EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Tue, 21 Jan 2014 12:37:39 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.21.7811 1.4 Parameters : 1.5 Compilation Date: Tue, 21 Jan 2014 04:03:44 +0400 1.6 Up Time : 15 seconds Exception: ----------------------------------------------------------------------------------------------------------- 2.1 Date : Tue, 21 Jan 2014 12:37:54 +0400 2.2 Address : 76E02E37 2.3 Module Name : ntdll.dll - (Системная библиотека NT) 2.4 Module Version: 6.1.7601.18247 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 76E02E37 in module 'ntdll.dll'. Read of address 00000004. 2.7 ID : D275 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 832 Mb 5.5 Free Disk : 384,11 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=2392; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |76E02E37|ntdll.dll | | |RtlAllocateHeap | | |76E02DD6|ntdll.dll | | |RtlAllocateHeap | | |76E1E41D|ntdll.dll | | |CsrAllocateCaptureBuffer | | |76E1E3C8|ntdll.dll | | |CsrAllocateCaptureBuffer | | |76E20FCE|ntdll.dll | | |CsrCaptureMessageMultiUnicodeStringsInPlace| | |76DF6062|ntdll.dll | | |NtQueryInformationFile | | |7534557D|USER32.dll | | |SendMessageW | | |75362BE9|USER32.dll | | |CallWindowProcA | | |75153C9E|MSCTF.dll | | |CtfImeDispatchDefImeMessage | | |753453F5|USER32.dll | | |IsWindow | | |7661C3A0|kernel32.dll | | |InterlockedIncrement | | |0087C178|SASPlanet.Debug.exe|frm_MarksExplorer.pas |TfrmMarksExplorer |btnImportClick |499[2] | |008248D4|SASPlanet.Debug.exe|TBXControls.pas |TTBXCustomButton |Click |1954[14] | |753454DD|USER32.dll | | |GetClientRect | | |7533ABE1|USER32.dll | | |CallNextHookEx | | |007B6E72|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |007B6E89|SASPlanet.Debug.exe|EwbCore.pas |TCustomEmbeddedWB |Authenticate |1970[15] | |75339DC7|USER32.dll | | |GetCapture | | |7533AC19|USER32.dll | | |CallNextHookEx | | |75342E3C|USER32.dll | | |DispatchMessageA | | |75342E32|USER32.dll | | |DispatchMessageA | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=5020; Priority=0; Class=TGarbageCollectorThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |76DF6A62|ntdll.dll | | |ZwWaitForSingleObject | | |74FA1730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7661C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7661C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7661C2BD|kernel32.dll | | |Sleep | | |7661C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |76DF62A2|ntdll.dll | | |ZwQueryVirtualMemory | | |74FA91D5|KERNELBASE.dll | | |VirtualQueryEx | | |7661C400|kernel32.dll | | |InterlockedDecrement | | |76DF6622|ntdll.dll | | |NtSetEvent | | |74FA6856|KERNELBASE.dll | | |GetCurrentThreadId | | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=2392; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F0836|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=4152; Priority=-15; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |76DF6A42|ntdll.dll | | |NtWaitForMultipleObjects | | |74FA6AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |7661BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7661BDCF|kernel32.dll | | |ResetEvent | | |7661BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=2392; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |007F1742|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |917[5] | |007F16F0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |00887272|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7533ADA4|USER32.dll | | |SendMessageA | | |7533AD60|USER32.dll | | |SendMessageA | | |7533ABB7|USER32.dll | | |SetFocus | | |7533ABAD|USER32.dll | | |SetFocus | | |753461DE|USER32.dll | | |GetWindowLongW | | |753453F5|USER32.dll | | |IsWindow | | |7533F2B3|USER32.dll | | |ShowWindow | | |7533F2A9|USER32.dll | | |ShowWindow | | |76DF7750|ntdll.dll | | |RtlLeaveCriticalSection | | |76E0F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |76E12296|ntdll.dll | | |LdrGetProcedureAddress | | |74FA6D12|KERNELBASE.dll | | |GetProcAddress | | |75343654|USER32.dll | | |MonitorFromWindow | | |7534366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6936; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |76DF6A42|ntdll.dll | | |NtWaitForMultipleObjects | | |74FA6AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7661BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7661BDCF|kernel32.dll | | |ResetEvent | | |7661BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=2392; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1710|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |00887272|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7533ADA4|USER32.dll | | |SendMessageA | | |7533AD60|USER32.dll | | |SendMessageA | | |7533ABB7|USER32.dll | | |SetFocus | | |7533ABAD|USER32.dll | | |SetFocus | | |753461DE|USER32.dll | | |GetWindowLongW | | |753453F5|USER32.dll | | |IsWindow | | |7533F2B3|USER32.dll | | |ShowWindow | | |7533F2A9|USER32.dll | | |ShowWindow | | |76DF7750|ntdll.dll | | |RtlLeaveCriticalSection | | |76E0F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |76E12296|ntdll.dll | | |LdrGetProcedureAddress | | |74FA6D12|KERNELBASE.dll | | |GetProcAddress | | |75343654|USER32.dll | | |MonitorFromWindow | | |7534366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7560; Priority=0; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |76DF6A42|ntdll.dll | | |NtWaitForMultipleObjects | | |74FA6AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |0063BBD4|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |283[57] | |0063BC4F|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnPrepareTileMatrix |299[73] | |7661BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7661BDCF|kernel32.dll | | |ResetEvent | | |7661BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=2392; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |0063B924|SASPlanet.Debug.exe|u_TileMatrixChangeableWithThread.pas |TTileMatrixChangeableWithThread |OnAppStarted |196[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1710|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |00887272|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7533ADA4|USER32.dll | | |SendMessageA | | |7533AD60|USER32.dll | | |SendMessageA | | |7533ABB7|USER32.dll | | |SetFocus | | |7533ABAD|USER32.dll | | |SetFocus | | |753461DE|USER32.dll | | |GetWindowLongW | | |753453F5|USER32.dll | | |IsWindow | | |7533F2B3|USER32.dll | | |ShowWindow | | |7533F2A9|USER32.dll | | |ShowWindow | | |76DF7750|ntdll.dll | | |RtlLeaveCriticalSection | | |76E0F881|ntdll.dll | | |LdrGetProcedureAddressEx | | |76E12296|ntdll.dll | | |LdrGetProcedureAddress | | |74FA6D12|KERNELBASE.dll | | |GetProcAddress | | |75343654|USER32.dll | | |MonitorFromWindow | | |7534366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=7484; Priority=-2; Class=TThread4InterfacedThread | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |76DF6A42|ntdll.dll | | |NtWaitForMultipleObjects | | |74FA6AE2|KERNELBASE.dll | | |WaitForMultipleObjectsEx | | |006DA1DF|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnPrepareSubset |471[48] | |7661BCD8|kernel32.dll | | |WaitForMultipleObjectsEx | | |7661BDCF|kernel32.dll | | |ResetEvent | | |7661BDBC|kernel32.dll | | |ResetEvent | | |0063B206|SASPlanet.Debug.exe|u_BackgroundTask.pas |TBackgroundTask |Execute |129[5] | |0063AE93|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Execute |229[7] | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=2392; Priority=1; Class=; [Main] | |-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------| |0063AED4|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |243[3] | |0063AEBC|SASPlanet.Debug.exe|u_InterfacedThread.pas |TThread4InterfacedThread |Start |240[0] | |0063AD5D|SASPlanet.Debug.exe|u_InterfacedThread.pas |TInterfacedThread |Start |177[6] | |006D99B4|SASPlanet.Debug.exe|u_VectorItemSubsetChangeableForVectorLayers.pas|TVectorItemSubsetChangeableForVectorLayers|OnAppStarted |259[2] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1710|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |00887272|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7533ADA4|USER32.dll | | |SendMessageA | | |7533AD60|USER32.dll | | |SendMessageA | | |7533ABB7|USER32.dll | | |SetFocus | | |7533ABAD|USER32.dll | | |SetFocus | | |753461DE|USER32.dll | | |GetWindowLongW | | |753453F5|USER32.dll | | |IsWindow | | |76DF7750|ntdll.dll | | |RtlLeaveCriticalSection | | |7533F2B3|USER32.dll | | |ShowWindow | | |7533F2A9|USER32.dll | | |ShowWindow | | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00230000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |00290000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |00400000|SASPlanet.Debug.exe | |14.1.21.7811 |5871104 |2014-01-21 04:03:48|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |512B0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |58130000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |5E0C0000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |60B00000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |63790000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |64EC0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |69DF0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6F380000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |6F3A0000|wshbth.dll |Windows Sockets Helper DLL |6.1.7601.17514 |36352 |2010-11-21 01:29:26|C:\Windows\system32 | |6F3B0000|winrnr.dll |LDAP RnR Provider DLL |6.1.7600.16385 |20992 |2009-07-14 05:16:20|C:\Windows\System32 | |6F3C0000|pnrpnsp.dll |Поставщик пространства имен PNRP |6.1.7600.16385 |65024 |2009-07-14 05:16:14|C:\Windows\system32 | |6F3E0000|napinsp.dll |Поставщик оболочки совместимости для имен электронной почты |6.1.7600.16385 |52224 |2009-07-14 05:16:04|C:\Windows\system32 | |6F760000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |6F920000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |6FC70000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 05:16:14|C:\Windows\system32 | |6FC80000|WLIDNSP.DLL |Microsoft® Windows Live ID Namespace Provider |6.500.3165.0 |134528 |2009-08-18 11:29:22|C:\Program Files\Common Files\Microsoft Shared\Windows Live | |71D70000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72220000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72710000|fwpuclnt.dll |API пользовательского режима FWP/IPsec |6.1.7601.18283 |216576 |2013-10-12 06:01:26|C:\Windows\System32 | |728A0000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |728B0000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |72980000|NLAapi.dll |Network Location Awareness 2 |6.1.7601.17964 |52224 |2012-10-03 20:42:28|C:\Windows\system32 | |72DC0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |730A0000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |735A0000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |73A00000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |73A40000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2| |73ED0000|DBGHELP.DLL |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 01:29:14|C:\Windows\system32 | |73FC0000|FwcWsp.dll |Forefront TMG Client Windows Sockets 2 Service Provider |7.0.7734.100 |348576 |2009-11-15 14:03:24|C:\Program Files\Forefront TMG Client | |741F0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 01:29:26|C:\Windows\system32 | |74210000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 05:17:56|C:\Windows\system32 | |74300000|netutils.dll |Net Win32 API Helpers DLL |6.1.7601.17514 |22528 |2010-11-21 01:29:14|C:\Windows\system32 | |74310000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 05:17:56|C:\Windows\system32 | |743F0000|DNSAPI.dll |Динамическая библиотека API DNS-клиента |6.1.7601.21689 |270336 |2011-03-22 08:22:32|C:\Windows\system32 | |744D0000|msv1_0.DLL |Microsoft Authentication Package v1.0 |6.1.7601.17514 |257024 |2010-11-21 01:29:22|C:\Windows\system32 | |74520000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |74530000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |74570000|CRYPTSP.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 05:15:08|C:\Windows\system32 | |74590000|kerberos.DLL |Пакет безопасности Kerberos |6.1.7601.17926 |542208 |2012-08-11 03:56:16|C:\Windows\system32 | |746A0000|bcrypt.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |80384 |2009-07-14 05:15:00|C:\Windows\system32 | |74780000|cryptdll.dll |Cryptography Manager |6.1.7600.16385 |58880 |2009-07-14 05:15:08|C:\Windows\system32 | |749D0000|wshtcpip.dll |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 05:16:22|C:\Windows\System32 | |749E0000|security.dll |Security Support Provider Interface |6.1.7600.16385 |4608 |2009-07-14 05:09:54|C:\Windows\system32 | |749F0000|DSROLE.DLL |DS Role Client DLL |6.1.7600.16385 |22016 |2009-07-14 05:15:14|C:\Windows\system32 | |74A00000|wkscli.dll |Workstation Service Client DLL |6.1.7601.17514 |47104 |2010-11-21 01:29:08|C:\Windows\system32 | |74A10000|NETAPI32.dll |Net Win32 API DLL |6.1.7601.17887 |57344 |2012-07-05 01:16:58|C:\Windows\system32 | |74AA0000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |74C00000|srvcli.dll |Server Service Client DLL |6.1.7601.17514 |90112 |2010-11-21 01:29:16|C:\Windows\system32 | |74C70000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |74C90000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |74CB0000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |74D70000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |74D80000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |74DF0000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |74E60000|MSASN1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 01:29:06|C:\Windows\system32 | |74E70000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |74E80000|CRYPT32.dll |API32 криптографии |6.1.7601.18277 |1168384 |2013-10-05 23:57:26|C:\Windows\system32 | |74FA0000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |74FF0000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75000000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75010000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75020000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75030000|WINTRUST.dll |Microsoft Trust Verification APIs |6.1.7601.18205 |175104 |2013-07-09 08:52:12|C:\Windows\system32 | |75140000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75150000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |75220000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |75260000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |75300000|imagehlp.dll |Windows NT Image Helper |6.1.7601.18288 |159232 |2013-10-19 05:37:00|C:\Windows\system32 | |75330000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |75400000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |75490000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |754A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |754F0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |756F0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76340000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | |76360000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76490000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |76540000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |765D0000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |768B0000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |76980000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |76A30000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |76BF0000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76D50000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |76DB0000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |76EF0000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |76F00000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |76F10000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |76F30000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76F40000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |ID |Name |Description |Version |Memory|Priority |Threads|Path | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |136 | | |204 |EvernoteClipper.exe |Evernote Clipper |5.1.0.2217 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113|0 |Above-Normal|2 | | |480 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385|0 |High |9 | | |556 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385|0 |High |3 | | |564 |agrsmsvc.exe | | |0 |Normal |3 | | |572 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385|0 |High |11 | | |620 |services.exe |Приложение служб и контроллеров |6.1.7600.16385|0 |Normal |12 | | |636 |Fuel.Service.exe | | |0 |Normal |7 | | |656 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514|0 |High |3 | | |668 |lsass.exe |Local Security Authority Process |6.1.7601.18270|0 |Normal |7 | | |684 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |13 | | |696 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514|0 |Normal |10 | | |800 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |11 | | |828 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |10 | | |860 |USBSRService.exe | | |0 |Normal |5 | | |908 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |11 | | |924 |LightShot.exe |Lightshot |4.4.2.0 |0 |Normal |2 |C:\Users\KSkrynnikov\AppData\Local\Skillbrains\lightshot\4.4.2.10 | |964 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1028|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |1068|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |19 | | |1112|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |23 | | |1168|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |16 | | |1192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |48 | | |1216|stacsv.exe | | |0 |Normal |12 | | |1356|cvpnd.exe | | |0 |Normal |10 | | |1416|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |7 | | |1476|FwcAgent.exe | | |0 |Normal |11 | | |1536|GCSServer.exe | | |0 |Normal |11 | | |1580|gcssync.exe | | |0 |Normal |6 | | |1596|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |34 | | |1704|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1712|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385|0 |Normal |9 | | |1720|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |1 | | |1752|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |15 | | |1896|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777|0 |Normal |17 | | |1936|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |20 | | |1956|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2132|HWDeviceService.exe | | |0 |Normal |6 | | |2176|mdm.exe | | |0 |Normal |6 | | |2216|RPEService.exe | | |0 |Normal |16 | | |2260|PlanetBroker.exe | | |0 |Normal |9 | | |2452|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |4 | | |2484|oodag.exe | | |0 |Normal |13 | | |2584|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |4 | | |2616|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |7 | | |2644|Q1DBService.exe | | |0 |Normal |4 | | |2728|ccSvcHst.exe | | |0 |Normal |75 | | |2772|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514|0 |Normal |4 | | |2804|RPEAgent.exe | | |0 |Normal |12 | | |2836|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |2 | | |2844|RPEAgent.exe | | |0 |Normal |12 | | |2852|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |2 | | |3012|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |6 | | |3076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |15 | | |3232|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |3308|CcmExec.exe | | |0 |Normal |18 | | |3580|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3672|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |3836|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |11 | | |3964|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610|0 |Normal |11 | | |4076|Smc.exe | | |0 |Normal |33 | | |4244|EvernoteTray.exe |Evernote Tray Application |5.1.0.2217 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |4308|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4340|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385|0 |Normal |4 | | |4352|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |6 | | |4452|OSPPSVC.EXE | | |0 |Normal |3 | | |4544|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4572|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385|0 |High |6 |C:\Windows\system32 | |4580|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |42 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |4824|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |4904|EXCEL.EXE |Microsoft Excel |14.0.7109.5000|0 |Normal |9 |C:\Program Files\Microsoft Office\Office14 | |5032|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5036|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |19 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin | |5076|Explorer.EXE |Проводник |6.1.7601.17567|0 |Normal |23 |C:\Windows | |5080|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010|0 |Normal |14 |C:\Windows\system32 | |5184|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |4 |C:\Program Files\Hard Disk Sentinel Pro | |5196|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5240|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514|0 |Normal |5 |C:\Windows\system32 | |5368|SASPlanet.Debug.exe | |14.1.21.7811 |0 |Normal |32 |D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |5508|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5604|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5608|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |1 |C:\Windows\system32 | |5688|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |5704|Uncom.exe |Unreal Commander |2.0.2.960 |0 |Normal |20 |C:\Program Files\Unreal Commander | |5896|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |6008|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385|0 |Normal |7 |C:\Windows\System32 | |6072|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |6096|ssonsvr.exe | | |0 |Normal |5 | | |6236|java.exe |Java(TM) 2 Platform Standard Edition binary |5.0.110.3 |0 |Normal |49 |C:\Program Files\Nokia Siemens Networks\Managers\EDGE BTS\2G Flexi BTS Site Manager\jre\1_5_0\bin| |6424|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |6484|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |49 |C:\Program Files\Mozilla Firefox | |6528|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |15 |C:\Lotus\Notes | |6632|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6648|2G Flexi BTS Manager.exe | | |0 |Normal |27 |C:\Program Files\Nokia Siemens Networks\Managers\EDGE BTS\2G Flexi BTS Site Manager | |6964|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6972|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514|0 |Normal |7 | | |7248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |7 | | |7372|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |6 | | |7664|script.exe | | |0 |Normal |12 |C:\scipt | |7720|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |8148|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |40 |C:\Lotus\Notes | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ Assembler Information: ------------------------------------------------------------ ; RtlAllocateHeap (Line=0 - Offset=0) ; ----------------------------------- 76E02E11 jnz +$00002CB1 76E02E17 cmp [ebp+$10], esi 76E02E1A jz +$00012129 76E02E20 mov eax, [ebp+$10] 76E02E23 add eax, +$0F 76E02E26 and eax, -$08 76E02E29 mov ecx, eax 76E02E2B mov [ebp-$08], eax 76E02E2E mov eax, [ebx+$00B8] 76E02E34 shr ecx, $03 76E02E37 cmp ecx, [eax+$04] ; <-- EXCEPTION 76E02E3A jnb +$00003A4F 76E02E40 mov edx, [eax+$04] 76E02E43 dec edx 76E02E44 cmp ecx, edx 76E02E46 jnb +$00007523 76E02E4C sub ecx, dword ptr [eax+$14] 76E02E4F cmp dword ptr [eax+$08], +$00 76E02E53 jz RtlAllocateHeap 76E02E55 add ecx, ecx 76E02E57 mov eax, [eax+$20] Registers: ----------------------------- EAX: 00000000 EDI: 00000120 EBX: 00010000 ESI: 00000000 ECX: 00000025 ESP: 0012EBA4 EDX: 00000006 EIP: 76E02E37 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EBA4: 00000120 049F1630: 3B 48 04 0F 83 4F 3A 00 00 8B 50 04 4A 3B CA 0F ;H...O:...P.J;.. 0012EBA8: 000000EA 049F1640: 83 23 75 00 00 2B 48 14 83 78 08 00 74 02 03 C9 .#u..+H..x..t... 0012EBAC: 00000005 049F1650: 8B 40 20 8D 34 88 85 F6 0F 84 63 2C 00 00 8B 46 .@ .4.....c,...F 0012EBB0: 00000000 049F1660: 04 A8 01 0F 84 58 2C 00 00 8B 55 10 8D 48 FF C7 .....X,...U..H.. 0012EBB4: 00000000 049F1670: 45 F0 02 00 00 00 E8 42 00 00 00 8B F8 85 FF 0F E......B........ 0012EBB8: 00000001 049F1680: 84 3C 2C 00 00 F6 45 0C 08 0F 85 D2 BC 00 00 85 .<,...E......... 0012EBBC: 00000000 049F1690: FF 0F 84 D5 AD 02 00 8B 75 F4 85 F6 0F 85 DE AE ........u....... 0012EBC0: 0F026EA3 049F16A0: 02 00 80 3D 80 03 FE 7F 00 0F 85 1B AE 02 00 8B ...=............ 0012EBC4: 00000000 049F16B0: C7 5F 5E 5B C9 C2 0C 00 90 90 90 90 90 6A 64 68 ._^[.........jdh 0012EBC8: 7661CDD0 049F16C0: A0 1F E0 76 E8 3C FD FF FF 89 55 C4 8B F9 89 7D ...v.<....U....} 0012EBCC: 00360034 049F16D0: D8 0F B6 47 02 8D 04 85 10 01 00 00 8B F7 2B F0 ...G..........+. 0012EBD0: 76DFD7D8 049F16E0: 89 75 D4 F6 47 03 01 0F 85 2F F1 FD FF 83 65 CC .u..G..../....e. 0012EBD4: 0F026CA3 049F16F0: 00 8B 45 CC 69 C0 18 34 00 00 8D 84 30 10 03 00 ..E.i..4....0... 0012EBD8: 76DFD80E 049F1700: 00 89 45 BC 0F B6 4F 02 6B C9 68 8D 54 08 18 89 ..E...O.k.h.T... 0012EBDC: 0012EC84 049F1710: 55 E0 8B 02 89 45 D0 85 C0 0F 84 49 11 01 00 83 U....E.....I.... 0012EBE0: 74CF33E4 049F1720: 65 FC 00 8D 48 08 8B 39 89 7D AC 8B 59 04 89 5D e...H..9.}..Y..] EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Tue, 21 Jan 2014 12:51:38 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.21.7811 1.4 Parameters : 1.5 Compilation Date: Tue, 21 Jan 2014 04:03:44 +0400 1.6 Up Time : 4 seconds Exception: --------------------------------------------------------------------------------------------------------------------- 2.1 Date : Tue, 21 Jan 2014 12:51:43 +0400 2.2 Address : 00703D33 2.3 Module Name : SASPlanet.Debug.exe 2.4 Module Version: 14.1.21.7811 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 00703D33 in module 'SASPlanet.Debug.exe'. Read of address 00000000. 2.7 ID : B4FE 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 743 Mb 5.5 Free Disk : 384,11 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: --------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | --------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=7204; Priority=1; Class=; [Main] | |-------------------------------------------------------------------------------------------------------------------------------| |00703D33|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |LoadMarksFromFile |1490[66] | |00703A48|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |LoadMarksFromFile |1424[0] | |007002E2|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |Create |362[19] | |007001E4|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |Create |343[0] | |00706419|SASPlanet.Debug.exe|u_MarkSystemSml.pas |TMarkSystemSml |Create |131[24] | |007062E8|SASPlanet.Debug.exe|u_MarkSystemSml.pas |TMarkSystemSml |Create |107[0] | |00706BAE|SASPlanet.Debug.exe|u_MarkSystemImplChangeable.pas|TMarkSystemImplChangeable |CreateStatic |133[3] | |005872BA|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementWithStaticBase|DoBeforeChangeNotify |227[4] | |00586B28|SASPlanet.Debug.exe|u_ChangeableBase.pas |TChangeableBase |DoChangeNotify |57[1] | |0058711F|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementBase |StartNotify |169[4] | |0058714B|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementBase |UnlockWrite |187[2] | |00706CDF|SASPlanet.Debug.exe|u_MarkSystemImplChangeable.pas|TMarkSystemImplChangeable |OnAppStarted |172[6] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1710|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |00887272|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |7533ADA4|USER32.dll | | |SendMessageA | | |7533AD60|USER32.dll | | |SendMessageA | | |7533ABB7|USER32.dll | | |SetFocus | | |7533ABAD|USER32.dll | | |SetFocus | | |753461DE|USER32.dll | | |GetWindowLongW | | |753453F5|USER32.dll | | |IsWindow | | |7533F2B3|USER32.dll | | |ShowWindow | | |7533F2A9|USER32.dll | | |ShowWindow | | |76DF7750|ntdll.dll | | |RtlLeaveCriticalSection | | |76E0F881|ntdll.dll | | |LdrGetProcedureAddressEx| | |76E12296|ntdll.dll | | |LdrGetProcedureAddress | | |74FA6D12|KERNELBASE.dll | | |GetProcAddress | | |75343654|USER32.dll | | |MonitorFromWindow | | |7534366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6376; Priority=0; Class=TGarbageCollectorThread | |-------------------------------------------------------------------------------------------------------------------------------| |76DF6A62|ntdll.dll | | |ZwWaitForSingleObject | | |74FA1730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7661C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7661C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7661C2BD|kernel32.dll | | |Sleep | | |7661C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |76DF62A2|ntdll.dll | | |ZwQueryVirtualMemory | | |74FA91D5|KERNELBASE.dll | | |VirtualQueryEx | | |7661C400|kernel32.dll | | |InterlockedDecrement | | |76DF6622|ntdll.dll | | |NtSetEvent | | |74FA6856|KERNELBASE.dll | | |GetCurrentThreadId | | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | |-------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=7204; Priority=1; Class=; [Main] | |-------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F0836|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7661ED5A|kernel32.dll | | |GetDriveTypeW | | --------------------------------------------------------------------------------------------------------------------------------- Modules Information: -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00230000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |002A0000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |00400000|SASPlanet.Debug.exe | |14.1.21.7811 |5871104 |2014-01-21 04:03:48|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |512B0000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |580E0000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |58150000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |5E0C0000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |606D0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |64EC0000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |69DF0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |6F380000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |6F760000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |6F920000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |71D70000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72220000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |728A0000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |728B0000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |72DC0000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |730A0000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |735A0000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |73A00000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |73A40000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2| |74520000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |74530000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |74AA0000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |74C70000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |74C90000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |74CB0000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |74D70000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |74D80000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |74DF0000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |74E70000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |74FA0000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |74FF0000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75000000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |75010000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |75020000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75140000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75150000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |75220000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |75260000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |75330000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |75400000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |75490000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |754A0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |754F0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |756F0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |76340000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | |76360000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |76490000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |76540000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |765D0000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |768B0000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |76980000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |76A30000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |76BF0000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |76D50000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |76DB0000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |76EF0000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |76F00000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |76F10000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |76F30000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | |76F40000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |ID |Name |Description |Version |Memory|Priority |Threads|Path | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |136 | | |204 |EvernoteClipper.exe |Evernote Clipper |5.1.0.2217 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113|0 |Above-Normal|2 | | |480 |AESTSrv.exe | | |0 |Normal |5 | | |484 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385|0 |High |9 | | |556 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385|0 |High |3 | | |564 |agrsmsvc.exe | | |0 |Normal |3 | | |572 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385|0 |High |11 | | |620 |services.exe |Приложение служб и контроллеров |6.1.7600.16385|0 |Normal |10 | | |636 |Fuel.Service.exe | | |0 |Normal |7 | | |656 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514|0 |High |3 | | |668 |lsass.exe |Local Security Authority Process |6.1.7601.18270|0 |Normal |7 | | |684 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |13 | | |696 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514|0 |Normal |10 | | |800 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |11 | | |828 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |10 | | |860 |USBSRService.exe | | |0 |Normal |5 | | |908 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |10 | | |924 |LightShot.exe |Lightshot |4.4.2.0 |0 |Normal |2 |C:\Users\KSkrynnikov\AppData\Local\Skillbrains\lightshot\4.4.2.10 | |964 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1028|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |1068|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |19 | | |1112|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |22 | | |1168|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |17 | | |1192|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |52 | | |1216|stacsv.exe | | |0 |Normal |13 | | |1356|cvpnd.exe | | |0 |Normal |10 | | |1416|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |7 | | |1476|FwcAgent.exe | | |0 |Normal |10 | | |1536|GCSServer.exe | | |0 |Normal |11 | | |1580|gcssync.exe | | |0 |Normal |6 | | |1596|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |34 | | |1704|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1712|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385|0 |Normal |9 | | |1720|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |1 | | |1752|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |15 | | |1896|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777|0 |Normal |16 | | |1936|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |19 | | |1956|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2132|HWDeviceService.exe | | |0 |Normal |6 | | |2176|mdm.exe | | |0 |Normal |6 | | |2216|RPEService.exe | | |0 |Normal |15 | | |2260|PlanetBroker.exe | | |0 |Normal |9 | | |2452|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |4 | | |2484|oodag.exe | | |0 |Normal |13 | | |2584|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |4 | | |2616|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |7 | | |2644|Q1DBService.exe | | |0 |Normal |4 | | |2728|ccSvcHst.exe | | |0 |Normal |73 | | |2772|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514|0 |Normal |4 | | |2804|RPEAgent.exe | | |0 |Normal |12 | | |2836|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |2 | | |2844|RPEAgent.exe | | |0 |Normal |12 | | |2852|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |2 | | |3012|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |6 | | |3076|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |15 | | |3232|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |3308|CcmExec.exe | | |0 |Normal |18 | | |3580|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3672|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |3836|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |9 | | |3964|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610|0 |Normal |12 | | |4076|Smc.exe | | |0 |Normal |33 | | |4244|EvernoteTray.exe |Evernote Tray Application |5.1.0.2217 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |4308|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |4340|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385|0 |Normal |4 | | |4352|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |7 | | |4452|OSPPSVC.EXE | | |0 |Normal |3 | | |4544|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |4572|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385|0 |High |4 |C:\Windows\system32 | |4580|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |41 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |4680|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |2 |C:\Windows\system32 | |4824|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |4904|EXCEL.EXE |Microsoft Excel |14.0.7109.5000|0 |Normal |9 |C:\Program Files\Microsoft Office\Office14 | |5032|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |15 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5036|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin | |5076|Explorer.EXE |Проводник |6.1.7601.17567|0 |Normal |25 |C:\Windows | |5080|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010|0 |Normal |14 |C:\Windows\system32 | |5184|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |4 |C:\Program Files\Hard Disk Sentinel Pro | |5196|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |5240|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514|0 |Normal |5 |C:\Windows\system32 | |5508|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |5604|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |5608|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |1 |C:\Windows\system32 | |5688|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |5704|Uncom.exe |Unreal Commander |2.0.2.960 |0 |Normal |18 |C:\Program Files\Unreal Commander | |5896|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |6008|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385|0 |Normal |7 |C:\Windows\System32 | |6072|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |6096|ssonsvr.exe | | |0 |Normal |5 | | |6236|java.exe |Java(TM) 2 Platform Standard Edition binary |5.0.110.3 |0 |Normal |49 |C:\Program Files\Nokia Siemens Networks\Managers\EDGE BTS\2G Flexi BTS Site Manager\jre\1_5_0\bin| |6424|HIT2.EXE |Holistic Integration Tester |2.10.4.0 |0 |Normal |5 |C:\Program Files\HIT\SYSTEM | |6484|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |50 |C:\Program Files\Mozilla Firefox | |6528|ntaskldr.EXE |IBM Lotus Notes/Domino |8.5.30.11258 |0 |Normal |15 |C:\Lotus\Notes | |6632|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |6648|2G Flexi BTS Manager.exe | | |0 |Normal |27 |C:\Program Files\Nokia Siemens Networks\Managers\EDGE BTS\2G Flexi BTS Site Manager | |6952|SASPlanet.Debug.exe | |14.1.21.7811 |0 |Normal |19 |D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |6964|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | |6972|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514|0 |Normal |7 | | |7020|Far.exe |File and archive manager |3.0.3367.0 |0 |Normal |6 |C:\Users\KSkrynnikov\AppData\Local\Far Manager | |7156|sfc.EXE |Проверка и восстановление целостности системы |6.1.7600.16385|0 |Normal |4 |C:\Windows\System32 | |7248|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |7 | | |7664|script.exe | | |0 |Normal |12 |C:\scipt | |7720|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |7756|TrustedInstaller.exe | | |0 |Normal |5 | | |8148|nlnotes.exe |IBM Lotus Notes/Domino |8.5.32.12184 |0 |Normal |40 |C:\Lotus\Notes | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ Assembler Information: --------------------------------------------------------------------------------------------------------------- ; u_MarkDbSml.TMarkDbSml.LoadMarksFromFile (Line=1486 - Offset=62) ; ---------------------------------------------------------------- 00703D0C call dword ptr [ecx+$01B0] ; ; Line=1487 - Offset=63 ; --------------------- 00703D12 mov eax, [ebp-$18] 00703D15 mov eax, [eax+$60] 00703D18 call -$001EB64D 00703D1D jmp u_MarkDbSml.TMarkDbSml.LoadMarksFromFile (Line=1488) ; ; Line=1489 - Offset=65 ; --------------------- 00703D22 lea edx, [ebp-$0C] 00703D25 mov eax, [ebp-$18] 00703D28 call u_MarkDbSml.TMarkDbSml.ReadCurrentMark ; ; Line=1490 - Offset=66 ; --------------------- 00703D2D lea edx, [ebp-$30] 00703D30 mov eax, [ebp-$0C] 00703D33 mov ecx, [eax] ; <-- EXCEPTION 00703D35 call dword ptr [ecx+$10] 00703D38 mov eax, [ebp-$30] 00703D3B push eax 00703D3C lea eax, [ebp-$14] 00703D3F call -$002FBB18 00703D44 mov ecx, eax 00703D46 mov edx, $00704000 ; 'ҐЄ.&Ъ.+Gіо1к'нЦНU‹мѓДиSVW3Т‰Uь‰E'... 00703D4B pop eax 00703D4C call -$002EC8F1 00703D51 test al, al Registers: ----------------------------- EAX: 00000000 EDI: 0C458370 EBX: 0C3ED001 ESI: 0C31E060 ECX: 0CAEEA40 ESP: 0012EDFC EDX: 0012EE54 EIP: 00703D33 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EDFC: 0012EE08 0AB69150: 8B 08 FF 51 10 8B 45 D0 50 8D 45 EC E8 E8 44 D0 ...Q..E.P.E...D. 0012EE00: 00405720 0AB69160: FF 8B C8 BA 00 40 70 00 58 E8 0F 37 D1 FF 84 C0 .....@p.X..7.... 0012EE04: 0012EE84 0AB69170: 0F 84 8F 00 00 00 8B 45 EC 8B 10 FF 52 0C 8B D8 .......E....R... 0012EE08: 0012EE14 0AB69180: 8B 45 EC 8B 10 FF 52 14 8B F0 8D 45 CC 50 8B 45 .E....R....E.P.E 0012EE0C: 00405720 0AB69190: E8 8B 40 64 8B 4D F4 8B D3 8B 38 FF 57 0C 8D 4D ..@d.M....8.W..M 0012EE10: 0012EE84 0AB691A0: C8 8B 45 E8 8B 40 68 8B D6 8B 38 FF 57 14 8B 55 ..E..@h...8.W..U 0012EE14: 0012EE20 0AB691B0: C8 8D 45 F0 E8 A8 44 D0 FF 83 7D F0 00 75 35 6A ..E...D...}..u5j 0012EE18: 00405720 0AB691C0: 00 33 C9 B2 01 A1 C8 AC 56 00 E8 E6 6B E6 FF 8B .3......V...k... 0012EE1C: 0012EE84 0AB691D0: D0 85 D2 74 03 83 EA E4 8D 45 F0 E8 81 44 D0 FF ...t.....E...D.. 0012EE20: 0012EE2C 0AB691E0: 8D 45 C4 50 8B 45 E8 8B 40 68 8B 4D F0 8B D6 8B .E.P.E..@h.M.... 0012EE24: 00405720 0AB691F0: 30 FF 56 0C 8D 45 C0 50 8B 4D F4 8B D3 8B 45 F0 0.V..E.P.M....E. 0012EE28: 0012EE84 0AB69200: 8B 18 FF 53 0C 8B 45 E8 8B 40 60 E8 5D 4B E1 FF ...S..E..@`.]K.. 0012EE2C: 0012EE8C 0AB69210: 8B 45 E8 8B 40 60 80 B8 A1 00 00 00 00 0F 84 1C .E..@`.......... 0012EE30: 00405720 0AB69220: FF FF FF E9 D1 00 00 00 8B 45 E8 8B 40 44 8B 10 .........E..@D.. 0012EE34: 0012EE84 0AB69230: FF 52 40 3C FF 0F 84 BE 00 00 00 33 C0 55 68 5A .R@<.......3.UhZ 0012EE38: 0C458370 0AB69240: 3E 70 00 64 FF 30 64 89 20 68 FF FF 00 00 8B 4D >p.d.0d. h.....M EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Tue, 21 Jan 2014 14:01:02 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.21.7811 1.4 Parameters : 1.5 Compilation Date: Tue, 21 Jan 2014 04:03:44 +0400 1.6 Up Time : 8 seconds Exception: --------------------------------------------------------------------------------------------------------------------- 2.1 Date : Tue, 21 Jan 2014 14:01:11 +0400 2.2 Address : 00703D33 2.3 Module Name : SASPlanet.Debug.exe 2.4 Module Version: 14.1.21.7811 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 00703D33 in module 'SASPlanet.Debug.exe'. Read of address 00000000. 2.7 ID : B4FE 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1018 Mb 5.5 Free Disk : 384,1 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: --------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | --------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=3144; Priority=1; Class=; [Main] | |-------------------------------------------------------------------------------------------------------------------------------| |00703D33|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |LoadMarksFromFile |1490[66] | |00703A48|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |LoadMarksFromFile |1424[0] | |007002E2|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |Create |362[19] | |007001E4|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |Create |343[0] | |00706419|SASPlanet.Debug.exe|u_MarkSystemSml.pas |TMarkSystemSml |Create |131[24] | |007062E8|SASPlanet.Debug.exe|u_MarkSystemSml.pas |TMarkSystemSml |Create |107[0] | |00706BAE|SASPlanet.Debug.exe|u_MarkSystemImplChangeable.pas|TMarkSystemImplChangeable |CreateStatic |133[3] | |005872BA|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementWithStaticBase|DoBeforeChangeNotify |227[4] | |00586B28|SASPlanet.Debug.exe|u_ChangeableBase.pas |TChangeableBase |DoChangeNotify |57[1] | |0058711F|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementBase |StartNotify |169[4] | |0058714B|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementBase |UnlockWrite |187[2] | |00706CDF|SASPlanet.Debug.exe|u_MarkSystemImplChangeable.pas|TMarkSystemImplChangeable |OnAppStarted |172[6] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1710|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |00887272|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |764AADA4|USER32.dll | | |SendMessageA | | |764AAD60|USER32.dll | | |SendMessageA | | |764AABB7|USER32.dll | | |SetFocus | | |764AABAD|USER32.dll | | |SetFocus | | |764B61DE|USER32.dll | | |GetWindowLongW | | |764B53F5|USER32.dll | | |IsWindow | | |764AF2B3|USER32.dll | | |ShowWindow | | |764AF2A9|USER32.dll | | |ShowWindow | | |77887750|ntdll.dll | | |RtlLeaveCriticalSection | | |7789F881|ntdll.dll | | |LdrGetProcedureAddressEx| | |778A2296|ntdll.dll | | |LdrGetProcedureAddress | | |75916D12|KERNELBASE.dll | | |GetProcAddress | | |764B3654|USER32.dll | | |MonitorFromWindow | | |764B366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7611ED5A|kernel32.dll | | |GetDriveTypeW | | |-------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=6644; Priority=0; Class=TGarbageCollectorThread | |-------------------------------------------------------------------------------------------------------------------------------| |77886A62|ntdll.dll | | |ZwWaitForSingleObject | | |75911730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7611C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7611C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7611C2BD|kernel32.dll | | |Sleep | | |7611C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |778862A2|ntdll.dll | | |ZwQueryVirtualMemory | | |759191D5|KERNELBASE.dll | | |VirtualQueryEx | | |7611C400|kernel32.dll | | |InterlockedDecrement | | |77886622|ntdll.dll | | |NtSetEvent | | |75916856|KERNELBASE.dll | | |GetCurrentThreadId | | |7611ED5A|kernel32.dll | | |GetDriveTypeW | | |-------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=3144; Priority=1; Class=; [Main] | |-------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F0836|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7611ED5A|kernel32.dll | | |GetDriveTypeW | | --------------------------------------------------------------------------------------------------------------------------------- Modules Information: -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00210000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |00340000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |00400000|SASPlanet.Debug.exe | |14.1.21.7811 |5871104 |2014-01-21 04:03:48|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |54820000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |57460000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |599A0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |61120000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |61310000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |65020000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |67F20000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |6A7E0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |70010000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |704A0000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |726D0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72CB0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |733C0000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |733D0000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73800000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |738E0000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74030000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74420000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74460000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2| |74FB0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |74FC0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |751C0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |75690000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75720000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75740000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |75800000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75810000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75880000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |75900000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75910000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75990000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |759D0000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |759E0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75A00000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75BE0000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |75D40000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |75DF0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |75E90000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |75F40000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |75FC0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |75FD0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |76020000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |760C0000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |760D0000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |761E0000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |76410000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |764A0000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |765D0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |767D0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |77420000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |774F0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |776B0000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |777E0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77840000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77980000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |779A0000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | |779C0000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A20000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |77A60000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |136 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113|0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |480 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385|0 |High |10 | | |552 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385|0 |High |3 | | |564 |AESTSrv.exe | | |0 |Normal |5 | | |568 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385|0 |High |13 | | |620 |services.exe |Приложение служб и контроллеров |6.1.7600.16385|0 |Normal |32 | | |640 |lsass.exe |Local Security Authority Process |6.1.7601.18270|0 |Normal |7 | | |648 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514|0 |Normal |12 | | |696 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514|0 |High |5 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |14 | | |812 |Fuel.Service.exe | | |0 |Normal |9 | | |856 |USBSRService.exe | | |0 |Normal |5 | | |904 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |11 | | |968 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1056|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |19 | | |1100|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |26 | | |1124|cvpnd.exe | | |0 |Normal |10 | | |1128|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |19 | | |1196|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |74 | | |1204|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |22 |C:\Program Files\Broadcom\Broadcom 802.11 | |1236|stacsv.exe | | |0 |Normal |12 | | |1280|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514|0 |Normal |3 | | |1384|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |9 | | |1464|FwcAgent.exe | | |0 |Normal |12 | | |1504|GCSServer.exe | | |0 |Normal |6 | | |1584|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |40 | | |1692|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1700|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385|0 |Normal |9 | | |1708|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |15 | | |1852|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777|0 |Normal |19 | | |1860|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |8 |C:\Program Files\Forefront TMG Client | |1868|LightShot.exe |Lightshot |4.4.2.0 |0 |Normal |2 |C:\Users\KSkrynnikov\AppData\Local\Skillbrains\lightshot\4.4.2.10 | |1908|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |21 | | |2052|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2144|HWDeviceService.exe | | |0 |Normal |7 | | |2180|mdm.exe | | |0 |Normal |8 | | |2216|RPEService.exe | | |0 |Normal |17 | | |2228|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|12 |C:\Program Files\Synaptics\SynTP | |2260|PlanetBroker.exe | | |0 |Normal |9 | | |2360|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |10 |C:\Program Files\Citrix\ICA Client | |2468|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |4 | | |2500|oodag.exe | | |0 |Normal |14 | | |2520|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385|0 |Normal |10 |C:\Windows\System32 | |2616|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |4 | | |2644|msiexec.exe |Установщик Windows® |5.0.7601.17514|0 |Normal |5 | | |2664|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |8 | | |2688|Q1DBService.exe | | |0 |Normal |4 | | |2708|RPEAgent.exe | | |0 |Normal |12 | | |2736|EvernoteClipper.exe |Evernote Clipper |5.1.0.2217 |0 |Normal |7 |C:\Program Files\Evernote\Evernote | |2744|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |2 | | |2756|RPEAgent.exe | | |0 |Normal |12 | | |2764|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |2 | | |2804|ccSvcHst.exe | | |0 |Normal |74 | | |2888|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514|0 |Normal |4 | | |3072|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |10 |C:\Program Files\OO Software\Defrag | |3164|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |21 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |3188|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |8 | | |3260|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |11 | | |3300|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |16 | | |3308|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010|0 |Normal |16 |C:\Windows\system32 | |3396|ssonsvr.exe | | |0 |Normal |8 | | |3424|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |15 | | |3456|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |3516|CcmExec.exe | | |0 |Normal |23 | | |3656|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |10 |C:\Program Files\IDT\WDM | |3672|RocketDock.exe | | |0 |Normal |8 |C:\Program Files\RocketDock | |3756|SASPlanet.Debug.exe | |14.1.21.7811 |0 |Normal |19 |D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |3804|EvernoteTray.exe |Evernote Tray Application |5.1.0.2217 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |3828|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3840|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |4060|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |9 | | |4076|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514|0 |Normal |8 |C:\Windows\system32 | |4144|Smc.exe | | |0 |Normal |32 | | |4264|Uncom.exe |Unreal Commander |2.0.2.960 |0 |Normal |16 |C:\Program Files\Unreal Commander | |4352|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610|0 |Normal |14 | | |4436|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |8 | | |4812|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |15 | | |4832|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385|0 |Normal |5 | | |4932|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514|0 |Below-Normal|7 | | |4984|SearchProtocolHost.exe |Microsoft Windows Search Protocol Host |7.0.7601.17610|0 |Low |6 | | |5024|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5036|SearchFilterHost.exe |Microsoft Windows Search Filter Host |7.0.7601.17610|0 |Low |3 |C:\Windows\system32 | |5108|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |47 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5492|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Below-Normal|7 |C:\Program Files\Hard Disk Sentinel Pro | |5512|TrustedInstaller.exe | | |0 |Normal |4 | | |5540|WmiApSrv.exe |WMI Performance Reverse Adapter |6.1.7600.16385|0 |Normal |7 | | |5568|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |15 | | |5676|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385|0 |High |7 |C:\Windows\system32 | |5696|Explorer.EXE |Проводник |6.1.7601.17567|0 |Normal |29 |C:\Windows | |5768|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |5 |C:\ProgramData\DatacardService | |5844|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |13 | | |5956|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010|0 |Below-Normal|12 | | |6160|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |11 | | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: --------------------------------------------------------------------------------------------------------------- ; u_MarkDbSml.TMarkDbSml.LoadMarksFromFile (Line=1486 - Offset=62) ; ---------------------------------------------------------------- 00703D0C call dword ptr [ecx+$01B0] ; ; Line=1487 - Offset=63 ; --------------------- 00703D12 mov eax, [ebp-$18] 00703D15 mov eax, [eax+$60] 00703D18 call -$001EB64D 00703D1D jmp u_MarkDbSml.TMarkDbSml.LoadMarksFromFile (Line=1488) ; ; Line=1489 - Offset=65 ; --------------------- 00703D22 lea edx, [ebp-$0C] 00703D25 mov eax, [ebp-$18] 00703D28 call u_MarkDbSml.TMarkDbSml.ReadCurrentMark ; ; Line=1490 - Offset=66 ; --------------------- 00703D2D lea edx, [ebp-$30] 00703D30 mov eax, [ebp-$0C] 00703D33 mov ecx, [eax] ; <-- EXCEPTION 00703D35 call dword ptr [ecx+$10] 00703D38 mov eax, [ebp-$30] 00703D3B push eax 00703D3C lea eax, [ebp-$14] 00703D3F call -$002FBB18 00703D44 mov ecx, eax 00703D46 mov edx, $00704000 ; 'ҐЄ.&Ъ.+Gіо1к'нЦНU‹мѓДиSVW3Т‰Uь‰E'... 00703D4B pop eax 00703D4C call -$002EC8F1 00703D51 test al, al Registers: ----------------------------- EAX: 00000000 EDI: 0C427910 EBX: 0C4DDB01 ESI: 0C4CD030 ECX: 0CB31240 ESP: 0012EDFC EDX: 0012EE54 EIP: 00703D33 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EDFC: 0012EE08 0C436BE0: 8B 08 FF 51 10 8B 45 D0 50 8D 45 EC E8 E8 44 D0 ...Q..E.P.E...D. 0012EE00: 00405720 0C436BF0: FF 8B C8 BA 00 40 70 00 58 E8 0F 37 D1 FF 84 C0 .....@p.X..7.... 0012EE04: 0012EE84 0C436C00: 0F 84 8F 00 00 00 8B 45 EC 8B 10 FF 52 0C 8B D8 .......E....R... 0012EE08: 0012EE14 0C436C10: 8B 45 EC 8B 10 FF 52 14 8B F0 8D 45 CC 50 8B 45 .E....R....E.P.E 0012EE0C: 00405720 0C436C20: E8 8B 40 64 8B 4D F4 8B D3 8B 38 FF 57 0C 8D 4D ..@d.M....8.W..M 0012EE10: 0012EE84 0C436C30: C8 8B 45 E8 8B 40 68 8B D6 8B 38 FF 57 14 8B 55 ..E..@h...8.W..U 0012EE14: 0012EE20 0C436C40: C8 8D 45 F0 E8 A8 44 D0 FF 83 7D F0 00 75 35 6A ..E...D...}..u5j 0012EE18: 00405720 0C436C50: 00 33 C9 B2 01 A1 C8 AC 56 00 E8 E6 6B E6 FF 8B .3......V...k... 0012EE1C: 0012EE84 0C436C60: D0 85 D2 74 03 83 EA E4 8D 45 F0 E8 81 44 D0 FF ...t.....E...D.. 0012EE20: 0012EE2C 0C436C70: 8D 45 C4 50 8B 45 E8 8B 40 68 8B 4D F0 8B D6 8B .E.P.E..@h.M.... 0012EE24: 00405720 0C436C80: 30 FF 56 0C 8D 45 C0 50 8B 4D F4 8B D3 8B 45 F0 0.V..E.P.M....E. 0012EE28: 0012EE84 0C436C90: 8B 18 FF 53 0C 8B 45 E8 8B 40 60 E8 5D 4B E1 FF ...S..E..@`.]K.. 0012EE2C: 0012EE8C 0C436CA0: 8B 45 E8 8B 40 60 80 B8 A1 00 00 00 00 0F 84 1C .E..@`.......... 0012EE30: 00405720 0C436CB0: FF FF FF E9 D1 00 00 00 8B 45 E8 8B 40 44 8B 10 .........E..@D.. 0012EE34: 0012EE84 0C436CC0: FF 52 40 3C FF 0F 84 BE 00 00 00 33 C0 55 68 5A .R@<.......3.UhZ 0012EE38: 0C427910 0C436CD0: 3E 70 00 64 FF 30 64 89 20 68 FF FF 00 00 8B 4D >p.d.0d. h.....M EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Tue, 21 Jan 2014 14:14:22 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.21.7811 1.4 Parameters : 1.5 Compilation Date: Tue, 21 Jan 2014 04:03:44 +0400 1.6 Up Time : 2 seconds Exception: --------------------------------------------------------------------------------------------------------------------- 2.1 Date : Tue, 21 Jan 2014 14:14:24 +0400 2.2 Address : 00703D33 2.3 Module Name : SASPlanet.Debug.exe 2.4 Module Version: 14.1.21.7811 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 00703D33 in module 'SASPlanet.Debug.exe'. Read of address 00000000. 2.7 ID : B4FE 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 807 Mb 5.5 Free Disk : 384,1 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: --------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | --------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=6648; Priority=1; Class=; [Main] | |-------------------------------------------------------------------------------------------------------------------------------| |00703D33|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |LoadMarksFromFile |1490[66] | |00703A48|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |LoadMarksFromFile |1424[0] | |007002E2|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |Create |362[19] | |007001E4|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |Create |343[0] | |00706419|SASPlanet.Debug.exe|u_MarkSystemSml.pas |TMarkSystemSml |Create |131[24] | |007062E8|SASPlanet.Debug.exe|u_MarkSystemSml.pas |TMarkSystemSml |Create |107[0] | |00706BAE|SASPlanet.Debug.exe|u_MarkSystemImplChangeable.pas|TMarkSystemImplChangeable |CreateStatic |133[3] | |005872BA|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementWithStaticBase|DoBeforeChangeNotify |227[4] | |00586B28|SASPlanet.Debug.exe|u_ChangeableBase.pas |TChangeableBase |DoChangeNotify |57[1] | |0058711F|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementBase |StartNotify |169[4] | |0058714B|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementBase |UnlockWrite |187[2] | |00706CDF|SASPlanet.Debug.exe|u_MarkSystemImplChangeable.pas|TMarkSystemImplChangeable |OnAppStarted |172[6] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1710|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |00887272|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |764AADA4|USER32.dll | | |SendMessageA | | |764AAD60|USER32.dll | | |SendMessageA | | |764AABB7|USER32.dll | | |SetFocus | | |764AABAD|USER32.dll | | |SetFocus | | |764B61DE|USER32.dll | | |GetWindowLongW | | |764B53F5|USER32.dll | | |IsWindow | | |764AF2B3|USER32.dll | | |ShowWindow | | |764AF2A9|USER32.dll | | |ShowWindow | | |77887750|ntdll.dll | | |RtlLeaveCriticalSection | | |7789F881|ntdll.dll | | |LdrGetProcedureAddressEx| | |778A2296|ntdll.dll | | |LdrGetProcedureAddress | | |75916D12|KERNELBASE.dll | | |GetProcAddress | | |764B3654|USER32.dll | | |MonitorFromWindow | | |764B366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7611ED5A|kernel32.dll | | |GetDriveTypeW | | |-------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=8068; Priority=0; Class=TGarbageCollectorThread | |-------------------------------------------------------------------------------------------------------------------------------| |77886A62|ntdll.dll | | |ZwWaitForSingleObject | | |75911730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7611C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7611C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7611C2BD|kernel32.dll | | |Sleep | | |7611C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |778862A2|ntdll.dll | | |ZwQueryVirtualMemory | | |759191D5|KERNELBASE.dll | | |VirtualQueryEx | | |7611C400|kernel32.dll | | |InterlockedDecrement | | |77886622|ntdll.dll | | |NtSetEvent | | |75916856|KERNELBASE.dll | | |GetCurrentThreadId | | |7611ED5A|kernel32.dll | | |GetDriveTypeW | | |-------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=6648; Priority=1; Class=; [Main] | |-------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F0836|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7611ED5A|kernel32.dll | | |GetDriveTypeW | | --------------------------------------------------------------------------------------------------------------------------------- Modules Information: -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00230000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |003A0000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |00400000|SASPlanet.Debug.exe | |14.1.21.7811 |5871104 |2014-01-21 04:03:48|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |54820000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |61310000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |65020000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |67420000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |67490000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |67F20000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |6A7E0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |70010000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |704A0000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |726D0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72CB0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |733C0000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |733D0000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73800000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |738D0000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |738E0000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74030000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74420000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74460000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2| |74FB0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |74FC0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |751C0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |75690000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75720000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75740000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |75800000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75810000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75880000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |75900000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75910000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75990000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |759D0000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |759E0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75A00000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75BE0000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |75D40000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |75DF0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |75E90000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |75F40000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |75FC0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |75FD0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |76020000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |760C0000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |760D0000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |761E0000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |76410000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |764A0000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |765D0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |767D0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |77420000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |774F0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |776B0000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |777E0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77840000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77980000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |779A0000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | |779C0000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A20000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |77A60000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |134 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113|0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |480 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385|0 |High |10 | | |552 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385|0 |High |3 | | |564 |AESTSrv.exe | | |0 |Normal |5 | | |568 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385|0 |High |13 | | |620 |services.exe |Приложение служб и контроллеров |6.1.7600.16385|0 |Normal |9 | | |640 |lsass.exe |Local Security Authority Process |6.1.7601.18270|0 |Normal |7 | | |648 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514|0 |Normal |9 | | |696 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514|0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |11 | | |812 |Fuel.Service.exe | | |0 |Normal |7 | | |856 |USBSRService.exe | | |0 |Normal |5 | | |904 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |12 | | |968 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1052|SASPlanet.Debug.exe | |14.1.21.7811 |0 |Normal |20 |D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |1056|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |20 | | |1100|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |25 | | |1124|cvpnd.exe | | |0 |Normal |9 | | |1128|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |17 | | |1196|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |50 | | |1204|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |18 |C:\Program Files\Broadcom\Broadcom 802.11 | |1236|stacsv.exe | | |0 |Normal |11 | | |1384|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |7 | | |1464|FwcAgent.exe | | |0 |Normal |13 | | |1504|GCSServer.exe | | |0 |Normal |6 | | |1584|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |36 | | |1692|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1700|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385|0 |Normal |8 | | |1708|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |16 | | |1852|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777|0 |Normal |16 | | |1860|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |1868|LightShot.exe |Lightshot |4.4.2.0 |0 |Normal |2 |C:\Users\KSkrynnikov\AppData\Local\Skillbrains\lightshot\4.4.2.10 | |1908|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |20 | | |2052|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2144|HWDeviceService.exe | | |0 |Normal |6 | | |2180|mdm.exe | | |0 |Normal |6 | | |2216|RPEService.exe | | |0 |Normal |15 | | |2228|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |2260|PlanetBroker.exe | | |0 |Normal |9 | | |2360|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |7 |C:\Program Files\Citrix\ICA Client | |2400|notepad++.exe |Notepad++ : a free (GNU) source code editor |6.5.2.0 |0 |Normal |5 |C:\Program Files\Notepad++ | |2468|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |4 | | |2500|oodag.exe | | |0 |Normal |13 | | |2520|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385|0 |Normal |7 |C:\Windows\System32 | |2616|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |4 | | |2664|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |7 | | |2688|Q1DBService.exe | | |0 |Normal |4 | | |2708|RPEAgent.exe | | |0 |Normal |12 | | |2736|EvernoteClipper.exe |Evernote Clipper |5.1.0.2217 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |2744|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |2 | | |2756|RPEAgent.exe | | |0 |Normal |12 | | |2764|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |2 | | |2804|ccSvcHst.exe | | |0 |Normal |74 | | |2888|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514|0 |Normal |4 | | |3072|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |3164|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |3188|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |6 | | |3260|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |3300|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |14 | | |3308|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010|0 |Normal |14 |C:\Windows\system32 | |3396|ssonsvr.exe | | |0 |Normal |5 | | |3424|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |3456|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |3516|CcmExec.exe | | |0 |Normal |18 | | |3656|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |3672|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |3804|EvernoteTray.exe |Evernote Tray Application |5.1.0.2217 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |3828|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3840|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |4060|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |10 | | |4076|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514|0 |Normal |5 |C:\Windows\system32 | |4144|Smc.exe | | |0 |Normal |33 | | |4264|Uncom.exe |Unreal Commander |2.0.2.960 |0 |Normal |18 |C:\Program Files\Unreal Commander | |4352|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610|0 |Normal |12 | | |4436|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |5 | | |4812|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |12 | | |4832|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385|0 |Normal |3 | | |4868|NOTEPAD.EXE |Блокнот |6.1.7600.16385|0 |Normal |1 |C:\Windows\system32 | |5024|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5108|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |40 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5492|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |4 |C:\Program Files\Hard Disk Sentinel Pro | |5568|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |13 | | |5676|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385|0 |High |5 |C:\Windows\system32 | |5696|Explorer.EXE |Проводник |6.1.7601.17567|0 |Normal |23 |C:\Windows | |5768|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |5844|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |12 | | |6160|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |7 | | |6376|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |42 |C:\Program Files\Mozilla Firefox | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: --------------------------------------------------------------------------------------------------------------- ; u_MarkDbSml.TMarkDbSml.LoadMarksFromFile (Line=1486 - Offset=62) ; ---------------------------------------------------------------- 00703D0C call dword ptr [ecx+$01B0] ; ; Line=1487 - Offset=63 ; --------------------- 00703D12 mov eax, [ebp-$18] 00703D15 mov eax, [eax+$60] 00703D18 call -$001EB64D 00703D1D jmp u_MarkDbSml.TMarkDbSml.LoadMarksFromFile (Line=1488) ; ; Line=1489 - Offset=65 ; --------------------- 00703D22 lea edx, [ebp-$0C] 00703D25 mov eax, [ebp-$18] 00703D28 call u_MarkDbSml.TMarkDbSml.ReadCurrentMark ; ; Line=1490 - Offset=66 ; --------------------- 00703D2D lea edx, [ebp-$30] 00703D30 mov eax, [ebp-$0C] 00703D33 mov ecx, [eax] ; <-- EXCEPTION 00703D35 call dword ptr [ecx+$10] 00703D38 mov eax, [ebp-$30] 00703D3B push eax 00703D3C lea eax, [ebp-$14] 00703D3F call -$002FBB18 00703D44 mov ecx, eax 00703D46 mov edx, $00704000 ; 'ҐЄ.&Ъ.+Gіо1к'нЦНU‹мѓДиSVW3Т‰Uь‰E'... 00703D4B pop eax 00703D4C call -$002EC8F1 00703D51 test al, al Registers: ----------------------------- EAX: 00000000 EDI: 0BA5BC40 EBX: 0BA45501 ESI: 0B92ECC0 ECX: 0C9203B0 ESP: 0012EDFC EDX: 0012EE54 EIP: 00703D33 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EDFC: 0012EE08 0A0668D0: 8B 08 FF 51 10 8B 45 D0 50 8D 45 EC E8 E8 44 D0 ...Q..E.P.E...D. 0012EE00: 00405720 0A0668E0: FF 8B C8 BA 00 40 70 00 58 E8 0F 37 D1 FF 84 C0 .....@p.X..7.... 0012EE04: 0012EE84 0A0668F0: 0F 84 8F 00 00 00 8B 45 EC 8B 10 FF 52 0C 8B D8 .......E....R... 0012EE08: 0012EE14 0A066900: 8B 45 EC 8B 10 FF 52 14 8B F0 8D 45 CC 50 8B 45 .E....R....E.P.E 0012EE0C: 00405720 0A066910: E8 8B 40 64 8B 4D F4 8B D3 8B 38 FF 57 0C 8D 4D ..@d.M....8.W..M 0012EE10: 0012EE84 0A066920: C8 8B 45 E8 8B 40 68 8B D6 8B 38 FF 57 14 8B 55 ..E..@h...8.W..U 0012EE14: 0012EE20 0A066930: C8 8D 45 F0 E8 A8 44 D0 FF 83 7D F0 00 75 35 6A ..E...D...}..u5j 0012EE18: 00405720 0A066940: 00 33 C9 B2 01 A1 C8 AC 56 00 E8 E6 6B E6 FF 8B .3......V...k... 0012EE1C: 0012EE84 0A066950: D0 85 D2 74 03 83 EA E4 8D 45 F0 E8 81 44 D0 FF ...t.....E...D.. 0012EE20: 0012EE2C 0A066960: 8D 45 C4 50 8B 45 E8 8B 40 68 8B 4D F0 8B D6 8B .E.P.E..@h.M.... 0012EE24: 00405720 0A066970: 30 FF 56 0C 8D 45 C0 50 8B 4D F4 8B D3 8B 45 F0 0.V..E.P.M....E. 0012EE28: 0012EE84 0A066980: 8B 18 FF 53 0C 8B 45 E8 8B 40 60 E8 5D 4B E1 FF ...S..E..@`.]K.. 0012EE2C: 0012EE8C 0A066990: 8B 45 E8 8B 40 60 80 B8 A1 00 00 00 00 0F 84 1C .E..@`.......... 0012EE30: 00405720 0A0669A0: FF FF FF E9 D1 00 00 00 8B 45 E8 8B 40 44 8B 10 .........E..@D.. 0012EE34: 0012EE84 0A0669B0: FF 52 40 3C FF 0F 84 BE 00 00 00 33 C0 55 68 5A .R@<.......3.UhZ 0012EE38: 0BA5BC40 0A0669C0: 3E 70 00 64 FF 30 64 89 20 68 FF FF 00 00 8B 4D >p.d.0d. h.....M