date/time : 2010-11-11, 18:56:31, 0ms
computer name : AF3E5B535D8E476
user name : Артем <admin>
registered owner : Артем
operating system : Windows XP Service Pack 3 build 2600
system language : Russian
system up time : 11 minutes 2 seconds
program up time : 5 minutes 55 seconds
processors : 2x Intel(R) Pentium(R) D CPU 3.40GHz
physical memory : 640/1023 MB (free/total)
free disk space : (C:) 150,38 GB
display mode : 1280x1024, 32 bit
process id : $324
allocated memory : 34,50 MB
executable : Phoenix.exe
current module : Main.dll
module date/time : 2010-11-07 12:53
version : 1.0.4.18
compiled with : Delphi 7
madExcept version : 3.0k
callstack crc : $68440889, $5a61eb61, $5a61eb61
exception number : 1
exception class : MadException
exception message : Access violation at address $b14ddc in module 'Main.dll'. Read of address $5c46a7bc.
main thread ($32c):
00b14ddc +0c Main.dll System @LStrClr
00bd52ea +1e Main.dll ModOptions_GoldSource 405 +0 Finalization
00b1496a +36 Main.dll System FinalizeUnits
00b5e504 +54 Main.dll madExcept InterceptFinalizeUnits
00b14c9d +59 Main.dll System @Halt0
00b17380 +40 Main.dll SysInit @InitLib
00c0372b +0b Main.dll Main 237 +0 initialization
7c923ad5 +00 ntdll.dll LdrShutdownProcess
7c81cb21 +0f kernel32.dll ExitProcess
modules:
003d0000 Normaliz.dll 6.0.5441.0 C:\WINDOWS\system32
003e0000 VDFParse.dll C:\Phoenix\Phx_data\Res\SharedDLLs
00400000 Phoenix.exe 1.0.4.18 C:\Phoenix
00b10000 Main.dll 1.0.4.18 C:\Phoenix\Phx_data\Res\SharedDLLs
011b0000 lua.dll C:\Phoenix\Phx_data\Res\SharedDLLs
011e0000 SimDecrypt.dll C:\Phoenix\Phx_data\Res\SharedDLLs
011f0000 RainCWrapper.dll C:\Phoenix\Phx_data\Res\SharedDLLs
01200000 rain.dll C:\Phoenix\Phx_data\Res\SharedDLLs
02ee0000 name2ip.dll C:\DOCUME~1\A24E~1\LOCALS~1\Temp\nszE.tmp
038e0000 ISHint.dll 0.5.2.41 C:\Phoenix\Phx_Data\Res
10930000 PortableDeviceApi.dll 5.2.5721.5145 C:\WINDOWS\system32
1f840000 odbcint.dll 3.525.1117.0 C:\WINDOWS\system32
3f9e0000 wininet.dll 8.0.6001.18968 C:\WINDOWS\system32
40080000 iertutil.dll 8.0.6001.18968 C:\WINDOWS\system32
40270000 ieframe.dll 8.0.6001.18968 C:\WINDOWS\system32
45020000 urlmon.dll 8.0.6001.18968 C:\WINDOWS\system32
4ebe0000 gdiplus.dll 5.2.6001.22319 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df
5b260000 uxtheme.dll 6.0.2900.5512 C:\WINDOWS\system32
5bd50000 NETAPI32.dll 5.1.2600.5694 C:\WINDOWS\system32
5d5b0000 COMCTL32.dll 5.82.2900.6028 C:\WINDOWS\system32
68000000 rsaenh.dll 5.1.2600.5507 C:\WINDOWS\system32
698b0000 hnetcfg.dll 5.1.2600.5512 C:\WINDOWS\system32
71a30000 mswsock.dll 5.1.2600.5625 C:\WINDOWS\system32
71a70000 wshtcpip.dll 5.1.2600.5512 C:\WINDOWS\System32
71a80000 WS2HELP.dll 5.1.2600.5512 C:\WINDOWS\system32
71a90000 WS2_32.dll 5.1.2600.5512 C:\WINDOWS\system32
71ab0000 wsock32.dll 5.1.2600.5512 C:\WINDOWS\system32
71b00000 MPR.dll 5.1.2600.5512 C:\WINDOWS\system32
71bd0000 SAMLIB.dll 5.1.2600.5512 C:\WINDOWS\System32
71bf0000 ntlanman.dll 5.1.2600.5512 C:\WINDOWS\System32
71c60000 NETRAP.dll 5.1.2600.5512 C:\WINDOWS\System32
71c70000 NETUI1.dll 5.1.2600.5512 C:\WINDOWS\System32
71cb0000 NETUI0.dll 5.1.2600.5512 C:\WINDOWS\System32
73fb0000 ODBC32.dll 3.525.1132.0 C:\WINDOWS\system32
746e0000 MSCTF.dll 5.1.2600.5512 C:\WINDOWS\system32
74df0000 RichEd20.dll 5.30.23.1230 C:\WINDOWS\system32
75310000 msctfime.ime 5.1.2600.5512 C:\WINDOWS\system32
75940000 MSGINA.dll 5.1.2600.5512 C:\WINDOWS\system32
75a40000 msvfw32.dll 5.1.2600.5512 C:\WINDOWS\system32
75da0000 MLANG.dll 6.0.2900.5512 C:\WINDOWS\system32
75f30000 drprov.dll 5.1.2600.5512 C:\WINDOWS\System32
75f40000 davclnt.dll 5.1.2600.5512 C:\WINDOWS\System32
75f50000 browseui.dll 6.0.2900.6003 C:\WINDOWS\system32
76330000 WINSTA.dll 5.1.2600.5512 C:\WINDOWS\system32
76360000 IMM32.DLL 5.1.2600.5512 C:\WINDOWS\system32
76380000 comdlg32.dll 6.0.2900.5512 C:\WINDOWS\system32
765d0000 CSCDLL.dll 5.1.2600.5512 C:\WINDOWS\System32
76650000 CRYPTUI.dll 5.131.2600.5512 C:\WINDOWS\system32
76760000 SHFOLDER.dll 6.0.2900.5512 C:\WINDOWS\system32
76770000 cryptdll.dll 5.1.2600.5512 C:\WINDOWS\system32
76960000 LINKINFO.dll 5.1.2600.5512 C:\WINDOWS\system32
76970000 ntshrui.dll 5.1.2600.5512 C:\WINDOWS\system32
769a0000 USERENV.dll 5.1.2600.5512 C:\WINDOWS\system32
76b00000 ATL.DLL 3.5.2284.2 C:\WINDOWS\system32
76b20000 winmm.dll 5.1.2600.5512 C:\WINDOWS\system32
76c20000 WINTRUST.dll 5.131.2600.5922 C:\WINDOWS\system32
76c80000 IMAGEHLP.dll 5.1.2600.5512 C:\WINDOWS\system32
76d50000 iphlpapi.dll 5.1.2600.5512 C:\WINDOWS\system32
76e70000 rtutils.dll 5.1.2600.5512 C:\WINDOWS\system32
76e80000 rasman.dll 5.1.2600.5512 C:\WINDOWS\system32
76ea0000 TAPI32.dll 5.1.2600.5512 C:\WINDOWS\system32
76ed0000 RASAPI32.dll 5.1.2600.5512 C:\WINDOWS\system32
76f10000 DNSAPI.dll 5.1.2600.5625 C:\WINDOWS\system32
76f50000 WLDAP32.dll 5.1.2600.5512 C:\WINDOWS\system32
76fb0000 rasadhlp.dll 5.1.2600.5512 C:\WINDOWS\system32
76fc0000 CLBCATQ.DLL 2001.12.4414.700 C:\WINDOWS\system32
77040000 COMRes.dll 2001.12.4414.700 C:\WINDOWS\system32
77110000 oleaut32.dll 5.1.2600.5512 C:\WINDOWS\system32
773c0000 comctl32.dll 6.0.2900.6028 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202
774d0000 ole32.dll 5.1.2600.6010 C:\WINDOWS\system32
77910000 SETUPAPI.dll 5.1.2600.5512 C:\WINDOWS\system32
77a10000 cscui.dll 5.1.2600.5512 C:\WINDOWS\System32
77a70000 CRYPT32.dll 5.131.2600.5512 C:\WINDOWS\system32
77b10000 MSASN1.dll 5.1.2600.5875 C:\WINDOWS\system32
77b30000 Apphelp.dll 5.1.2600.5512 C:\WINDOWS\system32
77bf0000 VERSION.dll 5.1.2600.5512 C:\WINDOWS\system32
77c00000 msvcrt.dll 7.0.2600.5512 C:\WINDOWS\system32
77c60000 msv1_0.dll 5.1.2600.5876 C:\WINDOWS\system32
77dc0000 ADVAPI32.dll 5.1.2600.5755 C:\WINDOWS\system32
77e70000 RPCRT4.dll 5.1.2600.6022 C:\WINDOWS\system32
77f10000 GDI32.dll 5.1.2600.5698 C:\WINDOWS\system32
77f60000 SHLWAPI.dll 6.0.2900.5912 C:\WINDOWS\system32
77fe0000 Secur32.dll 5.1.2600.5834 C:\WINDOWS\system32
78130000 MSVCR80.dll 8.0.50727.3053 C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca
7c800000 kernel32.dll 5.1.2600.5781 C:\WINDOWS\system32
7c900000 ntdll.dll 5.1.2600.5755 C:\WINDOWS\system32
7c9c0000 SHELL32.dll 6.0.2900.6018 C:\WINDOWS\system32
7e1e0000 SHDOCVW.dll 6.0.2900.6003 C:\WINDOWS\system32
7e360000 USER32.dll 5.1.2600.5512 C:\WINDOWS\system32
processes:
000 Idle 0 0
004 System 0 0 normal
240 smss.exe 0 0 normal C:\WINDOWS\system32
2f0 csrss.exe 0 0
3f8 winlogon.exe 46 15 high C:\WINDOWS\system32
424 services.exe 4 2 normal C:\WINDOWS\system32
430 lsass.exe 4 2 normal C:\WINDOWS\system32
4e0 nvsvc32.exe 8 5 normal C:\WINDOWS\system32
524 svchost.exe 4 1 normal C:\WINDOWS\system32
57c svchost.exe 0 0
60c svchost.exe 11 35 normal C:\WINDOWS\System32
668 svchost.exe 0 0
6c4 svchost.exe 0 0
70c spoolsv.exe 4 4 normal C:\WINDOWS\system32
7cc svchost.exe 0 0
0b4 mdm.exe 4 3 normal C:\Program Files\Common Files\Microsoft Shared\VS7Debug
0c8 NMSAccessU.exe 4 1 normal C:\Program Files\CDBurnerXP
384 alg.exe 0 0
750 Explorer.EXE 291 136 normal C:\WINDOWS
0dc smax4pnp.exe 19 9 normal C:\Program Files\Analog Devices\Core
0b8 Smax4.exe 26 15 normal C:\Program Files\Analog Devices\SoundMAX
7ec ctfmon.exe 28 11 normal C:\WINDOWS\system32
f44 chrome.exe 58 38 normal C:\Documents and Settings\Артем\Local Settings\Application Data\Google\Chrome\Application
33c chrome.exe 37 1 below normal C:\Documents and Settings\Артем\Local Settings\Application Data\Google\Chrome\Application
864 chrome.exe 17 13 normal C:\Documents and Settings\Артем\Local Settings\Application Data\Google\Chrome\Application
324 Phoenix.exe 89 42 normal C:\Phoenix
4f8 DTLite.exe 180 62 normal C:\Program Files\DAEMON Tools Lite
cpu registers:
eax = 00d0e538
ebx = 00000082
ecx = 0012fbf8
edx = 5c46a7c4
esi = 00c03248
edi = 00c0c638
eip = 00b14ddc
esp = 0012fbe8
ebp = 0012fbf8
stack dump:
0012fbe8 ef 52 bd 00 00 fc 12 00 - 1c 46 b1 00 f8 fb 12 00 .R.......F......
0012fbf8 18 fc 12 00 6c 49 b1 00 - 70 fc 12 00 5b 47 b1 00 ....lI..p...[G..
0012fc08 18 fc 12 00 48 c0 c0 00 - 00 40 c0 00 38 c6 c0 00
[email protected]...
0012fc18 7c fc 12 00 0a e5 b5 00 - a2 4c b1 00 7c fc 12 00 |........L..|...
0012fc28 6c fc 12 00 64 c6 c0 00 - e8 3a 25 00 85 73 b1 00 l...d....:%..s..
0012fc38 00 00 00 00 30 37 c0 00 - 00 00 00 00 00 00 00 00 ....07..........
0012fc48 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fc58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fc68 00 00 00 00 01 00 00 00 - 10 fd 12 00 4c 48 b1 00 ............LH..
0012fc78 7c fc 12 00 9c fc 12 00 - 8a 11 90 7c 00 00 b1 00 |..........|....
0012fc88 00 00 00 00 01 00 00 00 - e8 3a 25 00 00 00 00 00 .........:%.....
0012fc98 e8 2d 25 00 20 fd 12 00 - da 3a 92 7c 20 37 c0 00 .-%......:.|.7..
0012fca8 00 00 b1 00 00 00 00 00 - 01 00 00 00 01 00 00 00 ................
0012fcb8 6e de 90 7c 00 00 00 00 - 14 00 00 00 01 00 00 00 n..|............
0012fcc8 00 00 00 00 00 00 00 00 - 10 00 00 00 00 00 00 00 ................
0012fcd8 20 00 00 00 fe dc 83 2b - b8 81 cb 01 35 04 91 7c .......+....5..|
0012fce8 3e 04 91 7c 00 90 42 00 - 00 00 00 00 e8 2d 25 00 >..|..B......-%.
0012fcf8 00 d0 fd 7f 00 e0 fd 7f - 20 37 c0 00 e8 3a 25 00 .........7...:%.
0012fd08 b4 fc 12 00 6c 6c 00 6c - 04 fe 12 00 20 e9 90 7c ....ll.l.......|
0012fd18 88 3c 92 7c 01 00 00 00 - 14 fe 12 00 ae ca 81 7c .<.|...........|
disassembling:
00bd52cc public ModOptions_GoldSource.Finalization: ; function entry point
00bd52cc 405 push ebp
00bd52cd mov ebp, esp
00bd52cf xor eax, eax
00bd52d1 push ebp
00bd52d2 push $bd52fd ; System.@HandleFinally
00bd52d7 push dword ptr fs:[eax]
00bd52da mov fs:[eax], esp
00bd52dd inc dword ptr [$d0e53c]
00bd52e3 jnz loc_bd52ef
00bd52e3
00bd52e5 mov eax, $d0e538
00bd52ea > call -$c051f ($b14dd0) ; System.@LStrClr
00bd52ea
00bd52ef loc_bd52ef:
00bd52ef xor eax, eax
00bd52f1 pop edx
00bd52f2 pop ecx
00bd52f3 pop ecx
00bd52f4 mov fs:[eax], edx
00bd52f7 push $bd5304
00bd52f4
00bd52fc loc_bd52fc:
00bd52fc ret
00bd52fc
00bd52fc ; ---------------------------------------------------------
00bd52fc
00bd52fd jmp -$c0d16 ($b145ec) ; System.@HandleFinally
00bd52fd
00bd5302 jmp loc_bd52fc
00bd5302
00bd5302 ; ---------------------------------------------------------
00bd5302
[...]