EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:47:43 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 15 seconds Exception: ------------------------------------------------------------------------------------------------------------ 2.1 Date : Wed, 5 Feb 2014 12:47:58 +0400 2.2 Address : 779832CE 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 779832CE in module 'ntdll.dll'. Write of address 6D616E24. 2.7 ID : BE26 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1079 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ---------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ---------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=3460; Priority=1; Class=; [Main] | |--------------------------------------------------------------------------------------------------------------------------------------| |779832CE|ntdll.dll | | |RtlTryEnterCriticalSection | | |779832BC|ntdll.dll | | |RtlTryEnterCriticalSection | | |77964CC0|ntdll.dll | | |memcpy | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |00650061|SASPlanet.Debug.exe|uPSCompiler.pas | |BlockWriteByte |1838[1] | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace | | |77976058|ntdll.dll | | |NtQueryInformationFile | | |77976062|ntdll.dll | | |NtQueryInformationFile | | |7798768D|ntdll.dll | | |RtlDosApplyFileIsolationRedirection_Ustr | | |779A121B|ntdll.dll | | |RtlGetLengthWithoutLastFullDosOrNtPathElement| | |77983306|ntdll.dll | | |RtlFreeAnsiString | | |779878DF|ntdll.dll | | |RtlDosApplyFileIsolationRedirection_Ustr | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |00650061|SASPlanet.Debug.exe|uPSCompiler.pas | |BlockWriteByte |1838[1] | |77985705|ntdll.dll | | |RtlEqualUnicodeString | | |779858FC|ntdll.dll | | |RtlInitAnsiStringEx | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |00650061|SASPlanet.Debug.exe|uPSCompiler.pas | |BlockWriteByte |1838[1] | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |00650061|SASPlanet.Debug.exe|uPSCompiler.pas | |BlockWriteByte |1838[1] | |7799231D|ntdll.dll | | |LdrLoadDll | | |77965340|ntdll.dll | | |memset | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |76C96F51|ole32.dll | | |CoTaskMemFree | | |77459790|msvcrt.dll | | |_sys_errlist | | |77965340|ntdll.dll | | |memset | | |7798CDAE|ntdll.dll | | |bsearch | | |7798759B|ntdll.dll | | |RtlFindActivationContextSectionString | | |77983306|ntdll.dll | | |RtlFreeAnsiString | | |779878DF|ntdll.dll | | |RtlDosApplyFileIsolationRedirection_Ustr | | |77999B2F|ntdll.dll | | |RtlGetLastWin32Error | | |779830FB|ntdll.dll | | |RtlRestoreLastWin32Error | | |77990176|ntdll.dll | | |LdrUnlockLoaderLock | | |7798F58D|ntdll.dll | | |RtlImageNtHeaderEx | | |7798FA3F|ntdll.dll | | |RtlImageNtHeader | | |77990176|ntdll.dll | | |LdrUnlockLoaderLock | | |7799011D|ntdll.dll | | |LdrUnlockLoaderLock | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7799666F|ntdll.dll | | |RtlGetVersion | | |779965E9|ntdll.dll | | |RtlGetNtProductType | | |75A08E52|KERNELBASE.dll | | |GetVersionExW | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |7697D4F0|kernel32.dll | | |RegQueryValueExW | | |7697D549|kernel32.dll | | |RegQueryValueExW | | |7697D551|kernel32.dll | | |RegQueryValueExW | | |779990C8|ntdll.dll | | |RtlImageRvaToSection | | |779990A4|ntdll.dll | | |RtlAddressInSectionTable | | |77999096|ntdll.dll | | |RtlAddressInSectionTable | | |7798F58D|ntdll.dll | | |RtlImageNtHeaderEx | | |7798FA3F|ntdll.dll | | |RtlImageNtHeader | | |779990C8|ntdll.dll | | |RtlImageRvaToSection | | |77965340|ntdll.dll | | |memset | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77509786|USER32.dll | | |LoadAcceleratorsW | | |7751CDAB|USER32.dll | | |OffsetRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77964CC0|ntdll.dll | | |memcpy | | |7751CDAB|USER32.dll | | |OffsetRect | | |77515500|USER32.dll | | |GetClientRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77515BE9|USER32.dll | | |GetPropW | | |775153F5|USER32.dll | | |IsWindow | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77965340|ntdll.dll | | |memset | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |7740C511|SHLWAPI.dll | | |QISearch | | |7751CDAB|USER32.dll | | |OffsetRect | | |77515500|USER32.dll | | |GetClientRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |777A5EC0|USP10.dll | | |ScriptTextOut | | |77965340|ntdll.dll | | |memset | | |7750A984|USER32.dll | | |GetWindowLongA | | |7751557D|USER32.dll | | |SendMessageW | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |7697D4F0|kernel32.dll | | |RegQueryValueExW | | |7697D549|kernel32.dll | | |RegQueryValueExW | | |7697D551|kernel32.dll | | |RegQueryValueExW | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |77964CC0|ntdll.dll | | |memcpy | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |77983306|ntdll.dll | | |RtlFreeAnsiString | | |779878DF|ntdll.dll | | |RtlDosApplyFileIsolationRedirection_Ustr | | |77515500|USER32.dll | | |GetClientRect | | |75A08552|KERNELBASE.dll | | |MultiByteToWideChar | | |00740062|SASPlanet.Debug.exe|u_MarkPictureListSimple.pas|TMarkPictureListSimple|GetDefaultPicture |194[2] | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |77965340|ntdll.dll | | |memset | | |77467975|msvcrt.dll | | |memcmp | | |771A3BF6|iertutil.dll | | |CreateUriPriv | | |771A362E|iertutil.dll | | |CreateUri | | |77459910|msvcrt.dll | | |memcpy | | |77844623|oleaut32.dll | | |SysAllocStringLen | | |77843E59|oleaut32.dll | | |SysFreeString | | ---------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00350000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00E30000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |53720000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |54AE0000|mshtml.dll |Средство просмотра HTML Microsoft® |10.0.9200.16750 |14356992|2013-10-25 08:44:02|C:\Windows\System32 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |66DB0000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |68140000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |682C0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758A0000|apphelp.dll |Клиентская библиотека совместимости приложений |6.1.7601.17514 |295936 |2010-11-21 01:29:14|C:\Windows\system32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |140 | | |200 |GoogleUpdate.exe | | |0 |Low |5 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |26 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |11 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |9 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |16 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |53 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |10 | | |1436|cvpnd.exe | | |0 |Normal |9 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |34 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |17 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |4 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |73 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |14 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |18 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |11 | | |3636|Smc.exe | | |0 |Normal |32 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |6 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|7 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |7 | | |4400|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |32 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |10 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |18 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |39 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |16 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |46 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |13 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |18 |C:\Program Files\Unreal Commander | |7336|GoogleUpdate.exe | | |0 |Normal |10 | | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ---------------------------------------------------------------------------------------- ; RtlTryEnterCriticalSection (Line=0 - Offset=0) ; ---------------------------------------------- 779832BC mov edi, edi 779832BE push ebp 779832BF mov ebp, esp 779832C1 mov eax, [ebp+$08] 779832C4 mov ecx, fs:[$0018] 779832CB lea edx, [eax+$04] 779832CE lock ; <-- EXCEPTION 779832CF DB $0F, $BA, $32, $00 // dword ptr [edx], $00 779832D3 jnb +$00013493 779832D9 mov ecx, [ecx+$24] 779832DC mov [eax+$0C], ecx 779832DF mov dword ptr [eax+$08], $00000001 ; ''... Registers: ----------------------------- EAX: 6D616E20 EDI: 000100CC EBX: 00010000 ESI: 00000000 ECX: 7FFDF000 ESP: 00129704 EDX: 6D616E24 EIP: 779832CE Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 00129704: 001297E0 0D4A2F30: F0 0F BA 32 00 0F 83 93 34 01 00 8B 49 24 89 48 ...2....4...I$.H 00129708: 77985B81 0D4A2F40: 0C C7 40 08 01 00 00 00 B8 01 00 00 00 5D C2 04 ..@..........].. 0012970C: 6D616E20 0D4A2F50: 00 90 90 90 90 90 3B 0D E8 71 A0 77 0F 85 1D 58 ......;..q.w...X 00129710: 7773D49F 0D4A2F60: 05 00 C3 90 90 90 90 90 8B FF 55 8B EC 57 8B 7D ..........U..W.} 00129714: 000000F4 0D4A2F70: 08 8B 47 04 85 C0 0F 85 D6 23 00 00 5F 5D C2 04 ..G......#.._].. 00129718: 00000000 0D4A2F80: 00 90 90 90 90 90 8B FF 55 8B EC 8B 45 08 83 C9 ........U...E... 0012971C: 00010000 0D4A2F90: FF F0 0F C1 08 F6 C1 01 0F 84 83 F5 02 00 F6 C1 ................ 00129720: 00129740 0D4A2FA0: 02 0F 85 00 A9 FC FF 5D C2 04 00 90 90 90 90 90 .......]........ 00129724: 779892E1 0D4A2FB0: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 00129728: 00000002 0D4A2FC0: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 56 57 ..l$.....8.e..VW 0012972C: 00000000 0D4A2FD0: 8B 7B 08 8B C7 F0 0F BA 28 00 0F 82 C8 A7 FC FF .{......(....... 00129730: 00000004 0D4A2FE0: 5F 5E 8B E5 5D 8B E3 5B C2 04 00 90 90 90 90 90 _^..]..[........ 00129734: 00000009 0D4A2FF0: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 00129738: 00000000 0D4A3000: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 8B 53 ..l$.....8.e...S 0012973C: 00000008 0D4A3010: 08 56 57 6A 11 59 33 C0 F0 0F B1 0A 8B C8 89 4D .VWj.Y3........M 00129740: 00000000 0D4A3020: F8 85 C9 0F 85 05 D5 FC FF 5F 5E 8B E5 5D 8B E3 ........._^..].. EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:47:43 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 40 seconds Exception: ---------------------------------------------------- 2.1 Date : Wed, 5 Feb 2014 12:48:23 +0400 2.2 Address : 007B1FE0 2.3 Module Name : SASPlanet.Debug.exe 2.4 Module Version: 14.1.22.7812 2.5 Type : EOleException 2.6 Message : Требуемый ресурс занят. 2.7 ID : A094 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1054 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------ |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------ |Running Thread: ID=3460; Priority=1; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |007B1FE0|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1771[1] | |007B1F9C|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1770[0] | |007BAE7C|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |AssignEmptyDocument |1786[1] | |007BAE6C|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |AssignEmptyDocument |1785[0] | |007BB4D9|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |LoadFromStrings |2164[2] | |007BB4A0|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |LoadFromStrings |2162[0] | |007BADDE|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |HTMLCodeChanged |1650[25] | |007BD318|SASPlanet.Debug.exe|EmbeddedWB.pas | |Finalization |3554[2] | |007BD2DC|SASPlanet.Debug.exe|EmbeddedWB.pas | |Finalization |3554[2] | |007BDABB|SASPlanet.Debug.exe|u_InternalBrowserByForm.pas |TInternalBrowserByForm |Navigate |77[2] | |00897DFC|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |mapMouseUp |5503[140]| |0055F340|SASPlanet.Debug.exe|GR32_Image.pas |TCustomImage32 |MouseUp |1750[1] | |0055F28C|SASPlanet.Debug.exe|GR32_Image.pas |TCustomImage32 |MouseUp |1732[10] | |7750ABE1|USER32.dll | | |CallNextHookEx | | |007B6E7A|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |007B6E91|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |77983509|ntdll.dll | | |RtlMultiByteToUnicodeN | | |77509DC7|USER32.dll | | |GetCapture | | |7750AC19|USER32.dll | | |CallNextHookEx | | |775164F7|USER32.dll | | |KillTimer | | |77512E3C|USER32.dll | | |DispatchMessageA | | |77512E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |----------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6620; Priority=0; Class=TGarbageCollectorThread | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A62|ntdll.dll | | |ZwWaitForSingleObject | | |75A01730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7697C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2BD|kernel32.dll | | |Sleep | | |7697C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |779762A2|ntdll.dll | | |ZwQueryVirtualMemory | | |75A091D5|KERNELBASE.dll | | |VirtualQueryEx | | |7697C400|kernel32.dll | | |InterlockedDecrement | | |77976622|ntdll.dll | | |NtSetEvent | | |75A06856|KERNELBASE.dll | | |GetCurrentThreadId | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F083E|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |----------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=8124; Priority=-15; Class=TThread4InterfacedThread | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects| | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx| | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx| | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F174A|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx| | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |----------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=5516; Priority=0; Class=TThread4InterfacedThread | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects| | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx| | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx| | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx| | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |----------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7556; Priority=0; Class=TThread4InterfacedThread | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects| | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx| | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx| | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx| | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |----------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=8000; Priority=-2; Class=TThread4InterfacedThread | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects| | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx| | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx| | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx| | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |----------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=5524; Priority=-2; Class=TThread4InterfacedThread | |----------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects| | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx| | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx| | ------------------------------------------------------------------------------------------------------------------------------------------------------------ Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00350000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00E30000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |53720000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |54AE0000|mshtml.dll |Средство просмотра HTML Microsoft® |10.0.9200.16750 |14356992|2013-10-25 08:44:02|C:\Windows\System32 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |66DB0000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |68140000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |682C0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758A0000|apphelp.dll |Клиентская библиотека совместимости приложений |6.1.7601.17514 |295936 |2010-11-21 01:29:14|C:\Windows\system32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |140 | | |200 |GoogleUpdate.exe | | |0 |Low |5 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |28 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |11 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |18 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |47 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |34 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |30 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |17 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |4 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |73 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |15 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |15 | | |2964|CcmExec.exe | | |0 |Normal |18 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |10 | | |3636|Smc.exe | | |0 |Normal |31 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |13 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |6 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|5 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |7 | | |4400|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |32 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |10 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |18 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |41 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |16 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |46 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |7 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |13 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |18 |C:\Program Files\Unreal Commander | |7336|GoogleUpdate.exe | | |0 |Normal |10 | | |7428|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |5 | | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ----------------------------------------------------------------------- ; SHDocVw_EWB.TEWB.Navigate (Line=1771 - Offset=1) ; ------------------------------------------------ 007B1FC6 mov eax, dword ptr [$8B9CB0] 007B1FCB push eax 007B1FCC push esi 007B1FCD lea edx, [ebp-$04] 007B1FD0 mov eax, ebx 007B1FD2 call SHDocVw_EWB.TEWB.GetControlInterface 007B1FD7 mov eax, [ebp-$04] 007B1FDA push eax 007B1FDB mov eax, [eax] 007B1FDD call dword ptr [eax+$2C] 007B1FE0 call -$003A9C2D ; <-- EXCEPTION ; ; Line=1772 - Offset=2 ; -------------------- 007B1FE5 xor eax, eax 007B1FE7 pop edx 007B1FE8 pop ecx 007B1FE9 pop ecx 007B1FEA mov fs:[eax], edx 007B1FED push $007B2002 ; '^[Y]ГђU‹мj' 007B1FF2 lea eax, [ebp-$04] 007B1FF5 call -$003A9DCE 007B1FFA ret Registers: ----------------------------- EAX: 0F858710 EDI: 00425CE8 EBX: 800700AA ESI: 007B1FE5 ECX: 00000000 ESP: 0012F8E8 EDX: 007B1FE5 EIP: 007B1FE0 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012F8E8: 0012F928 0D4A2F30: E8 D3 63 C5 FF 33 C0 5A 59 59 64 89 10 68 02 20 ..c..3.ZYYd..h. 0012F8EC: 00405720 0D4A2F40: 7B 00 8D 45 FC E8 32 62 C5 FF C3 E9 A0 36 C5 FF {..E..2b.....6.. 0012F8F0: 0012F91C 0D4A2F50: EB F0 5E 5B 59 5D C3 90 55 8B EC 6A 00 53 56 57 ..^[Y]..U..j.SVW 0012F8F4: 007BAE98 0D4A2F60: 8B F9 8B F2 8B D8 33 C0 55 68 60 20 7B 00 64 FF ......3.Uh` {.d. 0012F8F8: 07682C90 0D4A2F70: 30 64 89 20 8B 45 08 50 8B 45 0C 50 8B 45 10 50 0d. .E.P.E.P.E.P 0012F8FC: 00000000 0D4A2F80: 57 56 8D 55 FC 8B C3 E8 3C FF FF FF 8B 45 FC 50 WV.U....<....E.P 0012F900: 00000000 0D4A2F90: 8B 00 FF 50 2C E8 6E 63 C5 FF 33 C0 5A 59 59 64 ...P,.nc..3.ZYYd 0012F904: 00000000 0D4A2FA0: 89 10 68 67 20 7B 00 8D 45 FC E8 CD 61 C5 FF C3 ..hg {..E...a... 0012F908: 00000000 0D4A2FB0: E9 3B 36 C5 FF EB F0 5F 5E 5B 59 5D C2 0C 00 90 .;6...._^[Y].... 0012F90C: 00000000 0D4A2FC0: 55 8B EC 6A 00 53 56 57 8B F9 8B F2 8B D8 33 C0 U..j.SVW......3. 0012F910: 00000000 0D4A2FD0: 55 68 CB 20 7B 00 64 FF 30 64 89 20 8B 45 08 50 Uh. {.d.0d. .E.P 0012F914: 00000000 0D4A2FE0: 8B 45 0C 50 8B 45 10 50 57 56 8D 55 FC 8B C3 E8 .E.P.E.PWV.U.... 0012F918: 00000000 0D4A2FF0: D4 FE FF FF 8B 45 FC 50 8B 00 FF 90 D0 00 00 00 .....E.P........ 0012F91C: 0012F940 0D4A3000: E8 03 63 C5 FF 33 C0 5A 59 59 64 89 10 68 D2 20 ..c..3.ZYYd..h. 0012F920: 004083CB 0D4A3010: 7B 00 8D 45 FC E8 62 61 C5 FF C3 E9 D0 35 C5 FF {..E..ba.....5.. 0012F924: 007B1FE5 0D4A3020: EB F0 5F 5E 5B 59 5D C2 0C 00 8B C0 55 8B EC 6A .._^[Y].....U..j EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:47:43 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 1 minute, 6 seconds Exception: ------------------------------------------------------------------------------------------------------------ 2.1 Date : Wed, 5 Feb 2014 12:48:50 +0400 2.2 Address : 779832CE 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 779832CE in module 'ntdll.dll'. Write of address 6D616E24. 2.7 ID : 7891 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1054 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |779832CE|ntdll.dll | | |RtlTryEnterCriticalSection | | |779832BC|ntdll.dll | | |RtlTryEnterCriticalSection | | |77964CC0|ntdll.dll | | |memcpy | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |775153F5|USER32.dll | | |IsWindow | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |77965340|ntdll.dll | | |memset | | |775153F5|USER32.dll | | |IsWindow | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |0080749E|SASPlanet.Debug.exe|u_MarkDbGUIHelper.pas |TMarkDbGUIHelper |ExportCategoryList |476[2] | |0080745C|SASPlanet.Debug.exe|u_MarkDbGUIHelper.pas |TMarkDbGUIHelper |ExportCategoryList |474[0] | |0087C3B8|SASPlanet.Debug.exe|frm_MarksExplorer.pas |TfrmMarksExplorer |btnExportClick |538[7] | |008248DC|SASPlanet.Debug.exe|TBXControls.pas |TTBXCustomButton |Click |1954[14] | |775154DD|USER32.dll | | |GetClientRect | | |7750ABE1|USER32.dll | | |CallNextHookEx | | |007B6E7A|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |007B6E91|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |77509DC7|USER32.dll | | |GetCapture | | |7750AC19|USER32.dll | | |CallNextHookEx | | |77512E3C|USER32.dll | | |DispatchMessageA | | |77512E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6620; Priority=0; Class=TGarbageCollectorThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A62|ntdll.dll | | |ZwWaitForSingleObject | | |75A01730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7697C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2BD|kernel32.dll | | |Sleep | | |7697C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |779762A2|ntdll.dll | | |ZwQueryVirtualMemory | | |75A091D5|KERNELBASE.dll | | |VirtualQueryEx | | |7697C400|kernel32.dll | | |InterlockedDecrement | | |77976622|ntdll.dll | | |NtSetEvent | | |75A06856|KERNELBASE.dll | | |GetCurrentThreadId | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F083E|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=8124; Priority=-15; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F174A|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=5516; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7556; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=8000; Priority=-2; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00350000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00E30000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |53720000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |54AE0000|mshtml.dll |Средство просмотра HTML Microsoft® |10.0.9200.16750 |14356992|2013-10-25 08:44:02|C:\Windows\System32 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |66DB0000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |68140000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |682C0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758A0000|apphelp.dll |Клиентская библиотека совместимости приложений |6.1.7601.17514 |295936 |2010-11-21 01:29:14|C:\Windows\system32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |140 | | |200 |GoogleUpdate.exe | | |0 |Low |5 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |28 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |11 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |18 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |47 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |34 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |30 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |4 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |73 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |15 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |15 | | |2964|CcmExec.exe | | |0 |Normal |18 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |10 | | |3636|Smc.exe | | |0 |Normal |32 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |6 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|5 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |7 | | |4400|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |31 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |10 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |18 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |15 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |41 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |46 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |7 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |13 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |16 |C:\Program Files\Unreal Commander | |7336|GoogleUpdate.exe | | |0 |Normal |10 | | |7428|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ---------------------------------------------------------------------------------------- ; RtlTryEnterCriticalSection (Line=0 - Offset=0) ; ---------------------------------------------- 779832BC mov edi, edi 779832BE push ebp 779832BF mov ebp, esp 779832C1 mov eax, [ebp+$08] 779832C4 mov ecx, fs:[$0018] 779832CB lea edx, [eax+$04] 779832CE lock ; <-- EXCEPTION 779832CF DB $0F, $BA, $32, $00 // dword ptr [edx], $00 779832D3 jnb +$00013493 779832D9 mov ecx, [ecx+$24] 779832DC mov [eax+$0C], ecx 779832DF mov dword ptr [eax+$08], $00000001 ; ''... Registers: ----------------------------- EAX: 6D616E20 EDI: 000100CC EBX: 00010000 ESI: 00000000 ECX: 7FFDF000 ESP: 0012EAAC EDX: 6D616E24 EIP: 779832CE Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EAAC: 0012EB88 0D4A2F30: F0 0F BA 32 00 0F 83 93 34 01 00 8B 49 24 89 48 ...2....4...I$.H 0012EAB0: 77985B81 0D4A2F40: 0C C7 40 08 01 00 00 00 B8 01 00 00 00 5D C2 04 ..@..........].. 0012EAB4: 6D616E20 0D4A2F50: 00 90 90 90 90 90 3B 0D E8 71 A0 77 0F 85 1D 58 ......;..q.w...X 0012EAB8: 7773A8F7 0D4A2F60: 05 00 C3 90 90 90 90 90 8B FF 55 8B EC 57 8B 7D ..........U..W.} 0012EABC: 00000120 0D4A2F70: 08 8B 47 04 85 C0 0F 85 D6 23 00 00 5F 5D C2 04 ..G......#.._].. 0012EAC0: 00000000 0D4A2F80: 00 90 90 90 90 90 8B FF 55 8B EC 8B 45 08 83 C9 ........U...E... 0012EAC4: 00010000 0D4A2F90: FF F0 0F C1 08 F6 C1 01 0F 84 83 F5 02 00 F6 C1 ................ 0012EAC8: 0012EAE8 0D4A2FA0: 02 0F 85 00 A9 FC FF 5D C2 04 00 90 90 90 90 90 .......]........ 0012EACC: 779892E1 0D4A2FB0: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012EAD0: 00000002 0D4A2FC0: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 56 57 ..l$.....8.e..VW 0012EAD4: 004C004A 0D4A2FD0: 8B 7B 08 8B C7 F0 0F BA 28 00 0F 82 C8 A7 FC FF .{......(....... 0012EAD8: 7797DA76 0D4A2FE0: 5F 5E 8B E5 5D 8B E3 5B C2 04 00 90 90 90 90 90 _^..]..[........ 0012EADC: 00000009 0D4A2FF0: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012EAE0: 00000000 0D4A3000: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 8B 53 ..l$.....8.e...S 0012EAE4: 00000008 0D4A3010: 08 56 57 6A 11 59 33 C0 F0 0F B1 0A 8B C8 89 4D .VWj.Y3........M 0012EAE8: 00000000 0D4A3020: F8 85 C9 0F 85 05 D5 FC FF 5F 5E 8B E5 5D 8B E3 ........._^..].. EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:47:43 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 1 minute, 18 seconds Exception: ------------------------------------------------------------------------------------------------------------ 2.1 Date : Wed, 5 Feb 2014 12:49:01 +0400 2.2 Address : 779832CE 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 779832CE in module 'ntdll.dll'. Write of address 6D616E24. 2.7 ID : B611 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1053 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |779832CE|ntdll.dll | | |RtlTryEnterCriticalSection | | |779832BC|ntdll.dll | | |RtlTryEnterCriticalSection | | |77964CC0|ntdll.dll | | |memcpy | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |77532BE9|USER32.dll | | |CallWindowProcA | | |775153F5|USER32.dll | | |IsWindow | | |7751557D|USER32.dll | | |SendMessageW | | |77532BE9|USER32.dll | | |CallWindowProcA | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |76A43C9E|MSCTF.dll | | |CtfImeDispatchDefImeMessage | | |775153F5|USER32.dll | | |IsWindow | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |0087C180|SASPlanet.Debug.exe|frm_MarksExplorer.pas |TfrmMarksExplorer |btnImportClick |499[2] | |008248DC|SASPlanet.Debug.exe|TBXControls.pas |TTBXCustomButton |Click |1954[14] | |775154DD|USER32.dll | | |GetClientRect | | |7750ABE1|USER32.dll | | |CallNextHookEx | | |007B6E7A|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |007B6E91|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |77509DC7|USER32.dll | | |GetCapture | | |7750AC19|USER32.dll | | |CallNextHookEx | | |775164F7|USER32.dll | | |KillTimer | | |77512E3C|USER32.dll | | |DispatchMessageA | | |77512E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6620; Priority=0; Class=TGarbageCollectorThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A62|ntdll.dll | | |ZwWaitForSingleObject | | |75A01730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7697C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2BD|kernel32.dll | | |Sleep | | |7697C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |779762A2|ntdll.dll | | |ZwQueryVirtualMemory | | |75A091D5|KERNELBASE.dll | | |VirtualQueryEx | | |7697C400|kernel32.dll | | |InterlockedDecrement | | |77976622|ntdll.dll | | |NtSetEvent | | |75A06856|KERNELBASE.dll | | |GetCurrentThreadId | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F083E|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=8124; Priority=-15; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F174A|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=5516; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7556; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=8000; Priority=-2; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00350000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00E30000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |53720000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |54AE0000|mshtml.dll |Средство просмотра HTML Microsoft® |10.0.9200.16750 |14356992|2013-10-25 08:44:02|C:\Windows\System32 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |66DB0000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |68140000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |682C0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758A0000|apphelp.dll |Клиентская библиотека совместимости приложений |6.1.7601.17514 |295936 |2010-11-21 01:29:14|C:\Windows\system32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |140 | | |200 |GoogleUpdate.exe | | |0 |Low |5 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |28 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |10 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |18 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |54 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |35 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |30 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |3 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |73 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |15 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |15 | | |2964|CcmExec.exe | | |0 |Normal |17 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |10 | | |3636|Smc.exe | | |0 |Normal |32 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |5 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|5 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |7 | | |4400|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |26 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |41 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |46 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |7 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |13 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |16 |C:\Program Files\Unreal Commander | |7336|GoogleUpdate.exe | | |0 |Normal |10 | | |7428|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ---------------------------------------------------------------------------------------- ; RtlTryEnterCriticalSection (Line=0 - Offset=0) ; ---------------------------------------------- 779832BC mov edi, edi 779832BE push ebp 779832BF mov ebp, esp 779832C1 mov eax, [ebp+$08] 779832C4 mov ecx, fs:[$0018] 779832CB lea edx, [eax+$04] 779832CE lock ; <-- EXCEPTION 779832CF DB $0F, $BA, $32, $00 // dword ptr [edx], $00 779832D3 jnb +$00013493 779832D9 mov ecx, [ecx+$24] 779832DC mov [eax+$0C], ecx 779832DF mov dword ptr [eax+$08], $00000001 ; ''... Registers: ----------------------------- EAX: 6D616E20 EDI: 000100CC EBX: 00010000 ESI: 00000000 ECX: 7FFDF000 ESP: 0012EAB0 EDX: 6D616E24 EIP: 779832CE Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EAB0: 0012EB8C 0C9FFDC0: F0 0F BA 32 00 0F 83 93 34 01 00 8B 49 24 89 48 ...2....4...I$.H 0012EAB4: 77985B81 0C9FFDD0: 0C C7 40 08 01 00 00 00 B8 01 00 00 00 5D C2 04 ..@..........].. 0012EAB8: 6D616E20 0C9FFDE0: 00 90 90 90 90 90 3B 0D E8 71 A0 77 0F 85 1D 58 ......;..q.w...X 0012EABC: 7773A8F3 0C9FFDF0: 05 00 C3 90 90 90 90 90 8B FF 55 8B EC 57 8B 7D ..........U..W.} 0012EAC0: 00000120 0C9FFE00: 08 8B 47 04 85 C0 0F 85 D6 23 00 00 5F 5D C2 04 ..G......#.._].. 0012EAC4: 00000000 0C9FFE10: 00 90 90 90 90 90 8B FF 55 8B EC 8B 45 08 83 C9 ........U...E... 0012EAC8: 00010000 0C9FFE20: FF F0 0F C1 08 F6 C1 01 0F 84 83 F5 02 00 F6 C1 ................ 0012EACC: 0012EAEC 0C9FFE30: 02 0F 85 00 A9 FC FF 5D C2 04 00 90 90 90 90 90 .......]........ 0012EAD0: 779892E1 0C9FFE40: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012EAD4: 00000002 0C9FFE50: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 56 57 ..l$.....8.e..VW 0012EAD8: 004C004A 0C9FFE60: 8B 7B 08 8B C7 F0 0F BA 28 00 0F 82 C8 A7 FC FF .{......(....... 0012EADC: 7797DA76 0C9FFE70: 5F 5E 8B E5 5D 8B E3 5B C2 04 00 90 90 90 90 90 _^..]..[........ 0012EAE0: 00000009 0C9FFE80: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012EAE4: 00000000 0C9FFE90: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 8B 53 ..l$.....8.e...S 0012EAE8: 00000008 0C9FFEA0: 08 56 57 6A 11 59 33 C0 F0 0F B1 0A 8B C8 89 4D .VWj.Y3........M 0012EAEC: 00000000 0C9FFEB0: F8 85 C9 0F 85 05 D5 FC FF 5F 5E 8B E5 5D 8B E3 ........._^..].. EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:47:43 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 1 minute, 29 seconds Exception: ------------------------------------------------------------------------------------------------------------ 2.1 Date : Wed, 5 Feb 2014 12:49:13 +0400 2.2 Address : 779832CE 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 779832CE in module 'ntdll.dll'. Write of address 6D616E24. 2.7 ID : 7891 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1031 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |779832CE|ntdll.dll | | |RtlTryEnterCriticalSection | | |779832BC|ntdll.dll | | |RtlTryEnterCriticalSection | | |77964CC0|ntdll.dll | | |memcpy | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |775153F5|USER32.dll | | |IsWindow | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |77965340|ntdll.dll | | |memset | | |775153F5|USER32.dll | | |IsWindow | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |0080749E|SASPlanet.Debug.exe|u_MarkDbGUIHelper.pas |TMarkDbGUIHelper |ExportCategoryList |476[2] | |0080745C|SASPlanet.Debug.exe|u_MarkDbGUIHelper.pas |TMarkDbGUIHelper |ExportCategoryList |474[0] | |0087C3B8|SASPlanet.Debug.exe|frm_MarksExplorer.pas |TfrmMarksExplorer |btnExportClick |538[7] | |008248DC|SASPlanet.Debug.exe|TBXControls.pas |TTBXCustomButton |Click |1954[14] | |775154DD|USER32.dll | | |GetClientRect | | |7750ABE1|USER32.dll | | |CallNextHookEx | | |007B6E7A|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |007B6E91|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |77509DC7|USER32.dll | | |GetCapture | | |7750AC19|USER32.dll | | |CallNextHookEx | | |77512E3C|USER32.dll | | |DispatchMessageA | | |77512E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6620; Priority=0; Class=TGarbageCollectorThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A62|ntdll.dll | | |ZwWaitForSingleObject | | |75A01730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7697C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2BD|kernel32.dll | | |Sleep | | |7697C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |779762A2|ntdll.dll | | |ZwQueryVirtualMemory | | |75A091D5|KERNELBASE.dll | | |VirtualQueryEx | | |7697C400|kernel32.dll | | |InterlockedDecrement | | |77976622|ntdll.dll | | |NtSetEvent | | |75A06856|KERNELBASE.dll | | |GetCurrentThreadId | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F083E|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=8124; Priority=-15; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F174A|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=5516; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7556; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=8000; Priority=-2; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3460; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00350000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00E30000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |53720000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |54AE0000|mshtml.dll |Средство просмотра HTML Microsoft® |10.0.9200.16750 |14356992|2013-10-25 08:44:02|C:\Windows\System32 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |66DB0000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |68140000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |682C0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758A0000|apphelp.dll |Клиентская библиотека совместимости приложений |6.1.7601.17514 |295936 |2010-11-21 01:29:14|C:\Windows\system32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |140 | | |200 |GoogleUpdate.exe | | |0 |Low |5 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |26 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |11 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |9 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |18 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |46 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |9 | | |1524|FwcAgent.exe | | |0 |Normal |10 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |35 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |30 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |18 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |3 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |72 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |15 | | |2964|CcmExec.exe | | |0 |Normal |16 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |9 | | |3636|Smc.exe | | |0 |Normal |32 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |5 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|5 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |7 | | |4400|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |26 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |18 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |15 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |41 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |6 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |19 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |46 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |13 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |16 |C:\Program Files\Unreal Commander | |7336|GoogleUpdate.exe | | |0 |Normal |10 | | |7428|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ---------------------------------------------------------------------------------------- ; RtlTryEnterCriticalSection (Line=0 - Offset=0) ; ---------------------------------------------- 779832BC mov edi, edi 779832BE push ebp 779832BF mov ebp, esp 779832C1 mov eax, [ebp+$08] 779832C4 mov ecx, fs:[$0018] 779832CB lea edx, [eax+$04] 779832CE lock ; <-- EXCEPTION 779832CF DB $0F, $BA, $32, $00 // dword ptr [edx], $00 779832D3 jnb +$00013493 779832D9 mov ecx, [ecx+$24] 779832DC mov [eax+$0C], ecx 779832DF mov dword ptr [eax+$08], $00000001 ; ''... Registers: ----------------------------- EAX: 6D616E20 EDI: 000100CC EBX: 00010000 ESI: 00000000 ECX: 7FFDF000 ESP: 0012EAAC EDX: 6D616E24 EIP: 779832CE Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EAAC: 0012EB88 0D4A2F30: F0 0F BA 32 00 0F 83 93 34 01 00 8B 49 24 89 48 ...2....4...I$.H 0012EAB0: 77985B81 0D4A2F40: 0C C7 40 08 01 00 00 00 B8 01 00 00 00 5D C2 04 ..@..........].. 0012EAB4: 6D616E20 0D4A2F50: 00 90 90 90 90 90 3B 0D E8 71 A0 77 0F 85 1D 58 ......;..q.w...X 0012EAB8: 7773A8F7 0D4A2F60: 05 00 C3 90 90 90 90 90 8B FF 55 8B EC 57 8B 7D ..........U..W.} 0012EABC: 00000120 0D4A2F70: 08 8B 47 04 85 C0 0F 85 D6 23 00 00 5F 5D C2 04 ..G......#.._].. 0012EAC0: 00000000 0D4A2F80: 00 90 90 90 90 90 8B FF 55 8B EC 8B 45 08 83 C9 ........U...E... 0012EAC4: 00010000 0D4A2F90: FF F0 0F C1 08 F6 C1 01 0F 84 83 F5 02 00 F6 C1 ................ 0012EAC8: 0012EAE8 0D4A2FA0: 02 0F 85 00 A9 FC FF 5D C2 04 00 90 90 90 90 90 .......]........ 0012EACC: 779892E1 0D4A2FB0: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012EAD0: 00000002 0D4A2FC0: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 56 57 ..l$.....8.e..VW 0012EAD4: 004C004A 0D4A2FD0: 8B 7B 08 8B C7 F0 0F BA 28 00 0F 82 C8 A7 FC FF .{......(....... 0012EAD8: 7797DA76 0D4A2FE0: 5F 5E 8B E5 5D 8B E3 5B C2 04 00 90 90 90 90 90 _^..]..[........ 0012EADC: 00000009 0D4A2FF0: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012EAE0: 00000000 0D4A3000: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 8B 53 ..l$.....8.e...S 0012EAE4: 00000008 0D4A3010: 08 56 57 6A 11 59 33 C0 F0 0F B1 0A 8B C8 89 4D .VWj.Y3........M 0012EAE8: 00000000 0D4A3020: F8 85 C9 0F 85 05 D5 FC FF 5F 5E 8B E5 5D 8B E3 ........._^..].. EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:49:26 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 5 seconds Exception: ----------------------------------------------------------------------------------------------------------- 2.1 Date : Wed, 5 Feb 2014 12:49:31 +0400 2.2 Address : 77982E37 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 77982E37 in module 'ntdll.dll'. Read of address 00000004. 2.7 ID : 7ED7 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1084 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77982E37|ntdll.dll | | |RtlAllocateHeap | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |00650061|SASPlanet.Debug.exe|uPSCompiler.pas | |BlockWriteByte |1838[1] | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |7740B8BA|SHLWAPI.dll | | |SHRegGetValueW | | |7740A971|SHLWAPI.dll | | |SHGetValueW | | |7740A955|SHLWAPI.dll | | |SHGetValueW | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7799016F|ntdll.dll | | |LdrUnlockLoaderLock | | |77990176|ntdll.dll | | |LdrUnlockLoaderLock | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06991|KERNELBASE.dll | | |GetCurrentProcessId | | |75A06D25|KERNELBASE.dll | | |GetProcAddress | | |77965340|ntdll.dll | | |memset | | |75D719C9|shell32.dll | | |SHGetDesktopFolder | | |75D719BA|shell32.dll | | |SHGetDesktopFolder | | |75D72C50|shell32.dll | | |SHBindToObject | | |75D74CCB|shell32.dll | | |ILRemoveLastID | | |75D74D0A|shell32.dll | | |ILRemoveLastID | | |75D72C1A|shell32.dll | | |SHBindToObject | | |75D74D44|shell32.dll | | |SHBindToFolderIDListParentEx | | |75D5B0E9|shell32.dll | | |SHBindToParent | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77964CC0|ntdll.dll | | |memcpy | | |7751CDAB|USER32.dll | | |OffsetRect | | |77515500|USER32.dll | | |GetClientRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77965340|ntdll.dll | | |memset | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |7751CDAB|USER32.dll | | |OffsetRect | | |77515500|USER32.dll | | |GetClientRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |777A5EC0|USP10.dll | | |ScriptTextOut | | |77965340|ntdll.dll | | |memset | | |7750A984|USER32.dll | | |GetWindowLongA | | |7751557D|USER32.dll | | |SendMessageW | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |7697D4F0|kernel32.dll | | |RegQueryValueExW | | |7697D549|kernel32.dll | | |RegQueryValueExW | | |7697D551|kernel32.dll | | |RegQueryValueExW | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |77964CC0|ntdll.dll | | |memcpy | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |77983306|ntdll.dll | | |RtlFreeAnsiString | | |779878DF|ntdll.dll | | |RtlDosApplyFileIsolationRedirection_Ustr | | |77515500|USER32.dll | | |GetClientRect | | |75A08552|KERNELBASE.dll | | |MultiByteToWideChar | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |00740062|SASPlanet.Debug.exe|u_MarkPictureListSimple.pas |TMarkPictureListSimple |GetDefaultPicture |194[2] | |77965340|ntdll.dll | | |memset | | |77467975|msvcrt.dll | | |memcmp | | |771A3BF6|iertutil.dll | | |CreateUriPriv | | |771A362E|iertutil.dll | | |CreateUri | | |77459910|msvcrt.dll | | |memcpy | | |77844623|oleaut32.dll | | |SysAllocStringLen | | |77843E59|oleaut32.dll | | |SysFreeString | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77983509|ntdll.dll | | |RtlMultiByteToUnicodeN | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |77982C6A|ntdll.dll | | |RtlFreeHeap | | |779856E7|ntdll.dll | | |RtlDeleteBoundaryDescriptor | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77965340|ntdll.dll | | |memset | | |75A0774B|KERNELBASE.dll | | |LocalAlloc | | |75A0775D|KERNELBASE.dll | | |LocalAlloc | | |77964CC0|ntdll.dll | | |memcpy | | |776AF66C|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AF65E|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AC660|RPCRT4.dll | | |NdrFreeBuffer | | |776AC646|RPCRT4.dll | | |NdrFreeBuffer | | |77532BE9|USER32.dll | | |CallWindowProcA | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |00563F30|SASPlanet.Debug.exe|GR32.pas |TPlainInterfacedPersistent |_AddRef |1775[2] | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |75A07115|KERNELBASE.dll | | |CompareStringEx | | |75A070CE|KERNELBASE.dll | | |CompareStringEx | | |75A0714F|KERNELBASE.dll | | |CompareStringW | | |76980621|kernel32.dll | | |SetFilePointer | | |7698060A|kernel32.dll | | |SetFilePointer | | |75A07115|KERNELBASE.dll | | |CompareStringEx | | |75A070CE|KERNELBASE.dll | | |CompareStringEx | | |75A0714F|KERNELBASE.dll | | |CompareStringW | | |75A07123|KERNELBASE.dll | | |CompareStringW | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |0056AAE2|SASPlanet.Debug.exe|u_IdListBase.pas |TIdListBase |Find |210[6] | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |7697C3D0|kernel32.dll | | |InterlockedDecrement | | |0056C814|SASPlanet.Debug.exe|u_InternalPerformanceCounterListForDebug.pas|TInternalPerformanceCounterListForDebug|GetCounterByClass |75[20] | |7740C511|SHLWAPI.dll | | |QISearch | | |007B1FDD|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1771[1] | |007B1F9C|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1770[0] | |007BD2AE|SASPlanet.Debug.exe|EmbeddedWB.pas | |Finalization |3554[2] | |007BD008|SASPlanet.Debug.exe|EmbeddedWB.pas | |Finalization |3554[2] | |007BCF94|SASPlanet.Debug.exe|EmbeddedWB.pas | |Finalization |3554[2] | |007BDB13|SASPlanet.Debug.exe|u_InternalBrowserByForm.pas |TInternalBrowserByForm |SafeCreateInternal |89[2] | |007BDAF4|SASPlanet.Debug.exe|u_InternalBrowserByForm.pas |TInternalBrowserByForm |SafeCreateInternal |87[0] | |007BDAAF|SASPlanet.Debug.exe|u_InternalBrowserByForm.pas |TInternalBrowserByForm |Navigate |76[1] | |00897DFC|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |mapMouseUp |5503[140]| ------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00C70000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |66DA0000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |68130000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |682A0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |68FE0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |142 | | |200 |GoogleUpdate.exe | | |0 |Low |5 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |9 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |22 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |46 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |9 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |35 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |8 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |18 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |3 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |73 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |14 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |17 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |9 | | |3636|Smc.exe | | |0 |Normal |33 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |5 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|5 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |7 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |18 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |15 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |41 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |46 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6788|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |32 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |16 |C:\Program Files\Unreal Commander | |7336|GoogleUpdate.exe | | |0 |Normal |10 | | |7428|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ------------------------------------------------------------ ; RtlAllocateHeap (Line=0 - Offset=0) ; ----------------------------------- 77982E11 jnz +$00002CB1 77982E17 cmp [ebp+$10], esi 77982E1A jz +$00012129 77982E20 mov eax, [ebp+$10] 77982E23 add eax, +$0F 77982E26 and eax, -$08 77982E29 mov ecx, eax 77982E2B mov [ebp-$08], eax 77982E2E mov eax, [ebx+$00B8] 77982E34 shr ecx, $03 77982E37 cmp ecx, [eax+$04] ; <-- EXCEPTION 77982E3A jnb +$00003A4F 77982E40 mov edx, [eax+$04] 77982E43 dec edx 77982E44 cmp ecx, edx 77982E46 jnb +$00007523 77982E4C sub ecx, dword ptr [eax+$14] 77982E4F cmp dword ptr [eax+$08], +$00 77982E53 jz RtlAllocateHeap 77982E55 add ecx, ecx 77982E57 mov eax, [eax+$20] Registers: ----------------------------- EAX: 00000000 EDI: 0000011C EBX: 00010000 ESI: 00000000 ECX: 00000025 ESP: 0012A708 EDX: 00000006 EIP: 77982E37 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012A708: 0000011C 0DB684D0: 3B 48 04 0F 83 4F 3A 00 00 8B 50 04 4A 3B CA 0F ;H...O:...P.J;.. 0012A70C: 000000E6 0DB684E0: 83 23 75 00 00 2B 48 14 83 78 08 00 74 02 03 C9 .#u..+H..x..t... 0012A710: 00000005 0DB684F0: 8B 40 20 8D 34 88 85 F6 0F 84 63 2C 00 00 8B 46 .@ .4.....c,...F 0012A714: 00000000 0DB68500: 04 A8 01 0F 84 58 2C 00 00 8B 55 10 8D 48 FF C7 .....X,...U..H.. 0012A718: 00000000 0DB68510: 45 F0 02 00 00 00 E8 42 00 00 00 8B F8 85 FF 0F E......B........ 0012A71C: 00000001 0DB68520: 84 3C 2C 00 00 F6 45 0C 08 0F 85 D2 BC 00 00 85 .<,...E......... 0012A720: 00000000 0DB68530: FF 0F 84 D5 AD 02 00 8B 75 F4 85 F6 0F 85 DE AE ........u....... 0012A724: 3816EFE9 0DB68540: 02 00 80 3D 80 03 FE 7F 00 0F 85 1B AE 02 00 8B ...=............ 0012A728: 00000000 0DB68550: C7 5F 5E 5B C9 C2 0C 00 90 90 90 90 90 6A 64 68 ._^[.........jdh 0012A72C: 7697CDD0 0DB68560: A0 1F 98 77 E8 3C FD FF FF 89 55 C4 8B F9 89 7D ...w.<....U....} 0012A730: 00360034 0DB68570: D8 0F B6 47 02 8D 04 85 10 01 00 00 8B F7 2B F0 ...G..........+. 0012A734: 7797D7D8 0DB68580: 89 75 D4 F6 47 03 01 0F 85 2F F1 FD FF 83 65 CC .u..G..../....e. 0012A738: 00380036 0DB68590: 00 8B 45 CC 69 C0 18 34 00 00 8D 84 30 10 03 00 ..E.i..4....0... 0012A73C: 3816EDED 0DB685A0: 00 89 45 BC 0F B6 4F 02 6B C9 68 8D 54 08 18 89 ..E...O.k.h.T... 0012A740: 00000000 0DB685B0: 55 E0 8B 02 89 45 D0 85 C0 0F 84 49 11 01 00 83 U....E.....I.... 0012A744: 0012A7E8 0DB685C0: 65 FC 00 8D 48 08 8B 39 89 7D AC 8B 59 04 89 5D e...H..9.}..Y..] EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:49:26 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 13 seconds Exception: ----------------------------------------------------------------------------------------------------------- 2.1 Date : Wed, 5 Feb 2014 12:49:40 +0400 2.2 Address : 77982E37 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 77982E37 in module 'ntdll.dll'. Read of address 00000004. 2.7 ID : 4C98 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1084 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: --------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | --------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=5848; Priority=1; Class=; [Main] | |-------------------------------------------------------------------------------------------------------------------------------------| |77982E37|ntdll.dll | | |RtlAllocateHeap | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |00650061|SASPlanet.Debug.exe|uPSCompiler.pas | |BlockWriteByte |1838[1] | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |7740B8BA|SHLWAPI.dll | | |SHRegGetValueW | | |7740A971|SHLWAPI.dll | | |SHGetValueW | | |7740A955|SHLWAPI.dll | | |SHGetValueW | | |77965340|ntdll.dll | | |memset | | |76C8658E|ole32.dll | | |CoGetApartmentType | | |75D719C9|shell32.dll | | |SHGetDesktopFolder | | |75D719BA|shell32.dll | | |SHGetDesktopFolder | | |75D72C50|shell32.dll | | |SHBindToObject | | |75D74CCB|shell32.dll | | |ILRemoveLastID | | |75D74D0A|shell32.dll | | |ILRemoveLastID | | |75D72C1A|shell32.dll | | |SHBindToObject | | |75D74D44|shell32.dll | | |SHBindToFolderIDListParentEx | | |75D5B0E9|shell32.dll | | |SHBindToParent | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77964CC0|ntdll.dll | | |memcpy | | |7751CDAB|USER32.dll | | |OffsetRect | | |77515500|USER32.dll | | |GetClientRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77965340|ntdll.dll | | |memset | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |7751CDAB|USER32.dll | | |OffsetRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |777A5EC0|USP10.dll | | |ScriptTextOut | | |7750A984|USER32.dll | | |GetWindowLongA | | |7751557D|USER32.dll | | |SendMessageW | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |7697D4F0|kernel32.dll | | |RegQueryValueExW | | |7697D549|kernel32.dll | | |RegQueryValueExW | | |7697D551|kernel32.dll | | |RegQueryValueExW | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |77964CC0|ntdll.dll | | |memcpy | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |77983306|ntdll.dll | | |RtlFreeAnsiString | | |779878DF|ntdll.dll | | |RtlDosApplyFileIsolationRedirection_Ustr | | |77515500|USER32.dll | | |GetClientRect | | |75A08552|KERNELBASE.dll | | |MultiByteToWideChar | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |00740062|SASPlanet.Debug.exe|u_MarkPictureListSimple.pas|TMarkPictureListSimple|GetDefaultPicture |194[2] | |77965340|ntdll.dll | | |memset | | |77467975|msvcrt.dll | | |memcmp | | |771A3BF6|iertutil.dll | | |CreateUriPriv | | |771A362E|iertutil.dll | | |CreateUri | | |77459910|msvcrt.dll | | |memcpy | | |77844623|oleaut32.dll | | |SysAllocStringLen | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77983509|ntdll.dll | | |RtlMultiByteToUnicodeN | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |77982C6A|ntdll.dll | | |RtlFreeHeap | | |779856E7|ntdll.dll | | |RtlDeleteBoundaryDescriptor | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77965340|ntdll.dll | | |memset | | |75A0774B|KERNELBASE.dll | | |LocalAlloc | | |75A0775D|KERNELBASE.dll | | |LocalAlloc | | |77964CC0|ntdll.dll | | |memcpy | | |776AF66C|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AF65E|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AC660|RPCRT4.dll | | |NdrFreeBuffer | | |776AC646|RPCRT4.dll | | |NdrFreeBuffer | | |75A07115|KERNELBASE.dll | | |CompareStringEx | | |75A070CE|KERNELBASE.dll | | |CompareStringEx | | |75A0714F|KERNELBASE.dll | | |CompareStringW | | |75A07123|KERNELBASE.dll | | |CompareStringW | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7798F58D|ntdll.dll | | |RtlImageNtHeaderEx | | |7798FA3F|ntdll.dll | | |RtlImageNtHeader | | |7798FA29|ntdll.dll | | |RtlImageNtHeader | | |7798F63E|ntdll.dll | | |RtlImageDirectoryEntryToData | | |779A0008|ntdll.dll | | |RtlReAllocateHeap | | |77843E9E|oleaut32.dll | | |SysFreeString | | |77843E59|oleaut32.dll | | |SysFreeString | | |7740C511|SHLWAPI.dll | | |QISearch | | |007B1FDD|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1771[1] | |007B1F9C|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1770[0] | |007BAE7C|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |AssignEmptyDocument |1786[1] | |007BAE6C|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |AssignEmptyDocument |1785[0] | |007BB4D9|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |LoadFromStrings |2164[2] | |007BB4A0|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |LoadFromStrings |2162[0] | |007BADDE|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |HTMLCodeChanged |1650[25] | |007BD318|SASPlanet.Debug.exe|EmbeddedWB.pas | |Finalization |3554[2] | |007BD2DC|SASPlanet.Debug.exe|EmbeddedWB.pas | |Finalization |3554[2] | |007BDABB|SASPlanet.Debug.exe|u_InternalBrowserByForm.pas|TInternalBrowserByForm|Navigate |77[2] | |00897DFC|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |mapMouseUp |5503[140]| |0055F340|SASPlanet.Debug.exe|GR32_Image.pas |TCustomImage32 |MouseUp |1750[1] | |0055F28C|SASPlanet.Debug.exe|GR32_Image.pas |TCustomImage32 |MouseUp |1732[10] | --------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00C70000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |66DA0000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |68130000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |682A0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |68FE0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |142 | | |200 |GoogleUpdate.exe | | |0 |Low |5 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |9 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |10 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |46 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |35 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |18 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |3 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |73 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |14 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |17 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |9 | | |3636|Smc.exe | | |0 |Normal |33 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |5 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|5 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |7 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |39 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |46 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |13 |C:\Program Files\Microsoft Office\Office14 | |6788|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |32 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |16 |C:\Program Files\Unreal Commander | |7336|GoogleUpdate.exe | | |0 |Normal |10 | | |7428|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ------------------------------------------------------------ ; RtlAllocateHeap (Line=0 - Offset=0) ; ----------------------------------- 77982E11 jnz +$00002CB1 77982E17 cmp [ebp+$10], esi 77982E1A jz +$00012129 77982E20 mov eax, [ebp+$10] 77982E23 add eax, +$0F 77982E26 and eax, -$08 77982E29 mov ecx, eax 77982E2B mov [ebp-$08], eax 77982E2E mov eax, [ebx+$00B8] 77982E34 shr ecx, $03 77982E37 cmp ecx, [eax+$04] ; <-- EXCEPTION 77982E3A jnb +$00003A4F 77982E40 mov edx, [eax+$04] 77982E43 dec edx 77982E44 cmp ecx, edx 77982E46 jnb +$00007523 77982E4C sub ecx, dword ptr [eax+$14] 77982E4F cmp dword ptr [eax+$08], +$00 77982E53 jz RtlAllocateHeap 77982E55 add ecx, ecx 77982E57 mov eax, [eax+$20] Registers: ----------------------------- EAX: 00000000 EDI: 0000011C EBX: 00010000 ESI: 00000000 ECX: 00000025 ESP: 0012A6B0 EDX: 00000006 EIP: 77982E37 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012A6B0: 0000011C 0DBD1100: 3B 48 04 0F 83 4F 3A 00 00 8B 50 04 4A 3B CA 0F ;H...O:...P.J;.. 0012A6B4: 000000E6 0DBD1110: 83 23 75 00 00 2B 48 14 83 78 08 00 74 02 03 C9 .#u..+H..x..t... 0012A6B8: 00000005 0DBD1120: 8B 40 20 8D 34 88 85 F6 0F 84 63 2C 00 00 8B 46 .@ .4.....c,...F 0012A6BC: 00000000 0DBD1130: 04 A8 01 0F 84 58 2C 00 00 8B 55 10 8D 48 FF C7 .....X,...U..H.. 0012A6C0: 00000000 0DBD1140: 45 F0 02 00 00 00 E8 42 00 00 00 8B F8 85 FF 0F E......B........ 0012A6C4: 00000001 0DBD1150: 84 3C 2C 00 00 F6 45 0C 08 0F 85 D2 BC 00 00 85 .<,...E......... 0012A6C8: 00000000 0DBD1160: FF 0F 84 D5 AD 02 00 8B 75 F4 85 F6 0F 85 DE AE ........u....... 0012A6CC: 3816EE41 0DBD1170: 02 00 80 3D 80 03 FE 7F 00 0F 85 1B AE 02 00 8B ...=............ 0012A6D0: 00000000 0DBD1180: C7 5F 5E 5B C9 C2 0C 00 90 90 90 90 90 6A 64 68 ._^[.........jdh 0012A6D4: 7697CDD0 0DBD1190: A0 1F 98 77 E8 3C FD FF FF 89 55 C4 8B F9 89 7D ...w.<....U....} 0012A6D8: 00360034 0DBD11A0: D8 0F B6 47 02 8D 04 85 10 01 00 00 8B F7 2B F0 ...G..........+. 0012A6DC: 7797D7D8 0DBD11B0: 89 75 D4 F6 47 03 01 0F 85 2F F1 FD FF 83 65 CC .u..G..../....e. 0012A6E0: 00380036 0DBD11C0: 00 8B 45 CC 69 C0 18 34 00 00 8D 84 30 10 03 00 ..E.i..4....0... 0012A6E4: 3816EC45 0DBD11D0: 00 89 45 BC 0F B6 4F 02 6B C9 68 8D 54 08 18 89 ..E...O.k.h.T... 0012A6E8: 00000000 0DBD11E0: 55 E0 8B 02 89 45 D0 85 C0 0F 84 49 11 01 00 83 U....E.....I.... 0012A6EC: 0012A790 0DBD11F0: 65 FC 00 8D 48 08 8B 39 89 7D AC 8B 59 04 89 5D e...H..9.}..Y..] EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:49:26 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 50 seconds Exception: ----------------------------------------------------------------------------------------------------------- 2.1 Date : Wed, 5 Feb 2014 12:50:16 +0400 2.2 Address : 77982E37 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 77982E37 in module 'ntdll.dll'. Read of address 00000004. 2.7 ID : 2FE2 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1079 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77982E37|ntdll.dll | | |RtlAllocateHeap | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |775153F5|USER32.dll | | |IsWindow | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |77965340|ntdll.dll | | |memset | | |775153F5|USER32.dll | | |IsWindow | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |008065E5|SASPlanet.Debug.exe|u_FileNameFunc.pas | | |23[0] | |00806609|SASPlanet.Debug.exe|u_FileNameFunc.pas | | |24[0] | |008072CD|SASPlanet.Debug.exe|u_MarkDbGUIHelper.pas |TMarkDbGUIHelper |ExportCategory |442[4] | |00807270|SASPlanet.Debug.exe|u_MarkDbGUIHelper.pas |TMarkDbGUIHelper |ExportCategory |438[0] | |0087D00E|SASPlanet.Debug.exe|frm_MarksExplorer.pas |TfrmMarksExplorer |btnExportCategoryClick |787[4] | |005CDCC2|SASPlanet.Debug.exe|TB2Item.pas |TTBCustomItem |Click |1513[26] | |005CDBB6|SASPlanet.Debug.exe|TB2Item.pas |TTBCustomItem |ClickWndProc |1459[29] | |77512E3C|USER32.dll | | |DispatchMessageA | | |77512E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=5808; Priority=0; Class=TGarbageCollectorThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A62|ntdll.dll | | |ZwWaitForSingleObject | | |75A01730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7697C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2BD|kernel32.dll | | |Sleep | | |7697C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |779762A2|ntdll.dll | | |ZwQueryVirtualMemory | | |75A091D5|KERNELBASE.dll | | |VirtualQueryEx | | |7697C400|kernel32.dll | | |InterlockedDecrement | | |77976622|ntdll.dll | | |NtSetEvent | | |75A06856|KERNELBASE.dll | | |GetCurrentThreadId | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F083E|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6812; Priority=-15; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F174A|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=2732; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3464; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7736; Priority=-2; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00C70000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |66DA0000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |68130000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |682A0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |68FE0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |140 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |8 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |11 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |10 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |47 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |37 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |18 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |4 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |73 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |14 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |19 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |11 | | |3636|Smc.exe | | |0 |Normal |33 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |6 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|4 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |7 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |39 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |47 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6788|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |31 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |17 |C:\Program Files\Unreal Commander | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ------------------------------------------------------------ ; RtlAllocateHeap (Line=0 - Offset=0) ; ----------------------------------- 77982E11 jnz +$00002CB1 77982E17 cmp [ebp+$10], esi 77982E1A jz +$00012129 77982E20 mov eax, [ebp+$10] 77982E23 add eax, +$0F 77982E26 and eax, -$08 77982E29 mov ecx, eax 77982E2B mov [ebp-$08], eax 77982E2E mov eax, [ebx+$00B8] 77982E34 shr ecx, $03 77982E37 cmp ecx, [eax+$04] ; <-- EXCEPTION 77982E3A jnb +$00003A4F 77982E40 mov edx, [eax+$04] 77982E43 dec edx 77982E44 cmp ecx, edx 77982E46 jnb +$00007523 77982E4C sub ecx, dword ptr [eax+$14] 77982E4F cmp dword ptr [eax+$08], +$00 77982E53 jz RtlAllocateHeap 77982E55 add ecx, ecx 77982E57 mov eax, [eax+$20] Registers: ----------------------------- EAX: 00000000 EDI: 00000120 EBX: 00010000 ESI: 00000000 ECX: 00000025 ESP: 0012ED6C EDX: 00000006 EIP: 77982E37 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012ED6C: 00000120 0DBCF3C0: 3B 48 04 0F 83 4F 3A 00 00 8B 50 04 4A 3B CA 0F ;H...O:...P.J;.. 0012ED70: 000000EA 0DBCF3D0: 83 23 75 00 00 2B 48 14 83 78 08 00 74 02 03 C9 .#u..+H..x..t... 0012ED74: 00000005 0DBCF3E0: 8B 40 20 8D 34 88 85 F6 0F 84 63 2C 00 00 8B 46 .@ .4.....c,...F 0012ED78: 00000000 0DBCF3F0: 04 A8 01 0F 84 58 2C 00 00 8B 55 10 8D 48 FF C7 .....X,...U..H.. 0012ED7C: 00000000 0DBCF400: 45 F0 02 00 00 00 E8 42 00 00 00 8B F8 85 FF 0F E......B........ 0012ED80: 00000001 0DBCF410: 84 3C 2C 00 00 F6 45 0C 08 0F 85 D2 BC 00 00 85 .<,...E......... 0012ED84: 00000000 0DBCF420: FF 0F 84 D5 AD 02 00 8B 75 F4 85 F6 0F 85 DE AE ........u....... 0012ED88: 3816A50D 0DBCF430: 02 00 80 3D 80 03 FE 7F 00 0F 85 1B AE 02 00 8B ...=............ 0012ED8C: 00000000 0DBCF440: C7 5F 5E 5B C9 C2 0C 00 90 90 90 90 90 6A 64 68 ._^[.........jdh 0012ED90: 7697CDD0 0DBCF450: A0 1F 98 77 E8 3C FD FF FF 89 55 C4 8B F9 89 7D ...w.<....U....} 0012ED94: 00360034 0DBCF460: D8 0F B6 47 02 8D 04 85 10 01 00 00 8B F7 2B F0 ...G..........+. 0012ED98: 7797D7D8 0DBCF470: 89 75 D4 F6 47 03 01 0F 85 2F F1 FD FF 83 65 CC .u..G..../....e. 0012ED9C: 3816A30D 0DBCF480: 00 8B 45 CC 69 C0 18 34 00 00 8D 84 30 10 03 00 ..E.i..4....0... 0012EDA0: 7797D80E 0DBCF490: 00 89 45 BC 0F B6 4F 02 6B C9 68 8D 54 08 18 89 ..E...O.k.h.T... 0012EDA4: 0012EE4C 0DBCF4A0: 55 E0 8B 02 89 45 D0 85 C0 0F 84 49 11 01 00 83 U....E.....I.... 0012EDA8: 758733E4 0DBCF4B0: 65 FC 00 8D 48 08 8B 39 89 7D AC 8B 59 04 89 5D e...H..9.}..Y..] EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:49:26 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 56 seconds Exception: ----------------------------------------------------------------------------------------------------------- 2.1 Date : Wed, 5 Feb 2014 12:50:22 +0400 2.2 Address : 77982E37 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 77982E37 in module 'ntdll.dll'. Read of address 00000004. 2.7 ID : 6B09 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1078 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77982E37|ntdll.dll | | |RtlAllocateHeap | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |775153F5|USER32.dll | | |IsWindow | | |77532BE9|USER32.dll | | |CallWindowProcA | | |775161EA|USER32.dll | | |GetWindowLongW | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |77965340|ntdll.dll | | |memset | | |775153F5|USER32.dll | | |IsWindow | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |0080749E|SASPlanet.Debug.exe|u_MarkDbGUIHelper.pas |TMarkDbGUIHelper |ExportCategoryList |476[2] | |0080745C|SASPlanet.Debug.exe|u_MarkDbGUIHelper.pas |TMarkDbGUIHelper |ExportCategoryList |474[0] | |0087C3B8|SASPlanet.Debug.exe|frm_MarksExplorer.pas |TfrmMarksExplorer |btnExportClick |538[7] | |008248DC|SASPlanet.Debug.exe|TBXControls.pas |TTBXCustomButton |Click |1954[14] | |775154DD|USER32.dll | | |GetClientRect | | |7750ABE1|USER32.dll | | |CallNextHookEx | | |007B6E7A|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |007B6E91|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |77509DC7|USER32.dll | | |GetCapture | | |7750AC19|USER32.dll | | |CallNextHookEx | | |775164F7|USER32.dll | | |KillTimer | | |77512E3C|USER32.dll | | |DispatchMessageA | | |77512E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=5808; Priority=0; Class=TGarbageCollectorThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A62|ntdll.dll | | |ZwWaitForSingleObject | | |75A01730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7697C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2BD|kernel32.dll | | |Sleep | | |7697C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |779762A2|ntdll.dll | | |ZwQueryVirtualMemory | | |75A091D5|KERNELBASE.dll | | |VirtualQueryEx | | |7697C400|kernel32.dll | | |InterlockedDecrement | | |77976622|ntdll.dll | | |NtSetEvent | | |75A06856|KERNELBASE.dll | | |GetCurrentThreadId | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F083E|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6812; Priority=-15; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F174A|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=2732; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3464; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7736; Priority=-2; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00C70000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |66DA0000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |68130000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |682A0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |68FE0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |140 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |8 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |11 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |10 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |54 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |37 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |4 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |72 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |14 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |24 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |11 | | |3636|Smc.exe | | |0 |Normal |33 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |7 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|4 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |10 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |41 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |6 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |47 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6788|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |31 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |17 |C:\Program Files\Unreal Commander | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ------------------------------------------------------------ ; RtlAllocateHeap (Line=0 - Offset=0) ; ----------------------------------- 77982E11 jnz +$00002CB1 77982E17 cmp [ebp+$10], esi 77982E1A jz +$00012129 77982E20 mov eax, [ebp+$10] 77982E23 add eax, +$0F 77982E26 and eax, -$08 77982E29 mov ecx, eax 77982E2B mov [ebp-$08], eax 77982E2E mov eax, [ebx+$00B8] 77982E34 shr ecx, $03 77982E37 cmp ecx, [eax+$04] ; <-- EXCEPTION 77982E3A jnb +$00003A4F 77982E40 mov edx, [eax+$04] 77982E43 dec edx 77982E44 cmp ecx, edx 77982E46 jnb +$00007523 77982E4C sub ecx, dword ptr [eax+$14] 77982E4F cmp dword ptr [eax+$08], +$00 77982E53 jz RtlAllocateHeap 77982E55 add ecx, ecx 77982E57 mov eax, [eax+$20] Registers: ----------------------------- EAX: 00000000 EDI: 00000120 EBX: 00010000 ESI: 00000000 ECX: 00000025 ESP: 0012EBA0 EDX: 00000006 EIP: 77982E37 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EBA0: 00000120 0DBCF3C0: 3B 48 04 0F 83 4F 3A 00 00 8B 50 04 4A 3B CA 0F ;H...O:...P.J;.. 0012EBA4: 000000EA 0DBCF3D0: 83 23 75 00 00 2B 48 14 83 78 08 00 74 02 03 C9 .#u..+H..x..t... 0012EBA8: 00000005 0DBCF3E0: 8B 40 20 8D 34 88 85 F6 0F 84 63 2C 00 00 8B 46 .@ .4.....c,...F 0012EBAC: 00000000 0DBCF3F0: 04 A8 01 0F 84 58 2C 00 00 8B 55 10 8D 48 FF C7 .....X,...U..H.. 0012EBB0: 00000000 0DBCF400: 45 F0 02 00 00 00 E8 42 00 00 00 8B F8 85 FF 0F E......B........ 0012EBB4: 00000001 0DBCF410: 84 3C 2C 00 00 F6 45 0C 08 0F 85 D2 BC 00 00 85 .<,...E......... 0012EBB8: 00000000 0DBCF420: FF 0F 84 D5 AD 02 00 8B 75 F4 85 F6 0F 85 DE AE ........u....... 0012EBBC: 3816A351 0DBCF430: 02 00 80 3D 80 03 FE 7F 00 0F 85 1B AE 02 00 8B ...=............ 0012EBC0: 00000000 0DBCF440: C7 5F 5E 5B C9 C2 0C 00 90 90 90 90 90 6A 64 68 ._^[.........jdh 0012EBC4: 7697CDD0 0DBCF450: A0 1F 98 77 E8 3C FD FF FF 89 55 C4 8B F9 89 7D ...w.<....U....} 0012EBC8: 00360034 0DBCF460: D8 0F B6 47 02 8D 04 85 10 01 00 00 8B F7 2B F0 ...G..........+. 0012EBCC: 7797D7D8 0DBCF470: 89 75 D4 F6 47 03 01 0F 85 2F F1 FD FF 83 65 CC .u..G..../....e. 0012EBD0: 00380036 0DBCF480: 00 8B 45 CC 69 C0 18 34 00 00 8D 84 30 10 03 00 ..E.i..4....0... 0012EBD4: 3816A155 0DBCF490: 00 89 45 BC 0F B6 4F 02 6B C9 68 8D 54 08 18 89 ..E...O.k.h.T... 0012EBD8: 00000000 0DBCF4A0: 55 E0 8B 02 89 45 D0 85 C0 0F 84 49 11 01 00 83 U....E.....I.... 0012EBDC: 0012EC80 0DBCF4B0: 65 FC 00 8D 48 08 8B 39 89 7D AC 8B 59 04 89 5D e...H..9.}..Y..] EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:49:26 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 1 minute, 3 seconds Exception: ----------------------------------------------------------------------------------------------------------- 2.1 Date : Wed, 5 Feb 2014 12:50:29 +0400 2.2 Address : 77982E37 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 77982E37 in module 'ntdll.dll'. Read of address 00000004. 2.7 ID : 7710 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1072 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77982E37|ntdll.dll | | |RtlAllocateHeap | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7751557D|USER32.dll | | |SendMessageW | | |77532BE9|USER32.dll | | |CallWindowProcA | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |76A43C9E|MSCTF.dll | | |CtfImeDispatchDefImeMessage | | |775153F5|USER32.dll | | |IsWindow | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |0087C180|SASPlanet.Debug.exe|frm_MarksExplorer.pas |TfrmMarksExplorer |btnImportClick |499[2] | |008248DC|SASPlanet.Debug.exe|TBXControls.pas |TTBXCustomButton |Click |1954[14] | |775154DD|USER32.dll | | |GetClientRect | | |7750ABE1|USER32.dll | | |CallNextHookEx | | |007B6E7A|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |007B6E91|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |77509DC7|USER32.dll | | |GetCapture | | |7750AC19|USER32.dll | | |CallNextHookEx | | |775164F7|USER32.dll | | |KillTimer | | |77512E3C|USER32.dll | | |DispatchMessageA | | |77512E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=5808; Priority=0; Class=TGarbageCollectorThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A62|ntdll.dll | | |ZwWaitForSingleObject | | |75A01730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7697C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2BD|kernel32.dll | | |Sleep | | |7697C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |779762A2|ntdll.dll | | |ZwQueryVirtualMemory | | |75A091D5|KERNELBASE.dll | | |VirtualQueryEx | | |7697C400|kernel32.dll | | |InterlockedDecrement | | |77976622|ntdll.dll | | |NtSetEvent | | |75A06856|KERNELBASE.dll | | |GetCurrentThreadId | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F083E|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6812; Priority=-15; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F174A|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=2732; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3464; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7736; Priority=-2; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5848; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00C70000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |66DA0000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |68130000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |682A0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |68FE0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |140 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |9 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |10 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |54 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |37 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |4 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |72 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |14 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |24 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |11 | | |3636|Smc.exe | | |0 |Normal |33 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |7 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|4 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |10 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |18 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |15 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |41 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |48 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |13 |C:\Program Files\Microsoft Office\Office14 | |6788|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |31 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |16 |C:\Program Files\Unreal Commander | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ------------------------------------------------------------ ; RtlAllocateHeap (Line=0 - Offset=0) ; ----------------------------------- 77982E11 jnz +$00002CB1 77982E17 cmp [ebp+$10], esi 77982E1A jz +$00012129 77982E20 mov eax, [ebp+$10] 77982E23 add eax, +$0F 77982E26 and eax, -$08 77982E29 mov ecx, eax 77982E2B mov [ebp-$08], eax 77982E2E mov eax, [ebx+$00B8] 77982E34 shr ecx, $03 77982E37 cmp ecx, [eax+$04] ; <-- EXCEPTION 77982E3A jnb +$00003A4F 77982E40 mov edx, [eax+$04] 77982E43 dec edx 77982E44 cmp ecx, edx 77982E46 jnb +$00007523 77982E4C sub ecx, dword ptr [eax+$14] 77982E4F cmp dword ptr [eax+$08], +$00 77982E53 jz RtlAllocateHeap 77982E55 add ecx, ecx 77982E57 mov eax, [eax+$20] Registers: ----------------------------- EAX: 00000000 EDI: 00000120 EBX: 00010000 ESI: 00000000 ECX: 00000025 ESP: 0012EBA4 EDX: 00000006 EIP: 77982E37 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EBA4: 00000120 0DBD1100: 3B 48 04 0F 83 4F 3A 00 00 8B 50 04 4A 3B CA 0F ;H...O:...P.J;.. 0012EBA8: 000000EA 0DBD1110: 83 23 75 00 00 2B 48 14 83 78 08 00 74 02 03 C9 .#u..+H..x..t... 0012EBAC: 00000005 0DBD1120: 8B 40 20 8D 34 88 85 F6 0F 84 63 2C 00 00 8B 46 .@ .4.....c,...F 0012EBB0: 00000000 0DBD1130: 04 A8 01 0F 84 58 2C 00 00 8B 55 10 8D 48 FF C7 .....X,...U..H.. 0012EBB4: 00000000 0DBD1140: 45 F0 02 00 00 00 E8 42 00 00 00 8B F8 85 FF 0F E......B........ 0012EBB8: 00000001 0DBD1150: 84 3C 2C 00 00 F6 45 0C 08 0F 85 D2 BC 00 00 85 .<,...E......... 0012EBBC: 00000000 0DBD1160: FF 0F 84 D5 AD 02 00 8B 75 F4 85 F6 0F 85 DE AE ........u....... 0012EBC0: 3816A355 0DBD1170: 02 00 80 3D 80 03 FE 7F 00 0F 85 1B AE 02 00 8B ...=............ 0012EBC4: 00000000 0DBD1180: C7 5F 5E 5B C9 C2 0C 00 90 90 90 90 90 6A 64 68 ._^[.........jdh 0012EBC8: 7697CDD0 0DBD1190: A0 1F 98 77 E8 3C FD FF FF 89 55 C4 8B F9 89 7D ...w.<....U....} 0012EBCC: 00360034 0DBD11A0: D8 0F B6 47 02 8D 04 85 10 01 00 00 8B F7 2B F0 ...G..........+. 0012EBD0: 7797D7D8 0DBD11B0: 89 75 D4 F6 47 03 01 0F 85 2F F1 FD FF 83 65 CC .u..G..../....e. 0012EBD4: 3816A155 0DBD11C0: 00 8B 45 CC 69 C0 18 34 00 00 8D 84 30 10 03 00 ..E.i..4....0... 0012EBD8: 7797D80E 0DBD11D0: 00 89 45 BC 0F B6 4F 02 6B C9 68 8D 54 08 18 89 ..E...O.k.h.T... 0012EBDC: 0012EC84 0DBD11E0: 55 E0 8B 02 89 45 D0 85 C0 0F 84 49 11 01 00 83 U....E.....I.... 0012EBE0: 758733E4 0DBD11F0: 65 FC 00 8D 48 08 8B 39 89 7D AC 8B 59 04 89 5D e...H..9.}..Y..] EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:50:57 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 6 seconds Exception: ----------------------------------------------------------------------------------------------------------- 2.1 Date : Wed, 5 Feb 2014 12:51:03 +0400 2.2 Address : 77982E37 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 77982E37 in module 'ntdll.dll'. Read of address 00000004. 2.7 ID : 6E5A 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1085 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=7436; Priority=??; Class= | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77982E37|ntdll.dll | | |RtlAllocateHeap | | |006AE92B|SASPlanet.Debug.exe|LibJpegErrorHandler.pas | |libjpeg_error_exit |44[2] | |77977052|ntdll.dll | | |KiUserExceptionDispatcher | | |006AE923|SASPlanet.Debug.exe|LibJpegErrorHandler.pas | |libjpeg_error_exit |43[1] | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |77985705|ntdll.dll | | |RtlEqualUnicodeString | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |00650061|SASPlanet.Debug.exe|uPSCompiler.pas | |BlockWriteByte |1838[1] | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |7740B93B|SHLWAPI.dll | | |SHRegGetValueW | | |7740B94A|SHLWAPI.dll | | |SHRegGetValueW | | |7740B8BA|SHLWAPI.dll | | |SHRegGetValueW | | |7740A971|SHLWAPI.dll | | |SHGetValueW | | |7740A955|SHLWAPI.dll | | |SHGetValueW | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |77965340|ntdll.dll | | |memset | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77459910|msvcrt.dll | | |memcpy | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06991|KERNELBASE.dll | | |GetCurrentProcessId | | |75A06D25|KERNELBASE.dll | | |GetProcAddress | | |77965340|ntdll.dll | | |memset | | |75D719C9|shell32.dll | | |SHGetDesktopFolder | | |75D719BA|shell32.dll | | |SHGetDesktopFolder | | |75D57FF7|shell32.dll | | |SHParseDisplayName | | |75D57FAB|shell32.dll | | |SHParseDisplayName | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7750E369|USER32.dll | | |MsgWaitForMultipleObjectsEx | | |775137F2|USER32.dll | | |MsgWaitForMultipleObjects | | |75CF1E33|shell32.dll | | |ShellExecuteExW | | |75CF1DF6|shell32.dll | | |ShellExecuteExW | | |75F174E2|shell32.dll | | |ShellExecuteEx | | |75F1748A|shell32.dll | | |ShellExecuteEx | | |75F17525|shell32.dll | | |ShellExecuteA | | |0063C1ED|SASPlanet.Debug.exe|u_InetFunc.pas | |OpenUrlInBrowser |18[1] | |0063C1D8|SASPlanet.Debug.exe|u_InetFunc.pas | |OpenUrlInBrowser |17[0] | |0089C93D|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |tbitmOnlineHomeClick |6721[1] | |005CDCC2|SASPlanet.Debug.exe|TB2Item.pas |TTBCustomItem |Click |1513[26] | |005CDBB6|SASPlanet.Debug.exe|TB2Item.pas |TTBCustomItem |ClickWndProc |1459[29] | |77512E3C|USER32.dll | | |DispatchMessageA | | |77512E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7420; Priority=0; Class=TGarbageCollectorThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A62|ntdll.dll | | |ZwWaitForSingleObject | | |75A01730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7697C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2BD|kernel32.dll | | |Sleep | | |7697C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |779762A2|ntdll.dll | | |ZwQueryVirtualMemory | | |75A091D5|KERNELBASE.dll | | |VirtualQueryEx | | |7697C400|kernel32.dll | | |InterlockedDecrement | | |77976622|ntdll.dll | | |NtSetEvent | | |75A06856|KERNELBASE.dll | | |GetCurrentThreadId | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=6952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F083E|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7060; Priority=-15; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=6952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F174A|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6440; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=6952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6228; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=6952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6564; Priority=-2; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=6952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00350000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00B40000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |53720000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |66DB0000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |68140000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |682C0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74120000|PROPSYS.dll |Система страниц свойств (Microsoft) |7.0.7601.17514 |988160 |2010-11-21 01:29:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |140 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |9 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |11 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |56 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |9 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |37 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |3 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |73 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |14 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |22 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |11 | | |3636|Smc.exe | | |0 |Normal |33 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |6 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|4 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |10 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |41 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |19 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |50 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |13 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |18 |C:\Program Files\Unreal Commander | |7268|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |34 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ------------------------------------------------------------ ; RtlAllocateHeap (Line=0 - Offset=0) ; ----------------------------------- 77982E11 jnz +$00002CB1 77982E17 cmp [ebp+$10], esi 77982E1A jz +$00012129 77982E20 mov eax, [ebp+$10] 77982E23 add eax, +$0F 77982E26 and eax, -$08 77982E29 mov ecx, eax 77982E2B mov [ebp-$08], eax 77982E2E mov eax, [ebx+$00B8] 77982E34 shr ecx, $03 77982E37 cmp ecx, [eax+$04] ; <-- EXCEPTION 77982E3A jnb +$00003A4F 77982E40 mov edx, [eax+$04] 77982E43 dec edx 77982E44 cmp ecx, edx 77982E46 jnb +$00007523 77982E4C sub ecx, dword ptr [eax+$14] 77982E4F cmp dword ptr [eax+$08], +$00 77982E53 jz RtlAllocateHeap 77982E55 add ecx, ecx 77982E57 mov eax, [eax+$20] Registers: ----------------------------- EAX: 00000000 EDI: 00000000 EBX: 00000000 ESI: 00000000 ECX: 00000000 ESP: 00000000 EDX: 00000000 EIP: 00000000 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0F6AE748: 0F6AE7E8 0E1F4B20: 3B 48 04 0F 83 4F 3A 00 00 8B 50 04 4A 3B CA 0F ;H...O:...P.J;.. 0F6AE74C: 00489822 0E1F4B30: 83 23 75 00 00 2B 48 14 83 78 08 00 74 02 03 C9 .#u..+H..x..t... 0F6AE750: 0F6AE770 0E1F4B40: 8B 40 20 8D 34 88 85 F6 0F 84 63 2C 00 00 8B 46 .@ .4.....c,...F 0F6AE754: 769F678C 0E1F4B50: 04 A8 01 0F 84 58 2C 00 00 8B 55 10 8D 48 FF C7 .....X,...U..H.. 0F6AE758: 0F6AE828 0E1F4B60: 45 F0 02 00 00 00 E8 42 00 00 00 8B F8 85 FF 0F E......B........ 0F6AE75C: 0522CB38 0E1F4B70: 84 3C 2C 00 00 F6 45 0C 08 0F 85 D2 BC 00 00 85 .<,...E......... 0F6AE760: 0312E0D8 0E1F4B80: FF 0F 84 D5 AD 02 00 8B 75 F4 85 F6 0F 85 DE AE ........u....... 0F6AE764: 00000000 0E1F4B90: 02 00 80 3D 80 03 FE 7F 00 0F 85 1B AE 02 00 8B ...=............ 0F6AE768: 00000000 0E1F4BA0: C7 5F 5E 5B C9 C2 0C 00 90 90 90 90 90 6A 64 68 ._^[.........jdh 0F6AE76C: 00000000 0E1F4BB0: A0 1F 98 77 E8 3C FD FF FF 89 55 C4 8B F9 89 7D ...w.<....U....} 0F6AE770: 0F6AE7F8 0E1F4BC0: D8 0F B6 47 02 8D 04 85 10 01 00 00 8B F7 2B F0 ...G..........+. 0F6AE774: 76990736 0E1F4BD0: 89 75 D4 F6 47 03 01 0F 85 2F F1 FD FF 83 65 CC .u..G..../....e. 0F6AE778: 0F6AE828 0E1F4BE0: 00 8B 45 CC 69 C0 18 34 00 00 8D 84 30 10 03 00 ..E.i..4....0... 0F6AE77C: 4C1F8426 0E1F4BF0: 00 89 45 BC 0F B6 4F 02 6B C9 68 8D 54 08 18 89 ..E...O.k.h.T... 0F6AE780: 00000000 0E1F4C00: 55 E0 8B 02 89 45 D0 85 C0 0F 84 49 11 01 00 83 U....E.....I.... 0F6AE784: 0F6AE828 0E1F4C10: 65 FC 00 8D 48 08 8B 39 89 7D AC 8B 59 04 89 5D e...H..9.}..Y..] EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:52:18 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 5 seconds Exception: ----------------------------------------------------------------------------------------------------------- 2.1 Date : Wed, 5 Feb 2014 12:52:24 +0400 2.2 Address : 77982DF6 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 77982DF6 in module 'ntdll.dll'. Read of address 00010044. 2.7 ID : 194B 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1071 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |*Exception Thread: ID=7952; Priority=1; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77982DF6|ntdll.dll | | |RtlAllocateHeap | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |00650061|SASPlanet.Debug.exe|uPSCompiler.pas | |BlockWriteByte |1838[1] | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |7740B8BA|SHLWAPI.dll | | |SHRegGetValueW | | |7740A971|SHLWAPI.dll | | |SHGetValueW | | |7740A955|SHLWAPI.dll | | |SHGetValueW | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7799016F|ntdll.dll | | |LdrUnlockLoaderLock | | |77990176|ntdll.dll | | |LdrUnlockLoaderLock | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06991|KERNELBASE.dll | | |GetCurrentProcessId | | |75A06D25|KERNELBASE.dll | | |GetProcAddress | | |77965340|ntdll.dll | | |memset | | |75D719C9|shell32.dll | | |SHGetDesktopFolder | | |75D719BA|shell32.dll | | |SHGetDesktopFolder | | |75D72C50|shell32.dll | | |SHBindToObject | | |75D74CCB|shell32.dll | | |ILRemoveLastID | | |75D74D0A|shell32.dll | | |ILRemoveLastID | | |75D72C1A|shell32.dll | | |SHBindToObject | | |75D74D44|shell32.dll | | |SHBindToFolderIDListParentEx | | |75D5B0E9|shell32.dll | | |SHBindToParent | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77964CC0|ntdll.dll | | |memcpy | | |7751CDAB|USER32.dll | | |OffsetRect | | |77515500|USER32.dll | | |GetClientRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77515BE9|USER32.dll | | |GetPropW | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77965340|ntdll.dll | | |memset | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |7751CDAB|USER32.dll | | |OffsetRect | | |77515500|USER32.dll | | |GetClientRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |777A5EC0|USP10.dll | | |ScriptTextOut | | |77965340|ntdll.dll | | |memset | | |7750A984|USER32.dll | | |GetWindowLongA | | |7751557D|USER32.dll | | |SendMessageW | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |7697D4F0|kernel32.dll | | |RegQueryValueExW | | |7697D549|kernel32.dll | | |RegQueryValueExW | | |7697D551|kernel32.dll | | |RegQueryValueExW | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |77964CC0|ntdll.dll | | |memcpy | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |77983306|ntdll.dll | | |RtlFreeAnsiString | | |779878DF|ntdll.dll | | |RtlDosApplyFileIsolationRedirection_Ustr | | |77515500|USER32.dll | | |GetClientRect | | |75A08552|KERNELBASE.dll | | |MultiByteToWideChar | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |00740062|SASPlanet.Debug.exe|u_MarkPictureListSimple.pas |TMarkPictureListSimple |GetDefaultPicture |194[2] | |77965340|ntdll.dll | | |memset | | |77467975|msvcrt.dll | | |memcmp | | |771A3BF6|iertutil.dll | | |CreateUriPriv | | |771A362E|iertutil.dll | | |CreateUri | | |77459910|msvcrt.dll | | |memcpy | | |77844623|oleaut32.dll | | |SysAllocStringLen | | |77843E59|oleaut32.dll | | |SysFreeString | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77983509|ntdll.dll | | |RtlMultiByteToUnicodeN | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |77982C6A|ntdll.dll | | |RtlFreeHeap | | |779856E7|ntdll.dll | | |RtlDeleteBoundaryDescriptor | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77965340|ntdll.dll | | |memset | | |75A0774B|KERNELBASE.dll | | |LocalAlloc | | |75A0775D|KERNELBASE.dll | | |LocalAlloc | | |77964CC0|ntdll.dll | | |memcpy | | |776AF66C|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AF65E|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AC660|RPCRT4.dll | | |NdrFreeBuffer | | |776AC646|RPCRT4.dll | | |NdrFreeBuffer | | |77532BE9|USER32.dll | | |CallWindowProcA | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |00563F30|SASPlanet.Debug.exe|GR32.pas |TPlainInterfacedPersistent |_AddRef |1775[2] | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |75A07115|KERNELBASE.dll | | |CompareStringEx | | |75A070CE|KERNELBASE.dll | | |CompareStringEx | | |75A0714F|KERNELBASE.dll | | |CompareStringW | | |76980621|kernel32.dll | | |SetFilePointer | | |7698060A|kernel32.dll | | |SetFilePointer | | |75A07115|KERNELBASE.dll | | |CompareStringEx | | |75A070CE|KERNELBASE.dll | | |CompareStringEx | | |75A0714F|KERNELBASE.dll | | |CompareStringW | | |75A07123|KERNELBASE.dll | | |CompareStringW | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |0056AAE2|SASPlanet.Debug.exe|u_IdListBase.pas |TIdListBase |Find |210[6] | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |7697C3D0|kernel32.dll | | |InterlockedDecrement | | |0056C814|SASPlanet.Debug.exe|u_InternalPerformanceCounterListForDebug.pas|TInternalPerformanceCounterListForDebug|GetCounterByClass |75[20] | |7740C511|SHLWAPI.dll | | |QISearch | | |007B1FDD|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1771[1] | |007B1F9C|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1770[0] | |007BD2AE|SASPlanet.Debug.exe|EmbeddedWB.pas | |Finalization |3554[2] | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------ Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00B50000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |0F660000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |50570000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |546F0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |68FE0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |140 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |13 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |64 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |9 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |34 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |30 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |17 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |4 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |74 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |14 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |18 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |8 | | |3636|Smc.exe | | |0 |Normal |33 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |5 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|4 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |9 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4760|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |32 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |40 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |48 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |19 |C:\Program Files\Unreal Commander | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ----------------------------------------------------------------- ; RtlAllocateHeap (Line=0 - Offset=0) ; ----------------------------------- 77982DD9 mov ebp, esp 77982DDB sub esp, +$60 77982DDE push ebx 77982DDF push esi 77982DE0 xor esi, esi 77982DE2 cmp dword ptr [ebp+$10], $7FFFFFFF ; ''... 77982DE9 push edi 77982DEA mov [ebp-$08], esi 77982DED jnbe +$0002AE7E 77982DF3 mov ebx, [ebp+$08] 77982DF6 mov eax, [ebx+$44] ; <-- EXCEPTION 77982DF9 mov ecx, [ebx+$5C] 77982DFC or [ebp+$0C], eax 77982DFF mov [ebp-$0C], ecx 77982E02 cmp ecx, esi 77982E04 jnz +$0002AE1E 77982E0A test dword ptr [ebp+$0C], $7D810F61 ; ''... 77982E11 jnz +$00002CB1 77982E17 cmp [ebp+$10], esi 77982E1A jz +$00012129 77982E20 mov eax, [ebp+$10] Registers: ----------------------------- EAX: 00000023 EDI: 0000011C EBX: 00010000 ESI: 00000000 ECX: 00000014 ESP: 0012A708 EDX: 00000006 EIP: 77982DF6 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012A708: 0000011C 0DF1DA10: 8B 43 44 8B 4B 5C 09 45 0C 89 4D F4 3B CE 0F 85 .CD.K\.E..M.;... 0012A70C: 000000E6 0DF1DA20: 1E AE 02 00 F7 45 0C 61 0F 81 7D 0F 85 B1 2C 00 .....E.a..}...,. 0012A710: 00000005 0DF1DA30: 00 39 75 10 0F 84 29 21 01 00 8B 45 10 83 C0 0F .9u...)!...E.... 0012A714: 00000000 0DF1DA40: 83 E0 F8 8B C8 89 45 F8 8B 83 B8 00 00 00 C1 E9 ......E......... 0012A718: 00000000 0DF1DA50: 03 3B 48 04 0F 83 4F 3A 00 00 8B 50 04 4A 3B CA .;H...O:...P.J;. 0012A71C: 00000001 0DF1DA60: 0F 83 23 75 00 00 2B 48 14 83 78 08 00 74 02 03 ..#u..+H..x..t.. 0012A720: 00000000 0DF1DA70: C9 8B 40 20 8D 34 88 85 F6 0F 84 63 2C 00 00 8B ..@ .4.....c,... 0012A724: B8AF6CFA 0DF1DA80: 46 04 A8 01 0F 84 58 2C 00 00 8B 55 10 8D 48 FF F.....X,...U..H. 0012A728: 00000000 0DF1DA90: C7 45 F0 02 00 00 00 E8 42 00 00 00 8B F8 85 FF .E......B....... 0012A72C: 7697CDD0 0DF1DAA0: 0F 84 3C 2C 00 00 F6 45 0C 08 0F 85 D2 BC 00 00 ..<,...E........ 0012A730: 00360034 0DF1DAB0: 85 FF 0F 84 D5 AD 02 00 8B 75 F4 85 F6 0F 85 DE .........u...... 0012A734: 7797D7D8 0DF1DAC0: AE 02 00 80 3D 80 03 FE 7F 00 0F 85 1B AE 02 00 ....=........... 0012A738: 00380036 0DF1DAD0: 8B C7 5F 5E 5B C9 C2 0C 00 90 90 90 90 90 6A 64 .._^[.........jd 0012A73C: B8AF6EFE 0DF1DAE0: 68 A0 1F 98 77 E8 3C FD FF FF 89 55 C4 8B F9 89 h...w.<....U.... 0012A740: 00000000 0DF1DAF0: 7D D8 0F B6 47 02 8D 04 85 10 01 00 00 8B F7 2B }...G..........+ 0012A744: 0012A7E8 0DF1DB00: F0 89 75 D4 F6 47 03 01 0F 85 2F F1 FD FF 83 65 ..u..G..../....e EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:52:18 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 10 seconds Exception: ------------------------------------------------------------------------------------------------------------ 2.1 Date : Wed, 5 Feb 2014 12:52:29 +0400 2.2 Address : 779832CE 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 779832CE in module 'ntdll.dll'. Write of address 686F5C56. 2.7 ID : 01EF 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1070 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------ |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------ |*Exception Thread: ID=7952; Priority=1; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------------------------------| |779832CE|ntdll.dll | | |RtlTryEnterCriticalSection | | |779832BC|ntdll.dll | | |RtlTryEnterCriticalSection | | |77964CC0|ntdll.dll | | |memcpy | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |00650061|SASPlanet.Debug.exe|uPSCompiler.pas | |BlockWriteByte |1838[1] | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |7740B8BA|SHLWAPI.dll | | |SHRegGetValueW | | |7740A971|SHLWAPI.dll | | |SHGetValueW | | |7740A955|SHLWAPI.dll | | |SHGetValueW | | |77965340|ntdll.dll | | |memset | | |76C8658E|ole32.dll | | |CoGetApartmentType | | |75D719C9|shell32.dll | | |SHGetDesktopFolder | | |75D719BA|shell32.dll | | |SHGetDesktopFolder | | |75D72C50|shell32.dll | | |SHBindToObject | | |75D74CCB|shell32.dll | | |ILRemoveLastID | | |75D74D0A|shell32.dll | | |ILRemoveLastID | | |75D72C1A|shell32.dll | | |SHBindToObject | | |75D74D44|shell32.dll | | |SHBindToFolderIDListParentEx | | |75D5B0E9|shell32.dll | | |SHBindToParent | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77964CC0|ntdll.dll | | |memcpy | | |7751CDAB|USER32.dll | | |OffsetRect | | |77515500|USER32.dll | | |GetClientRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77515BE9|USER32.dll | | |GetPropW | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77965340|ntdll.dll | | |memset | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |7751CDAB|USER32.dll | | |OffsetRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |777A5EC0|USP10.dll | | |ScriptTextOut | | |7750A984|USER32.dll | | |GetWindowLongA | | |7751557D|USER32.dll | | |SendMessageW | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |7697D4F0|kernel32.dll | | |RegQueryValueExW | | |7697D549|kernel32.dll | | |RegQueryValueExW | | |7697D551|kernel32.dll | | |RegQueryValueExW | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |77964CC0|ntdll.dll | | |memcpy | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |77983306|ntdll.dll | | |RtlFreeAnsiString | | |779878DF|ntdll.dll | | |RtlDosApplyFileIsolationRedirection_Ustr | | |77515500|USER32.dll | | |GetClientRect | | |75A08552|KERNELBASE.dll | | |MultiByteToWideChar | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |00740062|SASPlanet.Debug.exe|u_MarkPictureListSimple.pas|TMarkPictureListSimple |GetDefaultPicture |194[2] | |77965340|ntdll.dll | | |memset | | |77467975|msvcrt.dll | | |memcmp | | |771A3BF6|iertutil.dll | | |CreateUriPriv | | |771A362E|iertutil.dll | | |CreateUri | | |77459910|msvcrt.dll | | |memcpy | | |77844623|oleaut32.dll | | |SysAllocStringLen | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77983509|ntdll.dll | | |RtlMultiByteToUnicodeN | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |77982C6A|ntdll.dll | | |RtlFreeHeap | | |779856E7|ntdll.dll | | |RtlDeleteBoundaryDescriptor | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77965340|ntdll.dll | | |memset | | |75A0774B|KERNELBASE.dll | | |LocalAlloc | | |75A0775D|KERNELBASE.dll | | |LocalAlloc | | |77964CC0|ntdll.dll | | |memcpy | | |776AF66C|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AF65E|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AC660|RPCRT4.dll | | |NdrFreeBuffer | | |776AC646|RPCRT4.dll | | |NdrFreeBuffer | | |75A07115|KERNELBASE.dll | | |CompareStringEx | | |75A070CE|KERNELBASE.dll | | |CompareStringEx | | |75A0714F|KERNELBASE.dll | | |CompareStringW | | |75A07123|KERNELBASE.dll | | |CompareStringW | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |00563F30|SASPlanet.Debug.exe|GR32.pas |TPlainInterfacedPersistent|_AddRef |1775[2] | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7798F58D|ntdll.dll | | |RtlImageNtHeaderEx | | |7798FA3F|ntdll.dll | | |RtlImageNtHeader | | |7798FA29|ntdll.dll | | |RtlImageNtHeader | | |7798F63E|ntdll.dll | | |RtlImageDirectoryEntryToData | | |779A0008|ntdll.dll | | |RtlReAllocateHeap | | |77843E9E|oleaut32.dll | | |SysFreeString | | |77843E59|oleaut32.dll | | |SysFreeString | | |7740C511|SHLWAPI.dll | | |QISearch | | |007B1FDD|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1771[1] | |007B1F9C|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1770[0] | |007BAE7C|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |AssignEmptyDocument |1786[1] | |007BAE6C|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |AssignEmptyDocument |1785[0] | |007BB4D9|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |LoadFromStrings |2164[2] | ------------------------------------------------------------------------------------------------------------------------------------------ Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00B50000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |0F660000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |50570000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |546F0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |68FE0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |142 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |11 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |63 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |9 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |34 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |4 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |74 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |14 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |18 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |8 | | |3636|Smc.exe | | |0 |Normal |33 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |5 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|4 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |9 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4760|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |32 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |18 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |15 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |40 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |48 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |18 |C:\Program Files\Unreal Commander | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ---------------------------------------------------------------------------------------- ; RtlTryEnterCriticalSection (Line=0 - Offset=0) ; ---------------------------------------------- 779832BC mov edi, edi 779832BE push ebp 779832BF mov ebp, esp 779832C1 mov eax, [ebp+$08] 779832C4 mov ecx, fs:[$0018] 779832CB lea edx, [eax+$04] 779832CE lock ; <-- EXCEPTION 779832CF DB $0F, $BA, $32, $00 // dword ptr [edx], $00 779832D3 jnb +$00013493 779832D9 mov ecx, [ecx+$24] 779832DC mov [eax+$0C], ecx 779832DF mov dword ptr [eax+$08], $00000001 ; ''... Registers: ----------------------------- EAX: 686F5C52 EDI: 000100CC EBX: 00010000 ESI: 00000000 ECX: 7FFDF000 ESP: 0012A5BC EDX: 686F5C56 EIP: 779832CE Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012A5BC: 0012A698 0DE20870: F0 0F BA 32 00 0F 83 93 34 01 00 8B 49 24 89 48 ...2....4...I$.H 0012A5C0: 77985B81 0DE20880: 0C C7 40 08 01 00 00 00 B8 01 00 00 00 5D C2 04 ..@..........].. 0012A5C4: 686F5C52 0DE20890: 00 90 90 90 90 90 3B 0D E8 71 A0 77 0F 85 1D 58 ......;..q.w...X 0012A5C8: 7777B06F 0DE208A0: 05 00 C3 90 90 90 90 90 8B FF 55 8B EC 57 8B 7D ..........U..W.} 0012A5CC: 0000011C 0DE208B0: 08 8B 47 04 85 C0 0F 85 D6 23 00 00 5F 5D C2 04 ..G......#.._].. 0012A5D0: 00000000 0DE208C0: 00 90 90 90 90 90 8B FF 55 8B EC 8B 45 08 83 C9 ........U...E... 0012A5D4: 00010000 0DE208D0: FF F0 0F C1 08 F6 C1 01 0F 84 83 F5 02 00 F6 C1 ................ 0012A5D8: 0012A5F8 0DE208E0: 02 0F 85 00 A9 FC FF 5D C2 04 00 90 90 90 90 90 .......]........ 0012A5DC: 779892E1 0DE208F0: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012A5E0: 00000002 0DE20900: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 56 57 ..l$.....8.e..VW 0012A5E4: 004C004A 0DE20910: 8B 7B 08 8B C7 F0 0F BA 28 00 0F 82 C8 A7 FC FF .{......(....... 0012A5E8: 7797DA76 0DE20920: 5F 5E 8B E5 5D 8B E3 5B C2 04 00 90 90 90 90 90 _^..]..[........ 0012A5EC: 00000009 0DE20930: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012A5F0: 00000000 0DE20940: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 8B 53 ..l$.....8.e...S 0012A5F4: 00000008 0DE20950: 08 56 57 6A 11 59 33 C0 F0 0F B1 0A 8B C8 89 4D .VWj.Y3........M 0012A5F8: 00000000 0DE20960: F8 85 C9 0F 85 05 D5 FC FF 5F 5E 8B E5 5D 8B E3 ........._^..].. EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:52:18 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 19 seconds Exception: ------------------------------------------------------------------------------------------------------------ 2.1 Date : Wed, 5 Feb 2014 12:52:38 +0400 2.2 Address : 779832CE 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 779832CE in module 'ntdll.dll'. Write of address 686F5C56. 2.7 ID : 7891 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1070 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |779832CE|ntdll.dll | | |RtlTryEnterCriticalSection | | |779832BC|ntdll.dll | | |RtlTryEnterCriticalSection | | |77964CC0|ntdll.dll | | |memcpy | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |775161EA|USER32.dll | | |GetWindowLongW | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |77965340|ntdll.dll | | |memset | | |775153F5|USER32.dll | | |IsWindow | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |0080749E|SASPlanet.Debug.exe|u_MarkDbGUIHelper.pas |TMarkDbGUIHelper |ExportCategoryList |476[2] | |0080745C|SASPlanet.Debug.exe|u_MarkDbGUIHelper.pas |TMarkDbGUIHelper |ExportCategoryList |474[0] | |0087C3B8|SASPlanet.Debug.exe|frm_MarksExplorer.pas |TfrmMarksExplorer |btnExportClick |538[7] | |008248DC|SASPlanet.Debug.exe|TBXControls.pas |TTBXCustomButton |Click |1954[14] | |775154DD|USER32.dll | | |GetClientRect | | |7750ABE1|USER32.dll | | |CallNextHookEx | | |007B6E7A|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |007B6E91|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |77509DC7|USER32.dll | | |GetCapture | | |7750AC19|USER32.dll | | |CallNextHookEx | | |77512E3C|USER32.dll | | |DispatchMessageA | | |77512E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=5676; Priority=0; Class=TGarbageCollectorThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A62|ntdll.dll | | |ZwWaitForSingleObject | | |75A01730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7697C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2BD|kernel32.dll | | |Sleep | | |7697C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |779762A2|ntdll.dll | | |ZwQueryVirtualMemory | | |75A091D5|KERNELBASE.dll | | |VirtualQueryEx | | |7697C400|kernel32.dll | | |InterlockedDecrement | | |77976622|ntdll.dll | | |NtSetEvent | | |75A06856|KERNELBASE.dll | | |GetCurrentThreadId | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F083E|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7680; Priority=-15; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F174A|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=1504; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=1164; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7604; Priority=-2; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00B50000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |0F660000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |50570000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |546F0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |68FE0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |142 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |11 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |48 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |34 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |4 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |74 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |14 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |18 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |8 | | |3636|Smc.exe | | |0 |Normal |33 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |5 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|4 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |9 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4760|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |32 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |10 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |40 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |19 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |47 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |18 |C:\Program Files\Unreal Commander | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ---------------------------------------------------------------------------------------- ; RtlTryEnterCriticalSection (Line=0 - Offset=0) ; ---------------------------------------------- 779832BC mov edi, edi 779832BE push ebp 779832BF mov ebp, esp 779832C1 mov eax, [ebp+$08] 779832C4 mov ecx, fs:[$0018] 779832CB lea edx, [eax+$04] 779832CE lock ; <-- EXCEPTION 779832CF DB $0F, $BA, $32, $00 // dword ptr [edx], $00 779832D3 jnb +$00013493 779832D9 mov ecx, [ecx+$24] 779832DC mov [eax+$0C], ecx 779832DF mov dword ptr [eax+$08], $00000001 ; ''... Registers: ----------------------------- EAX: 686F5C52 EDI: 000100CC EBX: 00010000 ESI: 00000000 ECX: 7FFDF000 ESP: 0012EAAC EDX: 686F5C56 EIP: 779832CE Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EAAC: 0012EB88 0DE23330: F0 0F BA 32 00 0F 83 93 34 01 00 8B 49 24 89 48 ...2....4...I$.H 0012EAB0: 77985B81 0DE23340: 0C C7 40 08 01 00 00 00 B8 01 00 00 00 5D C2 04 ..@..........].. 0012EAB4: 686F5C52 0DE23350: 00 90 90 90 90 90 3B 0D E8 71 A0 77 0F 85 1D 58 ......;..q.w...X 0012EAB8: 7777FD7F 0DE23360: 05 00 C3 90 90 90 90 90 8B FF 55 8B EC 57 8B 7D ..........U..W.} 0012EABC: 00000120 0DE23370: 08 8B 47 04 85 C0 0F 85 D6 23 00 00 5F 5D C2 04 ..G......#.._].. 0012EAC0: 00000000 0DE23380: 00 90 90 90 90 90 8B FF 55 8B EC 8B 45 08 83 C9 ........U...E... 0012EAC4: 00010000 0DE23390: FF F0 0F C1 08 F6 C1 01 0F 84 83 F5 02 00 F6 C1 ................ 0012EAC8: 0012EAE8 0DE233A0: 02 0F 85 00 A9 FC FF 5D C2 04 00 90 90 90 90 90 .......]........ 0012EACC: 779892E1 0DE233B0: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012EAD0: 00000002 0DE233C0: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 56 57 ..l$.....8.e..VW 0012EAD4: 004C004A 0DE233D0: 8B 7B 08 8B C7 F0 0F BA 28 00 0F 82 C8 A7 FC FF .{......(....... 0012EAD8: 7797DA76 0DE233E0: 5F 5E 8B E5 5D 8B E3 5B C2 04 00 90 90 90 90 90 _^..]..[........ 0012EADC: 00000009 0DE233F0: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012EAE0: 00000000 0DE23400: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 8B 53 ..l$.....8.e...S 0012EAE4: 00000008 0DE23410: 08 56 57 6A 11 59 33 C0 F0 0F B1 0A 8B C8 89 4D .VWj.Y3........M 0012EAE8: 00000000 0DE23420: F8 85 C9 0F 85 05 D5 FC FF 5F 5E 8B E5 5D 8B E3 ........._^..].. EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:52:18 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 24 seconds Exception: ------------------------------------------------------------------------------------------------------------ 2.1 Date : Wed, 5 Feb 2014 12:52:43 +0400 2.2 Address : 779832CE 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 779832CE in module 'ntdll.dll'. Write of address 686F5C56. 2.7 ID : B611 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1068 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |779832CE|ntdll.dll | | |RtlTryEnterCriticalSection | | |779832BC|ntdll.dll | | |RtlTryEnterCriticalSection | | |77964CC0|ntdll.dll | | |memcpy | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |7751557D|USER32.dll | | |SendMessageW | | |77532BE9|USER32.dll | | |CallWindowProcA | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |76A43C9E|MSCTF.dll | | |CtfImeDispatchDefImeMessage | | |775153F5|USER32.dll | | |IsWindow | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |0087C180|SASPlanet.Debug.exe|frm_MarksExplorer.pas |TfrmMarksExplorer |btnImportClick |499[2] | |008248DC|SASPlanet.Debug.exe|TBXControls.pas |TTBXCustomButton |Click |1954[14] | |775154DD|USER32.dll | | |GetClientRect | | |7750ABE1|USER32.dll | | |CallNextHookEx | | |007B6E7A|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |007B6E91|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |77509DC7|USER32.dll | | |GetCapture | | |7750AC19|USER32.dll | | |CallNextHookEx | | |775164F7|USER32.dll | | |KillTimer | | |77512E3C|USER32.dll | | |DispatchMessageA | | |77512E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=5676; Priority=0; Class=TGarbageCollectorThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A62|ntdll.dll | | |ZwWaitForSingleObject | | |75A01730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7697C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2BD|kernel32.dll | | |Sleep | | |7697C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |779762A2|ntdll.dll | | |ZwQueryVirtualMemory | | |75A091D5|KERNELBASE.dll | | |VirtualQueryEx | | |7697C400|kernel32.dll | | |InterlockedDecrement | | |77976622|ntdll.dll | | |NtSetEvent | | |75A06856|KERNELBASE.dll | | |GetCurrentThreadId | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F083E|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7680; Priority=-15; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F174A|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=1504; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=1164; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7604; Priority=-2; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=7952; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00B50000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |0F660000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |50570000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |546F0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |68FE0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |142 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |11 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |48 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |34 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |4 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |74 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |14 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |18 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |8 | | |3636|Smc.exe | | |0 |Normal |33 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |5 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|4 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |9 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4760|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |32 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |10 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |41 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |19 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |47 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |18 |C:\Program Files\Unreal Commander | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ---------------------------------------------------------------------------------------- ; RtlTryEnterCriticalSection (Line=0 - Offset=0) ; ---------------------------------------------- 779832BC mov edi, edi 779832BE push ebp 779832BF mov ebp, esp 779832C1 mov eax, [ebp+$08] 779832C4 mov ecx, fs:[$0018] 779832CB lea edx, [eax+$04] 779832CE lock ; <-- EXCEPTION 779832CF DB $0F, $BA, $32, $00 // dword ptr [edx], $00 779832D3 jnb +$00013493 779832D9 mov ecx, [ecx+$24] 779832DC mov [eax+$0C], ecx 779832DF mov dword ptr [eax+$08], $00000001 ; ''... Registers: ----------------------------- EAX: 686F5C52 EDI: 000100CC EBX: 00010000 ESI: 00000000 ECX: 7FFDF000 ESP: 0012EAB0 EDX: 686F5C56 EIP: 779832CE Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EAB0: 0012EB8C 0DE23330: F0 0F BA 32 00 0F 83 93 34 01 00 8B 49 24 89 48 ...2....4...I$.H 0012EAB4: 77985B81 0DE23340: 0C C7 40 08 01 00 00 00 B8 01 00 00 00 5D C2 04 ..@..........].. 0012EAB8: 686F5C52 0DE23350: 00 90 90 90 90 90 3B 0D E8 71 A0 77 0F 85 1D 58 ......;..q.w...X 0012EABC: 7777FD7B 0DE23360: 05 00 C3 90 90 90 90 90 8B FF 55 8B EC 57 8B 7D ..........U..W.} 0012EAC0: 00000120 0DE23370: 08 8B 47 04 85 C0 0F 85 D6 23 00 00 5F 5D C2 04 ..G......#.._].. 0012EAC4: 00000000 0DE23380: 00 90 90 90 90 90 8B FF 55 8B EC 8B 45 08 83 C9 ........U...E... 0012EAC8: 00010000 0DE23390: FF F0 0F C1 08 F6 C1 01 0F 84 83 F5 02 00 F6 C1 ................ 0012EACC: 0012EAEC 0DE233A0: 02 0F 85 00 A9 FC FF 5D C2 04 00 90 90 90 90 90 .......]........ 0012EAD0: 779892E1 0DE233B0: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012EAD4: 00000002 0DE233C0: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 56 57 ..l$.....8.e..VW 0012EAD8: 004C004A 0DE233D0: 8B 7B 08 8B C7 F0 0F BA 28 00 0F 82 C8 A7 FC FF .{......(....... 0012EADC: 7797DA76 0DE233E0: 5F 5E 8B E5 5D 8B E3 5B C2 04 00 90 90 90 90 90 _^..]..[........ 0012EAE0: 00000009 0DE233F0: 8B FF 53 8B DC 51 51 83 E4 F0 83 C4 04 55 8B 6B ..S..QQ......U.k 0012EAE4: 00000000 0DE23400: 04 89 6C 24 04 8B EC 83 EC 38 83 65 F4 00 8B 53 ..l$.....8.e...S 0012EAE8: 00000008 0DE23410: 08 56 57 6A 11 59 33 C0 F0 0F B1 0A 8B C8 89 4D .VWj.Y3........M 0012EAEC: 00000000 0DE23420: F8 85 C9 0F 85 05 D5 FC FF 5F 5E 8B E5 5D 8B E3 ........._^..].. EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:52:54 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 7 seconds Exception: ----------------------------------------------------------------------------------------------------------- 2.1 Date : Wed, 5 Feb 2014 12:53:01 +0400 2.2 Address : 77982E37 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 77982E37 in module 'ntdll.dll'. Read of address 00000004. 2.7 ID : 194B 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1055 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |*Exception Thread: ID=5160; Priority=1; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77982E37|ntdll.dll | | |RtlAllocateHeap | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |00650061|SASPlanet.Debug.exe|uPSCompiler.pas | |BlockWriteByte |1838[1] | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |7740B8BA|SHLWAPI.dll | | |SHRegGetValueW | | |7740A971|SHLWAPI.dll | | |SHGetValueW | | |7740A955|SHLWAPI.dll | | |SHGetValueW | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7799016F|ntdll.dll | | |LdrUnlockLoaderLock | | |77990176|ntdll.dll | | |LdrUnlockLoaderLock | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06991|KERNELBASE.dll | | |GetCurrentProcessId | | |75A06D25|KERNELBASE.dll | | |GetProcAddress | | |77965340|ntdll.dll | | |memset | | |75D719C9|shell32.dll | | |SHGetDesktopFolder | | |75D719BA|shell32.dll | | |SHGetDesktopFolder | | |75D72C50|shell32.dll | | |SHBindToObject | | |75D74CCB|shell32.dll | | |ILRemoveLastID | | |75D74D0A|shell32.dll | | |ILRemoveLastID | | |75D72C1A|shell32.dll | | |SHBindToObject | | |75D74D44|shell32.dll | | |SHBindToFolderIDListParentEx | | |75D5B0E9|shell32.dll | | |SHBindToParent | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77964CC0|ntdll.dll | | |memcpy | | |7751CDAB|USER32.dll | | |OffsetRect | | |77515500|USER32.dll | | |GetClientRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77515BE9|USER32.dll | | |GetPropW | | |775153F5|USER32.dll | | |IsWindow | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77965340|ntdll.dll | | |memset | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |7751CDAB|USER32.dll | | |OffsetRect | | |77515500|USER32.dll | | |GetClientRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |777A5EC0|USP10.dll | | |ScriptTextOut | | |77965340|ntdll.dll | | |memset | | |7750A984|USER32.dll | | |GetWindowLongA | | |7751557D|USER32.dll | | |SendMessageW | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |7697D4F0|kernel32.dll | | |RegQueryValueExW | | |7697D549|kernel32.dll | | |RegQueryValueExW | | |7697D551|kernel32.dll | | |RegQueryValueExW | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |77964CC0|ntdll.dll | | |memcpy | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |77983306|ntdll.dll | | |RtlFreeAnsiString | | |779878DF|ntdll.dll | | |RtlDosApplyFileIsolationRedirection_Ustr | | |77515500|USER32.dll | | |GetClientRect | | |75A08552|KERNELBASE.dll | | |MultiByteToWideChar | | |00740062|SASPlanet.Debug.exe|u_MarkPictureListSimple.pas |TMarkPictureListSimple |GetDefaultPicture |194[2] | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |77965340|ntdll.dll | | |memset | | |77467975|msvcrt.dll | | |memcmp | | |771A3BF6|iertutil.dll | | |CreateUriPriv | | |771A362E|iertutil.dll | | |CreateUri | | |77459910|msvcrt.dll | | |memcpy | | |77844623|oleaut32.dll | | |SysAllocStringLen | | |77843E59|oleaut32.dll | | |SysFreeString | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77983509|ntdll.dll | | |RtlMultiByteToUnicodeN | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |77982C6A|ntdll.dll | | |RtlFreeHeap | | |779856E7|ntdll.dll | | |RtlDeleteBoundaryDescriptor | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77965340|ntdll.dll | | |memset | | |75A0774B|KERNELBASE.dll | | |LocalAlloc | | |75A0775D|KERNELBASE.dll | | |LocalAlloc | | |77964CC0|ntdll.dll | | |memcpy | | |776AF66C|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AF65E|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AC660|RPCRT4.dll | | |NdrFreeBuffer | | |776AC646|RPCRT4.dll | | |NdrFreeBuffer | | |77532BE9|USER32.dll | | |CallWindowProcA | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |00563F30|SASPlanet.Debug.exe|GR32.pas |TPlainInterfacedPersistent |_AddRef |1775[2] | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |75A07115|KERNELBASE.dll | | |CompareStringEx | | |75A070CE|KERNELBASE.dll | | |CompareStringEx | | |75A0714F|KERNELBASE.dll | | |CompareStringW | | |76980621|kernel32.dll | | |SetFilePointer | | |7698060A|kernel32.dll | | |SetFilePointer | | |75A07115|KERNELBASE.dll | | |CompareStringEx | | |75A070CE|KERNELBASE.dll | | |CompareStringEx | | |75A0714F|KERNELBASE.dll | | |CompareStringW | | |75A07123|KERNELBASE.dll | | |CompareStringW | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |0056AAE2|SASPlanet.Debug.exe|u_IdListBase.pas |TIdListBase |Find |210[6] | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |7697C3D0|kernel32.dll | | |InterlockedDecrement | | |0056C814|SASPlanet.Debug.exe|u_InternalPerformanceCounterListForDebug.pas|TInternalPerformanceCounterListForDebug|GetCounterByClass |75[20] | |7740C511|SHLWAPI.dll | | |QISearch | | |007B1FDD|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1771[1] | |007B1F9C|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1770[0] | |007BD2AE|SASPlanet.Debug.exe|EmbeddedWB.pas | |Finalization |3554[2] | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------ Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00D60000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |0F0B0000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |50570000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |546F0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |682C0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |141 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |11 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |22 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |51 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |34 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |8 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |3 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |73 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |16 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |17 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |9 | | |3636|Smc.exe | | |0 |Normal |31 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |5 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|4 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |8 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |10 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |40 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |13 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |19 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |47 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |18 |C:\Program Files\Unreal Commander | |7184|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |31 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ------------------------------------------------------------ ; RtlAllocateHeap (Line=0 - Offset=0) ; ----------------------------------- 77982E11 jnz +$00002CB1 77982E17 cmp [ebp+$10], esi 77982E1A jz +$00012129 77982E20 mov eax, [ebp+$10] 77982E23 add eax, +$0F 77982E26 and eax, -$08 77982E29 mov ecx, eax 77982E2B mov [ebp-$08], eax 77982E2E mov eax, [ebx+$00B8] 77982E34 shr ecx, $03 77982E37 cmp ecx, [eax+$04] ; <-- EXCEPTION 77982E3A jnb +$00003A4F 77982E40 mov edx, [eax+$04] 77982E43 dec edx 77982E44 cmp ecx, edx 77982E46 jnb +$00007523 77982E4C sub ecx, dword ptr [eax+$14] 77982E4F cmp dword ptr [eax+$08], +$00 77982E53 jz RtlAllocateHeap 77982E55 add ecx, ecx 77982E57 mov eax, [eax+$20] Registers: ----------------------------- EAX: 00000000 EDI: 0000011C EBX: 00010000 ESI: 00000000 ECX: 00000025 ESP: 0012A708 EDX: 00000006 EIP: 77982E37 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012A708: 0000011C 0E97EAC0: 3B 48 04 0F 83 4F 3A 00 00 8B 50 04 4A 3B CA 0F ;H...O:...P.J;.. 0012A70C: 000000E6 0E97EAD0: 83 23 75 00 00 2B 48 14 83 78 08 00 74 02 03 C9 .#u..+H..x..t... 0012A710: 00000005 0E97EAE0: 8B 40 20 8D 34 88 85 F6 0F 84 63 2C 00 00 8B 46 .@ .4.....c,...F 0012A714: 00000000 0E97EAF0: 04 A8 01 0F 84 58 2C 00 00 8B 55 10 8D 48 FF C7 .....X,...U..H.. 0012A718: 00000000 0E97EB00: 45 F0 02 00 00 00 E8 42 00 00 00 8B F8 85 FF 0F E......B........ 0012A71C: 00000001 0E97EB10: 84 3C 2C 00 00 F6 45 0C 08 0F 85 D2 BC 00 00 85 .<,...E......... 0012A720: 00000000 0E97EB20: FF 0F 84 D5 AD 02 00 8B 75 F4 85 F6 0F 85 DE AE ........u....... 0012A724: 877934D6 0E97EB30: 02 00 80 3D 80 03 FE 7F 00 0F 85 1B AE 02 00 8B ...=............ 0012A728: 00000000 0E97EB40: C7 5F 5E 5B C9 C2 0C 00 90 90 90 90 90 6A 64 68 ._^[.........jdh 0012A72C: 7697CDD0 0E97EB50: A0 1F 98 77 E8 3C FD FF FF 89 55 C4 8B F9 89 7D ...w.<....U....} 0012A730: 00360034 0E97EB60: D8 0F B6 47 02 8D 04 85 10 01 00 00 8B F7 2B F0 ...G..........+. 0012A734: 7797D7D8 0E97EB70: 89 75 D4 F6 47 03 01 0F 85 2F F1 FD FF 83 65 CC .u..G..../....e. 0012A738: 00380036 0E97EB80: 00 8B 45 CC 69 C0 18 34 00 00 8D 84 30 10 03 00 ..E.i..4....0... 0012A73C: 877936D2 0E97EB90: 00 89 45 BC 0F B6 4F 02 6B C9 68 8D 54 08 18 89 ..E...O.k.h.T... 0012A740: 00000000 0E97EBA0: 55 E0 8B 02 89 45 D0 85 C0 0F 84 49 11 01 00 83 U....E.....I.... 0012A744: 0012A7E8 0E97EBB0: 65 FC 00 8D 48 08 8B 39 89 7D AC 8B 59 04 89 5D e...H..9.}..Y..] EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:52:54 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 14 seconds Exception: ----------------------------------------------------------------------------------------------------------- 2.1 Date : Wed, 5 Feb 2014 12:53:08 +0400 2.2 Address : 77982E37 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 77982E37 in module 'ntdll.dll'. Read of address 00000004. 2.7 ID : 624D 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1061 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------ |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------ |*Exception Thread: ID=5160; Priority=1; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------------------------------| |77982E37|ntdll.dll | | |RtlAllocateHeap | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |00650061|SASPlanet.Debug.exe|uPSCompiler.pas | |BlockWriteByte |1838[1] | |006C0062|SASPlanet.Debug.exe|u_UiTileDownload.pas |TUiTileDownload |OnAppClosing |250[2] | |7740B8BA|SHLWAPI.dll | | |SHRegGetValueW | | |7740A971|SHLWAPI.dll | | |SHGetValueW | | |7740A955|SHLWAPI.dll | | |SHGetValueW | | |77965340|ntdll.dll | | |memset | | |76C8658E|ole32.dll | | |CoGetApartmentType | | |75D719C9|shell32.dll | | |SHGetDesktopFolder | | |75D719BA|shell32.dll | | |SHGetDesktopFolder | | |75D72C50|shell32.dll | | |SHBindToObject | | |75D74CCB|shell32.dll | | |ILRemoveLastID | | |75D74D0A|shell32.dll | | |ILRemoveLastID | | |75D72C1A|shell32.dll | | |SHBindToObject | | |75D74D44|shell32.dll | | |SHBindToFolderIDListParentEx | | |75D5B0E9|shell32.dll | | |SHBindToParent | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77964CC0|ntdll.dll | | |memcpy | | |7751CDAB|USER32.dll | | |OffsetRect | | |77515500|USER32.dll | | |GetClientRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77515BE9|USER32.dll | | |GetPropW | | |775153F5|USER32.dll | | |IsWindow | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77965340|ntdll.dll | | |memset | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |7751CDAB|USER32.dll | | |OffsetRect | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |777A5EC0|USP10.dll | | |ScriptTextOut | | |7750A984|USER32.dll | | |GetWindowLongA | | |7751557D|USER32.dll | | |SendMessageW | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |7697D4F0|kernel32.dll | | |RegQueryValueExW | | |7697D549|kernel32.dll | | |RegQueryValueExW | | |7697D551|kernel32.dll | | |RegQueryValueExW | | |77983CA4|ntdll.dll | | |RtlNtStatusToDosErrorNoTeb | | |77983C92|ntdll.dll | | |RtlNtStatusToDosError | | |77976292|ntdll.dll | | |NtQueryValueKey | | |77983C97|ntdll.dll | | |RtlNtStatusToDosError | | |77964CC0|ntdll.dll | | |memcpy | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137]| |77983306|ntdll.dll | | |RtlFreeAnsiString | | |779878DF|ntdll.dll | | |RtlDosApplyFileIsolationRedirection_Ustr | | |77515500|USER32.dll | | |GetClientRect | | |75A08552|KERNELBASE.dll | | |MultiByteToWideChar | | |00740062|SASPlanet.Debug.exe|u_MarkPictureListSimple.pas|TMarkPictureListSimple |GetDefaultPicture |194[2] | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |7697C3BE|kernel32.dll | | |InterlockedIncrement | | |77965340|ntdll.dll | | |memset | | |77467975|msvcrt.dll | | |memcmp | | |771A3BF6|iertutil.dll | | |CreateUriPriv | | |771A362E|iertutil.dll | | |CreateUri | | |77459910|msvcrt.dll | | |memcpy | | |77844623|oleaut32.dll | | |SysAllocStringLen | | |77532BE9|USER32.dll | | |CallWindowProcA | | |77532BD3|USER32.dll | | |CallWindowProcA | | |77982E7D|ntdll.dll | | |RtlAllocateHeap | | |77983509|ntdll.dll | | |RtlMultiByteToUnicodeN | | |77982CE3|ntdll.dll | | |RtlFreeHeap | | |77982C6A|ntdll.dll | | |RtlFreeHeap | | |779856E7|ntdll.dll | | |RtlDeleteBoundaryDescriptor | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |77965340|ntdll.dll | | |memset | | |75A0774B|KERNELBASE.dll | | |LocalAlloc | | |75A0775D|KERNELBASE.dll | | |LocalAlloc | | |77964CC0|ntdll.dll | | |memcpy | | |776AF66C|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AF65E|RPCRT4.dll | | |I_RpcFreeBuffer | | |776AC660|RPCRT4.dll | | |NdrFreeBuffer | | |776AC646|RPCRT4.dll | | |NdrFreeBuffer | | |75A07115|KERNELBASE.dll | | |CompareStringEx | | |75A070CE|KERNELBASE.dll | | |CompareStringEx | | |75A0714F|KERNELBASE.dll | | |CompareStringW | | |75A07123|KERNELBASE.dll | | |CompareStringW | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |00563F30|SASPlanet.Debug.exe|GR32.pas |TPlainInterfacedPersistent|_AddRef |1775[2] | |7798F58D|ntdll.dll | | |RtlImageNtHeaderEx | | |7798FA3F|ntdll.dll | | |RtlImageNtHeader | | |7798FA29|ntdll.dll | | |RtlImageNtHeader | | |7798F63E|ntdll.dll | | |RtlImageDirectoryEntryToData | | |779A0008|ntdll.dll | | |RtlReAllocateHeap | | |77843E9E|oleaut32.dll | | |SysFreeString | | |77843E59|oleaut32.dll | | |SysFreeString | | |7740C511|SHLWAPI.dll | | |QISearch | | |007B1FDD|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1771[1] | |007B1F9C|SASPlanet.Debug.exe|SHDocVw_EWB.pas |TEWB |Navigate |1770[0] | |007BAE7C|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |AssignEmptyDocument |1786[1] | |007BAE6C|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |AssignEmptyDocument |1785[0] | |007BB4D9|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |LoadFromStrings |2164[2] | |007BB4A0|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |LoadFromStrings |2162[0] | |007BADDE|SASPlanet.Debug.exe|EmbeddedWB.pas |TEmbeddedWB |HTMLCodeChanged |1650[25]| ------------------------------------------------------------------------------------------------------------------------------------------ Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00D60000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |0F0B0000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |50570000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |546F0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |682C0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |141 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |11 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |19 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |51 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |34 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |3 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |73 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |16 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |17 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |9 | | |3636|Smc.exe | | |0 |Normal |31 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |14 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |5 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|4 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |8 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |39 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |19 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |47 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |18 |C:\Program Files\Unreal Commander | |7184|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |31 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ------------------------------------------------------------ ; RtlAllocateHeap (Line=0 - Offset=0) ; ----------------------------------- 77982E11 jnz +$00002CB1 77982E17 cmp [ebp+$10], esi 77982E1A jz +$00012129 77982E20 mov eax, [ebp+$10] 77982E23 add eax, +$0F 77982E26 and eax, -$08 77982E29 mov ecx, eax 77982E2B mov [ebp-$08], eax 77982E2E mov eax, [ebx+$00B8] 77982E34 shr ecx, $03 77982E37 cmp ecx, [eax+$04] ; <-- EXCEPTION 77982E3A jnb +$00003A4F 77982E40 mov edx, [eax+$04] 77982E43 dec edx 77982E44 cmp ecx, edx 77982E46 jnb +$00007523 77982E4C sub ecx, dword ptr [eax+$14] 77982E4F cmp dword ptr [eax+$08], +$00 77982E53 jz RtlAllocateHeap 77982E55 add ecx, ecx 77982E57 mov eax, [eax+$20] Registers: ----------------------------- EAX: 00000000 EDI: 0000011C EBX: 00010000 ESI: 00000000 ECX: 00000025 ESP: 0012A6B0 EDX: 00000006 EIP: 77982E37 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012A6B0: 0000011C 0D9F1690: 3B 48 04 0F 83 4F 3A 00 00 8B 50 04 4A 3B CA 0F ;H...O:...P.J;.. 0012A6B4: 000000E6 0D9F16A0: 83 23 75 00 00 2B 48 14 83 78 08 00 74 02 03 C9 .#u..+H..x..t... 0012A6B8: 00000005 0D9F16B0: 8B 40 20 8D 34 88 85 F6 0F 84 63 2C 00 00 8B 46 .@ .4.....c,...F 0012A6BC: 00000000 0D9F16C0: 04 A8 01 0F 84 58 2C 00 00 8B 55 10 8D 48 FF C7 .....X,...U..H.. 0012A6C0: 00000000 0D9F16D0: 45 F0 02 00 00 00 E8 42 00 00 00 8B F8 85 FF 0F E......B........ 0012A6C4: 00000001 0D9F16E0: 84 3C 2C 00 00 F6 45 0C 08 0F 85 D2 BC 00 00 85 .<,...E......... 0012A6C8: 00000000 0D9F16F0: FF 0F 84 D5 AD 02 00 8B 75 F4 85 F6 0F 85 DE AE ........u....... 0012A6CC: 8779357E 0D9F1700: 02 00 80 3D 80 03 FE 7F 00 0F 85 1B AE 02 00 8B ...=............ 0012A6D0: 00000000 0D9F1710: C7 5F 5E 5B C9 C2 0C 00 90 90 90 90 90 6A 64 68 ._^[.........jdh 0012A6D4: 7697CDD0 0D9F1720: A0 1F 98 77 E8 3C FD FF FF 89 55 C4 8B F9 89 7D ...w.<....U....} 0012A6D8: 00360034 0D9F1730: D8 0F B6 47 02 8D 04 85 10 01 00 00 8B F7 2B F0 ...G..........+. 0012A6DC: 7797D7D8 0D9F1740: 89 75 D4 F6 47 03 01 0F 85 2F F1 FD FF 83 65 CC .u..G..../....e. 0012A6E0: 00380036 0D9F1750: 00 8B 45 CC 69 C0 18 34 00 00 8D 84 30 10 03 00 ..E.i..4....0... 0012A6E4: 8779377A 0D9F1760: 00 89 45 BC 0F B6 4F 02 6B C9 68 8D 54 08 18 89 ..E...O.k.h.T... 0012A6E8: 00000000 0D9F1770: 55 E0 8B 02 89 45 D0 85 C0 0F 84 49 11 01 00 83 U....E.....I.... 0012A6EC: 0012A790 0D9F1780: 65 FC 00 8D 48 08 8B 39 89 7D AC 8B 59 04 89 5D e...H..9.}..Y..] EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Wed, 5 Feb 2014 12:52:54 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.22.7812 1.4 Parameters : 1.5 Compilation Date: Wed, 22 Jan 2014 04:03:55 +0400 1.6 Up Time : 24 seconds Exception: ----------------------------------------------------------------------------------------------------------- 2.1 Date : Wed, 5 Feb 2014 12:53:19 +0400 2.2 Address : 77982E37 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 77982E37 in module 'ntdll.dll'. Read of address 00000004. 2.7 ID : 7710 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1064 Mb 5.5 Free Disk : 376.95 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=5160; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77982E37|ntdll.dll | | |RtlAllocateHeap | | |77982DD6|ntdll.dll | | |RtlAllocateHeap | | |7799E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |7799E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |779A0FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |77976062|ntdll.dll | | |NtQueryInformationFile | | |77532BE9|USER32.dll | | |CallWindowProcA | | |775153F5|USER32.dll | | |IsWindow | | |7751557D|USER32.dll | | |SendMessageW | | |77532BE9|USER32.dll | | |CallWindowProcA | | |00730072|SASPlanet.Debug.exe|u_GeoCoderByURL.pas |TGeoCoderByURL |GetPointFromShortLink |272[137] | |76A43C9E|MSCTF.dll | | |CtfImeDispatchDefImeMessage | | |775153F5|USER32.dll | | |IsWindow | | |7697C3A0|kernel32.dll | | |InterlockedIncrement | | |0087C180|SASPlanet.Debug.exe|frm_MarksExplorer.pas |TfrmMarksExplorer |btnImportClick |499[2] | |008248DC|SASPlanet.Debug.exe|TBXControls.pas |TTBXCustomButton |Click |1954[14] | |775154DD|USER32.dll | | |GetClientRect | | |7750ABE1|USER32.dll | | |CallNextHookEx | | |007B6E7A|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |007B6E91|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |77509DC7|USER32.dll | | |GetCapture | | |7750AC19|USER32.dll | | |CallNextHookEx | | |77512E3C|USER32.dll | | |DispatchMessageA | | |77512E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=2500; Priority=0; Class=TGarbageCollectorThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A62|ntdll.dll | | |ZwWaitForSingleObject | | |75A01730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7697C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7697C2BD|kernel32.dll | | |Sleep | | |7697C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |779762A2|ntdll.dll | | |ZwQueryVirtualMemory | | |75A091D5|KERNELBASE.dll | | |VirtualQueryEx | | |7697C400|kernel32.dll | | |InterlockedDecrement | | |77976622|ntdll.dll | | |NtSetEvent | | |75A06856|KERNELBASE.dll | | |GetCurrentThreadId | | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5160; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F083E|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6448; Priority=-15; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5160; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F174A|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3684; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5160; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6820; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5160; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |7750F2B3|USER32.dll | | |ShowWindow | | |7750F2A9|USER32.dll | | |ShowWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | |7798F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |77992296|ntdll.dll | | |LdrGetProcedureAddress | | |75A06D12|KERNELBASE.dll | | |GetProcAddress | | |77513654|USER32.dll | | |MonitorFromWindow | | |7751366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6068; Priority=-2; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |77976A42|ntdll.dll | | |NtWaitForMultipleObjects | | |75A06AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7697BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7697BDCF|kernel32.dll | | |ResetEvent | | |7697BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7697ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5160; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1718|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F8|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |0088727A|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7750ADA4|USER32.dll | | |SendMessageA | | |7750AD60|USER32.dll | | |SendMessageA | | |7750ABB7|USER32.dll | | |SetFocus | | |7750ABAD|USER32.dll | | |SetFocus | | |775161DE|USER32.dll | | |GetWindowLongW | | |775153F5|USER32.dll | | |IsWindow | | |77977750|ntdll.dll | | |RtlLeaveCriticalSection | | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00250000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00400000|SASPlanet.Debug.exe | |14.1.22.7812 |5871104 |2014-01-22 04:03:58|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |00D60000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |0F0B0000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |50570000|UMEngx86.dll |SONAR Engine |8.1.1.2 |191664 |2013-12-18 04:32:34|C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Data\Definitions\BASHDefs\20140121.011| |546F0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |558A0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |5C160000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |682C0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |69590000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |69EA0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |6BCB0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6FF20000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6FF30000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6FF40000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6FF60000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |70100000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |70590000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |707F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |70820000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |727E0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72DC0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72E70000|dhcpcsvc6.DLL |Клиент DHCPv6 |6.1.7601.17970 |44032 |2012-10-09 21:40:32|C:\Windows\system32 | |73070000|dhcpcsvc.DLL |Служба DHCP-клиента |6.1.7600.16385 |61952 |2009-07-14 05:15:12|C:\Windows\system32 | |73160000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |73430000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |73440000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73520000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |738F0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |73B50000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74100000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74520000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74560000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2 | |74A20000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |74B10000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |74DA0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74DC0000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74EB0000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74EC0000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |74FA0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |75080000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |750D0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |750E0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |75120000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |75140000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |75240000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |752D0000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |753B0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |753D0000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |75630000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |75640000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |75650000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |75660000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |75670000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |75700000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75810000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75830000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |758F0000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75900000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75970000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |759E0000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75A00000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75A50000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75A60000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75AC0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75AD0000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75B00000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |75C20000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |75CC0000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75CD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76920000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76930000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |76A10000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |76A40000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |76B10000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76C40000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76DF0000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |76FD0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |77190000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |771A0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |773A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |773F0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77450000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |77500000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |775D0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |77670000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |77720000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |777A0000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |77840000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |77930000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77A70000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A80000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |77AA0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |77AB0000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |77B40000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |141 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113 |0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |424 |Explorer.EXE |Проводник |6.1.7601.17567 |0 |Normal |27 |C:\Windows | |428 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |10 | | |568 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385 |0 |High |3 | | |576 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385 |0 |High |11 | | |624 |services.exe |Приложение служб и контроллеров |6.1.7600.16385 |0 |Normal |11 | | |640 |Fuel.Service.exe | | |0 |Normal |7 | | |648 |lsass.exe |Local Security Authority Process |6.1.7601.18270 |0 |Normal |8 | | |656 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514 |0 |Normal |10 | | |692 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514 |0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |12 | | |876 |USBSRService.exe | | |0 |Normal |5 | | |924 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |980 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |1124|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |23 | | |1172|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |17 | | |1204|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |48 | | |1244|stacsv.exe | | |0 |Normal |11 | | |1296|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514 |0 |Normal |9 | | |1304|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385 |0 |Normal |4 | | |1404|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |1436|cvpnd.exe | | |0 |Normal |10 | | |1524|FwcAgent.exe | | |0 |Normal |11 | | |1576|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |34 | | |1592|GCSServer.exe | | |0 |Normal |6 | | |1616|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |29 |C:\Program Files\Internet Explorer | |1688|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1704|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385 |0 |Normal |9 | | |1712|conhost.exe |Окно консоли узла |6.1.7601.18229 |0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1844|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777 |0 |Normal |19 | | |1972|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |20 | | |2068|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2136|HWDeviceService.exe | | |0 |Normal |6 | | |2200|mdm.exe | | |0 |Normal |6 | | |2240|PlanetBroker.exe | | |0 |Normal |9 | | |2340|picpick.exe |PicPick |3.2.9.0 |0 |Normal |9 |C:\Program Files\PicPick | |2360|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2400|oodag.exe | | |0 |Normal |13 | | |2428|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385 |0 |Normal |3 | | |2516|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |4 | | |2548|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |7 | | |2580|Q1DBService.exe | | |0 |Normal |4 | | |2612|ccSvcHst.exe | | |0 |Normal |73 | | |2656|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514 |0 |Normal |4 | | |2692|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |6 | | |2760|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |16 | | |2844|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |2964|CcmExec.exe | | |0 |Normal |18 | | |3272|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3392|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |3472|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |9 | | |3636|Smc.exe | | |0 |Normal |31 | | |3744|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610 |0 |Normal |13 | | |4008|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |5 | | |4212|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Below-Normal|4 | | |4248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514 |0 |Normal |8 | | |4428|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4440|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4692|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |4796|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |4836|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |11 | | |5000|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |5192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385 |0 |Normal |13 | | |5204|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5212|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5224|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5236|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |5280|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5380|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |41 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5388|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |5476|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385 |0 |Normal |7 |C:\Windows\System32 | |5544|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |5596|ssonsvr.exe | | |0 |Normal |5 | | |5604|EvernoteClipper.exe |Evernote Clipper |5.1.2.2387 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |5680|EvernoteTray.exe |Evernote Tray Application |5.1.2.2387 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |5696|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010 |0 |Normal |14 |C:\Windows\system32 | |5748|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |19 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5876|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |47 |C:\Program Files\Mozilla Firefox | |5960|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |16 |C:\Lotus\Notes | |5976|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514 |0 |Normal |5 |C:\Windows\system32 | |6032|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |11 |C:\Program Files\Hard Disk Sentinel Pro | |6112|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385 |0 |High |5 |C:\Windows\system32 | |6292|AIMP3.exe |AIMP3 |3.5.5.1332 |0 |Normal |14 |C:\Program Files\AIMP3 | |6304|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6340|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6364|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |6472|MSACCESS.EXE |Microsoft Access |14.0.7104.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |6476|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |15 |C:\Lotus\Notes | |6776|EXCEL.EXE |Microsoft Excel |14.0.7109.5000 |0 |Normal |12 |C:\Program Files\Microsoft Office\Office14 | |7056|Uncom.exe |Unreal Commander |2.0.2.965 |0 |Normal |18 |C:\Program Files\Unreal Commander | |7184|SASPlanet.Debug.exe | |14.1.22.7812 |0 |Normal |31 |D:\@SASPlanet\SAS.Planet.Nightly.140122.7812 | |7636|OSPPSVC.EXE | | |0 |Normal |3 | | |8028|iexplore.exe |Internet Explorer |10.0.9200.16750|0 |Normal |13 |C:\Program Files\Internet Explorer | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ------------------------------------------------------------ ; RtlAllocateHeap (Line=0 - Offset=0) ; ----------------------------------- 77982E11 jnz +$00002CB1 77982E17 cmp [ebp+$10], esi 77982E1A jz +$00012129 77982E20 mov eax, [ebp+$10] 77982E23 add eax, +$0F 77982E26 and eax, -$08 77982E29 mov ecx, eax 77982E2B mov [ebp-$08], eax 77982E2E mov eax, [ebx+$00B8] 77982E34 shr ecx, $03 77982E37 cmp ecx, [eax+$04] ; <-- EXCEPTION 77982E3A jnb +$00003A4F 77982E40 mov edx, [eax+$04] 77982E43 dec edx 77982E44 cmp ecx, edx 77982E46 jnb +$00007523 77982E4C sub ecx, dword ptr [eax+$14] 77982E4F cmp dword ptr [eax+$08], +$00 77982E53 jz RtlAllocateHeap 77982E55 add ecx, ecx 77982E57 mov eax, [eax+$20] Registers: ----------------------------- EAX: 00000000 EDI: 00000120 EBX: 00010000 ESI: 00000000 ECX: 00000025 ESP: 0012EBA4 EDX: 00000006 EIP: 77982E37 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EBA4: 00000120 0D9F1690: 3B 48 04 0F 83 4F 3A 00 00 8B 50 04 4A 3B CA 0F ;H...O:...P.J;.. 0012EBA8: 000000EA 0D9F16A0: 83 23 75 00 00 2B 48 14 83 78 08 00 74 02 03 C9 .#u..+H..x..t... 0012EBAC: 00000005 0D9F16B0: 8B 40 20 8D 34 88 85 F6 0F 84 63 2C 00 00 8B 46 .@ .4.....c,...F 0012EBB0: 00000000 0D9F16C0: 04 A8 01 0F 84 58 2C 00 00 8B 55 10 8D 48 FF C7 .....X,...U..H.. 0012EBB4: 00000000 0D9F16D0: 45 F0 02 00 00 00 E8 42 00 00 00 8B F8 85 FF 0F E......B........ 0012EBB8: 00000001 0D9F16E0: 84 3C 2C 00 00 F6 45 0C 08 0F 85 D2 BC 00 00 85 .<,...E......... 0012EBBC: 00000000 0D9F16F0: FF 0F 84 D5 AD 02 00 8B 75 F4 85 F6 0F 85 DE AE ........u....... 0012EBC0: 8779786A 0D9F1700: 02 00 80 3D 80 03 FE 7F 00 0F 85 1B AE 02 00 8B ...=............ 0012EBC4: 00000000 0D9F1710: C7 5F 5E 5B C9 C2 0C 00 90 90 90 90 90 6A 64 68 ._^[.........jdh 0012EBC8: 7697CDD0 0D9F1720: A0 1F 98 77 E8 3C FD FF FF 89 55 C4 8B F9 89 7D ...w.<....U....} 0012EBCC: 00360034 0D9F1730: D8 0F B6 47 02 8D 04 85 10 01 00 00 8B F7 2B F0 ...G..........+. 0012EBD0: 7797D7D8 0D9F1740: 89 75 D4 F6 47 03 01 0F 85 2F F1 FD FF 83 65 CC .u..G..../....e. 0012EBD4: 87797A6A 0D9F1750: 00 8B 45 CC 69 C0 18 34 00 00 8D 84 30 10 03 00 ..E.i..4....0... 0012EBD8: 7797D80E 0D9F1760: 00 89 45 BC 0F B6 4F 02 6B C9 68 8D 54 08 18 89 ..E...O.k.h.T... 0012EBDC: 0012EC84 0D9F1770: 55 E0 8B 02 89 45 D0 85 C0 0F 84 49 11 01 00 83 U....E.....I.... 0012EBE0: 758733E4 0D9F1780: 65 FC 00 8D 48 08 8B 39 89 7D AC 8B 59 04 89 5D e...H..9.}..Y..]