7934.880:0050:0054:trace:imports:import_dll --- NtUserDestroyWindow win32u.dll.900 = 7B52808C
7934.880:0050:0054:trace:imports:import_dll --- NtUserDispatchMessage win32u.dll.907 = 7B52816C
7934.880:0050:0054:trace:imports:import_dll --- NtUserDisplayConfigGetDeviceInfo win32u.dll.908 = 7B52818C
7934.880:0050:0054:trace:imports:import_dll --- NtUserDragDetect win32u.dll.915 = 7B52826C
7934.880:0050:0054:trace:imports:import_dll --- NtUserDragObject win32u.dll.916 = 7B52828C
7934.880:0050:0054:trace:imports:import_dll --- NtUserDrawCaptionTemp win32u.dll.921 = 7B52832C
7934.880:0050:0054:trace:imports:import_dll --- NtUserDrawIconEx win32u.dll.922 = 7B52834C
7934.880:0050:0054:trace:imports:import_dll --- NtUserDrawMenuBar win32u.dll.923 = 7B52836C
7934.880:0050:0054:trace:imports:import_dll --- NtUserDrawMenuBarTemp win32u.dll.924 = 7B52838C
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 002824C8, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserEmptyClipboard win32u.dll.932 = 7B52848C
7934.880:0048:004c:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7934.880:0050:0054:trace:imports:import_dll --- NtUserEnableMenuItem win32u.dll.935 = 7B5284EC
7934.880:0048:004c:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7934.880:0050:0054:trace:imports:import_dll --- NtUserEnableMouseInPointer win32u.dll.937 = 7B52852C
7934.880:0048:004c:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7bb19505
7934.880:0050:0054:trace:imports:import_dll --- NtUserEnableMouseInPointerForThread win32u.dll.938 = 7B52854C
7934.880:0048:004c:trace:msvcrt:_lock (19)
7934.880:0050:0054:trace:imports:import_dll --- NtUserEnableScrollBar win32u.dll.944 = 7B52860C
7934.880:0048:004c:trace:msvcrt:_lock (17)
7934.880:0050:0054:trace:imports:import_dll --- NtUserEnableWindow win32u.dll.949 = 7B5286AC
7934.880:0048:004c:Call ntdll.RtlEnterCriticalSection(7bb71f00) ret=7baed55a
7934.880:0050:0054:trace:imports:import_dll --- NtUserEndDeferWindowPosEx win32u.dll.954 = 7B52874C
7934.880:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7934.880:0050:0054:trace:imports:import_dll --- NtUserEndMenu win32u.dll.955 = 7B52876C
7934.880:0048:004c:trace:msvcrt:_lock : creating lock #19
7934.880:0050:0054:trace:imports:import_dll --- NtUserEndPaint win32u.dll.956 = 7B52878C
7934.880:0048:004c:Call KERNEL32.InitializeCriticalSectionEx(7bb71f38,00000000,10000000) ret=7baed5d4
7934.880:0050:0054:trace:imports:import_dll --- NtUserEnumClipboardFormats win32u.dll.958 = 7B5287CC
7934.880:0048:004c:Call kernelbase.InitializeCriticalSectionEx(7bb71f38,00000000,10000000) ret=7bf3cfb4
7934.880:0050:0054:trace:imports:import_dll --- NtUserEnumDisplayDevices win32u.dll.959 = 7B5287EC
7934.880:0048:004c:Call ntdll.RtlInitializeCriticalSectionEx(7bb71f38,00000000,10000000) ret=7bc26472
7934.880:0050:0054:trace:imports:import_dll --- NtUserEnumDisplayMonitors win32u.dll.960 = 7B52880C
7934.880:0050:0054:trace:imports:import_dll --- NtUserEnumDisplaySettings win32u.dll.961 = 7B52882C
7934.880:0050:0054:trace:imports:import_dll --- NtUserExcludeUpdateRgn win32u.dll.963 = 7B52886C
7934.880:0050:0054:trace:imports:import_dll --- NtUserFindExistingCursorIcon win32u.dll.965 = 7B5288AC
7934.880:0050:0054:trace:imports:import_dll --- NtUserFindWindowEx win32u.dll.966 = 7B5288CC
7934.880:0050:0054:trace:imports:import_dll --- NtUserFlashWindowEx win32u.dll.967 = 7B5288EC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetAncestor win32u.dll.974 = 7B5289CC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetAsyncKeyState win32u.dll.976 = 7B528A0C
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00282500, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetAtomName win32u.dll.977 = 7B528A2C
7934.880:0048:004c:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetCaretBlinkTime win32u.dll.981 = 7B528AAC
7934.880:0048:004c:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetCaretPos win32u.dll.982 = 7B528ACC
7934.880:0048:004c:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7baed5d4
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetClassInfoEx win32u.dll.984 = 7B528B0C
7934.880:0048:004c:trace:msvcrt:_unlock (17)
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetClassName win32u.dll.985 = 7B528B2C
7934.880:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bb71f00) ret=7baed610
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetClipCursor win32u.dll.986 = 7B528B4C
7934.880:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7baed610
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetClipboardData win32u.dll.988 = 7B528B8C
7934.880:0048:004c:Call ntdll.RtlEnterCriticalSection(7bb71f38) ret=7baed55a
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetClipboardFormatName win32u.dll.989 = 7B528BAC
7934.880:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetClipboardOwner win32u.dll.991 = 7B528BEC
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000008) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetClipboardSequenceNumber win32u.dll.992 = 7B528C0C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetClipboardViewer win32u.dll.993 = 7B528C2C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetCurrentInputMessageSource win32u.dll.998 = 7B528CCC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetCursor win32u.dll.999 = 7B528CEC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetCursorFrameInfo win32u.dll.1000 = 7B528D0C
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x8, return 003B14A0, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetCursorInfo win32u.dll.1001 = 7B528D2C
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b14a0 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetCursorPos win32u.dll.1002 = 7B528D4C
7934.880:0048:004c:trace:msvcrt:create_locinfo (0 C)
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetDC win32u.dll.1003 = 7B528D6C
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,000000d8) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetDCEx win32u.dll.1004 = 7B528D8C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetDisplayConfigBufferSizes win32u.dll.1012 = 7B528E8C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetDoubleClickTime win32u.dll.1013 = 7B528EAC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetDpiForMonitor win32u.dll.1015 = 7B528EEC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetForegroundWindow win32u.dll.1018 = 7B528F4C
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0xd8, return 003B14C0, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetGUIThreadInfo win32u.dll.1019 = 7B528F6C
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b14c0 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetIconInfo win32u.dll.1027 = 7B52906C
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000002) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetIconSize win32u.dll.1028 = 7B52908C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetInternalWindowPos win32u.dll.1038 = 7B5291CC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetKeyNameText win32u.dll.1039 = 7B5291EC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetKeyState win32u.dll.1040 = 7B52920C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetKeyboardLayout win32u.dll.1041 = 7B52922C
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2, return 003B15B0, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetKeyboardLayoutList win32u.dll.1042 = 7B52924C
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b15b0 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetKeyboardLayoutName win32u.dll.1043 = 7B52926C
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000004) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetKeyboardState win32u.dll.1044 = 7B52928C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetLayeredWindowAttributes win32u.dll.1046 = 7B5292CC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetMenuBarInfo win32u.dll.1048 = 7B52930C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetMenuItemRect win32u.dll.1050 = 7B52934C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetMessage win32u.dll.1051 = 7B52936C
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x4, return 003B15D0, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetMouseMovePointsEx win32u.dll.1055 = 7B5293EC
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b15d0 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetObjectInformation win32u.dll.1056 = 7B52940C
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000002) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetOpenClipboardWindow win32u.dll.1058 = 7B52944C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetPriorityClipboardFormat win32u.dll.1075 = 7B52966C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetProcessDefaultLayout win32u.dll.1076 = 7B52968C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetProcessDpiAwarenessContext win32u.dll.1077 = 7B5296AC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetProcessWindowStation win32u.dll.1079 = 7B5296EC
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2, return 003B15F0, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetProp win32u.dll.1080 = 7B52970C
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b15f0 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetQueueStatus win32u.dll.1083 = 7B52976C
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000004) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetRawInputBuffer win32u.dll.1085 = 7B5297AC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetRawInputData win32u.dll.1086 = 7B5297CC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetRawInputDeviceInfo win32u.dll.1087 = 7B5297EC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetRawInputDeviceList win32u.dll.1088 = 7B52980C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetRegisteredRawInputDevices win32u.dll.1090 = 7B52984C
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x4, return 003B1610, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetScrollBarInfo win32u.dll.1093 = 7B5298AC
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b1610 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetSystemDpiForProcess win32u.dll.1099 = 7B52996C
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000002) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetSystemMenu win32u.dll.1100 = 7B52998C
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetThreadDesktop win32u.dll.1101 = 7B5299AC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetThreadState win32u.dll.1102 = 7B5299CC
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2, return 003B1630, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetTitleBarInfo win32u.dll.1103 = 7B5299EC
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b1630 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetUpdateRect win32u.dll.1109 = 7B529AAC
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000004) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetUpdateRgn win32u.dll.1110 = 7B529ACC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetUpdatedClipboardFormats win32u.dll.1111 = 7B529AEC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetWindowContextHelpId win32u.dll.1117 = 7B529BAC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetWindowDC win32u.dll.1118 = 7B529BCC
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetWindowDisplayAffinity win32u.dll.1119 = 7B529BEC
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x4, return 003B1650, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetWindowPlacement win32u.dll.1123 = 7B529C6C
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b1650 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserGetWindowRgnEx win32u.dll.1125 = 7B529CAC
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000002) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserHideCaret win32u.dll.1132 = 7B529D8C
7934.880:0050:0054:trace:imports:import_dll --- NtUserHiliteMenuItem win32u.dll.1135 = 7B529DEC
7934.880:0050:0054:trace:imports:import_dll --- NtUserInitializeClientPfnArrays win32u.dll.1146 = 7B529F4C
7934.880:0050:0054:trace:imports:import_dll --- NtUserInternalGetWindowIcon win32u.dll.1160 = 7B52A10C
7934.880:0050:0054:trace:imports:import_dll --- NtUserInternalGetWindowText win32u.dll.1161 = 7B52A12C
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2, return 003B1670, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserInvalidateRect win32u.dll.1164 = 7B52A18C
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b1670 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserInvalidateRgn win32u.dll.1165 = 7B52A1AC
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000004) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserIsChildWindowDpiMessageEnabled win32u.dll.1166 = 7B52A1CC
7934.880:0050:0054:trace:imports:import_dll --- NtUserIsClipboardFormatAvailable win32u.dll.1167 = 7B52A1EC
7934.880:0050:0054:trace:imports:import_dll --- NtUserIsMouseInPointerEnabled win32u.dll.1168 = 7B52A20C
7934.880:0050:0054:trace:imports:import_dll --- NtUserKillSystemTimer win32u.dll.1178 = 7B52A34C
7934.880:0050:0054:trace:imports:import_dll --- NtUserKillTimer win32u.dll.1179 = 7B52A36C
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x4, return 003B1690, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserLockWindowUpdate win32u.dll.1189 = 7B52A4AC
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b1690 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserLogicalToPerMonitorDPIPhysicalPoint win32u.dll.1191 = 7B52A4EC
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000002) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserMapVirtualKeyEx win32u.dll.1201 = 7B52A62C
7934.880:0050:0054:trace:imports:import_dll --- NtUserMenuItemFromPoint win32u.dll.1203 = 7B52A66C
7934.880:0050:0054:trace:imports:import_dll --- NtUserMessageBeep win32u.dll.1204 = 7B52A68C
7934.880:0050:0054:trace:imports:import_dll --- NtUserMessageCall win32u.dll.1205 = 7B52A6AC
7934.880:0050:0054:trace:imports:import_dll --- NtUserModifyUserStartupInfoFlags win32u.dll.1208 = 7B52A70C
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2, return 003B16B0, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserMoveWindow win32u.dll.1210 = 7B52A74C
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b16b0 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserMsgWaitForMultipleObjectsEx win32u.dll.1211 = 7B52A76C
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000004) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserNotifyWinEvent win32u.dll.1217 = 7B52A82C
7934.880:0050:0054:trace:imports:import_dll --- NtUserOpenClipboard win32u.dll.1218 = 7B52A84C
7934.880:0050:0054:trace:imports:import_dll --- NtUserOpenDesktop win32u.dll.1219 = 7B52A86C
7934.880:0050:0054:trace:imports:import_dll --- NtUserOpenInputDesktop win32u.dll.1220 = 7B52A88C
7934.880:0050:0054:trace:imports:import_dll --- NtUserOpenWindowStation win32u.dll.1222 = 7B52A8CC
7934.880:0050:0054:trace:imports:import_dll --- NtUserPeekMessage win32u.dll.1226 = 7B52A94C
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x4, return 003B16D0, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserPerMonitorDPIPhysicalToLogicalPoint win32u.dll.1227 = 7B52A96C
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b16d0 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserPostMessage win32u.dll.1232 = 7B52AA0C
7934.880:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000220) ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserPostQuitMessage win32u.dll.1233 = 7B52AA2C
7934.880:0050:0054:trace:imports:import_dll --- NtUserPostThreadMessage win32u.dll.1234 = 7B52AA4C
7934.880:0050:0054:trace:imports:import_dll --- NtUserPrintWindow win32u.dll.1236 = 7B52AA8C
7934.880:0050:0054:trace:imports:import_dll --- NtUserQueryDisplayConfig win32u.dll.1243 = 7B52AB6C
7934.880:0050:0054:trace:imports:import_dll --- NtUserQueryWindow win32u.dll.1247 = 7B52ABEC
7934.880:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x220, return 003B16F0, status 0.
7934.880:0050:0054:trace:imports:import_dll --- NtUserRealChildWindowFromPoint win32u.dll.1249 = 7B52AC2C
7934.880:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b16f0 ret=7bb17d96
7934.880:0050:0054:trace:imports:import_dll --- NtUserRealizePalette win32u.dll.1252 = 7B52AC8C
7934.880:0048:004c:Call KERNEL32.GetCPInfo(00004e9f,0062f10c) ret=7bb0a35a
7934.880:0050:0054:trace:imports:import_dll --- NtUserRedrawWindow win32u.dll.1257 = 7B52AD2C
7934.880:0048:004c:Call kernelbase.GetCPInfo(00004e9f,0062f10c) ret=7bf3cfb4
7934.880:0050:0054:trace:imports:import_dll --- NtUserRegisterClassExWOW win32u.dll.1259 = 7B52AD6C
7934.880:0048:004c:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7934.880:0050:0054:trace:imports:import_dll --- NtUserRegisterHotKey win32u.dll.1267 = 7B52AE6C
7934.880:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7934.880:0050:0054:trace:imports:import_dll --- NtUserRegisterRawInputDevices win32u.dll.1274 = 7B52AF4C
7934.880:0048:004c:Call ntdll.NtGetNlsSectionPtr(0000000b,00004e9f,00000000,0062f058,0062f05c) ret=7bc6b6db
7934.880:0050:0054:trace:imports:import_dll --- NtUserRegisterTouchPadCapable win32u.dll.1283 = 7B52B06C
7934.880:0050:0054:trace:imports:import_dll --- NtUserRegisterWindowMessage win32u.dll.1287 = 7B52B0EC
7934.880:0048:004c:SysCall  NtGetNlsSectionPtr(0000000b,00004e9f,00000000,0062f058,0062f05c)
7934.880:0050:0054:trace:imports:import_dll --- NtUserReleaseCapture win32u.dll.1288 = 7B52B10C
7934.880:0050:0054:trace:imports:import_dll --- NtUserReleaseDC win32u.dll.1289 = 7B52B12C
7934.880:0050:0054:trace:imports:import_dll --- NtUserRemoveClipboardFormatListener win32u.dll.1307 = 7B52B36C
7934.880:0050:0054:trace:imports:import_dll --- NtUserRemoveMenu win32u.dll.1309 = 7B52B3AC
7934.887:0050:0054:trace:imports:import_dll --- NtUserRemoveProp win32u.dll.1310 = 7B52B3CC
004c: open_mapping( access=00000004, attributes=00000000, rootdir=0000, name=L"\\NLS\\NlsSectionCP20127" )
7934.887:0050:0054:trace:imports:import_dll --- NtUserReplyMessage win32u.dll.1313 = 7B52B42C
004c: open_mapping() = 0 { handle=002c }
7934.887:0050:0054:trace:imports:import_dll --- NtUserScheduleDispatchNotification win32u.dll.1321 = 7B52B52C
7934.887:0050:0054:trace:imports:import_dll --- NtUserScrollDC win32u.dll.1322 = 7B52B54C
7934.887:0050:0054:trace:imports:import_dll --- NtUserScrollWindowEx win32u.dll.1323 = 7B52B56C
7934.887:0048:004c:trace:virtual:NtMapViewOfSection handle=0x2c process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x2
7934.887:0050:0054:trace:imports:import_dll --- NtUserSendInput win32u.dll.1326 = 7B52B5CC
7934.887:0050:0054:trace:imports:import_dll --- NtUserSetActiveWindow win32u.dll.1330 = 7B52B64C
7934.887:0050:0054:trace:imports:import_dll --- NtUserSetAdditionalForegroundBoostProcesses win32u.dll.1331 = 7B52B66C
004c: get_mapping_info( handle=002c, access=00000004 )
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetCapture win32u.dll.1338 = 7B52B74C
004c: get_mapping_info() = 0 { size=00010222, flags=00800000, shared_file=0000, name_len=0, total=0, image={}, name=L"", exp_name="" }
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetCaretBlinkTime win32u.dll.1339 = 7B52B76C
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetCaretPos win32u.dll.1340 = 7B52B78C
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetClassLong win32u.dll.1342 = 7B52B7CC
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetClassLongPtr win32u.dll.1343 = 7B52B7EC
004c: get_handle_fd( handle=002c )
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetClassWord win32u.dll.1344 = 7B52B80C
004c: *fd* 002c -> 46
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetClipboardData win32u.dll.1345 = 7B52B82C
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetClipboardViewer win32u.dll.1346 = 7B52B84C
004c: get_handle_fd() = 0 { type=1, cacheable=1, access=00000004, options=00000020 }
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetCursor win32u.dll.1350 = 7B52B8CC
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetCursorIconData win32u.dll.1352 = 7B52B90C
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetCursorPos win32u.dll.1354 = 7B52B94C
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetFocus win32u.dll.1367 = 7B52BAEC
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetForegroundWindow win32u.dll.1369 = 7B52BB2C
7934.888:0048:004c:trace:virtual:map_view got mem in reserved area 0x3d0000-0x3e1000
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetInternalWindowPos win32u.dll.1380 = 7B52BC8C
7934.888:0048:004c:trace:virtual_ranges:free_ranges_insert_view 0x3d0000 - 0x3e1000, aligned 0x3d0000 - 0x3f0000.
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetKeyboardState win32u.dll.1381 = 7B52BCAC
7934.888:0048:004c:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetLayeredWindowAttributes win32u.dll.1382 = 7B52BCCC
7934.888:0048:004c:trace:virtual_ranges:dump_free_ranges 0x3f0000 - 0x400000.
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetMenu win32u.dll.1385 = 7B52BD2C
7934.888:0048:004c:trace:virtual_ranges:dump_free_ranges 0xab0000 - 0x7fde0000.
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetMenuContextHelpId win32u.dll.1386 = 7B52BD4C
7934.888:0048:004c:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetMenuDefaultItem win32u.dll.1387 = 7B52BD6C
7934.888:0048:004c:trace:virtual:virtual_map_section handle=0x2c size=11000 offset=0
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetObjectInformation win32u.dll.1395 = 7B52BE6C
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetParent win32u.dll.1396 = 7B52BE8C
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetProcessDefaultLayout win32u.dll.1398 = 7B52BECC
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetProcessDpiAwarenessContext win32u.dll.1399 = 7B52BEEC
004c: map_view( mapping=002c, access=00000004, base=003d0000, size=00011000, start=00000000 )
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetProcessWindowStation win32u.dll.1405 = 7B52BFAC
004c: map_view() = 0
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetProgmanWindow win32u.dll.1406 = 7B52BFCC
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetProp win32u.dll.1407 = 7B52BFEC
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetScrollInfo win32u.dll.1409 = 7B52C02C
7934.888:0048:004c:trace:virtual:dump_view View: 0x3d0000 - 0x3e0fff c-r-- (file)
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetShellWindowEx win32u.dll.1413 = 7B52C0AC
7934.888:0048:004c:trace:virtual:dump_view       0x3d0000 - 0x3e0fff c-r--
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetSysColors win32u.dll.1414 = 7B52C0CC
7934.888:0050:0054:trace:imports:import_dll --- NtUserSetSystemMenu win32u.dll.1418 = 7B52C14C
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetSystemTimer win32u.dll.1419 = 7B52C16C
004c: close_handle( handle=002c )
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetTaskmanWindow win32u.dll.1422 = 7B52C1CC
004c: close_handle() = 0
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetThreadDesktop win32u.dll.1423 = 7B52C1EC
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetTimer win32u.dll.1428 = 7B52C28C
7934.889:0048:004c:SysRet   NtGetNlsSectionPtr() retval=00000000
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetWinEventHook win32u.dll.1433 = 7B52C32C
7934.889:0048:004c:Ret  ntdll.NtGetNlsSectionPtr() retval=00000000 ret=7bc6b6db
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetWindowContextHelpId win32u.dll.1438 = 7B52C3CC
7934.889:0048:004c:Call ntdll.RtlInitCodePageTable(003d0000,7bcb7480) ret=7bc6b703
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetWindowLong win32u.dll.1443 = 7B52C46C
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetWindowLongPtr win32u.dll.1444 = 7B52C48C
7934.889:0048:004c:Ret  ntdll.RtlInitCodePageTable() retval=003d001a ret=7bc6b703
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetWindowPlacement win32u.dll.1446 = 7B52C4CC
7934.889:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetWindowPos win32u.dll.1447 = 7B52C4EC
7934.889:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetWindowRgn win32u.dll.1448 = 7B52C50C
7934.889:0048:004c:Ret  kernelbase.GetCPInfo() retval=00000001 ret=7bf3cfb4
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetWindowWord win32u.dll.1453 = 7B52C5AC
7934.889:0048:004c:Ret  KERNEL32.GetCPInfo() retval=00000001 ret=7bb0a35a
7934.889:0050:0054:trace:imports:import_dll --- NtUserSetWindowsHookEx win32u.dll.1455 = 7B52C5EC
7934.889:0050:0054:trace:imports:import_dll --- NtUserShowCaret win32u.dll.1463 = 7B52C6EC
7934.889:0048:004c:Call KERNEL32.MultiByteToWideChar(00004e9f,00000000,0062f120 "",00000100,0062f420,00000100) ret=7bb0a46f
7934.889:0050:0054:trace:imports:import_dll --- NtUserShowCursor win32u.dll.1464 = 7B52C70C
7934.889:0048:004c:Call kernelbase.MultiByteToWideChar(00004e9f,00000000,0062f120 "",00000100,0062f420,00000100) ret=7bf3cfb4
7934.889:0050:0054:trace:imports:import_dll --- NtUserShowOwnedPopups win32u.dll.1465 = 7B52C72C
7934.889:0048:004c:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7934.889:0050:0054:trace:imports:import_dll --- NtUserShowScrollBar win32u.dll.1466 = 7B52C74C
7934.889:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7934.889:0050:0054:trace:imports:import_dll --- NtUserShowWindow win32u.dll.1469 = 7B52C7AC
7934.889:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7934.889:0050:0054:trace:imports:import_dll --- NtUserShowWindowAsync win32u.dll.1470 = 7B52C7CC
7934.889:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
7934.889:0050:0054:trace:imports:import_dll --- NtUserSwitchDesktop win32u.dll.1481 = 7B52C92C
7934.889:0050:0054:trace:imports:import_dll --- NtUserSystemParametersInfo win32u.dll.1483 = 7B52C96C
7934.889:0048:004c:trace:nls:MultiByteToWideChar cp 20127 "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x8a\x8b\x8c\x8d\x8e\x8f\x90"... -> L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"..., ret = 256
7934.889:0050:0054:trace:imports:import_dll --- NtUserSystemParametersInfoForDpi win32u.dll.1484 = 7B52C98C
7934.889:0048:004c:Ret  kernelbase.MultiByteToWideChar() retval=00000100 ret=7bf3cfb4
7934.889:0050:0054:trace:imports:import_dll --- NtUserThunkedMenuInfo win32u.dll.1487 = 7B52C9EC
7934.889:0048:004c:Ret  KERNEL32.MultiByteToWideChar() retval=00000100 ret=7bb0a46f
7934.889:0050:0054:trace:imports:import_dll --- NtUserThunkedMenuItemInfo win32u.dll.1488 = 7B52CA0C
7934.889:0048:004c:Call KERNEL32.GetStringTypeW(00000001,0062f420 L"",00000100,0062f220) ret=7bb0a4aa
7934.889:0050:0054:trace:imports:import_dll --- NtUserToUnicodeEx win32u.dll.1489 = 7B52CA2C
7934.889:0048:004c:Call kernelbase.GetStringTypeW(00000001,0062f420 L"",00000100,0062f220) ret=7bf3cfb4
7934.889:0050:0054:trace:imports:import_dll --- NtUserTrackMouseEvent win32u.dll.1491 = 7B52CA6C
7934.889:0048:004c:Ret  kernelbase.GetStringTypeW() retval=00000001 ret=7bf3cfb4
7934.889:0050:0054:trace:imports:import_dll --- NtUserTrackPopupMenuEx win32u.dll.1492 = 7B52CA8C
7934.889:0048:004c:Ret  KERNEL32.GetStringTypeW() retval=00000001 ret=7bb0a4aa
7934.889:0050:0054:trace:imports:import_dll --- NtUserTranslateAccelerator win32u.dll.1495 = 7B52CAEC
7934.889:0048:004c:Call KERNEL32.LCMapStringW(00000000,00000100,0062f420 L"",00000100,0062f620,00000100) ret=7bb0a4e5
7934.889:0050:0054:trace:imports:import_dll --- NtUserTranslateMessage win32u.dll.1496 = 7B52CB0C
7934.889:0048:004c:Call kernelbase.LCMapStringW(00000000,00000100,0062f420 L"",00000100,0062f620,00000100) ret=7bf3cfb4
7934.889:0050:0054:trace:imports:import_dll --- NtUserUnhookWinEvent win32u.dll.1498 = 7B52CB4C
7934.889:0050:0054:trace:imports:import_dll --- NtUserUnhookWindowsHook win32u.dll.1499 = 7B52CB6C
7934.889:0048:004c:trace:nls:LCMapStringEx ((null),0x00000100,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"...,256,0062F620,256)
7934.889:0050:0054:trace:imports:import_dll --- NtUserUnhookWindowsHookEx win32u.dll.1500 = 7B52CB8C
7934.889:0050:0054:trace:imports:import_dll --- NtUserUnregisterClass win32u.dll.1503 = 7B52CBEC
7934.889:0048:004c:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7934.889:0050:0054:trace:imports:import_dll --- NtUserUnregisterHotKey win32u.dll.1504 = 7B52CC0C
7934.889:0048:004c:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7bb0a4e5
7934.889:0050:0054:trace:imports:import_dll --- NtUserUpdateLayeredWindow win32u.dll.1511 = 7B52CCEC
7934.889:0048:004c:Call KERNEL32.LCMapStringW(00000000,00000200,0062f420 L"",00000100,0062f820,00000100) ret=7bb0a51d
7934.889:0050:0054:trace:imports:import_dll --- NtUserValidateRect win32u.dll.1521 = 7B52CE2C
7934.889:0048:004c:Call kernelbase.LCMapStringW(00000000,00000200,0062f420 L"",00000100,0062f820,00000100) ret=7bf3cfb4
7934.889:0050:0054:trace:imports:import_dll --- NtUserValidateRgn win32u.dll.1522 = 7B52CE4C
7934.889:0048:004c:trace:nls:LCMapStringEx ((null),0x00000200,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"...,256,0062F820,256)
7934.889:0050:0054:trace:imports:import_dll --- NtUserVkKeyScanEx win32u.dll.1524 = 7B52CE8C
7934.889:0048:004c:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7934.889:0050:0054:trace:imports:import_dll --- NtUserWaitForInputIdle win32u.dll.1528 = 7B52CF0C
7934.889:0048:004c:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7bb0a51d
7934.889:0050:0054:trace:imports:import_dll --- NtUserWaitMessage win32u.dll.1531 = 7B52CF6C
7934.889:0050:0054:trace:imports:import_dll --- NtUserWindowFromDC win32u.dll.1533 = 7B52CFAC
7934.889:0048:004c:Call KERNEL32.WideCharToMultiByte(00004e9f,00000000,0062f420 L"",00000100,0062f120,00000100,00000000,00000000) ret=7bb0a5aa
7934.889:0050:0054:trace:imports:import_dll --- NtUserWindowFromPoint win32u.dll.1535 = 7B52CFEC
7934.889:0048:004c:Call kernelbase.WideCharToMultiByte(00004e9f,00000000,0062f420 L"",00000100,0062f120,00000100,00000000,00000000) ret=7bf3cfb4
7934.889:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f094,0062f098,00000008,0062f09c)
7934.889:0048:004c:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7934.889:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b6ec000 00002000 00000008
7934.889:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7934.889:0050:0054:trace:virtual:get_vprot_range_size base 0x7b6ec000, size 0x2000, mask 0x20.
7934.889:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7934.889:0050:0054:trace:virtual:dump_view View: 0x7b610000 - 0x7b7dffff c-rWx (image)
7934.889:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
7934.889:0050:0054:trace:virtual:dump_view       0x7b610000 - 0x7b610fff c-r--
7934.889:0050:0054:trace:virtual:dump_view       0x7b611000 - 0x7b6a6fff c-r-x
7934.889:0048:004c:trace:nls:WideCharToMultiByte cp 20127 L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"... -> "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\x7f\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12"..., ret = 256
7934.889:0050:0054:trace:virtual:dump_view       0x7b6a7000 - 0x7b6a7fff c-rW-
7934.889:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000100 ret=7bf3cfb4
7934.889:0050:0054:trace:virtual:dump_view       0x7b6a8000 - 0x7b6e3fff c-r--
7934.889:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000100 ret=7bb0a5aa
7934.889:0050:0054:trace:virtual:dump_view       0x7b6e4000 - 0x7b6e4fff c-rW-
7934.889:0048:004c:trace:msvcrt:_unlock (19)
7934.889:0050:0054:trace:virtual:dump_view       0x7b6e5000 - 0x7b6ebfff c-r--
7934.889:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bb71f38) ret=7bafbdfc
7934.889:0050:0054:trace:virtual:dump_view       0x7b6ec000 - 0x7b7d8fff c-rW-
7934.889:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bafbdfc
7934.889:0050:0054:trace:virtual:dump_view       0x7b7d9000 - 0x7b7dffff c-r--
7934.889:0048:004c:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
7934.889:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.889:0048:004c:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7934.889:0048:004c:Ret  kernelbase.TlsGetValue() retval=00000000 ret=7bf3cfb4
7934.889:0048:004c:Ret  KERNEL32.TlsGetValue() retval=00000000 ret=7bb17c81
7934.889:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000008,00000380) ret=7bb17cbf
7934.889:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273280, status 0.
7934.889:0050:0054:trace:module:build_module loaded L"\\??\\C:\\windows\\system32\\user32.dll" 00273080 7B610000
7934.889:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x380, return 00282538, status 0.
7934.889:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00282538 ret=7bb17cbf
7934.889:0048:004c:Call KERNEL32.TlsSetValue(00000001,00282538) ret=7bb17cda
7934.889:0048:004c:Call kernelbase.TlsSetValue(00000001,00282538) ret=7bf3cfb4
7934.889:0048:004c:Ret  kernelbase.TlsSetValue() retval=00000001 ret=7bf3cfb4
7934.889:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x28e8, return 00277B48, status 0.
7934.889:0048:004c:Ret  KERNEL32.TlsSetValue() retval=00000001 ret=7bb17cda
7934.889:0048:004c:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
7934.889:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f2ec,0062f2f0,00000004,0062f2e8)
7934.889:0048:004c:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7934.889:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b6e5028 0000145c 00000004
7934.889:0048:004c:Ret  kernelbase.TlsGetValue() retval=00282538 ret=7bf3cfb4
7934.889:0050:0054:trace:virtual:get_vprot_range_size base 0x7b6e5000, size 0x2000, mask 0x20.
7934.889:0048:004c:Ret  KERNEL32.TlsGetValue() retval=00282538 ret=7bb17c81
7934.889:0048:004c:trace:msvcrt:_lock (19)
7934.889:0050:0054:trace:virtual:dump_view View: 0x7b610000 - 0x7b7dffff c-rWx (image)
7934.889:0048:004c:Call ntdll.RtlEnterCriticalSection(7bb71f38) ret=7baed55a
7934.889:0050:0054:trace:virtual:dump_view       0x7b610000 - 0x7b610fff c-r--
7934.889:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7934.889:0050:0054:trace:virtual:dump_view       0x7b611000 - 0x7b6a6fff c-r-x
7934.889:0048:004c:trace:msvcrt:_unlock (19)
7934.889:0050:0054:trace:virtual:dump_view       0x7b6a7000 - 0x7b6a7fff c-rW-
7934.889:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bb71f38) ret=7bafbdfc
7934.889:0050:0054:trace:virtual:dump_view       0x7b6a8000 - 0x7b6e3fff c-r--
7934.889:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bafbdfc
7934.889:0050:0054:trace:virtual:dump_view       0x7b6e4000 - 0x7b6e6fff c-rW-
7934.889:0048:004c:trace:msvcrt:_lock (25)
7934.889:0050:0054:trace:virtual:dump_view       0x7b6e7000 - 0x7b6ebfff c-r--
7934.889:0048:004c:trace:msvcrt:_lock (17)
7934.889:0050:0054:trace:virtual:dump_view       0x7b6ec000 - 0x7b7d8fff c-rW-
7934.889:0048:004c:Call ntdll.RtlEnterCriticalSection(7bb71f00) ret=7baed55a
7934.889:0050:0054:trace:virtual:dump_view       0x7b7d9000 - 0x7b7dffff c-r--
7934.889:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7934.889:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.889:0048:004c:trace:msvcrt:_lock : creating lock #25
7934.889:0048:004c:Call KERNEL32.InitializeCriticalSectionEx(7bb71fe0,00000000,10000000) ret=7baed5d4
7934.889:0048:004c:Call kernelbase.InitializeCriticalSectionEx(7bb71fe0,00000000,10000000) ret=7bf3cfb4
7934.889:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f2ec,0062f2f0,00000002,0062f2e8)
7934.889:0048:004c:Call ntdll.RtlInitializeCriticalSectionEx(7bb71fe0,00000000,10000000) ret=7bc26472
7934.889:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b6e5000 00002000 00000002
7934.889:0050:0054:trace:virtual:get_vprot_range_size base 0x7b6e5000, size 0x2000, mask 0x20.
7934.889:0050:0054:trace:virtual:dump_view View: 0x7b610000 - 0x7b7dffff c-rWx (image)
7934.889:0050:0054:trace:virtual:dump_view       0x7b610000 - 0x7b610fff c-r--
7934.889:0050:0054:trace:virtual:dump_view       0x7b611000 - 0x7b6a6fff c-r-x
7934.889:0050:0054:trace:virtual:dump_view       0x7b6a7000 - 0x7b6a7fff c-rW-
7934.889:0050:0054:trace:virtual:dump_view       0x7b6a8000 - 0x7b6e3fff c-r--
7934.889:0050:0054:trace:virtual:dump_view       0x7b6e4000 - 0x7b6e4fff c-rW-
7934.889:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 002828D0, status 0.
7934.889:0050:0054:trace:virtual:dump_view       0x7b6e5000 - 0x7b6ebfff c-r--
7934.889:0048:004c:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7934.889:0050:0054:trace:virtual:dump_view       0x7b6ec000 - 0x7b7d8fff c-rW-
7934.889:0048:004c:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7934.889:0050:0054:trace:virtual:dump_view       0x7b7d9000 - 0x7b7dffff c-r--
7934.889:0048:004c:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7baed5d4
7934.889:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.889:0048:004c:trace:msvcrt:_unlock (17)
7934.889:0050:0054:trace:loaddll:build_module Loaded L"C:\\windows\\system32\\user32.dll" at 7B610000: builtin
7934.889:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bb71f00) ret=7baed610
7934.889:0050:0054:trace:module:load_dll Loaded module L"\\??\\C:\\windows\\system32\\user32.dll" at 7B610000
7934.889:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7baed610
7934.889:0050:0054:SysCall  NtClose(00000020)
7934.889:0048:004c:Call ntdll.RtlEnterCriticalSection(7bb71fe0) ret=7baed55a
7934.889:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7934.889:0048:004c:trace:msvcrt:_unlock (25)
7934.893:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bb71fe0) ret=7bafbdfc
0054: close_handle( handle=0020 )
7934.893:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bafbdfc
0054: close_handle() = 0
7934.893:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000220) ret=7bb17d96
7934.893:0050:0054:SysRet   NtClose() retval=00000000
7934.893:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x220, return 003B1928, status 0.
7934.893:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b1928 ret=7bb17d96
7934.893:0048:004c:Call KERNEL32.GetACP() ret=7bb0a32c
7934.893:0048:004c:Call kernelbase.GetACP() ret=7bf3cfb4
7934.893:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261A18, return 1, status 0.
7934.893:0048:004c:Ret  kernelbase.GetACP() retval=000004e2 ret=7bf3cfb4
7934.893:0048:004c:Ret  KERNEL32.GetACP() retval=000004e2 ret=7bb0a32c
7934.893:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000004,0062f518)
7934.893:0048:004c:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
7934.893:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b5ee5fc 00000004 00000004
7934.893:0048:004c:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:get_vprot_range_size base 0x7b5ee000, size 0x1000, mask 0x20.
7934.893:0048:004c:Ret  kernelbase.TlsGetValue() retval=00282538 ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view View: 0x7b570000 - 0x7b5f9fff c-rWx (image)
7934.893:0048:004c:Ret  KERNEL32.TlsGetValue() retval=00282538 ret=7bb17c81
7934.893:0050:0054:trace:virtual:dump_view       0x7b570000 - 0x7b570fff c-r--
7934.893:0048:004c:Call KERNEL32.GetUserDefaultLocaleName(0062f818,00000055) ret=7bb14510
7934.893:0050:0054:trace:virtual:dump_view       0x7b571000 - 0x7b5bffff c-r-x
7934.893:0048:004c:Call kernelbase.GetUserDefaultLocaleName(0062f818,00000055) ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view       0x7b5c0000 - 0x7b5c0fff c-rW-
7934.893:0048:004c:Call ntdll.memcpy(0062f818,006821a8,0000000c) ret=7bc73227
7934.893:0050:0054:trace:virtual:dump_view       0x7b5c1000 - 0x7b5e7fff c-r--
7934.893:0048:004c:Ret  ntdll.memcpy() retval=0062f818 ret=7bc73227
7934.893:0050:0054:trace:virtual:dump_view       0x7b5e8000 - 0x7b5e8fff c-rW-
7934.893:0048:004c:Ret  kernelbase.GetUserDefaultLocaleName() retval=00000006 ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view       0x7b5e9000 - 0x7b5edfff c-r--
7934.893:0048:004c:Ret  KERNEL32.GetUserDefaultLocaleName() retval=00000006 ret=7bb14510
7934.893:0050:0054:trace:virtual:dump_view       0x7b5ee000 - 0x7b5f5fff c-rW-
7934.893:0048:004c:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
7934.893:0050:0054:trace:virtual:dump_view       0x7b5f6000 - 0x7b5f9fff c-r--
7934.893:0048:004c:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7934.893:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.893:0048:004c:Ret  kernelbase.TlsGetValue() retval=00282538 ret=7bf3cfb4
7934.893:0050:0054:trace:imports:import_dll --- GetDpiForSystem user32.dll.300 = 7B614E48
7934.893:0048:004c:Ret  KERNEL32.TlsGetValue() retval=00282538 ret=7bb17c81
7934.893:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000008,0062f518)
7934.893:0048:004c:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
7934.893:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b5ee000 00001000 00000008
7934.893:0048:004c:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:get_vprot_range_size base 0x7b5ee000, size 0x1000, mask 0x20.
7934.893:0048:004c:Ret  kernelbase.TlsGetValue() retval=00282538 ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view View: 0x7b570000 - 0x7b5f9fff c-rWx (image)
7934.893:0048:004c:Ret  KERNEL32.TlsGetValue() retval=00282538 ret=7bb17c81
7934.893:0050:0054:trace:virtual:dump_view       0x7b570000 - 0x7b570fff c-r--
7934.893:0048:004c:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
7934.893:0050:0054:trace:virtual:dump_view       0x7b571000 - 0x7b5bffff c-r-x
7934.893:0048:004c:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view       0x7b5c0000 - 0x7b5c0fff c-rW-
7934.893:0048:004c:Ret  kernelbase.TlsGetValue() retval=00282538 ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view       0x7b5c1000 - 0x7b5e7fff c-r--
7934.893:0048:004c:Ret  KERNEL32.TlsGetValue() retval=00282538 ret=7bb17c81
7934.893:0050:0054:trace:virtual:dump_view       0x7b5e8000 - 0x7b5e8fff c-rW-
7934.893:0048:004c:Call KERNEL32.IsValidCodePage(000004e2) ret=7bb1456e
7934.893:0050:0054:trace:virtual:dump_view       0x7b5e9000 - 0x7b5edfff c-r--
7934.893:0048:004c:Call kernelbase.IsValidCodePage(000004e2) ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view       0x7b5ee000 - 0x7b5f5fff c-rW-
7934.893:0048:004c:Ret  kernelbase.IsValidCodePage() retval=00000001 ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view       0x7b5f6000 - 0x7b5f9fff c-r--
7934.893:0048:004c:Ret  KERNEL32.IsValidCodePage() retval=00000001 ret=7bb1456e
7934.893:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.893:0048:004c:Call KERNEL32.LocaleNameToLCID(0062f818 L"cs-CZ",08000000) ret=7bb0a929
7934.893:0048:004c:Call kernelbase.LocaleNameToLCID(0062f818 L"cs-CZ",08000000) ret=7bf3cfb4
7934.893:0048:004c:Ret  kernelbase.LocaleNameToLCID() retval=00000405 ret=7bf3cfb4
7934.893:0048:004c:Ret  KERNEL32.LocaleNameToLCID() retval=00000405 ret=7bb0a929
7934.893:0048:004c:Call KERNEL32.GetCPInfo(000004e2,0062f104) ret=7bb0a35a
7934.893:0048:004c:Call kernelbase.GetCPInfo(000004e2,0062f104) ret=7bf3cfb4
7934.893:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 002732B0, status 0.
7934.893:0048:004c:Ret  kernelbase.GetCPInfo() retval=00000001 ret=7bf3cfb4
7934.893:0050:0054:trace:module:load_dll looking for L"win32u.dll" in (null)
7934.893:0048:004c:Ret  KERNEL32.GetCPInfo() retval=00000001 ret=7bb0a35a
7934.893:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"win32u.dll" 0062F370
7934.893:0048:004c:Call KERNEL32.MultiByteToWideChar(000004e2,00000000,0062f118 "",00000100,0062f418,00000100) ret=7bb0a46f
7934.893:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\win32u.dll" for L"win32u.dll" at 7B520000, count=2
7934.893:0048:004c:Call kernelbase.MultiByteToWideChar(000004e2,00000000,0062f118 "",00000100,0062f418,00000100) ret=7bf3cfb4
7934.893:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000004,0062f518)
7934.893:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b5ee604 0000028c 00000004
7934.893:0048:004c:trace:nls:MultiByteToWideChar cp 1250 "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x8a\x8b\x8c\x8d\x8e\x8f\x90"... -> L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"..., ret = 256
7934.893:0050:0054:trace:virtual:get_vprot_range_size base 0x7b5ee000, size 0x1000, mask 0x20.
7934.893:0048:004c:Ret  kernelbase.MultiByteToWideChar() retval=00000100 ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view View: 0x7b570000 - 0x7b5f9fff c-rWx (image)
7934.893:0048:004c:Ret  KERNEL32.MultiByteToWideChar() retval=00000100 ret=7bb0a46f
7934.893:0050:0054:trace:virtual:dump_view       0x7b570000 - 0x7b570fff c-r--
7934.893:0048:004c:Call KERNEL32.GetStringTypeW(00000001,0062f418 L"",00000100,0062f218) ret=7bb0a4aa
7934.893:0050:0054:trace:virtual:dump_view       0x7b571000 - 0x7b5bffff c-r-x
7934.893:0048:004c:Call kernelbase.GetStringTypeW(00000001,0062f418 L"",00000100,0062f218) ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view       0x7b5c0000 - 0x7b5c0fff c-rW-
7934.893:0048:004c:Ret  kernelbase.GetStringTypeW() retval=00000001 ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view       0x7b5c1000 - 0x7b5e7fff c-r--
7934.893:0048:004c:Ret  KERNEL32.GetStringTypeW() retval=00000001 ret=7bb0a4aa
7934.893:0050:0054:trace:virtual:dump_view       0x7b5e8000 - 0x7b5e8fff c-rW-
7934.893:0048:004c:Call KERNEL32.LCMapStringW(00000405,00000100,0062f418 L"",00000100,0062f618,00000100) ret=7bb0a4e5
7934.893:0050:0054:trace:virtual:dump_view       0x7b5e9000 - 0x7b5edfff c-r--
7934.893:0048:004c:Call kernelbase.LCMapStringW(00000405,00000100,0062f418 L"",00000100,0062f618,00000100) ret=7bf3cfb4
7934.893:0050:0054:trace:virtual:dump_view       0x7b5ee000 - 0x7b5f5fff c-rW-
7934.893:0050:0054:trace:virtual:dump_view       0x7b5f6000 - 0x7b5f9fff c-r--
7934.893:0048:004c:trace:nls:LCMapStringEx ((null),0x00000100,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"...,256,0062F618,256)
7934.893:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.893:0048:004c:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7934.893:0050:0054:trace:imports:import_dll --- NtGdiAbortDoc win32u.dll.132 = 7B52208C
7934.893:0048:004c:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7bb0a4e5
7934.893:0050:0054:trace:imports:import_dll --- NtGdiAbortPath win32u.dll.133 = 7B5220AC
7934.893:0048:004c:Call KERNEL32.LCMapStringW(00000405,00000200,0062f418 L"",00000100,0062f818,00000100) ret=7bb0a51d
7934.893:0050:0054:trace:imports:import_dll --- NtGdiAddFontMemResourceEx win32u.dll.135 = 7B5220EC
7934.893:0048:004c:Call kernelbase.LCMapStringW(00000405,00000200,0062f418 L"",00000100,0062f818,00000100) ret=7bf3cfb4
7934.893:0050:0054:trace:imports:import_dll --- NtGdiAddFontResourceW win32u.dll.136 = 7B52210C
7934.893:0050:0054:trace:imports:import_dll --- NtGdiAlphaBlend win32u.dll.140 = 7B52218C
7934.893:0048:004c:trace:nls:LCMapStringEx ((null),0x00000200,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"...,256,0062F818,256)
7934.893:0050:0054:trace:imports:import_dll --- NtGdiAngleArc win32u.dll.141 = 7B5221AC
7934.893:0048:004c:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7934.893:0050:0054:trace:imports:import_dll --- NtGdiArcInternal win32u.dll.143 = 7B5221EC
7934.893:0048:004c:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7bb0a51d
7934.893:0050:0054:trace:imports:import_dll --- NtGdiBeginPath win32u.dll.150 = 7B5222CC
7934.893:0050:0054:trace:imports:import_dll --- NtGdiBitBlt win32u.dll.151 = 7B5222EC
7934.893:0048:004c:Call KERNEL32.WideCharToMultiByte(000004e2,00000000,0062f418 L"",00000100,0062f118,00000100,00000000,00000000) ret=7bb0a5aa
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCancelDC win32u.dll.155 = 7B52236C
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCloseFigure win32u.dll.160 = 7B52240C
7934.893:0048:004c:Call kernelbase.WideCharToMultiByte(000004e2,00000000,0062f418 L"",00000100,0062f118,00000100,00000000,00000000) ret=7bf3cfb4
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCombineRgn win32u.dll.162 = 7B52244C
7934.893:0050:0054:trace:imports:import_dll --- NtGdiComputeXformCoefficients win32u.dll.164 = 7B52248C
7934.893:0048:004c:trace:nls:WideCharToMultiByte cp 1250 L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"... -> "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x9a\x8b\x9c\x9d\x9e\x9f\x90"..., ret = 256
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateBitmap win32u.dll.167 = 7B5224EC
7934.893:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000100 ret=7bf3cfb4
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateClientObj win32u.dll.170 = 7B52254C
7934.893:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000100 ret=7bb0a5aa
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateCompatibleBitmap win32u.dll.173 = 7B5225AC
7934.893:0048:004c:trace:msvcrt:_lock (25)
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateCompatibleDC win32u.dll.174 = 7B5225CC
7934.893:0048:004c:Call ntdll.RtlEnterCriticalSection(7bb71fe0) ret=7baed55a
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateDIBBrush win32u.dll.175 = 7B5225EC
7934.893:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateDIBSection win32u.dll.176 = 7B52260C
7934.893:0048:004c:trace:msvcrt:_unlock (25)
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateDIBitmapInternal win32u.dll.177 = 7B52262C
7934.893:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bb71fe0) ret=7bafbdfc
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateEllipticRgn win32u.dll.178 = 7B52264C
7934.893:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bafbdfc
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateHalftonePalette win32u.dll.179 = 7B52266C
7934.893:0048:004c:Call KERNEL32.IsProcessorFeaturePresent(0000000a) ret=7bb194a1
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateHatchBrushInternal win32u.dll.180 = 7B52268C
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateMetafileDC win32u.dll.181 = 7B5226AC
7934.893:0048:004c:Call kernelbase.IsProcessorFeaturePresent(0000000a) ret=7bf3cfb4
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreatePaletteInternal win32u.dll.184 = 7B52270C
7934.893:0048:004c:Call ntdll.RtlIsProcessorFeaturePresent(0000000a) ret=7bc28a02
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreatePatternBrushInternal win32u.dll.185 = 7B52272C
7934.893:0048:004c:SysCall  NtWow64IsProcessorFeaturePresent(0000000a)
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreatePen win32u.dll.186 = 7B52274C
7934.893:0048:004c:SysRet   NtWow64IsProcessorFeaturePresent() retval=00000001
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateRectRgn win32u.dll.187 = 7B52276C
7934.893:0048:004c:Ret  ntdll.RtlIsProcessorFeaturePresent() retval=00000001 ret=7bc28a02
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateRoundRectRgn win32u.dll.188 = 7B52278C
7934.893:0048:004c:Ret  kernelbase.IsProcessorFeaturePresent() retval=00000001 ret=7bf3cfb4
7934.893:0050:0054:trace:imports:import_dll --- NtGdiCreateSolidBrush win32u.dll.191 = 7B5227EC
7934.893:0048:004c:Ret  KERNEL32.IsProcessorFeaturePresent() retval=00000001 ret=7bb194a1
7934.893:0050:0054:trace:imports:import_dll --- NtGdiDeleteClientObj win32u.dll.396 = 7B52418C
7934.893:0048:004c:Call KERNEL32.GetStartupInfoA(0062fa04) ret=7bb18905
7934.893:0050:0054:trace:imports:import_dll --- NtGdiDeleteObjectApp win32u.dll.399 = 7B5241EC
7934.893:0048:004c:Ret  KERNEL32.GetStartupInfoA() retval=7beca9c0 ret=7bb18905
7934.893:0050:0054:trace:imports:import_dll --- NtGdiDescribePixelFormat win32u.dll.400 = 7B52420C
7934.893:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000008,00000480) ret=7bb17d96
7934.893:0050:0054:trace:imports:import_dll --- NtGdiDoPalette win32u.dll.405 = 7B5242AC
7934.893:0050:0054:trace:imports:import_dll --- NtGdiDrawStream win32u.dll.407 = 7B5242EC
7934.893:0050:0054:trace:imports:import_dll --- NtGdiEllipse win32u.dll.409 = 7B52432C
7934.893:0050:0054:trace:imports:import_dll --- NtGdiEndDoc win32u.dll.411 = 7B52436C
7934.893:0050:0054:trace:imports:import_dll --- NtGdiEndPage win32u.dll.413 = 7B5243AC
7934.893:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0x8, size 0x480, return 003B1B60, status 0.
7934.893:0050:0054:trace:imports:import_dll --- NtGdiEndPath win32u.dll.414 = 7B5243CC
7934.893:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b1b60 ret=7bb17d96
7934.893:0050:0054:trace:imports:import_dll --- NtGdiEnumFonts win32u.dll.446 = 7B5247CC
7934.893:0048:004c:Call ntdll.RtlEnterCriticalSection(7bb46d80) ret=7bb19031
7934.893:0050:0054:trace:imports:import_dll --- NtGdiEqualRgn win32u.dll.448 = 7B52480C
7934.893:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb19031
7934.893:0050:0054:trace:imports:import_dll --- NtGdiExcludeClipRect win32u.dll.450 = 7B52484C
7934.893:0048:004c:Call ntdll.RtlInitializeCriticalSection(003b1b6c) ret=7bb19129
7934.893:0050:0054:trace:imports:import_dll --- NtGdiExtCreatePen win32u.dll.451 = 7B52486C
7934.893:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7bb19129
7934.893:0050:0054:trace:imports:import_dll --- NtGdiExtCreateRegion win32u.dll.452 = 7B52488C
7934.893:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bb46d80) ret=7bb19049
7934.893:0050:0054:trace:imports:import_dll --- NtGdiExtEscape win32u.dll.453 = 7B5248AC
7934.893:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb19049
7934.893:0050:0054:trace:imports:import_dll --- NtGdiExtFloodFill win32u.dll.454 = 7B5248CC
7934.893:0048:004c:Call ntdll.RtlEnterCriticalSection(003b1b6c) ret=7bb18a42
7934.893:0050:0054:trace:imports:import_dll --- NtGdiExtGetObjectW win32u.dll.455 = 7B5248EC
7934.893:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb18a42
7934.893:0050:0054:trace:imports:import_dll --- NtGdiExtSelectClipRgn win32u.dll.456 = 7B52490C
7934.893:0048:004c:Call KERNEL32.GetStdHandle(fffffff6) ret=7bb18cb5
7934.893:0050:0054:trace:imports:import_dll --- NtGdiExtTextOutW win32u.dll.457 = 7B52492C
7934.893:0048:004c:Call kernelbase.GetStdHandle(fffffff6) ret=7bf3cfb4
7934.893:0050:0054:trace:imports:import_dll --- NtGdiFillPath win32u.dll.466 = 7B524A4C
7934.893:0048:004c:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7934.893:0050:0054:trace:imports:import_dll --- NtGdiFillRgn win32u.dll.467 = 7B524A6C
7934.893:0048:004c:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7bb18cb5
7934.893:0050:0054:trace:imports:import_dll --- NtGdiFlattenPath win32u.dll.468 = 7B524A8C
7934.893:0048:004c:Call KERNEL32.GetFileType(00000000) ret=7bb18cc2
7934.893:0050:0054:trace:imports:import_dll --- NtGdiFlush win32u.dll.469 = 7B524AAC
7934.893:0048:004c:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7934.893:0050:0054:trace:imports:import_dll --- NtGdiFontIsLinked win32u.dll.470 = 7B524ACC
7934.893:0048:004c:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004) ret=7bc1774f
7934.893:0050:0054:trace:imports:import_dll --- NtGdiFrameRgn win32u.dll.472 = 7B524B0C
7934.893:0050:0054:trace:imports:import_dll --- NtGdiGetAndSetDCDword win32u.dll.474 = 7B524B4C
7934.893:0048:004c:SysCall  NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004)
7934.893:0050:0054:trace:imports:import_dll --- NtGdiGetAppClipBox win32u.dll.475 = 7B524B6C
7934.893:0050:0054:trace:imports:import_dll --- NtGdiGetBitmapBits win32u.dll.477 = 7B524BAC
7934.893:0050:0054:trace:imports:import_dll --- NtGdiGetBitmapDimension win32u.dll.478 = 7B524BCC
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetBoundsRect win32u.dll.480 = 7B524C0C
004c: get_handle_fd( handle=0000 )
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetCharABCWidthsW win32u.dll.486 = 7B524CCC
004c: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetCharWidthInfo win32u.dll.488 = 7B524D0C
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetCharWidthW win32u.dll.489 = 7B524D2C
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetColorAdjustment win32u.dll.491 = 7B524D6C
7934.898:0048:004c:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetDCObject win32u.dll.496 = 7B524E0C
7934.898:0048:004c:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetDIBitsInternal win32u.dll.499 = 7B524E6C
7934.898:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetDeviceCaps win32u.dll.500 = 7B524E8C
7934.898:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetDeviceGammaRamp win32u.dll.502 = 7B524ECC
7934.898:0048:004c:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetFontData win32u.dll.510 = 7B524FCC
7934.898:0048:004c:Ret  KERNEL32.GetFileType() retval=00000000 ret=7bb18cc2
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetFontFileData win32u.dll.511 = 7B524FEC
7934.898:0048:004c:Call ntdll.RtlLeaveCriticalSection(003b1b6c) ret=7bb18e54
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetFontFileInfo win32u.dll.512 = 7B52500C
7934.898:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb18e54
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetFontUnicodeRanges win32u.dll.514 = 7B52504C
7934.898:0048:004c:Call ntdll.RtlEnterCriticalSection(7bb46d80) ret=7bb18fc4
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetGlyphIndicesW win32u.dll.516 = 7B52508C
7934.898:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb18fc4
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetGlyphOutline win32u.dll.518 = 7B5250CC
7934.898:0048:004c:Call ntdll.RtlInitializeCriticalSection(003b1b90) ret=7bb19161
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetKerningPairs win32u.dll.519 = 7B5250EC
7934.898:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7bb19161
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetMiterLimit win32u.dll.521 = 7B52512C
7934.898:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bb46d80) ret=7bb18fe2
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetNearestColor win32u.dll.523 = 7B52516C
7934.898:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb18fe2
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetNearestPaletteIndex win32u.dll.524 = 7B52518C
7934.898:0048:004c:Call ntdll.RtlEnterCriticalSection(003b1b90) ret=7bb18a9d
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetOutlineTextMetricsInternalW win32u.dll.529 = 7B52522C
7934.898:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb18a9d
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetPath win32u.dll.530 = 7B52524C
7934.898:0048:004c:Call KERNEL32.GetStdHandle(fffffff5) ret=7bb18c75
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetPixel win32u.dll.535 = 7B5252EC
7934.898:0048:004c:Call kernelbase.GetStdHandle(fffffff5) ret=7bf3cfb4
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetRandomRgn win32u.dll.538 = 7B52534C
7934.898:0048:004c:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetRasterizerCaps win32u.dll.539 = 7B52536C
7934.898:0048:004c:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7bb18c75
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetRealizationInfo win32u.dll.540 = 7B52538C
7934.898:0048:004c:Call KERNEL32.GetFileType(00000000) ret=7bb18c82
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetRegionData win32u.dll.541 = 7B5253AC
7934.898:0048:004c:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetRgnBox win32u.dll.542 = 7B5253CC
7934.898:0048:004c:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004) ret=7bc1774f
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetSpoolMessage win32u.dll.544 = 7B52540C
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetSystemPaletteUse win32u.dll.548 = 7B52548C
7934.898:0048:004c:SysCall  NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004)
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetTextCharsetInfo win32u.dll.549 = 7B5254AC
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetTextExtentExW win32u.dll.551 = 7B5254EC
7934.898:0050:0054:trace:imports:import_dll --- NtGdiGetTextFaceW win32u.dll.552 = 7B52550C
004c: get_handle_fd( handle=0000 )
7934.899:0050:0054:trace:imports:import_dll --- NtGdiGetTextMetricsW win32u.dll.553 = 7B52552C
004c: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7934.899:0050:0054:trace:imports:import_dll --- NtGdiGetTransform win32u.dll.554 = 7B52554C
7934.899:0050:0054:trace:imports:import_dll --- NtGdiGradientFill win32u.dll.558 = 7B5255CC
7934.899:0048:004c:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7934.899:0050:0054:trace:imports:import_dll --- NtGdiHfontCreate win32u.dll.563 = 7B52566C
7934.899:0048:004c:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7934.899:0050:0054:trace:imports:import_dll --- NtGdiIcmBrushInfo win32u.dll.564 = 7B52568C
7934.899:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7934.899:0050:0054:trace:imports:import_dll --- NtGdiInitSpool win32u.dll.567 = 7B5256EC
7934.899:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7934.899:0050:0054:trace:imports:import_dll --- NtGdiIntersectClipRect win32u.dll.568 = 7B52570C
7934.899:0048:004c:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7934.899:0050:0054:trace:imports:import_dll --- NtGdiInvertRgn win32u.dll.569 = 7B52572C
7934.899:0048:004c:Ret  KERNEL32.GetFileType() retval=00000000 ret=7bb18c82
7934.899:0050:0054:trace:imports:import_dll --- NtGdiLineTo win32u.dll.570 = 7B52574C
7934.899:0048:004c:Call ntdll.RtlLeaveCriticalSection(003b1b90) ret=7bb18d8c
7934.899:0050:0054:trace:imports:import_dll --- NtGdiMakeFontDir win32u.dll.571 = 7B52576C
7934.899:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb18d8c
7934.899:0050:0054:trace:imports:import_dll --- NtGdiMaskBlt win32u.dll.575 = 7B5257EC
7934.899:0048:004c:Call ntdll.RtlEnterCriticalSection(7bb46d80) ret=7bb18ffc
7934.899:0050:0054:trace:imports:import_dll --- NtGdiModifyWorldTransform win32u.dll.577 = 7B52582C
7934.899:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb18ffc
7934.899:0050:0054:trace:imports:import_dll --- NtGdiMoveTo win32u.dll.579 = 7B52586C
7934.899:0048:004c:Call ntdll.RtlInitializeCriticalSection(003b1bb4) ret=7bb19141
7934.899:0050:0054:trace:imports:import_dll --- NtGdiOffsetClipRgn win32u.dll.580 = 7B52588C
7934.899:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7bb19141
7934.899:0050:0054:trace:imports:import_dll --- NtGdiOffsetRgn win32u.dll.581 = 7B5258AC
7934.899:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bb46d80) ret=7bb1901a
7934.899:0050:0054:trace:imports:import_dll --- NtGdiOpenDCW win32u.dll.582 = 7B5258CC
7934.899:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb1901a
7934.899:0050:0054:trace:imports:import_dll --- NtGdiPatBlt win32u.dll.588 = 7B52598C
7934.899:0048:004c:Call ntdll.RtlEnterCriticalSection(003b1bb4) ret=7bb18af8
7934.899:0050:0054:trace:imports:import_dll --- NtGdiPathToRegion win32u.dll.589 = 7B5259AC
7934.899:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb18af8
7934.899:0050:0054:trace:imports:import_dll --- NtGdiPlgBlt win32u.dll.590 = 7B5259CC
7934.899:0048:004c:Call KERNEL32.GetStdHandle(fffffff4) ret=7bb18c35
7934.899:0050:0054:trace:imports:import_dll --- NtGdiPolyDraw win32u.dll.591 = 7B5259EC
7934.899:0048:004c:Call kernelbase.GetStdHandle(fffffff4) ret=7bf3cfb4
7934.899:0050:0054:trace:imports:import_dll --- NtGdiPolyPolyDraw win32u.dll.593 = 7B525A2C
7934.899:0048:004c:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7934.899:0050:0054:trace:imports:import_dll --- NtGdiPtInRegion win32u.dll.595 = 7B525A6C
7934.899:0048:004c:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7bb18c35
7934.899:0050:0054:trace:imports:import_dll --- NtGdiPtVisible win32u.dll.596 = 7B525A8C
7934.899:0048:004c:Call KERNEL32.GetFileType(00000000) ret=7bb18c42
7934.899:0050:0054:trace:imports:import_dll --- NtGdiRectInRegion win32u.dll.599 = 7B525AEC
7934.899:0048:004c:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7934.899:0050:0054:trace:imports:import_dll --- NtGdiRectVisible win32u.dll.600 = 7B525B0C
7934.899:0048:004c:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004) ret=7bc1774f
7934.899:0050:0054:trace:imports:import_dll --- NtGdiRectangle win32u.dll.601 = 7B525B2C
7934.899:0050:0054:trace:imports:import_dll --- NtGdiRemoveFontMemResourceEx win32u.dll.602 = 7B525B4C
7934.899:0048:004c:SysCall  NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004)
7934.899:0050:0054:trace:imports:import_dll --- NtGdiRemoveFontResourceW win32u.dll.603 = 7B525B6C
7934.899:0050:0054:trace:imports:import_dll --- NtGdiResetDC win32u.dll.605 = 7B525BAC
7934.899:0050:0054:trace:imports:import_dll --- NtGdiResizePalette win32u.dll.606 = 7B525BCC
004c: get_handle_fd( handle=0000 )
7934.900:0050:0054:trace:imports:import_dll --- NtGdiRestoreDC win32u.dll.607 = 7B525BEC
004c: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7934.900:0050:0054:trace:imports:import_dll --- NtGdiRoundRect win32u.dll.608 = 7B525C0C
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSaveDC win32u.dll.614 = 7B525CCC
7934.900:0048:004c:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7934.900:0050:0054:trace:imports:import_dll --- NtGdiScaleViewportExtEx win32u.dll.617 = 7B525D2C
7934.900:0048:004c:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7934.900:0050:0054:trace:imports:import_dll --- NtGdiScaleWindowExtEx win32u.dll.618 = 7B525D4C
7934.900:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSelectBitmap win32u.dll.619 = 7B525D6C
7934.900:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSelectBrush win32u.dll.620 = 7B525D8C
7934.900:0048:004c:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSelectClipPath win32u.dll.621 = 7B525DAC
7934.900:0048:004c:Ret  KERNEL32.GetFileType() retval=00000000 ret=7bb18c42
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSelectFont win32u.dll.622 = 7B525DCC
7934.900:0048:004c:Call ntdll.RtlLeaveCriticalSection(003b1bb4) ret=7bb18d74
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSelectPen win32u.dll.623 = 7B525DEC
7934.900:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb18d74
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetBitmapBits win32u.dll.625 = 7B525E2C
7934.900:0048:004c:trace:msvcrt:msvcrt_init_io :handles (FFFFFFFE)(FFFFFFFE)(FFFFFFFE)
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetBitmapDimension win32u.dll.626 = 7B525E4C
7934.900:0048:004c:Call KERNEL32.GetCommandLineA() ret=7bb17ee2
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetBoundsRect win32u.dll.627 = 7B525E6C
7934.900:0048:004c:Call kernelbase.GetCommandLineA() ret=7bf3cfb4
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetColorAdjustment win32u.dll.630 = 7B525ECC
7934.900:0048:004c:Ret  kernelbase.GetCommandLineA() retval=002823e8 ret=7bf3cfb4
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetDIBitsToDeviceInternal win32u.dll.632 = 7B525F0C
7934.900:0048:004c:Ret  KERNEL32.GetCommandLineA() retval=002823e8 ret=7bb17ee2
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetDeviceGammaRamp win32u.dll.633 = 7B525F2C
7934.900:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,0000002c) ret=7bb17d96
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetLayout win32u.dll.637 = 7B525FAC
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetMagicColors win32u.dll.639 = 7B525FEC
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetMetaRgn win32u.dll.640 = 7B52600C
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetMiterLimit win32u.dll.641 = 7B52602C
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetPixel win32u.dll.644 = 7B52608C
7934.900:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2c, return 003B1FF8, status 0.
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetPixelFormat win32u.dll.645 = 7B5260AC
7934.900:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b1ff8 ret=7bb17d96
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetRectRgn win32u.dll.647 = 7B5260EC
7934.900:0048:004c:Call KERNEL32.GetCommandLineW() ret=7bb17ef7
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetSystemPaletteUse win32u.dll.649 = 7B52612C
7934.900:0048:004c:Call kernelbase.GetCommandLineW() ret=7bf3cfb4
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetTextJustification win32u.dll.650 = 7B52614C
7934.900:0048:004c:Ret  kernelbase.GetCommandLineW() retval=0024366e ret=7bf3cfb4
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSetVirtualResolution win32u.dll.652 = 7B52618C
7934.900:0048:004c:Ret  KERNEL32.GetCommandLineW() retval=0024366e ret=7bb17ef7
7934.900:0050:0054:trace:imports:import_dll --- NtGdiStartDoc win32u.dll.653 = 7B5261AC
7934.900:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000058) ret=7bb17d96
7934.900:0050:0054:trace:imports:import_dll --- NtGdiStartPage win32u.dll.654 = 7B5261CC
7934.900:0050:0054:trace:imports:import_dll --- NtGdiStretchBlt win32u.dll.655 = 7B5261EC
7934.900:0050:0054:trace:imports:import_dll --- NtGdiStretchDIBitsInternal win32u.dll.656 = 7B52620C
7934.900:0050:0054:trace:imports:import_dll --- NtGdiStrokeAndFillPath win32u.dll.657 = 7B52622C
7934.900:0050:0054:trace:imports:import_dll --- NtGdiStrokePath win32u.dll.658 = 7B52624C
7934.900:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x58, return 003B2040, status 0.
7934.900:0050:0054:trace:imports:import_dll --- NtGdiSwapBuffers win32u.dll.659 = 7B52626C
7934.900:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b2040 ret=7bb17d96
7934.900:0050:0054:trace:imports:import_dll --- NtGdiTransformPoints win32u.dll.660 = 7B52628C
7934.900:0048:004c:Call KERNEL32.GetCommandLineW() ret=7bb17f06
7934.900:0050:0054:trace:imports:import_dll --- NtGdiTransparentBlt win32u.dll.661 = 7B5262AC
7934.900:0048:004c:Call kernelbase.GetCommandLineW() ret=7bf3cfb4
7934.900:0050:0054:trace:imports:import_dll --- NtGdiUnrealizeObject win32u.dll.665 = 7B52632C
7934.900:0048:004c:Ret  kernelbase.GetCommandLineW() retval=0024366e ret=7bf3cfb4
7934.900:0050:0054:trace:imports:import_dll --- NtGdiUpdateColors win32u.dll.666 = 7B52634C
7934.900:0048:004c:Ret  KERNEL32.GetCommandLineW() retval=0024366e ret=7bb17f06
7934.900:0050:0054:trace:imports:import_dll --- NtGdiWidenPath win32u.dll.669 = 7B5263AC
7934.900:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,000000b8) ret=7bb17f4e
7934.900:0050:0054:trace:imports:import_dll --- NtUserCallHwndParam win32u.dll.822 = 7B5276CC
7934.900:0050:0054:trace:imports:import_dll --- NtUserCallOneParam win32u.dll.829 = 7B5277AC
7934.900:0050:0054:trace:imports:import_dll --- NtUserRealizePalette win32u.dll.1252 = 7B52AC8C
7934.900:0050:0054:trace:imports:import_dll --- NtUserSelectPalette win32u.dll.1324 = 7B52B58C
7934.900:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000008,0062f518)
7934.900:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xb8, return 0027C9F8, status 0.
7934.900:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b5ee000 00001000 00000008
7934.900:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=0027c9f8 ret=7bb17f4e
7934.900:0050:0054:trace:virtual:get_vprot_range_size base 0x7b5ee000, size 0x1000, mask 0x20.
7934.900:0048:004c:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027ca58 L"C:\\windows\\system32\\explorer.exe",ffffffff,00000000,00000000,00000000,00000000) ret=7bb060c8
7934.900:0050:0054:trace:virtual:dump_view View: 0x7b570000 - 0x7b5f9fff c-rWx (image)
7934.900:0050:0054:trace:virtual:dump_view       0x7b570000 - 0x7b570fff c-r--
7934.900:0048:004c:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027ca58 L"C:\\windows\\system32\\explorer.exe",ffffffff,00000000,00000000,00000000,00000000) ret=7bf3cfb4
7934.900:0050:0054:trace:virtual:dump_view       0x7b571000 - 0x7b5bffff c-r-x
7934.900:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"C:\\windows\\system32\\explorer.exe\0000" -> (null), ret = 33
7934.900:0050:0054:trace:virtual:dump_view       0x7b5c0000 - 0x7b5c0fff c-rW-
7934.900:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000021 ret=7bf3cfb4
7934.900:0050:0054:trace:virtual:dump_view       0x7b5c1000 - 0x7b5e7fff c-r--
7934.900:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000021 ret=7bb060c8
7934.900:0050:0054:trace:virtual:dump_view       0x7b5e8000 - 0x7b5e8fff c-rW-
7934.900:0050:0054:trace:virtual:dump_view       0x7b5e9000 - 0x7b5edfff c-r--
7934.900:0048:004c:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027ca9a L"/desktop",ffffffff,00000000,00000000,00000000,00000000) ret=7bb060c8
7934.900:0050:0054:trace:virtual:dump_view       0x7b5ee000 - 0x7b5f5fff c-rW-
7934.900:0050:0054:trace:virtual:dump_view       0x7b5f6000 - 0x7b5f9fff c-r--
7934.900:0048:004c:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027ca9a L"/desktop",ffffffff,00000000,00000000,00000000,00000000) ret=7bf3cfb4
7934.900:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.900:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"/desktop\0000" -> (null), ret = 9
7934.900:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000009 ret=7bf3cfb4
7934.900:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000009 ret=7bb060c8
7934.900:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000036) ret=7bb06102
7934.900:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 002732E0, status 0.
7934.900:0050:0054:trace:module:build_module loaded L"\\??\\C:\\windows\\system32\\gdi32.dll" 00271D88 7B570000
7934.900:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x36, return 00282908, status 0.
7934.900:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00282908 ret=7bb06102
7934.900:0048:004c:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027ca58 L"C:\\windows\\system32\\explorer.exe",ffffffff,00282914,0000002a,00000000,00000000) ret=7bb06168
7934.900:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x1138, return 0027A448, status 0.
7934.900:0048:004c:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027ca58 L"C:\\windows\\system32\\explorer.exe",ffffffff,00282914,0000002a,00000000,00000000) ret=7bf3cfb4
7934.900:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"C:\\windows\\system32\\explorer.exe\0000" -> "C:\\windows\\system32\\explorer.exe\x00", ret = 33
7934.900:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f768,0062f76c,00000004,0062f764)
7934.900:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000021 ret=7bf3cfb4
7934.900:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b5e9028 00000884 00000004
7934.900:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000021 ret=7bb06168
7934.900:0050:0054:trace:virtual:get_vprot_range_size base 0x7b5e9000, size 0x1000, mask 0x20.
7934.900:0048:004c:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027ca9a L"/desktop",ffffffff,00282935,00000009,00000000,00000000) ret=7bb06168
7934.900:0050:0054:trace:virtual:dump_view View: 0x7b570000 - 0x7b5f9fff c-rWx (image)
7934.900:0048:004c:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027ca9a L"/desktop",ffffffff,00282935,00000009,00000000,00000000) ret=7bf3cfb4
7934.900:0050:0054:trace:virtual:dump_view       0x7b570000 - 0x7b570fff c-r--
7934.900:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"/desktop\0000" -> "/desktop\x00", ret = 9
7934.900:0050:0054:trace:virtual:dump_view       0x7b571000 - 0x7b5bffff c-r-x
7934.900:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000009 ret=7bf3cfb4
7934.900:0050:0054:trace:virtual:dump_view       0x7b5c0000 - 0x7b5c0fff c-rW-
7934.900:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000009 ret=7bb06168
7934.900:0050:0054:trace:virtual:dump_view       0x7b5c1000 - 0x7b5e7fff c-r--
7934.900:0048:004c:Call KERNEL32.IsBadStringPtrW(003b2040,ffffffff) ret=7bb1833d
7934.900:0050:0054:trace:virtual:dump_view       0x7b5e8000 - 0x7b5e9fff c-rW-
7934.900:0048:004c:Ret  KERNEL32.IsBadStringPtrW() retval=00000000 ret=7bb1833d
7934.900:0050:0054:trace:virtual:dump_view       0x7b5ea000 - 0x7b5edfff c-r--
7934.900:0048:004c:trace:msvcrt:msvcrt_init_args got "\"C:\\windows\\system32\\explorer.exe\" /desktop", wide = L"\"C:\\windows\\system32\\explorer.exe\" /desktop" argc=2
7934.900:0050:0054:trace:virtual:dump_view       0x7b5ee000 - 0x7b5f5fff c-rW-
7934.900:0048:004c:Call KERNEL32.GetVersionExW(0062f91c) ret=7bb1805b
7934.900:0050:0054:trace:virtual:dump_view       0x7b5f6000 - 0x7b5f9fff c-r--
7934.900:0048:004c:Call kernelbase.GetVersionExW(0062f91c) ret=7bf3cfb4
7934.900:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.900:0048:004c:Call ntdll.RtlRunOnceExecuteOnce(7bcb8c80,7bc70990,00000000,00000000) ret=7bc26189
7934.900:0048:004c:Ret  ntdll.RtlRunOnceExecuteOnce() retval=00000000 ret=7bc26189
7934.900:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f768,0062f76c,00000002,0062f764)
7934.900:0048:004c:Call ntdll.wcscpy(0062f930,7bcb8cb4 L"") ret=7bc21d77
7934.900:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b5e9000 00001000 00000002
7934.900:0048:004c:Ret  ntdll.wcscpy() retval=0062f930 ret=7bc21d77
7934.900:0050:0054:trace:virtual:get_vprot_range_size base 0x7b5e9000, size 0x1000, mask 0x20.
7934.900:0048:004c:Ret  kernelbase.GetVersionExW() retval=00000001 ret=7bf3cfb4
7934.900:0048:004c:Ret  KERNEL32.GetVersionExW() retval=00000001 ret=7bb1805b
7934.900:0050:0054:trace:virtual:dump_view View: 0x7b570000 - 0x7b5f9fff c-rWx (image)
7934.900:0048:004c:trace:msvcrt:msvcrt_init_args winver 00000602 winmajor 00000006 winminor 00000002 osver 000023f0
7934.900:0050:0054:trace:virtual:dump_view       0x7b570000 - 0x7b570fff c-r--
7934.900:0048:004c:Call KERNEL32.GetEnvironmentStringsA() ret=7bb0c016
7934.900:0050:0054:trace:virtual:dump_view       0x7b571000 - 0x7b5bffff c-r-x
7934.900:0048:004c:Call kernelbase.GetEnvironmentStringsA() ret=7bf3cfb4
7934.900:0050:0054:trace:virtual:dump_view       0x7b5c0000 - 0x7b5c0fff c-rW-
7934.900:0048:004c:Call ntdll.RtlAcquirePebLock() ret=7bc158a1
7934.900:0050:0054:trace:virtual:dump_view       0x7b5c1000 - 0x7b5e7fff c-r--
7934.900:0048:004c:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc158a1
7934.900:0050:0054:trace:virtual:dump_view       0x7b5e8000 - 0x7b5e8fff c-rW-
7934.900:0050:0054:trace:virtual:dump_view       0x7b5e9000 - 0x7b5edfff c-r--
7934.900:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"WINEDEBUG=err+all,warn+all,fixme+all,trace+all\0000SHELL=/bin/bash\0000PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\0000GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\0000G_BROKEN_FILENAMES=1\0000HOSTNAME=atomak.arne"... -> (null), ret = 3285
7934.900:0050:0054:trace:virtual:dump_view       0x7b5ee000 - 0x7b5f5fff c-rW-
7934.900:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000cd5) ret=7bc15936
7934.900:0050:0054:trace:virtual:dump_view       0x7b5f6000 - 0x7b5f9fff c-r--
7934.900:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.900:0050:0054:trace:loaddll:build_module Loaded L"C:\\windows\\system32\\gdi32.dll" at 7B570000: builtin
7934.900:0050:0054:trace:module:load_dll Loaded module L"\\??\\C:\\windows\\system32\\gdi32.dll" at 7B570000
7934.900:0050:0054:SysCall  NtClose(0000001c)
0054: close_handle( handle=001c )
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xcd5, return 00282958, status 0.
0054: close_handle() = 0
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00282958 ret=7bc15936
7934.904:0050:0054:SysRet   NtClose() retval=00000000
7934.904:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"WINEDEBUG=err+all,warn+all,fixme+all,trace+all\0000SHELL=/bin/bash\0000PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\0000GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\0000G_BROKEN_FILENAMES=1\0000HOSTNAME=atomak.arne"... -> "WINEDEBUG=err+all,warn+all,fixme+all,trace+all\x00SHELL=/bin/bash\x00PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\x00GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\x00G_BROKEN_FILENAMES=1\x00HOSTNAME=atomak.arnet.org\x00"..., ret = 3285
7934.904:0048:004c:Call ntdll.RtlReleasePebLock() ret=7bc1597f
7934.904:0048:004c:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc1597f
7934.904:0048:004c:Ret  kernelbase.GetEnvironmentStringsA() retval=00282958 ret=7bf3cfb4
7934.904:0048:004c:Ret  KERNEL32.GetEnvironmentStringsA() retval=00282958 ret=7bb0c016
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000d9d) ret=7bb17d96
7934.904:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002618F8, return 1, status 0.
7934.904:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000004,0062f994)
7934.904:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e3c0 00000030 00000004
7934.904:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0xd9d, return 003B20B0, status 0.
7934.904:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=003b20b0 ret=7bb17d96
7934.904:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.904:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.904:0048:004c:Call KERNEL32.FreeEnvironmentStringsA(00282958) ret=7bb0c0e9
7934.904:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.904:0048:004c:Call kernelbase.FreeEnvironmentStringsA(00282958) ret=7bf3cfb4
7934.904:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.904:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00282958) ret=7bc106ac
7934.904:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.904:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.904:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.904:0050:0054:trace:imports:import_dll --- CreateCompatibleDC gdi32.dll.36 = 7B5720AC
7934.904:0050:0054:trace:imports:import_dll --- CreateDIBSection gdi32.dll.41 = 7B57214C
7934.904:0050:0054:trace:imports:import_dll --- CreateFontIndirectW gdi32.dll.52 = 7B5722AC
7934.904:0050:0054:trace:imports:import_dll --- DeleteDC gdi32.dll.123 = 7B57258C
7934.904:0050:0054:trace:imports:import_dll --- DeleteObject gdi32.dll.126 = 7B5725EC
7934.904:0050:0054:trace:imports:import_dll --- GetDeviceCaps gdi32.dll.273 = 7B57382C
7934.904:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00282958, return 1, status 0.
7934.904:0050:0054:trace:imports:import_dll --- GetTextExtentPointA gdi32.dll.345 = 7B57412C
7934.904:0048:004c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc106ac
7934.904:0050:0054:trace:imports:import_dll --- GetTextExtentPointW gdi32.dll.347 = 7B57416C
7934.904:0048:004c:Ret  kernelbase.FreeEnvironmentStringsA() retval=00000001 ret=7bf3cfb4
7934.904:0050:0054:trace:imports:import_dll --- GetTextMetricsW gdi32.dll.351 = 7B5741EC
7934.904:0048:004c:Ret  KERNEL32.FreeEnvironmentStringsA() retval=00000001 ret=7bb0c0e9
7934.904:0050:0054:trace:imports:import_dll --- SelectObject gdi32.dll.456 = 7B574F0C
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000104) ret=7bb1810a
7934.904:0050:0054:trace:imports:import_dll --- SetBkMode gdi32.dll.463 = 7B574FEC
7934.904:0050:0054:trace:imports:import_dll --- SetTextColor gdi32.dll.500 = 7B57548C
7934.904:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000008,0062f994)
7934.904:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e000 00001000 00000008
7934.904:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.904:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.904:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.904:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.904:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x104, return 00283648, status 0.
7934.904:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283648 ret=7bb1810a
7934.904:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.904:0048:004c:Call KERNEL32.GetModuleFileNameA(00000000,00283648,00000104) ret=7bb1812f
7934.904:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.904:0048:004c:Call kernelbase.GetModuleFileNameA(00000000,00283648,00000104) ret=7bf3cfb4
7934.904:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000208) ret=7bc1aee2
7934.904:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273310, status 0.
7934.904:0050:0054:trace:module:load_dll looking for L"kernel32.dll" in (null)
7934.904:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"kernel32.dll" 0062F7EC
7934.904:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\kernel32.dll" for L"kernel32.dll" at 7BEB0000, count=8
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x208, return 00283768, status 0.
7934.904:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000004,0062f994)
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283768 ret=7bc1aee2
7934.904:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e3f4 000000a4 00000004
7934.904:0048:004c:Call ntdll.LdrGetDllFullName(00000000,0062f840) ret=7bc1b3e8
7934.904:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.904:0048:004c:trace:module:LdrGetDllFullName module 00000000, name 0062F840.
7934.904:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.904:0048:004c:Ret  ntdll.LdrGetDllFullName() retval=00000000 ret=7bc1b3e8
7934.904:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.904:0048:004c:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc1b400
7934.904:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.904:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc1b400
7934.904:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.904:0048:004c:trace:module:GetModuleFileNameW L"C:\\windows\\system32\\explorer.exe"
7934.904:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.904:0048:004c:Call ntdll.RtlUnicodeToMultiByteN(00283648,00000104,0062f848,00283768,00000040) ret=7bc68ded
7934.904:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.904:0048:004c:Ret  ntdll.RtlUnicodeToMultiByteN() retval=00000000 ret=7bc68ded
7934.904:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.904:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00283768) ret=7bc1af2f
7934.904:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.904:0050:0054:trace:imports:import_dll --- CloseHandle kernel32.dll.63 = 7BEB28D0
7934.904:0050:0054:trace:imports:import_dll --- CompareStringW kernel32.dll.81 = 7BEB2A30
7934.904:0050:0054:trace:imports:import_dll --- CreateEventW kernel32.dll.112 = 7BEB2E10
7934.904:0050:0054:trace:imports:import_dll --- CreateFileW kernel32.dll.123 = 7BEB2F30
7934.904:0050:0054:trace:imports:import_dll --- CreateMutexW kernel32.dll.138 = 7BEB3130
7934.904:0050:0054:trace:imports:import_dll --- CreateProcessW kernel32.dll.147 = 7BEB3250
7934.904:0050:0054:trace:imports:import_dll --- CreateThread kernel32.dll.159 = 7BEB33D0
7934.904:0050:0054:trace:imports:import_dll --- DelayLoadFailureHook kernel32.dll.185 = 7BEB36B0
7934.904:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00283768, return 1, status 0.
7934.904:0050:0054:trace:imports:import_dll --- DuplicateHandle kernel32.dll.209 = 7BEB3950
7934.904:0048:004c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc1af2f
7934.904:0050:0054:trace:imports:import_dll --- EnterCriticalSection kernel32.dll.214 = 7BF35DD0
7934.904:0048:004c:Ret  kernelbase.GetModuleFileNameA() retval=00000020 ret=7bf3cfb4
7934.904:0050:0054:trace:imports:import_dll --- ExitProcess kernel32.dll.256 = 7BEB3ED0
7934.904:0048:004c:Ret  KERNEL32.GetModuleFileNameA() retval=00000020 ret=7bb1812f
7934.904:0050:0054:trace:imports:import_dll --- ExpandEnvironmentStringsW kernel32.dll.260 = 7BEB3F30
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000208) ret=7bb18169
7934.904:0050:0054:trace:imports:import_dll --- FindClose kernel32.dll.295 = 7BEB4170
7934.904:0050:0054:trace:imports:import_dll --- FindFirstFileW kernel32.dll.305 = 7BEB42B0
7934.904:0050:0054:trace:imports:import_dll --- FindNextFileW kernel32.dll.315 = 7BEB43B0
7934.904:0050:0054:trace:imports:import_dll --- FreeLibrary kernel32.dll.345 = 7BEB4790
7934.904:0050:0054:trace:imports:import_dll --- GetCommandLineW kernel32.dll.376 = 7BEB4B10
7934.904:0050:0054:trace:imports:import_dll --- GetFullPathNameW kernel32.dll.493 = 7BEB5830
7934.904:0050:0054:trace:imports:import_dll --- GetModuleHandleW kernel32.dll.524 = 7BEB5C10
7934.904:0050:0054:trace:imports:import_dll --- GetOverlappedResult kernel32.dll.553 = 7BEB5FB0
7934.904:0050:0054:trace:imports:import_dll --- GetProcAddress kernel32.dll.571 = 7BEB61B0
7934.904:0050:0054:trace:imports:import_dll --- GetStartupInfoW kernel32.dll.606 = 7BEB6610
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x208, return 00283988, status 0.
7934.904:0050:0054:trace:imports:import_dll --- GetTickCount kernel32.dll.658 = 7BEB6C90
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283988 ret=7bb18169
7934.904:0050:0054:trace:imports:import_dll --- HeapAlloc kernel32.dll.715 = 7BF34E6C
7934.904:0048:004c:Call KERNEL32.GetModuleFileNameW(00000000,00283988,00000104) ret=7bb1818e
7934.904:0050:0054:trace:imports:import_dll --- HeapReAlloc kernel32.dll.725 = 7BF38034
7934.904:0048:004c:Call kernelbase.GetModuleFileNameW(00000000,00283988,00000104) ret=7bf3cfb4
7934.904:0050:0054:trace:imports:import_dll --- InitializeCriticalSectionEx kernel32.dll.747 = 7BEB7670
7934.904:0048:004c:Call ntdll.LdrGetDllFullName(00000000,0062f864) ret=7bc1b3e8
7934.904:0050:0054:trace:imports:import_dll --- IsBadStringPtrA kernel32.dll.769 = 7BECC450
7934.904:0048:004c:trace:module:LdrGetDllFullName module 00000000, name 0062F864.
7934.904:0050:0054:trace:imports:import_dll --- IsBadStringPtrW kernel32.dll.770 = 7BEB7830
7934.904:0048:004c:Ret  ntdll.LdrGetDllFullName() retval=00000000 ret=7bc1b3e8
7934.904:0050:0054:trace:imports:import_dll --- LeaveCriticalSection kernel32.dll.833 = 7BF37654
7934.904:0048:004c:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc1b400
7934.904:0050:0054:trace:imports:import_dll --- LoadLibraryW kernel32.dll.839 = 7BEB8030
7934.904:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc1b400
7934.904:0050:0054:trace:imports:import_dll --- MapViewOfFile kernel32.dll.870 = 7BEB82F0
7934.904:0048:004c:trace:module:GetModuleFileNameW L"C:\\windows\\system32\\explorer.exe"
7934.904:0050:0054:trace:imports:import_dll --- MulDiv kernel32.dll.886 = 7BEB84D0
7934.904:0048:004c:Ret  kernelbase.GetModuleFileNameW() retval=00000020 ret=7bf3cfb4
7934.904:0050:0054:trace:imports:import_dll --- MultiByteToWideChar kernel32.dll.887 = 7BEB84F0
7934.904:0048:004c:Ret  KERNEL32.GetModuleFileNameW() retval=00000020 ret=7bb1818e
7934.904:0050:0054:trace:imports:import_dll --- OpenProcess kernel32.dll.904 = 7BEB8710
7934.904:0048:004c:Call KERNEL32.SetConsoleCtrlHandler(7bb16df0,00000001) ret=7bb1956b
7934.904:0050:0054:trace:imports:import_dll --- ReadDirectoryChangesW kernel32.dll.975 = 7BEB8F50
7934.904:0048:004c:Call kernelbase.SetConsoleCtrlHandler(7bb16df0,00000001) ret=7bf3cfb4
7934.904:0050:0054:trace:imports:import_dll --- ResolveDelayLoadedAPI kernel32.dll.1054 = 7BF3260C
7934.904:0048:004c:trace:console:SetConsoleCtrlHandler (7BB16DF0,1)
7934.904:0050:0054:trace:imports:import_dll --- SetThreadDescription kernel32.dll.1200 = 7BEBA6F0
7934.904:0048:004c:Call ntdll.RtlEnterCriticalSection(7bc7d060) ret=7bc4e36a
7934.904:0050:0054:trace:imports:import_dll --- UnmapViewOfFile kernel32.dll.1278 = 7BEBAEB0
7934.904:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc4e36a
7934.904:0050:0054:trace:imports:import_dll --- WaitForMultipleObjects kernel32.dll.1312 = 7BEBB2D0
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000008) ret=7bc4e405
7934.904:0050:0054:trace:imports:import_dll --- WaitForSingleObject kernel32.dll.1314 = 7BEBB310
7934.904:0050:0054:trace:imports:import_dll --- lstrcmpiW kernel32.dll.1388 = 7BEBBB90
7934.904:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000008,0062f994)
7934.904:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e000 00001000 00000008
7934.904:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.904:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.904:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.904:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.904:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x8, return 00283BA8, status 0.
7934.904:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283ba8 ret=7bc4e405
7934.904:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.904:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bc7d060) ret=7bc4e432
7934.904:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.904:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc4e432
7934.904:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.904:0048:004c:Ret  kernelbase.SetConsoleCtrlHandler() retval=00000001 ret=7bf3cfb4
7934.904:0050:0054:trace:module:load_dll looking for L"ntdll.dll" in (null)
7934.904:0048:004c:Ret  KERNEL32.SetConsoleCtrlHandler() retval=00000001 ret=7bb1956b
7934.904:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F7EC
7934.904:0048:004c:Call ntdll.LdrAddRefDll(00000001,7bad0000) ret=7badadc8
7934.904:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\ntdll.dll" for L"ntdll.dll" at 7BF30000, count=11
7934.904:0048:004c:trace:module:LdrAddRefDll (L"msvcrt.dll") ldr.LoadCount: -1
7934.904:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000004,0062f994)
7934.904:0048:004c:Ret  ntdll.LdrAddRefDll() retval=00000000 ret=7badadc8
7934.904:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e49c 00000008 00000004
7934.904:0048:004c:Call ntdll.NtQuerySystemTime(0062fa40) ret=7bb1872d
7934.904:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.904:0048:004c:SysCall  NtQuerySystemTime(0062fa40)
7934.904:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.904:0048:004c:SysRet   NtQuerySystemTime() retval=00000000
7934.904:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.904:0048:004c:Ret  ntdll.NtQuerySystemTime() retval=00000000 ret=7bb1872d
7934.904:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.904:0048:004c:trace:msvcrt:DllMain finished process init
7934.904:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.904:0048:004c:Ret  PE DLL (proc=7BADAF70,module=7BAD0000 L"msvcrt.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7934.904:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.904:0048:004c:trace:module:process_attach (L"msvcrt.dll",0062FD24) - END
7934.904:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.904:0048:004c:trace:module:process_attach (L"sechost.dll",0062FD24) - START
7934.904:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.904:0048:004c:trace:module:process_attach (L"ucrtbase.dll",0062FD24) - START
7934.904:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.904:0048:004c:Call PE DLL (proc=7B9B7710,module=7B9A0000 L"ucrtbase.dll",reason=PROCESS_ATTACH,res=0062FD24)
7934.904:0050:0054:trace:imports:import_dll --- NtSetInformationProcess ntdll.dll.324 = 7BF34308
7934.904:0048:004c:trace:msvcrt:DllMain (7B9A0000, DLL_PROCESS_ATTACH, 0062FD24) pid(48), tid(4c), tls(0)
7934.904:0050:0054:trace:imports:import_dll --- _vsnprintf ntdll.dll.1353 = 7BF6E7F0
7934.904:0048:004c:Call KERNEL32.TlsAlloc() ret=7b9b752e
7934.904:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000008,0062f994)
7934.904:0048:004c:Call kernelbase.TlsAlloc() ret=7bf3cfb4
7934.904:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e000 00001000 00000008
7934.904:0048:004c:Call ntdll.RtlAcquirePebLock() ret=7bc570fb
7934.904:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.904:0048:004c:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc570fb
7934.904:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.904:0048:004c:Call ntdll.RtlFindClearBitsAndSet(7bfd5578,00000001,00000001) ret=7bc5711c
7934.904:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.904:0048:004c:trace:ntdll:RtlFindClearBitsAndSet (7BFD5578,1,1)
7934.904:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.904:0048:004c:trace:ntdll:RtlFindClearBits (7BFD5578,1,1)
7934.904:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.904:0048:004c:trace:ntdll:RtlAreBitsClear (7BFD5578,1,1)
7934.904:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.904:0048:004c:trace:ntdll:RtlAreBitsClear (7BFD5578,2,1)
7934.904:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.904:0048:004c:trace:ntdll:RtlSetBits (7BFD5578,2,1)
7934.904:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.904:0048:004c:Ret  ntdll.RtlFindClearBitsAndSet() retval=00000002 ret=7bc5711c
7934.904:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.904:0048:004c:Call ntdll.RtlReleasePebLock() ret=7bc5713a
7934.904:0050:0054:trace:module:load_dll looking for L"rpcrt4.dll" in (null)
7934.904:0048:004c:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc5713a
7934.904:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"rpcrt4.dll" 0062F7EC
7934.904:0048:004c:Ret  kernelbase.TlsAlloc() retval=00000002 ret=7bf3cfb4
7934.904:0048:004c:Ret  KERNEL32.TlsAlloc() retval=00000002 ret=7b9b752e
7934.904:0048:004c:trace:msvcrt:msvcrt_init_mt_locks initializing mtlocks
7934.904:0048:004c:Call KERNEL32.InitializeCriticalSectionEx(7ba6e320,00000000,10000000) ret=7ba000f5
7934.904:0048:004c:Call kernelbase.InitializeCriticalSectionEx(7ba6e320,00000000,10000000) ret=7bf3cfb4
7934.904:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xa6, return 0027B598, status 0.
7934.904:0048:004c:Call ntdll.RtlInitializeCriticalSectionEx(7ba6e320,00000000,10000000) ret=7bc26472
7934.904:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\rpcrt4.dll",0062F8A4,00000000,00000000)
7934.904:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\rpcrt4.dll" 520 0062F550 00000000)
7934.904:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\rpcrt4.dll" 520 0062F550 00000000 00000000)
7934.904:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4e, return 00263E70, status 0.
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00283BC8, status 0.
7934.904:0048:004c:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7934.904:0050:0054:SysCall  NtOpenFile(0062f6dc,80100000,0062f6f0,0062f6e8,00000005,00000060)
7934.904:0048:004c:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7934.904:0050:0054:trace:file:NtCreateFile handle=0x62f6dc access=80100000 name=L"\\??\\C:\\windows\\system32\\rpcrt4.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f6e8 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7934.904:0048:004c:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7ba000f5
7934.904:0048:004c:trace:msvcrt:_lock (19)
7934.904:0048:004c:trace:msvcrt:_lock (17)
7934.904:0048:004c:Call ntdll.RtlEnterCriticalSection(7ba6e320) ret=7b9cdd3a
7934.904:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7934.904:0048:004c:trace:msvcrt:_lock : creating lock #19
7934.904:0048:004c:Call KERNEL32.InitializeCriticalSectionEx(7ba6e358,00000000,10000000) ret=7b9cddb4
7934.904:0048:004c:Call kernelbase.InitializeCriticalSectionEx(7ba6e358,00000000,10000000) ret=7bf3cfb4
7934.904:0048:004c:Call ntdll.RtlInitializeCriticalSectionEx(7ba6e358,00000000,10000000) ret=7bc26472
7934.904:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\rpcrt4.dll" -> ret c0000034
7934.904:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\rpcrt4.dll" not found (c0000034)
7934.904:0050:0054:SysRet   NtOpenFile() retval=c0000034
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00283C00, status 0.
7934.904:0048:004c:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7934.904:0048:004c:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7934.904:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00263E70, return 1, status 0.
7934.904:0048:004c:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7b9cddb4
7934.904:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\rpcrt4.dll",0062F8A4,00000000,00000000)
7934.904:0048:004c:trace:msvcrt:_unlock (17)
7934.904:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\rpcrt4.dll" 520 0062F550 00000000)
7934.904:0048:004c:Call ntdll.RtlLeaveCriticalSection(7ba6e320) ret=7b9cddf0
7934.904:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\rpcrt4.dll" 520 0062F550 00000000 00000000)
7934.904:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9cddf0
7934.904:0048:004c:Call ntdll.RtlEnterCriticalSection(7ba6e358) ret=7b9cdd3a
7934.904:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000008) ret=7b9fec26
7934.904:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4e, return 00263EE0, status 0.
7934.904:0050:0054:SysCall  NtOpenFile(0062f6dc,80100000,0062f6f0,0062f6e8,00000005,00000060)
7934.904:0050:0054:trace:file:NtCreateFile handle=0x62f6dc access=80100000 name=L"\\??\\C:\\windows\\system32\\rpcrt4.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f6e8 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x8, return 00283C38, status 0.
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283c38 ret=7b9fec26
7934.904:0048:004c:trace:msvcrt:create_locinfo (0 C)
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,000000f0) ret=7b9fec26
7934.904:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\rpcrt4.dll" -> ret c0000034
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xf0, return 00283C58, status 0.
7934.904:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\rpcrt4.dll" not found (c0000034)
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283c58 ret=7b9fec26
7934.904:0050:0054:SysRet   NtOpenFile() retval=c0000034
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000002) ret=7b9fec26
7934.904:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00263EE0, return 1, status 0.
7934.904:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\rpcrt4.dll",0062F8A4,00000000,00000000)
7934.904:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\rpcrt4.dll" 520 0062F550 00000000)
7934.904:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\rpcrt4.dll" 520 0062F550 00000000 00000000)
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2, return 00283D60, status 0.
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283d60 ret=7b9fec26
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000004) ret=7b9fec26
7934.904:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4a, return 00263F50, status 0.
7934.904:0050:0054:SysCall  NtOpenFile(0062f6dc,80100000,0062f6f0,0062f6e8,00000005,00000060)
7934.904:0050:0054:trace:file:NtCreateFile handle=0x62f6dc access=80100000 name=L"\\??\\C:\\windows\\system\\rpcrt4.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f6e8 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4, return 00283D80, status 0.
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283d80 ret=7b9fec26
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000002) ret=7b9fec26
7934.904:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\rpcrt4.dll" -> ret c000003a
7934.904:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system\\rpcrt4.dll" not found (c000003a)
7934.904:0050:0054:SysRet   NtOpenFile() retval=c000003a
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2, return 00283DA0, status 0.
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283da0 ret=7b9fec26
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000004) ret=7b9fec26
7934.904:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00263F50, return 1, status 0.
7934.904:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\rpcrt4.dll",0062F8A4,00000000,00000000)
7934.904:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\rpcrt4.dll" 520 0062F550 00000000)
7934.904:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\rpcrt4.dll" 520 0062F550 00000000 00000000)
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4, return 00283DC0, status 0.
7934.904:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3c, return 00261BF8, status 0.
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283dc0 ret=7b9fec26
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000002) ret=7b9fec26
7934.904:0050:0054:SysCall  NtOpenFile(0062f6dc,80100000,0062f6f0,0062f6e8,00000005,00000060)
7934.904:0050:0054:trace:file:NtCreateFile handle=0x62f6dc access=80100000 name=L"\\??\\C:\\windows\\rpcrt4.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f6e8 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2, return 00283DE0, status 0.
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283de0 ret=7b9fec26
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000004) ret=7b9fec26
7934.904:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\rpcrt4.dll" -> ret c0000034
7934.904:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\rpcrt4.dll" not found (c0000034)
7934.904:0050:0054:SysRet   NtOpenFile() retval=c0000034
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4, return 00283E00, status 0.
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283e00 ret=7b9fec26
7934.904:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261BF8, return 1, status 0.
7934.904:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\rpcrt4.dll",0062F8A4,00000000,00000000)
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000002) ret=7b9fec26
7934.904:0050:0054:trace:file:RtlGetFullPathName_U (L".\\rpcrt4.dll" 520 0062F550 00000000)
7934.904:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\rpcrt4.dll" 520 0062F550 00000000 00000000)
7934.904:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4e, return 00263FC0, status 0.
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2, return 00283E20, status 0.
7934.904:0050:0054:SysCall  NtOpenFile(0062f6dc,80100000,0062f6f0,0062f6e8,00000005,00000060)
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283e20 ret=7b9fec26
7934.904:0050:0054:trace:file:NtCreateFile handle=0x62f6dc access=80100000 name=L"\\??\\C:\\windows\\system32\\rpcrt4.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f6e8 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000004) ret=7b9fec26
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4, return 00283E40, status 0.
7934.904:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\rpcrt4.dll" -> ret c0000034
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283e40 ret=7b9fec26
7934.904:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\rpcrt4.dll" not found (c0000034)
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000002) ret=7b9fec26
7934.904:0050:0054:SysRet   NtOpenFile() retval=c0000034
7934.904:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00263FC0, return 1, status 0.
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2, return 00283E60, status 0.
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283e60 ret=7b9fec26
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000004) ret=7b9fec26
7934.904:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027B598, return 1, status 0.
7934.904:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x86a, return 0027B658, status 0.
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4, return 00283E80, status 0.
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283e80 ret=7b9fec26
7934.904:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000220) ret=7b9fec26
7934.904:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027B658, return 1, status 0.
7934.904:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x220, return 00283EA0, status 0.
7934.904:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00283ea0 ret=7b9fec26
7934.904:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x830, return 0027BEE0, status 0.
7934.904:0048:004c:Call KERNEL32.GetCPInfo(00004e9f,0062f0d4) ret=7b9ed2ba
7934.904:0048:004c:Call kernelbase.GetCPInfo(00004e9f,0062f0d4) ret=7bf3cfb4
7934.904:0050:0054:SysCall  NtOpenFile(0062f714,80100000,0062f728,0062f720,00000005,00000060)
7934.904:0048:004c:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7934.904:0050:0054:trace:file:NtCreateFile handle=0x62f714 access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f720 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7934.904:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7934.904:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7934.904:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
7934.904:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" -> ret 0 nt L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" unix "/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/rpcrt4.dll"
7934.904:0048:004c:Ret  kernelbase.GetCPInfo() retval=00000001 ret=7bf3cfb4
7934.904:0048:004c:Ret  KERNEL32.GetCPInfo() retval=00000001 ret=7b9ed2ba
7934.904:0048:004c:Call KERNEL32.MultiByteToWideChar(00004e9f,00000000,0062f0e8 "",00000100,0062f3e8,00000100) ret=7b9ed3cf
7934.918:0048:004c:Call kernelbase.MultiByteToWideChar(00004e9f,00000000,0062f0e8 "",00000100,0062f3e8,00000100) ret=7bf3cfb4
0054: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000040,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll"}, filename="/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/rpcrt4.dll" )
7934.918:0048:004c:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7934.918:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7934.918:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7934.918:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
7934.918:0048:004c:trace:nls:MultiByteToWideChar cp 20127 "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x8a\x8b\x8c\x8d\x8e\x8f\x90"... -> L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"..., ret = 256
0054: create_file() = 0 { handle=0018 }
7934.918:0048:004c:Ret  kernelbase.MultiByteToWideChar() retval=00000100 ret=7bf3cfb4
7934.918:0048:004c:Ret  KERNEL32.MultiByteToWideChar() retval=00000100 ret=7b9ed3cf
7934.918:0048:004c:Call KERNEL32.GetStringTypeW(00000001,0062f3e8 L"",00000100,0062f1e8) ret=7b9ed40a
7934.918:0050:0054:SysRet   NtOpenFile() retval=00000000
7934.918:0048:004c:Call kernelbase.GetStringTypeW(00000001,0062f3e8 L"",00000100,0062f1e8) ret=7bf3cfb4
7934.918:0050:0054:SysCall  NtFsControlFile(00000018,00000000,00000000,00000000,0062f720,0009009c,00000000,00000000,0062f740,00000040)
7934.918:0048:004c:Ret  kernelbase.GetStringTypeW() retval=00000001 ret=7bf3cfb4
7934.918:0050:0054:trace:file:NtFsControlFile (0x18,(nil),(nil),(nil),0x62f720,0x0009009c,(nil),0x00000000,0x62f740,0x00000040)
7934.918:0048:004c:Ret  KERNEL32.GetStringTypeW() retval=00000001 ret=7b9ed40a
7934.918:0048:004c:Call KERNEL32.LCMapStringW(00000000,00000100,0062f3e8 L"",00000100,0062f5e8,00000100) ret=7b9ed445
0054: get_handle_fd( handle=0018 )
7934.919:0048:004c:Call kernelbase.LCMapStringW(00000000,00000100,0062f3e8 L"",00000100,0062f5e8,00000100) ret=7bf3cfb4
0054: *fd* 0018 -> 84
7934.919:0048:004c:trace:nls:LCMapStringEx ((null),0x00000100,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"...,256,0062F5E8,256)
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=00120089, options=00000060 }
7934.919:0048:004c:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7934.919:0048:004c:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7b9ed445
7934.919:0048:004c:Call KERNEL32.LCMapStringW(00000000,00000200,0062f3e8 L"",00000100,0062f7e8,00000100) ret=7b9ed47d
7934.919:0048:004c:Call kernelbase.LCMapStringW(00000000,00000200,0062f3e8 L"",00000100,0062f7e8,00000100) ret=7bf3cfb4
7934.919:0050:0054:SysRet   NtFsControlFile() retval=00000000
7934.919:0048:004c:trace:nls:LCMapStringEx ((null),0x00000200,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"...,256,0062F7E8,256)
7934.919:0050:0054:SysCall  NtCreateSection(0062f894,000f000d,00000000,0062f718,00000020,01000000,00000018)
7934.919:0048:004c:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7934.919:0048:004c:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7b9ed47d
0054: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=0018, objattr={} )
7934.919:0048:004c:Call KERNEL32.WideCharToMultiByte(00004e9f,00000000,0062f3e8 L"",00000100,0062f0e8,00000100,00000000,00000000) ret=7b9ed50a
7934.919:0048:004c:Call kernelbase.WideCharToMultiByte(00004e9f,00000000,0062f3e8 L"",00000100,0062f0e8,00000100,00000000,00000000) ret=7bf3cfb4
0054: create_mapping() = 0 { handle=001c }
7934.919:0048:004c:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7934.919:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7934.919:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7934.919:0050:0054:SysRet   NtCreateSection() retval=00000000
7934.919:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
7934.919:0050:0054:SysCall  NtQuerySection(0000001c,00000001,0062f8c8,00000030,00000000)
7934.919:0048:004c:trace:nls:WideCharToMultiByte cp 20127 L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"... -> "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\x7f\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12"..., ret = 256
7934.919:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000100 ret=7bf3cfb4
0054: get_mapping_info( handle=001c, access=00000001 )
7934.920:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000100 ret=7b9ed50a
7934.920:0048:004c:trace:msvcrt:_unlock (19)
0054: get_mapping_info() = 0 { size=0008b000, flags=01800000, shared_file=0000, name_len=0, total=192, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00013b00,map_size=0008b000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=0008720c,checksum=00090fb3}, name=L"", exp_name="" }
7934.920:0048:004c:Call ntdll.RtlLeaveCriticalSection(7ba6e358) ret=7b9dd35c
7934.920:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
7934.920:0050:0054:SysRet   NtQuerySection() retval=00000000
7934.920:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7934.920:0050:0054:SysCall  NtClose(00000018)
7934.920:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.920:0048:004c:Ret  kernelbase.TlsGetValue() retval=00000000 ret=7bf3cfb4
0054: close_handle( handle=0018 )
7934.920:0048:004c:Ret  KERNEL32.TlsGetValue() retval=00000000 ret=7b9feb01
0054: close_handle() = 0
7934.920:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000008,00000388) ret=7b9feb3f
7934.920:0050:0054:SysRet   NtClose() retval=00000000
7934.920:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027BEE0, return 1, status 0.
7934.920:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x388, return 002840D8, status 0.
7934.920:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=002840d8 ret=7b9feb3f
7934.920:0048:004c:Call KERNEL32.TlsSetValue(00000002,002840d8) ret=7b9feb5a
7934.920:0048:004c:Call kernelbase.TlsSetValue(00000002,002840d8) ret=7bf3cfb4
7934.920:0048:004c:Ret  kernelbase.TlsSetValue() retval=00000001 ret=7bf3cfb4
7934.920:0048:004c:Ret  KERNEL32.TlsSetValue() retval=00000001 ret=7b9feb5a
7934.920:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7934.920:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x46, return 00261C58, status 0.
7934.920:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.920:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7934.920:0050:0054:SysCall  NtMapViewOfSection(0000001c,ffffffff,0062f8ac,00000000,00000000,00000000,0062f8f8,00000001,00000000,00000020)
7934.920:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7934.920:0050:0054:trace:virtual:NtMapViewOfSection handle=0x1c process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x20
7934.920:0048:004c:trace:msvcrt:_lock (19)
7934.920:0048:004c:Call ntdll.RtlEnterCriticalSection(7ba6e358) ret=7b9cdd3a
7934.920:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7934.921:0048:004c:trace:msvcrt:_unlock (19)
0054: get_mapping_info( handle=001c, access=0000000c )
7934.921:0048:004c:Call ntdll.RtlLeaveCriticalSection(7ba6e358) ret=7b9dd35c
7934.921:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
0054: get_mapping_info() = 0 { size=0008b000, flags=01800000, shared_file=0000, name_len=86, total=192, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00013b00,map_size=0008b000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=0008720c,checksum=00090fb3}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll", exp_name="rpcrt4.dll" }
7934.921:0048:004c:trace:msvcrt:_lock (25)
7934.921:0048:004c:trace:msvcrt:_lock (17)
7934.921:0048:004c:Call ntdll.RtlEnterCriticalSection(7ba6e320) ret=7b9cdd3a
7934.921:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7934.921:0050:0054:trace:reg:NtQueryValueKey (0xc,L"Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4",2,0x21fa00,80)
7934.921:0048:004c:trace:msvcrt:_lock : creating lock #25
7934.921:0048:004c:Call KERNEL32.InitializeCriticalSectionEx(7ba6e400,00000000,10000000) ret=7b9cddb4
0054: get_key_value( hkey=000c, name=L"Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4" )
7934.921:0048:004c:Call kernelbase.InitializeCriticalSectionEx(7ba6e400,00000000,10000000) ret=7bf3cfb4
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7934.921:0048:004c:Call ntdll.RtlInitializeCriticalSectionEx(7ba6e400,00000000,10000000) ret=7bc26472
7934.921:0050:0054:trace:reg:NtQueryValueKey (0xc,L"*rpcrt4",2,0x21fa00,80)
0054: get_key_value( hkey=000c, name=L"*rpcrt4" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7934.922:0050:0054:trace:reg:NtQueryValueKey (0xc,L"rpcrt4",2,0x21fa00,80)
7934.922:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00284478, status 0.
7934.922:0048:004c:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
0054: get_key_value( hkey=000c, name=L"rpcrt4" )
7934.922:0048:004c:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7934.922:0048:004c:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7b9cddb4
7934.922:0050:0054:trace:module:get_load_order got hardcoded default for L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll"
7934.922:0048:004c:trace:msvcrt:_unlock (17)
7934.922:0050:0054:trace:module:find_builtin_dll looking for "rpcrt4.dll" for file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll"
7934.922:0048:004c:Call ntdll.RtlLeaveCriticalSection(7ba6e320) ret=7b9cddf0
7934.922:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9cddf0
7934.922:0048:004c:Call ntdll.RtlEnterCriticalSection(7ba6e400) ret=7b9cdd3a
7934.922:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
0054: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000000,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll"}, filename="/usr/lib/wine/i386-windows/rpcrt4.dll" )
7934.922:0048:004c:trace:msvcrt:_unlock (25)
7934.922:0048:004c:Call ntdll.RtlLeaveCriticalSection(7ba6e400) ret=7b9dd35c
7934.922:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
7934.922:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000220) ret=7b9fec26
0054: create_file() = 0 { handle=0018 }
0054: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=0018, objattr={} )
0054: create_mapping() = 0 { handle=0020 }
7934.923:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x220, return 002844B0, status 0.
7934.923:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=002844b0 ret=7b9fec26
7934.923:0048:004c:Call KERNEL32.GetACP() ret=7b9ed28c
7934.923:0048:004c:Call kernelbase.GetACP() ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.GetACP() retval=000004e2 ret=7bf3cfb4
0054: close_handle( handle=0018 )
7934.923:0048:004c:Ret  KERNEL32.GetACP() retval=000004e2 ret=7b9ed28c
0054: close_handle() = 0
7934.923:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7934.923:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
0054: get_mapping_info( handle=0020, access=00000004 )
7934.923:0048:004c:Call KERNEL32.GetUserDefaultLocaleName(0062f7e0,00000055) ret=7b9fa7c0
7934.923:0048:004c:Call kernelbase.GetUserDefaultLocaleName(0062f7e0,00000055) ret=7bf3cfb4
0054: get_mapping_info() = 0 { size=0008b000, flags=01800000, shared_file=0000, name_len=86, total=192, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00013b00,map_size=0008b000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=0008720c,checksum=00090fb3}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll", exp_name="rpcrt4.dll" }
7934.923:0048:004c:Call ntdll.memcpy(0062f7e0,006821a8,0000000c) ret=7bc73227
7934.923:0048:004c:Ret  ntdll.memcpy() retval=0062f7e0 ret=7bc73227
7934.923:0048:004c:Ret  kernelbase.GetUserDefaultLocaleName() retval=00000006 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.GetUserDefaultLocaleName() retval=00000006 ret=7b9fa7c0
0054: get_handle_fd( handle=0020 )
7934.923:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
0054: *fd* 0020 -> 53
7934.923:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=000f000d, options=00000020 }
7934.923:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7934.923:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7934.923:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7934.923:0050:0054:trace:module:map_image_into_view mapping PE file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" at 0x7b8c0000-0x7b94b000
7934.923:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7934.923:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7934.923:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7934.923:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" section .text at 0x7b8c1000 off 400 size 4fe00 virt 4fd68 flags 60000060
7934.923:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7934.923:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7934.923:0048:004c:trace:msvcrt:_strtoi64_l ("1250" 00000000 10 00000000)
7934.923:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7934.923:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7934.923:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7934.923:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7934.923:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7934.923:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7934.923:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7934.923:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7934.923:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7934.923:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7934.923:0048:004c:Call KERNEL32.IsValidCodePage(000004e2) ret=7b9fa81e
7934.923:0048:004c:Call kernelbase.IsValidCodePage(000004e2) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.IsValidCodePage() retval=00000001 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.IsValidCodePage() retval=00000001 ret=7b9fa81e
7934.923:0048:004c:Call KERNEL32.LocaleNameToLCID(0062f7e0 L"cs-CZ",08000000) ret=7b9ed889
7934.923:0048:004c:Call kernelbase.LocaleNameToLCID(0062f7e0 L"cs-CZ",08000000) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.LocaleNameToLCID() retval=00000405 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.LocaleNameToLCID() retval=00000405 ret=7b9ed889
7934.923:0048:004c:Call KERNEL32.GetCPInfo(000004e2,0062f0cc) ret=7b9ed2ba
7934.923:0048:004c:Call kernelbase.GetCPInfo(000004e2,0062f0cc) ret=7bf3cfb4
7934.923:0048:004c:Ret  kernelbase.GetCPInfo() retval=00000001 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.GetCPInfo() retval=00000001 ret=7b9ed2ba
7934.923:0048:004c:Call KERNEL32.MultiByteToWideChar(000004e2,00000000,0062f0e0 "",00000100,0062f3e0,00000100) ret=7b9ed3cf
7934.923:0048:004c:Call kernelbase.MultiByteToWideChar(000004e2,00000000,0062f0e0 "",00000100,0062f3e0,00000100) ret=7bf3cfb4
7934.923:0048:004c:trace:nls:MultiByteToWideChar cp 1250 "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x8a\x8b\x8c\x8d\x8e\x8f\x90"... -> L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"..., ret = 256
7934.923:0050:0054:trace:module:map_image_into_view clearing 0x7b910e00 - 0x7b911000
7934.923:0048:004c:Ret  kernelbase.MultiByteToWideChar() retval=00000100 ret=7bf3cfb4
7934.923:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" section .data at 0x7b911000 off 50200 size 800 virt 688 flags c0000040
7934.923:0048:004c:Ret  KERNEL32.MultiByteToWideChar() retval=00000100 ret=7b9ed3cf
7934.923:0048:004c:Call KERNEL32.GetStringTypeW(00000001,0062f3e0 L"",00000100,0062f1e0) ret=7b9ed40a
7934.923:0050:0054:trace:module:map_image_into_view clearing 0x7b911800 - 0x7b912000
7934.923:0048:004c:Call kernelbase.GetStringTypeW(00000001,0062f3e0 L"",00000100,0062f1e0) ret=7bf3cfb4
7934.923:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" section .rdata at 0x7b912000 off 50a00 size 1c000 virt 1bea0 flags 40000040
7934.923:0048:004c:Ret  kernelbase.GetStringTypeW() retval=00000001 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.GetStringTypeW() retval=00000001 ret=7b9ed40a
7934.923:0048:004c:Call KERNEL32.LCMapStringW(00000405,00000100,0062f3e0 L"",00000100,0062f5e0,00000100) ret=7b9ed445
7934.923:0048:004c:Call kernelbase.LCMapStringW(00000405,00000100,0062f3e0 L"",00000100,0062f5e0,00000100) ret=7bf3cfb4
7934.923:0048:004c:trace:nls:LCMapStringEx ((null),0x00000100,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"...,256,0062F5E0,256)
7934.923:0048:004c:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7b9ed445
7934.923:0048:004c:Call KERNEL32.LCMapStringW(00000405,00000200,0062f3e0 L"",00000100,0062f7e0,00000100) ret=7b9ed47d
7934.923:0048:004c:Call kernelbase.LCMapStringW(00000405,00000200,0062f3e0 L"",00000100,0062f7e0,00000100) ret=7bf3cfb4
7934.923:0048:004c:trace:nls:LCMapStringEx ((null),0x00000200,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"...,256,0062F7E0,256)
7934.923:0048:004c:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7b9ed47d
7934.923:0048:004c:Call KERNEL32.WideCharToMultiByte(000004e2,00000000,0062f3e0 L"",00000100,0062f0e0,00000100,00000000,00000000) ret=7b9ed50a
7934.923:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" section /4 at 0x7b92e000 off 6ca00 size e200 virt e010 flags 40000040
7934.923:0048:004c:Call kernelbase.WideCharToMultiByte(000004e2,00000000,0062f3e0 L"",00000100,0062f0e0,00000100,00000000,00000000) ret=7bf3cfb4
7934.923:0048:004c:trace:nls:WideCharToMultiByte cp 1250 L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"... -> "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x9a\x8b\x9c\x9d\x9e\x9f\x90"..., ret = 256
7934.923:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000100 ret=7bf3cfb4
7934.923:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000100 ret=7b9ed50a
7934.923:0048:004c:trace:msvcrt:_lock (25)
7934.923:0050:0054:trace:module:map_image_into_view clearing 0x7b93c200 - 0x7b93d000
7934.923:0048:004c:Call ntdll.RtlEnterCriticalSection(7ba6e400) ret=7b9cdd3a
7934.923:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" section .bss at 0x7b93d000 off 0 size 0 virt 144 flags c0000080
7934.923:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7934.923:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" section .edata at 0x7b93e000 off 7ac00 size 4400 virt 43d3 flags 40000040
7934.923:0048:004c:trace:msvcrt:_unlock (25)
7934.923:0048:004c:Call ntdll.RtlLeaveCriticalSection(7ba6e400) ret=7b9dd35c
7934.923:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
7934.923:0048:004c:Call KERNEL32.IsProcessorFeaturePresent(0000000a) ret=7ba000a1
7934.923:0050:0054:trace:module:map_image_into_view clearing 0x7b942400 - 0x7b943000
7934.923:0048:004c:Call kernelbase.IsProcessorFeaturePresent(0000000a) ret=7bf3cfb4
7934.923:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" section .idata at 0x7b943000 off 7f000 size e00 virt cb8 flags c0000040
7934.923:0048:004c:Call ntdll.RtlIsProcessorFeaturePresent(0000000a) ret=7bc28a02
7934.923:0048:004c:SysCall  NtWow64IsProcessorFeaturePresent(0000000a)
7934.923:0048:004c:SysRet   NtWow64IsProcessorFeaturePresent() retval=00000001
7934.923:0050:0054:trace:module:map_image_into_view clearing 0x7b943e00 - 0x7b944000
7934.923:0048:004c:Ret  ntdll.RtlIsProcessorFeaturePresent() retval=00000001 ret=7bc28a02
7934.923:0048:004c:Ret  kernelbase.IsProcessorFeaturePresent() retval=00000001 ret=7bf3cfb4
7934.923:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" section .rsrc at 0x7b944000 off 7fe00 size 400 virt 3a8 flags c0000040
7934.923:0048:004c:Ret  KERNEL32.IsProcessorFeaturePresent() retval=00000001 ret=7ba000a1
7934.923:0048:004c:Call KERNEL32.GetStartupInfoA(0062f9cc) ret=7b9ff775
7934.923:0050:0054:trace:module:map_image_into_view clearing 0x7b944400 - 0x7b945000
7934.923:0048:004c:Ret  KERNEL32.GetStartupInfoA() retval=7beca9c0 ret=7b9ff775
7934.923:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" section .reloc at 0x7b945000 off 80200 size 5e00 virt 5d60 flags 42000040
7934.923:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000008,00001000) ret=7b9fec26
7934.923:0050:0054:trace:module:map_image_into_view clearing 0x7b94ae00 - 0x7b94b000
7934.923:0050:0054:trace:module:map_image_into_view relocating L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\rpcrt4.dll" dynamic base 10000000 -> 7b8c0000 mapped at 0x7b8c0000
7934.923:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x1000, return 002846E8, status 0.
7934.923:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=002846e8 ret=7b9fec26
7934.923:0048:004c:Call ntdll.RtlInitializeCriticalSection(002846e8) ret=7b9ffbf4
7934.923:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.923:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284728) ret=7b9ffbf4
7934.923:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.928:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284768) ret=7b9ffbf4
7934.928:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
0054: map_image_view( mapping=0020, base=7b8c0000, size=0008b000, offset=00000000, entry=00013b00, machine=014c )
7934.928:0048:004c:Call ntdll.RtlInitializeCriticalSection(002847a8) ret=7b9ffbf4
0054: map_image_view() = 0
7934.928:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.928:0048:004c:Call ntdll.RtlInitializeCriticalSection(002847e8) ret=7b9ffbf4
7934.928:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.928:0050:0054:trace:virtual:dump_view View: 0x7b8c0000 - 0x7b94afff c-rWx (image)
7934.928:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284828) ret=7b9ffbf4
7934.928:0050:0054:trace:virtual:dump_view       0x7b8c0000 - 0x7b8c0fff c-r--
7934.928:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.928:0050:0054:trace:virtual:dump_view       0x7b8c1000 - 0x7b910fff c-r-x
7934.928:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284868) ret=7b9ffbf4
7934.928:0050:0054:trace:virtual:dump_view       0x7b911000 - 0x7b911fff c-rW-
7934.928:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.928:0050:0054:trace:virtual:dump_view       0x7b912000 - 0x7b93cfff c-r--
7934.928:0048:004c:Call ntdll.RtlInitializeCriticalSection(002848a8) ret=7b9ffbf4
7934.928:0050:0054:trace:virtual:dump_view       0x7b93d000 - 0x7b93dfff c-rW-
7934.928:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.928:0050:0054:trace:virtual:dump_view       0x7b93e000 - 0x7b942fff c-r--
7934.928:0048:004c:Call ntdll.RtlInitializeCriticalSection(002848e8) ret=7b9ffbf4
7934.928:0050:0054:trace:virtual:dump_view       0x7b943000 - 0x7b944fff c-rW-
7934.928:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.928:0050:0054:trace:virtual:dump_view       0x7b945000 - 0x7b94afff c-r--
7934.928:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284928) ret=7b9ffbf4
7934.928:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.928:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284968) ret=7b9ffbf4
0054: close_handle( handle=0020 )
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
0054: close_handle() = 0
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002849a8) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002849e8) ret=7b9ffbf4
7934.929:0050:0054:SysRet   NtMapViewOfSection() retval=00000000
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284a28) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284a68) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284aa8) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284ae8) ret=7b9ffbf4
7934.929:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0xb8, return 0027C728, status 0.
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284b28) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284b68) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284ba8) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3e, return 00261CB8, status 0.
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284be8) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284c28) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284c68) ret=7b9ffbf4
7934.929:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x2c, return 0027C7F8, status 0.
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:ntdll:RtlRbInsertNodeEx tree 7BFD5580, parent 002730E8, right 1, node 0027C790.
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284ca8) ret=7b9ffbf4
7934.929:0050:0054:trace:resource:LdrFindResource_U module 7B8C0000 type #0018 name #0002 lang 0000 level 3
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:resource:find_entry_by_id root 7B944000 dir 7B944000 id 0018 not found
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284ce8) ret=7b9ffbf4
7934.929:0050:0054:trace:module:load_dll looking for L"advapi32.dll" in (null)
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"advapi32.dll" 0062F370
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284d28) ret=7b9ffbf4
7934.929:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\advapi32.dll" for L"advapi32.dll" at 7BBA0000, count=4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284d68) ret=7b9ffbf4
7934.929:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000004,0062f518)
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b943208 00000038 00000004
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284da8) ret=7b9ffbf4
7934.929:0050:0054:trace:virtual:get_vprot_range_size base 0x7b943000, size 0x1000, mask 0x20.
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:virtual:dump_view View: 0x7b8c0000 - 0x7b94afff c-rWx (image)
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284de8) ret=7b9ffbf4
7934.929:0050:0054:trace:virtual:dump_view       0x7b8c0000 - 0x7b8c0fff c-r--
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:virtual:dump_view       0x7b8c1000 - 0x7b910fff c-r-x
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284e28) ret=7b9ffbf4
7934.929:0050:0054:trace:virtual:dump_view       0x7b911000 - 0x7b911fff c-rW-
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:virtual:dump_view       0x7b912000 - 0x7b93cfff c-r--
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284e68) ret=7b9ffbf4
7934.929:0050:0054:trace:virtual:dump_view       0x7b93d000 - 0x7b93dfff c-rW-
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:virtual:dump_view       0x7b93e000 - 0x7b942fff c-r--
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284ea8) ret=7b9ffbf4
7934.929:0050:0054:trace:virtual:dump_view       0x7b943000 - 0x7b944fff c-rW-
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:virtual:dump_view       0x7b945000 - 0x7b94afff c-r--
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284ee8) ret=7b9ffbf4
7934.929:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- CloseServiceHandle advapi32.dll.50 = 7BBA1B2C
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284f28) ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- ImpersonateNamedPipeClient advapi32.dll.242 = 7BBA3128
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- OpenSCManagerW advapi32.dll.354 = 7BBA3E68
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284f68) ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- OpenServiceW advapi32.dll.356 = 7BBA3EA8
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- QueryServiceStatusEx advapi32.dll.388 = 7BBA42A8
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284fa8) ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- RegCloseKey advapi32.dll.395 = 7BBA4388
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- RegCreateKeyW advapi32.dll.405 = 7BBA44C8
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00284fe8) ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- RegDeleteTreeW advapi32.dll.413 = 7BBA45C8
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- RegSetValueExA advapi32.dll.466 = 7BBA4C68
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285028) ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- RegSetValueExW advapi32.dll.467 = 7BBA4C88
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- RegSetValueW advapi32.dll.468 = 7BBA4CA8
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285068) ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- RevertToSelf advapi32.dll.482 = 7BBA4E28
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:imports:import_dll --- StartServiceW advapi32.dll.513 = 7BBA5208
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002850a8) ret=7b9ffbf4
7934.929:0050:0054:trace:module:find_forwarded_export delay loading L"cryptbase.dll" for 'cryptbase.SystemFunction036'
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:module:load_dll looking for L"cryptbase.dll" in (null)
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002850e8) ret=7b9ffbf4
7934.929:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"cryptbase.dll" 0062F128
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285128) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285168) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002851a8) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002851e8) ret=7b9ffbf4
7934.929:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xac, return 0027C858, status 0.
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\cryptbase.dll",0062F1E0,00000000,00000000)
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285228) ret=7b9ffbf4
7934.929:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\cryptbase.dll" 520 0062EE8C 00000000)
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\cryptbase.dll" 520 0062EE8C 00000000 00000000)
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285268) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002852a8) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x54, return 00264030, status 0.
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002852e8) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:SysCall  NtOpenFile(0062f01c,80100000,0062f030,0062f028,00000005,00000060)
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285328) ret=7b9ffbf4
7934.929:0050:0054:trace:file:NtCreateFile handle=0x62f01c access=80100000 name=L"\\??\\C:\\windows\\system32\\cryptbase.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f028 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285368) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002853a8) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002853e8) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285428) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285468) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\cryptbase.dll" -> ret c0000034
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002854a8) ret=7b9ffbf4
7934.929:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\cryptbase.dll" not found (c0000034)
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:SysRet   NtOpenFile() retval=c0000034
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002854e8) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285528) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285568) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002855a8) ret=7b9ffbf4
7934.929:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00264030, return 1, status 0.
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\cryptbase.dll",0062F1E0,00000000,00000000)
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002855e8) ret=7b9ffbf4
7934.929:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\cryptbase.dll" 520 0062EE8C 00000000)
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\cryptbase.dll" 520 0062EE8C 00000000 00000000)
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285628) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(00285668) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlInitializeCriticalSection(002856a8) ret=7b9ffbf4
7934.929:0048:004c:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7934.929:0048:004c:Call ntdll.RtlEnterCriticalSection(002846e8) ret=7b9ff883
7934.929:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x54, return 002640A0, status 0.
7934.929:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9ff883
7934.929:0048:004c:Call KERNEL32.GetStdHandle(fffffff6) ret=7b9ffaad
7934.929:0050:0054:SysCall  NtOpenFile(0062f01c,80100000,0062f030,0062f028,00000005,00000060)
7934.929:0048:004c:Call kernelbase.GetStdHandle(fffffff6) ret=7bf3cfb4
7934.929:0050:0054:trace:file:NtCreateFile handle=0x62f01c access=80100000 name=L"\\??\\C:\\windows\\system32\\cryptbase.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f028 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7934.929:0048:004c:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7934.929:0048:004c:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7b9ffaad
7934.929:0048:004c:Call KERNEL32.GetFileType(00000000) ret=7b9ffaba
7934.929:0048:004c:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7934.929:0048:004c:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004) ret=7bc1774f
7934.929:0048:004c:SysCall  NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004)
004c: get_handle_fd( handle=0000 )
7934.933:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\cryptbase.dll" -> ret c0000034
004c: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7934.933:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\cryptbase.dll" not found (c0000034)
7934.933:0050:0054:SysRet   NtOpenFile() retval=c0000034
7934.933:0048:004c:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7934.933:0048:004c:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7934.933:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7934.933:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7934.933:0048:004c:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7934.933:0048:004c:Ret  KERNEL32.GetFileType() retval=00000000 ret=7b9ffaba
7934.933:0048:004c:Call ntdll.RtlLeaveCriticalSection(002846e8) ret=7b9ff8a9
7934.933:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002640A0, return 1, status 0.
7934.933:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9ff8a9
7934.933:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\cryptbase.dll",0062F1E0,00000000,00000000)
7934.933:0048:004c:Call ntdll.RtlEnterCriticalSection(00284728) ret=7b9ff8ce
7934.933:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\cryptbase.dll" 520 0062EE8C 00000000)
7934.933:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9ff8ce
7934.933:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\cryptbase.dll" 520 0062EE8C 00000000 00000000)
7934.933:0048:004c:Call KERNEL32.GetStdHandle(fffffff5) ret=7b9ffa6d
7934.933:0048:004c:Call kernelbase.GetStdHandle(fffffff5) ret=7bf3cfb4
7934.933:0048:004c:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7934.933:0048:004c:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7b9ffa6d
7934.933:0048:004c:Call KERNEL32.GetFileType(00000000) ret=7b9ffa7a
7934.933:0048:004c:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7934.933:0048:004c:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004) ret=7bc1774f
7934.933:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 00264110, status 0.
7934.933:0048:004c:SysCall  NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004)
7934.933:0050:0054:SysCall  NtOpenFile(0062f01c,80100000,0062f030,0062f028,00000005,00000060)
7934.933:0050:0054:trace:file:NtCreateFile handle=0x62f01c access=80100000 name=L"\\??\\C:\\windows\\system\\cryptbase.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f028 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
004c: get_handle_fd( handle=0000 )
004c: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7934.934:0048:004c:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7934.934:0048:004c:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7934.934:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\cryptbase.dll" -> ret c000003a
7934.934:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7934.934:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system\\cryptbase.dll" not found (c000003a)
7934.934:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7934.934:0050:0054:SysRet   NtOpenFile() retval=c000003a
7934.934:0048:004c:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7934.934:0048:004c:Ret  KERNEL32.GetFileType() retval=00000000 ret=7b9ffa7a
7934.934:0048:004c:Call ntdll.RtlLeaveCriticalSection(00284728) ret=7b9ff8f4
7934.934:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9ff8f4
7934.934:0048:004c:Call ntdll.RtlEnterCriticalSection(00284768) ret=7b9ff91c
7934.934:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9ff91c
7934.934:0048:004c:Call KERNEL32.GetStdHandle(fffffff4) ret=7b9ffa2d
7934.934:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00264110, return 1, status 0.
7934.934:0048:004c:Call kernelbase.GetStdHandle(fffffff4) ret=7bf3cfb4
7934.934:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\cryptbase.dll",0062F1E0,00000000,00000000)
7934.934:0048:004c:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7934.934:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\cryptbase.dll" 520 0062EE8C 00000000)
7934.934:0048:004c:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7b9ffa2d
7934.934:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\cryptbase.dll" 520 0062EE8C 00000000 00000000)
7934.934:0048:004c:Call KERNEL32.GetFileType(00000000) ret=7b9ffa3a
7934.934:0048:004c:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7934.934:0048:004c:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004) ret=7bc1774f
7934.934:0048:004c:SysCall  NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004)
7934.934:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x42, return 00261D18, status 0.
004c: get_handle_fd( handle=0000 )
7934.935:0050:0054:SysCall  NtOpenFile(0062f01c,80100000,0062f030,0062f028,00000005,00000060)
004c: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7934.935:0050:0054:trace:file:NtCreateFile handle=0x62f01c access=80100000 name=L"\\??\\C:\\windows\\cryptbase.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f028 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7934.935:0048:004c:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7934.935:0048:004c:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7934.935:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7934.935:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7934.935:0048:004c:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7934.935:0048:004c:Ret  KERNEL32.GetFileType() retval=00000000 ret=7b9ffa3a
7934.935:0048:004c:Call ntdll.RtlLeaveCriticalSection(00284768) ret=7b9ff942
7934.935:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9ff942
7934.935:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\cryptbase.dll" -> ret c0000034
7934.935:0048:004c:trace:msvcrt:msvcrt_init_io :handles (FFFFFFFE)(FFFFFFFE)(FFFFFFFE)
7934.935:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\cryptbase.dll" not found (c0000034)
7934.935:0048:004c:Call KERNEL32.InitializeCriticalSectionEx(7ba6d160,00000000,10000000) ret=7b9ffaf4
7934.935:0050:0054:SysRet   NtOpenFile() retval=c0000034
7934.935:0048:004c:Call kernelbase.InitializeCriticalSectionEx(7ba6d160,00000000,10000000) ret=7bf3cfb4
7934.935:0048:004c:Call ntdll.RtlInitializeCriticalSectionEx(7ba6d160,00000000,10000000) ret=7bc26472
7934.935:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261D18, return 1, status 0.
7934.935:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\cryptbase.dll",0062F1E0,00000000,00000000)
7934.935:0050:0054:trace:file:RtlGetFullPathName_U (L".\\cryptbase.dll" 520 0062EE8C 00000000)
7934.935:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\cryptbase.dll" 520 0062EE8C 00000000 00000000)
7934.935:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00285700, status 0.
7934.935:0048:004c:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7934.935:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x54, return 00264180, status 0.
7934.935:0048:004c:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7934.935:0048:004c:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7b9ffaf4
7934.935:0050:0054:SysCall  NtOpenFile(0062f01c,80100000,0062f030,0062f028,00000005,00000060)
7934.935:0048:004c:Call KERNEL32.InitializeCriticalSectionEx(7ba6d198,00000000,10000000) ret=7b9ff9f2
7934.935:0050:0054:trace:file:NtCreateFile handle=0x62f01c access=80100000 name=L"\\??\\C:\\windows\\system32\\cryptbase.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f028 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7934.935:0048:004c:Call kernelbase.InitializeCriticalSectionEx(7ba6d198,00000000,10000000) ret=7bf3cfb4
7934.935:0048:004c:Call ntdll.RtlInitializeCriticalSectionEx(7ba6d198,00000000,10000000) ret=7bc26472
7934.935:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\cryptbase.dll" -> ret c0000034
7934.935:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00285738, status 0.
7934.935:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\cryptbase.dll" not found (c0000034)
7934.935:0048:004c:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7934.935:0050:0054:SysRet   NtOpenFile() retval=c0000034
7934.935:0048:004c:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7934.935:0048:004c:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7b9ff9f2
7934.935:0048:004c:Call KERNEL32.InitializeCriticalSectionEx(7ba6d1d0,00000000,10000000) ret=7b9ff9f2
7934.935:0048:004c:Call kernelbase.InitializeCriticalSectionEx(7ba6d1d0,00000000,10000000) ret=7bf3cfb4
7934.935:0048:004c:Call ntdll.RtlInitializeCriticalSectionEx(7ba6d1d0,00000000,10000000) ret=7bc26472
7934.935:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00264180, return 1, status 0.
7934.935:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027C858, return 1, status 0.
7934.935:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00285770, status 0.
7934.935:0048:004c:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7934.935:0048:004c:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7934.935:0048:004c:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7b9ff9f2
7934.935:0048:004c:Call KERNEL32.GetCommandLineA() ret=7b9fed72
7934.935:0048:004c:Call kernelbase.GetCommandLineA() ret=7bf3cfb4
7934.935:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x876, return 0027E198, status 0.
7934.935:0048:004c:Ret  kernelbase.GetCommandLineA() retval=002823e8 ret=7bf3cfb4
7934.935:0048:004c:Ret  KERNEL32.GetCommandLineA() retval=002823e8 ret=7b9fed72
7934.935:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,0000002c) ret=7b9fec26
7934.935:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027E198, return 1, status 0.
7934.935:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2c, return 002857A8, status 0.
7934.935:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=002857a8 ret=7b9fec26
7934.935:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x836, return 0027EA28, status 0.
7934.935:0048:004c:Call KERNEL32.GetCommandLineW() ret=7b9fed87
7934.935:0048:004c:Call kernelbase.GetCommandLineW() ret=7bf3cfb4
7934.935:0048:004c:Ret  kernelbase.GetCommandLineW() retval=0024366e ret=7bf3cfb4
7934.935:0050:0054:SysCall  NtOpenFile(0062f054,80100000,0062f068,0062f060,00000005,00000060)
7934.935:0048:004c:Ret  KERNEL32.GetCommandLineW() retval=0024366e ret=7b9fed87
7934.935:0050:0054:trace:file:NtCreateFile handle=0x62f054 access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f060 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7934.935:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000058) ret=7b9fec26
7934.935:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" -> ret 0 nt L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" unix "/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/cryptbase.dll"
0054: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000040,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll"}, filename="/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/cryptbase.dll" )
7934.939:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 0027F300, status 0.
7934.939:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=0027f300 ret=7b9fec26
7934.939:0048:004c:Call KERNEL32.GetCommandLineW() ret=7b9fed96
7934.939:0048:004c:Call kernelbase.GetCommandLineW() ret=7bf3cfb4
0054: create_file() = 0 { handle=0018 }
7934.939:0048:004c:Ret  kernelbase.GetCommandLineW() retval=0024366e ret=7bf3cfb4
7934.939:0048:004c:Ret  KERNEL32.GetCommandLineW() retval=0024366e ret=7b9fed96
7934.939:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,000000b8) ret=7b9fedde
7934.939:0050:0054:SysRet   NtOpenFile() retval=00000000
7934.939:0050:0054:SysCall  NtFsControlFile(00000018,00000000,00000000,00000000,0062f060,0009009c,00000000,00000000,0062f080,00000040)
7934.939:0050:0054:trace:file:NtFsControlFile (0x18,(nil),(nil),(nil),0x62f060,0x0009009c,(nil),0x00000000,0x62f080,0x00000040)
0054: get_handle_fd( handle=0018 )
0054: *fd* 0018 -> 84
7934.939:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xb8, return 0027CAC8, status 0.
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=00120089, options=00000060 }
7934.939:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=0027cac8 ret=7b9fedde
7934.939:0048:004c:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027cb28 L"C:\\windows\\system32\\explorer.exe",ffffffff,00000000,00000000,00000000,00000000) ret=7b9e8338
7934.939:0048:004c:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027cb28 L"C:\\windows\\system32\\explorer.exe",ffffffff,00000000,00000000,00000000,00000000) ret=7bf3cfb4
7934.939:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"C:\\windows\\system32\\explorer.exe\0000" -> (null), ret = 33
7934.939:0050:0054:SysRet   NtFsControlFile() retval=00000000
7934.939:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000021 ret=7bf3cfb4
7934.939:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000021 ret=7b9e8338
7934.939:0050:0054:SysCall  NtCreateSection(0062f1d0,000f000d,00000000,0062f058,00000020,01000000,00000018)
7934.939:0048:004c:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027cb6a L"/desktop",ffffffff,00000000,00000000,00000000,00000000) ret=7b9e8338
7934.939:0048:004c:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027cb6a L"/desktop",ffffffff,00000000,00000000,00000000,00000000) ret=7bf3cfb4
0054: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=0018, objattr={} )
7934.940:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"/desktop\0000" -> (null), ret = 9
7934.940:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000009 ret=7bf3cfb4
7934.940:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000009 ret=7b9e8338
0054: create_mapping() = 0 { handle=0020 }
7934.940:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000036) ret=7b9e8372
7934.940:0050:0054:SysRet   NtCreateSection() retval=00000000
7934.940:0050:0054:SysCall  NtQuerySection(00000020,00000001,0062f204,00000030,00000000)
0054: get_mapping_info( handle=0020, access=00000001 )
0054: get_mapping_info() = 0 { size=0000b000, flags=01800000, shared_file=0000, name_len=0, total=201, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=000018c0,map_size=0000b000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=00003d00,checksum=0000c101}, name=L"", exp_name="" }
7934.940:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x36, return 00285808, status 0.
7934.940:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00285808 ret=7b9e8372
7934.940:0050:0054:SysRet   NtQuerySection() retval=00000000
7934.940:0048:004c:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027cb28 L"C:\\windows\\system32\\explorer.exe",ffffffff,00285814,0000002a,00000000,00000000) ret=7b9e83d8
7934.940:0050:0054:SysCall  NtClose(00000018)
7934.940:0048:004c:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027cb28 L"C:\\windows\\system32\\explorer.exe",ffffffff,00285814,0000002a,00000000,00000000) ret=7bf3cfb4
7934.940:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"C:\\windows\\system32\\explorer.exe\0000" -> "C:\\windows\\system32\\explorer.exe\x00", ret = 33
0054: close_handle( handle=0018 )
7934.941:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000021 ret=7bf3cfb4
0054: close_handle() = 0
7934.941:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000021 ret=7b9e83d8
7934.941:0048:004c:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027cb6a L"/desktop",ffffffff,00285835,00000009,00000000,00000000) ret=7b9e83d8
7934.941:0050:0054:SysRet   NtClose() retval=00000000
7934.941:0048:004c:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027cb6a L"/desktop",ffffffff,00285835,00000009,00000000,00000000) ret=7bf3cfb4
7934.941:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"/desktop\0000" -> "/desktop\x00", ret = 9
7934.941:0048:004c:Ret  kernelbase.WideCharToMultiByte() retval=00000009 ret=7bf3cfb4
7934.941:0048:004c:Ret  KERNEL32.WideCharToMultiByte() retval=00000009 ret=7b9e83d8
7934.941:0048:004c:Call KERNEL32.IsBadStringPtrW(0027f300,ffffffff) ret=7b9ff1cd
7934.941:0048:004c:Ret  KERNEL32.IsBadStringPtrW() retval=00000000 ret=7b9ff1cd
7934.941:0048:004c:trace:msvcrt:msvcrt_init_args got "\"C:\\windows\\system32\\explorer.exe\" /desktop", wide = L"\"C:\\windows\\system32\\explorer.exe\" /desktop" argc=2
7934.941:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027EA28, return 1, status 0.
7934.941:0048:004c:Call KERNEL32.GetVersionExW(0062f8e4) ret=7b9feeeb
7934.941:0048:004c:Call kernelbase.GetVersionExW(0062f8e4) ret=7bf3cfb4
7934.941:0048:004c:Call ntdll.RtlRunOnceExecuteOnce(7bcb8c80,7bc70990,00000000,00000000) ret=7bc26189
7934.941:0048:004c:Ret  ntdll.RtlRunOnceExecuteOnce() retval=00000000 ret=7bc26189
7934.941:0048:004c:Call ntdll.wcscpy(0062f8f8,7bcb8cb4 L"") ret=7bc21d77
7934.941:0048:004c:Ret  ntdll.wcscpy() retval=0062f8f8 ret=7bc21d77
7934.941:0048:004c:Ret  kernelbase.GetVersionExW() retval=00000001 ret=7bf3cfb4
7934.941:0050:0054:SysCall  NtAllocateVirtualMemory(ffffffff,0062f03c,00000000,0062f038,00001000,00000004)
7934.941:0048:004c:Ret  KERNEL32.GetVersionExW() retval=00000001 ret=7b9feeeb
7934.941:0050:0054:trace:virtual:NtAllocateVirtualMemory 0xffffffff 0x280000 00010000 1000 00000004
7934.941:0048:004c:trace:msvcrt:msvcrt_init_args winver 00000602 winmajor 00000006 winminor 00000002 osver 000023f0
7934.941:0048:004c:Call KERNEL32.GetEnvironmentStringsA() ret=7b9eef76
7934.941:0050:0054:trace:virtual:dump_view View: 0x260000 - 0x35ffff --rw- (valloc)
7934.941:0048:004c:Call kernelbase.GetEnvironmentStringsA() ret=7bf3cfb4
7934.941:0050:0054:trace:virtual:dump_view       0x260000 - 0x28ffff c-rw-
7934.941:0048:004c:Call ntdll.RtlAcquirePebLock() ret=7bc158a1
7934.941:0050:0054:trace:virtual:dump_view       0x290000 - 0x35ffff --rw-
7934.941:0048:004c:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc158a1
7934.941:0050:0054:SysRet   NtAllocateVirtualMemory() retval=00000000
7934.941:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"WINEDEBUG=err+all,warn+all,fixme+all,trace+all\0000SHELL=/bin/bash\0000PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\0000GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\0000G_BROKEN_FILENAMES=1\0000HOSTNAME=atomak.arne"... -> (null), ret = 3285
7934.941:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000cd5) ret=7bc15936
7934.941:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027F290, status 0.
7934.941:0050:0054:SysCall  NtMapViewOfSection(00000020,ffffffff,0062f1e8,00000000,00000000,00000000,0062f234,00000001,00000000,00000020)
7934.941:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xcd5, return 002861C8, status 0.
7934.941:0050:0054:trace:virtual:NtMapViewOfSection handle=0x20 process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x20
7934.941:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=002861c8 ret=7bc15936
7934.941:0048:004c:trace:nls:WideCharToMultiByte cp 0 L"WINEDEBUG=err+all,warn+all,fixme+all,trace+all\0000SHELL=/bin/bash\0000PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\0000GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\0000G_BROKEN_FILENAMES=1\0000HOSTNAME=atomak.arne"... -> "WINEDEBUG=err+all,warn+all,fixme+all,trace+all\x00SHELL=/bin/bash\x00PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\x00GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\x00G_BROKEN_FILENAMES=1\x00HOSTNAME=atomak.arnet.org\x00"..., ret = 3285
7934.942:0048:004c:Call ntdll.RtlReleasePebLock() ret=7bc1597f
0054: get_mapping_info( handle=0020, access=0000000c )
7934.942:0048:004c:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc1597f
7934.942:0048:004c:Ret  kernelbase.GetEnvironmentStringsA() retval=002861c8 ret=7bf3cfb4
0054: get_mapping_info() = 0 { size=0000b000, flags=01800000, shared_file=0000, name_len=92, total=201, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=000018c0,map_size=0000b000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=00003d00,checksum=0000c101}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll", exp_name="cryptbase.dll" }
7934.942:0048:004c:Ret  KERNEL32.GetEnvironmentStringsA() retval=002861c8 ret=7b9eef76
7934.942:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000d9d) ret=7b9fec26
7934.942:0050:0054:trace:reg:NtQueryValueKey (0xc,L"Z:\\usr\\lib\\wine\\i386-windows\\cryptbase",2,0x21fa00,80)
0054: get_key_value( hkey=000c, name=L"Z:\\usr\\lib\\wine\\i386-windows\\cryptbase" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7934.942:0050:0054:trace:reg:NtQueryValueKey (0xc,L"*cryptbase",2,0x21fa00,80)
7934.942:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xd9d, return 00286EB8, status 0.
7934.943:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00286eb8 ret=7b9fec26
0054: get_key_value( hkey=000c, name=L"*cryptbase" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7934.943:0048:004c:Call KERNEL32.FreeEnvironmentStringsA(002861c8) ret=7b9ef049
7934.943:0048:004c:Call kernelbase.FreeEnvironmentStringsA(002861c8) ret=7bf3cfb4
7934.943:0050:0054:trace:reg:NtQueryValueKey (0xc,L"cryptbase",2,0x21fa00,80)
7934.943:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,002861c8) ret=7bc106ac
0054: get_key_value( hkey=000c, name=L"cryptbase" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7934.943:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002861C8, return 1, status 0.
7934.943:0050:0054:trace:module:get_load_order got hardcoded default for L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll"
7934.943:0048:004c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc106ac
7934.943:0050:0054:trace:module:find_builtin_dll looking for "cryptbase.dll" for file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll"
7934.943:0048:004c:Ret  kernelbase.FreeEnvironmentStringsA() retval=00000001 ret=7bf3cfb4
7934.943:0048:004c:Ret  KERNEL32.FreeEnvironmentStringsA() retval=00000001 ret=7b9ef049
7934.943:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000104) ret=7b9fef9a
0054: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000000,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll"}, filename="/usr/lib/wine/i386-windows/cryptbase.dll" )
0054: create_file() = 0 { handle=0018 }
7934.944:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x104, return 00287C70, status 0.
0054: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=0018, objattr={} )
7934.944:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00287c70 ret=7b9fef9a
7934.944:0048:004c:Call KERNEL32.GetModuleFileNameA(00000000,00287c70,00000104) ret=7b9fefbf
7934.944:0048:004c:Call kernelbase.GetModuleFileNameA(00000000,00287c70,00000104) ret=7bf3cfb4
0054: create_mapping() = 0 { handle=0024 }
7934.944:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000208) ret=7bc1aee2
0054: close_handle( handle=0018 )
0054: close_handle() = 0
0054: get_mapping_info( handle=0024, access=00000004 )
7934.944:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x208, return 00287D90, status 0.
7934.944:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00287d90 ret=7bc1aee2
0054: get_mapping_info() = 0 { size=0000b000, flags=01800000, shared_file=0000, name_len=92, total=201, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=000018c0,map_size=0000b000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=00003d00,checksum=0000c101}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll", exp_name="cryptbase.dll" }
7934.944:0048:004c:Call ntdll.LdrGetDllFullName(00000000,0062f810) ret=7bc1b3e8
7934.944:0048:004c:trace:module:LdrGetDllFullName module 00000000, name 0062F810.
7934.944:0048:004c:Ret  ntdll.LdrGetDllFullName() retval=00000000 ret=7bc1b3e8
7934.944:0048:004c:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc1b400
0054: get_handle_fd( handle=0024 )
7934.944:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc1b400
0054: *fd* 0024 -> 54
7934.944:0048:004c:trace:module:GetModuleFileNameW L"C:\\windows\\system32\\explorer.exe"
7934.944:0048:004c:Call ntdll.RtlUnicodeToMultiByteN(00287c70,00000104,0062f818,00287d90,00000040) ret=7bc68ded
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=000f000d, options=00000020 }
7934.944:0048:004c:Ret  ntdll.RtlUnicodeToMultiByteN() retval=00000000 ret=7bc68ded
7934.944:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00287d90) ret=7bc1af2f
7934.944:0050:0054:trace:module:map_image_into_view mapping PE file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" at 0x7b8a0000-0x7b8ab000
7934.944:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" section .text at 0x7b8a1000 off 400 size 1a00 virt 19f0 flags 60000020
7934.944:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00287D90, return 1, status 0.
7934.944:0048:004c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc1af2f
7934.944:0050:0054:trace:module:map_image_into_view clearing 0x7b8a2a00 - 0x7b8a3000
7934.944:0048:004c:Ret  kernelbase.GetModuleFileNameA() retval=00000020 ret=7bf3cfb4
7934.944:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" section .data at 0x7b8a3000 off 1e00 size 200 virt a8 flags c0000040
7934.944:0048:004c:Ret  KERNEL32.GetModuleFileNameA() retval=00000020 ret=7b9fefbf
7934.944:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000208) ret=7b9feff9
7934.944:0050:0054:trace:module:map_image_into_view clearing 0x7b8a3200 - 0x7b8a4000
7934.944:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" section .rdata at 0x7b8a4000 off 2000 size 800 virt 708 flags 40000040
7934.944:0050:0054:trace:module:map_image_into_view clearing 0x7b8a4800 - 0x7b8a5000
7934.944:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" section /4 at 0x7b8a5000 off 2800 size 800 virt 698 flags 40000040
7934.944:0050:0054:trace:module:map_image_into_view clearing 0x7b8a5800 - 0x7b8a6000
7934.944:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" section .bss at 0x7b8a6000 off 0 size 0 virt 18c0 flags c0000080
7934.944:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x208, return 00287FB0, status 0.
7934.944:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" section .edata at 0x7b8a8000 off 3000 size 200 virt 1aa flags 40000040
7934.944:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00287fb0 ret=7b9feff9
7934.944:0048:004c:Call KERNEL32.GetModuleFileNameW(00000000,00287fb0,00000104) ret=7b9ff01e
7934.944:0050:0054:trace:module:map_image_into_view clearing 0x7b8a8200 - 0x7b8a9000
7934.944:0048:004c:Call kernelbase.GetModuleFileNameW(00000000,00287fb0,00000104) ret=7bf3cfb4
7934.944:0048:004c:Call ntdll.LdrGetDllFullName(00000000,0062f834) ret=7bc1b3e8
7934.944:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" section .idata at 0x7b8a9000 off 3200 size 400 virt 344 flags c0000040
7934.944:0048:004c:trace:module:LdrGetDllFullName module 00000000, name 0062F834.
7934.944:0048:004c:Ret  ntdll.LdrGetDllFullName() retval=00000000 ret=7bc1b3e8
7934.944:0050:0054:trace:module:map_image_into_view clearing 0x7b8a9400 - 0x7b8aa000
7934.944:0048:004c:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc1b400
7934.944:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" section .reloc at 0x7b8aa000 off 3600 size 200 virt 18c flags 42000040
7934.944:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc1b400
7934.944:0048:004c:trace:module:GetModuleFileNameW L"C:\\windows\\system32\\explorer.exe"
7934.944:0050:0054:trace:module:map_image_into_view clearing 0x7b8aa200 - 0x7b8ab000
7934.944:0048:004c:Ret  kernelbase.GetModuleFileNameW() retval=00000020 ret=7bf3cfb4
7934.944:0050:0054:trace:module:map_image_into_view relocating L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\cryptbase.dll" dynamic base 10000000 -> 7b8a0000 mapped at 0x7b8a0000
7934.944:0048:004c:Ret  KERNEL32.GetModuleFileNameW() retval=00000020 ret=7b9ff01e
7934.944:0048:004c:Call KERNEL32.SetConsoleCtrlHandler(7b9fdd00,00000001) ret=7ba0015b
7934.944:0048:004c:Call kernelbase.SetConsoleCtrlHandler(7b9fdd00,00000001) ret=7bf3cfb4
7934.944:0048:004c:trace:console:SetConsoleCtrlHandler (7B9FDD00,1)
7934.944:0048:004c:Call ntdll.RtlEnterCriticalSection(7bc7d060) ret=7bc4e36a
7934.946:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc4e36a
0054: map_image_view( mapping=0024, base=7b8a0000, size=0000b000, offset=00000000, entry=000018c0, machine=014c )
7934.946:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000008) ret=7bc4e405
0054: map_image_view() = 0
7934.946:0050:0054:trace:virtual:dump_view View: 0x7b8a0000 - 0x7b8aafff c-rWx (image)
7934.946:0050:0054:trace:virtual:dump_view       0x7b8a0000 - 0x7b8a0fff c-r--
7934.946:0050:0054:trace:virtual:dump_view       0x7b8a1000 - 0x7b8a2fff c-r-x
7934.946:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x8, return 002881D0, status 0.
7934.946:0050:0054:trace:virtual:dump_view       0x7b8a3000 - 0x7b8a3fff c-rW-
7934.946:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=002881d0 ret=7bc4e405
7934.946:0050:0054:trace:virtual:dump_view       0x7b8a4000 - 0x7b8a5fff c-r--
7934.946:0048:004c:Call ntdll.RtlLeaveCriticalSection(7bc7d060) ret=7bc4e432
7934.946:0050:0054:trace:virtual:dump_view       0x7b8a6000 - 0x7b8a7fff c-rW-
7934.946:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc4e432
7934.946:0050:0054:trace:virtual:dump_view       0x7b8a8000 - 0x7b8a8fff c-r--
7934.946:0048:004c:Ret  kernelbase.SetConsoleCtrlHandler() retval=00000001 ret=7bf3cfb4
7934.946:0050:0054:trace:virtual:dump_view       0x7b8a9000 - 0x7b8a9fff c-rW-
7934.946:0048:004c:Ret  KERNEL32.SetConsoleCtrlHandler() retval=00000001 ret=7ba0015b
7934.946:0050:0054:trace:virtual:dump_view       0x7b8aa000 - 0x7b8aafff c-r--
7934.946:0048:004c:Call ntdll.NtQuerySystemTime(0062fa08) ret=7b9ff5bd
7934.946:0048:004c:SysCall  NtQuerySystemTime(0062fa08)
7934.946:0048:004c:SysRet   NtQuerySystemTime() retval=00000000
0054: close_handle( handle=0024 )
7934.947:0048:004c:Ret  ntdll.NtQuerySystemTime() retval=00000000 ret=7b9ff5bd
0054: close_handle() = 0
7934.947:0048:004c:trace:msvcrt:DllMain finished process init
7934.947:0048:004c:Ret  PE DLL (proc=7B9B7710,module=7B9A0000 L"ucrtbase.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7934.947:0048:004c:trace:module:process_attach (L"ucrtbase.dll",0062FD24) - END
7934.947:0050:0054:SysRet   NtMapViewOfSection() retval=00000000
7934.947:0048:004c:Call PE DLL (proc=7BAA4EC0,module=7BAA0000 L"sechost.dll",reason=PROCESS_ATTACH,res=0062FD24)
7934.947:0048:004c:Call KERNEL32.DisableThreadLibraryCalls(7baa0000) ret=7baa4eb4
7934.947:0048:004c:Call kernelbase.DisableThreadLibraryCalls(7baa0000) ret=7bf3cfb4
7934.947:0048:004c:Call ntdll.LdrDisableThreadCalloutsForDll(7baa0000) ret=7bc07df3
7934.947:0048:004c:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7934.947:0048:004c:Ret  kernelbase.DisableThreadLibraryCalls() retval=00000001 ret=7bf3cfb4
7934.947:0048:004c:Ret  KERNEL32.DisableThreadLibraryCalls() retval=00000001 ret=7baa4eb4
7934.947:0048:004c:Ret  PE DLL (proc=7BAA4EC0,module=7BAA0000 L"sechost.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7934.947:0048:004c:trace:module:process_attach (L"sechost.dll",0062FD24) - END
7934.947:0048:004c:Call PE DLL (proc=7BBB0480,module=7BBA0000 L"advapi32.dll",reason=PROCESS_ATTACH,res=0062FD24)
7934.947:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0xb8, return 0027C928, status 0.
7934.947:0048:004c:Call KERNEL32.DisableThreadLibraryCalls(7bba0000) ret=7bbb0474
7934.947:0048:004c:Call kernelbase.DisableThreadLibraryCalls(7bba0000) ret=7bf3cfb4
7934.947:0048:004c:Call ntdll.LdrDisableThreadCalloutsForDll(7bba0000) ret=7bc07df3
7934.947:0048:004c:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7934.947:0048:004c:Ret  kernelbase.DisableThreadLibraryCalls() retval=00000001 ret=7bf3cfb4
7934.947:0048:004c:Ret  KERNEL32.DisableThreadLibraryCalls() retval=00000001 ret=7bbb0474
7934.947:0048:004c:Ret  PE DLL (proc=7BBB0480,module=7BBA0000 L"advapi32.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7934.947:0048:004c:trace:module:process_attach (L"advapi32.dll",0062FD24) - END
7934.947:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 00261D78, status 0.
7934.947:0048:004c:trace:module:process_attach (L"gdi32.dll",0062FD24) - START
7934.947:0048:004c:trace:module:process_attach (L"user32.dll",0062FD24) - START
7934.947:0048:004c:trace:module:process_attach (L"win32u.dll",0062FD24) - START
7934.947:0048:004c:Call PE DLL (proc=7B5331A0,module=7B520000 L"win32u.dll",reason=PROCESS_ATTACH,res=0062FD24)
7934.947:0048:004c:Call ntdll.LdrDisableThreadCalloutsForDll(7b520000) ret=7b533114
7934.947:0048:004c:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7b533114
7934.947:0048:004c:Call ntdll.LdrGetDllHandle(00000000,00000000,0062fa4c,0062fa48) ret=7b533141
7934.947:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x2c, return 00280030, status 0.
7934.947:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062FA4C, base 0062FA48.
7934.947:0050:0054:trace:ntdll:RtlRbInsertNodeEx tree 7BFD5580, parent 002730E8, right 1, node 0027C990.
7934.947:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F900
7934.947:0050:0054:trace:resource:LdrFindResource_U module 7B8A0000 type #0018 name #0002 lang 0000 level 3
7934.947:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7934.947:0050:0054:trace:module:load_dll looking for L"kernel32.dll" in (null)
7934.947:0048:004c:Ret  ntdll.LdrGetDllHandle() retval=00000000 ret=7b533141
7934.947:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"kernel32.dll" 0062ECAC
7934.947:0048:004c:Call ntdll.RtlFindExportedRoutineByName(7bf30000,7b53692c "__wine_syscall_dispatcher") ret=7b533158
7934.947:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\kernel32.dll" for L"kernel32.dll" at 7BEB0000, count=9
7934.947:0048:004c:Ret  ntdll.RtlFindExportedRoutineByName() retval=7bfd4030 ret=7b533158
7934.947:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062ee4c,0062ee50,00000004,0062ee54)
7934.947:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b8a90bc 00000024 00000004
7934.947:0048:004c:Call ntdll.NtQueryVirtualMemory(ffffffff,7b520000,000003e8,7b54a008,00000008,00000000) ret=7b5331eb
7934.947:0050:0054:trace:virtual:get_vprot_range_size base 0x7b8a9000, size 0x1000, mask 0x20.
7934.947:0048:004c:SysCall  NtQueryVirtualMemory(ffffffff,7b520000,000003e8,7b54a008,00000008,00000000)
7934.947:0050:0054:trace:virtual:dump_view View: 0x7b8a0000 - 0x7b8aafff c-rWx (image)
7934.947:0048:004c:trace:virtual:NtQueryVirtualMemory (0xffffffff, 0x7b520000, info_class=1000, 0x7b54a008, 8, (nil))
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a0000 - 0x7b8a0fff c-r--
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a1000 - 0x7b8a2fff c-r-x
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a3000 - 0x7b8a3fff c-rW-
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a4000 - 0x7b8a5fff c-r--
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a6000 - 0x7b8a7fff c-rW-
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a8000 - 0x7b8a8fff c-r--
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a9000 - 0x7b8a9fff c-rW-
7934.947:0050:0054:trace:virtual:dump_view       0x7b8aa000 - 0x7b8aafff c-r--
7934.947:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.947:0050:0054:trace:imports:import_dll --- DisableThreadLibraryCalls kernel32.dll.201 = 7BEB3890
7934.947:0050:0054:trace:imports:import_dll --- EnterCriticalSection kernel32.dll.214 = 7BF35DD0
7934.947:0050:0054:trace:imports:import_dll --- GetModuleHandleW kernel32.dll.524 = 7BEB5C10
7934.947:0050:0054:trace:imports:import_dll --- GetProcAddress kernel32.dll.571 = 7BEB61B0
7934.947:0050:0054:trace:imports:import_dll --- GetTickCount kernel32.dll.658 = 7BEB6C90
7934.947:0050:0054:trace:imports:import_dll --- HeapAlloc kernel32.dll.715 = 7BF34E6C
7934.947:0050:0054:trace:imports:import_dll --- HeapReAlloc kernel32.dll.725 = 7BF38034
7934.947:0050:0054:trace:imports:import_dll --- LeaveCriticalSection kernel32.dll.833 = 7BF37654
7934.947:0050:0054:trace:imports:import_dll --- RaiseException kernel32.dll.961 = 7BEB8DB0
7934.947:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062ee4c,0062ee50,00000008,0062ee54)
7934.947:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b8a9000 00001000 00000008
7934.947:0050:0054:trace:virtual:get_vprot_range_size base 0x7b8a9000, size 0x1000, mask 0x20.
7934.947:0050:0054:trace:virtual:dump_view View: 0x7b8a0000 - 0x7b8aafff c-rWx (image)
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a0000 - 0x7b8a0fff c-r--
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a1000 - 0x7b8a2fff c-r-x
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a3000 - 0x7b8a3fff c-rW-
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a4000 - 0x7b8a5fff c-r--
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a6000 - 0x7b8a7fff c-rW-
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a8000 - 0x7b8a8fff c-r--
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a9000 - 0x7b8a9fff c-rW-
7934.947:0050:0054:trace:virtual:dump_view       0x7b8aa000 - 0x7b8aafff c-r--
7934.947:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.947:0050:0054:trace:module:load_dll looking for L"ntdll.dll" in (null)
7934.947:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062ECAC
7934.947:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\ntdll.dll" for L"ntdll.dll" at 7BF30000, count=12
7934.947:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062ee4c,0062ee50,00000004,0062ee54)
7934.947:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b8a90e4 00000008 00000004
7934.947:0050:0054:trace:virtual:get_vprot_range_size base 0x7b8a9000, size 0x1000, mask 0x20.
7934.947:0050:0054:trace:virtual:dump_view View: 0x7b8a0000 - 0x7b8aafff c-rWx (image)
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a0000 - 0x7b8a0fff c-r--
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a1000 - 0x7b8a2fff c-r-x
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a3000 - 0x7b8a3fff c-rW-
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a4000 - 0x7b8a5fff c-r--
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a6000 - 0x7b8a7fff c-rW-
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a8000 - 0x7b8a8fff c-r--
7934.947:0048:004c:SysRet   NtQueryVirtualMemory() retval=00000000
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a9000 - 0x7b8a9fff c-rW-
7934.947:0048:004c:Ret  ntdll.NtQueryVirtualMemory() retval=00000000 ret=7b5331eb
7934.947:0050:0054:trace:virtual:dump_view       0x7b8aa000 - 0x7b8aafff c-r--
7934.947:0048:004c:Call ntdll.LdrGetDllHandle(00000000,00000000,0062fa10,0062fa0c) ret=7b533268
7934.947:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.947:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062FA10, base 0062FA0C.
7934.947:0050:0054:trace:imports:import_dll --- NtQuerySystemInformation ntdll.dll.274 = 7BF33CC8
7934.947:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F8B0
7934.947:0050:0054:trace:imports:import_dll --- _vsnprintf ntdll.dll.1353 = 7BF6E7F0
7934.947:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7934.947:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062ee4c,0062ee50,00000008,0062ee54)
7934.947:0048:004c:Ret  ntdll.LdrGetDllHandle() retval=00000000 ret=7b533268
7934.947:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b8a9000 00001000 00000008
7934.947:0048:004c:Call ntdll.RtlFindExportedRoutineByName(7bf30000,7b53695c "__wine_unix_call_dispatcher") ret=7b53327f
7934.947:0050:0054:trace:virtual:get_vprot_range_size base 0x7b8a9000, size 0x1000, mask 0x20.
7934.947:0048:004c:Ret  ntdll.RtlFindExportedRoutineByName() retval=7bfd4034 ret=7b53327f
7934.947:0050:0054:trace:virtual:dump_view View: 0x7b8a0000 - 0x7b8aafff c-rWx (image)
7934.947:0048:004c:Ret  PE DLL (proc=7B5331A0,module=7B520000 L"win32u.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a0000 - 0x7b8a0fff c-r--
7934.947:0048:004c:trace:module:process_attach (L"win32u.dll",0062FD24) - END
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a1000 - 0x7b8a2fff c-r-x
7934.947:0048:004c:Call PE DLL (proc=7B62F0C0,module=7B610000 L"user32.dll",reason=PROCESS_ATTACH,res=0062FD24)
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a3000 - 0x7b8a3fff c-rW-
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a4000 - 0x7b8a5fff c-r--
7934.947:0048:004c:Call KERNEL32.RegisterWaitForInputIdle(7b66b860) ret=7b62efe5
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a6000 - 0x7b8a7fff c-rW-
7934.947:0048:004c:Ret  KERNEL32.RegisterWaitForInputIdle() retval=7b66b860 ret=7b62efe5
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a8000 - 0x7b8a8fff c-r--
7934.947:0048:004c:Call ntdll.RtlInitializeNtUserPfn(7b6b52c0,00000088,7b6b5348,00000088,7b6b53d0,00000058) ret=7b6a50ce
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a9000 - 0x7b8a9fff c-rW-
7934.947:0048:004c:Ret  ntdll.RtlInitializeNtUserPfn() retval=00000000 ret=7b6a50ce
7934.947:0050:0054:trace:virtual:dump_view       0x7b8aa000 - 0x7b8aafff c-r--
7934.947:0048:004c:Call ntdll.RtlRetrieveNtUserPfn(0062fa40,0062fa44,0062fa48) ret=7b6a50eb
7934.947:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.947:0048:004c:Ret  ntdll.RtlRetrieveNtUserPfn() retval=00000000 ret=7b6a50eb
7934.947:0050:0054:trace:module:load_dll looking for L"ucrtbase.dll" in (null)
7934.947:0048:004c:Call win32u.NtUserInitializeClientPfnArrays(7bfb0040,7bfb00c8,7bfb0150,7b610000) ret=7b6a5111
7934.947:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ucrtbase.dll" 0062ECAC
7934.947:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\ucrtbase.dll" for L"ucrtbase.dll" at 7B9A0000, count=4
7934.947:0048:004c:SysCall  NtUserInitializeClientPfnArrays(7bfb0040,7bfb00c8,7bfb0150,7b610000)
7934.947:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062ee4c,0062ee50,00000004,0062ee54)
7934.947:0048:004c:trace:ntdll:NtQuerySystemInformation (0x00000000,0x7ef72340,0x0000002c,(nil))
7934.947:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b8a90f0 00000034 00000004
7934.947:0050:0054:trace:virtual:get_vprot_range_size base 0x7b8a9000, size 0x1000, mask 0x20.
7934.947:0050:0054:trace:virtual:dump_view View: 0x7b8a0000 - 0x7b8aafff c-rWx (image)
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a0000 - 0x7b8a0fff c-r--
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a1000 - 0x7b8a2fff c-r-x
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a3000 - 0x7b8a3fff c-rW-
7934.947:0050:0054:trace:virtual:dump_view       0x7b8a4000 - 0x7b8a5fff c-r--
7934.952:0050:0054:trace:virtual:dump_view       0x7b8a6000 - 0x7b8a7fff c-rW-
004c: open_mapping( access=00000004, attributes=00000000, rootdir=0000, name=L"\\KernelObjects\\__wine_session" )
7934.952:0050:0054:trace:virtual:dump_view       0x7b8a8000 - 0x7b8a8fff c-r--
004c: open_mapping() = 0 { handle=002c }
7934.952:0050:0054:trace:virtual:dump_view       0x7b8a9000 - 0x7b8a9fff c-rW-
7934.952:0050:0054:trace:virtual:dump_view       0x7b8aa000 - 0x7b8aafff c-r--
7934.952:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.952:0048:004c:trace:virtual:NtMapViewOfSection handle=0x2c process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x2
7934.952:0050:0054:trace:imports:import_dll --- __acrt_iob_func ucrtbase.dll.73 = 7B9A3A2C
7934.952:0050:0054:trace:imports:import_dll --- __stdio_common_vsprintf ucrtbase.dll.157 = 7B9BEC50
004c: get_mapping_info( handle=002c, access=00000004 )
7934.952:0050:0054:trace:imports:import_dll --- _strdup ucrtbase.dll.1893 = 7B9B134C
004c: get_mapping_info() = 0 { size=00144000, flags=08000000, shared_file=0000, name_len=0, total=0, image={}, name=L"", exp_name="" }
7934.952:0050:0054:trace:imports:import_dll --- free ucrtbase.dll.2283 = 7B9B428C
7934.952:0050:0054:trace:imports:import_dll --- fwrite ucrtbase.dll.2290 = 7B9B436C
7934.952:0050:0054:trace:imports:import_dll --- getenv ucrtbase.dll.2293 = 7B9B43CC
7934.952:0050:0054:trace:imports:import_dll --- memcmp ucrtbase.dll.2378 = 7B9B4E2C
004c: get_handle_fd( handle=002c )
7934.952:0050:0054:trace:imports:import_dll --- memcpy ucrtbase.dll.2379 = 7B9B4E4C
004c: *fd* 002c -> 20
7934.952:0050:0054:trace:imports:import_dll --- memmove ucrtbase.dll.2381 = 7B9B4E8C
7934.952:0050:0054:trace:imports:import_dll --- strchr ucrtbase.dll.2448 = 7B9B56EC
004c: get_handle_fd() = 0 { type=1, cacheable=1, access=00000004, options=00000020 }
7934.952:0050:0054:trace:imports:import_dll --- strcmp ucrtbase.dll.2449 = 7B9B570C
7934.952:0050:0054:trace:imports:import_dll --- strcspn ucrtbase.dll.2453 = 7B9B578C
7934.952:0050:0054:trace:imports:import_dll --- strlen ucrtbase.dll.2457 = 7B9B580C
7934.952:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062ee4c,0062ee50,00000008,0062ee54)
7934.952:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b8a9000 00001000 00000008
7934.952:0048:004c:trace:virtual:map_view got mem in reserved area 0xab0000-0xbf4000
7934.952:0050:0054:trace:virtual:get_vprot_range_size base 0x7b8a9000, size 0x1000, mask 0x20.
7934.952:0048:004c:trace:virtual_ranges:free_ranges_insert_view 0xab0000 - 0xbf4000, aligned 0xab0000 - 0xc00000.
7934.952:0050:0054:trace:virtual:dump_view View: 0x7b8a0000 - 0x7b8aafff c-rWx (image)
7934.952:0048:004c:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7934.952:0048:004c:trace:virtual_ranges:dump_free_ranges 0x3f0000 - 0x400000.
7934.952:0050:0054:trace:virtual:dump_view       0x7b8a0000 - 0x7b8a0fff c-r--
7934.952:0048:004c:trace:virtual_ranges:dump_free_ranges 0xc00000 - 0x7fde0000.
7934.952:0050:0054:trace:virtual:dump_view       0x7b8a1000 - 0x7b8a2fff c-r-x
7934.952:0048:004c:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7934.952:0050:0054:trace:virtual:dump_view       0x7b8a3000 - 0x7b8a3fff c-rW-
7934.952:0048:004c:trace:virtual:virtual_map_section handle=0x2c size=144000 offset=0
7934.952:0050:0054:trace:virtual:dump_view       0x7b8a4000 - 0x7b8a5fff c-r--
7934.952:0050:0054:trace:virtual:dump_view       0x7b8a6000 - 0x7b8a7fff c-rW-
7934.952:0050:0054:trace:virtual:dump_view       0x7b8a8000 - 0x7b8a8fff c-r--
7934.952:0050:0054:trace:virtual:dump_view       0x7b8a9000 - 0x7b8a9fff c-rW-
7934.952:0050:0054:trace:virtual:dump_view       0x7b8aa000 - 0x7b8aafff c-r--
7934.953:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
004c: map_view( mapping=002c, access=00000004, base=00ab0000, size=00144000, start=00000000 )
004c: map_view() = 0
7934.953:0048:004c:trace:virtual:dump_view View: 0xab0000 - 0xbf3fff c-r-- (anonymous)
7934.953:0048:004c:trace:virtual:dump_view       0xab0000 - 0xbf3fff c-r--
004c: close_handle( handle=002c )
7934.953:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273340, status 0.
004c: close_handle() = 0
7934.953:0050:0054:trace:module:build_module loaded L"\\??\\C:\\windows\\system32\\cryptbase.dll" 0027C928 7B8A0000
7934.953:0048:004c:trace:virtual:NtAllocateVirtualMemory 0xffffffff (nil) 00180000 3000 00000004
7934.953:0048:004c:trace:virtual:map_view got mem in reserved area 0xc00000-0xd80000
7934.953:0048:004c:trace:virtual_ranges:free_ranges_insert_view 0xc00000 - 0xd80000, aligned 0xc00000 - 0xd80000.
7934.953:0048:004c:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7934.953:0048:004c:trace:virtual_ranges:dump_free_ranges 0x3f0000 - 0x400000.
7934.953:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x88, return 00280078, status 0.
7934.953:0048:004c:trace:virtual_ranges:dump_free_ranges 0xd80000 - 0x7fde0000.
7934.953:0048:004c:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7934.953:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f0a4,0062f0a8,00000004,0062f0a0)
7934.953:0048:004c:trace:virtual:dump_view View: 0xc00000 - 0xd7ffff c-rw- (valloc)
7934.953:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b8a8028 0000002c 00000004
7934.953:0048:004c:trace:virtual:dump_view       0xc00000 - 0xd7ffff c-rw-
7934.953:0050:0054:trace:virtual:get_vprot_range_size base 0x7b8a8000, size 0x1000, mask 0x20.
7934.953:0050:0054:trace:virtual:dump_view View: 0x7b8a0000 - 0x7b8aafff c-rWx (image)
7934.953:0048:004c:trace:ntdll:NtQueryInformationToken (0xfffffffa,TokenUser,0x21f6d4,76,0x21f6ac)
7934.953:0050:0054:trace:virtual:dump_view       0x7b8a0000 - 0x7b8a0fff c-r--
7934.953:0050:0054:trace:virtual:dump_view       0x7b8a1000 - 0x7b8a2fff c-r-x
7934.953:0050:0054:trace:virtual:dump_view       0x7b8a3000 - 0x7b8a3fff c-rW-
004c: get_token_sid( handle=fffffffa, which_sid=00000001 )
7934.954:0050:0054:trace:virtual:dump_view       0x7b8a4000 - 0x7b8a5fff c-r--
004c: get_token_sid() = 0 { sid_len=28, sid=S-1-5-21-0-0-0-1000 }
7934.954:0050:0054:trace:virtual:dump_view       0x7b8a6000 - 0x7b8a9fff c-rW-
7934.954:0050:0054:trace:virtual:dump_view       0x7b8aa000 - 0x7b8aafff c-r--
7934.954:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.954:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\User\\S-1-5-21-0-0-0-1000",2000000,0x21f6b0)
7934.954:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f0a4,0062f0a8,00000002,0062f0a0)
7934.954:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b8a8000 00001000 00000002
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\User\\S-1-5-21-0-0-0-1000" )
7934.954:0050:0054:trace:virtual:get_vprot_range_size base 0x7b8a8000, size 0x1000, mask 0x20.
004c: open_key() = 0 { hkey=002c }
7934.954:0050:0054:trace:virtual:dump_view View: 0x7b8a0000 - 0x7b8aafff c-rWx (image)
7934.954:0050:0054:trace:virtual:dump_view       0x7b8a0000 - 0x7b8a0fff c-r--
7934.954:0048:004c:trace:reg:NtOpenKeyEx <- 0x2c
7934.954:0050:0054:trace:virtual:dump_view       0x7b8a1000 - 0x7b8a2fff c-r-x
7934.954:0050:0054:trace:virtual:dump_view       0x7b8a3000 - 0x7b8a3fff c-rW-
7934.954:0048:004c:trace:reg:NtCreateKey (0x2c,L"Software\\Wine\\Fonts",<null>,0,2000000,0x21f9fc)
7934.954:0050:0054:trace:virtual:dump_view       0x7b8a4000 - 0x7b8a5fff c-r--
7934.954:0050:0054:trace:virtual:dump_view       0x7b8a6000 - 0x7b8a7fff c-rW-
004c: create_key( access=02000000, options=00000000, objattr={rootdir=002c,attributes=000000c0,sd={},name=L"Software\\Wine\\Fonts"}, class=L"" )
7934.954:0050:0054:trace:virtual:dump_view       0x7b8a8000 - 0x7b8a8fff c-r--
004c: create_key() = OBJECT_NAME_EXISTS { hkey=0030 }
7934.954:0050:0054:trace:virtual:dump_view       0x7b8a9000 - 0x7b8a9fff c-rW-
7934.954:0050:0054:trace:virtual:dump_view       0x7b8aa000 - 0x7b8aafff c-r--
7934.954:0048:004c:trace:reg:NtCreateKey <- 0x30
7934.954:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.954:0048:004c:trace:reg:NtQueryValueKey (0x30,L"AntialiasFakeBoldOrItalic",2,0x21f7e4,52)
7934.954:0050:0054:trace:loaddll:build_module Loaded L"C:\\windows\\system32\\cryptbase.dll" at 7B8A0000: builtin
7934.954:0050:0054:trace:module:load_dll Loaded module L"\\??\\C:\\windows\\system32\\cryptbase.dll" at 7B8A0000
004c: get_key_value( hkey=0030, name=L"AntialiasFakeBoldOrItalic" )
7934.955:0050:0054:SysCall  NtClose(00000020)
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
0054: close_handle( handle=0020 )
0054: close_handle() = 0
7934.955:0050:0054:SysRet   NtClose() retval=00000000
7934.955:0048:004c:trace:reg:NtOpenKeyEx (0x2c,L"Control Panel\\Desktop",2000000,0x21f7c0)
004c: open_key( parent=002c, access=02000000, attributes=00000040, name=L"Control Panel\\Desktop" )
004c: open_key() = 0 { hkey=0034 }
7934.955:0048:004c:trace:reg:NtOpenKeyEx <- 0x34
7934.955:0048:004c:trace:reg:NtQueryValueKey (0x34,L"FontSmoothingOrientation",2,0x21f69c,36)
7934.955:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F290, return 1, status 0.
004c: get_key_value( hkey=0034, name=L"FontSmoothingOrientation" )
004c: get_key_value() = 0 { type=4, total=4, data={01,00,00,00} }
7934.955:0048:004c:trace:reg:NtQueryValueKey (0x34,L"FontSmoothing",2,0x21f69c,36)
7934.956:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273370, status 0.
004c: get_key_value( hkey=0034, name=L"FontSmoothing" )
7934.956:0050:0054:trace:imports:import_dll --- SystemFunction036 advapi32.dll.554 = 7B8A115C
004c: get_key_value() = 0 { type=1, total=4, data={32,00,00,00} }
7934.956:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000008,0062f518)
7934.956:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b943000 00001000 00000008
7934.956:0048:004c:trace:reg:NtQueryValueKey (0x34,L"FontSmoothingType",2,0x21f69c,36)
7934.956:0050:0054:trace:virtual:get_vprot_range_size base 0x7b943000, size 0x1000, mask 0x20.
7934.956:0050:0054:trace:virtual:dump_view View: 0x7b8c0000 - 0x7b94afff c-rWx (image)
004c: get_key_value( hkey=0034, name=L"FontSmoothingType" )
7934.956:0050:0054:trace:virtual:dump_view       0x7b8c0000 - 0x7b8c0fff c-r--
004c: get_key_value() = 0 { type=4, total=4, data={01,00,00,00} }
7934.956:0050:0054:trace:virtual:dump_view       0x7b8c1000 - 0x7b910fff c-r-x
7934.956:0050:0054:trace:virtual:dump_view       0x7b911000 - 0x7b911fff c-rW-
7934.956:0050:0054:trace:virtual:dump_view       0x7b912000 - 0x7b93cfff c-r--
7934.956:0048:004c:trace:reg:NtQueryValueKey (0x34,L"FontSmoothingGamma",2,0x21f69c,36)
7934.956:0050:0054:trace:virtual:dump_view       0x7b93d000 - 0x7b93dfff c-rW-
7934.956:0050:0054:trace:virtual:dump_view       0x7b93e000 - 0x7b942fff c-r--
004c: get_key_value( hkey=0034, name=L"FontSmoothingGamma" )
7934.956:0050:0054:trace:virtual:dump_view       0x7b943000 - 0x7b944fff c-rW-
004c: get_key_value() = 0 { type=4, total=4, data={00,00,00,00} }
7934.956:0050:0054:trace:virtual:dump_view       0x7b945000 - 0x7b94afff c-r--
7934.956:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.956:0048:004c:trace:reg:NtQueryValueKey (0x34,L"LogPixels",2,0x21f69c,36)
004c: get_key_value( hkey=0034, name=L"LogPixels" )
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
004c: close_handle( handle=0034 )
7934.957:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 002733A0, status 0.
004c: close_handle() = 0
7934.957:0050:0054:trace:module:load_dll looking for L"kernel32.dll" in (null)
7934.957:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"kernel32.dll" 0062F370
7934.957:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current\\Software\\Fonts",2000000,0x21f7c4)
7934.957:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\kernel32.dll" for L"kernel32.dll" at 7BEB0000, count=10
7934.957:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000004,0062f518)
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current\\Software\\Fonts" )
7934.957:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b943244 000000d4 00000004
004c: open_key() = 0 { hkey=0034 }
7934.957:0050:0054:trace:virtual:get_vprot_range_size base 0x7b943000, size 0x1000, mask 0x20.
7934.957:0050:0054:trace:virtual:dump_view View: 0x7b8c0000 - 0x7b94afff c-rWx (image)
7934.957:0048:004c:trace:reg:NtOpenKeyEx <- 0x34
7934.957:0050:0054:trace:virtual:dump_view       0x7b8c0000 - 0x7b8c0fff c-r--
7934.957:0048:004c:trace:reg:NtQueryValueKey (0x34,L"LogPixels",2,0x21f69c,36)
7934.957:0050:0054:trace:virtual:dump_view       0x7b8c1000 - 0x7b910fff c-r-x
7934.957:0050:0054:trace:virtual:dump_view       0x7b911000 - 0x7b911fff c-rW-
004c: get_key_value( hkey=0034, name=L"LogPixels" )
7934.957:0050:0054:trace:virtual:dump_view       0x7b912000 - 0x7b93cfff c-r--
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7934.957:0050:0054:trace:virtual:dump_view       0x7b93d000 - 0x7b93dfff c-rW-
7934.957:0050:0054:trace:virtual:dump_view       0x7b93e000 - 0x7b942fff c-r--
7934.957:0050:0054:trace:virtual:dump_view       0x7b943000 - 0x7b944fff c-rW-
004c: close_handle( handle=0034 )
7934.957:0050:0054:trace:virtual:dump_view       0x7b945000 - 0x7b94afff c-r--
004c: close_handle() = 0
7934.957:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.957:0050:0054:trace:imports:import_dll --- CancelIoEx kernel32.dll.51 = 7BEB2770
7934.957:0050:0054:trace:imports:import_dll --- CloseHandle kernel32.dll.63 = 7BEB28D0
7934.957:0048:004c:trace:font:init_font_options gamma 1000 screen dpi 96
7934.957:0050:0054:trace:imports:import_dll --- CreateEventW kernel32.dll.112 = 7BEB2E10
7934.957:0048:004c:trace:reg:NtQueryValueKey (0x30,L"LogPixels",2,0x21fb54,92)
7934.957:0050:0054:trace:imports:import_dll --- CreateFileA kernel32.dll.116 = 7BEB2E90
7934.957:0050:0054:trace:imports:import_dll --- CreateMutexW kernel32.dll.138 = 7BEB3130
7934.958:0050:0054:trace:imports:import_dll --- CreateNamedPipeA kernel32.dll.139 = 7BEB3150
004c: get_key_value( hkey=0030, name=L"LogPixels" )
7934.958:0050:0054:trace:imports:import_dll --- CreateThread kernel32.dll.159 = 7BEB33D0
004c: get_key_value() = 0 { type=4, total=4, data={60,00,00,00} }
7934.958:0050:0054:trace:imports:import_dll --- DelayLoadFailureHook kernel32.dll.185 = 7BEB36B0
7934.958:0050:0054:trace:imports:import_dll --- DeleteCriticalSection kernel32.dll.187 = 7BF35910
7934.958:0050:0054:trace:imports:import_dll --- EnterCriticalSection kernel32.dll.214 = 7BF35DD0
7934.958:0048:004c:trace:reg:NtQueryValueKey (0x30,L"Codepages",2,0x21fb54,92)
7934.958:0050:0054:trace:imports:import_dll --- EnumResourceNamesW kernel32.dll.235 = 7BEB3C10
7934.958:0050:0054:trace:imports:import_dll --- ExitProcess kernel32.dll.256 = 7BEB3ED0
004c: get_key_value( hkey=0030, name=L"Codepages" )
7934.958:0050:0054:trace:imports:import_dll --- FindResourceW kernel32.dll.324 = 7BEB4510
7934.958:0050:0054:trace:imports:import_dll --- FlushFileBuffers kernel32.dll.333 = 7BEB4630
004c: get_key_value() = 0 { type=1, total=18, data={31,00,32,00,35,00,30,00,2c,00,38,00,35,00,32,00,00,00} }
7934.958:0050:0054:trace:imports:import_dll --- FormatMessageW kernel32.dll.340 = 7BEB46F0
7934.958:0050:0054:trace:imports:import_dll --- GetComputerNameA kernel32.dll.379 = 7BEB4B70
7934.958:0050:0054:trace:imports:import_dll --- GetEnvironmentVariableW kernel32.dll.467 = 7BEB54F0
7934.958:0050:0054:trace:imports:import_dll --- GetModuleFileNameW kernel32.dll.520 = 7BEB5B90
7934.958:0050:0054:trace:imports:import_dll --- GetModuleHandleW kernel32.dll.524 = 7BEB5C10
7934.958:0050:0054:trace:imports:import_dll --- GetNamedPipeClientProcessId kernel32.dll.527 = 7BEB5C70
7934.958:0050:0054:trace:imports:import_dll --- GetProcAddress kernel32.dll.571 = 7BEB61B0
7934.958:0050:0054:trace:imports:import_dll --- GetSystemTimeAsFileTime kernel32.dll.628 = 7BEB68D0
7934.958:0050:0054:trace:imports:import_dll --- GetThreadId kernel32.dll.649 = 7BEB6B70
7934.958:0050:0054:trace:imports:import_dll --- GetTickCount kernel32.dll.658 = 7BEB6C90
7934.958:0050:0054:trace:imports:import_dll --- GetTickCount64 kernel32.dll.659 = 7BEB6CB0
7934.958:0050:0054:trace:imports:import_dll --- HeapAlloc kernel32.dll.715 = 7BF34E6C
7934.958:0050:0054:trace:imports:import_dll --- HeapFree kernel32.dll.721 = 7BEB7430
7934.958:0050:0054:trace:imports:import_dll --- HeapReAlloc kernel32.dll.725 = 7BF38034
7934.958:0050:0054:trace:imports:import_dll --- InitializeCriticalSectionEx kernel32.dll.747 = 7BEB7670
7934.958:0050:0054:trace:imports:import_dll --- IsBadStringPtrA kernel32.dll.769 = 7BECC450
7934.958:0050:0054:trace:imports:import_dll --- IsBadStringPtrW kernel32.dll.770 = 7BEB7830
7934.958:0050:0054:trace:imports:import_dll --- LeaveCriticalSection kernel32.dll.833 = 7BF37654
7934.958:0050:0054:trace:imports:import_dll --- LoadLibraryW kernel32.dll.839 = 7BEB8030
7934.958:0050:0054:trace:imports:import_dll --- LoadResource kernel32.dll.842 = 7BEB8090
7934.958:0050:0054:trace:imports:import_dll --- MultiByteToWideChar kernel32.dll.887 = 7BEB84F0
7934.958:0050:0054:trace:imports:import_dll --- PostQueuedCompletionStatus kernel32.dll.920 = 7BEB88F0
7934.958:0050:0054:trace:imports:import_dll --- QueueUserAPC kernel32.dll.958 = 7BEB8D50
7934.958:0050:0054:trace:imports:import_dll --- QueueUserWorkItem kernel32.dll.960 = 7BEB8D90
7934.958:0050:0054:trace:imports:import_dll --- RaiseException kernel32.dll.961 = 7BEB8DB0
7934.958:0050:0054:trace:imports:import_dll --- ReleaseMutex kernel32.dll.1033 = 7BEB9690
7934.958:0050:0054:trace:imports:import_dll --- ResetEvent kernel32.dll.1051 = 7BEB9830
7934.958:0050:0054:trace:imports:import_dll --- ResolveDelayLoadedAPI kernel32.dll.1054 = 7BF3260C
7934.958:0050:0054:trace:imports:import_dll --- RtlUnwind kernel32.dll.1064 = 7BF3E168
7934.958:0050:0054:trace:imports:import_dll --- SetEvent kernel32.dll.1150 = 7BEBA0D0
7934.958:0050:0054:trace:imports:import_dll --- SetNamedPipeHandleState kernel32.dll.1175 = 7BEBA3D0
7934.958:0050:0054:trace:imports:import_dll --- SetThreadDescription kernel32.dll.1200 = 7BEBA6F0
7934.958:0050:0054:trace:imports:import_dll --- SizeofResource kernel32.dll.1236 = 7BEBAAB0
7934.958:0050:0054:trace:imports:import_dll --- Sleep kernel32.dll.1237 = 7BEBAAD0
7934.958:0050:0054:trace:imports:import_dll --- WaitForMultipleObjects kernel32.dll.1312 = 7BEBB2D0
7934.958:0050:0054:trace:imports:import_dll --- WaitForMultipleObjectsEx kernel32.dll.1313 = 7BEBB2F0
7934.958:0050:0054:trace:imports:import_dll --- WaitForSingleObject kernel32.dll.1314 = 7BEBB310
7934.958:0050:0054:trace:imports:import_dll --- WaitNamedPipeA kernel32.dll.1320 = 7BEBB350
7934.958:0050:0054:trace:imports:import_dll --- WideCharToMultiByte kernel32.dll.1334 = 7BEBB4D0
7934.958:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000008,0062f518)
7934.958:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b943000 00001000 00000008
7934.958:0050:0054:trace:virtual:get_vprot_range_size base 0x7b943000, size 0x1000, mask 0x20.
7934.958:0050:0054:trace:virtual:dump_view View: 0x7b8c0000 - 0x7b94afff c-rWx (image)
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c0000 - 0x7b8c0fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c1000 - 0x7b910fff c-r-x
7934.958:0050:0054:trace:virtual:dump_view       0x7b911000 - 0x7b911fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b912000 - 0x7b93cfff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b93d000 - 0x7b93dfff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b93e000 - 0x7b942fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b943000 - 0x7b944fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b945000 - 0x7b94afff c-r--
7934.958:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.958:0050:0054:trace:module:load_dll looking for L"ntdll.dll" in (null)
7934.958:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F370
7934.958:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\ntdll.dll" for L"ntdll.dll" at 7BF30000, count=13
7934.958:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000004,0062f518)
7934.958:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b94331c 0000001c 00000004
7934.958:0050:0054:trace:virtual:get_vprot_range_size base 0x7b943000, size 0x1000, mask 0x20.
7934.958:0050:0054:trace:virtual:dump_view View: 0x7b8c0000 - 0x7b94afff c-rWx (image)
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c0000 - 0x7b8c0fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c1000 - 0x7b910fff c-r-x
7934.958:0050:0054:trace:virtual:dump_view       0x7b911000 - 0x7b911fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b912000 - 0x7b93cfff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b93d000 - 0x7b93dfff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b93e000 - 0x7b942fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b943000 - 0x7b944fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b945000 - 0x7b94afff c-r--
7934.958:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.958:0050:0054:trace:imports:import_dll --- NtCancelIoFileEx ntdll.dll.130 = 7BF32AE8
7934.958:0050:0054:trace:imports:import_dll --- NtFsControlFile ntdll.dll.193 = 7BF332C8
7934.958:0050:0054:trace:imports:import_dll --- NtReadFile ntdll.dll.287 = 7BF33E68
7934.958:0050:0054:trace:imports:import_dll --- NtWriteFile ntdll.dll.370 = 7BF348C8
7934.958:0050:0054:trace:imports:import_dll --- RtlCreateUnicodeStringFromAsciiz ntdll.dll.481 = 7BF3568C
7934.958:0050:0054:trace:imports:import_dll --- RtlFreeUnicodeString ntdll.dll.601 = 7BF36590
7934.958:0050:0054:trace:imports:import_dll --- _vsnprintf ntdll.dll.1353 = 7BF6E7F0
7934.958:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000008,0062f518)
7934.958:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b943000 00001000 00000008
7934.958:0050:0054:trace:virtual:get_vprot_range_size base 0x7b943000, size 0x1000, mask 0x20.
7934.958:0050:0054:trace:virtual:dump_view View: 0x7b8c0000 - 0x7b94afff c-rWx (image)
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c0000 - 0x7b8c0fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c1000 - 0x7b910fff c-r-x
7934.958:0050:0054:trace:virtual:dump_view       0x7b911000 - 0x7b911fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b912000 - 0x7b93cfff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b93d000 - 0x7b93dfff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b93e000 - 0x7b942fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b943000 - 0x7b944fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b945000 - 0x7b94afff c-r--
7934.958:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.958:0050:0054:trace:module:load_dll looking for L"ucrtbase.dll" in (null)
7934.958:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ucrtbase.dll" 0062F370
7934.958:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\ucrtbase.dll" for L"ucrtbase.dll" at 7B9A0000, count=5
7934.958:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000004,0062f518)
7934.958:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b94333c 0000006c 00000004
7934.958:0050:0054:trace:virtual:get_vprot_range_size base 0x7b943000, size 0x1000, mask 0x20.
7934.958:0050:0054:trace:virtual:dump_view View: 0x7b8c0000 - 0x7b94afff c-rWx (image)
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c0000 - 0x7b8c0fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c1000 - 0x7b910fff c-r-x
7934.958:0050:0054:trace:virtual:dump_view       0x7b911000 - 0x7b911fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b912000 - 0x7b93cfff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b93d000 - 0x7b93dfff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b93e000 - 0x7b942fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b943000 - 0x7b944fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b945000 - 0x7b94afff c-r--
7934.958:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.958:0050:0054:trace:imports:import_dll --- __acrt_iob_func ucrtbase.dll.73 = 7B9A3A2C
7934.958:0050:0054:trace:imports:import_dll --- __stdio_common_vsprintf ucrtbase.dll.157 = 7B9BEC50
7934.958:0050:0054:trace:imports:import_dll --- __stdio_common_vswprintf ucrtbase.dll.161 = 7B9A424C
7934.958:0050:0054:trace:imports:import_dll --- _assert ucrtbase.dll.190 = 7B9A45AC
7934.958:0050:0054:trace:imports:import_dll --- _strdup ucrtbase.dll.1893 = 7B9B134C
7934.958:0050:0054:trace:imports:import_dll --- _wcsdup ucrtbase.dll.1983 = 7B9B1E8C
7934.958:0050:0054:trace:imports:import_dll --- _wcsnicmp ucrtbase.dll.1997 = 7B9B204C
7934.958:0050:0054:trace:imports:import_dll --- calloc ucrtbase.dll.2154 = 7B9B328C
7934.958:0050:0054:trace:imports:import_dll --- free ucrtbase.dll.2283 = 7B9B428C
7934.958:0050:0054:trace:imports:import_dll --- fwrite ucrtbase.dll.2290 = 7B9B436C
7934.958:0050:0054:trace:imports:import_dll --- getenv ucrtbase.dll.2293 = 7B9B43CC
7934.958:0050:0054:trace:imports:import_dll --- malloc ucrtbase.dll.2366 = 7B9B4CAC
7934.958:0050:0054:trace:imports:import_dll --- memcmp ucrtbase.dll.2378 = 7B9B4E2C
7934.958:0050:0054:trace:imports:import_dll --- memcpy ucrtbase.dll.2379 = 7B9B4E4C
7934.958:0050:0054:trace:imports:import_dll --- memmove ucrtbase.dll.2381 = 7B9B4E8C
7934.958:0050:0054:trace:imports:import_dll --- rand ucrtbase.dll.2412 = 7B9B526C
7934.958:0050:0054:trace:imports:import_dll --- realloc ucrtbase.dll.2414 = 7B9B52AC
7934.958:0050:0054:trace:imports:import_dll --- strchr ucrtbase.dll.2448 = 7B9B56EC
7934.958:0050:0054:trace:imports:import_dll --- strcmp ucrtbase.dll.2449 = 7B9B570C
7934.958:0050:0054:trace:imports:import_dll --- strcpy ucrtbase.dll.2451 = 7B9B574C
7934.958:0050:0054:trace:imports:import_dll --- strcspn ucrtbase.dll.2453 = 7B9B578C
7934.958:0050:0054:trace:imports:import_dll --- strlen ucrtbase.dll.2457 = 7B9B580C
7934.958:0050:0054:trace:imports:import_dll --- strncmp ucrtbase.dll.2460 = 7B9B586C
7934.958:0050:0054:trace:imports:import_dll --- wcschr ucrtbase.dll.2506 = 7B9B5E2C
7934.958:0050:0054:trace:imports:import_dll --- wcscmp ucrtbase.dll.2507 = 7B9B5E4C
7934.958:0050:0054:trace:imports:import_dll --- wcsncmp ucrtbase.dll.2516 = 7B9B5F6C
7934.958:0050:0054:trace:imports:import_dll --- wcstol ucrtbase.dll.2531 = 7B9B614C
7934.958:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f510,0062f514,00000008,0062f518)
7934.958:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b943000 00001000 00000008
7934.958:0050:0054:trace:virtual:get_vprot_range_size base 0x7b943000, size 0x1000, mask 0x20.
7934.958:0050:0054:trace:virtual:dump_view View: 0x7b8c0000 - 0x7b94afff c-rWx (image)
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c0000 - 0x7b8c0fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c1000 - 0x7b910fff c-r-x
7934.958:0050:0054:trace:virtual:dump_view       0x7b911000 - 0x7b911fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b912000 - 0x7b93cfff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b93d000 - 0x7b93dfff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b93e000 - 0x7b942fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b943000 - 0x7b944fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b945000 - 0x7b94afff c-r--
7934.958:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.958:0048:004c:trace:font:init_freetype FreeType version is 2.13.3
7934.958:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 002733D0, status 0.
7934.958:0050:0054:trace:module:build_module loaded L"\\??\\C:\\windows\\system32\\rpcrt4.dll" 0027C728 7B8C0000
7934.958:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x10b8, return 00280118, status 0.
7934.958:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f768,0062f76c,00000004,0062f764)
7934.958:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b93e028 00000844 00000004
7934.958:0050:0054:trace:virtual:get_vprot_range_size base 0x7b93e000, size 0x1000, mask 0x20.
7934.958:0050:0054:trace:virtual:dump_view View: 0x7b8c0000 - 0x7b94afff c-rWx (image)
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c0000 - 0x7b8c0fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c1000 - 0x7b910fff c-r-x
7934.958:0050:0054:trace:virtual:dump_view       0x7b911000 - 0x7b911fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b912000 - 0x7b93cfff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b93d000 - 0x7b93efff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b93f000 - 0x7b942fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b943000 - 0x7b944fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b945000 - 0x7b94afff c-r--
7934.958:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.958:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f768,0062f76c,00000002,0062f764)
7934.958:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b93e000 00001000 00000002
7934.958:0050:0054:trace:virtual:get_vprot_range_size base 0x7b93e000, size 0x1000, mask 0x20.
7934.958:0050:0054:trace:virtual:dump_view View: 0x7b8c0000 - 0x7b94afff c-rWx (image)
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c0000 - 0x7b8c0fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b8c1000 - 0x7b910fff c-r-x
7934.958:0050:0054:trace:virtual:dump_view       0x7b911000 - 0x7b911fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b912000 - 0x7b93cfff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b93d000 - 0x7b93dfff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b93e000 - 0x7b942fff c-r--
7934.958:0050:0054:trace:virtual:dump_view       0x7b943000 - 0x7b944fff c-rW-
7934.958:0050:0054:trace:virtual:dump_view       0x7b945000 - 0x7b94afff c-r--
7934.958:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.958:0050:0054:trace:loaddll:build_module Loaded L"C:\\windows\\system32\\rpcrt4.dll" at 7B8C0000: builtin
7934.958:0050:0054:trace:module:load_dll Loaded module L"\\??\\C:\\windows\\system32\\rpcrt4.dll" at 7B8C0000
7934.958:0050:0054:SysCall  NtClose(0000001c)
0054: close_handle( handle=001c )
0054: close_handle() = 0
7934.966:0050:0054:SysRet   NtClose() retval=00000000
7934.966:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261C58, return 1, status 0.
7934.966:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000004,0062f994)
7934.966:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e4a8 00000004 00000004
7934.966:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.966:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.966:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.966:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.966:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.966:0050:0054:trace:imports:import_dll --- UuidCreate rpcrt4.dll.496 = 7B8C684C
7934.966:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000008,0062f994)
7934.966:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e000 00001000 00000008
7934.966:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.966:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.966:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.966:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.966:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.966:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273400, status 0.
7934.966:0050:0054:trace:module:load_dll looking for L"ucrtbase.dll" in (null)
7934.966:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ucrtbase.dll" 0062F7EC
7934.966:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\ucrtbase.dll" for L"ucrtbase.dll" at 7B9A0000, count=6
7934.966:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000004,0062f994)
7934.966:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e4b0 00000084 00000004
7934.966:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.966:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.966:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.966:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.966:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.966:0050:0054:trace:imports:import_dll --- __acrt_iob_func ucrtbase.dll.73 = 7B9A3A2C
7934.966:0050:0054:trace:imports:import_dll --- __p___argc ucrtbase.dll.121 = 7B9A3D6C
7934.966:0050:0054:trace:imports:import_dll --- __p___wargv ucrtbase.dll.123 = 7B9A3DAC
7934.966:0050:0054:trace:imports:import_dll --- __stdio_common_vsprintf ucrtbase.dll.157 = 7B9BEC50
7934.966:0050:0054:trace:imports:import_dll --- __stdio_common_vswprintf ucrtbase.dll.161 = 7B9A424C
7934.966:0050:0054:trace:imports:import_dll --- _assert ucrtbase.dll.190 = 7B9A45AC
7934.966:0050:0054:trace:imports:import_dll --- _configure_wide_argv ucrtbase.dll.231 = 7B9A4AAC
7934.966:0050:0054:trace:imports:import_dll --- _get_initial_wide_environment ucrtbase.dll.364 = 7B9A5ACC
7934.966:0050:0054:trace:imports:import_dll --- _initialize_wide_environment ucrtbase.dll.418 = 7B9A616C
7934.966:0050:0054:trace:imports:import_dll --- _set_app_type ucrtbase.dll.1851 = 7B9B0ECC
7934.966:0050:0054:trace:imports:import_dll --- _strdup ucrtbase.dll.1893 = 7B9B134C
7934.966:0050:0054:trace:imports:import_dll --- _wcsicmp ucrtbase.dll.1987 = 7B9B1F0C
7934.966:0050:0054:trace:imports:import_dll --- _wcsnicmp ucrtbase.dll.1997 = 7B9B204C
7934.966:0050:0054:trace:imports:import_dll --- calloc ucrtbase.dll.2154 = 7B9B328C
7934.966:0050:0054:trace:imports:import_dll --- exit ucrtbase.dll.2234 = 7B9B3C6C
7934.966:0050:0054:trace:imports:import_dll --- free ucrtbase.dll.2283 = 7B9B428C
7934.966:0050:0054:trace:imports:import_dll --- fwrite ucrtbase.dll.2290 = 7B9B436C
7934.966:0050:0054:trace:imports:import_dll --- getenv ucrtbase.dll.2293 = 7B9B43CC
7934.966:0050:0054:trace:imports:import_dll --- iswspace ucrtbase.dll.2329 = 7B9B482C
7934.966:0050:0054:trace:imports:import_dll --- malloc ucrtbase.dll.2366 = 7B9B4CAC
7934.966:0050:0054:trace:imports:import_dll --- memcmp ucrtbase.dll.2378 = 7B9B4E2C
7934.966:0050:0054:trace:imports:import_dll --- memcpy ucrtbase.dll.2379 = 7B9B4E4C
7934.966:0050:0054:trace:imports:import_dll --- memmove ucrtbase.dll.2381 = 7B9B4E8C
7934.966:0050:0054:trace:imports:import_dll --- realloc ucrtbase.dll.2414 = 7B9B52AC
7934.966:0050:0054:trace:imports:import_dll --- strchr ucrtbase.dll.2448 = 7B9B56EC
7934.966:0050:0054:trace:imports:import_dll --- strcmp ucrtbase.dll.2449 = 7B9B570C
7934.966:0050:0054:trace:imports:import_dll --- strcspn ucrtbase.dll.2453 = 7B9B578C
7934.966:0050:0054:trace:imports:import_dll --- strlen ucrtbase.dll.2457 = 7B9B580C
7934.966:0050:0054:trace:imports:import_dll --- wcschr ucrtbase.dll.2506 = 7B9B5E2C
7934.966:0050:0054:trace:imports:import_dll --- wcscmp ucrtbase.dll.2507 = 7B9B5E4C
7934.966:0050:0054:trace:imports:import_dll --- wcscpy ucrtbase.dll.2509 = 7B9B5E8C
7934.966:0050:0054:trace:imports:import_dll --- wcslen ucrtbase.dll.2513 = 7B9B5F0C
7934.966:0050:0054:trace:imports:import_dll --- wcstoul ucrtbase.dll.2536 = 7B9B61EC
7934.966:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000008,0062f994)
7934.966:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e000 00001000 00000008
7934.966:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.966:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.966:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.966:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.966:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.966:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273430, status 0.
7934.966:0050:0054:trace:module:load_dll looking for L"user32.dll" in (null)
7934.966:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"user32.dll" 0062F7EC
7934.966:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\user32.dll" for L"user32.dll" at 7B610000, count=2
7934.966:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000004,0062f994)
7934.966:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e538 00000148 00000004
7934.966:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.966:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.966:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.966:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.966:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.966:0050:0054:trace:imports:import_dll --- AdjustWindowRect user32.dll.2 = 7B6129AC
7934.966:0050:0054:trace:imports:import_dll --- AppendMenuW user32.dll.10 = 7B612AAC
7934.966:0050:0054:trace:imports:import_dll --- BeginPaint user32.dll.16 = 7B612B4C
7934.966:0050:0054:trace:imports:import_dll --- ChangeDisplaySettingsExW user32.dll.37 = 7B612DEC
7934.966:0050:0054:trace:imports:import_dll --- ClientToScreen user32.dll.72 = 7B6132CC
7934.966:0050:0054:trace:imports:import_dll --- ClipCursor user32.dll.73 = 7B6132EC
7934.966:0050:0054:trace:imports:import_dll --- CopyIcon user32.dll.82 = 7B61340C
7934.966:0050:0054:trace:imports:import_dll --- CreateDesktopW user32.dll.91 = 7B61352C
7934.966:0050:0054:trace:imports:import_dll --- CreateIcon user32.dll.97 = 7B6135EC
7934.966:0050:0054:trace:imports:import_dll --- CreatePopupMenu user32.dll.104 = 7B6136CC
7934.966:0050:0054:trace:imports:import_dll --- CreateWindowExW user32.dll.107 = 7B613728
7934.966:0050:0054:trace:imports:import_dll --- DefWindowProcW user32.dll.151 = 7BF34988
7934.966:0050:0054:trace:imports:import_dll --- DestroyIcon user32.dll.159 = 7B613D08
7934.966:0050:0054:trace:imports:import_dll --- DestroyMenu user32.dll.160 = 7B613D28
7934.966:0050:0054:trace:imports:import_dll --- DestroyWindow user32.dll.161 = 7B613D48
7934.966:0050:0054:trace:imports:import_dll --- DispatchMessageW user32.dll.169 = 7B613E48
7934.966:0050:0054:trace:imports:import_dll --- DrawCaptionTempW user32.dll.185 = 7B614048
7934.966:0050:0054:trace:imports:import_dll --- DrawFrameControl user32.dll.189 = 7B6140C8
7934.966:0050:0054:trace:imports:import_dll --- DrawIconEx user32.dll.191 = 7B614108
7934.966:0050:0054:trace:imports:import_dll --- DrawTextW user32.dll.199 = 7B614208
7934.966:0050:0054:trace:imports:import_dll --- EndPaint user32.dll.212 = 7B614368
7934.966:0050:0054:trace:imports:import_dll --- EnumDisplayDevicesW user32.dll.222 = 7B6144A8
7934.966:0050:0054:trace:imports:import_dll --- EnumDisplaySettingsExW user32.dll.226 = 7B614528
7934.966:0050:0054:trace:imports:import_dll --- ExitWindowsEx user32.dll.239 = 7B6146C8
7934.966:0050:0054:trace:imports:import_dll --- GetAncestor user32.dll.253 = 7B614888
7934.966:0050:0054:trace:imports:import_dll --- GetClientRect user32.dll.271 = 7B614AC8
7934.966:0050:0054:trace:imports:import_dll --- GetDC user32.dll.286 = 7B614C88
7934.966:0050:0054:trace:imports:import_dll --- GetDesktopWindow user32.dll.288 = 7B614CC8
7934.966:0050:0054:trace:imports:import_dll --- GetForegroundWindow user32.dll.304 = 7B614EC8
7934.966:0050:0054:trace:imports:import_dll --- GetMenuInfo user32.dll.336 = 7B6152C8
7934.966:0050:0054:trace:imports:import_dll --- GetMenuItemCount user32.dll.337 = 7B6152E8
7934.966:0050:0054:trace:imports:import_dll --- GetMenuItemInfoW user32.dll.340 = 7B615348
7934.966:0050:0054:trace:imports:import_dll --- GetMessageW user32.dll.349 = 7B615468
7934.966:0050:0054:trace:imports:import_dll --- GetProcessWindowStation user32.dll.370 = 7B6156E8
7934.966:0050:0054:trace:imports:import_dll --- GetSystemMetrics user32.dll.393 = 7B6159A8
7934.966:0050:0054:trace:imports:import_dll --- GetThreadDesktop user32.dll.398 = 7B615A48
7934.966:0050:0054:trace:imports:import_dll --- GetUserObjectInformationW user32.dll.408 = 7B615B88
7934.966:0050:0054:trace:imports:import_dll --- GetWindow user32.dll.410 = 7B615BC8
7934.966:0050:0054:trace:imports:import_dll --- GetWindowLongW user32.dll.418 = 7B615CC8
7934.966:0050:0054:trace:imports:import_dll --- GetWindowRect user32.dll.423 = 7B615D68
7934.966:0050:0054:trace:imports:import_dll --- GetWindowThreadProcessId user32.dll.430 = 7B615E48
7934.966:0050:0054:trace:imports:import_dll --- InsertMenuItemW user32.dll.443 = 7B615FC8
7934.966:0050:0054:trace:imports:import_dll --- IntersectRect user32.dll.448 = 7B616048
7934.966:0050:0054:trace:imports:import_dll --- InvalidateRect user32.dll.449 = 7B616068
7934.966:0050:0054:trace:imports:import_dll --- IsIconic user32.dll.468 = 7B6162C8
7934.966:0050:0054:trace:imports:import_dll --- IsWindowEnabled user32.dll.480 = 7B616408
7934.966:0050:0054:trace:imports:import_dll --- IsWindowVisible user32.dll.483 = 7B616468
7934.966:0050:0054:trace:imports:import_dll --- KillTimer user32.dll.486 = 7B6164C8
7934.966:0050:0054:trace:imports:import_dll --- LoadCursorA user32.dll.491 = 7B616568
7934.966:0050:0054:trace:imports:import_dll --- LoadCursorW user32.dll.494 = 7B6165C8
7934.966:0050:0054:trace:imports:import_dll --- LoadIconW user32.dll.496 = 7B616608
7934.966:0050:0054:trace:imports:import_dll --- LoadStringW user32.dll.509 = 7B616808
7934.966:0050:0054:trace:imports:import_dll --- MessageBoxW user32.dll.536 = 7B616B88
7934.966:0050:0054:trace:imports:import_dll --- MsgWaitForMultipleObjects user32.dll.543 = 7B616C68
7934.966:0050:0054:trace:imports:import_dll --- PaintDesktop user32.dll.561 = 7B616EA8
7934.966:0050:0054:trace:imports:import_dll --- PeekMessageW user32.dll.563 = 7B616EE8
7934.966:0050:0054:trace:imports:import_dll --- PostMessageW user32.dll.568 = 7B616F88
7934.966:0050:0054:trace:imports:import_dll --- PostQuitMessage user32.dll.569 = 7B616FA8
7934.966:0050:0054:trace:imports:import_dll --- RegisterClassExW user32.dll.588 = 7B6171E8
7934.966:0050:0054:trace:imports:import_dll --- RegisterClassW user32.dll.589 = 7B617208
7934.966:0050:0054:trace:imports:import_dll --- ReleaseDC user32.dll.615 = 7B6174C8
7934.966:0050:0054:trace:imports:import_dll --- SendMessageW user32.dll.638 = 7B6177A8
7934.966:0050:0054:trace:imports:import_dll --- SendNotifyMessageW user32.dll.640 = 7B6177E8
7934.966:0050:0054:trace:imports:import_dll --- SetCursor user32.dll.655 = 7B617968
7934.966:0050:0054:trace:imports:import_dll --- SetForegroundWindow user32.dll.667 = 7B617AE8
7934.966:0050:0054:trace:imports:import_dll --- SetMenuInfo user32.dll.677 = 7B617C28
7934.966:0050:0054:trace:imports:import_dll --- SetMenuItemInfoW user32.dll.680 = 7B617C88
7934.966:0050:0054:trace:imports:import_dll --- SetParent user32.dll.683 = 7B617CE8
7934.966:0050:0054:trace:imports:import_dll --- SetShellWindow user32.dll.699 = 7B617EE8
7934.966:0050:0054:trace:imports:import_dll --- SetThreadDesktop user32.dll.707 = 7B617FE8
7934.966:0050:0054:trace:imports:import_dll --- SetTimer user32.dll.710 = 7B618048
7934.966:0050:0054:trace:imports:import_dll --- SetWindowLongW user32.dll.720 = 7B618168
7934.966:0050:0054:trace:imports:import_dll --- SetWindowPos user32.dll.723 = 7B6181A8
7934.966:0050:0054:trace:imports:import_dll --- SetWindowTextW user32.dll.727 = 7B618228
7934.966:0050:0054:trace:imports:import_dll --- ShowWindow user32.dll.744 = 7B618388
7934.966:0050:0054:trace:imports:import_dll --- SubtractRect user32.dll.748 = 7B618408
7934.966:0050:0054:trace:imports:import_dll --- SystemParametersInfoW user32.dll.756 = 7B6184C8
7934.966:0050:0054:trace:imports:import_dll --- TrackPopupMenuEx user32.dll.767 = 7B618628
7934.966:0050:0054:trace:imports:import_dll --- TranslateMessage user32.dll.772 = 7B6186C8
7934.966:0050:0054:trace:imports:import_dll --- UnregisterClassW user32.dll.782 = 7B6187E8
7934.966:0050:0054:trace:imports:import_dll --- UpdateLayeredWindow user32.dll.789 = 7B6188C8
7934.966:0050:0054:trace:imports:import_dll --- UpdateWindow user32.dll.792 = 7B618928
7934.966:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000008,0062f994)
7934.966:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e000 00001000 00000008
7934.966:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.966:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.966:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.966:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.966:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.966:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273460, status 0.
7934.966:0050:0054:trace:module:load_dll looking for L"win32u.dll" in (null)
7934.966:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"win32u.dll" 0062F7EC
7934.966:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\win32u.dll" for L"win32u.dll" at 7B520000, count=3
7934.966:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000004,0062f994)
7934.966:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e684 00000004 00000004
7934.966:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.966:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.966:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.966:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.966:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.966:0050:0054:trace:imports:import_dll --- NtUserMessageCall win32u.dll.1205 = 7B52A6AC
7934.966:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f98c,0062f990,00000008,0062f994)
7934.966:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x41e000 00001000 00000008
7934.966:0050:0054:trace:virtual:get_vprot_range_size base 0x41e000, size 0x1000, mask 0x20.
7934.966:0050:0054:trace:virtual:dump_view View: 0x400000 - 0x425fff c-rWx (image)
7934.966:0050:0054:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x401000 - 0x411fff c-r-x
7934.966:0050:0054:trace:virtual:dump_view       0x412000 - 0x412fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x413000 - 0x41cfff c-r--
7934.966:0050:0054:trace:virtual:dump_view       0x41d000 - 0x423fff c-rW-
7934.966:0050:0054:trace:virtual:dump_view       0x424000 - 0x425fff c-r--
7934.966:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7934.966:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273490, status 0.
7934.966:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x28, return 002811E8, status 0.
7934.966:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x80, return 00281228, status 0.
7934.966:0050:0054:trace:module:process_attach (L"ntdll.dll",0062FD24) - START
7934.966:0050:0054:Call PE DLL (proc=7BF40A40,module=7BF30000 L"ntdll.dll",reason=PROCESS_ATTACH,res=0062FD24)
7934.966:0050:0054:Ret  PE DLL (proc=7BF40A40,module=7BF30000 L"ntdll.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7934.966:0050:0054:trace:module:process_attach (L"ntdll.dll",0062FD24) - END
7934.966:0050:0054:trace:module:process_attach (L"kernel32.dll",0062FD24) - START
7934.966:0050:0054:trace:module:process_attach (L"kernelbase.dll",0062FD24) - START
7934.966:0050:0054:Call PE DLL (proc=7BC08010,module=7BBF0000 L"kernelbase.dll",reason=PROCESS_ATTACH,res=0062FD24)
7934.966:0050:0054:Call ntdll.LdrDisableThreadCalloutsForDll(7bbf0000) ret=7bc07df3
7934.966:0050:0054:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7934.966:0050:0054:Call ntdll.NtQueryInformationProcess(ffffffff,0000001a,0062fa74,00000004,00000000) ret=7bc29054
7934.966:0050:0054:SysCall  NtQueryInformationProcess(ffffffff,0000001a,0062fa74,00000004,00000000)
7934.966:0050:0054:trace:process:NtQueryInformationProcess (0xffffffff,0x0000001a,0x62fa74,0x00000004,(nil))
7934.966:0050:0054:SysRet   NtQueryInformationProcess() retval=00000000
7934.966:0050:0054:Ret  ntdll.NtQueryInformationProcess() retval=00000000 ret=7bc29054
7934.966:0050:0054:Call ntdll.NtAllocateVirtualMemory(ffffffff,0062fa78,00000000,0062fa74,00001000,00000004) ret=7bc70dc7
7934.966:0050:0054:SysCall  NtAllocateVirtualMemory(ffffffff,0062fa78,00000000,0062fa74,00001000,00000004)
7934.966:0050:0054:trace:virtual:NtAllocateVirtualMemory 0xffffffff (nil) 00080000 1000 00000004
7934.966:0050:0054:trace:virtual:map_view got mem in reserved area 0x6f0000-0x770000
7934.966:0050:0054:trace:virtual_ranges:free_ranges_insert_view 0x6f0000 - 0x770000, aligned 0x6f0000 - 0x770000.
7934.966:0050:0054:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7934.966:0050:0054:trace:virtual_ranges:dump_free_ranges 0x3a0000 - 0x400000.
7934.966:0050:0054:trace:virtual_ranges:dump_free_ranges 0x770000 - 0x7fde0000.
7934.966:0050:0054:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7934.966:0050:0054:trace:virtual:dump_view View: 0x6f0000 - 0x76ffff c-rw- (valloc)
7934.966:0050:0054:trace:virtual:dump_view       0x6f0000 - 0x76ffff c-rw-
7934.966:0050:0054:SysRet   NtAllocateVirtualMemory() retval=00000000
7934.966:0050:0054:Ret  ntdll.NtAllocateVirtualMemory() retval=00000000 ret=7bc70dc7
7934.966:0050:0054:Call ntdll.RtlGetLocaleFileMappingAddress(0062f78c,7bcb8aa8,0062f8b8) ret=7bc70ea9
7934.966:0050:0054:Ret  ntdll.RtlGetLocaleFileMappingAddress() retval=00000000 ret=7bc70ea9
7934.966:0050:0054:Call ntdll.NtGetNlsSectionPtr(00000009,00000000,00000000,0062f78c,0062f8b8) ret=7bc70f62
7934.966:0050:0054:SysCall  NtGetNlsSectionPtr(00000009,00000000,00000000,0062f78c,0062f8b8)
0054: open_mapping( access=00000004, attributes=00000000, rootdir=0000, name=L"\\NLS\\NlsSectionSORTDEFAULT" )
0054: open_mapping() = 0 { handle=0018 }
7934.979:0050:0054:trace:virtual:NtMapViewOfSection handle=0x18 process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x2
0054: get_mapping_info( handle=0018, access=00000004 )
0054: get_mapping_info() = 0 { size=003394f4, flags=00800000, shared_file=0000, name_len=0, total=0, image={}, name=L"", exp_name="" }
0054: get_handle_fd( handle=0018 )
0054: *fd* 0018 -> 44
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=00000004, options=00000020 }
7934.979:0050:0054:trace:virtual:map_view got mem in reserved area 0x770000-0xaaa000
7934.979:0050:0054:trace:virtual_ranges:free_ranges_insert_view 0x770000 - 0xaaa000, aligned 0x770000 - 0xab0000.
7934.979:0050:0054:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7934.979:0050:0054:trace:virtual_ranges:dump_free_ranges 0x3a0000 - 0x400000.
7934.979:0050:0054:trace:virtual_ranges:dump_free_ranges 0xab0000 - 0x7fde0000.
7934.979:0050:0054:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7934.979:0050:0054:trace:virtual:virtual_map_section handle=0x18 size=33a000 offset=0
0054: map_view( mapping=0018, access=00000004, base=00770000, size=0033a000, start=00000000 )
0054: map_view() = 0
7934.980:0050:0054:trace:virtual:dump_view View: 0x770000 - 0xaa9fff c-r-- (file)
7934.980:0050:0054:trace:virtual:dump_view       0x770000 - 0xaa9fff c-r--
0054: close_handle( handle=0018 )
0054: close_handle() = 0
7934.980:0050:0054:SysRet   NtGetNlsSectionPtr() retval=00000000
7934.980:0050:0054:Ret  ntdll.NtGetNlsSectionPtr() retval=00000000 ret=7bc70f62
7934.980:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000008,00001110) ret=7bc7105e
7934.980:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x1110, return 002812C0, status 0.
7934.980:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=002812c0 ret=7bc7105e
7934.980:0050:0054:Call ntdll.NtQueryDefaultLocale(00000001,7bcb8aa4) ret=7bc710ac
7934.980:0050:0054:SysCall  NtQueryDefaultLocale(00000001,7bcb8aa4)
7934.980:0050:0054:SysRet   NtQueryDefaultLocale() retval=00000000
7934.980:0050:0054:Ret  ntdll.NtQueryDefaultLocale() retval=00000000 ret=7bc710ac
7934.980:0050:0054:trace:process:GetEnvironmentVariableW (L"WINEUNIXCP" 0062F6E2 85)
7934.980:0050:0054:Call ntdll.RtlInitUnicodeString(0062f680,7bc84720 L"WINEUNIXCP") ret=7bc15c21
7934.980:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc84720 ret=7bc15c21
7934.980:0050:0054:Call ntdll.RtlQueryEnvironmentVariable_U(00000000,0062f680,0062f688) ret=7bc15c52
7934.980:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"WINEUNIXCP" 0062F688
7934.980:0050:0054:Ret  ntdll.RtlQueryEnvironmentVariable_U() retval=c0000100 ret=7bc15c52
7934.980:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000100) ret=7bc15c91
7934.980:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=000000cb ret=7bc15c91
7934.980:0050:0054:Call ntdll.NtGetNlsSectionPtr(0000000c,00000001,00000000,7bcb745c,0062f6d4) ret=7bc71143
7934.980:0050:0054:SysCall  NtGetNlsSectionPtr(0000000c,00000001,00000000,7bcb745c,0062f6d4)
0054: open_mapping( access=00000004, attributes=00000000, rootdir=0000, name=L"\\NLS\\NlsSectionNORM00000001" )
0054: open_mapping() = 0 { handle=0018 }
7934.982:0050:0054:trace:virtual:NtMapViewOfSection handle=0x18 process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x2
0054: get_mapping_info( handle=0018, access=00000004 )
0054: get_mapping_info() = 0 { size=0000eb22, flags=00800000, shared_file=0000, name_len=0, total=0, image={}, name=L"", exp_name="" }
0054: get_handle_fd( handle=0018 )
0054: *fd* 0018 -> 45
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=00000004, options=00000020 }
7934.982:0050:0054:trace:virtual:map_view got mem in reserved area 0x3a0000-0x3af000
7934.982:0050:0054:trace:virtual_ranges:free_ranges_insert_view 0x3a0000 - 0x3af000, aligned 0x3a0000 - 0x3b0000.
7934.982:0050:0054:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7934.982:0050:0054:trace:virtual_ranges:dump_free_ranges 0x3b0000 - 0x400000.
7934.982:0050:0054:trace:virtual_ranges:dump_free_ranges 0xab0000 - 0x7fde0000.
7934.982:0050:0054:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7934.982:0050:0054:trace:virtual:virtual_map_section handle=0x18 size=f000 offset=0
0054: map_view( mapping=0018, access=00000004, base=003a0000, size=0000f000, start=00000000 )
0054: map_view() = 0
7934.983:0050:0054:trace:virtual:dump_view View: 0x3a0000 - 0x3aefff c-r-- (file)
7934.983:0050:0054:trace:virtual:dump_view       0x3a0000 - 0x3aefff c-r--
0054: close_handle( handle=0018 )
0054: close_handle() = 0
7934.983:0050:0054:SysRet   NtGetNlsSectionPtr() retval=00000000
7934.983:0050:0054:Ret  ntdll.NtGetNlsSectionPtr() retval=00000000 ret=7bc71143
7934.983:0050:0054:Call ntdll.RtlInitCodePageTable(00360000,7bcb8b00) ret=7bc7118d
7934.983:0050:0054:Ret  ntdll.RtlInitCodePageTable() retval=0036001a ret=7bc7118d
7934.983:0050:0054:Call ntdll.RtlInitCodePageTable(00380000,7bcb8ac0) ret=7bc711a2
7934.983:0050:0054:Ret  ntdll.RtlInitCodePageTable() retval=0038001a ret=7bc711a2
7934.983:0050:0054:Call ntdll.RtlInitUnicodeString(0062f688,7bc89f60 L"\\Registry\\Machine") ret=7bc3d9fe
7934.983:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc89f60 ret=7bc3d9fe
7934.983:0050:0054:Call ntdll.NtCreateKey(0062f680,02000000,0062f63c,00000000,00000000,00000000,00000000) ret=7bc67940
7934.983:0050:0054:SysCall  NtCreateKey(0062f680,02000000,0062f63c,00000000,00000000,00000000,00000000)
7934.983:0050:0054:trace:reg:NtCreateKey ((nil),L"\\Registry\\Machine",<null>,0,2000000,0x62f680)
0054: create_key( access=02000000, options=00000000, objattr={rootdir=0000,attributes=000000c0,sd={},name=L"\\Registry\\Machine"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=0018 }
7934.984:0050:0054:trace:reg:NtCreateKey <- 0x18
7934.984:0050:0054:SysRet   NtCreateKey() retval=00000000
7934.984:0050:0054:Ret  ntdll.NtCreateKey() retval=00000000 ret=7bc67940
7934.984:0050:0054:trace:reg:create_special_root_hkey L"\\Registry\\Machine" -> 00000018
7934.984:0050:0054:Call ntdll.RtlInitUnicodeString(0062f680,7bc84738 L"System\\CurrentControlSet\\Control\\Nls") ret=7bc3d942
7934.984:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc84738 ret=7bc3d942
7934.984:0050:0054:Call ntdll.RtlInitUnicodeString(0062f688,00000000) ret=7bc3d953
7934.984:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00000008 ret=7bc3d953
7934.984:0050:0054:Call ntdll.NtCreateKey(7bcb8a9c,000f003f,0062f63c,00000000,0062f688,00000000,00000000) ret=7bc67940
7934.984:0050:0054:SysCall  NtCreateKey(7bcb8a9c,000f003f,0062f63c,00000000,0062f688,00000000,00000000)
7934.984:0050:0054:trace:reg:NtCreateKey (0x18,L"System\\CurrentControlSet\\Control\\Nls",(null),0,f003f,0x7bcb8a9c)
0054: create_key( access=000f003f, options=00000000, objattr={rootdir=0018,attributes=000000c0,sd={},name=L"System\\CurrentControlSet\\Control\\Nls"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=001c }
7934.985:0050:0054:trace:reg:NtCreateKey <- 0x1c
7934.985:0050:0054:SysRet   NtCreateKey() retval=00000000
7934.985:0050:0054:Ret  ntdll.NtCreateKey() retval=00000000 ret=7bc67940
7934.985:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc3d98f
7934.985:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc3d98f
7934.985:0050:0054:Call ntdll.RtlInitUnicodeString(0062f680,7bc84784 L"Software\\Microsoft\\Windows NT\\CurrentVersion\\Time Zones") ret=7bc3d942
7934.985:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc84784 ret=7bc3d942
7934.985:0050:0054:Call ntdll.RtlInitUnicodeString(0062f688,00000000) ret=7bc3d953
7934.985:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00000008 ret=7bc3d953
7934.985:0050:0054:Call ntdll.NtCreateKey(7bcb8a98,000f003f,0062f63c,00000000,0062f688,00000000,00000000) ret=7bc67940
7934.985:0050:0054:SysCall  NtCreateKey(7bcb8a98,000f003f,0062f63c,00000000,0062f688,00000000,00000000)
7934.985:0050:0054:trace:reg:NtCreateKey (0x18,L"Software\\Microsoft\\Windows NT\\CurrentVersion\\Time Zones",(null),0,f003f,0x7bcb8a98)
0054: create_key( access=000f003f, options=00000000, objattr={rootdir=0018,attributes=000000c0,sd={},name=L"Software\\Microsoft\\Windows NT\\CurrentVersion\\Time Zones"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=0020 }
7934.986:0050:0054:trace:reg:NtCreateKey <- 0x20
7934.986:0050:0054:SysRet   NtCreateKey() retval=00000000
7934.986:0050:0054:Ret  ntdll.NtCreateKey() retval=00000000 ret=7bc67940
7934.986:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc3d98f
7934.986:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc3d98f
7934.986:0050:0054:Call ntdll.RtlOpenCurrentUser(02000000,0062f680) ret=7bc3da8c
7934.986:0050:0054:trace:reg:RtlOpenCurrentUser (0x02000000, 0062F680)
7934.986:0050:0054:SysCall  NtQueryInformationToken(fffffffa,00000001,0062f580,00000050,0062f57c)
7934.986:0050:0054:trace:ntdll:NtQueryInformationToken (0xfffffffa,TokenUser,0x62f580,80,0x62f57c)
0054: get_token_sid( handle=fffffffa, which_sid=00000001 )
0054: get_token_sid() = 0 { sid_len=28, sid=S-1-5-21-0-0-0-1000 }
7934.987:0050:0054:SysRet   NtQueryInformationToken() retval=00000000
7934.987:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x46, return 00261DD8, status 0.
7934.987:0050:0054:SysCall  NtCreateKey(0062f680,02000000,0062f60c,00000000,00000000,00000000,00000000)
7934.987:0050:0054:trace:reg:NtCreateKey ((nil),L"\\Registry\\User\\S-1-5-21-0-0-0-1000",<null>,0,2000000,0x62f680)
0054: create_key( access=02000000, options=00000000, objattr={rootdir=0000,attributes=000000c0,sd={},name=L"\\Registry\\User\\S-1-5-21-0-0-0-1000"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=0024 }
7934.987:0050:0054:trace:reg:NtCreateKey <- 0x24
7934.987:0050:0054:SysRet   NtCreateKey() retval=00000000
7934.987:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261DD8, return 1, status 0.
7934.987:0050:0054:Ret  ntdll.RtlOpenCurrentUser() retval=00000000 ret=7bc3da8c
7934.987:0050:0054:trace:reg:create_special_root_hkey HKEY_CURRENT_USER -> 00000024
7934.987:0050:0054:Call ntdll.RtlInitUnicodeString(0062f680,7bc847f4 L"Control Panel\\International") ret=7bc3d942
7934.987:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc847f4 ret=7bc3d942
7934.987:0050:0054:Call ntdll.RtlInitUnicodeString(0062f688,00000000) ret=7bc3d953
7934.987:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00000008 ret=7bc3d953
7934.987:0050:0054:Call ntdll.NtCreateKey(7bcb8aa0,000f003f,0062f63c,00000000,0062f688,00000000,00000000) ret=7bc67940
7934.987:0050:0054:SysCall  NtCreateKey(7bcb8aa0,000f003f,0062f63c,00000000,0062f688,00000000,00000000)
7934.987:0050:0054:trace:reg:NtCreateKey (0x24,L"Control Panel\\International",(null),0,f003f,0x7bcb8aa0)
0054: create_key( access=000f003f, options=00000000, objattr={rootdir=0024,attributes=000000c0,sd={},name=L"Control Panel\\International"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=0028 }
7934.989:0050:0054:trace:reg:NtCreateKey <- 0x28
7934.989:0050:0054:SysRet   NtCreateKey() retval=00000000
7934.989:0050:0054:Ret  ntdll.NtCreateKey() retval=00000000 ret=7bc67940
7934.989:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc3d98f
7934.989:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc3d98f
7934.989:0050:0054:Call ntdll.RtlInitUnicodeString(0062f4f8,7bc83b76 L"Sorting\\Ids") ret=7bc43b9f
7934.989:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc83b76 ret=7bc43b9f
7934.989:0050:0054:Call ntdll.NtOpenKeyEx(0062f540,00020019,0062f3c0,00000000) ret=7bc73de1
7934.989:0050:0054:SysCall  NtOpenKeyEx(0062f540,00020019,0062f3c0,00000000)
7934.989:0050:0054:trace:reg:NtOpenKeyEx (0x1c,L"Sorting\\Ids",20019,0x62f540)
0054: open_key( parent=001c, access=00020019, attributes=00000040, name=L"Sorting\\Ids" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7934.989:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7934.989:0050:0054:SysRet   NtOpenKeyEx() retval=c0000034
7934.989:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7934.989:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7934.989:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7934.989:0050:0054:Call ntdll.RtlQueryDynamicTimeZoneInformation(0062f8b8) ret=7bc712a6
7934.989:0050:0054:SysCall  NtQuerySystemInformation(00000066,0062f8b8,000001b0,00000000)
7934.989:0050:0054:trace:ntdll:NtQuerySystemInformation (0x00000066,0x62f8b8,0x000001b0,(nil))
7934.989:0050:0054:trace:ntdll:get_timezone_info tz data will be valid through year 2026, bias -60
7934.989:0050:0054:trace:ntdll:get_timezone_info year_start: Thu Jan  1 00:00:00 2026
7934.989:0050:0054:trace:ntdll:get_timezone_info year_end: Thu Dec 31 23:59:59 2026
7934.989:0050:0054:trace:ntdll:find_dst_change starting date isdst 0, Thu Jan  1 00:00:00 2026
7934.989:0050:0054:trace:ntdll:find_dst_change starting date isdst 1, Sun Mar 29 03:00:00 2026
7934.989:0050:0054:trace:ntdll:get_timezone_info std: Sun Oct 25 02:00:00 2026
7934.989:0050:0054:trace:ntdll:get_timezone_info dlt: Sun Mar 29 03:00:00 2026
7934.989:0050:0054:trace:ntdll:get_timezone_info dlt gmtime: Sun Mar 29 02:00:00 2026
7934.989:0050:0054:trace:ntdll:get_timezone_info daylight (d/m/y): 29/03/2026 day of week 0 2:00:00.000 bias -60
7934.989:0050:0054:trace:ntdll:get_timezone_info std gmtime: Sun Oct 25 03:00:00 2026
7934.989:0050:0054:trace:ntdll:get_timezone_info standard (d/m/y): 25/10/2026 day of week 0 3:00:00.000 bias 0
7934.989:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Time Zones",20019,0x21f370)
0054: open_key( parent=0000, access=00020019, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Time Zones" )
0054: open_key() = 0 { hkey=002c }
7934.992:0050:0054:trace:reg:NtOpenKeyEx <- 0x2c
0054: enum_key( hkey=002c, index=0, info_class=0 )
0054: enum_key() = NO_MORE_ENTRIES { subkeys=0, max_subkey=0, max_class=0, values=0, max_value=0, max_data=0, modif=0, total=0, namelen=0, name=L"", class=L"" }
0054: close_handle( handle=002c )
0054: close_handle() = 0
7934.993:0050:0054:SysRet   NtQuerySystemInformation() retval=00000000
7934.993:0050:0054:Ret  ntdll.RtlQueryDynamicTimeZoneInformation() retval=00000000 ret=7bc712a6
7934.993:0050:0054:Call ntdll.RtlEnterCriticalSection(7bc7d160) ret=7bc1546d
7934.993:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc1546d
7934.993:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bc7d160) ret=7bc15496
7934.993:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc15496
7934.993:0050:0054:Call ntdll.RtlInitUnicodeString(0062f638,0062f964 L"") ret=7bc43b9f
7934.993:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=0062f964 ret=7bc43b9f
7934.993:0050:0054:Call ntdll.NtOpenKeyEx(0062f67c,000f003f,0062f500,00000000) ret=7bc73de1
7934.993:0050:0054:SysCall  NtOpenKeyEx(0062f67c,000f003f,0062f500,00000000)
7934.993:0050:0054:trace:reg:NtOpenKeyEx (0x20,L"",f003f,0x62f67c)
0054: open_key( parent=0020, access=000f003f, attributes=00000040, name=L"" )
0054: open_key() = 0 { hkey=002c }
7934.993:0050:0054:trace:reg:NtOpenKeyEx <- 0x2c
7934.993:0050:0054:SysRet   NtOpenKeyEx() retval=00000000
7934.993:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=00000000 ret=7bc73de1
7934.993:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc43bcc
7934.993:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc43bcc
7934.993:0050:0054:trace:reg:RegLoadMUIStringW (hKey = 0000002C, pwszValue = L"MUI_Std", pwszBuffer = 0062F8BC, cbBuffer = 64, pcbData = 00000000, dwFlags = 0, pwszBaseDir = L"C:\\windows\\system32")
7934.993:0050:0054:trace:reg:RegQueryValueExW (0000002C,L"MUI_Std",00000000,0062F634,00000000,0062F638=0)
7934.993:0050:0054:Call ntdll.RtlInitUnicodeString(0062f490,7bc8386e L"MUI_Std") ret=7bc4544b
7934.993:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc8386e ret=7bc4544b
7934.993:0050:0054:Call ntdll.NtQueryValueKey(0000002c,0062f490,00000002,0062f498,0000000c,0062f48c) ret=7bc45804
7934.993:0050:0054:SysCall  NtQueryValueKey(0000002c,0062f490,00000002,0062f498,0000000c,0062f48c)
7934.993:0050:0054:trace:reg:NtQueryValueKey (0x2c,L"MUI_Std",2,0x62f498,12)
0054: get_key_value( hkey=002c, name=L"MUI_Std" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7934.994:0050:0054:SysRet   NtQueryValueKey() retval=c0000034
7934.994:0050:0054:Ret  ntdll.NtQueryValueKey() retval=c0000034 ret=7bc45804
7934.994:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc454cc
7934.994:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc454cc
7934.994:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bc4251a
7934.994:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bc4251a
7934.994:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bc42537
7934.994:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bc42537
7934.994:0050:0054:trace:reg:RegLoadMUIStringW (hKey = 0000002C, pwszValue = L"MUI_Dlt", pwszBuffer = 0062F910, cbBuffer = 64, pcbData = 00000000, dwFlags = 0, pwszBaseDir = L"C:\\windows\\system32")
7934.994:0050:0054:trace:reg:RegQueryValueExW (0000002C,L"MUI_Dlt",00000000,0062F634,00000000,0062F638=0)
7934.994:0050:0054:Call ntdll.RtlInitUnicodeString(0062f490,7bc8387e L"MUI_Dlt") ret=7bc4544b
7934.994:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc8387e ret=7bc4544b
7934.994:0050:0054:Call ntdll.NtQueryValueKey(0000002c,0062f490,00000002,0062f498,0000000c,0062f48c) ret=7bc45804
7934.994:0050:0054:SysCall  NtQueryValueKey(0000002c,0062f490,00000002,0062f498,0000000c,0062f48c)
7934.994:0050:0054:trace:reg:NtQueryValueKey (0x2c,L"MUI_Dlt",2,0x62f498,12)
0054: get_key_value( hkey=002c, name=L"MUI_Dlt" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7934.995:0050:0054:SysRet   NtQueryValueKey() retval=c0000034
7934.995:0050:0054:Ret  ntdll.NtQueryValueKey() retval=c0000034 ret=7bc45804
7934.995:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc454cc
7934.995:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc454cc
7934.995:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bc4251a
7934.995:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bc4251a
7934.995:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bc42537
7934.995:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bc42537
7934.995:0050:0054:Call ntdll.NtClose(0000002c) ret=7bc3cde9
7934.995:0050:0054:SysCall  NtClose(0000002c)
0054: close_handle( handle=002c )
0054: close_handle() = 0
7934.996:0050:0054:SysRet   NtClose() retval=00000000
7934.996:0050:0054:Ret  ntdll.NtClose() retval=00000000 ret=7bc3cde9
7934.996:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc15555
7934.996:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc15555
7934.996:0050:0054:Call ntdll.RtlEnterCriticalSection(7bc7d160) ret=7bc15562
7934.996:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc15562
7934.996:0050:0054:Call ntdll.wcscpy(7bcb7284,0062f964 L"") ret=7bc15580
7934.996:0050:0054:Ret  ntdll.wcscpy() retval=7bcb7284 ret=7bc15580
7934.996:0050:0054:Call ntdll.wcscpy(7bcb7384,0062f8bc L"") ret=7bc15590
7934.996:0050:0054:Ret  ntdll.wcscpy() retval=7bcb7384 ret=7bc15590
7934.996:0050:0054:Call ntdll.wcscpy(7bcb73c4,0062f910 L"") ret=7bc155a0
7934.996:0050:0054:Ret  ntdll.wcscpy() retval=7bcb73c4 ret=7bc155a0
7934.996:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bc7d160) ret=7bc155a9
7934.996:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc155a9
7934.996:0050:0054:Call ntdll.NtQuerySystemTime(0062f680) ret=7bc155b6
7934.996:0050:0054:SysCall  NtQuerySystemTime(0062f680)
7934.996:0050:0054:SysRet   NtQuerySystemTime() retval=00000000
7934.996:0050:0054:Ret  ntdll.NtQuerySystemTime() retval=00000000 ret=7bc155b6
7934.996:0050:0054:Call ntdll.RtlTimeToTimeFields(0062f610,0062f620) ret=7bc700bf
7934.996:0050:0054:Ret  ntdll.RtlTimeToTimeFields() retval=000001ac ret=7bc700bf
7934.996:0050:0054:Call ntdll.RtlTimeToTimeFields(0062f618,0062f620) ret=7bc700ea
7934.996:0050:0054:Ret  ntdll.RtlTimeToTimeFields() retval=000001ac ret=7bc700ea
7934.996:0050:0054:Call ntdll.RtlTimeToTimeFields(0062f618,0062f620) ret=7bc70124
7934.996:0050:0054:Ret  ntdll.RtlTimeToTimeFields() retval=000001ac ret=7bc70124
7934.996:0050:0054:Call ntdll.RtlInitUnicodeString(0062f680,7bc8482c L"System\\CurrentControlSet\\Control\\TimeZoneInformation") ret=7bc3d942
7934.996:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc8482c ret=7bc3d942
7934.996:0050:0054:Call ntdll.RtlInitUnicodeString(0062f688,00000000) ret=7bc3d953
7934.996:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00000008 ret=7bc3d953
7934.996:0050:0054:Call ntdll.NtCreateKey(0062f6d8,000f003f,0062f63c,00000000,0062f688,00000000,00000000) ret=7bc67940
7934.996:0050:0054:SysCall  NtCreateKey(0062f6d8,000f003f,0062f63c,00000000,0062f688,00000000,00000000)
7934.996:0050:0054:trace:reg:NtCreateKey (0x18,L"System\\CurrentControlSet\\Control\\TimeZoneInformation",(null),0,f003f,0x62f6d8)
0054: create_key( access=000f003f, options=00000000, objattr={rootdir=0018,attributes=000000c0,sd={},name=L"System\\CurrentControlSet\\Control\\TimeZoneInformation"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=002c }
7934.997:0050:0054:trace:reg:NtCreateKey <- 0x2c
7934.997:0050:0054:SysRet   NtCreateKey() retval=00000000
7934.997:0050:0054:Ret  ntdll.NtCreateKey() retval=00000000 ret=7bc67940
7934.997:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc3d98f
7934.997:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc3d98f
7934.997:0050:0054:Call ntdll.RtlInitUnicodeString(0062f688,7bc84896 L"StandardName") ret=7bc46e19
7934.997:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc84896 ret=7bc46e19
7934.997:0050:0054:Call ntdll.NtSetValueKey(0000002c,0062f688,00000000,00000001,0062f8bc,00000002) ret=7bc46e42
7934.997:0050:0054:SysCall  NtSetValueKey(0000002c,0062f688,00000000,00000001,0062f8bc,00000002)
7934.997:0050:0054:trace:reg:NtSetValueKey (0x2c,L"StandardName",1,0x62f8bc,2)
0054: set_key_value( hkey=002c, type=1, namelen=24, name=L"StandardName", data={00,00} )
0054: set_key_value() = 0
7934.998:0050:0054:SysRet   NtSetValueKey() retval=00000000
7934.998:0050:0054:Ret  ntdll.NtSetValueKey() retval=00000000 ret=7bc46e42
7934.998:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc46e4e
7934.998:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc46e4e
7934.998:0050:0054:Call ntdll.RtlInitUnicodeString(0062f688,7bc848b0 L"TimeZoneKeyName") ret=7bc46e19
7934.998:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc848b0 ret=7bc46e19
7934.998:0050:0054:Call ntdll.NtSetValueKey(0000002c,0062f688,00000000,00000001,0062f964,00000002) ret=7bc46e42
7934.998:0050:0054:SysCall  NtSetValueKey(0000002c,0062f688,00000000,00000001,0062f964,00000002)
7934.998:0050:0054:trace:reg:NtSetValueKey (0x2c,L"TimeZoneKeyName",1,0x62f964,2)
0054: set_key_value( hkey=002c, type=1, namelen=30, name=L"TimeZoneKeyName", data={00,00} )
0054: set_key_value() = 0
7934.999:0050:0054:SysRet   NtSetValueKey() retval=00000000
7934.999:0050:0054:Ret  ntdll.NtSetValueKey() retval=00000000 ret=7bc46e42
7934.999:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc46e4e
7934.999:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc46e4e
7934.999:0050:0054:Call ntdll.NtClose(0000002c) ret=7bc3cde9
7934.999:0050:0054:SysCall  NtClose(0000002c)
0054: close_handle( handle=002c )
0054: close_handle() = 0
7934.999:0050:0054:SysRet   NtClose() retval=00000000
7934.999:0050:0054:Ret  ntdll.NtClose() retval=00000000 ret=7bc3cde9
7934.999:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc713d5
7934.999:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc713d5
7934.999:0050:0054:trace:reg:RegQueryValueExW (00000028,L"LocaleName",00000000,00000000,0062F6E2,0062F6D0=170)
7934.999:0050:0054:Call ntdll.RtlInitUnicodeString(0062f55c,7bc848d0 L"LocaleName") ret=7bc4544b
7934.999:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7bc848d0 ret=7bc4544b
7934.999:0050:0054:Call ntdll.NtQueryValueKey(00000028,0062f55c,00000002,0062f564,000000b6,0062f558) ret=7bc454a9
7934.999:0050:0054:SysCall  NtQueryValueKey(00000028,0062f55c,00000002,0062f564,000000b6,0062f558)
7934.999:0050:0054:trace:reg:NtQueryValueKey (0x28,L"LocaleName",2,0x62f564,182)
0054: get_key_value( hkey=0028, name=L"LocaleName" )
0054: get_key_value() = 0 { type=1, total=12, data={63,00,73,00,2d,00,43,00,5a,00,00,00} }
7935.000:0050:0054:SysRet   NtQueryValueKey() retval=00000000
7935.000:0050:0054:Ret  ntdll.NtQueryValueKey() retval=00000000 ret=7bc454a9
7935.000:0050:0054:Call ntdll.memcpy(0062f6e2,0062f570,0000000c) ret=7bc45883
7935.000:0050:0054:Ret  ntdll.memcpy() retval=0062f6e2 ret=7bc45883
7935.000:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc454cc
7935.000:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc454cc
7935.000:0050:0054:Call ntdll.wcscmp(0062f6e2 L"cs-CZ",006821a8 L"cs-CZ") ret=7bc7198d
7935.000:0050:0054:Ret  ntdll.wcscmp() retval=00000000 ret=7bc7198d
7935.000:0050:0054:Call ntdll.RtlUnicodeStringToAnsiString(0062fa74,002431c0,00000001) ret=7bc722ad
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2c, return 002823E8, status 0.
7935.000:0050:0054:Ret  ntdll.RtlUnicodeStringToAnsiString() retval=00000000 ret=7bc722ad
7935.000:0050:0054:Call ntdll.RtlGetCurrentPeb() ret=7bc703ef
7935.000:0050:0054:Ret  ntdll.RtlGetCurrentPeb() retval=7ffd1000 ret=7bc703ef
7935.000:0050:0054:Ret  PE DLL (proc=7BC08010,module=7BBF0000 L"kernelbase.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.000:0050:0054:trace:module:process_attach (L"kernelbase.dll",0062FD24) - END
7935.000:0050:0054:Call PE DLL (proc=7BEC4BC0,module=7BEB0000 L"kernel32.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.000:0050:0054:Call kernelbase.DisableThreadLibraryCalls(7beb0000) ret=7bec4896
7935.000:0050:0054:Call ntdll.LdrDisableThreadCalloutsForDll(7beb0000) ret=7bc07df3
7935.000:0050:0054:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7935.000:0050:0054:Ret  kernelbase.DisableThreadLibraryCalls() retval=00000001 ret=7bec4896
7935.000:0050:0054:Call ntdll.RtlSetUnhandledExceptionFilter(7bebffa8) ret=7bec48a4
7935.000:0050:0054:Ret  ntdll.RtlSetUnhandledExceptionFilter() retval=7bebffa8 ret=7bec48a4
7935.000:0050:0054:Call ntdll.NtQuerySystemInformation(00000000,7bef70c0,0000002c,00000000) ret=7bec48ca
7935.000:0050:0054:SysCall  NtQuerySystemInformation(00000000,7bef70c0,0000002c,00000000)
7935.000:0050:0054:trace:ntdll:NtQuerySystemInformation (0x00000000,0x7bef70c0,0x0000002c,(nil))
7935.000:0050:0054:SysRet   NtQuerySystemInformation() retval=00000000
7935.000:0050:0054:Ret  ntdll.NtQuerySystemInformation() retval=00000000 ret=7bec48ca
7935.000:0050:0054:Call kernelbase.KernelBaseGetGlobalData() ret=7bec48d2
7935.000:0050:0054:warn:globalmem:KernelBaseGetGlobalData semi-stub!
7935.000:0050:0054:Ret  kernelbase.KernelBaseGetGlobalData() retval=7bcb8be8 ret=7bec48d2
7935.000:0050:0054:Call ntdll.RtlAcquirePebLock() ret=7bec48dd
7935.000:0050:0054:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bec48dd
7935.000:0050:0054:Call ntdll.RtlUnicodeStringToAnsiString(0062fab0,002431f8,00000001) ret=7bec491a
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 002734C0, status 0.
7935.000:0050:0054:Ret  ntdll.RtlUnicodeStringToAnsiString() retval=00000000 ret=7bec491a
7935.000:0050:0054:Call ntdll.RtlUnicodeStringToAnsiString(0062fab0,002431f0,00000001) ret=7bec4943
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x21, return 00282430, status 0.
7935.000:0050:0054:Ret  ntdll.RtlUnicodeStringToAnsiString() retval=00000000 ret=7bec4943
7935.000:0050:0054:Call ntdll.RtlReleasePebLock() ret=7bec49eb
7935.000:0050:0054:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bec49eb
7935.000:0050:0054:Call kernelbase.GetVersion() ret=7bec49f0
7935.000:0050:0054:Call ntdll.RtlRunOnceExecuteOnce(7bcb8c80,7bc70990,00000000,00000000) ret=7bc26189
7935.000:0050:0054:Call ntdll.RtlGetVersion(7bcb8ca0) ret=7bc709b0
7935.000:0050:0054:Ret  ntdll.RtlGetVersion() retval=00000000 ret=7bc709b0
7935.000:0050:0054:Call ntdll.RtlQueryInformationActivationContext(00000000,7bfa2040,00000000,00000006,00000000,00000000,0062f88c) ret=7bc70a39
7935.000:0050:0054:trace:actctx:RtlQueryInformationActivationContext 00000000 7BFA2040 00000000 6 00000000 0 0062F88C
7935.000:0050:0054:Ret  ntdll.RtlQueryInformationActivationContext() retval=c0000023 ret=7bc70a39
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000008) ret=7bc70adb
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x8, return 00282470, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00282470 ret=7bc70adb
7935.000:0050:0054:Call ntdll.RtlQueryInformationActivationContext(00000000,7bfa2040,00000000,00000006,00282470,00000008,0062f88c) ret=7bc70b27
7935.000:0050:0054:trace:actctx:RtlQueryInformationActivationContext 00000000 7BFA2040 00000000 6 00282470 8 0062F88C
7935.000:0050:0054:Ret  ntdll.RtlQueryInformationActivationContext() retval=00000000 ret=7bc70b27
7935.000:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00282470) ret=7bc70b4c
7935.000:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00282470, return 1, status 0.
7935.000:0050:0054:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc70b4c
7935.000:0050:0054:Call ntdll.RtlImageNtHeader(00400000) ret=7bc70c5d
7935.000:0050:0054:Ret  ntdll.RtlImageNtHeader() retval=00400080 ret=7bc70c5d
7935.000:0050:0054:Ret  ntdll.RtlRunOnceExecuteOnce() retval=00000000 ret=7bc26189
7935.000:0050:0054:Call ntdll.wcscpy(0062f950,7bcb8cb4 L"") ret=7bc21d77
7935.000:0050:0054:Ret  ntdll.wcscpy() retval=0062f950 ret=7bc21d77
7935.000:0050:0054:Ret  kernelbase.GetVersion() retval=23f00206 ret=7bec49f0
7935.000:0050:0054:Call ntdll.RtlImageDirectoryEntryToData(7beb0000,00000001,00000000,0062faac) ret=7bec4a18
7935.000:0050:0054:Ret  ntdll.RtlImageDirectoryEntryToData() retval=7bef8000 ret=7bec4a18
7935.000:0050:0054:Call ntdll.strcmp(7befef45 "GlobalLock",7bee4ba7 "FT_Thunk") ret=7bec4a63
7935.000:0050:0054:Ret  ntdll.strcmp() retval=00000001 ret=7bec4a63
7935.000:0050:0054:Call ntdll.strcmp(7befd2ea "FreeUserPhysicalPages",7bee4ba7 "FT_Thunk") ret=7bec4a63
7935.000:0050:0054:Ret  ntdll.strcmp() retval=00000001 ret=7bec4a63
7935.000:0050:0054:Call ntdll.strcmp(7befc621 "CtrlRoutine",7bee4ba7 "FT_Thunk") ret=7bec4a63
7935.000:0050:0054:Ret  ntdll.strcmp() retval=ffffffff ret=7bec4a63
7935.000:0050:0054:Call ntdll.strcmp(7befcd09 "ExpungeConsoleCommandHistoryW",7bee4ba7 "FT_Thunk") ret=7bec4a63
7935.000:0050:0054:Ret  ntdll.strcmp() retval=ffffffff ret=7bec4a63
7935.000:0050:0054:Call ntdll.strcmp(7befcfde "FindFirstStreamW",7bee4ba7 "FT_Thunk") ret=7bec4a63
7935.000:0050:0054:Ret  ntdll.strcmp() retval=00000001 ret=7bec4a63
7935.000:0050:0054:Call ntdll.strcmp(7befce07 "FileTimeToDosDateTime",7bee4ba7 "FT_Thunk") ret=7bec4a63
7935.000:0050:0054:Ret  ntdll.strcmp() retval=00000001 ret=7bec4a63
7935.000:0050:0054:Call ntdll.strcmp(7befcd93 "FT_Exit40",7bee4ba7 "FT_Thunk") ret=7bec4a63
7935.000:0050:0054:Ret  ntdll.strcmp() retval=ffffffff ret=7bec4a63
7935.000:0050:0054:Call ntdll.strcmp(7befcdc5 "FT_Exit8",7bee4ba7 "FT_Thunk") ret=7bec4a63
7935.000:0050:0054:Ret  ntdll.strcmp() retval=ffffffff ret=7bec4a63
7935.000:0050:0054:Call ntdll.strcmp(7befcde1 "FatalAppExitA",7bee4ba7 "FT_Thunk") ret=7bec4a63
7935.000:0050:0054:Ret  ntdll.strcmp() retval=00000001 ret=7bec4a63
7935.000:0050:0054:Call ntdll.strcmp(7befcdce "FT_Prolog",7bee4ba7 "FT_Thunk") ret=7bec4a63
7935.000:0050:0054:Ret  ntdll.strcmp() retval=ffffffff ret=7bec4a63
7935.000:0050:0054:Call ntdll.strcmp(7befcdd8 "FT_Thunk",7bee4ba7 "FT_Thunk") ret=7bec4a63
7935.000:0050:0054:Ret  ntdll.strcmp() retval=00000000 ret=7bec4a63
7935.000:0050:0054:trace:process:set_entry_point setting FT_Thunk at 7BEF8668 to 00000000
7935.000:0050:0054:Call kernelbase.VirtualProtect(7bef8668,00000004,00000004,0062fab0) ret=7bec4b42
7935.000:0050:0054:Call ntdll.NtProtectVirtualMemory(ffffffff,0062fa38,0062fa3c,00000004,0062fab0) ret=7bc601e2
7935.000:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062fa38,0062fa3c,00000004,0062fab0)
7935.000:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7bef8668 00000004 00000004
7935.000:0050:0054:trace:virtual:get_vprot_range_size base 0x7bef8000, size 0x1000, mask 0x20.
7935.000:0050:0054:trace:virtual:dump_view View: 0x7beb0000 - 0x7bf17fff c-rWx (image)
7935.000:0050:0054:trace:virtual:dump_view       0x7beb0000 - 0x7beb0fff c-r--
7935.000:0050:0054:trace:virtual:dump_view       0x7beb1000 - 0x7bee0fff c-r-x
7935.000:0050:0054:trace:virtual:dump_view       0x7bee1000 - 0x7bee1fff c-rW-
7935.000:0050:0054:trace:virtual:dump_view       0x7bee2000 - 0x7bef6fff c-r--
7935.000:0050:0054:trace:virtual:dump_view       0x7bef7000 - 0x7bef8fff c-rW-
7935.000:0050:0054:trace:virtual:dump_view       0x7bef9000 - 0x7bf03fff c-r--
7935.000:0050:0054:trace:virtual:dump_view       0x7bf04000 - 0x7bf14fff c-rW-
7935.000:0050:0054:trace:virtual:dump_view       0x7bf15000 - 0x7bf17fff c-r--
7935.000:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.000:0050:0054:Ret  ntdll.NtProtectVirtualMemory() retval=00000000 ret=7bc601e2
7935.000:0050:0054:Ret  kernelbase.VirtualProtect() retval=00000001 ret=7bec4b42
7935.000:0050:0054:Call kernelbase.VirtualProtect(7bef8668,00000004,00000002,0062fab0) ret=7bec4b69
7935.000:0050:0054:Call ntdll.NtProtectVirtualMemory(ffffffff,0062fa38,0062fa3c,00000002,0062fab0) ret=7bc601e2
7935.000:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062fa38,0062fa3c,00000002,0062fab0)
7935.000:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7bef8668 00000004 00000002
7935.000:0050:0054:trace:virtual:get_vprot_range_size base 0x7bef8000, size 0x1000, mask 0x20.
7935.000:0050:0054:trace:virtual:dump_view View: 0x7beb0000 - 0x7bf17fff c-rWx (image)
7935.000:0050:0054:trace:virtual:dump_view       0x7beb0000 - 0x7beb0fff c-r--
7935.000:0050:0054:trace:virtual:dump_view       0x7beb1000 - 0x7bee0fff c-r-x
7935.000:0050:0054:trace:virtual:dump_view       0x7bee1000 - 0x7bee1fff c-rW-
7935.000:0050:0054:trace:virtual:dump_view       0x7bee2000 - 0x7bef6fff c-r--
7935.000:0050:0054:trace:virtual:dump_view       0x7bef7000 - 0x7bef7fff c-rW-
7935.000:0050:0054:trace:virtual:dump_view       0x7bef8000 - 0x7bf03fff c-r--
7935.000:0050:0054:trace:virtual:dump_view       0x7bf04000 - 0x7bf14fff c-rW-
7935.000:0050:0054:trace:virtual:dump_view       0x7bf15000 - 0x7bf17fff c-r--
7935.000:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.000:0050:0054:Ret  ntdll.NtProtectVirtualMemory() retval=00000000 ret=7bc601e2
7935.000:0050:0054:Ret  kernelbase.VirtualProtect() retval=00000001 ret=7bec4b69
7935.000:0050:0054:Ret  PE DLL (proc=7BEC4BC0,module=7BEB0000 L"kernel32.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.000:0050:0054:trace:module:process_attach (L"kernel32.dll",0062FD24) - END
7935.000:0050:0054:trace:module:process_attach (L"advapi32.dll",0062FD24) - START
7935.000:0050:0054:trace:module:process_attach (L"msvcrt.dll",0062FD24) - START
7935.000:0050:0054:Call PE DLL (proc=7BADAF70,module=7BAD0000 L"msvcrt.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.000:0050:0054:trace:msvcrt:DllMain (7BAD0000, DLL_PROCESS_ATTACH, 0062FD24) pid(50), tid(54), tls(0)
7935.000:0050:0054:Call KERNEL32.HeapCreate(00000000,00000000,00000000) ret=7bb188d3
7935.000:0050:0054:Call ntdll.RtlCreateHeap(00000000,00000000,00000000,00000000,00000000,00000000) ret=7becc1c8
7935.000:0050:0054:trace:heap:RtlCreateHeap flags 0, addr 00000000, total_size 0, commit_size 0, lock 00000000, params 00000000
7935.000:0050:0054:SysCall  NtAllocateVirtualMemory(ffffffff,0062f92c,00000000,0062f9b8,00002000,00000004)
7935.000:0050:0054:trace:virtual:NtAllocateVirtualMemory 0xffffffff (nil) 00010000 2000 00000004
7935.000:0050:0054:trace:virtual:map_view got mem in reserved area 0x3b0000-0x3c0000
7935.000:0050:0054:trace:virtual_ranges:free_ranges_insert_view 0x3b0000 - 0x3c0000, aligned 0x3b0000 - 0x3c0000.
7935.000:0050:0054:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7935.000:0050:0054:trace:virtual_ranges:dump_free_ranges 0x3c0000 - 0x400000.
7935.000:0050:0054:trace:virtual_ranges:dump_free_ranges 0xab0000 - 0x7fde0000.
7935.000:0050:0054:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7935.000:0050:0054:trace:virtual:dump_view View: 0x3b0000 - 0x3bffff --rw- (valloc)
7935.000:0050:0054:trace:virtual:dump_view       0x3b0000 - 0x3bffff --rw-
7935.000:0050:0054:SysRet   NtAllocateVirtualMemory() retval=00000000
7935.000:0050:0054:SysCall  NtAllocateVirtualMemory(ffffffff,0062f92c,00000000,0062f9bc,00001000,00000004)
7935.000:0050:0054:trace:virtual:NtAllocateVirtualMemory 0xffffffff 0x3b0000 00010000 1000 00000004
7935.000:0050:0054:trace:virtual:dump_view View: 0x3b0000 - 0x3bffff --rw- (valloc)
7935.000:0050:0054:trace:virtual:dump_view       0x3b0000 - 0x3bffff c-rw-
7935.000:0050:0054:SysRet   NtAllocateVirtualMemory() retval=00000000
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00282490, status 0.
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0x8, size 0x1000, return 003B0488, status 0.
7935.000:0050:0054:SysCall  NtAllocateVirtualMemory(ffffffff,003b0460,00000000,0062f998,00001000,00000004)
7935.000:0050:0054:trace:virtual:NtAllocateVirtualMemory 0xffffffff (nil) 000050a0 1000 00000004
7935.000:0050:0054:trace:virtual:map_view got mem in reserved area 0x3c0000-0x3c6000
7935.000:0050:0054:trace:virtual_ranges:free_ranges_insert_view 0x3c0000 - 0x3c6000, aligned 0x3c0000 - 0x3d0000.
7935.000:0050:0054:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7935.000:0050:0054:trace:virtual_ranges:dump_free_ranges 0x3d0000 - 0x400000.
7935.000:0050:0054:trace:virtual_ranges:dump_free_ranges 0xab0000 - 0x7fde0000.
7935.000:0050:0054:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7935.000:0050:0054:trace:virtual:dump_view View: 0x3c0000 - 0x3c5fff c-rw- (valloc)
7935.000:0050:0054:trace:virtual:dump_view       0x3c0000 - 0x3c5fff c-rw-
7935.000:0050:0054:SysRet   NtAllocateVirtualMemory() retval=00000000
7935.000:0050:0054:Ret  ntdll.RtlCreateHeap() retval=003b0000 ret=7becc1c8
7935.000:0050:0054:Ret  KERNEL32.HeapCreate() retval=003b0000 ret=7bb188d3
7935.000:0050:0054:Call KERNEL32.TlsAlloc() ret=7badad7e
7935.000:0050:0054:Call kernelbase.TlsAlloc() ret=7bf3cfb4
7935.000:0050:0054:Call ntdll.RtlAcquirePebLock() ret=7bc570fb
7935.000:0050:0054:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc570fb
7935.000:0050:0054:Call ntdll.RtlFindClearBitsAndSet(7bfd5578,00000001,00000001) ret=7bc5711c
7935.000:0050:0054:trace:ntdll:RtlFindClearBitsAndSet (7BFD5578,1,1)
7935.000:0050:0054:trace:ntdll:RtlFindClearBits (7BFD5578,1,1)
7935.000:0050:0054:trace:ntdll:RtlAreBitsClear (7BFD5578,1,1)
7935.000:0050:0054:trace:ntdll:RtlSetBits (7BFD5578,1,1)
7935.000:0050:0054:Ret  ntdll.RtlFindClearBitsAndSet() retval=00000001 ret=7bc5711c
7935.000:0050:0054:Call ntdll.RtlReleasePebLock() ret=7bc5713a
7935.000:0050:0054:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc5713a
7935.000:0050:0054:Ret  kernelbase.TlsAlloc() retval=00000001 ret=7bf3cfb4
7935.000:0050:0054:Ret  KERNEL32.TlsAlloc() retval=00000001 ret=7badad7e
7935.000:0050:0054:trace:msvcrt:msvcrt_init_mt_locks initializing mtlocks
7935.000:0050:0054:Call KERNEL32.InitializeCriticalSectionEx(7bb71f00,00000000,10000000) ret=7bb19505
7935.000:0050:0054:Call kernelbase.InitializeCriticalSectionEx(7bb71f00,00000000,10000000) ret=7bf3cfb4
7935.000:0050:0054:Call ntdll.RtlInitializeCriticalSectionEx(7bb71f00,00000000,10000000) ret=7bc26472
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 002824C8, status 0.
7935.000:0050:0054:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7935.000:0050:0054:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7935.000:0050:0054:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7bb19505
7935.000:0050:0054:trace:msvcrt:_lock (19)
7935.000:0050:0054:trace:msvcrt:_lock (17)
7935.000:0050:0054:Call ntdll.RtlEnterCriticalSection(7bb71f00) ret=7baed55a
7935.000:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7935.000:0050:0054:trace:msvcrt:_lock : creating lock #19
7935.000:0050:0054:Call KERNEL32.InitializeCriticalSectionEx(7bb71f38,00000000,10000000) ret=7baed5d4
7935.000:0050:0054:Call kernelbase.InitializeCriticalSectionEx(7bb71f38,00000000,10000000) ret=7bf3cfb4
7935.000:0050:0054:Call ntdll.RtlInitializeCriticalSectionEx(7bb71f38,00000000,10000000) ret=7bc26472
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00282500, status 0.
7935.000:0050:0054:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7935.000:0050:0054:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7935.000:0050:0054:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7baed5d4
7935.000:0050:0054:trace:msvcrt:_unlock (17)
7935.000:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bb71f00) ret=7baed610
7935.000:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7baed610
7935.000:0050:0054:Call ntdll.RtlEnterCriticalSection(7bb71f38) ret=7baed55a
7935.000:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000008) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x8, return 003B14A0, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b14a0 ret=7bb17d96
7935.000:0050:0054:trace:msvcrt:create_locinfo (0 C)
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,000000d8) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0xd8, return 003B14C0, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b14c0 ret=7bb17d96
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000002) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2, return 003B15B0, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b15b0 ret=7bb17d96
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000004) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x4, return 003B15D0, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b15d0 ret=7bb17d96
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000002) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2, return 003B15F0, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b15f0 ret=7bb17d96
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000004) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x4, return 003B1610, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b1610 ret=7bb17d96
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000002) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2, return 003B1630, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b1630 ret=7bb17d96
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000004) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x4, return 003B1650, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b1650 ret=7bb17d96
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000002) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2, return 003B1670, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b1670 ret=7bb17d96
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000004) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x4, return 003B1690, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b1690 ret=7bb17d96
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000002) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2, return 003B16B0, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b16b0 ret=7bb17d96
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000004) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x4, return 003B16D0, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b16d0 ret=7bb17d96
7935.000:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000220) ret=7bb17d96
7935.000:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x220, return 003B16F0, status 0.
7935.000:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b16f0 ret=7bb17d96
7935.000:0050:0054:Call KERNEL32.GetCPInfo(00004e9f,0062f10c) ret=7bb0a35a
7935.000:0050:0054:Call kernelbase.GetCPInfo(00004e9f,0062f10c) ret=7bf3cfb4
7935.000:0050:0054:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7935.000:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7935.000:0050:0054:Call ntdll.NtGetNlsSectionPtr(0000000b,00004e9f,00000000,0062f058,0062f05c) ret=7bc6b6db
7935.000:0050:0054:SysCall  NtGetNlsSectionPtr(0000000b,00004e9f,00000000,0062f058,0062f05c)
0054: open_mapping( access=00000004, attributes=00000000, rootdir=0000, name=L"\\NLS\\NlsSectionCP20127" )
0054: open_mapping() = 0 { handle=002c }
7935.016:0050:0054:trace:virtual:NtMapViewOfSection handle=0x2c process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x2
0054: get_mapping_info( handle=002c, access=00000004 )
0054: get_mapping_info() = 0 { size=00010222, flags=00800000, shared_file=0000, name_len=0, total=0, image={}, name=L"", exp_name="" }
0054: get_handle_fd( handle=002c )
0054: *fd* 002c -> 46
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=00000004, options=00000020 }
7935.016:0050:0054:trace:virtual:map_view got mem in reserved area 0x3d0000-0x3e1000
7935.016:0050:0054:trace:virtual_ranges:free_ranges_insert_view 0x3d0000 - 0x3e1000, aligned 0x3d0000 - 0x3f0000.
7935.016:0050:0054:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7935.016:0050:0054:trace:virtual_ranges:dump_free_ranges 0x3f0000 - 0x400000.
7935.016:0050:0054:trace:virtual_ranges:dump_free_ranges 0xab0000 - 0x7fde0000.
7935.016:0050:0054:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7935.016:0050:0054:trace:virtual:virtual_map_section handle=0x2c size=11000 offset=0
0054: map_view( mapping=002c, access=00000004, base=003d0000, size=00011000, start=00000000 )
0054: map_view() = 0
7935.017:0050:0054:trace:virtual:dump_view View: 0x3d0000 - 0x3e0fff c-r-- (file)
7935.017:0050:0054:trace:virtual:dump_view       0x3d0000 - 0x3e0fff c-r--
0054: close_handle( handle=002c )
0054: close_handle() = 0
7935.018:0050:0054:SysRet   NtGetNlsSectionPtr() retval=00000000
7935.018:0050:0054:Ret  ntdll.NtGetNlsSectionPtr() retval=00000000 ret=7bc6b6db
7935.018:0050:0054:Call ntdll.RtlInitCodePageTable(003d0000,7bcb7480) ret=7bc6b703
7935.018:0050:0054:Ret  ntdll.RtlInitCodePageTable() retval=003d001a ret=7bc6b703
7935.018:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7935.018:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
7935.018:0050:0054:Ret  kernelbase.GetCPInfo() retval=00000001 ret=7bf3cfb4
7935.018:0050:0054:Ret  KERNEL32.GetCPInfo() retval=00000001 ret=7bb0a35a
7935.018:0050:0054:Call KERNEL32.MultiByteToWideChar(00004e9f,00000000,0062f120 "",00000100,0062f420,00000100) ret=7bb0a46f
7935.018:0050:0054:Call kernelbase.MultiByteToWideChar(00004e9f,00000000,0062f120 "",00000100,0062f420,00000100) ret=7bf3cfb4
7935.018:0050:0054:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7935.018:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7935.018:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7935.018:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
7935.018:0050:0054:trace:nls:MultiByteToWideChar cp 20127 "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x8a\x8b\x8c\x8d\x8e\x8f\x90"... -> L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"..., ret = 256
7935.018:0050:0054:Ret  kernelbase.MultiByteToWideChar() retval=00000100 ret=7bf3cfb4
7935.018:0050:0054:Ret  KERNEL32.MultiByteToWideChar() retval=00000100 ret=7bb0a46f
7935.018:0050:0054:Call KERNEL32.GetStringTypeW(00000001,0062f420 L"",00000100,0062f220) ret=7bb0a4aa
7935.018:0050:0054:Call kernelbase.GetStringTypeW(00000001,0062f420 L"",00000100,0062f220) ret=7bf3cfb4
7935.018:0050:0054:Ret  kernelbase.GetStringTypeW() retval=00000001 ret=7bf3cfb4
7935.018:0050:0054:Ret  KERNEL32.GetStringTypeW() retval=00000001 ret=7bb0a4aa
7935.018:0050:0054:Call KERNEL32.LCMapStringW(00000000,00000100,0062f420 L"",00000100,0062f620,00000100) ret=7bb0a4e5
7935.018:0050:0054:Call kernelbase.LCMapStringW(00000000,00000100,0062f420 L"",00000100,0062f620,00000100) ret=7bf3cfb4
7935.018:0050:0054:trace:nls:LCMapStringEx ((null),0x00000100,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"...,256,0062F620,256)
7935.018:0050:0054:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7935.018:0050:0054:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7bb0a4e5
7935.018:0050:0054:Call KERNEL32.LCMapStringW(00000000,00000200,0062f420 L"",00000100,0062f820,00000100) ret=7bb0a51d
7935.018:0050:0054:Call kernelbase.LCMapStringW(00000000,00000200,0062f420 L"",00000100,0062f820,00000100) ret=7bf3cfb4
7935.018:0050:0054:trace:nls:LCMapStringEx ((null),0x00000200,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"...,256,0062F820,256)
7935.018:0050:0054:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7935.018:0050:0054:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7bb0a51d
7935.018:0050:0054:Call KERNEL32.WideCharToMultiByte(00004e9f,00000000,0062f420 L"",00000100,0062f120,00000100,00000000,00000000) ret=7bb0a5aa
7935.018:0048:004c:trace:font:init_fontconfig enabled, default flags = 0
7935.018:0050:0054:Call kernelbase.WideCharToMultiByte(00004e9f,00000000,0062f420 L"",00000100,0062f120,00000100,00000000,00000000) ret=7bf3cfb4
7935.018:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current\\Software\\Fonts",2000000,0x21f784)
7935.018:0050:0054:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7935.018:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7935.018:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7935.020:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current\\Software\\Fonts" )
7935.020:0050:0054:trace:nls:WideCharToMultiByte cp 20127 L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"... -> "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\x7f\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12"..., ret = 256
004c: open_key() = 0 { hkey=0034 }
7935.020:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000100 ret=7bf3cfb4
7935.020:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000100 ret=7bb0a5aa
7935.020:0050:0054:trace:msvcrt:_unlock (19)
7935.020:0048:004c:trace:reg:NtOpenKeyEx <- 0x34
7935.020:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bb71f38) ret=7bafbdfc
7935.020:0048:004c:trace:reg:NtQueryValueKey (0x34,L"FONTS.FON",2,0x21f80c,532)
7935.020:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bafbdfc
7935.020:0050:0054:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
7935.020:0050:0054:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
004c: get_key_value( hkey=0034, name=L"FONTS.FON" )
7935.020:0050:0054:Ret  kernelbase.TlsGetValue() retval=00000000 ret=7bf3cfb4
7935.020:0050:0054:Ret  KERNEL32.TlsGetValue() retval=00000000 ret=7bb17c81
004c: get_key_value() = 0 { type=1, total=24, data={76,00,67,00,61,00,73,00,79,00,73,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.020:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000008,00000380) ret=7bb17cbf
7935.020:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x380, return 00282538, status 0.
7935.020:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00282538 ret=7bb17cbf
7935.020:0050:0054:Call KERNEL32.TlsSetValue(00000001,00282538) ret=7bb17cda
7935.020:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\vgasyse.fon" -> ret c000003a
7935.020:0050:0054:Call kernelbase.TlsSetValue(00000001,00282538) ret=7bf3cfb4
7935.020:0050:0054:Ret  kernelbase.TlsSetValue() retval=00000001 ret=7bf3cfb4
7935.020:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyse.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyse.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasyse.fon"
7935.020:0050:0054:Ret  KERNEL32.TlsSetValue() retval=00000001 ret=7bb17cda
7935.020:0050:0054:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
7935.020:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasyse.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.020:0050:0054:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7935.020:0050:0054:Ret  kernelbase.TlsGetValue() retval=00282538 ret=7bf3cfb4
7935.020:0050:0054:Ret  KERNEL32.TlsGetValue() retval=00282538 ret=7bb17c81
7935.020:0050:0054:trace:msvcrt:_lock (19)
7935.020:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.020:0050:0054:Call ntdll.RtlEnterCriticalSection(7bb71f38) ret=7baed55a
7935.020:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasyse.fon" index 0
7935.020:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7935.020:0050:0054:trace:msvcrt:_unlock (19)
7935.020:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bb71f38) ret=7bafbdfc
7935.020:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bafbdfc
7935.020:0050:0054:trace:msvcrt:_lock (25)
7935.020:0050:0054:trace:msvcrt:_lock (17)
7935.020:0050:0054:Call ntdll.RtlEnterCriticalSection(7bb71f00) ret=7baed55a
7935.020:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7935.020:0048:004c:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.020:0050:0054:trace:msvcrt:_lock : creating lock #25
7935.020:0048:004c:warn:font:ft_face_get_full_name full name not found, using L"System Regular" instead
7935.020:0050:0054:Call KERNEL32.InitializeCriticalSectionEx(7bb71fe0,00000000,10000000) ret=7baed5d4
7935.020:0048:004c:trace:font:get_bitmap_size Adding bitmap size h 16 w 7 size 10 x_ppem 13 y_ppem 13
7935.020:0050:0054:Call kernelbase.InitializeCriticalSectionEx(7bb71fe0,00000000,10000000) ret=7bf3cfb4
7935.020:0048:004c:trace:font:get_fontsig pix_h 16 charset 238 dpi 96x96 pt 10
7935.020:0050:0054:Call ntdll.RtlInitializeCriticalSectionEx(7bb71fe0,00000000,10000000) ret=7bc26472
7935.020:0048:004c:trace:font:insert_face_in_family_list Adding face L"System Regular" in family L"System" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyse.fon"
7935.020:0048:004c:trace:font:add_unix_face fsCsb = 00000002 00000000/00000000 00000000 00000000 00000000
7935.020:0048:004c:trace:reg:NtQueryValueKey (0x34,L"OEMFONT.FON",2,0x21f80c,532)
7935.022:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 002828D0, status 0.
004c: get_key_value( hkey=0034, name=L"OEMFONT.FON" )
7935.022:0050:0054:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7935.022:0050:0054:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
004c: get_key_value() = 0 { type=1, total=22, data={76,00,67,00,61,00,38,00,35,00,32,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.022:0050:0054:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7baed5d4
7935.022:0050:0054:trace:msvcrt:_unlock (17)
7935.022:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bb71f00) ret=7baed610
7935.022:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7baed610
7935.022:0050:0054:Call ntdll.RtlEnterCriticalSection(7bb71fe0) ret=7baed55a
7935.022:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7935.022:0050:0054:trace:msvcrt:_unlock (25)
7935.022:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bb71fe0) ret=7bafbdfc
7935.022:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bafbdfc
7935.022:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000220) ret=7bb17d96
7935.022:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\vga852.fon" -> ret c000003a
7935.022:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x220, return 003B1928, status 0.
7935.022:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b1928 ret=7bb17d96
7935.022:0050:0054:Call KERNEL32.GetACP() ret=7bb0a32c
7935.022:0050:0054:Call kernelbase.GetACP() ret=7bf3cfb4
7935.022:0050:0054:Ret  kernelbase.GetACP() retval=000004e2 ret=7bf3cfb4
7935.022:0050:0054:Ret  KERNEL32.GetACP() retval=000004e2 ret=7bb0a32c
7935.022:0050:0054:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
7935.022:0050:0054:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7935.022:0050:0054:Ret  kernelbase.TlsGetValue() retval=00282538 ret=7bf3cfb4
7935.022:0050:0054:Ret  KERNEL32.TlsGetValue() retval=00282538 ret=7bb17c81
7935.022:0050:0054:Call KERNEL32.GetUserDefaultLocaleName(0062f818,00000055) ret=7bb14510
7935.022:0050:0054:Call kernelbase.GetUserDefaultLocaleName(0062f818,00000055) ret=7bf3cfb4
7935.022:0050:0054:Call ntdll.memcpy(0062f818,006821a8,0000000c) ret=7bc73227
7935.022:0050:0054:Ret  ntdll.memcpy() retval=0062f818 ret=7bc73227
7935.022:0050:0054:Ret  kernelbase.GetUserDefaultLocaleName() retval=00000006 ret=7bf3cfb4
7935.022:0050:0054:Ret  KERNEL32.GetUserDefaultLocaleName() retval=00000006 ret=7bb14510
7935.022:0050:0054:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
7935.022:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vga852.fon" -> ret c000000f nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vga852.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vga852.fon"
7935.022:0050:0054:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7935.022:0050:0054:Ret  kernelbase.TlsGetValue() retval=00282538 ret=7bf3cfb4
7935.022:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vga852.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.022:0050:0054:Ret  KERNEL32.TlsGetValue() retval=00282538 ret=7bb17c81
7935.022:0050:0054:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
7935.022:0048:004c:trace:reg:NtQueryValueKey (0x34,L"FIXEDFON.FON",2,0x21f80c,532)
7935.022:0050:0054:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7935.022:0050:0054:Ret  kernelbase.TlsGetValue() retval=00282538 ret=7bf3cfb4
7935.022:0050:0054:Ret  KERNEL32.TlsGetValue() retval=00282538 ret=7bb17c81
7935.023:0050:0054:Call KERNEL32.TlsGetValue(00000001) ret=7bb17c81
004c: get_key_value( hkey=0034, name=L"FIXEDFON.FON" )
7935.023:0050:0054:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7935.023:0050:0054:Ret  kernelbase.TlsGetValue() retval=00282538 ret=7bf3cfb4
004c: get_key_value() = 0 { type=1, total=24, data={76,00,67,00,61,00,66,00,69,00,78,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.023:0050:0054:Ret  KERNEL32.TlsGetValue() retval=00282538 ret=7bb17c81
7935.023:0050:0054:Call KERNEL32.IsValidCodePage(000004e2) ret=7bb1456e
7935.023:0050:0054:Call kernelbase.IsValidCodePage(000004e2) ret=7bf3cfb4
7935.023:0050:0054:Ret  kernelbase.IsValidCodePage() retval=00000001 ret=7bf3cfb4
7935.023:0050:0054:Ret  KERNEL32.IsValidCodePage() retval=00000001 ret=7bb1456e
7935.023:0050:0054:Call KERNEL32.LocaleNameToLCID(0062f818 L"cs-CZ",08000000) ret=7bb0a929
7935.023:0050:0054:Call kernelbase.LocaleNameToLCID(0062f818 L"cs-CZ",08000000) ret=7bf3cfb4
7935.023:0050:0054:Ret  kernelbase.LocaleNameToLCID() retval=00000405 ret=7bf3cfb4
7935.023:0050:0054:Ret  KERNEL32.LocaleNameToLCID() retval=00000405 ret=7bb0a929
7935.023:0050:0054:Call KERNEL32.GetCPInfo(000004e2,0062f104) ret=7bb0a35a
7935.023:0050:0054:Call kernelbase.GetCPInfo(000004e2,0062f104) ret=7bf3cfb4
7935.023:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\vgafixe.fon" -> ret c000003a
7935.023:0050:0054:Ret  kernelbase.GetCPInfo() retval=00000001 ret=7bf3cfb4
7935.023:0050:0054:Ret  KERNEL32.GetCPInfo() retval=00000001 ret=7bb0a35a
7935.023:0050:0054:Call KERNEL32.MultiByteToWideChar(000004e2,00000000,0062f118 "",00000100,0062f418,00000100) ret=7bb0a46f
7935.023:0050:0054:Call kernelbase.MultiByteToWideChar(000004e2,00000000,0062f118 "",00000100,0062f418,00000100) ret=7bf3cfb4
7935.023:0050:0054:trace:nls:MultiByteToWideChar cp 1250 "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x8a\x8b\x8c\x8d\x8e\x8f\x90"... -> L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"..., ret = 256
7935.023:0050:0054:Ret  kernelbase.MultiByteToWideChar() retval=00000100 ret=7bf3cfb4
7935.023:0050:0054:Ret  KERNEL32.MultiByteToWideChar() retval=00000100 ret=7bb0a46f
7935.023:0050:0054:Call KERNEL32.GetStringTypeW(00000001,0062f418 L"",00000100,0062f218) ret=7bb0a4aa
7935.023:0050:0054:Call kernelbase.GetStringTypeW(00000001,0062f418 L"",00000100,0062f218) ret=7bf3cfb4
7935.023:0050:0054:Ret  kernelbase.GetStringTypeW() retval=00000001 ret=7bf3cfb4
7935.023:0050:0054:Ret  KERNEL32.GetStringTypeW() retval=00000001 ret=7bb0a4aa
7935.023:0050:0054:Call KERNEL32.LCMapStringW(00000405,00000100,0062f418 L"",00000100,0062f618,00000100) ret=7bb0a4e5
7935.023:0050:0054:Call kernelbase.LCMapStringW(00000405,00000100,0062f418 L"",00000100,0062f618,00000100) ret=7bf3cfb4
7935.023:0050:0054:trace:nls:LCMapStringEx ((null),0x00000100,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"...,256,0062F618,256)
7935.023:0050:0054:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7935.023:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgafixe.fon" -> ret c000000f nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgafixe.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgafixe.fon"
7935.023:0050:0054:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7bb0a4e5
7935.023:0050:0054:Call KERNEL32.LCMapStringW(00000405,00000200,0062f418 L"",00000100,0062f818,00000100) ret=7bb0a51d
7935.023:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgafixe.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.023:0050:0054:Call kernelbase.LCMapStringW(00000405,00000200,0062f418 L"",00000100,0062f818,00000100) ret=7bf3cfb4
7935.023:0050:0054:trace:nls:LCMapStringEx ((null),0x00000200,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"...,256,0062F818,256)
7935.025:0050:0054:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
004c: close_handle( handle=0034 )
7935.025:0050:0054:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7bb0a51d
004c: close_handle() = 0
7935.025:0050:0054:Call KERNEL32.WideCharToMultiByte(000004e2,00000000,0062f418 L"",00000100,0062f118,00000100,00000000,00000000) ret=7bb0a5aa
7935.025:0050:0054:Call kernelbase.WideCharToMultiByte(000004e2,00000000,0062f418 L"",00000100,0062f118,00000100,00000000,00000000) ret=7bf3cfb4
7935.025:0048:004c:trace:file:NtCreateFile handle=0x21cf24 access=80100000 name=L"\\??\\C:\\windows\\fonts" objattr=00000040 root=(nil) sec=(nil) io=0x21cf28 alloc_size=(nil) attr=00000000 sharing=00000003 disp=1 options=00004021 ea=(nil).0x00000000
7935.025:0050:0054:trace:nls:WideCharToMultiByte cp 1250 L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"... -> "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x9a\x8b\x9c\x9d\x9e\x9f\x90"..., ret = 256
7935.025:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000100 ret=7bf3cfb4
7935.025:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000100 ret=7bb0a5aa
7935.025:0050:0054:trace:msvcrt:_lock (25)
7935.025:0050:0054:Call ntdll.RtlEnterCriticalSection(7bb71fe0) ret=7baed55a
7935.025:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7935.025:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts" -> ret c0000034
7935.025:0050:0054:trace:msvcrt:_unlock (25)
7935.025:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\fonts" not found (c0000034)
7935.025:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bb71fe0) ret=7bafbdfc
7935.025:0048:004c:trace:file:NtCreateFile handle=0x21cf24 access=80100000 name=L"\\??\\Z:\\usr\\share\\wine\\fonts" objattr=00000040 root=(nil) sec=(nil) io=0x21cf28 alloc_size=(nil) attr=00000000 sharing=00000003 disp=1 options=00004021 ea=(nil).0x00000000
7935.025:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bafbdfc
7935.025:0050:0054:Call KERNEL32.IsProcessorFeaturePresent(0000000a) ret=7bb194a1
7935.025:0050:0054:Call kernelbase.IsProcessorFeaturePresent(0000000a) ret=7bf3cfb4
7935.025:0050:0054:Call ntdll.RtlIsProcessorFeaturePresent(0000000a) ret=7bc28a02
7935.025:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts"
7935.025:0050:0054:SysCall  NtWow64IsProcessorFeaturePresent(0000000a)
7935.025:0050:0054:SysRet   NtWow64IsProcessorFeaturePresent() retval=00000001
7935.026:0050:0054:Ret  ntdll.RtlIsProcessorFeaturePresent() retval=00000001 ret=7bc28a02
004c: create_file( access=80100000, sharing=00000003, create=1, options=00004021, attrs=00000000, objattr={rootdir=0000,attributes=00000040,sd={},name=L"\\??\\Z:\\usr\\share\\wine\\fonts"}, filename="/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts" )
7935.026:0050:0054:Ret  kernelbase.IsProcessorFeaturePresent() retval=00000001 ret=7bf3cfb4
7935.026:0050:0054:Ret  KERNEL32.IsProcessorFeaturePresent() retval=00000001 ret=7bb194a1
7935.026:0050:0054:Call KERNEL32.GetStartupInfoA(0062fa04) ret=7bb18905
7935.026:0050:0054:Ret  KERNEL32.GetStartupInfoA() retval=7beca9c0 ret=7bb18905
7935.026:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000008,00000480) ret=7bb17d96
004c: create_file() = 0 { handle=0034 }
7935.026:0048:004c:trace:file:NtQueryDirectoryFile (0x34 (nil) (nil) (nil) 0x21cf28 0x21cf50 0x00002000 0x00000003 0x00000000 <null> 0x00000000
7935.026:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0x8, size 0x480, return 003B1B60, status 0.
7935.026:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b1b60 ret=7bb17d96
004c: get_handle_fd( handle=0034 )
7935.026:0050:0054:Call ntdll.RtlEnterCriticalSection(7bb46d80) ret=7bb19031
004c: *fd* 0034 -> 84
7935.026:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb19031
7935.026:0050:0054:Call ntdll.RtlInitializeCriticalSection(003b1b6c) ret=7bb19129
004c: get_handle_fd() = 0 { type=2, cacheable=1, access=00120089, options=00004021 }
7935.026:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7bb19129
7935.026:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bb46d80) ret=7bb19049
7935.026:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb19049
7935.026:0050:0054:Call ntdll.RtlEnterCriticalSection(003b1b6c) ret=7bb18a42
7935.026:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb18a42
004c: get_directory_cache_entry( handle=0034 )
7935.026:0050:0054:Call KERNEL32.GetStdHandle(fffffff6) ret=7bb18cb5
004c: get_directory_cache_entry() = 0 { entry=0, free={} }
7935.026:0050:0054:Call kernelbase.GetStdHandle(fffffff6) ret=7bf3cfb4
7935.026:0050:0054:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7935.026:0050:0054:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7bb18cb5
7935.026:0050:0054:Call KERNEL32.GetFileType(00000000) ret=7bb18cc2
7935.026:0050:0054:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7935.026:0048:004c:trace:file:append_entry long L"." short L"" mask <null>
7935.026:0050:0054:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004) ret=7bc1774f
7935.026:0048:004c:trace:file:append_entry long L".." short L"" mask <null>
7935.026:0050:0054:SysCall  NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004)
7935.027:0048:004c:trace:file:append_entry long L"sserife.fon" short L"" mask <null>
0054: get_handle_fd( handle=0000 )
7935.027:0048:004c:trace:file:append_entry long L"smae1255.fon" short L"" mask <null>
0054: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7935.027:0048:004c:trace:file:append_entry long L"coue1255.fon" short L"" mask <null>
7935.027:0048:004c:trace:file:append_entry long L"courer.fon" short L"" mask <null>
7935.027:0050:0054:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7935.027:0048:004c:trace:file:append_entry long L"smallee.fon" short L"" mask <null>
7935.027:0050:0054:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7935.027:0048:004c:trace:file:append_entry long L"tahoma.ttf" short L"" mask <null>
7935.027:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7935.027:0048:004c:trace:file:append_entry long L"couree.fon" short L"" mask <null>
7935.027:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7935.027:0048:004c:trace:file:append_entry long L"vgasys.fon" short L"" mask <null>
7935.027:0050:0054:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7935.027:0048:004c:trace:file:append_entry long L"vgas1256.fon" short L"" mask <null>
7935.027:0050:0054:Ret  KERNEL32.GetFileType() retval=00000000 ret=7bb18cc2
7935.027:0048:004c:trace:file:append_entry long L"smalleg.fon" short L"" mask <null>
7935.027:0050:0054:Call ntdll.RtlLeaveCriticalSection(003b1b6c) ret=7bb18e54
7935.027:0048:004c:trace:file:append_entry long L"sserifee.fon" short L"" mask <null>
7935.027:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb18e54
7935.027:0048:004c:trace:file:append_entry long L"sserifft.fon" short L"" mask <null>
7935.027:0050:0054:Call ntdll.RtlEnterCriticalSection(7bb46d80) ret=7bb18fc4
7935.027:0048:004c:trace:file:append_entry long L"sseriffr.fon" short L"" mask <null>
7935.027:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb18fc4
7935.027:0048:004c:trace:file:append_entry long L"sseriffg.fon" short L"" mask <null>
7935.027:0050:0054:Call ntdll.RtlInitializeCriticalSection(003b1b90) ret=7bb19161
7935.027:0048:004c:trace:file:append_entry long L"wingding.ttf" short L"" mask <null>
7935.027:0048:004c:trace:file:append_entry long L"coureg.fon" short L"" mask <null>
7935.027:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7bb19161
7935.027:0048:004c:trace:file:append_entry long L"cvgasys.fon" short L"" mask <null>
7935.027:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bb46d80) ret=7bb18fe2
7935.027:0048:004c:trace:file:append_entry long L"vgafix.fon" short L"" mask <null>
7935.027:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb18fe2
7935.027:0048:004c:trace:file:append_entry long L"jsmalle.fon" short L"" mask <null>
7935.027:0050:0054:Call ntdll.RtlEnterCriticalSection(003b1b90) ret=7bb18a9d
7935.027:0048:004c:trace:file:append_entry long L"vgasyse.fon" short L"" mask <null>
7935.027:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb18a9d
7935.027:0048:004c:trace:file:append_entry long L"ssef1255.fon" short L"" mask <null>
7935.027:0050:0054:Call KERNEL32.GetStdHandle(fffffff5) ret=7bb18c75
7935.027:0048:004c:trace:file:append_entry long L"vgas1257.fon" short L"" mask <null>
7935.027:0050:0054:Call kernelbase.GetStdHandle(fffffff5) ret=7bf3cfb4
7935.027:0048:004c:trace:file:append_entry long L"smaller.fon" short L"" mask <null>
7935.027:0050:0054:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7935.027:0048:004c:trace:file:append_entry long L"ssee1255.fon" short L"" mask <null>
7935.027:0050:0054:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7bb18c75
7935.027:0048:004c:trace:file:append_entry long L"sseriffe.fon" short L"" mask <null>
7935.027:0050:0054:Call KERNEL32.GetFileType(00000000) ret=7bb18c82
7935.027:0048:004c:trace:file:append_entry long L"marlett.ttf" short L"" mask <null>
7935.027:0050:0054:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7935.027:0048:004c:trace:file:append_entry long L"vgas874.fon" short L"" mask <null>
7935.027:0050:0054:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004) ret=7bc1774f
7935.027:0048:004c:trace:file:append_entry long L"sserifer.fon" short L"" mask <null>
7935.027:0050:0054:SysCall  NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004)
7935.027:0048:004c:trace:file:append_entry long L"vgasyst.fon" short L"" mask <null>
7935.027:0048:004c:trace:file:append_entry long L"vgas1255.fon" short L"" mask <null>
7935.027:0048:004c:trace:file:append_entry long L"couret.fon" short L"" mask <null>
0054: get_handle_fd( handle=0000 )
7935.028:0048:004c:trace:file:append_entry long L"ssee1256.fon" short L"" mask <null>
0054: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7935.028:0048:004c:trace:file:append_entry long L"symbol.ttf" short L"" mask <null>
7935.028:0048:004c:trace:file:append_entry long L"sserifet.fon" short L"" mask <null>
7935.028:0050:0054:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7935.028:0048:004c:trace:file:append_entry long L"coue1256.fon" short L"" mask <null>
7935.028:0050:0054:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7935.028:0048:004c:trace:file:append_entry long L"smallet.fon" short L"" mask <null>
7935.028:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7935.028:0048:004c:trace:file:append_entry long L"smae1257.fon" short L"" mask <null>
7935.028:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7935.028:0048:004c:trace:file:append_entry long L"smae1256.fon" short L"" mask <null>
7935.028:0050:0054:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7935.028:0050:0054:Ret  KERNEL32.GetFileType() retval=00000000 ret=7bb18c82
7935.028:0048:004c:trace:file:append_entry long L"ssef1256.fon" short L"" mask <null>
7935.028:0050:0054:Call ntdll.RtlLeaveCriticalSection(003b1b90) ret=7bb18d8c
7935.028:0048:004c:trace:file:append_entry long L"jvgafix.fon" short L"" mask <null>
7935.028:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb18d8c
7935.028:0048:004c:trace:file:append_entry long L"ssee1257.fon" short L"" mask <null>
7935.028:0050:0054:Call ntdll.RtlEnterCriticalSection(7bb46d80) ret=7bb18ffc
7935.028:0048:004c:trace:file:append_entry long L"coue1257.fon" short L"" mask <null>
7935.028:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb18ffc
7935.028:0048:004c:trace:file:append_entry long L"ssee874.fon" short L"" mask <null>
7935.028:0050:0054:Call ntdll.RtlInitializeCriticalSection(003b1bb4) ret=7bb19141
7935.028:0048:004c:trace:file:append_entry long L"hvgasys.fon" short L"" mask <null>
7935.028:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7bb19141
7935.028:0048:004c:trace:file:append_entry long L"webdings.ttf" short L"" mask <null>
7935.028:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bb46d80) ret=7bb1901a
7935.028:0048:004c:trace:file:append_entry long L"jvgasys.fon" short L"" mask <null>
7935.028:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb1901a
7935.028:0048:004c:trace:file:append_entry long L"sseriff.fon" short L"" mask <null>
7935.028:0050:0054:Call ntdll.RtlEnterCriticalSection(003b1bb4) ret=7bb18af8
7935.028:0048:004c:trace:file:append_entry long L"smalle.fon" short L"" mask <null>
7935.028:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb18af8
7935.028:0048:004c:trace:file:append_entry long L"ssef1257.fon" short L"" mask <null>
7935.028:0050:0054:Call KERNEL32.GetStdHandle(fffffff4) ret=7bb18c35
7935.028:0048:004c:trace:file:append_entry long L"coure.fon" short L"" mask <null>
7935.028:0050:0054:Call kernelbase.GetStdHandle(fffffff4) ret=7bf3cfb4
7935.028:0048:004c:trace:file:append_entry long L"tahomabd.ttf" short L"" mask <null>
7935.028:0050:0054:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7935.028:0048:004c:trace:file:append_entry long L"sserifeg.fon" short L"" mask <null>
7935.028:0050:0054:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7bb18c35
7935.028:0048:004c:trace:file:append_entry long L"vgasysr.fon" short L"" mask <null>
7935.028:0050:0054:Call KERNEL32.GetFileType(00000000) ret=7bb18c42
7935.028:0048:004c:trace:file:append_entry long L"svgasys.fon" short L"" mask <null>
7935.028:0050:0054:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7935.028:0048:004c:trace:file:append_entry long L"ssef874.fon" short L"" mask <null>
7935.028:0050:0054:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004) ret=7bc1774f
7935.028:0048:004c:trace:file:append_entry long L"vgasysg.fon" short L"" mask <null>
7935.028:0050:0054:SysCall  NtQueryVolumeInformationFile(00000000,0062f960,0062f958,00000008,00000004)
0054: get_handle_fd( handle=0000 )
0054: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7935.029:0048:004c:trace:file:init_cached_dir_data mask <null> found 58 files
7935.029:0048:004c:trace:file:init_cached_dir_data L"." L""
7935.029:0048:004c:trace:file:init_cached_dir_data L".." L""
7935.029:0050:0054:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7935.029:0048:004c:trace:file:init_cached_dir_data L"coue1255.fon" L""
7935.029:0050:0054:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7935.029:0048:004c:trace:file:init_cached_dir_data L"coue1256.fon" L""
7935.029:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7935.029:0048:004c:trace:file:init_cached_dir_data L"coue1257.fon" L""
7935.029:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7935.029:0048:004c:trace:file:init_cached_dir_data L"coure.fon" L""
7935.029:0050:0054:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7935.029:0048:004c:trace:file:init_cached_dir_data L"couree.fon" L""
7935.029:0050:0054:Ret  KERNEL32.GetFileType() retval=00000000 ret=7bb18c42
7935.029:0048:004c:trace:file:init_cached_dir_data L"coureg.fon" L""
7935.029:0050:0054:Call ntdll.RtlLeaveCriticalSection(003b1bb4) ret=7bb18d74
7935.029:0048:004c:trace:file:init_cached_dir_data L"courer.fon" L""
7935.029:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb18d74
7935.029:0048:004c:trace:file:init_cached_dir_data L"couret.fon" L""
7935.029:0050:0054:trace:msvcrt:msvcrt_init_io :handles (FFFFFFFE)(FFFFFFFE)(FFFFFFFE)
7935.029:0048:004c:trace:file:init_cached_dir_data L"cvgasys.fon" L""
7935.029:0050:0054:Call KERNEL32.GetCommandLineA() ret=7bb17ee2
7935.029:0048:004c:trace:file:init_cached_dir_data L"hvgasys.fon" L""
7935.029:0050:0054:Call kernelbase.GetCommandLineA() ret=7bf3cfb4
7935.029:0048:004c:trace:file:init_cached_dir_data L"jsmalle.fon" L""
7935.029:0050:0054:Ret  kernelbase.GetCommandLineA() retval=002823e8 ret=7bf3cfb4
7935.029:0048:004c:trace:file:init_cached_dir_data L"jvgafix.fon" L""
7935.029:0050:0054:Ret  KERNEL32.GetCommandLineA() retval=002823e8 ret=7bb17ee2
7935.029:0048:004c:trace:file:init_cached_dir_data L"jvgasys.fon" L""
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,0000002c) ret=7bb17d96
7935.029:0048:004c:trace:file:init_cached_dir_data L"marlett.ttf" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"smae1255.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"smae1256.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"smae1257.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"smalle.fon" L""
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x2c, return 003B1FF8, status 0.
7935.029:0048:004c:trace:file:init_cached_dir_data L"smallee.fon" L""
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b1ff8 ret=7bb17d96
7935.029:0048:004c:trace:file:init_cached_dir_data L"smalleg.fon" L""
7935.029:0050:0054:Call KERNEL32.GetCommandLineW() ret=7bb17ef7
7935.029:0048:004c:trace:file:init_cached_dir_data L"smaller.fon" L""
7935.029:0050:0054:Call kernelbase.GetCommandLineW() ret=7bf3cfb4
7935.029:0048:004c:trace:file:init_cached_dir_data L"smallet.fon" L""
7935.029:0050:0054:Ret  kernelbase.GetCommandLineW() retval=0024366e ret=7bf3cfb4
7935.029:0048:004c:trace:file:init_cached_dir_data L"ssee1255.fon" L""
7935.029:0050:0054:Ret  KERNEL32.GetCommandLineW() retval=0024366e ret=7bb17ef7
7935.029:0048:004c:trace:file:init_cached_dir_data L"ssee1256.fon" L""
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000058) ret=7bb17d96
7935.029:0048:004c:trace:file:init_cached_dir_data L"ssee1257.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"ssee874.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"ssef1255.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"ssef1256.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"ssef1257.fon" L""
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0x58, return 003B2040, status 0.
7935.029:0048:004c:trace:file:init_cached_dir_data L"ssef874.fon" L""
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b2040 ret=7bb17d96
7935.029:0048:004c:trace:file:init_cached_dir_data L"sserife.fon" L""
7935.029:0050:0054:Call KERNEL32.GetCommandLineW() ret=7bb17f06
7935.029:0048:004c:trace:file:init_cached_dir_data L"sserifee.fon" L""
7935.029:0050:0054:Call kernelbase.GetCommandLineW() ret=7bf3cfb4
7935.029:0048:004c:trace:file:init_cached_dir_data L"sserifeg.fon" L""
7935.029:0050:0054:Ret  kernelbase.GetCommandLineW() retval=0024366e ret=7bf3cfb4
7935.029:0048:004c:trace:file:init_cached_dir_data L"sserifer.fon" L""
7935.029:0050:0054:Ret  KERNEL32.GetCommandLineW() retval=0024366e ret=7bb17f06
7935.029:0048:004c:trace:file:init_cached_dir_data L"sserifet.fon" L""
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,000000b8) ret=7bb17f4e
7935.029:0048:004c:trace:file:init_cached_dir_data L"sseriff.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"sseriffe.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"sseriffg.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"sseriffr.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"sserifft.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"svgasys.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"symbol.ttf" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"tahoma.ttf" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"tahomabd.ttf" L""
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xb8, return 0027C9F8, status 0.
7935.029:0048:004c:trace:file:init_cached_dir_data L"vgafix.fon" L""
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=0027c9f8 ret=7bb17f4e
7935.029:0048:004c:trace:file:init_cached_dir_data L"vgas1255.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"vgas1256.fon" L""
7935.029:0050:0054:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027ca58 L"C:\\windows\\system32\\explorer.exe",ffffffff,00000000,00000000,00000000,00000000) ret=7bb060c8
7935.029:0048:004c:trace:file:init_cached_dir_data L"vgas1257.fon" L""
7935.029:0048:004c:trace:file:init_cached_dir_data L"vgas874.fon" L""
7935.029:0050:0054:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027ca58 L"C:\\windows\\system32\\explorer.exe",ffffffff,00000000,00000000,00000000,00000000) ret=7bf3cfb4
7935.029:0048:004c:trace:file:init_cached_dir_data L"vgasys.fon" L""
7935.029:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"C:\\windows\\system32\\explorer.exe\0000" -> (null), ret = 33
7935.029:0048:004c:trace:file:init_cached_dir_data L"vgasyse.fon" L""
7935.029:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000021 ret=7bf3cfb4
7935.029:0048:004c:trace:file:init_cached_dir_data L"vgasysg.fon" L""
7935.029:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000021 ret=7bb060c8
7935.029:0048:004c:trace:file:init_cached_dir_data L"vgasysr.fon" L""
7935.029:0050:0054:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027ca9a L"/desktop",ffffffff,00000000,00000000,00000000,00000000) ret=7bb060c8
7935.029:0048:004c:trace:file:init_cached_dir_data L"vgasyst.fon" L""
7935.029:0050:0054:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027ca9a L"/desktop",ffffffff,00000000,00000000,00000000,00000000) ret=7bf3cfb4
7935.029:0048:004c:trace:file:init_cached_dir_data L"webdings.ttf" L""
7935.029:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"/desktop\0000" -> (null), ret = 9
7935.029:0048:004c:trace:file:init_cached_dir_data L"wingding.ttf" L""
7935.029:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000009 ret=7bf3cfb4
7935.029:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000009 ret=7bb060c8
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000036) ret=7bb06102
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x36, return 00282908, status 0.
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00282908 ret=7bb06102
7935.029:0050:0054:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027ca58 L"C:\\windows\\system32\\explorer.exe",ffffffff,00282914,0000002a,00000000,00000000) ret=7bb06168
7935.029:0050:0054:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027ca58 L"C:\\windows\\system32\\explorer.exe",ffffffff,00282914,0000002a,00000000,00000000) ret=7bf3cfb4
7935.029:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"C:\\windows\\system32\\explorer.exe\0000" -> "C:\\windows\\system32\\explorer.exe\x00", ret = 33
7935.029:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000021 ret=7bf3cfb4
7935.029:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000021 ret=7bb06168
7935.029:0050:0054:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027ca9a L"/desktop",ffffffff,00282935,00000009,00000000,00000000) ret=7bb06168
7935.029:0050:0054:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027ca9a L"/desktop",ffffffff,00282935,00000009,00000000,00000000) ret=7bf3cfb4
7935.029:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"/desktop\0000" -> "/desktop\x00", ret = 9
7935.029:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000009 ret=7bf3cfb4
7935.029:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000009 ret=7bb06168
7935.029:0050:0054:Call KERNEL32.IsBadStringPtrW(003b2040,ffffffff) ret=7bb1833d
7935.029:0050:0054:Ret  KERNEL32.IsBadStringPtrW() retval=00000000 ret=7bb1833d
7935.029:0050:0054:trace:msvcrt:msvcrt_init_args got "\"C:\\windows\\system32\\explorer.exe\" /desktop", wide = L"\"C:\\windows\\system32\\explorer.exe\" /desktop" argc=2
7935.029:0050:0054:Call KERNEL32.GetVersionExW(0062f91c) ret=7bb1805b
7935.029:0050:0054:Call kernelbase.GetVersionExW(0062f91c) ret=7bf3cfb4
7935.029:0050:0054:Call ntdll.RtlRunOnceExecuteOnce(7bcb8c80,7bc70990,00000000,00000000) ret=7bc26189
7935.029:0050:0054:Ret  ntdll.RtlRunOnceExecuteOnce() retval=00000000 ret=7bc26189
7935.029:0050:0054:Call ntdll.wcscpy(0062f930,7bcb8cb4 L"") ret=7bc21d77
7935.029:0050:0054:Ret  ntdll.wcscpy() retval=0062f930 ret=7bc21d77
7935.029:0050:0054:Ret  kernelbase.GetVersionExW() retval=00000001 ret=7bf3cfb4
7935.029:0050:0054:Ret  KERNEL32.GetVersionExW() retval=00000001 ret=7bb1805b
7935.029:0050:0054:trace:msvcrt:msvcrt_init_args winver 00000602 winmajor 00000006 winminor 00000002 osver 000023f0
7935.029:0050:0054:Call KERNEL32.GetEnvironmentStringsA() ret=7bb0c016
7935.029:0050:0054:Call kernelbase.GetEnvironmentStringsA() ret=7bf3cfb4
7935.029:0050:0054:Call ntdll.RtlAcquirePebLock() ret=7bc158a1
7935.029:0050:0054:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc158a1
7935.029:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"WINEDEBUG=err+all,warn+all,fixme+all,trace+all\0000SHELL=/bin/bash\0000PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\0000GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\0000G_BROKEN_FILENAMES=1\0000HOSTNAME=atomak.arne"... -> (null), ret = 3285
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000cd5) ret=7bc15936
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xcd5, return 00282958, status 0.
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00282958 ret=7bc15936
7935.029:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"WINEDEBUG=err+all,warn+all,fixme+all,trace+all\0000SHELL=/bin/bash\0000PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\0000GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\0000G_BROKEN_FILENAMES=1\0000HOSTNAME=atomak.arne"... -> "WINEDEBUG=err+all,warn+all,fixme+all,trace+all\x00SHELL=/bin/bash\x00PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\x00GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\x00G_BROKEN_FILENAMES=1\x00HOSTNAME=atomak.arnet.org\x00"..., ret = 3285
7935.029:0050:0054:Call ntdll.RtlReleasePebLock() ret=7bc1597f
7935.029:0050:0054:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc1597f
7935.029:0050:0054:Ret  kernelbase.GetEnvironmentStringsA() retval=00282958 ret=7bf3cfb4
7935.029:0050:0054:Ret  KERNEL32.GetEnvironmentStringsA() retval=00282958 ret=7bb0c016
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(003b0000,00000000,00000d9d) ret=7bb17d96
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 003B0000, flags 0, size 0xd9d, return 003B20B0, status 0.
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=003b20b0 ret=7bb17d96
7935.029:0050:0054:Call KERNEL32.FreeEnvironmentStringsA(00282958) ret=7bb0c0e9
7935.029:0050:0054:Call kernelbase.FreeEnvironmentStringsA(00282958) ret=7bf3cfb4
7935.029:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00282958) ret=7bc106ac
7935.029:0048:004c:trace:file:NtQueryDirectoryFile => 0 (6910)
7935.029:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00282958, return 1, status 0.
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1255.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1255.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/coue1255.fon"
7935.029:0050:0054:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc106ac
7935.029:0050:0054:Ret  kernelbase.FreeEnvironmentStringsA() retval=00000001 ret=7bf3cfb4
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/coue1255.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0050:0054:Ret  KERNEL32.FreeEnvironmentStringsA() retval=00000001 ret=7bb0c0e9
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000104) ret=7bb1810a
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/coue1255.fon" index 0
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x104, return 00283648, status 0.
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/coue1255.fon"/0xb7c51000
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283648 ret=7bb1810a
7935.029:0050:0054:Call KERNEL32.GetModuleFileNameA(00000000,00283648,00000104) ret=7bb1812f
7935.029:0050:0054:Call kernelbase.GetModuleFileNameA(00000000,00283648,00000104) ret=7bf3cfb4
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000208) ret=7bc1aee2
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1256.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1256.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/coue1256.fon"
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/coue1256.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/coue1256.fon" index 0
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x208, return 00283768, status 0.
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283768 ret=7bc1aee2
7935.029:0050:0054:Call ntdll.LdrGetDllFullName(00000000,0062f840) ret=7bc1b3e8
7935.029:0050:0054:trace:module:LdrGetDllFullName module 00000000, name 0062F840.
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/coue1256.fon"/0xb7c51000
7935.029:0050:0054:Ret  ntdll.LdrGetDllFullName() retval=00000000 ret=7bc1b3e8
7935.029:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc1b400
7935.029:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc1b400
7935.029:0050:0054:trace:module:GetModuleFileNameW L"C:\\windows\\system32\\explorer.exe"
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1257.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1257.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/coue1257.fon"
7935.029:0050:0054:Call ntdll.RtlUnicodeToMultiByteN(00283648,00000104,0062f848,00283768,00000040) ret=7bc68ded
7935.029:0050:0054:Ret  ntdll.RtlUnicodeToMultiByteN() retval=00000000 ret=7bc68ded
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/coue1257.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00283768) ret=7bc1af2f
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/coue1257.fon" index 0
7935.029:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00283768, return 1, status 0.
7935.029:0050:0054:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc1af2f
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/coue1257.fon"/0xb7c51000
7935.029:0050:0054:Ret  kernelbase.GetModuleFileNameA() retval=00000020 ret=7bf3cfb4
7935.029:0050:0054:Ret  KERNEL32.GetModuleFileNameA() retval=00000020 ret=7bb1812f
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000208) ret=7bb18169
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\coure.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\coure.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/coure.fon"
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/coure.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/coure.fon" index 0
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x208, return 00283988, status 0.
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283988 ret=7bb18169
7935.029:0050:0054:Call KERNEL32.GetModuleFileNameW(00000000,00283988,00000104) ret=7bb1818e
7935.029:0050:0054:Call kernelbase.GetModuleFileNameW(00000000,00283988,00000104) ret=7bf3cfb4
7935.029:0050:0054:Call ntdll.LdrGetDllFullName(00000000,0062f864) ret=7bc1b3e8
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/coure.fon"/0xb7c51000
7935.029:0050:0054:trace:module:LdrGetDllFullName module 00000000, name 0062F864.
7935.029:0050:0054:Ret  ntdll.LdrGetDllFullName() retval=00000000 ret=7bc1b3e8
7935.029:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc1b400
7935.029:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc1b400
7935.029:0050:0054:trace:module:GetModuleFileNameW L"C:\\windows\\system32\\explorer.exe"
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\couree.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\couree.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/couree.fon"
7935.029:0050:0054:Ret  kernelbase.GetModuleFileNameW() retval=00000020 ret=7bf3cfb4
7935.029:0050:0054:Ret  KERNEL32.GetModuleFileNameW() retval=00000020 ret=7bb1818e
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/couree.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0050:0054:Call KERNEL32.SetConsoleCtrlHandler(7bb16df0,00000001) ret=7bb1956b
7935.029:0050:0054:Call kernelbase.SetConsoleCtrlHandler(7bb16df0,00000001) ret=7bf3cfb4
7935.029:0050:0054:trace:console:SetConsoleCtrlHandler (7BB16DF0,1)
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0050:0054:Call ntdll.RtlEnterCriticalSection(7bc7d060) ret=7bc4e36a
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/couree.fon" index 0
7935.029:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc4e36a
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000008) ret=7bc4e405
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/couree.fon"/0xb7c51000
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x8, return 00283BA8, status 0.
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\coureg.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\coureg.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/coureg.fon"
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283ba8 ret=7bc4e405
7935.029:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bc7d060) ret=7bc4e432
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/coureg.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc4e432
7935.029:0050:0054:Ret  kernelbase.SetConsoleCtrlHandler() retval=00000001 ret=7bf3cfb4
7935.029:0050:0054:Ret  KERNEL32.SetConsoleCtrlHandler() retval=00000001 ret=7bb1956b
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0050:0054:Call ntdll.LdrAddRefDll(00000001,7bad0000) ret=7badadc8
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/coureg.fon" index 0
7935.029:0050:0054:trace:module:LdrAddRefDll (L"msvcrt.dll") ldr.LoadCount: -1
7935.029:0050:0054:Ret  ntdll.LdrAddRefDll() retval=00000000 ret=7badadc8
7935.029:0050:0054:Call ntdll.NtQuerySystemTime(0062fa40) ret=7bb1872d
7935.029:0050:0054:SysCall  NtQuerySystemTime(0062fa40)
7935.029:0050:0054:SysRet   NtQuerySystemTime() retval=00000000
7935.029:0050:0054:Ret  ntdll.NtQuerySystemTime() retval=00000000 ret=7bb1872d
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/coureg.fon"/0xb7c51000
7935.029:0050:0054:trace:msvcrt:DllMain finished process init
7935.029:0050:0054:Ret  PE DLL (proc=7BADAF70,module=7BAD0000 L"msvcrt.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.029:0050:0054:trace:module:process_attach (L"msvcrt.dll",0062FD24) - END
7935.029:0050:0054:trace:module:process_attach (L"sechost.dll",0062FD24) - START
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\courer.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\courer.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/courer.fon"
7935.029:0050:0054:trace:module:process_attach (L"ucrtbase.dll",0062FD24) - START
7935.029:0050:0054:Call PE DLL (proc=7B9B7710,module=7B9A0000 L"ucrtbase.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/courer.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0050:0054:trace:msvcrt:DllMain (7B9A0000, DLL_PROCESS_ATTACH, 0062FD24) pid(50), tid(54), tls(0)
7935.029:0050:0054:Call KERNEL32.TlsAlloc() ret=7b9b752e
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0050:0054:Call kernelbase.TlsAlloc() ret=7bf3cfb4
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/courer.fon" index 0
7935.029:0050:0054:Call ntdll.RtlAcquirePebLock() ret=7bc570fb
7935.029:0050:0054:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc570fb
7935.029:0050:0054:Call ntdll.RtlFindClearBitsAndSet(7bfd5578,00000001,00000001) ret=7bc5711c
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/courer.fon"/0xb7c51000
7935.029:0050:0054:trace:ntdll:RtlFindClearBitsAndSet (7BFD5578,1,1)
7935.029:0050:0054:trace:ntdll:RtlFindClearBits (7BFD5578,1,1)
7935.029:0050:0054:trace:ntdll:RtlAreBitsClear (7BFD5578,1,1)
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\couret.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\couret.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/couret.fon"
7935.029:0050:0054:trace:ntdll:RtlAreBitsClear (7BFD5578,2,1)
7935.029:0050:0054:trace:ntdll:RtlSetBits (7BFD5578,2,1)
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/couret.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0050:0054:Ret  ntdll.RtlFindClearBitsAndSet() retval=00000002 ret=7bc5711c
7935.029:0050:0054:Call ntdll.RtlReleasePebLock() ret=7bc5713a
7935.029:0050:0054:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc5713a
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0050:0054:Ret  kernelbase.TlsAlloc() retval=00000002 ret=7bf3cfb4
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/couret.fon" index 0
7935.029:0050:0054:Ret  KERNEL32.TlsAlloc() retval=00000002 ret=7b9b752e
7935.029:0050:0054:trace:msvcrt:msvcrt_init_mt_locks initializing mtlocks
7935.029:0050:0054:Call KERNEL32.InitializeCriticalSectionEx(7ba6e320,00000000,10000000) ret=7ba000f5
7935.029:0050:0054:Call kernelbase.InitializeCriticalSectionEx(7ba6e320,00000000,10000000) ret=7bf3cfb4
7935.029:0050:0054:Call ntdll.RtlInitializeCriticalSectionEx(7ba6e320,00000000,10000000) ret=7bc26472
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/couret.fon"/0xb7c51000
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\cvgasys.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\cvgasys.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/cvgasys.fon"
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/cvgasys.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00283BC8, status 0.
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0050:0054:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/cvgasys.fon" index 0
7935.029:0050:0054:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7935.029:0050:0054:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7ba000f5
7935.029:0050:0054:trace:msvcrt:_lock (19)
7935.029:0050:0054:trace:msvcrt:_lock (17)
7935.029:0050:0054:Call ntdll.RtlEnterCriticalSection(7ba6e320) ret=7b9cdd3a
7935.029:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/cvgasys.fon"/0x7ed84000
7935.029:0050:0054:trace:msvcrt:_lock : creating lock #19
7935.029:0050:0054:Call KERNEL32.InitializeCriticalSectionEx(7ba6e358,00000000,10000000) ret=7b9cddb4
7935.029:0050:0054:Call kernelbase.InitializeCriticalSectionEx(7ba6e358,00000000,10000000) ret=7bf3cfb4
7935.029:0050:0054:Call ntdll.RtlInitializeCriticalSectionEx(7ba6e358,00000000,10000000) ret=7bc26472
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\hvgasys.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\hvgasys.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/hvgasys.fon"
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/hvgasys.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/hvgasys.fon" index 0
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00283C00, status 0.
7935.029:0050:0054:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7935.029:0050:0054:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7935.029:0050:0054:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7b9cddb4
7935.029:0050:0054:trace:msvcrt:_unlock (17)
7935.029:0050:0054:Call ntdll.RtlLeaveCriticalSection(7ba6e320) ret=7b9cddf0
7935.029:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9cddf0
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/hvgasys.fon"/0xb7c51000
7935.029:0050:0054:Call ntdll.RtlEnterCriticalSection(7ba6e358) ret=7b9cdd3a
7935.029:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000008) ret=7b9fec26
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\jsmalle.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\jsmalle.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/jsmalle.fon"
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/jsmalle.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/jsmalle.fon" index 0
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x8, return 00283C38, status 0.
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283c38 ret=7b9fec26
7935.029:0050:0054:trace:msvcrt:create_locinfo (0 C)
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,000000f0) ret=7b9fec26
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/jsmalle.fon"/0xb7c51000
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\jvgafix.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\jvgafix.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/jvgafix.fon"
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xf0, return 00283C58, status 0.
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/jvgafix.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283c58 ret=7b9fec26
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000002) ret=7b9fec26
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/jvgafix.fon" index 0
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/jvgafix.fon"/0xb7c51000
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2, return 00283D60, status 0.
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283d60 ret=7b9fec26
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000004) ret=7b9fec26
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\jvgasys.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\jvgasys.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/jvgasys.fon"
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/jvgasys.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.029:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.029:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/jvgasys.fon" index 0
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4, return 00283D80, status 0.
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283d80 ret=7b9fec26
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000002) ret=7b9fec26
7935.029:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/jvgasys.fon"/0xb7c51000
7935.029:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2, return 00283DA0, status 0.
7935.029:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\marlett.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\marlett.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/marlett.ttf"
7935.029:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283da0 ret=7b9fec26
7935.029:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000004) ret=7b9fec26
7935.029:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/marlett.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: open_mapping( access=00000004, attributes=00000000, rootdir=0000, name=L"\\NLS\\NlsSectionCP10000" )
7935.044:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4, return 00283DC0, status 0.
004c: open_mapping() = 0 { handle=0038 }
7935.044:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283dc0 ret=7b9fec26
7935.044:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000002) ret=7b9fec26
7935.044:0048:004c:trace:virtual:NtMapViewOfSection handle=0x38 process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x2
004c: get_mapping_info( handle=0038, access=00000004 )
004c: get_mapping_info() = 0 { size=00010222, flags=00800000, shared_file=0000, name_len=0, total=0, image={}, name=L"", exp_name="" }
7935.044:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2, return 00283DE0, status 0.
004c: get_handle_fd( handle=0038 )
7935.045:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283de0 ret=7b9fec26
004c: *fd* 0038 -> 73
7935.045:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000004) ret=7b9fec26
004c: get_handle_fd() = 0 { type=1, cacheable=1, access=00000004, options=00000020 }
7935.045:0048:004c:trace:virtual:map_view got mem in reserved area 0xd80000-0xd91000
7935.045:0048:004c:trace:virtual_ranges:free_ranges_insert_view 0xd80000 - 0xd91000, aligned 0xd80000 - 0xda0000.
7935.045:0048:004c:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7935.045:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4, return 00283E00, status 0.
7935.045:0048:004c:trace:virtual_ranges:dump_free_ranges 0x3f0000 - 0x400000.
7935.045:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283e00 ret=7b9fec26
7935.045:0048:004c:trace:virtual_ranges:dump_free_ranges 0xda0000 - 0x7fde0000.
7935.045:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000002) ret=7b9fec26
7935.045:0048:004c:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7935.045:0048:004c:trace:virtual:virtual_map_section handle=0x38 size=11000 offset=0
004c: map_view( mapping=0038, access=00000004, base=00d80000, size=00011000, start=00000000 )
004c: map_view() = 0
7935.045:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2, return 00283E20, status 0.
7935.045:0048:004c:trace:virtual:dump_view View: 0xd80000 - 0xd90fff c-r-- (file)
7935.045:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283e20 ret=7b9fec26
7935.045:0048:004c:trace:virtual:dump_view       0xd80000 - 0xd90fff c-r--
7935.045:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000004) ret=7b9fec26
004c: close_handle( handle=0038 )
004c: close_handle() = 0
7935.046:0048:004c:trace:font:unix_face_create parsed font names family_name L"Marlett", second_name L"Marlett", primary_seen 0, english_seen 1, full_name L"Marlett", style_name L"Regular"
7935.046:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4, return 00283E40, status 0.
7935.046:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283e40 ret=7b9fec26
7935.046:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000002) ret=7b9fec26
7935.046:0048:004c:trace:font:insert_face_in_family_list Adding face L"Marlett" in family L"Marlett" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\marlett.ttf"
7935.046:0048:004c:trace:font:add_unix_face fsCsb = 80000000 00000000/00000000 00000000 00000000 00000000
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1255.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1255.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smae1255.fon"
7935.046:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2, return 00283E60, status 0.
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smae1255.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283e60 ret=7b9fec26
7935.046:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000004) ret=7b9fec26
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smae1255.fon" index 0
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smae1255.fon"/0xb7c51000
7935.046:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4, return 00283E80, status 0.
7935.046:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283e80 ret=7b9fec26
7935.046:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000220) ret=7b9fec26
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1256.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1256.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smae1256.fon"
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smae1256.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smae1256.fon" index 0
7935.046:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x220, return 00283EA0, status 0.
7935.046:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00283ea0 ret=7b9fec26
7935.046:0050:0054:Call KERNEL32.GetCPInfo(00004e9f,0062f0d4) ret=7b9ed2ba
7935.046:0050:0054:Call kernelbase.GetCPInfo(00004e9f,0062f0d4) ret=7bf3cfb4
7935.046:0050:0054:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7935.046:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smae1256.fon"/0xb7c51000
7935.046:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7935.046:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
7935.046:0050:0054:Ret  kernelbase.GetCPInfo() retval=00000001 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.GetCPInfo() retval=00000001 ret=7b9ed2ba
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1257.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1257.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smae1257.fon"
7935.046:0050:0054:Call KERNEL32.MultiByteToWideChar(00004e9f,00000000,0062f0e8 "",00000100,0062f3e8,00000100) ret=7b9ed3cf
7935.046:0050:0054:Call kernelbase.MultiByteToWideChar(00004e9f,00000000,0062f0e8 "",00000100,0062f3e8,00000100) ret=7bf3cfb4
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smae1257.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7935.046:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7935.046:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smae1257.fon" index 0
7935.046:0050:0054:trace:nls:MultiByteToWideChar cp 20127 "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x8a\x8b\x8c\x8d\x8e\x8f\x90"... -> L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"..., ret = 256
7935.046:0050:0054:Ret  kernelbase.MultiByteToWideChar() retval=00000100 ret=7bf3cfb4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smae1257.fon"/0xb7c51000
7935.046:0050:0054:Ret  KERNEL32.MultiByteToWideChar() retval=00000100 ret=7b9ed3cf
7935.046:0050:0054:Call KERNEL32.GetStringTypeW(00000001,0062f3e8 L"",00000100,0062f1e8) ret=7b9ed40a
7935.046:0050:0054:Call kernelbase.GetStringTypeW(00000001,0062f3e8 L"",00000100,0062f1e8) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.GetStringTypeW() retval=00000001 ret=7bf3cfb4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smalle.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smalle.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smalle.fon"
7935.046:0050:0054:Ret  KERNEL32.GetStringTypeW() retval=00000001 ret=7b9ed40a
7935.046:0050:0054:Call KERNEL32.LCMapStringW(00000000,00000100,0062f3e8 L"",00000100,0062f5e8,00000100) ret=7b9ed445
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smalle.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call kernelbase.LCMapStringW(00000000,00000100,0062f3e8 L"",00000100,0062f5e8,00000100) ret=7bf3cfb4
7935.046:0050:0054:trace:nls:LCMapStringEx ((null),0x00000100,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"...,256,0062F5E8,256)
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smalle.fon" index 0
7935.046:0050:0054:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7b9ed445
7935.046:0050:0054:Call KERNEL32.LCMapStringW(00000000,00000200,0062f3e8 L"",00000100,0062f7e8,00000100) ret=7b9ed47d
7935.046:0050:0054:Call kernelbase.LCMapStringW(00000000,00000200,0062f3e8 L"",00000100,0062f7e8,00000100) ret=7bf3cfb4
7935.046:0050:0054:trace:nls:LCMapStringEx ((null),0x00000200,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"...,256,0062F7E8,256)
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smalle.fon"/0xb7c51000
7935.046:0050:0054:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7b9ed47d
7935.046:0050:0054:Call KERNEL32.WideCharToMultiByte(00004e9f,00000000,0062f3e8 L"",00000100,0062f0e8,00000100,00000000,00000000) ret=7b9ed50a
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallee.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallee.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smallee.fon"
7935.046:0050:0054:Call kernelbase.WideCharToMultiByte(00004e9f,00000000,0062f3e8 L"",00000100,0062f0e8,00000100,00000000,00000000) ret=7bf3cfb4
7935.046:0050:0054:Call ntdll.RtlEnterCriticalSection(7bc7d1a0) ret=7bc6b5fe
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smallee.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc6b5fe
7935.046:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bc7d1a0) ret=7bc6b649
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc6b649
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smallee.fon" index 0
7935.046:0050:0054:trace:nls:WideCharToMultiByte cp 20127 L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\007f\0000\0001\0002\0003\0004\0005\0006\0007"... -> "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\x7f\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12"..., ret = 256
7935.046:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000100 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000100 ret=7b9ed50a
7935.046:0050:0054:trace:msvcrt:_unlock (19)
7935.046:0050:0054:Call ntdll.RtlLeaveCriticalSection(7ba6e358) ret=7b9dd35c
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smallee.fon"/0xb7c51000
7935.046:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=00000000 ret=7bf3cfb4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smalleg.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smalleg.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smalleg.fon"
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=00000000 ret=7b9feb01
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smalleg.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000008,00000388) ret=7b9feb3f
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smalleg.fon" index 0
7935.046:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x388, return 002840D8, status 0.
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smalleg.fon"/0xb7c51000
7935.046:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=002840d8 ret=7b9feb3f
7935.046:0050:0054:Call KERNEL32.TlsSetValue(00000002,002840d8) ret=7b9feb5a
7935.046:0050:0054:Call kernelbase.TlsSetValue(00000002,002840d8) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.TlsSetValue() retval=00000001 ret=7bf3cfb4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smaller.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smaller.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smaller.fon"
7935.046:0050:0054:Ret  KERNEL32.TlsSetValue() retval=00000001 ret=7b9feb5a
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smaller.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:trace:msvcrt:_lock (19)
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smaller.fon" index 0
7935.046:0050:0054:Call ntdll.RtlEnterCriticalSection(7ba6e358) ret=7b9cdd3a
7935.046:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smaller.fon"/0xb7c51000
7935.046:0050:0054:trace:msvcrt:_unlock (19)
7935.046:0050:0054:Call ntdll.RtlLeaveCriticalSection(7ba6e358) ret=7b9dd35c
7935.046:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
7935.046:0050:0054:trace:msvcrt:_lock (25)
7935.046:0050:0054:trace:msvcrt:_lock (17)
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallet.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallet.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smallet.fon"
7935.046:0050:0054:Call ntdll.RtlEnterCriticalSection(7ba6e320) ret=7b9cdd3a
7935.046:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smallet.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:trace:msvcrt:_lock : creating lock #25
7935.046:0050:0054:Call KERNEL32.InitializeCriticalSectionEx(7ba6e400,00000000,10000000) ret=7b9cddb4
7935.046:0050:0054:Call kernelbase.InitializeCriticalSectionEx(7ba6e400,00000000,10000000) ret=7bf3cfb4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSectionEx(7ba6e400,00000000,10000000) ret=7bc26472
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smallet.fon" index 0
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smallet.fon"/0xb7c51000
7935.046:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00284478, status 0.
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1255.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1255.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssee1255.fon"
7935.046:0050:0054:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7b9cddb4
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssee1255.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:trace:msvcrt:_unlock (17)
7935.046:0050:0054:Call ntdll.RtlLeaveCriticalSection(7ba6e320) ret=7b9cddf0
7935.046:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9cddf0
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Call ntdll.RtlEnterCriticalSection(7ba6e400) ret=7b9cdd3a
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssee1255.fon" index 0
7935.046:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7935.046:0050:0054:trace:msvcrt:_unlock (25)
7935.046:0050:0054:Call ntdll.RtlLeaveCriticalSection(7ba6e400) ret=7b9dd35c
7935.046:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
7935.046:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000220) ret=7b9fec26
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssee1255.fon"/0x7ed83000
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1256.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1256.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssee1256.fon"
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssee1256.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x220, return 002844B0, status 0.
7935.046:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=002844b0 ret=7b9fec26
7935.046:0050:0054:Call KERNEL32.GetACP() ret=7b9ed28c
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Call kernelbase.GetACP() ret=7bf3cfb4
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssee1256.fon" index 0
7935.046:0050:0054:Ret  kernelbase.GetACP() retval=000004e2 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.GetACP() retval=000004e2 ret=7b9ed28c
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssee1256.fon"/0x7ed83000
7935.046:0050:0054:Call KERNEL32.GetUserDefaultLocaleName(0062f7e0,00000055) ret=7b9fa7c0
7935.046:0050:0054:Call kernelbase.GetUserDefaultLocaleName(0062f7e0,00000055) ret=7bf3cfb4
7935.046:0050:0054:Call ntdll.memcpy(0062f7e0,006821a8,0000000c) ret=7bc73227
7935.046:0050:0054:Ret  ntdll.memcpy() retval=0062f7e0 ret=7bc73227
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1257.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1257.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssee1257.fon"
7935.046:0050:0054:Ret  kernelbase.GetUserDefaultLocaleName() retval=00000006 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.GetUserDefaultLocaleName() retval=00000006 ret=7b9fa7c0
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssee1257.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssee1257.fon" index 0
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssee1257.fon"/0x7ed83000
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee874.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee874.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssee874.fon"
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssee874.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:trace:msvcrt:_strtoi64_l ("1250" 00000000 10 00000000)
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssee874.fon" index 0
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssee874.fon"/0x7ed83000
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1255.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1255.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssef1255.fon"
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssef1255.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssef1255.fon" index 0
7935.046:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.046:0050:0054:Call KERNEL32.IsValidCodePage(000004e2) ret=7b9fa81e
7935.046:0050:0054:Call kernelbase.IsValidCodePage(000004e2) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.IsValidCodePage() retval=00000001 ret=7bf3cfb4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssef1255.fon"/0x7ed84000
7935.046:0050:0054:Ret  KERNEL32.IsValidCodePage() retval=00000001 ret=7b9fa81e
7935.046:0050:0054:Call KERNEL32.LocaleNameToLCID(0062f7e0 L"cs-CZ",08000000) ret=7b9ed889
7935.046:0050:0054:Call kernelbase.LocaleNameToLCID(0062f7e0 L"cs-CZ",08000000) ret=7bf3cfb4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1256.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1256.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssef1256.fon"
7935.046:0050:0054:Ret  kernelbase.LocaleNameToLCID() retval=00000405 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.LocaleNameToLCID() retval=00000405 ret=7b9ed889
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssef1256.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call KERNEL32.GetCPInfo(000004e2,0062f0cc) ret=7b9ed2ba
7935.046:0050:0054:Call kernelbase.GetCPInfo(000004e2,0062f0cc) ret=7bf3cfb4
7935.046:0050:0054:Ret  kernelbase.GetCPInfo() retval=00000001 ret=7bf3cfb4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  KERNEL32.GetCPInfo() retval=00000001 ret=7b9ed2ba
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssef1256.fon" index 0
7935.046:0050:0054:Call KERNEL32.MultiByteToWideChar(000004e2,00000000,0062f0e0 "",00000100,0062f3e0,00000100) ret=7b9ed3cf
7935.046:0050:0054:Call kernelbase.MultiByteToWideChar(000004e2,00000000,0062f0e0 "",00000100,0062f3e0,00000100) ret=7bf3cfb4
7935.046:0050:0054:trace:nls:MultiByteToWideChar cp 1250 "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x8a\x8b\x8c\x8d\x8e\x8f\x90"... -> L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"..., ret = 256
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssef1256.fon"/0x7ed84000
7935.046:0050:0054:Ret  kernelbase.MultiByteToWideChar() retval=00000100 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.MultiByteToWideChar() retval=00000100 ret=7b9ed3cf
7935.046:0050:0054:Call KERNEL32.GetStringTypeW(00000001,0062f3e0 L"",00000100,0062f1e0) ret=7b9ed40a
7935.046:0050:0054:Call kernelbase.GetStringTypeW(00000001,0062f3e0 L"",00000100,0062f1e0) ret=7bf3cfb4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1257.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1257.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssef1257.fon"
7935.046:0050:0054:Ret  kernelbase.GetStringTypeW() retval=00000001 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.GetStringTypeW() retval=00000001 ret=7b9ed40a
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssef1257.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call KERNEL32.LCMapStringW(00000405,00000100,0062f3e0 L"",00000100,0062f5e0,00000100) ret=7b9ed445
7935.046:0050:0054:Call kernelbase.LCMapStringW(00000405,00000100,0062f3e0 L"",00000100,0062f5e0,00000100) ret=7bf3cfb4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:trace:nls:LCMapStringEx ((null),0x00000100,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"...,256,0062F5E0,256)
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssef1257.fon" index 0
7935.046:0050:0054:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7b9ed445
7935.046:0050:0054:Call KERNEL32.LCMapStringW(00000405,00000200,0062f3e0 L"",00000100,0062f7e0,00000100) ret=7b9ed47d
7935.046:0050:0054:Call kernelbase.LCMapStringW(00000405,00000200,0062f3e0 L"",00000100,0062f7e0,00000100) ret=7bf3cfb4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssef1257.fon"/0x7ed84000
7935.046:0050:0054:trace:nls:LCMapStringEx ((null),0x00000200,L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\\]^_`abcdefghijklmnopqrstuvwxyz{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"...,256,0062F7E0,256)
7935.046:0050:0054:Ret  kernelbase.LCMapStringW() retval=00000100 ret=7bf3cfb4
7935.046:0050:0054:Ret  KERNEL32.LCMapStringW() retval=00000100 ret=7b9ed47d
7935.046:0050:0054:Call KERNEL32.WideCharToMultiByte(000004e2,00000000,0062f3e0 L"",00000100,0062f0e0,00000100,00000000,00000000) ret=7b9ed50a
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef874.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef874.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssef874.fon"
7935.046:0050:0054:Call kernelbase.WideCharToMultiByte(000004e2,00000000,0062f3e0 L"",00000100,0062f0e0,00000100,00000000,00000000) ret=7bf3cfb4
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssef874.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:trace:nls:WideCharToMultiByte cp 1250 L"\0000\0001\0002\0003\0004\0005\0006\0007\0008\t\n\000b\000c\r\000e\000f\0010\0011\0012\0013\0014\0015\0016\0017\0018\0019\001a\001b\001c\001d\001e\001f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\007f\20ac\0081\201a\0083\201e\2026\2020\2021"... -> "\x00\x01\x02\x03\x04\x05\x06\x07\x08\t\n\x0b\x0c\r\x0e\x0f\x10\x11\x12\x13\x14\x15\x16\x17\x18\x19\x1a\x1b\x1c\x1d\x1e\x1f !\"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~\x7f\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x9a\x8b\x9c\x9d\x9e\x9f\x90"..., ret = 256
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000100 ret=7bf3cfb4
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssef874.fon" index 0
7935.046:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000100 ret=7b9ed50a
7935.046:0050:0054:trace:msvcrt:_lock (25)
7935.046:0050:0054:Call ntdll.RtlEnterCriticalSection(7ba6e400) ret=7b9cdd3a
7935.046:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7935.046:0050:0054:trace:msvcrt:_unlock (25)
7935.046:0050:0054:Call ntdll.RtlLeaveCriticalSection(7ba6e400) ret=7b9dd35c
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssef874.fon"/0x7ed84000
7935.046:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
7935.046:0050:0054:Call KERNEL32.IsProcessorFeaturePresent(0000000a) ret=7ba000a1
7935.046:0050:0054:Call kernelbase.IsProcessorFeaturePresent(0000000a) ret=7bf3cfb4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserife.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserife.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserife.fon"
7935.046:0050:0054:Call ntdll.RtlIsProcessorFeaturePresent(0000000a) ret=7bc28a02
7935.046:0050:0054:SysCall  NtWow64IsProcessorFeaturePresent(0000000a)
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserife.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:SysRet   NtWow64IsProcessorFeaturePresent() retval=00000001
7935.046:0050:0054:Ret  ntdll.RtlIsProcessorFeaturePresent() retval=00000001 ret=7bc28a02
7935.046:0050:0054:Ret  kernelbase.IsProcessorFeaturePresent() retval=00000001 ret=7bf3cfb4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  KERNEL32.IsProcessorFeaturePresent() retval=00000001 ret=7ba000a1
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserife.fon" index 0
7935.046:0050:0054:Call KERNEL32.GetStartupInfoA(0062f9cc) ret=7b9ff775
7935.046:0050:0054:Ret  KERNEL32.GetStartupInfoA() retval=7beca9c0 ret=7b9ff775
7935.046:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000008,00001000) ret=7b9fec26
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserife.fon"/0x7ed83000
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifee.fon"
7935.046:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x1000, return 002846E8, status 0.
7935.046:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=002846e8 ret=7b9fec26
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifee.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002846e8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284728) ret=7b9ffbf4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifee.fon" index 0
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284768) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002847a8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserifee.fon"/0xb7c50000
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002847e8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284828) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifeg.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifeg.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifeg.fon"
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284868) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifeg.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002848a8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002848e8) ret=7b9ffbf4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifeg.fon" index 0
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284928) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284968) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002849a8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserifeg.fon"/0x7ed83000
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002849e8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284a28) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifer.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifer.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifer.fon"
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284a68) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifer.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284aa8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284ae8) ret=7b9ffbf4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifer.fon" index 0
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284b28) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284b68) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284ba8) ret=7b9ffbf4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserifer.fon"/0x7ed82000
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284be8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284c28) ret=7b9ffbf4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifet.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifet.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifet.fon"
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284c68) ret=7b9ffbf4
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifet.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284ca8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284ce8) ret=7b9ffbf4
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifet.fon" index 0
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284d28) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284d68) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284da8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserifet.fon"/0x7ed83000
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284de8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284e28) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284e68) ret=7b9ffbf4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriff.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriff.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sseriff.fon"
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284ea8) ret=7b9ffbf4
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sseriff.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284ee8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284f28) ret=7b9ffbf4
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sseriff.fon" index 0
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284f68) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284fa8) ret=7b9ffbf4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sseriff.fon"/0x7ed84000
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00284fe8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285028) ret=7b9ffbf4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffe.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffe.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sseriffe.fon"
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285068) ret=7b9ffbf4
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sseriffe.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002850a8) ret=7b9ffbf4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sseriffe.fon" index 0
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002850e8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285128) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285168) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sseriffe.fon"/0xb7c51000
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002851a8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002851e8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffg.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffg.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sseriffg.fon"
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285228) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sseriffg.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285268) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002852a8) ret=7b9ffbf4
7935.046:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sseriffg.fon" index 0
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002852e8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285328) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285368) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sseriffg.fon"/0x7ed84000
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002853a8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(002853e8) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285428) ret=7b9ffbf4
7935.046:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.046:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffr.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffr.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sseriffr.fon"
7935.062:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285468) ret=7b9ffbf4
7935.062:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.062:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sseriffr.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.062:0050:0054:Call ntdll.RtlInitializeCriticalSection(002854a8) ret=7b9ffbf4
7935.062:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.062:0050:0054:Call ntdll.RtlInitializeCriticalSection(002854e8) ret=7b9ffbf4
7935.062:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.062:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.062:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sseriffr.fon" index 0
7935.062:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285528) ret=7b9ffbf4
7935.062:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.062:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285568) ret=7b9ffbf4
7935.062:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.062:0050:0054:Call ntdll.RtlInitializeCriticalSection(002855a8) ret=7b9ffbf4
7935.062:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.062:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sseriffr.fon"/0x7ed84000
7935.062:0050:0054:Call ntdll.RtlInitializeCriticalSection(002855e8) ret=7b9ffbf4
7935.062:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.062:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285628) ret=7b9ffbf4
7935.062:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.062:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifft.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifft.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifft.fon"
7935.062:0050:0054:Call ntdll.RtlInitializeCriticalSection(00285668) ret=7b9ffbf4
7935.062:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.062:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifft.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.062:0050:0054:Call ntdll.RtlInitializeCriticalSection(002856a8) ret=7b9ffbf4
7935.062:0050:0054:Ret  ntdll.RtlInitializeCriticalSection() retval=00000000 ret=7b9ffbf4
7935.062:0050:0054:Call ntdll.RtlEnterCriticalSection(002846e8) ret=7b9ff883
7935.062:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.062:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9ff883
7935.062:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifft.fon" index 0
7935.062:0050:0054:Call KERNEL32.GetStdHandle(fffffff6) ret=7b9ffaad
7935.062:0050:0054:Call kernelbase.GetStdHandle(fffffff6) ret=7bf3cfb4
7935.062:0050:0054:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7935.062:0050:0054:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7b9ffaad
7935.062:0050:0054:Call KERNEL32.GetFileType(00000000) ret=7b9ffaba
7935.062:0050:0054:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7935.062:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserifft.fon"/0x7ed84000
7935.062:0050:0054:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004) ret=7bc1774f
7935.062:0050:0054:SysCall  NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004)
7935.062:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\svgasys.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\svgasys.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/svgasys.fon"
7935.063:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/svgasys.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
0054: get_handle_fd( handle=0000 )
0054: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7935.063:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.063:0050:0054:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7935.063:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/svgasys.fon" index 0
7935.063:0050:0054:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7935.063:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7935.063:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7935.063:0050:0054:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7935.063:0050:0054:Ret  KERNEL32.GetFileType() retval=00000000 ret=7b9ffaba
7935.063:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/svgasys.fon"/0x7ed84000
7935.063:0050:0054:Call ntdll.RtlLeaveCriticalSection(002846e8) ret=7b9ff8a9
7935.063:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9ff8a9
7935.063:0050:0054:Call ntdll.RtlEnterCriticalSection(00284728) ret=7b9ff8ce
7935.063:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9ff8ce
7935.063:0050:0054:Call KERNEL32.GetStdHandle(fffffff5) ret=7b9ffa6d
7935.063:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\symbol.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\symbol.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/symbol.ttf"
7935.063:0050:0054:Call kernelbase.GetStdHandle(fffffff5) ret=7bf3cfb4
7935.063:0050:0054:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7935.063:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/symbol.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.063:0050:0054:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7b9ffa6d
7935.063:0050:0054:Call KERNEL32.GetFileType(00000000) ret=7b9ffa7a
7935.063:0050:0054:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7935.063:0050:0054:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004) ret=7bc1774f
7935.063:0048:004c:trace:font:unix_face_create parsed font names family_name L"Symbol", second_name L"Symbol", primary_seen 0, english_seen 1, full_name L"Symbol", style_name L"Regular"
7935.063:0050:0054:SysCall  NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004)
7935.063:0048:004c:trace:font:insert_face_in_family_list Adding face L"Symbol" in family L"Symbol" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\symbol.ttf"
7935.063:0048:004c:trace:font:add_unix_face fsCsb = 80000000 00000000/00000000 00000000 00000000 00000000
0054: get_handle_fd( handle=0000 )
0054: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7935.064:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahoma.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahoma.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/tahoma.ttf"
7935.064:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/tahoma.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.064:0050:0054:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7935.064:0050:0054:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7935.064:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported sfnt font: embedded bitmap data.
7935.064:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7935.064:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/tahoma.ttf" index 0
7935.064:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7935.064:0050:0054:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7935.064:0050:0054:Ret  KERNEL32.GetFileType() retval=00000000 ret=7b9ffa7a
7935.064:0050:0054:Call ntdll.RtlLeaveCriticalSection(00284728) ret=7b9ff8f4
7935.064:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9ff8f4
7935.064:0050:0054:Call ntdll.RtlEnterCriticalSection(00284768) ret=7b9ff91c
7935.064:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9ff91c
7935.064:0050:0054:Call KERNEL32.GetStdHandle(fffffff4) ret=7b9ffa2d
7935.064:0048:004c:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.064:0050:0054:Call kernelbase.GetStdHandle(fffffff4) ret=7bf3cfb4
7935.064:0050:0054:Ret  kernelbase.GetStdHandle() retval=00000000 ret=7bf3cfb4
7935.064:0048:004c:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.064:0050:0054:Ret  KERNEL32.GetStdHandle() retval=00000000 ret=7b9ffa2d
7935.064:0048:004c:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.064:0050:0054:Call KERNEL32.GetFileType(00000000) ret=7b9ffa3a
7935.064:0048:004c:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.064:0050:0054:Call kernelbase.GetFileType(00000000) ret=7bf3cfb4
7935.064:0048:004c:trace:font:get_face_name name 2 found platform 3 lang 0409 L"Regular"
7935.064:0050:0054:Call ntdll.NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004) ret=7bc1774f
7935.064:0048:004c:trace:font:get_face_name name 4 found platform 3 lang 0409 L"Tahoma"
7935.064:0050:0054:SysCall  NtQueryVolumeInformationFile(00000000,0062f920,0062f918,00000008,00000004)
7935.064:0048:004c:trace:font:insert_face_in_family_list Adding face L"Tahoma" in family L"Tahoma" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahoma.ttf"
7935.065:0048:004c:trace:font:add_unix_face fsCsb = 20000057 00080000/800022ef c000205a 00000008 00000000
0054: get_handle_fd( handle=0000 )
0054: get_handle_fd() = INVALID_HANDLE { type=0, cacheable=0, access=00000000, options=00000000 }
7935.065:0050:0054:SysRet   NtQueryVolumeInformationFile() retval=c0000008
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahomabd.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahomabd.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/tahomabd.ttf"
7935.065:0050:0054:Ret  ntdll.NtQueryVolumeInformationFile() retval=c0000008 ret=7bc1774f
7935.065:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000008) ret=7bc177b1
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/tahomabd.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000006 ret=7bc177b1
7935.065:0050:0054:Ret  kernelbase.GetFileType() retval=00000000 ret=7bf3cfb4
7935.065:0050:0054:Ret  KERNEL32.GetFileType() retval=00000000 ret=7b9ffa3a
7935.065:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported sfnt font: embedded bitmap data.
7935.065:0050:0054:Call ntdll.RtlLeaveCriticalSection(00284768) ret=7b9ff942
7935.065:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/tahomabd.ttf" index 0
7935.065:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9ff942
7935.065:0050:0054:trace:msvcrt:msvcrt_init_io :handles (FFFFFFFE)(FFFFFFFE)(FFFFFFFE)
7935.065:0050:0054:Call KERNEL32.InitializeCriticalSectionEx(7ba6d160,00000000,10000000) ret=7b9ffaf4
7935.065:0050:0054:Call kernelbase.InitializeCriticalSectionEx(7ba6d160,00000000,10000000) ret=7bf3cfb4
7935.065:0050:0054:Call ntdll.RtlInitializeCriticalSectionEx(7ba6d160,00000000,10000000) ret=7bc26472
7935.065:0048:004c:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.065:0048:004c:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.065:0048:004c:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.065:0048:004c:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.065:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00285700, status 0.
7935.065:0048:004c:trace:font:get_face_name name 2 found platform 3 lang 0409 L"Bold"
7935.065:0050:0054:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7935.065:0048:004c:trace:font:get_face_name name 4 found platform 3 lang 0409 L"Tahoma Bold"
7935.065:0050:0054:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7935.065:0050:0054:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7b9ffaf4
7935.065:0050:0054:Call KERNEL32.InitializeCriticalSectionEx(7ba6d198,00000000,10000000) ret=7b9ff9f2
7935.065:0048:004c:trace:font:insert_face_in_family_list Adding face L"Tahoma Bold" in family L"Tahoma" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahomabd.ttf"
7935.065:0050:0054:Call kernelbase.InitializeCriticalSectionEx(7ba6d198,00000000,10000000) ret=7bf3cfb4
7935.065:0048:004c:trace:font:add_unix_face fsCsb = 20000057 00080000/800022ef c000205a 00000008 00000000
7935.065:0050:0054:Call ntdll.RtlInitializeCriticalSectionEx(7ba6d198,00000000,10000000) ret=7bc26472
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgafix.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgafix.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgafix.fon"
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgafix.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00285738, status 0.
7935.065:0050:0054:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7935.065:0050:0054:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7935.065:0050:0054:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7b9ff9f2
7935.065:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.065:0050:0054:Call KERNEL32.InitializeCriticalSectionEx(7ba6d1d0,00000000,10000000) ret=7b9ff9f2
7935.065:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgafix.fon" index 0
7935.065:0050:0054:Call kernelbase.InitializeCriticalSectionEx(7ba6d1d0,00000000,10000000) ret=7bf3cfb4
7935.065:0050:0054:Call ntdll.RtlInitializeCriticalSectionEx(7ba6d1d0,00000000,10000000) ret=7bc26472
7935.065:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgafix.fon"/0xb7c51000
7935.065:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 00285770, status 0.
7935.065:0050:0054:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1255.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1255.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgas1255.fon"
7935.065:0050:0054:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7935.065:0050:0054:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7b9ff9f2
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgas1255.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0050:0054:Call KERNEL32.GetCommandLineA() ret=7b9fed72
7935.065:0050:0054:Call kernelbase.GetCommandLineA() ret=7bf3cfb4
7935.065:0050:0054:Ret  kernelbase.GetCommandLineA() retval=002823e8 ret=7bf3cfb4
7935.065:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.065:0050:0054:Ret  KERNEL32.GetCommandLineA() retval=002823e8 ret=7b9fed72
7935.065:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgas1255.fon" index 0
7935.065:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,0000002c) ret=7b9fec26
7935.065:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgas1255.fon"/0xb7c51000
7935.065:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2c, return 002857A8, status 0.
7935.065:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=002857a8 ret=7b9fec26
7935.065:0050:0054:Call KERNEL32.GetCommandLineW() ret=7b9fed87
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1256.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1256.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgas1256.fon"
7935.065:0050:0054:Call kernelbase.GetCommandLineW() ret=7bf3cfb4
7935.065:0050:0054:Ret  kernelbase.GetCommandLineW() retval=0024366e ret=7bf3cfb4
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgas1256.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0050:0054:Ret  KERNEL32.GetCommandLineW() retval=0024366e ret=7b9fed87
7935.065:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000058) ret=7b9fec26
7935.065:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.065:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgas1256.fon" index 0
7935.065:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 0027F300, status 0.
7935.065:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgas1256.fon"/0xb7c51000
7935.065:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=0027f300 ret=7b9fec26
7935.065:0050:0054:Call KERNEL32.GetCommandLineW() ret=7b9fed96
7935.065:0050:0054:Call kernelbase.GetCommandLineW() ret=7bf3cfb4
7935.065:0050:0054:Ret  kernelbase.GetCommandLineW() retval=0024366e ret=7bf3cfb4
7935.065:0050:0054:Ret  KERNEL32.GetCommandLineW() retval=0024366e ret=7b9fed96
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1257.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1257.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgas1257.fon"
7935.065:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,000000b8) ret=7b9fedde
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgas1257.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.065:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgas1257.fon" index 0
7935.065:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xb8, return 0027CAC8, status 0.
7935.065:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=0027cac8 ret=7b9fedde
7935.065:0050:0054:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027cb28 L"C:\\windows\\system32\\explorer.exe",ffffffff,00000000,00000000,00000000,00000000) ret=7b9e8338
7935.065:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgas1257.fon"/0xb7c51000
7935.065:0050:0054:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027cb28 L"C:\\windows\\system32\\explorer.exe",ffffffff,00000000,00000000,00000000,00000000) ret=7bf3cfb4
7935.065:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"C:\\windows\\system32\\explorer.exe\0000" -> (null), ret = 33
7935.065:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000021 ret=7bf3cfb4
7935.065:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000021 ret=7b9e8338
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas874.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas874.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgas874.fon"
7935.065:0050:0054:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027cb6a L"/desktop",ffffffff,00000000,00000000,00000000,00000000) ret=7b9e8338
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgas874.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0050:0054:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027cb6a L"/desktop",ffffffff,00000000,00000000,00000000,00000000) ret=7bf3cfb4
7935.065:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.065:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"/desktop\0000" -> (null), ret = 9
7935.065:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgas874.fon" index 0
7935.065:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000009 ret=7bf3cfb4
7935.065:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000009 ret=7b9e8338
7935.065:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000036) ret=7b9e8372
7935.065:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgas874.fon"/0xb7c51000
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasys.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasys.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasys.fon"
7935.065:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x36, return 00285808, status 0.
7935.065:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00285808 ret=7b9e8372
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasys.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0050:0054:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027cb28 L"C:\\windows\\system32\\explorer.exe",ffffffff,00285814,0000002a,00000000,00000000) ret=7b9e83d8
7935.065:0050:0054:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027cb28 L"C:\\windows\\system32\\explorer.exe",ffffffff,00285814,0000002a,00000000,00000000) ret=7bf3cfb4
7935.065:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.065:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"C:\\windows\\system32\\explorer.exe\0000" -> "C:\\windows\\system32\\explorer.exe\x00", ret = 33
7935.065:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasys.fon" index 0
7935.065:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000021 ret=7bf3cfb4
7935.065:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000021 ret=7b9e83d8
7935.065:0050:0054:Call KERNEL32.WideCharToMultiByte(00000000,00000000,0027cb6a L"/desktop",ffffffff,00285835,00000009,00000000,00000000) ret=7b9e83d8
7935.065:0050:0054:Call kernelbase.WideCharToMultiByte(00000000,00000000,0027cb6a L"/desktop",ffffffff,00285835,00000009,00000000,00000000) ret=7bf3cfb4
7935.065:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"/desktop\0000" -> "/desktop\x00", ret = 9
7935.065:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgasys.fon"/0xb7c51000
7935.065:0050:0054:Ret  kernelbase.WideCharToMultiByte() retval=00000009 ret=7bf3cfb4
7935.065:0050:0054:Ret  KERNEL32.WideCharToMultiByte() retval=00000009 ret=7b9e83d8
7935.065:0050:0054:Call KERNEL32.IsBadStringPtrW(0027f300,ffffffff) ret=7b9ff1cd
7935.065:0050:0054:Ret  KERNEL32.IsBadStringPtrW() retval=00000000 ret=7b9ff1cd
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyse.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyse.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasyse.fon"
7935.065:0050:0054:trace:msvcrt:msvcrt_init_args got "\"C:\\windows\\system32\\explorer.exe\" /desktop", wide = L"\"C:\\windows\\system32\\explorer.exe\" /desktop" argc=2
7935.065:0050:0054:Call KERNEL32.GetVersionExW(0062f8e4) ret=7b9feeeb
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasyse.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0050:0054:Call kernelbase.GetVersionExW(0062f8e4) ret=7bf3cfb4
7935.065:0050:0054:Call ntdll.RtlRunOnceExecuteOnce(7bcb8c80,7bc70990,00000000,00000000) ret=7bc26189
7935.065:0050:0054:Ret  ntdll.RtlRunOnceExecuteOnce() retval=00000000 ret=7bc26189
7935.065:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.065:0050:0054:Call ntdll.wcscpy(0062f8f8,7bcb8cb4 L"") ret=7bc21d77
7935.065:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasyse.fon" index 0
7935.065:0050:0054:Ret  ntdll.wcscpy() retval=0062f8f8 ret=7bc21d77
7935.065:0050:0054:Ret  kernelbase.GetVersionExW() retval=00000001 ret=7bf3cfb4
7935.065:0050:0054:Ret  KERNEL32.GetVersionExW() retval=00000001 ret=7b9feeeb
7935.065:0050:0054:trace:msvcrt:msvcrt_init_args winver 00000602 winmajor 00000006 winminor 00000002 osver 000023f0
7935.065:0050:0054:Call KERNEL32.GetEnvironmentStringsA() ret=7b9eef76
7935.065:0050:0054:Call kernelbase.GetEnvironmentStringsA() ret=7bf3cfb4
7935.065:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgasyse.fon"/0xb7c51000
7935.065:0050:0054:Call ntdll.RtlAcquirePebLock() ret=7bc158a1
7935.065:0050:0054:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc158a1
7935.065:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"WINEDEBUG=err+all,warn+all,fixme+all,trace+all\0000SHELL=/bin/bash\0000PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\0000GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\0000G_BROKEN_FILENAMES=1\0000HOSTNAME=atomak.arne"... -> (null), ret = 3285
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasysg.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasysg.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasysg.fon"
7935.065:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000cd5) ret=7bc15936
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasysg.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.065:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasysg.fon" index 0
7935.065:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xcd5, return 002861C8, status 0.
7935.065:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=002861c8 ret=7bc15936
7935.065:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgasysg.fon"/0xb7c51000
7935.065:0050:0054:trace:nls:WideCharToMultiByte cp 0 L"WINEDEBUG=err+all,warn+all,fixme+all,trace+all\0000SHELL=/bin/bash\0000PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\0000GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\0000G_BROKEN_FILENAMES=1\0000HOSTNAME=atomak.arne"... -> "WINEDEBUG=err+all,warn+all,fixme+all,trace+all\x00SHELL=/bin/bash\x00PKG_CONFIG_PATH=/usr/local/lib/pkgconfig:/usr/local/share/pkgconfig:/usr/lib/pkgconfig:/usr/share/pkgconfig\x00GNOME_KEYRING_CONTROL=/home/lessy/.cache/keyring-PNR5I3\x00G_BROKEN_FILENAMES=1\x00HOSTNAME=atomak.arnet.org\x00"..., ret = 3285
7935.065:0050:0054:Call ntdll.RtlReleasePebLock() ret=7bc1597f
7935.065:0050:0054:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc1597f
7935.065:0050:0054:Ret  kernelbase.GetEnvironmentStringsA() retval=002861c8 ret=7bf3cfb4
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasysr.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasysr.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasysr.fon"
7935.065:0050:0054:Ret  KERNEL32.GetEnvironmentStringsA() retval=002861c8 ret=7b9eef76
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasysr.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000d9d) ret=7b9fec26
7935.065:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.065:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasysr.fon" index 0
7935.065:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xd9d, return 00286EB8, status 0.
7935.065:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgasysr.fon"/0xb7c51000
7935.065:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00286eb8 ret=7b9fec26
7935.065:0050:0054:Call KERNEL32.FreeEnvironmentStringsA(002861c8) ret=7b9ef049
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyst.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyst.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasyst.fon"
7935.065:0050:0054:Call kernelbase.FreeEnvironmentStringsA(002861c8) ret=7bf3cfb4
7935.065:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,002861c8) ret=7bc106ac
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasyst.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.065:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasyst.fon" index 0
7935.065:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002861C8, return 1, status 0.
7935.065:0050:0054:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc106ac
7935.065:0050:0054:Ret  kernelbase.FreeEnvironmentStringsA() retval=00000001 ret=7bf3cfb4
7935.065:0050:0054:Ret  KERNEL32.FreeEnvironmentStringsA() retval=00000001 ret=7b9ef049
7935.065:0048:004c:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgasyst.fon"/0xb7c51000
7935.065:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000104) ret=7b9fef9a
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\webdings.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\webdings.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/webdings.ttf"
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/webdings.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x104, return 00287C70, status 0.
7935.065:0048:004c:trace:font:unix_face_create parsed font names family_name L"Webdings", second_name L"Webdings", primary_seen 0, english_seen 1, full_name L"Webdings", style_name L"Regular"
7935.065:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00287c70 ret=7b9fef9a
7935.065:0050:0054:Call KERNEL32.GetModuleFileNameA(00000000,00287c70,00000104) ret=7b9fefbf
7935.065:0048:004c:trace:font:insert_face_in_family_list Adding face L"Webdings" in family L"Webdings" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\webdings.ttf"
7935.065:0050:0054:Call kernelbase.GetModuleFileNameA(00000000,00287c70,00000104) ret=7bf3cfb4
7935.065:0048:004c:trace:font:add_unix_face fsCsb = 80000000 00000000/00000000 00000000 00000000 00000000
7935.065:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000208) ret=7bc1aee2
7935.065:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\wingding.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\wingding.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/wingding.ttf"
7935.065:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/wingding.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.065:0048:004c:trace:font:unix_face_create parsed font names family_name L"Wingdings", second_name L"Wingdings", primary_seen 0, english_seen 1, full_name L"Wingdings", style_name L"Regular"
7935.065:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x208, return 00287D90, status 0.
7935.065:0048:004c:trace:font:insert_face_in_family_list Adding face L"Wingdings" in family L"Wingdings" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\wingding.ttf"
7935.065:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00287d90 ret=7bc1aee2
7935.065:0048:004c:trace:font:add_unix_face fsCsb = 80000000 00000000/00000000 00000000 00000000 00000000
7935.065:0050:0054:Call ntdll.LdrGetDllFullName(00000000,0062f810) ret=7bc1b3e8
7935.065:0048:004c:trace:file:NtQueryDirectoryFile (0x34 (nil) (nil) (nil) 0x21cf28 0x21cf50 0x00002000 0x00000003 0x00000000 <null> 0x00000000
7935.065:0050:0054:trace:module:LdrGetDllFullName module 00000000, name 0062F810.
7935.065:0050:0054:Ret  ntdll.LdrGetDllFullName() retval=00000000 ret=7bc1b3e8
7935.065:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc1b400
004c: get_directory_cache_entry( handle=0034 )
7935.074:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc1b400
004c: get_directory_cache_entry() = 0 { entry=0, free={} }
7935.074:0050:0054:trace:module:GetModuleFileNameW L"C:\\windows\\system32\\explorer.exe"
7935.074:0050:0054:Call ntdll.RtlUnicodeToMultiByteN(00287c70,00000104,0062f818,00287d90,00000040) ret=7bc68ded
7935.074:0050:0054:Ret  ntdll.RtlUnicodeToMultiByteN() retval=00000000 ret=7bc68ded
7935.074:0048:004c:trace:file:NtQueryDirectoryFile => 80000006 (0)
7935.074:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00287d90) ret=7bc1af2f
004c: close_handle( handle=0034 )
004c: close_handle() = 0
7935.075:0048:004c:trace:reg:NtQueryValueKey (0x30,L"Path",2,0x21f224,2060)
7935.075:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00287D90, return 1, status 0.
7935.075:0050:0054:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc1af2f
004c: get_key_value( hkey=0030, name=L"Path" )
7935.075:0050:0054:Ret  kernelbase.GetModuleFileNameA() retval=00000020 ret=7bf3cfb4
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.075:0050:0054:Ret  KERNEL32.GetModuleFileNameA() retval=00000020 ret=7b9fefbf
7935.075:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000208) ret=7b9feff9
7935.075:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list (0x7d4ab250 0x7d4b7ce0 0x7d4cb150 0x1)
7935.075:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/OTF
7935.075:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x208, return 00287FB0, status 0.
7935.075:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00287fb0 ret=7b9feff9
7935.075:0050:0054:Call KERNEL32.GetModuleFileNameW(00000000,00287fb0,00000104) ret=7b9ff01e
7935.075:0050:0054:Call kernelbase.GetModuleFileNameW(00000000,00287fb0,00000104) ret=7bf3cfb4
7935.075:0050:0054:Call ntdll.LdrGetDllFullName(00000000,0062f834) ret=7bc1b3e8
7935.075:0050:0054:trace:module:LdrGetDllFullName module 00000000, name 0062F834.
7935.075:0050:0054:Ret  ntdll.LdrGetDllFullName() retval=00000000 ret=7bc1b3e8
7935.075:0048:004c:trace:font:fontconfig_add_font (0x7ed990e0 0x1)
7935.075:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc1b400
7935.075:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc1b400
7935.075:0050:0054:trace:module:GetModuleFileNameW L"C:\\windows\\system32\\explorer.exe"
7935.075:0050:0054:Ret  kernelbase.GetModuleFileNameW() retval=00000020 ret=7bf3cfb4
7935.075:0050:0054:Ret  KERNEL32.GetModuleFileNameW() retval=00000020 ret=7b9ff01e
7935.075:0050:0054:Call KERNEL32.SetConsoleCtrlHandler(7b9fdd00,00000001) ret=7ba0015b
7935.075:0050:0054:Call kernelbase.SetConsoleCtrlHandler(7b9fdd00,00000001) ret=7bf3cfb4
7935.075:0050:0054:trace:console:SetConsoleCtrlHandler (7B9FDD00,1)
7935.075:0050:0054:Call ntdll.RtlEnterCriticalSection(7bc7d060) ret=7bc4e36a
7935.075:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bc4e36a
7935.075:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/C059-BdIta.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.075:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000008) ret=7bc4e405
7935.075:0048:004c:trace:font:unix_face_create parsed font names family_name L"C059", second_name L"C059", primary_seen 0, english_seen 1, full_name L"C059-BdIta", style_name L"Bold Italic"
7935.075:0048:004c:trace:font:insert_face_in_family_list Adding face L"C059-BdIta" in family L"C059" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\C059-BdIta.otf"
7935.075:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.075:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x8, return 002881D0, status 0.
7935.075:0048:004c:trace:font:fontconfig_add_font (0x7ed99798 0x1)
7935.075:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=002881d0 ret=7bc4e405
7935.075:0050:0054:Call ntdll.RtlLeaveCriticalSection(7bc7d060) ret=7bc4e432
7935.075:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bc4e432
7935.075:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/C059-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.075:0050:0054:Ret  kernelbase.SetConsoleCtrlHandler() retval=00000001 ret=7bf3cfb4
7935.075:0050:0054:Ret  KERNEL32.SetConsoleCtrlHandler() retval=00000001 ret=7ba0015b
7935.075:0050:0054:Call ntdll.NtQuerySystemTime(0062fa08) ret=7b9ff5bd
7935.075:0050:0054:SysCall  NtQuerySystemTime(0062fa08)
7935.075:0048:004c:trace:font:unix_face_create parsed font names family_name L"C059", second_name L"C059", primary_seen 0, english_seen 1, full_name L"C059-Bold", style_name L"Bold"
7935.075:0050:0054:SysRet   NtQuerySystemTime() retval=00000000
7935.075:0050:0054:Ret  ntdll.NtQuerySystemTime() retval=00000000 ret=7b9ff5bd
7935.075:0050:0054:trace:msvcrt:DllMain finished process init
7935.075:0048:004c:trace:font:insert_face_in_family_list Adding face L"C059-Bold" in family L"C059" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\C059-Bold.otf"
7935.075:0050:0054:Ret  PE DLL (proc=7B9B7710,module=7B9A0000 L"ucrtbase.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.075:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.075:0050:0054:trace:module:process_attach (L"ucrtbase.dll",0062FD24) - END
7935.075:0048:004c:trace:font:fontconfig_add_font (0x7ed99bf0 0x1)
7935.075:0050:0054:Call PE DLL (proc=7BAA4EC0,module=7BAA0000 L"sechost.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.075:0050:0054:Call KERNEL32.DisableThreadLibraryCalls(7baa0000) ret=7baa4eb4
7935.075:0050:0054:Call kernelbase.DisableThreadLibraryCalls(7baa0000) ret=7bf3cfb4
7935.075:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/C059-Italic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.075:0050:0054:Call ntdll.LdrDisableThreadCalloutsForDll(7baa0000) ret=7bc07df3
7935.075:0050:0054:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7935.075:0050:0054:Ret  kernelbase.DisableThreadLibraryCalls() retval=00000001 ret=7bf3cfb4
7935.075:0050:0054:Ret  KERNEL32.DisableThreadLibraryCalls() retval=00000001 ret=7baa4eb4
7935.075:0048:004c:trace:font:unix_face_create parsed font names family_name L"C059", second_name L"C059", primary_seen 0, english_seen 1, full_name L"C059-Italic", style_name L"Italic"
7935.075:0050:0054:Ret  PE DLL (proc=7BAA4EC0,module=7BAA0000 L"sechost.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.075:0050:0054:trace:module:process_attach (L"sechost.dll",0062FD24) - END
7935.075:0050:0054:Call PE DLL (proc=7BBB0480,module=7BBA0000 L"advapi32.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.075:0048:004c:trace:font:insert_face_in_family_list Adding face L"C059-Italic" in family L"C059" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\C059-Italic.otf"
7935.075:0050:0054:Call KERNEL32.DisableThreadLibraryCalls(7bba0000) ret=7bbb0474
7935.075:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.075:0050:0054:Call kernelbase.DisableThreadLibraryCalls(7bba0000) ret=7bf3cfb4
7935.075:0048:004c:trace:font:fontconfig_add_font (0x7ed9a048 0x1)
7935.075:0050:0054:Call ntdll.LdrDisableThreadCalloutsForDll(7bba0000) ret=7bc07df3
7935.075:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/C059-Roman.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.075:0050:0054:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7935.075:0050:0054:Ret  kernelbase.DisableThreadLibraryCalls() retval=00000001 ret=7bf3cfb4
7935.075:0050:0054:Ret  KERNEL32.DisableThreadLibraryCalls() retval=00000001 ret=7bbb0474
7935.075:0050:0054:Ret  PE DLL (proc=7BBB0480,module=7BBA0000 L"advapi32.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.075:0048:004c:trace:font:unix_face_create parsed font names family_name L"C059", second_name L"C059", primary_seen 0, english_seen 1, full_name L"C059-Roman", style_name L"Roman"
7935.075:0050:0054:trace:module:process_attach (L"advapi32.dll",0062FD24) - END
7935.075:0048:004c:trace:font:insert_face_in_family_list Adding face L"C059-Roman" in family L"C059" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\C059-Roman.otf"
7935.075:0050:0054:trace:module:process_attach (L"gdi32.dll",0062FD24) - START
7935.075:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.075:0050:0054:trace:module:process_attach (L"user32.dll",0062FD24) - START
7935.075:0048:004c:trace:font:fontconfig_add_font (0x7ed9a4a0 0x1)
7935.075:0050:0054:trace:module:process_attach (L"win32u.dll",0062FD24) - START
7935.075:0050:0054:Call PE DLL (proc=7B5331A0,module=7B520000 L"win32u.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.075:0050:0054:Call ntdll.LdrDisableThreadCalloutsForDll(7b520000) ret=7b533114
7935.075:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/D050000L.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.075:0050:0054:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7b533114
7935.075:0050:0054:Call ntdll.LdrGetDllHandle(00000000,00000000,0062fa4c,0062fa48) ret=7b533141
7935.075:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062FA4C, base 0062FA48.
7935.075:0048:004c:trace:font:unix_face_create parsed font names family_name L"D050000L", second_name L"", primary_seen 0, english_seen 1, full_name L"D050000L", style_name L"Regular"
7935.075:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F900
7935.075:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.075:0048:004c:trace:font:insert_face_in_family_list Adding face L"D050000L" in family L"D050000L" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\D050000L.otf"
7935.075:0050:0054:Ret  ntdll.LdrGetDllHandle() retval=00000000 ret=7b533141
7935.075:0048:004c:trace:font:add_unix_face fsCsb = 00000001 00000000/00000003 00000000 00000000 00000000
7935.075:0050:0054:Call ntdll.RtlFindExportedRoutineByName(7bf30000,7b53692c "__wine_syscall_dispatcher") ret=7b533158
7935.075:0048:004c:trace:font:fontconfig_add_font (0x7ed9a8a0 0x1)
7935.075:0050:0054:Ret  ntdll.RtlFindExportedRoutineByName() retval=7bfd4030 ret=7b533158
7935.075:0050:0054:Call ntdll.NtQueryVirtualMemory(ffffffff,7b520000,000003e8,7b54a008,00000008,00000000) ret=7b5331eb
7935.075:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusMonoPS-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.075:0050:0054:SysCall  NtQueryVirtualMemory(ffffffff,7b520000,000003e8,7b54a008,00000008,00000000)
7935.075:0050:0054:trace:virtual:NtQueryVirtualMemory (0xffffffff, 0x7b520000, info_class=1000, 0x7b54a008, 8, (nil))
7935.075:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Mono PS", second_name L"Nimbus Mono PS", primary_seen 0, english_seen 1, full_name L"NimbusMonoPS-Bold", style_name L"Bold"
7935.075:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusMonoPS-Bold" in family L"Nimbus Mono PS" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusMonoPS-Bold.otf"
7935.075:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.075:0048:004c:trace:font:fontconfig_add_font (0x7ed9ad40 0x1)
7935.075:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusMonoPS-BoldItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.075:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Mono PS", second_name L"Nimbus Mono PS", primary_seen 0, english_seen 1, full_name L"NimbusMonoPS-BoldItalic", style_name L"Bold Italic"
7935.075:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusMonoPS-BoldItalic" in family L"Nimbus Mono PS" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusMonoPS-BoldItalic.otf"
7935.075:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.075:0048:004c:trace:font:fontconfig_add_font (0x7ed9b1f8 0x1)
7935.075:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusMonoPS-Italic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.075:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Mono PS", second_name L"Nimbus Mono PS", primary_seen 0, english_seen 1, full_name L"NimbusMonoPS-Italic", style_name L"Italic"
7935.075:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusMonoPS-Italic" in family L"Nimbus Mono PS" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusMonoPS-Italic.otf"
7935.075:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.075:0048:004c:trace:font:fontconfig_add_font (0x7ed9b698 0x1)
7935.075:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusMonoPS-Regular.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.075:0050:0054:SysRet   NtQueryVirtualMemory() retval=00000000
7935.075:0050:0054:Ret  ntdll.NtQueryVirtualMemory() retval=00000000 ret=7b5331eb
7935.075:0050:0054:Call ntdll.LdrGetDllHandle(00000000,00000000,0062fa10,0062fa0c) ret=7b533268
7935.075:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Mono PS", second_name L"Nimbus Mono PS", primary_seen 0, english_seen 1, full_name L"NimbusMonoPS-Regular", style_name L"Regular"
7935.075:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062FA10, base 0062FA0C.
7935.075:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F8B0
7935.075:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusMonoPS-Regular" in family L"Nimbus Mono PS" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusMonoPS-Regular.otf"
7935.075:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.075:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.075:0050:0054:Ret  ntdll.LdrGetDllHandle() retval=00000000 ret=7b533268
7935.075:0048:004c:trace:font:fontconfig_add_font (0x7ed9bb30 0x1)
7935.075:0050:0054:Call ntdll.RtlFindExportedRoutineByName(7bf30000,7b53695c "__wine_unix_call_dispatcher") ret=7b53327f
7935.075:0050:0054:Ret  ntdll.RtlFindExportedRoutineByName() retval=7bfd4034 ret=7b53327f
7935.075:0050:0054:Ret  PE DLL (proc=7B5331A0,module=7B520000 L"win32u.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.075:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusRoman-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.075:0050:0054:trace:module:process_attach (L"win32u.dll",0062FD24) - END
7935.075:0050:0054:Call PE DLL (proc=7B62F0C0,module=7B610000 L"user32.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.075:0050:0054:Call KERNEL32.RegisterWaitForInputIdle(7b66b860) ret=7b62efe5
7935.075:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Roman", second_name L"Nimbus Roman", primary_seen 0, english_seen 1, full_name L"NimbusRoman-Bold", style_name L"Bold"
7935.075:0050:0054:Ret  KERNEL32.RegisterWaitForInputIdle() retval=7b66b860 ret=7b62efe5
7935.075:0050:0054:Call ntdll.RtlInitializeNtUserPfn(7b6b52c0,00000088,7b6b5348,00000088,7b6b53d0,00000058) ret=7b6a50ce
7935.075:0050:0054:Ret  ntdll.RtlInitializeNtUserPfn() retval=00000000 ret=7b6a50ce
7935.075:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusRoman-Bold" in family L"Nimbus Roman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusRoman-Bold.otf"
7935.075:0050:0054:Call ntdll.RtlRetrieveNtUserPfn(0062fa40,0062fa44,0062fa48) ret=7b6a50eb
7935.075:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.075:0050:0054:Ret  ntdll.RtlRetrieveNtUserPfn() retval=00000000 ret=7b6a50eb
7935.075:0048:004c:trace:font:fontconfig_add_font (0x7ed9bfb0 0x1)
7935.075:0050:0054:Call win32u.NtUserInitializeClientPfnArrays(7bfb0040,7bfb00c8,7bfb0150,7b610000) ret=7b6a5111
7935.075:0050:0054:SysCall  NtUserInitializeClientPfnArrays(7bfb0040,7bfb00c8,7bfb0150,7b610000)
7935.075:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusRoman-BoldItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.075:0050:0054:trace:ntdll:NtQuerySystemInformation (0x00000000,0x7ef72340,0x0000002c,(nil))
7935.075:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Roman", second_name L"Nimbus Roman", primary_seen 0, english_seen 1, full_name L"NimbusRoman-BoldItalic", style_name L"Bold Italic"
7935.075:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusRoman-BoldItalic" in family L"Nimbus Roman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusRoman-BoldItalic.otf"
0054: open_mapping( access=00000004, attributes=00000000, rootdir=0000, name=L"\\KernelObjects\\__wine_session" )
7935.082:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
0054: open_mapping() = 0 { handle=002c }
7935.082:0048:004c:trace:font:fontconfig_add_font (0x7ed9c440 0x1)
7935.082:0050:0054:trace:virtual:NtMapViewOfSection handle=0x2c process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x2
7935.082:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusRoman-Italic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
0054: get_mapping_info( handle=002c, access=00000004 )
0054: get_mapping_info() = 0 { size=00144000, flags=08000000, shared_file=0000, name_len=0, total=0, image={}, name=L"", exp_name="" }
7935.082:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Roman", second_name L"Nimbus Roman", primary_seen 0, english_seen 1, full_name L"NimbusRoman-Italic", style_name L"Italic"
0054: get_handle_fd( handle=002c )
0054: *fd* 002c -> 20
7935.082:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusRoman-Italic" in family L"Nimbus Roman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusRoman-Italic.otf"
7935.082:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=00000004, options=00000020 }
7935.082:0048:004c:trace:font:fontconfig_add_font (0x7ed9c8c0 0x1)
7935.082:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusRoman-Regular.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.082:0050:0054:trace:virtual:map_view got mem in reserved area 0xab0000-0xbf4000
7935.082:0050:0054:trace:virtual_ranges:free_ranges_insert_view 0xab0000 - 0xbf4000, aligned 0xab0000 - 0xc00000.
7935.082:0050:0054:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7935.082:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Roman", second_name L"Nimbus Roman", primary_seen 0, english_seen 1, full_name L"NimbusRoman-Regular", style_name L"Regular"
7935.082:0050:0054:trace:virtual_ranges:dump_free_ranges 0x3f0000 - 0x400000.
7935.082:0050:0054:trace:virtual_ranges:dump_free_ranges 0xc00000 - 0x7fde0000.
7935.082:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusRoman-Regular" in family L"Nimbus Roman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusRoman-Regular.otf"
7935.082:0050:0054:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7935.082:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.082:0050:0054:trace:virtual:virtual_map_section handle=0x2c size=144000 offset=0
7935.082:0048:004c:trace:font:fontconfig_add_font (0x7ed9cd38 0x1)
7935.082:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSans-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
0054: map_view( mapping=002c, access=00000004, base=00ab0000, size=00144000, start=00000000 )
0054: map_view() = 0
7935.083:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans", second_name L"Nimbus Sans", primary_seen 0, english_seen 1, full_name L"NimbusSans-Bold", style_name L"Bold"
7935.083:0050:0054:trace:virtual:dump_view View: 0xab0000 - 0xbf3fff c-r-- (anonymous)
7935.083:0050:0054:trace:virtual:dump_view       0xab0000 - 0xbf3fff c-r--
7935.083:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusSans-Bold" in family L"Nimbus Sans" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSans-Bold.otf"
7935.083:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.083:0048:004c:trace:font:fontconfig_add_font (0x7ed9d1a8 0x1)
0054: close_handle( handle=002c )
0054: close_handle() = 0
7935.083:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSans-BoldItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.083:0050:0054:trace:virtual:NtAllocateVirtualMemory 0xffffffff (nil) 00180000 3000 00000004
7935.083:0050:0054:trace:virtual:map_view got mem in reserved area 0xc00000-0xd80000
7935.083:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans", second_name L"Nimbus Sans", primary_seen 0, english_seen 1, full_name L"NimbusSans-BoldItalic", style_name L"Bold Italic"
7935.083:0050:0054:trace:virtual_ranges:free_ranges_insert_view 0xc00000 - 0xd80000, aligned 0xc00000 - 0xd80000.
7935.083:0050:0054:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7935.083:0050:0054:trace:virtual_ranges:dump_free_ranges 0x3f0000 - 0x400000.
7935.083:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusSans-BoldItalic" in family L"Nimbus Sans" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSans-BoldItalic.otf"
7935.083:0050:0054:trace:virtual_ranges:dump_free_ranges 0xd80000 - 0x7fde0000.
7935.083:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.083:0050:0054:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7935.083:0048:004c:trace:font:fontconfig_add_font (0x7ed9d630 0x1)
7935.083:0050:0054:trace:virtual:dump_view View: 0xc00000 - 0xd7ffff c-rw- (valloc)
7935.083:0050:0054:trace:virtual:dump_view       0xc00000 - 0xd7ffff c-rw-
7935.083:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSans-Italic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.083:0050:0054:trace:ntdll:NtQueryInformationToken (0xfffffffa,TokenUser,0x21f6d4,76,0x21f6ac)
0054: get_token_sid( handle=fffffffa, which_sid=00000001 )
7935.084:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans", second_name L"Nimbus Sans", primary_seen 0, english_seen 1, full_name L"NimbusSans-Italic", style_name L"Italic"
0054: get_token_sid() = 0 { sid_len=28, sid=S-1-5-21-0-0-0-1000 }
7935.084:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusSans-Italic" in family L"Nimbus Sans" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSans-Italic.otf"
7935.084:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.084:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\User\\S-1-5-21-0-0-0-1000",2000000,0x21f6b0)
7935.084:0048:004c:trace:font:fontconfig_add_font (0x7ed9dab0 0x1)
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\User\\S-1-5-21-0-0-0-1000" )
0054: open_key() = 0 { hkey=002c }
7935.084:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSans-Regular.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.084:0050:0054:trace:reg:NtOpenKeyEx <- 0x2c
7935.084:0050:0054:trace:reg:NtCreateKey (0x2c,L"Software\\Wine\\Fonts",<null>,0,2000000,0x21f9fc)
7935.084:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans", second_name L"Nimbus Sans", primary_seen 0, english_seen 1, full_name L"NimbusSans-Regular", style_name L"Regular"
0054: create_key( access=02000000, options=00000000, objattr={rootdir=002c,attributes=000000c0,sd={},name=L"Software\\Wine\\Fonts"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=0030 }
7935.085:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusSans-Regular" in family L"Nimbus Sans" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSans-Regular.otf"
7935.085:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.085:0050:0054:trace:reg:NtCreateKey <- 0x30
7935.085:0048:004c:trace:font:fontconfig_add_font (0x7ed9df28 0x1)
7935.085:0050:0054:trace:reg:NtQueryValueKey (0x30,L"AntialiasFakeBoldOrItalic",2,0x21f7e4,52)
0054: get_key_value( hkey=0030, name=L"AntialiasFakeBoldOrItalic" )
7935.085:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSansNarrow-BdOblique.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.085:0050:0054:trace:reg:NtOpenKeyEx (0x2c,L"Control Panel\\Desktop",2000000,0x21f7c0)
7935.085:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans Narrow", second_name L"Nimbus Sans Narrow", primary_seen 0, english_seen 1, full_name L"NimbusSansNarrow-BoldOblique", style_name L"Bold Oblique"
0054: open_key( parent=002c, access=02000000, attributes=00000040, name=L"Control Panel\\Desktop" )
0054: open_key() = 0 { hkey=0034 }
7935.085:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusSansNarrow-BoldOblique" in family L"Nimbus Sans Narrow" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSansNarrow-BdOblique.otf"
7935.085:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.085:0050:0054:trace:reg:NtOpenKeyEx <- 0x34
7935.085:0048:004c:trace:font:fontconfig_add_font (0x7ed9e3d8 0x1)
7935.085:0050:0054:trace:reg:NtQueryValueKey (0x34,L"FontSmoothingOrientation",2,0x21f69c,36)
0054: get_key_value( hkey=0034, name=L"FontSmoothingOrientation" )
7935.085:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSansNarrow-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
0054: get_key_value() = 0 { type=4, total=4, data={01,00,00,00} }
7935.085:0050:0054:trace:reg:NtQueryValueKey (0x34,L"FontSmoothing",2,0x21f69c,36)
7935.085:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans Narrow", second_name L"Nimbus Sans Narrow", primary_seen 0, english_seen 1, full_name L"NimbusSansNarrow-Bold", style_name L"Bold"
0054: get_key_value( hkey=0034, name=L"FontSmoothing" )
7935.086:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusSansNarrow-Bold" in family L"Nimbus Sans Narrow" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSansNarrow-Bold.otf"
0054: get_key_value() = 0 { type=1, total=4, data={32,00,00,00} }
7935.086:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.086:0048:004c:trace:font:fontconfig_add_font (0x7ed9e860 0x1)
7935.086:0050:0054:trace:reg:NtQueryValueKey (0x34,L"FontSmoothingType",2,0x21f69c,36)
0054: get_key_value( hkey=0034, name=L"FontSmoothingType" )
7935.086:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSansNarrow-Oblique.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
0054: get_key_value() = 0 { type=4, total=4, data={01,00,00,00} }
7935.086:0050:0054:trace:reg:NtQueryValueKey (0x34,L"FontSmoothingGamma",2,0x21f69c,36)
7935.086:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans Narrow", second_name L"Nimbus Sans Narrow", primary_seen 0, english_seen 1, full_name L"NimbusSansNarrow-Oblique", style_name L"Oblique"
0054: get_key_value( hkey=0034, name=L"FontSmoothingGamma" )
7935.086:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusSansNarrow-Oblique" in family L"Nimbus Sans Narrow" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSansNarrow-Oblique.otf"
0054: get_key_value() = 0 { type=4, total=4, data={00,00,00,00} }
7935.086:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.086:0048:004c:trace:font:fontconfig_add_font (0x7ed9ed08 0x1)
7935.086:0050:0054:trace:reg:NtQueryValueKey (0x34,L"LogPixels",2,0x21f69c,36)
7935.086:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSansNarrow-Regular.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
0054: get_key_value( hkey=0034, name=L"LogPixels" )
7935.086:0048:004c:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans Narrow", second_name L"Nimbus Sans Narrow", primary_seen 0, english_seen 1, full_name L"NimbusSansNarrow-Regular", style_name L"Regular"
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.086:0048:004c:trace:font:insert_face_in_family_list Adding face L"NimbusSansNarrow-Regular" in family L"Nimbus Sans Narrow" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSansNarrow-Regular.otf"
7935.086:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
0054: close_handle( handle=0034 )
7935.087:0048:004c:trace:font:fontconfig_add_font (0x7ed9f1a8 0x1)
0054: close_handle() = 0
7935.087:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current\\Software\\Fonts",2000000,0x21f7c4)
7935.087:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/P052-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current\\Software\\Fonts" )
0054: open_key() = 0 { hkey=0034 }
7935.087:0048:004c:trace:font:unix_face_create parsed font names family_name L"P052", second_name L"P052", primary_seen 0, english_seen 1, full_name L"P052-Bold", style_name L"Bold"
7935.087:0050:0054:trace:reg:NtOpenKeyEx <- 0x34
7935.087:0050:0054:trace:reg:NtQueryValueKey (0x34,L"LogPixels",2,0x21f69c,36)
7935.087:0048:004c:trace:font:insert_face_in_family_list Adding face L"P052-Bold" in family L"P052" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\P052-Bold.otf"
7935.087:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.087:0048:004c:trace:font:fontconfig_add_font (0x7ed9f600 0x1)
0054: get_key_value( hkey=0034, name=L"LogPixels" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.087:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/P052-BoldItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
0054: close_handle( handle=0034 )
0054: close_handle() = 0
7935.088:0050:0054:trace:font:init_font_options gamma 1000 screen dpi 96
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"P052", second_name L"P052", primary_seen 0, english_seen 1, full_name L"P052-BoldItalic", style_name L"Bold Italic"
7935.088:0050:0054:trace:reg:NtQueryValueKey (0x30,L"LogPixels",2,0x21fb54,92)
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"P052-BoldItalic" in family L"P052" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\P052-BoldItalic.otf"
0054: get_key_value( hkey=0030, name=L"LogPixels" )
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
0054: get_key_value() = 0 { type=4, total=4, data={60,00,00,00} }
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed9fa70 0x1)
7935.088:0050:0054:trace:reg:NtQueryValueKey (0x30,L"Codepages",2,0x21fb54,92)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/P052-Italic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
0054: get_key_value( hkey=0030, name=L"Codepages" )
0054: get_key_value() = 0 { type=1, total=18, data={31,00,32,00,35,00,30,00,2c,00,38,00,35,00,32,00,00,00} }
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"P052", second_name L"P052", primary_seen 0, english_seen 1, full_name L"P052-Italic", style_name L"Italic"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"P052-Italic" in family L"P052" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\P052-Italic.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed9fec8 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/P052-Roman.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"P052", second_name L"P052", primary_seen 0, english_seen 1, full_name L"P052-Roman", style_name L"Roman"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"P052-Roman" in family L"P052" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\P052-Roman.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7eda0320 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/StandardSymbolsPS.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"Standard Symbols PS", second_name L"", primary_seen 0, english_seen 1, full_name L"Standard Symbols PS", style_name L"Regular"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"Standard Symbols PS" in family L"Standard Symbols PS" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\StandardSymbolsPS.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 00000001 00000000/00000003 00000000 00000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7eda0740 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWBookman-Demi.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"URW Bookman", second_name L"URW Bookman", primary_seen 0, english_seen 1, full_name L"URWBookman-Demi", style_name L"Demi"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"URWBookman-Demi" in family L"URW Bookman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWBookman-Demi.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7eda0bb0 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWBookman-DemiItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"URW Bookman", second_name L"URW Bookman", primary_seen 0, english_seen 1, full_name L"URWBookman-DemiItalic", style_name L"Demi Italic"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"URWBookman-DemiItalic" in family L"URW Bookman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWBookman-DemiItalic.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7eda1038 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWBookman-Light.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"URW Bookman", second_name L"URW Bookman", primary_seen 0, english_seen 1, full_name L"URWBookman-Light", style_name L"Light"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"URWBookman-Light" in family L"URW Bookman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWBookman-Light.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7eda14b8 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWBookman-LightItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"URW Bookman", second_name L"URW Bookman", primary_seen 0, english_seen 1, full_name L"URWBookman-LightItalic", style_name L"Light Italic"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"URWBookman-LightItalic" in family L"URW Bookman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWBookman-LightItalic.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7eda1948 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWGothic-Book.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"URW Gothic", second_name L"URW Gothic", primary_seen 0, english_seen 1, full_name L"URWGothic-Book", style_name L"Book"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"URWGothic-Book" in family L"URW Gothic" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWGothic-Book.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7eda1da8 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWGothic-BookOblique.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"URW Gothic", second_name L"URW Gothic", primary_seen 0, english_seen 1, full_name L"URWGothic-BookOblique", style_name L"Book Oblique"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"URWGothic-BookOblique" in family L"URW Gothic" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWGothic-BookOblique.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7eda2230 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWGothic-Demi.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"URW Gothic", second_name L"URW Gothic", primary_seen 0, english_seen 1, full_name L"URWGothic-Demi", style_name L"Demi"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"URWGothic-Demi" in family L"URW Gothic" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWGothic-Demi.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7eda2690 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWGothic-DemiOblique.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"URW Gothic", second_name L"URW Gothic", primary_seen 0, english_seen 1, full_name L"URWGothic-DemiOblique", style_name L"Demi Oblique"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"URWGothic-DemiOblique" in family L"URW Gothic" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWGothic-DemiOblique.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7eda2b18 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/Z003-MediumItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"Z003", second_name L"Z003", primary_seen 0, english_seen 1, full_name L"Z003-MediumItalic", style_name L"Medium Italic"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"Z003-MediumItalic" in family L"Z003" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\Z003-MediumItalic.otf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.088:0050:0054:trace:font:init_freetype FreeType version is 2.13.3
7935.088:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list (0x7d4ab250 0x7d4b7d00 0x7d4cb150 0x1)
7935.088:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/TTF
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed88118 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuMathTeXGyre.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Math TeX Gyre", second_name L"DejaVu Math TeX Gyre", primary_seen 0, english_seen 1, full_name L"DejaVuMathTeXGyre-Regular", style_name L"Regular"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVuMathTeXGyre-Regular" in family L"DejaVu Math TeX Gyre" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuMathTeXGyre.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 60000193 0dd40000/a10000ef 4201f9ee 02000000 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed88910 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSans-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans", second_name L"DejaVu Sans", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Bold", style_name L"Bold"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Bold" in family L"DejaVu Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSans-Bold.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 600001ff ffff0000/e7006eff d200fdff 0a246029 0400200c
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed89520 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSans-BoldOblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans", second_name L"DejaVu Sans", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Bold Oblique", style_name L"Bold Oblique"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Bold Oblique" in family L"DejaVu Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSans-BoldOblique.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e7000eff 5200fdff 0a242021 04002008
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed89c58 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSans-ExtraLight.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Light", second_name L"DejaVu Sans Light", primary_seen 0, english_seen 1, full_name L"DejaVu Sans ExtraLight", style_name L"ExtraLight"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans ExtraLight" in family L"DejaVu Sans Light" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSans-ExtraLight.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 0000019f 00000000/e50026ff 5000007b 08004020 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8a470 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSans-Oblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans", second_name L"DejaVu Sans", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Oblique", style_name L"Oblique"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Oblique" in family L"DejaVu Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSans-Oblique.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e7000eff 5200fdff 0a242021 04002008
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8aaf8 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSans.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans", second_name L"DejaVu Sans", primary_seen 0, english_seen 1, full_name L"DejaVu Sans", style_name L"Book"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans" in family L"DejaVu Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSans.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 600001ff dfff0000/e7006eff d200fdff 0a246029 0400200c
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8b1c0 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansCondensed-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Condensed", second_name L"DejaVu Sans Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Condensed Bold", style_name L"Bold"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Condensed Bold" in family L"DejaVu Sans Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansCondensed-Bold.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 600001ff ffff0000/e7006eff d200fdff 0a246029 0400200c
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8b788 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansCondensed-BoldOblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Condensed", second_name L"DejaVu Sans Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Condensed Bold Oblique", style_name L"Bold Oblique"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Condensed Bold Oblique" in family L"DejaVu Sans Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansCondensed-BoldOblique.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e7000eff 5200fdff 0a242021 04002008
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8bd70 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansCondensed-Oblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Condensed", second_name L"DejaVu Sans Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Condensed Oblique", style_name L"Oblique"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Condensed Oblique" in family L"DejaVu Sans Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansCondensed-Oblique.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e7000eff 5200fdff 0a242021 04002008
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8c340 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansCondensed.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Condensed", second_name L"DejaVu Sans Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Condensed", style_name L"Book"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Condensed" in family L"DejaVu Sans Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansCondensed.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 600001ff dfff0000/e7006eff d200fdff 0a246029 0400200c
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8c8f0 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansMono-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Mono", second_name L"DejaVu Sans Mono", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Mono Bold", style_name L"Bold"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Mono Bold" in family L"DejaVu Sans Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansMono-Bold.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 600001df ffdf0000/e70026ff d200f9fb 02000028 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8d140 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansMono-BoldOblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Mono", second_name L"DejaVu Sans Mono", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Mono Bold Oblique", style_name L"Bold Oblique"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Mono Bold Oblique" in family L"DejaVu Sans Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansMono-BoldOblique.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000019f dfd70000/e70006ff 520079fb 02000020 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8d728 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansMono-Oblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Mono", second_name L"DejaVu Sans Mono", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Mono Oblique", style_name L"Oblique"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Mono Oblique" in family L"DejaVu Sans Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansMono-Oblique.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000019f dfd70000/e70006ff 520079fb 02000020 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8dc98 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansMono.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Mono", second_name L"DejaVu Sans Mono", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Mono", style_name L"Book"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Mono" in family L"DejaVu Sans Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansMono.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 600001df ffdf0000/e70026ff d200f9fb 02000028 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8e248 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerif-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif", second_name L"DejaVu Serif", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Bold", style_name L"Bold"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Bold" in family L"DejaVu Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerif-Bold.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8ea28 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerif-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif", second_name L"DejaVu Serif", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Bold Italic", style_name L"Bold Italic"
7935.088:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Bold Italic" in family L"DejaVu Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerif-BoldItalic.ttf"
7935.088:0048:004c:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.088:0048:004c:trace:font:fontconfig_add_font (0x7ed8efb8 0x1)
7935.088:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerif-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.088:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif", second_name L"DejaVu Serif", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Italic", style_name L"Italic"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Italic" in family L"DejaVu Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerif-Italic.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed8f538 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerif.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif", second_name L"DejaVu Serif", primary_seen 0, english_seen 1, full_name L"DejaVu Serif", style_name L"Book"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif" in family L"DejaVu Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerif.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed8fac0 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerifCondensed-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif Condensed", second_name L"DejaVu Serif Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Condensed Bold", style_name L"Bold"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Condensed Bold" in family L"DejaVu Serif Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerifCondensed-Bold.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed8ffa8 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerifCondensed-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif Condensed", second_name L"DejaVu Serif Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Condensed Bold Italic", style_name L"Bold Italic"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Condensed Bold Italic" in family L"DejaVu Serif Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerifCondensed-BoldItalic.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed904b0 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerifCondensed-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif Condensed", second_name L"DejaVu Serif Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Condensed Italic", style_name L"Italic"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Condensed Italic" in family L"DejaVu Serif Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerifCondensed-Italic.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed909a0 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerifCondensed.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif Condensed", second_name L"DejaVu Serif Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Condensed", style_name L"Book"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Condensed" in family L"DejaVu Serif Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerifCondensed.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed90e80 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/Hack-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Hack", second_name L"", primary_seen 0, english_seen 1, full_name L"Hack Bold", style_name L"Bold"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Hack Bold" in family L"Hack" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\Hack-Bold.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 2000019f dfd70000/a50006ef 0000b8fb 00000020 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed914e0 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/Hack-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Hack", second_name L"", primary_seen 0, english_seen 1, full_name L"Hack Bold Italic", style_name L"Bold Italic"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Hack Bold Italic" in family L"Hack" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\Hack-BoldItalic.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 2000019f dfd70000/a50006ef 000038fb 00000000 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed919f0 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/Hack-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Hack", second_name L"", primary_seen 0, english_seen 1, full_name L"Hack Italic", style_name L"Italic"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Hack Italic" in family L"Hack" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\Hack-Italic.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 0000019f dfd70000/a50006ef 000038fb 00000000 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed91ed0 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/Hack-Regular.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Hack", second_name L"", primary_seen 0, english_seen 1, full_name L"Hack Regular", style_name L"Regular"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Hack Regular" in family L"Hack" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\Hack-Regular.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 2000019f dfd70000/a50006ef 1000b8fb 00000020 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed923e8 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationMono-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Mono", second_name L"Liberation Mono", primary_seen 0, english_seen 1, full_name L"Liberation Mono Bold", style_name L"Bold"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Mono Bold" in family L"Liberation Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationMono-Bold.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 400078ff 00000001 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed92af8 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationMono-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Mono", second_name L"Liberation Mono", primary_seen 0, english_seen 1, full_name L"Liberation Mono Bold Italic", style_name L"Bold Italic"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Mono Bold Italic" in family L"Liberation Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationMono-BoldItalic.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 400078ff 00000001 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed92fa0 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationMono-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Mono", second_name L"Liberation Mono", primary_seen 0, english_seen 1, full_name L"Liberation Mono Italic", style_name L"Italic"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Mono Italic" in family L"Liberation Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationMono-Italic.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 400078ff 00000001 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed93428 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationMono-Regular.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Mono", second_name L"Liberation Mono", primary_seen 0, english_seen 1, full_name L"Liberation Mono", style_name L"Regular"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Mono" in family L"Liberation Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationMono-Regular.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 400078ff 00000001 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed938a0 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSans-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Sans", second_name L"Liberation Sans", primary_seen 0, english_seen 1, full_name L"Liberation Sans Bold", style_name L"Bold"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Sans Bold" in family L"Liberation Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSans-Bold.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed93e00 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSans-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Sans", second_name L"Liberation Sans", primary_seen 0, english_seen 1, full_name L"Liberation Sans Bold Italic", style_name L"Bold Italic"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Sans Bold Italic" in family L"Liberation Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSans-BoldItalic.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed94288 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSans-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Sans", second_name L"Liberation Sans", primary_seen 0, english_seen 1, full_name L"Liberation Sans Italic", style_name L"Italic"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Sans Italic" in family L"Liberation Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSans-Italic.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed946f0 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSans-Regular.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Sans", second_name L"Liberation Sans", primary_seen 0, english_seen 1, full_name L"Liberation Sans", style_name L"Regular"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Sans" in family L"Liberation Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSans-Regular.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed94b48 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSerif-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Serif", second_name L"Liberation Serif", primary_seen 0, english_seen 1, full_name L"Liberation Serif Bold", style_name L"Bold"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Serif Bold" in family L"Liberation Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSerif-Bold.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed95070 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSerif-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Serif", second_name L"Liberation Serif", primary_seen 0, english_seen 1, full_name L"Liberation Serif Bold Italic", style_name L"Bold Italic"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Serif Bold Italic" in family L"Liberation Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSerif-BoldItalic.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed955b8 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSerif-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Serif", second_name L"Liberation Serif", primary_seen 0, english_seen 1, full_name L"Liberation Serif Italic", style_name L"Italic"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Serif Italic" in family L"Liberation Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSerif-Italic.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed95ae0 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSerif-Regular.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Liberation Serif", second_name L"Liberation Serif", primary_seen 0, english_seen 1, full_name L"Liberation Serif", style_name L"Regular"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Liberation Serif" in family L"Liberation Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSerif-Regular.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed95f50 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luximb.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Mono", second_name L"Luxi Mono", primary_seen 0, english_seen 1, full_name L"Luxi Mono Bold", style_name L"Bold"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Mono Bold" in family L"Luxi Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luximb.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/0000000f 00000000 00000000 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed964a8 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luximbi.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Mono", second_name L"Luxi Mono", primary_seen 0, english_seen 1, full_name L"Luxi Mono Bold Oblique", style_name L"Bold Oblique"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Mono Bold Oblique" in family L"Luxi Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luximbi.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000002 00000000 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed96920 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luximr.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Mono", second_name L"Luxi Mono", primary_seen 0, english_seen 1, full_name L"Luxi Mono Regular", style_name L"Regular"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Mono Regular" in family L"Luxi Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luximr.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000002 00000000 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed96d08 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luximri.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Mono", second_name L"Luxi Mono", primary_seen 0, english_seen 1, full_name L"Luxi Mono Oblique", style_name L"Oblique"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Mono Oblique" in family L"Luxi Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luximri.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed97100 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxirb.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Serif", second_name L"Luxi Serif", primary_seen 0, english_seen 1, full_name L"Luxi Serif Bold", style_name L"Bold"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Serif Bold" in family L"Luxi Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxirb.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed97538 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxirbi.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Serif", second_name L"Luxi Serif", primary_seen 0, english_seen 1, full_name L"Luxi Serif Bold Oblique", style_name L"Bold Oblique"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Serif Bold Oblique" in family L"Luxi Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxirbi.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed97918 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxirr.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Serif", second_name L"Luxi Serif", primary_seen 0, english_seen 1, full_name L"Luxi Serif Regular", style_name L"Regular"
7935.104:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Serif Regular" in family L"Luxi Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxirr.ttf"
7935.104:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.104:0048:004c:trace:font:fontconfig_add_font (0x7ed97ce0 0x1)
7935.104:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxirri.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.104:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Serif", second_name L"Luxi Serif", primary_seen 0, english_seen 1, full_name L"Luxi Serif Oblique", style_name L"Oblique"
7935.121:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Serif Oblique" in family L"Luxi Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxirri.ttf"
7935.121:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7ed980b8 0x1)
7935.121:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxisb.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.121:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Sans", second_name L"Luxi Sans", primary_seen 0, english_seen 1, full_name L"Luxi Sans Bold", style_name L"Bold"
7935.121:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Sans Bold" in family L"Luxi Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxisb.ttf"
7935.121:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7ed98478 0x1)
7935.121:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxisbi.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.121:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Sans", second_name L"Luxi Sans", primary_seen 0, english_seen 1, full_name L"Luxi Sans Bold Oblique", style_name L"Bold Oblique"
7935.121:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Sans Bold Oblique" in family L"Luxi Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxisbi.ttf"
7935.121:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7ed98858 0x1)
7935.121:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxisr.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.121:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Sans", second_name L"Luxi Sans", primary_seen 0, english_seen 1, full_name L"Luxi Sans Regular", style_name L"Regular"
7935.121:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Sans Regular" in family L"Luxi Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxisr.ttf"
7935.121:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7ed98c20 0x1)
7935.121:0048:004c:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxisri.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.121:0048:004c:trace:font:unix_face_create parsed font names family_name L"Luxi Sans", second_name L"Luxi Sans", primary_seen 0, english_seen 1, full_name L"Luxi Sans Oblique", style_name L"Oblique"
7935.121:0048:004c:trace:font:insert_face_in_family_list Adding face L"Luxi Sans Oblique" in family L"Luxi Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxisri.ttf"
7935.121:0048:004c:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.121:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list (0x7d4ab250 0x7d4b7d00 0x7d4cb150 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/Type1
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e60f150 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/UTBI____.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e60f600 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/UTB_____.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e60f960 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/UTI_____.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e60fcc0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/UTRG____.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e610020 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/a010013l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6104e0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/a010015l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6108c0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/a010033l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e610c38 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/a010035l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e610fb0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/b018012l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e611320 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/b018015l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e611698 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/b018032l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e611a10 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/b018035l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e611e10 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0419bt_.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6121b0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0582bt_.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e612550 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0583bt_.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6128f0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c059013l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e612c68 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c059016l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e612fe0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c059033l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e613358 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c059036l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6136d8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0611bt_.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e613a88 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0632bt_.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e613e00 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0633bt_.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e614188 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0648bt_.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e614500 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0649bt_.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e614880 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/cour.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e614d68 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/courb.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6150e8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/courbi.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e615478 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/couri.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6157f8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/cursor.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e615bf8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/d050000l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e616058 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l047013t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e616450 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l047016t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6167d8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l047033t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e616b68 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l047036t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e616f00 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l048013t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e617268 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l048016t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6175d0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l048033t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e617940 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l048036t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e617cb8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l049013t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e618020 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l049016t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e618388 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l049033t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6186f8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l049036t.pfa"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e618a70 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019003l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e618dd8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019004l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6191b8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019023l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e619588 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019024l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e619900 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019043l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e619c80 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019044l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e619ff8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019063l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61a380 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019064l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61a700 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n021003l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61aaf0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n021004l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61ae68 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n021023l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61b1e8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n021024l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61b568 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n022003l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61b8f0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n022004l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61bc58 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n022023l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61bfd0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n022024l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61c348 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/p052003l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61c6b8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/p052004l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61ca28 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/p052023l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61cd98 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/p052024l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61d110 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/s050000l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e61d618 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/z003034l.pfb"
7935.121:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list (0x7d4ab250 0x7d4b7d00 0x7d4cb150 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/Speedo
7935.121:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list (0x7d4ab250 0x7d4b7d00 0x7d4cb150 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/cyrillic
7935.121:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list (0x7d4ab250 0x7d4b7d00 0x7d4cb150 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/misc
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5e7288 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/10x20-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5e7688 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/10x20.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5e7e80 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/12x13ja.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5e92a0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/12x24.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5e9698 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/18x18ja.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5eafd8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/18x18ko.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5eb718 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/4x6-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ebad8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/4x6.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ec080 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/5x7-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ec440 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/5x7.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ec9e0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/5x8-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ecda0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/5x8.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ed338 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x10-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ed6f8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x10.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5edc38 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x12-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ee000 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x12.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ee5d0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ee998 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ef060 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13B-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ef430 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13B.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5efa18 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13O-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5efe08 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13O.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f0358 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x9-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f0718 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x9.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f0c50 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f1010 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f1658 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13B-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f1a18 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13B.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f1f10 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13O-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f22d0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13O.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f2818 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x14-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f2bd8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x14.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f31a8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x14B-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f3568 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x14B.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f3a20 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f3de0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f42e8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13B-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f46a8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13B.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f4b80 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13O-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f4f40 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13O.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f53e0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x16.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f5798 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x15-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f5b58 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x15.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f6160 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x15B-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f6520 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x15B.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f6a70 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x18-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f6e30 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x18.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f7350 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x18B-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f7710 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x18B.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f7bb8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB6x10.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f7fb8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB6x12.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f8378 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x10.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f8738 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x12.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f8af8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x13.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f8eb8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x14.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f9278 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x16.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f9638 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x8.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f99f8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB9x15.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5f9db8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clI6x12.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fa178 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clI8x8.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fa538 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR4x6.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fa8f8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR5x10.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5facb8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR5x6.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fb078 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR5x8.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fb438 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x10.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fb7f8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x12-ISO8859-1.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fbbc0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x12.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fc0c0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x13.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fc480 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x6.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fc840 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x8.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fcc00 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR7x10.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fcfc0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR7x12.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fd380 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR7x14.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fd740 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR7x8.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fdb00 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x10.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fdec0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x12.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fe280 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x13.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fe640 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x14.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fea00 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x16.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fedc0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x8.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ff180 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR9x15.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ff540 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/cu-alt12.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5ffaf0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/cu-pua12.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e5fffb8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/cu12.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e600918 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/cursor.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e600cc8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/deccurs.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e601080 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/decsess.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e601438 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/micro.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e6017d8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-112b.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e601be0 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-112n.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e601fa8 0x1)
7935.121:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-114b.pcf.gz"
7935.121:0048:004c:trace:font:fontconfig_add_font (0x7e602370 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-114n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e602738 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-116b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e602b00 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-116n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e602ec8 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-118b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e603290 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-118n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e603658 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-120b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e603a20 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-120n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e603de8 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-122b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e6041b0 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-122n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e604578 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-124b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e604940 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-124n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e604d08 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-128b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e6050d0 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-128n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e605498 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-132b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e605860 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-132n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e605c28 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u12b.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e6062b8 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u12n.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e6066e8 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u14b.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e606b10 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u14n.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e606f40 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u16b.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e607368 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u16n.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e607798 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u18b.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e607bc0 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u18n.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e607ff0 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u20b.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e608418 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u20n.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e608848 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u22b.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e608c70 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u22n.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e6090a0 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u24b.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e6094c8 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u24n.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e6098f8 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u28b.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e609d20 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u28n.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60a150 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u32b.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60a578 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u32n.otb"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60a9a8 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x12b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60adf8 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x12n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60b1c0 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x14b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60b588 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x14n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60b950 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x16b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60bd18 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x16n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60c0e0 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x18b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60c4a8 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x18n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60c870 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x20b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60cc38 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x20n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60d000 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x22b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60d3c8 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x22n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60d790 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x24b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60db58 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x24n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60df20 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x28b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60e2e8 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x28n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60e6b0 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x32b.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_font (0x7e60ea78 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x32n.pcf.gz"
7935.137:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list (0x7d4ab250 0x7d4b7d00 0x7d4cb150 0x1)
7935.137:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /home/lessy/.local/share/fonts
7935.137:0048:004c:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /home/lessy/.fonts
7935.137:0048:004c:trace:sync:NtCreateMutant access 0x1f0001, name L"\\BaseNamedObjects\\__WINE_FONT_MUTEX__", owned 0
004c: create_mutex( access=001f0001, owned=0, objattr={rootdir=0000,attributes=00000080,sd={},name=L"\\BaseNamedObjects\\__WINE_FONT_MUTEX__"} )
004c: create_mutex() = OBJECT_NAME_EXISTS { handle=0034 }
7935.141:0048:004c:trace:sync:NtWaitForSingleObject handle 0x34, alertable 0, timeout (infinite)
004c: select( flags=2, cookie=0021e994, timeout=infinite, size=8, prev_apc=0000, result={}, data={WAIT,handles={0034}}, contexts={} )
004c: select() = 0 { apc_handle=0000, signaled=1, call={}, contexts={} }
7935.142:0048:004c:trace:sync:NtWaitForSingleObject -> 0
7935.142:0048:004c:trace:reg:NtCreateKey (0x30,L"Cache",<null>,1,2000000,0x21f9fc)
004c: create_key( access=02000000, options=00000001, objattr={rootdir=0030,attributes=000000c0,sd={},name=L"Cache"}, class=L"" )
004c: create_key() = OBJECT_NAME_EXISTS { hkey=0038 }
7935.142:0048:004c:trace:reg:NtCreateKey <- 0x38
7935.142:0048:004c:trace:sync:NtReleaseMutant handle 0x34, prev_count (nil)
004c: release_mutex( handle=0034 )
004c: release_mutex() = 0 { prev_count=00000001 }
7935.142:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Fonts",2000000,0x21f76c)
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Fonts" )
004c: open_key() = 0 { hkey=003c }
7935.142:0048:004c:trace:reg:NtOpenKeyEx <- 0x3c
7935.142:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,0,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=0, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=118, namelen=42, name=L"C059-BdIta (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,43,00,30,00,35,00,39,00,2d,00,42,00,64,00,49,00,74,00,61,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.143:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,1,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=1, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=114, namelen=40, name=L"C059-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,43,00,30,00,35,00,39,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.143:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,2,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=2, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=122, namelen=44, name=L"C059-Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,43,00,30,00,35,00,39,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.143:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,3,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=3, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=118, namelen=42, name=L"C059-Roman (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,43,00,30,00,35,00,39,00,2d,00,52,00,6f,00,6d,00,61,00,6e,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.144:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,4,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=4, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=36, namelen=14, name=L"Courier", data={63,00,6f,00,75,00,72,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.144:0048:004c:trace:reg:NtQueryValueKey (0x3c,L"Courier",2,0x21f80c,532)
004c: get_key_value( hkey=003c, name=L"Courier" )
004c: get_key_value() = 0 { type=1, total=22, data={63,00,6f,00,75,00,72,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.144:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\couree.fon" -> ret c000003a
7935.144:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\couree.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\couree.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/couree.fon"
7935.144:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/couree.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.144:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.144:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/couree.fon" index 0
7935.144:0048:004c:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.144:0048:004c:warn:font:ft_face_get_full_name full name not found, using L"Courier Regular" instead
7935.144:0048:004c:trace:font:get_bitmap_size Adding bitmap size h 13 w 8 size 10 x_ppem 13 y_ppem 13
7935.144:0048:004c:trace:font:get_fontsig pix_h 13 charset 238 dpi 96x96 pt 10
7935.144:0048:004c:trace:font:insert_face_in_family_list Adding face L"Courier Regular" in family L"Courier" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\couree.fon"
7935.144:0048:004c:trace:font:add_unix_face fsCsb = 00000002 00000000/00000000 00000000 00000000 00000000
7935.144:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,5,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=5, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=110, namelen=38, name=L"D050000L (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,44,00,30,00,35,00,30,00,30,00,30,00,30,00,4c,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.146:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,6,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=6, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=120, namelen=44, name=L"DejaVu Sans (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,2e,00,74,00,74,00,66,00,00,00} }
7935.146:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,7,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=7, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=140, namelen=54, name=L"DejaVu Sans Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.147:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,8,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=8, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=170, namelen=70, name=L"DejaVu Sans Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
7935.147:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,9,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=9, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=158, namelen=64, name=L"DejaVu Sans Condensed (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.147:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,10,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=10, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=178, namelen=74, name=L"DejaVu Sans Condensed Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.148:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,11,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=11, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=208, namelen=90, name=L"DejaVu Sans Condensed Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,42,00,6f,00,6c,00,64,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
7935.148:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,12,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=12, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=190, namelen=80, name=L"DejaVu Sans Condensed Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
7935.149:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,13,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=13, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=164, namelen=66, name=L"DejaVu Sans ExtraLight (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,2d,00,45,00,78,00,74,00,72,00,61,00,4c,00,69,00,67,00,68,00,74,00,2e,00,74,00,74,00,66,00,00,00} }
7935.149:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,14,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=14, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=138, namelen=54, name=L"DejaVu Sans Mono (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,4d,00,6f,00,6e,00,6f,00,2e,00,74,00,74,00,66,00,00,00} }
7935.149:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,15,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=15, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=158, namelen=64, name=L"DejaVu Sans Mono Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,4d,00,6f,00,6e,00,6f,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.150:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,16,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=16, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=188, namelen=80, name=L"DejaVu Sans Mono Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,4d,00,6f,00,6e,00,6f,00,2d,00,42,00,6f,00,6c,00,64,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
7935.150:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,17,1,0x21f80c,532)
7935.150:0050:0054:trace:font:init_fontconfig enabled, default flags = 0
004c: enum_key_value( hkey=003c, index=17, info_class=1 )
7935.150:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current\\Software\\Fonts",2000000,0x21f784)
004c: enum_key_value() = 0 { type=1, total=170, namelen=70, name=L"DejaVu Sans Mono Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,4d,00,6f,00,6e,00,6f,00,2d,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current\\Software\\Fonts" )
0054: open_key() = 0 { hkey=0034 }
7935.151:0050:0054:trace:reg:NtOpenKeyEx <- 0x34
7935.151:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,18,1,0x21f80c,532)
7935.151:0050:0054:trace:reg:NtQueryValueKey (0x34,L"FONTS.FON",2,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=18, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=152, namelen=60, name=L"DejaVu Sans Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,2d,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
0054: get_key_value( hkey=0034, name=L"FONTS.FON" )
0054: get_key_value() = 0 { type=1, total=24, data={76,00,67,00,61,00,73,00,79,00,73,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.151:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,19,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=19, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=124, namelen=46, name=L"DejaVu Serif (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,2e,00,74,00,74,00,66,00,00,00} }
7935.151:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,20,1,0x21f80c,532)
7935.152:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\vgasyse.fon" -> ret c000003a
004c: enum_key_value( hkey=003c, index=20, info_class=1 )
7935.152:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyse.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyse.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasyse.fon"
004c: enum_key_value() = 0 { type=1, total=144, namelen=56, name=L"DejaVu Serif Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.152:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasyse.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.152:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,21,1,0x21f80c,532)
7935.152:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value( hkey=003c, index=21, info_class=1 )
7935.152:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasyse.fon" index 0
004c: enum_key_value() = 0 { type=1, total=170, namelen=70, name=L"DejaVu Serif Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.152:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,22,1,0x21f80c,532)
7935.152:0050:0054:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.152:0050:0054:warn:font:ft_face_get_full_name full name not found, using L"System Regular" instead
004c: enum_key_value( hkey=003c, index=22, info_class=1 )
7935.152:0050:0054:trace:font:get_bitmap_size Adding bitmap size h 16 w 7 size 10 x_ppem 13 y_ppem 13
7935.152:0050:0054:trace:font:get_fontsig pix_h 16 charset 238 dpi 96x96 pt 10
004c: enum_key_value() = 0 { type=1, total=162, namelen=66, name=L"DejaVu Serif Condensed (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.152:0050:0054:trace:font:insert_face_in_family_list Adding face L"System Regular" in family L"System" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyse.fon"
7935.152:0050:0054:trace:font:add_unix_face fsCsb = 00000002 00000000/00000000 00000000 00000000 00000000
7935.152:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,23,1,0x21f80c,532)
7935.152:0050:0054:trace:reg:NtQueryValueKey (0x34,L"OEMFONT.FON",2,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=23, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=182, namelen=76, name=L"DejaVu Serif Condensed Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
0054: get_key_value( hkey=0034, name=L"OEMFONT.FON" )
0054: get_key_value() = 0 { type=1, total=22, data={76,00,67,00,61,00,38,00,35,00,32,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.153:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,24,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=24, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=208, namelen=90, name=L"DejaVu Serif Condensed Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.153:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\vga852.fon" -> ret c000003a
7935.153:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,25,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=25, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=190, namelen=80, name=L"DejaVu Serif Condensed Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.153:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,26,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=26, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=152, namelen=60, name=L"DejaVu Serif Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.154:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,27,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=27, info_class=1 )
7935.154:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vga852.fon" -> ret c000000f nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vga852.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vga852.fon"
004c: enum_key_value() = 0 { type=1, total=162, namelen=72, name=L"DejaVuMathTeXGyre-Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,4d,00,61,00,74,00,68,00,54,00,65,00,58,00,47,00,79,00,72,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
7935.154:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vga852.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.154:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,28,1,0x21f80c,532)
7935.154:0050:0054:trace:reg:NtQueryValueKey (0x34,L"FIXEDFON.FON",2,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=28, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=114, namelen=40, name=L"Hack Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,48,00,61,00,63,00,6b,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
0054: get_key_value( hkey=0034, name=L"FIXEDFON.FON" )
0054: get_key_value() = 0 { type=1, total=24, data={76,00,67,00,61,00,66,00,69,00,78,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.155:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,29,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=29, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=140, namelen=54, name=L"Hack Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,48,00,61,00,63,00,6b,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.155:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\vgafixe.fon" -> ret c000003a
7935.155:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,30,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=30, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=122, namelen=44, name=L"Hack Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,48,00,61,00,63,00,6b,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.155:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,31,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=31, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=126, namelen=46, name=L"Hack Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,48,00,61,00,63,00,6b,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.155:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,32,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=32, info_class=1 )
7935.156:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgafixe.fon" -> ret c000000f nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgafixe.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgafixe.fon"
7935.156:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgafixe.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
004c: enum_key_value() = 0 { type=1, total=152, namelen=52, name=L"Liberation Mono (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,4d,00,6f,00,6e,00,6f,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
0054: close_handle( handle=0034 )
0054: close_handle() = 0
7935.156:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,33,1,0x21f80c,532)
7935.156:0050:0054:trace:file:NtCreateFile handle=0x21cf24 access=80100000 name=L"\\??\\C:\\windows\\fonts" objattr=00000040 root=(nil) sec=(nil) io=0x21cf28 alloc_size=(nil) attr=00000000 sharing=00000003 disp=1 options=00004021 ea=(nil).0x00000000
004c: enum_key_value( hkey=003c, index=33, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=156, namelen=62, name=L"Liberation Mono Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,4d,00,6f,00,6e,00,6f,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.156:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,34,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=34, info_class=1 )
7935.157:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts" -> ret c0000034
7935.157:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\fonts" not found (c0000034)
7935.157:0050:0054:trace:file:NtCreateFile handle=0x21cf24 access=80100000 name=L"\\??\\Z:\\usr\\share\\wine\\fonts" objattr=00000040 root=(nil) sec=(nil) io=0x21cf28 alloc_size=(nil) attr=00000000 sharing=00000003 disp=1 options=00004021 ea=(nil).0x00000000
004c: enum_key_value() = 0 { type=1, total=182, namelen=76, name=L"Liberation Mono Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,4d,00,6f,00,6e,00,6f,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.157:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts"
7935.157:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,35,1,0x21f80c,532)
0054: create_file( access=80100000, sharing=00000003, create=1, options=00004021, attrs=00000000, objattr={rootdir=0000,attributes=00000040,sd={},name=L"\\??\\Z:\\usr\\share\\wine\\fonts"}, filename="/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts" )
0054: create_file() = 0 { handle=0034 }
004c: enum_key_value( hkey=003c, index=35, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=164, namelen=66, name=L"Liberation Mono Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,4d,00,6f,00,6e,00,6f,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.157:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,36,1,0x21f80c,532)
7935.157:0050:0054:trace:file:NtQueryDirectoryFile (0x34 (nil) (nil) (nil) 0x21cf28 0x21cf50 0x00002000 0x00000003 0x00000000 <null> 0x00000000
004c: enum_key_value( hkey=003c, index=36, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=152, namelen=52, name=L"Liberation Sans (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,61,00,6e,00,73,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
0054: get_handle_fd( handle=0034 )
0054: *fd* 0034 -> 84
7935.157:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,37,1,0x21f80c,532)
0054: get_handle_fd() = 0 { type=2, cacheable=1, access=00120089, options=00004021 }
004c: enum_key_value( hkey=003c, index=37, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=156, namelen=62, name=L"Liberation Sans Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
0054: get_directory_cache_entry( handle=0034 )
7935.158:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,38,1,0x21f80c,532)
0054: get_directory_cache_entry() = 0 { entry=0, free={} }
004c: enum_key_value( hkey=003c, index=38, info_class=1 )
7935.158:0050:0054:trace:file:append_entry long L"." short L"" mask <null>
7935.158:0050:0054:trace:file:append_entry long L".." short L"" mask <null>
004c: enum_key_value() = 0 { type=1, total=182, namelen=76, name=L"Liberation Sans Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.158:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,39,1,0x21f80c,532)
7935.158:0050:0054:trace:file:append_entry long L"sserife.fon" short L"" mask <null>
7935.158:0050:0054:trace:file:append_entry long L"smae1255.fon" short L"" mask <null>
004c: enum_key_value( hkey=003c, index=39, info_class=1 )
7935.159:0050:0054:trace:file:append_entry long L"coue1255.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"courer.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"smallee.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"tahoma.ttf" short L"" mask <null>
004c: enum_key_value() = 0 { type=1, total=164, namelen=66, name=L"Liberation Sans Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,61,00,6e,00,73,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.159:0050:0054:trace:file:append_entry long L"couree.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"vgasys.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"vgas1256.fon" short L"" mask <null>
7935.159:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,40,1,0x21f80c,532)
7935.159:0050:0054:trace:file:append_entry long L"smalleg.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"sserifee.fon" short L"" mask <null>
004c: enum_key_value( hkey=003c, index=40, info_class=1 )
7935.159:0050:0054:trace:file:append_entry long L"sserifft.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"sseriffr.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"sseriffg.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"wingding.ttf" short L"" mask <null>
004c: enum_key_value() = 0 { type=1, total=156, namelen=54, name=L"Liberation Serif (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,65,00,72,00,69,00,66,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.159:0050:0054:trace:file:append_entry long L"coureg.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"cvgasys.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"vgafix.fon" short L"" mask <null>
7935.159:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,41,1,0x21f80c,532)
7935.159:0050:0054:trace:file:append_entry long L"jsmalle.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"vgasyse.fon" short L"" mask <null>
004c: enum_key_value( hkey=003c, index=41, info_class=1 )
7935.159:0050:0054:trace:file:append_entry long L"ssef1255.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"vgas1257.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"smaller.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"ssee1255.fon" short L"" mask <null>
004c: enum_key_value() = 0 { type=1, total=160, namelen=64, name=L"Liberation Serif Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,65,00,72,00,69,00,66,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.159:0050:0054:trace:file:append_entry long L"sseriffe.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"marlett.ttf" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"vgas874.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"sserifer.fon" short L"" mask <null>
7935.159:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,42,1,0x21f80c,532)
7935.159:0050:0054:trace:file:append_entry long L"vgasyst.fon" short L"" mask <null>
7935.159:0050:0054:trace:file:append_entry long L"vgas1255.fon" short L"" mask <null>
004c: enum_key_value( hkey=003c, index=42, info_class=1 )
7935.160:0050:0054:trace:file:append_entry long L"couret.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"ssee1256.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"symbol.ttf" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"sserifet.fon" short L"" mask <null>
004c: enum_key_value() = 0 { type=1, total=186, namelen=78, name=L"Liberation Serif Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,65,00,72,00,69,00,66,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.160:0050:0054:trace:file:append_entry long L"coue1256.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"smallet.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"smae1257.fon" short L"" mask <null>
7935.160:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,43,1,0x21f80c,532)
7935.160:0050:0054:trace:file:append_entry long L"smae1256.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"ssef1256.fon" short L"" mask <null>
004c: enum_key_value( hkey=003c, index=43, info_class=1 )
7935.160:0050:0054:trace:file:append_entry long L"jvgafix.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"ssee1257.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"coue1257.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"ssee874.fon" short L"" mask <null>
004c: enum_key_value() = 0 { type=1, total=168, namelen=68, name=L"Liberation Serif Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,65,00,72,00,69,00,66,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.160:0050:0054:trace:file:append_entry long L"hvgasys.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"webdings.ttf" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"jvgasys.fon" short L"" mask <null>
7935.160:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,44,1,0x21f80c,532)
7935.160:0050:0054:trace:file:append_entry long L"sseriff.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"smalle.fon" short L"" mask <null>
004c: enum_key_value( hkey=003c, index=44, info_class=1 )
7935.160:0050:0054:trace:file:append_entry long L"ssef1257.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"coure.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"tahomabd.ttf" short L"" mask <null>
004c: enum_key_value() = 0 { type=1, total=118, namelen=50, name=L"Luxi Mono Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,6d,00,62,00,2e,00,74,00,74,00,66,00,00,00} }
7935.160:0050:0054:trace:file:append_entry long L"sserifeg.fon" short L"" mask <null>
7935.160:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,45,1,0x21f80c,532)
7935.160:0050:0054:trace:file:append_entry long L"vgasysr.fon" short L"" mask <null>
7935.160:0050:0054:trace:file:append_entry long L"svgasys.fon" short L"" mask <null>
004c: enum_key_value( hkey=003c, index=45, info_class=1 )
7935.161:0050:0054:trace:file:append_entry long L"ssef874.fon" short L"" mask <null>
7935.161:0050:0054:trace:file:append_entry long L"vgasysg.fon" short L"" mask <null>
004c: enum_key_value() = 0 { type=1, total=136, namelen=66, name=L"Luxi Mono Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,6d,00,62,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.161:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,46,1,0x21f80c,532)
7935.161:0050:0054:trace:file:init_cached_dir_data mask <null> found 58 files
7935.161:0050:0054:trace:file:init_cached_dir_data L"." L""
7935.161:0050:0054:trace:file:init_cached_dir_data L".." L""
004c: enum_key_value( hkey=003c, index=46, info_class=1 )
7935.161:0050:0054:trace:file:init_cached_dir_data L"coue1255.fon" L""
7935.161:0050:0054:trace:file:init_cached_dir_data L"coue1256.fon" L""
7935.161:0050:0054:trace:file:init_cached_dir_data L"coue1257.fon" L""
004c: enum_key_value() = 0 { type=1, total=126, namelen=56, name=L"Luxi Mono Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,6d,00,72,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.161:0050:0054:trace:file:init_cached_dir_data L"coure.fon" L""
7935.161:0050:0054:trace:file:init_cached_dir_data L"couree.fon" L""
7935.161:0050:0054:trace:file:init_cached_dir_data L"coureg.fon" L""
7935.161:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,47,1,0x21f80c,532)
7935.161:0050:0054:trace:file:init_cached_dir_data L"courer.fon" L""
7935.161:0050:0054:trace:file:init_cached_dir_data L"couret.fon" L""
7935.161:0050:0054:trace:file:init_cached_dir_data L"cvgasys.fon" L""
004c: enum_key_value( hkey=003c, index=47, info_class=1 )
7935.161:0050:0054:trace:file:init_cached_dir_data L"hvgasys.fon" L""
7935.161:0050:0054:trace:file:init_cached_dir_data L"jsmalle.fon" L""
7935.161:0050:0054:trace:file:init_cached_dir_data L"jvgafix.fon" L""
004c: enum_key_value() = 0 { type=1, total=124, namelen=56, name=L"Luxi Mono Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,6d,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.161:0050:0054:trace:file:init_cached_dir_data L"jvgasys.fon" L""
7935.161:0050:0054:trace:file:init_cached_dir_data L"marlett.ttf" L""
7935.161:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,48,1,0x21f80c,532)
7935.161:0050:0054:trace:file:init_cached_dir_data L"smae1255.fon" L""
7935.161:0050:0054:trace:file:init_cached_dir_data L"smae1256.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"smae1257.fon" L""
004c: enum_key_value( hkey=003c, index=48, info_class=1 )
7935.162:0050:0054:trace:file:init_cached_dir_data L"smalle.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"smallee.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"smalleg.fon" L""
004c: enum_key_value() = 0 { type=1, total=118, namelen=50, name=L"Luxi Sans Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,73,00,62,00,2e,00,74,00,74,00,66,00,00,00} }
7935.162:0050:0054:trace:file:init_cached_dir_data L"smaller.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"smallet.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"ssee1255.fon" L""
7935.162:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,49,1,0x21f80c,532)
7935.162:0050:0054:trace:file:init_cached_dir_data L"ssee1256.fon" L""
004c: enum_key_value( hkey=003c, index=49, info_class=1 )
7935.162:0050:0054:trace:file:init_cached_dir_data L"ssee1257.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"ssee874.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"ssef1255.fon" L""
004c: enum_key_value() = 0 { type=1, total=136, namelen=66, name=L"Luxi Sans Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,73,00,62,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.162:0050:0054:trace:file:init_cached_dir_data L"ssef1256.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"ssef1257.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"ssef874.fon" L""
7935.162:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,50,1,0x21f80c,532)
7935.162:0050:0054:trace:file:init_cached_dir_data L"sserife.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"sserifee.fon" L""
004c: enum_key_value( hkey=003c, index=50, info_class=1 )
7935.162:0050:0054:trace:file:init_cached_dir_data L"sserifeg.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"sserifer.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"sserifet.fon" L""
004c: enum_key_value() = 0 { type=1, total=126, namelen=56, name=L"Luxi Sans Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,73,00,72,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.162:0050:0054:trace:file:init_cached_dir_data L"sseriff.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"sseriffe.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"sseriffg.fon" L""
7935.162:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,51,1,0x21f80c,532)
7935.162:0050:0054:trace:file:init_cached_dir_data L"sseriffr.fon" L""
7935.162:0050:0054:trace:file:init_cached_dir_data L"sserifft.fon" L""
7935.163:0050:0054:trace:file:init_cached_dir_data L"svgasys.fon" L""
004c: enum_key_value( hkey=003c, index=51, info_class=1 )
7935.163:0050:0054:trace:file:init_cached_dir_data L"symbol.ttf" L""
7935.163:0050:0054:trace:file:init_cached_dir_data L"tahoma.ttf" L""
7935.163:0050:0054:trace:file:init_cached_dir_data L"tahomabd.ttf" L""
004c: enum_key_value() = 0 { type=1, total=124, namelen=56, name=L"Luxi Sans Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,73,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.163:0050:0054:trace:file:init_cached_dir_data L"vgafix.fon" L""
7935.163:0050:0054:trace:file:init_cached_dir_data L"vgas1255.fon" L""
7935.163:0050:0054:trace:file:init_cached_dir_data L"vgas1256.fon" L""
7935.163:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,52,1,0x21f80c,532)
7935.163:0050:0054:trace:file:init_cached_dir_data L"vgas1257.fon" L""
7935.163:0050:0054:trace:file:init_cached_dir_data L"vgas874.fon" L""
7935.163:0050:0054:trace:file:init_cached_dir_data L"vgasys.fon" L""
004c: enum_key_value( hkey=003c, index=52, info_class=1 )
7935.163:0050:0054:trace:file:init_cached_dir_data L"vgasyse.fon" L""
7935.163:0050:0054:trace:file:init_cached_dir_data L"vgasysg.fon" L""
7935.163:0050:0054:trace:file:init_cached_dir_data L"vgasysr.fon" L""
004c: enum_key_value() = 0 { type=1, total=120, namelen=52, name=L"Luxi Serif Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,72,00,62,00,2e,00,74,00,74,00,66,00,00,00} }
7935.163:0050:0054:trace:file:init_cached_dir_data L"vgasyst.fon" L""
7935.163:0050:0054:trace:file:init_cached_dir_data L"webdings.ttf" L""
7935.163:0050:0054:trace:file:init_cached_dir_data L"wingding.ttf" L""
7935.163:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,53,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=53, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=138, namelen=68, name=L"Luxi Serif Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,72,00,62,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.163:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,54,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=54, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=128, namelen=58, name=L"Luxi Serif Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,72,00,72,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.164:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,55,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=55, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=126, namelen=58, name=L"Luxi Serif Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,72,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.164:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,56,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=56, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=108, namelen=36, name=L"Marlett (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,6d,00,61,00,72,00,6c,00,65,00,74,00,74,00,2e,00,74,00,74,00,66,00,00,00} }
7935.164:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,57,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=57, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=52, namelen=26, name=L"MS Sans Serif", data={73,00,73,00,65,00,72,00,69,00,66,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.165:0048:004c:trace:reg:NtQueryValueKey (0x3c,L"MS Sans Serif",2,0x21f80c,532)
004c: get_key_value( hkey=003c, name=L"MS Sans Serif" )
004c: get_key_value() = 0 { type=1, total=26, data={73,00,73,00,65,00,72,00,69,00,66,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.165:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\sserifee.fon" -> ret c000003a
7935.165:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifee.fon"
7935.165:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifee.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.165:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.165:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifee.fon" index 0
7935.165:0048:004c:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.165:0048:004c:warn:font:ft_face_get_full_name full name not found, using L"MS Sans Serif Regular" instead
7935.165:0048:004c:trace:font:get_bitmap_size Adding bitmap size h 13 w 5 size 8 x_ppem 11 y_ppem 11
7935.165:0048:004c:trace:font:get_fontsig pix_h 13 charset 238 dpi 96x96 pt 8
7935.165:0048:004c:trace:font:insert_face_in_family_list Adding face L"MS Sans Serif Regular" in family L"MS Sans Serif" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon"
7935.165:0048:004c:trace:font:add_unix_face fsCsb = 00000002 00000000/00000000 00000000 00000000 00000000
7935.165:0050:0054:trace:file:NtQueryDirectoryFile => 0 (6910)
7935.165:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifee.fon, face_index 1, data_ptr (nil), data_size 0, flags 0x2
7935.165:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1255.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1255.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/coue1255.fon"
7935.165:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.165:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/coue1255.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.165:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifee.fon" index 1
7935.165:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.165:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/coue1255.fon" index 0
7935.165:0048:004c:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.165:0048:004c:warn:font:ft_face_get_full_name full name not found, using L"MS Sans Serif Regular" instead
7935.165:0048:004c:trace:font:get_bitmap_size Adding bitmap size h 16 w 7 size 10 x_ppem 13 y_ppem 13
7935.165:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/coue1255.fon"/0xb7bf2000
7935.165:0048:004c:trace:font:get_fontsig pix_h 16 charset 238 dpi 96x96 pt 10
7935.165:0048:004c:trace:font:insert_face_in_family_list Adding face L"MS Sans Serif Regular" in family L"MS Sans Serif" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon"
7935.165:0048:004c:trace:font:add_unix_face fsCsb = 00000002 00000000/00000000 00000000 00000000 00000000
7935.165:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1256.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1256.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/coue1256.fon"
7935.165:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,58,1,0x21f80c,532)
7935.165:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/coue1256.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.165:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value( hkey=003c, index=58, info_class=1 )
7935.167:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/coue1256.fon" index 0
004c: enum_key_value() = 0 { type=1, total=40, namelen=16, name=L"MS Serif", data={73,00,65,00,72,00,69,00,66,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.167:0048:004c:trace:reg:NtQueryValueKey (0x3c,L"MS Serif",2,0x21f80c,532)
7935.167:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/coue1256.fon"/0xb7bf2000
004c: get_key_value( hkey=003c, name=L"MS Serif" )
004c: get_key_value() = 0 { type=1, total=24, data={73,00,65,00,72,00,69,00,66,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.167:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1257.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\coue1257.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/coue1257.fon"
7935.167:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/coue1257.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.167:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.167:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/coue1257.fon" index 0
7935.167:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\serifee.fon" -> ret c000003a
7935.167:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/coue1257.fon"/0xb7bf2000
7935.167:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\coure.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\coure.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/coure.fon"
7935.167:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/coure.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.167:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.167:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/coure.fon" index 0
7935.167:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/coure.fon"/0xb7bf2000
7935.167:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\serifee.fon" -> ret c000000f nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\serifee.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/serifee.fon"
7935.167:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\couree.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\couree.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/couree.fon"
7935.167:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/serifee.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.167:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/couree.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.167:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,59,1,0x21f80c,532)
7935.167:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.167:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/couree.fon" index 0
004c: enum_key_value( hkey=003c, index=59, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=146, namelen=56, name=L"NimbusMonoPS-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,4d,00,6f,00,6e,00,6f,00,50,00,53,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.169:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/couree.fon"/0xb7bf2000
7935.169:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,60,1,0x21f80c,532)
7935.169:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\coureg.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\coureg.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/coureg.fon"
004c: enum_key_value( hkey=003c, index=60, info_class=1 )
7935.170:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/coureg.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=1, total=170, namelen=68, name=L"NimbusMonoPS-BoldItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,4d,00,6f,00,6e,00,6f,00,50,00,53,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.170:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.170:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/coureg.fon" index 0
7935.170:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,61,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=61, info_class=1 )
7935.170:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/coureg.fon"/0xb7bf2000
004c: enum_key_value() = 0 { type=1, total=154, namelen=60, name=L"NimbusMonoPS-Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,4d,00,6f,00,6e,00,6f,00,50,00,53,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.170:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\courer.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\courer.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/courer.fon"
7935.170:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,62,1,0x21f80c,532)
7935.170:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/courer.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=62, info_class=1 )
7935.170:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.170:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/courer.fon" index 0
004c: enum_key_value() = 0 { type=1, total=158, namelen=62, name=L"NimbusMonoPS-Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,4d,00,6f,00,6e,00,6f,00,50,00,53,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.170:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/courer.fon"/0xb7bf2000
7935.170:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,63,1,0x21f80c,532)
7935.171:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\couret.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\couret.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/couret.fon"
004c: enum_key_value( hkey=003c, index=63, info_class=1 )
7935.171:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/couret.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=1, total=142, namelen=54, name=L"NimbusRoman-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,52,00,6f,00,6d,00,61,00,6e,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.171:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.171:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/couret.fon" index 0
7935.171:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,64,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=64, info_class=1 )
7935.171:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/couret.fon"/0xb7bf2000
004c: enum_key_value() = 0 { type=1, total=166, namelen=66, name=L"NimbusRoman-BoldItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,52,00,6f,00,6d,00,61,00,6e,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.171:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\cvgasys.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\cvgasys.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/cvgasys.fon"
7935.171:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,65,1,0x21f80c,532)
7935.171:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/cvgasys.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=65, info_class=1 )
7935.171:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.171:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/cvgasys.fon" index 0
004c: enum_key_value() = 0 { type=1, total=150, namelen=58, name=L"NimbusRoman-Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,52,00,6f,00,6d,00,61,00,6e,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.171:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,66,1,0x21f80c,532)
7935.171:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/cvgasys.fon"/0xb7bf0000
004c: enum_key_value( hkey=003c, index=66, info_class=1 )
7935.172:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\hvgasys.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\hvgasys.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/hvgasys.fon"
004c: enum_key_value() = 0 { type=1, total=154, namelen=60, name=L"NimbusRoman-Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,52,00,6f,00,6d,00,61,00,6e,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.172:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/hvgasys.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.172:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,67,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=67, info_class=1 )
7935.172:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.172:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/hvgasys.fon" index 0
004c: enum_key_value() = 0 { type=1, total=138, namelen=52, name=L"NimbusSans-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.172:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,68,1,0x21f80c,532)
7935.172:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/hvgasys.fon"/0xb7bf2000
004c: enum_key_value( hkey=003c, index=68, info_class=1 )
7935.173:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\jsmalle.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\jsmalle.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/jsmalle.fon"
004c: enum_key_value() = 0 { type=1, total=162, namelen=64, name=L"NimbusSans-BoldItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.173:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/jsmalle.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.173:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,69,1,0x21f80c,532)
7935.173:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.173:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/jsmalle.fon" index 0
004c: enum_key_value( hkey=003c, index=69, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=146, namelen=56, name=L"NimbusSans-Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.173:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/jsmalle.fon"/0xb7bf2000
7935.173:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,70,1,0x21f80c,532)
7935.173:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\jvgafix.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\jvgafix.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/jvgafix.fon"
004c: enum_key_value( hkey=003c, index=70, info_class=1 )
7935.173:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/jvgafix.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=1, total=150, namelen=58, name=L"NimbusSans-Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.173:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.173:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/jvgafix.fon" index 0
7935.173:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,71,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=71, info_class=1 )
7935.174:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/jvgafix.fon"/0xb7bf2000
004c: enum_key_value() = 0 { type=1, total=162, namelen=64, name=L"NimbusSansNarrow-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,4e,00,61,00,72,00,72,00,6f,00,77,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.174:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\jvgasys.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\jvgasys.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/jvgasys.fon"
7935.174:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/jvgasys.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.174:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,72,1,0x21f80c,532)
7935.174:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value( hkey=003c, index=72, info_class=1 )
7935.174:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/jvgasys.fon" index 0
004c: enum_key_value() = 0 { type=1, total=186, namelen=78, name=L"NimbusSansNarrow-BoldOblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,4e,00,61,00,72,00,72,00,6f,00,77,00,2d,00,42,00,64,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.174:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/jvgasys.fon"/0xb7bf2000
7935.174:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,73,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=73, info_class=1 )
7935.175:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\marlett.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\marlett.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/marlett.ttf"
7935.175:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/marlett.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=1, total=174, namelen=70, name=L"NimbusSansNarrow-Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,4e,00,61,00,72,00,72,00,6f,00,77,00,2d,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.175:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,74,1,0x21f80c,532)
0054: open_mapping( access=00000004, attributes=00000000, rootdir=0000, name=L"\\NLS\\NlsSectionCP10000" )
0054: open_mapping() = 0 { handle=0038 }
004c: enum_key_value( hkey=003c, index=74, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=174, namelen=70, name=L"NimbusSansNarrow-Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,4e,00,61,00,72,00,72,00,6f,00,77,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.175:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,75,1,0x21f80c,532)
7935.175:0050:0054:trace:virtual:NtMapViewOfSection handle=0x38 process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x2
004c: enum_key_value( hkey=003c, index=75, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=114, namelen=40, name=L"P052-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,50,00,30,00,35,00,32,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
0054: get_mapping_info( handle=0038, access=00000004 )
0054: get_mapping_info() = 0 { size=00010222, flags=00800000, shared_file=0000, name_len=0, total=0, image={}, name=L"", exp_name="" }
7935.175:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,76,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=76, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=138, namelen=52, name=L"P052-BoldItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,50,00,30,00,35,00,32,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
0054: get_handle_fd( handle=0038 )
0054: *fd* 0038 -> 73
7935.175:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,77,1,0x21f80c,532)
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=00000004, options=00000020 }
004c: enum_key_value( hkey=003c, index=77, info_class=1 )
7935.176:0050:0054:trace:virtual:map_view got mem in reserved area 0xd80000-0xd91000
004c: enum_key_value() = 0 { type=1, total=122, namelen=44, name=L"P052-Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,50,00,30,00,35,00,32,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.176:0050:0054:trace:virtual_ranges:free_ranges_insert_view 0xd80000 - 0xd91000, aligned 0xd80000 - 0xda0000.
7935.176:0050:0054:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7935.176:0050:0054:trace:virtual_ranges:dump_free_ranges 0x3f0000 - 0x400000.
7935.176:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,78,1,0x21f80c,532)
7935.176:0050:0054:trace:virtual_ranges:dump_free_ranges 0xda0000 - 0x7fde0000.
7935.176:0050:0054:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7935.176:0050:0054:trace:virtual:virtual_map_section handle=0x38 size=11000 offset=0
004c: enum_key_value( hkey=003c, index=78, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=118, namelen=42, name=L"P052-Roman (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,50,00,30,00,35,00,32,00,2d,00,52,00,6f,00,6d,00,61,00,6e,00,2e,00,6f,00,74,00,66,00,00,00} }
0054: map_view( mapping=0038, access=00000004, base=00d80000, size=00011000, start=00000000 )
7935.176:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,79,1,0x21f80c,532)
0054: map_view() = 0
004c: enum_key_value( hkey=003c, index=79, info_class=1 )
7935.177:0050:0054:trace:virtual:dump_view View: 0xd80000 - 0xd90fff c-r-- (file)
7935.177:0050:0054:trace:virtual:dump_view       0xd80000 - 0xd90fff c-r--
004c: enum_key_value() = 0 { type=1, total=46, namelen=22, name=L"Small Fonts", data={73,00,6d,00,61,00,6c,00,6c,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
0054: close_handle( handle=0038 )
0054: close_handle() = 0
7935.177:0048:004c:trace:reg:NtQueryValueKey (0x3c,L"Small Fonts",2,0x21f80c,532)
7935.177:0050:0054:trace:font:unix_face_create parsed font names family_name L"Marlett", second_name L"Marlett", primary_seen 0, english_seen 1, full_name L"Marlett", style_name L"Regular"
004c: get_key_value( hkey=003c, name=L"Small Fonts" )
7935.177:0050:0054:trace:font:insert_face_in_family_list Adding face L"Marlett" in family L"Marlett" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\marlett.ttf"
004c: get_key_value() = 0 { type=1, total=24, data={73,00,6d,00,61,00,6c,00,6c,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.177:0050:0054:trace:font:add_unix_face fsCsb = 80000000 00000000/00000000 00000000 00000000 00000000
7935.177:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1255.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1255.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smae1255.fon"
7935.177:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smae1255.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.177:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.177:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smae1255.fon" index 0
7935.177:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\smallee.fon" -> ret c000003a
7935.177:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallee.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallee.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smallee.fon"
7935.177:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smae1255.fon"/0xb7bf2000
7935.177:0048:004c:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smallee.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.177:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1256.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1256.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smae1256.fon"
7935.177:0048:004c:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.177:0048:004c:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smallee.fon" index 0
7935.177:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smae1256.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.177:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.177:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smae1256.fon" index 0
7935.177:0048:004c:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.177:0048:004c:warn:font:ft_face_get_full_name full name not found, using L"Small Fonts Regular" instead
7935.177:0048:004c:trace:font:get_bitmap_size Adding bitmap size h 11 w 5 size 7 x_ppem 9 y_ppem 9
7935.177:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smae1256.fon"/0xb7bf2000
7935.177:0048:004c:trace:font:get_fontsig pix_h 11 charset 238 dpi 96x96 pt 7
7935.177:0048:004c:trace:font:insert_face_in_family_list Adding face L"Small Fonts Regular" in family L"Small Fonts" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallee.fon"
7935.177:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1257.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smae1257.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smae1257.fon"
7935.177:0048:004c:trace:font:add_unix_face fsCsb = 00000002 00000000/00000000 00000000 00000000 00000000
7935.177:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smae1257.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.177:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,80,1,0x21f80c,532)
7935.179:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value( hkey=003c, index=80, info_class=1 )
7935.179:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smae1257.fon" index 0
004c: enum_key_value() = 0 { type=1, total=150, namelen=60, name=L"Standard Symbols PS (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,53,00,74,00,61,00,6e,00,64,00,61,00,72,00,64,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,73,00,50,00,53,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.179:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smae1257.fon"/0xb7bf2000
7935.179:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,81,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=81, info_class=1 )
7935.179:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smalle.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smalle.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smalle.fon"
7935.179:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smalle.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=1, total=104, namelen=34, name=L"Symbol (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,73,00,79,00,6d,00,62,00,6f,00,6c,00,2e,00,74,00,74,00,66,00,00,00} }
7935.179:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.179:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,82,1,0x21f80c,532)
7935.179:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smalle.fon" index 0
004c: enum_key_value( hkey=003c, index=82, info_class=1 )
7935.179:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smalle.fon"/0xb7bf2000
004c: enum_key_value() = 0 { type=1, total=104, namelen=34, name=L"Tahoma (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,74,00,61,00,68,00,6f,00,6d,00,61,00,2e,00,74,00,74,00,66,00,00,00} }
7935.179:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallee.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallee.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smallee.fon"
7935.179:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,83,1,0x21f80c,532)
7935.179:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smallee.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=83, info_class=1 )
7935.180:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.180:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smallee.fon" index 0
004c: enum_key_value() = 0 { type=1, total=118, namelen=44, name=L"Tahoma Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,74,00,61,00,68,00,6f,00,6d,00,61,00,62,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.180:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,84,1,0x21f80c,532)
7935.180:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smallee.fon"/0xb7bf2000
004c: enum_key_value( hkey=003c, index=84, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=138, namelen=52, name=L"URWBookman-Demi (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,42,00,6f,00,6f,00,6b,00,6d,00,61,00,6e,00,2d,00,44,00,65,00,6d,00,69,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.180:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smalleg.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smalleg.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smalleg.fon"
7935.180:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smalleg.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.180:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,85,1,0x21f80c,532)
7935.180:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value( hkey=003c, index=85, info_class=1 )
7935.180:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smalleg.fon" index 0
004c: enum_key_value() = 0 { type=1, total=162, namelen=64, name=L"URWBookman-DemiItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,42,00,6f,00,6f,00,6b,00,6d,00,61,00,6e,00,2d,00,44,00,65,00,6d,00,69,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.180:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smalleg.fon"/0xb7bf2000
7935.180:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,86,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=86, info_class=1 )
7935.181:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smaller.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smaller.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smaller.fon"
7935.181:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smaller.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=1, total=142, namelen=54, name=L"URWBookman-Light (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,42,00,6f,00,6f,00,6b,00,6d,00,61,00,6e,00,2d,00,4c,00,69,00,67,00,68,00,74,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.181:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.181:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smaller.fon" index 0
7935.181:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,87,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=87, info_class=1 )
7935.181:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smaller.fon"/0xb7bf2000
004c: enum_key_value() = 0 { type=1, total=166, namelen=66, name=L"URWBookman-LightItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,42,00,6f,00,6f,00,6b,00,6d,00,61,00,6e,00,2d,00,4c,00,69,00,67,00,68,00,74,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.181:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallet.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallet.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smallet.fon"
7935.181:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,88,1,0x21f80c,532)
7935.181:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smallet.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=88, info_class=1 )
7935.182:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.182:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smallet.fon" index 0
004c: enum_key_value() = 0 { type=1, total=134, namelen=50, name=L"URWGothic-Book (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,47,00,6f,00,74,00,68,00,69,00,63,00,2d,00,42,00,6f,00,6f,00,6b,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.182:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,89,1,0x21f80c,532)
7935.182:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/smallet.fon"/0xb7bf2000
004c: enum_key_value( hkey=003c, index=89, info_class=1 )
7935.182:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1255.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1255.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssee1255.fon"
004c: enum_key_value() = 0 { type=1, total=162, namelen=64, name=L"URWGothic-BookOblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,47,00,6f,00,74,00,68,00,69,00,63,00,2d,00,42,00,6f,00,6f,00,6b,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.182:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssee1255.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.182:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,90,1,0x21f80c,532)
7935.182:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.182:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssee1255.fon" index 0
004c: enum_key_value( hkey=003c, index=90, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=134, namelen=50, name=L"URWGothic-Demi (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,47,00,6f,00,74,00,68,00,69,00,63,00,2d,00,44,00,65,00,6d,00,69,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.182:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssee1255.fon"/0x7ed83000
7935.182:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,91,1,0x21f80c,532)
7935.183:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1256.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1256.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssee1256.fon"
004c: enum_key_value( hkey=003c, index=91, info_class=1 )
7935.183:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssee1256.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=1, total=162, namelen=64, name=L"URWGothic-DemiOblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,47,00,6f,00,74,00,68,00,69,00,63,00,2d,00,44,00,65,00,6d,00,69,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.183:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.183:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssee1256.fon" index 0
7935.183:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,92,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=92, info_class=1 )
7935.183:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssee1256.fon"/0x7ed83000
004c: enum_key_value() = 0 { type=1, total=112, namelen=38, name=L"Webdings (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,77,00,65,00,62,00,64,00,69,00,6e,00,67,00,73,00,2e,00,74,00,74,00,66,00,00,00} }
7935.183:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,93,1,0x21f80c,532)
7935.183:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1257.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee1257.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssee1257.fon"
7935.183:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssee1257.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=93, info_class=1 )
7935.184:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value() = 0 { type=1, total=114, namelen=40, name=L"Wingdings (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,77,00,69,00,6e,00,67,00,64,00,69,00,6e,00,67,00,2e,00,74,00,74,00,66,00,00,00} }
7935.184:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssee1257.fon" index 0
7935.184:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,94,1,0x21f80c,532)
004c: enum_key_value( hkey=003c, index=94, info_class=1 )
7935.184:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssee1257.fon"/0x7ed83000
004c: enum_key_value() = 0 { type=1, total=146, namelen=56, name=L"Z003-MediumItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,5a,00,30,00,30,00,33,00,2d,00,4d,00,65,00,64,00,69,00,75,00,6d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.184:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee874.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssee874.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssee874.fon"
7935.184:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,95,1,0x21f80c,532)
7935.184:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssee874.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=95, info_class=1 )
7935.184:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value() = NO_MORE_ENTRIES { type=0, total=0, namelen=0, name=L"", data={} }
7935.184:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssee874.fon" index 0
004c: close_handle( handle=003c )
004c: close_handle() = 0
7935.185:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssee874.fon"/0x7ed83000
004c: enum_key( hkey=0038, index=0, info_class=1 )
004c: enum_key() = NO_MORE_ENTRIES { subkeys=0, max_subkey=0, max_class=0, values=0, max_value=0, max_data=0, modif=0, total=0, namelen=0, name=L"", class=L"" }
7935.185:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1255.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1255.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssef1255.fon"
7935.185:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssef1255.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.185:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\FontSubstitutes",2000000,0x21f79c)
7935.185:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.185:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssef1255.fon" index 0
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\FontSubstitutes" )
004c: open_key() = 0 { hkey=003c }
7935.185:0048:004c:trace:reg:NtOpenKeyEx <- 0x3c
7935.185:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,0,1,0x21f820,512)
7935.185:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssef1255.fon"/0xb7bf0000
004c: enum_key_value( hkey=003c, index=0, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=40, namelen=20, name=L"Arial CE,0", data={41,00,72,00,69,00,61,00,6c,00,2c,00,32,00,33,00,38,00,00,00} }
7935.185:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1256.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1256.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssef1256.fon"
7935.185:0048:004c:trace:font:load_gdi_font_subst Got L"Arial CE,0"=L"Arial,238"
7935.185:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssef1256.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.185:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,1,1,0x21f820,512)
7935.186:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value( hkey=003c, index=1, info_class=1 )
7935.186:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssef1256.fon" index 0
004c: enum_key_value() = 0 { type=1, total=64, namelen=32, name=L"Courier New CE,0", data={43,00,6f,00,75,00,72,00,69,00,65,00,72,00,20,00,4e,00,65,00,77,00,2c,00,32,00,33,00,38,00,00,00} }
7935.186:0048:004c:trace:font:load_gdi_font_subst Got L"Courier New CE,0"=L"Courier New,238"
7935.186:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,2,1,0x21f820,512)
7935.186:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssef1256.fon"/0xb7bf0000
004c: enum_key_value( hkey=003c, index=2, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=50, namelen=18, name=L"Courier,0", data={43,00,6f,00,75,00,72,00,69,00,65,00,72,00,20,00,4e,00,65,00,77,00,2c,00,32,00,33,00,38,00,00,00} }
7935.186:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1257.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef1257.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssef1257.fon"
7935.186:0048:004c:trace:font:load_gdi_font_subst Got L"Courier,0"=L"Courier New,238"
7935.186:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssef1257.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.186:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,3,1,0x21f820,512)
7935.186:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value( hkey=003c, index=3, info_class=1 )
7935.186:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssef1257.fon" index 0
004c: enum_key_value() = 0 { type=1, total=46, namelen=20, name=L"Fixedsys,0", data={46,00,69,00,78,00,65,00,64,00,73,00,79,00,73,00,2c,00,32,00,33,00,38,00,00,00} }
7935.186:0048:004c:trace:font:load_gdi_font_subst Got L"Fixedsys,0"=L"Fixedsys,238"
7935.186:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,4,1,0x21f820,512)
7935.186:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssef1257.fon"/0xb7bf0000
004c: enum_key_value( hkey=003c, index=4, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=48, namelen=12, name=L"Helv,0", data={4d,00,53,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,2c,00,32,00,33,00,38,00,00,00} }
7935.187:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef874.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\ssef874.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/ssef874.fon"
7935.187:0048:004c:trace:font:load_gdi_font_subst Got L"Helv,0"=L"MS Sans Serif,238"
7935.187:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,5,1,0x21f820,512)
7935.187:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/ssef874.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=5, info_class=1 )
7935.187:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.187:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/ssef874.fon" index 0
004c: enum_key_value() = 0 { type=1, total=66, namelen=30, name=L"MS Sans Serif,0", data={4d,00,53,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,2c,00,32,00,33,00,38,00,00,00} }
7935.187:0048:004c:trace:font:load_gdi_font_subst Got L"MS Sans Serif,0"=L"MS Sans Serif,238"
7935.187:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,6,1,0x21f820,512)
7935.187:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/ssef874.fon"/0xb7bf0000
004c: enum_key_value( hkey=003c, index=6, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=46, namelen=20, name=L"MS Serif,0", data={4d,00,53,00,20,00,53,00,65,00,72,00,69,00,66,00,2c,00,32,00,33,00,38,00,00,00} }
7935.187:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserife.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserife.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserife.fon"
7935.187:0048:004c:trace:font:load_gdi_font_subst Got L"MS Serif,0"=L"MS Serif,238"
7935.187:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,7,1,0x21f820,512)
7935.187:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserife.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=7, info_class=1 )
7935.188:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value() = 0 { type=1, total=38, namelen=24, name=L"MS Shell Dlg", data={54,00,61,00,68,00,6f,00,6d,00,61,00,00,00} }
7935.188:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserife.fon" index 0
7935.188:0048:004c:trace:font:load_gdi_font_subst Got L"MS Shell Dlg"=L"Tahoma"
7935.188:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,8,1,0x21f820,512)
004c: enum_key_value( hkey=003c, index=8, info_class=1 )
7935.188:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserife.fon"/0x7ed83000
004c: enum_key_value() = 0 { type=1, total=58, namelen=26, name=L"Small Fonts,0", data={53,00,6d,00,61,00,6c,00,6c,00,20,00,46,00,6f,00,6e,00,74,00,73,00,2c,00,32,00,33,00,38,00,00,00} }
7935.188:0048:004c:trace:font:load_gdi_font_subst Got L"Small Fonts,0"=L"Small Fonts,238"
7935.188:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifee.fon"
7935.188:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,9,1,0x21f820,512)
7935.188:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifee.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=9, info_class=1 )
7935.188:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value() = 0 { type=1, total=38, namelen=16, name=L"System,0", data={53,00,79,00,73,00,74,00,65,00,6d,00,2c,00,32,00,33,00,38,00,00,00} }
7935.188:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifee.fon" index 0
7935.188:0048:004c:trace:font:load_gdi_font_subst Got L"System,0"=L"System,238"
7935.188:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,10,1,0x21f820,512)
004c: enum_key_value( hkey=003c, index=10, info_class=1 )
7935.189:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserifee.fon"/0xb7bf1000
004c: enum_key_value() = 0 { type=1, total=80, namelen=40, name=L"Times New Roman CE,0", data={54,00,69,00,6d,00,65,00,73,00,20,00,4e,00,65,00,77,00,20,00,52,00,6f,00,6d,00,61,00,6e,00,2c,00,32,00,33,00,38,00,00,00} }
7935.189:0048:004c:trace:font:load_gdi_font_subst Got L"Times New Roman CE,0"=L"Times New Roman,238"
7935.189:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifeg.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifeg.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifeg.fon"
7935.189:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,11,1,0x21f820,512)
7935.189:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifeg.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=11, info_class=1 )
7935.189:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value() = 0 { type=1, total=46, namelen=14, name=L"Tms Rmn", data={54,00,69,00,6d,00,65,00,73,00,20,00,4e,00,65,00,77,00,20,00,52,00,6f,00,6d,00,61,00,6e,00,00,00} }
7935.189:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifeg.fon" index 0
7935.189:0048:004c:trace:font:load_gdi_font_subst Got L"Tms Rmn"=L"Times New Roman"
7935.189:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,12,1,0x21f820,512)
7935.189:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserifeg.fon"/0x7ed83000
004c: enum_key_value( hkey=003c, index=12, info_class=1 )
004c: enum_key_value() = 0 { type=1, total=44, namelen=18, name=L"Tms Rmn,0", data={4d,00,53,00,20,00,53,00,65,00,72,00,69,00,66,00,2c,00,32,00,33,00,38,00,00,00} }
7935.189:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifer.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifer.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifer.fon"
7935.189:0048:004c:trace:font:load_gdi_font_subst Got L"Tms Rmn,0"=L"MS Serif,238"
7935.189:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifer.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.189:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,13,1,0x21f820,512)
004c: enum_key_value( hkey=003c, index=13, info_class=1 )
7935.190:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value() = NO_MORE_ENTRIES { type=0, total=0, namelen=0, name=L"", data={} }
7935.190:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifer.fon" index 0
004c: close_handle( handle=003c )
004c: close_handle() = 0
7935.190:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserifer.fon"/0x7ed82000
7935.190:0048:004c:trace:reg:NtOpenKeyEx (0x30,L"Replacements",2000000,0x21f1dc)
004c: open_key( parent=0030, access=02000000, attributes=00000040, name=L"Replacements" )
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.190:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifet.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifet.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifet.fon"
7935.190:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.190:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifet.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.190:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\FontLink\\SystemLink",2000000,0x21e814)
7935.190:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\FontLink\\SystemLink" )
7935.190:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifet.fon" index 0
004c: open_key() = 0 { hkey=003c }
7935.190:0048:004c:trace:reg:NtOpenKeyEx <- 0x3c
7935.190:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,0,1,0x21ea20,4096)
7935.190:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserifet.fon"/0x7ed83000
004c: enum_key_value( hkey=003c, index=0, info_class=1 )
7935.191:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriff.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriff.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sseriff.fon"
7935.191:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sseriff.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.191:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.191:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sseriff.fon" index 0
004c: enum_key_value() = 0 { type=7, total=478, namelen=38, name=L"Lucida Sans Unicode", data={4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.191:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sseriff.fon"/0xb7bf0000
7935.191:0048:004c:trace:font:load_system_links L"Lucida Sans Unicode": L"MSGOTHIC.TTC,MS UI Gothic"
7935.191:0048:004c:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.191:0048:004c:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.191:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffe.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffe.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sseriffe.fon"
7935.191:0048:004c:trace:font:load_system_links L"Lucida Sans Unicode": L"MINGLIU.TTC,PMingLiU"
7935.191:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.191:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sseriffe.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.191:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.191:0048:004c:trace:font:load_system_links L"Lucida Sans Unicode": L"SIMSUN.TTC,SimSun"
7935.191:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.191:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.191:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.191:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sseriffe.fon" index 0
7935.191:0048:004c:trace:font:load_system_links L"Lucida Sans Unicode": L"GULIM.TTC,Gulim"
7935.191:0048:004c:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"Gulim"
7935.191:0048:004c:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"Gulim"
7935.191:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sseriffe.fon"/0xb7bf2000
7935.191:0048:004c:trace:font:load_system_links L"Lucida Sans Unicode": L"YUGOTHM.TTC,Yu Gothic UI"
7935.191:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.191:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.191:0048:004c:trace:font:load_system_links L"Lucida Sans Unicode": L"MSJH.TTC,Microsoft JhengHei UI"
7935.191:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffg.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffg.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sseriffg.fon"
7935.191:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.191:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.191:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sseriffg.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.191:0048:004c:trace:font:load_system_links L"Lucida Sans Unicode": L"MSYH.TTC,Microsoft YaHei UI"
7935.191:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.191:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.191:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.191:0048:004c:trace:font:load_system_links L"Lucida Sans Unicode": L"MALGUN.TTF,Malgun Gothic"
7935.191:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sseriffg.fon" index 0
7935.191:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.191:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.191:0048:004c:trace:font:load_system_links L"Lucida Sans Unicode": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.191:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.191:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sseriffg.fon"/0xb7bf0000
7935.191:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.191:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,1,1,0x21ea20,4096)
7935.191:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffr.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sseriffr.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sseriffr.fon"
004c: enum_key_value( hkey=003c, index=1, info_class=1 )
7935.193:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sseriffr.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.193:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.193:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sseriffr.fon" index 0
7935.193:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sseriffr.fon"/0xb7bf0000
004c: enum_key_value() = 0 { type=7, total=372, namelen=12, name=L"Meiryo", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.193:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifft.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifft.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifft.fon"
7935.193:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifft.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.193:0048:004c:trace:font:load_system_links L"Meiryo": L"SEGOEUI.TTF,Segoe UI"
7935.193:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUI.TTF" name L"Segoe UI"
7935.193:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUI.TTF" family L"Segoe UI"
7935.193:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.193:0048:004c:trace:font:load_system_links L"Meiryo": L"YUGOTHM.TTC,Yu Gothic UI"
7935.193:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifft.fon" index 0
7935.193:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.193:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.193:0048:004c:trace:font:load_system_links L"Meiryo": L"MSGOTHIC.TTC,MS UI Gothic"
7935.193:0048:004c:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.193:0048:004c:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.193:0048:004c:trace:font:load_system_links L"Meiryo": L"MSJH.TTC,Microsoft JhengHei"
7935.193:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/sserifft.fon"/0xb7bf0000
7935.193:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei"
7935.193:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei"
7935.193:0048:004c:trace:font:load_system_links L"Meiryo": L"MSYH.TTC,Microsoft YaHei"
7935.193:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei"
7935.193:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\svgasys.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\svgasys.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/svgasys.fon"
7935.193:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei"
7935.193:0048:004c:trace:font:load_system_links L"Meiryo": L"MALGUN.TTF,Malgun Gothic"
7935.193:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/svgasys.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.193:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.193:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.193:0048:004c:trace:font:load_system_links L"Meiryo": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.193:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.193:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.193:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/svgasys.fon" index 0
7935.193:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.193:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,2,1,0x21ea20,4096)
004c: enum_key_value( hkey=003c, index=2, info_class=1 )
7935.194:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/svgasys.fon"/0xb7bf0000
7935.194:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\symbol.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\symbol.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/symbol.ttf"
7935.194:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/symbol.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=7, total=446, namelen=22, name=L"Meiryo Bold", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,42,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,53,00,4a,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,59,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,42,00,44,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,42,00,6f,00,6c,00,64,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.194:0050:0054:trace:font:unix_face_create parsed font names family_name L"Symbol", second_name L"Symbol", primary_seen 0, english_seen 1, full_name L"Symbol", style_name L"Regular"
7935.194:0048:004c:trace:font:load_system_links L"Meiryo Bold": L"SEGOEUIB.TTF,Segoe UI Bold"
7935.194:0050:0054:trace:font:insert_face_in_family_list Adding face L"Symbol" in family L"Symbol" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\symbol.ttf"
7935.194:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUIB.TTF" name L"Segoe UI Bold"
7935.194:0050:0054:trace:font:add_unix_face fsCsb = 80000000 00000000/00000000 00000000 00000000 00000000
7935.194:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUIB.TTF" family L"Segoe UI Bold"
7935.194:0048:004c:trace:font:load_system_links L"Meiryo Bold": L"YUGOTHB.TTC,Yu Gothic UI Bold"
7935.194:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahoma.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahoma.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/tahoma.ttf"
7935.194:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHB.TTC" name L"Yu Gothic UI Bold"
7935.194:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHB.TTC" family L"Yu Gothic UI Bold"
7935.194:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/tahoma.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.194:0048:004c:trace:font:load_system_links L"Meiryo Bold": L"MSGOTHIC.TTC,MS UI Gothic"
7935.194:0048:004c:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.194:0048:004c:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.194:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported sfnt font: embedded bitmap data.
7935.194:0048:004c:trace:font:load_system_links L"Meiryo Bold": L"MSJHBD.TTC,Microsoft Jhenghei Bold"
7935.194:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/tahoma.ttf" index 0
7935.194:0048:004c:trace:font:find_face_from_filename looking for file L"MSJHBD.TTC" name L"Microsoft Jhenghei Bold"
7935.194:0048:004c:trace:font:load_system_links Unable to find file L"MSJHBD.TTC" family L"Microsoft Jhenghei Bold"
7935.194:0048:004c:trace:font:load_system_links L"Meiryo Bold": L"MSYHBD.TTC,Microsoft YaHei Bold"
7935.194:0048:004c:trace:font:find_face_from_filename looking for file L"MSYHBD.TTC" name L"Microsoft YaHei Bold"
7935.194:0048:004c:trace:font:load_system_links Unable to find file L"MSYHBD.TTC" family L"Microsoft YaHei Bold"
7935.194:0050:0054:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.194:0048:004c:trace:font:load_system_links L"Meiryo Bold": L"MALGUNBD.TTF,Malgun Gothic Bold"
7935.194:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUNBD.TTF" name L"Malgun Gothic Bold"
7935.194:0050:0054:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.194:0048:004c:trace:font:load_system_links Unable to find file L"MALGUNBD.TTF" family L"Malgun Gothic Bold"
7935.194:0050:0054:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.194:0048:004c:trace:font:load_system_links L"Meiryo Bold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.194:0050:0054:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.194:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.194:0050:0054:trace:font:get_face_name name 2 found platform 3 lang 0409 L"Regular"
7935.194:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.194:0050:0054:trace:font:get_face_name name 4 found platform 3 lang 0409 L"Tahoma"
7935.194:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,3,1,0x21ea20,4096)
7935.194:0050:0054:trace:font:insert_face_in_family_list Adding face L"Tahoma" in family L"Tahoma" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahoma.ttf"
004c: enum_key_value( hkey=003c, index=3, info_class=1 )
7935.196:0050:0054:trace:font:add_unix_face fsCsb = 20000057 00080000/800022ef c000205a 00000008 00000000
7935.196:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahomabd.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahomabd.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/tahomabd.ttf"
7935.196:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/tahomabd.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.196:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported sfnt font: embedded bitmap data.
004c: enum_key_value() = 0 { type=7, total=390, namelen=18, name=L"Meiryo UI", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.196:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/tahomabd.ttf" index 0
7935.196:0048:004c:trace:font:load_system_links L"Meiryo UI": L"SEGOEUI.TTF,Segoe UI"
7935.196:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUI.TTF" name L"Segoe UI"
7935.196:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUI.TTF" family L"Segoe UI"
7935.196:0048:004c:trace:font:load_system_links L"Meiryo UI": L"YUGOTHM.TTC,Yu Gothic UI"
7935.196:0050:0054:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.196:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.196:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.196:0050:0054:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.196:0048:004c:trace:font:load_system_links L"Meiryo UI": L"MSGOTHIC.TTC,MS UI Gothic"
7935.196:0050:0054:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.196:0048:004c:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.196:0050:0054:trace:font:get_face_name name 1 found platform 3 lang 0409 L"Tahoma"
7935.196:0048:004c:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.196:0050:0054:trace:font:get_face_name name 2 found platform 3 lang 0409 L"Bold"
7935.196:0048:004c:trace:font:load_system_links L"Meiryo UI": L"MSJH.TTC,Microsoft Jhenghei UI"
7935.196:0050:0054:trace:font:get_face_name name 4 found platform 3 lang 0409 L"Tahoma Bold"
7935.196:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft Jhenghei UI"
7935.196:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft Jhenghei UI"
7935.196:0048:004c:trace:font:load_system_links L"Meiryo UI": L"MSYH.TTC,Microsoft YaHei UI"
7935.196:0050:0054:trace:font:insert_face_in_family_list Adding face L"Tahoma Bold" in family L"Tahoma" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahomabd.ttf"
7935.196:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.196:0050:0054:trace:font:add_unix_face fsCsb = 20000057 00080000/800022ef c000205a 00000008 00000000
7935.196:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.196:0048:004c:trace:font:load_system_links L"Meiryo UI": L"MALGUN.TTF,Malgun Gothic"
7935.196:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.196:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.196:0048:004c:trace:font:load_system_links L"Meiryo UI": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.196:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgafix.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgafix.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgafix.fon"
7935.196:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.196:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.196:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgafix.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.196:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,4,1,0x21ea20,4096)
7935.198:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
004c: enum_key_value( hkey=003c, index=4, info_class=1 )
7935.198:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgafix.fon" index 0
7935.198:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgafix.fon"/0xb7bf2000
7935.198:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1255.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1255.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgas1255.fon"
004c: enum_key_value() = 0 { type=7, total=464, namelen=28, name=L"Meiryo UI Bold", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,42,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,53,00,4a,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,59,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,42,00,44,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,42,00,6f,00,6c,00,64,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.198:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgas1255.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.198:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.198:0048:004c:trace:font:load_system_links L"Meiryo UI Bold": L"SEGOEUIB.TTF,Segoe UI Bold"
7935.198:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgas1255.fon" index 0
7935.198:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUIB.TTF" name L"Segoe UI Bold"
7935.198:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUIB.TTF" family L"Segoe UI Bold"
7935.198:0048:004c:trace:font:load_system_links L"Meiryo UI Bold": L"YUGOTHB.TTC,Yu Gothic UI Bold"
7935.198:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHB.TTC" name L"Yu Gothic UI Bold"
7935.198:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHB.TTC" family L"Yu Gothic UI Bold"
7935.198:0048:004c:trace:font:load_system_links L"Meiryo UI Bold": L"MSGOTHIC.TTC,MS UI Gothic"
7935.198:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgas1255.fon"/0xb7bf2000
7935.198:0048:004c:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.198:0048:004c:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.198:0048:004c:trace:font:load_system_links L"Meiryo UI Bold": L"MSJHBD.TTC,Microsoft Jhenghei UI Bold"
7935.198:0048:004c:trace:font:find_face_from_filename looking for file L"MSJHBD.TTC" name L"Microsoft Jhenghei UI Bold"
7935.198:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1256.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1256.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgas1256.fon"
7935.198:0048:004c:trace:font:load_system_links Unable to find file L"MSJHBD.TTC" family L"Microsoft Jhenghei UI Bold"
7935.198:0048:004c:trace:font:load_system_links L"Meiryo UI Bold": L"MSYHBD.TTC,Microsoft YaHei UI Bold"
7935.198:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgas1256.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.198:0048:004c:trace:font:find_face_from_filename looking for file L"MSYHBD.TTC" name L"Microsoft YaHei UI Bold"
7935.198:0048:004c:trace:font:load_system_links Unable to find file L"MSYHBD.TTC" family L"Microsoft YaHei UI Bold"
7935.198:0048:004c:trace:font:load_system_links L"Meiryo UI Bold": L"MALGUNBD.TTF,Malgun Gothic Bold"
7935.198:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.198:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUNBD.TTF" name L"Malgun Gothic Bold"
7935.198:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgas1256.fon" index 0
7935.198:0048:004c:trace:font:load_system_links Unable to find file L"MALGUNBD.TTF" family L"Malgun Gothic Bold"
7935.198:0048:004c:trace:font:load_system_links L"Meiryo UI Bold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.198:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.198:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.198:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgas1256.fon"/0xb7bf2000
7935.198:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,5,1,0x21ea20,4096)
7935.199:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1257.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas1257.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgas1257.fon"
004c: enum_key_value( hkey=003c, index=5, info_class=1 )
7935.199:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgas1257.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.199:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.199:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgas1257.fon" index 0
004c: enum_key_value() = 0 { type=7, total=364, namelen=36, name=L"Microsoft JhengHei", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,00,00,4d,00,45,00,49,00,52,00,59,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,65,00,69,00,72,00,79,00,6f,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.199:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgas1257.fon"/0xb7bf2000
7935.199:0048:004c:trace:font:load_system_links L"Microsoft JhengHei": L"SEGOEUI.TTF,Segoe UI"
7935.199:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUI.TTF" name L"Segoe UI"
7935.199:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUI.TTF" family L"Segoe UI"
7935.199:0048:004c:trace:font:load_system_links L"Microsoft JhengHei": L"MINGLIU.TTC,MingLiU"
7935.199:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas874.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgas874.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgas874.fon"
7935.199:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.199:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.199:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgas874.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.199:0048:004c:trace:font:load_system_links L"Microsoft JhengHei": L"MSYH.TTC,Microsoft YaHei"
7935.199:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei"
7935.199:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei"
7935.199:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.199:0048:004c:trace:font:load_system_links L"Microsoft JhengHei": L"MEIRYO.TTC,Meiryo"
7935.199:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgas874.fon" index 0
7935.199:0048:004c:trace:font:find_face_from_filename looking for file L"MEIRYO.TTC" name L"Meiryo"
7935.199:0048:004c:trace:font:load_system_links Unable to find file L"MEIRYO.TTC" family L"Meiryo"
7935.199:0048:004c:trace:font:load_system_links L"Microsoft JhengHei": L"MALGUN.TTF,Malgun Gothic"
7935.199:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.199:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.199:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgas874.fon"/0xb7bf2000
7935.199:0048:004c:trace:font:load_system_links L"Microsoft JhengHei": L"YUGOTHM.TTC,Yu Gothic UI"
7935.199:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.199:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.199:0048:004c:trace:font:load_system_links L"Microsoft JhengHei": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.199:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasys.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasys.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasys.fon"
7935.199:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.199:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.199:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasys.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.199:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,6,1,0x21ea20,4096)
7935.199:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.201:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasys.fon" index 0
004c: enum_key_value( hkey=003c, index=6, info_class=1 )
7935.201:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgasys.fon"/0xb7bf2000
7935.201:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyse.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyse.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasyse.fon"
7935.201:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasyse.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=7, total=436, namelen=46, name=L"Microsoft JhengHei Bold", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,4d,00,53,00,59,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,45,00,49,00,52,00,59,00,4f,00,42,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,65,00,69,00,72,00,79,00,6f,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,42,00,44,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,42,00,6f,00,6c,00,64,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,42,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.201:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.201:0048:004c:trace:font:load_system_links L"Microsoft JhengHei Bold": L"SEGOEUIB.TTF,Segoe UI Bold"
7935.201:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasyse.fon" index 0
7935.201:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUIB.TTF" name L"Segoe UI Bold"
7935.201:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUIB.TTF" family L"Segoe UI Bold"
7935.201:0048:004c:trace:font:load_system_links L"Microsoft JhengHei Bold": L"MINGLIU.TTC,MingLiU"
7935.201:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.201:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.201:0048:004c:trace:font:load_system_links L"Microsoft JhengHei Bold": L"MSYHBD.TTC,Microsoft YaHei Bold"
7935.201:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgasyse.fon"/0xb7bf2000
7935.201:0048:004c:trace:font:find_face_from_filename looking for file L"MSYHBD.TTC" name L"Microsoft YaHei Bold"
7935.201:0048:004c:trace:font:load_system_links Unable to find file L"MSYHBD.TTC" family L"Microsoft YaHei Bold"
7935.201:0048:004c:trace:font:load_system_links L"Microsoft JhengHei Bold": L"MEIRYOB.TTC,Meiryo Bold"
7935.201:0048:004c:trace:font:find_face_from_filename looking for file L"MEIRYOB.TTC" name L"Meiryo Bold"
7935.201:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasysg.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasysg.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasysg.fon"
7935.201:0048:004c:trace:font:load_system_links Unable to find file L"MEIRYOB.TTC" family L"Meiryo Bold"
7935.201:0048:004c:trace:font:load_system_links L"Microsoft JhengHei Bold": L"MALGUNBD.TTF,Malgun Gothic Bold"
7935.201:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasysg.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.201:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUNBD.TTF" name L"Malgun Gothic Bold"
7935.201:0048:004c:trace:font:load_system_links Unable to find file L"MALGUNBD.TTF" family L"Malgun Gothic Bold"
7935.201:0048:004c:trace:font:load_system_links L"Microsoft JhengHei Bold": L"YUGOTHB.TTC,Yu Gothic UI Bold"
7935.201:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.201:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHB.TTC" name L"Yu Gothic UI Bold"
7935.201:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasysg.fon" index 0
7935.201:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHB.TTC" family L"Yu Gothic UI Bold"
7935.201:0048:004c:trace:font:load_system_links L"Microsoft JhengHei Bold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.201:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.201:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.201:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,7,1,0x21ea20,4096)
7935.201:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgasysg.fon"/0xb7bf2000
004c: enum_key_value( hkey=003c, index=7, info_class=1 )
7935.203:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasysr.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasysr.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasysr.fon"
7935.203:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasysr.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.203:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.203:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasysr.fon" index 0
004c: enum_key_value() = 0 { type=7, total=382, namelen=42, name=L"Microsoft JhengHei UI", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,45,00,49,00,52,00,59,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,65,00,69,00,72,00,79,00,6f,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.203:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgasysr.fon"/0xb7bf2000
7935.203:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI": L"SEGOEUI.TTF,Segoe UI"
7935.203:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyst.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\vgasyst.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/vgasyst.fon"
7935.203:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUI.TTF" name L"Segoe UI"
7935.203:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUI.TTF" family L"Segoe UI"
7935.203:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/vgasyst.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.203:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI": L"MINGLIU.TTC,MingLiU"
7935.203:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.203:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.203:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.203:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI": L"MSYH.TTC,Microsoft YaHei UI"
7935.203:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.203:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.203:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/vgasyst.fon" index 0
7935.203:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI": L"MEIRYO.TTC,Meiryo UI"
7935.203:0048:004c:trace:font:find_face_from_filename looking for file L"MEIRYO.TTC" name L"Meiryo UI"
7935.203:0048:004c:trace:font:load_system_links Unable to find file L"MEIRYO.TTC" family L"Meiryo UI"
7935.203:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI": L"MALGUN.TTF,Malgun Gothic"
7935.203:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.203:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.203:0050:0054:warn:font:new_ft_face Ignoring font "/usr/share/wine/fonts/vgasyst.fon"/0xb7bf2000
7935.203:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI": L"YUGOTHM.TTC,Yu Gothic UI"
7935.203:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.203:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.203:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.203:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\webdings.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\webdings.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/webdings.ttf"
7935.203:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.203:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.203:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/webdings.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.203:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,8,1,0x21ea20,4096)
7935.203:0050:0054:trace:font:unix_face_create parsed font names family_name L"Webdings", second_name L"Webdings", primary_seen 0, english_seen 1, full_name L"Webdings", style_name L"Regular"
004c: enum_key_value( hkey=003c, index=8, info_class=1 )
7935.204:0050:0054:trace:font:insert_face_in_family_list Adding face L"Webdings" in family L"Webdings" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\webdings.ttf"
7935.204:0050:0054:trace:font:add_unix_face fsCsb = 80000000 00000000/00000000 00000000 00000000 00000000
7935.204:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\wingding.ttf" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\wingding.ttf" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/wingding.ttf"
7935.204:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/wingding.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=7, total=454, namelen=52, name=L"Microsoft JhengHei UI Bold", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,4d,00,53,00,59,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,45,00,49,00,52,00,59,00,4f,00,42,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,65,00,69,00,72,00,79,00,6f,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,42,00,44,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,42,00,6f,00,6c,00,64,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,42,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.204:0050:0054:trace:font:unix_face_create parsed font names family_name L"Wingdings", second_name L"Wingdings", primary_seen 0, english_seen 1, full_name L"Wingdings", style_name L"Regular"
7935.204:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"SEGOEUIB.TTF,Segoe UI Bold"
7935.204:0050:0054:trace:font:insert_face_in_family_list Adding face L"Wingdings" in family L"Wingdings" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\wingding.ttf"
7935.204:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUIB.TTF" name L"Segoe UI Bold"
7935.204:0050:0054:trace:font:add_unix_face fsCsb = 80000000 00000000/00000000 00000000 00000000 00000000
7935.204:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUIB.TTF" family L"Segoe UI Bold"
7935.204:0050:0054:trace:file:NtQueryDirectoryFile (0x34 (nil) (nil) (nil) 0x21cf28 0x21cf50 0x00002000 0x00000003 0x00000000 <null> 0x00000000
7935.204:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"MINGLIU.TTC,MingLiU"
7935.204:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.204:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.205:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"MSYHBD.TTC,Microsoft YaHei UI Bold"
0054: get_directory_cache_entry( handle=0034 )
7935.205:0048:004c:trace:font:find_face_from_filename looking for file L"MSYHBD.TTC" name L"Microsoft YaHei UI Bold"
0054: get_directory_cache_entry() = 0 { entry=0, free={} }
7935.205:0048:004c:trace:font:load_system_links Unable to find file L"MSYHBD.TTC" family L"Microsoft YaHei UI Bold"
7935.205:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"MEIRYOB.TTC,Meiryo UI Bold"
7935.205:0048:004c:trace:font:find_face_from_filename looking for file L"MEIRYOB.TTC" name L"Meiryo UI Bold"
7935.205:0050:0054:trace:file:NtQueryDirectoryFile => 80000006 (0)
7935.205:0048:004c:trace:font:load_system_links Unable to find file L"MEIRYOB.TTC" family L"Meiryo UI Bold"
7935.205:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"MALGUNBD.TTF,Malgun Gothic Bold"
0054: close_handle( handle=0034 )
7935.205:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUNBD.TTF" name L"Malgun Gothic Bold"
0054: close_handle() = 0
7935.205:0048:004c:trace:font:load_system_links Unable to find file L"MALGUNBD.TTF" family L"Malgun Gothic Bold"
7935.205:0050:0054:trace:reg:NtQueryValueKey (0x30,L"Path",2,0x21f224,2060)
7935.205:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"YUGOTHB.TTC,Yu Gothic UI Bold"
0054: get_key_value( hkey=0030, name=L"Path" )
7935.205:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHB.TTC" name L"Yu Gothic UI Bold"
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.206:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHB.TTC" family L"Yu Gothic UI Bold"
7935.206:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.206:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.206:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list (0x7ecd7250 0x7ece3ce0 0x7e4d94f0 0x1)
7935.206:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.206:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/OTF
7935.206:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,9,1,0x21ea20,4096)
004c: enum_key_value( hkey=003c, index=9, info_class=1 )
7935.206:0050:0054:trace:font:fontconfig_add_font (0x7ed990e0 0x1)
004c: enum_key_value() = 0 { type=7, total=458, namelen=54, name=L"Microsoft JhengHei UI Light", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,4d,00,53,00,59,00,48,00,4c,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,4d,00,45,00,49,00,52,00,59,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,65,00,69,00,72,00,79,00,6f,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,53,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,53,00,65,00,6d,00,69,00,6c,00,69,00,67,00,68,00,74,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4c,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.206:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"SEGOEUIL.TTF,Segoe UI Light"
7935.206:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUIL.TTF" name L"Segoe UI Light"
7935.206:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/C059-BdIta.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.206:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUIL.TTF" family L"Segoe UI Light"
7935.206:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"MINGLIU.TTC,MingLiU"
7935.206:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.206:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.206:0050:0054:trace:font:unix_face_create parsed font names family_name L"C059", second_name L"C059", primary_seen 0, english_seen 1, full_name L"C059-BdIta", style_name L"Bold Italic"
7935.206:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"MSYHL.TTC,Microsoft YaHei UI Light"
7935.206:0048:004c:trace:font:find_face_from_filename looking for file L"MSYHL.TTC" name L"Microsoft YaHei UI Light"
7935.206:0048:004c:trace:font:load_system_links Unable to find file L"MSYHL.TTC" family L"Microsoft YaHei UI Light"
7935.206:0050:0054:trace:font:insert_face_in_family_list Adding face L"C059-BdIta" in family L"C059" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\C059-BdIta.otf"
7935.206:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"MEIRYO.TTC,Meiryo UI"
7935.206:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.206:0048:004c:trace:font:find_face_from_filename looking for file L"MEIRYO.TTC" name L"Meiryo UI"
7935.206:0050:0054:trace:font:fontconfig_add_font (0x7ed99798 0x1)
7935.206:0048:004c:trace:font:load_system_links Unable to find file L"MEIRYO.TTC" family L"Meiryo UI"
7935.206:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"MALGUNSL.TTF,Malgun Gothic Semilight"
7935.206:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUNSL.TTF" name L"Malgun Gothic Semilight"
7935.206:0048:004c:trace:font:load_system_links Unable to find file L"MALGUNSL.TTF" family L"Malgun Gothic Semilight"
7935.206:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/C059-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.206:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"YUGOTHL.TTC,Yu Gothic UI Light"
7935.206:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHL.TTC" name L"Yu Gothic UI Light"
7935.206:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHL.TTC" family L"Yu Gothic UI Light"
7935.206:0048:004c:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.206:0050:0054:trace:font:unix_face_create parsed font names family_name L"C059", second_name L"C059", primary_seen 0, english_seen 1, full_name L"C059-Bold", style_name L"Bold"
7935.206:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.206:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.206:0050:0054:trace:font:insert_face_in_family_list Adding face L"C059-Bold" in family L"C059" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\C059-Bold.otf"
7935.206:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,10,1,0x21ea20,4096)
7935.206:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.206:0050:0054:trace:font:fontconfig_add_font (0x7ed99bf0 0x1)
004c: enum_key_value( hkey=003c, index=10, info_class=1 )
7935.207:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/C059-Italic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.207:0050:0054:trace:font:unix_face_create parsed font names family_name L"C059", second_name L"C059", primary_seen 0, english_seen 1, full_name L"C059-Italic", style_name L"Italic"
7935.207:0050:0054:trace:font:insert_face_in_family_list Adding face L"C059-Italic" in family L"C059" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\C059-Italic.otf"
7935.207:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.207:0050:0054:trace:font:fontconfig_add_font (0x7ed9a048 0x1)
004c: enum_key_value() = 0 { type=7, total=480, namelen=40, name=L"Microsoft Sans Serif", data={4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.207:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/C059-Roman.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.207:0048:004c:trace:font:load_system_links L"Microsoft Sans Serif": L"MSGOTHIC.TTC,MS UI Gothic"
7935.207:0050:0054:trace:font:unix_face_create parsed font names family_name L"C059", second_name L"C059", primary_seen 0, english_seen 1, full_name L"C059-Roman", style_name L"Roman"
7935.207:0048:004c:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.207:0048:004c:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.207:0048:004c:trace:font:load_system_links L"Microsoft Sans Serif": L"MINGLIU.TTC,PMingLiU"
7935.207:0050:0054:trace:font:insert_face_in_family_list Adding face L"C059-Roman" in family L"C059" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\C059-Roman.otf"
7935.207:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.207:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.207:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.207:0050:0054:trace:font:fontconfig_add_font (0x7ed9a4a0 0x1)
7935.207:0048:004c:trace:font:load_system_links L"Microsoft Sans Serif": L"SIMSUN.TTC,SimSun"
7935.207:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.207:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.207:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/D050000L.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.207:0048:004c:trace:font:load_system_links L"Microsoft Sans Serif": L"GULIM.TTC,Gulim"
7935.207:0048:004c:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"Gulim"
7935.207:0048:004c:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"Gulim"
7935.207:0048:004c:trace:font:load_system_links L"Microsoft Sans Serif": L"YUGOTHM.TTC,Yu Gothic UI"
7935.207:0050:0054:trace:font:unix_face_create parsed font names family_name L"D050000L", second_name L"", primary_seen 0, english_seen 1, full_name L"D050000L", style_name L"Regular"
7935.207:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.207:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.207:0050:0054:trace:font:insert_face_in_family_list Adding face L"D050000L" in family L"D050000L" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\D050000L.otf"
7935.207:0048:004c:trace:font:load_system_links L"Microsoft Sans Serif": L"MSJH.TTC,Microsoft JhengHei UI"
7935.207:0050:0054:trace:font:add_unix_face fsCsb = 00000001 00000000/00000003 00000000 00000000 00000000
7935.207:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.207:0050:0054:trace:font:fontconfig_add_font (0x7ed9a8a0 0x1)
7935.207:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.207:0048:004c:trace:font:load_system_links L"Microsoft Sans Serif": L"MSYH.TTC,Microsoft YaHei UI"
7935.207:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.207:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusMonoPS-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.207:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.207:0048:004c:trace:font:load_system_links L"Microsoft Sans Serif": L"MALGUN.TTF,Malgun Gothic"
7935.207:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.207:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Mono PS", second_name L"Nimbus Mono PS", primary_seen 0, english_seen 1, full_name L"NimbusMonoPS-Bold", style_name L"Bold"
7935.207:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.207:0048:004c:trace:font:load_system_links L"Microsoft Sans Serif": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.207:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.207:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusMonoPS-Bold" in family L"Nimbus Mono PS" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusMonoPS-Bold.otf"
7935.207:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.207:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.207:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,11,1,0x21ea20,4096)
7935.207:0050:0054:trace:font:fontconfig_add_font (0x7ed9ad40 0x1)
004c: enum_key_value( hkey=003c, index=11, info_class=1 )
7935.210:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusMonoPS-BoldItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.210:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Mono PS", second_name L"Nimbus Mono PS", primary_seen 0, english_seen 1, full_name L"NimbusMonoPS-BoldItalic", style_name L"Bold Italic"
7935.210:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusMonoPS-BoldItalic" in family L"Nimbus Mono PS" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusMonoPS-BoldItalic.otf"
7935.210:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.210:0050:0054:trace:font:fontconfig_add_font (0x7ed9b1f8 0x1)
7935.210:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusMonoPS-Italic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=7, total=482, namelen=14, name=L"MingLiU", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,43,00,68,00,65,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.210:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Mono PS", second_name L"Nimbus Mono PS", primary_seen 0, english_seen 1, full_name L"NimbusMonoPS-Italic", style_name L"Italic"
7935.210:0048:004c:trace:font:load_system_links L"MingLiU": L"MICROSS.TTF,Microsoft Sans Serif"
7935.210:0048:004c:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.210:0048:004c:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.210:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusMonoPS-Italic" in family L"Nimbus Mono PS" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusMonoPS-Italic.otf"
7935.210:0048:004c:trace:font:load_system_links L"MingLiU": L"SIMSUN.TTC,SimSun"
7935.210:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.210:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.210:0050:0054:trace:font:fontconfig_add_font (0x7ed9b698 0x1)
7935.210:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.210:0048:004c:trace:font:load_system_links L"MingLiU": L"MSMINCHO.TTC,MS Mincho"
7935.210:0048:004c:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS Mincho"
7935.210:0048:004c:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS Mincho"
7935.210:0048:004c:trace:font:load_system_links L"MingLiU": L"BATANG.TTC,BatangChe"
7935.210:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusMonoPS-Regular.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.210:0048:004c:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"BatangChe"
7935.210:0048:004c:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"BatangChe"
7935.210:0048:004c:trace:font:load_system_links L"MingLiU": L"MSJH.TTC,Microsoft JhengHei UI"
7935.210:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.210:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Mono PS", second_name L"Nimbus Mono PS", primary_seen 0, english_seen 1, full_name L"NimbusMonoPS-Regular", style_name L"Regular"
7935.210:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.210:0048:004c:trace:font:load_system_links L"MingLiU": L"MSYH.TTC,Microsoft YaHei UI"
7935.210:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.210:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusMonoPS-Regular" in family L"Nimbus Mono PS" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusMonoPS-Regular.otf"
7935.210:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.210:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.210:0048:004c:trace:font:load_system_links L"MingLiU": L"YUGOTHM.TTC,Yu Gothic UI"
7935.210:0050:0054:trace:font:fontconfig_add_font (0x7ed9bb30 0x1)
7935.210:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.210:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.210:0048:004c:trace:font:load_system_links L"MingLiU": L"MALGUN.TTF,Malgun Gothic"
7935.210:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusRoman-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.210:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.210:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.210:0048:004c:trace:font:load_system_links L"MingLiU": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.210:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.210:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Roman", second_name L"Nimbus Roman", primary_seen 0, english_seen 1, full_name L"NimbusRoman-Bold", style_name L"Bold"
7935.210:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.210:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,12,1,0x21ea20,4096)
7935.210:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusRoman-Bold" in family L"Nimbus Roman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusRoman-Bold.otf"
004c: enum_key_value( hkey=003c, index=12, info_class=1 )
7935.211:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.211:0050:0054:trace:font:fontconfig_add_font (0x7ed9bfb0 0x1)
7935.211:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusRoman-BoldItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.211:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Roman", second_name L"Nimbus Roman", primary_seen 0, english_seen 1, full_name L"NimbusRoman-BoldItalic", style_name L"Bold Italic"
7935.211:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusRoman-BoldItalic" in family L"Nimbus Roman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusRoman-BoldItalic.otf"
7935.211:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
004c: enum_key_value() = 0 { type=7, total=532, namelen=24, name=L"MingLiU-ExtB", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,43,00,68,00,65,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.211:0050:0054:trace:font:fontconfig_add_font (0x7ed9c440 0x1)
7935.211:0048:004c:trace:font:load_system_links L"MingLiU-ExtB": L"MICROSS.TTF,Microsoft Sans Serif"
7935.211:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusRoman-Italic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.211:0048:004c:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.211:0048:004c:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.211:0048:004c:trace:font:load_system_links L"MingLiU-ExtB": L"MINGLIU.TTC,MingLiU"
7935.211:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.211:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Roman", second_name L"Nimbus Roman", primary_seen 0, english_seen 1, full_name L"NimbusRoman-Italic", style_name L"Italic"
7935.211:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.211:0048:004c:trace:font:load_system_links L"MingLiU-ExtB": L"SIMSUN.TTC,SimSun"
7935.211:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.211:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusRoman-Italic" in family L"Nimbus Roman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusRoman-Italic.otf"
7935.211:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.211:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.211:0048:004c:trace:font:load_system_links L"MingLiU-ExtB": L"MSMINCHO.TTC,MS Mincho"
7935.211:0050:0054:trace:font:fontconfig_add_font (0x7ed9c8c0 0x1)
7935.211:0048:004c:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS Mincho"
7935.211:0048:004c:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS Mincho"
7935.211:0048:004c:trace:font:load_system_links L"MingLiU-ExtB": L"BATANG.TTC,BatangChe"
7935.211:0048:004c:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"BatangChe"
7935.211:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusRoman-Regular.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.211:0048:004c:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"BatangChe"
7935.211:0048:004c:trace:font:load_system_links L"MingLiU-ExtB": L"MSJH.TTC,Microsoft JhengHei UI"
7935.211:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.211:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.211:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Roman", second_name L"Nimbus Roman", primary_seen 0, english_seen 1, full_name L"NimbusRoman-Regular", style_name L"Regular"
7935.211:0048:004c:trace:font:load_system_links L"MingLiU-ExtB": L"MSYH.TTC,Microsoft YaHei UI"
7935.211:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.211:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.211:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusRoman-Regular" in family L"Nimbus Roman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusRoman-Regular.otf"
7935.211:0048:004c:trace:font:load_system_links L"MingLiU-ExtB": L"YUGOTHM.TTC,Yu Gothic UI"
7935.211:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.211:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.211:0050:0054:trace:font:fontconfig_add_font (0x7ed9cd38 0x1)
7935.211:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.211:0048:004c:trace:font:load_system_links L"MingLiU-ExtB": L"MALGUN.TTF,Malgun Gothic"
7935.211:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.211:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSans-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.211:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.211:0048:004c:trace:font:load_system_links L"MingLiU-ExtB": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.211:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.211:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.211:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans", second_name L"Nimbus Sans", primary_seen 0, english_seen 1, full_name L"NimbusSans-Bold", style_name L"Bold"
7935.211:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,13,1,0x21ea20,4096)
7935.211:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusSans-Bold" in family L"Nimbus Sans" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSans-Bold.otf"
7935.211:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.214:0050:0054:trace:font:fontconfig_add_font (0x7ed9d1a8 0x1)
004c: enum_key_value( hkey=003c, index=13, info_class=1 )
7935.214:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSans-BoldItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.214:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans", second_name L"Nimbus Sans", primary_seen 0, english_seen 1, full_name L"NimbusSans-BoldItalic", style_name L"Bold Italic"
7935.214:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusSans-BoldItalic" in family L"Nimbus Sans" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSans-BoldItalic.otf"
7935.214:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
004c: enum_key_value() = 0 { type=7, total=534, namelen=26, name=L"MingLiU_HKSCS", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,43,00,68,00,65,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.214:0050:0054:trace:font:fontconfig_add_font (0x7ed9d630 0x1)
7935.214:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS": L"MICROSS.TTF,Microsoft Sans Serif"
7935.214:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSans-Italic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.214:0048:004c:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.214:0048:004c:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.214:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS": L"MINGLIU.TTC,MingLiU"
7935.214:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.214:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans", second_name L"Nimbus Sans", primary_seen 0, english_seen 1, full_name L"NimbusSans-Italic", style_name L"Italic"
7935.214:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.214:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS": L"SIMSUN.TTC,SimSun"
7935.214:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.214:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusSans-Italic" in family L"Nimbus Sans" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSans-Italic.otf"
7935.214:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.214:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.214:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS": L"MSMINCHO.TTC,MS Mincho"
7935.214:0050:0054:trace:font:fontconfig_add_font (0x7ed9dab0 0x1)
7935.214:0048:004c:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS Mincho"
7935.214:0048:004c:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS Mincho"
7935.214:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS": L"BATANG.TTC,BatangChe"
7935.214:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSans-Regular.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.214:0048:004c:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"BatangChe"
7935.214:0048:004c:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"BatangChe"
7935.214:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS": L"MSJH.TTC,Microsoft JhengHei UI"
7935.214:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.214:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans", second_name L"Nimbus Sans", primary_seen 0, english_seen 1, full_name L"NimbusSans-Regular", style_name L"Regular"
7935.214:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.214:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS": L"MSYH.TTC,Microsoft YaHei UI"
7935.214:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.214:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusSans-Regular" in family L"Nimbus Sans" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSans-Regular.otf"
7935.214:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.214:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.214:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS": L"YUGOTHM.TTC,Yu Gothic UI"
7935.214:0050:0054:trace:font:fontconfig_add_font (0x7ed9df28 0x1)
7935.214:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.214:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.214:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS": L"MALGUN.TTF,Malgun Gothic"
7935.214:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSansNarrow-BdOblique.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.214:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.214:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.214:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.214:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.214:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans Narrow", second_name L"Nimbus Sans Narrow", primary_seen 0, english_seen 1, full_name L"NimbusSansNarrow-BoldOblique", style_name L"Bold Oblique"
7935.214:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.214:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,14,1,0x21ea20,4096)
7935.214:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusSansNarrow-BoldOblique" in family L"Nimbus Sans Narrow" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSansNarrow-BdOblique.otf"
7935.214:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
004c: enum_key_value( hkey=003c, index=14, info_class=1 )
7935.216:0050:0054:trace:font:fontconfig_add_font (0x7ed9e3d8 0x1)
7935.216:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSansNarrow-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.216:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans Narrow", second_name L"Nimbus Sans Narrow", primary_seen 0, english_seen 1, full_name L"NimbusSansNarrow-Bold", style_name L"Bold"
7935.216:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusSansNarrow-Bold" in family L"Nimbus Sans Narrow" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSansNarrow-Bold.otf"
7935.216:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.216:0050:0054:trace:font:fontconfig_add_font (0x7ed9e860 0x1)
004c: enum_key_value() = 0 { type=7, total=596, namelen=36, name=L"MingLiU_HKSCS-ExtB", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,5f,00,48,00,4b,00,53,00,43,00,53,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,43,00,68,00,65,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.216:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSansNarrow-Oblique.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.216:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MICROSS.TTF,Microsoft Sans Serif"
7935.216:0048:004c:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.216:0048:004c:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.216:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MINGLIU.TTC,MingLiU_HKSCS"
7935.216:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans Narrow", second_name L"Nimbus Sans Narrow", primary_seen 0, english_seen 1, full_name L"NimbusSansNarrow-Oblique", style_name L"Oblique"
7935.216:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU_HKSCS"
7935.216:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU_HKSCS"
7935.216:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MINGLIU.TTC,MingLiU"
7935.216:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusSansNarrow-Oblique" in family L"Nimbus Sans Narrow" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSansNarrow-Oblique.otf"
7935.216:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.216:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.216:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.216:0050:0054:trace:font:fontconfig_add_font (0x7ed9ed08 0x1)
7935.216:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"SIMSUN.TTC,SimSun"
7935.216:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.216:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.216:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MSMINCHO.TTC,MS Mincho"
7935.216:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/NimbusSansNarrow-Regular.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.216:0048:004c:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS Mincho"
7935.216:0048:004c:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS Mincho"
7935.216:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"BATANG.TTC,BatangChe"
7935.216:0048:004c:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"BatangChe"
7935.216:0050:0054:trace:font:unix_face_create parsed font names family_name L"Nimbus Sans Narrow", second_name L"Nimbus Sans Narrow", primary_seen 0, english_seen 1, full_name L"NimbusSansNarrow-Regular", style_name L"Regular"
7935.216:0048:004c:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"BatangChe"
7935.216:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MSJH.TTC,Microsoft JhengHei UI"
7935.216:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.216:0050:0054:trace:font:insert_face_in_family_list Adding face L"NimbusSansNarrow-Regular" in family L"Nimbus Sans Narrow" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\NimbusSansNarrow-Regular.otf"
7935.216:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.216:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.216:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MSYH.TTC,Microsoft YaHei UI"
7935.216:0050:0054:trace:font:fontconfig_add_font (0x7ed9f1a8 0x1)
7935.216:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.216:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.216:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"YUGOTHM.TTC,Yu Gothic UI"
7935.216:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/P052-Bold.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.216:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.216:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.216:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MALGUN.TTF,Malgun Gothic"
7935.216:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.216:0050:0054:trace:font:unix_face_create parsed font names family_name L"P052", second_name L"P052", primary_seen 0, english_seen 1, full_name L"P052-Bold", style_name L"Bold"
7935.216:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.216:0048:004c:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.216:0050:0054:trace:font:insert_face_in_family_list Adding face L"P052-Bold" in family L"P052" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\P052-Bold.otf"
7935.216:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.216:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.216:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.216:0050:0054:trace:font:fontconfig_add_font (0x7ed9f600 0x1)
7935.216:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,15,1,0x21ea20,4096)
7935.218:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/P052-BoldItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=15, info_class=1 )
7935.218:0050:0054:trace:font:unix_face_create parsed font names family_name L"P052", second_name L"P052", primary_seen 0, english_seen 1, full_name L"P052-BoldItalic", style_name L"Bold Italic"
7935.218:0050:0054:trace:font:insert_face_in_family_list Adding face L"P052-BoldItalic" in family L"P052" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\P052-BoldItalic.otf"
7935.218:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.218:0050:0054:trace:font:fontconfig_add_font (0x7ed9fa70 0x1)
004c: enum_key_value() = 0 { type=7, total=410, namelen=18, name=L"MS Gothic", data={4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,43,00,68,00,65,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.218:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/P052-Italic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.218:0048:004c:trace:font:load_system_links L"MS Gothic": L"MINGLIU.TTC,MingLiU"
7935.218:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.218:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.218:0048:004c:trace:font:load_system_links L"MS Gothic": L"SIMSUN.TTC,SimSun"
7935.218:0050:0054:trace:font:unix_face_create parsed font names family_name L"P052", second_name L"P052", primary_seen 0, english_seen 1, full_name L"P052-Italic", style_name L"Italic"
7935.218:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.218:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.218:0048:004c:trace:font:load_system_links L"MS Gothic": L"GULIM.TTC,GulimChe"
7935.218:0050:0054:trace:font:insert_face_in_family_list Adding face L"P052-Italic" in family L"P052" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\P052-Italic.otf"
7935.218:0048:004c:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"GulimChe"
7935.218:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.218:0048:004c:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"GulimChe"
7935.218:0050:0054:trace:font:fontconfig_add_font (0x7ed9fec8 0x1)
7935.218:0048:004c:trace:font:load_system_links L"MS Gothic": L"YUGOTHM.TTC,Yu Gothic UI"
7935.218:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.218:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.218:0048:004c:trace:font:load_system_links L"MS Gothic": L"MSJH.TTC,Microsoft JhengHei UI"
7935.218:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/P052-Roman.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.218:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.218:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.218:0048:004c:trace:font:load_system_links L"MS Gothic": L"MSYH.TTC,Microsoft YaHei UI"
7935.218:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.218:0050:0054:trace:font:unix_face_create parsed font names family_name L"P052", second_name L"P052", primary_seen 0, english_seen 1, full_name L"P052-Roman", style_name L"Roman"
7935.218:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.218:0050:0054:trace:font:insert_face_in_family_list Adding face L"P052-Roman" in family L"P052" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\P052-Roman.otf"
7935.218:0048:004c:trace:font:load_system_links L"MS Gothic": L"MALGUN.TTF,Malgun Gothic"
7935.218:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.218:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.218:0050:0054:trace:font:fontconfig_add_font (0x7eda0320 0x1)
7935.218:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.218:0048:004c:trace:font:load_system_links L"MS Gothic": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.218:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.218:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/StandardSymbolsPS.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.218:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.218:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,16,1,0x21ea20,4096)
7935.218:0050:0054:trace:font:unix_face_create parsed font names family_name L"Standard Symbols PS", second_name L"", primary_seen 0, english_seen 1, full_name L"Standard Symbols PS", style_name L"Regular"
004c: enum_key_value( hkey=003c, index=16, info_class=1 )
7935.220:0050:0054:trace:font:insert_face_in_family_list Adding face L"Standard Symbols PS" in family L"Standard Symbols PS" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\StandardSymbolsPS.otf"
7935.220:0050:0054:trace:font:add_unix_face fsCsb = 00000001 00000000/00000003 00000000 00000000 00000000
7935.220:0050:0054:trace:font:fontconfig_add_font (0x7eda0740 0x1)
7935.220:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWBookman-Demi.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.220:0050:0054:trace:font:unix_face_create parsed font names family_name L"URW Bookman", second_name L"URW Bookman", primary_seen 0, english_seen 1, full_name L"URWBookman-Demi", style_name L"Demi"
004c: enum_key_value() = 0 { type=7, total=408, namelen=18, name=L"MS Mincho", data={4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.220:0050:0054:trace:font:insert_face_in_family_list Adding face L"URWBookman-Demi" in family L"URW Bookman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWBookman-Demi.otf"
7935.220:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.220:0050:0054:trace:font:fontconfig_add_font (0x7eda0bb0 0x1)
7935.220:0048:004c:trace:font:load_system_links L"MS Mincho": L"MINGLIU.TTC,MingLiU"
7935.220:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.220:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.220:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWBookman-DemiItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.220:0048:004c:trace:font:load_system_links L"MS Mincho": L"SIMSUN.TTC,SimSun"
7935.220:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.220:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.220:0048:004c:trace:font:load_system_links L"MS Mincho": L"BATANG.TTC,Batang"
7935.220:0050:0054:trace:font:unix_face_create parsed font names family_name L"URW Bookman", second_name L"URW Bookman", primary_seen 0, english_seen 1, full_name L"URWBookman-DemiItalic", style_name L"Demi Italic"
7935.220:0048:004c:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"Batang"
7935.220:0048:004c:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"Batang"
7935.220:0048:004c:trace:font:load_system_links L"MS Mincho": L"YUGOTHM.TTC,Yu Gothic UI"
7935.220:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.220:0050:0054:trace:font:insert_face_in_family_list Adding face L"URWBookman-DemiItalic" in family L"URW Bookman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWBookman-DemiItalic.otf"
7935.220:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.220:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.220:0048:004c:trace:font:load_system_links L"MS Mincho": L"MSJH.TTC,Microsoft JhengHei UI"
7935.220:0050:0054:trace:font:fontconfig_add_font (0x7eda1038 0x1)
7935.220:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.220:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.220:0048:004c:trace:font:load_system_links L"MS Mincho": L"MSYH.TTC,Microsoft YaHei UI"
7935.220:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.220:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWBookman-Light.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.220:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.220:0048:004c:trace:font:load_system_links L"MS Mincho": L"MALGUN.TTF,Malgun Gothic"
7935.220:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.220:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.220:0050:0054:trace:font:unix_face_create parsed font names family_name L"URW Bookman", second_name L"URW Bookman", primary_seen 0, english_seen 1, full_name L"URWBookman-Light", style_name L"Light"
7935.220:0048:004c:trace:font:load_system_links L"MS Mincho": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.220:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.220:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.220:0050:0054:trace:font:insert_face_in_family_list Adding face L"URWBookman-Light" in family L"URW Bookman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWBookman-Light.otf"
7935.220:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,17,1,0x21ea20,4096)
7935.220:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.220:0050:0054:trace:font:fontconfig_add_font (0x7eda14b8 0x1)
004c: enum_key_value( hkey=003c, index=17, info_class=1 )
7935.221:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWBookman-LightItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.221:0050:0054:trace:font:unix_face_create parsed font names family_name L"URW Bookman", second_name L"URW Bookman", primary_seen 0, english_seen 1, full_name L"URWBookman-LightItalic", style_name L"Light Italic"
004c: enum_key_value() = 0 { type=7, total=408, namelen=20, name=L"MS PGothic", data={4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.221:0050:0054:trace:font:insert_face_in_family_list Adding face L"URWBookman-LightItalic" in family L"URW Bookman" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWBookman-LightItalic.otf"
7935.221:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.221:0050:0054:trace:font:fontconfig_add_font (0x7eda1948 0x1)
7935.221:0048:004c:trace:font:load_system_links L"MS PGothic": L"MINGLIU.TTC,PMingLiU"
7935.221:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.221:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.221:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWGothic-Book.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.221:0048:004c:trace:font:load_system_links L"MS PGothic": L"SIMSUN.TTC,SimSun"
7935.221:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.221:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.221:0048:004c:trace:font:load_system_links L"MS PGothic": L"GULIM.TTC,Gulim"
7935.221:0050:0054:trace:font:unix_face_create parsed font names family_name L"URW Gothic", second_name L"URW Gothic", primary_seen 0, english_seen 1, full_name L"URWGothic-Book", style_name L"Book"
7935.221:0048:004c:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"Gulim"
7935.221:0048:004c:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"Gulim"
7935.221:0048:004c:trace:font:load_system_links L"MS PGothic": L"YUGOTHM.TTC,Yu Gothic UI"
7935.221:0050:0054:trace:font:insert_face_in_family_list Adding face L"URWGothic-Book" in family L"URW Gothic" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWGothic-Book.otf"
7935.221:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.221:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.221:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.221:0050:0054:trace:font:fontconfig_add_font (0x7eda1da8 0x1)
7935.221:0048:004c:trace:font:load_system_links L"MS PGothic": L"MSJH.TTC,Microsoft JhengHei UI"
7935.221:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.221:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.221:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWGothic-BookOblique.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.221:0048:004c:trace:font:load_system_links L"MS PGothic": L"MSYH.TTC,Microsoft YaHei UI"
7935.221:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.221:0050:0054:trace:font:unix_face_create parsed font names family_name L"URW Gothic", second_name L"URW Gothic", primary_seen 0, english_seen 1, full_name L"URWGothic-BookOblique", style_name L"Book Oblique"
7935.221:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.221:0048:004c:trace:font:load_system_links L"MS PGothic": L"MALGUN.TTF,Malgun Gothic"
7935.221:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.221:0050:0054:trace:font:insert_face_in_family_list Adding face L"URWGothic-BookOblique" in family L"URW Gothic" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWGothic-BookOblique.otf"
7935.221:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.221:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.221:0048:004c:trace:font:load_system_links L"MS PGothic": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.221:0050:0054:trace:font:fontconfig_add_font (0x7eda2230 0x1)
7935.221:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.221:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.221:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,18,1,0x21ea20,4096)
7935.221:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWGothic-Demi.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=18, info_class=1 )
7935.223:0050:0054:trace:font:unix_face_create parsed font names family_name L"URW Gothic", second_name L"URW Gothic", primary_seen 0, english_seen 1, full_name L"URWGothic-Demi", style_name L"Demi"
7935.223:0050:0054:trace:font:insert_face_in_family_list Adding face L"URWGothic-Demi" in family L"URW Gothic" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWGothic-Demi.otf"
7935.223:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.223:0050:0054:trace:font:fontconfig_add_font (0x7eda2690 0x1)
7935.223:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/URWGothic-DemiOblique.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value() = 0 { type=7, total=412, namelen=20, name=L"MS PMincho", data={4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.223:0050:0054:trace:font:unix_face_create parsed font names family_name L"URW Gothic", second_name L"URW Gothic", primary_seen 0, english_seen 1, full_name L"URWGothic-DemiOblique", style_name L"Demi Oblique"
7935.223:0048:004c:trace:font:load_system_links L"MS PMincho": L"MINGLIU.TTC,PMingLiU"
7935.223:0050:0054:trace:font:insert_face_in_family_list Adding face L"URWGothic-DemiOblique" in family L"URW Gothic" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\URWGothic-DemiOblique.otf"
7935.223:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.223:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.223:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.223:0050:0054:trace:font:fontconfig_add_font (0x7eda2b18 0x1)
7935.223:0048:004c:trace:font:load_system_links L"MS PMincho": L"SIMSUN.TTC,SimSun"
7935.223:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.223:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.223:0048:004c:trace:font:load_system_links L"MS PMincho": L"BATANG.TTC,Batang"
7935.223:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/OTF/Z003-MediumItalic.otf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.223:0048:004c:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"Batang"
7935.223:0048:004c:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"Batang"
7935.223:0048:004c:trace:font:load_system_links L"MS PMincho": L"YUGOTHM.TTC,Yu Gothic UI"
7935.223:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.223:0050:0054:trace:font:unix_face_create parsed font names family_name L"Z003", second_name L"Z003", primary_seen 0, english_seen 1, full_name L"Z003-MediumItalic", style_name L"Medium Italic"
7935.223:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.223:0048:004c:trace:font:load_system_links L"MS PMincho": L"MSJH.TTC,Microsoft JhengHei UI"
7935.223:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.223:0050:0054:trace:font:insert_face_in_family_list Adding face L"Z003-MediumItalic" in family L"Z003" from L"\\??\\Z:\\usr\\share\\fonts\\OTF\\Z003-MediumItalic.otf"
7935.223:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.223:0050:0054:trace:font:add_unix_face fsCsb = 6000009f 00000000/00000287 00000800 00000000 00000000
7935.223:0048:004c:trace:font:load_system_links L"MS PMincho": L"MSYH.TTC,Microsoft YaHei UI"
7935.223:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.223:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list (0x7ecd7250 0x7ece3d00 0x7e4d94f0 0x1)
7935.223:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.223:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/TTF
7935.223:0048:004c:trace:font:load_system_links L"MS PMincho": L"MALGUN.TTF,Malgun Gothic"
7935.223:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.223:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.223:0048:004c:trace:font:load_system_links L"MS PMincho": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.223:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.223:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.223:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,19,1,0x21ea20,4096)
004c: enum_key_value( hkey=003c, index=19, info_class=1 )
7935.225:0050:0054:trace:font:fontconfig_add_font (0x7ed88118 0x1)
7935.225:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuMathTeXGyre.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.225:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Math TeX Gyre", second_name L"DejaVu Math TeX Gyre", primary_seen 0, english_seen 1, full_name L"DejaVuMathTeXGyre-Regular", style_name L"Regular"
7935.225:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVuMathTeXGyre-Regular" in family L"DejaVu Math TeX Gyre" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuMathTeXGyre.ttf"
004c: enum_key_value() = 0 { type=7, total=478, namelen=24, name=L"MS UI Gothic", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.225:0050:0054:trace:font:add_unix_face fsCsb = 60000193 0dd40000/a10000ef 4201f9ee 02000000 00000000
7935.225:0050:0054:trace:font:fontconfig_add_font (0x7ed88910 0x1)
7935.225:0048:004c:trace:font:load_system_links L"MS UI Gothic": L"MICROSS.TTF,Microsoft Sans Serif"
7935.225:0048:004c:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.225:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSans-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.225:0048:004c:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.225:0048:004c:trace:font:load_system_links L"MS UI Gothic": L"MINGLIU.TTC,PMingLiU"
7935.225:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.225:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.225:0048:004c:trace:font:load_system_links L"MS UI Gothic": L"SIMSUN.TTC,SimSun"
7935.225:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans", second_name L"DejaVu Sans", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Bold", style_name L"Bold"
7935.225:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.225:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.225:0048:004c:trace:font:load_system_links L"MS UI Gothic": L"GULIM.TTC,Gulim"
7935.225:0048:004c:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"Gulim"
7935.225:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Bold" in family L"DejaVu Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSans-Bold.ttf"
7935.225:0048:004c:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"Gulim"
7935.225:0050:0054:trace:font:add_unix_face fsCsb = 600001ff ffff0000/e7006eff d200fdff 0a246029 0400200c
7935.225:0048:004c:trace:font:load_system_links L"MS UI Gothic": L"YUGOTHM.TTC,Yu Gothic UI"
7935.225:0050:0054:trace:font:fontconfig_add_font (0x7ed89520 0x1)
7935.225:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.225:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.225:0048:004c:trace:font:load_system_links L"MS UI Gothic": L"MSJH.TTC,Microsoft JhengHei UI"
7935.225:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.225:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSans-BoldOblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.225:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.225:0048:004c:trace:font:load_system_links L"MS UI Gothic": L"MSYH.TTC,Microsoft YaHei UI"
7935.225:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.225:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.225:0048:004c:trace:font:load_system_links L"MS UI Gothic": L"MALGUN.TTF,Malgun Gothic"
7935.225:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans", second_name L"DejaVu Sans", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Bold Oblique", style_name L"Bold Oblique"
7935.225:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.225:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.225:0048:004c:trace:font:load_system_links L"MS UI Gothic": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.225:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.225:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.225:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Bold Oblique" in family L"DejaVu Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSans-BoldOblique.ttf"
7935.225:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,20,1,0x21ea20,4096)
7935.225:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e7000eff 5200fdff 0a242021 04002008
7935.225:0050:0054:trace:font:fontconfig_add_font (0x7ed89c58 0x1)
004c: enum_key_value( hkey=003c, index=20, info_class=1 )
7935.227:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSans-ExtraLight.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.227:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Light", second_name L"DejaVu Sans Light", primary_seen 0, english_seen 1, full_name L"DejaVu Sans ExtraLight", style_name L"ExtraLight"
7935.227:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans ExtraLight" in family L"DejaVu Sans Light" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSans-ExtraLight.ttf"
7935.227:0050:0054:trace:font:add_unix_face fsCsb = 0000019f 00000000/e50026ff 5000007b 08004020 00000000
7935.227:0050:0054:trace:font:fontconfig_add_font (0x7ed8a470 0x1)
004c: enum_key_value() = 0 { type=7, total=480, namelen=16, name=L"PMingLiU", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,50,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.227:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSans-Oblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.227:0048:004c:trace:font:load_system_links L"PMingLiU": L"MICROSS.TTF,Microsoft Sans Serif"
7935.227:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans", second_name L"DejaVu Sans", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Oblique", style_name L"Oblique"
7935.227:0048:004c:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.227:0048:004c:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.227:0048:004c:trace:font:load_system_links L"PMingLiU": L"SIMSUN.TTC,SimSun"
7935.227:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.227:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Oblique" in family L"DejaVu Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSans-Oblique.ttf"
7935.227:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.227:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e7000eff 5200fdff 0a242021 04002008
7935.227:0048:004c:trace:font:load_system_links L"PMingLiU": L"MSMINCHO.TTC,MS PMincho"
7935.227:0050:0054:trace:font:fontconfig_add_font (0x7ed8aaf8 0x1)
7935.227:0048:004c:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS PMincho"
7935.227:0048:004c:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS PMincho"
7935.227:0048:004c:trace:font:load_system_links L"PMingLiU": L"BATANG.TTC,Batang"
7935.227:0048:004c:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"Batang"
7935.227:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSans.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.227:0048:004c:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"Batang"
7935.227:0048:004c:trace:font:load_system_links L"PMingLiU": L"MSJH.TTC,Microsoft JhengHei UI"
7935.227:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.227:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.227:0048:004c:trace:font:load_system_links L"PMingLiU": L"MSYH.TTC,Microsoft YaHei UI"
7935.227:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans", second_name L"DejaVu Sans", primary_seen 0, english_seen 1, full_name L"DejaVu Sans", style_name L"Book"
7935.227:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.227:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.227:0048:004c:trace:font:load_system_links L"PMingLiU": L"YUGOTHM.TTC,Yu Gothic UI"
7935.227:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.227:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans" in family L"DejaVu Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSans.ttf"
7935.227:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.227:0050:0054:trace:font:add_unix_face fsCsb = 600001ff dfff0000/e7006eff d200fdff 0a246029 0400200c
7935.227:0048:004c:trace:font:load_system_links L"PMingLiU": L"MALGUN.TTF,Malgun Gothic"
7935.227:0050:0054:trace:font:fontconfig_add_font (0x7ed8b1c0 0x1)
7935.227:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.227:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.227:0048:004c:trace:font:load_system_links L"PMingLiU": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.227:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansCondensed-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.227:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.227:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.227:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,21,1,0x21ea20,4096)
7935.227:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Condensed", second_name L"DejaVu Sans Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Condensed Bold", style_name L"Bold"
004c: enum_key_value( hkey=003c, index=21, info_class=1 )
7935.229:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Condensed Bold" in family L"DejaVu Sans Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansCondensed-Bold.ttf"
7935.229:0050:0054:trace:font:add_unix_face fsCsb = 600001ff ffff0000/e7006eff d200fdff 0a246029 0400200c
7935.229:0050:0054:trace:font:fontconfig_add_font (0x7ed8b788 0x1)
7935.229:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansCondensed-BoldOblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.229:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Condensed", second_name L"DejaVu Sans Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Condensed Bold Oblique", style_name L"Bold Oblique"
004c: enum_key_value() = 0 { type=7, total=532, namelen=26, name=L"PMingLiU-ExtB", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,50,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.229:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Condensed Bold Oblique" in family L"DejaVu Sans Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansCondensed-BoldOblique.ttf"
7935.229:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e7000eff 5200fdff 0a242021 04002008
7935.229:0050:0054:trace:font:fontconfig_add_font (0x7ed8bd70 0x1)
7935.229:0048:004c:trace:font:load_system_links L"PMingLiU-ExtB": L"MICROSS.TTF,Microsoft Sans Serif"
7935.229:0048:004c:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.229:0048:004c:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.229:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansCondensed-Oblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.229:0048:004c:trace:font:load_system_links L"PMingLiU-ExtB": L"MINGLIU.TTC,PMingLiU"
7935.229:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.229:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.229:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Condensed", second_name L"DejaVu Sans Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Condensed Oblique", style_name L"Oblique"
7935.229:0048:004c:trace:font:load_system_links L"PMingLiU-ExtB": L"SIMSUN.TTC,SimSun"
7935.229:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.229:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.229:0048:004c:trace:font:load_system_links L"PMingLiU-ExtB": L"MSMINCHO.TTC,MS PMincho"
7935.229:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Condensed Oblique" in family L"DejaVu Sans Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansCondensed-Oblique.ttf"
7935.229:0048:004c:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS PMincho"
7935.229:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e7000eff 5200fdff 0a242021 04002008
7935.229:0048:004c:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS PMincho"
7935.229:0050:0054:trace:font:fontconfig_add_font (0x7ed8c340 0x1)
7935.229:0048:004c:trace:font:load_system_links L"PMingLiU-ExtB": L"BATANG.TTC,Batang"
7935.229:0048:004c:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"Batang"
7935.229:0048:004c:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"Batang"
7935.229:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansCondensed.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.229:0048:004c:trace:font:load_system_links L"PMingLiU-ExtB": L"MSJH.TTC,Microsoft JhengHei UI"
7935.229:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.229:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.229:0048:004c:trace:font:load_system_links L"PMingLiU-ExtB": L"MSYH.TTC,Microsoft YaHei UI"
7935.229:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.229:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Condensed", second_name L"DejaVu Sans Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Condensed", style_name L"Book"
7935.229:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.229:0048:004c:trace:font:load_system_links L"PMingLiU-ExtB": L"YUGOTHM.TTC,Yu Gothic UI"
7935.229:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.229:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.229:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Condensed" in family L"DejaVu Sans Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansCondensed.ttf"
7935.229:0048:004c:trace:font:load_system_links L"PMingLiU-ExtB": L"MALGUN.TTF,Malgun Gothic"
7935.229:0050:0054:trace:font:add_unix_face fsCsb = 600001ff dfff0000/e7006eff d200fdff 0a246029 0400200c
7935.229:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.229:0050:0054:trace:font:fontconfig_add_font (0x7ed8c8f0 0x1)
7935.229:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.229:0048:004c:trace:font:load_system_links L"PMingLiU-ExtB": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.229:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.229:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansMono-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.229:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.229:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,22,1,0x21ea20,4096)
7935.229:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Mono", second_name L"DejaVu Sans Mono", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Mono Bold", style_name L"Bold"
004c: enum_key_value( hkey=003c, index=22, info_class=1 )
7935.231:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Mono Bold" in family L"DejaVu Sans Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansMono-Bold.ttf"
7935.231:0050:0054:trace:font:add_unix_face fsCsb = 600001df ffdf0000/e70026ff d200f9fb 02000028 00000000
7935.231:0050:0054:trace:font:fontconfig_add_font (0x7ed8d140 0x1)
7935.231:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansMono-BoldOblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.231:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Mono", second_name L"DejaVu Sans Mono", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Mono Bold Oblique", style_name L"Bold Oblique"
004c: enum_key_value() = 0 { type=7, total=452, namelen=12, name=L"Tahoma", data={4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.231:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Mono Bold Oblique" in family L"DejaVu Sans Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansMono-BoldOblique.ttf"
7935.231:0050:0054:trace:font:add_unix_face fsCsb = 6000019f dfd70000/e70006ff 520079fb 02000020 00000000
7935.231:0048:004c:trace:font:load_system_links L"Tahoma": L"MSGOTHIC.TTC,MS UI Gothic"
7935.231:0050:0054:trace:font:fontconfig_add_font (0x7ed8d728 0x1)
7935.231:0048:004c:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.231:0048:004c:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.231:0048:004c:trace:font:load_system_links L"Tahoma": L"MINGLIU.TTC,PMingLiU"
7935.231:0048:004c:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.231:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansMono-Oblique.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.231:0048:004c:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.231:0048:004c:trace:font:load_system_links L"Tahoma": L"SIMSUN.TTC,SimSun"
7935.231:0048:004c:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.231:0048:004c:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.231:0048:004c:trace:font:load_system_links L"Tahoma": L"GULIM.TTC,Gulim"
7935.231:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Mono", second_name L"DejaVu Sans Mono", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Mono Oblique", style_name L"Oblique"
7935.231:0048:004c:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"Gulim"
7935.231:0048:004c:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"Gulim"
7935.231:0048:004c:trace:font:load_system_links L"Tahoma": L"YUGOTHM.TTC,Yu Gothic UI"
7935.231:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Mono Oblique" in family L"DejaVu Sans Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansMono-Oblique.ttf"
7935.231:0048:004c:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.231:0050:0054:trace:font:add_unix_face fsCsb = 6000019f dfd70000/e70006ff 520079fb 02000020 00000000
7935.231:0048:004c:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.231:0050:0054:trace:font:fontconfig_add_font (0x7ed8dc98 0x1)
7935.231:0048:004c:trace:font:load_system_links L"Tahoma": L"MSJH.TTC,Microsoft JhengHei UI"
7935.231:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.231:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.231:0048:004c:trace:font:load_system_links L"Tahoma": L"MSYH.TTC,Microsoft YaHei UI"
7935.231:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSansMono.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.231:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.231:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.231:0048:004c:trace:font:load_system_links L"Tahoma": L"MALGUN.TTF,Malgun Gothic"
7935.231:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.231:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Sans Mono", second_name L"DejaVu Sans Mono", primary_seen 0, english_seen 1, full_name L"DejaVu Sans Mono", style_name L"Book"
7935.231:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.231:0048:004c:trace:font:load_system_links L"Tahoma": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.231:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.231:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Sans Mono" in family L"DejaVu Sans Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSansMono.ttf"
7935.231:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.231:0050:0054:trace:font:add_unix_face fsCsb = 600001df ffdf0000/e70026ff d200f9fb 02000028 00000000
7935.231:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,23,1,0x21ea20,4096)
7935.231:0050:0054:trace:font:fontconfig_add_font (0x7ed8e248 0x1)
004c: enum_key_value( hkey=003c, index=23, info_class=1 )
7935.233:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerif-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.233:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif", second_name L"DejaVu Serif", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Bold", style_name L"Bold"
004c: enum_key_value() = 0 { type=7, total=282, namelen=24, name=L"Yu Gothic UI", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.233:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Bold" in family L"DejaVu Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerif-Bold.ttf"
7935.233:0050:0054:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.233:0050:0054:trace:font:fontconfig_add_font (0x7ed8ea28 0x1)
7935.233:0048:004c:trace:font:load_system_links L"Yu Gothic UI": L"SEGOEUI.TTF,Segoe UI"
7935.233:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUI.TTF" name L"Segoe UI"
7935.233:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUI.TTF" family L"Segoe UI"
7935.233:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerif-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.233:0048:004c:trace:font:load_system_links L"Yu Gothic UI": L"MSJH.TTC,Microsoft JhengHei"
7935.233:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei"
7935.233:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei"
7935.233:0048:004c:trace:font:load_system_links L"Yu Gothic UI": L"MSYH.TTC,Microsoft YaHei"
7935.233:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei"
7935.233:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif", second_name L"DejaVu Serif", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Bold Italic", style_name L"Bold Italic"
7935.233:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei"
7935.233:0048:004c:trace:font:load_system_links L"Yu Gothic UI": L"MALGUN.TTF,Malgun Gothic"
7935.233:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.233:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.233:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Bold Italic" in family L"DejaVu Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerif-BoldItalic.ttf"
7935.233:0048:004c:trace:font:load_system_links L"Yu Gothic UI": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.233:0050:0054:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.233:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.233:0050:0054:trace:font:fontconfig_add_font (0x7ed8efb8 0x1)
7935.233:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.233:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,24,1,0x21ea20,4096)
7935.233:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerif-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: enum_key_value( hkey=003c, index=24, info_class=1 )
7935.234:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif", second_name L"DejaVu Serif", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Italic", style_name L"Italic"
7935.234:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Italic" in family L"DejaVu Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerif-Italic.ttf"
7935.234:0050:0054:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
004c: enum_key_value() = 0 { type=7, total=352, namelen=34, name=L"Yu Gothic UI Bold", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,4a,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,59,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,42,00,44,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,42,00,6f,00,6c,00,64,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.234:0050:0054:trace:font:fontconfig_add_font (0x7ed8f538 0x1)
7935.234:0048:004c:trace:font:load_system_links L"Yu Gothic UI Bold": L"SEGOEUIB.TTF,Segoe UI Bold"
7935.234:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerif.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.234:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUIB.TTF" name L"Segoe UI Bold"
7935.234:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUIB.TTF" family L"Segoe UI Bold"
7935.234:0048:004c:trace:font:load_system_links L"Yu Gothic UI Bold": L"MSJHBD.TTC,Microsoft Jhenghei UI Bold"
7935.234:0048:004c:trace:font:find_face_from_filename looking for file L"MSJHBD.TTC" name L"Microsoft Jhenghei UI Bold"
7935.234:0048:004c:trace:font:load_system_links Unable to find file L"MSJHBD.TTC" family L"Microsoft Jhenghei UI Bold"
7935.234:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif", second_name L"DejaVu Serif", primary_seen 0, english_seen 1, full_name L"DejaVu Serif", style_name L"Book"
7935.234:0048:004c:trace:font:load_system_links L"Yu Gothic UI Bold": L"MSYHBD.TTC,Microsoft YaHei Bold"
7935.234:0048:004c:trace:font:find_face_from_filename looking for file L"MSYHBD.TTC" name L"Microsoft YaHei Bold"
7935.234:0048:004c:trace:font:load_system_links Unable to find file L"MSYHBD.TTC" family L"Microsoft YaHei Bold"
7935.234:0048:004c:trace:font:load_system_links L"Yu Gothic UI Bold": L"MALGUNBD.TTF,Malgun Gothic Bold"
7935.234:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif" in family L"DejaVu Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerif.ttf"
7935.234:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUNBD.TTF" name L"Malgun Gothic Bold"
7935.234:0050:0054:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.234:0048:004c:trace:font:load_system_links Unable to find file L"MALGUNBD.TTF" family L"Malgun Gothic Bold"
7935.234:0050:0054:trace:font:fontconfig_add_font (0x7ed8fac0 0x1)
7935.234:0048:004c:trace:font:load_system_links L"Yu Gothic UI Bold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.234:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.234:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.234:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerifCondensed-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.234:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,25,1,0x21ea20,4096)
004c: enum_key_value( hkey=003c, index=25, info_class=1 )
7935.235:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif Condensed", second_name L"DejaVu Serif Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Condensed Bold", style_name L"Bold"
7935.235:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Condensed Bold" in family L"DejaVu Serif Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerifCondensed-Bold.ttf"
7935.235:0050:0054:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.235:0050:0054:trace:font:fontconfig_add_font (0x7ed8ffa8 0x1)
004c: enum_key_value() = 0 { type=7, total=366, namelen=36, name=L"Yu Gothic UI Light", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,4d,00,53,00,4a,00,48,00,4c,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,4d,00,53,00,59,00,48,00,4c,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,53,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,53,00,65,00,6d,00,69,00,6c,00,69,00,67,00,68,00,74,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.235:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerifCondensed-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.235:0048:004c:trace:font:load_system_links L"Yu Gothic UI Light": L"SEGOEUIL.TTF,Segoe UI Light"
7935.235:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUIL.TTF" name L"Segoe UI Light"
7935.235:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif Condensed", second_name L"DejaVu Serif Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Condensed Bold Italic", style_name L"Bold Italic"
7935.235:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUIL.TTF" family L"Segoe UI Light"
7935.235:0048:004c:trace:font:load_system_links L"Yu Gothic UI Light": L"MSJHL.TTC,Microsoft Jhenghei UI Light"
7935.235:0048:004c:trace:font:find_face_from_filename looking for file L"MSJHL.TTC" name L"Microsoft Jhenghei UI Light"
7935.235:0048:004c:trace:font:load_system_links Unable to find file L"MSJHL.TTC" family L"Microsoft Jhenghei UI Light"
7935.235:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Condensed Bold Italic" in family L"DejaVu Serif Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerifCondensed-BoldItalic.ttf"
7935.235:0048:004c:trace:font:load_system_links L"Yu Gothic UI Light": L"MSYHL.TTC,Microsoft YaHei Light"
7935.235:0050:0054:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.235:0048:004c:trace:font:find_face_from_filename looking for file L"MSYHL.TTC" name L"Microsoft YaHei Light"
7935.235:0050:0054:trace:font:fontconfig_add_font (0x7ed904b0 0x1)
7935.235:0048:004c:trace:font:load_system_links Unable to find file L"MSYHL.TTC" family L"Microsoft YaHei Light"
7935.235:0048:004c:trace:font:load_system_links L"Yu Gothic UI Light": L"MALGUNSL.TTF,Malgun Gothic Semilight"
7935.235:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUNSL.TTF" name L"Malgun Gothic Semilight"
7935.235:0048:004c:trace:font:load_system_links Unable to find file L"MALGUNSL.TTF" family L"Malgun Gothic Semilight"
7935.235:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerifCondensed-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.235:0048:004c:trace:font:load_system_links L"Yu Gothic UI Light": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.235:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.235:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.235:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,26,1,0x21ea20,4096)
7935.235:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif Condensed", second_name L"DejaVu Serif Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Condensed Italic", style_name L"Italic"
004c: enum_key_value( hkey=003c, index=26, info_class=1 )
7935.237:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Condensed Italic" in family L"DejaVu Serif Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerifCondensed-Italic.ttf"
7935.237:0050:0054:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.237:0050:0054:trace:font:fontconfig_add_font (0x7ed909a0 0x1)
004c: enum_key_value() = 0 { type=7, total=324, namelen=42, name=L"Yu Gothic UI Semibold", data={53,00,45,00,47,00,55,00,49,00,53,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,65,00,6d,00,69,00,62,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.237:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/DejaVuSerifCondensed.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.237:0048:004c:trace:font:load_system_links L"Yu Gothic UI Semibold": L"SEGUISB.TTF,Segoe UI Semibold"
7935.237:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISB.TTF" name L"Segoe UI Semibold"
7935.237:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISB.TTF" family L"Segoe UI Semibold"
7935.237:0048:004c:trace:font:load_system_links L"Yu Gothic UI Semibold": L"MSJH.TTC,Microsoft Jhenghei UI"
7935.237:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft Jhenghei UI"
7935.237:0050:0054:trace:font:unix_face_create parsed font names family_name L"DejaVu Serif Condensed", second_name L"DejaVu Serif Condensed", primary_seen 0, english_seen 1, full_name L"DejaVu Serif Condensed", style_name L"Book"
7935.237:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft Jhenghei UI"
7935.237:0048:004c:trace:font:load_system_links L"Yu Gothic UI Semibold": L"MSYH.TTC,Microsoft YaHei"
7935.237:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei"
7935.237:0050:0054:trace:font:insert_face_in_family_list Adding face L"DejaVu Serif Condensed" in family L"DejaVu Serif Condensed" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\DejaVuSerifCondensed.ttf"
7935.237:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei"
7935.237:0050:0054:trace:font:add_unix_face fsCsb = 6000009f dfd70000/e50006ff 5200f9fb 0a040020 00000000
7935.237:0048:004c:trace:font:load_system_links L"Yu Gothic UI Semibold": L"MALGUN.TTF,Malgun Gothic"
7935.237:0050:0054:trace:font:fontconfig_add_font (0x7ed90e80 0x1)
7935.237:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.237:0048:004c:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.237:0048:004c:trace:font:load_system_links L"Yu Gothic UI Semibold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.237:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.237:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/Hack-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.237:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.237:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,27,1,0x21ea20,4096)
7935.238:0050:0054:trace:font:unix_face_create parsed font names family_name L"Hack", second_name L"", primary_seen 0, english_seen 1, full_name L"Hack Bold", style_name L"Bold"
004c: enum_key_value( hkey=003c, index=27, info_class=1 )
7935.238:0050:0054:trace:font:insert_face_in_family_list Adding face L"Hack Bold" in family L"Hack" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\Hack-Bold.ttf"
7935.238:0050:0054:trace:font:add_unix_face fsCsb = 2000019f dfd70000/a50006ef 0000b8fb 00000020 00000000
7935.238:0050:0054:trace:font:fontconfig_add_font (0x7ed914e0 0x1)
004c: enum_key_value() = 0 { type=7, total=356, namelen=44, name=L"Yu Gothic UI Semilight", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,53,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,65,00,6d,00,69,00,6c,00,69,00,67,00,68,00,74,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,53,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,53,00,65,00,6d,00,69,00,6c,00,69,00,67,00,68,00,74,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.238:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/Hack-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.238:0048:004c:trace:font:load_system_links L"Yu Gothic UI Semilight": L"SEGOEUISL.TTF,Segoe UI Semilight"
7935.238:0048:004c:trace:font:find_face_from_filename looking for file L"SEGOEUISL.TTF" name L"Segoe UI Semilight"
7935.238:0048:004c:trace:font:load_system_links Unable to find file L"SEGOEUISL.TTF" family L"Segoe UI Semilight"
7935.238:0050:0054:trace:font:unix_face_create parsed font names family_name L"Hack", second_name L"", primary_seen 0, english_seen 1, full_name L"Hack Bold Italic", style_name L"Bold Italic"
7935.238:0048:004c:trace:font:load_system_links L"Yu Gothic UI Semilight": L"MSJH.TTC,Microsoft Jhenghei UI"
7935.238:0048:004c:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft Jhenghei UI"
7935.238:0048:004c:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft Jhenghei UI"
7935.238:0050:0054:trace:font:insert_face_in_family_list Adding face L"Hack Bold Italic" in family L"Hack" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\Hack-BoldItalic.ttf"
7935.238:0048:004c:trace:font:load_system_links L"Yu Gothic UI Semilight": L"MSYH.TTC,Microsoft YaHei"
7935.238:0050:0054:trace:font:add_unix_face fsCsb = 2000019f dfd70000/a50006ef 000038fb 00000000 00000000
7935.238:0048:004c:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei"
7935.238:0050:0054:trace:font:fontconfig_add_font (0x7ed919f0 0x1)
7935.238:0048:004c:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei"
7935.238:0048:004c:trace:font:load_system_links L"Yu Gothic UI Semilight": L"MALGUNSL.TTF,Malgun Gothic Semilight"
7935.238:0048:004c:trace:font:find_face_from_filename looking for file L"MALGUNSL.TTF" name L"Malgun Gothic Semilight"
7935.238:0048:004c:trace:font:load_system_links Unable to find file L"MALGUNSL.TTF" family L"Malgun Gothic Semilight"
7935.238:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/Hack-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.238:0048:004c:trace:font:load_system_links L"Yu Gothic UI Semilight": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.238:0048:004c:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.238:0048:004c:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.238:0048:004c:trace:reg:NtEnumerateValueKey (0x3c,28,1,0x21ea20,4096)
7935.238:0050:0054:trace:font:unix_face_create parsed font names family_name L"Hack", second_name L"", primary_seen 0, english_seen 1, full_name L"Hack Italic", style_name L"Italic"
004c: enum_key_value( hkey=003c, index=28, info_class=1 )
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Hack Italic" in family L"Hack" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\Hack-Italic.ttf"
004c: enum_key_value() = NO_MORE_ENTRIES { type=0, total=0, namelen=0, name=L"", data={} }
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 0000019f dfd70000/a50006ef 000038fb 00000000 00000000
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed91ed0 0x1)
004c: close_handle( handle=003c )
004c: close_handle() = 0
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/Hack-Regular.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:find_face_from_filename looking for file L"tahoma.ttf" name L"Tahoma"
7935.239:0048:004c:trace:font:load_system_links Found Tahoma in L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahoma.ttf" index 0
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Liberation Sans"
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Hack", second_name L"", primary_seen 0, english_seen 1, full_name L"Hack Regular", style_name L"Regular"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Liberation Sans"	600001bf
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"Liberation Sans Bold"	600001bf
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Italic"	L"Liberation Sans Italic"	600001bf
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Hack Regular" in family L"Hack" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\Hack-Regular.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"Liberation Sans Bold Italic"	600001bf
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 2000019f dfd70000/a50006ef 1000b8fb 00000020 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Liberation Mono"
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed923e8 0x1)
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Liberation Mono"	600001bf
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"Liberation Mono Bold"	600001bf
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Italic"	L"Liberation Mono Italic"	600001bf
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"Liberation Mono Bold Italic"	600001bf
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationMono-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Liberation Serif"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Liberation Serif"	600001bf
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"Liberation Serif Bold"	600001bf
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Italic"	L"Liberation Serif Italic"	600001bf
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Mono", second_name L"Liberation Mono", primary_seen 0, english_seen 1, full_name L"Liberation Mono Bold", style_name L"Bold"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"Liberation Serif Bold Italic"	600001bf
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"C059"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Roman"	L"C059-Roman"	6000009f
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Mono Bold" in family L"Liberation Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationMono-Bold.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"C059-Bold"	6000009f
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 400078ff 00000001 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Italic"	L"C059-Italic"	6000009f
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed92af8 0x1)
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"C059-BdIta"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Courier"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Courier Regular"	00000002 13
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationMono-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"D050000L"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"D050000L"	00000001
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"DejaVu Math TeX Gyre"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"DejaVuMathTeXGyre-Regular"	60000193
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"DejaVu Sans"
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Mono", second_name L"Liberation Mono", primary_seen 0, english_seen 1, full_name L"Liberation Mono Bold Italic", style_name L"Bold Italic"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Book"	L"DejaVu Sans"	600001ff
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"DejaVu Sans Bold"	600001ff
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Oblique"	L"DejaVu Sans Oblique"	600001bf
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Mono Bold Italic" in family L"Liberation Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationMono-BoldItalic.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"DejaVu Sans Bold Oblique"	600001bf
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 400078ff 00000001 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"DejaVu Sans Condensed"
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed92fa0 0x1)
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Book"	L"DejaVu Sans Condensed"	600001ff
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"DejaVu Sans Condensed Bold"	600001ff
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Oblique"	L"DejaVu Sans Condensed Oblique"	600001bf
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationMono-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"DejaVu Sans Condensed Bold Oblique"	600001bf
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"DejaVu Sans Light"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"ExtraLight"	L"DejaVu Sans ExtraLight"	0000019f
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"DejaVu Sans Mono"
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Mono", second_name L"Liberation Mono", primary_seen 0, english_seen 1, full_name L"Liberation Mono Italic", style_name L"Italic"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Book"	L"DejaVu Sans Mono"	600001df
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"DejaVu Sans Mono Bold"	600001df
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Oblique"	L"DejaVu Sans Mono Oblique"	6000019f
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Mono Italic" in family L"Liberation Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationMono-Italic.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"DejaVu Sans Mono Bold Oblique"	6000019f
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 400078ff 00000001 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"DejaVu Serif"
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed93428 0x1)
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Book"	L"DejaVu Serif"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"DejaVu Serif Bold"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Italic"	L"DejaVu Serif Italic"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"DejaVu Serif Bold Italic"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"DejaVu Serif Condensed"
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationMono-Regular.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Book"	L"DejaVu Serif Condensed"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"DejaVu Serif Condensed Bold"	6000009f
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Mono", second_name L"Liberation Mono", primary_seen 0, english_seen 1, full_name L"Liberation Mono", style_name L"Regular"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Italic"	L"DejaVu Serif Condensed Italic"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"DejaVu Serif Condensed Bold Italic"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Hack"
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Mono" in family L"Liberation Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationMono-Regular.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Hack Regular"	2000019f
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 400078ff 00000001 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"Hack Bold"	2000019f
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed938a0 0x1)
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Italic"	L"Hack Italic"	0000019f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"Hack Bold Italic"	2000019f
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Luxi Mono"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Luxi Mono Regular"	00000093
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSans-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"Luxi Mono Bold"	00000093
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Oblique"	L"Luxi Mono Oblique"	00000093
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"Luxi Mono Bold Oblique"	00000093
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Luxi Sans"
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Sans", second_name L"Liberation Sans", primary_seen 0, english_seen 1, full_name L"Liberation Sans Bold", style_name L"Bold"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Luxi Sans Regular"	00000093
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"Luxi Sans Bold"	00000093
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Oblique"	L"Luxi Sans Oblique"	00000093
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Sans Bold" in family L"Liberation Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSans-Bold.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"Luxi Sans Bold Oblique"	00000093
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Luxi Serif"
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed93e00 0x1)
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Luxi Serif Regular"	00000093
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"Luxi Serif Bold"	00000093
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Oblique"	L"Luxi Serif Oblique"	00000093
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSans-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"Luxi Serif Bold Oblique"	00000093
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Marlett"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Marlett"	80000000
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"MS Sans Serif"
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Sans", second_name L"Liberation Sans", primary_seen 0, english_seen 1, full_name L"Liberation Sans Bold Italic", style_name L"Bold Italic"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"MS Sans Serif Regular"	00000002 13
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"MS Sans Serif Regular"	00000002 16
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Sans Bold Italic" in family L"Liberation Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSans-BoldItalic.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Nimbus Mono PS"
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"NimbusMonoPS-Regular"	6000009f
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed94288 0x1)
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"NimbusMonoPS-Bold"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Italic"	L"NimbusMonoPS-Italic"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"NimbusMonoPS-BoldItalic"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Nimbus Roman"
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSans-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"NimbusRoman-Regular"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"NimbusRoman-Bold"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Italic"	L"NimbusRoman-Italic"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"NimbusRoman-BoldItalic"	6000009f
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Sans", second_name L"Liberation Sans", primary_seen 0, english_seen 1, full_name L"Liberation Sans Italic", style_name L"Italic"
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Nimbus Sans"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"NimbusSans-Regular"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"NimbusSans-Bold"	6000009f
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Sans Italic" in family L"Liberation Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSans-Italic.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Italic"	L"NimbusSans-Italic"	6000009f
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"NimbusSans-BoldItalic"	6000009f
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed946f0 0x1)
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Nimbus Sans Narrow"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"NimbusSansNarrow-Regular"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"NimbusSansNarrow-Bold"	6000009f
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSans-Regular.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Oblique"	L"NimbusSansNarrow-Oblique"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"NimbusSansNarrow-BoldOblique"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"P052"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Roman"	L"P052-Roman"	6000009f
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Sans", second_name L"Liberation Sans", primary_seen 0, english_seen 1, full_name L"Liberation Sans", style_name L"Regular"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"P052-Bold"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Italic"	L"P052-Italic"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"P052-BoldItalic"	6000009f
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Sans" in family L"Liberation Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSans-Regular.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Small Fonts"
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Small Fonts Regular"	00000002 11
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed94b48 0x1)
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Standard Symbols PS"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Standard Symbols PS"	00000001
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Symbol"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Symbol"	80000000
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSerif-Bold.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"System"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"System Regular"	00000002 16
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Tahoma"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Tahoma"	20000057
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Serif", second_name L"Liberation Serif", primary_seen 0, english_seen 1, full_name L"Liberation Serif Bold", style_name L"Bold"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Bold"	L"Tahoma Bold"	20000057
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"URW Bookman"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Demi"	L"URWBookman-Demi"	6000009f
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Serif Bold" in family L"Liberation Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSerif-Bold.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Light"	L"URWBookman-Light"	6000009f
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Demi Italic"	L"URWBookman-DemiItalic"	6000009f
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed95070 0x1)
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Light Italic"	L"URWBookman-LightItalic"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"URW Gothic"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Book"	L"URWGothic-Book"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Demi"	L"URWGothic-Demi"	6000009f
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSerif-BoldItalic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Book Oblique"	L"URWGothic-BookOblique"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Demi Oblique"	L"URWGothic-DemiOblique"	6000009f
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Webdings"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Webdings"	80000000
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Serif", second_name L"Liberation Serif", primary_seen 0, english_seen 1, full_name L"Liberation Serif Bold Italic", style_name L"Bold Italic"
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Wingdings"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Regular"	L"Wingdings"	80000000
7935.239:0048:004c:trace:font:dump_gdi_font_list Family: L"Z003"
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Serif Bold Italic" in family L"Liberation Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSerif-BoldItalic.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_list 	L"Medium Italic"	L"Z003-MediumItalic"	6000009f
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"Arial CE",0 -> L"Arial",238
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed955b8 0x1)
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"Courier New CE",0 -> L"Courier New",238
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"Courier",0 -> L"Courier New",238
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"Fixedsys",0 -> L"Fixedsys",238
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSerif-Italic.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"Helv",0 -> L"MS Sans Serif",238
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"MS Sans Serif",0 -> L"MS Sans Serif",238
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"MS Serif",0 -> L"MS Serif",238
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"MS Shell Dlg" -> L"Tahoma"
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Serif", second_name L"Liberation Serif", primary_seen 0, english_seen 1, full_name L"Liberation Serif Italic", style_name L"Italic"
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"Small Fonts",0 -> L"Small Fonts",238
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"System",0 -> L"System",238
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Serif Italic" in family L"Liberation Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSerif-Italic.ttf"
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"Times New Roman CE",0 -> L"Times New Roman",238
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.239:0048:004c:trace:font:dump_gdi_font_subst L"Tms Rmn" -> L"Times New Roman"
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed95ae0 0x1)
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100020 1/65536
7935.239:0048:004c:trace:gdi:create_brush 0x1100020
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/LiberationSerif-Regular.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100021 2/65536
7935.239:0048:004c:trace:gdi:create_brush 0x1100021
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100022 3/65536
7935.239:0048:004c:trace:gdi:create_brush 0x1100022
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100023 4/65536
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Liberation Serif", second_name L"Liberation Serif", primary_seen 0, english_seen 1, full_name L"Liberation Serif", style_name L"Regular"
7935.239:0048:004c:trace:gdi:create_brush 0x1100023
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100024 5/65536
7935.239:0048:004c:trace:gdi:create_brush 0x1100024
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Liberation Serif" in family L"Liberation Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\LiberationSerif-Regular.ttf"
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100025 6/65536
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 600001bf dff70000/e0000aff 500078ff 00000021 00000000
7935.239:0048:004c:trace:gdi:create_brush 0x1100025
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed95f50 0x1)
7935.239:0048:004c:trace:gdi:create_pen 0 0 RGB(ff,ff,ff)
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_PEN 0x1300026 7/65536
7935.239:0048:004c:trace:gdi:create_pen 0 0 RGB(00,00,00)
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luximb.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_PEN 0x1300027 8/65536
7935.239:0048:004c:trace:gdi:create_pen 5 0 RGB(00,00,00)
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_PEN 0x1300028 9/65536
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Mono", second_name L"Luxi Mono", primary_seen 0, english_seen 1, full_name L"Luxi Mono Bold", style_name L"Bold"
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0029 10/65536
7935.239:0048:004c:trace:font:NtGdiHfontCreate (12 0 0 0 31 0 0 0 255) L""    => 0x10a0029
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a002a 11/65536
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Mono Bold" in family L"Luxi Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luximb.ttf"
7935.239:0048:004c:trace:font:NtGdiHfontCreate (12 0 0 0 31 0 0 0 255) L""    => 0x10a002a
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/0000000f 00000000 00000000 00000000
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a002b 12/65536
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed964a8 0x1)
7935.239:0048:004c:trace:font:NtGdiHfontCreate (12 0 0 0 31 0 0 0 0) L"Courier"    => 0x10a002b
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a002c 13/65536
7935.239:0048:004c:trace:font:NtGdiHfontCreate (12 0 0 0 22 0 0 0 0) L"MS Sans Serif"    => 0x10a002c
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luximbi.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a002d 14/65536
7935.239:0048:004c:trace:font:NtGdiHfontCreate (16 7 0 0 22 0 0 0 238) L"System" Bold   => 0x10a002d
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a002e 15/65536
7935.239:0048:004c:trace:font:NtGdiHfontCreate (16 0 0 0 22 0 0 0 238) L"System" Bold   => 0x10a002e
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Mono", second_name L"Luxi Mono", primary_seen 0, english_seen 1, full_name L"Luxi Mono Bold Oblique", style_name L"Bold Oblique"
7935.239:0048:004c:trace:palette:NtGdiCreatePaletteInternal entries=20
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_PAL 0x108002f 16/65536
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Mono Bold Oblique" in family L"Luxi Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luximbi.ttf"
7935.239:0048:004c:trace:palette:NtGdiCreatePaletteInternal    returning 0x108002f
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000002 00000000 00000000
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0030 17/65536
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed96920 0x1)
7935.239:0048:004c:trace:font:NtGdiHfontCreate (16 0 0 0 31 0 0 0 238) L"Courier"    => 0x10a0030
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0031 18/65536
7935.239:0048:004c:trace:font:NtGdiHfontCreate (-11 0 0 0 22 0 0 0 238) L"MS Shell Dlg"    => 0x10a0031
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luximr.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100032 19/65536
7935.239:0048:004c:trace:gdi:create_brush 0x1100032
7935.239:0048:004c:trace:gdi:create_pen 0 0 RGB(00,00,00)
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_PEN 0x1300033 20/65536
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Mono", second_name L"Luxi Mono", primary_seen 0, english_seen 1, full_name L"Luxi Mono Regular", style_name L"Regular"
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BITMAP 0x1090034 21/65536
7935.239:0048:004c:trace:bitmap:NtGdiCreateBitmap 1x1, bpp 1 planes 1: returning 0x1090034
7935.239:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Mono Regular" in family L"Luxi Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luximr.ttf"
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0035 22/65536
7935.239:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000002 00000000 00000000
7935.239:0048:004c:trace:font:NtGdiHfontCreate (16 7 0 0 22 0 0 0 238) L"System" Bold   => 0x10a0035
7935.239:0050:0054:trace:font:fontconfig_add_font (0x7ed96d08 0x1)
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0036 23/65536
7935.239:0048:004c:trace:font:NtGdiHfontCreate (16 0 0 0 31 0 0 0 238) L"Courier"    => 0x10a0036
7935.239:0048:004c:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0037 24/65536
7935.239:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luximri.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.239:0048:004c:trace:font:NtGdiHfontCreate (-11 0 0 0 22 0 0 0 238) L"MS Shell Dlg"    => 0x10a0037
7935.239:0048:004c:trace:reg:NtCreateKey (0x2c,L"Keyboard Layout\\Preload",<null>,0,2000000,0x21e79c)
7935.239:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Mono", second_name L"Luxi Mono", primary_seen 0, english_seen 1, full_name L"Luxi Mono Oblique", style_name L"Oblique"
7935.248:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Mono Oblique" in family L"Luxi Mono" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luximri.ttf"
004c: create_key( access=02000000, options=00000000, objattr={rootdir=002c,attributes=000000c0,sd={},name=L"Keyboard Layout\\Preload"}, class=L"" )
7935.248:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
004c: create_key() = OBJECT_NAME_EXISTS { hkey=003c }
7935.248:0050:0054:trace:font:fontconfig_add_font (0x7ed97100 0x1)
7935.248:0048:004c:trace:reg:NtCreateKey <- 0x3c
7935.248:0048:004c:trace:keyboard:NtUserGetKeyboardLayoutName name 0x21ea76
7935.248:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxirb.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.248:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Keyboard Layouts",2000000,0x21d95c)
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Keyboard Layouts" )
7935.248:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Serif", second_name L"Luxi Serif", primary_seen 0, english_seen 1, full_name L"Luxi Serif Bold", style_name L"Bold"
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.248:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.248:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Serif Bold" in family L"Luxi Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxirb.ttf"
7935.248:0048:004c:trace:keyboard:NtUserGetKeyboardLayoutName ret L"00000405"
7935.248:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.248:0048:004c:trace:reg:NtSetValueKey (0x3c,L"1",1,0x21ea76,18)
7935.248:0050:0054:trace:font:fontconfig_add_font (0x7ed97538 0x1)
004c: set_key_value( hkey=003c, type=1, namelen=2, name=L"1", data={30,00,30,00,30,00,30,00,30,00,34,00,30,00,35,00,00,00} )
7935.249:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxirbi.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: set_key_value() = 0
004c: close_handle( handle=003c )
7935.249:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Serif", second_name L"Luxi Serif", primary_seen 0, english_seen 1, full_name L"Luxi Serif Bold Oblique", style_name L"Bold Oblique"
004c: close_handle() = 0
7935.249:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Serif Bold Oblique" in family L"Luxi Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxirbi.ttf"
7935.249:0048:004c:trace:reg:NtCreateKey (0x2c,L"Software\\Wine",<null>,0,2000000,0x21e79c)
7935.249:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.249:0050:0054:trace:font:fontconfig_add_font (0x7ed97918 0x1)
004c: create_key( access=02000000, options=00000000, objattr={rootdir=002c,attributes=000000c0,sd={},name=L"Software\\Wine"}, class=L"" )
004c: create_key() = OBJECT_NAME_EXISTS { hkey=003c }
7935.249:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxirr.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.249:0048:004c:trace:reg:NtCreateKey <- 0x3c
7935.249:0048:004c:trace:reg:NtCreateKey (0x3c,L"Temporary System Parameters",<null>,1,2000000,0x21e79c)
7935.249:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Serif", second_name L"Luxi Serif", primary_seen 0, english_seen 1, full_name L"Luxi Serif Regular", style_name L"Regular"
004c: create_key( access=02000000, options=00000001, objattr={rootdir=003c,attributes=000000c0,sd={},name=L"Temporary System Parameters"}, class=L"" )
004c: create_key() = OBJECT_NAME_EXISTS { hkey=0040 }
7935.249:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Serif Regular" in family L"Luxi Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxirr.ttf"
7935.249:0048:004c:trace:reg:NtCreateKey <- 0x40
7935.249:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.249:0050:0054:trace:font:fontconfig_add_font (0x7ed97ce0 0x1)
004c: close_handle( handle=003c )
004c: close_handle() = 0
7935.250:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxirri.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.250:0048:004c:trace:reg:NtCreateKey ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current",<null>,0,2000000,0x21e79c)
004c: create_key( access=02000000, options=00000000, objattr={rootdir=0000,attributes=000000c0,sd={},name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current"}, class=L"" )
7935.250:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Serif", second_name L"Luxi Serif", primary_seen 0, english_seen 1, full_name L"Luxi Serif Oblique", style_name L"Oblique"
004c: create_key() = OBJECT_NAME_EXISTS { hkey=003c }
7935.250:0048:004c:trace:reg:NtCreateKey <- 0x3c
7935.250:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Serif Oblique" in family L"Luxi Serif" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxirri.ttf"
7935.250:0048:004c:trace:reg:NtCreateKey (0x2c,L"Control Panel\\Desktop",<null>,0,2000000,0x21d70c)
7935.250:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.250:0050:0054:trace:font:fontconfig_add_font (0x7ed980b8 0x1)
004c: create_key( access=02000000, options=00000000, objattr={rootdir=002c,attributes=000000c0,sd={},name=L"Control Panel\\Desktop"}, class=L"" )
004c: create_key() = OBJECT_NAME_EXISTS { hkey=0044 }
7935.250:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxisb.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
7935.250:0048:004c:trace:reg:NtCreateKey <- 0x44
7935.250:0048:004c:trace:reg:NtCreateKey (0x40,L"Control Panel\\Desktop",<null>,1,2000000,0x21d70c)
7935.250:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Sans", second_name L"Luxi Sans", primary_seen 0, english_seen 1, full_name L"Luxi Sans Bold", style_name L"Bold"
004c: create_key( access=02000000, options=00000001, objattr={rootdir=0040,attributes=000000c0,sd={},name=L"Control Panel\\Desktop"}, class=L"" )
7935.251:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Sans Bold" in family L"Luxi Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxisb.ttf"
004c: create_key() = OBJECT_NAME_EXISTS { hkey=0048 }
7935.251:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.251:0050:0054:trace:font:fontconfig_add_font (0x7ed98478 0x1)
7935.251:0048:004c:trace:reg:NtCreateKey <- 0x48
7935.251:0048:004c:trace:reg:NtQueryValueKey (0x48,L"LogPixels",2,0x21da00,4096)
7935.251:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxisbi.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: get_key_value( hkey=0048, name=L"LogPixels" )
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.251:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Sans", second_name L"Luxi Sans", primary_seen 0, english_seen 1, full_name L"Luxi Sans Bold Oblique", style_name L"Bold Oblique"
7935.251:0048:004c:trace:reg:NtQueryValueKey (0x44,L"LogPixels",2,0x21da00,4096)
7935.251:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Sans Bold Oblique" in family L"Luxi Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxisbi.ttf"
004c: get_key_value( hkey=0044, name=L"LogPixels" )
7935.251:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.251:0050:0054:trace:font:fontconfig_add_font (0x7ed98858 0x1)
7935.251:0048:004c:trace:reg:NtOpenKeyEx (0x3c,L"Software\\Fonts",2000000,0x21e7e4)
7935.251:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxisr.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: open_key( parent=003c, access=02000000, attributes=00000040, name=L"Software\\Fonts" )
004c: open_key() = 0 { hkey=004c }
7935.252:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Sans", second_name L"Luxi Sans", primary_seen 0, english_seen 1, full_name L"Luxi Sans Regular", style_name L"Regular"
7935.252:0048:004c:trace:reg:NtOpenKeyEx <- 0x4c
7935.252:0048:004c:trace:reg:NtQueryValueKey (0x4c,L"LogPixels",2,0x21ecb0,16)
7935.252:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Sans Regular" in family L"Luxi Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxisr.ttf"
7935.252:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
004c: get_key_value( hkey=004c, name=L"LogPixels" )
7935.252:0050:0054:trace:font:fontconfig_add_font (0x7ed98c20 0x1)
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.252:0050:0054:trace:font:unix_face_create unix_name /usr/share/fonts/TTF/luxisri.ttf, face_index 0, data_ptr (nil), data_size 0, flags 0x1
004c: close_handle( handle=004c )
004c: close_handle() = 0
7935.252:0048:004c:trace:reg:NtQueryValueKey (0x48,L"DpiScalingVer",2,0x21da00,4096)
7935.252:0050:0054:trace:font:unix_face_create parsed font names family_name L"Luxi Sans", second_name L"Luxi Sans", primary_seen 0, english_seen 1, full_name L"Luxi Sans Oblique", style_name L"Oblique"
004c: get_key_value( hkey=0048, name=L"DpiScalingVer" )
7935.252:0050:0054:trace:font:insert_face_in_family_list Adding face L"Luxi Sans Oblique" in family L"Luxi Sans" from L"\\??\\Z:\\usr\\share\\fonts\\TTF\\luxisri.ttf"
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.252:0050:0054:trace:font:add_unix_face fsCsb = 00000093 00000000/00000007 00000000 00000000 00000000
7935.252:0048:004c:trace:reg:NtQueryValueKey (0x44,L"DpiScalingVer",2,0x21da00,4096)
7935.252:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list (0x7ecd7250 0x7ece3d00 0x7e4d94f0 0x1)
7935.252:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/Type1
004c: get_key_value( hkey=0044, name=L"DpiScalingVer" )
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.252:0048:004c:trace:reg:NtOpenKeyEx (0x2c,L"Software\\Wine\\X11 Driver",2000000,0x21e7c4)
004c: open_key( parent=002c, access=02000000, attributes=00000040, name=L"Software\\Wine\\X11 Driver" )
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.253:0050:0054:trace:font:fontconfig_add_font (0x7ecfb150 0x1)
7935.253:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/UTBI____.pfa"
7935.253:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.253:0050:0054:trace:font:fontconfig_add_font (0x7ecfb600 0x1)
7935.253:0048:004c:trace:reg:NtOpenKeyEx (0x2c,L"Software\\Microsoft\\Windows NT\\CurrentVersion\\AppCompatFlags\\Layers",2000000,0x21e7c4)
7935.253:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/UTB_____.pfa"
7935.253:0050:0054:trace:font:fontconfig_add_font (0x7ecfb960 0x1)
7935.253:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/UTI_____.pfa"
004c: open_key( parent=002c, access=02000000, attributes=00000040, name=L"Software\\Microsoft\\Windows NT\\CurrentVersion\\AppCompatFlags\\Layers" )
7935.253:0050:0054:trace:font:fontconfig_add_font (0x7ecfbcc0 0x1)
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.253:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/UTRG____.pfa"
7935.253:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.253:0050:0054:trace:font:fontconfig_add_font (0x7ecfc020 0x1)
7935.253:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AppCompatFlags\\Layers",2000000,0x21e7e4)
7935.253:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/a010013l.pfb"
7935.253:0050:0054:trace:font:fontconfig_add_font (0x7ecfc4e0 0x1)
7935.253:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/a010015l.pfb"
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AppCompatFlags\\Layers" )
7935.253:0050:0054:trace:font:fontconfig_add_font (0x7ecfc8c0 0x1)
004c: open_key() = OBJECT_PATH_SYNTAX_BAD { hkey=0000 }
7935.253:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/a010033l.pfb"
7935.253:0050:0054:trace:font:fontconfig_add_font (0x7ecfcc38 0x1)
7935.253:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.253:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/a010035l.pfb"
7935.253:0048:004c:trace:reg:NtOpenKeyEx (0x2c,L"Software\\Wine\\AppDefaults",2000000,0x21e7c4)
7935.253:0050:0054:trace:font:fontconfig_add_font (0x7ecfcfb0 0x1)
7935.253:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/b018012l.pfb"
004c: open_key( parent=002c, access=02000000, attributes=00000040, name=L"Software\\Wine\\AppDefaults" )
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecfd320 0x1)
004c: open_key() = 0 { hkey=004c }
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/b018015l.pfb"
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecfd698 0x1)
7935.254:0048:004c:trace:reg:NtOpenKeyEx <- 0x4c
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/b018032l.pfb"
7935.254:0048:004c:trace:reg:NtOpenKeyEx (0x4c,L"explorer.exe\\X11 Driver",2000000,0x21e9ec)
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecfda10 0x1)
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/b018035l.pfb"
004c: open_key( parent=004c, access=02000000, attributes=00000040, name=L"explorer.exe\\X11 Driver" )
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecfde10 0x1)
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0419bt_.pfb"
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecfe1b0 0x1)
7935.254:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0582bt_.pfb"
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecfe550 0x1)
004c: close_handle( handle=004c )
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0583bt_.pfb"
004c: close_handle() = 0
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecfe8f0 0x1)
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c059013l.pfb"
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecfec68 0x1)
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c059016l.pfb"
004c: open_directory( access=00000006, attributes=00000000, rootdir=0000, directory_name=L"\\Sessions\\1\\Windows\\WindowStations" )
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecfefe0 0x1)
004c: open_directory() = 0 { handle=004c }
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c059033l.pfb"
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecff358 0x1)
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c059036l.pfb"
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecff6d8 0x1)
004c: create_winstation( flags=00000000, access=000f037f, attributes=000000c0, rootdir=004c, name=L"WinSta0" )
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0611bt_.pfb"
004c: create_winstation() = 0 { handle=0050 }
7935.254:0050:0054:trace:font:fontconfig_add_font (0x7ecffa88 0x1)
7935.254:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0632bt_.pfb"
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ecffe00 0x1)
004c: set_process_winstation( handle=0050 )
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0633bt_.pfb"
004c: set_process_winstation() = 0
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed00188 0x1)
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0648bt_.pfb"
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed00500 0x1)
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/c0649bt_.pfb"
004c: set_user_object_info( handle=0050, flags=00000001, obj_flags=00000001 )
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed00880 0x1)
004c: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"" }
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/cour.pfa"
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed00d68 0x1)
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/courb.pfa"
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed010e8 0x1)
004c: create_desktop( flags=00000000, access=000f01ff, attributes=000000c0, name=L"Default" )
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/courbi.pfa"
004c: create_desktop() = 0 { handle=0054 }
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed01478 0x1)
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/couri.pfa"
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed017f8 0x1)
7935.255:0048:004c:trace:winstation:get_shared_desktop lock 0x21ebc0, desktop_shm 0x21ebbc
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/cursor.pfa"
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed01bf8 0x1)
004c: get_thread_desktop( tid=004c )
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/d050000l.pfb"
004c: get_thread_desktop() = 0 { locator={id=00000001,offset=000ffd18}, handle=0008 }
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed02058 0x1)
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l047013t.pfa"
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed02450 0x1)
7935.255:0048:004c:trace:winstation:get_shared_desktop lock 0x21ebc0, desktop_shm 0x21ebbc
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l047016t.pfa"
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed027d8 0x1)
004c: set_thread_desktop( handle=0054 )
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l047033t.pfa"
004c: set_thread_desktop() = 0 { locator={id=00000001,offset=000ffd18} }
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed02b68 0x1)
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l047036t.pfa"
7935.255:0048:004c:trace:winstation:get_shared_desktop lock 0x21ebc0, desktop_shm 0x21ebbc
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed02f00 0x1)
7935.255:0048:004c:trace:winstation:get_shared_desktop lock 0x21ebc0, desktop_shm 0x21ebbc
7935.255:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l048013t.pfa"
7935.255:0050:0054:trace:font:fontconfig_add_font (0x7ed03268 0x1)
004c: close_handle( handle=004c )
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l048016t.pfa"
004c: close_handle() = 0
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed035d0 0x1)
7935.256:0048:004c:trace:class:NtUserRegisterClassExWOW name=L"#32769" hinst=0x7b610000 style=0x8 clExtr=0x0 winExtr=0x0
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l048033t.pfa"
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed03940 0x1)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l048036t.pfa"
004c: create_class( local=0, atom=8001, style=00000008, instance=7b610000, client_ptr=7d4e5830, cls_extra=0, win_extra=0, name_offset=0, name=L"" )
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed03cb8 0x1)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l049013t.pfa"
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed04020 0x1)
004c: create_class() = 0 { locator={id=0000000a,offset=001011a0}, atom=8001 }
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l049016t.pfa"
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed04388 0x1)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l049033t.pfa"
7935.256:0048:004c:trace:class:NtUserRegisterClassExWOW name=(null)->L"#32769" atom=8001 wndproc=0xffff0003 hinst=0x7b610000 bg=0x2 style=00000008 clsExt=0 winExt=0 class=0x7d4e5830
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed046f8 0x1)
7935.256:0048:004c:trace:class:NtUserRegisterClassExWOW name=L"Message" hinst=0x7b610000 style=0x0 clExtr=0x0 winExtr=0x0
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/l049036t.pfa"
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed04a70 0x1)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019003l.pfb"
004c: create_class( local=0, atom=0000, style=00000000, instance=7b610000, client_ptr=7d4e5870, cls_extra=0, win_extra=0, name_offset=0, name=L"Message" )
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed04dd8 0x1)
004c: create_class() = 0 { locator={id=0000000b,offset=001013e8}, atom=c01d }
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019004l.pfb"
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed051b8 0x1)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019023l.pfb"
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed05588 0x1)
7935.256:0048:004c:trace:class:NtUserRegisterClassExWOW name=(null)->L"Message" atom=c01d wndproc=0xffff0001 hinst=0x7b610000 bg=(nil) style=00000000 clsExt=0 winExt=0 class=0x7d4e5870
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019024l.pfb"
7935.256:0048:004c:SysRet   NtUserInitializeClientPfnArrays() retval=00000000
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed05900 0x1)
7935.256:0048:004c:Ret  win32u.NtUserInitializeClientPfnArrays() retval=00000000 ret=7b6a5111
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019043l.pfb"
7935.256:0048:004c:Call ntdll.RtlImageDirectoryEntryToData(7b610000,00000001,00000000,0062fa4c) ret=7b6a514e
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed05c80 0x1)
7935.256:0048:004c:Ret  ntdll.RtlImageDirectoryEntryToData() retval=7b6e5000 ret=7b6a514e
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019044l.pfb"
7935.256:0048:004c:Call kernelbase.VirtualProtect(7b6e5028,0000145c,00000004,0062fa50) ret=7b6a51a2
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed05ff8 0x1)
7935.256:0048:004c:Call ntdll.NtProtectVirtualMemory(ffffffff,0062f9a8,0062f9ac,00000004,0062fa50) ret=7bc601e2
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019063l.pfb"
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed06380 0x1)
7935.256:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f9a8,0062f9ac,00000004,0062fa50)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n019064l.pfb"
7935.256:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b6e5028 0000145c 00000004
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed06700 0x1)
7935.256:0048:004c:trace:virtual:get_vprot_range_size base 0x7b6e5000, size 0x2000, mask 0x20.
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n021003l.pfb"
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed06af0 0x1)
7935.256:0048:004c:trace:virtual:dump_view View: 0x7b610000 - 0x7b7dffff c-rWx (image)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n021004l.pfb"
7935.256:0048:004c:trace:virtual:dump_view       0x7b610000 - 0x7b610fff c-r--
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed06e68 0x1)
7935.256:0048:004c:trace:virtual:dump_view       0x7b611000 - 0x7b6a6fff c-r-x
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n021023l.pfb"
7935.256:0048:004c:trace:virtual:dump_view       0x7b6a7000 - 0x7b6a7fff c-rW-
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed071e8 0x1)
7935.256:0048:004c:trace:virtual:dump_view       0x7b6a8000 - 0x7b6e3fff c-r--
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n021024l.pfb"
7935.256:0048:004c:trace:virtual:dump_view       0x7b6e4000 - 0x7b6e6fff c-rW-
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed07568 0x1)
7935.256:0048:004c:trace:virtual:dump_view       0x7b6e7000 - 0x7b6ebfff c-r--
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n022003l.pfb"
7935.256:0048:004c:trace:virtual:dump_view       0x7b6ec000 - 0x7b7d8fff c-rW-
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed078f0 0x1)
7935.256:0048:004c:trace:virtual:dump_view       0x7b7d9000 - 0x7b7dffff c-r--
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n022004l.pfb"
7935.256:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed07c58 0x1)
7935.256:0048:004c:Ret  ntdll.NtProtectVirtualMemory() retval=00000000 ret=7bc601e2
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n022023l.pfb"
7935.256:0048:004c:Ret  kernelbase.VirtualProtect() retval=00000001 ret=7b6a51a2
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed07fd0 0x1)
7935.256:0048:004c:Call kernelbase.GetProcAddress(7b610000,7b6b521c "DefDlgProcA") ret=7b6a51c2
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/n022024l.pfb"
7935.256:0048:004c:Call ntdll.RtlInitAnsiString(0062f9b8,7b6b521c "DefDlgProcA") ret=7bc6ef7d
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed08348 0x1)
7935.256:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b6b521c ret=7bc6ef7d
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/p052003l.pfb"
7935.256:0048:004c:Call ntdll.LdrGetProcedureAddress(7b610000,0062f9b8,00000000,0062f9b4) ret=7bc6ef9b
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed086b8 0x1)
7935.256:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/p052004l.pfb"
7935.256:0048:004c:Ret  kernelbase.GetProcAddress() retval=7bf349a8 ret=7b6a51c2
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed08a28 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e93af "GetWindowContextHelpId",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/p052023l.pfb"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed08d98 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e857a "EnableNonClientDpiScaling",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/p052024l.pfb"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed09110 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e7ec5 "CreateMDIWindowW",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/s050000l.pfb"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7ed09618 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8226 "DelegateInput",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring Type 1 font "/usr/share/fonts/Type1/z003034l.pfb"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e807f "DdeGetQualityOfService",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list (0x7ecd7250 0x7ece3d00 0x7e4d94f0 0x1)
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/Speedo
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8162 "DdeSetUserHandle",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e81b9 "DefFrameProcW",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8193 "DefDlgProcA",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000000 ret=7b6a5213
7935.256:0048:004c:Call kernelbase.GetProcAddress(7b610000,7b6b5228 "DefDlgProcW") ret=7b6a51c2
7935.256:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list (0x7ecd7250 0x7ece3d00 0x7e4d94f0 0x1)
7935.256:0048:004c:Call ntdll.RtlInitAnsiString(0062f9b8,7b6b5228 "DefDlgProcW") ret=7bc6ef7d
7935.256:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/cyrillic
7935.256:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b6b5228 ret=7bc6ef7d
7935.256:0048:004c:Call ntdll.LdrGetProcedureAddress(7b610000,0062f9b8,00000000,0062f9b4) ret=7bc6ef9b
7935.256:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.256:0048:004c:Ret  kernelbase.GetProcAddress() retval=7bf349c8 ret=7b6a51c2
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e93af "GetWindowContextHelpId",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e857a "EnableNonClientDpiScaling",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list (0x7ecd7250 0x7ece3d00 0x7e4d94f0 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e7ec5 "CreateMDIWindowW",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /usr/share/fonts/misc
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8226 "DelegateInput",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e807f "DdeGetQualityOfService",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8162 "DdeSetUserHandle",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a3288 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e81b9 "DefFrameProcW",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/10x20-ISO8859-1.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a3688 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8193 "DefDlgProcA",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/10x20.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a3e80 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e819f "DefDlgProcW",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/12x13ja.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000000 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a52a0 0x1)
7935.256:0048:004c:Call kernelbase.GetProcAddress(7b610000,7b6b5234 "DefWindowProcA") ret=7b6a51c2
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/12x24.pcf.gz"
7935.256:0048:004c:Call ntdll.RtlInitAnsiString(0062f9b8,7b6b5234 "DefWindowProcA") ret=7bc6ef7d
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a5698 0x1)
7935.256:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b6b5234 ret=7bc6ef7d
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/18x18ja.pcf.gz"
7935.256:0048:004c:Call ntdll.LdrGetProcedureAddress(7b610000,0062f9b8,00000000,0062f9b4) ret=7bc6ef9b
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a6fd8 0x1)
7935.256:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/18x18ko.pcf.gz"
7935.256:0048:004c:Ret  kernelbase.GetProcAddress() retval=7bf34968 ret=7b6a51c2
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a7718 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e93af "GetWindowContextHelpId",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/4x6-ISO8859-1.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a7ad8 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e857a "EnableNonClientDpiScaling",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/4x6.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a8080 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e7ec5 "CreateMDIWindowW",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/5x7-ISO8859-1.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a8440 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8226 "DelegateInput",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/5x7.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a89e0 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e807f "DdeGetQualityOfService",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/5x8-ISO8859-1.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a8da0 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8162 "DdeSetUserHandle",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/5x8.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a9338 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e81b9 "DefFrameProcW",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x10-ISO8859-1.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a96f8 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e81e9 "DefRawInputProc",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x10.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4a9c38 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8208 "DefWindowProcW",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x12-ISO8859-1.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4aa000 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e81f9 "DefWindowProcA",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x12.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000000 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4aa5d0 0x1)
7935.256:0048:004c:Call kernelbase.GetProcAddress(7b610000,7b6b5243 "DefWindowProcW") ret=7b6a51c2
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13-ISO8859-1.pcf.gz"
7935.256:0048:004c:Call ntdll.RtlInitAnsiString(0062f9b8,7b6b5243 "DefWindowProcW") ret=7bc6ef7d
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4aa998 0x1)
7935.256:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b6b5243 ret=7bc6ef7d
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13.pcf.gz"
7935.256:0048:004c:Call ntdll.LdrGetProcedureAddress(7b610000,0062f9b8,00000000,0062f9b4) ret=7bc6ef9b
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4ab060 0x1)
7935.256:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13B-ISO8859-1.pcf.gz"
7935.256:0048:004c:Ret  kernelbase.GetProcAddress() retval=7bf34988 ret=7b6a51c2
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4ab430 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e93af "GetWindowContextHelpId",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13B.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4aba18 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e857a "EnableNonClientDpiScaling",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13O-ISO8859-1.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4abe08 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e7ec5 "CreateMDIWindowW",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x13O.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4ac358 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8226 "DelegateInput",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x9-ISO8859-1.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4ac718 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e807f "DdeGetQualityOfService",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/6x9.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4acc50 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8162 "DdeSetUserHandle",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13-ISO8859-1.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4ad010 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e81b9 "DefFrameProcW",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4ad658 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e81e9 "DefRawInputProc",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13B-ISO8859-1.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4ada18 0x1)
7935.256:0048:004c:Call ucrtbase.strcmp(7b6e8208 "DefWindowProcW",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13B.pcf.gz"
7935.256:0048:004c:Ret  ucrtbase.strcmp() retval=00000000 ret=7b6a5213
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4adf10 0x1)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13O-ISO8859-1.pcf.gz"
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4ae2d0 0x1)
7935.256:0048:004c:Call kernelbase.VirtualProtect(7b6e5028,0000145c,00000002,0062fa50) ret=7b6a528e
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x13O.pcf.gz"
7935.256:0048:004c:Call ntdll.NtProtectVirtualMemory(ffffffff,0062f9a8,0062f9ac,00000002,0062fa50) ret=7bc601e2
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4ae818 0x1)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x14-ISO8859-1.pcf.gz"
7935.256:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f9a8,0062f9ac,00000002,0062fa50)
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4aebd8 0x1)
7935.256:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b6e5028 0000145c 00000002
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x14.pcf.gz"
7935.256:0048:004c:trace:virtual:get_vprot_range_size base 0x7b6e5000, size 0x2000, mask 0x20.
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4af1a8 0x1)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x14B-ISO8859-1.pcf.gz"
7935.256:0048:004c:trace:virtual:dump_view View: 0x7b610000 - 0x7b7dffff c-rWx (image)
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4af568 0x1)
7935.256:0048:004c:trace:virtual:dump_view       0x7b610000 - 0x7b610fff c-r--
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/7x14B.pcf.gz"
7935.256:0048:004c:trace:virtual:dump_view       0x7b611000 - 0x7b6a6fff c-r-x
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4afa20 0x1)
7935.256:0048:004c:trace:virtual:dump_view       0x7b6a7000 - 0x7b6a7fff c-rW-
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13-ISO8859-1.pcf.gz"
7935.256:0048:004c:trace:virtual:dump_view       0x7b6a8000 - 0x7b6e3fff c-r--
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4afde0 0x1)
7935.256:0048:004c:trace:virtual:dump_view       0x7b6e4000 - 0x7b6e4fff c-rW-
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13.pcf.gz"
7935.256:0048:004c:trace:virtual:dump_view       0x7b6e5000 - 0x7b6ebfff c-r--
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4b02e8 0x1)
7935.256:0048:004c:trace:virtual:dump_view       0x7b6ec000 - 0x7b7d8fff c-rW-
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13B-ISO8859-1.pcf.gz"
7935.256:0048:004c:trace:virtual:dump_view       0x7b7d9000 - 0x7b7dffff c-r--
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4b06a8 0x1)
7935.256:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13B.pcf.gz"
7935.256:0048:004c:Ret  ntdll.NtProtectVirtualMemory() retval=00000000 ret=7bc601e2
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4b0b80 0x1)
7935.256:0048:004c:Ret  kernelbase.VirtualProtect() retval=00000001 ret=7b6a528e
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13O-ISO8859-1.pcf.gz"
7935.256:0048:004c:Call win32u.NtUserGetSystemDpiForProcess(00000000) ret=7b6593c9
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4b0f40 0x1)
7935.256:0048:004c:SysCall  NtUserGetSystemDpiForProcess(00000000)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x13O.pcf.gz"
7935.256:0048:004c:SysRet   NtUserGetSystemDpiForProcess() retval=00000060
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4b13e0 0x1)
7935.256:0048:004c:Ret  win32u.NtUserGetSystemDpiForProcess() retval=00000060 ret=7b6593c9
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/8x16.pcf.gz"
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4b1798 0x1)
7935.256:0048:004c:Call ntdll.LdrQueryImageFileExecutionOptions(002431b8,7b6b3aac L"dpiAwareness",00000004,0062f860,00000004,00000000) ret=7b659411
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x15-ISO8859-1.pcf.gz"
7935.256:0048:004c:SysCall  NtOpenKey(0062f4f8,00000001,0062f510)
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4b1b58 0x1)
7935.256:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Image File Execution Options\\explorer.exe",1,0x62f4f8)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x15.pcf.gz"
7935.256:0050:0054:trace:font:fontconfig_add_font (0x7e4b2160 0x1)
7935.256:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x15B-ISO8859-1.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b2520 0x1)
004c: open_key( parent=0000, access=00000001, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Image File Execution Options\\explorer.exe" )
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x15B.pcf.gz"
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b2a70 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x18-ISO8859-1.pcf.gz"
7935.263:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b2e30 0x1)
7935.263:0048:004c:SysRet   NtOpenKey() retval=c0000034
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x18.pcf.gz"
7935.263:0048:004c:Ret  ntdll.LdrQueryImageFileExecutionOptions() retval=c0000034 ret=7b659411
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b3350 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x18B-ISO8859-1.pcf.gz"
7935.263:0048:004c:Call kernelbase.QueryActCtxSettingsW(00000000,00000000,7b6b3ad8 L"http://schemas.microsoft.com/SMI/2016/WindowsSettings",7b6b3aac L"dpiAwareness",0062f864,00000100,00000000) ret=7b659475
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b3710 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/9x18B.pcf.gz"
7935.263:0048:004c:Call ntdll.RtlQueryActivationContextApplicationSettings(00000000,00000000,7b6b3ad8 L"http://schemas.microsoft.com/SMI/2016/WindowsSettings",7b6b3aac L"dpiAwareness",0062f864,00000100,00000000) ret=7bc3a66f
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b3bb8 0x1)
7935.263:0048:004c:Ret  ntdll.RtlQueryActivationContextApplicationSettings() retval=c0150008 ret=7bc3a66f
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB6x10.pcf.gz"
7935.263:0048:004c:Call ntdll.RtlNtStatusToDosError(c0150008) ret=7bc3a691
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b3fb8 0x1)
7935.263:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=000036b7 ret=7bc3a691
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB6x12.pcf.gz"
7935.263:0048:004c:Ret  kernelbase.QueryActCtxSettingsW() retval=00000000 ret=7b659475
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b4378 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x10.pcf.gz"
7935.263:0048:004c:Call kernelbase.QueryActCtxSettingsW(00000000,00000000,7b6b3b78 L"http://schemas.microsoft.com/SMI/2005/WindowsSettings",7b6b3b64 L"dpiAware",0062f864,00000100,00000000) ret=7b6595cd
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b4738 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x12.pcf.gz"
7935.263:0048:004c:Call ntdll.RtlQueryActivationContextApplicationSettings(00000000,00000000,7b6b3b78 L"http://schemas.microsoft.com/SMI/2005/WindowsSettings",7b6b3b64 L"dpiAware",0062f864,00000100,00000000) ret=7bc3a66f
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b4af8 0x1)
7935.263:0048:004c:Ret  ntdll.RtlQueryActivationContextApplicationSettings() retval=c0150008 ret=7bc3a66f
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x13.pcf.gz"
7935.263:0048:004c:Call ntdll.RtlNtStatusToDosError(c0150008) ret=7bc3a691
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b4eb8 0x1)
7935.263:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=000036b7 ret=7bc3a691
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x14.pcf.gz"
7935.263:0048:004c:Ret  kernelbase.QueryActCtxSettingsW() retval=00000000 ret=7b6595cd
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b5278 0x1)
7935.263:0048:004c:Call kernelbase.LoadLibraryW(7b6b44cc L"imm32.dll") ret=7b62effd
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x16.pcf.gz"
7935.263:0048:004c:Call ntdll.RtlInitUnicodeString(0062fa24,7b6b44cc L"imm32.dll") ret=7bc2a675
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b5638 0x1)
7935.263:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=7b6b44cc ret=7bc2a675
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB8x8.pcf.gz"
7935.263:0048:004c:Call ntdll.LdrGetDllPath(7b6b44cc L"imm32.dll",00000000,0062f9fc,0062fa00) ret=7bc727f0
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b59f8 0x1)
7935.263:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F95C
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clB9x15.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b5db8 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clI6x12.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b6178 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clI8x8.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b6538 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR4x6.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b68f8 0x1)
7935.263:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 002881F0, status 0.
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR5x10.pcf.gz"
7935.263:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F95C
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b6cb8 0x1)
7935.263:0048:004c:Ret  ntdll.LdrGetDllPath() retval=00000000 ret=7bc727f0
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR5x6.pcf.gz"
7935.263:0048:004c:Call ntdll.LdrLoadDll(002881f0 L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;",00000000,0062fa24,0062f9f8) ret=7bc7281b
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b7078 0x1)
7935.263:0048:004c:trace:module:load_dll looking for L"imm32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR5x8.pcf.gz"
7935.263:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"imm32.dll" 0062F840
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b7438 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x10.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b77f8 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x12-ISO8859-1.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b7bc0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x12.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b80c0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x13.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b8480 0x1)
7935.263:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xa4, return 00288298, status 0.
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x6.pcf.gz"
7935.263:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\imm32.dll",0062F8F8,00000000,00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b8840 0x1)
7935.263:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\imm32.dll" 520 0062F5A4 00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR6x8.pcf.gz"
7935.263:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\imm32.dll" 520 0062F5A4 00000000 00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b8c00 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR7x10.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b8fc0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR7x12.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b9380 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR7x14.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b9740 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR7x8.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b9b00 0x1)
7935.263:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027F370, status 0.
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x10.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4b9ec0 0x1)
7935.263:0048:004c:SysCall  NtOpenFile(0062f734,80100000,0062f748,0062f740,00000005,00000060)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x12.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4ba280 0x1)
7935.263:0048:004c:trace:file:NtCreateFile handle=0x62f734 access=80100000 name=L"\\??\\C:\\windows\\system32\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f740 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x13.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4ba640 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x14.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4baa00 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x16.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4badc0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR8x8.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bb180 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/clR9x15.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bb540 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/cu-alt12.pcf.gz"
7935.263:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\imm32.dll" -> ret c0000034
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bbaf0 0x1)
7935.263:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\imm32.dll" not found (c0000034)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/cu-pua12.pcf.gz"
7935.263:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bbfb8 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/cu12.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bc918 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/cursor.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bccc8 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/deccurs.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bd080 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/decsess.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bd438 0x1)
7935.263:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F370, return 1, status 0.
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/micro.pcf.gz"
7935.263:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\imm32.dll",0062F8F8,00000000,00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bd7d8 0x1)
7935.263:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\imm32.dll" 520 0062F5A4 00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-112b.pcf.gz"
7935.263:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\imm32.dll" 520 0062F5A4 00000000 00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bdbe0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-112n.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bdfa8 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-114b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4be370 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-114n.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4be738 0x1)
7935.263:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027F3E0, status 0.
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-116b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4beb00 0x1)
7935.263:0048:004c:SysCall  NtOpenFile(0062f734,80100000,0062f748,0062f740,00000005,00000060)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-116n.pcf.gz"
7935.263:0048:004c:trace:file:NtCreateFile handle=0x62f734 access=80100000 name=L"\\??\\C:\\windows\\system32\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f740 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4beec8 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-118b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bf290 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-118n.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bf658 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-120b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bfa20 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-120n.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4bfde8 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-122b.pcf.gz"
7935.263:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\imm32.dll" -> ret c0000034
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c01b0 0x1)
7935.263:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\imm32.dll" not found (c0000034)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-122n.pcf.gz"
7935.263:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c0578 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-124b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c0940 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-124n.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c0d08 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-128b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c10d0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-128n.pcf.gz"
7935.263:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F3E0, return 1, status 0.
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c1498 0x1)
7935.263:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\imm32.dll",0062F8F8,00000000,00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-132b.pcf.gz"
7935.263:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\imm32.dll" 520 0062F5A4 00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c1860 0x1)
7935.263:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\imm32.dll" 520 0062F5A4 00000000 00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-132n.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c1c28 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u12b.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c22b8 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u12n.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c26e8 0x1)
7935.263:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 00261E38, status 0.
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u14b.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c2b10 0x1)
7935.263:0048:004c:SysCall  NtOpenFile(0062f734,80100000,0062f748,0062f740,00000005,00000060)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u14n.otb"
7935.263:0048:004c:trace:file:NtCreateFile handle=0x62f734 access=80100000 name=L"\\??\\C:\\windows\\system\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f740 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c2f40 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u16b.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c3368 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u16n.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c3798 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u18b.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c3bc0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u18n.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c3ff0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u20b.otb"
7935.263:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\imm32.dll" -> ret c000003a
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c4418 0x1)
7935.263:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system\\imm32.dll" not found (c000003a)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u20n.otb"
7935.263:0048:004c:SysRet   NtOpenFile() retval=c000003a
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c4848 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u22b.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c4c70 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u22n.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c50a0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u24b.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c54c8 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u24n.otb"
7935.263:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261E38, return 1, status 0.
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c58f8 0x1)
7935.263:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\imm32.dll",0062F8F8,00000000,00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u28b.otb"
7935.263:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\imm32.dll" 520 0062F5A4 00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c5d20 0x1)
7935.263:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\imm32.dll" 520 0062F5A4 00000000 00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u28n.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c6150 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u32b.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c6578 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-u32n.otb"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c69a8 0x1)
7935.263:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3a, return 00261E98, status 0.
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x12b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c6df8 0x1)
7935.263:0048:004c:SysCall  NtOpenFile(0062f734,80100000,0062f748,0062f740,00000005,00000060)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x12n.pcf.gz"
7935.263:0048:004c:trace:file:NtCreateFile handle=0x62f734 access=80100000 name=L"\\??\\C:\\windows\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f740 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c71c0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x14b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c7588 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x14n.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c7950 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x16b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c7d18 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x16n.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c80e0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x18b.pcf.gz"
7935.263:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\imm32.dll" -> ret c0000034
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c84a8 0x1)
7935.263:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\imm32.dll" not found (c0000034)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x18n.pcf.gz"
7935.263:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c8870 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x20b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c8c38 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x20n.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c9000 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x22b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c93c8 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x22n.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c9790 0x1)
7935.263:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261E98, return 1, status 0.
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x24b.pcf.gz"
7935.263:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\imm32.dll",0062F8F8,00000000,00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c9b58 0x1)
7935.263:0048:004c:trace:file:RtlGetFullPathName_U (L".\\imm32.dll" 520 0062F5A4 00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x24n.pcf.gz"
7935.263:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\imm32.dll" 520 0062F5A4 00000000 00000000)
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4c9f20 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x28b.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4ca2e8 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x28n.pcf.gz"
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4ca6b0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x32b.pcf.gz"
7935.263:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027F450, status 0.
7935.263:0050:0054:trace:font:fontconfig_add_font (0x7e4caa78 0x1)
7935.263:0048:004c:SysCall  NtOpenFile(0062f734,80100000,0062f748,0062f740,00000005,00000060)
7935.263:0050:0054:trace:font:fontconfig_add_font ignoring non-scalable font "/usr/share/fonts/misc/ter-x32n.pcf.gz"
7935.263:0048:004c:trace:file:NtCreateFile handle=0x62f734 access=80100000 name=L"\\??\\C:\\windows\\system32\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f740 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.263:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list (0x7ecd7250 0x7ece3d00 0x7e4d94f0 0x1)
7935.263:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /home/lessy/.local/share/fonts
7935.263:0050:0054:trace:font:fontconfig_add_fonts_from_dir_list adding fonts from /home/lessy/.fonts
7935.263:0050:0054:trace:sync:NtCreateMutant access 0x1f0001, name L"\\BaseNamedObjects\\__WINE_FONT_MUTEX__", owned 0
7935.271:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\imm32.dll" -> ret c0000034
0054: create_mutex( access=001f0001, owned=0, objattr={rootdir=0000,attributes=00000080,sd={},name=L"\\BaseNamedObjects\\__WINE_FONT_MUTEX__"} )
7935.271:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\imm32.dll" not found (c0000034)
0054: create_mutex() = OBJECT_NAME_EXISTS { handle=0034 }
7935.271:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.271:0050:0054:trace:sync:NtWaitForSingleObject handle 0x34, alertable 0, timeout (infinite)
0054: select( flags=2, cookie=0021e994, timeout=infinite, size=8, prev_apc=0000, result={}, data={WAIT,handles={0034}}, contexts={} )
0054: select() = 0 { apc_handle=0000, signaled=1, call={}, contexts={} }
7935.271:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F450, return 1, status 0.
7935.271:0050:0054:trace:sync:NtWaitForSingleObject -> 0
7935.271:0050:0054:trace:reg:NtCreateKey (0x30,L"Cache",<null>,1,2000000,0x21f9fc)
0054: create_key( access=02000000, options=00000001, objattr={rootdir=0030,attributes=000000c0,sd={},name=L"Cache"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=0038 }
7935.272:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00288298, return 1, status 0.
7935.272:0050:0054:trace:reg:NtCreateKey <- 0x38
7935.272:0050:0054:trace:sync:NtReleaseMutant handle 0x34, prev_count (nil)
0054: release_mutex( handle=0034 )
0054: release_mutex() = 0 { prev_count=00000001 }
7935.272:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Fonts",2000000,0x21f76c)
7935.272:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x866, return 00288358, status 0.
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Fonts" )
0054: open_key() = 0 { hkey=003c }
7935.272:0050:0054:trace:reg:NtOpenKeyEx <- 0x3c
7935.272:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,0,1,0x21f80c,532)
7935.272:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00288358, return 1, status 0.
0054: enum_key_value( hkey=003c, index=0, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=118, namelen=42, name=L"C059-BdIta (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,43,00,30,00,35,00,39,00,2d,00,42,00,64,00,49,00,74,00,61,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.272:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,1,1,0x21f80c,532)
7935.272:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x82e, return 00288BD8, status 0.
0054: enum_key_value( hkey=003c, index=1, info_class=1 )
7935.273:0048:004c:SysCall  NtOpenFile(0062f76c,80100000,0062f780,0062f778,00000005,00000060)
0054: enum_key_value() = 0 { type=1, total=114, namelen=40, name=L"C059-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,43,00,30,00,35,00,39,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.273:0048:004c:trace:file:NtCreateFile handle=0x62f76c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f778 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.273:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,2,1,0x21f80c,532)
7935.273:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" -> ret 0 nt L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" unix "/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/imm32.dll"
0054: enum_key_value( hkey=003c, index=2, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=122, namelen=44, name=L"C059-Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,43,00,30,00,35,00,39,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
004c: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000040,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll"}, filename="/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/imm32.dll" )
004c: create_file() = 0 { handle=004c }
7935.273:0048:004c:SysRet   NtOpenFile() retval=00000000
7935.273:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,3,1,0x21f80c,532)
7935.273:0048:004c:SysCall  NtFsControlFile(0000004c,00000000,00000000,00000000,0062f778,0009009c,00000000,00000000,0062f798,00000040)
0054: enum_key_value( hkey=003c, index=3, info_class=1 )
7935.274:0048:004c:trace:file:NtFsControlFile (0x4c,(nil),(nil),(nil),0x62f778,0x0009009c,(nil),0x00000000,0x62f798,0x00000040)
0054: enum_key_value() = 0 { type=1, total=118, namelen=42, name=L"C059-Roman (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,43,00,30,00,35,00,39,00,2d,00,52,00,6f,00,6d,00,61,00,6e,00,2e,00,6f,00,74,00,66,00,00,00} }
004c: get_handle_fd( handle=004c )
004c: *fd* 004c -> 84
004c: get_handle_fd() = 0 { type=1, cacheable=1, access=00120089, options=00000060 }
7935.274:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,4,1,0x21f80c,532)
7935.274:0048:004c:SysRet   NtFsControlFile() retval=00000000
7935.274:0048:004c:SysCall  NtCreateSection(0062f8e8,000f000d,00000000,0062f770,00000020,01000000,0000004c)
0054: enum_key_value( hkey=003c, index=4, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=36, namelen=14, name=L"Courier", data={63,00,6f,00,75,00,72,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
004c: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=004c, objattr={} )
004c: create_mapping() = 0 { handle=0058 }
7935.274:0048:004c:SysRet   NtCreateSection() retval=00000000
7935.274:0048:004c:SysCall  NtQuerySection(00000058,00000001,0062f91c,00000030,00000000)
7935.274:0050:0054:trace:reg:NtQueryValueKey (0x3c,L"Courier",2,0x21f80c,532)
004c: get_mapping_info( handle=0058, access=00000001 )
004c: get_mapping_info() = 0 { size=0001f000, flags=01800000, shared_file=0000, name_len=0, total=189, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00002e70,map_size=0001f000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=0001a9ee,checksum=0001c27f}, name=L"", exp_name="" }
0054: get_key_value( hkey=003c, name=L"Courier" )
0054: get_key_value() = 0 { type=1, total=22, data={63,00,6f,00,75,00,72,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.274:0048:004c:SysRet   NtQuerySection() retval=00000000
7935.274:0048:004c:SysCall  NtClose(0000004c)
004c: close_handle( handle=004c )
004c: close_handle() = 0
7935.275:0048:004c:SysRet   NtClose() retval=00000000
7935.275:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\couree.fon" -> ret c000003a
7935.275:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\couree.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\couree.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/couree.fon"
7935.275:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00288BD8, return 1, status 0.
7935.275:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/couree.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.275:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.275:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/couree.fon" index 0
7935.275:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 00261EF8, status 0.
7935.275:0048:004c:SysCall  NtMapViewOfSection(00000058,ffffffff,0062f900,00000000,00000000,00000000,0062f94c,00000001,00000000,00000020)
7935.275:0048:004c:trace:virtual:NtMapViewOfSection handle=0x58 process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x20
7935.275:0050:0054:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.275:0050:0054:warn:font:ft_face_get_full_name full name not found, using L"Courier Regular" instead
7935.275:0050:0054:trace:font:get_bitmap_size Adding bitmap size h 13 w 8 size 10 x_ppem 13 y_ppem 13
004c: get_mapping_info( handle=0058, access=0000000c )
7935.276:0050:0054:trace:font:get_fontsig pix_h 13 charset 238 dpi 96x96 pt 10
004c: get_mapping_info() = 0 { size=0001f000, flags=01800000, shared_file=0000, name_len=84, total=189, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00002e70,map_size=0001f000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=0001a9ee,checksum=0001c27f}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll", exp_name="imm32.dll" }
7935.276:0050:0054:trace:font:insert_face_in_family_list Adding face L"Courier Regular" in family L"Courier" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\couree.fon"
7935.276:0050:0054:trace:font:add_unix_face fsCsb = 00000002 00000000/00000000 00000000 00000000 00000000
7935.276:0048:004c:trace:reg:NtQueryValueKey (0xc,L"Z:\\usr\\lib\\wine\\i386-windows\\imm32",2,0x21fa00,80)
7935.276:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,5,1,0x21f80c,532)
004c: get_key_value( hkey=000c, name=L"Z:\\usr\\lib\\wine\\i386-windows\\imm32" )
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
0054: enum_key_value( hkey=003c, index=5, info_class=1 )
7935.276:0048:004c:trace:reg:NtQueryValueKey (0xc,L"*imm32",2,0x21fa00,80)
0054: enum_key_value() = 0 { type=1, total=110, namelen=38, name=L"D050000L (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,44,00,30,00,35,00,30,00,30,00,30,00,30,00,4c,00,2e,00,6f,00,74,00,66,00,00,00} }
004c: get_key_value( hkey=000c, name=L"*imm32" )
7935.276:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,6,1,0x21f80c,532)
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
0054: enum_key_value( hkey=003c, index=6, info_class=1 )
7935.277:0048:004c:trace:reg:NtQueryValueKey (0xc,L"imm32",2,0x21fa00,80)
0054: enum_key_value() = 0 { type=1, total=120, namelen=44, name=L"DejaVu Sans (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,2e,00,74,00,74,00,66,00,00,00} }
004c: get_key_value( hkey=000c, name=L"imm32" )
7935.277:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,7,1,0x21f80c,532)
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
0054: enum_key_value( hkey=003c, index=7, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=140, namelen=54, name=L"DejaVu Sans Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.277:0048:004c:trace:module:get_load_order got hardcoded default for L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll"
7935.277:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,8,1,0x21f80c,532)
7935.277:0048:004c:trace:module:find_builtin_dll looking for "imm32.dll" for file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll"
0054: enum_key_value( hkey=003c, index=8, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=170, namelen=70, name=L"DejaVu Sans Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
004c: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000000,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll"}, filename="/usr/lib/wine/i386-windows/imm32.dll" )
004c: create_file() = 0 { handle=004c }
7935.277:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,9,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=9, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=158, namelen=64, name=L"DejaVu Sans Condensed (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.278:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,10,1,0x21f80c,532)
004c: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=004c, objattr={} )
004c: create_mapping() = 0 { handle=005c }
0054: enum_key_value( hkey=003c, index=10, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=178, namelen=74, name=L"DejaVu Sans Condensed Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.278:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,11,1,0x21f80c,532)
004c: close_handle( handle=004c )
004c: close_handle() = 0
0054: enum_key_value( hkey=003c, index=11, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=208, namelen=90, name=L"DejaVu Sans Condensed Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,42,00,6f,00,6c,00,64,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
7935.278:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,12,1,0x21f80c,532)
004c: get_mapping_info( handle=005c, access=00000004 )
004c: get_mapping_info() = 0 { size=0001f000, flags=01800000, shared_file=0000, name_len=84, total=189, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00002e70,map_size=0001f000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=0001a9ee,checksum=0001c27f}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll", exp_name="imm32.dll" }
0054: enum_key_value( hkey=003c, index=12, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=190, namelen=80, name=L"DejaVu Sans Condensed Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
7935.279:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,13,1,0x21f80c,532)
004c: get_handle_fd( handle=005c )
004c: *fd* 005c -> 72
004c: get_handle_fd() = 0 { type=1, cacheable=1, access=000f000d, options=00000020 }
0054: enum_key_value( hkey=003c, index=13, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=164, namelen=66, name=L"DejaVu Sans ExtraLight (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,2d,00,45,00,78,00,74,00,72,00,61,00,4c,00,69,00,67,00,68,00,74,00,2e,00,74,00,74,00,66,00,00,00} }
7935.279:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,14,1,0x21f80c,532)
7935.279:0048:004c:trace:module:map_image_into_view mapping PE file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" at 0x7b4f0000-0x7b50f000
0054: enum_key_value( hkey=003c, index=14, info_class=1 )
7935.280:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .text at 0x7b4f1000 off 400 size ea00 virt e8e0 flags 60000060
0054: enum_key_value() = 0 { type=1, total=138, namelen=54, name=L"DejaVu Sans Mono (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,4d,00,6f,00,6e,00,6f,00,2e,00,74,00,74,00,66,00,00,00} }
7935.280:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,15,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=15, info_class=1 )
7935.280:0048:004c:trace:module:map_image_into_view clearing 0x7b4ffa00 - 0x7b500000
0054: enum_key_value() = 0 { type=1, total=158, namelen=64, name=L"DejaVu Sans Mono Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,4d,00,6f,00,6e,00,6f,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.280:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .data at 0x7b500000 off ee00 size 200 virt 13c flags c0000040
7935.280:0048:004c:trace:module:map_image_into_view clearing 0x7b500200 - 0x7b501000
7935.280:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,16,1,0x21f80c,532)
7935.280:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .rdata at 0x7b501000 off f000 size 3800 virt 363c flags 40000040
0054: enum_key_value( hkey=003c, index=16, info_class=1 )
7935.280:0048:004c:trace:module:map_image_into_view clearing 0x7b504800 - 0x7b505000
7935.280:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section /4 at 0x7b505000 off 12800 size 3600 virt 3444 flags 40000040
0054: enum_key_value() = 0 { type=1, total=188, namelen=80, name=L"DejaVu Sans Mono Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,4d,00,6f,00,6e,00,6f,00,2d,00,42,00,6f,00,6c,00,64,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
7935.280:0048:004c:trace:module:map_image_into_view clearing 0x7b508600 - 0x7b509000
7935.280:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .bss at 0x7b509000 off 0 size 0 virt e0 flags c0000080
7935.280:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .edata at 0x7b50a000 off 15e00 size 1200 virt 105e flags 40000040
7935.280:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,17,1,0x21f80c,532)
7935.280:0048:004c:trace:module:map_image_into_view clearing 0x7b50b200 - 0x7b50c000
0054: enum_key_value( hkey=003c, index=17, info_class=1 )
7935.281:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .idata at 0x7b50c000 off 17000 size 1000 virt f10 flags c0000040
7935.281:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .rsrc at 0x7b50d000 off 18000 size 400 virt 3a4 flags c0000040
0054: enum_key_value() = 0 { type=1, total=170, namelen=70, name=L"DejaVu Sans Mono Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,4d,00,6f,00,6e,00,6f,00,2d,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
7935.281:0048:004c:trace:module:map_image_into_view clearing 0x7b50d400 - 0x7b50e000
7935.281:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .reloc at 0x7b50e000 off 18400 size 1000 virt e70 flags 42000040
7935.281:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,18,1,0x21f80c,532)
7935.281:0048:004c:trace:module:map_image_into_view relocating L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" dynamic base 10000000 -> 7b4f0000 mapped at 0x7b4f0000
0054: enum_key_value( hkey=003c, index=18, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=152, namelen=60, name=L"DejaVu Sans Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,61,00,6e,00,73,00,2d,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
004c: map_image_view( mapping=005c, base=7b4f0000, size=0001f000, offset=00000000, entry=00002e70, machine=014c )
004c: map_image_view() = 0
7935.281:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.281:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,19,1,0x21f80c,532)
7935.281:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
0054: enum_key_value( hkey=003c, index=19, info_class=1 )
7935.282:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.282:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.282:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.282:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
0054: enum_key_value() = 0 { type=1, total=124, namelen=46, name=L"DejaVu Serif (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,2e,00,74,00,74,00,66,00,00,00} }
7935.282:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.282:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.282:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.282:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,20,1,0x21f80c,532)
004c: close_handle( handle=005c )
004c: close_handle() = 0
0054: enum_key_value( hkey=003c, index=20, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=144, namelen=56, name=L"DejaVu Serif Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.282:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,21,1,0x21f80c,532)
7935.282:0048:004c:SysRet   NtMapViewOfSection() retval=00000000
0054: enum_key_value( hkey=003c, index=21, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=170, namelen=70, name=L"DejaVu Serif Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.282:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0xb8, return 0027CB98, status 0.
7935.282:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,22,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=22, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=162, namelen=66, name=L"DejaVu Serif Condensed (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.283:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3c, return 00261F58, status 0.
7935.283:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,23,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=23, info_class=1 )
7935.283:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x2c, return 00285858, status 0.
0054: enum_key_value() = 0 { type=1, total=182, namelen=76, name=L"DejaVu Serif Condensed Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.283:0048:004c:trace:ntdll:RtlRbInsertNodeEx tree 7BFD5580, parent 00274A28, right 0, node 0027CC00.
7935.283:0048:004c:trace:resource:LdrFindResource_U module 7B4F0000 type #0018 name #0002 lang 0000 level 3
7935.283:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,24,1,0x21f80c,532)
7935.283:0048:004c:trace:resource:find_entry_by_id root 7B50D000 dir 7B50D000 id 0018 not found
7935.283:0048:004c:trace:module:load_dll looking for L"advapi32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
0054: enum_key_value( hkey=003c, index=24, info_class=1 )
7935.283:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"advapi32.dll" 0062F3C4
7935.283:0048:004c:trace:module:load_dll Found L"C:\\windows\\system32\\advapi32.dll" for L"advapi32.dll" at 7BBA0000, count=-1
7935.283:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
0054: enum_key_value() = 0 { type=1, total=208, namelen=90, name=L"DejaVu Serif Condensed Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.283:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c2a0 00000018 00000004
7935.283:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.283:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.283:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,25,1,0x21f80c,532)
7935.283:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.283:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.283:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
0054: enum_key_value( hkey=003c, index=25, info_class=1 )
7935.284:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.284:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.284:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.284:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.284:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
0054: enum_key_value() = 0 { type=1, total=190, namelen=80, name=L"DejaVu Serif Condensed Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,43,00,6f,00,6e,00,64,00,65,00,6e,00,73,00,65,00,64,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.284:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.284:0048:004c:trace:imports:import_dll --- RegCloseKey advapi32.dll.395 = 7BBA4388
7935.284:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,26,1,0x21f80c,532)
7935.284:0048:004c:trace:imports:import_dll --- RegCreateKeyExW advapi32.dll.402 = 7BBA4468
7935.284:0048:004c:trace:imports:import_dll --- RegDeleteKeyW advapi32.dll.411 = 7BBA4588
7935.284:0048:004c:trace:imports:import_dll --- RegGetValueW advapi32.dll.428 = 7BBA47A8
0054: enum_key_value( hkey=003c, index=26, info_class=1 )
7935.284:0048:004c:trace:imports:import_dll --- RegOpenKeyW advapi32.dll.440 = 7BBA4928
7935.284:0048:004c:trace:imports:import_dll --- RegSetValueExW advapi32.dll.467 = 7BBA4C88
7935.284:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
0054: enum_key_value() = 0 { type=1, total=152, namelen=60, name=L"DejaVu Serif Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,53,00,65,00,72,00,69,00,66,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.284:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.284:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.284:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,27,1,0x21f80c,532)
7935.284:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.284:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.285:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
0054: enum_key_value( hkey=003c, index=27, info_class=1 )
7935.285:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.285:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.285:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.285:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
0054: enum_key_value() = 0 { type=1, total=162, namelen=72, name=L"DejaVuMathTeXGyre-Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,44,00,65,00,6a,00,61,00,56,00,75,00,4d,00,61,00,74,00,68,00,54,00,65,00,58,00,47,00,79,00,72,00,65,00,2e,00,74,00,74,00,66,00,00,00} }
7935.285:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.285:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.285:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.285:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,28,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=28, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=114, namelen=40, name=L"Hack Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,48,00,61,00,63,00,6b,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.285:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 002734F0, status 0.
7935.285:0048:004c:trace:module:load_dll looking for L"gdi32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.285:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"gdi32.dll" 0062F3C4
7935.285:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,29,1,0x21f80c,532)
7935.285:0048:004c:trace:module:load_dll Found L"C:\\windows\\system32\\gdi32.dll" for L"gdi32.dll" at 7B570000, count=-1
7935.285:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
0054: enum_key_value( hkey=003c, index=29, info_class=1 )
7935.285:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c2bc 00000014 00000004
7935.285:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.285:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
0054: enum_key_value() = 0 { type=1, total=140, namelen=54, name=L"Hack Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,48,00,61,00,63,00,6b,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.285:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.285:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.285:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.285:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,30,1,0x21f80c,532)
7935.285:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.285:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.285:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
0054: enum_key_value( hkey=003c, index=30, info_class=1 )
7935.286:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.286:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.286:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
0054: enum_key_value() = 0 { type=1, total=122, namelen=44, name=L"Hack Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,48,00,61,00,63,00,6b,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.286:0048:004c:trace:imports:import_dll --- CreateFontIndirectW gdi32.dll.52 = 7B5722AC
7935.286:0048:004c:trace:imports:import_dll --- DeleteObject gdi32.dll.126 = 7B5725EC
7935.286:0048:004c:trace:imports:import_dll --- GetTextExtentPoint32W gdi32.dll.344 = 7B57410C
7935.286:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,31,1,0x21f80c,532)
7935.286:0048:004c:trace:imports:import_dll --- LPtoDP gdi32.dll.361 = 7B57432C
7935.286:0048:004c:trace:imports:import_dll --- SelectObject gdi32.dll.456 = 7B574F0C
0054: enum_key_value( hkey=003c, index=31, info_class=1 )
7935.286:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.286:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.286:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
0054: enum_key_value() = 0 { type=1, total=126, namelen=46, name=L"Hack Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,48,00,61,00,63,00,6b,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.286:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.286:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,32,1,0x21f80c,532)
7935.286:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.286:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.286:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
0054: enum_key_value( hkey=003c, index=32, info_class=1 )
7935.286:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.286:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.286:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.286:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
0054: enum_key_value() = 0 { type=1, total=152, namelen=52, name=L"Liberation Mono (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,4d,00,6f,00,6e,00,6f,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.286:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.286:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.286:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,33,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=33, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=156, namelen=62, name=L"Liberation Mono Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,4d,00,6f,00,6e,00,6f,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.287:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273520, status 0.
7935.287:0048:004c:trace:module:load_dll looking for L"kernel32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.287:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,34,1,0x21f80c,532)
7935.287:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"kernel32.dll" 0062F3C4
7935.287:0048:004c:trace:module:load_dll Found L"C:\\windows\\system32\\kernel32.dll" for L"kernel32.dll" at 7BEB0000, count=-1
0054: enum_key_value( hkey=003c, index=34, info_class=1 )
7935.287:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
7935.287:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c2d4 00000038 00000004
7935.287:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.287:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
0054: enum_key_value() = 0 { type=1, total=182, namelen=76, name=L"Liberation Mono Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,4d,00,6f,00,6e,00,6f,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.287:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.287:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.287:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.287:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,35,1,0x21f80c,532)
7935.287:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.287:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.287:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
0054: enum_key_value( hkey=003c, index=35, info_class=1 )
7935.287:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.287:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.287:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.287:0048:004c:trace:imports:import_dll --- DelayLoadFailureHook kernel32.dll.185 = 7BEB36B0
7935.287:0048:004c:trace:imports:import_dll --- GetModuleHandleW kernel32.dll.524 = 7BEB5C10
0054: enum_key_value() = 0 { type=1, total=164, namelen=66, name=L"Liberation Mono Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,4d,00,6f,00,6e,00,6f,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.287:0048:004c:trace:imports:import_dll --- GetTickCount kernel32.dll.658 = 7BEB6C90
7935.287:0048:004c:trace:imports:import_dll --- GlobalFlags kernel32.dll.697 = 7BEB7150
7935.287:0048:004c:trace:imports:import_dll --- GlobalLock kernel32.dll.702 = 7BEB71F0
7935.287:0048:004c:trace:imports:import_dll --- GlobalReAlloc kernel32.dll.705 = 7BEB7250
7935.287:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,36,1,0x21f80c,532)
7935.287:0048:004c:trace:imports:import_dll --- GlobalSize kernel32.dll.706 = 7BEB7270
7935.287:0048:004c:trace:imports:import_dll --- GlobalUnlock kernel32.dll.709 = 7BEB72D0
7935.288:0048:004c:trace:imports:import_dll --- HeapAlloc kernel32.dll.715 = 7BF34E6C
0054: enum_key_value( hkey=003c, index=36, info_class=1 )
7935.288:0048:004c:trace:imports:import_dll --- HeapReAlloc kernel32.dll.725 = 7BF38034
7935.288:0048:004c:trace:imports:import_dll --- IsBadStringPtrA kernel32.dll.769 = 7BECC450
7935.288:0048:004c:trace:imports:import_dll --- IsBadStringPtrW kernel32.dll.770 = 7BEB7830
7935.288:0048:004c:trace:imports:import_dll --- RaiseException kernel32.dll.961 = 7BEB8DB0
0054: enum_key_value() = 0 { type=1, total=152, namelen=52, name=L"Liberation Sans (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,61,00,6e,00,73,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.288:0048:004c:trace:imports:import_dll --- ResolveDelayLoadedAPI kernel32.dll.1054 = 7BF3260C
7935.288:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.288:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,37,1,0x21f80c,532)
7935.288:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.288:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
0054: enum_key_value( hkey=003c, index=37, info_class=1 )
7935.288:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.288:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.288:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.288:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
0054: enum_key_value() = 0 { type=1, total=156, namelen=62, name=L"Liberation Sans Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.288:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.288:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.288:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.288:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,38,1,0x21f80c,532)
7935.288:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.288:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.288:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
0054: enum_key_value( hkey=003c, index=38, info_class=1 )
7935.289:0048:004c:trace:module:load_dll looking for L"kernelbase.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.289:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"kernelbase.dll" 0062F3C4
0054: enum_key_value() = 0 { type=1, total=182, namelen=76, name=L"Liberation Sans Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.289:0048:004c:trace:module:load_dll Found L"C:\\windows\\system32\\kernelbase.dll" for L"kernelbase.dll" at 7BBF0000, count=-1
7935.289:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
7935.289:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,39,1,0x21f80c,532)
7935.289:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c310 00000040 00000004
7935.289:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
0054: enum_key_value( hkey=003c, index=39, info_class=1 )
7935.289:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.289:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.289:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.289:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
0054: enum_key_value() = 0 { type=1, total=164, namelen=66, name=L"Liberation Sans Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,61,00,6e,00,73,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.289:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.289:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.289:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.289:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,40,1,0x21f80c,532)
7935.289:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.289:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
0054: enum_key_value( hkey=003c, index=40, info_class=1 )
7935.289:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.289:0048:004c:trace:imports:import_dll --- EnterCriticalSection kernelbase.dll.213 = 7BF35DD0
7935.289:0048:004c:trace:imports:import_dll --- FreeLibrary kernelbase.dll.313 = 7BBF3BEC
0054: enum_key_value() = 0 { type=1, total=156, namelen=54, name=L"Liberation Serif (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,65,00,72,00,69,00,66,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.289:0048:004c:trace:imports:import_dll --- GetFileVersionInfoSizeW kernelbase.dll.438 = 7BBF4AAC
7935.289:0048:004c:trace:imports:import_dll --- GetFileVersionInfoW kernelbase.dll.439 = 7BBF4ACC
7935.289:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,41,1,0x21f80c,532)
7935.289:0048:004c:trace:imports:import_dll --- GetModuleHandleA kernelbase.dll.471 = 7BBF4ECC
7935.289:0048:004c:trace:imports:import_dll --- GetProcAddress kernelbase.dll.502 = 7BBF52AC
0054: enum_key_value( hkey=003c, index=41, info_class=1 )
7935.290:0048:004c:trace:imports:import_dll --- GlobalAlloc kernelbase.dll.621 = 7BBF610C
7935.290:0048:004c:trace:imports:import_dll --- GlobalFree kernelbase.dll.622 = 7BBF612C
7935.290:0048:004c:trace:imports:import_dll --- InitOnceExecuteOnce kernelbase.dll.648 = 7BBF63EC
7935.290:0048:004c:trace:imports:import_dll --- IsDBCSLeadByte kernelbase.dll.701 = 7BBF692C
0054: enum_key_value() = 0 { type=1, total=160, namelen=64, name=L"Liberation Serif Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,65,00,72,00,69,00,66,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.290:0048:004c:trace:imports:import_dll --- LCMapStringW kernelbase.dll.755 = 7BBF6FCC
7935.290:0048:004c:trace:imports:import_dll --- LeaveCriticalSection kernelbase.dll.756 = 7BF37654
7935.290:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,42,1,0x21f80c,532)
7935.290:0048:004c:trace:imports:import_dll --- LoadLibraryW kernelbase.dll.762 = 7BBF706C
7935.290:0048:004c:trace:imports:import_dll --- MultiByteToWideChar kernelbase.dll.793 = 7BBF744C
7935.290:0048:004c:trace:imports:import_dll --- VerQueryValueW kernelbase.dll.1351 = 7BBFB68C
0054: enum_key_value( hkey=003c, index=42, info_class=1 )
7935.290:0048:004c:trace:imports:import_dll --- WideCharToMultiByte kernelbase.dll.1395 = 7BBFBAEC
7935.290:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.290:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.290:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
0054: enum_key_value() = 0 { type=1, total=186, namelen=78, name=L"Liberation Serif Bold Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,65,00,72,00,69,00,66,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.290:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.290:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.290:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,43,1,0x21f80c,532)
7935.290:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.290:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.290:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
0054: enum_key_value( hkey=003c, index=43, info_class=1 )
7935.290:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.290:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.290:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.290:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
0054: enum_key_value() = 0 { type=1, total=168, namelen=68, name=L"Liberation Serif Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,4c,00,69,00,62,00,65,00,72,00,61,00,74,00,69,00,6f,00,6e,00,53,00,65,00,72,00,69,00,66,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,74,00,74,00,66,00,00,00} }
7935.290:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.290:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,44,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=44, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=118, namelen=50, name=L"Luxi Mono Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,6d,00,62,00,2e,00,74,00,74,00,66,00,00,00} }
7935.291:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273550, status 0.
7935.291:0048:004c:trace:module:load_dll looking for L"ntdll.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.291:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,45,1,0x21f80c,532)
7935.291:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F3C4
7935.291:0048:004c:trace:module:load_dll Found L"C:\\windows\\system32\\ntdll.dll" for L"ntdll.dll" at 7BF30000, count=-1
0054: enum_key_value( hkey=003c, index=45, info_class=1 )
7935.291:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
0054: enum_key_value() = 0 { type=1, total=136, namelen=66, name=L"Luxi Mono Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,6d,00,62,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.291:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c354 0000000c 00000004
7935.291:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.291:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,46,1,0x21f80c,532)
7935.291:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.291:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.291:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
0054: enum_key_value( hkey=003c, index=46, info_class=1 )
7935.291:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.291:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.291:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
0054: enum_key_value() = 0 { type=1, total=126, namelen=56, name=L"Luxi Mono Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,6d,00,72,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.291:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.291:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.291:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,47,1,0x21f80c,532)
7935.291:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.291:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
0054: enum_key_value( hkey=003c, index=47, info_class=1 )
7935.291:0048:004c:trace:imports:import_dll --- RtlNtStatusToDosError ntdll.dll.760 = 7BF37974
7935.291:0048:004c:trace:imports:import_dll --- RtlSetLastWin32Error ntdll.dll.862 = 7BF38614
7935.291:0048:004c:trace:imports:import_dll --- _vsnprintf ntdll.dll.1353 = 7BF6E7F0
0054: enum_key_value() = 0 { type=1, total=124, namelen=56, name=L"Luxi Mono Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,6d,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.291:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.291:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.291:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,48,1,0x21f80c,532)
7935.291:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.291:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
0054: enum_key_value( hkey=003c, index=48, info_class=1 )
7935.292:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.292:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.292:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
0054: enum_key_value() = 0 { type=1, total=118, namelen=50, name=L"Luxi Sans Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,73,00,62,00,2e,00,74,00,74,00,66,00,00,00} }
7935.292:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.292:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.292:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.292:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,49,1,0x21f80c,532)
7935.292:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.292:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
0054: enum_key_value( hkey=003c, index=49, info_class=1 )
7935.292:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
0054: enum_key_value() = 0 { type=1, total=136, namelen=66, name=L"Luxi Sans Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,73,00,62,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.292:0048:004c:trace:module:load_dll looking for L"ucrtbase.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.292:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ucrtbase.dll" 0062F3C4
7935.292:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,50,1,0x21f80c,532)
7935.292:0048:004c:trace:module:load_dll Found L"C:\\windows\\system32\\ucrtbase.dll" for L"ucrtbase.dll" at 7B9A0000, count=-1
7935.292:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
0054: enum_key_value( hkey=003c, index=50, info_class=1 )
7935.292:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c364 0000004c 00000004
7935.292:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.292:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
0054: enum_key_value() = 0 { type=1, total=126, namelen=56, name=L"Luxi Sans Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,73,00,72,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.292:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.292:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.292:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.292:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,51,1,0x21f80c,532)
7935.292:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.292:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.293:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
0054: enum_key_value( hkey=003c, index=51, info_class=1 )
7935.293:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.293:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.293:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
0054: enum_key_value() = 0 { type=1, total=124, namelen=56, name=L"Luxi Sans Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,73,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.293:0048:004c:trace:imports:import_dll --- __acrt_iob_func ucrtbase.dll.73 = 7B9A3A2C
7935.293:0048:004c:trace:imports:import_dll --- __stdio_common_vsprintf ucrtbase.dll.157 = 7B9BEC50
7935.293:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,52,1,0x21f80c,532)
7935.293:0048:004c:trace:imports:import_dll --- __stdio_common_vswprintf ucrtbase.dll.161 = 7B9A424C
7935.293:0048:004c:trace:imports:import_dll --- _strdup ucrtbase.dll.1893 = 7B9B134C
0054: enum_key_value( hkey=003c, index=52, info_class=1 )
7935.293:0048:004c:trace:imports:import_dll --- calloc ucrtbase.dll.2154 = 7B9B328C
7935.293:0048:004c:trace:imports:import_dll --- free ucrtbase.dll.2283 = 7B9B428C
7935.293:0048:004c:trace:imports:import_dll --- fwrite ucrtbase.dll.2290 = 7B9B436C
0054: enum_key_value() = 0 { type=1, total=120, namelen=52, name=L"Luxi Serif Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,72,00,62,00,2e,00,74,00,74,00,66,00,00,00} }
7935.293:0048:004c:trace:imports:import_dll --- getenv ucrtbase.dll.2293 = 7B9B43CC
7935.293:0048:004c:trace:imports:import_dll --- malloc ucrtbase.dll.2366 = 7B9B4CAC
7935.293:0048:004c:trace:imports:import_dll --- memcmp ucrtbase.dll.2378 = 7B9B4E2C
7935.293:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,53,1,0x21f80c,532)
7935.293:0048:004c:trace:imports:import_dll --- memcpy ucrtbase.dll.2379 = 7B9B4E4C
7935.293:0048:004c:trace:imports:import_dll --- memmove ucrtbase.dll.2381 = 7B9B4E8C
7935.293:0048:004c:trace:imports:import_dll --- strchr ucrtbase.dll.2448 = 7B9B56EC
0054: enum_key_value( hkey=003c, index=53, info_class=1 )
7935.293:0048:004c:trace:imports:import_dll --- strcmp ucrtbase.dll.2449 = 7B9B570C
7935.293:0048:004c:trace:imports:import_dll --- strcspn ucrtbase.dll.2453 = 7B9B578C
7935.293:0048:004c:trace:imports:import_dll --- strlen ucrtbase.dll.2457 = 7B9B580C
0054: enum_key_value() = 0 { type=1, total=138, namelen=68, name=L"Luxi Serif Bold Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,72,00,62,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.293:0048:004c:trace:imports:import_dll --- wcscpy ucrtbase.dll.2509 = 7B9B5E8C
7935.293:0048:004c:trace:imports:import_dll --- wcslen ucrtbase.dll.2513 = 7B9B5F0C
7935.293:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,54,1,0x21f80c,532)
7935.293:0048:004c:trace:imports:import_dll --- wcsrchr ucrtbase.dll.2521 = 7B9B600C
7935.293:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
0054: enum_key_value( hkey=003c, index=54, info_class=1 )
7935.294:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.294:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.294:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
0054: enum_key_value() = 0 { type=1, total=128, namelen=58, name=L"Luxi Serif Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,72,00,72,00,69,00,2e,00,74,00,74,00,66,00,00,00} }
7935.294:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.294:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.294:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.294:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,55,1,0x21f80c,532)
7935.294:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.294:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.294:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
0054: enum_key_value( hkey=003c, index=55, info_class=1 )
7935.294:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.294:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.294:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
0054: enum_key_value() = 0 { type=1, total=126, namelen=58, name=L"Luxi Serif Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,54,00,54,00,46,00,5c,00,6c,00,75,00,78,00,69,00,72,00,72,00,2e,00,74,00,74,00,66,00,00,00} }
7935.294:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,56,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=56, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=108, namelen=36, name=L"Marlett (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,6d,00,61,00,72,00,6c,00,65,00,74,00,74,00,2e,00,74,00,74,00,66,00,00,00} }
7935.294:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273580, status 0.
7935.294:0048:004c:trace:module:load_dll looking for L"user32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.294:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,57,1,0x21f80c,532)
7935.294:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"user32.dll" 0062F3C4
7935.294:0048:004c:trace:module:load_dll Found L"C:\\windows\\system32\\user32.dll" for L"user32.dll" at 7B610000, count=-1
0054: enum_key_value( hkey=003c, index=57, info_class=1 )
7935.294:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
0054: enum_key_value() = 0 { type=1, total=52, namelen=26, name=L"MS Sans Serif", data={73,00,73,00,65,00,72,00,69,00,66,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.294:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c3b4 000000a0 00000004
7935.294:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.294:0050:0054:trace:reg:NtQueryValueKey (0x3c,L"MS Sans Serif",2,0x21f80c,532)
7935.294:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.294:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.294:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
0054: get_key_value( hkey=003c, name=L"MS Sans Serif" )
7935.295:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.295:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
0054: get_key_value() = 0 { type=1, total=26, data={73,00,73,00,65,00,72,00,69,00,66,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.295:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.295:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.295:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.295:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.295:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.295:0048:004c:trace:imports:import_dll --- ActivateKeyboardLayout user32.dll.0 = 7B61296C
7935.295:0048:004c:trace:imports:import_dll --- BeginPaint user32.dll.16 = 7B612B4C
7935.295:0048:004c:trace:imports:import_dll --- ClientToScreen user32.dll.72 = 7B6132CC
7935.295:0048:004c:trace:imports:import_dll --- CreateWindowExW user32.dll.107 = 7B613728
7935.295:0048:004c:trace:imports:import_dll --- DefWindowProcA user32.dll.150 = 7BF34968
7935.295:0048:004c:trace:imports:import_dll --- DefWindowProcW user32.dll.151 = 7BF34988
7935.295:0048:004c:trace:imports:import_dll --- DestroyWindow user32.dll.161 = 7B613D48
7935.295:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\sserifee.fon" -> ret c000003a
7935.295:0048:004c:trace:imports:import_dll --- DrawTextW user32.dll.199 = 7B614208
7935.295:0048:004c:trace:imports:import_dll --- EndPaint user32.dll.212 = 7B614368
7935.295:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/sserifee.fon"
7935.295:0048:004c:trace:imports:import_dll --- EnumChildWindows user32.dll.214 = 7B6143A8
7935.295:0048:004c:trace:imports:import_dll --- FillRect user32.dll.240 = 7B6146E8
7935.295:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifee.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.295:0048:004c:trace:imports:import_dll --- GetClientRect user32.dll.271 = 7B614AC8
7935.295:0048:004c:trace:imports:import_dll --- GetFocus user32.dll.303 = 7B614EA8
7935.295:0048:004c:trace:imports:import_dll --- GetKeyboardLayout user32.dll.320 = 7B6150C8
7935.295:0048:004c:trace:imports:import_dll --- GetKeyboardState user32.dll.324 = 7B615148
7935.295:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.295:0048:004c:trace:imports:import_dll --- GetMonitorInfoW user32.dll.351 = 7B6154A8
7935.295:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifee.fon" index 0
7935.295:0048:004c:trace:imports:import_dll --- GetWindowLongW user32.dll.418 = 7B615CC8
7935.295:0048:004c:trace:imports:import_dll --- GetWindowRect user32.dll.423 = 7B615D68
7935.295:0048:004c:trace:imports:import_dll --- IntersectRect user32.dll.448 = 7B616048
7935.295:0048:004c:trace:imports:import_dll --- IsWindow user32.dll.477 = 7B6163C8
7935.295:0048:004c:trace:imports:import_dll --- LoadCursorW user32.dll.494 = 7B6165C8
7935.295:0050:0054:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.295:0048:004c:trace:imports:import_dll --- LoadIconW user32.dll.496 = 7B616608
7935.295:0050:0054:warn:font:ft_face_get_full_name full name not found, using L"MS Sans Serif Regular" instead
7935.295:0048:004c:trace:imports:import_dll --- MapWindowPoints user32.dll.524 = 7B616A08
7935.295:0050:0054:trace:font:get_bitmap_size Adding bitmap size h 13 w 5 size 8 x_ppem 11 y_ppem 11
7935.295:0048:004c:trace:imports:import_dll --- MonitorFromPoint user32.dll.539 = 7B616BE8
7935.295:0050:0054:trace:font:get_fontsig pix_h 13 charset 238 dpi 96x96 pt 8
7935.295:0048:004c:trace:imports:import_dll --- MonitorFromWindow user32.dll.541 = 7B616C28
7935.295:0048:004c:trace:imports:import_dll --- PostMessageW user32.dll.568 = 7B616F88
7935.295:0048:004c:trace:imports:import_dll --- RedrawWindow user32.dll.585 = 7B617188
7935.295:0050:0054:trace:font:insert_face_in_family_list Adding face L"MS Sans Serif Regular" in family L"MS Sans Serif" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon"
7935.295:0048:004c:trace:imports:import_dll --- RegisterClassExW user32.dll.588 = 7B6171E8
7935.295:0050:0054:trace:font:add_unix_face fsCsb = 00000002 00000000/00000000 00000000 00000000 00000000
7935.295:0048:004c:trace:imports:import_dll --- RegisterWindowMessageW user32.dll.613 = 7B617488
7935.295:0048:004c:trace:imports:import_dll --- SendMessageA user32.dll.633 = 7B617708
7935.295:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/sserifee.fon, face_index 1, data_ptr (nil), data_size 0, flags 0x2
7935.295:0048:004c:trace:imports:import_dll --- SendMessageW user32.dll.638 = 7B6177A8
7935.295:0048:004c:trace:imports:import_dll --- SetFocus user32.dll.666 = 7B617AC8
7935.295:0048:004c:trace:imports:import_dll --- SetWindowLongW user32.dll.720 = 7B618168
7935.295:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.295:0048:004c:trace:imports:import_dll --- SetWindowPos user32.dll.723 = 7B6181A8
7935.295:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/sserifee.fon" index 1
7935.295:0048:004c:trace:imports:import_dll --- ShowWindow user32.dll.744 = 7B618388
7935.295:0048:004c:trace:imports:import_dll --- ToAscii user32.dll.761 = 7B618568
7935.295:0048:004c:trace:imports:import_dll --- ToUnicodeEx user32.dll.764 = 7B6185C8
7935.295:0048:004c:trace:imports:import_dll --- UnregisterClassW user32.dll.782 = 7B6187E8
7935.295:0048:004c:trace:imports:import_dll --- User32InitializeImmEntryTable user32.dll.793 = 7B618948
7935.295:0048:004c:trace:imports:import_dll --- ValidateRect user32.dll.799 = 7B618A08
7935.295:0050:0054:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.295:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.295:0050:0054:warn:font:ft_face_get_full_name full name not found, using L"MS Sans Serif Regular" instead
7935.295:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.295:0050:0054:trace:font:get_bitmap_size Adding bitmap size h 16 w 7 size 10 x_ppem 13 y_ppem 13
7935.295:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.295:0050:0054:trace:font:get_fontsig pix_h 16 charset 238 dpi 96x96 pt 10
7935.295:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.295:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.295:0050:0054:trace:font:insert_face_in_family_list Adding face L"MS Sans Serif Regular" in family L"MS Sans Serif" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\sserifee.fon"
7935.295:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.295:0050:0054:trace:font:add_unix_face fsCsb = 00000002 00000000/00000000 00000000 00000000 00000000
7935.295:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.295:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.295:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,58,1,0x21f80c,532)
7935.295:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.295:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.295:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.295:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.295:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
0054: enum_key_value( hkey=003c, index=58, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=40, namelen=16, name=L"MS Serif", data={73,00,65,00,72,00,69,00,66,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.297:0050:0054:trace:reg:NtQueryValueKey (0x3c,L"MS Serif",2,0x21f80c,532)
0054: get_key_value( hkey=003c, name=L"MS Serif" )
7935.297:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 002735B0, status 0.
0054: get_key_value() = 0 { type=1, total=24, data={73,00,65,00,72,00,69,00,66,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.297:0048:004c:trace:module:load_dll looking for L"win32u.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.297:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"win32u.dll" 0062F3C4
7935.297:0048:004c:trace:module:load_dll Found L"C:\\windows\\system32\\win32u.dll" for L"win32u.dll" at 7B520000, count=-1
7935.297:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
7935.297:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c458 00000030 00000004
7935.297:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.297:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.297:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.297:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.297:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.297:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.297:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\serifee.fon" -> ret c000003a
7935.297:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.297:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.297:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.297:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.297:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.297:0048:004c:trace:imports:import_dll --- NtUserAssociateInputContext win32u.dll.801 = 7B52742C
7935.297:0048:004c:trace:imports:import_dll --- NtUserBuildHimcList win32u.dll.812 = 7B52758C
7935.297:0048:004c:trace:imports:import_dll --- NtUserCallHwnd win32u.dll.818 = 7B52764C
7935.297:0048:004c:trace:imports:import_dll --- NtUserCallTwoParam win32u.dll.830 = 7B5277CC
7935.297:0048:004c:trace:imports:import_dll --- NtUserCreateInputContext win32u.dll.868 = 7B527C8C
7935.297:0048:004c:trace:imports:import_dll --- NtUserDestroyInputContext win32u.dll.897 = 7B52802C
7935.297:0048:004c:trace:imports:import_dll --- NtUserDisableThreadIme win32u.dll.905 = 7B52812C
7935.297:0048:004c:trace:imports:import_dll --- NtUserMessageCall win32u.dll.1205 = 7B52A6AC
7935.297:0048:004c:trace:imports:import_dll --- NtUserNotifyIMEStatus win32u.dll.1214 = 7B52A7CC
7935.297:0048:004c:trace:imports:import_dll --- NtUserQueryInputContext win32u.dll.1245 = 7B52ABAC
7935.297:0048:004c:trace:imports:import_dll --- NtUserQueryWindow win32u.dll.1247 = 7B52ABEC
7935.297:0048:004c:trace:imports:import_dll --- NtUserUpdateInputContext win32u.dll.1509 = 7B52CCAC
7935.297:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.297:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.297:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.297:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\serifee.fon" -> ret c000000f nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\serifee.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/serifee.fon"
7935.297:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.297:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.297:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/serifee.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.297:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.297:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.297:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,59,1,0x21f80c,532)
7935.297:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.297:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.297:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.297:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
0054: enum_key_value( hkey=003c, index=59, info_class=1 )
7935.299:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.299:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
0054: enum_key_value() = 0 { type=1, total=146, namelen=56, name=L"NimbusMonoPS-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,4d,00,6f,00,6e,00,6f,00,50,00,53,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.299:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,60,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=60, info_class=1 )
7935.299:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 002735E0, status 0.
7935.299:0048:004c:trace:module:build_module loaded L"\\??\\C:\\windows\\system32\\imm32.dll" 0027CB98 7B4F0000
0054: enum_key_value() = 0 { type=1, total=170, namelen=68, name=L"NimbusMonoPS-BoldItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,4d,00,6f,00,6e,00,6f,00,50,00,53,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.299:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,61,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=61, info_class=1 )
7935.300:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x470, return 00289420, status 0.
0054: enum_key_value() = 0 { type=1, total=154, namelen=60, name=L"NimbusMonoPS-Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,4d,00,6f,00,6e,00,6f,00,50,00,53,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.300:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f7bc,0062f7c0,00000004,0062f7b8)
7935.300:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50a028 00000220 00000004
7935.300:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,62,1,0x21f80c,532)
7935.300:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50a000, size 0x1000, mask 0x20.
7935.300:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
0054: enum_key_value( hkey=003c, index=62, info_class=1 )
7935.300:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.300:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.300:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.300:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
0054: enum_key_value() = 0 { type=1, total=158, namelen=62, name=L"NimbusMonoPS-Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,4d,00,6f,00,6e,00,6f,00,50,00,53,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.300:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b50afff c-rW-
7935.300:0048:004c:trace:virtual:dump_view       0x7b50b000 - 0x7b50bfff c-r--
7935.300:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.300:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,63,1,0x21f80c,532)
7935.300:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.300:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
0054: enum_key_value( hkey=003c, index=63, info_class=1 )
7935.301:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062f7bc,0062f7c0,00000002,0062f7b8)
7935.301:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50a000 00001000 00000002
7935.301:0048:004c:trace:virtual:get_vprot_range_size base 0x7b50a000, size 0x1000, mask 0x20.
0054: enum_key_value() = 0 { type=1, total=142, namelen=54, name=L"NimbusRoman-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,52,00,6f,00,6d,00,61,00,6e,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.301:0048:004c:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.301:0048:004c:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.301:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,64,1,0x21f80c,532)
7935.301:0048:004c:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.301:0048:004c:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.301:0048:004c:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
0054: enum_key_value( hkey=003c, index=64, info_class=1 )
7935.301:0048:004c:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.301:0048:004c:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.301:0048:004c:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.301:0048:004c:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
0054: enum_key_value() = 0 { type=1, total=166, namelen=66, name=L"NimbusRoman-BoldItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,52,00,6f,00,6d,00,61,00,6e,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.301:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.301:0048:004c:trace:loaddll:build_module Loaded L"C:\\windows\\system32\\imm32.dll" at 7B4F0000: builtin
7935.301:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,65,1,0x21f80c,532)
7935.301:0048:004c:trace:module:load_dll Loaded module L"\\??\\C:\\windows\\system32\\imm32.dll" at 7B4F0000
7935.301:0048:004c:SysCall  NtClose(00000058)
0054: enum_key_value( hkey=003c, index=65, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=150, namelen=58, name=L"NimbusRoman-Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,52,00,6f,00,6d,00,61,00,6e,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
004c: close_handle( handle=0058 )
7935.301:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,66,1,0x21f80c,532)
004c: close_handle() = 0
7935.301:0048:004c:SysRet   NtClose() retval=00000000
0054: enum_key_value( hkey=003c, index=66, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=154, namelen=60, name=L"NimbusRoman-Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,52,00,6f,00,6d,00,61,00,6e,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.301:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261EF8, return 1, status 0.
7935.301:0048:004c:trace:module:process_attach (L"imm32.dll",00000000) - START
7935.301:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,67,1,0x21f80c,532)
7935.301:0048:004c:Call PE DLL (proc=7B4F2E70,module=7B4F0000 L"imm32.dll",reason=PROCESS_ATTACH,res=00000000)
7935.301:0048:004c:Call KERNEL32.GetModuleHandleW(7b5044c2 L"ntdll.dll") ret=7b4fbc31
0054: enum_key_value( hkey=003c, index=67, info_class=1 )
7935.302:0048:004c:Call kernelbase.GetModuleHandleW(7b5044c2 L"ntdll.dll") ret=7bf3cfb4
7935.302:0048:004c:Call ntdll.RtlInitUnicodeString(0062f70c,7b5044c2 L"ntdll.dll") ret=7bc1b6df
7935.302:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=7b5044c2 ret=7bc1b6df
0054: enum_key_value() = 0 { type=1, total=138, namelen=52, name=L"NimbusSans-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.302:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f70c,0062f708) ret=7bc1b705
7935.302:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F70C, base 0062F708.
7935.302:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,68,1,0x21f80c,532)
7935.302:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F5CC
7935.302:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
0054: enum_key_value( hkey=003c, index=68, info_class=1 )
7935.302:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.302:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.302:0048:004c:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=7b4fbc31
7935.302:0048:004c:Call kernelbase.GetProcAddress(7bf30000,7b504527 "__wine_dbg_header") ret=7b4fbc43
0054: enum_key_value() = 0 { type=1, total=162, namelen=64, name=L"NimbusSans-BoldItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.302:0048:004c:Call ntdll.RtlInitAnsiString(0062f748,7b504527 "__wine_dbg_header") ret=7bc6ef7d
7935.302:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b504527 ret=7bc6ef7d
7935.302:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,69,1,0x21f80c,532)
7935.302:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f748,00000000,0062f744) ret=7bc6ef9b
7935.302:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
0054: enum_key_value( hkey=003c, index=69, info_class=1 )
7935.303:0048:004c:Ret  kernelbase.GetProcAddress() retval=7bf6c890 ret=7b4fbc43
7935.303:0048:004c:trace:imm:DllMain Call KERNEL32.GetModuleHandleW(7b5044c2 L"ntdll.dll") ret=7b4fbcae
0054: enum_key_value() = 0 { type=1, total=146, namelen=56, name=L"NimbusSans-Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.303:0048:004c:Call kernelbase.GetModuleHandleW(7b5044c2 L"ntdll.dll") ret=7bf3cfb4
7935.303:0048:004c:Call ntdll.RtlInitUnicodeString(0062f2ec,7b5044c2 L"ntdll.dll") ret=7bc1b6df
7935.303:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,70,1,0x21f80c,532)
7935.303:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=7b5044c2 ret=7bc1b6df
7935.303:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f2ec,0062f2e8) ret=7bc1b705
0054: enum_key_value( hkey=003c, index=70, info_class=1 )
7935.303:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F2EC, base 0062F2E8.
0054: enum_key_value() = 0 { type=1, total=150, namelen=58, name=L"NimbusSans-Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.303:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F1AC
7935.303:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.303:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.303:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,71,1,0x21f80c,532)
7935.303:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.303:0048:004c:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=7b4fbcae
0054: enum_key_value( hkey=003c, index=71, info_class=1 )
7935.303:0048:004c:Call kernelbase.GetProcAddress(7bf30000,7b5044e8 "__wine_dbg_output") ret=7b4fbcc0
7935.303:0048:004c:Call ntdll.RtlInitAnsiString(0062f328,7b5044e8 "__wine_dbg_output") ret=7bc6ef7d
7935.303:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b5044e8 ret=7bc6ef7d
0054: enum_key_value() = 0 { type=1, total=162, namelen=64, name=L"NimbusSansNarrow-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,4e,00,61,00,72,00,72,00,6f,00,77,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.303:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f328,00000000,0062f324) ret=7bc6ef9b
7935.303:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.303:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,72,1,0x21f80c,532)
7935.303:0048:004c:Ret  kernelbase.GetProcAddress() retval=7bf6ca40 ret=7b4fbcc0
instance 7B4F0000, reason 1, reserved 00000000
7935.304:0048:004c:Call user32.User32InitializeImmEntryTable(19650412) ret=7b4f2d5f
0054: enum_key_value( hkey=003c, index=72, info_class=1 )
7935.304:0048:004c:Call kernelbase.GetModuleHandleW(7b6b2d42 L"imm32.dll") ret=7b661684
7935.304:0048:004c:Call ntdll.RtlInitUnicodeString(0062f71c,7b6b2d42 L"imm32.dll") ret=7bc1b6df
7935.304:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=7b6b2d42 ret=7bc1b6df
7935.304:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f71c,0062f718) ret=7bc1b705
0054: enum_key_value() = 0 { type=1, total=186, namelen=78, name=L"NimbusSansNarrow-BoldOblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,4e,00,61,00,72,00,72,00,6f,00,77,00,2d,00,42,00,64,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.304:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F71C, base 0062F718.
7935.304:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"imm32.dll" 0062F5DC
7935.304:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,73,1,0x21f80c,532)
7935.304:0048:004c:trace:module:LdrGetDllHandleEx L"imm32.dll" -> 7B4F0000 (load path (null))
7935.304:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
0054: enum_key_value( hkey=003c, index=73, info_class=1 )
7935.304:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7b4f0000 ret=7b661684
7935.304:0048:004c:Call kernelbase.GetModuleHandleW(7b6c20fa L"ntdll.dll") ret=7b66bef1
7935.304:0048:004c:Call ntdll.RtlInitUnicodeString(0062f6dc,7b6c20fa L"ntdll.dll") ret=7bc1b6df
7935.304:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=7b6c20fa ret=7bc1b6df
0054: enum_key_value() = 0 { type=1, total=174, namelen=70, name=L"NimbusSansNarrow-Oblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,4e,00,61,00,72,00,72,00,6f,00,77,00,2d,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.304:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f6dc,0062f6d8) ret=7bc1b705
7935.304:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F6DC, base 0062F6D8.
7935.304:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,74,1,0x21f80c,532)
7935.304:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F59C
7935.304:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
0054: enum_key_value( hkey=003c, index=74, info_class=1 )
7935.304:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.304:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7b66bef1
7935.304:0048:004c:Call kernelbase.GetProcAddress(7bf30000,7b6c215f "__wine_dbg_header") ret=7b66bf03
7935.304:0048:004c:Call ntdll.RtlInitAnsiString(0062f6f8,7b6c215f "__wine_dbg_header") ret=7bc6ef7d
0054: enum_key_value() = 0 { type=1, total=174, namelen=70, name=L"NimbusSansNarrow-Regular (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,4e,00,69,00,6d,00,62,00,75,00,73,00,53,00,61,00,6e,00,73,00,4e,00,61,00,72,00,72,00,6f,00,77,00,2d,00,52,00,65,00,67,00,75,00,6c,00,61,00,72,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.304:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b6c215f ret=7bc6ef7d
7935.304:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f6f8,00000000,0062f6f4) ret=7bc6ef9b
7935.304:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,75,1,0x21f80c,532)
7935.304:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.304:0048:004c:Ret  kernelbase.GetProcAddress() retval=7bf6c890 ret=7b66bf03
0054: enum_key_value( hkey=003c, index=75, info_class=1 )
7935.305:0048:004c:trace:win:User32InitializeImmEntryTable Call kernelbase.GetModuleHandleW(7b6c20fa L"ntdll.dll") ret=7b66bf6e
7935.305:0048:004c:Call ntdll.RtlInitUnicodeString(0062f2bc,7b6c20fa L"ntdll.dll") ret=7bc1b6df
7935.305:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=7b6c20fa ret=7bc1b6df
0054: enum_key_value() = 0 { type=1, total=114, namelen=40, name=L"P052-Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,50,00,30,00,35,00,32,00,2d,00,42,00,6f,00,6c,00,64,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.305:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f2bc,0062f2b8) ret=7bc1b705
7935.305:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F2BC, base 0062F2B8.
7935.305:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,76,1,0x21f80c,532)
7935.305:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F17C
7935.305:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
0054: enum_key_value( hkey=003c, index=76, info_class=1 )
7935.305:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.305:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7b66bf6e
7935.305:0048:004c:Call kernelbase.GetProcAddress(7bf30000,7b6c2120 "__wine_dbg_output") ret=7b66bf80
0054: enum_key_value() = 0 { type=1, total=138, namelen=52, name=L"P052-BoldItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,50,00,30,00,35,00,32,00,2d,00,42,00,6f,00,6c,00,64,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.305:0048:004c:Call ntdll.RtlInitAnsiString(0062f2d8,7b6c2120 "__wine_dbg_output") ret=7bc6ef7d
7935.305:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,77,1,0x21f80c,532)
7935.305:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b6c2120 ret=7bc6ef7d
7935.305:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f2d8,00000000,0062f2d4) ret=7bc6ef9b
0054: enum_key_value( hkey=003c, index=77, info_class=1 )
7935.305:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.305:0048:004c:Ret  kernelbase.GetProcAddress() retval=7bf6ca40 ret=7b66bf80
(19650412)
7935.305:0048:004c:Call kernelbase.GetProcAddress(7b4f0000,7b6b2d5d "__wine_ime_wnd_proc") ret=7b661709
0054: enum_key_value() = 0 { type=1, total=122, namelen=44, name=L"P052-Italic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,50,00,30,00,35,00,32,00,2d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.305:0048:004c:Call ntdll.RtlInitAnsiString(0062f738,7b6b2d5d "__wine_ime_wnd_proc") ret=7bc6ef7d
7935.305:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b6b2d5d ret=7bc6ef7d
7935.305:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,78,1,0x21f80c,532)
7935.305:0048:004c:Call ntdll.LdrGetProcedureAddress(7b4f0000,0062f738,00000000,0062f734) ret=7bc6ef9b
7935.305:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
0054: enum_key_value( hkey=003c, index=78, info_class=1 )
7935.305:0048:004c:Ret  kernelbase.GetProcAddress() retval=7b4f2648 ret=7b661709
7935.305:0048:004c:Ret  user32.User32InitializeImmEntryTable() retval=00000001 ret=7b4f2d5f
7935.305:0048:004c:Ret  PE DLL (proc=7B4F2E70,module=7B4F0000 L"imm32.dll",reason=PROCESS_ATTACH,res=00000000) retval=1
0054: enum_key_value() = 0 { type=1, total=118, namelen=42, name=L"P052-Roman (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,50,00,30,00,35,00,32,00,2d,00,52,00,6f,00,6d,00,61,00,6e,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.305:0048:004c:trace:module:process_attach (L"imm32.dll",00000000) - END
7935.305:0048:004c:Ret  ntdll.LdrLoadDll() retval=00000000 ret=7bc7281b
7935.305:0048:004c:Call ntdll.RtlReleasePath(002881f0) ret=7bc72830
7935.305:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,79,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=79, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=46, namelen=22, name=L"Small Fonts", data={73,00,6d,00,61,00,6c,00,6c,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.306:0050:0054:trace:reg:NtQueryValueKey (0x3c,L"Small Fonts",2,0x21f80c,532)
7935.306:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002881F0, return 1, status 0.
7935.306:0048:004c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc72830
7935.306:0048:004c:Ret  kernelbase.LoadLibraryW() retval=7b4f0000 ret=7b62effd
0054: get_key_value( hkey=003c, name=L"Small Fonts" )
7935.306:0048:004c:Ret  PE DLL (proc=7B62F0C0,module=7B610000 L"user32.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.306:0048:004c:trace:module:process_attach (L"user32.dll",0062FD24) - END
0054: get_key_value() = 0 { type=1, total=24, data={73,00,6d,00,61,00,6c,00,6c,00,65,00,65,00,2e,00,66,00,6f,00,6e,00,00,00} }
7935.306:0048:004c:Call PE DLL (proc=7B5832B0,module=7B570000 L"gdi32.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.306:0048:004c:Call KERNEL32.DisableThreadLibraryCalls(7b570000) ret=7b583294
7935.306:0048:004c:Call kernelbase.DisableThreadLibraryCalls(7b570000) ret=7bf3cfb4
7935.306:0048:004c:Call ntdll.LdrDisableThreadCalloutsForDll(7b570000) ret=7bc07df3
7935.306:0048:004c:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7935.306:0048:004c:Ret  kernelbase.DisableThreadLibraryCalls() retval=00000001 ret=7bf3cfb4
7935.306:0048:004c:Ret  KERNEL32.DisableThreadLibraryCalls() retval=00000001 ret=7b583294
7935.306:0048:004c:Ret  PE DLL (proc=7B5832B0,module=7B570000 L"gdi32.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.306:0048:004c:trace:module:process_attach (L"gdi32.dll",0062FD24) - END
7935.306:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\fonts\\smallee.fon" -> ret c000003a
7935.306:0048:004c:trace:module:process_attach (L"rpcrt4.dll",0062FD24) - START
7935.306:0048:004c:trace:module:process_attach (L"cryptbase.dll",0062FD24) - START
7935.306:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallee.fon" -> ret 0 nt L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallee.fon" unix "/home/lessy/.wine/dosdevices/z:/usr/share/wine/fonts/smallee.fon"
7935.306:0048:004c:Call PE DLL (proc=7B8A18C0,module=7B8A0000 L"cryptbase.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.306:0048:004c:Call KERNEL32.DisableThreadLibraryCalls(7b8a0000) ret=7b8a18b4
7935.306:0050:0054:trace:font:unix_face_create unix_name /usr/share/wine/fonts/smallee.fon, face_index 0, data_ptr (nil), data_size 0, flags 0x2
7935.306:0048:004c:Call kernelbase.DisableThreadLibraryCalls(7b8a0000) ret=7bf3cfb4
7935.306:0048:004c:Call ntdll.LdrDisableThreadCalloutsForDll(7b8a0000) ret=7bc07df3
7935.306:0048:004c:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7935.306:0050:0054:warn:font:opentype_get_ttc_sfnt_v1 unsupported font format 10d5a4d
7935.306:0048:004c:Ret  kernelbase.DisableThreadLibraryCalls() retval=00000001 ret=7bf3cfb4
7935.306:0050:0054:trace:font:new_ft_face Loading font file "/usr/share/wine/fonts/smallee.fon" index 0
7935.306:0048:004c:Ret  KERNEL32.DisableThreadLibraryCalls() retval=00000001 ret=7b8a18b4
7935.306:0048:004c:Ret  PE DLL (proc=7B8A18C0,module=7B8A0000 L"cryptbase.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.306:0048:004c:trace:module:process_attach (L"cryptbase.dll",0062FD24) - END
7935.306:0048:004c:Call PE DLL (proc=7B8D3B00,module=7B8C0000 L"rpcrt4.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.306:0048:004c:Ret  PE DLL (proc=7B8D3B00,module=7B8C0000 L"rpcrt4.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.306:0048:004c:trace:module:process_attach (L"rpcrt4.dll",0062FD24) - END
7935.306:0050:0054:warn:font:unix_face_create unable to parse font, falling back to FreeType
7935.306:0048:004c:SysCall  NtFreeVirtualMemory(ffffffff,0062fca4,0062fcac,00008000)
7935.306:0050:0054:warn:font:ft_face_get_full_name full name not found, using L"Small Fonts Regular" instead
7935.306:0048:004c:trace:virtual:NtFreeVirtualMemory 0xffffffff 0x1 00000000 8000
7935.306:0050:0054:trace:font:get_bitmap_size Adding bitmap size h 11 w 5 size 7 x_ppem 9 y_ppem 9
7935.306:0048:004c:trace:virtual:remove_reserved_area removing 0x20000000-0x68000000
7935.306:0050:0054:trace:font:get_fontsig pix_h 11 charset 238 dpi 96x96 pt 7
7935.306:0048:004c:SysRet   NtFreeVirtualMemory() retval=00000000
7935.306:0050:0054:trace:font:insert_face_in_family_list Adding face L"Small Fonts Regular" in family L"Small Fonts" from L"\\??\\Z:\\usr\\share\\wine\\fonts\\smallee.fon"
7935.306:0048:004c:SysCall  NtQueryInformationProcess(ffffffff,00000007,0062fc80,00000004,00000000)
7935.306:0050:0054:trace:font:add_unix_face fsCsb = 00000002 00000000/00000000 00000000 00000000 00000000
7935.306:0048:004c:trace:process:NtQueryInformationProcess (0xffffffff,0x00000007,0x62fc80,0x00000004,(nil))
7935.306:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,80,1,0x21f80c,532)
0054: enum_key_value( hkey=003c, index=80, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=150, namelen=60, name=L"Standard Symbols PS (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,53,00,74,00,61,00,6e,00,64,00,61,00,72,00,64,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,73,00,50,00,53,00,2e,00,6f,00,74,00,66,00,00,00} }
004c: get_process_debug_info( handle=ffffffff )
004c: get_process_debug_info() = PORT_NOT_SET { debug=0000, debug_children=1, image={} }
7935.308:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,81,1,0x21f80c,532)
7935.308:0048:004c:SysRet   NtQueryInformationProcess() retval=00000000
7935.308:0048:004c:Starting thread proc 00411E70 (arg=7FFD1000)
7935.308:0048:004c:SysCall  NtContinue(0062fd24,00000001)
0054: enum_key_value( hkey=003c, index=81, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=104, namelen=34, name=L"Symbol (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,73,00,79,00,6d,00,62,00,6f,00,6c,00,2e,00,74,00,74,00,66,00,00,00} }
004c: select( flags=3, cookie=0021ee04, timeout=0, size=0, prev_apc=0000, result={}, data={}, contexts={} )
7935.308:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,82,1,0x21f80c,532)
004c: select() = TIMEOUT { apc_handle=0000, signaled=1, call={}, contexts={} }
7935.308:0048:004c:SysRet   NtContinue() retval=00000000
7935.308:0048:004c:Call KERNEL32.BaseThreadInitThunk(00000000,00411e70,7ffd1000) ret=7bf3e1f7
7935.308:0048:004c:Call ucrtbase._configure_wide_argv(00000001) ret=00411e85
7935.308:0048:004c:warn:msvcrt:_configure_wide_argv (1) stub
7935.308:0048:004c:Ret  ucrtbase._configure_wide_argv() retval=00000000 ret=00411e85
7935.308:0048:004c:Call ucrtbase._initialize_wide_environment() ret=00411e8a
7935.308:0048:004c:trace:msvcrt:_initialize_wide_environment 
7935.308:0048:004c:Call KERNEL32.GetEnvironmentStringsW() ret=7b9ef0e6
7935.308:0048:004c:Call kernelbase.GetEnvironmentStringsW() ret=7bf3cfb4
7935.308:0048:004c:Call ntdll.RtlAcquirePebLock() ret=7bc159b1
7935.308:0048:004c:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc159b1
7935.308:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,000019aa) ret=7bc15a01
7935.308:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x19aa, return 002898A8, status 0.
7935.308:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=002898a8 ret=7bc15a01
7935.308:0048:004c:Call ntdll.memcpy(002898a8,002417b8,000019aa) ret=7bc15a23
7935.308:0048:004c:Ret  ntdll.memcpy() retval=002898a8 ret=7bc15a23
7935.308:0048:004c:Call ntdll.RtlReleasePebLock() ret=7bc15a29
7935.308:0048:004c:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc15a29
7935.308:0048:004c:Ret  kernelbase.GetEnvironmentStringsW() retval=002898a8 ret=7bf3cfb4
7935.308:0048:004c:Ret  KERNEL32.GetEnvironmentStringsW() retval=002898a8 ret=7b9ef0e6
7935.308:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00001a72) ret=7b9fec26
0054: enum_key_value( hkey=003c, index=82, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=104, namelen=34, name=L"Tahoma (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,74,00,61,00,68,00,6f,00,6d,00,61,00,2e,00,74,00,74,00,66,00,00,00} }
7935.310:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x1a72, return 0028B270, status 0.
7935.310:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=0028b270 ret=7b9fec26
7935.310:0048:004c:Call KERNEL32.FreeEnvironmentStringsW(002898a8) ret=7b9ef1c5
7935.310:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,83,1,0x21f80c,532)
7935.310:0048:004c:Call kernelbase.FreeEnvironmentStringsW(002898a8) ret=7bf3cfb4
7935.310:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,002898a8) ret=7bc106ac
0054: enum_key_value( hkey=003c, index=83, info_class=1 )
0054: enum_key_value() = 0 { type=1, total=118, namelen=44, name=L"Tahoma Bold (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,74,00,61,00,68,00,6f,00,6d,00,61,00,62,00,64,00,2e,00,74,00,74,00,66,00,00,00} }
7935.310:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,84,1,0x21f80c,532)
7935.310:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002898A8, return 1, status 0.
7935.310:0048:004c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc106ac
0054: enum_key_value( hkey=003c, index=84, info_class=1 )
7935.310:0048:004c:Ret  kernelbase.FreeEnvironmentStringsW() retval=00000001 ret=7bf3cfb4
7935.310:0048:004c:Ret  KERNEL32.FreeEnvironmentStringsW() retval=00000001 ret=7b9ef1c5
7935.310:0048:004c:Ret  ucrtbase._initialize_wide_environment() retval=00000000 ret=00411e8a
0054: enum_key_value() = 0 { type=1, total=138, namelen=52, name=L"URWBookman-Demi (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,42,00,6f,00,6f,00,6b,00,6d,00,61,00,6e,00,2d,00,44,00,65,00,6d,00,69,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.310:0048:004c:Call ucrtbase.__p___argc() ret=00411e8f
7935.310:0048:004c:Ret  ucrtbase.__p___argc() retval=7ba6d06c ret=00411e8f
7935.310:0048:004c:Call ucrtbase.__p___wargv() ret=00411e96
7935.310:0048:004c:Ret  ucrtbase.__p___wargv() retval=7ba6d034 ret=00411e96
7935.310:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,85,1,0x21f80c,532)
7935.310:0048:004c:Call ucrtbase._get_initial_wide_environment() ret=00411e9d
7935.310:0048:004c:trace:msvcrt:_get_initial_wide_environment 
7935.310:0048:004c:trace:msvcrt:_initialize_wide_environment 
0054: enum_key_value( hkey=003c, index=85, info_class=1 )
7935.311:0048:004c:Ret  ucrtbase._get_initial_wide_environment() retval=0028b270 ret=00411e9d
7935.311:0048:004c:Call ucrtbase._set_app_type(00000002) ret=00411ec5
7935.311:0048:004c:trace:msvcrt:__set_app_type (2) Gui application
7935.311:0048:004c:Ret  ucrtbase._set_app_type() retval=00000043 ret=00411ec5
0054: enum_key_value() = 0 { type=1, total=162, namelen=64, name=L"URWBookman-DemiItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,42,00,6f,00,6f,00,6b,00,6d,00,61,00,6e,00,2d,00,44,00,65,00,6d,00,69,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.311:0048:004c:Call KERNEL32.GetCommandLineW() ret=00411d7f
7935.311:0048:004c:Call kernelbase.GetCommandLineW() ret=7bf3cfb4
7935.311:0048:004c:Ret  kernelbase.GetCommandLineW() retval=0024366e ret=7bf3cfb4
7935.311:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,86,1,0x21f80c,532)
7935.311:0048:004c:Ret  KERNEL32.GetCommandLineW() retval=0024366e ret=00411d7f
7935.311:0048:004c:Call KERNEL32.GetStartupInfoW(0062fea8) ret=00411dff
0054: enum_key_value( hkey=003c, index=86, info_class=1 )
7935.311:0048:004c:Call kernelbase.GetStartupInfoW(0062fea8) ret=7bf3cfb4
7935.311:0048:004c:Call ntdll.RtlAcquirePebLock() ret=7bc1e9ef
7935.311:0048:004c:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc1e9ef
7935.311:0048:004c:Call ntdll.RtlGetCurrentPeb() ret=7bc1e9f5
0054: enum_key_value() = 0 { type=1, total=142, namelen=54, name=L"URWBookman-Light (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,42,00,6f,00,6f,00,6b,00,6d,00,61,00,6e,00,2d,00,4c,00,69,00,67,00,68,00,74,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.311:0048:004c:Ret  ntdll.RtlGetCurrentPeb() retval=7ffd1000 ret=7bc1e9f5
7935.311:0048:004c:Call ntdll.RtlReleasePebLock() ret=7bc1ea81
7935.311:0048:004c:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc1ea81
7935.311:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,87,1,0x21f80c,532)
7935.311:0048:004c:Ret  kernelbase.GetStartupInfoW() retval=00000000 ret=7bf3cfb4
7935.311:0048:004c:Ret  KERNEL32.GetStartupInfoW() retval=00000000 ret=00411dff
7935.311:0048:004c:Call KERNEL32.GetModuleHandleW(00000000) ret=00411e19
0054: enum_key_value( hkey=003c, index=87, info_class=1 )
7935.311:0048:004c:Call kernelbase.GetModuleHandleW(00000000) ret=7bf3cfb4
7935.311:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=00400000 ret=7bf3cfb4
7935.311:0048:004c:Ret  KERNEL32.GetModuleHandleW() retval=00400000 ret=00411e19
0054: enum_key_value() = 0 { type=1, total=166, namelen=66, name=L"URWBookman-LightItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,42,00,6f,00,6f,00,6b,00,6d,00,61,00,6e,00,2d,00,4c,00,69,00,67,00,68,00,74,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.311:0048:004c:Call ucrtbase.wcslen(00415b98 L"/n") ret=0040d392
7935.311:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,88,1,0x21f80c,532)
7935.311:0048:004c:Ret  ucrtbase.wcslen() retval=00000002 ret=0040d392
7935.311:0048:004c:Call ucrtbase.wcslen(00415b90 L"/e,") ret=0040d3a1
7935.312:0048:004c:Ret  ucrtbase.wcslen() retval=00000003 ret=0040d3a1
0054: enum_key_value( hkey=003c, index=88, info_class=1 )
7935.312:0048:004c:Call ucrtbase.wcslen(00415b84 L"/cd,") ret=0040d3b0
7935.312:0048:004c:Ret  ucrtbase.wcslen() retval=00000004 ret=0040d3b0
7935.312:0048:004c:Call ucrtbase.wcslen(00415b74 L"/root,") ret=0040d3bf
7935.312:0048:004c:Ret  ucrtbase.wcslen() retval=00000006 ret=0040d3bf
0054: enum_key_value() = 0 { type=1, total=134, namelen=50, name=L"URWGothic-Book (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,47,00,6f,00,74,00,68,00,69,00,63,00,2d,00,42,00,6f,00,6f,00,6b,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.312:0048:004c:Call ucrtbase.wcslen(00415b60 L"/select,") ret=0040d3ce
7935.312:0048:004c:Ret  ucrtbase.wcslen() retval=00000008 ret=0040d3ce
7935.312:0048:004c:Call ucrtbase.wcslen(00415b4c L"/desktop") ret=0040d3dd
7935.312:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,89,1,0x21f80c,532)
7935.312:0048:004c:Ret  ucrtbase.wcslen() retval=00000008 ret=0040d3dd
7935.312:0048:004c:Call ucrtbase.wcslen(00415b38 L"\"/desktop") ret=0040d3ee
0054: enum_key_value( hkey=003c, index=89, info_class=1 )
7935.312:0048:004c:Ret  ucrtbase.wcslen() retval=00000009 ret=0040d3ee
7935.312:0048:004c:Call ucrtbase.iswspace(0000002f) ret=0040d480
7935.312:0048:004c:Ret  ucrtbase.iswspace() retval=00000000 ret=0040d480
7935.312:0048:004c:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b98 L"/n",00000002) ret=0040d49b
0054: enum_key_value() = 0 { type=1, total=162, namelen=64, name=L"URWGothic-BookOblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,47,00,6f,00,74,00,68,00,69,00,63,00,2d,00,42,00,6f,00,6f,00,6b,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.312:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.312:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.312:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.312:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,90,1,0x21f80c,532)
7935.312:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.312:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value( hkey=003c, index=90, info_class=1 )
7935.312:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.312:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.312:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: enum_key_value() = 0 { type=1, total=134, namelen=50, name=L"URWGothic-Demi (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,47,00,6f,00,74,00,68,00,69,00,63,00,2d,00,44,00,65,00,6d,00,69,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.312:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.312:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.312:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.312:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,91,1,0x21f80c,532)
7935.312:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.312:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value( hkey=003c, index=91, info_class=1 )
7935.313:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.313:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.313:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: enum_key_value() = 0 { type=1, total=162, namelen=64, name=L"URWGothic-DemiOblique (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,55,00,52,00,57,00,47,00,6f,00,74,00,68,00,69,00,63,00,2d,00,44,00,65,00,6d,00,69,00,4f,00,62,00,6c,00,69,00,71,00,75,00,65,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.313:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.313:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.313:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.313:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,92,1,0x21f80c,532)
7935.313:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.313:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value( hkey=003c, index=92, info_class=1 )
7935.313:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.313:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.313:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: enum_key_value() = 0 { type=1, total=112, namelen=38, name=L"Webdings (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,77,00,65,00,62,00,64,00,69,00,6e,00,67,00,73,00,2e,00,74,00,74,00,66,00,00,00} }
7935.313:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.313:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.313:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.313:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,93,1,0x21f80c,532)
7935.313:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.313:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value( hkey=003c, index=93, info_class=1 )
7935.313:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.313:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.313:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: enum_key_value() = 0 { type=1, total=114, namelen=40, name=L"Wingdings (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,77,00,69,00,6e,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,77,00,69,00,6e,00,67,00,64,00,69,00,6e,00,67,00,2e,00,74,00,74,00,66,00,00,00} }
7935.313:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.313:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.313:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.313:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,94,1,0x21f80c,532)
7935.313:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.313:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value( hkey=003c, index=94, info_class=1 )
7935.314:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.314:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.314:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.314:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value() = 0 { type=1, total=146, namelen=56, name=L"Z003-MediumItalic (TrueType)", data={5a,00,3a,00,5c,00,75,00,73,00,72,00,5c,00,73,00,68,00,61,00,72,00,65,00,5c,00,66,00,6f,00,6e,00,74,00,73,00,5c,00,4f,00,54,00,46,00,5c,00,5a,00,30,00,30,00,33,00,2d,00,4d,00,65,00,64,00,69,00,75,00,6d,00,49,00,74,00,61,00,6c,00,69,00,63,00,2e,00,6f,00,74,00,66,00,00,00} }
7935.314:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.314:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.314:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.314:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,95,1,0x21f80c,532)
7935.314:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00283ea0) ret=7b9f6857
7935.314:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00283ea0) ret=7bf3cfb4
0054: enum_key_value( hkey=003c, index=95, info_class=1 )
0054: enum_key_value() = NO_MORE_ENTRIES { type=0, total=0, namelen=0, name=L"", data={} }
0054: close_handle( handle=003c )
0054: close_handle() = 0
7935.314:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00283EA0, return 1, status 0.
7935.314:0048:004c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bf3cfb4
7935.314:0048:004c:Ret  KERNEL32.HeapFree() retval=00000001 ret=7b9f6857
0054: enum_key( hkey=0038, index=0, info_class=1 )
7935.314:0048:004c:trace:msvcrt:_lock (19)
0054: enum_key() = NO_MORE_ENTRIES { subkeys=0, max_subkey=0, max_class=0, values=0, max_value=0, max_data=0, modif=0, total=0, namelen=0, name=L"", class=L"" }
7935.314:0048:004c:Call ntdll.RtlEnterCriticalSection(7ba6e358) ret=7b9cdd3a
7935.314:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7935.314:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\FontSubstitutes",2000000,0x21f79c)
7935.314:0048:004c:trace:msvcrt:_unlock (19)
7935.314:0048:004c:Call ntdll.RtlLeaveCriticalSection(7ba6e358) ret=7b9dd35c
7935.314:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\FontSubstitutes" )
7935.315:0048:004c:trace:msvcrt:_lock (25)
0054: open_key() = 0 { hkey=003c }
7935.315:0048:004c:Call ntdll.RtlEnterCriticalSection(7ba6e400) ret=7b9cdd3a
7935.315:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7935.315:0048:004c:trace:msvcrt:_unlock (25)
7935.315:0050:0054:trace:reg:NtOpenKeyEx <- 0x3c
7935.315:0048:004c:Call ntdll.RtlLeaveCriticalSection(7ba6e400) ret=7b9dd35c
7935.315:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,0,1,0x21f820,512)
7935.315:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
7935.315:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value( hkey=003c, index=0, info_class=1 )
7935.315:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.315:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: enum_key_value() = 0 { type=1, total=40, namelen=20, name=L"Arial CE,0", data={41,00,72,00,69,00,61,00,6c,00,2c,00,32,00,33,00,38,00,00,00} }
7935.315:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.315:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.315:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.315:0050:0054:trace:font:load_gdi_font_subst Got L"Arial CE,0"=L"Arial,238"
7935.315:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.315:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,1,1,0x21f820,512)
7935.315:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.315:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value( hkey=003c, index=1, info_class=1 )
7935.315:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.315:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: enum_key_value() = 0 { type=1, total=64, namelen=32, name=L"Courier New CE,0", data={43,00,6f,00,75,00,72,00,69,00,65,00,72,00,20,00,4e,00,65,00,77,00,2c,00,32,00,33,00,38,00,00,00} }
7935.315:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.315:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.315:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.315:0050:0054:trace:font:load_gdi_font_subst Got L"Courier New CE,0"=L"Courier New,238"
7935.315:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.315:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,2,1,0x21f820,512)
7935.315:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: enum_key_value( hkey=003c, index=2, info_class=1 )
7935.316:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.316:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: enum_key_value() = 0 { type=1, total=50, namelen=18, name=L"Courier,0", data={43,00,6f,00,75,00,72,00,69,00,65,00,72,00,20,00,4e,00,65,00,77,00,2c,00,32,00,33,00,38,00,00,00} }
7935.316:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.316:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.316:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.316:0050:0054:trace:font:load_gdi_font_subst Got L"Courier,0"=L"Courier New,238"
7935.316:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.316:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,3,1,0x21f820,512)
7935.316:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.316:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: enum_key_value( hkey=003c, index=3, info_class=1 )
7935.316:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.316:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: enum_key_value() = 0 { type=1, total=46, namelen=20, name=L"Fixedsys,0", data={46,00,69,00,78,00,65,00,64,00,73,00,79,00,73,00,2c,00,32,00,33,00,38,00,00,00} }
7935.316:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.316:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.316:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.316:0050:0054:trace:font:load_gdi_font_subst Got L"Fixedsys,0"=L"Fixedsys,238"
7935.316:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.316:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,4,1,0x21f820,512)
7935.316:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.316:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: enum_key_value( hkey=003c, index=4, info_class=1 )
7935.316:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.316:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: enum_key_value() = 0 { type=1, total=48, namelen=12, name=L"Helv,0", data={4d,00,53,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,2c,00,32,00,33,00,38,00,00,00} }
7935.316:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.316:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.316:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.316:0050:0054:trace:font:load_gdi_font_subst Got L"Helv,0"=L"MS Sans Serif,238"
7935.316:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.316:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,5,1,0x21f820,512)
7935.316:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: enum_key_value( hkey=003c, index=5, info_class=1 )
7935.317:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.317:0048:004c:Ret  ucrtbase._wcsnicmp() retval=fffffff6 ret=0040d49b
0054: enum_key_value() = 0 { type=1, total=66, namelen=30, name=L"MS Sans Serif,0", data={4d,00,53,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,2c,00,32,00,33,00,38,00,00,00} }
7935.317:0048:004c:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b90 L"/e,",00000003) ret=0040de47
7935.317:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.317:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.317:0050:0054:trace:font:load_gdi_font_subst Got L"MS Sans Serif,0"=L"MS Sans Serif,238"
7935.317:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.317:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,6,1,0x21f820,512)
7935.317:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.317:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value( hkey=003c, index=6, info_class=1 )
7935.317:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.317:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: enum_key_value() = 0 { type=1, total=46, namelen=20, name=L"MS Serif,0", data={4d,00,53,00,20,00,53,00,65,00,72,00,69,00,66,00,2c,00,32,00,33,00,38,00,00,00} }
7935.317:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.317:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.317:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.317:0050:0054:trace:font:load_gdi_font_subst Got L"MS Serif,0"=L"MS Serif,238"
7935.317:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.317:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,7,1,0x21f820,512)
7935.317:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.317:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value( hkey=003c, index=7, info_class=1 )
7935.317:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.317:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: enum_key_value() = 0 { type=1, total=38, namelen=24, name=L"MS Shell Dlg", data={54,00,61,00,68,00,6f,00,6d,00,61,00,00,00} }
7935.317:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.317:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.317:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.317:0050:0054:trace:font:load_gdi_font_subst Got L"MS Shell Dlg"=L"Tahoma"
7935.317:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.317:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,8,1,0x21f820,512)
7935.317:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.317:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value( hkey=003c, index=8, info_class=1 )
7935.318:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.318:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: enum_key_value() = 0 { type=1, total=58, namelen=26, name=L"Small Fonts,0", data={53,00,6d,00,61,00,6c,00,6c,00,20,00,46,00,6f,00,6e,00,74,00,73,00,2c,00,32,00,33,00,38,00,00,00} }
7935.318:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.318:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.318:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.318:0050:0054:trace:font:load_gdi_font_subst Got L"Small Fonts,0"=L"Small Fonts,238"
7935.318:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.318:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,9,1,0x21f820,512)
7935.318:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.318:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value( hkey=003c, index=9, info_class=1 )
7935.318:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.318:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: enum_key_value() = 0 { type=1, total=38, namelen=16, name=L"System,0", data={53,00,79,00,73,00,74,00,65,00,6d,00,2c,00,32,00,33,00,38,00,00,00} }
7935.318:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.318:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.318:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.318:0050:0054:trace:font:load_gdi_font_subst Got L"System,0"=L"System,238"
7935.318:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.318:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,10,1,0x21f820,512)
7935.318:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.318:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.318:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.318:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: enum_key_value( hkey=003c, index=10, info_class=1 )
7935.318:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.318:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value() = 0 { type=1, total=80, namelen=40, name=L"Times New Roman CE,0", data={54,00,69,00,6d,00,65,00,73,00,20,00,4e,00,65,00,77,00,20,00,52,00,6f,00,6d,00,61,00,6e,00,2c,00,32,00,33,00,38,00,00,00} }
7935.318:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.318:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.318:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.318:0050:0054:trace:font:load_gdi_font_subst Got L"Times New Roman CE,0"=L"Times New Roman,238"
7935.318:0048:004c:Ret  ucrtbase._wcsnicmp() retval=ffffffff ret=0040de47
7935.318:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,11,1,0x21f820,512)
7935.318:0048:004c:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b84 L"/cd,",00000004) ret=0040de7f
7935.318:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.319:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
0054: enum_key_value( hkey=003c, index=11, info_class=1 )
7935.319:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.319:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
0054: enum_key_value() = 0 { type=1, total=46, namelen=14, name=L"Tms Rmn", data={54,00,69,00,6d,00,65,00,73,00,20,00,4e,00,65,00,77,00,20,00,52,00,6f,00,6d,00,61,00,6e,00,00,00} }
7935.319:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.319:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.319:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.319:0050:0054:trace:font:load_gdi_font_subst Got L"Tms Rmn"=L"Times New Roman"
7935.319:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.319:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,12,1,0x21f820,512)
7935.319:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.319:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: enum_key_value( hkey=003c, index=12, info_class=1 )
7935.319:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.319:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: enum_key_value() = 0 { type=1, total=44, namelen=18, name=L"Tms Rmn,0", data={4d,00,53,00,20,00,53,00,65,00,72,00,69,00,66,00,2c,00,32,00,33,00,38,00,00,00} }
7935.319:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.319:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.319:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.319:0050:0054:trace:font:load_gdi_font_subst Got L"Tms Rmn,0"=L"MS Serif,238"
7935.319:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.319:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,13,1,0x21f820,512)
7935.319:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.319:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: enum_key_value( hkey=003c, index=13, info_class=1 )
7935.319:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: enum_key_value() = NO_MORE_ENTRIES { type=0, total=0, namelen=0, name=L"", data={} }
7935.319:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.319:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.319:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.319:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: close_handle( handle=003c )
7935.319:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: close_handle() = 0
7935.319:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.319:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.319:0050:0054:trace:reg:NtOpenKeyEx (0x30,L"Replacements",2000000,0x21f1dc)
7935.319:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.319:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.319:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: open_key( parent=0030, access=02000000, attributes=00000040, name=L"Replacements" )
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.320:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\FontLink\\SystemLink",2000000,0x21e814)
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\FontLink\\SystemLink" )
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: open_key() = 0 { hkey=003c }
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0050:0054:trace:reg:NtOpenKeyEx <- 0x3c
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,0,1,0x21ea20,4096)
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: enum_key_value( hkey=003c, index=0, info_class=1 )
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0048:004c:Ret  ucrtbase._wcsnicmp() retval=00000001 ret=0040de7f
7935.320:0048:004c:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b74 L"/root,",00000006) ret=0040deb8
7935.320:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.320:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.320:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.320:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value() = 0 { type=7, total=478, namelen=38, name=L"Lucida Sans Unicode", data={4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0050:0054:trace:font:load_system_links L"Lucida Sans Unicode": L"MSGOTHIC.TTC,MS UI Gothic"
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.320:0050:0054:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.320:0050:0054:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0050:0054:trace:font:load_system_links L"Lucida Sans Unicode": L"MINGLIU.TTC,PMingLiU"
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.320:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.320:0050:0054:trace:font:load_system_links L"Lucida Sans Unicode": L"SIMSUN.TTC,SimSun"
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.320:0050:0054:trace:font:load_system_links L"Lucida Sans Unicode": L"GULIM.TTC,Gulim"
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.320:0050:0054:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"Gulim"
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0050:0054:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"Gulim"
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0050:0054:trace:font:load_system_links L"Lucida Sans Unicode": L"YUGOTHM.TTC,Yu Gothic UI"
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.320:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.320:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0050:0054:trace:font:load_system_links L"Lucida Sans Unicode": L"MSJH.TTC,Microsoft JhengHei UI"
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.320:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.320:0050:0054:trace:font:load_system_links L"Lucida Sans Unicode": L"MSYH.TTC,Microsoft YaHei UI"
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.320:0050:0054:trace:font:load_system_links L"Lucida Sans Unicode": L"MALGUN.TTF,Malgun Gothic"
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.320:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0050:0054:trace:font:load_system_links L"Lucida Sans Unicode": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.320:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.320:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.320:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.320:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,1,1,0x21ea20,4096)
7935.320:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.320:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.320:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: enum_key_value( hkey=003c, index=1, info_class=1 )
7935.322:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.322:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.322:0048:004c:Ret  ucrtbase._wcsnicmp() retval=fffffff2 ret=0040deb8
7935.322:0048:004c:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b60 L"/select,",00000008) ret=0040ded7
7935.322:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.322:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.322:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.322:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.322:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.322:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.322:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: enum_key_value() = 0 { type=7, total=372, namelen=12, name=L"Meiryo", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.322:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.322:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.322:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.322:0050:0054:trace:font:load_system_links L"Meiryo": L"SEGOEUI.TTF,Segoe UI"
7935.322:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.322:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUI.TTF" name L"Segoe UI"
7935.322:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.322:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUI.TTF" family L"Segoe UI"
7935.322:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.322:0050:0054:trace:font:load_system_links L"Meiryo": L"YUGOTHM.TTC,Yu Gothic UI"
7935.322:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.322:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.322:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.322:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.322:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.322:0050:0054:trace:font:load_system_links L"Meiryo": L"MSGOTHIC.TTC,MS UI Gothic"
7935.322:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.322:0050:0054:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.322:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.322:0050:0054:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.322:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.322:0050:0054:trace:font:load_system_links L"Meiryo": L"MSJH.TTC,Microsoft JhengHei"
7935.322:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.322:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei"
7935.322:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.322:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei"
7935.322:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.322:0050:0054:trace:font:load_system_links L"Meiryo": L"MSYH.TTC,Microsoft YaHei"
7935.322:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.322:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei"
7935.322:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.322:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei"
7935.322:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.322:0050:0054:trace:font:load_system_links L"Meiryo": L"MALGUN.TTF,Malgun Gothic"
7935.322:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.322:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.322:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.322:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.322:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.322:0050:0054:trace:font:load_system_links L"Meiryo": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.322:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.322:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.322:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.322:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.322:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.322:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,2,1,0x21ea20,4096)
7935.322:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.322:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.322:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: enum_key_value( hkey=003c, index=2, info_class=1 )
7935.323:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.323:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.323:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.323:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.323:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.323:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.323:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.323:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.323:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.323:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.323:0048:004c:Ret  ucrtbase._wcsnicmp() retval=fffffff1 ret=0040ded7
0054: enum_key_value() = 0 { type=7, total=446, namelen=22, name=L"Meiryo Bold", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,42,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,53,00,4a,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,59,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,42,00,44,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,42,00,6f,00,6c,00,64,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.323:0048:004c:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b4c L"/desktop",00000008) ret=0040e198
7935.323:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.323:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.323:0050:0054:trace:font:load_system_links L"Meiryo Bold": L"SEGOEUIB.TTF,Segoe UI Bold"
7935.323:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.323:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUIB.TTF" name L"Segoe UI Bold"
7935.323:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.323:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUIB.TTF" family L"Segoe UI Bold"
7935.323:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.323:0050:0054:trace:font:load_system_links L"Meiryo Bold": L"YUGOTHB.TTC,Yu Gothic UI Bold"
7935.323:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.323:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHB.TTC" name L"Yu Gothic UI Bold"
7935.323:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.323:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHB.TTC" family L"Yu Gothic UI Bold"
7935.323:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.323:0050:0054:trace:font:load_system_links L"Meiryo Bold": L"MSGOTHIC.TTC,MS UI Gothic"
7935.323:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.323:0050:0054:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.323:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.323:0050:0054:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.323:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.323:0050:0054:trace:font:load_system_links L"Meiryo Bold": L"MSJHBD.TTC,Microsoft Jhenghei Bold"
7935.323:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.323:0050:0054:trace:font:find_face_from_filename looking for file L"MSJHBD.TTC" name L"Microsoft Jhenghei Bold"
7935.323:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.323:0050:0054:trace:font:load_system_links Unable to find file L"MSJHBD.TTC" family L"Microsoft Jhenghei Bold"
7935.323:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.323:0050:0054:trace:font:load_system_links L"Meiryo Bold": L"MSYHBD.TTC,Microsoft YaHei Bold"
7935.323:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.323:0050:0054:trace:font:find_face_from_filename looking for file L"MSYHBD.TTC" name L"Microsoft YaHei Bold"
7935.323:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.323:0050:0054:trace:font:load_system_links Unable to find file L"MSYHBD.TTC" family L"Microsoft YaHei Bold"
7935.323:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.323:0050:0054:trace:font:load_system_links L"Meiryo Bold": L"MALGUNBD.TTF,Malgun Gothic Bold"
7935.323:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.323:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUNBD.TTF" name L"Malgun Gothic Bold"
7935.323:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.323:0050:0054:trace:font:load_system_links Unable to find file L"MALGUNBD.TTF" family L"Malgun Gothic Bold"
7935.323:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.323:0050:0054:trace:font:load_system_links L"Meiryo Bold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.323:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.323:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.323:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.323:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.323:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.323:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,3,1,0x21ea20,4096)
7935.323:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.323:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.323:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: enum_key_value( hkey=003c, index=3, info_class=1 )
7935.325:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.325:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.325:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.325:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.325:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.325:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.325:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.325:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.325:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.325:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.325:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
0054: enum_key_value() = 0 { type=7, total=390, namelen=18, name=L"Meiryo UI", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.325:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.325:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.325:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.325:0050:0054:trace:font:load_system_links L"Meiryo UI": L"SEGOEUI.TTF,Segoe UI"
7935.325:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.325:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUI.TTF" name L"Segoe UI"
7935.325:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.325:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUI.TTF" family L"Segoe UI"
7935.325:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.325:0050:0054:trace:font:load_system_links L"Meiryo UI": L"YUGOTHM.TTC,Yu Gothic UI"
7935.325:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.325:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.325:0048:004c:Ret  ucrtbase._wcsnicmp() retval=00000000 ret=0040e198
7935.325:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.325:0048:004c:Call user32.GetThreadDesktop(0000004c) ret=00406768
7935.325:0050:0054:trace:font:load_system_links L"Meiryo UI": L"MSGOTHIC.TTC,MS UI Gothic"
7935.325:0048:004c:Call win32u.NtUserGetThreadDesktop(0000004c) ret=7bf3cfb4
7935.325:0050:0054:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.325:0048:004c:SysCall  NtUserGetThreadDesktop(0000004c)
7935.325:0050:0054:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.325:0050:0054:trace:font:load_system_links L"Meiryo UI": L"MSJH.TTC,Microsoft Jhenghei UI"
7935.325:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft Jhenghei UI"
004c: get_thread_desktop( tid=004c )
7935.326:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft Jhenghei UI"
004c: get_thread_desktop() = 0 { locator={id=00000001,offset=000ffd18}, handle=0054 }
7935.326:0050:0054:trace:font:load_system_links L"Meiryo UI": L"MSYH.TTC,Microsoft YaHei UI"
7935.326:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.326:0048:004c:SysRet   NtUserGetThreadDesktop() retval=00000054
7935.326:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.326:0048:004c:Ret  win32u.NtUserGetThreadDesktop() retval=00000054 ret=7bf3cfb4
7935.326:0050:0054:trace:font:load_system_links L"Meiryo UI": L"MALGUN.TTF,Malgun Gothic"
7935.326:0048:004c:Ret  user32.GetThreadDesktop() retval=00000054 ret=00406768
7935.326:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.326:0048:004c:Call user32.GetUserObjectInformationW(00000054,00000002,0041d000,00000104,00000000) ret=00406796
7935.326:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.326:0048:004c:Call win32u.NtUserGetObjectInformation(00000054,00000002,0041d000,00000104,00000000) ret=7bf3cfb4
7935.326:0050:0054:trace:font:load_system_links L"Meiryo UI": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.326:0048:004c:SysCall  NtUserGetObjectInformation(00000054,00000002,0041d000,00000104,00000000)
7935.326:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.326:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
004c: set_user_object_info( handle=0054, flags=00000000, obj_flags=00000000 )
7935.326:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,4,1,0x21ea20,4096)
004c: set_user_object_info() = 0 { is_desktop=1, old_obj_flags=00000000, name=L"Default" }
0054: enum_key_value( hkey=003c, index=4, info_class=1 )
7935.326:0048:004c:SysRet   NtUserGetObjectInformation() retval=00000001
7935.326:0048:004c:Ret  win32u.NtUserGetObjectInformation() retval=00000001 ret=7bf3cfb4
7935.326:0048:004c:Ret  user32.GetUserObjectInformationW() retval=00000001 ret=00406796
7935.326:0048:004c:Call ucrtbase._wcsicmp(0041d000 L"Default",00413da2 L"Default") ret=00407db8
7935.326:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.326:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.326:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.326:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.326:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.326:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: enum_key_value() = 0 { type=7, total=464, namelen=28, name=L"Meiryo UI Bold", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,42,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,53,00,4a,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,59,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,42,00,44,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,42,00,6f,00,6c,00,64,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.326:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.326:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.326:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.326:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.326:0050:0054:trace:font:load_system_links L"Meiryo UI Bold": L"SEGOEUIB.TTF,Segoe UI Bold"
7935.326:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.326:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUIB.TTF" name L"Segoe UI Bold"
7935.326:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.326:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUIB.TTF" family L"Segoe UI Bold"
7935.326:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.326:0050:0054:trace:font:load_system_links L"Meiryo UI Bold": L"YUGOTHB.TTC,Yu Gothic UI Bold"
7935.326:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.326:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHB.TTC" name L"Yu Gothic UI Bold"
7935.326:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.326:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHB.TTC" family L"Yu Gothic UI Bold"
7935.326:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.326:0050:0054:trace:font:load_system_links L"Meiryo UI Bold": L"MSGOTHIC.TTC,MS UI Gothic"
7935.326:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.326:0050:0054:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.326:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.326:0050:0054:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.326:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.326:0050:0054:trace:font:load_system_links L"Meiryo UI Bold": L"MSJHBD.TTC,Microsoft Jhenghei UI Bold"
7935.326:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.326:0050:0054:trace:font:find_face_from_filename looking for file L"MSJHBD.TTC" name L"Microsoft Jhenghei UI Bold"
7935.326:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.326:0050:0054:trace:font:load_system_links Unable to find file L"MSJHBD.TTC" family L"Microsoft Jhenghei UI Bold"
7935.326:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.326:0050:0054:trace:font:load_system_links L"Meiryo UI Bold": L"MSYHBD.TTC,Microsoft YaHei UI Bold"
7935.326:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.326:0050:0054:trace:font:find_face_from_filename looking for file L"MSYHBD.TTC" name L"Microsoft YaHei UI Bold"
7935.326:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.326:0050:0054:trace:font:load_system_links Unable to find file L"MSYHBD.TTC" family L"Microsoft YaHei UI Bold"
7935.326:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.326:0050:0054:trace:font:load_system_links L"Meiryo UI Bold": L"MALGUNBD.TTF,Malgun Gothic Bold"
7935.326:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.326:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUNBD.TTF" name L"Malgun Gothic Bold"
7935.326:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.326:0050:0054:trace:font:load_system_links Unable to find file L"MALGUNBD.TTF" family L"Malgun Gothic Bold"
7935.326:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.326:0050:0054:trace:font:load_system_links L"Meiryo UI Bold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.326:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.326:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.326:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.326:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.326:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.326:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,5,1,0x21ea20,4096)
7935.326:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.326:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.326:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: enum_key_value( hkey=003c, index=5, info_class=1 )
7935.328:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.328:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.328:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.328:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.328:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.328:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.328:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.328:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.328:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.328:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: enum_key_value() = 0 { type=7, total=364, namelen=36, name=L"Microsoft JhengHei", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,00,00,4d,00,45,00,49,00,52,00,59,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,65,00,69,00,72,00,79,00,6f,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.328:0048:004c:Ret  ucrtbase._wcsicmp() retval=00000000 ret=00407db8
7935.328:0048:004c:Call advapi32.RegOpenKeyW(80000001,00413d74 L"Software\\Wine\\Explorer",0062f454) ret=004067c8
7935.328:0050:0054:trace:font:load_system_links L"Microsoft JhengHei": L"SEGOEUI.TTF,Segoe UI"
7935.328:0048:004c:Call kernelbase.RegOpenKeyExW(80000001,00413d74 L"Software\\Wine\\Explorer",00000000,02000000,0062f454) ret=7bbb930b
7935.328:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUI.TTF" name L"Segoe UI"
7935.328:0048:004c:Call ntdll.RtlInitUnicodeString(0062f0b4,00413d74 L"Software\\Wine\\Explorer") ret=7bc43b9f
7935.328:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUI.TTF" family L"Segoe UI"
7935.328:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00413d74 ret=7bc43b9f
7935.328:0050:0054:trace:font:load_system_links L"Microsoft JhengHei": L"MINGLIU.TTC,MingLiU"
7935.328:0048:004c:Call ntdll.NtOpenKeyEx(0062f454,02000000,0062ef7c,00000000) ret=7bc73de1
7935.328:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.328:0048:004c:SysCall  NtOpenKeyEx(0062f454,02000000,0062ef7c,00000000)
7935.328:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.328:0048:004c:trace:reg:NtOpenKeyEx (0x24,L"Software\\Wine\\Explorer",2000000,0x62f454)
7935.328:0050:0054:trace:font:load_system_links L"Microsoft JhengHei": L"MSYH.TTC,Microsoft YaHei"
7935.328:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei"
7935.328:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei"
7935.329:0050:0054:trace:font:load_system_links L"Microsoft JhengHei": L"MEIRYO.TTC,Meiryo"
004c: open_key( parent=0024, access=02000000, attributes=00000040, name=L"Software\\Wine\\Explorer" )
7935.329:0050:0054:trace:font:find_face_from_filename looking for file L"MEIRYO.TTC" name L"Meiryo"
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.329:0050:0054:trace:font:load_system_links Unable to find file L"MEIRYO.TTC" family L"Meiryo"
7935.329:0050:0054:trace:font:load_system_links L"Microsoft JhengHei": L"MALGUN.TTF,Malgun Gothic"
7935.329:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.329:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.329:0048:004c:SysRet   NtOpenKeyEx() retval=c0000034
7935.329:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.329:0048:004c:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.329:0050:0054:trace:font:load_system_links L"Microsoft JhengHei": L"YUGOTHM.TTC,Yu Gothic UI"
7935.329:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.329:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.329:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.329:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.329:0048:004c:Ret  kernelbase.RegOpenKeyExW() retval=00000002 ret=7bbb930b
7935.329:0050:0054:trace:font:load_system_links L"Microsoft JhengHei": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.329:0048:004c:Ret  advapi32.RegOpenKeyW() retval=00000002 ret=004067c8
7935.329:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.329:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.329:0048:004c:Call advapi32.RegGetValueW(80000002,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413de6 L"NoDesktop",00000010,00000000,0062f328,0062f454) ret=004068ad
7935.329:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,6,1,0x21ea20,4096)
7935.329:0048:004c:Call kernelbase.RegGetValueW(80000002,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413de6 L"NoDesktop",00000010,00000000,0062f328,0062f454) ret=7bf3cfb4
7935.329:0048:004c:trace:reg:RegGetValueW (80000002,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",L"NoDesktop",16,00000000,0062F328,0062F454=4)
0054: enum_key_value( hkey=003c, index=6, info_class=1 )
7935.330:0048:004c:Call ntdll.RtlInitUnicodeString(0062f068,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer") ret=7bc43b9f
7935.330:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00413dfc ret=7bc43b9f
7935.330:0048:004c:Call ntdll.NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000) ret=7bc73de1
7935.330:0048:004c:SysCall  NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000)
7935.330:0048:004c:trace:reg:NtOpenKeyEx (0x18,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",1,0x62f0e0)
0054: enum_key_value() = 0 { type=7, total=436, namelen=46, name=L"Microsoft JhengHei Bold", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,4d,00,53,00,59,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,45,00,49,00,52,00,59,00,4f,00,42,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,65,00,69,00,72,00,79,00,6f,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,42,00,44,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,42,00,6f,00,6c,00,64,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,42,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
004c: open_key( parent=0018, access=00000001, attributes=00000040, name=L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer" )
7935.330:0050:0054:trace:font:load_system_links L"Microsoft JhengHei Bold": L"SEGOEUIB.TTF,Segoe UI Bold"
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.330:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUIB.TTF" name L"Segoe UI Bold"
7935.330:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUIB.TTF" family L"Segoe UI Bold"
7935.330:0050:0054:trace:font:load_system_links L"Microsoft JhengHei Bold": L"MINGLIU.TTC,MingLiU"
7935.330:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.330:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.330:0048:004c:SysRet   NtOpenKeyEx() retval=c0000034
7935.330:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.330:0048:004c:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.330:0050:0054:trace:font:load_system_links L"Microsoft JhengHei Bold": L"MSYHBD.TTC,Microsoft YaHei Bold"
7935.330:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.330:0050:0054:trace:font:find_face_from_filename looking for file L"MSYHBD.TTC" name L"Microsoft YaHei Bold"
7935.330:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.330:0050:0054:trace:font:load_system_links Unable to find file L"MSYHBD.TTC" family L"Microsoft YaHei Bold"
7935.330:0048:004c:Ret  kernelbase.RegGetValueW() retval=00000002 ret=7bf3cfb4
7935.330:0050:0054:trace:font:load_system_links L"Microsoft JhengHei Bold": L"MEIRYOB.TTC,Meiryo Bold"
7935.330:0048:004c:Ret  advapi32.RegGetValueW() retval=00000002 ret=004068ad
7935.330:0050:0054:trace:font:find_face_from_filename looking for file L"MEIRYOB.TTC" name L"Meiryo Bold"
7935.330:0048:004c:Call advapi32.RegGetValueW(80000001,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413de6 L"NoDesktop",00000010,00000000,0062f328,0062f454) ret=004068f5
7935.330:0050:0054:trace:font:load_system_links Unable to find file L"MEIRYOB.TTC" family L"Meiryo Bold"
7935.330:0050:0054:trace:font:load_system_links L"Microsoft JhengHei Bold": L"MALGUNBD.TTF,Malgun Gothic Bold"
7935.330:0048:004c:Call kernelbase.RegGetValueW(80000001,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413de6 L"NoDesktop",00000010,00000000,0062f328,0062f454) ret=7bf3cfb4
7935.330:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUNBD.TTF" name L"Malgun Gothic Bold"
7935.330:0048:004c:trace:reg:RegGetValueW (80000001,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",L"NoDesktop",16,00000000,0062F328,0062F454=4)
7935.330:0050:0054:trace:font:load_system_links Unable to find file L"MALGUNBD.TTF" family L"Malgun Gothic Bold"
7935.330:0048:004c:Call ntdll.RtlInitUnicodeString(0062f068,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer") ret=7bc43b9f
7935.330:0050:0054:trace:font:load_system_links L"Microsoft JhengHei Bold": L"YUGOTHB.TTC,Yu Gothic UI Bold"
7935.330:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00413dfc ret=7bc43b9f
7935.330:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHB.TTC" name L"Yu Gothic UI Bold"
7935.330:0048:004c:Call ntdll.NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000) ret=7bc73de1
7935.330:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHB.TTC" family L"Yu Gothic UI Bold"
7935.330:0048:004c:SysCall  NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000)
7935.330:0050:0054:trace:font:load_system_links L"Microsoft JhengHei Bold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.330:0048:004c:trace:reg:NtOpenKeyEx (0x24,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",1,0x62f0e0)
7935.330:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.330:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.330:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,7,1,0x21ea20,4096)
004c: open_key( parent=0024, access=00000001, attributes=00000040, name=L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer" )
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
0054: enum_key_value( hkey=003c, index=7, info_class=1 )
0054: enum_key_value() = 0 { type=7, total=382, namelen=42, name=L"Microsoft JhengHei UI", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,45,00,49,00,52,00,59,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,65,00,69,00,72,00,79,00,6f,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.331:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.331:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI": L"SEGOEUI.TTF,Segoe UI"
7935.331:0048:004c:SysRet   NtOpenKeyEx() retval=c0000034
7935.331:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUI.TTF" name L"Segoe UI"
7935.331:0048:004c:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.331:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUI.TTF" family L"Segoe UI"
7935.331:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.331:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI": L"MINGLIU.TTC,MingLiU"
7935.331:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.331:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.331:0048:004c:Ret  kernelbase.RegGetValueW() retval=00000002 ret=7bf3cfb4
7935.331:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.331:0048:004c:Ret  advapi32.RegGetValueW() retval=00000002 ret=004068f5
7935.331:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI": L"MSYH.TTC,Microsoft YaHei UI"
7935.331:0048:004c:Call advapi32.RegOpenKeyW(80000001,00413d74 L"Software\\Wine\\Explorer",0062f24c) ret=0040695f
7935.331:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.331:0048:004c:Call kernelbase.RegOpenKeyExW(80000001,00413d74 L"Software\\Wine\\Explorer",00000000,02000000,0062f24c) ret=7bbb930b
7935.331:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.331:0048:004c:Call ntdll.RtlInitUnicodeString(0062f0b4,00413d74 L"Software\\Wine\\Explorer") ret=7bc43b9f
7935.331:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI": L"MEIRYO.TTC,Meiryo UI"
7935.331:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00413d74 ret=7bc43b9f
7935.331:0050:0054:trace:font:find_face_from_filename looking for file L"MEIRYO.TTC" name L"Meiryo UI"
7935.331:0048:004c:Call ntdll.NtOpenKeyEx(0062f24c,02000000,0062ef7c,00000000) ret=7bc73de1
7935.331:0050:0054:trace:font:load_system_links Unable to find file L"MEIRYO.TTC" family L"Meiryo UI"
7935.331:0048:004c:SysCall  NtOpenKeyEx(0062f24c,02000000,0062ef7c,00000000)
7935.331:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI": L"MALGUN.TTF,Malgun Gothic"
7935.331:0048:004c:trace:reg:NtOpenKeyEx (0x24,L"Software\\Wine\\Explorer",2000000,0x62f24c)
7935.331:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.331:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.332:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI": L"YUGOTHM.TTC,Yu Gothic UI"
004c: open_key( parent=0024, access=02000000, attributes=00000040, name=L"Software\\Wine\\Explorer" )
7935.332:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.332:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.332:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.332:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.332:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.332:0048:004c:SysRet   NtOpenKeyEx() retval=c0000034
7935.332:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.332:0048:004c:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.332:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,8,1,0x21ea20,4096)
7935.332:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.332:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
0054: enum_key_value( hkey=003c, index=8, info_class=1 )
7935.332:0048:004c:Ret  kernelbase.RegOpenKeyExW() retval=00000002 ret=7bbb930b
7935.332:0048:004c:Ret  advapi32.RegOpenKeyW() retval=00000002 ret=0040695f
7935.332:0048:004c:Call advapi32.RegGetValueW(80000001,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413e8c L"NoTrayItemsDisplay",00000010,00000000,0062f328,0062f454) ret=004069c7
7935.332:0048:004c:Call kernelbase.RegGetValueW(80000001,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413e8c L"NoTrayItemsDisplay",00000010,00000000,0062f328,0062f454) ret=7bf3cfb4
7935.332:0048:004c:trace:reg:RegGetValueW (80000001,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",L"NoTrayItemsDisplay",16,00000000,0062F328,0062F454=4)
7935.332:0048:004c:Call ntdll.RtlInitUnicodeString(0062f068,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer") ret=7bc43b9f
7935.332:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00413dfc ret=7bc43b9f
7935.332:0048:004c:Call ntdll.NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000) ret=7bc73de1
7935.332:0048:004c:SysCall  NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000)
7935.332:0048:004c:trace:reg:NtOpenKeyEx (0x24,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",1,0x62f0e0)
0054: enum_key_value() = 0 { type=7, total=454, namelen=52, name=L"Microsoft JhengHei UI Bold", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,4d,00,53,00,59,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,45,00,49,00,52,00,59,00,4f,00,42,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,65,00,69,00,72,00,79,00,6f,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,42,00,44,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,42,00,6f,00,6c,00,64,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,42,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
004c: open_key( parent=0024, access=00000001, attributes=00000040, name=L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer" )
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.333:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.333:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"SEGOEUIB.TTF,Segoe UI Bold"
7935.333:0048:004c:SysRet   NtOpenKeyEx() retval=c0000034
7935.333:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUIB.TTF" name L"Segoe UI Bold"
7935.333:0048:004c:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.333:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUIB.TTF" family L"Segoe UI Bold"
7935.333:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.333:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"MINGLIU.TTC,MingLiU"
7935.333:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.333:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.333:0048:004c:Ret  kernelbase.RegGetValueW() retval=00000002 ret=7bf3cfb4
7935.333:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.333:0048:004c:Ret  advapi32.RegGetValueW() retval=00000002 ret=004069c7
7935.333:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"MSYHBD.TTC,Microsoft YaHei UI Bold"
7935.333:0048:004c:Call advapi32.RegGetValueW(80000002,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413e8c L"NoTrayItemsDisplay",00000010,00000000,0062f328,0062f454) ret=00406a0f
7935.333:0050:0054:trace:font:find_face_from_filename looking for file L"MSYHBD.TTC" name L"Microsoft YaHei UI Bold"
7935.333:0048:004c:Call kernelbase.RegGetValueW(80000002,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413e8c L"NoTrayItemsDisplay",00000010,00000000,0062f328,0062f454) ret=7bf3cfb4
7935.333:0050:0054:trace:font:load_system_links Unable to find file L"MSYHBD.TTC" family L"Microsoft YaHei UI Bold"
7935.333:0048:004c:trace:reg:RegGetValueW (80000002,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",L"NoTrayItemsDisplay",16,00000000,0062F328,0062F454=4)
7935.333:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"MEIRYOB.TTC,Meiryo UI Bold"
7935.333:0048:004c:Call ntdll.RtlInitUnicodeString(0062f068,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer") ret=7bc43b9f
7935.333:0050:0054:trace:font:find_face_from_filename looking for file L"MEIRYOB.TTC" name L"Meiryo UI Bold"
7935.333:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00413dfc ret=7bc43b9f
7935.333:0050:0054:trace:font:load_system_links Unable to find file L"MEIRYOB.TTC" family L"Meiryo UI Bold"
7935.333:0048:004c:Call ntdll.NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000) ret=7bc73de1
7935.333:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"MALGUNBD.TTF,Malgun Gothic Bold"
7935.333:0048:004c:SysCall  NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000)
7935.333:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUNBD.TTF" name L"Malgun Gothic Bold"
7935.333:0048:004c:trace:reg:NtOpenKeyEx (0x18,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",1,0x62f0e0)
7935.333:0050:0054:trace:font:load_system_links Unable to find file L"MALGUNBD.TTF" family L"Malgun Gothic Bold"
7935.333:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"YUGOTHB.TTC,Yu Gothic UI Bold"
7935.333:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHB.TTC" name L"Yu Gothic UI Bold"
004c: open_key( parent=0018, access=00000001, attributes=00000040, name=L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer" )
7935.334:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHB.TTC" family L"Yu Gothic UI Bold"
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.334:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Bold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.334:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.334:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.334:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.334:0048:004c:SysRet   NtOpenKeyEx() retval=c0000034
7935.334:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,9,1,0x21ea20,4096)
7935.334:0048:004c:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.334:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.334:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
0054: enum_key_value( hkey=003c, index=9, info_class=1 )
7935.334:0048:004c:Ret  kernelbase.RegGetValueW() retval=00000002 ret=7bf3cfb4
7935.334:0048:004c:Ret  advapi32.RegGetValueW() retval=00000002 ret=00406a0f
7935.334:0048:004c:Call rpcrt4.UuidCreate(0062f1fc) ret=00406a33
7935.334:0048:004c:Call cryptbase.SystemFunction036(0062f1fc,00000010) ret=7b8f911b
7935.334:0048:004c:Call ntdll.RtlEnterCriticalSection(7b8a3040) ret=7b8a1c29
7935.334:0048:004c:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8a1c29
7935.334:0048:004c:Call ntdll.NtQuerySystemInformation(00000017,7b8a6020,00000030,00000000) ret=7b8a1c8e
7935.334:0048:004c:SysCall  NtQuerySystemInformation(00000017,7b8a6020,00000030,00000000)
7935.334:0048:004c:trace:ntdll:NtQuerySystemInformation (0x00000017,0x7b8a6020,0x00000030,(nil))
0054: enum_key_value() = 0 { type=7, total=458, namelen=54, name=L"Microsoft JhengHei UI Light", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,4d,00,53,00,59,00,48,00,4c,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,4d,00,45,00,49,00,52,00,59,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,65,00,69,00,72,00,79,00,6f,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,53,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,53,00,65,00,6d,00,69,00,6c,00,69,00,67,00,68,00,74,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4c,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.334:0048:004c:SysRet   NtQuerySystemInformation() retval=00000000
7935.334:0048:004c:Ret  ntdll.NtQuerySystemInformation() retval=00000000 ret=7b8a1c8e
7935.334:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"SEGOEUIL.TTF,Segoe UI Light"
7935.334:0048:004c:Call ucrtbase.memcpy(0062f1fc,7b8a6020,00000010) ret=7b8a1cc2
7935.334:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUIL.TTF" name L"Segoe UI Light"
7935.334:0048:004c:Ret  ucrtbase.memcpy() retval=0062f1fc ret=7b8a1cc2
7935.334:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUIL.TTF" family L"Segoe UI Light"
7935.334:0048:004c:Call ntdll.RtlLeaveCriticalSection(7b8a3040) ret=7b8a1d2d
7935.334:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"MINGLIU.TTC,MingLiU"
7935.334:0048:004c:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8a1d2d
7935.334:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.334:0048:004c:Ret  cryptbase.SystemFunction036() retval=00000001 ret=7b8f911b
7935.334:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.334:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"MSYHL.TTC,Microsoft YaHei UI Light"
7935.334:0048:004c:Call KERNEL32.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7b8fa45e
7935.334:0050:0054:trace:font:find_face_from_filename looking for file L"MSYHL.TTC" name L"Microsoft YaHei UI Light"
7935.334:0048:004c:Call kernelbase.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7bf3cfb4
7935.334:0050:0054:trace:font:load_system_links Unable to find file L"MSYHL.TTC" family L"Microsoft YaHei UI Light"
7935.334:0048:004c:Call ntdll.RtlInitUnicodeString(0062ef6c,7b927e0a L"ntdll.dll") ret=7bc1b6df
7935.334:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"MEIRYO.TTC,Meiryo UI"
7935.334:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=7b927e0a ret=7bc1b6df
7935.334:0050:0054:trace:font:find_face_from_filename looking for file L"MEIRYO.TTC" name L"Meiryo UI"
7935.334:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062ef6c,0062ef68) ret=7bc1b705
7935.334:0050:0054:trace:font:load_system_links Unable to find file L"MEIRYO.TTC" family L"Meiryo UI"
7935.334:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EF6C, base 0062EF68.
7935.334:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"MALGUNSL.TTF,Malgun Gothic Semilight"
7935.334:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EE2C
7935.334:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUNSL.TTF" name L"Malgun Gothic Semilight"
7935.334:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.334:0050:0054:trace:font:load_system_links Unable to find file L"MALGUNSL.TTF" family L"Malgun Gothic Semilight"
7935.334:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.334:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"YUGOTHL.TTC,Yu Gothic UI Light"
7935.334:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.334:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHL.TTC" name L"Yu Gothic UI Light"
7935.334:0048:004c:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=7b8fa45e
7935.334:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHL.TTC" family L"Yu Gothic UI Light"
7935.334:0048:004c:Call KERNEL32.GetProcAddress(7bf30000,7b927e1e "__wine_dbg_strdup") ret=7b8fa470
7935.334:0050:0054:trace:font:load_system_links L"Microsoft JhengHei UI Light": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.334:0048:004c:Call ntdll.RtlInitAnsiString(0062efa8,7b927e1e "__wine_dbg_strdup") ret=7bed8fad
7935.334:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.334:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b927e1e ret=7bed8fad
7935.334:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.334:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062efa8,00000000,0062efa4) ret=7bed8fcb
7935.334:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,10,1,0x21ea20,4096)
7935.334:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.334:0048:004c:Ret  KERNEL32.GetProcAddress() retval=7bf6cb10 ret=7b8fa470
0054: enum_key_value( hkey=003c, index=10, info_class=1 )
7935.336:0048:004c:Call KERNEL32.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7b8fa361
7935.336:0048:004c:Call kernelbase.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7bf3cfb4
7935.336:0048:004c:Call ntdll.RtlInitUnicodeString(0062f03c,7b927e0a L"ntdll.dll") ret=7bc1b6df
7935.336:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=7b927e0a ret=7bc1b6df
7935.336:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f03c,0062f038) ret=7bc1b705
7935.336:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F03C, base 0062F038.
7935.336:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EEFC
7935.336:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.336:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.336:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.336:0048:004c:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=7b8fa361
7935.336:0048:004c:Call KERNEL32.GetProcAddress(7bf30000,7b927e6f "__wine_dbg_header") ret=7b8fa373
0054: enum_key_value() = 0 { type=7, total=480, namelen=40, name=L"Microsoft Sans Serif", data={4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.336:0048:004c:Call ntdll.RtlInitAnsiString(0062f068,7b927e6f "__wine_dbg_header") ret=7bed8fad
7935.336:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b927e6f ret=7bed8fad
7935.336:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f068,00000000,0062f064) ret=7bed8fcb
7935.336:0050:0054:trace:font:load_system_links L"Microsoft Sans Serif": L"MSGOTHIC.TTC,MS UI Gothic"
7935.336:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.336:0050:0054:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.336:0048:004c:Ret  KERNEL32.GetProcAddress() retval=7bf6c890 ret=7b8fa373
7935.336:0050:0054:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.336:0048:004c:trace:rpc:UuidCreate Call KERNEL32.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7b8fa3de
7935.336:0050:0054:trace:font:load_system_links L"Microsoft Sans Serif": L"MINGLIU.TTC,PMingLiU"
7935.336:0048:004c:Call kernelbase.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7bf3cfb4
7935.336:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.336:0048:004c:Call ntdll.RtlInitUnicodeString(0062ec1c,7b927e0a L"ntdll.dll") ret=7bc1b6df
7935.336:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.336:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=7b927e0a ret=7bc1b6df
7935.336:0050:0054:trace:font:load_system_links L"Microsoft Sans Serif": L"SIMSUN.TTC,SimSun"
7935.336:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062ec1c,0062ec18) ret=7bc1b705
7935.336:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.336:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EC1C, base 0062EC18.
7935.336:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.336:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EADC
7935.336:0050:0054:trace:font:load_system_links L"Microsoft Sans Serif": L"GULIM.TTC,Gulim"
7935.336:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.336:0050:0054:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"Gulim"
7935.336:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.336:0050:0054:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"Gulim"
7935.336:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.336:0050:0054:trace:font:load_system_links L"Microsoft Sans Serif": L"YUGOTHM.TTC,Yu Gothic UI"
7935.336:0048:004c:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=7b8fa3de
7935.336:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.336:0048:004c:Call KERNEL32.GetProcAddress(7bf30000,7b927e30 "__wine_dbg_output") ret=7b8fa3f0
7935.336:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.336:0048:004c:Call ntdll.RtlInitAnsiString(0062ec48,7b927e30 "__wine_dbg_output") ret=7bed8fad
7935.336:0050:0054:trace:font:load_system_links L"Microsoft Sans Serif": L"MSJH.TTC,Microsoft JhengHei UI"
7935.336:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b927e30 ret=7bed8fad
7935.336:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.336:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062ec48,00000000,0062ec44) ret=7bed8fcb
7935.336:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.336:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.336:0050:0054:trace:font:load_system_links L"Microsoft Sans Serif": L"MSYH.TTC,Microsoft YaHei UI"
7935.336:0048:004c:Ret  KERNEL32.GetProcAddress() retval=7bf6ca40 ret=7b8fa3f0
7935.336:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
{f4782f3c-01da-4c05-8a5a-5f51b9012acc}
7935.336:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.336:0048:004c:Ret  rpcrt4.UuidCreate() retval=00000000 ret=00406a33
7935.336:0050:0054:trace:font:load_system_links L"Microsoft Sans Serif": L"MALGUN.TTF,Malgun Gothic"
7935.336:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.336:0048:004c:Call KERNEL32.GetModuleHandleW(00419092 L"ntdll.dll") ret=0040179e
7935.336:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.336:0048:004c:Call kernelbase.GetModuleHandleW(00419092 L"ntdll.dll") ret=7bf3cfb4
7935.336:0050:0054:trace:font:load_system_links L"Microsoft Sans Serif": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.336:0048:004c:Call ntdll.RtlInitUnicodeString(0062ef9c,00419092 L"ntdll.dll") ret=7bc1b6df
7935.336:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.336:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00419092 ret=7bc1b6df
7935.336:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.336:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062ef9c,0062ef98) ret=7bc1b705
7935.336:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,11,1,0x21ea20,4096)
7935.336:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EF9C, base 0062EF98.
7935.336:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EE5C
7935.338:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
0054: enum_key_value( hkey=003c, index=11, info_class=1 )
7935.338:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.338:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.338:0048:004c:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=0040179e
7935.338:0048:004c:Call KERNEL32.GetProcAddress(7bf30000,004190a6 "__wine_dbg_strdup") ret=004017b0
7935.338:0048:004c:Call ntdll.RtlInitAnsiString(0062efd8,004190a6 "__wine_dbg_strdup") ret=7bed8fad
7935.338:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=004190a6 ret=7bed8fad
7935.338:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062efd8,00000000,0062efd4) ret=7bed8fcb
7935.338:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.338:0048:004c:Ret  KERNEL32.GetProcAddress() retval=7bf6cb10 ret=004017b0
7935.338:0048:004c:Call KERNEL32.GetModuleHandleW(00419092 L"ntdll.dll") ret=004016a1
7935.338:0048:004c:Call kernelbase.GetModuleHandleW(00419092 L"ntdll.dll") ret=7bf3cfb4
7935.338:0048:004c:Call ntdll.RtlInitUnicodeString(0062f09c,00419092 L"ntdll.dll") ret=7bc1b6df
7935.338:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00419092 ret=7bc1b6df
0054: enum_key_value() = 0 { type=7, total=482, namelen=14, name=L"MingLiU", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,43,00,68,00,65,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.338:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f09c,0062f098) ret=7bc1b705
7935.338:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F09C, base 0062F098.
7935.338:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EF5C
7935.338:0050:0054:trace:font:load_system_links L"MingLiU": L"MICROSS.TTF,Microsoft Sans Serif"
7935.338:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.338:0050:0054:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.338:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.338:0050:0054:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.338:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.338:0050:0054:trace:font:load_system_links L"MingLiU": L"SIMSUN.TTC,SimSun"
7935.338:0048:004c:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=004016a1
7935.338:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.338:0048:004c:Call KERNEL32.GetProcAddress(7bf30000,004190f7 "__wine_dbg_header") ret=004016b3
7935.338:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.338:0048:004c:Call ntdll.RtlInitAnsiString(0062f0d8,004190f7 "__wine_dbg_header") ret=7bed8fad
7935.338:0050:0054:trace:font:load_system_links L"MingLiU": L"MSMINCHO.TTC,MS Mincho"
7935.338:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=004190f7 ret=7bed8fad
7935.338:0050:0054:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS Mincho"
7935.338:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f0d8,00000000,0062f0d4) ret=7bed8fcb
7935.338:0050:0054:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS Mincho"
7935.338:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.338:0050:0054:trace:font:load_system_links L"MingLiU": L"BATANG.TTC,BatangChe"
7935.338:0048:004c:Ret  KERNEL32.GetProcAddress() retval=7bf6c890 ret=004016b3
7935.338:0050:0054:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"BatangChe"
7935.338:0048:004c:trace:explorer:manage_desktop Call KERNEL32.GetModuleHandleW(00419092 L"ntdll.dll") ret=0040171e
7935.338:0050:0054:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"BatangChe"
7935.338:0048:004c:Call kernelbase.GetModuleHandleW(00419092 L"ntdll.dll") ret=7bf3cfb4
7935.338:0050:0054:trace:font:load_system_links L"MingLiU": L"MSJH.TTC,Microsoft JhengHei UI"
7935.338:0048:004c:Call ntdll.RtlInitUnicodeString(0062ec7c,00419092 L"ntdll.dll") ret=7bc1b6df
7935.338:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.338:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00419092 ret=7bc1b6df
7935.338:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.338:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062ec7c,0062ec78) ret=7bc1b705
7935.338:0050:0054:trace:font:load_system_links L"MingLiU": L"MSYH.TTC,Microsoft YaHei UI"
7935.338:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EC7C, base 0062EC78.
7935.338:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.338:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EB3C
7935.338:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.338:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.338:0050:0054:trace:font:load_system_links L"MingLiU": L"YUGOTHM.TTC,Yu Gothic UI"
7935.338:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.338:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.338:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.338:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.338:0048:004c:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=0040171e
7935.338:0050:0054:trace:font:load_system_links L"MingLiU": L"MALGUN.TTF,Malgun Gothic"
7935.338:0048:004c:Call KERNEL32.GetProcAddress(7bf30000,004190b8 "__wine_dbg_output") ret=00401730
7935.338:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.338:0048:004c:Call ntdll.RtlInitAnsiString(0062ecb8,004190b8 "__wine_dbg_output") ret=7bed8fad
7935.338:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.338:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=004190b8 ret=7bed8fad
7935.338:0050:0054:trace:font:load_system_links L"MingLiU": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.338:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062ecb8,00000000,0062ecb4) ret=7bed8fcb
7935.338:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.338:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.338:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.338:0048:004c:Ret  KERNEL32.GetProcAddress() retval=7bf6ca40 ret=00401730
7935.338:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,12,1,0x21ea20,4096)
display guid {f4782f3c-01da-4c05-8a5a-5f51b9012acc}
7935.340:0048:004c:Call advapi32.RegOpenKeyW(80000001,00413ec4 L"Software\\Wine\\Drivers",0062f1f8) ret=00407254
0054: enum_key_value( hkey=003c, index=12, info_class=1 )
7935.340:0048:004c:Call kernelbase.RegOpenKeyExW(80000001,00413ec4 L"Software\\Wine\\Drivers",00000000,02000000,0062f1f8) ret=7bbb930b
7935.340:0048:004c:Call ntdll.RtlInitUnicodeString(0062f0b4,00413ec4 L"Software\\Wine\\Drivers") ret=7bc43b9f
7935.340:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00413ec4 ret=7bc43b9f
7935.340:0048:004c:Call ntdll.NtOpenKeyEx(0062f1f8,02000000,0062ef7c,00000000) ret=7bc73de1
7935.340:0048:004c:SysCall  NtOpenKeyEx(0062f1f8,02000000,0062ef7c,00000000)
7935.340:0048:004c:trace:reg:NtOpenKeyEx (0x24,L"Software\\Wine\\Drivers",2000000,0x62f1f8)
0054: enum_key_value() = 0 { type=7, total=532, namelen=24, name=L"MingLiU-ExtB", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,43,00,68,00,65,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
004c: open_key( parent=0024, access=02000000, attributes=00000040, name=L"Software\\Wine\\Drivers" )
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.340:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.340:0050:0054:trace:font:load_system_links L"MingLiU-ExtB": L"MICROSS.TTF,Microsoft Sans Serif"
7935.340:0048:004c:SysRet   NtOpenKeyEx() retval=c0000034
7935.340:0050:0054:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.340:0048:004c:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.340:0050:0054:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.340:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.340:0050:0054:trace:font:load_system_links L"MingLiU-ExtB": L"MINGLIU.TTC,MingLiU"
7935.340:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.340:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.340:0048:004c:Ret  kernelbase.RegOpenKeyExW() retval=00000002 ret=7bbb930b
7935.340:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.340:0048:004c:Ret  advapi32.RegOpenKeyW() retval=00000002 ret=00407254
7935.340:0050:0054:trace:font:load_system_links L"MingLiU-ExtB": L"SIMSUN.TTC,SimSun"
7935.340:0048:004c:Call ucrtbase.wcschr(0062f454 L"mac,x11,wayland",0000002c) ret=00406abf
7935.340:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.340:0048:004c:Ret  ucrtbase.wcschr() retval=0062f45a ret=00406abf
7935.340:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.340:0048:004c:Call ucrtbase.wcscmp(0062f454 L"mac",00413f02 L"null") ret=00406ae0
7935.340:0050:0054:trace:font:load_system_links L"MingLiU-ExtB": L"MSMINCHO.TTC,MS Mincho"
7935.340:0048:004c:Ret  ucrtbase.wcscmp() retval=ffffffff ret=00406ae0
7935.340:0050:0054:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS Mincho"
7935.340:0048:004c:Call ucrtbase.__stdio_common_vswprintf(000000004,0062f20c,00000020,00413f2a L"wine%s.drv",00000000,0062f178) ret=0040c20f
7935.340:0050:0054:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS Mincho"
7935.340:0048:004c:Ret  ucrtbase.__stdio_common_vswprintf() retval=0000000b ret=0040c20f
7935.340:0050:0054:trace:font:load_system_links L"MingLiU-ExtB": L"BATANG.TTC,BatangChe"
7935.340:0048:004c:Call KERNEL32.LoadLibraryW(0062f20c L"winemac.drv") ret=00406b19
7935.340:0050:0054:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"BatangChe"
7935.340:0048:004c:Call kernelbase.LoadLibraryW(0062f20c L"winemac.drv") ret=7bf3cfb4
7935.340:0050:0054:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"BatangChe"
7935.340:0048:004c:Call ntdll.RtlInitUnicodeString(0062f0e4,0062f20c L"winemac.drv") ret=7bc2a675
7935.340:0050:0054:trace:font:load_system_links L"MingLiU-ExtB": L"MSJH.TTC,Microsoft JhengHei UI"
7935.340:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=0062f20c ret=7bc2a675
7935.340:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.340:0048:004c:Call ntdll.LdrGetDllPath(0062f20c L"winemac.drv",00000000,0062f0bc,0062f0c0) ret=7bc727f0
7935.340:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.340:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
7935.340:0050:0054:trace:font:load_system_links L"MingLiU-ExtB": L"MSYH.TTC,Microsoft YaHei UI"
7935.340:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.340:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.340:0050:0054:trace:font:load_system_links L"MingLiU-ExtB": L"YUGOTHM.TTC,Yu Gothic UI"
7935.340:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.340:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.340:0050:0054:trace:font:load_system_links L"MingLiU-ExtB": L"MALGUN.TTF,Malgun Gothic"
7935.340:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.340:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.340:0050:0054:trace:font:load_system_links L"MingLiU-ExtB": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.340:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 0028CD00, status 0.
7935.340:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.340:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
7935.340:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.340:0048:004c:Ret  ntdll.LdrGetDllPath() retval=00000000 ret=7bc727f0
7935.340:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,13,1,0x21ea20,4096)
7935.340:0048:004c:Call ntdll.LdrLoadDll(0028cd00 L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;",00000000,0062f0e4,0062f0b8) ret=7bc7281b
7935.340:0048:004c:trace:module:load_dll looking for L"winemac.drv" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.342:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"winemac.drv" 0062EF00
0054: enum_key_value( hkey=003c, index=13, info_class=1 )
7935.342:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xa8, return 0028CDA8, status 0.
7935.342:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winemac.drv",0062EFB8,00000000,00000000)
7935.342:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winemac.drv" 520 0062EC64 00000000)
7935.342:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winemac.drv" 520 0062EC64 00000000 00000000)
0054: enum_key_value() = 0 { type=7, total=534, namelen=26, name=L"MingLiU_HKSCS", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,43,00,68,00,65,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.342:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F4C0, status 0.
7935.342:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS": L"MICROSS.TTF,Microsoft Sans Serif"
7935.342:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.342:0050:0054:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.342:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.342:0050:0054:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.342:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS": L"MINGLIU.TTC,MingLiU"
7935.342:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.342:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.342:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS": L"SIMSUN.TTC,SimSun"
7935.342:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.342:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.342:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS": L"MSMINCHO.TTC,MS Mincho"
7935.342:0050:0054:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS Mincho"
7935.342:0050:0054:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS Mincho"
7935.342:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS": L"BATANG.TTC,BatangChe"
7935.342:0050:0054:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"BatangChe"
7935.342:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winemac.drv" -> ret c0000034
7935.342:0050:0054:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"BatangChe"
7935.342:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winemac.drv" not found (c0000034)
7935.342:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS": L"MSJH.TTC,Microsoft JhengHei UI"
7935.342:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.342:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.342:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.342:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS": L"MSYH.TTC,Microsoft YaHei UI"
7935.342:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.342:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.342:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS": L"YUGOTHM.TTC,Yu Gothic UI"
7935.342:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.342:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.342:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS": L"MALGUN.TTF,Malgun Gothic"
7935.342:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F4C0, return 1, status 0.
7935.342:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.342:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winemac.drv",0062EFB8,00000000,00000000)
7935.342:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.342:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winemac.drv" 520 0062EC64 00000000)
7935.342:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.342:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winemac.drv" 520 0062EC64 00000000 00000000)
7935.342:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.342:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.342:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,14,1,0x21ea20,4096)
7935.344:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F530, status 0.
0054: enum_key_value( hkey=003c, index=14, info_class=1 )
7935.344:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.344:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.344:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winemac.drv" -> ret c0000034
7935.344:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winemac.drv" not found (c0000034)
7935.344:0048:004c:SysRet   NtOpenFile() retval=c0000034
0054: enum_key_value() = 0 { type=7, total=596, namelen=36, name=L"MingLiU_HKSCS-ExtB", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,5f,00,48,00,4b,00,53,00,43,00,53,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,43,00,68,00,65,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.344:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MICROSS.TTF,Microsoft Sans Serif"
7935.344:0050:0054:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.344:0050:0054:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.344:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F530, return 1, status 0.
7935.344:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MINGLIU.TTC,MingLiU_HKSCS"
7935.344:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winemac.drv",0062EFB8,00000000,00000000)
7935.344:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU_HKSCS"
7935.344:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winemac.drv" 520 0062EC64 00000000)
7935.344:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU_HKSCS"
7935.344:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winemac.drv" 520 0062EC64 00000000 00000000)
7935.344:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MINGLIU.TTC,MingLiU"
7935.344:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.344:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.344:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"SIMSUN.TTC,SimSun"
7935.344:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.344:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.344:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MSMINCHO.TTC,MS Mincho"
7935.344:0050:0054:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS Mincho"
7935.344:0050:0054:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS Mincho"
7935.344:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027F5A0, status 0.
7935.344:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"BATANG.TTC,BatangChe"
7935.344:0050:0054:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"BatangChe"
7935.344:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.344:0050:0054:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"BatangChe"
7935.344:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.344:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MSJH.TTC,Microsoft JhengHei UI"
7935.344:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.344:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.344:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MSYH.TTC,Microsoft YaHei UI"
7935.344:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.344:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.344:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"YUGOTHM.TTC,Yu Gothic UI"
7935.344:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.344:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.344:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"MALGUN.TTF,Malgun Gothic"
7935.344:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winemac.drv" -> ret c000003a
7935.344:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.344:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system\\winemac.drv" not found (c000003a)
7935.344:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.344:0048:004c:SysRet   NtOpenFile() retval=c000003a
7935.344:0050:0054:trace:font:load_system_links L"MingLiU_HKSCS-ExtB": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.344:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.344:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.344:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,15,1,0x21ea20,4096)
0054: enum_key_value( hkey=003c, index=15, info_class=1 )
7935.346:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F5A0, return 1, status 0.
7935.346:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winemac.drv",0062EFB8,00000000,00000000)
7935.346:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winemac.drv" 520 0062EC64 00000000)
7935.346:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winemac.drv" 520 0062EC64 00000000 00000000)
0054: enum_key_value() = 0 { type=7, total=410, namelen=18, name=L"MS Gothic", data={4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,43,00,68,00,65,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.346:0050:0054:trace:font:load_system_links L"MS Gothic": L"MINGLIU.TTC,MingLiU"
7935.346:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3e, return 00261FB8, status 0.
7935.346:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.346:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.346:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.346:0050:0054:trace:font:load_system_links L"MS Gothic": L"SIMSUN.TTC,SimSun"
7935.346:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.346:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.346:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.346:0050:0054:trace:font:load_system_links L"MS Gothic": L"GULIM.TTC,GulimChe"
7935.346:0050:0054:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"GulimChe"
7935.346:0050:0054:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"GulimChe"
7935.346:0050:0054:trace:font:load_system_links L"MS Gothic": L"YUGOTHM.TTC,Yu Gothic UI"
7935.346:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.346:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.346:0050:0054:trace:font:load_system_links L"MS Gothic": L"MSJH.TTC,Microsoft JhengHei UI"
7935.346:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.346:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.346:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winemac.drv" -> ret c0000034
7935.346:0050:0054:trace:font:load_system_links L"MS Gothic": L"MSYH.TTC,Microsoft YaHei UI"
7935.346:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\winemac.drv" not found (c0000034)
7935.346:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.346:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.346:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.346:0050:0054:trace:font:load_system_links L"MS Gothic": L"MALGUN.TTF,Malgun Gothic"
7935.346:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.346:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.346:0050:0054:trace:font:load_system_links L"MS Gothic": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.346:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.346:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261FB8, return 1, status 0.
7935.346:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.346:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winemac.drv",0062EFB8,00000000,00000000)
7935.346:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,16,1,0x21ea20,4096)
7935.346:0048:004c:trace:file:RtlGetFullPathName_U (L".\\winemac.drv" 520 0062EC64 00000000)
7935.346:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\winemac.drv" 520 0062EC64 00000000 00000000)
0054: enum_key_value( hkey=003c, index=16, info_class=1 )
7935.348:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F610, status 0.
7935.348:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.348:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
0054: enum_key_value() = 0 { type=7, total=408, namelen=18, name=L"MS Mincho", data={4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.348:0050:0054:trace:font:load_system_links L"MS Mincho": L"MINGLIU.TTC,MingLiU"
7935.348:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"MingLiU"
7935.348:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"MingLiU"
7935.348:0050:0054:trace:font:load_system_links L"MS Mincho": L"SIMSUN.TTC,SimSun"
7935.348:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.348:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winemac.drv" -> ret c0000034
7935.348:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.348:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winemac.drv" not found (c0000034)
7935.348:0050:0054:trace:font:load_system_links L"MS Mincho": L"BATANG.TTC,Batang"
7935.348:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.348:0050:0054:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"Batang"
7935.348:0050:0054:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"Batang"
7935.348:0050:0054:trace:font:load_system_links L"MS Mincho": L"YUGOTHM.TTC,Yu Gothic UI"
7935.348:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.348:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.348:0050:0054:trace:font:load_system_links L"MS Mincho": L"MSJH.TTC,Microsoft JhengHei UI"
7935.348:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F610, return 1, status 0.
7935.348:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.348:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.348:0050:0054:trace:font:load_system_links L"MS Mincho": L"MSYH.TTC,Microsoft YaHei UI"
7935.348:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.348:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.348:0050:0054:trace:font:load_system_links L"MS Mincho": L"MALGUN.TTF,Malgun Gothic"
7935.348:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.348:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.348:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028CDA8, return 1, status 0.
7935.348:0050:0054:trace:font:load_system_links L"MS Mincho": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.348:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.348:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.348:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,17,1,0x21ea20,4096)
0054: enum_key_value( hkey=003c, index=17, info_class=1 )
7935.350:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x86e, return 0028CE68, status 0.
7935.350:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028CE68, return 1, status 0.
0054: enum_key_value() = 0 { type=7, total=408, namelen=20, name=L"MS PGothic", data={4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.350:0050:0054:trace:font:load_system_links L"MS PGothic": L"MINGLIU.TTC,PMingLiU"
7935.350:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.350:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.350:0050:0054:trace:font:load_system_links L"MS PGothic": L"SIMSUN.TTC,SimSun"
7935.350:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x832, return 0028D6F0, status 0.
7935.350:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.350:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.350:0048:004c:SysCall  NtOpenFile(0062ee2c,80100000,0062ee40,0062ee38,00000005,00000060)
7935.350:0050:0054:trace:font:load_system_links L"MS PGothic": L"GULIM.TTC,Gulim"
7935.350:0048:004c:trace:file:NtCreateFile handle=0x62ee2c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee38 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.350:0050:0054:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"Gulim"
7935.350:0050:0054:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"Gulim"
7935.350:0050:0054:trace:font:load_system_links L"MS PGothic": L"YUGOTHM.TTC,Yu Gothic UI"
7935.350:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.350:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.350:0050:0054:trace:font:load_system_links L"MS PGothic": L"MSJH.TTC,Microsoft JhengHei UI"
7935.350:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.350:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.350:0050:0054:trace:font:load_system_links L"MS PGothic": L"MSYH.TTC,Microsoft YaHei UI"
7935.350:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.350:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.350:0050:0054:trace:font:load_system_links L"MS PGothic": L"MALGUN.TTF,Malgun Gothic"
7935.350:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.350:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.350:0050:0054:trace:font:load_system_links L"MS PGothic": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.350:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.350:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.350:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,18,1,0x21ea20,4096)
0054: enum_key_value( hkey=003c, index=18, info_class=1 )
0054: enum_key_value() = 0 { type=7, total=412, namelen=20, name=L"MS PMincho", data={4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.351:0050:0054:trace:font:load_system_links L"MS PMincho": L"MINGLIU.TTC,PMingLiU"
7935.351:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.351:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.351:0050:0054:trace:font:load_system_links L"MS PMincho": L"SIMSUN.TTC,SimSun"
7935.351:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.351:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.351:0050:0054:trace:font:load_system_links L"MS PMincho": L"BATANG.TTC,Batang"
7935.351:0050:0054:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"Batang"
7935.351:0050:0054:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"Batang"
7935.351:0050:0054:trace:font:load_system_links L"MS PMincho": L"YUGOTHM.TTC,Yu Gothic UI"
7935.351:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.351:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.351:0050:0054:trace:font:load_system_links L"MS PMincho": L"MSJH.TTC,Microsoft JhengHei UI"
7935.351:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.351:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.351:0050:0054:trace:font:load_system_links L"MS PMincho": L"MSYH.TTC,Microsoft YaHei UI"
7935.351:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.351:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.351:0050:0054:trace:font:load_system_links L"MS PMincho": L"MALGUN.TTF,Malgun Gothic"
7935.351:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.351:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.351:0050:0054:trace:font:load_system_links L"MS PMincho": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.351:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.351:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.351:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,19,1,0x21ea20,4096)
0054: enum_key_value( hkey=003c, index=19, info_class=1 )
0054: enum_key_value() = 0 { type=7, total=478, namelen=24, name=L"MS UI Gothic", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.353:0050:0054:trace:font:load_system_links L"MS UI Gothic": L"MICROSS.TTF,Microsoft Sans Serif"
7935.353:0050:0054:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.353:0050:0054:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.353:0050:0054:trace:font:load_system_links L"MS UI Gothic": L"MINGLIU.TTC,PMingLiU"
7935.353:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.353:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.353:0050:0054:trace:font:load_system_links L"MS UI Gothic": L"SIMSUN.TTC,SimSun"
7935.353:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.353:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.353:0050:0054:trace:font:load_system_links L"MS UI Gothic": L"GULIM.TTC,Gulim"
7935.353:0050:0054:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"Gulim"
7935.353:0050:0054:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"Gulim"
7935.353:0050:0054:trace:font:load_system_links L"MS UI Gothic": L"YUGOTHM.TTC,Yu Gothic UI"
7935.353:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.353:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.353:0050:0054:trace:font:load_system_links L"MS UI Gothic": L"MSJH.TTC,Microsoft JhengHei UI"
7935.353:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.353:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.353:0050:0054:trace:font:load_system_links L"MS UI Gothic": L"MSYH.TTC,Microsoft YaHei UI"
7935.353:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.353:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.353:0050:0054:trace:font:load_system_links L"MS UI Gothic": L"MALGUN.TTF,Malgun Gothic"
7935.353:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.353:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.353:0050:0054:trace:font:load_system_links L"MS UI Gothic": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.353:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.353:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.353:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,20,1,0x21ea20,4096)
0054: enum_key_value( hkey=003c, index=20, info_class=1 )
0054: enum_key_value() = 0 { type=7, total=480, namelen=16, name=L"PMingLiU", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,50,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.355:0050:0054:trace:font:load_system_links L"PMingLiU": L"MICROSS.TTF,Microsoft Sans Serif"
7935.355:0050:0054:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.355:0050:0054:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.355:0050:0054:trace:font:load_system_links L"PMingLiU": L"SIMSUN.TTC,SimSun"
7935.355:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.355:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.355:0050:0054:trace:font:load_system_links L"PMingLiU": L"MSMINCHO.TTC,MS PMincho"
7935.355:0050:0054:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS PMincho"
7935.355:0050:0054:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS PMincho"
7935.355:0050:0054:trace:font:load_system_links L"PMingLiU": L"BATANG.TTC,Batang"
7935.355:0050:0054:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"Batang"
7935.355:0050:0054:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"Batang"
7935.355:0050:0054:trace:font:load_system_links L"PMingLiU": L"MSJH.TTC,Microsoft JhengHei UI"
7935.355:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.355:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.355:0050:0054:trace:font:load_system_links L"PMingLiU": L"MSYH.TTC,Microsoft YaHei UI"
7935.355:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.355:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.355:0050:0054:trace:font:load_system_links L"PMingLiU": L"YUGOTHM.TTC,Yu Gothic UI"
7935.355:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.355:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.355:0050:0054:trace:font:load_system_links L"PMingLiU": L"MALGUN.TTF,Malgun Gothic"
7935.355:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.355:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.355:0050:0054:trace:font:load_system_links L"PMingLiU": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.355:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.355:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.355:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,21,1,0x21ea20,4096)
0054: enum_key_value( hkey=003c, index=21, info_class=1 )
0054: enum_key_value() = 0 { type=7, total=532, namelen=26, name=L"PMingLiU-ExtB", data={4d,00,49,00,43,00,52,00,4f,00,53,00,53,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,53,00,61,00,6e,00,73,00,20,00,53,00,65,00,72,00,69,00,66,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,4d,00,53,00,4d,00,49,00,4e,00,43,00,48,00,4f,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,50,00,4d,00,69,00,6e,00,63,00,68,00,6f,00,00,00,42,00,41,00,54,00,41,00,4e,00,47,00,2e,00,54,00,54,00,43,00,2c,00,42,00,61,00,74,00,61,00,6e,00,67,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.356:0050:0054:trace:font:load_system_links L"PMingLiU-ExtB": L"MICROSS.TTF,Microsoft Sans Serif"
7935.356:0050:0054:trace:font:find_face_from_filename looking for file L"MICROSS.TTF" name L"Microsoft Sans Serif"
7935.356:0050:0054:trace:font:load_system_links Unable to find file L"MICROSS.TTF" family L"Microsoft Sans Serif"
7935.356:0050:0054:trace:font:load_system_links L"PMingLiU-ExtB": L"MINGLIU.TTC,PMingLiU"
7935.356:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.356:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.356:0050:0054:trace:font:load_system_links L"PMingLiU-ExtB": L"SIMSUN.TTC,SimSun"
7935.356:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.356:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.356:0050:0054:trace:font:load_system_links L"PMingLiU-ExtB": L"MSMINCHO.TTC,MS PMincho"
7935.356:0050:0054:trace:font:find_face_from_filename looking for file L"MSMINCHO.TTC" name L"MS PMincho"
7935.356:0050:0054:trace:font:load_system_links Unable to find file L"MSMINCHO.TTC" family L"MS PMincho"
7935.356:0050:0054:trace:font:load_system_links L"PMingLiU-ExtB": L"BATANG.TTC,Batang"
7935.356:0050:0054:trace:font:find_face_from_filename looking for file L"BATANG.TTC" name L"Batang"
7935.356:0050:0054:trace:font:load_system_links Unable to find file L"BATANG.TTC" family L"Batang"
7935.356:0050:0054:trace:font:load_system_links L"PMingLiU-ExtB": L"MSJH.TTC,Microsoft JhengHei UI"
7935.356:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.356:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.356:0050:0054:trace:font:load_system_links L"PMingLiU-ExtB": L"MSYH.TTC,Microsoft YaHei UI"
7935.356:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.356:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.356:0050:0054:trace:font:load_system_links L"PMingLiU-ExtB": L"YUGOTHM.TTC,Yu Gothic UI"
7935.356:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.356:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.356:0050:0054:trace:font:load_system_links L"PMingLiU-ExtB": L"MALGUN.TTF,Malgun Gothic"
7935.356:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.356:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.356:0050:0054:trace:font:load_system_links L"PMingLiU-ExtB": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.356:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.356:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.356:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,22,1,0x21ea20,4096)
7935.356:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winemac.drv" -> ret c0000034
7935.358:0048:004c:warn:file:NtCreateFile L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winemac.drv" not found (c0000034)
0054: enum_key_value( hkey=003c, index=22, info_class=1 )
7935.358:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.358:0048:004c:SysCall  NtOpenFile(0062ee2c,80100000,0062ee40,0062ee38,00000005,00000060)
7935.358:0048:004c:trace:file:NtCreateFile handle=0x62ee2c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee38 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
0054: enum_key_value() = 0 { type=7, total=452, namelen=12, name=L"Tahoma", data={4d,00,53,00,47,00,4f,00,54,00,48,00,49,00,43,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,53,00,20,00,55,00,49,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,4d,00,49,00,4e,00,47,00,4c,00,49,00,55,00,2e,00,54,00,54,00,43,00,2c,00,50,00,4d,00,69,00,6e,00,67,00,4c,00,69,00,55,00,00,00,53,00,49,00,4d,00,53,00,55,00,4e,00,2e,00,54,00,54,00,43,00,2c,00,53,00,69,00,6d,00,53,00,75,00,6e,00,00,00,47,00,55,00,4c,00,49,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,47,00,75,00,6c,00,69,00,6d,00,00,00,59,00,55,00,47,00,4f,00,54,00,48,00,4d,00,2e,00,54,00,54,00,43,00,2c,00,59,00,75,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.358:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\winemac.drv" -> ret c0000034
7935.358:0050:0054:trace:font:load_system_links L"Tahoma": L"MSGOTHIC.TTC,MS UI Gothic"
7935.358:0048:004c:warn:file:NtCreateFile L"\\??\\Z:\\usr\\lib\\wine\\winemac.drv" not found (c0000034)
7935.358:0050:0054:trace:font:find_face_from_filename looking for file L"MSGOTHIC.TTC" name L"MS UI Gothic"
7935.358:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.358:0050:0054:trace:font:load_system_links Unable to find file L"MSGOTHIC.TTC" family L"MS UI Gothic"
7935.358:0050:0054:trace:font:load_system_links L"Tahoma": L"MINGLIU.TTC,PMingLiU"
7935.358:0050:0054:trace:font:find_face_from_filename looking for file L"MINGLIU.TTC" name L"PMingLiU"
7935.358:0050:0054:trace:font:load_system_links Unable to find file L"MINGLIU.TTC" family L"PMingLiU"
7935.358:0050:0054:trace:font:load_system_links L"Tahoma": L"SIMSUN.TTC,SimSun"
7935.358:0050:0054:trace:font:find_face_from_filename looking for file L"SIMSUN.TTC" name L"SimSun"
7935.358:0050:0054:trace:font:load_system_links Unable to find file L"SIMSUN.TTC" family L"SimSun"
7935.358:0050:0054:trace:font:load_system_links L"Tahoma": L"GULIM.TTC,Gulim"
7935.358:0050:0054:trace:font:find_face_from_filename looking for file L"GULIM.TTC" name L"Gulim"
7935.358:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028D6F0, return 1, status 0.
7935.358:0050:0054:trace:font:load_system_links Unable to find file L"GULIM.TTC" family L"Gulim"
7935.358:0050:0054:trace:font:load_system_links L"Tahoma": L"YUGOTHM.TTC,Yu Gothic UI"
7935.358:0050:0054:trace:font:find_face_from_filename looking for file L"YUGOTHM.TTC" name L"Yu Gothic UI"
7935.358:0050:0054:trace:font:load_system_links Unable to find file L"YUGOTHM.TTC" family L"Yu Gothic UI"
7935.358:0050:0054:trace:font:load_system_links L"Tahoma": L"MSJH.TTC,Microsoft JhengHei UI"
7935.358:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei UI"
7935.358:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei UI"
7935.358:0050:0054:trace:font:load_system_links L"Tahoma": L"MSYH.TTC,Microsoft YaHei UI"
7935.358:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei UI"
7935.358:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x832, return 0028DF40, status 0.
7935.358:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei UI"
7935.358:0050:0054:trace:font:load_system_links L"Tahoma": L"MALGUN.TTF,Malgun Gothic"
7935.358:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.358:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.358:0050:0054:trace:font:load_system_links L"Tahoma": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.358:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.358:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.358:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,23,1,0x21ea20,4096)
7935.358:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028DF40, return 1, status 0.
7935.358:0048:004c:warn:module:load_dll Failed to load module L"winemac.drv"; status=c0000135
7935.358:0048:004c:Ret  ntdll.LdrLoadDll() retval=c0000135 ret=7bc7281b
7935.360:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000135) ret=7bc728a9
0054: enum_key_value( hkey=003c, index=23, info_class=1 )
7935.360:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=0000007e ret=7bc728a9
7935.360:0048:004c:Call ntdll.RtlRunOnceExecuteOnce(7bcb8c80,7bc70990,00000000,00000000) ret=7bc26189
7935.360:0048:004c:Ret  ntdll.RtlRunOnceExecuteOnce() retval=00000000 ret=7bc26189
7935.360:0048:004c:Call ntdll.wcscpy(0062ef94,7bcb8cb4 L"") ret=7bc21d77
7935.360:0048:004c:Ret  ntdll.wcscpy() retval=0062ef94 ret=7bc21d77
7935.360:0048:004c:Call ntdll.RtlReleasePath(0028cd00) ret=7bc72830
0054: enum_key_value() = 0 { type=7, total=282, namelen=24, name=L"Yu Gothic UI", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,48,00,65,00,69,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.360:0050:0054:trace:font:load_system_links L"Yu Gothic UI": L"SEGOEUI.TTF,Segoe UI"
7935.360:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUI.TTF" name L"Segoe UI"
7935.360:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028CD00, return 1, status 0.
7935.360:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUI.TTF" family L"Segoe UI"
7935.360:0048:004c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc72830
7935.360:0050:0054:trace:font:load_system_links L"Yu Gothic UI": L"MSJH.TTC,Microsoft JhengHei"
7935.360:0048:004c:Ret  kernelbase.LoadLibraryW() retval=00000000 ret=7bf3cfb4
7935.360:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft JhengHei"
7935.360:0048:004c:Ret  KERNEL32.LoadLibraryW() retval=00000000 ret=00406b19
7935.360:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft JhengHei"
7935.360:0048:004c:Call ucrtbase.wcschr(0062f45c L"x11,wayland",0000002c) ret=00406abf
7935.360:0050:0054:trace:font:load_system_links L"Yu Gothic UI": L"MSYH.TTC,Microsoft YaHei"
7935.360:0048:004c:Ret  ucrtbase.wcschr() retval=0062f462 ret=00406abf
7935.360:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei"
7935.360:0048:004c:Call ucrtbase.wcscmp(0062f45c L"x11",00413f02 L"null") ret=00406ae0
7935.360:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei"
7935.360:0048:004c:Ret  ucrtbase.wcscmp() retval=00000001 ret=00406ae0
7935.360:0050:0054:trace:font:load_system_links L"Yu Gothic UI": L"MALGUN.TTF,Malgun Gothic"
7935.360:0048:004c:Call ucrtbase.__stdio_common_vswprintf(000000004,0062f20c,00000020,00413f2a L"wine%s.drv",00000000,0062f178) ret=0040c20f
7935.360:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.360:0048:004c:Ret  ucrtbase.__stdio_common_vswprintf() retval=0000000b ret=0040c20f
7935.360:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.360:0048:004c:Call KERNEL32.LoadLibraryW(0062f20c L"winex11.drv") ret=00406b19
7935.360:0050:0054:trace:font:load_system_links L"Yu Gothic UI": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.360:0048:004c:Call kernelbase.LoadLibraryW(0062f20c L"winex11.drv") ret=7bf3cfb4
7935.360:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.360:0048:004c:Call ntdll.RtlInitUnicodeString(0062f0e4,0062f20c L"winex11.drv") ret=7bc2a675
7935.360:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.360:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=0062f20c ret=7bc2a675
7935.360:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,24,1,0x21ea20,4096)
7935.360:0048:004c:Call ntdll.LdrGetDllPath(0062f20c L"winex11.drv",00000000,0062f0bc,0062f0c0) ret=7bc727f0
7935.360:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
0054: enum_key_value( hkey=003c, index=24, info_class=1 )
7935.361:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 0028E790, status 0.
7935.361:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
0054: enum_key_value() = 0 { type=7, total=352, namelen=34, name=L"Yu Gothic UI Bold", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,4a,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,59,00,48,00,42,00,44,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,42,00,6f,00,6c,00,64,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,42,00,44,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,42,00,6f,00,6c,00,64,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.361:0048:004c:Ret  ntdll.LdrGetDllPath() retval=00000000 ret=7bc727f0
7935.361:0048:004c:Call ntdll.LdrLoadDll(0028e790 L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;",00000000,0062f0e4,0062f0b8) ret=7bc7281b
7935.361:0048:004c:trace:module:load_dll looking for L"winex11.drv" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.361:0050:0054:trace:font:load_system_links L"Yu Gothic UI Bold": L"SEGOEUIB.TTF,Segoe UI Bold"
7935.361:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"winex11.drv" 0062EF00
7935.361:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUIB.TTF" name L"Segoe UI Bold"
7935.361:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUIB.TTF" family L"Segoe UI Bold"
7935.361:0050:0054:trace:font:load_system_links L"Yu Gothic UI Bold": L"MSJHBD.TTC,Microsoft Jhenghei UI Bold"
7935.361:0050:0054:trace:font:find_face_from_filename looking for file L"MSJHBD.TTC" name L"Microsoft Jhenghei UI Bold"
7935.361:0050:0054:trace:font:load_system_links Unable to find file L"MSJHBD.TTC" family L"Microsoft Jhenghei UI Bold"
7935.361:0050:0054:trace:font:load_system_links L"Yu Gothic UI Bold": L"MSYHBD.TTC,Microsoft YaHei Bold"
7935.361:0050:0054:trace:font:find_face_from_filename looking for file L"MSYHBD.TTC" name L"Microsoft YaHei Bold"
7935.361:0050:0054:trace:font:load_system_links Unable to find file L"MSYHBD.TTC" family L"Microsoft YaHei Bold"
7935.361:0050:0054:trace:font:load_system_links L"Yu Gothic UI Bold": L"MALGUNBD.TTF,Malgun Gothic Bold"
7935.361:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xa8, return 0028E838, status 0.
7935.361:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUNBD.TTF" name L"Malgun Gothic Bold"
7935.361:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winex11.drv",0062EFB8,00000000,00000000)
7935.361:0050:0054:trace:font:load_system_links Unable to find file L"MALGUNBD.TTF" family L"Malgun Gothic Bold"
7935.361:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winex11.drv" 520 0062EC64 00000000)
7935.361:0050:0054:trace:font:load_system_links L"Yu Gothic UI Bold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.361:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winex11.drv" 520 0062EC64 00000000 00000000)
7935.361:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.361:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.361:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,25,1,0x21ea20,4096)
0054: enum_key_value( hkey=003c, index=25, info_class=1 )
7935.363:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F680, status 0.
7935.363:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.363:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
0054: enum_key_value() = 0 { type=7, total=366, namelen=36, name=L"Yu Gothic UI Light", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,4d,00,53,00,4a,00,48,00,4c,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,4d,00,53,00,59,00,48,00,4c,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,20,00,4c,00,69,00,67,00,68,00,74,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,53,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,53,00,65,00,6d,00,69,00,6c,00,69,00,67,00,68,00,74,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.363:0050:0054:trace:font:load_system_links L"Yu Gothic UI Light": L"SEGOEUIL.TTF,Segoe UI Light"
7935.363:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUIL.TTF" name L"Segoe UI Light"
7935.363:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUIL.TTF" family L"Segoe UI Light"
7935.363:0050:0054:trace:font:load_system_links L"Yu Gothic UI Light": L"MSJHL.TTC,Microsoft Jhenghei UI Light"
7935.363:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winex11.drv" -> ret c0000034
7935.363:0050:0054:trace:font:find_face_from_filename looking for file L"MSJHL.TTC" name L"Microsoft Jhenghei UI Light"
7935.363:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winex11.drv" not found (c0000034)
7935.363:0050:0054:trace:font:load_system_links Unable to find file L"MSJHL.TTC" family L"Microsoft Jhenghei UI Light"
7935.363:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.363:0050:0054:trace:font:load_system_links L"Yu Gothic UI Light": L"MSYHL.TTC,Microsoft YaHei Light"
7935.363:0050:0054:trace:font:find_face_from_filename looking for file L"MSYHL.TTC" name L"Microsoft YaHei Light"
7935.363:0050:0054:trace:font:load_system_links Unable to find file L"MSYHL.TTC" family L"Microsoft YaHei Light"
7935.363:0050:0054:trace:font:load_system_links L"Yu Gothic UI Light": L"MALGUNSL.TTF,Malgun Gothic Semilight"
7935.363:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUNSL.TTF" name L"Malgun Gothic Semilight"
7935.363:0050:0054:trace:font:load_system_links Unable to find file L"MALGUNSL.TTF" family L"Malgun Gothic Semilight"
7935.363:0050:0054:trace:font:load_system_links L"Yu Gothic UI Light": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.363:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.363:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F680, return 1, status 0.
7935.363:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.363:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winex11.drv",0062EFB8,00000000,00000000)
7935.363:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,26,1,0x21ea20,4096)
7935.363:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winex11.drv" 520 0062EC64 00000000)
7935.363:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winex11.drv" 520 0062EC64 00000000 00000000)
0054: enum_key_value( hkey=003c, index=26, info_class=1 )
7935.364:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F6F0, status 0.
7935.364:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
0054: enum_key_value() = 0 { type=7, total=324, namelen=42, name=L"Yu Gothic UI Semibold", data={53,00,45,00,47,00,55,00,49,00,53,00,42,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,65,00,6d,00,69,00,62,00,6f,00,6c,00,64,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.364:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.364:0050:0054:trace:font:load_system_links L"Yu Gothic UI Semibold": L"SEGUISB.TTF,Segoe UI Semibold"
7935.364:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISB.TTF" name L"Segoe UI Semibold"
7935.364:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISB.TTF" family L"Segoe UI Semibold"
7935.364:0050:0054:trace:font:load_system_links L"Yu Gothic UI Semibold": L"MSJH.TTC,Microsoft Jhenghei UI"
7935.364:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft Jhenghei UI"
7935.364:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft Jhenghei UI"
7935.364:0050:0054:trace:font:load_system_links L"Yu Gothic UI Semibold": L"MSYH.TTC,Microsoft YaHei"
7935.364:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winex11.drv" -> ret c0000034
7935.364:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei"
7935.364:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winex11.drv" not found (c0000034)
7935.364:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei"
7935.364:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.364:0050:0054:trace:font:load_system_links L"Yu Gothic UI Semibold": L"MALGUN.TTF,Malgun Gothic"
7935.364:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUN.TTF" name L"Malgun Gothic"
7935.364:0050:0054:trace:font:load_system_links Unable to find file L"MALGUN.TTF" family L"Malgun Gothic"
7935.364:0050:0054:trace:font:load_system_links L"Yu Gothic UI Semibold": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.364:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.364:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.364:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,27,1,0x21ea20,4096)
7935.364:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F6F0, return 1, status 0.
7935.364:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winex11.drv",0062EFB8,00000000,00000000)
7935.364:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winex11.drv" 520 0062EC64 00000000)
0054: enum_key_value( hkey=003c, index=27, info_class=1 )
7935.365:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winex11.drv" 520 0062EC64 00000000 00000000)
0054: enum_key_value() = 0 { type=7, total=356, namelen=44, name=L"Yu Gothic UI Semilight", data={53,00,45,00,47,00,4f,00,45,00,55,00,49,00,53,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,65,00,6d,00,69,00,6c,00,69,00,67,00,68,00,74,00,00,00,4d,00,53,00,4a,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,4a,00,68,00,65,00,6e,00,67,00,68,00,65,00,69,00,20,00,55,00,49,00,00,00,4d,00,53,00,59,00,48,00,2e,00,54,00,54,00,43,00,2c,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,00,20,00,59,00,61,00,48,00,65,00,69,00,00,00,4d,00,41,00,4c,00,47,00,55,00,4e,00,53,00,4c,00,2e,00,54,00,54,00,46,00,2c,00,4d,00,61,00,6c,00,67,00,75,00,6e,00,20,00,47,00,6f,00,74,00,68,00,69,00,63,00,20,00,53,00,65,00,6d,00,69,00,6c,00,69,00,67,00,68,00,74,00,00,00,53,00,45,00,47,00,55,00,49,00,53,00,59,00,4d,00,2e,00,54,00,54,00,46,00,2c,00,53,00,65,00,67,00,6f,00,65,00,20,00,55,00,49,00,20,00,53,00,79,00,6d,00,62,00,6f,00,6c,00,00,00,00,00} }
7935.365:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027F760, status 0.
7935.365:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.365:0050:0054:trace:font:load_system_links L"Yu Gothic UI Semilight": L"SEGOEUISL.TTF,Segoe UI Semilight"
7935.365:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.365:0050:0054:trace:font:find_face_from_filename looking for file L"SEGOEUISL.TTF" name L"Segoe UI Semilight"
7935.365:0050:0054:trace:font:load_system_links Unable to find file L"SEGOEUISL.TTF" family L"Segoe UI Semilight"
7935.365:0050:0054:trace:font:load_system_links L"Yu Gothic UI Semilight": L"MSJH.TTC,Microsoft Jhenghei UI"
7935.365:0050:0054:trace:font:find_face_from_filename looking for file L"MSJH.TTC" name L"Microsoft Jhenghei UI"
7935.365:0050:0054:trace:font:load_system_links Unable to find file L"MSJH.TTC" family L"Microsoft Jhenghei UI"
7935.365:0050:0054:trace:font:load_system_links L"Yu Gothic UI Semilight": L"MSYH.TTC,Microsoft YaHei"
7935.365:0050:0054:trace:font:find_face_from_filename looking for file L"MSYH.TTC" name L"Microsoft YaHei"
7935.365:0050:0054:trace:font:load_system_links Unable to find file L"MSYH.TTC" family L"Microsoft YaHei"
7935.365:0050:0054:trace:font:load_system_links L"Yu Gothic UI Semilight": L"MALGUNSL.TTF,Malgun Gothic Semilight"
7935.365:0050:0054:trace:font:find_face_from_filename looking for file L"MALGUNSL.TTF" name L"Malgun Gothic Semilight"
7935.365:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winex11.drv" -> ret c000003a
7935.365:0050:0054:trace:font:load_system_links Unable to find file L"MALGUNSL.TTF" family L"Malgun Gothic Semilight"
7935.365:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system\\winex11.drv" not found (c000003a)
7935.365:0050:0054:trace:font:load_system_links L"Yu Gothic UI Semilight": L"SEGUISYM.TTF,Segoe UI Symbol"
7935.365:0048:004c:SysRet   NtOpenFile() retval=c000003a
7935.365:0050:0054:trace:font:find_face_from_filename looking for file L"SEGUISYM.TTF" name L"Segoe UI Symbol"
7935.365:0050:0054:trace:font:load_system_links Unable to find file L"SEGUISYM.TTF" family L"Segoe UI Symbol"
7935.365:0050:0054:trace:reg:NtEnumerateValueKey (0x3c,28,1,0x21ea20,4096)
0054: enum_key_value( hkey=003c, index=28, info_class=1 )
7935.366:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F760, return 1, status 0.
0054: enum_key_value() = NO_MORE_ENTRIES { type=0, total=0, namelen=0, name=L"", data={} }
7935.366:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winex11.drv",0062EFB8,00000000,00000000)
7935.366:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winex11.drv" 520 0062EC64 00000000)
7935.366:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winex11.drv" 520 0062EC64 00000000 00000000)
0054: close_handle( handle=003c )
0054: close_handle() = 0
7935.367:0050:0054:trace:font:find_face_from_filename looking for file L"tahoma.ttf" name L"Tahoma"
7935.367:0050:0054:trace:font:load_system_links Found Tahoma in L"\\??\\Z:\\usr\\share\\wine\\fonts\\tahoma.ttf" index 0
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Liberation Sans"
7935.367:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3e, return 0028E910, status 0.
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Liberation Sans"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"Liberation Sans Bold"	600001bf
7935.367:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Italic"	L"Liberation Sans Italic"	600001bf
7935.367:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"Liberation Sans Bold Italic"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Liberation Mono"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Liberation Mono"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"Liberation Mono Bold"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Italic"	L"Liberation Mono Italic"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"Liberation Mono Bold Italic"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Liberation Serif"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Liberation Serif"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"Liberation Serif Bold"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Italic"	L"Liberation Serif Italic"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"Liberation Serif Bold Italic"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"C059"
7935.367:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winex11.drv" -> ret c0000034
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Roman"	L"C059-Roman"	6000009f
7935.367:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\winex11.drv" not found (c0000034)
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"C059-Bold"	6000009f
7935.367:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Italic"	L"C059-Italic"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"C059-BdIta"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Courier"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Courier Regular"	00000002 13
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"D050000L"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"D050000L"	00000001
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"DejaVu Math TeX Gyre"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"DejaVuMathTeXGyre-Regular"	60000193
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"DejaVu Sans"
7935.367:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028E910, return 1, status 0.
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Book"	L"DejaVu Sans"	600001ff
7935.367:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winex11.drv",0062EFB8,00000000,00000000)
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"DejaVu Sans Bold"	600001ff
7935.367:0048:004c:trace:file:RtlGetFullPathName_U (L".\\winex11.drv" 520 0062EC64 00000000)
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Oblique"	L"DejaVu Sans Oblique"	600001bf
7935.367:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\winex11.drv" 520 0062EC64 00000000 00000000)
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"DejaVu Sans Bold Oblique"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"DejaVu Sans Condensed"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Book"	L"DejaVu Sans Condensed"	600001ff
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"DejaVu Sans Condensed Bold"	600001ff
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Oblique"	L"DejaVu Sans Condensed Oblique"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"DejaVu Sans Condensed Bold Oblique"	600001bf
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"DejaVu Sans Light"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"ExtraLight"	L"DejaVu Sans ExtraLight"	0000019f
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"DejaVu Sans Mono"
7935.367:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F7D0, status 0.
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Book"	L"DejaVu Sans Mono"	600001df
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"DejaVu Sans Mono Bold"	600001df
7935.367:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Oblique"	L"DejaVu Sans Mono Oblique"	6000019f
7935.367:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"DejaVu Sans Mono Bold Oblique"	6000019f
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"DejaVu Serif"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Book"	L"DejaVu Serif"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"DejaVu Serif Bold"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Italic"	L"DejaVu Serif Italic"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"DejaVu Serif Bold Italic"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"DejaVu Serif Condensed"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Book"	L"DejaVu Serif Condensed"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"DejaVu Serif Condensed Bold"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Italic"	L"DejaVu Serif Condensed Italic"	6000009f
7935.367:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winex11.drv" -> ret c0000034
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"DejaVu Serif Condensed Bold Italic"	6000009f
7935.367:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winex11.drv" not found (c0000034)
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Hack"
7935.367:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Hack Regular"	2000019f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"Hack Bold"	2000019f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Italic"	L"Hack Italic"	0000019f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"Hack Bold Italic"	2000019f
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Luxi Mono"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Luxi Mono Regular"	00000093
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"Luxi Mono Bold"	00000093
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Oblique"	L"Luxi Mono Oblique"	00000093
7935.367:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F7D0, return 1, status 0.
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"Luxi Mono Bold Oblique"	00000093
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Luxi Sans"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Luxi Sans Regular"	00000093
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"Luxi Sans Bold"	00000093
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Oblique"	L"Luxi Sans Oblique"	00000093
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"Luxi Sans Bold Oblique"	00000093
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Luxi Serif"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Luxi Serif Regular"	00000093
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"Luxi Serif Bold"	00000093
7935.367:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028E838, return 1, status 0.
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Oblique"	L"Luxi Serif Oblique"	00000093
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"Luxi Serif Bold Oblique"	00000093
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Marlett"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Marlett"	80000000
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"MS Sans Serif"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"MS Sans Serif Regular"	00000002 13
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"MS Sans Serif Regular"	00000002 16
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Nimbus Mono PS"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"NimbusMonoPS-Regular"	6000009f
7935.367:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x86e, return 0028F4C0, status 0.
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"NimbusMonoPS-Bold"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Italic"	L"NimbusMonoPS-Italic"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"NimbusMonoPS-BoldItalic"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Nimbus Roman"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"NimbusRoman-Regular"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"NimbusRoman-Bold"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Italic"	L"NimbusRoman-Italic"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"NimbusRoman-BoldItalic"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Nimbus Sans"
7935.367:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028F4C0, return 1, status 0.
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"NimbusSans-Regular"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"NimbusSans-Bold"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Italic"	L"NimbusSans-Italic"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"NimbusSans-BoldItalic"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Nimbus Sans Narrow"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"NimbusSansNarrow-Regular"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"NimbusSansNarrow-Bold"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Oblique"	L"NimbusSansNarrow-Oblique"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Oblique"	L"NimbusSansNarrow-BoldOblique"	6000009f
7935.367:0048:004c:SysCall  NtAllocateVirtualMemory(ffffffff,0062edf8,00000000,0062edf4,00001000,00000004)
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"P052"
7935.367:0048:004c:trace:virtual:NtAllocateVirtualMemory 0xffffffff 0x290000 00010000 1000 00000004
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Roman"	L"P052-Roman"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"P052-Bold"	6000009f
7935.367:0048:004c:trace:virtual:dump_view View: 0x260000 - 0x35ffff --rw- (valloc)
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Italic"	L"P052-Italic"	6000009f
7935.367:0048:004c:trace:virtual:dump_view       0x260000 - 0x29ffff c-rw-
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold Italic"	L"P052-BoldItalic"	6000009f
7935.367:0048:004c:trace:virtual:dump_view       0x2a0000 - 0x35ffff --rw-
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Small Fonts"
7935.367:0048:004c:SysRet   NtAllocateVirtualMemory() retval=00000000
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Small Fonts Regular"	00000002 11
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Standard Symbols PS"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Standard Symbols PS"	00000001
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Symbol"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Symbol"	80000000
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"System"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"System Regular"	00000002 16
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"Tahoma"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Tahoma"	20000057
7935.367:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x832, return 0028FD48, status 0.
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Bold"	L"Tahoma Bold"	20000057
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"URW Bookman"
7935.367:0048:004c:SysCall  NtOpenFile(0062ee2c,80100000,0062ee40,0062ee38,00000005,00000060)
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Demi"	L"URWBookman-Demi"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Light"	L"URWBookman-Light"	6000009f
7935.367:0048:004c:trace:file:NtCreateFile handle=0x62ee2c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee38 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Demi Italic"	L"URWBookman-DemiItalic"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Light Italic"	L"URWBookman-LightItalic"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list Family: L"URW Gothic"
7935.367:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" -> ret 0 nt L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" unix "/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/winex11.drv"
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Book"	L"URWGothic-Book"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Demi"	L"URWGothic-Demi"	6000009f
7935.367:0050:0054:trace:font:dump_gdi_font_list 	L"Book Oblique"	L"URWGothic-BookOblique"	6000009f
7935.372:0050:0054:trace:font:dump_gdi_font_list 	L"Demi Oblique"	L"URWGothic-DemiOblique"	6000009f
004c: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000040,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv"}, filename="/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/winex11.drv" )
7935.372:0050:0054:trace:font:dump_gdi_font_list Family: L"Webdings"
7935.372:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Webdings"	80000000
7935.372:0050:0054:trace:font:dump_gdi_font_list Family: L"Wingdings"
7935.372:0050:0054:trace:font:dump_gdi_font_list 	L"Regular"	L"Wingdings"	80000000
7935.372:0050:0054:trace:font:dump_gdi_font_list Family: L"Z003"
7935.372:0050:0054:trace:font:dump_gdi_font_list 	L"Medium Italic"	L"Z003-MediumItalic"	6000009f
004c: create_file() = 0 { handle=004c }
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"Arial CE",0 -> L"Arial",238
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"Courier New CE",0 -> L"Courier New",238
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"Courier",0 -> L"Courier New",238
7935.372:0048:004c:SysRet   NtOpenFile() retval=00000000
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"Fixedsys",0 -> L"Fixedsys",238
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"Helv",0 -> L"MS Sans Serif",238
7935.372:0048:004c:SysCall  NtFsControlFile(0000004c,00000000,00000000,00000000,0062ee38,0009009c,00000000,00000000,0062ee58,00000040)
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"MS Sans Serif",0 -> L"MS Sans Serif",238
7935.372:0048:004c:trace:file:NtFsControlFile (0x4c,(nil),(nil),(nil),0x62ee38,0x0009009c,(nil),0x00000000,0x62ee58,0x00000040)
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"MS Serif",0 -> L"MS Serif",238
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"MS Shell Dlg" -> L"Tahoma"
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"Small Fonts",0 -> L"Small Fonts",238
004c: get_handle_fd( handle=004c )
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"System",0 -> L"System",238
004c: *fd* 004c -> 84
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"Times New Roman CE",0 -> L"Times New Roman",238
7935.372:0050:0054:trace:font:dump_gdi_font_subst L"Tms Rmn" -> L"Times New Roman"
004c: get_handle_fd() = 0 { type=1, cacheable=1, access=00120089, options=00000060 }
7935.372:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100020 1/65536
7935.372:0050:0054:trace:gdi:create_brush 0x1100020
7935.372:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100021 2/65536
7935.372:0048:004c:SysRet   NtFsControlFile() retval=00000000
7935.372:0050:0054:trace:gdi:create_brush 0x1100021
7935.372:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100022 3/65536
7935.372:0048:004c:SysCall  NtCreateSection(0062efa8,000f000d,00000000,0062ee30,00000020,01000000,0000004c)
7935.372:0050:0054:trace:gdi:create_brush 0x1100022
7935.372:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100023 4/65536
7935.373:0050:0054:trace:gdi:create_brush 0x1100023
004c: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=004c, objattr={} )
7935.373:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100024 5/65536
7935.373:0050:0054:trace:gdi:create_brush 0x1100024
7935.373:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100025 6/65536
004c: create_mapping() = 0 { handle=0058 }
7935.373:0050:0054:trace:gdi:create_brush 0x1100025
7935.373:0050:0054:trace:gdi:create_pen 0 0 RGB(ff,ff,ff)
7935.373:0048:004c:SysRet   NtCreateSection() retval=00000000
7935.373:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_PEN 0x1300026 7/65536
7935.373:0048:004c:SysCall  NtQuerySection(00000058,00000001,0062efdc,00000030,00000000)
7935.373:0050:0054:trace:gdi:create_pen 0 0 RGB(00,00,00)
7935.373:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_PEN 0x1300027 8/65536
004c: get_mapping_info( handle=0058, access=00000001 )
7935.373:0050:0054:trace:gdi:create_pen 5 0 RGB(00,00,00)
7935.373:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_PEN 0x1300028 9/65536
004c: get_mapping_info() = 0 { size=00011000, flags=01800000, shared_file=0000, name_len=0, total=195, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00001080,map_size=00011000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2106,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00001000,file_size=00011a0a,checksum=000196f5}, name=L"", exp_name="" }
7935.373:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0029 10/65536
7935.373:0048:004c:SysRet   NtQuerySection() retval=00000000
7935.373:0050:0054:trace:font:NtGdiHfontCreate (12 0 0 0 31 0 0 0 255) L""    => 0x10a0029
7935.373:0048:004c:SysCall  NtClose(0000004c)
7935.373:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a002a 11/65536
7935.373:0050:0054:trace:font:NtGdiHfontCreate (12 0 0 0 31 0 0 0 255) L""    => 0x10a002a
004c: close_handle( handle=004c )
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a002b 12/65536
004c: close_handle() = 0
7935.374:0050:0054:trace:font:NtGdiHfontCreate (12 0 0 0 31 0 0 0 0) L"Courier"    => 0x10a002b
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a002c 13/65536
7935.374:0048:004c:SysRet   NtClose() retval=00000000
7935.374:0050:0054:trace:font:NtGdiHfontCreate (12 0 0 0 22 0 0 0 0) L"MS Sans Serif"    => 0x10a002c
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a002d 14/65536
7935.374:0050:0054:trace:font:NtGdiHfontCreate (16 7 0 0 22 0 0 0 238) L"System" Bold   => 0x10a002d
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a002e 15/65536
7935.374:0050:0054:trace:font:NtGdiHfontCreate (16 0 0 0 22 0 0 0 238) L"System" Bold   => 0x10a002e
7935.374:0050:0054:trace:palette:NtGdiCreatePaletteInternal entries=20
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_PAL 0x108002f 16/65536
7935.374:0050:0054:trace:palette:NtGdiCreatePaletteInternal    returning 0x108002f
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0030 17/65536
7935.374:0050:0054:trace:font:NtGdiHfontCreate (16 0 0 0 31 0 0 0 238) L"Courier"    => 0x10a0030
7935.374:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028FD48, return 1, status 0.
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0031 18/65536
7935.374:0050:0054:trace:font:NtGdiHfontCreate (-11 0 0 0 22 0 0 0 238) L"MS Shell Dlg"    => 0x10a0031
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BRUSH 0x1100032 19/65536
7935.374:0050:0054:trace:gdi:create_brush 0x1100032
7935.374:0050:0054:trace:gdi:create_pen 0 0 RGB(00,00,00)
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_PEN 0x1300033 20/65536
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_BITMAP 0x1090034 21/65536
7935.374:0050:0054:trace:bitmap:NtGdiCreateBitmap 1x1, bpp 1 planes 1: returning 0x1090034
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0035 22/65536
7935.374:0050:0054:trace:font:NtGdiHfontCreate (16 7 0 0 22 0 0 0 238) L"System" Bold   => 0x10a0035
7935.374:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 0028E970, status 0.
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0036 23/65536
7935.374:0050:0054:trace:font:NtGdiHfontCreate (16 0 0 0 31 0 0 0 238) L"Courier"    => 0x10a0036
7935.374:0048:004c:SysCall  NtMapViewOfSection(00000058,ffffffff,0062efc0,00000000,00000000,00000000,0062f00c,00000001,00000000,00000020)
7935.374:0050:0054:trace:gdi:alloc_gdi_handle allocated NTGDI_OBJ_FONT 0x10a0037 24/65536
7935.374:0048:004c:trace:virtual:NtMapViewOfSection handle=0x58 process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x20
7935.374:0050:0054:trace:font:NtGdiHfontCreate (-11 0 0 0 22 0 0 0 238) L"MS Shell Dlg"    => 0x10a0037
7935.374:0050:0054:trace:reg:NtCreateKey (0x2c,L"Keyboard Layout\\Preload",<null>,0,2000000,0x21e79c)
004c: get_mapping_info( handle=0058, access=0000000c )
004c: get_mapping_info() = 0 { size=00011000, flags=01800000, shared_file=0000, name_len=88, total=195, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00001080,map_size=00011000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2106,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00001000,file_size=00011a0a,checksum=000196f5}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv", exp_name="winex11.drv" }
0054: create_key( access=02000000, options=00000000, objattr={rootdir=002c,attributes=000000c0,sd={},name=L"Keyboard Layout\\Preload"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=003c }
7935.375:0050:0054:trace:reg:NtCreateKey <- 0x3c
7935.375:0048:004c:trace:reg:NtQueryValueKey (0xc,L"Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv",2,0x21fa00,80)
7935.375:0050:0054:trace:keyboard:NtUserGetKeyboardLayoutName name 0x21ea76
004c: get_key_value( hkey=000c, name=L"Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" )
7935.375:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Keyboard Layouts",2000000,0x21d95c)
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Keyboard Layouts" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.375:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.375:0048:004c:trace:reg:NtQueryValueKey (0xc,L"*winex11.drv",2,0x21fa00,80)
7935.375:0050:0054:trace:keyboard:NtUserGetKeyboardLayoutName ret L"00000405"
7935.375:0050:0054:trace:reg:NtSetValueKey (0x3c,L"1",1,0x21ea76,18)
004c: get_key_value( hkey=000c, name=L"*winex11.drv" )
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
0054: set_key_value( hkey=003c, type=1, namelen=2, name=L"1", data={30,00,30,00,30,00,30,00,30,00,34,00,30,00,35,00,00,00} )
0054: set_key_value() = 0
7935.376:0048:004c:trace:reg:NtQueryValueKey (0xc,L"winex11.drv",2,0x21fa00,80)
0054: close_handle( handle=003c )
0054: close_handle() = 0
004c: get_key_value( hkey=000c, name=L"winex11.drv" )
004c: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.376:0048:004c:trace:module:get_load_order got hardcoded default for L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv"
7935.376:0050:0054:trace:reg:NtCreateKey (0x2c,L"Software\\Wine",<null>,0,2000000,0x21e79c)
7935.376:0048:004c:trace:module:find_builtin_dll looking for "winex11.drv" for file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv"
0054: create_key( access=02000000, options=00000000, objattr={rootdir=002c,attributes=000000c0,sd={},name=L"Software\\Wine"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=003c }
004c: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000000,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv"}, filename="/usr/lib/wine/i386-windows/winex11.drv" )
004c: create_file() = 0 { handle=004c }
7935.376:0050:0054:trace:reg:NtCreateKey <- 0x3c
7935.376:0050:0054:trace:reg:NtCreateKey (0x3c,L"Temporary System Parameters",<null>,1,2000000,0x21e79c)
004c: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=004c, objattr={} )
004c: create_mapping() = 0 { handle=005c }
0054: create_key( access=02000000, options=00000001, objattr={rootdir=003c,attributes=000000c0,sd={},name=L"Temporary System Parameters"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=0040 }
7935.377:0050:0054:trace:reg:NtCreateKey <- 0x40
004c: close_handle( handle=004c )
004c: close_handle() = 0
0054: close_handle( handle=003c )
0054: close_handle() = 0
7935.377:0050:0054:trace:reg:NtCreateKey ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current",<null>,0,2000000,0x21e79c)
004c: get_mapping_info( handle=005c, access=00000004 )
004c: get_mapping_info() = 0 { size=00011000, flags=01800000, shared_file=0000, name_len=88, total=195, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00001080,map_size=00011000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2106,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00001000,file_size=00011a0a,checksum=000196f5}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv", exp_name="winex11.drv" }
0054: create_key( access=02000000, options=00000000, objattr={rootdir=0000,attributes=000000c0,sd={},name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Hardware Profiles\\Current"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=003c }
7935.377:0050:0054:trace:reg:NtCreateKey <- 0x3c
7935.377:0050:0054:trace:reg:NtCreateKey (0x2c,L"Control Panel\\Desktop",<null>,0,2000000,0x21d70c)
004c: get_handle_fd( handle=005c )
004c: *fd* 005c -> 85
004c: get_handle_fd() = 0 { type=1, cacheable=1, access=000f000d, options=00000020 }
0054: create_key( access=02000000, options=00000000, objattr={rootdir=002c,attributes=000000c0,sd={},name=L"Control Panel\\Desktop"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=0044 }
7935.378:0050:0054:trace:reg:NtCreateKey <- 0x44
7935.378:0050:0054:trace:reg:NtCreateKey (0x40,L"Control Panel\\Desktop",<null>,1,2000000,0x21d70c)
004c: get_image_map_address( handle=005c )
004c: get_image_map_address() = 0 { addr=7b4c0000 }
0054: create_key( access=02000000, options=00000001, objattr={rootdir=0040,attributes=000000c0,sd={},name=L"Control Panel\\Desktop"}, class=L"" )
0054: create_key() = OBJECT_NAME_EXISTS { hkey=0048 }
7935.378:0050:0054:trace:reg:NtCreateKey <- 0x48
7935.378:0050:0054:trace:reg:NtQueryValueKey (0x48,L"LogPixels",2,0x21da00,4096)
7935.378:0048:004c:trace:module:map_image_into_view mapping PE file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" at 0x7b4c0000-0x7b4d1000
0054: get_key_value( hkey=0048, name=L"LogPixels" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.378:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .text at 0x7b4c1000 off 1000 size 1000 virt 1b0 flags 60000020
7935.378:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .data at 0x7b4c2000 off 2000 size 1000 virt 4 flags c0000040
7935.378:0050:0054:trace:reg:NtQueryValueKey (0x44,L"LogPixels",2,0x21da00,4096)
7935.378:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .rdata at 0x7b4c3000 off 3000 size 1000 virt 138 flags 40000040
0054: get_key_value( hkey=0044, name=L"LogPixels" )
7935.378:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /4 at 0x7b4c4000 off 4000 size 1000 virt 110 flags 40000040
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.378:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .bss at 0x7b4c5000 off 0 size 0 virt 8 flags c0000080
7935.378:0050:0054:trace:reg:NtOpenKeyEx (0x3c,L"Software\\Fonts",2000000,0x21e7e4)
7935.378:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .edata at 0x7b4c6000 off 5000 size 1000 virt 34 flags 40000040
7935.379:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .idata at 0x7b4c7000 off 6000 size 1000 virt 100 flags c0000040
0054: open_key( parent=003c, access=02000000, attributes=00000040, name=L"Software\\Fonts" )
0054: open_key() = 0 { hkey=004c }
7935.379:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .rsrc at 0x7b4c8000 off 7000 size 1000 virt 3a0 flags c0000040
7935.379:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .reloc at 0x7b4c9000 off 8000 size 1000 virt 30 flags 42000040
7935.379:0050:0054:trace:reg:NtOpenKeyEx <- 0x4c
7935.379:0050:0054:trace:reg:NtQueryValueKey (0x4c,L"LogPixels",2,0x21ecb0,16)
7935.379:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /14 at 0x7b4ca000 off 9000 size 1000 virt 70 flags 42000040
7935.379:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /29 at 0x7b4cb000 off a000 size 2000 virt 1341 flags 42000040
0054: get_key_value( hkey=004c, name=L"LogPixels" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.379:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /41 at 0x7b4cd000 off c000 size 1000 virt 542 flags 42000040
7935.379:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /55 at 0x7b4ce000 off d000 size 1000 virt 37c flags 42000040
0054: close_handle( handle=004c )
0054: close_handle() = 0
7935.379:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /67 at 0x7b4cf000 off e000 size 1000 virt 1c8 flags 42000040
7935.379:0048:004c:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /78 at 0x7b4d0000 off f000 size 1000 virt 70 flags 42000040
7935.379:0050:0054:trace:reg:NtQueryValueKey (0x48,L"DpiScalingVer",2,0x21da00,4096)
7935.379:0048:004c:trace:module:map_image_into_view relocating L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" dynamic base 10000000 -> 7b4c0000 mapped at 0x7b4c0000
0054: get_key_value( hkey=0048, name=L"DpiScalingVer" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.379:0050:0054:trace:reg:NtQueryValueKey (0x44,L"DpiScalingVer",2,0x21da00,4096)
0054: get_key_value( hkey=0044, name=L"DpiScalingVer" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
004c: map_image_view( mapping=005c, base=7b4c0000, size=00011000, offset=00000000, entry=00001080, machine=014c )
004c: map_image_view() = 0
7935.380:0048:004c:trace:virtual:dump_view View: 0x7b4c0000 - 0x7b4d0fff c-rWx (image)
7935.380:0050:0054:trace:reg:NtOpenKeyEx (0x2c,L"Software\\Wine\\X11 Driver",2000000,0x21e7c4)
7935.380:0048:004c:trace:virtual:dump_view       0x7b4c0000 - 0x7b4c0fff c-r--
7935.380:0048:004c:trace:virtual:dump_view       0x7b4c1000 - 0x7b4c1fff c-r-x
7935.380:0048:004c:trace:virtual:dump_view       0x7b4c2000 - 0x7b4c2fff c-rW-
0054: open_key( parent=002c, access=02000000, attributes=00000040, name=L"Software\\Wine\\X11 Driver" )
7935.380:0048:004c:trace:virtual:dump_view       0x7b4c3000 - 0x7b4c4fff c-r--
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.380:0048:004c:trace:virtual:dump_view       0x7b4c5000 - 0x7b4c5fff c-rW-
7935.380:0048:004c:trace:virtual:dump_view       0x7b4c6000 - 0x7b4c6fff c-r--
7935.380:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.380:0048:004c:trace:virtual:dump_view       0x7b4c7000 - 0x7b4c8fff c-rW-
7935.380:0050:0054:trace:reg:NtOpenKeyEx (0x2c,L"Software\\Microsoft\\Windows NT\\CurrentVersion\\AppCompatFlags\\Layers",2000000,0x21e7c4)
7935.380:0048:004c:trace:virtual:dump_view       0x7b4c9000 - 0x7b4d0fff c-r--
0054: open_key( parent=002c, access=02000000, attributes=00000040, name=L"Software\\Microsoft\\Windows NT\\CurrentVersion\\AppCompatFlags\\Layers" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
004c: close_handle( handle=005c )
004c: close_handle() = 0
7935.380:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.380:0048:004c:SysRet   NtMapViewOfSection() retval=00000000
7935.380:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AppCompatFlags\\Layers",2000000,0x21e7e4)
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AppCompatFlags\\Layers" )
0054: open_key() = OBJECT_PATH_SYNTAX_BAD { hkey=0000 }
7935.381:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.381:0050:0054:trace:reg:NtOpenKeyEx (0x2c,L"Software\\Wine\\AppDefaults",2000000,0x21e7c4)
0054: open_key( parent=002c, access=02000000, attributes=00000040, name=L"Software\\Wine\\AppDefaults" )
7935.381:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0xb8, return 0027CC68, status 0.
0054: open_key() = 0 { hkey=004c }
7935.381:0050:0054:trace:reg:NtOpenKeyEx <- 0x4c
7935.381:0050:0054:trace:reg:NtOpenKeyEx (0x4c,L"explorer.exe\\X11 Driver",2000000,0x21e9ec)
0054: open_key( parent=004c, access=02000000, attributes=00000040, name=L"explorer.exe\\X11 Driver" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.381:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.381:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x40, return 0028E9D0, status 0.
0054: close_handle( handle=004c )
0054: close_handle() = 0
0054: open_directory( access=00000006, attributes=00000000, rootdir=0000, directory_name=L"\\Sessions\\1\\Windows\\WindowStations" )
0054: open_directory() = 0 { handle=004c }
7935.382:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x2c, return 002858A8, status 0.
0054: create_winstation( flags=00000000, access=000f037f, attributes=000000c0, rootdir=004c, name=L"WinSta0" )
7935.382:0048:004c:trace:ntdll:RtlRbInsertNodeEx tree 7BFD5580, parent 00243980, right 1, node 0027CCD0.
0054: create_winstation() = 0 { handle=0050 }
7935.382:0048:004c:trace:resource:LdrFindResource_U module 7B4C0000 type #0018 name #0002 lang 0000 level 3
7935.382:0048:004c:trace:resource:find_entry_by_id root 7B4C8000 dir 7B4C8000 id 0018 not found
7935.382:0048:004c:trace:module:load_dll looking for L"kernel32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
0054: set_process_winstation( handle=0050 )
7935.382:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"kernel32.dll" 0062EA84
0054: set_process_winstation() = 0
7935.382:0048:004c:trace:module:load_dll Found L"C:\\windows\\system32\\kernel32.dll" for L"kernel32.dll" at 7BEB0000, count=-1
7935.382:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062ec24,0062ec28,00000004,0062ec2c)
7935.382:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b4c7054 00000004 00000004
7935.382:0048:004c:trace:virtual:get_vprot_range_size base 0x7b4c7000, size 0x1000, mask 0x20.
0054: set_user_object_info( handle=0050, flags=00000001, obj_flags=00000001 )
7935.382:0048:004c:trace:virtual:dump_view View: 0x7b4c0000 - 0x7b4d0fff c-rWx (image)
0054: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"" }
7935.382:0048:004c:trace:virtual:dump_view       0x7b4c0000 - 0x7b4c0fff c-r--
7935.382:0048:004c:trace:virtual:dump_view       0x7b4c1000 - 0x7b4c1fff c-r-x
7935.382:0048:004c:trace:virtual:dump_view       0x7b4c2000 - 0x7b4c2fff c-rW-
7935.382:0048:004c:trace:virtual:dump_view       0x7b4c3000 - 0x7b4c4fff c-r--
7935.382:0048:004c:trace:virtual:dump_view       0x7b4c5000 - 0x7b4c5fff c-rW-
0054: create_desktop( flags=00000000, access=000f01ff, attributes=000000c0, name=L"Default" )
7935.382:0048:004c:trace:virtual:dump_view       0x7b4c6000 - 0x7b4c6fff c-r--
0054: create_desktop() = 0 { handle=0054 }
7935.382:0048:004c:trace:virtual:dump_view       0x7b4c7000 - 0x7b4c8fff c-rW-
7935.382:0048:004c:trace:virtual:dump_view       0x7b4c9000 - 0x7b4d0fff c-r--
7935.382:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.382:0050:0054:trace:winstation:get_shared_desktop lock 0x21ebc0, desktop_shm 0x21ebbc
7935.382:0048:004c:trace:imports:import_dll --- DisableThreadLibraryCalls kernel32.dll.201 = 7BEB3890
0054: get_thread_desktop( tid=0054 )
7935.383:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062ec24,0062ec28,00000008,0062ec2c)
0054: get_thread_desktop() = 0 { locator={id=00000001,offset=000ffd18}, handle=0008 }
7935.383:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b4c7000 00001000 00000008
7935.383:0048:004c:trace:virtual:get_vprot_range_size base 0x7b4c7000, size 0x1000, mask 0x20.
7935.383:0048:004c:trace:virtual:dump_view View: 0x7b4c0000 - 0x7b4d0fff c-rWx (image)
7935.383:0050:0054:trace:winstation:get_shared_desktop lock 0x21ebc0, desktop_shm 0x21ebbc
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c0000 - 0x7b4c0fff c-r--
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c1000 - 0x7b4c1fff c-r-x
0054: set_thread_desktop( handle=0054 )
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c2000 - 0x7b4c2fff c-rW-
0054: set_thread_desktop() = 0 { locator={id=00000001,offset=000ffd18} }
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c3000 - 0x7b4c4fff c-r--
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c5000 - 0x7b4c5fff c-rW-
7935.383:0050:0054:trace:winstation:get_shared_desktop lock 0x21ebc0, desktop_shm 0x21ebbc
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c6000 - 0x7b4c6fff c-r--
7935.383:0050:0054:trace:winstation:get_shared_desktop lock 0x21ebc0, desktop_shm 0x21ebbc
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c7000 - 0x7b4c8fff c-rW-
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c9000 - 0x7b4d0fff c-r--
0054: close_handle( handle=004c )
7935.383:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
0054: close_handle() = 0
7935.383:0048:004c:trace:module:load_dll looking for L"ntdll.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.383:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EA84
7935.383:0050:0054:trace:class:NtUserRegisterClassExWOW name=L"#32769" hinst=0x7b610000 style=0x8 clExtr=0x0 winExtr=0x0
7935.383:0048:004c:trace:module:load_dll Found L"C:\\windows\\system32\\ntdll.dll" for L"ntdll.dll" at 7BF30000, count=-1
7935.383:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062ec24,0062ec28,00000004,0062ec2c)
0054: create_class( local=0, atom=8001, style=00000008, instance=7b610000, client_ptr=7e4dfe70, cls_extra=0, win_extra=0, name_offset=0, name=L"" )
7935.383:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b4c705c 0000000c 00000004
0054: create_class() = 0 { locator={id=0000000c,offset=00101630}, atom=8001 }
7935.383:0048:004c:trace:virtual:get_vprot_range_size base 0x7b4c7000, size 0x1000, mask 0x20.
7935.383:0048:004c:trace:virtual:dump_view View: 0x7b4c0000 - 0x7b4d0fff c-rWx (image)
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c0000 - 0x7b4c0fff c-r--
7935.383:0050:0054:trace:class:NtUserRegisterClassExWOW name=(null)->L"#32769" atom=8001 wndproc=0xffff0003 hinst=0x7b610000 bg=0x2 style=00000008 clsExt=0 winExt=0 class=0x7e4dfe70
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c1000 - 0x7b4c1fff c-r-x
7935.383:0050:0054:trace:class:NtUserRegisterClassExWOW name=L"Message" hinst=0x7b610000 style=0x0 clExtr=0x0 winExtr=0x0
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c2000 - 0x7b4c2fff c-rW-
7935.383:0048:004c:trace:virtual:dump_view       0x7b4c3000 - 0x7b4c4fff c-r--
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c5000 - 0x7b4c5fff c-rW-
0054: create_class( local=0, atom=0000, style=00000000, instance=7b610000, client_ptr=7e4dfeb0, cls_extra=0, win_extra=0, name_offset=0, name=L"Message" )
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c6000 - 0x7b4c6fff c-r--
0054: create_class() = 0 { locator={id=0000000d,offset=00101878}, atom=c01d }
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c7000 - 0x7b4c8fff c-rW-
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c9000 - 0x7b4d0fff c-r--
7935.384:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.384:0050:0054:trace:class:NtUserRegisterClassExWOW name=(null)->L"Message" atom=c01d wndproc=0xffff0001 hinst=0x7b610000 bg=(nil) style=00000000 clsExt=0 winExt=0 class=0x7e4dfeb0
7935.384:0048:004c:trace:imports:import_dll --- LdrGetDllHandle ntdll.dll.73 = 7BF3244C
7935.384:0050:0054:SysRet   NtUserInitializeClientPfnArrays() retval=00000000
7935.384:0048:004c:trace:imports:import_dll --- NtQueryVirtualMemory ntdll.dll.280 = 7BF33D88
7935.384:0050:0054:Ret  win32u.NtUserInitializeClientPfnArrays() retval=00000000 ret=7b6a5111
7935.384:0048:004c:trace:imports:import_dll --- RtlFindExportedRoutineByName ntdll.dll.570 = 7BF361B0
7935.384:0050:0054:Call ntdll.RtlImageDirectoryEntryToData(7b610000,00000001,00000000,0062fa4c) ret=7b6a514e
7935.384:0048:004c:SysCall  NtProtectVirtualMemory(ffffffff,0062ec24,0062ec28,00000008,0062ec2c)
7935.384:0050:0054:Ret  ntdll.RtlImageDirectoryEntryToData() retval=7b6e5000 ret=7b6a514e
7935.384:0048:004c:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b4c7000 00001000 00000008
7935.384:0050:0054:Call kernelbase.VirtualProtect(7b6e5028,0000145c,00000004,0062fa50) ret=7b6a51a2
7935.384:0048:004c:trace:virtual:get_vprot_range_size base 0x7b4c7000, size 0x1000, mask 0x20.
7935.384:0050:0054:Call ntdll.NtProtectVirtualMemory(ffffffff,0062f9a8,0062f9ac,00000004,0062fa50) ret=7bc601e2
7935.384:0048:004c:trace:virtual:dump_view View: 0x7b4c0000 - 0x7b4d0fff c-rWx (image)
7935.384:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f9a8,0062f9ac,00000004,0062fa50)
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c0000 - 0x7b4c0fff c-r--
7935.384:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b6e5028 0000145c 00000004
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c1000 - 0x7b4c1fff c-r-x
7935.384:0050:0054:trace:virtual:get_vprot_range_size base 0x7b6e5000, size 0x2000, mask 0x20.
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c2000 - 0x7b4c2fff c-rW-
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c3000 - 0x7b4c4fff c-r--
7935.384:0050:0054:trace:virtual:dump_view View: 0x7b610000 - 0x7b7dffff c-rWx (image)
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c5000 - 0x7b4c5fff c-rW-
7935.384:0050:0054:trace:virtual:dump_view       0x7b610000 - 0x7b610fff c-r--
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c6000 - 0x7b4c6fff c-r--
7935.384:0050:0054:trace:virtual:dump_view       0x7b611000 - 0x7b6a6fff c-r-x
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c7000 - 0x7b4c8fff c-rW-
7935.384:0050:0054:trace:virtual:dump_view       0x7b6a7000 - 0x7b6a7fff c-rW-
7935.384:0048:004c:trace:virtual:dump_view       0x7b4c9000 - 0x7b4d0fff c-r--
7935.384:0050:0054:trace:virtual:dump_view       0x7b6a8000 - 0x7b6e3fff c-r--
7935.384:0048:004c:SysRet   NtProtectVirtualMemory() retval=00000000
7935.384:0050:0054:trace:virtual:dump_view       0x7b6e4000 - 0x7b6e6fff c-rW-
7935.384:0048:004c:trace:module:build_module loaded L"\\??\\C:\\windows\\system32\\winex11.drv" 0027CC68 7B4C0000
7935.384:0050:0054:trace:virtual:dump_view       0x7b6e7000 - 0x7b6ebfff c-r--
7935.384:0048:004c:trace:loaddll:build_module Loaded L"C:\\windows\\system32\\winex11.drv" at 7B4C0000: builtin
7935.384:0050:0054:trace:virtual:dump_view       0x7b6ec000 - 0x7b7d8fff c-rW-
7935.384:0048:004c:trace:module:load_dll Loaded module L"\\??\\C:\\windows\\system32\\winex11.drv" at 7B4C0000
7935.384:0050:0054:trace:virtual:dump_view       0x7b7d9000 - 0x7b7dffff c-r--
7935.384:0048:004c:SysCall  NtClose(00000058)
7935.384:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.384:0050:0054:Ret  ntdll.NtProtectVirtualMemory() retval=00000000 ret=7bc601e2
7935.384:0050:0054:Ret  kernelbase.VirtualProtect() retval=00000001 ret=7b6a51a2
004c: close_handle( handle=0058 )
7935.385:0050:0054:Call kernelbase.GetProcAddress(7b610000,7b6b521c "DefDlgProcA") ret=7b6a51c2
004c: close_handle() = 0
7935.385:0050:0054:Call ntdll.RtlInitAnsiString(0062f9b8,7b6b521c "DefDlgProcA") ret=7bc6ef7d
7935.385:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b6b521c ret=7bc6ef7d
7935.385:0048:004c:SysRet   NtClose() retval=00000000
7935.385:0050:0054:Call ntdll.LdrGetProcedureAddress(7b610000,0062f9b8,00000000,0062f9b4) ret=7bc6ef9b
7935.385:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.385:0050:0054:Ret  kernelbase.GetProcAddress() retval=7bf349a8 ret=7b6a51c2
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e93af "GetWindowContextHelpId",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e857a "EnableNonClientDpiScaling",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e7ec5 "CreateMDIWindowW",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8226 "DelegateInput",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028E970, return 1, status 0.
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e807f "DdeGetQualityOfService",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.385:0048:004c:trace:module:process_attach (L"winex11.drv",00000000) - START
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0048:004c:Call PE DLL (proc=7B4C1080,module=7B4C0000 L"winex11.drv",reason=PROCESS_ATTACH,res=00000000)
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8162 "DdeSetUserHandle",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.385:0048:004c:Call KERNEL32.DisableThreadLibraryCalls(7b4c0000) ret=7b4c1024
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0048:004c:Call kernelbase.DisableThreadLibraryCalls(7b4c0000) ret=7bf3cfb4
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e81b9 "DefFrameProcW",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.385:0048:004c:Call ntdll.LdrDisableThreadCalloutsForDll(7b4c0000) ret=7bc07df3
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0048:004c:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8193 "DefDlgProcA",7b6b521c "DefDlgProcA") ret=7b6a5213
7935.385:0048:004c:Ret  kernelbase.DisableThreadLibraryCalls() retval=00000001 ret=7bf3cfb4
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000000 ret=7b6a5213
7935.385:0048:004c:Ret  KERNEL32.DisableThreadLibraryCalls() retval=00000001 ret=7b4c1024
7935.385:0050:0054:Call kernelbase.GetProcAddress(7b610000,7b6b5228 "DefDlgProcW") ret=7b6a51c2
7935.385:0048:004c:Call ntdll.NtQueryVirtualMemory(ffffffff,7b4c0000,000003e8,7b4c5000,00000008,00000000) ret=7b4c10cb
7935.385:0050:0054:Call ntdll.RtlInitAnsiString(0062f9b8,7b6b5228 "DefDlgProcW") ret=7bc6ef7d
7935.385:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b6b5228 ret=7bc6ef7d
7935.385:0048:004c:SysCall  NtQueryVirtualMemory(ffffffff,7b4c0000,000003e8,7b4c5000,00000008,00000000)
7935.385:0050:0054:Call ntdll.LdrGetProcedureAddress(7b610000,0062f9b8,00000000,0062f9b4) ret=7bc6ef9b
7935.385:0048:004c:trace:virtual:NtQueryVirtualMemory (0xffffffff, 0x7b4c0000, info_class=1000, 0x7b4c5000, 8, (nil))
7935.385:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.385:0050:0054:Ret  kernelbase.GetProcAddress() retval=7bf349c8 ret=7b6a51c2
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e93af "GetWindowContextHelpId",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e857a "EnableNonClientDpiScaling",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e7ec5 "CreateMDIWindowW",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8226 "DelegateInput",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e807f "DdeGetQualityOfService",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8162 "DdeSetUserHandle",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e81b9 "DefFrameProcW",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8193 "DefDlgProcA",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e819f "DefDlgProcW",7b6b5228 "DefDlgProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000000 ret=7b6a5213
7935.385:0050:0054:Call kernelbase.GetProcAddress(7b610000,7b6b5234 "DefWindowProcA") ret=7b6a51c2
7935.385:0050:0054:Call ntdll.RtlInitAnsiString(0062f9b8,7b6b5234 "DefWindowProcA") ret=7bc6ef7d
7935.385:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b6b5234 ret=7bc6ef7d
7935.385:0050:0054:Call ntdll.LdrGetProcedureAddress(7b610000,0062f9b8,00000000,0062f9b4) ret=7bc6ef9b
7935.385:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.385:0050:0054:Ret  kernelbase.GetProcAddress() retval=7bf34968 ret=7b6a51c2
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e93af "GetWindowContextHelpId",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e857a "EnableNonClientDpiScaling",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e7ec5 "CreateMDIWindowW",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8226 "DelegateInput",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e807f "DdeGetQualityOfService",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8162 "DdeSetUserHandle",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e81b9 "DefFrameProcW",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e81e9 "DefRawInputProc",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8208 "DefWindowProcW",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e81f9 "DefWindowProcA",7b6b5234 "DefWindowProcA") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000000 ret=7b6a5213
7935.385:0050:0054:Call kernelbase.GetProcAddress(7b610000,7b6b5243 "DefWindowProcW") ret=7b6a51c2
7935.385:0050:0054:Call ntdll.RtlInitAnsiString(0062f9b8,7b6b5243 "DefWindowProcW") ret=7bc6ef7d
7935.385:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b6b5243 ret=7bc6ef7d
7935.385:0050:0054:Call ntdll.LdrGetProcedureAddress(7b610000,0062f9b8,00000000,0062f9b4) ret=7bc6ef9b
7935.385:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.385:0050:0054:Ret  kernelbase.GetProcAddress() retval=7bf34988 ret=7b6a51c2
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e93af "GetWindowContextHelpId",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e857a "EnableNonClientDpiScaling",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e7ec5 "CreateMDIWindowW",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8226 "DelegateInput",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000001 ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e807f "DdeGetQualityOfService",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8162 "DdeSetUserHandle",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e81b9 "DefFrameProcW",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e81e9 "DefRawInputProc",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=ffffffff ret=7b6a5213
7935.385:0050:0054:Call ucrtbase.strcmp(7b6e8208 "DefWindowProcW",7b6b5243 "DefWindowProcW") ret=7b6a5213
7935.385:0050:0054:Ret  ucrtbase.strcmp() retval=00000000 ret=7b6a5213
7935.385:0050:0054:Call kernelbase.VirtualProtect(7b6e5028,0000145c,00000002,0062fa50) ret=7b6a528e
7935.385:0050:0054:Call ntdll.NtProtectVirtualMemory(ffffffff,0062f9a8,0062f9ac,00000002,0062fa50) ret=7bc601e2
7935.385:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f9a8,0062f9ac,00000002,0062fa50)
7935.385:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b6e5028 0000145c 00000002
7935.385:0050:0054:trace:virtual:get_vprot_range_size base 0x7b6e5000, size 0x2000, mask 0x20.
7935.385:0050:0054:trace:virtual:dump_view View: 0x7b610000 - 0x7b7dffff c-rWx (image)
7935.385:0050:0054:trace:virtual:dump_view       0x7b610000 - 0x7b610fff c-r--
7935.385:0050:0054:trace:virtual:dump_view       0x7b611000 - 0x7b6a6fff c-r-x
7935.385:0050:0054:trace:virtual:dump_view       0x7b6a7000 - 0x7b6a7fff c-rW-
7935.385:0050:0054:trace:virtual:dump_view       0x7b6a8000 - 0x7b6e3fff c-r--
7935.385:0050:0054:trace:virtual:dump_view       0x7b6e4000 - 0x7b6e4fff c-rW-
7935.385:0050:0054:trace:virtual:dump_view       0x7b6e5000 - 0x7b6ebfff c-r--
7935.385:0050:0054:trace:virtual:dump_view       0x7b6ec000 - 0x7b7d8fff c-rW-
7935.385:0050:0054:trace:virtual:dump_view       0x7b7d9000 - 0x7b7dffff c-r--
7935.385:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.385:0050:0054:Ret  ntdll.NtProtectVirtualMemory() retval=00000000 ret=7bc601e2
7935.385:0050:0054:Ret  kernelbase.VirtualProtect() retval=00000001 ret=7b6a528e
7935.385:0050:0054:Call win32u.NtUserGetSystemDpiForProcess(00000000) ret=7b6593c9
7935.385:0050:0054:SysCall  NtUserGetSystemDpiForProcess(00000000)
7935.385:0050:0054:SysRet   NtUserGetSystemDpiForProcess() retval=00000060
7935.385:0050:0054:Ret  win32u.NtUserGetSystemDpiForProcess() retval=00000060 ret=7b6593c9
7935.385:0050:0054:Call ntdll.LdrQueryImageFileExecutionOptions(002431b8,7b6b3aac L"dpiAwareness",00000004,0062f860,00000004,00000000) ret=7b659411
7935.385:0050:0054:SysCall  NtOpenKey(0062f4f8,00000001,0062f510)
7935.385:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Image File Execution Options\\explorer.exe",1,0x62f4f8)
0054: open_key( parent=0000, access=00000001, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Image File Execution Options\\explorer.exe" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.390:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.390:0050:0054:SysRet   NtOpenKey() retval=c0000034
7935.390:0050:0054:Ret  ntdll.LdrQueryImageFileExecutionOptions() retval=c0000034 ret=7b659411
7935.390:0050:0054:Call kernelbase.QueryActCtxSettingsW(00000000,00000000,7b6b3ad8 L"http://schemas.microsoft.com/SMI/2016/WindowsSettings",7b6b3aac L"dpiAwareness",0062f864,00000100,00000000) ret=7b659475
7935.390:0050:0054:Call ntdll.RtlQueryActivationContextApplicationSettings(00000000,00000000,7b6b3ad8 L"http://schemas.microsoft.com/SMI/2016/WindowsSettings",7b6b3aac L"dpiAwareness",0062f864,00000100,00000000) ret=7bc3a66f
7935.390:0050:0054:Ret  ntdll.RtlQueryActivationContextApplicationSettings() retval=c0150008 ret=7bc3a66f
7935.390:0050:0054:Call ntdll.RtlNtStatusToDosError(c0150008) ret=7bc3a691
7935.390:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=000036b7 ret=7bc3a691
7935.390:0050:0054:Ret  kernelbase.QueryActCtxSettingsW() retval=00000000 ret=7b659475
7935.390:0050:0054:Call kernelbase.QueryActCtxSettingsW(00000000,00000000,7b6b3b78 L"http://schemas.microsoft.com/SMI/2005/WindowsSettings",7b6b3b64 L"dpiAware",0062f864,00000100,00000000) ret=7b6595cd
7935.390:0050:0054:Call ntdll.RtlQueryActivationContextApplicationSettings(00000000,00000000,7b6b3b78 L"http://schemas.microsoft.com/SMI/2005/WindowsSettings",7b6b3b64 L"dpiAware",0062f864,00000100,00000000) ret=7bc3a66f
7935.390:0050:0054:Ret  ntdll.RtlQueryActivationContextApplicationSettings() retval=c0150008 ret=7bc3a66f
7935.390:0050:0054:Call ntdll.RtlNtStatusToDosError(c0150008) ret=7bc3a691
7935.390:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=000036b7 ret=7bc3a691
7935.390:0050:0054:Ret  kernelbase.QueryActCtxSettingsW() retval=00000000 ret=7b6595cd
7935.390:0050:0054:Call kernelbase.LoadLibraryW(7b6b44cc L"imm32.dll") ret=7b62effd
7935.390:0050:0054:Call ntdll.RtlInitUnicodeString(0062fa24,7b6b44cc L"imm32.dll") ret=7bc2a675
7935.390:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7b6b44cc ret=7bc2a675
7935.390:0050:0054:Call ntdll.LdrGetDllPath(7b6b44cc L"imm32.dll",00000000,0062f9fc,0062fa00) ret=7bc727f0
7935.390:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F95C
7935.390:0048:004c:SysRet   NtQueryVirtualMemory() retval=00000000
7935.390:0048:004c:Ret  ntdll.NtQueryVirtualMemory() retval=00000000 ret=7b4c10cb
7935.390:0048:004c:Call ntdll.LdrGetDllHandle(00000000,00000000,0062ee88,0062ee84) ret=7b4c1148
7935.390:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EE88, base 0062EE84.
7935.390:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062ED30
7935.390:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.390:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 002881F0, status 0.
7935.390:0048:004c:Ret  ntdll.LdrGetDllHandle() retval=00000000 ret=7b4c1148
7935.390:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F95C
7935.390:0048:004c:Call ntdll.RtlFindExportedRoutineByName(7bf30000,7b4c30d4 "__wine_unix_call_dispatcher") ret=7b4c115f
7935.390:0050:0054:Ret  ntdll.LdrGetDllPath() retval=00000000 ret=7bc727f0
7935.390:0048:004c:Ret  ntdll.RtlFindExportedRoutineByName() retval=7bfd4034 ret=7b4c115f
7935.390:0050:0054:Call ntdll.LdrLoadDll(002881f0 L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;",00000000,0062fa24,0062f9f8) ret=7bc7281b
7935.390:0050:0054:trace:module:load_dll looking for L"imm32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.390:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"imm32.dll" 0062F840
7935.390:0048:004c:trace:ntdll:NtQueryInformationToken (0xfffffffa,TokenUser,0x21ee04,76,0x21eddc)
7935.390:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xa4, return 00288298, status 0.
004c: get_token_sid( handle=fffffffa, which_sid=00000001 )
7935.392:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\imm32.dll",0062F8F8,00000000,00000000)
004c: get_token_sid() = 0 { sid_len=28, sid=S-1-5-21-0-0-0-1000 }
7935.392:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\imm32.dll" 520 0062F5A4 00000000)
7935.392:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\imm32.dll" 520 0062F5A4 00000000 00000000)
7935.392:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\User\\S-1-5-21-0-0-0-1000",2000000,0x21ede0)
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\User\\S-1-5-21-0-0-0-1000" )
004c: open_key() = 0 { hkey=004c }
7935.392:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027F370, status 0.
7935.392:0048:004c:trace:reg:NtOpenKeyEx <- 0x4c
7935.392:0050:0054:SysCall  NtOpenFile(0062f734,80100000,0062f748,0062f740,00000005,00000060)
7935.392:0048:004c:trace:reg:NtOpenKeyEx (0x4c,L"Software\\Wine\\X11 Driver",2000000,0x21edec)
7935.392:0050:0054:trace:file:NtCreateFile handle=0x62f734 access=80100000 name=L"\\??\\C:\\windows\\system32\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f740 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
004c: open_key( parent=004c, access=02000000, attributes=00000040, name=L"Software\\Wine\\X11 Driver" )
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.392:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.392:0048:004c:trace:reg:NtOpenKeyEx (0x4c,L"Software\\Wine\\AppDefaults",2000000,0x21edec)
004c: open_key( parent=004c, access=02000000, attributes=00000040, name=L"Software\\Wine\\AppDefaults" )
7935.393:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\imm32.dll" -> ret c0000034
004c: open_key() = 0 { hkey=0058 }
7935.393:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\imm32.dll" not found (c0000034)
7935.393:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.393:0048:004c:trace:reg:NtOpenKeyEx <- 0x58
7935.393:0048:004c:trace:reg:NtOpenKeyEx (0x58,L"explorer.exe\\X11 Driver",2000000,0x21f1b0)
004c: open_key( parent=0058, access=02000000, attributes=00000040, name=L"explorer.exe\\X11 Driver" )
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.393:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.393:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F370, return 1, status 0.
7935.393:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\imm32.dll",0062F8F8,00000000,00000000)
004c: close_handle( handle=0058 )
7935.393:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\imm32.dll" 520 0062F5A4 00000000)
004c: close_handle() = 0
7935.393:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\imm32.dll" 520 0062F5A4 00000000 00000000)
004c: close_handle( handle=0000 )
004c: close_handle() = INVALID_HANDLE
004c: close_handle( handle=0000 )
004c: close_handle() = INVALID_HANDLE
7935.394:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027F3E0, status 0.
7935.394:0048:004c:Ret  PE DLL (proc=7B4C1080,module=7B4C0000 L"winex11.drv",reason=PROCESS_ATTACH,res=00000000) retval=0
7935.394:0048:004c:Call PE DLL (proc=7B4C1080,module=7B4C0000 L"winex11.drv",reason=PROCESS_DETACH,res=00000000)
7935.394:0050:0054:SysCall  NtOpenFile(0062f734,80100000,0062f748,0062f740,00000005,00000060)
7935.394:0048:004c:Ret  PE DLL (proc=7B4C1080,module=7B4C0000 L"winex11.drv",reason=PROCESS_DETACH,res=00000000) retval=1
7935.394:0050:0054:trace:file:NtCreateFile handle=0x62f734 access=80100000 name=L"\\??\\C:\\windows\\system32\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f740 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.394:0048:004c:warn:module:process_attach Initialization of L"winex11.drv" failed
7935.394:0048:004c:trace:module:process_attach (L"winex11.drv",00000000) - END
7935.394:0048:004c:trace:module:LdrUnloadDll (7B4C0000)
7935.394:0048:004c:trace:module:LdrUnloadDll (L"winex11.drv") - START
7935.394:0048:004c:trace:module:MODULE_DecRefCount (L"winex11.drv") ldr.LoadCount: 0
7935.394:0048:004c:trace:ntdll:RtlRbRemoveNode tree 7BFD5580, node 0027CCD0.
7935.394:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\imm32.dll" -> ret c0000034
7935.394:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\imm32.dll" not found (c0000034)
7935.394:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.394:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002858A8, return 1, status 0.
7935.394:0048:004c:trace:module:free_modref  unloading L"C:\\windows\\system32\\winex11.drv"
7935.394:0048:004c:SysCall  NtUnmapViewOfSection(ffffffff,7b4c0000)
7935.394:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F3E0, return 1, status 0.
004c: unmap_view( base=7b4c0000 )
7935.395:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\imm32.dll",0062F8F8,00000000,00000000)
004c: unmap_view() = 0
7935.395:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\imm32.dll" 520 0062F5A4 00000000)
7935.395:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\imm32.dll" 520 0062F5A4 00000000 00000000)
7935.395:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 00261E38, status 0.
7935.395:0050:0054:SysCall  NtOpenFile(0062f734,80100000,0062f748,0062f740,00000005,00000060)
7935.395:0050:0054:trace:file:NtCreateFile handle=0x62f734 access=80100000 name=L"\\??\\C:\\windows\\system\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f740 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.395:0048:004c:SysRet   NtUnmapViewOfSection() retval=00000000
7935.395:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\imm32.dll" -> ret c000003a
7935.395:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028E9D0, return 1, status 0.
7935.395:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system\\imm32.dll" not found (c000003a)
7935.395:0050:0054:SysRet   NtOpenFile() retval=c000003a
7935.395:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261E38, return 1, status 0.
7935.395:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027CC68, return 1, status 0.
7935.395:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\imm32.dll",0062F8F8,00000000,00000000)
7935.395:0048:004c:trace:module:LdrUnloadDll END
7935.395:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\imm32.dll" 520 0062F5A4 00000000)
7935.395:0048:004c:Ret  ntdll.LdrLoadDll() retval=c0000142 ret=7bc7281b
7935.395:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\imm32.dll" 520 0062F5A4 00000000 00000000)
7935.395:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000142) ret=7bc728a9
7935.395:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=0000045a ret=7bc728a9
7935.395:0048:004c:Call ntdll.RtlReleasePath(0028e790) ret=7bc72830
7935.395:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3a, return 00261E98, status 0.
7935.395:0050:0054:SysCall  NtOpenFile(0062f734,80100000,0062f748,0062f740,00000005,00000060)
7935.395:0050:0054:trace:file:NtCreateFile handle=0x62f734 access=80100000 name=L"\\??\\C:\\windows\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f740 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.395:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028E790, return 1, status 0.
7935.395:0048:004c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc72830
7935.395:0048:004c:Ret  kernelbase.LoadLibraryW() retval=00000000 ret=7bf3cfb4
7935.395:0048:004c:Ret  KERNEL32.LoadLibraryW() retval=00000000 ret=00406b19
7935.395:0048:004c:Call ucrtbase.wcschr(0062f464 L"wayland",0000002c) ret=00406abf
7935.395:0048:004c:Ret  ucrtbase.wcschr() retval=00000000 ret=00406abf
7935.395:0048:004c:Call ucrtbase.wcscmp(0062f464 L"wayland",00413f02 L"null") ret=00406ae0
7935.395:0048:004c:Ret  ucrtbase.wcscmp() retval=00000001 ret=00406ae0
7935.395:0048:004c:Call ucrtbase.__stdio_common_vswprintf(000000004,0062f20c,00000020,00413f2a L"wine%s.drv",00000000,0062f178) ret=0040c20f
7935.395:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\imm32.dll" -> ret c0000034
7935.395:0048:004c:Ret  ucrtbase.__stdio_common_vswprintf() retval=0000000f ret=0040c20f
7935.395:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\imm32.dll" not found (c0000034)
7935.395:0048:004c:Call KERNEL32.LoadLibraryW(0062f20c L"winewayland.drv") ret=00406b19
7935.395:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.395:0048:004c:Call kernelbase.LoadLibraryW(0062f20c L"winewayland.drv") ret=7bf3cfb4
7935.395:0048:004c:Call ntdll.RtlInitUnicodeString(0062f0e4,0062f20c L"winewayland.drv") ret=7bc2a675
7935.395:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=0062f20c ret=7bc2a675
7935.395:0048:004c:Call ntdll.LdrGetDllPath(0062f20c L"winewayland.drv",00000000,0062f0bc,0062f0c0) ret=7bc727f0
7935.395:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
7935.395:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261E98, return 1, status 0.
7935.395:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\imm32.dll",0062F8F8,00000000,00000000)
7935.395:0050:0054:trace:file:RtlGetFullPathName_U (L".\\imm32.dll" 520 0062F5A4 00000000)
7935.395:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\imm32.dll" 520 0062F5A4 00000000 00000000)
7935.395:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00290598, status 0.
7935.395:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
7935.395:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027F450, status 0.
7935.395:0048:004c:Ret  ntdll.LdrGetDllPath() retval=00000000 ret=7bc727f0
7935.395:0050:0054:SysCall  NtOpenFile(0062f734,80100000,0062f748,0062f740,00000005,00000060)
7935.395:0048:004c:Call ntdll.LdrLoadDll(00290598 L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;",00000000,0062f0e4,0062f0b8) ret=7bc7281b
7935.395:0050:0054:trace:file:NtCreateFile handle=0x62f734 access=80100000 name=L"\\??\\C:\\windows\\system32\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f740 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.395:0048:004c:trace:module:load_dll looking for L"winewayland.drv" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.395:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"winewayland.drv" 0062EF00
7935.395:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\imm32.dll" -> ret c0000034
7935.395:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\imm32.dll" not found (c0000034)
7935.395:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.395:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xb0, return 0027CD38, status 0.
7935.395:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winewayland.drv",0062EFB8,00000000,00000000)
7935.395:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winewayland.drv" 520 0062EC64 00000000)
7935.395:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winewayland.drv" 520 0062EC64 00000000 00000000)
7935.395:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F450, return 1, status 0.
7935.395:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 0027F840, status 0.
7935.395:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00288298, return 1, status 0.
7935.395:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.395:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.395:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x866, return 00288358, status 0.
7935.395:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winewayland.drv" -> ret c0000034
7935.395:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winewayland.drv" not found (c0000034)
7935.395:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.395:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00288358, return 1, status 0.
7935.395:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F840, return 1, status 0.
7935.395:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winewayland.drv",0062EFB8,00000000,00000000)
7935.395:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x82e, return 00288BD8, status 0.
7935.395:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winewayland.drv" 520 0062EC64 00000000)
7935.395:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winewayland.drv" 520 0062EC64 00000000 00000000)
7935.395:0050:0054:SysCall  NtOpenFile(0062f76c,80100000,0062f780,0062f778,00000005,00000060)
7935.395:0050:0054:trace:file:NtCreateFile handle=0x62f76c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62f778 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.395:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" -> ret 0 nt L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" unix "/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/imm32.dll"
7935.395:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 0027F8B0, status 0.
7935.401:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
0054: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000040,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll"}, filename="/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/imm32.dll" )
7935.401:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
0054: create_file() = 0 { handle=004c }
7935.401:0050:0054:SysRet   NtOpenFile() retval=00000000
7935.401:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winewayland.drv" -> ret c0000034
7935.401:0050:0054:SysCall  NtFsControlFile(0000004c,00000000,00000000,00000000,0062f778,0009009c,00000000,00000000,0062f798,00000040)
7935.401:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winewayland.drv" not found (c0000034)
7935.401:0050:0054:trace:file:NtFsControlFile (0x4c,(nil),(nil),(nil),0x62f778,0x0009009c,(nil),0x00000000,0x62f798,0x00000040)
7935.401:0048:004c:SysRet   NtOpenFile() retval=c0000034
0054: get_handle_fd( handle=004c )
0054: *fd* 004c -> 84
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=00120089, options=00000060 }
7935.402:0050:0054:SysRet   NtFsControlFile() retval=00000000
7935.402:0050:0054:SysCall  NtCreateSection(0062f8e8,000f000d,00000000,0062f770,00000020,01000000,0000004c)
7935.402:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F8B0, return 1, status 0.
7935.402:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winewayland.drv",0062EFB8,00000000,00000000)
7935.402:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winewayland.drv" 520 0062EC64 00000000)
0054: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=004c, objattr={} )
7935.402:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winewayland.drv" 520 0062EC64 00000000 00000000)
0054: create_mapping() = 0 { handle=0058 }
7935.402:0050:0054:SysRet   NtCreateSection() retval=00000000
7935.402:0050:0054:SysCall  NtQuerySection(00000058,00000001,0062f91c,00000030,00000000)
0054: get_mapping_info( handle=0058, access=00000001 )
0054: get_mapping_info() = 0 { size=0001f000, flags=01800000, shared_file=0000, name_len=0, total=189, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00002e70,map_size=0001f000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=0001a9ee,checksum=0001c27f}, name=L"", exp_name="" }
7935.402:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x54, return 0027F920, status 0.
7935.402:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.402:0050:0054:SysRet   NtQuerySection() retval=00000000
7935.402:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.402:0050:0054:SysCall  NtClose(0000004c)
0054: close_handle( handle=004c )
0054: close_handle() = 0
7935.403:0050:0054:SysRet   NtClose() retval=00000000
7935.403:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winewayland.drv" -> ret c000003a
7935.403:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system\\winewayland.drv" not found (c000003a)
7935.403:0048:004c:SysRet   NtOpenFile() retval=c000003a
7935.403:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00288BD8, return 1, status 0.
7935.403:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 00261EF8, status 0.
7935.403:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F920, return 1, status 0.
7935.403:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winewayland.drv",0062EFB8,00000000,00000000)
7935.403:0050:0054:SysCall  NtMapViewOfSection(00000058,ffffffff,0062f900,00000000,00000000,00000000,0062f94c,00000001,00000000,00000020)
7935.403:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winewayland.drv" 520 0062EC64 00000000)
7935.403:0050:0054:trace:virtual:NtMapViewOfSection handle=0x58 process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x20
7935.403:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winewayland.drv" 520 0062EC64 00000000 00000000)
0054: get_mapping_info( handle=0058, access=0000000c )
0054: get_mapping_info() = 0 { size=0001f000, flags=01800000, shared_file=0000, name_len=84, total=189, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00002e70,map_size=0001f000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=0001a9ee,checksum=0001c27f}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll", exp_name="imm32.dll" }
7935.404:0050:0054:trace:reg:NtQueryValueKey (0xc,L"Z:\\usr\\lib\\wine\\i386-windows\\imm32",2,0x21fa00,80)
7935.404:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x46, return 0028EA30, status 0.
0054: get_key_value( hkey=000c, name=L"Z:\\usr\\lib\\wine\\i386-windows\\imm32" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.404:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.404:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.404:0050:0054:trace:reg:NtQueryValueKey (0xc,L"*imm32",2,0x21fa00,80)
0054: get_key_value( hkey=000c, name=L"*imm32" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.404:0050:0054:trace:reg:NtQueryValueKey (0xc,L"imm32",2,0x21fa00,80)
0054: get_key_value( hkey=000c, name=L"imm32" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.405:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winewayland.drv" -> ret c0000034
7935.405:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\winewayland.drv" not found (c0000034)
7935.405:0050:0054:trace:module:get_load_order got hardcoded default for L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll"
7935.405:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.405:0050:0054:trace:module:find_builtin_dll looking for "imm32.dll" for file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll"
0054: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000000,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll"}, filename="/usr/lib/wine/i386-windows/imm32.dll" )
0054: create_file() = 0 { handle=004c }
7935.405:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EA30, return 1, status 0.
7935.405:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winewayland.drv",0062EFB8,00000000,00000000)
0054: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=004c, objattr={} )
7935.405:0048:004c:trace:file:RtlGetFullPathName_U (L".\\winewayland.drv" 520 0062EC64 00000000)
7935.405:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\winewayland.drv" 520 0062EC64 00000000 00000000)
0054: create_mapping() = 0 { handle=005c }
0054: close_handle( handle=004c )
0054: close_handle() = 0
7935.406:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 0027F990, status 0.
7935.406:0048:004c:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
0054: get_mapping_info( handle=005c, access=00000004 )
7935.406:0048:004c:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
0054: get_mapping_info() = 0 { size=0001f000, flags=01800000, shared_file=0000, name_len=84, total=189, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00002e70,map_size=0001f000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=0001a9ee,checksum=0001c27f}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll", exp_name="imm32.dll" }
0054: get_handle_fd( handle=005c )
0054: *fd* 005c -> 72
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=000f000d, options=00000020 }
7935.406:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winewayland.drv" -> ret c0000034
7935.406:0048:004c:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winewayland.drv" not found (c0000034)
7935.406:0050:0054:trace:module:map_image_into_view mapping PE file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" at 0x7b4f0000-0x7b50f000
7935.406:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.406:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .text at 0x7b4f1000 off 400 size ea00 virt e8e0 flags 60000060
7935.406:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F990, return 1, status 0.
7935.406:0050:0054:trace:module:map_image_into_view clearing 0x7b4ffa00 - 0x7b500000
7935.406:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .data at 0x7b500000 off ee00 size 200 virt 13c flags c0000040
7935.406:0050:0054:trace:module:map_image_into_view clearing 0x7b500200 - 0x7b501000
7935.406:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .rdata at 0x7b501000 off f000 size 3800 virt 363c flags 40000040
7935.406:0050:0054:trace:module:map_image_into_view clearing 0x7b504800 - 0x7b505000
7935.406:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section /4 at 0x7b505000 off 12800 size 3600 virt 3444 flags 40000040
7935.406:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027CD38, return 1, status 0.
7935.406:0050:0054:trace:module:map_image_into_view clearing 0x7b508600 - 0x7b509000
7935.406:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .bss at 0x7b509000 off 0 size 0 virt e0 flags c0000080
7935.406:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .edata at 0x7b50a000 off 15e00 size 1200 virt 105e flags 40000040
7935.406:0050:0054:trace:module:map_image_into_view clearing 0x7b50b200 - 0x7b50c000
7935.406:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .idata at 0x7b50c000 off 17000 size 1000 virt f10 flags c0000040
7935.406:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .rsrc at 0x7b50d000 off 18000 size 400 virt 3a4 flags c0000040
7935.406:0050:0054:trace:module:map_image_into_view clearing 0x7b50d400 - 0x7b50e000
7935.406:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x87e, return 00290640, status 0.
7935.406:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" section .reloc at 0x7b50e000 off 18400 size 1000 virt e70 flags 42000040
7935.406:0050:0054:trace:module:map_image_into_view relocating L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\imm32.dll" dynamic base 10000000 -> 7b4f0000 mapped at 0x7b4f0000
7935.406:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00290640, return 1, status 0.
0054: map_image_view( mapping=005c, base=7b4f0000, size=0001f000, offset=00000000, entry=00002e70, machine=014c )
0054: map_image_view() = 0
7935.408:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.408:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.408:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.408:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.408:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.408:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.408:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x83a, return 00290ED8, status 0.
7935.408:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.408:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.408:0048:004c:SysCall  NtOpenFile(0062ee2c,80100000,0062ee40,0062ee38,00000005,00000060)
7935.408:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.408:0048:004c:trace:file:NtCreateFile handle=0x62ee2c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee38 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
0054: close_handle( handle=005c )
0054: close_handle() = 0
7935.409:0050:0054:SysRet   NtMapViewOfSection() retval=00000000
7935.409:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0xb8, return 0027CB98, status 0.
7935.409:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3c, return 00261F58, status 0.
7935.409:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x2c, return 00285858, status 0.
7935.409:0050:0054:trace:ntdll:RtlRbInsertNodeEx tree 7BFD5580, parent 00274A28, right 0, node 0027CC00.
7935.409:0050:0054:trace:resource:LdrFindResource_U module 7B4F0000 type #0018 name #0002 lang 0000 level 3
7935.409:0050:0054:trace:resource:find_entry_by_id root 7B50D000 dir 7B50D000 id 0018 not found
7935.409:0050:0054:trace:module:load_dll looking for L"advapi32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.409:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"advapi32.dll" 0062F3C4
7935.409:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\advapi32.dll" for L"advapi32.dll" at 7BBA0000, count=-1
7935.409:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
7935.409:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c2a0 00000018 00000004
7935.409:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.409:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.409:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.409:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.409:0050:0054:trace:imports:import_dll --- RegCloseKey advapi32.dll.395 = 7BBA4388
7935.409:0050:0054:trace:imports:import_dll --- RegCreateKeyExW advapi32.dll.402 = 7BBA4468
7935.409:0050:0054:trace:imports:import_dll --- RegDeleteKeyW advapi32.dll.411 = 7BBA4588
7935.409:0050:0054:trace:imports:import_dll --- RegGetValueW advapi32.dll.428 = 7BBA47A8
7935.409:0050:0054:trace:imports:import_dll --- RegOpenKeyW advapi32.dll.440 = 7BBA4928
7935.409:0050:0054:trace:imports:import_dll --- RegSetValueExW advapi32.dll.467 = 7BBA4C88
7935.409:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.409:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.409:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.409:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.409:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.409:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.409:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 002734F0, status 0.
7935.409:0050:0054:trace:module:load_dll looking for L"gdi32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.409:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"gdi32.dll" 0062F3C4
7935.409:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\gdi32.dll" for L"gdi32.dll" at 7B570000, count=-1
7935.409:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
7935.409:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c2bc 00000014 00000004
7935.409:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.409:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.409:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.409:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.409:0050:0054:trace:imports:import_dll --- CreateFontIndirectW gdi32.dll.52 = 7B5722AC
7935.409:0050:0054:trace:imports:import_dll --- DeleteObject gdi32.dll.126 = 7B5725EC
7935.409:0050:0054:trace:imports:import_dll --- GetTextExtentPoint32W gdi32.dll.344 = 7B57410C
7935.409:0050:0054:trace:imports:import_dll --- LPtoDP gdi32.dll.361 = 7B57432C
7935.409:0050:0054:trace:imports:import_dll --- SelectObject gdi32.dll.456 = 7B574F0C
7935.409:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.409:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.409:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.409:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.409:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.409:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.409:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273520, status 0.
7935.409:0050:0054:trace:module:load_dll looking for L"kernel32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.409:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"kernel32.dll" 0062F3C4
7935.409:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\kernel32.dll" for L"kernel32.dll" at 7BEB0000, count=-1
7935.409:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
7935.409:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c2d4 00000038 00000004
7935.409:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.409:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.409:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.409:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.409:0050:0054:trace:imports:import_dll --- DelayLoadFailureHook kernel32.dll.185 = 7BEB36B0
7935.409:0050:0054:trace:imports:import_dll --- GetModuleHandleW kernel32.dll.524 = 7BEB5C10
7935.409:0050:0054:trace:imports:import_dll --- GetTickCount kernel32.dll.658 = 7BEB6C90
7935.409:0050:0054:trace:imports:import_dll --- GlobalFlags kernel32.dll.697 = 7BEB7150
7935.409:0050:0054:trace:imports:import_dll --- GlobalLock kernel32.dll.702 = 7BEB71F0
7935.409:0050:0054:trace:imports:import_dll --- GlobalReAlloc kernel32.dll.705 = 7BEB7250
7935.409:0050:0054:trace:imports:import_dll --- GlobalSize kernel32.dll.706 = 7BEB7270
7935.409:0050:0054:trace:imports:import_dll --- GlobalUnlock kernel32.dll.709 = 7BEB72D0
7935.409:0050:0054:trace:imports:import_dll --- HeapAlloc kernel32.dll.715 = 7BF34E6C
7935.409:0050:0054:trace:imports:import_dll --- HeapReAlloc kernel32.dll.725 = 7BF38034
7935.409:0050:0054:trace:imports:import_dll --- IsBadStringPtrA kernel32.dll.769 = 7BECC450
7935.409:0050:0054:trace:imports:import_dll --- IsBadStringPtrW kernel32.dll.770 = 7BEB7830
7935.409:0050:0054:trace:imports:import_dll --- RaiseException kernel32.dll.961 = 7BEB8DB0
7935.409:0050:0054:trace:imports:import_dll --- ResolveDelayLoadedAPI kernel32.dll.1054 = 7BF3260C
7935.409:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.409:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.409:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.409:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.409:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.409:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winewayland.drv" -> ret c0000034
7935.409:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.409:0048:004c:warn:file:NtCreateFile L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winewayland.drv" not found (c0000034)
7935.409:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.409:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.409:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.409:0048:004c:SysCall  NtOpenFile(0062ee2c,80100000,0062ee40,0062ee38,00000005,00000060)
7935.409:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.409:0048:004c:trace:file:NtCreateFile handle=0x62ee2c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee38 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.409:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.409:0050:0054:trace:module:load_dll looking for L"kernelbase.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.409:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"kernelbase.dll" 0062F3C4
7935.409:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\kernelbase.dll" for L"kernelbase.dll" at 7BBF0000, count=-1
7935.409:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
7935.409:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c310 00000040 00000004
7935.409:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.409:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.409:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\winewayland.drv" -> ret c0000034
7935.409:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.409:0048:004c:warn:file:NtCreateFile L"\\??\\Z:\\usr\\lib\\wine\\winewayland.drv" not found (c0000034)
7935.409:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.409:0048:004c:SysRet   NtOpenFile() retval=c0000034
7935.409:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.409:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.409:0050:0054:trace:imports:import_dll --- EnterCriticalSection kernelbase.dll.213 = 7BF35DD0
7935.409:0050:0054:trace:imports:import_dll --- FreeLibrary kernelbase.dll.313 = 7BBF3BEC
7935.409:0050:0054:trace:imports:import_dll --- GetFileVersionInfoSizeW kernelbase.dll.438 = 7BBF4AAC
7935.409:0050:0054:trace:imports:import_dll --- GetFileVersionInfoW kernelbase.dll.439 = 7BBF4ACC
7935.409:0050:0054:trace:imports:import_dll --- GetModuleHandleA kernelbase.dll.471 = 7BBF4ECC
7935.409:0050:0054:trace:imports:import_dll --- GetProcAddress kernelbase.dll.502 = 7BBF52AC
7935.409:0050:0054:trace:imports:import_dll --- GlobalAlloc kernelbase.dll.621 = 7BBF610C
7935.409:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00290ED8, return 1, status 0.
7935.409:0050:0054:trace:imports:import_dll --- GlobalFree kernelbase.dll.622 = 7BBF612C
7935.409:0050:0054:trace:imports:import_dll --- InitOnceExecuteOnce kernelbase.dll.648 = 7BBF63EC
7935.409:0050:0054:trace:imports:import_dll --- IsDBCSLeadByte kernelbase.dll.701 = 7BBF692C
7935.409:0050:0054:trace:imports:import_dll --- LCMapStringW kernelbase.dll.755 = 7BBF6FCC
7935.409:0050:0054:trace:imports:import_dll --- LeaveCriticalSection kernelbase.dll.756 = 7BF37654
7935.409:0050:0054:trace:imports:import_dll --- LoadLibraryW kernelbase.dll.762 = 7BBF706C
7935.409:0050:0054:trace:imports:import_dll --- MultiByteToWideChar kernelbase.dll.793 = 7BBF744C
7935.409:0050:0054:trace:imports:import_dll --- VerQueryValueW kernelbase.dll.1351 = 7BBFB68C
7935.409:0050:0054:trace:imports:import_dll --- WideCharToMultiByte kernelbase.dll.1395 = 7BBFBAEC
7935.409:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x83a, return 00291730, status 0.
7935.409:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.409:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.409:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.409:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.409:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.409:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00291730, return 1, status 0.
7935.409:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.409:0048:004c:warn:module:load_dll Failed to load module L"winewayland.drv"; status=c0000135
7935.409:0048:004c:Ret  ntdll.LdrLoadDll() retval=c0000135 ret=7bc7281b
7935.409:0048:004c:Call ntdll.RtlNtStatusToDosError(c0000135) ret=7bc728a9
7935.409:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=0000007e ret=7bc728a9
7935.409:0048:004c:Call ntdll.RtlRunOnceExecuteOnce(7bcb8c80,7bc70990,00000000,00000000) ret=7bc26189
7935.409:0048:004c:Ret  ntdll.RtlRunOnceExecuteOnce() retval=00000000 ret=7bc26189
7935.409:0048:004c:Call ntdll.wcscpy(0062ef94,7bcb8cb4 L"") ret=7bc21d77
7935.409:0048:004c:Ret  ntdll.wcscpy() retval=0062ef94 ret=7bc21d77
7935.409:0048:004c:Call ntdll.RtlReleasePath(00290598) ret=7bc72830
7935.409:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273550, status 0.
7935.409:0050:0054:trace:module:load_dll looking for L"ntdll.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.409:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F3C4
7935.409:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\ntdll.dll" for L"ntdll.dll" at 7BF30000, count=-1
7935.409:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
7935.409:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c354 0000000c 00000004
7935.409:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.409:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.409:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00290598, return 1, status 0.
7935.409:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.409:0048:004c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc72830
7935.409:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.409:0048:004c:Ret  kernelbase.LoadLibraryW() retval=00000000 ret=7bf3cfb4
7935.409:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.409:0048:004c:Ret  KERNEL32.LoadLibraryW() retval=00000000 ret=00406b19
7935.409:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.409:0048:004c:Call KERNEL32.IsBadStringPtrW(0062f20c,ffffffff) ret=00411973
7935.409:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.409:0048:004c:Ret  KERNEL32.IsBadStringPtrW() retval=00000000 ret=00411973
7935.409:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.409:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.409:0048:004c:trace:explorer:load_graphics_driver display {f4782f3c-01da-4c05-8a5a-5f51b9012acc} driver L"winewayland.drv"
7935.409:0050:0054:trace:imports:import_dll --- RtlNtStatusToDosError ntdll.dll.760 = 7BF37974
7935.409:0048:004c:Call ucrtbase.__stdio_common_vswprintf(000000004,0062f328,00000086,00415400 L"System\\CurrentControlSet\\Control\\Video\\{%08x-%04x-%04x-%02x%02x-%02x%02x%02x%02x%02x%02x}\\0000",00000000,0062f178) ret=0040c20f
7935.409:0050:0054:trace:imports:import_dll --- RtlSetLastWin32Error ntdll.dll.862 = 7BF38614
7935.409:0050:0054:trace:imports:import_dll --- _vsnprintf ntdll.dll.1353 = 7BF6E7F0
7935.409:0048:004c:Ret  ucrtbase.__stdio_common_vswprintf() retval=00000052 ret=0040c20f
7935.409:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.409:0048:004c:Call advapi32.RegCreateKeyExW(80000002,0062f328 L"System\\CurrentControlSet\\Control\\Video\\{f4782f3c-01da-4c05-8a5a-5f51b9012acc}\\0000",00000000,00000000,00000001,00000002,00000000,0062f1f8,00000000) ret=00406c5a
7935.409:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.409:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.409:0048:004c:Call kernelbase.RegCreateKeyExW(80000002,0062f328 L"System\\CurrentControlSet\\Control\\Video\\{f4782f3c-01da-4c05-8a5a-5f51b9012acc}\\0000",00000000,00000000,00000001,00000002,00000000,0062f1f8,00000000) ret=7bf3cfb4
7935.409:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.409:0048:004c:Call ntdll.RtlInitUnicodeString(0062f0ac,0062f328 L"System\\CurrentControlSet\\Control\\Video\\{f4782f3c-01da-4c05-8a5a-5f51b9012acc}\\0000") ret=7bc3d942
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.409:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=0062f328 ret=7bc3d942
7935.409:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.409:0048:004c:Call ntdll.RtlInitUnicodeString(0062f0b4,00000000) ret=7bc3d953
7935.409:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.409:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00000008 ret=7bc3d953
7935.409:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.409:0048:004c:Call ntdll.NtCreateKey(0062f1f8,00000002,0062f068,00000000,0062f0b4,00000001,00000000) ret=7bc67940
7935.409:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.409:0048:004c:SysCall  NtCreateKey(0062f1f8,00000002,0062f068,00000000,0062f0b4,00000001,00000000)
7935.409:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.409:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.409:0048:004c:trace:reg:NtCreateKey (0x18,L"System\\CurrentControlSet\\Control\\Video\\{f4782f3c-01da-4c05-8a5a-5f51b9012acc}\\0000",(null),1,2,0x62f1f8)
7935.409:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.409:0050:0054:trace:module:load_dll looking for L"ucrtbase.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.409:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ucrtbase.dll" 0062F3C4
7935.419:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\ucrtbase.dll" for L"ucrtbase.dll" at 7B9A0000, count=-1
004c: create_key( access=00000002, options=00000001, objattr={rootdir=0018,attributes=000000c0,sd={},name=L"System\\CurrentControlSet\\Control\\Video\\{f4782f3c-01da-4c05-8a5a-5f51b9012acc}\\0000"}, class=L"" )
7935.419:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
004c: create_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.419:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c364 0000004c 00000004
7935.419:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.419:0048:004c:trace:reg:NtCreateKey <- (nil)
7935.419:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.419:0048:004c:SysRet   NtCreateKey() retval=c0000034
7935.419:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.419:0048:004c:Ret  ntdll.NtCreateKey() retval=c0000034 ret=7bc67940
7935.419:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.419:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.419:0048:004c:Call ntdll._wcsnicmp(0062f328 L"System\\CurrentControlSet\\Control\\Video\\{f4782f3c-01da-4c05-8a5a-5f51b9012acc}\\0000",7bc88e30 L"Wow6432Node\\",0000000c) ret=7bc73cc4
7935.419:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.419:0048:004c:Ret  ntdll._wcsnicmp() retval=fffffffc ret=7bc73cc4
7935.419:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.419:0048:004c:Call ntdll.NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000) ret=7bc73de1
7935.419:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.419:0048:004c:SysCall  NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000)
7935.419:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.419:0048:004c:trace:reg:NtOpenKeyEx (0x18,L"System",102,0x62ef10)
7935.419:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.419:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.419:0050:0054:trace:imports:import_dll --- __acrt_iob_func ucrtbase.dll.73 = 7B9A3A2C
004c: open_key( parent=0018, access=00000102, attributes=00000040, name=L"System" )
7935.419:0050:0054:trace:imports:import_dll --- __stdio_common_vsprintf ucrtbase.dll.157 = 7B9BEC50
004c: open_key() = 0 { hkey=0058 }
7935.419:0050:0054:trace:imports:import_dll --- __stdio_common_vswprintf ucrtbase.dll.161 = 7B9A424C
7935.419:0050:0054:trace:imports:import_dll --- _strdup ucrtbase.dll.1893 = 7B9B134C
7935.419:0050:0054:trace:imports:import_dll --- calloc ucrtbase.dll.2154 = 7B9B328C
7935.419:0048:004c:trace:reg:NtOpenKeyEx <- 0x58
7935.419:0050:0054:trace:imports:import_dll --- free ucrtbase.dll.2283 = 7B9B428C
7935.419:0048:004c:SysRet   NtOpenKeyEx() retval=00000000
7935.419:0050:0054:trace:imports:import_dll --- fwrite ucrtbase.dll.2290 = 7B9B436C
7935.419:0048:004c:Ret  ntdll.NtOpenKeyEx() retval=00000000 ret=7bc73de1
7935.419:0050:0054:trace:imports:import_dll --- getenv ucrtbase.dll.2293 = 7B9B43CC
7935.419:0048:004c:Call ntdll._wcsnicmp(0062f336 L"CurrentControlSet\\Control\\Video\\{f4782f3c-01da-4c05-8a5a-5f51b9012acc}\\0000",7bc88e30 L"Wow6432Node\\",0000000c) ret=7bc73cc4
7935.419:0050:0054:trace:imports:import_dll --- malloc ucrtbase.dll.2366 = 7B9B4CAC
7935.419:0048:004c:Ret  ntdll._wcsnicmp() retval=ffffffec ret=7bc73cc4
7935.419:0050:0054:trace:imports:import_dll --- memcmp ucrtbase.dll.2378 = 7B9B4E2C
7935.419:0048:004c:Call ntdll.NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000) ret=7bc73de1
7935.419:0050:0054:trace:imports:import_dll --- memcpy ucrtbase.dll.2379 = 7B9B4E4C
7935.419:0048:004c:SysCall  NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000)
7935.419:0050:0054:trace:imports:import_dll --- memmove ucrtbase.dll.2381 = 7B9B4E8C
7935.419:0048:004c:trace:reg:NtOpenKeyEx (0x58,L"CurrentControlSet",102,0x62ef10)
7935.419:0050:0054:trace:imports:import_dll --- strchr ucrtbase.dll.2448 = 7B9B56EC
7935.419:0050:0054:trace:imports:import_dll --- strcmp ucrtbase.dll.2449 = 7B9B570C
7935.419:0050:0054:trace:imports:import_dll --- strcspn ucrtbase.dll.2453 = 7B9B578C
004c: open_key( parent=0058, access=00000102, attributes=00000040, name=L"CurrentControlSet" )
7935.420:0050:0054:trace:imports:import_dll --- strlen ucrtbase.dll.2457 = 7B9B580C
004c: open_key() = 0 { hkey=005c }
7935.420:0050:0054:trace:imports:import_dll --- wcscpy ucrtbase.dll.2509 = 7B9B5E8C
7935.420:0050:0054:trace:imports:import_dll --- wcslen ucrtbase.dll.2513 = 7B9B5F0C
7935.420:0048:004c:trace:reg:NtOpenKeyEx <- 0x5c
7935.420:0050:0054:trace:imports:import_dll --- wcsrchr ucrtbase.dll.2521 = 7B9B600C
7935.420:0048:004c:SysRet   NtOpenKeyEx() retval=00000000
7935.420:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.420:0048:004c:Ret  ntdll.NtOpenKeyEx() retval=00000000 ret=7bc73de1
7935.420:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.420:0048:004c:Call ntdll.NtClose(00000058) ret=7bc73c64
7935.420:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.420:0048:004c:SysCall  NtClose(00000058)
7935.420:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.420:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.421:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
004c: close_handle( handle=0058 )
7935.421:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
004c: close_handle() = 0
7935.421:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.421:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.421:0048:004c:SysRet   NtClose() retval=00000000
7935.421:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.421:0048:004c:Ret  ntdll.NtClose() retval=00000000 ret=7bc73c64
7935.421:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.421:0048:004c:Call ntdll._wcsnicmp(0062f35a L"Control\\Video\\{f4782f3c-01da-4c05-8a5a-5f51b9012acc}\\0000",7bc88e30 L"Wow6432Node\\",0000000c) ret=7bc73cc4
7935.421:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.421:0048:004c:Ret  ntdll._wcsnicmp() retval=ffffffec ret=7bc73cc4
7935.421:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.421:0048:004c:Call ntdll.NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000) ret=7bc73de1
7935.421:0048:004c:SysCall  NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000)
7935.421:0048:004c:trace:reg:NtOpenKeyEx (0x5c,L"Control",102,0x62ef10)
004c: open_key( parent=005c, access=00000102, attributes=00000040, name=L"Control" )
004c: open_key() = 0 { hkey=0058 }
7935.421:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 00273580, status 0.
7935.421:0050:0054:trace:module:load_dll looking for L"user32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.421:0048:004c:trace:reg:NtOpenKeyEx <- 0x58
7935.421:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"user32.dll" 0062F3C4
7935.421:0048:004c:SysRet   NtOpenKeyEx() retval=00000000
7935.421:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\user32.dll" for L"user32.dll" at 7B610000, count=-1
7935.421:0048:004c:Ret  ntdll.NtOpenKeyEx() retval=00000000 ret=7bc73de1
7935.421:0048:004c:Call ntdll.NtClose(0000005c) ret=7bc73c64
7935.421:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
7935.421:0048:004c:SysCall  NtClose(0000005c)
7935.421:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c3b4 000000a0 00000004
7935.421:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
004c: close_handle( handle=005c )
7935.421:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
004c: close_handle() = 0
7935.421:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.421:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.421:0048:004c:SysRet   NtClose() retval=00000000
7935.421:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.421:0048:004c:Ret  ntdll.NtClose() retval=00000000 ret=7bc73c64
7935.421:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.421:0048:004c:Call ntdll._wcsnicmp(0062f36a L"Video\\{f4782f3c-01da-4c05-8a5a-5f51b9012acc}\\0000",7bc88e30 L"Wow6432Node\\",0000000c) ret=7bc73cc4
7935.421:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.421:0048:004c:Ret  ntdll._wcsnicmp() retval=ffffffff ret=7bc73cc4
7935.421:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.421:0048:004c:Call ntdll.NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000) ret=7bc73de1
7935.421:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.421:0048:004c:SysCall  NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000)
7935.421:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.421:0048:004c:trace:reg:NtOpenKeyEx (0x58,L"Video",102,0x62ef10)
7935.421:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.421:0050:0054:trace:imports:import_dll --- ActivateKeyboardLayout user32.dll.0 = 7B61296C
7935.422:0050:0054:trace:imports:import_dll --- BeginPaint user32.dll.16 = 7B612B4C
004c: open_key( parent=0058, access=00000102, attributes=00000040, name=L"Video" )
7935.422:0050:0054:trace:imports:import_dll --- ClientToScreen user32.dll.72 = 7B6132CC
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.422:0050:0054:trace:imports:import_dll --- CreateWindowExW user32.dll.107 = 7B613728
7935.422:0050:0054:trace:imports:import_dll --- DefWindowProcA user32.dll.150 = 7BF34968
7935.422:0050:0054:trace:imports:import_dll --- DefWindowProcW user32.dll.151 = 7BF34988
7935.422:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.422:0050:0054:trace:imports:import_dll --- DestroyWindow user32.dll.161 = 7B613D48
7935.422:0048:004c:SysRet   NtOpenKeyEx() retval=c0000034
7935.422:0050:0054:trace:imports:import_dll --- DrawTextW user32.dll.199 = 7B614208
7935.422:0048:004c:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.422:0050:0054:trace:imports:import_dll --- EndPaint user32.dll.212 = 7B614368
7935.422:0048:004c:Call ntdll.NtCreateKey(0062f068,00000002,0062f00c,00000000,0062f0b4,00000001,00000000) ret=7bc67940
7935.422:0050:0054:trace:imports:import_dll --- EnumChildWindows user32.dll.214 = 7B6143A8
7935.422:0050:0054:trace:imports:import_dll --- FillRect user32.dll.240 = 7B6146E8
7935.422:0048:004c:SysCall  NtCreateKey(0062f068,00000002,0062f00c,00000000,0062f0b4,00000001,00000000)
7935.422:0050:0054:trace:imports:import_dll --- GetClientRect user32.dll.271 = 7B614AC8
7935.422:0048:004c:trace:reg:NtCreateKey (0x58,L"Video",(null),1,2,0x62f068)
7935.422:0050:0054:trace:imports:import_dll --- GetFocus user32.dll.303 = 7B614EA8
7935.422:0050:0054:trace:imports:import_dll --- GetKeyboardLayout user32.dll.320 = 7B6150C8
7935.422:0050:0054:trace:imports:import_dll --- GetKeyboardState user32.dll.324 = 7B615148
004c: create_key( access=00000002, options=00000001, objattr={rootdir=0058,attributes=000000c0,sd={},name=L"Video"}, class=L"" )
7935.422:0050:0054:trace:imports:import_dll --- GetMonitorInfoW user32.dll.351 = 7B6154A8
004c: create_key() = 0 { hkey=005c }
7935.422:0050:0054:trace:imports:import_dll --- GetWindowLongW user32.dll.418 = 7B615CC8
7935.422:0050:0054:trace:imports:import_dll --- GetWindowRect user32.dll.423 = 7B615D68
7935.422:0048:004c:trace:reg:NtCreateKey <- 0x5c
7935.422:0050:0054:trace:imports:import_dll --- IntersectRect user32.dll.448 = 7B616048
7935.422:0048:004c:SysRet   NtCreateKey() retval=00000000
7935.422:0050:0054:trace:imports:import_dll --- IsWindow user32.dll.477 = 7B6163C8
7935.422:0048:004c:Ret  ntdll.NtCreateKey() retval=00000000 ret=7bc67940
7935.422:0050:0054:trace:imports:import_dll --- LoadCursorW user32.dll.494 = 7B6165C8
7935.422:0048:004c:Call ntdll.NtClose(00000058) ret=7bc67afe
7935.422:0050:0054:trace:imports:import_dll --- LoadIconW user32.dll.496 = 7B616608
7935.422:0048:004c:SysCall  NtClose(00000058)
7935.422:0050:0054:trace:imports:import_dll --- MapWindowPoints user32.dll.524 = 7B616A08
7935.422:0050:0054:trace:imports:import_dll --- MonitorFromPoint user32.dll.539 = 7B616BE8
7935.423:0050:0054:trace:imports:import_dll --- MonitorFromWindow user32.dll.541 = 7B616C28
004c: close_handle( handle=0058 )
7935.423:0050:0054:trace:imports:import_dll --- PostMessageW user32.dll.568 = 7B616F88
004c: close_handle() = 0
7935.423:0050:0054:trace:imports:import_dll --- RedrawWindow user32.dll.585 = 7B617188
7935.423:0050:0054:trace:imports:import_dll --- RegisterClassExW user32.dll.588 = 7B6171E8
7935.423:0048:004c:SysRet   NtClose() retval=00000000
7935.423:0050:0054:trace:imports:import_dll --- RegisterWindowMessageW user32.dll.613 = 7B617488
7935.423:0048:004c:Ret  ntdll.NtClose() retval=00000000 ret=7bc67afe
7935.423:0050:0054:trace:imports:import_dll --- SendMessageA user32.dll.633 = 7B617708
7935.423:0048:004c:Call ntdll.NtCreateKey(0062f068,00000002,0062f00c,00000000,0062f0b4,00000001,00000000) ret=7bc67940
7935.423:0050:0054:trace:imports:import_dll --- SendMessageW user32.dll.638 = 7B6177A8
7935.423:0050:0054:trace:imports:import_dll --- SetFocus user32.dll.666 = 7B617AC8
7935.423:0048:004c:SysCall  NtCreateKey(0062f068,00000002,0062f00c,00000000,0062f0b4,00000001,00000000)
7935.423:0050:0054:trace:imports:import_dll --- SetWindowLongW user32.dll.720 = 7B618168
7935.423:0048:004c:trace:reg:NtCreateKey (0x5c,L"{f4782f3c-01da-4c05-8a5a-5f51b9012acc}",(null),1,2,0x62f068)
7935.423:0050:0054:trace:imports:import_dll --- SetWindowPos user32.dll.723 = 7B6181A8
7935.423:0050:0054:trace:imports:import_dll --- ShowWindow user32.dll.744 = 7B618388
7935.423:0050:0054:trace:imports:import_dll --- ToAscii user32.dll.761 = 7B618568
004c: create_key( access=00000002, options=00000001, objattr={rootdir=005c,attributes=000000c0,sd={},name=L"{f4782f3c-01da-4c05-8a5a-5f51b9012acc}"}, class=L"" )
7935.423:0050:0054:trace:imports:import_dll --- ToUnicodeEx user32.dll.764 = 7B6185C8
004c: create_key() = 0 { hkey=0058 }
7935.423:0050:0054:trace:imports:import_dll --- UnregisterClassW user32.dll.782 = 7B6187E8
7935.423:0050:0054:trace:imports:import_dll --- User32InitializeImmEntryTable user32.dll.793 = 7B618948
7935.423:0048:004c:trace:reg:NtCreateKey <- 0x58
7935.423:0050:0054:trace:imports:import_dll --- ValidateRect user32.dll.799 = 7B618A08
7935.423:0048:004c:SysRet   NtCreateKey() retval=00000000
7935.423:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.423:0048:004c:Ret  ntdll.NtCreateKey() retval=00000000 ret=7bc67940
7935.423:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.423:0048:004c:Call ntdll.NtClose(0000005c) ret=7bc67afe
7935.423:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.423:0048:004c:SysCall  NtClose(0000005c)
7935.423:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.423:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
004c: close_handle( handle=005c )
7935.424:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
004c: close_handle() = 0
7935.424:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.424:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.424:0048:004c:SysRet   NtClose() retval=00000000
7935.424:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.424:0048:004c:Ret  ntdll.NtClose() retval=00000000 ret=7bc67afe
7935.424:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.424:0048:004c:Call ntdll.NtCreateKey(0062f068,00000002,0062f00c,00000000,0062f0b4,00000001,00000000) ret=7bc67940
7935.424:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.424:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.424:0048:004c:SysCall  NtCreateKey(0062f068,00000002,0062f00c,00000000,0062f0b4,00000001,00000000)
7935.424:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.424:0048:004c:trace:reg:NtCreateKey (0x58,L"0000",(null),1,2,0x62f068)
004c: create_key( access=00000002, options=00000001, objattr={rootdir=0058,attributes=000000c0,sd={},name=L"0000"}, class=L"" )
004c: create_key() = 0 { hkey=005c }
7935.424:0048:004c:trace:reg:NtCreateKey <- 0x5c
7935.424:0048:004c:SysRet   NtCreateKey() retval=00000000
7935.424:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 002735B0, status 0.
7935.424:0048:004c:Ret  ntdll.NtCreateKey() retval=00000000 ret=7bc67940
7935.424:0050:0054:trace:module:load_dll looking for L"win32u.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.424:0048:004c:Call ntdll.NtClose(00000058) ret=7bc67afe
7935.424:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"win32u.dll" 0062F3C4
7935.424:0048:004c:SysCall  NtClose(00000058)
7935.424:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\win32u.dll" for L"win32u.dll" at 7B520000, count=-1
7935.424:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000004,0062f56c)
004c: close_handle( handle=0058 )
7935.424:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c458 00000030 00000004
004c: close_handle() = 0
7935.424:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.424:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.424:0048:004c:SysRet   NtClose() retval=00000000
7935.424:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.424:0048:004c:Ret  ntdll.NtClose() retval=00000000 ret=7bc67afe
7935.424:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.424:0048:004c:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc3d98f
7935.424:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.424:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc3d98f
7935.424:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.424:0048:004c:Ret  kernelbase.RegCreateKeyExW() retval=00000000 ret=7bf3cfb4
7935.424:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.424:0048:004c:Ret  advapi32.RegCreateKeyExW() retval=00000000 ret=00406c5a
7935.424:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.424:0048:004c:Call ucrtbase.strlen(0062f24c "The graphics driver is missing. Check your build!") ret=00407cb6
7935.424:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.424:0048:004c:Ret  ucrtbase.strlen() retval=00000031 ret=00407cb6
7935.424:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.424:0048:004c:Call advapi32.RegSetValueExA(0000005c,00413ff6 "DriverError",00000000,00000001,0062f24c,00000032) ret=00407ce0
7935.424:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.424:0048:004c:Call kernelbase.RegSetValueExA(0000005c,00413ff6 "DriverError",00000000,00000001,0062f24c,00000032) ret=7bf3cfb4
7935.424:0050:0054:trace:imports:import_dll --- NtUserAssociateInputContext win32u.dll.801 = 7B52742C
7935.424:0048:004c:Call ntdll.RtlRunOnceExecuteOnce(7bcb8c80,7bc70990,00000000,00000000) ret=7bc26189
7935.424:0050:0054:trace:imports:import_dll --- NtUserBuildHimcList win32u.dll.812 = 7B52758C
7935.424:0048:004c:Ret  ntdll.RtlRunOnceExecuteOnce() retval=00000000 ret=7bc26189
7935.424:0050:0054:trace:imports:import_dll --- NtUserCallHwnd win32u.dll.818 = 7B52764C
7935.424:0048:004c:Call ntdll.wcscpy(0062efa0,7bcb8cb4 L"") ret=7bc21d77
7935.424:0050:0054:trace:imports:import_dll --- NtUserCallTwoParam win32u.dll.830 = 7B5277CC
7935.424:0048:004c:Ret  ntdll.wcscpy() retval=0062efa0 ret=7bc21d77
7935.424:0050:0054:trace:imports:import_dll --- NtUserCreateInputContext win32u.dll.868 = 7B527C8C
7935.424:0048:004c:Call ntdll.RtlMultiByteToUnicodeSize(0062f0d4,0062f24c "The graphics driver is missing. Check your build!",00000032) ret=7bc46ac2
7935.424:0050:0054:trace:imports:import_dll --- NtUserDestroyInputContext win32u.dll.897 = 7B52802C
7935.424:0048:004c:Ret  ntdll.RtlMultiByteToUnicodeSize() retval=00000000 ret=7bc46ac2
7935.424:0050:0054:trace:imports:import_dll --- NtUserDisableThreadIme win32u.dll.905 = 7B52812C
7935.424:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,00000064) ret=7bc46ae9
7935.424:0050:0054:trace:imports:import_dll --- NtUserMessageCall win32u.dll.1205 = 7B52A6AC
7935.424:0050:0054:trace:imports:import_dll --- NtUserNotifyIMEStatus win32u.dll.1214 = 7B52A7CC
7935.424:0050:0054:trace:imports:import_dll --- NtUserQueryInputContext win32u.dll.1245 = 7B52ABAC
7935.424:0050:0054:trace:imports:import_dll --- NtUserQueryWindow win32u.dll.1247 = 7B52ABEC
7935.424:0050:0054:trace:imports:import_dll --- NtUserUpdateInputContext win32u.dll.1509 = 7B52CCAC
7935.424:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f564,0062f568,00000008,0062f56c)
7935.424:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50c000 00001000 00000008
7935.424:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50c000, size 0x1000, mask 0x20.
7935.424:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.424:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00291F88, status 0.
7935.424:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.424:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00291f88 ret=7bc46ae9
7935.424:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.424:0048:004c:Call ntdll.RtlMultiByteToUnicodeN(00291f88,00000064,00000000,0062f24c,00000032) ret=7bc46b1c
7935.424:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.424:0048:004c:Ret  ntdll.RtlMultiByteToUnicodeN() retval=00000000 ret=7bc46b1c
7935.424:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.424:0048:004c:Call ntdll.RtlInitAnsiString(0062f0cc,00413ff6 "DriverError") ret=7bc46a0b
7935.424:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.424:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=00413ff6 ret=7bc46a0b
7935.424:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.424:0048:004c:Call ntdll.RtlAnsiStringToUnicodeString(0062f0d4,0062f0cc,00000001) ret=7bc46a25
7935.424:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.424:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.424:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.424:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x10, return 002735E0, status 0.
7935.424:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x18, return 00273610, status 0.
7935.424:0050:0054:trace:module:build_module loaded L"\\??\\C:\\windows\\system32\\imm32.dll" 0027CB98 7B4F0000
7935.424:0048:004c:Ret  ntdll.RtlAnsiStringToUnicodeString() retval=00000000 ret=7bc46a25
7935.424:0048:004c:Call ntdll.NtSetValueKey(0000005c,0062f0d4,00000000,00000001,00291f88,00000064) ret=7bc46b92
7935.424:0048:004c:SysCall  NtSetValueKey(0000005c,0062f0d4,00000000,00000001,00291f88,00000064)
7935.424:0048:004c:trace:reg:NtSetValueKey (0x5c,L"DriverError",1,0x291f88,100)
7935.427:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x470, return 00289420, status 0.
004c: set_key_value( hkey=005c, type=1, namelen=22, name=L"DriverError", data={54,00,68,00,65,00,20,00,67,00,72,00,61,00,70,00,68,00,69,00,63,00,73,00,20,00,64,00,72,00,69,00,76,00,65,00,72,00,20,00,69,00,73,00,20,00,6d,00,69,00,73,00,73,00,69,00,6e,00,67,00,2e,00,20,00,43,00,68,00,65,00,63,00,6b,00,20,00,79,00,6f,00,75,00,72,00,20,00,62,00,75,00,69,00,6c,00,64,00,21,00,00,00} )
004c: set_key_value() = 0
7935.427:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f7bc,0062f7c0,00000004,0062f7b8)
7935.427:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50a028 00000220 00000004
7935.427:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50a000, size 0x1000, mask 0x20.
7935.427:0048:004c:SysRet   NtSetValueKey() retval=00000000
7935.427:0048:004c:Ret  ntdll.NtSetValueKey() retval=00000000 ret=7bc46b92
7935.427:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.427:0048:004c:Call ntdll.RtlFreeUnicodeString(0062f0d4) ret=7bc46ba1
7935.427:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.427:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.427:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.427:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.427:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b50afff c-rW-
7935.427:0050:0054:trace:virtual:dump_view       0x7b50b000 - 0x7b50bfff c-r--
7935.427:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.427:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.427:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.427:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00273610, return 1, status 0.
7935.427:0048:004c:Ret  ntdll.RtlFreeUnicodeString() retval=00000001 ret=7bc46ba1
7935.427:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062f7bc,0062f7c0,00000002,0062f7b8)
7935.427:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00291f88) ret=7bc46a56
7935.427:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b50a000 00001000 00000002
7935.427:0050:0054:trace:virtual:get_vprot_range_size base 0x7b50a000, size 0x1000, mask 0x20.
7935.427:0050:0054:trace:virtual:dump_view View: 0x7b4f0000 - 0x7b50efff c-rWx (image)
7935.427:0050:0054:trace:virtual:dump_view       0x7b4f0000 - 0x7b4f0fff c-r--
7935.427:0050:0054:trace:virtual:dump_view       0x7b4f1000 - 0x7b4fffff c-r-x
7935.427:0050:0054:trace:virtual:dump_view       0x7b500000 - 0x7b500fff c-rW-
7935.427:0050:0054:trace:virtual:dump_view       0x7b501000 - 0x7b508fff c-r--
7935.427:0050:0054:trace:virtual:dump_view       0x7b509000 - 0x7b509fff c-rW-
7935.427:0050:0054:trace:virtual:dump_view       0x7b50a000 - 0x7b50bfff c-r--
7935.427:0050:0054:trace:virtual:dump_view       0x7b50c000 - 0x7b50dfff c-rW-
7935.427:0050:0054:trace:virtual:dump_view       0x7b50e000 - 0x7b50efff c-r--
7935.427:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00291F88, return 1, status 0.
7935.427:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.427:0048:004c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc46a56
7935.427:0050:0054:trace:loaddll:build_module Loaded L"C:\\windows\\system32\\imm32.dll" at 7B4F0000: builtin
7935.427:0048:004c:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc46a65
7935.427:0050:0054:trace:module:load_dll Loaded module L"\\??\\C:\\windows\\system32\\imm32.dll" at 7B4F0000
7935.427:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc46a65
7935.427:0050:0054:SysCall  NtClose(00000058)
7935.427:0048:004c:Ret  kernelbase.RegSetValueExA() retval=00000000 ret=7bf3cfb4
7935.427:0048:004c:Ret  advapi32.RegSetValueExA() retval=00000000 ret=00407ce0
7935.427:0048:004c:Call advapi32.RegCloseKey(0000005c) ret=00406cd7
7935.428:0048:004c:Call kernelbase.RegCloseKey(0000005c) ret=7bf3cfb4
0054: close_handle( handle=0058 )
7935.428:0048:004c:Call ntdll.NtClose(0000005c) ret=7bc3cde9
0054: close_handle() = 0
7935.428:0048:004c:SysCall  NtClose(0000005c)
7935.428:0050:0054:SysRet   NtClose() retval=00000000
004c: close_handle( handle=005c )
004c: close_handle() = 0
7935.428:0048:004c:SysRet   NtClose() retval=00000000
7935.428:0048:004c:Ret  ntdll.NtClose() retval=00000000 ret=7bc3cde9
7935.428:0048:004c:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bf3cfb4
7935.428:0048:004c:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bf3cfb4
7935.428:0048:004c:Ret  kernelbase.RegCloseKey() retval=00000000 ret=7bf3cfb4
7935.428:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261EF8, return 1, status 0.
7935.428:0048:004c:Ret  advapi32.RegCloseKey() retval=00000000 ret=00406cd7
7935.428:0050:0054:trace:module:process_attach (L"imm32.dll",00000000) - START
7935.428:0048:004c:Call ntdll.NtSetInformationProcess(ffffffff,000003ea,00000000,00000000) ret=00406d1f
7935.428:0050:0054:Call PE DLL (proc=7B4F2E70,module=7B4F0000 L"imm32.dll",reason=PROCESS_ATTACH,res=00000000)
7935.428:0048:004c:SysCall  NtSetInformationProcess(ffffffff,000003ea,00000000,00000000)
7935.428:0050:0054:Call KERNEL32.GetModuleHandleW(7b5044c2 L"ntdll.dll") ret=7b4fbc31
7935.428:0050:0054:Call kernelbase.GetModuleHandleW(7b5044c2 L"ntdll.dll") ret=7bf3cfb4
004c: grant_process_admin_token( handle=ffffffff )
7935.429:0050:0054:Call ntdll.RtlInitUnicodeString(0062f70c,7b5044c2 L"ntdll.dll") ret=7bc1b6df
7935.429:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7b5044c2 ret=7bc1b6df
004c: grant_process_admin_token() = 0
7935.429:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f70c,0062f708) ret=7bc1b705
7935.429:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F70C, base 0062F708.
7935.429:0048:004c:SysRet   NtSetInformationProcess() retval=00000000
7935.429:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F5CC
7935.429:0048:004c:Ret  ntdll.NtSetInformationProcess() retval=00000000 ret=00406d1f
7935.429:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.429:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.429:0048:004c:Call user32.CreateWindowExW(00000000,00008001,00000000,86000000,00000000,00000000,00000000,00000000,00000000,00000000,00000000,0062f1fc) ret=00406d9c
7935.429:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.429:0048:004c:Call win32u.NtUserGetAtomName(00008001,0062ed30) ret=7b67a2b9
7935.429:0050:0054:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=7b4fbc31
7935.429:0048:004c:SysCall  NtUserGetAtomName(00008001,0062ed30)
7935.429:0050:0054:Call kernelbase.GetProcAddress(7bf30000,7b504527 "__wine_dbg_header") ret=7b4fbc43
7935.429:0048:004c:SysRet   NtUserGetAtomName() retval=00000006
7935.429:0050:0054:Call ntdll.RtlInitAnsiString(0062f748,7b504527 "__wine_dbg_header") ret=7bc6ef7d
7935.429:0048:004c:Ret  win32u.NtUserGetAtomName() retval=00000006 ret=7b67a2b9
7935.429:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b504527 ret=7bc6ef7d
7935.429:0048:004c:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aa846 L"MDIClient") ret=7b67608f
7935.429:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f748,00000000,0062f744) ret=7bc6ef9b
7935.429:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.429:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.429:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.429:0050:0054:Ret  kernelbase.GetProcAddress() retval=7bf6c890 ret=7b4fbc43
7935.429:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.429:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.429:0050:0054:trace:imm:DllMain Call KERNEL32.GetModuleHandleW(7b5044c2 L"ntdll.dll") ret=7b4fbcae
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Call kernelbase.GetModuleHandleW(7b5044c2 L"ntdll.dll") ret=7bf3cfb4
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Call ntdll.RtlInitUnicodeString(0062f2ec,7b5044c2 L"ntdll.dll") ret=7bc1b6df
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7b5044c2 ret=7bc1b6df
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f2ec,0062f2e8) ret=7bc1b705
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F2EC, base 0062F2E8.
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F1AC
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=7b4fbcae
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Call kernelbase.GetProcAddress(7bf30000,7b5044e8 "__wine_dbg_output") ret=7b4fbcc0
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Call ntdll.RtlInitAnsiString(0062f328,7b5044e8 "__wine_dbg_output") ret=7bc6ef7d
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b5044e8 ret=7bc6ef7d
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f328,00000000,0062f324) ret=7bc6ef9b
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Ret  kernelbase.GetProcAddress() retval=7bf6ca40 ret=7b4fbcc0
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
instance 7B4F0000, reason 1, reserved 00000000
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Call user32.User32InitializeImmEntryTable(19650412) ret=7b4f2d5f
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Call kernelbase.GetModuleHandleW(7b6b2d42 L"imm32.dll") ret=7b661684
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Call ntdll.RtlInitUnicodeString(0062f71c,7b6b2d42 L"imm32.dll") ret=7bc1b6df
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7b6b2d42 ret=7bc1b6df
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f71c,0062f718) ret=7bc1b705
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F71C, base 0062F718.
7935.429:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"imm32.dll" 0062F5DC
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:trace:module:LdrGetDllHandleEx L"imm32.dll" -> 7B4F0000 (load path (null))
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7b4f0000 ret=7b661684
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Call kernelbase.GetModuleHandleW(7b6c20fa L"ntdll.dll") ret=7b66bef1
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Call ntdll.RtlInitUnicodeString(0062f6dc,7b6c20fa L"ntdll.dll") ret=7bc1b6df
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7b6c20fa ret=7bc1b6df
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f6dc,0062f6d8) ret=7bc1b705
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F6DC, base 0062F6D8.
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F59C
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7b66bef1
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Call kernelbase.GetProcAddress(7bf30000,7b6c215f "__wine_dbg_header") ret=7b66bf03
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Call ntdll.RtlInitAnsiString(0062f6f8,7b6c215f "__wine_dbg_header") ret=7bc6ef7d
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b6c215f ret=7bc6ef7d
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f6f8,00000000,0062f6f4) ret=7bc6ef9b
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.429:0048:004c:Ret  ucrtbase._wcsicmp() retval=ffffffb6 ret=7b67608f
7935.429:0050:0054:Ret  kernelbase.GetProcAddress() retval=7bf6c890 ret=7b66bf03
7935.429:0048:004c:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aabf0 L"IME") ret=7b67608f
7935.429:0050:0054:trace:win:User32InitializeImmEntryTable Call kernelbase.GetModuleHandleW(7b6c20fa L"ntdll.dll") ret=7b66bf6e
7935.429:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.429:0050:0054:Call ntdll.RtlInitUnicodeString(0062f2bc,7b6c20fa L"ntdll.dll") ret=7bc1b6df
7935.429:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.429:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7b6c20fa ret=7bc1b6df
7935.429:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.429:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f2bc,0062f2b8) ret=7bc1b705
7935.429:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.429:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F2BC, base 0062F2B8.
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062F17C
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7b66bf6e
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Call kernelbase.GetProcAddress(7bf30000,7b6c2120 "__wine_dbg_output") ret=7b66bf80
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Call ntdll.RtlInitAnsiString(0062f2d8,7b6c2120 "__wine_dbg_output") ret=7bc6ef7d
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b6c2120 ret=7bc6ef7d
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f2d8,00000000,0062f2d4) ret=7bc6ef9b
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Ret  kernelbase.GetProcAddress() retval=7bf6ca40 ret=7b66bf80
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
(19650412)
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Call kernelbase.GetProcAddress(7b4f0000,7b6b2d5d "__wine_ime_wnd_proc") ret=7b661709
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Call ntdll.RtlInitAnsiString(0062f738,7b6b2d5d "__wine_ime_wnd_proc") ret=7bc6ef7d
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b6b2d5d ret=7bc6ef7d
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Call ntdll.LdrGetProcedureAddress(7b4f0000,0062f738,00000000,0062f734) ret=7bc6ef9b
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Ret  kernelbase.GetProcAddress() retval=7b4f2648 ret=7b661709
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Ret  user32.User32InitializeImmEntryTable() retval=00000001 ret=7b4f2d5f
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Ret  PE DLL (proc=7B4F2E70,module=7B4F0000 L"imm32.dll",reason=PROCESS_ATTACH,res=00000000) retval=1
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:trace:module:process_attach (L"imm32.dll",00000000) - END
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Ret  ntdll.LdrLoadDll() retval=00000000 ret=7bc7281b
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Call ntdll.RtlReleasePath(002881f0) ret=7bc72830
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002881F0, return 1, status 0.
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc72830
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Ret  kernelbase.LoadLibraryW() retval=7b4f0000 ret=7b62effd
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Ret  PE DLL (proc=7B62F0C0,module=7B610000 L"user32.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:trace:module:process_attach (L"user32.dll",0062FD24) - END
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Call PE DLL (proc=7B5832B0,module=7B570000 L"gdi32.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Call KERNEL32.DisableThreadLibraryCalls(7b570000) ret=7b583294
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Call kernelbase.DisableThreadLibraryCalls(7b570000) ret=7bf3cfb4
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Call ntdll.LdrDisableThreadCalloutsForDll(7b570000) ret=7bc07df3
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7935.429:0048:004c:Ret  ucrtbase._wcsicmp() retval=ffffffba ret=7b67608f
7935.429:0050:0054:Ret  kernelbase.DisableThreadLibraryCalls() retval=00000001 ret=7bf3cfb4
7935.429:0048:004c:Call ntdll.RtlFindActivationContextSectionString(00000000,00000000,00000003,0062ed30,0062ec5c) ret=7b6760c7
7935.429:0050:0054:Ret  KERNEL32.DisableThreadLibraryCalls() retval=00000001 ret=7b583294
7935.429:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000000 (null) 3 L"#32769" 0062EC5C
7935.429:0048:004c:Ret  ntdll.RtlFindActivationContextSectionString() retval=c0150008 ret=7b6760c7
7935.429:0050:0054:Ret  PE DLL (proc=7B5832B0,module=7B570000 L"gdi32.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.429:0048:004c:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aa85c L"SysDateTimePick32") ret=7b6761e3
7935.429:0050:0054:trace:module:process_attach (L"gdi32.dll",0062FD24) - END
7935.429:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.429:0050:0054:trace:module:process_attach (L"rpcrt4.dll",0062FD24) - START
7935.429:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.429:0050:0054:trace:module:process_attach (L"cryptbase.dll",0062FD24) - START
7935.429:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.429:0050:0054:Call PE DLL (proc=7B8A18C0,module=7B8A0000 L"cryptbase.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.429:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.429:0050:0054:Call KERNEL32.DisableThreadLibraryCalls(7b8a0000) ret=7b8a18b4
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Call kernelbase.DisableThreadLibraryCalls(7b8a0000) ret=7bf3cfb4
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Call ntdll.LdrDisableThreadCalloutsForDll(7b8a0000) ret=7bc07df3
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Ret  kernelbase.DisableThreadLibraryCalls() retval=00000001 ret=7bf3cfb4
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Ret  KERNEL32.DisableThreadLibraryCalls() retval=00000001 ret=7b8a18b4
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:Ret  PE DLL (proc=7B8A18C0,module=7B8A0000 L"cryptbase.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:trace:module:process_attach (L"cryptbase.dll",0062FD24) - END
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:Call PE DLL (proc=7B8D3B00,module=7B8C0000 L"rpcrt4.dll",reason=PROCESS_ATTACH,res=0062FD24)
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:Ret  PE DLL (proc=7B8D3B00,module=7B8C0000 L"rpcrt4.dll",reason=PROCESS_ATTACH,res=0062FD24) retval=1
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:trace:module:process_attach (L"rpcrt4.dll",0062FD24) - END
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0050:0054:SysCall  NtFreeVirtualMemory(ffffffff,0062fca4,0062fcac,00008000)
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:trace:virtual:NtFreeVirtualMemory 0xffffffff 0x1 00000000 8000
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:trace:virtual:remove_reserved_area removing 0x20000000-0x68000000
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0050:0054:SysRet   NtFreeVirtualMemory() retval=00000000
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.429:0050:0054:SysCall  NtQueryInformationProcess(ffffffff,00000007,0062fc80,00000004,00000000)
7935.429:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.429:0050:0054:trace:process:NtQueryInformationProcess (0xffffffff,0x00000007,0x62fc80,0x00000004,(nil))
7935.429:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.429:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.429:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.434:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: get_process_debug_info( handle=ffffffff )
7935.434:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
0054: get_process_debug_info() = PORT_NOT_SET { debug=0000, debug_children=1, image={} }
7935.434:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.434:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.434:0050:0054:SysRet   NtQueryInformationProcess() retval=00000000
7935.434:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.434:0050:0054:Starting thread proc 00411E70 (arg=7FFD1000)
7935.434:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.434:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.434:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.434:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.434:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.434:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.434:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.434:0050:0054:SysCall  NtContinue(0062fd24,00000001)
7935.434:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.434:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.434:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
0054: select( flags=3, cookie=0021ee04, timeout=0, size=0, prev_apc=0000, result={}, data={}, contexts={} )
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
0054: select() = TIMEOUT { apc_handle=0000, signaled=1, call={}, contexts={} }
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Ret  ucrtbase._wcsicmp() retval=ffffffb0 ret=7b6761e3
7935.435:0050:0054:SysRet   NtContinue() retval=00000000
7935.435:0048:004c:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aa9f4 L"msctls_trackbar32") ret=7b6761e3
7935.435:0050:0054:Call KERNEL32.BaseThreadInitThunk(00000000,00411e70,7ffd1000) ret=7bf3e1f7
7935.435:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.435:0050:0054:Call ucrtbase._configure_wide_argv(00000001) ret=00411e85
7935.435:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.435:0050:0054:warn:msvcrt:_configure_wide_argv (1) stub
7935.435:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.435:0050:0054:Ret  ucrtbase._configure_wide_argv() retval=00000000 ret=00411e85
7935.435:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.435:0050:0054:Call ucrtbase._initialize_wide_environment() ret=00411e8a
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:trace:msvcrt:_initialize_wide_environment 
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.GetEnvironmentStringsW() ret=7b9ef0e6
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call kernelbase.GetEnvironmentStringsW() ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Call ntdll.RtlAcquirePebLock() ret=7bc159b1
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc159b1
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,000019aa) ret=7bc15a01
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x19aa, return 002898A8, status 0.
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=002898a8 ret=7bc15a01
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.memcpy(002898a8,002417b8,000019aa) ret=7bc15a23
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.memcpy() retval=002898a8 ret=7bc15a23
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlReleasePebLock() ret=7bc15a29
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc15a29
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  kernelbase.GetEnvironmentStringsW() retval=002898a8 ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  KERNEL32.GetEnvironmentStringsW() retval=002898a8 ret=7b9ef0e6
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00001a72) ret=7b9fec26
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x1a72, return 0028B270, status 0.
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=0028b270 ret=7b9fec26
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.FreeEnvironmentStringsW(002898a8) ret=7b9ef1c5
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call kernelbase.FreeEnvironmentStringsW(002898a8) ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,002898a8) ret=7bc106ac
7935.435:0048:004c:Ret  ucrtbase._wcsicmp() retval=ffffffb6 ret=7b6761e3
7935.435:0048:004c:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aa988 L"msctls_hotkey32") ret=7b6761e3
7935.435:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.435:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.435:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002898A8, return 1, status 0.
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc106ac
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  kernelbase.FreeEnvironmentStringsW() retval=00000001 ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  KERNEL32.FreeEnvironmentStringsW() retval=00000001 ret=7b9ef1c5
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Ret  ucrtbase._initialize_wide_environment() retval=00000000 ret=00411e8a
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ucrtbase.__p___argc() ret=00411e8f
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ucrtbase.__p___argc() retval=7ba6d06c ret=00411e8f
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Call ucrtbase.__p___wargv() ret=00411e96
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Ret  ucrtbase.__p___wargv() retval=7ba6d034 ret=00411e96
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ucrtbase._get_initial_wide_environment() ret=00411e9d
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:trace:msvcrt:_get_initial_wide_environment 
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:trace:msvcrt:_initialize_wide_environment 
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Ret  ucrtbase._get_initial_wide_environment() retval=0028b270 ret=00411e9d
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ucrtbase._set_app_type(00000002) ret=00411ec5
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:trace:msvcrt:__set_app_type (2) Gui application
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  ucrtbase._set_app_type() retval=00000043 ret=00411ec5
7935.435:0050:0054:Call KERNEL32.GetCommandLineW() ret=00411d7f
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call kernelbase.GetCommandLineW() ret=7bf3cfb4
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Ret  kernelbase.GetCommandLineW() retval=0024366e ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  KERNEL32.GetCommandLineW() retval=0024366e ret=00411d7f
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Call KERNEL32.GetStartupInfoW(0062fea8) ret=00411dff
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call kernelbase.GetStartupInfoW(0062fea8) ret=7bf3cfb4
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlAcquirePebLock() ret=7bc1e9ef
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc1e9ef
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Call ntdll.RtlGetCurrentPeb() ret=7bc1e9f5
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Ret  ntdll.RtlGetCurrentPeb() retval=7ffd1000 ret=7bc1e9f5
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlReleasePebLock() ret=7bc1ea81
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc1ea81
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  kernelbase.GetStartupInfoW() retval=00000000 ret=7bf3cfb4
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Ret  KERNEL32.GetStartupInfoW() retval=00000000 ret=00411dff
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.GetModuleHandleW(00000000) ret=00411e19
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Call kernelbase.GetModuleHandleW(00000000) ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=00400000 ret=7bf3cfb4
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Ret  KERNEL32.GetModuleHandleW() retval=00400000 ret=00411e19
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Call ucrtbase.wcslen(00415b98 L"/n") ret=0040d392
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  ucrtbase.wcslen() retval=00000002 ret=0040d392
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call ucrtbase.wcslen(00415b90 L"/e,") ret=0040d3a1
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Ret  ucrtbase.wcslen() retval=00000003 ret=0040d3a1
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Call ucrtbase.wcslen(00415b84 L"/cd,") ret=0040d3b0
7935.435:0048:004c:Ret  ucrtbase._wcsicmp() retval=ffffffb6 ret=7b6761e3
7935.435:0050:0054:Ret  ucrtbase.wcslen() retval=00000004 ret=0040d3b0
7935.435:0050:0054:Call ucrtbase.wcslen(00415b74 L"/root,") ret=0040d3bf
7935.435:0048:004c:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aa96c L"ComboBoxEx32") ret=7b6761e3
7935.435:0050:0054:Ret  ucrtbase.wcslen() retval=00000006 ret=0040d3bf
7935.435:0048:004c:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.435:0050:0054:Call ucrtbase.wcslen(00415b60 L"/select,") ret=0040d3ce
7935.435:0048:004c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.435:0050:0054:Ret  ucrtbase.wcslen() retval=00000008 ret=0040d3ce
7935.435:0048:004c:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.435:0050:0054:Call ucrtbase.wcslen(00415b4c L"/desktop") ret=0040d3dd
7935.435:0048:004c:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.435:0050:0054:Ret  ucrtbase.wcslen() retval=00000008 ret=0040d3dd
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Call ucrtbase.wcslen(00415b38 L"\"/desktop") ret=0040d3ee
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Ret  ucrtbase.wcslen() retval=00000009 ret=0040d3ee
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ucrtbase.iswspace(0000002f) ret=0040d480
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ucrtbase.iswspace() retval=00000000 ret=0040d480
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b98 L"/n",00000002) ret=0040d49b
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Ret  ucrtbase._wcsicmp() retval=ffffffc0 ret=7b6761e3
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Call win32u.NtUserGetClassInfoEx(00000000,0062ed30,0062ed58,00000000,00000000) ret=7b6696be
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:SysCall  NtUserGetClassInfoEx(00000000,0062ed30,0062ed58,00000000,00000000)
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:trace:class:get_shared_class class 0x7d4e5830, lock 0x21fd30, class_shm 0x21fd1c
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:trace:class:get_shared_class class 0x7d4e5830, lock 0x21fd30, class_shm 0x21fd1c
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:trace:class:find_class L"#32769" 0 -> 0x7d4e5830
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:trace:class:get_shared_class class 0x7d4e5830, lock 0x21fd20, class_shm 0x21fd30
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:trace:class:get_shared_class class 0x7d4e5830, lock 0x21fd20, class_shm 0x21fd30
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:SysRet   NtUserGetClassInfoEx() retval=00008001
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00283ea0) ret=7b9f6857
7935.435:0048:004c:Ret  win32u.NtUserGetClassInfoEx() retval=00008001 ret=7b6696be
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00283ea0) ret=7bf3cfb4
7935.435:0048:004c:Call KERNEL32.IsBadStringPtrW(0062eeb4,00000006) ret=7b66976d
7935.435:0048:004c:Ret  KERNEL32.IsBadStringPtrW() retval=00000000 ret=7b66976d
7935.435:0048:004c:Call kernelbase.GetModuleHandleW(7b6c20fa L"ntdll.dll") ret=7b66bfee
7935.435:0048:004c:Call ntdll.RtlInitUnicodeString(0062eaec,7b6c20fa L"ntdll.dll") ret=7bc1b6df
7935.435:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=7b6c20fa ret=7bc1b6df
7935.435:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062eaec,0062eae8) ret=7bc1b705
7935.435:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EAEC, base 0062EAE8.
7935.435:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00283EA0, return 1, status 0.
7935.435:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062E9AC
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bf3cfb4
7935.435:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=00000001 ret=7b9f6857
7935.435:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.435:0050:0054:trace:msvcrt:_lock (19)
7935.435:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7b66bfee
7935.435:0050:0054:Call ntdll.RtlEnterCriticalSection(7ba6e358) ret=7b9cdd3a
7935.435:0048:004c:Call kernelbase.GetProcAddress(7bf30000,7b6c210e "__wine_dbg_strdup") ret=7b66c000
7935.435:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7935.435:0048:004c:Call ntdll.RtlInitAnsiString(0062eb08,7b6c210e "__wine_dbg_strdup") ret=7bc6ef7d
7935.435:0050:0054:trace:msvcrt:_unlock (19)
7935.435:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b6c210e ret=7bc6ef7d
7935.435:0050:0054:Call ntdll.RtlLeaveCriticalSection(7ba6e358) ret=7b9dd35c
7935.435:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062eb08,00000000,0062eb04) ret=7bc6ef9b
7935.435:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
7935.435:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.435:0050:0054:trace:msvcrt:_lock (25)
7935.435:0048:004c:Ret  kernelbase.GetProcAddress() retval=7bf6cb10 ret=7b66c000
7935.435:0050:0054:Call ntdll.RtlEnterCriticalSection(7ba6e400) ret=7b9cdd3a
7935.435:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7935.435:0048:004c:trace:win:WIN_CreateWindowEx (null) #8001->L"#32769" ex=00000000 style=86000000 0,0 0x0 parent=00000000 menu=00000000 inst=00000000 params=0062F1FC
7935.435:0050:0054:trace:msvcrt:_unlock (25)
7935.435:0048:004c:Call kernelbase.GetModuleHandleW(7b6c20fa L"ntdll.dll") ret=7b66be5e
7935.435:0050:0054:Call ntdll.RtlLeaveCriticalSection(7ba6e400) ret=7b9dd35c
7935.435:0048:004c:Call ntdll.RtlInitUnicodeString(0062ec3c,7b6c20fa L"ntdll.dll") ret=7bc1b6df
7935.435:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=7b6c20fa ret=7bc1b6df
7935.435:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
7935.435:0048:004c:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062ec3c,0062ec38) ret=7bc1b705
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EC3C, base 0062EC38.
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EAFC
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7b66be5e
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Call kernelbase.GetProcAddress(7bf30000,7b6c2132 "__wine_dbg_get_channel_flags") ret=7b66be70
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Call ntdll.RtlInitAnsiString(0062ec48,7b6c2132 "__wine_dbg_get_channel_flags") ret=7bc6ef7d
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:Ret  ntdll.RtlInitAnsiString() retval=7b6c2132 ret=7bc6ef7d
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Call ntdll.LdrGetProcedureAddress(7bf30000,0062ec48,00000000,0062ec44) ret=7bc6ef9b
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Ret  kernelbase.GetProcAddress() retval=7bf6c770 ret=7b66be70
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:trace:win:dump_window_styles style: WS_POPUP WS_CLIPSIBLINGS WS_CLIPCHILDREN
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:trace:win:dump_window_styles exstyle:
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0048:004c:Call ntdll.RtlInitUnicodeString(0062ed40,00000000) ret=7b66a396
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0048:004c:Ret  ntdll.RtlInitUnicodeString() retval=00000008 ret=7b66a396
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:Call win32u.NtUserCreateWindowEx(00000000,0062ed30,00000000,0062ed40,86000000,00000000,00000000,00000000,00000000,00000000,00000000,00000000,0062f1fc,00000000,00000000,00008001,00000000) ret=7b66a71f
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.435:0048:004c:SysCall  NtUserCreateWindowEx(00000000,0062ed30,00000000,0062ed40,86000000,00000000,00000000,00000000,00000000,00000000,00000000,00000000,0062f1fc,00000000,00000000,00008001,00000000)
7935.435:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.435:0048:004c:trace:win:NtUserCreateWindowEx ex_style 0, class_name L"#32769", version <null>, window_name (null), style 0x86000000, x 0, y 0, cx 0, cy 0, parent (nil), menu (nil), class_instance (nil), params 0x62f1fc, flags 0, instance (nil), class #8001, ansi 0
7935.435:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.435:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.435:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.443:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
004c: create_window( parent=00000000, owner=00000000, atom=8001, class_instance=00000000, instance=00000000, dpi_context=00006010, style=86000000, ex_style=00000000, class=L"" )
7935.443:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.443:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.443:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.443:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.443:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.443:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.443:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.443:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.443:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.443:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.443:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.443:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.443:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.443:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
004c: create_window() = 0 { handle=00010020, parent=00000000, owner=00000000, extra=0, class_ptr=7d4e5830 }
7935.443:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.443:0050:0054:Ret  ucrtbase._wcsnicmp() retval=fffffff6 ret=0040d49b
7935.443:0050:0054:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b90 L"/e,",00000003) ret=0040de47
004c: get_process_winstation( )
7935.443:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
004c: get_process_winstation() = 0 { handle=0050 }
7935.443:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.443:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.443:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
004c: set_user_object_info( handle=0050, flags=00000000, obj_flags=00000000 )
7935.443:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
004c: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"WinSta0" }
7935.443:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.443:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.443:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.443:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.443:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.443:0048:004c:trace:reg:NtOpenKeyEx (0x2c,L"Software\\Wine\\Debug",2000000,0x21dbc4)
7935.443:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.443:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.444:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
004c: open_key( parent=002c, access=02000000, attributes=00000040, name=L"Software\\Wine\\Debug" )
7935.444:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.444:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.444:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.444:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.444:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.444:0048:004c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21dd40, class_shm 0x21dd38
7935.444:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.444:0048:004c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21dd40, class_shm 0x21dd38
7935.444:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.444:0048:004c:trace:class:NtUserGetClassName 0x10020 0 0x21dde8
7935.444:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.444:0048:004c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21dba0, class_shm 0x21db9c
7935.444:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.444:0048:004c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21dba0, class_shm 0x21db9c
7935.444:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.444:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.444:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.444:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.444:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.444:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.444:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.444:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.444:0048:004c:trace:message:spy_enter_message (0x10020) L"{#32769}"      [0000] WM_NULL sent from self wp=00000000 lp=00000000
7935.444:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.444:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.444:0048:004c:trace:winstation:get_shared_queue lock 0x21e3c8, queue_shm 0x21e358
7935.444:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.444:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.445:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
004c: get_msg_queue( )
7935.445:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
004c: get_msg_queue() = 0 { locator={id=00000010,offset=00101f50} }
7935.445:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.445:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.445:0048:004c:trace:winstation:get_shared_queue lock 0x21e3c8, queue_shm 0x21e358
7935.445:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.445:0048:004c:trace:hook:call_message_hooks skipping hook WH_CALLWNDPROC
7935.445:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.445:0048:004c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21e490, class_shm 0x21e488
7935.445:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.445:0048:004c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21e490, class_shm 0x21e488
7935.445:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.445:0048:004c:trace:class:NtUserGetClassName 0x10020 0 0x21e538
7935.445:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.445:0048:004c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21e2f0, class_shm 0x21e2ec
7935.445:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.445:0048:004c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21e2f0, class_shm 0x21e2ec
7935.445:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.445:0048:004c:trace:message:spy_exit_message  (0x10020) L"{#32769}"      [0000] WM_NULL returned 00000000
7935.445:0050:0054:Ret  ucrtbase._wcsnicmp() retval=ffffffff ret=0040de47
7935.445:0050:0054:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b84 L"/cd,",00000004) ret=0040de7f
7935.445:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
004c: get_window_property( window=00010020, atom=0000, name=L"__wine_display_device_guid" )
7935.445:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
004c: get_window_property() = OBJECT_NAME_NOT_FOUND { data=00000000 }
7935.445:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.445:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.445:0048:004c:trace:sync:NtQueryInformationAtom 0 -> L"\b7cd\ea6c!\0000\0000\0000\0000@\0000\5640\7d4e\000e\0000\0000\0000\0000\0000\0000\0000\03e8\0000\8001\fbad\3417\7ffc\3417\7ffc\3417\7ffc\0000\0000\bb34\b7ed\b360\b7ed\3401\7ffc\37ff\7ffc\0000\0000\19b9\b7da\ef20!\0000\0000\0002\0000\8a20\b7ea\1e9d\b7d9\ef20!\8a20\b7ea\0002\0000\c230\b7cb"... (3221225485)
7935.445:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.445:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Video\\{00000000-0000-0000-0000-000000000000}\\0000",2000000,0x21e7bc)
7935.445:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.445:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Video\\{00000000-0000-0000-0000-000000000000}\\0000" )
7935.446:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.446:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.446:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.446:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.446:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.446:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
004c: get_process_winstation( )
7935.446:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
004c: get_process_winstation() = 0 { handle=0050 }
7935.446:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.446:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.446:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
004c: set_user_object_info( handle=0050, flags=00000000, obj_flags=00000000 )
7935.446:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
004c: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"" }
7935.446:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.446:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.446:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.446:0048:004c:trace:winstation:get_shared_desktop lock 0x21e920, desktop_shm 0x21e520
7935.446:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.446:0048:004c:trace:winstation:get_shared_desktop lock 0x21e920, desktop_shm 0x21e520
7935.446:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.446:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
004c: get_process_winstation( )
7935.446:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
004c: get_process_winstation() = 0 { handle=0050 }
7935.446:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.446:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.446:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
004c: set_user_object_info( handle=0050, flags=00000000, obj_flags=00000000 )
7935.446:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
004c: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"WinSta0" }
7935.446:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.446:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.446:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Enum",2000000,0x21d7b4)
7935.446:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.446:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Enum" )
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
004c: open_key() = 0 { hkey=0058 }
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0048:004c:trace:reg:NtOpenKeyEx <- 0x58
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\HARDWARE\\DEVICEMAP\\VIDEO",2000000,0x21d7b4)
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
004c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\HARDWARE\\DEVICEMAP\\VIDEO" )
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Ret  ucrtbase._wcsnicmp() retval=00000001 ret=0040de7f
7935.447:0050:0054:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b74 L"/root,",00000006) ret=0040deb8
7935.447:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.447:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.447:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Ret  ucrtbase._wcsnicmp() retval=fffffff2 ret=0040deb8
7935.447:0050:0054:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b60 L"/select,",00000008) ret=0040ded7
7935.447:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.447:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.447:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Ret  ucrtbase._wcsnicmp() retval=fffffff1 ret=0040ded7
7935.447:0050:0054:Call ucrtbase._wcsnicmp(002436b4 L"/desktop",00415b4c L"/desktop",00000008) ret=0040e198
7935.447:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.447:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.447:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.447:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.447:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.447:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.447:0050:0054:Ret  ucrtbase._wcsnicmp() retval=00000000 ret=0040e198
7935.447:0050:0054:Call user32.GetThreadDesktop(00000054) ret=00406768
7935.447:0050:0054:Call win32u.NtUserGetThreadDesktop(00000054) ret=7bf3cfb4
7935.447:0050:0054:SysCall  NtUserGetThreadDesktop(00000054)
0054: get_thread_desktop( tid=0054 )
0054: get_thread_desktop() = 0 { locator={id=00000001,offset=000ffd18}, handle=0054 }
7935.453:0050:0054:SysRet   NtUserGetThreadDesktop() retval=00000054
7935.453:0050:0054:Ret  win32u.NtUserGetThreadDesktop() retval=00000054 ret=7bf3cfb4
7935.453:0050:0054:Ret  user32.GetThreadDesktop() retval=00000054 ret=00406768
7935.453:0050:0054:Call user32.GetUserObjectInformationW(00000054,00000002,0041d000,00000104,00000000) ret=00406796
7935.453:0050:0054:Call win32u.NtUserGetObjectInformation(00000054,00000002,0041d000,00000104,00000000) ret=7bf3cfb4
7935.453:0050:0054:SysCall  NtUserGetObjectInformation(00000054,00000002,0041d000,00000104,00000000)
0054: set_user_object_info( handle=0054, flags=00000000, obj_flags=00000000 )
0054: set_user_object_info() = 0 { is_desktop=1, old_obj_flags=00000000, name=L"Default" }
7935.453:0050:0054:SysRet   NtUserGetObjectInformation() retval=00000001
7935.453:0050:0054:Ret  win32u.NtUserGetObjectInformation() retval=00000001 ret=7bf3cfb4
7935.453:0050:0054:Ret  user32.GetUserObjectInformationW() retval=00000001 ret=00406796
7935.453:0050:0054:Call ucrtbase._wcsicmp(0041d000 L"Default",00413da2 L"Default") ret=00407db8
7935.453:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.453:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.453:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.453:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.453:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.453:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.453:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.453:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.453:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.453:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.453:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.453:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.453:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.453:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.453:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.453:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.453:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.453:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.453:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.453:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.453:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.453:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.453:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.453:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.453:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.453:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.453:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.453:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.453:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.453:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.453:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.453:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.453:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.453:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.453:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.453:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.453:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.453:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.453:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.453:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.453:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.453:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.453:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.453:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.453:0050:0054:Ret  ucrtbase._wcsicmp() retval=00000000 ret=00407db8
7935.453:0050:0054:Call advapi32.RegOpenKeyW(80000001,00413d74 L"Software\\Wine\\Explorer",0062f454) ret=004067c8
7935.453:0050:0054:Call kernelbase.RegOpenKeyExW(80000001,00413d74 L"Software\\Wine\\Explorer",00000000,02000000,0062f454) ret=7bbb930b
7935.453:0050:0054:Call ntdll.RtlInitUnicodeString(0062f0b4,00413d74 L"Software\\Wine\\Explorer") ret=7bc43b9f
7935.453:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00413d74 ret=7bc43b9f
7935.453:0050:0054:Call ntdll.NtOpenKeyEx(0062f454,02000000,0062ef7c,00000000) ret=7bc73de1
7935.453:0050:0054:SysCall  NtOpenKeyEx(0062f454,02000000,0062ef7c,00000000)
7935.453:0050:0054:trace:reg:NtOpenKeyEx (0x24,L"Software\\Wine\\Explorer",2000000,0x62f454)
0054: open_key( parent=0024, access=02000000, attributes=00000040, name=L"Software\\Wine\\Explorer" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.456:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.456:0050:0054:SysRet   NtOpenKeyEx() retval=c0000034
7935.456:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.456:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.456:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.456:0050:0054:Ret  kernelbase.RegOpenKeyExW() retval=00000002 ret=7bbb930b
7935.456:0050:0054:Ret  advapi32.RegOpenKeyW() retval=00000002 ret=004067c8
7935.456:0050:0054:Call advapi32.RegGetValueW(80000002,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413de6 L"NoDesktop",00000010,00000000,0062f328,0062f454) ret=004068ad
7935.456:0050:0054:Call kernelbase.RegGetValueW(80000002,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413de6 L"NoDesktop",00000010,00000000,0062f328,0062f454) ret=7bf3cfb4
7935.456:0050:0054:trace:reg:RegGetValueW (80000002,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",L"NoDesktop",16,00000000,0062F328,0062F454=4)
7935.456:0050:0054:Call ntdll.RtlInitUnicodeString(0062f068,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer") ret=7bc43b9f
7935.456:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00413dfc ret=7bc43b9f
7935.456:0050:0054:Call ntdll.NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000) ret=7bc73de1
7935.456:0050:0054:SysCall  NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000)
7935.456:0050:0054:trace:reg:NtOpenKeyEx (0x18,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",1,0x62f0e0)
0054: open_key( parent=0018, access=00000001, attributes=00000040, name=L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.457:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.457:0050:0054:SysRet   NtOpenKeyEx() retval=c0000034
7935.457:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.457:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.457:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.457:0050:0054:Ret  kernelbase.RegGetValueW() retval=00000002 ret=7bf3cfb4
7935.457:0050:0054:Ret  advapi32.RegGetValueW() retval=00000002 ret=004068ad
7935.457:0050:0054:Call advapi32.RegGetValueW(80000001,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413de6 L"NoDesktop",00000010,00000000,0062f328,0062f454) ret=004068f5
7935.457:0050:0054:Call kernelbase.RegGetValueW(80000001,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413de6 L"NoDesktop",00000010,00000000,0062f328,0062f454) ret=7bf3cfb4
7935.457:0050:0054:trace:reg:RegGetValueW (80000001,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",L"NoDesktop",16,00000000,0062F328,0062F454=4)
7935.457:0050:0054:Call ntdll.RtlInitUnicodeString(0062f068,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer") ret=7bc43b9f
7935.457:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00413dfc ret=7bc43b9f
7935.457:0050:0054:Call ntdll.NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000) ret=7bc73de1
7935.457:0050:0054:SysCall  NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000)
7935.457:0050:0054:trace:reg:NtOpenKeyEx (0x24,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",1,0x62f0e0)
0054: open_key( parent=0024, access=00000001, attributes=00000040, name=L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.458:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.458:0050:0054:SysRet   NtOpenKeyEx() retval=c0000034
7935.458:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.458:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.458:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.458:0050:0054:Ret  kernelbase.RegGetValueW() retval=00000002 ret=7bf3cfb4
7935.458:0050:0054:Ret  advapi32.RegGetValueW() retval=00000002 ret=004068f5
7935.458:0050:0054:Call advapi32.RegOpenKeyW(80000001,00413d74 L"Software\\Wine\\Explorer",0062f24c) ret=0040695f
7935.458:0050:0054:Call kernelbase.RegOpenKeyExW(80000001,00413d74 L"Software\\Wine\\Explorer",00000000,02000000,0062f24c) ret=7bbb930b
7935.458:0050:0054:Call ntdll.RtlInitUnicodeString(0062f0b4,00413d74 L"Software\\Wine\\Explorer") ret=7bc43b9f
7935.458:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00413d74 ret=7bc43b9f
7935.458:0050:0054:Call ntdll.NtOpenKeyEx(0062f24c,02000000,0062ef7c,00000000) ret=7bc73de1
7935.458:0050:0054:SysCall  NtOpenKeyEx(0062f24c,02000000,0062ef7c,00000000)
7935.458:0050:0054:trace:reg:NtOpenKeyEx (0x24,L"Software\\Wine\\Explorer",2000000,0x62f24c)
0054: open_key( parent=0024, access=02000000, attributes=00000040, name=L"Software\\Wine\\Explorer" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.459:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.459:0050:0054:SysRet   NtOpenKeyEx() retval=c0000034
7935.459:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.459:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.459:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.459:0050:0054:Ret  kernelbase.RegOpenKeyExW() retval=00000002 ret=7bbb930b
7935.459:0050:0054:Ret  advapi32.RegOpenKeyW() retval=00000002 ret=0040695f
7935.459:0050:0054:Call advapi32.RegGetValueW(80000001,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413e8c L"NoTrayItemsDisplay",00000010,00000000,0062f328,0062f454) ret=004069c7
7935.459:0050:0054:Call kernelbase.RegGetValueW(80000001,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413e8c L"NoTrayItemsDisplay",00000010,00000000,0062f328,0062f454) ret=7bf3cfb4
7935.459:0050:0054:trace:reg:RegGetValueW (80000001,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",L"NoTrayItemsDisplay",16,00000000,0062F328,0062F454=4)
7935.459:0050:0054:Call ntdll.RtlInitUnicodeString(0062f068,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer") ret=7bc43b9f
7935.459:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00413dfc ret=7bc43b9f
7935.459:0050:0054:Call ntdll.NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000) ret=7bc73de1
7935.459:0050:0054:SysCall  NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000)
7935.459:0050:0054:trace:reg:NtOpenKeyEx (0x24,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",1,0x62f0e0)
0054: open_key( parent=0024, access=00000001, attributes=00000040, name=L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.460:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.460:0050:0054:SysRet   NtOpenKeyEx() retval=c0000034
7935.460:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.460:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.460:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.460:0050:0054:Ret  kernelbase.RegGetValueW() retval=00000002 ret=7bf3cfb4
7935.460:0050:0054:Ret  advapi32.RegGetValueW() retval=00000002 ret=004069c7
7935.460:0050:0054:Call advapi32.RegGetValueW(80000002,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413e8c L"NoTrayItemsDisplay",00000010,00000000,0062f328,0062f454) ret=00406a0f
7935.460:0050:0054:Call kernelbase.RegGetValueW(80000002,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",00413e8c L"NoTrayItemsDisplay",00000010,00000000,0062f328,0062f454) ret=7bf3cfb4
7935.460:0050:0054:trace:reg:RegGetValueW (80000002,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",L"NoTrayItemsDisplay",16,00000000,0062F328,0062F454=4)
7935.460:0050:0054:Call ntdll.RtlInitUnicodeString(0062f068,00413dfc L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer") ret=7bc43b9f
7935.460:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00413dfc ret=7bc43b9f
7935.460:0050:0054:Call ntdll.NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000) ret=7bc73de1
7935.460:0050:0054:SysCall  NtOpenKeyEx(0062f0e0,00000001,0062ef30,00000000)
7935.460:0050:0054:trace:reg:NtOpenKeyEx (0x18,L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer",1,0x62f0e0)
0054: open_key( parent=0018, access=00000001, attributes=00000040, name=L"Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\Explorer" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.461:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.461:0050:0054:SysRet   NtOpenKeyEx() retval=c0000034
7935.461:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.461:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.461:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.461:0050:0054:Ret  kernelbase.RegGetValueW() retval=00000002 ret=7bf3cfb4
7935.461:0050:0054:Ret  advapi32.RegGetValueW() retval=00000002 ret=00406a0f
7935.461:0050:0054:Call rpcrt4.UuidCreate(0062f1fc) ret=00406a33
7935.461:0050:0054:Call cryptbase.SystemFunction036(0062f1fc,00000010) ret=7b8f911b
7935.461:0050:0054:Call ntdll.RtlEnterCriticalSection(7b8a3040) ret=7b8a1c29
7935.461:0050:0054:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8a1c29
7935.461:0050:0054:Call ntdll.NtQuerySystemInformation(00000017,7b8a6020,00000030,00000000) ret=7b8a1c8e
7935.461:0050:0054:SysCall  NtQuerySystemInformation(00000017,7b8a6020,00000030,00000000)
7935.461:0050:0054:trace:ntdll:NtQuerySystemInformation (0x00000017,0x7b8a6020,0x00000030,(nil))
7935.461:0050:0054:SysRet   NtQuerySystemInformation() retval=00000000
7935.461:0050:0054:Ret  ntdll.NtQuerySystemInformation() retval=00000000 ret=7b8a1c8e
7935.461:0050:0054:Call ucrtbase.memcpy(0062f1fc,7b8a6020,00000010) ret=7b8a1cc2
7935.461:0050:0054:Ret  ucrtbase.memcpy() retval=0062f1fc ret=7b8a1cc2
7935.461:0050:0054:Call ntdll.RtlLeaveCriticalSection(7b8a3040) ret=7b8a1d2d
7935.461:0050:0054:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8a1d2d
7935.461:0050:0054:Ret  cryptbase.SystemFunction036() retval=00000001 ret=7b8f911b
7935.461:0050:0054:Call KERNEL32.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7b8fa45e
7935.461:0050:0054:Call kernelbase.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7bf3cfb4
7935.461:0050:0054:Call ntdll.RtlInitUnicodeString(0062ef6c,7b927e0a L"ntdll.dll") ret=7bc1b6df
7935.461:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7b927e0a ret=7bc1b6df
7935.461:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062ef6c,0062ef68) ret=7bc1b705
7935.461:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EF6C, base 0062EF68.
7935.461:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EE2C
7935.461:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.461:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.461:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.461:0050:0054:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=7b8fa45e
7935.461:0050:0054:Call KERNEL32.GetProcAddress(7bf30000,7b927e1e "__wine_dbg_strdup") ret=7b8fa470
7935.461:0050:0054:Call ntdll.RtlInitAnsiString(0062efa8,7b927e1e "__wine_dbg_strdup") ret=7bed8fad
7935.461:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b927e1e ret=7bed8fad
7935.461:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062efa8,00000000,0062efa4) ret=7bed8fcb
7935.461:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.461:0050:0054:Ret  KERNEL32.GetProcAddress() retval=7bf6cb10 ret=7b8fa470
7935.461:0050:0054:Call KERNEL32.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7b8fa361
7935.461:0050:0054:Call kernelbase.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7bf3cfb4
7935.461:0050:0054:Call ntdll.RtlInitUnicodeString(0062f03c,7b927e0a L"ntdll.dll") ret=7bc1b6df
7935.461:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7b927e0a ret=7bc1b6df
7935.461:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f03c,0062f038) ret=7bc1b705
7935.461:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F03C, base 0062F038.
7935.461:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EEFC
7935.461:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.461:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.461:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.461:0050:0054:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=7b8fa361
7935.461:0050:0054:Call KERNEL32.GetProcAddress(7bf30000,7b927e6f "__wine_dbg_header") ret=7b8fa373
7935.461:0050:0054:Call ntdll.RtlInitAnsiString(0062f068,7b927e6f "__wine_dbg_header") ret=7bed8fad
7935.461:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b927e6f ret=7bed8fad
7935.461:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f068,00000000,0062f064) ret=7bed8fcb
7935.461:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.461:0050:0054:Ret  KERNEL32.GetProcAddress() retval=7bf6c890 ret=7b8fa373
7935.461:0050:0054:trace:rpc:UuidCreate Call KERNEL32.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7b8fa3de
7935.461:0050:0054:Call kernelbase.GetModuleHandleW(7b927e0a L"ntdll.dll") ret=7bf3cfb4
7935.461:0050:0054:Call ntdll.RtlInitUnicodeString(0062ec1c,7b927e0a L"ntdll.dll") ret=7bc1b6df
7935.461:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7b927e0a ret=7bc1b6df
7935.461:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062ec1c,0062ec18) ret=7bc1b705
7935.461:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EC1C, base 0062EC18.
7935.461:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EADC
7935.461:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.461:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.461:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.461:0050:0054:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=7b8fa3de
7935.461:0050:0054:Call KERNEL32.GetProcAddress(7bf30000,7b927e30 "__wine_dbg_output") ret=7b8fa3f0
7935.461:0050:0054:Call ntdll.RtlInitAnsiString(0062ec48,7b927e30 "__wine_dbg_output") ret=7bed8fad
7935.461:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b927e30 ret=7bed8fad
7935.461:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062ec48,00000000,0062ec44) ret=7bed8fcb
7935.461:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.461:0050:0054:Ret  KERNEL32.GetProcAddress() retval=7bf6ca40 ret=7b8fa3f0
{2160e0d6-a320-42ec-a824-868e39cc94e9}
7935.461:0050:0054:Ret  rpcrt4.UuidCreate() retval=00000000 ret=00406a33
7935.461:0050:0054:Call KERNEL32.GetModuleHandleW(00419092 L"ntdll.dll") ret=0040179e
7935.461:0050:0054:Call kernelbase.GetModuleHandleW(00419092 L"ntdll.dll") ret=7bf3cfb4
7935.461:0050:0054:Call ntdll.RtlInitUnicodeString(0062ef9c,00419092 L"ntdll.dll") ret=7bc1b6df
7935.461:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00419092 ret=7bc1b6df
7935.461:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062ef9c,0062ef98) ret=7bc1b705
7935.461:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EF9C, base 0062EF98.
7935.461:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EE5C
7935.461:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.461:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.461:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.461:0050:0054:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=0040179e
7935.461:0050:0054:Call KERNEL32.GetProcAddress(7bf30000,004190a6 "__wine_dbg_strdup") ret=004017b0
7935.461:0050:0054:Call ntdll.RtlInitAnsiString(0062efd8,004190a6 "__wine_dbg_strdup") ret=7bed8fad
7935.461:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=004190a6 ret=7bed8fad
7935.461:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062efd8,00000000,0062efd4) ret=7bed8fcb
7935.461:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.461:0050:0054:Ret  KERNEL32.GetProcAddress() retval=7bf6cb10 ret=004017b0
7935.461:0050:0054:Call KERNEL32.GetModuleHandleW(00419092 L"ntdll.dll") ret=004016a1
7935.461:0050:0054:Call kernelbase.GetModuleHandleW(00419092 L"ntdll.dll") ret=7bf3cfb4
7935.461:0050:0054:Call ntdll.RtlInitUnicodeString(0062f09c,00419092 L"ntdll.dll") ret=7bc1b6df
7935.461:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00419092 ret=7bc1b6df
7935.461:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062f09c,0062f098) ret=7bc1b705
7935.461:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062F09C, base 0062F098.
7935.461:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EF5C
7935.461:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.461:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.461:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.461:0050:0054:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=004016a1
7935.461:0050:0054:Call KERNEL32.GetProcAddress(7bf30000,004190f7 "__wine_dbg_header") ret=004016b3
7935.461:0050:0054:Call ntdll.RtlInitAnsiString(0062f0d8,004190f7 "__wine_dbg_header") ret=7bed8fad
7935.461:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=004190f7 ret=7bed8fad
7935.461:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062f0d8,00000000,0062f0d4) ret=7bed8fcb
7935.461:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.461:0050:0054:Ret  KERNEL32.GetProcAddress() retval=7bf6c890 ret=004016b3
7935.461:0050:0054:trace:explorer:manage_desktop Call KERNEL32.GetModuleHandleW(00419092 L"ntdll.dll") ret=0040171e
7935.461:0050:0054:Call kernelbase.GetModuleHandleW(00419092 L"ntdll.dll") ret=7bf3cfb4
7935.461:0050:0054:Call ntdll.RtlInitUnicodeString(0062ec7c,00419092 L"ntdll.dll") ret=7bc1b6df
7935.461:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00419092 ret=7bc1b6df
7935.461:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062ec7c,0062ec78) ret=7bc1b705
7935.461:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EC7C, base 0062EC78.
7935.461:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EB3C
7935.461:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.461:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.461:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7bf3cfb4
7935.461:0050:0054:Ret  KERNEL32.GetModuleHandleW() retval=7bf30000 ret=0040171e
7935.461:0050:0054:Call KERNEL32.GetProcAddress(7bf30000,004190b8 "__wine_dbg_output") ret=00401730
7935.461:0050:0054:Call ntdll.RtlInitAnsiString(0062ecb8,004190b8 "__wine_dbg_output") ret=7bed8fad
7935.461:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=004190b8 ret=7bed8fad
7935.461:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062ecb8,00000000,0062ecb4) ret=7bed8fcb
7935.461:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bed8fcb
7935.461:0050:0054:Ret  KERNEL32.GetProcAddress() retval=7bf6ca40 ret=00401730
display guid {2160e0d6-a320-42ec-a824-868e39cc94e9}
7935.461:0050:0054:Call advapi32.RegOpenKeyW(80000001,00413ec4 L"Software\\Wine\\Drivers",0062f1f8) ret=00407254
7935.461:0050:0054:Call kernelbase.RegOpenKeyExW(80000001,00413ec4 L"Software\\Wine\\Drivers",00000000,02000000,0062f1f8) ret=7bbb930b
7935.461:0050:0054:Call ntdll.RtlInitUnicodeString(0062f0b4,00413ec4 L"Software\\Wine\\Drivers") ret=7bc43b9f
7935.461:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00413ec4 ret=7bc43b9f
7935.461:0050:0054:Call ntdll.NtOpenKeyEx(0062f1f8,02000000,0062ef7c,00000000) ret=7bc73de1
7935.461:0050:0054:SysCall  NtOpenKeyEx(0062f1f8,02000000,0062ef7c,00000000)
7935.461:0050:0054:trace:reg:NtOpenKeyEx (0x24,L"Software\\Wine\\Drivers",2000000,0x62f1f8)
0054: open_key( parent=0024, access=02000000, attributes=00000040, name=L"Software\\Wine\\Drivers" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.466:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.466:0050:0054:SysRet   NtOpenKeyEx() retval=c0000034
7935.466:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.466:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000034) ret=7bc43bcc
7935.466:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000002 ret=7bc43bcc
7935.466:0050:0054:Ret  kernelbase.RegOpenKeyExW() retval=00000002 ret=7bbb930b
7935.466:0050:0054:Ret  advapi32.RegOpenKeyW() retval=00000002 ret=00407254
7935.466:0050:0054:Call ucrtbase.wcschr(0062f454 L"mac,x11,wayland",0000002c) ret=00406abf
7935.466:0050:0054:Ret  ucrtbase.wcschr() retval=0062f45a ret=00406abf
7935.466:0050:0054:Call ucrtbase.wcscmp(0062f454 L"mac",00413f02 L"null") ret=00406ae0
7935.466:0050:0054:Ret  ucrtbase.wcscmp() retval=ffffffff ret=00406ae0
7935.466:0050:0054:Call ucrtbase.__stdio_common_vswprintf(000000004,0062f20c,00000020,00413f2a L"wine%s.drv",00000000,0062f178) ret=0040c20f
7935.466:0050:0054:Ret  ucrtbase.__stdio_common_vswprintf() retval=0000000b ret=0040c20f
7935.466:0050:0054:Call KERNEL32.LoadLibraryW(0062f20c L"winemac.drv") ret=00406b19
7935.466:0050:0054:Call kernelbase.LoadLibraryW(0062f20c L"winemac.drv") ret=7bf3cfb4
7935.466:0050:0054:Call ntdll.RtlInitUnicodeString(0062f0e4,0062f20c L"winemac.drv") ret=7bc2a675
7935.466:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=0062f20c ret=7bc2a675
7935.466:0050:0054:Call ntdll.LdrGetDllPath(0062f20c L"winemac.drv",00000000,0062f0bc,0062f0c0) ret=7bc727f0
7935.466:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
7935.466:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 0028CD00, status 0.
7935.466:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
7935.466:0050:0054:Ret  ntdll.LdrGetDllPath() retval=00000000 ret=7bc727f0
7935.466:0050:0054:Call ntdll.LdrLoadDll(0028cd00 L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;",00000000,0062f0e4,0062f0b8) ret=7bc7281b
7935.466:0050:0054:trace:module:load_dll looking for L"winemac.drv" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.466:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"winemac.drv" 0062EF00
7935.466:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xa8, return 0028CDA8, status 0.
7935.466:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winemac.drv",0062EFB8,00000000,00000000)
7935.466:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winemac.drv" 520 0062EC64 00000000)
7935.466:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winemac.drv" 520 0062EC64 00000000 00000000)
7935.466:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F4C0, status 0.
7935.466:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.466:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.466:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winemac.drv" -> ret c0000034
7935.466:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winemac.drv" not found (c0000034)
7935.466:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.466:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F4C0, return 1, status 0.
7935.466:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winemac.drv",0062EFB8,00000000,00000000)
7935.466:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winemac.drv" 520 0062EC64 00000000)
7935.466:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winemac.drv" 520 0062EC64 00000000 00000000)
7935.466:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F530, status 0.
7935.466:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.466:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.466:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winemac.drv" -> ret c0000034
7935.466:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winemac.drv" not found (c0000034)
7935.466:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.466:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F530, return 1, status 0.
7935.466:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winemac.drv",0062EFB8,00000000,00000000)
7935.466:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winemac.drv" 520 0062EC64 00000000)
7935.466:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winemac.drv" 520 0062EC64 00000000 00000000)
7935.466:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027F5A0, status 0.
7935.466:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.466:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.466:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winemac.drv" -> ret c000003a
7935.466:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system\\winemac.drv" not found (c000003a)
7935.466:0050:0054:SysRet   NtOpenFile() retval=c000003a
7935.466:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F5A0, return 1, status 0.
7935.466:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winemac.drv",0062EFB8,00000000,00000000)
7935.466:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winemac.drv" 520 0062EC64 00000000)
7935.466:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winemac.drv" 520 0062EC64 00000000 00000000)
7935.466:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3e, return 00261FB8, status 0.
7935.466:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.466:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.466:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winemac.drv" -> ret c0000034
7935.466:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\winemac.drv" not found (c0000034)
7935.466:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.466:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00261FB8, return 1, status 0.
7935.466:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winemac.drv",0062EFB8,00000000,00000000)
7935.466:0050:0054:trace:file:RtlGetFullPathName_U (L".\\winemac.drv" 520 0062EC64 00000000)
7935.466:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\winemac.drv" 520 0062EC64 00000000 00000000)
7935.466:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F610, status 0.
7935.466:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.466:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.466:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winemac.drv" -> ret c0000034
7935.466:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winemac.drv" not found (c0000034)
7935.466:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.466:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F610, return 1, status 0.
7935.466:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028CDA8, return 1, status 0.
7935.466:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x86e, return 0028CE68, status 0.
7935.466:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028CE68, return 1, status 0.
7935.466:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x832, return 0028D6F0, status 0.
7935.466:0050:0054:SysCall  NtOpenFile(0062ee2c,80100000,0062ee40,0062ee38,00000005,00000060)
7935.466:0050:0054:trace:file:NtCreateFile handle=0x62ee2c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee38 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.482:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winemac.drv" -> ret c0000034
7935.482:0050:0054:warn:file:NtCreateFile L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winemac.drv" not found (c0000034)
7935.482:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.482:0050:0054:SysCall  NtOpenFile(0062ee2c,80100000,0062ee40,0062ee38,00000005,00000060)
7935.482:0050:0054:trace:file:NtCreateFile handle=0x62ee2c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\winemac.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee38 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.482:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\winemac.drv" -> ret c0000034
7935.482:0050:0054:warn:file:NtCreateFile L"\\??\\Z:\\usr\\lib\\wine\\winemac.drv" not found (c0000034)
7935.482:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.482:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028D6F0, return 1, status 0.
7935.482:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x832, return 0028DF40, status 0.
7935.482:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028DF40, return 1, status 0.
7935.482:0050:0054:warn:module:load_dll Failed to load module L"winemac.drv"; status=c0000135
7935.482:0050:0054:Ret  ntdll.LdrLoadDll() retval=c0000135 ret=7bc7281b
7935.482:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000135) ret=7bc728a9
7935.482:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=0000007e ret=7bc728a9
7935.482:0050:0054:Call ntdll.RtlRunOnceExecuteOnce(7bcb8c80,7bc70990,00000000,00000000) ret=7bc26189
7935.482:0050:0054:Ret  ntdll.RtlRunOnceExecuteOnce() retval=00000000 ret=7bc26189
7935.482:0050:0054:Call ntdll.wcscpy(0062ef94,7bcb8cb4 L"") ret=7bc21d77
7935.482:0050:0054:Ret  ntdll.wcscpy() retval=0062ef94 ret=7bc21d77
7935.482:0050:0054:Call ntdll.RtlReleasePath(0028cd00) ret=7bc72830
7935.482:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028CD00, return 1, status 0.
7935.482:0050:0054:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc72830
7935.482:0050:0054:Ret  kernelbase.LoadLibraryW() retval=00000000 ret=7bf3cfb4
7935.482:0050:0054:Ret  KERNEL32.LoadLibraryW() retval=00000000 ret=00406b19
7935.482:0050:0054:Call ucrtbase.wcschr(0062f45c L"x11,wayland",0000002c) ret=00406abf
7935.482:0050:0054:Ret  ucrtbase.wcschr() retval=0062f462 ret=00406abf
7935.482:0050:0054:Call ucrtbase.wcscmp(0062f45c L"x11",00413f02 L"null") ret=00406ae0
7935.482:0050:0054:Ret  ucrtbase.wcscmp() retval=00000001 ret=00406ae0
7935.482:0050:0054:Call ucrtbase.__stdio_common_vswprintf(000000004,0062f20c,00000020,00413f2a L"wine%s.drv",00000000,0062f178) ret=0040c20f
7935.482:0050:0054:Ret  ucrtbase.__stdio_common_vswprintf() retval=0000000b ret=0040c20f
7935.482:0050:0054:Call KERNEL32.LoadLibraryW(0062f20c L"winex11.drv") ret=00406b19
7935.482:0050:0054:Call kernelbase.LoadLibraryW(0062f20c L"winex11.drv") ret=7bf3cfb4
7935.482:0050:0054:Call ntdll.RtlInitUnicodeString(0062f0e4,0062f20c L"winex11.drv") ret=7bc2a675
7935.482:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=0062f20c ret=7bc2a675
7935.482:0050:0054:Call ntdll.LdrGetDllPath(0062f20c L"winex11.drv",00000000,0062f0bc,0062f0c0) ret=7bc727f0
7935.482:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
7935.482:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 0028E790, status 0.
7935.482:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
7935.482:0050:0054:Ret  ntdll.LdrGetDllPath() retval=00000000 ret=7bc727f0
7935.482:0050:0054:Call ntdll.LdrLoadDll(0028e790 L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;",00000000,0062f0e4,0062f0b8) ret=7bc7281b
7935.482:0050:0054:trace:module:load_dll looking for L"winex11.drv" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.482:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"winex11.drv" 0062EF00
7935.482:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xa8, return 0028E838, status 0.
7935.482:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winex11.drv",0062EFB8,00000000,00000000)
7935.482:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winex11.drv" 520 0062EC64 00000000)
7935.482:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winex11.drv" 520 0062EC64 00000000 00000000)
7935.482:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F680, status 0.
7935.482:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.482:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.482:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winex11.drv" -> ret c0000034
7935.482:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winex11.drv" not found (c0000034)
7935.482:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.482:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F680, return 1, status 0.
7935.482:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winex11.drv",0062EFB8,00000000,00000000)
7935.482:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winex11.drv" 520 0062EC64 00000000)
7935.482:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winex11.drv" 520 0062EC64 00000000 00000000)
7935.482:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F6F0, status 0.
7935.482:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.482:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.482:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winex11.drv" -> ret c0000034
7935.482:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winex11.drv" not found (c0000034)
7935.482:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.482:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F6F0, return 1, status 0.
7935.482:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winex11.drv",0062EFB8,00000000,00000000)
7935.482:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winex11.drv" 520 0062EC64 00000000)
7935.482:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winex11.drv" 520 0062EC64 00000000 00000000)
7935.482:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027F760, status 0.
7935.482:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.482:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.482:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winex11.drv" -> ret c000003a
7935.482:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system\\winex11.drv" not found (c000003a)
7935.482:0050:0054:SysRet   NtOpenFile() retval=c000003a
7935.482:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F760, return 1, status 0.
7935.482:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winex11.drv",0062EFB8,00000000,00000000)
7935.482:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winex11.drv" 520 0062EC64 00000000)
7935.482:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winex11.drv" 520 0062EC64 00000000 00000000)
7935.482:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3e, return 0028E910, status 0.
7935.482:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.482:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.482:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winex11.drv" -> ret c0000034
7935.482:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\winex11.drv" not found (c0000034)
7935.482:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.482:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028E910, return 1, status 0.
7935.482:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winex11.drv",0062EFB8,00000000,00000000)
7935.482:0050:0054:trace:file:RtlGetFullPathName_U (L".\\winex11.drv" 520 0062EC64 00000000)
7935.482:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\winex11.drv" 520 0062EC64 00000000 00000000)
7935.482:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027F7D0, status 0.
7935.482:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.482:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.482:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winex11.drv" -> ret c0000034
7935.482:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winex11.drv" not found (c0000034)
7935.482:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.482:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F7D0, return 1, status 0.
7935.482:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028E838, return 1, status 0.
7935.482:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x86e, return 0028F4C0, status 0.
7935.482:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028F4C0, return 1, status 0.
7935.482:0050:0054:SysCall  NtAllocateVirtualMemory(ffffffff,0062edf8,00000000,0062edf4,00001000,00000004)
7935.482:0050:0054:trace:virtual:NtAllocateVirtualMemory 0xffffffff 0x290000 00010000 1000 00000004
7935.482:0050:0054:trace:virtual:dump_view View: 0x260000 - 0x35ffff --rw- (valloc)
7935.482:0050:0054:trace:virtual:dump_view       0x260000 - 0x29ffff c-rw-
7935.482:0050:0054:trace:virtual:dump_view       0x2a0000 - 0x35ffff --rw-
7935.482:0050:0054:SysRet   NtAllocateVirtualMemory() retval=00000000
7935.482:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x832, return 0028FD48, status 0.
7935.482:0050:0054:SysCall  NtOpenFile(0062ee2c,80100000,0062ee40,0062ee38,00000005,00000060)
7935.482:0050:0054:trace:file:NtCreateFile handle=0x62ee2c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee38 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.482:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" -> ret 0 nt L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" unix "/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/winex11.drv"
0054: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000040,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv"}, filename="/home/lessy/.wine/dosdevices/z:/usr/lib/wine/i386-windows/winex11.drv" )
0054: create_file() = 0 { handle=004c }
7935.498:0050:0054:SysRet   NtOpenFile() retval=00000000
7935.498:0050:0054:SysCall  NtFsControlFile(0000004c,00000000,00000000,00000000,0062ee38,0009009c,00000000,00000000,0062ee58,00000040)
7935.498:0050:0054:trace:file:NtFsControlFile (0x4c,(nil),(nil),(nil),0x62ee38,0x0009009c,(nil),0x00000000,0x62ee58,0x00000040)
0054: get_handle_fd( handle=004c )
0054: *fd* 004c -> 84
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=00120089, options=00000060 }
7935.499:0050:0054:SysRet   NtFsControlFile() retval=00000000
7935.499:0050:0054:SysCall  NtCreateSection(0062efa8,000f000d,00000000,0062ee30,00000020,01000000,0000004c)
0054: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=004c, objattr={} )
0054: create_mapping() = 0 { handle=0058 }
7935.499:0050:0054:SysRet   NtCreateSection() retval=00000000
7935.499:0050:0054:SysCall  NtQuerySection(00000058,00000001,0062efdc,00000030,00000000)
0054: get_mapping_info( handle=0058, access=00000001 )
0054: get_mapping_info() = 0 { size=00011000, flags=01800000, shared_file=0000, name_len=0, total=195, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00001080,map_size=00011000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2106,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00001000,file_size=00011a0a,checksum=000196f5}, name=L"", exp_name="" }
7935.500:0050:0054:SysRet   NtQuerySection() retval=00000000
7935.500:0050:0054:SysCall  NtClose(0000004c)
0054: close_handle( handle=004c )
0054: close_handle() = 0
7935.500:0050:0054:SysRet   NtClose() retval=00000000
7935.500:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028FD48, return 1, status 0.
7935.500:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 0028E970, status 0.
7935.500:0050:0054:SysCall  NtMapViewOfSection(00000058,ffffffff,0062efc0,00000000,00000000,00000000,0062f00c,00000001,00000000,00000020)
7935.500:0050:0054:trace:virtual:NtMapViewOfSection handle=0x58 process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x20
0054: get_mapping_info( handle=0058, access=0000000c )
0054: get_mapping_info() = 0 { size=00011000, flags=01800000, shared_file=0000, name_len=88, total=195, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00001080,map_size=00011000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2106,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00001000,file_size=00011a0a,checksum=000196f5}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv", exp_name="winex11.drv" }
7935.501:0050:0054:trace:reg:NtQueryValueKey (0xc,L"Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv",2,0x21fa00,80)
0054: get_key_value( hkey=000c, name=L"Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.502:0050:0054:trace:reg:NtQueryValueKey (0xc,L"*winex11.drv",2,0x21fa00,80)
0054: get_key_value( hkey=000c, name=L"*winex11.drv" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.502:0050:0054:trace:reg:NtQueryValueKey (0xc,L"winex11.drv",2,0x21fa00,80)
0054: get_key_value( hkey=000c, name=L"winex11.drv" )
0054: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7935.502:0050:0054:trace:module:get_load_order got hardcoded default for L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv"
7935.502:0050:0054:trace:module:find_builtin_dll looking for "winex11.drv" for file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv"
0054: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000000,sd={},name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv"}, filename="/usr/lib/wine/i386-windows/winex11.drv" )
0054: create_file() = 0 { handle=004c }
0054: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=004c, objattr={} )
0054: create_mapping() = 0 { handle=005c }
0054: close_handle( handle=004c )
0054: close_handle() = 0
0054: get_mapping_info( handle=005c, access=00000004 )
0054: get_mapping_info() = 0 { size=00011000, flags=01800000, shared_file=0000, name_len=88, total=195, image={base=10000000,stack_size=00200000,stack_commit=00001000,entry_point=00001080,map_size=00011000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2106,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00001000,file_size=00011a0a,checksum=000196f5}, name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv", exp_name="winex11.drv" }
0054: get_handle_fd( handle=005c )
0054: *fd* 005c -> 85
0054: get_handle_fd() = 0 { type=1, cacheable=1, access=000f000d, options=00000020 }
0054: get_image_map_address( handle=005c )
0054: get_image_map_address() = 0 { addr=7b4c0000 }
7935.504:0050:0054:trace:module:map_image_into_view mapping PE file L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" at 0x7b4c0000-0x7b4d1000
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .text at 0x7b4c1000 off 1000 size 1000 virt 1b0 flags 60000020
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .data at 0x7b4c2000 off 2000 size 1000 virt 4 flags c0000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .rdata at 0x7b4c3000 off 3000 size 1000 virt 138 flags 40000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /4 at 0x7b4c4000 off 4000 size 1000 virt 110 flags 40000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .bss at 0x7b4c5000 off 0 size 0 virt 8 flags c0000080
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .edata at 0x7b4c6000 off 5000 size 1000 virt 34 flags 40000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .idata at 0x7b4c7000 off 6000 size 1000 virt 100 flags c0000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .rsrc at 0x7b4c8000 off 7000 size 1000 virt 3a0 flags c0000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section .reloc at 0x7b4c9000 off 8000 size 1000 virt 30 flags 42000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /14 at 0x7b4ca000 off 9000 size 1000 virt 70 flags 42000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /29 at 0x7b4cb000 off a000 size 2000 virt 1341 flags 42000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /41 at 0x7b4cd000 off c000 size 1000 virt 542 flags 42000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /55 at 0x7b4ce000 off d000 size 1000 virt 37c flags 42000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /67 at 0x7b4cf000 off e000 size 1000 virt 1c8 flags 42000040
7935.504:0050:0054:trace:module:map_image_into_view mapping L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" section /78 at 0x7b4d0000 off f000 size 1000 virt 70 flags 42000040
7935.504:0050:0054:trace:module:map_image_into_view relocating L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winex11.drv" dynamic base 10000000 -> 7b4c0000 mapped at 0x7b4c0000
0054: map_image_view( mapping=005c, base=7b4c0000, size=00011000, offset=00000000, entry=00001080, machine=014c )
0054: map_image_view() = 0
7935.506:0050:0054:trace:virtual:dump_view View: 0x7b4c0000 - 0x7b4d0fff c-rWx (image)
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c0000 - 0x7b4c0fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c1000 - 0x7b4c1fff c-r-x
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c2000 - 0x7b4c2fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c3000 - 0x7b4c4fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c5000 - 0x7b4c5fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c6000 - 0x7b4c6fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c7000 - 0x7b4c8fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c9000 - 0x7b4d0fff c-r--
0054: close_handle( handle=005c )
0054: close_handle() = 0
7935.506:0050:0054:SysRet   NtMapViewOfSection() retval=00000000
7935.506:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0xb8, return 0027CC68, status 0.
7935.506:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x40, return 0028E9D0, status 0.
7935.506:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x2c, return 002858A8, status 0.
7935.506:0050:0054:trace:ntdll:RtlRbInsertNodeEx tree 7BFD5580, parent 00243980, right 1, node 0027CCD0.
7935.506:0050:0054:trace:resource:LdrFindResource_U module 7B4C0000 type #0018 name #0002 lang 0000 level 3
7935.506:0050:0054:trace:resource:find_entry_by_id root 7B4C8000 dir 7B4C8000 id 0018 not found
7935.506:0050:0054:trace:module:load_dll looking for L"kernel32.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.506:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"kernel32.dll" 0062EA84
7935.506:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\kernel32.dll" for L"kernel32.dll" at 7BEB0000, count=-1
7935.506:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062ec24,0062ec28,00000004,0062ec2c)
7935.506:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b4c7054 00000004 00000004
7935.506:0050:0054:trace:virtual:get_vprot_range_size base 0x7b4c7000, size 0x1000, mask 0x20.
7935.506:0050:0054:trace:virtual:dump_view View: 0x7b4c0000 - 0x7b4d0fff c-rWx (image)
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c0000 - 0x7b4c0fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c1000 - 0x7b4c1fff c-r-x
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c2000 - 0x7b4c2fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c3000 - 0x7b4c4fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c5000 - 0x7b4c5fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c6000 - 0x7b4c6fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c7000 - 0x7b4c8fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c9000 - 0x7b4d0fff c-r--
7935.506:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.506:0050:0054:trace:imports:import_dll --- DisableThreadLibraryCalls kernel32.dll.201 = 7BEB3890
7935.506:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062ec24,0062ec28,00000008,0062ec2c)
7935.506:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b4c7000 00001000 00000008
7935.506:0050:0054:trace:virtual:get_vprot_range_size base 0x7b4c7000, size 0x1000, mask 0x20.
7935.506:0050:0054:trace:virtual:dump_view View: 0x7b4c0000 - 0x7b4d0fff c-rWx (image)
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c0000 - 0x7b4c0fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c1000 - 0x7b4c1fff c-r-x
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c2000 - 0x7b4c2fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c3000 - 0x7b4c4fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c5000 - 0x7b4c5fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c6000 - 0x7b4c6fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c7000 - 0x7b4c8fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c9000 - 0x7b4d0fff c-r--
7935.506:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.506:0050:0054:trace:module:load_dll looking for L"ntdll.dll" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.506:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EA84
7935.506:0050:0054:trace:module:load_dll Found L"C:\\windows\\system32\\ntdll.dll" for L"ntdll.dll" at 7BF30000, count=-1
7935.506:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062ec24,0062ec28,00000004,0062ec2c)
7935.506:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b4c705c 0000000c 00000004
7935.506:0050:0054:trace:virtual:get_vprot_range_size base 0x7b4c7000, size 0x1000, mask 0x20.
7935.506:0050:0054:trace:virtual:dump_view View: 0x7b4c0000 - 0x7b4d0fff c-rWx (image)
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c0000 - 0x7b4c0fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c1000 - 0x7b4c1fff c-r-x
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c2000 - 0x7b4c2fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c3000 - 0x7b4c4fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c5000 - 0x7b4c5fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c6000 - 0x7b4c6fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c7000 - 0x7b4c8fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c9000 - 0x7b4d0fff c-r--
7935.506:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.506:0050:0054:trace:imports:import_dll --- LdrGetDllHandle ntdll.dll.73 = 7BF3244C
7935.506:0050:0054:trace:imports:import_dll --- NtQueryVirtualMemory ntdll.dll.280 = 7BF33D88
7935.506:0050:0054:trace:imports:import_dll --- RtlFindExportedRoutineByName ntdll.dll.570 = 7BF361B0
7935.506:0050:0054:SysCall  NtProtectVirtualMemory(ffffffff,0062ec24,0062ec28,00000008,0062ec2c)
7935.506:0050:0054:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7b4c7000 00001000 00000008
7935.506:0050:0054:trace:virtual:get_vprot_range_size base 0x7b4c7000, size 0x1000, mask 0x20.
7935.506:0050:0054:trace:virtual:dump_view View: 0x7b4c0000 - 0x7b4d0fff c-rWx (image)
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c0000 - 0x7b4c0fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c1000 - 0x7b4c1fff c-r-x
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c2000 - 0x7b4c2fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c3000 - 0x7b4c4fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c5000 - 0x7b4c5fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c6000 - 0x7b4c6fff c-r--
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c7000 - 0x7b4c8fff c-rW-
7935.506:0050:0054:trace:virtual:dump_view       0x7b4c9000 - 0x7b4d0fff c-r--
7935.506:0050:0054:SysRet   NtProtectVirtualMemory() retval=00000000
7935.506:0050:0054:trace:module:build_module loaded L"\\??\\C:\\windows\\system32\\winex11.drv" 0027CC68 7B4C0000
7935.506:0050:0054:trace:loaddll:build_module Loaded L"C:\\windows\\system32\\winex11.drv" at 7B4C0000: builtin
7935.506:0050:0054:trace:module:load_dll Loaded module L"\\??\\C:\\windows\\system32\\winex11.drv" at 7B4C0000
7935.506:0050:0054:SysCall  NtClose(00000058)
0054: close_handle( handle=0058 )
0054: close_handle() = 0
7935.511:0050:0054:SysRet   NtClose() retval=00000000
7935.511:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028E970, return 1, status 0.
7935.511:0050:0054:trace:module:process_attach (L"winex11.drv",00000000) - START
7935.511:0050:0054:Call PE DLL (proc=7B4C1080,module=7B4C0000 L"winex11.drv",reason=PROCESS_ATTACH,res=00000000)
7935.511:0050:0054:Call KERNEL32.DisableThreadLibraryCalls(7b4c0000) ret=7b4c1024
7935.511:0050:0054:Call kernelbase.DisableThreadLibraryCalls(7b4c0000) ret=7bf3cfb4
7935.511:0050:0054:Call ntdll.LdrDisableThreadCalloutsForDll(7b4c0000) ret=7bc07df3
7935.511:0050:0054:Ret  ntdll.LdrDisableThreadCalloutsForDll() retval=00000000 ret=7bc07df3
7935.511:0050:0054:Ret  kernelbase.DisableThreadLibraryCalls() retval=00000001 ret=7bf3cfb4
7935.511:0050:0054:Ret  KERNEL32.DisableThreadLibraryCalls() retval=00000001 ret=7b4c1024
7935.511:0050:0054:Call ntdll.NtQueryVirtualMemory(ffffffff,7b4c0000,000003e8,7b4c5000,00000008,00000000) ret=7b4c10cb
7935.511:0050:0054:SysCall  NtQueryVirtualMemory(ffffffff,7b4c0000,000003e8,7b4c5000,00000008,00000000)
7935.511:0050:0054:trace:virtual:NtQueryVirtualMemory (0xffffffff, 0x7b4c0000, info_class=1000, 0x7b4c5000, 8, (nil))
7935.511:0050:0054:SysRet   NtQueryVirtualMemory() retval=00000000
7935.511:0050:0054:Ret  ntdll.NtQueryVirtualMemory() retval=00000000 ret=7b4c10cb
7935.511:0050:0054:Call ntdll.LdrGetDllHandle(00000000,00000000,0062ee88,0062ee84) ret=7b4c1148
7935.511:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EE88, base 0062EE84.
7935.511:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062ED30
7935.511:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.511:0050:0054:Ret  ntdll.LdrGetDllHandle() retval=00000000 ret=7b4c1148
7935.511:0050:0054:Call ntdll.RtlFindExportedRoutineByName(7bf30000,7b4c30d4 "__wine_unix_call_dispatcher") ret=7b4c115f
7935.511:0050:0054:Ret  ntdll.RtlFindExportedRoutineByName() retval=7bfd4034 ret=7b4c115f
7935.511:0050:0054:trace:ntdll:NtQueryInformationToken (0xfffffffa,TokenUser,0x21ee04,76,0x21eddc)
0054: get_token_sid( handle=fffffffa, which_sid=00000001 )
0054: get_token_sid() = 0 { sid_len=28, sid=S-1-5-21-0-0-0-1000 }
7935.518:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\User\\S-1-5-21-0-0-0-1000",2000000,0x21ede0)
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\User\\S-1-5-21-0-0-0-1000" )
0054: open_key() = 0 { hkey=004c }
7935.518:0050:0054:trace:reg:NtOpenKeyEx <- 0x4c
7935.518:0050:0054:trace:reg:NtOpenKeyEx (0x4c,L"Software\\Wine\\X11 Driver",2000000,0x21edec)
0054: open_key( parent=004c, access=02000000, attributes=00000040, name=L"Software\\Wine\\X11 Driver" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.519:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.519:0050:0054:trace:reg:NtOpenKeyEx (0x4c,L"Software\\Wine\\AppDefaults",2000000,0x21edec)
0054: open_key( parent=004c, access=02000000, attributes=00000040, name=L"Software\\Wine\\AppDefaults" )
0054: open_key() = 0 { hkey=0058 }
7935.519:0050:0054:trace:reg:NtOpenKeyEx <- 0x58
7935.519:0050:0054:trace:reg:NtOpenKeyEx (0x58,L"explorer.exe\\X11 Driver",2000000,0x21f1b0)
0054: open_key( parent=0058, access=02000000, attributes=00000040, name=L"explorer.exe\\X11 Driver" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.519:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
0054: close_handle( handle=0058 )
0054: close_handle() = 0
0054: close_handle( handle=0000 )
0054: close_handle() = INVALID_HANDLE
0054: close_handle( handle=0000 )
0054: close_handle() = INVALID_HANDLE
7935.520:0050:0054:Ret  PE DLL (proc=7B4C1080,module=7B4C0000 L"winex11.drv",reason=PROCESS_ATTACH,res=00000000) retval=0
7935.520:0050:0054:Call PE DLL (proc=7B4C1080,module=7B4C0000 L"winex11.drv",reason=PROCESS_DETACH,res=00000000)
7935.520:0050:0054:Ret  PE DLL (proc=7B4C1080,module=7B4C0000 L"winex11.drv",reason=PROCESS_DETACH,res=00000000) retval=1
7935.520:0050:0054:warn:module:process_attach Initialization of L"winex11.drv" failed
7935.520:0050:0054:trace:module:process_attach (L"winex11.drv",00000000) - END
7935.520:0050:0054:trace:module:LdrUnloadDll (7B4C0000)
7935.520:0050:0054:trace:module:LdrUnloadDll (L"winex11.drv") - START
7935.520:0050:0054:trace:module:MODULE_DecRefCount (L"winex11.drv") ldr.LoadCount: 0
7935.520:0050:0054:trace:ntdll:RtlRbRemoveNode tree 7BFD5580, node 0027CCD0.
7935.520:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002858A8, return 1, status 0.
7935.520:0050:0054:trace:module:free_modref  unloading L"C:\\windows\\system32\\winex11.drv"
7935.520:0050:0054:SysCall  NtUnmapViewOfSection(ffffffff,7b4c0000)
0054: unmap_view( base=7b4c0000 )
0054: unmap_view() = 0
7935.521:0050:0054:SysRet   NtUnmapViewOfSection() retval=00000000
7935.521:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028E9D0, return 1, status 0.
7935.521:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027CC68, return 1, status 0.
7935.521:0050:0054:trace:module:LdrUnloadDll END
7935.521:0050:0054:Ret  ntdll.LdrLoadDll() retval=c0000142 ret=7bc7281b
7935.521:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000142) ret=7bc728a9
7935.521:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=0000045a ret=7bc728a9
7935.521:0050:0054:Call ntdll.RtlReleasePath(0028e790) ret=7bc72830
7935.521:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028E790, return 1, status 0.
7935.521:0050:0054:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc72830
7935.521:0050:0054:Ret  kernelbase.LoadLibraryW() retval=00000000 ret=7bf3cfb4
7935.521:0050:0054:Ret  KERNEL32.LoadLibraryW() retval=00000000 ret=00406b19
7935.521:0050:0054:Call ucrtbase.wcschr(0062f464 L"wayland",0000002c) ret=00406abf
7935.521:0050:0054:Ret  ucrtbase.wcschr() retval=00000000 ret=00406abf
7935.521:0050:0054:Call ucrtbase.wcscmp(0062f464 L"wayland",00413f02 L"null") ret=00406ae0
7935.521:0050:0054:Ret  ucrtbase.wcscmp() retval=00000001 ret=00406ae0
7935.521:0050:0054:Call ucrtbase.__stdio_common_vswprintf(000000004,0062f20c,00000020,00413f2a L"wine%s.drv",00000000,0062f178) ret=0040c20f
7935.521:0050:0054:Ret  ucrtbase.__stdio_common_vswprintf() retval=0000000f ret=0040c20f
7935.521:0050:0054:Call KERNEL32.LoadLibraryW(0062f20c L"winewayland.drv") ret=00406b19
7935.521:0050:0054:Call kernelbase.LoadLibraryW(0062f20c L"winewayland.drv") ret=7bf3cfb4
7935.521:0050:0054:Call ntdll.RtlInitUnicodeString(0062f0e4,0062f20c L"winewayland.drv") ret=7bc2a675
7935.521:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=0062f20c ret=7bc2a675
7935.521:0050:0054:Call ntdll.LdrGetDllPath(0062f20c L"winewayland.drv",00000000,0062f0bc,0062f0c0) ret=7bc727f0
7935.521:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
7935.521:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00290598, status 0.
7935.521:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062F01C
7935.521:0050:0054:Ret  ntdll.LdrGetDllPath() retval=00000000 ret=7bc727f0
7935.521:0050:0054:Call ntdll.LdrLoadDll(00290598 L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;",00000000,0062f0e4,0062f0b8) ret=7bc7281b
7935.521:0050:0054:trace:module:load_dll looking for L"winewayland.drv" in L"C:\\windows\\system32;C:\\windows\\system32;C:\\windows\\system;C:\\windows;.;"
7935.521:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"winewayland.drv" 0062EF00
7935.521:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xb0, return 0027CD38, status 0.
7935.521:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winewayland.drv",0062EFB8,00000000,00000000)
7935.521:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winewayland.drv" 520 0062EC64 00000000)
7935.521:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winewayland.drv" 520 0062EC64 00000000 00000000)
7935.521:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 0027F840, status 0.
7935.521:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.521:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.521:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winewayland.drv" -> ret c0000034
7935.521:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winewayland.drv" not found (c0000034)
7935.521:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.521:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F840, return 1, status 0.
7935.521:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winewayland.drv",0062EFB8,00000000,00000000)
7935.521:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winewayland.drv" 520 0062EC64 00000000)
7935.521:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winewayland.drv" 520 0062EC64 00000000 00000000)
7935.521:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 0027F8B0, status 0.
7935.521:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.521:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.521:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winewayland.drv" -> ret c0000034
7935.521:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winewayland.drv" not found (c0000034)
7935.521:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.521:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F8B0, return 1, status 0.
7935.521:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winewayland.drv",0062EFB8,00000000,00000000)
7935.521:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winewayland.drv" 520 0062EC64 00000000)
7935.521:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winewayland.drv" 520 0062EC64 00000000 00000000)
7935.521:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x54, return 0027F920, status 0.
7935.521:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.521:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.521:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winewayland.drv" -> ret c000003a
7935.521:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system\\winewayland.drv" not found (c000003a)
7935.521:0050:0054:SysRet   NtOpenFile() retval=c000003a
7935.521:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F920, return 1, status 0.
7935.521:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winewayland.drv",0062EFB8,00000000,00000000)
7935.521:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winewayland.drv" 520 0062EC64 00000000)
7935.521:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winewayland.drv" 520 0062EC64 00000000 00000000)
7935.521:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x46, return 0028EA30, status 0.
7935.521:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.521:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.521:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winewayland.drv" -> ret c0000034
7935.521:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\winewayland.drv" not found (c0000034)
7935.521:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.521:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EA30, return 1, status 0.
7935.521:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winewayland.drv",0062EFB8,00000000,00000000)
7935.521:0050:0054:trace:file:RtlGetFullPathName_U (L".\\winewayland.drv" 520 0062EC64 00000000)
7935.521:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\winewayland.drv" 520 0062EC64 00000000 00000000)
7935.521:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 0027F990, status 0.
7935.521:0050:0054:SysCall  NtOpenFile(0062edf4,80100000,0062ee08,0062ee00,00000005,00000060)
7935.521:0050:0054:trace:file:NtCreateFile handle=0x62edf4 access=80100000 name=L"\\??\\C:\\windows\\system32\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.521:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winewayland.drv" -> ret c0000034
7935.521:0050:0054:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\winewayland.drv" not found (c0000034)
7935.521:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.521:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027F990, return 1, status 0.
7935.521:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027CD38, return 1, status 0.
7935.521:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x87e, return 00290640, status 0.
7935.521:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00290640, return 1, status 0.
7935.521:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x83a, return 00290ED8, status 0.
7935.521:0050:0054:SysCall  NtOpenFile(0062ee2c,80100000,0062ee40,0062ee38,00000005,00000060)
7935.521:0050:0054:trace:file:NtCreateFile handle=0x62ee2c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee38 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.537:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winewayland.drv" -> ret c0000034
7935.537:0050:0054:warn:file:NtCreateFile L"\\??\\Z:\\usr\\lib\\wine\\i386-windows\\winewayland.drv" not found (c0000034)
7935.537:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.537:0050:0054:SysCall  NtOpenFile(0062ee2c,80100000,0062ee40,0062ee38,00000005,00000060)
7935.537:0050:0054:trace:file:NtCreateFile handle=0x62ee2c access=80100000 name=L"\\??\\Z:\\usr\\lib\\wine\\winewayland.drv" objattr=00000040 root=(nil) sec=(nil) io=0x62ee38 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7935.537:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\Z:\\usr\\lib\\wine\\winewayland.drv" -> ret c0000034
7935.537:0050:0054:warn:file:NtCreateFile L"\\??\\Z:\\usr\\lib\\wine\\winewayland.drv" not found (c0000034)
7935.537:0050:0054:SysRet   NtOpenFile() retval=c0000034
7935.537:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00290ED8, return 1, status 0.
7935.537:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x83a, return 00291730, status 0.
7935.537:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00291730, return 1, status 0.
7935.537:0050:0054:warn:module:load_dll Failed to load module L"winewayland.drv"; status=c0000135
7935.537:0050:0054:Ret  ntdll.LdrLoadDll() retval=c0000135 ret=7bc7281b
7935.537:0050:0054:Call ntdll.RtlNtStatusToDosError(c0000135) ret=7bc728a9
7935.537:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=0000007e ret=7bc728a9
7935.537:0050:0054:Call ntdll.RtlRunOnceExecuteOnce(7bcb8c80,7bc70990,00000000,00000000) ret=7bc26189
7935.537:0050:0054:Ret  ntdll.RtlRunOnceExecuteOnce() retval=00000000 ret=7bc26189
7935.537:0050:0054:Call ntdll.wcscpy(0062ef94,7bcb8cb4 L"") ret=7bc21d77
7935.537:0050:0054:Ret  ntdll.wcscpy() retval=0062ef94 ret=7bc21d77
7935.537:0050:0054:Call ntdll.RtlReleasePath(00290598) ret=7bc72830
7935.537:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00290598, return 1, status 0.
7935.537:0050:0054:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc72830
7935.537:0050:0054:Ret  kernelbase.LoadLibraryW() retval=00000000 ret=7bf3cfb4
7935.537:0050:0054:Ret  KERNEL32.LoadLibraryW() retval=00000000 ret=00406b19
7935.537:0050:0054:Call KERNEL32.IsBadStringPtrW(0062f20c,ffffffff) ret=00411973
7935.537:0050:0054:Ret  KERNEL32.IsBadStringPtrW() retval=00000000 ret=00411973
7935.537:0050:0054:trace:explorer:load_graphics_driver display {2160e0d6-a320-42ec-a824-868e39cc94e9} driver L"winewayland.drv"
7935.537:0050:0054:Call ucrtbase.__stdio_common_vswprintf(000000004,0062f328,00000086,00415400 L"System\\CurrentControlSet\\Control\\Video\\{%08x-%04x-%04x-%02x%02x-%02x%02x%02x%02x%02x%02x}\\0000",00000000,0062f178) ret=0040c20f
7935.537:0050:0054:Ret  ucrtbase.__stdio_common_vswprintf() retval=00000052 ret=0040c20f
7935.537:0050:0054:Call advapi32.RegCreateKeyExW(80000002,0062f328 L"System\\CurrentControlSet\\Control\\Video\\{2160e0d6-a320-42ec-a824-868e39cc94e9}\\0000",00000000,00000000,00000001,00000002,00000000,0062f1f8,00000000) ret=00406c5a
7935.537:0050:0054:Call kernelbase.RegCreateKeyExW(80000002,0062f328 L"System\\CurrentControlSet\\Control\\Video\\{2160e0d6-a320-42ec-a824-868e39cc94e9}\\0000",00000000,00000000,00000001,00000002,00000000,0062f1f8,00000000) ret=7bf3cfb4
7935.537:0050:0054:Call ntdll.RtlInitUnicodeString(0062f0ac,0062f328 L"System\\CurrentControlSet\\Control\\Video\\{2160e0d6-a320-42ec-a824-868e39cc94e9}\\0000") ret=7bc3d942
7935.537:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=0062f328 ret=7bc3d942
7935.537:0050:0054:Call ntdll.RtlInitUnicodeString(0062f0b4,00000000) ret=7bc3d953
7935.537:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00000008 ret=7bc3d953
7935.537:0050:0054:Call ntdll.NtCreateKey(0062f1f8,00000002,0062f068,00000000,0062f0b4,00000001,00000000) ret=7bc67940
7935.537:0050:0054:SysCall  NtCreateKey(0062f1f8,00000002,0062f068,00000000,0062f0b4,00000001,00000000)
7935.537:0050:0054:trace:reg:NtCreateKey (0x18,L"System\\CurrentControlSet\\Control\\Video\\{2160e0d6-a320-42ec-a824-868e39cc94e9}\\0000",(null),1,2,0x62f1f8)
0054: create_key( access=00000002, options=00000001, objattr={rootdir=0018,attributes=000000c0,sd={},name=L"System\\CurrentControlSet\\Control\\Video\\{2160e0d6-a320-42ec-a824-868e39cc94e9}\\0000"}, class=L"" )
0054: create_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.544:0050:0054:trace:reg:NtCreateKey <- (nil)
7935.544:0050:0054:SysRet   NtCreateKey() retval=c0000034
7935.544:0050:0054:Ret  ntdll.NtCreateKey() retval=c0000034 ret=7bc67940
7935.544:0050:0054:Call ntdll._wcsnicmp(0062f328 L"System\\CurrentControlSet\\Control\\Video\\{2160e0d6-a320-42ec-a824-868e39cc94e9}\\0000",7bc88e30 L"Wow6432Node\\",0000000c) ret=7bc73cc4
7935.544:0050:0054:Ret  ntdll._wcsnicmp() retval=fffffffc ret=7bc73cc4
7935.544:0050:0054:Call ntdll.NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000) ret=7bc73de1
7935.544:0050:0054:SysCall  NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000)
7935.544:0050:0054:trace:reg:NtOpenKeyEx (0x18,L"System",102,0x62ef10)
0054: open_key( parent=0018, access=00000102, attributes=00000040, name=L"System" )
0054: open_key() = 0 { hkey=0058 }
7935.545:0050:0054:trace:reg:NtOpenKeyEx <- 0x58
7935.545:0050:0054:SysRet   NtOpenKeyEx() retval=00000000
7935.545:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=00000000 ret=7bc73de1
7935.545:0050:0054:Call ntdll._wcsnicmp(0062f336 L"CurrentControlSet\\Control\\Video\\{2160e0d6-a320-42ec-a824-868e39cc94e9}\\0000",7bc88e30 L"Wow6432Node\\",0000000c) ret=7bc73cc4
7935.545:0050:0054:Ret  ntdll._wcsnicmp() retval=ffffffec ret=7bc73cc4
7935.545:0050:0054:Call ntdll.NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000) ret=7bc73de1
7935.545:0050:0054:SysCall  NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000)
7935.545:0050:0054:trace:reg:NtOpenKeyEx (0x58,L"CurrentControlSet",102,0x62ef10)
0054: open_key( parent=0058, access=00000102, attributes=00000040, name=L"CurrentControlSet" )
0054: open_key() = 0 { hkey=005c }
7935.545:0050:0054:trace:reg:NtOpenKeyEx <- 0x5c
7935.545:0050:0054:SysRet   NtOpenKeyEx() retval=00000000
7935.545:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=00000000 ret=7bc73de1
7935.545:0050:0054:Call ntdll.NtClose(00000058) ret=7bc73c64
7935.545:0050:0054:SysCall  NtClose(00000058)
0054: close_handle( handle=0058 )
0054: close_handle() = 0
7935.546:0050:0054:SysRet   NtClose() retval=00000000
7935.546:0050:0054:Ret  ntdll.NtClose() retval=00000000 ret=7bc73c64
7935.546:0050:0054:Call ntdll._wcsnicmp(0062f35a L"Control\\Video\\{2160e0d6-a320-42ec-a824-868e39cc94e9}\\0000",7bc88e30 L"Wow6432Node\\",0000000c) ret=7bc73cc4
7935.546:0050:0054:Ret  ntdll._wcsnicmp() retval=ffffffec ret=7bc73cc4
7935.546:0050:0054:Call ntdll.NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000) ret=7bc73de1
7935.546:0050:0054:SysCall  NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000)
7935.546:0050:0054:trace:reg:NtOpenKeyEx (0x5c,L"Control",102,0x62ef10)
0054: open_key( parent=005c, access=00000102, attributes=00000040, name=L"Control" )
0054: open_key() = 0 { hkey=0058 }
7935.546:0050:0054:trace:reg:NtOpenKeyEx <- 0x58
7935.546:0050:0054:SysRet   NtOpenKeyEx() retval=00000000
7935.546:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=00000000 ret=7bc73de1
7935.546:0050:0054:Call ntdll.NtClose(0000005c) ret=7bc73c64
7935.546:0050:0054:SysCall  NtClose(0000005c)
0054: close_handle( handle=005c )
0054: close_handle() = 0
7935.547:0050:0054:SysRet   NtClose() retval=00000000
7935.547:0050:0054:Ret  ntdll.NtClose() retval=00000000 ret=7bc73c64
7935.547:0050:0054:Call ntdll._wcsnicmp(0062f36a L"Video\\{2160e0d6-a320-42ec-a824-868e39cc94e9}\\0000",7bc88e30 L"Wow6432Node\\",0000000c) ret=7bc73cc4
7935.547:0050:0054:Ret  ntdll._wcsnicmp() retval=ffffffff ret=7bc73cc4
7935.547:0050:0054:Call ntdll.NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000) ret=7bc73de1
7935.547:0050:0054:SysCall  NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000)
7935.547:0050:0054:trace:reg:NtOpenKeyEx (0x58,L"Video",102,0x62ef10)
0054: open_key( parent=0058, access=00000102, attributes=00000040, name=L"Video" )
0054: open_key() = 0 { hkey=005c }
7935.547:0050:0054:trace:reg:NtOpenKeyEx <- 0x5c
7935.547:0050:0054:SysRet   NtOpenKeyEx() retval=00000000
7935.547:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=00000000 ret=7bc73de1
7935.547:0050:0054:Call ntdll.NtClose(00000058) ret=7bc73c64
7935.547:0050:0054:SysCall  NtClose(00000058)
0054: close_handle( handle=0058 )
0054: close_handle() = 0
7935.548:0050:0054:SysRet   NtClose() retval=00000000
7935.548:0050:0054:Ret  ntdll.NtClose() retval=00000000 ret=7bc73c64
7935.548:0050:0054:Call ntdll._wcsnicmp(0062f376 L"{2160e0d6-a320-42ec-a824-868e39cc94e9}\\0000",7bc88e30 L"Wow6432Node\\",0000000c) ret=7bc73cc4
7935.548:0050:0054:Ret  ntdll._wcsnicmp() retval=00000004 ret=7bc73cc4
7935.548:0050:0054:Call ntdll.NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000) ret=7bc73de1
7935.548:0050:0054:SysCall  NtOpenKeyEx(0062ef10,00000102,0062ed6c,00000000)
7935.548:0050:0054:trace:reg:NtOpenKeyEx (0x5c,L"{2160e0d6-a320-42ec-a824-868e39cc94e9}",102,0x62ef10)
0054: open_key( parent=005c, access=00000102, attributes=00000040, name=L"{2160e0d6-a320-42ec-a824-868e39cc94e9}" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.548:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.548:0050:0054:SysRet   NtOpenKeyEx() retval=c0000034
7935.548:0050:0054:Ret  ntdll.NtOpenKeyEx() retval=c0000034 ret=7bc73de1
7935.548:0050:0054:Call ntdll.NtCreateKey(0062f068,00000002,0062f00c,00000000,0062f0b4,00000001,00000000) ret=7bc67940
7935.548:0050:0054:SysCall  NtCreateKey(0062f068,00000002,0062f00c,00000000,0062f0b4,00000001,00000000)
7935.548:0050:0054:trace:reg:NtCreateKey (0x5c,L"{2160e0d6-a320-42ec-a824-868e39cc94e9}",(null),1,2,0x62f068)
0054: create_key( access=00000002, options=00000001, objattr={rootdir=005c,attributes=000000c0,sd={},name=L"{2160e0d6-a320-42ec-a824-868e39cc94e9}"}, class=L"" )
0054: create_key() = 0 { hkey=0058 }
7935.548:0050:0054:trace:reg:NtCreateKey <- 0x58
7935.548:0050:0054:SysRet   NtCreateKey() retval=00000000
7935.548:0050:0054:Ret  ntdll.NtCreateKey() retval=00000000 ret=7bc67940
7935.548:0050:0054:Call ntdll.NtClose(0000005c) ret=7bc67afe
7935.548:0050:0054:SysCall  NtClose(0000005c)
0054: close_handle( handle=005c )
0054: close_handle() = 0
7935.549:0050:0054:SysRet   NtClose() retval=00000000
7935.549:0050:0054:Ret  ntdll.NtClose() retval=00000000 ret=7bc67afe
7935.549:0050:0054:Call ntdll.NtCreateKey(0062f068,00000002,0062f00c,00000000,0062f0b4,00000001,00000000) ret=7bc67940
7935.549:0050:0054:SysCall  NtCreateKey(0062f068,00000002,0062f00c,00000000,0062f0b4,00000001,00000000)
7935.549:0050:0054:trace:reg:NtCreateKey (0x58,L"0000",(null),1,2,0x62f068)
0054: create_key( access=00000002, options=00000001, objattr={rootdir=0058,attributes=000000c0,sd={},name=L"0000"}, class=L"" )
0054: create_key() = 0 { hkey=005c }
7935.549:0050:0054:trace:reg:NtCreateKey <- 0x5c
7935.549:0050:0054:SysRet   NtCreateKey() retval=00000000
7935.549:0050:0054:Ret  ntdll.NtCreateKey() retval=00000000 ret=7bc67940
7935.549:0050:0054:Call ntdll.NtClose(00000058) ret=7bc67afe
7935.549:0050:0054:SysCall  NtClose(00000058)
0054: close_handle( handle=0058 )
0054: close_handle() = 0
7935.550:0050:0054:SysRet   NtClose() retval=00000000
7935.550:0050:0054:Ret  ntdll.NtClose() retval=00000000 ret=7bc67afe
7935.550:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc3d98f
7935.550:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc3d98f
7935.550:0050:0054:Ret  kernelbase.RegCreateKeyExW() retval=00000000 ret=7bf3cfb4
7935.550:0050:0054:Ret  advapi32.RegCreateKeyExW() retval=00000000 ret=00406c5a
7935.550:0050:0054:Call ucrtbase.strlen(0062f24c "The graphics driver is missing. Check your build!") ret=00407cb6
7935.550:0050:0054:Ret  ucrtbase.strlen() retval=00000031 ret=00407cb6
7935.550:0050:0054:Call advapi32.RegSetValueExA(0000005c,00413ff6 "DriverError",00000000,00000001,0062f24c,00000032) ret=00407ce0
7935.550:0050:0054:Call kernelbase.RegSetValueExA(0000005c,00413ff6 "DriverError",00000000,00000001,0062f24c,00000032) ret=7bf3cfb4
7935.550:0050:0054:Call ntdll.RtlRunOnceExecuteOnce(7bcb8c80,7bc70990,00000000,00000000) ret=7bc26189
7935.550:0050:0054:Ret  ntdll.RtlRunOnceExecuteOnce() retval=00000000 ret=7bc26189
7935.550:0050:0054:Call ntdll.wcscpy(0062efa0,7bcb8cb4 L"") ret=7bc21d77
7935.550:0050:0054:Ret  ntdll.wcscpy() retval=0062efa0 ret=7bc21d77
7935.550:0050:0054:Call ntdll.RtlMultiByteToUnicodeSize(0062f0d4,0062f24c "The graphics driver is missing. Check your build!",00000032) ret=7bc46ac2
7935.550:0050:0054:Ret  ntdll.RtlMultiByteToUnicodeSize() retval=00000000 ret=7bc46ac2
7935.550:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,00000064) ret=7bc46ae9
7935.550:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00291F88, status 0.
7935.550:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00291f88 ret=7bc46ae9
7935.550:0050:0054:Call ntdll.RtlMultiByteToUnicodeN(00291f88,00000064,00000000,0062f24c,00000032) ret=7bc46b1c
7935.550:0050:0054:Ret  ntdll.RtlMultiByteToUnicodeN() retval=00000000 ret=7bc46b1c
7935.550:0050:0054:Call ntdll.RtlInitAnsiString(0062f0cc,00413ff6 "DriverError") ret=7bc46a0b
7935.550:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=00413ff6 ret=7bc46a0b
7935.550:0050:0054:Call ntdll.RtlAnsiStringToUnicodeString(0062f0d4,0062f0cc,00000001) ret=7bc46a25
7935.550:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x18, return 00273610, status 0.
7935.550:0050:0054:Ret  ntdll.RtlAnsiStringToUnicodeString() retval=00000000 ret=7bc46a25
7935.550:0050:0054:Call ntdll.NtSetValueKey(0000005c,0062f0d4,00000000,00000001,00291f88,00000064) ret=7bc46b92
7935.550:0050:0054:SysCall  NtSetValueKey(0000005c,0062f0d4,00000000,00000001,00291f88,00000064)
7935.550:0050:0054:trace:reg:NtSetValueKey (0x5c,L"DriverError",1,0x291f88,100)
0054: set_key_value( hkey=005c, type=1, namelen=22, name=L"DriverError", data={54,00,68,00,65,00,20,00,67,00,72,00,61,00,70,00,68,00,69,00,63,00,73,00,20,00,64,00,72,00,69,00,76,00,65,00,72,00,20,00,69,00,73,00,20,00,6d,00,69,00,73,00,73,00,69,00,6e,00,67,00,2e,00,20,00,43,00,68,00,65,00,63,00,6b,00,20,00,79,00,6f,00,75,00,72,00,20,00,62,00,75,00,69,00,6c,00,64,00,21,00,00,00} )
0054: set_key_value() = 0
7935.552:0050:0054:SysRet   NtSetValueKey() retval=00000000
7935.552:0050:0054:Ret  ntdll.NtSetValueKey() retval=00000000 ret=7bc46b92
7935.552:0050:0054:Call ntdll.RtlFreeUnicodeString(0062f0d4) ret=7bc46ba1
7935.552:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00273610, return 1, status 0.
7935.552:0050:0054:Ret  ntdll.RtlFreeUnicodeString() retval=00000001 ret=7bc46ba1
7935.552:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00291f88) ret=7bc46a56
7935.552:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00291F88, return 1, status 0.
7935.552:0050:0054:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc46a56
7935.552:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bc46a65
7935.552:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bc46a65
7935.552:0050:0054:Ret  kernelbase.RegSetValueExA() retval=00000000 ret=7bf3cfb4
7935.552:0050:0054:Ret  advapi32.RegSetValueExA() retval=00000000 ret=00407ce0
7935.552:0050:0054:Call advapi32.RegCloseKey(0000005c) ret=00406cd7
7935.552:0050:0054:Call kernelbase.RegCloseKey(0000005c) ret=7bf3cfb4
7935.552:0050:0054:Call ntdll.NtClose(0000005c) ret=7bc3cde9
7935.552:0050:0054:SysCall  NtClose(0000005c)
0054: close_handle( handle=005c )
0054: close_handle() = 0
7935.554:0050:0054:SysRet   NtClose() retval=00000000
7935.554:0050:0054:Ret  ntdll.NtClose() retval=00000000 ret=7bc3cde9
7935.554:0050:0054:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bf3cfb4
7935.554:0050:0054:Ret  kernelbase.RegCloseKey() retval=00000000 ret=7bf3cfb4
7935.554:0050:0054:Ret  advapi32.RegCloseKey() retval=00000000 ret=00406cd7
7935.554:0050:0054:Call ntdll.NtSetInformationProcess(ffffffff,000003ea,00000000,00000000) ret=00406d1f
7935.554:0050:0054:SysCall  NtSetInformationProcess(ffffffff,000003ea,00000000,00000000)
0054: grant_process_admin_token( handle=ffffffff )
0054: grant_process_admin_token() = 0
7935.554:0050:0054:SysRet   NtSetInformationProcess() retval=00000000
7935.554:0050:0054:Ret  ntdll.NtSetInformationProcess() retval=00000000 ret=00406d1f
7935.554:0050:0054:Call user32.CreateWindowExW(00000000,00008001,00000000,86000000,00000000,00000000,00000000,00000000,00000000,00000000,00000000,0062f1fc) ret=00406d9c
7935.554:0050:0054:Call win32u.NtUserGetAtomName(00008001,0062ed30) ret=7b67a2b9
7935.554:0050:0054:SysCall  NtUserGetAtomName(00008001,0062ed30)
7935.554:0050:0054:SysRet   NtUserGetAtomName() retval=00000006
7935.554:0050:0054:Ret  win32u.NtUserGetAtomName() retval=00000006 ret=7b67a2b9
7935.554:0050:0054:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aa846 L"MDIClient") ret=7b67608f
7935.554:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.554:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.554:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Ret  ucrtbase._wcsicmp() retval=ffffffb6 ret=7b67608f
7935.554:0050:0054:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aabf0 L"IME") ret=7b67608f
7935.554:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.554:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.554:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Ret  ucrtbase._wcsicmp() retval=ffffffba ret=7b67608f
7935.554:0050:0054:Call ntdll.RtlFindActivationContextSectionString(00000000,00000000,00000003,0062ed30,0062ec5c) ret=7b6760c7
7935.554:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000000 (null) 3 L"#32769" 0062EC5C
7935.554:0050:0054:Ret  ntdll.RtlFindActivationContextSectionString() retval=c0150008 ret=7b6760c7
7935.554:0050:0054:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aa85c L"SysDateTimePick32") ret=7b6761e3
7935.554:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.554:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.554:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Ret  ucrtbase._wcsicmp() retval=ffffffb0 ret=7b6761e3
7935.554:0050:0054:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aa9f4 L"msctls_trackbar32") ret=7b6761e3
7935.554:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.554:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.554:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Ret  ucrtbase._wcsicmp() retval=ffffffb6 ret=7b6761e3
7935.554:0050:0054:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aa988 L"msctls_hotkey32") ret=7b6761e3
7935.554:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.554:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.554:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Ret  ucrtbase._wcsicmp() retval=ffffffb6 ret=7b6761e3
7935.554:0050:0054:Call ucrtbase._wcsicmp(0062eeb4 L"#32769",7b6aa96c L"ComboBoxEx32") ret=7b6761e3
7935.554:0050:0054:Call KERNEL32.TlsGetValue(00000002) ret=7b9feb01
7935.554:0050:0054:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7935.554:0050:0054:Ret  kernelbase.TlsGetValue() retval=002840d8 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.TlsGetValue() retval=002840d8 ret=7b9feb01
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9f6857
7935.554:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7935.554:0050:0054:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7935.554:0050:0054:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9f6857
7935.554:0050:0054:Ret  ucrtbase._wcsicmp() retval=ffffffc0 ret=7b6761e3
7935.554:0050:0054:Call win32u.NtUserGetClassInfoEx(00000000,0062ed30,0062ed58,00000000,00000000) ret=7b6696be
7935.554:0050:0054:SysCall  NtUserGetClassInfoEx(00000000,0062ed30,0062ed58,00000000,00000000)
7935.554:0050:0054:trace:class:get_shared_class class 0x7e4dfe70, lock 0x21fd30, class_shm 0x21fd1c
7935.554:0050:0054:trace:class:get_shared_class class 0x7e4dfe70, lock 0x21fd30, class_shm 0x21fd1c
7935.554:0050:0054:trace:class:find_class L"#32769" 0 -> 0x7e4dfe70
7935.554:0050:0054:trace:class:get_shared_class class 0x7e4dfe70, lock 0x21fd20, class_shm 0x21fd30
7935.554:0050:0054:trace:class:get_shared_class class 0x7e4dfe70, lock 0x21fd20, class_shm 0x21fd30
7935.554:0050:0054:SysRet   NtUserGetClassInfoEx() retval=00008001
7935.554:0050:0054:Ret  win32u.NtUserGetClassInfoEx() retval=00008001 ret=7b6696be
7935.554:0050:0054:Call KERNEL32.IsBadStringPtrW(0062eeb4,00000006) ret=7b66976d
7935.554:0050:0054:Ret  KERNEL32.IsBadStringPtrW() retval=00000000 ret=7b66976d
7935.554:0050:0054:Call kernelbase.GetModuleHandleW(7b6c20fa L"ntdll.dll") ret=7b66bfee
7935.554:0050:0054:Call ntdll.RtlInitUnicodeString(0062eaec,7b6c20fa L"ntdll.dll") ret=7bc1b6df
7935.554:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7b6c20fa ret=7bc1b6df
7935.554:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062eaec,0062eae8) ret=7bc1b705
7935.554:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EAEC, base 0062EAE8.
7935.554:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062E9AC
7935.554:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.554:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.554:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7b66bfee
7935.554:0050:0054:Call kernelbase.GetProcAddress(7bf30000,7b6c210e "__wine_dbg_strdup") ret=7b66c000
7935.554:0050:0054:Call ntdll.RtlInitAnsiString(0062eb08,7b6c210e "__wine_dbg_strdup") ret=7bc6ef7d
7935.554:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b6c210e ret=7bc6ef7d
7935.554:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062eb08,00000000,0062eb04) ret=7bc6ef9b
7935.554:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.554:0050:0054:Ret  kernelbase.GetProcAddress() retval=7bf6cb10 ret=7b66c000
7935.554:0050:0054:trace:win:WIN_CreateWindowEx (null) #8001->L"#32769" ex=00000000 style=86000000 0,0 0x0 parent=00000000 menu=00000000 inst=00000000 params=0062F1FC
7935.554:0050:0054:Call kernelbase.GetModuleHandleW(7b6c20fa L"ntdll.dll") ret=7b66be5e
7935.554:0050:0054:Call ntdll.RtlInitUnicodeString(0062ec3c,7b6c20fa L"ntdll.dll") ret=7bc1b6df
7935.554:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=7b6c20fa ret=7bc1b6df
7935.554:0050:0054:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0062ec3c,0062ec38) ret=7bc1b705
7935.554:0050:0054:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0062EC3C, base 0062EC38.
7935.554:0050:0054:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"ntdll.dll" 0062EAFC
7935.554:0050:0054:trace:module:LdrGetDllHandleEx L"ntdll.dll" -> 7BF30000 (load path (null))
7935.554:0050:0054:Ret  ntdll.LdrGetDllHandleEx() retval=00000000 ret=7bc1b705
7935.554:0050:0054:Ret  kernelbase.GetModuleHandleW() retval=7bf30000 ret=7b66be5e
7935.554:0050:0054:Call kernelbase.GetProcAddress(7bf30000,7b6c2132 "__wine_dbg_get_channel_flags") ret=7b66be70
7935.554:0050:0054:Call ntdll.RtlInitAnsiString(0062ec48,7b6c2132 "__wine_dbg_get_channel_flags") ret=7bc6ef7d
7935.554:0050:0054:Ret  ntdll.RtlInitAnsiString() retval=7b6c2132 ret=7bc6ef7d
7935.554:0050:0054:Call ntdll.LdrGetProcedureAddress(7bf30000,0062ec48,00000000,0062ec44) ret=7bc6ef9b
7935.554:0050:0054:Ret  ntdll.LdrGetProcedureAddress() retval=00000000 ret=7bc6ef9b
7935.554:0050:0054:Ret  kernelbase.GetProcAddress() retval=7bf6c770 ret=7b66be70
7935.554:0050:0054:trace:win:dump_window_styles style: WS_POPUP WS_CLIPSIBLINGS WS_CLIPCHILDREN
7935.554:0050:0054:trace:win:dump_window_styles exstyle:
7935.554:0050:0054:Call ntdll.RtlInitUnicodeString(0062ed40,00000000) ret=7b66a396
7935.554:0050:0054:Ret  ntdll.RtlInitUnicodeString() retval=00000008 ret=7b66a396
7935.554:0050:0054:Call win32u.NtUserCreateWindowEx(00000000,0062ed30,00000000,0062ed40,86000000,00000000,00000000,00000000,00000000,00000000,00000000,00000000,0062f1fc,00000000,00000000,00008001,00000000) ret=7b66a71f
7935.554:0050:0054:SysCall  NtUserCreateWindowEx(00000000,0062ed30,00000000,0062ed40,86000000,00000000,00000000,00000000,00000000,00000000,00000000,00000000,0062f1fc,00000000,00000000,00008001,00000000)
7935.554:0050:0054:trace:win:NtUserCreateWindowEx ex_style 0, class_name L"#32769", version <null>, window_name (null), style 0x86000000, x 0, y 0, cx 0, cy 0, parent (nil), menu (nil), class_instance (nil), params 0x62f1fc, flags 0, instance (nil), class #8001, ansi 0
0054: create_window( parent=00000000, owner=00000000, atom=8001, class_instance=00000000, instance=00000000, dpi_context=00006010, style=86000000, ex_style=00000000, class=L"" )
0054: create_window() = 0 { handle=00010022, parent=00010020, owner=00000000, extra=0, class_ptr=7e4dfe70 }
0054: get_process_winstation( )
0054: get_process_winstation() = 0 { handle=0050 }
0054: set_user_object_info( handle=0050, flags=00000000, obj_flags=00000000 )
0054: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"WinSta0" }
7935.568:0050:0054:trace:reg:NtOpenKeyEx (0x2c,L"Software\\Wine\\Debug",2000000,0x21dbc4)
0054: open_key( parent=002c, access=02000000, attributes=00000040, name=L"Software\\Wine\\Debug" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.568:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.568:0050:0054:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21dd40, class_shm 0x21dd38
7935.568:0050:0054:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21dd40, class_shm 0x21dd38
7935.568:0050:0054:trace:class:NtUserGetClassName 0x10020 0 0x21dde8
7935.568:0050:0054:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21dba0, class_shm 0x21db9c
7935.568:0050:0054:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21dba0, class_shm 0x21db9c
7935.568:0050:0054:trace:message:spy_enter_message (0x10020) L"{#32769}"      [0000] WM_NULL sent from tid 0054 wp=00000000 lp=00000000
7935.568:0050:0054:trace:msg:send_inter_thread_message hwnd 0x10020 msg 0 (WM_NULL) wp 0 lp 0
0054: send_message( id=004c, type=5, flags=0, win=00010020, msg=00000000, wparam=00000000, lparam=00000000, timeout=infinite, data={} )
0054: send_message() = 0
0054: get_msg_queue_handle( )
0054: get_msg_queue_handle() = 0 { handle=0058, idle_event=005c }
7935.569:0050:0054:trace:winstation:get_shared_queue lock 0x21e540, queue_shm 0x21e53c
0054: get_msg_queue( )
0054: get_msg_queue() = 0 { locator={id=00000013,offset=00102628} }
7935.569:0050:0054:trace:winstation:get_shared_queue lock 0x21e540, queue_shm 0x21e53c
0054: set_queue_mask( wake_mask=00008040, changed_mask=00008040, poll_events=0 )
0054: set_queue_mask() = 0 { wake_bits=00000000, changed_bits=00000000 }
7935.569:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.569:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.569:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.569:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.569:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.569:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.569:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.569:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.569:0050:0054:trace:sync:NtWaitForMultipleObjects type 1, alertable 0, handles {0x58}, timeout (infinite)
0054: select( flags=2, cookie=0021d404, timeout=infinite, size=8, prev_apc=0000, result={}, data={WAIT,handles={0058}}, contexts={} )
0054: select() = PENDING { apc_handle=0000, signaled=0, call={}, contexts={} }
7935.683:0048:004c:trace:vulkan:vulkan_init_once Host instance extensions:
7935.683:0048:004c:trace:vulkan:vulkan_init_once   - VK_KHR_device_group_creation
7935.683:0048:004c:warn:vulkan:vulkan_init_once Extension "VK_KHR_display" is not supported.
7935.683:0048:004c:trace:vulkan:vulkan_init_once   - VK_KHR_external_fence_capabilities
7935.683:0048:004c:trace:vulkan:vulkan_init_once   - VK_KHR_external_memory_capabilities
7935.683:0048:004c:trace:vulkan:vulkan_init_once   - VK_KHR_external_semaphore_capabilities
7935.683:0048:004c:warn:vulkan:vulkan_init_once Extension "VK_KHR_get_display_properties2" is not supported.
7935.683:0048:004c:trace:vulkan:vulkan_init_once   - VK_KHR_get_physical_device_properties2
7935.683:0048:004c:trace:vulkan:vulkan_init_once   - VK_KHR_get_surface_capabilities2
7935.683:0048:004c:trace:vulkan:vulkan_init_once   - VK_KHR_surface
7935.683:0048:004c:warn:vulkan:vulkan_init_once Extension "VK_KHR_surface_protected_capabilities" is not supported.
7935.683:0048:004c:trace:vulkan:vulkan_init_once   - VK_KHR_wayland_surface
7935.683:0048:004c:warn:vulkan:vulkan_init_once Extension "VK_KHR_xcb_surface" is not supported.
7935.683:0048:004c:trace:vulkan:vulkan_init_once   - VK_KHR_xlib_surface
7935.683:0048:004c:warn:vulkan:vulkan_init_once Extension "VK_EXT_acquire_xlib_display" is not supported.
7935.683:0048:004c:trace:vulkan:vulkan_init_once   - VK_EXT_debug_report
7935.683:0048:004c:warn:vulkan:vulkan_init_once Extension "VK_EXT_direct_mode_display" is not supported.
7935.683:0048:004c:warn:vulkan:vulkan_init_once Extension "VK_EXT_display_surface_counter" is not supported.
7935.683:0048:004c:trace:vulkan:vulkan_init_once   - VK_EXT_debug_utils
7935.683:0048:004c:trace:vulkan:convert_instance_create_info Enabling 2 host instance extensions
7935.683:0048:004c:trace:vulkan:convert_instance_create_info   - "VK_KHR_external_memory_capabilities"
7935.683:0048:004c:trace:vulkan:convert_instance_create_info   - "VK_KHR_get_physical_device_properties2"
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateDebugReportCallbackEXT not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateDebugUtilsMessengerEXT not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateHeadlessSurfaceEXT not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateMacOSSurfaceMVK not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateMetalSurfaceEXT not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateWaylandSurfaceKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateWin32SurfaceKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateXlibSurfaceKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkDebugReportMessageEXT not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroyDebugReportCallbackEXT not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroyDebugUtilsMessengerEXT not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroySurfaceKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkEnumeratePhysicalDeviceGroupsKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkSubmitDebugUtilsMessageEXT not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkEnumeratePhysicalDeviceQueueFamilyPerformanceCountersByRegionARM not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCalibrateableTimeDomainsKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeMatrixFlexibleDimensionsPropertiesNV not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeMatrixPropertiesKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeVectorPropertiesNV not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalFencePropertiesKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalSemaphorePropertiesKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalTensorPropertiesARM not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceOpticalFlowImageFormatsNV not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDevicePresentRectanglesKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceQueueFamilyDataGraphProcessingEnginePropertiesARM not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceQueueFamilyDataGraphPropertiesARM not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceCapabilities2KHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceCapabilitiesKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceFormats2KHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceFormatsKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfacePresentModesKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceSupportKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceToolProperties not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceVideoEncodeQualityLevelPropertiesKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceWaylandPresentationSupportKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceWin32PresentationSupportKHR not found.
7935.715:0048:004c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceXlibPresentationSupportKHR not found.
7935.715:0048:004c:warn:virtual:virtual_setup_exception exception outside of stack limits addr 0x7dc0ebdb stack 0x21c960 (0x430000-0x432000-0x630000)
7935.715:0048:004c:trace:seh:dispatch_exception code=c0000094 (EXCEPTION_INT_DIVIDE_BY_ZERO) flags=0 addr=7DC0EBDB
7935.715:0048:004c:trace:seh:dispatch_exception eip=7dc0ebdb esp=0021c960 ebp=00000000 eflags=00010246
7935.715:0048:004c:trace:seh:dispatch_exception eax=ffffffff ebx=781ac070 ecx=00000000 edx=00000000
7935.715:0048:004c:trace:seh:dispatch_exception esi=00000000 edi=00000000 cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7935.715:0048:004c:trace:seh:call_seh_handlers calling handler at 7BF6CC40 code=c0000094 flags=0
7935.715:0048:004c:Call kernelbase.UnhandledExceptionFilter(0021c4c0) ret=7bf6cc68
7935.715:0048:004c:Call ntdll.NtQueryInformationProcess(ffffffff,0000000c,0021c434,00000004,00000000) ret=7bc15d44
7935.715:0048:004c:SysCall  NtQueryInformationProcess(ffffffff,0000000c,0021c434,00000004,00000000)
7935.715:0048:004c:trace:process:NtQueryInformationProcess (0xffffffff,0x0000000c,0x21c434,0x00000004,(nil))
7935.715:0048:004c:SysRet   NtQueryInformationProcess() retval=00000000
7935.715:0048:004c:Ret  ntdll.NtQueryInformationProcess() retval=00000000 ret=7bc15d44
7935.715:0048:004c:Call ntdll.NtCreateEvent(0021c45c,001f0003,0021c460,00000000,00000000) ret=7bc57995
7935.715:0048:004c:SysCall  NtCreateEvent(0021c45c,001f0003,0021c460,00000000,00000000)
7935.715:0048:004c:trace:sync:NtCreateEvent access 0x1f0003, name <null>, type 0, state 0
004c: create_event( access=001f0003, manual_reset=1, initial_state=0, objattr={rootdir=0000,attributes=00000002,sd={},name=L""} )
004c: create_event() = 0 { handle=005c }
7935.727:0048:004c:SysRet   NtCreateEvent() retval=00000000
7935.727:0048:004c:Ret  ntdll.NtCreateEvent() retval=00000000 ret=7bc57995
wine: Unhandled division by zero at address 7DC0EBDB (thread 004c), starting debugger...
7935.727:0048:004c:Call ntdll.NtOpenKey(0021c2ac,00020019,0021c2d0) ret=7bc76e5b
7935.727:0048:004c:SysCall  NtOpenKey(0021c2ac,00020019,0021c2d0)
7935.727:0048:004c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AeDebug",20019,0x21c2ac)
004c: open_key( parent=0000, access=00020019, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AeDebug" )
004c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.727:0048:004c:trace:reg:NtOpenKeyEx <- (nil)
7935.727:0048:004c:SysRet   NtOpenKey() retval=c0000034
7935.727:0048:004c:Ret  ntdll.NtOpenKey() retval=c0000034 ret=7bc76e5b
7935.727:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,000000a0) ret=7bc771d2
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xa0, return 00292008, status 0.
7935.727:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=00292008 ret=7bc771d2
7935.727:0048:004c:Call ntdll._vsnwprintf(00292008,00000050,7bc81e80 L"winedbg --auto %ld %ld",0021c26c) ret=7bc778a7
7935.727:0048:004c:Ret  ntdll._vsnwprintf() retval=00000014 ret=7bc778a7
7935.727:0048:004c:Call ntdll.RtlAcquirePebLock() ret=7bc159b1
7935.727:0048:004c:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc159b1
7935.727:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,000019aa) ret=7bc15a01
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x19aa, return 002920C0, status 0.
7935.727:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=002920c0 ret=7bc15a01
7935.727:0048:004c:Call ntdll.memcpy(002920c0,002417b8,000019aa) ret=7bc15a23
7935.727:0048:004c:Ret  ntdll.memcpy() retval=002920c0 ret=7bc15a23
7935.727:0048:004c:Call ntdll.RtlReleasePebLock() ret=7bc15a29
7935.727:0048:004c:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc15a29
7935.727:0048:004c:trace:seh:start_debugger Starting debugger L"winedbg --auto 72 92"
7935.727:0048:004c:trace:process:CreateProcessInternalW app (null) cmdline L"winedbg --auto 72 92"
7935.727:0048:004c:Call ntdll.RtlAllocateHeap(00240000,00000000,0000002a) ret=7bc03b40
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2a, return 002858F8, status 0.
7935.727:0048:004c:Ret  ntdll.RtlAllocateHeap() retval=002858f8 ret=7bc03b40
7935.727:0048:004c:Call ntdll.RtlGetExePath(002858f8 L"winedbg",0021bd18) ret=7bc6904d
7935.727:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021BCAC
7935.727:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00293A88, status 0.
7935.727:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7935.727:0048:004c:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7935.727:0048:004c:trace:process:find_exe_file looking for L"winedbg" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7935.727:0048:004c:Call ntdll.wcsspn(002858f8 L"winedbg",7bc82b1a L" ") ret=7bc4d24b
7935.727:0048:004c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7935.727:0048:004c:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg") ret=7bc4ca9a
7935.727:0048:004c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7935.727:0048:004c:Call ntdll.RtlDosSearchPath_U(00293a88 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg",7bc886ba L".exe",00000208,0021be04,00000000) ret=7bc4cdc6
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x40, return 0028EA90, status 0.
7935.727:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg.exe",0021BB98,00000000,00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg.exe" 520 0021B96C 00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg.exe" 520 0021B96C 00000000 00000000)
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027FA00, status 0.
7935.727:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.727:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg.exe" -> ret c0000034
7935.727:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg.exe" not found (c0000034)
7935.727:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FA00, return 1, status 0.
7935.727:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg.exe",0021BB98,00000000,00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_U (L".\\winedbg.exe" 520 0021B96C 00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg.exe" 520 0021B96C 00000000 00000000)
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027FA70, status 0.
7935.727:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.727:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg.exe" -> ret c0000034
7935.727:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg.exe" not found (c0000034)
7935.727:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FA70, return 1, status 0.
7935.727:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg.exe",0021BB98,00000000,00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg.exe" 520 0021B96C 00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg.exe" 520 0021B96C 00000000 00000000)
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027FAE0, status 0.
7935.727:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.727:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg.exe" -> ret c0000034
7935.727:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg.exe" not found (c0000034)
7935.727:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FAE0, return 1, status 0.
7935.727:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg.exe",0021BB98,00000000,00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg.exe" 520 0021B96C 00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg.exe" 520 0021B96C 00000000 00000000)
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027FB50, status 0.
7935.727:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.727:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg.exe" -> ret c000003a
7935.727:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg.exe" not found (c000003a)
7935.727:0048:004c:SysRet   NtQueryAttributesFile() retval=c000003a
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FB50, return 1, status 0.
7935.727:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg.exe",0021BB98,00000000,00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg.exe" 520 0021B96C 00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg.exe" 520 0021B96C 00000000 00000000)
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3e, return 0028EAF0, status 0.
7935.727:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.727:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg.exe" -> ret c0000034
7935.727:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg.exe" not found (c0000034)
7935.727:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EAF0, return 1, status 0.
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EA90, return 1, status 0.
7935.727:0048:004c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7935.727:0048:004c:Call ntdll.wcsspn(002858f8 L"winedbg",7bc82b1a L" ") ret=7bc4d24b
7935.727:0048:004c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7935.727:0048:004c:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg") ret=7bc4ca9a
7935.727:0048:004c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7935.727:0048:004c:Call ntdll.RtlDosSearchPath_U(00293a88 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg",00000000,00000208,0021be04,00000000) ret=7bc4cdc6
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x38, return 00285948, status 0.
7935.727:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg",0021BB98,00000000,00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg" 520 0021B96C 00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg" 520 0021B96C 00000000 00000000)
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 0028EB50, status 0.
7935.727:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.727:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg" -> ret c0000034
7935.727:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg" not found (c0000034)
7935.727:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EB50, return 1, status 0.
7935.727:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg",0021BB98,00000000,00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_U (L".\\winedbg" 520 0021B96C 00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg" 520 0021B96C 00000000 00000000)
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 0028EBB0, status 0.
7935.727:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.727:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg" -> ret c0000034
7935.727:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg" not found (c0000034)
7935.727:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EBB0, return 1, status 0.
7935.727:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg",0021BB98,00000000,00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg" 520 0021B96C 00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg" 520 0021B96C 00000000 00000000)
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 0028EC10, status 0.
7935.727:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.727:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg" -> ret c0000034
7935.727:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg" not found (c0000034)
7935.727:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EC10, return 1, status 0.
7935.727:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg",0021BB98,00000000,00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg" 520 0021B96C 00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg" 520 0021B96C 00000000 00000000)
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 0028EC70, status 0.
7935.727:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.727:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg" -> ret c000003a
7935.727:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg" not found (c000003a)
7935.727:0048:004c:SysRet   NtQueryAttributesFile() retval=c000003a
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EC70, return 1, status 0.
7935.727:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg",0021BB98,00000000,00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg" 520 0021B96C 00000000)
7935.727:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg" 520 0021B96C 00000000 00000000)
7935.727:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x36, return 00285998, status 0.
7935.727:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.727:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg" -> ret c0000034
7935.727:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg" not found (c0000034)
7935.727:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00285998, return 1, status 0.
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00285948, return 1, status 0.
7935.727:0048:004c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7935.727:0048:004c:Call ntdll.RtlReleasePath(00293a88) ret=7bc690f6
7935.727:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293A88, return 1, status 0.
7935.727:0048:004c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7935.727:0048:004c:Call ntdll.RtlGetExePath(002858f8 L"winedbg --auto",0021bd18) ret=7bc6904d
7935.727:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021BCAC
7935.727:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00293B30, status 0.
7935.743:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7935.743:0048:004c:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7935.743:0048:004c:trace:process:find_exe_file looking for L"winedbg --auto" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7935.743:0048:004c:Call ntdll.wcsspn(002858f8 L"winedbg --auto",7bc82b1a L" ") ret=7bc4d24b
7935.743:0048:004c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7935.743:0048:004c:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto") ret=7bc4ca9a
7935.743:0048:004c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7935.743:0048:004c:Call ntdll.RtlDosSearchPath_U(00293b30 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto",7bc886ba L".exe",00000208,0021be04,00000000) ret=7bc4cdc6
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4e, return 0027FBC0, status 0.
7935.743:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto.exe",0021BB98,00000000,00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B96C 00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B96C 00000000 00000000)
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 00293BD8, status 0.
7935.743:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.743:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" -> ret c0000034
7935.743:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" not found (c0000034)
7935.743:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293BD8, return 1, status 0.
7935.743:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto.exe",0021BB98,00000000,00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto.exe" 520 0021B96C 00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto.exe" 520 0021B96C 00000000 00000000)
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 00293C50, status 0.
7935.743:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.743:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" -> ret c0000034
7935.743:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" not found (c0000034)
7935.743:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293C50, return 1, status 0.
7935.743:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto.exe",0021BB98,00000000,00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B96C 00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B96C 00000000 00000000)
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 00293CC8, status 0.
7935.743:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.743:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" -> ret c0000034
7935.743:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" not found (c0000034)
7935.743:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293CC8, return 1, status 0.
7935.743:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto.exe",0021BB98,00000000,00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto.exe" 520 0021B96C 00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto.exe" 520 0021B96C 00000000 00000000)
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5a, return 00293D40, status 0.
7935.743:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.743:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto.exe" -> ret c000003a
7935.743:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto.exe" not found (c000003a)
7935.743:0048:004c:SysRet   NtQueryAttributesFile() retval=c000003a
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293D40, return 1, status 0.
7935.743:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto.exe",0021BB98,00000000,00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto.exe" 520 0021B96C 00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto.exe" 520 0021B96C 00000000 00000000)
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027FC30, status 0.
7935.743:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.743:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto.exe" -> ret c0000034
7935.743:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto.exe" not found (c0000034)
7935.743:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FC30, return 1, status 0.
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FBC0, return 1, status 0.
7935.743:0048:004c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7935.743:0048:004c:Call ntdll.wcsspn(002858f8 L"winedbg --auto",7bc82b1a L" ") ret=7bc4d24b
7935.743:0048:004c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7935.743:0048:004c:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto") ret=7bc4ca9a
7935.743:0048:004c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7935.743:0048:004c:Call ntdll.RtlDosSearchPath_U(00293b30 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto",00000000,00000208,0021be04,00000000) ret=7bc4cdc6
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x46, return 0028ECD0, status 0.
7935.743:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto",0021BB98,00000000,00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto" 520 0021B96C 00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto" 520 0021B96C 00000000 00000000)
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x56, return 0027FCA0, status 0.
7935.743:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.743:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto" -> ret c0000034
7935.743:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto" not found (c0000034)
7935.743:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FCA0, return 1, status 0.
7935.743:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto",0021BB98,00000000,00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto" 520 0021B96C 00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto" 520 0021B96C 00000000 00000000)
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x56, return 0027FD10, status 0.
7935.743:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.743:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto" -> ret c0000034
7935.743:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto" not found (c0000034)
7935.743:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FD10, return 1, status 0.
7935.743:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto",0021BB98,00000000,00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto" 520 0021B96C 00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto" 520 0021B96C 00000000 00000000)
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x56, return 0027FD80, status 0.
7935.743:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.743:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto" -> ret c0000034
7935.743:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto" not found (c0000034)
7935.743:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FD80, return 1, status 0.
7935.743:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto",0021BB98,00000000,00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto" 520 0021B96C 00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto" 520 0021B96C 00000000 00000000)
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 0027FDF0, status 0.
7935.743:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.743:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto" -> ret c000003a
7935.743:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto" not found (c000003a)
7935.743:0048:004c:SysRet   NtQueryAttributesFile() retval=c000003a
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FDF0, return 1, status 0.
7935.743:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto",0021BB98,00000000,00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto" 520 0021B96C 00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto" 520 0021B96C 00000000 00000000)
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 0028ED30, status 0.
7935.743:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.743:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto" -> ret c0000034
7935.743:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto" not found (c0000034)
7935.743:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028ED30, return 1, status 0.
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028ECD0, return 1, status 0.
7935.743:0048:004c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7935.743:0048:004c:Call ntdll.RtlReleasePath(00293b30) ret=7bc690f6
7935.743:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293B30, return 1, status 0.
7935.743:0048:004c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7935.743:0048:004c:Call ntdll.RtlGetExePath(002858f8 L"winedbg --auto 72",0021bd18) ret=7bc6904d
7935.743:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021BCAC
7935.743:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00293DB8, status 0.
7935.743:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7935.743:0048:004c:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7935.743:0048:004c:trace:process:find_exe_file looking for L"winedbg --auto 72" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7935.743:0048:004c:Call ntdll.wcsspn(002858f8 L"winedbg --auto 72",7bc82b1a L" ") ret=7bc4d24b
7935.743:0048:004c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7935.743:0048:004c:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto 72") ret=7bc4ca9a
7935.743:0048:004c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7935.743:0048:004c:Call ntdll.RtlDosSearchPath_U(00293db8 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto 72",7bc886ba L".exe",00000208,0021be04,00000000) ret=7bc4cdc6
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x54, return 0027FE60, status 0.
7935.743:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 72.exe",0021BB98,00000000,00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 72.exe" 520 0021B96C 00000000)
7935.743:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 72.exe" 520 0021B96C 00000000 00000000)
7935.743:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00293E60, status 0.
7935.743:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.743:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72.exe" -> ret c0000034
7935.743:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72.exe" not found (c0000034)
7935.743:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293E60, return 1, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 72.exe",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 72.exe" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 72.exe" 520 0021B96C 00000000 00000000)
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00293EE0, status 0.
7935.759:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.759:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72.exe" -> ret c0000034
7935.759:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72.exe" not found (c0000034)
7935.759:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293EE0, return 1, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 72.exe",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 72.exe" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 72.exe" 520 0021B96C 00000000 00000000)
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00293F60, status 0.
7935.759:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.759:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72.exe" -> ret c0000034
7935.759:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72.exe" not found (c0000034)
7935.759:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293F60, return 1, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 72.exe",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 72.exe" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 72.exe" 520 0021B96C 00000000 00000000)
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x60, return 00293FE0, status 0.
7935.759:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.759:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 72.exe" -> ret c000003a
7935.759:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 72.exe" not found (c000003a)
7935.759:0048:004c:SysRet   NtQueryAttributesFile() retval=c000003a
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293FE0, return 1, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 72.exe",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 72.exe" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 72.exe" 520 0021B96C 00000000 00000000)
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 0027FED0, status 0.
7935.759:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.759:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 72.exe" -> ret c0000034
7935.759:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 72.exe" not found (c0000034)
7935.759:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FED0, return 1, status 0.
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FE60, return 1, status 0.
7935.759:0048:004c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7935.759:0048:004c:Call ntdll.wcsspn(002858f8 L"winedbg --auto 72",7bc82b1a L" ") ret=7bc4d24b
7935.759:0048:004c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7935.759:0048:004c:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto 72") ret=7bc4ca9a
7935.759:0048:004c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7935.759:0048:004c:Call ntdll.RtlDosSearchPath_U(00293db8 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto 72",00000000,00000208,0021be04,00000000) ret=7bc4cdc6
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027FF40, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 72",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 72" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 72" 520 0021B96C 00000000 00000000)
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 00294058, status 0.
7935.759:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.759:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72" -> ret c0000034
7935.759:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72" not found (c0000034)
7935.759:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00294058, return 1, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 72",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 72" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 72" 520 0021B96C 00000000 00000000)
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 002940D0, status 0.
7935.759:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.759:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72" -> ret c0000034
7935.759:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72" not found (c0000034)
7935.759:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002940D0, return 1, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 72",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 72" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 72" 520 0021B96C 00000000 00000000)
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 00294148, status 0.
7935.759:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.759:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72" -> ret c0000034
7935.759:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72" not found (c0000034)
7935.759:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00294148, return 1, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 72",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 72" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 72" 520 0021B96C 00000000 00000000)
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 0027FFB0, status 0.
7935.759:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.759:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 72" -> ret c000003a
7935.759:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 72" not found (c000003a)
7935.759:0048:004c:SysRet   NtQueryAttributesFile() retval=c000003a
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FFB0, return 1, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 72",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 72" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 72" 520 0021B96C 00000000 00000000)
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4a, return 002941D8, status 0.
7935.759:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.759:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 72" -> ret c0000034
7935.759:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 72" not found (c0000034)
7935.759:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002941D8, return 1, status 0.
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FF40, return 1, status 0.
7935.759:0048:004c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7935.759:0048:004c:Call ntdll.RtlReleasePath(00293db8) ret=7bc690f6
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293DB8, return 1, status 0.
7935.759:0048:004c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7935.759:0048:004c:Call ntdll.RtlGetExePath(002858f8 L"winedbg --auto 72 92",0021bd18) ret=7bc6904d
7935.759:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021BCAC
7935.759:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00294F78, status 0.
7935.759:0048:004c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7935.759:0048:004c:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7935.759:0048:004c:trace:process:find_exe_file looking for L"winedbg --auto 72 92" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7935.759:0048:004c:Call ntdll.wcsspn(002858f8 L"winedbg --auto 72 92",7bc82b1a L" ") ret=7bc4d24b
7935.759:0048:004c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7935.759:0048:004c:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto 72 92") ret=7bc4ca9a
7935.759:0048:004c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7935.759:0048:004c:Call ntdll.RtlDosSearchPath_U(00294f78 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto 72 92",7bc886ba L".exe",00000208,0021be04,00000000) ret=7bc4cdc6
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5a, return 00295020, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 72 92.exe",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 72 92.exe" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 72 92.exe" 520 0021B96C 00000000 00000000)
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x6a, return 00295098, status 0.
7935.759:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.759:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92.exe" -> ret c0000034
7935.759:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92.exe" not found (c0000034)
7935.759:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295098, return 1, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 72 92.exe",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 72 92.exe" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 72 92.exe" 520 0021B96C 00000000 00000000)
7935.759:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x6a, return 00295120, status 0.
7935.759:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.759:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92.exe" -> ret c0000034
7935.759:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92.exe" not found (c0000034)
7935.759:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.759:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295120, return 1, status 0.
7935.759:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 72 92.exe",0021BB98,00000000,00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 72 92.exe" 520 0021B96C 00000000)
7935.759:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 72 92.exe" 520 0021B96C 00000000 00000000)
7935.776:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x6a, return 002951A8, status 0.
7935.776:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.776:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92.exe" -> ret c0000034
7935.776:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92.exe" not found (c0000034)
7935.776:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002951A8, return 1, status 0.
7935.776:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 72 92.exe",0021BB98,00000000,00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 72 92.exe" 520 0021B96C 00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 72 92.exe" 520 0021B96C 00000000 00000000)
7935.776:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x66, return 00295230, status 0.
7935.776:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.776:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 72 92.exe" -> ret c000003a
7935.776:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 72 92.exe" not found (c000003a)
7935.776:0048:004c:SysRet   NtQueryAttributesFile() retval=c000003a
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295230, return 1, status 0.
7935.776:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 72 92.exe",0021BB98,00000000,00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 72 92.exe" 520 0021B96C 00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 72 92.exe" 520 0021B96C 00000000 00000000)
7935.776:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 00294248, status 0.
7935.776:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.776:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 72 92.exe" -> ret c0000034
7935.776:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 72 92.exe" not found (c0000034)
7935.776:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00294248, return 1, status 0.
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295020, return 1, status 0.
7935.776:0048:004c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7935.776:0048:004c:Call ntdll.wcsspn(002858f8 L"winedbg --auto 72 92",7bc82b1a L" ") ret=7bc4d24b
7935.776:0048:004c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7935.776:0048:004c:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto 72 92") ret=7bc4ca9a
7935.776:0048:004c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7935.776:0048:004c:Call ntdll.RtlDosSearchPath_U(00294f78 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto 72 92",00000000,00000208,0021be04,00000000) ret=7bc4cdc6
7935.776:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 002942B8, status 0.
7935.776:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 72 92",0021BB98,00000000,00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 72 92" 520 0021B96C 00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 72 92" 520 0021B96C 00000000 00000000)
7935.776:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x62, return 002952B0, status 0.
7935.776:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.776:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92" -> ret c0000034
7935.776:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92" not found (c0000034)
7935.776:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002952B0, return 1, status 0.
7935.776:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 72 92",0021BB98,00000000,00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 72 92" 520 0021B96C 00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 72 92" 520 0021B96C 00000000 00000000)
7935.776:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x62, return 00295330, status 0.
7935.776:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.776:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92" -> ret c0000034
7935.776:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92" not found (c0000034)
7935.776:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295330, return 1, status 0.
7935.776:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 72 92",0021BB98,00000000,00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 72 92" 520 0021B96C 00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 72 92" 520 0021B96C 00000000 00000000)
7935.776:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x62, return 002953B0, status 0.
7935.776:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.776:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92" -> ret c0000034
7935.776:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 72 92" not found (c0000034)
7935.776:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002953B0, return 1, status 0.
7935.776:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 72 92",0021BB98,00000000,00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 72 92" 520 0021B96C 00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 72 92" 520 0021B96C 00000000 00000000)
7935.776:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 00295448, status 0.
7935.776:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.776:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 72 92" -> ret c000003a
7935.776:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 72 92" not found (c000003a)
7935.776:0048:004c:SysRet   NtQueryAttributesFile() retval=c000003a
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295448, return 1, status 0.
7935.776:0048:004c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 72 92",0021BB98,00000000,00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 72 92" 520 0021B96C 00000000)
7935.776:0048:004c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 72 92" 520 0021B96C 00000000 00000000)
7935.776:0048:004c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 00294328, status 0.
7935.776:0048:004c:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7935.776:0048:004c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 72 92" -> ret c0000034
7935.776:0048:004c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 72 92" not found (c0000034)
7935.776:0048:004c:SysRet   NtQueryAttributesFile() retval=c0000034
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00294328, return 1, status 0.
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002942B8, return 1, status 0.
7935.776:0048:004c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7935.776:0048:004c:Call ntdll.RtlReleasePath(00294f78) ret=7bc690f6
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00294F78, return 1, status 0.
7935.776:0048:004c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7935.776:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,002858f8) ret=7bc03bff
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002858F8, return 1, status 0.
7935.776:0048:004c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc03bff
7935.776:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,002920c0) ret=7bc106ac
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002920C0, return 1, status 0.
7935.776:0048:004c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc106ac
7935.776:0048:004c:err:seh:start_debugger Couldn't start debugger L"winedbg --auto 72 92" (2)
Read the Wine Developers Guide on how to set up winedbg or another debugger
7935.776:0048:004c:Call ntdll.RtlFreeHeap(00240000,00000000,00292008) ret=7bc7718d
7935.776:0048:004c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00292008, return 1, status 0.
7935.776:0048:004c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc7718d
7935.776:0048:004c:Call ntdll.NtSetEvent(0000005c,00000000) ret=7bc579d4
7935.776:0048:004c:SysCall  NtSetEvent(0000005c,00000000)
7935.776:0048:004c:trace:sync:NtSetEvent handle 0x5c, prev_state (nil)
004c: event_op( handle=005c, op=1 )
004c: event_op() = 0 { state=0 }
7935.788:0048:004c:SysRet   NtSetEvent() retval=00000000
7935.788:0048:004c:Ret  ntdll.NtSetEvent() retval=00000000 ret=7bc579d4
7935.788:0048:004c:Ret  kernelbase.UnhandledExceptionFilter() retval=00000001 ret=7bf6cc68
7935.788:0048:004c:trace:seh:__regs_RtlUnwind code=c0000094 flags=2
7935.788:0048:004c:trace:seh:__regs_RtlUnwind eip=7bf3e2de esp=0021c498 ebp=0021c4a0 eflags=00000212
7935.788:0048:004c:trace:seh:__regs_RtlUnwind eax=00000000 ebx=00000000 ecx=c0000094 edx=0062ff94
7935.788:0048:004c:trace:seh:__regs_RtlUnwind esi=0021c5c8 edi=7ffc2000 cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7935.788:0048:004c:SysCall  NtRaiseException(0021c098,0021bdc0,00000001)
7935.788:0048:004c:SysRet   NtRaiseException() retval=00000000
7935.788:0048:004c:trace:seh:dispatch_exception code=c0000028 (unknown) flags=1 addr=7BF91A20
7935.788:0048:004c:trace:seh:dispatch_exception eip=7bf91a20 esp=0021c098 ebp=0021c0ec eflags=00000202
7935.788:0048:004c:trace:seh:dispatch_exception eax=0021c5c8 ebx=0021c098 ecx=7bf6cabc edx=0021bd16
7935.788:0048:004c:trace:seh:dispatch_exception esi=0021c5c8 edi=0021c1ac cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7935.788:0048:004c:SysCall  NtRaiseException(0021b688,0021b6d8,00000000)
7935.788:0048:004c:err:seh:NtRaiseException Exception frame is not in stack limits => unable to dispatch exception.
004c: terminate_process( handle=ffffffff, exit_code=-1073741784 )
004c: terminate_process() = 0 { self=1 }
004c: *killed* exit_code=-1073741784
0054: *wakeup* signaled=0
002c: *wakeup* signaled=0
7935.810:0028:002c:trace:sync:NtWaitForMultipleObjects -> 0
7935.810:0050:0054:trace:sync:NtWaitForMultipleObjects -> 0
7935.810:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.810:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.810:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.810:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.810:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.810:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.810:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.810:0050:0054:trace:winstation:get_shared_queue lock 0x21e440, queue_shm 0x21e428
7935.811:0050:0054:trace:winstation:get_shared_queue lock 0x21e540, queue_shm 0x21e53c
002c: close_handle( handle=0080 )
7935.811:0050:0054:trace:winstation:get_shared_queue lock 0x21e540, queue_shm 0x21e53c
002c: close_handle() = 0
0054: set_queue_mask( wake_mask=00008040, changed_mask=00008040, poll_events=0 )
0054: set_queue_mask() = 0 { wake_bits=00008000, changed_bits=00008000 }
002c: close_handle( handle=007c )
002c: close_handle() = 0
0054: get_message_reply( cancel=1 )
0054: get_message_reply() = ACCESS_DENIED { result=00000000, data={} }
002c: get_desktop_window( force=1 )
7935.811:0050:0054:trace:msg:retrieve_reply hwnd 0x10020 msg 0 (WM_NULL) wp 0 lp 0 got reply 0 (err=-1073741790)
002c: get_desktop_window() = 0 { top_window=00010020, msg_window=00010024 }
7935.811:0050:0054:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21e490, class_shm 0x21e488
7935.811:0050:0054:warn:winstation:find_shared_session_object Session object id doesn't match expected id a
7935.811:0050:0054:trace:class:NtUserGetClassName 0x10020 0 0x21e538
7935.811:0050:0054:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21e2f0, class_shm 0x21e2ec
7935.811:0050:0054:warn:winstation:find_shared_session_object Session object id doesn't match expected id a
002c: get_process_winstation( )
002c: get_process_winstation() = 0 { handle=0074 }
7935.811:0050:0054:trace:message:spy_exit_message  (0x10020) L"{}"            [0000] WM_NULL returned 00000000
002c: set_user_object_info( handle=0074, flags=00000000, obj_flags=00000000 )
002c: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"WinSta0" }
0054: get_window_property( window=00010020, atom=0000, name=L"__wine_display_device_guid" )
0054: get_window_property() = OBJECT_NAME_NOT_FOUND { data=00000000 }
7935.812:0028:002c:trace:reg:NtOpenKeyEx (0x2c,L"Software\\Wine\\Debug",2000000,0x21d814)
002c: open_key( parent=002c, access=02000000, attributes=00000040, name=L"Software\\Wine\\Debug" )
002c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.812:0028:002c:trace:reg:NtOpenKeyEx <- (nil)
7935.812:0050:0054:trace:sync:NtQueryInformationAtom 0 -> L"\b7c7\ea6c!\0000\0000\0000\0000@\0000\fc80\7e4d\000e\0000\0000\0000\0000\0000\0000\0000\03e8\0000\8001\fbad\3417\7ffc\3417\7ffc\3417\7ffc\0000\0000\cb34\b7e7\c360\b7e7\3401\7ffc\37ff\7ffc\0000\0000\29b9\b7d4\ef20!\0000\0000\0002\0000\9a20\b7e4\2e9d\b7d3\ef20!\9a20\b7e4\0002\0000\d230\b7c5"... (3221225485)
7935.812:0028:002c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21d990, class_shm 0x21d988
7935.812:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Video\\{00000000-0000-0000-0000-000000000000}\\0000",2000000,0x21e7bc)
7935.812:0028:002c:warn:winstation:find_shared_session_object Session object id doesn't match expected id a
7935.812:0028:002c:trace:class:NtUserGetClassName 0x10020 0 0x21da38
7935.812:0028:002c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21d7f0, class_shm 0x21d7ec
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Video\\{00000000-0000-0000-0000-000000000000}\\0000" )
7935.812:0028:002c:warn:winstation:find_shared_session_object Session object id doesn't match expected id a
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.812:0028:002c:trace:message:spy_enter_message (0x10020) L"{}"            [0000] WM_NULL sent from tid 002c wp=00000000 lp=00000000
7935.812:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.812:0028:002c:trace:msg:send_inter_thread_message hwnd 0x10020 msg 0 (WM_NULL) wp 0 lp 0
0054: get_process_winstation( )
0054: get_process_winstation() = 0 { handle=0050 }
002c: send_message( id=004c, type=5, flags=0, win=00010020, msg=00000000, wparam=00000000, lparam=00000000, timeout=infinite, data={} )
002c: send_message() = INVALID_CID
7935.813:0028:002c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21e0e0, class_shm 0x21e0d8
7935.813:0028:002c:warn:winstation:find_shared_session_object Session object id doesn't match expected id a
0054: set_user_object_info( handle=0050, flags=00000000, obj_flags=00000000 )
7935.813:0028:002c:trace:class:NtUserGetClassName 0x10020 0 0x21e188
0054: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"" }
7935.813:0028:002c:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21df40, class_shm 0x21df3c
7935.813:0028:002c:warn:winstation:find_shared_session_object Session object id doesn't match expected id a
7935.813:0028:002c:trace:message:spy_exit_message  (0x10020) L"{}"            [0000] WM_NULL returned 00000000
002c: get_window_property( window=00010020, atom=0000, name=L"__wine_display_device_guid" )
002c: get_window_property() = OBJECT_NAME_NOT_FOUND { data=00000000 }
7935.813:0050:0054:trace:winstation:get_shared_desktop lock 0x21e920, desktop_shm 0x21e520
7935.813:0028:002c:trace:sync:NtQueryInformationAtom 0 -> L"!\e630!\99ed\b7dd\e590!\4004\7ef0\eae0!\0000\0000\0000\0000\0000\0000\0000\0000\0000\0000\37ff\7ffc\0000\0000\0000\0000\03ff\0000\8001\fbad\e6a0!\e6a0!\e6a0!\e6a0!\e6c4!\ea9f!\e6a0!\ea9f!\0000\0000\0000\0000\0000\0000\0000\0000\0000\0000\ffff\ffff\0000\0000\0004\0000\0000\0000\0000\0000\0000"... (3221225485)
7935.813:0050:0054:trace:winstation:get_shared_desktop lock 0x21e920, desktop_shm 0x21e520
7935.813:0028:002c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Video\\{00000000-0000-0000-0000-000000000000}\\0000",2000000,0x21e40c)
0054: get_process_winstation( )
0054: get_process_winstation() = 0 { handle=0050 }
002c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Video\\{00000000-0000-0000-0000-000000000000}\\0000" )
002c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.814:0028:002c:trace:reg:NtOpenKeyEx <- (nil)
0054: set_user_object_info( handle=0050, flags=00000000, obj_flags=00000000 )
0054: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"WinSta0" }
002c: get_process_winstation( )
002c: get_process_winstation() = 0 { handle=0074 }
7935.814:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Enum",2000000,0x21d7b4)
002c: set_user_object_info( handle=0074, flags=00000000, obj_flags=00000000 )
002c: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"" }
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Enum" )
7935.814:0028:002c:trace:winstation:get_shared_desktop lock 0x21e570, desktop_shm 0x21e170
0054: open_key() = 0 { hkey=0060 }
7935.814:0028:002c:trace:winstation:get_shared_desktop lock 0x21e570, desktop_shm 0x21e170
002c: get_process_winstation( )
002c: get_process_winstation() = 0 { handle=0074 }
7935.814:0050:0054:trace:reg:NtOpenKeyEx <- 0x60
7935.814:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\HARDWARE\\DEVICEMAP\\VIDEO",2000000,0x21d7b4)
002c: set_user_object_info( handle=0074, flags=00000000, obj_flags=00000000 )
002c: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"WinSta0" }
0054: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\HARDWARE\\DEVICEMAP\\VIDEO" )
7935.815:0028:002c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Enum",2000000,0x21d404)
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
002c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Enum" )
002c: open_key() = 0 { hkey=007c }
7935.815:0028:002c:trace:reg:NtOpenKeyEx <- 0x7c
7935.815:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7935.815:0028:002c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\HARDWARE\\DEVICEMAP\\VIDEO",2000000,0x21d404)
002c: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\HARDWARE\\DEVICEMAP\\VIDEO" )
002c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7935.816:0028:002c:trace:reg:NtOpenKeyEx <- (nil)
0048: *process killed*
7936.084:0028:002c:trace:vulkan:vulkan_init_once Host instance extensions:
7936.084:0028:002c:trace:vulkan:vulkan_init_once   - VK_KHR_device_group_creation
7936.084:0028:002c:warn:vulkan:vulkan_init_once Extension "VK_KHR_display" is not supported.
7936.084:0028:002c:trace:vulkan:vulkan_init_once   - VK_KHR_external_fence_capabilities
7936.084:0028:002c:trace:vulkan:vulkan_init_once   - VK_KHR_external_memory_capabilities
7936.084:0028:002c:trace:vulkan:vulkan_init_once   - VK_KHR_external_semaphore_capabilities
7936.084:0028:002c:warn:vulkan:vulkan_init_once Extension "VK_KHR_get_display_properties2" is not supported.
7936.084:0028:002c:trace:vulkan:vulkan_init_once   - VK_KHR_get_physical_device_properties2
7936.084:0028:002c:trace:vulkan:vulkan_init_once   - VK_KHR_get_surface_capabilities2
7936.084:0028:002c:trace:vulkan:vulkan_init_once   - VK_KHR_surface
7936.084:0028:002c:warn:vulkan:vulkan_init_once Extension "VK_KHR_surface_protected_capabilities" is not supported.
7936.084:0028:002c:trace:vulkan:vulkan_init_once   - VK_KHR_wayland_surface
7936.084:0028:002c:warn:vulkan:vulkan_init_once Extension "VK_KHR_xcb_surface" is not supported.
7936.084:0028:002c:trace:vulkan:vulkan_init_once   - VK_KHR_xlib_surface
7936.084:0028:002c:warn:vulkan:vulkan_init_once Extension "VK_EXT_acquire_xlib_display" is not supported.
7936.084:0028:002c:trace:vulkan:vulkan_init_once   - VK_EXT_debug_report
7936.084:0028:002c:warn:vulkan:vulkan_init_once Extension "VK_EXT_direct_mode_display" is not supported.
7936.084:0028:002c:warn:vulkan:vulkan_init_once Extension "VK_EXT_display_surface_counter" is not supported.
7936.084:0028:002c:trace:vulkan:vulkan_init_once   - VK_EXT_debug_utils
7936.084:0028:002c:trace:vulkan:convert_instance_create_info Enabling 2 host instance extensions
7936.084:0028:002c:trace:vulkan:convert_instance_create_info   - "VK_KHR_external_memory_capabilities"
7936.084:0028:002c:trace:vulkan:convert_instance_create_info   - "VK_KHR_get_physical_device_properties2"
7936.100:0050:0054:trace:vulkan:vulkan_init_once Host instance extensions:
7936.100:0050:0054:trace:vulkan:vulkan_init_once   - VK_KHR_device_group_creation
7936.100:0050:0054:warn:vulkan:vulkan_init_once Extension "VK_KHR_display" is not supported.
7936.100:0050:0054:trace:vulkan:vulkan_init_once   - VK_KHR_external_fence_capabilities
7936.100:0050:0054:trace:vulkan:vulkan_init_once   - VK_KHR_external_memory_capabilities
7936.100:0050:0054:trace:vulkan:vulkan_init_once   - VK_KHR_external_semaphore_capabilities
7936.100:0050:0054:warn:vulkan:vulkan_init_once Extension "VK_KHR_get_display_properties2" is not supported.
7936.100:0050:0054:trace:vulkan:vulkan_init_once   - VK_KHR_get_physical_device_properties2
7936.100:0050:0054:trace:vulkan:vulkan_init_once   - VK_KHR_get_surface_capabilities2
7936.100:0050:0054:trace:vulkan:vulkan_init_once   - VK_KHR_surface
7936.100:0050:0054:warn:vulkan:vulkan_init_once Extension "VK_KHR_surface_protected_capabilities" is not supported.
7936.100:0050:0054:trace:vulkan:vulkan_init_once   - VK_KHR_wayland_surface
7936.100:0050:0054:warn:vulkan:vulkan_init_once Extension "VK_KHR_xcb_surface" is not supported.
7936.100:0050:0054:trace:vulkan:vulkan_init_once   - VK_KHR_xlib_surface
7936.100:0050:0054:warn:vulkan:vulkan_init_once Extension "VK_EXT_acquire_xlib_display" is not supported.
7936.100:0050:0054:trace:vulkan:vulkan_init_once   - VK_EXT_debug_report
7936.100:0050:0054:warn:vulkan:vulkan_init_once Extension "VK_EXT_direct_mode_display" is not supported.
7936.100:0050:0054:warn:vulkan:vulkan_init_once Extension "VK_EXT_display_surface_counter" is not supported.
7936.100:0050:0054:trace:vulkan:vulkan_init_once   - VK_EXT_debug_utils
7936.100:0050:0054:trace:vulkan:convert_instance_create_info Enabling 2 host instance extensions
7936.100:0050:0054:trace:vulkan:convert_instance_create_info   - "VK_KHR_external_memory_capabilities"
7936.100:0050:0054:trace:vulkan:convert_instance_create_info   - "VK_KHR_get_physical_device_properties2"
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateDebugReportCallbackEXT not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateDebugUtilsMessengerEXT not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateHeadlessSurfaceEXT not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateMacOSSurfaceMVK not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateMetalSurfaceEXT not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateWaylandSurfaceKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateWin32SurfaceKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateXlibSurfaceKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkDebugReportMessageEXT not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroyDebugReportCallbackEXT not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroyDebugUtilsMessengerEXT not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroySurfaceKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkEnumeratePhysicalDeviceGroupsKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkSubmitDebugUtilsMessageEXT not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkEnumeratePhysicalDeviceQueueFamilyPerformanceCountersByRegionARM not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCalibrateableTimeDomainsKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeMatrixFlexibleDimensionsPropertiesNV not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeMatrixPropertiesKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeVectorPropertiesNV not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalFencePropertiesKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalSemaphorePropertiesKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalTensorPropertiesARM not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceOpticalFlowImageFormatsNV not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDevicePresentRectanglesKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceQueueFamilyDataGraphProcessingEnginePropertiesARM not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceQueueFamilyDataGraphPropertiesARM not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceCapabilities2KHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceCapabilitiesKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceFormats2KHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceFormatsKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfacePresentModesKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceSupportKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceToolProperties not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceVideoEncodeQualityLevelPropertiesKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceWaylandPresentationSupportKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceWin32PresentationSupportKHR not found.
7936.116:0028:002c:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceXlibPresentationSupportKHR not found.
7936.133:0028:002c:warn:virtual:virtual_setup_exception exception outside of stack limits addr 0x7dd16bdb stack 0x21c5b0 (0x430000-0x432000-0x630000)
7936.133:0028:002c:trace:seh:dispatch_exception code=c0000094 (EXCEPTION_INT_DIVIDE_BY_ZERO) flags=0 addr=7DD16BDB
7936.133:0028:002c:trace:seh:dispatch_exception eip=7dd16bdb esp=0021c5b0 ebp=00000000 eflags=00010246
7936.133:0028:002c:trace:seh:dispatch_exception eax=ffffffff ebx=79413890 ecx=00000000 edx=00000000
7936.133:0028:002c:trace:seh:dispatch_exception esi=00000000 edi=00000000 cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7936.133:0028:002c:trace:seh:call_seh_handlers calling handler at 7BF6CC40 code=c0000094 flags=0
7936.133:0028:002c:Call kernelbase.UnhandledExceptionFilter(0021c100) ret=7bf6cc68
7936.133:0028:002c:Call ntdll.NtQueryInformationProcess(ffffffff,0000000c,0021c074,00000004,00000000) ret=7bc15d44
7936.133:0028:002c:SysCall  NtQueryInformationProcess(ffffffff,0000000c,0021c074,00000004,00000000)
7936.133:0028:002c:trace:process:NtQueryInformationProcess (0xffffffff,0x0000000c,0x21c074,0x00000004,(nil))
7936.133:0028:002c:SysRet   NtQueryInformationProcess() retval=00000000
7936.133:0028:002c:Ret  ntdll.NtQueryInformationProcess() retval=00000000 ret=7bc15d44
7936.133:0028:002c:Call ntdll.NtCreateEvent(0021c09c,001f0003,0021c0a0,00000000,00000000) ret=7bc57995
7936.133:0028:002c:SysCall  NtCreateEvent(0021c09c,001f0003,0021c0a0,00000000,00000000)
7936.133:0028:002c:trace:sync:NtCreateEvent access 0x1f0003, name <null>, type 0, state 0
002c: create_event( access=001f0003, manual_reset=1, initial_state=0, objattr={rootdir=0000,attributes=00000002,sd={},name=L""} )
002c: create_event() = 0 { handle=0080 }
7936.137:0028:002c:SysRet   NtCreateEvent() retval=00000000
7936.137:0028:002c:Ret  ntdll.NtCreateEvent() retval=00000000 ret=7bc57995
wine: Unhandled division by zero at address 7DD16BDB (thread 002c), starting debugger...
7936.137:0028:002c:Call ntdll.NtOpenKey(0021beec,00020019,0021bf10) ret=7bc76e5b
7936.137:0028:002c:SysCall  NtOpenKey(0021beec,00020019,0021bf10)
7936.137:0028:002c:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AeDebug",20019,0x21beec)
002c: open_key( parent=0000, access=00020019, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AeDebug" )
002c: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7936.138:0028:002c:trace:reg:NtOpenKeyEx <- (nil)
7936.138:0028:002c:SysRet   NtOpenKey() retval=c0000034
7936.138:0028:002c:Ret  ntdll.NtOpenKey() retval=c0000034 ret=7bc76e5b
7936.138:0028:002c:Call ntdll.RtlAllocateHeap(00240000,00000000,000000a0) ret=7bc771d2
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xa0, return 00296670, status 0.
7936.138:0028:002c:Ret  ntdll.RtlAllocateHeap() retval=00296670 ret=7bc771d2
7936.138:0028:002c:Call ntdll._vsnwprintf(00296670,00000050,7bc81e80 L"winedbg --auto %ld %ld",0021beac) ret=7bc778a7
7936.138:0028:002c:Ret  ntdll._vsnwprintf() retval=00000015 ret=7bc778a7
7936.138:0028:002c:Call ntdll.RtlAcquirePebLock() ret=7bc159b1
7936.138:0028:002c:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc159b1
7936.138:0028:002c:Call ntdll.RtlAllocateHeap(00240000,00000000,000019aa) ret=7bc15a01
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x19aa, return 00296728, status 0.
7936.138:0028:002c:Ret  ntdll.RtlAllocateHeap() retval=00296728 ret=7bc15a01
7936.138:0028:002c:Call ntdll.memcpy(00296728,00243740,000019aa) ret=7bc15a23
7936.138:0028:002c:Ret  ntdll.memcpy() retval=00296728 ret=7bc15a23
7936.138:0028:002c:Call ntdll.RtlReleasePebLock() ret=7bc15a29
7936.138:0028:002c:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc15a29
7936.138:0028:002c:trace:seh:start_debugger Starting debugger L"winedbg --auto 40 128"
7936.138:0028:002c:trace:process:CreateProcessInternalW app (null) cmdline L"winedbg --auto 40 128"
7936.138:0028:002c:Call ntdll.RtlAllocateHeap(00240000,00000000,0000002c) ret=7bc03b40
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2c, return 0027C2D0, status 0.
7936.138:0028:002c:Ret  ntdll.RtlAllocateHeap() retval=0027c2d0 ret=7bc03b40
7936.138:0028:002c:Call ntdll.RtlGetExePath(0027c2d0 L"winedbg",0021b958) ret=7bc6904d
7936.138:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021B8EC
7936.138:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 002980F0, status 0.
7936.138:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.138:0028:002c:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.138:0028:002c:trace:process:find_exe_file looking for L"winedbg" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7936.138:0028:002c:Call ntdll.wcsspn(0027c2d0 L"winedbg",7bc82b1a L" ") ret=7bc4d24b
7936.138:0028:002c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.138:0028:002c:Call ntdll.RtlDetermineDosPathNameType_U(0027c2d0 L"winedbg") ret=7bc4ca9a
7936.138:0028:002c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.138:0028:002c:Call ntdll.RtlDosSearchPath_U(002980f0 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",0027c2d0 L"winedbg",7bc886ba L".exe",00000208,0021ba44,00000000) ret=7bc4cdc6
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x40, return 0028DBE8, status 0.
7936.138:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg.exe",0021B7D8,00000000,00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg.exe" 520 0021B5AC 00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg.exe" 520 0021B5AC 00000000 00000000)
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0028BC80, status 0.
7936.138:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.138:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg.exe" -> ret c0000034
7936.138:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg.exe" not found (c0000034)
7936.138:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.138:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028BC80, return 1, status 0.
7936.138:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg.exe",0021B7D8,00000000,00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_U (L".\\winedbg.exe" 520 0021B5AC 00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg.exe" 520 0021B5AC 00000000 00000000)
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3e, return 0028DC48, status 0.
7936.138:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.138:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg.exe" -> ret c0000034
7936.138:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg.exe" not found (c0000034)
7936.138:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.138:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028DC48, return 1, status 0.
7936.138:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg.exe",0021B7D8,00000000,00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg.exe" 520 0021B5AC 00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg.exe" 520 0021B5AC 00000000 00000000)
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0028BCF0, status 0.
7936.138:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.138:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg.exe" -> ret c0000034
7936.138:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg.exe" not found (c0000034)
7936.138:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.138:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028BCF0, return 1, status 0.
7936.138:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg.exe",0021B7D8,00000000,00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg.exe" 520 0021B5AC 00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg.exe" 520 0021B5AC 00000000 00000000)
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0028BD60, status 0.
7936.138:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.138:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg.exe" -> ret c000003a
7936.138:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg.exe" not found (c000003a)
7936.138:0028:002c:SysRet   NtQueryAttributesFile() retval=c000003a
7936.138:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028BD60, return 1, status 0.
7936.138:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg.exe",0021B7D8,00000000,00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg.exe" 520 0021B5AC 00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg.exe" 520 0021B5AC 00000000 00000000)
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3e, return 0028DCA8, status 0.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateDebugReportCallbackEXT not found.
7936.138:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateDebugUtilsMessengerEXT not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateHeadlessSurfaceEXT not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateMacOSSurfaceMVK not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateMetalSurfaceEXT not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateWaylandSurfaceKHR not found.
7936.138:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg.exe" -> ret c0000034
7936.138:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg.exe" not found (c0000034)
7936.138:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateWin32SurfaceKHR not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateXlibSurfaceKHR not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkDebugReportMessageEXT not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroyDebugReportCallbackEXT not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroyDebugUtilsMessengerEXT not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroySurfaceKHR not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkEnumeratePhysicalDeviceGroupsKHR not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkSubmitDebugUtilsMessageEXT not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkEnumeratePhysicalDeviceQueueFamilyPerformanceCountersByRegionARM not found.
7936.138:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028DCA8, return 1, status 0.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCalibrateableTimeDomainsKHR not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeMatrixFlexibleDimensionsPropertiesNV not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeMatrixPropertiesKHR not found.
7936.138:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028DBE8, return 1, status 0.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeVectorPropertiesNV not found.
7936.138:0028:002c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.138:0028:002c:Call ntdll.wcsspn(0027c2d0 L"winedbg",7bc82b1a L" ") ret=7bc4d24b
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalFencePropertiesKHR not found.
7936.138:0028:002c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.138:0028:002c:Call ntdll.RtlDetermineDosPathNameType_U(0027c2d0 L"winedbg") ret=7bc4ca9a
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalSemaphorePropertiesKHR not found.
7936.138:0028:002c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.138:0028:002c:Call ntdll.RtlDosSearchPath_U(002980f0 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",0027c2d0 L"winedbg",00000000,00000208,0021ba44,00000000) ret=7bc4cdc6
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalTensorPropertiesARM not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceOpticalFlowImageFormatsNV not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDevicePresentRectanglesKHR not found.
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x38, return 0027C320, status 0.
7936.138:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg",0021B7D8,00000000,00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg" 520 0021B5AC 00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg" 520 0021B5AC 00000000 00000000)
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceQueueFamilyDataGraphProcessingEnginePropertiesARM not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceQueueFamilyDataGraphPropertiesARM not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceCapabilities2KHR not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceCapabilitiesKHR not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceFormats2KHR not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceFormatsKHR not found.
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 0028DD08, status 0.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfacePresentModesKHR not found.
7936.138:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceSupportKHR not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceToolProperties not found.
7936.138:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg" -> ret c0000034
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceVideoEncodeQualityLevelPropertiesKHR not found.
7936.138:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg" not found (c0000034)
7936.138:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceWaylandPresentationSupportKHR not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceWin32PresentationSupportKHR not found.
7936.138:0050:0054:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceXlibPresentationSupportKHR not found.
7936.138:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028DD08, return 1, status 0.
7936.138:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg",0021B7D8,00000000,00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_U (L".\\winedbg" 520 0021B5AC 00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg" 520 0021B5AC 00000000 00000000)
7936.138:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x36, return 0027C370, status 0.
7936.138:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.138:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg" -> ret c0000034
7936.138:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg" not found (c0000034)
7936.138:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.138:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027C370, return 1, status 0.
7936.138:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg",0021B7D8,00000000,00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg" 520 0021B5AC 00000000)
7936.138:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg" 520 0021B5AC 00000000 00000000)
7936.154:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 0028DD68, status 0.
7936.154:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.154:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg" -> ret c0000034
7936.154:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg" not found (c0000034)
7936.154:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.154:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028DD68, return 1, status 0.
7936.154:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg",0021B7D8,00000000,00000000)
7936.154:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg" 520 0021B5AC 00000000)
7936.154:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg" 520 0021B5AC 00000000 00000000)
7936.154:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 0028DDC8, status 0.
7936.154:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.154:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg" -> ret c000003a
7936.154:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg" not found (c000003a)
7936.154:0028:002c:SysRet   NtQueryAttributesFile() retval=c000003a
7936.154:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028DDC8, return 1, status 0.
7936.154:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg",0021B7D8,00000000,00000000)
7936.154:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg" 520 0021B5AC 00000000)
7936.154:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg" 520 0021B5AC 00000000 00000000)
7936.154:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x36, return 0027C3C0, status 0.
7936.154:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.154:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg" -> ret c0000034
7936.154:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg" not found (c0000034)
7936.154:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.154:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027C3C0, return 1, status 0.
7936.154:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027C320, return 1, status 0.
7936.154:0028:002c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.154:0028:002c:Call ntdll.RtlReleasePath(002980f0) ret=7bc690f6
7936.154:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002980F0, return 1, status 0.
7936.154:0050:0054:warn:virtual:virtual_setup_exception exception outside of stack limits addr 0x7db84bdb stack 0x21c960 (0x430000-0x432000-0x630000)
7936.154:0028:002c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.154:0050:0054:trace:seh:dispatch_exception code=c0000094 (EXCEPTION_INT_DIVIDE_BY_ZERO) flags=0 addr=7DB84BDB
7936.154:0028:002c:Call ntdll.RtlGetExePath(0027c2d0 L"winedbg --auto",0021b958) ret=7bc6904d
7936.154:0050:0054:trace:seh:dispatch_exception eip=7db84bdb esp=0021c960 ebp=00000000 eflags=00010246
7936.154:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021B8EC
7936.154:0050:0054:trace:seh:dispatch_exception eax=ffffffff ebx=7929f6c0 ecx=00000000 edx=00000000
7936.154:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.154:0050:0054:trace:seh:dispatch_exception esi=00000000 edi=00000000 cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7936.154:0050:0054:trace:seh:call_seh_handlers calling handler at 7BF6CC40 code=c0000094 flags=0
7936.154:0050:0054:Call kernelbase.UnhandledExceptionFilter(0021c4c0) ret=7bf6cc68
7936.154:0050:0054:Call ntdll.NtQueryInformationProcess(ffffffff,0000000c,0021c434,00000004,00000000) ret=7bc15d44
7936.154:0050:0054:SysCall  NtQueryInformationProcess(ffffffff,0000000c,0021c434,00000004,00000000)
7936.154:0050:0054:trace:process:NtQueryInformationProcess (0xffffffff,0x0000000c,0x21c434,0x00000004,(nil))
7936.154:0050:0054:SysRet   NtQueryInformationProcess() retval=00000000
7936.154:0050:0054:Ret  ntdll.NtQueryInformationProcess() retval=00000000 ret=7bc15d44
7936.154:0050:0054:Call ntdll.NtCreateEvent(0021c45c,001f0003,0021c460,00000000,00000000) ret=7bc57995
7936.154:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00298198, status 0.
7936.154:0050:0054:SysCall  NtCreateEvent(0021c45c,001f0003,0021c460,00000000,00000000)
7936.154:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.154:0050:0054:trace:sync:NtCreateEvent access 0x1f0003, name <null>, type 0, state 0
7936.154:0028:002c:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.154:0028:002c:trace:process:find_exe_file looking for L"winedbg --auto" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
0054: create_event( access=001f0003, manual_reset=1, initial_state=0, objattr={rootdir=0000,attributes=00000002,sd={},name=L""} )
7936.161:0028:002c:Call ntdll.wcsspn(0027c2d0 L"winedbg --auto",7bc82b1a L" ") ret=7bc4d24b
0054: create_event() = 0 { handle=0064 }
7936.161:0028:002c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.161:0028:002c:Call ntdll.RtlDetermineDosPathNameType_U(0027c2d0 L"winedbg --auto") ret=7bc4ca9a
7936.161:0028:002c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.161:0050:0054:SysRet   NtCreateEvent() retval=00000000
7936.161:0028:002c:Call ntdll.RtlDosSearchPath_U(00298198 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",0027c2d0 L"winedbg --auto",7bc886ba L".exe",00000208,0021ba44,00000000) ret=7bc4cdc6
7936.161:0050:0054:Ret  ntdll.NtCreateEvent() retval=00000000 ret=7bc57995
wine: Unhandled division by zero at address 7DB84BDB (thread 0054), starting debugger...
7936.161:0050:0054:Call ntdll.NtOpenKey(0021c2ac,00020019,0021c2d0) ret=7bc76e5b
7936.161:0050:0054:SysCall  NtOpenKey(0021c2ac,00020019,0021c2d0)
7936.161:0050:0054:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AeDebug",20019,0x21c2ac)
0054: open_key( parent=0000, access=00020019, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AeDebug" )
0054: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7936.161:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4e, return 0028BDD0, status 0.
7936.161:0050:0054:trace:reg:NtOpenKeyEx <- (nil)
7936.161:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto.exe",0021B7D8,00000000,00000000)
7936.161:0050:0054:SysRet   NtOpenKey() retval=c0000034
7936.161:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B5AC 00000000)
7936.161:0050:0054:Ret  ntdll.NtOpenKey() retval=c0000034 ret=7bc76e5b
7936.161:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B5AC 00000000 00000000)
7936.161:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,000000a0) ret=7bc771d2
7936.161:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 00298240, status 0.
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xa0, return 00292008, status 0.
7936.161:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=00292008 ret=7bc771d2
7936.161:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.161:0050:0054:Call ntdll._vsnwprintf(00292008,00000050,7bc81e80 L"winedbg --auto %ld %ld",0021c26c) ret=7bc778a7
7936.161:0050:0054:Ret  ntdll._vsnwprintf() retval=00000015 ret=7bc778a7
7936.161:0050:0054:Call ntdll.RtlAcquirePebLock() ret=7bc159b1
7936.161:0050:0054:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc159b1
7936.161:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,000019aa) ret=7bc15a01
7936.161:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" -> ret c0000034
7936.161:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" not found (c0000034)
7936.161:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x19aa, return 002920C0, status 0.
7936.161:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=002920c0 ret=7bc15a01
7936.161:0050:0054:Call ntdll.memcpy(002920c0,002417b8,000019aa) ret=7bc15a23
7936.161:0050:0054:Ret  ntdll.memcpy() retval=002920c0 ret=7bc15a23
7936.161:0050:0054:Call ntdll.RtlReleasePebLock() ret=7bc15a29
7936.161:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298240, return 1, status 0.
7936.161:0050:0054:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc15a29
7936.161:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto.exe",0021B7D8,00000000,00000000)
7936.161:0050:0054:trace:seh:start_debugger Starting debugger L"winedbg --auto 80 100"
7936.161:0028:002c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto.exe" 520 0021B5AC 00000000)
7936.161:0050:0054:trace:process:CreateProcessInternalW app (null) cmdline L"winedbg --auto 80 100"
7936.161:0028:002c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto.exe" 520 0021B5AC 00000000 00000000)
7936.161:0050:0054:Call ntdll.RtlAllocateHeap(00240000,00000000,0000002c) ret=7bc03b40
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2c, return 002858F8, status 0.
7936.161:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0028BE40, status 0.
7936.161:0050:0054:Ret  ntdll.RtlAllocateHeap() retval=002858f8 ret=7bc03b40
7936.161:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.161:0050:0054:Call ntdll.RtlGetExePath(002858f8 L"winedbg",0021bd18) ret=7bc6904d
7936.161:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021BCAC
7936.161:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7936.161:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto.exe" -> ret c0000034
7936.161:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto.exe" not found (c0000034)
7936.161:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00293A88, status 0.
7936.161:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7936.161:0050:0054:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.161:0050:0054:trace:process:find_exe_file looking for L"winedbg" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7936.161:0050:0054:Call ntdll.wcsspn(002858f8 L"winedbg",7bc82b1a L" ") ret=7bc4d24b
7936.161:0050:0054:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.161:0050:0054:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg") ret=7bc4ca9a
7936.161:0050:0054:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.161:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028BE40, return 1, status 0.
7936.161:0050:0054:Call ntdll.RtlDosSearchPath_U(00293a88 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg",7bc886ba L".exe",00000208,0021be04,00000000) ret=7bc4cdc6
7936.161:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto.exe",0021B7D8,00000000,00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B5AC 00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B5AC 00000000 00000000)
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x40, return 0028EA90, status 0.
7936.161:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg.exe",0021BB98,00000000,00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg.exe" 520 0021B96C 00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg.exe" 520 0021B96C 00000000 00000000)
7936.161:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 002982B8, status 0.
7936.161:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.161:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" -> ret c0000034
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027FA00, status 0.
7936.161:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" not found (c0000034)
7936.161:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.161:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg.exe" -> ret c0000034
7936.161:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg.exe" not found (c0000034)
7936.161:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002982B8, return 1, status 0.
7936.161:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto.exe",0021B7D8,00000000,00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto.exe" 520 0021B5AC 00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto.exe" 520 0021B5AC 00000000 00000000)
7936.161:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FA00, return 1, status 0.
7936.161:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg.exe",0021BB98,00000000,00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_U (L".\\winedbg.exe" 520 0021B96C 00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\winedbg.exe" 520 0021B96C 00000000 00000000)
7936.161:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5a, return 00298330, status 0.
7936.161:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027FA70, status 0.
7936.161:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto.exe" -> ret c000003a
7936.161:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.161:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto.exe" not found (c000003a)
7936.161:0028:002c:SysRet   NtQueryAttributesFile() retval=c000003a
7936.161:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg.exe" -> ret c0000034
7936.161:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg.exe" not found (c0000034)
7936.161:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298330, return 1, status 0.
7936.161:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto.exe",0021B7D8,00000000,00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto.exe" 520 0021B5AC 00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto.exe" 520 0021B5AC 00000000 00000000)
7936.161:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FA70, return 1, status 0.
7936.161:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg.exe",0021BB98,00000000,00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg.exe" 520 0021B96C 00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg.exe" 520 0021B96C 00000000 00000000)
7936.161:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0028BEB0, status 0.
7936.161:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 0027FAE0, status 0.
7936.161:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.161:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto.exe" -> ret c0000034
7936.161:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto.exe" not found (c0000034)
7936.161:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg.exe" -> ret c0000034
7936.161:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg.exe" not found (c0000034)
7936.161:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028BEB0, return 1, status 0.
7936.161:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FAE0, return 1, status 0.
7936.161:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg.exe",0021BB98,00000000,00000000)
7936.161:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028BDD0, return 1, status 0.
7936.161:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg.exe" 520 0021B96C 00000000)
7936.161:0028:002c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.161:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg.exe" 520 0021B96C 00000000 00000000)
7936.161:0028:002c:Call ntdll.wcsspn(0027c2d0 L"winedbg --auto",7bc82b1a L" ") ret=7bc4d24b
7936.161:0028:002c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.161:0028:002c:Call ntdll.RtlDetermineDosPathNameType_U(0027c2d0 L"winedbg --auto") ret=7bc4ca9a
7936.161:0028:002c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.161:0028:002c:Call ntdll.RtlDosSearchPath_U(00298198 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",0027c2d0 L"winedbg --auto",00000000,00000208,0021ba44,00000000) ret=7bc4cdc6
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027FB50, status 0.
7936.161:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.161:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x46, return 0028DE28, status 0.
7936.161:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto",0021B7D8,00000000,00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto" 520 0021B5AC 00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto" 520 0021B5AC 00000000 00000000)
7936.161:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg.exe" -> ret c000003a
7936.161:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg.exe" not found (c000003a)
7936.161:0050:0054:SysRet   NtQueryAttributesFile() retval=c000003a
7936.161:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x56, return 0028BF20, status 0.
7936.161:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.161:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FB50, return 1, status 0.
7936.161:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg.exe",0021BB98,00000000,00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg.exe" 520 0021B96C 00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg.exe" 520 0021B96C 00000000 00000000)
7936.161:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto" -> ret c0000034
7936.161:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto" not found (c0000034)
7936.161:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3e, return 0028EAF0, status 0.
7936.161:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.161:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028BF20, return 1, status 0.
7936.161:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg.exe" -> ret c0000034
7936.161:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto",0021B7D8,00000000,00000000)
7936.161:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg.exe" not found (c0000034)
7936.161:0028:002c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto" 520 0021B5AC 00000000)
7936.161:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0028:002c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto" 520 0021B5AC 00000000 00000000)
7936.161:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 0028DE88, status 0.
7936.161:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EAF0, return 1, status 0.
7936.161:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.161:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EA90, return 1, status 0.
7936.161:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto" -> ret c0000034
7936.161:0050:0054:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.161:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto" not found (c0000034)
7936.161:0050:0054:Call ntdll.wcsspn(002858f8 L"winedbg",7bc82b1a L" ") ret=7bc4d24b
7936.161:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0050:0054:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.161:0050:0054:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg") ret=7bc4ca9a
7936.161:0050:0054:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.161:0050:0054:Call ntdll.RtlDosSearchPath_U(00293a88 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg",00000000,00000208,0021be04,00000000) ret=7bc4cdc6
7936.161:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028DE88, return 1, status 0.
7936.161:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto",0021B7D8,00000000,00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto" 520 0021B5AC 00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto" 520 0021B5AC 00000000 00000000)
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x38, return 00285948, status 0.
7936.161:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg",0021BB98,00000000,00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg" 520 0021B96C 00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg" 520 0021B96C 00000000 00000000)
7936.161:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x56, return 0028BF90, status 0.
7936.161:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 0028EB50, status 0.
7936.161:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.161:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto" -> ret c0000034
7936.161:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg" -> ret c0000034
7936.161:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto" not found (c0000034)
7936.161:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg" not found (c0000034)
7936.161:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EB50, return 1, status 0.
7936.161:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028BF90, return 1, status 0.
7936.161:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg",0021BB98,00000000,00000000)
7936.161:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto",0021B7D8,00000000,00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_U (L".\\winedbg" 520 0021B96C 00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\winedbg" 520 0021B96C 00000000 00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto" 520 0021B5AC 00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto" 520 0021B5AC 00000000 00000000)
7936.161:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 0028EBB0, status 0.
7936.161:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.161:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 0028C000, status 0.
7936.161:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.161:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg" -> ret c0000034
7936.161:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto" -> ret c000003a
7936.161:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg" not found (c0000034)
7936.161:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto" not found (c000003a)
7936.161:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.161:0028:002c:SysRet   NtQueryAttributesFile() retval=c000003a
7936.161:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EBB0, return 1, status 0.
7936.161:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028C000, return 1, status 0.
7936.161:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg",0021BB98,00000000,00000000)
7936.161:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto",0021B7D8,00000000,00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg" 520 0021B96C 00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto" 520 0021B5AC 00000000)
7936.161:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg" 520 0021B96C 00000000 00000000)
7936.161:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto" 520 0021B5AC 00000000 00000000)
7936.177:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 0028DEE8, status 0.
7936.177:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.177:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 0028EC10, status 0.
7936.177:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.177:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto" -> ret c0000034
7936.177:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto" not found (c0000034)
7936.177:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg" -> ret c0000034
7936.177:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg" not found (c0000034)
7936.177:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028DEE8, return 1, status 0.
7936.177:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EC10, return 1, status 0.
7936.177:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg",0021BB98,00000000,00000000)
7936.177:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg" 520 0021B96C 00000000)
7936.177:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg" 520 0021B96C 00000000 00000000)
7936.177:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028DE28, return 1, status 0.
7936.177:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 0028EC70, status 0.
7936.177:0028:002c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.177:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.177:0028:002c:Call ntdll.RtlReleasePath(00298198) ret=7bc690f6
7936.177:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg" -> ret c000003a
7936.177:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg" not found (c000003a)
7936.177:0050:0054:SysRet   NtQueryAttributesFile() retval=c000003a
7936.177:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298198, return 1, status 0.
7936.177:0028:002c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.177:0028:002c:Call ntdll.RtlGetExePath(0027c2d0 L"winedbg --auto 40",0021b958) ret=7bc6904d
7936.177:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021B8EC
7936.177:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.177:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028EC70, return 1, status 0.
7936.177:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg",0021BB98,00000000,00000000)
7936.177:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg" 520 0021B96C 00000000)
7936.177:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg" 520 0021B96C 00000000 00000000)
7936.177:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 002983A8, status 0.
7936.177:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.177:0028:002c:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.177:0028:002c:trace:process:find_exe_file looking for L"winedbg --auto 40" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7936.177:0028:002c:Call ntdll.wcsspn(0027c2d0 L"winedbg --auto 40",7bc82b1a L" ") ret=7bc4d24b
7936.177:0028:002c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.177:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x36, return 00285998, status 0.
7936.177:0028:002c:Call ntdll.RtlDetermineDosPathNameType_U(0027c2d0 L"winedbg --auto 40") ret=7bc4ca9a
7936.177:0028:002c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.177:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.177:0028:002c:Call ntdll.RtlDosSearchPath_U(002983a8 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",0027c2d0 L"winedbg --auto 40",7bc886ba L".exe",00000208,0021ba44,00000000) ret=7bc4cdc6
7936.177:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg" -> ret c0000034
7936.177:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg" not found (c0000034)
7936.177:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x54, return 0028C070, status 0.
7936.177:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 40.exe",0021B7D8,00000000,00000000)
7936.177:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 40.exe" 520 0021B5AC 00000000)
7936.177:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 40.exe" 520 0021B5AC 00000000 00000000)
7936.177:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00285998, return 1, status 0.
7936.177:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00298450, status 0.
7936.177:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.177:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00285948, return 1, status 0.
7936.177:0050:0054:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.177:0050:0054:Call ntdll.RtlReleasePath(00293a88) ret=7bc690f6
7936.177:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 40.exe" -> ret c0000034
7936.177:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 40.exe" not found (c0000034)
7936.177:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293A88, return 1, status 0.
7936.177:0050:0054:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.177:0050:0054:Call ntdll.RtlGetExePath(002858f8 L"winedbg --auto",0021bd18) ret=7bc6904d
7936.177:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021BCAC
7936.177:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7936.177:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298450, return 1, status 0.
7936.177:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 40.exe",0021B7D8,00000000,00000000)
7936.177:0028:002c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 40.exe" 520 0021B5AC 00000000)
7936.177:0028:002c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 40.exe" 520 0021B5AC 00000000 00000000)
7936.177:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00293B30, status 0.
7936.177:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7936.177:0050:0054:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.177:0050:0054:trace:process:find_exe_file looking for L"winedbg --auto" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7936.177:0050:0054:Call ntdll.wcsspn(002858f8 L"winedbg --auto",7bc82b1a L" ") ret=7bc4d24b
7936.177:0050:0054:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.177:0050:0054:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto") ret=7bc4ca9a
7936.177:0050:0054:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.177:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 0028C0E0, status 0.
7936.177:0050:0054:Call ntdll.RtlDosSearchPath_U(00293b30 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto",7bc886ba L".exe",00000208,0021be04,00000000) ret=7bc4cdc6
7936.177:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.177:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4e, return 0027FBC0, status 0.
7936.177:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 40.exe" -> ret c0000034
7936.177:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto.exe",0021BB98,00000000,00000000)
7936.177:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 40.exe" not found (c0000034)
7936.177:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B96C 00000000)
7936.177:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B96C 00000000 00000000)
7936.177:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028C0E0, return 1, status 0.
7936.177:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 00293BD8, status 0.
7936.177:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 40.exe",0021B7D8,00000000,00000000)
7936.177:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 40.exe" 520 0021B5AC 00000000)
7936.177:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.177:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 40.exe" 520 0021B5AC 00000000 00000000)
7936.177:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" -> ret c0000034
7936.177:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" not found (c0000034)
7936.177:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 002984D0, status 0.
7936.177:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.177:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 40.exe" -> ret c0000034
7936.177:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 40.exe" not found (c0000034)
7936.177:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293BD8, return 1, status 0.
7936.177:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto.exe",0021BB98,00000000,00000000)
7936.177:0050:0054:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto.exe" 520 0021B96C 00000000)
7936.177:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto.exe" 520 0021B96C 00000000 00000000)
7936.177:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002984D0, return 1, status 0.
7936.177:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 40.exe",0021B7D8,00000000,00000000)
7936.177:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 40.exe" 520 0021B5AC 00000000)
7936.177:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 00293C50, status 0.
7936.177:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 40.exe" 520 0021B5AC 00000000 00000000)
7936.177:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.177:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" -> ret c0000034
7936.177:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x60, return 00298550, status 0.
7936.177:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" not found (c0000034)
7936.177:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.177:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 40.exe" -> ret c000003a
7936.177:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 40.exe" not found (c000003a)
7936.177:0028:002c:SysRet   NtQueryAttributesFile() retval=c000003a
7936.177:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293C50, return 1, status 0.
7936.177:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto.exe",0021BB98,00000000,00000000)
7936.177:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B96C 00000000)
7936.177:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B96C 00000000 00000000)
7936.177:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298550, return 1, status 0.
7936.177:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 00293CC8, status 0.
7936.177:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 40.exe",0021B7D8,00000000,00000000)
7936.177:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 40.exe" 520 0021B5AC 00000000)
7936.177:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.177:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 40.exe" 520 0021B5AC 00000000 00000000)
7936.177:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" -> ret c0000034
7936.177:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" not found (c0000034)
7936.177:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 0028C150, status 0.
7936.177:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.177:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293CC8, return 1, status 0.
7936.177:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto.exe",0021BB98,00000000,00000000)
7936.177:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 40.exe" -> ret c0000034
7936.177:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto.exe" 520 0021B96C 00000000)
7936.177:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 40.exe" not found (c0000034)
7936.177:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto.exe" 520 0021B96C 00000000 00000000)
7936.177:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028C150, return 1, status 0.
7936.177:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5a, return 00293D40, status 0.
7936.177:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.177:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028C070, return 1, status 0.
7936.177:0028:002c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.177:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto.exe" -> ret c000003a
7936.177:0028:002c:Call ntdll.wcsspn(0027c2d0 L"winedbg --auto 40",7bc82b1a L" ") ret=7bc4d24b
7936.177:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto.exe" not found (c000003a)
7936.177:0028:002c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.177:0050:0054:SysRet   NtQueryAttributesFile() retval=c000003a
7936.177:0028:002c:Call ntdll.RtlDetermineDosPathNameType_U(0027c2d0 L"winedbg --auto 40") ret=7bc4ca9a
7936.177:0028:002c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.177:0028:002c:Call ntdll.RtlDosSearchPath_U(002983a8 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",0027c2d0 L"winedbg --auto 40",00000000,00000208,0021ba44,00000000) ret=7bc4cdc6
7936.177:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293D40, return 1, status 0.
7936.177:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto.exe",0021BB98,00000000,00000000)
7936.177:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto.exe" 520 0021B96C 00000000)
7936.177:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0028C1C0, status 0.
7936.177:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto.exe" 520 0021B96C 00000000 00000000)
7936.177:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 40",0021B7D8,00000000,00000000)
7936.177:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 40" 520 0021B5AC 00000000)
7936.177:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 40" 520 0021B5AC 00000000 00000000)
7936.177:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027FC30, status 0.
7936.177:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.177:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 002985C8, status 0.
7936.177:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.177:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto.exe" -> ret c0000034
7936.177:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto.exe" not found (c0000034)
7936.177:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 40" -> ret c0000034
7936.177:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 40" not found (c0000034)
7936.177:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.177:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FC30, return 1, status 0.
7936.177:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002985C8, return 1, status 0.
7936.177:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FBC0, return 1, status 0.
7936.177:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 40",0021B7D8,00000000,00000000)
7936.177:0050:0054:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.177:0028:002c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 40" 520 0021B5AC 00000000)
7936.177:0050:0054:Call ntdll.wcsspn(002858f8 L"winedbg --auto",7bc82b1a L" ") ret=7bc4d24b
7936.177:0028:002c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 40" 520 0021B5AC 00000000 00000000)
7936.177:0050:0054:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.177:0050:0054:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto") ret=7bc4ca9a
7936.177:0050:0054:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.177:0050:0054:Call ntdll.RtlDosSearchPath_U(00293b30 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto",00000000,00000208,0021be04,00000000) ret=7bc4cdc6
7936.177:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4a, return 0028C230, status 0.
7936.177:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.177:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x46, return 0028ECD0, status 0.
7936.177:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto",0021BB98,00000000,00000000)
7936.177:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto" 520 0021B96C 00000000)
7936.177:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto" 520 0021B96C 00000000 00000000)
7936.177:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 40" -> ret c0000034
7936.177:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 40" not found (c0000034)
7936.177:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x56, return 0027FCA0, status 0.
7936.193:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.193:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028C230, return 1, status 0.
7936.193:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 40",0021B7D8,00000000,00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 40" 520 0021B5AC 00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 40" 520 0021B5AC 00000000 00000000)
7936.193:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto" -> ret c0000034
7936.193:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto" not found (c0000034)
7936.193:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 00298640, status 0.
7936.193:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.193:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FCA0, return 1, status 0.
7936.193:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto",0021BB98,00000000,00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto" 520 0021B96C 00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto" 520 0021B96C 00000000 00000000)
7936.193:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 40" -> ret c0000034
7936.193:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 40" not found (c0000034)
7936.193:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x56, return 0027FD10, status 0.
7936.193:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.193:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298640, return 1, status 0.
7936.193:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 40",0021B7D8,00000000,00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 40" 520 0021B5AC 00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 40" 520 0021B5AC 00000000 00000000)
7936.193:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto" -> ret c0000034
7936.193:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto" not found (c0000034)
7936.193:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 0028C2A0, status 0.
7936.193:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.193:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FD10, return 1, status 0.
7936.193:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto",0021BB98,00000000,00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto" 520 0021B96C 00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto" 520 0021B96C 00000000 00000000)
7936.193:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 40" -> ret c000003a
7936.193:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 40" not found (c000003a)
7936.193:0028:002c:SysRet   NtQueryAttributesFile() retval=c000003a
7936.193:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x56, return 0027FD80, status 0.
7936.193:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.193:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028C2A0, return 1, status 0.
7936.193:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 40",0021B7D8,00000000,00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 40" 520 0021B5AC 00000000)
7936.193:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto" -> ret c0000034
7936.193:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 40" 520 0021B5AC 00000000 00000000)
7936.193:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto" not found (c0000034)
7936.193:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4a, return 0028C310, status 0.
7936.193:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FD80, return 1, status 0.
7936.193:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.193:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto",0021BB98,00000000,00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto" 520 0021B96C 00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto" 520 0021B96C 00000000 00000000)
7936.193:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 40" -> ret c0000034
7936.193:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 40" not found (c0000034)
7936.193:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 0027FDF0, status 0.
7936.193:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.193:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028C310, return 1, status 0.
7936.193:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto" -> ret c000003a
7936.193:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto" not found (c000003a)
7936.193:0050:0054:SysRet   NtQueryAttributesFile() retval=c000003a
7936.193:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028C1C0, return 1, status 0.
7936.193:0028:002c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.193:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FDF0, return 1, status 0.
7936.193:0028:002c:Call ntdll.RtlReleasePath(002983a8) ret=7bc690f6
7936.193:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto",0021BB98,00000000,00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto" 520 0021B96C 00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto" 520 0021B96C 00000000 00000000)
7936.193:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002983A8, return 1, status 0.
7936.193:0028:002c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.193:0028:002c:Call ntdll.RtlGetExePath(0027c2d0 L"winedbg --auto 40 128",0021b958) ret=7bc6904d
7936.193:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 0028ED30, status 0.
7936.193:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021B8EC
7936.193:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.193:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.193:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto" -> ret c0000034
7936.193:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto" not found (c0000034)
7936.193:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 002986B8, status 0.
7936.193:0028:002c:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.193:0028:002c:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.193:0028:002c:trace:process:find_exe_file looking for L"winedbg --auto 40 128" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7936.193:0028:002c:Call ntdll.wcsspn(0027c2d0 L"winedbg --auto 40 128",7bc82b1a L" ") ret=7bc4d24b
7936.193:0028:002c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.193:0028:002c:Call ntdll.RtlDetermineDosPathNameType_U(0027c2d0 L"winedbg --auto 40 128") ret=7bc4ca9a
7936.193:0028:002c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.193:0028:002c:Call ntdll.RtlDosSearchPath_U(002986b8 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",0027c2d0 L"winedbg --auto 40 128",7bc886ba L".exe",00000208,0021ba44,00000000) ret=7bc4cdc6
7936.193:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028ED30, return 1, status 0.
7936.193:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028ECD0, return 1, status 0.
7936.193:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 00298760, status 0.
7936.193:0050:0054:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.193:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 40 128.exe",0021B7D8,00000000,00000000)
7936.193:0050:0054:Call ntdll.RtlReleasePath(00293b30) ret=7bc690f6
7936.193:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 40 128.exe" 520 0021B5AC 00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 40 128.exe" 520 0021B5AC 00000000 00000000)
7936.193:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293B30, return 1, status 0.
7936.193:0050:0054:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.193:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x6c, return 002987D8, status 0.
7936.193:0050:0054:Call ntdll.RtlGetExePath(002858f8 L"winedbg --auto 80",0021bd18) ret=7bc6904d
7936.193:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.193:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021BCAC
7936.193:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7936.193:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 40 128.exe" -> ret c0000034
7936.193:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 40 128.exe" not found (c0000034)
7936.193:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00293DB8, status 0.
7936.193:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7936.193:0050:0054:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.193:0050:0054:trace:process:find_exe_file looking for L"winedbg --auto 80" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7936.193:0050:0054:Call ntdll.wcsspn(002858f8 L"winedbg --auto 80",7bc82b1a L" ") ret=7bc4d24b
7936.193:0050:0054:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.193:0050:0054:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto 80") ret=7bc4ca9a
7936.193:0050:0054:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.193:0050:0054:Call ntdll.RtlDosSearchPath_U(00293db8 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto 80",7bc886ba L".exe",00000208,0021be04,00000000) ret=7bc4cdc6
7936.193:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002987D8, return 1, status 0.
7936.193:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 40 128.exe",0021B7D8,00000000,00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 40 128.exe" 520 0021B5AC 00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 40 128.exe" 520 0021B5AC 00000000 00000000)
7936.193:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x54, return 0027FE60, status 0.
7936.193:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 80.exe",0021BB98,00000000,00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 80.exe" 520 0021B96C 00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 80.exe" 520 0021B96C 00000000 00000000)
7936.193:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5a, return 00298860, status 0.
7936.193:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.193:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00293E60, status 0.
7936.193:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 40 128.exe" -> ret c0000034
7936.193:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.193:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 40 128.exe" not found (c0000034)
7936.193:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80.exe" -> ret c0000034
7936.193:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80.exe" not found (c0000034)
7936.193:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298860, return 1, status 0.
7936.193:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 40 128.exe",0021B7D8,00000000,00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 40 128.exe" 520 0021B5AC 00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 40 128.exe" 520 0021B5AC 00000000 00000000)
7936.193:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293E60, return 1, status 0.
7936.193:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 80.exe",0021BB98,00000000,00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 80.exe" 520 0021B96C 00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 80.exe" 520 0021B96C 00000000 00000000)
7936.193:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x6c, return 002988D8, status 0.
7936.193:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.193:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00293EE0, status 0.
7936.193:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.193:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 40 128.exe" -> ret c0000034
7936.193:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80.exe" -> ret c0000034
7936.193:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 40 128.exe" not found (c0000034)
7936.193:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80.exe" not found (c0000034)
7936.193:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293EE0, return 1, status 0.
7936.193:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002988D8, return 1, status 0.
7936.193:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 80.exe",0021BB98,00000000,00000000)
7936.193:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 40 128.exe",0021B7D8,00000000,00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 80.exe" 520 0021B96C 00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 40 128.exe" 520 0021B5AC 00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 80.exe" 520 0021B96C 00000000 00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 40 128.exe" 520 0021B5AC 00000000 00000000)
7936.193:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00293F60, status 0.
7936.193:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x68, return 00298960, status 0.
7936.193:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.193:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.193:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80.exe" -> ret c0000034
7936.193:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 40 128.exe" -> ret c000003a
7936.193:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80.exe" not found (c0000034)
7936.193:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 40 128.exe" not found (c000003a)
7936.193:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0028:002c:SysRet   NtQueryAttributesFile() retval=c000003a
7936.193:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298960, return 1, status 0.
7936.193:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293F60, return 1, status 0.
7936.193:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 40 128.exe",0021B7D8,00000000,00000000)
7936.193:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 80.exe",0021BB98,00000000,00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 40 128.exe" 520 0021B5AC 00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 80.exe" 520 0021B96C 00000000)
7936.193:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 40 128.exe" 520 0021B5AC 00000000 00000000)
7936.193:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 80.exe" 520 0021B96C 00000000 00000000)
7936.193:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5a, return 002989E0, status 0.
7936.193:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x60, return 00293FE0, status 0.
7936.193:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.193:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.193:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 40 128.exe" -> ret c0000034
7936.193:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 80.exe" -> ret c000003a
7936.193:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 40 128.exe" not found (c0000034)
7936.193:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 80.exe" not found (c000003a)
7936.193:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.193:0050:0054:SysRet   NtQueryAttributesFile() retval=c000003a
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002989E0, return 1, status 0.
7936.210:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293FE0, return 1, status 0.
7936.210:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 80.exe",0021BB98,00000000,00000000)
7936.210:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 80.exe" 520 0021B96C 00000000)
7936.210:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 80.exe" 520 0021B96C 00000000 00000000)
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298760, return 1, status 0.
7936.210:0028:002c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.210:0028:002c:Call ntdll.wcsspn(0027c2d0 L"winedbg --auto 40 128",7bc82b1a L" ") ret=7bc4d24b
7936.210:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 0027FED0, status 0.
7936.210:0028:002c:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.210:0028:002c:Call ntdll.RtlDetermineDosPathNameType_U(0027c2d0 L"winedbg --auto 40 128") ret=7bc4ca9a
7936.210:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.210:0028:002c:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.210:0028:002c:Call ntdll.RtlDosSearchPath_U(002986b8 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",0027c2d0 L"winedbg --auto 40 128",00000000,00000208,0021ba44,00000000) ret=7bc4cdc6
7936.210:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 80.exe" -> ret c0000034
7936.210:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 80.exe" not found (c0000034)
7936.210:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x54, return 0028C380, status 0.
7936.210:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.210:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 40 128",0021B7D8,00000000,00000000)
7936.210:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 40 128" 520 0021B5AC 00000000)
7936.210:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 40 128" 520 0021B5AC 00000000 00000000)
7936.210:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FED0, return 1, status 0.
7936.210:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00298A58, status 0.
7936.210:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.210:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FE60, return 1, status 0.
7936.210:0050:0054:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.210:0050:0054:Call ntdll.wcsspn(002858f8 L"winedbg --auto 80",7bc82b1a L" ") ret=7bc4d24b
7936.210:0050:0054:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.210:0050:0054:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto 80") ret=7bc4ca9a
7936.210:0050:0054:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.210:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 40 128" -> ret c0000034
7936.210:0050:0054:Call ntdll.RtlDosSearchPath_U(00293db8 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto 80",00000000,00000208,0021be04,00000000) ret=7bc4cdc6
7936.210:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 40 128" not found (c0000034)
7936.210:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.210:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 0027FF40, status 0.
7936.210:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 80",0021BB98,00000000,00000000)
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298A58, return 1, status 0.
7936.210:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 80" 520 0021B96C 00000000)
7936.210:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 40 128",0021B7D8,00000000,00000000)
7936.210:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 80" 520 0021B96C 00000000 00000000)
7936.210:0028:002c:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 40 128" 520 0021B5AC 00000000)
7936.210:0028:002c:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 40 128" 520 0021B5AC 00000000 00000000)
7936.210:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 00294058, status 0.
7936.210:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 0028C3F0, status 0.
7936.210:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.210:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.210:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80" -> ret c0000034
7936.210:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 40 128" -> ret c0000034
7936.210:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80" not found (c0000034)
7936.210:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 40 128" not found (c0000034)
7936.210:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.210:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.210:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00294058, return 1, status 0.
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028C3F0, return 1, status 0.
7936.210:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 80",0021BB98,00000000,00000000)
7936.210:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 40 128",0021B7D8,00000000,00000000)
7936.210:0050:0054:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 80" 520 0021B96C 00000000)
7936.210:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 40 128" 520 0021B5AC 00000000)
7936.210:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 80" 520 0021B96C 00000000 00000000)
7936.210:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 40 128" 520 0021B5AC 00000000 00000000)
7936.210:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 002940D0, status 0.
7936.210:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00298AD8, status 0.
7936.210:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.210:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.210:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80" -> ret c0000034
7936.210:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 40 128" -> ret c0000034
7936.210:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80" not found (c0000034)
7936.210:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 40 128" not found (c0000034)
7936.210:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.210:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.210:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002940D0, return 1, status 0.
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298AD8, return 1, status 0.
7936.210:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 80",0021BB98,00000000,00000000)
7936.210:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 40 128",0021B7D8,00000000,00000000)
7936.210:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 80" 520 0021B96C 00000000)
7936.210:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 40 128" 520 0021B5AC 00000000)
7936.210:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 80" 520 0021B96C 00000000 00000000)
7936.210:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 40 128" 520 0021B5AC 00000000 00000000)
7936.210:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 00294148, status 0.
7936.210:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x60, return 00298B58, status 0.
7936.210:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.210:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.210:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80" -> ret c0000034
7936.210:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 40 128" -> ret c000003a
7936.210:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80" not found (c0000034)
7936.210:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 40 128" not found (c000003a)
7936.210:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.210:0028:002c:SysRet   NtQueryAttributesFile() retval=c000003a
7936.210:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00294148, return 1, status 0.
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00298B58, return 1, status 0.
7936.210:0028:002c:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 40 128",0021B7D8,00000000,00000000)
7936.210:0028:002c:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 40 128" 520 0021B5AC 00000000)
7936.210:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 80",0021BB98,00000000,00000000)
7936.210:0028:002c:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 40 128" 520 0021B5AC 00000000 00000000)
7936.210:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 80" 520 0021B96C 00000000)
7936.210:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 80" 520 0021B96C 00000000 00000000)
7936.210:0028:002c:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 0028C460, status 0.
7936.210:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 0027FFB0, status 0.
7936.210:0028:002c:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.210:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.210:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 80" -> ret c000003a
7936.210:0028:002c:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 40 128" -> ret c0000034
7936.210:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 80" not found (c000003a)
7936.210:0028:002c:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 40 128" not found (c0000034)
7936.210:0050:0054:SysRet   NtQueryAttributesFile() retval=c000003a
7936.210:0028:002c:SysRet   NtQueryAttributesFile() retval=c0000034
7936.210:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FFB0, return 1, status 0.
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028C460, return 1, status 0.
7936.210:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 80",0021BB98,00000000,00000000)
7936.210:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 80" 520 0021B96C 00000000)
7936.210:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 80" 520 0021B96C 00000000 00000000)
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0028C380, return 1, status 0.
7936.210:0028:002c:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.210:0028:002c:Call ntdll.RtlReleasePath(002986b8) ret=7bc690f6
7936.210:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4a, return 002941D8, status 0.
7936.210:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002986B8, return 1, status 0.
7936.210:0028:002c:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.210:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 80" -> ret c0000034
7936.210:0028:002c:Call ntdll.RtlFreeHeap(00240000,00000000,0027c2d0) ret=7bc03bff
7936.210:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 80" not found (c0000034)
7936.210:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.210:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002941D8, return 1, status 0.
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027C2D0, return 1, status 0.
7936.210:0028:002c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc03bff
7936.210:0028:002c:Call ntdll.RtlFreeHeap(00240000,00000000,00296728) ret=7bc106ac
7936.210:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0027FF40, return 1, status 0.
7936.210:0050:0054:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.210:0050:0054:Call ntdll.RtlReleasePath(00293db8) ret=7bc690f6
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00296728, return 1, status 0.
7936.210:0028:002c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc106ac
7936.210:0028:002c:err:seh:start_debugger Couldn't start debugger L"winedbg --auto 40 128" (2)
Read the Wine Developers Guide on how to set up winedbg or another debugger
7936.210:0028:002c:Call ntdll.RtlFreeHeap(00240000,00000000,00296670) ret=7bc7718d
7936.210:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00293DB8, return 1, status 0.
7936.210:0050:0054:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.210:0050:0054:Call ntdll.RtlGetExePath(002858f8 L"winedbg --auto 80 100",0021bd18) ret=7bc6904d
7936.210:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021BCAC
7936.210:0028:002c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00296670, return 1, status 0.
7936.210:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7936.210:0028:002c:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc7718d
7936.210:0028:002c:Call ntdll.NtSetEvent(00000080,00000000) ret=7bc579d4
7936.210:0028:002c:SysCall  NtSetEvent(00000080,00000000)
7936.210:0028:002c:trace:sync:NtSetEvent handle 0x80, prev_state (nil)
002c: event_op( handle=0080, op=1 )
002c: event_op() = 0 { state=0 }
7936.222:0028:002c:SysRet   NtSetEvent() retval=00000000
7936.222:0028:002c:Ret  ntdll.NtSetEvent() retval=00000000 ret=7bc579d4
7936.222:0028:002c:Ret  kernelbase.UnhandledExceptionFilter() retval=00000001 ret=7bf6cc68
7936.222:0028:002c:trace:seh:__regs_RtlUnwind code=c0000094 flags=2
7936.222:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00294F78, status 0.
7936.222:0028:002c:trace:seh:__regs_RtlUnwind eip=7bf3e2de esp=0021c0d8 ebp=0021c0e0 eflags=00000216
7936.222:0050:0054:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021BC78
7936.222:0028:002c:trace:seh:__regs_RtlUnwind eax=00000000 ebx=00000000 ecx=c0000094 edx=0062ff94
7936.222:0028:002c:trace:seh:__regs_RtlUnwind esi=0021c208 edi=7ffc2000 cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7936.222:0050:0054:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.222:0028:002c:SysCall  NtRaiseException(0021bcd8,0021ba00,00000001)
7936.222:0050:0054:trace:process:find_exe_file looking for L"winedbg --auto 80 100" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7936.222:0028:002c:SysRet   NtRaiseException() retval=00000000
7936.222:0050:0054:Call ntdll.wcsspn(002858f8 L"winedbg --auto 80 100",7bc82b1a L" ") ret=7bc4d24b
7936.222:0028:002c:trace:seh:dispatch_exception code=c0000028 (unknown) flags=1 addr=7BF91A20
7936.222:0050:0054:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.222:0028:002c:trace:seh:dispatch_exception eip=7bf91a20 esp=0021bcd8 ebp=0021bd2c eflags=00000206
7936.222:0050:0054:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto 80 100") ret=7bc4ca9a
7936.222:0028:002c:trace:seh:dispatch_exception eax=0021c208 ebx=0021bcd8 ecx=7bf6cabc edx=0021b956
7936.222:0050:0054:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.222:0028:002c:trace:seh:dispatch_exception esi=0021c208 edi=0021bdec cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7936.222:0050:0054:Call ntdll.RtlDosSearchPath_U(00294f78 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto 80 100",7bc886ba L".exe",00000208,0021be04,00000000) ret=7bc4cdc6
7936.222:0028:002c:SysCall  NtRaiseException(0021b2c8,0021b318,00000000)
7936.222:0028:002c:err:seh:NtRaiseException Exception frame is not in stack limits => unable to dispatch exception.
002c: terminate_process( handle=ffffffff, exit_code=-1073741784 )
002c: terminate_process() = 0 { self=1 }
7936.223:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 00295020, status 0.
7936.223:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 80 100.exe",0021BB98,00000000,00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 80 100.exe" 520 0021B96C 00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 80 100.exe" 520 0021B96C 00000000 00000000)
7936.223:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x6c, return 00295098, status 0.
7936.223:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.223:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100.exe" -> ret c0000034
7936.223:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100.exe" not found (c0000034)
7936.223:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.223:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295098, return 1, status 0.
7936.223:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 80 100.exe",0021BB98,00000000,00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 80 100.exe" 520 0021B96C 00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 80 100.exe" 520 0021B96C 00000000 00000000)
7936.223:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x6c, return 00295120, status 0.
7936.223:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.223:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100.exe" -> ret c0000034
7936.223:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100.exe" not found (c0000034)
7936.223:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.223:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295120, return 1, status 0.
7936.223:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 80 100.exe",0021BB98,00000000,00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 80 100.exe" 520 0021B96C 00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 80 100.exe" 520 0021B96C 00000000 00000000)
7936.223:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x6c, return 002951A8, status 0.
7936.223:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.223:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100.exe" -> ret c0000034
7936.223:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100.exe" not found (c0000034)
7936.223:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.223:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002951A8, return 1, status 0.
7936.223:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 80 100.exe",0021BB98,00000000,00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 80 100.exe" 520 0021B96C 00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 80 100.exe" 520 0021B96C 00000000 00000000)
7936.223:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x68, return 00295230, status 0.
7936.223:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.223:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 80 100.exe" -> ret c000003a
7936.223:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 80 100.exe" not found (c000003a)
7936.223:0050:0054:SysRet   NtQueryAttributesFile() retval=c000003a
7936.223:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295230, return 1, status 0.
7936.223:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 80 100.exe",0021BB98,00000000,00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 80 100.exe" 520 0021B96C 00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 80 100.exe" 520 0021B96C 00000000 00000000)
7936.223:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5a, return 002952B0, status 0.
7936.223:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.223:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 80 100.exe" -> ret c0000034
7936.223:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 80 100.exe" not found (c0000034)
7936.223:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.223:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002952B0, return 1, status 0.
7936.223:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295020, return 1, status 0.
7936.223:0050:0054:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.223:0050:0054:Call ntdll.wcsspn(002858f8 L"winedbg --auto 80 100",7bc82b1a L" ") ret=7bc4d24b
7936.223:0050:0054:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.223:0050:0054:Call ntdll.RtlDetermineDosPathNameType_U(002858f8 L"winedbg --auto 80 100") ret=7bc4ca9a
7936.223:0050:0054:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.223:0050:0054:Call ntdll.RtlDosSearchPath_U(00294f78 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",002858f8 L"winedbg --auto 80 100",00000000,00000208,0021be04,00000000) ret=7bc4cdc6
7936.223:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x54, return 00294248, status 0.
7936.223:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 80 100",0021BB98,00000000,00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 80 100" 520 0021B96C 00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 80 100" 520 0021B96C 00000000 00000000)
7936.223:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00295328, status 0.
7936.223:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.223:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100" -> ret c0000034
7936.223:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100" not found (c0000034)
7936.223:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.223:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295328, return 1, status 0.
7936.223:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 80 100",0021BB98,00000000,00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 80 100" 520 0021B96C 00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 80 100" 520 0021B96C 00000000 00000000)
7936.223:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 002953A8, status 0.
7936.223:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.223:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100" -> ret c0000034
7936.223:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100" not found (c0000034)
7936.223:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.223:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002953A8, return 1, status 0.
7936.223:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 80 100",0021BB98,00000000,00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 80 100" 520 0021B96C 00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 80 100" 520 0021B96C 00000000 00000000)
7936.223:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00295440, status 0.
7936.223:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.223:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100" -> ret c0000034
7936.223:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 80 100" not found (c0000034)
7936.223:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.223:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00295440, return 1, status 0.
7936.223:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 80 100",0021BB98,00000000,00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 80 100" 520 0021B96C 00000000)
7936.223:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 80 100" 520 0021B96C 00000000 00000000)
7936.223:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x60, return 002954C0, status 0.
7936.223:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.239:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 80 100" -> ret c000003a
7936.239:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 80 100" not found (c000003a)
7936.239:0050:0054:SysRet   NtQueryAttributesFile() retval=c000003a
7936.239:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002954C0, return 1, status 0.
7936.239:0050:0054:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 80 100",0021BB98,00000000,00000000)
7936.239:0050:0054:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 80 100" 520 0021B96C 00000000)
7936.239:0050:0054:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 80 100" 520 0021B96C 00000000 00000000)
7936.239:0050:0054:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 002942B8, status 0.
7936.239:0050:0054:SysCall  NtQueryAttributesFile(0021bba0,0021bbb8)
7936.239:0050:0054:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 80 100" -> ret c0000034
7936.239:0050:0054:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 80 100" not found (c0000034)
7936.239:0050:0054:SysRet   NtQueryAttributesFile() retval=c0000034
7936.239:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002942B8, return 1, status 0.
7936.239:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00294248, return 1, status 0.
7936.239:0050:0054:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.239:0050:0054:Call ntdll.RtlReleasePath(00294f78) ret=7bc690f6
002c: *killed* exit_code=-1073741784
0024: *wakeup* signaled=1
7936.243:0020:0024:trace:sync:NtWaitForMultipleObjects -> 0x1
0024: close_handle( handle=0010 )
0024: close_handle() = 0
0024: close_handle( handle=0004 )
0024: close_handle() = 0
7936.243:0020:0024:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Session Manager\\Environment",20019,0xbfeb39dc)
7936.243:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00294F78, return 1, status 0.
0024: open_key( parent=0000, access=00020019, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Session Manager\\Environment" )
0024: open_key() = 0 { hkey=0004 }
7936.244:0050:0054:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.244:0020:0024:trace:reg:NtOpenKeyEx <- 0x4
7936.244:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,002858f8) ret=7bc03bff
7936.244:0020:0024:trace:reg:NtEnumerateValueKey (0x4,0,1,0xbfeb317c,2066)
0024: enum_key_value( hkey=0004, index=0, info_class=1 )
0024: enum_key_value() = 0 { type=1, total=44, namelen=40, name=L"NUMBER_OF_PROCESSORS", data={32,00,00,00} }
7936.244:0020:0024:trace:reg:NtEnumerateValueKey (0x4,1,1,0xbfeb317c,2066)
0024: enum_key_value( hkey=0004, index=1, info_class=1 )
0024: enum_key_value() = 0 { type=1, total=52, namelen=44, name=L"PROCESSOR_ARCHITECTURE", data={78,00,38,00,36,00,00,00} }
7936.244:0020:0024:trace:reg:NtEnumerateValueKey (0x4,2,1,0xbfeb317c,2066)
0024: enum_key_value( hkey=0004, index=2, info_class=1 )
0024: enum_key_value() = 0 { type=1, total=134, namelen=40, name=L"PROCESSOR_IDENTIFIER", data={78,00,38,00,36,00,20,00,46,00,61,00,6d,00,69,00,6c,00,79,00,20,00,36,00,20,00,4d,00,6f,00,64,00,65,00,6c,00,20,00,32,00,38,00,20,00,53,00,74,00,65,00,70,00,70,00,69,00,6e,00,67,00,20,00,32,00,2c,00,20,00,47,00,65,00,6e,00,75,00,69,00,6e,00,65,00,49,00,6e,00,74,00,65,00,6c,00,00,00} }
7936.244:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002858F8, return 1, status 0.
7936.244:0050:0054:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc03bff
7936.244:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,002920c0) ret=7bc106ac
7936.244:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 002920C0, return 1, status 0.
7936.244:0050:0054:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc106ac
7936.244:0050:0054:err:seh:start_debugger Couldn't start debugger L"winedbg --auto 80 100" (2)
Read the Wine Developers Guide on how to set up winedbg or another debugger
7936.244:0050:0054:Call ntdll.RtlFreeHeap(00240000,00000000,00292008) ret=7bc7718d
7936.244:0050:0054:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00292008, return 1, status 0.
7936.244:0050:0054:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc7718d
7936.244:0050:0054:Call ntdll.NtSetEvent(00000064,00000000) ret=7bc579d4
7936.244:0050:0054:SysCall  NtSetEvent(00000064,00000000)
7936.244:0050:0054:trace:sync:NtSetEvent handle 0x64, prev_state (nil)
0054: event_op( handle=0064, op=1 )
0054: event_op() = 0 { state=0 }
7936.246:0020:0024:trace:reg:NtEnumerateValueKey (0x4,3,1,0xbfeb317c,2066)
0024: enum_key_value( hkey=0004, index=3, info_class=1 )
0024: enum_key_value() = 0 { type=1, total=34, namelen=30, name=L"PROCESSOR_LEVEL", data={36,00,00,00} }
7936.246:0050:0054:SysRet   NtSetEvent() retval=00000000
7936.246:0020:0024:trace:reg:NtEnumerateValueKey (0x4,4,1,0xbfeb317c,2066)
7936.246:0050:0054:Ret  ntdll.NtSetEvent() retval=00000000 ret=7bc579d4
0024: enum_key_value( hkey=0004, index=4, info_class=1 )
0024: enum_key_value() = 0 { type=1, total=46, namelen=36, name=L"PROCESSOR_REVISION", data={31,00,63,00,30,00,32,00,00,00} }
7936.246:0050:0054:Ret  kernelbase.UnhandledExceptionFilter() retval=00000001 ret=7bf6cc68
7936.246:0020:0024:trace:reg:NtEnumerateValueKey (0x4,5,1,0xbfeb317c,2066)
7936.246:0050:0054:trace:seh:__regs_RtlUnwind code=c0000094 flags=2
7936.247:0050:0054:trace:seh:__regs_RtlUnwind eip=7bf3e2de esp=0021c498 ebp=0021c4a0 eflags=00000212
0024: enum_key_value( hkey=0004, index=5, info_class=1 )
7936.247:0050:0054:trace:seh:__regs_RtlUnwind eax=00000000 ebx=00000000 ecx=c0000094 edx=0062ff94
0024: enum_key_value() = NO_MORE_ENTRIES { type=0, total=0, namelen=0, name=L"", data={} }
7936.247:0050:0054:trace:seh:__regs_RtlUnwind esi=0021c5c8 edi=7ffc2000 cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7936.247:0050:0054:SysCall  NtRaiseException(0021c098,0021bdc0,00000001)
7936.247:0050:0054:SysRet   NtRaiseException() retval=00000000
0024: close_handle( handle=0004 )
7936.247:0050:0054:trace:seh:dispatch_exception code=c0000028 (unknown) flags=1 addr=7BF91A20
0024: close_handle() = 0
7936.247:0050:0054:trace:seh:dispatch_exception eip=7bf91a20 esp=0021c098 ebp=0021c0ec eflags=00000202
7936.247:0050:0054:trace:seh:dispatch_exception eax=0021c5c8 ebx=0021c098 ecx=7bf6cabc edx=0021bd16
7936.247:0020:0024:trace:ntdll:NtQueryInformationToken (0xfffffffa,TokenUser,0xbfeb3644,76,0xbfeb3620)
7936.247:0050:0054:trace:seh:dispatch_exception esi=0021c5c8 edi=0021c1ac cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7936.247:0050:0054:SysCall  NtRaiseException(0021b688,0021b6d8,00000000)
0024: get_token_sid( handle=fffffffa, which_sid=00000001 )
7936.247:0050:0054:err:seh:NtRaiseException Exception frame is not in stack limits => unable to dispatch exception.
0024: get_token_sid() = 0 { sid_len=28, sid=S-1-5-21-0-0-0-1000 }
0054: terminate_process( handle=ffffffff, exit_code=-1073741784 )
0054: terminate_process() = 0 { self=1 }
7936.247:0020:0024:trace:reg:NtCreateKey ((nil),L"\\Registry\\User\\S-1-5-21-0-0-0-1000\\Environment",<null>,0,f003f,0xbfeb39dc)
0024: create_key( access=000f003f, options=00000000, objattr={rootdir=0000,attributes=000000c0,sd={},name=L"\\Registry\\User\\S-1-5-21-0-0-0-1000\\Environment"}, class=L"" )
0024: create_key() = OBJECT_NAME_EXISTS { hkey=0004 }
7936.247:0020:0024:trace:reg:NtCreateKey <- 0x4
7936.247:0020:0024:trace:reg:NtEnumerateValueKey (0x4,0,1,0xbfeb317c,2066)
0024: enum_key_value( hkey=0004, index=0, info_class=1 )
0024: enum_key_value() = NO_MORE_ENTRIES { type=0, total=0, namelen=0, name=L"", data={} }
0024: close_handle( handle=0004 )
0024: close_handle() = 0
7936.248:0020:0024:trace:ntdll:NtQueryInformationToken (0xfffffffa,TokenUser,0xbfeb3644,76,0xbfeb3620)
0024: get_token_sid( handle=fffffffa, which_sid=00000001 )
0024: get_token_sid() = 0 { sid_len=28, sid=S-1-5-21-0-0-0-1000 }
7936.248:0020:0024:trace:reg:NtCreateKey ((nil),L"\\Registry\\User\\S-1-5-21-0-0-0-1000\\Volatile Environment",<null>,0,f003f,0xbfeb39dc)
0024: create_key( access=000f003f, options=00000000, objattr={rootdir=0000,attributes=000000c0,sd={},name=L"\\Registry\\User\\S-1-5-21-0-0-0-1000\\Volatile Environment"}, class=L"" )
0024: create_key() = OBJECT_NAME_EXISTS { hkey=0004 }
7936.248:0020:0024:trace:reg:NtCreateKey <- 0x4
7936.248:0020:0024:trace:reg:NtEnumerateValueKey (0x4,0,1,0xbfeb317c,2066)
0024: enum_key_value( hkey=0004, index=0, info_class=1 )
0024: enum_key_value() = NO_MORE_ENTRIES { type=0, total=0, namelen=0, name=L"", data={} }
0024: close_handle( handle=0004 )
0024: close_handle() = 0
7936.249:0020:0024:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\ProfileList",20019,0xbfeb39dc)
0024: open_key( parent=0000, access=00020019, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\ProfileList" )
0024: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7936.249:0020:0024:trace:reg:NtOpenKeyEx <- (nil)
7936.249:0020:0024:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows\\CurrentVersion",20119,0xbfeb39dc)
0024: open_key( parent=0000, access=00020119, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows\\CurrentVersion" )
0024: open_key() = 0 { hkey=0004 }
7936.249:0020:0024:trace:reg:NtOpenKeyEx <- 0x4
7936.249:0020:0024:trace:reg:NtQueryValueKey (0x4,L"ProgramFilesDir (x86)",2,0xbfeb2978,4118)
0024: get_key_value( hkey=0004, name=L"ProgramFilesDir (x86)" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.250:0020:0024:trace:reg:NtQueryValueKey (0x4,L"ProgramFilesDir",2,0xbfeb2978,4118)
0024: get_key_value( hkey=0004, name=L"ProgramFilesDir" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.250:0020:0024:trace:reg:NtQueryValueKey (0x4,L"CommonFilesDir (x86)",2,0xbfeb2978,4118)
0024: get_key_value( hkey=0004, name=L"CommonFilesDir (x86)" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.250:0020:0024:trace:reg:NtQueryValueKey (0x4,L"CommonFilesDir",2,0xbfeb2978,4118)
0024: get_key_value( hkey=0004, name=L"CommonFilesDir" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
0024: close_handle( handle=0004 )
0024: close_handle() = 0
7936.250:0020:0024:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\ComputerName\\ActiveComputerName",20019,0xbfeb39dc)
0024: open_key( parent=0000, access=00020019, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\ComputerName\\ActiveComputerName" )
0024: open_key() = 0 { hkey=0004 }
7936.251:0020:0024:trace:reg:NtOpenKeyEx <- 0x4
7936.251:0020:0024:trace:reg:NtQueryValueKey (0x4,L"COMPUTERNAME",2,0xbfeb2978,4118)
0024: get_key_value( hkey=0004, name=L"COMPUTERNAME" )
0024: get_key_value() = 0 { type=1, total=14, data={41,00,54,00,4f,00,4d,00,41,00,4b,00,00,00} }
0024: close_handle( handle=0004 )
0024: close_handle() = 0
7936.251:0020:0024:trace:ntdll:NtQueryInformationToken (0xfffffffa,TokenUser,0xbfeb3564,76,0xbfeb3540)
0024: get_token_sid( handle=fffffffa, which_sid=00000001 )
0024: get_token_sid() = 0 { sid_len=28, sid=S-1-5-21-0-0-0-1000 }
7936.251:0020:0024:trace:reg:NtCreateKey ((nil),L"\\Registry\\User\\S-1-5-21-0-0-0-1000\\Software\\Wine\\DllOverrides",<null>,0,f003f,0xb7b84da0)
0024: create_key( access=000f003f, options=00000000, objattr={rootdir=0000,attributes=000000c0,sd={},name=L"\\Registry\\User\\S-1-5-21-0-0-0-1000\\Software\\Wine\\DllOverrides"}, class=L"" )
0024: create_key() = OBJECT_NAME_EXISTS { hkey=0004 }
7936.252:0020:0024:trace:reg:NtCreateKey <- 0x4
7936.252:0020:0024:trace:reg:NtQueryValueKey (0x4,L"Z:\\home\\lessy\\cmd",2,0xbfeb3810,80)
0024: get_key_value( hkey=0004, name=L"Z:\\home\\lessy\\cmd" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.252:0020:0024:trace:reg:NtQueryValueKey (0x4,L"*cmd",2,0xbfeb3810,80)
0024: get_key_value( hkey=0004, name=L"*cmd" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.252:0020:0024:trace:reg:NtQueryValueKey (0x4,L"cmd",2,0xbfeb3810,80)
0024: get_key_value( hkey=0004, name=L"cmd" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.252:0020:0024:trace:module:get_load_order got main exe default n,b for L"\\??\\Z:\\home\\lessy\\cmd"
7936.252:0020:0024:trace:file:get_nt_and_unix_names L"\\??\\Z:\\home\\lessy\\cmd" -> ret c0000034
7936.252:0020:0024:trace:module:find_builtin_dll looking for "start.exe" for file L"\\??\\C:\\windows\\system32\\start.exe"
0024: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000000,sd={},name=L"\\??\\C:\\windows\\system32\\start.exe"}, filename="/usr/lib/wine/i386-windows/start.exe" )
0024: create_file() = 0 { handle=0008 }
0024: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=0008, objattr={} )
0024: create_mapping() = 0 { handle=000c }
0024: close_handle( handle=0008 )
0024: close_handle() = 0
0024: get_mapping_info( handle=000c, access=00000004 )
0024: get_mapping_info() = 0 { size=00024000, flags=01800000, shared_file=0000, name_len=66, total=162, image={base=00400000,stack_size=00200000,stack_commit=00001000,entry_point=00003850,map_size=00024000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=0306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=0001e859,checksum=00028604}, name=L"\\??\\C:\\windows\\system32\\start.exe", exp_name="" }
0024: get_handle_fd( handle=000c )
0024: *fd* 000c -> 27
0024: get_handle_fd() = 0 { type=1, cacheable=1, access=000f000d, options=00000020 }
7936.256:0020:0024:trace:virtual_ranges:free_ranges_insert_view 0x400000 - 0x424000, aligned 0x400000 - 0x430000.
7936.256:0020:0024:trace:virtual_ranges:dump_free_ranges (nil) - 0x400000.
7936.256:0020:0024:trace:virtual_ranges:dump_free_ranges 0x430000 - 0x7fde0000.
7936.256:0020:0024:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7936.256:0020:0024:trace:module:map_image_into_view mapping PE file L"\\??\\C:\\windows\\system32\\start.exe" at 0x400000-0x424000
7936.256:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\start.exe" section .text at 0x401000 off 400 size 2a00 virt 28d0 flags 60000020
7936.256:0020:0024:trace:module:map_image_into_view clearing 0x403a00 - 0x404000
7936.256:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\start.exe" section .data at 0x404000 off 2e00 size 200 virt 38 flags c0000040
7936.256:0020:0024:trace:module:map_image_into_view clearing 0x404200 - 0x405000
7936.256:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\start.exe" section .rdata at 0x405000 off 3000 size 600 virt 530 flags 40000040
7936.256:0020:0024:trace:module:map_image_into_view clearing 0x405600 - 0x406000
7936.256:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\start.exe" section /4 at 0x406000 off 3600 size 600 virt 4b4 flags 40000040
7936.256:0020:0024:trace:module:map_image_into_view clearing 0x406600 - 0x407000
7936.256:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\start.exe" section .bss at 0x407000 off 0 size 0 virt 100 flags c0000080
7936.256:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\start.exe" section .idata at 0x408000 off 3c00 size a00 virt 87c flags c0000040
7936.256:0020:0024:trace:module:map_image_into_view clearing 0x408a00 - 0x409000
7936.256:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\start.exe" section .rsrc at 0x409000 off 4600 size 19200 virt 19144 flags c0000040
7936.256:0020:0024:trace:module:map_image_into_view clearing 0x422200 - 0x423000
7936.256:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\start.exe" section .reloc at 0x423000 off 1d800 size 400 virt 2c4 flags 42000040
7936.256:0020:0024:trace:module:map_image_into_view clearing 0x423400 - 0x424000
0028: *process killed*
0024: map_image_view( mapping=000c, base=00400000, size=00024000, offset=00000000, entry=00003850, machine=014c )
0024: map_image_view() = 0
7936.259:0020:0024:trace:virtual:dump_view View: 0x400000 - 0x423fff c-rWx (image)
7936.259:0020:0024:trace:virtual:dump_view       0x400000 - 0x400fff c-r--
7936.259:0020:0024:trace:virtual:dump_view       0x401000 - 0x403fff c-r-x
7936.259:0020:0024:trace:virtual:dump_view       0x404000 - 0x404fff c-rW-
7936.259:0020:0024:trace:virtual:dump_view       0x405000 - 0x406fff c-r--
7936.259:0020:0024:trace:virtual:dump_view       0x407000 - 0x422fff c-rW-
7936.259:0020:0024:trace:virtual:dump_view       0x423000 - 0x423fff c-r--
0024: close_handle( handle=000c )
0024: close_handle() = 0
7936.259:0020:0024:trace:environ:build_initial_params image L"C:\\windows\\system32\\start.exe" cmdline L"\"C:\\windows\\system32\\start.exe\" /exec cmd" dir L"\\??\\Z:\\home\\lessy\\"
7936.259:0020:0024:trace:virtual:NtAllocateVirtualMemory 0xffffffff (nil) 0000202c 1000 00000004
7936.259:0020:0024:trace:virtual:map_view got mem in reserved area 0x110000-0x113000
7936.259:0020:0024:trace:virtual_ranges:free_ranges_insert_view 0x110000 - 0x113000, aligned 0x110000 - 0x120000.
7936.259:0020:0024:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7936.259:0020:0024:trace:virtual_ranges:dump_free_ranges 0x120000 - 0x400000.
7936.259:0020:0024:trace:virtual_ranges:dump_free_ranges 0x430000 - 0x7fde0000.
7936.259:0020:0024:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7936.259:0020:0024:trace:virtual:dump_view View: 0x110000 - 0x112fff c-rw- (valloc)
7936.259:0020:0024:trace:virtual:dump_view       0x110000 - 0x112fff c-rw-
0024: *fd* 0 <- 26
0024: alloc_file_handle( access=80100000, attributes=00000002, fd=0 )
0024: alloc_file_handle() = 0 { handle=0008 }
0024: *fd* 1 <- 28
0024: alloc_file_handle( access=40100000, attributes=00000002, fd=1 )
0024: alloc_file_handle() = 0 { handle=000c }
0024: *fd* 2 <- 29
0024: alloc_file_handle( access=40100000, attributes=00000002, fd=2 )
0024: alloc_file_handle() = 0 { handle=0010 }
7936.261:0020:0024:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Session Manager",1,0xbfeb39dc)
0024: open_key( parent=0000, access=00000001, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Session Manager" )
0024: open_key() = 0 { hkey=0014 }
7936.261:0020:0024:trace:reg:NtOpenKeyEx <- 0x14
7936.261:0020:0024:trace:reg:NtQueryValueKey (0x14,L"GlobalFlag",2,0xbfeb3910,126)
0024: get_key_value( hkey=0014, name=L"GlobalFlag" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.261:0020:0024:trace:reg:NtQueryValueKey (0x14,L"CriticalSectionTimeout",2,0xbfeb3910,126)
0024: get_key_value( hkey=0014, name=L"CriticalSectionTimeout" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.262:0020:0024:trace:reg:NtQueryValueKey (0x14,L"HeapSegmentReserve",2,0xbfeb3910,126)
0024: get_key_value( hkey=0014, name=L"HeapSegmentReserve" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.262:0020:0024:trace:reg:NtQueryValueKey (0x14,L"HeapSegmentCommit",2,0xbfeb3910,126)
0024: get_key_value( hkey=0014, name=L"HeapSegmentCommit" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.262:0020:0024:trace:reg:NtQueryValueKey (0x14,L"HeapDeCommitTotalFreeThreshold",2,0xbfeb3910,126)
0024: get_key_value( hkey=0014, name=L"HeapDeCommitTotalFreeThreshold" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.262:0020:0024:trace:reg:NtQueryValueKey (0x14,L"HeapDeCommitFreeBlockThreshold",2,0xbfeb3910,126)
0024: get_key_value( hkey=0014, name=L"HeapDeCommitFreeBlockThreshold" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
0024: close_handle( handle=0014 )
0024: close_handle() = 0
7936.263:0020:0024:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Image File Execution Options",1,0xbfeb39dc)
0024: open_key( parent=0000, access=00000001, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Image File Execution Options" )
0024: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7936.263:0020:0024:trace:reg:NtOpenKeyEx <- (nil)
7936.263:0020:0024:trace:ntdll:NtQueryInformationToken (0xfffffffa,TokenUser,0xbfeb3a64,76,0xbfeb3a40)
0024: get_token_sid( handle=fffffffa, which_sid=00000001 )
0024: get_token_sid() = 0 { sid_len=28, sid=S-1-5-21-0-0-0-1000 }
7936.263:0020:0024:trace:reg:NtCreateKey ((nil),L"\\Registry\\User\\S-1-5-21-0-0-0-1000\\Software\\Wine\\AppDefaults",<null>,0,f003f,0xbfeb3de8)
0024: create_key( access=000f003f, options=00000000, objattr={rootdir=0000,attributes=000000c0,sd={},name=L"\\Registry\\User\\S-1-5-21-0-0-0-1000\\Software\\Wine\\AppDefaults"}, class=L"" )
0024: create_key() = OBJECT_NAME_EXISTS { hkey=0014 }
7936.264:0020:0024:trace:reg:NtCreateKey <- 0x14
7936.264:0020:0024:trace:reg:NtOpenKeyEx (0x14,L"start.exe\\DllOverrides",f003f,0xbfeb3dec)
0024: open_key( parent=0014, access=000f003f, attributes=00000040, name=L"start.exe\\DllOverrides" )
0024: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7936.264:0020:0024:trace:reg:NtOpenKeyEx <- (nil)
0024: close_handle( handle=0014 )
0024: close_handle() = 0
7936.264:0020:0024:trace:virtual:map_view got mem in reserved area 0x120000-0x220000
7936.264:0020:0024:trace:virtual_ranges:free_ranges_insert_view 0x120000 - 0x220000, aligned 0x120000 - 0x220000.
7936.264:0020:0024:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7936.264:0020:0024:trace:virtual_ranges:dump_free_ranges 0x220000 - 0x400000.
7936.264:0020:0024:trace:virtual_ranges:dump_free_ranges 0x430000 - 0x7fde0000.
7936.264:0020:0024:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7936.264:0020:0024:trace:virtual:dump_view View: 0x120000 - 0x21ffff c-rw- (valloc)
7936.264:0020:0024:trace:virtual:dump_view       0x120000 - 0x21ffff c-rw-
7936.264:0020:0024:trace:virtual:map_view got mem in reserved area 0x430000-0x630000
7936.264:0020:0024:trace:virtual_ranges:free_ranges_insert_view 0x430000 - 0x630000, aligned 0x430000 - 0x630000.
7936.264:0020:0024:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7936.264:0020:0024:trace:virtual_ranges:dump_free_ranges 0x220000 - 0x400000.
7936.264:0020:0024:trace:virtual_ranges:dump_free_ranges 0x630000 - 0x7fde0000.
7936.264:0020:0024:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7936.264:0020:0024:trace:virtual:dump_view View: 0x430000 - 0x62ffff c-rw- (valloc)
7936.264:0020:0024:trace:virtual:dump_view       0x430000 - 0x430fff -----
7936.264:0020:0024:trace:virtual:dump_view       0x431000 - 0x431fff cgrw-
7936.264:0020:0024:trace:virtual:dump_view       0x432000 - 0x62ffff c-rw-
7936.264:0020:0024:trace:sync:NtCreateKeyedEvent access 0xc0000000, name (null), flags 0
0024: create_keyed_event( access=c0000000, objattr={} )
0024: create_keyed_event() = 0 { handle=0014 }
0024: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000000,sd={},name=L"\\??\\C:\\windows\\system32\\ntdll.dll"}, filename="/usr/lib/wine/i386-windows/ntdll.dll" )
0024: create_file() = 0 { handle=0018 }
0024: create_mapping( access=000f000d, flags=01000000, file_access=00000001, size=00000000, file_handle=0018, objattr={} )
0024: create_mapping() = 0 { handle=001c }
0024: close_handle( handle=0018 )
0024: close_handle() = 0
0024: get_mapping_info( handle=001c, access=00000004 )
0024: get_mapping_info() = 0 { size=000b9000, flags=01800000, shared_file=0000, name_len=66, total=171, image={base=7bc00000,stack_size=00200000,stack_commit=00001000,entry_point=00010a40,map_size=000b9000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=2306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=000b164c,checksum=000bc492}, name=L"\\??\\C:\\windows\\system32\\ntdll.dll", exp_name="ntdll.dll" }
0024: get_handle_fd( handle=001c )
0024: *fd* 001c -> 32
0024: get_handle_fd() = 0 { type=1, cacheable=1, access=000f000d, options=00000020 }
7936.266:0020:0024:trace:module:map_image_into_view mapping PE file L"\\??\\C:\\windows\\system32\\ntdll.dll" at 0x7bf30000-0x7bfe9000
7936.266:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\ntdll.dll" section .text at 0x7bf31000 off 400 size 70c00 virt 70b0c flags 60000020
0054: *killed* exit_code=-1073741784
0044: *wakeup* signaled=0
7936.269:0040:0044:trace:sync:NtWaitForMultipleObjects -> 0
0044: close_handle( handle=0050 )
0044: close_handle() = 0
0044: close_handle( handle=004c )
0044: close_handle() = 0
7936.269:0020:0024:trace:module:map_image_into_view clearing 0x7bfa1c00 - 0x7bfa2000
7936.269:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\ntdll.dll" section .data at 0x7bfa2000 off 71000 size a00 virt 9e0 flags c0000040
7936.269:0020:0024:trace:module:map_image_into_view clearing 0x7bfa2a00 - 0x7bfa3000
7936.269:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\ntdll.dll" section .rdata at 0x7bfa3000 off 71a00 size 15a00 virt 159e0 flags 40000040
7936.269:0020:0024:trace:module:map_image_into_view clearing 0x7bfb8a00 - 0x7bfb9000
7936.269:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\ntdll.dll" section /4 at 0x7bfb9000 off 87400 size 1ac00 virt 1abc8 flags 40000040
0044: get_desktop_window( force=1 )
7936.271:0020:0024:trace:module:map_image_into_view clearing 0x7bfd3c00 - 0x7bfd4000
0044: get_desktop_window() = 0 { top_window=00010020, msg_window=00010024 }
7936.271:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\ntdll.dll" section .bss at 0x7bfd4000 off 0 size 0 virt 27c4 flags c0000080
7936.271:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\ntdll.dll" section .edata at 0x7bfd7000 off a2000 size ae00 virt ac8a flags 40000040
0044: get_process_winstation( )
7936.271:0020:0024:trace:module:map_image_into_view clearing 0x7bfe1e00 - 0x7bfe2000
0044: get_process_winstation() = 0 { handle=0044 }
7936.271:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\ntdll.dll" section .idata at 0x7bfe2000 off ace00 size 200 virt 14 flags c0000040
7936.271:0020:0024:trace:module:map_image_into_view clearing 0x7bfe2200 - 0x7bfe3000
0044: set_user_object_info( handle=0044, flags=00000000, obj_flags=00000000 )
7936.271:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\ntdll.dll" section .rsrc at 0x7bfe3000 off ad000 size 400 virt 3ac flags c0000040
0044: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"WinSta0" }
7936.271:0020:0024:trace:module:map_image_into_view clearing 0x7bfe3400 - 0x7bfe4000
7936.271:0020:0024:trace:module:map_image_into_view mapping L"\\??\\C:\\windows\\system32\\ntdll.dll" section .reloc at 0x7bfe4000 off ad400 size 4200 virt 41a4 flags 42000040
7936.271:0040:0044:trace:reg:NtOpenKeyEx (0x20,L"Software\\Wine\\Debug",2000000,0x21d804)
7936.272:0020:0024:trace:module:map_image_into_view clearing 0x7bfe8200 - 0x7bfe9000
0044: open_key( parent=0020, access=02000000, attributes=00000040, name=L"Software\\Wine\\Debug" )
7936.272:0020:0024:trace:module:map_image_into_view relocating L"\\??\\C:\\windows\\system32\\ntdll.dll" dynamic base 7bc00000 -> 7bf30000 mapped at 0x7bf30000
0044: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7936.272:0040:0044:trace:reg:NtOpenKeyEx <- (nil)
7936.272:0040:0044:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21d980, class_shm 0x21d978
7936.272:0040:0044:warn:winstation:find_shared_session_object Session object id doesn't match expected id a
7936.272:0040:0044:trace:class:NtUserGetClassName 0x10020 0 0x21da28
7936.272:0040:0044:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21d7e0, class_shm 0x21d7dc
7936.272:0040:0044:warn:winstation:find_shared_session_object Session object id doesn't match expected id a
7936.272:0040:0044:trace:message:spy_enter_message (0x10020) L"{}"            [0000] WM_NULL sent from tid 0044 wp=00000000 lp=00000000
7936.272:0040:0044:trace:msg:send_inter_thread_message hwnd 0x10020 msg 0 (WM_NULL) wp 0 lp 0
0044: send_message( id=004c, type=5, flags=0, win=00010020, msg=00000000, wparam=00000000, lparam=00000000, timeout=infinite, data={} )
0044: send_message() = INVALID_CID
0024: map_image_view( mapping=001c, base=7bf30000, size=000b9000, offset=00000000, entry=00010a40, machine=014c )
0024: map_image_view() = 0
7936.272:0040:0044:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21e0d0, class_shm 0x21e0c8
7936.272:0040:0044:warn:winstation:find_shared_session_object Session object id doesn't match expected id a
7936.272:0040:0044:trace:class:NtUserGetClassName 0x10020 0 0x21e178
7936.272:0040:0044:trace:class:get_shared_window_class hwnd 0x10020, lock 0x21df30, class_shm 0x21df2c
7936.272:0040:0044:warn:winstation:find_shared_session_object Session object id doesn't match expected id a
7936.272:0020:0024:trace:virtual:dump_view View: 0x7bf30000 - 0x7bfe8fff c-rWx (image)
7936.272:0040:0044:trace:message:spy_exit_message  (0x10020) L"{}"            [0000] WM_NULL returned 00000000
7936.272:0020:0024:trace:virtual:dump_view       0x7bf30000 - 0x7bf30fff c-r--
0044: get_window_property( window=00010020, atom=0000, name=L"__wine_display_device_guid" )
0044: get_window_property() = OBJECT_NAME_NOT_FOUND { data=00000000 }
7936.272:0020:0024:trace:virtual:dump_view       0x7bf31000 - 0x7bfa1fff c-r-x
7936.273:0020:0024:trace:virtual:dump_view       0x7bfa2000 - 0x7bfa2fff c-rW-
7936.273:0040:0044:trace:sync:NtQueryInformationAtom 0 -> L"\ffff\8da9\b7d9\0000\b7ef\e6a0!\e590!\e630!\d9ed\b7da\e590!\b004\7ef3\eae0!\0000\0000\0000\0000\0000\0000\0000\0000\0000\0000\37ff\7ffc\0000\0000\0000\0000\03ff\0000\8001\fbad\e6a0!\e6a0!\e6a0!\e6a0!\e6c4!\ea9f!\e6a0!\ea9f!\0000\0000\0000\0000\0000\0000\0000\0000\0000\0000\8da9\b7d9\0000\0000"... (3221225485)
7936.273:0020:0024:trace:virtual:dump_view       0x7bfa3000 - 0x7bfd3fff c-r--
7936.273:0040:0044:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Video\\{00000000-0000-0000-0000-000000000000}\\0000",2000000,0x21e3fc)
7936.273:0020:0024:trace:virtual:dump_view       0x7bfd4000 - 0x7bfd6fff c-rW-
0044: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Video\\{00000000-0000-0000-0000-000000000000}\\0000" )
0044: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7936.273:0020:0024:trace:virtual:dump_view       0x7bfd7000 - 0x7bfe1fff c-r--
7936.273:0040:0044:trace:reg:NtOpenKeyEx <- (nil)
7936.273:0020:0024:trace:virtual:dump_view       0x7bfe2000 - 0x7bfe3fff c-rW-
0044: get_process_winstation( )
0044: get_process_winstation() = 0 { handle=0044 }
7936.273:0020:0024:trace:virtual:dump_view       0x7bfe4000 - 0x7bfe8fff c-r--
0044: set_user_object_info( handle=0044, flags=00000000, obj_flags=00000000 )
0044: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"" }
0024: close_handle( handle=001c )
7936.274:0040:0044:trace:winstation:get_shared_desktop lock 0x21e560, desktop_shm 0x21e160
0024: close_handle() = 0
7936.274:0040:0044:trace:winstation:get_shared_desktop lock 0x21e560, desktop_shm 0x21e160
0044: get_process_winstation( )
0044: get_process_winstation() = 0 { handle=0044 }
0044: set_user_object_info( handle=0044, flags=00000000, obj_flags=00000000 )
0044: set_user_object_info() = 0 { is_desktop=0, old_obj_flags=00000001, name=L"WinSta0" }
0024: create_file( access=80100000, sharing=00000005, create=1, options=00000060, attrs=00000000, objattr={rootdir=0000,attributes=00000000,sd={},name=L"\\??\\C:\\windows\\system32\\apisetschema.dll"}, filename="/usr/lib/wine/i386-windows/apisetschema.dll" )
7936.274:0040:0044:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Enum",2000000,0x21d3f4)
0024: create_file() = 0 { handle=0018 }
0044: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Enum" )
0044: open_key() = 0 { hkey=004c }
0024: create_mapping( access=000f0005, flags=08000000, file_access=00000001, size=00000000, file_handle=0018, objattr={} )
7936.274:0040:0044:trace:reg:NtOpenKeyEx <- 0x4c
0024: create_mapping() = 0 { handle=001c }
7936.274:0040:0044:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\HARDWARE\\DEVICEMAP\\VIDEO",2000000,0x21d3f4)
0044: open_key( parent=0000, access=02000000, attributes=00000040, name=L"\\Registry\\Machine\\HARDWARE\\DEVICEMAP\\VIDEO" )
0044: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
0024: close_handle( handle=0018 )
7936.275:0040:0044:trace:reg:NtOpenKeyEx <- (nil)
0024: close_handle() = 0
7936.275:0020:0024:trace:virtual:NtMapViewOfSection handle=0x1c process=0xffffffff addr=(nil) off=0 size=0x0 alloc_type=0x0 access=0x2
0024: get_mapping_info( handle=001c, access=00000004 )
0024: get_mapping_info() = 0 { size=00014800, flags=00800000, shared_file=0000, name_len=0, total=0, image={}, name=L"", exp_name="" }
0024: get_handle_fd( handle=001c )
0024: *fd* 001c -> 33
0024: get_handle_fd() = 0 { type=1, cacheable=1, access=000f0005, options=00000020 }
7936.276:0020:0024:trace:virtual:map_view got mem in reserved area 0x220000-0x235000
7936.276:0020:0024:trace:virtual_ranges:free_ranges_insert_view 0x220000 - 0x235000, aligned 0x220000 - 0x240000.
7936.276:0020:0024:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7936.276:0020:0024:trace:virtual_ranges:dump_free_ranges 0x240000 - 0x400000.
7936.276:0020:0024:trace:virtual_ranges:dump_free_ranges 0x630000 - 0x7fde0000.
7936.276:0020:0024:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7936.276:0020:0024:trace:virtual:virtual_map_section handle=0x1c size=15000 offset=0
0024: map_view( mapping=001c, access=00000004, base=00220000, size=00015000, start=00000000 )
0024: map_view() = 0
7936.277:0020:0024:trace:virtual:dump_view View: 0x220000 - 0x234fff c-r-- (file)
7936.277:0020:0024:trace:virtual:dump_view       0x220000 - 0x234fff c-r--
0024: close_handle( handle=001c )
0024: close_handle() = 0
7936.277:0020:0024:trace:module:load_apiset_dll loaded L"\\??\\C:\\windows\\system32\\apisetschema.dll" apiset at 0x220200
0024: init_process_done( teb=7ffc2000, peb=7ffd1000 )
0024: init_process_done() = 0 { suspend=0 }
7936.277:0020:0024:trace:heap:RtlCreateHeap flags 0x2, addr 00000000, total_size 0, commit_size 0, lock 00000000, params 00000000
7936.277:0020:0024:SysCall  NtAllocateVirtualMemory(ffffffff,0062fbcc,00000000,0062fc58,00002000,00000004)
7936.277:0020:0024:trace:virtual:NtAllocateVirtualMemory 0xffffffff (nil) 00010000 2000 00000004
7936.277:0020:0024:trace:virtual:map_view got mem in reserved area 0x240000-0x250000
7936.277:0020:0024:trace:virtual_ranges:free_ranges_insert_view 0x240000 - 0x250000, aligned 0x240000 - 0x250000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges 0x250000 - 0x400000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges 0x630000 - 0x7fde0000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7936.277:0020:0024:trace:virtual:dump_view View: 0x240000 - 0x24ffff --rw- (valloc)
7936.277:0020:0024:trace:virtual:dump_view       0x240000 - 0x24ffff --rw-
7936.277:0020:0024:SysRet   NtAllocateVirtualMemory() retval=00000000
7936.277:0020:0024:SysCall  NtAllocateVirtualMemory(ffffffff,0062fbcc,00000000,0062fc5c,00001000,00000004)
7936.277:0020:0024:trace:virtual:NtAllocateVirtualMemory 0xffffffff 0x240000 00010000 1000 00000004
7936.277:0020:0024:trace:virtual:dump_view View: 0x240000 - 0x24ffff --rw- (valloc)
7936.277:0020:0024:trace:virtual:dump_view       0x240000 - 0x24ffff c-rw-
7936.277:0020:0024:SysRet   NtAllocateVirtualMemory() retval=00000000
7936.277:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x1000, return 00240488, status 0.
7936.277:0020:0024:SysCall  NtAllocateVirtualMemory(ffffffff,00240460,00000000,0062fc38,00001000,00000004)
7936.277:0020:0024:trace:virtual:NtAllocateVirtualMemory 0xffffffff (nil) 000050a0 1000 00000004
7936.277:0020:0024:trace:virtual:map_view got mem in reserved area 0x250000-0x256000
7936.277:0020:0024:trace:virtual_ranges:free_ranges_insert_view 0x250000 - 0x256000, aligned 0x250000 - 0x260000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges 0x260000 - 0x400000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges 0x630000 - 0x7fde0000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7936.277:0020:0024:trace:virtual:dump_view View: 0x250000 - 0x255fff c-rw- (valloc)
7936.277:0020:0024:trace:virtual:dump_view       0x250000 - 0x255fff c-rw-
7936.277:0020:0024:SysRet   NtAllocateVirtualMemory() retval=00000000
7936.277:0020:0024:trace:ntdll:RtlInitializeBitMap (7BFD5578,7FFD1044,64)
7936.277:0020:0024:trace:ntdll:RtlInitializeBitMap (7BFD5570,7FFD1154,1024)
7936.277:0020:0024:trace:ntdll:RtlSetBits (7BFD5578,0,1)
7936.277:0020:0024:trace:ntdll:RtlSetBits (7BFD5578,16,1)
7936.277:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x300, return 002414A0, status 0.
7936.277:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x1ab4, return 002417B8, status 0.
7936.277:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x578, return 00243288, status 0.
7936.277:0020:0024:SysCall  NtFreeVirtualMemory(ffffffff,0062fc30,0062fc2c,00008000)
7936.277:0020:0024:trace:virtual:NtFreeVirtualMemory 0xffffffff 0x110000 00000000 8000
7936.277:0020:0024:trace:virtual_ranges:free_ranges_remove_view 0x110000 - 0x113000, aligned 0x110000 - 0x120000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges (nil) - 0x120000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges 0x260000 - 0x400000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges 0x630000 - 0x7fde0000.
7936.277:0020:0024:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7936.277:0020:0024:SysRet   NtFreeVirtualMemory() retval=00000000
7936.277:0020:0024:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"Z:\\home\\lessy\\",0062FBD4,00000000,00000000)
7936.277:0020:0024:trace:file:RtlGetFullPathName_U (L"Z:\\home\\lessy\\" 520 0062F988 00000000)
7936.277:0020:0024:trace:file:RtlGetFullPathName_UEx (L"Z:\\home\\lessy\\" 520 0062F988 00000000 00000000)
7936.277:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x30, return 00243818, status 0.
7936.277:0020:0024:SysCall  NtOpenFile(0062fbc8,00100020,0062fbe4,0062fbdc,00000003,00000021)
7936.277:0020:0024:trace:file:NtCreateFile handle=0x62fbc8 access=00100020 name=L"\\??\\Z:\\home\\lessy\\" objattr=00000040 root=(nil) sec=(nil) io=0x62fbdc alloc_size=(nil) attr=00000000 sharing=00000003 disp=1 options=00000021 ea=(nil).0x00000000
7936.277:0020:0024:trace:file:get_nt_and_unix_names L"\\??\\Z:\\home\\lessy\\" -> ret 0 nt L"\\??\\Z:\\home\\lessy" unix "/home/lessy/.wine/dosdevices/z:/home/lessy/"
0024: create_file( access=00100020, sharing=00000003, create=1, options=00000021, attrs=00000000, objattr={rootdir=0000,attributes=00000040,sd={},name=L"\\??\\Z:\\home\\lessy"}, filename="/home/lessy/.wine/dosdevices/z:/home/lessy/" )
0024: create_file() = 0 { handle=0018 }
7936.281:0020:0024:SysRet   NtOpenFile() retval=00000000
7936.281:0020:0024:SysCall  NtQueryVolumeInformationFile(00000018,0062fbdc,0062fbcc,00000008,00000004)
0024: get_handle_fd( handle=0018 )
0024: *fd* 0018 -> 30
0024: get_handle_fd() = 0 { type=2, cacheable=1, access=00100020, options=00000021 }
7936.282:0020:0024:SysRet   NtQueryVolumeInformationFile() retval=00000000
7936.282:0020:0024:trace:file:RtlSetCurrentDirectory_U curdir now L"Z:\\home\\lessy\\" 00000018
7936.282:0020:0024:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00243818, return 1, status 0.
7936.282:0020:0024:trace:environ:RtlSetEnvironmentVariable (002432D0, L"PROCESSOR_ARCHITECTURE", L"x86")
7936.282:0020:0024:trace:heap:RtlSizeHeap handle 00240000, flags 0, ptr 002417B8, return 0x1ab4, status 0.
7936.282:0020:0024:trace:environ:RtlSetEnvironmentVariable (002432D0, L"PROCESSOR_ARCHITEW6432", <null>)
7936.282:0020:0024:trace:environ:RtlQueryEnvironmentVariable_U 002417B8 L"ProgramFiles(x86)" 0062F9EC
7936.282:0020:0024:trace:environ:RtlQueryEnvironmentVariable_U 002417B8 L"CommonProgramFiles(x86)" 0062F9EC
7936.282:0020:0024:trace:heap:RtlReAllocateHeap handle 00240000, flags 0x10, ptr 002417B8, size 0x1ab4, return 002417B8, status 0.
7936.282:0020:0024:trace:heap:RtlSizeHeap handle 00240000, flags 0, ptr 002417B8, return 0x1ab4, status 0.
7936.282:0020:0024:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"WINEBOOTSTRAPMODE" 0062FCA4
7936.282:0020:0024:SysCall  NtOpenKey(0062fc88,00000001,0062fcac)
7936.282:0020:0024:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Session Manager",1,0x62fc88)
0024: open_key( parent=0000, access=00000001, attributes=00000040, name=L"\\Registry\\Machine\\System\\CurrentControlSet\\Control\\Session Manager" )
0024: open_key() = 0 { hkey=001c }
7936.284:0020:0024:trace:reg:NtOpenKeyEx <- 0x1c
7936.284:0020:0024:SysRet   NtOpenKey() retval=00000000
7936.284:0020:0024:SysCall  NtQueryValueKey(0000001c,0062fbb4,00000002,0062fbbc,0000007e,0062fbb0)
7936.284:0020:0024:trace:reg:NtQueryValueKey (0x1c,L"SafeProcessSearchMode",2,0x62fbbc,126)
0024: get_key_value( hkey=001c, name=L"SafeProcessSearchMode" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
0050: *process killed*
7936.285:0020:0024:SysRet   NtQueryValueKey() retval=c0000034
7936.285:0020:0024:SysCall  NtQueryValueKey(0000001c,0062fbb4,00000002,0062fbbc,0000007e,0062fbb0)
7936.285:0020:0024:trace:reg:NtQueryValueKey (0x1c,L"SafeDllSearchMode",2,0x62fbbc,126)
0024: get_key_value( hkey=001c, name=L"SafeDllSearchMode" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.285:0020:0024:SysRet   NtQueryValueKey() retval=c0000034
7936.285:0020:0024:SysCall  NtClose(0000001c)
0024: close_handle( handle=001c )
0024: close_handle() = 0
7936.286:0020:0024:SysRet   NtClose() retval=00000000
7936.286:0020:0024:SysCall  NtQuerySystemInformation(000003e8,7bfd66a0,00000100,00000000)
7936.286:0020:0024:trace:ntdll:NtQuerySystemInformation (0x000003e8,0x7bfd66a0,0x00000100,(nil))
7936.286:0020:0024:SysRet   NtQuerySystemInformation() retval=00000000
7936.286:0020:0024:trace:reg:RtlOpenCurrentUser (0x000f003f, 0062F96C)
7936.286:0020:0024:SysCall  NtQueryInformationToken(fffffffa,00000001,0062f880,00000050,0062f87c)
7936.286:0020:0024:trace:ntdll:NtQueryInformationToken (0xfffffffa,TokenUser,0x62f880,80,0x62f87c)
0024: get_token_sid( handle=fffffffa, which_sid=00000001 )
0024: get_token_sid() = 0 { sid_len=28, sid=S-1-5-21-0-0-0-1000 }
7936.286:0020:0024:SysRet   NtQueryInformationToken() retval=00000000
7936.286:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x46, return 00243860, status 0.
7936.286:0020:0024:SysCall  NtCreateKey(0062f96c,000f003f,0062f90c,00000000,00000000,00000000,00000000)
7936.286:0020:0024:trace:reg:NtCreateKey ((nil),L"\\Registry\\User\\S-1-5-21-0-0-0-1000",<null>,0,f003f,0x62f96c)
0024: create_key( access=000f003f, options=00000000, objattr={rootdir=0000,attributes=000000c0,sd={},name=L"\\Registry\\User\\S-1-5-21-0-0-0-1000"}, class=L"" )
0024: create_key() = OBJECT_NAME_EXISTS { hkey=001c }
7936.287:0020:0024:trace:reg:NtCreateKey <- 0x1c
7936.287:0020:0024:SysRet   NtCreateKey() retval=00000000
7936.287:0020:0024:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00243860, return 1, status 0.
7936.287:0020:0024:SysCall  NtOpenKey(0062f974,000f003f,0062f99c)
7936.287:0020:0024:trace:reg:NtOpenKeyEx (0x1c,L"Software\\Wine",f003f,0x62f974)
0024: open_key( parent=001c, access=000f003f, attributes=00000040, name=L"Software\\Wine" )
0024: open_key() = 0 { hkey=0020 }
7936.287:0020:0024:trace:reg:NtOpenKeyEx <- 0x20
7936.287:0020:0024:SysRet   NtOpenKey() retval=00000000
7936.287:0020:0024:SysCall  NtClose(0000001c)
0024: close_handle( handle=001c )
0024: close_handle() = 0
7936.288:0020:0024:SysRet   NtClose() retval=00000000
7936.288:0020:0024:SysCall  NtOpenKey(0062f970,000f003f,0062f99c)
7936.288:0020:0024:trace:reg:NtOpenKeyEx (0x20,L"AppDefaults\\start.exe",f003f,0x62f970)
0024: open_key( parent=0020, access=000f003f, attributes=00000040, name=L"AppDefaults\\start.exe" )
0024: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7936.288:0020:0024:trace:reg:NtOpenKeyEx <- (nil)
7936.288:0020:0024:SysRet   NtOpenKey() retval=c0000034
7936.288:0020:0024:trace:ver:version_init getting default version
7936.288:0020:0024:SysCall  NtQueryValueKey(00000020,0062f894,00000002,0062f89c,0000007e,0062f890)
7936.288:0020:0024:trace:reg:NtQueryValueKey (0x20,L"Version",2,0x62f89c,126)
0024: get_key_value( hkey=0020, name=L"Version" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.289:0020:0024:SysRet   NtQueryValueKey() retval=c0000034
7936.289:0020:0024:SysCall  NtClose(00000020)
0024: close_handle( handle=0020 )
0024: close_handle() = 0
7936.289:0020:0024:SysRet   NtClose() retval=00000000
7936.289:0020:0024:trace:ver:version_init getting registry version
7936.289:0020:0024:SysCall  NtOpenKey(0062f978,000f003f,0062f9b4)
7936.289:0020:0024:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion",f003f,0x62f978)
0024: open_key( parent=0000, access=000f003f, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion" )
0024: open_key() = 0 { hkey=001c }
7936.289:0020:0024:trace:reg:NtOpenKeyEx <- 0x1c
7936.289:0020:0024:SysRet   NtOpenKey() retval=00000000
7936.289:0020:0024:SysCall  NtQueryValueKey(0000001c,0062f994,00000002,0062f9cc,0000003f,0062f980)
7936.289:0020:0024:trace:reg:NtQueryValueKey (0x1c,L"CurrentMajorVersionNumber",2,0x62f9cc,63)
0024: get_key_value( hkey=001c, name=L"CurrentMajorVersionNumber" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.290:0020:0024:SysRet   NtQueryValueKey() retval=c0000034
7936.290:0020:0024:SysCall  NtQueryValueKey(0000001c,0062f994,00000002,0062f9cc,0000003f,0062f980)
7936.290:0020:0024:trace:reg:NtQueryValueKey (0x1c,L"CurrentVersion",2,0x62f9cc,63)
0024: get_key_value( hkey=001c, name=L"CurrentVersion" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.290:0020:0024:SysRet   NtQueryValueKey() retval=c0000034
7936.290:0020:0024:SysCall  NtClose(0000001c)
0024: close_handle( handle=001c )
0024: close_handle() = 0
7936.290:0020:0024:SysRet   NtClose() retval=00000000
7936.290:0020:0024:SysCall  NtOpenKey(0062f97c,000f003f,0062f9b4)
7936.290:0020:0024:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows\\CurrentVersion",f003f,0x62f97c)
0024: open_key( parent=0000, access=000f003f, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows\\CurrentVersion" )
0024: open_key() = 0 { hkey=001c }
7936.290:0020:0024:trace:reg:NtOpenKeyEx <- 0x1c
7936.290:0020:0024:SysRet   NtOpenKey() retval=00000000
7936.290:0020:0024:SysCall  NtQueryValueKey(0000001c,0062f994,00000002,0062f9cc,0000003f,0062f980)
7936.290:0020:0024:trace:reg:NtQueryValueKey (0x1c,L"VersionNumber",2,0x62f9cc,63)
0024: get_key_value( hkey=001c, name=L"VersionNumber" )
0024: get_key_value() = OBJECT_NAME_NOT_FOUND { type=-1, total=0, data={} }
7936.291:0020:0024:SysRet   NtQueryValueKey() retval=c0000034
7936.291:0020:0024:SysCall  NtClose(0000001c)
0024: close_handle( handle=001c )
0024: close_handle() = 0
7936.291:0020:0024:SysRet   NtClose() retval=00000000
7936.291:0020:0024:trace:ver:version_init got 10.0 platform 2 build 4a65 name L"" service pack 0.0 product 1
7936.291:0020:0024:SysCall  NtOpenDirectoryObject(7bfd56a0,000f000f,0062fcac)
0024: open_directory( access=000f000f, attributes=00000040, rootdir=0000, directory_name=L"\\KnownDlls" )
0024: open_directory() = OBJECT_NAME_NOT_FOUND { handle=0000 }
7936.291:0020:0024:SysRet   NtOpenDirectoryObject() retval=c0000034
7936.291:0020:0024:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062FC34
7936.291:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 002438C0, status 0.
7936.291:0020:0024:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0062FC34
7936.291:0020:0024:SysCall  NtQueryInformationProcess(ffffffff,00000025,0062fcac,00000030,00000000)
7936.291:0020:0024:trace:process:NtQueryInformationProcess (0xffffffff,0x00000025,0x62fcac,0x00000030,(nil))
0024: get_process_info( handle=ffffffff )
0024: get_process_info() = 0 { pid=0020, ppid=0000, affinity=00000003, peb=7ffd1000, start_time=1dc87d6636db948 (-0.0148260), end_time=0, session_id=00000001, exit_code=259, priority=0002, base_priority=0008, disable_boost=0000, machine=014c, image={base=00400000,stack_size=00200000,stack_commit=00001000,entry_point=00003850,map_size=00024000,zerobits=00000000,subsystem=00000003,subsystem_minor=0000,subsystem_major=0006,osversion_major=0004,osversion_minor=0000,image_charact=0306,dll_charact=0140,machine=014c,contains_code=1,image_flags=04,loader_flags=00000000,header_size=00000400,file_size=0001e859,checksum=00028604} }
7936.292:0020:0024:SysRet   NtQueryInformationProcess() retval=00000000
7936.292:0020:0024:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\start.exe",0062FCA4,00000000,00000000)
7936.292:0020:0024:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\start.exe" 520 0062FA34 00000000)
7936.292:0020:0024:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\start.exe" 520 0062FA34 00000000 00000000)
7936.292:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 00243968, status 0.
7936.292:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0xb8, return 002439D0, status 0.
7936.292:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3c, return 00243AA0, status 0.
7936.292:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x2c, return 00243AF8, status 0.
7936.292:0020:0024:trace:ntdll:RtlRbInsertNodeEx tree 7BFD5580, parent 00000000, right 0, node 00243A38.
7936.292:0020:0024:trace:module:build_module loaded L"\\??\\C:\\windows\\system32\\start.exe" 002439D0 00400000
7936.292:0020:0024:trace:reg:RtlOpenCurrentUser (0x000f003f, 0062FAF8)
7936.292:0020:0024:SysCall  NtQueryInformationToken(fffffffa,00000001,0062fa3c,00000050,0062fa38)
7936.292:0020:0024:trace:ntdll:NtQueryInformationToken (0xfffffffa,TokenUser,0x62fa3c,80,0x62fa38)
0024: get_token_sid( handle=fffffffa, which_sid=00000001 )
0024: get_token_sid() = 0 { sid_len=28, sid=S-1-5-21-0-0-0-1000 }
7936.293:0020:0024:SysRet   NtQueryInformationToken() retval=00000000
7936.293:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x46, return 00243B40, status 0.
7936.293:0020:0024:SysCall  NtCreateKey(0062faf8,000f003f,0062fac8,00000000,00000000,00000000,00000000)
7936.293:0020:0024:trace:reg:NtCreateKey ((nil),L"\\Registry\\User\\S-1-5-21-0-0-0-1000",<null>,0,f003f,0x62faf8)
0024: create_key( access=000f003f, options=00000000, objattr={rootdir=0000,attributes=000000c0,sd={},name=L"\\Registry\\User\\S-1-5-21-0-0-0-1000"}, class=L"" )
0024: create_key() = OBJECT_NAME_EXISTS { hkey=001c }
7936.294:0020:0024:trace:reg:NtCreateKey <- 0x1c
7936.294:0020:0024:SysRet   NtCreateKey() retval=00000000
7936.294:0020:0024:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00243B40, return 1, status 0.
7936.294:0020:0024:SysCall  NtOpenKey(0062fafc,000f003f,0062fb08)
7936.294:0020:0024:trace:reg:NtOpenKeyEx (0x1c,L"Software\\Wine\\Debug",f003f,0x62fafc)
0024: open_key( parent=001c, access=000f003f, attributes=00000040, name=L"Software\\Wine\\Debug" )
0024: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7936.294:0020:0024:trace:reg:NtOpenKeyEx <- (nil)
7936.294:0020:0024:SysRet   NtOpenKey() retval=c0000034
7936.294:0020:0024:SysCall  NtClose(0000001c)
0024: close_handle( handle=001c )
0024: close_handle() = 0
7936.295:0020:0024:SysRet   NtClose() retval=00000000
7936.295:0020:0024:trace:loaddll:build_module Loaded L"C:\\windows\\system32\\start.exe" at 00400000: builtin
7936.295:0020:0024:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00243968, return 1, status 0.
7936.295:0020:0024:SysCall  NtQueryVirtualMemory(ffffffff,7bf43290,00000000,0062fcac,0000001c,00000000)
7936.295:0020:0024:trace:virtual:NtQueryVirtualMemory (0xffffffff, 0x7bf43290, info_class=0, 0x62fcac, 28, (nil))
7936.295:0020:0024:trace:virtual:get_vprot_range_size base 0x7bf43000, size 0xa6000, mask 0xbf.
7936.295:0020:0024:SysRet   NtQueryVirtualMemory() retval=00000000
7936.295:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0xb8, return 00243BA0, status 0.
7936.295:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3c, return 00243C70, status 0.
7936.295:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x2c, return 00243CC8, status 0.
7936.295:0020:0024:trace:ntdll:RtlRbInsertNodeEx tree 7BFD5580, parent 00243A38, right 1, node 00243C08.
7936.295:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0x8, size 0x2e88, return 00243D10, status 0.
7936.295:0020:0024:SysCall  NtProtectVirtualMemory(ffffffff,0062fbe4,0062fbe8,00000004,0062fbe0)
7936.295:0020:0024:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7bfd7028 0000172c 00000004
7936.295:0020:0024:trace:virtual:get_vprot_range_size base 0x7bfd7000, size 0x2000, mask 0x20.
7936.295:0020:0024:trace:virtual:dump_view View: 0x7bf30000 - 0x7bfe8fff c-rWx (image)
7936.295:0020:0024:trace:virtual:dump_view       0x7bf30000 - 0x7bf30fff c-r--
7936.295:0020:0024:trace:virtual:dump_view       0x7bf31000 - 0x7bfa1fff c-r-x
7936.295:0020:0024:trace:virtual:dump_view       0x7bfa2000 - 0x7bfa2fff c-rW-
7936.295:0020:0024:trace:virtual:dump_view       0x7bfa3000 - 0x7bfd3fff c-r--
7936.295:0020:0024:trace:virtual:dump_view       0x7bfd4000 - 0x7bfd8fff c-rW-
7936.295:0020:0024:trace:virtual:dump_view       0x7bfd9000 - 0x7bfe1fff c-r--
7936.295:0020:0024:trace:virtual:dump_view       0x7bfe2000 - 0x7bfe3fff c-rW-
7936.295:0020:0024:trace:virtual:dump_view       0x7bfe4000 - 0x7bfe8fff c-r--
7936.295:0020:0024:SysRet   NtProtectVirtualMemory() retval=00000000
7936.295:0020:0024:SysCall  NtProtectVirtualMemory(ffffffff,0062fbe4,0062fbe8,00000002,0062fbe0)
7936.295:0020:0024:trace:virtual:NtProtectVirtualMemory 0xffffffff 0x7bfd7000 00002000 00000002
7936.295:0020:0024:trace:virtual:get_vprot_range_size base 0x7bfd7000, size 0x2000, mask 0x20.
7936.295:0020:0024:trace:virtual:dump_view View: 0x7bf30000 - 0x7bfe8fff c-rWx (image)
7936.295:0020:0024:trace:virtual:dump_view       0x7bf30000 - 0x7bf30fff c-r--
7936.295:0020:0024:trace:virtual:dump_view       0x7bf31000 - 0x7bfa1fff c-r-x
7936.295:0020:0024:trace:virtual:dump_view       0x7bfa2000 - 0x7bfa2fff c-rW-
7936.295:0020:0024:trace:virtual:dump_view       0x7bfa3000 - 0x7bfd3fff c-r--
7936.295:0020:0024:trace:virtual:dump_view       0x7bfd4000 - 0x7bfd6fff c-rW-
7936.295:0020:0024:trace:virtual:dump_view       0x7bfd7000 - 0x7bfe1fff c-r--
7936.295:0020:0024:trace:virtual:dump_view       0x7bfe2000 - 0x7bfe3fff c-rW-
7936.295:0020:0024:trace:virtual:dump_view       0x7bfe4000 - 0x7bfe8fff c-r--
7936.295:0020:0024:SysRet   NtProtectVirtualMemory() retval=00000000
7936.295:0020:0024:trace:loaddll:build_ntdll_module Loaded L"C:\\windows\\system32\\ntdll.dll" at 7BF30000: builtin
7936.295:0020:0024:trace:module:load_dll looking for L"kernel32.dll" in (null)
7936.295:0020:0024:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"kernel32.dll" 0062FB00
7936.295:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xaa, return 00246BB0, status 0.
7936.295:0020:0024:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\kernel32.dll",0062FBB8,00000000,00000000)
7936.295:0020:0024:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\kernel32.dll" 520 0062F864 00000000)
7936.295:0020:0024:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\kernel32.dll" 520 0062F864 00000000 00000000)
7936.295:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 00246C78, status 0.
7936.295:0020:0024:SysCall  NtOpenFile(0062f9f4,80100000,0062fa08,0062fa00,00000005,00000060)
7936.295:0020:0024:trace:file:NtCreateFile handle=0x62f9f4 access=80100000 name=L"\\??\\C:\\windows\\system32\\kernel32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62fa00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7936.295:0020:0024:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\kernel32.dll" -> ret c0000034
7936.295:0020:0024:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\kernel32.dll" not found (c0000034)
7936.295:0020:0024:SysRet   NtOpenFile() retval=c0000034
7936.295:0020:0024:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00246C78, return 1, status 0.
7936.295:0020:0024:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\kernel32.dll",0062FBB8,00000000,00000000)
7936.295:0020:0024:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\kernel32.dll" 520 0062F864 00000000)
7936.295:0020:0024:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\kernel32.dll" 520 0062F864 00000000 00000000)
7936.295:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 00246CE8, status 0.
7936.295:0020:0024:SysCall  NtOpenFile(0062f9f4,80100000,0062fa08,0062fa00,00000005,00000060)
7936.295:0020:0024:trace:file:NtCreateFile handle=0x62f9f4 access=80100000 name=L"\\??\\C:\\windows\\system32\\kernel32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62fa00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7936.295:0020:0024:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\kernel32.dll" -> ret c0000034
7936.295:0020:0024:warn:file:NtCreateFile L"\\??\\C:\\windows\\system32\\kernel32.dll" not found (c0000034)
7936.295:0020:0024:SysRet   NtOpenFile() retval=c0000034
7936.295:0020:0024:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00246CE8, return 1, status 0.
7936.295:0020:0024:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\kernel32.dll",0062FBB8,00000000,00000000)
7936.295:0020:0024:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\kernel32.dll" 520 0062F864 00000000)
7936.295:0020:0024:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\kernel32.dll" 520 0062F864 00000000 00000000)
7936.295:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4e, return 00246D58, status 0.
7936.295:0020:0024:SysCall  NtOpenFile(0062f9f4,80100000,0062fa08,0062fa00,00000005,00000060)
7936.295:0020:0024:trace:file:NtCreateFile handle=0x62f9f4 access=80100000 name=L"\\??\\C:\\windows\\system\\kernel32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62fa00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7936.295:0020:0024:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\kernel32.dll" -> ret c000003a
7936.295:0020:0024:warn:file:NtCreateFile L"\\??\\C:\\windows\\system\\kernel32.dll" not found (c000003a)
7936.295:0020:0024:SysRet   NtOpenFile() retval=c000003a
7936.295:0020:0024:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00246D58, return 1, status 0.
7936.295:0020:0024:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\kernel32.dll",0062FBB8,00000000,00000000)
7936.295:0020:0024:trace:file:RtlGetFullPathName_U (L"C:\\windows\\kernel32.dll" 520 0062F864 00000000)
7936.295:0020:0024:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\kernel32.dll" 520 0062F864 00000000 00000000)
7936.295:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x40, return 00246DC0, status 0.
7936.295:0020:0024:SysCall  NtOpenFile(0062f9f4,80100000,0062fa08,0062fa00,00000005,00000060)
7936.295:0020:0024:trace:file:NtCreateFile handle=0x62f9f4 access=80100000 name=L"\\??\\C:\\windows\\kernel32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62fa00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7936.295:0020:0024:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\kernel32.dll" -> ret c0000034
7936.295:0020:0024:warn:file:NtCreateFile L"\\??\\C:\\windows\\kernel32.dll" not found (c0000034)
7936.295:0020:0024:SysRet   NtOpenFile() retval=c0000034
7936.295:0020:0024:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00246DC0, return 1, status 0.
7936.295:0020:0024:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\kernel32.dll",0062FBB8,00000000,00000000)
7936.295:0020:0024:trace:file:RtlGetFullPathName_U (L".\\kernel32.dll" 520 0062F864 00000000)
7936.295:0020:0024:trace:file:RtlGetFullPathName_UEx (L".\\kernel32.dll" 520 0062F864 00000000 00000000)
7936.295:0020:0024:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 00246E18, status 0.
7936.295:0020:0024:SysCall  NtOpenFile(0062f9f4,80100000,0062fa08,0062fa00,00000005,00000060)
7936.295:0020:0024:trace:file:NtCreateFile handle=0x62f9f4 access=80100000 name=L"\\??\\Z:\\home\\lessy\\kernel32.dll" objattr=00000040 root=(nil) sec=(nil) io=0x62fa00 alloc_size=(nil) attr=00000000 sharing=00000005 disp=1 options=00000060 ea=(nil).0x00000000
7936.295:0020:0024:trace:file:get_nt_and_unix_names L"\\??\\Z:\\home\\lessy\\kernel32.dll" -> ret c0000034
7936.295:0020:0024:warn:file:NtCreateFile L"\\??\\Z:\\home\\lessy\\kernel32.dll" not found (c0000034)
7936.295:0020:0024:SysRet   NtOpenFile() retval=c0000034
7936.295:0020:0024:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00246E18, return 1, status 0.
7936.295:0020:0024:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00246BB0, return 1, status 0.
7936.295:0020:0024:warn:module:load_dll Failed to load module L"kernel32.dll"; status=c0000135
wine: could not load kernel32.dll, status c0000135
7936.295:0020:0024:SysCall  NtTerminateProcess(ffffffff,c0000135)
0024: terminate_process( handle=ffffffff, exit_code=-1073741515 )
0024: terminate_process() = 0 { self=1 }
0024: *killed* exit_code=-1073741515
0020: *process killed*
7936.470:0040:0044:trace:vulkan:vulkan_init_once Host instance extensions:
7936.470:0040:0044:trace:vulkan:vulkan_init_once   - VK_KHR_device_group_creation
7936.470:0040:0044:warn:vulkan:vulkan_init_once Extension "VK_KHR_display" is not supported.
7936.470:0040:0044:trace:vulkan:vulkan_init_once   - VK_KHR_external_fence_capabilities
7936.470:0040:0044:trace:vulkan:vulkan_init_once   - VK_KHR_external_memory_capabilities
7936.470:0040:0044:trace:vulkan:vulkan_init_once   - VK_KHR_external_semaphore_capabilities
7936.470:0040:0044:warn:vulkan:vulkan_init_once Extension "VK_KHR_get_display_properties2" is not supported.
7936.470:0040:0044:trace:vulkan:vulkan_init_once   - VK_KHR_get_physical_device_properties2
7936.470:0040:0044:trace:vulkan:vulkan_init_once   - VK_KHR_get_surface_capabilities2
7936.470:0040:0044:trace:vulkan:vulkan_init_once   - VK_KHR_surface
7936.470:0040:0044:warn:vulkan:vulkan_init_once Extension "VK_KHR_surface_protected_capabilities" is not supported.
7936.470:0040:0044:trace:vulkan:vulkan_init_once   - VK_KHR_wayland_surface
7936.470:0040:0044:warn:vulkan:vulkan_init_once Extension "VK_KHR_xcb_surface" is not supported.
7936.470:0040:0044:trace:vulkan:vulkan_init_once   - VK_KHR_xlib_surface
7936.470:0040:0044:warn:vulkan:vulkan_init_once Extension "VK_EXT_acquire_xlib_display" is not supported.
7936.470:0040:0044:trace:vulkan:vulkan_init_once   - VK_EXT_debug_report
7936.470:0040:0044:warn:vulkan:vulkan_init_once Extension "VK_EXT_direct_mode_display" is not supported.
7936.470:0040:0044:warn:vulkan:vulkan_init_once Extension "VK_EXT_display_surface_counter" is not supported.
7936.470:0040:0044:trace:vulkan:vulkan_init_once   - VK_EXT_debug_utils
7936.470:0040:0044:trace:vulkan:convert_instance_create_info Enabling 2 host instance extensions
7936.470:0040:0044:trace:vulkan:convert_instance_create_info   - "VK_KHR_external_memory_capabilities"
7936.470:0040:0044:trace:vulkan:convert_instance_create_info   - "VK_KHR_get_physical_device_properties2"
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateDebugReportCallbackEXT not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateDebugUtilsMessengerEXT not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateHeadlessSurfaceEXT not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateMacOSSurfaceMVK not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateMetalSurfaceEXT not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateWaylandSurfaceKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateWin32SurfaceKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkCreateXlibSurfaceKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkDebugReportMessageEXT not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroyDebugReportCallbackEXT not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroyDebugUtilsMessengerEXT not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkDestroySurfaceKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkEnumeratePhysicalDeviceGroupsKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkSubmitDebugUtilsMessageEXT not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkEnumeratePhysicalDeviceQueueFamilyPerformanceCountersByRegionARM not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCalibrateableTimeDomainsKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeMatrixFlexibleDimensionsPropertiesNV not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeMatrixPropertiesKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceCooperativeVectorPropertiesNV not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalFencePropertiesKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalSemaphorePropertiesKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceExternalTensorPropertiesARM not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceOpticalFlowImageFormatsNV not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDevicePresentRectanglesKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceQueueFamilyDataGraphProcessingEnginePropertiesARM not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceQueueFamilyDataGraphPropertiesARM not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceCapabilities2KHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceCapabilitiesKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceFormats2KHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceFormatsKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfacePresentModesKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceSurfaceSupportKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceToolProperties not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceVideoEncodeQualityLevelPropertiesKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceWaylandPresentationSupportKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceWin32PresentationSupportKHR not found.
7936.502:0040:0044:trace:vulkan:win32u_vkCreateInstance Instance proc vkGetPhysicalDeviceXlibPresentationSupportKHR not found.
7936.502:0040:0044:warn:virtual:virtual_setup_exception exception outside of stack limits addr 0x7dce7bdb stack 0x21c5a0 (0x410000-0x412000-0x610000)
7936.502:0040:0044:trace:seh:dispatch_exception code=c0000094 (EXCEPTION_INT_DIVIDE_BY_ZERO) flags=0 addr=7DCE7BDB
7936.502:0040:0044:trace:seh:dispatch_exception eip=7dce7bdb esp=0021c5a0 ebp=00000000 eflags=00010246
7936.502:0040:0044:trace:seh:dispatch_exception eax=ffffffff ebx=783a9d80 ecx=00000000 edx=00000000
7936.502:0040:0044:trace:seh:dispatch_exception esi=00000000 edi=00000000 cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7936.502:0040:0044:trace:seh:call_seh_handlers calling handler at 7BF6CC40 code=c0000094 flags=0
7936.502:0040:0044:Call kernelbase.UnhandledExceptionFilter(0021c100) ret=7bf6cc68
7936.502:0040:0044:Call ntdll.NtQueryInformationProcess(ffffffff,0000000c,0021c074,00000004,00000000) ret=7bc15d44
7936.502:0040:0044:SysCall  NtQueryInformationProcess(ffffffff,0000000c,0021c074,00000004,00000000)
7936.502:0040:0044:trace:process:NtQueryInformationProcess (0xffffffff,0x0000000c,0x21c074,0x00000004,(nil))
7936.502:0040:0044:SysRet   NtQueryInformationProcess() retval=00000000
7936.502:0040:0044:Ret  ntdll.NtQueryInformationProcess() retval=00000000 ret=7bc15d44
7936.502:0040:0044:Call ntdll.NtCreateEvent(0021c09c,001f0003,0021c0a0,00000000,00000000) ret=7bc57995
7936.502:0040:0044:SysCall  NtCreateEvent(0021c09c,001f0003,0021c0a0,00000000,00000000)
7936.502:0040:0044:trace:sync:NtCreateEvent access 0x1f0003, name <null>, type 0, state 0
0044: create_event( access=001f0003, manual_reset=1, initial_state=0, objattr={rootdir=0000,attributes=00000002,sd={},name=L""} )
0044: create_event() = 0 { handle=0050 }
7936.514:0040:0044:SysRet   NtCreateEvent() retval=00000000
7936.514:0040:0044:Ret  ntdll.NtCreateEvent() retval=00000000 ret=7bc57995
wine: Unhandled division by zero at address 7DCE7BDB (thread 0044), starting debugger...
7936.514:0040:0044:Call ntdll.NtOpenKey(0021beec,00020019,0021bf10) ret=7bc76e5b
7936.514:0040:0044:SysCall  NtOpenKey(0021beec,00020019,0021bf10)
7936.514:0040:0044:trace:reg:NtOpenKeyEx ((nil),L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AeDebug",20019,0x21beec)
0044: open_key( parent=0000, access=00020019, attributes=00000040, name=L"\\Registry\\Machine\\Software\\Microsoft\\Windows NT\\CurrentVersion\\AeDebug" )
0044: open_key() = OBJECT_NAME_NOT_FOUND { hkey=0000 }
7936.514:0040:0044:trace:reg:NtOpenKeyEx <- (nil)
7936.514:0040:0044:SysRet   NtOpenKey() retval=c0000034
7936.514:0040:0044:Ret  ntdll.NtOpenKey() retval=c0000034 ret=7bc76e5b
7936.514:0040:0044:Call ntdll.RtlAllocateHeap(00240000,00000000,000000a0) ret=7bc771d2
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0xa0, return 00635C58, status 0.
7936.514:0040:0044:Ret  ntdll.RtlAllocateHeap() retval=00635c58 ret=7bc771d2
7936.514:0040:0044:Call ntdll._vsnwprintf(00635c58,00000050,7bc81e80 L"winedbg --auto %ld %ld",0021beac) ret=7bc778a7
7936.514:0040:0044:Ret  ntdll._vsnwprintf() retval=00000014 ret=7bc778a7
7936.514:0040:0044:Call ntdll.RtlAcquirePebLock() ret=7bc159b1
7936.514:0040:0044:Ret  ntdll.RtlAcquirePebLock() retval=00000000 ret=7bc159b1
7936.514:0040:0044:Call ntdll.RtlAllocateHeap(00240000,00000000,000019aa) ret=7bc15a01
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x19aa, return 00635D10, status 0.
7936.514:0040:0044:Ret  ntdll.RtlAllocateHeap() retval=00635d10 ret=7bc15a01
7936.514:0040:0044:Call ntdll.memcpy(00635d10,002417b8,000019aa) ret=7bc15a23
7936.514:0040:0044:Ret  ntdll.memcpy() retval=00635d10 ret=7bc15a23
7936.514:0040:0044:Call ntdll.RtlReleasePebLock() ret=7bc15a29
7936.514:0040:0044:Ret  ntdll.RtlReleasePebLock() retval=00000000 ret=7bc15a29
7936.514:0040:0044:trace:seh:start_debugger Starting debugger L"winedbg --auto 64 80"
7936.514:0040:0044:trace:process:CreateProcessInternalW app (null) cmdline L"winedbg --auto 64 80"
7936.514:0040:0044:Call ntdll.RtlAllocateHeap(00240000,00000000,0000002a) ret=7bc03b40
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x2a, return 006376D8, status 0.
7936.514:0040:0044:Ret  ntdll.RtlAllocateHeap() retval=006376d8 ret=7bc03b40
7936.514:0040:0044:Call ntdll.RtlGetExePath(006376d8 L"winedbg",0021b958) ret=7bc6904d
7936.514:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021B8EC
7936.514:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00637720, status 0.
7936.514:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.514:0040:0044:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.514:0040:0044:trace:process:find_exe_file looking for L"winedbg" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7936.514:0040:0044:Call ntdll.wcsspn(006376d8 L"winedbg",7bc82b1a L" ") ret=7bc4d24b
7936.514:0040:0044:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.514:0040:0044:Call ntdll.RtlDetermineDosPathNameType_U(006376d8 L"winedbg") ret=7bc4ca9a
7936.514:0040:0044:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.514:0040:0044:Call ntdll.RtlDosSearchPath_U(00637720 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",006376d8 L"winedbg",7bc886ba L".exe",00000208,0021ba44,00000000) ret=7bc4cdc6
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x40, return 006170E0, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg.exe",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg.exe" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg.exe" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 00618BE8, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg.exe" -> ret c0000034
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg.exe" not found (c0000034)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00618BE8, return 1, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg.exe",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L".\\winedbg.exe" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L".\\winedbg.exe" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3e, return 00617140, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg.exe" -> ret c0000034
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg.exe" not found (c0000034)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00617140, return 1, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg.exe",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg.exe" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg.exe" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 00618C58, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg.exe" -> ret c0000034
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg.exe" not found (c0000034)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00618C58, return 1, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg.exe",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg.exe" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg.exe" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 00618CC8, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg.exe" -> ret c000003a
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg.exe" not found (c000003a)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c000003a
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00618CC8, return 1, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg.exe",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg.exe" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg.exe" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x3e, return 006377E0, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg.exe" -> ret c0000034
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg.exe" not found (c0000034)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006377E0, return 1, status 0.
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006170E0, return 1, status 0.
7936.514:0040:0044:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.514:0040:0044:Call ntdll.wcsspn(006376d8 L"winedbg",7bc82b1a L" ") ret=7bc4d24b
7936.514:0040:0044:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.514:0040:0044:Call ntdll.RtlDetermineDosPathNameType_U(006376d8 L"winedbg") ret=7bc4ca9a
7936.514:0040:0044:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.514:0040:0044:Call ntdll.RtlDosSearchPath_U(00637720 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",006376d8 L"winedbg",00000000,00000208,0021ba44,00000000) ret=7bc4cdc6
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x38, return 00638390, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 00637840, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg" -> ret c0000034
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg" not found (c0000034)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00637840, return 1, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L".\\winedbg" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L".\\winedbg" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x36, return 006383E0, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg" -> ret c0000034
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg" not found (c0000034)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006383E0, return 1, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x48, return 006378A0, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg" -> ret c0000034
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg" not found (c0000034)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006378A0, return 1, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 00637900, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg" -> ret c000003a
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg" not found (c000003a)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c000003a
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00637900, return 1, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x36, return 00638430, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg" -> ret c0000034
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg" not found (c0000034)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638430, return 1, status 0.
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638390, return 1, status 0.
7936.514:0040:0044:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.514:0040:0044:Call ntdll.RtlReleasePath(00637720) ret=7bc690f6
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00637720, return 1, status 0.
7936.514:0040:0044:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.514:0040:0044:Call ntdll.RtlGetExePath(006376d8 L"winedbg --auto",0021b958) ret=7bc6904d
7936.514:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021B8EC
7936.514:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00638480, status 0.
7936.514:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.514:0040:0044:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.514:0040:0044:trace:process:find_exe_file looking for L"winedbg --auto" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7936.514:0040:0044:Call ntdll.wcsspn(006376d8 L"winedbg --auto",7bc82b1a L" ") ret=7bc4d24b
7936.514:0040:0044:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.514:0040:0044:Call ntdll.RtlDetermineDosPathNameType_U(006376d8 L"winedbg --auto") ret=7bc4ca9a
7936.514:0040:0044:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.514:0040:0044:Call ntdll.RtlDosSearchPath_U(00638480 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",006376d8 L"winedbg --auto",7bc886ba L".exe",00000208,0021ba44,00000000) ret=7bc4cdc6
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4e, return 00618D38, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto.exe",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 00638528, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" -> ret c0000034
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" not found (c0000034)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638528, return 1, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto.exe",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto.exe" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto.exe" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 00618DA8, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.514:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto.exe" -> ret c0000034
7936.514:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto.exe" not found (c0000034)
7936.514:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.514:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00618DA8, return 1, status 0.
7936.514:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto.exe",0021B7D8,00000000,00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B5AC 00000000)
7936.514:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto.exe" 520 0021B5AC 00000000 00000000)
7936.514:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 006385A0, status 0.
7936.514:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" -> ret c0000034
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto.exe" not found (c0000034)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006385A0, return 1, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto.exe",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto.exe" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto.exe" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5a, return 00638618, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto.exe" -> ret c000003a
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto.exe" not found (c000003a)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c000003a
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638618, return 1, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto.exe",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto.exe" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto.exe" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 00618E18, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto.exe" -> ret c0000034
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto.exe" not found (c0000034)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00618E18, return 1, status 0.
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00618D38, return 1, status 0.
7936.530:0040:0044:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.530:0040:0044:Call ntdll.wcsspn(006376d8 L"winedbg --auto",7bc82b1a L" ") ret=7bc4d24b
7936.530:0040:0044:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.530:0040:0044:Call ntdll.RtlDetermineDosPathNameType_U(006376d8 L"winedbg --auto") ret=7bc4ca9a
7936.530:0040:0044:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.530:0040:0044:Call ntdll.RtlDosSearchPath_U(00638480 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",006376d8 L"winedbg --auto",00000000,00000208,0021ba44,00000000) ret=7bc4cdc6
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x46, return 00637960, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x56, return 00618E88, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto" -> ret c0000034
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto" not found (c0000034)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00618E88, return 1, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 006379C0, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto" -> ret c0000034
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto" not found (c0000034)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006379C0, return 1, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x56, return 00618EF8, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto" -> ret c0000034
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto" not found (c0000034)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00618EF8, return 1, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 00618F68, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto" -> ret c000003a
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto" not found (c000003a)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c000003a
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00618F68, return 1, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x44, return 00637A20, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto" -> ret c0000034
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto" not found (c0000034)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00637A20, return 1, status 0.
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00637960, return 1, status 0.
7936.530:0040:0044:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.530:0040:0044:Call ntdll.RtlReleasePath(00638480) ret=7bc690f6
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638480, return 1, status 0.
7936.530:0040:0044:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.530:0040:0044:Call ntdll.RtlGetExePath(006376d8 L"winedbg --auto 64",0021b958) ret=7bc6904d
7936.530:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021B8EC
7936.530:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00638690, status 0.
7936.530:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.530:0040:0044:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.530:0040:0044:trace:process:find_exe_file looking for L"winedbg --auto 64" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7936.530:0040:0044:Call ntdll.wcsspn(006376d8 L"winedbg --auto 64",7bc82b1a L" ") ret=7bc4d24b
7936.530:0040:0044:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.530:0040:0044:Call ntdll.RtlDetermineDosPathNameType_U(006376d8 L"winedbg --auto 64") ret=7bc4ca9a
7936.530:0040:0044:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.530:0040:0044:Call ntdll.RtlDosSearchPath_U(00638690 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",006376d8 L"winedbg --auto 64",7bc886ba L".exe",00000208,0021ba44,00000000) ret=7bc4cdc6
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x54, return 00618FD8, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 64.exe",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 64.exe" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 64.exe" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 00638738, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 64.exe" -> ret c0000034
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 64.exe" not found (c0000034)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638738, return 1, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 64.exe",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 64.exe" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 64.exe" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 00619048, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 64.exe" -> ret c0000034
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 64.exe" not found (c0000034)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00619048, return 1, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 64.exe",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 64.exe" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 64.exe" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x64, return 006387B8, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 64.exe" -> ret c0000034
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 64.exe" not found (c0000034)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006387B8, return 1, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 64.exe",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 64.exe" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 64.exe" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x60, return 00638838, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 64.exe" -> ret c000003a
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 64.exe" not found (c000003a)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c000003a
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638838, return 1, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 64.exe",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 64.exe" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 64.exe" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 006190B8, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 64.exe" -> ret c0000034
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 64.exe" not found (c0000034)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006190B8, return 1, status 0.
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00618FD8, return 1, status 0.
7936.530:0040:0044:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.530:0040:0044:Call ntdll.wcsspn(006376d8 L"winedbg --auto 64",7bc82b1a L" ") ret=7bc4d24b
7936.530:0040:0044:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.530:0040:0044:Call ntdll.RtlDetermineDosPathNameType_U(006376d8 L"winedbg --auto 64") ret=7bc4ca9a
7936.530:0040:0044:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.530:0040:0044:Call ntdll.RtlDosSearchPath_U(00638690 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",006376d8 L"winedbg --auto 64",00000000,00000208,0021ba44,00000000) ret=7bc4cdc6
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4c, return 00619128, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 64",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 64" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 64" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 006388B0, status 0.
7936.530:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.530:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 64" -> ret c0000034
7936.530:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 64" not found (c0000034)
7936.530:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.530:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006388B0, return 1, status 0.
7936.530:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 64",0021B7D8,00000000,00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 64" 520 0021B5AC 00000000)
7936.530:0040:0044:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 64" 520 0021B5AC 00000000 00000000)
7936.530:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4a, return 00619198, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 64" -> ret c0000034
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 64" not found (c0000034)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00619198, return 1, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 64",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 64" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 64" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5c, return 00638928, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 64" -> ret c0000034
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 64" not found (c0000034)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638928, return 1, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 64",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 64" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 64" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 00619208, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 64" -> ret c000003a
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 64" not found (c000003a)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c000003a
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00619208, return 1, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 64",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 64" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 64" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x4a, return 006389B8, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 64" -> ret c0000034
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 64" not found (c0000034)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006389B8, return 1, status 0.
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00619128, return 1, status 0.
7936.547:0040:0044:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.547:0040:0044:Call ntdll.RtlReleasePath(00638690) ret=7bc690f6
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638690, return 1, status 0.
7936.547:0040:0044:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.547:0040:0044:Call ntdll.RtlGetExePath(006376d8 L"winedbg --auto 64 80",0021b958) ret=7bc6904d
7936.547:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"NoDefaultCurrentDirectoryInExePath" 0021B8EC
7936.547:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x90, return 00639758, status 0.
7936.547:0040:0044:trace:environ:RtlQueryEnvironmentVariable_U 00000000 L"PATH" 0021B8B8
7936.547:0040:0044:Ret  ntdll.RtlGetExePath() retval=00000000 ret=7bc6904d
7936.547:0040:0044:trace:process:find_exe_file looking for L"winedbg --auto 64 80" in L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;"
7936.547:0040:0044:Call ntdll.wcsspn(006376d8 L"winedbg --auto 64 80",7bc82b1a L" ") ret=7bc4d24b
7936.547:0040:0044:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.547:0040:0044:Call ntdll.RtlDetermineDosPathNameType_U(006376d8 L"winedbg --auto 64 80") ret=7bc4ca9a
7936.547:0040:0044:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.547:0040:0044:Call ntdll.RtlDosSearchPath_U(00639758 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",006376d8 L"winedbg --auto 64 80",7bc886ba L".exe",00000208,0021ba44,00000000) ret=7bc4cdc6
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5a, return 00639800, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 64 80.exe",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 64 80.exe" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 64 80.exe" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x6a, return 00639878, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 64 80.exe" -> ret c0000034
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 64 80.exe" not found (c0000034)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00639878, return 1, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 64 80.exe",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 64 80.exe" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 64 80.exe" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 00638A28, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 64 80.exe" -> ret c0000034
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 64 80.exe" not found (c0000034)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638A28, return 1, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 64 80.exe",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 64 80.exe" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 64 80.exe" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x6a, return 00639900, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 64 80.exe" -> ret c0000034
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 64 80.exe" not found (c0000034)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00639900, return 1, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 64 80.exe",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 64 80.exe" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 64 80.exe" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x66, return 00639988, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 64 80.exe" -> ret c000003a
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 64 80.exe" not found (c000003a)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c000003a
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00639988, return 1, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 64 80.exe",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 64 80.exe" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 64 80.exe" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x58, return 00638A98, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 64 80.exe" -> ret c0000034
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 64 80.exe" not found (c0000034)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638A98, return 1, status 0.
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00639800, return 1, status 0.
7936.547:0040:0044:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.547:0040:0044:Call ntdll.wcsspn(006376d8 L"winedbg --auto 64 80",7bc82b1a L" ") ret=7bc4d24b
7936.547:0040:0044:Ret  ntdll.wcsspn() retval=00000000 ret=7bc4d24b
7936.547:0040:0044:Call ntdll.RtlDetermineDosPathNameType_U(006376d8 L"winedbg --auto 64 80") ret=7bc4ca9a
7936.547:0040:0044:Ret  ntdll.RtlDetermineDosPathNameType_U() retval=00000005 ret=7bc4ca9a
7936.547:0040:0044:Call ntdll.RtlDosSearchPath_U(00639758 L"C:\\windows\\system32;.;C:\\windows\\system32;C:\\windows\\system;C:\\windows;",006376d8 L"winedbg --auto 64 80",00000000,00000208,0021ba44,00000000) ret=7bc4cdc6
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x52, return 00638B08, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 64 80",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 64 80" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 64 80" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x62, return 00639A08, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 64 80" -> ret c0000034
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 64 80" not found (c0000034)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00639A08, return 1, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L".\\winedbg --auto 64 80",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L".\\winedbg --auto 64 80" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L".\\winedbg --auto 64 80" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 00638B78, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 64 80" -> ret c0000034
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 64 80" not found (c0000034)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638B78, return 1, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system32\\winedbg --auto 64 80",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system32\\winedbg --auto 64 80" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system32\\winedbg --auto 64 80" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x62, return 00639A88, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system32\\winedbg --auto 64 80" -> ret c0000034
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system32\\winedbg --auto 64 80" not found (c0000034)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00639A88, return 1, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\system\\winedbg --auto 64 80",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\system\\winedbg --auto 64 80" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\system\\winedbg --auto 64 80" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x5e, return 00639B08, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\system\\winedbg --auto 64 80" -> ret c000003a
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\system\\winedbg --auto 64 80" not found (c000003a)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c000003a
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00639B08, return 1, status 0.
7936.547:0040:0044:trace:file:RtlDosPathNameToNtPathName_U_WithStatus (L"C:\\windows\\winedbg --auto 64 80",0021B7D8,00000000,00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_U (L"C:\\windows\\winedbg --auto 64 80" 520 0021B5AC 00000000)
7936.547:0040:0044:trace:file:RtlGetFullPathName_UEx (L"C:\\windows\\winedbg --auto 64 80" 520 0021B5AC 00000000 00000000)
7936.547:0040:0044:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x50, return 00638BE8, status 0.
7936.547:0040:0044:SysCall  NtQueryAttributesFile(0021b7e0,0021b7f8)
7936.547:0040:0044:trace:file:get_nt_and_unix_names L"\\??\\C:\\windows\\winedbg --auto 64 80" -> ret c0000034
7936.547:0040:0044:warn:file:NtQueryAttributesFile L"\\??\\C:\\windows\\winedbg --auto 64 80" not found (c0000034)
7936.547:0040:0044:SysRet   NtQueryAttributesFile() retval=c0000034
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638BE8, return 1, status 0.
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00638B08, return 1, status 0.
7936.547:0040:0044:Ret  ntdll.RtlDosSearchPath_U() retval=00000000 ret=7bc4cdc6
7936.547:0040:0044:Call ntdll.RtlReleasePath(00639758) ret=7bc690f6
7936.547:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00639758, return 1, status 0.
7936.547:0040:0044:Ret  ntdll.RtlReleasePath() retval=00000001 ret=7bc690f6
7936.547:0040:0044:Call ntdll.RtlFreeHeap(00240000,00000000,006376d8) ret=7bc03bff
7936.563:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006376D8, return 1, status 0.
7936.563:0040:0044:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc03bff
7936.563:0040:0044:Call ntdll.RtlFreeHeap(00240000,00000000,00635d10) ret=7bc106ac
7936.563:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00635D10, return 1, status 0.
7936.563:0040:0044:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc106ac
7936.563:0040:0044:err:seh:start_debugger Couldn't start debugger L"winedbg --auto 64 80" (2)
Read the Wine Developers Guide on how to set up winedbg or another debugger
7936.563:0040:0044:Call ntdll.RtlFreeHeap(00240000,00000000,00635c58) ret=7bc7718d
7936.563:0040:0044:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00635C58, return 1, status 0.
7936.563:0040:0044:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bc7718d
7936.563:0040:0044:Call ntdll.NtSetEvent(00000050,00000000) ret=7bc579d4
7936.563:0040:0044:SysCall  NtSetEvent(00000050,00000000)
7936.563:0040:0044:trace:sync:NtSetEvent handle 0x50, prev_state (nil)
0044: event_op( handle=0050, op=1 )
0044: event_op() = 0 { state=0 }
7936.564:0040:0044:SysRet   NtSetEvent() retval=00000000
7936.564:0040:0044:Ret  ntdll.NtSetEvent() retval=00000000 ret=7bc579d4
7936.564:0040:0044:Ret  kernelbase.UnhandledExceptionFilter() retval=00000001 ret=7bf6cc68
7936.564:0040:0044:trace:seh:__regs_RtlUnwind code=c0000094 flags=2
7936.564:0040:0044:trace:seh:__regs_RtlUnwind eip=7bf3e2de esp=0021c0d8 ebp=0021c0e0 eflags=00000216
7936.564:0040:0044:trace:seh:__regs_RtlUnwind eax=00000000 ebx=00000000 ecx=c0000094 edx=0060ff94
7936.564:0040:0044:trace:seh:__regs_RtlUnwind esi=0021c208 edi=7ffc2000 cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7936.564:0040:0044:SysCall  NtRaiseException(0021bcd8,0021ba00,00000001)
7936.564:0040:0044:SysRet   NtRaiseException() retval=00000000
7936.564:0040:0044:trace:seh:dispatch_exception code=c0000028 (unknown) flags=1 addr=7BF91A20
7936.564:0040:0044:trace:seh:dispatch_exception eip=7bf91a20 esp=0021bcd8 ebp=0021bd2c eflags=00000206
7936.564:0040:0044:trace:seh:dispatch_exception eax=0021c208 ebx=0021bcd8 ecx=7bf6cabc edx=0021b956
7936.564:0040:0044:trace:seh:dispatch_exception esi=0021c208 edi=0021bdec cs=0073 ds=007b es=007b fs=0033 gs=003b ss=007b
7936.564:0040:0044:SysCall  NtRaiseException(0021b2c8,0021b318,00000000)
7936.564:0040:0044:err:seh:NtRaiseException Exception frame is not in stack limits => unable to dispatch exception.
0044: terminate_process( handle=ffffffff, exit_code=-1073741784 )
0044: terminate_process() = 0 { self=1 }
0044: *killed* exit_code=-1073741784
0040: *process killed*
wineserver: shutting down
0034: *wakeup* signaled=0
7939.611:0030:0034:trace:sync:NtWaitForSingleObject -> 0
7939.611:0030:0034:SysRet   NtWaitForSingleObject() retval=00000000
7939.611:0030:0034:Ret  ntdll.NtWaitForSingleObject() retval=00000000 ret=7bc60a0b
7939.611:0030:0034:Ret  kernelbase.WaitForSingleObject() retval=00000000 ret=7bf3cfb4
7939.611:0030:0034:Ret  KERNEL32.WaitForSingleObject() retval=00000000 ret=0040ae7d
7939.611:0030:0034:Call KERNEL32.PostQueuedCompletionStatus(00000028,00000000,00000000,00000000) ret=0040aea5
7939.611:0030:0034:Call kernelbase.PostQueuedCompletionStatus(00000028,00000000,00000000,00000000) ret=7bf3cfb4
7939.611:0030:0034:trace:sync:PostQueuedCompletionStatus 00000028 0 00000000 00000000
7939.611:0030:0034:Call ntdll.NtSetIoCompletion(00000028,00000000,00000000,00000000,00000000) ret=7bc39e8d
7939.611:0030:0034:SysCall  NtSetIoCompletion(00000028,00000000,00000000,00000000,00000000)
7939.611:0030:0034:trace:sync:NtSetIoCompletion (0x28, 0, 0, 0, 0)
0034: add_completion( handle=0028, ckey=00000000, cvalue=00000000, information=00000000, reserve_handle=0000, status=00000000 )
003c: *wakeup* signaled=0
0034: add_completion() = 0
7939.612:0030:0034:SysRet   NtSetIoCompletion() retval=00000000
003c: get_thread_completion( )
7939.612:0030:0034:Ret  ntdll.NtSetIoCompletion() retval=00000000 ret=7bc39e8d
003c: get_thread_completion() = 0 { ckey=00000000, cvalue=00000000, information=00000000, status=00000000 }
7939.612:0030:0034:Ret  kernelbase.PostQueuedCompletionStatus() retval=00000001 ret=7bf3cfb4
7939.612:0030:0034:Ret  KERNEL32.PostQueuedCompletionStatus() retval=00000001 ret=0040aea5
7939.612:0030:003c:SysRet   NtRemoveIoCompletion() retval=00000000
7939.612:0030:0034:Call KERNEL32.WaitForSingleObject(0000005c,ffffffff) ret=0040aeb5
7939.612:0030:003c:Ret  ntdll.NtRemoveIoCompletion() retval=00000000 ret=7bc1d907
7939.612:0030:0034:Call kernelbase.WaitForSingleObject(0000005c,ffffffff) ret=7bf3cfb4
7939.612:0030:003c:Ret  kernelbase.GetQueuedCompletionStatus() retval=00000001 ret=7bf3cfb4
7939.612:0030:0034:Call ntdll.NtWaitForSingleObject(0000005c,00000000,00000000) ret=7bc60a0b
7939.612:0030:003c:Ret  KERNEL32.GetQueuedCompletionStatus() retval=00000001 ret=00402fd3
7939.612:0030:0034:SysCall  NtWaitForSingleObject(0000005c,00000000,00000000)
7939.612:0030:003c:trace:service:process_monitor_thread_proc Terminating.
7939.612:0030:0034:trace:sync:NtWaitForSingleObject handle 0x5c, alertable 0, timeout (infinite)
7939.612:0030:003c:Call ntdll.RtlExitUserThread(00000000) ret=7bebfb60
0034: select( flags=2, cookie=0021ecc4, timeout=infinite, size=8, prev_apc=0000, result={}, data={WAIT,handles={005c}}, contexts={} )
7939.612:0030:003c:SysCall  NtQueryInformationThread(fffffffe,0000000c,0108fee0,00000004,00000000)
0034: select() = PENDING { apc_handle=0000, signaled=0, call={}, contexts={} }
7939.613:0030:003c:trace:thread:NtQueryInformationThread (0xfffffffe,12,0x108fee0,4,(nil))
003c: get_thread_info( handle=fffffffe, access=00000000 )
003c: get_thread_info() = 0 { pid=0030, tid=003c, teb=7ffa2000, entry_point=00402f90, affinity=00000003, exit_code=259, priority=8, base_priority=0, suspend_count=0, flags=00000000, desc_len=0, desc=L"" }
7939.614:0030:003c:SysRet   NtQueryInformationThread() retval=00000000
7939.614:0030:003c:trace:module:LdrShutdownThread ()
7939.614:0030:003c:trace:thread:RtlProcessFlsData teb_fls_data 006409A8, flags 0x1.
7939.614:0030:003c:Call PE DLL (proc=7B8D3B00,module=7B8C0000 L"rpcrt4.dll",reason=THREAD_DETACH,res=00000000)
7939.614:0030:003c:Ret  PE DLL (proc=7B8D3B00,module=7B8C0000 L"rpcrt4.dll",reason=THREAD_DETACH,res=00000000) retval=1
7939.614:0030:003c:Call PE DLL (proc=7B9B7710,module=7B9A0000 L"ucrtbase.dll",reason=THREAD_DETACH,res=00000000)
7939.614:0030:003c:trace:msvcrt:DllMain (7B9A0000, DLL_THREAD_DETACH, 00000000) pid(30), tid(3c), tls(2)
7939.614:0030:003c:Call KERNEL32.TlsGetValue(00000002) ret=7b9b7436
7939.614:0030:003c:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7939.614:0030:003c:Ret  kernelbase.TlsGetValue() retval=00000000 ret=7bf3cfb4
7939.614:0030:003c:Ret  KERNEL32.TlsGetValue() retval=00000000 ret=7b9b7436
7939.614:0030:003c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9b74c0
7939.614:0030:003c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7939.614:0030:003c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7939.614:0030:003c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9b74c0
7939.614:0030:003c:trace:msvcrt:DllMain finished thread free
7939.614:0030:003c:Ret  PE DLL (proc=7B9B7710,module=7B9A0000 L"ucrtbase.dll",reason=THREAD_DETACH,res=00000000) retval=1
7939.614:0030:003c:Call PE DLL (proc=7BADAF70,module=7BAD0000 L"msvcrt.dll",reason=THREAD_DETACH,res=00000000)
7939.614:0030:003c:trace:msvcrt:DllMain (7BAD0000, DLL_THREAD_DETACH, 00000000) pid(30), tid(3c), tls(1)
7939.614:0030:003c:Call KERNEL32.TlsGetValue(00000001) ret=7badac86
7939.614:0030:003c:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7939.614:0030:003c:Ret  kernelbase.TlsGetValue() retval=00000000 ret=7bf3cfb4
7939.614:0030:003c:Ret  KERNEL32.TlsGetValue() retval=00000000 ret=7badac86
7939.614:0030:003c:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7badad10
7939.614:0030:003c:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7939.614:0030:003c:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7939.614:0030:003c:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7badad10
7939.614:0030:003c:trace:msvcrt:DllMain finished thread free
7939.614:0030:003c:Ret  PE DLL (proc=7BADAF70,module=7BAD0000 L"msvcrt.dll",reason=THREAD_DETACH,res=00000000) retval=1
7939.614:0030:003c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00641178, return 1, status 0.
7939.614:0030:003c:trace:thread:RtlProcessFlsData teb_fls_data 006409A8, flags 0x2.
7939.614:0030:003c:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006409A8, return 1, status 0.
7939.614:0030:003c:SysCall  NtTerminateThread(fffffffe,00000000)
003c: terminate_thread( handle=fffffffe, exit_code=0 )
003c: terminate_thread() = 0 { self=1 }
003c: select( flags=2, cookie=00e8e0e4, timeout=0, size=0, prev_apc=0000, result={}, data={}, contexts={} )
003c: select() = TIMEOUT { apc_handle=0000, signaled=1, call={}, contexts={} }
003c: *killed* exit_code=0
0034: *wakeup* signaled=0
7939.618:0030:0034:trace:sync:NtWaitForSingleObject -> 0
7939.618:0030:0034:SysRet   NtWaitForSingleObject() retval=00000000
7939.618:0030:0034:Ret  ntdll.NtWaitForSingleObject() retval=00000000 ret=7bc60a0b
7939.618:0030:0034:Ret  kernelbase.WaitForSingleObject() retval=00000000 ret=7bf3cfb4
7939.618:0030:0034:Ret  KERNEL32.WaitForSingleObject() retval=00000000 ret=0040aeb5
7939.618:0030:0034:Call ntdll.RtlEnterCriticalSection(0063f1f8) ret=0040aedd
7939.618:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=0040aedd
7939.618:0030:0034:Call ntdll.RtlLeaveCriticalSection(0063f1f8) ret=0040af96
7939.618:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=0040af96
7939.618:0030:0034:Call rpcrt4.RpcMgmtStopServerListening(00000000) ret=00401303
7939.618:0030:0034:trace:rpc:RpcMgmtStopServerListening (Binding == (RPC_BINDING_HANDLE)^00000000)
7939.618:0030:0034:Call ntdll.RtlEnterCriticalSection(7b911240) ret=7b8f331f
7939.618:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8f331f
7939.618:0030:0034:Call ntdll.RtlLeaveCriticalSection(7b911240) ret=7b8f342b
7939.618:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8f342b
7939.618:0030:0034:Call ntdll.RtlEnterCriticalSection(7b911280) ret=7b8f3435
7939.618:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8f3435
7939.618:0030:0034:Call KERNEL32.WaitForSingleObject(00000048,ffffffff) ret=7b8f3460
7939.618:0030:0034:Call kernelbase.WaitForSingleObject(00000048,ffffffff) ret=7bf3cfb4
7939.618:0030:0034:Call ntdll.NtWaitForSingleObject(00000048,00000000,00000000) ret=7bc60a0b
7939.618:0030:0034:SysCall  NtWaitForSingleObject(00000048,00000000,00000000)
7939.618:0030:0034:trace:sync:NtWaitForSingleObject handle 0x48, alertable 0, timeout (infinite)
0034: select( flags=2, cookie=0021ecc4, timeout=infinite, size=8, prev_apc=0000, result={}, data={WAIT,handles={0048}}, contexts={} )
0034: select() = 0 { apc_handle=0000, signaled=1, call={}, contexts={} }
7939.620:0030:0034:trace:sync:NtWaitForSingleObject -> 0
7939.620:0030:0034:SysRet   NtWaitForSingleObject() retval=00000000
7939.620:0030:0034:Ret  ntdll.NtWaitForSingleObject() retval=00000000 ret=7bc60a0b
7939.620:0030:0034:Ret  kernelbase.WaitForSingleObject() retval=00000000 ret=7bf3cfb4
7939.620:0030:0034:Ret  KERNEL32.WaitForSingleObject() retval=00000000 ret=7b8f3460
7939.620:0030:0034:Call KERNEL32.SetEvent(0000003c) ret=7b90a8a3
7939.620:0030:0034:Call kernelbase.SetEvent(0000003c) ret=7bf3cfb4
7939.620:0030:0034:Call ntdll.NtSetEvent(0000003c,00000000) ret=7bc4f87d
7939.620:0030:0034:SysCall  NtSetEvent(0000003c,00000000)
7939.620:0030:0034:trace:sync:NtSetEvent handle 0x3c, prev_state (nil)
0034: event_op( handle=003c, op=1 )
0038: *wakeup* signaled=0
0034: event_op() = 0 { state=0 }
7939.621:0030:0038:trace:sync:NtWaitForMultipleObjects -> 0
7939.621:0030:0034:SysRet   NtSetEvent() retval=00000000
7939.621:0030:0038:SysRet   NtWaitForMultipleObjects() retval=00000000
7939.621:0030:0034:Ret  ntdll.NtSetEvent() retval=00000000 ret=7bc4f87d
7939.621:0030:0038:Ret  ntdll.NtWaitForMultipleObjects() retval=00000000 ret=7bc60904
7939.621:0030:0034:Ret  kernelbase.SetEvent() retval=00000001 ret=7bf3cfb4
7939.621:0030:0038:Ret  kernelbase.WaitForMultipleObjectsEx() retval=00000000 ret=7bf3cfb4
7939.621:0030:0034:Ret  KERNEL32.SetEvent() retval=00000001 ret=7b90a8a3
7939.621:0030:0038:Ret  KERNEL32.WaitForMultipleObjectsEx() retval=00000000 ret=7b90a8f1
7939.621:0030:0034:Call KERNEL32.WaitForSingleObject(0000004c,ffffffff) ret=7b8f347a
7939.621:0030:0038:Call ucrtbase.free(00640528) ret=7b8ed6ac
7939.621:0030:0034:Call kernelbase.WaitForSingleObject(0000004c,ffffffff) ret=7bf3cfb4
7939.621:0030:0038:Call KERNEL32.HeapFree(00240000,00000000,00640528) ret=7b9f6857
7939.621:0030:0034:Call ntdll.NtWaitForSingleObject(0000004c,00000000,00000000) ret=7bc60a0b
7939.621:0030:0038:Call ntdll.RtlFreeHeap(00240000,00000000,00640528) ret=7bf3cfb4
7939.621:0030:0034:SysCall  NtWaitForSingleObject(0000004c,00000000,00000000)
7939.621:0030:0034:trace:sync:NtWaitForSingleObject handle 0x4c, alertable 0, timeout (infinite)
0034: select( flags=2, cookie=0021ecc4, timeout=infinite, size=8, prev_apc=0000, result={}, data={WAIT,handles={004c}}, contexts={} )
0034: select() = PENDING { apc_handle=0000, signaled=0, call={}, contexts={} }
7939.622:0030:0038:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00640528, return 1, status 0.
7939.622:0030:0038:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bf3cfb4
7939.622:0030:0038:Ret  KERNEL32.HeapFree() retval=00000001 ret=7b9f6857
7939.622:0030:0038:Ret  ucrtbase.free() retval=00000001 ret=7b8ed6ac
7939.622:0030:0038:trace:rpc:RPCRT4_server_thread closing connections
7939.622:0030:0038:Call ntdll.RtlEnterCriticalSection(006265ec) ret=7b8ed6cc
7939.622:0030:0038:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8ed6cc
7939.622:0030:0038:trace:rpc:RPCRT4_CloseConnection (Connection == ^0063FB68)
7939.622:0030:0038:Call KERNEL32.FlushFileBuffers(00000040) ret=7b904c4b
7939.622:0030:0038:Call kernelbase.FlushFileBuffers(00000040) ret=7bf3cfb4
7939.622:0030:0038:Call ntdll.NtFlushBuffersFile(00000040,00d8fe3c) ret=7bc0f51c
7939.622:0030:0038:SysCall  NtFlushBuffersFile(00000040,00d8fe3c)
7939.622:0030:0038:trace:file:NtFlushBuffersFileEx (0x40,0x00000000,(nil),0x00000000,0xd8fe3c)
0038: flush( async={handle=0040,event=0000,iosb=00d8fe3c,user=7ee00630,apc=00000000,apc_context=00000000} )
0038: flush() = 0 { event=0060 }
0038: select( flags=2, cookie=00b8ded4, timeout=infinite, size=8, prev_apc=0000, result={}, data={WAIT,handles={0060}}, contexts={} )
0038: select() = 0 { apc_handle=0000, signaled=1, call={}, contexts={} }
7939.623:0030:0038:SysRet   NtFlushBuffersFile() retval=00000000
7939.623:0030:0038:Ret  ntdll.NtFlushBuffersFile() retval=00000000 ret=7bc0f51c
7939.623:0030:0038:Ret  kernelbase.FlushFileBuffers() retval=00000001 ret=7bf3cfb4
7939.623:0030:0038:Ret  KERNEL32.FlushFileBuffers() retval=00000001 ret=7b904c4b
7939.623:0030:0038:Call KERNEL32.CloseHandle(00000040) ret=7b904c5b
7939.623:0030:0038:Call kernelbase.CloseHandle(00000040) ret=7bf3cfb4
7939.623:0030:0038:Call ntdll.NtClose(00000040) ret=7bbfec22
7939.623:0030:0038:SysCall  NtClose(00000040)
0038: close_handle( handle=0040 )
0038: *sent signal* SIGUSR1
0038: close_handle() = 0
7939.623:0030:0038:trace:seh:NtGetContextThread 0xfffffffe: eax=0000000f ebx=0063fb68 ecx=00000000 edx=00000000 esi=00d8fe44 edi=00d8fe14
7939.623:0030:0038:trace:seh:NtGetContextThread 0xfffffffe: ebp=00d8fe2c esp=00d8fe0c eip=7bf3d140 cs=0073 ss=007b flags=00000246
7939.623:0030:0038:trace:seh:NtGetContextThread 0xfffffffe: ds=007b es=007b fs=0033 gs=003b
0038: select( flags=2, cookie=7ffbdcb4, timeout=0, size=0, prev_apc=0000, result={}, data={}, contexts={{machine=i386,eip=7bf3d140,esp=00d8fe0c,ebp=00d8fe2c,eflags=00000246,cs=0073,ss=007b,ds=007b,es=007b,fs=0033,gs=003b,eax=0000000f,ebx=0063fb68,ecx=00000000,edx=00000000,esi=00d8fe44,edi=00d8fe14,exec_space=syscall}} )
0038: select() = KERNEL_APC { apc_handle=0040, signaled=1, call={APC_ASYNC_IO,user=7ee00610,sb=0063fbfc,status=HANDLES_CLOSED,result=0}, contexts={} }
0038: select( flags=2, cookie=7ffbdcb4, timeout=0, size=0, prev_apc=0040, result={APC_ASYNC_IO,status=HANDLES_CLOSED,total=0}, data={}, contexts={} )
0038: select() = TIMEOUT { apc_handle=0000, signaled=1, call={}, contexts={} }
7939.624:0030:0038:SysRet   NtClose() retval=00000000
7939.624:0030:0038:Ret  ntdll.NtClose() retval=00000000 ret=7bbfec22
7939.624:0030:0038:Ret  kernelbase.CloseHandle() retval=00000001 ret=7bf3cfb4
7939.624:0030:0038:Ret  KERNEL32.CloseHandle() retval=00000001 ret=7b904c5b
7939.624:0030:0038:Call KERNEL32.CloseHandle(00000054) ret=7b904c79
7939.624:0030:0038:Call kernelbase.CloseHandle(00000054) ret=7bf3cfb4
7939.624:0030:0038:Call ntdll.NtClose(00000054) ret=7bbfec22
7939.624:0030:0038:SysCall  NtClose(00000054)
0038: close_handle( handle=0054 )
0038: close_handle() = 0
7939.625:0030:0038:SysRet   NtClose() retval=00000000
7939.625:0030:0038:Ret  ntdll.NtClose() retval=00000000 ret=7bbfec22
7939.625:0030:0038:Ret  kernelbase.CloseHandle() retval=00000001 ret=7bf3cfb4
7939.625:0030:0038:Ret  KERNEL32.CloseHandle() retval=00000001 ret=7b904c79
7939.625:0030:0038:Call ntdll.RtlLeaveCriticalSection(006265ec) ret=7b8ed744
7939.625:0030:0038:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8ed744
7939.625:0030:0038:Call KERNEL32.SetEvent(0000004c) ret=7b8ed8bc
7939.625:0030:0038:Call kernelbase.SetEvent(0000004c) ret=7bf3cfb4
7939.625:0030:0038:Call ntdll.NtSetEvent(0000004c,00000000) ret=7bc4f87d
7939.625:0030:0038:SysCall  NtSetEvent(0000004c,00000000)
7939.625:0030:0038:trace:sync:NtSetEvent handle 0x4c, prev_state (nil)
0038: event_op( handle=004c, op=1 )
0034: *wakeup* signaled=0
0038: event_op() = 0 { state=0 }
7939.625:0030:0034:trace:sync:NtWaitForSingleObject -> 0
7939.625:0030:0034:SysRet   NtWaitForSingleObject() retval=00000000
7939.625:0030:0038:SysRet   NtSetEvent() retval=00000000
7939.625:0030:0034:Ret  ntdll.NtWaitForSingleObject() retval=00000000 ret=7bc60a0b
7939.625:0030:0038:Ret  ntdll.NtSetEvent() retval=00000000 ret=7bc4f87d
7939.625:0030:0034:Ret  kernelbase.WaitForSingleObject() retval=00000000 ret=7bf3cfb4
7939.625:0030:0038:Ret  kernelbase.SetEvent() retval=00000001 ret=7bf3cfb4
7939.625:0030:0034:Ret  KERNEL32.WaitForSingleObject() retval=00000000 ret=7b8f347a
7939.625:0030:0038:Ret  KERNEL32.SetEvent() retval=00000001 ret=7b8ed8bc
7939.625:0030:0034:Call KERNEL32.ReleaseMutex(00000048) ret=7b8f3488
7939.625:0030:0038:trace:rpc:RPCRT4_server_thread waiting for active connections to close
7939.625:0030:0034:Call kernelbase.ReleaseMutex(00000048) ret=7bf3cfb4
7939.625:0030:0038:Call ntdll.RtlEnterCriticalSection(006265ec) ret=7b8ed769
7939.625:0030:0034:Call ntdll.NtReleaseMutant(00000048,00000000) ret=7bc4788d
7939.625:0030:0038:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8ed769
7939.625:0030:0034:SysCall  NtReleaseMutant(00000048,00000000)
7939.625:0030:0038:Call ntdll.RtlLeaveCriticalSection(006265ec) ret=7b8ed7af
7939.625:0030:0034:trace:sync:NtReleaseMutant handle 0x48, prev_count (nil)
7939.625:0030:0038:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8ed7af
7939.625:0030:0038:Call ntdll.RtlEnterCriticalSection(7b911240) ret=7b8ed7bc
7939.626:0030:0038:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8ed7bc
0034: release_mutex( handle=0048 )
7939.626:0030:0038:Call KERNEL32.CloseHandle(00000050) ret=7b8ed7c9
0034: release_mutex() = 0 { prev_count=00000001 }
7939.626:0030:0038:Call kernelbase.CloseHandle(00000050) ret=7bf3cfb4
7939.626:0030:0038:Call ntdll.NtClose(00000050) ret=7bbfec22
7939.626:0030:0034:SysRet   NtReleaseMutant() retval=00000000
7939.626:0030:0038:SysCall  NtClose(00000050)
7939.626:0030:0034:Ret  ntdll.NtReleaseMutant() retval=00000000 ret=7bc4788d
7939.626:0030:0034:Ret  kernelbase.ReleaseMutex() retval=00000001 ret=7bf3cfb4
7939.626:0030:0034:Ret  KERNEL32.ReleaseMutex() retval=00000001 ret=7b8f3488
0038: close_handle( handle=0050 )
7939.626:0030:0034:Call ntdll.RtlLeaveCriticalSection(7b911280) ret=7b8f34a2
0038: close_handle() = 0
7939.626:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8f34a2
7939.626:0030:0034:Call ntdll.RtlEnterCriticalSection(7b911240) ret=7b8f336f
7939.626:0030:0038:SysRet   NtClose() retval=00000000
7939.626:0030:0034:trace:sync:RtlWaitOnAddress addr 7B911250 cmp 7BFB1794 size 0x4 timeout fffffffffd050f80
7939.626:0030:0038:Ret  ntdll.NtClose() retval=00000000 ret=7bbfec22
7939.626:0030:0034:SysCall  NtWaitForAlertByThreadId(00000000,0061f9f8)
7939.626:0030:0038:Ret  kernelbase.CloseHandle() retval=00000001 ret=7bf3cfb4
7939.626:0030:0038:Ret  KERNEL32.CloseHandle() retval=00000001 ret=7b8ed7c9
7939.626:0030:0034:trace:sync:NtWaitForAlertByThreadId (nil) -5.0000000
7939.626:0030:0038:Call ntdll.RtlLeaveCriticalSection(7b911240) ret=7b8ed7da
7939.626:0030:0038:trace:sync:RtlWakeAddressSingle 7B911250
7939.626:0030:0038:SysCall  NtAlertThreadByThreadId(00000034)
7939.626:0030:0038:trace:sync:NtAlertThreadByThreadId 0x34
7939.626:0030:0038:SysRet   NtAlertThreadByThreadId() retval=00000000
7939.626:0030:0034:SysRet   NtWaitForAlertByThreadId() retval=00000101
7939.626:0030:0038:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8ed7da
7939.626:0030:0034:trace:sync:RtlWaitOnAddress returning 0x101
7939.626:0030:0038:trace:rpc:RPCRT4_server_thread done
7939.626:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8f336f
7939.626:0030:0038:Call ntdll.RtlExitUserThread(00000000) ret=7bebfb60
7939.626:0030:0034:Call KERNEL32.SetEvent(00000044) ret=7b8f337e
7939.626:0030:0038:SysCall  NtQueryInformationThread(fffffffe,0000000c,00d8fee0,00000004,00000000)
7939.626:0030:0034:Call kernelbase.SetEvent(00000044) ret=7bf3cfb4
7939.626:0030:0038:trace:thread:NtQueryInformationThread (0xfffffffe,12,0xd8fee0,4,(nil))
7939.626:0030:0034:Call ntdll.NtSetEvent(00000044,00000000) ret=7bc4f87d
7939.626:0030:0034:SysCall  NtSetEvent(00000044,00000000)
7939.626:0030:0034:trace:sync:NtSetEvent handle 0x44, prev_state (nil)
0038: get_thread_info( handle=fffffffe, access=00000000 )
0038: get_thread_info() = 0 { pid=0030, tid=0038, teb=7ffb2000, entry_point=7b8ed600, affinity=00000003, exit_code=259, priority=8, base_priority=0, suspend_count=0, flags=00000000, desc_len=36, desc=L"" }
0034: event_op( handle=0044, op=1 )
7939.627:0030:0038:SysRet   NtQueryInformationThread() retval=00000000
0034: event_op() = 0 { state=0 }
7939.627:0030:0038:trace:module:LdrShutdownThread ()
7939.627:0030:0038:trace:thread:RtlProcessFlsData teb_fls_data 0063FC88, flags 0x1.
7939.627:0030:0034:SysRet   NtSetEvent() retval=00000000
7939.627:0030:0038:Call PE DLL (proc=7B8D3B00,module=7B8C0000 L"rpcrt4.dll",reason=THREAD_DETACH,res=00000000)
7939.627:0030:0034:Ret  ntdll.NtSetEvent() retval=00000000 ret=7bc4f87d
7939.627:0030:0038:Ret  PE DLL (proc=7B8D3B00,module=7B8C0000 L"rpcrt4.dll",reason=THREAD_DETACH,res=00000000) retval=1
7939.627:0030:0034:Ret  kernelbase.SetEvent() retval=00000001 ret=7bf3cfb4
7939.627:0030:0034:Ret  KERNEL32.SetEvent() retval=00000001 ret=7b8f337e
7939.627:0030:0038:Call PE DLL (proc=7B9B7710,module=7B9A0000 L"ucrtbase.dll",reason=THREAD_DETACH,res=00000000)
7939.627:0030:0034:Call ntdll.RtlLeaveCriticalSection(7b911240) ret=7b8f338b
7939.627:0030:0038:trace:msvcrt:DllMain (7B9A0000, DLL_THREAD_DETACH, 00000000) pid(30), tid(38), tls(2)
7939.627:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8f338b
7939.627:0030:0038:Call KERNEL32.TlsGetValue(00000002) ret=7b9b7436
7939.627:0030:0034:Ret  rpcrt4.RpcMgmtStopServerListening() retval=00000000 ret=00401303
7939.627:0030:0038:Call kernelbase.TlsGetValue(00000002) ret=7bf3cfb4
7939.627:0030:0034:Call rpcrt4.RpcServerUnregisterIf(0040eb20,00000000,00000001) ret=00401322
7939.627:0030:0038:Ret  kernelbase.TlsGetValue() retval=00000000 ret=7bf3cfb4
7939.627:0030:0038:Ret  KERNEL32.TlsGetValue() retval=00000000 ret=7b9b7436
7939.627:0030:0034:trace:rpc:RpcServerUnregisterIf (IfSpec == (RPC_IF_HANDLE)^0040EB20 ({367abb81-9844-35f1-ad32-98f038001003}), MgrTypeUuid == (null), WaitForCallsToComplete == 1)
7939.627:0030:0038:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7b9b74c0
7939.627:0030:0034:Call ntdll.RtlEnterCriticalSection(7b911280) ret=7b8f5ef6
7939.627:0030:0038:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7939.627:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8f5ef6
7939.627:0030:0038:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7939.627:0030:0034:Call ucrtbase.memcmp(0040eb24,0040eb24,00000014) ret=7b8f5f2a
7939.627:0030:0038:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7b9b74c0
7939.627:0030:0034:Ret  ucrtbase.memcmp() retval=00000000 ret=7b8f5f2a
7939.627:0030:0038:trace:msvcrt:DllMain finished thread free
7939.627:0030:0034:trace:rpc:UuidEqual ((null),{00000000-0000-0000-0000-000000000000})
7939.627:0030:0038:Ret  PE DLL (proc=7B9B7710,module=7B9A0000 L"ucrtbase.dll",reason=THREAD_DETACH,res=00000000) retval=1
7939.627:0030:0034:trace:rpc:UuidCompare ((null),{00000000-0000-0000-0000-000000000000})
7939.627:0030:0038:Call PE DLL (proc=7BADAF70,module=7BAD0000 L"msvcrt.dll",reason=THREAD_DETACH,res=00000000)
7939.627:0030:0034:trace:rpc:RpcServerUnregisterIf unregistering cif 00621F30
7939.627:0030:0038:trace:msvcrt:DllMain (7BAD0000, DLL_THREAD_DETACH, 00000000) pid(30), tid(38), tls(1)
7939.627:0030:0034:Call ntdll.RtlLeaveCriticalSection(7b911280) ret=7b8f613c
7939.627:0030:0038:Call KERNEL32.TlsGetValue(00000001) ret=7badac86
7939.627:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8f613c
7939.627:0030:0038:Call kernelbase.TlsGetValue(00000001) ret=7bf3cfb4
7939.627:0030:0034:Call ucrtbase.free(00621f30) ret=7b8f6146
7939.627:0030:0038:Ret  kernelbase.TlsGetValue() retval=00000000 ret=7bf3cfb4
7939.627:0030:0034:Call KERNEL32.HeapFree(00240000,00000000,00621f30) ret=7b9f6857
7939.627:0030:0038:Ret  KERNEL32.TlsGetValue() retval=00000000 ret=7badac86
7939.627:0030:0034:Call ntdll.RtlFreeHeap(00240000,00000000,00621f30) ret=7bf3cfb4
7939.627:0030:0038:Call KERNEL32.HeapFree(00240000,00000000,00000000) ret=7badad10
7939.627:0030:0038:Call ntdll.RtlFreeHeap(00240000,00000000,00000000) ret=7bf3cfb4
7939.627:0030:0038:Ret  ntdll.RtlFreeHeap() retval=7bf54301 ret=7bf3cfb4
7939.627:0030:0038:Ret  KERNEL32.HeapFree() retval=7bf54301 ret=7badad10
7939.627:0030:0038:trace:msvcrt:DllMain finished thread free
7939.627:0030:0038:Ret  PE DLL (proc=7BADAF70,module=7BAD0000 L"msvcrt.dll",reason=THREAD_DETACH,res=00000000) retval=1
7939.627:0030:0038:trace:sync:RtlWaitOnAddress addr 00240088 cmp 7BFB1794 size 0x4 timeout fffffffffd050f80
7939.627:0030:0038:SysCall  NtWaitForAlertByThreadId(00000000,00d8fdf8)
7939.627:0030:0034:trace:sync:RtlWakeAddressSingle 00240088
7939.627:0030:0038:trace:sync:NtWaitForAlertByThreadId (nil) -5.0000000
7939.627:0030:0034:SysCall  NtAlertThreadByThreadId(00000038)
7939.627:0030:0034:trace:sync:NtAlertThreadByThreadId 0x38
7939.627:0030:0034:SysRet   NtAlertThreadByThreadId() retval=00000000
7939.627:0030:0038:SysRet   NtWaitForAlertByThreadId() retval=00000101
7939.627:0030:0034:trace:sync:RtlWakeAddressSingle 00240088
7939.627:0030:0038:trace:sync:RtlWaitOnAddress returning 0x101
7939.627:0030:0034:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00621F30, return 1, status 0.
7939.627:0030:0034:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bf3cfb4
7939.627:0030:0034:Ret  KERNEL32.HeapFree() retval=00000001 ret=7b9f6857
7939.627:0030:0034:Ret  ucrtbase.free() retval=00000001 ret=7b8f6146
7939.627:0030:0034:Ret  rpcrt4.RpcServerUnregisterIf() retval=00000000 ret=00401322
7939.627:0030:0034:Call rpcrt4.RpcMgmtWaitServerListen() ret=0040132b
7939.627:0030:0034:trace:rpc:RpcMgmtWaitServerListen ()
7939.627:0030:0034:Call ntdll.RtlEnterCriticalSection(7b911240) ret=7b8f34f5
7939.627:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8f34f5
7939.627:0030:0038:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 00640458, return 1, status 0.
7939.627:0030:0034:Call ntdll.RtlLeaveCriticalSection(7b911240) ret=7b8f350e
7939.627:0030:0038:trace:thread:RtlProcessFlsData teb_fls_data 0063FC88, flags 0x2.
7939.627:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8f350e
7939.627:0030:0034:trace:rpc:RpcMgmtWaitServerListen waiting for server calls to finish
7939.627:0030:0034:Call KERNEL32.WaitForSingleObject(00000044,ffffffff) ret=7b8f353c
7939.627:0030:0034:Call kernelbase.WaitForSingleObject(00000044,ffffffff) ret=7bf3cfb4
7939.627:0030:0034:Call ntdll.NtWaitForSingleObject(00000044,00000000,00000000) ret=7bc60a0b
7939.627:0030:0034:SysCall  NtWaitForSingleObject(00000044,00000000,00000000)
7939.627:0030:0038:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0063FC88, return 1, status 0.
7939.627:0030:0034:trace:sync:NtWaitForSingleObject handle 0x44, alertable 0, timeout (infinite)
7939.627:0030:0038:SysCall  NtTerminateThread(fffffffe,00000000)
0034: select( flags=2, cookie=0021ecc4, timeout=infinite, size=8, prev_apc=0000, result={}, data={WAIT,handles={0044}}, contexts={} )
0034: select() = 0 { apc_handle=0000, signaled=1, call={}, contexts={} }
0038: terminate_thread( handle=fffffffe, exit_code=0 )
0038: terminate_thread() = 0 { self=1 }
7939.630:0030:0034:trace:sync:NtWaitForSingleObject -> 0
7939.630:0030:0034:SysRet   NtWaitForSingleObject() retval=00000000
0038: select( flags=2, cookie=00b8e0e4, timeout=0, size=0, prev_apc=0000, result={}, data={}, contexts={} )
7939.630:0030:0034:Ret  ntdll.NtWaitForSingleObject() retval=00000000 ret=7bc60a0b
0038: select() = TIMEOUT { apc_handle=0000, signaled=1, call={}, contexts={} }
7939.630:0030:0034:Ret  kernelbase.WaitForSingleObject() retval=00000000 ret=7bf3cfb4
7939.630:0030:0034:Ret  KERNEL32.WaitForSingleObject() retval=00000000 ret=7b8f353c
7939.630:0030:0034:trace:rpc:RpcMgmtWaitServerListen done waiting
7939.630:0030:0038:trace:virtual:NtFreeVirtualMemory 0xffffffff 0xe90000 00000000 8000
7939.630:0030:0034:Call ntdll.RtlEnterCriticalSection(7b911240) ret=7b8f3559
7939.630:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8f3559
7939.630:0030:0034:Call ntdll.RtlEnterCriticalSection(7b911280) ret=7b8f3570
7939.630:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b8f3570
7939.630:0030:0034:Call ntdll.RtlLeaveCriticalSection(7b911280) ret=7b8f3611
7939.630:0030:0038:trace:virtual_ranges:free_ranges_remove_view 0xe90000 - 0x1090000, aligned 0xe90000 - 0x1090000.
7939.630:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8f3611
7939.630:0030:0038:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
7939.630:0030:0034:Call KERNEL32.CloseHandle(00000044) ret=7b8f36c3
7939.630:0030:0038:trace:virtual_ranges:dump_free_ranges 0xe90000 - 0x7fde0000.
7939.630:0030:0034:Call kernelbase.CloseHandle(00000044) ret=7bf3cfb4
7939.630:0030:0038:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7939.630:0030:0034:Call ntdll.NtClose(00000044) ret=7bbfec22
7939.630:0030:0038:trace:virtual:NtFreeVirtualMemory 0xffffffff 0xd90000 00000000 8000
7939.630:0030:0034:SysCall  NtClose(00000044)
7939.630:0030:0038:trace:virtual_ranges:free_ranges_remove_view 0xd90000 - 0xe90000, aligned 0xd90000 - 0xe90000.
0034: close_handle( handle=0044 )
7939.631:0030:0038:trace:virtual_ranges:dump_free_ranges (nil) - 0x110000.
0034: close_handle() = 0
7939.631:0030:0038:trace:virtual_ranges:dump_free_ranges 0xd90000 - 0x7fde0000.
7939.631:0030:0038:trace:virtual_ranges:dump_free_ranges 0x7fff0000 - 0xffffffff.
7939.631:0030:0034:SysRet   NtClose() retval=00000000
0038: *killed* exit_code=0
7939.631:0030:0034:Ret  ntdll.NtClose() retval=00000000 ret=7bbfec22
7939.631:0030:0034:Ret  kernelbase.CloseHandle() retval=00000001 ret=7bf3cfb4
7939.631:0030:0034:Ret  KERNEL32.CloseHandle() retval=00000001 ret=7b8f36c3
7939.631:0030:0034:Call ntdll.RtlLeaveCriticalSection(7b911240) ret=7b8f362a
7939.631:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b8f362a
7939.631:0030:0034:Ret  rpcrt4.RpcMgmtWaitServerListen() retval=00000000 ret=0040132b
7939.631:0030:0034:Call ntdll.TpReleaseCleanupGroupMembers(0063f340,00000001,00000000) ret=00401349
7939.631:0030:0034:trace:threadpool:TpReleaseCleanupGroupMembers 0063F340 1 00000000
7939.631:0030:0034:Ret  ntdll.TpReleaseCleanupGroupMembers() retval=0061fa64 ret=00401349
7939.631:0030:0034:Call ntdll.TpReleaseCleanupGroup(0063f340) ret=0040135a
7939.631:0030:0034:trace:threadpool:TpReleaseCleanupGroup 0063F340
7939.631:0030:0034:trace:threadpool:tp_group_release destroying group 0063F340
7939.631:0030:0034:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0063F398, return 1, status 0.
7939.631:0030:0034:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0063F340, return 1, status 0.
7939.631:0030:0034:Ret  ntdll.TpReleaseCleanupGroup() retval=00000001 ret=0040135a
7939.631:0030:0034:Call KERNEL32.CloseHandle(00000058) ret=00401369
7939.631:0030:0034:Call kernelbase.CloseHandle(00000058) ret=7bf3cfb4
7939.631:0030:0034:Call ntdll.NtClose(00000058) ret=7bbfec22
7939.631:0030:0034:SysCall  NtClose(00000058)
0034: close_handle( handle=0058 )
0034: close_handle() = 0
7939.633:0030:0034:SysRet   NtClose() retval=00000000
7939.633:0030:0034:Ret  ntdll.NtClose() retval=00000000 ret=7bbfec22
7939.633:0030:0034:Ret  kernelbase.CloseHandle() retval=00000001 ret=7bf3cfb4
7939.633:0030:0034:Ret  KERNEL32.CloseHandle() retval=00000001 ret=00401369
7939.633:0030:0034:Call advapi32.RegCloseKey(00000038) ret=0040a551
7939.633:0030:0034:Call kernelbase.RegCloseKey(00000038) ret=7bf3cfb4
7939.633:0030:0034:Call ntdll.NtClose(00000038) ret=7bc3cde9
7939.633:0030:0034:SysCall  NtClose(00000038)
0034: close_handle( handle=0038 )
0034: close_handle() = 0
7939.633:0030:0034:SysRet   NtClose() retval=00000000
7939.633:0030:0034:Ret  ntdll.NtClose() retval=00000000 ret=7bc3cde9
7939.633:0030:0034:Call ntdll.RtlNtStatusToDosError(00000000) ret=7bf3cfb4
7939.633:0030:0034:Ret  ntdll.RtlNtStatusToDosError() retval=00000000 ret=7bf3cfb4
7939.633:0030:0034:Ret  kernelbase.RegCloseKey() retval=00000000 ret=7bf3cfb4
7939.633:0030:0034:Ret  advapi32.RegCloseKey() retval=00000000 ret=0040a551
7939.633:0030:0034:Call ntdll.RtlDeleteCriticalSection(0063f1f8) ret=0040a568
7939.633:0030:0034:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0063F228, return 1, status 0.
7939.633:0030:0034:Ret  ntdll.RtlDeleteCriticalSection() retval=00000000 ret=0040a568
7939.633:0030:0034:Call ucrtbase.free(0063f1e0) ret=0040a574
7939.633:0030:0034:Call KERNEL32.HeapFree(00240000,00000000,0063f1e0) ret=7b9f6857
7939.633:0030:0034:Call ntdll.RtlFreeHeap(00240000,00000000,0063f1e0) ret=7bf3cfb4
7939.633:0030:0034:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 0063F1E0, return 1, status 0.
7939.633:0030:0034:Ret  ntdll.RtlFreeHeap() retval=00000001 ret=7bf3cfb4
7939.633:0030:0034:Ret  KERNEL32.HeapFree() retval=00000001 ret=7b9f6857
7939.633:0030:0034:Ret  ucrtbase.free() retval=00000001 ret=0040a574
7939.633:0030:0034:trace:service:main services.exe exited with code 0
7939.633:0030:0034:Call ucrtbase.exit(00000000) ret=00402c3d
7939.633:0030:0034:trace:msvcrt:exit (0)
7939.633:0030:0034:trace:msvcrt:_cexit (void)
7939.633:0030:0034:trace:msvcrt:_lock (13)
7939.633:0030:0034:trace:msvcrt:_lock (17)
7939.633:0030:0034:Call ntdll.RtlEnterCriticalSection(7ba6e320) ret=7b9cdd3a
7939.633:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7939.633:0030:0034:trace:msvcrt:_lock : creating lock #13
7939.633:0030:0034:Call KERNEL32.InitializeCriticalSectionEx(7ba6e2b0,00000000,10000000) ret=7b9cddb4
7939.633:0030:0034:Call kernelbase.InitializeCriticalSectionEx(7ba6e2b0,00000000,10000000) ret=7bf3cfb4
7939.633:0030:0034:Call ntdll.RtlInitializeCriticalSectionEx(7ba6e2b0,00000000,10000000) ret=7bc26472
7939.633:0030:0034:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 0063F458, status 0.
7939.633:0030:0034:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7939.633:0030:0034:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7939.633:0030:0034:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7b9cddb4
7939.633:0030:0034:trace:msvcrt:_unlock (17)
7939.633:0030:0034:Call ntdll.RtlLeaveCriticalSection(7ba6e320) ret=7b9cddf0
7939.633:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9cddf0
7939.633:0030:0034:Call ntdll.RtlEnterCriticalSection(7ba6e2b0) ret=7b9cdd3a
7939.633:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9cdd3a
7939.633:0030:0034:Call ntdll.RtlEnterCriticalSection(7ba30ea0) ret=7b9f0430
7939.633:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9f0430
7939.633:0030:0034:Call ntdll.RtlLeaveCriticalSection(7ba30ea0) ret=7b9f044b
7939.633:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9f044b
7939.633:0030:0034:trace:msvcrt:_unlock (13)
7939.633:0030:0034:Call ntdll.RtlLeaveCriticalSection(7ba6e2b0) ret=7b9dd35c
7939.633:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9dd35c
7939.633:0030:0034:Call KERNEL32.GetModuleHandleW(7ba37c86 L"mscoree") ret=7b9f04f5
7939.633:0030:0034:Call kernelbase.GetModuleHandleW(7ba37c86 L"mscoree") ret=7bf3cfb4
7939.633:0030:0034:Call ntdll.RtlInitUnicodeString(0061fe1c,7ba37c86 L"mscoree") ret=7bc1b6df
7939.633:0030:0034:Ret  ntdll.RtlInitUnicodeString() retval=7ba37c86 ret=7bc1b6df
7939.633:0030:0034:Call ntdll.LdrGetDllHandleEx(00000001,00000000,00000000,0061fe1c,0061fe18) ret=7bc1b705
7939.633:0030:0034:trace:module:LdrGetDllHandleEx flags 0x1, load_path 00000000, dll_characteristics 00000000, name 0061FE1C, base 0061FE18.
7939.633:0030:0034:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x18, return 006359F8, status 0.
7939.633:0030:0034:trace:actctx:RtlFindActivationContextSectionString 00000001 (null) 2 L"mscoree.dll" 0061FCDC
7939.633:0030:0034:trace:module:find_dll_file Skipping file search for L"mscoree.dll".
7939.633:0030:0034:trace:heap:RtlFreeHeap handle 00240000, flags 0, ptr 006359F8, return 1, status 0.
7939.633:0030:0034:trace:module:LdrGetDllHandleEx L"mscoree" -> 00000000 (load path (null))
7939.633:0030:0034:Ret  ntdll.LdrGetDllHandleEx() retval=c0000135 ret=7bc1b705
7939.633:0030:0034:Call ntdll.RtlNtStatusToDosError(c0000135) ret=7bc1b721
7939.633:0030:0034:Ret  ntdll.RtlNtStatusToDosError() retval=0000007e ret=7bc1b721
7939.633:0030:0034:Ret  kernelbase.GetModuleHandleW() retval=00000000 ret=7bf3cfb4
7939.633:0030:0034:Ret  KERNEL32.GetModuleHandleW() retval=00000000 ret=7b9f04f5
7939.633:0030:0034:Call KERNEL32.ExitProcess(00000000) ret=7b9f0520
7939.633:0030:0034:Call ntdll.RtlExitUserProcess(00000000) ret=7bebfae6
7939.633:0030:0034:SysCall  NtTerminateProcess(00000000,00000000)
0034: terminate_process( handle=0000, exit_code=0 )
0034: terminate_process() = 0 { self=1 }
7939.636:0030:0034:SysRet   NtTerminateProcess() retval=00000000
7939.636:0030:0034:trace:module:LdrShutdownProcess ()
7939.636:0030:0034:trace:thread:RtlProcessFlsData teb_fls_data 00638A00, flags 0x1.
7939.636:0030:0034:Call PE DLL (proc=7B7F2470,module=7B7F0000 L"userenv.dll",reason=PROCESS_DETACH,res=00000001)
7939.636:0030:0034:Ret  PE DLL (proc=7B7F2470,module=7B7F0000 L"userenv.dll",reason=PROCESS_DETACH,res=00000001) retval=1
7939.636:0030:0034:Call PE DLL (proc=7B81AC70,module=7B810000 L"setupapi.dll",reason=PROCESS_DETACH,res=00000001)
7939.636:0030:0034:Ret  PE DLL (proc=7B81AC70,module=7B810000 L"setupapi.dll",reason=PROCESS_DETACH,res=00000001) retval=1
7939.636:0030:0034:Call PE DLL (proc=7B8D3B00,module=7B8C0000 L"rpcrt4.dll",reason=PROCESS_DETACH,res=00000001)
7939.636:0030:0034:Ret  PE DLL (proc=7B8D3B00,module=7B8C0000 L"rpcrt4.dll",reason=PROCESS_DETACH,res=00000001) retval=1
7939.636:0030:0034:Call PE DLL (proc=7B8A18C0,module=7B8A0000 L"cryptbase.dll",reason=PROCESS_DETACH,res=00000001)
7939.636:0030:0034:Ret  PE DLL (proc=7B8A18C0,module=7B8A0000 L"cryptbase.dll",reason=PROCESS_DETACH,res=00000001) retval=1
7939.636:0030:0034:Call PE DLL (proc=7BBB0480,module=7BBA0000 L"advapi32.dll",reason=PROCESS_DETACH,res=00000001)
7939.636:0030:0034:Ret  PE DLL (proc=7BBB0480,module=7BBA0000 L"advapi32.dll",reason=PROCESS_DETACH,res=00000001) retval=1
7939.636:0030:0034:Call PE DLL (proc=7BAA4EC0,module=7BAA0000 L"sechost.dll",reason=PROCESS_DETACH,res=00000001)
7939.636:0030:0034:Ret  PE DLL (proc=7BAA4EC0,module=7BAA0000 L"sechost.dll",reason=PROCESS_DETACH,res=00000001) retval=1
7939.636:0030:0034:Call PE DLL (proc=7B9B7710,module=7B9A0000 L"ucrtbase.dll",reason=PROCESS_DETACH,res=00000001)
7939.636:0030:0034:trace:msvcrt:DllMain (7B9A0000, DLL_PROCESS_DETACH, 00000001) pid(30), tid(34), tls(2)
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7ba30f00) ret=7b9fdecb
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9fdecb
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7ba6d160) ret=7b9fdf36
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9fdf36
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7ba6d160) ret=7b9fdf4b
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9fdf4b
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7ba6d198) ret=7b9fdf36
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9fdf36
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7ba6d198) ret=7b9fdf4b
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9fdf4b
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7ba6d1d0) ret=7b9fdf36
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7b9fdf36
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7ba6d1d0) ret=7b9fdf4b
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9fdf4b
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7ba30f00) ret=7b9fdf8d
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7b9fdf8d
7939.636:0030:0034:trace:msvcrt:msvcrt_flush_all_buffers :flushed (3) handles
7939.636:0030:0034:Ret  PE DLL (proc=7B9B7710,module=7B9A0000 L"ucrtbase.dll",reason=PROCESS_DETACH,res=00000001) retval=1
7939.636:0030:0034:Call PE DLL (proc=7BADAF70,module=7BAD0000 L"msvcrt.dll",reason=PROCESS_DETACH,res=00000001)
7939.636:0030:0034:trace:msvcrt:DllMain (7BAD0000, DLL_PROCESS_DETACH, 00000001) pid(30), tid(34), tls(1)
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7bb46d80) ret=7bb16faa
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bb16faa
7939.636:0030:0034:trace:msvcrt:_lock (28)
7939.636:0030:0034:trace:msvcrt:_lock (17)
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7bb71f00) ret=7baed55a
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7939.636:0030:0034:trace:msvcrt:_lock : creating lock #28
7939.636:0030:0034:Call KERNEL32.InitializeCriticalSectionEx(7bb72034,00000000,10000000) ret=7baed5d4
7939.636:0030:0034:Call kernelbase.InitializeCriticalSectionEx(7bb72034,00000000,10000000) ret=7bf3cfb4
7939.636:0030:0034:Call ntdll.RtlInitializeCriticalSectionEx(7bb72034,00000000,10000000) ret=7bc26472
7939.636:0030:0034:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 0063F498, status 0.
7939.636:0030:0034:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7939.636:0030:0034:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7939.636:0030:0034:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7baed5d4
7939.636:0030:0034:trace:msvcrt:_unlock (17)
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7bb71f00) ret=7baed610
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7baed610
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7bb72034) ret=7baed55a
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7939.636:0030:0034:trace:msvcrt:_unlock (28)
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7bb72034) ret=7bafbdfc
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bafbdfc
7939.636:0030:0034:trace:msvcrt:_lock (29)
7939.636:0030:0034:trace:msvcrt:_lock (17)
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7bb71f00) ret=7baed55a
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7939.636:0030:0034:trace:msvcrt:_lock : creating lock #29
7939.636:0030:0034:Call KERNEL32.InitializeCriticalSectionEx(7bb72050,00000000,10000000) ret=7baed5d4
7939.636:0030:0034:Call kernelbase.InitializeCriticalSectionEx(7bb72050,00000000,10000000) ret=7bf3cfb4
7939.636:0030:0034:Call ntdll.RtlInitializeCriticalSectionEx(7bb72050,00000000,10000000) ret=7bc26472
7939.636:0030:0034:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 0063F4D8, status 0.
7939.636:0030:0034:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7939.636:0030:0034:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7939.636:0030:0034:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7baed5d4
7939.636:0030:0034:trace:msvcrt:_unlock (17)
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7bb71f00) ret=7baed610
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7baed610
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7bb72050) ret=7baed55a
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7939.636:0030:0034:trace:msvcrt:_unlock (29)
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7bb72050) ret=7bafbdfc
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bafbdfc
7939.636:0030:0034:trace:msvcrt:_lock (30)
7939.636:0030:0034:trace:msvcrt:_lock (17)
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7bb71f00) ret=7baed55a
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7939.636:0030:0034:trace:msvcrt:_lock : creating lock #30
7939.636:0030:0034:Call KERNEL32.InitializeCriticalSectionEx(7bb7206c,00000000,10000000) ret=7baed5d4
7939.636:0030:0034:Call kernelbase.InitializeCriticalSectionEx(7bb7206c,00000000,10000000) ret=7bf3cfb4
7939.636:0030:0034:Call ntdll.RtlInitializeCriticalSectionEx(7bb7206c,00000000,10000000) ret=7bc26472
7939.636:0030:0034:trace:heap:RtlAllocateHeap handle 00240000, flags 0, size 0x20, return 0063F518, status 0.
7939.636:0030:0034:Ret  ntdll.RtlInitializeCriticalSectionEx() retval=00000000 ret=7bc26472
7939.636:0030:0034:Ret  kernelbase.InitializeCriticalSectionEx() retval=00000001 ret=7bf3cfb4
7939.636:0030:0034:Ret  KERNEL32.InitializeCriticalSectionEx() retval=00000001 ret=7baed5d4
7939.636:0030:0034:trace:msvcrt:_unlock (17)
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7bb71f00) ret=7baed610
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7baed610
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7bb7206c) ret=7baed55a
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7baed55a
7939.636:0030:0034:trace:msvcrt:_unlock (30)
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7bb7206c) ret=7bafbdfc
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bafbdfc
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7bb46d80) ret=7bb17045
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bb17045
7939.636:0030:0034:trace:msvcrt:msvcrt_flush_all_buffers :flushed (3) handles
7939.636:0030:0034:Ret  PE DLL (proc=7BADAF70,module=7BAD0000 L"msvcrt.dll",reason=PROCESS_DETACH,res=00000001) retval=1
7939.636:0030:0034:Call PE DLL (proc=7BEC4BC0,module=7BEB0000 L"kernel32.dll",reason=PROCESS_DETACH,res=00000001)
7939.636:0030:0034:Call ntdll.RtlEnterCriticalSection(7bee1100) ret=7bed69f8
7939.636:0030:0034:Ret  ntdll.RtlEnterCriticalSection() retval=00000000 ret=7bed69f8
7939.636:0030:0034:Call ntdll.RtlLeaveCriticalSection(7bee1100) ret=7bed6a2c
7939.636:0030:0034:Ret  ntdll.RtlLeaveCriticalSection() retval=00000000 ret=7bed6a2c
7939.636:0030:0034:Ret  PE DLL (proc=7BEC4BC0,module=7BEB0000 L"kernel32.dll",reason=PROCESS_DETACH,res=00000001) retval=1
7939.636:0030:0034:Call PE DLL (proc=7BC08010,module=7BBF0000 L"kernelbase.dll",reason=PROCESS_DETACH,res=00000001)
7939.636:0030:0034:Ret  PE DLL (proc=7BC08010,module=7BBF0000 L"kernelbase.dll",reason=PROCESS_DETACH,res=00000001) retval=1
7939.636:0030:0034:Call PE DLL (proc=7BF40A40,module=7BF30000 L"ntdll.dll",reason=PROCESS_DETACH,res=00000001)
7939.636:0030:0034:Ret  PE DLL (proc=7BF40A40,module=7BF30000 L"ntdll.dll",reason=PROCESS_DETACH,res=00000001) retval=1
7939.636:0030:0034:SysCall  NtTerminateProcess(ffffffff,00000000)
0034: terminate_process( handle=ffffffff, exit_code=0 )
0034: terminate_process() = 0 { self=1 }
0034: *killed* exit_code=0
0030: *process killed*
wineserver: exiting (pid=2372)
