????
Current Path : C:/Windows/SysWOW64/ |
Current File : C:/Windows/SysWOW64/werdiagcontroller.dll |
MZ� �� � @ � � � �!�L�!This program cannot be run in DOS mode. $ ��L�`��`��`��\�`�*��`�*��`��`��`�*��`�*��`�*��`�*0�`�*��`�Rich�`� PE L �D� � ! n $ `t � � $c @A �| � �� h � 0 � � �: T � � � .text jm n `.data � r @ �.idata � � t @ @.rsrc 0 � � @ @.reloc � � � @ B H� �� � 4� �: �� � u �: @r �G �H K �K �T �T g @r `t �w Pz �{ G u i d L e v e l F l a g s C i r c u l a r S i z e u��:�AWERDIAG: Verifier.dll loaded. Enabling Autoverifier. WERDIAG: ProcessStartupSettingsUpdate failed. NTSTATUS: %08X WERDIAG: FDR will be enabled WERDIAG: Stopping Autoverifier WERDIAG: Stopping FDR WERDIAG: AutoVerifier: Failed getting current user registry path. NTSTATUS: %08X WERDIAG: AutoVerifier: Path is: %S S o f t w a r e \ M i c r o s o f t \ W i n d o w s \ W i n d o w s E r r o r R e p o r t i n g \ P l u g i n s \ A u t o v e r i f i e r WERDIAG: AutoVerifier: Subkey is: %S WERDIAG: AutoVerifier: could not open settings key. NTSTATUS: %08X A u t o v e r i f i e r E n a b l e d WERDIAG: AutoVerifier: could not read enabled flag. NTSTATUS: %08X WERDIAG: AutoVerifier: Enabled flag: %u \ R e g i s t r y \ M a c h i n e \ S o f t w a r e \ M i c r o s o f t \ W i n d o w s \ W i n d o w s E r r o r R e p o r t i n g WERDIAG: Failed opening registry key. NTSTATUS: %08X E r r o r P o r t WERDIAG: PluginsNtGetRegStringValue failed. NTSTATUS: %08X WERDIAG: SignalStartWerSvc failed NTSTATUS: %08X WERDIAG: NtQuerySysInfo(ErrorPortTimeouts) failed. NTSTATUS: %08X WERDIAG: WaitForWerSvc failed. NTSTATUS: %08X WERDIAG: WaitForWerSvc timed out, failing the call with NTSTATUS: %08X WERDIAG: RtlAllocateAndInitializeSid failed. NTSTATUS: %08X WERDIAG: NtAlpcConnectPort failed. NTSTATUS: %08X WERDIAG: NtAlpcConnectPort timed out, failing the call with NTSTATUS %08X WERDIAG: NtAlpcSendWaitReceivePort failed. NTSTATUS: %08X WERDIAG: Service returned failure status. NTSTATUS: %08X WERDIAG: Failed getting current user registry path. NTSTATUS: %08X S o f t w a r e \ M i c r o s o f t \ W i n d o w s N T \ C u r r e n t V e r s i o n \ I m a g e F i l e E x e c u t i o n O p t i o n s WERDIAG: Handle to registry key is null WERDIAG: Failed getting process name. NTSTATUS: %08X A u t o v e r i f i e r A u t o V e r i f i e r C o u n t WERDIAG: Failed reading key value. NTSTATUS: %08X WERDIAG: Failed writing registry value. NTSTATUS: %08X O r i g i n a l B u c k e t A u t o V e r i f i e r T i m e D u r a t i o n WERDIAG: Failed creating timer thread. NTSTATUS: %08X WERDIAG: Failed deleting autovefier enabled flag. NTSTATUS: %08X WERDIAG: Failed writing key value \ R e g i s t r y \ M a c h i n e \ S Y S T E M \ C u r r e n t C o n t r o l S e t \ C o n t r o l \ S e s s i o n M a n a g e r I m a g e E x e c u t i o n O p t i o n s WERDIAG: Not disabling HKCU IFEO look-up because its statically enabled. WERDIAG: Thread failed to wait for the specified time; Disabling autoverifier. NTSTATUS: %08X v e r i f i e r . d l l WERDIAG: Failed obtaining verifier.dll handle. NTSTATUS: %08X VerifierForceNormalHeap WERDIAG: Failed obtaining VerifierForceNormalHeap function address. NTSTATUS: %08X WERDIAG: Failed switching to normal heap mode. NTSTATUS: %08X WERDIAG: Verifier switched to light mode \ K e r n e l O b j e c t s \ S y s t e m E r r o r P o r t R e a d y ��n�T�D������WERDIAG: AppRecorder: Failed creating AppRecorder thread. NTSTATUS: %08X L o c a l \ { D F 2 B 7 F C A - C 5 B 0 - 4 6 3 8 - A 4 A D - 5 9 F 7 F 7 6 C E 5 4 0 } WERDIAG: AppRecorder: ProcessStartupSettingsUpdate failed. HRESULT: %08X % d - A p p R e c o r d e r E n a b l e d WERDIAG: AppRecorder: Failed creating apprecorder event name string. HRESULT: %08X WERDIAG: AppRecorder: Failed creating event. Win32 error: %08X WERDIAG: AppRecorder: Failed to get temp folder path. Win32 error: %08X W E R WERDIAG: AppRecorder: Failed to get temp file name. Win32 error: %08X . A p p R e c o r d e r D a t a . x m l WERDIAG: AppRecorder: Failed to create temp file name. HRESULT: %08X WERDIAG: AppRecorder: Failed to create apprecorder temp file. Win32 error: %08X WERDIAG: AppRecorder: Failed to register the log file with WER. HRESULT: %08X WERDIAG: AppRecorder: Failed to get system folder path. Win32 error: %08X \ p s r . e x e WERDIAG: AppRecorder: Failed to create UAR executable image path. HRESULT: %08X % s / s t a r t / o u t p u t % s / g u i 0 / r e c o r d p i d % d / s t o p e v e n t % s / s c 0 / n o a r c 1 / w a i t o n p i d 1 WERDIAG: AppRecorder: Failed to create UAR process command line. HRESULT: %08X WERDIAG: AppRecorder: Failed to create UAR process. Win32 error: %08X WERDIAG: AppRecorder: Failed getting current user registry path. NTSTATUS: %08X S o f t w a r e \ M i c r o s o f t \ W i n d o w s \ W i n d o w s E r r o r R e p o r t i n g \ P l u g i n s \ A p p R e c o r d e r WERDIAG: AppRecorder: AppRecorder settings key is not present. NTSTATUS: %08X A p p R e c o r d e r E n a b l e d WERDIAG: AppRecorder: AppRecorder enabled flag is not present. NTSTATUS: %08X A p p R e c o r d e r C o u n t WERDIAG: AppRecorder: Failed to get current process name. Win32 error: %08X S o f t w a r e \ M i c r o s o f t \ W i n d o w s N T \ C u r r e n t V e r s i o n \ A p p C o m p a t F l a g s \ L a y e r s WERDIAG: AppRecorder: Failed to open App Recorder layer key. NTSTATUS: %08X WERDIAG: AppRecorder: Failed to get application appcompat layers. NTSTATUS: %08X A p p R e c o r d e r WERDIAG: AppRecorder: Failed to update application appcompat layers. NTSTATUS: %08X WERDIAG: AppRecorder: Failed to update App Recorder run count. NTSTATUS: %08X WERDIAG: Invalid params WERDIAG: Failed creating FDR thread. NTSTATUS: %08X WERDIAG: GetTraceLoggerHandle failed WERDIAG: GetTraceEnableLevel failed WERDIAG: GetTraceEnableFlags failed WERDIAG: Internal provider enabled for Level %u, Flags %lu WERDIAG: Tracing disabled for internal provider WERDIAG: Provider not registered. RegisterTraceGuids failed with %d WERDIAG: Internal provider: FDR did not start yet; Message lost WERDIAG: Failed determining string length. HRESULT: %08X WERDIAG: Memory allocation for event failed. WERDIAG: Internal provider failed to log message. Win32 error: %08X WERDIAG: Internal log message WERDIAG: Failed reading the session settings of updating the process ID. HRESULT: %08X WERDIAG: Failed parsing settings string. HRESULT: %08X WERDIAG: Failed to enable logging. HRESULT: %08X F D R s t a r t e d WERDIAG: Failed enabling trace provider. Win32 error: %08X F D R T r a c i n g S e s s i o n WERDIAG: Invalid arguments: Log path cannot be null WERDIAG: Unable to allocate %d bytes for properties structure. WERDIAG: Failed copying string buffer. HRESULT: %08X WERDIAG: StartTrace failed for the internal provider. Win32 error: %08X WERDIAG: Failed enabling internal trace provider. Win32 error: %08X WERDIAG: Invalid args: The pair string cannot be null WERDIAG: Failed obtaining string length. HRESULT: %08X WERDIAG: Invalid format: expected '='. WERDIAG: Invalid args WERDIAG: Failed getting string length. HRESULT: %08X WERDIAG: Failed copying string. HRESULT: %08X WERDIAG: Invalid arguments: Buffer or separator character cannot be null WERDIAG: Invalid arguments: String buffer cannot be null WERDIAG: Failed obtaining the length of the input string. HRESULT: %08X WERDIAG: Out of resources allocating memory for string buffer WERDIAG: Failed making a copy of the original settings string. HRESULT: %08X WERDIAG: Failed copying characters to pair buffer. HRESULT: %08X WERDIAG: Invalid argument: GUID structure cannot be null WERDIAG: Invalid arguments: pointer to settings structure cannot be null WERDIAG: Invalid argument: settins string cannot be NULL WERDIAG: Failed extracting next token from settings string. HRESULT: %08X WERDIAG: Failed extracting next pair from the current token. HRESULT: %08X WERDIAG: Error parsing current pair; Ignoring pair and continuing parsing. HRESULT: %08X WERDIAG: Failed updating settings; Parsing continues. HRESULT: %08X WERDIAG: Log file size was not specified; Logging will not be enabled WERDIAG: Failed reading session settings, cannot delete log file. HRESULT: %08X % s _ % d WERDIAG: Failed appending process ID to log file name. HRESULT: %08X WERDIAG: Failed deleting file. NTSTATUS: %08X WERDIAG: Session settings and/or FDR layer were not deleted successfuly. HRESULT: %08X S o f t w a r e \ M i c r o s o f t \ W i n d o w s \ W i n d o w s E r r o r R e p o r t i n g \ P l u g i n s \ F D R \ C u r r e n t S e s s i o n A p p P a t h WERDIAG: Failed reading string value from registry. NTSTATUS: %08X WERDIAG: UtilRemoveAppCompatLayerFromList failed. HRESULT: %08X WERDIAG: Failed opening session registry key. NTSTATUS: %08X WERDIAG: Invalid arguments; pointer to string buffer cannot be null S e s s i o n S e t t i n g s WERDIAG: Failed reading FDR settings value from registry. NTSTATUS: %08X L o g P a t h WERDIAG: Failed reading log file path value from registry. NTSTATUS: %08X WERDIAG: Get current process ID failed P r o c I D WERDIAG: Failed writing process ID to registry. NTSTATUS: %08X WERDIAG: StartFDR failed 0x%x F D R _ F L U S H _ M E S S A G E % s - % d WERDIAG: Failed concatenating strings. HRESULT: %08X WERDIAG: Failed creating event. Win32 error: %08X WERDIAG: Failed setting event. Win32 error: %08X WERDIAG: Flushing done, done signal sent WERDIAG: Unexpected event response or failed waiting for event ���� DF�ԓ@��+f���9�vK�t���dgWERDIAG: Invalid parameters WERDIAG: Failed obtaining string length. NTSTATUS: %08X WERDIAG: RtlSizeTAdd failed. NTSTATUS: %08X WERDIAG: RtlSizeTAdd operation failed. NTSTATUS: %08X WERDIAG: RtlSizeTMult operation failed. NTSTATUS: %08X WERDIAG: Insufficient resources % s \ % s WERDIAG: Failed concatenating strings. NTSTATUS: %08X WERDIAG: Key: %S WERDIAG: Out of resources allocating memory for key information structure WERDIAG: Failed extracting registry value %S. NTSTATUS: %08X WERDIAG: Failed writing to value %S. NTSTATUS: %08X WERDIAG: Failed writing to value %S. NTSTATUS %08X WERDIAG: NtQueryInformationProcess failed. NTSTATUS: %08X WERDIAG: Invalid size returned. NTSTATUS: %08X WERDIAG: Failed copying string. NTSTATUS: %08X WERDIAG: Registry value %S is not of type string WERDIAG: Failed determining string buffer length. NTSTATUS: %08X ntdll.dll MicrosoftTelemetryAssertTriggeredUM �D� . p; p/ �D� � �; �/ �D� $ �= �1 Pz ; $ 8; 8 �r `s �s �s t �t >w �{ �{ � �) �= : �w � Pz o �{ 8| � RSDS|�<�G�Js�!���,08 WerDiagController.pdb GCTL � .rdata$brc � .CRT$XCA � .CRT$XCZ � .CRT$XIA � .CRT$XIAA � .CRT$XIZ � @ .gfids �) .rdata �: .rdata$sxdata �: t .rdata$voltmd p; @ .rdata$zzzdbg �= �>