win-procs/EOS Utility.exe.txt
2023-12-05 06:24:43 +02:00

198 lines
22 KiB
Plaintext

Module: EOS Utility.exe, 32-bit
Full path: C:\Program Files (x86)\Canon\EOS Utility\EOS Utility.exe
File version: 0.1.30.0
Description: EOS Utility
PID: 20440
Parent PID: 11936 (Explorer.EXE)
Priority: 8
Threads: 13
Owner: AGRYNCO-NB\agrynco (S-1-5-21-4255264900-3681165211-3101920415-1001)
Session: 1
Started at: 04.12.2023 20:38:52
Uptime: 09:42:03.4103538
Command Line:
"C:\Program Files (x86)\Canon\EOS Utility\EOS Utility.exe" /AutoStartUp
Current Directory:
C:\Windows\
Environment:
=::=::\
ALLUSERSPROFILE=C:\ProgramData
APPDATA=C:\Users\agrynco\AppData\Roaming
CommonProgramFiles=C:\Program Files\Common Files
CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files
CommonProgramW6432=C:\Program Files\Common Files
COMPUTERNAME=AGRYNCO-NB
ComSpec=C:\Windows\system32\cmd.exe
DriverData=C:\Windows\System32\Drivers\DriverData
EFC_11936=1
FPS_BROWSER_APP_PROFILE_STRING=Internet Explorer
FPS_BROWSER_USER_PROFILE_STRING=Default
HOMEDRIVE=C:
HOMEPATH=\Users\agrynco
IGCCSVC_DB=AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAOJ66MrrVw0+QBhqk5hoEKwQAAAACAAAAAAAQZgAAAAEAACAAAADnIlH5GScq5R1YwQo2Cdo8Ywd0ZnJUWgTOe7r4V5F63wAAAAAOgAAAAAIAACAAAAAlDR5jYnr48atTqrib8QkVE8gaMuCWSNJWtk+jRzAnqmAAAAALixtyTpkBnS9kEaVJMR5ea2pX1V5u/MVPU0mJfqqQjVqIIvyG3dc/oZ+f7BajWsnfH7FhM0r+7l9Y5zMMoZkm2KAtRIvw/7Ty5HukYLvfOe223gFueFWm34eioL7L3xRAAAAAJzbevzwd+31hEaN3Oa+gjRBOMxyfyX5U0mEeaqvaPv/Ds59UhBmINpbz6//2aDTGdkpe40Lp2WLhU71srp61hw==
JetBrains Rider=C:\Program Files\JetBrains\JetBrains Rider 2023.2.3\bin;
LOCALAPPDATA=C:\Users\agrynco\AppData\Local
LOGONSERVER=\\AGRYNCO-NB
NUMBER_OF_PROCESSORS=20
NVM_HOME=C:\Users\agrynco\AppData\Roaming\nvm
NVM_SYMLINK=C:\Program Files\nodejs
OneDrive=C:\Users\agrynco\OneDrive
OneDriveConsumer=C:\Users\agrynco\OneDrive
OS=Windows_NT
Path=C:\Program Files\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files\Git\cmd;C:\Program Files\dotnet\;C:\Program Files\LINQPad7;C:\Program Files\Microsoft SQL Server\Client SDK\ODBC\170\Tools\Binn\;C:\Program Files\Microsoft SQL Server\150\Tools\Binn\;C:\Users\agrynco\AppData\Roaming\nvm;C:\Program Files\nodejs;C:\Program Files\WireGuard\;C:\Program Files (x86)\Microsoft SQL Server\160\DTS\Binn\;C:\Program Files\TortoiseGit\bin;C:\Program Files\Docker\Docker\resources\bin;C:\Program Files\PowerShell\7\;C:\Users\agrynco\AppData\Local\Microsoft\WindowsApps;C:\Users\agrynco\AppData\Local\Programs\Microsoft VS Code\bin;C:\Users\agrynco\.dotnet\tools;C:\Program Files\JetBrains\JetBrains Rider 2023.2.3\bin;;C:\Users\agrynco\AppData\Roaming\nvm;C:\Program Files\nodejs;C:\Program Files\Azure Data Studio\bin
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
POWERSHELL_DISTRIBUTION_CHANNEL=MSI:Windows 10 Pro
PROCESSOR_ARCHITECTURE=AMD64
PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 154 Stepping 3, GenuineIntel
PROCESSOR_LEVEL=6
PROCESSOR_REVISION=9a03
ProgramData=C:\ProgramData
ProgramFiles=C:\Program Files
ProgramFiles(x86)=C:\Program Files (x86)
ProgramW6432=C:\Program Files
PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\Windows\system32\WindowsPowerShell\v1.0\Modules
PUBLIC=C:\Users\Public
SESSIONNAME=Console
SONAR_TOKEN=sqp_4ba776407397ab3d628d0eea2a02bc040832cad0
SystemDrive=C:
SystemRoot=C:\Windows
TEMP=C:\Users\agrynco\AppData\Local\Temp
TMP=C:\Users\agrynco\AppData\Local\Temp
USERDOMAIN=AGRYNCO-NB
USERDOMAIN_ROAMINGPROFILE=AGRYNCO-NB
USERNAME=agrynco
USERPROFILE=C:\Users\agrynco
windir=C:\Windows
ZES_ENABLE_SYSMAN=1
GDI Objects: 50
USER Objects: 52
Processor Time: 00:00:11.0781250 0%
Privileged Time: 00:00:07.8125000 0%
User Time: 00:00:03.2656250 0%
Handle Count: 509
Page File Bytes: 35807232
Page File Bytes Peak: 37564416
Working Set: 57851904
Working Set Peak: 59027456
Pool Nonpaged Bytes: 38728
Pool Paged Bytes: 434168
Private Bytes: 35807232
Page Faults: 38309 391/sec
Virtual Bytes: 290521088
Virtual Bytes Peak: 364912640
IO Data Bytes: 885163 0/sec
IO Read Bytes: 883403 0/sec
IO Write Bytes: 1760 0/sec
IO Other Bytes: 6181128 708/sec
IO Data Operations: 631 0/sec
IO Read Operations: 587 0/sec
IO Write Operations: 44 0/sec
IO Other Operations: 257951 29/sec
Window title:
HWND: 0x109fc
Window style: 04C00000 WS_CLIPSIBLINGS WS_BORDER WS_DLGFRAME
Extended style: 00000100 WS_EX_WINDOWEDGE
Modules:
Base Size Path (version info is not displayed)
00000000009D0000 1FC000 C:\Program Files (x86)\Canon\EOS Utility\EOS Utility.exe
0000000077920000 1B1000 C:\Windows\SYSTEM32\ntdll.dll
00000000745B0000 55000 C:\Windows\SYSTEM32\MSCOREE.DLL
0000000075E50000 F0000 C:\Windows\System32\KERNEL32.dll
0000000076790000 273000 C:\Windows\System32\KERNELBASE.dll
0000000075D80000 7E000 C:\Windows\System32\ADVAPI32.dll
0000000076A70000 C4000 C:\Windows\System32\msvcrt.dll
00000000766E0000 84000 C:\Windows\System32\sechost.dll
0000000075810000 BA000 C:\Windows\System32\RPCRT4.dll
0000000073D70000 88000 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
0000000075E00000 4B000 C:\Windows\System32\SHLWAPI.dll
0000000074DB0000 13000 C:\Windows\SYSTEM32\kernel.appcore.dll
0000000073E80000 8000 C:\Windows\SYSTEM32\VERSION.dll
0000000073190000 7BC000 C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
0000000075950000 1A8000 C:\Windows\System32\USER32.dll
0000000076770000 1A000 C:\Windows\System32\win32u.dll
00000000757E0000 23000 C:\Windows\System32\GDI32.dll
0000000077400000 E2000 C:\Windows\System32\gdi32full.dll
0000000074590000 15000 C:\Windows\SYSTEM32\VCRUNTIME140_CLR0400.dll
00000000730D0000 B3000 C:\Windows\SYSTEM32\ucrtbase_clr0400.dll
00000000755A0000 79000 C:\Windows\System32\msvcp_win.dll
0000000075650000 112000 C:\Windows\System32\ucrtbase.dll
0000000075620000 25000 C:\Windows\System32\IMM32.DLL
0000000071A00000 144C000 C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\31532774e8bbbd9c59b5e6d7829d3242\mscorlib.ni.dll
0000000077650000 150000 C:\Windows\System32\ole32.dll
0000000075FA0000 27D000 C:\Windows\System32\combase.dll
0000000075770000 62000 C:\Windows\System32\bcryptPrimitives.dll
00000000740B0000 7F000 C:\Windows\system32\uxtheme.dll
0000000071980000 7E000 C:\Windows\Microsoft.NET\Framework\v4.0.30319\clrjit.dll
0000000075CE0000 9C000 C:\Windows\System32\OLEAUT32.dll
0000000070F60000 A1C000 C:\Windows\assembly\NativeImages_v4.0.30319_32\System\5380d2b417dae69a597fcfb16c76a7b7\System.ni.dll
0000000070740000 818000 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\53a9cd078a677c9b2820831d13828801\System.Core.ni.dll
0000000070630000 105000 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\7ca34fb9f713c597d60f034e09f5da28\System.Configuration.ni.dll
000000006FEC0000 76C000 C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\dbbfe4100fa444758f5b90b58d6b6cd2\System.Xml.ni.dll
0000000076CC0000 696000 C:\Windows\System32\shell32.dll
0000000074EA0000 6EA000 C:\Windows\SYSTEM32\windows.storage.dll
0000000074DD0000 C7000 C:\Windows\SYSTEM32\wintypes.dll
0000000075B00000 C1000 C:\Windows\System32\SHCORE.dll
0000000074CC0000 1D000 C:\Windows\SYSTEM32\profapi.dll
0000000073E60000 1A000 C:\Windows\SYSTEM32\bcrypt.dll
0000000073D00000 15000 C:\Windows\SYSTEM32\CRYPTSP.dll
0000000073C20000 30000 C:\Windows\system32\rsaenh.dll
0000000073F10000 B000 C:\Windows\SYSTEM32\CRYPTBASE.dll
000000006FE20000 91000 C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.22621.2506_none_fbe8e1f07808be9b\comctl32.dll
000000006FCB0000 16D000 C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.22621.2506_none_9fa484a5e29783d4\gdiplus.dll
000000006FA80000 224000 C:\Windows\SYSTEM32\DWrite.dll
0000000077550000 FB000 C:\Windows\System32\MSCTF.dll
0000000073B60000 95000 C:\Windows\System32\TextShaping.dll
000000006F920000 160000 C:\Windows\SYSTEM32\WindowsCodecs.dll
0000000074210000 228000 C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.22621.2506_none_6eb991c088050a06\comctl32.dll
00000000749E0000 1A2000 C:\Windows\SYSTEM32\urlmon.dll
0000000074770000 238000 C:\Windows\SYSTEM32\iertutil.dll
00000000749B0000 1D000 C:\Windows\SYSTEM32\srvcli.dll
00000000749D0000 B000 C:\Windows\SYSTEM32\netutils.dll
0000000074680000 26000 C:\Windows\SYSTEM32\SspiCli.dll
0000000074CE0000 C7000 C:\Windows\SYSTEM32\PROPSYS.dll
0000000074660000 12000 C:\Windows\SYSTEM32\virtdisk.dll
0000000075F40000 59000 C:\Windows\System32\WINTRUST.dll
0000000075BD0000 103000 C:\Windows\System32\CRYPT32.dll
0000000073F60000 E000 C:\Windows\SYSTEM32\MSASN1.dll
0000000073CE0000 1B000 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsecimpl.dll
0000000077830000 1B000 C:\Windows\System32\imagehlp.dll
000000006F8F0000 21000 C:\Windows\SYSTEM32\gpapi.dll
000000006F8C0000 27000 C:\Windows\System32\cryptnet.dll
000000006F890000 24000 C:\Windows\SYSTEM32\IPHLPAPI.DLL
0000000073E50000 A000 C:\Windows\SYSTEM32\WINNSI.DLL
0000000076B40000 7000 C:\Windows\System32\NSI.dll
00000000777A0000 82000 C:\Windows\System32\clbcatq.dll
000000006F810000 75000 C:\Windows\System32\FirewallAPI.dll
000000006F7D0000 3E000 C:\Windows\System32\fwbase.dll
000000006F780000 4B000 C:\Windows\System32\FWPolicyIOMgr.dll
000000006F6F0000 85000 C:\Windows\SYSTEM32\sxs.dll
0000000073C00000 19000 C:\Windows\Microsoft.Net\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
000000006EB80000 105000 C:\Program Files (x86)\Canon\EOS Utility\EDSDK.dll
0000000076230000 43D000 C:\Windows\System32\SETUPAPI.dll
00000000774F0000 5F000 C:\Windows\System32\WS2_32.dll
0000000074C80000 3D000 C:\Windows\SYSTEM32\cfgmgr32.dll
000000006EB10000 69000 C:\Program Files (x86)\Canon\EOS Utility\EdsImage.dll
000000006EAF0000 1A000 C:\Program Files (x86)\Canon\EOS Utility\EdsCh.dll
000000006EA60000 85000 C:\Windows\System32\PortableDeviceApi.dll
000000006EA30000 24000 C:\Windows\SYSTEM32\DEVOBJ.dll
000000006F0C0000 29000 C:\Windows\SYSTEM32\ntmarta.dll
0000000072F10000 F9000 C:\Windows\SYSTEM32\textinputframework.dll
000000006E960000 CD000 C:\Windows\SYSTEM32\CoreMessaging.dll
000000006E6C0000 291000 C:\Windows\SYSTEM32\CoreUIComponents.dll
0000000074130000 54000 C:\Windows\system32\Oleacc.dll
00007FF87BE10000 217000 C:\Windows\SYSTEM32\ntdll.dll
00007FF87B840000 57000 C:\Windows\System32\wow64.dll
00007FF87B670000 9000 C:\Windows\System32\wow64base.dll
00007FF87BBF0000 8B000 C:\Windows\System32\wow64win.dll
00007FF87AA40000 16000 C:\Windows\System32\wow64con.dll
0000000077910000 A000 C:\Windows\System32\wow64cpu.dll