Toepassingsuitzondering: Toep: C:\Program Files\LFS\LFS.exe (PID=5620) Tijd: 16-6-2007 @ 18:32:27.968 Uitzonderingsnummer: c0000005 (schending van toegang) *----> Systeemgegevens <----* Computernaam: PRIV-24FA24257C Gebruikersnaam: Pc Terminalsessie-id: 0 Aantal processors: 1 Processortype: x86 Family 15 Model 47 Stepping 2 Windows-versie: 5.1 Actieve gecompileerde versie: 2600 Service Pack: 2 Huidig type: Uniprocessor Free Geregistreerde organisatie: Privé Geregistreerde eigenaar: Pc *----> Taakoverzicht <----* 0 System Process 4 System 752 smss.exe 884 csrss.exe 916 winlogon.exe 964 services.exe 976 lsass.exe 1140 Ati2evxx.exe 1152 svchost.exe 1248 svchost.exe 1412 MsMpEng.exe 1452 svchost.exe 1516 Ati2evxx.exe 1556 svchost.exe 1832 svchost.exe 2040 Error 0xD0000022 184 Explorer.EXE 788 Error 0xD0000022 828 Error 0xD0000022 876 Error 0xD0000022 1044 Error 0xD0000022 1424 Error 0xD0000022 1912 spoolsv.exe 324 Error 0xD0000022 360 btwdins.exe 516 ehRecvr.exe 532 ehSched.exe 632 svchost.exe 668 mdm.exe 896 Error 0xD0000022 2260 svchost.exe 2292 svchost.exe 2396 mcrdsvc.exe 2520 WMPNetwk.exe 3072 dllhost.exe 3364 alg.exe 4072 Error 0xD0000022 776 AsusProb.exe 2064 daemon.exe 2108 SOUNDMAN.EXE 2340 LVCOMSX.EXE 2372 LogiTray.exe 2384 MSASCui.exe 2632 CLI.EXE 2308 TeaTimer.exe 2692 ctfmon.exe 2728 FRAPS.EXE 2572 msnmsgr.exe 3396 Nuria.exe 3516 FxSvr2.exe 3688 lwemon.exe 3876 PcSync2.exe 3884 WMPNSCFG.exe 1212 MPAPI3s.exe 3316 BTTray.exe 2764 ServiceLayer.exe 2788 hpqtra08.exe 3696 SetPoint.exe 2556 trillian.exe 1108 BTSTAC~1.EXE 1292 KHALMNPR.EXE 1344 NclBTHandler.exe 4940 cli.exe 4948 cli.exe 5216 hpqSTE08.exe 5796 hprblog.exe 2584 usnsvc.exe 5668 wmplayer.exe 348 wmiprvse.exe 5620 LFS.exe 4300 dwwin.exe 2680 msmsgs.exe 2768 taskmgr.exe 5864 drwtsn32.exe *----> Modulelijst <----* (0000000000400000 - 0000000000b44000: C:\Program Files\LFS\LFS.exe (0000000002220000 - 000000000222f000: C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll (00000000030d0000 - 000000000312f000: C:\Program Files\Freetrack\NPClient.dll (0000000010000000 - 000000001002a000: C:\windows\system32\WmJoyFrc.dll (0000000010100000 - 000000001010e000: C:\Program Files\Logitech\SetPoint\lgscroll.dll (0000000010d00000 - 0000000010d0d000: C:\Program Files\Logitech\SetPoint\GameHook.dll (0000000016000000 - 0000000016028000: C:\Program Files\Trillian\events.dll (000000005b190000 - 000000005b1c8000: C:\windows\system32\uxtheme.dll (000000005d4e0000 - 000000005d57a000: C:\windows\system32\COMCTL32.dll (0000000063560000 - 0000000063bc1000: C:\PROGRAM FILES\FRAPS\FRAPS.DLL (0000000067330000 - 000000006735f000: C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll (0000000068db0000 - 0000000068db9000: C:\windows\system32\HID.DLL (000000006d320000 - 000000006d359000: C:\windows\system32\DINPUT8.dll (000000006deb0000 - 000000006deb6000: C:\windows\system32\d3d8thk.dll (000000006dec0000 - 000000006dfe8000: C:\windows\system32\d3d8.dll (0000000071a20000 - 0000000071a28000: C:\windows\system32\WS2HELP.dll (0000000071a30000 - 0000000071a47000: C:\windows\system32\WS2_32.dll (0000000072210000 - 000000007223b000: C:\windows\system32\DINPUT.dll (0000000072c80000 - 0000000072c88000: C:\windows\system32\msacm32.drv (0000000072c90000 - 0000000072c99000: C:\windows\system32\wdmaud.drv (0000000073e50000 - 0000000073e54000: C:\windows\system32\KsUser.dll (0000000073e80000 - 0000000073edc000: C:\windows\system32\DSOUND.dll (00000000746a0000 - 00000000746eb000: C:\windows\system32\MSCTF.dll (0000000075250000 - 000000007527e000: C:\windows\system32\msctfime.ime (0000000076330000 - 000000007634d000: C:\windows\system32\IMM32.DLL (0000000076350000 - 000000007639a000: C:\windows\system32\comdlg32.dll (0000000076af0000 - 0000000076b1e000: C:\windows\system32\WINMM.dll (0000000076bf0000 - 0000000076c1e000: C:\windows\system32\WINTRUST.dll (0000000076c50000 - 0000000076c78000: C:\windows\system32\IMAGEHLP.dll (00000000770e0000 - 000000007716c000: C:\windows\system32\oleaut32.dll (0000000077390000 - 0000000077493000: C:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (00000000774a0000 - 00000000775dd000: C:\windows\system32\ole32.dll (00000000778e0000 - 00000000779d7000: C:\windows\system32\SETUPAPI.DLL (0000000077a40000 - 0000000077ad5000: C:\windows\system32\CRYPT32.dll (0000000077ae0000 - 0000000077af2000: C:\windows\system32\MSASN1.dll (0000000077b00000 - 0000000077b22000: C:\windows\system32\Apphelp.dll (0000000077ba0000 - 0000000077ba7000: C:\windows\system32\midimap.dll (0000000077bb0000 - 0000000077bc5000: C:\windows\system32\MSACM32.dll (0000000077bd0000 - 0000000077bd8000: C:\windows\system32\VERSION.dll (0000000077be0000 - 0000000077c38000: C:\windows\system32\msvcrt.dll (0000000077da0000 - 0000000077e31000: C:\windows\system32\RPCRT4.dll (0000000077e40000 - 0000000077e87000: C:\windows\system32\GDI32.dll (0000000077e90000 - 0000000077f06000: C:\windows\system32\SHLWAPI.dll (0000000077f40000 - 0000000077feb000: C:\windows\system32\ADVAPI32.dll (000000007c340000 - 000000007c396000: C:\windows\system32\MSVCR71.dll (000000007c3a0000 - 000000007c41b000: C:\windows\system32\MSVCP71.dll (000000007c800000 - 000000007c8ff000: C:\windows\system32\kernel32.dll (000000007c900000 - 000000007c9b6000: C:\windows\system32\ntdll.dll (000000007c9c0000 - 000000007d1e0000: C:\windows\system32\SHELL32.dll (000000007e390000 - 000000007e420000: C:\windows\system32\USER32.dll *----> Statusdump voor subproces-ID 0x898 <----* eax=00000044 ebx=093c137c ecx=00000011 edx=07ebf670 esi=00000040 edi=07ebf6b0 eip=030d28e5 esp=0012fa94 ebp=0012faa4 iopl=0 nv dn ei pl nz ac po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00200616 *** WARNING: Unable to verify checksum for C:\Program Files\Freetrack\NPClient.dll *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Freetrack\NPClient.dll - functie: NPClient 030d28d1 03f3 add esi,ebx 030d28d3 a4 movsb 030d28d4 5f pop edi 030d28d5 5e pop esi 030d28d6 c3 ret 030d28d7 8d7431fc lea esi,[ecx+esi-0x4] 030d28db 8d7c39fc lea edi,[ecx+edi-0x4] 030d28df c1f902 sar ecx,0x2 030d28e2 7811 js NPClient+0x28f5 (030d28f5) 030d28e4 fd std Fout ->030d28e5 f3a5 rep movsd ds:00000040=???????? es:07ebf6b0=00000000 030d28e7 89c1 mov ecx,eax 030d28e9 83e103 and ecx,0x3 030d28ec 83c603 add esi,0x3 030d28ef 83c703 add edi,0x3 030d28f2 f3a4 rep movsb 030d28f4 fc cld 030d28f5 5f pop edi 030d28f6 5e pop esi 030d28f7 c3 ret 030d28f8 66a320d01103 mov [NPClient+0x4d020 (0311d020)],ax *----> Stack Back Trace <----* *** WARNING: Unable to verify checksum for C:\Program Files\LFS\LFS.exe *** ERROR: Module load completed but symbols could not be loaded for C:\Program Files\LFS\LFS.exe WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0012faa4 0048c03b 07ebf670 004dc950 07ebf670 NPClient+0x28e5 0012fb88 004dbba1 00000000 00000000 00000000 LFS+0x8c03b 0012fbdc 004d68f0 07ebf2a0 3c449ba6 00000001 LFS+0xdbba1 0012fce0 00453c93 07ebf2a0 00000000 023a3ba0 LFS+0xd68f0 02622d48 00000000 00000101 0057ec10 004536c0 LFS+0x53c93 *----> Raw Stack Dump <----* 000000000012fa94 7c 13 3c 09 a0 f2 eb 07 - 2b ca 11 03 00 00 00 00 |.<.....+....... 000000000012faa4 88 fb 12 00 3b c0 48 00 - 70 f6 eb 07 50 c9 4d 00 ....;.H.p...P.M. 000000000012fab4 70 f6 eb 07 00 00 00 00 - f8 12 3c 09 a0 f2 eb 07 p.........<..... 000000000012fac4 00 00 00 00 0c 00 00 00 - 3b 00 00 00 00 00 00 00 ........;....... 000000000012fad4 00 00 00 00 9c 81 15 00 - 40 24 16 00 f4 fa 12 00 ........@$...... 000000000012fae4 28 2d 16 00 20 cd 17 00 - fc fa 12 00 28 2d 16 00 (-.. .......(-.. 000000000012faf4 20 cd 17 00 10 fb 12 00 - ad d3 ef 6d 20 00 00 00 ..........m ... 000000000012fb04 08 00 00 00 40 24 16 00 - 7c 13 3c 09 f8 12 3c 09 ....@$..|.<...<. 000000000012fb14 b0 58 ef 6d 28 2d 16 00 - 40 24 16 00 00 00 00 00 .X.m(-..@$...... 000000000012fb24 00 00 00 00 d4 fb 12 00 - 4d 98 ef 6d a4 fb 12 00 ........M..m.... 000000000012fb34 00 1e 31 01 c3 a3 8b ff - a0 f2 eb 07 16 00 00 00 ..1............. 000000000012fb44 01 00 00 00 01 00 00 10 - 00 00 00 00 00 00 00 00 ................ 000000000012fb54 00 00 00 00 68 fb 12 00 - 28 2d 16 00 20 cd 17 00 ....h...(-.. ... 000000000012fb64 7c fb 12 00 ad d3 ef 6d - 20 00 00 00 08 00 00 00 |......m ....... 000000000012fb74 40 24 16 00 a0 74 b3 00 - 94 fb 12 00 b0 58 ef 6d @$...t.......X.m 000000000012fb84 28 2d 16 00 dc fb 12 00 - a1 bb 4d 00 00 00 00 00 (-........M..... 000000000012fb94 00 00 00 00 00 00 00 00 - a6 9b 44 3c 00 00 00 00 ..........D<.... 000000000012fba4 00 00 00 00 a0 f2 eb 07 - 44 24 16 00 00 00 00 00 ........D$...... 000000000012fbb4 a0 fb 12 00 b0 ff 12 00 - 18 bd fc 6d 01 00 00 00 ...........m.... 000000000012fbc4 00 1e 31 01 00 1e 31 01 - c3 a3 8b ff e0 fc 12 00 ..1...1......... *----> Statusdump voor subproces-ID 0x13a4 <----* eax=72c930e8 ebx=02d9fef8 ecx=0000004b edx=0191e2c0 esi=00000000 edi=7ffd5000 eip=7c90eb94 esp=02d9fed0 ebp=02d9ff6c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\windows\system32\ntdll.dll - functie: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\windows\system32\kernel32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\windows\system32\wdmaud.drv - ChildEBP RetAddr Args to Child 02d9ff6c 7c80a075 00000002 02d9ffa4 00000000 ntdll!KiFastSystemCallRet 02d9ff88 72c9312a 00000002 02d9ffa4 00000000 kernel32!WaitForMultipleObjects+0x18 02d9ffb4 7c80b683 00000000 00000000 00140000 wdmaud!midMessage+0x348 02d9ffec 00000000 72c930e8 00000000 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 0000000002d9fed0 ab e9 90 7c e2 94 80 7c - 02 00 00 00 f8 fe d9 02 ...|...|........ 0000000002d9fee0 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002d9fef0 00 00 00 00 00 00 00 00 - 7c 01 00 00 70 01 00 00 ........|...p... 0000000002d9ff00 02 0c 54 80 24 4c 75 b8 - 20 c0 87 84 20 f1 df ff ..T.$Lu. ... ... 0000000002d9ff10 bc c1 87 84 68 03 50 80 - 14 00 00 00 01 00 00 00 ....h.P......... 0000000002d9ff20 00 00 00 00 00 00 00 00 - 10 00 00 00 54 c0 87 84 ............T... 0000000002d9ff30 00 00 00 00 3a 86 63 80 - 00 50 fd 7f 00 d0 fd 7f ....:.c..P...... 0000000002d9ff40 00 d0 fd 7f 00 00 00 00 - f8 fe d9 02 00 00 00 00 ................ 0000000002d9ff50 02 00 00 00 ec fe d9 02 - 00 00 00 00 dc ff d9 02 ................ 0000000002d9ff60 a8 9a 83 7c d8 95 80 7c - 00 00 00 00 88 ff d9 02 ...|...|........ 0000000002d9ff70 75 a0 80 7c 02 00 00 00 - a4 ff d9 02 00 00 00 00 u..|............ 0000000002d9ff80 ff ff ff ff 00 00 00 00 - b4 ff d9 02 2a 31 c9 72 ............*1.r 0000000002d9ff90 02 00 00 00 a4 ff d9 02 - 00 00 00 00 ff ff ff ff ................ 0000000002d9ffa0 00 00 14 00 7c 01 00 00 - 70 01 00 00 00 00 00 00 ....|...p....... 0000000002d9ffb0 dc e2 90 7c ec ff d9 02 - 83 b6 80 7c 00 00 00 00 ...|.......|.... 0000000002d9ffc0 00 00 00 00 00 00 14 00 - 00 00 00 00 00 d0 fd 7f ................ 0000000002d9ffd0 00 e6 e5 89 c0 ff d9 02 - 18 23 63 86 ff ff ff ff .........#c..... 0000000002d9ffe0 a8 9a 83 7c 90 b6 80 7c - 00 00 00 00 00 00 00 00 ...|...|........ 0000000002d9fff0 00 00 00 00 e8 30 c9 72 - 00 00 00 00 00 00 00 00 .....0.r........ 0000000002da0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Statusdump voor subproces-ID 0x1568 <----* eax=73e8368c ebx=01931e88 ecx=01017530 edx=7c90eb94 esi=00000000 edi=7ffd5000 eip=7c90eb94 esp=02e9fd88 ebp=02e9fe24 iopl=0 vif nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00080246 functie: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\windows\system32\DSOUND.dll - ChildEBP RetAddr Args to Child 02e9fe24 7c80a075 00000040 02e9fe78 00000000 ntdll!KiFastSystemCallRet 02e9fe40 73e814a2 00000040 02e9fe78 00000000 kernel32!WaitForMultipleObjects+0x18 02e9fe58 73e8294a 00000040 ffffffff 00000000 DSOUND+0x14a2 02e9ff78 73e89fbf ffffffff 0000003f 01013c70 DSOUND+0x294a 02e9ff98 73e8297e 01012668 010174e4 73e8b993 DSOUND!DirectSoundCreate+0x537c 02e9ffb4 7c80b683 010174e4 01012668 0012fb24 DSOUND+0x297e 02e9ffec 00000000 73e8b94b 010174e4 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 0000000002e9fd88 ab e9 90 7c e2 94 80 7c - 40 00 00 00 88 1e 93 01 ...|...|@....... 0000000002e9fd98 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002e9fda8 40 00 00 00 01 00 00 00 - 05 27 81 00 06 28 7f 00 @........'...(.. 0000000002e9fdb8 08 29 7e 00 00 00 00 00 - 38 00 00 00 23 00 00 00 .)~.....8...#... 0000000002e9fdc8 23 00 00 00 68 26 01 01 - 14 00 00 00 01 00 00 00 #...h&.......... 0000000002e9fdd8 00 00 00 00 00 00 00 00 - 10 00 00 00 a6 68 91 7c .............h.| 0000000002e9fde8 59 06 81 7c 00 c0 fd 7f - 00 50 fd 7f 00 c0 fd 7f Y..|.....P...... 0000000002e9fdf8 00 c0 fd 7f 00 00 00 00 - 88 1e 93 01 01 00 00 00 ................ 0000000002e9fe08 40 00 00 00 a4 fd e9 02 - 03 04 27 00 dc ff e9 02 @.........'..... 0000000002e9fe18 a8 9a 83 7c d8 95 80 7c - 00 00 00 00 40 fe e9 02 ...|...|....@... 0000000002e9fe28 75 a0 80 7c 40 00 00 00 - 78 fe e9 02 00 00 00 00 u..|@...x....... 0000000002e9fe38 ff ff ff ff 00 00 00 00 - 58 fe e9 02 a2 14 e8 73 ........X......s 0000000002e9fe48 40 00 00 00 78 fe e9 02 - 00 00 00 00 ff ff ff ff @...x........... 0000000002e9fe58 78 ff e9 02 4a 29 e8 73 - 40 00 00 00 ff ff ff ff x...J).s@....... 0000000002e9fe68 00 00 00 00 78 fe e9 02 - e4 74 01 01 e4 74 01 01 ....x....t...t.. 0000000002e9fe78 b4 02 00 00 a8 01 00 00 - ac 01 00 00 c4 01 00 00 ................ 0000000002e9fe88 c8 01 00 00 b8 01 00 00 - cc 01 00 00 d0 01 00 00 ................ 0000000002e9fe98 d4 01 00 00 d8 01 00 00 - dc 01 00 00 e0 01 00 00 ................ 0000000002e9fea8 e4 01 00 00 e8 01 00 00 - ec 01 00 00 f0 01 00 00 ................ 0000000002e9feb8 f4 01 00 00 f8 01 00 00 - fc 01 00 00 00 02 00 00 ................ *----> Statusdump voor subproces-ID 0xc94 <----* eax=02250000 ebx=0309fdb8 ecx=0309fe6c edx=7c90eb94 esi=00000000 edi=7ffd5000 eip=7c90eb94 esp=0309fd90 ebp=0309fe2c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 functie: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0309fe2c 7c80a075 00000001 0309fe80 00000000 ntdll!KiFastSystemCallRet 0309fe48 73e814a2 00000001 0309fe80 00000000 kernel32!WaitForMultipleObjects+0x18 0309fe60 73e8294a 00000001 000001f4 00000000 DSOUND+0x14a2 0309ff80 73e82a13 000001f4 00000000 00000000 DSOUND+0x294a 0309ffb4 7c80b683 01011efc 01000001 0012f91c DSOUND+0x2a13 0309ffec 00000000 73e8b94b 01011efc 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000309fd90 ab e9 90 7c e2 94 80 7c - 01 00 00 00 b8 fd 09 03 ...|...|........ 000000000309fda0 01 00 00 00 00 00 00 00 - ec fd 09 03 00 00 00 00 ................ 000000000309fdb0 01 00 00 00 01 00 00 00 - d0 02 00 00 24 95 80 7c ............$..| 000000000309fdc0 00 00 00 00 12 95 80 7c - 40 97 01 01 00 00 00 00 .......|@....... 000000000309fdd0 00 00 00 00 c0 02 00 00 - 14 00 00 00 01 00 00 00 ................ 000000000309fde0 00 00 00 00 00 00 00 00 - 10 00 00 00 c0 b4 b3 ff ................ 000000000309fdf0 ff ff ff ff 84 fe 09 03 - 00 50 fd 7f 00 b0 fd 7f .........P...... 000000000309fe00 12 95 80 7c ec fd 09 03 - b8 fd 09 03 1c fe 09 03 ...|............ 000000000309fe10 01 00 00 00 ac fd 09 03 - c0 1b f7 02 dc ff 09 03 ................ 000000000309fe20 a8 9a 83 7c d8 95 80 7c - 00 00 00 00 48 fe 09 03 ...|...|....H... 000000000309fe30 75 a0 80 7c 01 00 00 00 - 80 fe 09 03 00 00 00 00 u..|............ 000000000309fe40 f4 01 00 00 00 00 00 00 - 60 fe 09 03 a2 14 e8 73 ........`......s 000000000309fe50 01 00 00 00 80 fe 09 03 - 00 00 00 00 f4 01 00 00 ................ 000000000309fe60 80 ff 09 03 4a 29 e8 73 - 01 00 00 00 f4 01 00 00 ....J).s........ 000000000309fe70 00 00 00 00 80 fe 09 03 - fc 1e 01 01 fc 1e 01 01 ................ 000000000309fe80 d0 02 00 00 00 00 00 00 - 20 00 00 00 b4 fe 09 03 ........ ....... 000000000309fe90 01 00 00 00 00 00 00 00 - 02 00 00 00 00 00 00 00 ................ 000000000309fea0 00 00 00 00 c4 fe 09 03 - ab e9 90 7c e2 94 80 7c ...........|...| 000000000309feb0 00 b0 fd 7f 44 ff 09 03 - 24 95 80 7c f0 fe 09 03 ....D...$..|.... 000000000309fec0 12 95 80 7c 00 00 00 00 - fc 1e 01 01 fc 1e 01 01 ...|............ *----> Statusdump voor subproces-ID 0x1224 <----* eax=000000c0 ebx=0130fea0 ecx=00000000 edx=7c90eb94 esi=00000000 edi=7ffd5000 eip=7c90eb94 esp=0130fe78 ebp=0130ff14 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 functie: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\windows\system32\USER32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\windows\system32\DINPUT8.dll - ChildEBP RetAddr Args to Child 0130ff14 7e3995f9 00000001 0130ff3c 00000000 ntdll!KiFastSystemCallRet 0130ff70 6d329a67 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 0130ffb4 7c80b683 00159f48 7c913288 00000000 DINPUT8+0x9a67 0130ffec 00000000 6d3299b1 00159f48 00000000 kernel32!GetModuleFileNameA+0x1b4 *----> Raw Stack Dump <----* 000000000130fe78 ab e9 90 7c e2 94 80 7c - 01 00 00 00 a0 fe 30 01 ...|...|......0. 000000000130fe88 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000130fe98 01 00 00 00 02 00 00 00 - 50 01 00 00 00 00 00 00 ........P....... 000000000130fea8 ec fe 30 01 fc 98 32 6d - 18 ff 30 01 d9 8b 39 7e ..0...2m..0...9~ 000000000130feb8 00 e0 fd 7f 18 ff 30 01 - 14 00 00 00 01 00 00 00 ......0......... 000000000130fec8 00 00 00 00 00 00 00 00 - 10 00 00 00 00 00 00 00 ................ 000000000130fed8 14 00 00 00 01 00 00 00 - 00 50 fd 7f 00 e0 fd 7f .........P...... 000000000130fee8 10 00 00 00 00 00 00 00 - a0 fe 30 01 c0 00 00 00 ..........0..... 000000000130fef8 01 00 00 00 94 fe 30 01 - cc fe 30 01 dc ff 30 01 ......0...0...0. 000000000130ff08 a8 9a 83 7c d8 95 80 7c - 00 00 00 00 70 ff 30 01 ...|...|....p.0. 000000000130ff18 f9 95 39 7e 01 00 00 00 - 3c ff 30 01 00 00 00 00 ..9~....<.0..... 000000000130ff28 ff ff ff ff 01 00 00 00 - 62 01 43 00 00 00 00 00 ........b.C..... 000000000130ff38 17 a0 80 7c 50 01 00 00 - 17 a0 80 7c 00 e0 fd 7f ...|P......|.... 000000000130ff48 27 9f 85 00 98 ff 30 01 - 00 00 00 00 00 00 00 00 '.....0......... 000000000130ff58 38 ff 30 01 01 00 00 00 - 00 00 00 00 01 00 00 00 8.0............. 000000000130ff68 00 e0 fd 7f 50 01 00 00 - b4 ff 30 01 67 9a 32 6d ....P.....0.g.2m 000000000130ff78 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 000000000130ff88 3c ff 30 01 88 32 91 7c - 00 00 00 00 48 9f 15 00 <.0..2.|....H... 000000000130ff98 00 00 00 00 13 01 00 00 - 88 7d 00 00 fc 98 32 6d .........}....2m 000000000130ffa8 27 9f 85 00 1f 03 00 00 - 24 02 00 00 ec ff 30 01 '.......$.....0. *----> Statusdump voor subproces-ID 0xd50 <----* eax=00000001 ebx=00000010 ecx=03133c68 edx=00000001 esi=00000000 edi=0336fec8 eip=7c90eb94 esp=0336fe98 ebp=0336fef0 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 functie: ntdll!KiFastSystemCallRet 7c90eb89 90 nop 7c90eb8a 90 nop ntdll!KiFastSystemCall: 7c90eb8b 8bd4 mov edx,esp 7c90eb8d 0f34 sysenter 7c90eb8f 90 nop 7c90eb90 90 nop 7c90eb91 90 nop 7c90eb92 90 nop 7c90eb93 90 nop ntdll!KiFastSystemCallRet: 7c90eb94 c3 ret 7c90eb95 8da42400000000 lea esp,[esp] 7c90eb9c 8d642400 lea esp,[esp] 7c90eba0 90 nop 7c90eba1 90 nop 7c90eba2 90 nop 7c90eba3 90 nop 7c90eba4 90 nop ntdll!KiIntSystemCall: 7c90eba5 8d542408 lea edx,[esp+0x8] 7c90eba9 cd2e int 2e *----> Stack Back Trace <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** WARNING: Unable to verify checksum for C:\windows\system32\WmJoyFrc.dll *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\windows\system32\WmJoyFrc.dll - ChildEBP RetAddr Args to Child 0336fef0 7c802451 00000008 00000000 0000251c ntdll!KiFastSystemCallRet 0336ff00 10007cef 00000008 7c802520 031337b8 kernel32!Sleep+0xf 0000251c 00000000 00000000 00000000 00000000 WmJoyFrc+0x7cef *----> Raw Stack Dump <----* 000000000336fe98 5c d8 90 7c ed 23 80 7c - 00 00 00 00 c8 fe 36 03 \..|.#.|......6. 000000000336fea8 10 27 00 00 b8 37 13 03 - 10 00 00 00 14 00 00 00 .'...7.......... 000000000336feb8 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................ 000000000336fec8 80 c7 fe ff ff ff ff ff - 01 00 00 00 c8 fe 36 03 ..............6. 000000000336fed8 a8 fe 36 03 e8 21 00 10 - dc ff 36 03 a8 9a 83 7c ..6..!....6....| 000000000336fee8 58 24 80 7c 00 00 00 00 - 00 ff 36 03 51 24 80 7c X$.|......6.Q$.| 000000000336fef8 08 00 00 00 00 00 00 00 - 1c 25 00 00 ef 7c 00 10 .........%...|.. 000000000336ff08 08 00 00 00 20 25 80 7c - b8 37 13 03 ec ff 36 03 .... %.|.7....6. 000000000336ff18 00 00 00 00 10 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000336ff28 00 00 00 00 09 00 00 00 - 00 00 00 00 01 00 00 00 ................ 000000000336ff38 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000336ff48 01 00 00 00 00 00 00 00 - 00 00 00 00 4e a1 85 00 ............N... 000000000336ff58 01 00 00 00 01 00 00 00 - ff ff ff ff ff ff ff ff ................ 000000000336ff68 ff ff ff ff 14 00 00 00 - 00 a0 fd 7f 00 00 00 00 ................ 000000000336ff78 00 00 00 00 a8 9a 83 7c - 00 00 00 00 24 78 00 10 .......|....$x.. 000000000336ff88 b8 37 13 03 32 25 80 7c - 94 03 00 00 ff ff ff ff .7..2%.|........ 000000000336ff98 00 00 00 00 ec ff 36 03 - 11 6b 00 10 26 6b 00 10 ......6..k..&k.. 000000000336ffa8 00 00 00 00 ff ff ff ff - 32 07 91 7c b8 37 13 03 ........2..|.7.. 000000000336ffb8 83 b6 80 7c b8 37 13 03 - ff ff ff ff 32 07 91 7c ...|.7......2..| 000000000336ffc8 b8 37 13 03 00 a0 fd 7f - 00 e6 e5 89 c0 ff 36 03 .7............6.