jeremy
27-Oct-2009, 04:41 PM
Once in awhile my app throws an AV when it apparently does not have focus. I don't understand what the Eurekalog message is telling me.
Can anyone help me understand what is going on with this app?
Here's a recent message. In this case the screenshot captured by Eurekalog (not attached) shows MS Outlook inbox.
EurekaLog 6.0.21
Application:
-------------------------------------------------------
1.1 Start Date : Mon, 26 Oct 2009 10:03:17 -0500
1.2 Name/Description: Agent.exe
1.3 Version Number : 3.1.1.50
1.4 Parameters :
1.5 Compilation Date: Tue, 20 Oct 2009 10:38:06 -0500
1.6 Up Time : 6 hours, 49 minutes, 3 seconds
Exception:
--------------------------------------------------------------------------------------
2.1 Date : Mon, 26 Oct 2009 16:52:20 -0500
2.2 Address : 01339A31
2.3 Module Name :
2.4 Module Version:
2.5 Type : EAccessViolation
2.6 Message : Access violation at address 01339A31. Write of address 038BA8A8.
2.7 ID : 1396
2.8 Count : 1
2.9 Status : New
2.10 Note :
User:
-------------------------------------------------------
3.1 ID :
3.2 Name : user
3.3 Email :
3.4 Company :
3.5 Privileges: SeChangeNotifyPrivilege - ON
SeSecurityPrivilege - OFF
SeBackupPrivilege - OFF
SeRestorePrivilege - OFF
SeSystemtimePrivilege - OFF
SeShutdownPrivilege - OFF
SeRemoteShutdownPrivilege - OFF
SeTakeOwnershipPrivilege - OFF
SeDebugPrivilege - OFF
SeSystemEnvironmentPrivilege - OFF
SeSystemProfilePrivilege - OFF
SeProfileSingleProcessPrivilege - OFF
SeIncreaseBasePriorityPrivilege - OFF
SeLoadDriverPrivilege - ON
SeCreatePagefilePrivilege - OFF
SeIncreaseQuotaPrivilege - OFF
SeUndockPrivilege - ON
SeManageVolumePrivilege - OFF
SeImpersonatePrivilege - ON
SeCreateGlobalPrivilege - ON
SeTcbPrivilege - OFF
Active Controls:
----------------------------------------------
4.1 Form Class : rctrl_renwnd32
4.2 Form Text : Inbox - Microsoft Outlook
4.3 Control Class: TApplication
4.4 Control Text : Sure-Track Agency
Computer:
--------------------------------------------------------------------------------------
5.1 Name : DELL_LAPTOP1
5.2 Total Memory : 1014 Mb
5.3 Free Memory : 228 Mb
5.4 Total Disk : 74.45 Gb
5.5 Free Disk : 55.63 Gb
5.6 System Up Time: 26 days, 2 hours, 41 minutes, 27 seconds
5.7 Processor : Intel(R) Core(TM)2 Duo CPU T7100 @ 1.80GHz
5.8 Display Mode : 1280 x 800, 32 bit
5.9 Display DPI : 96
5.10 Video Card : Mobile Intel(R) 965 Express Chipset Family (driver 6.14.10.4831)
5.11 Printer : Dell Laser Printer 1110 (driver 5.1.2600.1106)
Operating System:
------------------------------------
6.1 Type : Microsoft Windows XP
6.2 Build # : 2600
6.3 Update : Service Pack 3
6.4 Language: English
6.5 Charset : 0
Network:
---------------------------------------------------
7.1 IP Address: 000.000.000.000 - 192.168.007.130
7.2 Submask : 000.000.000.000 - 255.255.255.000
7.3 Gateway : 000.000.000.000 - 192.168.007.001
7.4 DNS 1 : 000.000.000.000 - 192.168.007.200
7.5 DNS 2 : 000.000.000.000 - 151.164.008.201
7.6 DHCP : ON - ON
Call Stack Information:
------------------------------------------------------------
|Address |Module |Unit|Class|Procedure/Method |Line|
------------------------------------------------------------
|Running Thread: ID=5848; Priority=0; Class=; [Main] |
|----------------------------------------------------------|
|7E42B1A6|user32.dll| | |DestroyWindow | |
|7E42B19C|user32.dll| | |DestroyWindow | |
|7C90DCB8|ntdll.dll | | |ZwSetInformationThread| |
------------------------------------------------------------
Modules Information:
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
|Handle |Name |Description |Version |Size |Modified |Path |
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
|00360000|detoured.dll| | |4096 |2007-01-30 15:30:30|C:\WINDOWS\system32 |
|00400000|Agent.exe | |3.1.1.50 |9351168|2009-10-20 08:38:06|C:\Program Files\Sure-Track Agency |
|01FC0000|xpsp2res.dll|Service Pack 2 Messages |5.1.2600.5512 |2897920|2008-04-13 23:09:26|C:\WINDOWS\system32 |
|023B0000|DELS3.DLL |PostScript Printer Driver |0.3.0.0 |889344 |2006-12-15 20:42:48|C:\WINDOWS\System32\spool\DRIVERS\W32X86\ 3 |
|024D0000|shook45.dll | | |32768 |2003-04-08 23:57:10|C:\Program Files\stickies |
|02560000|MWSOESTB.DLL|My Web Search Plugin Loader |1.2.3.4 |45134 |2009-05-14 08:02:54|C:\Program Files\MyWebSearch\bar\2.bin |
|026E0000|dadkeyb.dll | | |98304 |2007-05-14 14:24:00|C:\Program Files\Dell\QuickSet |
|02720000|hccutils.DLL|hccutils Module |6.14.10.4831 |102400 |2007-05-18 11:45:32|C:\WINDOWS\system32 |
|02C60000|biolsp.dll |BioLsp Dynamic Link Library |1.4.0.99 |212992 |2007-01-31 20:15:20|C:\WINDOWS\system32 |
|02ED0000|bmnet.dll |Bytemobile Network Provider |4.1.0.3031 |471040 |2009-05-26 17:38:00|C:\WINDOWS\system32 |
|10000000|wxvault.dll |wxvault Dynamic Link Library |5.6.0.3 |286720 |2007-01-30 15:31:50|C:\WINDOWS\system32 |
|337A0000|sqlncli.dll |Microsoft SQL Native Client |2005.90.2047.0 |2222936|2006-04-14 10:07:12|c:\WINDOWS\system32 |
|4DE10000|msado15.dll |Microsoft Data Access - ActiveX Data Objects |2.81.1132.0 |536576 |2008-04-14 05:42:00|C:\Program Files\Common Files\System\ado |
|5AD70000|uxtheme.dll |Microsoft UxTheme Library |6.0.2900.5512 |218624 |2008-04-14 05:42:10|C:\WINDOWS\system32 |
|5B860000|NETAPI32.dll|Net Win32 API DLL |5.1.2600.5694 |337408 |2008-10-15 11:34:24|C:\WINDOWS\system32 |
|662B0000|hnetcfg.dll |Home Networking Configuration Manager |5.1.2600.5512 |344064 |2008-04-14 05:41:56|C:\WINDOWS\system32 |
|68000000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |5.1.2600.5507 |208384 |2008-04-13 23:07:58|C:\WINDOWS\system32 |
|68100000|dssenh.dll |Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider|5.1.2600.5507 |138752 |2008-04-13 23:07:58|C:\WINDOWS\system32 |
|6A900000|DELS3du.DLL |PostScript Printer Driver User Interface |0.3.0.0 |371200 |2006-12-15 20:42:40|C:\WINDOWS\System32\spool\DRIVERS\W32X86\ 3 |
|71A50000|mswsock.dll |Microsoft Windows Sockets 2.0 Service Provider |5.1.2600.5625 |245248 |2008-06-20 12:46:58|C:\WINDOWS\System32 |
|71A90000|wshtcpip.dll|Windows Sockets Helper DLL |5.1.2600.5512 |19456 |2008-04-14 05:42:12|C:\WINDOWS\System32 |
|71AA0000|WS2HELP.dll |Windows Socket 2.0 Helper for Windows NT |5.1.2600.5512 |19968 |2008-04-14 05:42:12|C:\WINDOWS\system32 |
|71AB0000|WS2_32.dll |Windows Socket 2.0 32-Bit DLL |5.1.2600.5512 |82432 |2008-04-14 05:42:12|C:\WINDOWS\system32 |
|71AD0000|wsock32.dll |Windows Socket 32-Bit DLL |5.1.2600.5512 |22528 |2008-04-14 05:42:12|C:\WINDOWS\system32 |
|71B20000|mpr.dll |Multiple Provider Router DLL |5.1.2600.5512 |59904 |2008-04-14 05:41:58|C:\WINDOWS\system32 |
|71CF0000|kerberos.dll|Kerberos Security Package |5.1.2600.5512 |299520 |2008-04-14 05:41:58|C:\WINDOWS\system32 |
|73000000|winspool.drv|Windows Spooler Driver |5.1.2600.5512 |146432 |2008-04-14 05:42:46|C:\WINDOWS\system32 |
|73160000|oledb32.dll |Microsoft Data Access - OLE DB Core Services |2.81.1132.0 |487424 |2008-04-14 05:42:04|C:\Program Files\Common Files\System\Ole DB |
|732E0000|RICHED32.DLL|Wrapper Dll for Richedit 1.0 |5.1.2600.0 |3584 |2004-08-04 05:00:00|C:\WINDOWS\system32 |
|74720000|MSCTF.dll |MSCTF Server DLL |5.1.2600.5512 |297984 |2008-04-14 05:42:00|C:\WINDOWS\system32 |
|74E30000|RICHED20.dll|Rich Text Edit Control, v3.0 |5.30.23.1230 |433664 |2008-04-14 05:42:06|C:\WINDOWS\system32 |
|75350000|OLEDB32R.DLL|Microsoft Data Access - OLE DB Core Services Resources |2.81.1132.0 |65536 |2008-04-14 05:42:04|C:\Program Files\Common Files\System\Ole DB |
|76380000|msimg32.dll |GDIEXT Client DLL |5.1.2600.5512 |4608 |2008-04-14 05:42:00|C:\WINDOWS\system32 |
|76390000|imm32.dll |Windows XP IMM32 API Client DLL |5.1.2600.5512 |110080 |2008-04-14 05:41:56|C:\WINDOWS\system32 |
|763B0000|comdlg32.dll|Common Dialogs DLL |6.0.2900.5512 |276992 |2008-04-14 05:41:52|C:\WINDOWS\system32 |
|765B0000|MSDART.DLL |Microsoft Data Access - OLE DB Runtime Routines |2.81.1132.0 |151552 |2008-04-14 05:42:00|C:\WINDOWS\system32 |
|76780000|SHFolder.dll|Shell Folder Service |6.0.2900.5512 |25088 |2008-04-14 05:42:06|C:\WINDOWS\system32 |
|76790000|cryptdll.dll|Cryptography Manager |5.1.2600.5512 |33280 |2008-04-14 05:41:52|C:\WINDOWS\system32 |
|767F0000|schannel.dll|TLS / SSL Security Provider |5.1.2600.5721 |144896 |2008-12-05 01:54:56|C:\WINDOWS\system32 |
|769C0000|USERENV.dll |Userenv |5.1.2600.5512 |727040 |2008-04-14 05:42:10|C:\WINDOWS\system32 |
|76B40000|winmm.dll |MCI API DLL |5.1.2600.5512 |176128 |2008-04-14 05:42:10|C:\WINDOWS\system32 |
|76BF0000|PSAPI.DLL |Process Status Helper |5.1.2600.5512 |23040 |2008-04-14 05:42:04|C:\WINDOWS\system32 |
|76D60000|iphlpapi.dll|IP Helper API |5.1.2600.5512 |94720 |2008-04-14 05:41:56|C:\WINDOWS\system32 |
|76F20000|DNSAPI.dll |DNS Client API DLL |5.1.2600.5625 |147968 |2008-06-20 12:46:58|C:\WINDOWS\system32 |
|76FC0000|rasadhlp.dll|Remote Access AutoDial Helper |5.1.2600.5512 |7680 |2008-04-14 05:42:04|C:\WINDOWS\system32 |
|76FD0000|CLBCATQ.DLL | |2001.12.4414.700|498688 |2008-04-14 05:41:52|C:\WINDOWS\system32 |
|77050000|COMRes.dll | |2001.12.4414.700|792064 |2008-04-14 05:41:52|C:\WINDOWS\system32 |
|77120000|oleaut32.dll| |5.1.2600.5512 |551936 |2008-04-14 05:42:04|C:\WINDOWS\system32 |
|773D0000|comctl32.dll|User Experience Controls Library |6.0.2900.5512 |1054208|2008-04-14 05:42:52|C:\WINDOWS\WinSxS\x86_Microsoft.Windows.C ommon-Controls_6595b64 144ccf1df_6.0.2600.5512_x-ww_35d4ce83|
|774E0000|ole32.dll |Microsoft OLE for Windows |5.1.2600.5512 |1287168|2008-04-14 05:42:04|C:\WINDOWS\system32 |
|77920000|SETUPAPI.dll|Windows Setup API |5.1.2600.5512 |985088 |2008-04-14 05:42:06|C:\WINDOWS\system32 |
|77A80000|CRYPT32.dll |Crypto API32 |5.131.2600.5512 |599040 |2008-04-14 05:41:52|C:\WINDOWS\system32 |
|77B20000|MSASN1.dll |ASN.1 Runtime APIs |5.1.2600.5512 |57344 |2008-04-14 05:42:00|C:\WINDOWS\system32 |
|77C00000|version.dll |Version Checking and File Installation Libraries |5.1.2600.5512 |18944 |2008-04-14 05:42:10|C:\WINDOWS\system32 |
|77C10000|msvcrt.dll |Windows NT CRT DLL |7.0.2600.5512 |343040 |2008-04-14 05:42:02|C:\WINDOWS\system32 |
|77C70000|msv1_0.dll |Microsoft Authentication Package v1.0 |5.1.2600.5512 |132608 |2008-04-14 05:42:02|C:\WINDOWS\system32 |
|77DD0000|advapi32.dll|Advanced Windows 32 Base API |5.1.2600.5755 |617472 |2009-02-09 07:10:48|C:\WINDOWS\system32 |
|77E70000|RPCRT4.dll |Remote Procedure Call Runtime |5.1.2600.5795 |585216 |2009-04-15 09:51:26|C:\WINDOWS\system32 |
|77F10000|GDI32.dll |GDI Client DLL |5.1.2600.5698 |286720 |2008-10-23 07:36:14|C:\WINDOWS\system32 |
|77F60000|SHLWAPI.dll |Shell Light-weight Utility Library |6.0.2900.5512 |474112 |2008-04-14 05:42:06|C:\WINDOWS\system32 |
|77FE0000|Secur32.dll |Security Support Provider Interface |5.1.2600.5753 |56832 |2009-02-03 14:59:08|C:\WINDOWS\system32 |
|7C800000|kernel32.dll|Windows NT BASE API Client DLL |5.1.2600.5781 |989696 |2009-03-21 09:06:58|C:\WINDOWS\system32 |
|7C900000|ntdll.dll |NT Layer DLL |5.1.2600.5755 |714752 |2009-02-09 07:10:48|C:\WINDOWS\system32 |
|7C9C0000|shell32.dll |Windows Shell Common Dll |6.0.2900.5512 |8461312|2008-04-14 05:42:06|C:\WINDOWS\system32 |
|7E410000|user32.dll |Windows XP USER API Client DLL |5.1.2600.5512 |578560 |2008-04-14 05:42:10|C:\WINDOWS\system32 |
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Processes Information:
--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
|ID |Name |Description |Version |Memory |Priority |Threads|Path |
--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
|4 |System | | |62074880 |Normal |70 | |
|320 |AsfIpMon.exe |Broadcom ASF IP and SMBIOS Mailbox Monitor |7.2.2.0 |1916928 |Normal |6 |C:\Program Files\Broadcom\ASFIPMon |
|416 |jqs.exe |Java(TM) Quick Starter Service |6.0.110.3 |1929216 |Low |11 |C:\Program Files\Java\jre6\bin |
|568 |jucheck.exe |Java(TM) Update Checker |6.0.110.3 |692224 |Normal |10 |C:\Program Files\Java\jre6\bin |
|688 |smss.exe | | |73728 |Normal |3 |\SystemRoot\System32 |
|768 |winlogon.exe | | |6639616 |High |29 |C:\WINDOWS\system32 |
|816 |services.exe |Services and Controller app |5.1.2600.5755 |3862528 |Normal |15 |C:\WINDOWS\system32 |
|828 |lsass.exe |LSA Shell (Export Version) |5.1.2600.5512 |7475200 |Normal |28 |C:\WINDOWS\system32 |
|1012|svchost.exe |Generic Host Process for Win32 Services |5.1.2600.5512 |2424832 |Normal |22 |C:\WINDOWS\system32 |
|1032|LMIGuardian.exe |LMIGuardian |9.0.0.982 |204800 |Normal |2 |C:\Program Files\LogMeIn\x86 |
|1184|svchost.exe |Generic Host Process for Win32 Services |5.1.2600.5512 |34004992 |Normal |83 |C:\WINDOWS\System32 |
|1224|svchost.exe |Generic Host Process for Win32 Services |5.1.2600.5512 |204800 |Normal |5 |C:\WINDOWS\system32 |
|1304|mwsoemon.exe |My Web Search Plugin Loader |1.2.2.5 |368640 |Normal |1 |C:\PROGRA~1\MYWEBS~1\bar\2.bin |
|1316|igfxsrvc.exe |igfxsrvc Module |6.14.10.4831 |1617920 |Normal |4 |C:\WINDOWS\system32 |
|1344|stsystra.exe |Sigmatel Audio system tray application |1.0.5401.0 |614400 |Normal |5 |C:\WINDOWS |
|1364|NICCONFIGSVC.exe |Internal Network Card Power Management Service |8.1.12.0 |454656 |Normal |4 |C:\Program Files\Dell\QuickSet |
|1388|RoxioUpnpService9.exe |RoxioUpnpService9 Module |9.4.0.89 |1748992 |Normal |15 |C:\Program Files\Roxio\Digital Home 9 |
|1468|avgcsrvx.exe |AVG Scanning Core Module - Server Part |8.5.0.401 |13877248 |Normal |3 |C:\Program Files\AVG\AVG8 |
|1612|WLTRYSVC.EXE | | |102400 |Normal |2 |C:\WINDOWS\System32 |
|1624|bcmwltry.exe |Dell Wireless WLAN Card Wireless Network Controller |4.100.15.8 |2441216 |Normal |6 |C:\WINDOWS\System32 |
|1668|spoolsv.exe |Spooler SubSystem App |5.1.2600.5512 |4784128 |Normal |11 |C:\WINDOWS\system32 |
|1864|avgcsrvx.exe |AVG Scanning Core Module - Server Part |8.5.0.401 |122880 |Normal |4 |C:\Program Files\AVG\AVG8 |
|2236|SAAZDPMACTL.EXE |SAAZDPMACTL Application |5.0.0.5 |905216 |Normal |4 |C:\PROGRA~1\SAAZOD |
|2252|SAAZRemoteSupport.exe |SAAZRemoteSupport Application |6.0.0.2 |819200 |Normal |2 |C:\PROGRA~1\SAAZOD |
|2284|SAAZScheduler.exe |SAAZScheduler |5.0.0.5 |684032 |High |3 |c:\progra~1\saazod |
|2300|SAAZServerPlus.exe |SAAZServerPlus |5.0.0.0 |204800 |Normal |8 |C:\PROGRA~1\SAAZOD |
|2332|SAAZWatchDog.exe |SAAZWatc Application |5.0.0.5 |3219456 |High |3 |C:\PROGRA~1\SAAZOD |
|2372|StacSV.exe |STacSV Module |1.0.5401.0 |512000 |Normal |8 |C:\Program Files\SigmaTel\C-Major Audio\WDM |
|2480|svchost.exe |Generic Host Process for Win32 Services |5.1.2600.5512 |1679360 |Normal |7 |C:\WINDOWS\system32 |
|2584|dllhost.exe |COM Surrogate |5.1.2600.5512 |299008 |Normal |6 |C:\WINDOWS\system32 |
|2632|jusched.exe |Java(TM) Platform SE binary |6.0.110.3 |126976 |Normal |1 |C:\Program Files\Java\jre6\bin |
|2700|ctfmon.exe |CTF Loader |5.1.2600.5512 |827392 |Normal |1 |C:\WINDOWS\system32 |
|3132|dllhost.exe |COM Surrogate |5.1.2600.5512 |1179648 |Normal |15 |C:\WINDOWS\system32 |
|3244|KADxMain.exe |IntelliSonic Systray Control (KADxMain) |2.1.0.12 |548864 |Normal |3 |C:\WINDOWS\system32 |
|3456|hkcmd.exe |hkcmd Module |6.14.10.4831 |356352 |Normal |2 |C:\WINDOWS\system32 |
|3544|gamevance32.exe | | |4767744 |Normal |7 |C:\Program Files\Gamevance |
|3776|SecureUpgrade.exe |Check For Later Product Line |5.3.0.10 |3031040 |Normal |8 |C:\Program Files\Wave Systems Corp |
|3856|RDVCHG.exe |C-motech Run Time Device Change |2.0.1.3 |1748992 |Normal |3 |C:\Program Files\Sprint\Sprint SmartView |
|4024|Explorer.EXE |Windows Explorer |6.0.2900.5512 |16220160 |Normal |15 |C:\WINDOWS |
|4080|RoxMediaDB9.exe |RoxMediaDB9 Module |9.4.1.2 |2068480 |Normal |13 |C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM |
|4424|HidFind.exe |Alps Pointing-device Driver |7.0.0.26 |786432 |Normal |1 |C:\Program Files\Apoint |
|4444|stickies.exe |Stickies 6.0c |6.0.3.0 |2711552 |Normal |11 |C:\Program Files\stickies |
|4792|avgrsx.exe |AVG Resident Shield Service |8.5.0.401 |17305600 |Normal |11 |C:\PROGRA~1\AVG\AVG8 |
|4856|Apoint.exe |Alps Pointing-device Driver |7.0.101.199 |655360 |Normal |2 |C:\Program Files\Apoint |
|5096|RMHLPDSK.exe |RMHLPDSK Application |6.0.0.2 |6426624 |Above-Normal|8 |C:\PROGRA~1\SAAZOD |
|5164|GoogleDesktop.exe |Google Desktop |5.0.612.17663 |1097728 |Normal |4 |C:\Program Files\Google\Google Desktop Search |
|5252|quickset.exe |QuickSet |8.1.12.0 |1994752 |Normal |5 |C:\Program Files\Dell\QuickSet |
|5276|WLTRAY.exe |Dell Wireless WLAN Card Wireless Network Tray Applet |4.100.15.8 |65564672 |Normal |7 |C:\WINDOWS\system32 |
|5296|Agent.exe | |3.1.1.50 |10661888 |Normal |7 |C:\Program Files\Sure-Track Agency |
|5300|Acrotray.exe |AcroTray |8.1.2.86 |6909952 |Normal |3 |C:\Program Files\Adobe\Acrobat 8.0\Acrobat |
|5340|docmgr.exe |Document Manager Hook Startup |5.6.0.3 |122880 |Normal |1 |C:\Program Files\Wave Systems Corp\Services Manager\DocMgr\bin |
|5372|FNPLicensingService.exe|Activation Licensing Service |11.3.5.1 |2682880 |Normal |5 |C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher|
|5556|GoogleDesktopIndex.exe |Google Desktop |5.0.612.17663 |110592 |Normal |6 |C:\Program Files\Google\Google Desktop Search |
|5580|OUTLOOK.EXE |Microsoft Office Outlook |12.0.6300.5000|154890240|Normal |63 |C:\Program Files\Microsoft Office\Office12 |
|5588|ApMsgFwd.exe |ApMsgFwd |7.0.0.15 |294912 |Normal |3 |C:\Program Files\Apoint |
|5624|DLG.exe |Digital Line Detection |1.0.0.2 |327680 |Normal |2 |C:\Program Files\Digital Line Detect |
|5640|avgwdsvc.exe |AVG Watchdog Service |8.5.0.401 |2736128 |Normal |32 |C:\PROGRA~1\AVG\AVG8 |
|5764|avgam.exe |AVG Alert Manager |8.5.0.401 |8998912 |Normal |40 |C:\PROGRA~1\AVG\AVG8 |
|5792|Apntex.exe |Alps Pointing-device Driver for Windows NT/2000/XP/Vista|7.0.1.26 |270336 |Normal |2 |C:\Program Files\Apoint |
|5804|LMIGuardian.exe |LMIGuardian |9.0.0.982 |204800 |Normal |2 |c:\Program Files\LogMeIn\x86 |
|5808|LogMeInSystray.exe |LogMeIn Desktop Application |3.0.0.596 |2781184 |Normal |9 |C:\Program Files\LogMeIn\x86 |
|5836|PDVDDXSrv.exe |CyberLink PowerCinema Resident Program |4.5.0.0 |1003520 |Normal |2 |C:\Program Files\CyberLink\PowerDVD DX |
|5852|avgtray.exe |AVG Tray Monitor |8.5.0.422 |3190784 |Normal |10 |C:\PROGRA~1\AVG\AVG8 |
|5884|LogMeIn.exe |LogMeIn |3.0.0.596 |5701632 |Normal |25 |c:\Program Files\LogMeIn\x86 |
|5892|MaxCommunicator.exe |MaxCommunicator |6.0.1.404 |17829888 |Normal |21 |C:\Program Files\AltiGen\MaxCommunicator |
|5920|igfxpers.exe |persistence Module |6.14.10.4831 |368640 |Normal |3 |C:\WINDOWS\system32 |
|6040|RaMaint.exe |LogMeIn Maintenance Service |4.0.0.982 |413696 |Normal |2 |c:\Program Files\LogMeIn\x86 |
--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Assembler Information:
----------------------------------------------------
01339A31 hlt ; <-- EXCEPTION
01339A32 dec edi
01339A33 add [edx+$1E], edx
01339A36 inc ebx
01339A37 jle +$00
01339A39 add [eax], al
01339A3B add [edx], bl
01339A3D add [eax], al
01339A3F add [edx+ecx+$42], cl
01339A43 add [eax], al
01339A45 add [eax], al
Registers:
-----------------------------
EAX: 038BA8A7
EDI: 0012FE68
EBX: 00000000
ESI: 02580E75
ECX: 0148D3F0
ESP: 0012FDC8
EDX: 0012FDF0
EIP: 01339A31
Stack:
Memory Dump:
---------------------------------------------------------------------------------------------
0012FDC8: 00988BDB 01339A31: F4 4F 01 52 1E 43 7E 00 00 00 00 1A 00 00 00 4C .O.R.C~........L
0012FDCC: 0012FE84 01339A41: 0A 42 00 00 00 00 00 00 00 00 00 00 00 00 00 18 .B..............
0012FDD0: 0040498C 01339A51: 00 00 00 16 00 00 00 4C 0A 42 00 4C B7 4F 01 03 .......L.B.L.O..
0012FDD4: 0012FDE8 01339A61: 00 00 00 04 00 00 00 22 00 00 00 01 00 00 00 13 ......."........
0012FDD8: 0012FE68 01339A71: 00 00 00 67 72 69 64 4C 65 6E 64 65 72 54 72 61 ...gridLenderTra
0012FDDC: 02580E76 01339A81: 6E 54 79 70 65 73 00 26 03 00 00 78 3F AA 00 3C nTypes.&...x?..<
0012FDE0: 00000000 01339A91: 85 4C 01 74 9A 33 01 00 00 00 00 00 00 00 00 00 .L.t.3..........
0012FDE4: 01339A30 01339AA1: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 ................
0012FDE8: 0012FE00 01339AB1: 00 00 00 86 1C 42 00 96 1C 42 00 B4 95 33 01 00 .....B...B...3..
0012FDEC: 0043077A 01339AC1: 00 00 00 28 69 AA 00 8C 9A 33 01 10 00 00 00 14 ...(i....3......
0012FDF0: 0000001C 01339AD1: 00 00 00 29 03 00 00 E1 01 00 00 AA 20 04 00 00 ...)........ ...
0012FDF4: 00000000 01339AE1: 00 00 01 01 00 01 00 00 00 00 00 01 03 00 00 00 ................
0012FDF8: 00001758 01339AF1: 00 00 00 B0 9D 33 01 00 00 00 00 EA F1 FF 00 D8 .....3..........
0012FDFC: 00000000 01339B01: 9D 33 01 00 00 F4 FF 00 00 00 00 00 00 00 00 F5 .3..............
0012FE00: 0012FE2C 01339B11: FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0012FE04: 7E418734 01339B21: 00 00 00 00 01 01 00 00 00 00 00 00 00 00 00 00 ................
Can anyone help me understand what is going on with this app?
Here's a recent message. In this case the screenshot captured by Eurekalog (not attached) shows MS Outlook inbox.
EurekaLog 6.0.21
Application:
-------------------------------------------------------
1.1 Start Date : Mon, 26 Oct 2009 10:03:17 -0500
1.2 Name/Description: Agent.exe
1.3 Version Number : 3.1.1.50
1.4 Parameters :
1.5 Compilation Date: Tue, 20 Oct 2009 10:38:06 -0500
1.6 Up Time : 6 hours, 49 minutes, 3 seconds
Exception:
--------------------------------------------------------------------------------------
2.1 Date : Mon, 26 Oct 2009 16:52:20 -0500
2.2 Address : 01339A31
2.3 Module Name :
2.4 Module Version:
2.5 Type : EAccessViolation
2.6 Message : Access violation at address 01339A31. Write of address 038BA8A8.
2.7 ID : 1396
2.8 Count : 1
2.9 Status : New
2.10 Note :
User:
-------------------------------------------------------
3.1 ID :
3.2 Name : user
3.3 Email :
3.4 Company :
3.5 Privileges: SeChangeNotifyPrivilege - ON
SeSecurityPrivilege - OFF
SeBackupPrivilege - OFF
SeRestorePrivilege - OFF
SeSystemtimePrivilege - OFF
SeShutdownPrivilege - OFF
SeRemoteShutdownPrivilege - OFF
SeTakeOwnershipPrivilege - OFF
SeDebugPrivilege - OFF
SeSystemEnvironmentPrivilege - OFF
SeSystemProfilePrivilege - OFF
SeProfileSingleProcessPrivilege - OFF
SeIncreaseBasePriorityPrivilege - OFF
SeLoadDriverPrivilege - ON
SeCreatePagefilePrivilege - OFF
SeIncreaseQuotaPrivilege - OFF
SeUndockPrivilege - ON
SeManageVolumePrivilege - OFF
SeImpersonatePrivilege - ON
SeCreateGlobalPrivilege - ON
SeTcbPrivilege - OFF
Active Controls:
----------------------------------------------
4.1 Form Class : rctrl_renwnd32
4.2 Form Text : Inbox - Microsoft Outlook
4.3 Control Class: TApplication
4.4 Control Text : Sure-Track Agency
Computer:
--------------------------------------------------------------------------------------
5.1 Name : DELL_LAPTOP1
5.2 Total Memory : 1014 Mb
5.3 Free Memory : 228 Mb
5.4 Total Disk : 74.45 Gb
5.5 Free Disk : 55.63 Gb
5.6 System Up Time: 26 days, 2 hours, 41 minutes, 27 seconds
5.7 Processor : Intel(R) Core(TM)2 Duo CPU T7100 @ 1.80GHz
5.8 Display Mode : 1280 x 800, 32 bit
5.9 Display DPI : 96
5.10 Video Card : Mobile Intel(R) 965 Express Chipset Family (driver 6.14.10.4831)
5.11 Printer : Dell Laser Printer 1110 (driver 5.1.2600.1106)
Operating System:
------------------------------------
6.1 Type : Microsoft Windows XP
6.2 Build # : 2600
6.3 Update : Service Pack 3
6.4 Language: English
6.5 Charset : 0
Network:
---------------------------------------------------
7.1 IP Address: 000.000.000.000 - 192.168.007.130
7.2 Submask : 000.000.000.000 - 255.255.255.000
7.3 Gateway : 000.000.000.000 - 192.168.007.001
7.4 DNS 1 : 000.000.000.000 - 192.168.007.200
7.5 DNS 2 : 000.000.000.000 - 151.164.008.201
7.6 DHCP : ON - ON
Call Stack Information:
------------------------------------------------------------
|Address |Module |Unit|Class|Procedure/Method |Line|
------------------------------------------------------------
|Running Thread: ID=5848; Priority=0; Class=; [Main] |
|----------------------------------------------------------|
|7E42B1A6|user32.dll| | |DestroyWindow | |
|7E42B19C|user32.dll| | |DestroyWindow | |
|7C90DCB8|ntdll.dll | | |ZwSetInformationThread| |
------------------------------------------------------------
Modules Information:
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
|Handle |Name |Description |Version |Size |Modified |Path |
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
|00360000|detoured.dll| | |4096 |2007-01-30 15:30:30|C:\WINDOWS\system32 |
|00400000|Agent.exe | |3.1.1.50 |9351168|2009-10-20 08:38:06|C:\Program Files\Sure-Track Agency |
|01FC0000|xpsp2res.dll|Service Pack 2 Messages |5.1.2600.5512 |2897920|2008-04-13 23:09:26|C:\WINDOWS\system32 |
|023B0000|DELS3.DLL |PostScript Printer Driver |0.3.0.0 |889344 |2006-12-15 20:42:48|C:\WINDOWS\System32\spool\DRIVERS\W32X86\ 3 |
|024D0000|shook45.dll | | |32768 |2003-04-08 23:57:10|C:\Program Files\stickies |
|02560000|MWSOESTB.DLL|My Web Search Plugin Loader |1.2.3.4 |45134 |2009-05-14 08:02:54|C:\Program Files\MyWebSearch\bar\2.bin |
|026E0000|dadkeyb.dll | | |98304 |2007-05-14 14:24:00|C:\Program Files\Dell\QuickSet |
|02720000|hccutils.DLL|hccutils Module |6.14.10.4831 |102400 |2007-05-18 11:45:32|C:\WINDOWS\system32 |
|02C60000|biolsp.dll |BioLsp Dynamic Link Library |1.4.0.99 |212992 |2007-01-31 20:15:20|C:\WINDOWS\system32 |
|02ED0000|bmnet.dll |Bytemobile Network Provider |4.1.0.3031 |471040 |2009-05-26 17:38:00|C:\WINDOWS\system32 |
|10000000|wxvault.dll |wxvault Dynamic Link Library |5.6.0.3 |286720 |2007-01-30 15:31:50|C:\WINDOWS\system32 |
|337A0000|sqlncli.dll |Microsoft SQL Native Client |2005.90.2047.0 |2222936|2006-04-14 10:07:12|c:\WINDOWS\system32 |
|4DE10000|msado15.dll |Microsoft Data Access - ActiveX Data Objects |2.81.1132.0 |536576 |2008-04-14 05:42:00|C:\Program Files\Common Files\System\ado |
|5AD70000|uxtheme.dll |Microsoft UxTheme Library |6.0.2900.5512 |218624 |2008-04-14 05:42:10|C:\WINDOWS\system32 |
|5B860000|NETAPI32.dll|Net Win32 API DLL |5.1.2600.5694 |337408 |2008-10-15 11:34:24|C:\WINDOWS\system32 |
|662B0000|hnetcfg.dll |Home Networking Configuration Manager |5.1.2600.5512 |344064 |2008-04-14 05:41:56|C:\WINDOWS\system32 |
|68000000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |5.1.2600.5507 |208384 |2008-04-13 23:07:58|C:\WINDOWS\system32 |
|68100000|dssenh.dll |Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider|5.1.2600.5507 |138752 |2008-04-13 23:07:58|C:\WINDOWS\system32 |
|6A900000|DELS3du.DLL |PostScript Printer Driver User Interface |0.3.0.0 |371200 |2006-12-15 20:42:40|C:\WINDOWS\System32\spool\DRIVERS\W32X86\ 3 |
|71A50000|mswsock.dll |Microsoft Windows Sockets 2.0 Service Provider |5.1.2600.5625 |245248 |2008-06-20 12:46:58|C:\WINDOWS\System32 |
|71A90000|wshtcpip.dll|Windows Sockets Helper DLL |5.1.2600.5512 |19456 |2008-04-14 05:42:12|C:\WINDOWS\System32 |
|71AA0000|WS2HELP.dll |Windows Socket 2.0 Helper for Windows NT |5.1.2600.5512 |19968 |2008-04-14 05:42:12|C:\WINDOWS\system32 |
|71AB0000|WS2_32.dll |Windows Socket 2.0 32-Bit DLL |5.1.2600.5512 |82432 |2008-04-14 05:42:12|C:\WINDOWS\system32 |
|71AD0000|wsock32.dll |Windows Socket 32-Bit DLL |5.1.2600.5512 |22528 |2008-04-14 05:42:12|C:\WINDOWS\system32 |
|71B20000|mpr.dll |Multiple Provider Router DLL |5.1.2600.5512 |59904 |2008-04-14 05:41:58|C:\WINDOWS\system32 |
|71CF0000|kerberos.dll|Kerberos Security Package |5.1.2600.5512 |299520 |2008-04-14 05:41:58|C:\WINDOWS\system32 |
|73000000|winspool.drv|Windows Spooler Driver |5.1.2600.5512 |146432 |2008-04-14 05:42:46|C:\WINDOWS\system32 |
|73160000|oledb32.dll |Microsoft Data Access - OLE DB Core Services |2.81.1132.0 |487424 |2008-04-14 05:42:04|C:\Program Files\Common Files\System\Ole DB |
|732E0000|RICHED32.DLL|Wrapper Dll for Richedit 1.0 |5.1.2600.0 |3584 |2004-08-04 05:00:00|C:\WINDOWS\system32 |
|74720000|MSCTF.dll |MSCTF Server DLL |5.1.2600.5512 |297984 |2008-04-14 05:42:00|C:\WINDOWS\system32 |
|74E30000|RICHED20.dll|Rich Text Edit Control, v3.0 |5.30.23.1230 |433664 |2008-04-14 05:42:06|C:\WINDOWS\system32 |
|75350000|OLEDB32R.DLL|Microsoft Data Access - OLE DB Core Services Resources |2.81.1132.0 |65536 |2008-04-14 05:42:04|C:\Program Files\Common Files\System\Ole DB |
|76380000|msimg32.dll |GDIEXT Client DLL |5.1.2600.5512 |4608 |2008-04-14 05:42:00|C:\WINDOWS\system32 |
|76390000|imm32.dll |Windows XP IMM32 API Client DLL |5.1.2600.5512 |110080 |2008-04-14 05:41:56|C:\WINDOWS\system32 |
|763B0000|comdlg32.dll|Common Dialogs DLL |6.0.2900.5512 |276992 |2008-04-14 05:41:52|C:\WINDOWS\system32 |
|765B0000|MSDART.DLL |Microsoft Data Access - OLE DB Runtime Routines |2.81.1132.0 |151552 |2008-04-14 05:42:00|C:\WINDOWS\system32 |
|76780000|SHFolder.dll|Shell Folder Service |6.0.2900.5512 |25088 |2008-04-14 05:42:06|C:\WINDOWS\system32 |
|76790000|cryptdll.dll|Cryptography Manager |5.1.2600.5512 |33280 |2008-04-14 05:41:52|C:\WINDOWS\system32 |
|767F0000|schannel.dll|TLS / SSL Security Provider |5.1.2600.5721 |144896 |2008-12-05 01:54:56|C:\WINDOWS\system32 |
|769C0000|USERENV.dll |Userenv |5.1.2600.5512 |727040 |2008-04-14 05:42:10|C:\WINDOWS\system32 |
|76B40000|winmm.dll |MCI API DLL |5.1.2600.5512 |176128 |2008-04-14 05:42:10|C:\WINDOWS\system32 |
|76BF0000|PSAPI.DLL |Process Status Helper |5.1.2600.5512 |23040 |2008-04-14 05:42:04|C:\WINDOWS\system32 |
|76D60000|iphlpapi.dll|IP Helper API |5.1.2600.5512 |94720 |2008-04-14 05:41:56|C:\WINDOWS\system32 |
|76F20000|DNSAPI.dll |DNS Client API DLL |5.1.2600.5625 |147968 |2008-06-20 12:46:58|C:\WINDOWS\system32 |
|76FC0000|rasadhlp.dll|Remote Access AutoDial Helper |5.1.2600.5512 |7680 |2008-04-14 05:42:04|C:\WINDOWS\system32 |
|76FD0000|CLBCATQ.DLL | |2001.12.4414.700|498688 |2008-04-14 05:41:52|C:\WINDOWS\system32 |
|77050000|COMRes.dll | |2001.12.4414.700|792064 |2008-04-14 05:41:52|C:\WINDOWS\system32 |
|77120000|oleaut32.dll| |5.1.2600.5512 |551936 |2008-04-14 05:42:04|C:\WINDOWS\system32 |
|773D0000|comctl32.dll|User Experience Controls Library |6.0.2900.5512 |1054208|2008-04-14 05:42:52|C:\WINDOWS\WinSxS\x86_Microsoft.Windows.C ommon-Controls_6595b64 144ccf1df_6.0.2600.5512_x-ww_35d4ce83|
|774E0000|ole32.dll |Microsoft OLE for Windows |5.1.2600.5512 |1287168|2008-04-14 05:42:04|C:\WINDOWS\system32 |
|77920000|SETUPAPI.dll|Windows Setup API |5.1.2600.5512 |985088 |2008-04-14 05:42:06|C:\WINDOWS\system32 |
|77A80000|CRYPT32.dll |Crypto API32 |5.131.2600.5512 |599040 |2008-04-14 05:41:52|C:\WINDOWS\system32 |
|77B20000|MSASN1.dll |ASN.1 Runtime APIs |5.1.2600.5512 |57344 |2008-04-14 05:42:00|C:\WINDOWS\system32 |
|77C00000|version.dll |Version Checking and File Installation Libraries |5.1.2600.5512 |18944 |2008-04-14 05:42:10|C:\WINDOWS\system32 |
|77C10000|msvcrt.dll |Windows NT CRT DLL |7.0.2600.5512 |343040 |2008-04-14 05:42:02|C:\WINDOWS\system32 |
|77C70000|msv1_0.dll |Microsoft Authentication Package v1.0 |5.1.2600.5512 |132608 |2008-04-14 05:42:02|C:\WINDOWS\system32 |
|77DD0000|advapi32.dll|Advanced Windows 32 Base API |5.1.2600.5755 |617472 |2009-02-09 07:10:48|C:\WINDOWS\system32 |
|77E70000|RPCRT4.dll |Remote Procedure Call Runtime |5.1.2600.5795 |585216 |2009-04-15 09:51:26|C:\WINDOWS\system32 |
|77F10000|GDI32.dll |GDI Client DLL |5.1.2600.5698 |286720 |2008-10-23 07:36:14|C:\WINDOWS\system32 |
|77F60000|SHLWAPI.dll |Shell Light-weight Utility Library |6.0.2900.5512 |474112 |2008-04-14 05:42:06|C:\WINDOWS\system32 |
|77FE0000|Secur32.dll |Security Support Provider Interface |5.1.2600.5753 |56832 |2009-02-03 14:59:08|C:\WINDOWS\system32 |
|7C800000|kernel32.dll|Windows NT BASE API Client DLL |5.1.2600.5781 |989696 |2009-03-21 09:06:58|C:\WINDOWS\system32 |
|7C900000|ntdll.dll |NT Layer DLL |5.1.2600.5755 |714752 |2009-02-09 07:10:48|C:\WINDOWS\system32 |
|7C9C0000|shell32.dll |Windows Shell Common Dll |6.0.2900.5512 |8461312|2008-04-14 05:42:06|C:\WINDOWS\system32 |
|7E410000|user32.dll |Windows XP USER API Client DLL |5.1.2600.5512 |578560 |2008-04-14 05:42:10|C:\WINDOWS\system32 |
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Processes Information:
--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
|ID |Name |Description |Version |Memory |Priority |Threads|Path |
--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
|4 |System | | |62074880 |Normal |70 | |
|320 |AsfIpMon.exe |Broadcom ASF IP and SMBIOS Mailbox Monitor |7.2.2.0 |1916928 |Normal |6 |C:\Program Files\Broadcom\ASFIPMon |
|416 |jqs.exe |Java(TM) Quick Starter Service |6.0.110.3 |1929216 |Low |11 |C:\Program Files\Java\jre6\bin |
|568 |jucheck.exe |Java(TM) Update Checker |6.0.110.3 |692224 |Normal |10 |C:\Program Files\Java\jre6\bin |
|688 |smss.exe | | |73728 |Normal |3 |\SystemRoot\System32 |
|768 |winlogon.exe | | |6639616 |High |29 |C:\WINDOWS\system32 |
|816 |services.exe |Services and Controller app |5.1.2600.5755 |3862528 |Normal |15 |C:\WINDOWS\system32 |
|828 |lsass.exe |LSA Shell (Export Version) |5.1.2600.5512 |7475200 |Normal |28 |C:\WINDOWS\system32 |
|1012|svchost.exe |Generic Host Process for Win32 Services |5.1.2600.5512 |2424832 |Normal |22 |C:\WINDOWS\system32 |
|1032|LMIGuardian.exe |LMIGuardian |9.0.0.982 |204800 |Normal |2 |C:\Program Files\LogMeIn\x86 |
|1184|svchost.exe |Generic Host Process for Win32 Services |5.1.2600.5512 |34004992 |Normal |83 |C:\WINDOWS\System32 |
|1224|svchost.exe |Generic Host Process for Win32 Services |5.1.2600.5512 |204800 |Normal |5 |C:\WINDOWS\system32 |
|1304|mwsoemon.exe |My Web Search Plugin Loader |1.2.2.5 |368640 |Normal |1 |C:\PROGRA~1\MYWEBS~1\bar\2.bin |
|1316|igfxsrvc.exe |igfxsrvc Module |6.14.10.4831 |1617920 |Normal |4 |C:\WINDOWS\system32 |
|1344|stsystra.exe |Sigmatel Audio system tray application |1.0.5401.0 |614400 |Normal |5 |C:\WINDOWS |
|1364|NICCONFIGSVC.exe |Internal Network Card Power Management Service |8.1.12.0 |454656 |Normal |4 |C:\Program Files\Dell\QuickSet |
|1388|RoxioUpnpService9.exe |RoxioUpnpService9 Module |9.4.0.89 |1748992 |Normal |15 |C:\Program Files\Roxio\Digital Home 9 |
|1468|avgcsrvx.exe |AVG Scanning Core Module - Server Part |8.5.0.401 |13877248 |Normal |3 |C:\Program Files\AVG\AVG8 |
|1612|WLTRYSVC.EXE | | |102400 |Normal |2 |C:\WINDOWS\System32 |
|1624|bcmwltry.exe |Dell Wireless WLAN Card Wireless Network Controller |4.100.15.8 |2441216 |Normal |6 |C:\WINDOWS\System32 |
|1668|spoolsv.exe |Spooler SubSystem App |5.1.2600.5512 |4784128 |Normal |11 |C:\WINDOWS\system32 |
|1864|avgcsrvx.exe |AVG Scanning Core Module - Server Part |8.5.0.401 |122880 |Normal |4 |C:\Program Files\AVG\AVG8 |
|2236|SAAZDPMACTL.EXE |SAAZDPMACTL Application |5.0.0.5 |905216 |Normal |4 |C:\PROGRA~1\SAAZOD |
|2252|SAAZRemoteSupport.exe |SAAZRemoteSupport Application |6.0.0.2 |819200 |Normal |2 |C:\PROGRA~1\SAAZOD |
|2284|SAAZScheduler.exe |SAAZScheduler |5.0.0.5 |684032 |High |3 |c:\progra~1\saazod |
|2300|SAAZServerPlus.exe |SAAZServerPlus |5.0.0.0 |204800 |Normal |8 |C:\PROGRA~1\SAAZOD |
|2332|SAAZWatchDog.exe |SAAZWatc Application |5.0.0.5 |3219456 |High |3 |C:\PROGRA~1\SAAZOD |
|2372|StacSV.exe |STacSV Module |1.0.5401.0 |512000 |Normal |8 |C:\Program Files\SigmaTel\C-Major Audio\WDM |
|2480|svchost.exe |Generic Host Process for Win32 Services |5.1.2600.5512 |1679360 |Normal |7 |C:\WINDOWS\system32 |
|2584|dllhost.exe |COM Surrogate |5.1.2600.5512 |299008 |Normal |6 |C:\WINDOWS\system32 |
|2632|jusched.exe |Java(TM) Platform SE binary |6.0.110.3 |126976 |Normal |1 |C:\Program Files\Java\jre6\bin |
|2700|ctfmon.exe |CTF Loader |5.1.2600.5512 |827392 |Normal |1 |C:\WINDOWS\system32 |
|3132|dllhost.exe |COM Surrogate |5.1.2600.5512 |1179648 |Normal |15 |C:\WINDOWS\system32 |
|3244|KADxMain.exe |IntelliSonic Systray Control (KADxMain) |2.1.0.12 |548864 |Normal |3 |C:\WINDOWS\system32 |
|3456|hkcmd.exe |hkcmd Module |6.14.10.4831 |356352 |Normal |2 |C:\WINDOWS\system32 |
|3544|gamevance32.exe | | |4767744 |Normal |7 |C:\Program Files\Gamevance |
|3776|SecureUpgrade.exe |Check For Later Product Line |5.3.0.10 |3031040 |Normal |8 |C:\Program Files\Wave Systems Corp |
|3856|RDVCHG.exe |C-motech Run Time Device Change |2.0.1.3 |1748992 |Normal |3 |C:\Program Files\Sprint\Sprint SmartView |
|4024|Explorer.EXE |Windows Explorer |6.0.2900.5512 |16220160 |Normal |15 |C:\WINDOWS |
|4080|RoxMediaDB9.exe |RoxMediaDB9 Module |9.4.1.2 |2068480 |Normal |13 |C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM |
|4424|HidFind.exe |Alps Pointing-device Driver |7.0.0.26 |786432 |Normal |1 |C:\Program Files\Apoint |
|4444|stickies.exe |Stickies 6.0c |6.0.3.0 |2711552 |Normal |11 |C:\Program Files\stickies |
|4792|avgrsx.exe |AVG Resident Shield Service |8.5.0.401 |17305600 |Normal |11 |C:\PROGRA~1\AVG\AVG8 |
|4856|Apoint.exe |Alps Pointing-device Driver |7.0.101.199 |655360 |Normal |2 |C:\Program Files\Apoint |
|5096|RMHLPDSK.exe |RMHLPDSK Application |6.0.0.2 |6426624 |Above-Normal|8 |C:\PROGRA~1\SAAZOD |
|5164|GoogleDesktop.exe |Google Desktop |5.0.612.17663 |1097728 |Normal |4 |C:\Program Files\Google\Google Desktop Search |
|5252|quickset.exe |QuickSet |8.1.12.0 |1994752 |Normal |5 |C:\Program Files\Dell\QuickSet |
|5276|WLTRAY.exe |Dell Wireless WLAN Card Wireless Network Tray Applet |4.100.15.8 |65564672 |Normal |7 |C:\WINDOWS\system32 |
|5296|Agent.exe | |3.1.1.50 |10661888 |Normal |7 |C:\Program Files\Sure-Track Agency |
|5300|Acrotray.exe |AcroTray |8.1.2.86 |6909952 |Normal |3 |C:\Program Files\Adobe\Acrobat 8.0\Acrobat |
|5340|docmgr.exe |Document Manager Hook Startup |5.6.0.3 |122880 |Normal |1 |C:\Program Files\Wave Systems Corp\Services Manager\DocMgr\bin |
|5372|FNPLicensingService.exe|Activation Licensing Service |11.3.5.1 |2682880 |Normal |5 |C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher|
|5556|GoogleDesktopIndex.exe |Google Desktop |5.0.612.17663 |110592 |Normal |6 |C:\Program Files\Google\Google Desktop Search |
|5580|OUTLOOK.EXE |Microsoft Office Outlook |12.0.6300.5000|154890240|Normal |63 |C:\Program Files\Microsoft Office\Office12 |
|5588|ApMsgFwd.exe |ApMsgFwd |7.0.0.15 |294912 |Normal |3 |C:\Program Files\Apoint |
|5624|DLG.exe |Digital Line Detection |1.0.0.2 |327680 |Normal |2 |C:\Program Files\Digital Line Detect |
|5640|avgwdsvc.exe |AVG Watchdog Service |8.5.0.401 |2736128 |Normal |32 |C:\PROGRA~1\AVG\AVG8 |
|5764|avgam.exe |AVG Alert Manager |8.5.0.401 |8998912 |Normal |40 |C:\PROGRA~1\AVG\AVG8 |
|5792|Apntex.exe |Alps Pointing-device Driver for Windows NT/2000/XP/Vista|7.0.1.26 |270336 |Normal |2 |C:\Program Files\Apoint |
|5804|LMIGuardian.exe |LMIGuardian |9.0.0.982 |204800 |Normal |2 |c:\Program Files\LogMeIn\x86 |
|5808|LogMeInSystray.exe |LogMeIn Desktop Application |3.0.0.596 |2781184 |Normal |9 |C:\Program Files\LogMeIn\x86 |
|5836|PDVDDXSrv.exe |CyberLink PowerCinema Resident Program |4.5.0.0 |1003520 |Normal |2 |C:\Program Files\CyberLink\PowerDVD DX |
|5852|avgtray.exe |AVG Tray Monitor |8.5.0.422 |3190784 |Normal |10 |C:\PROGRA~1\AVG\AVG8 |
|5884|LogMeIn.exe |LogMeIn |3.0.0.596 |5701632 |Normal |25 |c:\Program Files\LogMeIn\x86 |
|5892|MaxCommunicator.exe |MaxCommunicator |6.0.1.404 |17829888 |Normal |21 |C:\Program Files\AltiGen\MaxCommunicator |
|5920|igfxpers.exe |persistence Module |6.14.10.4831 |368640 |Normal |3 |C:\WINDOWS\system32 |
|6040|RaMaint.exe |LogMeIn Maintenance Service |4.0.0.982 |413696 |Normal |2 |c:\Program Files\LogMeIn\x86 |
--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Assembler Information:
----------------------------------------------------
01339A31 hlt ; <-- EXCEPTION
01339A32 dec edi
01339A33 add [edx+$1E], edx
01339A36 inc ebx
01339A37 jle +$00
01339A39 add [eax], al
01339A3B add [edx], bl
01339A3D add [eax], al
01339A3F add [edx+ecx+$42], cl
01339A43 add [eax], al
01339A45 add [eax], al
Registers:
-----------------------------
EAX: 038BA8A7
EDI: 0012FE68
EBX: 00000000
ESI: 02580E75
ECX: 0148D3F0
ESP: 0012FDC8
EDX: 0012FDF0
EIP: 01339A31
Stack:
Memory Dump:
---------------------------------------------------------------------------------------------
0012FDC8: 00988BDB 01339A31: F4 4F 01 52 1E 43 7E 00 00 00 00 1A 00 00 00 4C .O.R.C~........L
0012FDCC: 0012FE84 01339A41: 0A 42 00 00 00 00 00 00 00 00 00 00 00 00 00 18 .B..............
0012FDD0: 0040498C 01339A51: 00 00 00 16 00 00 00 4C 0A 42 00 4C B7 4F 01 03 .......L.B.L.O..
0012FDD4: 0012FDE8 01339A61: 00 00 00 04 00 00 00 22 00 00 00 01 00 00 00 13 ......."........
0012FDD8: 0012FE68 01339A71: 00 00 00 67 72 69 64 4C 65 6E 64 65 72 54 72 61 ...gridLenderTra
0012FDDC: 02580E76 01339A81: 6E 54 79 70 65 73 00 26 03 00 00 78 3F AA 00 3C nTypes.&...x?..<
0012FDE0: 00000000 01339A91: 85 4C 01 74 9A 33 01 00 00 00 00 00 00 00 00 00 .L.t.3..........
0012FDE4: 01339A30 01339AA1: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 ................
0012FDE8: 0012FE00 01339AB1: 00 00 00 86 1C 42 00 96 1C 42 00 B4 95 33 01 00 .....B...B...3..
0012FDEC: 0043077A 01339AC1: 00 00 00 28 69 AA 00 8C 9A 33 01 10 00 00 00 14 ...(i....3......
0012FDF0: 0000001C 01339AD1: 00 00 00 29 03 00 00 E1 01 00 00 AA 20 04 00 00 ...)........ ...
0012FDF4: 00000000 01339AE1: 00 00 01 01 00 01 00 00 00 00 00 01 03 00 00 00 ................
0012FDF8: 00001758 01339AF1: 00 00 00 B0 9D 33 01 00 00 00 00 EA F1 FF 00 D8 .....3..........
0012FDFC: 00000000 01339B01: 9D 33 01 00 00 F4 FF 00 00 00 00 00 00 00 00 F5 .3..............
0012FE00: 0012FE2C 01339B11: FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
0012FE04: 7E418734 01339B21: 00 00 00 00 01 01 00 00 00 00 00 00 00 00 00 00 ................