Microsoft (R) DrWtsn32 Copyright (C) 1985-2001 Microsoft Corp. All rights reserved. Application exception occurred: App: C:\Program Files\Call of Duty\CoDUOMP.exe (pid=988) When: 9/9/2005 @ 22:39:37.218 Exception number: c0000005 (access violation) *----> System Information <----* Computer Name: MEKFX55 User Name: Mek Terminal Session Id: 0 Number of Processors: 1 Processor Type: x86 Family 15 Model 7 Stepping 10 Windows Version: 5.1 Current Build: 2600 Service Pack: 2 Current Type: Uniprocessor Free Registered Organization: Home Registered Owner: Mekanic *----> Task List <----* 0 System Process 4 System 564 smss.exe 620 csrss.exe 644 winlogon.exe 688 services.exe 708 lsass.exe 860 svchost.exe 920 svchost.exe 1016 svchost.exe 1072 svchost.exe 1180 svchost.exe 1428 spoolsv.exe 1592 Explorer.EXE 1712 RunDll32.exe 1876 SetPoint.exe 1956 KHALMNPR.EXE 232 DKService.exe 260 nvsvc32.exe 328 wdfmgr.exe 428 Icq.exe 340 Ventrilo.exe 988 CoDUOMP.exe 124 drwtsn32.exe *----> Module List <----* (0000000000400000 - 0000000004e3f000: C:\Program Files\Call of Duty\CoDUOMP.exe (00000000079c0000 - 00000000079ec000: C:\Program Files\Call of Duty\miles\mssmp3.asi (0000000007a00000 - 0000000007a39000: C:\Program Files\Call of Duty\miles\mssvoice.asi (0000000007a50000 - 0000000007a72000: C:\Program Files\Call of Duty\miles\mssa3d.m3d (0000000007a90000 - 0000000007aab000: C:\Program Files\Call of Duty\miles\mssds3d.m3d (0000000007ac0000 - 0000000007adf000: C:\Program Files\Call of Duty\miles\mssdx7.m3d (0000000007af0000 - 0000000007b1b000: C:\Program Files\Call of Duty\miles\msseax.m3d (0000000007c30000 - 0000000007c98000: C:\Program Files\Call of Duty\miles\mssrsx.m3d (0000000007cb0000 - 0000000007cc9000: C:\Program Files\Call of Duty\miles\msssoft.m3d (0000000007ce0000 - 0000000007d01000: C:\Program Files\Call of Duty\miles\mssdsp.flt (000000000a620000 - 000000000a6b3000: C:\Program Files\Call of Duty\pb\pbcl.dll (000000000a770000 - 000000000ad73000: C:\Program Files\Call of Duty\uo\uo_cgame_mp_x86.dll (000000000b520000 - 000000000b535000: C:\Program Files\Call of Duty\pb\pbag.dll (000000000b550000 - 000000000b600000: C:\Program Files\Call of Duty\pb\pbsv.dll (0000000010000000 - 000000001000d000: C:\Program Files\Logitech\SetPoint\GameHook.dll (0000000010100000 - 000000001010e000: C:\Program Files\Logitech\SetPoint\lgscroll.dll (0000000021100000 - 0000000021164000: C:\Program Files\Call of Duty\mss32.dll (0000000040000000 - 0000000040241000: C:\Program Files\Call of Duty\uo\uo_ui_mp_x86.dll (000000005ad70000 - 000000005ada8000: C:\WINDOWS\system32\uxtheme.dll (000000005d090000 - 000000005d127000: C:\WINDOWS\system32\comctl32.dll (000000005ed00000 - 000000005edcc000: C:\WINDOWS\system32\opengl32.dll (00000000662b0000 - 0000000066308000: C:\WINDOWS\system32\hnetcfg.dll (0000000068b20000 - 0000000068b40000: C:\WINDOWS\system32\GLU32.dll (0000000069500000 - 00000000699f3000: C:\WINDOWS\system32\nvoglnt.dll (0000000071a50000 - 0000000071a8f000: C:\WINDOWS\system32\mswsock.dll (0000000071a90000 - 0000000071a98000: C:\WINDOWS\System32\wshtcpip.dll (0000000071aa0000 - 0000000071aa8000: C:\WINDOWS\system32\WS2HELP.dll (0000000071ab0000 - 0000000071ac7000: C:\WINDOWS\system32\WS2_32.dll (0000000071ad0000 - 0000000071ad9000: C:\WINDOWS\system32\WSOCK32.dll (0000000072d10000 - 0000000072d18000: C:\WINDOWS\system32\msacm32.drv (0000000072d20000 - 0000000072d29000: C:\WINDOWS\system32\wdmaud.drv (0000000073760000 - 00000000737a9000: C:\WINDOWS\system32\DDRAW.dll (0000000073bc0000 - 0000000073bc6000: C:\WINDOWS\system32\DCIMAN32.dll (0000000073ee0000 - 0000000073ee4000: C:\WINDOWS\system32\KsUser.dll (0000000073f10000 - 0000000073f6c000: C:\WINDOWS\system32\DSOUND.DLL (0000000076b40000 - 0000000076b6d000: C:\WINDOWS\system32\WINMM.dll (0000000076bf0000 - 0000000076bfb000: C:\WINDOWS\system32\psapi.dll (0000000076c30000 - 0000000076c5e000: C:\WINDOWS\system32\WINTRUST.dll (0000000076c90000 - 0000000076cb8000: C:\WINDOWS\system32\IMAGEHLP.dll (0000000076d60000 - 0000000076d79000: C:\WINDOWS\system32\Iphlpapi.dll (0000000076f20000 - 0000000076f47000: C:\WINDOWS\system32\DNSAPI.dll (0000000076f60000 - 0000000076f8c000: C:\WINDOWS\system32\WLDAP32.dll (0000000076fb0000 - 0000000076fb8000: C:\WINDOWS\System32\winrnr.dll (0000000076fc0000 - 0000000076fc6000: C:\WINDOWS\system32\rasadhlp.dll (00000000773d0000 - 00000000774d2000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll (00000000774e0000 - 000000007761d000: C:\WINDOWS\system32\ole32.dll (0000000077a80000 - 0000000077b14000: C:\WINDOWS\system32\CRYPT32.dll (0000000077b20000 - 0000000077b32000: C:\WINDOWS\system32\MSASN1.dll (0000000077b40000 - 0000000077b62000: C:\WINDOWS\system32\Apphelp.dll (0000000077bd0000 - 0000000077bd7000: C:\WINDOWS\system32\midimap.dll (0000000077be0000 - 0000000077bf5000: C:\WINDOWS\system32\MSACM32.dll (0000000077c00000 - 0000000077c08000: C:\WINDOWS\system32\VERSION.dll (0000000077c10000 - 0000000077c68000: C:\WINDOWS\system32\msvcrt.dll (0000000077d40000 - 0000000077dd0000: C:\WINDOWS\system32\USER32.dll (0000000077dd0000 - 0000000077e6b000: C:\WINDOWS\system32\ADVAPI32.dll (0000000077e70000 - 0000000077f01000: C:\WINDOWS\system32\RPCRT4.dll (0000000077f10000 - 0000000077f56000: C:\WINDOWS\system32\GDI32.dll (0000000077f60000 - 0000000077fd6000: C:\WINDOWS\system32\SHLWAPI.dll (0000000077fe0000 - 0000000077ff1000: C:\WINDOWS\system32\Secur32.dll (000000007c340000 - 000000007c396000: C:\WINDOWS\system32\MSVCR71.dll (000000007c3a0000 - 000000007c41b000: C:\WINDOWS\system32\MSVCP71.dll (000000007c800000 - 000000007c8f4000: C:\WINDOWS\system32\kernel32.dll (000000007c900000 - 000000007c9b0000: C:\WINDOWS\system32\ntdll.dll (000000007c9c0000 - 000000007d1d4000: C:\WINDOWS\system32\SHELL32.dll *----> State Dump for Thread Id 0x3e8 <----* eax=05d50848 ebx=00000000 ecx=44455243 edx=009f5bf5 esi=05d8b5b8 edi=06296fd8 eip=005401a8 esp=05637ae0 ebp=05637b44 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00200246 *** WARNING: Unable to verify checksum for C:\Program Files\Call of Duty\CoDUOMP.exe *** ERROR: Module load completed but symbols could not be loaded for C:\Program Files\Call of Duty\CoDUOMP.exe function: CoDUOMP 0054018c cc int 3 0054018d cc int 3 0054018e cc int 3 0054018f cc int 3 00540190 8b442408 mov eax,[esp+0x8] 00540194 8b4c2404 mov ecx,[esp+0x4] 00540198 39481c cmp [eax+0x1c],ecx 0054019b 751b jnz CoDUOMP+0x1401b8 (005401b8) 0054019d 8b4804 mov ecx,[eax+0x4] 005401a0 c744240c40000600 mov dword ptr [esp+0xc],0x60040 FAULT ->005401a8 8b510c mov edx,[ecx+0xc] ds:0023:4445524f=???????? 005401ab 89542408 mov [esp+0x8],edx 005401af 8b00 mov eax,[eax] 005401b1 89442404 mov [esp+0x4],eax 005401b5 ff6108 jmp dword ptr [ecx+0x8] 005401b8 394820 cmp [eax+0x20],ecx 005401bb 751b jnz CoDUOMP+0x1401d8 (005401d8) 005401bd 8b4808 mov ecx,[eax+0x8] 005401c0 c744240c40000600 mov dword ptr [esp+0xc],0x60040 005401c8 8b510c mov edx,[ecx+0xc] 005401cb 89542408 mov [esp+0x8],edx *----> Stack Back Trace <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\USER32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 05637b44 77d48816 00540680 0007039e 00000113 CoDUOMP+0x1401a8 05637bac 77d489cd 00000000 00540680 0007039e USER32!GetDC+0x14f 05637c0c 77d496c7 05637c50 00000001 77d51042 USER32!GetWindowLongW+0x127 05637c1c 0046bc43 05637c50 0563fd40 0563fd78 USER32!DispatchMessageA+0xf 77d51042 10558bec 56144d8b f10bf28b fe0000b8 CoDUOMP+0x6bc43 8b55ff8b 00000000 00000000 00000000 00000000 0x10558bec *----> Raw Stack Dump <----* 0000000005637ae0 f1 fe 55 00 b8 b5 d8 05 - 48 08 d5 05 40 00 06 00 ..U.....H...@... 0000000005637af0 80 7b 63 05 80 06 54 00 - 44 ff 55 00 d8 6f 29 06 .{c...T.D.U..o). 0000000005637b00 e8 22 ab 05 e8 22 ab 05 - b8 b5 d8 05 10 7b 63 05 ."...".......{c. 0000000005637b10 e8 22 ab 05 9b 06 54 00 - b8 b5 d8 05 34 87 d4 77 ."....T.....4..w 0000000005637b20 9e 03 07 00 13 01 00 00 - b8 b5 d8 05 00 00 00 00 ................ 0000000005637b30 80 06 54 00 cd ab ba dc - 00 00 00 00 80 7b 63 05 ..T..........{c. 0000000005637b40 80 06 54 00 ac 7b 63 05 - 16 88 d4 77 80 06 54 00 ..T..{c....w..T. 0000000005637b50 9e 03 07 00 13 01 00 00 - b8 b5 d8 05 00 00 00 00 ................ 0000000005637b60 58 7c 63 05 50 7c 63 05 - 28 8c 68 05 14 00 00 00 X|c.P|c.(.h..... 0000000005637b70 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................ 0000000005637b80 00 00 00 00 ff ff ff ff - 01 00 00 00 00 00 00 00 ................ 0000000005637b90 00 00 00 00 60 7b 63 05 - 04 77 63 05 fc 7b 63 05 ....`{c..wc..{c. 0000000005637ba0 67 04 d7 77 30 88 d4 77 - 00 00 00 00 0c 7c 63 05 g..w0..w.....|c. 0000000005637bb0 cd 89 d4 77 00 00 00 00 - 80 06 54 00 9e 03 07 00 ...w......T..... 0000000005637bc0 13 01 00 00 b8 b5 d8 05 - 00 00 00 00 3c 8c 68 05 ............<.h. 0000000005637bd0 01 00 00 00 f6 8b d4 77 - 6c c9 d4 77 b8 96 d4 77 .......wl..w...w 0000000005637be0 ff 01 00 00 7f 01 00 00 - 01 00 00 00 b8 b5 d8 05 ................ 0000000005637bf0 00 00 00 00 d4 7b 63 05 - 04 77 63 05 b0 ff 63 05 .....{c..wc...c. 0000000005637c00 67 04 d7 77 f0 89 d4 77 - ff ff ff ff 1c 7c 63 05 g..w...w.....|c. 0000000005637c10 c7 96 d4 77 50 7c 63 05 - 01 00 00 00 42 10 d5 77 ...wP|c.....B..w *----> State Dump for Thread Id 0x66c <----* eax=72d230e8 ebx=0887fef8 ecx=000000fe edx=0005a2d0 esi=00000000 edi=7ffda000 eip=7c90eb94 esp=0887fed0 ebp=0887ff6c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\wdmaud.drv - ChildEBP RetAddr Args to Child 0887ff6c 7c809c86 00000002 0887ffa4 00000000 ntdll!KiFastSystemCallRet 0887ff88 72d2312a 00000002 0887ffa4 00000000 kernel32!WaitForMultipleObjects+0x18 0887ffb4 7c80b50b 00000000 00000000 00040000 wdmaud!midMessage+0x348 0887ffec 00000000 72d230e8 00000000 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000887fed0 ab e9 90 7c f2 94 80 7c - 02 00 00 00 f8 fe 87 08 ...|...|........ 000000000887fee0 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000887fef0 00 00 00 00 00 00 00 00 - 5c 01 00 00 58 01 00 00 ........\...X... 000000000887ff00 00 00 00 00 00 02 00 00 - 20 fc c8 ba ea 15 51 80 ........ .....Q. 000000000887ff10 08 c0 07 85 a4 43 0e 85 - 14 00 00 00 01 00 00 00 .....C.......... 000000000887ff20 00 00 00 00 00 00 00 00 - 10 00 00 00 3c 42 0e 85 ............ State Dump for Thread Id 0x204 <----* eax=73f1b94b ebx=000af568 ecx=7799e140 edx=07d201b8 esi=00000000 edi=7ffda000 eip=7c90eb94 esp=0907fd88 ebp=0907fe24 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\DSOUND.DLL - ChildEBP RetAddr Args to Child 0907fe24 7c809c86 00000040 0907fe78 00000000 ntdll!KiFastSystemCallRet 0907fe40 73f114a2 00000040 0907fe78 00000000 kernel32!WaitForMultipleObjects+0x18 0907fe58 73f1294a 00000040 ffffffff 00000000 DSOUND+0x14a2 0907ff78 73f19fbf ffffffff 0000003f 07f26198 DSOUND+0x294a 0907ff98 73f1297e 00040778 07f2614c 73f1b993 DSOUND!DirectSoundCreate+0x537c 0907ffb4 7c80b50b 07f2614c 00040778 7c91056d DSOUND+0x297e 0907ffec 00000000 73f1b94b 07f2614c 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000907fd88 ab e9 90 7c f2 94 80 7c - 40 00 00 00 68 f5 0a 00 ...|...|@...h... 000000000907fd98 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000907fda8 40 00 00 00 01 00 00 00 - e8 6d 91 7c f8 f3 63 05 @........m.|..c. 000000000907fdb8 00 00 00 00 00 00 00 00 - 38 00 00 00 23 00 00 00 ........8...#... 000000000907fdc8 23 00 00 00 78 07 04 00 - 14 00 00 00 01 00 00 00 #...x........... 000000000907fdd8 00 00 00 00 00 00 00 00 - 10 00 00 00 a6 68 91 7c .............h.| 000000000907fde8 56 08 81 7c 1b 00 00 00 - 00 a0 fd 7f 00 d0 fd 7f V..|............ 000000000907fdf8 00 d0 fd 7f 00 00 00 00 - 68 f5 0a 00 00 02 00 00 ........h....... 000000000907fe08 40 00 00 00 a4 fd 07 09 - 30 5b 07 ba dc ff 07 09 @.......0[...... 000000000907fe18 f3 99 83 7c 90 95 80 7c - 00 00 00 00 40 fe 07 09 ...|...|....@... 000000000907fe28 86 9c 80 7c 40 00 00 00 - 78 fe 07 09 00 00 00 00 ...|@...x....... 000000000907fe38 ff ff ff ff 00 00 00 00 - 58 fe 07 09 a2 14 f1 73 ........X......s 000000000907fe48 40 00 00 00 78 fe 07 09 - 00 00 00 00 ff ff ff ff @...x........... 000000000907fe58 78 ff 07 09 4a 29 f1 73 - 40 00 00 00 ff ff ff ff x...J).s@....... 000000000907fe68 00 00 00 00 78 fe 07 09 - 4c 61 f2 07 4c 61 f2 07 ....x...La..La.. 000000000907fe78 d4 01 00 00 c8 01 00 00 - a4 02 00 00 cc 02 00 00 ................ 000000000907fe88 b8 02 00 00 c8 02 00 00 - c4 02 00 00 84 02 00 00 ................ 000000000907fe98 88 02 00 00 90 02 00 00 - 94 02 00 00 a0 02 00 00 ................ 000000000907fea8 9c 02 00 00 8c 02 00 00 - 80 02 00 00 7c 02 00 00 ............|... 000000000907feb8 78 02 00 00 74 02 00 00 - 70 02 00 00 6c 02 00 00 x...t...p...l... *----> State Dump for Thread Id 0x324 <----* eax=05c00004 ebx=0997fdb8 ecx=0997fe60 edx=7c90eb94 esi=00000000 edi=7ffda000 eip=7c90eb94 esp=0997fd90 ebp=0997fe2c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0997fe2c 7c809c86 00000001 0997fe80 00000000 ntdll!KiFastSystemCallRet 0997fe48 73f114a2 00000001 0997fe80 00000000 kernel32!WaitForMultipleObjects+0x18 0997fe60 73f1294a 00000001 000001f4 00000000 DSOUND+0x14a2 0997ff80 73f12a13 000001f4 00000000 00000000 DSOUND+0x294a 0997ffb4 7c80b50b 07f21efc 00000000 7c910732 DSOUND+0x2a13 0997ffec 00000000 73f1b94b 07f21efc 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000997fd90 ab e9 90 7c f2 94 80 7c - 01 00 00 00 b8 fd 97 09 ...|...|........ 000000000997fda0 01 00 00 00 00 00 00 00 - ec fd 97 09 00 00 00 00 ................ 000000000997fdb0 01 00 00 00 01 00 00 00 - a8 02 00 00 ab 95 80 7c ...............| 000000000997fdc0 f4 fd 97 09 22 95 80 7c - 00 85 f2 07 00 00 00 00 ...."..|........ 000000000997fdd0 e0 fd 97 09 00 00 00 00 - 14 00 00 00 01 00 00 00 ................ 000000000997fde0 00 00 00 00 00 00 00 00 - 10 00 00 00 c0 b4 b3 ff ................ 000000000997fdf0 ff ff ff ff 08 6f f2 07 - 00 a0 fd 7f 00 c0 fd 7f .....o.......... 000000000997fe00 c8 05 91 7c ec fd 97 09 - b8 fd 97 09 51 05 91 7c ...|........Q..| 000000000997fe10 01 00 00 00 ac fd 97 09 - c8 05 91 7c dc ff 97 09 ...........|.... 000000000997fe20 f3 99 83 7c 90 95 80 7c - 00 00 00 00 48 fe 97 09 ...|...|....H... 000000000997fe30 86 9c 80 7c 01 00 00 00 - 80 fe 97 09 00 00 00 00 ...|............ 000000000997fe40 f4 01 00 00 00 00 00 00 - 60 fe 97 09 a2 14 f1 73 ........`......s 000000000997fe50 01 00 00 00 80 fe 97 09 - 00 00 00 00 f4 01 00 00 ................ 000000000997fe60 80 ff 97 09 4a 29 f1 73 - 01 00 00 00 f4 01 00 00 ....J).s........ 000000000997fe70 00 00 00 00 80 fe 97 09 - fc 1e f2 07 fc 1e f2 07 ................ 000000000997fe80 a8 02 00 00 01 00 00 00 - 00 00 00 00 20 00 00 00 ............ ... 000000000997fe90 04 00 00 00 f0 fd 97 09 - ac fe 97 09 dc ff 97 09 ................ 000000000997fea0 18 ee 90 7c 70 05 91 7c - ab e9 90 7c f2 94 80 7c ...|p..|...|...| 000000000997feb0 00 c0 fd 7f 44 ff 97 09 - ab 95 80 7c f0 fe 97 09 ....D......|.... 000000000997fec0 22 95 80 7c 00 00 00 00 - fc 1e f2 07 fc 1e f2 07 "..|............ *----> State Dump for Thread Id 0x6b8 <----* eax=00073600 ebx=7c8024a7 ecx=00000002 edx=00000002 esi=000002d8 edi=00000000 eip=7c90eb94 esp=0a17ff1c ebp=0a17ff80 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** WARNING: Unable to verify checksum for C:\Program Files\Call of Duty\mss32.dll *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Call of Duty\mss32.dll - ChildEBP RetAddr Args to Child 0a17ff80 7c802542 000002d8 00000005 00000000 ntdll!KiFastSystemCallRet 0a17ff94 21101565 000002d8 00000005 00000000 kernel32!WaitForSingleObject+0x12 0a17ffec 00000000 211014c0 00000000 00000000 mss32!AIL_get_preference+0x4e5 *----> Raw Stack Dump <----* 000000000a17ff1c c0 e9 90 7c db 25 80 7c - d8 02 00 00 00 00 00 00 ...|.%.|........ 000000000a17ff2c 50 ff 17 0a 30 25 80 7c - 6e 9c 80 7c a7 24 80 7c P...0%.|n..|.$.| 000000000a17ff3c 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000a17ff4c 10 00 00 00 b0 3c ff ff - ff ff ff ff 00 a0 fd 7f .....<.......... 000000000a17ff5c 00 b0 fd 7f 50 ff 17 0a - 1b 16 00 00 30 ff 17 0a ....P.......0... 000000000a17ff6c 00 00 00 00 dc ff 17 0a - f3 99 83 7c 08 26 80 7c ...........|.&.| 000000000a17ff7c 00 00 00 00 94 ff 17 0a - 42 25 80 7c d8 02 00 00 ........B%.|.... 000000000a17ff8c 05 00 00 00 00 00 00 00 - ec ff 17 0a 65 15 10 21 ............e..! 000000000a17ff9c d8 02 00 00 05 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000a17ffac 00 00 00 00 d8 02 00 00 - 30 01 00 00 0b b5 80 7c ........0......| 000000000a17ffbc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000a17ffcc 00 b0 fd 7f 00 06 5c 86 - c0 ff 17 0a 08 e8 22 85 ......\.......". 000000000a17ffdc ff ff ff ff f3 99 83 7c - 18 b5 80 7c 00 00 00 00 .......|...|.... 000000000a17ffec 00 00 00 00 00 00 00 00 - c0 14 10 21 00 00 00 00 ...........!.... 000000000a17fffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000a18000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000a18001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000a18002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000a18003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000a18004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> State Dump for Thread Id 0x5bc <----* eax=00000012 ebx=00000002 ecx=000007d8 edx=0001e507 esi=00000068 edi=00000000 eip=7c90eb94 esp=0ea6ff24 ebp=0ea6ff88 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0ea6ff88 7c802542 00000068 0000000f 00000000 ntdll!KiFastSystemCallRet 0ea6ff9c 21110285 00000068 0000000f 0562e230 kernel32!WaitForSingleObject+0x12 0ea6ffec 00000000 21110210 00000000 00000000 mss32!AIL_list_MIDI+0x24f5 *----> Raw Stack Dump <----* 000000000ea6ff24 c0 e9 90 7c db 25 80 7c - 68 00 00 00 00 00 00 00 ...|.%.|h....... 000000000ea6ff34 58 ff a6 0e 30 25 80 7c - 00 00 00 00 02 00 00 00 X...0%.|........ 000000000ea6ff44 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000ea6ff54 10 00 00 00 10 b6 fd ff - ff ff ff ff 00 a0 fd 7f ................ 000000000ea6ff64 00 90 fd 7f 58 ff a6 0e - 00 00 00 00 38 ff a6 0e ....X.......8... 000000000ea6ff74 00 00 00 00 dc ff a6 0e - f3 99 83 7c 08 26 80 7c ...........|.&.| 000000000ea6ff84 00 00 00 00 9c ff a6 0e - 42 25 80 7c 68 00 00 00 ........B%.|h... 000000000ea6ff94 0f 00 00 00 00 00 00 00 - ec ff a6 0e 85 02 11 21 ...............! 000000000ea6ffa4 68 00 00 00 0f 00 00 00 - 30 e2 62 05 00 00 00 00 h.......0.b..... 000000000ea6ffb4 84 e1 62 05 0b b5 80 7c - 00 00 00 00 84 e1 62 05 ..b....|......b. 000000000ea6ffc4 30 e2 62 05 00 00 00 00 - 00 90 fd 7f 00 06 5c 86 0.b...........\. 000000000ea6ffd4 c0 ff a6 0e 08 e8 22 85 - ff ff ff ff f3 99 83 7c ......"........| 000000000ea6ffe4 18 b5 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 ...|............ 000000000ea6fff4 10 02 11 21 00 00 00 00 - 00 00 00 00 08 00 00 00 ...!............ 000000000ea70004 00 01 00 04 ee ff ee ff - 00 00 00 00 00 00 a3 05 ................ 000000000ea70014 00 70 60 00 00 00 a7 0e - 00 08 00 00 40 00 a7 0e .p`.........@... 000000000ea70024 00 00 27 0f 2e 07 00 00 - 07 00 00 00 c0 06 e4 05 ..'............. 000000000ea70034 00 00 00 00 e8 8f c6 0e - 00 00 00 00 21 67 08 00 ............!g.. 000000000ea70044 f1 01 0b 04 a2 2a c8 04 - bd c7 a8 0e 00 00 00 00 .....*.......... 000000000ea70054 00 00 00 00 b8 c7 a8 0e - 00 00 00 00 d5 2a c8 04 .............*.. *----> State Dump for Thread Id 0x710 <----* eax=0000016e ebx=c0000000 ecx=000002db edx=13b7fe50 esi=00000000 edi=71a87558 eip=7c90eb94 esp=13b7ff7c ebp=13b7ffb4 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 13b7ffb4 7c80b50b 71a67aa3 05627728 7c90ee18 ntdll!KiFastSystemCallRet 13b7ffec 00000000 71a5d5af 0004ff10 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 0000000013b7ff7c 1b e3 90 7c 09 d6 a5 71 - 94 03 00 00 bc ff b7 13 ...|...q........ 0000000013b7ff8c b0 ff b7 13 a4 ff b7 13 - 50 d6 a5 71 28 77 62 05 ........P..q(wb. 0000000013b7ff9c 18 ee 90 7c 10 ff 04 00 - 00 00 00 00 1c 00 00 00 ...|............ 0000000013b7ffac 00 00 a5 71 88 22 05 00 - ec ff b7 13 0b b5 80 7c ...q.".........| 0000000013b7ffbc a3 7a a6 71 28 77 62 05 - 18 ee 90 7c 10 ff 04 00 .z.q(wb....|.... 0000000013b7ffcc 00 80 fd 7f 00 06 5c 86 - c0 ff b7 13 08 c0 48 86 ......\.......H. 0000000013b7ffdc ff ff ff ff f3 99 83 7c - 18 b5 80 7c 00 00 00 00 .......|...|.... 0000000013b7ffec 00 00 00 00 00 00 00 00 - af d5 a5 71 10 ff 04 00 ...........q.... 0000000013b7fffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000013b8000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000013b8001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000013b8002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000013b8003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000013b8004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000013b8005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000013b8006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000013b8007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000013b8008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000013b8009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000013b800ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ Application exception occurred: App: C:\Program Files\Call of Duty\CoDUOMP.exe (pid=1348) When: 9/12/2005 @ 21:38:54.031 Exception number: c0000005 (access violation) *----> System Information <----* Computer Name: MEKFX55 User Name: Mek Terminal Session Id: 0 Number of Processors: 1 Processor Type: x86 Family 15 Model 7 Stepping 10 Windows Version: 5.1 Current Build: 2600 Service Pack: 2 Current Type: Uniprocessor Free Registered Organization: Home Registered Owner: Mekanic *----> Task List <----* 0 System Process 4 System 564 smss.exe 620 csrss.exe 644 winlogon.exe 688 services.exe 700 lsass.exe 852 svchost.exe 912 svchost.exe 1004 svchost.exe 1052 svchost.exe 1172 svchost.exe 1388 spoolsv.exe 1556 Explorer.EXE 1764 RunDll32.exe 1872 SetPoint.exe 1992 KHALMNPR.EXE 236 DKService.exe 272 nvsvc32.exe 332 svchost.exe 316 Ventrilo.exe 1348 CoDUOMP.exe 1288 drwtsn32.exe *----> Module List <----* (0000000000400000 - 0000000004e3f000: C:\Program Files\Call of Duty\CoDUOMP.exe (00000000079c0000 - 00000000079ec000: C:\Program Files\Call of Duty\miles\mssmp3.asi (0000000007a00000 - 0000000007a39000: C:\Program Files\Call of Duty\miles\mssvoice.asi (0000000007a50000 - 0000000007a72000: C:\Program Files\Call of Duty\miles\mssa3d.m3d (0000000007a90000 - 0000000007aab000: C:\Program Files\Call of Duty\miles\mssds3d.m3d (0000000007ac0000 - 0000000007adf000: C:\Program Files\Call of Duty\miles\mssdx7.m3d (0000000007af0000 - 0000000007b1b000: C:\Program Files\Call of Duty\miles\msseax.m3d (0000000007c30000 - 0000000007c98000: C:\Program Files\Call of Duty\miles\mssrsx.m3d (0000000007cb0000 - 0000000007cc9000: C:\Program Files\Call of Duty\miles\msssoft.m3d (0000000007ce0000 - 0000000007d01000: C:\Program Files\Call of Duty\miles\mssdsp.flt (000000000a420000 - 000000000a4b3000: C:\Program Files\Call of Duty\pb\pbcl.dll (000000000a4e0000 - 000000000aae3000: C:\Program Files\Call of Duty\uo\uo_cgame_mp_x86.dll (000000000b320000 - 000000000b335000: C:\Program Files\Call of Duty\pb\pbag.dll (000000000b350000 - 000000000b400000: C:\Program Files\Call of Duty\pb\pbsv.dll (0000000010000000 - 000000001000d000: C:\Program Files\Logitech\SetPoint\GameHook.dll (0000000010100000 - 000000001010e000: C:\Program Files\Logitech\SetPoint\lgscroll.dll (0000000021100000 - 0000000021164000: C:\Program Files\Call of Duty\mss32.dll (0000000040000000 - 0000000040241000: C:\Program Files\Call of Duty\uo\uo_ui_mp_x86.dll (000000005ad70000 - 000000005ada8000: C:\WINDOWS\system32\uxtheme.dll (000000005d090000 - 000000005d127000: C:\WINDOWS\system32\comctl32.dll (000000005ed00000 - 000000005edcc000: C:\WINDOWS\system32\opengl32.dll (00000000662b0000 - 0000000066308000: C:\WINDOWS\system32\hnetcfg.dll (0000000068b20000 - 0000000068b40000: C:\WINDOWS\system32\GLU32.dll (0000000069500000 - 00000000699f3000: C:\WINDOWS\system32\nvoglnt.dll (0000000071a50000 - 0000000071a8f000: C:\WINDOWS\system32\mswsock.dll (0000000071a90000 - 0000000071a98000: C:\WINDOWS\System32\wshtcpip.dll (0000000071aa0000 - 0000000071aa8000: C:\WINDOWS\system32\WS2HELP.dll (0000000071ab0000 - 0000000071ac7000: C:\WINDOWS\system32\WS2_32.dll (0000000071ad0000 - 0000000071ad9000: C:\WINDOWS\system32\WSOCK32.dll (0000000072d10000 - 0000000072d18000: C:\WINDOWS\system32\msacm32.drv (0000000072d20000 - 0000000072d29000: C:\WINDOWS\system32\wdmaud.drv (0000000073760000 - 00000000737a9000: C:\WINDOWS\system32\DDRAW.dll (0000000073bc0000 - 0000000073bc6000: C:\WINDOWS\system32\DCIMAN32.dll (0000000073ee0000 - 0000000073ee4000: C:\WINDOWS\system32\KsUser.dll (0000000073f10000 - 0000000073f6c000: C:\WINDOWS\system32\DSOUND.DLL (0000000076b40000 - 0000000076b6d000: C:\WINDOWS\system32\WINMM.dll (0000000076bf0000 - 0000000076bfb000: C:\WINDOWS\system32\psapi.dll (0000000076c30000 - 0000000076c5e000: C:\WINDOWS\system32\WINTRUST.dll (0000000076c90000 - 0000000076cb8000: C:\WINDOWS\system32\IMAGEHLP.dll (0000000076d60000 - 0000000076d79000: C:\WINDOWS\system32\Iphlpapi.dll (0000000076f20000 - 0000000076f47000: C:\WINDOWS\system32\DNSAPI.dll (0000000076f60000 - 0000000076f8c000: C:\WINDOWS\system32\WLDAP32.dll (0000000076fb0000 - 0000000076fb8000: C:\WINDOWS\System32\winrnr.dll (0000000076fc0000 - 0000000076fc6000: C:\WINDOWS\system32\rasadhlp.dll (00000000773d0000 - 00000000774d2000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll (00000000774e0000 - 000000007761d000: C:\WINDOWS\system32\ole32.dll (0000000077a80000 - 0000000077b14000: C:\WINDOWS\system32\CRYPT32.dll (0000000077b20000 - 0000000077b32000: C:\WINDOWS\system32\MSASN1.dll (0000000077b40000 - 0000000077b62000: C:\WINDOWS\system32\Apphelp.dll (0000000077bd0000 - 0000000077bd7000: C:\WINDOWS\system32\midimap.dll (0000000077be0000 - 0000000077bf5000: C:\WINDOWS\system32\MSACM32.dll (0000000077c00000 - 0000000077c08000: C:\WINDOWS\system32\VERSION.dll (0000000077c10000 - 0000000077c68000: C:\WINDOWS\system32\msvcrt.dll (0000000077d40000 - 0000000077dd0000: C:\WINDOWS\system32\USER32.dll (0000000077dd0000 - 0000000077e6b000: C:\WINDOWS\system32\ADVAPI32.dll (0000000077e70000 - 0000000077f01000: C:\WINDOWS\system32\RPCRT4.dll (0000000077f10000 - 0000000077f56000: C:\WINDOWS\system32\GDI32.dll (0000000077f60000 - 0000000077fd6000: C:\WINDOWS\system32\SHLWAPI.dll (0000000077fe0000 - 0000000077ff1000: C:\WINDOWS\system32\Secur32.dll (000000007c340000 - 000000007c396000: C:\WINDOWS\system32\MSVCR71.dll (000000007c3a0000 - 000000007c41b000: C:\WINDOWS\system32\MSVCP71.dll (000000007c800000 - 000000007c8f4000: C:\WINDOWS\system32\kernel32.dll (000000007c900000 - 000000007c9b0000: C:\WINDOWS\system32\ntdll.dll (000000007c9c0000 - 000000007d1d4000: C:\WINDOWS\system32\SHELL32.dll *----> State Dump for Thread Id 0x650 <----* eax=05f12c70 ebx=00000000 ecx=6962f7a0 edx=00000000 esi=00000001 edi=ffc00000 eip=69571604 esp=0563fc44 ebp=0563fc98 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00200212 *** WARNING: Unable to verify checksum for C:\WINDOWS\system32\nvoglnt.dll *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\nvoglnt.dll - function: nvoglnt 695715e8 dcd9 fcomp st(1) 695715ea 50 push eax 695715eb e0d9 loopne nvoglnt+0x715c6 (695715c6) 695715ed 0564809069 add eax,0x69908064 695715f2 d8f1 fdiv st,st(1) 695715f4 d8ca fmul st,st(2) 695715f6 d958e4 fstp dword ptr [eax-0x1c] 695715f9 ddd8 fstp st(0) 695715fb d958e8 fstp dword ptr [eax-0x18] 695715fe 3b8174a10500 cmp eax,[ecx+0x5a174] FAULT ->69571604 898170a10500 mov [ecx+0x5a170],eax ds:0023:69689910=f7ffffe3 6957160a 5f pop edi 6957160b 5e pop esi 6957160c 7210 jb nvoglnt+0x7161e (6957161e) 6957160e 33d2 xor edx,edx 69571610 8b8948a10500 mov ecx,[ecx+0x5a148] 69571616 83c408 add esp,0x8 69571619 e91206fbff jmp nvoglnt+0x21c30 (69521c30) 6957161e 83c408 add esp,0x8 69571621 c3 ret 69571622 cc int 3 *----> Stack Back Trace <----* *** WARNING: Unable to verify checksum for C:\Program Files\Call of Duty\CoDUOMP.exe *** ERROR: Module load completed but symbols could not be loaded for C:\Program Files\Call of Duty\CoDUOMP.exe WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0563fc98 004eebb5 00000003 00000000 000003fe nvoglnt+0x71604 3883b200 73657275 646e692f 72747375 2f6c6169 CoDUOMP+0xeebb5 74786574 00000000 00000000 00000000 00000000 0x73657275 *----> Raw Stack Dump <----* 000000000563fc44 98 d6 4e 00 04 00 00 00 - 00 00 00 00 00 00 c0 ff ..N............. 000000000563fc54 38 07 00 00 03 14 00 00 - 94 4d 84 04 00 00 00 00 8........M...... 000000000563fc64 00 00 00 00 00 00 00 00 - 00 01 00 00 00 00 00 00 ................ 000000000563fc74 08 00 00 00 0c 00 00 00 - 00 b3 85 38 00 fe 43 c0 ...........8..C. 000000000563fc84 a4 fc 63 05 a1 39 4f 00 - c8 5b 84 04 48 b3 85 38 ..c..9O..[..H..8 000000000563fc94 03 eb 4e 00 00 b2 83 38 - b5 eb 4e 00 03 00 00 00 ..N....8..N..... 000000000563fca4 00 00 00 00 fe 03 00 00 - 79 ed 4b 00 e8 a4 89 04 ........y.K..... 000000000563fcb4 f4 03 0a 39 d6 71 13 00 - 08 00 0a 39 00 00 00 00 ...9.q.....9.... 000000000563fcc4 80 63 87 38 de 35 99 48 - fe 03 00 00 24 09 ed 38 .c.8.5.H....$..8 000000000563fcd4 00 00 00 00 00 00 00 00 - 03 00 00 00 00 00 00 00 ................ 000000000563fce4 00 00 00 00 16 01 00 00 - 00 fe 53 c0 94 09 4c 00 ..........S...L. 000000000563fcf4 fe 03 00 00 08 00 0a 39 - 00 00 0a 39 24 8b 98 00 .......9...9$... 000000000563fd04 1a 12 4c 00 00 00 00 00 - 00 00 0a 39 78 fd 63 05 ..L........9x.c. 000000000563fd14 00 00 00 00 00 00 00 00 - 11 09 4f 00 04 00 00 00 ..........O..... 000000000563fd24 04 00 00 00 70 a0 41 00 - 00 00 00 00 00 00 00 00 ....p.A......... 000000000563fd34 6b 3a 41 00 00 00 00 00 - 04 00 00 00 70 38 05 53 k:A.........p8.S 000000000563fd44 70 38 05 53 c8 c8 43 00 - 04 00 00 00 42 24 80 7c p8.S..C.....B$.| 000000000563fd54 66 aa 80 7c 00 00 00 00 - 7f 01 00 00 04 00 00 00 f..|............ 000000000563fd64 04 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000563fd74 00 00 00 00 98 fe 63 05 - a4 c7 46 00 29 b5 80 7c ......c...F.)..| *----> State Dump for Thread Id 0x148 <----* eax=72d230e8 ebx=0867fef8 ecx=000000d9 edx=0005ad60 esi=00000000 edi=7ffde000 eip=7c90eb94 esp=0867fed0 ebp=0867ff6c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\wdmaud.drv - ChildEBP RetAddr Args to Child 0867ff6c 7c809c86 00000002 0867ffa4 00000000 ntdll!KiFastSystemCallRet 0867ff88 72d2312a 00000002 0867ffa4 00000000 kernel32!WaitForMultipleObjects+0x18 0867ffb4 7c80b50b 00000000 00000000 00040000 wdmaud!midMessage+0x348 0867ffec 00000000 72d230e8 00000000 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000867fed0 ab e9 90 7c f2 94 80 7c - 02 00 00 00 f8 fe 67 08 ...|...|......g. 000000000867fee0 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000867fef0 00 00 00 00 00 00 00 00 - 9c 01 00 00 98 01 00 00 ................ 000000000867ff00 2a 26 80 7c 18 ff 67 08 - 00 26 80 7c 30 25 80 7c *&.|..g..&.|0%.| 000000000867ff10 00 00 00 00 00 00 00 00 - 14 00 00 00 01 00 00 00 ................ 000000000867ff20 00 00 00 00 00 00 00 00 - 10 00 00 00 ac ba 54 85 ..............T. 000000000867ff30 00 00 00 00 00 e0 fd 7f - 00 e0 fd 7f 00 c0 fd 7f ................ 000000000867ff40 00 00 00 00 00 00 00 00 - f8 fe 67 08 dc ff 67 08 ..........g...g. 000000000867ff50 02 00 00 00 ec fe 67 08 - ff ff ff ff dc ff 67 08 ......g.......g. 000000000867ff60 f3 99 83 7c 90 95 80 7c - 00 00 00 00 88 ff 67 08 ...|...|......g. 000000000867ff70 86 9c 80 7c 02 00 00 00 - a4 ff 67 08 00 00 00 00 ...|......g..... 000000000867ff80 ff ff ff ff 00 00 00 00 - b4 ff 67 08 2a 31 d2 72 ..........g.*1.r 000000000867ff90 02 00 00 00 a4 ff 67 08 - 00 00 00 00 ff ff ff ff ......g......... 000000000867ffa0 00 00 04 00 9c 01 00 00 - 98 01 00 00 02 00 00 00 ................ 000000000867ffb0 00 00 05 00 ec ff 67 08 - 0b b5 80 7c 00 00 00 00 ......g....|.... 000000000867ffc0 00 00 00 00 00 00 04 00 - 00 00 00 00 00 c0 fd 7f ................ 000000000867ffd0 00 06 7c 86 c0 ff 67 08 - 78 7b 3f 85 ff ff ff ff ..|...g.x{?..... 000000000867ffe0 f3 99 83 7c 18 b5 80 7c - 00 00 00 00 00 00 00 00 ...|...|........ 000000000867fff0 00 00 00 00 e8 30 d2 72 - 00 00 00 00 00 00 00 00 .....0.r........ 0000000008680000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> State Dump for Thread Id 0x3e4 <----* eax=73f1b94b ebx=0012f280 ecx=7799e140 edx=0005c3d8 esi=00000000 edi=7ffde000 eip=7c90eb94 esp=08e7fd88 ebp=08e7fe24 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\DSOUND.DLL - ChildEBP RetAddr Args to Child 08e7fe24 7c809c86 00000040 08e7fe78 00000000 ntdll!KiFastSystemCallRet 08e7fe40 73f114a2 00000040 08e7fe78 00000000 kernel32!WaitForMultipleObjects+0x18 08e7fe58 73f1294a 00000040 ffffffff 00000000 DSOUND+0x14a2 08e7ff78 73f19fbf ffffffff 0000003f 07d26198 DSOUND+0x294a 08e7ff98 73f1297e 00040778 07d2614c 73f1b993 DSOUND!DirectSoundCreate+0x537c 08e7ffb4 7c80b50b 07d2614c 00040778 7c91056d DSOUND+0x297e 08e7ffec 00000000 73f1b94b 07d2614c 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 0000000008e7fd88 ab e9 90 7c f2 94 80 7c - 40 00 00 00 80 f2 12 00 ...|...|@....... 0000000008e7fd98 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008e7fda8 40 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 @............... 0000000008e7fdb8 00 00 00 00 00 00 00 00 - 38 00 00 00 23 00 00 00 ........8...#... 0000000008e7fdc8 23 00 00 00 78 07 04 00 - 14 00 00 00 01 00 00 00 #...x........... 0000000008e7fdd8 00 00 00 00 00 00 00 00 - 10 00 00 00 a6 68 91 7c .............h.| 0000000008e7fde8 56 08 81 7c 1b 00 00 00 - 00 e0 fd 7f 00 b0 fd 7f V..|............ 0000000008e7fdf8 00 b0 fd 7f 00 00 00 00 - 80 f2 12 00 00 02 00 00 ................ 0000000008e7fe08 40 00 00 00 a4 fd e7 08 - 30 1b 11 ba dc ff e7 08 @.......0....... 0000000008e7fe18 f3 99 83 7c 90 95 80 7c - 00 00 00 00 40 fe e7 08 ...|...|....@... 0000000008e7fe28 86 9c 80 7c 40 00 00 00 - 78 fe e7 08 00 00 00 00 ...|@...x....... 0000000008e7fe38 ff ff ff ff 00 00 00 00 - 58 fe e7 08 a2 14 f1 73 ........X......s 0000000008e7fe48 40 00 00 00 78 fe e7 08 - 00 00 00 00 ff ff ff ff @...x........... 0000000008e7fe58 78 ff e7 08 4a 29 f1 73 - 40 00 00 00 ff ff ff ff x...J).s@....... 0000000008e7fe68 00 00 00 00 78 fe e7 08 - 4c 61 d2 07 4c 61 d2 07 ....x...La..La.. 0000000008e7fe78 14 02 00 00 08 02 00 00 - e4 02 00 00 0c 03 00 00 ................ 0000000008e7fe88 f8 02 00 00 08 03 00 00 - 04 03 00 00 c4 02 00 00 ................ 0000000008e7fe98 c8 02 00 00 d0 02 00 00 - d4 02 00 00 e0 02 00 00 ................ 0000000008e7fea8 dc 02 00 00 cc 02 00 00 - c0 02 00 00 bc 02 00 00 ................ 0000000008e7feb8 b8 02 00 00 b4 02 00 00 - b0 02 00 00 ac 02 00 00 ................ *----> State Dump for Thread Id 0x474 <----* eax=07d27ac8 ebx=0977fdb8 ecx=00000000 edx=0000000c esi=00000000 edi=7ffde000 eip=7c90eb94 esp=0977fd90 ebp=0977fe2c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0977fe2c 7c809c86 00000001 0977fe80 00000000 ntdll!KiFastSystemCallRet 0977fe48 73f114a2 00000001 0977fe80 00000000 kernel32!WaitForMultipleObjects+0x18 0977fe60 73f1294a 00000001 000001f4 00000000 DSOUND+0x14a2 0977ff80 73f12a13 000001f4 00000000 00000000 DSOUND+0x294a 0977ffb4 7c80b50b 07d21efc 00000000 7c910732 DSOUND+0x2a13 0977ffec 00000000 73f1b94b 07d21efc 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000977fd90 ab e9 90 7c f2 94 80 7c - 01 00 00 00 b8 fd 77 09 ...|...|......w. 000000000977fda0 01 00 00 00 00 00 00 00 - ec fd 77 09 00 00 00 00 ..........w..... 000000000977fdb0 01 00 00 00 01 00 00 00 - e8 02 00 00 ab 95 80 7c ...............| 000000000977fdc0 00 00 00 00 22 95 80 7c - 00 85 d2 07 00 00 00 00 ...."..|........ 000000000977fdd0 e0 fd 77 09 00 00 00 00 - 14 00 00 00 01 00 00 00 ..w............. 000000000977fde0 00 00 00 00 00 00 00 00 - 10 00 00 00 c0 b4 b3 ff ................ 000000000977fdf0 ff ff ff ff 84 fe 77 09 - 00 e0 fd 7f 00 a0 fd 7f ......w......... 000000000977fe00 22 95 80 7c ec fd 77 09 - b8 fd 77 09 1c fe 77 09 "..|..w...w...w. 000000000977fe10 01 00 00 00 ac fd 77 09 - 90 6e d2 07 dc ff 77 09 ......w..n....w. 000000000977fe20 f3 99 83 7c 90 95 80 7c - 00 00 00 00 48 fe 77 09 ...|...|....H.w. 000000000977fe30 86 9c 80 7c 01 00 00 00 - 80 fe 77 09 00 00 00 00 ...|......w..... 000000000977fe40 f4 01 00 00 00 00 00 00 - 60 fe 77 09 a2 14 f1 73 ........`.w....s 000000000977fe50 01 00 00 00 80 fe 77 09 - 00 00 00 00 f4 01 00 00 ......w......... 000000000977fe60 80 ff 77 09 4a 29 f1 73 - 01 00 00 00 f4 01 00 00 ..w.J).s........ 000000000977fe70 00 00 00 00 80 fe 77 09 - fc 1e d2 07 fc 1e d2 07 ......w......... 000000000977fe80 e8 02 00 00 b8 6e d2 07 - 20 00 00 00 b4 fe 00 09 .....n.. ....... 000000000977fe90 00 00 00 00 b8 6e d2 07 - ac fe 77 09 df 24 f1 73 .....n....w..$.s 000000000977fea0 c4 6e d2 07 c8 7a d2 07 - ab e9 90 7c f2 94 80 7c .n...z.....|...| 000000000977feb0 00 a0 fd 7f 44 ff 77 09 - ab 95 80 7c f0 fe 77 09 ....D.w....|..w. 000000000977fec0 22 95 80 7c 00 00 00 00 - fc 1e d2 07 fc 1e d2 07 "..|............ *----> State Dump for Thread Id 0x65c <----* eax=00074610 ebx=7c8024a7 ecx=00000002 edx=00000002 esi=00000318 edi=00000000 eip=7c90eb94 esp=09f7ff1c ebp=09f7ff80 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** WARNING: Unable to verify checksum for C:\Program Files\Call of Duty\mss32.dll *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Call of Duty\mss32.dll - ChildEBP RetAddr Args to Child 09f7ff80 7c802542 00000318 00000005 00000000 ntdll!KiFastSystemCallRet 09f7ff94 21101565 00000318 00000005 00000000 kernel32!WaitForSingleObject+0x12 09f7ffec 00000000 211014c0 00000000 00000000 mss32!AIL_get_preference+0x4e5 *----> Raw Stack Dump <----* 0000000009f7ff1c c0 e9 90 7c db 25 80 7c - 18 03 00 00 00 00 00 00 ...|.%.|........ 0000000009f7ff2c 50 ff f7 09 30 25 80 7c - 6e 9c 80 7c a7 24 80 7c P...0%.|n..|.$.| 0000000009f7ff3c 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009f7ff4c 10 00 00 00 b0 3c ff ff - ff ff ff ff 00 e0 fd 7f .....<.......... 0000000009f7ff5c 00 90 fd 7f 50 ff f7 09 - b0 b3 00 00 30 ff f7 09 ....P.......0... 0000000009f7ff6c 10 1b 02 00 dc ff f7 09 - f3 99 83 7c 08 26 80 7c ...........|.&.| 0000000009f7ff7c 00 00 00 00 94 ff f7 09 - 42 25 80 7c 18 03 00 00 ........B%.|.... 0000000009f7ff8c 05 00 00 00 00 00 00 00 - ec ff f7 09 65 15 10 21 ............e..! 0000000009f7ff9c 18 03 00 00 05 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009f7ffac 00 00 00 00 18 03 00 00 - 70 01 00 00 0b b5 80 7c ........p......| 0000000009f7ffbc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009f7ffcc 00 90 fd 7f 00 06 7c 86 - c0 ff f7 09 d0 82 2b 85 ......|.......+. 0000000009f7ffdc ff ff ff ff f3 99 83 7c - 18 b5 80 7c 00 00 00 00 .......|...|.... 0000000009f7ffec 00 00 00 00 00 00 00 00 - c0 14 10 21 00 00 00 00 ...........!.... 0000000009f7fffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009f8000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009f8001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009f8002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009f8003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009f8004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> State Dump for Thread Id 0x6d8 <----* eax=113fff78 ebx=00000002 ecx=07b59c48 edx=000011b7 esi=00000068 edi=00000000 eip=7c90eb94 esp=113fff24 ebp=113fff88 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 113fff88 7c802542 00000068 0000000f 00000000 ntdll!KiFastSystemCallRet 113fff9c 21110285 00000068 0000000f 0562e208 kernel32!WaitForSingleObject+0x12 113fffec 00000000 21110210 00000000 00000000 mss32!AIL_list_MIDI+0x24f5 *----> Raw Stack Dump <----* 00000000113fff24 c0 e9 90 7c db 25 80 7c - 68 00 00 00 00 00 00 00 ...|.%.|h....... 00000000113fff34 58 ff 3f 11 30 25 80 7c - 00 00 00 00 02 00 00 00 X.?.0%.|........ 00000000113fff44 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000113fff54 10 00 00 00 10 b6 fd ff - ff ff ff ff 00 e0 fd 7f ................ 00000000113fff64 00 80 fd 7f 58 ff 3f 11 - c1 2f 00 00 38 ff 3f 11 ....X.?../..8.?. 00000000113fff74 00 00 00 00 dc ff 3f 11 - f3 99 83 7c 08 26 80 7c ......?....|.&.| 00000000113fff84 00 00 00 00 9c ff 3f 11 - 42 25 80 7c 68 00 00 00 ......?.B%.|h... 00000000113fff94 0f 00 00 00 00 00 00 00 - ec ff 3f 11 85 02 11 21 ..........?....! 00000000113fffa4 68 00 00 00 0f 00 00 00 - 08 e2 62 05 00 00 00 00 h.........b..... 00000000113fffb4 1e 07 00 00 0b b5 80 7c - 00 00 00 00 1e 07 00 00 .......|........ 00000000113fffc4 08 e2 62 05 00 00 00 00 - 00 80 fd 7f 00 06 7c 86 ..b...........|. 00000000113fffd4 c0 ff 3f 11 c8 d6 45 86 - ff ff ff ff f3 99 83 7c ..?...E........| 00000000113fffe4 18 b5 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 ...|............ 00000000113ffff4 10 02 11 21 00 00 00 00 - 00 00 00 00 00 00 ba 0d ...!............ 0000000011400004 00 00 d4 0f 00 00 00 00 - 00 00 00 00 00 10 20 00 .............. . 0000000011400014 00 10 20 00 3c 0e 00 00 - 00 0b 00 00 00 00 00 00 .. .<........... 0000000011400024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000011400034 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000011400044 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000011400054 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ Application exception occurred: App: C:\Program Files\Internet Explorer\IEXPLORE.EXE (pid=480) When: 9/14/2005 @ 03:26:57.468 Exception number: c0000005 (access violation) *----> System Information <----* Computer Name: MEKFX55 User Name: Mek Terminal Session Id: 0 Number of Processors: 1 Processor Type: x86 Family 15 Model 7 Stepping 10 Windows Version: 5.1 Current Build: 2600 Service Pack: 2 Current Type: Uniprocessor Free Registered Organization: Home Registered Owner: Mekanic *----> Task List <----* 0 System Process 4 System 564 smss.exe 620 csrss.exe 644 winlogon.exe 688 services.exe 700 lsass.exe 852 svchost.exe 900 svchost.exe 1004 svchost.exe 1052 svchost.exe 1172 svchost.exe 1384 spoolsv.exe 1548 Explorer.EXE 1760 RunDll32.exe 1860 LVCOMSX.EXE 1868 LogiTray.exe 1992 SetPoint.exe 236 DKService.exe 256 KHALMNPR.EXE 364 nvsvc32.exe 416 svchost.exe 444 FxSvr2.exe 480 IEXPLORE.EXE 1408 drwtsn32.exe *----> Module List <----* (0000000000400000 - 0000000000419000: C:\Program Files\Internet Explorer\IEXPLORE.EXE (0000000000bd0000 - 0000000000bd8000: C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx (0000000000de0000 - 00000000010a5000: C:\WINDOWS\system32\xpsp2res.dll (00000000012b0000 - 0000000001338000: C:\WINDOWS\system32\shdoclc.dll (0000000002560000 - 0000000002707000: C:\WINDOWS\system32\macromed\flash\Flash.ocx (0000000010000000 - 000000001000d000: C:\Program Files\Logitech\SetPoint\GameHook.dll (0000000010100000 - 000000001010e000: C:\Program Files\Logitech\SetPoint\lgscroll.dll (0000000020000000 - 0000000020012000: C:\WINDOWS\system32\browselc.dll (0000000032520000 - 0000000032532000: C:\Program Files\Microsoft Office\Office10\msohev.dll (000000005ad70000 - 000000005ada8000: C:\WINDOWS\system32\uxtheme.dll (000000005b860000 - 000000005b8b4000: C:\WINDOWS\system32\NETAPI32.dll (000000005d090000 - 000000005d127000: C:\WINDOWS\system32\comctl32.dll (00000000662b0000 - 0000000066308000: C:\WINDOWS\system32\hnetcfg.dll (0000000066e50000 - 0000000066e90000: C:\WINDOWS\system32\iepeers.dll (000000006bdd0000 - 000000006be05000: C:\WINDOWS\system32\dxtrans.dll (000000006be10000 - 000000006be6a000: C:\WINDOWS\system32\dxtmsft.dll (000000006d430000 - 000000006d43a000: C:\WINDOWS\system32\ddrawex.dll (0000000071a50000 - 0000000071a8f000: C:\WINDOWS\system32\mswsock.dll (0000000071a90000 - 0000000071a98000: C:\WINDOWS\System32\wshtcpip.dll (0000000071aa0000 - 0000000071aa8000: C:\WINDOWS\system32\WS2HELP.dll (0000000071ab0000 - 0000000071ac7000: C:\WINDOWS\system32\WS2_32.dll (0000000071ad0000 - 0000000071ad9000: C:\WINDOWS\system32\wsock32.dll (0000000071d40000 - 0000000071d5c000: C:\WINDOWS\system32\ACTXPRXY.DLL (00000000722b0000 - 00000000722b5000: C:\WINDOWS\system32\sensapi.dll (0000000072d10000 - 0000000072d18000: C:\WINDOWS\system32\msacm32.drv (0000000072d20000 - 0000000072d29000: C:\WINDOWS\system32\wdmaud.drv (0000000073000000 - 0000000073026000: C:\WINDOWS\system32\WINSPOOL.DRV (0000000073300000 - 0000000073367000: C:\WINDOWS\system32\vbscript.dll (0000000073760000 - 00000000737a9000: C:\WINDOWS\system32\DDRAW.dll (0000000073bc0000 - 0000000073bc6000: C:\WINDOWS\system32\DCIMAN32.dll (0000000073dd0000 - 0000000073ece000: C:\WINDOWS\system32\MFC42.DLL (00000000746c0000 - 00000000746e7000: C:\WINDOWS\system32\msls31.dll (00000000746f0000 - 000000007471a000: C:\WINDOWS\system32\msimtf.dll (0000000074720000 - 000000007476b000: C:\WINDOWS\system32\MSCTF.dll (00000000754d0000 - 0000000075550000: C:\WINDOWS\system32\CRYPTUI.dll (0000000075c50000 - 0000000075cbe000: C:\WINDOWS\system32\jscript.dll (0000000075cf0000 - 0000000075d81000: C:\WINDOWS\system32\mlang.dll (0000000075e90000 - 0000000075f40000: C:\WINDOWS\system32\SXS.DLL (0000000075f80000 - 000000007607d000: C:\WINDOWS\system32\BROWSEUI.dll (0000000076200000 - 0000000076271000: C:\WINDOWS\system32\mshtmled.dll (0000000076390000 - 00000000763ad000: C:\WINDOWS\system32\IMM32.DLL (00000000763b0000 - 00000000763f9000: C:\WINDOWS\system32\comdlg32.dll (0000000076600000 - 000000007661d000: C:\WINDOWS\System32\CSCDLL.dll (00000000769c0000 - 0000000076a73000: C:\WINDOWS\system32\USERENV.dll (0000000076b20000 - 0000000076b31000: C:\WINDOWS\system32\ATL.DLL (0000000076b40000 - 0000000076b6d000: C:\WINDOWS\system32\WINMM.dll (0000000076c30000 - 0000000076c5e000: C:\WINDOWS\system32\WINTRUST.dll (0000000076c90000 - 0000000076cb8000: C:\WINDOWS\system32\IMAGEHLP.dll (0000000076d60000 - 0000000076d79000: C:\WINDOWS\system32\iphlpapi.dll (0000000076e80000 - 0000000076e8e000: C:\WINDOWS\system32\rtutils.dll (0000000076e90000 - 0000000076ea2000: C:\WINDOWS\system32\rasman.dll (0000000076eb0000 - 0000000076edf000: C:\WINDOWS\system32\TAPI32.dll (0000000076ee0000 - 0000000076f1c000: C:\WINDOWS\system32\RASAPI32.DLL (0000000076f20000 - 0000000076f47000: C:\WINDOWS\system32\DNSAPI.dll (0000000076f60000 - 0000000076f8c000: C:\WINDOWS\system32\WLDAP32.dll (0000000076fc0000 - 0000000076fc6000: C:\WINDOWS\system32\rasadhlp.dll (0000000076fd0000 - 000000007704f000: C:\WINDOWS\system32\CLBCATQ.DLL (0000000077050000 - 0000000077115000: C:\WINDOWS\system32\COMRes.dll (0000000077120000 - 00000000771ac000: C:\WINDOWS\system32\OLEAUT32.dll (00000000771b0000 - 0000000077256000: C:\WINDOWS\system32\WININET.dll (0000000077260000 - 00000000772fe000: C:\WINDOWS\system32\urlmon.dll (00000000773d0000 - 00000000774d2000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll (00000000774e0000 - 000000007761d000: C:\WINDOWS\system32\ole32.dll (0000000077760000 - 00000000778cc000: C:\WINDOWS\system32\SHDOCVW.dll (0000000077920000 - 0000000077a13000: C:\WINDOWS\system32\SETUPAPI.dll (0000000077a20000 - 0000000077a74000: C:\WINDOWS\System32\cscui.dll (0000000077a80000 - 0000000077b14000: C:\WINDOWS\system32\CRYPT32.dll (0000000077b20000 - 0000000077b32000: C:\WINDOWS\system32\MSASN1.dll (0000000077b40000 - 0000000077b62000: C:\WINDOWS\system32\appHelp.dll (0000000077bd0000 - 0000000077bd7000: C:\WINDOWS\system32\midimap.dll (0000000077be0000 - 0000000077bf5000: C:\WINDOWS\system32\MSACM32.dll (0000000077c00000 - 0000000077c08000: C:\WINDOWS\system32\VERSION.dll (0000000077c10000 - 0000000077c68000: C:\WINDOWS\system32\msvcrt.dll (0000000077c70000 - 0000000077c93000: C:\WINDOWS\system32\msv1_0.dll (0000000077d40000 - 0000000077dd0000: C:\WINDOWS\system32\USER32.dll (0000000077dd0000 - 0000000077e6b000: C:\WINDOWS\system32\ADVAPI32.dll (0000000077e70000 - 0000000077f01000: C:\WINDOWS\system32\RPCRT4.dll (0000000077f10000 - 0000000077f56000: C:\WINDOWS\system32\GDI32.dll (0000000077f60000 - 0000000077fd6000: C:\WINDOWS\system32\SHLWAPI.dll (0000000077fe0000 - 0000000077ff1000: C:\WINDOWS\system32\Secur32.dll (000000007c340000 - 000000007c396000: C:\WINDOWS\system32\MSVCR71.dll (000000007c3a0000 - 000000007c41b000: C:\WINDOWS\system32\MSVCP71.dll (000000007c800000 - 000000007c8f4000: C:\WINDOWS\system32\kernel32.dll (000000007c900000 - 000000007c9b0000: C:\WINDOWS\system32\ntdll.dll (000000007c9c0000 - 000000007d1d4000: C:\WINDOWS\system32\SHELL32.dll (000000007d4a0000 - 000000007d786000: C:\WINDOWS\system32\mshtml.dll *----> State Dump for Thread Id 0x5c0 <----* eax=00000000 ebx=0013e418 ecx=0013e418 edx=0013e1bc esi=0013e1fc edi=0013e480 eip=7d51f01e esp=0013dfd4 ebp=0013dffc iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\mshtml.dll - function: mshtml No prior disassembly possible 7d51f01e 41 inc ecx 7d51f01f 08f7 or bh,dh 7d51f021 d0a8010f84d3 shr byte ptr [eax+0xd3840f01],1 7d51f027 47 inc edi 7d51f028 0a00 or al,[eax] 7d51f02a 56 push esi 7d51f02b 8b7508 mov esi,[ebp+0x8] 7d51f02e 57 push edi 7d51f02f 8b7d0c mov edi,[ebp+0xc] FAULT ->7d51f01e 41 inc ecx 7d51f01f 08f7 or bh,dh 7d51f021 d0a8010f84d3 shr byte ptr [eax+0xd3840f01],1 7d51f027 47 inc edi 7d51f028 0a00 or al,[eax] 7d51f02a 56 push esi 7d51f02b 8b7508 mov esi,[ebp+0x8] 7d51f02e 57 push edi 7d51f02f 8b7d0c mov edi,[ebp+0xc] 7d51f032 a5 movsd 7d51f033 a5 movsd *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\USER32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\BROWSEUI.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\SHDOCVW.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Internet Explorer\IEXPLORE.EXE - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll - ChildEBP RetAddr Args to Child 0013dffc 7d51a5a2 0013e1ec 0013e418 00000000 mshtml+0x7f01e 0013e014 7d577fb6 0013e418 0013e198 00000000 mshtml+0x7a5a2 0013e380 7d579030 0013e418 00000000 00000000 mshtml+0xd7fb6 0013e4b8 7d578f48 0013e5d4 0013e620 0013e5a8 mshtml+0xd9030 0013e580 7d578cb1 0013e5d4 0013e620 0013e5a8 mshtml+0xd8f48 0013e5dc 7d578b9f 0013e700 0013e620 00000000 mshtml+0xd8cb1 0013e628 7d578b31 0013e6e4 0013e774 00000000 mshtml+0xd8b9f 0013e63c 7d5786eb 0013e6e4 0013e774 00000000 mshtml+0xd8b31 0013e788 7d578640 00000020 00000000 02000001 mshtml+0xd86eb 0013e8a4 7d50861b 00000000 00000020 000202a0 mshtml+0xd8640 0013e9dc 77d48734 000202a0 00000020 000202a0 mshtml+0x6861b 0013ea08 77d48816 7d5085a5 000202a0 00000020 USER32!GetDC+0x6d 0013ea70 77d4b4c0 00000000 7d5085a5 000202a0 USER32!GetDC+0x14f 0013eac4 77d4b50c 00650b40 00000020 000202a0 USER32!DefWindowProcW+0x184 0013eaec 7c90eae3 0013eafc 00000018 00650b40 USER32!DefWindowProcW+0x1d0 0013eb3c 77d49402 0013eb90 00000000 00000000 ntdll!KiUserCallbackDispatcher+0x13 0013eb68 75fae583 0013eb90 00000000 00000000 USER32!PeekMessageW+0x167 0013edd8 75fae805 00162318 0013ee98 00162318 BROWSEUI!Ordinal107+0xbc9c 0013ee6c 75faeacd 00162318 00162318 00000000 BROWSEUI!Ordinal107+0xbf1e 0013fef0 777e71b6 00162318 00000000 00000000 BROWSEUI!Ordinal102+0x22c 0013ff10 00402372 001523ba 00000001 0120cf78 SHDOCVW!Ordinal101+0x129 0013ff60 00402444 00400000 00000000 001523ba IEXPLORE+0x2372 0013ffc0 7c816d4f 0120cf78 00000018 7ffdd000 IEXPLORE+0x2444 0013fff0 00000000 00402451 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49 *----> Raw Stack Dump <----* 000000000013dfd4 fd ef 51 7d 70 e4 13 00 - ec df 13 00 00 00 00 00 ..Q}p........... 000000000013dfe4 ec e1 13 00 60 3c 8e 01 - f8 df 13 00 c8 e2 51 7d ....`<........Q} 000000000013dff4 bc e1 13 00 98 e1 13 00 - 14 e0 13 00 a2 a5 51 7d ..............Q} 000000000013e004 ec e1 13 00 18 e4 13 00 - 00 00 00 00 00 00 00 00 ................ 000000000013e014 80 e3 13 00 b6 7f 57 7d - 18 e4 13 00 98 e1 13 00 ......W}........ 000000000013e024 00 00 00 00 20 e6 13 00 - 60 3c 8e 01 00 00 00 00 .... ...`<...... 000000000013e034 00 00 00 00 0c e4 13 00 - 05 df 58 7d c4 e3 13 00 ..........X}.... 000000000013e044 02 00 00 00 0f df 58 7d - 00 00 00 00 54 e4 13 00 ......X}....T... 000000000013e054 31 00 34 00 00 00 33 01 - e0 ea 13 00 f3 99 83 7c 1.4...3........| 000000000013e064 a8 a0 80 7c ff ff ff ff - f4 e3 13 00 b6 ba 53 7d ...|..........S} 000000000013e074 c0 5a 33 01 2f 00 00 00 - f6 5a 33 01 00 00 00 00 .Z3./....Z3..... 000000000013e084 54 e4 13 00 c0 b4 b3 ff - c0 b4 b3 ff 40 4b 4c 00 T...........@KL. 000000000013e094 40 4b 4c 00 c0 b4 b3 ff - c0 b4 b3 ff 40 4b 4c 00 @KL.........@KL. 000000000013e0a4 40 4b 4c 00 00 00 00 00 - 00 00 00 00 0c e4 13 00 @KL............. 000000000013e0b4 05 df 58 7d c4 e3 13 00 - 02 00 00 00 0f df 58 7d ..X}..........X} 000000000013e0c4 00 00 00 00 54 e4 13 00 - 31 00 34 00 00 00 33 01 ....T...1.4...3. 000000000013e0d4 e0 ea 13 00 f3 99 83 7c - a8 a0 80 7c ff ff ff ff .......|...|.... 000000000013e0e4 f4 e3 13 00 b6 ba 53 7d - c0 5a 33 01 2f 00 00 00 ......S}.Z3./... 000000000013e0f4 f6 5a 33 01 00 00 00 00 - 54 e4 13 00 c0 b4 b3 ff .Z3.....T....... 000000000013e104 c0 b4 b3 ff 40 4b 4c 00 - 40 4b 4c 00 c0 b4 b3 ff ....@KL.@KL..... *----> State Dump for Thread Id 0x624 <----* eax=77e76bf0 ebx=00000000 ecx=00000009 edx=7c910732 esi=001532f0 edi=00000100 eip=7c90eb94 esp=011afe1c ebp=011aff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\RPCRT4.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 011aff80 77e76c22 011affa8 77e76a3b 001532f0 ntdll!KiFastSystemCallRet 011aff88 77e76a3b 001532f0 00000000 0013cca4 RPCRT4!I_RpcBCacheFree+0x5ea 011affa8 77e76c0a 00164380 011affec 7c80b50b RPCRT4!I_RpcBCacheFree+0x403 011affb4 7c80b50b 0017ea20 00000000 0013cca4 RPCRT4!I_RpcBCacheFree+0x5d2 011affec 00000000 77e76bf0 0017ea20 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 00000000011afe1c 99 e3 90 7c 03 67 e7 77 - 1c 02 00 00 70 ff 1a 01 ...|.g.w....p... 00000000011afe2c 00 00 00 00 58 c1 99 02 - 54 ff 1a 01 de 63 60 80 ....X...T....c`. 00000000011afe3c 3d 71 60 80 64 5d c3 b9 - 78 f4 13 00 38 63 60 80 =q`.d]..x...8c`. 00000000011afe4c 00 00 00 00 02 00 00 00 - 00 00 74 86 48 5d c3 b9 ..........t.H].. 00000000011afe5c f1 14 5c 80 28 f9 13 00 - 04 00 00 00 8d 23 5c 80 ..\.(........#\. 00000000011afe6c 76 00 00 00 28 f9 13 00 - 05 00 00 00 00 42 5b 80 v...(........B[. 00000000011afe7c 00 00 00 00 01 00 00 00 - 90 5b c3 b9 19 46 5b 80 .........[...F[. 00000000011afe8c 05 00 00 00 05 00 00 00 - f0 6e 7d e2 08 60 03 e1 .........n}..`.. 00000000011afe9c 02 00 00 00 fe ff f8 00 - f8 0d 04 e1 f0 6e 7d e2 .............n}. 00000000011afeac 1c 2e 5b 00 00 00 00 00 - 00 00 00 00 5c 00 52 00 ..[.........\.R. 00000000011afebc ff ff ff ff 28 5c c3 b9 - 42 36 5b 80 49 03 00 00 ....(\..B6[.I... 00000000011afecc 34 00 00 c0 30 ff 36 85 - 78 34 01 e1 d4 ff 36 85 4...0.6.x4....6. 00000000011afedc 68 5c c3 b9 90 34 01 e1 - 78 34 01 e1 28 5c c3 b9 h\...4..x4..(\.. 00000000011afeec 4d 36 5b 80 a4 ff 36 85 - d4 ff 36 85 30 ff 36 85 M6[...6...6.0.6. 00000000011afefc 10 00 f8 00 6a 0d 04 e1 - 7c 00 f8 00 7a 0d 04 e1 ....j...|...z... 00000000011aff0c 74 34 01 e1 12 d8 52 80 - bc 5b 2d 85 24 5c c3 b9 t4....R..[-.$\.. 00000000011aff1c d9 9a 4f 80 e1 9a 4f 80 - 8c 5b 2d 85 20 5a 2d 85 ..O...O..[-. Z-. 00000000011aff2c 54 5a 2d 85 80 ff 1a 01 - 99 66 e7 77 4c ff 1a 01 TZ-......f.wL... 00000000011aff3c a9 66 e7 77 ed 10 90 7c - 28 e8 17 00 20 ea 17 00 .f.w...|(... ... 00000000011aff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> State Dump for Thread Id 0x4bc <----* eax=00000000 ebx=00188df0 ecx=028c4e28 edx=00000000 esi=7fffffff edi=ffffffff eip=7c90eb94 esp=014dfad0 ebp=014dfb0c iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\mswsock.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WS2_32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WININET.dll - ChildEBP RetAddr Args to Child 014dfb0c 71a55fa7 0000027c 00000288 00000000 ntdll!KiFastSystemCallRet 014dfc00 71ab2e67 00000001 014dfe80 014dfc78 mswsock+0x5fa7 014dfc50 771d714f 00000001 014dfe80 014dfc78 WS2_32!select+0xa7 014dffac 771d9283 014dffec 7c80b50b 00193110 WININET!GetUrlCacheEntryInfoExW+0x892 014dffb4 7c80b50b 00193110 71ab1404 0000005d WININET!InternetSetStatusCallback+0x1d7 014dffec 00000000 771d9276 00193110 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 00000000014dfad0 c0 e9 90 7c 33 40 a5 71 - 7c 02 00 00 01 00 00 00 ...|3@.q|....... 00000000014dfae0 f8 fa 4d 01 b0 fb 4d 01 - 80 fe 4d 01 a0 fb 4d 01 ..M...M...M...M. 00000000014dfaf0 46 5b e8 d4 16 b9 c5 01 - ff ff ff ff ff ff ff 7f F[.............. 00000000014dfb00 f0 8d 18 00 00 00 00 00 - 00 00 00 00 00 fc 4d 01 ..............M. 00000000014dfb10 a7 5f a5 71 7c 02 00 00 - 88 02 00 00 00 00 00 00 ._.q|........... 00000000014dfb20 04 00 00 00 7c fd 4d 01 - 68 41 19 00 78 fc 4d 01 ....|.M.hA..x.M. 00000000014dfb30 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000014dfb40 01 00 00 00 80 0f 05 fd - ff ff ff ff 00 00 00 00 ................ 00000000014dfb50 00 b0 fd 7f 1c 00 00 00 - 01 00 00 00 00 00 00 00 ................ 00000000014dfb60 00 00 00 00 0c 03 91 7c - 00 00 00 00 00 00 00 00 .......|........ 00000000014dfb70 34 fc 4d 01 40 fb 4d 01 - ff ff ff ff 1c 00 00 00 4.M.@.M......... 00000000014dfb80 f0 8d 18 00 bc fb 4d 01 - 78 fc 4d 01 7c fd 4d 01 ......M.x.M.|.M. 00000000014dfb90 00 00 00 00 a0 fb 4d 01 - 00 00 00 00 00 00 00 00 ......M......... 00000000014dfba0 80 0f 05 fd ff ff ff ff - 01 00 00 00 00 00 00 00 ................ 00000000014dfbb0 88 02 00 00 19 00 00 00 - 91 78 92 7c 90 02 00 00 .........x.|.... 00000000014dfbc0 69 75 92 7c 58 0b 1e 00 - 00 00 00 00 b0 96 8b 02 iu.|X........... 00000000014dfbd0 09 00 00 00 00 00 00 00 - e8 03 00 00 08 fc 4d 01 ..............M. 00000000014dfbe0 db 77 92 7c 15 34 00 00 - 24 fb 4d 01 0c 15 aa 71 .w.|.4..$.M....q 00000000014dfbf0 40 fc 4d 01 c8 71 a7 71 - 68 2e a5 71 ff ff ff ff @.M..q.qh..q.... 00000000014dfc00 50 fc 4d 01 67 2e ab 71 - 01 00 00 00 80 fe 4d 01 P.M.g..q......M. *----> State Dump for Thread Id 0x538 <----* eax=000000c0 ebx=00000000 ecx=7c800000 edx=00000000 esi=00138b44 edi=02080000 eip=7c90eb94 esp=015dff9c ebp=015dffb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 015dffb4 7c80b50b 00000000 02080000 00138b44 ntdll!KiFastSystemCallRet 015dffec 00000000 7c92798d 00000000 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 00000000015dff9c 5c d8 90 7c d4 79 92 7c - 01 00 00 00 ac ff 5d 01 \..|.y.|......]. 00000000015dffac 00 00 00 00 00 00 00 80 - ec ff 5d 01 0b b5 80 7c ..........]....| 00000000015dffbc 00 00 00 00 00 00 08 02 - 44 8b 13 00 00 00 00 00 ........D....... 00000000015dffcc 00 a0 fd 7f 00 06 7c 86 - c0 ff 5d 01 b8 68 40 85 ......|...]..h@. 00000000015dffdc ff ff ff ff f3 99 83 7c - 18 b5 80 7c 00 00 00 00 .......|...|.... 00000000015dffec 00 00 00 00 00 00 00 00 - 8d 79 92 7c 00 00 00 00 .........y.|.... 00000000015dfffc 00 00 00 00 5c 5c 5c 5c - 5c 5c 5c 5c 5c 5c 5c 5c ....\\\\\\\\\\\\ 00000000015e000c 5c 5c 5c 10 0b 1f 5c 5c - 5c 5c 5c 5c 5c 5c 5c 5c \\\...\\\\\\\\\\ 00000000015e001c 5c 5c 5c 5c 5c 5c 5c 5c - 5c 5c 5c 5c 5c 5c 5c 5c \\\\\\\\\\\\\\\\ 00000000015e002c 5c 5c 5c 5c 5c 5c 5c 5c - 5c 5c 5c 5c 5c 5c 5c 00 \\\\\\\\\\\\\\\. 00000000015e003c 5c 5c 5c 5c 5c 5c 5c 5c - 5c 5c 5c 5c 5c 5c 10 0c \\\\\\\\\\\\\\.. 00000000015e004c 22 17 27 5c 5c 5c 5c 5c - 5c 5c 5c 5c 5c 5c 5c 5c ".'\\\\\\\\\\\\\ 00000000015e005c 5c 5c 5c 5c 5c 5c 5c 5c - 5c 5c 5c 5c 5c 5c 5c 5c \\\\\\\\\\\\\\\\ 00000000015e006c 5c 5c 5c 5c 5c 5c 5c 5c - 5c 5c 5c 00 5c 5c 5c 5c \\\\\\\\\\\.\\\\ 00000000015e007c 5c 5c 5c 5c 5c 5c 5c 5c - 5c 10 0c 23 18 1b 3e 5c \\\\\\\\\..#..>\ 00000000015e008c 5c 5c 5c 5c 5c 5c 5c 5c - 5c 5c 5c 5c 5c 5c 5c 5c \\\\\\\\\\\\\\\\ 00000000015e009c 5c 5c 5c 5c 5c 5c 5c 5c - 5c 5c 5c 5c 5c 5c 5c 5c \\\\\\\\\\\\\\\\ 00000000015e00ac 5c 5c 5c 5c 5c 5c 5c 00 - 5c 5c 5c 5c 5c 5c 5c 5c \\\\\\\.\\\\\\\\ 00000000015e00bc 5c 5c 5c 5c 10 0c 23 19 - 1a 1e 41 5c 5c 00 00 00 \\\\..#...A\\... 00000000015e00cc 00 00 5c 5c 00 00 00 00 - 00 5c 00 00 00 00 00 00 ..\\.....\...... *----> State Dump for Thread Id 0x5c8 <----* eax=001be250 ebx=00000000 ecx=7ffd8000 edx=0015332c esi=001532f0 edi=00000100 eip=7c90eb94 esp=017dfe1c ebp=017dff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 017dff80 77e76c22 017dffa8 77e76a3b 001532f0 ntdll!KiFastSystemCallRet 017dff88 77e76a3b 001532f0 00000040 00000000 RPCRT4!I_RpcBCacheFree+0x5ea 017dffa8 77e76c0a 00164380 017dffec 7c80b50b RPCRT4!I_RpcBCacheFree+0x403 017dffb4 7c80b50b 00198098 00000040 00000000 RPCRT4!I_RpcBCacheFree+0x5d2 017dffec 00000000 77e76bf0 00198098 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 00000000017dfe1c 99 e3 90 7c 03 67 e7 77 - 1c 02 00 00 70 ff 7d 01 ...|.g.w....p.}. 00000000017dfe2c 00 00 00 00 e0 0c 1b 00 - 54 ff 7d 01 38 26 15 e1 ........T.}.8&.. 00000000017dfe3c c4 cb ff b9 20 26 15 e1 - 24 26 15 e1 80 f9 7b 86 .... &..$&....{. 00000000017dfe4c 10 13 5b 80 02 ff 36 85 - 00 00 00 00 80 f9 7b 86 ..[...6.......{. 00000000017dfe5c 89 01 00 00 88 01 00 00 - ff 1f ee 76 48 92 4e 85 ...........vH.N. 00000000017dfe6c 01 00 00 00 5e 03 00 00 - 5d 03 00 00 01 00 00 00 ....^...]....... 00000000017dfe7c 00 00 00 00 90 92 4e 85 - 98 cb ff b9 00 00 00 00 ......N......... 00000000017dfe8c 06 00 00 00 06 00 00 00 - 90 92 4e 85 02 00 00 00 ..........N..... 00000000017dfe9c 00 00 00 00 20 26 15 e1 - 90 92 4e 85 bc cb ff b9 .... &....N..... 00000000017dfeac 00 29 60 80 00 8f 04 e1 - a4 02 00 00 30 ff 36 85 .)`.........0.6. 00000000017dfebc 00 8f 04 e1 19 00 02 00 - a4 02 00 00 00 00 00 00 ................ 00000000017dfecc 10 8f 04 e1 48 d5 1c e1 - 21 26 15 e1 d8 cb ff b9 ....H...!&...... 00000000017dfedc 34 30 60 80 00 8f 04 e1 - 48 d5 1c e1 30 ff 36 85 40`.....H...0.6. 00000000017dfeec 00 00 00 00 19 00 02 00 - ec cb ff b9 fe bd 62 80 ..............b. 00000000017dfefc 78 00 0a e2 23 00 00 00 - 74 f8 0a e2 80 cc ff b9 x...#...t....... 00000000017dff0c 3c cc ff b9 d6 4d 63 80 - 44 8f 3f 85 24 cc ff b9 <....Mc.D.?.$... 00000000017dff1c d9 9a 4f 80 e1 9a 4f 80 - 14 8f 3f 85 a8 8d 3f 85 ..O...O...?...?. 00000000017dff2c dc 8d 3f 85 80 ff 7d 01 - 99 66 e7 77 4c ff 7d 01 ..?...}..f.wL.}. 00000000017dff3c a9 66 e7 77 ed 10 90 7c - 40 40 17 00 98 80 19 00 .f.w...|@@...... 00000000017dff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> State Dump for Thread Id 0x7d8 <----* eax=00000000 ebx=c0000000 ecx=7ffd7000 edx=001d9eb8 esi=00000000 edi=71a87558 eip=7c90eb94 esp=018dff7c ebp=018dffb4 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 018dffb4 7c80b50b 71a5d8ec 016df910 7c90ee18 ntdll!KiFastSystemCallRet 018dffec 00000000 71a5d5af 001a0a30 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 00000000018dff7c 1b e3 90 7c 09 d6 a5 71 - b4 03 00 00 bc ff 8d 01 ...|...q........ 00000000018dff8c b0 ff 8d 01 a4 ff 8d 01 - 50 d6 a5 71 10 f9 6d 01 ........P..q..m. 00000000018dff9c 18 ee 90 7c 30 0a 1a 00 - 00 00 00 00 00 00 00 00 ...|0........... 00000000018dffac 00 00 a5 71 f8 0e 8f 02 - ec ff 8d 01 0b b5 80 7c ...q...........| 00000000018dffbc ec d8 a5 71 10 f9 6d 01 - 18 ee 90 7c 30 0a 1a 00 ...q..m....|0... 00000000018dffcc 00 70 fd 7f 00 06 7c 86 - c0 ff 8d 01 50 c8 29 85 .p....|.....P.). 00000000018dffdc ff ff ff ff f3 99 83 7c - 18 b5 80 7c 00 00 00 00 .......|...|.... 00000000018dffec 00 00 00 00 00 00 00 00 - af d5 a5 71 30 0a 1a 00 ...........q0... 00000000018dfffc 00 00 00 00 7f 00 8e 01 - 00 00 00 00 07 00 00 00 ................ 00000000018e000c 00 00 00 0a 00 00 00 00 - 00 00 00 00 00 06 00 00 ................ 00000000018e001c 00 00 00 06 00 00 00 00 - 00 1f 00 00 00 00 00 00 ................ 00000000018e002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000018e003c 00 00 00 00 00 00 00 00 - 01 01 0c 00 00 00 00 00 ................ 00000000018e004c 00 00 00 00 00 00 01 0a - 00 00 00 00 00 00 00 00 ................ 00000000018e005c 00 01 00 00 00 00 01 01 - 02 00 01 08 00 00 00 00 ................ 00000000018e006c 00 00 00 00 00 00 01 01 - 03 00 00 00 00 00 00 00 ................ 00000000018e007c 00 00 00 02 00 00 00 00 - 00 01 01 01 01 01 10 00 ................ 00000000018e008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 05 00 ................ 00000000018e009c 00 00 00 01 05 00 00 00 - 00 01 00 01 00 00 00 00 ................ 00000000018e00ac 08 00 00 00 00 00 00 00 - 04 00 00 00 04 00 00 00 ................ *----> State Dump for Thread Id 0x684 <----* eax=00000b50 ebx=7c901005 ecx=0000013f edx=00000b50 esi=00000400 edi=00000000 eip=7c90eb94 esp=01ddff14 ebp=01ddff78 iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01ddff78 7c802542 00000400 000927c0 00000000 ntdll!KiFastSystemCallRet 01ddff8c 7d539575 00000400 000927c0 7726d6b0 kernel32!WaitForSingleObject+0x12 01ddffb4 7c80b50b 018e2900 7726d6b0 7726d67c mshtml+0x99575 01ddffec 00000000 7d586c9b 018e2900 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 0000000001ddff14 c0 e9 90 7c db 25 80 7c - 00 04 00 00 00 00 00 00 ...|.%.|........ 0000000001ddff24 48 ff dd 01 00 00 00 00 - 00 29 8e 01 05 10 90 7c H........).....| 0000000001ddff34 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001ddff44 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 d0 fd 7f .....D_......... 0000000001ddff54 00 60 fd 7f 48 ff dd 01 - 40 0d 8f 01 28 ff dd 01 .`..H...@...(... 0000000001ddff64 a7 0f 51 7d dc ff dd 01 - f3 99 83 7c 08 26 80 7c ..Q}.......|.&.| 0000000001ddff74 00 00 00 00 8c ff dd 01 - 42 25 80 7c 00 04 00 00 ........B%.|.... 0000000001ddff84 c0 27 09 00 00 00 00 00 - b4 ff dd 01 75 95 53 7d .'..........u.S} 0000000001ddff94 00 04 00 00 c0 27 09 00 - b0 d6 26 77 00 29 8e 01 .....'....&w.).. 0000000001ddffa4 00 29 8e 01 d6 6c 58 7d - 7c d6 26 77 a8 6c 58 7d .)...lX}|.&w.lX} 0000000001ddffb4 ec ff dd 01 0b b5 80 7c - 00 29 8e 01 b0 d6 26 77 .......|.)....&w 0000000001ddffc4 7c d6 26 77 00 29 8e 01 - 00 60 fd 7f 00 06 7c 86 |.&w.)...`....|. 0000000001ddffd4 c0 ff dd 01 50 c8 29 85 - ff ff ff ff f3 99 83 7c ....P.)........| 0000000001ddffe4 18 b5 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 ...|............ 0000000001ddfff4 9b 6c 58 7d 00 29 8e 01 - 00 00 00 00 c8 00 00 00 .lX}.).......... 0000000001de0004 22 01 00 00 ff ee ff ee - 02 00 00 00 00 00 00 00 "............... 0000000001de0014 00 fe 00 00 00 00 10 00 - 00 20 00 00 00 02 00 00 ......... ...... 0000000001de0024 00 20 00 00 92 01 00 00 - ff ef fd 7f 0e 00 08 06 . .............. 0000000001de0034 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001de0044 98 05 de 01 0f 00 00 00 - f8 ff ff ff 50 00 de 01 ............P... *----> State Dump for Thread Id 0x134 <----* eax=054a0888 ebx=7c901005 ecx=020346c4 edx=00000000 esi=00000488 edi=00000000 eip=7c90eb94 esp=0233ff14 ebp=0233ff78 iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0233ff78 7c802542 00000488 000927c0 00000000 ntdll!KiFastSystemCallRet 0233ff8c 7d539575 00000488 000927c0 772d1808 kernel32!WaitForSingleObject+0x12 0233ffb4 7c80b50b 01902b00 772d1808 00000004 mshtml+0x99575 0233ffec 00000000 7d586c9b 01902b00 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000233ff14 c0 e9 90 7c db 25 80 7c - 88 04 00 00 00 00 00 00 ...|.%.|........ 000000000233ff24 48 ff 33 02 00 00 00 00 - 00 2b 90 01 05 10 90 7c H.3......+.....| 000000000233ff34 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000233ff44 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 d0 fd 7f .....D_......... 000000000233ff54 00 40 fd 7f 48 ff 33 02 - 6c ff 33 02 28 ff 33 02 .@..H.3.l.3.(.3. 000000000233ff64 c0 70 92 02 dc ff 33 02 - f3 99 83 7c 08 26 80 7c .p....3....|.&.| 000000000233ff74 00 00 00 00 8c ff 33 02 - 42 25 80 7c 88 04 00 00 ......3.B%.|.... 000000000233ff84 c0 27 09 00 00 00 00 00 - b4 ff 33 02 75 95 53 7d .'........3.u.S} 000000000233ff94 88 04 00 00 c0 27 09 00 - 08 18 2d 77 00 2b 90 01 .....'....-w.+.. 000000000233ffa4 00 2b 90 01 d6 6c 58 7d - 04 00 00 00 a8 6c 58 7d .+...lX}.....lX} 000000000233ffb4 ec ff 33 02 0b b5 80 7c - 00 2b 90 01 08 18 2d 77 ..3....|.+....-w 000000000233ffc4 04 00 00 00 00 2b 90 01 - 00 40 fd 7f 00 06 7c 86 .....+...@....|. 000000000233ffd4 c0 ff 33 02 d0 bd 38 85 - ff ff ff ff f3 99 83 7c ..3...8........| 000000000233ffe4 18 b5 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 ...|............ 000000000233fff4 9b 6c 58 7d 00 2b 90 01 - 00 00 00 00 00 00 00 00 .lX}.+.......... 0000000002340004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002340014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002340024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002340034 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002340044 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> State Dump for Thread Id 0x35c <----* eax=72d230e8 ebx=0289fef8 ecx=000000d5 edx=001d7240 esi=00000000 edi=7ffdd000 eip=7c90eb94 esp=0289fed0 ebp=0289ff6c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\wdmaud.drv - ChildEBP RetAddr Args to Child 0289ff6c 7c809c86 00000002 0289ffa4 00000000 ntdll!KiFastSystemCallRet 0289ff88 72d2312a 00000002 0289ffa4 00000000 kernel32!WaitForMultipleObjects+0x18 0289ffb4 7c80b50b 00000000 00000000 00150000 wdmaud!midMessage+0x348 0289ffec 00000000 72d230e8 00000000 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000289fed0 ab e9 90 7c f2 94 80 7c - 02 00 00 00 f8 fe 89 02 ...|...|........ 000000000289fee0 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000289fef0 00 00 00 00 00 00 00 00 - bc 04 00 00 b8 04 00 00 ................ 000000000289ff00 04 fe 38 81 00 00 00 00 - 20 3c 27 ba 0f 15 51 80 ..8..... <'...Q. 000000000289ff10 7c 0c 00 00 bc 91 2e 85 - 14 00 00 00 01 00 00 00 |............... 000000000289ff20 00 00 00 00 00 00 00 00 - 10 00 00 00 54 90 2e 85 ............T... 000000000289ff30 37 aa 01 00 8e 83 63 80 - 00 d0 fd 7f 00 f0 fa 7f 7.....c......... 000000000289ff40 00 f0 fa 7f 00 00 00 00 - f8 fe 89 02 00 00 00 00 ................ 000000000289ff50 02 00 00 00 ec fe 89 02 - 00 00 00 00 dc ff 89 02 ................ 000000000289ff60 f3 99 83 7c 90 95 80 7c - 00 00 00 00 88 ff 89 02 ...|...|........ 000000000289ff70 86 9c 80 7c 02 00 00 00 - a4 ff 89 02 00 00 00 00 ...|............ 000000000289ff80 ff ff ff ff 00 00 00 00 - b4 ff 89 02 2a 31 d2 72 ............*1.r 000000000289ff90 02 00 00 00 a4 ff 89 02 - 00 00 00 00 ff ff ff ff ................ 000000000289ffa0 00 00 15 00 bc 04 00 00 - b8 04 00 00 00 00 00 00 ................ 000000000289ffb0 dc e2 90 7c ec ff 89 02 - 0b b5 80 7c 00 00 00 00 ...|.......|.... 000000000289ffc0 00 00 00 00 00 00 15 00 - 00 00 00 00 00 f0 fa 7f ................ 000000000289ffd0 00 06 7c 86 c0 ff 89 02 - d0 bd 38 85 ff ff ff ff ..|.......8..... 000000000289ffe0 f3 99 83 7c 18 b5 80 7c - 00 00 00 00 00 00 00 00 ...|...|........ 000000000289fff0 00 00 00 00 e8 30 d2 72 - 00 00 00 00 00 00 00 00 .....0.r........ 00000000028a0000 08 00 00 00 00 01 00 01 - ee ff ee ff 00 00 00 00 ................ *----> State Dump for Thread Id 0x310 <----* eax=7d586c9b ebx=0033ab2c ecx=0000000d edx=7c9106eb esi=00000520 edi=00000000 eip=7c90eb94 esp=0312ff08 ebp=0312ff6c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0312ff6c 7c802542 00000520 ffffffff 00000000 ntdll!KiFastSystemCallRet 0312ff80 7d66a4ac 00000520 ffffffff ffffffff kernel32!WaitForSingleObject+0x12 0312ffa4 7d586cd6 7c910732 7d586ca8 0312ffec mshtml+0x1ca4ac 0312ffb4 7c80b50b 0191d980 ffffffff 7c910732 mshtml+0xe6cd6 0312ffec 00000000 7d586c9b 0191d980 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000312ff08 c0 e9 90 7c db 25 80 7c - 20 05 00 00 00 00 00 00 ...|.%.| ....... 000000000312ff18 00 00 00 00 c4 d9 91 01 - 80 d9 91 01 2c ab 33 00 ............,.3. 000000000312ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000312ff38 10 00 00 00 d0 37 f8 ff - ff ff ff ff 00 d0 fd 7f .....7.......... 000000000312ff48 00 e0 fa 7f 00 00 00 00 - 02 01 00 00 1c ff 12 03 ................ 000000000312ff58 fb cd 50 7d dc ff 12 03 - f3 99 83 7c 08 26 80 7c ..P}.......|.&.| 000000000312ff68 00 00 00 00 80 ff 12 03 - 42 25 80 7c 20 05 00 00 ........B%.| ... 000000000312ff78 ff ff ff ff 00 00 00 00 - a4 ff 12 03 ac a4 66 7d ..............f} 000000000312ff88 20 05 00 00 ff ff ff ff - ff ff ff ff 80 d9 91 01 ............... 000000000312ff98 80 d9 91 01 00 00 00 00 - ff ff ff ff b4 ff 12 03 ................ 000000000312ffa8 d6 6c 58 7d 32 07 91 7c - a8 6c 58 7d ec ff 12 03 .lX}2..|.lX}.... 000000000312ffb8 0b b5 80 7c 80 d9 91 01 - ff ff ff ff 32 07 91 7c ...|........2..| 000000000312ffc8 80 d9 91 01 00 e0 fa 7f - 00 06 7c 86 c0 ff 12 03 ..........|..... 000000000312ffd8 d0 bd 38 85 ff ff ff ff - f3 99 83 7c 18 b5 80 7c ..8........|...| 000000000312ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 9b 6c 58 7d .............lX} 000000000312fff8 80 d9 91 01 00 00 00 00 - 50 00 15 00 50 00 15 00 ........P...P... 0000000003130008 00 00 00 00 00 00 00 00 - 00 c0 26 00 00 c0 26 00 ..........&...&. 0000000003130018 f8 0f 00 00 00 0b 00 00 - 00 00 00 00 08 00 00 00 ................ 0000000003130028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003130038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> State Dump for Thread Id 0x6c4 <----* eax=77e76bf0 ebx=00000000 ecx=00000008 edx=00dd30a8 esi=001532f0 edi=00000100 eip=7c90eb94 esp=012afe1c ebp=012aff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 012aff80 77e76c22 012affa8 77e76a3b 001532f0 ntdll!KiFastSystemCallRet 012aff88 77e76a3b 001532f0 00000000 00dd0178 RPCRT4!I_RpcBCacheFree+0x5ea 012affa8 77e76c0a 00164380 012affec 7c80b50b RPCRT4!I_RpcBCacheFree+0x403 012affb4 7c80b50b 001f39d8 00000000 00dd0178 RPCRT4!I_RpcBCacheFree+0x5d2 012affec 00000000 77e76bf0 001f39d8 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 00000000012afe1c 99 e3 90 7c 03 67 e7 77 - 1c 02 00 00 70 ff 2a 01 ...|.g.w....p.*. 00000000012afe2c 00 00 00 00 c0 2a 8b 02 - 54 ff 2a 01 00 8f 04 e1 .....*..T.*..... 00000000012afe3c 08 00 02 00 70 06 00 00 - 00 00 00 00 ec 5b c3 b9 ....p........[.. 00000000012afe4c 70 2a 4f e2 02 5b c3 b9 - 00 00 5e 80 a8 1c 00 e1 p*O..[....^..... 00000000012afe5c 88 cb 57 e2 ec 5b c3 b9 - 80 cb 57 e2 00 00 00 02 ..W..[....W..... 00000000012afe6c 02 00 00 00 c9 43 5e 80 - 02 00 00 00 0c 00 00 00 .....C^......... 00000000012afe7c 88 cb 57 e2 00 00 00 00 - 00 00 00 00 48 1d 09 e1 ..W.........H... 00000000012afe8c ec 5b c3 b9 00 00 00 02 - 14 5c c3 b9 55 49 5e 80 .[.......\..UI^. 00000000012afe9c 48 1d 09 e1 90 8b 82 e2 - 64 cb 57 e2 70 2a 4f e2 H.......d.W.p*O. 00000000012afeac 01 00 00 00 00 00 00 00 - 14 5c c3 b9 5b 49 5e 80 .........\..[I^. 00000000012afebc 48 1d 09 e1 d0 5c c3 b9 - 88 5c c3 b9 7a 4b 5e 80 H....\...\..zK^. 00000000012afecc 00 00 00 02 00 00 00 00 - 00 e9 17 00 00 e9 17 00 ................ 00000000012afedc 00 00 00 00 00 00 00 00 - d0 5c c3 b9 88 5c c3 b9 .........\...\.. 00000000012afeec 48 1d 09 e1 70 2a 4f e2 - 90 8b 82 e2 00 00 00 00 H...p*O......... 00000000012afefc 68 5c c3 b9 64 cb 57 e2 - 01 00 00 00 28 5c c3 01 h\..d.W.....(\.. 00000000012aff0c 00 00 00 00 00 00 00 00 - cc 4c 73 86 24 5c c3 b9 .........Ls.$\.. 00000000012aff1c d9 9a 4f 80 e1 9a 4f 80 - 9c 4c 73 86 30 4b 73 86 ..O...O..Ls.0Ks. 00000000012aff2c 64 4b 73 86 80 ff 2a 01 - 99 66 e7 77 4c ff 2a 01 dKs...*..f.wL.*. 00000000012aff3c a9 66 e7 77 ed 10 90 7c - 68 c3 3b 03 d8 39 1f 00 .f.w...|h.;..9.. 00000000012aff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> State Dump for Thread Id 0x588 <----* eax=036ffe70 ebx=00000000 ecx=7c911902 edx=7c97c080 esi=7c97c380 edi=7c97c3a0 eip=7c90eb94 esp=036fff70 ebp=036fffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 036fffb4 7c80b50b 00000000 00000000 001ae520 ntdll!KiFastSystemCallRet 036fffec 00000000 7c910760 00000000 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 00000000036fff70 1b e3 90 7c 9d 07 91 7c - 90 02 00 00 ac ff 6f 03 ...|...|......o. 00000000036fff80 b0 ff 6f 03 98 ff 6f 03 - a0 ff 6f 03 00 00 00 00 ..o...o...o..... 00000000036fff90 20 e5 1a 00 00 00 00 00 - 00 00 00 00 f0 7f 1e 00 ............... 00000000036fffa0 00 7c 28 e8 ff ff ff ff - 35 0c 6d 80 69 75 92 7c .|(.....5.m.iu.| 00000000036fffb0 10 8d 1d 00 ec ff 6f 03 - 0b b5 80 7c 00 00 00 00 ......o....|.... 00000000036fffc0 00 00 00 00 20 e5 1a 00 - 00 00 00 00 00 90 fd 7f .... ........... 00000000036fffd0 00 06 7c 86 c0 ff 6f 03 - f0 8c 3e 85 ff ff ff ff ..|...o...>..... 00000000036fffe0 f3 99 83 7c 18 b5 80 7c - 00 00 00 00 00 00 00 00 ...|...|........ 00000000036ffff0 00 00 00 00 60 07 91 7c - 00 00 00 00 00 00 00 00 ....`..|........ 0000000003700000 80 03 00 00 00 10 00 00 - 99 9e 36 00 00 00 00 00 ..........6..... 0000000003700010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003700020 ea 03 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003700030 0c 00 00 00 00 00 00 00 - 00 00 00 00 02 00 00 00 ................ 0000000003700040 01 00 00 00 02 00 00 00 - 00 00 00 00 05 00 00 00 ................ 0000000003700050 00 00 00 00 02 00 00 00 - 01 00 00 00 00 00 00 00 ................ 0000000003700060 68 0e 70 03 68 00 70 03 - 00 00 00 00 00 00 00 00 h.p.h.p......... 0000000003700070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003700080 00 00 00 00 00 00 00 00 - 00 00 00 00 50 13 b1 02 ............P... 0000000003700090 e8 6b b0 02 80 ee b1 02 - 00 00 00 00 00 00 00 00 .k.............. 00000000037000a0 a8 0f b2 02 00 00 00 00 - 10 f0 74 02 d8 8e 74 02 ..........t...t. *----> State Dump for Thread Id 0xa8 <----* eax=000000a8 ebx=00000000 ecx=00178094 edx=001780a0 esi=7c97c380 edi=7c97c3a0 eip=7c90eb94 esp=03bfff70 ebp=03bfffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 03bfffb4 7c80b50b 00000000 00020260 00000000 ntdll!KiFastSystemCallRet 03bfffec 00000000 7c910760 00000000 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 0000000003bfff70 1b e3 90 7c 9d 07 91 7c - 90 02 00 00 ac ff bf 03 ...|...|........ 0000000003bfff80 b0 ff bf 03 98 ff bf 03 - a0 ff bf 03 60 02 02 00 ............`... 0000000003bfff90 00 00 00 00 00 00 00 00 - 00 00 00 00 78 87 1a 00 ............x... 0000000003bfffa0 00 7c 28 e8 ff ff ff ff - 35 0c 6d 80 69 75 92 7c .|(.....5.m.iu.| 0000000003bfffb0 10 8d 1d 00 ec ff bf 03 - 0b b5 80 7c 00 00 00 00 ...........|.... 0000000003bfffc0 60 02 02 00 00 00 00 00 - 00 00 00 00 00 50 fd 7f `............P.. 0000000003bfffd0 00 06 7c 86 c0 ff bf 03 - f8 d2 31 85 ff ff ff ff ..|.......1..... 0000000003bfffe0 f3 99 83 7c 18 b5 80 7c - 00 00 00 00 00 00 00 00 ...|...|........ 0000000003bffff0 00 00 00 00 60 07 91 7c - 00 00 00 00 00 00 00 00 ....`..|........ 0000000003c00000 00 01 02 03 04 07 00 00 - 00 01 02 02 03 04 00 00 ................ 0000000003c00010 00 01 05 02 02 03 00 00 - 08 00 01 05 02 02 00 00 ................ 0000000003c00020 08 06 00 01 01 01 00 00 - 08 08 08 00 00 00 00 00 ................ 0000000003c00030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003c00040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003c00050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003c00060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003c00070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003c00080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003c00090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003c000a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> State Dump for Thread Id 0x308 <----* eax=6bddad26 ebx=0488033c ecx=7c910732 edx=00150000 esi=00000000 edi=0488033c eip=7c90eb94 esp=0452ff30 ebp=0452ff5c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\dxtrans.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0452ff5c 6bddad62 00000698 0452ff84 0452ff88 ntdll!KiFastSystemCallRet 0452ffb4 7c80b50b 0488033c ffffffff 7c90fb71 dxtrans+0xad62 0452ffec 00000000 6bddad26 0488033c 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000452ff30 1b e3 90 7c d9 cb 80 7c - 98 06 00 00 88 ff 52 04 ...|...|......R. 000000000452ff40 74 ff 52 04 54 ff 52 04 - 00 00 00 00 71 fb 90 7c t.R.T.R.....q..| 000000000452ff50 3c 03 88 04 3c 03 88 04 - 02 00 00 00 b4 ff 52 04 <...<.........R. 000000000452ff60 62 ad dd 6b 98 06 00 00 - 84 ff 52 04 88 ff 52 04 b..k......R...R. 000000000452ff70 8c ff 52 04 ff ff ff ff - ff ff ff ff 71 fb 90 7c ..R.........q..| 000000000452ff80 3c 03 88 04 01 cc 41 85 - 00 00 00 00 20 20 74 86 <.....A..... t. 000000000452ff90 3c 03 88 04 00 00 00 00 - 00 00 00 00 78 ff 52 04 <...........x.R. 000000000452ffa0 14 01 50 80 dc ff 52 04 - 13 4e df 6b 50 ae dd 6b ..P...R..N.kP..k 000000000452ffb0 ff ff ff ff ec ff 52 04 - 0b b5 80 7c 3c 03 88 04 ......R....|<... 000000000452ffc0 ff ff ff ff 71 fb 90 7c - 3c 03 88 04 00 d0 fa 7f ....q..|<....... 000000000452ffd0 00 06 7c 86 c0 ff 52 04 - 58 ec 3e 85 ff ff ff ff ..|...R.X.>..... 000000000452ffe0 f3 99 83 7c 18 b5 80 7c - 00 00 00 00 00 00 00 00 ...|...|........ 000000000452fff0 00 00 00 00 26 ad dd 6b - 3c 03 88 04 00 00 00 00 ....&..k<....... 0000000004530000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004530010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004530020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004530030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004530040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004530050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004530060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> State Dump for Thread Id 0x2a0 <----* eax=6bddad26 ebx=0488033c ecx=7c910732 edx=00150000 esi=00000000 edi=0488033c eip=7c90eb94 esp=0462ff30 ebp=0462ff5c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0462ff5c 6bddad62 00000698 0462ff84 0462ff88 ntdll!KiFastSystemCallRet 0462ffb4 7c80b50b 0488033c ffffffff 7c90fb71 dxtrans+0xad62 0462ffec 00000000 6bddad26 0488033c 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000462ff30 1b e3 90 7c d9 cb 80 7c - 98 06 00 00 88 ff 62 04 ...|...|......b. 000000000462ff40 74 ff 62 04 54 ff 62 04 - 00 00 00 00 71 fb 90 7c t.b.T.b.....q..| 000000000462ff50 3c 03 88 04 3c 03 88 04 - 02 00 00 00 b4 ff 62 04 <...<.........b. 000000000462ff60 62 ad dd 6b 98 06 00 00 - 84 ff 62 04 88 ff 62 04 b..k......b...b. 000000000462ff70 8c ff 62 04 ff ff ff ff - ff ff ff ff 71 fb 90 7c ..b.........q..| 000000000462ff80 3c 03 88 04 01 00 00 00 - 00 00 00 00 20 20 74 86 <........... t. 000000000462ff90 3c 03 88 04 00 00 00 00 - 00 00 00 00 78 ff 62 04 <...........x.b. 000000000462ffa0 14 01 50 80 dc ff 62 04 - 13 4e df 6b 50 ae dd 6b ..P...b..N.kP..k 000000000462ffb0 ff ff ff ff ec ff 62 04 - 0b b5 80 7c 3c 03 88 04 ......b....|<... 000000000462ffc0 ff ff ff ff 71 fb 90 7c - 3c 03 88 04 00 c0 fa 7f ....q..|<....... 000000000462ffd0 00 06 7c 86 c0 ff 62 04 - f8 d2 31 85 ff ff ff ff ..|...b...1..... 000000000462ffe0 f3 99 83 7c 18 b5 80 7c - 00 00 00 00 00 00 00 00 ...|...|........ 000000000462fff0 00 00 00 00 26 ad dd 6b - 3c 03 88 04 00 00 00 00 ....&..k<....... 0000000004630000 07 c1 00 00 1f f1 00 00 - 3f f9 00 00 7f fd 00 00 ........?....... 0000000004630010 7f fd 00 00 ff ff 00 00 - ff ff 00 00 ff ff 00 00 ................ 0000000004630020 ff ff 00 00 ff ff 00 00 - 7f fd 00 00 7f fd 00 00 ................ 0000000004630030 3f f9 00 00 1f f1 00 00 - 07 c1 00 00 00 00 00 00 ?............... 0000000004630040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004630050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004630060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> State Dump for Thread Id 0x4dc <----* eax=03885000 ebx=00000000 ecx=0017fc90 edx=0000007f esi=7c97c380 edi=7c97c3a0 eip=7c90eb94 esp=0538ff70 ebp=0538ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 function: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0538ffb4 7c80b50b 00000000 00000000 02970fc0 ntdll!KiFastSystemCallRet 0538ffec 00000000 7c910760 00000000 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000538ff70 1b e3 90 7c 9d 07 91 7c - 90 02 00 00 ac ff 38 05 ...|...|......8. 000000000538ff80 b0 ff 38 05 98 ff 38 05 - a0 ff 38 05 00 00 00 00 ..8...8...8..... 000000000538ff90 c0 0f 97 02 00 00 00 00 - 00 00 00 00 b0 96 8b 02 ................ 000000000538ffa0 00 7c 28 e8 ff ff ff ff - 35 0c 6d 80 69 75 92 7c .|(.....5.m.iu.| 000000000538ffb0 58 0b 1e 00 ec ff 38 05 - 0b b5 80 7c 00 00 00 00 X.....8....|.... 000000000538ffc0 00 00 00 00 c0 0f 97 02 - 00 00 00 00 00 b0 fa 7f ................ 000000000538ffd0 00 06 7c 86 c0 ff 38 05 - 10 c6 42 85 ff ff ff ff ..|...8...B..... 000000000538ffe0 f3 99 83 7c 18 b5 80 7c - 00 00 00 00 00 00 00 00 ...|...|........ 000000000538fff0 00 00 00 00 60 07 91 7c - 00 00 00 00 00 00 00 00 ....`..|........ 0000000005390000 7f ff 00 00 ff ff 00 00 - ff ff 00 00 ff ff 00 00 ................ 0000000005390010 ff ff 00 00 ff ff 00 00 - ff ff 00 00 ff ff 00 00 ................ 0000000005390020 ff ff 00 00 ff ff 00 00 - ff ff 00 00 ff ff 00 00 ................ 0000000005390030 ff ff 00 00 ff f7 00 00 - ff e7 00 00 ff c7 00 00 ................ 0000000005390040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005390050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005390060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005390070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005390080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005390090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000053900a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ Application exception occurred: App: C:\Program Files\Internet Explorer\iexplore.exe (pid=136) When: 9/14/2005 @ 04:11:51.281 Exception number: c0000005 (access violation) *----> System Information <----* Computer Name: MEKFX55 User Name: Mek Terminal Session Id: 0 Number of Processors: 1 Processor Type: x86 Family 15 Model 7 Stepping 10 Windows Version: 5.1 Current Build: 2600 Service Pack: 2 Current Type: Uniprocessor Free Registered Organization: Home Registered Owner: Mekanic *----> Task List <----* 0 System Process 4 System 564 smss.exe 620 csrss.exe 644 winlogon.exe 688 services.exe 700 lsass.exe 852 svchost.exe 900 svchost.exe 1004 svchost.exe 1052 svchost.exe 1172 svchost.exe 1384 spoolsv.exe 1548 Explorer.EXE 1760 RunDll32.exe 1860 LVCOMSX.EXE 1868 LogiTray.exe 1992 SetPoint.exe 236 DKService.exe 256 KHALMNPR.EXE 364 nvsvc32.exe 416 svchost.exe 444 FxSvr2.exe 136 iexplore.exe 332 drwtsn32.exe *----> Module List <----* (0000000000400000 - 0000000000419000: C:\Program Files\Internet Explorer\iexplore.exe (0000000000c30000 - 0000000000c38000: C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx (0000000000e40000 - 0000000001105000: C:\WINDOWS\system32\xpsp2res.dll (0000000001310000 - 0000000001398000: C:\WINDOWS\system32\shdoclc.dll (0000000001d90000 - 0000000001dab000: C:\PROGRA~1\MSI\LIVEUP~1\MSIDev.ocx (0000000003140000 - 0000000003157000: C:\WINDOWS\system32\odbcint.dll (0000000003780000 - 0000000003795000: C:\PROGRA~1\MSI\LIVEUP~1\Glm7x.dll (0000000003de0000 - 0000000003f87000: C:\WINDOWS\system32\macromed\flash\Flash.ocx (0000000010000000 - 000000001000d000: C:\Program Files\Logitech\SetPoint\GameHook.dll (0000000010100000 - 000000001010e000: C:\Program Files\Logitech\SetPoint\lgscroll.dll (0000000020000000 - 0000000020012000: C:\WINDOWS\system32\browselc.dll (0000000032520000 - 0000000032532000: C:\Program Files\Microsoft Office\Office10\msohev.dll (000000004d4f0000 - 000000004d548000: C:\WINDOWS\system32\WINHTTP.dll (000000005ad70000 - 000000005ada8000: C:\WINDOWS\system32\uxtheme.dll (000000005b860000 - 000000005b8b4000: C:\WINDOWS\system32\NETAPI32.dll (000000005d090000 - 000000005d127000: C:\WINDOWS\system32\comctl32.dll (000000005e310000 - 000000005e31c000: C:\WINDOWS\system32\pngfilt.dll (000000005ff20000 - 000000005ff46000: C:\WINDOWS\system32\MSRATING.dll (000000005ff50000 - 000000005ff61000: C:\WINDOWS\system32\msratelc.dll (00000000662b0000 - 0000000066308000: C:\WINDOWS\system32\hnetcfg.dll (0000000066880000 - 000000006688c000: C:\WINDOWS\system32\ImgUtil.dll (000000006bdd0000 - 000000006be05000: C:\WINDOWS\system32\dxtrans.dll (000000006be10000 - 000000006be6a000: C:\WINDOWS\system32\dxtmsft.dll (000000006d430000 - 000000006d43a000: C:\WINDOWS\system32\ddrawex.dll (0000000071a50000 - 0000000071a8f000: C:\WINDOWS\system32\mswsock.dll (0000000071a90000 - 0000000071a98000: C:\WINDOWS\System32\wshtcpip.dll (0000000071aa0000 - 0000000071aa8000: C:\WINDOWS\system32\WS2HELP.dll (0000000071ab0000 - 0000000071ac7000: C:\WINDOWS\system32\WS2_32.dll (0000000071ad0000 - 0000000071ad9000: C:\WINDOWS\system32\wsock32.dll (0000000071b20000 - 0000000071b32000: C:\WINDOWS\system32\MPR.dll (0000000071bf0000 - 0000000071c03000: C:\WINDOWS\System32\SAMLIB.dll (0000000071c10000 - 0000000071c1e000: C:\WINDOWS\System32\ntlanman.dll (0000000071c80000 - 0000000071c87000: C:\WINDOWS\System32\NETRAP.dll (0000000071c90000 - 0000000071cd0000: C:\WINDOWS\System32\NETUI1.dll (0000000071cd0000 - 0000000071ce7000: C:\WINDOWS\System32\NETUI0.dll (0000000071d40000 - 0000000071d5c000: C:\WINDOWS\system32\ACTXPRXY.DLL (00000000722b0000 - 00000000722b5000: C:\WINDOWS\system32\sensapi.dll (0000000072d10000 - 0000000072d18000: C:\WINDOWS\system32\msacm32.drv (0000000072d20000 - 0000000072d29000: C:\WINDOWS\system32\wdmaud.drv (0000000073300000 - 0000000073367000: C:\WINDOWS\system32\vbscript.dll (0000000073760000 - 00000000737a9000: C:\WINDOWS\system32\DDRAW.dll (0000000073ba0000 - 0000000073bb3000: C:\WINDOWS\system32\sti.dll (0000000073bc0000 - 0000000073bc6000: C:\WINDOWS\system32\DCIMAN32.dll (0000000073dd0000 - 0000000073ece000: C:\WINDOWS\system32\MFC42.DLL (0000000074320000 - 000000007435d000: C:\WINDOWS\system32\ODBC32.dll (00000000746c0000 - 00000000746e7000: C:\WINDOWS\system32\msls31.dll (00000000746f0000 - 000000007471a000: C:\WINDOWS\system32\msimtf.dll (0000000074720000 - 000000007476b000: C:\WINDOWS\system32\MSCTF.dll (0000000074980000 - 0000000074ab0000: C:\WINDOWS\system32\msxml3.dll (0000000074ae0000 - 0000000074ae7000: C:\WINDOWS\system32\CFGMGR32.dll (00000000754d0000 - 0000000075550000: C:\WINDOWS\system32\CRYPTUI.dll (0000000075970000 - 0000000075a67000: C:\WINDOWS\system32\MSGINA.dll (0000000075c50000 - 0000000075cbe000: C:\WINDOWS\system32\jscript.dll (0000000075cf0000 - 0000000075d81000: C:\WINDOWS\system32\mlang.dll (0000000075e90000 - 0000000075f40000: C:\WINDOWS\system32\SXS.DLL (0000000075f60000 - 0000000075f67000: C:\WINDOWS\System32\drprov.dll (0000000075f70000 - 0000000075f79000: C:\WINDOWS\System32\davclnt.dll (0000000075f80000 - 000000007607d000: C:\WINDOWS\system32\BROWSEUI.dll (0000000076200000 - 0000000076271000: C:\WINDOWS\system32\mshtmled.dll (0000000076360000 - 0000000076370000: C:\WINDOWS\system32\WINSTA.dll (0000000076390000 - 00000000763ad000: C:\WINDOWS\system32\IMM32.DLL (00000000763b0000