EurekaLog 6.1.01 RC 1 Application: ------------------------------------------------------- 1.1 Start Date : Fri, 15 Apr 2011 13:41:53 +0400 1.2 Name/Description: SASPlanet.exe 1.3 Version Number : 1.4 Parameters : 1.5 Compilation Date: Thu, 14 Apr 2011 18:16:10 +0400 1.6 Up Time : 3 seconds Exception: --------------------------------------------------------------------------------------------------------------- 2.1 Date : Fri, 15 Apr 2011 13:41:57 +0400 2.2 Address : 007ED4C1 2.3 Module Name : SASPlanet.exe 2.4 Module Version: 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 007ED4C1 in module 'SASPlanet.exe'. Read of address 00000000. 2.7 ID : C3B4 2.8 Count : 1 2.9 Status : New 2.10 Note : Computer: -------------------------------------------------------------------------------------- 5.3 Free Memory : 92 Mb 5.5 Free Disk : 1.57 Gb 5.6 System Up Time: 15 hours, 16 minutes, 53 seconds 5.7 Processor : Genuine Intel(R) CPU T2500 @ 2.00GHz 5.8 Display Mode : 1024 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : Mobile Intel(R) 945 Express Chipset Family (driver 6.14.10.4926) 5.11 Printer : HP Universal Printing PS (driver 6.0.6000.16386) Operating System: ------------------------------------ 6.1 Type : Microsoft Windows XP 6.2 Build # : 2600 6.3 Update : Service Pack 2 6.4 Language: Russian 6.5 Charset : 204 Network: --------------------------------------------------------------------- 7.1 IP Address: 000.000.000.000 - 000.000.000.000 - 135.244.195.213 7.2 Submask : 000.000.000.000 - 000.000.000.000 - 000.000.000.000 7.3 Gateway : 000.000.000.000 - 000.000.000.000 - 135.244.195.213 7.4 DNS 1 : 000.000.000.000 - 000.000.000.000 - 135.120.000.245 7.5 DNS 2 : 000.000.000.000 - 000.000.000.000 - 135.120.000.246 7.6 DHCP : ON - ON - ON Call Stack Information: ------------------------------------------------------------------------------------------------------------------ |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------ |*Exception Thread: ID=3912; Priority=0; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------| |007ED4C1|SASPlanet.exe|frm_Main.pas |TfrmMain |OnMainFormMainConfigChange|1446[15]| |007ED32C|SASPlanet.exe|frm_Main.pas |TfrmMain |OnMainFormMainConfigChange|1431[0] | |007EB49E|SASPlanet.exe|frm_Main.pas |TfrmMain |FormActivate |941[223]| |77D4B90E|USER32.dll | | |SendMessageW | | |77D5F3E9|USER32.dll | | |SendMessageA | | |77D5F3A5|USER32.dll | | |SendMessageA | | |77D4D564|USER32.dll | | |DefWindowProcA | | |77D4D4FE|USER32.dll | | |DefWindowProcA | | |77D4DA7A|USER32.dll | | |SetFocus | | |77D4DA70|USER32.dll | | |SetFocus | | |77D4B976|USER32.dll | | |IsWindow | | |77D4D8BE|USER32.dll | | |ShowWindow | | |77D4D8B4|USER32.dll | | |ShowWindow | | |7C9010ED|ntdll.dll | | |RtlLeaveCriticalSection | | |77D4CEA3|USER32.dll | | |MonitorFromWindow | | |77D4CEB6|USER32.dll | | |MonitorFromWindow | | |00801C43|SASPlanet.exe|SASPlanet.dpr | | |549[44] | |7C90E64C|ntdll.dll | | |NtSetInformationThread | | |----------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=2996; Priority=0; Class=TGarbageCollectorThread | |----------------------------------------------------------------------------------------------------------------| |7C90D85A|ntdll.dll | | |NtDelayExecution | | |7C80239C|kernel32.dll | | |SleepEx | | |7C80244C|kernel32.dll | | |Sleep | | |7C802442|kernel32.dll | | |Sleep | | |00623CB7|SASPlanet.exe|u_GarbageCollectorThread.pas|TGarbageCollectorThread |Execute |54[11] | |----------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3912; Priority=0; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------| |00623C22|SASPlanet.exe|u_GarbageCollectorThread.pas|TGarbageCollectorThread |Create |31[4] | |00623BB4|SASPlanet.exe|u_GarbageCollectorThread.pas|TGarbageCollectorThread |Create |27[0] | |007338E8|SASPlanet.exe|u_GlobalState.pas |TGlobalState |Create |284[44] | |007334D4|SASPlanet.exe|u_GlobalState.pas |TGlobalState |Create |240[0] | |00801995|SASPlanet.exe|SASPlanet.dpr | | |507[2] | |7C90E64C|ntdll.dll | | |NtSetInformationThread | | |----------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=2176; Priority=0; Class=TThread4InterfacedThread | |----------------------------------------------------------------------------------------------------------------| |7C90E9A9|ntdll.dll | | |ZwWaitForMultipleObjects | | |7C90E21D|ntdll.dll | | |ZwQueryVirtualMemory | | |7C80952A|kernel32.dll | | |WaitForMultipleObjectsEx | | |7C80A070|kernel32.dll | | |WaitForMultipleObjects | | |7C80A05D|kernel32.dll | | |WaitForMultipleObjects | | |007AEAEE|SASPlanet.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |65[5] | |007AE869|SASPlanet.exe|u_InterfacedThread.pas |TThread4InterfacedThread|Execute |130[2] | |----------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3912; Priority=0; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------| |007AE8A3|SASPlanet.exe|u_InterfacedThread.pas |TThread4InterfacedThread|Start |137[3] | |007AE870|SASPlanet.exe|u_InterfacedThread.pas |TThread4InterfacedThread|Start |134[0] | |007AE764|SASPlanet.exe|u_InterfacedThread.pas |TInterfacedThread |Start |83[4] | |00798EA2|SASPlanet.exe|u_MapLayerWithThreadDraw.pas|TMapLayerWithThreadDraw |StartThreads |140[2] | |00798E90|SASPlanet.exe|u_MapLayerWithThreadDraw.pas|TMapLayerWithThreadDraw |StartThreads |138[0] | |007AF8E4|SASPlanet.exe|u_MapLayerFillingMap.pas |TMapLayerFillingMap |StartThreads |241[1] | |007AB879|SASPlanet.exe|u_WindowLayerBasicList.pas |TWindowLayerBasicList |StartThreads |78[2] | |007AB858|SASPlanet.exe|u_WindowLayerBasicList.pas |TWindowLayerBasicList |StartThreads |76[0] | |007EB47A|SASPlanet.exe|frm_Main.pas |TfrmMain |FormActivate |938[220]| |77D4B90E|USER32.dll | | |SendMessageW | | |77D5F3E9|USER32.dll | | |SendMessageA | | |77D5F3A5|USER32.dll | | |SendMessageA | | |77D4D564|USER32.dll | | |DefWindowProcA | | |77D4D4FE|USER32.dll | | |DefWindowProcA | | |77D4DA7A|USER32.dll | | |SetFocus | | |77D4DA70|USER32.dll | | |SetFocus | | |77D4B976|USER32.dll | | |IsWindow | | |77D4D8BE|USER32.dll | | |ShowWindow | | |77D4D8B4|USER32.dll | | |ShowWindow | | |7C9010ED|ntdll.dll | | |RtlLeaveCriticalSection | | |77D4CEA3|USER32.dll | | |MonitorFromWindow | | |77D4CEB6|USER32.dll | | |MonitorFromWindow | | |00801C43|SASPlanet.exe|SASPlanet.dpr | | |549[44] | |7C90E64C|ntdll.dll | | |NtSetInformationThread | | |----------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=1920; Priority=-1; Class=TTileDownloaderUI | |----------------------------------------------------------------------------------------------------------------| |7C90D85A|ntdll.dll | | |NtDelayExecution | | |7C80239C|kernel32.dll | | |SleepEx | | |7C80244C|kernel32.dll | | |Sleep | | |7C802442|kernel32.dll | | |Sleep | | |00797C40|SASPlanet.exe|u_TileDownloaderUI.pas |TTileDownloaderUI |Execute |254[8] | |----------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3912; Priority=0; Class=; [Main] | |----------------------------------------------------------------------------------------------------------------| |00797B49|SASPlanet.exe|u_TileDownloaderUI.pas |TTileDownloaderUI |StartThreads |202[4] | |00797B30|SASPlanet.exe|u_TileDownloaderUI.pas |TTileDownloaderUI |StartThreads |198[0] | |007EB494|SASPlanet.exe|frm_Main.pas |TfrmMain |FormActivate |940[222]| |77D4B90E|USER32.dll | | |SendMessageW | | |77D5F3E9|USER32.dll | | |SendMessageA | | |77D5F3A5|USER32.dll | | |SendMessageA | | |77D4D564|USER32.dll | | |DefWindowProcA | | |77D4D4FE|USER32.dll | | |DefWindowProcA | | |77D4DA7A|USER32.dll | | |SetFocus | | |77D4DA70|USER32.dll | | |SetFocus | | |77D4B976|USER32.dll | | |IsWindow | | |77D4D8BE|USER32.dll | | |ShowWindow | | |77D4D8B4|USER32.dll | | |ShowWindow | | |7C9010ED|ntdll.dll | | |RtlLeaveCriticalSection | | |77D4CEA3|USER32.dll | | |MonitorFromWindow | | |77D4CEB6|USER32.dll | | |MonitorFromWindow | | |00801C43|SASPlanet.exe|SASPlanet.dpr | | |549[44] | |7C90E64C|ntdll.dll | | |NtSetInformationThread | | ------------------------------------------------------------------------------------------------------------------ Modules Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00400000|SASPlanet.exe| | |5312512|2011-04-14 17:16:12|D:\tmp\SASPlanet | |01A80000|xpsp3res.dll |Service Pack 3 Messages |5.1.2600.2921 |90624 |2006-07-20 00:17:04|C:\WINDOWS\system32 | |053C0000|YaTraf.dll | | |17408 |2011-04-12 17:54:20|D:\tmp\SASPlanet\maps | |06180000|shdoclc.dll |Shell Doc Object and Control Library |6.0.2900.2180 |549376 |2004-08-04 02:56:28|C:\WINDOWS\system32 | |08000000|pshook.dll |Punto Switcher hook module |3.1.1.72 |21800 |2009-12-24 15:47:52|C:\Program Files\Yandex\Punto Switcher | |10000000|btmmhook.dll |Multimedia Keys Hook DLL |5.5.0.4300 |73728 |2008-08-18 19:44:04|C:\WINDOWS\system32 | |20000000|xpsp2res.dll |Service Pack 2 Messages |5.1.2600.2180 |2897920|2004-08-04 02:56:38|C:\WINDOWS\system32 | |3AA00000|LvHook.dll |Lingvo Hook DLL |12.0.0.356 |258048 |2006-12-14 01:08:22|C:\Program Files\ABBYY Lingvo 12 | |5AD70000|uxtheme.dll |Microsoft UxTheme Library |6.0.2900.2845 |218624 |2006-07-20 00:16:54|C:\WINDOWS\system32 | |5B860000|NETAPI32.dll |Net Win32 API DLL |5.1.2600.3462 |339456 |2008-10-15 20:53:28|C:\WINDOWS\system32 | |5EDD0000|olepro32.dll | |5.1.2600.2180 |83456 |2004-08-04 02:56:46|C:\WINDOWS\system32 | |71A50000|mswsock.dll |Microsoft Windows Sockets 2.0 Service Provider |5.1.2600.2180 |245248 |2004-08-04 02:56:46|C:\WINDOWS\system32 | |71AA0000|WS2HELP.dll |Windows Socket 2.0 Helper for Windows NT |5.1.2600.2180 |19968 |2004-08-04 02:56:48|C:\WINDOWS\system32 | |71AB0000|WS2_32.dll |Windows Socket 2.0 32-Bit DLL |5.1.2600.2180 |82944 |2004-08-04 02:56:48|C:\WINDOWS\system32 | |71AD0000|wsock32.dll |Windows Socket 32-Bit DLL |5.1.2600.2180 |22528 |2004-08-04 02:56:48|C:\WINDOWS\system32 | |746C0000|msls31.dll |Microsoft Line Services library file |3.10.349.0 |146432 |2001-08-23 16:00:00|C:\WINDOWS\system32 | |74720000|MSCTF.dll |MSCTF Server DLL |5.1.2600.3319 |297984 |2008-02-26 15:48:44|C:\WINDOWS\system32 | |754D0000|CRYPTUI.dll |Microsoft Trust UI Provider |5.131.2600.2180 |512512 |2004-08-04 02:56:42|C:\WINDOWS\system32 | |755C0000|msctfime.ime |Microsoft Text Frame Work Service IME |5.1.2600.2180 |177152 |2004-08-04 02:56:14|C:\WINDOWS\system32 | |75CF0000|mlang.dll |Multi Language Support DLL |6.0.2900.2530 |586240 |2006-07-20 00:16:10|C:\WINDOWS\system32 | |75E90000|SXS.DLL |Fusion 2.5 |5.1.2600.2906 |713216 |2006-07-20 00:16:50|C:\WINDOWS\system32 | |76380000|msimg32.dll |GDIEXT Client DLL |5.1.2600.2180 |4608 |2004-08-04 02:56:44|C:\WINDOWS\system32 | |76390000|imm32.dll |Windows XP IMM32 API Client DLL |5.1.2600.2180 |110080 |2004-08-04 02:56:44|C:\WINDOWS\system32 | |763B0000|comdlg32.dll |Common Dialogs DLL |6.0.2900.2180 |276992 |2004-08-04 02:56:42|C:\WINDOWS\system32 | |76B40000|winmm.dll |MCI API DLL |5.1.2600.2180 |176128 |2004-08-04 02:56:48|C:\WINDOWS\system32 | |76BF0000|PSAPI.DLL |Process Status Helper |5.1.2600.2180 |23040 |2004-08-04 02:56:46|C:\WINDOWS\system32 | |76C30000|WINTRUST.dll |Microsoft Trust Verification APIs |5.131.2600.2180 |176640 |2004-08-04 02:56:48|C:\WINDOWS\system32 | |76C90000|imagehlp.dll |Windows NT Image Helper |5.1.2600.2180 |144384 |2004-08-04 02:56:44|C:\WINDOWS\system32 | |76F60000|WLDAP32.dll |Win32 LDAP API DLL |5.1.2600.2180 |172032 |2004-08-04 02:56:48|C:\WINDOWS\system32 | |76FD0000|CLBCATQ.DLL | |2001.12.4414.310|498688 |2006-07-20 00:15:42|C:\WINDOWS\system32 | |77050000|COMRes.dll | |2001.12.4414.258|792064 |2004-08-04 02:56:42|C:\WINDOWS\system32 | |77120000|oleaut32.dll | |5.1.2600.2180 |553472 |2004-08-04 02:56:46|C:\WINDOWS\system32 | |771B0000|wininet.dll |Internet Extensions for Win32 |6.0.2900.2904 |663552 |2006-07-20 00:17:00|C:\WINDOWS\system32 | |77260000|URLMON.DLL |OLE32 Extensions for Win32 |6.0.2900.2904 |615424 |2006-07-20 00:16:54|C:\WINDOWS\system32 | |773D0000|comctl32.dll |User Experience Controls Library |6.0.2900.2649 |1053696|2006-07-20 00:17:04|C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2649_x-ww_aac16c8b| |774E0000|ole32.dll |Microsoft OLE for Windows |5.1.2600.2846 |1286144|2006-07-20 00:16:36|C:\WINDOWS\system32 | |77760000|shdocvw.dll |Shell Doc Object and Control Library |6.0.2900.2919 |1496576|2006-07-20 00:16:42|C:\WINDOWS\system32 | |77A80000|CRYPT32.dll |Crypto API32 |5.131.2600.2180 |597504 |2004-08-04 02:56:42|C:\WINDOWS\system32 | |77B20000|MSASN1.dll |ASN.1 Runtime APIs |5.1.2600.2180 |57344 |2004-08-04 02:56:44|C:\WINDOWS\system32 | |77C00000|version.dll |Version Checking and File Installation Libraries|5.1.2600.2180 |18944 |2004-08-04 02:56:48|C:\WINDOWS\system32 | |77C10000|msvcrt.dll |Windows NT CRT DLL |7.0.2600.2180 |343040 |2004-08-04 02:56:44|C:\WINDOWS\system32 | |77D40000|USER32.dll |Windows XP USER API Client DLL |5.1.2600.2622 |577024 |2006-07-20 00:16:54|C:\WINDOWS\system32 | |77DD0000|ADVAPI32.dll |Advanced Windows 32 Base API |5.1.2600.2180 |616960 |2004-08-04 02:56:42|C:\WINDOWS\system32 | |77E70000|RPCRT4.dll |Remote Procedure Call Runtime |5.1.2600.2810 |582144 |2006-07-20 00:16:40|C:\WINDOWS\system32 | |77F10000|GDI32.dll |GDI Client DLL |5.1.2600.2818 |280064 |2006-07-20 00:16:00|C:\WINDOWS\system32 | |77F60000|SHLWAPI.dll |Shell Light-weight Utility Library |6.0.2900.2904 |474112 |2006-07-20 00:16:48|C:\WINDOWS\system32 | |77FE0000|Secur32.dll |Security Support Provider Interface |5.1.2600.2180 |55808 |2004-08-04 02:56:46|C:\WINDOWS\system32 | |7C800000|kernel32.dll |Windows NT BASE API Client DLL |5.1.2600.2906 |984576 |2006-07-20 00:16:06|C:\WINDOWS\system32 | |7C900000|ntdll.dll |NT Layer DLL |5.1.2600.2180 |708096 |2004-08-04 02:56:38|C:\WINDOWS\system32 | |7C9C0000|shell32.dll |Windows Shell Common Dll |6.0.2900.2869 |8454656|2006-07-20 00:16:48|C:\WINDOWS\system32 | |7DC30000|mshtml.dll |Microsoft (R) HTML Viewer |6.0.2900.2912 |3055104|2006-07-20 00:16:22|C:\WINDOWS\system32 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory |Priority|Threads|Path | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |4 |System | | |245760 |Normal |81 | | |388 |thunderbird.exe |Thunderbird |1.9.2.3993 |64974848 |Normal |19 |C:\Program Files\Mozilla Thunderbird | |400 |ApchT2kW.exe | | |2736128 |Normal |3 |C:\PROGRA~1\COSIDS\APACHE~1\APACHE | |468 |hasplms.exe |Aladdin HASP License Manager Service |12.44.1.8199 |14225408 |Normal |7 |C:\WINDOWS\system32 | |472 |ApchT2kW.exe | | |3518464 |Normal |51 |C:\PROGRA~1\COSIDS\APACHE~1\APACHE | |488 |PWMDBSVC.EXE |PWMDBSVC Module |1.0.0.1 |3473408 |Normal |3 |C:\Program Files\ThinkPad\Utilities | |604 |spoolsv.exe |Spooler SubSystem App |5.1.2600.2696|9261056 |Normal |17 |C:\WINDOWS\system32 | |744 |ACService.exe |ArcSoft Connect Service |1.1.0.47 |2330624 |Normal |2 |C:\Program Files\Common Files\ArcSoft\Connection Service\Bin| |760 |AcPrfMgrSvc.exe |Access Connections Profile Manager Service |5.0.2.0 |5492736 |Normal |8 |C:\Program Files\ThinkPad\ConnectUtilities | |856 |TbMux32.exe |TransBase/CD DataBase System |5.2.2.23 |2146304 |Normal |2 |C:\PROGRA~1\COSIDS\BIN | |896 |EvtEng.exe |Intel(R) PROSet/Wireless Event Log |11.5.0.2 |13737984 |Normal |10 |C:\Program Files\Intel\Wireless\Bin | |924 |jqs.exe |Java(TM) Quick Starter Service |6.0.200.2 |1835008 |Low |5 |C:\Program Files\Java\jre6\bin | |1104|java.exe |Java(TM) 2 Platform Standard Edition binary |5.0.110.3 |12304384 |Normal |12 |C:\PROGRA~1\COSIDS\JRE\bin | |1108|LucentIKESvc.exe | | |1011712 |Normal |2 |C:\Program Files\IPSec Client | |1152|LucentIKE.exe |LucentIKE MFC Application |7.1.2.0 |10366976 |Normal |3 |C:\Program Files\IPSec Client | |1176|smss.exe | | |434176 |Normal |3 |\SystemRoot\System32 | |1240|RichVideo.exe |RichVideo Module |2.0.0.425 |2883584 |Normal |4 |C:\Program Files\CyberLink\Shared files | |1268|RegSrvc.exe |Intel(R) PROSet/Wireless Registry Service |11.5.0.2 |3133440 |Normal |3 |C:\Program Files\Intel\Wireless\Bin | |1364|winlogon.exe | | |696320 |High |22 |C:\WINDOWS\system32 | |1408|services.exe |Services and Controller app |5.1.2600.2180|3657728 |Normal |15 |C:\WINDOWS\system32 | |1420|lsass.exe |LSA Shell (Export Version) |5.1.2600.2180|2768896 |Normal |25 |C:\WINDOWS\system32 | |1560|ibmpmsvc.exe |ThinkPad Power Management Service |1.50.0.0 |1363968 |Normal |6 |C:\WINDOWS\system32 | |1592|svchost.exe |Generic Host Process for Win32 Services |5.1.2600.2180|5410816 |Normal |19 |C:\WINDOWS\system32 | |1736|svchost.exe |Generic Host Process for Win32 Services |5.1.2600.2180|26218496 |Normal |81 |C:\WINDOWS\System32 | |1780|svchost.exe |Generic Host Process for Win32 Services |5.1.2600.2180|4296704 |Normal |5 |C:\WINDOWS\system32 | |1796|WgaTray.exe |Windows Genuine Advantage Notification |1.5.540.0 |204800 |Normal |2 |C:\WINDOWS\system32 | |1872|AcSvc.exe |Access Connections Main Service |5.0.2.0 |22884352 |Normal |26 |C:\Program Files\ThinkPad\ConnectUtilities | |1912|Explorer.EXE |Windows Explorer |6.0.2900.2649|28323840 |Normal |14 |C:\WINDOWS | |1956|Wacom_Tablet.exe |Tablet Service for professional driver |6.1.2.3 |3735552 |Normal |3 |C:\WINDOWS\system32 | |1964|lucentipsecclient.exe|clientgui MFC Application |7.1.2.0 |4337664 |Normal |4 |C:\Program Files\IPSec Client | |1968|S24EvMon.exe |Wireless Management Service |11.5.0.2 |12222464 |Normal |10 |C:\Program Files\Intel\Wireless\Bin | |2068|SvcGuiHlpr.exe |Access Connections SvcGuiHlpr Application |5.0.2.0 |5480448 |Normal |2 |C:\Program Files\ThinkPad\ConnectUtilities | |2284|WISPTIS.EXE |Microsoft Tablet PC Platform Component |1.0.2201.0 |7729152 |High |5 |C:\WINDOWS\system32 | |2400|btwdins.exe |Bluetooth Support Server |5.5.0.4300 |3416064 |Normal |5 |C:\Program Files\ThinkPad\Bluetooth Software\bin | |2560|taskmgr.exe |Windows TaskManager |5.1.2600.2180|2170880 |High |3 |C:\WINDOWS\system32 | |2572|SASPlanet.exe | | |69029888 |Normal |7 |D:\tmp\SASPlanet | |2808|Dot1XCfg.exe |Intel 802.1x Server |11.5.0.2 |19177472 |Normal |15 |C:\Program Files\Intel\Wireless\Bin | |2832|firefox.exe |Firefox |2.0.0.4094 |212299776|Normal |33 |C:\Program Files\Mozilla Firefox | |3032|igfxtray.exe |igfxTray Module |6.14.10.4926 |4030464 |Normal |2 |C:\WINDOWS\system32 | |3048|hkcmd.exe |hkcmd Module |6.14.10.4926 |4026368 |Normal |2 |C:\WINDOWS\system32 | |3108|igfxpers.exe |persistence Module |6.14.10.4926 |3481600 |Normal |5 |C:\WINDOWS\system32 | |3120|infium.exe |QIP Infium |9.0.3.0 |8364032 |Normal |24 |C:\Program Files\QIP Infium | |3140|TOTALCMD.EXE |Total Commander 32 bit international version, file manager replacement for Windows|7.0.3.0 |6950912 |Normal |4 |C:\ut\totalcmd | |3156|igfxsrvc.exe |igfxsrvc Module |6.14.10.4926 |4509696 |Normal |5 |C:\WINDOWS\system32 | |3176|smax4pnp.exe |SMax4PNP |6.0.0.20 |4698112 |Normal |3 |C:\Program Files\Analog Devices\Core | |3204|wscntfy.exe |Windows Security Center Notification App |5.1.2600.2180|2797568 |Normal |1 |C:\WINDOWS\system32 | |3452|plugin-container.exe |Plugin Container for Firefox |2.0.0.4094 |150183936|Normal |6 |C:\Program Files\Mozilla Firefox | |3476|TPOSDSVC.exe |On screen display message generator for ThinkPad |1.0.4.0 |4632576 |Normal |2 |C:\Program Files\Lenovo\HOTKEY | |3528|EzEjMnAp.Exe |ThinkPad EasyEject Support Application |2.3.2.0 |3538944 |Normal |1 |C:\PROGRA~1\ThinkPad\UTILIT~1 | |3544|rundll32.exe |Run a DLL as an App |5.1.2600.2180|6717440 |Normal |6 |C:\WINDOWS\system32 | |3560|TPONSCR.exe |On screen display drawer |5.0.1.0 |2904064 |Normal |1 |C:\Program Files\Lenovo\HOTKEY | |3632|TpScrex.exe |ThinkPad UltraZoom |2.0.2.0 |3321856 |Normal |1 |C:\Program Files\Lenovo\Zoom | |3652|EZEJTRAY.EXE |ThinkPad EasyEject Tray Utility |2.3.2.0 |3096576 |Normal |1 |C:\PROGRA~1\ThinkPad\UTILIT~1 | |3696|ACTray.exe |Access Connections Tray Application |5.0.2.0 |4972544 |Normal |3 |C:\Program Files\ThinkPad\ConnectUtilities | |3716|Lvagent.exe |Lingvo Launcher |12.0.0.356 |2850816 |Normal |1 |C:\Program Files\ABBYY Lingvo 12 | |3752|LPMGR.exe |ThinkVantage Productivity Center Manager |3.0.0.0 |6434816 |Normal |4 |C:\PROGRA~1\THINKV~1\PrdCtr | |3768|DTProAgent.exe |DAEMON Tools Pro Tray Application |4.10.218.0 |8163328 |Normal |6 |C:\Program Files\DAEMON Tools Pro | |3816|ctfmon.exe |CTF Loader |5.1.2600.2180|4726784 |Normal |1 |C:\WINDOWS\system32 | |3832|BTTray.exe |Bluetooth Tray Application |5.5.0.4300 |7614464 |Normal |11 |C:\Program Files\ThinkPad\Bluetooth Software | |3884|FSViewer.exe | | |4714496 |Normal |4 |C:\Program Files\FastStone Image Viewer | |3924|trayicon.exe |TrayIcon MFC Application |7.1.2.0 |4194304 |Normal |2 |C:\Program Files\IPSec Client | |3932|FSCapture.exe |FastStone Capture |6.0.0.0 |737280 |Normal |3 |C:\Program Files\FastStone Capture | |3952|punto.exe |Punto Switcher |3.1.1.72 |8822784 |Normal |4 |C:\Program Files\Yandex\Punto Switcher | |3980|webshots.scr |Webshots Photo Manager |2.2.0.4644 |5406720 |Normal |1 |C:\PROGRA~1\Webshots | |4052|BTSTAC~1.EXE |Bluetooth Stack COM Server |5.5.0.4300 |9842688 |Normal |18 |C:\PROGRA~1\ThinkPad\BLUETO~1 | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ------------------------------------------------------------------------------------------- ; frm_Main.TfrmMain.OnMainFormMainConfigChange (Line=1445 - Offset=14) ; -------------------------------------------------------------------- 007ED4A3 jz frm_Main.TfrmMain.OnMainFormMainConfigChange (Line=1448) ; ; Line=1446 - Offset=15 ; --------------------- 007ED4A5 lea edx, [ebp-$38] 007ED4A8 mov eax, [ebx+$06F4] 007ED4AE mov ecx, [eax] 007ED4B0 call dword ptr [ecx+$48] 007ED4B3 mov eax, [ebp-$38] 007ED4B6 lea edx, [ebp-$34] 007ED4B9 mov ecx, [eax] 007ED4BB call dword ptr [ecx+$4C] 007ED4BE mov eax, [ebp-$34] 007ED4C1 mov edx, [eax] ; <-- EXCEPTION 007ED4C3 call dword ptr [edx+$0C] 007ED4C6 mov edx, [eax+$14] 007ED4C9 mov eax, [ebx+$0400] 007ED4CF call TB2Item.TTBCustomItem.SetCaption 007ED4D4 jmp frm_Main.TfrmMain.OnMainFormMainConfigChange (Line=1451) ; ; Line=1448 - Offset=17 ; --------------------- 007ED4D6 xor edx, edx 007ED4D8 mov eax, [ebx+$0400] 007ED4DE call TB2Item.TTBCustomItem.SetCaption ; ; Line=1451 - Offset=20 ; --------------------- 007ED4E3 lea edx, [ebp-$3C] 007ED4E6 mov eax, [ebx+$06F4] Registers: ----------------------------- EAX: 00000000 EDI: 0012F4AC EBX: 0101CB70 ESI: 005E70D4 ECX: 051BEAA0 ESP: 0012EFA8 EDX: 05495400 EIP: 007ED4C1 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EFA8: 0012F018 007ED4C1: 8B 10 FF 52 0C 8B 50 14 8B 83 00 04 00 00 E8 CC ...R..P......... 0012EFAC: 004054DC 007ED4D1: 90 DA FF EB 0D 33 D2 8B 83 00 04 00 00 E8 BD 90 .....3.......... 0012EFB0: 0012F010 007ED4E1: DA FF 8D 55 C4 8B 83 F4 06 00 00 8B 08 FF 51 30 ...U..........Q0 0012EFB4: 0012F4AC 007ED4F1: 8B 45 C4 8B 10 FF 52 48 8B D0 8B 83 80 04 00 00 .E....RH........ 0012EFB8: 005E70D4 007ED501: E8 FE 90 DA FF 8D 55 C0 8B 83 F4 06 00 00 8B 08 ......U......... 0012EFBC: 005660D0 007ED511: FF 51 44 8B 45 C0 8D 55 E8 8B 08 FF 51 34 8B 83 .QD.E..U....Q4.. 0012EFC0: 00000000 007ED521: A4 05 00 00 E8 6E 7B DA FF 8B F8 4F 85 FF 7C 62 .....n{....O..|b 0012EFC4: 00000000 007ED531: 47 C7 45 F8 00 00 00 00 8B 55 F8 8B 83 A4 05 00 G.E......U...... 0012EFC8: 00000000 007ED541: 00 E8 61 7B DA FF 8B F0 8D 45 FC 8B 56 0C E8 A4 ..a{.....E..V... 0012EFCC: 00000000 007ED551: AA C1 FF 83 7D FC 00 74 33 8D 55 B0 8B 45 FC 8B ....}..t3.U..E.. 0012EFD0: 00000000 007ED561: 08 FF 51 0C 8D 45 B0 50 8D 45 E8 50 E8 DE 9C C2 ..Q..E.P.E.P.... 0012EFD4: 00000000 007ED571: FF 84 C0 74 17 B2 01 8B C6 E8 85 90 DA FF 8B 56 ...t...........V 0012EFD8: 00000000 007ED581: 38 8B 83 A4 05 00 00 E8 13 90 DA FF FF 45 F8 4F 8............E.O 0012EFDC: 00000000 007ED591: 75 A6 33 C0 5A 59 59 64 89 10 68 03 D6 7E 00 8D u.3.ZYYd..h..~.. 0012EFE0: 00000000 007ED5A1: 45 C0 E8 38 AA C1 FF 8D 45 C4 E8 30 AA C1 FF 8D E..8....E..0.... 0012EFE4: 00000000 007ED5B1: 45 C8 E8 28 AA C1 FF 8D 45 CC E8 20 AA C1 FF 8D E..(....E.. ....