win-procs/KillerIntelligenceCenter.exe.txt
2023-12-05 06:24:43 +02:00

207 lines
26 KiB
Plaintext

Module: KillerIntelligenceCenter.exe, 64-bit
Full path: C:\Program Files\WindowsApps\RivetNetworks.KillerControlCenter_3.1423.302.0_x64__rh07ty8m5nkag\KillerControlCenter_v2\KillerIntelligenceCenter.exe
File version: 3.1423.302.1
Description: Killer Intelligence Center
PID: 20940
Parent PID: 20908 (svchost.exe)
Priority: 8
Threads: 17
Owner: AGRYNCO-NB\agrynco (S-1-5-21-4255264900-3681165211-3101920415-1001)
Session: 1
Started at: 04.12.2023 20:38:49
Uptime: 09:42:23.2089572
Command Line:
"C:\Program Files\WindowsApps\RivetNetworks.KillerControlCenter_3.1423.302.0_x64__rh07ty8m5nkag\KillerControlCenter_v2\KillerIntelligenceCenter.exe" -minimized
Current Directory:
C:\Windows\system32\
Environment:
ALLUSERSPROFILE=C:\ProgramData
APPDATA=C:\Users\agrynco\AppData\Roaming
CommonProgramFiles=C:\Program Files\Common Files
CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files
CommonProgramW6432=C:\Program Files\Common Files
COMPUTERNAME=AGRYNCO-NB
ComSpec=C:\Windows\system32\cmd.exe
DriverData=C:\Windows\System32\Drivers\DriverData
HOMEDRIVE=C:
HOMEPATH=\Users\agrynco
IGCCSVC_DB=AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAOJ66MrrVw0+QBhqk5hoEKwQAAAACAAAAAAAQZgAAAAEAACAAAADnIlH5GScq5R1YwQo2Cdo8Ywd0ZnJUWgTOe7r4V5F63wAAAAAOgAAAAAIAACAAAAAlDR5jYnr48atTqrib8QkVE8gaMuCWSNJWtk+jRzAnqmAAAAALixtyTpkBnS9kEaVJMR5ea2pX1V5u/MVPU0mJfqqQjVqIIvyG3dc/oZ+f7BajWsnfH7FhM0r+7l9Y5zMMoZkm2KAtRIvw/7Ty5HukYLvfOe223gFueFWm34eioL7L3xRAAAAAJzbevzwd+31hEaN3Oa+gjRBOMxyfyX5U0mEeaqvaPv/Ds59UhBmINpbz6//2aDTGdkpe40Lp2WLhU71srp61hw==
JetBrains Rider=C:\Program Files\JetBrains\JetBrains Rider 2023.2.3\bin;
LOCALAPPDATA=C:\Users\agrynco\AppData\Local
LOGONSERVER=\\AGRYNCO-NB
NUMBER_OF_PROCESSORS=20
NVM_HOME=C:\Users\agrynco\AppData\Roaming\nvm
NVM_SYMLINK=C:\Program Files\nodejs
OneDrive=C:\Users\agrynco\OneDrive
OneDriveConsumer=C:\Users\agrynco\OneDrive
OS=Windows_NT
Path=C:\Program Files\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files\Git\cmd;C:\Program Files\dotnet\;C:\Program Files\LINQPad7;C:\Program Files\Microsoft SQL Server\Client SDK\ODBC\170\Tools\Binn\;C:\Program Files\Microsoft SQL Server\150\Tools\Binn\;C:\Users\agrynco\AppData\Roaming\nvm;C:\Program Files\nodejs;C:\Program Files\WireGuard\;C:\Program Files (x86)\Microsoft SQL Server\160\DTS\Binn\;C:\Program Files\TortoiseGit\bin;C:\Program Files\Docker\Docker\resources\bin;C:\Program Files\PowerShell\7\;C:\Users\agrynco\AppData\Local\Microsoft\WindowsApps;C:\Users\agrynco\AppData\Local\Programs\Microsoft VS Code\bin;C:\Users\agrynco\.dotnet\tools;C:\Program Files\JetBrains\JetBrains Rider 2023.2.3\bin;C:\Program Files\Azure Data Studio\bin
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
POWERSHELL_DISTRIBUTION_CHANNEL=MSI:Windows 10 Pro
PROCESSOR_ARCHITECTURE=AMD64
PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 154 Stepping 3, GenuineIntel
PROCESSOR_LEVEL=6
PROCESSOR_REVISION=9a03
ProgramData=C:\ProgramData
ProgramFiles=C:\Program Files
ProgramFiles(x86)=C:\Program Files (x86)
ProgramW6432=C:\Program Files
PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\Windows\system32\WindowsPowerShell\v1.0\Modules
PUBLIC=C:\Users\Public
SONAR_TOKEN=sqp_4ba776407397ab3d628d0eea2a02bc040832cad0
SystemDrive=C:
SystemRoot=C:\Windows
TEMP=C:\Users\agrynco\AppData\Local\Temp
TMP=C:\Users\agrynco\AppData\Local\Temp
USERDOMAIN=AGRYNCO-NB
USERDOMAIN_ROAMINGPROFILE=AGRYNCO-NB
USERNAME=agrynco
USERPROFILE=C:\Users\agrynco
windir=C:\Windows
ZES_ENABLE_SYSMAN=1
GDI Objects: 78
USER Objects: 144
Processor Time: 00:00:42.2187500 1%
Privileged Time: 00:00:27.2968750 1%
User Time: 00:00:14.9218750 0%
Handle Count: 685
Page File Bytes: 269025280
Page File Bytes Peak: 271118336
Working Set: 329166848
Working Set Peak: 329965568
Pool Nonpaged Bytes: 77744
Pool Paged Bytes: 727288
Private Bytes: 269025280
Page Faults: 821353 61/sec
Virtual Bytes: 5246705664
Virtual Bytes Peak: 5322715136
IO Data Bytes: 15281967 1206/sec
IO Read Bytes: 15273513 1206/sec
IO Write Bytes: 8454 0/sec
IO Other Bytes: 4238232 504/sec
IO Data Operations: 472403 57/sec
IO Read Operations: 472379 57/sec
IO Write Operations: 24 0/sec
IO Other Operations: 53090 6/sec
Window title: Killer Intelligence Center
HWND: 0x408de
Window style: 36010000 WS_MINIMIZE WS_VISIBLE WS_CLIPSIBLINGS WS_CLIPCHILDREN WS_MAXIMIZEBOX
Extended style: 00010000 WS_EX_CONTROLPARENT
Modules:
Base Size Path (version info is not displayed)
000001D98A720000 23E000 C:\Program Files\WindowsApps\RivetNetworks.KillerControlCenter_3.1423.302.0_x64__rh07ty8m5nkag\KillerControlCenter_v2\KillerIntelligenceCenter.exe
00007FF87BE10000 217000 C:\Windows\SYSTEM32\ntdll.dll
00007FF85BA60000 6B000 C:\Windows\SYSTEM32\MSCOREE.DLL
00007FF87AD80000 C4000 C:\Windows\System32\KERNEL32.dll
00007FF879480000 3A5000 C:\Windows\System32\KERNELBASE.dll
00007FF87A980000 B1000 C:\Windows\System32\ADVAPI32.dll
00007FF87ACA0000 A7000 C:\Windows\System32\msvcrt.dll
00007FF87ABD0000 A6000 C:\Windows\System32\sechost.dll
00007FF87AF00000 117000 C:\Windows\System32\RPCRT4.dll
00007FF85B030000 9B000 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscoreei.dll
00007FF87B8A0000 5E000 C:\Windows\System32\SHLWAPI.dll
00007FF878190000 18000 C:\Windows\SYSTEM32\kernel.appcore.dll
00007FF86CBB0000 A000 C:\Windows\SYSTEM32\VERSION.dll
00007FF85A440000 9A4000 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
00007FF87BA00000 1AE000 C:\Windows\System32\USER32.dll
00007FF879240000 26000 C:\Windows\System32\win32u.dll
00007FF87AD50000 29000 C:\Windows\System32\GDI32.dll
00007FF879830000 119000 C:\Windows\System32\gdi32full.dll
00007FF859CF0000 C000 C:\Windows\SYSTEM32\VCRUNTIME140_1_CLR0400.dll
00007FF859CA0000 1B000 C:\Windows\SYSTEM32\VCRUNTIME140_CLR0400.dll
00007FF879270000 9A000 C:\Windows\System32\msvcp_win.dll
00007FF879950000 111000 C:\Windows\System32\ucrtbase.dll
00007FF859BD0000 CD000 C:\Windows\SYSTEM32\ucrtbase_clr0400.dll
00007FF87BBB0000 31000 C:\Windows\System32\IMM32.DLL
00007FF87A970000 8000 C:\Windows\System32\psapi.dll
00007FF857C40000 160F000 C:\Windows\assembly\NativeImages_v4.0.30319_64\mscorlib\987f639e2113a820112aca65fb12396c\mscorlib.ni.dll
00007FF87A440000 1A0000 C:\Windows\System32\ole32.dll
00007FF87A5E0000 389000 C:\Windows\System32\combase.dll
00007FF879A70000 7A000 C:\Windows\System32\bcryptPrimitives.dll
00007FF876210000 AB000 C:\Windows\system32\uxtheme.dll
00007FF857600000 12F000 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrjit.dll
00007FF8789F0000 1B000 C:\Windows\SYSTEM32\CRYPTSP.dll
00007FF8781B0000 35000 C:\Windows\system32\rsaenh.dll
00007FF8789D0000 C000 C:\Windows\SYSTEM32\CRYPTBASE.dll
00007FF878B10000 28000 C:\Windows\SYSTEM32\bcrypt.dll
00007FF8569E0000 C1C000 C:\Windows\assembly\NativeImages_v4.0.30319_64\System\8189c864e22b05b7e00154bea8c0a08a\System.ni.dll
00007FF84A140000 1F3000 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\f921fc7a8aa294dce4d724297269ca87\System.Drawing.ni.dll
00007FF848860000 10E5000 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\0f4ba34cff682d26c1424f8d69b1fc39\System.Windows.Forms.ni.dll
00007FF879BE0000 859000 C:\Windows\System32\shell32.dll
00007FF877060000 8F4000 C:\Windows\SYSTEM32\windows.storage.dll
00007FF876F20000 13E000 C:\Windows\SYSTEM32\wintypes.dll
00007FF87AAD0000 F3000 C:\Windows\System32\SHCORE.dll
00007FF8705C0000 1A000 C:\Windows\SYSTEM32\windows.staterepositorycore.dll
00007FF8645E0000 1B9000 C:\Windows\WinSxS\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.22621.2506_none_57f74dcece1b5ace\gdiplus.dll
00007FF875200000 273000 C:\Windows\SYSTEM32\DWrite.dll
00007FF87BC80000 14F000 C:\Windows\System32\MSCTF.dll
00007FF853230000 8B0000 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Xml\66398e51746259c154d8e90cfdb3c893\System.Xml.ni.dll
00007FF855660000 A86000 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Core\62acf38f8023a408e0bccee3aab84043\System.Core.ni.dll
00007FF855420000 133000 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Configuration\38f74f65631ee235715d96510c5f240d\System.Configuration.ni.dll
00007FF859480000 1F0000 C:\Windows\SYSTEM32\urlmon.dll
00007FF863E40000 2BC000 C:\Windows\SYSTEM32\iertutil.dll
00007FF877C20000 C000 C:\Windows\SYSTEM32\netutils.dll
00007FF86D0F0000 28000 C:\Windows\SYSTEM32\srvcli.dll
00007FF878490000 42000 C:\Windows\SYSTEM32\SspiCli.dll
00007FF874260000 101000 C:\Windows\SYSTEM32\PROPSYS.dll
00007FF86D0B0000 15000 C:\Windows\SYSTEM32\virtdisk.dll
00007FF87B500000 D7000 C:\Windows\System32\OLEAUT32.dll
00007FF879AF0000 6C000 C:\Windows\System32\WINTRUST.dll
00007FF879310000 166000 C:\Windows\System32\CRYPT32.dll
00007FF878E20000 12000 C:\Windows\SYSTEM32\MSASN1.dll
00007FF86B7D0000 21000 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsecimpl.dll
00007FF863D80000 B3000 C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.22621.2506_none_b43bab19638c9595\COMCTL32.dll
00007FF87AC80000 1F000 C:\Windows\System32\imagehlp.dll
00007FF878710000 26000 C:\Windows\SYSTEM32\gpapi.dll
00007FF86C7C0000 32000 C:\Windows\System32\cryptnet.dll
00007FF8790B0000 26000 C:\Windows\SYSTEM32\profapi.dll
00007FF877C30000 2D000 C:\Windows\SYSTEM32\IPHLPAPI.DLL
00007FF8764F0000 D000 C:\Windows\SYSTEM32\WINNSI.DLL
00007FF87B660000 9000 C:\Windows\System32\NSI.dll
00007FF80C0E0000 25000 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clrcompression.dll
00007FF874A60000 1B0000 C:\Windows\SYSTEM32\WindowsCodecs.dll
00007FF87AE50000 B0000 C:\Windows\System32\clbcatq.dll
00007FF83A060000 2A9000 C:\Windows\system32\explorerframe.dll
00007FF84EBA0000 983000 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Data\1ead2e91b97b91350eca9d7cbc274fa2\System.Data.ni.dll
00007FF84E830000 36A000 C:\Windows\Microsoft.Net\assembly\GAC_64\System.Data\v4.0_4.0.0.0__b77a5c561934e089\System.Data.dll
00007FF879B60000 71000 C:\Windows\System32\WS2_32.dll
00007FFFCD320000 DB000 C:\Windows\assembly\NativeImages_v4.0.30319_64\System.Transactions\78edabcdf48d20ee31e657839909fb28\System.Transactions.ni.dll
00007FFFCD2D0000 4F000 C:\Windows\Microsoft.Net\assembly\GAC_64\System.Transactions\v4.0_4.0.0.0__b77a5c561934e089\System.Transactions.dll
00007FFFCD150000 180000 C:\Program Files\WindowsApps\RivetNetworks.KillerControlCenter_3.1423.302.0_x64__rh07ty8m5nkag\KillerControlCenter_v2\SQLite.Interop.dll
00007FFFCD130000 15000 C:\Program Files\WindowsApps\RivetNetworks.KillerControlCenter_3.1423.302.0_x64__rh07ty8m5nkag\KillerControlCenter_v2\VCRUNTIME140.dll
00007FFFCCF20000 27000 C:\Windows\Microsoft.Net\assembly\GAC_64\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
00007FF864340000 293000 C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.22621.2506_none_270c5ae97388e100\ComCtl32.dll
00007FF862A80000 FC000 C:\Windows\System32\Windows.ApplicationModel.dll
00007FF878FF0000 A3000 C:\Windows\SYSTEM32\sxs.dll
00007FFFCCD30000 A1000 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\webengine4.dll
00007FF878740000 2C000 C:\Windows\SYSTEM32\USERENV.dll
00007FF849F00000 12000 C:\Windows\assembly\NativeImages_v4.0.30319_64\Accessibility\7346e7a81a887288ccdc3d79f17a7f6a\Accessibility.ni.dll
00007FF84BFA0000 ED000 C:\Windows\System32\Windows.Networking.Connectivity.dll
00007FF870720000 18000 C:\Windows\System32\npmproxy.dll
00007FF84BD00000 32000 C:\Windows\System32\Windows.Networking.HostName.dll
00007FF873590000 78000 C:\Windows\System32\netprofm.dll
00007FF84BD40000 142000 C:\Windows\System32\MbaeApiPublic.dll
00007FF85AED0000 1A000 C:\Windows\System32\TetheringClient.dll
00007FF871E90000 86000 C:\Windows\System32\wlanapi.dll
00007FF85CD90000 E000 C:\Windows\System32\SystemEventsBrokerClient.dll
00007FF8745C0000 A5000 C:\Windows\System32\policymanager.dll
00007FF874520000 93000 C:\Windows\System32\msvcp110_win.dll
00007FF872C90000 1F000 C:\Windows\System32\MobileNetworking.dll
00007FFFC81F0000 10D000 C:\Windows\SYSTEM32\rasapi32.dll
00007FF86C820000 17000 C:\Windows\SYSTEM32\rtutils.dll
00007FF8474F0000 35000 C:\Windows\SYSTEM32\RASMAN.DLL
00007FF8786A0000 69000 C:\Windows\system32\mswsock.dll
00007FF872820000 137000 C:\Windows\SYSTEM32\winhttp.dll
00007FF871F40000 19000 C:\Windows\SYSTEM32\dhcpcsvc6.DLL
00007FF871F20000 1F000 C:\Windows\SYSTEM32\dhcpcsvc.DLL
00007FF877CA0000 F9000 C:\Windows\SYSTEM32\DNSAPI.dll