[/code]0x10f80f29 EntryPoint+0xffffffff in libcef: int $3
Modules:
Module Address Debug info Name (173 modules)
PE 400000- 48e000 Export evernotesubprocess
PE 1c20000- 1c93000 Deferred chrome_elf
PE 10000000-13fe6000 Export libcef
ELF 7a800000-7a93e000 Deferred opengl32<elf>
-PE 7a820000-7a93e000 \ opengl32
ELF 7b400000-7b7fa000 Dwarf kernel32<elf>
-PE 7b420000-7b7fa000 \ kernel32
ELF 7baf8000-7bb1d000 Deferred libgpg-error.so.0
ELF 7bb1d000-7bc00000 Deferred libgcrypt.so.20
ELF 7bc00000-7bd24000 Deferred ntdll<elf>
-PE 7bc40000-7bd24000 \ ntdll
ELF 7bd2a000-7bd4a000 Deferred liblz4.so.1
ELF 7bd4a000-7bd76000 Deferred liblzma.so.5
ELF 7bd76000-7be21000 Deferred libsystemd.so.0
ELF 7be21000-7be80000 Deferred libdbus-1.so.3
ELF 7be80000-7be90000 Deferred libkrb5support.so.0
ELF 7be90000-7bec7000 Deferred libk5crypto.so.3
ELF 7bec7000-7bfaa000 Deferred libkrb5.so.3
ELF 7bfaa000-7c000000 Deferred libgssapi_krb5.so.2
ELF 7c000000-7c003000 Deferred <wine-loader>
ELF 7c00a000-7c020000 Deferred libavahi-client.so.3
ELF 7c020000-7c030000 Deferred libavahi-common.so.3
ELF 7c030000-7c0c6000 Deferred libcups.so.2
ELF 7c0d6000-7c0ef000 Deferred kerberos<elf>
-PE 7c0e0000-7c0ef000 \ kerberos
ELF 7c0ef000-7c168000 Deferred wineps<elf>
-PE 7c110000-7c168000 \ wineps
ELF 7c168000-7c17b000 Deferred api-ms-win-core-localization-obsolete-l1-2-0<elf>
-PE 7c170000-7c17b000 \ api-ms-win-core-localization-obsolete-l1-2-0
ELF 7c27b000-7c400000 Deferred libunistring.so.2
ELF 7c40e000-7c421000 Deferred api-ms-win-core-datetime-l1-1-1<elf>
-PE 7c410000-7c421000 \ api-ms-win-core-datetime-l1-1-1
ELF 7c421000-7c434000 Deferred api-ms-win-core-string-l1-1-0<elf>
-PE 7c430000-7c434000 \ api-ms-win-core-string-l1-1-0
ELF 7c434000-7c4c3000 Deferred libgmp.so.10
ELF 7c4c3000-7c4fc000 Deferred libhogweed.so.4
ELF 7c4fc000-7c53b000 Deferred libnettle.so.6
ELF 7c53b000-7c68b000 Deferred libp11-kit.so.0
ELF 7c68b000-7c866000 Deferred libgnutls.so.30
ELF 7c866000-7c9b5000 Deferred libx11.so.6
ELF 7ca1a000-7ca20000 Deferred libkeyutils.so.1
ELF 7ca20000-7ca33000 Deferred api-ms-win-core-localization-l1-2-1<elf>
-PE 7ca30000-7ca33000 \ api-ms-win-core-localization-l1-2-1
ELF 7ca33000-7ca3d000 Deferred libffi.so.6
ELF 7ca3d000-7ca52000 Deferred libtasn1.so.6
ELF 7ca55000-7ca68000 Deferred api-ms-win-core-fibers-l1-1-1<elf>
-PE 7ca60000-7ca68000 \ api-ms-win-core-fibers-l1-1-1
ELF 7ca68000-7ca7b000 Deferred api-ms-win-core-synch-l1-2-0<elf>
-PE 7ca70000-7ca7b000 \ api-ms-win-core-synch-l1-2-0
ELF 7ca7b000-7ca82000 Deferred libxfixes.so.3
ELF 7ca82000-7ca8f000 Deferred libxcursor.so.1
ELF 7ca8f000-7caa2000 Deferred libxi.so.6
ELF 7caa2000-7caa6000 Deferred libxcomposite.so.1
ELF 7caa6000-7cab3000 Deferred libxrandr.so.2
ELF 7cab3000-7cabf000 Deferred libxrender.so.1
ELF 7cabf000-7cac6000 Deferred libxxf86vm.so.1
ELF 7cac6000-7cacb000 Deferred libxinerama.so.1
ELF 7cacb000-7caea000 Deferred libbsd.so.0
ELF 7caea000-7caf1000 Deferred libxdmcp.so.6
ELF 7caf1000-7caf6000 Deferred libxau.so.6
ELF 7caf6000-7cb24000 Deferred libxcb.so.1
ELF 7cb24000-7cb39000 Deferred libxext.so.6
ELF 7cb39000-7cb3e000 Deferred libcom_err.so.2
ELF 7cb3e000-7cb5e000 Deferred libidn2.so.0
ELF 7cb62000-7cbf2000 Deferred winex11<elf>
-PE 7cb70000-7cbf2000 \ winex11
ELF 7cc36000-7cc71000 Deferred libexpat.so.1
ELF 7cc71000-7ccbe000 Deferred libfontconfig.so.1
ELF 7ccbe000-7ccfd000 Deferred libpng16.so.16
ELF 7ccfd000-7cdc0000 Deferred libfreetype.so.6
ELF 7cde9000-7ce00000 Deferred wtsapi32<elf>
-PE 7cdf0000-7ce00000 \ wtsapi32
ELF 7ce00000-7ce16000 Deferred dxva2<elf>
-PE 7ce10000-7ce16000 \ dxva2
ELF 7ce16000-7ce4c000 Deferred dxgi<elf>
-PE 7ce20000-7ce4c000 \ dxgi
ELF 7ce4c000-7ceb9000 Deferred d3d11<elf>
-PE 7ce50000-7ceb9000 \ d3d11
ELF 7ceb9000-7d008000 Deferred wined3d<elf>
-PE 7ced0000-7d008000 \ wined3d
ELF 7d008000-7d048000 Deferred d3d9<elf>
-PE 7d010000-7d048000 \ d3d9
ELF 7d048000-7d0b2000 Deferred dwrite<elf>
-PE 7d050000-7d0b2000 \ dwrite
ELF 7d0b2000-7d0cf000 Deferred jsproxy<elf>
-PE 7d0c0000-7d0cf000 \ jsproxy
ELF 7d0cf000-7d10d000 Deferred winhttp<elf>
-PE 7d0e0000-7d10d000 \ winhttp
ELF 7d10d000-7d135000 Deferred mpr<elf>
-PE 7d110000-7d135000 \ mpr
ELF 7d135000-7d1b1000 Deferred wininet<elf>
-PE 7d140000-7d1b1000 \ wininet
ELF 7d1b1000-7d24e000 Deferred urlmon<elf>
-PE 7d1c0000-7d24e000 \ urlmon
ELF 7d24e000-7d283000 Deferred secur32<elf>
-PE 7d250000-7d283000 \ secur32
ELF 7d283000-7d29b000 Deferred ncrypt<elf>
-PE 7d290000-7d29b000 \ ncrypt
ELF 7d29b000-7d2b0000 Deferred dhcpcsvc<elf>
-PE 7d2a0000-7d2b0000 \ dhcpcsvc
ELF 7d2b0000-7d3ac000 Deferred cryptui<elf>
-PE 7d2c0000-7d3ac000 \ cryptui
ELF 7d3ac000-7d3cb000 Deferred libz.so.1
ELF 7d3de000-7d3f4000 Deferred dwmapi<elf>
-PE 7d3e0000-7d3f4000 \ dwmapi
ELF 7d3f4000-7d458000 Deferred dbghelp<elf>
-PE 7d400000-7d458000 \ dbghelp
ELF 7d458000-7d498000 Deferred winspool<elf>
-PE 7d460000-7d498000 \ winspool
ELF 7d498000-7d58d000 Deferred comdlg32<elf>
-PE 7d4a0000-7d58d000 \ comdlg32
ELF 7d58d000-7d5a5000 Deferred hid<elf>
-PE 7d590000-7d5a5000 \ hid
ELF 7d5a5000-7d5c6000 Deferred bcrypt<elf>
-PE 7d5b0000-7d5c6000 \ bcrypt
ELF 7d5c6000-7d694000 Deferred crypt32<elf>
-PE 7d5d0000-7d694000 \ crypt32
ELF 7d694000-7d6c9000 Deferred wintrust<elf>
-PE 7d6a0000-7d6c9000 \ wintrust
ELF 7d6c9000-7d72f000 Deferred oleacc<elf>
-PE 7d6d0000-7d72f000 \ oleacc
ELF 7d72f000-7d746000 Deferred userenv<elf>
-PE 7d730000-7d746000 \ userenv
ELF 7d746000-7d78b000 Deferred usp10<elf>
-PE 7d750000-7d78b000 \ usp10
ELF 7d78b000-7d8c9000 Deferred comctl32<elf>
-PE 7d790000-7d8c9000 \ comctl32
ELF 7d8c9000-7d8e2000 Deferred libresolv.so.2
ELF 7d8e8000-7d90b000 Deferred imm32<elf>
-PE 7d8f0000-7d90b000 \ imm32
ELF 7d90b000-7d934000 Deferred iphlpapi<elf>
-PE 7d910000-7d934000 \ iphlpapi
ELF 7d934000-7d963000 Deferred netapi32<elf>
-PE 7d940000-7d963000 \ netapi32
ELF 7d963000-7d99a000 Deferred ws2_32<elf>
-PE 7d970000-7d99a000 \ ws2_32
ELF 7d99a000-7da52000 Deferred winmm<elf>
-PE 7d9a0000-7da52000 \ winmm
ELF 7da52000-7da75000 Deferred shcore<elf>
-PE 7da60000-7da75000 \ shcore
ELF 7da75000-7dae2000 Deferred shlwapi<elf>
-PE 7da80000-7dae2000 \ shlwapi
ELF 7dae2000-7e4a4000 Deferred shell32<elf>
-PE 7daf0000-7e4a4000 \ shell32
ELF 7e4a4000-7e4b7000 Deferred psapi<elf>
-PE 7e4b0000-7e4b7000 \ psapi
ELF 7e4b7000-7e5e5000 Deferred oleaut32<elf>
-PE 7e4d0000-7e5e5000 \ oleaut32
ELF 7e5e5000-7e669000 Deferred rpcrt4<elf>
-PE 7e5f0000-7e669000 \ rpcrt4
ELF 7e669000-7e682000 Deferred version<elf>
-PE 7e670000-7e682000 \ version
ELF 7e682000-7e889000 Deferred user32<elf>
-PE 7e6a0000-7e889000 \ user32
ELF 7e889000-7e9df000 Deferred ole32<elf>
-PE 7e8a0000-7e9df000 \ ole32
ELF 7e9df000-7eb0f000 Deferred gdi32<elf>
-PE 7e9f0000-7eb0f000 \ gdi32
ELF 7eb0f000-7eb8a000 Deferred advapi32<elf>
-PE 7eb20000-7eb8a000 \ advapi32
ELF 7eb8a000-7eb9f000 Deferred libnss_files.so.2
ELF 7eec7000-7efcd000 Deferred libm.so.6
ELF 7efcd000-7efd7000 Deferred librt.so.1
ELF 7efdc000-7efe6000 Deferred libuuid.so.1
ELF 7efed000-7f000000 Deferred wow64cpu<elf>
-PE 7eff0000-7f000000 \ wow64cpu
ELF f7a68000-f7b20000 Deferred msvcrt<elf>
-PE f7a80000-f7b20000 \ msvcrt
ELF f7b23000-f7b29000 Deferred libdl.so.2
ELF f7b29000-f7d07000 Deferred libc.so.6
ELF f7d07000-f7d28000 Deferred libpthread.so.0
ELF f7d51000-f7f09000 Dwarf libwine.so.1
ELF f7f0b000-f7f35000 Deferred ld-linux.so.2
Threads:
process tid prio (all id:s are in hex)
0000000c services.exe
0000001e 0
00000019 0
00000011 0
0000000e 0
0000000d 0
0000000f winedevice.exe
00000016 0
00000015 0
00000014 0
00000010 0
00000017 plugplay.exe
0000001b 0
0000001a 0
00000018 0
0000001c winedevice.exe
00000021 0
00000020 0
0000001f 0
0000001d 0
00000026 explorer.exe
0000002a 0
00000029 0
00000028 0
00000027 0
0000002b Evernote.exe
000000fe -1
000000fd 0
000000fc -1
000000fb -1
000000fa 0
000000f9 0
000000f4 0
000000f0 -1
000000d3 0
000000d2 -1
000000cb 0
000000a5 -1
00000092 0
0000008f -1
0000008e -1
0000008d 1
0000008c -1
0000008b -1
0000008a -1
00000088 0
00000087 0
00000086 -1
00000085 -1
00000084 -1
00000083 0
00000082 -1
00000080 0
00000069 0
00000068 0
00000067 0
00000066 0
00000065 0
00000064 0
00000063 0
00000062 0
00000061 -2
00000060 0
0000005f 0
0000005e 0
0000005d -2
0000005c 0
0000005b 0
0000005a 0
00000059 0
00000058 0
00000057 0
00000056 0
00000055 0
00000054 0
00000053 0
00000052 -2
00000051 -2
00000050 0
0000004f 0
0000004e 0
0000004d 0
0000004c 0
0000004b 0
0000004a 0
00000031 -1
00000030 -1
0000002f 0
0000002e 0
0000002d 0
0000002c 0
0000006a EvernoteTray.exe
00000077 0
00000076 0
0000006b 0
0000006c EvernoteClipper.exe
0000007c 0
0000007b 0
0000006d 0
0000006e EvernoteSubprocess.exe
000000dd 0
000000a4 0
000000a3 0
000000a2 0
000000a1 -2
000000a0 0
0000009f 0
0000009e 0
0000009d 0
0000009c 0
0000009b 0
0000009a 0
00000099 0
00000098 0
00000097 0
00000096 -2
00000095 -2
00000094 0
00000093 0
0000006f 0
00000070 EvernoteSubprocess.exe
000000ef 0
000000ee 0
000000d5 0
000000ce 0
000000c0 -2
000000bf 0
000000be 0
000000b1 0
000000b0 0
000000af 0
000000ae 0
000000ad 0
000000ac 0
000000ab 0
000000aa 0
000000a9 -2
000000a8 -2
000000a7 0
000000a6 0
00000071 0
00000072 EvernoteSubprocess.exe
000000f2 0
000000f1 0
000000d9 0
000000d4 0
000000c3 -2
000000c2 0
000000c1 0
000000bd 0
000000bc 0
000000bb 0
000000ba 0
000000b9 0
000000b8 0
000000b7 0
000000b6 0
000000b5 -2
000000b4 -2
000000b3 0
000000b2 0
00000073 0
00000074 (D) C:\Program Files\Yinxiang Biji\Yinxiang Biji\EvernoteSubprocess.exe
000000f3 0
000000dc 0
000000db 0
000000da 0
000000d8 -2
000000d7 0
000000d6 0
000000d1 0
000000d0 0
000000cf 0
000000cd 0
000000cc 0
000000ca 0
000000c9 0
000000c8 0
000000c7 -2
000000c6 -2
000000c5 0
000000c4 0
00000075 0 <==
00000090 EvernoteSubprocess.exe
000000ed 0
000000ec -2
000000eb 0
000000ea 0
000000e9 0
000000e8 0
000000e7 0
000000e6 0
000000e5 0
000000e4 0
000000e3 0
000000e2 0
000000e1 -2
000000e0 -2
000000df 0
000000de 0
00000091 0
000000f5 winedbg.exe
000000f6 0
000000ff EvernoteSubprocess.exe
00000113 0
00000112 0
00000111 0
00000110 0
0000010f -2
0000010e 0
0000010d 0
0000010c 0
0000010b 0
0000010a 0
00000109 0
00000108 0
00000107 0
00000106 0
00000105 0
00000104 -2
00000103 -2
00000102 0
00000101 0
00000100 0
System information:
Wine build: wine-4.0-7676-g27b3bf6
Platform: i386
Version: Windows 7
Host system: Linux
Host version: 4.19.0-kali3-amd64[code]