PRoBLém s user32.dll

Operační systémy Windows z dílny Microsoft a vše kolem nich

Moderátoři: Pic, Mods_senior

Uživatelský avatar
autoprd
Level 4.5
Level 4.5
Příspěvky: 1715
Registrován: únor 09
Bydliště: ▼▲☺U Pc ☺▼▲
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: PRoBLém s user32.dll

Příspěvekod autoprd » 02 srp 2010 08:57

prostě spadne explorer.exe a chce se vytvořit ten log ale pak spadne i drwtsn32.exe xD

Reklama
Uživatelský avatar
MiliNess
člen BSOD týmu
Master Level 9.5
Master Level 9.5
Příspěvky: 9112
Registrován: říjen 09
Bydliště: Cheb
Pohlaví: Muž
Stav:
Offline

Re: PRoBLém s user32.dll

Příspěvekod MiliNess » 02 srp 2010 18:48

Tam bude něco nařachlé. Co to je, odhadem nezjistíme. Zkus si spustit Autoruns a na záložce Explorer odfajfkovat vše, co není od MS a restartovat PC. Pokud se ta chyba nebude objevovat, můžeš to zkoušet postupně zapínat a hledat nepřítele. (hlavně položky pod ContextMenuHandlers)
Jinak by bylo dobré, kdyby ses domluvil s Jaro3 nebo Bledulkou, aby ti zkontrolovali PC na případné infekce.
Když i to bude negtivní, zkus obnovení chráněných souborů pomocí sfc /scannow.
Můžeš mi sem hodit alespoň "technické informace o zprávě o chybách" (klikneš na ten malý text v okně, keré ti vyskočí, když to spadne nebo "Chcete li získat další informace o této chybě, klikněte sem - u exploreru)
A podívej do složky C:\Documents and Settings\All Users\Data aplikací\Microsoft\Dr Watson, zda tam není alespoň drwtsn32.log.

Jako poslední možnost můžeme zkusit ProcDump od Sysinternals
-každý má svou pravdu a ta se nemusí vždycky shodovat s tvou vlastní
-naše problémy jsou pouze v naší hlavě
-okolní svět není ani dobrý ani špatný, je mu zcela lhostejné, jestli existuješ
-nejdůležitější v životě je láska. Všechno ostatní jsou zbytečnosti

Uživatelský avatar
autoprd
Level 4.5
Level 4.5
Příspěvky: 1715
Registrován: únor 09
Bydliště: ▼▲☺U Pc ☺▼▲
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: PRoBLém s user32.dll

Příspěvekod autoprd » 02 srp 2010 23:30

sfc /scannow. sem Už SKoUSHel předtím
SKusim ten autorun



drwtsn

Microsoft (R) DrWtsn32
Copyright (C) 1985-2001 Microsoft Corp. Všechna práva vyhrazena.



Nastala výjimka aplikace:
Aplikace: D:\WINDOWS\explorer.exe (pid=1632)
Kdy: 1.8.2010 v 23:08:16.421
Číslo výjimky: c0000005 (narušení přístupu)

*----> Systémová informace <----*
Název počítače: VOJTOVO-PC
Uživatelské jméno: PoKaRko
Číslo ID relace terminálu: 0
Počet procesorů: 2
Typ procesoru: x86 Family 15 Model 4 Stepping 1
Verze systému Windows: 5.1
Aktuální sestavení: 2600
Service Pack: 2
Aktuální typ: Multiprocessor Free
Registrovaná organizace:
Registrovaný vlastník: Microsoft Windows XP Professional

*----> Seznam úkolů <----*
0 System Process
4 System
976 smss.exe
1112 csrss.exe
1544 winlogon.exe
1628 services.exe
1640 lsass.exe
1880 Ati2evxx.exe
1892 svchost.exe
1960 svchost.exe
1000 svchost.exe
1048 svchost.exe
1424 svchost.exe
1468 svchost.exe
1768 Ati2evxx.exe
348 spoolsv.exe
620 sched.exe
488 ctfmon.exe
384 avgnt.exe
704 MeeboNotifier.exe
1720 avguard.exe
1976 mDNSResponder.exe
1480 avshadow.exe
632 jqs.exe
1044 StarWindService.exe
1172 TuneUpUtilitiesService32.exe
3792 wscntfy.exe
3824 TuneUpUtilitiesApp32.exe
2484 alg.exe
2708 firefox.exe
2756 plugin-container.exe
2824 wmplayer.exe
2544 ICQ.exe
1632 explorer.exe
2696 drwtsn32.exe

*----> Seznam modulů <----*
(0000000001000000 - 00000000010ff000: D:\WINDOWS\explorer.exe
(00000000022e0000 - 00000000022ec000: d:\Windows\system32\Dirsize.dll
(0000000002350000 - 0000000002616000: D:\WINDOWS\system32\msi.dll
(0000000003090000 - 00000000031d7000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\ADFSMenu.dll
(00000000031e0000 - 000000000322a000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\BIB.dll
(0000000003440000 - 0000000003458000: C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll
(0000000003490000 - 00000000034bd000: C:\Program Files\WinRAR\rarext.dll
(00000000038c0000 - 0000000003912000: C:\Program Files\WinRAR\rarlng.dll
(0000000003d20000 - 0000000003d3a000: C:\Program Files\IDM Computer Solutions\UltraEdit\ue32ctmn.dll
(0000000003d50000 - 0000000003d73000: C:\Program Files\IDM Computer Solutions\UltraCompare\UC_ShellExt.dll
(0000000003da0000 - 0000000003daa000: C:\Program Files\TuneUp Utilities 2010\SDShelEx-win32.dll
(0000000003dc0000 - 0000000003dd8000: C:\Program Files\Avira\AntiVir Desktop\shlext.dll
(0000000004130000 - 0000000004230000: C:\Program Files\Rhinoceros 4.0\System\RhinoShExt.dll
(0000000004330000 - 000000000435f000: C:\Program Files\PowerISO\PWRISOSH.DLL
(0000000004580000 - 0000000004594000: C:\Program Files\7-Zip\7-zip.dll
(00000000046c0000 - 0000000004714000: C:\PROGRA~1\Greatis\REGRUN~1\RRShell.dll
(000000000ffd0000 - 000000000fff8000: D:\WINDOWS\system32\rsaenh.dll
(0000000010000000 - 0000000010013000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
(0000000010930000 - 0000000010979000: D:\WINDOWS\system32\PortableDeviceApi.dll
(00000000109c0000 - 00000000109ec000: D:\WINDOWS\system32\PortableDeviceTypes.dll
(00000000164a0000 - 00000000164c3000: D:\WINDOWS\system32\WPDShServiceObj.dll
(0000000020000000 - 00000000202cc000: D:\WINDOWS\system32\xpsp2res.dll
(0000000049ac0000 - 0000000049ad5000: C:\Program Files\Miranda IM\Plugins\shlext.dll
(000000004d540000 - 000000004d598000: D:\WINDOWS\system32\WINHTTP.dll
(000000005b250000 - 000000005b288000: D:\WINDOWS\system32\UxTheme.dll
(000000005d5a0000 - 000000005d637000: D:\WINDOWS\system32\comctl32.dll
(0000000060020000 - 0000000060091000: D:\WINDOWS\system32\themeui.dll
(0000000060120000 - 0000000060153000: D:\WINDOWS\system32\msutb.dll
(0000000061800000 - 000000006195b000: D:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Client\4.0.0\VersionCue.DLL
(0000000065e30000 - 0000000065e67000: D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
(00000000661c0000 - 00000000663dd000: D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
(0000000066b40000 - 0000000066cbd000: D:\PROGRA~1\MICROS~2\Office12\GR326C~1.DLL
(0000000067080000 - 000000006709c000: C:\Program Files\FileZilla FTP Client\fzshellext.dll
(0000000067270000 - 00000000672c4000: D:\WINDOWS\system32\NETAPI32.dll
(0000000068ef0000 - 0000000068fe1000: D:\PROGRA~1\MICROS~2\Office12\GrooveUtil.DLL
(0000000068ff0000 - 0000000068ff7000: D:\PROGRA~1\MICROS~2\Office12\GrooveNew.DLL
(0000000071a80000 - 0000000071a88000: D:\WINDOWS\system32\WS2HELP.dll
(0000000071a90000 - 0000000071aa7000: D:\WINDOWS\system32\WS2_32.dll
(0000000071ab0000 - 0000000071aba000: D:\WINDOWS\system32\WSOCK32.dll
(0000000071b00000 - 0000000071b12000: D:\WINDOWS\system32\MPR.dll
(0000000071bd0000 - 0000000071be3000: D:\WINDOWS\system32\SAMLIB.dll
(0000000071bf0000 - 0000000071bfe000: D:\WINDOWS\System32\ntlanman.dll
(0000000071c60000 - 0000000071c67000: D:\WINDOWS\System32\NETRAP.dll
(0000000071c70000 - 0000000071cb0000: D:\WINDOWS\System32\NETUI1.dll
(0000000071cb0000 - 0000000071cc7000: D:\WINDOWS\System32\NETUI0.dll
(0000000071d20000 - 0000000071d3c000: D:\WINDOWS\system32\actxprxy.dll
(00000000723f0000 - 000000007240a000: D:\WINDOWS\system32\mydocs.dll
(0000000072cd0000 - 0000000072cd8000: D:\WINDOWS\system32\msacm32.drv
(0000000072ce0000 - 0000000072ce9000: D:\WINDOWS\system32\wdmaud.drv
(0000000072fc0000 - 0000000072fe6000: D:\WINDOWS\system32\WINSPOOL.DRV
(0000000074620000 - 0000000074651000: D:\WINDOWS\system32\syncui.dll
(00000000746f0000 - 000000007473b000: D:\WINDOWS\system32\MSCTF.dll
(0000000074950000 - 0000000074a73000: D:\WINDOWS\system32\msxml3.dll
(0000000074aa0000 - 0000000074aa8000: D:\WINDOWS\system32\POWRPROF.dll
(0000000074ac0000 - 0000000074aca000: D:\WINDOWS\system32\BatMeter.dll
(0000000074b00000 - 0000000074b47000: D:\WINDOWS\system32\webcheck.dll
(00000000751a0000 - 00000000751ce000: D:\WINDOWS\system32\msctfime.ime
(0000000075d80000 - 0000000075da1000: D:\WINDOWS\system32\stobject.dll
(0000000075db0000 - 0000000075e41000: D:\WINDOWS\system32\MLANG.dll
(0000000075e70000 - 0000000075f20000: D:\WINDOWS\system32\SXS.DLL
(0000000075f40000 - 0000000075f47000: D:\WINDOWS\System32\drprov.dll
(0000000075f50000 - 0000000075f59000: D:\WINDOWS\System32\davclnt.dll
(0000000075f60000 - 000000007605c000: D:\WINDOWS\system32\BROWSEUI.dll
(0000000076340000 - 0000000076350000: D:\WINDOWS\system32\WINSTA.dll
(0000000076360000 - 0000000076365000: D:\WINDOWS\system32\MSImg32.dll
(0000000076370000 - 000000007638d000: D:\WINDOWS\system32\IMM32.DLL
(00000000763e0000 - 0000000076586000: D:\WINDOWS\system32\NETSHELL.dll
(00000000765e0000 - 00000000765fd000: D:\WINDOWS\System32\CSCDLL.dll
(0000000076660000 - 00000000766e1000: D:\WINDOWS\system32\CRYPTUI.dll
(0000000076970000 - 0000000076978000: D:\WINDOWS\system32\LINKINFO.dll
(0000000076980000 - 00000000769a5000: D:\WINDOWS\system32\ntshrui.dll
(00000000769b0000 - 0000000076a64000: D:\WINDOWS\system32\USERENV.dll
(0000000076b10000 - 0000000076b21000: D:\WINDOWS\system32\ATL.DLL
(0000000076b30000 - 0000000076b5d000: D:\WINDOWS\system32\WINMM.dll
(0000000076bf0000 - 0000000076c1e000: D:\WINDOWS\system32\credui.dll
(0000000076c20000 - 0000000076c4e000: D:\WINDOWS\system32\WINTRUST.dll
(0000000076c80000 - 0000000076ca8000: D:\WINDOWS\system32\IMAGEHLP.dll
(0000000076d50000 - 0000000076d69000: D:\WINDOWS\system32\iphlpapi.dll
(0000000076e70000 - 0000000076e7e000: D:\WINDOWS\system32\rtutils.dll
(0000000076f40000 - 0000000076f48000: D:\WINDOWS\system32\WTSAPI32.dll
(0000000076f50000 - 0000000076f7d000: D:\WINDOWS\system32\WLDAP32.dll
(0000000076fc0000 - 000000007703f000: D:\WINDOWS\system32\CLBCATQ.DLL
(0000000077040000 - 0000000077109000: D:\WINDOWS\system32\COMRes.dll
(0000000077110000 - 000000007719c000: D:\WINDOWS\system32\OLEAUT32.dll
(00000000771a0000 - 0000000077246000: D:\WINDOWS\system32\WININET.dll
(0000000077250000 - 00000000772ed000: D:\WINDOWS\system32\urlmon.dll
(00000000773c0000 - 00000000774c2000: D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
(00000000774d0000 - 000000007760c000: D:\WINDOWS\system32\ole32.dll
(0000000077750000 - 00000000778bc000: D:\WINDOWS\system32\SHDOCVW.dll
(0000000077910000 - 0000000077a04000: D:\WINDOWS\system32\SETUPAPI.dll
(0000000077a10000 - 0000000077a64000: D:\WINDOWS\System32\cscui.dll
(0000000077a70000 - 0000000077b05000: D:\WINDOWS\system32\CRYPT32.dll
(0000000077b10000 - 0000000077b22000: D:\WINDOWS\system32\MSASN1.dll
(0000000077bc0000 - 0000000077bc7000: D:\WINDOWS\system32\midimap.dll
(0000000077bd0000 - 0000000077be5000: D:\WINDOWS\system32\MSACM32.dll
(0000000077bf0000 - 0000000077bf8000: D:\WINDOWS\system32\VERSION.dll
(0000000077c00000 - 0000000077c58000: D:\WINDOWS\system32\msvcrt.dll
(0000000077d30000 - 0000000077dc0000: D:\WINDOWS\system32\USER32.dll
(0000000077dc0000 - 0000000077e6b000: D:\WINDOWS\system32\ADVAPI32.dll
(0000000077e70000 - 0000000077f02000: D:\WINDOWS\system32\RPCRT4.dll
(0000000077f10000 - 0000000077f58000: D:\WINDOWS\system32\GDI32.dll
(0000000077f60000 - 0000000077fd6000: D:\WINDOWS\system32\SHLWAPI.dll
(0000000077fe0000 - 0000000077ff1000: D:\WINDOWS\system32\Secur32.dll
(0000000078130000 - 00000000781cb000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
(00000000781d0000 - 00000000782e0000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\MFC80.DLL
(0000000078480000 - 000000007850e000: D:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\MSVCP90.dll
(0000000078520000 - 00000000785c3000: D:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\MSVCR90.dll
(00000000789e0000 - 0000000078d81000: D:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90u.dll
(000000007c630000 - 000000007c64b000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.DLL
(000000007c800000 - 000000007c8f5000: D:\WINDOWS\system32\kernel32.dll
(000000007c900000 - 000000007c9b1000: D:\WINDOWS\system32\ntdll.dll
(000000007c9c0000 - 000000007d1d7000: D:\WINDOWS\system32\SHELL32.dll

*----> Výpis stavu podprocesu ID 0x998 <----*

eax=00000001 ebx=00000003 ecx=0006fe60 edx=7c90e514 esi=001270e8 edi=00000000
eip=7c90e514 esp=0006fef0 ebp=0006ff08 iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202

*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ntdll.dll -
funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\SHELL32.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Module load completed but symbols could not be loaded for D:\WINDOWS\explorer.exe
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
0006ff08 7ca0bf0c 00000000 0006ff5c 01016e95 ntdll!KiFastSystemCallRet
0006ff14 01016e95 001270e8 7ffd7000 0006ffc0 SHELL32!Ordinal201+0x28
0006ff5c 0101e2b6 00000000 00000000 000208de explorer+0x16e95
0006ffc0 7c816fe7 000741c0 0006e890 7ffd7000 explorer+0x1e2b6
0006fff0 00000000 0101e24e 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49

*----> Bajtový výpis zásobníku <----*
000000000006fef0 f5 93 d3 77 82 3c a2 7c - b8 92 80 7c e8 70 12 00 ...w.<.|...|.p..
000000000006ff00 e8 70 12 00 14 ff 06 00 - 14 ff 06 00 0c bf a0 7c .p.............|
000000000006ff10 00 00 00 00 5c ff 06 00 - 95 6e 01 01 e8 70 12 00 ....\....n...p..
000000000006ff20 00 70 fd 7f c0 ff 06 00 - 00 00 00 00 24 fd 06 00 .p..........$...
000000000006ff30 50 ff 06 00 e0 ff 06 00 - 0a d8 90 7c 75 ac 80 7c P..........|u..|
000000000006ff40 ff ff ff ff 0c 00 00 00 - 00 00 00 00 42 19 bc 00 ............B...
000000000006ff50 90 00 00 00 03 00 00 00 - e8 70 12 00 c0 ff 06 00 .........p......
000000000006ff60 b6 e2 01 01 00 00 00 00 - 00 00 00 00 de 08 02 00 ................
000000000006ff70 05 00 00 00 c0 41 07 00 - 90 e8 06 00 44 00 00 00 .....A......D...
000000000006ff80 30 09 02 00 10 09 02 00 - e0 08 02 00 00 00 00 00 0...............
000000000006ff90 00 00 00 00 00 00 00 00 - 00 00 00 00 2e 00 00 00 ................
000000000006ffa0 00 00 00 00 3a ef 06 00 - 01 00 00 00 05 00 00 00 ....:...........
000000000006ffb0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000006ffc0 f0 ff 06 00 e7 6f 81 7c - c0 41 07 00 90 e8 06 00 .....o.|.A......
000000000006ffd0 00 70 fd 7f ed a6 54 80 - c8 ff 06 00 a8 7d a5 89 .p....T......}..
000000000006ffe0 ff ff ff ff f0 9a 83 7c - f0 6f 81 7c 00 00 00 00 .......|.o.|....
000000000006fff0 00 00 00 00 00 00 00 00 - 4e e2 01 01 00 00 00 00 ........N.......
0000000000070000 41 63 74 78 20 00 00 00 - 01 00 00 00 9c 24 00 00 Actx ........$..
0000000000070010 c4 00 00 00 00 00 00 00 - 20 00 00 00 00 00 00 00 ........ .......
0000000000070020 14 00 00 00 01 00 00 00 - 06 00 00 00 34 00 00 00 ............4...

*----> Výpis stavu podprocesu ID 0xad8 <----*

eax=00000000 ebx=00000000 ecx=000fb770 edx=775f5668 esi=000ec9e0 edi=00000000
eip=7c90e514 esp=00fbfe1c ebp=00fbff80 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\RPCRT4.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00fbff80 77e76c2b 00fbffa8 77e76a4d 000ec9e0 ntdll!KiFastSystemCallRet
00fbff88 77e76a4d 000ec9e0 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5e3
00fbffa8 77e76c13 000ec898 00fbffec 7c80b699 RPCRT4!I_RpcBCacheFree+0x405
00fbffb4 7c80b699 000fb1a8 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5cb
00fbffec 00000000 77e76bf9 000fb1a8 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000fbfe1c aa da 90 7c 13 67 e7 77 - cc 01 00 00 70 ff fb 00 ...|.g.w....p...
0000000000fbfe2c 00 00 00 00 e8 f3 cb 01 - 54 ff fb 00 06 02 00 00 ........T.......
0000000000fbfe3c 4f f1 4f 80 02 00 00 00 - 0a 00 00 00 20 b0 73 8a O.O......... .s.
0000000000fbfe4c 29 29 50 80 02 00 00 00 - 00 00 73 8a 0c 00 00 00 ))P.......s.....
0000000000fbfe5c c8 b3 73 8a c8 b3 73 00 - 58 5b 01 aa f2 22 50 80 ..s...s.X[..."P.
0000000000fbfe6c 03 00 00 00 02 d8 1a 8a - 00 00 00 00 06 02 00 00 ................
0000000000fbfe7c 4f 4b 54 80 02 1a 55 8a - 82 a1 4f 80 a8 45 1a 8a OKT...U...O..E..
0000000000fbfe8c 68 c5 6e 89 d8 d8 1a 8a - 88 5b 01 aa 8b 86 3f ba h.n......[....?.
0000000000fbfe9c cc c5 6e 89 43 4d 6e 80 - 28 5c 01 aa 27 44 6e 80 ..n.CMn.(\..'Dn.
0000000000fbfeac 00 0d db ba 00 00 00 00 - 00 00 00 00 88 d4 1a 8a ................
0000000000fbfebc c4 5b 01 aa 9a b1 d8 b9 - 38 d4 0b 8a 68 c5 6e 89 .[......8...h.n.
0000000000fbfecc a9 b1 d8 b9 b8 d4 1a 8a - 88 d4 1a 8a 00 00 00 00 ................
0000000000fbfedc a8 45 1a 8a 00 00 00 00 - 00 00 00 00 00 00 00 00 .E..............
0000000000fbfeec 1f 00 00 00 ff ff ff ff - 40 85 33 ba 00 00 00 00 ........@.3.....
0000000000fbfefc 10 44 6e 80 bc 91 5a 89 - 28 5c 01 aa 00 00 00 00 .Dn...Z.(\......
0000000000fbff0c 27 44 6e 80 08 00 00 00 - 46 02 00 00 68 2d 50 80 'Dn.....F...h-P.
0000000000fbff1c 90 90 5a 89 20 90 5a 89 - 40 af 4f 80 8c 91 5a 89 ..Z. .Z.@.O...Z.
0000000000fbff2c 20 90 5a 89 80 ff fb 00 - a9 66 e7 77 4c ff fb 00 .Z......f.wL...
0000000000fbff3c b9 66 e7 77 e0 10 90 7c - d8 9d 0f 00 a8 b1 0f 00 .f.w...|........
0000000000fbff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]......

*----> Výpis stavu podprocesu ID 0xa44 <----*

eax=050e454e ebx=00002b60 ecx=7c80a005 edx=00472000 esi=00000003 edi=018ce8e0
eip=77d39be9 esp=018ce3bc ebp=018ce3c8 iopl=0 nv up ei pl nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\USER32.dll -
funkce: USER32!LoadCursorW
77d39bd1 15cc02d977 adc eax,0x77d902cc
77d39bd6 85c0 test eax,eax
77d39bd8 7443 jz USER32!LoadCursorW+0xb4 (77d39c1d)
77d39bda 0fb718 movzx ebx,word ptr [eax]
77d39bdd 83e60f and esi,0xf
77d39be0 40 inc eax
77d39be1 40 inc eax
77d39be2 85f6 test esi,esi
77d39be4 740b jz USER32!LoadCursorW+0x88 (77d39bf1)
77d39be6 8d0458 lea eax,[eax+ebx*2]
CHYBA ->77d39be9 0fb718 movzx ebx,word ptr [eax] ds:0023:050e454e=????
77d39bec 40 inc eax
77d39bed 40 inc eax
77d39bee 4e dec esi
77d39bef 75f5 jnz USER32!LoadCursorW+0x7d (77d39be6)
77d39bf1 837d1400 cmp dword ptr [ebp+0x14],0x0
77d39bf5 0f84eb500200 je USER32!LoadStringA+0x4e (77d5ece6)
77d39bfb ff4d14 dec dword ptr [ebp+0x14]
77d39bfe 3b5d14 cmp ebx,[ebp+0x14]
77d39c01 0f8f12c00100 jnle USER32!EnumDisplaySettingsA+0x88 (77d55c19)
77d39c07 8bcb mov ecx,ebx

*----> Zpětné trasování zásobníku <----*


Nastala výjimka aplikace:
Aplikace: D:\WINDOWS\EXPLORER.exe (pid=3180)
Kdy: 1.8.2010 v 23:13:01.859
Číslo výjimky: c0000005 (narušení přístupu)

*----> Systémová informace <----*
Název počítače: VOJTOVO-PC
Uživatelské jméno: PoKaRko
Číslo ID relace terminálu: 0
Počet procesorů: 2
Typ procesoru: x86 Family 15 Model 4 Stepping 1
Verze systému Windows: 5.1
Aktuální sestavení: 2600
Service Pack: 2
Aktuální typ: Multiprocessor Free
Registrovaná organizace:
Registrovaný vlastník: Microsoft Windows XP Professional

*----> Seznam úkolů <----*
0 System Process
4 System
976 smss.exe
1112 csrss.exe
1544 winlogon.exe
1628 services.exe
1640 lsass.exe
1880 Ati2evxx.exe
1892 svchost.exe
1960 svchost.exe
1000 svchost.exe
1048 svchost.exe
1424 svchost.exe
1468 svchost.exe
1768 Ati2evxx.exe
348 spoolsv.exe
620 sched.exe
488 ctfmon.exe
384 avgnt.exe
704 MeeboNotifier.exe
1720 avguard.exe
1976 mDNSResponder.exe
1480 avshadow.exe
632 jqs.exe
1044 StarWindService.exe
1172 TuneUpUtilitiesService32.exe
3792 wscntfy.exe
3824 TuneUpUtilitiesApp32.exe
2484 alg.exe
2708 firefox.exe
2756 plugin-container.exe
2824 wmplayer.exe
2544 ICQ.exe
3180 EXPLORER.exe
2508 drwtsn32.exe

*----> Seznam modulů <----*
(0000000001000000 - 00000000010ff000: D:\WINDOWS\EXPLORER.exe
(0000000001d20000 - 0000000001fe6000: D:\WINDOWS\system32\msi.dll
(000000000ffd0000 - 000000000fff8000: D:\WINDOWS\system32\rsaenh.dll
(0000000010000000 - 0000000010013000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
(0000000010930000 - 0000000010979000: D:\WINDOWS\system32\PortableDeviceApi.dll
(00000000109c0000 - 00000000109ec000: D:\WINDOWS\system32\PortableDeviceTypes.dll
(00000000164a0000 - 00000000164c3000: D:\WINDOWS\system32\WPDShServiceObj.dll
(0000000020000000 - 00000000202cc000: D:\WINDOWS\system32\xpsp2res.dll
(000000004d540000 - 000000004d598000: D:\WINDOWS\system32\WINHTTP.dll
(000000005b250000 - 000000005b288000: D:\WINDOWS\system32\UxTheme.dll
(000000005d5a0000 - 000000005d637000: D:\WINDOWS\system32\comctl32.dll
(0000000060020000 - 0000000060091000: D:\WINDOWS\system32\themeui.dll
(0000000060120000 - 0000000060153000: D:\WINDOWS\system32\msutb.dll
(00000000661c0000 - 00000000663dd000: D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
(0000000067080000 - 000000006709c000: C:\Program Files\FileZilla FTP Client\fzshellext.dll
(0000000067270000 - 00000000672c4000: D:\WINDOWS\system32\NETAPI32.dll
(0000000068ef0000 - 0000000068fe1000: D:\PROGRA~1\MICROS~2\Office12\GrooveUtil.DLL
(0000000068ff0000 - 0000000068ff7000: D:\PROGRA~1\MICROS~2\Office12\GrooveNew.DLL
(0000000071a80000 - 0000000071a88000: D:\WINDOWS\system32\WS2HELP.dll
(0000000071a90000 - 0000000071aa7000: D:\WINDOWS\system32\WS2_32.dll
(0000000071ab0000 - 0000000071aba000: D:\WINDOWS\system32\WSOCK32.dll
(0000000071b00000 - 0000000071b12000: D:\WINDOWS\system32\MPR.dll
(0000000071bd0000 - 0000000071be3000: D:\WINDOWS\system32\SAMLIB.dll
(0000000071bf0000 - 0000000071bfe000: D:\WINDOWS\System32\ntlanman.dll
(0000000071c60000 - 0000000071c67000: D:\WINDOWS\System32\NETRAP.dll
(0000000071c70000 - 0000000071cb0000: D:\WINDOWS\System32\NETUI1.dll
(0000000071cb0000 - 0000000071cc7000: D:\WINDOWS\System32\NETUI0.dll
(0000000071d20000 - 0000000071d3c000: D:\WINDOWS\system32\actxprxy.dll
(00000000723f0000 - 000000007240a000: D:\WINDOWS\system32\mydocs.dll
(0000000072cd0000 - 0000000072cd8000: D:\WINDOWS\system32\msacm32.drv
(0000000072ce0000 - 0000000072ce9000: D:\WINDOWS\system32\wdmaud.drv
(00000000746f0000 - 000000007473b000: D:\WINDOWS\system32\MSCTF.dll
(0000000074aa0000 - 0000000074aa8000: D:\WINDOWS\system32\POWRPROF.dll
(0000000074ac0000 - 0000000074aca000: D:\WINDOWS\system32\BatMeter.dll
(0000000074b00000 - 0000000074b47000: D:\WINDOWS\system32\webcheck.dll
(00000000751a0000 - 00000000751ce000: D:\WINDOWS\system32\msctfime.ime
(0000000075d80000 - 0000000075da1000: D:\WINDOWS\system32\stobject.dll
(0000000075db0000 - 0000000075e41000: D:\WINDOWS\system32\MLANG.dll
(0000000075e70000 - 0000000075f20000: D:\WINDOWS\system32\SXS.DLL
(0000000075f40000 - 0000000075f47000: D:\WINDOWS\System32\drprov.dll
(0000000075f50000 - 0000000075f59000: D:\WINDOWS\System32\davclnt.dll
(0000000075f60000 - 000000007605c000: D:\WINDOWS\system32\BROWSEUI.dll
(0000000076340000 - 0000000076350000: D:\WINDOWS\system32\WINSTA.dll
(0000000076360000 - 0000000076365000: D:\WINDOWS\system32\MSImg32.dll
(0000000076370000 - 000000007638d000: D:\WINDOWS\system32\IMM32.DLL
(00000000763e0000 - 0000000076586000: D:\WINDOWS\system32\NETSHELL.dll
(00000000765e0000 - 00000000765fd000: D:\WINDOWS\System32\CSCDLL.dll
(0000000076660000 - 00000000766e1000: D:\WINDOWS\system32\CRYPTUI.dll
(0000000076970000 - 0000000076978000: D:\WINDOWS\system32\LINKINFO.dll
(0000000076980000 - 00000000769a5000: D:\WINDOWS\system32\ntshrui.dll
(00000000769b0000 - 0000000076a64000: D:\WINDOWS\system32\USERENV.dll
(0000000076b10000 - 0000000076b21000: D:\WINDOWS\system32\ATL.DLL
(0000000076b30000 - 0000000076b5d000: D:\WINDOWS\system32\WINMM.dll
(0000000076bf0000 - 0000000076c1e000: D:\WINDOWS\system32\credui.dll
(0000000076c20000 - 0000000076c4e000: D:\WINDOWS\system32\WINTRUST.dll
(0000000076c80000 - 0000000076ca8000: D:\WINDOWS\system32\IMAGEHLP.dll
(0000000076d50000 - 0000000076d69000: D:\WINDOWS\system32\iphlpapi.dll
(0000000076e70000 - 0000000076e7e000: D:\WINDOWS\system32\rtutils.dll
(0000000076f40000 - 0000000076f48000: D:\WINDOWS\system32\WTSAPI32.dll
(0000000076f50000 - 0000000076f7d000: D:\WINDOWS\system32\WLDAP32.dll
(0000000076fc0000 - 000000007703f000: D:\WINDOWS\system32\CLBCATQ.DLL
(0000000077040000 - 0000000077109000: D:\WINDOWS\system32\COMRes.dll
(0000000077110000 - 000000007719c000: D:\WINDOWS\system32\OLEAUT32.dll
(00000000771a0000 - 0000000077246000: D:\WINDOWS\system32\WININET.dll
(0000000077250000 - 00000000772ed000: D:\WINDOWS\system32\urlmon.dll
(00000000773c0000 - 00000000774c2000: D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
(00000000774d0000 - 000000007760c000: D:\WINDOWS\system32\ole32.dll
(0000000077750000 - 00000000778bc000: D:\WINDOWS\system32\SHDOCVW.dll
(0000000077910000 - 0000000077a04000: D:\WINDOWS\system32\SETUPAPI.dll
(0000000077a10000 - 0000000077a64000: D:\WINDOWS\System32\cscui.dll
(0000000077a70000 - 0000000077b05000: D:\WINDOWS\system32\CRYPT32.dll
(0000000077b10000 - 0000000077b22000: D:\WINDOWS\system32\MSASN1.dll
(0000000077bc0000 - 0000000077bc7000: D:\WINDOWS\system32\midimap.dll
(0000000077bd0000 - 0000000077be5000: D:\WINDOWS\system32\MSACM32.dll
(0000000077bf0000 - 0000000077bf8000: D:\WINDOWS\system32\VERSION.dll
(0000000077c00000 - 0000000077c58000: D:\WINDOWS\system32\msvcrt.dll
(0000000077d30000 - 0000000077dc0000: D:\WINDOWS\system32\USER32.dll
(0000000077dc0000 - 0000000077e6b000: D:\WINDOWS\system32\ADVAPI32.dll
(0000000077e70000 - 0000000077f02000: D:\WINDOWS\system32\RPCRT4.dll
(0000000077f10000 - 0000000077f58000: D:\WINDOWS\system32\GDI32.dll
(0000000077f60000 - 0000000077fd6000: D:\WINDOWS\system32\SHLWAPI.dll
(0000000077fe0000 - 0000000077ff1000: D:\WINDOWS\system32\Secur32.dll
(0000000078130000 - 00000000781cb000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
(000000007c630000 - 000000007c64b000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.DLL
(000000007c800000 - 000000007c8f5000: D:\WINDOWS\system32\kernel32.dll
(000000007c900000 - 000000007c9b1000: D:\WINDOWS\system32\ntdll.dll
(000000007c9c0000 - 000000007d1d7000: D:\WINDOWS\system32\SHELL32.dll

*----> Výpis stavu podprocesu ID 0xbb8 <----*

eax=0006fac8 ebx=00000003 ecx=0006f990 edx=00000000 esi=0015a718 edi=00000000
eip=7c90e514 esp=0006fef0 ebp=0006ff08 iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202

*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ntdll.dll -
funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\SHELL32.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Module load completed but symbols could not be loaded for D:\WINDOWS\EXPLORER.exe
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
0006ff08 7ca0bf0c 00000000 0006ff5c 01016e95 ntdll!KiFastSystemCallRet
0006ff14 01016e95 0015a718 7ffd4000 0006ffc0 SHELL32!Ordinal201+0x28
0006ff5c 0101e2b6 00000000 00000000 000208e4 EXPLORER+0x16e95
0006ffc0 7c816fe7 80000001 0006d3f0 7ffd4000 EXPLORER+0x1e2b6
0006fff0 00000000 0101e24e 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49

*----> Bajtový výpis zásobníku <----*
000000000006fef0 f5 93 d3 77 82 3c a2 7c - b8 92 80 7c 18 a7 15 00 ...w.<.|...|....
000000000006ff00 18 a7 15 00 14 ff 06 00 - 14 ff 06 00 0c bf a0 7c ...............|
000000000006ff10 00 00 00 00 5c ff 06 00 - 95 6e 01 01 18 a7 15 00 ....\....n......
000000000006ff20 00 40 fd 7f c0 ff 06 00 - 00 00 00 00 24 fd 06 00 .@..........$...
000000000006ff30 50 ff 06 00 e0 ff 06 00 - 0a d8 90 7c 75 ac 80 7c P..........|u..|
000000000006ff40 ff ff ff ff 0c 00 00 00 - 00 00 00 00 3e af c8 00 ............>...
000000000006ff50 90 00 00 00 01 00 00 00 - 18 a7 15 00 c0 ff 06 00 ................
000000000006ff60 b6 e2 01 01 00 00 00 00 - 00 00 00 00 e4 08 02 00 ................
000000000006ff70 01 00 00 00 01 00 00 80 - f0 d3 06 00 44 00 00 00 ............D...
000000000006ff80 38 09 02 00 18 09 02 00 - e8 08 02 00 00 00 00 00 8...............
000000000006ff90 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000006ffa0 00 00 00 00 00 00 00 00 - 01 04 00 00 01 00 00 00 ................
000000000006ffb0 00 00 00 00 00 00 00 00 - 01 00 01 00 00 00 00 00 ................
000000000006ffc0 f0 ff 06 00 e7 6f 81 7c - 01 00 00 80 f0 d3 06 00 .....o.|........
000000000006ffd0 00 40 fd 7f ed a6 54 80 - c8 ff 06 00 c0 c6 3d 89 .@....T.......=.
000000000006ffe0 ff ff ff ff f0 9a 83 7c - f0 6f 81 7c 00 00 00 00 .......|.o.|....
000000000006fff0 00 00 00 00 00 00 00 00 - 4e e2 01 01 00 00 00 00 ........N.......
0000000000070000 41 63 74 78 20 00 00 00 - 01 00 00 00 9c 24 00 00 Actx ........$..
0000000000070010 c4 00 00 00 00 00 00 00 - 20 00 00 00 00 00 00 00 ........ .......
0000000000070020 14 00 00 00 01 00 00 00 - 06 00 00 00 34 00 00 00 ............4...

*----> Výpis stavu podprocesu ID 0xadc <----*

eax=77e76bf9 ebx=00000000 ecx=00000009 edx=7c910222 esi=000ec9e0 edi=000eca84
eip=7c90e514 esp=00fbfe1c ebp=00fbff80 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\RPCRT4.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00fbff80 77e76c2b 00fbffa8 77e76a4d 000ec9e0 ntdll!KiFastSystemCallRet
00fbff88 77e76a4d 000ec9e0 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5e3
00fbffa8 77e76c13 000ec898 00fbffec 7c80b699 RPCRT4!I_RpcBCacheFree+0x405
00fbffb4 7c80b699 000fb1a8 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5cb
00fbffec 00000000 77e76bf9 000fb1a8 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000fbfe1c aa da 90 7c 13 67 e7 77 - cc 01 00 00 70 ff fb 00 ...|.g.w....p...
0000000000fbfe2c 00 00 00 00 48 42 ce 01 - 4c ff fb 00 48 3a 73 8a ....HB..L...H:s.
0000000000fbfe3c 00 00 00 00 2c 3b 73 8a - 00 50 57 e3 b0 0b 4f a9 ....,;s..PW...O.
0000000000fbfe4c 23 bb 5b 80 10 55 80 89 - 40 00 00 00 48 3a 73 8a #.[..U..@...H:s.
0000000000fbfe5c 00 00 00 00 1e 00 f8 00 - c8 65 b3 e1 06 00 00 00 .........e......
0000000000fbfe6c 01 65 b3 e1 9e 04 00 00 - 5c 15 58 80 70 0b 4f a9 .e......\.X.p.O.
0000000000fbfe7c c8 43 88 c0 00 30 88 c0 - 38 01 00 00 b3 01 00 00 .C...0..8.......
0000000000fbfe8c c8 43 88 c0 00 40 a8 c0 - 00 00 00 00 38 0c 8a 89 .C...@......8...
0000000000fbfe9c 0a 00 00 00 43 4d 6e 80 - 28 0c 4f a9 27 44 6e 80 ....CMn.(.O.'Dn.
0000000000fbfeac 00 0d db ba 00 00 00 00 - 04 00 00 00 00 00 00 00 ................
0000000000fbfebc 08 20 4f 89 e4 36 51 8a - 47 00 00 00 00 00 00 00 . O..6Q.G.......
0000000000fbfecc e0 0b 4f a9 0d e4 53 80 - 00 20 4e 89 ff 00 00 00 ..O...S.. N.....
0000000000fbfedc ff 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000fbfeec 1f 00 00 00 ff ff ff ff - 40 f5 df ff 00 00 00 00 ........@.......
0000000000fbfefc 10 44 6e 80 bc 41 62 89 - 28 0c 4f a9 00 00 00 00 .Dn..Ab.(.O.....
0000000000fbff0c 27 44 6e 80 08 00 00 00 - 46 02 00 00 68 2d 50 80 'Dn.....F...h-P.
0000000000fbff1c 90 40 62 89 20 40 62 89 - 40 af 4f 80 8c 41 62 89 .@b. @b.@.O..Ab.
0000000000fbff2c 20 40 62 89 80 ff fb 00 - a9 66 e7 77 4c ff fb 00 @b......f.wL...
0000000000fbff3c b9 66 e7 77 e0 10 90 7c - d8 9d 0f 00 a8 b1 0f 00 .f.w...|........
0000000000fbff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]......

*----> Výpis stavu podprocesu ID 0x280 <----*

eax=774e319a ebx=00007530 ecx=7ffd4000 edx=00000000 esi=00000000 edi=0188ff50
eip=7c90e514 esp=0188ff20 ebp=0188ff78 iopl=0 nv up ei pl nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ole32.dll -
ChildEBP RetAddr Args to Child
0188ff78 7c802451 0000ea60 00000000 0188ffb4 ntdll!KiFastSystemCallRet
0188ff88 774e2fcb 0000ea60 000f9be0 774e314d kernel32!Sleep+0xf
0188ffb4 7c80b699 000f9be0 00000000 7c91043e ole32!StringFromGUID2+0x2d1
0188ffec 00000000 774e319a 000f9be0 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
000000000188ff20 1a d2 90 7c ed 23 80 7c - 00 00 00 00 50 ff 88 01 ...|.#.|....P...
000000000188ff30 40 25 80 7c f0 56 5f 77 - 30 75 00 00 14 00 00 00 @%.|.V_w0u......
000000000188ff40 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................
000000000188ff50 00 ba 3c dc ff ff ff ff - b4 fe 88 01 50 ff 88 01 ..<.........P...
000000000188ff60 30 ff 88 01 b4 fe 88 01 - dc ff 88 01 f0 9a 83 7c 0..............|
000000000188ff70 58 24 80 7c 00 00 00 00 - 88 ff 88 01 51 24 80 7c X$.|........Q$.|
000000000188ff80 60 ea 00 00 00 00 00 00 - b4 ff 88 01 cb 2f 4e 77 `............/Nw
000000000188ff90 60 ea 00 00 e0 9b 0f 00 - 4d 31 4e 77 00 00 00 00 `.......M1Nw....
000000000188ffa0 00 00 00 00 e0 9b 0f 00 - 00 00 4d 77 b5 31 4e 77 ..........Mw.1Nw
000000000188ffb0 3e 04 91 7c ec ff 88 01 - 99 b6 80 7c e0 9b 0f 00 >..|.......|....
000000000188ffc0 00 00 00 00 3e 04 91 7c - e0 9b 0f 00 00 d0 fd 7f ....>..|........
000000000188ffd0 00 56 73 8a c0 ff 88 01 - a0 b7 9b 89 ff ff ff ff .Vs.............
000000000188ffe0 f0 9a 83 7c a0 b6 80 7c - 00 00 00 00 00 00 00 00 ...|...|........
000000000188fff0 00 00 00 00 9a 31 4e 77 - e0 9b 0f 00 00 00 00 00 .....1Nw........
0000000001890000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000001890010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000001890020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000001890030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000001890040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000001890050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

*----> Výpis stavu podprocesu ID 0xee8 <----*

eax=030b454e ebx=00002b60 ecx=7c80a005 edx=00472000 esi=00000003 edi=018ce8e0
eip=77d39be9 esp=018ce3bc ebp=018ce3c8 iopl=0 nv up ei pl nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\USER32.dll -
funkce: USER32!LoadCursorW
77d39bd1 15cc02d977 adc eax,0x77d902cc
77d39bd6 85c0 test eax,eax
77d39bd8 7443 jz USER32!LoadCursorW+0xb4 (77d39c1d)
77d39bda 0fb718 movzx ebx,word ptr [eax]
77d39bdd 83e60f and esi,0xf
77d39be0 40 inc eax
77d39be1 40 inc eax
77d39be2 85f6 test esi,esi
77d39be4 740b jz USER32!LoadCursorW+0x88 (77d39bf1)
77d39be6 8d0458 lea eax,[eax+ebx*2]
CHYBA ->77d39be9 0fb718 movzx ebx,word ptr [eax] ds:0023:030b454e=????
77d39bec 40 inc eax
77d39bed 40 inc eax
77d39bee 4e dec esi
77d39bef 75f5 jnz USER32!LoadCursorW+0x7d (77d39be6)
77d39bf1 837d1400 cmp dword ptr [ebp+0x14],0x0
77d39bf5 0f84eb500200 je USER32!LoadStringA+0x4e (77d5ece6)
77d39bfb ff4d14 dec dword ptr [ebp+0x14]
77d39bfe 3b5d14 cmp ebx,[ebp+0x14]
77d39c01 0f8f12c00100 jnle USER32!EnumDisplaySettingsA+0x88 (77d55c19)
77d39c07 8bcb mov ecx,ebx

*----> Zpětné trasování zásobníku <----*


Nastala výjimka aplikace:
Aplikace: D:\WINDOWS\Explorer.EXE (pid=432)
Kdy: 1.8.2010 v 23:22:25.515
Číslo výjimky: c0000005 (narušení přístupu)

*----> Systémová informace <----*
Název počítače: VOJTOVO-PC
Uživatelské jméno: PoKaRko
Číslo ID relace terminálu: 0
Počet procesorů: 2
Typ procesoru: x86 Family 15 Model 4 Stepping 1
Verze systému Windows: 5.1
Aktuální sestavení: 2600
Service Pack: 2
Aktuální typ: Multiprocessor Free
Registrovaná organizace:
Registrovaný vlastník: Microsoft Windows XP Professional

*----> Seznam úkolů <----*
0 System Process
4 System
792 smss.exe
1144 csrss.exe
1272 winlogon.exe
1476 services.exe
1488 lsass.exe
1728 svchost.exe
1840 svchost.exe
768 svchost.exe
1084 svchost.exe
1212 svchost.exe
432 Explorer.EXE
784 ctfmon.exe
1376 drwtsn32.exe

*----> Seznam modulů <----*
(0000000001000000 - 00000000010ff000: D:\WINDOWS\Explorer.EXE
(0000000001c90000 - 0000000001f56000: D:\WINDOWS\system32\msi.dll
(000000000ffd0000 - 000000000fff8000: D:\WINDOWS\system32\rsaenh.dll
(0000000010000000 - 000000001000c000: d:\Windows\system32\Dirsize.dll
(0000000020000000 - 00000000202cc000: D:\WINDOWS\system32\xpsp2res.dll
(000000005b250000 - 000000005b288000: D:\WINDOWS\system32\UxTheme.dll
(000000005d5a0000 - 000000005d637000: D:\WINDOWS\system32\comctl32.dll
(0000000060020000 - 0000000060091000: D:\WINDOWS\system32\themeui.dll
(0000000060120000 - 0000000060153000: D:\WINDOWS\system32\msutb.dll
(0000000065e30000 - 0000000065e67000: D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
(00000000661c0000 - 00000000663dd000: D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
(0000000067270000 - 00000000672c4000: D:\WINDOWS\system32\NETAPI32.dll
(0000000068ef0000 - 0000000068fe1000: D:\PROGRA~1\MICROS~2\Office12\GrooveUtil.DLL
(0000000068ff0000 - 0000000068ff7000: D:\PROGRA~1\MICROS~2\Office12\GrooveNew.DLL
(000000006bd10000 - 000000006bd20000: D:\Program Files\Microsoft Office\Office12\msohevi.dll
(0000000071a80000 - 0000000071a88000: D:\WINDOWS\system32\WS2HELP.dll
(0000000071a90000 - 0000000071aa7000: D:\WINDOWS\system32\WS2_32.dll
(0000000071bd0000 - 0000000071be3000: D:\WINDOWS\system32\SAMLIB.dll
(00000000746f0000 - 000000007473b000: D:\WINDOWS\system32\Msctf.dll
(0000000074950000 - 0000000074a73000: D:\WINDOWS\system32\msxml3.dll
(00000000751a0000 - 00000000751ce000: D:\WINDOWS\system32\msctfime.ime
(0000000075db0000 - 0000000075e41000: D:\WINDOWS\system32\MLANG.dll
(0000000075f60000 - 000000007605c000: D:\WINDOWS\system32\BROWSEUI.dll
(0000000076340000 - 0000000076350000: D:\WINDOWS\system32\WINSTA.dll
(0000000076360000 - 0000000076365000: D:\WINDOWS\system32\MSImg32.dll
(0000000076370000 - 000000007638d000: D:\WINDOWS\system32\IMM32.DLL
(00000000763e0000 - 0000000076586000: D:\WINDOWS\system32\NETSHELL.dll
(00000000765e0000 - 00000000765fd000: D:\WINDOWS\System32\CSCDLL.dll
(0000000076660000 - 00000000766e1000: D:\WINDOWS\system32\CRYPTUI.dll
(0000000076970000 - 0000000076978000: D:\WINDOWS\system32\LINKINFO.dll
(0000000076980000 - 00000000769a5000: D:\WINDOWS\system32\ntshrui.dll
(00000000769b0000 - 0000000076a64000: D:\WINDOWS\system32\USERENV.dll
(0000000076b10000 - 0000000076b21000: D:\WINDOWS\system32\ATL.DLL
(0000000076bf0000 - 0000000076c1e000: D:\WINDOWS\system32\credui.dll
(0000000076c20000 - 0000000076c4e000: D:\WINDOWS\system32\WINTRUST.dll
(0000000076c80000 - 0000000076ca8000: D:\WINDOWS\system32\IMAGEHLP.dll
(0000000076d50000 - 0000000076d69000: D:\WINDOWS\system32\iphlpapi.dll
(0000000076e70000 - 0000000076e7e000: D:\WINDOWS\system32\rtutils.dll
(0000000076f50000 - 0000000076f7d000: D:\WINDOWS\system32\WLDAP32.dll
(0000000076fc0000 - 000000007703f000: D:\WINDOWS\system32\CLBCATQ.DLL
(0000000077040000 - 0000000077109000: D:\WINDOWS\system32\COMRes.dll
(0000000077110000 - 000000007719c000: D:\WINDOWS\system32\OLEAUT32.dll
(00000000771a0000 - 0000000077246000: D:\WINDOWS\system32\WININET.dll
(0000000077250000 - 00000000772ed000: D:\WINDOWS\system32\urlmon.dll
(00000000773c0000 - 00000000774c2000: D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
(00000000774d0000 - 000000007760c000: D:\WINDOWS\system32\ole32.dll
(0000000077750000 - 00000000778bc000: D:\WINDOWS\system32\SHDOCVW.dll
(0000000077910000 - 0000000077a04000: D:\WINDOWS\system32\SETUPAPI.dll
(0000000077a10000 - 0000000077a64000: D:\WINDOWS\System32\cscui.dll
(0000000077a70000 - 0000000077b05000: D:\WINDOWS\system32\CRYPT32.dll
(0000000077b10000 - 0000000077b22000: D:\WINDOWS\system32\MSASN1.dll
(0000000077bf0000 - 0000000077bf8000: D:\WINDOWS\system32\VERSION.dll
(0000000077c00000 - 0000000077c58000: D:\WINDOWS\system32\msvcrt.dll
(0000000077d30000 - 0000000077dc0000: D:\WINDOWS\system32\USER32.dll
(0000000077dc0000 - 0000000077e6b000: D:\WINDOWS\system32\ADVAPI32.dll
(0000000077e70000 - 0000000077f02000: D:\WINDOWS\system32\RPCRT4.dll
(0000000077f10000 - 0000000077f58000: D:\WINDOWS\system32\GDI32.dll
(0000000077f60000 - 0000000077fd6000: D:\WINDOWS\system32\SHLWAPI.dll
(0000000077fe0000 - 0000000077ff1000: D:\WINDOWS\system32\Secur32.dll
(0000000078130000 - 00000000781cb000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
(000000007c630000 - 000000007c64b000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.DLL
(000000007c800000 - 000000007c8f5000: D:\WINDOWS\system32\kernel32.dll
(000000007c900000 - 000000007c9b1000: D:\WINDOWS\system32\ntdll.dll
(000000007c9c0000 - 000000007d1d7000: D:\WINDOWS\system32\SHELL32.dll

*----> Výpis stavu podprocesu ID 0x308 <----*

eax=00000102 ebx=0006f81c ecx=0006f8a4 edx=7c90e514 esi=00000000 edi=7ffd6000
eip=7c90e514 esp=0006f7f4 ebp=0006f890 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ntdll.dll -
funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\USER32.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\Msctf.dll -
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\SHELL32.dll -
*** ERROR: Module load completed but symbols could not be loaded for D:\WINDOWS\Explorer.EXE
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
0006f890 77d3bbfe 00000002 0006f8b8 00000000 ntdll!KiFastSystemCallRet
0006f8ec 77d3bcad 00000001 0006fac8 000001f4 USER32!SetWindowTextW+0x120
0006f908 7470f93a 00000001 0006fac8 00000000 USER32!MsgWaitForMultipleObjects+0x1f
0006f954 7470fea5 0006fac8 00000668 0006f9b4 Msctf!TF_CheckThreadInputIdle+0x79d
0006fbd8 747103ba 00a90028 00000028 0006fc98 Msctf!TF_CheckThreadInputIdle+0xd08
0006fbec 74710822 018fb3c8 00000028 00000010 Msctf!TF_CheckThreadInputIdle+0x121d
0006fc58 74710f6d 00000003 00000001 0006fc6c Msctf!TF_CheckThreadInputIdle+0x1685
0006fc84 7470ce37 018fb3c0 00000001 0003004a Msctf!TF_CheckThreadInputIdle+0x1dd0
0006fdc0 77d38709 0003004a 0000c094 00000000 Msctf!TF_CreateCicLoadMutex+0x632c
0006fdec 77d387eb 7470fa46 0003004a 0000c094 USER32!GetDC+0x72
0006fe54 77d389a5 00000000 7470fa46 0003004a USER32!GetDC+0x154
0006feb4 77d389e8 0006fed4 00000000 0006fef0 USER32!GetWindowLongW+0x127
0006fec4 7ca23dd1 0006fed4 0013b9d8 0003004a USER32!DispatchMessageW+0xf
0006fef0 7ca23c66 7c8092b8 0013b9d8 0013b9d8 SHELL32!SHGetFolderPathA+0x32e
0006ff08 7ca0bf0c 00000000 0006ff5c 01016e95 SHELL32!SHGetFolderPathA+0x1c3
0006ff14 01016e95 0013b9d8 7ffd6000 0006ffc0 SHELL32!Ordinal201+0x28
0006ff5c 0101e2b6 00000000 00000000 000208de Explorer+0x16e95
0006ffc0 7c816fe7 00182594 0006eb74 7ffd6000 Explorer+0x1e2b6
0006fff0 00000000 0101e24e 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49

Uživatelský avatar
autoprd
Level 4.5
Level 4.5
Příspěvky: 1715
Registrován: únor 09
Bydliště: ▼▲☺U Pc ☺▼▲
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: PRoBLém s user32.dll

Příspěvekod autoprd » 02 srp 2010 23:30

*----> Bajtový výpis zásobníku <----*
000000000006f7f4 4a df 90 7c fe 94 80 7c - 02 00 00 00 1c f8 06 00 J..|...|........
000000000006f804 01 00 00 00 00 00 00 00 - 50 f8 06 00 00 00 00 00 ........P.......
000000000006f814 02 00 00 00 00 00 00 00 - 04 05 00 00 28 00 00 00 ............(...
000000000006f824 93 01 00 00 6d 01 00 00 - 01 00 00 00 c6 93 d3 77 ....m..........w
000000000006f834 85 93 d3 77 d8 f8 06 00 - 14 00 00 00 01 00 00 00 ...w............
000000000006f844 00 00 00 00 00 00 00 00 - 10 00 00 00 c0 b4 b3 ff ................
000000000006f854 ff ff ff ff 00 f0 fd 7f - 00 60 fd 7f 00 f0 fd 7f .........`......
000000000006f864 78 f8 06 00 50 f8 06 00 - 1c f8 06 00 b4 f0 d5 77 x...P..........w
000000000006f874 02 00 00 00 10 f8 06 00 - 01 00 00 00 44 fe 06 00 ............D...
000000000006f884 f0 9a 83 7c f0 95 80 7c - 00 00 00 00 ec f8 06 00 ...|...|........
000000000006f894 fe bb d3 77 02 00 00 00 - b8 f8 06 00 00 00 00 00 ...w............
000000000006f8a4 f4 01 00 00 00 00 00 00 - b4 f9 06 00 b4 f0 d5 77 ...............w
000000000006f8b4 c8 fa 06 00 04 05 00 00 - 28 00 00 00 c8 fa 06 00 ........(.......
000000000006f8c4 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000006f8d4 10 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000006f8e4 00 f0 fd 7f 28 00 00 00 - 08 f9 06 00 ad bc d3 77 ....(..........w
000000000006f8f4 01 00 00 00 c8 fa 06 00 - f4 01 00 00 ff 41 00 00 .............A..
000000000006f904 b8 f8 06 00 54 f9 06 00 - 3a f9 70 74 01 00 00 00 ....T...:.pt....
000000000006f914 c8 fa 06 00 00 00 00 00 - f4 01 00 00 ff 41 00 00 .............A..
000000000006f924 00 00 00 00 c8 b3 8f 01 - 05 40 00 80 00 00 00 00 .........@......

*----> Výpis stavu podprocesu ID 0x664 <----*

eax=77e76bf9 ebx=00000000 ecx=00000009 edx=7c910222 esi=00085398 edi=00000100
eip=7c90e514 esp=00cefe1c ebp=00ceff80 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\RPCRT4.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00ceff80 77e76c2b 00ceffa8 77e76a4d 00085398 ntdll!KiFastSystemCallRet
00ceff88 77e76a4d 00085398 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5e3
00ceffa8 77e76c13 00094cc8 00ceffec 7c80b699 RPCRT4!I_RpcBCacheFree+0x405
00ceffb4 7c80b699 000ad120 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5cb
00ceffec 00000000 77e76bf9 000ad120 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000cefe1c aa da 90 7c 13 67 e7 77 - f0 01 00 00 70 ff ce 00 ...|.g.w....p...
0000000000cefe2c 00 00 00 00 70 03 91 01 - 54 ff ce 00 06 02 00 00 ....p...T.......
0000000000cefe3c 25 9e 4d 80 01 00 00 00 - 08 00 00 00 20 80 6f 8a %.M......... .o.
0000000000cefe4c 56 5a 4e 80 00 00 00 00 - 20 80 6f 8a 0c 00 00 00 VZN..... .o.....
0000000000cefe5c 20 80 6f 8a 20 80 6f 00 - 58 5b ef b9 84 9f 4d 80 .o. .o.X[....M.
0000000000cefe6c 90 80 6f 8a 02 15 51 8a - 00 00 00 00 38 75 71 f7 ..o...Q.....8uq.
0000000000cefe7c 66 c7 4d 80 02 00 00 00 - c3 20 4e 80 60 d9 42 8a f.M...... N.`.B.
0000000000cefe8c 88 b9 1b 8a 80 15 51 8a - 88 5b ef b9 8b 76 7b f7 ......Q..[...v{.
0000000000cefe9c ec b9 1b 8a 00 00 00 00 - 00 00 00 00 9c 5b ef b9 .............[..
0000000000cefeac 2b 32 3d ba e8 b9 1b 8a - 00 00 00 00 30 11 51 8a +2=.........0.Q.
0000000000cefebc c4 5b ef b9 9a 31 97 f7 - 68 98 3e 8a 88 b9 1b 8a .[...1..h.>.....
0000000000cefecc a9 31 97 f7 60 11 51 8a - 30 11 51 8a 00 00 00 00 .1..`.Q.0.Q.....
0000000000cefedc 60 d9 42 8a 00 00 00 00 - dc 5b ef b9 49 39 97 f7 `.B......[..I9..
0000000000cefeec 6c 39 97 f7 1f 00 00 00 - 40 f5 df ff 0d ca 4d 80 l9......@.....M.
0000000000cefefc ff ff ff ff 46 02 00 00 - 4d c8 4d 80 28 5c ef b9 ....F...M.M.(\..
0000000000ceff0c 30 12 14 8a 20 f1 df ff - cc 13 14 8a e8 1b 4e 80 0... .........N.
0000000000ceff1c a0 12 14 8a 30 12 14 8a - 1e 1c 4e 80 9c 13 14 8a ....0.....N.....
0000000000ceff2c 30 12 14 8a 80 ff ce 00 - a9 66 e7 77 4c ff ce 00 0........f.wL...
0000000000ceff3c b9 66 e7 77 e0 10 90 7c - b8 18 0b 00 20 d1 0a 00 .f.w...|.... ...
0000000000ceff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]......

*----> Výpis stavu podprocesu ID 0x660 <----*

eax=774e319a ebx=00007530 ecx=7ffd6000 edx=00000000 esi=00000000 edi=00d2ff50
eip=7c90e514 esp=00d2ff20 ebp=00d2ff78 iopl=0 nv up ei pl nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ole32.dll -
ChildEBP RetAddr Args to Child
00d2ff78 7c802451 0000ea60 00000000 00d2ffb4 ntdll!KiFastSystemCallRet
00d2ff88 774e2fcb 0000ea60 000ae028 774e314d kernel32!Sleep+0xf
00d2ffb4 7c80b699 000ae028 00000000 7c91043e ole32!StringFromGUID2+0x2d1
00d2ffec 00000000 774e319a 000ae028 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000d2ff20 1a d2 90 7c ed 23 80 7c - 00 00 00 00 50 ff d2 00 ...|.#.|....P...
0000000000d2ff30 40 25 80 7c f0 56 5f 77 - 30 75 00 00 14 00 00 00 @%.|.V_w0u......
0000000000d2ff40 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................
0000000000d2ff50 00 ba 3c dc ff ff ff ff - 08 4f 4d 77 50 ff d2 00 ..<......OMwP...
0000000000d2ff60 30 ff d2 00 a8 42 08 00 - dc ff d2 00 f0 9a 83 7c 0....B.........|
0000000000d2ff70 58 24 80 7c 00 00 00 00 - 88 ff d2 00 51 24 80 7c X$.|........Q$.|
0000000000d2ff80 60 ea 00 00 00 00 00 00 - b4 ff d2 00 cb 2f 4e 77 `............/Nw
0000000000d2ff90 60 ea 00 00 28 e0 0a 00 - 4d 31 4e 77 00 00 00 00 `...(...M1Nw....
0000000000d2ffa0 00 00 00 00 28 e0 0a 00 - 00 00 4d 77 b5 31 4e 77 ....(.....Mw.1Nw
0000000000d2ffb0 3e 04 91 7c ec ff d2 00 - 99 b6 80 7c 28 e0 0a 00 >..|.......|(...
0000000000d2ffc0 00 00 00 00 3e 04 91 7c - 28 e0 0a 00 00 d0 fd 7f ....>..|(.......
0000000000d2ffd0 00 46 6f 8a c0 ff d2 00 - b8 f8 1a 8a ff ff ff ff .Fo.............
0000000000d2ffe0 f0 9a 83 7c a0 b6 80 7c - 00 00 00 00 00 00 00 00 ...|...|........
0000000000d2fff0 00 00 00 00 9a 31 4e 77 - 28 e0 0a 00 00 00 00 00 .....1Nw(.......
0000000000d30000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d30010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d30020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d30030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d30040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d30050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

*----> Výpis stavu podprocesu ID 0x668 <----*

eax=022d454e ebx=00002b60 ecx=7c80a005 edx=00472000 esi=00000003 edi=00d6eaa0
eip=77d39be9 esp=00d6e57c ebp=00d6e588 iopl=0 nv up ei pl nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

funkce: USER32!LoadCursorW
77d39bd1 15cc02d977 adc eax,0x77d902cc
77d39bd6 85c0 test eax,eax
77d39bd8 7443 jz USER32!LoadCursorW+0xb4 (77d39c1d)
77d39bda 0fb718 movzx ebx,word ptr [eax]
77d39bdd 83e60f and esi,0xf
77d39be0 40 inc eax
77d39be1 40 inc eax
77d39be2 85f6 test esi,esi
77d39be4 740b jz USER32!LoadCursorW+0x88 (77d39bf1)
77d39be6 8d0458 lea eax,[eax+ebx*2]
CHYBA ->77d39be9 0fb718 movzx ebx,word ptr [eax] ds:0023:022d454e=????
77d39bec 40 inc eax
77d39bed 40 inc eax
77d39bee 4e dec esi
77d39bef 75f5 jnz USER32!LoadCursorW+0x7d (77d39be6)
77d39bf1 837d1400 cmp dword ptr [ebp+0x14],0x0
77d39bf5 0f84eb500200 je USER32!LoadStringA+0x4e (77d5ece6)
77d39bfb ff4d14 dec dword ptr [ebp+0x14]
77d39bfe 3b5d14 cmp ebx,[ebp+0x14]
77d39c01 0f8f12c00100 jnle USER32!EnumDisplaySettingsA+0x88 (77d55c19)
77d39c07 8bcb mov ecx,ebx

*----> Zpětné trasování zásobníku <----*


Nastala výjimka aplikace:
Aplikace: D:\WINDOWS\explorer.exe (pid=244)
Kdy: 1.8.2010 v 23:23:30.015
Číslo výjimky: c0000005 (narušení přístupu)

*----> Systémová informace <----*
Název počítače: VOJTOVO-PC
Uživatelské jméno: PoKaRko
Číslo ID relace terminálu: 0
Počet procesorů: 2
Typ procesoru: x86 Family 15 Model 4 Stepping 1
Verze systému Windows: 5.1
Aktuální sestavení: 2600
Service Pack: 2
Aktuální typ: Multiprocessor Free
Registrovaná organizace:
Registrovaný vlastník: Microsoft Windows XP Professional

*----> Seznam úkolů <----*
0 System Process
4 System
792 smss.exe
1144 csrss.exe
1272 winlogon.exe
1476 services.exe
1488 lsass.exe
1728 svchost.exe
1840 svchost.exe
768 svchost.exe
1084 svchost.exe
1212 svchost.exe
784 ctfmon.exe
244 explorer.exe
1812 drwtsn32.exe

*----> Seznam modulů <----*
(0000000001000000 - 00000000010ff000: D:\WINDOWS\explorer.exe
(0000000001910000 - 0000000001bd6000: D:\WINDOWS\system32\msi.dll
(000000000ffd0000 - 000000000fff8000: D:\WINDOWS\system32\rsaenh.dll
(0000000010000000 - 0000000010054000: C:\PROGRA~1\Greatis\REGRUN~1\RRShell.dll
(0000000020000000 - 00000000202cc000: D:\WINDOWS\system32\xpsp2res.dll
(000000005b250000 - 000000005b288000: D:\WINDOWS\system32\UxTheme.dll
(000000005d5a0000 - 000000005d637000: D:\WINDOWS\system32\comctl32.dll
(0000000060020000 - 0000000060091000: D:\WINDOWS\system32\themeui.dll
(0000000060120000 - 0000000060153000: D:\WINDOWS\system32\msutb.dll
(0000000065e30000 - 0000000065e67000: D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
(00000000661c0000 - 00000000663dd000: D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
(0000000066b40000 - 0000000066cbd000: D:\PROGRA~1\MICROS~2\Office12\GR326C~1.DLL
(0000000067270000 - 00000000672c4000: D:\WINDOWS\system32\NETAPI32.dll
(0000000068ef0000 - 0000000068fe1000: D:\PROGRA~1\MICROS~2\Office12\GrooveUtil.DLL
(0000000068ff0000 - 0000000068ff7000: D:\PROGRA~1\MICROS~2\Office12\GrooveNew.DLL
(0000000071a80000 - 0000000071a88000: D:\WINDOWS\system32\WS2HELP.dll
(0000000071a90000 - 0000000071aa7000: D:\WINDOWS\system32\WS2_32.dll
(0000000071bd0000 - 0000000071be3000: D:\WINDOWS\system32\SAMLIB.dll
(00000000746f0000 - 000000007473b000: D:\WINDOWS\system32\MSCTF.dll
(0000000074950000 - 0000000074a73000: D:\WINDOWS\system32\msxml3.dll
(00000000751a0000 - 00000000751ce000: D:\WINDOWS\system32\msctfime.ime
(0000000075db0000 - 0000000075e41000: D:\WINDOWS\system32\MLANG.dll
(0000000075f60000 - 000000007605c000: D:\WINDOWS\system32\BROWSEUI.dll
(0000000076340000 - 0000000076350000: D:\WINDOWS\system32\WINSTA.dll
(0000000076360000 - 0000000076365000: D:\WINDOWS\system32\MSImg32.dll
(0000000076370000 - 000000007638d000: D:\WINDOWS\system32\IMM32.DLL
(00000000763e0000 - 0000000076586000: D:\WINDOWS\system32\NETSHELL.dll
(00000000765e0000 - 00000000765fd000: D:\WINDOWS\System32\CSCDLL.dll
(0000000076660000 - 00000000766e1000: D:\WINDOWS\system32\CRYPTUI.dll
(0000000076970000 - 0000000076978000: D:\WINDOWS\system32\LINKINFO.dll
(0000000076980000 - 00000000769a5000: D:\WINDOWS\system32\ntshrui.dll
(00000000769b0000 - 0000000076a64000: D:\WINDOWS\system32\USERENV.dll
(0000000076b10000 - 0000000076b21000: D:\WINDOWS\system32\ATL.DLL
(0000000076bf0000 - 0000000076c1e000: D:\WINDOWS\system32\credui.dll
(0000000076c20000 - 0000000076c4e000: D:\WINDOWS\system32\WINTRUST.dll
(0000000076c80000 - 0000000076ca8000: D:\WINDOWS\system32\IMAGEHLP.dll
(0000000076d50000 - 0000000076d69000: D:\WINDOWS\system32\iphlpapi.dll
(0000000076e70000 - 0000000076e7e000: D:\WINDOWS\system32\rtutils.dll
(0000000076f50000 - 0000000076f7d000: D:\WINDOWS\system32\WLDAP32.dll
(0000000076fc0000 - 000000007703f000: D:\WINDOWS\system32\CLBCATQ.DLL
(0000000077040000 - 0000000077109000: D:\WINDOWS\system32\COMRes.dll
(0000000077110000 - 000000007719c000: D:\WINDOWS\system32\OLEAUT32.dll
(00000000771a0000 - 0000000077246000: D:\WINDOWS\system32\WININET.dll
(0000000077250000 - 00000000772ed000: D:\WINDOWS\system32\urlmon.dll
(00000000773c0000 - 00000000774c2000: D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
(00000000774d0000 - 000000007760c000: D:\WINDOWS\system32\ole32.dll
(0000000077750000 - 00000000778bc000: D:\WINDOWS\system32\SHDOCVW.dll
(0000000077910000 - 0000000077a04000: D:\WINDOWS\system32\SETUPAPI.dll
(0000000077a10000 - 0000000077a64000: D:\WINDOWS\System32\cscui.dll
(0000000077a70000 - 0000000077b05000: D:\WINDOWS\system32\CRYPT32.dll
(0000000077b10000 - 0000000077b22000: D:\WINDOWS\system32\MSASN1.dll
(0000000077bf0000 - 0000000077bf8000: D:\WINDOWS\system32\VERSION.dll
(0000000077c00000 - 0000000077c58000: D:\WINDOWS\system32\msvcrt.dll
(0000000077d30000 - 0000000077dc0000: D:\WINDOWS\system32\USER32.dll
(0000000077dc0000 - 0000000077e6b000: D:\WINDOWS\system32\ADVAPI32.dll
(0000000077e70000 - 0000000077f02000: D:\WINDOWS\system32\RPCRT4.dll
(0000000077f10000 - 0000000077f58000: D:\WINDOWS\system32\GDI32.dll
(0000000077f60000 - 0000000077fd6000: D:\WINDOWS\system32\SHLWAPI.dll
(0000000077fe0000 - 0000000077ff1000: D:\WINDOWS\system32\Secur32.dll
(0000000078130000 - 00000000781cb000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
(000000007c630000 - 000000007c64b000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.DLL
(000000007c800000 - 000000007c8f5000: D:\WINDOWS\system32\kernel32.dll
(000000007c900000 - 000000007c9b1000: D:\WINDOWS\system32\ntdll.dll
(000000007c9c0000 - 000000007d1d7000: D:\WINDOWS\system32\SHELL32.dll

*----> Výpis stavu podprocesu ID 0x10c <----*

eax=004e4bb0 ebx=0006f81c ecx=0006fb30 edx=7c90e514 esi=00000000 edi=7ffde000
eip=7c90e514 esp=0006f7f4 ebp=0006f890 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ntdll.dll -
funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\USER32.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\MSCTF.dll -
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\SHELL32.dll -
*** ERROR: Module load completed but symbols could not be loaded for D:\WINDOWS\explorer.exe
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
0006f890 77d3bbfe 00000002 0006f8b8 00000000 ntdll!KiFastSystemCallRet
0006f8ec 77d3bcad 00000001 0006fac8 000001f4 USER32!SetWindowTextW+0x120
0006f908 7470f93a 00000001 0006fac8 00000000 USER32!MsgWaitForMultipleObjects+0x1f
0006f954 7470fea5 0006fac8 00000138 0006f9b4 MSCTF!TF_CheckThreadInputIdle+0x79d
0006fbd8 747103ba 01810028 00000028 0006fc98 MSCTF!TF_CheckThreadInputIdle+0xd08
0006fbec 74710822 000db308 00000028 00000008 MSCTF!TF_CheckThreadInputIdle+0x121d
0006fc58 74710f6d 00000003 00000001 0006fc6c MSCTF!TF_CheckThreadInputIdle+0x1685
0006fc84 7470ce37 000db300 00000001 0003013e MSCTF!TF_CheckThreadInputIdle+0x1dd0
0006fdc0 77d38709 0003013e 0000c094 00000000 MSCTF!TF_CreateCicLoadMutex+0x632c
0006fdec 77d387eb 7470fa46 0003013e 0000c094 USER32!GetDC+0x72
0006fe54 77d389a5 00000000 7470fa46 0003013e USER32!GetDC+0x154
0006feb4 77d389e8 0006fed4 00000000 0006fef0 USER32!GetWindowLongW+0x127
0006fec4 7ca23dd1 0006fed4 000d7628 0003013e USER32!DispatchMessageW+0xf
0006fef0 7ca23c66 7c8092b8 000d7628 000d7628 SHELL32!SHGetFolderPathA+0x32e
0006ff08 7ca0bf0c 00000000 0006ff5c 01016e95 SHELL32!SHGetFolderPathA+0x1c3
0006ff14 01016e95 000d7628 7ffde000 0006ffc0 SHELL32!Ordinal201+0x28
0006ff5c 0101e2b6 00000000 00000000 000208de explorer+0x16e95
0006ffc0 7c816fe7 000744e0 0006e890 7ffde000 explorer+0x1e2b6
0006fff0 00000000 0101e24e 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49

*----> Bajtový výpis zásobníku <----*
000000000006f7f4 4a df 90 7c fe 94 80 7c - 02 00 00 00 1c f8 06 00 J..|...|........
000000000006f804 01 00 00 00 00 00 00 00 - 50 f8 06 00 00 00 00 00 ........P.......
000000000006f814 02 00 00 00 00 00 00 00 - b4 05 00 00 28 00 00 00 ............(...
000000000006f824 18 f8 06 00 40 01 04 00 - 68 f8 06 00 c6 93 d3 77 ....@...h......w
000000000006f834 85 93 d3 77 d8 f8 06 00 - 14 00 00 00 01 00 00 00 ...w............
000000000006f844 00 00 00 00 00 00 00 00 - 10 00 00 00 c0 b4 b3 ff ................
000000000006f854 ff ff ff ff 00 d0 fd 7f - 00 e0 fd 7f 00 d0 fd 7f ................
000000000006f864 78 f8 06 00 50 f8 06 00 - 1c f8 06 00 b4 f0 d5 77 x...P..........w
000000000006f874 02 00 00 00 10 f8 06 00 - 01 00 00 00 44 fe 06 00 ............D...
000000000006f884 f0 9a 83 7c f0 95 80 7c - 00 00 00 00 ec f8 06 00 ...|...|........
000000000006f894 fe bb d3 77 02 00 00 00 - b8 f8 06 00 00 00 00 00 ...w............
000000000006f8a4 f4 01 00 00 00 00 00 00 - b4 f9 06 00 b4 f0 d5 77 ...............w
000000000006f8b4 c8 fa 06 00 b4 05 00 00 - 28 00 00 00 c8 fa 06 00 ........(.......
000000000006f8c4 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000006f8d4 10 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000006f8e4 00 d0 fd 7f 28 00 00 00 - 08 f9 06 00 ad bc d3 77 ....(..........w
000000000006f8f4 01 00 00 00 c8 fa 06 00 - f4 01 00 00 ff 41 00 00 .............A..
000000000006f904 b8 f8 06 00 54 f9 06 00 - 3a f9 70 74 01 00 00 00 ....T...:.pt....
000000000006f914 c8 fa 06 00 00 00 00 00 - f4 01 00 00 ff 41 00 00 .............A..
000000000006f924 00 00 00 00 08 b3 0d 00 - 05 40 00 80 00 00 00 00 .........@......

*----> Výpis stavu podprocesu ID 0x134 <----*

eax=00000000 ebx=00000000 ecx=000933d8 edx=00c5fe14 esi=00085398 edi=0008543c
eip=7c90e514 esp=00c5fe1c ebp=00c5ff80 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\RPCRT4.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00c5ff80 77e76c2b 00c5ffa8 77e76a4d 00085398 ntdll!KiFastSystemCallRet
00c5ff88 77e76a4d 00085398 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5e3
00c5ffa8 77e76c13 00094d08 00c5ffec 7c80b699 RPCRT4!I_RpcBCacheFree+0x405
00c5ffb4 7c80b699 000ada38 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5cb
00c5ffec 00000000 77e76bf9 000ada38 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000c5fe1c aa da 90 7c 13 67 e7 77 - d4 01 00 00 70 ff c5 00 ...|.g.w....p...
0000000000c5fe2c 00 00 00 00 b0 24 19 01 - 54 ff c5 00 e8 0d 6f 8a .....$..T.....o.
0000000000c5fe3c 00 00 00 00 cc 0e 6f 8a - 00 4c bf e1 b0 1b f3 b9 ......o..L......
0000000000c5fe4c 82 c2 56 80 00 00 00 00 - 40 86 6f 8a 0c 00 00 00 ..V.....@.o.....
0000000000c5fe5c 40 86 6f 8a 40 86 6f 00 - 58 1b f3 b9 84 9f 4d 80 @.o.@.o.X.....M.
0000000000c5fe6c b0 86 6f 8a 02 15 51 8a - 00 00 00 00 38 75 71 f7 ..o...Q.....8uq.
0000000000c5fe7c 66 c7 4d 80 02 00 00 00 - c3 20 4e 80 60 d9 42 8a f.M...... N.`.B.
0000000000c5fe8c 10 03 09 8a 80 15 51 8a - 88 1b f3 b9 8b 76 7b f7 ......Q......v{.
0000000000c5fe9c 74 03 09 8a 00 00 00 00 - 00 00 00 00 9c 1b f3 b9 t...............
0000000000c5feac 2b 32 3d ba 70 03 09 8a - 00 00 00 00 30 11 51 8a +2=.p.......0.Q.
0000000000c5febc c4 1b f3 b9 9a 31 97 f7 - 68 98 3e 8a 10 03 09 8a .....1..h.>.....
0000000000c5fecc a9 31 97 f7 60 11 51 8a - 30 11 51 8a 00 00 00 00 .1..`.Q.0.Q.....
0000000000c5fedc 60 d9 42 8a 00 00 00 00 - dc 1b f3 b9 49 39 97 f7 `.B.........I9..
0000000000c5feec 6c 39 97 f7 1f 00 00 00 - 40 f5 df ff 0d ca 4d 80 l9......@.....M.
0000000000c5fefc ff ff ff ff 46 02 00 00 - 4d c8 4d 80 28 1c f3 b9 ....F...M.M.(...
0000000000c5ff0c 10 05 0a 8a 20 f1 df ff - ac 06 0a 8a e8 1b 4e 80 .... .........N.
0000000000c5ff1c 80 05 0a 8a 10 05 0a 8a - 1e 1c 4e 80 7c 06 0a 8a ..........N.|...
0000000000c5ff2c 10 05 0a 8a 80 ff c5 00 - a9 66 e7 77 4c ff c5 00 .........f.wL...
0000000000c5ff3c b9 66 e7 77 e0 10 90 7c - c0 c8 0a 00 38 da 0a 00 .f.w...|....8...
0000000000c5ff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]......

*----> Výpis stavu podprocesu ID 0x144 <----*

eax=774e319a ebx=00007530 ecx=7ffde000 edx=00000000 esi=00000000 edi=00c9ff50
eip=7c90e514 esp=00c9ff20 ebp=00c9ff78 iopl=0 nv up ei pl nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ole32.dll -
ChildEBP RetAddr Args to Child
00c9ff78 7c802451 0000ea60 00000000 00c9ffb4 ntdll!KiFastSystemCallRet
00c9ff88 774e2fcb 0000ea60 000b0198 774e314d kernel32!Sleep+0xf
00c9ffb4 7c80b699 000b0198 00000000 7c91043e ole32!StringFromGUID2+0x2d1
00c9ffec 00000000 774e319a 000b0198 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000c9ff20 1a d2 90 7c ed 23 80 7c - 00 00 00 00 50 ff c9 00 ...|.#.|....P...
0000000000c9ff30 40 25 80 7c f0 56 5f 77 - 30 75 00 00 14 00 00 00 @%.|.V_w0u......
0000000000c9ff40 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................
0000000000c9ff50 00 ba 3c dc ff ff ff ff - 08 4f 4d 77 50 ff c9 00 ..<......OMwP...
0000000000c9ff60 30 ff c9 00 a8 42 08 00 - dc ff c9 00 f0 9a 83 7c 0....B.........|
0000000000c9ff70 58 24 80 7c 00 00 00 00 - 88 ff c9 00 51 24 80 7c X$.|........Q$.|
0000000000c9ff80 60 ea 00 00 00 00 00 00 - b4 ff c9 00 cb 2f 4e 77 `............/Nw
0000000000c9ff90 60 ea 00 00 98 01 0b 00 - 4d 31 4e 77 00 00 00 00 `.......M1Nw....
0000000000c9ffa0 00 00 00 00 98 01 0b 00 - 00 00 4d 77 b5 31 4e 77 ..........Mw.1Nw
0000000000c9ffb0 3e 04 91 7c ec ff c9 00 - 99 b6 80 7c 98 01 0b 00 >..|.......|....
0000000000c9ffc0 00 00 00 00 3e 04 91 7c - 98 01 0b 00 00 b0 fd 7f ....>..|........
0000000000c9ffd0 00 46 6f 8a c0 ff c9 00 - e8 62 13 8a ff ff ff ff .Fo......b......
0000000000c9ffe0 f0 9a 83 7c a0 b6 80 7c - 00 00 00 00 00 00 00 00 ...|...|........
0000000000c9fff0 00 00 00 00 9a 31 4e 77 - 98 01 0b 00 00 00 00 00 .....1Nw........
0000000000ca0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000ca0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000ca0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000ca0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000ca0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000ca0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

*----> Výpis stavu podprocesu ID 0x138 <----*

eax=02f3454e ebx=00002b60 ecx=7c80a005 edx=00472000 esi=00000003 edi=00cdeaa0
eip=77d39be9 esp=00cde57c ebp=00cde588 iopl=0 nv up ei pl nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

funkce: USER32!LoadCursorW
77d39bd1 15cc02d977 adc eax,0x77d902cc
77d39bd6 85c0 test eax,eax
77d39bd8 7443 jz USER32!LoadCursorW+0xb4 (77d39c1d)
77d39bda 0fb718 movzx ebx,word ptr [eax]
77d39bdd 83e60f and esi,0xf
77d39be0 40 inc eax
77d39be1 40 inc eax
77d39be2 85f6 test esi,esi
77d39be4 740b jz USER32!LoadCursorW+0x88 (77d39bf1)
77d39be6 8d0458 lea eax,[eax+ebx*2]
CHYBA ->77d39be9 0fb718 movzx ebx,word ptr [eax] ds:0023:02f3454e=????
77d39bec 40 inc eax
77d39bed 40 inc eax
77d39bee 4e dec esi
77d39bef 75f5 jnz USER32!LoadCursorW+0x7d (77d39be6)
77d39bf1 837d1400 cmp dword ptr [ebp+0x14],0x0
77d39bf5 0f84eb500200 je USER32!LoadStringA+0x4e (77d5ece6)
77d39bfb ff4d14 dec dword ptr [ebp+0x14]
77d39bfe 3b5d14 cmp ebx,[ebp+0x14]
77d39c01 0f8f12c00100 jnle USER32!EnumDisplaySettingsA+0x88 (77d55c19)
77d39c07 8bcb mov ecx,ebx

*----> Zpětné trasování zásobníku <----*


Nastala výjimka aplikace:
Aplikace: D:\WINDOWS\explorer.exe (pid=724)
Kdy: 1.8.2010 v 23:23:59.062
Číslo výjimky: c0000005 (narušení přístupu)

*----> Systémová informace <----*
Název počítače: VOJTOVO-PC
Uživatelské jméno: PoKaRko
Číslo ID relace terminálu: 0
Počet procesorů: 2
Typ procesoru: x86 Family 15 Model 4 Stepping 1
Verze systému Windows: 5.1
Aktuální sestavení: 2600
Service Pack: 2
Aktuální typ: Multiprocessor Free
Registrovaná organizace:
Registrovaný vlastník: Microsoft Windows XP Professional

*----> Seznam úkolů <----*
0 System Process
4 System
792 smss.exe
1144 csrss.exe
1272 winlogon.exe
1476 services.exe
1488 lsass.exe
1728 svchost.exe
1840 svchost.exe
768 svchost.exe
1084 svchost.exe
1212 svchost.exe
784 ctfmon.exe
724 explorer.exe
656 drwtsn32.exe

*----> Seznam modulů <----*
(0000000001000000 - 00000000010ff000: D:\WINDOWS\explorer.exe
(0000000001900000 - 0000000001903000: D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiamcsy.dll
(0000000001910000 - 0000000001bd6000: D:\WINDOWS\system32\msi.dll
(0000000001ce0000 - 0000000001d2a000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\BIB.dll
(0000000001ff0000 - 0000000002044000: C:\PROGRA~1\Greatis\REGRUN~1\RRShell.dll
(00000000020e0000 - 0000000002227000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\ADFSMenu.dll
(0000000002430000 - 00000000025d5000: D:\Program Files\Microsoft Office\Office12\1029\GrooveIntlResource.dll
(00000000025e0000 - 000000000268f000: D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll
(000000000ffd0000 - 000000000fff8000: D:\WINDOWS\system32\rsaenh.dll
(0000000010000000 - 000000001000c000: d:\Windows\system32\Dirsize.dll
(0000000020000000 - 00000000202cc000: D:\WINDOWS\system32\xpsp2res.dll
(000000005b250000 - 000000005b288000: D:\WINDOWS\system32\UxTheme.dll
(000000005d5a0000 - 000000005d637000: D:\WINDOWS\system32\comctl32.dll
(0000000060020000 - 0000000060091000: D:\WINDOWS\system32\themeui.dll
(0000000060120000 - 0000000060153000: D:\WINDOWS\system32\msutb.dll
(0000000061800000 - 000000006195b000: D:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Client\4.0.0\VersionCue.DLL
(0000000065e30000 - 0000000065e67000: D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
(00000000661c0000 - 00000000663dd000: D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
(0000000066b40000 - 0000000066cbd000: D:\PROGRA~1\MICROS~2\Office12\GR326C~1.DLL
(0000000067270000 - 00000000672c4000: D:\WINDOWS\system32\NETAPI32.dll
(0000000068ef0000 - 0000000068fe1000: D:\PROGRA~1\MICROS~2\Office12\GrooveUtil.DLL
(0000000068ff0000 - 0000000068ff7000: D:\PROGRA~1\MICROS~2\Office12\GrooveNew.DLL
(0000000071a80000 - 0000000071a88000: D:\WINDOWS\system32\WS2HELP.dll
(0000000071a90000 - 0000000071aa7000: D:\WINDOWS\system32\WS2_32.dll
(0000000071bd0000 - 0000000071be3000: D:\WINDOWS\system32\SAMLIB.dll
(00000000746f0000 - 000000007473b000: D:\WINDOWS\system32\MSCTF.dll
(0000000074950000 - 0000000074a73000: D:\WINDOWS\system32\msxml3.dll
(00000000751a0000 - 00000000751ce000: D:\WINDOWS\system32\msctfime.ime
(0000000075db0000 - 0000000075e41000: D:\WINDOWS\system32\MLANG.dll
(0000000075f60000 - 000000007605c000: D:\WINDOWS\system32\BROWSEUI.dll
(0000000076340000 - 0000000076350000: D:\WINDOWS\system32\WINSTA.dll
(0000000076360000 - 0000000076365000: D:\WINDOWS\system32\MSImg32.dll
(0000000076370000 - 000000007638d000: D:\WINDOWS\system32\IMM32.DLL
(00000000763e0000 - 0000000076586000: D:\WINDOWS\system32\NETSHELL.dll
(00000000765e0000 - 00000000765fd000: D:\WINDOWS\System32\CSCDLL.dll
(0000000076660000 - 00000000766e1000: D:\WINDOWS\system32\CRYPTUI.dll
(0000000076970000 - 0000000076978000: D:\WINDOWS\system32\LINKINFO.dll
(0000000076980000 - 00000000769a5000: D:\WINDOWS\system32\ntshrui.dll
(00000000769b0000 - 0000000076a64000: D:\WINDOWS\system32\USERENV.dll
(0000000076b10000 - 0000000076b21000: D:\WINDOWS\system32\ATL.DLL
(0000000076bf0000 - 0000000076c1e000: D:\WINDOWS\system32\credui.dll
(0000000076c20000 - 0000000076c4e000: D:\WINDOWS\system32\WINTRUST.dll
(0000000076c80000 - 0000000076ca8000: D:\WINDOWS\system32\IMAGEHLP.dll
(0000000076d50000 - 0000000076d69000: D:\WINDOWS\system32\iphlpapi.dll
(0000000076e70000 - 0000000076e7e000: D:\WINDOWS\system32\rtutils.dll
(0000000076f50000 - 0000000076f7d000: D:\WINDOWS\system32\WLDAP32.dll
(0000000076fc0000 - 000000007703f000: D:\WINDOWS\system32\CLBCATQ.DLL
(0000000077040000 - 0000000077109000: D:\WINDOWS\system32\COMRes.dll
(0000000077110000 - 000000007719c000: D:\WINDOWS\system32\OLEAUT32.dll
(00000000771a0000 - 0000000077246000: D:\WINDOWS\system32\WININET.dll
(0000000077250000 - 00000000772ed000: D:\WINDOWS\system32\urlmon.dll
(00000000773c0000 - 00000000774c2000: D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
(00000000774d0000 - 000000007760c000: D:\WINDOWS\system32\ole32.dll
(0000000077750000 - 00000000778bc000: D:\WINDOWS\system32\SHDOCVW.dll
(0000000077910000 - 0000000077a04000: D:\WINDOWS\system32\SETUPAPI.dll
(0000000077a10000 - 0000000077a64000: D:\WINDOWS\System32\cscui.dll
(0000000077a70000 - 0000000077b05000: D:\WINDOWS\system32\CRYPT32.dll
(0000000077b10000 - 0000000077b22000: D:\WINDOWS\system32\MSASN1.dll
(0000000077bf0000 - 0000000077bf8000: D:\WINDOWS\system32\VERSION.dll
(0000000077c00000 - 0000000077c58000: D:\WINDOWS\system32\msvcrt.dll
(0000000077d30000 - 0000000077dc0000: D:\WINDOWS\system32\USER32.dll
(0000000077dc0000 - 0000000077e6b000: D:\WINDOWS\system32\ADVAPI32.dll
(0000000077e70000 - 0000000077f02000: D:\WINDOWS\system32\RPCRT4.dll
(0000000077f10000 - 0000000077f58000: D:\WINDOWS\system32\GDI32.dll
(0000000077f60000 - 0000000077fd6000: D:\WINDOWS\system32\SHLWAPI.dll
(0000000077fe0000 - 0000000077ff1000: D:\WINDOWS\system32\Secur32.dll
(0000000078130000 - 00000000781cb000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
(000000007c630000 - 000000007c64b000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.DLL
(000000007c800000 - 000000007c8f5000: D:\WINDOWS\system32\kernel32.dll
(000000007c900000 - 000000007c9b1000: D:\WINDOWS\system32\ntdll.dll
(000000007c9c0000 - 000000007d1d7000: D:\WINDOWS\system32\SHELL32.dll

*----> Výpis stavu podprocesu ID 0x470 <----*

eax=00000000 ebx=00000003 ecx=00000000 edx=7c90e514 esi=000d7628 edi=00000000
eip=7c90e514 esp=0006fef0 ebp=0006ff08 iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202

*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ntdll.dll -
funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\SHELL32.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Module load completed but symbols could not be loaded for D:\WINDOWS\explorer.exe
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
0006ff08 7ca0bf0c 00000000 0006ff5c 01016e95 ntdll!KiFastSystemCallRet
0006ff14 01016e95 000d7628 7ffde000 0006ffc0 SHELL32!Ordinal201+0x28
0006ff5c 0101e2b6 00000000 00000000 000208de explorer+0x16e95
0006ffc0 7c816fe7 000744e0 0006e890 7ffde000 explorer+0x1e2b6
0006fff0 00000000 0101e24e 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49

*----> Bajtový výpis zásobníku <----*
000000000006fef0 f5 93 d3 77 82 3c a2 7c - b8 92 80 7c 28 76 0d 00 ...w.<.|...|(v..
000000000006ff00 28 76 0d 00 14 ff 06 00 - 14 ff 06 00 0c bf a0 7c (v.............|
000000000006ff10 00 00 00 00 5c ff 06 00 - 95 6e 01 01 28 76 0d 00 ....\....n..(v..
000000000006ff20 00 e0 fd 7f c0 ff 06 00 - 00 00 00 00 24 fd 06 00 ............$...
000000000006ff30 50 ff 06 00 e0 ff 06 00 - 0a d8 90 7c 75 ac 80 7c P..........|u..|
000000000006ff40 ff ff ff ff 0c 00 00 00 - 00 00 00 00 80 3f 02 00 .............?..
000000000006ff50 88 00 00 00 01 00 00 00 - 28 76 0d 00 c0 ff 06 00 ........(v......
000000000006ff60 b6 e2 01 01 00 00 00 00 - 00 00 00 00 de 08 02 00 ................
000000000006ff70 05 00 00 00 e0 44 07 00 - 90 e8 06 00 44 00 00 00 .....D......D...
000000000006ff80 30 09 02 00 10 09 02 00 - e0 08 02 00 00 00 00 00 0...............
000000000006ff90 00 00 00 00 00 00 00 00 - 00 00 00 00 2e 00 00 00 ................
000000000006ffa0 00 00 00 00 3a ef 06 00 - 01 00 00 00 05 00 00 00 ....:...........
000000000006ffb0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000006ffc0 f0 ff 06 00 e7 6f 81 7c - e0 44 07 00 90 e8 06 00 .....o.|.D......
000000000006ffd0 00 e0 fd 7f 1f 00 00 00 - c8 ff 06 00 20 d0 fc 89 ............ ...
000000000006ffe0 ff ff ff ff f0 9a 83 7c - f0 6f 81 7c 00 00 00 00 .......|.o.|....
000000000006fff0 00 00 00 00 00 00 00 00 - 4e e2 01 01 00 00 00 00 ........N.......
0000000000070000 41 63 74 78 20 00 00 00 - 01 00 00 00 9c 24 00 00 Actx ........$..
0000000000070010 c4 00 00 00 00 00 00 00 - 20 00 00 00 00 00 00 00 ........ .......
0000000000070020 14 00 00 00 01 00 00 00 - 06 00 00 00 34 00 00 00 ............4...

*----> Výpis stavu podprocesu ID 0x46c <----*

eax=77e76bf9 ebx=00000000 ecx=00000009 edx=7c910222 esi=00082f70 edi=00000100
eip=7c90e514 esp=00c5fe1c ebp=00c5ff80 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\RPCRT4.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00c5ff80 77e76c2b 00c5ffa8 77e76a4d 00082f70 ntdll!KiFastSystemCallRet
00c5ff88 77e76a4d 00082f70 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5e3
00c5ffa8 77e76c13 00094de0 00c5ffec 7c80b699 RPCRT4!I_RpcBCacheFree+0x405
00c5ffb4 7c80b699 000adb00 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5cb
00c5ffec 00000000 77e76bf9 000adb00 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000c5fe1c aa da 90 7c 13 67 e7 77 - d4 01 00 00 70 ff c5 00 ...|.g.w....p...
0000000000c5fe2c 00 00 00 00 30 a6 17 01 - 54 ff c5 00 06 02 00 00 ....0...T.......
0000000000c5fe3c 25 9e 4d 80 02 00 00 00 - 08 00 00 00 a8 8d 6f 8a %.M...........o.
0000000000c5fe4c 56 5a 4e 80 00 00 00 00 - a8 8d 6f 8a 0c 00 00 00 VZN.......o.....
0000000000c5fe5c a8 8d 6f 8a a8 8d 6f 00 - 58 db b6 b9 84 9f 4d 80 ..o...o.X.....M.
0000000000c5fe6c 18 8e 6f 8a 02 15 51 8a - 00 00 00 00 06 02 00 00 ..o...Q.........
0000000000c5fe7c 91 c7 4d 80 02 a8 fd 89 - c3 20 4e 80 60 d9 42 8a ..M...... N.`.B.
0000000000c5fe8c 20 83 fe 89 80 15 51 8a - 88 db b6 b9 8b 76 7b f7 .....Q......v{.
0000000000c5fe9c 84 83 fe 89 00 00 00 00 - 00 00 00 00 9c db b6 b9 ................
0000000000c5feac 2b 32 3d ba 80 83 fe 89 - 00 00 00 00 30 11 51 8a +2=.........0.Q.
0000000000c5febc c4 db b6 b9 9a 31 97 f7 - 68 98 3e 8a 20 83 fe 89 .....1..h.>. ...
0000000000c5fecc a9 31 97 f7 60 11 51 8a - 30 11 51 8a 00 00 00 00 .1..`.Q.0.Q.....
0000000000c5fedc 60 d9 42 8a 00 00 00 00 - dc db b6 b9 49 39 97 f7 `.B.........I9..
0000000000c5feec 6c 39 97 f7 1f 00 00 00 - 40 75 71 f7 0d ca 4d 80 l9......@uq...M.
0000000000c5fefc ff ff ff ff 46 02 00 00 - 4d c8 4d 80 28 dc b6 b9 ....F...M.M.(...
0000000000c5ff0c f8 15 04 8a 20 71 71 f7 - 94 17 04 8a e8 1b 4e 80 .... qq.......N.
0000000000c5ff1c 68 16 04 8a f8 15 04 8a - 1e 1c 4e 80 64 17 04 8a h.........N.d...
0000000000c5ff2c f8 15 04 8a 80 ff c5 00 - a9 66 e7 77 4c ff c5 00 .........f.wL...
0000000000c5ff3c b9 66 e7 77 e0 10 90 7c - b8 c9 0a 00 00 db 0a 00 .f.w...|........
0000000000c5ff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]......

*----> Výpis stavu podprocesu ID 0x484 <----*

eax=00c9ff54 ebx=00007530 ecx=00c9ffb0 edx=7c90e514 esi=00000000 edi=00c9ff50
eip=7c90e514 esp=00c9ff20 ebp=00c9ff78 iopl=0 nv up ei pl nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ole32.dll -
ChildEBP RetAddr Args to Child
00c9ff78 7c802451 0000ea60 00000000 00c9ffb4 ntdll!KiFastSystemCallRet
00c9ff88 774e2fcb 0000ea60 000b0260 774e314d kernel32!Sleep+0xf
00c9ffb4 7c80b699 000b0260 00000000 7c91043e ole32!StringFromGUID2+0x2d1
00c9ffec 00000000 774e319a 000b0260 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000c9ff20 1a d2 90 7c ed 23 80 7c - 00 00 00 00 50 ff c9 00 ...|.#.|....P...
0000000000c9ff30 40 25 80 7c f0 56 5f 77 - 30 75 00 00 14 00 00 00 @%.|.V_w0u......
0000000000c9ff40 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................
0000000000c9ff50 00 ba 3c dc ff ff ff ff - 08 4f 4d 77 50 ff c9 00 ..<......OMwP...
0000000000c9ff60 30 ff c9 00 58 44 08 00 - dc ff c9 00 f0 9a 83 7c 0...XD.........|
0000000000c9ff70 58 24 80 7c 00 00 00 00 - 88 ff c9 00 51 24 80 7c X$.|........Q$.|
0000000000c9ff80 60 ea 00 00 00 00 00 00 - b4 ff c9 00 cb 2f 4e 77 `............/Nw
0000000000c9ff90 60 ea 00 00 60 02 0b 00 - 4d 31 4e 77 00 00 00 00 `...`...M1Nw....
0000000000c9ffa0 00 00 00 00 60 02 0b 00 - 00 00 4d 77 b5 31 4e 77 ....`.....Mw.1Nw
0000000000c9ffb0 3e 04 91 7c ec ff c9 00 - 99 b6 80 7c 60 02 0b 00 >..|.......|`...
0000000000c9ffc0 00 00 00 00 3e 04 91 7c - 60 02 0b 00 00 b0 fd 7f ....>..|`.......
0000000000c9ffd0 70 a4 69 8a c0 ff c9 00 - a0 4d fd 89 ff ff ff ff p.i......M......
0000000000c9ffe0 f0 9a 83 7c a0 b6 80 7c - 00 00 00 00 00 00 00 00 ...|...|........
0000000000c9fff0 00 00 00 00 9a 31 4e 77 - 60 02 0b 00 00 00 00 00 .....1Nw`.......
0000000000ca0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000ca0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000ca0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000ca0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000ca0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000ca0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

*----> Výpis stavu podprocesu ID 0x488 <----*

eax=01d87ff0 ebx=00000000 ecx=01d87ff0 edx=00000010 esi=77d904d8 edi=ffffffff
eip=7c90e514 esp=00cdecbc ebp=00cded28 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\USER32.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\SHLWAPI.dll -
ChildEBP RetAddr Args to Child
00cded28 77d42b50 4d0103a8 77d904d8 00000002 ntdll!KiFastSystemCallRet
00cded70 77d42856 00000030 00000060 00000001 USER32!CopyImage+0x51e
00cdeda8 77d43e80 00000030 00000060 00000001 USER32!CopyImage+0x224
00cdf054 77d44a3c 01d87f18 00000000 00000000 USER32!GetScrollInfo+0x451
00cdf084 77d44977 01d87f18 000002e8 00000001 USER32!CreateIconFromResourceEx+0x58
00cdf0fc 77d4453f 00000578 00000001 00000030 USER32!PrivateExtractIconsW+0x5ec
00cdf570 7ca223f3 000fba10 00000000 00000030 USER32!PrivateExtractIconsW+0x1b4
00cdf5b4 7ca22458 000fba10 00000000 00000000 SHELL32!SHDefExtractIconW+0x6e
00cdf5fc 7ca2247d 00000000 000fba10 00000000 SHELL32!SHExtractIconsW+0x22
00cdf614 0100730e 000fba10 00000000 00000000 SHELL32!SHExtractIconsW+0x47
00cdf848 01004227 000ad888 00cdf88c 00000000 explorer+0x730e
00cdf89c 010070e3 00000000 ffffffff 000ad888 explorer+0x4227
00cdf8d8 01006c92 00112298 ffffffff 00000000 explorer+0x70e3
00cdfb1c 01006f9f 000a0108 00000000 00000001 explorer+0x6c92
00cdfb34 01007028 000a0108 000a0108 000ad8a4 explorer+0x6f9f
00cdfd5c 01002908 00000001 000a0108 0000c02a explorer+0x7028
00cdfde8 01001b5e 00070118 0000c02a 00000001 explorer+0x2908
00cdfe0c 77d38709 00070118 0000c02a 00000001 explorer+0x1b5e
00cdfe38 77d387eb 01001b1f 00070118 0000c02a USER32!GetDC+0x72
00cdfea0 77d389a5 0008d520 01001b1f 00070118 USER32!GetDC+0x154
00cdff00 77d389e8 00cdff28 00000000 00cdff44 USER32!GetWindowLongW+0x127
00cdff10 01001a35 00cdff28 00000000 010460d8 USER32!DispatchMessageW+0xf
00cdff44 01011e8b 00000000 00cdffb4 77f7f5de explorer+0x1a35
00cdff50 77f7f5de 010460d8 0000005c 00840043 explorer+0x11e8b
00cdffb4 7c80b699 00000000 0000005c 00840043 SHLWAPI!Ordinal505+0x369
00cdffec 00000000 77f7f56f 0006fdbc 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000cdecbc eb aa f1 77 6e aa f1 77 - a8 03 01 4d 30 00 00 00 ...wn..w...M0...
0000000000cdeccc 60 00 00 00 02 00 00 00 - 00 00 00 00 d8 04 d9 77 `..............w
0000000000cdecdc 00 00 00 00 30 00 00 00 - 00 00 00 00 00 00 00 00 ....0...........
0000000000cdecec 00 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000cdecfc 00 00 00 00 30 00 00 00 - 60 00 00 00 30 00 00 00 ....0...`...0...
0000000000cded0c e0 0a ab 00 d8 04 d9 77 - 00 00 00 00 00 00 00 00 .......w........
0000000000cded1c 70 ed cd 00 00 00 00 00 - 00 00 00 00 70 ed cd 00 p...........p...
0000000000cded2c 50 2b d4 77 a8 03 01 4d - d8 04 d9 77 02 00 00 00 P+.w...M...w....
0000000000cded3c 00 00 00 00 d8 04 d9 77 - 00 00 00 00 08 90 1c 01 .......w........
0000000000cded4c 00 00 00 00 30 00 00 00 - 00 00 00 00 2e 29 d4 77 ....0........).w
0000000000cded5c a0 02 d9 77 40 ee cd 00 - 0f 00 85 01 00 00 00 00 ...w@...........
0000000000cded6c a8 03 01 4d a8 ed cd 00 - 56 28 d4 77 30 00 00 00 ...M....V(.w0...
0000000000cded7c 60 00 00 00 01 00 00 00 - 01 00 00 00 00 00 00 00 `...............
0000000000cded8c a0 ed cd 00 08 90 1c 01 - 30 00 00 00 30 00 00 00 ........0...0...
0000000000cded9c 00 00 00 00 00 00 00 00 - 01 00 00 00 54 f0 cd 00 ............T...
0000000000cdedac 80 3e d4 77 30 00 00 00 - 60 00 00 00 01 00 00 00 .>.w0...`.......
0000000000cdedbc 01 00 00 00 00 00 00 00 - 20 00 00 00 40 00 00 00 ........ ...@...
0000000000cdedcc 00 81 d8 01 08 90 1c 01 - 00 00 00 00 00 00 00 00 ................
0000000000cdeddc 00 00 00 00 30 00 00 00 - 00 00 00 00 00 00 00 00 ....0...........
0000000000cdedec 03 00 00 00 00 00 00 00 - 18 00 18 00 00 00 00 00 ................

*----> Výpis stavu podprocesu ID 0x480 <----*

eax=7c927125 ebx=00000000 ecx=77dc6a67 edx=77dc6a2e esi=ffffffff edi=7c90f668
eip=7c90e514 esp=00d1ff9c ebp=00d1ffb4 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00d1ffb4 7c80b699 00000000 7c90f668 ffffffff ntdll!KiFastSystemCallRet
00d1ffec 00000000 7c927125 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000d1ff9c 1a d2 90 7c 6c 71 92 7c - 01 00 00 00 ac ff d1 00 ...|lq.|........
0000000000d1ffac 00 00 00 00 00 00 00 80 - ec ff d1 00 99 b6 80 7c ...............|
0000000000d1ffbc 00 00 00 00 68 f6 90 7c - ff ff ff ff 00 00 00 00 ....h..|........
0000000000d1ffcc 00 90 fd 7f 00 26 6f 8a - c0 ff d1 00 70 a9 1b 8a .....&o.....p...
0000000000d1ffdc ff ff ff ff f0 9a 83 7c - a0 b6 80 7c 00 00 00 00 .......|...|....
0000000000d1ffec 00 00 00 00 00 00 00 00 - 25 71 92 7c 00 00 00 00 ........%q.|....
0000000000d1fffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d2000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d2001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d2002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d2003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d2004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d2005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d2006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d2007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d2008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d2009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d200ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d200bc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d200cc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

*----> Výpis stavu podprocesu ID 0x4d8 <----*

eax=0333bda2 ebx=00008091 ecx=7c80a005 edx=00472000 esi=00000006 edi=00d5eccc
eip=77d39be9 esp=00d5ea10 ebp=00d5ea1c iopl=0 nv up ei pl nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

Uživatelský avatar
autoprd
Level 4.5
Level 4.5
Příspěvky: 1715
Registrován: únor 09
Bydliště: ▼▲☺U Pc ☺▼▲
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: PRoBLém s user32.dll

Příspěvekod autoprd » 02 srp 2010 23:31

funkce: USER32!LoadCursorW
77d39bd1 15cc02d977 adc eax,0x77d902cc
77d39bd6 85c0 test eax,eax
77d39bd8 7443 jz USER32!LoadCursorW+0xb4 (77d39c1d)
77d39bda 0fb718 movzx ebx,word ptr [eax]
77d39bdd 83e60f and esi,0xf
77d39be0 40 inc eax
77d39be1 40 inc eax
77d39be2 85f6 test esi,esi
77d39be4 740b jz USER32!LoadCursorW+0x88 (77d39bf1)
77d39be6 8d0458 lea eax,[eax+ebx*2]
CHYBA ->77d39be9 0fb718 movzx ebx,word ptr [eax] ds:0023:0333bda2=????
77d39bec 40 inc eax
77d39bed 40 inc eax
77d39bee 4e dec esi
77d39bef 75f5 jnz USER32!LoadCursorW+0x7d (77d39be6)
77d39bf1 837d1400 cmp dword ptr [ebp+0x14],0x0
77d39bf5 0f84eb500200 je USER32!LoadStringA+0x4e (77d5ece6)
77d39bfb ff4d14 dec dword ptr [ebp+0x14]
77d39bfe 3b5d14 cmp ebx,[ebp+0x14]
77d39c01 0f8f12c00100 jnle USER32!EnumDisplaySettingsA+0x88 (77d55c19)
77d39c07 8bcb mov ecx,ebx

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\BROWSEUI.dll -
ChildEBP RetAddr Args to Child
00d5ea1c 77d39c4e 03180001 0000f679 00d5eccc USER32!LoadCursorW+0x80
00d5ea38 77f7fb9a 03180001 0000f679 00d5eccc USER32!LoadStringW+0x18
00d5ea64 77f7fbfc 00000000 00d5eccc 00000400 SHLWAPI!StrCSpnW+0xbf
00d5ecac 77f74a87 000dbf28 00d5eccc 00000400 SHLWAPI!StrCSpnW+0x121
00d5f4d0 77f6a9e8 00d5f71c 00d5f614 77f6a3db SHLWAPI!Ordinal552+0x294
00d5f4dc 77f6a3db 000fb7e0 00170000 00000000 SHLWAPI!Ordinal516+0x341
00d5f614 77f6a011 77f6a328 77f6a460 00000005 SHLWAPI!Ordinal344+0x340
00d5f644 77f6a31f 77f6a328 000fb7e0 77f6a460 SHLWAPI!Ordinal491+0x281
00d5f664 77f6a511 011a75f4 00170000 00000000 SHLWAPI!Ordinal344+0x284
00d5f684 7c9f38db 011a75f4 00170000 00000000 SHLWAPI!Ordinal344+0x476
00d5f69c 7c9f3879 011a75f4 00170000 00000000 SHELL32!Ordinal646+0xbd6
00d5f6c8 7c9f38bb 7c9f38c4 0000ffff 00170000 SHELL32!Ordinal646+0xb74
00d5f6e8 7c9f3a88 000fd7b0 0000ffff 00170000 SHELL32!Ordinal646+0xbb6
00d5f70c 77f7240b 000fd7b8 00000000 000dbf28 SHELL32!Ordinal646+0xd83
00d5f738 7cb61be1 00000000 00000003 00d5fde4 SHLWAPI!AssocQueryStringW+0x5f
00d5f760 7cb62af2 00d5fde4 00d5fd64 00000040 SHELL32!Ordinal715+0x4225
00d5fe68 7c9f20ed 00100ad0 011690f0 000d5988 SHELL32!Ordinal715+0x5136
00d5fe84 75f61e63 00100ad0 75f61de1 75f60000 SHELL32!ILFindChild+0x548
00d5fee0 77f68ea5 01177708 000fb9f8 77f68e88 BROWSEUI!Ordinal113+0x1e63
00d5fef8 7c926cd9 000fb9f8 7c97e440 01169e28 SHLWAPI!wnsprintfW+0x6c
00d5ff40 7c926d1b 77f68e88 000fb9f8 00000000 ntdll!RtlUpcaseUnicodeString+0x159
00d5ff60 7c926ddd 00000000 000fb9f8 01169e28 ntdll!RtlUpcaseUnicodeString+0x19b
00d5ff74 7c926db4 7c926d01 00000000 000fb9f8 ntdll!RtlUpcaseUnicodeString+0x25d
00d5ffb4 7c80b699 00000000 00cdfce4 00cdfce8 ntdll!RtlUpcaseUnicodeString+0x234
00d5ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000d5ea10 01 00 18 03 e0 8e 0f 00 - 1a 8f 0f 00 38 ea d5 00 ............8...
0000000000d5ea20 4e 9c d3 77 01 00 18 03 - 79 f6 00 00 cc ec d5 00 N..w....y.......
0000000000d5ea30 00 04 00 00 c4 37 32 03 - 64 ea d5 00 9a fb f7 77 .....72.d......w
0000000000d5ea40 01 00 18 03 79 f6 00 00 - cc ec d5 00 00 04 00 00 ....y...........
0000000000d5ea50 30 52 19 01 21 50 00 00 - 19 9a 80 7c 79 f6 00 00 0R..!P.....|y...
0000000000d5ea60 05 40 00 80 ac ec d5 00 - fc fb f7 77 00 00 00 00 .@.........w....
0000000000d5ea70 cc ec d5 00 00 04 00 00 - e0 b7 0f 00 28 a3 f6 77 ............(..w
0000000000d5ea80 1c f7 d5 00 00 08 00 00 - cc ec d5 00 02 00 07 80 ................
0000000000d5ea90 44 00 3a 00 5c 00 50 00 - 72 00 6f 00 67 00 72 00 D.:.\.P.r.o.g.r.
0000000000d5eaa0 61 00 6d 00 20 00 46 00 - 69 00 6c 00 65 00 73 00 a.m. .F.i.l.e.s.
0000000000d5eab0 5c 00 4d 00 6f 00 76 00 - 69 00 65 00 20 00 4d 00 \.M.o.v.i.e. .M.
0000000000d5eac0 61 00 6b 00 65 00 72 00 - 5c 00 77 00 6d 00 6d 00 a.k.e.r.\.w.m.m.
0000000000d5ead0 32 00 72 00 65 00 73 00 - 2e 00 64 00 6c 00 6c 00 2.r.e.s...d.l.l.
0000000000d5eae0 2c 00 2d 00 36 00 33 00 - 30 00 39 00 37 00 00 00 ,.-.6.3.0.9.7...
0000000000d5eaf0 e0 ea d5 00 a0 cf 1a 01 - 24 ed d5 00 20 e9 90 7c ........$... ..|
0000000000d5eb00 28 02 91 7c ff ff ff ff - 48 ec d5 00 4c ec d5 00 (..|....H...L...
0000000000d5eb10 6e d9 90 7c 8c eb d5 00 - 48 eb d5 00 5c f6 90 7c n..|....H...\..|
0000000000d5eb20 61 f6 90 7c 8c eb d5 00 - 6e d9 90 7c 4c ec d5 00 a..|....n..|L...
0000000000d5eb30 24 eb d5 00 7a d9 90 7c - 30 ff d5 00 20 e9 90 7c $...z..|0... ..|
0000000000d5eb40 68 f6 90 7c ff ff ff ff - 61 f6 90 7c cb 6f dc 77 h..|....a..|.o.w

*----> Výpis stavu podprocesu ID 0x440 <----*

eax=000000c0 ebx=00000000 ecx=00cdfb00 edx=00000000 esi=00000000 edi=00000001
eip=7c90e514 esp=00d9fcec ebp=00d9ffb4 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00d9ffb4 7c80b699 00000000 00000020 00cdfce4 ntdll!KiFastSystemCallRet
00d9ffec 00000000 7c928c87 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000d9fcec 4a df 90 7c ae 8d 92 7c - 02 00 00 00 30 fd d9 00 J..|...|....0...
0000000000d9fcfc 01 00 00 00 01 00 00 00 - 00 00 00 00 20 00 00 00 ............ ...
0000000000d9fd0c e4 fc cd 00 00 00 00 00 - 80 f9 97 7c 80 f9 97 7c ...........|...|
0000000000d9fd1c 24 02 00 00 40 04 00 00 - 02 00 00 00 02 00 00 00 $...@...........
0000000000d9fd2c 01 00 00 00 20 02 00 00 - f4 01 00 00 00 00 00 00 .... ...........
0000000000d9fd3c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fd4c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fd5c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fd6c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fd7c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fd8c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fd9c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fdac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fdbc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fdcc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fddc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fdec 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fdfc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fe0c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000d9fe1c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
*----> Výpis stavu podprocesu ID 0x4dc <----*

eax=000fe7f0 ebx=00dffd58 ecx=355a0003 edx=35590002 esi=00000000 edi=7ffde000
eip=7c90e514 esp=00dffd30 ebp=00dffdcc iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00dffdcc 77d3bbfe 00000007 00dffdf4 00000000 ntdll!KiFastSystemCallRet
00dffe28 7c9f4edf 00000006 00dffe50 ffffffff USER32!SetWindowTextW+0x120
00dfff4c 7ca0a408 77f7f5de 00000000 7c80996a SHELL32!Ordinal646+0x21da
00dfffb4 7c80b699 00000000 7c80996a 00080000 SHELL32!Ordinal753+0x133
00dfffec 00000000 77f7f56f 00cdf4d4 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000dffd30 4a df 90 7c fe 94 80 7c - 07 00 00 00 58 fd df 00 J..|...|....X...
0000000000dffd40 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000dffd50 07 00 00 00 02 00 00 00 - cc 04 00 00 08 04 00 00 ................
0000000000dffd60 04 04 00 00 4c 02 00 00 - 68 02 00 00 58 02 00 00 ....L...h...X...
0000000000dffd70 44 02 00 00 01 00 00 00 - 14 00 00 00 01 00 00 00 D...............
0000000000dffd80 20 ec 0b 00 00 00 00 00 - 00 00 00 00 18 00 00 00 ...............
0000000000dffd90 a0 83 4d 00 01 04 00 00 - 00 e0 fd 7f 00 60 fd 7f ..M..........`..
0000000000dffda0 f5 4f 9f 7c 00 00 00 00 - 58 fd df 00 85 93 d3 77 .O.|....X......w
0000000000dffdb0 07 00 00 00 4c fd df 00 - 00 00 00 00 dc ff df 00 ....L...........
0000000000dffdc0 f0 9a 83 7c f0 95 80 7c - 00 00 00 00 28 fe df 00 ...|...|....(...
0000000000dffdd0 fe bb d3 77 07 00 00 00 - f4 fd df 00 00 00 00 00 ...w............
0000000000dffde0 ff ff ff ff 01 00 00 00 - 40 b6 0b 00 06 00 00 00 ........@.......
0000000000dffdf0 00 00 00 00 cc 04 00 00 - 08 04 00 00 04 04 00 00 ................
0000000000dffe00 4c 02 00 00 68 02 00 00 - 58 02 00 00 44 02 00 00 L...h...X...D...
0000000000dffe10 00 00 00 00 b4 83 00 00 - 00 00 00 00 01 00 00 00 ................
0000000000dffe20 00 60 fd 7f 44 02 00 00 - 4c ff df 00 df 4e 9f 7c .`..D...L....N.|
0000000000dffe30 06 00 00 00 50 fe df 00 - ff ff ff ff ff 04 00 00 ....P...........
0000000000dffe40 f4 fd df 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000dffe50 cc 04 00 00 08 04 00 00 - 04 04 00 00 4c 02 00 00 ............L...
0000000000dffe60 68 02 00 00 58 02 00 00 - 00 9a 80 7c 40 b6 0b 00 h...X......|@...

*----> Výpis stavu podprocesu ID 0x4e4 <----*

eax=00000001 ebx=00000000 ecx=00ffed15 edx=00000031 esi=7c97e420 edi=7c97e440
eip=7c90e514 esp=00ffff70 ebp=00ffffb4 iopl=0 nv up ei ng nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00ffffb4 7c80b699 00000000 0006e054 0006e054 ntdll!KiFastSystemCallRet
00ffffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000ffff70 4a da 90 7c 8d 02 91 7c - 1c 02 00 00 ac ff ff 00 J..|...|........
0000000000ffff80 b0 ff ff 00 98 ff ff 00 - a0 ff ff 00 54 e0 06 00 ............T...
0000000000ffff90 54 e0 06 00 00 00 00 00 - 00 00 00 00 70 9c 16 00 T...........p...
0000000000ffffa0 00 7c 28 e8 ff ff ff ff - a0 dc c7 b9 01 6d 92 7c .|(..........m.|
0000000000ffffb0 c8 1c 18 01 ec ff ff 00 - 99 b6 80 7c 00 00 00 00 ...........|....
0000000000ffffc0 54 e0 06 00 54 e0 06 00 - 00 00 00 00 00 50 fd 7f T...T........P..
0000000000ffffd0 00 26 6f 8a c0 ff ff 00 - 10 37 0c 8a ff ff ff ff .&o......7......
0000000000ffffe0 f0 9a 83 7c a0 b6 80 7c - 00 00 00 00 00 00 00 00 ...|...|........
0000000000fffff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........
0000000001000000 4d 5a 90 00 03 00 00 00 - 04 00 00 00 ff ff 00 00 MZ..............
0000000001000010 b8 00 00 00 00 00 00 00 - 40 00 00 00 00 00 00 00 ........@.......
0000000001000020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000001000030 00 00 00 00 00 00 00 00 - 00 00 00 00 e0 00 00 00 ................
0000000001000040 0e 1f ba 0e 00 b4 09 cd - 21 b8 01 4c cd 21 54 68 ........!..L.!Th
0000000001000050 69 73 20 70 72 6f 67 72 - 61 6d 20 63 61 6e 6e 6f is program canno
0000000001000060 74 20 62 65 20 72 75 6e - 20 69 6e 20 44 4f 53 20 t be run in DOS
0000000001000070 6d 6f 64 65 2e 0d 0d 0a - 24 00 00 00 00 00 00 00 mode....$.......
0000000001000080 97 a2 b0 91 d3 c3 de c2 - d3 c3 de c2 d3 c3 de c2 ................
0000000001000090 10 cc d1 c2 d7 c3 de c2 - d3 c3 df c2 49 c1 de c2 ............I...
00000000010000a0 10 cc 83 c2 c8 c3 de c2 - 10 cc 80 c2 d2 c3 de c2 ................

*----> Výpis stavu podprocesu ID 0x540 <----*

eax=024b65e0 ebx=00000000 ecx=02060238 edx=020601e8 esi=7c97e420 edi=7c97e440
eip=7c90e514 esp=00b3ff70 ebp=00b3ffb4 iopl=0 nv up ei ng nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00b3ffb4 7c80b699 00000000 00cdf8c4 00cdf8c4 ntdll!KiFastSystemCallRet
00b3ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000b3ff70 4a da 90 7c 8d 02 91 7c - 1c 02 00 00 ac ff b3 00 J..|...|........
0000000000b3ff80 b0 ff b3 00 98 ff b3 00 - a0 ff b3 00 c4 f8 cd 00 ................
0000000000b3ff90 c4 f8 cd 00 00 00 00 00 - 00 00 00 00 e8 89 17 00 ................
0000000000b3ffa0 00 7c 28 e8 ff ff ff ff - a0 5c b8 b9 01 6d 92 7c .|(......\...m.|
0000000000b3ffb0 78 88 17 00 ec ff b3 00 - 99 b6 80 7c 00 00 00 00 x..........|....
0000000000b3ffc0 c4 f8 cd 00 c4 f8 cd 00 - 00 00 00 00 00 40 fd 7f .............@..
0000000000b3ffd0 00 46 6f 8a c0 ff b3 00 - 80 d5 1b 8a ff ff ff ff .Fo.............
0000000000b3ffe0 f0 9a 83 7c a0 b6 80 7c - 00 00 00 00 00 00 00 00 ...|...|........
0000000000b3fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........
0000000000b40000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b40010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b40020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b40030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b40040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b40050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b40060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b40070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b40080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b40090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000b400a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

*----> Výpis stavu podprocesu ID 0x53c <----*

eax=00000000 ebx=00000000 ecx=00000066 edx=0117906a esi=7c97e420 edi=7c97e440
eip=7c90e514 esp=01d6ff70 ebp=01d6ffb4 iopl=0 nv up ei ng nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
01d6ffb4 7c80b699 00000000 00000000 00009a5e ntdll!KiFastSystemCallRet
01d6ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000001d6ff70 4a da 90 7c 8d 02 91 7c - 1c 02 00 00 ac ff d6 01 J..|...|........
0000000001d6ff80 b0 ff d6 01 98 ff d6 01 - a0 ff d6 01 00 00 00 00 ................
0000000001d6ff90 5e 9a 00 00 00 00 00 00 - 00 00 00 00 e8 89 17 00 ^...............
0000000001d6ffa0 00 7c 28 e8 ff ff ff ff - a0 5c b8 b9 01 6d 92 7c .|(......\...m.|
0000000001d6ffb0 00 88 17 00 ec ff d6 01 - 99 b6 80 7c 00 00 00 00 ...........|....
0000000001d6ffc0 00 00 00 00 5e 9a 00 00 - 00 00 00 00 00 e0 fa 7f ....^...........
0000000001d6ffd0 00 46 6f 8a c0 ff d6 01 - 80 d5 1b 8a ff ff ff ff .Fo.............
0000000001d6ffe0 f0 9a 83 7c a0 b6 80 7c - 00 00 00 00 00 00 00 00 ...|...|........
0000000001d6fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........
0000000001d70000 41 63 74 78 20 00 00 00 - 01 00 00 00 58 02 00 00 Actx .......X...
0000000001d70010 64 00 00 00 00 00 00 00 - 20 00 00 00 00 00 00 00 d....... .......
0000000001d70020 14 00 00 00 01 00 00 00 - 02 00 00 00 34 00 00 00 ............4...
0000000001d70030 84 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000001d70040 00 00 00 00 00 00 00 00 - 00 00 00 00 02 00 00 00 ................
0000000001d70050 00 00 00 00 00 00 00 00 - 00 00 00 00 6c 01 00 00 ............l...
0000000001d70060 ea 00 00 00 10 00 00 00 - 01 00 00 00 74 00 00 00 ............t...
0000000001d70070 03 00 00 00 01 00 00 00 - 84 00 00 00 d4 01 00 00 ................
0000000001d70080 01 00 00 00 53 73 48 64 - 2c 00 00 00 01 00 00 00 ....SsHd,.......
0000000001d70090 01 00 00 00 03 00 00 00 - 01 00 00 00 d0 00 00 00 ................
0000000001d700a0 01 00 00 00 00 00 00 00 - 2c 00 00 00 a2 00 00 00 ........,.......

*----> Výpis stavu podprocesu ID 0x5e8 <----*

eax=77e76bf9 ebx=00000000 ecx=7c97e178 edx=7c9192df esi=00082f70 edi=00000100
eip=7c90e514 esp=00b9fe1c ebp=00b9ff80 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00b9ff80 77e76c2b 00b9ffa8 77e76a4d 00082f70 ntdll!KiFastSystemCallRet
00b9ff88 77e76a4d 00082f70 00c5fae0 00c5fae0 RPCRT4!I_RpcBCacheFree+0x5e3
00b9ffa8 77e76c13 00094de0 00b9ffec 7c80b699 RPCRT4!I_RpcBCacheFree+0x405
00b9ffb4 7c80b699 000dc948 00c5fae0 00c5fae0 RPCRT4!I_RpcBCacheFree+0x5cb
00b9ffec 00000000 77e76bf9 000dc948 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000b9fe1c aa da 90 7c 13 67 e7 77 - d4 01 00 00 70 ff b9 00 ...|.g.w....p...
0000000000b9fe2c 00 00 00 00 50 62 18 01 - 54 ff b9 00 c4 04 0a 8a ....Pb..T.......
0000000000b9fe3c f9 01 00 00 01 00 00 00 - 20 00 10 00 f8 00 00 00 ........ .......
0000000000b9fe4c 00 01 56 80 00 00 00 00 - a8 36 fe 89 09 15 51 8a ..V......6....Q.
0000000000b9fe5c a8 36 fe 89 a8 36 fe 00 - 58 5b b8 b9 84 9f 4d 80 .6...6..X[....M.
0000000000b9fe6c 18 37 fe 89 02 15 51 8a - 00 00 00 00 06 02 00 00 .7....Q.........
0000000000b9fe7c 91 c7 4d 80 02 45 07 8a - c3 20 4e 80 60 d9 42 8a ..M..E... N.`.B.
0000000000b9fe8c 10 03 09 8a 80 15 51 8a - 88 5b b8 b9 8b 76 7b f7 ......Q..[...v{.
0000000000b9fe9c 74 03 09 8a 00 00 00 00 - 00 00 00 00 9c 5b b8 b9 t............[..
0000000000b9feac 2b 32 3d ba 70 03 09 8a - 00 00 00 00 30 11 51 8a +2=.p.......0.Q.
0000000000b9febc c4 5b b8 b9 9a 31 97 f7 - 68 98 3e 8a 10 03 09 8a .[...1..h.>.....
0000000000b9fecc a9 31 97 f7 60 11 51 8a - 30 11 51 8a 00 00 00 00 .1..`.Q.0.Q.....
0000000000b9fedc 60 d9 42 8a 00 00 00 00 - dc 5b b8 b9 49 39 97 f7 `.B......[..I9..
0000000000b9feec 6c 39 97 f7 dc 5b b8 b9 - 00 00 00 00 51 b4 64 ba l9...[......Q.d.
0000000000b9fefc f8 5b b8 b9 5d 29 65 ba - 00 8c 65 ba 08 15 4a 8a .[..])e...e...J.
0000000000b9ff0c 50 91 47 8a 30 f6 54 8a - 80 fa 54 8a 38 75 71 f7 P.G.0.T...T.8uq.
0000000000b9ff1c 66 c7 4d 80 00 e8 fd 89 - 2f c5 4d 80 d4 e9 fd 89 f.M...../.M.....
0000000000b9ff2c 68 e8 fd 89 80 ff b9 00 - a9 66 e7 77 4c ff b9 00 h........f.wL...
0000000000b9ff3c b9 66 e7 77 e0 10 90 7c - 88 8b 18 01 48 c9 0d 00 .f.w...|....H...
0000000000b9ff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]......



Nastala výjimka aplikace:
Aplikace: D:\WINDOWS\explorer.exe (pid=3716)
Kdy: 1.8.2010 v 23:48:47.500
Číslo výjimky: c0000005 (narušení přístupu)

*----> Systémová informace <----*
Název počítače: VOJTOVO-PC
Uživatelské jméno: PoKaRko
Číslo ID relace terminálu: 0
Počet procesorů: 2
Typ procesoru: x86 Family 15 Model 4 Stepping 1
Verze systému Windows: 5.1
Aktuální sestavení: 2600
Service Pack: 2
Aktuální typ: Multiprocessor Free
Registrovaná organizace:
Registrovaný vlastník: Microsoft Windows XP Professional

*----> Seznam úkolů <----*
0 System Process
4 System
936 smss.exe
1144 csrss.exe
1576 winlogon.exe
1620 services.exe
1632 lsass.exe
1880 Ati2evxx.exe
1892 svchost.exe
2000 svchost.exe
1000 svchost.exe
1044 svchost.exe
1420 svchost.exe
1464 svchost.exe
1928 Ati2evxx.exe
280 spoolsv.exe
404 sched.exe
832 ctfmon.exe
916 avguard.exe
964 mDNSResponder.exe
2024 avshadow.exe
224 jqs.exe
708 StarWindService.exe
1980 TuneUpUtilitiesService32.exe
2188 TuneUpUtilitiesApp32.exe
2248 alg.exe
2280 wscntfy.exe
3716 explorer.exe
2448 firefox.exe
3052 plugin-container.exe
2664 drwtsn32.exe

*----> Seznam modulů <----*
(0000000001000000 - 00000000010ff000: D:\WINDOWS\explorer.exe
(0000000002260000 - 0000000002526000: D:\WINDOWS\system32\msi.dll
(000000000ffd0000 - 000000000fff8000: D:\WINDOWS\system32\rsaenh.dll
(0000000010000000 - 0000000010013000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
(0000000010930000 - 0000000010979000: D:\WINDOWS\system32\PortableDeviceApi.dll
(00000000109c0000 - 00000000109ec000: D:\WINDOWS\system32\PortableDeviceTypes.dll
(00000000164a0000 - 00000000164c3000: D:\WINDOWS\system32\WPDShServiceObj.dll
(0000000020000000 - 00000000202cc000: D:\WINDOWS\system32\xpsp2res.dll
(000000004d540000 - 000000004d598000: D:\WINDOWS\system32\WINHTTP.dll
(000000005b250000 - 000000005b288000: D:\WINDOWS\system32\UxTheme.dll
(000000005d5a0000 - 000000005d637000: D:\WINDOWS\system32\comctl32.dll
(0000000060020000 - 0000000060091000: D:\WINDOWS\system32\themeui.dll
(0000000060120000 - 0000000060153000: D:\WINDOWS\system32\msutb.dll
(0000000065e30000 - 0000000065e67000: D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
(00000000661c0000 - 00000000663dd000: D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
(0000000066b40000 - 0000000066cbd000: D:\PROGRA~1\MICROS~2\Office12\GR326C~1.DLL
(0000000067270000 - 00000000672c4000: D:\WINDOWS\system32\NETAPI32.dll
(0000000068ef0000 - 0000000068fe1000: D:\PROGRA~1\MICROS~2\Office12\GrooveUtil.DLL
(0000000068ff0000 - 0000000068ff7000: D:\PROGRA~1\MICROS~2\Office12\GrooveNew.DLL
(0000000071a80000 - 0000000071a88000: D:\WINDOWS\system32\WS2HELP.dll
(0000000071a90000 - 0000000071aa7000: D:\WINDOWS\system32\WS2_32.dll
(0000000071ab0000 - 0000000071aba000: D:\WINDOWS\system32\WSOCK32.dll
(0000000071b00000 - 0000000071b12000: D:\WINDOWS\system32\MPR.dll
(0000000071bd0000 - 0000000071be3000: D:\WINDOWS\system32\SAMLIB.dll
(0000000071bf0000 - 0000000071bfe000: D:\WINDOWS\System32\ntlanman.dll
(0000000071c60000 - 0000000071c67000: D:\WINDOWS\System32\NETRAP.dll
(0000000071c70000 - 0000000071cb0000: D:\WINDOWS\System32\NETUI1.dll
(0000000071cb0000 - 0000000071cc7000: D:\WINDOWS\System32\NETUI0.dll
(0000000071d20000 - 0000000071d3c000: D:\WINDOWS\system32\actxprxy.dll
(0000000072cd0000 - 0000000072cd8000: D:\WINDOWS\system32\msacm32.drv
(0000000072ce0000 - 0000000072ce9000: D:\WINDOWS\system32\wdmaud.drv
(00000000746f0000 - 000000007473b000: D:\WINDOWS\system32\MSCTF.dll
(0000000074950000 - 0000000074a73000: D:\WINDOWS\system32\msxml3.dll
(0000000074aa0000 - 0000000074aa8000: D:\WINDOWS\system32\POWRPROF.dll
(0000000074ac0000 - 0000000074aca000: D:\WINDOWS\system32\BatMeter.dll
(0000000074b00000 - 0000000074b47000: D:\WINDOWS\system32\webcheck.dll
(00000000751a0000 - 00000000751ce000: D:\WINDOWS\system32\msctfime.ime
(0000000075d80000 - 0000000075da1000: D:\WINDOWS\system32\stobject.dll
(0000000075db0000 - 0000000075e41000: D:\WINDOWS\system32\MLANG.dll
(0000000075f40000 - 0000000075f47000: D:\WINDOWS\System32\drprov.dll
(0000000075f50000 - 0000000075f59000: D:\WINDOWS\System32\davclnt.dll
(0000000075f60000 - 000000007605c000: D:\WINDOWS\system32\BROWSEUI.dll
(0000000076340000 - 0000000076350000: D:\WINDOWS\system32\WINSTA.dll
(0000000076360000 - 0000000076365000: D:\WINDOWS\system32\MSImg32.dll
(0000000076370000 - 000000007638d000: D:\WINDOWS\system32\IMM32.DLL
(00000000763e0000 - 0000000076586000: D:\WINDOWS\system32\NETSHELL.dll
(00000000765e0000 - 00000000765fd000: D:\WINDOWS\System32\CSCDLL.dll
(0000000076660000 - 00000000766e1000: D:\WINDOWS\system32\CRYPTUI.dll
(0000000076970000 - 0000000076978000: D:\WINDOWS\system32\LINKINFO.dll
(0000000076980000 - 00000000769a5000: D:\WINDOWS\system32\ntshrui.dll
(00000000769b0000 - 0000000076a64000: D:\WINDOWS\system32\USERENV.dll
(0000000076b10000 - 0000000076b21000: D:\WINDOWS\system32\ATL.DLL
(0000000076b30000 - 0000000076b5d000: D:\WINDOWS\system32\WINMM.dll
(0000000076bf0000 - 0000000076c1e000: D:\WINDOWS\system32\credui.dll
(0000000076c20000 - 0000000076c4e000: D:\WINDOWS\system32\WINTRUST.dll
(0000000076c80000 - 0000000076ca8000: D:\WINDOWS\system32\IMAGEHLP.dll
(0000000076d50000 - 0000000076d69000: D:\WINDOWS\system32\iphlpapi.dll
(0000000076e70000 - 0000000076e7e000: D:\WINDOWS\system32\rtutils.dll
(0000000076f40000 - 0000000076f48000: D:\WINDOWS\system32\WTSAPI32.dll
(0000000076f50000 - 0000000076f7d000: D:\WINDOWS\system32\WLDAP32.dll
(0000000076fc0000 - 000000007703f000: D:\WINDOWS\system32\CLBCATQ.DLL
(0000000077040000 - 0000000077109000: D:\WINDOWS\system32\COMRes.dll
(0000000077110000 - 000000007719c000: D:\WINDOWS\system32\OLEAUT32.dll
(00000000771a0000 - 0000000077246000: D:\WINDOWS\system32\WININET.dll
(0000000077250000 - 00000000772ed000: D:\WINDOWS\system32\urlmon.dll
(00000000773c0000 - 00000000774c2000: D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
(00000000774d0000 - 000000007760c000: D:\WINDOWS\system32\ole32.dll
(0000000077750000 - 00000000778bc000: D:\WINDOWS\system32\SHDOCVW.dll
(0000000077910000 - 0000000077a04000: D:\WINDOWS\system32\SETUPAPI.dll
(0000000077a10000 - 0000000077a64000: D:\WINDOWS\System32\cscui.dll
(0000000077a70000 - 0000000077b05000: D:\WINDOWS\system32\CRYPT32.dll
(0000000077b10000 - 0000000077b22000: D:\WINDOWS\system32\MSASN1.dll
(0000000077bc0000 - 0000000077bc7000: D:\WINDOWS\system32\midimap.dll
(0000000077bd0000 - 0000000077be5000: D:\WINDOWS\system32\MSACM32.dll
(0000000077bf0000 - 0000000077bf8000: D:\WINDOWS\system32\VERSION.dll
(0000000077c00000 - 0000000077c58000: D:\WINDOWS\system32\msvcrt.dll
(0000000077d30000 - 0000000077dc0000: D:\WINDOWS\system32\USER32.dll
(0000000077dc0000 - 0000000077e6b000: D:\WINDOWS\system32\ADVAPI32.dll
(0000000077e70000 - 0000000077f02000: D:\WINDOWS\system32\RPCRT4.dll
(0000000077f10000 - 0000000077f58000: D:\WINDOWS\system32\GDI32.dll
(0000000077f60000 - 0000000077fd6000: D:\WINDOWS\system32\SHLWAPI.dll
(0000000077fe0000 - 0000000077ff1000: D:\WINDOWS\system32\Secur32.dll
(0000000078130000 - 00000000781cb000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
(000000007c630000 - 000000007c64b000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.DLL
(000000007c800000 - 000000007c8f5000: D:\WINDOWS\system32\kernel32.dll
(000000007c900000 - 000000007c9b1000: D:\WINDOWS\system32\ntdll.dll
(000000007c9c0000 - 000000007d1d7000: D:\WINDOWS\system32\SHELL32.dll

*----> Výpis stavu podprocesu ID 0x928 <----*

eax=00000001 ebx=00000003 ecx=00000346 edx=7c90e514 esi=001268c0 edi=00000000
eip=7c90e514 esp=0006fef0 ebp=0006ff08 iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202

*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ntdll.dll -
funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\SHELL32.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Module load completed but symbols could not be loaded for D:\WINDOWS\explorer.exe
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
0006ff08 7ca0bf0c 00000000 0006ff5c 01016e95 ntdll!KiFastSystemCallRet
0006ff14 01016e95 001268c0 7ffd5000 0006ffc0 SHELL32!Ordinal201+0x28
0006ff5c 0101e2b6 00000000 00000000 000208e0 explorer+0x16e95
0006ffc0 7c816fe7 0010f288 0010f2ac 7ffd5000 explorer+0x1e2b6
0006fff0 00000000 0101e24e 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49

*----> Bajtový výpis zásobníku <----*
000000000006fef0 f5 93 d3 77 82 3c a2 7c - b8 92 80 7c c0 68 12 00 ...w.<.|...|.h..
000000000006ff00 c0 68 12 00 14 ff 06 00 - 14 ff 06 00 0c bf a0 7c .h.............|
000000000006ff10 00 00 00 00 5c ff 06 00 - 95 6e 01 01 c0 68 12 00 ....\....n...h..
000000000006ff20 00 50 fd 7f c0 ff 06 00 - 00 00 00 00 24 fd 06 00 .P..........$...
000000000006ff30 50 ff 06 00 e0 ff 06 00 - 0a d8 90 7c 75 ac 80 7c P..........|u..|
000000000006ff40 ff ff ff ff 0c 00 00 00 - 00 00 00 00 de 77 0a 00 .............w..
000000000006ff50 74 07 00 00 01 00 00 00 - c0 68 12 00 c0 ff 06 00 t........h......
000000000006ff60 b6 e2 01 01 00 00 00 00 - 00 00 00 00 e0 08 02 00 ................
000000000006ff70 0a 00 00 00 88 f2 10 00 - ac f2 10 00 44 00 00 00 ............D...
000000000006ff80 34 09 02 00 14 09 02 00 - e4 08 02 00 00 00 00 00 4...............
000000000006ff90 00 00 00 00 00 00 00 00 - 00 00 00 00 d0 86 1b 00 ................
000000000006ffa0 d0 86 1b 00 d0 86 1b 00 - 00 00 00 00 01 00 00 00 ................
000000000006ffb0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000006ffc0 f0 ff 06 00 e7 6f 81 7c - 88 f2 10 00 ac f2 10 00 .....o.|........
000000000006ffd0 00 50 fd 7f ed a6 54 80 - c8 ff 06 00 d8 e8 39 89 .P....T.......9.
000000000006ffe0 ff ff ff ff f0 9a 83 7c - f0 6f 81 7c 00 00 00 00 .......|.o.|....
000000000006fff0 00 00 00 00 00 00 00 00 - 4e e2 01 01 00 00 00 00 ........N.......
0000000000070000 41 63 74 78 20 00 00 00 - 01 00 00 00 9c 24 00 00 Actx ........$..
0000000000070010 c4 00 00 00 00 00 00 00 - 20 00 00 00 00 00 00 00 ........ .......
0000000000070020 14 00 00 00 01 00 00 00 - 06 00 00 00 34 00 00 00 ............4...

*----> Výpis stavu podprocesu ID 0xc30 <----*

eax=01ca03e8 ebx=00000000 ecx=77e79c80 edx=775f5668 esi=000ec8c0 edi=00000000
eip=7c90e514 esp=00fbfe1c ebp=00fbff80 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\RPCRT4.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00fbff80 77e76c2b 00fbffa8 77e76a4d 000ec8c0 ntdll!KiFastSystemCallRet
00fbff88 77e76a4d 000ec8c0 0006f888 7c917d49 RPCRT4!I_RpcBCacheFree+0x5e3
00fbffa8 77e76c13 000ec778 00fbffec 7c80b699 RPCRT4!I_RpcBCacheFree+0x405
00fbffb4 7c80b699 000fb070 0006f888 7c917d49 RPCRT4!I_RpcBCacheFree+0x5cb
00fbffec 00000000 77e76bf9 000fb070 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000fbfe1c aa da 90 7c 13 67 e7 77 - 38 06 00 00 70 ff fb 00 ...|.g.w8...p...
0000000000fbfe2c 00 00 00 00 a8 e8 cb 01 - 54 ff fb 00 06 02 00 00 ........T.......
0000000000fbfe3c 4f f1 4f 80 02 00 00 00 - 04 00 00 00 30 bb 73 8a O.O.........0.s.
0000000000fbfe4c 29 29 50 80 02 00 00 00 - 00 00 73 8a 0c 00 00 00 ))P.......s.....
0000000000fbfe5c 30 bb 73 8a 30 bb 73 00 - 58 1b a1 aa f2 22 50 80 0.s.0.s.X...."P.
0000000000fbfe6c 02 00 00 00 02 07 1a 8a - 00 00 00 00 06 02 00 00 ................
0000000000fbfe7c 4f 4b 54 80 02 dd 36 89 - 82 a1 4f 80 06 02 00 00 OKT...6...O.....
0000000000fbfe8c c8 f0 4f 80 14 fd 53 80 - 18 86 31 89 28 1c a1 aa ..O...S...1.(...
0000000000fbfe9c 00 41 6e 80 43 4d 6e 80 - 28 1c a1 aa 27 44 6e 80 .An.CMn.(...'Dn.
0000000000fbfeac 00 0d db ba 00 00 00 00 - 14 fd 53 80 00 0d db ba ..........S.....
0000000000fbfebc 81 28 55 80 9a b1 d8 b9 - 58 26 4e 8a 40 2b 34 89 .(U.....X&N.@+4.
0000000000fbfecc a9 b1 d8 b9 a8 03 1a 8a - 78 03 1a 8a 00 00 00 00 ........x.......
0000000000fbfedc 60 c2 18 8a 00 00 00 00 - 00 00 00 00 00 00 00 00 `...............
0000000000fbfeec 81 28 55 80 ff ff ff ff - 40 85 33 ba 00 00 00 00 .(U.....@.3.....
0000000000fbfefc 10 44 6e 80 b4 87 31 89 - 28 1c a1 aa 00 00 00 00 .Dn...1.(.......
0000000000fbff0c 27 44 6e 80 08 00 00 00 - 46 02 00 00 68 2d 50 80 'Dn.....F...h-P.
0000000000fbff1c 88 86 31 89 18 86 31 89 - 40 af 4f 80 84 87 31 89 ..1...1.@.O...1.
0000000000fbff2c 18 86 31 89 80 ff fb 00 - a9 66 e7 77 4c ff fb 00 ..1......f.wL...
0000000000fbff3c b9 66 e7 77 e0 10 90 7c - 30 d5 09 00 70 b0 0f 00 .f.w...|0...p...
0000000000fbff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]......

*----> Výpis stavu podprocesu ID 0x87c <----*

eax=032d454e ebx=00002b60 ecx=7c80a005 edx=00472000 esi=00000003 edi=018ce8e0
eip=77d39be9 esp=018ce3bc ebp=018ce3c8 iopl=0 nv up ei pl nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\USER32.dll -
funkce: USER32!LoadCursorW
77d39bd1 15cc02d977 adc eax,0x77d902cc
77d39bd6 85c0 test eax,eax
77d39bd8 7443 jz USER32!LoadCursorW+0xb4 (77d39c1d)
77d39bda 0fb718 movzx ebx,word ptr [eax]
77d39bdd 83e60f and esi,0xf
77d39be0 40 inc eax
77d39be1 40 inc eax
77d39be2 85f6 test esi,esi
77d39be4 740b jz USER32!LoadCursorW+0x88 (77d39bf1)
77d39be6 8d0458 lea eax,[eax+ebx*2]
CHYBA ->77d39be9 0fb718 movzx ebx,word ptr [eax] ds:0023:032d454e=????
77d39bec 40 inc eax
77d39bed 40 inc eax
77d39bee 4e dec esi
77d39bef 75f5 jnz USER32!LoadCursorW+0x7d (77d39be6)
77d39bf1 837d1400 cmp dword ptr [ebp+0x14],0x0
77d39bf5 0f84eb500200 je USER32!LoadStringA+0x4e (77d5ece6)
77d39bfb ff4d14 dec dword ptr [ebp+0x14]
77d39bfe 3b5d14 cmp ebx,[ebp+0x14]
77d39c01 0f8f12c00100 jnle USER32!EnumDisplaySettingsA+0x88 (77d55c19)
77d39c07 8bcb mov ecx,ebx

*----> Zpětné trasování zásobníku <----*


Nastala výjimka aplikace:
Aplikace: D:\WINDOWS\Explorer.EXE (pid=1576)
Kdy: 2.8.2010 v 09:54:35.609
Číslo výjimky: c0000005 (narušení přístupu)

*----> Systémová informace <----*
Název počítače: VOJTOVO-PC
Uživatelské jméno: PoKaRko
Číslo ID relace terminálu: 0
Počet procesorů: 2
Typ procesoru: x86 Family 15 Model 4 Stepping 1
Verze systému Windows: 5.1
Aktuální sestavení: 2600
Service Pack: 2
Aktuální typ: Multiprocessor Free
Registrovaná organizace:
Registrovaný vlastník: Microsoft Windows XP Professional

*----> Seznam úkolů <----*
0 System Process
4 System
976 smss.exe
1136 csrss.exe
1608 winlogon.exe
1692 services.exe
1704 lsass.exe
1988 Ati2evxx.exe
2004 svchost.exe
212 svchost.exe
1080 svchost.exe
1112 svchost.exe
1476 svchost.exe
1520 svchost.exe
1960 spoolsv.exe
232 sched.exe
492 Ati2evxx.exe
1576 Explorer.EXE
160 ctfmon.exe
320 avgnt.exe
544 avguard.exe
880 mDNSResponder.exe
1152 jqs.exe
1164 avshadow.exe
1332 StarWindService.exe
1528 TuneUpUtilitiesService32.exe
3296 TuneUpUtilitiesApp32.exe
3304 wscntfy.exe
2100 alg.exe
2152 firefox.exe
584 ICQ.exe
2068 plugin-container.exe
792 MeeboNotifier.exe
1560 wmplayer.exe
3804 drwtsn32.exe

*----> Seznam modulů <----*
(0000000001000000 - 00000000010ff000: D:\WINDOWS\Explorer.EXE
(0000000002370000 - 00000000023fa000: D:\WINDOWS\system32\shdoclc.dll
(0000000002a80000 - 0000000002d46000: D:\WINDOWS\system32\msi.dll
(0000000003130000 - 0000000003184000: C:\PROGRA~1\Greatis\REGRUN~1\RRShell.dll
(00000000036c0000 - 00000000036d2000: D:\WINDOWS\system32\browselc.dll
(0000000003e20000 - 0000000003e23000: D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiamcsy.dll
(0000000003ef0000 - 0000000003efc000: d:\Windows\system32\Dirsize.dll
(0000000004330000 - 0000000004347000: D:\WINDOWS\system32\odbcint.dll
(00000000044d0000 - 000000000451a000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\BIB.dll
(00000000049e0000 - 0000000004b27000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\ADFSMenu.dll
(0000000004b30000 - 0000000004cd5000: D:\Program Files\Microsoft Office\Office12\1029\GrooveIntlResource.dll
(0000000004ce0000 - 0000000004d8f000: D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll
(000000000ffd0000 - 000000000fff8000: D:\WINDOWS\system32\rsaenh.dll
(0000000010000000 - 0000000010013000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
(0000000010930000 - 0000000010979000: D:\WINDOWS\system32\PortableDeviceApi.dll
(00000000109c0000 - 00000000109ec000: D:\WINDOWS\system32\PortableDeviceTypes.dll
(0000000011c70000 - 0000000011ca9000: D:\WINDOWS\system32\WMASF.DLL
(0000000015110000 - 000000001536a000: D:\WINDOWS\system32\wmvcore.dll
(00000000164a0000 - 00000000164c3000: D:\WINDOWS\system32\WPDShServiceObj.dll
(0000000020000000 - 00000000202cc000: D:\WINDOWS\system32\xpsp2res.dll
(000000004d540000 - 000000004d598000: D:\WINDOWS\system32\WINHTTP.dll
(000000004f4d0000 - 000000004f52e000: D:\WINDOWS\system32\wzcdlg.dll
(0000000059480000 - 0000000059499000: D:\WINDOWS\system32\wmpshell.dll
(000000005b250000 - 000000005b288000: D:\WINDOWS\system32\UxTheme.dll
(000000005cfc0000 - 000000005cfe8000: D:\WINDOWS\system32\shmedia.dll
(000000005d5a0000 - 000000005d637000: D:\WINDOWS\system32\comctl32.dll
(0000000060020000 - 0000000060091000: D:\WINDOWS\system32\themeui.dll
(0000000060120000 - 0000000060153000: D:\WINDOWS\system32\msutb.dll
(0000000061800000 - 000000006195b000: D:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Client\4.0.0\VersionCue.DLL
(0000000065e30000 - 0000000065e67000: D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
(00000000661c0000 - 00000000663dd000: D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
(0000000066b40000 - 0000000066cbd000: D:\PROGRA~1\MICROS~2\Office12\GR326C~1.DLL
(0000000067080000 - 000000006709c000: C:\Program Files\FileZilla FTP Client\fzshellext.dll
(0000000067270000 - 00000000672c4000: D:\WINDOWS\system32\NETAPI32.dll
(0000000068ef0000 - 0000000068fe1000: D:\PROGRA~1\MICROS~2\Office12\GrooveUtil.DLL
(0000000068ff0000 - 0000000068ff7000: D:\PROGRA~1\MICROS~2\Office12\GrooveNew.DLL
(00000000698b0000 - 0000000069908000: D:\WINDOWS\system32\hnetcfg.dll
(000000006bd10000 - 000000006bd20000: D:\Program Files\Microsoft Office\Office12\msohevi.dll
(000000006c730000 - 000000006c77d000: D:\WINDOWS\system32\DUSER.dll
(0000000071a30000 - 0000000071a70000: D:\WINDOWS\system32\mswsock.dll
(0000000071a70000 - 0000000071a78000: D:\WINDOWS\System32\wshtcpip.dll
(0000000071a80000 - 0000000071a88000: D:\WINDOWS\system32\WS2HELP.dll
(0000000071a90000 - 0000000071aa7000: D:\WINDOWS\system32\WS2_32.dll
(0000000071ab0000 - 0000000071aba000: D:\WINDOWS\system32\WSOCK32.dll
(0000000071b00000 - 0000000071b12000: D:\WINDOWS\system32\MPR.dll
(0000000071bd0000 - 0000000071be3000: D:\WINDOWS\system32\SAMLIB.dll
(0000000071bf0000 - 0000000071bfe000: D:\WINDOWS\System32\ntlanman.dll
(0000000071c60000 - 0000000071c67000: D:\WINDOWS\System32\NETRAP.dll
(0000000071c70000 - 0000000071cb0000: D:\WINDOWS\System32\NETUI1.dll
(0000000071cb0000 - 0000000071cc7000: D:\WINDOWS\System32\NETUI0.dll
(0000000072290000 - 0000000072295000: D:\WINDOWS\system32\SensApi.dll
(00000000723f0000 - 000000007240a000: D:\WINDOWS\system32\mydocs.dll
(0000000072cd0000 - 0000000072cd8000: D:\WINDOWS\system32\msacm32.drv
(0000000072ce0000 - 0000000072ce9000: D:\WINDOWS\system32\wdmaud.drv
(0000000072ff0000 - 0000000073000000: D:\WINDOWS\system32\WZCSAPI.DLL
(0000000073b10000 - 0000000073b27000: D:\WINDOWS\system32\AVIFIL32.dll
(0000000073fb0000 - 0000000073fed000: D:\WINDOWS\system32\ODBC32.dll
(00000000746f0000 - 000000007473b000: D:\WINDOWS\system32\Msctf.dll
(0000000074950000 - 0000000074a73000: D:\WINDOWS\system32\msxml3.dll
(0000000074aa0000 - 0000000074aa8000: D:\WINDOWS\system32\POWRPROF.dll
(0000000074ac0000 - 0000000074aca000: D:\WINDOWS\system32\BatMeter.dll
(0000000074b00000 - 0000000074b47000: D:\WINDOWS\system32\webcheck.dll
(00000000751a0000 - 00000000751ce000: D:\WINDOWS\system32\msctfime.ime
(0000000075950000 - 0000000075a47000: D:\WINDOWS\system32\MSGINA.dll
(0000000075a50000 - 0000000075a71000: D:\WINDOWS\system32\MSVFW32.dll
(0000000075d80000 - 0000000075da1000: D:\WINDOWS\system32\stobject.dll
(0000000075db0000 - 0000000075e41000: D:\WINDOWS\system32\MLANG.dll
(0000000075f20000 - 0000000075f33000: D:\WINDOWS\system32\cryptnet.dll
(0000000075f40000 - 0000000075f47000: D:\WINDOWS\System32\drprov.dll
(0000000075f50000 - 0000000075f59000: D:\WINDOWS\System32\davclnt.dll
(0000000075f60000 - 000000007605c000: D:\WINDOWS\system32\BROWSEUI.dll
(0000000076340000 - 0000000076350000: D:\WINDOWS\system32\WINSTA.dll
(0000000076360000 - 0000000076365000: D:\WINDOWS\system32\MSImg32.dll
(0000000076370000 - 000000007638d000: D:\WINDOWS\system32\IMM32.DLL
(0000000076390000 - 00000000763d9000: D:\WINDOWS\system32\comdlg32.dll
(00000000763e0000 - 0000000076586000: D:\WINDOWS\system32\NETSHELL.dll
(00000000765e0000 - 00000000765fd000: D:\WINDOWS\System32\CSCDLL.dll
(0000000076660000 - 00000000766e1000: D:\WINDOWS\system32\CRYPTUI.dll
(0000000076970000 - 0000000076978000: D:\WINDOWS\system32\LINKINFO.dll
(0000000076980000 - 00000000769a5000: D:\WINDOWS\system32\ntshrui.dll
(00000000769b0000 - 0000000076a64000: D:\WINDOWS\system32\USERENV.dll
(0000000076b10000 - 0000000076b21000: D:\WINDOWS\system32\ATL.DLL
(0000000076b30000 - 0000000076b5d000: D:\WINDOWS\system32\WINMM.dll
(0000000076bf0000 - 0000000076c1e000: D:\WINDOWS\system32\credui.dll
(0000000076c20000 - 0000000076c4e000: D:\WINDOWS\system32\WINTRUST.dll
(0000000076c80000 - 0000000076ca8000: D:\WINDOWS\system32\IMAGEHLP.dll
(0000000076d30000 - 0000000076d48000: D:\WINDOWS\system32\MPRAPI.dll
(0000000076d50000 - 0000000076d69000: D:\WINDOWS\system32\iphlpapi.dll
(0000000076d70000 - 0000000076d8e000: D:\WINDOWS\system32\DHCPCSVC.DLL
(0000000076e00000 - 0000000076e25000: D:\WINDOWS\system32\adsldpc.dll
(0000000076e70000 - 0000000076e7e000: D:\WINDOWS\system32\rtutils.dll
(0000000076e80000 - 0000000076e92000: D:\WINDOWS\system32\rasman.dll
(0000000076ea0000 - 0000000076ecf000: D:\WINDOWS\system32\TAPI32.dll
(0000000076ed0000 - 0000000076f0c000: D:\WINDOWS\system32\RASAPI32.DLL
(0000000076f10000 - 0000000076f37000: D:\WINDOWS\system32\DNSAPI.dll
(0000000076f40000 - 0000000076f48000: D:\WINDOWS\system32\WTSAPI32.dll
(0000000076f50000 - 0000000076f7d000: D:\WINDOWS\system32\WLDAP32.dll
(0000000076fb0000 - 0000000076fb6000: D:\WINDOWS\system32\rasadhlp.dll
(0000000076fc0000 - 000000007703f000: D:\WINDOWS\system32\CLBCATQ.DLL
(0000000077040000 - 0000000077109000: D:\WINDOWS\system32\COMRes.dll
(0000000077110000 - 000000007719c000: D:\WINDOWS\system32\OLEAUT32.dll
(00000000771a0000 - 0000000077246000: D:\WINDOWS\system32\WININET.dll
(0000000077250000 - 00000000772ed000: D:\WINDOWS\system32\urlmon.dll
(00000000773c0000 - 00000000774c2000: D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
(00000000774d0000 - 000000007760c000: D:\WINDOWS\system32\ole32.dll
(0000000077750000 - 00000000778bc000: D:\WINDOWS\system32\SHDOCVW.dll
(0000000077910000 - 0000000077a04000: D:\WINDOWS\system32\SETUPAPI.dll
(0000000077a10000 - 0000000077a64000: D:\WINDOWS\System32\cscui.dll
(0000000077a70000 - 0000000077b05000: D:\WINDOWS\system32\CRYPT32.dll
(0000000077b10000 - 0000000077b22000: D:\WINDOWS\system32\MSASN1.dll
(0000000077bc0000 - 0000000077bc7000: D:\WINDOWS\system32\midimap.dll
(0000000077bd0000 - 0000000077be5000: D:\WINDOWS\system32\MSACM32.dll
(0000000077bf0000 - 0000000077bf8000: D:\WINDOWS\system32\VERSION.dll
(0000000077c00000 - 0000000077c58000: D:\WINDOWS\system32\msvcrt.dll
(0000000077cb0000 - 0000000077ce2000: D:\WINDOWS\system32\ACTIVEDS.dll
(0000000077d30000 - 0000000077dc0000: D:\WINDOWS\system32\USER32.dll
(0000000077dc0000 - 0000000077e6b000: D:\WINDOWS\system32\ADVAPI32.dll
(0000000077e70000 - 0000000077f02000: D:\WINDOWS\system32\RPCRT4.dll
(0000000077f10000 - 0000000077f58000: D:\WINDOWS\system32\GDI32.dll
(0000000077f60000 - 0000000077fd6000: D:\WINDOWS\system32\SHLWAPI.dll
(0000000077fe0000 - 0000000077ff1000: D:\WINDOWS\system32\Secur32.dll
(0000000078130000 - 00000000781cb000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
(000000007c630000 - 000000007c64b000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.DLL
(000000007c800000 - 000000007c8f5000: D:\WINDOWS\system32\kernel32.dll
(000000007c900000 - 000000007c9b1000: D:\WINDOWS\system32\ntdll.dll
(000000007c9c0000 - 000000007d1d7000: D:\WINDOWS\system32\SHELL32.dll

*----> Výpis stavu podprocesu ID 0x62c <----*

eax=0000028e ebx=00000003 ecx=0006fc20 edx=00000035 esi=001575c8 edi=00000000
eip=7c90e514 esp=0006fef0 ebp=0006ff08 iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202

*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ntdll.dll -
funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\SHELL32.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Module load completed but symbols could not be loaded for D:\WINDOWS\Explorer.EXE
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
0006ff08 7ca0bf0c 00000000 0006ff5c 01016e95 ntdll!KiFastSystemCallRet
0006ff14 01016e95 001575c8 7ffdf000 0006ffc0 SHELL32!Ordinal201+0x28
0006ff5c 0101e2b6 00000000 00000000 000208de Explorer+0x16e95
0006ffc0 7c816fe7 00182594 0006eb74 7ffdf000 Explorer+0x1e2b6
0006fff0 00000000 0101e24e 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49

Uživatelský avatar
autoprd
Level 4.5
Level 4.5
Příspěvky: 1715
Registrován: únor 09
Bydliště: ▼▲☺U Pc ☺▼▲
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: PRoBLém s user32.dll

Příspěvekod autoprd » 02 srp 2010 23:32

*----> Bajtový výpis zásobníku <----*
000000000006fef0 f5 93 d3 77 82 3c a2 7c - b8 92 80 7c c8 75 15 00 ...w.<.|...|.u..
000000000006ff00 c8 75 15 00 14 ff 06 00 - 14 ff 06 00 0c bf a0 7c .u.............|
000000000006ff10 00 00 00 00 5c ff 06 00 - 95 6e 01 01 c8 75 15 00 ....\....n...u..
000000000006ff20 00 f0 fd 7f c0 ff 06 00 - 00 00 00 00 24 fd 06 00 ............$...
000000000006ff30 50 ff 06 00 e0 ff 06 00 - 0a d8 90 7c 75 ac 80 7c P..........|u..|
000000000006ff40 ff ff ff ff 0c 00 00 00 - 00 00 00 00 7e 82 00 00 ............~...
000000000006ff50 90 00 00 00 01 00 00 00 - c8 75 15 00 c0 ff 06 00 .........u......
000000000006ff60 b6 e2 01 01 00 00 00 00 - 00 00 00 00 de 08 02 00 ................
000000000006ff70 01 00 00 00 94 25 18 00 - 74 eb 06 00 44 00 00 00 .....%..t...D...
000000000006ff80 30 09 02 00 10 09 02 00 - e0 08 02 00 00 00 00 00 0...............
000000000006ff90 00 00 00 00 00 00 00 00 - 00 00 00 00 3e 04 91 7c ............>..|
000000000006ffa0 e8 f2 06 00 24 00 02 00 - 01 00 00 00 01 00 00 00 ....$...........
000000000006ffb0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000006ffc0 f0 ff 06 00 e7 6f 81 7c - 94 25 18 00 74 eb 06 00 .....o.|.%..t...
000000000006ffd0 00 f0 fd 7f ed a6 54 80 - c8 ff 06 00 a8 7d b3 89 ......T......}..
000000000006ffe0 ff ff ff ff f0 9a 83 7c - f0 6f 81 7c 00 00 00 00 .......|.o.|....
000000000006fff0 00 00 00 00 00 00 00 00 - 4e e2 01 01 00 00 00 00 ........N.......
0000000000070000 41 63 74 78 20 00 00 00 - 01 00 00 00 9c 24 00 00 Actx ........$..
0000000000070010 c4 00 00 00 00 00 00 00 - 20 00 00 00 00 00 00 00 ........ .......
0000000000070020 14 00 00 00 01 00 00 00 - 06 00 00 00 34 00 00 00 ............4...

*----> Výpis stavu podprocesu ID 0x22c <----*

eax=00000001 ebx=00000000 ecx=00f8fc60 edx=7c90e514 esi=000edc70 edi=000edd14
eip=7c90e514 esp=00f8fe1c ebp=00f8ff80 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\RPCRT4.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00f8ff80 77e76c2b 00f8ffa8 77e76a4d 000edc70 ntdll!KiFastSystemCallRet
00f8ff88 77e76a4d 000edc70 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5e3
00f8ffa8 77e76c13 000edb28 00f8ffec 7c80b699 RPCRT4!I_RpcBCacheFree+0x405
00f8ffb4 7c80b699 0009e6e0 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5cb
00f8ffec 00000000 77e76bf9 0009e6e0 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000f8fe1c aa da 90 7c 13 67 e7 77 - d4 01 00 00 70 ff f8 00 ...|.g.w....p...
0000000000f8fe2c 00 00 00 00 28 df c6 01 - 54 ff f8 00 06 02 00 00 ....(...T.......
0000000000f8fe3c 4f f1 4f 80 01 00 00 00 - a8 fc df ff 20 f1 df ff O.O......... ...
0000000000f8fe4c 29 29 50 80 02 00 00 00 - 00 00 73 8a 0c 00 00 00 ))P.......s.....
0000000000f8fe5c 20 81 33 ba 30 bb 73 00 - 58 6b cb aa f2 22 50 80 .3.0.s.Xk..."P.
0000000000f8fe6c 0a 00 00 00 02 25 55 8a - 00 00 00 00 38 85 33 ba .....%U.....8.3.
0000000000f8fe7c 24 4b 54 80 02 00 00 00 - 82 a1 4f 80 a0 49 50 8a $KT.......O..IP.
0000000000f8fe8c b8 d5 33 8a 80 25 55 8a - 88 6b cb aa 8b 86 41 ba ..3..%U..k....A.
0000000000f8fe9c 1c d6 33 8a 43 4d 6e 80 - 28 6c cb aa 27 44 6e 80 ..3.CMn.(l..'Dn.
0000000000f8feac 00 0d db ba 00 00 00 00 - 00 00 00 00 30 21 55 8a ............0!U.
0000000000f8febc c4 6b cb aa 9a b1 d8 b9 - b8 47 36 8a b8 d5 33 8a .k.......G6...3.
0000000000f8fecc a9 b1 d8 b9 60 21 55 8a - 30 21 55 8a 00 00 00 00 ....`!U.0!U.....
0000000000f8fedc a0 49 50 8a 00 00 00 00 - 00 00 00 00 00 00 00 00 .IP.............
0000000000f8feec 1f 00 00 00 ff ff ff ff - 40 85 33 ba 00 00 00 00 ........@.3.....
0000000000f8fefc 10 44 6e 80 44 9f 8d 89 - 28 6c cb aa 00 00 00 00 .Dn.D...(l......
0000000000f8ff0c 27 44 6e 80 08 00 00 00 - 46 02 00 00 68 2d 50 80 'Dn.....F...h-P.
0000000000f8ff1c 18 9e 8d 89 a8 9d 8d 89 - 40 af 4f 80 14 9f 8d 89 ........@.O.....
0000000000f8ff2c a8 9d 8d 89 80 ff f8 00 - a9 66 e7 77 4c ff f8 00 .........f.wL...
0000000000f8ff3c b9 66 e7 77 e0 10 90 7c - a8 bb 0f 00 e0 e6 09 00 .f.w...|........
0000000000f8ff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]......

*----> Výpis stavu podprocesu ID 0x234 <----*

eax=00000000 ebx=00000000 ecx=03f28000 edx=00000000 esi=1b010555 edi=00000000
eip=7c90e514 esp=0188f4ac ebp=0188f508 iopl=0 nv up ei pl nz na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*


Nastala výjimka aplikace:
Aplikace: D:\WINDOWS\explorer.exe (pid=2336)
Kdy: 2.8.2010 v 10:26:54.484
Číslo výjimky: c0000005 (narušení přístupu)

*----> Systémová informace <----*
Název počítače: VOJTOVO-PC
Uživatelské jméno: PoKaRko
Číslo ID relace terminálu: 0
Počet procesorů: 2
Typ procesoru: x86 Family 15 Model 4 Stepping 1
Verze systému Windows: 5.1
Aktuální sestavení: 2600
Service Pack: 2
Aktuální typ: Multiprocessor Free
Registrovaná organizace:
Registrovaný vlastník: Microsoft Windows XP Professional

*----> Seznam úkolů <----*
0 System Process
4 System
976 smss.exe
1136 csrss.exe
1608 winlogon.exe
1692 services.exe
1704 lsass.exe
1988 Ati2evxx.exe
2004 svchost.exe
212 svchost.exe
1080 svchost.exe
1112 svchost.exe
1476 svchost.exe
1520 svchost.exe
1960 spoolsv.exe
232 sched.exe
492 Ati2evxx.exe
160 ctfmon.exe
320 avgnt.exe
544 avguard.exe
880 mDNSResponder.exe
1152 jqs.exe
1164 avshadow.exe
1332 StarWindService.exe
1528 TuneUpUtilitiesService32.exe
3296 TuneUpUtilitiesApp32.exe
3304 wscntfy.exe
2100 alg.exe
2152 firefox.exe
584 ICQ.exe
2068 plugin-container.exe
792 MeeboNotifier.exe
1560 wmplayer.exe
2336 explorer.exe
2404 setup_9.0.0.722_13.07.2010_07-56.exe
3268 pes2009.exe
3596 drwtsn32.exe

*----> Seznam modulů <----*
(0000000000c00000 - 0000000000c8a000: D:\WINDOWS\system32\shdoclc.dll
(0000000000dd0000 - 0000000000de8000: C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll
(0000000001000000 - 00000000010ff000: D:\WINDOWS\explorer.exe
(0000000001110000 - 000000000113d000: C:\Program Files\WinRAR\rarext.dll
(0000000001140000 - 000000000115a000: C:\Program Files\IDM Computer Solutions\UltraEdit\ue32ctmn.dll
(0000000001410000 - 0000000001462000: C:\Program Files\WinRAR\rarlng.dll
(00000000015a0000 - 00000000015c3000: C:\Program Files\IDM Computer Solutions\UltraCompare\UC_ShellExt.dll
(00000000015e0000 - 00000000015ea000: C:\Program Files\TuneUp Utilities 2010\SDShelEx-win32.dll
(0000000001600000 - 0000000001618000: C:\Program Files\Avira\AntiVir Desktop\shlext.dll
(0000000001670000 - 000000000169f000: C:\Program Files\PowerISO\PWRISOSH.DLL
(00000000016b0000 - 00000000016c4000: C:\Program Files\7-Zip\7-zip.dll
(0000000001bf0000 - 0000000001c03000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
(0000000002a60000 - 0000000002d26000: D:\WINDOWS\system32\msi.dll
(0000000002db0000 - 0000000002dc2000: D:\WINDOWS\system32\browselc.dll
(0000000003490000 - 0000000003493000: D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiamcsy.dll
(00000000035f0000 - 00000000035fc000: d:\Windows\system32\Dirsize.dll
(0000000003720000 - 0000000003737000: D:\WINDOWS\system32\odbcint.dll
(0000000003cc0000 - 0000000003d0a000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\BIB.dll
(0000000005160000 - 00000000052a7000: D:\Program Files\Common Files\Adobe\Adobe Drive CS4\ADFSMenu.dll
(0000000005bb0000 - 0000000005cb0000: C:\Program Files\Rhinoceros 4.0\System\RhinoShExt.dll
(00000000067a0000 - 0000000006945000: D:\Program Files\Microsoft Office\Office12\1029\GrooveIntlResource.dll
(000000000ffd0000 - 000000000fff8000: D:\WINDOWS\system32\rsaenh.dll
(0000000010000000 - 0000000010054000: C:\PROGRA~1\Greatis\REGRUN~1\RRShell.dll
(0000000010930000 - 0000000010979000: D:\WINDOWS\system32\PortableDeviceApi.dll
(00000000109c0000 - 00000000109ec000: D:\WINDOWS\system32\PortableDeviceTypes.dll
(0000000011c70000 - 0000000011ca9000: D:\WINDOWS\system32\WMASF.DLL
(0000000015110000 - 000000001536a000: D:\WINDOWS\system32\wmvcore.dll
(00000000164a0000 - 00000000164c3000: D:\WINDOWS\system32\WPDShServiceObj.dll
(0000000020000000 - 00000000202cc000: D:\WINDOWS\system32\xpsp2res.dll
(0000000049ac0000 - 0000000049ad5000: C:\Program Files\Miranda IM\Plugins\shlext.dll
(000000004d540000 - 000000004d598000: D:\WINDOWS\system32\WINHTTP.dll
(000000004ebe0000 - 000000004ed8b000: D:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df\gdiplus.dll
(000000005b250000 - 000000005b288000: D:\WINDOWS\system32\UxTheme.dll
(000000005cff0000 - 000000005d05e000: D:\WINDOWS\system32\shimgvw.dll
(000000005d5a0000 - 000000005d637000: D:\WINDOWS\system32\comctl32.dll
(0000000060020000 - 0000000060091000: D:\WINDOWS\system32\themeui.dll
(0000000060120000 - 0000000060153000: D:\WINDOWS\system32\msutb.dll
(0000000061800000 - 000000006195b000: D:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Client\4.0.0\VersionCue.DLL
(0000000065e30000 - 0000000065e67000: D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
(00000000661c0000 - 00000000663dd000: D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
(0000000066b40000 - 0000000066cbd000: D:\PROGRA~1\MICROS~2\Office12\GR326C~1.DLL
(0000000067080000 - 000000006709c000: C:\Program Files\FileZilla FTP Client\fzshellext.dll
(0000000067270000 - 00000000672c4000: D:\WINDOWS\system32\NETAPI32.dll
(00000000673f0000 - 0000000067431000: D:\WINDOWS\system32\icm32.dll
(0000000068ef0000 - 0000000068fe1000: D:\PROGRA~1\MICROS~2\Office12\GrooveUtil.DLL
(0000000068ff0000 - 0000000068ff7000: D:\PROGRA~1\MICROS~2\Office12\GrooveNew.DLL
(000000006c730000 - 000000006c77d000: D:\WINDOWS\system32\DUSER.dll
(0000000071a80000 - 0000000071a88000: D:\WINDOWS\system32\WS2HELP.dll
(0000000071a90000 - 0000000071aa7000: D:\WINDOWS\system32\WS2_32.dll
(0000000071ab0000 - 0000000071aba000: D:\WINDOWS\system32\WSOCK32.dll
(0000000071b00000 - 0000000071b12000: D:\WINDOWS\system32\MPR.dll
(0000000071bd0000 - 0000000071be3000: D:\WINDOWS\system32\SAMLIB.dll
(0000000071bf0000 - 0000000071bfe000: D:\WINDOWS\System32\ntlanman.dll
(0000000071c60000 - 0000000071c67000: D:\WINDOWS\System32\NETRAP.dll
(0000000071c70000 - 0000000071cb0000: D:\WINDOWS\System32\NETUI1.dll
(0000000071cb0000 - 0000000071cc7000: D:\WINDOWS\System32\NETUI0.dll
(0000000071d20000 - 0000000071d3c000: D:\WINDOWS\system32\actxprxy.dll
(0000000072290000 - 0000000072295000: D:\WINDOWS\system32\SensApi.dll
(00000000723f0000 - 000000007240a000: D:\WINDOWS\system32\mydocs.dll
(0000000072cd0000 - 0000000072cd8000: D:\WINDOWS\system32\msacm32.drv
(0000000072ce0000 - 0000000072ce9000: D:\WINDOWS\system32\wdmaud.drv
(0000000072fc0000 - 0000000072fe6000: D:\WINDOWS\system32\WINSPOOL.DRV
(0000000073af0000 - 0000000073b05000: D:\WINDOWS\system32\mscms.dll
(0000000073fb0000 - 0000000073fed000: D:\WINDOWS\system32\ODBC32.dll
(0000000074620000 - 0000000074651000: D:\WINDOWS\system32\syncui.dll
(00000000746f0000 - 000000007473b000: D:\WINDOWS\system32\MSCTF.dll
(0000000074950000 - 0000000074a73000: D:\WINDOWS\system32\msxml3.dll
(0000000074aa0000 - 0000000074aa8000: D:\WINDOWS\system32\POWRPROF.dll
(0000000074ac0000 - 0000000074aca000: D:\WINDOWS\system32\BatMeter.dll
(0000000074b00000 - 0000000074b47000: D:\WINDOWS\system32\webcheck.dll
(00000000751a0000 - 00000000751ce000: D:\WINDOWS\system32\msctfime.ime
(0000000075950000 - 0000000075a47000: D:\WINDOWS\system32\MSGINA.dll
(0000000075d80000 - 0000000075da1000: D:\WINDOWS\system32\stobject.dll
(0000000075db0000 - 0000000075e41000: D:\WINDOWS\system32\MLANG.dll
(0000000075e70000 - 0000000075f20000: D:\WINDOWS\system32\SXS.DLL
(0000000075f20000 - 0000000075f33000: D:\WINDOWS\system32\cryptnet.dll
(0000000075f40000 - 0000000075f47000: D:\WINDOWS\System32\drprov.dll
(0000000075f50000 - 0000000075f59000: D:\WINDOWS\System32\davclnt.dll
(0000000075f60000 - 000000007605c000: D:\WINDOWS\system32\BROWSEUI.dll
(0000000076340000 - 0000000076350000: D:\WINDOWS\system32\WINSTA.dll
(0000000076360000 - 0000000076365000: D:\WINDOWS\system32\MSImg32.dll
(0000000076370000 - 000000007638d000: D:\WINDOWS\system32\IMM32.DLL
(0000000076390000 - 00000000763d9000: D:\WINDOWS\system32\comdlg32.dll
(00000000763e0000 - 0000000076586000: D:\WINDOWS\system32\NETSHELL.dll
(00000000765e0000 - 00000000765fd000: D:\WINDOWS\System32\CSCDLL.dll
(0000000076660000 - 00000000766e1000: D:\WINDOWS\system32\CRYPTUI.dll
(0000000076970000 - 0000000076978000: D:\WINDOWS\system32\LINKINFO.dll
(0000000076980000 - 00000000769a5000: D:\WINDOWS\system32\ntshrui.dll
(00000000769b0000 - 0000000076a64000: D:\WINDOWS\system32\USERENV.dll
(0000000076b10000 - 0000000076b21000: D:\WINDOWS\system32\ATL.DLL
(0000000076b30000 - 0000000076b5d000: D:\WINDOWS\system32\WINMM.dll
(0000000076bf0000 - 0000000076c1e000: D:\WINDOWS\system32\credui.dll
(0000000076c20000 - 0000000076c4e000: D:\WINDOWS\system32\WINTRUST.dll
(0000000076c80000 - 0000000076ca8000: D:\WINDOWS\system32\IMAGEHLP.dll
(0000000076d50000 - 0000000076d69000: D:\WINDOWS\system32\iphlpapi.dll
(0000000076e70000 - 0000000076e7e000: D:\WINDOWS\system32\rtutils.dll
(0000000076f40000 - 0000000076f48000: D:\WINDOWS\system32\WTSAPI32.dll
(0000000076f50000 - 0000000076f7d000: D:\WINDOWS\system32\WLDAP32.dll
(0000000076fc0000 - 000000007703f000: D:\WINDOWS\system32\CLBCATQ.DLL
(0000000077040000 - 0000000077109000: D:\WINDOWS\system32\COMRes.dll
(0000000077110000 - 000000007719c000: D:\WINDOWS\system32\OLEAUT32.dll
(00000000771a0000 - 0000000077246000: D:\WINDOWS\system32\WININET.dll
(0000000077250000 - 00000000772ed000: D:\WINDOWS\system32\urlmon.dll
(00000000773c0000 - 00000000774c2000: D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
(00000000774d0000 - 000000007760c000: D:\WINDOWS\system32\ole32.dll
(0000000077680000 - 00000000776a1000: D:\WINDOWS\system32\NTMARTA.DLL
(0000000077750000 - 00000000778bc000: D:\WINDOWS\system32\SHDOCVW.dll
(0000000077910000 - 0000000077a04000: D:\WINDOWS\system32\SETUPAPI.dll
(0000000077a10000 - 0000000077a64000: D:\WINDOWS\System32\cscui.dll
(0000000077a70000 - 0000000077b05000: D:\WINDOWS\system32\CRYPT32.dll
(0000000077b10000 - 0000000077b22000: D:\WINDOWS\system32\MSASN1.dll
(0000000077bc0000 - 0000000077bc7000: D:\WINDOWS\system32\midimap.dll
(0000000077bd0000 - 0000000077be5000: D:\WINDOWS\system32\MSACM32.dll
(0000000077bf0000 - 0000000077bf8000: D:\WINDOWS\system32\VERSION.dll
(0000000077c00000 - 0000000077c58000: D:\WINDOWS\system32\msvcrt.dll
(0000000077d30000 - 0000000077dc0000: D:\WINDOWS\system32\USER32.dll
(0000000077dc0000 - 0000000077e6b000: D:\WINDOWS\system32\ADVAPI32.dll
(0000000077e70000 - 0000000077f02000: D:\WINDOWS\system32\RPCRT4.dll
(0000000077f10000 - 0000000077f58000: D:\WINDOWS\system32\GDI32.dll
(0000000077f60000 - 0000000077fd6000: D:\WINDOWS\system32\SHLWAPI.dll
(0000000077fe0000 - 0000000077ff1000: D:\WINDOWS\system32\Secur32.dll
(0000000078130000 - 00000000781cb000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
(00000000781d0000 - 00000000782e0000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\MFC80.DLL
(0000000078480000 - 000000007850e000: D:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\MSVCP90.dll
(0000000078520000 - 00000000785c3000: D:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\MSVCR90.dll
(00000000789e0000 - 0000000078d81000: D:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90u.dll
(000000007c630000 - 000000007c64b000: D:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.DLL
(000000007c800000 - 000000007c8f5000: D:\WINDOWS\system32\kernel32.dll
(000000007c900000 - 000000007c9b1000: D:\WINDOWS\system32\ntdll.dll
(000000007c9c0000 - 000000007d1d7000: D:\WINDOWS\system32\SHELL32.dll

*----> Výpis stavu podprocesu ID 0x6e4 <----*

eax=7ffdf000 ebx=7ffdf6cc ecx=0006f8a4 edx=7c90e514 esi=004f5a78 edi=000200a2
eip=7c90e514 esp=0006f85c ebp=0006f87c iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\ntdll.dll -
funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\USER32.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\SHELL32.dll -
*** ERROR: Module load completed but symbols could not be loaded for D:\WINDOWS\explorer.exe
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
0006f87c 77d3b794 02ff66f0 0006f8d4 7c9fd66b ntdll!KiFastSystemCallRet
0006f888 7c9fd66b 000200a2 0000104b 00000000 USER32!SendMessageW+0x32
0006f8d4 7c9fd62d 000200a2 00000000 0017f9e8 SHELL32!Ordinal237+0x609
0006f8e8 7ca37f43 00000000 77d3b762 0017fef8 SHELL32!Ordinal237+0x5cb
0006f908 7c9f7e8e 00000000 02ff66f0 77d3c6a8 SHELL32!SHPropStgReadMultiple+0x659
0006f920 7c9f769e 00000000 0017f9e8 7ca37cfd SHELL32!Shell_MergeMenus+0x76a
0006f944 7ca37c45 00000000 00000920 0017f9e8 SHELL32!SHChangeNotifyRegister+0x677
0006fb6c 7ca37bb6 00001000 0017d8f4 00000000 SHELL32!SHPropStgReadMultiple+0x35b
0006fce4 7c9f1e01 000200b6 000004a0 00000c74 SHELL32!SHPropStgReadMultiple+0x2cc
0006fd28 77d38709 000200b6 000004a0 00000c74 SHELL32!ILFindChild+0x25c
0006fd54 77d387eb 7c9f1dab 000200b6 000004a0 USER32!GetDC+0x72
0006fdbc 77d3b368 00084b68 7c9f1dab 000200b6 USER32!GetDC+0x154
0006fe10 77d3b3b4 004f59c8 000004a0 00000c74 USER32!DefWindowProcW+0x183
0006fe38 7c90e473 0006fe48 00000018 004f59c8 USER32!DefWindowProcW+0x1cf
0006fe88 77d393df 0006fed4 00000000 00000000 ntdll!KiUserCallbackDispatcher+0x13
0006feb4 7ca23ca6 0006fed4 00000000 00000000 USER32!PeekMessageW+0x167
0006fef0 7ca23c66 7c8092b8 00126d68 00126d68 SHELL32!SHGetFolderPathA+0x203
0006ff08 7ca0bf0c 00000000 0006ff5c 01016e95 SHELL32!SHGetFolderPathA+0x1c3
0006ff14 01016e95 00126d68 7ffda000 0006ffc0 SHELL32!Ordinal201+0x28
0006ff5c 0101e2b6 00000000 00000000 000208de explorer+0x16e95
0006ffc0 7c816fe7 000744e0 0006e890 7ffda000 explorer+0x1e2b6
0006fff0 00000000 0101e24e 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49

*----> Bajtový výpis zásobníku <----*
000000000006f85c bc 84 d3 77 64 85 d3 77 - a2 00 02 00 01 00 00 00 ...wd..w........
000000000006f86c 00 00 00 00 4b 10 00 00 - 00 00 00 00 01 00 02 00 ....K...........
000000000006f87c 88 f8 06 00 94 b7 d3 77 - f0 66 ff 02 d4 f8 06 00 .......w.f......
000000000006f88c 6b d6 9f 7c a2 00 02 00 - 4b 10 00 00 00 00 00 00 k..|....K.......
000000000006f89c a0 f8 06 00 04 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000006f8ac a4 f6 06 00 04 10 00 00 - 18 fd 06 00 20 e9 90 7c ............ ..|
000000000006f8bc e0 01 91 7c 00 00 00 00 - db 01 91 7c 2f 0d 3d 77 ...|.......|/.=w
000000000006f8cc 00 00 08 00 08 00 00 00 - e8 f8 06 00 2d d6 9f 7c ............-..|
000000000006f8dc a2 00 02 00 00 00 00 00 - e8 f9 17 00 08 f9 06 00 ................
000000000006f8ec 43 7f a3 7c 00 00 00 00 - 62 b7 d3 77 f8 fe 17 00 C..|....b..w....
000000000006f8fc e8 f9 17 00 73 00 00 00 - 30 82 03 03 20 f9 06 00 ....s...0... ...
000000000006f90c 8e 7e 9f 7c 00 00 00 00 - f0 66 ff 02 a8 c6 d3 77 .~.|.....f.....w
000000000006f91c e8 f9 17 00 44 f9 06 00 - 9e 76 9f 7c 00 00 00 00 ....D....v.|....
000000000006f92c e8 f9 17 00 fd 7c a3 7c - 00 10 00 00 f4 d8 17 00 .....|.|........
000000000006f93c e8 f9 17 00 11 00 01 00 - 6c fb 06 00 45 7c a3 7c ........l...E|.|
000000000006f94c 00 00 00 00 20 09 00 00 - e8 f9 17 00 f0 d8 17 00 .... ...........
000000000006f95c e8 f9 17 00 01 00 00 00 - fc f9 06 00 40 00 00 00 ............@...
000000000006f96c 94 f9 06 00 24 37 00 00 - 94 f9 06 00 20 77 40 77 ....$7...... w@w
000000000006f97c 00 00 00 00 00 00 00 00 - 98 fb 06 00 30 f3 11 00 ............0...
000000000006f98c 01 00 00 00 1c fb 06 00 - 29 d6 40 77 30 f3 11 00 ........).@w0...

*----> Výpis stavu podprocesu ID 0x5d4 <----*

eax=00000001 ebx=00000000 ecx=00fbfc60 edx=7c90e514 esi=000ec9e0 edi=000eca84
eip=7c90e514 esp=00fbfe1c ebp=00fbff80 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for D:\WINDOWS\system32\RPCRT4.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
00fbff80 77e76c2b 00fbffa8 77e76a4d 000ec9e0 ntdll!KiFastSystemCallRet
00fbff88 77e76a4d 000ec9e0 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5e3
00fbffa8 77e76c13 000ec898 00fbffec 7c80b699 RPCRT4!I_RpcBCacheFree+0x405
00fbffb4 7c80b699 000fb1a8 00000000 0006f88c RPCRT4!I_RpcBCacheFree+0x5cb
00fbffec 00000000 77e76bf9 000fb1a8 00000000 kernel32!GetModuleFileNameA+0x1ba

*----> Bajtový výpis zásobníku <----*
0000000000fbfe1c aa da 90 7c 13 67 e7 77 - cc 01 00 00 70 ff fb 00 ...|.g.w....p...
0000000000fbfe2c 00 00 00 00 68 d3 0f 00 - 4c ff fb 00 06 02 00 00 ....h...L.......
0000000000fbfe3c 4f f1 4f 80 01 00 00 00 - a8 fc df ff 20 f1 df ff O.O......... ...
0000000000fbfe4c 29 29 50 80 02 00 00 00 - 00 00 73 8a 0c 00 00 00 ))P.......s.....
0000000000fbfe5c 20 81 33 ba b8 b8 73 00 - 58 bb 23 aa f2 22 50 80 .3...s.X.#.."P.
0000000000fbfe6c 04 00 00 00 02 25 55 8a - 00 00 00 00 38 85 33 ba .....%U.....8.3.
0000000000fbfe7c 24 4b 54 80 02 00 00 00 - 82 a1 4f 80 06 02 00 00 $KT.......O.....
0000000000fbfe8c c8 f0 4f 80 16 fd 53 80 - a8 5c d7 87 28 bc 23 aa ..O...S..\..(.#.
0000000000fbfe9c 00 41 6e 80 43 4d 6e 80 - 28 bc 23 aa 27 44 6e 80 .An.CMn.(.#.'Dn.
0000000000fbfeac 00 0d db ba 00 00 00 00 - 16 fd 53 80 00 0d db ba ..........S.....
0000000000fbfebc 81 28 55 80 9a b1 d8 b9 - b8 47 36 8a 18 8b 0b 89 .(U......G6.....
0000000000fbfecc a9 b1 d8 b9 60 21 55 8a - 30 21 55 8a 00 00 00 00 ....`!U.0!U.....
0000000000fbfedc a0 49 50 8a 00 00 00 00 - 00 00 00 00 00 00 00 00 .IP.............
0000000000fbfeec 81 28 55 80 ff ff ff ff - 40 85 33 ba 00 00 00 00 .(U.....@.3.....
0000000000fbfefc 10 44 6e 80 44 5e d7 87 - 28 bc 23 aa 00 00 00 00 .Dn.D^..(.#.....
0000000000fbff0c 27 44 6e 80 08 00 00 00 - 46 02 00 00 68 2d 50 80 'Dn.....F...h-P.
0000000000fbff1c 18 5d d7 87 a8 5c d7 87 - 40 af 4f 80 14 5e d7 87 .]...\..@.O..^..
0000000000fbff2c a8 5c d7 87 80 ff fb 00 - a9 66 e7 77 4c ff fb 00 .\.......f.wL...
0000000000fbff3c b9 66 e7 77 e0 10 90 7c - d8 9d 0f 00 a8 b1 0f 00 .f.w...|........
0000000000fbff4c 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]......

*----> Výpis stavu podprocesu ID 0xc30 <----*

eax=7ffda0c4 ebx=00010000 ecx=00000000 edx=77f54020 esi=ba010b3b edi=003b0000
eip=7c90e514 esp=018cf254 ebp=018cf27c iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202

funkce: ntdll!KiFastSystemCallRet
7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528)
7c90e4ff 8b0424 mov eax,[esp]
7c90e502 8be5 mov esp,ebp
7c90e504 5d pop ebp
7c90e505 c3 ret
7c90e506 8da42400000000 lea esp,[esp]
7c90e50d 8d4900 lea ecx,[ecx]
ntdll!KiFastSystemCall:
7c90e510 8bd4 mov edx,esp
7c90e512 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c90e514 c3 ret
7c90e515 8da42400000000 lea esp,[esp]
7c90e51c 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c90e520 8d542408 lea edx,[esp+0x8]
7c90e524 cd2e int 2e
7c90e526 c3 ret
7c90e527 90 nop
ntdll!RtlRaiseException:
7c90e528 55 push ebp
7c90e529 8bec mov ebp,esp

*----> Zpětné trasování zásobníku <----*

Uživatelský avatar
MiliNess
člen BSOD týmu
Master Level 9.5
Master Level 9.5
Příspěvky: 9112
Registrován: říjen 09
Bydliště: Cheb
Pohlaví: Muž
Stav:
Offline

Re: PRoBLém s user32.dll

Příspěvekod MiliNess » 03 srp 2010 03:32

K chybě dojde při volání ordinální funkce 201 z knihovny SHELL32.dll. Bez komplet výpisu budu jen typovat, způsobit to může kterýkoliv z modulů v pocesu exploreru. Zkusil bych se pomocí Autoruns dočasně zbavit těchto pluginů: (i v tom pořadí, jak jsem je napsal)

C:\Program Files\Rhinoceros 4.0\System\RhinoShExt.dll
C:\PROGRA~1\Greatis\REGRUN~1\RRShell.dll
C:\Program Files\Rhinoceros 4.0\System\RhinoShExt.dll
C:\Program Files\Miranda IM\Plugins\shlext.dll
C:\Program Files\IDM Computer Solutions\UltraEdit\ue32ctmn.dll
C:\Program Files\IDM Computer Solutions\UltraCompare\UC_ShellExt.dll
C:\PROGRA~1\Greatis\REGRUN~1\RRShell.dll
C:\Program Files\FileZilla FTP Client\fzshellext.dll
C:\Program Files\Avira\AntiVir Desktop\shlext.dll
C:\Program Files\TuneUp Utilities 2010\SDShelEx-win32.dll
D:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Client\4.0.0\VersionCue.DLL
D:\Program Files\Common Files\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll
D:\Program Files\Common Files\Adobe\Adobe Drive CS4\ADFSMenu.dll
D:\Program Files\Common Files\Adobe\Adobe Drive CS4\BIB.dll
C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll
C:\Program Files\WinRAR\rarext.dll
C:\Program Files\WinRAR\rarlng.dll
C:\Program Files\PowerISO\PWRISOSH.DLLC:\Program Files\7-Zip\7-zip.dll

Po jednom je zakazuj a pak se odhlaš a znovu přihlaš a vyzkoušej, zda se chyba objeví.
-každý má svou pravdu a ta se nemusí vždycky shodovat s tvou vlastní
-naše problémy jsou pouze v naší hlavě
-okolní svět není ani dobrý ani špatný, je mu zcela lhostejné, jestli existuješ
-nejdůležitější v životě je láska. Všechno ostatní jsou zbytečnosti

Uživatelský avatar
autoprd
Level 4.5
Level 4.5
Příspěvky: 1715
Registrován: únor 09
Bydliště: ▼▲☺U Pc ☺▼▲
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: PRoBLém s user32.dll

Příspěvekod autoprd » 03 srp 2010 09:09

skoushel sem postupně i potom vshechny najednou a furt chyba :(

Uživatelský avatar
MiliNess
člen BSOD týmu
Master Level 9.5
Master Level 9.5
Příspěvky: 9112
Registrován: říjen 09
Bydliště: Cheb
Pohlaví: Muž
Stav:
Offline

Re: PRoBLém s user32.dll

Příspěvekod MiliNess » 03 srp 2010 16:38

Tak pak už jedině odinstalovat internet explorer, udělat opravnou instalaci Windows a pak znovu nainstalovat Explorer.
-každý má svou pravdu a ta se nemusí vždycky shodovat s tvou vlastní
-naše problémy jsou pouze v naší hlavě
-okolní svět není ani dobrý ani špatný, je mu zcela lhostejné, jestli existuješ
-nejdůležitější v životě je láska. Všechno ostatní jsou zbytečnosti

Uživatelský avatar
autoprd
Level 4.5
Level 4.5
Příspěvky: 1715
Registrován: únor 09
Bydliště: ▼▲☺U Pc ☺▼▲
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: PRoBLém s user32.dll

Příspěvekod autoprd » 03 srp 2010 22:08

Taq tlOCHu PoMALEJSH a TUTOrial xD

Uživatelský avatar
MiliNess
člen BSOD týmu
Master Level 9.5
Master Level 9.5
Příspěvky: 9112
Registrován: říjen 09
Bydliště: Cheb
Pohlaví: Muž
Stav:
Offline

Re: PRoBLém s user32.dll

Příspěvekod MiliNess » 03 srp 2010 23:22

Je těžké odhadnout, kde je chyba. Koukal jsem, že to dokonce padá i při volání jiných funkcí.
-každý má svou pravdu a ta se nemusí vždycky shodovat s tvou vlastní
-naše problémy jsou pouze v naší hlavě
-okolní svět není ani dobrý ani špatný, je mu zcela lhostejné, jestli existuješ
-nejdůležitější v životě je láska. Všechno ostatní jsou zbytečnosti

Uživatelský avatar
autoprd
Level 4.5
Level 4.5
Příspěvky: 1715
Registrován: únor 09
Bydliště: ▼▲☺U Pc ☺▼▲
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: PRoBLém s user32.dll

Příspěvekod autoprd » 04 srp 2010 00:04

viry nu xD




  • Mohlo by vás zajímat
    Odpovědi
    Zobrazení
    Poslední příspěvek
  • Problém s RAM
    od lukas222 » 04 lis 2024 13:52 » v Problémy s hardwarem
    4
    3530
    od lukas222 Zobrazit poslední příspěvek
    05 lis 2024 13:36
  • Problém s FPS
    od mcrakvar » 26 lis 2024 16:22 » v Vše ostatní (sw)
    4
    4216
    od petr22 Zobrazit poslední příspěvek
    28 lis 2024 10:06
  • Problém s fps spojený s gpu
    od Matyas.S » 02 pro 2024 20:30 » v Hry
    0
    2345
    od Matyas.S Zobrazit poslední příspěvek
    02 pro 2024 20:30
  • Problém s monitorom
    od sloliv » 08 led 2025 04:55 » v Problémy s hardwarem
    8
    2473
    od sloliv Zobrazit poslední příspěvek
    08 led 2025 22:03
  • Bios problém
    od helpmeboys » 19 zář 2024 19:30 » v Problémy s hardwarem
    2
    3069
    od šulda Zobrazit poslední příspěvek
    20 zář 2024 07:05

Zpět na “Windows 11, 10, 8...”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 3 hosti