Anda di halaman 1dari 7

date/time

: 2013-06-24, 16:49:30, 650ms


computer name
: PINGOCYBER17-PC
user name
: PINGONET21 <admin>
registered owner : PINGONET21
operating system : Windows 7 Service Pack 1 build 7601
system language : English
system up time
: 1 hour 18 minutes
program up time : 3 seconds
processors
: 3x AMD A6-3500 APU with Radeon(tm) HD Graphics
physical memory : 2222/3325 MB (free/total)
free disk space : (C:) 41.54 GB
display mode
: 1366x768, 32 bit
process id
: $c60
allocated memory : 33.84 MB
executable
: LUNAPatcher.exe
exec. date/time : 2010-09-12 20:11
version
: 2.6.1.64
compiled with
: Delphi 2010
madExcept version : 3.0l
callstack crc
: $87ed332d, $198ffd9f, $198ffd9f
count
: 2
exception number : 1
exception class : EAccessViolation
exception message : Access violation at address 0051433B in module 'LUNAPatcher.
exe'. Read of address 00000010.
main thread ($974):
0051433b +00f LUNAPatcher.exe
00514321 +005 LUNAPatcher.exe
00516a37 +58b LUNAPatcher.exe
004f3256 +02e LUNAPatcher.exe
00512d41 +005 LUNAPatcher.exe
00516ab2 +00a LUNAPatcher.exe
004f37a6 +016 LUNAPatcher.exe
004f7480 +01c LUNAPatcher.exe
004f748d +005 LUNAPatcher.exe
0051c765 +02d LUNAPatcher.exe
755d376c +011 USER32.dll
0051c819 +02d LUNAPatcher.exe
0051c8ee +002 LUNAPatcher.exe
0051d124 +31c LUNAPatcher.exe
0049f80c +014 LUNAPatcher.exe
770e6feb +02b ntdll.dll
0057ce17 +01f LUNAPatcher.exe
004f1afa +0ae LUNAPatcher.exe
00512d18 +038 LUNAPatcher.exe
00513b11 +0f9 LUNAPatcher.exe
0049e517 +057 LUNAPatcher.exe
00511b0d +035 LUNAPatcher.exe
0046ee0e +026 LUNAPatcher.exe
00406685 +065 LUNAPatcher.exe
0062f0e3 +3af LUNAPatcher.exe
75853c43 +010 kernel32.dll

Forms
Forms
Forms
Controls
Forms
Forms
Controls
Controls
Controls
Forms
Forms
Forms
Forms
Classes
OleCtrls
Controls
Forms
Forms
Classes
Forms
SysUtils
System
Thor

TCustomForm.IsFormSizeStored
TCustomForm.IsClientSizeStored
TCustomForm.CreateParams
TWinControl.CreateWnd
TScrollingWinControl.CreateWnd
TCustomForm.CreateWnd
TWinControl.CreateHandle
TWinControl.HandleNeeded
TWinControl.GetHandle
GetTopMostWindows
EnumWindows
TApplication.DoNormalizeTopMosts
TApplication.NormalizeTopMosts
TApplication.WndProc
StdWndProc
KiUserCallbackDispatcher
TOleControl.Destroy
TWinControl.Destroy
TScrollingWinControl.Destroy
TCustomForm.Destroy
TComponent.DestroyComponents
DoneApplication
DoExitProc
48 +0 @Halt0
236 +72 initialization
BaseThreadInitThunk

thread $fb8:
770e6a02 +0a ntdll.dll
NtWaitForMultipleObjects
75853c43 +10 kernel32.dll BaseThreadInitThunk
thread $b20:
770e6a32 +0a ntdll.dll

NtWaitForWorkViaWorkerFactory

75853c43 +10 kernel32.dll BaseThreadInitThunk


thread $d50:
770e6a22 +0a
75421796 +66
7584baee +3e
75853c43 +10

ntdll.dll
KERNELBASE.dll
kernel32.dll
kernel32.dll

NtWaitForSingleObject
WaitForSingleObjectEx
WaitForSingleObjectEx
BaseThreadInitThunk

thread $fb0:
770e6a32 +0a ntdll.dll
NtWaitForWorkViaWorkerFactory
75853c43 +10 kernel32.dll BaseThreadInitThunk
thread $c90:
770e6a32 +0a ntdll.dll
NtWaitForWorkViaWorkerFactory
75853c43 +10 kernel32.dll BaseThreadInitThunk
thread $e9c:
770e6a22 +0a
75421796 +66
7584baee +3e
7584ba9d +0d
75853c43 +10

ntdll.dll
KERNELBASE.dll
kernel32.dll
kernel32.dll
kernel32.dll

thread $4bc:
770e6a22 +0a
771e2f7b +5b
771e6a25 +9c
75853c43 +10

ntdll.dll
WS2_32.dll
WS2_32.dll
kernel32.dll

NtWaitForSingleObject
WaitForSingleObjectEx
WaitForSingleObjectEx
WaitForSingleObject
BaseThreadInitThunk
NtWaitForSingleObject
WahReferenceContextByHandle
select
BaseThreadInitThunk

thread $194: <priority:1>


770e63a2 +0a ntdll.dll
NtRemoveIoCompletion
75853c43 +10 kernel32.dll BaseThreadInitThunk
thread $bd4:
770e6a22 +0a
75421796 +66
7584baee +3e
7584ba9d +0d
75853c43 +10

ntdll.dll
KERNELBASE.dll
kernel32.dll
kernel32.dll
kernel32.dll

modules:
00400000 LUNAPatcher.exe
tia Luna Online Alpha
62e00000 MSHTML.dll
65350000 MLANG.dll
6d900000 ieframe.dll
6f000000 msimg32.dll
709f0000 winspool.drv
71300000 rasadhlp.dll
71630000 olepro32.dll
72090000 DLL_PenSuit.dll
OscarX7Editor5Mode\DLL
722d0000 sensapi.dll
722e0000 rasman.dll
72300000 RASAPI32.dll
72a90000 fwpuclnt.dll
72d00000 NLAapi.dll
72e40000 OLEACC.dll
72e80000 rtutils.dll
739c0000 dwmapi.dll

NtWaitForSingleObject
WaitForSingleObjectEx
WaitForSingleObjectEx
WaitForSingleObject
BaseThreadInitThunk

2.6.1.64

\\OPERATOR-PC\Users\Public\ABM\Celes

9.0.8112.16450
6.1.7600.16385
9.0.8112.16450
6.1.7600.16385
6.1.7601.17514
6.1.7600.16385
6.1.7601.17514

C:\Windows\system32
C:\Windows\system32
C:\Windows\System32
C:\Windows\system32
C:\Windows\system32
C:\Windows\system32
C:\Windows\system32
C:\Program Files\OscarX7Editor5Mode\

6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
6.1.7601.17514
6.1.7601.17514
7.0.0.0
6.1.7601.17514
6.1.7600.16385

C:\Windows\system32
C:\Windows\system32
C:\Windows\system32
C:\Windows\System32
C:\Windows\system32
C:\Windows\System32
C:\Windows\system32
C:\Windows\system32

73cb0000 uxtheme.dll
6.1.7600.16385
C:\Windows\system32
73fd0000 security.dll
6.1.7600.16385
C:\Windows\system32
73fe0000 comctl32.dll
6.10.7601.17514
C:\Windows\WinSxS\x86_microsoft.wind
ows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2
74670000 wshtcpip.dll
6.1.7600.16385
C:\Windows\System32
74710000 WINNSI.DLL
6.1.7600.16385
C:\Windows\system32
74720000 iphlpapi.DLL
6.1.7601.17514
C:\Windows\system32
747e0000 wsock32.dll
6.1.7600.16385
C:\Windows\system32
747f0000 version.dll
6.1.7600.16385
C:\Windows\system32
74b50000 dnsapi.DLL
6.1.7601.17514
C:\Windows\system32
74c80000 mswsock.dll
6.1.7601.17514
C:\Windows\system32
74e60000 wship6.dll
6.1.7600.16385
C:\Windows\System32
75000000 SECUR32.DLL
6.1.7601.17514
C:\Windows\system32
75140000 SSPICLI.DLL
6.1.7601.17514
C:\Windows\system32
75160000 apphelp.dll
6.1.7601.17514
C:\Windows\system32
751b0000 CRYPTBASE.dll 6.1.7600.16385
C:\Windows\system32
75230000 profapi.dll
6.1.7600.16385
C:\Windows\system32
75420000 KERNELBASE.dll 6.1.7601.17514
C:\Windows\system32
75530000 oleaut32.dll
6.1.7601.17514
C:\Windows\system32
755c0000 USER32.dll
6.1.7601.17514
C:\Windows\system32
75690000 GDI32.dll
6.1.7601.17514
C:\Windows\system32
756e0000 USP10.dll
1.626.7601.17514 C:\Windows\system32
75780000 LPK.dll
6.1.7600.16385
C:\Windows\system32
757e0000 IMM32.DLL
6.1.7601.17514
C:\Windows\system32
75800000 kernel32.dll
6.1.7601.17514
C:\Windows\system32
758e0000 urlmon.dll
9.0.8112.16450
C:\Windows\system32
75a60000 shell32.dll
6.1.7601.17514
C:\Windows\system32
766b0000 sechost.dll
6.1.7600.16385
C:\Windows\SYSTEM32
766d0000 PSAPI.DLL
6.1.7600.16385
C:\Windows\system32
766e0000 RPCRT4.dll
6.1.7601.17514
C:\Windows\system32
767c0000 Normaliz.dll
6.1.7600.16385
C:\Windows\system32
767d0000 WININET.dll
9.0.8112.16450
C:\Windows\system32
768f0000 MSCTF.dll
6.1.7600.16385
C:\Windows\system32
769c0000 ole32.dll
6.1.7601.17514
C:\Windows\system32
76b20000 SHLWAPI.dll
6.1.7601.17514
C:\Windows\system32
76b80000 NSI.dll
6.1.7600.16385
C:\Windows\system32
76b90000 CLBCatQ.DLL
2001.12.8530.16385 C:\Windows\system32
76c20000 advapi32.dll
6.1.7601.17514
C:\Windows\system32
76cc0000 iertutil.dll
9.0.8112.16450
C:\Windows\system32
76e80000 comdlg32.dll
6.1.7601.17514
C:\Windows\system32
770a0000 ntdll.dll
6.1.7601.17514
C:\Windows\SYSTEM32
771e0000 WS2_32.dll
6.1.7601.17514
C:\Windows\system32
77220000 msvcrt.dll
7.0.7600.16385
C:\Windows\system32
processes:
000 Idle
004 System
130 smss.exe
1c8 csrss.exe
218 wininit.exe
220 csrss.exe
254 services.exe
25c lsass.exe
264 lsm.exe
2b8 winlogon.exe
2fc svchost.exe
338 DFServ.exe
378 svchost.exe
3b8 MsMpEng.exe
404 svchost.exe

0
0
0
0
0
1
0
0
0
1
0
0
0
0
0

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0

438 svchost.exe
458 svchost.exe
4b0 audiodg.exe
4e4 svchost.exe
540 svchost.exe
5cc spoolsv.exe
5f0 svchost.exe
64c appguard.exe
754 Dwm.exe
774 Explorer.EXE
7c0 taskhost.exe
344 svchost.exe
8e4 RtHDVCpl.exe
\Audio\HDA
8ec msseces.exe
ft Security Client
8f8 GrooveMonitor.exe
ft Office\Office12
97c taskeng.exe
98c EZShield.exe
Shield
a60 Updater.exe
\Updater
ac8 OscarEditor.exe
Editor5Mode\OscarX7Editor5Mode
b24 SearchIndexer.exe
b9c FrzState2k.exe
bd8 MOM.exe
hnologies\ATI.ACE\Core-Static
c28 CCC.exe
hnologies\ATI.ACE\Core-Static
dbc PresentationFontCache.exe
f4c svchost.exe
490 firefox.exe
Firefox
7bc plugin-container.exe
Firefox
744 FlashPlayerPlugin_11_7_700_202.exe
omed\Flash
d28 FlashPlayerPlugin_11_7_700_202.exe
omed\Flash
c60 LUNAPatcher.exe
ic\ABM\Celestia Luna Online Alpha
b48 LUNAClient.exe
ic\ABM\Celestia Luna Online Alpha

0
0
0
0
0
0
0
0
1
1
1
0
1

0
0
0
0
0
0
0
0
20
464
29
0
54

0
0
0
0
0
0
0
0
2
355
21
0
20

high C:\Windows\system32
normal C:\Windows
normal C:\Windows\system32
normal C:\Program Files\Realtek

1 145 59 normal C:\Program Files\Microso


1 12 4

normal C:\Program Files\Microso

1 12 3 normal C:\Windows\system32
1 83 90 normal C:\Program Files\Client
1 12 5

normal C:\Program Files\Ask.com

1 514 155 normal C:\Program Files\OscarX7


0 0 0
1 0 0
1 10 10 normal C:\Program Files\ATI Tec
1 50 43 normal C:\Program Files\ATI Tec
0 0 0
0 0 0
1 93 65 normal C:\Program Files\Mozilla
1 14 26 normal C:\Program Files\Mozilla
1 68 21 normal C:\Windows\system32\Macr
1 27 40 normal C:\Windows\system32\Macr
1 101 47 normal \\OPERATOR-PC\Users\Publ
1 4

hardware:
+ Computer
- ACPI x86-based PC
+ Disk drives
- WDC WD50 00AAKS-32V1A0 SATA Disk Device
+ Display adapters
- AMD Radeon HD 6530D (driver 8.881.0.0)
+ Human Interface Devices
- HID-compliant consumer control device
- HID-compliant consumer control device
- HID-compliant consumer control device
- HID-compliant device
- HID-compliant device
- HID-compliant device

normal \\OPERATOR-PC\Users\Publ

+
+
+
+
+
+

+
+

- USB Input Device


- USB Input Device
- USB Input Device
- USB Input Device
IDE ATA/ATAPI controllers
- AMD PCI IDE Controller (driver 5.2.1.78)
- AMD SATA Controller (driver 1.2.1.296)
- ATA Channel 0
- ATA Channel 1
Keyboards
- HID Keyboard Device
- HID Keyboard Device
Mice and other pointing devices
- HID-compliant mouse
Monitors
- Generic PnP Monitor
Network adapters
- Realtek PCIe GBE Family Controller (driver 7.48.823.2011)
Ports (COM & LPT)
- Communications Port (COM1)
Processors
- AMD A6-3500 APU with Radeon(tm) HD Graphics
- AMD A6-3500 APU with Radeon(tm) HD Graphics
- AMD A6-3500 APU with Radeon(tm) HD Graphics
Sound, video and game controllers
- Realtek High Definition Audio (driver 6.0.1.6482)
Storage volume shadow copies
- Generic volume shadow copy
- Generic volume shadow copy
- Generic volume shadow copy
- Generic volume shadow copy
- Generic volume shadow copy
- Generic volume shadow copy
System devices
- ACPI Fixed Feature Button
- ACPI Power Button
- AMD IO Driver (driver 1.0.0.15)
- AMD SMBus (driver 5.12.0.13)
- Composite Bus Enumerator
- Direct memory access controller
- File as Volume Driver
- High Definition Audio Controller
- High precision event timer
- Microsoft ACPI-Compliant System
- Microsoft System Management BIOS Driver
- Microsoft Virtual Drive Enumerator Driver
- Motherboard resources
- Motherboard resources
- Motherboard resources
- Numeric data processor
- PCI bus
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge

- PCI standard ISA bridge


- PCI standard PCI-to-PCI bridge
- PCI standard PCI-to-PCI bridge
- Plug and Play Software Device Enumerator
- Programmable interrupt controller
- System board
- System CMOS/real time clock
- System speaker
- System timer
- Terminal Server Keyboard Driver
- Terminal Server Mouse Driver
- UMBus Enumerator
- UMBus Root Bus Enumerator
- Volume Manager
+ Universal Serial Bus controllers
- Standard Enhanced PCI to USB Host Controller
- Standard Enhanced PCI to USB Host Controller
- Standard Enhanced PCI to USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- USB Composite Device
- USB Composite Device
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
cpu
eax
ebx
ecx
edx
esi
edi
eip
esp
ebp

registers:
= 014a03d0
= 014a03d0
= 0012f898
= 00000000
= 005152a0
= 0012f890
= 0051433b
= 0012f814
= 00000000

stack dump:
0012f814 26
0012f824 00
0012f834 d0
0012f844 18
0012f854 d0
0012f864 18
0012f874 64
0012f884 f6
0012f894 00
0012f8a4 c1
0012f8b4 08
0012f8c4 00
0012f8d4 00
0012f8e4 6e
0012f8f4 00
0012f904 00

43
f9
03
fa
03
00
f9
c8
00
01
00
00
00
00
00
00

51
12
4a
12
4a
00
12
4d
00
00
00
40
00
46
00
00

00
00
01
00
01
00
00
77
86
00
00
00
00
00
00
00

d0
a4
d0
cc
d0
00
94
7a
00
21
f8
00
00
72
00
00

03
5d
03
5e
03
00
65
00
00
02
d4
00
00
00
00
00

4a
0f
4a
40
4a
1b
0f
00
0d
00
40
00
00
6d
00
00

01
77
01
00
01
00
77
7a
00
00
00
00
00
00
00
00

3c
d3
d0
5c
00
10
38
18
ca
00
00
03
54
00
00
00

6a
5d
03
f9
00
00
01
e5
01
00
00
00
00
00
00
00

51
0f
4a
12
00
00
1b
1e
00
00
00
01
4d
00
00
00

00
77
01
00
00
00
00
00
00
00
00
00
00
00
00
00

10
5c
5c
ff
00
a0
70
84
60
00
00
00
61
00
00
00

e5
f9
32
ff
f4
ca
65
c4
00
00
00
00
00
00
00
00

1e
12
4f
ff
1e
22
0f
53
00
00
00
00
69
00
00
00

00
00
00
ff
00
00
77
01
00
00
00
00
00
00
00
00

&CQ...J.<jQ.....
.....].w.].w\...
..J...J...J.\2O.
.....^@.\.......
..J...J.........
..............".
d....e.w8...pe.w
..Mwz..z......S.
............`...
....!...........
......@.........
..@.............
........T.M.a.i.
n.F.r.m.........
................
................

0012f914
0012f924
0012f934
0012f944

00
00
00
00

00
00
00
00

00
00
00
00

disassembling:
[...]
00406668
mov
0040666d
call
00406672
cmp
00406676
jnz
00406678
cmp
0040667b
jz
0040667d
mov
0040667f
mov
00406681
xor
00406683
mov
00406685
> call
00406687
cmp
0040668a
jnz
0040668c
cmp
00406690
jnz
00406692
cmp
00406699
jnz
0040669b
xor
0040669d
mov
004066a0
call
004066a5
cmp
[...]

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

................
................
................
................

eax, $646b1c
-$10e ($406564)
; System.ExitDll
byte ptr [ebx+$28], 0
loc_40668c
dword ptr [edi], 0
loc_40668c
eax, [edi]
esi, eax
eax, eax
[edi], eax
esi
dword ptr [edi], 0
loc_40667d
byte ptr [ebx+$28], 2
loc_4066a0
dword ptr [$630000], 0
loc_4066a0
eax, eax
[ebx+$c], eax
+$5d463 ($463b08)
; madExcept.InterceptFinalizeUnits
byte ptr [ebx+$28], 1

Anda mungkin juga menyukai