Re: Processes stacking up in task manager 32-bit Windows 10
Posted: 2022-01-20 02:33
by george_j
Procmon of 9-hanging threads. Hope this may be of value.
"Time of Day","Process Name","PID","Operation","Path","Result","Detail"
"7:43:52.2322186 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 5128"
"7:38:52.0716367 PM","filezilla.exe","3396","Process Start","","SUCCESS","Parent PID: 8056, Command line: ""C:\Program Files\FileZilla FTP Client\filezilla.exe"" , Current directory: C:\Program Files\FileZilla FTP Client\, Environment:
"7:38:52.0716396 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 4796"
"7:38:52.0764214 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\filezilla.exe","SUCCESS","Image Base: 0x320000, Image Size: 0x3e0000"
"7:38:52.0765105 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\ntdll.dll","SUCCESS","Image Base: 0x772b0000, Image Size: 0x19e000"
"7:38:52.0773542 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\kernel32.dll","SUCCESS","Image Base: 0x77210000, Image Size: 0x9b000"
"7:38:52.0775309 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\KernelBase.dll","SUCCESS","Image Base: 0x75720000, Image Size: 0x212000"
"7:38:52.0794577 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 2816"
"7:38:52.0795418 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 8532"
"7:38:52.0796752 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 4056"
"7:38:52.0797940 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\msvcrt.dll","SUCCESS","Image Base: 0x76740000, Image Size: 0xbf000"
"7:38:52.0800278 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\ole32.dll","SUCCESS","Image Base: 0x77120000, Image Size: 0xe3000"
"7:38:52.0802497 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\ucrtbase.dll","SUCCESS","Image Base: 0x755e0000, Image Size: 0x120000"
"7:38:52.0805401 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\libfzclient-commonui-private-3-57-0.dll","SUCCESS","Image Base: 0x6bdf0000, Image Size: 0x90000"
"7:38:52.0805406 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\rpcrt4.dll","SUCCESS","Image Base: 0x76950000, Image Size: 0xc4000"
"7:38:52.0805716 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\libfilezilla-23.dll","SUCCESS","Image Base: 0x684b0000, Image Size: 0x9e000"
"7:38:52.0805925 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\libfzclient-private-3-57-0.dll","SUCCESS","Image Base: 0x57590000, Image Size: 0x1d5000"
"7:38:52.0807809 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\advapi32.dll","SUCCESS","Image Base: 0x76dd0000, Image Size: 0x7b000"
"7:38:52.0808437 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\advapi32.dll","SUCCESS","Image Base: 0x16a0000, Image Size: 0x7b000"
"7:38:52.0808535 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\combase.dll","SUCCESS","Image Base: 0x76b30000, Image Size: 0x281000"
"7:38:52.0809943 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\sechost.dll","SUCCESS","Image Base: 0x76800000, Image Size: 0x76000"
"7:38:52.0810275 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\ws2_32.dll","SUCCESS","Image Base: 0x76080000, Image Size: 0x63000"
"7:38:52.0811409 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\gdi32.dll","SUCCESS","Image Base: 0x76880000, Image Size: 0x23000"
"7:38:52.0813673 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\shell32.dll","SUCCESS","Image Base: 0x75ac0000, Image Size: 0x5b6000"
"7:38:52.0813790 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\win32u.dll","SUCCESS","Image Base: 0x75700000, Image Size: 0x1d000"
"7:38:52.0815889 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\msvcp_win.dll","SUCCESS","Image Base: 0x75260000, Image Size: 0x7b000"
"7:38:52.0815915 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\gdi32full.dll","SUCCESS","Image Base: 0x752e0000, Image Size: 0xdc000"
"7:38:52.0817621 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\wxbase30u_gcc_custom.dll","SUCCESS","Image Base: 0x54850000, Image Size: 0x195000"
"7:38:52.0818754 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\user32.dll","SUCCESS","Image Base: 0x75940000, Image Size: 0x17a000"
"7:38:52.0819593 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\user32.dll","SUCCESS","Image Base: 0x16a0000, Image Size: 0x17a000"
"7:38:52.0819637 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\wxmsw30u_adv_gcc_custom.dll","SUCCESS","Image Base: 0x6bd80000, Image Size: 0x6e000"
"7:38:52.0822145 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\shlwapi.dll","SUCCESS","Image Base: 0x770c0000, Image Size: 0x45000"
"7:38:52.0829812 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\wxmsw30u_core_gcc_custom.dll","SUCCESS","Image Base: 0x79d00000, Image Size: 0x416000"
"7:38:52.0829867 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\wxmsw30u_aui_gcc_custom.dll","SUCCESS","Image Base: 0x68430000, Image Size: 0x72000"
"7:38:52.0830939 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\wxmsw30u_xrc_gcc_custom.dll","SUCCESS","Image Base: 0x5d870000, Image Size: 0xcb000"
"7:38:52.0831813 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\libsqlite3-0.dll","SUCCESS","Image Base: 0x66580000, Image Size: 0x13d000"
"7:38:52.0839663 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\comdlg32.dll","SUCCESS","Image Base: 0x76e50000, Image Size: 0xaf000"
"7:38:52.0842085 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\libgmp-10.dll","SUCCESS","Image Base: 0x6aec0000, Image Size: 0x92000"
"7:38:52.0842754 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\SHCore.dll","SUCCESS","Image Base: 0x760f0000, Image Size: 0x87000"
"7:38:52.0845395 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\mpr.dll","SUCCESS","Image Base: 0x660f0000, Image Size: 0x19000"
"7:38:52.0846353 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\oleaut32.dll","SUCCESS","Image Base: 0x768b0000, Image Size: 0x96000"
"7:38:52.0847726 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\netapi32.dll","SUCCESS","Image Base: 0x66ad0000, Image Size: 0x14000"
"7:38:52.0850815 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\libgnutls-30.dll","SUCCESS","Image Base: 0x64a40000, Image Size: 0x1f5000"
"7:38:52.0852556 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\bcrypt.dll","SUCCESS","Image Base: 0x751e0000, Image Size: 0x1b000"
"7:38:52.0855745 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\crypt32.dll","SUCCESS","Image Base: 0x754e0000, Image Size: 0xfa000"
"7:38:52.0859723 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\libgcc_s_dw2-1.dll","SUCCESS","Image Base: 0x6eb40000, Image Size: 0x25000"
"7:38:52.0860043 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\libhogweed-6.dll","SUCCESS","Image Base: 0x656c0000, Image Size: 0x49000"
"7:38:52.0863373 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\libnettle-8.dll","SUCCESS","Image Base: 0x68a40000, Image Size: 0x52000"
"7:38:52.0868353 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\libstdc++-6.dll","SUCCESS","Image Base: 0x6fe40000, Image Size: 0x1c9000"
"7:38:52.0884229 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\zlib1.dll","SUCCESS","Image Base: 0x63080000, Image Size: 0x29000"
"7:38:52.0899782 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\winmm.dll","SUCCESS","Image Base: 0x6cf50000, Image Size: 0x28000"
"7:38:52.0906408 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\powrprof.dll","SUCCESS","Image Base: 0x75080000, Image Size: 0x44000"
"7:38:52.0912121 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\libpng16-16.dll","SUCCESS","Image Base: 0x68d40000, Image Size: 0x41000"
"7:38:52.0918428 PM","filezilla.exe","3396","Load Image","C:\Program Files\FileZilla FTP Client\wxbase30u_xml_gcc_custom.dll","SUCCESS","Image Base: 0x6bef0000, Image Size: 0x3b000"
"7:38:52.0922729 PM","filezilla.exe","3396","Load Image","C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.1110_none_a8625c1886757984\comctl32.dll","SUCCESS","Image Base: 0x6abc0000, Image Size: 0x210000"
"7:38:52.0925210 PM","filezilla.exe","3396","Load Image","C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.1110_none_a8625c1886757984\comctl32.dll","SUCCESS","Image Base: 0x16a0000, Image Size: 0x210000"
"7:38:52.0940218 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\ncrypt.dll","SUCCESS","Image Base: 0x74d00000, Image Size: 0x21000"
"7:38:52.0956983 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\netutils.dll","SUCCESS","Image Base: 0x748d0000, Image Size: 0xb000"
"7:38:52.0974230 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\srvcli.dll","SUCCESS","Image Base: 0x6fd70000, Image Size: 0x1d000"
"7:38:52.1005099 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\ntasn1.dll","SUCCESS","Image Base: 0x74cd0000, Image Size: 0x28000"
"7:38:52.1019228 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\bcryptprimitives.dll","SUCCESS","Image Base: 0x75200000, Image Size: 0x5f000"
"7:38:52.1059395 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\imm32.dll","SUCCESS","Image Base: 0x76a20000, Image Size: 0x26000"
"7:38:52.1143276 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\umpdc.dll","SUCCESS","Image Base: 0x75070000, Image Size: 0xd000"
"7:38:52.1174476 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\kernel.appcore.dll","SUCCESS","Image Base: 0x73760000, Image Size: 0xf000"
"7:38:52.1186084 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\uxtheme.dll","SUCCESS","Image Base: 0x73360000, Image Size: 0x7e000"
"7:38:52.1202118 PM","filezilla.exe","3396","Load Image","C:\Program Files\Stardock\Fences\FencesMenu.dll","SUCCESS","Image Base: 0x5a270000, Image Size: 0x1c2000"
"7:38:52.1219235 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\userenv.dll","SUCCESS","Image Base: 0x75100000, Image Size: 0x25000"
"7:38:52.1220224 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\wtsapi32.dll","SUCCESS","Image Base: 0x71280000, Image Size: 0xf000"
"7:38:52.1221598 PM","filezilla.exe","3396","Load Image","C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.19041.1466_none_d951c753e1040cbe\GdiPlus.dll","SUCCESS","Image Base: 0x6cde0000, Image Size: 0x169000"
"7:38:52.2142394 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\windows.storage.dll","SUCCESS","Image Base: 0x73900000, Image Size: 0x60d000"
"7:38:52.2153925 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\wldp.dll","SUCCESS","Image Base: 0x74ca0000, Image Size: 0x25000"
"7:38:52.2348989 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\msctf.dll","SUCCESS","Image Base: 0x76fe0000, Image Size: 0xd4000"
"7:38:52.2470955 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 9844"
"7:38:52.2471883 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 9988"
"7:38:52.2476934 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 1844"
"7:38:52.2511631 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\msasn1.dll","SUCCESS","Image Base: 0x74df0000, Image Size: 0xe000"
"7:38:52.2820405 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\TextShaping.dll","SUCCESS","Image Base: 0x6d220000, Image Size: 0x94000"
"7:38:52.3555766 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 10040"
"7:38:52.3560209 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 9876"
"7:38:52.3562199 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 6280"
"7:38:52.3571371 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\clbcatq.dll","SUCCESS","Image Base: 0x76f60000, Image Size: 0x7e000"
"7:38:52.3597663 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\DataExchange.dll","SUCCESS","Image Base: 0x5d6f0000, Image Size: 0x31000"
"7:38:52.3611845 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\dcomp.dll","SUCCESS","Image Base: 0x727b0000, Image Size: 0x165000"
"7:38:52.3611934 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\d3d11.dll","SUCCESS","Image Base: 0x725d0000, Image Size: 0x1e0000"
"7:38:52.3624412 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\dxgi.dll","SUCCESS","Image Base: 0x73f50000, Image Size: 0xc3000"
"7:38:52.3640634 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\twinapi.appcore.dll","SUCCESS","Image Base: 0x6dc40000, Image Size: 0x18f000"
"7:38:52.3687151 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\WindowsCodecs.dll","SUCCESS","Image Base: 0x6d560000, Image Size: 0x171000"
"7:38:52.3712538 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\profapi.dll","SUCCESS","Image Base: 0x75140000, Image Size: 0x18000"
"7:38:52.4351456 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\msftedit.dll","SUCCESS","Image Base: 0x501a0000, Image Size: 0x2a2000"
"7:38:52.4390663 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\Windows.Globalization.dll","SUCCESS","Image Base: 0x6bfc0000, Image Size: 0x145000"
"7:38:52.4398869 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\BCP47mrm.dll","SUCCESS","Image Base: 0x6f070000, Image Size: 0x22000"
"7:38:52.4399117 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\BCP47Langs.dll","SUCCESS","Image Base: 0x6f380000, Image Size: 0x49000"
"7:38:52.4411337 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\globinputhost.dll","SUCCESS","Image Base: 0x60d0000, Image Size: 0x1c000"
"7:38:52.4419437 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\globinputhost.dll","SUCCESS","Image Base: 0x60d0000, Image Size: 0x1c000"
"7:38:52.4934011 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\cfgmgr32.dll","SUCCESS","Image Base: 0x75410000, Image Size: 0x3b000"
"7:38:52.4968968 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\propsys.dll","SUCCESS","Image Base: 0x71af0000, Image Size: 0xc2000"
"7:38:52.5079452 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\thumbcache.dll","SUCCESS","Image Base: 0x5c890000, Image Size: 0x48000"
"7:38:52.7429404 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\apphelp.dll","SUCCESS","Image Base: 0x73250000, Image Size: 0x9f000"
"7:38:52.7459891 PM","filezilla.exe","3396","Load Image","C:\Program Files\IDriveWindows\IDSyncIntIcon.dll","SUCCESS","Image Base: 0x53f50000, Image Size: 0xc6000"
"7:38:52.7473747 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\winspool.drv","SUCCESS","Image Base: 0x6cc60000, Image Size: 0x72000"
"7:38:52.7597113 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\EhStorShell.dll","SUCCESS","Image Base: 0x54240000, Image Size: 0x32000"
"7:38:52.7598950 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\setupapi.dll","SUCCESS","Image Base: 0x76180000, Image Size: 0x43c000"
"7:38:52.7636637 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\cscui.dll","SUCCESS","Image Base: 0x53590000, Image Size: 0xaf000"
"7:38:52.9700821 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\TextInputFramework.dll","SUCCESS","Image Base: 0x6dfd0000, Image Size: 0xb9000"
"7:38:52.9709235 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\CoreUIComponents.dll","SUCCESS","Image Base: 0x72d00000, Image Size: 0x27e000"
"7:38:52.9710770 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\CoreMessaging.dll","SUCCESS","Image Base: 0x73060000, Image Size: 0xb2000"
"7:38:52.9720465 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\ntmarta.dll","SUCCESS","Image Base: 0x74260000, Image Size: 0x29000"
"7:38:52.9722193 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\WinTypes.dll","SUCCESS","Image Base: 0x72c10000, Image Size: 0xdb000"
"7:38:52.9724213 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\WinTypes.dll","SUCCESS","Image Base: 0x6730000, Image Size: 0xdb000"
"7:38:52.9986849 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\msimg32.dll","SUCCESS","Image Base: 0x6cd40000, Image Size: 0x6000"
"7:38:53.0601236 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\MrmCoreR.dll","SUCCESS","Image Base: 0x6e230000, Image Size: 0xc0000"
"7:38:53.0614501 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\iertutil.dll","SUCCESS","Image Base: 0x6fb40000, Image Size: 0x22b000"
"7:38:53.0641223 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\Windows.StateRepositoryCore.dll","SUCCESS","Image Base: 0x61b20000, Image Size: 0xc000"
"7:39:02.0555908 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\mswsock.dll","SUCCESS","Image Base: 0x74a70000, Image Size: 0x56000"
"7:39:02.0581776 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\dnsapi.dll","SUCCESS","Image Base: 0x74830000, Image Size: 0x91000"
"7:39:02.0593618 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\IPHLPAPI.DLL","SUCCESS","Image Base: 0x747f0000, Image Size: 0x32000"
"7:39:02.0597258 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\nsi.dll","SUCCESS","Image Base: 0x76730000, Image Size: 0x7000"
"7:39:02.0610278 PM","filezilla.exe","3396","Load Image","C:\Program Files\Bonjour\mdnsNSP.dll","SUCCESS","Image Base: 0x6df20000, Image Size: 0x25000"
"7:39:02.0625554 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\rasadhlp.dll","SUCCESS","Image Base: 0x6e560000, Image Size: 0x8000"
"7:39:02.0953979 PM","filezilla.exe","3396","Load Image","C:\Windows\System32\FWPUCLNT.DLL","SUCCESS","Image Base: 0x6ddd0000, Image Size: 0x58000"
"7:39:02.0970563 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 9592"
"7:39:03.0008179 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 8224"
"7:39:07.5117393 PM","filezilla.exe","3396","Process Create","C:\Windows\system32\WerFault.exe","SUCCESS","PID: 6444, Command line: C:\Windows\system32\WerFault.exe -u -p 3396 -s 1832"
"7:39:08.9727053 PM","filezilla.exe","3396","Thread Exit","","SUCCESS","Thread ID: 9844, User Time: 0.0312500, Kernel Time: 0.0000000"
"7:39:52.0870018 PM","filezilla.exe","3396","Thread Exit","","SUCCESS","Thread ID: 4056, User Time: 0.0000000, Kernel Time: 0.0156250"
"7:39:52.0870034 PM","filezilla.exe","3396","Thread Exit","","SUCCESS","Thread ID: 2816, User Time: 0.0156250, Kernel Time: 0.0156250"
"7:39:52.0870055 PM","filezilla.exe","3396","Thread Exit","","SUCCESS","Thread ID: 8532, User Time: 0.0000000, Kernel Time: 0.0156250"
Still running in task manager
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Thread creates (13)
"7:43:52.2322186 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 5128"
"7:38:52.0716396 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 4796"
"7:38:52.0794577 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 2816" (will exit)
"7:38:52.0795418 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 8532" (will exit)
"7:38:52.0796752 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 4056" (will exit)
"7:38:52.2470955 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 9844" (will exit)
"7:38:52.2471883 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 9988"
"7:38:52.2476934 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 1844"
"7:38:52.3555766 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 10040"
"7:38:52.3560209 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 9876"
"7:38:52.3562199 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 6280"
"7:39:02.0970563 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 9592"
"7:39:03.0008179 PM","filezilla.exe","3396","Thread Create","","SUCCESS","Thread ID: 8224"
-----------------------------------------------------------------------------------------------------------------------------------------------------------
Thread exits (4)
"7:39:07.5117393 PM","filezilla.exe","3396","Process Create","C:\Windows\system32\WerFault.exe","SUCCESS","PID: 6444, Command line: C:\Windows\system32\WerFault.exe -u -p 3396 -s 1832"
"7:39:08.9727053 PM","filezilla.exe","3396","Thread Exit","","SUCCESS","Thread ID: 9844, User Time: 0.0312500, Kernel Time: 0.0000000"
"7:39:52.0870018 PM","filezilla.exe","3396","Thread Exit","","SUCCESS","Thread ID: 4056, User Time: 0.0000000, Kernel Time: 0.0156250"
"7:39:52.0870034 PM","filezilla.exe","3396","Thread Exit","","SUCCESS","Thread ID: 2816, User Time: 0.0156250, Kernel Time: 0.0156250"
"7:39:52.0870055 PM","filezilla.exe","3396","Thread Exit","","SUCCESS","Thread ID: 8532, User Time: 0.0000000, Kernel Time: 0.0156250"