|
5精币
自己玩了几天玩不转啊,特地来求助各位。我有试了下修改窗口标题,复制文件名,隐藏进程这些都不行。
(游戏是限制双开的)
虚拟机也有限制不让开,后面找了很多资料最终能开了。不过笔记本开虚拟机带这游戏玩不来啊。
最后看了些互斥体的视频,自己找了好多遍都没找到是哪个。后面也胡乱试着删除一些也是不行啊,下面谁能帮我分析一下(最后发现是我删除一些句柄后一个游戏断线了,客户Duan我也没管。继续打开就能进去。)
游戏限制的地方是登陆完账号选择角色之后,在进入场景读图的时候自己闪退。(谁能帮我分析一下这个游戏呢)
[PC Hunter Standard][[nsloader.exe]进程句柄(637)]: 637
句柄类型 句柄名 句柄 句柄对象 句柄类型代号 引用计数
WindowStation \Sessions\1\Windows\WindowStations\WinSta0 0x0000004C 0xFFFFFA801219EF60 20 150
WindowStation \Sessions\1\Windows\WindowStations\WinSta0 0x00000054 0xFFFFFA801219EF60 20 150
Section \Sessions\1\BaseNamedObjects\DirectSound Administrator shared thread array 0x00000258 0xFFFFF8A002DF8FC0 33 3
Section \BaseNamedObjects\__ComCatalogCache__ 0x0000025C 0xFFFFF8A00161BCA0 33 112
Section \BaseNamedObjects\__ComCatalogCache__ 0x00000268 0xFFFFF8A00161BCA0 33 112
Section \Sessions\1\BaseNamedObjects\windows_shell_global_counters 0x000003AC 0xFFFFF8A0027B3FC0 33 40
Section \Sessions\1\BaseNamedObjects\C:_Users_Administrator_AppData_Local_Microsoft_Windows_Temporary Internet Files_Content.IE5_index.dat_8306688 0x000003B8 0xFFFFF8A001E8DDA0 33 19
Section \Sessions\1\BaseNamedObjects\C:_Users_Administrator_AppData_Roaming_Microsoft_Windows_Cookies_index.dat_114688 0x000003C8 0xFFFFF8A001E88D90 33 19
Section \Sessions\1\BaseNamedObjects\C:_Users_Administrator_AppData_Local_Microsoft_Windows_History_History.IE5_index.dat_2752512 0x000003D4 0xFFFFF8A001BBC690 33 19
Section \Sessions\1\BaseNamedObjects\C:_Users_Administrator_AppData_Roaming_Microsoft_Windows_IETldCache_index.dat_278528 0x0000055C 0xFFFFF8A001E9EEF0 33 13
Section \Sessions\1\BaseNamedObjects\UrlZonesSM_Administrator 0x00000560 0xFFFFF8A001E9B380 33 17
Section \Sessions\1\BaseNamedObjects\986590280dsfgsdfwww 0x00000574 0xFFFFF8A003842550 33 2
Section \Sessions\1\BaseNamedObjects\9508ioiu6734234jkfdkl 0x00000580 0xFFFFF8A00B346800 33 3
Section \BaseNamedObjects\f7151615117 0x000007B4 0xFFFFF8A00BC1A620 33 5
Section \Sessions\1\BaseNamedObjects\hjklfgnkdlf9498 0x000007F0 0xFFFFF8A00BA54470 33 3
Section \Sessions\1\BaseNamedObjects\9508ioiu6734234jkfdkl 0x000007F8 0xFFFFF8A00B346800 33 3
Section \Sessions\1\BaseNamedObjects\jhihljlhh2524 0x0000084C 0xFFFFF8A00F1D0730 33 2
Section \Sessions\1\BaseNamedObjects\9508CmnVmShare 0x000009D8 0xFFFFF8A00F024940 33 2
Section \Sessions\1\BaseNamedObjects\sjx_mdh_7754369875 0x000009F0 0xFFFFF8A01355EC10 33 3
Section \BaseNamedObjects\f7151615117 0x00000A0C 0xFFFFF8A00BC1A620 33 5
Section \Sessions\1\BaseNamedObjects\hjklfgnkdlf9498 0x00000A38 0xFFFFF8A00BA54470 33 3
Mutant \Sessions\1\BaseNamedObjects\MSCTF.Asm.MutexDefault1 0x0000013C 0xFFFFFA80121E61D0 14 21
Mutant \Sessions\1\BaseNamedObjects\__DDrawExclMode__ 0x000001C4 0xFFFFFA80131D7290 14 7
Mutant \Sessions\1\BaseNamedObjects\__DDrawCheckExclMode__ 0x000001CC 0xFFFFFA80131343B0 14 7
Mutant \Sessions\1\BaseNamedObjects\DirectSound Administrator shared thread array (lock) 0x00000254 0xFFFFFA8013772930 14 3
Mutant \Sessions\1\BaseNamedObjects\_!MSFTHISTORY!_ 0x0000039C 0xFFFFFA801207E530 14 19
Mutant \Sessions\1\BaseNamedObjects\c:!users!administrator!appdata!local!microsoft!windows!temporary internet files!content.ie5! 0x000003A4 0xFFFFFA80120A4340 14 19
Mutant \Sessions\1\BaseNamedObjects\c:!users!administrator!appdata!roaming!microsoft!windows!cookies! 0x000003C0 0xFFFFFA80120A4280 14 19
Mutant \Sessions\1\BaseNamedObjects\c:!users!administrator!appdata!local!microsoft!windows!history!history.ie5! 0x000003CC 0xFFFFFA80120A4400 14 19
Mutant \Sessions\1\BaseNamedObjects\WininetStartupMutex 0x00000418 0xFFFFFA80130DD4F0 14 15
Mutant \Sessions\1\BaseNamedObjects\WininetConnectionMutex 0x00000444 0xFFFFFA8012D1A320 14 15
Mutant \Sessions\1\BaseNamedObjects\WininetProxyRegistryMutex 0x00000448 0xFFFFFA800CA118A0 14 15
Mutant \Sessions\1\BaseNamedObjects\RasPbFile 0x00000488 0xFFFFFA8012E573B0 14 20
Mutant \Sessions\1\BaseNamedObjects\!IETld!Mutex 0x00000520 0xFFFFFA8012CBBBA0 14 17
Mutant \Sessions\1\BaseNamedObjects\c:!users!administrator!appdata!roaming!microsoft!windows!ietldcache! 0x00000554 0xFFFFFA80120B0350 14 13
Mutant \Sessions\1\BaseNamedObjects\ZonesCacheCounterMutex 0x00000568 0xFFFFFA8012CBB970 14 17
Mutant \Sessions\1\BaseNamedObjects\ZonesLockedCacheCounterMutex 0x00000578 0xFFFFFA8012094740 14 17
Mutant \Sessions\1\BaseNamedObjects\DBWinMutex 0x00000624 0xFFFFFA8012D68250 14 14
Mutant \BaseNamedObjects\1351616163b 0x000007A8 0xFFFFFA8013C467B0 14 3
Mutant \Sessions\1\BaseNamedObjects\NsEncrypt_Mutex 0x000007CC 0xFFFFFA801435BF30 14 3
Mutant \BaseNamedObjects\LOADPERF_MUTEX 0x00000830 0xFFFFFA801339DBF0 14 5
Mutant \Sessions\1\BaseNamedObjects\.NET CLR Data_Perf_Library_Lock_PID_2524 0x00000858 0xFFFFFA801532E800 14 2
Mutant \Sessions\1\BaseNamedObjects\.NET CLR Networking_Perf_Library_Lock_PID_2524 0x00000860 0xFFFFFA80145A0800 14 2
Mutant \Sessions\1\BaseNamedObjects\.NET CLR Networking 4.0.0.0_Perf_Library_Lock_PID_2524 0x00000868 0xFFFFFA80110944E0 14 2
Mutant \Sessions\1\BaseNamedObjects\.NET Data Provider for Oracle_Perf_Library_Lock_PID_2524 0x00000870 0xFFFFFA80135D85F0 14 2
Mutant \Sessions\1\BaseNamedObjects\.NET Data Provider for SqlServer_Perf_Library_Lock_PID_2524 0x00000878 0xFFFFFA8013F41D70 14 2
Mutant \Sessions\1\BaseNamedObjects\.NET Memory Cache 4.0_Perf_Library_Lock_PID_2524 0x00000880 0xFFFFFA8013B077B0 14 2
Mutant \Sessions\1\BaseNamedObjects\.NETFramework_Perf_Library_Lock_PID_2524 0x00000888 0xFFFFFA80134DCFC0 14 2
Mutant \Sessions\1\BaseNamedObjects\ASP.NET_Perf_Library_Lock_PID_2524 0x0000088C 0xFFFFFA801401E080 14 2
Mutant \Sessions\1\BaseNamedObjects\ASP.NET_4.0.30319_Perf_Library_Lock_PID_2524 0x00000894 0xFFFFFA801114D480 14 2
Mutant \Sessions\1\BaseNamedObjects\aspnet_state_Perf_Library_Lock_PID_2524 0x0000089C 0xFFFFFA80128E7490 14 2
Mutant \Sessions\1\BaseNamedObjects\BITS_Perf_Library_Lock_PID_2524 0x000008A4 0xFFFFFA8013618CA0 14 2
Mutant \Sessions\1\BaseNamedObjects\ESENT_Perf_Library_Lock_PID_2524 0x000008B0 0xFFFFFA8013F8DDA0 14 2
Mutant \Sessions\1\BaseNamedObjects\Intel Storage Counters_Perf_Library_Lock_PID_2524 0x000008B8 0xFFFFFA8014610A20 14 2
Mutant \Sessions\1\BaseNamedObjects\Lsa_Perf_Library_Lock_PID_2524 0x000008C0 0xFFFFFA80139CD650 14 2
Mutant \Sessions\1\BaseNamedObjects\MSDTC Bridge 3.0.0.0_Perf_Library_Lock_PID_2524 0x000008C4 0xFFFFFA801383C1C0 14 2
Mutant \Sessions\1\BaseNamedObjects\MSDTC_Perf_Library_Lock_PID_2524 0x000008C8 0xFFFFFA8013DC8A70 14 2
Mutant \Sessions\1\BaseNamedObjects\MSDTC Bridge 4.0.0.0_Perf_Library_Lock_PID_2524 0x000008D8 0xFFFFFA80120A4190 14 2
Mutant \Sessions\1\BaseNamedObjects\MSSCNTRS_Perf_Library_Lock_PID_2524 0x000008DC 0xFFFFFA801394A980 14 2
Mutant \Sessions\1\BaseNamedObjects\Outlook_Perf_Library_Lock_PID_2524 0x000008E8 0xFFFFFA80143036A0 14 2
Mutant \Sessions\1\BaseNamedObjects\PerfDisk_Perf_Library_Lock_PID_2524 0x000008F0 0xFFFFFA8013F4CD30 14 2
Mutant \Sessions\1\BaseNamedObjects\PerfNet_Perf_Library_Lock_PID_2524 0x000008F8 0xFFFFFA8015041710 14 2
Mutant \Sessions\1\BaseNamedObjects\PerfOS_Perf_Library_Lock_PID_2524 0x000008FC 0xFFFFFA80141CEE90 14 2
Mutant \Sessions\1\BaseNamedObjects\PerfProc_Perf_Library_Lock_PID_2524 0x00000904 0xFFFFFA8012168400 14 2
Mutant \Sessions\1\BaseNamedObjects\rdyboost_Perf_Library_Lock_PID_2524 0x0000090C 0xFFFFFA800D8F9B00 14 2
Mutant \Sessions\1\BaseNamedObjects\RemoteAccess_Perf_Library_Lock_PID_2524 0x00000918 0xFFFFFA80143797E0 14 2
Mutant \Sessions\1\BaseNamedObjects\ServiceModelEndpoint 3.0.0.0_Perf_Library_Lock_PID_2524 0x00000920 0xFFFFFA8014104EA0 14 2
Mutant \Sessions\1\BaseNamedObjects\ServiceModelOperation 3.0.0.0_Perf_Library_Lock_PID_2524 0x00000928 0xFFFFFA8013FF6A30 14 2
Mutant \Sessions\1\BaseNamedObjects\ServiceModelService 3.0.0.0_Perf_Library_Lock_PID_2524 0x00000930 0xFFFFFA80142A11F0 14 2
Mutant \Sessions\1\BaseNamedObjects\SMSvcHost 3.0.0.0_Perf_Library_Lock_PID_2524 0x00000938 0xFFFFFA801427BBE0 14 2
Mutant \Sessions\1\BaseNamedObjects\SMSvcHost 4.0.0.0_Perf_Library_Lock_PID_2524 0x00000940 0xFFFFFA801400CCD0 14 2
Mutant \Sessions\1\BaseNamedObjects\Spooler_Perf_Library_Lock_PID_2524 0x00000948 0xFFFFFA801421A170 14 2
Mutant \Sessions\1\BaseNamedObjects\TapiSrv_Perf_Library_Lock_PID_2524 0x00000950 0xFFFFFA80134E47B0 14 2
Mutant \Sessions\1\BaseNamedObjects\Tcpip_Perf_Library_Lock_PID_2524 0x00000958 0xFFFFFA80136A7740 14 2
Mutant \Sessions\1\BaseNamedObjects\TermService_Perf_Library_Lock_PID_2524 0x00000960 0xFFFFFA80137AF9B0 14 2
Mutant \Sessions\1\BaseNamedObjects\UGatherer_Perf_Library_Lock_PID_2524 0x00000968 0xFFFFFA8013C99DB0 14 2
Mutant \Sessions\1\BaseNamedObjects\UGTHRSVC_Perf_Library_Lock_PID_2524 0x00000970 0xFFFFFA80140EEC80 14 2
Mutant \Sessions\1\BaseNamedObjects\usbhub_Perf_Library_Lock_PID_2524 0x00000978 0xFFFFFA80140263D0 14 2
Mutant \Sessions\1\BaseNamedObjects\VMware_Perf_Library_Lock_PID_2524 0x00000980 0xFFFFFA8014218C40 14 2
Mutant \Sessions\1\BaseNamedObjects\Windows Workflow Foundation 3.0.0.0_Perf_Library_Lock_PID_2524 0x00000988 0xFFFFFA8013664CA0 14 2
Mutant \Sessions\1\BaseNamedObjects\Windows Workflow Foundation 4.0.0.0_Perf_Library_Lock_PID_2524 0x00000990 0xFFFFFA801293AA60 14 2
Mutant \Sessions\1\BaseNamedObjects\WmiApRpl_Perf_Library_Lock_PID_2524 0x00000998 0xFFFFFA8014368160 14 2
Mutant \Sessions\1\BaseNamedObjects\WSearchIdxPi_Perf_Library_Lock_PID_2524 0x000009A0 0xFFFFFA801401EEF0 14 2
Mutant \Sessions\1\BaseNamedObjects\sjx_mdh_mux_998767 0x000009E0 0xFFFFFA80145397F0 14 3
Key \REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options 0x00000004 0xFFFFF8A0018AE060 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options 0x00000014 0xFFFFF8A00AF9A8A0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\Control\SESSION MANAGER 0x00000020 0xFFFFF8A0039BE6F0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale 0x0000002C 0xFFFFF8A00A7073E0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\Control\Nls\Sorting\Versions 0x00000030 0xFFFFF8A00A8F0860 35 1
Key \REGISTRY\MACHINE 0x0000003C 0xFFFFF8A00A5F1FA0 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DllNXOptions 0x00000060 0xFFFFF8A0048BE6C0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\Control\NetworkProvider\HwOrder 0x000000D8 0xFFFFF8A00B189160 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale 0x000000FC 0xFFFFF8A002D4B8F0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\Alternate Sorts 0x00000100 0xFFFFF8A00A754EA0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\Control\Nls\Language Groups 0x00000104 0xFFFFF8A00A0B86B0 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\Direct3D 0x000001AC 0xFFFFF8A002C21FA0 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\Direct3D\Drivers 0x000001B0 0xFFFFF8A009F7E6A0 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500 0x000001B4 0xFFFFF8A00B23F610 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Microsoft\Direct3D 0x000001B8 0xFFFFF8A00B20FC20 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\Control\GraphicsDrivers\Scheduler 0x000001BC 0xFFFFF8A0049C0E50 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500_CLASSES 0x00000260 0xFFFFF8A00B219830 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\Control\MediaResources\DirectSound 0x00000368 0xFFFFF8A0038B3130 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings 0x00000390 0xFFFFF8A00A8EE150 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Microsoft\Windows\CurrentVersion\Explorer 0x000003B4 0xFFFFF8A00B9BC550 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings 0x000003EC 0xFFFFF8A0036F35D0 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings 0x000003F4 0xFFFFF8A00B99C790 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings 0x000003F8 0xFFFFF8A00AF9B8B0 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Policies 0x000003FC 0xFFFFF8A003ABAC30 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Policies 0x00000404 0xFFFFF8A0025FDD60 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software 0x00000408 0xFFFFF8A001583360 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Wow6432Node 0x0000040C 0xFFFFF8A00B369EE0 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\INTERNET SETTINGS 0x00000410 0xFFFFF8A003B21DD0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\WinSock2\Parameters\Protocol_Catalog9 0x00000420 0xFFFFF8A00B248E50 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\WinSock2\Parameters\NameSpace_Catalog5 0x00000428 0xFFFFF8A00B248F10 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Microsoft\Internet Explorer\Main 0x00000438 0xFFFFF8A00424A950 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN 0x0000043C 0xFFFFF8A00420DB40 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500_CLASSES 0x00000440 0xFFFFF8A00B1872E0 35 1
Key \REGISTRY\USER 0x00000480 0xFFFFF8A00B1FEAD0 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500 0x00000484 0xFFFFF8A009FE9FA0 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\nsloader_RASAPI32 0x000004A8 0xFFFFF8A00A682460 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\nsloader_RASMANCS 0x000004B0 0xFFFFF8A00B283710 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap 0x0000050C 0xFFFFF8A003A0F850 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Microsoft\Windows NT\CurrentVersion\Network\Location Awareness 0x00000510 0xFFFFF8A00B1FD660 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\INTERNET SETTINGS\ZoneMap 0x00000518 0xFFFFF8A0036EDE80 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Microsoft\Internet Explorer\IETld 0x00000524 0xFFFFF8A003AF7810 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN 0x00000564 0xFFFFF8A00B990E80 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN 0x0000056C 0xFFFFF8A00B786520 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\Tcpip\Parameters 0x000005CC 0xFFFFF8A001B54FA0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\TCPIP6\Parameters 0x000005E8 0xFFFFF8A00BAD1880 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\Dnscache\Parameters 0x000005F0 0xFFFFF8A00322C9D0 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Microsoft\Windows NT\CurrentVersion 0x000006D0 0xFFFFF8A002911550 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\AppCompatFlags 0x000006D4 0xFFFFF8A00BAE7450 35 1
Key \REGISTRY\USER\S-1-5-21-1615711081-568647324-599936906-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings 0x000006E0 0xFFFFF8A0036B6B80 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\INTERNET SETTINGS 0x000006F4 0xFFFFF8A00BAB55F0 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings 0x000006FC 0xFFFFF8A00B33F270 35 1
Key \REGISTRY\MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PERFLIB 0x00000848 0xFFFFF8A00B283FA0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\.NET CLR Data\Performance 0x00000850 0xFFFFF8A0014001C0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\ASP.NET\Performance 0x00000854 0xFFFFF8A00AFBE8A0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking\Performance 0x0000085C 0xFFFFF8A00BBBB620 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\.NET CLR Networking 4.0.0.0\Performance 0x00000864 0xFFFFF8A00BC7F2D0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\.NET Data Provider for Oracle\Performance 0x0000086C 0xFFFFF8A00B385E50 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\.NET Data Provider for SqlServer\Performance 0x00000874 0xFFFFF8A00BA640F0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\.NET Memory Cache 4.0\Performance 0x0000087C 0xFFFFF8A002C4AFA0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\.NETFramework\Performance 0x00000884 0xFFFFF8A00A8B6EE0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\ASP.NET_4.0.30319\Performance 0x00000890 0xFFFFF8A003284190 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\aspnet_state\Performance 0x00000898 0xFFFFF8A00BBCB430 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\BITS\Performance 0x000008A0 0xFFFFF8A003358FA0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\ESENT\Performance 0x000008A8 0xFFFFF8A00BB70BF0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\Lsa\Performance 0x000008AC 0xFFFFF8A00BBD2350 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\Intel Storage Counters\Performance 0x000008B4 0xFFFFF8A00BA59470 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\MSDTC\Performance 0x000008BC 0xFFFFF8A00B34C740 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\MSDTC Bridge 3.0.0.0\Performance 0x000008CC 0xFFFFF8A0046B3A00 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\MSDTC Bridge 4.0.0.0\Performance 0x000008D0 0xFFFFF8A00BAE8BA0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\MSSCNTRS\Performance 0x000008D4 0xFFFFF8A0046B84E0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\PerfOS\Performance 0x000008E0 0xFFFFF8A00BAE8AE0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\Outlook\Performance 0x000008E4 0xFFFFF8A00BC71200 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\PerfDisk\Performance 0x000008EC 0xFFFFF8A0033746D0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\PerfNet\Performance 0x000008F4 0xFFFFF8A0046BD850 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\PerfProc\Performance 0x00000900 0xFFFFF8A00A668C20 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\rdyboost\Performance 0x00000908 0xFFFFF8A003B9F730 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\RemoteAccess\Performance 0x00000910 0xFFFFF8A00351E590 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\ServiceModelEndpoint 3.0.0.0\Performance 0x0000091C 0xFFFFF8A009509780 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\ServiceModelOperation 3.0.0.0\Performance 0x00000924 0xFFFFF8A00BC19D90 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\ServiceModelService 3.0.0.0\Performance 0x0000092C 0xFFFFF8A00BBC3630 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\SMSvcHost 3.0.0.0\Performance 0x00000934 0xFFFFF8A002E1A350 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\SMSvcHost 4.0.0.0\Performance 0x0000093C 0xFFFFF8A00BA68320 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\Spooler\Performance 0x00000944 0xFFFFF8A00BBC3570 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\TapiSrv\Performance 0x0000094C 0xFFFFF8A00BC7AC20 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\Tcpip\Performance 0x00000954 0xFFFFF8A00BA21C80 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\TermService\Performance 0x0000095C 0xFFFFF8A009458E50 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\UGATHERER\Performance 0x00000964 0xFFFFF8A00BAC4C20 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\UGTHRSVC\Performance 0x0000096C 0xFFFFF8A00BC77820 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\usbhub\Performance 0x00000974 0xFFFFF8A00BA21BC0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\VMware\Performance 0x0000097C 0xFFFFF8A00BC6CB00 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\Windows Workflow Foundation 3.0.0.0\Performance 0x00000984 0xFFFFF8A00BA8AFA0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\Windows Workflow Foundation 4.0.0.0\Performance 0x0000098C 0xFFFFF8A0099633D0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\WmiApRpl\Performance 0x00000994 0xFFFFF8A00BA8AEE0 35 1
Key \REGISTRY\MACHINE\SYSTEM\ControlSet001\services\WSearchIdxPi\Performance 0x0000099C 0xFFFFF8A00414DA30 35 1
IoCompletion 0x000002F4 0xFFFFFA80151F13C0 27 4
IoCompletion 0x00000338 0xFFFFFA80142FC600 27 2
IoCompletion 0x00000588 0xFFFFFA801478FF80 27 4
IoCompletion 0x00000590 0xFFFFFA8013A80F80 27 2
IoCompletion 0x000005A8 0xFFFFFA8014104080 27 2
IoCompletion 0x000005C8 0xFFFFFA80121C62C0 27 2
IoCompletion 0x00000660 0xFFFFFA8014D7E440 27 7
IoCompletion 0x0000066C 0xFFFFFA801533A080 27 2
IoCompletion 0x0000077C 0xFFFFFA800DD2BDC0 27 2
File \Device\HarddiskVolume1\Windows 0x00000010 0xFFFFFA8013860BC0 28 1
File \Device\HarddiskVolume1\吞噬苍穹\bin 0x0000005C 0xFFFFFA8013550070 28 1
File \Device\HarddiskVolume1\Windows\SysWOW64\zh-CN\setupapi.dll.mui 0x0000006C 0xFFFFFA8013ABF5B0 28 1
File \Device\HarddiskVolume1\Windows\Fonts\simkai.ttf 0x000000E8 0xFFFFFA8013FC71E0 28 1
File \Device\HarddiskVolume1\吞噬苍穹\bin 0x0000012C 0xFFFFFA8015ADB880 28 1
File \Device\KsecDD 0x00000138 0xFFFFFA8013A8AF20 28 1
File \Device\HarddiskVolume1\Windows\Fonts\StaticCache.dat 0x00000144 0xFFFFFA8014A44F20 28 1
File \Device\HarddiskVolume1\Windows\SysWOW64\zh-CN\msctf.dll.mui 0x00000148 0xFFFFFA8013C7AF20 28 1
File \Device\HarddiskVolume1\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5 0x00000150 0xFFFFFA8013B66530 28 1
File \Device\HarddiskVolume1\吞噬苍穹\bin\fp.log 0x0000019C 0xFFFFFA80141135A0 28 33
File \Device\HarddiskVolume1\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576ad8665e853 0x000001A8 0xFFFFFA80144FB330 28 1
File \Device\HarddiskVolume1\Windows\SysWOW64\zh-CN\MMDevAPI.dll.mui 0x0000029C 0xFFFFFA8013ED9DE0 28 1
File \Device\Nsi 0x0000038C 0xFFFFFA8015F1E070 28 1
File \Device\HarddiskVolume1\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat 0x000003A8 0xFFFFFA801386D370 28 1
File \Device\HarddiskVolume1\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\index.dat 0x000003C4 0xFFFFFA8013686620 28 1
File \Device\HarddiskVolume1\Users\Administrator\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat 0x000003D0 0xFFFFFA80116C59C0 28 1
File \Device\HarddiskVolume1\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 0x000003D8 0xFFFFFA801337C340 28 1
File \Device\HarddiskVolume1\吞噬苍穹\bin\locales\en-us.pak 0x00000468 0xFFFFFA80136F7BD0 28 17
File \Device\HarddiskVolume1\吞噬苍穹\bin\debug.log 0x0000047C 0xFFFFFA8013513C80 28 33
File \Device\Afd 0x0000051C 0xFFFFFA80138A47D0 28 1
File \Device\HarddiskVolume1\Windows\SysWOW64\zh-CN\urlmon.dll.mui 0x00000550 0xFFFFFA80116DA390 28 1
File \Device\HarddiskVolume1\Users\Administrator\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat 0x00000558 0xFFFFFA80135B6070 28 1
File \Device\Afd 0x00000584 0xFFFFFA8014A44C30 28 1
File \Device\HarddiskVolume1\Windows\System32\drivers\etc 0x000005F8 0xFFFFFA801425BB20 28 3
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\Cookies 0x00000680 0xFFFFFA80139A4170 28 18
File \Device\HarddiskVolume1\Windows\Fonts\simsun.ttc 0x00000714 0xFFFFFA8015456650 28 1
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\Cookies-journal 0x00000720 0xFFFFFA8012D31DD0 28 18
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\index 0x00000730 0xFFFFFA8014025F20 28 1
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\index 0x00000734 0xFFFFFA80158FB270 28 1
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\data_0 0x0000073C 0xFFFFFA80136389A0 28 1
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\data_0 0x00000740 0xFFFFFA8013A46F20 28 1
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\data_1 0x00000748 0xFFFFFA801460FF20 28 1
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\data_1 0x0000074C 0xFFFFFA8011B02510 28 1
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\data_2 0x00000754 0xFFFFFA8013B6C230 28 1
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\data_2 0x00000758 0xFFFFFA8013566880 28 1
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\data_3 0x00000760 0xFFFFFA801173F590 28 1
File \Device\HarddiskVolume1\Users\ADMINI~1\AppData\Local\Temp\scoped_dir9508_14359\data_3 0x00000764 0xFFFFFA8014A6F260 28 1
File \Device\HarddiskVolume1\Windows\Fonts\micross.ttf 0x00000794 0xFFFFFA801316E690 28 1
File \Device\Afd 0x000007A0 0xFFFFFA8013983750 28 2
File \Device\Afd 0x000007C4 0xFFFFFA80174F6690 28 2
File \Device\Afd 0x00000804 0xFFFFFA80139CB3A0 28 1
File \Device\HarddiskVolume1\Windows\SysWOW64\zh-CN\fwpuclnt.dll.mui 0x00000838 0xFFFFFA80136ED070 28 1
File \Device\HarddiskVolume1\Windows\SysWOW64\zh-CN\advapi32.dll.mui 0x00000840 0xFFFFFA8013D78D10 28 1
File \Device\NamedPipe\405e40061211061712 0x000009C4 0xFFFFFA8013AD68A0 28 1
File \Device\HarddiskVolume1\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 0x00000A08 0xFFFFFA80135214C0 28 1
File 0x00000A10 0xFFFFFA801332E4C0 28 1
File \Device\NamedPipe\405a42544610061712 0x00000A1C 0xFFFFFA8013124F20 28 1
Event 0x0000001C 0xFFFFFA801590B6E0 12 1
Event 0x00000040 0xFFFFFA80122421A0 12 1
Event 0x00000048 0xFFFFFA8015D7DDA0 12 2
Event 0x00000070 0xFFFFFA8013C32060 12 1
Event 0x00000078 0xFFFFFA80127CB440 12 1
Event 0x0000009C 0xFFFFFA8012911E20 12 1
Event 0x000000A0 0xFFFFFA8013FACC90 12 1
Event 0x000000A4 0xFFFFFA80135676C0 12 1
Event 0x000000A8 0xFFFFFA8014128D60 12 1
Event 0x000000AC 0xFFFFFA8012BD33D0 12 1
Event 0x000000B0 0xFFFFFA80128F70E0 12 1
Event 0x000000D4 0xFFFFFA8013316EA0 12 2
Event \Sessions\1\BaseNamedObjects\DwmDxBltEvent_806b8 0x000000E4 0xFFFFFA801590B2C0 12 2
Event 0x000000EC 0xFFFFFA80127CB3C0 12 1
Event 0x000000F4 0xFFFFFA8013B653A0 12 1
Event 0x000000F8 0xFFFFFA8013B538A0 12 1
Event 0x00000114 0xFFFFFA801287AC70 12 1
Event 0x0000011C 0xFFFFFA80127D2480 12 1
Event 0x00000120 0xFFFFFA8013938600 12 1
Event 0x00000134 0xFFFFFA8011B29CB0 12 1
Event 0x00000174 0xFFFFFA8014A79830 12 1
Event 0x00000178 0xFFFFFA8012C38C60 12 1
Event 0x0000017C 0xFFFFFA8013BC8210 12 1
Event 0x00000188 0xFFFFFA80134A84D0 12 1
Event 0x000001D0 0xFFFFFA800D6D4880 12 1
Event 0x000001D4 0xFFFFFA80134E9950 12 1
Event 0x000001E4 0xFFFFFA8012911EA0 12 1
Event 0x000001E8 0xFFFFFA801316C3E0 12 1
Event 0x000001EC 0xFFFFFA801326DDD0 12 1
Event 0x000001F0 0xFFFFFA801342BBE0 12 2
Event 0x000001F4 0xFFFFFA80127CB120 12 1
Event 0x000001F8 0xFFFFFA8013FF7C80 12 1
Event 0x00000200 0xFFFFFA8011139FE0 12 2
Event 0x00000214 0xFFFFFA8018494FE0 12 1
Event \BaseNamedObjects\IGFXKMDNotifyBatchBuffersComplete 0x0000021C 0xFFFFFA801166EAC0 12 7
Event 0x00000224 0xFFFFFA801342B060 12 1
Event 0x00000228 0xFFFFFA8013E31EA0 12 2
Event 0x0000022C 0xFFFFFA8013A4F700 12 1
Event 0x0000023C 0xFFFFFA80143753F0 12 1
Event 0x00000244 0xFFFFFA801850B1D0 12 2
Event \KernelObjects\MaximumCommitCondition 0x00000264 0xFFFFFA800CADC300 12 65
Event 0x0000027C 0xFFFFFA8013951450 12 1
Event 0x00000284 0xFFFFFA80139DAFE0 12 1
Event 0x00000290 0xFFFFFA8013CD7620 12 1
Event 0x000002A4 0xFFFFFA80129112E0 12 2
Event 0x000002A8 0xFFFFFA8015DFD460 12 1
Event 0x000002B0 0xFFFFFA8013114320 12 1
Event 0x000002B4 0xFFFFFA80130FA900 12 1
Event 0x000002CC 0xFFFFFA80130F5EE0 12 2
Event 0x000002D4 0xFFFFFA8011B2A190 12 3
Event 0x000002D8 0xFFFFFA8011B2CEE0 12 1
Event 0x000002E8 0xFFFFFA8011582C70 12 1
Event 0x000002EC 0xFFFFFA80147E9FE0 12 1
Event 0x00000318 0xFFFFFA80128011D0 12 1
Event 0x0000031C 0xFFFFFA80146DB410 12 1
Event 0x00000364 0xFFFFFA80116EED50 12 2
Event 0x0000036C 0xFFFFFA80131CAD30 12 1
Event 0x00000374 0xFFFFFA80147E9780 12 2
Event 0x00000380 0xFFFFFA8014216CA0 12 3
Event 0x00000384 0xFFFFFA8012F7EFE0 12 2
Event 0x00000388 0xFFFFFA801350DC60 12 2
Event 0x00000394 0xFFFFFA8011A8A1C0 12 1
Event 0x000003B0 0xFFFFFA801419F910 12 2
Event 0x000003BC 0xFFFFFA8015B1B6B0 12 1
Event 0x000003F0 0xFFFFFA80143643F0 12 1
Event 0x00000414 0xFFFFFA80135133C0 12 2
Event 0x00000424 0xFFFFFA80134ECDE0 12 2
Event 0x00000434 0xFFFFFA8012139990 12 1
Event 0x0000044C 0xFFFFFA8014B383B0 12 2
Event 0x00000450 0xFFFFFA80138163F0 12 1
Event 0x00000460 0xFFFFFA80153C4AA0 12 2
Event 0x00000464 0xFFFFFA80116F5470 12 1
Event 0x0000046C 0xFFFFFA8014380160 12 4
Event 0x00000470 0xFFFFFA8014380160 12 4
Event 0x0000048C 0xFFFFFA80128C2180 12 1
Event 0x00000490 0xFFFFFA801361F150 12 1
Event 0x00000494 0xFFFFFA801158EB80 12 1
Event 0x00000498 0xFFFFFA8012E70500 12 1
Event 0x0000049C 0xFFFFFA8013A4EFE0 12 1
Event 0x000004A0 0xFFFFFA801394A360 12 1
Event 0x000004A4 0xFFFFFA801423B210 12 1
Event 0x000004AC 0xFFFFFA80137E1480 12 1
Event 0x000004B4 0xFFFFFA801379B6C0 12 1
Event 0x000004B8 0xFFFFFA8013A04FE0 12 1
Event 0x000004BC 0xFFFFFA801379AC30 12 2
Event 0x000004C8 0xFFFFFA8012C96060 12 1
Event 0x000004DC 0xFFFFFA80143B4280 12 1
Event 0x000004E0 0xFFFFFA801378AFE0 12 1
Event 0x000004E8 0xFFFFFA8015A5B1B0 12 1
Event 0x000004F8 0xFFFFFA80127CCA50 12 1
Event 0x000004FC 0xFFFFFA8012942500 12 1
Event 0x00000500 0xFFFFFA80127EFE50 12 2
Event 0x00000504 0xFFFFFA801312FBD0 12 1
Event 0x0000052C 0xFFFFFA80135C9A10 12 1
Event 0x0000058C 0xFFFFFA8013472340 12 1
Event 0x00000594 0xFFFFFA8013992260 12 1
Event 0x000005B8 0xFFFFFA801300D3F0 12 1
Event 0x000005BC 0xFFFFFA8013598D00 12 3
Event 0x000005EC 0xFFFFFA801379ACB0 12 3
Event 0x000005F4 0xFFFFFA800D8F8EB0 12 3
Event 0x00000608 0xFFFFFA80143C6D60 12 2
Event 0x00000610 0xFFFFFA801352BE90 12 1
Event 0x00000614 0xFFFFFA801334B670 12 2
Event 0x0000061C 0xFFFFFA8013909640 12 1
Event 0x00000630 0xFFFFFA8011141590 12 2
Event 0x0000063C 0xFFFFFA80135C20F0 12 3
Event 0x00000648 0xFFFFFA8013668310 12 2
Event 0x00000654 0xFFFFFA80136B8660 12 2
Event 0x00000678 0xFFFFFA80136B8460 12 2
Event 0x0000067C 0xFFFFFA80137CEC00 12 1
Event 0x00000684 0xFFFFFA8016C22060 12 1
Event 0x00000690 0xFFFFFA8011B234B0 12 1
Event 0x00000698 0xFFFFFA80141F07D0 12 1
Event 0x0000069C 0xFFFFFA80161D2D00 12 1
Event 0x000006A0 0xFFFFFA8013666250 12 1
Event 0x000006AC 0xFFFFFA80139921E0 12 2
Event 0x000006CC 0xFFFFFA8011141880 12 1
Event 0x000006EC 0xFFFFFA80132E6D20 12 2
Event 0x000006F0 0xFFFFFA801352B320 12 3
Event 0x000006F8 0xFFFFFA80136F5B60 12 3
Event 0x00000700 0xFFFFFA80139D65B0 12 3
Event 0x0000070C 0xFFFFFA8014894F90 12 2
Event 0x00000710 0xFFFFFA8013125860 12 2
Event 0x00000718 0xFFFFFA801171AA10 12 2
Event 0x00000724 0xFFFFFA80142A0170 12 1
Event 0x00000728 0xFFFFFA8013121A00 12 1
Event 0x00000770 0xFFFFFA801290FFE0 12 1
Event 0x00000780 0xFFFFFA801402B260 12 1
Event 0x00000788 0xFFFFFA80121C0340 12 1
Event 0x000007AC 0xFFFFFA80116977B0 12 1
Event 0x000007D0 0xFFFFFA80127CE0E0 12 2
Event 0x000007D8 0xFFFFFA8013992400 12 1
Event 0x000007DC 0xFFFFFA80132E6CA0 12 1
Event 0x000007F4 0xFFFFFA80145982B0 12 1
Event 0x00000808 0xFFFFFA8012E1B540 12 1
Event 0x0000081C 0xFFFFFA8015BC0240 12 2
Event 0x00000834 0xFFFFFA80134928C0 12 1
Event 0x000009A8 0xFFFFFA80130DD620 12 1
Event 0x000009AC 0xFFFFFA80120F13A0 12 1
Event 0x000009C8 0xFFFFFA801414B1F0 12 2
Event 0x000009CC 0xFFFFFA801205A400 12 1
Event \BaseNamedObjects\abecfefa 0x000009D4 0xFFFFFA801339FAB0 12 2
Event 0x000009DC 0xFFFFFA80130B3E90 12 1
Event 0x000009EC 0xFFFFFA801533A510 12 2
Event 0x00000A14 0xFFFFFA8014368640 12 2
Event \BaseNamedObjects\07081116156341525e 0x00000A18 0xFFFFFA8013CD7080 12 2
Event \Sessions\1\BaseNamedObjects\07081117415243565e 0x00000A20 0xFFFFFA8014217C40 12 2
Event \Sessions\1\BaseNamedObjects\07081117415243505e 0x00000A24 0xFFFFFA8014496400 12 2
Event 0x00000A28 0xFFFFFA801177C9C0 12 1
Event 0x00000A3C 0xFFFFFA8012C4A670 12 1
Event 0x00000A44 0xFFFFFA80141CEB30 12 1
Event 0x00000A48 0xFFFFFA8014C60360 12 1
Event 0x00000A54 0xFFFFFA8014B44E10 12 2
EtwRegistration 0x00000044 0xFFFFFA80127C6EF0 39 1
EtwRegistration 0x00000058 0xFFFFFA801364C4C0 39 1
EtwRegistration 0x00000064 0xFFFFFA80116D7C90 39 1
EtwRegistration 0x00000068 0xFFFFFA80141F2650 39 1
EtwRegistration 0x00000080 0xFFFFFA8012CC1070 39 1
EtwRegistration 0x00000084 0xFFFFFA80128ACFB0 39 1
EtwRegistration 0x00000088 0xFFFFFA8014124C70 39 1
EtwRegistration 0x0000008C 0xFFFFFA80135334A0 39 1
EtwRegistration 0x00000090 0xFFFFFA8014301A40 39 1
EtwRegistration 0x00000094 0xFFFFFA8012948AD0 39 1
EtwRegistration 0x00000098 0xFFFFFA8014E2DAB0 39 1
EtwRegistration 0x000000B8 0xFFFFFA8013AB5480 39 1
EtwRegistration 0x000000BC 0xFFFFFA8013CCC730 39 1
EtwRegistration 0x000000C0 0xFFFFFA801364E070 39 1
EtwRegistration 0x000000C4 0xFFFFFA80136E4480 39 1
EtwRegistration 0x000000C8 0xFFFFFA8013A57480 39 1
EtwRegistration 0x000000CC 0xFFFFFA80139C9820 39 1
EtwRegistration 0x000000D0 0xFFFFFA8013C2A100 39 1
EtwRegistration 0x000000F0 0xFFFFFA80141A6870 39 1
EtwRegistration 0x00000108 0xFFFFFA8013FD6C90 39 1
EtwRegistration 0x0000010C 0xFFFFFA8013FE9500 39 1
EtwRegistration 0x00000124 0xFFFFFA801472BFB0 39 1
EtwRegistration 0x00000128 0xFFFFFA8011755E80 39 1
EtwRegistration 0x00000154 0xFFFFFA80129A51C0 39 1
EtwRegistration 0x00000158 0xFFFFFA8014552A50 39 1
EtwRegistration 0x0000015C 0xFFFFFA801420E380 39 1
EtwRegistration 0x00000160 0xFFFFFA8013381480 39 1
EtwRegistration 0x00000164 0xFFFFFA80143541C0 39 1
EtwRegistration 0x00000168 0xFFFFFA80135B4070 39 1
EtwRegistration 0x0000016C 0xFFFFFA80134AD240 39 1
EtwRegistration 0x00000170 0xFFFFFA8014474360 39 1
EtwRegistration 0x00000180 0xFFFFFA8012E63070 39 1
EtwRegistration 0x00000184 0xFFFFFA8013E88B30 39 1
EtwRegistration 0x000001A4 0xFFFFFA8011B02FB0 39 1
EtwRegistration 0x000001C0 0xFFFFFA8013DD1C70 39 1
EtwRegistration 0x000001DC 0xFFFFFA801365C5E0 39 1
EtwRegistration 0x0000026C 0xFFFFFA8013AC2780 39 1
EtwRegistration 0x00000270 0xFFFFFA8013784910 39 1
EtwRegistration 0x00000274 0xFFFFFA80147996F0 39 1
EtwRegistration 0x00000278 0xFFFFFA80140ED4D0 39 1
EtwRegistration 0x000002BC 0xFFFFFA8013D3B910 39 1
EtwRegistration 0x000002C0 0xFFFFFA80137705B0 39 1
EtwRegistration 0x000002C4 0xFFFFFA80137ECF20 39 1
EtwRegistration 0x000002F0 0xFFFFFA80138A4370 39 1
EtwRegistration 0x000003DC 0xFFFFFA8011141360 39 1
EtwRegistration 0x000003E4 0xFFFFFA8013988480 39 1
EtwRegistration 0x000003E8 0xFFFFFA801342F3E0 39 1
EtwRegistration 0x0000042C 0xFFFFFA8013721910 39 1
EtwRegistration 0x00000430 0xFFFFFA80138C2810 39 1
EtwRegistration 0x000004C0 0xFFFFFA8014000600 39 1
EtwRegistration 0x000004F4 0xFFFFFA8013EA5DC0 39 1
EtwRegistration 0x00000528 0xFFFFFA8013898630 39 1
EtwRegistration 0x0000057C 0xFFFFFA8014DB5070 39 1
EtwRegistration 0x000005FC 0xFFFFFA8013FFA290 39 1
EtwRegistration 0x00000688 0xFFFFFA80116A1790 39 1
EtwRegistration 0x000006D8 0xFFFFFA80139FC820 39 1
EtwRegistration 0x00000708 0xFFFFFA8013E40FB0 39 1
EtwRegistration 0x0000072C 0xFFFFFA8013ABFAA0 39 1
EtwRegistration 0x0000076C 0xFFFFFA8013B7F400 39 1
EtwRegistration 0x0000078C 0xFFFFFA8013823480 39 1
EtwRegistration 0x000007C8 0xFFFFFA8013CEF4E0 39 1
EtwRegistration 0x000007D4 0xFFFFFA801370D300 39 1
EtwRegistration 0x000007E0 0xFFFFFA801216CBB0 39 1
Directory \KnownDlls 0x00000008 0xFFFFF8A000D94BF0 3 146
Directory \KnownDlls32 0x0000000C 0xFFFFF8A0093443F0 3 161
Directory \KnownDlls32 0x00000018 0xFFFFF8A0093443F0 3 161
Directory \Sessions\1\BaseNamedObjects 0x000000B4 0xFFFFF8A00116E080 3 510
Desktop \Default 0x00000050 0xFFFFFA80121BACD0 21 4110
ALPC Port 0x00000028 0xFFFFFA8012E5C9E0 36 3
ALPC Port 0x00000110 0xFFFFFA8013C775E0 36 1
ALPC Port 0x00000190 0xFFFFFA8014B90E60 36 1
ALPC Port 0x000001D8 0xFFFFFA80143E5070 36 1
ALPC Port 0x0000028C 0xFFFFFA80127C6C60 36 1
ALPC Port 0x00000298 0xFFFFFA80145FC070 36 1
ALPC Port 0x000002C8 0xFFFFFA8013AA6E60 36 1
ALPC Port 0x000002E0 0xFFFFFA80153E6070 36 2
ALPC Port 0x00000360 0xFFFFFA8012A3A8F0 36 1
ALPC Port 0x000003A0 0xFFFFFA80158CE330 36 1
ALPC Port 0x0000041C 0xFFFFFA80143D6E60 36 1
ALPC Port 0x00000458 0xFFFFFA8012BEE660 36 1
ALPC Port 0x000004C4 0xFFFFFA8013473A60 36 1
ALPC Port 0x000004F0 0xFFFFFA8013ABDC90 36 1
ALPC Port 0x00000508 0xFFFFFA8012BE27D0 36 4
|
|