MZ@ !L!This program cannot be run in DOS mode. $`LPPP)DRYyP)D S)D [)D E)DQ)DX)DQ)DQ)D QRichPPEL-3Z! &({ mc@A ̡0`<p8.text~ `.data @.idata@@.rsrc0@@.reloc`@Bh@D@@@=ġPuȡH (H@,Xht(,@Xdt(d@ @x@xpK`L0OOZpZlx@xpx{|@@ @Unknown exceptionbad allocationbad array new lengthGuidLevelFlagsCircularSizeWERDIAG: Verifier.dll loaded. Enabling Autoverifier. WERDIAG: ProcessStartupSettingsUpdate failed. NTSTATUS: %08X WERDIAG: FDR will be enabled WERDIAG: Stopping Autoverifier WERDIAG: Stopping FDR WERDIAG: AutoVerifier: Failed getting current user registry path. NTSTATUS: %08X WERDIAG: AutoVerifier: Path is: %S Software\Microsoft\Windows\Windows Error Reporting\Plugins\AutoverifierWERDIAG: AutoVerifier: Subkey is: %S WERDIAG: AutoVerifier: could not open settings key. NTSTATUS: %08X AutoverifierEnabledWERDIAG: AutoVerifier: could not read enabled flag. NTSTATUS: %08X WERDIAG: AutoVerifier: Enabled flag: %u \Registry\Machine\Software\Microsoft\Windows\Windows Error ReportingWERDIAG: Failed opening registry key. NTSTATUS: %08X ErrorPortWERDIAG: PluginsNtGetRegStringValue failed. NTSTATUS: %08X WERDIAG: SignalStartWerSvc failed NTSTATUS: %08X WERDIAG: NtQuerySysInfo(ErrorPortTimeouts) failed. NTSTATUS: %08X WERDIAG: WaitForWerSvc failed. NTSTATUS: %08X WERDIAG: WaitForWerSvc timed out, failing the call with NTSTATUS: %08X WERDIAG: RtlAllocateAndInitializeSid failed. NTSTATUS: %08X WERDIAG: NtAlpcConnectPort failed. NTSTATUS: %08X WERDIAG: NtAlpcConnectPort timed out, failing the call with NTSTATUS %08X WERDIAG: NtAlpcSendWaitReceivePort failed. NTSTATUS: %08X WERDIAG: Service returned failure status. NTSTATUS: %08X WERDIAG: Failed getting current user registry path. NTSTATUS: %08X Software\Microsoft\Windows NT\CurrentVersion\Image File Execution OptionsWERDIAG: Handle to registry key is null WERDIAG: Failed getting process name. NTSTATUS: %08X AutoverifierAutoVerifierCountWERDIAG: Failed reading key value. NTSTATUS: %08X WERDIAG: Failed writing registry value. NTSTATUS: %08X OriginalBucketAutoVerifierTimeDurationWERDIAG: Failed creating timer thread. NTSTATUS: %08X WERDIAG: Failed deleting autovefier enabled flag. NTSTATUS: %08X WERDIAG: Failed writing key value \Registry\Machine\SYSTEM\CurrentControlSet\Control\Session ManagerImageExecutionOptionsWERDIAG: Not disabling HKCU IFEO look-up because its statically enabled. WERDIAG: Thread failed to wait for the specified time; Disabling autoverifier. NTSTATUS: %08X verifier.dllWERDIAG: Failed obtaining verifier.dll handle. NTSTATUS: %08X VerifierForceNormalHeapWERDIAG: Failed obtaining VerifierForceNormalHeap function address. NTSTATUS: %08X WERDIAG: Failed switching to normal heap mode. NTSTATUS: %08X WERDIAG: Verifier switched to light mode \KernelObjects\SystemErrorPortReadyu: AnT DWERDIAG: AppRecorder: Failed creating AppRecorder thread. NTSTATUS: %08X Local\{DF2B7FCA-C5B0-4638-A4AD-59F7F76CE540}WERDIAG: AppRecorder: ProcessStartupSettingsUpdate failed. HRESULT: %08X %d-AppRecorderEnabledWERDIAG: AppRecorder: Failed creating apprecorder event name string. HRESULT: %08X WERDIAG: AppRecorder: Failed creating event. Win32 error: %08X WERDIAG: AppRecorder: Failed to get temp folder path. Win32 error: %08X WERWERDIAG: AppRecorder: Failed to get temp file name. Win32 error: %08X .AppRecorderData.xmlWERDIAG: AppRecorder: Failed to create temp file name. HRESULT: %08X WERDIAG: AppRecorder: Failed to create apprecorder temp file. Win32 error: %08X WERDIAG: AppRecorder: Failed to register the log file with WER. HRESULT: %08X WERDIAG: AppRecorder: Failed to get system folder path. Win32 error: %08X \psr.exeWERDIAG: AppRecorder: Failed to create UAR executable image path. HRESULT: %08X %s /start /output %s /gui 0 /recordpid %d /stopevent %s /sc 0 /noarc 1 /waitonpid 1WERDIAG: AppRecorder: Failed to create UAR process command line. HRESULT: %08X WERDIAG: AppRecorder: Failed to create UAR process. Win32 error: %08X WERDIAG: AppRecorder: Failed getting current user registry path. NTSTATUS: %08X Software\Microsoft\Windows\Windows Error Reporting\Plugins\AppRecorderWERDIAG: AppRecorder: AppRecorder settings key is not present. NTSTATUS: %08X AppRecorderEnabledWERDIAG: AppRecorder: AppRecorder enabled flag is not present. NTSTATUS: %08X AppRecorderCountWERDIAG: AppRecorder: Failed to get current process name. Win32 error: %08X Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\LayersWERDIAG: AppRecorder: Failed to open App Recorder layer key. NTSTATUS: %08X WERDIAG: AppRecorder: Failed to get application appcompat layers. NTSTATUS: %08X AppRecorderWERDIAG: AppRecorder: Failed to update application appcompat layers. NTSTATUS: %08X WERDIAG: AppRecorder: Failed to update App Recorder run count. NTSTATUS: %08X WERDIAG: Invalid params WERDIAG: Arithmetic overflow WERDIAG: OOM WERDIAG: Failed creating FDR thread. NTSTATUS: %08X WERDIAG: GetTraceLoggerHandle failed WERDIAG: GetTraceEnableLevel failed WERDIAG: GetTraceEnableFlags failed WERDIAG: Internal provider enabled for Level %u, Flags %lu WERDIAG: Tracing disabled for internal provider WERDIAG: Provider not registered. RegisterTraceGuids failed with %d WERDIAG: Internal provider: FDR did not start yet; Message lost WERDIAG: Failed determining string length. HRESULT: %08X WERDIAG: Memory allocation for event failed. WERDIAG: Internal provider failed to log message. Win32 error: %08X WERDIAG: Internal log message WERDIAG: Failed reading the session settings of updating the process ID. HRESULT: %08X WERDIAG: Failed parsing settings string. HRESULT: %08X WERDIAG: Failed to enable logging. HRESULT: %08X FDR startedWERDIAG: Failed enabling trace provider. Win32 error: %08X FDR Tracing SessionWERDIAG: Invalid arguments: Log path cannot be null WERDIAG: Unable to allocate %d bytes for properties structure. WERDIAG: Failed copying string buffer. HRESULT: %08X WERDIAG: StartTrace failed for the internal provider. Win32 error: %08X WERDIAG: Failed enabling internal trace provider. Win32 error: %08X WERDIAG: Invalid args: The pair string cannot be null WERDIAG: Failed obtaining string length. HRESULT: %08X WERDIAG: Invalid format: expected '='. WERDIAG: Invalid args WERDIAG: Failed getting string length. HRESULT: %08X WERDIAG: Failed copying string. HRESULT: %08X WERDIAG: Invalid arguments: Buffer or separator character cannot be null WERDIAG: Invalid arguments: String buffer cannot be null WERDIAG: Failed obtaining the length of the input string. HRESULT: %08X WERDIAG: Out of resources allocating memory for string buffer WERDIAG: Failed making a copy of the original settings string. HRESULT: %08X WERDIAG: Failed copying characters to pair buffer. HRESULT: %08X WERDIAG: Invalid argument: GUID structure cannot be null WERDIAG: Invalid arguments: pointer to settings structure cannot be null WERDIAG: Invalid argument: settins string cannot be NULL WERDIAG: Failed extracting next token from settings string. HRESULT: %08X WERDIAG: Failed extracting next pair from the current token. HRESULT: %08X WERDIAG: Error parsing current pair; Ignoring pair and continuing parsing. HRESULT: %08X WERDIAG: Failed updating settings; Parsing continues. HRESULT: %08X WERDIAG: Log file size was not specified; Logging will not be enabled WERDIAG: Failed reading session settings, cannot delete log file. HRESULT: %08X %s_%dWERDIAG: Failed appending process ID to log file name. HRESULT: %08X WERDIAG: Failed deleting file. NTSTATUS: %08X WERDIAG: Session settings and/or FDR layer were not deleted successfuly. HRESULT: %08X Software\Microsoft\Windows\Windows Error Reporting\Plugins\FDR\CurrentSessionAppPathWERDIAG: Failed reading string value from registry. NTSTATUS: %08X FDRWERDIAG: UtilRemoveAppCompatLayerFromList failed. HRESULT: %08X WERDIAG: PluginsNtSetRegStringValue failed. NTSTATUS: %08X WERDIAG: Failed opening session registry key. NTSTATUS: %08X WERDIAG: Invalid arguments; pointer to string buffer cannot be null SessionSettingsWERDIAG: Failed reading FDR settings value from registry. NTSTATUS: %08X LogPathWERDIAG: Failed reading log file path value from registry. NTSTATUS: %08X WERDIAG: Get current process ID failed ProcIDWERDIAG: Failed writing process ID to registry. NTSTATUS: %08X WERDIAG: StartFDR failed 0x%x FDR_FLUSH_MESSAGE%s-%dWERDIAG: Failed concatenating strings. HRESULT: %08X WERDIAG: Failed creating event. Win32 error: %08X WERDIAG: Failed setting event. Win32 error: %08X WERDIAG: Flushing done, done signal sent WERDIAG: Unexpected event response or failed waiting for event f9vKtdgDFԓ@+WERDIAG: Invalid parameters WERDIAG: Failed obtaining string length. NTSTATUS: %08X WERDIAG: RtlSizeTAdd failed. NTSTATUS: %08X WERDIAG: RtlSizeTAdd operation failed. NTSTATUS: %08X WERDIAG: Insufficient resources %s\%sWERDIAG: Failed concatenating strings. NTSTATUS: %08X WERDIAG: Key: %S WERDIAG: Out of resources allocating memory for key information structure WERDIAG: Failed extracting registry value %S. NTSTATUS: %08X WERDIAG: Failed writing to value %S. NTSTATUS: %08X WERDIAG: Failed writing to value %S. NTSTATUS %08X WERDIAG: NtQueryInformationProcess failed. NTSTATUS: %08X WERDIAG: Invalid size returned. NTSTATUS: %08X WERDIAG: Failed copying string. NTSTATUS: %08X WERDIAG: Registry value %S is not of type string WERDIAG: Failed determining string buffer length. NTSTATUS: %08X ntdll.dllMicrosoftTelemetryAssertTriggeredUM-3Z.=1-3Z >2-3Z$@4-3ZA5@tҋl=,=81!$'ltP *A@@s P'RSDS cN$f˼&WerDiagController.pdbGCTL.rdata$brc,.rdata$r$brc(.CRT$XCA,.CRT$XCZ0.CRT$XIA4.CRT$XIC<.CRT$XIZ@.CRT$XPAD.CRT$XPZH.CRT$XTAL.CRT$XTZPp.gfids*.rdata@=.rdata$sxdataT=|.rdata$voltmd=8.rdata$zzzdbgA.rtc$IAA A.rtc$IZZA.rtc$TAAA .rtc$TZZ AI.text$mn.text$x0.xdata$x .edata,.data$brc,`.data$r$brc4.data$rs$brc`.data .bss.idata$5ġ.00cfg̡.idata$2p.idata$3.idata$4HZ .idata$6`.rsrc$01`.rsrc$02 cN$f˼&Znpy\R?-3ZUV3FW;QuTȡ  =tDhDjW` yPh|jW`5hjh`% i'luZ95u.hjh` tBP\%2=u)hjh`YY%u M_^]̋U} t} u=ؘu9ؘuU M] ̋USVWE3W]PfEXy PhS{uhljh`Wh jh` E3GPSu,yPhH뭋MEP.yPh9}DVhjh`9]tEPHSEPL9]t u\_^[̋UjhdPG3ʼnESVWPEd3ۉ]  EPS3ɉ]S(fEA+y Vh P0y Vh} y Vh<gSjPjsy VhpD/ y Vh(;uSPh PLtPPSSSSSSSjjEPly Vh0Džtꉅ3ҍEPSSSShSPPPpy Vhp;uSPhu 1hPhjP@ hhZ󥃥8PhDžPhjPDž0=@ hhZjPDžPhPjPhStx5t-39}h0Sh`Vh3Sh`Ét Qt\tP t \t 9?YƋMd Y_^[M34h,tB3ۉ]]]]W]fEfE3EhfSP> EعЖPXyWhpSh`uE3PSuܺA'EPHyWh뼋EuhLSh` f=u+y WhxzEM躰QPSu'xE캰PuSX'wMEP-)y Wh]v!MCP)y Wh$jMEP\,uxVԖ-x Ж1CVAMEP|(yWhjh`}vQjhig3Wu@ȖEPhhȖhpKWWWWWj̖=yWh딃w1u|u|byPhjh`3tV<Y}t u\}t u\}t u\?j?3}}}EEW}PfEXyVhpWh`E캐PWujY_%yVhɋM캌W(yh,Wh` PE3PWWPA%x2MEP&x}thjh` n}tEPHWEPL}t u\}t u\>̋U SVWuW3WfEfEyPhXWS`hEPLEPEPWWyVhWS`ahEPEPWEPuyVh0uujġ֋yVhhWS` _^[̋U 3ʼnEE M-VuЖWRWRPQPuȁNȋ89t+)1CVAt UPW M_3^.̃9t1̃9t1O9Ỹ9t1\̋UtLwDVW}++tft fuҍA_E3Ʌ^fE t3f]̋U0VWjFXjHfE3XfEEEE؍EPhEEP}ԉ}܉}}hx7tƹEU3ɍEDPWudu\_^̋U3ʼnESVWjE3P38S@PWxx9]tSSSSSSWTjXI3}SSEPh@PN_E3;M^3%?[&-̋USVW;t30{t s03}u𫫫_^[̋U VW3ufEtRMAvQ0WEPEPVhOVVVVVjyWhPVh`_MQvQ0^̋U 3ĉ$ SVW3ۍD$ jDSPw63|$ 3f$WShfD$tf$f$f$WjSSu @iyPh Sh`dp $hL hPCyWhx Sh`$PSSSNwPh $Ph(uPh!D$hPSh\!$PuPhh!oD$hP h!L$ly Wh!;ShjSjh@$PHwPh(" P0jjD$pPy Wh"$xWPuPh"h#׍$|+y Wh0#$P\PlPD$pP$Ph#$hPy Wh0$BL$D$ DoD$PD$$PSSSSSS$P$Pdu5Ph$Sh`NxL$FvV0$ _^[3(]̋USVWE3W}PfEXyPh$Wh`FE3PWuC %yPh%̋MEP&lyPh(&9]D9}tEPHWEPL9}t u\_^[̋U43ʼnESV33WfWP@fXyPh$Sh`# %PSyPh%ËPx&myPh(&렋k|hPSHu4Ph&Sh`Nq&PSjYy Phx'Py Ph'Sh` Off;u+ Nj Ah(P uQt@PYt7PYuf9uۍSC D;r!3fVBCG;v)+t }PQ }PAPVP4 3f9PPLPtPHSPLtV/Yt \t \M_^3[8%ËV|zPh8(Sh`@]HPx&APh(̋USVWwz΋f8tu3WɋEЋ+#tQ΍{+t(+}+t4ft f2HuBE3f3ɺzEW_^[]̋UE Vt==w6S]3WxEPuWSV1x;wu z3f{_[WtM3f^]̋USVW3}}sj[Jff;u+W] B;j3Zh QM-YYtujW- 3;tP-Y;uh)Wh`fj EZEf;uMEEf9tEt3f9t jYfEjht5V u"Fftj Zf;u;t v 3f9Fuft!jXf3@Ej Zfl3f(h(Wh` ;tP,Yh(Wh` W_^[̋U VW3EPE}PWhlWWWWWWjfEyVh,)Wh`_^̋UEtWfh*u,Ėuhd)jh` ^SRP$؄uh)5Ė5(uh)jh` PPh)jh`[3]̋UQQVW(E09P3@WW8xEPjh@9WhpZ} tPhP*Wh`_^̋SQQUkl$ ĖVWu h*Et,PyPh*jh`EhE6W*uYYj0jV<*ƋM09f8 M@,}Qht,xu襥@@04Pm.uV5Ė50tPhH+jW`h+jW`V)1h+jh` _3^][̋U,S3VWh PEE(, $P<) EjHYPEP%uyWh+jh`?EPyWh,ՋVyWh@,QQ3tV(Y}t u(Y_^[̋UQS3V3EW9v[{uG$G P7wj@3GtQh,jh`FE@E;r_@^[̋SQQUkl$(3VEW $9Kuh,Qh` WKEPy Wh*gE,PxEMhEEHzPE'uYYjxjVN'E}؉3F,BV( @9MExs}u؍uF@FpxNl΋@FIu_3ɸzENE3^f] ̋UtwhuQWt3f]̋UQUS3ۅt:Vf9tuW3WE_t t+2^u Wt[̋U8SVW3҉EfEUUW}] t Q\E9uMEPyWhp9jh`6MEPx΋EE;Ex;rv׍M0 }t uYuh:Vh` uuh8:WVy WhD:XVEPL}+Wh98Wh9(PEPLuh|:jh`E 3ɉEЃEEEԋE@M܉M tP\EPWSy Wh3t"VYhP9Rh` _^[ ̋USVWڋ3WfEMESEPLhjtYYtEEPjVjEPWx~u M3F 4WSh:jh`h:3Vh` t"VYhP9Qh` _^[̋U VWWfEtItEWEPLjEPjjEPVyVWh;jh`3hP9jh` _^̋USVWWfEمtntjutcWEPLe΍Qff;Eu+MPVj3PEPS3yVWhT;Ph`hP9jh` _^[̋U3ʼnEVW33hfWP+ WhPj+jyVh;Wh`ff;vff;v Vh;3ҋfHF\t/t :t;wRWy Vh;\M_3^̋US3ډEWfEEVW>6SEPLhh?YYEPhVjEPWyWSh:jh`~t Sh$<jh`UMQN 0yWhX<΋Ex;rQ׍M]P]}t ucY uh$07F Py Wh;w3,Wh9c3h:jh` t"V YhP9Ph` _^[̋UE Vt==w6S]3WxEPuWSx;wu 3f{_[ tM3f^]̋UQS3Vut?w7…t f9tuW3 E_t t+Љu  t^[̋U$eEVPh<jDtP}tJh<u@t6ME܃eMMMPE EEEġ^ HHHH3̸ ̸(HHHH3̋UE t3t tt3@0[/uuY}PY] jh jYaE]e=@@tMXh<h0 YYu)Ft h,h(_ YY@2ۈ]E=uC>tVYtu ju6ġ03@]u3Y3Md Y_^[jyjhȌ03gH03FueGEu=@ui&%@e7juYY3ɄDuE"ƋMd Y_^[ËuuvYËujj hH} u9=03et t]1]SWuuSWuuSWuauu"uSPuISVuRSVuptuHSWu5ut5SWuJ$MQ0hpxuu uËe3uEƋMd Y_^[̋UV5u3@uu uġ^] ̋U} uuu u ] ; űUEWPfEE3EEh1E`1EEP|EM3E3E3̋ VWN@;tu&;uO@u G ȉ _ ^h88h8 YBH$H@HH̋UEVH<AQAk(;tM ;J r BB ;r (;u3^]Ë̋VLt dDP;t3u2^ð^t&PqYt2|jY u2 u  ̋Uu} uuMPuġUuu YY]\t hHY, j Y ̋U}ua( u2] u j Y]̋U=`t]Vutubt&u"hHDYuhT5Yt+20 H L P T X \`^]jjheMZf9u]<PEuL f9u>E+PQgYYt'x$|!EE3Ɂ8ËeE2Md Y_^[̋Ut}u 3D]̋U=at} uuS uK YY]̸ܘ̋U$VjttM)j$jP |xffftfpflfhEEDž@jPEjPZE E@EEEEjEEP u tj Y^̃%d̋SV A A;sW>t ġ׃;r_^[̋SVAA;sW>t ġ׃;r_^[h@d5D$l$l$+SVW1E3PeuEEEEdËMd Y__^[]Q̋UVu6?uuu Vh|h^]̋Uju h \PX]̋U$jttjY)h d`\5X=Tff tfPfLf%Hf-DxElEpE|pth lxjXkǀ|jXk LjX Lh̋U%$ j te3SVW3ɍ}S[wO3ɉW E܋}EGenuE5ineIEE5ntelE3@S[]܉E E ljsKS uCE%?=t#=`t=pt=Pt=`t=pu===MjXM9E|03S[]܉sKMS ]t=]tytq3ЉEUEMj^#;uW t; #;uEM#;u @5_^[33@39%% %%%%%%%Ġ%Ƞ%̠%Р%Ԡ%%%%̋U]̋UjhҋdPQSVW3PEdeue&Y3Md Y_^[̋U uYtu<̐T$B J3`"OW_g","pyuzhzR{q{@,"<L , @H  d -3ZfHT``L0OZ|WerDiagController.dllQueryOriginalBucketStartAppRecorderStartFDR,0.?AVbad_alloc@std@@0.?AVexception@std@@0.?AVbad_array_new_length@std@@0.?AVtype_info@@N@Dԧh֪Ȫx|fTR>x "^ޥ 4PtƦҦܦکTHvJ`2ʬ&>Vtʭ"TbvĮخ (:J>b 0<f|ܣXب8"Ltģv@̤ЩH("ԣʫP00(Pp 8Ĥج@ԧh֪Ȫx|fTR>x "^ޥ 4PtƦҦܦکTHvJ`2ʬ&>Vtʭ"TbvĮخ (:J>8_initterm9_initterm_eapi-ms-win-crt-runtime-l1-1-0.dll_o___std_exception_copy_o___std_exception_destroy_o___std_type_info_destroy_list_o___stdio_common_vswprintf_o__callnewh_o__cexit_o__configure_narrow_argv_o__execute_onexit_tablec_o__initialize_narrow_environmentd_o__initialize_onexit_table_o__seh_filter_dll_o__wcsicmp_o__wcsnicmpb_o__wtoi_o_free_o_isspace_o_mallocmemset2_except_handler4_commonapi-ms-win-crt-private-l1-1-0.dllapi-ms-win-crt-string-l1-1-0.dllQueryPerformanceCounter GetCurrentProcessIdGetCurrentThreadIdGetSystemTimeAsFileTimeInitializeSListHeadIsDebuggerPresentUnhandledExceptionFilterSetUnhandledExceptionFilter2IsProcessorFeaturePresent GetCurrentProcessUTerminateProcessapi-ms-win-core-profile-l1-1-0.dllapi-ms-win-core-processthreads-l1-1-0.dllapi-ms-win-core-sysinfo-l1-1-0.dllapi-ms-win-core-interlocked-l1-1-0.dllapi-ms-win-core-debug-l1-1-0.dllapi-ms-win-core-errorhandling-l1-1-0.dllapi-ms-win-core-processthreads-l1-1-1.dllapi-ms-win-core-libraryloader-l1-2-0.dll%DbgPrintExqLdrDisableThreadCalloutsForDllntdll.dll__CxxFrameHandler3wcschr_CxxThrowException WerRegisterFileapi-ms-win-core-windowserrorreporting-l1-1-0.dll"ReadProcessMemoryGetLastErrorCloseHandleOpenEventWCreateEventWDGetTempPath2WBGetTempFileNameWDeleteFileW CreateFileWGetSystemDirectoryWGetProcessIdCreateProcessWGetModuleFileNameWGetTraceLoggerHandleGetTraceEnableLevelGetTraceEnableFlagsRegisterTraceGuidsWTraceEventStartTraceW6WaitForSingleObject)SetEventapi-ms-win-core-memory-l1-1-0.dllapi-ms-win-core-handle-l1-1-0.dllapi-ms-win-core-synch-l1-1-0.dllapi-ms-win-core-file-l1-2-3.dllapi-ms-win-core-file-l1-1-0.dllapi-ms-win-eventing-classicprovider-l1-1-0.dllapi-ms-win-eventing-controller-l1-1-0.dllEnableTraceapi-ms-win-eventing-legacy-l1-1-0.dll NtCloseRtlFormatCurrentUserKeyPath RtlFreeUnicodeString|RtlInitUnicodeStringDEtwEventWriteNoRegistrationZwUpdateWnfStateDataFZwQueryWnfStateNameInformationNtQuerySystemInformationNtWaitForSingleObjectNtOpenEventRtlAllocateAndInitializeSidNtAlpcConnectPortNtAlpcSendWaitReceivePortmRtlCreateUserThreadWNtDeleteKeyRNtDelayExecution|LdrGetDllHandleoRtlInitAnsiStringLdrGetProcedureAddressRtlFreeSidZNtDeleteValueKey RtlGUIDFromStringRtlDosPathNameToNtPathName_UVNtDeleteFileNtOpenKeyNtQueryValueKeyNtSetValueKeyNtQueryInformationProcessGetModuleHandleExAGetProcAddressmemcpymemmove0 H`4VS_VERSION_INFO e e?,StringFileInfo040904B0LCompanyNameMicrosoft Corporation\FileDescriptionWER Diagnostic Controllern'FileVersion10.0.26100.8328 (WinBuild.160101.0800)TInternalNameWER Diagnostic Controller.LegalCopyright Microsoft Corporation. All rights reserved.TOriginalFilenameWERDiagController.dllj%ProductNameMicrosoft Windows Operating SystemDProductVersion10.0.26100.8328DVarFileInfo$Translation h000 00000 0$0(0,000t0x00001 11 1(1@1P1T1d1h1l1t11111111111122 2$24282@X81=1K1W1]1e1k1{111111111112222%222I2p2~222222223'363D3Q3c3n3|33334,4=4S4j4v4444445555|66666677.7o777777788#818=8N8b8r8888889%959F9S9x999999999999::":7:`:l:x::::::::;;-;8;G;V;;;;;;;;;;;<2>=>V>m>y>>>>>?]?l?y?????PH020E0b0n00000000011!1+111A1F1`11111111111 22%282Y2222222+353A3V3g3u3333334%414D4`4t444444444575C55555G6Z6r666666 77888<9C99999:.:::F::::::::::::::;;;D;^;d;m;w;;;;;;;;;1>*>>>>>>2??????????` +0800000011P1]1k1x11111162C2g2s22k3333m4z44444444555(575B5K5Z5z5556667$727>7H7T7778 8K8W8s88888888 9s9{99999::L:Y:f:r:::::;;,;9;M;^;;;;;;;<<%<1<@ >>>&>2>>>>p=0f0s0000 11)191I1Q1^111111"2'2J2i2v222222 33#333@33333334R4^4j4444T5Y5555555$6=6Q6]6j666777777&828889(9-9F9K9X999999:&:::[;;;<*<9J>>>>>???"?(?.?4?O?d?k?q???400?0Z0&1?1I1i1z11111111]2b22222222222223 3333%3-353=3I3R3W3]3g3q33333333~44444444545=5F5T5]55555555555 66!6-696E6Q6]6i6u6666R7p7v77777%8M88888 999@:::@;;;;;;<<0<8<@0,0H0d00 1