| derfischmac | 16.03.2015 15:04 | GMER 3 Code:
.text C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe[5064] C:\Windows\system32\wow64cpu.dll!CpuGetStackPointer + 23 00000000775918e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe[5064] C:\Windows\system32\wow64cpu.dll!CpuSetStackPointer + 23 0000000077591903 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe[5064] C:\Windows\system32\wow64cpu.dll!CpuFlushInstructionCache + 23 000000007759195f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlLeaveCriticalSection + 61 000007fc9a64104d 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 77 000007fc9a6410dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 93 000007fc9a6410ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 36 000007fc9a641164 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 52 000007fc9a641174 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!strcat + 152 000007fc9a641308 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!strcpy + 183 000007fc9a6413d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!strlen + 168 000007fc9a641558 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!strncat + 405 000007fc9a641705 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!strncmp + 189 000007fc9a6417dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 354 000007fc9a641952 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 370 000007fc9a641962 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!DbgUserBreakPoint + 107 000007fc9a641e3b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 126 000007fc9a64205e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 142 000007fc9a64206e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlpUmsExecuteYieldThreadEnd + 403 000007fc9a642574 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 77 000007fc9a6425dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 93 000007fc9a6425ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!_setjmp + 168 000007fc9a6426b8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 244 000007fc9a642864 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 260 000007fc9a642874 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000007fc9a642c70 5 bytes [FF, 25, CD, 5F, 00]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread + 6 000007fc9a642c76 2 bytes [90, 90]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000007fc9a642df0 5 bytes [FF, 25, 6F, 61, 00]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread + 6 000007fc9a642df6 2 bytes [90, 90]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000007fc9a642e20 5 bytes [FF, 25, 5E, 5A, 00]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection + 6 000007fc9a642e26 2 bytes [90, 90]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000007fc9a642f40 5 bytes [FF, 25, 6D, 5C, 00]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory + 6 000007fc9a642f46 2 bytes [90, 90]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000007fc9a642ff0 5 bytes [FF, 25, F0, 5A, 00]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread + 6 000007fc9a642ff6 2 bytes [90, 90]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000007fc9a6436b1 5 bytes [FF, 25, EF, 5B, 00]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx + 6 000007fc9a6436b7 2 bytes [90, 90]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread 000007fc9a643991 5 bytes [FF, 25, 75, 56, 00]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread + 6 000007fc9a643997 2 bytes [90, 90]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 000007fc9a644211 8 bytes {JMP QWORD [RIP+0x4dcd]}
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!NtWaitLowEventPair + 19 000007fc9a644694 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 73 000007fc9a644c08 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 89 000007fc9a644c18 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlRestoreLastWin32Error + 34 000007fc9a645272 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContextUnsafeFast + 261 000007fc9a645385 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextUnsafeFast + 167 000007fc9a645437 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockExclusive + 19 000007fc9a645453 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 350 000007fc9a64571e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 908 000007fc9a64594c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedFlushSList + 116 000007fc9a6459c8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlAcquireSRWLockShared + 54 000007fc9a645a76 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockShared + 34 000007fc9a645aa2 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlQueryPerformanceCounter + 68 000007fc9a645af4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCriticalSectionRecursionCount + 35 000007fc9a645b23 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeConditionVariable + 72 000007fc9a645ca8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 222 000007fc9a646c8e 8 bytes {JMP 0xffffffffffffffd9}
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 315 000007fc9a646ceb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlNtStatusToDosError + 213 000007fc9a646dd5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlDeleteCriticalSection + 116 000007fc9a646e94 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlTryEnterCriticalSection + 462 000007fc9a64706e 8 bytes {JMP 0xffffffffffffffd8}
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlRbInsertNodeEx + 195 000007fc9a648bb3 8 bytes [50, 6C, F6, 7E, 00, 00, 00, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 135 000007fc9a648c43 8 bytes [40, 6C, F6, 7E, 00, 00, 00, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 937 000007fc9a648f65 8 bytes [30, 6C, F6, 7E, 00, 00, 00, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlRunOnceExecuteOnce + 116 000007fc9a648fe4 8 bytes [20, 6C, F6, 7E, 00, 00, 00, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlSetCurrentTransaction + 32 000007fc9a64900c 8 bytes [10, 6C, F6, 7E, 00, 00, 00, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeSListHead + 466 000007fc9a6492a6 8 bytes [00, 6C, F6, 7E, 00, 00, 00, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\system32\wow64cpu.dll!CpuProcessInit + 616 00000000775915f0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\system32\wow64cpu.dll!CpuResetToConsistentState + 272 00000000775917d4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\system32\wow64cpu.dll!CpuSetContext + 140 00000000775918c4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\system32\wow64cpu.dll!CpuGetStackPointer + 23 00000000775918e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\system32\wow64cpu.dll!CpuSetStackPointer + 23 0000000077591903 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe[4744] C:\Windows\system32\wow64cpu.dll!CpuFlushInstructionCache + 23 000000007759195f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlLeaveCriticalSection + 61 000007fc9a64104d 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 77 000007fc9a6410dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 93 000007fc9a6410ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 36 000007fc9a641164 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 52 000007fc9a641174 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!strcat + 152 000007fc9a641308 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!strcpy + 183 000007fc9a6413d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!strlen + 168 000007fc9a641558 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!strncat + 405 000007fc9a641705 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!strncmp + 189 000007fc9a6417dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 354 000007fc9a641952 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 370 000007fc9a641962 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!DbgUserBreakPoint + 107 000007fc9a641e3b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 126 000007fc9a64205e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 142 000007fc9a64206e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlpUmsExecuteYieldThreadEnd + 403 000007fc9a642574 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 77 000007fc9a6425dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 93 000007fc9a6425ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!_setjmp + 168 000007fc9a6426b8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 244 000007fc9a642864 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 260 000007fc9a642874 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000007fc9a642c70 5 bytes [FF, 25, CD, 5F, 00]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread + 6 000007fc9a642c76 2 bytes [90, 90]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000007fc9a642df0 5 bytes [FF, 25, 6F, 61, 00]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread + 6 000007fc9a642df6 2 bytes [90, 90]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000007fc9a642e20 5 bytes [FF, 25, 5E, 5A, 00]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection + 6 000007fc9a642e26 2 bytes [90, 90]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000007fc9a642f40 5 bytes [FF, 25, 6D, 5C, 00]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory + 6 000007fc9a642f46 2 bytes [90, 90]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000007fc9a642ff0 5 bytes [FF, 25, F0, 5A, 00]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread + 6 000007fc9a642ff6 2 bytes [90, 90]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000007fc9a6436b1 5 bytes [FF, 25, EF, 5B, 00]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx + 6 000007fc9a6436b7 2 bytes [90, 90]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread 000007fc9a643991 5 bytes [FF, 25, 75, 56, 00]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread + 6 000007fc9a643997 2 bytes [90, 90]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 000007fc9a644211 8 bytes {JMP QWORD [RIP+0x4dcd]}
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!NtWaitLowEventPair + 19 000007fc9a644694 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 73 000007fc9a644c08 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 89 000007fc9a644c18 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlRestoreLastWin32Error + 34 000007fc9a645272 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContextUnsafeFast + 261 000007fc9a645385 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextUnsafeFast + 167 000007fc9a645437 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockExclusive + 19 000007fc9a645453 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 350 000007fc9a64571e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 908 000007fc9a64594c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedFlushSList + 116 000007fc9a6459c8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlAcquireSRWLockShared + 54 000007fc9a645a76 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockShared + 34 000007fc9a645aa2 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlQueryPerformanceCounter + 68 000007fc9a645af4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCriticalSectionRecursionCount + 35 000007fc9a645b23 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeConditionVariable + 72 000007fc9a645ca8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 222 000007fc9a646c8e 8 bytes {JMP 0xffffffffffffffd9}
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 315 000007fc9a646ceb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlNtStatusToDosError + 213 000007fc9a646dd5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlDeleteCriticalSection + 116 000007fc9a646e94 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlTryEnterCriticalSection + 462 000007fc9a64706e 8 bytes {JMP 0xffffffffffffffd8}
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlRbInsertNodeEx + 195 000007fc9a648bb3 8 bytes [50, 6C, F8, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 135 000007fc9a648c43 8 bytes [40, 6C, F8, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 937 000007fc9a648f65 8 bytes [30, 6C, F8, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlRunOnceExecuteOnce + 116 000007fc9a648fe4 8 bytes [20, 6C, F8, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlSetCurrentTransaction + 32 000007fc9a64900c 8 bytes [10, 6C, F8, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeSListHead + 466 000007fc9a6492a6 8 bytes [00, 6C, F8, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\system32\wow64cpu.dll!CpuProcessInit + 616 00000000775915f0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\system32\wow64cpu.dll!CpuResetToConsistentState + 272 00000000775917d4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\system32\wow64cpu.dll!CpuSetContext + 140 00000000775918c4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\system32\wow64cpu.dll!CpuGetStackPointer + 23 00000000775918e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\system32\wow64cpu.dll!CpuSetStackPointer + 23 0000000077591903 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe[4888] C:\Windows\system32\wow64cpu.dll!CpuFlushInstructionCache + 23 000000007759195f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlLeaveCriticalSection + 61 000007fc9a64104d 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 77 000007fc9a6410dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 93 000007fc9a6410ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 36 000007fc9a641164 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 52 000007fc9a641174 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!strcat + 152 000007fc9a641308 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!strcpy + 183 000007fc9a6413d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!strlen + 168 000007fc9a641558 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!strncat + 405 000007fc9a641705 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!strncmp + 189 000007fc9a6417dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 354 000007fc9a641952 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 370 000007fc9a641962 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!DbgUserBreakPoint + 107 000007fc9a641e3b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 126 000007fc9a64205e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 142 000007fc9a64206e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlpUmsExecuteYieldThreadEnd + 403 000007fc9a642574 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 77 000007fc9a6425dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 93 000007fc9a6425ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!_setjmp + 168 000007fc9a6426b8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 244 000007fc9a642864 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 260 000007fc9a642874 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000007fc9a642c70 5 bytes [FF, 25, CD, 5F, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread + 6 000007fc9a642c76 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000007fc9a642df0 5 bytes [FF, 25, 6F, 61, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread + 6 000007fc9a642df6 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000007fc9a642e20 5 bytes [FF, 25, 5E, 5A, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection + 6 000007fc9a642e26 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000007fc9a642f40 5 bytes [FF, 25, 6D, 5C, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory + 6 000007fc9a642f46 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000007fc9a642ff0 5 bytes [FF, 25, F0, 5A, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread + 6 000007fc9a642ff6 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000007fc9a6436b1 5 bytes [FF, 25, EF, 5B, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx + 6 000007fc9a6436b7 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread 000007fc9a643991 5 bytes [FF, 25, 75, 56, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread + 6 000007fc9a643997 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 000007fc9a644211 8 bytes {JMP QWORD [RIP+0x4dcd]}
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!NtWaitLowEventPair + 19 000007fc9a644694 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 73 000007fc9a644c08 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 89 000007fc9a644c18 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlRestoreLastWin32Error + 34 000007fc9a645272 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContextUnsafeFast + 261 000007fc9a645385 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextUnsafeFast + 167 000007fc9a645437 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockExclusive + 19 000007fc9a645453 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 350 000007fc9a64571e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 908 000007fc9a64594c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedFlushSList + 116 000007fc9a6459c8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...] Code:
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlAcquireSRWLockShared + 54 000007fc9a645a76 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockShared + 34 000007fc9a645aa2 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlQueryPerformanceCounter + 68 000007fc9a645af4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCriticalSectionRecursionCount + 35 000007fc9a645b23 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeConditionVariable + 72 000007fc9a645ca8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 222 000007fc9a646c8e 8 bytes {JMP 0xffffffffffffffd9}
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 315 000007fc9a646ceb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlNtStatusToDosError + 213 000007fc9a646dd5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlDeleteCriticalSection + 116 000007fc9a646e94 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlTryEnterCriticalSection + 462 000007fc9a64706e 8 bytes {JMP 0xffffffffffffffd8}
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlRbInsertNodeEx + 195 000007fc9a648bb3 8 bytes [50, 6C, 64, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 135 000007fc9a648c43 8 bytes [40, 6C, 64, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 937 000007fc9a648f65 8 bytes [30, 6C, 64, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlRunOnceExecuteOnce + 116 000007fc9a648fe4 8 bytes [20, 6C, 64, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlSetCurrentTransaction + 32 000007fc9a64900c 8 bytes [10, 6C, 64, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeSListHead + 466 000007fc9a6492a6 8 bytes [00, 6C, 64, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\system32\wow64cpu.dll!CpuProcessInit + 616 00000000775915f0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\system32\wow64cpu.dll!CpuResetToConsistentState + 272 00000000775917d4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\system32\wow64cpu.dll!CpuSetContext + 140 00000000775918c4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\system32\wow64cpu.dll!CpuGetStackPointer + 23 00000000775918e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\system32\wow64cpu.dll!CpuSetStackPointer + 23 0000000077591903 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\concentr.exe[4604] C:\Windows\system32\wow64cpu.dll!CpuFlushInstructionCache + 23 000000007759195f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlLeaveCriticalSection + 61 000007fc9a64104d 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 77 000007fc9a6410dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 93 000007fc9a6410ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 36 000007fc9a641164 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 52 000007fc9a641174 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!strcat + 152 000007fc9a641308 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!strcpy + 183 000007fc9a6413d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!strlen + 168 000007fc9a641558 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!strncat + 405 000007fc9a641705 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!strncmp + 189 000007fc9a6417dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 354 000007fc9a641952 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 370 000007fc9a641962 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!DbgUserBreakPoint + 107 000007fc9a641e3b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 126 000007fc9a64205e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 142 000007fc9a64206e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlpUmsExecuteYieldThreadEnd + 403 000007fc9a642574 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 77 000007fc9a6425dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 93 000007fc9a6425ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!_setjmp + 168 000007fc9a6426b8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 244 000007fc9a642864 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 260 000007fc9a642874 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000007fc9a642c70 5 bytes [FF, 25, CD, 5F, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread + 6 000007fc9a642c76 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000007fc9a642df0 5 bytes [FF, 25, 6F, 61, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread + 6 000007fc9a642df6 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000007fc9a642e20 5 bytes [FF, 25, 5E, 5A, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection + 6 000007fc9a642e26 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000007fc9a642f40 5 bytes [FF, 25, 6D, 5C, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory + 6 000007fc9a642f46 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000007fc9a642ff0 5 bytes [FF, 25, F0, 5A, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread + 6 000007fc9a642ff6 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000007fc9a6436b1 5 bytes [FF, 25, EF, 5B, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx + 6 000007fc9a6436b7 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread 000007fc9a643991 5 bytes [FF, 25, 75, 56, 00]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread + 6 000007fc9a643997 2 bytes [90, 90]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 000007fc9a644211 8 bytes {JMP QWORD [RIP+0x4dcd]}
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!NtWaitLowEventPair + 19 000007fc9a644694 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 73 000007fc9a644c08 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 89 000007fc9a644c18 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlRestoreLastWin32Error + 34 000007fc9a645272 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContextUnsafeFast + 261 000007fc9a645385 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextUnsafeFast + 167 000007fc9a645437 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockExclusive + 19 000007fc9a645453 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 350 000007fc9a64571e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 908 000007fc9a64594c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedFlushSList + 116 000007fc9a6459c8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlAcquireSRWLockShared + 54 000007fc9a645a76 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockShared + 34 000007fc9a645aa2 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlQueryPerformanceCounter + 68 000007fc9a645af4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCriticalSectionRecursionCount + 35 000007fc9a645b23 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeConditionVariable + 72 000007fc9a645ca8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 222 000007fc9a646c8e 8 bytes {JMP 0xffffffffffffffd9}
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 315 000007fc9a646ceb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlNtStatusToDosError + 213 000007fc9a646dd5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlDeleteCriticalSection + 116 000007fc9a646e94 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlTryEnterCriticalSection + 462 000007fc9a64706e 8 bytes {JMP 0xffffffffffffffd8}
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlRbInsertNodeEx + 195 000007fc9a648bb3 8 bytes [50, 6C, 05, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 135 000007fc9a648c43 8 bytes [40, 6C, 05, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 937 000007fc9a648f65 8 bytes [30, 6C, 05, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlRunOnceExecuteOnce + 116 000007fc9a648fe4 8 bytes [20, 6C, 05, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlSetCurrentTransaction + 32 000007fc9a64900c 8 bytes [10, 6C, 05, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeSListHead + 466 000007fc9a6492a6 8 bytes [00, 6C, 05, 7F, 00, 00, 00, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\system32\wow64cpu.dll!CpuProcessInit + 616 00000000775915f0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\system32\wow64cpu.dll!CpuResetToConsistentState + 272 00000000775917d4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\system32\wow64cpu.dll!CpuSetContext + 140 00000000775918c4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\system32\wow64cpu.dll!CpuGetStackPointer + 23 00000000775918e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\system32\wow64cpu.dll!CpuSetStackPointer + 23 0000000077591903 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe[5056] C:\Windows\system32\wow64cpu.dll!CpuFlushInstructionCache + 23 000000007759195f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlLeaveCriticalSection + 61 000007fc9a64104d 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 77 000007fc9a6410dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 93 000007fc9a6410ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 36 000007fc9a641164 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 52 000007fc9a641174 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!strcat + 152 000007fc9a641308 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!strcpy + 183 000007fc9a6413d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!strlen + 168 000007fc9a641558 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!strncat + 405 000007fc9a641705 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!strncmp + 189 000007fc9a6417dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 354 000007fc9a641952 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 370 000007fc9a641962 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!DbgUserBreakPoint + 107 000007fc9a641e3b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 126 000007fc9a64205e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 142 000007fc9a64206e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlpUmsExecuteYieldThreadEnd + 403 000007fc9a642574 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 77 000007fc9a6425dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 93 000007fc9a6425ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!_setjmp + 168 000007fc9a6426b8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 244 000007fc9a642864 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...] Code:
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 260 000007fc9a642874 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000007fc9a642c70 5 bytes [FF, 25, CD, 5F, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread + 6 000007fc9a642c76 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000007fc9a642df0 5 bytes [FF, 25, 6F, 61, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread + 6 000007fc9a642df6 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000007fc9a642e20 5 bytes [FF, 25, 5E, 5A, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection + 6 000007fc9a642e26 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000007fc9a642f40 5 bytes [FF, 25, 6D, 5C, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory + 6 000007fc9a642f46 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000007fc9a642ff0 5 bytes [FF, 25, F0, 5A, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread + 6 000007fc9a642ff6 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000007fc9a6436b1 5 bytes [FF, 25, EF, 5B, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx + 6 000007fc9a6436b7 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread 000007fc9a643991 5 bytes [FF, 25, 75, 56, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread + 6 000007fc9a643997 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 000007fc9a644211 8 bytes {JMP QWORD [RIP+0x4dcd]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!NtWaitLowEventPair + 19 000007fc9a644694 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 73 000007fc9a644c08 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 89 000007fc9a644c18 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlRestoreLastWin32Error + 34 000007fc9a645272 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContextUnsafeFast + 261 000007fc9a645385 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextUnsafeFast + 167 000007fc9a645437 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockExclusive + 19 000007fc9a645453 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 350 000007fc9a64571e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 908 000007fc9a64594c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedFlushSList + 116 000007fc9a6459c8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlAcquireSRWLockShared + 54 000007fc9a645a76 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockShared + 34 000007fc9a645aa2 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlQueryPerformanceCounter + 68 000007fc9a645af4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCriticalSectionRecursionCount + 35 000007fc9a645b23 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeConditionVariable + 72 000007fc9a645ca8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 222 000007fc9a646c8e 8 bytes {JMP 0xffffffffffffffd9}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 315 000007fc9a646ceb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlNtStatusToDosError + 213 000007fc9a646dd5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlDeleteCriticalSection + 116 000007fc9a646e94 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlTryEnterCriticalSection + 462 000007fc9a64706e 8 bytes {JMP 0xffffffffffffffd8}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlRbInsertNodeEx + 195 000007fc9a648bb3 8 bytes [50, 6C, 0A, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 135 000007fc9a648c43 8 bytes [40, 6C, 0A, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 937 000007fc9a648f65 8 bytes [30, 6C, 0A, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlRunOnceExecuteOnce + 116 000007fc9a648fe4 8 bytes [20, 6C, 0A, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlSetCurrentTransaction + 32 000007fc9a64900c 8 bytes [10, 6C, 0A, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeSListHead + 466 000007fc9a6492a6 8 bytes [00, 6C, 0A, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\system32\wow64cpu.dll!CpuProcessInit + 616 00000000775915f0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\system32\wow64cpu.dll!CpuResetToConsistentState + 272 00000000775917d4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\system32\wow64cpu.dll!CpuSetContext + 140 00000000775918c4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\system32\wow64cpu.dll!CpuGetStackPointer + 23 00000000775918e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\system32\wow64cpu.dll!CpuSetStackPointer + 23 0000000077591903 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5408] C:\Windows\system32\wow64cpu.dll!CpuFlushInstructionCache + 23 000000007759195f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlLeaveCriticalSection + 61 000007fc9a64104d 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 77 000007fc9a6410dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 93 000007fc9a6410ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 36 000007fc9a641164 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 52 000007fc9a641174 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!strcat + 152 000007fc9a641308 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!strcpy + 183 000007fc9a6413d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!strlen + 168 000007fc9a641558 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!strncat + 405 000007fc9a641705 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!strncmp + 189 000007fc9a6417dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 354 000007fc9a641952 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 370 000007fc9a641962 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!DbgUserBreakPoint + 107 000007fc9a641e3b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 126 000007fc9a64205e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 142 000007fc9a64206e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlpUmsExecuteYieldThreadEnd + 403 000007fc9a642574 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 77 000007fc9a6425dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 93 000007fc9a6425ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!_setjmp + 168 000007fc9a6426b8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 244 000007fc9a642864 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 260 000007fc9a642874 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000007fc9a642c70 5 bytes [FF, 25, CD, 5F, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread + 6 000007fc9a642c76 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000007fc9a642df0 5 bytes [FF, 25, 6F, 61, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread + 6 000007fc9a642df6 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000007fc9a642e20 5 bytes [FF, 25, 5E, 5A, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection + 6 000007fc9a642e26 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000007fc9a642f40 5 bytes [FF, 25, 6D, 5C, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory + 6 000007fc9a642f46 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000007fc9a642ff0 5 bytes [FF, 25, F0, 5A, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread + 6 000007fc9a642ff6 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000007fc9a6436b1 5 bytes [FF, 25, EF, 5B, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx + 6 000007fc9a6436b7 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread 000007fc9a643991 5 bytes [FF, 25, 75, 56, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread + 6 000007fc9a643997 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 000007fc9a644211 8 bytes {JMP QWORD [RIP+0x4dcd]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!NtWaitLowEventPair + 19 000007fc9a644694 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 73 000007fc9a644c08 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 89 000007fc9a644c18 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlRestoreLastWin32Error + 34 000007fc9a645272 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContextUnsafeFast + 261 000007fc9a645385 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextUnsafeFast + 167 000007fc9a645437 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockExclusive + 19 000007fc9a645453 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 350 000007fc9a64571e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 908 000007fc9a64594c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedFlushSList + 116 000007fc9a6459c8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlAcquireSRWLockShared + 54 000007fc9a645a76 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockShared + 34 000007fc9a645aa2 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlQueryPerformanceCounter + 68 000007fc9a645af4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCriticalSectionRecursionCount + 35 000007fc9a645b23 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeConditionVariable + 72 000007fc9a645ca8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 222 000007fc9a646c8e 8 bytes {JMP 0xffffffffffffffd9}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 315 000007fc9a646ceb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlNtStatusToDosError + 213 000007fc9a646dd5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlDeleteCriticalSection + 116 000007fc9a646e94 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlTryEnterCriticalSection + 462 000007fc9a64706e 8 bytes {JMP 0xffffffffffffffd8}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlRbInsertNodeEx + 195 000007fc9a648bb3 8 bytes [50, 6C, F3, FE, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 135 000007fc9a648c43 8 bytes [40, 6C, F3, FE, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 937 000007fc9a648f65 8 bytes [30, 6C, F3, FE, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlRunOnceExecuteOnce + 116 000007fc9a648fe4 8 bytes [20, 6C, F3, FE, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlSetCurrentTransaction + 32 000007fc9a64900c 8 bytes [10, 6C, F3, FE, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeSListHead + 466 000007fc9a6492a6 8 bytes [00, 6C, F3, FE, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\system32\wow64cpu.dll!CpuProcessInit + 616 00000000775915f0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\system32\wow64cpu.dll!CpuResetToConsistentState + 272 00000000775917d4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\system32\wow64cpu.dll!CpuSetContext + 140 00000000775918c4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\system32\wow64cpu.dll!CpuGetStackPointer + 23 00000000775918e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\system32\wow64cpu.dll!CpuSetStackPointer + 23 0000000077591903 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5520] C:\Windows\system32\wow64cpu.dll!CpuFlushInstructionCache + 23 000000007759195f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlLeaveCriticalSection + 61 000007fc9a64104d 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 77 000007fc9a6410dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 93 000007fc9a6410ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 36 000007fc9a641164 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 52 000007fc9a641174 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!strcat + 152 000007fc9a641308 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!strcpy + 183 000007fc9a6413d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!strlen + 168 000007fc9a641558 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!strncat + 405 000007fc9a641705 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!strncmp + 189 000007fc9a6417dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 354 000007fc9a641952 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 370 000007fc9a641962 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!DbgUserBreakPoint + 107 000007fc9a641e3b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 126 000007fc9a64205e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedPushListSList + 142 000007fc9a64206e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlpUmsExecuteYieldThreadEnd + 403 000007fc9a642574 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 77 000007fc9a6425dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!__chkstk + 93 000007fc9a6425ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!_setjmp + 168 000007fc9a6426b8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 244 000007fc9a642864 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!longjmp + 260 000007fc9a642874 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000007fc9a642c70 5 bytes [FF, 25, CD, 5F, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtSetInformationThread + 6 000007fc9a642c76 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000007fc9a642df0 5 bytes [FF, 25, 6F, 61, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtQueryInformationThread + 6 000007fc9a642df6 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000007fc9a642e20 5 bytes [FF, 25, 5E, 5A, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtMapViewOfSection + 6 000007fc9a642e26 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000007fc9a642f40 5 bytes [FF, 25, 6D, 5C, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory + 6 000007fc9a642f46 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000007fc9a642ff0 5 bytes [FF, 25, F0, 5A, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtQueueApcThread + 6 000007fc9a642ff6 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000007fc9a6436b1 5 bytes [FF, 25, EF, 5B, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtCreateThreadEx + 6 000007fc9a6436b7 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread 000007fc9a643991 5 bytes [FF, 25, 75, 56, 00]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtGetContextThread + 6 000007fc9a643997 2 bytes [90, 90]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtSetContextThread 000007fc9a644211 8 bytes {JMP QWORD [RIP+0x4dcd]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!NtWaitLowEventPair + 19 000007fc9a644694 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 73 000007fc9a644c08 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!KiRaiseUserExceptionDispatcher + 89 000007fc9a644c18 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlRestoreLastWin32Error + 34 000007fc9a645272 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContextUnsafeFast + 261 000007fc9a645385 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextUnsafeFast + 167 000007fc9a645437 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockExclusive + 19 000007fc9a645453 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 350 000007fc9a64571e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlAllocateHeap + 908 000007fc9a64594c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlInterlockedFlushSList + 116 000007fc9a6459c8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlAcquireSRWLockShared + 54 000007fc9a645a76 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlReleaseSRWLockShared + 34 000007fc9a645aa2 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlQueryPerformanceCounter + 68 000007fc9a645af4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCriticalSectionRecursionCount + 35 000007fc9a645b23 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeConditionVariable + 72 000007fc9a645ca8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 222 000007fc9a646c8e 8 bytes {JMP 0xffffffffffffffd9}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!_wcsicmp + 315 000007fc9a646ceb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlNtStatusToDosError + 213 000007fc9a646dd5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlDeleteCriticalSection + 116 000007fc9a646e94 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlTryEnterCriticalSection + 462 000007fc9a64706e 8 bytes {JMP 0xffffffffffffffd8}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlRbInsertNodeEx + 195 000007fc9a648bb3 8 bytes [50, 6C, 54, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 135 000007fc9a648c43 8 bytes [40, 6C, 54, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlRbRemoveNode + 937 000007fc9a648f65 8 bytes [30, 6C, 54, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlRunOnceExecuteOnce + 116 000007fc9a648fe4 8 bytes [20, 6C, 54, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlSetCurrentTransaction + 32 000007fc9a64900c 8 bytes [10, 6C, 54, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\SYSTEM32\ntdll.dll!RtlInitializeSListHead + 466 000007fc9a6492a6 8 bytes [00, 6C, 54, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\system32\wow64cpu.dll!CpuProcessInit + 616 00000000775915f0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\system32\wow64cpu.dll!CpuResetToConsistentState + 272 00000000775917d4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\system32\wow64cpu.dll!CpuSetContext + 140 00000000775918c4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\system32\wow64cpu.dll!CpuGetStackPointer + 23 00000000775918e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\system32\wow64cpu.dll!CpuSetStackPointer + 23 0000000077591903 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5540] C:\Windows\system32\wow64cpu.dll!CpuFlushInstructionCache + 23 000000007759195f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe[5764] C:\Windows\SYSTEM32\ntdll.dll!RtlLeaveCriticalSection + 61 000007fc9a64104d 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe[5764] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 77 000007fc9a6410dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe[5764] C:\Windows\SYSTEM32\ntdll.dll!RtlGetCurrentUmsThread + 93 000007fc9a6410ed 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe[5764] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 36 000007fc9a641164 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe[5764] C:\Windows\SYSTEM32\ntdll.dll!_local_unwind + 52 000007fc9a641174 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe[5764] C:\Windows\SYSTEM32\ntdll.dll!strcat + 152 000007fc9a641308 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe[5764] C:\Windows\SYSTEM32\ntdll.dll!strcpy + 183 000007fc9a6413d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe[5764] C:\Windows\SYSTEM32\ntdll.dll!strlen + 168 000007fc9a641558 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe[5764] C:\Windows\SYSTEM32\ntdll.dll!strncat + 405 000007fc9a641705 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe[5764] C:\Windows\SYSTEM32\ntdll.dll!strncmp + 189 000007fc9a6417dd 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe[5764] C:\Windows\SYSTEM32\ntdll.dll!strncpy + 354 000007fc9a641952 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...] |