Harder than I thought So, i'll work like a Turtle
"SECURITY" mechanism
"[Setup online Device Install (Hardware initiated)-USBVID_0B05 & PID_7772H1AXHM02E213W93]--> > My smartphone... DVI: {Core Device Install} 21:00:53.210... DVI: Install Device: Starting device ' USBVID_0B05 & PID_7772H1AXHM02E213W93 '. 21:00:54.007 DVI: Install Device: Starting device completed. 21:00:54.070!!! DVI: Device not started: Device has problem: 0x25 (CM_PROB_FAILED_DRIVER_ENTRY), problem status: 0xc0000034. DVI: Class Installer: Exit "Summary of ProcMon trace that shows the following sequence: Drvinst. exe Wpd_ci. dll: WpdClassInstaller-------------------> class installer SetupAPI. dll: SetupDiInstallDevice----------------> Install Device SetupAPI. dll: SetupDiSetupDeviceProperty Devobj. dll: DevObjSetupDeviceProperty Cfgmgr. dll: CM_Set_DevNode_PropertyW KernelBase. dll: DeviceIoControlFile Then Wpd_ci. dll: WpdClassInstaller SetupAPI. dll: SetupDiInstallDevice Devobj. dll: DevObjRestartDevices---------------->? Cfgmgr. dll: CM_Get_DevNode_Status KernelBase. dll: DeviceIoControl Then Wpd_ci. dll: WpdClassInstaller SetupAPI. dll: SetupDiInstallDevice Devobj. dll: DevObjRestartDevices Devrtl. dll: DevRtlWriteTextLog devrtl. dll: DevRtlWriteTextLogError----------------> LogError "
UMDF Reflector is unable to connect to Service Control Manager (SCM). This is expected during boot, when SCM has not started yet. Will retry when it starts. Code 0xc0000034 STATUS_OBJECT_NAME_NOT_FOUND (https://msdn.microsoft.com/en-us/library/cc704588.aspx)
That seems to me to be very complex at the moment.And will take a very very long time !
# Child-SP RetAddr Call Site00 ffffef02`736b4450 fffff803`d4fad4d6 nt!ObReferenceObjectByName+0x10a01 ffffef02`736b4720 fffff803`d4fac8bf nt!AlpcpCreateClientPort+0x7602 ffffef02`736b47c0 fffff803`d4fac322 nt!AlpcpConnectPort+0x25703 ffffef02`736b4940 fffff803`d4c07553 nt!NtAlpcConnectPort+0x6e04 ffffef02`736b49c0 fffff803`d4bff370 nt!KiSystemServiceCopyEnd+0x1305 ffffef02`736b4bc8 fffff800`3f63533a nt!KiServiceLinkage06 ffffef02`736b4bd0 fffff800`3f6329c9 WUDFRd!WdfLpcCorePortInterface::Connect+0xfa [minkernel\wdf\framework\umdf\common\lpccoreclient\lpccore.cpp @ 298] 07 ffffef02`736b4d10 fffff800`3f62f583 WUDFRd!WdfLpcCommPort::WdfLpcCommPort+0x549 [minkernel\wdf\framework\umdf\common\lpc\lpccomm.cpp @ 172] 08 ffffef02`736b4dd0 fffff800`3f62f4c8 WUDFRd!WdfObjectList<WdfLpcCommPort,WdfLpcCommPortParameters>::CreateNew+0x4f [minkernel\wdf\framework\umdf\common\inc\clientserver\object.hpp @ 755] 09 (Inline Function) --------`-------- WUDFRd!WdfLpc::Connect+0x3e [minkernel\wdf\framework\umdf\common\lpc\lpc.cpp @ 533] 0a ffffef02`736b4e00 fffff800`3f63897b WUDFRd!WdfLpc::Connect+0x68 [minkernel\wdf\framework\umdf\common\lpc\lpc.cpp @ 517] 0b ffffef02`736b4e90 fffff800`3f629183 WUDFRd!RdDriver::InitializeLpcAndConnect+0x23b [minkernel\wdf\framework\umdf\redirector\driver\driver.cpp @ 972] 0c ffffef02`736b4f30 fffff800`3f662235 WUDFRd!RdDriver::RdDriver+0x54b [minkernel\wdf\framework\umdf\redirector\driver\driverpnp.cpp @ 404] 0d ffffef02`736b5140 fffff800`3f627039 WUDFRd!DriverEntry+0x1b5 [minkernel\wdf\framework\umdf\redirector\driver\driverpnp.cpp @ 147] 0e ffffef02`736b5310 fffff803`d4efa57a WUDFRd!FxDriverEntryWorker+0xb9 [d:\th\minkernel\wdf\framework\kmdf\src\dynamic\stub\stub.cpp @ 325] 0f ffffef02`736b5340 fffff803`d4efcc8b nt!IopLoadDriver+0x4da10 ffffef02`736b5510 fffff803`d4efd2a8 nt!PipCallDriverAddDeviceQueryRoutine+0x1b311 ffffef02`736b55a0 fffff803`d4f00009 nt!PnpCallDriverQueryServiceHelper+0xcc12 ffffef02`736b5650 fffff803`d4f098b8 nt!PipCallDriverAddDevice+0x38513 ffffef02`736b57f0 fffff803`d4ee53cf nt!PipProcessDevNodeTree+0x16414 ffffef02`736b5a70 fffff803`d4bb077a nt!PiRestartDevice+0xa715 ffffef02`736b5ac0 fffff803`d4ad4e05 nt!PnpDeviceActionWorker+0x43a16 ffffef02`736b5b80 fffff803`d4ac0f87 nt!ExpWorkerThread+0xf517 ffffef02`736b5c10 fffff803`d4c01676 nt!PspSystemThreadStartup+0x4718 ffffef02`736b5c60 00000000`00000000 nt!KiStartSystemThread+0x16
lkd> !object \UMDFCommunicationPortsObject: ffffda0c51572920 Type: (ffffb08adc6cef20) Directory ObjectHeader: ffffda0c515728f0 (new version) HandleCount: 0 PointerCount: 3 Directory Object: ffffda0c51016920 Name: UMDFCommunicationPorts Hash Address Type Name ---- ------- ---- ---- 30 ffffb08ae110c9c0 ALPC Port ProcessManagement 33 ffffda0c543ec990 Directory WUDF
lkd> !object \UMDFCommunicationPorts\WUDFObject: ffffda0c543ec990 Type: (ffffb08adc6cef20) Directory ObjectHeader: ffffda0c543ec960 (new version) HandleCount: 1 PointerCount: 6 Directory Object: ffffda0c51572920 Name: WUDF Hash Address Type Name ---- ------- ---- ---- 14 ffffb08ae1368bd0 ALPC Port HostProcess-4004d68e-eb65-411f-93f3-267b08b3520f 23 ffffb08adfa09480 ALPC Port HostProcess-bdd92219-ec86-42cc-883e-0cc50d9087b6 ffffb08ade853bf0 ALPC Port HostProcess-68734194-bb9e-4805-bcb6-4c35e12b3f92 35 ffffb08adf64ee20 ALPC Port HostProcess-25da0260-f878-4fe9-afad-dcb47f989a08
lkd> !object ffffb08ae1368bd0Object: ffffb08ae1368bd0 Type: (ffffb08adc768f20) ALPC Port ObjectHeader: ffffb08ae1368ba0 (new version) HandleCount: 1 PointerCount: 32756 Directory Object: ffffda0c543ec990 Name: HostProcess-4004d68e-eb65-411f-93f3-267b08b3520flkd> !findhandle ffffb08ae1368bd0***NO HANDLES IN PROCESS ffffb08ae0d3b080*** [ffffb08adf631080 WUDFHost.exe] 200: Entry ffffda0c56d34800 Granted Access 1f0001 (Inherit)
lkd> !object ffffb08ae110c9c0Object: ffffb08ae110c9c0 Type: (ffffb08adc768f20) ALPC Port ObjectHeader: ffffb08ae110c990 (new version) HandleCount: 1 PointerCount: 32710 Directory Object: ffffda0c51572920 Name: ProcessManagementlkd> !findhandle ffffb08ae110c9c0***NO HANDLES IN PROCESS ffffb08ae0d3b080*** [ffffb08ae0dba080 services.exe] 1ec: Entry ffffda0c542e67b0 Granted Access 1f0001 (Protected)lkd> !alpc /p ffffb08ae110c9c0Port ffffb08ae110c9c0 Type : ALPC_CONNECTION_PORT CommunicationInfo : ffffda0c5440a520 ConnectionPort : ffffb08ae110c9c0 (ProcessManagement) ClientCommunicationPort : 0000000000000000 ServerCommunicationPort : 0000000000000000 OwnerProcess : ffffb08ae0dba080 (services.exe) SequenceNo : 0x00000005 (5) CompletionPort : 0000000000000000 CompletionList : 0000000000000000 ConnectionPending : No ConnectionRefused : No Disconnected : No Closed : No FlushOnClose : Yes ReturnExtendedInfo : No Waitable : Yes Security : Static Wow64CompletionList : No Main queue is empty. Direct message queue is empty. Large message queue is empty. Pending queue is empty. Canceled queue is empty.