll |Net Win32 API DLL |10.0.19041.546 |82176 |2020-10-09 13:47:15|C:\Windows\System32\ | |00007FFAD4F80000|urlmon.dll |OLE32 Extensions for Win32 |11.0.19041.1237 |1945600 |2021-09-15 08:23:26|C:\Windows\System32\ | |00007FFAD5190000|iertutil.dll |Run time utility for Internet Explorer |11.0.19041.1081 |2809272 |2021-06-22 08:45:07|C:\Windows\System32\ | |00007FFAD7B00000|cryptnet.dll |Crypto Network Related API |10.0.19041.906 |191632 |2021-06-21 17:23:00|C:\Windows\System32\ | |00007FFADF540000|secur32.dll |Security Support Provider Interface |10.0.19041.546 |28672 |2020-10-09 13:47:31|C:\Windows\System32\ | |00007FFADF5C0000|rasadhlp.dll |Remote Access AutoDial Helper |10.0.19041.546 |17408 |2020-10-09 13:47:33|C:\Windows\System32\ | |00007FFADFA10000|samcli.dll |Security Accounts Manager Client DLL |10.0.19041.546 |82944 |2020-10-09 13:47:24|C:\Windows\System32\ | |00007FFADFAA0000|npmproxy.dll |Network List Manager Proxy |10.0.19041.906 |47616 |2021-06-21 17:23:10|C:\Windows\System32\ | |00007FFAE0060000|taskschd.dll |Task Scheduler COM API |10.0.19041.1202 |707536 |2021-09-15 08:23:28|C:\Windows\System32\ | |00007FFAE0BF0000|orantns.dll |Oracle SQL*Net ORANTNS DLL |21.0.0.0 |74752 |2021-07-09 12:37:54|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAE0D70000|nlaapi.dll |Network Location Awareness 2 |10.0.19041.1151 |97280 |2021-08-24 18:35:50|C:\Windows\System32\ | |00007FFAE0FE0000|wmiclnt.dll |WMI Client API |10.0.19041.546 |49152 |2020-10-09 13:46:50|C:\Windows\System32\ | |00007FFAE1380000|ColorAdapterClient.dll |Microsoft Color Adapter Client |10.0.19041.546 |61960 |2020-10-09 13:47:10|C:\Windows\System32\ | |00007FFAE13F0000|mscms.dll |Microsoft Color Matching System DLL |10.0.19041.746 |708592 |2021-06-21 17:22:46|C:\Windows\System32\ | |00007FFAE1510000|version.dll |Version Checking and File Installation Libraries |10.0.19041.546 |31496 |2020-10-09 13:47:33|C:\Windows\System32\ | |00007FFAE1640000|WindowsCodecs.dll |Microsoft Windows Codecs Library |10.0.19041.1151 |1784480 |2021-08-24 18:35:42|C:\Windows\System32\ | |00007FFAE1800000|wshbth.dll |Windows Sockets Helper DLL |10.0.19041.546 |64000 |2020-10-09 13:47:15|C:\Windows\System32\ | |00007FFAE1820000|twinapi.appcore.dll |twinapi.appcore |10.0.19041.964 |2100112 |2021-06-21 17:22:43|C:\Windows\System32\ | |00007FFAE22E0000|FWPUCLNT.DLL |FWP/IPsec User-Mode API |10.0.19041.1081 |500224 |2021-06-22 08:45:02|C:\Windows\System32\ | |00007FFAE2930000|dhcpcsvc.dll |DHCP Client Service |10.0.19041.546 |101376 |2020-10-09 13:47:23|C:\Windows\System32\ | |00007FFAE2950000|dhcpcsvc6.DLL |DHCPv6 Client |10.0.19041.546 |73216 |2020-10-09 13:47:23|C:\Windows\System32\ | |00007FFAE2B00000|winnsi.dll |Network Store Information RPC interface |10.0.19041.546 |35640 |2020-10-09 13:47:26|C:\Windows\System32\ | |00007FFAE2CC0000|xmllite.dll |Microsoft XmlLite Library |10.0.19041.546 |215352 |2020-10-09 13:47:27|C:\Windows\System32\ | |00007FFAE2D10000|netprofm.dll |Network List Manager |10.0.19041.906 |228352 |2021-06-21 17:23:10|C:\Windows\System32\ | |00007FFAE2EC0000|msxml6.dll |MSXML 6.0 |6.30.19041.1023 |2473072 |2021-06-21 17:41:49|C:\Windows\System32\ | |00007FFAE3510000|propsys.dll |Microsoft Property System |7.0.19041.1023 |1003048 |2021-06-21 17:41:51|C:\Windows\System32\ | |00007FFAE37B0000|WinTypes.dll |Windows Base Types DLL |10.0.19041.1202 |1394008 |2021-09-15 08:23:23|C:\Windows\System32\ | |00007FFAE3DE0000|d3d11.dll |Direct3D 11 Runtime |10.0.19041.1202 |2503520 |2021-09-15 08:23:14|C:\Windows\System32\ | |00007FFAE4740000|dcomp.dll |Microsoft DirectComposition Library |10.0.19041.1237 |1980760 |2021-09-15 08:23:22|C:\Windows\System32\ | |00007FFAE4BD0000|oranhost.dll |Oracle SQL*Net ORANHOST DLL |21.0.0.0 |92672 |2021-07-09 12:38:00|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAE4CE0000|orancds.dll |Oracle SQL*Net ORANCDS DLL |21.0.0.0 |11776 |2021-07-09 12:38:24|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAE51F0000|CoreUIComponents.dll |Microsoft Core UI Components Dll |10.0.19041.546 |3537520 |2020-10-09 13:47:09|C:\Windows\System32\ | |00007FFAE5550000|CoreMessaging.dll |Microsoft CoreMessaging Dll |10.0.19041.746 |986464 |2021-06-21 17:22:59|C:\Windows\System32\ | |00007FFAE5780000|oravsn.dll |Oracle RDBMS Version Library |21.0.0.0 |11264 |2021-09-27 15:20:50|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAE5790000|orauts.dll |Oracle CORE UTS PT Library |11.2.0.1 |16896 |2021-07-07 12:14:18|C:\Oracle\product\21c\dbhomeXE\bin\ | |00007FFAE5930000|wtsapi32.dll |Windows Remote Desktop Session Host Server SDK APIs |10.0.19041.546 |67192 |2020-10-09 13:46:55|C:\Windows\System32\ | |00007FFAE5A90000|VCRUNTIME140_1.dll |Microsoft® C Runtime Library |14.27.29114.0 |36744 |2021-07-21 17:17:11|C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ | |00007FFAE5CC0000|uxtheme.dll |Microsoft UxTheme Library |10.0.19041.1081 |628736 |2021-06-22 08:45:08|C:\Windows\System32\ | |00007FFAE5E90000|dwmapi.dll |Microsoft Desktop Window Manager API |10.0.19041.746 |168408 |2021-06-21 17:22:59|C:\Windows\System32\ | |00007FFAE5EC0000|wer.dll |Windows Error Reporting DLL |10.0.19041.1081 |897128 |2021-06-22 08:45:06|C:\Windows\System32\ | |00007FFAE6180000|kernel.appcore.dll |AppModel API Host |10.0.19041.546 |60464 |2020-10-09 13:47:13|C:\Windows\System32\ | |00007FFAE6380000|windows.storage.dll |Microsoft WinRT Storage API |10.0.19041.1202 |7964480 |2021-09-15 08:23:16|C:\Windows\System32\ | |00007FFAE6BF0000|gpapi.dll |Group Policy Client API |10.0.19041.1151 |133760 |2021-08-24 18:35:49|C:\Windows\System32\ | |00007FFAE6C20000|ntmarta.dll |Windows NT MARTA provider |10.0.19041.546 |191656 |2020-10-09 13:47:24|C:\Windows\System32\ | |00007FFAE6CB0000|dxgi.dll |DirectX Graphics Infrastructure |10.0.19041.964 |984416 |2021-06-21 17:22:46|C:\Windows\System32\ | |00007FFAE7020000|authz.dll |Authorization Framework |10.0.19041.546 |292864 |2020-10-09 13:47:24|C:\Windows\System32\ | |00007FFAE72E0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |10.0.19041.1052 |207080 |2021-06-21 17:41:56|C:\Windows\System32\ | |00007FFAE7370000|winhttp.dll |Windows HTTP Services |10.0.19041.1151 |1076368 |2021-08-24 18:35:48|C:\Windows\System32\ | |00007FFAE7510000|wkscli.dll |Workstation Service Client DLL |10.0.19041.546 |82656 |2020-10-09 13:47:24|C:\Windows\System32\ | |00007FFAE7760000|IPHLPAPI.DLL |IP Helper API |10.0.19041.546 |230392 |2020-10-09 13:47:23|C:\Windows\System32\ | |00007FFAE77A0000|dnsapi.dll |DNS Client API DLL |10.0.19041.1151 |827944 |2021-08-24 18:35:48|C:\Windows\System32\ | |00007FFAE7870000|netutils.dll |Net Win32 API Helpers DLL |10.0.19041.546 |41816 |2020-10-09 13:47:24|C:\Windows\System32\ | |00007FFAE7880000|logoncli.dll |Net Logon Client DLL |10.0.19041.610 |260800 |2021-06-21 17:23:01|C:\Windows\System32\ | |00007FFAE7A70000|mswsock.dll |Microsoft Windows Sockets 2.0 Service Provider |10.0.19041.546 |418416 |2020-10-09 13:47:23|C:\Windows\System32\ | |00007FFAE7B40000|winsta.dll |Winstation Library |10.0.19041.546 |351200 |2020-10-09 13:46:55|C:\Windows\System32\ | |00007FFAE7CC0000|cryptsp.dll |Cryptographic Service Provider API |10.0.19041.546 |83744 |2020-10-09 13:47:24|C:\Windows\System32\ | |00007FFAE7D40000|CRYPTBASE.dll |Base cryptographic API DLL |10.0.19041.546 |34152 |2020-10-09 13:47:26|C:\Windows\System32\ | |00007FFAE7D70000|wldp.dll |Windows Lockdown Policy |10.0.19041.662 |173016 |2021-06-21 17:23:00|C:\Windows\System32\ | |00007FFAE7F00000|msasn1.dll |ASN.1 Runtime APIs |10.0.19041.546 |64072 |2020-10-09 13:47:24|C:\Windows\System32\ | |00007FFAE8120000|dpapi.dll |Data Protection API |10.0.19041.546 |16384 |2020-10-09 13:47:24|C:\Windows\System32\ | |00007FFAE8130000|umpdc.dll | | |64552 |2020-10-09 13:46:52|C:\Windows\System32\ | |00007FFAE8150000|powrprof.dll |Power Profile Helper DLL |10.0.19041.546 |295464 |2020-10-09 13:47:24|C:\Windows\System32\ | |00007FFAE8250000|sspicli.dll |Security Support Provider Interface |10.0.19041.906 |186976 |2021-06-21 17:23:02|C:\Windows\System32\ | |00007FFAE8290000|userenv.dll |Userenv |10.0.19041.572 |176656 |2020-10-09 13:47:24|C:\Windows\System32\ | |00007FFAE82D0000|profapi.dll |User Profile Basic API |10.0.19041.844 |115728 |2021-06-21 17:23:02|C:\Windows\System32\ | |00007FFAE8390000|bcryptPrimitives.dll |Windows Cryptographic Primitives Library |10.0.19041.1202 |529968 |2021-09-15 08:23:25|C:\Windows\System32\ | |00007FFAE8420000|wintrust.dll |Microsoft Trust Verification APIs |10.0.19041.1237 |383248 |2021-09-15 08:23:16|C:\Windows\System32\ | |00007FFAE8530000|crypt32.dll |Crypto API32 |10.0.19041.1202 |1383144 |2021-09-15 08:23:23|C:\Windows\System32\ | |00007FFAE8690000|win32u.dll |Win32u |10.0.19041.1237 |132744 |2021-09-15 08:23:16|C:\Windows\System32\ | |00007FFAE86C0000|gdi32full.dll |GDI Client DLL |10.0.19041.1110 |1075864 |2021-08-02 18:08:37|C:\Windows\System32\ | |00007FFAE87D0000|cfgmgr32.dll |Configuration Manager DLL |10.0.19041.1151 |305264 |2021-08-24 18:35:48|C:\Windows\System32\ | |00007FFAE8820000|KERNELBASE.dll |Windows NT BASE API Client DLL |10.0.19041.1202 |2923944 |2021-09-15 08:23:25|C:\Windows\System32\ | |00007FFAE8AF0000|ucrtbase.dll |Microsoft® C Runtime Library |10.0.19041.789 |1044888 |2021-06-21 17:23:00|C:\Windows\System32\ | |00007FFAE8BF0000|bcrypt.dll |Windows Cryptographic Primitives Library |10.0.19041.1023 |146248 |2021-06-21 17:41:55|C:\Windows\System32\ | |00007FFAE8C20000|msvcp_win.dll |Microsoft® C Runtime Library |10.0.19041.789 |634760 |2021-06-21 17:23:00|C:\Windows\System32\ | |00007FFAE8CC0000|rpcrt4.dll |Remote Procedure Call Runtime |10.0.19041.1081 |1215368 |2021-06-22 08:45:07|C:\Windows\System32\ | |00007FFAE8DF0000|oleaut32.dll |OLEAUT32.DLL |10.0.19041.985 |831544 |2021-06-21 17:23:01|C:\Windows\System32\ | |00007FFAE8EC0000|gdi32.dll |GDI Client DLL |10.0.19041.1202 |166312 |2021-09-15 08:23:14|C:\Windows\System32\ | |00007FFAE8F50000|SHCore.dll |SHCORE |10.0.19041.1023 |704496 |2021-06-21 17:41:52|C:\Windows\System32\ | |00007FFAE9000000|shlwapi.dll |Shell Light-weight Utility Library |10.0.19041.1023 |342416 |2021-06-21 17:42:00|C:\Windows\System32\ | |00007FFAE90C0000|clbcatq.dll |COM+ Configuration Catalog |2001.12.10941.16384|672976 |2020-10-09 13:47:23|C:\Windows\System32\ | |00007FFAE9170000|comdlg32.dll |Common Dialogs DLL |10.0.19041.906 |857600 |2021-06-21 17:23:13|C:\Windows\System32\ | |00007FFAE9400000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |10.0.19041.906 |625496 |2021-06-21 17:23:02|C:\Windows\System32\ | |00007FFAE94A0000|imagehlp.dll |Windows NT Image Helper |10.0.19041.546 |107416 |2020-10-09 13:47:25|C:\Windows\System32\ | |00007FFAE94C0000|ws2_32.dll |Windows Socket 2.0 32-Bit DLL |10.0.19041.546 |427200 |2020-10-09 13:47:26|C:\Windows\System32\ | |00007FFAE95C0000|ole32.dll |Microsoft OLE for Windows |10.0.19041.1202 |1214264 |2021-09-15 08:23:22|C:\Windows\System32\ | |00007FFAE96F0000|psapi.dll |Process Status Helper |10.0.19041.546 |19144 |2020-10-09 13:47:21|C:\Windows\System32\ | |00007FFAE9700000|advapi32.dll |Advanced Windows 32 Base API |10.0.19041.1052 |689552 |2021-06-21 17:41:46|C:\Windows\System32\ | |00007FFAE9C30000|nsi.dll |NSI User-mode interface DLL |10.0.19041.610 |24792 |2021-06-21 17:23:02|C:\Windows\System32\ | |00007FFAE9C40000|shell32.dll |Windows Shell Common Dll |10.0.19041.1202 |7632792 |2021-09-15 08:23:29|C:\Windows\System32\ | |00007FFAEA390000|kernel32.dll |Windows NT BASE API Client DLL |10.0.19041.1202 |770144 |2021-09-15 08:23:11|C:\Windows\System32\ | |00007FFAEA450000|msctf.dll |MSCTF Server DLL |10.0.19041.1202 |1126488 |2021-09-15 08:23:25|C:\Windows\System32\ | |00007FFAEA570000|imm32.dll |Multi-User Windows IMM32 API Client DLL |10.0.19041.546 |185448 |2020-10-09 13:47:26|C:\Windows\System32\ | |00007FFAEA5A0000|msvcrt.dll |Windows NT CRT DLL |7.0.19041.546 |637360 |2020-10-09 13:47:25|C:\Windows\System32\ | |00007FFAEA640000|user32.dll |Multi-User Windows USER API Client DLL |10.0.19041.1202 |1708056 |2021-09-15 08:23:16|C:\Windows\System32\ | |00007FFAEA7F0000|combase.dll |Microsoft COM for Windows |10.0.19041.1202 |3507504 |2021-09-15 08:23:23|C:\Windows\System32\ | |00007FFAEAC70000|ntdll.dll |NT Layer DLL |10.0.19041.1202 |2024728 |2021-09-15 08:23:24|C:\Windows\System32\ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ Processes Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |ID |Name |Description |Version |Memory |Priority |Threads|Path |User |Session| ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |460 |firefox.exe |Firefox |93.0.0.7940 |297828352|Normal |83 |C:\Program Files\Mozilla Firefox\ |308881|1 | |884 |csrss.exe |Client Server Runtime Process |10.0.19041.546 |0 |High |14 |C:\Windows\System32\ | |1 | |908 |Pulse.exe |Pulse Secure Desktop Client |9.1.6.2223 |43012096 |Normal |5 |C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\ |308881|1 | |980 |winlogon.exe |Windows Logon Application |10.0.19041.1202 |0 |High |2 |C:\Windows\System32\ | |1 | |1044 |fontdrvhost.exe |Usermode Font Driver Host |10.0.19041.1165 |0 |Normal |5 |C:\Windows\System32\ | |1 | |1424 |dwm.exe |Desktop Window Manager |10.0.19041.746 |0 |High |15 |C:\Windows\System32\ | |1 | |1816 |BridgeCommunication.exe | |1.36.2510.0 |24494080 |Normal |4 |C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_cac5689265dc40ee\x64\ |308881|1 | |1912 |SynTPEnh.exe |Synaptics TouchPad 64-bit Enhancements |19.5.9.50 |19431424 |Above-Normal|8 |C:\Windows\System32\ |308881|1 | |2276 |ccSvcHst.exe |Symantec Service Framework |17.2.5.4 |4005888 |Normal |20 |C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.1169.0100.105\Bin\ |308881|1 | |2376 |DWRCST.EXE |DameWare products |12.0.5.6002 |11059200 |Normal |4 |C:\Windows\dwrcs\ |308881|1 | |2844 |SelfServicePlugin.exe |Citrix Receiver |4.12.0.18013 |61661184 |Normal |10 |C:\Program Files (x86)\Citrix\Receiver\SelfServicePlugin\ |308881|1 | |4144 |sihost.exe |Shell Infrastructure Host |10.0.19041.746 |62582784 |Normal |59 |C:\Windows\System32\ |308881|1 | |4292 |firefox.exe |Firefox |93.0.0.7940 |238084096|Normal |40 |C:\Program Files\Mozilla Firefox\ |308881|1 | |4872 |svchost.exe |Host Process for Windows Services |10.0.19041.546 |8912896 |Normal |2 |C:\Windows\System32\ |308881|1 | |5180 |svchost.exe |Host Process for Windows Services |10.0.19041.546 |45924352 |Normal |5 |C:\Windows\System32\ |308881|1 | |5788 |wfcrun32.exe |Citrix Connection Manager |14.12.0.18020 |15966208 |Normal |19 |C:\Program Files (x86)\Citrix\Receiver\ |308881|1 | |7676 |GoToAssistUnattended.exe |GoToAssist Remote Support |5.6.0.1373 |0 |Normal |9 |C:\Program Files (x86)\GoToAssist Remote Support Unattended\7092732138299593219\ | |1 | |8136 |GoToAssistLoggerProcess.exe |GoToAssist Remote Support |5.6.0.1373 |0 |Normal |4 |C:\Program Files (x86)\GoToAssist Remote Support Unattended\7092732138299593219\ | |1 | |8208 |GoToAssistCrashHandler.exe | | |0 |Normal |6 |C:\Program Files (x86)\GoToAssist Remote Support Unattended\7092732138299593219\ | |1 | |8788 |firefox.exe |Firefox |93.0.0.7940 |72437760 |Normal |29 |C:\Program Files\Mozilla Firefox\ |308881|1 | |8956 |GoToAssistCrashHandler.exe | | |0 |Normal |6 |C:\Program Files (x86)\GoToAssist Remote Support Unattended\7092732138299593219\ | |1 | |9080 |taskhostw.exe |Host Process for Windows Tasks |10.0.19041.906 |20238336 |Normal |9 |C:\Windows\System32\ |308881|1 | |10060|RuntimeBroker.exe |Runtime Broker |10.0.19041.746 |7913472 |Normal |1 |C:\Windows\System32\ |308881|1 | |10332|SettingSyncHost.exe |Host Process for Setting Synchronization|10.0.19041.1202 |6742016 |Below-Normal|3 |C:\Windows\System32\ |308881|1 | |10348|Trebuchet.App.exe |Trebuchet Application |10.0.0.1676 |901165056|Normal |101 |C:\Program Files (x86)\Cherwell Software\Cherwell Service Management\ |308881|1 | |10464|Teams.exe |Microsoft Teams |1.4.0.26376 |236814336|Normal |14 |C:\Users\308881\AppData\Local\Microsoft\Teams\current\ |308881|1 | |11076|ctfmon.exe |CTF Loader |10.0.19041.1 |41492480 |High |12 |C:\Windows\System32\ |308881|1 | |11276|LockApp.exe |LockApp.exe |10.0.19041.844 |51675136 |Normal |12 |C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\ |308881|1 | |11468|svchost.exe |Host Process for Windows Services |10.0.19041.546 |39276544 |Normal |13 |C:\Windows\System32\ |308881|1 | |12084|firefox.exe |Firefox |93.0.0.7940 |37920768 |Normal |21 |C:\Program Files\Mozilla Firefox\ |308881|1 | |12204|ssonsvr.exe |Citrix Pass-through Authentication |14.12.0.18020 |0 |Normal |5 |C:\Program Files (x86)\Citrix\Receiver\ | |1 | |12412|StartMenuExperienceHost.exe | | |76185600 |Normal |9 |C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\ |308881|1 | |12416|GoToAssistUnattendedUi.exe |GoToAssist Remote Support |5.6.0.1373 |16715776 |Normal |3 |C:\Program Files (x86)\GoToAssist Remote Support Unattended\7092732138299593219\ |308881|1 | |12432|GoToAssistCrashHandler.exe | | |6516736 |Normal |6 |C:\Program Files (x86)\GoToAssist Remote Support Unattended\7092732138299593219\ |308881|1 | |12672|explorer.exe |Windows Explorer |10.0.19041.1202 |249208832|Normal |172 |C:\Windows\ |308881|1 | |12912|igfxEM.exe |igfxEM Module |6.15.100.9664 |13434880 |Normal |3 |C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\ |308881|1 | |12992|svchost.exe |Host Process for Windows Services |10.0.19041.546 |25739264 |Normal |6 |C:\Windows\System32\ |308881|1 | |13040|RuntimeBroker.exe |Runtime Broker |10.0.19041.746 |27279360 |Normal |2 |C:\Windows\System32\ |308881|1 | |13060|ShellExperienceHost.exe |Windows Shell Experience Host |10.0.19041.1151 |76578816 |Normal |32 |C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ |308881|1 | |13224|svchost.exe |Host Process for Windows Services |10.0.19041.546 |7974912 |Normal |2 |C:\Windows\System32\ |308881|1 | |13324|RuntimeBroker.exe |Runtime Broker |10.0.19041.746 |37978112 |Normal |18 |C:\Windows\System32\ |308881|1 | |13348|SearchApp.exe |Search application |10.0.19041.1202 |106385408|Normal |63 |C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\ |308881|1 | |13556|ERCInterface.exe |Umbrella RC UI |3.0.17.0 |48644096 |Normal |4 |C:\Program Files (x86)\OpenDNS\Umbrella Roaming Client\ |308881|1 | |13600|RuntimeBroker.exe |Runtime Broker |10.0.19041.746 |54968320 |Normal |20 |C:\Windows\System32\ |308881|1 | |13972|TextInputHost.exe | |2001.22012.0.3530|50356224 |Normal |10 |C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\ |308881|1 | |14000|KEDITW32.exe |KEDIT for Windows Executable |1.6.1.0 |16834560 |Normal |1 |C:\Program Files (x86)\KEDITW\ |308881|1 | |14036|SelfService.exe |Citrix Receiver |4.12.0.18013 |34484224 |Normal |13 |C:\Program Files (x86)\Citrix\Receiver\SelfServicePlugin\ |308881|1 | |14256|SecurityHealthSystray.exe |Windows Security notification icon |10.0.19041.1 |9637888 |Normal |1 |C:\Windows\System32\ |308881|1 | |14408|RtkAudUService64.exe |Realtek HD Audio Universal Service |1.0.370.1 |0 |Normal |6 |C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f31d3fd59f245137\ | |1 | |14448|RtkAudUService64.exe |Realtek HD Audio Universal Service |1.0.370.1 |19795968 |Normal |18 |C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f31d3fd59f245137\ |308881|1 | |14620|Teams.exe |Microsoft Teams |1.4.0.26376 |131919872|Normal |15 |C:\Users\308881\AppData\Local\Microsoft\Teams\current\ |308881|1 | |14664|Teams.exe |Microsoft Teams |1.4.0.26376 |199303168|Normal |47 |C:\Users\308881\AppData\Local\Microsoft\Teams\current\ |308881|1 | |14688|KeePass.exe |KeePass |2.34.0.0 |77328384 |Normal |4 |C:\Program Files (x86)\KeePass-2.34\ |308881|1 | |14776|Greenshot.exe |Greenshot |1.2.10.6 |112160768|Normal |9 |C:\Program Files\Greenshot\ |308881|1 | |14860|concentr.exe |Citrix Connection Center |14.12.0.18020 |20873216 |Normal |10 |C:\Program Files (x86)\Citrix\Receiver\ |308881|1 | |14972|Receiver.exe |Citrix Receiver Application |4.12.0.18016 |20574208 |Normal |38 |C:\Program Files (x86)\Citrix\Receiver\Receiver\ |308881|1 | |15048|OneDrive.exe |Microsoft OneDrive |21.180.905.7 |67932160 |Normal |26 |C:\Users\308881\AppData\Local\Microsoft\OneDrive\ |308881|1 | |15104|RuntimeBroker.exe |Runtime Broker |10.0.19041.746 |30310400 |Normal |10 |C:\Windows\System32\ |308881|1 | |15108|IGCCTray.exe |IGCCTray |1.100.3370.0 |66703360 |Normal |16 |C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3370.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\|308881|1 | |15248|Teams.exe |Microsoft Teams |1.4.0.26376 |130756608|Above-Normal|13 |C:\Users\308881\AppData\Local\Microsoft\Teams\current\ |308881|1 | |15320|Teams.exe |Microsoft Teams |1.4.0.26376 |50032640 |Normal |9 |C:\Users\308881\AppData\Local\Microsoft\Teams\current\ |308881|1 | |15416|Teams.exe |Microsoft Teams |1.4.0.26376 |61620224 |Normal |17 |C:\Users\308881\AppData\Local\Microsoft\Teams\current\ |308881|1 | |15496|firefox.exe |Firefox |93.0.0.7940 |169193472|Normal |30 |C:\Program Files\Mozilla Firefox\ |308881|1 | |15656|Teams.exe |Microsoft Teams |1.4.0.26376 |352698368|Normal |21 |C:\Users\308881\AppData\Local\Microsoft\Teams\current\ |308881|1 | |15752|Teams.exe |Microsoft Teams |1.4.0.26376 |57458688 |Normal |9 |C:\Users\308881\AppData\Local\Microsoft\Teams\current\ |308881|1 | |15960|VBoxSVC.exe |VirtualBox Interface |6.1.26.45957 |24190976 |Normal |14 |C:\Program Files\Oracle\VirtualBox\ |308881|1 | |16036|redirector.exe |Citrix FTA, URL Redirector |14.12.0.18020 |9396224 |Normal |2 |C:\Program Files (x86)\Citrix\Receiver\ |308881|1 | |16112|RuntimeBroker.exe |Runtime Broker |10.0.19041.746 |26050560 |Normal |10 |C:\Windows\System32\ |308881|1 | |16140|IGCC.exe |IGCC |1.100.3370.0 |70209536 |Normal |12 |C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3370.0_x64__8j3eq9eme6ctt\ |308881|1 | |16224|ApplicationFrameHost.exe |Application Frame Host |10.0.19041.746 |40157184 |Normal |6 |C:\Windows\System32\ |308881|1 | |16304|RuntimeBroker.exe |Runtime Broker |10.0.19041.746 |24821760 |Normal |3 |C:\Windows\System32\ |308881|1 | |16896|msoasb.exe |Microsoft Office component |16.0.13801.20934 |56340480 |Normal |5 |C:\Program Files\Microsoft Office\root\Office16\ |308881|1 | |17224|RuntimeBroker.exe |Runtime Broker |10.0.19041.746 |20307968 |Normal |2 |C:\Windows\System32\ |308881|1 | |17532|WinStore.App.exe |Store | |2699264 |Normal |21 |C:\Program Files\WindowsApps\Microsoft.WindowsStore_12107.1001.15.0_x64__8wekyb3d8bbwe\ |308881|1 | |17816|svchost.exe |Host Process for Windows Services |10.0.19041.546 |19267584 |Normal |3 |C:\Windows\System32\ |308881|1 | |19644|SearchApp.exe |Search application |10.0.19041.1202 |97910784 |Normal |45 |C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\ |308881|1 | |21144|Teams.exe |Microsoft Teams |1.4.0.26376 |201621504|Normal |58 |C:\Users\308881\AppData\Local\Microsoft\Teams\current\ |308881|1 | |21232|SystemSettingsBroker.exe |System Settings Broker |10.0.19041.746 |29696000 |Normal |12 |C:\Windows\System32\ |308881|1 | |21304|firefox.exe |Firefox |93.0.0.7940 |131133440|Low |29 |C:\Program Files\Mozilla Firefox\ |308881|1 | |22012|svchost.exe |Host Process for Windows Services |10.0.19041.546 |9687040 |Normal |1 |C:\Windows\System32\ |308881|1 | |22212|svchost.exe |Host Process for Windows Services |10.0.19041.546 |11726848 |Normal |2 |C:\Windows\System32\ |308881|1 | |22984|BackgroundTransferHost.exe |Download/Upload Host |10.0.19041.746 |22712320 |Normal |12 |C:\Windows\System32\ |308881|1 | |23620|firefox.exe |Firefox |93.0.0.7940 |20545536 |Normal |5 |C:\Program Files\Mozilla Firefox\ |308881|1 | |24368|taskhostw.exe |Host Process for Windows Tasks |10.0.19041.906 |23080960 |Normal |4 |C:\Windows\System32\ |308881|1 | |24972|VirtualBox.exe |VirtualBox Manager |6.1.26.45957 |90169344 |Normal |7 |C:\Program Files\Oracle\VirtualBox\ |308881|1 | |25144|SecureCRT.exe |SecureCRT Application |9.0.2.2496 |165707776|Normal |15 |C:\Program Files\VanDyke Software\Clients\ |308881|1 | |25252|smartscreen.exe |Windows Defender SmartScreen |10.0.19041.1052 |25780224 |Normal |9 |C:\Windows\System32\ |308881|1 | |25392|Calculator.exe | |10.2103.8.0 |2605056 |Normal |21 |C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\ |308881|1 | |26508|firefox.exe |Firefox |93.0.0.7940 |90882048 |Normal |29 |C:\Program Files\Mozilla Firefox\ |308881|1 | |27428|dllhost.exe |COM Surrogate |10.0.19041.546 |13942784 |Normal |6 |C:\Windows\System32\ |308881|1 | |27936|SCNotification.exe |SCNotification |5.0.9058.1008 |45064192 |Normal |10 |C:\Windows\CCM\ |308881|1 | |29816|Toad.exe |Toad® for Oracle |15.0.94.1173 |526131200|Real-Time |9 |C:\Program Files\Quest Software\Toad for Oracle Beta\ |308881|1 | |30364|OUTLOOK.EXE |Microsoft Outlook |16.0.13801.20960 |570974208|Normal |63 |C:\Program Files\Microsoft Office\root\Office16\ |308881|1 | |30988|SystemSettings.exe |Settings |10.0.19041.1202 |3018752 |Normal |25 |C:\Windows\ImmersiveControlPanel\ |308881|1 | |32188|SystemSettingsAdminFlows.exe|Settings |10.0.19041.1023 |11943936 |Normal |2 |C:\Windows\System32\ |308881|1 | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ Assembler Information: ---------------------- Registers: ----------