High Resolution Date & Time: 16.08.2020 14:49:53,9702498 Event Class: File System Operation: ReadFile Result: 0xC0000474 TID: 19064 Duration: 0.0879397 Offset: 3.041.732.309 Length: 3.668.640 0 FLTMGR.SYS FltDecodeParameters + 0x1e3b 0xfffff8066987608b C:\WINDOWS\System32\drivers\FLTMGR.SYS 1 FLTMGR.SYS FltDecodeParameters + 0x240 0xfffff80669874490 C:\WINDOWS\System32\drivers\FLTMGR.SYS 2 FLTMGR.SYS FltQueryInformationFile + 0x415 0xfffff806698ab405 C:\WINDOWS\System32\drivers\FLTMGR.SYS 3 ntoskrnl.exe NtReadFile + 0x37f 0xfffff8066aa11eff C:\WINDOWS\system32\ntoskrnl.exe 4 ntoskrnl.exe setjmpex + 0x7be8 0xfffff8066a7ef878 C:\WINDOWS\system32\ntoskrnl.exe 5 ntdll.dll ZwReadFile + 0x14 0x7ffa345ebe84 C:\Windows\System32\ntdll.dll 6 KernelBase.dll ReadFile + 0x73 0x7ffa32038a53 C:\Windows\System32\KernelBase.dll 7 [app] High Resolution Date & Time: 16.08.2020 14:49:54,0582473 Event Class: File System Operation: ReadFile Result: SUCCESS TID: 19064 Duration: 0.0459045 Offset: 3.041.732.309 Length: 3.668.640 Priority: Normal 0 FLTMGR.SYS FltDecodeParameters + 0x1e3b 0xfffff8066987608b C:\WINDOWS\System32\drivers\FLTMGR.SYS 1 FLTMGR.SYS FltDecodeParameters + 0x18e7 0xfffff80669875b37 C:\WINDOWS\System32\drivers\FLTMGR.SYS 2 FLTMGR.SYS FltDecodeParameters + 0x8f6 0xfffff80669874b46 C:\WINDOWS\System32\drivers\FLTMGR.SYS 3 FLTMGR.SYS FltDecodeParameters + 0x66b 0xfffff806698748bb C:\WINDOWS\System32\drivers\FLTMGR.SYS 4 ntoskrnl.exe IofCallDriver + 0x55 0xfffff8066a646d45 C:\WINDOWS\system32\ntoskrnl.exe 5 ntoskrnl.exe NtDeviceIoControlFile + 0xd88 0xfffff8066aa0eeb8 C:\WINDOWS\system32\ntoskrnl.exe 6 ntoskrnl.exe NtReadFile + 0x599 0xfffff8066aa12119 C:\WINDOWS\system32\ntoskrnl.exe 7 ntoskrnl.exe setjmpex + 0x7be8 0xfffff8066a7ef878 C:\WINDOWS\system32\ntoskrnl.exe 8 ntdll.dll ZwReadFile + 0x14 0x7ffa345ebe84 C:\Windows\System32\ntdll.dll 9 KernelBase.dll ReadFile + 0x73 0x7ffa32038a53 C:\Windows\System32\KernelBase.dll 10 [app]