und Gmer: Code:
GMER 2.1.19357 - hxxp://www.gmer.net
Rootkit scan 2015-07-28 03:12:50
Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 SAMSUNG_ rev.2AJ1 596,17GB
Running: Gmer-19357.exe; Driver: C:\Users\Jonas\AppData\Local\Temp\kgloypow.sys
---- User code sections - GMER 2.1 ----
.text C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe[1772] C:\windows\SysWOW64\ntdll.dll!NtQueryValueKey 000000007794faf4 5 bytes JMP 0000000172a82e30
.text C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\avp.exe[1772] C:\windows\SysWOW64\ntdll.dll!NtProtectVirtualMemory 0000000077950084 5 bytes JMP 0000000172a82df0
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 159 00000000777513ef 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 500 0000000077751544 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlDeleteAce + 126 00000000777518ce 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!_vsnwprintf_s + 212 0000000077751ba8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlCreateActivationContext + 373 0000000077751d25 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!isalpha + 31 0000000077751e8f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!_strnicmp + 89 0000000077751f75 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlImpersonateSelfEx + 680 0000000077752238 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlInstallFunctionTableCallback + 531 0000000077752683 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlIsGenericTableEmptyAvl + 16 00000000777526a0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableAvl + 18 00000000777526c2 8 bytes {JMP 0x10}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 79 000000007775271f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 184 0000000077752788 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 4
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 299 0000000077752b4b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 375 0000000077752b97 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 523 000000007775306b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 920 00000000777531f8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 318 000000007775388e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 403 00000000777538e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlpCheckDynamicTimeZoneInformation + 197 00000000777539b5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlpGetLCIDFromLangInfoNode + 80 0000000077753f50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 161 0000000077754001 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 277 0000000077754075 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 214 00000000777541b6 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 276 00000000777541f4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlpNtOpenKey + 609 0000000077754461 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 284 000000007775464c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 483 0000000077754713 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 231 0000000077754807 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 518 0000000077754926 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContext + 256 0000000077754a50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContext + 67 0000000077754aa3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextEx + 501 0000000077754ca5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlCreateUserThread + 256 0000000077754ea0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringExW + 247 0000000077754fa7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringW + 483 0000000077755193 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!TpReleaseAlpcCompletion + 438 0000000077755f46 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!EtwEventProviderEnabled + 198 0000000077756016 8 bytes [70, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!atol + 194 000000007775610e 8 bytes [60, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!qsort + 76 00000000777562fc 8 bytes [50, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlLookupElementGenericTableFullAvl + 45 000000007775633d 8 bytes [40, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 4 0000000077756354 8 bytes [30, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 92 00000000777563ac 8 bytes [20, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!RtlSubtreePredecessor + 790 0000000077756b76 8 bytes [10, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000000007779dc80 8 bytes {JMP QWORD [RIP-0x47949]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000000007779de00 8 bytes {JMP QWORD [RIP-0x47ab2]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000000007779de30 8 bytes {JMP QWORD [RIP-0x47e20]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000000007779df50 8 bytes {JMP QWORD [RIP-0x47c5a]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000000007779e000 8 bytes {JMP QWORD [RIP-0x47ef8]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000000007779e630 8 bytes {JMP QWORD [RIP-0x47102]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!NtGetContextThread 000000007779e880 8 bytes {JMP QWORD [RIP-0x47d10]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\ntdll.dll!NtSetContextThread 000000007779f0e0 8 bytes JMP 3f3f3f3f
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 312 00000000751c13cc 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 471 00000000751c146b 8 bytes {JMP 0xffffffffffffffb0}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\wow64cpu.dll!CpuProcessInit + 611 00000000751c16d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\wow64cpu.dll!CpuGetStackPointer + 23 00000000751c19db 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\wow64cpu.dll!CpuSetStackPointer + 23 00000000751c19fb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[944] C:\windows\SYSTEM32\wow64cpu.dll!CpuFlushInstructionCache + 23 00000000751c1a63 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 159 00000000777513ef 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 500 0000000077751544 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlDeleteAce + 126 00000000777518ce 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!_vsnwprintf_s + 212 0000000077751ba8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlCreateActivationContext + 373 0000000077751d25 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!isalpha + 31 0000000077751e8f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!_strnicmp + 89 0000000077751f75 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlImpersonateSelfEx + 680 0000000077752238 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlInstallFunctionTableCallback + 531 0000000077752683 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlIsGenericTableEmptyAvl + 16 00000000777526a0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableAvl + 18 00000000777526c2 8 bytes {JMP 0x10}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 79 000000007775271f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 184 0000000077752788 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 4
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 299 0000000077752b4b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 375 0000000077752b97 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 523 000000007775306b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 920 00000000777531f8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 318 000000007775388e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 403 00000000777538e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlpCheckDynamicTimeZoneInformation + 197 00000000777539b5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlpGetLCIDFromLangInfoNode + 80 0000000077753f50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 161 0000000077754001 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 277 0000000077754075 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 214 00000000777541b6 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 276 00000000777541f4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlpNtOpenKey + 609 0000000077754461 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 284 000000007775464c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 483 0000000077754713 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 231 0000000077754807 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 518 0000000077754926 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContext + 256 0000000077754a50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContext + 67 0000000077754aa3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextEx + 501 0000000077754ca5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlCreateUserThread + 256 0000000077754ea0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringExW + 247 0000000077754fa7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringW + 483 0000000077755193 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!TpReleaseAlpcCompletion + 438 0000000077755f46 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!EtwEventProviderEnabled + 198 0000000077756016 8 bytes [70, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!atol + 194 000000007775610e 8 bytes [60, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!qsort + 76 00000000777562fc 8 bytes [50, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlLookupElementGenericTableFullAvl + 45 000000007775633d 8 bytes [40, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 4 0000000077756354 8 bytes [30, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 92 00000000777563ac 8 bytes [20, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!RtlSubtreePredecessor + 790 0000000077756b76 8 bytes [10, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000000007779dc80 8 bytes {JMP QWORD [RIP-0x47949]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000000007779de00 8 bytes {JMP QWORD [RIP-0x47ab2]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000000007779de30 8 bytes {JMP QWORD [RIP-0x47e20]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000000007779df50 8 bytes {JMP QWORD [RIP-0x47c5a]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000000007779e000 8 bytes {JMP QWORD [RIP-0x47ef8]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000000007779e630 8 bytes {JMP QWORD [RIP-0x47102]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!NtGetContextThread 000000007779e880 8 bytes {JMP QWORD [RIP-0x47d10]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\ntdll.dll!NtSetContextThread 000000007779f0e0 8 bytes JMP 3f3f3f3f
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 312 00000000751c13cc 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 471 00000000751c146b 8 bytes {JMP 0xffffffffffffffb0}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\wow64cpu.dll!CpuProcessInit + 611 00000000751c16d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\wow64cpu.dll!CpuGetStackPointer + 23 00000000751c19db 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\wow64cpu.dll!CpuSetStackPointer + 23 00000000751c19fb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5332] C:\windows\SYSTEM32\wow64cpu.dll!CpuFlushInstructionCache + 23 00000000751c1a63 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 159 00000000777513ef 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 500 0000000077751544 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlDeleteAce + 126 00000000777518ce 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!_vsnwprintf_s + 212 0000000077751ba8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlCreateActivationContext + 373 0000000077751d25 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!isalpha + 31 0000000077751e8f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!_strnicmp + 89 0000000077751f75 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlImpersonateSelfEx + 680 0000000077752238 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlInstallFunctionTableCallback + 531 0000000077752683 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlIsGenericTableEmptyAvl + 16 00000000777526a0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableAvl + 18 00000000777526c2 8 bytes {JMP 0x10}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 79 000000007775271f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 184 0000000077752788 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 4
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 299 0000000077752b4b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 375 0000000077752b97 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 523 000000007775306b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 920 00000000777531f8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 318 000000007775388e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 403 00000000777538e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlpCheckDynamicTimeZoneInformation + 197 00000000777539b5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlpGetLCIDFromLangInfoNode + 80 0000000077753f50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 161 0000000077754001 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 277 0000000077754075 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 214 00000000777541b6 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 276 00000000777541f4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlpNtOpenKey + 609 0000000077754461 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 284 000000007775464c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 483 0000000077754713 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 231 0000000077754807 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 518 0000000077754926 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContext + 256 0000000077754a50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContext + 67 0000000077754aa3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextEx + 501 0000000077754ca5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlCreateUserThread + 256 0000000077754ea0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringExW + 247 0000000077754fa7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringW + 483 0000000077755193 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!TpReleaseAlpcCompletion + 438 0000000077755f46 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!EtwEventProviderEnabled + 198 0000000077756016 8 bytes [70, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!atol + 194 000000007775610e 8 bytes [60, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!qsort + 76 00000000777562fc 8 bytes [50, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlLookupElementGenericTableFullAvl + 45 000000007775633d 8 bytes [40, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 4 0000000077756354 8 bytes [30, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 92 00000000777563ac 8 bytes [20, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!RtlSubtreePredecessor + 790 0000000077756b76 8 bytes [10, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000000007779dc80 8 bytes {JMP QWORD [RIP-0x47949]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000000007779de00 8 bytes {JMP QWORD [RIP-0x47ab2]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000000007779de30 8 bytes {JMP QWORD [RIP-0x47e20]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000000007779df50 8 bytes {JMP QWORD [RIP-0x47c5a]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000000007779e000 8 bytes {JMP QWORD [RIP-0x47ef8]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000000007779e630 8 bytes {JMP QWORD [RIP-0x47102]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!NtGetContextThread 000000007779e880 8 bytes {JMP QWORD [RIP-0x47d10]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\ntdll.dll!NtSetContextThread 000000007779f0e0 8 bytes JMP 3f3f3f3f
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 312 00000000751c13cc 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 471 00000000751c146b 8 bytes {JMP 0xffffffffffffffb0}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\wow64cpu.dll!CpuProcessInit + 611 00000000751c16d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\wow64cpu.dll!CpuGetStackPointer + 23 00000000751c19db 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\wow64cpu.dll!CpuSetStackPointer + 23 00000000751c19fb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5992] C:\windows\SYSTEM32\wow64cpu.dll!CpuFlushInstructionCache + 23 00000000751c1a63 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 159 00000000777513ef 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 500 0000000077751544 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlDeleteAce + 126 00000000777518ce 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!_vsnwprintf_s + 212 0000000077751ba8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlCreateActivationContext + 373 0000000077751d25 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!isalpha + 31 0000000077751e8f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!_strnicmp + 89 0000000077751f75 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlImpersonateSelfEx + 680 0000000077752238 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlInstallFunctionTableCallback + 531 0000000077752683 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlIsGenericTableEmptyAvl + 16 00000000777526a0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableAvl + 18 00000000777526c2 8 bytes {JMP 0x10}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 79 000000007775271f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 184 0000000077752788 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 4
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 299 0000000077752b4b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 375 0000000077752b97 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 523 000000007775306b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 920 00000000777531f8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 318 000000007775388e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 403 00000000777538e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlpCheckDynamicTimeZoneInformation + 197 00000000777539b5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlpGetLCIDFromLangInfoNode + 80 0000000077753f50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 161 0000000077754001 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 277 0000000077754075 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 214 00000000777541b6 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 276 00000000777541f4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlpNtOpenKey + 609 0000000077754461 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 284 000000007775464c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 483 0000000077754713 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 231 0000000077754807 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 518 0000000077754926 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContext + 256 0000000077754a50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContext + 67 0000000077754aa3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextEx + 501 0000000077754ca5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlCreateUserThread + 256 0000000077754ea0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringExW + 247 0000000077754fa7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringW + 483 0000000077755193 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!TpReleaseAlpcCompletion + 438 0000000077755f46 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!EtwEventProviderEnabled + 198 0000000077756016 8 bytes [70, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!atol + 194 000000007775610e 8 bytes [60, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!qsort + 76 00000000777562fc 8 bytes [50, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlLookupElementGenericTableFullAvl + 45 000000007775633d 8 bytes [40, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 4 0000000077756354 8 bytes [30, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 92 00000000777563ac 8 bytes [20, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!RtlSubtreePredecessor + 790 0000000077756b76 8 bytes [10, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000000007779dc80 8 bytes {JMP QWORD [RIP-0x47949]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000000007779de00 8 bytes {JMP QWORD [RIP-0x47ab2]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000000007779de30 8 bytes {JMP QWORD [RIP-0x47e20]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000000007779df50 8 bytes {JMP QWORD [RIP-0x47c5a]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000000007779e000 8 bytes {JMP QWORD [RIP-0x47ef8]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000000007779e630 8 bytes {JMP QWORD [RIP-0x47102]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!NtGetContextThread 000000007779e880 8 bytes {JMP QWORD [RIP-0x47d10]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\ntdll.dll!NtSetContextThread 000000007779f0e0 8 bytes JMP 3f3f3f3f
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 312 00000000751c13cc 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 471 00000000751c146b 8 bytes {JMP 0xffffffffffffffb0}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\wow64cpu.dll!CpuProcessInit + 611 00000000751c16d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\wow64cpu.dll!CpuGetStackPointer + 23 00000000751c19db 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\wow64cpu.dll!CpuSetStackPointer + 23 00000000751c19fb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5712] C:\windows\SYSTEM32\wow64cpu.dll!CpuFlushInstructionCache + 23 00000000751c1a63 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 159 00000000777513ef 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 500 0000000077751544 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlDeleteAce + 126 00000000777518ce 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!_vsnwprintf_s + 212 0000000077751ba8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlCreateActivationContext + 373 0000000077751d25 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!isalpha + 31 0000000077751e8f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!_strnicmp + 89 0000000077751f75 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlImpersonateSelfEx + 680 0000000077752238 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlInstallFunctionTableCallback + 531 0000000077752683 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlIsGenericTableEmptyAvl + 16 00000000777526a0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableAvl + 18 00000000777526c2 8 bytes {JMP 0x10}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 79 000000007775271f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 184 0000000077752788 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 4
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 299 0000000077752b4b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 375 0000000077752b97 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 523 000000007775306b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 920 00000000777531f8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 318 000000007775388e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 403 00000000777538e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlpCheckDynamicTimeZoneInformation + 197 00000000777539b5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlpGetLCIDFromLangInfoNode + 80 0000000077753f50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 161 0000000077754001 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 277 0000000077754075 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 214 00000000777541b6 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 276 00000000777541f4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlpNtOpenKey + 609 0000000077754461 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 284 000000007775464c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 483 0000000077754713 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 231 0000000077754807 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 518 0000000077754926 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContext + 256 0000000077754a50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContext + 67 0000000077754aa3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextEx + 501 0000000077754ca5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlCreateUserThread + 256 0000000077754ea0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringExW + 247 0000000077754fa7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringW + 483 0000000077755193 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!TpReleaseAlpcCompletion + 438 0000000077755f46 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!EtwEventProviderEnabled + 198 0000000077756016 8 bytes [70, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!atol + 194 000000007775610e 8 bytes [60, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!qsort + 76 00000000777562fc 8 bytes [50, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlLookupElementGenericTableFullAvl + 45 000000007775633d 8 bytes [40, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 4 0000000077756354 8 bytes [30, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 92 00000000777563ac 8 bytes [20, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!RtlSubtreePredecessor + 790 0000000077756b76 8 bytes [10, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000000007779dc80 8 bytes {JMP QWORD [RIP-0x47949]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000000007779de00 8 bytes {JMP QWORD [RIP-0x47ab2]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000000007779de30 8 bytes {JMP QWORD [RIP-0x47e20]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000000007779df50 8 bytes {JMP QWORD [RIP-0x47c5a]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000000007779e000 8 bytes {JMP QWORD [RIP-0x47ef8]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000000007779e630 8 bytes {JMP QWORD [RIP-0x47102]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!NtGetContextThread 000000007779e880 8 bytes {JMP QWORD [RIP-0x47d10]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\ntdll.dll!NtSetContextThread 000000007779f0e0 8 bytes JMP 3f3f3f3f
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 312 00000000751c13cc 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 471 00000000751c146b 8 bytes {JMP 0xffffffffffffffb0}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\wow64cpu.dll!CpuProcessInit + 611 00000000751c16d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\wow64cpu.dll!CpuGetStackPointer + 23 00000000751c19db 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\wow64cpu.dll!CpuSetStackPointer + 23 00000000751c19fb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6444] C:\windows\SYSTEM32\wow64cpu.dll!CpuFlushInstructionCache + 23 00000000751c1a63 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 159 00000000777513ef 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 500 0000000077751544 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlDeleteAce + 126 00000000777518ce 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!_vsnwprintf_s + 212 0000000077751ba8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlCreateActivationContext + 373 0000000077751d25 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!isalpha + 31 0000000077751e8f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!_strnicmp + 89 0000000077751f75 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlImpersonateSelfEx + 680 0000000077752238 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlInstallFunctionTableCallback + 531 0000000077752683 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlIsGenericTableEmptyAvl + 16 00000000777526a0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableAvl + 18 00000000777526c2 8 bytes {JMP 0x10}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 79 000000007775271f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 184 0000000077752788 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 4
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 299 0000000077752b4b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 375 0000000077752b97 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 523 000000007775306b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 920 00000000777531f8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 318 000000007775388e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 403 00000000777538e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlpCheckDynamicTimeZoneInformation + 197 00000000777539b5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlpGetLCIDFromLangInfoNode + 80 0000000077753f50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 161 0000000077754001 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 277 0000000077754075 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 214 00000000777541b6 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 276 00000000777541f4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlpNtOpenKey + 609 0000000077754461 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 284 000000007775464c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 483 0000000077754713 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 231 0000000077754807 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 518 0000000077754926 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContext + 256 0000000077754a50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContext + 67 0000000077754aa3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextEx + 501 0000000077754ca5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlCreateUserThread + 256 0000000077754ea0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringExW + 247 0000000077754fa7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringW + 483 0000000077755193 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!TpReleaseAlpcCompletion + 438 0000000077755f46 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!EtwEventProviderEnabled + 198 0000000077756016 8 bytes [70, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!atol + 194 000000007775610e 8 bytes [60, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!qsort + 76 00000000777562fc 8 bytes [50, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlLookupElementGenericTableFullAvl + 45 000000007775633d 8 bytes [40, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 4 0000000077756354 8 bytes [30, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 92 00000000777563ac 8 bytes [20, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!RtlSubtreePredecessor + 790 0000000077756b76 8 bytes [10, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000000007779dc80 8 bytes {JMP QWORD [RIP-0x47949]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000000007779de00 8 bytes {JMP QWORD [RIP-0x47ab2]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000000007779de30 8 bytes {JMP QWORD [RIP-0x47e20]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000000007779df50 8 bytes {JMP QWORD [RIP-0x47c5a]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000000007779e000 8 bytes {JMP QWORD [RIP-0x47ef8]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000000007779e630 8 bytes {JMP QWORD [RIP-0x47102]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!NtGetContextThread 000000007779e880 8 bytes {JMP QWORD [RIP-0x47d10]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\ntdll.dll!NtSetContextThread 000000007779f0e0 8 bytes JMP 3f3f3f3f
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 312 00000000751c13cc 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 471 00000000751c146b 8 bytes {JMP 0xffffffffffffffb0}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\wow64cpu.dll!CpuProcessInit + 611 00000000751c16d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\wow64cpu.dll!CpuGetStackPointer + 23 00000000751c19db 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\wow64cpu.dll!CpuSetStackPointer + 23 00000000751c19fb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6064] C:\windows\SYSTEM32\wow64cpu.dll!CpuFlushInstructionCache + 23 00000000751c1a63 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 159 00000000777513ef 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 500 0000000077751544 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlDeleteAce + 126 00000000777518ce 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!_vsnwprintf_s + 212 0000000077751ba8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlCreateActivationContext + 373 0000000077751d25 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!isalpha + 31 0000000077751e8f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!_strnicmp + 89 0000000077751f75 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlImpersonateSelfEx + 680 0000000077752238 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlInstallFunctionTableCallback + 531 0000000077752683 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlIsGenericTableEmptyAvl + 16 00000000777526a0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableAvl + 18 00000000777526c2 8 bytes {JMP 0x10}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 79 000000007775271f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 184 0000000077752788 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 4
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 299 0000000077752b4b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 375 0000000077752b97 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 523 000000007775306b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 920 00000000777531f8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 318 000000007775388e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 403 00000000777538e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlpCheckDynamicTimeZoneInformation + 197 00000000777539b5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlpGetLCIDFromLangInfoNode + 80 0000000077753f50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 161 0000000077754001 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 277 0000000077754075 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 214 00000000777541b6 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 276 00000000777541f4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlpNtOpenKey + 609 0000000077754461 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 284 000000007775464c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 483 0000000077754713 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 231 0000000077754807 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 518 0000000077754926 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContext + 256 0000000077754a50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContext + 67 0000000077754aa3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextEx + 501 0000000077754ca5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlCreateUserThread + 256 0000000077754ea0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringExW + 247 0000000077754fa7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringW + 483 0000000077755193 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!TpReleaseAlpcCompletion + 438 0000000077755f46 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!EtwEventProviderEnabled + 198 0000000077756016 8 bytes [70, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!atol + 194 000000007775610e 8 bytes [60, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!qsort + 76 00000000777562fc 8 bytes [50, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlLookupElementGenericTableFullAvl + 45 000000007775633d 8 bytes [40, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 4 0000000077756354 8 bytes [30, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 92 00000000777563ac 8 bytes [20, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!RtlSubtreePredecessor + 790 0000000077756b76 8 bytes [10, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000000007779dc80 8 bytes {JMP QWORD [RIP-0x47949]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000000007779de00 8 bytes {JMP QWORD [RIP-0x47ab2]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000000007779de30 8 bytes {JMP QWORD [RIP-0x47e20]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000000007779df50 8 bytes {JMP QWORD [RIP-0x47c5a]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000000007779e000 8 bytes {JMP QWORD [RIP-0x47ef8]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000000007779e630 8 bytes {JMP QWORD [RIP-0x47102]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!NtGetContextThread 000000007779e880 8 bytes {JMP QWORD [RIP-0x47d10]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\ntdll.dll!NtSetContextThread 000000007779f0e0 8 bytes JMP 3f3f3f3f
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 312 00000000751c13cc 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 471 00000000751c146b 8 bytes {JMP 0xffffffffffffffb0}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\wow64cpu.dll!CpuProcessInit + 611 00000000751c16d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\wow64cpu.dll!CpuGetStackPointer + 23 00000000751c19db 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\wow64cpu.dll!CpuSetStackPointer + 23 00000000751c19fb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[5828] C:\windows\SYSTEM32\wow64cpu.dll!CpuFlushInstructionCache + 23 00000000751c1a63 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 159 00000000777513ef 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 500 0000000077751544 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlDeleteAce + 126 00000000777518ce 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!_vsnwprintf_s + 212 0000000077751ba8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlCreateActivationContext + 373 0000000077751d25 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!isalpha + 31 0000000077751e8f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!_strnicmp + 89 0000000077751f75 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlImpersonateSelfEx + 680 0000000077752238 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlInstallFunctionTableCallback + 531 0000000077752683 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlIsGenericTableEmptyAvl + 16 00000000777526a0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableAvl + 18 00000000777526c2 8 bytes {JMP 0x10}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 79 000000007775271f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 184 0000000077752788 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 4
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 299 0000000077752b4b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 375 0000000077752b97 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 523 000000007775306b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 920 00000000777531f8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 318 000000007775388e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 403 00000000777538e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlpCheckDynamicTimeZoneInformation + 197 00000000777539b5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlpGetLCIDFromLangInfoNode + 80 0000000077753f50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 161 0000000077754001 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 277 0000000077754075 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 214 00000000777541b6 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 276 00000000777541f4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlpNtOpenKey + 609 0000000077754461 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 284 000000007775464c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 483 0000000077754713 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 231 0000000077754807 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 518 0000000077754926 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContext + 256 0000000077754a50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContext + 67 0000000077754aa3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextEx + 501 0000000077754ca5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlCreateUserThread + 256 0000000077754ea0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringExW + 247 0000000077754fa7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringW + 483 0000000077755193 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!TpReleaseAlpcCompletion + 438 0000000077755f46 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!EtwEventProviderEnabled + 198 0000000077756016 8 bytes [70, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!atol + 194 000000007775610e 8 bytes [60, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!qsort + 76 00000000777562fc 8 bytes [50, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlLookupElementGenericTableFullAvl + 45 000000007775633d 8 bytes [40, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 4 0000000077756354 8 bytes [30, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 92 00000000777563ac 8 bytes [20, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!RtlSubtreePredecessor + 790 0000000077756b76 8 bytes [10, 6C, F8, FF, 00, 00, 00, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000000007779dc80 8 bytes {JMP QWORD [RIP-0x47949]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000000007779de00 8 bytes {JMP QWORD [RIP-0x47ab2]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000000007779de30 8 bytes {JMP QWORD [RIP-0x47e20]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000000007779df50 8 bytes {JMP QWORD [RIP-0x47c5a]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000000007779e000 8 bytes {JMP QWORD [RIP-0x47ef8]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000000007779e630 8 bytes {JMP QWORD [RIP-0x47102]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!NtGetContextThread 000000007779e880 8 bytes {JMP QWORD [RIP-0x47d10]}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\ntdll.dll!NtSetContextThread 000000007779f0e0 8 bytes JMP 3f3f3f3f
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 312 00000000751c13cc 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 471 00000000751c146b 8 bytes {JMP 0xffffffffffffffb0}
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\wow64cpu.dll!CpuProcessInit + 611 00000000751c16d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\wow64cpu.dll!CpuGetStackPointer + 23 00000000751c19db 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\wow64cpu.dll!CpuSetStackPointer + 23 00000000751c19fb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Program Files (x86)\Google\Chrome\Application\chrome.exe[6680] C:\windows\SYSTEM32\wow64cpu.dll!CpuFlushInstructionCache + 23 00000000751c1a63 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 159 00000000777513ef 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlpEnsureBufferSize + 500 0000000077751544 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlDeleteAce + 126 00000000777518ce 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!_vsnwprintf_s + 212 0000000077751ba8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlCreateActivationContext + 373 0000000077751d25 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!isalpha + 31 0000000077751e8f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!_strnicmp + 89 0000000077751f75 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlImpersonateSelfEx + 680 0000000077752238 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlInstallFunctionTableCallback + 531 0000000077752683 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlIsGenericTableEmptyAvl + 16 00000000777526a0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableAvl + 18 00000000777526c2 8 bytes {JMP 0x10}
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 79 000000007775271f 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlEnumerateGenericTableWithoutSplayingAvl + 184 0000000077752788 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 4
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 299 0000000077752b4b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlValidRelativeSecurityDescriptor + 375 0000000077752b97 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 523 000000007775306b 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlQueryRegistryValues + 920 00000000777531f8 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 318 000000007775388e 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!_itow_s + 403 00000000777538e3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlpCheckDynamicTimeZoneInformation + 197 00000000777539b5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlpGetLCIDFromLangInfoNode + 80 0000000077753f50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 161 0000000077754001 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlpGetNameFromLangInfoNode + 277 0000000077754075 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 3
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 214 00000000777541b6 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlpIsQualifiedLanguage + 276 00000000777541f4 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlpNtOpenKey + 609 0000000077754461 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 284 000000007775464c 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlNumberOfSetBitsUlongPtr + 483 0000000077754713 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 231 0000000077754807 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!TpWaitForWait + 518 0000000077754926 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text ... * 2
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlDeactivateActivationContext + 256 0000000077754a50 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContext + 67 0000000077754aa3 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlActivateActivationContextEx + 501 0000000077754ca5 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlCreateUserThread + 256 0000000077754ea0 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringExW + 247 0000000077754fa7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlIpv6AddressToStringW + 483 0000000077755193 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!TpReleaseAlpcCompletion + 438 0000000077755f46 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!EtwEventProviderEnabled + 198 0000000077756016 8 bytes [70, 6C, F8, 7E, 00, 00, 00, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!atol + 194 000000007775610e 8 bytes [60, 6C, F8, 7E, 00, 00, 00, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!qsort + 76 00000000777562fc 8 bytes [50, 6C, F8, 7E, 00, 00, 00, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlLookupElementGenericTableFullAvl + 45 000000007775633d 8 bytes [40, 6C, F8, 7E, 00, 00, 00, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 4 0000000077756354 8 bytes [30, 6C, F8, 7E, 00, 00, 00, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlNumberGenericTableElementsAvl + 92 00000000777563ac 8 bytes [20, 6C, F8, 7E, 00, 00, 00, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!RtlSubtreePredecessor + 790 0000000077756b76 8 bytes [10, 6C, F8, 7E, 00, 00, 00, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!NtSetInformationThread 000000007779dc80 8 bytes {JMP QWORD [RIP-0x47949]}
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!NtQueryInformationThread 000000007779de00 8 bytes {JMP QWORD [RIP-0x47ab2]}
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!NtMapViewOfSection 000000007779de30 8 bytes {JMP QWORD [RIP-0x47e20]}
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!NtWriteVirtualMemory 000000007779df50 8 bytes {JMP QWORD [RIP-0x47c5a]}
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!NtQueueApcThread 000000007779e000 8 bytes {JMP QWORD [RIP-0x47ef8]}
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!NtCreateThreadEx 000000007779e630 8 bytes {JMP QWORD [RIP-0x47102]}
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!NtGetContextThread 000000007779e880 8 bytes {JMP QWORD [RIP-0x47d10]}
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\ntdll.dll!NtSetContextThread 000000007779f0e0 8 bytes {JMP QWORD [RIP-0x48d3a]}
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 312 00000000751c13cc 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\wow64cpu.dll!CpuInitializeStartupContext + 471 00000000751c146b 8 bytes {JMP 0xffffffffffffffb0}
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\wow64cpu.dll!CpuProcessInit + 611 00000000751c16d7 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\wow64cpu.dll!CpuGetStackPointer + 23 00000000751c19db 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\wow64cpu.dll!CpuSetStackPointer + 23 00000000751c19fb 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
.text C:\Users\Jonas\Downloads\Gmer-19357.exe[5844] C:\windows\SYSTEM32\wow64cpu.dll!CpuFlushInstructionCache + 23 00000000751c1a63 8 bytes [0D, F0, AD, BA, DE, C0, AD, ...]
---- Disk sectors - GMER 2.1 ----
Disk \Device\Harddisk0\DR0 unknown MBR code
---- EOF - GMER 2.1 ---- |