win-procs/Far.exe.txt
2023-12-05 06:24:43 +02:00

187 lines
20 KiB
Plaintext

Module: Far.exe, 64-bit
Full path: C:\Program Files\Far Manager\Far.exe
File version: 3.0.6161.0 x64
Description: File and archive manager
PID: 17164
Parent PID: 11936 (Explorer.EXE)
Priority: 8
Threads: 9
Owner: AGRYNCO-NB\agrynco (S-1-5-21-4255264900-3681165211-3101920415-1001)
Session: 1
Started at: 04.12.2023 20:38:22
Uptime: 09:42:34.3194604
Command Line:
"C:\Program Files\Far Manager\Far.exe"
Current Directory:
C:\Program Files\Far Manager\
Environment:
=::=::\
=C:=C:\projects\FB\win-procs\
=E:=E:\sources\
ALLUSERSPROFILE=C:\ProgramData
APPDATA=C:\Users\agrynco\AppData\Roaming
CommonProgramFiles=C:\Program Files\Common Files
CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files
CommonProgramW6432=C:\Program Files\Common Files
COMPUTERNAME=AGRYNCO-NB
ComSpec=C:\Windows\system32\cmd.exe
DriverData=C:\Windows\System32\Drivers\DriverData
EFC_11936=1
FARHOME=C:\Program Files\Far Manager
FARLANG=English
FARLOCALPROFILE=C:\Users\agrynco\AppData\Local\Far Manager\Profile
FARPROFILE=C:\Users\agrynco\AppData\Roaming\Far Manager\Profile
FPS_BROWSER_APP_PROFILE_STRING=Internet Explorer
FPS_BROWSER_USER_PROFILE_STRING=Default
HOMEDRIVE=C:
HOMEPATH=\Users\agrynco
IGCCSVC_DB=AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAOJ66MrrVw0+QBhqk5hoEKwQAAAACAAAAAAAQZgAAAAEAACAAAADnIlH5GScq5R1YwQo2Cdo8Ywd0ZnJUWgTOe7r4V5F63wAAAAAOgAAAAAIAACAAAAAlDR5jYnr48atTqrib8QkVE8gaMuCWSNJWtk+jRzAnqmAAAAALixtyTpkBnS9kEaVJMR5ea2pX1V5u/MVPU0mJfqqQjVqIIvyG3dc/oZ+f7BajWsnfH7FhM0r+7l9Y5zMMoZkm2KAtRIvw/7Ty5HukYLvfOe223gFueFWm34eioL7L3xRAAAAAJzbevzwd+31hEaN3Oa+gjRBOMxyfyX5U0mEeaqvaPv/Ds59UhBmINpbz6//2aDTGdkpe40Lp2WLhU71srp61hw==
JetBrains Rider=C:\Program Files\JetBrains\JetBrains Rider 2023.2.3\bin;
LOCALAPPDATA=C:\Users\agrynco\AppData\Local
LOGONSERVER=\\AGRYNCO-NB
NUMBER_OF_PROCESSORS=20
NVM_HOME=C:\Users\agrynco\AppData\Roaming\nvm
NVM_SYMLINK=C:\Program Files\nodejs
OneDrive=C:\Users\agrynco\OneDrive
OneDriveConsumer=C:\Users\agrynco\OneDrive
OS=Windows_NT
Path=C:\Program Files\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files\Git\cmd;C:\Program Files\dotnet\;C:\Program Files\LINQPad7;C:\Program Files\Microsoft SQL Server\Client SDK\ODBC\170\Tools\Binn\;C:\Program Files\Microsoft SQL Server\150\Tools\Binn\;C:\Users\agrynco\AppData\Roaming\nvm;C:\Program Files\nodejs;C:\Program Files\WireGuard\;C:\Program Files (x86)\Microsoft SQL Server\160\DTS\Binn\;C:\Program Files\TortoiseGit\bin;C:\Program Files\Docker\Docker\resources\bin;C:\Program Files\PowerShell\7\;C:\Users\agrynco\AppData\Local\Microsoft\WindowsApps;C:\Users\agrynco\AppData\Local\Programs\Microsoft VS Code\bin;C:\Users\agrynco\.dotnet\tools;C:\Program Files\JetBrains\JetBrains Rider 2023.2.3\bin;;C:\Users\agrynco\AppData\Roaming\nvm;C:\Program Files\nodejs;C:\Program Files\Azure Data Studio\bin
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
POWERSHELL_DISTRIBUTION_CHANNEL=MSI:Windows 10 Pro
PROCESSOR_ARCHITECTURE=AMD64
PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 154 Stepping 3, GenuineIntel
PROCESSOR_LEVEL=6
PROCESSOR_REVISION=9a03
ProgramData=C:\ProgramData
ProgramFiles=C:\Program Files
ProgramFiles(x86)=C:\Program Files (x86)
ProgramW6432=C:\Program Files
PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\Windows\system32\WindowsPowerShell\v1.0\Modules
PUBLIC=C:\Users\Public
SESSIONNAME=Console
SONAR_TOKEN=sqp_4ba776407397ab3d628d0eea2a02bc040832cad0
SystemDrive=C:
SystemRoot=C:\Windows
TEMP=C:\Users\agrynco\AppData\Local\Temp
TMP=C:\Users\agrynco\AppData\Local\Temp
USERDOMAIN=AGRYNCO-NB
USERDOMAIN_ROAMINGPROFILE=AGRYNCO-NB
USERNAME=agrynco
USERPROFILE=C:\Users\agrynco
windir=C:\Windows
ZES_ENABLE_SYSMAN=1
USER Objects: 8
Processor Time: 00:00:00.3437500 0%
Privileged Time: 00:00:00.1875000 0%
User Time: 00:00:00.1562500 0%
Handle Count: 485
Page File Bytes: 15691776
Page File Bytes Peak: 16048128
Working Set: 39313408
Working Set Peak: 39522304
Pool Nonpaged Bytes: 23352
Pool Paged Bytes: 273768
Private Bytes: 15691776
Page Faults: 76420 60/sec
Virtual Bytes: 4500860928
Virtual Bytes Peak: 4667985920
IO Data Bytes: 23022027 38954/sec
IO Read Bytes: 20425339 0/sec
IO Write Bytes: 2596688 38954/sec
IO Other Bytes: 1317560 0/sec
IO Data Operations: 25518 664/sec
IO Read Operations: 1777 0/sec
IO Write Operations: 23741 664/sec
IO Other Operations: 40885 35/sec
Window title: {Process list} - Far 3.0.6161.0 x64
HWND: 0x4013a
Window style: 15EF0000 WS_VISIBLE WS_CLIPSIBLINGS WS_MAXIMIZE WS_BORDER WS_DLGFRAME WS_VSCROLL WS_SYSMENU WS_THICKFRAME WS_MINIMIZEBOX WS_MAXIMIZEBOX
Extended style: 000C0110 WS_EX_ACCEPTFILES WS_EX_WINDOWEDGE WS_EX_APPWINDOW WS_EX_LAYERED
Modules:
Base Size Path (version info is not displayed)
00007FF768C10000 62E000 C:\Program Files\Far Manager\Far.exe
00007FF87BE10000 217000 C:\Windows\SYSTEM32\ntdll.dll
00007FF87AD80000 C4000 C:\Windows\System32\KERNEL32.DLL
00007FF879480000 3A5000 C:\Windows\System32\KERNELBASE.dll
00007FF87A980000 B1000 C:\Windows\System32\ADVAPI32.dll
00007FF87ACA0000 A7000 C:\Windows\System32\msvcrt.dll
00007FF87ABD0000 A6000 C:\Windows\System32\sechost.dll
00007FF87AF00000 117000 C:\Windows\System32\RPCRT4.dll
00007FF87BA00000 1AE000 C:\Windows\System32\USER32.dll
00007FF879240000 26000 C:\Windows\System32\win32u.dll
00007FF87AD50000 29000 C:\Windows\System32\GDI32.dll
00007FF879830000 119000 C:\Windows\System32\gdi32full.dll
00007FF879270000 9A000 C:\Windows\System32\msvcp_win.dll
00007FF879950000 111000 C:\Windows\System32\ucrtbase.dll
00007FF879BE0000 859000 C:\Windows\System32\SHELL32.dll
00007FF87A440000 1A0000 C:\Windows\System32\ole32.dll
00007FF87A5E0000 389000 C:\Windows\System32\combase.dll
00007FF87A970000 8000 C:\Windows\System32\PSAPI.DLL
00007FF87B070000 474000 C:\Windows\System32\SETUPAPI.dll
00007FF87B900000 F9000 C:\Windows\System32\COMDLG32.dll
00007FF864290000 A8000 C:\Windows\SYSTEM32\WINSPOOL.DRV
00007FF85B0D0000 19000 C:\Windows\SYSTEM32\NETAPI32.dll
00007FF86D1B0000 1E000 C:\Windows\SYSTEM32\MPR.dll
00007FF87AAD0000 F3000 C:\Windows\System32\shcore.dll
00007FF878000000 C000 C:\Windows\SYSTEM32\Secur32.dll
00007FF878740000 2C000 C:\Windows\SYSTEM32\USERENV.dll
00007FF86CBB0000 A000 C:\Windows\SYSTEM32\VERSION.dll
00007FF87B8A0000 5E000 C:\Windows\System32\SHLWAPI.dll
00007FF864340000 293000 C:\Windows\WinSxS\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.22621.2506_none_270c5ae97388e100\COMCTL32.dll
00007FF877C20000 C000 C:\Windows\SYSTEM32\NETUTILS.DLL
00007FF873880000 19000 C:\Windows\SYSTEM32\SAMCLI.DLL
00007FF86D0F0000 28000 C:\Windows\SYSTEM32\SRVCLI.DLL
00007FF878490000 42000 C:\Windows\SYSTEM32\SSPICLI.DLL
00007FF878EA0000 4E000 C:\Windows\SYSTEM32\cfgmgr32.DLL
00007FF87BBB0000 31000 C:\Windows\System32\IMM32.DLL
00007FF878190000 18000 C:\Windows\SYSTEM32\kernel.appcore.dll
00007FF876210000 AB000 C:\Windows\system32\uxtheme.dll
00007FF87BC80000 14F000 C:\Windows\System32\MSCTF.dll
00007FF877F90000 4D000 C:\Windows\SYSTEM32\powrprof.dll
00007FF877F70000 13000 C:\Windows\SYSTEM32\UMPDC.dll
00007FF877060000 8F4000 C:\Windows\SYSTEM32\windows.storage.dll
00007FF876F20000 13E000 C:\Windows\SYSTEM32\wintypes.dll
00007FF8790B0000 26000 C:\Windows\SYSTEM32\profapi.dll
00007FF879A70000 7A000 C:\Windows\System32\bcryptPrimitives.dll
00007FF87AE50000 B0000 C:\Windows\System32\clbcatq.dll
00007FF83A060000 2A9000 C:\Windows\system32\explorerframe.dll
00007FF86BB50000 625000 C:\Windows\System32\OneCoreUAPCommonProxyStub.dll
00007FF80ED70000 1E000 C:\Program Files\Far Manager\Plugins\LuaMacro\LuaMacro.dll
0000000066D80000 7F000 C:\Program Files\Far Manager\lua51.dll
00007FF80E8C0000 8C000 C:\Program Files\Far Manager\luafar3.dll
00007FF8789D0000 C000 C:\Windows\SYSTEM32\CRYPTBASE.DLL
0000000064480000 15000 C:\Program Files\Far Manager\lpeg.dll
00007FF80E840000 36000 C:\Program Files\Far Manager\Plugins\TmpPanel\TmpPanel.dll
00007FF874260000 101000 C:\Windows\SYSTEM32\PROPSYS.dll
00007FF87B500000 D7000 C:\Windows\System32\OLEAUT32.dll
00007FF876140000 97000 C:\Windows\SYSTEM32\apphelp.dll
00007FF8579A0000 28000 C:\Windows\SYSTEM32\edputil.dll
00007FF878FF0000 A3000 C:\Windows\SYSTEM32\sxs.dll
00007FF85DA10000 F5000 C:\Program Files\Far Manager\Plugins\ArcLite\arclite.dll
00000000641A0000 1C6000 C:\Program Files\Far Manager\Plugins\ArcLite\7z.dll
00007FF852720000 373000 C:\Program Files\Far Manager\Plugins\NetBox\NetBox.dll
00007FF8789F0000 1B000 C:\Windows\SYSTEM32\CRYPTSP.dll
00007FF8781B0000 35000 C:\Windows\system32\rsaenh.dll
00007FF879B60000 71000 C:\Windows\System32\ws2_32.dll
000001F22E5B0000 3000 C:\Windows\SYSTEM32\security.dll
00007FF859480000 1F0000 C:\Windows\SYSTEM32\urlmon.dll
00007FF863E40000 2BC000 C:\Windows\SYSTEM32\iertutil.dll
00007FF86D0B0000 15000 C:\Windows\SYSTEM32\virtdisk.dll
00007FF878920000 4B000 C:\Windows\SYSTEM32\Wldp.dll
00007FFFA3030000 6D000 C:\Program Files\Far Manager\Plugins\ProcList\ProcList.dll
00007FF824BC0000 11000 C:\Windows\System32\perfproc.dll
00007FF86CBF0000 10000 C:\Windows\system32\wbem\wbemprox.dll
00007FF86ED80000 80000 C:\Windows\SYSTEM32\wbemcomn.dll
00007FF86B3C0000 14000 C:\Windows\system32\wbem\wbemsvc.dll
00007FF86B140000 F8000 C:\Windows\system32\wbem\fastprox.dll
00007FF86A4B0000 1D000 C:\Windows\SYSTEM32\amsi.dll
00007FF86A390000 7C000 C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpOav.dll