Skip to content

Instantly share code, notes, and snippets.

@kennykerr
Created May 1, 2026 15:40
Show Gist options
  • Select an option

  • Save kennykerr/cd791b35a47f7e299e0113911cd927d5 to your computer and use it in GitHub Desktop.

Select an option

Save kennykerr/cd791b35a47f7e299e0113911cd927d5 to your computer and use it in GitHub Desktop.
Analyzing C:\Users\kekerr\AppData\Local\CrashDumps\sample_xaml_app.exe.142460.dmp
************* Preparing the environment for Debugger Extensions Gallery repositories **************
ExtensionRepository : Implicit
UseExperimentalFeatureForNugetShare : true
AllowNugetExeUpdate : true
NonInteractiveNuget : true
AllowNugetMSCredentialProviderInstall : true
AllowParallelInitializationOfLocalRepositories : true
EnableRedirectToV8JsProvider : false
-- Configuring repositories
----> Repository : LocalInstalled, Enabled: true
----> Repository : UserExtensions, Enabled: true
>>>>>>>>>>>>> Preparing the environment for Debugger Extensions Gallery repositories completed, duration 0.000 seconds
************* Waiting for Debugger Extensions Gallery to Initialize **************
>>>>>>>>>>>>> Waiting for Debugger Extensions Gallery to Initialize completed, duration 0.015 seconds
----> Repository : UserExtensions, Enabled: true, Packages count: 0
----> Repository : LocalInstalled, Enabled: true, Packages count: 30
Microsoft (R) Windows Debugger Version 10.0.26100.7705 AMD64
Copyright (c) Microsoft Corporation. All rights reserved.
Loading Dump File [C:\Users\kekerr\AppData\Local\CrashDumps\sample_xaml_app.exe.142460.dmp]
User Mini Dump File with Full Memory: Only application data is available
************* Path validation summary **************
Response Time (ms) Location
Deferred cache*C:\Users\kekerr\AppData\Local\Symbols
OK ..\..\..\..\target\debug
Deferred srv*C:\Users\kekerr\AppData\Local\Symbols*https://msdl.microsoft.com/download/symbols
Symbol search path is: cache*C:\Users\kekerr\AppData\Local\Symbols;..\..\..\..\target\debug;srv*C:\Users\kekerr\AppData\Local\Symbols*https://msdl.microsoft.com/download/symbols
Executable search path is:
Windows 10 Version 26608 MP (24 procs) Free x64
Product: WinNt, suite: SingleUserTS
Edition build lab: 26608.1000.amd64fre.ge_current_directwinpd.260423-1718
Debug session time: Fri May 1 10:39:42.000 2026 (UTC - 5:00)
System Uptime: 5 days 9:51:29.620
Process Uptime: 0 days 0:00:05.000
................................................................
....................
Loading unloaded module list
.
This dump file has an exception of interest stored in it.
The stored exception information can be accessed via .ecxr.
(22c7c.10d54): Access violation - code c0000005 (first/second chance not available)
+------------------------------------------------------------------------+
| This target supports Hardware-enforced Stack Protection. A HW based |
| "Shadow Stack" may be available to assist in debugging and analysis. |
| See aka.ms/userhsp for more info. |
| |
| dps @ssp |
| |
+------------------------------------------------------------------------+
For analysis of this file, run !analyze -v
ntdll!ZwWaitForMultipleObjects+0x14:
00007ffc`9df60c84 c3 ret
0:007> cdb: Reading initial command '.ecxr; !analyze -v; kpn 40; lmv; q'
rax=0000000000000000 rbx=0000000000000000 rcx=000002393f18a310
rdx=000002393fe23070 rsi=000002393fe23070 rdi=000002393f1762a0
rip=0000000000000000 rsp=0000004acdafe098 rbp=000002393f15ddc0
r8=0000000000000001 r9=00007ff620e7ec00 r10=000002393f173500
r11=0000004acdafdf30 r12=000002393f7077b8 r13=000002393fa75fc0
r14=000002393f1762a0 r15=000002393f153300
iopl=0 nv up ei pl zr na po nc
cs=0033 ss=002b ds=002b es=002b fs=0053 gs=002b efl=00010246
00000000`00000000 ?? ???
*******************************************************************************
* *
* Exception Analysis *
* *
*******************************************************************************
*************************************************************************
*** ***
*** ***
*** Either you specified an unqualified symbol, or your debugger ***
*** doesn't have full symbol information. Unqualified symbol ***
*** resolution is turned off by default. Please either specify a ***
*** fully qualified symbol module!symbolname, or enable resolution ***
*** of unqualified symbols by typing ".symopt- 100". Note that ***
*** enabling unqualified symbol resolution with network symbol ***
*** server shares in the symbol path may cause the debugger to ***
*** appear to hang for long periods of time when an incorrect ***
*** symbol name is typed or the network symbol server is down. ***
*** ***
*** For some commands to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: ntdll!_PEB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Either you specified an unqualified symbol, or your debugger ***
*** doesn't have full symbol information. Unqualified symbol ***
*** resolution is turned off by default. Please either specify a ***
*** fully qualified symbol module!symbolname, or enable resolution ***
*** of unqualified symbols by typing ".symopt- 100". Note that ***
*** enabling unqualified symbol resolution with network symbol ***
*** server shares in the symbol path may cause the debugger to ***
*** appear to hang for long periods of time when an incorrect ***
*** symbol name is typed or the network symbol server is down. ***
*** ***
*** For some commands to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: ntdll!_RTL_USER_PROCESS_PARAMETERS ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Either you specified an unqualified symbol, or your debugger ***
*** doesn't have full symbol information. Unqualified symbol ***
*** resolution is turned off by default. Please either specify a ***
*** fully qualified symbol module!symbolname, or enable resolution ***
*** of unqualified symbols by typing ".symopt- 100". Note that ***
*** enabling unqualified symbol resolution with network symbol ***
*** server shares in the symbol path may cause the debugger to ***
*** appear to hang for long periods of time when an incorrect ***
*** symbol name is typed or the network symbol server is down. ***
*** ***
*** For some commands to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: ntdll!_UNICODE_STRING ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Either you specified an unqualified symbol, or your debugger ***
*** doesn't have full symbol information. Unqualified symbol ***
*** resolution is turned off by default. Please either specify a ***
*** fully qualified symbol module!symbolname, or enable resolution ***
*** of unqualified symbols by typing ".symopt- 100". Note that ***
*** enabling unqualified symbol resolution with network symbol ***
*** server shares in the symbol path may cause the debugger to ***
*** appear to hang for long periods of time when an incorrect ***
*** symbol name is typed or the network symbol server is down. ***
*** ***
*** For some commands to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: ntdll!_RTL_USER_PROCESS_PARAMETERS ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Either you specified an unqualified symbol, or your debugger ***
*** doesn't have full symbol information. Unqualified symbol ***
*** resolution is turned off by default. Please either specify a ***
*** fully qualified symbol module!symbolname, or enable resolution ***
*** of unqualified symbols by typing ".symopt- 100". Note that ***
*** enabling unqualified symbol resolution with network symbol ***
*** server shares in the symbol path may cause the debugger to ***
*** appear to hang for long periods of time when an incorrect ***
*** symbol name is typed or the network symbol server is down. ***
*** ***
*** For some commands to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: ntdll!_UNICODE_STRING ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Either you specified an unqualified symbol, or your debugger ***
*** doesn't have full symbol information. Unqualified symbol ***
*** resolution is turned off by default. Please either specify a ***
*** fully qualified symbol module!symbolname, or enable resolution ***
*** of unqualified symbols by typing ".symopt- 100". Note that ***
*** enabling unqualified symbol resolution with network symbol ***
*** server shares in the symbol path may cause the debugger to ***
*** appear to hang for long periods of time when an incorrect ***
*** symbol name is typed or the network symbol server is down. ***
*** ***
*** For some commands to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: $ntdllsym!_CONTEXT ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Either you specified an unqualified symbol, or your debugger ***
*** doesn't have full symbol information. Unqualified symbol ***
*** resolution is turned off by default. Please either specify a ***
*** fully qualified symbol module!symbolname, or enable resolution ***
*** of unqualified symbols by typing ".symopt- 100". Note that ***
*** enabling unqualified symbol resolution with network symbol ***
*** server shares in the symbol path may cause the debugger to ***
*** appear to hang for long periods of time when an incorrect ***
*** symbol name is typed or the network symbol server is down. ***
*** ***
*** For some commands to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KTHREAD ***
*** ***
*************************************************************************
***** OS symbols are WRONG. Please fix symbols to do analysis.
*************************************************************************
*** ***
*** ***
*** Either you specified an unqualified symbol, or your debugger ***
*** doesn't have full symbol information. Unqualified symbol ***
*** resolution is turned off by default. Please either specify a ***
*** fully qualified symbol module!symbolname, or enable resolution ***
*** of unqualified symbols by typing ".symopt- 100". Note that ***
*** enabling unqualified symbol resolution with network symbol ***
*** server shares in the symbol path may cause the debugger to ***
*** appear to hang for long periods of time when an incorrect ***
*** symbol name is typed or the network symbol server is down. ***
*** ***
*** For some commands to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KTHREAD ***
*** ***
*************************************************************************
*** WARNING: Unable to verify checksum for sample_xaml_app.exe
KEY_VALUES_STRING: 1
Key : Analysis.CPU.mSec
Value: 77
Key : Analysis.Elapsed.mSec
Value: 1194
Key : Analysis.IO.Other.Mb
Value: 0
Key : Analysis.IO.Read.Mb
Value: 10
Key : Analysis.IO.Write.Mb
Value: 10
Key : Analysis.Init.CPU.mSec
Value: 140
Key : Analysis.Init.Elapsed.mSec
Value: 609
Key : Analysis.Memory.CommitPeak.Mb
Value: 68
Key : Failure.Bucket
Value: WRONG_SYMBOLS_X64_26608.1000.amd64fre.ge_current_directwinpd.260423-1718_TIMESTAMP_290214-194229_6F35BC25_ntdll.wrong.symbols.dll!6F35BC25266000
Key : Failure.Hash
Value: {532de2c7-2fa9-f593-a900-54173c15ae86}
Key : Timeline.OS.Boot.DeltaSec
Value: 467489
Key : Timeline.Process.Start.DeltaSec
Value: 5
Key : WER.OS.Branch
Value: ge_current_directwinpd
Key : WER.OS.Version
Value: 10.0.26608.1000
FILE_IN_CAB: sample_xaml_app.exe.142460.dmp
CONTEXT: (.ecxr)
rax=0000000000000000 rbx=0000000000000000 rcx=000002393f18a310
rdx=000002393fe23070 rsi=000002393fe23070 rdi=000002393f1762a0
rip=0000000000000000 rsp=0000004acdafe098 rbp=000002393f15ddc0
r8=0000000000000001 r9=00007ff620e7ec00 r10=000002393f173500
r11=0000004acdafdf30 r12=000002393f7077b8 r13=000002393fa75fc0
r14=000002393f1762a0 r15=000002393f153300
iopl=0 nv up ei pl zr na po nc
cs=0033 ss=002b ds=002b es=002b fs=0053 gs=002b efl=00010246
00000000`00000000 ?? ???
Resetting default scope
EXCEPTION_RECORD: (.exr -1)
ExceptionAddress: 0000000000000000
ExceptionCode: c0000005 (Access violation)
ExceptionFlags: 00000000
NumberParameters: 2
Parameter[0]: 0000000000000008
Parameter[1]: 0000000000000000
Attempt to execute non-executable address 0000000000000000
PROCESS_NAME: ntdll.wrong.symbols.dll
WRONG_SYMBOLS_TIMESTAMP: 6f35bc25
WRONG_SYMBOLS_SIZE: 266000
FAULTING_MODULE: 00007ffc9de00000 ntdll
ADDITIONAL_DEBUG_TEXT:
You can run '.symfix; .reload' to try to fix the symbol path and load symbols. ; Followup set based on attribute [Is_ChosenCrashFollowupThread] from Frame:[0] on thread:[PSEUDO_THREAD]
FAULTING_THREAD: ffffffff
STACK_TEXT:
00000000`00000000 00000000`00000000 WRONG_SYMBOLS!WRONG_SYMBOLS+0x0
STACK_COMMAND: ** Pseudo Context ** ManagedPseudo ** Value: ffffffff ** ; kb
BUGCHECK_CODE: 6f35bc25
EXCEPTION_CODE_STR: 6F35BC25
EXCEPTION_STR: WRONG_SYMBOLS
IMAGE_NAME: ntdll.wrong.symbols.dll
MODULE_NAME: ntdll_wrong_symbols
SYMBOL_NAME: ntdll_wrong_symbols!6F35BC25266000
FAILURE_BUCKET_ID: WRONG_SYMBOLS_X64_26608.1000.amd64fre.ge_current_directwinpd.260423-1718_TIMESTAMP_290214-194229_6F35BC25_ntdll.wrong.symbols.dll!6F35BC25266000
OS_VERSION: 10.0.26608.1000
BUILDLAB_STR: ge_current_directwinpd
OSPLATFORM_TYPE: x64
OSNAME: Windows 10
FAILURE_ID_HASH: {532de2c7-2fa9-f593-a900-54173c15ae86}
Followup: MachineOwner
---------
# Child-SP RetAddr Call Site
00 0000004a`cdafce78 00007ffc`9de89456 ntdll!ZwWaitForMultipleObjects+0x14
01 0000004a`cdafce80 00007ffc`9de890bf ntdll!LdrShutdownProcess+0xc16
02 0000004a`cdafcf00 00007ffc`9df0bb08 ntdll!LdrShutdownProcess+0x87f
03 0000004a`cdafd080 00007ffc`9c2b2676 ntdll!RtlReportException+0x78
04 0000004a`cdafd0b0 00007ffc`9c2fa7f2 combase!RoRevokeActivationFactories+0x1d6
05 0000004a`cdafd100 00007ffc`9c3b5b15 combase!Ordinal138+0x272
06 0000004a`cdafd150 00007ffc`9b291d1f combase!ObjectStublessClient32+0x83e5
07 0000004a`cdafd190 00007ffc`9df6486f ucrtbase!_C_specific_handler+0x9f
08 0000004a`cdafd200 00007ffc`9de221c7 ntdll!_chkstk+0x9f
09 0000004a`cdafd230 00007ffc`9df641ae ntdll!RtlLocateExtendedFeature+0x597
0a 0000004a`cdafd980 00000000`00000000 ntdll!KiUserExceptionDispatcher+0x2e
start end module name
00007ff6`20e50000 00007ff6`20e96000 sample_xaml_app C (private pdb symbols) c:\users\kekerr\appdata\local\symbols\sample_xaml_app.pdb\EB7F89481B6D40F48B3B3E23EAD7CBF01\sample_xaml_app.pdb
Loaded symbol image file: sample_xaml_app.exe
Image path: D:\git\windows-rs\target\debug\sample_xaml_app.exe
Image name: sample_xaml_app.exe
Timestamp: Fri May 1 10:39:31 2026 (69F4C933)
CheckSum: 00000000
ImageSize: 00046000
Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
Information from resource tables:
00007ffc`42700000 00007ffc`42871000 windows_ui_core_textinput (deferred)
Image path: C:\Windows\System32\windows.ui.core.textinput.dll
Image name: windows.ui.core.textinput.dll
Image was built with /Brepro flag.
Timestamp: 870E2C20 (This is a reproducible build file hash, not a timestamp)
CheckSum: 001725BA
ImageSize: 00171000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: Windows.UI.Core.TextInput.dll
OriginalFilename: Windows.UI.Core.TextInput.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows.UI.Core.TextInput dll
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`4f850000 00007ffc`4fa07000 nvppex (deferred)
Image path: C:\Windows\System32\DriverStore\FileRepository\nvwu.inf_amd64_b031a0c199a648fa\nvppex.dll
Image name: nvppex.dll
Timestamp: Sun Dec 7 04:34:16 2025 (69355828)
CheckSum: 001C801D
ImageSize: 001B7000
File version: 32.0.15.8208
Product version: 32.0.15.8208
File flags: 8 (Mask 3F) Private
File OS: 40004 NT Win32
File type: 3.4 Driver
File date: 00000000.00000000
Translations: 0409.04e4
Information from resource tables:
CompanyName: NVIDIA Corporation
ProductName: NVIDIA driver loader
InternalName: NVPPE
OriginalFilename: NVPPE.dll
ProductVersion: 32.0.15.8208
FileVersion: 32.0.15.8208
FileDescription: NVIDIA Driver, Version 582.08
LegalCopyright: (C) 2025 NVIDIA Corporation. All rights reserved.
00007ffc`5f6b0000 00007ffc`5f70c000 DataExchange (deferred)
Image path: C:\Windows\System32\DataExchange.dll
Image name: DataExchange.dll
Image was built with /Brepro flag.
Timestamp: 07BDA265 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00064F88
ImageSize: 0005C000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: DataExchange
OriginalFilename: DataExchange.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Data exchange
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`652c0000 00007ffc`6539b000 UiaManager (deferred)
Image path: C:\Windows\System32\UiaManager.dll
Image name: UiaManager.dll
Image was built with /Brepro flag.
Timestamp: EBFF87A2 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000E7CB2
ImageSize: 000DB000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: UiaManager.dll
OriginalFilename: UiaManager.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: UiaManager
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`65e30000 00007ffc`66014000 InputHost (deferred)
Image path: C:\Windows\System32\InputHost.dll
Image name: InputHost.dll
Image was built with /Brepro flag.
Timestamp: 30F3D7C4 (This is a reproducible build file hash, not a timestamp)
CheckSum: 001E9D5D
ImageSize: 001E4000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: InputHost.dll
OriginalFilename: InputHost.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: InputHost
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`665d0000 00007ffc`66722000 Windows_UI_Immersive (deferred)
Image path: C:\Windows\System32\Windows.UI.Immersive.dll
Image name: Windows.UI.Immersive.dll
Image was built with /Brepro flag.
Timestamp: 61277090 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00151542
ImageSize: 00152000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: WINDOWS.UI.IMMERSIVE
OriginalFilename: WINDOWS.UI.IMMERSIVE.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: WINDOWS.UI.IMMERSIVE
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`66730000 00007ffc`67839000 Windows_UI_Xaml (export symbols) Windows.UI.Xaml.dll
Loaded symbol image file: Windows.UI.Xaml.dll
Image path: C:\Windows\System32\Windows.UI.Xaml.dll
Image name: Windows.UI.Xaml.dll
Image was built with /Brepro flag.
Timestamp: ED24262E (This is a reproducible build file hash, not a timestamp)
CheckSum: 0111201D
ImageSize: 01109000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: Windows.UI.Xaml.dll
OriginalFilename: Windows.UI.Xaml.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows.UI.Xaml dll
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`75bd0000 00007ffc`75bf0000 Windows_Shell_ServiceHostBuilder (deferred)
Image path: C:\Windows\System32\Windows.Shell.ServiceHostBuilder.dll
Image name: Windows.Shell.ServiceHostBuilder.dll
Image was built with /Brepro flag.
Timestamp: 8E444D9E (This is a reproducible build file hash, not a timestamp)
CheckSum: 00030C6A
ImageSize: 00020000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: ServiceHostBuilder
OriginalFilename: Windows.Shell.ServiceHostBuilder.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows.Shell.ServiceHostBuilder
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`78e00000 00007ffc`78e14000 execmodelproxy (deferred)
Image path: C:\Windows\System32\execmodelproxy.dll
Image name: execmodelproxy.dll
Image was built with /Brepro flag.
Timestamp: A22205D5 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0002373D
ImageSize: 00014000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: ExecModelProxy
OriginalFilename: ExecModelProxy.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: ExecModelProxy
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`78ea0000 00007ffc`78ee7000 windows_staterepositoryclient (deferred)
Image path: C:\Windows\System32\windows.staterepositoryclient.dll
Image name: windows.staterepositoryclient.dll
Image was built with /Brepro flag.
Timestamp: 9741EAC0 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0004D65F
ImageSize: 00047000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: Windows StateRepository Client API
OriginalFilename: Windows.StateRepositoryClient.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows StateRepository Client API
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`79070000 00007ffc`790a4000 BCP47mrm (deferred)
Image path: C:\Windows\System32\BCP47mrm.dll
Image name: BCP47mrm.dll
Image was built with /Brepro flag.
Timestamp: 17499FAC (This is a reproducible build file hash, not a timestamp)
CheckSum: 00044C4D
ImageSize: 00034000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: BCP47mrm.dll
OriginalFilename: BCP47mrm.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: BCP47 Language Classes for Resource Management
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`790b0000 00007ffc`7920b000 Windows_UI (deferred)
Image path: C:\Windows\System32\Windows.UI.dll
Image name: Windows.UI.dll
Image was built with /Brepro flag.
Timestamp: 5DCE50AE (This is a reproducible build file hash, not a timestamp)
CheckSum: 0016489E
ImageSize: 0015B000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: Windows Runtime UI Foundation DLL
OriginalFilename: Windows.UI.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows Runtime UI Foundation DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`7d3d0000 00007ffc`7d3ee000 VCRUNTIME140 (deferred)
Image path: C:\Windows\System32\VCRUNTIME140.dll
Image name: VCRUNTIME140.dll
Image was built with /Brepro flag.
Timestamp: 0F259D81 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00023A98
ImageSize: 0001E000
File version: 14.44.35211.0
Product version: 14.44.35211.0
File flags: 0 (Mask 3F)
File OS: 4 Unknown Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Visual Studio�
InternalName: vcruntime140.dll
OriginalFilename: vcruntime140.dll
ProductVersion: 14.44.35211.0
FileVersion: 14.44.35211.0
FileDescription: Microsoft� C Runtime Library
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`7dca0000 00007ffc`7ddb4000 MrmCoreR (deferred)
Image path: C:\Windows\System32\MrmCoreR.dll
Image name: MrmCoreR.dll
Image was built with /Brepro flag.
Timestamp: 64174C70 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0011AD3C
ImageSize: 00114000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: MrmCore
OriginalFilename: MrmCore.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft Windows MRM
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`7e480000 00007ffc`7e745000 iertutil (deferred)
Image path: C:\Windows\System32\iertutil.dll
Image name: iertutil.dll
Image was built with /Brepro flag.
Timestamp: AD028DD9 (This is a reproducible build file hash, not a timestamp)
CheckSum: 002D2936
ImageSize: 002C5000
File version: 11.0.26608.1000
Product version: 11.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Internet Explorer
InternalName: IeRtUtil.dll
OriginalFilename: IeRtUtil.dll
ProductVersion: 11.00.26608.1000
FileVersion: 11.00.26608.1000 (WinBuild.160101.0800)
FileDescription: Run time utility for Internet Explorer
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`7e750000 00007ffc`7e92e000 urlmon (deferred)
Image path: C:\Windows\System32\urlmon.dll
Image name: urlmon.dll
Image was built with /Brepro flag.
Timestamp: 0134F323 (This is a reproducible build file hash, not a timestamp)
CheckSum: 001E00C1
ImageSize: 001DE000
File version: 11.0.26608.1000
Product version: 11.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Internet Explorer
InternalName: UrlMon.dll
OriginalFilename: UrlMon.dll
ProductVersion: 11.00.26608.1000
FileVersion: 11.00.26608.1000 (WinBuild.160101.0800)
FileDescription: OLE32 Extensions for Win32
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`7f790000 00007ffc`7f869000 Windows_ApplicationModel (deferred)
Image path: C:\Windows\System32\Windows.ApplicationModel.dll
Image name: Windows.ApplicationModel.dll
Image was built with /Brepro flag.
Timestamp: 0EE4A2E7 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000E3826
ImageSize: 000D9000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: Windows ApplicationModel API Server
OriginalFilename: Windows.ApplicationModel.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows ApplicationModel API Server
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`7fb70000 00007ffc`7fb8d000 windows_staterepositorycore (deferred)
Image path: C:\Windows\System32\windows.staterepositorycore.dll
Image name: windows.staterepositorycore.dll
Image was built with /Brepro flag.
Timestamp: C4B36DFE (This is a reproducible build file hash, not a timestamp)
CheckSum: 0002B084
ImageSize: 0001D000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: Windows StateRepository API core
OriginalFilename: Windows.StateRepositoryCore.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows StateRepository API Core
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`80050000 00007ffc`80079000 srvcli (deferred)
Image path: C:\Windows\System32\srvcli.dll
Image name: srvcli.dll
Image was built with /Brepro flag.
Timestamp: AAED0E3A (This is a reproducible build file hash, not a timestamp)
CheckSum: 0002E962
ImageSize: 00029000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: SRVCLI.DLL
OriginalFilename: SRVCLI.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Server Service Client DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`8a180000 00007ffc`8a2c7000 TextInputFramework (deferred)
Image path: C:\Windows\System32\TextInputFramework.dll
Image name: TextInputFramework.dll
Image was built with /Brepro flag.
Timestamp: 21AF5C25 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0015429C
ImageSize: 00147000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 0.0 Unknown
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: "TextInputFramework.DYNLINK"
OriginalFilename: "TextInputFramework.DYNLINK"
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: "TextInputFramework.DYNLINK"
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`8ad80000 00007ffc`905b6000 nvwgf2umx (deferred)
Image path: C:\Windows\System32\DriverStore\FileRepository\nvwu.inf_amd64_b031a0c199a648fa\nvwgf2umx.dll
Image name: nvwgf2umx.dll
Timestamp: Sun Dec 7 04:47:47 2025 (69355B53)
CheckSum: 058EF0DD
ImageSize: 05836000
File version: 32.0.15.8208
Product version: 32.0.15.8208
File flags: 8 (Mask 3F) Private
File OS: 40004 NT Win32
File type: 3.4 Driver
File date: 00000000.00000000
Translations: 0409.04e4
Information from resource tables:
CompanyName: NVIDIA Corporation
ProductName: NVIDIA D3D10 drivers
InternalName: nvwgf2um
OriginalFilename: nvwgf2um.dll
ProductVersion: 32.0.15.8208
FileVersion: 32.0.15.8208
FileDescription: NVIDIA D3D10 Driver, Version 582.08
LegalCopyright: (C) 2025 NVIDIA Corporation. All rights reserved.
00007ffc`905c0000 00007ffc`90c22000 OneCoreUAPCommonProxyStub (deferred)
Image path: C:\Windows\System32\OneCoreUAPCommonProxyStub.dll
Image name: OneCoreUAPCommonProxyStub.dll
Image was built with /Brepro flag.
Timestamp: 9F1E3D13 (This is a reproducible build file hash, not a timestamp)
CheckSum: 006745D2
ImageSize: 00662000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: OneCoreUAPCommonProxyStub.dll
OriginalFilename: OneCoreUAPCommonProxyStub.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: OneCoreUAP Common Proxy Stub
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`90c30000 00007ffc`90e7f000 twinapi_appcore (export symbols) twinapi.appcore.dll
Loaded symbol image file: twinapi.appcore.dll
Image path: C:\Windows\System32\twinapi.appcore.dll
Image name: twinapi.appcore.dll
Image was built with /Brepro flag.
Timestamp: 218E1B2F (This is a reproducible build file hash, not a timestamp)
CheckSum: 002557CD
ImageSize: 0024F000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: twinapi.appcore
OriginalFilename: twinapi.appcore.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: twinapi.appcore
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`912d0000 00007ffc`91306000 winmm (deferred)
Image path: C:\Windows\System32\winmm.dll
Image name: winmm.dll
Image was built with /Brepro flag.
Timestamp: E012DBEA (This is a reproducible build file hash, not a timestamp)
CheckSum: 00036BF5
ImageSize: 00036000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: winmm.dll
OriginalFilename: WINMM.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: MCI API DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`91310000 00007ffc`913ee000 NvMemMapStoragex (deferred)
Image path: C:\Windows\System32\DriverStore\FileRepository\nvwu.inf_amd64_b031a0c199a648fa\NvMemMapStoragex.dll
Image name: NvMemMapStoragex.dll
Timestamp: Sun Dec 7 04:45:41 2025 (69355AD5)
CheckSum: 000E8812
ImageSize: 000DE000
Translations: 0000.04b0 0000.04e4 0409.04b0 0409.04e4
Information from resource tables:
00007ffc`91640000 00007ffc`953d4000 nvgpucomp64 (deferred)
Image path: C:\Windows\System32\DriverStore\FileRepository\nvwu.inf_amd64_b031a0c199a648fa\nvgpucomp64.dll
Image name: nvgpucomp64.dll
Timestamp: Sun Dec 7 04:47:31 2025 (69355B43)
CheckSum: 03DF6666
ImageSize: 03D94000
File version: 32.0.15.8208
Product version: 32.0.15.8208
File flags: 8 (Mask 3F) Private
File OS: 40004 NT Win32
File type: 3.4 Driver
File date: 00000000.00000000
Translations: 0409.04e4
Information from resource tables:
CompanyName: NVIDIA Corporation
ProductName: NVIDIA GPU Compiler Driver
InternalName: nvgpucomp
OriginalFilename: nvgpucomp64.dll
ProductVersion: 32.0.15.8208
FileVersion: 32.0.15.8208
FileDescription: NVIDIA GPU Compiler Driver, Version 582.08
LegalCopyright: (C) 2025 NVIDIA Corporation. All rights reserved.
00007ffc`953e0000 00007ffc`9541d000 cryptnet (deferred)
Image path: C:\Windows\System32\cryptnet.dll
Image name: cryptnet.dll
Image was built with /Brepro flag.
Timestamp: A388B2C5 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000428C3
ImageSize: 0003D000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: CRYPTNET.DLL
OriginalFilename: CRYPTNET.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Crypto Network Related API
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`95420000 00007ffc`954e4000 nvldumdx (deferred)
Image path: C:\Windows\System32\DriverStore\FileRepository\nvwu.inf_amd64_b031a0c199a648fa\nvldumdx.dll
Image name: nvldumdx.dll
Timestamp: Sun Dec 7 04:35:23 2025 (6935586B)
CheckSum: 000CB08E
ImageSize: 000C4000
File version: 32.0.15.8208
Product version: 32.0.15.8208
File flags: 8 (Mask 3F) Private
File OS: 40004 NT Win32
File type: 3.4 Driver
File date: 00000000.00000000
Translations: 0409.04e4
Information from resource tables:
CompanyName: NVIDIA Corporation
ProductName: NVIDIA driver loader
InternalName: nvldumd
OriginalFilename: nvldumd.dll
ProductVersion: 32.0.15.8208
FileVersion: 32.0.15.8208
FileDescription: NVIDIA Driver Loader, Version 582.08
LegalCopyright: (C) 2025 NVIDIA Corporation. All rights reserved.
00007ffc`954f0000 00007ffc`956a7000 WindowManagementAPI (deferred)
Image path: C:\Windows\System32\WindowManagementAPI.dll
Image name: WindowManagementAPI.dll
Image was built with /Brepro flag.
Timestamp: 43105EC0 (This is a reproducible build file hash, not a timestamp)
CheckSum: 001CAE68
ImageSize: 001B7000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: WindowManagementAPI
OriginalFilename: WindowManagementAPI.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Window Management API
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`956b0000 00007ffc`9581a000 WinTypes (deferred)
Image path: C:\Windows\System32\WinTypes.dll
Image name: WinTypes.dll
Image was built with /Brepro flag.
Timestamp: D344D300 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00176867
ImageSize: 0016A000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: Windows Base Types DLL
OriginalFilename: WinTypes.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows Base Types DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`95820000 00007ffc`95b04000 CoreUIComponents (export symbols) CoreUIComponents.dll
Loaded symbol image file: CoreUIComponents.dll
Image path: C:\Windows\System32\CoreUIComponents.dll
Image name: CoreUIComponents.dll
Image was built with /Brepro flag.
Timestamp: A0F6BD36 (This is a reproducible build file hash, not a timestamp)
CheckSum: 002F2B68
ImageSize: 002E4000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: CoreUIComponents.dll
OriginalFilename: CoreUIComponents.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000
FileDescription: Microsoft Core UI Components Dll
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`95d90000 00007ffc`95df0000 directxdatabasehelper (deferred)
Image path: C:\Windows\System32\directxdatabasehelper.dll
Image name: directxdatabasehelper.dll
Image was built with /Brepro flag.
Timestamp: 2E99313E (This is a reproducible build file hash, not a timestamp)
CheckSum: 00064386
ImageSize: 00060000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: DirectXDatabaseHelper
OriginalFilename: DirectXDatabaseHelper.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: DirectXDatabaseHelper
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`95e50000 00007ffc`95e5b000 version (deferred)
Image path: C:\Windows\System32\version.dll
Image name: version.dll
Image was built with /Brepro flag.
Timestamp: 8FB20C3E (This is a reproducible build file hash, not a timestamp)
CheckSum: 00017C04
ImageSize: 0000B000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: version
OriginalFilename: VERSION.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Version Checking and File Installation Libraries
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`95e60000 00007ffc`95f15000 TextShaping (deferred)
Image path: C:\Windows\System32\TextShaping.dll
Image name: TextShaping.dll
Image was built with /Brepro flag.
Timestamp: CAB1BD7C (This is a reproducible build file hash, not a timestamp)
CheckSum: 000C1DCA
ImageSize: 000B5000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: textshaping
OriginalFilename: textshaping
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft Text Shaping Library
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`95f80000 00007ffc`960f8000 drvstore (deferred)
Image path: C:\Windows\System32\drvstore.dll
Image name: drvstore.dll
Image was built with /Brepro flag.
Timestamp: F0CB5D0F (This is a reproducible build file hash, not a timestamp)
CheckSum: 00187381
ImageSize: 00178000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: drvstore.dll
OriginalFilename: DRVSTORE.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Driver Store API
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`967c0000 00007ffc`96a28000 DWrite (deferred)
Image path: C:\Windows\System32\DWrite.dll
Image name: DWrite.dll
Image was built with /Brepro flag.
Timestamp: 9DF6B5A5 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00264B3D
ImageSize: 00268000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: DWrite
OriginalFilename: DWrite
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft DirectX Typography Services
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`96a30000 00007ffc`96c94000 d3d11 (deferred)
Image path: C:\Windows\System32\d3d11.dll
Image name: d3d11.dll
Image was built with /Brepro flag.
Timestamp: 2EA5C194 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00272D20
ImageSize: 00264000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: D3D11.dll
OriginalFilename: D3D11.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Direct3D 11 Runtime
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`96ca0000 00007ffc`972da000 d2d1 (deferred)
Image path: C:\Windows\System32\d2d1.dll
Image name: d2d1.dll
Image was built with /Brepro flag.
Timestamp: 6E6DF368 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0064A684
ImageSize: 0063A000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: d2d1
OriginalFilename: d2d1
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft D2D Library
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`979d0000 00007ffc`97af7000 CoreMessaging (deferred)
Image path: C:\Windows\System32\CoreMessaging.dll
Image name: CoreMessaging.dll
Image was built with /Brepro flag.
Timestamp: 4AE8571E (This is a reproducible build file hash, not a timestamp)
CheckSum: 0012F33C
ImageSize: 00127000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: CoreMessaging.dll
OriginalFilename: CoreMessaging.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft CoreMessaging Dll
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`982b0000 00007ffc`9835a000 uxtheme (deferred)
Image path: C:\Windows\System32\uxtheme.dll
Image name: uxtheme.dll
Image was built with /Brepro flag.
Timestamp: 56169234 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000AFD95
ImageSize: 000AA000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: UxTheme.dll
OriginalFilename: UxTheme.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft UxTheme Library
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`98390000 00007ffc`983d5000 DXCore (deferred)
Image path: C:\Windows\System32\DXCore.dll
Image name: DXCore.dll
Image was built with /Brepro flag.
Timestamp: 295838FB (This is a reproducible build file hash, not a timestamp)
CheckSum: 0004B3D6
ImageSize: 00045000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 1.0 App
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: DXCore
OriginalFilename: DXCore.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: DXCore
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`983e0000 00007ffc`9851e000 dxgi (deferred)
Image path: C:\Windows\System32\dxgi.dll
Image name: dxgi.dll
Image was built with /Brepro flag.
Timestamp: F0C3DE57 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0014B455
ImageSize: 0013E000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: dxgi.dll
OriginalFilename: dxgi.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: DirectX Graphics Infrastructure
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`98690000 00007ffc`986cb000 rmclient (deferred)
Image path: C:\Windows\System32\rmclient.dll
Image name: rmclient.dll
Image was built with /Brepro flag.
Timestamp: D5187D26 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000480C2
ImageSize: 0003B000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 1.0 App
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: rmclient.dll
OriginalFilename: rmclient.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Resource Manager Client
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`986d0000 00007ffc`986e5000 RpcRtRemote (deferred)
Image path: C:\Windows\System32\RpcRtRemote.dll
Image name: RpcRtRemote.dll
Image was built with /Brepro flag.
Timestamp: 9104F3C4 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0001714A
ImageSize: 00015000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: RpcRtRemote.dll
OriginalFilename: RpcRtRemote.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Remote RPC Extension
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`98890000 00007ffc`9911e000 windows_storage (deferred)
Image path: C:\Windows\System32\windows.storage.dll
Image name: windows.storage.dll
Image was built with /Brepro flag.
Timestamp: 8FB3CBA0 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0089E7EF
ImageSize: 0088E000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: Windows.Storage
OriginalFilename: Windows.Storage.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft WinRT Storage API
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`995b0000 00007ffc`995bd000 netutils (deferred)
Image path: C:\Windows\System32\netutils.dll
Image name: netutils.dll
Image was built with /Brepro flag.
Timestamp: A0E10541 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000159E0
ImageSize: 0000D000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: NETUTILS.DLL
OriginalFilename: NETUTILS.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Net Win32 API Helpers DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`99bc0000 00007ffc`99bf9000 rsaenh (deferred)
Image path: C:\Windows\System32\rsaenh.dll
Image name: rsaenh.dll
Image was built with /Brepro flag.
Timestamp: 45623522 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00042270
ImageSize: 00039000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: rsaenh.dll
OriginalFilename: rsaenh.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft Enhanced Cryptographic Provider
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`99c70000 00007ffc`99c8b000 kernel_appcore (deferred)
Image path: C:\Windows\System32\kernel.appcore.dll
Image name: kernel.appcore.dll
Image was built with /Brepro flag.
Timestamp: 064789C0 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00023F83
ImageSize: 0001B000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: kernel.appcore.dll
OriginalFilename: kernel.appcore.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: AppModel API Host
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9a5f0000 00007ffc`9a65a000 wldp (deferred)
Image path: C:\Windows\System32\wldp.dll
Image name: wldp.dll
Image was built with /Brepro flag.
Timestamp: 7E8A2BAE (This is a reproducible build file hash, not a timestamp)
CheckSum: 0007047D
ImageSize: 0006A000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: wldp.dll
OriginalFilename: wldp.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows Lockdown Policy
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9a6e0000 00007ffc`9a6ec000 cryptbase (deferred)
Image path: C:\Windows\System32\cryptbase.dll
Image name: cryptbase.dll
Image was built with /Brepro flag.
Timestamp: CFA4D809 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00016E43
ImageSize: 0000C000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 1.0 App
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: cryptbase.dll
OriginalFilename: cryptbase.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Base cryptographic API DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9a700000 00007ffc`9a71b000 cryptsp (deferred)
Image path: C:\Windows\System32\cryptsp.dll
Image name: cryptsp.dll
Image was built with /Brepro flag.
Timestamp: D5EEAB7E (This is a reproducible build file hash, not a timestamp)
CheckSum: 00023A0D
ImageSize: 0001B000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: cryptsp.dll
OriginalFilename: cryptsp.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Cryptographic Service Provider API
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9a760000 00007ffc`9a773000 msasn1 (deferred)
Image path: C:\Windows\System32\msasn1.dll
Image name: msasn1.dll
Image was built with /Brepro flag.
Timestamp: 4AFE8186 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00021230
ImageSize: 00013000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: msasn1.dll
OriginalFilename: msasn1.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: ASN.1 Runtime APIs
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9aa30000 00007ffc`9aa44000 umpdc (deferred)
Image path: C:\Windows\System32\umpdc.dll
Image name: umpdc.dll
Image was built with /Brepro flag.
Timestamp: 96330B0E (This is a reproducible build file hash, not a timestamp)
CheckSum: 0001F755
ImageSize: 00014000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0000.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: umpdc.dll
OriginalFilename: umpdc.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: User Mode Power Dependency Coordinator
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9aa50000 00007ffc`9aaae000 powrprof (deferred)
Image path: C:\Windows\System32\powrprof.dll
Image name: powrprof.dll
Image was built with /Brepro flag.
Timestamp: F30E9DD1 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0006869B
ImageSize: 0005E000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: POWRPROF
OriginalFilename: POWRPROF.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Power Profile Helper DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9acd0000 00007ffc`9acfd000 devobj (deferred)
Image path: C:\Windows\System32\devobj.dll
Image name: devobj.dll
Image was built with /Brepro flag.
Timestamp: 146E79A2 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00033E21
ImageSize: 0002D000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: devinfoset.dll
OriginalFilename: devinfoset.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Device Information Set DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9ad00000 00007ffc`9ad51000 cfgmgr32 (deferred)
Image path: C:\Windows\System32\cfgmgr32.dll
Image name: cfgmgr32.dll
Image was built with /Brepro flag.
Timestamp: 92843891 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0005764E
ImageSize: 00051000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: cfgmgr32.dll
OriginalFilename: CFGMGR32.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Configuration Manager DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9af60000 00007ffc`9af8a000 bcrypt (deferred)
Image path: C:\Windows\System32\bcrypt.dll
Image name: bcrypt.dll
Image was built with /Brepro flag.
Timestamp: 10C6F483 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00032092
ImageSize: 0002A000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: bcrypt.dll
OriginalFilename: bcrypt.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows Cryptographic Primitives Library
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9af90000 00007ffc`9afb9000 profapi (deferred)
Image path: C:\Windows\System32\profapi.dll
Image name: profapi.dll
Image was built with /Brepro flag.
Timestamp: B3E9362C (This is a reproducible build file hash, not a timestamp)
CheckSum: 00033405
ImageSize: 00029000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: PROFAPI.DLL
OriginalFilename: PROFAPI.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: User Profile Basic API
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9b070000 00007ffc`9b118000 bcryptPrimitives (deferred)
Image path: C:\Windows\System32\bcryptPrimitives.dll
Image name: bcryptPrimitives.dll
Image was built with /Brepro flag.
Timestamp: 3AA0BC9E (This is a reproducible build file hash, not a timestamp)
CheckSum: 000B5572
ImageSize: 000A8000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: bcryptprimitives.dll
OriginalFilename: bcryptprimitives.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows Cryptographic Primitives Library
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9b1e0000 00007ffc`9b32c000 ucrtbase (pdb symbols) c:\users\kekerr\appdata\local\symbols\ucrtbase.pdb\E8475790364DC2369F6D4BEBF5286E3A1\ucrtbase.pdb
Loaded symbol image file: ucrtbase.dll
Image path: C:\Windows\System32\ucrtbase.dll
Image name: ucrtbase.dll
Image was built with /Brepro flag.
Timestamp: C109C13C (This is a reproducible build file hash, not a timestamp)
CheckSum: 0015BE26
ImageSize: 0014C000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: ucrtbase.dll
OriginalFilename: ucrtbase.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft� C Runtime Library
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9b330000 00007ffc`9b3d3000 msvcp_win (deferred)
Image path: C:\Windows\System32\msvcp_win.dll
Image name: msvcp_win.dll
Image was built with /Brepro flag.
Timestamp: 9A8F4A49 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000A6BEC
ImageSize: 000A3000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: msvcp_win.dll
OriginalFilename: msvcp_win.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft� C Runtime Library
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9b3e0000 00007ffc`9b7df000 KERNELBASE (export symbols) KERNELBASE.dll
Loaded symbol image file: KERNELBASE.dll
Image path: C:\Windows\System32\KERNELBASE.dll
Image name: KERNELBASE.dll
Image was built with /Brepro flag.
Timestamp: EEACDD84 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00406C26
ImageSize: 003FF000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: Kernelbase.dll
OriginalFilename: Kernelbase.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows NT BASE API Client DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9b7f0000 00007ffc`9b91b000 gdi32full (deferred)
Image path: C:\Windows\System32\gdi32full.dll
Image name: gdi32full.dll
Image was built with /Brepro flag.
Timestamp: CEDA332D (This is a reproducible build file hash, not a timestamp)
CheckSum: 00132286
ImageSize: 0012B000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: gdi32
OriginalFilename: gdi32
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: GDI Client DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9b920000 00007ffc`9b947000 win32u (deferred)
Image path: C:\Windows\System32\win32u.dll
Image name: win32u.dll
Image was built with /Brepro flag.
Timestamp: 88092302 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000360F2
ImageSize: 00027000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 1.0 App
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: Win32u
OriginalFilename: Win32u.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Win32u
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9b950000 00007ffc`9b9d4000 wintrust (deferred)
Image path: C:\Windows\System32\wintrust.dll
Image name: wintrust.dll
Image was built with /Brepro flag.
Timestamp: CB7C80E0 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0008AC6C
ImageSize: 00084000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: WINTRUST.DLL
OriginalFilename: WINTRUST.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft Trust Verification APIs
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9b9e0000 00007ffc`9bb58000 crypt32 (deferred)
Image path: C:\Windows\System32\crypt32.dll
Image name: crypt32.dll
Image was built with /Brepro flag.
Timestamp: 281B61FD (This is a reproducible build file hash, not a timestamp)
CheckSum: 0017B4E2
ImageSize: 00178000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: CRYPT32.DLL
OriginalFilename: CRYPT32.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Crypto API32
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9bc60000 00007ffc`9bd07000 sechost (deferred)
Image path: C:\Windows\System32\sechost.dll
Image name: sechost.dll
Image was built with /Brepro flag.
Timestamp: 00C9D4B9 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000AF30C
ImageSize: 000A7000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 1.0 App
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: sechost.dll
OriginalFilename: sechost.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Host for SCM/SDDL/LSA Lookup APIs
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9bd10000 00007ffc`9bd42000 imm32 (deferred)
Image path: C:\Windows\System32\imm32.dll
Image name: imm32.dll
Image was built with /Brepro flag.
Timestamp: 14CEFB1C (This is a reproducible build file hash, not a timestamp)
CheckSum: 0003E1F0
ImageSize: 00032000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: imm32
OriginalFilename: imm32
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Multi-User Windows IMM32 API Client DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9bd50000 00007ffc`9be0d000 advapi32 (deferred)
Image path: C:\Windows\System32\advapi32.dll
Image name: advapi32.dll
Image was built with /Brepro flag.
Timestamp: DE0BF633 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000C5A96
ImageSize: 000BD000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: advapi32.dll
OriginalFilename: advapi32.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Advanced Windows 32 Base API
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9c090000 00007ffc`9c0f7000 shlwapi (deferred)
Image path: C:\Windows\System32\shlwapi.dll
Image name: shlwapi.dll
Image was built with /Brepro flag.
Timestamp: DC26BB90 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0006AAD7
ImageSize: 00067000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: SHLWAPI
OriginalFilename: SHLWAPI.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Shell Light-weight Utility Library
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9c160000 00007ffc`9c4e7000 combase (export symbols) combase.dll
Loaded symbol image file: combase.dll
Image path: C:\Windows\System32\combase.dll
Image name: combase.dll
Image was built with /Brepro flag.
Timestamp: 93D807F9 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00393679
ImageSize: 00387000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: COMBASE.DLL
OriginalFilename: COMBASE.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft COM for Windows
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9c4f0000 00007ffc`9c51b000 gdi32 (deferred)
Image path: C:\Windows\System32\gdi32.dll
Image name: gdi32.dll
Image was built with /Brepro flag.
Timestamp: 7D2FE901 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000305A4
ImageSize: 0002B000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: gdi32
OriginalFilename: gdi32
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: GDI Client DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9c570000 00007ffc`9c639000 kernel32 (export symbols) kernel32.dll
Loaded symbol image file: kernel32.dll
Image path: C:\Windows\System32\kernel32.dll
Image name: kernel32.dll
Image was built with /Brepro flag.
Timestamp: 735260F6 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000D9AF8
ImageSize: 000C9000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: kernel32
OriginalFilename: kernel32
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows NT BASE API Client DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9c640000 00007ffc`9c719000 oleaut32 (deferred)
Image path: C:\Windows\System32\oleaut32.dll
Image name: oleaut32.dll
Image was built with /Brepro flag.
Timestamp: 5E8C88AF (This is a reproducible build file hash, not a timestamp)
CheckSum: 000DB477
ImageSize: 000D9000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: OLEAUT32.DLL
OriginalFilename: OLEAUT32.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: OLEAUT32.DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9c720000 00007ffc`9c7c9000 msvcrt (deferred)
Image path: C:\Windows\System32\msvcrt.dll
Image name: msvcrt.dll
Image was built with /Brepro flag.
Timestamp: 1F91DBD3 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000B49D5
ImageSize: 000A9000
File version: 7.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 1.0 App
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: msvcrt.dll
OriginalFilename: msvcrt.dll
ProductVersion: 7.0.26608.1000
FileVersion: 7.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows NT CRT DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9c7f0000 00007ffc`9c9b8000 user32 (deferred)
Image path: C:\Windows\System32\user32.dll
Image name: user32.dll
Image was built with /Brepro flag.
Timestamp: 20D169CE (This is a reproducible build file hash, not a timestamp)
CheckSum: 001CC10C
ImageSize: 001C8000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: user32
OriginalFilename: user32
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Multi-User Windows USER API Client DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9c9c0000 00007ffc`9cb1e000 msctf (deferred)
Image path: C:\Windows\System32\msctf.dll
Image name: msctf.dll
Image was built with /Brepro flag.
Timestamp: F40D2497 (This is a reproducible build file hash, not a timestamp)
CheckSum: 001699BE
ImageSize: 0015E000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: MSCTF
OriginalFilename: MSCTF.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: MSCTF Server DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9d130000 00007ffc`9d150000 imagehlp (deferred)
Image path: C:\Windows\System32\imagehlp.dll
Image name: imagehlp.dll
Image was built with /Brepro flag.
Timestamp: CD057B97 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0002A2AC
ImageSize: 00020000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: IMAGEHLP.DLL
OriginalFilename: IMAGEHLP.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows NT Image Helper
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9d160000 00007ffc`9d25c000 SHCore (export symbols) SHCore.dll
Loaded symbol image file: SHCore.dll
Image path: C:\Windows\System32\SHCore.dll
Image name: SHCore.dll
Image was built with /Brepro flag.
Timestamp: 4A7B05F6 (This is a reproducible build file hash, not a timestamp)
CheckSum: 000FA3BB
ImageSize: 000FC000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: SHCORE
OriginalFilename: SHCORE.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: SHCORE
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9d2e0000 00007ffc`9da6c000 shell32 (deferred)
Image path: C:\Windows\System32\shell32.dll
Image name: shell32.dll
Image was built with /Brepro flag.
Timestamp: B07C5501 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0079B53F
ImageSize: 0078C000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: SHELL32
OriginalFilename: SHELL32.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Windows Shell Common Dll
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9da70000 00007ffc`9dc08000 ole32 (export symbols) ole32.dll
Loaded symbol image file: ole32.dll
Image path: C:\Windows\System32\ole32.dll
Image name: ole32.dll
Image was built with /Brepro flag.
Timestamp: 2F0CB6FD (This is a reproducible build file hash, not a timestamp)
CheckSum: 001A8E70
ImageSize: 00198000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: OLE32.DLL
OriginalFilename: OLE32.DLL
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Microsoft OLE for Windows
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9dca0000 00007ffc`9ddb8000 rpcrt4 (export symbols) rpcrt4.dll
Loaded symbol image file: rpcrt4.dll
Image path: C:\Windows\System32\rpcrt4.dll
Image name: rpcrt4.dll
Image was built with /Brepro flag.
Timestamp: FD6157B1 (This is a reproducible build file hash, not a timestamp)
CheckSum: 0012A528
ImageSize: 00118000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: rpcrt4.dll
OriginalFilename: rpcrt4.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: Remote Procedure Call Runtime
LegalCopyright: � Microsoft Corporation. All rights reserved.
00007ffc`9de00000 00007ffc`9e066000 ntdll (export symbols) ntdll.dll
Loaded symbol image file: ntdll.dll
Image path: C:\Windows\System32\ntdll.dll
Image name: ntdll.dll
Image was built with /Brepro flag.
Timestamp: 6F35BC25 (This is a reproducible build file hash, not a timestamp)
CheckSum: 00268C03
ImageSize: 00266000
File version: 10.0.26608.1000
Product version: 10.0.26608.1000
File flags: 0 (Mask 3F)
File OS: 40004 NT Win32
File type: 2.0 Dll
File date: 00000000.00000000
Translations: 0409.04b0
Information from resource tables:
CompanyName: Microsoft Corporation
ProductName: Microsoft� Windows� Operating System
InternalName: ntdll.dll
OriginalFilename: ntdll.dll
ProductVersion: 10.0.26608.1000
FileVersion: 10.0.26608.1000 (WinBuild.160101.0800)
FileDescription: NT Layer DLL
LegalCopyright: � Microsoft Corporation. All rights reserved.
Unloaded modules:
00007ffc`89790000 00007ffc`897a4000 resourcepolicyclient.dll
Timestamp: ***** Invalid (E266A216)
Checksum: 0002044A
ImageSize: 00014000
quit:
NatVis script unloaded from 'C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers\atlmfc.natvis'
NatVis script unloaded from 'C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers\ObjectiveC.natvis'
NatVis script unloaded from 'C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers\concurrency.natvis'
NatVis script unloaded from 'C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers\cpp_rest.natvis'
NatVis script unloaded from 'C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers\stl.natvis'
NatVis script unloaded from 'C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers\Windows.Data.Json.natvis'
NatVis script unloaded from 'C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers\Windows.Devices.Geolocation.natvis'
NatVis script unloaded from 'C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers\Windows.Devices.Sensors.natvis'
NatVis script unloaded from 'C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers\Windows.Media.natvis'
NatVis script unloaded from 'C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers\windows.natvis'
NatVis script unloaded from 'C:\Program Files (x86)\Windows Kits\10\Debuggers\x64\Visualizers\winrt.natvis'
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment