EurekaLog 6.1.03 Application: ------------------------------------------------------- 1.1 Start Date : Tue, 21 Jan 2014 16:49:51 +0400 1.2 Name/Description: SASPlanet.Debug.exe 1.3 Version Number : 14.1.21.7811 1.4 Parameters : 1.5 Compilation Date: Tue, 21 Jan 2014 04:03:44 +0400 1.6 Up Time : 2 seconds Exception: --------------------------------------------------------------------------------------------------------------------- 2.1 Date : Tue, 21 Jan 2014 16:49:54 +0400 2.2 Address : 00703D33 2.3 Module Name : SASPlanet.Debug.exe 2.4 Module Version: 14.1.21.7811 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 00703D33 in module 'SASPlanet.Debug.exe'. Read of address 00000000. 2.7 ID : B4FE 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.5 Privileges: SeIncreaseQuotaPrivilege - OFF SeSecurityPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeLoadDriverPrivilege - OFF SeSystemProfilePrivilege - OFF SeSystemtimePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeCreatePagefilePrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeShutdownPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeChangeNotifyPrivilege - ON SeRemoteShutdownPrivilege - OFF SeUndockPrivilege - OFF SeManageVolumePrivilege - OFF SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON SeIncreaseWorkingSetPrivilege - OFF SeTimeZonePrivilege - OFF SeCreateSymbolicLinkPrivilege - OFF Computer: ---------------------------------------------------------------------- 5.3 Free Memory : 1034 Mb 5.5 Free Disk : 383,82 Gb 5.7 Processor : AMD A4-3310MX APU with Radeon(tm) HD Graphics 5.8 Display Mode: 1366 x 768, 32 bit 5.9 Display DPI : 96 5.10 Video Card : AMD Radeon HD 6480G (driver 9.12.0.0 - RAM 512 MB) Operating System: ----------------------------------- 6.1 Type : Microsoft Windows 7 6.2 Build # : 7601 6.3 Update : Service Pack 1 6.4 Language: Russian 6.5 Charset : 204 Call Stack Information: --------------------------------------------------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method |Line | --------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=5540; Priority=1; Class=; [Main] | |-------------------------------------------------------------------------------------------------------------------------------| |00703D33|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |LoadMarksFromFile |1490[66] | |00703A48|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |LoadMarksFromFile |1424[0] | |007002E2|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |Create |362[19] | |007001E4|SASPlanet.Debug.exe|u_MarkDbSml.pas |TMarkDbSml |Create |343[0] | |00706419|SASPlanet.Debug.exe|u_MarkSystemSml.pas |TMarkSystemSml |Create |131[24] | |007062E8|SASPlanet.Debug.exe|u_MarkSystemSml.pas |TMarkSystemSml |Create |107[0] | |00706BAE|SASPlanet.Debug.exe|u_MarkSystemImplChangeable.pas|TMarkSystemImplChangeable |CreateStatic |133[3] | |005872BA|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementWithStaticBase|DoBeforeChangeNotify |227[4] | |00586B28|SASPlanet.Debug.exe|u_ChangeableBase.pas |TChangeableBase |DoChangeNotify |57[1] | |0058711F|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementBase |StartNotify |169[4] | |0058714B|SASPlanet.Debug.exe|u_ConfigDataElementBase.pas |TConfigDataElementBase |UnlockWrite |187[2] | |00706CDF|SASPlanet.Debug.exe|u_MarkSystemImplChangeable.pas|TMarkSystemImplChangeable |OnAppStarted |172[6] | |005718BE|SASPlanet.Debug.exe|u_ListenerByEvent.pas |TNotifyNoMmgEventListener |Notification |157[1] | |00586882|SASPlanet.Debug.exe|u_Notifier.pas |TNotifierBase |Notify |87[10] | |005ADE5E|SASPlanet.Debug.exe|u_NotifierOperation.pas |TNotifierOneOperation |ExecuteOperation |165[10] | |007F1710|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |913[1] | |007F16F0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |StartThreads |912[0] | |00887272|SASPlanet.Debug.exe|frm_Main.pas |TfrmMain |FormActivate |1427[192]| |764AADA4|USER32.dll | | |SendMessageA | | |764AAD60|USER32.dll | | |SendMessageA | | |764AABB7|USER32.dll | | |SetFocus | | |764AABAD|USER32.dll | | |SetFocus | | |764B61DE|USER32.dll | | |GetWindowLongW | | |764B53F5|USER32.dll | | |IsWindow | | |764AF2B3|USER32.dll | | |ShowWindow | | |764AF2A9|USER32.dll | | |ShowWindow | | |77887750|ntdll.dll | | |RtlLeaveCriticalSection | | |7789F881|ntdll.dll | | |LdrGetProcedureAddressEx| | |778A2296|ntdll.dll | | |LdrGetProcedureAddress | | |75916D12|KERNELBASE.dll | | |GetProcAddress | | |764B3654|USER32.dll | | |MonitorFromWindow | | |764B366A|USER32.dll | | |MonitorFromWindow | | |008A2BA5|SASPlanet.Debug.exe|SASPlanet.dpr | | |1203[30] | |7611ED5A|kernel32.dll | | |GetDriveTypeW | | |-------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=8084; Priority=0; Class=TGarbageCollectorThread | |-------------------------------------------------------------------------------------------------------------------------------| |77886A62|ntdll.dll | | |ZwWaitForSingleObject | | |75911730|KERNELBASE.dll | | |WaitForSingleObjectEx | | |7611C30E|kernel32.dll | | |WaitForSingleObjectEx | | |7611C2D0|kernel32.dll | | |WaitForSingleObjectEx | | |7611C2BD|kernel32.dll | | |Sleep | | |7611C2B0|kernel32.dll | | |Sleep | | |006DF13D|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |130[2] | |006DF134|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |SleepCancelable |129[1] | |006DF0EE|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Execute |117[10] | |778862A2|ntdll.dll | | |ZwQueryVirtualMemory | | |759191D5|KERNELBASE.dll | | |VirtualQueryEx | | |7611C400|kernel32.dll | | |InterlockedDecrement | | |77886622|ntdll.dll | | |NtSetEvent | | |75916856|KERNELBASE.dll | | |GetCurrentThreadId | | |7611ED5A|kernel32.dll | | |GetDriveTypeW | | |-------------------------------------------------------------------------------------------------------------------------------| |Calling Thread: ID=5540; Priority=1; Class=; [Main] | |-------------------------------------------------------------------------------------------------------------------------------| |006DEFC9|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |85[14] | |006DEF28|SASPlanet.Debug.exe|u_GarbageCollectorThread.pas |TGarbageCollectorThread |Create |71[0] | |007F0836|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |611[216] | |007EFCA0|SASPlanet.Debug.exe|u_GlobalState.pas |TGlobalState |Create |395[0] | |008A2A4C|SASPlanet.Debug.exe|SASPlanet.dpr | | |1178[5] | |7611ED5A|kernel32.dll | | |GetDriveTypeW | | --------------------------------------------------------------------------------------------------------------------------------- Modules Information: -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00230000|zlib1.dll |zlib data compression library |1.2.7.0 |66048 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |00290000|RocketDock.dll | | |69632 |2007-09-02 13:57:36|C:\Program Files\RocketDock | |00400000|SASPlanet.Debug.exe | |14.1.21.7811 |5871104 |2014-01-21 04:03:48|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |10000000|FreeImage.dll |FreeImage library |3.15.3.0 |322560 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |54820000|ieframe.dll |Браузер |10.0.9200.16750 |13761536|2013-10-25 08:43:40|C:\Windows\System32 | |61310000|api-ms-win-downlevel-shell32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\System32 | |64070000|jpeg62.dll | | |244736 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |640E0000|libpng15.dll |PNG image compression library |1.5.12.0 |135680 |2013-05-19 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |65020000|olepro32.dll | |6.1.7601.17514 |90112 |2010-11-21 01:29:12|C:\Windows\system32 | |67450000|CityHash.dll | | |14336 |2013-08-12 04:01:10|D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |67F20000|api-ms-win-downlevel-advapi32-l2-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |3584 |2013-01-14 01:12:48|C:\Windows\System32 | |6A7E0000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 01:29:14|C:\Windows\system32 | |70010000|api-ms-win-downlevel-shlwapi-l2-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:08|C:\Windows\System32 | |704A0000|wsock32.dll |Windows Socket 32-Bit DLL |6.1.7600.16385 |15360 |2009-07-14 05:16:22|C:\Windows\system32 | |726D0000|MSVCP90.dll |Microsoft® C++ Runtime Library |9.0.30729.6161 |569680 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |72CB0000|MSVCR90.dll |Microsoft® C Runtime Library |9.0.30729.6161 |653136 |2013-03-07 01:07:18|C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57 | |733C0000|WINNSI.DLL |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 05:16:20|C:\Windows\system32 | |733D0000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 01:29:26|C:\Windows\system32 | |73800000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 01:29:20|C:\Windows\system32 | |738E0000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 05:15:46|C:\Windows\system32 | |74030000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 05:15:14|C:\Windows\system32 | |74420000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |249856 |2009-07-14 05:16:18|C:\Windows\system32 | |74460000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 01:29:08|C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2| |74FB0000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 05:16:22|C:\Windows\System32 | |74FC0000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.18254 |231424 |2013-09-08 06:04:00|C:\Windows\system32 | |751C0000|Secur32.dll |Security Support Provider Interface |6.1.7601.18270 |22016 |2013-09-25 05:57:28|C:\Windows\system32 | |75690000|version.dll |Version Checking and File Installation Libraries |6.1.7600.16385 |21504 |2009-07-14 05:16:18|C:\Windows\system32 | |75720000|SSPICLI.DLL |Security Support Provider Interface |6.1.7601.18270 |99840 |2013-09-25 05:57:48|C:\Windows\system32 | |75740000|SYSFER.DLL |Symantec CMC Firewall sysfer |12.1.2015.2015 |359888 |2013-11-07 10:47:16|C:\Windows\System32 | |75800000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 05:15:08|C:\Windows\system32 | |75810000|SXS.DLL |Fusion 2.5 |6.1.7601.17514 |380416 |2010-11-21 01:29:20|C:\Windows\system32 | |75880000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 05:16:14|C:\Windows\system32 | |75900000|api-ms-win-downlevel-shlwapi-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |9728 |2013-01-14 01:17:04|C:\Windows\system32 | |75910000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |293376 |2013-08-02 05:49:20|C:\Windows\system32 | |75990000|api-ms-win-downlevel-version-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |3072 |2013-01-14 01:11:08|C:\Windows\system32 | |759D0000|api-ms-win-downlevel-user32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |4096 |2013-01-14 01:11:22|C:\Windows\system32 | |759E0000|api-ms-win-downlevel-normaliz-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |2560 |2013-01-14 01:17:04|C:\Windows\system32 | |759F0000|api-ms-win-downlevel-ole32-l1-1-0.dll |ApiSet Stub DLL |6.2.9200.16492 |5632 |2013-01-14 01:11:10|C:\Windows\system32 | |75A00000|api-ms-win-downlevel-advapi32-l1-1-0.dll|ApiSet Stub DLL |6.2.9200.16492 |10752 |2013-01-14 01:16:44|C:\Windows\system32 | |75BE0000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 01:29:08|C:\Windows\system32 | |75D40000|RPCRT4.dll |Библиотека удаленного вызова процедур |6.1.7601.18205 |652800 |2013-07-09 08:50:44|C:\Windows\system32 | |75DF0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.18247 |640512 |2013-08-29 05:48:18|C:\Windows\system32 | |75E90000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2011-12-16 11:53:00|C:\Windows\system32 | |75F40000|comdlg32.dll |Библиотека общих диалоговых окон |6.1.7601.17514 |485888 |2010-11-21 01:29:06|C:\Windows\system32 | |75FC0000|normaliz.DLL |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 05:09:02|C:\Windows\system32 | |75FD0000|GDI32.dll |GDI Client DLL |6.1.7601.18275 |305152 |2013-10-03 05:58:08|C:\Windows\system32 | |76020000|USP10.dll |Uniscribe Unicode script processor |1.626.7601.18009 |626688 |2012-11-22 08:45:04|C:\Windows\system32 | |760C0000|NSI.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 05:16:12|C:\Windows\system32 | |760D0000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.18229 |868352 |2013-08-02 05:49:20|C:\Windows\system32 | |761E0000|oleaut32.dll | |6.1.7601.17676 |571904 |2011-08-27 08:26:28|C:\Windows\system32 | |76410000|CLBCatQ.DLL |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 05:15:04|C:\Windows\system32 | |764A0000|USER32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |811520 |2010-11-21 01:29:22|C:\Windows\system32 | |765D0000|iertutil.dll |Run time utility for Internet Explorer |10.0.9200.16750 |2049024 |2013-10-25 08:43:40|C:\Windows\system32 | |767D0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.18222 |12872704|2013-07-26 05:56:00|C:\Windows\system32 | |77420000|MSCTF.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 05:15:44|C:\Windows\system32 | |774F0000|WININET.dll |Расширения Интернета для Win32 |10.0.9200.16750 |1767936 |2013-10-25 08:45:12|C:\Windows\system32 | |776B0000|URLMON.DLL |Расширения OLE32 для Win32 |10.0.9200.16750 |1140736 |2013-10-25 08:45:00|C:\Windows\system32 | |777E0000|SHLWAPI.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 01:29:04|C:\Windows\system32 | |77840000|ntdll.dll |Системная библиотека NT |6.1.7601.18247 |1289096 |2013-08-29 05:50:32|C:\Windows\SYSTEM32 | |77980000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 05:16:14|C:\Windows\SYSTEM32 | |779A0000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |118272 |2010-11-21 01:29:22|C:\Windows\system32 | |779C0000|LPK.dll |Language Pack |6.1.7601.18177 |26112 |2013-06-06 08:52:16|C:\Windows\system32 | |77A20000|WS2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 01:29:08|C:\Windows\system32 | |77A60000|PSAPI.DLL |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 05:16:14|C:\Windows\system32 | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory|Priority |Threads|Path | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |0 |Normal |141 | | |348 |smss.exe |Диспетчер сеанса Windows |6.1.7601.18113|0 |Above-Normal|2 | | |396 |agrsmsvc.exe | | |0 |Normal |3 | | |480 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385|0 |High |10 | | |552 |wininit.exe |Автозагрузка приложений Windows |6.1.7600.16385|0 |High |3 | | |564 |AESTSrv.exe | | |0 |Normal |5 | | |568 |csrss.exe |Процесс исполнения клиент-сервер |6.1.7600.16385|0 |High |13 | | |620 |services.exe |Приложение служб и контроллеров |6.1.7600.16385|0 |Normal |10 | | |640 |lsass.exe |Local Security Authority Process |6.1.7601.18270|0 |Normal |8 | | |648 |lsm.exe |Служба диспетчера локальных сеансов |6.1.7601.17514|0 |Normal |9 | | |696 |winlogon.exe |Программа входа в систему Windows |6.1.7601.17514|0 |High |3 | | |792 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |11 | | |812 |Fuel.Service.exe | | |0 |Normal |7 | | |856 |USBSRService.exe | | |0 |Normal |5 | | |904 |svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |12 | | |968 |atiesrxx.exe |AMD External Events Service Module |6.14.11.1137 |0 |Normal |6 | | |1052|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010|0 |Normal |5 |C:\Windows\system32 | |1056|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |20 | | |1100|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |24 | | |1124|cvpnd.exe | | |0 |Normal |10 | | |1128|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |19 | | |1196|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |54 | | |1204|WLTRAY.EXE |Broadcom 802.11 Wireless Network Tray Applet |5.100.82.148 |0 |Normal |19 |C:\Program Files\Broadcom\Broadcom 802.11 | |1236|stacsv.exe | | |0 |Normal |11 | | |1380|SASPlanet.Debug.exe | |14.1.21.7811 |0 |Normal |20 |D:\@SASPlanet\SAS.Planet.Nightly.140121.7811 | |1384|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |7 | | |1464|FwcAgent.exe | | |0 |Normal |10 | | |1504|GCSServer.exe | | |0 |Normal |6 | | |1584|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |34 | | |1692|WLTRYSVC.EXE |Broadcom 802.11 Wireless Network Service |5.100.82.148 |0 |Normal |4 | | |1700|wlanext.exe |Инфраструктура расширяемости беспроводной локальной сети Windows 802.11|6.1.7600.16385|0 |Normal |9 | | |1708|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |1 | | |1716|gcssync.exe | | |0 |Normal |6 | | |1736|BCMWLTRY.EXE |Broadcom 802.11 Wireless Network Controller |5.100.82.148 |0 |Normal |17 | | |1852|spoolsv.exe |Диспетчер очереди печати |6.1.7601.17777|0 |Normal |16 | | |1860|FwcMgmt.exe |Forefront TMG Client Management |7.0.7734.100 |0 |Normal |5 |C:\Program Files\Forefront TMG Client | |1864|audiodg.exe |Изоляция графов аудиоустройств Windows |6.1.7601.17514|0 |Normal |7 | | |1868|LightShot.exe |Lightshot |4.4.2.0 |0 |Normal |2 |C:\Users\KSkrynnikov\AppData\Local\Skillbrains\lightshot\4.4.2.10 | |1908|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |20 | | |2052|HPSupportSolutionsFrameworkService.exe| | |0 |Normal |11 | | |2144|HWDeviceService.exe | | |0 |Normal |6 | | |2180|mdm.exe | | |0 |Normal |6 | | |2216|RPEService.exe | | |0 |Normal |15 | | |2228|SynTPEnh.exe |Synaptics TouchPad Enhancements |16.3.8.8 |0 |Above-Normal|10 |C:\Program Files\Synaptics\SynTP | |2260|PlanetBroker.exe | | |0 |Normal |9 | | |2360|WFCRUN32.EXE |Citrix |12.1.44.1 |0 |Normal |6 |C:\Program Files\Citrix\ICA Client | |2468|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |4 | | |2500|oodag.exe | | |0 |Normal |13 | | |2520|rundll32.exe |Хост-процесс Windows (Rundll32) |6.1.7600.16385|0 |Normal |7 |C:\Windows\System32 | |2616|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |4 | | |2664|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |7 | | |2688|Q1DBService.exe | | |0 |Normal |4 | | |2708|RPEAgent.exe | | |0 |Normal |12 | | |2736|EvernoteClipper.exe |Evernote Clipper |5.1.0.2217 |0 |Normal |4 |C:\Program Files\Evernote\Evernote | |2744|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |2 | | |2756|RPEAgent.exe | | |0 |Normal |12 | | |2764|conhost.exe |Окно консоли узла |6.1.7601.18229|0 |Normal |2 | | |2804|ccSvcHst.exe | | |0 |Normal |75 | | |2888|sppsvc.exe |Служба платформы защиты программного обеспечения Майкрософт |6.1.7601.17514|0 |Normal |4 | | |3072|oodtray.exe |O&O Defrag TrayIcon (Win32) |17.0.462.173 |0 |Normal |6 |C:\Program Files\OO Software\Defrag | |3164|MOM.exe |Catalyst Control Center: Monitoring program |2.0.0.0 |0 |Normal |16 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |3188|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |6 | | |3260|atieclxx.exe |AMD External Events Client Module |6.14.11.1137 |0 |Normal |10 | | |3300|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |14 | | |3308|taskhost.exe |Хост-процесс для задач Windows |6.1.7601.18010|0 |Normal |14 |C:\Windows\system32 | |3396|ssonsvr.exe | | |0 |Normal |5 | | |3424|WLIDSVC.EXE |Microsoft® Windows Live ID Service |6.500.3165.0 |0 |Normal |14 | | |3456|SYNTPHELPER.EXE |Synaptics Pointing Device Helper |16.3.8.8 |0 |Above-Normal|1 |C:\PROGRAM FILES\SYNAPTICS\SYNTP | |3516|CcmExec.exe | | |0 |Normal |17 | | |3656|sttray.exe |IDT PC Audio |1.0.6433.0 |0 |Normal |6 |C:\Program Files\IDT\WDM | |3672|RocketDock.exe | | |0 |Normal |5 |C:\Program Files\RocketDock | |3804|EvernoteTray.exe |Evernote Tray Application |5.1.0.2217 |0 |Normal |2 |C:\Program Files\Evernote\Evernote | |3828|WLIDSVCM.EXE |Microsoft® Windows Live ID Service Monitor |6.500.3165.0 |0 |Normal |3 | | |3840|concentr.exe |Citrix online plug-in Connection Center |12.1.44.1 |0 |Normal |5 |C:\Program Files\Citrix\ICA Client | |4060|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |13 | | |4076|taskeng.exe |Обработчик планировщика заданий |6.1.7601.17514|0 |Normal |5 |C:\Windows\system32 | |4144|Smc.exe | | |0 |Normal |33 | | |4264|Uncom.exe |Unreal Commander |2.0.2.960 |0 |Normal |22 |C:\Program Files\Unreal Commander | |4352|SearchIndexer.exe |Индексатор службы Microsoft Windows Search |7.0.7601.17610|0 |Normal |15 | | |4436|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |5 | | |4832|unsecapp.exe |Sink to receive asynchronous callbacks for WMI client application |6.1.7600.16385|0 |Normal |3 | | |5024|ccSvcHst.exe |Symantec Service Framework |12.1.1.5 |0 |Normal |20 |C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.2015.2015.105\Bin| |5108|CCC.exe |Catalyst Control Center: Host application |3.5.0.0 |0 |Normal |40 |C:\Program Files\ATI Technologies\ATI.ACE\Core-Static | |5492|HDSentinel.exe |Hard Disk Sentinel Engine |4.1.0.0 |0 |Normal |4 |C:\Program Files\Hard Disk Sentinel Pro | |5568|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |13 | | |5676|Dwm.exe |Диспетчер окон рабочего стола |6.1.7600.16385|0 |High |6 |C:\Windows\system32 | |5696|Explorer.EXE |Проводник |6.1.7601.17567|0 |Normal |25 |C:\Windows | |5768|DCSHelper.exe |DataCardMonitor MFC Application |2.0.0.47 |0 |Normal |3 |C:\ProgramData\DatacardService | |5844|svchost.exe |Хост-процесс для служб Windows |6.1.7600.16385|0 |Normal |11 | | |6160|WmiPrvSE.exe |WMI Provider Host |6.1.7601.17514|0 |Normal |7 | | |6376|firefox.exe |Firefox |26.0.0.5087 |0 |Normal |50 |C:\Program Files\Mozilla Firefox | |7304|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |10 |C:\Windows\system32\Macromed\Flash | |7892|FlashPlayerPlugin_11_9_900_152.exe |Adobe Flash Player 11.9 r900 |11.9.900.152 |0 |Normal |9 |C:\Windows\system32\Macromed\Flash | |8124|plugin-container.exe |Plugin Container for Firefox |26.0.0.5087 |0 |Normal |10 |C:\Program Files\Mozilla Firefox | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: --------------------------------------------------------------------------------------------------------------- ; u_MarkDbSml.TMarkDbSml.LoadMarksFromFile (Line=1486 - Offset=62) ; ---------------------------------------------------------------- 00703D0C call dword ptr [ecx+$01B0] ; ; Line=1487 - Offset=63 ; --------------------- 00703D12 mov eax, [ebp-$18] 00703D15 mov eax, [eax+$60] 00703D18 call -$001EB64D 00703D1D jmp u_MarkDbSml.TMarkDbSml.LoadMarksFromFile (Line=1488) ; ; Line=1489 - Offset=65 ; --------------------- 00703D22 lea edx, [ebp-$0C] 00703D25 mov eax, [ebp-$18] 00703D28 call u_MarkDbSml.TMarkDbSml.ReadCurrentMark ; ; Line=1490 - Offset=66 ; --------------------- 00703D2D lea edx, [ebp-$30] 00703D30 mov eax, [ebp-$0C] 00703D33 mov ecx, [eax] ; <-- EXCEPTION 00703D35 call dword ptr [ecx+$10] 00703D38 mov eax, [ebp-$30] 00703D3B push eax 00703D3C lea eax, [ebp-$14] 00703D3F call -$002FBB18 00703D44 mov ecx, eax 00703D46 mov edx, $00704000 ; 'ҐЄ.&Ъ.+Gіо1к'нЦНU‹мѓДиSVW3Т‰Uь‰E'... 00703D4B pop eax 00703D4C call -$002EC8F1 00703D51 test al, al Registers: ----------------------------- EAX: 00000000 EDI: 0CABDC10 EBX: 0D123F01 ESI: 0B6F0C60 ECX: 0D08A3C0 ESP: 0012EDFC EDX: 0012EE54 EIP: 00703D33 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012EDFC: 0012EE08 05FD4680: 8B 08 FF 51 10 8B 45 D0 50 8D 45 EC E8 E8 44 D0 ...Q..E.P.E...D. 0012EE00: 00405720 05FD4690: FF 8B C8 BA 00 40 70 00 58 E8 0F 37 D1 FF 84 C0 .....@p.X..7.... 0012EE04: 0012EE84 05FD46A0: 0F 84 8F 00 00 00 8B 45 EC 8B 10 FF 52 0C 8B D8 .......E....R... 0012EE08: 0012EE14 05FD46B0: 8B 45 EC 8B 10 FF 52 14 8B F0 8D 45 CC 50 8B 45 .E....R....E.P.E 0012EE0C: 00405720 05FD46C0: E8 8B 40 64 8B 4D F4 8B D3 8B 38 FF 57 0C 8D 4D ..@d.M....8.W..M 0012EE10: 0012EE84 05FD46D0: C8 8B 45 E8 8B 40 68 8B D6 8B 38 FF 57 14 8B 55 ..E..@h...8.W..U 0012EE14: 0012EE20 05FD46E0: C8 8D 45 F0 E8 A8 44 D0 FF 83 7D F0 00 75 35 6A ..E...D...}..u5j 0012EE18: 00405720 05FD46F0: 00 33 C9 B2 01 A1 C8 AC 56 00 E8 E6 6B E6 FF 8B .3......V...k... 0012EE1C: 0012EE84 05FD4700: D0 85 D2 74 03 83 EA E4 8D 45 F0 E8 81 44 D0 FF ...t.....E...D.. 0012EE20: 0012EE2C 05FD4710: 8D 45 C4 50 8B 45 E8 8B 40 68 8B 4D F0 8B D6 8B .E.P.E..@h.M.... 0012EE24: 00405720 05FD4720: 30 FF 56 0C 8D 45 C0 50 8B 4D F4 8B D3 8B 45 F0 0.V..E.P.M....E. 0012EE28: 0012EE84 05FD4730: 8B 18 FF 53 0C 8B 45 E8 8B 40 60 E8 5D 4B E1 FF ...S..E..@`.]K.. 0012EE2C: 0012EE8C 05FD4740: 8B 45 E8 8B 40 60 80 B8 A1 00 00 00 00 0F 84 1C .E..@`.......... 0012EE30: 00405720 05FD4750: FF FF FF E9 D1 00 00 00 8B 45 E8 8B 40 44 8B 10 .........E..@D.. 0012EE34: 0012EE84 05FD4760: FF 52 40 3C FF 0F 84 BE 00 00 00 33 C0 55 68 5A .R@<.......3.UhZ 0012EE38: 0CABDC10 05FD4770: 3E 70 00 64 FF 30 64 89 20 68 FF FF 00 00 8B 4D >p.d.0d. h.....M