date/time         : 2015-08-02, 16:29:50, 308ms
computer name     : MEGABITCH
user name         : Mark <admin>
registered owner  : Windows User
operating system  : Windows XP Tablet PC x64 Service Pack 3 build 2600
system language   : English
system up time    : 22 hours 14 minutes
program up time   : 7 seconds
processors        : 8x Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz
physical memory   : 3051/6142 MB (free/total)
free disk space   : (C:) 182.36 GB
display mode      : 1920x1080, 32 bit
process id        : $c78
allocated memory  : 154.42 MB
executable        : Armada2.exe
current module    : FleetOpsHook.dll
module date/time  : 2012-10-20 13:40
version           : 3.2.7
callstack crc     : $0dd6f610, $f830908b, $f830908b
exception number  : 1
exception class   : EAccessViolation
exception message : Access violation at address 0DD6F610 in module 'nvd3dum.dll'. Read of address 000000EC.

main thread ($610):
0dd6f610 +000 nvd3dum.dll
5a9c080d +0a5 FleetOpsHook.dll Direct3D8Hook           61 +23 Direct3D8_CreateDevice_Callback
006237a9 +1d9 Armada2.exe                                     ST3D_DeviceDirectX8.CreateDevice
006233d6 +016 Armada2.exe                                     ST3D_DeviceDirectX8.CreateRenderSurfaces
006215c3 +063 Armada2.exe                                     ST3D_Device.DeviceOpen
0062b8e4 +0c4 Armada2.exe                                     ST3D_GraphicsEngine.DeviceOpen
0062c622 +272 Armada2.exe                                     ST3D_GraphicsEngine.SetActiveDisplay_Internal
5a8e0a3c +014 FleetOpsHook.dll ArmadaFunctions       5868  +2 TST3D_GraphicsEngine.SetActiveDisplay_Internal
5a9af123 +063 FleetOpsHook.dll FleetOpsFunctionsHook 5673 +15 ST3D_GraphicsEngine_SetActiveDisplay_Internal_New
0062c70b +03b Armada2.exe                                     ST3D_GraphicsEngine.SetActiveDisplay
00484892 +1f2 Armada2.exe                                     Program.GameOpenPreLoad
0048588b +10b Armada2.exe                                     Program.GameOpen
00487246 +166 Armada2.exe                                     Program.GameDoOne
00486b44 +544 Armada2.exe                                     Program.MainLoop
0047608d +11d Armada2.exe                                     _WinMain@16
5a9adab5 +029 FleetOpsHook.dll FleetOpsFunctionsHook 4977  +3 DebugException_Execute_New
5a9adf13 +26b FleetOpsHook.dll FleetOpsFunctionsHook 5097 +75 A2_WinMain
006734ef +12f Armada2.exe                                     _WinMainCRTStartup
76f93742 +022 KERNEL32.DLL                                    BaseThreadInitThunk

thread $2550:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $a14:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $1c6c:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $2df8:
75683255 +25 USER32.dll    GetMessageW
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $604:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $2960:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $2354:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $1ee8:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $32b0:
75321280 +130 KERNELBASE.dll  WaitForMultipleObjectsEx
76f93742 +022 KERNEL32.DLL    BaseThreadInitThunk

thread $19a8:
75321280 +130 KERNELBASE.dll  WaitForMultipleObjectsEx
76f93742 +022 KERNEL32.DLL    BaseThreadInitThunk

thread $13b4: <priority:7>
75318d03 +93 KERNELBASE.dll  WaitForSingleObjectEx
75318c5d +0d KERNELBASE.dll  WaitForSingleObject
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

thread $1ac8: <priority:2>
75318d03 +93 KERNELBASE.dll  WaitForSingleObjectEx
75318c5d +0d KERNELBASE.dll  WaitForSingleObject
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

thread $2908: <priority:2>
753213c2 +92 KERNELBASE.dll  SleepEx
7532131a +0a KERNELBASE.dll  Sleep
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

thread $19c4: <priority:1>
753213c2 +92 KERNELBASE.dll  SleepEx
7532131a +0a KERNELBASE.dll  Sleep
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

modules:
00400000 Armada2.exe                 43.0.0.0            C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
024c0000 fmodex.dll                  0.4.34.2            C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
025d0000 D3DX81ab.dll                8.1.0.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
04e30000 Tunngle.dll                 1.0.6.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
06000000 nvspcap.dll                 2.5.12.11           C:\WINDOWS\system32
0d820000 nvd3dum.dll                 10.18.13.5362       C:\WINDOWS\SYSTEM32
10000000 NetworkManager.dll                              C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
18000000 binkw32.dll                 1.9.16.0            C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
4a800000 Win2kDisableTaskSwitch.dll  3.2.7.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
50140000 nvSCPAPI.dll                7.17.13.5362        C:\Program Files (x86)\NVIDIA Corporation\3D Vision
50270000 d3dx9_43.dll                9.29.952.3111       C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
50470000 d3d9.dll                    6.2.10240.16392     C:\WINDOWS\SYSTEM32
50640000 MSVFW32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
506f0000 d3d8.dll                    6.2.10240.16384     C:\WINDOWS\SYSTEM32
50800000 MSVCP60.dll                 7.0.10240.16384     C:\WINDOWS\SYSTEM32
53e00000 AVIFIL32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
55a50000 twinapi.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
5a800000 FleetOpsHook.dll            3.2.7.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations
62250000 twinapi.appcore.dll         6.2.10240.16397     C:\WINDOWS\SYSTEM32
65030000 d3d8thk.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
65390000 SortServer2003Compat.dll    6.2.10240.16384     C:\WINDOWS\SYSTEM32
66680000 sfc.dll                     6.2.10240.16384     C:\WINDOWS\SYSTEM32
67fa0000 AVRT.dll                    6.2.10240.16384     C:\WINDOWS\SYSTEM32
68330000 wdmaud.drv                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
6db40000 wintypes.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
6dc10000 AUDIOSES.DLL                6.2.10240.16397     C:\WINDOWS\SYSTEM32
6df30000 uiautomationcore.dll        7.2.10240.16397     C:\Windows\SYSTEM32
6e050000 tiptsf.dll                  6.2.10240.16384     C:\Program Files (x86)\Common Files\Microsoft Shared\Ink
6e9e0000 propsys.dll                 7.0.10240.16384     C:\WINDOWS\system32
6ec10000 nvapi.dll                   10.18.13.5362       C:\WINDOWS\system32
6ff40000 COMCTL32.dll                6.10.10240.16384    C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_3bccb1ff6bcd1849
70690000 midimap.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
706a0000 msacm32.drv                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
71750000 fwpuclnt.dll                6.2.10240.16384     C:\WINDOWS\System32
71860000 rasadhlp.dll                6.2.10240.16384     C:\Windows\System32
71870000 mdnsNSP.dll                 3.0.0.10            C:\Program Files (x86)\Bonjour
71b70000 ksuser.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
71bd0000 sxs.dll                     6.2.10240.16384     C:\WINDOWS\SYSTEM32
71c60000 AcLayers.DLL                6.2.10240.16384     C:\WINDOWS\AppPatch
71ee0000 urlmon.dll                  11.0.10240.16391    C:\WINDOWS\SYSTEM32
72040000 dwmapi.dll                  6.2.10240.16392     C:\WINDOWS\SYSTEM32
72060000 MSACM32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
72590000 apphelp.dll                 6.2.10240.16384     C:\WINDOWS\system32
72b30000 mswsock.dll                 6.2.10240.16384     C:\WINDOWS\system32
72d70000 iertutil.dll                11.0.10240.16391    C:\WINDOWS\SYSTEM32
73040000 sfc_os.DLL                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
73070000 USERENV.dll                 6.2.10240.16384     C:\Windows\SYSTEM32
737a0000 MPR.dll                     6.2.10240.16384     C:\WINDOWS\SYSTEM32
73970000 ondemandconnroutehelper.dll 6.2.10240.16384     C:\WINDOWS\SYSTEM32
73d80000 rsaenh.dll                  6.2.10240.16384     C:\WINDOWS\system32
73db0000 cryptsp.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
73f90000 DNSAPI.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74020000 WINHTTP.dll                 6.2.10240.16391     C:\WINDOWS\SYSTEM32
74180000 WINNSI.DLL                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74190000 IPHLPAPI.DLL                6.2.10240.16384     C:\WINDOWS\SYSTEM32
741c0000 wininet.dll                 11.0.10240.16391    C:\WINDOWS\SYSTEM32
744b0000 wsock32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
74920000 MMDevApi.dll                6.2.10240.16384     C:\WINDOWS\System32
749b0000 uxtheme.dll                 6.2.10240.16397     C:\WINDOWS\system32
74a30000 WINMMBASE.dll               6.2.10240.16384     C:\WINDOWS\SYSTEM32
74a60000 DSOUND.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74af0000 OLEACC.dll                  7.2.10240.16384     C:\Windows\SYSTEM32
74b50000 WINMM.dll                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
74c90000 DEVOBJ.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74cc0000 bcrypt.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74ce0000 WINSPOOL.DRV                6.2.10240.16384     C:\WINDOWS\SYSTEM32
74d50000 version.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
74d60000 bcryptPrimitives.dll        6.2.10240.16384     C:\WINDOWS\SYSTEM32
74dc0000 CRYPTBASE.dll               6.2.10240.16384     C:\WINDOWS\SYSTEM32
74dd0000 SspiCli.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
74df0000 RPCRT4.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74ea0000 WS2_32.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74f00000 CRYPT32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
75080000 shcore.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
75120000 comdlg32.dll                6.2.10240.16405     C:\WINDOWS\SYSTEM32
751e0000 MSASN1.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
751f0000 profapi.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
75200000 NSI.dll                     6.2.10240.16384     C:\WINDOWS\SYSTEM32
75270000 KERNELBASE.dll              6.2.10240.16384     C:\WINDOWS\SYSTEM32
753f0000 kernel.appcore.dll          6.2.10240.16384     C:\WINDOWS\SYSTEM32
75400000 clbcatq.dll                 2001.12.10941.16384 C:\WINDOWS\SYSTEM32
75490000 PSAPI.DLL                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
754a0000 IMM32.DLL                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
75530000 powrprof.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
75580000 shlwapi.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
75630000 IMAGEHLP.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
75650000 USER32.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
75790000 SHELL32.dll                 6.2.10240.16405     C:\WINDOWS\SYSTEM32
76b50000 WINTRUST.dll                6.2.10240.16385     C:\WINDOWS\SYSTEM32
76ba0000 CFGMGR32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
76be0000 OLEAUT32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
76e90000 sechost.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
76f00000 advapi32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
76f80000 KERNEL32.DLL                6.2.10240.16384     C:\WINDOWS\SYSTEM32
77070000 ole32.dll                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
77160000 MSCTF.dll                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
77280000 GDI32.dll                   6.2.10240.16390     C:\WINDOWS\SYSTEM32
773d0000 msvcrt.dll                  7.0.10240.16384     C:\WINDOWS\SYSTEM32
77490000 SETUPAPI.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
77640000 windows.storage.dll         6.2.10240.16405     C:\WINDOWS\SYSTEM32
77b20000 combase.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
77ce0000 ntdll.dll                   6.2.10240.16392     C:\WINDOWS\SYSTEM32

processes:
0000 Idle                         0 0   0
0004 System                       0 0   0
0208 smss.exe                     0 0   0
02a8 csrss.exe                    0 0   0
02fc wininit.exe                  0 0   0
0384 services.exe                 0 0   0
038c lsass.exe                    0 0   0
03f0 svchost.exe                  0 0   0
0190 svchost.exe                  0 0   0
0224 svchost.exe                  0 0   0
0250 svchost.exe                  0 0   0
04c4 nvvsvc.exe                   0 0   0
04d4 nvSCPAPISvr.exe              0 0   0
04fc svchost.exe                  0 0   0
0504 svchost.exe                  0 0   0
0560 WUDFHost.exe                 0 0   0
05a4 svchost.exe                  0 0   0
063c svchost.exe                  0 0   0
052c CTAudSvc.exe                 0 0   0
06f4 WTabletServicePro.exe        0 0   0
0808 AvastSvc.exe                 0 0   0   normal
08d4 spoolsv.exe                  0 0   0
0930 svchost.exe                  0 0   0
0984 afwServ.exe                  0 0   0   normal
0a40 svchost.exe                  0 0   0
0a48 svchost.exe                  0 0   0
0a50 ASGT.exe                     0 0   0
0a58 mDNSResponder.exe            0 0   0
0a60 AppleMobileDeviceService.exe 0 0   0
0a78 GfExperienceService.exe      0 0   0
0a80 AdobeUpdateService.exe       0 0   0
0a8c svchost.exe                  0 0   0
0ab4 officeclicktorun.exe         0 0   0
0b30 XSrvSetup.exe                0 0   0
0b64 LSSrvc.exe                   0 0   0
0b6c dasHost.exe                  0 0   0
0b7c mqsvc.exe                    0 0   0
0bdc svchost.exe                  0 0   0
0880 NvNetworkService.exe         0 0   0
08a4 NvStreamService.exe          0 0   0
0c54 svchost.exe                  0 0   0
0c64 svchost.exe                  0 0   0
0d50 svchost.exe                  0 0   0
0f18 SMSvcHost.exe                0 0   0
1074 WmiPrvSE.exe                 0 0   0
13d8 SMSvcHost.exe                0 0   0
19cc SearchIndexer.exe            0 0   0
21e4 iPodService.exe              0 0   0
06c4 svchost.exe                  0 0   0
19d4 NASvc.exe                    0 0   0
1904 svchost.exe                  0 0   0
1744 audiodg.exe                  0 0   0
0c80 csrss.exe                    2 0   0
26e4 winlogon.exe                 2 0   0
274c dwm.exe                      2 0   0
2968 nvxdsync.exe                 2 0   0
1ab4 nvvsvc.exe                   2 0   0
2370 sihost.exe                   2 4   23  normal       C:\Windows\System32
2028 SSDGuru.exe                  2 23  17  below normal C:\Program Files (x86)\OCZ Storage Solutions\SSD Guru
2008 taskhostw.exe                2 13  18  normal       C:\Windows\System32
29a0 RuntimeBroker.exe            2 38  35  normal       C:\Windows\System32
2994 GPUTweak.exe                 2 133 245 normal       C:\Program Files (x86)\ASUS\GPU Tweak
22e8 Wacom_TabletUser.exe         2 14  4   normal       C:\Program Files\Tablet\Wacom
1c38 WacomHost.exe                2 0   0
1e1c Wacom_Tablet.exe             2 0   0
1310 Wacom_TouchUser.exe          2 12  9   above normal C:\Program Files\Tablet\Wacom
19fc NvBackend.exe                2 4   9   normal       C:\Program Files (x86)\NVIDIA Corporation\Update Core
1dc8 explorer.exe                 2 665 447 normal       C:\Windows
0a88 Monitor.exe                  2 517 117 normal       C:\Program Files (x86)\ASUS\GPU Tweak
1bc8 ShellExperienceHost.exe      2 6   72  normal       C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy
24e8 TabTip.exe                   2 29  35  high         C:\Program Files\Common Files\microsoft shared\ink
0194 TabTip32.exe                 2 4   6   normal       C:\Program Files (x86)\Common Files\Microsoft Shared\Ink
29ac SettingSyncHost.exe          2 4   8   below normal C:\Windows\System32
26a4 nvtray.exe                   2 81  4   normal       C:\Program Files\NVIDIA Corporation\Display
2794 fontdrvhost.exe              2 0   0
0b50 NvStreamNetworkService.exe   0 0   0
0574 conhost.exe                  0 0   0
07e0 NvStreamUserAgent.exe        2 0   0
0370 conhost.exe                  2 0   0
26d8 RAVCpl64.exe                 2 57  17  normal       C:\Program Files\Realtek\Audio\HDA
0524 iTunesHelper.exe             2 4   9   normal       C:\Program Files\iTunes
2640 LogiOptions.exe              2 11  13  normal       C:\Program Files\Logitech\LogiOptions
1f58 LogiOptionsMgr.exe           2 13  30  normal       C:\ProgramData\LogiShrd\LogiOptions\Software\2.30.56
1fd0 LCore.exe                    2 36  46  normal       C:\Program Files\Logitech Gaming Software
1e60 LCDMedia.exe                 2 101 28  normal       C:\Program Files\Logitech Gaming Software\Applets
2ad0 LCDCountdown.exe             2 109 20  normal       C:\Program Files\Logitech Gaming Software\Applets
101c LCDClock.exe                 2 63  32  normal       C:\Program Files\Logitech Gaming Software\Applets
15d4 LCDPOP3.exe                  2 114 28  normal       C:\Program Files\Logitech Gaming Software\Applets
03ec LCDRSS.exe                   2 61  33  normal       C:\Program Files\Logitech Gaming Software\Applets
24ac LightScribeControlPanel.exe  2 45  19  normal       C:\Program Files (x86)\Common Files\LightScribe
05b8 ApplePhotoStreams.exe        2 21  17  normal       C:\Program Files (x86)\Common Files\Apple\Internet Services
2798 APSDaemon.exe                2 4   7   normal       C:\Program Files (x86)\Common Files\Apple\Apple Application Support
13cc iCloudServices.exe           2 31  20  normal       C:\Program Files (x86)\Common Files\Apple\Internet Services
1e6c CCleaner64.exe               2 62  33  below normal C:\Program Files\CCleaner
23ec iCloudDrive.exe              2 21  42  normal       C:\Program Files (x86)\Common Files\Apple\Internet Services
17e8 OneDrive.exe                 2 27  26  normal       C:\Users\Mark\AppData\Local\Microsoft\OneDrive
16c4 GammaTray.exe                2 8   13  normal       C:\Program Files\MagicTune Premium
2bec nusb3mon.exe                 2 13  8   normal       C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application
26d4 hpqtra08.exe                 2 10  20  normal       C:\Program Files (x86)\HP\Digital Imaging\bin
1b24 Dropbox.exe                  2 49  43  normal       C:\Users\Mark\AppData\Roaming\Dropbox\bin
1190 hpwuschd2.exe                2 4   4   normal       C:\Program Files (x86)\HP\HP Software Update
2848 Creative Cloud.exe           2 106 47  normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC
02e4 AdobeIPCBroker.exe           2 4   7   normal       C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC
24bc AvastUI.exe                  2 139 54  normal       C:\Program Files\AVAST Software\Avast
293c unsecapp.exe                 2 4   4   normal       C:\Windows\System32\wbem
28c4 Adobe Desktop Service.exe    2 165 26  normal       C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS
22c8 Adobe CEF Helper.exe         2 302 4   normal       C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX
2e80 jusched.exe                  2 4   2   normal       C:\Program Files (x86)\Common Files\Java\Java Update
2ebc Ctxfihlp.exe                 2 15  14  normal       C:\Windows\SysWOW64
2f2c hpqste08.exe                 2 4   10  normal       C:\Program Files (x86)\HP\Digital Imaging\bin
2f84 hpqbam08.exe                 2 4   4   normal       C:\Program Files (x86)\HP\Digital Imaging\bin
2f90 CoreSync.exe                 2 4   10  normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync
2c88 svchost.exe                  0 0   0
1930 CCLibrary.exe                2 4   1   normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary
2eb4 node.exe                     2 4   2   normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\libs
1de4 conhost.exe                  2 17  1   normal       C:\Windows\System32
2ea4 hpqgpc01.exe                 2 27  5   normal       C:\Program Files (x86)\HP\Digital Imaging\bin
328c Shareaza.exe                 2 410 336 normal       C:\Program Files\Shareaza
32d8 dllhost.exe                  2 4   3   normal       C:\Windows\System32
3354 WindowsThumbnail.exe         2 4   4   normal       C:\Program Files\Shareaza
3078 dllhost.exe                  2 4   3   normal       C:\Windows\System32
30e4 ApplicationFrameHost.exe     2 15  3   normal       C:\Windows\System32
1908 svchost.exe                  2 4   2   normal       C:\Windows\System32
33ec SystemSettingsBroker.exe     2 4   0   normal       C:\Windows\System32
1f48 Steam.exe                    2 562 92  normal       C:\Program Files (x86)\Steam
050c steamwebhelper.exe           2 9   18  normal       C:\Program Files (x86)\Steam\bin
0710 steamwebhelper.exe           2 4   1   normal       C:\Program Files (x86)\Steam\bin
0704 taskhostw.exe                2 63  11  normal       C:\Windows\System32
205c SpeechRuntime.exe            2 4   2   normal       C:\Windows\System32\Speech_OneCore\Common
0928 firefox.exe                  2 88  90  normal       C:\Program Files (x86)\Mozilla Firefox
1804 SearchUI.exe                 2 19  53  normal       C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy
31f4 SearchProtocolHost.exe       0 0   0
33a8 SearchFilterHost.exe         0 0   0   idle         C:\Windows\System32
291c msdt.exe                     2 129 107 normal       C:\Windows\System32
3108 sdiagnhost.exe               2 4   4   normal       C:\Windows\System32
2194 conhost.exe                  2 23  8   normal       C:\Windows\System32
159c Armada2.exe                  2 4   1   normal       C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
0c78 Armada2.exe                  2 78  54  normal       C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data

hardware:
+ {14b62f50-3f15-11dd-ae16-0800200c9a66}
  - VSX-1122
  - XW-SMA4 21C9CF
+ {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}
  - Fax
  - HP Photosmart C309a series
  - HP Photosmart C309a series fax
  - Microsoft Print to PDF
  - Microsoft XPS Document Writer
  - Root Print Queue
  - Send To OneNote 2013
+ {36fc9e60-c465-11cf-8056-444553540000}
  - Generic USB Hub
  - Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3A
  - Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3C
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A34
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A35
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A36
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A37
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A38
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A39
  - Renesas USB 3.0 eXtensible Host Controller - 0.96 (Microsoft)
  - USB Composite Device
  - USB Composite Device
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub (xHCI)
+ {4d36e965-e325-11ce-bfc1-08002be10318}
  - HL-DT-ST BDDVDRW CH08LS10
+ {4d36e966-e325-11ce-bfc1-08002be10318}
  - ACPI x64-based PC
+ {4d36e967-e325-11ce-bfc1-08002be10318}
  - OCZ-VECTOR
  - WDC WD1001FALS-00E3A0
+ {4d36e968-e325-11ce-bfc1-08002be10318}
  - NVIDIA GeForce GTX 980 (driver 10.18.13.5362)
+ {4d36e96a-e325-11ce-bfc1-08002be10318}
  - Standard SATA AHCI Controller
  - Standard SATA AHCI Controller
+ {4d36e96b-e325-11ce-bfc1-08002be10318}
  - HID Keyboard Device
  - HID Keyboard Device
  - HID Keyboard Device
+ {4d36e96c-e325-11ce-bfc1-08002be10318}
  - Creative SB X-Fi (driver 6.0.240.8)
  - NVIDIA High Definition Audio (driver 1.3.34.3)
  - NVIDIA Virtual Audio Device (Wave Extensible) (WDM) (driver 1.2.30.0)
  - Realtek High Definition Audio (driver 6.0.1.7535)
+ {4d36e96e-e325-11ce-bfc1-08002be10318}
  - SyncMaster PX2370 /PX23720Plus (Digital) (driver 3.0.0.0)
+ {4d36e96f-e325-11ce-bfc1-08002be10318}
  - HID-Compliant Mouse (driver 3.3.1.0)
  - HID-compliant mouse
  - HID-compliant mouse
+ {4d36e971-e325-11ce-bfc1-08002be10318}
  - Photosmart C309a series
+ {4d36e972-e325-11ce-bfc1-08002be10318}
  - Realtek PCIe GBE Family Controller (driver 9.1.401.2015)
  - TAP-Win32 Adapter V9 (driver 9.0.0.9)
+ {4d36e97b-e325-11ce-bfc1-08002be10318}
  - GIGABYTE GBB36X Controller (driver 1.17.51.2)
  - GIGABYTE GBB36X Controller (driver 1.17.51.2)
  - GIGABYTE GBB36X Controller (driver 1.17.51.2)
  - Microsoft Storage Spaces Controller
+ {4d36e97d-e325-11ce-bfc1-08002be10318}
  - ACPI Fixed Feature Button
  - ACPI Power Button
  - Composite Bus Enumerator
  - Direct memory access controller
  - High Definition Audio Controller
  - High Definition Audio Controller
  - High precision event timer
  - Intel(R) 5520/5500/X58 I/O Hub to ESI Port - 3405 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500 Physical and Link Layer Registers Port 1 - 3427 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500 Routing and Protocol Layer Register Port 1 - 3428 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub Control Status and RAS Registers - 3423 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub GPIO and Scratch Pad Registers - 3422 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub I/OxAPIC Interrupt Controller - 342D - 342d (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 1 - 3408 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 2 - 3409 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A - 340a (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub System Management Registers - 342E - 342e (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 Physical and Link Layer Registers Port 0 - 3425 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 Routing and Protocol Layer Registers Port 0 - 3426 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 Trusted Execution Technology Registers - 342F - 342f (driver 9.1.9.1003)
  - Legacy device
  - Logitech Gaming Virtual Bus Enumerator (driver 8.70.161.0)
  - LPC Controller
  - Marvell 91xx Config Device (driver 1.0.0.1027)
  - Microsoft ACPI-Compliant System
  - Microsoft Basic Display Driver
  - Microsoft Basic Render Driver
  - Microsoft System Management BIOS Driver
  - Microsoft Virtual Drive Enumerator
  - Microsoft Windows Management Interface for ACPI
  - Motherboard resources
  - Motherboard resources
  - Motherboard resources
  - NDIS Virtual Network Adapter Enumerator
  - Numeric data processor
  - PCI Bus
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - Plug and Play Software Device Enumerator
  - Programmable interrupt controller
  - Remote Desktop Device Redirector Bus
  - SM Bus Controller
  - System board
  - System CMOS/real time clock
  - System speaker
  - System timer
  - UMBus Root Bus Enumerator
  - Volume Manager
+ {50127dc3-0f36-415e-a6cc-4cb3be910b65}
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
+ {533c5b84-ec70-11d2-9505-00c04f79deaf}
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
+ {62f9c741-b25a-46ce-b54c-9bccce08b6f2}
  - Microsoft Device Association Root Enumerator
  - Microsoft GS Wavetable Synth
  - Microsoft IPv4 IPv6 Transition Adapter Bus
  - Microsoft Radio Device Enumeration Bus
  - Plex Media Server: RedQueen
  - Synthesizer
  - Synthesizer
  - WAN Connection Device
  - WAN Device
+ {6bdd1fc1-810f-11d0-bec7-08002be2092f}
  - Texas Instruments 1394 OHCI Compliant Host Controller
+ {6bdd1fc6-810f-11d0-bec7-08002be2092f}
  - HP Photosmart C309a (driver 8.0.0.0)
+ {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
  - HID-compliant consumer control device
  - HID-compliant consumer control device
  - HID-compliant digitizer
  - HID-compliant pen
  - HID-compliant system controller
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - Logitech Gaming Virtual Keyboard (driver 8.70.161.0)
  - Logitech Gaming Virtual Mouse (driver 8.70.161.0)
  - USB Input Device
  - USB Input Device
  - USB Input Device
  - USB Input Device
  - USB Input Device (Logitech Download Assistant) (driver 1.10.77.0)
  - Wacom Tablet (driver 3.3.1.0)
+ {b6a945de-134c-4279-9a66-61a63c6f0dc5}
  - R7500 (Gateway)
+ {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
  - "What U Hear" (Creative SB X-Fi)
  - CD Audio (Realtek High Definition Audio)
  - Digital-In (Creative SB X-Fi)
  - Realtek Digital Input (Realtek High Definition Audio)
  - Realtek Digital Output (Realtek High Definition Audio)
  - Realtek Digital Output(Optical) (Realtek High Definition Audio)
  - SPDIF Out (Creative SB X-Fi)
  - Speakers (Creative SB X-Fi)
  - Stereo Mix (Realtek High Definition Audio)
+ {eec5ad98-8080-425f-922a-dabf3de3f69a}
  - WPD FileSystem Volume Driver

cpu registers:
eax = 0e774e20
ebx = 0019f4fc
ecx = 00000000
edx = 0e774e20
esi = 04479000
edi = 0e774e20
eip = 0dd6f610
esp = 0019f46c
ebp = 0019f480

stack dump:
0019f46c  ed df ed 0d 20 ec 3c 06 - 30 df ed 0d 00 00 00 00  ......<.0.......
0019f47c  00 00 00 00 dc f4 19 00 - f1 56 70 50 00 90 47 04  .........VpP..G.
0019f48c  9c f4 19 00 a0 55 70 50 - c0 78 4c 04 05 40 00 80  .....UpP.xL..@..
0019f49c  10 09 a1 0e 00 00 00 00 - 00 00 00 00 58 f5 19 00  ............X...
0019f4ac  c0 00 8a 00 03 00 00 00 - 00 00 00 00 46 00 00 00  ............F...
0019f4bc  60 02 8a 00 00 01 00 00 - 9a 29 fd 0d 90 f5 19 00  `........)......
0019f4cc  40 0d d5 77 aa f7 2a 7c - dd d4 56 2c 34 c9 75 50  @..w..*|..V,4.uP
0019f4dc  e8 f5 19 00 9c ca 75 50 - fc f4 19 00 f4 78 4c 04  ......uP.....xL.
0019f4ec  00 00 00 00 c0 78 4c 04 - 00 00 00 00 02 00 00 00  .....xL.........
0019f4fc  20 ec 3c 06 50 f5 19 00 - 02 00 00 00 01 00 00 00  ..<.P...........
0019f50c  00 00 00 86 04 00 00 00 - 16 00 00 00 08 00 00 00  ................
0019f51c  00 00 00 00 00 00 00 00 - 00 00 00 00 01 00 00 00  ................
0019f52c  54 f5 19 00 8c 11 c8 71 - 00 00 8a 00 01 00 00 00  T......q........
0019f53c  08 00 00 00 16 00 00 00 - 00 00 00 00 05 40 00 80  .............@..
0019f54c  05 40 00 80 80 07 00 00 - 38 04 00 00 00 00 00 00  .@......8.......
0019f55c  00 00 00 00 00 00 00 00 - 00 00 00 00 b8 a7 a5 0e  ................
0019f56c  80 07 00 00 38 04 00 00 - 00 00 00 00 00 00 00 00  ....8...........
0019f57c  00 00 00 00 00 00 00 00 - f0 a2 a5 0e 00 00 00 00  ................
0019f58c  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
0019f59c  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................

disassembling:
[...]
5a9c07e0 56   mov     edx, [$5a9e9300]
5a9c07e6      mov     [esi+$10], eax
5a9c07e9 57   mov     dword ptr [esi+$14], 1
5a9c07e6 56
5a9c07f0    loc_5a9c07f0:
5a9c07f0 61   mov     eax, [ebp+$20]
5a9c07f3      call    -$1b9178 ($5a807680)   ; System.@IntfClear
5a9c07f3
5a9c07f8      push    eax
5a9c07f9      push    esi
5a9c07fa      mov     eax, [ebp+$18]
5a9c07fd      push    eax
5a9c07fe      mov     eax, [ebp+$14]
5a9c0801      push    eax
5a9c0802      mov     eax, [ebp+$10]
5a9c0805      push    eax
5a9c0806      push    ebx
5a9c0807      mov     eax, [ebp+8]
5a9c080a      push    eax
5a9c080b      mov     eax, [eax]
5a9c080d    > call    dword ptr [eax+$3c]
5a9c080d
5a9c0810 62   pop     esi
5a9c0811      pop     ebx
5a9c0812      pop     ebp
5a9c0813      ret     $1c

date/time         : 2015-08-02, 16:30:18, 264ms
computer name     : MEGABITCH
user name         : Mark <admin>
registered owner  : Windows User
operating system  : Windows Vista Tablet PC x64 Service Pack 2 build 6002
system language   : English
system up time    : 22 hours 15 minutes
program up time   : 6 seconds
processors        : 8x Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz
physical memory   : 3066/6142 MB (free/total)
free disk space   : (C:) 182.36 GB
display mode      : 1920x1080, 32 bit
process id        : $308
allocated memory  : 154.35 MB
executable        : Armada2.exe
current module    : FleetOpsHook.dll
module date/time  : 2012-10-20 13:40
version           : 3.2.7
callstack crc     : $0615f610, $f6b94777, $f6b94777
exception number  : 1
exception class   : EAccessViolation
exception message : Access violation at address 0615F610 in module 'nvd3dum.dll'. Read of address 000000EC.

main thread ($1fd8):
0615f610 +000 nvd3dum.dll
5a9c080d +0a5 FleetOpsHook.dll Direct3D8Hook           61 +23 Direct3D8_CreateDevice_Callback
006237a9 +1d9 Armada2.exe                                     ST3D_DeviceDirectX8.CreateDevice
006233d6 +016 Armada2.exe                                     ST3D_DeviceDirectX8.CreateRenderSurfaces
006215c3 +063 Armada2.exe                                     ST3D_Device.DeviceOpen
0062b8e4 +0c4 Armada2.exe                                     ST3D_GraphicsEngine.DeviceOpen
0062c622 +272 Armada2.exe                                     ST3D_GraphicsEngine.SetActiveDisplay_Internal
5a8e0a3c +014 FleetOpsHook.dll ArmadaFunctions       5868  +2 TST3D_GraphicsEngine.SetActiveDisplay_Internal
5a9af123 +063 FleetOpsHook.dll FleetOpsFunctionsHook 5673 +15 ST3D_GraphicsEngine_SetActiveDisplay_Internal_New
0062c70b +03b Armada2.exe                                     ST3D_GraphicsEngine.SetActiveDisplay
00484892 +1f2 Armada2.exe                                     Program.GameOpenPreLoad
0048588b +10b Armada2.exe                                     Program.GameOpen
00487246 +166 Armada2.exe                                     Program.GameDoOne
00486b44 +544 Armada2.exe                                     Program.MainLoop
0047608d +11d Armada2.exe                                     _WinMain@16
5a9adab5 +029 FleetOpsHook.dll FleetOpsFunctionsHook 4977  +3 DebugException_Execute_New
5a9adf13 +26b FleetOpsHook.dll FleetOpsFunctionsHook 5097 +75 A2_WinMain
006734ef +12f Armada2.exe                                     _WinMainCRTStartup
76f93742 +022 KERNEL32.DLL                                    BaseThreadInitThunk

thread $c74:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $30e8:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $24d0:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $1444:
75683255 +25 USER32.dll    GetMessageW
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $3344:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $1f08:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $3200:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $f2c:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $2784:
75321280 +130 KERNELBASE.dll  WaitForMultipleObjectsEx
76f93742 +022 KERNEL32.DLL    BaseThreadInitThunk

thread $1454:
75321280 +130 KERNELBASE.dll  WaitForMultipleObjectsEx
76f93742 +022 KERNEL32.DLL    BaseThreadInitThunk

thread $2f18: <priority:7>
75318d03 +93 KERNELBASE.dll  WaitForSingleObjectEx
75318c5d +0d KERNELBASE.dll  WaitForSingleObject
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

thread $155c: <priority:2>
75318d03 +93 KERNELBASE.dll  WaitForSingleObjectEx
75318c5d +0d KERNELBASE.dll  WaitForSingleObject
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

thread $22fc: <priority:2>
753213c2 +92 KERNELBASE.dll  SleepEx
7532131a +0a KERNELBASE.dll  Sleep
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

thread $2658: <priority:1>
753213c2 +92 KERNELBASE.dll  SleepEx
7532131a +0a KERNELBASE.dll  Sleep
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

thread $2974:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

modules:
00330000 WINMMBASE.dll               6.2.10240.16384     C:\WINDOWS\SYSTEM32
00400000 Armada2.exe                 43.0.0.0            C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
02660000 D3DX81ab.dll                8.1.0.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
02710000 fmodex.dll                  0.4.34.2            C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
04fc0000 Tunngle.dll                 1.0.6.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
05530000 nvspcap.dll                 2.5.12.11           C:\WINDOWS\system32
05c10000 nvd3dum.dll                 10.18.13.5362       C:\WINDOWS\SYSTEM32
10000000 NetworkManager.dll                              C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
18000000 binkw32.dll                 1.9.16.0            C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
4a800000 Win2kDisableTaskSwitch.dll  3.2.7.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
50060000 nvSCPAPI.dll                7.17.13.5362        C:\Program Files (x86)\NVIDIA Corporation\3D Vision
50190000 d3dx9_43.dll                9.29.952.3111       C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\data
50390000 d3d9.dll                    6.2.10240.16392     C:\WINDOWS\SYSTEM32
50560000 d3d8.dll                    6.2.10240.16384     C:\WINDOWS\SYSTEM32
507b0000 MSVFW32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
507e0000 MSVCP60.dll                 7.0.10240.16384     C:\WINDOWS\SYSTEM32
50850000 AVIFIL32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
53e00000 SortWindows6Compat.dll      6.2.10240.16384     C:\WINDOWS\SYSTEM32
55a50000 twinapi.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
5a800000 FleetOpsHook.dll            3.2.7.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations
62250000 twinapi.appcore.dll         6.2.10240.16397     C:\WINDOWS\SYSTEM32
65390000 d3d8thk.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
66680000 sfc.dll                     6.2.10240.16384     C:\WINDOWS\SYSTEM32
67fa0000 AVRT.dll                    6.2.10240.16384     C:\WINDOWS\SYSTEM32
68330000 wdmaud.drv                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
6db40000 wintypes.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
6dc10000 AUDIOSES.DLL                6.2.10240.16397     C:\WINDOWS\SYSTEM32
6df30000 uiautomationcore.dll        7.2.10240.16397     C:\Windows\SYSTEM32
6e050000 tiptsf.dll                  6.2.10240.16384     C:\Program Files (x86)\Common Files\Microsoft Shared\Ink
6e9e0000 propsys.dll                 7.0.10240.16384     C:\WINDOWS\system32
6ec10000 nvapi.dll                   10.18.13.5362       C:\WINDOWS\system32
6ff40000 COMCTL32.dll                6.10.10240.16384    C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_3bccb1ff6bcd1849
70690000 midimap.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
706a0000 msacm32.drv                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
71750000 fwpuclnt.dll                6.2.10240.16384     C:\WINDOWS\System32
71860000 rasadhlp.dll                6.2.10240.16384     C:\Windows\System32
71870000 mdnsNSP.dll                 3.0.0.10            C:\Program Files (x86)\Bonjour
71b70000 ksuser.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
71bd0000 sxs.dll                     6.2.10240.16384     C:\WINDOWS\SYSTEM32
71c60000 AcLayers.DLL                6.2.10240.16384     C:\WINDOWS\AppPatch
71ee0000 urlmon.dll                  11.0.10240.16391    C:\WINDOWS\SYSTEM32
72040000 dwmapi.dll                  6.2.10240.16392     C:\WINDOWS\SYSTEM32
72060000 MSACM32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
72590000 apphelp.dll                 6.2.10240.16384     C:\WINDOWS\system32
72b30000 mswsock.dll                 6.2.10240.16384     C:\WINDOWS\system32
72d70000 iertutil.dll                11.0.10240.16391    C:\WINDOWS\SYSTEM32
73040000 sfc_os.DLL                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
73070000 USERENV.dll                 6.2.10240.16384     C:\Windows\SYSTEM32
737a0000 MPR.dll                     6.2.10240.16384     C:\WINDOWS\SYSTEM32
73970000 ondemandconnroutehelper.dll 6.2.10240.16384     C:\WINDOWS\SYSTEM32
73d80000 rsaenh.dll                  6.2.10240.16384     C:\WINDOWS\system32
73db0000 cryptsp.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
73f90000 DNSAPI.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74020000 WINHTTP.dll                 6.2.10240.16391     C:\WINDOWS\SYSTEM32
74180000 WINNSI.DLL                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74190000 IPHLPAPI.DLL                6.2.10240.16384     C:\WINDOWS\SYSTEM32
741c0000 wininet.dll                 11.0.10240.16391    C:\WINDOWS\SYSTEM32
744b0000 wsock32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
74920000 MMDevApi.dll                6.2.10240.16384     C:\WINDOWS\System32
749b0000 uxtheme.dll                 6.2.10240.16397     C:\WINDOWS\system32
74a60000 DSOUND.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74af0000 OLEACC.dll                  7.2.10240.16384     C:\Windows\SYSTEM32
74b50000 WINMM.dll                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
74c90000 DEVOBJ.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74cc0000 bcrypt.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74ce0000 WINSPOOL.DRV                6.2.10240.16384     C:\WINDOWS\SYSTEM32
74d50000 version.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
74d60000 bcryptPrimitives.dll        6.2.10240.16384     C:\WINDOWS\SYSTEM32
74dc0000 CRYPTBASE.dll               6.2.10240.16384     C:\WINDOWS\SYSTEM32
74dd0000 SspiCli.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
74df0000 RPCRT4.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74ea0000 WS2_32.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74f00000 CRYPT32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
75080000 shcore.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
75120000 comdlg32.dll                6.2.10240.16405     C:\WINDOWS\SYSTEM32
751e0000 MSASN1.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
751f0000 profapi.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
75200000 NSI.dll                     6.2.10240.16384     C:\WINDOWS\SYSTEM32
75270000 KERNELBASE.dll              6.2.10240.16384     C:\WINDOWS\SYSTEM32
753f0000 kernel.appcore.dll          6.2.10240.16384     C:\WINDOWS\SYSTEM32
75400000 clbcatq.dll                 2001.12.10941.16384 C:\WINDOWS\SYSTEM32
75490000 PSAPI.DLL                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
754a0000 IMM32.DLL                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
75530000 powrprof.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
75580000 shlwapi.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
75630000 IMAGEHLP.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
75650000 USER32.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
75790000 SHELL32.dll                 6.2.10240.16405     C:\WINDOWS\SYSTEM32
76b50000 WINTRUST.dll                6.2.10240.16385     C:\WINDOWS\SYSTEM32
76ba0000 CFGMGR32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
76be0000 OLEAUT32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
76e90000 sechost.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
76f00000 advapi32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
76f80000 KERNEL32.DLL                6.2.10240.16384     C:\WINDOWS\SYSTEM32
77070000 ole32.dll                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
77160000 MSCTF.dll                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
77280000 GDI32.dll                   6.2.10240.16390     C:\WINDOWS\SYSTEM32
773d0000 msvcrt.dll                  7.0.10240.16384     C:\WINDOWS\SYSTEM32
77490000 SETUPAPI.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
77640000 windows.storage.dll         6.2.10240.16405     C:\WINDOWS\SYSTEM32
77b20000 combase.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
77ce0000 ntdll.dll                   6.2.10240.16392     C:\WINDOWS\SYSTEM32

processes:
0000 Idle                         0 0   0
0004 System                       0 0   0
0208 smss.exe                     0 0   0
02a8 csrss.exe                    0 0   0
02fc wininit.exe                  0 0   0
0384 services.exe                 0 0   0
038c lsass.exe                    0 0   0
03f0 svchost.exe                  0 0   0
0190 svchost.exe                  0 0   0
0224 svchost.exe                  0 0   0
0250 svchost.exe                  0 0   0
04c4 nvvsvc.exe                   0 0   0
04d4 nvSCPAPISvr.exe              0 0   0
04fc svchost.exe                  0 0   0
0504 svchost.exe                  0 0   0
0560 WUDFHost.exe                 0 0   0
05a4 svchost.exe                  0 0   0
063c svchost.exe                  0 0   0
052c CTAudSvc.exe                 0 0   0
06f4 WTabletServicePro.exe        0 0   0
0808 AvastSvc.exe                 0 0   0   normal
08d4 spoolsv.exe                  0 0   0
0930 svchost.exe                  0 0   0
0984 afwServ.exe                  0 0   0   normal
0a40 svchost.exe                  0 0   0
0a48 svchost.exe                  0 0   0
0a50 ASGT.exe                     0 0   0
0a58 mDNSResponder.exe            0 0   0
0a60 AppleMobileDeviceService.exe 0 0   0
0a78 GfExperienceService.exe      0 0   0
0a80 AdobeUpdateService.exe       0 0   0
0a8c svchost.exe                  0 0   0
0ab4 officeclicktorun.exe         0 0   0
0b30 XSrvSetup.exe                0 0   0
0b64 LSSrvc.exe                   0 0   0
0b6c dasHost.exe                  0 0   0
0b7c mqsvc.exe                    0 0   0
0bdc svchost.exe                  0 0   0
0880 NvNetworkService.exe         0 0   0
08a4 NvStreamService.exe          0 0   0
0c54 svchost.exe                  0 0   0
0c64 svchost.exe                  0 0   0
0d50 svchost.exe                  0 0   0
0f18 SMSvcHost.exe                0 0   0
1074 WmiPrvSE.exe                 0 0   0
13d8 SMSvcHost.exe                0 0   0
19cc SearchIndexer.exe            0 0   0
21e4 iPodService.exe              0 0   0
06c4 svchost.exe                  0 0   0
19d4 NASvc.exe                    0 0   0
1904 svchost.exe                  0 0   0
1744 audiodg.exe                  0 0   0
0c80 csrss.exe                    2 0   0
26e4 winlogon.exe                 2 0   0
274c dwm.exe                      2 0   0
2968 nvxdsync.exe                 2 0   0
1ab4 nvvsvc.exe                   2 0   0
2370 sihost.exe                   2 4   23  normal       C:\Windows\System32
2028 SSDGuru.exe                  2 23  17  below normal C:\Program Files (x86)\OCZ Storage Solutions\SSD Guru
2008 taskhostw.exe                2 13  18  normal       C:\Windows\System32
29a0 RuntimeBroker.exe            2 38  35  normal       C:\Windows\System32
2994 GPUTweak.exe                 2 133 245 normal       C:\Program Files (x86)\ASUS\GPU Tweak
22e8 Wacom_TabletUser.exe         2 14  4   normal       C:\Program Files\Tablet\Wacom
1c38 WacomHost.exe                2 0   0
1e1c Wacom_Tablet.exe             2 0   0
1310 Wacom_TouchUser.exe          2 12  9   above normal C:\Program Files\Tablet\Wacom
19fc NvBackend.exe                2 4   9   normal       C:\Program Files (x86)\NVIDIA Corporation\Update Core
1dc8 explorer.exe                 2 661 443 normal       C:\Windows
0a88 Monitor.exe                  2 517 117 normal       C:\Program Files (x86)\ASUS\GPU Tweak
1bc8 ShellExperienceHost.exe      2 6   72  normal       C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy
24e8 TabTip.exe                   2 29  35  high         C:\Program Files\Common Files\microsoft shared\ink
0194 TabTip32.exe                 2 4   6   normal       C:\Program Files (x86)\Common Files\Microsoft Shared\Ink
29ac SettingSyncHost.exe          2 4   8   below normal C:\Windows\System32
26a4 nvtray.exe                   2 81  4   normal       C:\Program Files\NVIDIA Corporation\Display
2794 fontdrvhost.exe              2 0   0
0b50 NvStreamNetworkService.exe   0 0   0
0574 conhost.exe                  0 0   0
07e0 NvStreamUserAgent.exe        2 0   0
0370 conhost.exe                  2 0   0
26d8 RAVCpl64.exe                 2 57  17  normal       C:\Program Files\Realtek\Audio\HDA
0524 iTunesHelper.exe             2 4   9   normal       C:\Program Files\iTunes
2640 LogiOptions.exe              2 11  13  normal       C:\Program Files\Logitech\LogiOptions
1f58 LogiOptionsMgr.exe           2 13  30  normal       C:\ProgramData\LogiShrd\LogiOptions\Software\2.30.56
1fd0 LCore.exe                    2 36  46  normal       C:\Program Files\Logitech Gaming Software
1e60 LCDMedia.exe                 2 101 28  normal       C:\Program Files\Logitech Gaming Software\Applets
2ad0 LCDCountdown.exe             2 109 20  normal       C:\Program Files\Logitech Gaming Software\Applets
101c LCDClock.exe                 2 63  32  normal       C:\Program Files\Logitech Gaming Software\Applets
15d4 LCDPOP3.exe                  2 114 28  normal       C:\Program Files\Logitech Gaming Software\Applets
03ec LCDRSS.exe                   2 61  33  normal       C:\Program Files\Logitech Gaming Software\Applets
24ac LightScribeControlPanel.exe  2 45  19  normal       C:\Program Files (x86)\Common Files\LightScribe
05b8 ApplePhotoStreams.exe        2 21  17  normal       C:\Program Files (x86)\Common Files\Apple\Internet Services
2798 APSDaemon.exe                2 4   7   normal       C:\Program Files (x86)\Common Files\Apple\Apple Application Support
13cc iCloudServices.exe           2 31  20  normal       C:\Program Files (x86)\Common Files\Apple\Internet Services
1e6c CCleaner64.exe               2 62  33  below normal C:\Program Files\CCleaner
23ec iCloudDrive.exe              2 21  42  normal       C:\Program Files (x86)\Common Files\Apple\Internet Services
17e8 OneDrive.exe                 2 27  26  normal       C:\Users\Mark\AppData\Local\Microsoft\OneDrive
16c4 GammaTray.exe                2 8   13  normal       C:\Program Files\MagicTune Premium
2bec nusb3mon.exe                 2 13  8   normal       C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application
26d4 hpqtra08.exe                 2 10  20  normal       C:\Program Files (x86)\HP\Digital Imaging\bin
1b24 Dropbox.exe                  2 49  43  normal       C:\Users\Mark\AppData\Roaming\Dropbox\bin
1190 hpwuschd2.exe                2 4   4   normal       C:\Program Files (x86)\HP\HP Software Update
2848 Creative Cloud.exe           2 106 47  normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC
02e4 AdobeIPCBroker.exe           2 4   7   normal       C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC
24bc AvastUI.exe                  2 139 54  normal       C:\Program Files\AVAST Software\Avast
293c unsecapp.exe                 2 4   4   normal       C:\Windows\System32\wbem
28c4 Adobe Desktop Service.exe    2 165 26  normal       C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS
22c8 Adobe CEF Helper.exe         2 302 4   normal       C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX
2e80 jusched.exe                  2 4   2   normal       C:\Program Files (x86)\Common Files\Java\Java Update
2ebc Ctxfihlp.exe                 2 15  14  normal       C:\Windows\SysWOW64
2f2c hpqste08.exe                 2 4   10  normal       C:\Program Files (x86)\HP\Digital Imaging\bin
2f84 hpqbam08.exe                 2 4   4   normal       C:\Program Files (x86)\HP\Digital Imaging\bin
2f90 CoreSync.exe                 2 4   10  normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync
2c88 svchost.exe                  0 0   0
1930 CCLibrary.exe                2 4   1   normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary
2eb4 node.exe                     2 4   2   normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\libs
1de4 conhost.exe                  2 17  1   normal       C:\Windows\System32
2ea4 hpqgpc01.exe                 2 27  5   normal       C:\Program Files (x86)\HP\Digital Imaging\bin
328c Shareaza.exe                 2 410 336 normal       C:\Program Files\Shareaza
32d8 dllhost.exe                  2 4   3   normal       C:\Windows\System32
3354 WindowsThumbnail.exe         2 4   4   normal       C:\Program Files\Shareaza
3078 dllhost.exe                  2 4   3   normal       C:\Windows\System32
30e4 ApplicationFrameHost.exe     2 15  3   normal       C:\Windows\System32
1908 svchost.exe                  2 4   2   normal       C:\Windows\System32
33ec SystemSettingsBroker.exe     2 4   0   normal       C:\Windows\System32
1f48 Steam.exe                    2 562 92  normal       C:\Program Files (x86)\Steam
050c steamwebhelper.exe           2 9   18  normal       C:\Program Files (x86)\Steam\bin
0710 steamwebhelper.exe           2 4   1   normal       C:\Program Files (x86)\Steam\bin
0704 taskhostw.exe                2 63  11  normal       C:\Windows\System32
205c SpeechRuntime.exe            2 4   2   normal       C:\Windows\System32\Speech_OneCore\Common
0928 firefox.exe                  2 88  92  normal       C:\Program Files (x86)\Mozilla Firefox
1804 SearchUI.exe                 2 19  53  normal       C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy
291c msdt.exe                     2 135 108 normal       C:\Windows\System32
3108 sdiagnhost.exe               2 4   4   normal       C:\Windows\System32
2194 conhost.exe                  2 23  8   normal       C:\Windows\System32
2810 Armada2.exe                  2 4   1   normal       C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
0308 Armada2.exe                  2 73  55  normal       C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data

hardware:
+ {14b62f50-3f15-11dd-ae16-0800200c9a66}
  - VSX-1122
  - XW-SMA4 21C9CF
+ {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}
  - Fax
  - HP Photosmart C309a series
  - HP Photosmart C309a series fax
  - Microsoft Print to PDF
  - Microsoft XPS Document Writer
  - Root Print Queue
  - Send To OneNote 2013
+ {36fc9e60-c465-11cf-8056-444553540000}
  - Generic USB Hub
  - Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3A
  - Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3C
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A34
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A35
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A36
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A37
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A38
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A39
  - Renesas USB 3.0 eXtensible Host Controller - 0.96 (Microsoft)
  - USB Composite Device
  - USB Composite Device
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub (xHCI)
+ {4d36e965-e325-11ce-bfc1-08002be10318}
  - HL-DT-ST BDDVDRW CH08LS10
+ {4d36e966-e325-11ce-bfc1-08002be10318}
  - ACPI x64-based PC
+ {4d36e967-e325-11ce-bfc1-08002be10318}
  - OCZ-VECTOR
  - WDC WD1001FALS-00E3A0
+ {4d36e968-e325-11ce-bfc1-08002be10318}
  - NVIDIA GeForce GTX 980 (driver 10.18.13.5362)
+ {4d36e96a-e325-11ce-bfc1-08002be10318}
  - Standard SATA AHCI Controller
  - Standard SATA AHCI Controller
+ {4d36e96b-e325-11ce-bfc1-08002be10318}
  - HID Keyboard Device
  - HID Keyboard Device
  - HID Keyboard Device
+ {4d36e96c-e325-11ce-bfc1-08002be10318}
  - Creative SB X-Fi (driver 6.0.240.8)
  - NVIDIA High Definition Audio (driver 1.3.34.3)
  - NVIDIA Virtual Audio Device (Wave Extensible) (WDM) (driver 1.2.30.0)
  - Realtek High Definition Audio (driver 6.0.1.7535)
+ {4d36e96e-e325-11ce-bfc1-08002be10318}
  - SyncMaster PX2370 /PX23720Plus (Digital) (driver 3.0.0.0)
+ {4d36e96f-e325-11ce-bfc1-08002be10318}
  - HID-Compliant Mouse (driver 3.3.1.0)
  - HID-compliant mouse
  - HID-compliant mouse
+ {4d36e971-e325-11ce-bfc1-08002be10318}
  - Photosmart C309a series
+ {4d36e972-e325-11ce-bfc1-08002be10318}
  - Realtek PCIe GBE Family Controller (driver 9.1.401.2015)
  - TAP-Win32 Adapter V9 (driver 9.0.0.9)
+ {4d36e97b-e325-11ce-bfc1-08002be10318}
  - GIGABYTE GBB36X Controller (driver 1.17.51.2)
  - GIGABYTE GBB36X Controller (driver 1.17.51.2)
  - GIGABYTE GBB36X Controller (driver 1.17.51.2)
  - Microsoft Storage Spaces Controller
+ {4d36e97d-e325-11ce-bfc1-08002be10318}
  - ACPI Fixed Feature Button
  - ACPI Power Button
  - Composite Bus Enumerator
  - Direct memory access controller
  - High Definition Audio Controller
  - High Definition Audio Controller
  - High precision event timer
  - Intel(R) 5520/5500/X58 I/O Hub to ESI Port - 3405 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500 Physical and Link Layer Registers Port 1 - 3427 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500 Routing and Protocol Layer Register Port 1 - 3428 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub Control Status and RAS Registers - 3423 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub GPIO and Scratch Pad Registers - 3422 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub I/OxAPIC Interrupt Controller - 342D - 342d (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 1 - 3408 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 2 - 3409 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A - 340a (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub System Management Registers - 342E - 342e (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 Physical and Link Layer Registers Port 0 - 3425 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 Routing and Protocol Layer Registers Port 0 - 3426 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 Trusted Execution Technology Registers - 342F - 342f (driver 9.1.9.1003)
  - Legacy device
  - Logitech Gaming Virtual Bus Enumerator (driver 8.70.161.0)
  - LPC Controller
  - Marvell 91xx Config Device (driver 1.0.0.1027)
  - Microsoft ACPI-Compliant System
  - Microsoft Basic Display Driver
  - Microsoft Basic Render Driver
  - Microsoft System Management BIOS Driver
  - Microsoft Virtual Drive Enumerator
  - Microsoft Windows Management Interface for ACPI
  - Motherboard resources
  - Motherboard resources
  - Motherboard resources
  - NDIS Virtual Network Adapter Enumerator
  - Numeric data processor
  - PCI Bus
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - Plug and Play Software Device Enumerator
  - Programmable interrupt controller
  - Remote Desktop Device Redirector Bus
  - SM Bus Controller
  - System board
  - System CMOS/real time clock
  - System speaker
  - System timer
  - UMBus Root Bus Enumerator
  - Volume Manager
+ {50127dc3-0f36-415e-a6cc-4cb3be910b65}
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
+ {533c5b84-ec70-11d2-9505-00c04f79deaf}
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
+ {62f9c741-b25a-46ce-b54c-9bccce08b6f2}
  - Microsoft Device Association Root Enumerator
  - Microsoft GS Wavetable Synth
  - Microsoft IPv4 IPv6 Transition Adapter Bus
  - Microsoft Radio Device Enumeration Bus
  - Plex Media Server: RedQueen
  - Synthesizer
  - Synthesizer
  - WAN Connection Device
  - WAN Device
+ {6bdd1fc1-810f-11d0-bec7-08002be2092f}
  - Texas Instruments 1394 OHCI Compliant Host Controller
+ {6bdd1fc6-810f-11d0-bec7-08002be2092f}
  - HP Photosmart C309a (driver 8.0.0.0)
+ {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
  - HID-compliant consumer control device
  - HID-compliant consumer control device
  - HID-compliant digitizer
  - HID-compliant pen
  - HID-compliant system controller
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - Logitech Gaming Virtual Keyboard (driver 8.70.161.0)
  - Logitech Gaming Virtual Mouse (driver 8.70.161.0)
  - USB Input Device
  - USB Input Device
  - USB Input Device
  - USB Input Device
  - USB Input Device (Logitech Download Assistant) (driver 1.10.77.0)
  - Wacom Tablet (driver 3.3.1.0)
+ {b6a945de-134c-4279-9a66-61a63c6f0dc5}
  - R7500 (Gateway)
+ {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
  - "What U Hear" (Creative SB X-Fi)
  - CD Audio (Realtek High Definition Audio)
  - Digital-In (Creative SB X-Fi)
  - Realtek Digital Input (Realtek High Definition Audio)
  - Realtek Digital Output (Realtek High Definition Audio)
  - Realtek Digital Output(Optical) (Realtek High Definition Audio)
  - SPDIF Out (Creative SB X-Fi)
  - Speakers (Creative SB X-Fi)
  - Stereo Mix (Realtek High Definition Audio)
+ {eec5ad98-8080-425f-922a-dabf3de3f69a}
  - WPD FileSystem Volume Driver

cpu registers:
eax = 009f70f0
ebx = 0019f4fc
ecx = 00000000
edx = 009f70f0
esi = 00a74800
edi = 009f70f0
eip = 0615f610
esp = 0019f46c
ebp = 0019f480

stack dump:
0019f46c  ed df 2c 06 c8 7b 8d 05 - 30 df 2c 06 00 00 00 00  ..,..{..0.,.....
0019f47c  00 00 00 00 dc f4 19 00 - f1 56 57 50 00 48 a7 00  .........VWP.H..
0019f48c  9c f4 19 00 a0 55 57 50 - a0 e4 a2 00 05 40 00 80  .....UWP.....@..
0019f49c  b0 56 07 10 00 00 00 00 - 00 00 00 00 58 f5 19 00  .V..........X...
0019f4ac  c0 00 9c 00 73 03 00 70 - 00 00 00 00 7f 07 00 00  ....s..p........
0019f4bc  70 84 9c 00 00 01 00 00 - 69 92 dc 06 90 f5 19 00  p.......i.......
0019f4cc  40 0d d5 77 9b 75 0c 77 - 20 e6 77 27 34 c9 5c 50  @..w.u.w..w'4.\P
0019f4dc  e8 f5 19 00 9c ca 5c 50 - fc f4 19 00 d4 e4 a2 00  ......\P........
0019f4ec  00 00 00 00 a0 e4 a2 00 - 00 00 00 00 02 00 00 00  ................
0019f4fc  c8 7b 8d 05 50 f5 19 00 - 02 00 00 00 01 00 00 00  .{..P...........
0019f50c  00 00 00 86 04 00 00 00 - 16 00 00 00 08 00 00 00  ................
0019f51c  00 00 00 00 00 00 00 00 - 00 00 00 00 01 00 00 00  ................
0019f52c  54 f5 19 00 8c 11 c8 71 - 00 00 9c 00 01 00 00 00  T......q........
0019f53c  08 00 00 00 16 00 00 00 - 00 00 00 00 05 40 00 80  .............@..
0019f54c  05 40 00 80 80 07 00 00 - 38 04 00 00 00 00 00 00  .@......8.......
0019f55c  00 00 00 00 00 00 00 00 - 00 00 00 00 38 dd 09 10  ............8...
0019f56c  80 07 00 00 38 04 00 00 - 00 00 00 00 00 00 00 00  ....8...........
0019f57c  00 00 00 00 00 00 00 00 - 48 de 09 10 00 00 00 00  ........H.......
0019f58c  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
0019f59c  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................

disassembling:
[...]
5a9c07e0 56   mov     edx, [$5a9e9300]
5a9c07e6      mov     [esi+$10], eax
5a9c07e9 57   mov     dword ptr [esi+$14], 1
5a9c07e6 56
5a9c07f0    loc_5a9c07f0:
5a9c07f0 61   mov     eax, [ebp+$20]
5a9c07f3      call    -$1b9178 ($5a807680)   ; System.@IntfClear
5a9c07f3
5a9c07f8      push    eax
5a9c07f9      push    esi
5a9c07fa      mov     eax, [ebp+$18]
5a9c07fd      push    eax
5a9c07fe      mov     eax, [ebp+$14]
5a9c0801      push    eax
5a9c0802      mov     eax, [ebp+$10]
5a9c0805      push    eax
5a9c0806      push    ebx
5a9c0807      mov     eax, [ebp+8]
5a9c080a      push    eax
5a9c080b      mov     eax, [eax]
5a9c080d    > call    dword ptr [eax+$3c]
5a9c080d
5a9c0810 62   pop     esi
5a9c0811      pop     ebx
5a9c0812      pop     ebp
5a9c0813      ret     $1c

date/time         : 2015-08-02, 16:50:08, 600ms
computer name     : MEGABITCH
user name         : Mark
registered owner  : Windows User
operating system  : Windows NT New Tablet PC x64 build 9200
system language   : English
system up time    : 22 hours 35 minutes
program up time   : 6 seconds
processors        : 8x Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz
physical memory   : 2898/6142 MB (free/total)
free disk space   : (C:) 182.35 GB
display mode      : 1920x1080, 32 bit
process id        : $28fc
allocated memory  : 108.15 MB
executable        : Armada2.exe
current module    : FleetOpsHook.dll
module date/time  : 2012-10-20 13:40
version           : 3.2.7
callstack crc     : $0af0f610, $458454a8, $458454a8
exception number  : 1
exception class   : EAccessViolation
exception message : Access violation at address 0AF0F610 in module 'nvd3dum.dll'. Read of address 000000EC.

main thread ($2df8):
0af0f610 +000 nvd3dum.dll
5a9c080d +0a5 FleetOpsHook.dll Direct3D8Hook           61 +23 Direct3D8_CreateDevice_Callback
006237a9 +1d9 Armada2.exe                                     ST3D_DeviceDirectX8.CreateDevice
006233d6 +016 Armada2.exe                                     ST3D_DeviceDirectX8.CreateRenderSurfaces
006215c3 +063 Armada2.exe                                     ST3D_Device.DeviceOpen
0062b8e4 +0c4 Armada2.exe                                     ST3D_GraphicsEngine.DeviceOpen
0062c622 +272 Armada2.exe                                     ST3D_GraphicsEngine.SetActiveDisplay_Internal
5a8e0a3c +014 FleetOpsHook.dll ArmadaFunctions       5868  +2 TST3D_GraphicsEngine.SetActiveDisplay_Internal
5a9af123 +063 FleetOpsHook.dll FleetOpsFunctionsHook 5673 +15 ST3D_GraphicsEngine_SetActiveDisplay_Internal_New
0062c70b +03b Armada2.exe                                     ST3D_GraphicsEngine.SetActiveDisplay
00484892 +1f2 Armada2.exe                                     Program.GameOpenPreLoad
0048588b +10b Armada2.exe                                     Program.GameOpen
00487246 +166 Armada2.exe                                     Program.GameDoOne
00486b44 +544 Armada2.exe                                     Program.MainLoop
0047608d +11d Armada2.exe                                     _WinMain@16
5a9adab5 +029 FleetOpsHook.dll FleetOpsFunctionsHook 4977  +3 DebugException_Execute_New
5a9adf13 +26b FleetOpsHook.dll FleetOpsFunctionsHook 5097 +75 A2_WinMain
006734ef +12f Armada2.exe                                     _WinMainCRTStartup
76f93742 +022 KERNEL32.DLL                                    BaseThreadInitThunk

thread $474:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $15b0:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $3058:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $246c:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $33a0:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $4700:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $4708:
76f93742 +22 KERNEL32.DLL  BaseThreadInitThunk

thread $30e0:
75321280 +130 KERNELBASE.dll  WaitForMultipleObjectsEx
76f93742 +022 KERNEL32.DLL    BaseThreadInitThunk

thread $185c:
75321280 +130 KERNELBASE.dll  WaitForMultipleObjectsEx
76f93742 +022 KERNEL32.DLL    BaseThreadInitThunk

thread $45ac: <priority:7>
75318d03 +93 KERNELBASE.dll  WaitForSingleObjectEx
75318c5d +0d KERNELBASE.dll  WaitForSingleObject
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

thread $45a8: <priority:2>
75318d03 +93 KERNELBASE.dll  WaitForSingleObjectEx
75318c5d +0d KERNELBASE.dll  WaitForSingleObject
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

thread $45a4: <priority:2>
753213c2 +92 KERNELBASE.dll  SleepEx
7532131a +0a KERNELBASE.dll  Sleep
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

thread $45dc: <priority:1>
753213c2 +92 KERNELBASE.dll  SleepEx
7532131a +0a KERNELBASE.dll  Sleep
7743725c +8c msvcrt.dll      _endthreadex
76f93742 +22 KERNEL32.DLL    BaseThreadInitThunk

modules:
00380000 WINMMBASE.dll               6.2.10240.16384     C:\WINDOWS\SYSTEM32
00400000 Armada2.exe                 43.0.0.0            C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
023b0000 D3DX81ab.dll                8.1.0.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
02480000 fmodex.dll                  0.4.34.2            C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
02590000 d3dx9_43.dll                9.29.952.3111       C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
04d20000 Tunngle.dll                 1.0.6.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
062f0000 nvspcap.dll                 2.5.12.11           C:\WINDOWS\system32
0a9c0000 nvd3dum.dll                 10.18.13.5362       C:\WINDOWS\SYSTEM32
0f6e0000 d3d9.dll                    6.2.10240.16392     C:\WINDOWS\SYSTEM32
0f8e0000 nvSCPAPI.dll                7.17.13.5362        C:\Program Files (x86)\NVIDIA Corporation\3D Vision
10000000 NetworkManager.dll                              C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
18000000 binkw32.dll                 1.9.16.0            C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
4a800000 Win2kDisableTaskSwitch.dll  3.2.7.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
500e0000 MSVFW32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
50110000 d3d8.dll                    6.2.10240.16384     C:\WINDOWS\SYSTEM32
50220000 MSVCP60.dll                 7.0.10240.16384     C:\WINDOWS\SYSTEM32
506e0000 AVIFIL32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
55a50000 twinapi.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
5a800000 FleetOpsHook.dll            3.2.7.0             C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations
62250000 twinapi.appcore.dll         6.2.10240.16397     C:\WINDOWS\SYSTEM32
65390000 d3d8thk.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
67fa0000 AVRT.dll                    6.2.10240.16384     C:\WINDOWS\SYSTEM32
680d0000 dxgi.dll                    6.2.10240.16392     C:\WINDOWS\system32
68330000 wdmaud.drv                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
6db40000 wintypes.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
6dc10000 AUDIOSES.DLL                6.2.10240.16397     C:\WINDOWS\SYSTEM32
6df30000 uiautomationcore.dll        7.2.10240.16397     C:\Windows\SYSTEM32
6e050000 tiptsf.dll                  6.2.10240.16384     C:\Program Files (x86)\Common Files\Microsoft Shared\Ink
6e9e0000 propsys.dll                 7.0.10240.16384     C:\WINDOWS\system32
6ec10000 nvapi.dll                   10.18.13.5362       C:\WINDOWS\system32
6ff40000 COMCTL32.dll                6.10.10240.16384    C:\WINDOWS\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10240.16384_none_3bccb1ff6bcd1849
70690000 midimap.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
706a0000 msacm32.drv                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
71750000 fwpuclnt.dll                6.2.10240.16384     C:\WINDOWS\System32
71860000 rasadhlp.dll                6.2.10240.16384     C:\Windows\System32
71870000 mdnsNSP.dll                 3.0.0.10            C:\Program Files (x86)\Bonjour
71b70000 ksuser.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
71bd0000 sxs.dll                     6.2.10240.16384     C:\WINDOWS\SYSTEM32
71ee0000 urlmon.dll                  11.0.10240.16391    C:\WINDOWS\SYSTEM32
72040000 dwmapi.dll                  6.2.10240.16392     C:\WINDOWS\SYSTEM32
72060000 MSACM32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
72b30000 mswsock.dll                 6.2.10240.16384     C:\WINDOWS\system32
72d70000 iertutil.dll                11.0.10240.16391    C:\WINDOWS\SYSTEM32
73070000 USERENV.dll                 6.2.10240.16384     C:\Windows\SYSTEM32
73970000 ondemandconnroutehelper.dll 6.2.10240.16384     C:\WINDOWS\SYSTEM32
73d80000 rsaenh.dll                  6.2.10240.16384     C:\WINDOWS\system32
73db0000 cryptsp.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
73f90000 DNSAPI.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74020000 WINHTTP.dll                 6.2.10240.16391     C:\WINDOWS\SYSTEM32
74180000 WINNSI.DLL                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74190000 IPHLPAPI.DLL                6.2.10240.16384     C:\WINDOWS\SYSTEM32
741c0000 wininet.dll                 11.0.10240.16391    C:\WINDOWS\SYSTEM32
744b0000 wsock32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
74920000 MMDevApi.dll                6.2.10240.16384     C:\WINDOWS\System32
749b0000 uxtheme.dll                 6.2.10240.16397     C:\WINDOWS\system32
74a60000 DSOUND.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74af0000 OLEACC.dll                  7.2.10240.16384     C:\Windows\SYSTEM32
74b50000 WINMM.dll                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
74c90000 DEVOBJ.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74cc0000 bcrypt.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74d50000 version.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
74d60000 bcryptPrimitives.dll        6.2.10240.16384     C:\WINDOWS\SYSTEM32
74dc0000 CRYPTBASE.dll               6.2.10240.16384     C:\WINDOWS\SYSTEM32
74dd0000 SspiCli.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
74df0000 RPCRT4.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74ea0000 WS2_32.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
74f00000 CRYPT32.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
75080000 shcore.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
75120000 comdlg32.dll                6.2.10240.16405     C:\WINDOWS\SYSTEM32
751e0000 MSASN1.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
751f0000 profapi.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
75200000 NSI.dll                     6.2.10240.16384     C:\WINDOWS\SYSTEM32
75270000 KERNELBASE.dll              6.2.10240.16384     C:\WINDOWS\SYSTEM32
753f0000 kernel.appcore.dll          6.2.10240.16384     C:\WINDOWS\SYSTEM32
75400000 clbcatq.dll                 2001.12.10941.16384 C:\WINDOWS\SYSTEM32
75490000 PSAPI.DLL                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
754a0000 IMM32.dll                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
75530000 powrprof.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
75580000 SHLWAPI.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
75630000 IMAGEHLP.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
75650000 USER32.dll                  6.2.10240.16384     C:\WINDOWS\SYSTEM32
75790000 SHELL32.dll                 6.2.10240.16405     C:\WINDOWS\SYSTEM32
76b50000 WINTRUST.dll                6.2.10240.16385     C:\WINDOWS\SYSTEM32
76ba0000 cfgmgr32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
76be0000 oleaut32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
76e90000 sechost.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
76f00000 advapi32.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
76f80000 KERNEL32.DLL                6.2.10240.16384     C:\WINDOWS\SYSTEM32
77070000 ole32.dll                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
77160000 MSCTF.dll                   6.2.10240.16384     C:\WINDOWS\SYSTEM32
77280000 GDI32.dll                   6.2.10240.16390     C:\WINDOWS\SYSTEM32
773d0000 msvcrt.dll                  7.0.10240.16384     C:\WINDOWS\SYSTEM32
77490000 SETUPAPI.dll                6.2.10240.16384     C:\WINDOWS\SYSTEM32
77640000 windows.storage.dll         6.2.10240.16405     C:\WINDOWS\SYSTEM32
77b20000 combase.dll                 6.2.10240.16384     C:\WINDOWS\SYSTEM32
77ce0000 ntdll.dll                   6.2.10240.16392     C:\WINDOWS\SYSTEM32

processes:
0000 Idle                         0 0   0
0004 System                       0 0   0
0208 smss.exe                     0 0   0
02a8 csrss.exe                    0 0   0
02fc wininit.exe                  0 0   0
0384 services.exe                 0 0   0
038c lsass.exe                    0 0   0
03f0 svchost.exe                  0 0   0
0190 svchost.exe                  0 0   0
0224 svchost.exe                  0 0   0
0250 svchost.exe                  0 0   0
04c4 nvvsvc.exe                   0 0   0
04d4 nvSCPAPISvr.exe              0 0   0
04fc svchost.exe                  0 0   0
0504 svchost.exe                  0 0   0
0560 WUDFHost.exe                 0 0   0
05a4 svchost.exe                  0 0   0
063c svchost.exe                  0 0   0
052c CTAudSvc.exe                 0 0   0
06f4 WTabletServicePro.exe        0 0   0
0808 AvastSvc.exe                 0 0   0
08d4 spoolsv.exe                  0 0   0
0930 svchost.exe                  0 0   0
0984 afwServ.exe                  0 0   0
0a40 svchost.exe                  0 0   0
0a48 svchost.exe                  0 0   0
0a50 ASGT.exe                     0 0   0
0a58 mDNSResponder.exe            0 0   0
0a60 AppleMobileDeviceService.exe 0 0   0
0a78 GfExperienceService.exe      0 0   0
0a80 AdobeUpdateService.exe       0 0   0
0a8c svchost.exe                  0 0   0
0ab4 officeclicktorun.exe         0 0   0
0b30 XSrvSetup.exe                0 0   0
0b64 LSSrvc.exe                   0 0   0
0b6c dasHost.exe                  0 0   0
0b7c mqsvc.exe                    0 0   0
0bdc svchost.exe                  0 0   0
0880 NvNetworkService.exe         0 0   0
08a4 NvStreamService.exe          0 0   0
0c54 svchost.exe                  0 0   0
0c64 svchost.exe                  0 0   0
0d50 svchost.exe                  0 0   0
0f18 SMSvcHost.exe                0 0   0
1074 WmiPrvSE.exe                 0 0   0
13d8 SMSvcHost.exe                0 0   0
19cc SearchIndexer.exe            0 0   0
21e4 iPodService.exe              0 0   0
06c4 svchost.exe                  0 0   0
19d4 NASvc.exe                    0 0   0
1904 svchost.exe                  0 0   0
0c80 csrss.exe                    2 0   0
26e4 winlogon.exe                 2 0   0
274c dwm.exe                      2 0   0
2968 nvxdsync.exe                 2 0   0
1ab4 nvvsvc.exe                   2 0   0
2370 sihost.exe                   2 4   23  normal       C:\Windows\System32
2028 SSDGuru.exe                  2 0   0
2008 taskhostw.exe                2 13  18  normal       C:\Windows\System32
29a0 RuntimeBroker.exe            2 38  57  normal       C:\Windows\System32
2994 GPUTweak.exe                 2 0   0
22e8 Wacom_TabletUser.exe         2 14  4   normal       C:\Program Files\Tablet\Wacom
1c38 WacomHost.exe                2 0   0
1e1c Wacom_Tablet.exe             2 0   0
1310 Wacom_TouchUser.exe          2 0   0
19fc NvBackend.exe                2 4   9   normal       C:\Program Files (x86)\NVIDIA Corporation\Update Core
1dc8 explorer.exe                 2 665 452 normal       C:\Windows
0a88 Monitor.exe                  2 0   0
1bc8 ShellExperienceHost.exe      2 6   50  normal       C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy
24e8 TabTip.exe                   2 0   0
0194 TabTip32.exe                 2 0   0
29ac SettingSyncHost.exe          2 4   8   below normal C:\Windows\System32
26a4 nvtray.exe                   2 81  4   normal       C:\Program Files\NVIDIA Corporation\Display
2794 fontdrvhost.exe              2 0   0
0b50 NvStreamNetworkService.exe   0 0   0
0574 conhost.exe                  0 0   0
07e0 NvStreamUserAgent.exe        2 0   0
0370 conhost.exe                  2 0   0
26d8 RAVCpl64.exe                 2 57  17  normal       C:\Program Files\Realtek\Audio\HDA
0524 iTunesHelper.exe             2 4   9   normal       C:\Program Files\iTunes
2640 LogiOptions.exe              2 0   0
1f58 LogiOptionsMgr.exe           2 13  30  normal       C:\ProgramData\LogiShrd\LogiOptions\Software\2.30.56
1fd0 LCore.exe                    2 36  46  normal       C:\Program Files\Logitech Gaming Software
1e60 LCDMedia.exe                 2 101 28  normal       C:\Program Files\Logitech Gaming Software\Applets
2ad0 LCDCountdown.exe             2 109 20  normal       C:\Program Files\Logitech Gaming Software\Applets
101c LCDClock.exe                 2 63  32  normal       C:\Program Files\Logitech Gaming Software\Applets
15d4 LCDPOP3.exe                  2 114 28  normal       C:\Program Files\Logitech Gaming Software\Applets
03ec LCDRSS.exe                   2 61  33  normal       C:\Program Files\Logitech Gaming Software\Applets
24ac LightScribeControlPanel.exe  2 45  19  normal       C:\Program Files (x86)\Common Files\LightScribe
05b8 ApplePhotoStreams.exe        2 28  19  normal       C:\Program Files (x86)\Common Files\Apple\Internet Services
2798 APSDaemon.exe                2 4   7   normal       C:\Program Files (x86)\Common Files\Apple\Apple Application Support
13cc iCloudServices.exe           2 31  22  normal       C:\Program Files (x86)\Common Files\Apple\Internet Services
1e6c CCleaner64.exe               2 0   0
23ec iCloudDrive.exe              2 21  42  normal       C:\Program Files (x86)\Common Files\Apple\Internet Services
17e8 OneDrive.exe                 2 27  26  normal       C:\Users\Mark\AppData\Local\Microsoft\OneDrive
16c4 GammaTray.exe                2 8   13  normal       C:\Program Files\MagicTune Premium
2bec nusb3mon.exe                 2 13  8   normal       C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application
26d4 hpqtra08.exe                 2 10  20  normal       C:\Program Files (x86)\HP\Digital Imaging\bin
1b24 Dropbox.exe                  2 49  43  normal       C:\Users\Mark\AppData\Roaming\Dropbox\bin
1190 hpwuschd2.exe                2 4   4   normal       C:\Program Files (x86)\HP\HP Software Update
2848 Creative Cloud.exe           2 106 47  normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC
02e4 AdobeIPCBroker.exe           2 4   7   normal       C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC
24bc AvastUI.exe                  2 0   0
293c unsecapp.exe                 2 0   0
28c4 Adobe Desktop Service.exe    2 165 27  normal       C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS
22c8 Adobe CEF Helper.exe         2 302 4   normal       C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX
2e80 jusched.exe                  2 4   2   normal       C:\Program Files (x86)\Common Files\Java\Java Update
2ebc Ctxfihlp.exe                 2 15  14  normal       C:\Windows\SysWOW64
2f2c hpqste08.exe                 2 4   10  normal       C:\Program Files (x86)\HP\Digital Imaging\bin
2f84 hpqbam08.exe                 2 4   4   normal       C:\Program Files (x86)\HP\Digital Imaging\bin
2f90 CoreSync.exe                 2 4   10  normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync
2c88 svchost.exe                  0 0   0
1930 CCLibrary.exe                2 4   1   normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary
2eb4 node.exe                     2 4   2   normal       C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\libs
1de4 conhost.exe                  2 17  1   normal       C:\Windows\System32
2ea4 hpqgpc01.exe                 2 27  5   normal       C:\Program Files (x86)\HP\Digital Imaging\bin
328c Shareaza.exe                 2 410 336 normal       C:\Program Files\Shareaza
32d8 dllhost.exe                  2 4   3   normal       C:\Windows\System32
3354 WindowsThumbnail.exe         2 4   4   normal       C:\Program Files\Shareaza
3078 dllhost.exe                  2 4   3   normal       C:\Windows\System32
30e4 ApplicationFrameHost.exe     2 55  41  normal       C:\Windows\System32
1908 svchost.exe                  2 4   3   normal       C:\Windows\System32
33ec SystemSettingsBroker.exe     2 4   0   normal       C:\Windows\System32
1f48 Steam.exe                    2 0   0
050c steamwebhelper.exe           2 0   0
0710 steamwebhelper.exe           2 0   0
0704 taskhostw.exe                2 0   0
205c SpeechRuntime.exe            2 4   2   normal       C:\Windows\System32\Speech_OneCore\Common
0928 firefox.exe                  2 129 119 normal       C:\Program Files (x86)\Mozilla Firefox
1804 SearchUI.exe                 2 19  54  normal       C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy
047c RemindersServer.exe          2 4   2   normal       C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy
2734 WinStore.Mobile.exe          2 11  27  normal       C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.7.22.0_x64__8wekyb3d8bbwe
1ce8 Video.UI.exe                 2 11  31  normal       C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.11821.0_x64__8wekyb3d8bbwe
24dc Microsoft.Photos.exe         2 4   38  normal       C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.721.12350.0_x64__8wekyb3d8bbwe
2148 HxTsr.exe                    2 4   11  normal       C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6020.42011.0_x64__8wekyb3d8bbwe
089c HxMail.exe                   2 27  47  normal       C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6020.42011.0_x64__8wekyb3d8bbwe
2304 backgroundTaskHost.exe       2 4   6   normal       C:\Windows\System32
4558 Armada2.exe                  2 4   1   normal       C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
28fc Armada2.exe                  2 70  52  normal       C:\Program Files (x86)\Activision\Star Trek Armada II Fleet Operations\Data
1bb8 audiodg.exe                  0 0   0

hardware:
+ {14b62f50-3f15-11dd-ae16-0800200c9a66}
  - VSX-1122
  - XW-SMA4 21C9CF
+ {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}
  - Fax
  - HP Photosmart C309a series
  - HP Photosmart C309a series fax
  - Microsoft Print to PDF
  - Microsoft XPS Document Writer
  - Root Print Queue
  - Send To OneNote 2013
+ {36fc9e60-c465-11cf-8056-444553540000}
  - Generic USB Hub
  - Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3A
  - Intel(R) ICH10 Family USB Enhanced Host Controller - 3A3C
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A34
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A35
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A36
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A37
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A38
  - Intel(R) ICH10 Family USB Universal Host Controller - 3A39
  - Renesas USB 3.0 eXtensible Host Controller - 0.96 (Microsoft)
  - USB Composite Device
  - USB Composite Device
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub (xHCI)
+ {4d36e965-e325-11ce-bfc1-08002be10318}
  - HL-DT-ST BDDVDRW CH08LS10
+ {4d36e966-e325-11ce-bfc1-08002be10318}
  - ACPI x64-based PC
+ {4d36e967-e325-11ce-bfc1-08002be10318}
  - OCZ-VECTOR
  - WDC WD1001FALS-00E3A0
+ {4d36e968-e325-11ce-bfc1-08002be10318}
  - NVIDIA GeForce GTX 980 (driver 10.18.13.5362)
+ {4d36e96a-e325-11ce-bfc1-08002be10318}
  - Standard SATA AHCI Controller
  - Standard SATA AHCI Controller
+ {4d36e96b-e325-11ce-bfc1-08002be10318}
  - HID Keyboard Device
  - HID Keyboard Device
  - HID Keyboard Device
+ {4d36e96c-e325-11ce-bfc1-08002be10318}
  - Creative SB X-Fi (driver 6.0.240.8)
  - NVIDIA High Definition Audio (driver 1.3.34.3)
  - NVIDIA Virtual Audio Device (Wave Extensible) (WDM) (driver 1.2.30.0)
  - Realtek High Definition Audio (driver 6.0.1.7535)
+ {4d36e96e-e325-11ce-bfc1-08002be10318}
  - SyncMaster PX2370 /PX23720Plus (Digital) (driver 3.0.0.0)
+ {4d36e96f-e325-11ce-bfc1-08002be10318}
  - HID-Compliant Mouse (driver 3.3.1.0)
  - HID-compliant mouse
  - HID-compliant mouse
+ {4d36e971-e325-11ce-bfc1-08002be10318}
  - Photosmart C309a series
+ {4d36e972-e325-11ce-bfc1-08002be10318}
  - Realtek PCIe GBE Family Controller (driver 9.1.401.2015)
  - TAP-Win32 Adapter V9 (driver 9.0.0.9)
+ {4d36e97b-e325-11ce-bfc1-08002be10318}
  - GIGABYTE GBB36X Controller (driver 1.17.51.2)
  - GIGABYTE GBB36X Controller (driver 1.17.51.2)
  - GIGABYTE GBB36X Controller (driver 1.17.51.2)
  - Microsoft Storage Spaces Controller
+ {4d36e97d-e325-11ce-bfc1-08002be10318}
  - ACPI Fixed Feature Button
  - ACPI Power Button
  - Composite Bus Enumerator
  - Direct memory access controller
  - High Definition Audio Controller
  - High Definition Audio Controller
  - High precision event timer
  - Intel(R) 5520/5500/X58 I/O Hub to ESI Port - 3405 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500 Physical and Link Layer Registers Port 1 - 3427 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500 Routing and Protocol Layer Register Port 1 - 3428 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub Control Status and RAS Registers - 3423 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub GPIO and Scratch Pad Registers - 3422 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub I/OxAPIC Interrupt Controller - 342D - 342d (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 1 - 3408 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 2 - 3409 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub PCI Express Root Port 3 - 340A - 340a (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 I/O Hub System Management Registers - 342E - 342e (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 Physical and Link Layer Registers Port 0 - 3425 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 Routing and Protocol Layer Registers Port 0 - 3426 (driver 9.1.9.1003)
  - Intel(R) 7500/5520/5500/X58 Trusted Execution Technology Registers - 342F - 342f (driver 9.1.9.1003)
  - Legacy device
  - Logitech Gaming Virtual Bus Enumerator (driver 8.70.161.0)
  - LPC Controller
  - Marvell 91xx Config Device (driver 1.0.0.1027)
  - Microsoft ACPI-Compliant System
  - Microsoft Basic Display Driver
  - Microsoft Basic Render Driver
  - Microsoft System Management BIOS Driver
  - Microsoft Virtual Drive Enumerator
  - Microsoft Windows Management Interface for ACPI
  - Motherboard resources
  - Motherboard resources
  - Motherboard resources
  - NDIS Virtual Network Adapter Enumerator
  - Numeric data processor
  - PCI Bus
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - PCI-to-PCI Bridge
  - Plug and Play Software Device Enumerator
  - Programmable interrupt controller
  - Remote Desktop Device Redirector Bus
  - SM Bus Controller
  - System board
  - System CMOS/real time clock
  - System speaker
  - System timer
  - UMBus Root Bus Enumerator
  - Volume Manager
+ {50127dc3-0f36-415e-a6cc-4cb3be910b65}
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
  - Intel(R) Core(TM) i7 CPU         920  @ 2.67GHz
+ {533c5b84-ec70-11d2-9505-00c04f79deaf}
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
+ {62f9c741-b25a-46ce-b54c-9bccce08b6f2}
  - Microsoft Device Association Root Enumerator
  - Microsoft GS Wavetable Synth
  - Microsoft IPv4 IPv6 Transition Adapter Bus
  - Microsoft Radio Device Enumeration Bus
  - Plex Media Server: RedQueen
  - Synthesizer
  - Synthesizer
  - WAN Connection Device
  - WAN Device
+ {6bdd1fc1-810f-11d0-bec7-08002be2092f}
  - Texas Instruments 1394 OHCI Compliant Host Controller
+ {6bdd1fc6-810f-11d0-bec7-08002be2092f}
  - HP Photosmart C309a (driver 8.0.0.0)
+ {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
  - HID-compliant consumer control device
  - HID-compliant consumer control device
  - HID-compliant digitizer
  - HID-compliant pen
  - HID-compliant system controller
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - HID-compliant vendor-defined device
  - Logitech Gaming Virtual Keyboard (driver 8.70.161.0)
  - Logitech Gaming Virtual Mouse (driver 8.70.161.0)
  - USB Input Device
  - USB Input Device
  - USB Input Device
  - USB Input Device
  - USB Input Device (Logitech Download Assistant) (driver 1.10.77.0)
  - Wacom Tablet (driver 3.3.1.0)
+ {b6a945de-134c-4279-9a66-61a63c6f0dc5}
  - R7500 (Gateway)
+ {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
  - "What U Hear" (Creative SB X-Fi)
  - CD Audio (Realtek High Definition Audio)
  - Digital-In (Creative SB X-Fi)
  - Realtek Digital Input (Realtek High Definition Audio)
  - Realtek Digital Output (Realtek High Definition Audio)
  - Realtek Digital Output(Optical) (Realtek High Definition Audio)
  - SPDIF Out (Creative SB X-Fi)
  - Speakers (Creative SB X-Fi)
  - Stereo Mix (Realtek High Definition Audio)
+ {eec5ad98-8080-425f-922a-dabf3de3f69a}
  - WPD FileSystem Volume Driver

cpu registers:
eax = 0a695030
ebx = 0019f5ec
ecx = 00000000
edx = 0a695030
esi = 0a680000
edi = 0a695030
eip = 0af0f610
esp = 0019f55c
ebp = 0019f570

stack dump:
0019f55c  ed df 07 0b 30 a6 98 00 - 30 df 07 0b 00 00 00 00  ....0...0.......
0019f56c  00 00 00 00 cc f5 19 00 - f1 56 12 50 00 00 68 0a  .........V.P..h.
0019f57c  8c f5 19 00 a0 55 12 50 - 00 90 67 0a 05 40 00 80  .....U.P..g..@..
0019f58c  d0 7b 68 0a 00 00 00 00 - 01 00 00 00 48 00 62 0a  .{h.........H.b.
0019f59c  40 00 62 0a 38 9f 60 06 - 7f 07 00 00 01 00 00 00  @.b.8.`.........
0019f5ac  fe ff ff ff 2c c7 d1 00 - 80 82 68 0a 63 3b 00 00  ....,.....h.c;..
0019f5bc  00 00 00 00 00 00 89 00 - a2 d7 3b c1 34 c9 17 50  ..........;.4..P
0019f5cc  d8 f6 19 00 9c ca 17 50 - ec f5 19 00 34 90 67 0a  .......P....4.g.
0019f5dc  00 00 00 00 00 90 67 0a - 00 00 00 00 02 00 00 00  ......g.........
0019f5ec  30 a6 98 00 40 f6 19 00 - 02 00 00 00 01 00 00 00  0...@...........
0019f5fc  00 00 00 86 04 00 00 00 - 16 00 00 00 08 00 00 00  ................
0019f60c  00 00 00 00 00 00 00 00 - 00 00 00 00 01 00 00 00  ................
0019f61c  00 00 00 00 03 00 00 00 - 00 00 00 00 01 00 00 00  ................
0019f62c  08 00 00 00 16 00 00 00 - 00 00 00 00 05 40 00 80  .............@..
0019f63c  05 40 00 80 80 07 00 00 - 38 04 00 00 00 00 00 00  .@......8.......
0019f64c  00 00 00 00 00 00 00 00 - 00 00 00 00 60 10 6a 0a  ............`.j.
0019f65c  80 07 00 00 38 04 00 00 - 00 00 00 00 00 00 00 00  ....8...........
0019f66c  00 00 00 00 00 00 00 00 - c8 10 6a 0a 00 00 00 00  ..........j.....
0019f67c  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
0019f68c  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................

disassembling:
[...]
5a9c07e0 56   mov     edx, [$5a9e9300]
5a9c07e6      mov     [esi+$10], eax
5a9c07e9 57   mov     dword ptr [esi+$14], 1
5a9c07e6 56
5a9c07f0    loc_5a9c07f0:
5a9c07f0 61   mov     eax, [ebp+$20]
5a9c07f3      call    -$1b9178 ($5a807680)   ; System.@IntfClear
5a9c07f3
5a9c07f8      push    eax
5a9c07f9      push    esi
5a9c07fa      mov     eax, [ebp+$18]
5a9c07fd      push    eax
5a9c07fe      mov     eax, [ebp+$14]
5a9c0801      push    eax
5a9c0802      mov     eax, [ebp+$10]
5a9c0805      push    eax
5a9c0806      push    ebx
5a9c0807      mov     eax, [ebp+8]
5a9c080a      push    eax
5a9c080b      mov     eax, [eax]
5a9c080d    > call    dword ptr [eax+$3c]
5a9c080d
5a9c0810 62   pop     esi
5a9c0811      pop     ebx
5a9c0812      pop     ebp
5a9c0813      ret     $1c

