Microsoft (R) DrWtsn32 Copyright (C) 1985-2001 Microsoft Corp. Wszelkie prawa zastrzeżone. Wystąpił wyjątek aplikacji: Apl: C:\Program Files\Internet Explorer\iexplore.exe (pid=1316) Kiedy: 2013-07-05 @ 11:52:04.728 Numer wyjątku: c0000005 (naruszenie praw dostępu) *----> Informacje o systemie <----* Nazwa komputera: OEM-23004A62F73 Nazwa użytkownika: oem Identyfikator sesji terminala: 0 Liczba procesorów: 1 Typ procesora: x86 Family 15 Model 2 Stepping 7 Wersja systemu Windows: 5.1 Bieżąca kompilacja: 2600 Dodatek Service Pack: 3. Bieżący typ: Uniprocessor Free Zarejestrowana organizacja: Zarejestrowany właściciel: oem *----> Lista zadań <----* 0 System Process 4 System 792 smss.exe 848 csrss.exe 876 winlogon.exe 920 services.exe 932 lsass.exe 1104 svchost.exe 1192 svchost.exe 1340 svchost.exe 1412 svchost.exe 1524 svchost.exe 1856 Explorer.EXE 1936 spoolsv.exe 572 egui.exe 704 svchost.exe 768 ACService.exe 820 ekrn.exe 812 ctfmon.exe 824 GoogleToolbarNotifier.exe 1420 mdm.exe 1488 svchost.exe 1124 alg.exe 1588 iexplore.exe 1316 iexplore.exe 3456 drwtsn32.exe *----> Lista modułów <----* (0000000000400000 - 000000000049c000: C:\Program Files\Internet Explorer\iexplore.exe (00000000016d0000 - 00000000019a2000: C:\WINDOWS\system32\xpsp2res.dll (0000000001cb0000 - 0000000001cb9000: C:\WINDOWS\system32\Normaliz.dll (00000000024a0000 - 00000000024b0000: C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (00000000025d0000 - 00000000026c9000: C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (0000000002dd0000 - 0000000002df9000: C:\WINDOWS\system32\msls31.dll (0000000006010000 - 0000000006485000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll (0000000006590000 - 000000000668f000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E7110F8B630E4F04.dll (000000000aa50000 - 000000000ba6f000: C:\WINDOWS\system32\Macromed\Flash\Flash32_11_7_700_202.ocx (0000000010000000 - 0000000010033000: C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (000000001b000000 - 000000001b00c000: C:\WINDOWS\system32\ImgUtil.dll (000000001b060000 - 000000001b06e000: C:\WINDOWS\system32\pngfilt.dll (000000001f840000 - 000000001f858000: C:\WINDOWS\system32\odbcint.dll (0000000035c50000 - 0000000035c89000: C:\WINDOWS\system32\Dxtrans.dll (0000000035cb0000 - 0000000035d07000: C:\WINDOWS\system32\Dxtmsft.dll (000000003f330000 - 000000003f8f0000: C:\WINDOWS\system32\mshtml.dll (000000003fc30000 - 000000003fce4000: C:\WINDOWS\system32\jscript.dll (000000003fcf0000 - 000000003fdd7000: C:\WINDOWS\system32\WININET.dll (0000000040390000 - 000000004057c000: C:\WINDOWS\system32\iertutil.dll (0000000040580000 - 000000004101d000: C:\WINDOWS\system32\IEFRAME.dll (0000000042a20000 - 0000000042a4f000: C:\WINDOWS\system32\iepeers.dll (0000000042dc0000 - 0000000042e81000: C:\Program Files\Common Files\Microsoft Shared\VGX\vgx.dll (00000000451f0000 - 00000000451f6000: C:\Program Files\Internet Explorer\xpshims.dll (0000000045330000 - 0000000045464000: C:\WINDOWS\system32\urlmon.dll (0000000045530000 - 0000000045570000: C:\Program Files\Internet Explorer\ieproxy.dll (0000000047060000 - 0000000047081000: C:\WINDOWS\system32\XmlLite.dll (000000004ebc0000 - 000000004ed6b000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll (0000000059bc0000 - 0000000059c61000: C:\WINDOWS\system32\dbghelp.dll (000000005b1d0000 - 000000005b208000: C:\WINDOWS\system32\uxtheme.dll (000000005cfe0000 - 000000005d006000: C:\WINDOWS\system32\ShimEng.dll (000000005d520000 - 000000005d5ba000: C:\WINDOWS\system32\comctl32.dll (0000000061880000 - 00000000618ba000: C:\WINDOWS\system32\OLEACC.dll (0000000066780000 - 00000000667d8000: C:\WINDOWS\system32\hnetcfg.dll (0000000068000000 - 0000000068036000: C:\WINDOWS\system32\rsaenh.dll (0000000068100000 - 0000000068126000: C:\WINDOWS\system32\dssenh.dll (000000006d1a0000 - 000000006d1a8000: C:\WINDOWS\system32\dispex.dll (000000006d440000 - 000000006d44c000: C:\Program Files\Java\jre6\bin\jp2ssv.dll (000000006d970000 - 000000006d97a000: C:\WINDOWS\system32\ddrawex.dll (000000006daf0000 - 000000006db02000: C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (000000006ff40000 - 000000006ff95000: C:\WINDOWS\system32\NETAPI32.dll (0000000071620000 - 0000000071699000: C:\WINDOWS\AppPatch\AcLayers.DLL (00000000719f0000 - 0000000071a30000: C:\WINDOWS\system32\mswsock.dll (0000000071a30000 - 0000000071a38000: C:\WINDOWS\System32\wshtcpip.dll (0000000071a40000 - 0000000071a48000: C:\WINDOWS\system32\WS2HELP.dll (0000000071a50000 - 0000000071a67000: C:\WINDOWS\system32\ws2_32.dll (0000000071ac0000 - 0000000071ad2000: C:\WINDOWS\system32\MPR.dll (0000000071ba0000 - 0000000071bb3000: C:\WINDOWS\System32\SAMLIB.dll (0000000071bc0000 - 0000000071bce000: C:\WINDOWS\System32\ntlanman.dll (0000000071c30000 - 0000000071c37000: C:\WINDOWS\System32\NETRAP.dll (0000000071c40000 - 0000000071c80000: C:\WINDOWS\System32\NETUI1.dll (0000000071c80000 - 0000000071c97000: C:\WINDOWS\System32\NETUI0.dll (0000000071cf0000 - 0000000071d0b000: C:\WINDOWS\system32\actxprxy.dll (0000000072260000 - 0000000072265000: C:\WINDOWS\system32\sensapi.dll (0000000072ca0000 - 0000000072ca8000: C:\WINDOWS\system32\msacm32.drv (0000000072cb0000 - 0000000072cb9000: C:\WINDOWS\system32\wdmaud.drv (0000000072ea0000 - 0000000072f0f000: C:\WINDOWS\system32\ieapfltr.dll (0000000072f90000 - 0000000072fb6000: C:\WINDOWS\system32\WINSPOOL.DRV (0000000073290000 - 00000000732fa000: C:\WINDOWS\system32\vbscript.dll (00000000736f0000 - 000000007373b000: C:\WINDOWS\system32\DDRAW.dll (00000000738d0000 - 00000000739a0000: C:\WINDOWS\system32\D3DIM700.DLL (0000000073ac0000 - 0000000073ad5000: C:\WINDOWS\system32\mscms.dll (0000000073b30000 - 0000000073b44000: C:\WINDOWS\system32\sti.dll (0000000073b50000 - 0000000073b56000: C:\WINDOWS\system32\DCIMAN32.dll (0000000073c70000 - 0000000073c91000: C:\WINDOWS\system32\T2EMBED.DLL (0000000073d50000 - 0000000073d53000: C:\WINDOWS\system32\LZ32.dll (0000000073ea0000 - 0000000073efc000: C:\WINDOWS\system32\DSOUND.dll (0000000074600000 - 000000007463d000: C:\WINDOWS\system32\ODBC32.dll (00000000746a0000 - 00000000746ca000: C:\WINDOWS\system32\msimtf.dll (00000000746d0000 - 000000007471c000: C:\WINDOWS\system32\MSCTF.dll (0000000074930000 - 0000000074a53000: C:\WINDOWS\system32\msxml3.dll (0000000074a90000 - 0000000074a97000: C:\WINDOWS\system32\CFGMGR32.dll (0000000074d40000 - 0000000074dab000: C:\WINDOWS\system32\USP10.dll (0000000075180000 - 00000000751ae000: C:\WINDOWS\system32\msctfime.ime (0000000075940000 - 0000000075a39000: C:\WINDOWS\system32\MSGINA.dll (0000000075d70000 - 0000000075e01000: C:\WINDOWS\system32\MLANG.dll (0000000075f30000 - 0000000075f37000: C:\WINDOWS\System32\drprov.dll (0000000075f40000 - 0000000075f4a000: C:\WINDOWS\System32\davclnt.dll (0000000076330000 - 0000000076340000: C:\WINDOWS\system32\WINSTA.dll (0000000076350000 - 0000000076355000: C:\WINDOWS\system32\MSIMG32.dll (0000000076360000 - 000000007637d000: C:\WINDOWS\system32\IMM32.DLL (0000000076380000 - 00000000763c9000: C:\WINDOWS\system32\comdlg32.dll (0000000076770000 - 000000007677c000: C:\WINDOWS\system32\cryptdll.dll (00000000767d0000 - 00000000767f9000: C:\WINDOWS\system32\schannel.dll (0000000076970000 - 0000000076996000: C:\WINDOWS\system32\ntshrui.dll (00000000769a0000 - 0000000076a55000: C:\WINDOWS\system32\USERENV.dll (0000000076b00000 - 0000000076b11000: C:\WINDOWS\system32\ATL.DLL (0000000076b20000 - 0000000076b4e000: C:\WINDOWS\system32\WINMM.dll (0000000076be0000 - 0000000076beb000: C:\WINDOWS\system32\PSAPI.DLL (0000000076c20000 - 0000000076c4e000: C:\WINDOWS\system32\WINTRUST.dll (0000000076c80000 - 0000000076ca8000: C:\WINDOWS\system32\IMAGEHLP.dll (0000000076d50000 - 0000000076d69000: C:\WINDOWS\system32\iphlpapi.dll (0000000076e70000 - 0000000076e7e000: C:\WINDOWS\system32\rtutils.dll (0000000076e80000 - 0000000076e92000: C:\WINDOWS\system32\rasman.dll (0000000076ea0000 - 0000000076ecf000: C:\WINDOWS\system32\TAPI32.dll (0000000076ed0000 - 0000000076f0c000: C:\WINDOWS\system32\RASAPI32.dll (0000000076f10000 - 0000000076f37000: C:\WINDOWS\system32\DNSAPI.dll (0000000076f40000 - 0000000076f48000: C:\WINDOWS\system32\WTSAPI32.dll (0000000076fb0000 - 0000000076fb6000: C:\WINDOWS\system32\rasadhlp.dll (0000000076fc0000 - 000000007703f000: C:\WINDOWS\system32\CLBCATQ.DLL (0000000077040000 - 000000007710d000: C:\WINDOWS\system32\COMRes.dll (0000000077110000 - 000000007719b000: C:\WINDOWS\system32\OLEAUT32.dll (00000000773c0000 - 00000000774c3000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (00000000774d0000 - 000000007760e000: C:\WINDOWS\system32\ole32.dll (0000000077910000 - 0000000077a06000: C:\WINDOWS\system32\SETUPAPI.dll (0000000077a70000 - 0000000077b06000: C:\WINDOWS\system32\CRYPT32.dll (0000000077b10000 - 0000000077b22000: C:\WINDOWS\system32\MSASN1.dll (0000000077b30000 - 0000000077b52000: C:\WINDOWS\system32\appHelp.dll (0000000077bc0000 - 0000000077bc7000: C:\WINDOWS\system32\midimap.dll (0000000077bd0000 - 0000000077be5000: C:\WINDOWS\system32\MSACM32.dll (0000000077bf0000 - 0000000077bf8000: C:\WINDOWS\system32\VERSION.dll (0000000077c00000 - 0000000077c58000: C:\WINDOWS\system32\msvcrt.dll (0000000077c60000 - 0000000077c85000: C:\WINDOWS\system32\msv1_0.dll (0000000077dc0000 - 0000000077e6c000: C:\WINDOWS\system32\ADVAPI32.dll (0000000077e70000 - 0000000077f03000: C:\WINDOWS\system32\RPCRT4.dll (0000000077f10000 - 0000000077f59000: C:\WINDOWS\system32\GDI32.dll (0000000077f60000 - 0000000077fd6000: C:\WINDOWS\system32\SHLWAPI.dll (0000000077fe0000 - 0000000077ff1000: C:\WINDOWS\system32\Secur32.dll (0000000078130000 - 00000000781cb000: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll (000000007c340000 - 000000007c396000: C:\Program Files\Java\jre6\bin\MSVCR71.dll (000000007c800000 - 000000007c8fd000: C:\WINDOWS\system32\kernel32.dll (000000007c900000 - 000000007c9b4000: C:\WINDOWS\system32\ntdll.dll (000000007c9c0000 - 000000007d1de000: C:\WINDOWS\system32\SHELL32.dll (000000007d1e0000 - 000000007d49c000: C:\WINDOWS\system32\msi.dll (000000007d9a0000 - 000000007db06000: C:\WINDOWS\system32\query.dll (000000007e360000 - 000000007e3f1000: C:\WINDOWS\system32\USER32.dll (000000007e540000 - 000000007e59e000: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\UNIDRV.DLL (000000007e5a0000 - 000000007e65a000: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\UNIDRVUI.DLL (000000007e690000 - 000000007e740000: C:\WINDOWS\system32\SXS.DLL *----> Zrzut stanu dla wątku o identyfikatorze 0xdf4 <----* eax=01f00000 ebx=0013fc50 ecx=0013fc30 edx=7c90e514 esi=00000000 edi=7ffd6000 eip=7c90e514 esp=0013fc28 ebp=0013fcc4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\USER32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\iertutil.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\IEFRAME.dll - *** ERROR: Module load completed but symbols could not be loaded for C:\Program Files\Internet Explorer\iexplore.exe *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll - ChildEBP RetAddr Args to Child 0013fcc4 7e3695f9 00000001 0013fcec 00000000 ntdll!KiFastSystemCallRet 0013fd20 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 0013fd70 404f873a 00000000 00000001 00000001 iertutil!Ordinal73+0x103 0013fd90 4062415a 00000001 00000001 77f648e4 iertutil!Ordinal537+0x52 0013fde0 00401484 001556f8 0000000a 0040b090 IEFRAME!Ordinal320+0x15aa6 0013ff2c 0040128e 00400000 00000000 0002070c iexplore+0x1484 0013ffc0 7c81776f 0013cca0 0013ce8c 7ffd6000 iexplore+0x128e 0013fff0 00000000 00401a25 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49 *----> Zrzut stosu <----* 000000000013fc28 4a df 90 7c 90 95 80 7c - 01 00 00 00 50 fc 13 00 J..|...|....P... 000000000013fc38 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000013fc48 01 00 00 00 06 00 00 00 - 30 00 00 00 80 fc 13 00 ........0....... 000000000013fc58 b5 27 4f 40 38 13 e5 00 - 02 00 00 00 01 28 03 00 .'O@8........(.. 000000000013fc68 08 00 00 00 2c fd 13 00 - 14 00 00 00 01 00 00 00 ....,........... 000000000013fc78 00 00 00 00 00 00 00 00 - 10 00 00 00 5d 28 4f 40 ............](O@ 000000000013fc88 70 00 00 00 01 00 00 00 - 00 60 fd 7f 00 f0 fd 7f p........`...... 000000000013fc98 5c f6 90 7c 00 00 00 00 - 50 fc 13 00 01 00 00 00 \..|....P....... 000000000013fca8 01 00 00 00 44 fc 13 00 - 00 00 99 00 b0 ff 13 00 ....D........... 000000000013fcb8 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 20 fd 13 00 ...|...|.... ... 000000000013fcc8 f9 95 36 7e 01 00 00 00 - ec fc 13 00 00 00 00 00 ..6~............ 000000000013fcd8 ff ff ff ff 01 00 00 00 - 00 00 00 00 68 47 99 00 ............hG.. 000000000013fce8 00 00 00 00 30 00 00 00 - 00 00 99 00 00 00 00 00 ....0........... 000000000013fcf8 e3 c2 c1 77 00 00 00 00 - 68 47 99 00 00 00 00 00 ...w....hG...... 000000000013fd08 30 fd 13 00 a6 92 4f 40 - 00 00 00 00 01 00 00 00 0.....O@........ 000000000013fd18 00 f0 fd 7f 30 00 00 00 - 70 fd 13 00 3e 71 4f 40 ....0...p...>qO@ 000000000013fd28 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 000000000013fd38 ec fc 13 00 01 28 03 00 - 68 47 99 00 01 18 01 00 .....(..hG...... 000000000013fd48 b0 ff 13 00 94 5c c2 77 - 88 20 c0 77 ff ff ff ff .....\.w. .w.... 000000000013fd58 ce c3 c1 77 e7 c3 c1 77 - 64 00 00 00 00 00 00 00 ...w...wd....... *----> Zrzut stanu dla wątku o identyfikatorze 0x570 <----* eax=000000c0 ebx=00000000 ecx=00000000 edx=00000007 esi=0013f770 edi=0015ea40 eip=7c90e514 esp=00faff9c ebp=00faffb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 00faffb4 7c80b729 00000000 0015ea40 0013f770 ntdll!KiFastSystemCallRet 00faffec 00000000 7c927d83 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000000faff9c 1a d2 90 7c ca 7d 92 7c - 01 00 00 00 ac ff fa 00 ...|.}.|........ 0000000000faffac 00 00 00 00 00 00 00 80 - ec ff fa 00 29 b7 80 7c ............)..| 0000000000faffbc 00 00 00 00 40 ea 15 00 - 70 f7 13 00 00 00 00 00 ....@...p....... 0000000000faffcc 00 d0 fd 7f 00 46 3c 82 - c0 ff fa 00 48 45 f2 81 .....F<.....HE.. 0000000000faffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 0000000000faffec 00 00 00 00 00 00 00 00 - 83 7d 92 7c 00 00 00 00 .........}.|.... 0000000000fafffc 00 00 00 00 43 6c 69 65 - 6e 74 20 55 72 6c 43 61 ....Client UrlCa 0000000000fb000c 63 68 65 20 4d 4d 46 20 - 56 65 72 20 35 2e 32 00 che MMF Ver 5.2. 0000000000fb001c 00 00 04 00 00 40 00 00 - 80 07 00 00 24 07 00 00 .....@......$... 0000000000fb002c 00 00 00 00 00 00 80 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00bc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00cc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xe70 <----* eax=000000c0 ebx=00000000 ecx=011affb0 edx=7c90e514 esi=00000000 edi=00000001 eip=7c90e514 esp=011afcec ebp=011affb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 011affb4 7c80b729 00000000 00000020 fffffffd ntdll!KiFastSystemCallRet 011affec 00000000 7c92a3f3 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000011afcec 4a df 90 7c 1a a5 92 7c - 17 00 00 00 30 fd 1a 01 J..|...|....0... 00000000011afcfc 01 00 00 00 01 00 00 00 - 00 00 00 00 20 00 00 00 ............ ... 00000000011afd0c fd ff ff ff 00 00 00 00 - a0 f9 97 7c a0 f9 97 7c ...........|...| 00000000011afd1c 0c 01 00 00 70 0e 00 00 - 17 00 00 00 17 00 00 00 ....p........... 00000000011afd2c 16 00 00 00 08 01 00 00 - b8 04 00 00 64 07 00 00 ............d... 00000000011afd3c a4 04 00 00 08 06 00 00 - cc 0b 00 00 e8 0b 00 00 ................ 00000000011afd4c f4 0b 00 00 00 0c 00 00 - 20 0c 00 00 28 0c 00 00 ........ ...(... 00000000011afd5c 30 0c 00 00 3c 0c 00 00 - 44 0c 00 00 50 0c 00 00 0...<...D...P... 00000000011afd6c 5c 0c 00 00 68 0c 00 00 - 78 0c 00 00 84 0c 00 00 \...h...x....... 00000000011afd7c 90 0c 00 00 9c 0c 00 00 - a4 0c 00 00 f4 00 00 00 ................ 00000000011afd8c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd9c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdbc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdcc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afddc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdec 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdfc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe0c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe1c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xa90 <----* eax=7ffda000 ebx=00000000 ecx=00000000 edx=012cfdc4 esi=001531f0 edi=02e9df28 eip=7c90e514 esp=012cfe18 ebp=012cff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\RPCRT4.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 012cff80 77e76caf 012cffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 012cff88 77e76ad1 001531f0 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x61c 012cffa8 77e76c97 0015fb98 012cffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 012cffb4 7c80b729 00160060 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x604 012cffec 00000000 77e76c7d 00160060 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000012cfe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 2c 01 ...|.e.w$...t.,. 00000000012cfe28 38 fe 2c 01 28 df e9 02 - 50 ff 2c 01 00 00 00 00 8.,.(...P.,..... 00000000012cfe38 d0 00 e8 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 00000000012cfe48 2b 61 01 00 00 00 00 00 - 02 00 00 00 01 00 00 00 +a.............. 00000000012cfe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000012cfe68 00 00 00 00 00 00 00 00 - 00 00 02 00 84 00 00 00 ................ 00000000012cfe78 01 00 00 00 78 00 00 00 - ff ff ff ff 01 08 09 00 ....x........... 00000000012cfe88 01 08 0a 00 00 00 00 00 - d3 0b 00 00 06 00 00 00 ................ 00000000012cfe98 16 00 00 00 0a 00 00 80 - 00 00 00 00 12 10 01 00 ................ 00000000012cfea8 00 00 00 00 00 00 00 00 - 01 00 31 00 44 00 00 00 ..........1.D... 00000000012cfeb8 08 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000012cfec8 55 00 6e 00 64 00 6f 00 - 66 00 65 00 6e 00 20 00 U.n.d.o.f.e.n. . 00000000012cfed8 4d 00 41 00 58 00 20 00 - 7c 00 20 00 55 00 6e 00 M.A.X. .|. .U.n. 00000000012cfee8 64 00 6f 00 66 00 65 00 - 6e 00 20 00 4d 00 41 00 d.o.f.e.n. .M.A. 00000000012cfef8 58 00 00 00 84 00 00 00 - 00 00 00 00 00 00 ff 00 X............... 00000000012cff08 90 00 00 00 00 00 00 00 - 98 00 00 00 00 00 00 00 ................ 00000000012cff18 24 4c 22 f4 b2 c2 4d 80 - ba c2 4d 80 44 8b 31 82 $L"...M...M.D.1. 00000000012cff28 d8 89 31 82 80 ff 2c 01 - 85 d1 e7 77 48 ff 2c 01 ..1...,....wH.,. 00000000012cff38 95 d1 e7 77 e0 10 90 7c - 38 00 16 00 60 00 16 00 ...w...|8...`... 00000000012cff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0x84c <----* eax=001bf000 ebx=013ceef0 ecx=013ce290 edx=00001000 esi=00000000 edi=7ffd6000 eip=7c90e514 esp=013ceec8 ebp=013cef64 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 013cef64 7c80a115 00000002 00160660 00000000 ntdll!KiFastSystemCallRet 013cef80 404f2e7c 00000002 00160660 00000000 kernel32!WaitForMultipleObjects+0x18 013cffac 404f8611 013cffec 7c80b729 00161cc0 iertutil!Ordinal457+0x421 013cffb4 7c80b729 00161cc0 7c910222 7c91019b iertutil!Ordinal430+0x34 013cffec 00000000 404f8604 00161cc0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000013ceec8 4a df 90 7c 90 95 80 7c - 02 00 00 00 f0 ee 3c 01 J..|...|......<. 00000000013ceed8 01 00 00 00 00 00 00 00 - 00 00 00 00 02 00 00 00 ................ 00000000013ceee8 c0 1c 16 00 00 1c 16 00 - 38 01 00 00 60 01 00 00 ........8...`... 00000000013ceef8 00 00 00 00 50 f3 15 00 - 14 ef 3c 01 f7 25 4f 40 ....P.....<..%O@ 00000000013cef08 e0 13 e5 00 b0 a4 15 00 - 14 00 00 00 01 00 00 00 ................ 00000000013cef18 00 00 00 00 00 00 00 00 - 10 00 00 00 d8 3b 15 00 .............;.. 00000000013cef28 c0 99 80 7c 60 f5 15 00 - 00 60 fd 7f 00 90 fd 7f ...|`....`...... 00000000013cef38 00 00 00 00 00 00 00 00 - f0 ee 3c 01 00 00 00 00 ..........<..... 00000000013cef48 02 00 00 00 e4 ee 3c 01 - 80 ef 3c 01 dc ff 3c 01 ......<...<...<. 00000000013cef58 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 80 ef 3c 01 ...|...|......<. 00000000013cef68 15 a1 80 7c 02 00 00 00 - 60 06 16 00 00 00 00 00 ...|....`....... 00000000013cef78 ff ff ff ff 00 00 00 00 - ac ff 3c 01 7c 2e 4f 40 ..........<.|.O@ 00000000013cef88 02 00 00 00 60 06 16 00 - 00 00 00 00 ff ff ff ff ....`........... 00000000013cef98 22 02 91 7c c0 1c 16 00 - 9b 01 91 7c 00 00 00 00 "..|.......|.... 00000000013cefa8 00 00 00 00 60 06 16 00 - d8 05 16 00 00 00 00 01 ....`........... 00000000013cefb8 24 df a6 48 56 e5 e2 11 - 83 6b 00 0b 6a 18 0d 21 $..HV....k..j..! 00000000013cefc8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefd8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefe8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013ceff8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xc14 <----* eax=00000000 ebx=014cfe74 ecx=00007941 edx=775f7f58 esi=00000000 edi=7ffd6000 eip=7c90e514 esp=014cfe4c ebp=014cfee8 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 014cfee8 7e3695f9 00000001 014cff10 00000000 ntdll!KiFastSystemCallRet 014cff44 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 014cff94 404f86ae 00000001 00000000 0013facc iertutil!Ordinal73+0x103 014cffb4 7c80b729 0015f0f8 0013facc 0013f98c iertutil!Ordinal536+0x59 014cffec 00000000 404f8655 0015f0f8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000014cfe4c 4a df 90 7c 90 95 80 7c - 01 00 00 00 74 fe 4c 01 J..|...|....t.L. 00000000014cfe5c 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000014cfe6c 01 00 00 00 06 00 00 00 - 64 01 00 00 da 2c 4f 40 ........d....,O@ 00000000014cfe7c e4 fe 4c 01 d9 8b 36 7e - 00 80 fd 7f e4 fe 4c 01 ..L...6~......L. 00000000014cfe8c 5a 88 36 7e a4 fe 4c 01 - 14 00 00 00 01 00 00 00 Z.6~..L......... 00000000014cfe9c 00 00 00 00 00 00 00 00 - 10 00 00 00 01 00 00 00 ................ 00000000014cfeac 00 00 00 00 00 00 00 00 - 00 60 fd 7f 00 80 fd 7f .........`...... 00000000014cfebc 30 00 00 00 00 00 00 00 - 74 fe 4c 01 00 00 00 00 0.......t.L..... 00000000014cfecc 01 00 00 00 68 fe 4c 01 - 34 ff 4c 01 dc ff 4c 01 ....h.L.4.L...L. 00000000014cfedc b0 9a 83 7c 80 96 80 7c - 00 00 00 00 44 ff 4c 01 ...|...|....D.L. 00000000014cfeec f9 95 36 7e 01 00 00 00 - 10 ff 4c 01 00 00 00 00 ..6~......L..... 00000000014cfefc ff ff ff ff 01 00 00 00 - 00 00 00 00 01 00 00 00 ................ 00000000014cff0c 00 00 00 00 64 01 00 00 - 00 00 00 00 44 ff 4c 01 ....d.......D.L. 00000000014cff1c 02 94 36 7e 6c ff 4c 01 - 00 00 00 00 00 00 00 00 ..6~l.L......... 00000000014cff2c 0c ff 4c 01 01 00 00 00 - 00 00 00 00 01 00 00 00 ..L............. 00000000014cff3c 00 80 fd 7f 64 01 00 00 - 94 ff 4c 01 3e 71 4f 40 ....d.....L.>qO@ 00000000014cff4c 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 00000000014cff5c 10 ff 4c 01 68 47 99 00 - f8 f0 15 00 00 00 00 00 ..L.hG.......... 00000000014cff6c f8 00 0b 00 00 04 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000014cff7c de 61 b0 00 23 02 00 00 - 1c 02 00 00 00 00 00 00 .a..#........... *----> Zrzut stanu dla wątku o identyfikatorze 0x4e0 <----* eax=00000000 ebx=00168a80 ecx=00000001 edx=016cdad8 esi=000001d8 edi=00000000 eip=7c90e514 esp=016cd734 ebp=016cd798 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00040246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ole32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\Dxtrans.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\mshtml.dll - ChildEBP RetAddr Args to Child 016cd798 7c802542 000001d8 00000000 00000000 ntdll!KiFastSystemCallRet 016cd7ac 774ef965 000001d8 00000000 00000002 kernel32!WaitForSingleObject+0x12 016cd7c4 774ef919 00168a80 016cd7ec 097d14a0 ole32!CoCreateInstance+0x7a9 016cd7e0 774ef558 00168a40 00000000 016cd800 ole32!CoCreateInstance+0x75d 016cd804 774ef7bc 00168a40 adc6cb82 016cd824 ole32!CoCreateInstance+0x39c 016cd848 774ef6bd 00168a40 adc6cb82 016cd884 ole32!CoCreateInstance+0x600 016cd8bc 774ef5bf 775f9e38 00000017 00000000 ole32!CoCreateInstance+0x501 016cd8e0 774f0930 775f9e38 016cdab0 774d1974 ole32!CoCreateInstance+0x403 016cd8f8 774f0952 016cdab0 016cd914 016cdab0 ole32!CoCreateInstance+0x1774 016cd918 774ef096 016cdab0 016cd9e8 016cdac0 ole32!CoCreateInstance+0x1796 016cd9fc 774ef1b3 016cdab0 00000000 00000003 ole32!CreateBindCtx+0xa96 016cda24 774ef182 016cdab0 00000000 00000003 ole32!CoCreateInstanceEx+0x4f 016cda48 774ef1f0 016cdab0 00000000 00000003 ole32!CoCreateInstanceEx+0x1e 016cda78 406adcec 016cdab0 00000000 00000003 ole32!CoCreateInstance+0x34 016cdac4 35c56f19 016cdba8 00000000 00000003 IEFRAME!IEIsProtectedModeProcess+0x8531 016cdaf8 35c565ac 02f1aa04 00000000 00000000 Dxtrans!DllGetClassObject+0x31d8 016cdbbc 35c55e54 095d17f0 09773dac 00000001 Dxtrans!DllGetClassObject+0x286b 016cdbec 3f34ba04 099c8480 09773dac 00000001 Dxtrans!DllGetClassObject+0x2113 016cdc18 3f34b96a 09791038 094dbb12 094dbb1e mshtml+0x1ba04 016cdc44 3f3496ad 09791038 3f36e1f8 09791038 mshtml+0x1b96a 016cdc58 3f349631 016cdcb4 00000032 0022b978 mshtml+0x196ad 016cdc80 3f338d66 00000000 016cdcc0 3f41a039 mshtml+0x19631 016cdc8c 3f41a039 00234978 00000000 0022b978 mshtml+0x8d66 016cdcc0 3f404d28 016cdd48 3f404c7a 00000000 mshtml!DllGetClassObject+0xccd34 016cdce0 7e368734 00140220 000001d2 00000000 mshtml!DllGetClassObject+0xb7a23 016cdd0c 7e368816 3f404c7a 00140220 00008002 USER32!GetDC+0x6d 016cdd74 7e3689cd 00000000 3f404c7a 00140220 USER32!GetDC+0x14f 016cddd4 7e368a10 016cde08 00000000 016cfeec USER32!GetWindowLongW+0x127 016cdde4 406ac2c5 016cde08 00000000 00996748 USER32!DispatchMessageW+0xf 016cfeec 4065330f 00160f78 0015f1f0 001605e8 IEFRAME!IEIsProtectedModeProcess+0x6b0a 016cffa4 404f8061 00996748 00000000 016cffec IEFRAME!Ordinal170+0x46f4 016cffb4 7c80b729 001605e8 0015f1f0 00000000 iertutil!Ordinal405+0x2c 016cffec 00000000 404f8053 001605e8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000016cd734 5a df 90 7c db 25 80 7c - d8 01 00 00 00 00 00 00 Z..|.%.|........ 00000000016cd744 68 d7 6c 01 01 00 00 00 - 80 8a 16 00 80 8a 16 00 h.l............. 00000000016cd754 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000016cd764 10 00 00 00 00 00 00 00 - 00 00 00 00 00 60 fd 7f .............`.. 00000000016cd774 00 70 fd 7f 68 d7 6c 01 - 02 01 00 00 48 d7 6c 01 .p..h.l.....H.l. 00000000016cd784 00 00 00 00 64 dd 6c 01 - b0 9a 83 7c 08 26 80 7c ....d.l....|.&.| 00000000016cd794 00 00 00 00 ac d7 6c 01 - 42 25 80 7c d8 01 00 00 ......l.B%.|.... 00000000016cd7a4 00 00 00 00 00 00 00 00 - c4 d7 6c 01 65 f9 4e 77 ..........l.e.Nw 00000000016cd7b4 d8 01 00 00 00 00 00 00 - 02 00 00 00 40 8a 16 00 ............@... 00000000016cd7c4 e0 d7 6c 01 19 f9 4e 77 - 80 8a 16 00 ec d7 6c 01 ..l...Nw......l. 00000000016cd7d4 a0 14 7d 09 38 d8 6c 01 - c8 14 7d 09 04 d8 6c 01 ..}.8.l...}...l. 00000000016cd7e4 58 f5 4e 77 40 8a 16 00 - 00 00 00 00 00 d8 6c 01 X.Nw@.........l. 00000000016cd7f4 38 d8 6c 01 cc d8 6c 01 - 04 00 00 00 00 00 00 00 8.l...l......... 00000000016cd804 48 d8 6c 01 bc f7 4e 77 - 40 8a 16 00 82 cb c6 ad H.l...Nw@....... 00000000016cd814 24 d8 6c 01 14 00 00 00 - 9c d8 6c 01 ac d8 6c 01 $.l.......l...l. 00000000016cd824 82 cb c6 ad 4c 42 d2 11 - 95 2a 00 c0 4f a3 4f 05 ....LB...*..O.O. 00000000016cd834 17 00 00 00 54 01 04 80 - 38 9e 5f 77 ff ff ff cf ....T...8._w.... 00000000016cd844 14 00 00 00 bc d8 6c 01 - bd f6 4e 77 40 8a 16 00 ......l...Nw@... 00000000016cd854 82 cb c6 ad 84 d8 6c 01 - 24 d8 6c 01 00 00 00 00 ......l.$.l..... 00000000016cd864 9c d8 6c 01 ac d8 6c 01 - b0 da 6c 01 70 1a 4d 77 ..l...l...l.p.Mw *----> Zrzut stanu dla wątku o identyfikatorze 0xbb4 <----* eax=001c04c4 ebx=00000000 ecx=00160f14 edx=001c77bc esi=00163d78 edi=00163e1c eip=7c90e514 esp=01aafe18 ebp=01aaff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01aaff80 77e76caf 01aaffa8 77e76ad1 00163d78 ntdll!KiFastSystemCallRet 01aaff88 77e76ad1 00163d78 00163b08 00000000 RPCRT4!I_RpcBCacheFree+0x61c 01aaffa8 77e76c97 0015fb98 01aaffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01aaffb4 7c80b729 00163e88 00163b08 00000000 RPCRT4!I_RpcBCacheFree+0x604 01aaffec 00000000 77e76c7d 00163e88 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001aafe18 aa da 90 7c e3 65 e7 77 - 80 01 00 00 74 ff aa 01 ...|.e.w....t... 0000000001aafe28 00 00 00 00 c0 0b eb 06 - 50 ff aa 01 00 00 00 00 ........P....... 0000000001aafe38 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe48 00 00 00 00 00 00 00 00 - 02 00 00 00 00 00 00 00 ................ 0000000001aafe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe68 00 00 00 00 20 00 00 00 - 00 00 00 00 00 00 00 00 .... ........... 0000000001aafe78 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe88 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe98 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafea8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafeb8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafec8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafed8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafee8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafef8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aaff08 00 00 00 00 00 00 00 00 - 00 00 00 00 3c 9f bf 81 ............<... 0000000001aaff18 24 fc 69 f4 b2 c2 4d 80 - ba c2 4d 80 0c 9f bf 81 $.i...M...M..... 0000000001aaff28 a0 9d bf 81 80 ff aa 01 - 85 d1 e7 77 48 ff aa 01 ...........wH... 0000000001aaff38 95 d1 e7 77 e0 10 90 7c - 48 22 16 00 88 3e 16 00 ...w...|H"...>.. 0000000001aaff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xb54 <----* eax=00000000 ebx=00007530 ecx=7ffd4000 edx=775f7e00 esi=00000000 edi=01baff50 eip=7c90e514 esp=01baff20 ebp=01baff78 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01baff78 7c802455 0000ea60 00000000 01baffb4 ntdll!KiFastSystemCallRet 01baff88 774ee3e3 0000ea60 00167248 774ee4a2 kernel32!Sleep+0xf 01baffb4 7c80b729 00167248 7465536c 73655248 ole32!StringFromGUID2+0x51d 01baffec 00000000 774ee4ef 00167248 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001baff20 1a d2 90 7c f1 23 80 7c - 00 00 00 00 50 ff ba 01 ...|.#.|....P... 0000000001baff30 50 25 80 7c f8 7d 5f 77 - 30 75 00 00 14 00 00 00 P%.|.}_w0u...... 0000000001baff40 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................ 0000000001baff50 00 ba 3c dc ff ff ff ff - e4 fe ba 01 50 ff ba 01 ..<.........P... 0000000001baff60 30 ff ba 01 e4 fe ba 01 - dc ff ba 01 b0 9a 83 7c 0..............| 0000000001baff70 60 24 80 7c 00 00 00 00 - 88 ff ba 01 55 24 80 7c `$.|........U$.| 0000000001baff80 60 ea 00 00 00 00 00 00 - b4 ff ba 01 e3 e3 4e 77 `.............Nw 0000000001baff90 60 ea 00 00 48 72 16 00 - a2 e4 4e 77 00 00 00 00 `...Hr....Nw.... 0000000001baffa0 6c 53 65 74 48 72 16 00 - 00 00 4d 77 0a e5 4e 77 lSetHr....Mw..Nw 0000000001baffb0 48 52 65 73 ec ff ba 01 - 29 b7 80 7c 48 72 16 00 HRes....)..|Hr.. 0000000001baffc0 6c 53 65 74 48 52 65 73 - 48 72 16 00 00 40 fd 7f lSetHResHr...@.. 0000000001baffd0 00 46 3c 82 c0 ff ba 01 - 40 6e c0 81 ff ff ff ff .F<.....@n...... 0000000001baffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000001bafff0 00 00 00 00 ef e4 4e 77 - 48 72 16 00 00 00 00 00 ......NwHr...... 0000000001bb0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xc34 <----* eax=00000000 ebx=00000000 ecx=7ffaf000 edx=77efc078 esi=001531f0 edi=00177da8 eip=7c90e514 esp=01cafe18 ebp=01caff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01caff80 77e76caf 01caffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 01caff88 77e76ad1 001531f0 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x61c 01caffa8 77e76c97 0015fb98 01caffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01caffb4 7c80b729 00177c78 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x604 01caffec 00000000 77e76c7d 00177c78 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001cafe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff ca 01 ...|.e.w$...t... 0000000001cafe28 38 fe ca 01 a8 7d 17 00 - 50 ff ca 01 1c 97 4f 80 8....}..P.....O. 0000000001cafe38 84 00 9c 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 0000000001cafe48 2d 61 01 00 00 00 00 00 - 02 3b 55 f4 01 00 c2 81 -a.......;U..... 0000000001cafe58 48 0d 00 e1 d8 23 1b e1 - ec 3b 55 f4 d0 23 1b e1 H....#...;U..#.. 0000000001cafe68 00 00 00 02 74 3b 55 f4 - 00 00 02 00 38 00 00 00 ....t;U.....8... 0000000001cafe78 01 00 00 00 2c 00 00 00 - ff ff ff ff 01 08 07 00 ....,........... 0000000001cafe88 01 08 06 00 92 01 00 00 - d6 0b 00 00 2c 00 00 00 ............,... 0000000001cafe98 01 00 00 00 d2 07 00 00 - 03 00 6a 40 f8 8c da 06 ..........j@.... 0000000001cafea8 04 00 00 00 3c d5 66 40 - 38 00 00 00 00 00 00 00 ....<.f@8....... 0000000001cafeb8 0b 00 25 03 b8 e0 25 03 - 00 00 00 80 20 00 00 00 ..%...%..... ... 0000000001cafec8 50 00 00 00 00 00 00 00 - d2 07 00 00 03 00 6a 40 P.............j@ 0000000001cafed8 f8 8c da 06 01 00 00 00 - 3c d5 66 40 6c 00 00 00 ........<.f@l... 0000000001cafee8 00 00 00 00 74 00 00 00 - 00 00 00 00 6c 00 00 00 ....t.......l... 0000000001cafef8 1f 00 78 bf 0c 00 00 00 - 2f 00 00 00 ff ff ff ff ..x...../....... 0000000001caff08 ff ff ff 7f 02 04 00 00 - 98 00 00 00 00 00 00 00 ................ 0000000001caff18 24 3c 55 f4 b2 c2 4d 80 - ba c2 4d 80 e4 1d fe 81 $ Zrzut stanu dla wątku o identyfikatorze 0xe58 <----* eax=ffffff00 ebx=001947b8 ecx=090504b8 edx=00000001 esi=7fffffff edi=ffffffff eip=7c90e514 esp=0224fad4 ebp=0224fb10 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\mswsock.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ws2_32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WININET.dll - ChildEBP RetAddr Args to Child 0224fb10 719f5fa7 00000408 00000414 00000000 ntdll!KiFastSystemCallRet 0224fc04 71a5314f 00000001 0224fe84 0224fc7c mswsock+0x5fa7 0224fc54 3fcfe9f9 00000001 0224fe84 0224fc7c ws2_32!select+0xa7 0224ffac 3fd06043 0224ffec 7c80b729 00196eb8 WININET!Ordinal346+0x6ae 0224ffb4 7c80b729 00196eb8 00000000 00000000 WININET!InternetSetStatusCallbackA+0x1e3 0224ffec 00000000 3fd06036 00196eb8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000224fad4 5a df 90 7c 2b 40 9f 71 - 08 04 00 00 01 00 00 00 Z..|+@.q........ 000000000224fae4 fc fa 24 02 b4 fb 24 02 - 84 fe 24 02 a4 fb 24 02 ..$...$...$...$. 000000000224faf4 ed 27 fb 4d 65 79 ce 01 - ff ff ff ff ff ff ff 7f .'.Mey.......... 000000000224fb04 b8 47 19 00 00 00 00 00 - 00 00 00 00 04 fc 24 02 .G............$. 000000000224fb14 a7 5f 9f 71 08 04 00 00 - 14 04 00 00 00 00 00 00 ._.q............ 000000000224fb24 04 00 00 00 80 fd 24 02 - 80 4b 19 00 7c fc 24 02 ......$..K..|.$. 000000000224fb34 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000224fb44 01 00 00 00 80 0f 05 fd - ff ff ff ff dc fb 24 02 ..............$. 000000000224fb54 01 00 00 00 00 00 00 00 - a0 00 00 00 ea dc 90 7c ...............| 000000000224fb64 c0 fa 24 02 03 01 00 00 - 00 00 15 00 08 04 00 00 ..$............. 000000000224fb74 38 fc 24 02 00 00 00 00 - 00 00 00 00 1c 00 00 00 8.$............. 000000000224fb84 b8 47 19 00 c0 fb 24 02 - 7c fc 24 02 80 fd 24 02 .G....$.|.$...$. 000000000224fb94 00 00 00 00 a4 fb 24 02 - 00 00 00 00 00 00 00 00 ......$......... 000000000224fba4 80 0f 05 fd ff ff ff ff - 01 00 00 00 00 fb 24 02 ..............$. 000000000224fbb4 14 04 00 00 19 00 00 00 - 00 fc 24 02 1f 2e a5 71 ..........$....q 000000000224fbc4 38 87 ad 08 ec fb 24 02 - 68 96 a5 71 33 27 00 00 8.....$.h..q3'.. 000000000224fbd4 f0 f0 34 09 01 00 00 00 - 01 00 00 00 1f fc 24 02 ..4...........$. 000000000224fbe4 e8 4c 19 00 b5 85 00 00 - 28 fb 24 02 0c 15 a4 71 .L......(.$....q 000000000224fbf4 44 fc 24 02 28 72 a1 71 - 60 2e 9f 71 ff ff ff ff D.$.(r.q`..q.... 000000000224fc04 54 fc 24 02 4f 31 a5 71 - 01 00 00 00 84 fe 24 02 T.$.O1.q......$. *----> Zrzut stanu dla wątku o identyfikatorze 0x960 <----* eax=001b7ee8 ebx=c0000000 ecx=00000004 edx=001b6ac0 esi=00000000 edi=71a2793c eip=7c90e514 esp=02a7ff7c ebp=02a7ffb4 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02a7ffb4 7c80b729 719fd65f 00000002 00000000 ntdll!KiFastSystemCallRet 02a7ffec 00000000 719fd2c6 001a37a0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002a7ff7c 4a da 90 7c 20 d3 9f 71 - f4 04 00 00 bc ff a7 02 J..| ..q........ 0000000002a7ff8c b0 ff a7 02 a4 ff a7 02 - 68 d3 9f 71 02 00 00 00 ........h..q.... 0000000002a7ff9c 00 00 00 00 a0 37 1a 00 - 00 00 00 00 00 00 00 00 .....7.......... 0000000002a7ffac 00 00 9f 71 58 3e cb 06 - ec ff a7 02 29 b7 80 7c ...qX>......)..| 0000000002a7ffbc 5f d6 9f 71 02 00 00 00 - 00 00 00 00 a0 37 1a 00 _..q.........7.. 0000000002a7ffcc 00 a0 fa 7f 00 46 3c 82 - c0 ff a7 02 48 c4 d2 81 .....F<.....H... 0000000002a7ffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 0000000002a7ffec 00 00 00 00 00 00 00 00 - c6 d2 9f 71 a0 37 1a 00 ...........q.7.. 0000000002a7fffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002a8000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002a8001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002a8002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002a8003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002a8004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002a8005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002a8006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002a8007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002a8008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002a8009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002a800ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x628 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=02b7ff70 ebp=02b7ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02b7ffb4 7c80b729 00000000 7c9144f9 00020648 ntdll!KiFastSystemCallRet 02b7ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002b7ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff b7 02 J..|...|........ 0000000002b7ff80 b0 ff b7 02 98 ff b7 02 - a0 ff b7 02 f9 44 91 7c .............D.| 0000000002b7ff90 48 06 02 00 00 00 00 00 - 00 00 00 00 f0 6b 21 09 H............k!. 0000000002b7ffa0 00 7c 28 e8 ff ff ff ff - 01 00 00 00 91 79 92 7c .|(..........y.| 0000000002b7ffb0 08 6c 21 09 ec ff b7 02 - 29 b7 80 7c 00 00 00 00 .l!.....)..|.... 0000000002b7ffc0 f9 44 91 7c 48 06 02 00 - 00 00 00 00 00 90 fa 7f .D.|H........... 0000000002b7ffd0 00 46 3c 82 c0 ff b7 02 - c8 dd eb 81 ff ff ff ff .F<............. 0000000002b7ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000002b7fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000002b80000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b80010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b80020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b80030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b80040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b80050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b80060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b80070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b80080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b80090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b800a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x444 <----* eax=77e76c7d ebx=00000000 ecx=003a3a10 edx=00000010 esi=00163d78 edi=00163e1c eip=7c90e514 esp=02cafe18 ebp=02caff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02caff80 77e76caf 02caffa8 77e76ad1 00163d78 ntdll!KiFastSystemCallRet 02caff88 77e76ad1 00163d78 00000000 00000002 RPCRT4!I_RpcBCacheFree+0x61c 02caffa8 77e76c97 0015fb98 02caffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 02caffb4 7c80b729 001bf908 00000000 00000002 RPCRT4!I_RpcBCacheFree+0x604 02caffec 00000000 77e76c7d 001bf908 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002cafe18 aa da 90 7c e3 65 e7 77 - 80 01 00 00 74 ff ca 02 ...|.e.w....t... 0000000002cafe28 00 00 00 00 38 2b 1a 00 - 50 ff ca 02 20 70 c8 81 ....8+..P... p.. 0000000002cafe38 4c 6b d0 f3 a1 7d 56 80 - d0 bc 50 e1 1c 05 00 00 Lk...}V...P..... 0000000002cafe48 ff 03 1f 00 d0 bc 50 e1 - 02 bc 50 e1 00 00 00 00 ......P...P..... 0000000002cafe58 00 00 00 00 e8 bc 50 e1 - 38 ea 0e e1 09 70 c8 81 ......P.8....p.. 0000000002cafe68 68 6b d0 f3 1f 00 00 00 - d0 bc 50 e1 d0 bc 50 e1 hk........P...P. 0000000002cafe78 18 17 cb 81 00 00 00 00 - 02 00 00 00 6c 6b d0 f3 ............lk.. 0000000002cafe88 14 4b 57 80 60 6c d0 f3 - f4 4a 57 80 98 16 cb 81 .KW.`l...JW..... 0000000002cafe98 00 00 00 00 ff ff ff ff - 18 6b 1b 00 00 00 00 00 .........k...... 0000000002cafea8 e0 bc 50 e1 28 ea 0e e1 - e1 81 c0 81 b4 6b d0 f3 ..P.(........k.. 0000000002cafeb8 c8 7e 56 80 d0 bc 50 e1 - 28 ea 0e e1 f0 7b 3c 82 .~V...P.(....{<. 0000000002cafec8 03 00 1f 00 e0 81 c0 81 - 14 05 00 00 fc 6b d0 f3 .............k.. 0000000002cafed8 75 ff 56 80 d0 bc 50 e1 - 00 00 00 00 d8 04 30 82 u.V...P.......0. 0000000002cafee8 00 00 00 00 00 00 00 00 - c0 d2 dc 81 0a 00 00 00 ................ 0000000002cafef8 01 00 00 00 98 16 cb 81 - 48 f4 c0 81 ff 00 00 00 ........H....... 0000000002caff08 e0 81 c0 81 03 00 1f 00 - e0 81 c0 81 34 fc c4 81 ............4... 0000000002caff18 24 6c d0 f3 b2 c2 4d 80 - ba c2 4d 80 04 fc c4 81 $l....M...M..... 0000000002caff28 98 fa c4 81 80 ff ca 02 - 85 d1 e7 77 48 ff ca 02 ...........wH... 0000000002caff38 95 d1 e7 77 e0 10 90 7c - 40 e7 1b 00 08 f9 1b 00 ...w...|@....... 0000000002caff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xa40 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=00000580 edi=00000000 eip=7c90e514 esp=0308ff08 ebp=0308ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0308ff6c 7c802542 00000580 000927c0 00000000 ntdll!KiFastSystemCallRet 0308ff80 3f3da2c9 00000580 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 0308ffa0 3f340774 3f50af7e 3f340837 02e95c20 mshtml!DllGetClassObject+0x8cfc4 0308ffb4 7c80b729 0024bcb8 3f50af7e 02e95c20 mshtml+0x10774 0308ffec 00000000 3f340829 0024bcb8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000308ff08 5a df 90 7c db 25 80 7c - 80 05 00 00 00 00 00 00 Z..|.%.|........ 000000000308ff18 3c ff 08 03 00 00 00 00 - b8 bc 24 00 00 00 00 00 <.........$..... 000000000308ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000308ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 60 fd 7f .....D_......`.. 000000000308ff48 00 70 fa 7f 3c ff 08 03 - 4a c3 3d 3f 1c ff 08 03 .p..<...J.=?.... 000000000308ff58 4a c3 3d 3f dc ff 08 03 - b0 9a 83 7c 08 26 80 7c J.=?.......|.&.| 000000000308ff68 00 00 00 00 80 ff 08 03 - 42 25 80 7c 80 05 00 00 ........B%.|.... 000000000308ff78 c0 27 09 00 00 00 00 00 - a0 ff 08 03 c9 a2 3d 3f .'............=? 000000000308ff88 80 05 00 00 c0 27 09 00 - 00 00 33 3f b8 bc 24 00 .....'....3?..$. 000000000308ff98 b8 bc 24 00 b8 bc 24 00 - b4 ff 08 03 74 07 34 3f ..$...$.....t.4? 000000000308ffa8 7e af 50 3f 37 08 34 3f - 20 5c e9 02 ec ff 08 03 ~.P?7.4? \...... 000000000308ffb8 29 b7 80 7c b8 bc 24 00 - 7e af 50 3f 20 5c e9 02 )..|..$.~.P? \.. 000000000308ffc8 b8 bc 24 00 00 70 fa 7f - 00 46 3c 82 c0 ff 08 03 ..$..p...F<..... 000000000308ffd8 10 f6 c5 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 000000000308ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 000000000308fff8 b8 bc 24 00 00 00 00 00 - 4d 5a 90 00 03 00 00 00 ..$.....MZ...... 0000000003090008 04 00 00 00 ff ff 00 00 - b8 00 00 00 00 00 00 00 ................ 0000000003090018 40 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 @............... 0000000003090028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003090038 00 00 00 00 b0 00 00 00 - 0e 1f ba 0e 00 b4 09 cd ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x2e8 <----* eax=034dff74 ebx=00000000 ecx=02e538f0 edx=02e53908 esi=001531f0 edi=0377a018 eip=7c90e514 esp=034dfe18 ebp=034dff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 034dff80 77e76caf 034dffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 034dff88 77e76ad1 001531f0 00000000 00193050 RPCRT4!I_RpcBCacheFree+0x61c 034dffa8 77e76c97 0015fb98 034dffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 034dffb4 7c80b729 02e538f0 00000000 00193050 RPCRT4!I_RpcBCacheFree+0x604 034dffec 00000000 77e76c7d 02e538f0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000034dfe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 4d 03 ...|.e.w$...t.M. 00000000034dfe28 38 fe 4d 03 18 a0 77 03 - 50 ff 4d 03 00 00 00 00 8.M...w.P.M..... 00000000034dfe38 b8 00 d0 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 00000000034dfe48 2c 61 01 00 00 00 00 00 - 02 80 00 00 01 00 08 03 ,a.............. 00000000034dfe58 00 00 00 00 98 16 cb 81 - 80 16 cb 81 48 bd 37 f4 ............H.7. 00000000034dfe68 25 0e 57 80 64 bd 37 f4 - 00 00 02 00 6c 00 00 00 %.W.d.7.....l... 00000000034dfe78 01 00 00 00 60 00 00 00 - ff ff ff ff 01 08 07 00 ....`........... 00000000034dfe88 01 08 06 00 92 01 00 00 - d6 0b 00 00 60 00 00 00 ............`... 00000000034dfe98 01 00 00 00 71 00 00 00 - 08 00 00 00 00 00 00 00 ....q........... 00000000034dfea8 00 00 00 00 00 00 00 00 - 55 00 6e 00 64 00 6f 00 ........U.n.d.o. 00000000034dfeb8 66 00 65 00 6e 00 20 00 - 4d 00 41 00 58 00 20 00 f.e.n. .M.A.X. . 00000000034dfec8 7c 00 20 00 55 00 6e 00 - 64 00 6f 00 66 00 65 00 |. .U.n.d.o.f.e. 00000000034dfed8 6e 00 20 00 4d 00 41 00 - 58 00 00 00 6c 00 00 00 n. .M.A.X...l... 00000000034dfee8 00 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 00000000034dfef8 02 04 00 00 84 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000034dff08 00 00 00 00 00 00 00 00 - 60 f4 4f 80 c4 6b b9 81 ........`.O..k.. 00000000034dff18 24 bc 37 f4 b2 c2 4d 80 - ba c2 4d 80 94 6b b9 81 $.7...M...M..k.. 00000000034dff28 28 6a b9 81 80 ff 4d 03 - 85 d1 e7 77 48 ff 4d 03 (j....M....wH.M. 00000000034dff38 95 d1 e7 77 e0 10 90 7c - a0 21 34 03 f0 38 e5 02 ...w...|.!4..8.. 00000000034dff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xc20 <----* eax=35c51a30 ebx=0024e4d4 ecx=7c936d80 edx=7c9370ab esi=00000000 edi=001ce9b8 eip=7c90e514 esp=03a1ff10 ebp=03a1ff3c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 03a1ff3c 35c51a76 000006b0 03a1ff8c 03a1ff90 ntdll!KiFastSystemCallRet 03a1ffb4 7c80b729 0024e4d4 001ce9b8 016cb2a8 Dxtrans+0x1a76 03a1ffec 00000000 35c51a30 0024e4d4 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000003a1ff10 4a da 90 7c e6 a7 80 7c - b0 06 00 00 90 ff a1 03 J..|...|........ 0000000003a1ff20 54 ff a1 03 34 ff a1 03 - 00 00 00 00 a8 b2 6c 01 T...4.........l. 0000000003a1ff30 b8 e9 1c 00 d4 e4 24 00 - 02 00 00 00 b4 ff a1 03 ......$......... 0000000003a1ff40 76 1a c5 35 b0 06 00 00 - 8c ff a1 03 90 ff a1 03 v..5............ 0000000003a1ff50 94 ff a1 03 ff ff ff ff - dc 57 47 d2 b8 e9 1c 00 .........WG..... 0000000003a1ff60 a8 b2 6c 01 d4 e4 24 00 - 00 00 00 00 c8 52 4e 80 ..l...$......RN. 0000000003a1ff70 e7 12 6f 80 30 7a ef 81 - 50 ad d1 f3 00 00 00 00 ..o.0z..P....... 0000000003a1ff80 00 00 00 00 01 00 00 00 - 00 00 00 00 98 16 cb 81 ................ 0000000003a1ff90 39 ac 4f 80 00 00 00 00 - 00 00 00 00 d4 e4 24 00 9.O...........$. 0000000003a1ffa0 00 00 00 00 58 ff a1 03 - dc ff a1 03 dd 7f c7 35 ....X..........5 0000000003a1ffb0 00 00 00 00 ec ff a1 03 - 29 b7 80 7c d4 e4 24 00 ........)..|..$. 0000000003a1ffc0 b8 e9 1c 00 a8 b2 6c 01 - d4 e4 24 00 00 50 fa 7f ......l...$..P.. 0000000003a1ffd0 00 46 3c 82 c0 ff a1 03 - 20 f2 e8 81 ff ff ff ff .F<..... ....... 0000000003a1ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000003a1fff0 00 00 00 00 30 1a c5 35 - d4 e4 24 00 00 00 00 00 ....0..5..$..... 0000000003a20000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003a20010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003a20020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003a20030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003a20040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xe80 <----* eax=35c51a30 ebx=0024e4d4 ecx=7c936d80 edx=7c9370ab esi=00000000 edi=001ce9b8 eip=7c90e514 esp=03b1ff10 ebp=03b1ff3c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 03b1ff3c 35c51a76 000006b0 03b1ff8c 03b1ff90 ntdll!KiFastSystemCallRet 03b1ffb4 7c80b729 0024e4d4 001ce9b8 016cb2a8 Dxtrans+0x1a76 03b1ffec 00000000 35c51a30 0024e4d4 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000003b1ff10 4a da 90 7c e6 a7 80 7c - b0 06 00 00 90 ff b1 03 J..|...|........ 0000000003b1ff20 54 ff b1 03 34 ff b1 03 - 00 00 00 00 a8 b2 6c 01 T...4.........l. 0000000003b1ff30 b8 e9 1c 00 d4 e4 24 00 - 02 00 00 00 b4 ff b1 03 ......$......... 0000000003b1ff40 76 1a c5 35 b0 06 00 00 - 8c ff b1 03 90 ff b1 03 v..5............ 0000000003b1ff50 94 ff b1 03 ff ff ff ff - dc 57 57 d2 b8 e9 1c 00 .........WW..... 0000000003b1ff60 a8 b2 6c 01 d4 e4 24 00 - 00 00 00 00 c8 52 4e 80 ..l...$......RN. 0000000003b1ff70 e7 12 6f 80 a0 5d c3 81 - 50 7d 66 f4 00 00 00 00 ..o..]..P}f..... 0000000003b1ff80 00 00 00 00 01 00 00 00 - 00 00 00 00 98 16 cb 81 ................ 0000000003b1ff90 39 ac 4f 80 00 00 00 00 - 00 00 00 00 d4 e4 24 00 9.O...........$. 0000000003b1ffa0 00 00 00 00 58 ff b1 03 - dc ff b1 03 dd 7f c7 35 ....X..........5 0000000003b1ffb0 00 00 00 00 ec ff b1 03 - 29 b7 80 7c d4 e4 24 00 ........)..|..$. 0000000003b1ffc0 b8 e9 1c 00 a8 b2 6c 01 - d4 e4 24 00 00 40 fa 7f ......l...$..@.. 0000000003b1ffd0 00 46 3c 82 c0 ff b1 03 - e0 94 c9 81 ff ff ff ff .F<............. 0000000003b1ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000003b1fff0 00 00 00 00 30 1a c5 35 - d4 e4 24 00 00 00 00 00 ....0..5..$..... 0000000003b20000 73 20 27 43 72 42 61 72 - 6e 27 0d 0a 09 7b 0d 0a s 'CrBarn'...{.. 0000000003b20010 09 09 43 4c 53 49 44 20 - 3d 20 73 20 27 7b 43 33 ..CLSID = s '{C3 0000000003b20020 42 44 46 37 34 30 2d 30 - 42 35 38 2d 31 31 64 32 BDF740-0B58-11d2 0000000003b20030 2d 41 34 38 34 2d 30 30 - 43 30 34 46 38 45 46 42 -A484-00C04F8EFB 0000000003b20040 36 39 7d 27 0d 0a 09 7d - 0d 0a 09 44 58 49 6d 61 69}'...}...DXIma *----> Zrzut stanu dla wątku o identyfikatorze 0xe3c <----* eax=000000e9 ebx=00000000 ecx=00560650 edx=00000001 esi=00000794 edi=00000000 eip=7c90e514 esp=0434ff08 ebp=0434ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0434ff6c 7c802542 00000794 000927c0 00000000 ntdll!KiFastSystemCallRet 0434ff80 3f3da2c9 00000794 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 0434ffa0 3f340774 0000000e 3f340837 00000000 mshtml!DllGetClassObject+0x8cfc4 0434ffb4 7c80b729 0022df60 0000000e 00000000 mshtml+0x10774 0434ffec 00000000 3f340829 0022df60 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000434ff08 5a df 90 7c db 25 80 7c - 94 07 00 00 00 00 00 00 Z..|.%.|........ 000000000434ff18 3c ff 34 04 00 00 00 00 - 60 df 22 00 00 00 00 00 <.4.....`."..... 000000000434ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000434ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 60 fd 7f .....D_......`.. 000000000434ff48 00 30 fa 7f 3c ff 34 04 - af c2 3d 3f 1c ff 34 04 .0..<.4...=?..4. 000000000434ff58 00 00 00 00 dc ff 34 04 - b0 9a 83 7c 08 26 80 7c ......4....|.&.| 000000000434ff68 00 00 00 00 80 ff 34 04 - 42 25 80 7c 94 07 00 00 ......4.B%.|.... 000000000434ff78 c0 27 09 00 00 00 00 00 - a0 ff 34 04 c9 a2 3d 3f .'........4...=? 000000000434ff88 94 07 00 00 c0 27 09 00 - 00 00 33 3f 60 df 22 00 .....'....3?`.". 000000000434ff98 60 df 22 00 60 df 22 00 - b4 ff 34 04 74 07 34 3f `.".`."...4.t.4? 000000000434ffa8 0e 00 00 00 37 08 34 3f - 00 00 00 00 ec ff 34 04 ....7.4?......4. 000000000434ffb8 29 b7 80 7c 60 df 22 00 - 0e 00 00 00 00 00 00 00 )..|`."......... 000000000434ffc8 60 df 22 00 00 30 fa 7f - 00 46 3c 82 c0 ff 34 04 `."..0...F<...4. 000000000434ffd8 a8 d2 32 82 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ..2........|0..| 000000000434ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 000000000434fff8 60 df 22 00 00 00 00 00 - 00 00 00 00 00 00 00 00 `."............. 0000000004350008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004350018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004350028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004350038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x7a4 <----* eax=05f0fcb1 ebx=00000000 ecx=00000000 edx=00000002 esi=00000814 edi=00000000 eip=7c90e514 esp=05e0ff08 ebp=05e0ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 05e0ff6c 7c802542 00000814 000927c0 00000000 ntdll!KiFastSystemCallRet 05e0ff80 3f3da2c9 00000814 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 05e0ffa0 3f340774 016bbc4c 3f340837 00000020 mshtml!DllGetClassObject+0x8cfc4 05e0ffb4 7c80b729 0022da20 016bbc4c 00000020 mshtml+0x10774 05e0ffec 00000000 3f340829 0022da20 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000005e0ff08 5a df 90 7c db 25 80 7c - 14 08 00 00 00 00 00 00 Z..|.%.|........ 0000000005e0ff18 3c ff e0 05 00 00 00 00 - 20 da 22 00 00 00 00 00 <....... ."..... 0000000005e0ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005e0ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 60 fd 7f .....D_......`.. 0000000005e0ff48 00 20 fa 7f 3c ff e0 05 - af c2 3d 3f 1c ff e0 05 . ..<.....=?.... 0000000005e0ff58 00 00 00 00 dc ff e0 05 - b0 9a 83 7c 08 26 80 7c ...........|.&.| 0000000005e0ff68 00 00 00 00 80 ff e0 05 - 42 25 80 7c 14 08 00 00 ........B%.|.... 0000000005e0ff78 c0 27 09 00 00 00 00 00 - a0 ff e0 05 c9 a2 3d 3f .'............=? 0000000005e0ff88 14 08 00 00 c0 27 09 00 - 00 00 33 3f 20 da 22 00 .....'....3? .". 0000000005e0ff98 20 da 22 00 20 da 22 00 - b4 ff e0 05 74 07 34 3f .". .".....t.4? 0000000005e0ffa8 4c bc 6b 01 37 08 34 3f - 20 00 00 00 ec ff e0 05 L.k.7.4? ....... 0000000005e0ffb8 29 b7 80 7c 20 da 22 00 - 4c bc 6b 01 20 00 00 00 )..| .".L.k. ... 0000000005e0ffc8 20 da 22 00 00 20 fa 7f - 00 46 3c 82 c0 ff e0 05 .".. ...F<..... 0000000005e0ffd8 10 f6 c5 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 0000000005e0ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 0000000005e0fff8 20 da 22 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ."............. 0000000005e10008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005e10018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005e10028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005e10038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xb38 <----* eax=00000000 ebx=00000000 ecx=00000003 edx=00000000 esi=000005d0 edi=00000000 eip=7c90e514 esp=0600ff00 ebp=0600ff64 iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0600ff64 7c802542 000005d0 000927c0 00000000 ntdll!KiFastSystemCallRet 0600ff78 3f3da2c9 000005d0 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 0600ff98 3f6bed9c 0372e180 3f340774 016c9e84 mshtml!DllGetClassObject+0x8cfc4 0600ffb4 7c80b729 0372e180 016c9e84 001ded30 mshtml!IERegisterXMLNS+0x4f08 0600ffec 00000000 3f340829 0372e180 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000600ff00 5a df 90 7c db 25 80 7c - d0 05 00 00 00 00 00 00 Z..|.%.|........ 000000000600ff10 34 ff 00 06 00 00 00 00 - 80 e1 72 03 00 00 00 00 4.........r..... 000000000600ff20 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000600ff30 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 60 fd 7f .....D_......`.. 000000000600ff40 00 10 fa 7f 34 ff 00 06 - ff ff ff ff 14 ff 00 06 ....4........... 000000000600ff50 1b ee 6b 3f dc ff 00 06 - b0 9a 83 7c 08 26 80 7c ..k?.......|.&.| 000000000600ff60 00 00 00 00 78 ff 00 06 - 42 25 80 7c d0 05 00 00 ....x...B%.|.... 000000000600ff70 c0 27 09 00 00 00 00 00 - 98 ff 00 06 c9 a2 3d 3f .'............=? 000000000600ff80 d0 05 00 00 c0 27 09 00 - 00 00 33 3f 80 e1 72 03 .....'....3?..r. 000000000600ff90 80 e1 72 03 80 e1 72 03 - b4 ff 00 06 9c ed 6b 3f ..r...r.......k? 000000000600ffa0 80 e1 72 03 74 07 34 3f - 84 9e 6c 01 37 08 34 3f ..r.t.4?..l.7.4? 000000000600ffb0 30 ed 1d 00 ec ff 00 06 - 29 b7 80 7c 80 e1 72 03 0.......)..|..r. 000000000600ffc0 84 9e 6c 01 30 ed 1d 00 - 80 e1 72 03 00 10 fa 7f ..l.0.....r..... 000000000600ffd0 00 46 3c 82 c0 ff 00 06 - 90 32 30 82 ff ff ff ff .F<......20..... 000000000600ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 000000000600fff0 00 00 00 00 29 08 34 3f - 80 e1 72 03 00 00 00 00 ....).4?..r..... 0000000006010000 4d 5a 90 00 03 00 00 00 - 04 00 00 00 ff ff 00 00 MZ.............. 0000000006010010 b8 00 00 00 00 00 00 00 - 40 00 00 00 00 00 00 00 ........@....... 0000000006010020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006010030 00 00 00 00 00 00 00 00 - 00 00 00 00 e8 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xb70 <----* eax=061b0869 ebx=04be99b8 ecx=005200ca edx=01e7006e esi=0000094c edi=00000000 eip=7c90e514 esp=0680ff2c ebp=0680ff90 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll - ChildEBP RetAddr Args to Child 0680ff90 7c802542 0000094c ffffffff 00000000 ntdll!KiFastSystemCallRet 0680ffa4 061b087c 0000094c ffffffff 00000000 kernel32!WaitForSingleObject+0x12 0680ffec 00000000 061b0869 04be99b8 00000000 GoogleToolbarDynamic_32_B31C6BD+0x1a087c *----> Zrzut stosu <----* 000000000680ff2c 5a df 90 7c db 25 80 7c - 4c 09 00 00 00 00 00 00 Z..|.%.|L....... 000000000680ff3c 00 00 00 00 28 df 1c 00 - b8 99 be 04 b8 99 be 04 ....(........... 000000000680ff4c 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000680ff5c 10 00 00 00 e8 13 4f 80 - dc ff 80 06 00 60 fd 7f ......O......`.. 000000000680ff6c 00 00 fa 7f 00 00 00 00 - 1a 41 03 06 40 ff 80 06 .........A..@... 000000000680ff7c 1c 41 ad 10 dc ff 80 06 - b0 9a 83 7c 08 26 80 7c .A.........|.&.| 000000000680ff8c 00 00 00 00 a4 ff 80 06 - 42 25 80 7c 4c 09 00 00 ........B%.|L... 000000000680ff9c ff ff ff ff 00 00 00 00 - ec ff 80 06 7c 08 1b 06 ............|... 000000000680ffac 4c 09 00 00 ff ff ff ff - 00 00 00 00 29 b7 80 7c L...........)..| 000000000680ffbc b8 99 be 04 28 df 1c 00 - 00 00 00 00 b8 99 be 04 ....(........... 000000000680ffcc 00 00 fa 7f 00 46 3c 82 - c0 ff 80 06 10 48 d6 81 .....F<......H.. 000000000680ffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 000000000680ffec 00 00 00 00 00 00 00 00 - 69 08 1b 06 b8 99 be 04 ........i....... 000000000680fffc 00 00 00 00 c8 00 00 00 - 1e 01 00 00 ff ee ff ee ................ 000000000681000c 02 10 00 00 00 00 00 00 - 00 fe 00 00 00 00 10 00 ................ 000000000681001c 00 20 00 00 00 02 00 00 - 00 20 00 00 2f fc 01 00 . ....... ../... 000000000681002c ff ef fd 7f 15 00 08 06 - 00 00 00 00 00 00 00 00 ................ 000000000681003c 00 00 00 00 00 00 00 00 - 88 05 81 06 0f 00 00 00 ................ 000000000681004c f8 ff ff ff 50 00 81 06 - 50 00 81 06 40 06 81 06 ....P...P...@... 000000000681005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x818 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=0649b978 edi=00000000 eip=7c90e514 esp=0249fef4 ebp=0249ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0249ff20 0612c37b 000009ac 0249ff48 0249ff4c ntdll!KiFastSystemCallRet 0249ff58 06114eb7 00000000 0612b4dd 0649cdc0 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0249ffac 0614ecbd 7c900000 7c80b729 04be1e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0249ffec 00000000 0614ec3e 04be1e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000249fef4 4a da 90 7c e6 a7 80 7c - ac 09 00 00 4c ff 49 02 J..|...|....L.I. 000000000249ff04 38 ff 49 02 18 ff 49 02 - 00 00 00 00 e4 37 01 06 8.I...I......7.. 000000000249ff14 d0 cc 49 06 b0 68 4e 06 - 96 c1 12 06 58 ff 49 02 ..I..hN.....X.I. 000000000249ff24 7b c3 12 06 ac 09 00 00 - 48 ff 49 02 4c ff 49 02 {.......H.I.L.I. 000000000249ff34 54 ff 49 02 ff ff ff ff - 00 00 00 00 c0 cd 49 06 T.I...........I. 000000000249ff44 90 1e be 04 00 00 00 00 - 00 00 00 00 01 00 00 00 ................ 000000000249ff54 b0 68 4e 06 ac ff 49 02 - b7 4e 11 06 00 00 00 00 .hN...I..N...... 000000000249ff64 dd b4 12 06 c0 cd 49 06 - 04 38 01 06 e0 d7 6c 01 ......I..8....l. 000000000249ff74 00 00 90 7c 18 ec 14 06 - c0 cd 49 06 dc 28 ec d0 ...|......I..(.. 000000000249ff84 e0 d7 6c 01 00 00 90 7c - 90 1e be 04 80 ff 49 02 ..l....|......I. 000000000249ff94 80 ff 49 02 dc ff 49 02 - dc ff 49 02 70 e7 14 06 ..I...I...I.p... 000000000249ffa4 80 5b 8f d4 00 00 00 00 - ec ff 49 02 bd ec 14 06 .[........I..... 000000000249ffb4 00 00 90 7c 29 b7 80 7c - 90 1e be 04 e0 d7 6c 01 ...|)..|......l. 000000000249ffc4 00 00 90 7c 90 1e be 04 - 00 d0 fa 7f 00 46 3c 82 ...|.........F<. 000000000249ffd4 c0 ff 49 02 a8 d7 d9 81 - ff ff ff ff b0 9a 83 7c ..I............| 000000000249ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000249fff4 3e ec 14 06 90 1e be 04 - 00 00 00 00 4d 5a 90 00 >...........MZ.. 00000000024a0004 03 00 00 00 04 00 00 00 - ff ff 00 00 b8 00 00 00 ................ 00000000024a0014 00 00 00 00 40 00 00 00 - 00 00 00 00 00 00 00 00 ....@........... 00000000024a0024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xc0c <----* eax=00000400 ebx=025cfea8 ecx=00000410 edx=0070396e esi=00000000 edi=7ffd6000 eip=7c90e514 esp=025cfe80 ebp=025cff1c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 025cff1c 7c80a115 00000002 025cff58 00000000 ntdll!KiFastSystemCallRet 025cff38 0609e03b 00000002 025cff58 00000000 kernel32!WaitForMultipleObjects+0x18 025cff68 06013804 016cd8b4 7c900000 0614ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x87d9c 025cffac 0614ecbd 7c900000 7c80b729 0649d1a8 GoogleToolbarDynamic_32_B31C6BD+0x3804 025cffec 00000000 0614ec3e 0649d1a8 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000025cfe80 4a df 90 7c 90 95 80 7c - 02 00 00 00 a8 fe 5c 02 J..|...|......\. 00000000025cfe90 01 00 00 00 00 00 00 00 - 00 00 00 00 e8 d0 49 06 ..............I. 00000000025cfea0 e8 d0 49 06 fd a0 80 7c - d0 09 00 00 cc 09 00 00 ..I....|........ 00000000025cfeb0 17 00 00 00 01 00 00 00 - 8c d5 4e 77 3c a9 ea 02 ..........Nw<... 00000000025cfec0 d4 fe 5c 02 ac d6 4e 77 - 14 00 00 00 01 00 00 00 ..\...Nw........ 00000000025cfed0 00 00 00 00 00 00 00 00 - 10 00 00 00 f9 1a 4f 77 ..............Ow 00000000025cfee0 cc cb 81 03 60 ff 5c 02 - 00 60 fd 7f 00 c0 fa 7f ....`.\..`...... 00000000025cfef0 2c b6 15 00 00 00 00 00 - a8 fe 5c 02 c5 16 4f 77 ,.........\...Ow 00000000025cff00 02 00 00 00 9c fe 5c 02 - 3c 78 5f 77 9c ff 5c 02 ......\. Zrzut stanu dla wątku o identyfikatorze 0xa98 <----* eax=4ebd7456 ebx=0740fe7c ecx=001cdf28 edx=4ebd9079 esi=00000000 edi=7ffd6000 eip=7c90e514 esp=0740fe54 ebp=0740fef0 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll - ChildEBP RetAddr Args to Child 0740fef0 7e3695f9 00000002 0740ff18 00000000 ntdll!KiFastSystemCallRet 0740ff4c 7e3696a8 00000001 0740ffac ffffffff USER32!GetLastInputInfo+0x105 0740ff68 4ebd74b2 00000001 0740ffac 00000000 USER32!MsgWaitForMultipleObjects+0x1f 0740ffb4 7c80b729 00000000 00000005 00000011 gdiplus!GdipGetVisibleClipBoundsI+0xad4 0740ffec 00000000 4ebd7456 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000740fe54 4a df 90 7c 90 95 80 7c - 02 00 00 00 7c fe 40 07 J..|...|....|.@. 000000000740fe64 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000740fe74 02 00 00 00 00 00 00 00 - d8 08 00 00 d0 08 00 00 ................ 000000000740fe84 cc 99 99 00 cc 99 cc 00 - cc 99 ff 00 cc cc 00 00 ................ 000000000740fe94 cc cc 33 00 cc cc 66 00 - 14 00 00 00 01 00 00 00 ..3...f......... 000000000740fea4 00 00 00 00 00 00 00 00 - 10 00 00 00 cc ff 66 00 ..............f. 000000000740feb4 cc ff 99 00 cc ff cc 00 - 00 60 fd 7f 00 d0 f9 7f .........`...... 000000000740fec4 ff 00 33 00 00 00 00 00 - 7c fe 40 07 ff 00 cc 00 ..3.....|.@..... 000000000740fed4 02 00 00 00 70 fe 40 07 - ff 33 33 00 dc ff 40 07 ....p.@..33...@. 000000000740fee4 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 4c ff 40 07 ...|...|....L.@. 000000000740fef4 f9 95 36 7e 02 00 00 00 - 18 ff 40 07 00 00 00 00 ..6~......@..... 000000000740ff04 ff ff ff ff 00 00 00 00 - 40 a3 37 7e a4 72 d4 4e ........@.7~.r.N 000000000740ff14 00 00 00 00 d8 08 00 00 - d0 08 00 00 ff cc 00 00 ................ 000000000740ff24 ff cc 33 00 ff cc 66 00 - ff cc 99 00 ff cc cc 00 ..3...f......... 000000000740ff34 ff cc ff 00 ff ff 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000740ff44 00 d0 f9 7f d0 08 00 00 - 68 ff 40 07 a8 96 36 7e ........h.@...6~ 000000000740ff54 01 00 00 00 ac ff 40 07 - ff ff ff ff ff 04 00 00 ......@......... 000000000740ff64 18 ff 40 07 b4 ff 40 07 - b2 74 bd 4e 01 00 00 00 ..@...@..t.N.... 000000000740ff74 ac ff 40 07 00 00 00 00 - ff ff ff ff ff 04 00 00 ..@............. 000000000740ff84 05 00 00 00 11 00 00 00 - 00 00 00 00 39 ac 4f 80 ............9.O. *----> Zrzut stanu dla wątku o identyfikatorze 0xe10 <----* eax=07840000 ebx=00000000 ecx=07742430 edx=ffff0000 esi=0649b978 edi=00000000 eip=7c90e514 esp=0770fef4 ebp=0770ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0770ff20 0612c37b 000009ac 0770ff48 0770ff4c ntdll!KiFastSystemCallRet 0770ff58 06114eb7 00000001 0612b4dd 0649cde8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0770ffac 0614ecbd 7c900000 7c80b729 04be1e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0770ffec 00000000 0614ec3e 04be1e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000770fef4 4a da 90 7c e6 a7 80 7c - ac 09 00 00 4c ff 70 07 J..|...|....L.p. 000000000770ff04 38 ff 70 07 18 ff 70 07 - 00 00 00 00 e4 37 01 06 8.p...p......7.. 000000000770ff14 d0 cc 49 06 c8 0e 49 06 - 96 c1 12 06 58 ff 70 07 ..I...I.....X.p. 000000000770ff24 7b c3 12 06 ac 09 00 00 - 48 ff 70 07 4c ff 70 07 {.......H.p.L.p. 000000000770ff34 54 ff 70 07 ff ff ff ff - 00 00 00 00 e8 cd 49 06 T.p...........I. 000000000770ff44 90 1e be 04 00 00 00 00 - 00 00 00 00 01 38 01 06 .............8.. 000000000770ff54 c8 0e 49 06 ac ff 70 07 - b7 4e 11 06 01 00 00 00 ..I...p..N...... 000000000770ff64 dd b4 12 06 e8 cd 49 06 - 04 38 01 06 f0 fc 49 02 ......I..8....I. 000000000770ff74 00 00 90 7c 18 ec 14 06 - e8 cd 49 06 dc 28 d5 d5 ...|......I..(.. 000000000770ff84 f0 fc 49 02 00 00 90 7c - 90 1e be 04 80 ff 70 07 ..I....|......p. 000000000770ff94 80 ff 70 07 dc ff 70 07 - dc ff 70 07 70 e7 14 06 ..p...p...p.p... 000000000770ffa4 80 5b 8f d4 00 00 00 00 - ec ff 70 07 bd ec 14 06 .[........p..... 000000000770ffb4 00 00 90 7c 29 b7 80 7c - 90 1e be 04 f0 fc 49 02 ...|)..|......I. 000000000770ffc4 00 00 90 7c 90 1e be 04 - 00 b0 f9 7f 00 46 3c 82 ...|.........F<. 000000000770ffd4 c0 ff 70 07 a8 d7 d9 81 - ff ff ff ff b0 9a 83 7c ..p............| 000000000770ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000770fff4 3e ec 14 06 90 1e be 04 - 00 00 00 00 4d 5a 90 00 >...........MZ.. 0000000007710004 03 00 00 00 04 00 00 00 - ff ff 00 00 b8 00 00 00 ................ 0000000007710014 00 00 00 00 40 00 00 00 - 00 00 00 00 00 00 00 00 ....@........... 0000000007710024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x44c <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=0649b978 edi=00000000 eip=7c90e514 esp=0797fef4 ebp=0797ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0797ff20 0612c37b 000009ac 0797ff48 0797ff4c ntdll!KiFastSystemCallRet 0797ff58 06114eb7 00000002 0612b4dd 0649ce10 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0797ffac 0614ecbd 7c900000 7c80b729 04be1e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0797ffec 00000000 0614ec3e 04be1e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000797fef4 4a da 90 7c e6 a7 80 7c - ac 09 00 00 4c ff 97 07 J..|...|....L... 000000000797ff04 38 ff 97 07 18 ff 97 07 - 00 00 00 00 78 b9 49 06 8...........x.I. 000000000797ff14 58 ff 97 07 44 b4 12 06 - 36 00 00 00 58 ff 97 07 X...D...6...X... 000000000797ff24 7b c3 12 06 ac 09 00 00 - 48 ff 97 07 4c ff 97 07 {.......H...L... 000000000797ff34 54 ff 97 07 ff ff ff ff - 00 00 00 00 10 ce 49 06 T.............I. 000000000797ff44 90 1e be 04 00 00 00 00 - 00 00 00 00 b6 38 01 06 .............8.. 000000000797ff54 00 00 00 00 ac ff 97 07 - b7 4e 11 06 02 00 00 00 .........N...... 000000000797ff64 dd b4 12 06 10 ce 49 06 - 04 38 01 06 f0 fc 49 02 ......I..8....I. 000000000797ff74 00 00 90 7c 18 ec 14 06 - 10 ce 49 06 dc 28 32 d5 ...|......I..(2. 000000000797ff84 f0 fc 49 02 00 00 90 7c - 90 1e be 04 80 ff 97 07 ..I....|........ 000000000797ff94 80 ff 97 07 dc ff 97 07 - dc ff 97 07 70 e7 14 06 ............p... 000000000797ffa4 80 5b 8f d4 00 00 00 00 - ec ff 97 07 bd ec 14 06 .[.............. 000000000797ffb4 00 00 90 7c 29 b7 80 7c - 90 1e be 04 f0 fc 49 02 ...|)..|......I. 000000000797ffc4 00 00 90 7c 90 1e be 04 - 00 a0 f9 7f 00 46 3c 82 ...|.........F<. 000000000797ffd4 c0 ff 97 07 a8 d7 d9 81 - ff ff ff ff b0 9a 83 7c ...............| 000000000797ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000797fff4 3e ec 14 06 90 1e be 04 - 00 00 00 00 00 00 00 00 >............... 0000000007980004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007980014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007980024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x358 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=0649b978 edi=00000000 eip=7c90e514 esp=07a7fef4 ebp=07a7ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 07a7ff20 0612c37b 000009ac 07a7ff48 07a7ff4c ntdll!KiFastSystemCallRet 07a7ff58 06114eb7 00000003 0612b4dd 0649ce38 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 07a7ffac 0614ecbd 7c900000 7c80b729 04be1e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 07a7ffec 00000000 0614ec3e 04be1e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000007a7fef4 4a da 90 7c e6 a7 80 7c - ac 09 00 00 4c ff a7 07 J..|...|....L... 0000000007a7ff04 38 ff a7 07 18 ff a7 07 - 00 00 00 00 e4 37 01 06 8............7.. 0000000007a7ff14 d0 cc 49 06 d8 e7 4f 06 - 96 c1 12 06 58 ff a7 07 ..I...O.....X... 0000000007a7ff24 7b c3 12 06 ac 09 00 00 - 48 ff a7 07 4c ff a7 07 {.......H...L... 0000000007a7ff34 54 ff a7 07 ff ff ff ff - 00 00 00 00 38 ce 49 06 T...........8.I. 0000000007a7ff44 90 1e be 04 00 00 00 00 - 00 00 00 00 01 38 01 06 .............8.. 0000000007a7ff54 d8 e7 4f 06 ac ff a7 07 - b7 4e 11 06 03 00 00 00 ..O......N...... 0000000007a7ff64 dd b4 12 06 38 ce 49 06 - 04 38 01 06 f0 fc 49 02 ....8.I..8....I. 0000000007a7ff74 00 00 90 7c 18 ec 14 06 - 38 ce 49 06 dc 28 02 d5 ...|....8.I..(.. 0000000007a7ff84 f0 fc 49 02 00 00 90 7c - 90 1e be 04 80 ff a7 07 ..I....|........ 0000000007a7ff94 80 ff a7 07 dc ff a7 07 - dc ff a7 07 70 e7 14 06 ............p... 0000000007a7ffa4 80 5b 8f d4 00 00 00 00 - ec ff a7 07 bd ec 14 06 .[.............. 0000000007a7ffb4 00 00 90 7c 29 b7 80 7c - 90 1e be 04 f0 fc 49 02 ...|)..|......I. 0000000007a7ffc4 00 00 90 7c 90 1e be 04 - 00 90 f9 7f 00 46 3c 82 ...|.........F<. 0000000007a7ffd4 c0 ff a7 07 a8 d7 d9 81 - ff ff ff ff b0 9a 83 7c ...............| 0000000007a7ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 0000000007a7fff4 3e ec 14 06 90 1e be 04 - 00 00 00 00 c1 00 00 00 >............... 0000000007a80004 ed 01 00 00 ff ee ff ee - 03 10 00 00 01 00 00 00 ................ 0000000007a80014 00 fe 00 00 00 00 10 00 - 00 20 00 00 00 02 00 00 ......... ...... 0000000007a80024 00 20 00 00 37 01 00 00 - ff ef fd 7f 18 00 08 06 . ..7........... *----> Zrzut stanu dla wątku o identyfikatorze 0xaf4 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=00000a2c edi=00000000 eip=7c90e514 esp=06a0feb8 ebp=06a0ff1c iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 06a0ff1c 7c802542 00000a2c 0001d4c0 00000000 ntdll!KiFastSystemCallRet 06a0ff30 06140ceb 00000a2c 0001d4c0 00000000 kernel32!WaitForSingleObject+0x12 06a0ff68 06013804 016cd870 7c900000 0614ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x12aa4c 06a0ffac 0614ecbd 7c900000 7c80b729 06493898 GoogleToolbarDynamic_32_B31C6BD+0x3804 06a0ffec 00000000 0614ec3e 06493898 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000006a0feb8 5a df 90 7c db 25 80 7c - 2c 0a 00 00 00 00 00 00 Z..|.%.|,....... 0000000006a0fec8 ec fe a0 06 ea 00 00 00 - a0 13 4c 06 00 00 00 00 ..........L..... 0000000006a0fed8 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006a0fee8 10 00 00 00 00 74 79 b8 - ff ff ff ff 00 60 fd 7f .....ty......`.. 0000000006a0fef8 00 f0 f9 7f ec fe a0 06 - 47 0a 14 06 cc fe a0 06 ........G....... 0000000006a0ff08 c7 24 80 7c 9c ff a0 06 - b0 9a 83 7c 08 26 80 7c .$.|.......|.&.| 0000000006a0ff18 00 00 00 00 30 ff a0 06 - 42 25 80 7c 2c 0a 00 00 ....0...B%.|,... 0000000006a0ff28 c0 d4 01 00 00 00 00 00 - 68 ff a0 06 eb 0c 14 06 ........h....... 0000000006a0ff38 2c 0a 00 00 c0 d4 01 00 - 00 00 00 00 a0 13 4c 06 ,.............L. 0000000006a0ff48 98 38 49 06 18 b4 fc 06 - 00 00 00 00 00 00 00 00 .8I............. 0000000006a0ff58 88 47 8b 03 0a 00 00 00 - 00 00 00 00 88 47 8b 03 .G...........G.. 0000000006a0ff68 ac ff a0 06 04 38 01 06 - 70 d8 6c 01 00 00 90 7c .....8..p.l....| 0000000006a0ff78 18 ec 14 06 a0 13 4c 06 - dc 28 05 d4 70 d8 6c 01 ......L..(..p.l. 0000000006a0ff88 00 00 90 7c 98 38 49 06 - 80 ff a0 06 80 ff a0 06 ...|.8I......... 0000000006a0ff98 dc ff a0 06 dc ff a0 06 - 70 e7 14 06 80 5b 8f d4 ........p....[.. 0000000006a0ffa8 00 00 00 00 ec ff a0 06 - bd ec 14 06 00 00 90 7c ...............| 0000000006a0ffb8 29 b7 80 7c 98 38 49 06 - 70 d8 6c 01 00 00 90 7c )..|.8I.p.l....| 0000000006a0ffc8 98 38 49 06 00 f0 f9 7f - 00 46 3c 82 c0 ff a0 06 .8I......F<..... 0000000006a0ffd8 d8 87 c8 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 0000000006a0ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 3e ec 14 06 ............>... *----> Zrzut stanu dla wątku o identyfikatorze 0xfcc <----* eax=72cb30e8 ebx=07d5fef8 ecx=000000ac edx=00150000 esi=00000000 edi=7ffd6000 eip=7c90e514 esp=07d5fed0 ebp=07d5ff6c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\wdmaud.drv - ChildEBP RetAddr Args to Child 07d5ff6c 7c80a115 00000002 07d5ffa4 00000000 ntdll!KiFastSystemCallRet 07d5ff88 72cb312a 00000002 07d5ffa4 00000000 kernel32!WaitForMultipleObjects+0x18 07d5ffb4 7c80b729 00000000 001b6f78 001cdf28 wdmaud!midMessage+0x348 07d5ffec 00000000 72cb30e8 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000007d5fed0 4a df 90 7c 90 95 80 7c - 02 00 00 00 f8 fe d5 07 J..|...|........ 0000000007d5fee0 01 00 00 00 00 00 00 00 - 00 00 00 00 78 6f 1b 00 ............xo.. 0000000007d5fef0 00 00 00 00 00 00 00 00 - 48 0b 00 00 3c 0b 00 00 ........H...<... 0000000007d5ff00 14 9c b3 f4 34 c1 4e 80 - 18 44 db 81 c8 83 b9 81 ....4.N..D...... 0000000007d5ff10 00 00 00 00 bc 41 31 82 - 14 00 00 00 01 00 00 00 .....A1......... 0000000007d5ff20 00 00 00 00 00 00 00 00 - 10 00 00 00 54 40 31 82 ............T@1. 0000000007d5ff30 3e 39 4e 80 4a 8d 57 80 - 00 60 fd 7f 00 b0 fa 7f >9N.J.W..`...... 0000000007d5ff40 00 b0 fa 7f 00 00 00 00 - f8 fe d5 07 00 00 00 00 ................ 0000000007d5ff50 02 00 00 00 ec fe d5 07 - 00 00 00 00 dc ff d5 07 ................ 0000000007d5ff60 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 88 ff d5 07 ...|...|........ 0000000007d5ff70 15 a1 80 7c 02 00 00 00 - a4 ff d5 07 00 00 00 00 ...|............ 0000000007d5ff80 ff ff ff ff 00 00 00 00 - b4 ff d5 07 2a 31 cb 72 ............*1.r 0000000007d5ff90 02 00 00 00 a4 ff d5 07 - 00 00 00 00 ff ff ff ff ................ 0000000007d5ffa0 28 df 1c 00 48 0b 00 00 - 3c 0b 00 00 00 00 00 00 (...H...<....... 0000000007d5ffb0 1a da 90 7c ec ff d5 07 - 29 b7 80 7c 00 00 00 00 ...|....)..|.... 0000000007d5ffc0 78 6f 1b 00 28 df 1c 00 - 00 00 00 00 00 b0 fa 7f xo..(........... 0000000007d5ffd0 00 46 3c 82 c0 ff d5 07 - e8 f8 ea 81 ff ff ff ff .F<............. 0000000007d5ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000007d5fff0 00 00 00 00 e8 30 cb 72 - 00 00 00 00 00 00 00 00 .....0.r........ 0000000007d60000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xd4 <----* eax=0000059d ebx=00000b74 ecx=00000500 edx=06cf8b60 esi=07e5ff98 edi=7e37772b eip=7c90e514 esp=07e5ff54 ebp=07e5ff78 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WINMM.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 07e5ff78 76b24e31 07e5ff98 00000000 00000000 ntdll!KiFastSystemCallRet 07e5ffb4 7c80b729 00000b74 00000200 0000002b WINMM!PlaySoundW+0x7e2 07e5ffec 00000000 76b24dca 00000b74 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000007e5ff54 be 91 36 7e 6b 77 37 7e - 98 ff e5 07 00 00 00 00 ..6~kw7~........ 0000000007e5ff64 00 00 00 00 00 00 00 00 - 74 0b 00 00 2b 77 37 7e ........t...+w7~ 0000000007e5ff74 00 00 00 00 b4 ff e5 07 - 31 4e b2 76 98 ff e5 07 ........1N.v.... 0000000007e5ff84 00 00 00 00 00 00 00 00 - 00 00 00 00 00 02 00 00 ................ 0000000007e5ff94 2b 00 00 00 ea 00 14 00 - bc 03 00 00 10 a6 82 09 +............... 0000000007e5ffa4 00 00 00 00 7f bf b0 00 - bc 01 00 00 55 01 00 00 ............U... 0000000007e5ffb4 ec ff e5 07 29 b7 80 7c - 74 0b 00 00 00 02 00 00 ....)..|t....... 0000000007e5ffc4 2b 00 00 00 74 0b 00 00 - 00 e0 f9 7f 00 46 3c 82 +...t........F<. 0000000007e5ffd4 c0 ff e5 07 e8 f8 ea 81 - ff ff ff ff b0 9a 83 7c ...............| 0000000007e5ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 0000000007e5fff4 ca 4d b2 76 74 0b 00 00 - 00 00 00 00 00 00 00 00 .M.vt........... 0000000007e60004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007e60014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007e60024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007e60034 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007e60044 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007e60054 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007e60064 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007e60074 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007e60084 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x178 <----* eax=00000000 ebx=07c3fef4 ecx=7ff98000 edx=76a413f0 esi=00000000 edi=7ffd6000 eip=7c90e514 esp=07c3fecc ebp=07c3ff68 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\USERENV.dll - ChildEBP RetAddr Args to Child 07c3ff68 7c80a115 00000003 76a41348 00000000 ntdll!KiFastSystemCallRet 07c3ff84 769a87bd 00000003 76a41348 00000000 kernel32!WaitForMultipleObjects+0x18 07c3ffb4 7c80b729 00000000 7c916478 00000000 USERENV!RegisterGPNotification+0x1b6 07c3ffec 00000000 769a8761 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000007c3fecc 4a df 90 7c 90 95 80 7c - 03 00 00 00 f4 fe c3 07 J..|...|........ 0000000007c3fedc 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007c3feec f0 13 a4 76 e7 9b 80 7c - d0 0b 00 00 d4 0b 00 00 ...v...|........ 0000000007c3fefc d8 0b 00 00 ac 01 ae 01 - 28 2b ea 02 16 00 18 00 ........(+...... 0000000007c3ff0c d4 86 9a 76 13 fe 65 71 - 14 00 00 00 01 00 00 00 ...v..eq........ 0000000007c3ff1c 00 00 00 00 00 00 00 00 - 10 00 00 00 0a d8 90 7c ...............| 0000000007c3ff2c 05 ad 80 7c ff ff ff ff - 00 60 fd 7f 00 80 f9 7f ...|.....`...... 0000000007c3ff3c e1 ac 80 7c 00 00 00 00 - f4 fe c3 07 00 00 00 00 ...|............ 0000000007c3ff4c 03 00 00 00 e8 fe c3 07 - 00 00 00 00 dc ff c3 07 ................ 0000000007c3ff5c b0 9a 83 7c 80 96 80 7c - 00 00 00 00 84 ff c3 07 ...|...|........ 0000000007c3ff6c 15 a1 80 7c 03 00 00 00 - 48 13 a4 76 00 00 00 00 ...|....H..v.... 0000000007c3ff7c ff ff ff ff 00 00 00 00 - b4 ff c3 07 bd 87 9a 76 ...............v 0000000007c3ff8c 03 00 00 00 48 13 a4 76 - 00 00 00 00 ff ff ff ff ....H..v........ 0000000007c3ff9c 78 64 91 7c 00 00 00 00 - 00 00 00 00 00 00 9a 76 xd.|...........v 0000000007c3ffac 03 00 00 00 00 00 00 00 - ec ff c3 07 29 b7 80 7c ............)..| 0000000007c3ffbc 00 00 00 00 78 64 91 7c - 00 00 00 00 00 00 00 00 ....xd.|........ 0000000007c3ffcc 00 80 f9 7f 00 46 3c 82 - c0 ff c3 07 48 98 d1 81 .....F<.....H... 0000000007c3ffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 0000000007c3ffec 00 00 00 00 00 00 00 00 - 61 87 9a 76 00 00 00 00 ........a..v.... 0000000007c3fffc 00 00 00 00 0d 00 b0 6f - 01 00 3f 00 3f 00 3f 00 .......o..?.?.?. *----> Zrzut stanu dla wątku o identyfikatorze 0xf74 <----* eax=00000000 ebx=06ea4e0c ecx=0892ff34 edx=06ea4ef8 esi=00000cf4 edi=00000000 eip=7c90e514 esp=0892ff04 ebp=0892ff68 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0892ff68 7c802542 00000cf4 ffffffff 00000000 ntdll!KiFastSystemCallRet 0892ff7c 3f578b7d 00000cf4 ffffffff 3f330000 kernel32!WaitForSingleObject+0x12 0892ffa0 3f340774 016c9910 3f340837 06fe9ba0 mshtml!Ordinal103+0x3d3bd 0892ffb4 7c80b729 06ea4dc0 016c9910 06fe9ba0 mshtml+0x10774 0892ffec 00000000 3f340829 06ea4dc0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000892ff04 5a df 90 7c db 25 80 7c - f4 0c 00 00 00 00 00 00 Z..|.%.|........ 000000000892ff14 00 00 00 00 00 00 00 00 - c0 4d ea 06 0c 4e ea 06 .........M...N.. 000000000892ff24 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000892ff34 10 00 00 00 70 be f9 ff - ff ff ff ff 00 60 fd 7f ....p........`.. 000000000892ff44 00 60 f9 7f 00 00 00 00 - 02 01 00 00 18 ff 92 08 .`.............. 000000000892ff54 a8 b9 22 00 dc ff 92 08 - b0 9a 83 7c 08 26 80 7c .."........|.&.| 000000000892ff64 00 00 00 00 7c ff 92 08 - 42 25 80 7c f4 0c 00 00 ....|...B%.|.... 000000000892ff74 ff ff ff ff 00 00 00 00 - a0 ff 92 08 7d 8b 57 3f ............}.W? 000000000892ff84 f4 0c 00 00 ff ff ff ff - 00 00 33 3f c0 4d ea 06 ..........3?.M.. 000000000892ff94 c0 4d ea 06 49 e1 ae 00 - ff ff ff ff b4 ff 92 08 .M..I........... 000000000892ffa4 74 07 34 3f 10 99 6c 01 - 37 08 34 3f a0 9b fe 06 t.4?..l.7.4?.... 000000000892ffb4 ec ff 92 08 29 b7 80 7c - c0 4d ea 06 10 99 6c 01 ....)..|.M....l. 000000000892ffc4 a0 9b fe 06 c0 4d ea 06 - 00 60 f9 7f 00 46 3c 82 .....M...`...F<. 000000000892ffd4 c0 ff 92 08 70 e7 f6 81 - ff ff ff ff b0 9a 83 7c ....p..........| 000000000892ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000892fff4 29 08 34 3f c0 4d ea 06 - 00 00 00 00 00 00 00 00 ).4?.M.......... 0000000008930004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008930014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008930024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008930034 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xeec <----* eax=0af791c0 ebx=010a57d0 ecx=016cd440 edx=016cd360 esi=00000a5c edi=00000000 eip=7c90e514 esp=0d10fe78 ebp=0d10fedc iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\Macromed\Flash\Flash32_11_7_700_202.ocx - ChildEBP RetAddr Args to Child 0d10fedc 7c802542 00000a5c ffffffff 00000000 ntdll!KiFastSystemCallRet 0d10fef0 0af795ef 00000a5c ffffffff 010a57d0 kernel32!WaitForSingleObject+0x12 0d10ff14 0af7b774 ffffffff 7fffffff 3ff58fb6 Flash32_11_7_700_202!IAEModule_IAEKernel_UnloadModule+0x1ef 0d10ff4c 0af79ed9 ffffffff 7fffffff 00150000 Flash32_11_7_700_202!IAEModule_IAEKernel_UnloadModule+0x2374 0d10ff8c 0af79e8b 0d10ffb4 0af79245 010a57d0 Flash32_11_7_700_202!IAEModule_IAEKernel_UnloadModule+0xad9 0d10ff94 0af79245 010a57d0 010a4830 010a57e0 Flash32_11_7_700_202!IAEModule_IAEKernel_UnloadModule+0xa8b 0d10ffb4 7c80b729 010a57d0 001cdf28 001ce058 Flash32_11_7_700_202!IAEModule_AEModule_PutKernel+0x1f45 0d10ffec 00000000 0af791c0 010a57d0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000d10fe78 5a df 90 7c db 25 80 7c - 5c 0a 00 00 00 00 00 00 Z..|.%.|\....... 000000000d10fe88 00 00 00 00 28 df 1c 00 - 58 e0 1c 00 d0 57 0a 01 ....(...X....W.. 000000000d10fe98 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000d10fea8 10 00 00 00 d0 57 0a 01 - 94 10 00 00 00 60 fd 7f .....W.......`.. 000000000d10feb8 00 40 f9 7f 00 00 00 00 - 28 df 1c 00 8c fe 10 0d .@......(....... 000000000d10fec8 d0 57 0a 01 40 ff 10 0d - b0 9a 83 7c 08 26 80 7c .W..@......|.&.| 000000000d10fed8 00 00 00 00 f0 fe 10 0d - 42 25 80 7c 5c 0a 00 00 ........B%.|\... 000000000d10fee8 ff ff ff ff 00 00 00 00 - 14 ff 10 0d ef 95 f7 0a ................ 000000000d10fef8 5c 0a 00 00 ff ff ff ff - d0 57 0a 01 28 df 1c 00 \........W..(... 000000000d10ff08 58 e0 1c 00 ff ff ff ff - b8 58 0a 01 4c ff 10 0d X........X..L... 000000000d10ff18 74 b7 f7 0a ff ff ff ff - ff ff ff 7f b6 8f f5 3f t..............? 000000000d10ff28 38 58 0a 01 54 a0 af 81 - 30 bc 37 f4 1c ff 10 0d 8X..T...0.7..... 000000000d10ff38 98 16 cb 81 20 a0 af 81 - dc ff 10 0d 18 a4 54 0b .... .........T. 000000000d10ff48 ff ff ff ff 8c ff 10 0d - d9 9e f7 0a ff ff ff ff ................ 000000000d10ff58 ff ff ff 7f 00 00 15 00 - 30 48 0a 01 00 60 fd 7f ........0H...`.. 000000000d10ff68 dc ff 10 0d 00 00 00 00 - e0 01 91 7c ff ff ff ff ...........|.... 000000000d10ff78 db 01 91 7c ff ff ff ff - ff ff ff 7f 9c ff 10 0d ...|............ 000000000d10ff88 46 10 90 01 94 ff 10 0d - 8b 9e f7 0a b4 ff 10 0d F............... 000000000d10ff98 45 92 f7 0a d0 57 0a 01 - 30 48 0a 01 e0 57 0a 01 E....W..0H...W.. 000000000d10ffa8 30 48 0a 01 80 9e f7 0a - d0 57 0a 01 ec ff 10 0d 0H.......W...... *----> Zrzut stanu dla wątku o identyfikatorze 0xb74 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=03d1ff70 ebp=03d1ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 03d1ffb4 7c80b729 00000000 0361bfe0 001cf720 ntdll!KiFastSystemCallRet 03d1ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000003d1ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff d1 03 J..|...|........ 0000000003d1ff80 b0 ff d1 03 98 ff d1 03 - a0 ff d1 03 e0 bf 61 03 ..............a. 0000000003d1ff90 20 f7 1c 00 00 00 00 00 - 00 00 00 00 00 e0 b8 08 ............... 0000000003d1ffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 0000000003d1ffb0 e8 b5 b8 08 ec ff d1 03 - 29 b7 80 7c 00 00 00 00 ........)..|.... 0000000003d1ffc0 e0 bf 61 03 20 f7 1c 00 - 00 00 00 00 00 e0 fd 7f ..a. ........... 0000000003d1ffd0 00 46 3c 82 c0 ff d1 03 - 08 ae cb 81 ff ff ff ff .F<............. 0000000003d1ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000003d1fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000003d20000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003d20010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003d20020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003d20030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003d20040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003d20050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003d20060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003d20070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003d20080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003d20090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003d200a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x6f0 <----* eax=00000000 ebx=00000000 ecx=00000004 edx=00000000 esi=032ca8d0 edi=10ad451c eip=3f618020 esp=10ad44f8 ebp=10ad4504 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: mshtml!Ordinal103 3f618007 c075ee8b shl byte ptr [ebp-0x12],0x8b 3f61800b 40 inc eax 3f61800c 70e9 jo mshtml!Ordinal103+0xdc837 (3f617ff7) 3f61800e 16 push ss 3f61800f 94 xchg eax,esp 3f618010 e3ff jecxz mshtml!Ordinal103+0xdc851 (3f618011) 3f618012 8bc6 mov eax,esi 3f618014 e8b6ff1f00 call mshtml+0x4e7fcf (3f817fcf) 3f618019 8bf0 mov esi,eax 3f61801b e9b593e3ff jmp mshtml!DllGetClassObject+0x1040d0 (3f4513d5) BŁĄD ->3f618020 395314 cmp [ebx+0x14],edx ds:0023:00000014=???????? 3f618023 743a jz mshtml!Ordinal103+0xdc89f (3f61805f) 3f618025 8b4e38 mov ecx,[esi+0x38] 3f618028 89550c mov [ebp+0xc],edx 3f61802b 395004 cmp [eax+0x4],edx 3f61802e 750d jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618030 395018 cmp [eax+0x18],edx 3f618033 7508 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618035 394838 cmp [eax+0x38],ecx 3f618038 7503 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f61803a 89450c mov [ebp+0xc],eax *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\jscript.dll - ChildEBP RetAddr Args to Child 10ad4504 3f45135d 10ad45c8 10ad4538 10ad451c mshtml!Ordinal103+0xdc860 10ad453c 3f452257 08a6b050 032c72b8 070464d4 mshtml!DllGetClassObject+0x104058 10ad460c 3f4ae631 08a6b050 032c72b8 00000000 mshtml!DllGetClassObject+0x104f52 10ad4640 3f4ac39b 08a6b050 032c72b8 00000000 mshtml!Ordinal104+0xccc1 10ad4774 3f4abe87 08a6b050 032c72b8 00000000 mshtml!Ordinal104+0xaa2b 10ad47a4 3f4ac898 08a6b050 032c72b8 00000000 mshtml!Ordinal104+0xa517 10ad4864 3f4a93b9 00000000 032c72b8 00000000 mshtml!Ordinal104+0xaf28 10ad4984 3f4aab8a 0924da68 0977f760 032c72b8 mshtml!Ordinal104+0x7a49 10ad4a58 3f4ab0c0 0924da68 0977f760 07045e98 mshtml!Ordinal104+0x921a 10ad4af8 3f4a9b96 0924da68 0977f760 032c72b8 mshtml!Ordinal104+0x9750 10ad4b4c 3f4ace27 08a6b050 032c72b8 00000000 mshtml!Ordinal104+0x8226 10ad4bf0 3f4af5b7 08a6b050 032c72b8 00000000 mshtml!Ordinal104+0xb4b7 10ad4cc8 3f4aeaba 08a6b050 00000000 00000001 mshtml!Ordinal104+0xdc47 10ad4ddc 3f4ae8be 08a6b050 00000000 10ad4f0c mshtml!Ordinal104+0xd14a 10ad4e28 3f4a7c15 08a6b050 0726efd8 00000000 mshtml!Ordinal104+0xcf4e 10ad4f88 3f4af97b 08a6b050 032c72b8 0726efd8 mshtml!Ordinal104+0x62a5 10ad4ffc 3f4af0c1 032c72b8 00000000 00000000 mshtml!Ordinal104+0xe00b 10ad50b8 3f4b51c0 032c72b8 00000000 10ad5168 mshtml!Ordinal104+0xd751 10ad51a0 3f4b66b9 032c72b8 00000000 00000001 mshtml!Ordinal104+0x13850 10ad51d4 3f4b7564 3fffffff 00000000 00000001 mshtml!Ordinal104+0x14d49 10ad521c 3f4b7414 032c72b8 00000000 10ad52f8 mshtml!Ordinal104+0x15bf4 10ad52fc 3f4b737d 032c72b8 00000000 00000000 mshtml!Ordinal104+0x15aa4 10ad5344 3f4b7198 032c72b8 10ad536c 00000000 mshtml!Ordinal104+0x15a0d 10ad5390 3f4b5f74 032c72b8 00000000 072e59f8 mshtml!Ordinal104+0x15828 10ad5504 3f4b5e15 032c72b8 00000000 072e59f8 mshtml!Ordinal104+0x14604 10ad5570 3f4b5c85 032c72b8 00000000 072e59f8 mshtml!Ordinal104+0x144a5 10ad5650 3f4b629e 032c72b8 10ad56f8 10ad58a8 mshtml!Ordinal104+0x14315 10ad5794 3f4b6b24 032c72b8 00000000 072e59f8 mshtml!Ordinal104+0x1492e 10ad58cc 3f4d5540 08a6b050 072e59f8 00000001 mshtml!Ordinal104+0x151b4 10ad58f0 3f4d54ed 08a6b050 0329b9e0 072e59f8 mshtml!Ordinal104+0x33bd0 10ad5994 3f4ab7ce 002e59f8 072a63e0 10ad59bb mshtml!Ordinal104+0x33b7d 10ad5b04 3f3eb947 10ad5cc8 10ad5c60 00000000 mshtml!Ordinal104+0x9e5e 10ad5c3c 3f3fe4ee 072a63e0 00000000 00000000 mshtml!DllGetClassObject+0x9e642 10ad5d38 3f5cd0c0 00100000 10ad5d90 0988dde0 mshtml!DllGetClassObject+0xb11e9 10ad5d4c 3f3d8c8d 10ad5d90 10ad5d90 3f3e1fff mshtml!Ordinal103+0x91900 10ad5d6c 3f3d8e57 10ad5d90 099ba8c8 00000000 mshtml!DllGetClassObject+0x8b988 10ad5dc4 3f3d6e02 10ad5e58 002395b8 10ad5e58 mshtml!DllGetClassObject+0x8bb52 10ad5e1c 3f3d6d75 071b14b8 00000000 0023967c mshtml!DllGetClassObject+0x89afd 10ad5e44 3f3e1efa 10ad5e58 002397a8 3f3a10a0 mshtml!DllGetClassObject+0x89a70 10ad5e8c 3f3b53ca 0000000f 00000000 00000000 mshtml!DllGetClassObject+0x94bf5 10ad5eb0 3f5587e5 090ffcc0 00000001 09dde9e0 mshtml!DllGetClassObject+0x680c5 10ad5edc 3f5588d2 090ffcc0 0505c530 00001200 mshtml!Ordinal103+0x1d025 10ad5f00 3f512165 090ffcc0 09dde9e0 0505c530 mshtml!Ordinal103+0x1d112 10ad5f20 3f41ab53 090ffcc0 0505c530 097cb4a0 mshtml!Ordinal104+0x707f5 10ad5f94 3f426bf1 090ffcc0 800103f2 00000002 mshtml!DllGetClassObject+0xcd84e 10ad5fe4 3f4328c8 090ffcc0 800103f2 00000002 mshtml!DllGetClassObject+0xd98ec 10ad6010 3f41a551 090ffcc0 800103f2 00000002 mshtml!DllGetClassObject+0xe55c3 10ad6060 3fc53a9a 097d24f0 800103f2 00000002 mshtml!DllGetClassObject+0xcd24c 10ad60a0 3fc539e6 0a6df658 800103f2 00000409 jscript!DllGetClassObject+0xc855 10ad60dc 3fc54f26 0a6df658 00000409 00000002 jscript!DllGetClassObject+0xc7a1 10ad619c 3fc54e80 800103f2 00000002 09dde9d8 jscript!DllGetClassObject+0xdce1 10ad61d0 3fc54b96 0a6df658 10ad62f8 00000002 jscript!DllGetClassObject+0xdc3b 10ad6368 3fc513ab 10ad6380 10ad67a0 10ad67a0 jscript!DllGetClassObject+0xd951 10ad6450 3fc512e5 10ad67a0 00000003 09ddea88 jscript!DllGetClassObject+0xa166 10ad649c 3fc52a05 10ad67a0 00000003 09ddea88 jscript!DllGetClassObject+0xa0a0 10ad6520 3fc528c5 054a9010 0a6df658 00000003 jscript!DllGetClassObject+0xb7c0 10ad6554 3fc543fc 0a6df658 00000000 00000003 jscript!DllGetClassObject+0xb680 10ad6594 3fc524c1 0a6df658 10ad6604 057b1ea8 jscript!DllGetClassObject+0xd1b7 10ad65d0 3fc52d6d 0a6df658 10ad6604 00000003 jscript!DllGetClassObject+0xb27c 10ad661c 3fc54235 0a6df658 00000003 10ad67a0 jscript!DllGetClassObject+0xbb28 10ad664c 3fc53114 0a6df658 00000000 00000003 jscript!DllGetClassObject+0xcff0 10ad67e8 3fc513ab 10ad6800 10ad6c20 10ad6c20 jscript!DllGetClassObject+0xbecf 10ad68d0 3fc512e5 10ad6c20 00000002 09ddeb88 jscript!DllGetClassObject+0xa166 10ad691c 3fc52a05 10ad6c20 00000002 09ddeb88 jscript!DllGetClassObject+0xa0a0 10ad69a0 3fc528c5 051b7d10 0a6df658 00000003 jscript!DllGetClassObject+0xb7c0 10ad69d4 3fc543fc 0a6df658 00000000 00000003 jscript!DllGetClassObject+0xb680 10ad6a14 3fc524c1 0a6df658 10ad6a84 050cd658 jscript!DllGetClassObject+0xd1b7 10ad6a50 3fc52d6d 0a6df658 10ad6a84 00000003 jscript!DllGetClassObject+0xb27c 10ad6a9c 3fc54235 0a6df658 00000003 10ad6c20 jscript!DllGetClassObject+0xbb28 10ad6acc 3fc53114 0a6df658 00000000 00000003 jscript!DllGetClassObject+0xcff0 10ad6c68 3fc513ab 10ad6c80 10ad70a0 10ad70a0 jscript!DllGetClassObject+0xbecf 10ad6d50 3fc512e5 10ad70a0 00000000 09ddec68 jscript!DllGetClassObject+0xa166 10ad6d9c 3fc52a05 10ad70a0 00000000 09ddec68 jscript!DllGetClassObject+0xa0a0 10ad6e20 3fc528c5 054f32a8 0a6df658 00000001 jscript!DllGetClassObject+0xb7c0 10ad6e54 3fc543fc 0a6df658 00000000 00000001 jscript!DllGetClassObject+0xb680 10ad6e94 3fc524c1 0a6df658 10ad6f04 09c8d538 jscript!DllGetClassObject+0xd1b7 10ad6ed0 3fc52d6d 0a6df658 10ad6f04 00000001 jscript!DllGetClassObject+0xb27c 10ad6f1c 3fc54235 0a6df658 00000001 10ad70a0 jscript!DllGetClassObject+0xbb28 10ad6f4c 3fc53114 0a6df658 00000000 00000001 jscript!DllGetClassObject+0xcff0 10ad70e8 3fc513ab 10ad7100 10ad7688 10ad7688 jscript!DllGetClassObject+0xbecf 10ad71d0 3fc512e5 10ad7688 00000002 09dded18 jscript!DllGetClassObject+0xa166 10ad721c 3fc52a05 10ad7688 00000002 09dded18 jscript!DllGetClassObject+0xa0a0 10ad72a0 3fc528c5 09ac7cb8 0a6df658 00000001 jscript!DllGetClassObject+0xb7c0 10ad72d4 3fc73b5f 0a6df658 00000000 00000001 jscript!DllGetClassObject+0xb680 10ad731c 3fc54327 0a6df658 10ad73c0 10ad7688 jscript!DllCanUnloadNow+0x103df 10ad7384 3fc52a05 10ad7688 00000003 09dded18 jscript!DllGetClassObject+0xd0e2 10ad7408 3fc528c5 0a418380 0a6df658 00000003 jscript!DllGetClassObject+0xb7c0 10ad743c 3fc543fc 0a6df658 00000000 00000003 jscript!DllGetClassObject+0xb680 10ad747c 3fc524c1 0a6df658 10ad74ec 09ac7cb8 jscript!DllGetClassObject+0xd1b7 10ad74b8 3fc52d6d 0a6df658 10ad74ec 00000003 jscript!DllGetClassObject+0xb27c 10ad7504 3fc54235 0a6df658 00000003 10ad7688 jscript!DllGetClassObject+0xbb28 10ad7534 3fc53114 0a6df658 00000000 00000003 jscript!DllGetClassObject+0xcff0 10ad76d0 3fc513ab 10ad76e8 10ad7b08 10ad7b08 jscript!DllGetClassObject+0xbecf 10ad77b8 3fc512e5 10ad7b08 00000003 09ddee08 jscript!DllGetClassObject+0xa166 10ad7804 3fc52a05 10ad7b08 00000003 09ddee08 jscript!DllGetClassObject+0xa0a0 10ad7888 3fc528c5 053b3200 0a6df658 00000003 jscript!DllGetClassObject+0xb7c0 10ad78bc 3fc543fc 0a6df658 00000000 00000003 jscript!DllGetClassObject+0xb680 10ad78fc 3fc524c1 0a6df658 10ad796c 050cd658 jscript!DllGetClassObject+0xd1b7 10ad7938 3fc52d6d 0a6df658 10ad796c 00000003 jscript!DllGetClassObject+0xb27c 10ad7984 3fc54235 0a6df658 00000003 10ad7b08 jscript!DllGetClassObject+0xbb28 *----> Zrzut stosu <----* 0000000010ad44f8 c8 45 ad 10 50 b0 a6 08 - 00 00 00 00 3c 45 ad 10 .E..P....... Zrzut stanu dla wątku o identyfikatorze 0x814 <----* eax=00000000 ebx=03e1fea8 ecx=00000000 edx=00000000 esi=00000000 edi=7ffd6000 eip=7c90e514 esp=03e1fe80 ebp=03e1ff1c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 03e1ff1c 7c80a115 00000002 03e1ff58 00000000 ntdll!KiFastSystemCallRet 03e1ff38 0609e03b 00000002 03e1ff58 00000000 kernel32!WaitForMultipleObjects+0x18 03e1ff68 06013804 10add8b4 7c900000 0614ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x87d9c 03e1ffac 0614ecbd 7c900000 7c80b729 064dc0c0 GoogleToolbarDynamic_32_B31C6BD+0x3804 03e1ffec 00000000 0614ec3e 064dc0c0 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000003e1fe80 4a df 90 7c 90 95 80 7c - 02 00 00 00 a8 fe e1 03 J..|...|........ 0000000003e1fe90 01 00 00 00 00 00 00 00 - 00 00 00 00 28 1a 4d 06 ............(.M. 0000000003e1fea0 28 1a 4d 06 fd a0 80 7c - 04 0d 00 00 e0 0d 00 00 (.M....|........ 0000000003e1feb0 17 00 00 00 01 00 00 00 - 8c d5 4e 77 fc 6b f2 06 ..........Nw.k.. 0000000003e1fec0 d4 fe e1 03 ac d6 4e 77 - 14 00 00 00 01 00 00 00 ......Nw........ 0000000003e1fed0 00 00 00 00 00 00 00 00 - 10 00 00 00 f9 1a 4f 77 ..............Ow 0000000003e1fee0 74 df 81 03 60 ff e1 03 - 00 60 fd 7f 00 c0 f9 7f t...`....`...... 0000000003e1fef0 e4 b6 15 00 00 00 00 00 - a8 fe e1 03 c5 16 4f 77 ..............Ow 0000000003e1ff00 02 00 00 00 9c fe e1 03 - 3c 78 5f 77 9c ff e1 03 ........ Zrzut stanu dla wątku o identyfikatorze 0xa34 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=08a2ff70 ebp=08a2ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 08a2ffb4 7c80b729 00000000 001cdf28 7c90e920 ntdll!KiFastSystemCallRet 08a2ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000008a2ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff a2 08 J..|...|........ 0000000008a2ff80 b0 ff a2 08 98 ff a2 08 - a0 ff a2 08 28 df 1c 00 ............(... 0000000008a2ff90 20 e9 90 7c 00 00 00 00 - 00 00 00 00 e8 af b8 08 ..|............ 0000000008a2ffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 0000000008a2ffb0 f8 e4 b8 08 ec ff a2 08 - 29 b7 80 7c 00 00 00 00 ........)..|.... 0000000008a2ffc0 28 df 1c 00 20 e9 90 7c - 00 00 00 00 00 70 f9 7f (... ..|.....p.. 0000000008a2ffd0 00 46 3c 82 c0 ff a2 08 - 98 14 f5 81 ff ff ff ff .F<............. 0000000008a2ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000008a2fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000008a30000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008a30010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008a30020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008a30030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008a30040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008a30050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008a30060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008a30070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008a30080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008a30090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000008a300a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x844 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=0ca3ff70 ebp=0ca3ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0ca3ffb4 7c80b729 00000000 0224f8ec 06e33410 ntdll!KiFastSystemCallRet 0ca3ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000ca3ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff a3 0c J..|...|........ 000000000ca3ff80 b0 ff a3 0c 98 ff a3 0c - a0 ff a3 0c ec f8 24 02 ..............$. 000000000ca3ff90 10 34 e3 06 00 00 00 00 - 00 00 00 00 30 dd b8 08 .4..........0... 000000000ca3ffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 000000000ca3ffb0 50 ed b8 08 ec ff a3 0c - 29 b7 80 7c 00 00 00 00 P.......)..|.... 000000000ca3ffc0 ec f8 24 02 10 34 e3 06 - 00 00 00 00 00 50 f9 7f ..$..4.......P.. 000000000ca3ffd0 00 46 3c 82 c0 ff a3 0c - 70 27 2e 82 ff ff ff ff .F<.....p'...... 000000000ca3ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 000000000ca3fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 000000000ca40000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000ca40010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000ca40020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000ca40030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000ca40040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000ca40050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000ca40060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000ca40070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000ca40080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000ca40090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000ca400a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ Wystąpił wyjątek aplikacji: Apl: C:\Program Files\Internet Explorer\iexplore.exe (pid=1924) Kiedy: 2013-07-05 @ 11:52:33.525 Numer wyjątku: c0000005 (naruszenie praw dostępu) *----> Informacje o systemie <----* Nazwa komputera: OEM-23004A62F73 Nazwa użytkownika: oem Identyfikator sesji terminala: 0 Liczba procesorów: 1 Typ procesora: x86 Family 15 Model 2 Stepping 7 Wersja systemu Windows: 5.1 Bieżąca kompilacja: 2600 Dodatek Service Pack: 3. Bieżący typ: Uniprocessor Free Zarejestrowana organizacja: Zarejestrowany właściciel: oem *----> Lista zadań <----* 0 System Process 4 System 792 smss.exe 848 csrss.exe 876 winlogon.exe 920 services.exe 932 lsass.exe 1104 svchost.exe 1192 svchost.exe 1340 svchost.exe 1412 svchost.exe 1524 svchost.exe 1856 Explorer.EXE 1936 spoolsv.exe 572 egui.exe 704 svchost.exe 768 ACService.exe 820 ekrn.exe 812 ctfmon.exe 824 GoogleToolbarNotifier.exe 1420 mdm.exe 1488 svchost.exe 1124 alg.exe 1588 iexplore.exe 2796 iexplore.exe 1924 iexplore.exe 2276 drwtsn32.exe *----> Lista modułów <----* (0000000000400000 - 000000000049c000: C:\Program Files\Internet Explorer\iexplore.exe (00000000016d0000 - 00000000019a2000: C:\WINDOWS\system32\xpsp2res.dll (0000000001cb0000 - 0000000001cb9000: C:\WINDOWS\system32\Normaliz.dll (0000000002390000 - 00000000023a0000: C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (00000000024c0000 - 00000000025b9000: C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (0000000002e60000 - 00000000032d5000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll (0000000003440000 - 000000000353f000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E7110F8B630E4F04.dll (0000000003e00000 - 0000000003e29000: C:\WINDOWS\system32\msls31.dll (0000000005390000 - 00000000063af000: C:\WINDOWS\system32\Macromed\Flash\Flash32_11_7_700_202.ocx (0000000010000000 - 0000000010033000: C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (000000001b000000 - 000000001b00c000: C:\WINDOWS\system32\ImgUtil.dll (000000001b060000 - 000000001b06e000: C:\WINDOWS\system32\pngfilt.dll (000000001f840000 - 000000001f858000: C:\WINDOWS\system32\odbcint.dll (000000003f330000 - 000000003f8f0000: C:\WINDOWS\system32\mshtml.dll (000000003fc30000 - 000000003fce4000: C:\WINDOWS\system32\jscript.dll (000000003fcf0000 - 000000003fdd7000: C:\WINDOWS\system32\WININET.dll (0000000040390000 - 000000004057c000: C:\WINDOWS\system32\iertutil.dll (0000000040580000 - 000000004101d000: C:\WINDOWS\system32\IEFRAME.dll (0000000042a20000 - 0000000042a4f000: C:\WINDOWS\system32\iepeers.dll (00000000451f0000 - 00000000451f6000: C:\Program Files\Internet Explorer\xpshims.dll (0000000045330000 - 0000000045464000: C:\WINDOWS\system32\urlmon.dll (0000000045530000 - 0000000045570000: C:\Program Files\Internet Explorer\ieproxy.dll (000000004ebc0000 - 000000004ed6b000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll (0000000059bc0000 - 0000000059c61000: C:\WINDOWS\system32\dbghelp.dll (000000005b1d0000 - 000000005b208000: C:\WINDOWS\system32\uxtheme.dll (000000005cfe0000 - 000000005d006000: C:\WINDOWS\system32\ShimEng.dll (000000005d520000 - 000000005d5ba000: C:\WINDOWS\system32\comctl32.dll (0000000061880000 - 00000000618ba000: C:\WINDOWS\system32\OLEACC.dll (0000000066780000 - 00000000667d8000: C:\WINDOWS\system32\hnetcfg.dll (0000000068000000 - 0000000068036000: C:\WINDOWS\system32\rsaenh.dll (000000006d440000 - 000000006d44c000: C:\Program Files\Java\jre6\bin\jp2ssv.dll (000000006daf0000 - 000000006db02000: C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (000000006ff40000 - 000000006ff95000: C:\WINDOWS\system32\NETAPI32.dll (0000000071620000 - 0000000071699000: C:\WINDOWS\AppPatch\AcLayers.DLL (00000000719f0000 - 0000000071a30000: C:\WINDOWS\System32\mswsock.dll (0000000071a30000 - 0000000071a38000: C:\WINDOWS\System32\wshtcpip.dll (0000000071a40000 - 0000000071a48000: C:\WINDOWS\system32\WS2HELP.dll (0000000071a50000 - 0000000071a67000: C:\WINDOWS\system32\ws2_32.dll (0000000071ac0000 - 0000000071ad2000: C:\WINDOWS\system32\MPR.dll (0000000071ba0000 - 0000000071bb3000: C:\WINDOWS\System32\SAMLIB.dll (0000000071bc0000 - 0000000071bce000: C:\WINDOWS\System32\ntlanman.dll (0000000071c30000 - 0000000071c37000: C:\WINDOWS\System32\NETRAP.dll (0000000071c40000 - 0000000071c80000: C:\WINDOWS\System32\NETUI1.dll (0000000071c80000 - 0000000071c97000: C:\WINDOWS\System32\NETUI0.dll (0000000071cf0000 - 0000000071d0b000: C:\WINDOWS\system32\actxprxy.dll (0000000072260000 - 0000000072265000: C:\WINDOWS\system32\sensapi.dll (0000000072ea0000 - 0000000072f0f000: C:\WINDOWS\system32\ieapfltr.dll (0000000072f90000 - 0000000072fb6000: C:\WINDOWS\system32\WINSPOOL.DRV (0000000073ac0000 - 0000000073ad5000: C:\WINDOWS\system32\mscms.dll (0000000073b30000 - 0000000073b44000: C:\WINDOWS\system32\sti.dll (0000000073ea0000 - 0000000073efc000: C:\WINDOWS\system32\DSOUND.dll (0000000074600000 - 000000007463d000: C:\WINDOWS\system32\ODBC32.dll (00000000746a0000 - 00000000746ca000: C:\WINDOWS\system32\msimtf.dll (00000000746d0000 - 000000007471c000: C:\WINDOWS\system32\MSCTF.dll (0000000074a90000 - 0000000074a97000: C:\WINDOWS\system32\CFGMGR32.dll (0000000075180000 - 00000000751ae000: C:\WINDOWS\system32\msctfime.ime (0000000075940000 - 0000000075a39000: C:\WINDOWS\system32\MSGINA.dll (0000000075d70000 - 0000000075e01000: C:\WINDOWS\system32\MLANG.dll (0000000075f30000 - 0000000075f37000: C:\WINDOWS\System32\drprov.dll (0000000075f40000 - 0000000075f4a000: C:\WINDOWS\System32\davclnt.dll (0000000076330000 - 0000000076340000: C:\WINDOWS\system32\WINSTA.dll (0000000076350000 - 0000000076355000: C:\WINDOWS\system32\MSIMG32.dll (0000000076360000 - 000000007637d000: C:\WINDOWS\system32\IMM32.DLL (0000000076380000 - 00000000763c9000: C:\WINDOWS\system32\comdlg32.dll (0000000076770000 - 000000007677c000: C:\WINDOWS\system32\cryptdll.dll (0000000076970000 - 0000000076996000: C:\WINDOWS\system32\ntshrui.dll (00000000769a0000 - 0000000076a55000: C:\WINDOWS\system32\USERENV.dll (0000000076b00000 - 0000000076b11000: C:\WINDOWS\system32\ATL.DLL (0000000076b20000 - 0000000076b4e000: C:\WINDOWS\system32\WINMM.dll (0000000076be0000 - 0000000076beb000: C:\WINDOWS\system32\PSAPI.DLL (0000000076c20000 - 0000000076c4e000: C:\WINDOWS\system32\WINTRUST.dll (0000000076c80000 - 0000000076ca8000: C:\WINDOWS\system32\IMAGEHLP.dll (0000000076d50000 - 0000000076d69000: C:\WINDOWS\system32\iphlpapi.dll (0000000076e70000 - 0000000076e7e000: C:\WINDOWS\system32\rtutils.dll (0000000076e80000 - 0000000076e92000: C:\WINDOWS\system32\rasman.dll (0000000076ea0000 - 0000000076ecf000: C:\WINDOWS\system32\TAPI32.dll (0000000076ed0000 - 0000000076f0c000: C:\WINDOWS\system32\RASAPI32.dll (0000000076f10000 - 0000000076f37000: C:\WINDOWS\system32\DNSAPI.dll (0000000076f40000 - 0000000076f48000: C:\WINDOWS\system32\WTSAPI32.dll (0000000076fb0000 - 0000000076fb6000: C:\WINDOWS\system32\rasadhlp.dll (0000000076fc0000 - 000000007703f000: C:\WINDOWS\system32\CLBCATQ.DLL (0000000077040000 - 000000007710d000: C:\WINDOWS\system32\COMRes.dll (0000000077110000 - 000000007719b000: C:\WINDOWS\system32\OLEAUT32.dll (00000000773c0000 - 00000000774c3000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (00000000774d0000 - 000000007760e000: C:\WINDOWS\system32\ole32.dll (0000000077910000 - 0000000077a06000: C:\WINDOWS\system32\SETUPAPI.dll (0000000077a70000 - 0000000077b06000: C:\WINDOWS\system32\CRYPT32.dll (0000000077b10000 - 0000000077b22000: C:\WINDOWS\system32\MSASN1.dll (0000000077b30000 - 0000000077b52000: C:\WINDOWS\system32\appHelp.dll (0000000077bf0000 - 0000000077bf8000: C:\WINDOWS\system32\VERSION.dll (0000000077c00000 - 0000000077c58000: C:\WINDOWS\system32\msvcrt.dll (0000000077c60000 - 0000000077c85000: C:\WINDOWS\system32\msv1_0.dll (0000000077dc0000 - 0000000077e6c000: C:\WINDOWS\system32\ADVAPI32.dll (0000000077e70000 - 0000000077f03000: C:\WINDOWS\system32\RPCRT4.dll (0000000077f10000 - 0000000077f59000: C:\WINDOWS\system32\GDI32.dll (0000000077f60000 - 0000000077fd6000: C:\WINDOWS\system32\SHLWAPI.dll (0000000077fe0000 - 0000000077ff1000: C:\WINDOWS\system32\Secur32.dll (0000000078130000 - 00000000781cb000: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll (000000007c340000 - 000000007c396000: C:\Program Files\Java\jre6\bin\MSVCR71.dll (000000007c800000 - 000000007c8fd000: C:\WINDOWS\system32\kernel32.dll (000000007c900000 - 000000007c9b4000: C:\WINDOWS\system32\ntdll.dll (000000007c9c0000 - 000000007d1de000: C:\WINDOWS\system32\SHELL32.dll (000000007d1e0000 - 000000007d49c000: C:\WINDOWS\system32\msi.dll (000000007d9a0000 - 000000007db06000: C:\WINDOWS\system32\query.dll (000000007e360000 - 000000007e3f1000: C:\WINDOWS\system32\USER32.dll (000000007e690000 - 000000007e740000: C:\WINDOWS\system32\SXS.DLL *----> Zrzut stanu dla wątku o identyfikatorze 0xaa0 <----* eax=02070000 ebx=0013fc50 ecx=0013fc30 edx=7c90e514 esi=00000000 edi=7ffd9000 eip=7c90e514 esp=0013fc28 ebp=0013fcc4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\USER32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\iertutil.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\IEFRAME.dll - *** ERROR: Module load completed but symbols could not be loaded for C:\Program Files\Internet Explorer\iexplore.exe *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll - ChildEBP RetAddr Args to Child 0013fcc4 7e3695f9 00000001 0013fcec 00000000 ntdll!KiFastSystemCallRet 0013fd20 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 0013fd70 404f873a 00000000 00000001 00000001 iertutil!Ordinal73+0x103 0013fd90 4062415a 00000001 00000001 77f648e4 iertutil!Ordinal537+0x52 0013fde0 00401484 001556f8 0000000a 0040b090 IEFRAME!Ordinal320+0x15aa6 0013ff2c 0040128e 00400000 00000000 0002070c iexplore+0x1484 0013ffc0 7c81776f 013ccdbc 013ccfa8 7ffd9000 iexplore+0x128e 0013fff0 00000000 00401a25 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49 *----> Zrzut stosu <----* 000000000013fc28 4a df 90 7c 90 95 80 7c - 01 00 00 00 50 fc 13 00 J..|...|....P... 000000000013fc38 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000013fc48 01 00 00 00 06 00 00 00 - 30 00 00 00 80 fc 13 00 ........0....... 000000000013fc58 b5 27 4f 40 70 13 e5 00 - 02 00 00 00 03 28 04 00 .'O@p........(.. 000000000013fc68 08 00 00 00 2c fd 13 00 - 14 00 00 00 01 00 00 00 ....,........... 000000000013fc78 00 00 00 00 00 00 00 00 - 10 00 00 00 5d 28 4f 40 ............](O@ 000000000013fc88 70 00 00 00 01 00 00 00 - 00 90 fd 7f 00 f0 fd 7f p............... 000000000013fc98 5c f6 90 7c 00 00 00 00 - 50 fc 13 00 01 00 00 00 \..|....P....... 000000000013fca8 01 00 00 00 44 fc 13 00 - 00 00 99 00 b0 ff 13 00 ....D........... 000000000013fcb8 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 20 fd 13 00 ...|...|.... ... 000000000013fcc8 f9 95 36 7e 01 00 00 00 - ec fc 13 00 00 00 00 00 ..6~............ 000000000013fcd8 ff ff ff ff 01 00 00 00 - 00 00 00 00 68 47 99 00 ............hG.. 000000000013fce8 00 00 00 00 30 00 00 00 - 00 00 99 00 00 00 00 00 ....0........... 000000000013fcf8 e3 c2 c1 77 00 00 00 00 - 68 47 99 00 00 00 00 00 ...w....hG...... 000000000013fd08 30 fd 13 00 a6 92 4f 40 - 00 00 00 00 01 00 00 00 0.....O@........ 000000000013fd18 00 f0 fd 7f 30 00 00 00 - 70 fd 13 00 3e 71 4f 40 ....0...p...>qO@ 000000000013fd28 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 000000000013fd38 ec fc 13 00 03 28 04 00 - 68 47 99 00 01 18 03 00 .....(..hG...... 000000000013fd48 b0 ff 13 00 94 5c c2 77 - 88 20 c0 77 ff ff ff ff .....\.w. .w.... 000000000013fd58 ce c3 c1 77 e7 c3 c1 77 - 64 00 00 00 00 00 00 00 ...w...wd....... *----> Zrzut stanu dla wątku o identyfikatorze 0x164 <----* eax=00a75ad4 ebx=00c6fed0 ecx=7ffde000 edx=77e36660 esi=00000000 edi=7ffd9000 eip=7c90e514 esp=00c6fea8 ebp=00c6ff44 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ADVAPI32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 00c6ff44 77de8631 00000002 00c6ff6c 00000000 ntdll!KiFastSystemCallRet 00c6ffb4 7c80b729 00000000 00000000 77de8ae4 ADVAPI32!WmiFreeBuffer+0x24e 00c6ffec 00000000 77de848a 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000000c6fea8 4a df 90 7c 90 95 80 7c - 02 00 00 00 d0 fe c6 00 J..|...|........ 0000000000c6feb8 01 00 00 00 01 00 00 00 - 04 ff c6 00 e0 2e a7 00 ................ 0000000000c6fec8 60 66 e3 77 00 10 00 00 - 78 00 00 00 84 00 00 00 `f.w....x....... 0000000000c6fed8 c0 fe c6 00 ac 01 00 00 - dc ff c6 00 b0 9a 83 7c ...............| 0000000000c6fee8 28 10 81 7c 00 10 00 00 - 14 00 00 00 01 00 00 00 (..|............ 0000000000c6fef8 00 00 00 00 00 00 00 00 - 10 00 00 00 00 a2 2f 4d ............../M 0000000000c6ff08 ff ff ff ff 00 10 00 00 - 00 90 fd 7f 00 e0 fd 7f ................ 0000000000c6ff18 dc ff c6 00 04 ff c6 00 - d0 fe c6 00 06 00 00 00 ................ 0000000000c6ff28 02 00 00 00 c4 fe c6 00 - 06 00 00 00 dc ff c6 00 ................ 0000000000c6ff38 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 b4 ff c6 00 ...|...|........ 0000000000c6ff48 31 86 de 77 02 00 00 00 - 6c ff c6 00 00 00 00 00 1..w....l....... 0000000000c6ff58 e0 93 04 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000c6ff68 e4 8a de 77 78 00 00 00 - 84 00 00 00 00 10 00 00 ...wx........... 0000000000c6ff78 e0 2e a7 00 00 00 00 00 - 00 10 00 00 e8 3e a7 00 .............>.. 0000000000c6ff88 00 67 e3 77 c8 00 00 00 - e0 66 e3 77 00 10 00 00 .g.w.....f.w.... 0000000000c6ff98 00 00 00 00 00 67 e3 77 - e0 2e a7 00 e0 66 e3 77 .....g.w.....f.w 0000000000c6ffa8 e5 03 00 00 00 10 00 00 - e8 3e a7 00 ec ff c6 00 .........>...... 0000000000c6ffb8 29 b7 80 7c 00 00 00 00 - 00 00 00 00 e4 8a de 77 )..|...........w 0000000000c6ffc8 00 00 00 00 00 e0 fd 7f - 00 46 3c 82 c0 ff c6 00 .........F<..... 0000000000c6ffd8 48 a8 b0 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c H..........|0..| *----> Zrzut stanu dla wątku o identyfikatorze 0x940 <----* eax=000000c0 ebx=00000000 ecx=00000000 edx=00000007 esi=0013f770 edi=0015ea40 eip=7c90e514 esp=00faff9c ebp=00faffb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 00faffb4 7c80b729 00000000 0015ea40 0013f770 ntdll!KiFastSystemCallRet 00faffec 00000000 7c927d83 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000000faff9c 1a d2 90 7c ca 7d 92 7c - 01 00 00 00 ac ff fa 00 ...|.}.|........ 0000000000faffac 00 00 00 00 00 00 00 80 - ec ff fa 00 29 b7 80 7c ............)..| 0000000000faffbc 00 00 00 00 40 ea 15 00 - 70 f7 13 00 00 00 00 00 ....@...p....... 0000000000faffcc 00 d0 fd 7f 00 46 3c 82 - c0 ff fa 00 48 e5 b8 81 .....F<.....H... 0000000000faffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 0000000000faffec 00 00 00 00 00 00 00 00 - 83 7d 92 7c 00 00 00 00 .........}.|.... 0000000000fafffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00bc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00cc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xc58 <----* eax=04a8e0f8 ebx=00163af8 ecx=00000301 edx=04a8e0f8 esi=000005a8 edi=00000000 eip=7c90e514 esp=010af648 ebp=010af6ac iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ole32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\RPCRT4.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ieapfltr.dll - ChildEBP RetAddr Args to Child 010af6ac 7c802542 000005a8 ffffffff 00000000 ntdll!KiFastSystemCallRet 010af6c0 77510197 000005a8 ffffffff 00163af8 kernel32!WaitForSingleObject+0x12 010af6dc 775f2e50 00163af8 001ce1b0 00000000 ole32!CoQueryProxyBlanket+0x5c5 010af6fc 775f208a 010af7c4 010af8d4 001badc0 ole32!StgGetIFillLockBytesOnFile+0x11c40 010af7dc 7751c982 001badc0 010af8d4 010af8c4 ole32!StgGetIFillLockBytesOnFile+0x10e7a 010af848 7751597c 001badc0 010af8d4 010af8c4 ole32!ReleaseStgMedium+0x12e7 010af89c 77ef5db5 00000001 010af8d4 010af8c4 ole32!CoGetObject+0xd26 010af8b8 77ef5ead 001c4e14 010af900 0600015b RPCRT4!NdrProxySendReceive+0x40 010afc9c 77ef5e42 774d6228 774d95e6 010afcd4 RPCRT4!NdrProxySendReceive+0x138 010afcbc 77e88519 0000000c 00000008 010afd54 RPCRT4!NdrProxySendReceive+0xcd 010afccc 77515557 001c4e14 010afd08 010afdfc RPCRT4!CreateStubFromTypeInfo+0x11c 010afd54 77515171 0015ad68 775151ca 00000302 ole32!CoGetObject+0x901 010afda8 72ea1b6d 775f7908 00000302 72ea19a8 ole32!CoGetObject+0x51b 010afdc8 72ea1a9c 0099ced0 010afdfc 0099cec8 ieapfltr+0x1b6d 010afee4 72ea13da 0099cec8 72ea13b9 00000001 ieapfltr+0x1a9c 010afef8 7c92796d 0099cec8 7c97e460 0023df10 ieapfltr+0x13da 010aff40 7c9279ab 72ea13b9 0099cec8 00000000 ntdll!RtlGUIDFromString+0x283 010aff60 7c927a6d 00000000 0099cec8 0023df10 ntdll!RtlGUIDFromString+0x2c1 010aff74 7c927a44 7c927991 00000000 0099cec8 ntdll!RtlGUIDFromString+0x383 010affb4 7c80b729 00000000 fffffffd 00000000 ntdll!RtlGUIDFromString+0x35a 010affec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000010af648 5a df 90 7c db 25 80 7c - a8 05 00 00 00 00 00 00 Z..|.%.|........ 00000000010af658 00 00 00 00 00 00 00 00 - b0 e1 1c 00 f8 3a 16 00 .............:.. 00000000010af668 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010af678 10 00 00 00 d4 f8 0a 01 - d9 4c 50 77 00 90 fd 7f .........LPw.... 00000000010af688 00 c0 fd 7f 00 00 00 00 - 7d b2 51 77 5c f6 0a 01 ........}.Qw\... 00000000010af698 00 04 00 00 8c fc 0a 01 - b0 9a 83 7c 08 26 80 7c ...........|.&.| 00000000010af6a8 00 00 00 00 c0 f6 0a 01 - 42 25 80 7c a8 05 00 00 ........B%.|.... 00000000010af6b8 ff ff ff ff 00 00 00 00 - dc f6 0a 01 97 01 51 77 ..............Qw 00000000010af6c8 a8 05 00 00 ff ff ff ff - f8 3a 16 00 c4 f7 0a 01 .........:...... 00000000010af6d8 b0 e1 1c 00 fc f6 0a 01 - 50 2e 5f 77 f8 3a 16 00 ........P._w.:.. 00000000010af6e8 b0 e1 1c 00 00 00 00 00 - 00 00 00 00 c0 ad 1b 00 ................ 00000000010af6f8 c0 ad 1b 00 dc f7 0a 01 - 8a 20 5f 77 c4 f7 0a 01 ......... _w.... 00000000010af708 d4 f8 0a 01 c0 ad 1b 00 - c4 f8 0a 01 00 00 00 00 ................ 00000000010af718 11 01 04 80 00 00 80 7c - 00 00 00 00 00 00 00 00 .......|........ 00000000010af728 58 4e 1c 00 00 00 00 00 - d0 61 fb 03 b8 05 00 00 XN.......a...... 00000000010af738 00 00 00 00 2c e6 0a 01 - 00 00 00 00 00 00 15 00 ....,........... 00000000010af748 40 f5 0a 01 00 00 df 03 - 94 f7 0a 01 20 e9 90 7c @........... ..| 00000000010af758 e0 01 91 7c ff ff ff ff - db 01 91 7c d6 14 91 7c ...|.......|...| 00000000010af768 da d1 4e 77 6c 98 5f 77 - a7 d1 4e 77 90 f7 0a 01 ..Nwl._w..Nw.... 00000000010af778 da a1 51 77 e8 e1 1c 00 - d9 4c 50 77 78 e2 1c 00 ..Qw.....LPwx... *----> Zrzut stanu dla wątku o identyfikatorze 0xeac <----* eax=000000c0 ebx=00000000 ecx=011affb0 edx=7c90e514 esi=00000000 edi=00000001 eip=7c90e514 esp=011afcec ebp=011affb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 011affb4 7c80b729 00000000 00000020 fffffffd ntdll!KiFastSystemCallRet 011affec 00000000 7c92a3f3 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000011afcec 4a df 90 7c 1a a5 92 7c - 03 00 00 00 30 fd 1a 01 J..|...|....0... 00000000011afcfc 01 00 00 00 01 00 00 00 - 00 00 00 00 20 00 00 00 ............ ... 00000000011afd0c fd ff ff ff 00 00 00 00 - a0 f9 97 7c a0 f9 97 7c ...........|...| 00000000011afd1c 0c 01 00 00 ac 0e 00 00 - 03 00 00 00 03 00 00 00 ................ 00000000011afd2c 02 00 00 00 08 01 00 00 - f4 00 00 00 f8 03 00 00 ................ 00000000011afd3c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd4c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd5c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd6c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd7c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd8c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd9c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdbc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdcc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afddc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdec 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdfc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe0c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe1c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xeb0 <----* eax=00000000 ebx=00000000 ecx=012cfdf8 edx=7c90e514 esi=001531f0 edi=00000100 eip=7c90e514 esp=012cfe18 ebp=012cff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 012cff80 77e76caf 012cffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 012cff88 77e76ad1 001531f0 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x61c 012cffa8 77e76c97 0015fb98 012cffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 012cffb4 7c80b729 00160060 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x604 012cffec 00000000 77e76c7d 00160060 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000012cfe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 2c 01 ...|.e.w$...t.,. 00000000012cfe28 00 00 00 00 60 67 17 00 - 50 ff 2c 01 00 00 00 00 ....`g..P.,..... 00000000012cfe38 9c 00 b4 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 00000000012cfe48 32 68 01 00 00 00 00 00 - 02 08 5d e1 01 00 00 00 2h........]..... 00000000012cfe58 48 fb f5 f3 b9 5e 56 80 - 52 00 00 00 01 00 00 00 H....^V.R....... 00000000012cfe68 74 fb f5 f3 8b 5e 56 80 - 00 00 02 00 50 00 00 00 t....^V.....P... 00000000012cfe78 01 00 00 00 44 00 00 00 - ff ff ff ff 03 08 04 00 ....D........... 00000000012cfe88 02 08 09 00 00 00 00 00 - d3 0b 00 00 06 00 00 00 ................ 00000000012cfe98 28 ff ff ff 0a 00 00 80 - 00 00 00 00 78 10 01 00 (...........x... 00000000012cfea8 00 00 00 00 00 00 00 00 - 01 00 ff ff 10 00 00 00 ................ 00000000012cfeb8 0b 00 18 00 58 14 18 00 - 00 00 00 80 20 00 00 00 ....X....... ... 00000000012cfec8 50 00 00 00 00 00 00 00 - 6e 00 64 00 6f 00 66 00 P.......n.d.o.f. 00000000012cfed8 65 00 6e 00 2e 00 70 00 - 6c 00 00 00 1f 00 6e 00 e.n...p.l.....n. 00000000012cfee8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 00000000012cfef8 02 04 00 00 84 00 00 00 - 00 00 00 00 8c 19 55 80 ..............U. 00000000012cff08 09 00 00 00 00 00 00 00 - ec c5 3c c0 dc 6b b9 81 ..........<..k.. 00000000012cff18 24 fc f5 f3 b2 c2 4d 80 - ba c2 4d 80 ac 6b b9 81 $.....M...M..k.. 00000000012cff28 40 6a b9 81 80 ff 2c 01 - 85 d1 e7 77 48 ff 2c 01 @j....,....wH.,. 00000000012cff38 95 d1 e7 77 e0 10 90 7c - 38 00 16 00 60 00 16 00 ...w...|8...`... 00000000012cff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xbb0 <----* eax=001c5000 ebx=013ceef0 ecx=013ce760 edx=00001000 esi=00000000 edi=7ffd9000 eip=7c90e514 esp=013ceec8 ebp=013cef64 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 013cef64 7c80a115 00000002 00160660 00000000 ntdll!KiFastSystemCallRet 013cef80 404f2e7c 00000002 00160660 00000000 kernel32!WaitForMultipleObjects+0x18 013cffac 404f8611 013cffec 7c80b729 00161cc0 iertutil!Ordinal457+0x421 013cffb4 7c80b729 00161cc0 7c910222 7c91019b iertutil!Ordinal430+0x34 013cffec 00000000 404f8604 00161cc0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000013ceec8 4a df 90 7c 90 95 80 7c - 02 00 00 00 f0 ee 3c 01 J..|...|......<. 00000000013ceed8 01 00 00 00 00 00 00 00 - 00 00 00 00 02 00 00 00 ................ 00000000013ceee8 c0 1c 16 00 00 1c 16 00 - 38 01 00 00 60 01 00 00 ........8...`... 00000000013ceef8 5d 00 91 7c 00 00 15 00 - 00 00 15 00 00 00 00 00 ]..|............ 00000000013cef08 b0 c2 19 00 18 ef 3c 01 - 14 00 00 00 01 00 00 00 ......<......... 00000000013cef18 00 00 00 00 00 00 00 00 - 10 00 00 00 dc ff 3c 01 ..............<. 00000000013cef28 c0 99 80 7c 60 f5 15 00 - 00 90 fd 7f 00 80 fd 7f ...|`........... 00000000013cef38 00 00 00 00 00 00 00 00 - f0 ee 3c 01 00 00 00 00 ..........<..... 00000000013cef48 02 00 00 00 e4 ee 3c 01 - 80 ef 3c 01 dc ff 3c 01 ......<...<...<. 00000000013cef58 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 80 ef 3c 01 ...|...|......<. 00000000013cef68 15 a1 80 7c 02 00 00 00 - 60 06 16 00 00 00 00 00 ...|....`....... 00000000013cef78 ff ff ff ff 00 00 00 00 - ac ff 3c 01 7c 2e 4f 40 ..........<.|.O@ 00000000013cef88 02 00 00 00 60 06 16 00 - 00 00 00 00 ff ff ff ff ....`........... 00000000013cef98 22 02 91 7c c0 1c 16 00 - 9b 01 91 7c 00 00 00 00 "..|.......|.... 00000000013cefa8 00 00 00 00 60 06 16 00 - d8 05 16 00 00 00 00 01 ....`........... 00000000013cefb8 24 df a6 48 56 e5 e2 11 - 83 6b 00 0b 6a 18 0d 21 $..HV....k..j..! 00000000013cefc8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefd8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefe8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013ceff8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xecc <----* eax=00000000 ebx=014cfe74 ecx=014cff34 edx=7c90e514 esi=00000000 edi=7ffd9000 eip=7c90e514 esp=014cfe4c ebp=014cfee8 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 014cfee8 7e3695f9 00000001 014cff10 00000000 ntdll!KiFastSystemCallRet 014cff44 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 014cff94 404f86ae 00000001 00000000 0013facc iertutil!Ordinal73+0x103 014cffb4 7c80b729 0015f0f8 0013facc 0013f98c iertutil!Ordinal536+0x59 014cffec 00000000 404f8655 0015f0f8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000014cfe4c 4a df 90 7c 90 95 80 7c - 01 00 00 00 74 fe 4c 01 J..|...|....t.L. 00000000014cfe5c 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000014cfe6c 01 00 00 00 06 00 00 00 - 64 01 00 00 f6 e8 e3 f1 ........d....... 00000000014cfe7c af cd b6 74 53 8f 92 87 - c0 a1 3a 84 5c 18 4f 77 ...tS.....:.\.Ow 00000000014cfe8c c0 78 5f 77 04 00 00 00 - 14 00 00 00 01 00 00 00 .x_w............ 00000000014cfe9c 00 00 00 00 00 00 00 00 - 10 00 00 00 17 00 00 00 ................ 00000000014cfeac 70 00 00 00 01 00 00 00 - 00 90 fd 7f 00 70 fd 7f p............p.. 00000000014cfebc 91 2c 00 00 00 00 00 00 - 74 fe 4c 01 00 00 4d 77 .,......t.L...Mw 00000000014cfecc 01 00 00 00 68 fe 4c 01 - 00 00 99 00 dc ff 4c 01 ....h.L.......L. 00000000014cfedc b0 9a 83 7c 80 96 80 7c - 00 00 00 00 44 ff 4c 01 ...|...|....D.L. 00000000014cfeec f9 95 36 7e 01 00 00 00 - 10 ff 4c 01 00 00 00 00 ..6~......L..... 00000000014cfefc ff ff ff ff 01 00 00 00 - 00 00 00 00 68 47 99 00 ............hG.. 00000000014cff0c 00 00 00 00 64 01 00 00 - 00 00 99 00 00 00 00 00 ....d........... 00000000014cff1c e3 c2 c1 77 00 00 00 00 - 68 47 99 00 00 00 00 00 ...w....hG...... 00000000014cff2c 54 ff 4c 01 a6 92 4f 40 - 00 00 00 00 01 00 00 00 T.L...O@........ 00000000014cff3c 00 70 fd 7f 64 01 00 00 - 94 ff 4c 01 3e 71 4f 40 .p..d.....L.>qO@ 00000000014cff4c 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 00000000014cff5c 10 ff 4c 01 68 47 99 00 - f8 f0 15 00 00 00 00 00 ..L.hG.......... 00000000014cff6c dc ff 4c 01 94 5c c2 77 - 88 20 c0 77 12 99 e3 f8 ..L..\.w. .w.... 00000000014cff7c 9c ff 4c 01 29 80 4f 40 - cc 0e 00 00 00 00 00 00 ..L.).O@........ *----> Zrzut stanu dla wątku o identyfikatorze 0xd6c <----* eax=00000000 ebx=00000000 ecx=00000004 edx=00000000 esi=04a53600 edi=016c451c eip=3f618020 esp=016c44f8 ebp=016c4504 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00040246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\mshtml.dll - funkcja: mshtml!Ordinal103 3f618007 c075ee8b shl byte ptr [ebp-0x12],0x8b 3f61800b 40 inc eax 3f61800c 70e9 jo mshtml!Ordinal103+0xdc837 (3f617ff7) 3f61800e 16 push ss 3f61800f 94 xchg eax,esp 3f618010 e3ff jecxz mshtml!Ordinal103+0xdc851 (3f618011) 3f618012 8bc6 mov eax,esi 3f618014 e8b6ff1f00 call mshtml+0x4e7fcf (3f817fcf) 3f618019 8bf0 mov esi,eax 3f61801b e9b593e3ff jmp mshtml!DllGetClassObject+0x1040d0 (3f4513d5) BŁĄD ->3f618020 395314 cmp [ebx+0x14],edx ds:0023:00000014=???????? 3f618023 743a jz mshtml!Ordinal103+0xdc89f (3f61805f) 3f618025 8b4e38 mov ecx,[esi+0x38] 3f618028 89550c mov [ebp+0xc],edx 3f61802b 395004 cmp [eax+0x4],edx 3f61802e 750d jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618030 395018 cmp [eax+0x18],edx 3f618033 7508 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618035 394838 cmp [eax+0x38],ecx 3f618038 7503 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f61803a 89450c mov [ebp+0xc],eax *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\jscript.dll - ChildEBP RetAddr Args to Child 016c4504 3f45135d 016c45c8 016c4538 016c451c mshtml!Ordinal103+0xdc860 016c453c 3f452257 03fb8b08 04a500e8 03f0b274 mshtml!DllGetClassObject+0x104058 016c460c 3f4ae631 03fb8b08 04a500e8 00000000 mshtml!DllGetClassObject+0x104f52 016c4640 3f4ac39b 03fb8b08 04a500e8 00000000 mshtml!Ordinal104+0xccc1 016c4774 3f4abe87 03fb8b08 04a500e8 00000000 mshtml!Ordinal104+0xaa2b 016c47a4 3f4ac898 03fb8b08 04a500e8 00000000 mshtml!Ordinal104+0xa517 016c4864 3f4a93b9 00000000 04a500e8 00000000 mshtml!Ordinal104+0xaf28 016c4984 3f4aab8a 04028120 03eecb98 04a500e8 mshtml!Ordinal104+0x7a49 016c4a58 3f4ab0c0 04028120 03eecb98 03f07bfc mshtml!Ordinal104+0x921a 016c4af8 3f4a9b96 04028120 03eecb98 04a500e8 mshtml!Ordinal104+0x9750 016c4b4c 3f4ace27 03fb8b08 04a500e8 00000000 mshtml!Ordinal104+0x8226 016c4bf0 3f4af5b7 03fb8b08 04a500e8 00000000 mshtml!Ordinal104+0xb4b7 016c4cc8 3f4aeaba 03fb8b08 00000000 00000001 mshtml!Ordinal104+0xdc47 016c4ddc 3f4ae8be 03fb8b08 00000000 016c4f0c mshtml!Ordinal104+0xd14a 016c4e28 3f4a7c15 03fb8b08 03fcd958 00000000 mshtml!Ordinal104+0xcf4e 016c4f88 3f4af97b 03fb8b08 04a500e8 03fcd958 mshtml!Ordinal104+0x62a5 016c4ffc 3f4af0c1 04a500e8 00000000 00000000 mshtml!Ordinal104+0xe00b 016c50b8 3f4b51c0 04a500e8 00000000 016c5168 mshtml!Ordinal104+0xd751 016c51a0 3f4b66b9 04a500e8 00000000 00000001 mshtml!Ordinal104+0x13850 016c51d4 3f4b7564 3fffffff 00000000 00000001 mshtml!Ordinal104+0x14d49 016c521c 3f4b7414 04a500e8 00000000 016c52f8 mshtml!Ordinal104+0x15bf4 016c52fc 3f4b737d 04a500e8 00000000 00000000 mshtml!Ordinal104+0x15aa4 016c5344 3f4b7198 04a500e8 016c536c 00000000 mshtml!Ordinal104+0x15a0d 016c5390 3f4b5f74 04a500e8 00000000 03ec04d0 mshtml!Ordinal104+0x15828 016c5504 3f4b5e15 04a500e8 00000000 03ec04d0 mshtml!Ordinal104+0x14604 016c5570 3f4b5c85 04a500e8 00000000 03ec04d0 mshtml!Ordinal104+0x144a5 016c5650 3f4b629e 04a500e8 016c56f8 016c58a8 mshtml!Ordinal104+0x14315 016c5794 3f4b6b24 04a500e8 00000000 03ec04d0 mshtml!Ordinal104+0x1492e 016c58cc 3f4d5540 03fb8b08 03ec04d0 00000001 mshtml!Ordinal104+0x151b4 016c58f0 3f4d54ed 03fb8b08 04028320 03ec04d0 mshtml!Ordinal104+0x33bd0 016c5994 3f4ab7ce 00ec04d0 03b26bc8 016c59bb mshtml!Ordinal104+0x33b7d 016c5b04 3f3eb947 016c5cc8 016c5c60 00000000 mshtml!Ordinal104+0x9e5e 016c5c3c 3f3fe4ee 03b26bc8 00000000 00000000 mshtml!DllGetClassObject+0x9e642 016c5d38 3f5cd0c0 00100000 016c5d90 00249388 mshtml!DllGetClassObject+0xb11e9 016c5d4c 3f3d8c8d 016c5d90 016c5d90 3f3e1fff mshtml!Ordinal103+0x91900 016c5d6c 3f3d8e57 016c5d90 0022f238 00000000 mshtml!DllGetClassObject+0x8b988 016c5dc4 3f3d6e02 016c5e58 03b1a238 016c5e58 mshtml!DllGetClassObject+0x8bb52 016c5e1c 3f3d6d75 03b24288 00000000 03b1a2fc mshtml!DllGetClassObject+0x89afd 016c5e44 3f3e1efa 016c5e58 03b1a428 3f3a10a0 mshtml!DllGetClassObject+0x89a70 016c5e8c 3f3b53ca 0000000f 00000000 00000000 mshtml!DllGetClassObject+0x94bf5 016c5eb0 3f5587e5 04b8b270 00000001 04f0f718 mshtml!DllGetClassObject+0x680c5 016c5edc 3f5588d2 04b8b270 04f0dfd0 00001200 mshtml!Ordinal103+0x1d025 016c5f00 3f512165 04b8b270 04f0f718 04f0dfd0 mshtml!Ordinal103+0x1d112 016c5f20 3f41ab53 04b8b270 04f0dfd0 04b4fa70 mshtml!Ordinal104+0x707f5 016c5f94 3f426bf1 04b8b270 800103f2 00000002 mshtml!DllGetClassObject+0xcd84e 016c5fe4 3f4328c8 04b8b270 800103f2 00000002 mshtml!DllGetClassObject+0xd98ec 016c6010 3f41a551 04b8b270 800103f2 00000002 mshtml!DllGetClassObject+0xe55c3 016c6060 3fc53a9a 04b4f440 800103f2 00000002 mshtml!DllGetClassObject+0xcd24c 016c60a0 3fc539e6 0099eb70 800103f2 00000409 jscript!DllGetClassObject+0xc855 016c60dc 3fc54f26 0099eb70 00000409 00000002 jscript!DllGetClassObject+0xc7a1 016c619c 3fc54e80 800103f2 00000002 04f0f710 jscript!DllGetClassObject+0xdce1 016c61d0 3fc54b96 0099eb70 016c62f8 00000002 jscript!DllGetClassObject+0xdc3b 016c6368 3fc513ab 016c6380 016c67a0 016c67a0 jscript!DllGetClassObject+0xd951 016c6450 3fc512e5 016c67a0 00000003 04f0f7c0 jscript!DllGetClassObject+0xa166 016c649c 3fc52a05 016c67a0 00000003 04f0f7c0 jscript!DllGetClassObject+0xa0a0 016c6520 3fc528c5 04e82100 0099eb70 00000003 jscript!DllGetClassObject+0xb7c0 016c6554 3fc543fc 0099eb70 00000000 00000003 jscript!DllGetClassObject+0xb680 016c6594 3fc524c1 0099eb70 016c6604 04e81eb0 jscript!DllGetClassObject+0xd1b7 016c65d0 3fc52d6d 0099eb70 016c6604 00000003 jscript!DllGetClassObject+0xb27c 016c661c 3fc54235 0099eb70 00000003 016c67a0 jscript!DllGetClassObject+0xbb28 016c664c 3fc53114 0099eb70 00000000 00000003 jscript!DllGetClassObject+0xcff0 016c67e8 3fc513ab 016c6800 016c6c20 016c6c20 jscript!DllGetClassObject+0xbecf 016c68d0 3fc512e5 016c6c20 00000002 04f0f8c0 jscript!DllGetClassObject+0xa166 016c691c 3fc52a05 016c6c20 00000002 04f0f8c0 jscript!DllGetClassObject+0xa0a0 016c69a0 3fc528c5 04e81328 0099eb70 00000003 jscript!DllGetClassObject+0xb7c0 016c69d4 3fc543fc 0099eb70 00000000 00000003 jscript!DllGetClassObject+0xb680 016c6a14 3fc524c1 0099eb70 016c6a84 04e944f8 jscript!DllGetClassObject+0xd1b7 016c6a50 3fc52d6d 0099eb70 016c6a84 00000003 jscript!DllGetClassObject+0xb27c 016c6a9c 3fc54235 0099eb70 00000003 016c6c20 jscript!DllGetClassObject+0xbb28 016c6acc 3fc53114 0099eb70 00000000 00000003 jscript!DllGetClassObject+0xcff0 016c6c68 3fc513ab 016c6c80 016c70a0 016c70a0 jscript!DllGetClassObject+0xbecf 016c6d50 3fc512e5 016c70a0 00000000 04f0f9a0 jscript!DllGetClassObject+0xa166 016c6d9c 3fc52a05 016c70a0 00000000 04f0f9a0 jscript!DllGetClassObject+0xa0a0 016c6e20 3fc528c5 04e86f30 0099eb70 00000001 jscript!DllGetClassObject+0xb7c0 016c6e54 3fc543fc 0099eb70 00000000 00000001 jscript!DllGetClassObject+0xb680 016c6e94 3fc524c1 0099eb70 016c6f04 052497c8 jscript!DllGetClassObject+0xd1b7 016c6ed0 3fc52d6d 0099eb70 016c6f04 00000001 jscript!DllGetClassObject+0xb27c 016c6f1c 3fc54235 0099eb70 00000001 016c70a0 jscript!DllGetClassObject+0xbb28 016c6f4c 3fc53114 0099eb70 00000000 00000001 jscript!DllGetClassObject+0xcff0 016c70e8 3fc513ab 016c7100 016c7688 016c7688 jscript!DllGetClassObject+0xbecf 016c71d0 3fc512e5 016c7688 00000002 04f0fa50 jscript!DllGetClassObject+0xa166 016c721c 3fc52a05 016c7688 00000002 04f0fa50 jscript!DllGetClassObject+0xa0a0 016c72a0 3fc528c5 05249580 0099eb70 00000001 jscript!DllGetClassObject+0xb7c0 016c72d4 3fc73b5f 0099eb70 00000000 00000001 jscript!DllGetClassObject+0xb680 016c731c 3fc54327 0099eb70 016c73c0 016c7688 jscript!DllCanUnloadNow+0x103df 016c7384 3fc52a05 016c7688 00000003 04f0fa50 jscript!DllGetClassObject+0xd0e2 016c7408 3fc528c5 04ece958 0099eb70 00000003 jscript!DllGetClassObject+0xb7c0 016c743c 3fc543fc 0099eb70 00000000 00000003 jscript!DllGetClassObject+0xb680 016c747c 3fc524c1 0099eb70 016c74ec 05249580 jscript!DllGetClassObject+0xd1b7 016c74b8 3fc52d6d 0099eb70 016c74ec 00000003 jscript!DllGetClassObject+0xb27c 016c7504 3fc54235 0099eb70 00000003 016c7688 jscript!DllGetClassObject+0xbb28 016c7534 3fc53114 0099eb70 00000000 00000003 jscript!DllGetClassObject+0xcff0 016c76d0 3fc513ab 016c76e8 016c7b08 016c7b08 jscript!DllGetClassObject+0xbecf 016c77b8 3fc512e5 016c7b08 00000003 04f0fb40 jscript!DllGetClassObject+0xa166 016c7804 3fc52a05 016c7b08 00000003 04f0fb40 jscript!DllGetClassObject+0xa0a0 016c7888 3fc528c5 04e73aa8 0099eb70 00000003 jscript!DllGetClassObject+0xb7c0 016c78bc 3fc543fc 0099eb70 00000000 00000003 jscript!DllGetClassObject+0xb680 016c78fc 3fc524c1 0099eb70 016c796c 04e944f8 jscript!DllGetClassObject+0xd1b7 016c7938 3fc52d6d 0099eb70 016c796c 00000003 jscript!DllGetClassObject+0xb27c 016c7984 3fc54235 0099eb70 00000003 016c7b08 jscript!DllGetClassObject+0xbb28 *----> Zrzut stosu <----* 00000000016c44f8 c8 45 6c 01 08 8b fb 03 - 00 00 00 00 3c 45 6c 01 .El......... Zrzut stanu dla wątku o identyfikatorze 0x25c <----* eax=77e76c7d ebx=00000000 ecx=77dd0b6a edx=00000048 esi=001638c8 edi=001c10a8 eip=7c90e514 esp=01aafe18 ebp=01aaff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01aaff80 77e76caf 01aaffa8 77e76ad1 001638c8 ntdll!KiFastSystemCallRet 01aaff88 77e76ad1 001638c8 00163640 00000000 RPCRT4!I_RpcBCacheFree+0x61c 01aaffa8 77e76c97 0015fb98 01aaffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01aaffb4 7c80b729 001639b0 00163640 00000000 RPCRT4!I_RpcBCacheFree+0x604 01aaffec 00000000 77e76c7d 001639b0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001aafe18 aa da 90 7c e3 65 e7 77 - 78 01 00 00 74 ff aa 01 ...|.e.wx...t... 0000000001aafe28 00 00 00 00 a8 10 1c 00 - 50 ff aa 01 00 00 00 00 ........P....... 0000000001aafe38 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe48 00 00 00 00 00 00 00 00 - 02 00 00 00 00 00 00 00 ................ 0000000001aafe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe68 00 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe78 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe88 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe98 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafea8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafeb8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafec8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafed8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafee8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafef8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aaff08 00 00 00 00 00 00 00 00 - 00 00 00 00 c4 23 cf 81 .............#.. 0000000001aaff18 24 2c d5 f3 b2 c2 4d 80 - ba c2 4d 80 94 23 cf 81 $,....M...M..#.. 0000000001aaff28 28 22 cf 81 80 ff aa 01 - 85 d1 e7 77 48 ff aa 01 (".........wH... 0000000001aaff38 95 d1 e7 77 e0 10 90 7c - 30 26 16 00 b0 39 16 00 ...w...|0&...9.. 0000000001aaff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xa94 <----* eax=774ee4ef ebx=00007530 ecx=7c9144f9 edx=7c8855f8 esi=00000000 edi=01baff50 eip=7c90e514 esp=01baff20 ebp=01baff78 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01baff78 7c802455 0000ea60 00000000 01baffb4 ntdll!KiFastSystemCallRet 01baff88 774ee3e3 0000ea60 00166260 774ee4a2 kernel32!Sleep+0xf 01baffb4 7c80b729 00166260 7465536c 73655248 ole32!StringFromGUID2+0x51d 01baffec 00000000 774ee4ef 00166260 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001baff20 1a d2 90 7c f1 23 80 7c - 00 00 00 00 50 ff ba 01 ...|.#.|....P... 0000000001baff30 50 25 80 7c f8 7d 5f 77 - 30 75 00 00 14 00 00 00 P%.|.}_w0u...... 0000000001baff40 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................ 0000000001baff50 00 ba 3c dc ff ff ff ff - 0c 00 00 00 50 ff ba 01 ..<.........P... 0000000001baff60 30 ff ba 01 af ac 80 7c - dc ff ba 01 b0 9a 83 7c 0......|.......| 0000000001baff70 60 24 80 7c 00 00 00 00 - 88 ff ba 01 55 24 80 7c `$.|........U$.| 0000000001baff80 60 ea 00 00 00 00 00 00 - b4 ff ba 01 e3 e3 4e 77 `.............Nw 0000000001baff90 60 ea 00 00 60 62 16 00 - a2 e4 4e 77 00 00 00 00 `...`b....Nw.... 0000000001baffa0 6c 53 65 74 60 62 16 00 - 00 00 4d 77 0a e5 4e 77 lSet`b....Mw..Nw 0000000001baffb0 48 52 65 73 ec ff ba 01 - 29 b7 80 7c 60 62 16 00 HRes....)..|`b.. 0000000001baffc0 6c 53 65 74 48 52 65 73 - 60 62 16 00 00 40 fd 7f lSetHRes`b...@.. 0000000001baffd0 00 46 3c 82 c0 ff ba 01 - 48 e5 b8 81 ff ff ff ff .F<.....H....... 0000000001baffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000001bafff0 00 00 00 00 ef e4 4e 77 - 60 62 16 00 00 00 00 00 ......Nw`b...... 0000000001bb0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x67c <----* eax=77e76c7d ebx=00000000 ecx=00000000 edx=003a2278 esi=001531f0 edi=00000100 eip=7c90e514 esp=01cafe18 ebp=01caff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01caff80 77e76caf 01caffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 01caff88 77e76ad1 001531f0 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x61c 01caffa8 77e76c97 0015fb98 01caffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01caffb4 7c80b729 001766c8 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x604 01caffec 00000000 77e76c7d 001766c8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001cafe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff ca 01 ...|.e.w$...t... 0000000001cafe28 00 00 00 00 28 df eb 03 - 50 ff ca 01 00 00 00 00 ....(...P....... 0000000001cafe38 74 00 8c 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 t.......4....... 0000000001cafe48 33 68 01 00 00 00 00 00 - 02 00 00 00 01 00 00 00 3h.............. 0000000001cafe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001cafe68 00 00 00 00 00 00 00 00 - 00 00 02 00 28 00 00 00 ............(... 0000000001cafe78 01 00 00 00 1c 00 00 00 - ff ff ff ff 01 08 07 00 ................ 0000000001cafe88 01 08 0e 00 95 01 00 00 - d6 0b 00 00 1c 00 00 00 ................ 0000000001cafe98 00 00 00 00 68 00 00 00 - 28 00 00 00 00 00 00 00 ....h...(....... 0000000001cafea8 00 00 00 00 00 00 00 00 - 01 00 ff ff 10 00 00 00 ................ 0000000001cafeb8 0b 00 00 00 a8 7a ba 04 - 00 00 66 40 7c c6 6c 01 .....z....f@|.l. 0000000001cafec8 50 00 00 00 00 00 00 00 - 6e 00 64 00 6f 00 66 00 P.......n.d.o.f. 0000000001cafed8 65 00 6e 00 2e 00 70 00 - 6c 00 00 00 1f 00 6e 00 e.n...p.l.....n. 0000000001cafee8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 0000000001cafef8 02 04 00 00 84 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001caff08 00 00 00 00 00 00 00 00 - 00 00 00 00 bc 1c f1 81 ................ 0000000001caff18 24 7c 56 f4 b2 c2 4d 80 - ba c2 4d 80 8c 1c f1 81 $|V...M...M..... 0000000001caff28 20 1b f1 81 80 ff ca 01 - 85 d1 e7 77 48 ff ca 01 ..........wH... 0000000001caff38 95 d1 e7 77 e0 10 90 7c - 30 53 17 00 c8 66 17 00 ...w...|0S...f.. 0000000001caff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0x98c <----* eax=00000400 ebx=00000000 ecx=00000410 edx=0080afdf esi=001531f0 edi=00000100 eip=7c90e514 esp=0218fe18 ebp=0218ff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0218ff80 77e76caf 0218ffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 0218ff88 77e76ad1 001531f0 00000000 012cfaa4 RPCRT4!I_RpcBCacheFree+0x61c 0218ffa8 77e76c97 0015fb98 0218ffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 0218ffb4 7c80b729 0017b958 00000000 012cfaa4 RPCRT4!I_RpcBCacheFree+0x604 0218ffec 00000000 77e76c7d 0017b958 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000218fe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 18 02 ...|.e.w$...t... 000000000218fe28 00 00 00 00 10 de eb 03 - 50 ff 18 02 1d 1f 1f ff ........P....... 000000000218fe38 28 00 40 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 (.@.....4....... 000000000218fe48 34 68 01 00 00 00 00 00 - 02 ed ed ff 04 00 ec ff 4h.............. 000000000218fe58 ec ec ec ff ef ef ef ff - 41 42 42 ff 1b 1d 1c ff ........ABB..... 000000000218fe68 1b 1d 1c ff 1a 1c 1c ff - 7c 01 00 00 f8 e0 bc 04 ........|....... 000000000218fe78 01 00 00 00 44 00 00 00 - ff ff ff ff 03 08 04 00 ....D........... 000000000218fe88 02 08 09 00 00 00 00 00 - d3 0b 00 00 06 00 00 00 ................ 000000000218fe98 28 ff ff ff 0a 00 00 80 - 00 00 00 00 3a 10 01 00 (...........:... 000000000218fea8 00 00 00 00 00 00 00 00 - 01 00 ff ff 10 00 00 00 ................ 000000000218feb8 03 00 00 00 a8 7a ba 04 - 00 00 00 00 7c c6 6c 01 .....z......|.l. 000000000218fec8 50 00 00 00 00 00 00 00 - 6c 00 00 00 1f 00 62 00 P.......l.....b. 000000000218fed8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 000000000218fee8 02 04 00 00 74 00 00 00 - 00 00 00 00 e8 e8 e9 ff ....t........... 000000000218fef8 e8 e8 e9 ff e8 e8 e8 ff - d2 d2 d3 ff 35 37 37 ff ............577. 000000000218ff08 1b 1c 1d ff 1c 1d 1e ff - 35 36 37 ff 3c ff f7 81 ........567.<... 000000000218ff18 24 ec cd f3 b2 c2 4d 80 - ba c2 4d 80 0c ff f7 81 $.....M...M..... 000000000218ff28 a0 fd f7 81 80 ff 18 02 - 85 d1 e7 77 48 ff 18 02 ...........wH... 000000000218ff38 95 d1 e7 77 e0 10 90 7c - 68 82 18 00 58 b9 17 00 ...w...|h...X... 000000000218ff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0x5a8 <----* eax=77a7965d ebx=0286ff18 ecx=ffffffff edx=7c80e47c esi=00000000 edi=7ffd9000 eip=7c90e514 esp=0286fef0 ebp=0286ff8c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\CRYPT32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0286ff8c 77a79688 00000001 001a2890 00000000 ntdll!KiFastSystemCallRet 0286ffb4 7c80b729 00000001 00150000 00000000 CRYPT32!I_CryptRegisterSmartCardStore+0x2767 0286ffec 00000000 77a7965d 001a2888 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000286fef0 4a df 90 7c 90 95 80 7c - 01 00 00 00 18 ff 86 02 J..|...|........ 000000000286ff00 01 00 00 00 00 00 00 00 - 4c ff 86 02 00 00 00 00 ........L....... 000000000286ff10 88 28 1a 00 90 28 1a 00 - fc 03 00 00 b2 c2 4d 80 .(...(........M. 000000000286ff20 ba c2 4d 80 5c 9e d1 81 - f0 9c d1 81 24 9d d1 81 ..M.\.......$... 000000000286ff30 30 fc f5 f3 4a 8d 57 80 - 14 00 00 00 01 00 00 00 0...J.W......... 000000000286ff40 00 00 00 00 00 00 00 00 - 10 00 00 00 80 2e 0f f7 ................ 000000000286ff50 ff ff ff ff 93 97 a7 77 - 00 90 fd 7f 00 b0 fa 7f .......w........ 000000000286ff60 00 00 00 00 4c ff 86 02 - 18 ff 86 02 02 01 00 00 ....L........... 000000000286ff70 01 00 00 00 0c ff 86 02 - 00 00 00 00 dc ff 86 02 ................ 000000000286ff80 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 b4 ff 86 02 ...|...|........ 000000000286ff90 88 96 a7 77 01 00 00 00 - 90 28 1a 00 00 00 00 00 ...w.....(...... 000000000286ffa0 98 3a 00 00 00 00 00 00 - 00 00 15 00 00 00 00 00 .:.............. 000000000286ffb0 88 28 1a 00 ec ff 86 02 - 29 b7 80 7c 01 00 00 00 .(......)..|.... 000000000286ffc0 00 00 15 00 00 00 00 00 - 88 28 1a 00 00 b0 fa 7f .........(...... 000000000286ffd0 00 46 3c 82 c0 ff 86 02 - 10 5e c7 81 ff ff ff ff .F<......^...... 000000000286ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 000000000286fff0 00 00 00 00 5d 96 a7 77 - 88 28 1a 00 00 00 00 00 ....]..w.(...... 0000000002870000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002870010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002870020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x938 <----* eax=00000000 ebx=001b4410 ecx=001c47b0 edx=3fda2dfc esi=7fffffff edi=ffffffff eip=7c90e514 esp=0296fad4 ebp=0296fb10 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\System32\mswsock.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ws2_32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WININET.dll - ChildEBP RetAddr Args to Child 0296fb10 719f5fa7 000004e0 000004dc 00000000 ntdll!KiFastSystemCallRet 0296fc04 71a5314f 00000001 0296fe84 0296fc7c mswsock+0x5fa7 0296fc54 3fcfe9f9 00000001 0296fe84 0296fc7c ws2_32!select+0xa7 0296ffac 3fd06043 0296ffec 7c80b729 001b7ce0 WININET!Ordinal346+0x6ae 0296ffb4 7c80b729 001b7ce0 00000000 00000000 WININET!InternetSetStatusCallbackA+0x1e3 0296ffec 00000000 3fd06036 001b7ce0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000296fad4 5a df 90 7c 2b 40 9f 71 - e0 04 00 00 01 00 00 00 Z..|+@.q........ 000000000296fae4 fc fa 96 02 b4 fb 96 02 - 84 fe 96 02 a4 fb 96 02 ................ 000000000296faf4 13 a5 10 5e 65 79 ce 01 - ff ff ff ff ff ff ff 7f ...^ey.......... 000000000296fb04 10 44 1b 00 00 00 00 00 - 00 00 00 00 04 fc 96 02 .D.............. 000000000296fb14 a7 5f 9f 71 e0 04 00 00 - dc 04 00 00 00 00 00 00 ._.q............ 000000000296fb24 04 00 00 00 80 fd 96 02 - 00 b0 1b 00 7c fc 96 02 ............|... 000000000296fb34 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000296fb44 01 00 00 00 80 0f 05 fd - ff ff ff ff dc fb 96 02 ................ 000000000296fb54 01 00 00 00 00 00 00 00 - a0 00 00 00 00 00 00 00 ................ 000000000296fb64 00 00 00 00 03 01 00 00 - 00 00 00 00 e0 04 00 00 ................ 000000000296fb74 38 fc 96 02 00 00 00 00 - 00 00 00 00 1c 00 00 00 8............... 000000000296fb84 10 44 1b 00 c0 fb 96 02 - 7c fc 96 02 80 fd 96 02 .D......|....... 000000000296fb94 00 00 00 00 a4 fb 96 02 - 00 00 00 00 00 00 00 00 ................ 000000000296fba4 80 0f 05 fd ff ff ff ff - 01 00 00 00 00 fb 96 02 ................ 000000000296fbb4 dc 04 00 00 19 00 00 00 - 00 fc 96 02 1f 2e a5 71 ...............q 000000000296fbc4 08 49 1c 00 ec fb 96 02 - 68 96 a5 71 33 27 00 00 .I......h..q3'.. 000000000296fbd4 b0 47 1c 00 01 00 00 00 - 01 00 00 00 1f fc 96 02 .G.............. 000000000296fbe4 88 17 1b 00 9f 85 00 00 - 28 fb 96 02 0c 15 a4 71 ........(......q 000000000296fbf4 44 fc 96 02 28 72 a1 71 - 60 2e 9f 71 ff ff ff ff D...(r.q`..q.... 000000000296fc04 54 fc 96 02 4f 31 a5 71 - 01 00 00 00 84 fe 96 02 T...O1.q........ *----> Zrzut stanu dla wątku o identyfikatorze 0xec8 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=02b1ff70 ebp=02b1ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02b1ffb4 7c80b729 00000000 775f7068 00160c78 ntdll!KiFastSystemCallRet 02b1ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002b1ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff b1 02 J..|...|........ 0000000002b1ff80 b0 ff b1 02 98 ff b1 02 - a0 ff b1 02 68 70 5f 77 ............hp_w 0000000002b1ff90 78 0c 16 00 00 00 00 00 - 00 00 00 00 b0 87 ac 04 x............... 0000000002b1ffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 0000000002b1ffb0 80 87 ac 04 ec ff b1 02 - 29 b7 80 7c 00 00 00 00 ........)..|.... 0000000002b1ffc0 68 70 5f 77 78 0c 16 00 - 00 00 00 00 00 90 fa 7f hp_wx........... 0000000002b1ffd0 00 46 3c 82 c0 ff b1 02 - 60 a9 2f 82 ff ff ff ff .F<.....`./..... 0000000002b1ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000002b1fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000002b20000 09 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b200a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x82c <----* eax=7ffa8000 ebx=00000000 ecx=c000007c edx=7c90e514 esi=001638c8 edi=00000100 eip=7c90e514 esp=02c2fe18 ebp=02c2ff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02c2ff80 77e76caf 02c2ffa8 77e76ad1 001638c8 ntdll!KiFastSystemCallRet 02c2ff88 77e76ad1 001638c8 001504c0 0000000e RPCRT4!I_RpcBCacheFree+0x61c 02c2ffa8 77e76c97 0015fb98 02c2ffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 02c2ffb4 7c80b729 001c2d80 001504c0 0000000e RPCRT4!I_RpcBCacheFree+0x604 02c2ffec 00000000 77e76c7d 001c2d80 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002c2fe18 aa da 90 7c e3 65 e7 77 - 78 01 00 00 74 ff c2 02 ...|.e.wx...t... 0000000002c2fe28 00 00 00 00 68 00 1c 00 - 50 ff c2 02 80 1a fc 81 ....h...P....... 0000000002c2fe38 4c ab cf f3 a1 7d 56 80 - e0 e0 08 e1 10 05 00 00 L....}V......... 0000000002c2fe48 ff 03 1f 00 e0 e0 08 e1 - 02 e0 08 e1 00 00 00 00 ................ 0000000002c2fe58 00 00 00 00 ec e0 08 e1 - 20 4a 0e e1 69 1a fc 81 ........ J..i... 0000000002c2fe68 68 ab cf f3 04 00 00 00 - e0 e0 08 e1 e0 e0 08 e1 h............... 0000000002c2fe78 a0 f0 fc 81 00 00 00 00 - 02 00 00 00 6c ab cf f3 ............l... 0000000002c2fe88 14 4b 57 80 60 ac cf f3 - f4 4a 57 80 20 f0 fc 81 .KW.`....JW. ... 0000000002c2fe98 00 00 00 00 ff ff ff ff - 18 04 1c 00 00 00 00 00 ................ 0000000002c2fea8 f0 e0 08 e1 68 41 0e e1 - 81 14 e9 81 b4 ab cf f3 ....hA.......... 0000000002c2feb8 c8 7e 56 80 e0 e0 08 e1 - 68 41 0e e1 f0 7b 3c 82 .~V.....hA...{<. 0000000002c2fec8 03 00 1f 00 80 14 e9 81 - b4 00 00 00 fc ab cf f3 ................ 0000000002c2fed8 75 ff 56 80 e0 e0 08 e1 - 00 00 00 00 d8 03 30 82 u.V...........0. 0000000002c2fee8 00 00 00 00 00 00 00 00 - fc ab cf f3 68 72 4e 80 ............hrN. 0000000002c2fef8 fd 06 00 00 68 0b 00 00 - 21 12 f1 76 01 00 00 00 ....h...!..v.... 0000000002c2ff08 80 14 e9 81 03 00 1f 00 - 80 14 e9 81 84 5c ef 81 .............\.. 0000000002c2ff18 24 ac cf f3 b2 c2 4d 80 - ba c2 4d 80 54 5c ef 81 $.....M...M.T\.. 0000000002c2ff28 e8 5a ef 81 80 ff c2 02 - 85 d1 e7 77 48 ff c2 02 .Z.........wH... 0000000002c2ff38 95 d1 e7 77 e0 10 90 7c - 08 1c 1c 00 80 2d 1c 00 ...w...|.....-.. 0000000002c2ff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0x92c <----* eax=001bf090 ebx=c0000000 ecx=00000004 edx=001ca090 esi=00000000 edi=71a2793c eip=7c90e514 esp=02e5ff7c ebp=02e5ffb4 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02e5ffb4 7c80b729 719fd65f 00000002 00000000 ntdll!KiFastSystemCallRet 02e5ffec 00000000 719fd2c6 001c38e8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002e5ff7c 4a da 90 7c 20 d3 9f 71 - b4 05 00 00 bc ff e5 02 J..| ..q........ 0000000002e5ff8c b0 ff e5 02 a4 ff e5 02 - 68 d3 9f 71 02 00 00 00 ........h..q.... 0000000002e5ff9c 00 00 00 00 e8 38 1c 00 - 00 00 00 00 00 00 00 00 .....8.......... 0000000002e5ffac 00 00 9f 71 18 4a ad 04 - ec ff e5 02 29 b7 80 7c ...q.J......)..| 0000000002e5ffbc 5f d6 9f 71 02 00 00 00 - 00 00 00 00 e8 38 1c 00 _..q.........8.. 0000000002e5ffcc 00 70 fa 7f 00 46 3c 82 - c0 ff e5 02 78 a3 f8 81 .p...F<.....x... 0000000002e5ffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 0000000002e5ffec 00 00 00 00 00 00 00 00 - c6 d2 9f 71 e8 38 1c 00 ...........q.8.. 0000000002e5fffc 00 00 00 00 4d 5a 90 00 - 03 00 00 00 04 00 00 00 ....MZ.......... 0000000002e6000c ff ff 00 00 b8 00 00 00 - 00 00 00 00 40 00 00 00 ............@... 0000000002e6001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002e6002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002e6003c e8 00 00 00 0e 1f ba 0e - 00 b4 09 cd 21 b8 01 4c ............!..L 0000000002e6004c cd 21 54 68 69 73 20 70 - 72 6f 67 72 61 6d 20 63 .!This program c 0000000002e6005c 61 6e 6e 6f 74 20 62 65 - 20 72 75 6e 20 69 6e 20 annot be run in 0000000002e6006c 44 4f 53 20 6d 6f 64 65 - 2e 0d 0d 0a 24 00 00 00 DOS mode....$... 0000000002e6007c 00 00 00 00 0e 4d 87 46 - 4a 2c e9 15 4a 2c e9 15 .....M.FJ,..J,.. 0000000002e6008c 4a 2c e9 15 6d ea 94 15 - 65 2c e9 15 6d ea 84 15 J,..m...e,..m... 0000000002e6009c b9 2c e9 15 6d ea 92 15 - 7f 2c e9 15 4a 2c e8 15 .,..m....,..J,.. 0000000002e600ac 68 2f e9 15 6d ea 87 15 - e4 2e e9 15 6d ea 93 15 h/..m.......m... *----> Zrzut stanu dla wątku o identyfikatorze 0xdb4 <----* eax=03000869 ebx=033299b8 ecx=033249c8 edx=03322d20 esi=000005fc edi=00000000 eip=7c90e514 esp=036cff2c ebp=036cff90 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll - ChildEBP RetAddr Args to Child 036cff90 7c802542 000005fc ffffffff 00000000 ntdll!KiFastSystemCallRet 036cffa4 0300087c 000005fc ffffffff 00000000 kernel32!WaitForSingleObject+0x12 036cffec 00000000 03000869 033299b8 00000000 GoogleToolbarDynamic_32_B31C6BD+0x1a087c *----> Zrzut stosu <----* 00000000036cff2c 5a df 90 7c db 25 80 7c - fc 05 00 00 00 00 00 00 Z..|.%.|........ 00000000036cff3c 00 00 00 00 00 00 00 00 - b8 99 32 03 b8 99 32 03 ..........2...2. 00000000036cff4c 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000036cff5c 10 00 00 00 e8 13 4f 80 - dc ff 6c 03 00 90 fd 7f ......O...l..... 00000000036cff6c 00 60 fa 7f 00 00 00 00 - 1a 41 e8 02 40 ff 6c 03 .`.......A..@.l. 00000000036cff7c 1c 41 6c 01 dc ff 6c 03 - b0 9a 83 7c 08 26 80 7c .Al...l....|.&.| 00000000036cff8c 00 00 00 00 a4 ff 6c 03 - 42 25 80 7c fc 05 00 00 ......l.B%.|.... 00000000036cff9c ff ff ff ff 00 00 00 00 - ec ff 6c 03 7c 08 00 03 ..........l.|... 00000000036cffac fc 05 00 00 ff ff ff ff - 00 00 00 00 29 b7 80 7c ............)..| 00000000036cffbc b8 99 32 03 00 00 00 00 - 00 00 00 00 b8 99 32 03 ..2...........2. 00000000036cffcc 00 60 fa 7f 00 46 3c 82 - c0 ff 6c 03 60 a9 2f 82 .`...F<...l.`./. 00000000036cffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 00000000036cffec 00 00 00 00 00 00 00 00 - 69 08 00 03 b8 99 32 03 ........i.....2. 00000000036cfffc 00 00 00 00 c8 00 00 00 - a4 01 00 00 ff ee ff ee ................ 00000000036d000c 02 10 00 00 00 00 00 00 - 00 fe 00 00 00 00 10 00 ................ 00000000036d001c 00 20 00 00 00 02 00 00 - 00 20 00 00 2f fc 01 00 . ....... ../... 00000000036d002c ff ef fd 7f 15 00 08 06 - 00 00 00 00 00 00 00 00 ................ 00000000036d003c 00 00 00 00 00 00 00 00 - 88 05 6d 03 0f 00 00 00 ..........m..... 00000000036d004c f8 ff ff ff 50 00 6d 03 - 50 00 6d 03 40 06 6d 03 ....P.m.P.m.@.m. 00000000036d005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xb48 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=0334bad8 edi=00000024 eip=7c90e514 esp=024bfef4 ebp=024bff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 024bff20 02f7c37b 00000660 024bff48 024bff4c ntdll!KiFastSystemCallRet 024bff58 02f64eb7 00000000 02f7b4dd 0334cfb8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 024bffac 02f9ecbd 7c900000 7c80b729 033249c8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 024bffec 00000000 02f9ec3e 033249c8 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000024bfef4 4a da 90 7c e6 a7 80 7c - 60 06 00 00 4c ff 4b 02 J..|...|`...L.K. 00000000024bff04 38 ff 4b 02 18 ff 4b 02 - 00 00 00 00 d8 ba 34 03 8.K...K.......4. 00000000024bff14 58 ff 4b 02 44 b4 f7 02 - 31 00 00 00 58 ff 4b 02 X.K.D...1...X.K. 00000000024bff24 7b c3 f7 02 60 06 00 00 - 48 ff 4b 02 4c ff 4b 02 {...`...H.K.L.K. 00000000024bff34 54 ff 4b 02 ff ff ff ff - 00 00 00 00 b8 cf 34 03 T.K...........4. 00000000024bff44 c8 49 32 03 00 00 00 00 - 00 00 00 00 04 00 00 00 .I2............. 00000000024bff54 00 00 00 00 ac ff 4b 02 - b7 4e f6 02 00 00 00 00 ......K..N...... 00000000024bff64 dd b4 f7 02 b8 cf 34 03 - 04 38 e6 02 e0 d7 6c 01 ......4..8....l. 00000000024bff74 00 00 90 7c 18 ec f9 02 - b8 cf 34 03 ce f4 8a fb ...|......4..... 00000000024bff84 e0 d7 6c 01 00 00 90 7c - c8 49 32 03 80 ff 4b 02 ..l....|.I2...K. 00000000024bff94 80 ff 4b 02 dc ff 4b 02 - dc ff 4b 02 70 e7 f9 02 ..K...K...K.p... 00000000024bffa4 92 87 ce fa 00 00 00 00 - ec ff 4b 02 bd ec f9 02 ..........K..... 00000000024bffb4 00 00 90 7c 29 b7 80 7c - c8 49 32 03 e0 d7 6c 01 ...|)..|.I2...l. 00000000024bffc4 00 00 90 7c c8 49 32 03 - 00 c0 fa 7f 00 46 3c 82 ...|.I2......F<. 00000000024bffd4 c0 ff 4b 02 78 a3 f8 81 - ff ff ff ff b0 9a 83 7c ..K.x..........| 00000000024bffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 00000000024bfff4 3e ec f9 02 c8 49 32 03 - 00 00 00 00 4d 5a 90 00 >....I2.....MZ.. 00000000024c0004 03 00 00 00 04 00 00 00 - ff ff 00 00 b8 00 00 00 ................ 00000000024c0014 00 00 00 00 40 00 00 00 - 00 00 00 00 00 00 00 00 ....@........... 00000000024c0024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x7b4 <----* eax=00000000 ebx=038cfea8 ecx=00000000 edx=00000000 esi=00000000 edi=7ffd9000 eip=7c90e514 esp=038cfe80 ebp=038cff1c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 038cff1c 7c80a115 00000002 038cff58 00000000 ntdll!KiFastSystemCallRet 038cff38 02eee03b 00000002 038cff58 00000000 kernel32!WaitForMultipleObjects+0x18 038cff68 02e63804 016cd8b4 7c900000 02f9ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x87d9c 038cffac 02f9ecbd 7c900000 7c80b729 0334d3a0 GoogleToolbarDynamic_32_B31C6BD+0x3804 038cffec 00000000 02f9ec3e 0334d3a0 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000038cfe80 4a df 90 7c 90 95 80 7c - 02 00 00 00 a8 fe 8c 03 J..|...|........ 00000000038cfe90 01 00 00 00 00 00 00 00 - 00 00 00 00 e0 d2 34 03 ..............4. 00000000038cfea0 e0 d2 34 03 fd a0 80 7c - 84 06 00 00 80 06 00 00 ..4....|........ 00000000038cfeb0 17 00 00 00 01 00 00 00 - 8c d5 4e 77 dc a1 ec 03 ..........Nw.... 00000000038cfec0 d4 fe 8c 03 ac d6 4e 77 - 14 00 00 00 01 00 00 00 ......Nw........ 00000000038cfed0 00 00 00 00 00 00 00 00 - 10 00 00 00 f9 1a 4f 77 ..............Ow 00000000038cfee0 dc 29 e7 03 60 ff 8c 03 - 00 90 fd 7f 00 50 fa 7f .)..`........P.. 00000000038cfef0 4c b3 15 00 00 00 00 00 - a8 fe 8c 03 c5 16 4f 77 L.............Ow 00000000038cff00 02 00 00 00 9c fe 8c 03 - 3c 78 5f 77 9c ff 8c 03 ........ Zrzut stanu dla wątku o identyfikatorze 0x2c8 <----* eax=4ebd7456 ebx=03cdfe7c ecx=00000000 edx=4ebd9079 esi=00000000 edi=7ffd9000 eip=7c90e514 esp=03cdfe54 ebp=03cdfef0 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll - ChildEBP RetAddr Args to Child 03cdfef0 7e3695f9 00000002 03cdff18 00000000 ntdll!KiFastSystemCallRet 03cdff4c 7e3696a8 00000001 03cdffac ffffffff USER32!GetLastInputInfo+0x105 03cdff68 4ebd74b2 00000001 03cdffac 00000000 USER32!MsgWaitForMultipleObjects+0x1f 03cdffb4 7c80b729 00000000 7c80a174 00000011 gdiplus!GdipGetVisibleClipBoundsI+0xad4 03cdffec 00000000 4ebd7456 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000003cdfe54 4a df 90 7c 90 95 80 7c - 02 00 00 00 7c fe cd 03 J..|...|....|... 0000000003cdfe64 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003cdfe74 02 00 00 00 00 00 00 00 - ac 06 00 00 b8 06 00 00 ................ 0000000003cdfe84 cc 99 99 00 cc 99 cc 00 - cc 99 ff 00 cc cc 00 00 ................ 0000000003cdfe94 cc cc 33 00 cc cc 66 00 - 14 00 00 00 01 00 00 00 ..3...f......... 0000000003cdfea4 00 00 00 00 00 00 00 00 - 10 00 00 00 cc ff 66 00 ..............f. 0000000003cdfeb4 cc ff 99 00 cc ff cc 00 - 00 90 fd 7f 00 20 fa 7f ............. .. 0000000003cdfec4 ff 00 33 00 00 00 00 00 - 7c fe cd 03 ff 00 cc 00 ..3.....|....... 0000000003cdfed4 02 00 00 00 70 fe cd 03 - ff 33 33 00 dc ff cd 03 ....p....33..... 0000000003cdfee4 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 4c ff cd 03 ...|...|....L... 0000000003cdfef4 f9 95 36 7e 02 00 00 00 - 18 ff cd 03 00 00 00 00 ..6~............ 0000000003cdff04 ff ff ff ff 00 00 00 00 - 40 a3 37 7e a4 72 d4 4e ........@.7~.r.N 0000000003cdff14 00 00 00 00 ac 06 00 00 - b8 06 00 00 ff cc 00 00 ................ 0000000003cdff24 ff cc 33 00 ff cc 66 00 - ff cc 99 00 ff cc cc 00 ..3...f......... 0000000003cdff34 ff cc ff 00 ff ff 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003cdff44 00 20 fa 7f b8 06 00 00 - 68 ff cd 03 a8 96 36 7e . ......h.....6~ 0000000003cdff54 01 00 00 00 ac ff cd 03 - ff ff ff ff ff 04 00 00 ................ 0000000003cdff64 18 ff cd 03 b4 ff cd 03 - b2 74 bd 4e 01 00 00 00 .........t.N.... 0000000003cdff74 ac ff cd 03 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 0000000003cdff84 74 a1 80 7c 11 00 00 00 - 00 00 00 00 39 ac 4f 80 t..|........9.O. *----> Zrzut stanu dla wątku o identyfikatorze 0x644 <----* eax=04b87c00 ebx=00000000 ecx=000002e1 edx=04b87c00 esi=00000744 edi=00000000 eip=7c90e514 esp=041bff08 ebp=041bff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 041bff6c 7c802542 00000744 000927c0 00000000 ntdll!KiFastSystemCallRet 041bff80 3f3da2c9 00000744 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 041bffa0 3f340774 3f50af7e 3f340837 03b27540 mshtml!DllGetClassObject+0x8cfc4 041bffb4 7c80b729 03b5b2a8 3f50af7e 03b27540 mshtml+0x10774 041bffec 00000000 3f340829 03b5b2a8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000041bff08 5a df 90 7c db 25 80 7c - 44 07 00 00 00 00 00 00 Z..|.%.|D....... 00000000041bff18 3c ff 1b 04 00 00 00 00 - a8 b2 b5 03 00 00 00 00 <............... 00000000041bff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000041bff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 90 fd 7f .....D_......... 00000000041bff48 00 10 fa 7f 3c ff 1b 04 - 4a c3 3d 3f 1c ff 1b 04 ....<...J.=?.... 00000000041bff58 4a c3 3d 3f dc ff 1b 04 - b0 9a 83 7c 08 26 80 7c J.=?.......|.&.| 00000000041bff68 00 00 00 00 80 ff 1b 04 - 42 25 80 7c 44 07 00 00 ........B%.|D... 00000000041bff78 c0 27 09 00 00 00 00 00 - a0 ff 1b 04 c9 a2 3d 3f .'............=? 00000000041bff88 44 07 00 00 c0 27 09 00 - 00 00 33 3f a8 b2 b5 03 D....'....3?.... 00000000041bff98 a8 b2 b5 03 a8 b2 b5 03 - b4 ff 1b 04 74 07 34 3f ............t.4? 00000000041bffa8 7e af 50 3f 37 08 34 3f - 40 75 b2 03 ec ff 1b 04 ~.P?7.4?@u...... 00000000041bffb8 29 b7 80 7c a8 b2 b5 03 - 7e af 50 3f 40 75 b2 03 )..|....~.P?@u.. 00000000041bffc8 a8 b2 b5 03 00 10 fa 7f - 00 46 3c 82 c0 ff 1b 04 .........F<..... 00000000041bffd8 80 f3 ed 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 00000000041bffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 00000000041bfff8 a8 b2 b5 03 00 00 00 00 - 4d 5a 90 00 03 00 00 00 ........MZ...... 00000000041c0008 04 00 00 00 ff ff 00 00 - b8 00 00 00 00 00 00 00 ................ 00000000041c0018 40 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 @............... 00000000041c0028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000041c0038 00 00 00 00 b0 00 00 00 - 0e 1f ba 0e 00 b4 09 cd ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xa6c <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=0334bad8 edi=00000000 eip=7c90e514 esp=0238fef4 ebp=0238ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0238ff20 02f7c37b 00000660 0238ff48 0238ff4c ntdll!KiFastSystemCallRet 0238ff58 02f64eb7 00000001 02f7b4dd 0334cfe0 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0238ffac 02f9ecbd 7c900000 7c80b729 033249c8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0238ffec 00000000 02f9ec3e 033249c8 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000238fef4 4a da 90 7c e6 a7 80 7c - 60 06 00 00 4c ff 38 02 J..|...|`...L.8. 000000000238ff04 38 ff 38 02 18 ff 38 02 - 00 00 00 00 d8 ba 34 03 8.8...8.......4. 000000000238ff14 58 ff 38 02 44 b4 f7 02 - 31 00 00 00 58 ff 38 02 X.8.D...1...X.8. 000000000238ff24 7b c3 f7 02 60 06 00 00 - 48 ff 38 02 4c ff 38 02 {...`...H.8.L.8. 000000000238ff34 54 ff 38 02 ff ff ff ff - 00 00 00 00 e0 cf 34 03 T.8...........4. 000000000238ff44 c8 49 32 03 00 00 00 00 - 00 00 00 00 b6 38 e6 02 .I2..........8.. 000000000238ff54 00 00 00 00 ac ff 38 02 - b7 4e f6 02 01 00 00 00 ......8..N...... 000000000238ff64 dd b4 f7 02 e0 cf 34 03 - 04 38 e6 02 f0 fc 4b 02 ......4..8....K. 000000000238ff74 00 00 90 7c 18 ec f9 02 - e0 cf 34 03 ce f4 f9 fb ...|......4..... 000000000238ff84 f0 fc 4b 02 00 00 90 7c - c8 49 32 03 80 ff 38 02 ..K....|.I2...8. 000000000238ff94 80 ff 38 02 dc ff 38 02 - dc ff 38 02 70 e7 f9 02 ..8...8...8.p... 000000000238ffa4 92 87 ce fa 00 00 00 00 - ec ff 38 02 bd ec f9 02 ..........8..... 000000000238ffb4 00 00 90 7c 29 b7 80 7c - c8 49 32 03 f0 fc 4b 02 ...|)..|.I2...K. 000000000238ffc4 00 00 90 7c c8 49 32 03 - 00 d0 fa 7f 00 46 3c 82 ...|.I2......F<. 000000000238ffd4 c0 ff 38 02 78 a3 f8 81 - ff ff ff ff b0 9a 83 7c ..8.x..........| 000000000238ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000238fff4 3e ec f9 02 c8 49 32 03 - 00 00 00 00 4d 5a 90 00 >....I2.....MZ.. 0000000002390004 03 00 00 00 04 00 00 00 - ff ff 00 00 b8 00 00 00 ................ 0000000002390014 00 00 00 00 40 00 00 00 - 00 00 00 00 00 00 00 00 ....@........... 0000000002390024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x3a8 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=0334bad8 edi=00000000 eip=7c90e514 esp=0504fef4 ebp=0504ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0504ff20 02f7c37b 00000660 0504ff48 0504ff4c ntdll!KiFastSystemCallRet 0504ff58 02f64eb7 00000002 02f7b4dd 0334d008 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0504ffac 02f9ecbd 7c900000 7c80b729 033249c8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0504ffec 00000000 02f9ec3e 033249c8 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000504fef4 4a da 90 7c e6 a7 80 7c - 60 06 00 00 4c ff 04 05 J..|...|`...L... 000000000504ff04 38 ff 04 05 18 ff 04 05 - 00 00 00 00 d8 ba 34 03 8.............4. 000000000504ff14 58 ff 04 05 44 b4 f7 02 - 31 00 00 00 58 ff 04 05 X...D...1...X... 000000000504ff24 7b c3 f7 02 60 06 00 00 - 48 ff 04 05 4c ff 04 05 {...`...H...L... 000000000504ff34 54 ff 04 05 ff ff ff ff - 00 00 00 00 08 d0 34 03 T.............4. 000000000504ff44 c8 49 32 03 00 00 00 00 - 00 00 00 00 b6 38 e6 02 .I2..........8.. 000000000504ff54 00 00 00 00 ac ff 04 05 - b7 4e f6 02 02 00 00 00 .........N...... 000000000504ff64 dd b4 f7 02 08 d0 34 03 - 04 38 e6 02 f0 fc 4b 02 ......4..8....K. 000000000504ff74 00 00 90 7c 18 ec f9 02 - 08 d0 34 03 ce f4 c5 fc ...|......4..... 000000000504ff84 f0 fc 4b 02 00 00 90 7c - c8 49 32 03 80 ff 04 05 ..K....|.I2..... 000000000504ff94 80 ff 04 05 dc ff 04 05 - dc ff 04 05 70 e7 f9 02 ............p... 000000000504ffa4 92 87 ce fa 00 00 00 00 - ec ff 04 05 bd ec f9 02 ................ 000000000504ffb4 00 00 90 7c 29 b7 80 7c - c8 49 32 03 f0 fc 4b 02 ...|)..|.I2...K. 000000000504ffc4 00 00 90 7c c8 49 32 03 - 00 f0 f9 7f 00 46 3c 82 ...|.I2......F<. 000000000504ffd4 c0 ff 04 05 78 a3 f8 81 - ff ff ff ff b0 9a 83 7c ....x..........| 000000000504ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000504fff4 3e ec f9 02 c8 49 32 03 - 00 00 00 00 00 00 00 00 >....I2......... 0000000005050004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005050014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005050024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x56c <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=0334bad8 edi=00000000 eip=7c90e514 esp=0514fef4 ebp=0514ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0514ff20 02f7c37b 00000660 0514ff48 0514ff4c ntdll!KiFastSystemCallRet 0514ff58 02f64eb7 00000003 02f7b4dd 0334d030 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0514ffac 02f9ecbd 7c900000 7c80b729 033249c8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0514ffec 00000000 02f9ec3e 033249c8 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000514fef4 4a da 90 7c e6 a7 80 7c - 60 06 00 00 4c ff 14 05 J..|...|`...L... 000000000514ff04 38 ff 14 05 18 ff 14 05 - 00 00 00 00 d8 ba 34 03 8.............4. 000000000514ff14 58 ff 14 05 44 b4 f7 02 - 31 00 00 00 58 ff 14 05 X...D...1...X... 000000000514ff24 7b c3 f7 02 60 06 00 00 - 48 ff 14 05 4c ff 14 05 {...`...H...L... 000000000514ff34 54 ff 14 05 ff ff ff ff - 00 00 00 00 30 d0 34 03 T...........0.4. 000000000514ff44 c8 49 32 03 00 00 00 00 - 00 00 00 00 b6 38 e6 02 .I2..........8.. 000000000514ff54 00 00 00 00 ac ff 14 05 - b7 4e f6 02 03 00 00 00 .........N...... 000000000514ff64 dd b4 f7 02 30 d0 34 03 - 04 38 e6 02 f0 fc 4b 02 ....0.4..8....K. 000000000514ff74 00 00 90 7c 18 ec f9 02 - 30 d0 34 03 ce f4 d5 fc ...|....0.4..... 000000000514ff84 f0 fc 4b 02 00 00 90 7c - c8 49 32 03 80 ff 14 05 ..K....|.I2..... 000000000514ff94 80 ff 14 05 dc ff 14 05 - dc ff 14 05 70 e7 f9 02 ............p... 000000000514ffa4 92 87 ce fa 00 00 00 00 - ec ff 14 05 bd ec f9 02 ................ 000000000514ffb4 00 00 90 7c 29 b7 80 7c - c8 49 32 03 f0 fc 4b 02 ...|)..|.I2...K. 000000000514ffc4 00 00 90 7c c8 49 32 03 - 00 e0 f9 7f 00 46 3c 82 ...|.I2......F<. 000000000514ffd4 c0 ff 14 05 78 a3 f8 81 - ff ff ff ff b0 9a 83 7c ....x..........| 000000000514ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000514fff4 3e ec f9 02 c8 49 32 03 - 00 00 00 00 00 00 00 00 >....I2......... 0000000005150004 00 00 01 00 00 10 00 00 - 00 00 00 00 20 00 15 05 ............ ... 0000000005150014 00 00 00 00 00 00 00 00 - 00 00 00 00 b8 05 99 00 ................ 0000000005150024 00 00 00 00 00 00 00 00 - 00 00 00 00 f8 05 99 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xb64 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=0000082c edi=00000000 eip=7c90e514 esp=039cfeb8 ebp=039cff1c iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 039cff1c 7c802542 0000082c 0001d4c0 00000000 ntdll!KiFastSystemCallRet 039cff30 02f90ceb 0000082c 0001d4c0 00000000 kernel32!WaitForSingleObject+0x12 039cff68 02e63804 016cafd0 7c900000 02f9ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x12aa4c 039cffac 02f9ecbd 7c900000 7c80b729 03343470 GoogleToolbarDynamic_32_B31C6BD+0x3804 039cffec 00000000 02f9ec3e 03343470 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000039cfeb8 5a df 90 7c db 25 80 7c - 2c 08 00 00 00 00 00 00 Z..|.%.|,....... 00000000039cfec8 ec fe 9c 03 ea 00 00 00 - 80 b2 36 03 00 00 00 00 ..........6..... 00000000039cfed8 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000039cfee8 10 00 00 00 00 74 79 b8 - ff ff ff ff 00 90 fd 7f .....ty......... 00000000039cfef8 00 40 fa 7f ec fe 9c 03 - 00 00 00 00 cc fe 9c 03 .@.............. 00000000039cff08 88 62 e3 77 9c ff 9c 03 - b0 9a 83 7c 08 26 80 7c .b.w.......|.&.| 00000000039cff18 00 00 00 00 30 ff 9c 03 - 42 25 80 7c 2c 08 00 00 ....0...B%.|,... 00000000039cff28 c0 d4 01 00 00 00 00 00 - 68 ff 9c 03 eb 0c f9 02 ........h....... 00000000039cff38 2c 08 00 00 c0 d4 01 00 - 00 00 00 00 80 b2 36 03 ,.............6. 00000000039cff48 70 34 34 03 aa ed f9 02 - b6 38 e6 02 34 da 63 ec p44......8..4.c. 00000000039cff58 00 00 00 00 80 b2 36 03 - a4 39 e6 02 80 b2 36 03 ......6..9....6. 00000000039cff68 ac ff 9c 03 04 38 e6 02 - d0 af 6c 01 00 00 90 7c .....8....l....| 00000000039cff78 18 ec f9 02 80 b2 36 03 - ce f4 5d fa d0 af 6c 01 ......6...]...l. 00000000039cff88 00 00 90 7c 70 34 34 03 - 80 ff 9c 03 80 ff 9c 03 ...|p44......... 00000000039cff98 dc ff 9c 03 dc ff 9c 03 - 70 e7 f9 02 92 87 ce fa ........p....... 00000000039cffa8 00 00 00 00 ec ff 9c 03 - bd ec f9 02 00 00 90 7c ...............| 00000000039cffb8 29 b7 80 7c 70 34 34 03 - d0 af 6c 01 00 00 90 7c )..|p44...l....| 00000000039cffc8 70 34 34 03 00 40 fa 7f - 00 46 3c 82 c0 ff 9c 03 p44..@...F<..... 00000000039cffd8 a0 93 f1 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 00000000039cffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 3e ec f9 02 ............>... *----> Zrzut stanu dla wątku o identyfikatorze 0xed4 <----* eax=0406ab58 ebx=00000000 ecx=00002efc edx=032a9618 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=0696ff70 ebp=0696ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0696ffb4 7c80b729 00000000 7c9144f9 00020648 ntdll!KiFastSystemCallRet 0696ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000696ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff 96 06 J..|...|........ 000000000696ff80 b0 ff 96 06 98 ff 96 06 - a0 ff 96 06 f9 44 91 7c .............D.| 000000000696ff90 48 06 02 00 00 00 00 00 - 00 00 00 00 60 9c b2 04 H...........`... 000000000696ffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 000000000696ffb0 60 1e c8 04 ec ff 96 06 - 29 b7 80 7c 00 00 00 00 `.......)..|.... 000000000696ffc0 f9 44 91 7c 48 06 02 00 - 00 00 00 00 00 d0 f9 7f .D.|H........... 000000000696ffd0 00 46 3c 82 c0 ff 96 06 - 78 a3 f8 81 ff ff ff ff .F<.....x....... 000000000696ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 000000000696fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000006970000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006970010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006970020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006970030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006970040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006970050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006970060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006970070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006970080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006970090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000069700a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xc40 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=00000890 edi=00000000 eip=7c90e514 esp=06a6ff08 ebp=06a6ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 06a6ff6c 7c802542 00000890 000927c0 00000000 ntdll!KiFastSystemCallRet 06a6ff80 3f3da2c9 00000890 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 06a6ffa0 3f340774 001964f8 3f340837 00000020 mshtml!DllGetClassObject+0x8cfc4 06a6ffb4 7c80b729 03b15150 001964f8 00000020 mshtml+0x10774 06a6ffec 00000000 3f340829 03b15150 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000006a6ff08 5a df 90 7c db 25 80 7c - 90 08 00 00 00 00 00 00 Z..|.%.|........ 0000000006a6ff18 3c ff a6 06 00 00 00 00 - 50 51 b1 03 00 00 00 00 <.......PQ...... 0000000006a6ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006a6ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 90 fd 7f .....D_......... 0000000006a6ff48 00 c0 f9 7f 3c ff a6 06 - af c2 3d 3f 1c ff a6 06 ....<.....=?.... 0000000006a6ff58 00 00 00 00 dc ff a6 06 - b0 9a 83 7c 08 26 80 7c ...........|.&.| 0000000006a6ff68 00 00 00 00 80 ff a6 06 - 42 25 80 7c 90 08 00 00 ........B%.|.... 0000000006a6ff78 c0 27 09 00 00 00 00 00 - a0 ff a6 06 c9 a2 3d 3f .'............=? 0000000006a6ff88 90 08 00 00 c0 27 09 00 - 00 00 33 3f 50 51 b1 03 .....'....3?PQ.. 0000000006a6ff98 50 51 b1 03 50 51 b1 03 - b4 ff a6 06 74 07 34 3f PQ..PQ......t.4? 0000000006a6ffa8 f8 64 19 00 37 08 34 3f - 20 00 00 00 ec ff a6 06 .d..7.4? ....... 0000000006a6ffb8 29 b7 80 7c 50 51 b1 03 - f8 64 19 00 20 00 00 00 )..|PQ...d.. ... 0000000006a6ffc8 50 51 b1 03 00 c0 f9 7f - 00 46 3c 82 c0 ff a6 06 PQ.......F<..... 0000000006a6ffd8 78 a3 f8 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c x..........|0..| 0000000006a6ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 0000000006a6fff8 50 51 b1 03 00 00 00 00 - 00 00 00 00 00 00 00 00 PQ.............. 0000000006a70008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006a70018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006a70028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006a70038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x220 <----* eax=000000e9 ebx=00000000 ecx=00560650 edx=00000001 esi=00000860 edi=00000000 eip=7c90e514 esp=06c6ff08 ebp=06c6ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 06c6ff6c 7c802542 00000860 000927c0 00000000 ntdll!KiFastSystemCallRet 06c6ff80 3f3da2c9 00000860 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 06c6ffa0 3f340774 002f0117 3f340837 00000000 mshtml!DllGetClassObject+0x8cfc4 06c6ffb4 7c80b729 03b151f8 002f0117 00000000 mshtml+0x10774 06c6ffec 00000000 3f340829 03b151f8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000006c6ff08 5a df 90 7c db 25 80 7c - 60 08 00 00 00 00 00 00 Z..|.%.|`....... 0000000006c6ff18 3c ff c6 06 00 00 00 00 - f8 51 b1 03 00 00 00 00 <........Q...... 0000000006c6ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006c6ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 90 fd 7f .....D_......... 0000000006c6ff48 00 b0 f9 7f 3c ff c6 06 - af c2 3d 3f 1c ff c6 06 ....<.....=?.... 0000000006c6ff58 00 00 00 00 dc ff c6 06 - b0 9a 83 7c 08 26 80 7c ...........|.&.| 0000000006c6ff68 00 00 00 00 80 ff c6 06 - 42 25 80 7c 60 08 00 00 ........B%.|`... 0000000006c6ff78 c0 27 09 00 00 00 00 00 - a0 ff c6 06 c9 a2 3d 3f .'............=? 0000000006c6ff88 60 08 00 00 c0 27 09 00 - 00 00 33 3f f8 51 b1 03 `....'....3?.Q.. 0000000006c6ff98 f8 51 b1 03 f8 51 b1 03 - b4 ff c6 06 74 07 34 3f .Q...Q......t.4? 0000000006c6ffa8 17 01 2f 00 37 08 34 3f - 00 00 00 00 ec ff c6 06 ../.7.4?........ 0000000006c6ffb8 29 b7 80 7c f8 51 b1 03 - 17 01 2f 00 00 00 00 00 )..|.Q..../..... 0000000006c6ffc8 f8 51 b1 03 00 b0 f9 7f - 00 46 3c 82 c0 ff c6 06 .Q.......F<..... 0000000006c6ffd8 78 a3 f8 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c x..........|0..| 0000000006c6ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 0000000006c6fff8 f8 51 b1 03 00 00 00 00 - 00 00 00 00 00 00 00 00 .Q.............. 0000000006c70008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006c70018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006c70028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006c70038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ Wystąpił wyjątek aplikacji: Apl: C:\Program Files\Internet Explorer\iexplore.exe (pid=1748) Kiedy: 2013-07-05 @ 11:52:45.416 Numer wyjątku: c0000005 (naruszenie praw dostępu) *----> Informacje o systemie <----* Nazwa komputera: OEM-23004A62F73 Nazwa użytkownika: oem Identyfikator sesji terminala: 0 Liczba procesorów: 1 Typ procesora: x86 Family 15 Model 2 Stepping 7 Wersja systemu Windows: 5.1 Bieżąca kompilacja: 2600 Dodatek Service Pack: 3. Bieżący typ: Uniprocessor Free Zarejestrowana organizacja: Zarejestrowany właściciel: oem *----> Lista zadań <----* 0 System Process 4 System 792 smss.exe 848 csrss.exe 876 winlogon.exe 920 services.exe 932 lsass.exe 1104 svchost.exe 1192 svchost.exe 1340 svchost.exe 1412 svchost.exe 1524 svchost.exe 1856 Explorer.EXE 1936 spoolsv.exe 572 egui.exe 704 svchost.exe 768 ACService.exe 820 ekrn.exe 812 ctfmon.exe 824 GoogleToolbarNotifier.exe 1420 mdm.exe 1488 svchost.exe 1124 alg.exe 1588 iexplore.exe 2796 iexplore.exe 1748 iexplore.exe 3552 drwtsn32.exe *----> Lista modułów <----* (0000000000400000 - 000000000049c000: C:\Program Files\Internet Explorer\iexplore.exe (00000000016d0000 - 00000000019a2000: C:\WINDOWS\system32\xpsp2res.dll (0000000001cb0000 - 0000000001cb9000: C:\WINDOWS\system32\Normaliz.dll (0000000002390000 - 00000000023a0000: C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (00000000024c0000 - 00000000025b9000: C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (0000000002d40000 - 00000000031b5000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll (0000000003440000 - 000000000353f000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E7110F8B630E4F04.dll (00000000037d0000 - 00000000037f9000: C:\WINDOWS\system32\msls31.dll (0000000005680000 - 000000000669f000: C:\WINDOWS\system32\Macromed\Flash\Flash32_11_7_700_202.ocx (0000000010000000 - 0000000010033000: C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (000000001b000000 - 000000001b00c000: C:\WINDOWS\system32\ImgUtil.dll (000000001b060000 - 000000001b06e000: C:\WINDOWS\system32\pngfilt.dll (000000001f840000 - 000000001f858000: C:\WINDOWS\system32\odbcint.dll (000000003f330000 - 000000003f8f0000: C:\WINDOWS\system32\mshtml.dll (000000003fc30000 - 000000003fce4000: C:\WINDOWS\system32\jscript.dll (000000003fcf0000 - 000000003fdd7000: C:\WINDOWS\system32\WININET.dll (0000000040390000 - 000000004057c000: C:\WINDOWS\system32\iertutil.dll (0000000040580000 - 000000004101d000: C:\WINDOWS\system32\IEFRAME.dll (0000000042a20000 - 0000000042a4f000: C:\WINDOWS\system32\iepeers.dll (00000000451f0000 - 00000000451f6000: C:\Program Files\Internet Explorer\xpshims.dll (0000000045330000 - 0000000045464000: C:\WINDOWS\system32\urlmon.dll (0000000045530000 - 0000000045570000: C:\Program Files\Internet Explorer\ieproxy.dll (000000004ebc0000 - 000000004ed6b000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll (0000000059bc0000 - 0000000059c61000: C:\WINDOWS\system32\DBGHELP.DLL (000000005b1d0000 - 000000005b208000: C:\WINDOWS\system32\uxtheme.dll (000000005cfe0000 - 000000005d006000: C:\WINDOWS\system32\ShimEng.dll (000000005d520000 - 000000005d5ba000: C:\WINDOWS\system32\comctl32.dll (0000000061880000 - 00000000618ba000: C:\WINDOWS\system32\OLEACC.dll (0000000066780000 - 00000000667d8000: C:\WINDOWS\system32\hnetcfg.dll (0000000068000000 - 0000000068036000: C:\WINDOWS\system32\rsaenh.dll (000000006d440000 - 000000006d44c000: C:\Program Files\Java\jre6\bin\jp2ssv.dll (000000006daf0000 - 000000006db02000: C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (000000006ff40000 - 000000006ff95000: C:\WINDOWS\system32\NETAPI32.dll (0000000071620000 - 0000000071699000: C:\WINDOWS\AppPatch\AcLayers.DLL (00000000719f0000 - 0000000071a30000: C:\WINDOWS\System32\mswsock.dll (0000000071a30000 - 0000000071a38000: C:\WINDOWS\System32\wshtcpip.dll (0000000071a40000 - 0000000071a48000: C:\WINDOWS\system32\WS2HELP.dll (0000000071a50000 - 0000000071a67000: C:\WINDOWS\system32\ws2_32.dll (0000000071ac0000 - 0000000071ad2000: C:\WINDOWS\system32\MPR.dll (0000000071ba0000 - 0000000071bb3000: C:\WINDOWS\System32\SAMLIB.dll (0000000071bc0000 - 0000000071bce000: C:\WINDOWS\System32\ntlanman.dll (0000000071c30000 - 0000000071c37000: C:\WINDOWS\System32\NETRAP.dll (0000000071c40000 - 0000000071c80000: C:\WINDOWS\System32\NETUI1.dll (0000000071c80000 - 0000000071c97000: C:\WINDOWS\System32\NETUI0.dll (0000000071cf0000 - 0000000071d0b000: C:\WINDOWS\system32\actxprxy.dll (0000000072260000 - 0000000072265000: C:\WINDOWS\system32\sensapi.dll (0000000072ea0000 - 0000000072f0f000: C:\WINDOWS\system32\ieapfltr.dll (0000000072f90000 - 0000000072fb6000: C:\WINDOWS\system32\WINSPOOL.DRV (0000000073ac0000 - 0000000073ad5000: C:\WINDOWS\system32\mscms.dll (0000000073b30000 - 0000000073b44000: C:\WINDOWS\system32\sti.dll (0000000073ea0000 - 0000000073efc000: C:\WINDOWS\system32\DSOUND.dll (0000000074600000 - 000000007463d000: C:\WINDOWS\system32\ODBC32.dll (00000000746a0000 - 00000000746ca000: C:\WINDOWS\system32\msimtf.dll (00000000746d0000 - 000000007471c000: C:\WINDOWS\system32\MSCTF.dll (0000000074a90000 - 0000000074a97000: C:\WINDOWS\system32\CFGMGR32.dll (0000000075180000 - 00000000751ae000: C:\WINDOWS\system32\msctfime.ime (0000000075940000 - 0000000075a39000: C:\WINDOWS\system32\MSGINA.dll (0000000075d70000 - 0000000075e01000: C:\WINDOWS\system32\MLANG.dll (0000000075f30000 - 0000000075f37000: C:\WINDOWS\System32\drprov.dll (0000000075f40000 - 0000000075f4a000: C:\WINDOWS\System32\davclnt.dll (0000000076330000 - 0000000076340000: C:\WINDOWS\system32\WINSTA.dll (0000000076350000 - 0000000076355000: C:\WINDOWS\system32\MSIMG32.dll (0000000076360000 - 000000007637d000: C:\WINDOWS\system32\IMM32.DLL (0000000076380000 - 00000000763c9000: C:\WINDOWS\system32\comdlg32.dll (0000000076770000 - 000000007677c000: C:\WINDOWS\system32\cryptdll.dll (0000000076970000 - 0000000076996000: C:\WINDOWS\system32\ntshrui.dll (00000000769a0000 - 0000000076a55000: C:\WINDOWS\system32\USERENV.dll (0000000076b00000 - 0000000076b11000: C:\WINDOWS\system32\ATL.DLL (0000000076b20000 - 0000000076b4e000: C:\WINDOWS\system32\WINMM.dll (0000000076be0000 - 0000000076beb000: C:\WINDOWS\system32\PSAPI.DLL (0000000076c20000 - 0000000076c4e000: C:\WINDOWS\system32\WINTRUST.dll (0000000076c80000 - 0000000076ca8000: C:\WINDOWS\system32\IMAGEHLP.dll (0000000076d50000 - 0000000076d69000: C:\WINDOWS\system32\iphlpapi.dll (0000000076e70000 - 0000000076e7e000: C:\WINDOWS\system32\rtutils.dll (0000000076e80000 - 0000000076e92000: C:\WINDOWS\system32\rasman.dll (0000000076ea0000 - 0000000076ecf000: C:\WINDOWS\system32\TAPI32.dll (0000000076ed0000 - 0000000076f0c000: C:\WINDOWS\system32\RASAPI32.dll (0000000076f10000 - 0000000076f37000: C:\WINDOWS\system32\DNSAPI.dll (0000000076f40000 - 0000000076f48000: C:\WINDOWS\system32\WTSAPI32.dll (0000000076fb0000 - 0000000076fb6000: C:\WINDOWS\system32\rasadhlp.dll (0000000076fc0000 - 000000007703f000: C:\WINDOWS\system32\CLBCATQ.DLL (0000000077040000 - 000000007710d000: C:\WINDOWS\system32\COMRes.dll (0000000077110000 - 000000007719b000: C:\WINDOWS\system32\OLEAUT32.dll (00000000773c0000 - 00000000774c3000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (00000000774d0000 - 000000007760e000: C:\WINDOWS\system32\ole32.dll (0000000077910000 - 0000000077a06000: C:\WINDOWS\system32\SETUPAPI.dll (0000000077a70000 - 0000000077b06000: C:\WINDOWS\system32\CRYPT32.dll (0000000077b10000 - 0000000077b22000: C:\WINDOWS\system32\MSASN1.dll (0000000077b30000 - 0000000077b52000: C:\WINDOWS\system32\appHelp.dll (0000000077bf0000 - 0000000077bf8000: C:\WINDOWS\system32\VERSION.dll (0000000077c00000 - 0000000077c58000: C:\WINDOWS\system32\msvcrt.dll (0000000077c60000 - 0000000077c85000: C:\WINDOWS\system32\msv1_0.dll (0000000077dc0000 - 0000000077e6c000: C:\WINDOWS\system32\ADVAPI32.dll (0000000077e70000 - 0000000077f03000: C:\WINDOWS\system32\RPCRT4.dll (0000000077f10000 - 0000000077f59000: C:\WINDOWS\system32\GDI32.dll (0000000077f60000 - 0000000077fd6000: C:\WINDOWS\system32\SHLWAPI.dll (0000000077fe0000 - 0000000077ff1000: C:\WINDOWS\system32\Secur32.dll (0000000078130000 - 00000000781cb000: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll (000000007c340000 - 000000007c396000: C:\Program Files\Java\jre6\bin\MSVCR71.dll (000000007c800000 - 000000007c8fd000: C:\WINDOWS\system32\kernel32.dll (000000007c900000 - 000000007c9b4000: C:\WINDOWS\system32\ntdll.dll (000000007c9c0000 - 000000007d1de000: C:\WINDOWS\system32\SHELL32.dll (000000007d1e0000 - 000000007d49c000: C:\WINDOWS\system32\msi.dll (000000007d9a0000 - 000000007db06000: C:\WINDOWS\system32\query.dll (000000007e360000 - 000000007e3f1000: C:\WINDOWS\system32\USER32.dll (000000007e690000 - 000000007e740000: C:\WINDOWS\system32\SXS.DLL *----> Zrzut stanu dla wątku o identyfikatorze 0x2a0 <----* eax=02070000 ebx=0013fc50 ecx=0013fc30 edx=7c90e514 esi=00000000 edi=7ffde000 eip=7c90e514 esp=0013fc28 ebp=0013fcc4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\USER32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\iertutil.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\IEFRAME.dll - *** ERROR: Module load completed but symbols could not be loaded for C:\Program Files\Internet Explorer\iexplore.exe *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll - ChildEBP RetAddr Args to Child 0013fcc4 7e3695f9 00000001 0013fcec 00000000 ntdll!KiFastSystemCallRet 0013fd20 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 0013fd70 404f873a 00000000 00000001 00000001 iertutil!Ordinal73+0x103 0013fd90 4062415a 00000001 00000001 77f648e4 iertutil!Ordinal537+0x52 0013fde0 00401484 001556f8 0000000a 0040b090 IEFRAME!Ordinal320+0x15aa6 0013ff2c 0040128e 00400000 00000000 0002070c iexplore+0x1484 0013ffc0 7c81776f 013ccdbc 013ccfa8 7ffde000 iexplore+0x128e 0013fff0 00000000 00401a25 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49 *----> Zrzut stosu <----* 000000000013fc28 4a df 90 7c 90 95 80 7c - 01 00 00 00 50 fc 13 00 J..|...|....P... 000000000013fc38 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000013fc48 01 00 00 00 06 00 00 00 - 30 00 00 00 80 fc 13 00 ........0....... 000000000013fc58 b5 27 4f 40 70 13 e5 00 - 02 00 00 00 04 28 04 00 .'O@p........(.. 000000000013fc68 08 00 00 00 2c fd 13 00 - 14 00 00 00 01 00 00 00 ....,........... 000000000013fc78 00 00 00 00 00 00 00 00 - 10 00 00 00 5d 28 4f 40 ............](O@ 000000000013fc88 70 00 00 00 01 00 00 00 - 00 e0 fd 7f 00 d0 fd 7f p............... 000000000013fc98 5c f6 90 7c 00 00 00 00 - 50 fc 13 00 01 00 00 00 \..|....P....... 000000000013fca8 01 00 00 00 44 fc 13 00 - 00 00 99 00 b0 ff 13 00 ....D........... 000000000013fcb8 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 20 fd 13 00 ...|...|.... ... 000000000013fcc8 f9 95 36 7e 01 00 00 00 - ec fc 13 00 00 00 00 00 ..6~............ 000000000013fcd8 ff ff ff ff 01 00 00 00 - 00 00 00 00 68 47 99 00 ............hG.. 000000000013fce8 00 00 00 00 30 00 00 00 - 00 00 99 00 00 00 00 00 ....0........... 000000000013fcf8 e3 c2 c1 77 00 00 00 00 - 68 47 99 00 00 00 00 00 ...w....hG...... 000000000013fd08 30 fd 13 00 a6 92 4f 40 - 00 00 00 00 01 00 00 00 0.....O@........ 000000000013fd18 00 d0 fd 7f 30 00 00 00 - 70 fd 13 00 3e 71 4f 40 ....0...p...>qO@ 000000000013fd28 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 000000000013fd38 ec fc 13 00 04 28 04 00 - 68 47 99 00 03 18 01 00 .....(..hG...... 000000000013fd48 b0 ff 13 00 94 5c c2 77 - 88 20 c0 77 ff ff ff ff .....\.w. .w.... 000000000013fd58 ce c3 c1 77 e7 c3 c1 77 - 64 00 00 00 00 00 00 00 ...w...wd....... *----> Zrzut stanu dla wątku o identyfikatorze 0x8bc <----* eax=00a75ad4 ebx=00c6fed0 ecx=7ffdc000 edx=77e36660 esi=00000000 edi=7ffde000 eip=7c90e514 esp=00c6fea8 ebp=00c6ff44 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ADVAPI32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 00c6ff44 77de8631 00000002 00c6ff6c 00000000 ntdll!KiFastSystemCallRet 00c6ffb4 7c80b729 00000000 00000000 77de8ae4 ADVAPI32!WmiFreeBuffer+0x24e 00c6ffec 00000000 77de848a 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000000c6fea8 4a df 90 7c 90 95 80 7c - 02 00 00 00 d0 fe c6 00 J..|...|........ 0000000000c6feb8 01 00 00 00 01 00 00 00 - 04 ff c6 00 e0 2e a7 00 ................ 0000000000c6fec8 60 66 e3 77 00 10 00 00 - 78 00 00 00 84 00 00 00 `f.w....x....... 0000000000c6fed8 c0 fe c6 00 ff ff ff ff - dc ff c6 00 b0 9a 83 7c ...............| 0000000000c6fee8 28 10 81 7c 00 10 00 00 - 14 00 00 00 01 00 00 00 (..|............ 0000000000c6fef8 00 00 00 00 00 00 00 00 - 10 00 00 00 00 a2 2f 4d ............../M 0000000000c6ff08 ff ff ff ff 00 10 00 00 - 00 e0 fd 7f 00 c0 fd 7f ................ 0000000000c6ff18 dc ff c6 00 04 ff c6 00 - d0 fe c6 00 06 00 00 00 ................ 0000000000c6ff28 02 00 00 00 c4 fe c6 00 - 06 00 00 00 dc ff c6 00 ................ 0000000000c6ff38 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 b4 ff c6 00 ...|...|........ 0000000000c6ff48 31 86 de 77 02 00 00 00 - 6c ff c6 00 00 00 00 00 1..w....l....... 0000000000c6ff58 e0 93 04 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000c6ff68 e4 8a de 77 78 00 00 00 - 84 00 00 00 00 10 00 00 ...wx........... 0000000000c6ff78 e0 2e a7 00 00 00 00 00 - 00 10 00 00 e8 3e a7 00 .............>.. 0000000000c6ff88 00 67 e3 77 c8 00 00 00 - e0 66 e3 77 00 10 00 00 .g.w.....f.w.... 0000000000c6ff98 00 00 00 00 00 67 e3 77 - e0 2e a7 00 e0 66 e3 77 .....g.w.....f.w 0000000000c6ffa8 e5 03 00 00 00 10 00 00 - e8 3e a7 00 ec ff c6 00 .........>...... 0000000000c6ffb8 29 b7 80 7c 00 00 00 00 - 00 00 00 00 e4 8a de 77 )..|...........w 0000000000c6ffc8 00 00 00 00 00 c0 fd 7f - 00 46 3c 82 c0 ff c6 00 .........F<..... 0000000000c6ffd8 40 2c 2e 82 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c @,.........|0..| *----> Zrzut stanu dla wątku o identyfikatorze 0xf58 <----* eax=000000c0 ebx=00000000 ecx=00000000 edx=00000007 esi=0013f770 edi=0015ea40 eip=7c90e514 esp=00faff9c ebp=00faffb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 00faffb4 7c80b729 00000000 0015ea40 0013f770 ntdll!KiFastSystemCallRet 00faffec 00000000 7c927d83 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000000faff9c 1a d2 90 7c ca 7d 92 7c - 01 00 00 00 ac ff fa 00 ...|.}.|........ 0000000000faffac 00 00 00 00 00 00 00 80 - ec ff fa 00 29 b7 80 7c ............)..| 0000000000faffbc 00 00 00 00 40 ea 15 00 - 70 f7 13 00 00 00 00 00 ....@...p....... 0000000000faffcc 00 b0 fd 7f 00 46 3c 82 - c0 ff fa 00 40 2c 2e 82 .....F<.....@,.. 0000000000faffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 0000000000faffec 00 00 00 00 00 00 00 00 - 83 7d 92 7c 00 00 00 00 .........}.|.... 0000000000fafffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00bc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00cc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x508 <----* eax=04b458f8 ebx=00163af8 ecx=00000301 edx=04b458f8 esi=000004f4 edi=00000000 eip=7c90e514 esp=010af648 ebp=010af6ac iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ole32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\RPCRT4.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ieapfltr.dll - ChildEBP RetAddr Args to Child 010af6ac 7c802542 000004f4 ffffffff 00000000 ntdll!KiFastSystemCallRet 010af6c0 77510197 000004f4 ffffffff 00163af8 kernel32!WaitForSingleObject+0x12 010af6dc 775f2e50 00163af8 001c9a68 00000000 ole32!CoQueryProxyBlanket+0x5c5 010af6fc 775f208a 010af7c4 010af8d4 001b7210 ole32!StgGetIFillLockBytesOnFile+0x11c40 010af7dc 7751c982 001b7210 010af8d4 010af8c4 ole32!StgGetIFillLockBytesOnFile+0x10e7a 010af848 7751597c 001b7210 010af8d4 010af8c4 ole32!ReleaseStgMedium+0x12e7 010af89c 77ef5db5 00000001 010af8d4 010af8c4 ole32!CoGetObject+0xd26 010af8b8 77ef5ead 001c99c4 010af900 0600015b RPCRT4!NdrProxySendReceive+0x40 010afc9c 77ef5e42 774d6228 774d95e6 010afcd4 RPCRT4!NdrProxySendReceive+0x138 010afcbc 77e88519 0000000c 00000008 010afd54 RPCRT4!NdrProxySendReceive+0xcd 010afccc 77515557 001c99c4 010afd08 010afdfc RPCRT4!CreateStubFromTypeInfo+0x11c 010afd54 77515171 0015ad68 775151ca 00000302 ole32!CoGetObject+0x901 010afda8 72ea1b6d 775f7908 00000302 72ea19a8 ole32!CoGetObject+0x51b 010afdc8 72ea1a9c 0099eac8 010afdfc 0099eac0 ieapfltr+0x1b6d 010afee4 72ea13da 0099eac0 72ea13b9 00000001 ieapfltr+0x1a9c 010afef8 7c92796d 0099eac0 7c97e460 001fa5b0 ieapfltr+0x13da 010aff40 7c9279ab 72ea13b9 0099eac0 00000000 ntdll!RtlGUIDFromString+0x283 010aff60 7c927a6d 00000000 0099eac0 001fa5b0 ntdll!RtlGUIDFromString+0x2c1 010aff74 7c927a44 7c927991 00000000 0099eac0 ntdll!RtlGUIDFromString+0x383 010affb4 7c80b729 00000000 fffffffd 00000000 ntdll!RtlGUIDFromString+0x35a 010affec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000010af648 5a df 90 7c db 25 80 7c - f4 04 00 00 00 00 00 00 Z..|.%.|........ 00000000010af658 00 00 00 00 00 00 00 00 - 68 9a 1c 00 f8 3a 16 00 ........h....:.. 00000000010af668 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010af678 10 00 00 00 d4 f8 0a 01 - d9 4c 50 77 00 e0 fd 7f .........LPw.... 00000000010af688 00 a0 fd 7f 00 00 00 00 - 7d b2 51 77 5c f6 0a 01 ........}.Qw\... 00000000010af698 00 04 00 00 8c fc 0a 01 - b0 9a 83 7c 08 26 80 7c ...........|.&.| 00000000010af6a8 00 00 00 00 c0 f6 0a 01 - 42 25 80 7c f4 04 00 00 ........B%.|.... 00000000010af6b8 ff ff ff ff 00 00 00 00 - dc f6 0a 01 97 01 51 77 ..............Qw 00000000010af6c8 f4 04 00 00 ff ff ff ff - f8 3a 16 00 c4 f7 0a 01 .........:...... 00000000010af6d8 68 9a 1c 00 fc f6 0a 01 - 50 2e 5f 77 f8 3a 16 00 h.......P._w.:.. 00000000010af6e8 68 9a 1c 00 00 00 00 00 - 00 00 00 00 10 72 1b 00 h............r.. 00000000010af6f8 10 72 1b 00 dc f7 0a 01 - 8a 20 5f 77 c4 f7 0a 01 .r....... _w.... 00000000010af708 d4 f8 0a 01 10 72 1b 00 - c4 f8 0a 01 00 00 00 00 .....r.......... 00000000010af718 11 01 04 80 00 00 80 7c - 00 00 00 00 00 00 00 00 .......|........ 00000000010af728 27 d6 9f 71 00 00 00 00 - 68 16 12 04 c8 05 00 00 '..q....h....... 00000000010af738 00 00 00 00 2c e6 0a 01 - 00 00 00 00 00 00 15 00 ....,........... 00000000010af748 40 f5 0a 01 00 00 ce 03 - 94 f7 0a 01 20 e9 90 7c @........... ..| 00000000010af758 e0 01 91 7c ff ff ff ff - db 01 91 7c d6 14 91 7c ...|.......|...| 00000000010af768 da d1 4e 77 6c 98 5f 77 - a7 d1 4e 77 90 f7 0a 01 ..Nwl._w..Nw.... 00000000010af778 da a1 51 77 a0 9a 1c 00 - d9 4c 50 77 30 9b 1c 00 ..Qw.....LPw0... *----> Zrzut stanu dla wątku o identyfikatorze 0x400 <----* eax=000000c0 ebx=00000000 ecx=011affb0 edx=7c90e514 esi=00000000 edi=00000001 eip=7c90e514 esp=011afcec ebp=011affb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 011affb4 7c80b729 00000000 00000020 fffffffd ntdll!KiFastSystemCallRet 011affec 00000000 7c92a3f3 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000011afcec 4a df 90 7c 1a a5 92 7c - 03 00 00 00 30 fd 1a 01 J..|...|....0... 00000000011afcfc 01 00 00 00 01 00 00 00 - 00 00 00 00 20 00 00 00 ............ ... 00000000011afd0c fd ff ff ff 00 00 00 00 - a0 f9 97 7c a0 f9 97 7c ...........|...| 00000000011afd1c 0c 01 00 00 00 04 00 00 - 03 00 00 00 03 00 00 00 ................ 00000000011afd2c 02 00 00 00 08 01 00 00 - f4 00 00 00 f0 03 00 00 ................ 00000000011afd3c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd4c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd5c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd6c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd7c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd8c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd9c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdbc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdcc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afddc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdec 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdfc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe0c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe1c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x568 <----* eax=03a5b000 ebx=00000000 ecx=03a5c000 edx=00001000 esi=001531f0 edi=00000100 eip=7c90e514 esp=012cfe18 ebp=012cff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 012cff80 77e76caf 012cffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 012cff88 77e76ad1 001531f0 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x61c 012cffa8 77e76c97 0015fb98 012cffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 012cffb4 7c80b729 00160060 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x604 012cffec 00000000 77e76c7d 00160060 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000012cfe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 2c 01 ...|.e.w$...t.,. 00000000012cfe28 00 00 00 00 c8 da f9 03 - 50 ff 2c 01 65 05 dd 81 ........P.,.e... 00000000012cfe38 b8 00 d0 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 00000000012cfe48 f7 6e 01 00 00 00 00 00 - 02 84 e8 81 01 00 00 00 .n.............. 00000000012cfe58 5c 0d dd 81 00 8f e8 81 - 00 07 00 00 e9 12 dd 81 \............... 00000000012cfe68 00 00 00 00 74 ac d1 f3 - 00 00 02 00 6c 00 00 00 ....t.......l... 00000000012cfe78 01 00 00 00 60 00 00 00 - ff ff ff ff 01 08 07 00 ....`........... 00000000012cfe88 03 08 05 00 96 01 00 00 - d6 0b 00 00 60 00 00 00 ............`... 00000000012cfe98 01 00 00 00 71 00 00 00 - 08 00 00 00 00 00 00 00 ....q........... 00000000012cfea8 00 00 00 00 00 00 00 00 - 55 00 6e 00 64 00 6f 00 ........U.n.d.o. 00000000012cfeb8 66 00 65 00 6e 00 20 00 - 4d 00 41 00 58 00 20 00 f.e.n. .M.A.X. . 00000000012cfec8 7c 00 20 00 55 00 6e 00 - 64 00 6f 00 66 00 65 00 |. .U.n.d.o.f.e. 00000000012cfed8 6e 00 20 00 4d 00 41 00 - 58 00 00 00 6c 00 00 00 n. .M.A.X...l... 00000000012cfee8 00 00 00 00 74 00 00 00 - 00 00 00 00 0d 00 00 00 ....t........... 00000000012cfef8 00 00 00 00 74 ac d1 f3 - d0 ac d1 f3 1c ac d1 f3 ....t........... 00000000012cff08 20 9a ed e1 08 00 00 00 - a0 8d ce 81 bc b1 b0 81 ............... 00000000012cff18 24 ac d1 f3 b2 c2 4d 80 - ba c2 4d 80 8c b1 b0 81 $.....M...M..... 00000000012cff28 20 b0 b0 81 80 ff 2c 01 - 85 d1 e7 77 48 ff 2c 01 .....,....wH.,. 00000000012cff38 95 d1 e7 77 e0 10 90 7c - 38 00 16 00 60 00 16 00 ...w...|8...`... 00000000012cff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xa84 <----* eax=001bf000 ebx=013ceef0 ecx=013ce290 edx=00001000 esi=00000000 edi=7ffde000 eip=7c90e514 esp=013ceec8 ebp=013cef64 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 013cef64 7c80a115 00000002 00160660 00000000 ntdll!KiFastSystemCallRet 013cef80 404f2e7c 00000002 00160660 00000000 kernel32!WaitForMultipleObjects+0x18 013cffac 404f8611 013cffec 7c80b729 00161b68 iertutil!Ordinal457+0x421 013cffb4 7c80b729 00161b68 7c910222 7c91019b iertutil!Ordinal430+0x34 013cffec 00000000 404f8604 00161b68 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000013ceec8 4a df 90 7c 90 95 80 7c - 02 00 00 00 f0 ee 3c 01 J..|...|......<. 00000000013ceed8 01 00 00 00 00 00 00 00 - 00 00 00 00 02 00 00 00 ................ 00000000013ceee8 68 1b 16 00 00 1b 16 00 - 38 01 00 00 68 01 00 00 h.......8...h... 00000000013ceef8 00 00 00 00 50 f3 15 00 - 14 ef 3c 01 f7 25 4f 40 ....P.....<..%O@ 00000000013cef08 38 13 e5 00 b0 a4 15 00 - 14 00 00 00 01 00 00 00 8............... 00000000013cef18 00 00 00 00 00 00 00 00 - 10 00 00 00 d8 3b 15 00 .............;.. 00000000013cef28 c0 99 80 7c 60 f5 15 00 - 00 e0 fd 7f 00 70 fd 7f ...|`........p.. 00000000013cef38 00 00 00 00 00 00 00 00 - f0 ee 3c 01 00 00 00 00 ..........<..... 00000000013cef48 02 00 00 00 e4 ee 3c 01 - 80 ef 3c 01 dc ff 3c 01 ......<...<...<. 00000000013cef58 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 80 ef 3c 01 ...|...|......<. 00000000013cef68 15 a1 80 7c 02 00 00 00 - 60 06 16 00 00 00 00 00 ...|....`....... 00000000013cef78 ff ff ff ff 00 00 00 00 - ac ff 3c 01 7c 2e 4f 40 ..........<.|.O@ 00000000013cef88 02 00 00 00 60 06 16 00 - 00 00 00 00 ff ff ff ff ....`........... 00000000013cef98 22 02 91 7c 68 1b 16 00 - 9b 01 91 7c 00 00 00 00 "..|h......|.... 00000000013cefa8 00 00 00 00 60 06 16 00 - d8 05 16 00 00 00 00 01 ....`........... 00000000013cefb8 24 df a6 48 56 e5 e2 11 - 83 6b 00 0b 6a 18 0d 21 $..HV....k..j..! 00000000013cefc8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefd8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefe8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013ceff8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x80c <----* eax=00000000 ebx=014cfe74 ecx=0000340e edx=775f7f58 esi=00000000 edi=7ffde000 eip=7c90e514 esp=014cfe4c ebp=014cfee8 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 014cfee8 7e3695f9 00000001 014cff10 00000000 ntdll!KiFastSystemCallRet 014cff44 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 014cff94 404f86ae 00000001 00000000 0013facc iertutil!Ordinal73+0x103 014cffb4 7c80b729 0015f0f8 0013facc 0013f98c iertutil!Ordinal536+0x59 014cffec 00000000 404f8655 0015f0f8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000014cfe4c 4a df 90 7c 90 95 80 7c - 01 00 00 00 74 fe 4c 01 J..|...|....t.L. 00000000014cfe5c 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000014cfe6c 01 00 00 00 06 00 00 00 - 64 01 00 00 49 50 cd 14 ........d...IP.. 00000000014cfe7c 5d 8f 91 83 47 08 7e e1 - 12 c0 4b d6 5c 18 4f 77 ]...G.~...K.\.Ow 00000000014cfe8c c0 78 5f 77 04 00 00 00 - 14 00 00 00 01 00 00 00 .x_w............ 00000000014cfe9c 00 00 00 00 00 00 00 00 - 10 00 00 00 17 00 00 00 ................ 00000000014cfeac 70 00 00 00 01 00 00 00 - 00 e0 fd 7f 00 60 fd 7f p............`.. 00000000014cfebc b8 b8 00 00 00 00 00 00 - 74 fe 4c 01 00 00 00 00 ........t.L..... 00000000014cfecc 01 00 00 00 68 fe 4c 01 - 00 00 99 00 dc ff 4c 01 ....h.L.......L. 00000000014cfedc b0 9a 83 7c 80 96 80 7c - 00 00 00 00 44 ff 4c 01 ...|...|....D.L. 00000000014cfeec f9 95 36 7e 01 00 00 00 - 10 ff 4c 01 00 00 00 00 ..6~......L..... 00000000014cfefc ff ff ff ff 01 00 00 00 - 00 00 00 00 68 47 99 00 ............hG.. 00000000014cff0c 00 00 00 00 64 01 00 00 - 00 00 99 00 00 00 00 00 ....d........... 00000000014cff1c e3 c2 c1 77 00 00 00 00 - 68 47 99 00 00 00 00 00 ...w....hG...... 00000000014cff2c 54 ff 4c 01 a6 92 4f 40 - 00 00 00 00 01 00 00 00 T.L...O@........ 00000000014cff3c 00 60 fd 7f 64 01 00 00 - 94 ff 4c 01 3e 71 4f 40 .`..d.....L.>qO@ 00000000014cff4c 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 00000000014cff5c 10 ff 4c 01 68 47 99 00 - f8 f0 15 00 00 00 00 00 ..L.hG.......... 00000000014cff6c dc ff 4c 01 94 5c c2 77 - 88 20 c0 77 cd 37 5b d1 ..L..\.w. .w.7[. 00000000014cff7c 9c ff 4c 01 29 80 4f 40 - 0c 08 00 00 00 00 00 00 ..L.).O@........ *----> Zrzut stanu dla wątku o identyfikatorze 0xf04 <----* eax=00000000 ebx=00000000 ecx=00000004 edx=00000000 esi=04aca600 edi=016c451c eip=3f618020 esp=016c44f8 ebp=016c4504 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00040246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\mshtml.dll - funkcja: mshtml!Ordinal103 3f618007 c075ee8b shl byte ptr [ebp-0x12],0x8b 3f61800b 40 inc eax 3f61800c 70e9 jo mshtml!Ordinal103+0xdc837 (3f617ff7) 3f61800e 16 push ss 3f61800f 94 xchg eax,esp 3f618010 e3ff jecxz mshtml!Ordinal103+0xdc851 (3f618011) 3f618012 8bc6 mov eax,esi 3f618014 e8b6ff1f00 call mshtml+0x4e7fcf (3f817fcf) 3f618019 8bf0 mov esi,eax 3f61801b e9b593e3ff jmp mshtml!DllGetClassObject+0x1040d0 (3f4513d5) BŁĄD ->3f618020 395314 cmp [ebx+0x14],edx ds:0023:00000014=???????? 3f618023 743a jz mshtml!Ordinal103+0xdc89f (3f61805f) 3f618025 8b4e38 mov ecx,[esi+0x38] 3f618028 89550c mov [ebp+0xc],edx 3f61802b 395004 cmp [eax+0x4],edx 3f61802e 750d jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618030 395018 cmp [eax+0x18],edx 3f618033 7508 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618035 394838 cmp [eax+0x38],ecx 3f618038 7503 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f61803a 89450c mov [ebp+0xc],eax *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\jscript.dll - ChildEBP RetAddr Args to Child 016c4504 3f45135d 016c45c8 016c4538 016c451c mshtml!Ordinal103+0xdc860 016c453c 3f452257 040ec708 04ac70e8 03ff7274 mshtml!DllGetClassObject+0x104058 016c460c 3f4ae631 040ec708 04ac70e8 00000000 mshtml!DllGetClassObject+0x104f52 016c4640 3f4ac39b 040ec708 04ac70e8 00000000 mshtml!Ordinal104+0xccc1 016c4774 3f4abe87 040ec708 04ac70e8 00000000 mshtml!Ordinal104+0xaa2b 016c47a4 3f4ac898 040ec708 04ac70e8 00000000 mshtml!Ordinal104+0xa517 016c4864 3f4a93b9 00000000 04ac70e8 00000000 mshtml!Ordinal104+0xaf28 016c4984 3f4aab8a 04aa7268 03fccb98 04ac70e8 mshtml!Ordinal104+0x7a49 016c4a58 3f4ab0c0 04aa7268 03fccb98 03ff3ba8 mshtml!Ordinal104+0x921a 016c4af8 3f4a9b96 04aa7268 03fccb98 04ac70e8 mshtml!Ordinal104+0x9750 016c4b4c 3f4ace27 040ec708 04ac70e8 00000000 mshtml!Ordinal104+0x8226 016c4bf0 3f4af5b7 040ec708 04ac70e8 00000000 mshtml!Ordinal104+0xb4b7 016c4cc8 3f4aeaba 040ec708 00000000 00000001 mshtml!Ordinal104+0xdc47 016c4ddc 3f4ae8be 040ec708 00000000 016c4f0c mshtml!Ordinal104+0xd14a 016c4e28 3f4a7c15 040ec708 0410b618 00000000 mshtml!Ordinal104+0xcf4e 016c4f88 3f4af97b 040ec708 04ac70e8 0410b618 mshtml!Ordinal104+0x62a5 016c4ffc 3f4af0c1 04ac70e8 00000000 00000000 mshtml!Ordinal104+0xe00b 016c50b8 3f4b51c0 04ac70e8 00000000 016c5168 mshtml!Ordinal104+0xd751 016c51a0 3f4b66b9 04ac70e8 00000000 00000001 mshtml!Ordinal104+0x13850 016c51d4 3f4b7564 3fffffff 00000000 00000001 mshtml!Ordinal104+0x14d49 016c521c 3f4b7414 04ac70e8 00000000 016c52f8 mshtml!Ordinal104+0x15bf4 016c52fc 3f4b737d 04ac70e8 00000000 00000000 mshtml!Ordinal104+0x15aa4 016c5344 3f4b7198 04ac70e8 016c536c 00000000 mshtml!Ordinal104+0x15a0d 016c5390 3f4b5f74 04ac70e8 00000000 03f9f5a0 mshtml!Ordinal104+0x15828 016c5504 3f4b5e15 04ac70e8 00000000 03f9f5a0 mshtml!Ordinal104+0x14604 016c5570 3f4b5c85 04ac70e8 00000000 03f9f5a0 mshtml!Ordinal104+0x144a5 016c5650 3f4b629e 04ac70e8 016c56f8 016c58a8 mshtml!Ordinal104+0x14315 016c5794 3f4b6b24 04ac70e8 00000000 03f9f5a0 mshtml!Ordinal104+0x1492e 016c58cc 3f4d5540 040ec708 03f9f5a0 00000001 mshtml!Ordinal104+0x151b4 016c58f0 3f4d54ed 040ec708 04aa7468 03f9f5a0 mshtml!Ordinal104+0x33bd0 016c5994 3f4ab7ce 00f9f5a0 002305f0 016c59bb mshtml!Ordinal104+0x33b7d 016c5b04 3f3eb947 016c5cc8 016c5c60 00000000 mshtml!Ordinal104+0x9e5e 016c5c3c 3f3fe4ee 002305f0 00000000 00000000 mshtml!DllGetClassObject+0x9e642 016c5d38 3f5cd0c0 00100000 016c5d90 03a72630 mshtml!DllGetClassObject+0xb11e9 016c5d4c 3f3d8c8d 016c5d90 016c5d90 3f3e1fff mshtml!Ordinal103+0x91900 016c5d6c 3f3d8e57 016c5d90 03a5b190 00000000 mshtml!DllGetClassObject+0x8b988 016c5dc4 3f3d6e02 016c5e58 03a15238 016c5e58 mshtml!DllGetClassObject+0x8bb52 016c5e1c 3f3d6d75 03a1d318 00000000 03a152fc mshtml!DllGetClassObject+0x89afd 016c5e44 3f3e1efa 016c5e58 03a15428 3f3a10a0 mshtml!DllGetClassObject+0x89a70 016c5e8c 3f3b53ca 0000000f 00000000 00000000 mshtml!DllGetClassObject+0x94bf5 016c5eb0 3f5587e5 04148f18 00000001 05407718 mshtml!DllGetClassObject+0x680c5 016c5edc 3f5588d2 04148f18 053ff9d0 00001200 mshtml!Ordinal103+0x1d025 016c5f00 3f512165 04148f18 05407718 053ff9d0 mshtml!Ordinal103+0x1d112 016c5f20 3f41ab53 04148f18 053ff9d0 04b8f2c0 mshtml!Ordinal104+0x707f5 016c5f94 3f426bf1 04148f18 800103f2 00000002 mshtml!DllGetClassObject+0xcd84e 016c5fe4 3f4328c8 04148f18 800103f2 00000002 mshtml!DllGetClassObject+0xd98ec 016c6010 3f41a551 04148f18 800103f2 00000002 mshtml!DllGetClassObject+0xe55c3 016c6060 3fc53a9a 0414ad78 800103f2 00000002 mshtml!DllGetClassObject+0xcd24c 016c60a0 3fc539e6 0099f228 800103f2 00000409 jscript!DllGetClassObject+0xc855 016c60dc 3fc54f26 0099f228 00000409 00000002 jscript!DllGetClassObject+0xc7a1 016c619c 3fc54e80 800103f2 00000002 05407710 jscript!DllGetClassObject+0xdce1 016c61d0 3fc54b96 0099f228 016c62f8 00000002 jscript!DllGetClassObject+0xdc3b 016c6368 3fc513ab 016c6380 016c67a0 016c67a0 jscript!DllGetClassObject+0xd951 016c6450 3fc512e5 016c67a0 00000003 054077c0 jscript!DllGetClassObject+0xa166 016c649c 3fc52a05 016c67a0 00000003 054077c0 jscript!DllGetClassObject+0xa0a0 016c6520 3fc528c5 053b2818 0099f228 00000003 jscript!DllGetClassObject+0xb7c0 016c6554 3fc543fc 0099f228 00000000 00000003 jscript!DllGetClassObject+0xb680 016c6594 3fc524c1 0099f228 016c6604 053b25c8 jscript!DllGetClassObject+0xd1b7 016c65d0 3fc52d6d 0099f228 016c6604 00000003 jscript!DllGetClassObject+0xb27c 016c661c 3fc54235 0099f228 00000003 016c67a0 jscript!DllGetClassObject+0xbb28 016c664c 3fc53114 0099f228 00000000 00000003 jscript!DllGetClassObject+0xcff0 016c67e8 3fc513ab 016c6800 016c6c20 016c6c20 jscript!DllGetClassObject+0xbecf 016c68d0 3fc512e5 016c6c20 00000002 054078c0 jscript!DllGetClassObject+0xa166 016c691c 3fc52a05 016c6c20 00000002 054078c0 jscript!DllGetClassObject+0xa0a0 016c69a0 3fc528c5 053b1a28 0099f228 00000003 jscript!DllGetClassObject+0xb7c0 016c69d4 3fc543fc 0099f228 00000000 00000003 jscript!DllGetClassObject+0xb680 016c6a14 3fc524c1 0099f228 016c6a84 0538f498 jscript!DllGetClassObject+0xd1b7 016c6a50 3fc52d6d 0099f228 016c6a84 00000003 jscript!DllGetClassObject+0xb27c 016c6a9c 3fc54235 0099f228 00000003 016c6c20 jscript!DllGetClassObject+0xbb28 016c6acc 3fc53114 0099f228 00000000 00000003 jscript!DllGetClassObject+0xcff0 016c6c68 3fc513ab 016c6c80 016c70a0 016c70a0 jscript!DllGetClassObject+0xbecf 016c6d50 3fc512e5 016c70a0 00000000 054079a0 jscript!DllGetClassObject+0xa166 016c6d9c 3fc52a05 016c70a0 00000000 054079a0 jscript!DllGetClassObject+0xa0a0 016c6e20 3fc528c5 053ba4f0 0099f228 00000001 jscript!DllGetClassObject+0xb7c0 016c6e54 3fc543fc 0099f228 00000000 00000001 jscript!DllGetClassObject+0xb680 016c6e94 3fc524c1 0099f228 016c6f04 054ed488 jscript!DllGetClassObject+0xd1b7 016c6ed0 3fc52d6d 0099f228 016c6f04 00000001 jscript!DllGetClassObject+0xb27c 016c6f1c 3fc54235 0099f228 00000001 016c70a0 jscript!DllGetClassObject+0xbb28 016c6f4c 3fc53114 0099f228 00000000 00000001 jscript!DllGetClassObject+0xcff0 016c70e8 3fc513ab 016c7100 016c7688 016c7688 jscript!DllGetClassObject+0xbecf 016c71d0 3fc512e5 016c7688 00000002 05407a50 jscript!DllGetClassObject+0xa166 016c721c 3fc52a05 016c7688 00000002 05407a50 jscript!DllGetClassObject+0xa0a0 016c72a0 3fc528c5 05539b38 0099f228 00000001 jscript!DllGetClassObject+0xb7c0 016c72d4 3fc73b5f 0099f228 00000000 00000001 jscript!DllGetClassObject+0xb680 016c731c 3fc54327 0099f228 016c73c0 016c7688 jscript!DllCanUnloadNow+0x103df 016c7384 3fc52a05 016c7688 00000003 05407a50 jscript!DllGetClassObject+0xd0e2 016c7408 3fc528c5 0541be28 0099f228 00000003 jscript!DllGetClassObject+0xb7c0 016c743c 3fc543fc 0099f228 00000000 00000003 jscript!DllGetClassObject+0xb680 016c747c 3fc524c1 0099f228 016c74ec 05539b38 jscript!DllGetClassObject+0xd1b7 016c74b8 3fc52d6d 0099f228 016c74ec 00000003 jscript!DllGetClassObject+0xb27c 016c7504 3fc54235 0099f228 00000003 016c7688 jscript!DllGetClassObject+0xbb28 016c7534 3fc53114 0099f228 00000000 00000003 jscript!DllGetClassObject+0xcff0 016c76d0 3fc513ab 016c76e8 016c7b08 016c7b08 jscript!DllGetClassObject+0xbecf 016c77b8 3fc512e5 016c7b08 00000003 05407b40 jscript!DllGetClassObject+0xa166 016c7804 3fc52a05 016c7b08 00000003 05407b40 jscript!DllGetClassObject+0xa0a0 016c7888 3fc528c5 053c4008 0099f228 00000003 jscript!DllGetClassObject+0xb7c0 016c78bc 3fc543fc 0099f228 00000000 00000003 jscript!DllGetClassObject+0xb680 016c78fc 3fc524c1 0099f228 016c796c 0538f498 jscript!DllGetClassObject+0xd1b7 016c7938 3fc52d6d 0099f228 016c796c 00000003 jscript!DllGetClassObject+0xb27c 016c7984 3fc54235 0099f228 00000003 016c7b08 jscript!DllGetClassObject+0xbb28 *----> Zrzut stosu <----* 00000000016c44f8 c8 45 6c 01 08 c7 0e 04 - 00 00 00 00 3c 45 6c 01 .El......... Zrzut stanu dla wątku o identyfikatorze 0x81c <----* eax=77e76c7d ebx=00000000 ecx=77dd0b6a edx=00000048 esi=001638c8 edi=00000100 eip=7c90e514 esp=01aafe18 ebp=01aaff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01aaff80 77e76caf 01aaffa8 77e76ad1 001638c8 ntdll!KiFastSystemCallRet 01aaff88 77e76ad1 001638c8 00163640 00000000 RPCRT4!I_RpcBCacheFree+0x61c 01aaffa8 77e76c97 0015fb98 01aaffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01aaffb4 7c80b729 001639b0 00163640 00000000 RPCRT4!I_RpcBCacheFree+0x604 01aaffec 00000000 77e76c7d 001639b0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001aafe18 aa da 90 7c e3 65 e7 77 - 80 01 00 00 74 ff aa 01 ...|.e.w....t... 0000000001aafe28 00 00 00 00 d8 7a 18 00 - 50 ff aa 01 00 00 00 00 .....z..P....... 0000000001aafe38 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe48 00 00 00 00 00 00 00 00 - 02 00 00 00 00 00 00 00 ................ 0000000001aafe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe68 00 00 00 00 04 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe78 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe88 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe98 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafea8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafeb8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafec8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafed8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafee8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafef8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aaff08 00 00 00 00 00 00 00 00 - 00 00 00 00 24 5b ca 81 ............$[.. 0000000001aaff18 24 fc 6d f4 b2 c2 4d 80 - ba c2 4d 80 f4 5a ca 81 $.m...M...M..Z.. 0000000001aaff28 88 59 ca 81 80 ff aa 01 - 85 d1 e7 77 48 ff aa 01 .Y.........wH... 0000000001aaff38 95 d1 e7 77 e0 10 90 7c - 40 26 16 00 b0 39 16 00 ...w...|@&...9.. 0000000001aaff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xb0c <----* eax=774ee4ef ebx=00007530 ecx=001660e8 edx=7c8855f8 esi=00000000 edi=01baff50 eip=7c90e514 esp=01baff20 ebp=01baff78 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01baff78 7c802455 0000ea60 00000000 01baffb4 ntdll!KiFastSystemCallRet 01baff88 774ee3e3 0000ea60 00166368 774ee4a2 kernel32!Sleep+0xf 01baffb4 7c80b729 00166368 7465536c 73655248 ole32!StringFromGUID2+0x51d 01baffec 00000000 774ee4ef 00166368 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001baff20 1a d2 90 7c f1 23 80 7c - 00 00 00 00 50 ff ba 01 ...|.#.|....P... 0000000001baff30 50 25 80 7c f8 7d 5f 77 - 30 75 00 00 14 00 00 00 P%.|.}_w0u...... 0000000001baff40 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................ 0000000001baff50 00 ba 3c dc ff ff ff ff - 0c 00 00 00 50 ff ba 01 ..<.........P... 0000000001baff60 30 ff ba 01 af ac 80 7c - dc ff ba 01 b0 9a 83 7c 0......|.......| 0000000001baff70 60 24 80 7c 00 00 00 00 - 88 ff ba 01 55 24 80 7c `$.|........U$.| 0000000001baff80 60 ea 00 00 00 00 00 00 - b4 ff ba 01 e3 e3 4e 77 `.............Nw 0000000001baff90 60 ea 00 00 68 63 16 00 - a2 e4 4e 77 00 00 00 00 `...hc....Nw.... 0000000001baffa0 6c 53 65 74 68 63 16 00 - 00 00 4d 77 0a e5 4e 77 lSethc....Mw..Nw 0000000001baffb0 48 52 65 73 ec ff ba 01 - 29 b7 80 7c 68 63 16 00 HRes....)..|hc.. 0000000001baffc0 6c 53 65 74 48 52 65 73 - 68 63 16 00 00 f0 fa 7f lSetHReshc...... 0000000001baffd0 00 46 3c 82 c0 ff ba 01 - 28 2c f5 81 ff ff ff ff .F<.....(,...... 0000000001baffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000001bafff0 00 00 00 00 ef e4 4e 77 - 68 63 16 00 00 00 00 00 ......Nwhc...... 0000000001bb0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x610 <----* eax=77e76c7d ebx=00000000 ecx=00000000 edx=003a2278 esi=001531f0 edi=00000100 eip=7c90e514 esp=01cafe18 ebp=01caff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01caff80 77e76caf 01caffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 01caff88 77e76ad1 001531f0 001502e0 003a0288 RPCRT4!I_RpcBCacheFree+0x61c 01caffa8 77e76c97 0015fb98 01caffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01caffb4 7c80b729 00175b50 001502e0 003a0288 RPCRT4!I_RpcBCacheFree+0x604 01caffec 00000000 77e76c7d 00175b50 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001cafe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff ca 01 ...|.e.w$...t... 0000000001cafe28 00 00 00 00 f8 dc f9 03 - 50 ff ca 01 00 00 00 00 ........P....... 0000000001cafe38 9c 00 b4 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 0000000001cafe48 f3 6e 01 00 00 00 00 00 - 02 00 00 00 01 00 00 00 .n.............. 0000000001cafe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001cafe68 00 00 00 00 00 00 00 00 - 00 00 02 00 50 00 00 00 ............P... 0000000001cafe78 01 00 00 00 44 00 00 00 - ff ff ff ff 03 08 06 00 ....D........... 0000000001cafe88 02 08 0b 00 00 00 00 00 - d3 0b 00 00 06 00 00 00 ................ 0000000001cafe98 28 ff ff ff 0a 00 00 80 - 00 00 00 00 78 10 01 00 (...........x... 0000000001cafea8 00 00 00 00 00 00 00 00 - 01 00 ff ff 10 00 00 00 ................ 0000000001cafeb8 0b 00 18 00 d0 33 18 00 - 00 00 00 80 20 00 00 00 .....3...... ... 0000000001cafec8 50 00 00 00 00 00 00 00 - 6e 00 64 00 6f 00 66 00 P.......n.d.o.f. 0000000001cafed8 65 00 6e 00 2e 00 70 00 - 6c 00 00 00 1f 00 6e 00 e.n...p.l.....n. 0000000001cafee8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 0000000001cafef8 02 04 00 00 84 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001caff08 00 00 00 00 00 00 00 00 - 00 00 00 00 3c 2f fc 81 ............ Zrzut stanu dla wątku o identyfikatorze 0x920 <----* eax=77e76c7d ebx=00000000 ecx=003a3b30 edx=00000002 esi=001531f0 edi=00000100 eip=7c90e514 esp=0217fe18 ebp=0217ff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0217ff80 77e76caf 0217ffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 0217ff88 77e76ad1 001531f0 00000000 00000007 RPCRT4!I_RpcBCacheFree+0x61c 0217ffa8 77e76c97 0015fb98 0217ffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 0217ffb4 7c80b729 0017cf28 00000000 00000007 RPCRT4!I_RpcBCacheFree+0x604 0217ffec 00000000 77e76c7d 0017cf28 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000217fe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 17 02 ...|.e.w$...t... 000000000217fe28 00 00 00 00 90 1c 16 00 - 50 ff 17 02 00 00 00 00 ........P....... 000000000217fe38 84 00 9c 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 000000000217fe48 f8 6e 01 00 00 00 00 00 - 02 00 00 00 01 00 00 00 .n.............. 000000000217fe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000217fe68 00 00 00 00 00 00 00 00 - 00 00 02 00 38 00 00 00 ............8... 000000000217fe78 01 00 00 00 2c 00 00 00 - ff ff ff ff 01 08 07 00 ....,........... 000000000217fe88 03 08 05 00 96 01 00 00 - d6 0b 00 00 2c 00 00 00 ............,... 000000000217fe98 01 00 00 00 d2 07 00 00 - 03 00 6a 40 08 f6 1b 00 ..........j@.... 000000000217fea8 04 00 00 00 3c d5 66 40 - 38 00 00 00 00 00 00 00 ....<.f@8....... 000000000217feb8 0b 00 00 00 c0 2c 14 04 - 00 00 66 40 7c c6 6c 01 .....,....f@|.l. 000000000217fec8 44 00 00 00 ff ff ff ff - 03 08 06 00 02 08 0b 00 D............... 000000000217fed8 00 00 00 00 d3 0b 00 00 - 06 00 00 00 28 ff ff ff ............(... 000000000217fee8 0a 00 00 80 00 00 00 00 - 3a 10 01 00 00 00 00 00 ........:....... 000000000217fef8 00 00 00 00 01 00 ff ff - 10 00 00 00 03 00 00 00 ................ 000000000217ff08 c0 2c 14 04 00 00 00 00 - 7c c6 6c 01 9c 00 00 00 .,......|.l..... 000000000217ff18 00 00 00 00 b2 c2 4d 80 - ba c2 4d 80 8c 94 b0 81 ......M...M..... 000000000217ff28 20 93 b0 81 80 ff 17 02 - 85 d1 e7 77 48 ff 17 02 ..........wH... 000000000217ff38 95 d1 e7 77 e0 10 90 7c - 18 5a 17 00 28 cf 17 00 ...w...|.Z..(... 000000000217ff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0x930 <----* eax=77a7965d ebx=0286ff18 ecx=ffffffff edx=7c80e47c esi=00000000 edi=7ffde000 eip=7c90e514 esp=0286fef0 ebp=0286ff8c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\CRYPT32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0286ff8c 77a79688 00000001 001a22c0 00000000 ntdll!KiFastSystemCallRet 0286ffb4 7c80b729 00000001 00150000 00000000 CRYPT32!I_CryptRegisterSmartCardStore+0x2767 0286ffec 00000000 77a7965d 001a22b8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000286fef0 4a df 90 7c 90 95 80 7c - 01 00 00 00 18 ff 86 02 J..|...|........ 000000000286ff00 01 00 00 00 00 00 00 00 - 4c ff 86 02 00 00 00 00 ........L....... 000000000286ff10 b8 22 1a 00 c0 22 1a 00 - f4 03 00 00 b2 c2 4d 80 ."..."........M. 000000000286ff20 ba c2 4d 80 2c 4b fc 81 - c0 49 fc 81 f4 49 fc 81 ..M.,K...I...I.. 000000000286ff30 30 ac d1 f3 4a 8d 57 80 - 14 00 00 00 01 00 00 00 0...J.W......... 000000000286ff40 00 00 00 00 00 00 00 00 - 10 00 00 00 80 2e 0f f7 ................ 000000000286ff50 ff ff ff ff 00 00 00 00 - 00 e0 fd 7f 00 a0 fa 7f ................ 000000000286ff60 e8 13 4f 80 4c ff 86 02 - 18 ff 86 02 c8 52 4e 80 ..O.L........RN. 000000000286ff70 01 00 00 00 0c ff 86 02 - 50 ad d1 f3 dc ff 86 02 ........P....... 000000000286ff80 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 b4 ff 86 02 ...|...|........ 000000000286ff90 88 96 a7 77 01 00 00 00 - c0 22 1a 00 00 00 00 00 ...w....."...... 000000000286ffa0 98 3a 00 00 00 00 00 00 - 00 00 15 00 00 00 00 00 .:.............. 000000000286ffb0 b8 22 1a 00 ec ff 86 02 - 29 b7 80 7c 01 00 00 00 ."......)..|.... 000000000286ffc0 00 00 15 00 00 00 00 00 - b8 22 1a 00 00 a0 fa 7f ........."...... 000000000286ffd0 00 46 3c 82 c0 ff 86 02 - 40 42 f2 81 ff ff ff ff .F<.....@B...... 000000000286ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 000000000286fff0 00 00 00 00 5d 96 a7 77 - b8 22 1a 00 00 00 00 00 ....]..w."...... 0000000002870000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002870010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002870020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xae8 <----* eax=001400e4 ebx=0019b5c0 ecx=001400d4 edx=00000001 esi=7fffffff edi=ffffffff eip=7c90e514 esp=0296fad4 ebp=0296fb10 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\System32\mswsock.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ws2_32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WININET.dll - ChildEBP RetAddr Args to Child 0296fb10 719f5fa7 000004d8 000004dc 00000000 ntdll!KiFastSystemCallRet 0296fc04 71a5314f 00000001 0296fe84 0296fc7c mswsock+0x5fa7 0296fc54 3fcfe9f9 00000001 0296fe84 0296fc7c ws2_32!select+0xa7 0296ffac 3fd06043 0296ffec 7c80b729 0019afe0 WININET!Ordinal346+0x6ae 0296ffb4 7c80b729 0019afe0 00000000 00000000 WININET!InternetSetStatusCallbackA+0x1e3 0296ffec 00000000 3fd06036 0019afe0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000296fad4 5a df 90 7c 2b 40 9f 71 - d8 04 00 00 01 00 00 00 Z..|+@.q........ 000000000296fae4 fc fa 96 02 b4 fb 96 02 - 84 fe 96 02 a4 fb 96 02 ................ 000000000296faf4 d1 5d c4 65 65 79 ce 01 - ff ff ff ff ff ff ff 7f .].eey.......... 000000000296fb04 c0 b5 19 00 00 00 00 00 - 00 00 00 00 04 fc 96 02 ................ 000000000296fb14 a7 5f 9f 71 d8 04 00 00 - dc 04 00 00 00 00 00 00 ._.q............ 000000000296fb24 04 00 00 00 80 fd 96 02 - f8 b6 19 00 7c fc 96 02 ............|... 000000000296fb34 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000296fb44 01 00 00 00 80 0f 05 fd - ff ff ff ff dc fb 96 02 ................ 000000000296fb54 01 00 00 00 00 00 00 00 - a0 00 00 00 00 00 00 00 ................ 000000000296fb64 00 00 00 00 03 01 00 00 - 00 00 00 00 d8 04 00 00 ................ 000000000296fb74 38 fc 96 02 00 00 00 00 - 00 00 00 00 1c 00 00 00 8............... 000000000296fb84 c0 b5 19 00 c0 fb 96 02 - 7c fc 96 02 80 fd 96 02 ........|....... 000000000296fb94 00 00 00 00 a4 fb 96 02 - 00 00 00 00 00 00 00 00 ................ 000000000296fba4 80 0f 05 fd ff ff ff ff - 01 00 00 00 00 fb 96 02 ................ 000000000296fbb4 dc 04 00 00 19 00 00 00 - 00 fc 96 02 1f 2e a5 71 ...............q 000000000296fbc4 80 19 1c 00 ec fb 96 02 - 68 96 a5 71 33 27 00 00 ........h..q3'.. 000000000296fbd4 f0 11 1c 00 01 00 00 00 - 01 00 00 00 1f fc 96 02 ................ 000000000296fbe4 80 1a 1b 00 66 cf 00 00 - 28 fb 96 02 0c 15 a4 71 ....f...(......q 000000000296fbf4 44 fc 96 02 28 72 a1 71 - 60 2e 9f 71 ff ff ff ff D...(r.q`..q.... 000000000296fc04 54 fc 96 02 4f 31 a5 71 - 01 00 00 00 84 fe 96 02 T...O1.q........ *----> Zrzut stanu dla wątku o identyfikatorze 0xb98 <----* eax=04aa51f0 ebx=00000000 ecx=00000079 edx=04aa51f0 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=02b1ff70 ebp=02b1ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02b1ffb4 7c80b729 00000000 775f7068 00160be8 ntdll!KiFastSystemCallRet 02b1ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002b1ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff b1 02 J..|...|........ 0000000002b1ff80 b0 ff b1 02 98 ff b1 02 - a0 ff b1 02 68 70 5f 77 ............hp_w 0000000002b1ff90 e8 0b 16 00 00 00 00 00 - 00 00 00 00 00 a4 1f 00 ................ 0000000002b1ffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 0000000002b1ffb0 60 68 aa 04 ec ff b1 02 - 29 b7 80 7c 00 00 00 00 `h......)..|.... 0000000002b1ffc0 68 70 5f 77 e8 0b 16 00 - 00 00 00 00 00 80 fa 7f hp_w............ 0000000002b1ffd0 00 46 3c 82 c0 ff b1 02 - 40 a3 f8 81 ff ff ff ff .F<.....@....... 0000000002b1ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000002b1fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000002b20000 09 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b20090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002b200a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xb9c <----* eax=77e76c7d ebx=00000000 ecx=003a3a10 edx=00000000 esi=001638c8 edi=001bfb88 eip=7c90e514 esp=02c2fe18 ebp=02c2ff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02c2ff80 77e76caf 02c2ffa8 77e76ad1 001638c8 ntdll!KiFastSystemCallRet 02c2ff88 77e76ad1 001638c8 00000000 00000000 RPCRT4!I_RpcBCacheFree+0x61c 02c2ffa8 77e76c97 0015fb98 02c2ffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 02c2ffb4 7c80b729 001bf3b8 00000000 00000000 RPCRT4!I_RpcBCacheFree+0x604 02c2ffec 00000000 77e76c7d 001bf3b8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002c2fe18 aa da 90 7c e3 65 e7 77 - 80 01 00 00 74 ff c2 02 ...|.e.w....t... 0000000002c2fe28 00 00 00 00 88 fb 1b 00 - 50 ff c2 02 30 47 ef 81 ........P...0G.. 0000000002c2fe38 4c eb d2 f3 a1 7d 56 80 - 98 b7 05 e1 00 05 00 00 L....}V......... 0000000002c2fe48 ff 03 1f 00 98 b7 05 e1 - 98 b7 05 e1 00 05 00 00 ................ 0000000002c2fe58 00 00 00 00 a4 b7 05 e1 - 00 fa 13 e1 19 47 ef 81 .............G.. 0000000002c2fe68 68 eb d2 f3 c8 7e 56 80 - 98 b7 05 e1 98 b7 05 e1 h....~V......... 0000000002c2fe78 e8 44 d3 81 00 00 00 00 - 02 00 00 00 6c eb d2 f3 .D..........l... 0000000002c2fe88 14 4b 57 80 60 ec d2 f3 - f4 4a 57 80 68 44 d3 81 .KW.`....JW.hD.. 0000000002c2fe98 00 00 00 00 ff ff ff ff - 40 d9 1b 00 00 00 00 00 ........@....... 0000000002c2fea8 ac b7 05 e1 f0 f9 13 e1 - 81 af 2f 82 b4 eb d2 f3 ........../..... 0000000002c2feb8 c8 7e 56 80 98 b7 05 e1 - f0 f9 13 e1 f0 7b 3c 82 .~V..........{<. 0000000002c2fec8 03 00 1f 00 80 af 2f 82 - f8 04 00 00 fc eb d2 f3 ....../......... 0000000002c2fed8 75 ff 56 80 98 b7 05 e1 - 00 00 00 00 d8 03 30 82 u.V...........0. 0000000002c2fee8 00 00 00 00 00 00 00 00 - fc eb d2 f3 68 72 4e 80 ............hrN. 0000000002c2fef8 fd 06 00 00 62 0a 00 00 - 21 12 f3 76 01 00 00 00 ....b...!..v.... 0000000002c2ff08 80 af 2f 82 03 00 1f 00 - 80 af 2f 82 74 23 b1 81 ../......./.t#.. 0000000002c2ff18 24 ec d2 f3 b2 c2 4d 80 - ba c2 4d 80 44 23 b1 81 $.....M...M.D#.. 0000000002c2ff28 d8 21 b1 81 80 ff c2 02 - 85 d1 e7 77 48 ff c2 02 .!.........wH... 0000000002c2ff38 95 d1 e7 77 e0 10 90 7c - a0 e1 1b 00 b8 f3 1b 00 ...w...|........ 0000000002c2ff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xba4 <----* eax=001c4098 ebx=c0000000 ecx=00000004 edx=001c8020 esi=00000000 edi=71a2793c eip=7c90e514 esp=0333ff7c ebp=0333ffb4 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0333ffb4 7c80b729 719fd65f 00000002 00000000 ntdll!KiFastSystemCallRet 0333ffec 00000000 719fd2c6 001d0070 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000333ff7c 4a da 90 7c 20 d3 9f 71 - 94 05 00 00 bc ff 33 03 J..| ..q......3. 000000000333ff8c b0 ff 33 03 a4 ff 33 03 - 68 d3 9f 71 02 00 00 00 ..3...3.h..q.... 000000000333ff9c 00 00 00 00 70 00 1d 00 - 00 00 00 00 00 00 00 00 ....p........... 000000000333ffac 00 00 9f 71 98 6d a8 04 - ec ff 33 03 29 b7 80 7c ...q.m....3.)..| 000000000333ffbc 5f d6 9f 71 02 00 00 00 - 00 00 00 00 70 00 1d 00 _..q........p... 000000000333ffcc 00 60 fa 7f 00 46 3c 82 - c0 ff 33 03 60 58 c0 81 .`...F<...3.`X.. 000000000333ffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 000000000333ffec 00 00 00 00 00 00 00 00 - c6 d2 9f 71 70 00 1d 00 ...........qp... 000000000333fffc 00 00 00 00 08 00 00 00 - 00 01 00 01 ee ff ee ff ................ 000000000334000c 00 00 00 00 00 00 22 03 - 00 70 0b 00 00 00 34 03 ......"..p....4. 000000000334001c 00 01 00 00 40 00 34 03 - 00 00 44 03 b8 00 00 00 ....@.4...D..... 000000000334002c 02 00 00 00 a8 05 22 03 - 00 00 00 00 28 10 38 03 ......".....(.8. 000000000334003c 00 00 00 00 71 00 08 00 - 37 01 08 01 00 00 00 00 ....q...7....... 000000000334004c f0 21 1e 00 e4 a5 18 03 - 6e 3d 27 31 00 00 00 00 .!......n='1.... 000000000334005c 00 00 00 00 00 00 00 00 - b8 21 1e 00 c8 f0 1d 00 .........!...... 000000000334006c e4 a5 18 03 e4 a5 18 03 - 69 66 65 73 00 00 00 00 ........ifes.... 000000000334007c 00 00 00 00 00 00 00 00 - 18 f1 1d 00 40 f1 1d 00 ............@... 000000000334008c e4 a5 18 03 e4 a5 18 03 - 6c 6e 73 3d 00 00 00 00 ........lns=.... 000000000334009c 00 00 00 00 00 00 00 00 - 90 f1 1d 00 b8 f1 1d 00 ................ 00000000033400ac e4 a5 18 03 e4 a5 18 03 - 61 2f 63 6f 00 00 00 00 ........a/co.... *----> Zrzut stanu dla wątku o identyfikatorze 0x5f0 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=0334b938 edi=00000024 eip=7c90e514 esp=024bfef4 ebp=024bff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 024bff20 02e5c37b 0000063c 024bff48 024bff4c ntdll!KiFastSystemCallRet 024bff58 02e44eb7 00000000 02e5b4dd 0334ce18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 024bffac 02e7ecbd 7c900000 7c80b729 032249c8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 024bffec 00000000 02e7ec3e 032249c8 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000024bfef4 4a da 90 7c e6 a7 80 7c - 3c 06 00 00 4c ff 4b 02 J..|...|<...L.K. 00000000024bff04 38 ff 4b 02 18 ff 4b 02 - 00 00 00 00 38 b9 34 03 8.K...K.....8.4. 00000000024bff14 58 ff 4b 02 44 b4 e5 02 - 31 00 00 00 58 ff 4b 02 X.K.D...1...X.K. 00000000024bff24 7b c3 e5 02 3c 06 00 00 - 48 ff 4b 02 4c ff 4b 02 {...<...H.K.L.K. 00000000024bff34 54 ff 4b 02 ff ff ff ff - 00 00 00 00 18 ce 34 03 T.K...........4. 00000000024bff44 c8 49 22 03 00 00 00 00 - 00 00 00 00 04 00 00 00 .I"............. 00000000024bff54 00 00 00 00 ac ff 4b 02 - b7 4e e4 02 00 00 00 00 ......K..N...... 00000000024bff64 dd b4 e5 02 18 ce 34 03 - 04 38 d4 02 e0 d7 6c 01 ......4..8....l. 00000000024bff74 00 00 90 7c 18 ec e7 02 - 18 ce 34 03 02 c2 cb d3 ...|......4..... 00000000024bff84 e0 d7 6c 01 00 00 90 7c - c8 49 22 03 80 ff 4b 02 ..l....|.I"...K. 00000000024bff94 80 ff 4b 02 dc ff 4b 02 - dc ff 4b 02 70 e7 e7 02 ..K...K...K.p... 00000000024bffa4 5e b1 7d d3 00 00 00 00 - ec ff 4b 02 bd ec e7 02 ^.}.......K..... 00000000024bffb4 00 00 90 7c 29 b7 80 7c - c8 49 22 03 e0 d7 6c 01 ...|)..|.I"...l. 00000000024bffc4 00 00 90 7c c8 49 22 03 - 00 b0 fa 7f 00 46 3c 82 ...|.I"......F<. 00000000024bffd4 c0 ff 4b 02 48 e5 b8 81 - ff ff ff ff b0 9a 83 7c ..K.H..........| 00000000024bffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 00000000024bfff4 3e ec e7 02 c8 49 22 03 - 00 00 00 00 4d 5a 90 00 >....I".....MZ.. 00000000024c0004 03 00 00 00 04 00 00 00 - ff ff 00 00 b8 00 00 00 ................ 00000000024c0014 00 00 00 00 40 00 00 00 - 00 00 00 00 00 00 00 00 ....@........... 00000000024c0024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xbac <----* eax=00000000 ebx=037cfea8 ecx=00000000 edx=00000000 esi=00000000 edi=7ffde000 eip=7c90e514 esp=037cfe80 ebp=037cff1c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 037cff1c 7c80a115 00000002 037cff58 00000000 ntdll!KiFastSystemCallRet 037cff38 02dce03b 00000002 037cff58 00000000 kernel32!WaitForMultipleObjects+0x18 037cff68 02d43804 016cd8b4 7c900000 02e7ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x87d9c 037cffac 02e7ecbd 7c900000 7c80b729 0334d200 GoogleToolbarDynamic_32_B31C6BD+0x3804 037cffec 00000000 02e7ec3e 0334d200 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000037cfe80 4a df 90 7c 90 95 80 7c - 02 00 00 00 a8 fe 7c 03 J..|...|......|. 00000000037cfe90 01 00 00 00 00 00 00 00 - 00 00 00 00 40 d1 34 03 ............@.4. 00000000037cfea0 40 d1 34 03 fd a0 80 7c - 60 06 00 00 58 06 00 00 @.4....|`...X... 00000000037cfeb0 17 00 00 00 01 00 00 00 - 8c d5 4e 77 1c 15 a6 03 ..........Nw.... 00000000037cfec0 d4 fe 7c 03 ac d6 4e 77 - 14 00 00 00 01 00 00 00 ..|...Nw........ 00000000037cfed0 00 00 00 00 00 00 00 00 - 10 00 00 00 f9 1a 4f 77 ..............Ow 00000000037cfee0 6c 4c a6 03 60 ff 7c 03 - 00 e0 fd 7f 00 50 fa 7f lL..`.|......P.. 00000000037cfef0 dc b1 15 00 00 00 00 00 - a8 fe 7c 03 c5 16 4f 77 ..........|...Ow 00000000037cff00 02 00 00 00 9c fe 7c 03 - 3c 78 5f 77 9c ff 7c 03 ......|. Zrzut stanu dla wątku o identyfikatorze 0xfac <----* eax=4ebd7456 ebx=03bdfe7c ecx=00000000 edx=4ebd9079 esi=00000000 edi=7ffde000 eip=7c90e514 esp=03bdfe54 ebp=03bdfef0 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll - ChildEBP RetAddr Args to Child 03bdfef0 7e3695f9 00000002 03bdff18 00000000 ntdll!KiFastSystemCallRet 03bdff4c 7e3696a8 00000001 03bdffac ffffffff USER32!GetLastInputInfo+0x105 03bdff68 4ebd74b2 00000001 03bdffac 00000000 USER32!MsgWaitForMultipleObjects+0x1f 03bdffb4 7c80b729 00000000 7c80a174 00000011 gdiplus!GdipGetVisibleClipBoundsI+0xad4 03bdffec 00000000 4ebd7456 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000003bdfe54 4a df 90 7c 90 95 80 7c - 02 00 00 00 7c fe bd 03 J..|...|....|... 0000000003bdfe64 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003bdfe74 02 00 00 00 00 00 00 00 - 88 06 00 00 90 06 00 00 ................ 0000000003bdfe84 cc 99 99 00 cc 99 cc 00 - cc 99 ff 00 cc cc 00 00 ................ 0000000003bdfe94 cc cc 33 00 cc cc 66 00 - 14 00 00 00 01 00 00 00 ..3...f......... 0000000003bdfea4 00 00 00 00 00 00 00 00 - 10 00 00 00 cc ff 66 00 ..............f. 0000000003bdfeb4 cc ff 99 00 cc ff cc 00 - 00 e0 fd 7f 00 20 fa 7f ............. .. 0000000003bdfec4 ff 00 33 00 00 00 00 00 - 7c fe bd 03 ff 00 cc 00 ..3.....|....... 0000000003bdfed4 02 00 00 00 70 fe bd 03 - ff 33 33 00 dc ff bd 03 ....p....33..... 0000000003bdfee4 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 4c ff bd 03 ...|...|....L... 0000000003bdfef4 f9 95 36 7e 02 00 00 00 - 18 ff bd 03 00 00 00 00 ..6~............ 0000000003bdff04 ff ff ff ff 00 00 00 00 - 40 a3 37 7e a4 72 d4 4e ........@.7~.r.N 0000000003bdff14 00 00 00 00 88 06 00 00 - 90 06 00 00 ff cc 00 00 ................ 0000000003bdff24 ff cc 33 00 ff cc 66 00 - ff cc 99 00 ff cc cc 00 ..3...f......... 0000000003bdff34 ff cc ff 00 ff ff 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003bdff44 00 20 fa 7f 90 06 00 00 - 68 ff bd 03 a8 96 36 7e . ......h.....6~ 0000000003bdff54 01 00 00 00 ac ff bd 03 - ff ff ff ff ff 04 00 00 ................ 0000000003bdff64 18 ff bd 03 b4 ff bd 03 - b2 74 bd 4e 01 00 00 00 .........t.N.... 0000000003bdff74 ac ff bd 03 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 0000000003bdff84 74 a1 80 7c 11 00 00 00 - 00 00 00 00 39 ac 4f 80 t..|........9.O. *----> Zrzut stanu dla wątku o identyfikatorze 0xbd8 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=0334b938 edi=00000000 eip=7c90e514 esp=0238fef4 ebp=0238ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0238ff20 02e5c37b 0000063c 0238ff48 0238ff4c ntdll!KiFastSystemCallRet 0238ff58 02e44eb7 00000001 02e5b4dd 0334ce40 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0238ffac 02e7ecbd 7c900000 7c80b729 032249c8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0238ffec 00000000 02e7ec3e 032249c8 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000238fef4 4a da 90 7c e6 a7 80 7c - 3c 06 00 00 4c ff 38 02 J..|...|<...L.8. 000000000238ff04 38 ff 38 02 18 ff 38 02 - 00 00 00 00 38 b9 34 03 8.8...8.....8.4. 000000000238ff14 58 ff 38 02 44 b4 e5 02 - 31 00 00 00 58 ff 38 02 X.8.D...1...X.8. 000000000238ff24 7b c3 e5 02 3c 06 00 00 - 48 ff 38 02 4c ff 38 02 {...<...H.8.L.8. 000000000238ff34 54 ff 38 02 ff ff ff ff - 00 00 00 00 40 ce 34 03 T.8.........@.4. 000000000238ff44 c8 49 22 03 00 00 00 00 - 00 00 00 00 b6 38 d4 02 .I"..........8.. 000000000238ff54 00 00 00 00 ac ff 38 02 - b7 4e e4 02 01 00 00 00 ......8..N...... 000000000238ff64 dd b4 e5 02 40 ce 34 03 - 04 38 d4 02 f0 fc 4b 02 ....@.4..8....K. 000000000238ff74 00 00 90 7c 18 ec e7 02 - 40 ce 34 03 02 c2 b8 d3 ...|....@.4..... 000000000238ff84 f0 fc 4b 02 00 00 90 7c - c8 49 22 03 80 ff 38 02 ..K....|.I"...8. 000000000238ff94 80 ff 38 02 dc ff 38 02 - dc ff 38 02 70 e7 e7 02 ..8...8...8.p... 000000000238ffa4 5e b1 7d d3 00 00 00 00 - ec ff 38 02 bd ec e7 02 ^.}.......8..... 000000000238ffb4 00 00 90 7c 29 b7 80 7c - c8 49 22 03 f0 fc 4b 02 ...|)..|.I"...K. 000000000238ffc4 00 00 90 7c c8 49 22 03 - 00 c0 fa 7f 00 46 3c 82 ...|.I"......F<. 000000000238ffd4 c0 ff 38 02 48 e5 b8 81 - ff ff ff ff b0 9a 83 7c ..8.H..........| 000000000238ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000238fff4 3e ec e7 02 c8 49 22 03 - 00 00 00 00 4d 5a 90 00 >....I".....MZ.. 0000000002390004 03 00 00 00 04 00 00 00 - ff ff 00 00 b8 00 00 00 ................ 0000000002390014 00 00 00 00 40 00 00 00 - 00 00 00 00 00 00 00 00 ....@........... 0000000002390024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x1b8 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=0334b938 edi=00000000 eip=7c90e514 esp=03e4fef4 ebp=03e4ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 03e4ff20 02e5c37b 0000063c 03e4ff48 03e4ff4c ntdll!KiFastSystemCallRet 03e4ff58 02e44eb7 00000002 02e5b4dd 0334ce68 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 03e4ffac 02e7ecbd 7c900000 7c80b729 032249c8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 03e4ffec 00000000 02e7ec3e 032249c8 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000003e4fef4 4a da 90 7c e6 a7 80 7c - 3c 06 00 00 4c ff e4 03 J..|...|<...L... 0000000003e4ff04 38 ff e4 03 18 ff e4 03 - 00 00 00 00 38 b9 34 03 8...........8.4. 0000000003e4ff14 58 ff e4 03 44 b4 e5 02 - 31 00 00 00 58 ff e4 03 X...D...1...X... 0000000003e4ff24 7b c3 e5 02 3c 06 00 00 - 48 ff e4 03 4c ff e4 03 {...<...H...L... 0000000003e4ff34 54 ff e4 03 ff ff ff ff - 00 00 00 00 68 ce 34 03 T...........h.4. 0000000003e4ff44 c8 49 22 03 00 00 00 00 - 00 00 00 00 b6 38 d4 02 .I"..........8.. 0000000003e4ff54 00 00 00 00 ac ff e4 03 - b7 4e e4 02 02 00 00 00 .........N...... 0000000003e4ff64 dd b4 e5 02 68 ce 34 03 - 04 38 d4 02 f0 fc 4b 02 ....h.4..8....K. 0000000003e4ff74 00 00 90 7c 18 ec e7 02 - 68 ce 34 03 02 c2 64 d2 ...|....h.4...d. 0000000003e4ff84 f0 fc 4b 02 00 00 90 7c - c8 49 22 03 80 ff e4 03 ..K....|.I"..... 0000000003e4ff94 80 ff e4 03 dc ff e4 03 - dc ff e4 03 70 e7 e7 02 ............p... 0000000003e4ffa4 5e b1 7d d3 00 00 00 00 - ec ff e4 03 bd ec e7 02 ^.}............. 0000000003e4ffb4 00 00 90 7c 29 b7 80 7c - c8 49 22 03 f0 fc 4b 02 ...|)..|.I"...K. 0000000003e4ffc4 00 00 90 7c c8 49 22 03 - 00 10 fa 7f 00 46 3c 82 ...|.I"......F<. 0000000003e4ffd4 c0 ff e4 03 48 e5 b8 81 - ff ff ff ff b0 9a 83 7c ....H..........| 0000000003e4ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 0000000003e4fff4 3e ec e7 02 c8 49 22 03 - 00 00 00 00 00 00 00 00 >....I"......... 0000000003e50004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003e50014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003e50024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x888 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=0334b938 edi=00000000 eip=7c90e514 esp=03f4fef4 ebp=03f4ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 03f4ff20 02e5c37b 0000063c 03f4ff48 03f4ff4c ntdll!KiFastSystemCallRet 03f4ff58 02e44eb7 00000003 02e5b4dd 0334ce90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 03f4ffac 02e7ecbd 7c900000 7c80b729 032249c8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 03f4ffec 00000000 02e7ec3e 032249c8 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000003f4fef4 4a da 90 7c e6 a7 80 7c - 3c 06 00 00 4c ff f4 03 J..|...|<...L... 0000000003f4ff04 38 ff f4 03 18 ff f4 03 - 00 00 00 00 38 b9 34 03 8...........8.4. 0000000003f4ff14 58 ff f4 03 44 b4 e5 02 - 31 00 00 00 58 ff f4 03 X...D...1...X... 0000000003f4ff24 7b c3 e5 02 3c 06 00 00 - 48 ff f4 03 4c ff f4 03 {...<...H...L... 0000000003f4ff34 54 ff f4 03 ff ff ff ff - 00 00 00 00 90 ce 34 03 T.............4. 0000000003f4ff44 c8 49 22 03 00 00 00 00 - 00 00 00 00 b6 38 d4 02 .I"..........8.. 0000000003f4ff54 00 00 00 00 ac ff f4 03 - b7 4e e4 02 03 00 00 00 .........N...... 0000000003f4ff64 dd b4 e5 02 90 ce 34 03 - 04 38 d4 02 f0 fc 4b 02 ......4..8....K. 0000000003f4ff74 00 00 90 7c 18 ec e7 02 - 90 ce 34 03 02 c2 74 d2 ...|......4...t. 0000000003f4ff84 f0 fc 4b 02 00 00 90 7c - c8 49 22 03 80 ff f4 03 ..K....|.I"..... 0000000003f4ff94 80 ff f4 03 dc ff f4 03 - dc ff f4 03 70 e7 e7 02 ............p... 0000000003f4ffa4 5e b1 7d d3 00 00 00 00 - ec ff f4 03 bd ec e7 02 ^.}............. 0000000003f4ffb4 00 00 90 7c 29 b7 80 7c - c8 49 22 03 f0 fc 4b 02 ...|)..|.I"...K. 0000000003f4ffc4 00 00 90 7c c8 49 22 03 - 00 00 fa 7f 00 46 3c 82 ...|.I"......F<. 0000000003f4ffd4 c0 ff f4 03 48 e5 b8 81 - ff ff ff ff b0 9a 83 7c ....H..........| 0000000003f4ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 0000000003f4fff4 3e ec e7 02 c8 49 22 03 - 00 00 00 00 08 00 00 00 >....I"......... 0000000003f50004 00 01 00 02 ee ff ee ff - 00 00 00 00 00 00 15 00 ................ 0000000003f50014 00 00 00 00 00 00 f5 03 - 00 02 00 00 40 00 f5 03 ............@... 0000000003f50024 00 00 15 04 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xbe8 <----* eax=04bc6c00 ebx=00000000 ecx=000002e1 edx=04bc6c00 esi=00000780 edi=00000000 eip=7c90e514 esp=0424ff08 ebp=0424ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0424ff6c 7c802542 00000780 000927c0 00000000 ntdll!KiFastSystemCallRet 0424ff80 3f3da2c9 00000780 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 0424ffa0 3f340774 3f50af7e 3f340837 03a70bf8 mshtml!DllGetClassObject+0x8cfc4 0424ffb4 7c80b729 03a21578 3f50af7e 03a70bf8 mshtml+0x10774 0424ffec 00000000 3f340829 03a21578 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000424ff08 5a df 90 7c db 25 80 7c - 80 07 00 00 00 00 00 00 Z..|.%.|........ 000000000424ff18 3c ff 24 04 00 00 00 00 - 78 15 a2 03 00 00 00 00 <.$.....x....... 000000000424ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000424ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 e0 fd 7f .....D_......... 000000000424ff48 00 40 fa 7f 3c ff 24 04 - 4a c3 3d 3f 1c ff 24 04 .@..<.$.J.=?..$. 000000000424ff58 4a c3 3d 3f dc ff 24 04 - b0 9a 83 7c 08 26 80 7c J.=?..$....|.&.| 000000000424ff68 00 00 00 00 80 ff 24 04 - 42 25 80 7c 80 07 00 00 ......$.B%.|.... 000000000424ff78 c0 27 09 00 00 00 00 00 - a0 ff 24 04 c9 a2 3d 3f .'........$...=? 000000000424ff88 80 07 00 00 c0 27 09 00 - 00 00 33 3f 78 15 a2 03 .....'....3?x... 000000000424ff98 78 15 a2 03 78 15 a2 03 - b4 ff 24 04 74 07 34 3f x...x.....$.t.4? 000000000424ffa8 7e af 50 3f 37 08 34 3f - f8 0b a7 03 ec ff 24 04 ~.P?7.4?......$. 000000000424ffb8 29 b7 80 7c 78 15 a2 03 - 7e af 50 3f f8 0b a7 03 )..|x...~.P?.... 000000000424ffc8 78 15 a2 03 00 40 fa 7f - 00 46 3c 82 c0 ff 24 04 x....@...F<...$. 000000000424ffd8 98 8c fc 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 000000000424ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 000000000424fff8 78 15 a2 03 00 00 00 00 - 43 6c 69 65 6e 74 20 55 x.......Client U 0000000004250008 72 6c 43 61 63 68 65 20 - 4d 4d 46 20 56 65 72 20 rlCache MMF Ver 0000000004250018 35 2e 32 00 00 c0 6e 00 - 00 40 00 00 00 dd 00 00 5.2...n..@...... 0000000004250028 38 17 00 00 00 00 00 00 - 00 00 10 00 00 00 00 00 8............... 0000000004250038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xedc <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=00000830 edi=00000000 eip=7c90e514 esp=0537feb8 ebp=0537ff1c iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0537ff1c 7c802542 00000830 0001d4c0 00000000 ntdll!KiFastSystemCallRet 0537ff30 02e70ceb 00000830 0001d4c0 00000000 kernel32!WaitForSingleObject+0x12 0537ff68 02d43804 016cae90 7c900000 02e7ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x12aa4c 0537ffac 02e7ecbd 7c900000 7c80b729 0336b928 GoogleToolbarDynamic_32_B31C6BD+0x3804 0537ffec 00000000 02e7ec3e 0336b928 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000537feb8 5a df 90 7c db 25 80 7c - 30 08 00 00 00 00 00 00 Z..|.%.|0....... 000000000537fec8 ec fe 37 05 ea 00 00 00 - f0 b8 36 03 00 00 00 00 ..7.......6..... 000000000537fed8 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000537fee8 10 00 00 00 00 74 79 b8 - ff ff ff ff 00 e0 fd 7f .....ty......... 000000000537fef8 00 c0 f9 7f ec fe 37 05 - 00 00 00 00 cc fe 37 05 ......7.......7. 000000000537ff08 88 62 e3 77 9c ff 37 05 - b0 9a 83 7c 08 26 80 7c .b.w..7....|.&.| 000000000537ff18 00 00 00 00 30 ff 37 05 - 42 25 80 7c 30 08 00 00 ....0.7.B%.|0... 000000000537ff28 c0 d4 01 00 00 00 00 00 - 68 ff 37 05 eb 0c e7 02 ........h.7..... 000000000537ff38 30 08 00 00 c0 d4 01 00 - 00 00 00 00 f0 b8 36 03 0.............6. 000000000537ff48 28 b9 36 03 aa ed e7 02 - b6 38 d4 02 c4 dd 9a 6c (.6......8.....l 000000000537ff58 00 00 00 00 f0 b8 36 03 - a4 39 d4 02 f0 b8 36 03 ......6..9....6. 000000000537ff68 ac ff 37 05 04 38 d4 02 - 90 ae 6c 01 00 00 90 7c ..7..8....l....| 000000000537ff78 18 ec e7 02 f0 b8 36 03 - 02 c2 b7 d4 90 ae 6c 01 ......6.......l. 000000000537ff88 00 00 90 7c 28 b9 36 03 - 80 ff 37 05 80 ff 37 05 ...|(.6...7...7. 000000000537ff98 dc ff 37 05 dc ff 37 05 - 70 e7 e7 02 5e b1 7d d3 ..7...7.p...^.}. 000000000537ffa8 00 00 00 00 ec ff 37 05 - bd ec e7 02 00 00 90 7c ......7........| 000000000537ffb8 29 b7 80 7c 28 b9 36 03 - 90 ae 6c 01 00 00 90 7c )..|(.6...l....| 000000000537ffc8 28 b9 36 03 00 c0 f9 7f - 00 46 3c 82 c0 ff 37 05 (.6......F<...7. 000000000537ffd8 98 8c fc 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 000000000537ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 3e ec e7 02 ............>... *----> Zrzut stanu dla wątku o identyfikatorze 0xf68 <----* eax=06b5c000 ebx=00000000 ecx=06b5ca88 edx=45355d00 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=06b5ff70 ebp=06b5ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 06b5ffb4 7c80b729 00000000 7c9144f9 00020648 ntdll!KiFastSystemCallRet 06b5ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000006b5ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff b5 06 J..|...|........ 0000000006b5ff80 b0 ff b5 06 98 ff b5 06 - a0 ff b5 06 f9 44 91 7c .............D.| 0000000006b5ff90 48 06 02 00 00 00 00 00 - 00 00 00 00 28 19 12 04 H...........(... 0000000006b5ffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 0000000006b5ffb0 30 c6 c8 04 ec ff b5 06 - 29 b7 80 7c 00 00 00 00 0.......)..|.... 0000000006b5ffc0 f9 44 91 7c 48 06 02 00 - 00 00 00 00 00 b0 f9 7f .D.|H........... 0000000006b5ffd0 00 46 3c 82 c0 ff b5 06 - 48 db bf 81 ff ff ff ff .F<.....H....... 0000000006b5ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000006b5fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000006b60000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006b60010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006b60020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006b60030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006b60040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006b60050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006b60060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006b60070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006b60080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006b60090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006b600a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xca4 <----* eax=000000e9 ebx=00000000 ecx=00560650 edx=00000001 esi=00000880 edi=00000000 eip=7c90e514 esp=06c5ff08 ebp=06c5ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 06c5ff6c 7c802542 00000880 000927c0 00000000 ntdll!KiFastSystemCallRet 06c5ff80 3f3da2c9 00000880 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 06c5ffa0 3f340774 000000eb 3f340837 00000000 mshtml!DllGetClassObject+0x8cfc4 06c5ffb4 7c80b729 0024bde8 000000eb 00000000 mshtml+0x10774 06c5ffec 00000000 3f340829 0024bde8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000006c5ff08 5a df 90 7c db 25 80 7c - 80 08 00 00 00 00 00 00 Z..|.%.|........ 0000000006c5ff18 3c ff c5 06 00 00 00 00 - e8 bd 24 00 00 00 00 00 <.........$..... 0000000006c5ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006c5ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 e0 fd 7f .....D_......... 0000000006c5ff48 00 a0 f9 7f 3c ff c5 06 - af c2 3d 3f 1c ff c5 06 ....<.....=?.... 0000000006c5ff58 00 00 00 00 dc ff c5 06 - b0 9a 83 7c 08 26 80 7c ...........|.&.| 0000000006c5ff68 00 00 00 00 80 ff c5 06 - 42 25 80 7c 80 08 00 00 ........B%.|.... 0000000006c5ff78 c0 27 09 00 00 00 00 00 - a0 ff c5 06 c9 a2 3d 3f .'............=? 0000000006c5ff88 80 08 00 00 c0 27 09 00 - 00 00 33 3f e8 bd 24 00 .....'....3?..$. 0000000006c5ff98 e8 bd 24 00 e8 bd 24 00 - b4 ff c5 06 74 07 34 3f ..$...$.....t.4? 0000000006c5ffa8 eb 00 00 00 37 08 34 3f - 00 00 00 00 ec ff c5 06 ....7.4?........ 0000000006c5ffb8 29 b7 80 7c e8 bd 24 00 - eb 00 00 00 00 00 00 00 )..|..$......... 0000000006c5ffc8 e8 bd 24 00 00 a0 f9 7f - 00 46 3c 82 c0 ff c5 06 ..$......F<..... 0000000006c5ffd8 b0 44 ef 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c .D.........|0..| 0000000006c5ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 0000000006c5fff8 e8 bd 24 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ..$............. 0000000006c60008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006c60018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006c60028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006c60038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xfe0 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=000008b8 edi=00000000 eip=7c90e514 esp=06e7ff08 ebp=06e7ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 06e7ff6c 7c802542 000008b8 000927c0 00000000 ntdll!KiFastSystemCallRet 06e7ff80 3f3da2c9 000008b8 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 06e7ffa0 3f340774 001b5d30 3f340837 00000020 mshtml!DllGetClassObject+0x8cfc4 06e7ffb4 7c80b729 0024be90 001b5d30 00000020 mshtml+0x10774 06e7ffec 00000000 3f340829 0024be90 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000006e7ff08 5a df 90 7c db 25 80 7c - b8 08 00 00 00 00 00 00 Z..|.%.|........ 0000000006e7ff18 3c ff e7 06 00 00 00 00 - 90 be 24 00 00 00 00 00 <.........$..... 0000000006e7ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006e7ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 e0 fd 7f .....D_......... 0000000006e7ff48 00 90 f9 7f 3c ff e7 06 - af c2 3d 3f 1c ff e7 06 ....<.....=?.... 0000000006e7ff58 00 00 00 00 dc ff e7 06 - b0 9a 83 7c 08 26 80 7c ...........|.&.| 0000000006e7ff68 00 00 00 00 80 ff e7 06 - 42 25 80 7c b8 08 00 00 ........B%.|.... 0000000006e7ff78 c0 27 09 00 00 00 00 00 - a0 ff e7 06 c9 a2 3d 3f .'............=? 0000000006e7ff88 b8 08 00 00 c0 27 09 00 - 00 00 33 3f 90 be 24 00 .....'....3?..$. 0000000006e7ff98 90 be 24 00 90 be 24 00 - b4 ff e7 06 74 07 34 3f ..$...$.....t.4? 0000000006e7ffa8 30 5d 1b 00 37 08 34 3f - 20 00 00 00 ec ff e7 06 0]..7.4? ....... 0000000006e7ffb8 29 b7 80 7c 90 be 24 00 - 30 5d 1b 00 20 00 00 00 )..|..$.0].. ... 0000000006e7ffc8 90 be 24 00 00 90 f9 7f - 00 46 3c 82 c0 ff e7 06 ..$......F<..... 0000000006e7ffd8 b0 44 ef 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c .D.........|0..| 0000000006e7ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 0000000006e7fff8 90 be 24 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ..$............. 0000000006e80008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006e80018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006e80028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006e80038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ Wystąpił wyjątek aplikacji: Apl: C:\Program Files\Internet Explorer\iexplore.exe (pid=2796) Kiedy: 2013-07-05 @ 11:53:03.822 Numer wyjątku: c0000005 (naruszenie praw dostępu) *----> Informacje o systemie <----* Nazwa komputera: OEM-23004A62F73 Nazwa użytkownika: oem Identyfikator sesji terminala: 0 Liczba procesorów: 1 Typ procesora: x86 Family 15 Model 2 Stepping 7 Wersja systemu Windows: 5.1 Bieżąca kompilacja: 2600 Dodatek Service Pack: 3. Bieżący typ: Uniprocessor Free Zarejestrowana organizacja: Zarejestrowany właściciel: oem *----> Lista zadań <----* 0 System Process 4 System 792 smss.exe 848 csrss.exe 876 winlogon.exe 920 services.exe 932 lsass.exe 1104 svchost.exe 1192 svchost.exe 1340 svchost.exe 1412 svchost.exe 1524 svchost.exe 1856 Explorer.EXE 1936 spoolsv.exe 572 egui.exe 704 svchost.exe 768 ACService.exe 820 ekrn.exe 812 ctfmon.exe 824 GoogleToolbarNotifier.exe 1420 mdm.exe 1488 svchost.exe 1124 alg.exe 1588 iexplore.exe 2796 iexplore.exe 3820 drwtsn32.exe *----> Lista modułów <----* (0000000000400000 - 000000000049c000: C:\Program Files\Internet Explorer\iexplore.exe (00000000016d0000 - 00000000019a2000: C:\WINDOWS\system32\xpsp2res.dll (0000000001cb0000 - 0000000001cb9000: C:\WINDOWS\system32\Normaliz.dll (0000000002490000 - 00000000024a0000: C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (00000000025c0000 - 00000000026b9000: C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (00000000027d0000 - 0000000002c45000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll (0000000002f80000 - 000000000307f000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E7110F8B630E4F04.dll (0000000003280000 - 00000000032a9000: C:\WINDOWS\system32\msls31.dll (0000000005370000 - 000000000638f000: C:\WINDOWS\system32\Macromed\Flash\Flash32_11_7_700_202.ocx (0000000010000000 - 0000000010033000: C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (000000001b000000 - 000000001b00c000: C:\WINDOWS\system32\ImgUtil.dll (000000001b060000 - 000000001b06e000: C:\WINDOWS\system32\pngfilt.dll (000000001f840000 - 000000001f858000: C:\WINDOWS\system32\odbcint.dll (0000000035c50000 - 0000000035c89000: C:\WINDOWS\system32\Dxtrans.dll (0000000035cb0000 - 0000000035d07000: C:\WINDOWS\system32\Dxtmsft.dll (000000003f330000 - 000000003f8f0000: C:\WINDOWS\system32\mshtml.dll (000000003fc30000 - 000000003fce4000: C:\WINDOWS\system32\jscript.dll (000000003fcf0000 - 000000003fdd7000: C:\WINDOWS\system32\WININET.dll (0000000040390000 - 000000004057c000: C:\WINDOWS\system32\iertutil.dll (0000000040580000 - 000000004101d000: C:\WINDOWS\system32\IEFRAME.dll (0000000042a20000 - 0000000042a4f000: C:\WINDOWS\system32\iepeers.dll (00000000451f0000 - 00000000451f6000: C:\Program Files\Internet Explorer\xpshims.dll (0000000045330000 - 0000000045464000: C:\WINDOWS\system32\urlmon.dll (0000000045530000 - 0000000045570000: C:\Program Files\Internet Explorer\ieproxy.dll (000000004ebc0000 - 000000004ed6b000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll (0000000059bc0000 - 0000000059c61000: C:\WINDOWS\system32\dbghelp.dll (000000005b1d0000 - 000000005b208000: C:\WINDOWS\system32\uxtheme.dll (000000005cfe0000 - 000000005d006000: C:\WINDOWS\system32\ShimEng.dll (000000005d520000 - 000000005d5ba000: C:\WINDOWS\system32\comctl32.dll (0000000061880000 - 00000000618ba000: C:\WINDOWS\system32\OLEACC.dll (0000000066780000 - 00000000667d8000: C:\WINDOWS\system32\hnetcfg.dll (0000000068000000 - 0000000068036000: C:\WINDOWS\system32\rsaenh.dll (000000006d440000 - 000000006d44c000: C:\Program Files\Java\jre6\bin\jp2ssv.dll (000000006d970000 - 000000006d97a000: C:\WINDOWS\system32\ddrawex.dll (000000006daf0000 - 000000006db02000: C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (000000006ff40000 - 000000006ff95000: C:\WINDOWS\system32\NETAPI32.dll (0000000071620000 - 0000000071699000: C:\WINDOWS\AppPatch\AcLayers.DLL (00000000719f0000 - 0000000071a30000: C:\WINDOWS\System32\mswsock.dll (0000000071a30000 - 0000000071a38000: C:\WINDOWS\System32\wshtcpip.dll (0000000071a40000 - 0000000071a48000: C:\WINDOWS\system32\WS2HELP.dll (0000000071a50000 - 0000000071a67000: C:\WINDOWS\system32\ws2_32.dll (0000000071ac0000 - 0000000071ad2000: C:\WINDOWS\system32\MPR.dll (0000000071ba0000 - 0000000071bb3000: C:\WINDOWS\System32\SAMLIB.dll (0000000071bc0000 - 0000000071bce000: C:\WINDOWS\System32\ntlanman.dll (0000000071c30000 - 0000000071c37000: C:\WINDOWS\System32\NETRAP.dll (0000000071c40000 - 0000000071c80000: C:\WINDOWS\System32\NETUI1.dll (0000000071c80000 - 0000000071c97000: C:\WINDOWS\System32\NETUI0.dll (0000000071cf0000 - 0000000071d0b000: C:\WINDOWS\system32\actxprxy.dll (0000000072260000 - 0000000072265000: C:\WINDOWS\system32\sensapi.dll (0000000072ca0000 - 0000000072ca8000: C:\WINDOWS\system32\msacm32.drv (0000000072cb0000 - 0000000072cb9000: C:\WINDOWS\system32\wdmaud.drv (0000000072ea0000 - 0000000072f0f000: C:\WINDOWS\system32\ieapfltr.dll (0000000072f90000 - 0000000072fb6000: C:\WINDOWS\system32\WINSPOOL.DRV (00000000736f0000 - 000000007373b000: C:\WINDOWS\system32\DDRAW.dll (0000000073ac0000 - 0000000073ad5000: C:\WINDOWS\system32\mscms.dll (0000000073b30000 - 0000000073b44000: C:\WINDOWS\system32\sti.dll (0000000073b50000 - 0000000073b56000: C:\WINDOWS\system32\DCIMAN32.dll (0000000073ea0000 - 0000000073efc000: C:\WINDOWS\system32\DSOUND.dll (0000000074600000 - 000000007463d000: C:\WINDOWS\system32\ODBC32.dll (00000000746a0000 - 00000000746ca000: C:\WINDOWS\system32\msimtf.dll (00000000746d0000 - 000000007471c000: C:\WINDOWS\system32\MSCTF.dll (0000000074a90000 - 0000000074a97000: C:\WINDOWS\system32\CFGMGR32.dll (0000000075180000 - 00000000751ae000: C:\WINDOWS\system32\msctfime.ime (0000000075940000 - 0000000075a39000: C:\WINDOWS\system32\MSGINA.dll (0000000075d70000 - 0000000075e01000: C:\WINDOWS\system32\MLANG.dll (0000000075f30000 - 0000000075f37000: C:\WINDOWS\System32\drprov.dll (0000000075f40000 - 0000000075f4a000: C:\WINDOWS\System32\davclnt.dll (0000000076330000 - 0000000076340000: C:\WINDOWS\system32\WINSTA.dll (0000000076350000 - 0000000076355000: C:\WINDOWS\system32\MSIMG32.dll (0000000076360000 - 000000007637d000: C:\WINDOWS\system32\IMM32.DLL (0000000076380000 - 00000000763c9000: C:\WINDOWS\system32\comdlg32.dll (0000000076770000 - 000000007677c000: C:\WINDOWS\system32\cryptdll.dll (0000000076970000 - 0000000076996000: C:\WINDOWS\system32\ntshrui.dll (00000000769a0000 - 0000000076a55000: C:\WINDOWS\system32\USERENV.dll (0000000076b00000 - 0000000076b11000: C:\WINDOWS\system32\ATL.DLL (0000000076b20000 - 0000000076b4e000: C:\WINDOWS\system32\WINMM.dll (0000000076be0000 - 0000000076beb000: C:\WINDOWS\system32\PSAPI.DLL (0000000076c20000 - 0000000076c4e000: C:\WINDOWS\system32\WINTRUST.dll (0000000076c80000 - 0000000076ca8000: C:\WINDOWS\system32\IMAGEHLP.dll (0000000076d50000 - 0000000076d69000: C:\WINDOWS\system32\iphlpapi.dll (0000000076e70000 - 0000000076e7e000: C:\WINDOWS\system32\rtutils.dll (0000000076e80000 - 0000000076e92000: C:\WINDOWS\system32\rasman.dll (0000000076ea0000 - 0000000076ecf000: C:\WINDOWS\system32\TAPI32.dll (0000000076ed0000 - 0000000076f0c000: C:\WINDOWS\system32\RASAPI32.dll (0000000076f10000 - 0000000076f37000: C:\WINDOWS\system32\DNSAPI.dll (0000000076f40000 - 0000000076f48000: C:\WINDOWS\system32\WTSAPI32.dll (0000000076fb0000 - 0000000076fb6000: C:\WINDOWS\system32\rasadhlp.dll (0000000076fc0000 - 000000007703f000: C:\WINDOWS\system32\CLBCATQ.DLL (0000000077040000 - 000000007710d000: C:\WINDOWS\system32\COMRes.dll (0000000077110000 - 000000007719b000: C:\WINDOWS\system32\OLEAUT32.dll (00000000773c0000 - 00000000774c3000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (00000000774d0000 - 000000007760e000: C:\WINDOWS\system32\ole32.dll (0000000077910000 - 0000000077a06000: C:\WINDOWS\system32\SETUPAPI.dll (0000000077a70000 - 0000000077b06000: C:\WINDOWS\system32\CRYPT32.dll (0000000077b10000 - 0000000077b22000: C:\WINDOWS\system32\MSASN1.dll (0000000077b30000 - 0000000077b52000: C:\WINDOWS\system32\appHelp.dll (0000000077bc0000 - 0000000077bc7000: C:\WINDOWS\system32\midimap.dll (0000000077bd0000 - 0000000077be5000: C:\WINDOWS\system32\MSACM32.dll (0000000077bf0000 - 0000000077bf8000: C:\WINDOWS\system32\VERSION.dll (0000000077c00000 - 0000000077c58000: C:\WINDOWS\system32\msvcrt.dll (0000000077c60000 - 0000000077c85000: C:\WINDOWS\system32\msv1_0.dll (0000000077dc0000 - 0000000077e6c000: C:\WINDOWS\system32\ADVAPI32.dll (0000000077e70000 - 0000000077f03000: C:\WINDOWS\system32\RPCRT4.dll (0000000077f10000 - 0000000077f59000: C:\WINDOWS\system32\GDI32.dll (0000000077f60000 - 0000000077fd6000: C:\WINDOWS\system32\SHLWAPI.dll (0000000077fe0000 - 0000000077ff1000: C:\WINDOWS\system32\Secur32.dll (0000000078130000 - 00000000781cb000: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll (000000007c340000 - 000000007c396000: C:\Program Files\Java\jre6\bin\MSVCR71.dll (000000007c800000 - 000000007c8fd000: C:\WINDOWS\system32\kernel32.dll (000000007c900000 - 000000007c9b4000: C:\WINDOWS\system32\ntdll.dll (000000007c9c0000 - 000000007d1de000: C:\WINDOWS\system32\SHELL32.dll (000000007d1e0000 - 000000007d49c000: C:\WINDOWS\system32\msi.dll (000000007d9a0000 - 000000007db06000: C:\WINDOWS\system32\query.dll (000000007e360000 - 000000007e3f1000: C:\WINDOWS\system32\USER32.dll (000000007e690000 - 000000007e740000: C:\WINDOWS\system32\SXS.DLL *----> Zrzut stanu dla wątku o identyfikatorze 0xec4 <----* eax=02070000 ebx=0013fc50 ecx=0013fc30 edx=7c90e514 esi=00000000 edi=7ffd7000 eip=7c90e514 esp=0013fc28 ebp=0013fcc4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\USER32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\iertutil.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\IEFRAME.dll - *** ERROR: Module load completed but symbols could not be loaded for C:\Program Files\Internet Explorer\iexplore.exe *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll - ChildEBP RetAddr Args to Child 0013fcc4 7e3695f9 00000001 0013fcec 00000000 ntdll!KiFastSystemCallRet 0013fd20 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 0013fd70 404f873a 00000000 00000001 00000001 iertutil!Ordinal73+0x103 0013fd90 4062415a 00000001 00000001 77f648e4 iertutil!Ordinal537+0x52 0013fde0 00401484 001556f8 0000000a 0040b090 IEFRAME!Ordinal320+0x15aa6 0013ff2c 0040128e 00400000 00000000 0002070c iexplore+0x1484 0013ffc0 7c81776f 0013cb68 0013cd54 7ffd7000 iexplore+0x128e 0013fff0 00000000 00401a25 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49 *----> Zrzut stosu <----* 000000000013fc28 4a df 90 7c 90 95 80 7c - 01 00 00 00 50 fc 13 00 J..|...|....P... 000000000013fc38 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000013fc48 01 00 00 00 06 00 00 00 - 30 00 00 00 80 fc 13 00 ........0....... 000000000013fc58 b5 27 4f 40 18 14 e5 00 - 02 00 00 00 01 28 07 00 .'O@.........(.. 000000000013fc68 08 00 00 00 2c fd 13 00 - 14 00 00 00 01 00 00 00 ....,........... 000000000013fc78 00 00 00 00 00 00 00 00 - 10 00 00 00 5d 28 4f 40 ............](O@ 000000000013fc88 70 00 00 00 01 00 00 00 - 00 70 fd 7f 00 f0 fd 7f p........p...... 000000000013fc98 5c f6 90 7c 00 00 00 00 - 50 fc 13 00 01 00 00 00 \..|....P....... 000000000013fca8 01 00 00 00 44 fc 13 00 - 00 00 99 00 b0 ff 13 00 ....D........... 000000000013fcb8 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 20 fd 13 00 ...|...|.... ... 000000000013fcc8 f9 95 36 7e 01 00 00 00 - ec fc 13 00 00 00 00 00 ..6~............ 000000000013fcd8 ff ff ff ff 01 00 00 00 - 00 00 00 00 68 47 99 00 ............hG.. 000000000013fce8 00 00 00 00 30 00 00 00 - 00 00 99 00 00 00 00 00 ....0........... 000000000013fcf8 e3 c2 c1 77 00 00 00 00 - 68 47 99 00 00 00 00 00 ...w....hG...... 000000000013fd08 30 fd 13 00 a6 92 4f 40 - 00 00 00 00 01 00 00 00 0.....O@........ 000000000013fd18 00 f0 fd 7f 30 00 00 00 - 70 fd 13 00 3e 71 4f 40 ....0...p...>qO@ 000000000013fd28 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 000000000013fd38 ec fc 13 00 01 28 07 00 - 68 47 99 00 01 18 02 00 .....(..hG...... 000000000013fd48 b0 ff 13 00 94 5c c2 77 - 88 20 c0 77 ff ff ff ff .....\.w. .w.... 000000000013fd58 ce c3 c1 77 e7 c3 c1 77 - 64 00 00 00 00 00 00 00 ...w...wd....... *----> Zrzut stanu dla wątku o identyfikatorze 0x1fc <----* eax=00a75ad4 ebx=00c6fed0 ecx=7ffde000 edx=77e36660 esi=00000000 edi=7ffd7000 eip=7c90e514 esp=00c6fea8 ebp=00c6ff44 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ADVAPI32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 00c6ff44 77de8631 00000002 00c6ff6c 00000000 ntdll!KiFastSystemCallRet 00c6ffb4 7c80b729 00000000 00000000 77de8ae4 ADVAPI32!WmiFreeBuffer+0x24e 00c6ffec 00000000 77de848a 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000000c6fea8 4a df 90 7c 90 95 80 7c - 02 00 00 00 d0 fe c6 00 J..|...|........ 0000000000c6feb8 01 00 00 00 01 00 00 00 - 04 ff c6 00 e0 2e a7 00 ................ 0000000000c6fec8 60 66 e3 77 00 10 00 00 - 78 00 00 00 84 00 00 00 `f.w....x....... 0000000000c6fed8 c0 fe c6 00 ec 3b f7 f3 - dc ff c6 00 b0 9a 83 7c .....;.........| 0000000000c6fee8 28 10 81 7c 00 10 00 00 - 14 00 00 00 01 00 00 00 (..|............ 0000000000c6fef8 00 00 00 00 00 00 00 00 - 10 00 00 00 00 a2 2f 4d ............../M 0000000000c6ff08 ff ff ff ff 00 10 00 00 - 00 70 fd 7f 00 e0 fd 7f .........p...... 0000000000c6ff18 dc ff c6 00 04 ff c6 00 - d0 fe c6 00 06 00 00 00 ................ 0000000000c6ff28 02 00 00 00 c4 fe c6 00 - 06 00 00 00 dc ff c6 00 ................ 0000000000c6ff38 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 b4 ff c6 00 ...|...|........ 0000000000c6ff48 31 86 de 77 02 00 00 00 - 6c ff c6 00 00 00 00 00 1..w....l....... 0000000000c6ff58 e0 93 04 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000c6ff68 e4 8a de 77 78 00 00 00 - 84 00 00 00 00 10 00 00 ...wx........... 0000000000c6ff78 e0 2e a7 00 00 00 00 00 - 00 10 00 00 e8 3e a7 00 .............>.. 0000000000c6ff88 00 67 e3 77 c8 00 00 00 - e0 66 e3 77 00 10 00 00 .g.w.....f.w.... 0000000000c6ff98 00 00 00 00 00 67 e3 77 - e0 2e a7 00 e0 66 e3 77 .....g.w.....f.w 0000000000c6ffa8 e5 03 00 00 00 10 00 00 - e8 3e a7 00 ec ff c6 00 .........>...... 0000000000c6ffb8 29 b7 80 7c 00 00 00 00 - 00 00 00 00 e4 8a de 77 )..|...........w 0000000000c6ffc8 00 00 00 00 00 e0 fd 7f - 00 46 3c 82 c0 ff c6 00 .........F<..... 0000000000c6ffd8 a8 f3 c4 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| *----> Zrzut stanu dla wątku o identyfikatorze 0xd5c <----* eax=000000c0 ebx=00000000 ecx=00000000 edx=00000007 esi=0013f770 edi=0015ea40 eip=7c90e514 esp=00faff9c ebp=00faffb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 00faffb4 7c80b729 00000000 0015ea40 0013f770 ntdll!KiFastSystemCallRet 00faffec 00000000 7c927d83 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000000faff9c 1a d2 90 7c ca 7d 92 7c - 01 00 00 00 ac ff fa 00 ...|.}.|........ 0000000000faffac 00 00 00 00 00 00 00 80 - ec ff fa 00 29 b7 80 7c ............)..| 0000000000faffbc 00 00 00 00 40 ea 15 00 - 70 f7 13 00 00 00 00 00 ....@...p....... 0000000000faffcc 00 d0 fd 7f 00 46 3c 82 - c0 ff fa 00 e0 7e c3 81 .....F<......~.. 0000000000faffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 0000000000faffec 00 00 00 00 00 00 00 00 - 83 7d 92 7c 00 00 00 00 .........}.|.... 0000000000fafffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00bc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00cc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x234 <----* eax=000000c0 ebx=00000000 ecx=011affb0 edx=7c90e514 esi=00000000 edi=00000001 eip=7c90e514 esp=011afcec ebp=011affb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 011affb4 7c80b729 00000000 00000020 fffffffd ntdll!KiFastSystemCallRet 011affec 00000000 7c92a3f3 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000011afcec 4a df 90 7c 1a a5 92 7c - 03 00 00 00 30 fd 1a 01 J..|...|....0... 00000000011afcfc 01 00 00 00 01 00 00 00 - 00 00 00 00 20 00 00 00 ............ ... 00000000011afd0c fd ff ff ff 00 00 00 00 - a0 f9 97 7c a0 f9 97 7c ...........|...| 00000000011afd1c 0c 01 00 00 34 02 00 00 - 03 00 00 00 03 00 00 00 ....4........... 00000000011afd2c 02 00 00 00 08 01 00 00 - 5c 04 00 00 f4 00 00 00 ........\....... 00000000011afd3c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd4c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd5c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd6c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd7c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd8c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd9c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdbc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdcc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afddc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdec 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdfc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe0c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe1c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x5cc <----* eax=0018a000 ebx=00000000 ecx=012cfab8 edx=00001000 esi=00160748 edi=00000100 eip=7c90e514 esp=012cfe18 ebp=012cff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\RPCRT4.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 012cff80 77e76caf 012cffa8 77e76ad1 00160748 ntdll!KiFastSystemCallRet 012cff88 77e76ad1 00160748 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x61c 012cffa8 77e76c97 0015fb98 012cffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 012cffb4 7c80b729 00160060 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x604 012cffec 00000000 77e76c7d 00160060 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000012cfe18 aa da 90 7c e3 65 e7 77 - 70 01 00 00 74 ff 2c 01 ...|.e.wp...t.,. 00000000012cfe28 00 00 00 00 d8 74 31 03 - 50 ff 2c 01 00 00 00 00 .....t1.P.,..... 00000000012cfe38 74 00 8c 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 t.......4....... 00000000012cfe48 ae 63 01 00 00 00 00 00 - 02 00 00 00 00 00 00 00 .c.............. 00000000012cfe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000012cfe68 00 00 00 00 09 00 00 00 - 00 00 02 00 28 00 00 00 ............(... 00000000012cfe78 01 00 00 00 1c 00 00 00 - ff ff ff ff 01 08 01 00 ................ 00000000012cfe88 01 08 0c 00 00 00 00 00 - da 0b 00 00 93 01 00 00 ................ 00000000012cfe98 01 00 00 00 00 00 00 00 - 28 00 00 00 00 00 00 00 ........(....... 00000000012cfea8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000012cfeb8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000012cfec8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000012cfed8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000012cfee8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000012cfef8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000012cff08 00 00 00 00 00 00 00 00 - 00 00 00 00 3c 4f c7 81 ............ Zrzut stanu dla wątku o identyfikatorze 0xff4 <----* eax=00000100 ebx=013ceef0 ecx=00000110 edx=0067235f esi=00000000 edi=7ffd7000 eip=7c90e514 esp=013ceec8 ebp=013cef64 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 013cef64 7c80a115 00000002 00160660 00000000 ntdll!KiFastSystemCallRet 013cef80 404f2e7c 00000002 00160660 00000000 kernel32!WaitForMultipleObjects+0x18 013cffac 404f8611 013cffec 7c80b729 00161cc0 iertutil!Ordinal457+0x421 013cffb4 7c80b729 00161cc0 7c910222 7c91019b iertutil!Ordinal430+0x34 013cffec 00000000 404f8604 00161cc0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000013ceec8 4a df 90 7c 90 95 80 7c - 02 00 00 00 f0 ee 3c 01 J..|...|......<. 00000000013ceed8 01 00 00 00 00 00 00 00 - 00 00 00 00 02 00 00 00 ................ 00000000013ceee8 c0 1c 16 00 00 1c 16 00 - 38 01 00 00 44 01 00 00 ........8...D... 00000000013ceef8 00 00 00 00 50 f3 15 00 - 14 ef 3c 01 f7 25 4f 40 ....P.....<..%O@ 00000000013cef08 e0 13 e5 00 b0 a4 15 00 - 14 00 00 00 01 00 00 00 ................ 00000000013cef18 00 00 00 00 00 00 00 00 - 10 00 00 00 d8 3b 15 00 .............;.. 00000000013cef28 c0 99 80 7c 60 f5 15 00 - 00 70 fd 7f 00 90 fd 7f ...|`....p...... 00000000013cef38 00 00 00 00 00 00 00 00 - f0 ee 3c 01 00 00 00 00 ..........<..... 00000000013cef48 02 00 00 00 e4 ee 3c 01 - 80 ef 3c 01 dc ff 3c 01 ......<...<...<. 00000000013cef58 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 80 ef 3c 01 ...|...|......<. 00000000013cef68 15 a1 80 7c 02 00 00 00 - 60 06 16 00 00 00 00 00 ...|....`....... 00000000013cef78 ff ff ff ff 00 00 00 00 - ac ff 3c 01 7c 2e 4f 40 ..........<.|.O@ 00000000013cef88 02 00 00 00 60 06 16 00 - 00 00 00 00 ff ff ff ff ....`........... 00000000013cef98 22 02 91 7c c0 1c 16 00 - 9b 01 91 7c 00 00 00 00 "..|.......|.... 00000000013cefa8 00 00 00 00 60 06 16 00 - d8 05 16 00 00 00 00 01 ....`........... 00000000013cefb8 24 df a6 48 56 e5 e2 11 - 83 6b 00 0b 6a 18 0d 21 $..HV....k..j..! 00000000013cefc8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefd8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefe8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013ceff8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x538 <----* eax=00560650 ebx=014cfe74 ecx=040d89fb edx=00000000 esi=00000000 edi=7ffd7000 eip=7c90e514 esp=014cfe4c ebp=014cfee8 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 014cfee8 7e3695f9 00000001 014cff10 00000000 ntdll!KiFastSystemCallRet 014cff44 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 014cff94 404f86ae 00000001 00000000 0013facc iertutil!Ordinal73+0x103 014cffb4 7c80b729 0015f0f8 0013facc 0013f98c iertutil!Ordinal536+0x59 014cffec 00000000 404f8655 0015f0f8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000014cfe4c 4a df 90 7c 90 95 80 7c - 01 00 00 00 74 fe 4c 01 J..|...|....t.L. 00000000014cfe5c 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000014cfe6c 01 00 00 00 06 00 00 00 - 50 01 00 00 da 2c 4f 40 ........P....,O@ 00000000014cfe7c e4 fe 4c 01 d9 8b 36 7e - 00 80 fd 7f e4 fe 4c 01 ..L...6~......L. 00000000014cfe8c 5a 88 36 7e a4 fe 4c 01 - 14 00 00 00 01 00 00 00 Z.6~..L......... 00000000014cfe9c 00 00 00 00 00 00 00 00 - 10 00 00 00 01 00 00 00 ................ 00000000014cfeac 00 00 00 00 00 00 00 00 - 00 70 fd 7f 00 80 fd 7f .........p...... 00000000014cfebc 30 00 00 00 00 00 00 00 - 74 fe 4c 01 00 00 00 00 0.......t.L..... 00000000014cfecc 01 00 00 00 68 fe 4c 01 - 34 ff 4c 01 dc ff 4c 01 ....h.L.4.L...L. 00000000014cfedc b0 9a 83 7c 80 96 80 7c - 00 00 00 00 44 ff 4c 01 ...|...|....D.L. 00000000014cfeec f9 95 36 7e 01 00 00 00 - 10 ff 4c 01 00 00 00 00 ..6~......L..... 00000000014cfefc ff ff ff ff 01 00 00 00 - 00 00 00 00 01 00 00 00 ................ 00000000014cff0c 00 00 00 00 50 01 00 00 - 00 00 00 00 44 ff 4c 01 ....P.......D.L. 00000000014cff1c 02 94 36 7e 6c ff 4c 01 - 00 00 00 00 00 00 00 00 ..6~l.L......... 00000000014cff2c 0c ff 4c 01 01 00 00 00 - 00 00 00 00 01 00 00 00 ..L............. 00000000014cff3c 00 80 fd 7f 50 01 00 00 - 94 ff 4c 01 3e 71 4f 40 ....P.....L.>qO@ 00000000014cff4c 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 00000000014cff5c 10 ff 4c 01 68 47 99 00 - f8 f0 15 00 00 00 00 00 ..L.hG.......... 00000000014cff6c 8e 02 2d 00 00 04 00 00 - 00 00 00 00 00 00 00 00 ..-............. 00000000014cff7c 85 9e b1 00 d3 03 00 00 - 2f 02 00 00 00 00 00 00 ......../....... *----> Zrzut stanu dla wątku o identyfikatorze 0xac8 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000040 esi=00160fc8 edi=00000000 eip=7c90e514 esp=016cdde8 ebp=016cfeec iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00040246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 016cfeec 4065330f 00160fc8 0015f1f0 001605e8 ntdll!KiFastSystemCallRet 016cffa4 404f8061 00996748 00000000 016cffec IEFRAME!Ordinal170+0x46f4 016cffb4 7c80b729 001605e8 0015f1f0 00000000 iertutil!Ordinal405+0x2c 016cffec 00000000 404f8053 001605e8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000016cdde8 18 94 36 7e 2a c3 6a 40 - 00 00 00 00 48 67 99 00 ..6~*.j@....Hg.. 00000000016cddf8 c8 0f 16 00 34 59 17 00 - 68 02 4a 00 7c 35 18 00 ....4Y..h.J.|5.. 00000000016cde08 02 02 4b 00 13 01 00 00 - 0f 00 00 00 00 00 00 00 ..K............. 00000000016cde18 80 d8 b1 00 ca 02 00 00 - ef 01 00 00 f6 00 16 00 ................ 00000000016cde28 00 00 00 00 01 00 00 00 - 01 00 00 00 a0 83 19 00 ................ 00000000016cde38 00 00 00 00 00 b9 22 00 - 00 00 00 00 0c 7e 18 00 ......"......~.. 00000000016cde48 e8 98 18 00 00 00 00 00 - 00 00 00 00 18 37 18 00 .............7.. 00000000016cde58 68 00 74 00 74 00 70 00 - 3a 00 2f 00 2f 00 70 00 h.t.t.p.:././.p. 00000000016cde68 69 00 65 00 6b 00 6e 00 - 65 00 7a 00 64 00 72 00 i.e.k.n.e.z.d.r. 00000000016cde78 6f 00 77 00 65 00 73 00 - 74 00 6f 00 70 00 79 00 o.w.e.s.t.o.p.y. 00000000016cde88 2e 00 70 00 6c 00 2f 00 - 67 00 72 00 7a 00 79 00 ..p.l./.g.r.z.y. 00000000016cde98 62 00 69 00 63 00 61 00 - 2d 00 73 00 74 00 6f 00 b.i.c.a.-.s.t.o. 00000000016cdea8 70 00 3f 00 75 00 74 00 - 6d 00 5f 00 73 00 6f 00 p.?.u.t.m._.s.o. 00000000016cdeb8 75 00 72 00 63 00 65 00 - 3d 00 67 00 6f 00 6f 00 u.r.c.e.=.g.o.o. 00000000016cdec8 67 00 6c 00 65 00 26 00 - 75 00 74 00 6d 00 5f 00 g.l.e.&.u.t.m._. 00000000016cded8 6d 00 65 00 64 00 69 00 - 75 00 6d 00 3d 00 63 00 m.e.d.i.u.m.=.c. 00000000016cdee8 70 00 63 00 26 00 75 00 - 74 00 6d 00 5f 00 63 00 p.c.&.u.t.m._.c. 00000000016cdef8 61 00 6d 00 70 00 61 00 - 69 00 67 00 6e 00 3d 00 a.m.p.a.i.g.n.=. 00000000016cdf08 75 00 6e 00 64 00 6f 00 - 66 00 65 00 6e 00 67 00 u.n.d.o.f.e.n.g. 00000000016cdf18 64 00 6e 00 00 00 00 00 - 00 00 00 00 00 00 00 00 d.n............. *----> Zrzut stanu dla wątku o identyfikatorze 0xd1c <----* eax=77e76c7d ebx=00000000 ecx=77dd0b6a edx=00000048 esi=00160748 edi=00000100 eip=7c90e514 esp=01aafe18 ebp=01aaff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01aaff80 77e76caf 01aaffa8 77e76ad1 00160748 ntdll!KiFastSystemCallRet 01aaff88 77e76ad1 00160748 00163e60 00000000 RPCRT4!I_RpcBCacheFree+0x61c 01aaffa8 77e76c97 0015fb98 01aaffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01aaffb4 7c80b729 00160830 00163e60 00000000 RPCRT4!I_RpcBCacheFree+0x604 01aaffec 00000000 77e76c7d 00160830 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001aafe18 aa da 90 7c e3 65 e7 77 - 70 01 00 00 74 ff aa 01 ...|.e.wp...t... 0000000001aafe28 00 00 00 00 90 91 18 04 - 50 ff aa 01 00 00 00 00 ........P....... 0000000001aafe38 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe48 00 00 00 00 00 00 00 00 - 02 00 00 00 00 00 00 00 ................ 0000000001aafe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe68 00 00 00 00 08 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe78 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe88 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe98 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafea8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafeb8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafec8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafed8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafee8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafef8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aaff08 00 00 00 00 00 00 00 00 - 00 00 00 00 3c 8f fc 81 ............<... 0000000001aaff18 24 fc f5 f3 b2 c2 4d 80 - ba c2 4d 80 0c 8f fc 81 $.....M...M..... 0000000001aaff28 a0 8d fc 81 80 ff aa 01 - 85 d1 e7 77 48 ff aa 01 ...........wH... 0000000001aaff38 95 d1 e7 77 e0 10 90 7c - d8 2c 16 00 30 08 16 00 ...w...|.,..0... 0000000001aaff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xd20 <----* eax=774ee4ef ebx=00007530 ecx=00166418 edx=7c8855f8 esi=00000000 edi=01baff50 eip=7c90e514 esp=01baff20 ebp=01baff78 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ole32.dll - ChildEBP RetAddr Args to Child 01baff78 7c802455 0000ea60 00000000 01baffb4 ntdll!KiFastSystemCallRet 01baff88 774ee3e3 0000ea60 00166820 774ee4a2 kernel32!Sleep+0xf 01baffb4 7c80b729 00166820 7465536c 73655248 ole32!StringFromGUID2+0x51d 01baffec 00000000 774ee4ef 00166820 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001baff20 1a d2 90 7c f1 23 80 7c - 00 00 00 00 50 ff ba 01 ...|.#.|....P... 0000000001baff30 50 25 80 7c f8 7d 5f 77 - 30 75 00 00 14 00 00 00 P%.|.}_w0u...... 0000000001baff40 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................ 0000000001baff50 00 ba 3c dc ff ff ff ff - 0c 00 00 00 50 ff ba 01 ..<.........P... 0000000001baff60 30 ff ba 01 af ac 80 7c - dc ff ba 01 b0 9a 83 7c 0......|.......| 0000000001baff70 60 24 80 7c 00 00 00 00 - 88 ff ba 01 55 24 80 7c `$.|........U$.| 0000000001baff80 60 ea 00 00 00 00 00 00 - b4 ff ba 01 e3 e3 4e 77 `.............Nw 0000000001baff90 60 ea 00 00 20 68 16 00 - a2 e4 4e 77 00 00 00 00 `... h....Nw.... 0000000001baffa0 6c 53 65 74 20 68 16 00 - 00 00 4d 77 0a e5 4e 77 lSet h....Mw..Nw 0000000001baffb0 48 52 65 73 ec ff ba 01 - 29 b7 80 7c 20 68 16 00 HRes....)..| h.. 0000000001baffc0 6c 53 65 74 48 52 65 73 - 20 68 16 00 00 40 fd 7f lSetHRes h...@.. 0000000001baffd0 00 46 3c 82 c0 ff ba 01 - 30 1a c3 81 ff ff ff ff .F<.....0....... 0000000001baffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000001bafff0 00 00 00 00 ef e4 4e 77 - 20 68 16 00 00 00 00 00 ......Nw h...... 0000000001bb0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xd50 <----* eax=00001329 ebx=00000000 ecx=00001310 edx=00031834 esi=001531f0 edi=041894d8 eip=7c90e514 esp=01cafe18 ebp=01caff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01caff80 77e76caf 01caffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 01caff88 77e76ad1 001531f0 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x61c 01caffa8 77e76c97 0015fb98 01caffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01caffb4 7c80b729 00177498 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x604 01caffec 00000000 77e76c7d 00177498 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001cafe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff ca 01 ...|.e.w$...t... 0000000001cafe28 38 fe ca 01 d8 94 18 04 - 50 ff ca 01 00 00 00 00 8.......P....... 0000000001cafe38 74 00 8c 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 t.......4....... 0000000001cafe48 30 75 01 00 00 00 00 00 - 02 00 00 00 01 00 00 00 0u.............. 0000000001cafe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001cafe68 00 00 00 00 00 00 00 00 - 00 00 02 00 28 00 00 00 ............(... 0000000001cafe78 01 00 00 00 1c 00 00 00 - ff ff ff ff 01 08 07 00 ................ 0000000001cafe88 01 08 0d 00 97 01 00 00 - d6 0b 00 00 1c 00 00 00 ................ 0000000001cafe98 00 00 00 00 68 00 00 00 - 28 00 00 00 00 00 00 00 ....h...(....... 0000000001cafea8 30 00 00 00 00 00 00 00 - 00 00 31 00 34 00 32 00 0.........1.4.2. 0000000001cafeb8 39 00 38 00 32 00 31 00 - 32 00 39 00 00 00 1f 00 9.8.2.1.2.9..... 0000000001cafec8 55 00 1e 00 00 00 75 00 - 6e 00 64 00 6f 00 66 00 U.....u.n.d.o.f. 0000000001cafed8 65 00 6e 00 2e 00 70 00 - 6c 00 00 00 1f 00 6e 00 e.n...p.l.....n. 0000000001cafee8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 0000000001cafef8 02 04 00 00 84 00 00 00 - 00 00 00 00 6d 00 61 00 ............m.a. 0000000001caff08 78 00 00 00 00 00 00 00 - 2a 00 5c 00 9c 00 00 00 x.......*.\..... 0000000001caff18 00 00 00 00 b2 c2 4d 80 - ba c2 4d 80 44 8b 31 82 ......M...M.D.1. 0000000001caff28 d8 89 31 82 80 ff ca 01 - 85 d1 e7 77 48 ff ca 01 ..1........wH... 0000000001caff38 95 d1 e7 77 e0 10 90 7c - 30 73 17 00 98 74 17 00 ...w...|0s...t.. 0000000001caff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xa30 <----* eax=00000011 ebx=00000000 ecx=404f2013 edx=0217fa94 esi=001531f0 edi=041895f0 eip=7c90e514 esp=0217fe18 ebp=0217ff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0217ff80 77e76caf 0217ffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 0217ff88 77e76ad1 001531f0 00000000 00000000 RPCRT4!I_RpcBCacheFree+0x61c 0217ffa8 77e76c97 0015fb98 0217ffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 0217ffb4 7c80b729 0017c8d0 00000000 00000000 RPCRT4!I_RpcBCacheFree+0x604 0217ffec 00000000 77e76c7d 0017c8d0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000217fe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 17 02 ...|.e.w$...t... 000000000217fe28 38 fe 17 02 f0 95 18 04 - 50 ff 17 02 09 a9 00 00 8.......P....... 000000000217fe38 84 00 9c 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 000000000217fe48 31 75 01 00 00 00 00 00 - 02 2b 3e c0 01 00 01 00 1u.......+>..... 000000000217fe58 24 af 55 80 5d a9 00 00 - c0 f5 3f 82 5d a9 00 00 $.U.].....?.]... 000000000217fe68 00 00 00 00 5e a9 00 00 - 00 00 02 00 38 00 00 00 ....^.......8... 000000000217fe78 01 00 00 00 2c 00 00 00 - ff ff ff ff 01 08 07 00 ....,........... 000000000217fe88 01 08 0d 00 97 01 00 00 - d6 0b 00 00 2c 00 00 00 ............,... 000000000217fe98 01 00 00 00 d2 07 00 00 - 03 00 6a 40 a0 57 04 04 ..........j@.W.. 000000000217fea8 04 00 00 00 3c d5 66 40 - 38 00 00 00 00 00 00 00 ....<.f@8....... 000000000217feb8 00 6b 1e 00 00 00 75 00 - 6e 00 64 00 6f 00 66 00 .k....u.n.d.o.f. 000000000217fec8 65 00 6e 00 2e 00 70 00 - 6c 00 00 00 1f 00 7c 00 e.n...p.l.....|. 000000000217fed8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 000000000217fee8 02 04 00 00 74 00 00 00 - 00 00 00 00 66 00 65 00 ....t.......f.e. 000000000217fef8 6e 00 2d 00 6d 00 61 00 - 78 00 00 00 8c 00 00 00 n.-.m.a.x....... 000000000217ff08 00 00 00 00 02 04 00 00 - 98 00 00 00 00 00 00 00 ................ 000000000217ff18 24 6c ce f3 b2 c2 4d 80 - ba c2 4d 80 8c e8 bf 81 $l....M...M..... 000000000217ff28 20 e7 bf 81 80 ff 17 02 - 85 d1 e7 77 48 ff 17 02 ..........wH... 000000000217ff38 95 d1 e7 77 e0 10 90 7c - 60 7d 18 00 d0 c8 17 00 ...w...|`}...... 000000000217ff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0x258 <----* eax=77e71378 ebx=00000000 ecx=0000001b edx=77e71378 esi=001531f0 edi=041893c0 eip=7c90e514 esp=0230fe18 ebp=0230ff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0230ff80 77e76caf 0230ffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 0230ff88 77e76ad1 001531f0 00000001 00000000 RPCRT4!I_RpcBCacheFree+0x61c 0230ffa8 77e76c97 0015fb98 0230ffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 0230ffb4 7c80b729 00185960 00000001 00000000 RPCRT4!I_RpcBCacheFree+0x604 0230ffec 00000000 77e76c7d 00185960 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000230fe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 30 02 ...|.e.w$...t.0. 000000000230fe28 38 fe 30 02 c0 93 18 04 - 50 ff 30 02 c8 7e 56 80 8.0.....P.0..~V. 000000000230fe38 9c 00 b4 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 000000000230fe48 2f 75 01 00 00 00 00 00 - 02 2b c1 f3 01 00 56 80 /u.......+....V. 000000000230fe58 b0 97 e5 e1 00 00 00 00 - d8 03 30 82 00 00 00 00 ..........0..... 000000000230fe68 00 00 00 00 54 2c c1 f3 - 00 00 02 00 50 00 00 00 ....T,......P... 000000000230fe78 01 00 00 00 44 00 00 00 - ff ff ff ff 03 08 0b 00 ....D........... 000000000230fe88 04 08 05 00 00 00 00 00 - d3 0b 00 00 06 00 00 00 ................ 000000000230fe98 28 ff ff ff 0a 00 00 80 - 00 00 00 00 78 10 01 00 (...........x... 000000000230fea8 00 00 00 00 00 00 00 00 - 01 00 ff ff 10 00 00 00 ................ 000000000230feb8 0b 00 ef 03 e0 95 ef 03 - 00 00 00 80 20 00 00 00 ............ ... 000000000230fec8 50 00 00 00 00 00 00 00 - 6e 00 64 00 6f 00 66 00 P.......n.d.o.f. 000000000230fed8 65 00 6e 00 2e 00 70 00 - 6c 00 00 00 1f 00 6e 00 e.n...p.l.....n. 000000000230fee8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 000000000230fef8 02 04 00 00 84 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000230ff08 e7 45 56 80 01 00 00 00 - 01 00 00 00 f4 cc d2 81 .EV............. 000000000230ff18 24 2c c1 f3 b2 c2 4d 80 - ba c2 4d 80 c4 cc d2 81 $,....M...M..... 000000000230ff28 58 cb d2 81 80 ff 30 02 - 85 d1 e7 77 48 ff 30 02 X.....0....wH.0. 000000000230ff38 95 d1 e7 77 e0 10 90 7c - a8 57 18 00 60 59 18 00 ...w...|.W..`Y.. 000000000230ff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0x4a0 <----* eax=02970869 ebx=02c79bd8 ecx=02c74ab0 edx=02c72d20 esi=000000b4 edi=00000000 eip=7c90e514 esp=0317ff2c ebp=0317ff90 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll - ChildEBP RetAddr Args to Child 0317ff90 7c802542 000000b4 ffffffff 00000000 ntdll!KiFastSystemCallRet 0317ffa4 0297087c 000000b4 ffffffff 00000000 kernel32!WaitForSingleObject+0x12 0317ffec 00000000 02970869 02c79bd8 00000000 GoogleToolbarDynamic_32_B31C6BD+0x1a087c *----> Zrzut stosu <----* 000000000317ff2c 5a df 90 7c db 25 80 7c - b4 00 00 00 00 00 00 00 Z..|.%.|........ 000000000317ff3c 00 00 00 00 00 00 00 00 - d8 9b c7 02 d8 9b c7 02 ................ 000000000317ff4c 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000317ff5c 10 00 00 00 e8 13 4f 80 - dc ff 17 03 00 70 fd 7f ......O......p.. 000000000317ff6c 00 90 fa 7f 00 00 00 00 - 1a 41 7f 02 40 ff 17 03 .........A..@... 000000000317ff7c 1c 41 03 05 dc ff 17 03 - b0 9a 83 7c 08 26 80 7c .A.........|.&.| 000000000317ff8c 00 00 00 00 a4 ff 17 03 - 42 25 80 7c b4 00 00 00 ........B%.|.... 000000000317ff9c ff ff ff ff 00 00 00 00 - ec ff 17 03 7c 08 97 02 ............|... 000000000317ffac b4 00 00 00 ff ff ff ff - 00 00 00 00 29 b7 80 7c ............)..| 000000000317ffbc d8 9b c7 02 00 00 00 00 - 00 00 00 00 d8 9b c7 02 ................ 000000000317ffcc 00 90 fa 7f 00 46 3c 82 - c0 ff 17 03 50 e6 b8 81 .....F<.....P... 000000000317ffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 000000000317ffec 00 00 00 00 00 00 00 00 - 69 08 97 02 d8 9b c7 02 ........i....... 000000000317fffc 00 00 00 00 c8 00 00 00 - 66 01 00 00 ff ee ff ee ........f....... 000000000318000c 02 10 00 00 00 00 00 00 - 00 fe 00 00 00 00 10 00 ................ 000000000318001c 00 20 00 00 00 02 00 00 - 00 20 00 00 2f fc 01 00 . ....... ../... 000000000318002c ff ef fd 7f 13 00 08 06 - 00 00 00 00 00 00 00 00 ................ 000000000318003c 00 00 00 00 00 00 00 00 - 88 05 18 03 0f 00 00 00 ................ 000000000318004c f8 ff ff ff 50 00 18 03 - 50 00 18 03 40 06 18 03 ....P...P...@... 000000000318005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xf48 <----* eax=00000000 ebx=0024d8e0 ecx=0400fb8c edx=0000b138 esi=7fffffff edi=ffffffff eip=7c90e514 esp=0355fad4 ebp=0355fb10 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\System32\mswsock.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ws2_32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WININET.dll - ChildEBP RetAddr Args to Child 0355fb10 719f5fa7 000005c8 000005cc 00000000 ntdll!KiFastSystemCallRet 0355fc04 71a5314f 00000001 0355fe84 0355fc7c mswsock+0x5fa7 0355fc54 3fcfe9f9 00000001 0355fe84 0355fc7c ws2_32!select+0xa7 0355ffac 3fd06043 0355ffec 7c80b729 001db080 WININET!Ordinal346+0x6ae 0355ffb4 7c80b729 001db080 00000020 000c0030 WININET!InternetSetStatusCallbackA+0x1e3 0355ffec 00000000 3fd06036 001db080 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000355fad4 5a df 90 7c 2b 40 9f 71 - c8 05 00 00 01 00 00 00 Z..|+@.q........ 000000000355fae4 fc fa 55 03 b4 fb 55 03 - 84 fe 55 03 a4 fb 55 03 ..U...U...U...U. 000000000355faf4 3f c7 2e 6f 65 79 ce 01 - ff ff ff ff ff ff ff 7f ?..oey.......... 000000000355fb04 e0 d8 24 00 00 00 00 00 - 00 00 00 00 04 fc 55 03 ..$...........U. 000000000355fb14 a7 5f 9f 71 c8 05 00 00 - cc 05 00 00 00 00 00 00 ._.q............ 000000000355fb24 04 00 00 00 80 fd 55 03 - b0 c0 1d 00 7c fc 55 03 ......U.....|.U. 000000000355fb34 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000355fb44 01 00 00 00 80 0f 05 fd - ff ff ff ff 00 00 00 00 ................ 000000000355fb54 00 c0 fa 7f 1c 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000355fb64 00 00 00 00 fc fd 90 7c - 00 00 00 00 00 00 00 00 .......|........ 000000000355fb74 38 fc 55 03 44 fb 55 03 - 01 00 00 00 1c 00 00 00 8.U.D.U......... 000000000355fb84 e0 d8 24 00 c0 fb 55 03 - 7c fc 55 03 80 fd 55 03 ..$...U.|.U...U. 000000000355fb94 00 00 00 00 a4 fb 55 03 - 00 00 00 00 00 00 00 00 ......U......... 000000000355fba4 80 0f 05 fd ff ff ff ff - 01 00 00 00 00 00 00 00 ................ 000000000355fbb4 cc 05 00 00 19 00 00 00 - b9 7c 92 7c 04 01 00 00 .........|.|.... 000000000355fbc4 91 79 92 7c 40 5a 09 08 - 00 00 00 00 10 5a 09 08 .y.|@Z.......Z.. 000000000355fbd4 10 00 00 00 00 00 00 00 - e8 03 00 00 0c fc 55 03 ..............U. 000000000355fbe4 03 7c 92 7c 8f a2 00 00 - 28 fb 55 03 0c 15 a4 71 .|.|....(.U....q 000000000355fbf4 44 fc 55 03 28 72 a1 71 - 60 2e 9f 71 ff ff ff ff D.U.(r.q`..q.... 000000000355fc04 54 fc 55 03 4f 31 a5 71 - 01 00 00 00 84 fe 55 03 T.U.O1.q......U. *----> Zrzut stanu dla wątku o identyfikatorze 0x998 <----* eax=0000006f ebx=00000000 ecx=0331b26f edx=032eca3e esi=000000b8 edi=00000000 eip=7c90e514 esp=0365ff08 ebp=0365ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\mshtml.dll - ChildEBP RetAddr Args to Child 0365ff6c 7c802542 000000b8 000927c0 00000000 ntdll!KiFastSystemCallRet 0365ff80 3f3da2c9 000000b8 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 0365ffa0 3f340774 03315ed8 3f340837 0331c2c8 mshtml!DllGetClassObject+0x8cfc4 0365ffb4 7c80b729 032d0678 03315ed8 0331c2c8 mshtml+0x10774 0365ffec 00000000 3f340829 032d0678 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000365ff08 5a df 90 7c db 25 80 7c - b8 00 00 00 00 00 00 00 Z..|.%.|........ 000000000365ff18 3c ff 65 03 00 00 00 00 - 78 06 2d 03 00 00 00 00 <.e.....x.-..... 000000000365ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000365ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 70 fd 7f .....D_......p.. 000000000365ff48 00 80 fa 7f 3c ff 65 03 - 4a c3 3d 3f 1c ff 65 03 ....<.e.J.=?..e. 000000000365ff58 4a c3 3d 3f dc ff 65 03 - b0 9a 83 7c 08 26 80 7c J.=?..e....|.&.| 000000000365ff68 00 00 00 00 80 ff 65 03 - 42 25 80 7c b8 00 00 00 ......e.B%.|.... 000000000365ff78 c0 27 09 00 00 00 00 00 - a0 ff 65 03 c9 a2 3d 3f .'........e...=? 000000000365ff88 b8 00 00 00 c0 27 09 00 - 00 00 33 3f 78 06 2d 03 .....'....3?x.-. 000000000365ff98 78 06 2d 03 78 06 2d 03 - b4 ff 65 03 74 07 34 3f x.-.x.-...e.t.4? 000000000365ffa8 d8 5e 31 03 37 08 34 3f - c8 c2 31 03 ec ff 65 03 .^1.7.4?..1...e. 000000000365ffb8 29 b7 80 7c 78 06 2d 03 - d8 5e 31 03 c8 c2 31 03 )..|x.-..^1...1. 000000000365ffc8 78 06 2d 03 00 80 fa 7f - 00 46 3c 82 c0 ff 65 03 x.-......F<...e. 000000000365ffd8 b0 5a cc 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c .Z.........|0..| 000000000365ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 000000000365fff8 78 06 2d 03 00 00 00 00 - 00 00 00 00 00 00 00 00 x.-............. 0000000003660008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003660018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003660028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003660038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xb14 <----* eax=00000000 ebx=00000000 ecx=00000248 edx=00004910 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=0375ff70 ebp=0375ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0375ffb4 7c80b729 00000000 775f7068 001611a0 ntdll!KiFastSystemCallRet 0375ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000375ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff 75 03 J..|...|......u. 000000000375ff80 b0 ff 75 03 98 ff 75 03 - a0 ff 75 03 68 70 5f 77 ..u...u...u.hp_w 000000000375ff90 a0 11 16 00 00 00 00 00 - 00 00 00 00 a8 52 09 04 .............R.. 000000000375ffa0 00 7c 28 e8 ff ff ff ff - 08 e0 3c 82 91 79 92 7c .|(.......<..y.| 000000000375ffb0 00 52 09 04 ec ff 75 03 - 29 b7 80 7c 00 00 00 00 .R....u.)..|.... 000000000375ffc0 68 70 5f 77 a0 11 16 00 - 00 00 00 00 00 70 fa 7f hp_w.........p.. 000000000375ffd0 00 46 3c 82 c0 ff 75 03 - c8 59 cb 81 ff ff ff ff .F<...u..Y...... 000000000375ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 000000000375fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000003760000 09 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003760010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003760020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003760030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003760040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003760050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003760060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003760070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003760080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003760090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000037600a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x6e8 <----* eax=03f9c2d0 ebx=c0000000 ecx=00000004 edx=03f7b718 esi=00000000 edi=71a2793c eip=7c90e514 esp=038dff7c ebp=038dffb4 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 038dffb4 7c80b729 719fd65f 00150000 00000000 ntdll!KiFastSystemCallRet 038dffec 00000000 719fd2c6 03391cc8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000038dff7c 4a da 90 7c 20 d3 9f 71 - 70 06 00 00 bc ff 8d 03 J..| ..qp....... 00000000038dff8c b0 ff 8d 03 a4 ff 8d 03 - 68 d3 9f 71 00 00 15 00 ........h..q.... 00000000038dff9c 00 00 00 00 c8 1c 39 03 - 00 00 00 00 00 00 00 00 ......9......... 00000000038dffac 00 00 9f 71 c0 b6 1d 04 - ec ff 8d 03 29 b7 80 7c ...q........)..| 00000000038dffbc 5f d6 9f 71 00 00 15 00 - 00 00 00 00 c8 1c 39 03 _..q..........9. 00000000038dffcc 00 60 fa 7f 00 46 3c 82 - c0 ff 8d 03 c8 59 cb 81 .`...F<......Y.. 00000000038dffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 00000000038dffec 00 00 00 00 00 00 00 00 - c6 d2 9f 71 c8 1c 39 03 ...........q..9. 00000000038dfffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000038e000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000038e001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000038e002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000038e003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000038e004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000038e005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000038e006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000038e007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000038e008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000038e009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000038e00ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x894 <----* eax=07db0000 ebx=00000000 ecx=07d48a40 edx=ffff0000 esi=02e8c318 edi=00000000 eip=7c90e514 esp=039dfef4 ebp=039dff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 039dff20 028ec37b 000006c8 039dff48 039dff4c ntdll!KiFastSystemCallRet 039dff58 028d4eb7 00000000 028eb4dd 02e8d7f8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 039dffac 0290ecbd 7c900000 7c80b729 02e8d8d0 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 039dffec 00000000 0290ec3e 02e8d8d0 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000039dfef4 4a da 90 7c e6 a7 80 7c - c8 06 00 00 4c ff 9d 03 J..|...|....L... 00000000039dff04 38 ff 9d 03 18 ff 9d 03 - 00 00 00 00 e4 37 7d 02 8............7}. 00000000039dff14 08 d7 e8 02 88 ac c7 02 - 96 c1 8e 02 58 ff 9d 03 ............X... 00000000039dff24 7b c3 8e 02 c8 06 00 00 - 48 ff 9d 03 4c ff 9d 03 {.......H...L... 00000000039dff34 54 ff 9d 03 ff ff ff ff - 00 00 00 00 f8 d7 e8 02 T............... 00000000039dff44 d0 d8 e8 02 00 00 00 00 - 00 00 00 00 01 00 00 00 ................ 00000000039dff54 88 ac c7 02 ac ff 9d 03 - b7 4e 8d 02 00 00 00 00 .........N...... 00000000039dff64 dd b4 8e 02 f8 d7 e8 02 - 04 38 7d 02 e0 d7 6c 01 .........8}...l. 00000000039dff74 00 00 90 7c 18 ec 90 02 - f8 d7 e8 02 18 96 13 f9 ...|............ 00000000039dff84 e0 d7 6c 01 00 00 90 7c - d0 d8 e8 02 80 ff 9d 03 ..l....|........ 00000000039dff94 80 ff 9d 03 dc ff 9d 03 - dc ff 9d 03 70 e7 90 02 ............p... 00000000039dffa4 44 e5 28 f8 00 00 00 00 - ec ff 9d 03 bd ec 90 02 D.(............. 00000000039dffb4 00 00 90 7c 29 b7 80 7c - d0 d8 e8 02 e0 d7 6c 01 ...|)..|......l. 00000000039dffc4 00 00 90 7c d0 d8 e8 02 - 00 50 fa 7f 00 46 3c 82 ...|.....P...F<. 00000000039dffd4 c0 ff 9d 03 c8 59 cb 81 - ff ff ff ff b0 9a 83 7c .....Y.........| 00000000039dffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 00000000039dfff4 3e ec 90 02 d0 d8 e8 02 - 00 00 00 00 00 00 00 00 >............... 00000000039e0004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000039e0014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000039e0024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x99c <----* eax=00000000 ebx=03adfea8 ecx=00000000 edx=00000000 esi=00000000 edi=7ffd7000 eip=7c90e514 esp=03adfe80 ebp=03adff1c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 03adff1c 7c80a115 00000002 03adff58 00000000 ntdll!KiFastSystemCallRet 03adff38 0285e03b 00000002 03adff58 00000000 kernel32!WaitForMultipleObjects+0x18 03adff68 027d3804 016cd8b4 7c900000 0290ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x87d9c 03adffac 0290ecbd 7c900000 7c80b729 02e8de00 GoogleToolbarDynamic_32_B31C6BD+0x3804 03adffec 00000000 0290ec3e 02e8de00 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000003adfe80 4a df 90 7c 90 95 80 7c - 02 00 00 00 a8 fe ad 03 J..|...|........ 0000000003adfe90 01 00 00 00 00 00 00 00 - 00 00 00 00 40 dd e8 02 ............@... 0000000003adfea0 40 dd e8 02 fd a0 80 7c - ec 06 00 00 e8 06 00 00 @......|........ 0000000003adfeb0 17 00 00 00 01 00 00 00 - 8c d5 4e 77 fc a8 31 03 ..........Nw..1. 0000000003adfec0 d4 fe ad 03 ac d6 4e 77 - 14 00 00 00 01 00 00 00 ......Nw........ 0000000003adfed0 00 00 00 00 00 00 00 00 - 10 00 00 00 f9 1a 4f 77 ..............Ow 0000000003adfee0 c4 0c 37 03 60 ff ad 03 - 00 70 fd 7f 00 40 fa 7f ..7.`....p...@.. 0000000003adfef0 74 b5 15 00 00 00 00 00 - a8 fe ad 03 c5 16 4f 77 t.............Ow 0000000003adff00 02 00 00 00 9c fe ad 03 - 3c 78 5f 77 9c ff ad 03 ........ Zrzut stanu dla wątku o identyfikatorze 0xa38 <----* eax=0000070c ebx=042ffe7c ecx=7ffa2000 edx=4ed472a4 esi=00000000 edi=7ffd7000 eip=7c90e514 esp=042ffe54 ebp=042ffef0 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll - ChildEBP RetAddr Args to Child 042ffef0 7e3695f9 00000002 042fff18 00000000 ntdll!KiFastSystemCallRet 042fff4c 7e3696a8 00000001 042fffac ffffffff USER32!GetLastInputInfo+0x105 042fff68 4ebd74b2 00000001 042fffac 00000000 USER32!MsgWaitForMultipleObjects+0x1f 042fffb4 7c80b729 00000000 00760040 00000011 gdiplus!GdipGetVisibleClipBoundsI+0xad4 042fffec 00000000 4ebd7456 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000042ffe54 4a df 90 7c 90 95 80 7c - 02 00 00 00 7c fe 2f 04 J..|...|....|./. 00000000042ffe64 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000042ffe74 02 00 00 00 00 00 00 00 - 0c 07 00 00 20 07 00 00 ............ ... 00000000042ffe84 cc 99 99 00 cc 99 cc 00 - cc 99 ff 00 cc cc 00 00 ................ 00000000042ffe94 cc cc 33 00 cc cc 66 00 - 14 00 00 00 01 00 00 00 ..3...f......... 00000000042ffea4 00 00 00 00 00 00 00 00 - 10 00 00 00 cc ff 66 00 ..............f. 00000000042ffeb4 cc ff 99 00 cc ff cc 00 - 00 70 fd 7f 00 20 fa 7f .........p... .. 00000000042ffec4 ff 00 33 00 00 00 00 00 - 7c fe 2f 04 ff 00 cc 00 ..3.....|./..... 00000000042ffed4 02 00 00 00 70 fe 2f 04 - ff 33 33 00 dc ff 2f 04 ....p./..33.../. 00000000042ffee4 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 4c ff 2f 04 ...|...|....L./. 00000000042ffef4 f9 95 36 7e 02 00 00 00 - 18 ff 2f 04 00 00 00 00 ..6~....../..... 00000000042fff04 ff ff ff ff 00 00 00 00 - 40 a3 37 7e a4 72 d4 4e ........@.7~.r.N 00000000042fff14 00 00 00 00 0c 07 00 00 - 20 07 00 00 ff cc 00 00 ........ ....... 00000000042fff24 ff cc 33 00 ff cc 66 00 - ff cc 99 00 ff cc cc 00 ..3...f......... 00000000042fff34 ff cc ff 00 ff ff 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000042fff44 00 20 fa 7f 20 07 00 00 - 68 ff 2f 04 a8 96 36 7e . .. ...h./...6~ 00000000042fff54 01 00 00 00 ac ff 2f 04 - ff ff ff ff ff 04 00 00 ....../......... 00000000042fff64 18 ff 2f 04 b4 ff 2f 04 - b2 74 bd 4e 01 00 00 00 ../.../..t.N.... 00000000042fff74 ac ff 2f 04 00 00 00 00 - ff ff ff ff ff 04 00 00 ../............. 00000000042fff84 40 00 76 00 11 00 00 00 - 00 00 00 00 39 ac 4f 80 @.v.........9.O. *----> Zrzut stanu dla wątku o identyfikatorze 0xfbc <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=04d2ff70 ebp=04d2ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 04d2ffb4 7c80b729 00000000 0355f8ec 0019c650 ntdll!KiFastSystemCallRet 04d2ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000004d2ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff d2 04 J..|...|........ 0000000004d2ff80 b0 ff d2 04 98 ff d2 04 - a0 ff d2 04 ec f8 55 03 ..............U. 0000000004d2ff90 50 c6 19 00 00 00 00 00 - 00 00 00 00 30 79 1b 04 P...........0y.. 0000000004d2ffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 0000000004d2ffb0 60 79 1b 04 ec ff d2 04 - 29 b7 80 7c 00 00 00 00 `y......)..|.... 0000000004d2ffc0 ec f8 55 03 50 c6 19 00 - 00 00 00 00 00 10 fa 7f ..U.P........... 0000000004d2ffd0 00 46 3c 82 c0 ff d2 04 - b0 f1 af 81 ff ff ff ff .F<............. 0000000004d2ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000004d2fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000004d30000 c1 00 00 00 73 01 00 00 - ff ee ff ee 03 10 00 00 ....s........... 0000000004d30010 01 00 00 00 00 fe 00 00 - 00 00 10 00 00 20 00 00 ............. .. 0000000004d30020 00 02 00 00 00 20 00 00 - ae 01 00 00 ff ef fd 7f ..... .......... 0000000004d30030 19 00 08 06 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004d30040 00 00 00 00 98 05 d3 04 - 0f 00 00 00 f8 ff ff ff ................ 0000000004d30050 50 00 d3 04 50 00 d3 04 - 08 06 d3 04 00 00 00 00 P...P........... 0000000004d30060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004d30070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004d30080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004d30090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000004d300a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xbf8 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=000007f8 edi=00000000 eip=7c90e514 esp=0513feb8 ebp=0513ff1c iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0513ff1c 7c802542 000007f8 0001d4c0 00000000 ntdll!KiFastSystemCallRet 0513ff30 02900ceb 000007f8 0001d4c0 00000000 kernel32!WaitForSingleObject+0x12 0513ff68 027d3804 016cae90 7c900000 0290ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x12aa4c 0513ffac 0290ecbd 7c900000 7c80b729 02eb5bd8 GoogleToolbarDynamic_32_B31C6BD+0x3804 0513ffec 00000000 0290ec3e 02eb5bd8 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000513feb8 5a df 90 7c db 25 80 7c - f8 07 00 00 00 00 00 00 Z..|.%.|........ 000000000513fec8 ec fe 13 05 ea 00 00 00 - a0 5b eb 02 00 00 00 00 .........[...... 000000000513fed8 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000513fee8 10 00 00 00 00 74 79 b8 - ff ff ff ff 00 70 fd 7f .....ty......p.. 000000000513fef8 00 d0 f9 7f ec fe 13 05 - 00 00 00 00 cc fe 13 05 ................ 000000000513ff08 88 62 e3 77 9c ff 13 05 - b0 9a 83 7c 08 26 80 7c .b.w.......|.&.| 000000000513ff18 00 00 00 00 30 ff 13 05 - 42 25 80 7c f8 07 00 00 ....0...B%.|.... 000000000513ff28 c0 d4 01 00 00 00 00 00 - 68 ff 13 05 eb 0c 90 02 ........h....... 000000000513ff38 f8 07 00 00 c0 d4 01 00 - 00 00 00 00 a0 5b eb 02 .............[.. 000000000513ff48 d8 5b eb 02 aa ed 90 02 - b6 38 7d 02 08 8b 79 bf .[.......8}...y. 000000000513ff58 00 00 00 00 a0 5b eb 02 - a4 39 7d 02 a0 5b eb 02 .....[...9}..[.. 000000000513ff68 ac ff 13 05 04 38 7d 02 - 90 ae 6c 01 00 00 90 7c .....8}...l....| 000000000513ff78 18 ec 90 02 a0 5b eb 02 - 18 96 9d ff 90 ae 6c 01 .....[........l. 000000000513ff88 00 00 90 7c d8 5b eb 02 - 80 ff 13 05 80 ff 13 05 ...|.[.......... 000000000513ff98 dc ff 13 05 dc ff 13 05 - 70 e7 90 02 44 e5 28 f8 ........p...D.(. 000000000513ffa8 00 00 00 00 ec ff 13 05 - bd ec 90 02 00 00 90 7c ...............| 000000000513ffb8 29 b7 80 7c d8 5b eb 02 - 90 ae 6c 01 00 00 90 7c )..|.[....l....| 000000000513ffc8 d8 5b eb 02 00 d0 f9 7f - 00 46 3c 82 c0 ff 13 05 .[.......F<..... 000000000513ffd8 d0 32 ec 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c .2.........|0..| 000000000513ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 3e ec 90 02 ............>... *----> Zrzut stanu dla wątku o identyfikatorze 0xa3c <----* eax=00000000 ebx=00000000 ecx=001c76e0 edx=00002000 esi=00000868 edi=00000000 eip=7c90e514 esp=0685ff08 ebp=0685ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0685ff6c 7c802542 00000868 000927c0 00000000 ntdll!KiFastSystemCallRet 0685ff80 3f3da2c9 00000868 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 0685ffa0 3f340774 032e0210 3f340837 00000020 mshtml!DllGetClassObject+0x8cfc4 0685ffb4 7c80b729 03c33760 032e0210 00000020 mshtml+0x10774 0685ffec 00000000 3f340829 03c33760 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000685ff08 5a df 90 7c db 25 80 7c - 68 08 00 00 00 00 00 00 Z..|.%.|h....... 000000000685ff18 3c ff 85 06 00 00 00 00 - 60 37 c3 03 00 00 00 00 <.......`7...... 000000000685ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000685ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 70 fd 7f .....D_......p.. 000000000685ff48 00 b0 fa 7f 3c ff 85 06 - af c2 3d 3f 1c ff 85 06 ....<.....=?.... 000000000685ff58 00 00 00 00 dc ff 85 06 - b0 9a 83 7c 08 26 80 7c ...........|.&.| 000000000685ff68 00 00 00 00 80 ff 85 06 - 42 25 80 7c 68 08 00 00 ........B%.|h... 000000000685ff78 c0 27 09 00 00 00 00 00 - a0 ff 85 06 c9 a2 3d 3f .'............=? 000000000685ff88 68 08 00 00 c0 27 09 00 - 00 00 33 3f 60 37 c3 03 h....'....3?`7.. 000000000685ff98 60 37 c3 03 60 37 c3 03 - b4 ff 85 06 74 07 34 3f `7..`7......t.4? 000000000685ffa8 10 02 2e 03 37 08 34 3f - 20 00 00 00 ec ff 85 06 ....7.4? ....... 000000000685ffb8 29 b7 80 7c 60 37 c3 03 - 10 02 2e 03 20 00 00 00 )..|`7...... ... 000000000685ffc8 60 37 c3 03 00 b0 fa 7f - 00 46 3c 82 c0 ff 85 06 `7.......F<..... 000000000685ffd8 b0 a0 b0 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 000000000685ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 000000000685fff8 60 37 c3 03 00 00 00 00 - 00 00 00 00 00 00 00 00 `7.............. 0000000006860008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006860018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006860028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006860038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x9f4 <----* eax=000000e9 ebx=00000000 ecx=00560650 edx=00000001 esi=0000087c edi=00000000 eip=7c90e514 esp=06a5ff08 ebp=06a5ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 06a5ff6c 7c802542 0000087c 000927c0 00000000 ntdll!KiFastSystemCallRet 06a5ff80 3f3da2c9 0000087c 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 06a5ffa0 3f340774 00000110 3f340837 00000000 mshtml!DllGetClassObject+0x8cfc4 06a5ffb4 7c80b729 03c33aa8 00000110 00000000 mshtml+0x10774 06a5ffec 00000000 3f340829 03c33aa8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000006a5ff08 5a df 90 7c db 25 80 7c - 7c 08 00 00 00 00 00 00 Z..|.%.||....... 0000000006a5ff18 3c ff a5 06 00 00 00 00 - a8 3a c3 03 00 00 00 00 <........:...... 0000000006a5ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006a5ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 70 fd 7f .....D_......p.. 0000000006a5ff48 00 c0 f9 7f 3c ff a5 06 - af c2 3d 3f 1c ff a5 06 ....<.....=?.... 0000000006a5ff58 00 00 00 00 dc ff a5 06 - b0 9a 83 7c 08 26 80 7c ...........|.&.| 0000000006a5ff68 00 00 00 00 80 ff a5 06 - 42 25 80 7c 7c 08 00 00 ........B%.||... 0000000006a5ff78 c0 27 09 00 00 00 00 00 - a0 ff a5 06 c9 a2 3d 3f .'............=? 0000000006a5ff88 7c 08 00 00 c0 27 09 00 - 00 00 33 3f a8 3a c3 03 |....'....3?.:.. 0000000006a5ff98 a8 3a c3 03 a8 3a c3 03 - b4 ff a5 06 74 07 34 3f .:...:......t.4? 0000000006a5ffa8 10 01 00 00 37 08 34 3f - 00 00 00 00 ec ff a5 06 ....7.4?........ 0000000006a5ffb8 29 b7 80 7c a8 3a c3 03 - 10 01 00 00 00 00 00 00 )..|.:.......... 0000000006a5ffc8 a8 3a c3 03 00 c0 f9 7f - 00 46 3c 82 c0 ff a5 06 .:.......F<..... 0000000006a5ffd8 e8 a0 b0 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 0000000006a5ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 0000000006a5fff8 a8 3a c3 03 00 00 00 00 - 00 00 00 00 00 00 00 00 .:.............. 0000000006a60008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006a60018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006a60028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006a60038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xed0 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=06b5ff70 ebp=06b5ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 06b5ffb4 7c80b729 00000000 0355f8ec 03f34a98 ntdll!KiFastSystemCallRet 06b5ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000006b5ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff b5 06 J..|...|........ 0000000006b5ff80 b0 ff b5 06 98 ff b5 06 - a0 ff b5 06 ec f8 55 03 ..............U. 0000000006b5ff90 98 4a f3 03 00 00 00 00 - 00 00 00 00 10 5a 09 08 .J...........Z.. 0000000006b5ffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 0000000006b5ffb0 40 5a 09 08 ec ff b5 06 - 29 b7 80 7c 00 00 00 00 @Z......)..|.... 0000000006b5ffc0 ec f8 55 03 98 4a f3 03 - 00 00 00 00 00 b0 f9 7f ..U..J.......... 0000000006b5ffd0 00 46 3c 82 c0 ff b5 06 - c0 45 ef 81 ff ff ff ff .F<......E...... 0000000006b5ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000006b5fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000006b60000 17 ef c8 ca 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006b60010 dd 45 2e d7 01 00 01 00 - 65 2c 8b 03 4c 00 65 00 .E......e,..L.e. 0000000006b60020 e9 29 e6 1b a4 00 17 00 - 4c 06 82 3b 64 00 64 00 .)......L..;d.d. 0000000006b60030 29 d3 bd 46 2c 00 22 00 - 50 cd 02 2d 01 00 01 00 )..F,.".P..-.... 0000000006b60040 00 c0 df e1 1e 00 1e 00 - 59 73 ae b4 01 00 01 00 ........Ys...... 0000000006b60050 58 8f 60 c2 7d 00 b2 00 - 0e 65 b2 88 20 03 58 02 X.`.}....e.. .X. 0000000006b60060 ef 63 c4 c2 01 00 01 00 - 6e 1b a1 15 64 00 4b 00 .c......n...d.K. 0000000006b60070 62 2e 69 ef 01 00 01 00 - b0 59 47 e8 01 00 01 00 b.i......YG..... 0000000006b60080 85 f0 13 5e 87 00 65 00 - e3 55 97 89 18 01 e6 00 ...^..e..U...... 0000000006b60090 a5 8d 50 97 14 00 0a 00 - 15 90 fd 1b b4 00 78 00 ..P...........x. 0000000006b600a0 13 fc 6c f3 87 00 65 00 - 0e 97 4a 67 73 00 46 00 ..l...e...Jgs.F. *----> Zrzut stanu dla wątku o identyfikatorze 0xad8 <----* eax=35c51a30 ebx=03f58d1c ecx=7c936d80 edx=7c936d2b esi=00000000 edi=001cae08 eip=7c90e514 esp=073fff10 ebp=073fff3c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\Dxtrans.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 073fff3c 35c51a76 0000078c 073fff8c 073fff90 ntdll!KiFastSystemCallRet 073fffb4 7c80b729 03f58d1c 001cae08 016c6b88 Dxtrans+0x1a76 073fffec 00000000 35c51a30 03f58d1c 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000073fff10 4a da 90 7c e6 a7 80 7c - 8c 07 00 00 90 ff 3f 07 J..|...|......?. 00000000073fff20 54 ff 3f 07 34 ff 3f 07 - 00 00 00 00 88 6b 6c 01 T.?.4.?......kl. 00000000073fff30 08 ae 1c 00 1c 8d f5 03 - 02 00 00 00 b4 ff 3f 07 ..............?. 00000000073fff40 76 1a c5 35 8c 07 00 00 - 8c ff 3f 07 90 ff 3f 07 v..5......?...?. 00000000073fff50 94 ff 3f 07 ff ff ff ff - 0b fa 77 ff 08 ae 1c 00 ..?.......w..... 00000000073fff60 88 6b 6c 01 1c 8d f5 03 - 00 00 00 00 c8 52 4e 80 .kl..........RN. 00000000073fff70 e7 12 6f 80 b0 0c f7 81 - 50 ad bc f3 20 9a ed e1 ..o.....P... ... 00000000073fff80 e0 79 bd 81 01 10 b0 81 - 00 00 00 00 e8 27 ef 81 .y...........'.. 00000000073fff90 39 ac 4f 80 00 00 00 00 - 00 00 00 00 1c 8d f5 03 9.O............. 00000000073fffa0 00 00 00 00 58 ff 3f 07 - dc ff 3f 07 dd 7f c7 35 ....X.?...?....5 00000000073fffb0 00 00 00 00 ec ff 3f 07 - 29 b7 80 7c 1c 8d f5 03 ......?.)..|.... 00000000073fffc0 08 ae 1c 00 88 6b 6c 01 - 1c 8d f5 03 00 a0 f9 7f .....kl......... 00000000073fffd0 00 46 3c 82 c0 ff 3f 07 - 28 0b 30 82 ff ff ff ff .F<...?.(.0..... 00000000073fffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 00000000073ffff0 00 00 00 00 30 1a c5 35 - 1c 8d f5 03 00 00 00 00 ....0..5........ 0000000007400000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007400010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007400020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007400030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007400040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x808 <----* eax=35c51a30 ebx=03f58d1c ecx=7c936d80 edx=7c936d2b esi=00000000 edi=001cae08 eip=7c90e514 esp=074fff10 ebp=074fff3c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 074fff3c 35c51a76 0000078c 074fff8c 074fff90 ntdll!KiFastSystemCallRet 074fffb4 7c80b729 03f58d1c 001cae08 016c6b88 Dxtrans+0x1a76 074fffec 00000000 35c51a30 03f58d1c 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000074fff10 4a da 90 7c e6 a7 80 7c - 8c 07 00 00 90 ff 4f 07 J..|...|......O. 00000000074fff20 54 ff 4f 07 34 ff 4f 07 - 00 00 00 00 88 6b 6c 01 T.O.4.O......kl. 00000000074fff30 08 ae 1c 00 1c 8d f5 03 - 02 00 00 00 b4 ff 4f 07 ..............O. 00000000074fff40 76 1a c5 35 8c 07 00 00 - 8c ff 4f 07 90 ff 4f 07 v..5......O...O. 00000000074fff50 94 ff 4f 07 ff ff ff ff - 0b fa 07 ff 08 ae 1c 00 ..O............. 00000000074fff60 88 6b 6c 01 1c 8d f5 03 - 00 00 00 00 c8 52 4e 80 .kl..........RN. 00000000074fff70 e7 12 6f 80 08 ad b0 81 - 50 9d b3 f4 e0 51 b9 81 ..o.....P....Q.. 00000000074fff80 78 88 ef 81 01 88 ef 81 - 00 00 00 00 e8 27 ef 81 x............'.. 00000000074fff90 39 ac 4f 80 00 00 00 00 - 00 00 00 00 1c 8d f5 03 9.O............. 00000000074fffa0 00 00 00 00 58 ff 4f 07 - dc ff 4f 07 dd 7f c7 35 ....X.O...O....5 00000000074fffb0 00 00 00 00 ec ff 4f 07 - 29 b7 80 7c 1c 8d f5 03 ......O.)..|.... 00000000074fffc0 08 ae 1c 00 88 6b 6c 01 - 1c 8d f5 03 00 90 f9 7f .....kl......... 00000000074fffd0 00 46 3c 82 c0 ff 4f 07 - f0 0a 30 82 ff ff ff ff .F<...O...0..... 00000000074fffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 00000000074ffff0 00 00 00 00 30 1a c5 35 - 1c 8d f5 03 00 00 00 00 ....0..5........ 0000000007500000 73 20 27 43 72 42 61 72 - 6e 27 0d 0a 09 7b 0d 0a s 'CrBarn'...{.. 0000000007500010 09 09 43 4c 53 49 44 20 - 3d 20 73 20 27 7b 43 33 ..CLSID = s '{C3 0000000007500020 42 44 46 37 34 30 2d 30 - 42 35 38 2d 31 31 64 32 BDF740-0B58-11d2 0000000007500030 2d 41 34 38 34 2d 30 30 - 43 30 34 46 38 45 46 42 -A484-00C04F8EFB 0000000007500040 36 39 7d 27 0d 0a 09 7d - 0d 0a 09 44 58 49 6d 61 69}'...}...DXIma *----> Zrzut stanu dla wątku o identyfikatorze 0x8fc <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=02e8c318 edi=00000000 eip=7c90e514 esp=07a7fef4 ebp=07a7ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 07a7ff20 028ec37b 000006c8 07a7ff48 07a7ff4c ntdll!KiFastSystemCallRet 07a7ff58 028d4eb7 00000001 028eb4dd 02e8d820 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 07a7ffac 0290ecbd 7c900000 7c80b729 02e8d8d0 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 07a7ffec 00000000 0290ec3e 02e8d8d0 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000007a7fef4 4a da 90 7c e6 a7 80 7c - c8 06 00 00 4c ff a7 07 J..|...|....L... 0000000007a7ff04 38 ff a7 07 18 ff a7 07 - 00 00 00 00 18 c3 e8 02 8............... 0000000007a7ff14 58 ff a7 07 44 b4 8e 02 - 2f 00 00 00 58 ff a7 07 X...D.../...X... 0000000007a7ff24 7b c3 8e 02 c8 06 00 00 - 48 ff a7 07 4c ff a7 07 {.......H...L... 0000000007a7ff34 54 ff a7 07 ff ff ff ff - 00 00 00 00 20 d8 e8 02 T........... ... 0000000007a7ff44 d0 d8 e8 02 00 00 00 00 - 00 00 00 00 b6 38 7d 02 .............8}. 0000000007a7ff54 00 00 00 00 ac ff a7 07 - b7 4e 8d 02 01 00 00 00 .........N...... 0000000007a7ff64 dd b4 8e 02 20 d8 e8 02 - 04 38 7d 02 f0 fc 9d 03 .... ....8}..... 0000000007a7ff74 00 00 90 7c 18 ec 90 02 - 20 d8 e8 02 18 96 29 fd ...|.... .....). 0000000007a7ff84 f0 fc 9d 03 00 00 90 7c - d0 d8 e8 02 80 ff a7 07 .......|........ 0000000007a7ff94 80 ff a7 07 dc ff a7 07 - dc ff a7 07 70 e7 90 02 ............p... 0000000007a7ffa4 44 e5 28 f8 00 00 00 00 - ec ff a7 07 bd ec 90 02 D.(............. 0000000007a7ffb4 00 00 90 7c 29 b7 80 7c - d0 d8 e8 02 f0 fc 9d 03 ...|)..|........ 0000000007a7ffc4 00 00 90 7c d0 d8 e8 02 - 00 40 f9 7f 00 46 3c 82 ...|.....@...F<. 0000000007a7ffd4 c0 ff a7 07 c8 59 cb 81 - ff ff ff ff b0 9a 83 7c .....Y.........| 0000000007a7ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 0000000007a7fff4 3e ec 90 02 d0 d8 e8 02 - 00 00 00 00 00 00 00 00 >............... 0000000007a80004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007a80014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007a80024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x950 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=02e8c318 edi=00000000 eip=7c90e514 esp=07b7fef4 ebp=07b7ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 07b7ff20 028ec37b 000006c8 07b7ff48 07b7ff4c ntdll!KiFastSystemCallRet 07b7ff58 028d4eb7 00000002 028eb4dd 02e8d848 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 07b7ffac 0290ecbd 7c900000 7c80b729 02e83100 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 07b7ffec 00000000 0290ec3e 02e83100 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000007b7fef4 4a da 90 7c e6 a7 80 7c - c8 06 00 00 4c ff b7 07 J..|...|....L... 0000000007b7ff04 38 ff b7 07 18 ff b7 07 - 00 00 00 00 e4 37 7d 02 8............7}. 0000000007b7ff14 08 d7 e8 02 78 b7 ea 02 - 96 c1 8e 02 58 ff b7 07 ....x.......X... 0000000007b7ff24 7b c3 8e 02 c8 06 00 00 - 48 ff b7 07 4c ff b7 07 {.......H...L... 0000000007b7ff34 54 ff b7 07 ff ff ff ff - 00 00 00 00 48 d8 e8 02 T...........H... 0000000007b7ff44 00 31 e8 02 00 00 00 00 - 00 00 00 00 01 38 7d 02 .1...........8}. 0000000007b7ff54 78 b7 ea 02 ac ff b7 07 - b7 4e 8d 02 02 00 00 00 x........N...... 0000000007b7ff64 dd b4 8e 02 48 d8 e8 02 - 04 38 7d 02 f0 fc 9d 03 ....H....8}..... 0000000007b7ff74 00 00 90 7c 18 ec 90 02 - 48 d8 e8 02 18 96 39 fd ...|....H.....9. 0000000007b7ff84 f0 fc 9d 03 00 00 90 7c - 00 31 e8 02 80 ff b7 07 .......|.1...... 0000000007b7ff94 80 ff b7 07 dc ff b7 07 - dc ff b7 07 70 e7 90 02 ............p... 0000000007b7ffa4 44 e5 28 f8 00 00 00 00 - ec ff b7 07 bd ec 90 02 D.(............. 0000000007b7ffb4 00 00 90 7c 29 b7 80 7c - 00 31 e8 02 f0 fc 9d 03 ...|)..|.1...... 0000000007b7ffc4 00 00 90 7c 00 31 e8 02 - 00 30 f9 7f 00 46 3c 82 ...|.1...0...F<. 0000000007b7ffd4 c0 ff b7 07 78 a3 f8 81 - ff ff ff ff b0 9a 83 7c ....x..........| 0000000007b7ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 0000000007b7fff4 3e ec 90 02 00 31 e8 02 - 00 00 00 00 00 00 00 00 >....1.......... 0000000007b80004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007b80014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007b80024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x9bc <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=02e8c318 edi=00000000 eip=7c90e514 esp=07c7fef4 ebp=07c7ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 07c7ff20 028ec37b 000006c8 07c7ff48 07c7ff4c ntdll!KiFastSystemCallRet 07c7ff58 028d4eb7 00000003 028eb4dd 02e8d870 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 07c7ffac 0290ecbd 7c900000 7c80b729 02eb9b28 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 07c7ffec 00000000 0290ec3e 02eb9b28 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000007c7fef4 4a da 90 7c e6 a7 80 7c - c8 06 00 00 4c ff c7 07 J..|...|....L... 0000000007c7ff04 38 ff c7 07 18 ff c7 07 - 00 00 00 00 e4 37 7d 02 8............7}. 0000000007c7ff14 08 d7 e8 02 18 b7 ea 02 - 96 c1 8e 02 58 ff c7 07 ............X... 0000000007c7ff24 7b c3 8e 02 c8 06 00 00 - 48 ff c7 07 4c ff c7 07 {.......H...L... 0000000007c7ff34 54 ff c7 07 ff ff ff ff - 00 00 00 00 70 d8 e8 02 T...........p... 0000000007c7ff44 28 9b eb 02 00 00 00 00 - 00 00 00 00 01 38 7d 02 (............8}. 0000000007c7ff54 18 b7 ea 02 ac ff c7 07 - b7 4e 8d 02 03 00 00 00 .........N...... 0000000007c7ff64 dd b4 8e 02 70 d8 e8 02 - 04 38 7d 02 f0 fc 9d 03 ....p....8}..... 0000000007c7ff74 00 00 90 7c 18 ec 90 02 - 70 d8 e8 02 18 96 49 fd ...|....p.....I. 0000000007c7ff84 f0 fc 9d 03 00 00 90 7c - 28 9b eb 02 80 ff c7 07 .......|(....... 0000000007c7ff94 80 ff c7 07 dc ff c7 07 - dc ff c7 07 70 e7 90 02 ............p... 0000000007c7ffa4 44 e5 28 f8 00 00 00 00 - ec ff c7 07 bd ec 90 02 D.(............. 0000000007c7ffb4 00 00 90 7c 29 b7 80 7c - 28 9b eb 02 f0 fc 9d 03 ...|)..|(....... 0000000007c7ffc4 00 00 90 7c 28 9b eb 02 - 00 20 f9 7f 00 46 3c 82 ...|(.... ...F<. 0000000007c7ffd4 c0 ff c7 07 40 a3 f8 81 - ff ff ff ff b0 9a 83 7c ....@..........| 0000000007c7ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 0000000007c7fff4 3e ec 90 02 28 9b eb 02 - 00 00 00 00 4d 5a 90 00 >...(.......MZ.. 0000000007c80004 03 00 00 00 04 00 00 00 - ff ff 00 00 b8 00 00 00 ................ 0000000007c80014 00 00 00 00 40 00 00 00 - 00 00 00 00 00 00 00 00 ....@........... 0000000007c80024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xee0 <----* eax=00000000 ebx=00000000 ecx=00000004 edx=00000000 esi=03e7fba8 edi=0503451c eip=3f618020 esp=050344f8 ebp=05034504 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: mshtml!Ordinal103 3f618007 c075ee8b shl byte ptr [ebp-0x12],0x8b 3f61800b 40 inc eax 3f61800c 70e9 jo mshtml!Ordinal103+0xdc837 (3f617ff7) 3f61800e 16 push ss 3f61800f 94 xchg eax,esp 3f618010 e3ff jecxz mshtml!Ordinal103+0xdc851 (3f618011) 3f618012 8bc6 mov eax,esi 3f618014 e8b6ff1f00 call mshtml+0x4e7fcf (3f817fcf) 3f618019 8bf0 mov esi,eax 3f61801b e9b593e3ff jmp mshtml!DllGetClassObject+0x1040d0 (3f4513d5) BŁĄD ->3f618020 395314 cmp [ebx+0x14],edx ds:0023:00000014=???????? 3f618023 743a jz mshtml!Ordinal103+0xdc89f (3f61805f) 3f618025 8b4e38 mov ecx,[esi+0x38] 3f618028 89550c mov [ebp+0xc],edx 3f61802b 395004 cmp [eax+0x4],edx 3f61802e 750d jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618030 395018 cmp [eax+0x18],edx 3f618033 7508 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618035 394838 cmp [eax+0x38],ecx 3f618038 7503 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f61803a 89450c mov [ebp+0xc],eax *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\jscript.dll - ChildEBP RetAddr Args to Child 05034504 3f45135d 050345c8 05034538 0503451c mshtml!Ordinal103+0xdc860 0503453c 3f452257 07e72850 03e80130 03ecec84 mshtml!DllGetClassObject+0x104058 0503460c 3f4ae631 07e72850 03e80130 00000000 mshtml!DllGetClassObject+0x104f52 05034640 3f4ac39b 07e72850 03e80130 00000000 mshtml!Ordinal104+0xccc1 05034774 3f4abe87 07e72850 03e80130 00000000 mshtml!Ordinal104+0xaa2b 050347a4 3f4ac898 07e72850 03e80130 00000000 mshtml!Ordinal104+0xa517 05034864 3f4a93b9 00000000 03e80130 00000000 mshtml!Ordinal104+0xaf28 05034984 3f4aab8a 03eb0190 040597a0 03e80130 mshtml!Ordinal104+0x7a49 05034a58 3f4ab0c0 03eb0190 040597a0 03ecb5b8 mshtml!Ordinal104+0x921a 05034af8 3f4a9b96 03eb0190 040597a0 03e80130 mshtml!Ordinal104+0x9750 05034b4c 3f4ace27 07e72850 03e80130 00000000 mshtml!Ordinal104+0x8226 05034bf0 3f4af5b7 07e72850 03e80130 00000000 mshtml!Ordinal104+0xb4b7 05034cc8 3f4aeaba 07e72850 00000000 00000001 mshtml!Ordinal104+0xdc47 05034ddc 3f4ae8be 07e72850 00000000 05034f0c mshtml!Ordinal104+0xd14a 05034e28 3f4a7c15 07e72850 07e780a0 00000000 mshtml!Ordinal104+0xcf4e 05034f88 3f4af97b 07e72850 03e80130 07e780a0 mshtml!Ordinal104+0x62a5 05034ffc 3f4af0c1 03e80130 00000000 00000000 mshtml!Ordinal104+0xe00b 050350b8 3f4b51c0 03e80130 00000000 05035168 mshtml!Ordinal104+0xd751 050351a0 3f4b66b9 03e80130 00000000 00000001 mshtml!Ordinal104+0x13850 050351d4 3f4b7564 3fffffff 00000000 00000001 mshtml!Ordinal104+0x14d49 0503521c 3f4b7414 03e80130 00000000 050352f8 mshtml!Ordinal104+0x15bf4 050352fc 3f4b737d 03e80130 00000000 00000000 mshtml!Ordinal104+0x15aa4 05035344 3f4b7198 03e80130 0503536c 00000000 mshtml!Ordinal104+0x15a0d 05035390 3f4b5f74 03e80130 00000000 03c341e8 mshtml!Ordinal104+0x15828 05035504 3f4b5e15 03e80130 00000000 03c341e8 mshtml!Ordinal104+0x14604 05035570 3f4b5c85 03e80130 00000000 03c341e8 mshtml!Ordinal104+0x144a5 05035650 3f4b629e 03e80130 050356f8 050358a8 mshtml!Ordinal104+0x14315 05035794 3f4b6b24 03e80130 00000000 03c341e8 mshtml!Ordinal104+0x1492e 050358cc 3f4d5540 07e72850 03c341e8 00000001 mshtml!Ordinal104+0x151b4 050358f0 3f4d54ed 07e72850 03eafb90 03c341e8 mshtml!Ordinal104+0x33bd0 05035994 3f4ab7ce 00c341e8 03f7be80 050359bb mshtml!Ordinal104+0x33b7d 05035b04 3f3eb947 05035cc8 05035c60 00000000 mshtml!Ordinal104+0x9e5e 05035c3c 3f3fe4ee 03f7be80 00000000 00000000 mshtml!DllGetClassObject+0x9e642 05035d38 3f5cd0c0 00100000 05035d90 041b9c38 mshtml!DllGetClassObject+0xb11e9 05035d4c 3f3d8c8d 05035d90 05035d90 3f3e1fff mshtml!Ordinal103+0x91900 05035d6c 3f3d8e57 05035d90 04062de0 00000000 mshtml!DllGetClassObject+0x8b988 05035dc4 3f3d6e02 05035e58 002330d8 05035e58 mshtml!DllGetClassObject+0x8bb52 05035e1c 3f3d6d75 03f7a5e0 00000000 0023319c mshtml!DllGetClassObject+0x89afd 05035e44 3f3e1efa 05035e58 002332c8 3f3a10a0 mshtml!DllGetClassObject+0x89a70 05035e8c 3f3b53ca 0000000f 00000000 00000000 mshtml!DllGetClassObject+0x94bf5 05035eb0 3f5587e5 08016988 00000001 0524f198 mshtml!DllGetClassObject+0x680c5 05035edc 3f5588d2 08016988 0526f398 00001200 mshtml!Ordinal103+0x1d025 05035f00 3f512165 08016988 0524f198 0526f398 mshtml!Ordinal103+0x1d112 05035f20 3f41ab53 08016988 0526f398 07fd2388 mshtml!Ordinal104+0x707f5 05035f94 3f426bf1 08016988 800103f2 00000002 mshtml!DllGetClassObject+0xcd84e 05035fe4 3f4328c8 08016988 800103f2 00000002 mshtml!DllGetClassObject+0xd98ec 05036010 3f41a551 08016988 800103f2 00000002 mshtml!DllGetClassObject+0xe55c3 05036060 3fc53a9a 07fd2358 800103f2 00000002 mshtml!DllGetClassObject+0xcd24c 050360a0 3fc539e6 0523f218 800103f2 00000409 jscript!DllGetClassObject+0xc855 050360dc 3fc54f26 0523f218 00000409 00000002 jscript!DllGetClassObject+0xc7a1 0503619c 3fc54e80 800103f2 00000002 0524f190 jscript!DllGetClassObject+0xdce1 050361d0 3fc54b96 0523f218 050362f8 00000002 jscript!DllGetClassObject+0xdc3b 05036368 3fc513ab 05036380 050367a0 050367a0 jscript!DllGetClassObject+0xd951 05036450 3fc512e5 050367a0 00000003 0524f240 jscript!DllGetClassObject+0xa166 0503649c 3fc52a05 050367a0 00000003 0524f240 jscript!DllGetClassObject+0xa0a0 05036520 3fc528c5 05254830 0523f218 00000003 jscript!DllGetClassObject+0xb7c0 05036554 3fc543fc 0523f218 00000000 00000003 jscript!DllGetClassObject+0xb680 05036594 3fc524c1 0523f218 05036604 052545e0 jscript!DllGetClassObject+0xd1b7 050365d0 3fc52d6d 0523f218 05036604 00000003 jscript!DllGetClassObject+0xb27c 0503661c 3fc54235 0523f218 00000003 050367a0 jscript!DllGetClassObject+0xbb28 0503664c 3fc53114 0523f218 00000000 00000003 jscript!DllGetClassObject+0xcff0 050367e8 3fc513ab 05036800 05036c20 05036c20 jscript!DllGetClassObject+0xbecf 050368d0 3fc512e5 05036c20 00000002 0524f340 jscript!DllGetClassObject+0xa166 0503691c 3fc52a05 05036c20 00000002 0524f340 jscript!DllGetClassObject+0xa0a0 050369a0 3fc528c5 05242e90 0523f218 00000003 jscript!DllGetClassObject+0xb7c0 050369d4 3fc543fc 0523f218 00000000 00000003 jscript!DllGetClassObject+0xb680 05036a14 3fc524c1 0523f218 05036a84 02540f28 jscript!DllGetClassObject+0xd1b7 05036a50 3fc52d6d 0523f218 05036a84 00000003 jscript!DllGetClassObject+0xb27c 05036a9c 3fc54235 0523f218 00000003 05036c20 jscript!DllGetClassObject+0xbb28 05036acc 3fc53114 0523f218 00000000 00000003 jscript!DllGetClassObject+0xcff0 05036c68 3fc513ab 05036c80 050370a0 050370a0 jscript!DllGetClassObject+0xbecf 05036d50 3fc512e5 050370a0 00000000 0524f420 jscript!DllGetClassObject+0xa166 05036d9c 3fc52a05 050370a0 00000000 0524f420 jscript!DllGetClassObject+0xa0a0 05036e20 3fc528c5 0524a718 0523f218 00000001 jscript!DllGetClassObject+0xb7c0 05036e54 3fc543fc 0523f218 00000000 00000001 jscript!DllGetClassObject+0xb680 05036e94 3fc524c1 0523f218 05036f04 05346c20 jscript!DllGetClassObject+0xd1b7 05036ed0 3fc52d6d 0523f218 05036f04 00000001 jscript!DllGetClassObject+0xb27c 05036f1c 3fc54235 0523f218 00000001 050370a0 jscript!DllGetClassObject+0xbb28 05036f4c 3fc53114 0523f218 00000000 00000001 jscript!DllGetClassObject+0xcff0 050370e8 3fc513ab 05037100 05037688 05037688 jscript!DllGetClassObject+0xbecf 050371d0 3fc512e5 05037688 00000002 0524f4d0 jscript!DllGetClassObject+0xa166 0503721c 3fc52a05 05037688 00000002 0524f4d0 jscript!DllGetClassObject+0xa0a0 050372a0 3fc528c5 053469d8 0523f218 00000001 jscript!DllGetClassObject+0xb7c0 050372d4 3fc73b5f 0523f218 00000000 00000001 jscript!DllGetClassObject+0xb680 0503731c 3fc54327 0523f218 050373c0 05037688 jscript!DllCanUnloadNow+0x103df 05037384 3fc52a05 05037688 00000003 0524f4d0 jscript!DllGetClassObject+0xd0e2 05037408 3fc528c5 025abec8 0523f218 00000003 jscript!DllGetClassObject+0xb7c0 0503743c 3fc543fc 0523f218 00000000 00000003 jscript!DllGetClassObject+0xb680 0503747c 3fc524c1 0523f218 050374ec 053469d8 jscript!DllGetClassObject+0xd1b7 050374b8 3fc52d6d 0523f218 050374ec 00000003 jscript!DllGetClassObject+0xb27c 05037504 3fc54235 0523f218 00000003 05037688 jscript!DllGetClassObject+0xbb28 05037534 3fc53114 0523f218 00000000 00000003 jscript!DllGetClassObject+0xcff0 050376d0 3fc513ab 050376e8 05037b08 05037b08 jscript!DllGetClassObject+0xbecf 050377b8 3fc512e5 05037b08 00000003 0524f5c0 jscript!DllGetClassObject+0xa166 05037804 3fc52a05 05037b08 00000003 0524f5c0 jscript!DllGetClassObject+0xa0a0 05037888 3fc528c5 0525a858 0523f218 00000003 jscript!DllGetClassObject+0xb7c0 050378bc 3fc543fc 0523f218 00000000 00000003 jscript!DllGetClassObject+0xb680 050378fc 3fc524c1 0523f218 0503796c 02540f28 jscript!DllGetClassObject+0xd1b7 05037938 3fc52d6d 0523f218 0503796c 00000003 jscript!DllGetClassObject+0xb27c 05037984 3fc54235 0523f218 00000003 05037b08 jscript!DllGetClassObject+0xbb28 *----> Zrzut stosu <----* 00000000050344f8 c8 45 03 05 50 28 e7 07 - 00 00 00 00 3c 45 03 05 .E..P(...... Zrzut stanu dla wątku o identyfikatorze 0xcbc <----* eax=00000000 ebx=03defea8 ecx=00000000 edx=00000000 esi=00000000 edi=7ffd7000 eip=7c90e514 esp=03defe80 ebp=03deff1c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 03deff1c 7c80a115 00000002 03deff58 00000000 ntdll!KiFastSystemCallRet 03deff38 0285e03b 00000002 03deff58 00000000 kernel32!WaitForMultipleObjects+0x18 03deff68 027d3804 0503d8b4 7c900000 0290ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x87d9c 03deffac 0290ecbd 7c900000 7c80b729 02eb20c0 GoogleToolbarDynamic_32_B31C6BD+0x3804 03deffec 00000000 0290ec3e 02eb20c0 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000003defe80 4a df 90 7c 90 95 80 7c - 02 00 00 00 a8 fe de 03 J..|...|........ 0000000003defe90 01 00 00 00 00 00 00 00 - 00 00 00 00 48 b8 ea 02 ............H... 0000000003defea0 48 b8 ea 02 fd a0 80 7c - 5c 0a 00 00 58 0a 00 00 H......|\...X... 0000000003defeb0 17 00 00 00 01 00 00 00 - 8c d5 4e 77 84 ae 31 03 ..........Nw..1. 0000000003defec0 d4 fe de 03 ac d6 4e 77 - 14 00 00 00 01 00 00 00 ......Nw........ 0000000003defed0 00 00 00 00 00 00 00 00 - 10 00 00 00 f9 1a 4f 77 ..............Ow 0000000003defee0 14 0f 37 03 60 ff de 03 - 00 70 fd 7f 00 30 fa 7f ..7.`....p...0.. 0000000003defef0 4c b3 15 00 00 00 00 00 - a8 fe de 03 c5 16 4f 77 L.............Ow 0000000003deff00 02 00 00 00 9c fe de 03 - 3c 78 5f 77 9c ff de 03 ........ Zrzut stanu dla wątku o identyfikatorze 0xac <----* eax=72cb30e8 ebx=086efef8 ecx=000000df edx=00150000 esi=00000000 edi=7ffd7000 eip=7c90e514 esp=086efed0 ebp=086eff6c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\wdmaud.drv - ChildEBP RetAddr Args to Child 086eff6c 7c80a115 00000002 086effa4 00000000 ntdll!KiFastSystemCallRet 086eff88 72cb312a 00000002 086effa4 00000000 kernel32!WaitForMultipleObjects+0x18 086effb4 7c80b729 00000000 00150280 001c76e0 wdmaud!midMessage+0x348 086effec 00000000 72cb30e8 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000086efed0 4a df 90 7c 90 95 80 7c - 02 00 00 00 f8 fe 6e 08 J..|...|......n. 00000000086efee0 01 00 00 00 00 00 00 00 - 00 00 00 00 80 02 15 00 ................ 00000000086efef0 00 00 00 00 00 00 00 00 - d4 0a 00 00 c0 0a 00 00 ................ 00000000086eff00 56 b8 4d 80 24 7c 06 f4 - 50 da f3 81 20 f1 df ff V.M.$|..P... ... 00000000086eff10 ec db f3 81 0d c1 4d 80 - 14 00 00 00 01 00 00 00 ......M......... 00000000086eff20 00 00 00 00 00 00 00 00 - 10 00 00 00 84 da f3 81 ................ 00000000086eff30 30 7c 06 f4 4a 8d 57 80 - 00 70 fd 7f 00 f0 f9 7f 0|..J.W..p...... 00000000086eff40 00 f0 f9 7f 00 00 00 00 - f8 fe 6e 08 00 00 00 00 ..........n..... 00000000086eff50 02 00 00 00 ec fe 6e 08 - 00 00 00 00 dc ff 6e 08 ......n.......n. 00000000086eff60 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 88 ff 6e 08 ...|...|......n. 00000000086eff70 15 a1 80 7c 02 00 00 00 - a4 ff 6e 08 00 00 00 00 ...|......n..... 00000000086eff80 ff ff ff ff 00 00 00 00 - b4 ff 6e 08 2a 31 cb 72 ..........n.*1.r 00000000086eff90 02 00 00 00 a4 ff 6e 08 - 00 00 00 00 ff ff ff ff ......n......... 00000000086effa0 e0 76 1c 00 d4 0a 00 00 - c0 0a 00 00 00 00 00 00 .v.............. 00000000086effb0 1a da 90 7c ec ff 6e 08 - 29 b7 80 7c 00 00 00 00 ...|..n.)..|.... 00000000086effc0 80 02 15 00 e0 76 1c 00 - 00 00 00 00 00 f0 f9 7f .....v.......... 00000000086effd0 00 46 3c 82 c0 ff 6e 08 - 00 78 27 82 ff ff ff ff .F<...n..x'..... 00000000086effe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 00000000086efff0 00 00 00 00 e8 30 cb 72 - 00 00 00 00 00 00 00 00 .....0.r........ 00000000086f0000 08 00 00 00 00 01 00 03 - ee ff ee ff 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x684 <----* eax=0000059d ebx=00000b00 ecx=00000510 edx=041d5e78 esi=0777ff98 edi=7e37772b eip=7c90e514 esp=0777ff54 ebp=0777ff78 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WINMM.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0777ff78 76b24e31 0777ff98 00000000 00000000 ntdll!KiFastSystemCallRet 0777ffb4 7c80b729 00000b00 00000200 0000002b WINMM!PlaySoundW+0x7e2 0777ffec 00000000 76b24dca 00000b00 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000777ff54 be 91 36 7e 6b 77 37 7e - 98 ff 77 07 00 00 00 00 ..6~kw7~..w..... 000000000777ff64 00 00 00 00 00 00 00 00 - 00 0b 00 00 2b 77 37 7e ............+w7~ 000000000777ff74 00 00 00 00 b4 ff 77 07 - 31 4e b2 76 98 ff 77 07 ......w.1N.v..w. 000000000777ff84 00 00 00 00 00 00 00 00 - 00 00 00 00 00 02 00 00 ................ 000000000777ff94 2b 00 00 00 6a 02 1c 00 - bc 03 00 00 80 01 e5 07 +...j........... 000000000777ffa4 00 00 00 00 99 bf b1 00 - 3f 01 00 00 a6 01 00 00 ........?....... 000000000777ffb4 ec ff 77 07 29 b7 80 7c - 00 0b 00 00 00 02 00 00 ..w.)..|........ 000000000777ffc4 2b 00 00 00 00 0b 00 00 - 00 00 fa 7f 00 46 3c 82 +............F<. 000000000777ffd4 c0 ff 77 07 80 01 31 82 - ff ff ff ff b0 9a 83 7c ..w...1........| 000000000777ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000777fff4 ca 4d b2 76 00 0b 00 00 - 00 00 00 00 00 00 00 00 .M.v............ 0000000007780004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007780014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007780024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007780034 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007780044 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007780054 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007780064 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007780074 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007780084 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xd40 <----* eax=0801c230 ebx=00000000 ecx=00000059 edx=0801c230 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=010aff70 ebp=010affb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 010affb4 7c80b729 00000000 00000014 04d2f970 ntdll!KiFastSystemCallRet 010affec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000010aff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff 0a 01 J..|...|........ 00000000010aff80 b0 ff 0a 01 98 ff 0a 01 - a0 ff 0a 01 14 00 00 00 ................ 00000000010aff90 70 f9 d2 04 00 00 00 00 - 00 00 00 00 a8 52 09 04 p............R.. 00000000010affa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 00000000010affb0 d0 b9 fa 07 ec ff 0a 01 - 29 b7 80 7c 00 00 00 00 ........)..|.... 00000000010affc0 14 00 00 00 70 f9 d2 04 - 00 00 00 00 00 c0 fd 7f ....p........... 00000000010affd0 00 46 3c 82 c0 ff 0a 01 - d0 6a c5 81 ff ff ff ff .F<......j...... 00000000010affe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 00000000010afff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 00000000010b0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b00a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ Wystąpił wyjątek aplikacji: Apl: C:\Program Files\Internet Explorer\iexplore.exe (pid=3444) Kiedy: 2013-07-05 @ 11:53:54.697 Numer wyjątku: c0000005 (naruszenie praw dostępu) *----> Informacje o systemie <----* Nazwa komputera: OEM-23004A62F73 Nazwa użytkownika: oem Identyfikator sesji terminala: 0 Liczba procesorów: 1 Typ procesora: x86 Family 15 Model 2 Stepping 7 Wersja systemu Windows: 5.1 Bieżąca kompilacja: 2600 Dodatek Service Pack: 3. Bieżący typ: Uniprocessor Free Zarejestrowana organizacja: Zarejestrowany właściciel: oem *----> Lista zadań <----* 0 System Process 4 System 792 smss.exe 848 csrss.exe 876 winlogon.exe 920 services.exe 932 lsass.exe 1104 svchost.exe 1192 svchost.exe 1340 svchost.exe 1412 svchost.exe 1524 svchost.exe 1856 Explorer.EXE 1936 spoolsv.exe 572 egui.exe 704 svchost.exe 768 ACService.exe 820 ekrn.exe 812 ctfmon.exe 824 GoogleToolbarNotifier.exe 1420 mdm.exe 1488 svchost.exe 1124 alg.exe 1588 iexplore.exe 3444 iexplore.exe 2380 drwtsn32.exe *----> Lista modułów <----* (0000000000400000 - 000000000049c000: C:\Program Files\Internet Explorer\iexplore.exe (00000000016d0000 - 00000000019a2000: C:\WINDOWS\system32\xpsp2res.dll (0000000001cb0000 - 0000000001cb9000: C:\WINDOWS\system32\Normaliz.dll (0000000002390000 - 00000000023a0000: C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (00000000024c0000 - 00000000025b9000: C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (00000000026e0000 - 0000000002709000: C:\WINDOWS\system32\msls31.dll (00000000046e0000 - 00000000056ff000: C:\WINDOWS\system32\Macromed\Flash\Flash32_11_7_700_202.ocx (00000000061a0000 - 0000000006615000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll (0000000006cb0000 - 0000000006daf000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E7110F8B630E4F04.dll (0000000010000000 - 0000000010033000: C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (000000001b000000 - 000000001b00c000: C:\WINDOWS\system32\ImgUtil.dll (000000001b060000 - 000000001b06e000: C:\WINDOWS\system32\pngfilt.dll (000000001f840000 - 000000001f858000: C:\WINDOWS\system32\odbcint.dll (0000000035c50000 - 0000000035c89000: C:\WINDOWS\system32\Dxtrans.dll (0000000035cb0000 - 0000000035d07000: C:\WINDOWS\system32\Dxtmsft.dll (000000003f330000 - 000000003f8f0000: C:\WINDOWS\system32\mshtml.dll (000000003fc30000 - 000000003fce4000: C:\WINDOWS\system32\jscript.dll (000000003fcf0000 - 000000003fdd7000: C:\WINDOWS\system32\WININET.dll (0000000040390000 - 000000004057c000: C:\WINDOWS\system32\iertutil.dll (0000000040580000 - 000000004101d000: C:\WINDOWS\system32\IEFRAME.dll (0000000042a20000 - 0000000042a4f000: C:\WINDOWS\system32\iepeers.dll (00000000451f0000 - 00000000451f6000: C:\Program Files\Internet Explorer\xpshims.dll (0000000045330000 - 0000000045464000: C:\WINDOWS\system32\urlmon.dll (0000000045530000 - 0000000045570000: C:\Program Files\Internet Explorer\ieproxy.dll (000000004ebc0000 - 000000004ed6b000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll (0000000059bc0000 - 0000000059c61000: C:\WINDOWS\system32\dbghelp.dll (000000005b1d0000 - 000000005b208000: C:\WINDOWS\system32\uxtheme.dll (000000005cfe0000 - 000000005d006000: C:\WINDOWS\system32\ShimEng.dll (000000005d520000 - 000000005d5ba000: C:\WINDOWS\system32\comctl32.dll (0000000061880000 - 00000000618ba000: C:\WINDOWS\system32\OLEACC.dll (0000000066780000 - 00000000667d8000: C:\WINDOWS\system32\hnetcfg.dll (0000000068000000 - 0000000068036000: C:\WINDOWS\system32\rsaenh.dll (000000006d440000 - 000000006d44c000: C:\Program Files\Java\jre6\bin\jp2ssv.dll (000000006d970000 - 000000006d97a000: C:\WINDOWS\system32\ddrawex.dll (000000006daf0000 - 000000006db02000: C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (000000006ff40000 - 000000006ff95000: C:\WINDOWS\system32\NETAPI32.dll (0000000071620000 - 0000000071699000: C:\WINDOWS\AppPatch\AcLayers.DLL (00000000719f0000 - 0000000071a30000: C:\WINDOWS\System32\mswsock.dll (0000000071a30000 - 0000000071a38000: C:\WINDOWS\System32\wshtcpip.dll (0000000071a40000 - 0000000071a48000: C:\WINDOWS\system32\WS2HELP.dll (0000000071a50000 - 0000000071a67000: C:\WINDOWS\system32\ws2_32.dll (0000000071ac0000 - 0000000071ad2000: C:\WINDOWS\system32\MPR.dll (0000000071ba0000 - 0000000071bb3000: C:\WINDOWS\System32\SAMLIB.dll (0000000071bc0000 - 0000000071bce000: C:\WINDOWS\System32\ntlanman.dll (0000000071c30000 - 0000000071c37000: C:\WINDOWS\System32\NETRAP.dll (0000000071c40000 - 0000000071c80000: C:\WINDOWS\System32\NETUI1.dll (0000000071c80000 - 0000000071c97000: C:\WINDOWS\System32\NETUI0.dll (0000000071cf0000 - 0000000071d0b000: C:\WINDOWS\system32\actxprxy.dll (0000000072260000 - 0000000072265000: C:\WINDOWS\system32\sensapi.dll (0000000072ca0000 - 0000000072ca8000: C:\WINDOWS\system32\msacm32.drv (0000000072cb0000 - 0000000072cb9000: C:\WINDOWS\system32\wdmaud.drv (0000000072ea0000 - 0000000072f0f000: C:\WINDOWS\system32\ieapfltr.dll (0000000072f90000 - 0000000072fb6000: C:\WINDOWS\system32\WINSPOOL.DRV (00000000736f0000 - 000000007373b000: C:\WINDOWS\system32\DDRAW.dll (0000000073ac0000 - 0000000073ad5000: C:\WINDOWS\system32\mscms.dll (0000000073b30000 - 0000000073b44000: C:\WINDOWS\system32\sti.dll (0000000073b50000 - 0000000073b56000: C:\WINDOWS\system32\DCIMAN32.dll (0000000073ea0000 - 0000000073efc000: C:\WINDOWS\system32\DSOUND.dll (0000000074600000 - 000000007463d000: C:\WINDOWS\system32\ODBC32.dll (00000000746a0000 - 00000000746ca000: C:\WINDOWS\system32\msimtf.dll (00000000746d0000 - 000000007471c000: C:\WINDOWS\system32\MSCTF.dll (0000000074a90000 - 0000000074a97000: C:\WINDOWS\system32\CFGMGR32.dll (0000000075180000 - 00000000751ae000: C:\WINDOWS\system32\msctfime.ime (0000000075940000 - 0000000075a39000: C:\WINDOWS\system32\MSGINA.dll (0000000075d70000 - 0000000075e01000: C:\WINDOWS\system32\MLANG.dll (0000000075f30000 - 0000000075f37000: C:\WINDOWS\System32\drprov.dll (0000000075f40000 - 0000000075f4a000: C:\WINDOWS\System32\davclnt.dll (0000000076330000 - 0000000076340000: C:\WINDOWS\system32\WINSTA.dll (0000000076350000 - 0000000076355000: C:\WINDOWS\system32\MSIMG32.dll (0000000076360000 - 000000007637d000: C:\WINDOWS\system32\IMM32.DLL (0000000076380000 - 00000000763c9000: C:\WINDOWS\system32\comdlg32.dll (0000000076770000 - 000000007677c000: C:\WINDOWS\system32\cryptdll.dll (0000000076970000 - 0000000076996000: C:\WINDOWS\system32\ntshrui.dll (00000000769a0000 - 0000000076a55000: C:\WINDOWS\system32\USERENV.dll (0000000076b00000 - 0000000076b11000: C:\WINDOWS\system32\ATL.DLL (0000000076b20000 - 0000000076b4e000: C:\WINDOWS\system32\WINMM.dll (0000000076be0000 - 0000000076beb000: C:\WINDOWS\system32\PSAPI.DLL (0000000076c20000 - 0000000076c4e000: C:\WINDOWS\system32\WINTRUST.dll (0000000076c80000 - 0000000076ca8000: C:\WINDOWS\system32\IMAGEHLP.dll (0000000076d50000 - 0000000076d69000: C:\WINDOWS\system32\iphlpapi.dll (0000000076e70000 - 0000000076e7e000: C:\WINDOWS\system32\rtutils.dll (0000000076e80000 - 0000000076e92000: C:\WINDOWS\system32\rasman.dll (0000000076ea0000 - 0000000076ecf000: C:\WINDOWS\system32\TAPI32.dll (0000000076ed0000 - 0000000076f0c000: C:\WINDOWS\system32\RASAPI32.dll (0000000076f10000 - 0000000076f37000: C:\WINDOWS\system32\DNSAPI.dll (0000000076f40000 - 0000000076f48000: C:\WINDOWS\system32\WTSAPI32.dll (0000000076fb0000 - 0000000076fb6000: C:\WINDOWS\system32\rasadhlp.dll (0000000076fc0000 - 000000007703f000: C:\WINDOWS\system32\CLBCATQ.DLL (0000000077040000 - 000000007710d000: C:\WINDOWS\system32\COMRes.dll (0000000077110000 - 000000007719b000: C:\WINDOWS\system32\OLEAUT32.dll (00000000773c0000 - 00000000774c3000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (00000000774d0000 - 000000007760e000: C:\WINDOWS\system32\ole32.dll (0000000077910000 - 0000000077a06000: C:\WINDOWS\system32\SETUPAPI.dll (0000000077a70000 - 0000000077b06000: C:\WINDOWS\system32\CRYPT32.dll (0000000077b10000 - 0000000077b22000: C:\WINDOWS\system32\MSASN1.dll (0000000077b30000 - 0000000077b52000: C:\WINDOWS\system32\appHelp.dll (0000000077bc0000 - 0000000077bc7000: C:\WINDOWS\system32\midimap.dll (0000000077bd0000 - 0000000077be5000: C:\WINDOWS\system32\MSACM32.dll (0000000077bf0000 - 0000000077bf8000: C:\WINDOWS\system32\VERSION.dll (0000000077c00000 - 0000000077c58000: C:\WINDOWS\system32\msvcrt.dll (0000000077c60000 - 0000000077c85000: C:\WINDOWS\system32\msv1_0.dll (0000000077dc0000 - 0000000077e6c000: C:\WINDOWS\system32\ADVAPI32.dll (0000000077e70000 - 0000000077f03000: C:\WINDOWS\system32\RPCRT4.dll (0000000077f10000 - 0000000077f59000: C:\WINDOWS\system32\GDI32.dll (0000000077f60000 - 0000000077fd6000: C:\WINDOWS\system32\SHLWAPI.dll (0000000077fe0000 - 0000000077ff1000: C:\WINDOWS\system32\Secur32.dll (0000000078130000 - 00000000781cb000: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll (000000007c340000 - 000000007c396000: C:\Program Files\Java\jre6\bin\MSVCR71.dll (000000007c800000 - 000000007c8fd000: C:\WINDOWS\system32\kernel32.dll (000000007c900000 - 000000007c9b4000: C:\WINDOWS\system32\ntdll.dll (000000007c9c0000 - 000000007d1de000: C:\WINDOWS\system32\SHELL32.dll (000000007d1e0000 - 000000007d49c000: C:\WINDOWS\system32\msi.dll (000000007d9a0000 - 000000007db06000: C:\WINDOWS\system32\query.dll (000000007e360000 - 000000007e3f1000: C:\WINDOWS\system32\USER32.dll (000000007e690000 - 000000007e740000: C:\WINDOWS\system32\SXS.DLL *----> Zrzut stanu dla wątku o identyfikatorze 0x52c <----* eax=02070000 ebx=0013fc50 ecx=0013fc30 edx=7c90e514 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=0013fc28 ebp=0013fcc4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\USER32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\iertutil.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\IEFRAME.dll - *** ERROR: Module load completed but symbols could not be loaded for C:\Program Files\Internet Explorer\iexplore.exe *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll - ChildEBP RetAddr Args to Child 0013fcc4 7e3695f9 00000001 0013fcec 00000000 ntdll!KiFastSystemCallRet 0013fd20 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 0013fd70 404f873a 00000000 00000001 00000001 iertutil!Ordinal73+0x103 0013fd90 4062415a 00000001 00000001 77f648e4 iertutil!Ordinal537+0x52 0013fde0 00401484 001556f8 0000000a 0040b090 IEFRAME!Ordinal320+0x15aa6 0013ff2c 0040128e 00400000 00000000 0002070c iexplore+0x1484 0013ffc0 7c81776f 5b1d3cf2 0013cac4 7ffdf000 iexplore+0x128e 0013fff0 00000000 00401a25 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49 *----> Zrzut stosu <----* 000000000013fc28 4a df 90 7c 90 95 80 7c - 01 00 00 00 50 fc 13 00 J..|...|....P... 000000000013fc38 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000013fc48 01 00 00 00 06 00 00 00 - 30 00 00 00 80 fc 13 00 ........0....... 000000000013fc58 b5 27 4f 40 18 14 e5 00 - 02 00 00 00 02 28 07 00 .'O@.........(.. 000000000013fc68 08 00 00 00 2c fd 13 00 - 14 00 00 00 01 00 00 00 ....,........... 000000000013fc78 00 00 00 00 00 00 00 00 - 10 00 00 00 5d 28 4f 40 ............](O@ 000000000013fc88 70 00 00 00 01 00 00 00 - 00 f0 fd 7f 00 e0 fd 7f p............... 000000000013fc98 5c f6 90 7c 00 00 00 00 - 50 fc 13 00 01 00 00 00 \..|....P....... 000000000013fca8 01 00 00 00 44 fc 13 00 - 00 00 99 00 b0 ff 13 00 ....D........... 000000000013fcb8 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 20 fd 13 00 ...|...|.... ... 000000000013fcc8 f9 95 36 7e 01 00 00 00 - ec fc 13 00 00 00 00 00 ..6~............ 000000000013fcd8 ff ff ff ff 01 00 00 00 - 00 00 00 00 68 47 99 00 ............hG.. 000000000013fce8 00 00 00 00 30 00 00 00 - 00 00 99 00 00 00 00 00 ....0........... 000000000013fcf8 e3 c2 c1 77 00 00 00 00 - 68 47 99 00 00 00 00 00 ...w....hG...... 000000000013fd08 30 fd 13 00 a6 92 4f 40 - 00 00 00 00 01 00 00 00 0.....O@........ 000000000013fd18 00 e0 fd 7f 30 00 00 00 - 70 fd 13 00 3e 71 4f 40 ....0...p...>qO@ 000000000013fd28 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 000000000013fd38 ec fc 13 00 02 28 07 00 - 68 47 99 00 02 18 03 00 .....(..hG...... 000000000013fd48 b0 ff 13 00 94 5c c2 77 - 88 20 c0 77 ff ff ff ff .....\.w. .w.... 000000000013fd58 ce c3 c1 77 e7 c3 c1 77 - 64 00 00 00 00 00 00 00 ...w...wd....... *----> Zrzut stanu dla wątku o identyfikatorze 0x13c <----* eax=00a75ad4 ebx=00c6fed0 ecx=7ffdd000 edx=77e36660 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=00c6fea8 ebp=00c6ff44 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ADVAPI32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 00c6ff44 77de8631 00000002 00c6ff6c 00000000 ntdll!KiFastSystemCallRet 00c6ffb4 7c80b729 00000000 00000000 77de8ae4 ADVAPI32!WmiFreeBuffer+0x24e 00c6ffec 00000000 77de848a 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000000c6fea8 4a df 90 7c 90 95 80 7c - 02 00 00 00 d0 fe c6 00 J..|...|........ 0000000000c6feb8 01 00 00 00 01 00 00 00 - 04 ff c6 00 e0 2e a7 00 ................ 0000000000c6fec8 60 66 e3 77 00 10 00 00 - 78 00 00 00 84 00 00 00 `f.w....x....... 0000000000c6fed8 c0 fe c6 00 00 00 00 00 - dc ff c6 00 b0 9a 83 7c ...............| 0000000000c6fee8 28 10 81 7c 00 10 00 00 - 14 00 00 00 01 00 00 00 (..|............ 0000000000c6fef8 00 00 00 00 00 00 00 00 - 10 00 00 00 00 a2 2f 4d ............../M 0000000000c6ff08 ff ff ff ff 00 10 00 00 - 00 f0 fd 7f 00 d0 fd 7f ................ 0000000000c6ff18 dc ff c6 00 04 ff c6 00 - d0 fe c6 00 06 00 00 00 ................ 0000000000c6ff28 02 00 00 00 c4 fe c6 00 - 06 00 00 00 dc ff c6 00 ................ 0000000000c6ff38 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 b4 ff c6 00 ...|...|........ 0000000000c6ff48 31 86 de 77 02 00 00 00 - 6c ff c6 00 00 00 00 00 1..w....l....... 0000000000c6ff58 e0 93 04 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000c6ff68 e4 8a de 77 78 00 00 00 - 84 00 00 00 00 10 00 00 ...wx........... 0000000000c6ff78 e0 2e a7 00 00 00 00 00 - 00 10 00 00 e8 3e a7 00 .............>.. 0000000000c6ff88 00 67 e3 77 c8 00 00 00 - e0 66 e3 77 00 10 00 00 .g.w.....f.w.... 0000000000c6ff98 00 00 00 00 00 67 e3 77 - e0 2e a7 00 e0 66 e3 77 .....g.w.....f.w 0000000000c6ffa8 e5 03 00 00 00 10 00 00 - e8 3e a7 00 ec ff c6 00 .........>...... 0000000000c6ffb8 29 b7 80 7c 00 00 00 00 - 00 00 00 00 e4 8a de 77 )..|...........w 0000000000c6ffc8 00 00 00 00 00 d0 fd 7f - 00 46 3c 82 c0 ff c6 00 .........F<..... 0000000000c6ffd8 d8 e0 d9 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| *----> Zrzut stanu dla wątku o identyfikatorze 0xdf8 <----* eax=000000c0 ebx=00000000 ecx=00000000 edx=00000007 esi=0013f770 edi=0015ea40 eip=7c90e514 esp=00faff9c ebp=00faffb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 00faffb4 7c80b729 00000000 0015ea40 0013f770 ntdll!KiFastSystemCallRet 00faffec 00000000 7c927d83 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000000faff9c 1a d2 90 7c ca 7d 92 7c - 01 00 00 00 ac ff fa 00 ...|.}.|........ 0000000000faffac 00 00 00 00 00 00 00 80 - ec ff fa 00 29 b7 80 7c ............)..| 0000000000faffbc 00 00 00 00 40 ea 15 00 - 70 f7 13 00 00 00 00 00 ....@...p....... 0000000000faffcc 00 c0 fd 7f 00 46 3c 82 - c0 ff fa 00 90 59 cb 81 .....F<......Y.. 0000000000faffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 0000000000faffec 00 00 00 00 00 00 00 00 - 83 7d 92 7c 00 00 00 00 .........}.|.... 0000000000fafffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00bc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00cc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xdfc <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=010aff70 ebp=010affb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 010affb4 7c80b729 00000000 fffffffd 00000000 ntdll!KiFastSystemCallRet 010affec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000010aff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff 0a 01 J..|...|........ 00000000010aff80 b0 ff 0a 01 98 ff 0a 01 - a0 ff 0a 01 fd ff ff ff ................ 00000000010aff90 00 00 00 00 00 00 00 00 - 00 00 00 00 a8 e5 e7 07 ................ 00000000010affa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 00000000010affb0 c0 e5 e7 07 ec ff 0a 01 - 29 b7 80 7c 00 00 00 00 ........)..|.... 00000000010affc0 fd ff ff ff 00 00 00 00 - 00 00 00 00 00 b0 fd 7f ................ 00000000010affd0 00 46 3c 82 c0 ff 0a 01 - 90 59 cb 81 ff ff ff ff .F<......Y...... 00000000010affe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 00000000010afff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 00000000010b0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b0090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010b00a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x750 <----* eax=000000c0 ebx=00000000 ecx=011affb0 edx=7c90e514 esi=00000000 edi=00000001 eip=7c90e514 esp=011afcec ebp=011affb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 011affb4 7c80b729 00000000 00000020 fffffffd ntdll!KiFastSystemCallRet 011affec 00000000 7c92a3f3 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000011afcec 4a df 90 7c 1a a5 92 7c - 03 00 00 00 30 fd 1a 01 J..|...|....0... 00000000011afcfc 01 00 00 00 01 00 00 00 - 00 00 00 00 20 00 00 00 ............ ... 00000000011afd0c fd ff ff ff 00 00 00 00 - a0 f9 97 7c a0 f9 97 7c ...........|...| 00000000011afd1c 0c 01 00 00 50 07 00 00 - 03 00 00 00 03 00 00 00 ....P........... 00000000011afd2c 02 00 00 00 08 01 00 00 - e0 03 00 00 f4 00 00 00 ................ 00000000011afd3c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd4c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd5c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd6c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd7c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd8c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd9c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdbc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdcc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afddc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdec 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdfc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe0c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe1c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xb30 <----* eax=00000000 ebx=00000000 ecx=404f3620 edx=012c0000 esi=001531f0 edi=028a0f08 eip=7c90e514 esp=012cfe18 ebp=012cff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\RPCRT4.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 012cff80 77e76caf 012cffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 012cff88 77e76ad1 001531f0 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x61c 012cffa8 77e76c97 0015fb98 012cffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 012cffb4 7c80b729 00160060 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x604 012cffec 00000000 77e76c7d 00160060 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000012cfe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 2c 01 ...|.e.w$...t.,. 00000000012cfe28 38 fe 2c 01 08 0f 8a 02 - 50 ff 2c 01 3a 18 00 00 8.,.....P.,.:... 00000000012cfe38 9c 00 b4 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 00000000012cfe48 aa 81 01 00 00 00 00 00 - 02 02 00 00 01 00 06 00 ................ 00000000012cfe58 3a 18 00 00 a2 02 00 00 - 00 94 06 00 3a 18 00 00 :...........:... 00000000012cfe68 a3 02 00 00 00 24 08 00 - 00 00 02 00 50 00 00 00 .....$......P... 00000000012cfe78 01 00 00 00 44 00 00 00 - ff ff ff ff 05 08 06 00 ....D........... 00000000012cfe88 03 08 0e 00 00 00 00 00 - d3 0b 00 00 06 00 00 00 ................ 00000000012cfe98 28 ff ff ff 0a 00 00 80 - 00 00 00 00 78 10 01 00 (...........x... 00000000012cfea8 00 00 00 00 00 00 00 00 - 01 00 ff ff 10 00 00 00 ................ 00000000012cfeb8 0b 00 34 03 a0 10 34 03 - 00 00 00 80 20 00 00 00 ..4...4..... ... 00000000012cfec8 50 00 00 00 00 00 00 00 - 6e 00 64 00 6f 00 66 00 P.......n.d.o.f. 00000000012cfed8 65 00 6e 00 2e 00 70 00 - 6c 00 00 00 1f 00 6e 00 e.n...p.l.....n. 00000000012cfee8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 00000000012cfef8 02 04 00 00 84 00 00 00 - 00 00 00 00 6d 00 61 00 ............m.a. 00000000012cff08 78 00 00 00 00 00 00 00 - 00 00 00 00 9c 00 00 00 x............... 00000000012cff18 00 00 00 00 b2 c2 4d 80 - ba c2 4d 80 bc db f3 81 ......M...M..... 00000000012cff28 50 da f3 81 80 ff 2c 01 - 85 d1 e7 77 48 ff 2c 01 P.....,....wH.,. 00000000012cff38 95 d1 e7 77 e0 10 90 7c - 38 00 16 00 60 00 16 00 ...w...|8...`... 00000000012cff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0x604 <----* eax=00150000 ebx=013ceef0 ecx=041f6ae0 edx=00000008 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=013ceec8 ebp=013cef64 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 013cef64 7c80a115 00000002 00160660 00000000 ntdll!KiFastSystemCallRet 013cef80 404f2e7c 00000002 00160660 00000000 kernel32!WaitForMultipleObjects+0x18 013cffac 404f8611 013cffec 7c80b729 00161cc0 iertutil!Ordinal457+0x421 013cffb4 7c80b729 00161cc0 7c910222 7c91019b iertutil!Ordinal430+0x34 013cffec 00000000 404f8604 00161cc0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000013ceec8 4a df 90 7c 90 95 80 7c - 02 00 00 00 f0 ee 3c 01 J..|...|......<. 00000000013ceed8 01 00 00 00 00 00 00 00 - 00 00 00 00 02 00 00 00 ................ 00000000013ceee8 c0 1c 16 00 00 1c 16 00 - 38 01 00 00 68 01 00 00 ........8...h... 00000000013ceef8 00 00 00 00 50 f3 15 00 - 14 ef 3c 01 f7 25 4f 40 ....P.....<..%O@ 00000000013cef08 70 13 e5 00 b0 a4 15 00 - 14 00 00 00 01 00 00 00 p............... 00000000013cef18 00 00 00 00 00 00 00 00 - 10 00 00 00 d8 3b 15 00 .............;.. 00000000013cef28 c0 99 80 7c 60 f5 15 00 - 00 f0 fd 7f 00 80 fd 7f ...|`........... 00000000013cef38 00 00 00 00 00 00 00 00 - f0 ee 3c 01 00 00 00 00 ..........<..... 00000000013cef48 02 00 00 00 e4 ee 3c 01 - 80 ef 3c 01 dc ff 3c 01 ......<...<...<. 00000000013cef58 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 80 ef 3c 01 ...|...|......<. 00000000013cef68 15 a1 80 7c 02 00 00 00 - 60 06 16 00 00 00 00 00 ...|....`....... 00000000013cef78 ff ff ff ff 00 00 00 00 - ac ff 3c 01 7c 2e 4f 40 ..........<.|.O@ 00000000013cef88 02 00 00 00 60 06 16 00 - 00 00 00 00 ff ff ff ff ....`........... 00000000013cef98 22 02 91 7c c0 1c 16 00 - 9b 01 91 7c 00 00 00 00 "..|.......|.... 00000000013cefa8 00 00 00 00 60 06 16 00 - d8 05 16 00 00 00 00 01 ....`........... 00000000013cefb8 24 df a6 48 56 e5 e2 11 - 83 6b 00 0b 6a 18 0d 21 $..HV....k..j..! 00000000013cefc8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefd8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefe8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013ceff8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xbe0 <----* eax=000001c8 ebx=014cfe74 ecx=00185540 edx=7c90e514 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=014cfe4c ebp=014cfee8 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 014cfee8 7e3695f9 00000001 014cff10 00000000 ntdll!KiFastSystemCallRet 014cff44 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 014cff94 404f86ae 00000001 00000000 0013facc iertutil!Ordinal73+0x103 014cffb4 7c80b729 0015f0f8 0013facc 0013f98c iertutil!Ordinal536+0x59 014cffec 00000000 404f8655 0015f0f8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000014cfe4c 4a df 90 7c 90 95 80 7c - 01 00 00 00 74 fe 4c 01 J..|...|....t.L. 00000000014cfe5c 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000014cfe6c 01 00 00 00 06 00 00 00 - 64 01 00 00 da 2c 4f 40 ........d....,O@ 00000000014cfe7c e4 fe 4c 01 d9 8b 36 7e - 00 70 fd 7f e4 fe 4c 01 ..L...6~.p....L. 00000000014cfe8c 5a 88 36 7e a4 fe 4c 01 - 14 00 00 00 01 00 00 00 Z.6~..L......... 00000000014cfe9c 00 00 00 00 00 00 00 00 - 10 00 00 00 01 00 00 00 ................ 00000000014cfeac 00 00 00 00 00 00 00 00 - 00 f0 fd 7f 00 70 fd 7f .............p.. 00000000014cfebc 30 00 00 00 00 00 00 00 - 74 fe 4c 01 00 00 00 00 0.......t.L..... 00000000014cfecc 01 00 00 00 68 fe 4c 01 - 34 ff 4c 01 dc ff 4c 01 ....h.L.4.L...L. 00000000014cfedc b0 9a 83 7c 80 96 80 7c - 00 00 00 00 44 ff 4c 01 ...|...|....D.L. 00000000014cfeec f9 95 36 7e 01 00 00 00 - 10 ff 4c 01 00 00 00 00 ..6~......L..... 00000000014cfefc ff ff ff ff 01 00 00 00 - 00 00 00 00 01 00 00 00 ................ 00000000014cff0c 00 00 00 00 64 01 00 00 - 00 00 00 00 44 ff 4c 01 ....d.......D.L. 00000000014cff1c 02 94 36 7e 6c ff 4c 01 - 00 00 00 00 00 00 00 00 ..6~l.L......... 00000000014cff2c 0c ff 4c 01 01 00 00 00 - 00 00 00 00 01 00 00 00 ..L............. 00000000014cff3c 00 70 fd 7f 64 01 00 00 - 94 ff 4c 01 3e 71 4f 40 .p..d.....L.>qO@ 00000000014cff4c 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 00000000014cff5c 10 ff 4c 01 68 47 99 00 - f8 f0 15 00 00 00 00 00 ..L.hG.......... 00000000014cff6c 24 01 0c 00 00 04 00 00 - 00 00 00 00 00 00 00 00 $............... 00000000014cff7c 50 29 b2 00 96 02 00 00 - c9 01 00 00 00 00 00 00 P).............. *----> Zrzut stanu dla wątku o identyfikatorze 0x5b4 <----* eax=016c9ef8 ebx=00000000 ecx=00000000 edx=0296b264 esi=00160f78 edi=00000000 eip=7c90e514 esp=016cdde8 ebp=016cfeec iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00040246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 016cfeec 4065330f 00160f78 0015f1f0 001605e8 ntdll!KiFastSystemCallRet 016cffa4 404f8061 00996748 00000000 016cffec IEFRAME!Ordinal170+0x46f4 016cffb4 7c80b729 001605e8 0015f1f0 00000000 iertutil!Ordinal405+0x2c 016cffec 00000000 404f8053 001605e8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000016cdde8 18 94 36 7e 2a c3 6a 40 - 00 00 00 00 48 67 99 00 ..6~*.j@....Hg.. 00000000016cddf8 78 0f 16 00 34 5f 17 00 - 4c 02 1f 00 b4 3a 18 00 x...4_..L....:.. 00000000016cde08 8e 01 18 00 18 01 00 00 - ff ff 00 00 22 24 8c bf ............"$.. 00000000016cde18 5e a1 b2 00 be 02 00 00 - db 01 00 00 f6 00 16 00 ^............... 00000000016cde28 00 00 00 00 01 00 00 00 - 01 00 00 00 00 8a 19 00 ................ 00000000016cde38 00 00 00 00 e0 58 1a 00 - 00 00 00 00 f4 68 18 00 .....X.......h.. 00000000016cde48 20 16 18 00 00 00 00 00 - 00 00 00 00 10 73 18 00 ............s.. 00000000016cde58 68 00 74 00 74 00 70 00 - 3a 00 2f 00 2f 00 70 00 h.t.t.p.:././.p. 00000000016cde68 69 00 65 00 6b 00 6e 00 - 65 00 7a 00 64 00 72 00 i.e.k.n.e.z.d.r. 00000000016cde78 6f 00 77 00 65 00 73 00 - 74 00 6f 00 70 00 79 00 o.w.e.s.t.o.p.y. 00000000016cde88 2e 00 70 00 6c 00 2f 00 - 67 00 72 00 7a 00 79 00 ..p.l./.g.r.z.y. 00000000016cde98 62 00 69 00 63 00 61 00 - 2d 00 73 00 74 00 6f 00 b.i.c.a.-.s.t.o. 00000000016cdea8 70 00 3f 00 75 00 74 00 - 6d 00 5f 00 73 00 6f 00 p.?.u.t.m._.s.o. 00000000016cdeb8 75 00 72 00 63 00 65 00 - 3d 00 67 00 6f 00 6f 00 u.r.c.e.=.g.o.o. 00000000016cdec8 67 00 6c 00 65 00 26 00 - 75 00 74 00 6d 00 5f 00 g.l.e.&.u.t.m._. 00000000016cded8 6d 00 65 00 64 00 69 00 - 75 00 6d 00 3d 00 63 00 m.e.d.i.u.m.=.c. 00000000016cdee8 70 00 63 00 26 00 75 00 - 74 00 6d 00 5f 00 63 00 p.c.&.u.t.m._.c. 00000000016cdef8 61 00 6d 00 70 00 61 00 - 69 00 67 00 6e 00 3d 00 a.m.p.a.i.g.n.=. 00000000016cdf08 75 00 6e 00 64 00 6f 00 - 66 00 65 00 6e 00 67 00 u.n.d.o.f.e.n.g. 00000000016cdf18 64 00 6e 00 00 00 00 00 - 00 00 00 00 00 00 00 00 d.n............. *----> Zrzut stanu dla wątku o identyfikatorze 0xdd8 <----* eax=00020014 ebx=00000000 ecx=00000014 edx=00000014 esi=001625d0 edi=00000100 eip=7c90e514 esp=01aafe18 ebp=01aaff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01aaff80 77e76caf 01aaffa8 77e76ad1 001625d0 ntdll!KiFastSystemCallRet 01aaff88 77e76ad1 001625d0 00163dd0 00000000 RPCRT4!I_RpcBCacheFree+0x61c 01aaffa8 77e76c97 0015fb98 01aaffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01aaffb4 7c80b729 00165c68 00163dd0 00000000 RPCRT4!I_RpcBCacheFree+0x604 01aaffec 00000000 77e76c7d 00165c68 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001aafe18 aa da 90 7c e3 65 e7 77 - b8 01 00 00 74 ff aa 01 ...|.e.w....t... 0000000001aafe28 00 00 00 00 08 d0 46 04 - 50 ff aa 01 00 00 00 00 ......F.P....... 0000000001aafe38 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe48 00 00 00 00 00 00 00 00 - 02 00 00 00 00 00 00 00 ................ 0000000001aafe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe68 00 00 00 00 09 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe78 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe88 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafe98 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafea8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafeb8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafec8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafed8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafee8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aafef8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001aaff08 00 00 00 00 00 00 00 00 - 00 00 00 00 3c 9f bf 81 ............<... 0000000001aaff18 24 6c d0 f3 b2 c2 4d 80 - ba c2 4d 80 0c 9f bf 81 $l....M...M..... 0000000001aaff28 a0 9d bf 81 80 ff aa 01 - 85 d1 e7 77 48 ff aa 01 ...........wH... 0000000001aaff38 95 d1 e7 77 e0 10 90 7c - 98 55 16 00 68 5c 16 00 ...w...|.U..h\.. 0000000001aaff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0x29c <----* eax=774ee4ef ebx=00007530 ecx=00168370 edx=7c8855f8 esi=00000000 edi=01baff50 eip=7c90e514 esp=01baff20 ebp=01baff78 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ole32.dll - ChildEBP RetAddr Args to Child 01baff78 7c802455 0000ea60 00000000 01baffb4 ntdll!KiFastSystemCallRet 01baff88 774ee3e3 0000ea60 001685f0 774ee4a2 kernel32!Sleep+0xf 01baffb4 7c80b729 001685f0 7465536c 73655248 ole32!StringFromGUID2+0x51d 01baffec 00000000 774ee4ef 001685f0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001baff20 1a d2 90 7c f1 23 80 7c - 00 00 00 00 50 ff ba 01 ...|.#.|....P... 0000000001baff30 50 25 80 7c f8 7d 5f 77 - 30 75 00 00 14 00 00 00 P%.|.}_w0u...... 0000000001baff40 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................ 0000000001baff50 00 ba 3c dc ff ff ff ff - 0c 00 00 00 50 ff ba 01 ..<.........P... 0000000001baff60 30 ff ba 01 af ac 80 7c - dc ff ba 01 b0 9a 83 7c 0......|.......| 0000000001baff70 60 24 80 7c 00 00 00 00 - 88 ff ba 01 55 24 80 7c `$.|........U$.| 0000000001baff80 60 ea 00 00 00 00 00 00 - b4 ff ba 01 e3 e3 4e 77 `.............Nw 0000000001baff90 60 ea 00 00 f0 85 16 00 - a2 e4 4e 77 00 00 00 00 `.........Nw.... 0000000001baffa0 6c 53 65 74 f0 85 16 00 - 00 00 4d 77 0a e5 4e 77 lSet......Mw..Nw 0000000001baffb0 48 52 65 73 ec ff ba 01 - 29 b7 80 7c f0 85 16 00 HRes....)..|.... 0000000001baffc0 6c 53 65 74 48 52 65 73 - f0 85 16 00 00 40 fd 7f lSetHRes.....@.. 0000000001baffd0 00 46 3c 82 c0 ff ba 01 - 58 41 d7 81 ff ff ff ff .F<.....XA...... 0000000001baffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000001bafff0 00 00 00 00 ef e4 4e 77 - f0 85 16 00 00 00 00 00 ......Nw........ 0000000001bb0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xda0 <----* eax=017b0001 ebx=00000000 ecx=001ae008 edx=0000005c esi=001531f0 edi=0446d468 eip=7c90e514 esp=01cafe18 ebp=01caff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01caff80 77e76caf 01caffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 01caff88 77e76ad1 001531f0 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x61c 01caffa8 77e76c97 0015fb98 01caffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01caffb4 7c80b729 00177e38 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x604 01caffec 00000000 77e76c7d 00177e38 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001cafe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff ca 01 ...|.e.w$...t... 0000000001cafe28 38 fe ca 01 68 d4 46 04 - 50 ff ca 01 6f 77 73 43 8...h.F.P...owsC 0000000001cafe38 a8 00 c0 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 0000000001cafe48 ab 81 01 00 00 00 00 00 - 02 30 32 38 01 00 6f 6d .........028..om 0000000001cafe58 63 74 6c 33 32 2e 70 64 - 62 00 52 53 44 53 3b 19 ctl32.pdb.RSDS;. 0000000001cafe68 ef 77 98 04 6f 45 92 41 - 00 00 02 00 5c 00 00 00 .w..oE.A....\... 0000000001cafe78 02 00 00 00 1c 00 00 00 - ff ff ff ff 01 08 07 00 ................ 0000000001cafe88 01 08 0f 00 9b 01 00 00 - d6 0b 00 00 1c 00 00 00 ................ 0000000001cafe98 00 00 00 00 68 00 00 00 - 2c 00 00 00 ff ff ff ff ....h...,....... 0000000001cafea8 01 08 07 00 01 08 0f 00 - 9b 01 00 00 d6 0b 00 00 ................ 0000000001cafeb8 2c 00 00 00 01 00 00 00 - d2 07 00 00 03 00 6a 40 ,.............j@ 0000000001cafec8 f0 c4 44 03 04 00 00 00 - 3c d5 66 40 5c 00 00 00 ..D.....<.f@\... 0000000001cafed8 00 00 00 00 2e 00 70 00 - 6c 00 00 00 1f 00 6e 00 ......p.l.....n. 0000000001cafee8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 0000000001cafef8 02 04 00 00 84 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001caff08 c8 54 43 03 00 00 00 00 - 7c c6 6c 01 9c 00 00 00 .TC.....|.l..... 0000000001caff18 00 00 00 00 b2 c2 4d 80 - ba c2 4d 80 8c 91 32 82 ......M...M...2. 0000000001caff28 20 90 32 82 80 ff ca 01 - 85 d1 e7 77 48 ff ca 01 .2........wH... 0000000001caff38 95 d1 e7 77 e0 10 90 7c - 68 55 17 00 38 7e 17 00 ...w...|hU..8~.. 0000000001caff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xd84 <----* eax=774ed3f8 ebx=00000000 ecx=034134e8 edx=775f8268 esi=001531f0 edi=028a0300 eip=7c90e514 esp=0217fe18 ebp=0217ff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0217ff80 77e76caf 0217ffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 0217ff88 77e76ad1 001531f0 00000000 01cafaa4 RPCRT4!I_RpcBCacheFree+0x61c 0217ffa8 77e76c97 0015fb98 0217ffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 0217ffb4 7c80b729 0017c218 00000000 01cafaa4 RPCRT4!I_RpcBCacheFree+0x604 0217ffec 00000000 77e76c7d 0017c218 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000217fe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 17 02 ...|.e.w$...t... 000000000217fe28 38 fe 17 02 00 03 8a 02 - 50 ff 17 02 00 00 00 00 8.......P....... 000000000217fe38 48 00 60 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 H.`.....4....... 000000000217fe48 ac 81 01 00 00 00 00 00 - 02 00 00 00 01 00 00 00 ................ 000000000217fe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000217fe68 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000217fe78 03 01 07 80 68 00 00 00 - ff ff ff ff 01 08 00 00 ....h........... 000000000217fe88 01 08 0f 00 00 00 00 00 - 52 04 00 00 1f 00 13 04 ........R....... 000000000217fe98 16 00 00 00 68 00 61 00 - 73 00 5f 00 6a 00 73 00 ....h.a.s._.j.s. 000000000217fea8 00 00 1f 00 00 12 0c 00 - 00 00 31 00 00 00 1f 00 ..........1..... 000000000217feb8 64 00 1e 00 00 00 75 00 - 6e 00 64 00 6f 00 66 00 d.....u.n.d.o.f. 000000000217fec8 65 00 6e 00 2e 00 70 00 - 6c 00 00 00 1f 00 62 00 e.n...p.l.....b. 000000000217fed8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 000000000217fee8 02 04 00 00 74 00 00 00 - 00 00 00 00 69 00 20 00 ....t.......i. . 000000000217fef8 57 00 65 00 62 00 00 00 - 88 00 00 00 00 00 00 00 W.e.b........... 000000000217ff08 00 00 00 00 00 00 00 00 - 00 00 00 00 14 26 fc 81 .............&.. 000000000217ff18 24 bc f7 f3 b2 c2 4d 80 - ba c2 4d 80 e4 25 fc 81 $.....M...M..%.. 000000000217ff28 78 24 fc 81 80 ff 17 02 - 85 d1 e7 77 48 ff 17 02 x$.........wH... 000000000217ff38 95 d1 e7 77 e0 10 90 7c - 68 1a 18 00 18 c2 17 00 ...w...|h....... 000000000217ff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xf40 <----* eax=00000000 ebx=002377d0 ecx=00000001 edx=7c90e514 esi=7fffffff edi=ffffffff eip=7c90e514 esp=02bcfad4 ebp=02bcfb10 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\System32\mswsock.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ws2_32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WININET.dll - ChildEBP RetAddr Args to Child 02bcfb10 719f5fa7 00000550 00000554 00000000 ntdll!KiFastSystemCallRet 02bcfc04 71a5314f 00000001 02bcfe84 02bcfc7c mswsock+0x5fa7 02bcfc54 3fcfe9f9 00000001 02bcfe84 02bcfc7c ws2_32!select+0xa7 02bcffac 3fd06043 02bcffec 7c80b729 001c9770 WININET!Ordinal346+0x6ae 02bcffb4 7c80b729 001c9770 00000037 016c8828 WININET!InternetSetStatusCallbackA+0x1e3 02bcffec 00000000 3fd06036 001c9770 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002bcfad4 5a df 90 7c 2b 40 9f 71 - 50 05 00 00 01 00 00 00 Z..|+@.qP....... 0000000002bcfae4 fc fa bc 02 b4 fb bc 02 - 84 fe bc 02 a4 fb bc 02 ................ 0000000002bcfaf4 39 0e 87 8f 65 79 ce 01 - ff ff ff ff ff ff ff 7f 9...ey.......... 0000000002bcfb04 d0 77 23 00 00 00 00 00 - 00 00 00 00 04 fc bc 02 .w#............. 0000000002bcfb14 a7 5f 9f 71 50 05 00 00 - 54 05 00 00 00 00 00 00 ._.qP...T....... 0000000002bcfb24 04 00 00 00 80 fd bc 02 - 30 b6 1b 00 7c fc bc 02 ........0...|... 0000000002bcfb34 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002bcfb44 01 00 00 00 80 0f 05 fd - ff ff ff ff dc fb bc 02 ................ 0000000002bcfb54 01 00 00 00 00 00 00 00 - a0 00 00 00 00 00 00 00 ................ 0000000002bcfb64 01 00 00 00 03 01 00 00 - 08 00 00 00 50 05 00 00 ............P... 0000000002bcfb74 38 fc bc 02 00 00 00 00 - 00 00 00 00 1c 00 00 00 8............... 0000000002bcfb84 d0 77 23 00 c0 fb bc 02 - 7c fc bc 02 80 fd bc 02 .w#.....|....... 0000000002bcfb94 00 00 00 00 a4 fb bc 02 - 00 00 00 00 00 00 00 00 ................ 0000000002bcfba4 80 0f 05 fd ff ff ff ff - 01 00 00 00 00 fb bc 02 ................ 0000000002bcfbb4 54 05 00 00 19 00 00 00 - 00 fc bc 02 1f 2e a5 71 T..............q 0000000002bcfbc4 80 d2 3f 03 ec fb bc 02 - 68 96 a5 71 33 27 00 00 ..?.....h..q3'.. 0000000002bcfbd4 80 eb 41 03 01 00 00 00 - 01 00 00 00 1f fc bc 02 ..A............. 0000000002bcfbe4 00 7a 23 00 f3 47 00 00 - 28 fb bc 02 0c 15 a4 71 .z#..G..(......q 0000000002bcfbf4 44 fc bc 02 28 72 a1 71 - 60 2e 9f 71 ff ff ff ff D...(r.q`..q.... 0000000002bcfc04 54 fc bc 02 4f 31 a5 71 - 01 00 00 00 84 fe bc 02 T...O1.q........ *----> Zrzut stanu dla wątku o identyfikatorze 0x484 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=00000400 edi=00000000 eip=7c90e514 esp=02ccff08 ebp=02ccff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\mshtml.dll - ChildEBP RetAddr Args to Child 02ccff6c 7c802542 00000400 000927c0 00000000 ntdll!KiFastSystemCallRet 02ccff80 3f3da2c9 00000400 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 02ccffa0 3f340774 0289f5c0 3f340837 02916150 mshtml!DllGetClassObject+0x8cfc4 02ccffb4 7c80b729 00239e38 0289f5c0 02916150 mshtml+0x10774 02ccffec 00000000 3f340829 00239e38 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002ccff08 5a df 90 7c db 25 80 7c - 00 04 00 00 00 00 00 00 Z..|.%.|........ 0000000002ccff18 3c ff cc 02 00 00 00 00 - 38 9e 23 00 00 00 00 00 <.......8.#..... 0000000002ccff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ccff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 f0 fd 7f .....D_......... 0000000002ccff48 00 90 fa 7f 3c ff cc 02 - 4a c3 3d 3f 1c ff cc 02 ....<...J.=?.... 0000000002ccff58 4a c3 3d 3f dc ff cc 02 - b0 9a 83 7c 08 26 80 7c J.=?.......|.&.| 0000000002ccff68 00 00 00 00 80 ff cc 02 - 42 25 80 7c 00 04 00 00 ........B%.|.... 0000000002ccff78 c0 27 09 00 00 00 00 00 - a0 ff cc 02 c9 a2 3d 3f .'............=? 0000000002ccff88 00 04 00 00 c0 27 09 00 - 00 00 33 3f 38 9e 23 00 .....'....3?8.#. 0000000002ccff98 38 9e 23 00 38 9e 23 00 - b4 ff cc 02 74 07 34 3f 8.#.8.#.....t.4? 0000000002ccffa8 c0 f5 89 02 37 08 34 3f - 50 61 91 02 ec ff cc 02 ....7.4?Pa...... 0000000002ccffb8 29 b7 80 7c 38 9e 23 00 - c0 f5 89 02 50 61 91 02 )..|8.#.....Pa.. 0000000002ccffc8 38 9e 23 00 00 90 fa 7f - 00 46 3c 82 c0 ff cc 02 8.#......F<..... 0000000002ccffd8 98 96 cb 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 0000000002ccffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 0000000002ccfff8 38 9e 23 00 00 00 00 00 - 00 00 00 00 00 00 00 00 8.#............. 0000000002cd0008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002cd0018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002cd0028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002cd0038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xf4c <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=02dcff70 ebp=02dcffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02dcffb4 7c80b729 00000000 775f7068 00160c78 ntdll!KiFastSystemCallRet 02dcffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002dcff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff dc 02 J..|...|........ 0000000002dcff80 b0 ff dc 02 98 ff dc 02 - a0 ff dc 02 68 70 5f 77 ............hp_w 0000000002dcff90 78 0c 16 00 00 00 00 00 - 00 00 00 00 a0 09 1f 04 x............... 0000000002dcffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 0000000002dcffb0 e0 08 1f 04 ec ff dc 02 - 29 b7 80 7c 00 00 00 00 ........)..|.... 0000000002dcffc0 68 70 5f 77 78 0c 16 00 - 00 00 00 00 00 80 fa 7f hp_wx........... 0000000002dcffd0 00 46 3c 82 c0 ff dc 02 - 10 5e c7 81 ff ff ff ff .F<......^...... 0000000002dcffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000002dcfff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000002dd0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd00a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xef0 <----* eax=77e76c7d ebx=00000000 ecx=003a3a10 edx=00000000 esi=001625d0 edi=00000100 eip=7c90e514 esp=02ecfe18 ebp=02ecff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02ecff80 77e76caf 02ecffa8 77e76ad1 001625d0 ntdll!KiFastSystemCallRet 02ecff88 77e76ad1 001625d0 00000000 00000000 RPCRT4!I_RpcBCacheFree+0x61c 02ecffa8 77e76c97 0015fb98 02ecffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 02ecffb4 7c80b729 0024a1b0 00000000 00000000 RPCRT4!I_RpcBCacheFree+0x604 02ecffec 00000000 77e76c7d 0024a1b0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002ecfe18 aa da 90 7c e3 65 e7 77 - b8 01 00 00 74 ff ec 02 ...|.e.w....t... 0000000002ecfe28 00 00 00 00 f8 da 46 04 - 50 ff ec 02 00 00 00 00 ......F.P....... 0000000002ecfe38 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecfe48 00 00 00 00 00 00 00 00 - 02 00 00 00 00 00 00 00 ................ 0000000002ecfe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecfe68 00 00 00 00 08 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecfe78 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecfe88 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecfe98 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecfea8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecfeb8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecfec8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecfed8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecfee8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecfef8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ecff08 00 00 00 00 00 00 00 00 - 00 00 00 00 bc 11 b0 81 ................ 0000000002ecff18 24 fc 55 f4 b2 c2 4d 80 - ba c2 4d 80 8c 11 b0 81 $.U...M...M..... 0000000002ecff28 20 10 b0 81 80 ff ec 02 - 85 d1 e7 77 48 ff ec 02 ..........wH... 0000000002ecff38 95 d1 e7 77 e0 10 90 7c - e0 62 91 02 b0 a1 24 00 ...w...|.b....$. 0000000002ecff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xc10 <----* eax=00238ba0 ebx=c0000000 ecx=00000004 edx=00223dd8 esi=00000000 edi=71a2793c eip=7c90e514 esp=0325ff7c ebp=0325ffb4 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0325ffb4 7c80b729 719fd65f 00150000 00000000 ntdll!KiFastSystemCallRet 0325ffec 00000000 719fd2c6 028a5240 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000325ff7c 4a da 90 7c 20 d3 9f 71 - 14 06 00 00 bc ff 25 03 J..| ..q......%. 000000000325ff8c b0 ff 25 03 a4 ff 25 03 - 68 d3 9f 71 00 00 15 00 ..%...%.h..q.... 000000000325ff9c 00 00 00 00 40 52 8a 02 - 00 00 00 00 00 00 00 00 ....@R.......... 000000000325ffac 00 00 9f 71 a8 a2 d0 07 - ec ff 25 03 29 b7 80 7c ...q......%.)..| 000000000325ffbc 5f d6 9f 71 00 00 15 00 - 00 00 00 00 40 52 8a 02 _..q........@R.. 000000000325ffcc 00 60 fa 7f 00 46 3c 82 - c0 ff 25 03 10 5e c7 81 .`...F<...%..^.. 000000000325ffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 000000000325ffec 00 00 00 00 00 00 00 00 - c6 d2 9f 71 40 52 8a 02 ...........q@R.. 000000000325fffc 00 00 00 00 08 00 00 00 - 00 01 00 02 ee ff ee ff ................ 000000000326000c 00 00 00 00 00 00 15 00 - 00 00 00 00 00 00 26 03 ..............&. 000000000326001c 00 02 00 00 40 00 26 03 - 00 00 46 03 00 00 00 00 ....@.&...F..... 000000000326002c 00 00 00 00 00 00 00 00 - 00 00 00 00 40 fc 45 03 ............@.E. 000000000326003c 00 00 00 00 00 80 08 00 - 4c 01 08 02 d8 ea 42 03 ........L.....B. 000000000326004c 00 00 15 00 12 00 00 00 - c0 d0 e0 f0 33 c8 9c e9 ............3... 000000000326005c 00 01 18 ff e8 3b 00 00 - 64 00 61 00 74 00 61 00 .....;..d.a.t.a. 000000000326006c 3a 00 69 00 6d 00 61 00 - 67 00 65 00 2f 00 70 00 :.i.m.a.g.e./.p. 000000000326007c 6e 00 67 00 3b 00 62 00 - 61 00 73 00 65 00 36 00 n.g.;.b.a.s.e.6. 000000000326008c 34 00 2c 00 69 00 56 00 - 42 00 4f 00 52 00 77 00 4.,.i.V.B.O.R.w. 000000000326009c 30 00 4b 00 47 00 67 00 - 6f 00 41 00 41 00 41 00 0.K.G.g.o.A.A.A. 00000000032600ac 41 00 4e 00 53 00 55 00 - 68 00 45 00 55 00 67 00 A.N.S.U.h.E.U.g. *----> Zrzut stanu dla wątku o identyfikatorze 0x160 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=040dff70 ebp=040dffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 040dffb4 7c80b729 00000000 02bcf8ec 001bd7d0 ntdll!KiFastSystemCallRet 040dffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000040dff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff 0d 04 J..|...|........ 00000000040dff80 b0 ff 0d 04 98 ff 0d 04 - a0 ff 0d 04 ec f8 bc 02 ................ 00000000040dff90 d0 d7 1b 00 00 00 00 00 - 00 00 00 00 58 23 44 04 ............X#D. 00000000040dffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 00000000040dffb0 d0 0f 1f 04 ec ff 0d 04 - 29 b7 80 7c 00 00 00 00 ........)..|.... 00000000040dffc0 ec f8 bc 02 d0 d7 1b 00 - 00 00 00 00 00 50 fa 7f .............P.. 00000000040dffd0 00 46 3c 82 c0 ff 0d 04 - 98 96 cb 81 ff ff ff ff .F<............. 00000000040dffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 00000000040dfff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 00000000040e0000 08 00 00 00 00 01 00 03 - ee ff ee ff 00 00 00 00 ................ 00000000040e0010 00 00 15 00 00 00 00 00 - 00 00 0e 04 00 04 00 00 ................ 00000000040e0020 40 00 0e 04 00 00 4e 04 - 00 00 00 00 00 00 00 00 @.....N......... 00000000040e0030 00 00 00 00 00 00 00 00 - f8 fc 4d 04 00 00 00 00 ..........M..... 00000000040e0040 00 01 08 00 4c 01 08 03 - b8 77 40 03 00 00 15 00 ....L....w@..... 00000000040e0050 0b 00 00 00 c0 d0 e0 f0 - 53 55 7b e9 6a 01 08 ff ........SU{.j... 00000000040e0060 2c 28 36 3f c0 82 3e 03 - 80 49 22 00 00 00 00 00 ,(6?..>..I"..... 00000000040e0070 56 55 7b e9 63 01 0c ff - b0 b3 24 00 00 00 00 00 VU{.c.....$..... 00000000040e0080 00 00 00 00 62 00 72 00 - 49 55 7b e9 79 01 08 ff ....b.r.IU{.y... 00000000040e0090 0a 00 00 00 66 00 6f 00 - 63 00 75 00 73 00 00 00 ....f.o.c.u.s... 00000000040e00a0 4c 55 7b e9 68 01 08 ff - 08 00 00 00 62 00 6c 00 LU{.h.......b.l. *----> Zrzut stanu dla wątku o identyfikatorze 0x1d4 <----* eax=00000000 ebx=00000000 ecx=001ae008 edx=00002000 esi=00000710 edi=00000000 eip=7c90e514 esp=05bcff08 ebp=05bcff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 05bcff6c 7c802542 00000710 000927c0 00000000 ntdll!KiFastSystemCallRet 05bcff80 3f3da2c9 00000710 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 05bcffa0 3f340774 002499d0 3f340837 00000020 mshtml!DllGetClassObject+0x8cfc4 05bcffb4 7c80b729 00215800 002499d0 00000020 mshtml+0x10774 05bcffec 00000000 3f340829 00215800 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000005bcff08 5a df 90 7c db 25 80 7c - 10 07 00 00 00 00 00 00 Z..|.%.|........ 0000000005bcff18 3c ff bc 05 00 00 00 00 - 00 58 21 00 00 00 00 00 <........X!..... 0000000005bcff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005bcff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 f0 fd 7f .....D_......... 0000000005bcff48 00 40 fa 7f 3c ff bc 05 - af c2 3d 3f 1c ff bc 05 .@..<.....=?.... 0000000005bcff58 00 00 00 00 dc ff bc 05 - b0 9a 83 7c 08 26 80 7c ...........|.&.| 0000000005bcff68 00 00 00 00 80 ff bc 05 - 42 25 80 7c 10 07 00 00 ........B%.|.... 0000000005bcff78 c0 27 09 00 00 00 00 00 - a0 ff bc 05 c9 a2 3d 3f .'............=? 0000000005bcff88 10 07 00 00 c0 27 09 00 - 00 00 33 3f 00 58 21 00 .....'....3?.X!. 0000000005bcff98 00 58 21 00 00 58 21 00 - b4 ff bc 05 74 07 34 3f .X!..X!.....t.4? 0000000005bcffa8 d0 99 24 00 37 08 34 3f - 20 00 00 00 ec ff bc 05 ..$.7.4? ....... 0000000005bcffb8 29 b7 80 7c 00 58 21 00 - d0 99 24 00 20 00 00 00 )..|.X!...$. ... 0000000005bcffc8 00 58 21 00 00 40 fa 7f - 00 46 3c 82 c0 ff bc 05 .X!..@...F<..... 0000000005bcffd8 98 96 cb 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 0000000005bcffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 0000000005bcfff8 00 58 21 00 00 00 00 00 - 00 00 00 00 00 00 00 00 .X!............. 0000000005bd0008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005bd0018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005bd0028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005bd0038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x19c <----* eax=000000e9 ebx=00000000 ecx=00560650 edx=00000001 esi=00000758 edi=00000000 eip=7c90e514 esp=05dcff08 ebp=05dcff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 05dcff6c 7c802542 00000758 000927c0 00000000 ntdll!KiFastSystemCallRet 05dcff80 3f3da2c9 00000758 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 05dcffa0 3f340774 006f00fe 3f340837 00000000 mshtml!DllGetClassObject+0x8cfc4 05dcffb4 7c80b729 03438020 006f00fe 00000000 mshtml+0x10774 05dcffec 00000000 3f340829 03438020 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000005dcff08 5a df 90 7c db 25 80 7c - 58 07 00 00 00 00 00 00 Z..|.%.|X....... 0000000005dcff18 3c ff dc 05 00 00 00 00 - 20 80 43 03 00 00 00 00 <....... .C..... 0000000005dcff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005dcff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 f0 fd 7f .....D_......... 0000000005dcff48 00 30 fa 7f 3c ff dc 05 - ff ff ff ff 1c ff dc 05 .0..<........... 0000000005dcff58 56 b5 3f 3f dc ff dc 05 - b0 9a 83 7c 08 26 80 7c V.??.......|.&.| 0000000005dcff68 00 00 00 00 80 ff dc 05 - 42 25 80 7c 58 07 00 00 ........B%.|X... 0000000005dcff78 c0 27 09 00 00 00 00 00 - a0 ff dc 05 c9 a2 3d 3f .'............=? 0000000005dcff88 58 07 00 00 c0 27 09 00 - 00 00 33 3f 20 80 43 03 X....'....3? .C. 0000000005dcff98 20 80 43 03 20 80 43 03 - b4 ff dc 05 74 07 34 3f .C. .C.....t.4? 0000000005dcffa8 fe 00 6f 00 37 08 34 3f - 00 00 00 00 ec ff dc 05 ..o.7.4?........ 0000000005dcffb8 29 b7 80 7c 20 80 43 03 - fe 00 6f 00 00 00 00 00 )..| .C...o..... 0000000005dcffc8 20 80 43 03 00 30 fa 7f - 00 46 3c 82 c0 ff dc 05 .C..0...F<..... 0000000005dcffd8 98 96 cb 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 0000000005dcffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 0000000005dcfff8 20 80 43 03 00 00 00 00 - 00 00 00 00 00 00 00 00 .C............. 0000000005dd0008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005dd0018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005dd0028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000005dd0038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xc60 <----* eax=35c51a30 ebx=04200d04 ecx=7c936d80 edx=7c936d2b esi=00000000 edi=001aea98 eip=7c90e514 esp=0685ff10 ebp=0685ff3c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\Dxtrans.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0685ff3c 35c51a76 000007b4 0685ff8c 0685ff90 ntdll!KiFastSystemCallRet 0685ffb4 7c80b729 04200d04 001aea98 016c6b88 Dxtrans+0x1a76 0685ffec 00000000 35c51a30 04200d04 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000685ff10 4a da 90 7c e6 a7 80 7c - b4 07 00 00 90 ff 85 06 J..|...|........ 000000000685ff20 54 ff 85 06 34 ff 85 06 - 00 00 00 00 88 6b 6c 01 T...4........kl. 000000000685ff30 98 ea 1a 00 04 0d 20 04 - 02 00 00 00 b4 ff 85 06 ...... ......... 000000000685ff40 76 1a c5 35 b4 07 00 00 - 8c ff 85 06 90 ff 85 06 v..5............ 000000000685ff50 94 ff 85 06 ff ff ff ff - b1 e0 e3 c8 98 ea 1a 00 ................ 000000000685ff60 88 6b 6c 01 04 0d 20 04 - 00 00 00 00 c8 52 4e 80 .kl... ......RN. 000000000685ff70 e7 12 6f 80 b0 16 f7 81 - 50 6d d0 f3 6b a7 56 80 ..o.....Pm..k.V. 000000000685ff80 b8 f1 ec 05 01 35 66 e2 - 00 00 00 00 20 d0 bf 81 .....5f..... ... 000000000685ff90 39 ac 4f 80 00 00 00 00 - 00 00 00 00 04 0d 20 04 9.O........... . 000000000685ffa0 00 00 00 00 58 ff 85 06 - dc ff 85 06 dd 7f c7 35 ....X..........5 000000000685ffb0 00 00 00 00 ec ff 85 06 - 29 b7 80 7c 04 0d 20 04 ........)..|.. . 000000000685ffc0 98 ea 1a 00 88 6b 6c 01 - 04 0d 20 04 00 20 fa 7f .....kl... .. .. 000000000685ffd0 00 46 3c 82 c0 ff 85 06 - b0 f1 af 81 ff ff ff ff .F<............. 000000000685ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 000000000685fff0 00 00 00 00 30 1a c5 35 - 04 0d 20 04 00 00 00 00 ....0..5.. ..... 0000000006860000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006860010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006860020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006860030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006860040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xbe4 <----* eax=35c51a30 ebx=04200d04 ecx=7c936d80 edx=7c936d2b esi=00000000 edi=001aea98 eip=7c90e514 esp=0695ff10 ebp=0695ff3c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0695ff3c 35c51a76 000007b4 0695ff8c 0695ff90 ntdll!KiFastSystemCallRet 0695ffb4 7c80b729 04200d04 001aea98 016c6b88 Dxtrans+0x1a76 0695ffec 00000000 35c51a30 04200d04 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000695ff10 4a da 90 7c e6 a7 80 7c - b4 07 00 00 90 ff 95 06 J..|...|........ 000000000695ff20 54 ff 95 06 34 ff 95 06 - 00 00 00 00 88 6b 6c 01 T...4........kl. 000000000695ff30 98 ea 1a 00 04 0d 20 04 - 02 00 00 00 b4 ff 95 06 ...... ......... 000000000695ff40 76 1a c5 35 b4 07 00 00 - 8c ff 95 06 90 ff 95 06 v..5............ 000000000695ff50 94 ff 95 06 ff ff ff ff - b1 e0 f3 c8 98 ea 1a 00 ................ 000000000695ff60 88 6b 6c 01 04 0d 20 04 - 00 00 00 00 c8 52 4e 80 .kl... ......RN. 000000000695ff70 e7 12 6f 80 f0 89 fc 81 - 50 0d ef f7 00 01 08 ff ..o.....P....... 000000000695ff80 3b 00 80 02 01 ff ff ff - 00 00 00 00 20 d0 bf 81 ;........... ... 000000000695ff90 39 ac 4f 80 00 00 00 00 - 00 00 00 00 04 0d 20 04 9.O........... . 000000000695ffa0 00 00 00 00 58 ff 95 06 - dc ff 95 06 dd 7f c7 35 ....X..........5 000000000695ffb0 00 00 00 00 ec ff 95 06 - 29 b7 80 7c 04 0d 20 04 ........)..|.. . 000000000695ffc0 98 ea 1a 00 88 6b 6c 01 - 04 0d 20 04 00 10 fa 7f .....kl... ..... 000000000695ffd0 00 46 3c 82 c0 ff 95 06 - 50 72 32 82 ff ff ff ff .F<.....Pr2..... 000000000695ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 000000000695fff0 00 00 00 00 30 1a c5 35 - 04 0d 20 04 00 00 00 00 ....0..5.. ..... 0000000006960000 73 20 27 43 72 42 61 72 - 6e 27 0d 0a 09 7b 0d 0a s 'CrBarn'...{.. 0000000006960010 09 09 43 4c 53 49 44 20 - 3d 20 73 20 27 7b 43 33 ..CLSID = s '{C3 0000000006960020 42 44 46 37 34 30 2d 30 - 42 35 38 2d 31 31 64 32 BDF740-0B58-11d2 0000000006960030 2d 41 34 38 34 2d 30 30 - 43 30 34 46 38 45 46 42 -A484-00C04F8EFB 0000000006960040 36 39 7d 27 0d 0a 09 7d - 0d 0a 09 44 58 49 6d 61 69}'...}...DXIma *----> Zrzut stanu dla wątku o identyfikatorze 0x774 <----* eax=06340869 ebx=0668aa70 ecx=00000012 edx=002500c8 esi=000008e4 edi=00000000 eip=7c90e514 esp=06f3ff2c ebp=06f3ff90 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll - ChildEBP RetAddr Args to Child 06f3ff90 7c802542 000008e4 ffffffff 00000000 ntdll!KiFastSystemCallRet 06f3ffa4 0634087c 000008e4 ffffffff 00000000 kernel32!WaitForSingleObject+0x12 06f3ffec 00000000 06340869 0668aa70 00000000 GoogleToolbarDynamic_32_B31C6BD+0x1a087c *----> Zrzut stosu <----* 0000000006f3ff2c 5a df 90 7c db 25 80 7c - e4 08 00 00 00 00 00 00 Z..|.%.|........ 0000000006f3ff3c 00 00 00 00 08 e0 1a 00 - 70 aa 68 06 70 aa 68 06 ........p.h.p.h. 0000000006f3ff4c 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006f3ff5c 10 00 00 00 e8 13 4f 80 - dc ff f3 06 00 f0 fd 7f ......O......... 0000000006f3ff6c 00 00 fa 7f 00 00 00 00 - 1a 41 1c 06 40 ff f3 06 .........A..@... 0000000006f3ff7c 1c 41 60 08 dc ff f3 06 - b0 9a 83 7c 08 26 80 7c .A`........|.&.| 0000000006f3ff8c 00 00 00 00 a4 ff f3 06 - 42 25 80 7c e4 08 00 00 ........B%.|.... 0000000006f3ff9c ff ff ff ff 00 00 00 00 - ec ff f3 06 7c 08 34 06 ............|.4. 0000000006f3ffac e4 08 00 00 ff ff ff ff - 00 00 00 00 29 b7 80 7c ............)..| 0000000006f3ffbc 70 aa 68 06 08 e0 1a 00 - 00 00 00 00 70 aa 68 06 p.h.........p.h. 0000000006f3ffcc 00 00 fa 7f 00 46 3c 82 - c0 ff f3 06 98 ff ce 81 .....F<......... 0000000006f3ffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 0000000006f3ffec 00 00 00 00 00 00 00 00 - 69 08 34 06 70 aa 68 06 ........i.4.p.h. 0000000006f3fffc 00 00 00 00 c8 00 00 00 - 8e 01 00 00 ff ee ff ee ................ 0000000006f4000c 02 10 00 00 00 00 00 00 - 00 fe 00 00 00 00 10 00 ................ 0000000006f4001c 00 20 00 00 00 02 00 00 - 00 20 00 00 2f fc 01 00 . ....... ../... 0000000006f4002c ff ef fd 7f 17 00 08 06 - 00 00 00 00 00 00 00 00 ................ 0000000006f4003c 00 00 00 00 00 00 00 00 - 88 05 f4 06 0f 00 00 00 ................ 0000000006f4004c f8 ff ff ff 50 00 f4 06 - 50 00 f4 06 40 06 f4 06 ....P...P...@... 0000000006f4005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x704 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=069bc3f0 edi=00000000 eip=7c90e514 esp=0238fef4 ebp=0238ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0238ff20 062bc37b 00000938 0238ff48 0238ff4c ntdll!KiFastSystemCallRet 0238ff58 062a4eb7 00000000 062bb4dd 069bd838 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0238ffac 062decbd 7c900000 7c80b729 06681e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0238ffec 00000000 062dec3e 06681e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000238fef4 4a da 90 7c e6 a7 80 7c - 38 09 00 00 4c ff 38 02 J..|...|8...L.8. 000000000238ff04 38 ff 38 02 18 ff 38 02 - 00 00 00 00 e4 37 1a 06 8.8...8......7.. 000000000238ff14 48 d7 9b 06 90 72 a0 06 - 96 c1 2b 06 58 ff 38 02 H....r....+.X.8. 000000000238ff24 7b c3 2b 06 38 09 00 00 - 48 ff 38 02 4c ff 38 02 {.+.8...H.8.L.8. 000000000238ff34 54 ff 38 02 ff ff ff ff - 00 00 00 00 38 d8 9b 06 T.8.........8... 000000000238ff44 90 1e 68 06 00 00 00 00 - 00 00 00 00 01 00 00 00 ..h............. 000000000238ff54 90 72 a0 06 ac ff 38 02 - b7 4e 2a 06 00 00 00 00 .r....8..N*..... 000000000238ff64 dd b4 2b 06 38 d8 9b 06 - 04 38 1a 06 e0 d7 6c 01 ..+.8....8....l. 000000000238ff74 00 00 90 7c 18 ec 2d 06 - 38 d8 9b 06 b3 08 07 cc ...|..-.8....... 000000000238ff84 e0 d7 6c 01 00 00 90 7c - 90 1e 68 06 80 ff 38 02 ..l....|..h...8. 000000000238ff94 80 ff 38 02 dc ff 38 02 - dc ff 38 02 70 e7 2d 06 ..8...8...8.p.-. 000000000238ffa4 ef 7b 7c c8 00 00 00 00 - ec ff 38 02 bd ec 2d 06 .{|.......8...-. 000000000238ffb4 00 00 90 7c 29 b7 80 7c - 90 1e 68 06 e0 d7 6c 01 ...|)..|..h...l. 000000000238ffc4 00 00 90 7c 90 1e 68 06 - 00 d0 fa 7f 00 46 3c 82 ...|..h......F<. 000000000238ffd4 c0 ff 38 02 98 ff ce 81 - ff ff ff ff b0 9a 83 7c ..8............| 000000000238ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000238fff4 3e ec 2d 06 90 1e 68 06 - 00 00 00 00 4d 5a 90 00 >.-...h.....MZ.. 0000000002390004 03 00 00 00 04 00 00 00 - ff ff 00 00 b8 00 00 00 ................ 0000000002390014 00 00 00 00 40 00 00 00 - 00 00 00 00 00 00 00 00 ....@........... 0000000002390024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x380 <----* eax=00000000 ebx=024bfea8 ecx=00000000 edx=00000000 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=024bfe80 ebp=024bff1c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 024bff1c 7c80a115 00000002 024bff58 00000000 ntdll!KiFastSystemCallRet 024bff38 0622e03b 00000002 024bff58 00000000 kernel32!WaitForMultipleObjects+0x18 024bff68 061a3804 016cd8b4 7c900000 062dec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x87d9c 024bffac 062decbd 7c900000 7c80b729 069bdc20 GoogleToolbarDynamic_32_B31C6BD+0x3804 024bffec 00000000 062dec3e 069bdc20 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000024bfe80 4a df 90 7c 90 95 80 7c - 02 00 00 00 a8 fe 4b 02 J..|...|......K. 00000000024bfe90 01 00 00 00 00 00 00 00 - 00 00 00 00 60 db 9b 06 ............`... 00000000024bfea0 60 db 9b 06 fd a0 80 7c - 5c 09 00 00 58 09 00 00 `......|\...X... 00000000024bfeb0 17 00 00 00 01 00 00 00 - 8c d5 4e 77 54 3c 90 02 ..........NwT<.. 00000000024bfec0 d4 fe 4b 02 ac d6 4e 77 - 14 00 00 00 01 00 00 00 ..K...Nw........ 00000000024bfed0 00 00 00 00 00 00 00 00 - 10 00 00 00 f9 1a 4f 77 ..............Ow 00000000024bfee0 ac fa 2a 04 60 ff 4b 02 - 00 f0 fd 7f 00 c0 fa 7f ..*.`.K......... 00000000024bfef0 74 b5 15 00 00 00 00 00 - a8 fe 4b 02 c5 16 4f 77 t.........K...Ow 00000000024bff00 02 00 00 00 9c fe 4b 02 - 3c 78 5f 77 9c ff 4b 02 ......K. Zrzut stanu dla wątku o identyfikatorze 0x6a4 <----* eax=4ebd7456 ebx=0735fe7c ecx=001ae008 edx=4ebd9079 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=0735fe54 ebp=0735fef0 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll - ChildEBP RetAddr Args to Child 0735fef0 7e3695f9 00000002 0735ff18 00000000 ntdll!KiFastSystemCallRet 0735ff4c 7e3696a8 00000001 0735ffac ffffffff USER32!GetLastInputInfo+0x105 0735ff68 4ebd74b2 00000001 0735ffac 00000000 USER32!MsgWaitForMultipleObjects+0x1f 0735ffb4 7c80b729 00000000 0020003f 00000011 gdiplus!GdipGetVisibleClipBoundsI+0xad4 0735ffec 00000000 4ebd7456 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000735fe54 4a df 90 7c 90 95 80 7c - 02 00 00 00 7c fe 35 07 J..|...|....|.5. 000000000735fe64 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000735fe74 02 00 00 00 00 00 00 00 - 58 08 00 00 68 09 00 00 ........X...h... 000000000735fe84 cc 99 99 00 cc 99 cc 00 - cc 99 ff 00 cc cc 00 00 ................ 000000000735fe94 cc cc 33 00 cc cc 66 00 - 14 00 00 00 01 00 00 00 ..3...f......... 000000000735fea4 00 00 00 00 00 00 00 00 - 10 00 00 00 cc ff 66 00 ..............f. 000000000735feb4 cc ff 99 00 cc ff cc 00 - 00 f0 fd 7f 00 d0 f9 7f ................ 000000000735fec4 ff 00 33 00 00 00 00 00 - 7c fe 35 07 ff 00 cc 00 ..3.....|.5..... 000000000735fed4 02 00 00 00 70 fe 35 07 - ff 33 33 00 dc ff 35 07 ....p.5..33...5. 000000000735fee4 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 4c ff 35 07 ...|...|....L.5. 000000000735fef4 f9 95 36 7e 02 00 00 00 - 18 ff 35 07 00 00 00 00 ..6~......5..... 000000000735ff04 ff ff ff ff 00 00 00 00 - 40 a3 37 7e a4 72 d4 4e ........@.7~.r.N 000000000735ff14 00 00 00 00 58 08 00 00 - 68 09 00 00 ff cc 00 00 ....X...h....... 000000000735ff24 ff cc 33 00 ff cc 66 00 - ff cc 99 00 ff cc cc 00 ..3...f......... 000000000735ff34 ff cc ff 00 ff ff 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000735ff44 00 d0 f9 7f 68 09 00 00 - 68 ff 35 07 a8 96 36 7e ....h...h.5...6~ 000000000735ff54 01 00 00 00 ac ff 35 07 - ff ff ff ff ff 04 00 00 ......5......... 000000000735ff64 18 ff 35 07 b4 ff 35 07 - b2 74 bd 4e 01 00 00 00 ..5...5..t.N.... 000000000735ff74 ac ff 35 07 00 00 00 00 - ff ff ff ff ff 04 00 00 ..5............. 000000000735ff84 3f 00 20 00 11 00 00 00 - 00 00 00 00 39 ac 4f 80 ?. .........9.O. *----> Zrzut stanu dla wątku o identyfikatorze 0x43c <----* eax=07790000 ebx=00000000 ecx=0771c4b0 edx=ffff0000 esi=069bc3f0 edi=00000000 eip=7c90e514 esp=0765fef4 ebp=0765ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0765ff20 062bc37b 00000938 0765ff48 0765ff4c ntdll!KiFastSystemCallRet 0765ff58 062a4eb7 00000001 062bb4dd 069bd860 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0765ffac 062decbd 7c900000 7c80b729 06681e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0765ffec 00000000 062dec3e 06681e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000765fef4 4a da 90 7c e6 a7 80 7c - 38 09 00 00 4c ff 65 07 J..|...|8...L.e. 000000000765ff04 38 ff 65 07 18 ff 65 07 - 00 00 00 00 e4 37 1a 06 8.e...e......7.. 000000000765ff14 48 d7 9b 06 20 2b 9c 06 - 96 c1 2b 06 58 ff 65 07 H... +....+.X.e. 000000000765ff24 7b c3 2b 06 38 09 00 00 - 48 ff 65 07 4c ff 65 07 {.+.8...H.e.L.e. 000000000765ff34 54 ff 65 07 ff ff ff ff - 00 00 00 00 60 d8 9b 06 T.e.........`... 000000000765ff44 90 1e 68 06 00 00 00 00 - 00 00 00 00 01 38 1a 06 ..h..........8.. 000000000765ff54 20 2b 9c 06 ac ff 65 07 - b7 4e 2a 06 01 00 00 00 +....e..N*..... 000000000765ff64 dd b4 2b 06 60 d8 9b 06 - 04 38 1a 06 f0 fc 38 02 ..+.`....8....8. 000000000765ff74 00 00 90 7c 18 ec 2d 06 - 60 d8 9b 06 b3 08 5a c9 ...|..-.`.....Z. 000000000765ff84 f0 fc 38 02 00 00 90 7c - 90 1e 68 06 80 ff 65 07 ..8....|..h...e. 000000000765ff94 80 ff 65 07 dc ff 65 07 - dc ff 65 07 70 e7 2d 06 ..e...e...e.p.-. 000000000765ffa4 ef 7b 7c c8 00 00 00 00 - ec ff 65 07 bd ec 2d 06 .{|.......e...-. 000000000765ffb4 00 00 90 7c 29 b7 80 7c - 90 1e 68 06 f0 fc 38 02 ...|)..|..h...8. 000000000765ffc4 00 00 90 7c 90 1e 68 06 - 00 b0 f9 7f 00 46 3c 82 ...|..h......F<. 000000000765ffd4 c0 ff 65 07 98 ff ce 81 - ff ff ff ff b0 9a 83 7c ..e............| 000000000765ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000765fff4 3e ec 2d 06 90 1e 68 06 - 00 00 00 00 4d 5a 90 00 >.-...h.....MZ.. 0000000007660004 03 00 00 00 04 00 00 00 - ff ff 00 00 b8 00 00 00 ................ 0000000007660014 00 00 00 00 40 00 00 00 - 00 00 00 00 00 00 00 00 ....@........... 0000000007660024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xf1c <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=069bc3f0 edi=00000000 eip=7c90e514 esp=078cfef4 ebp=078cff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 078cff20 062bc37b 00000938 078cff48 078cff4c ntdll!KiFastSystemCallRet 078cff58 062a4eb7 00000002 062bb4dd 069bd888 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 078cffac 062decbd 7c900000 7c80b729 06681e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 078cffec 00000000 062dec3e 06681e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000078cfef4 4a da 90 7c e6 a7 80 7c - 38 09 00 00 4c ff 8c 07 J..|...|8...L... 00000000078cff04 38 ff 8c 07 18 ff 8c 07 - 00 00 00 00 f0 c3 9b 06 8............... 00000000078cff14 58 ff 8c 07 44 b4 2b 06 - 3d 00 00 00 58 ff 8c 07 X...D.+.=...X... 00000000078cff24 7b c3 2b 06 38 09 00 00 - 48 ff 8c 07 4c ff 8c 07 {.+.8...H...L... 00000000078cff34 54 ff 8c 07 ff ff ff ff - 00 00 00 00 88 d8 9b 06 T............... 00000000078cff44 90 1e 68 06 00 00 00 00 - 00 00 00 00 b6 38 1a 06 ..h..........8.. 00000000078cff54 00 00 00 00 ac ff 8c 07 - b7 4e 2a 06 02 00 00 00 .........N*..... 00000000078cff64 dd b4 2b 06 88 d8 9b 06 - 04 38 1a 06 f0 fc 38 02 ..+......8....8. 00000000078cff74 00 00 90 7c 18 ec 2d 06 - 88 d8 9b 06 b3 08 b3 c9 ...|..-......... 00000000078cff84 f0 fc 38 02 00 00 90 7c - 90 1e 68 06 80 ff 8c 07 ..8....|..h..... 00000000078cff94 80 ff 8c 07 dc ff 8c 07 - dc ff 8c 07 70 e7 2d 06 ............p.-. 00000000078cffa4 ef 7b 7c c8 00 00 00 00 - ec ff 8c 07 bd ec 2d 06 .{|...........-. 00000000078cffb4 00 00 90 7c 29 b7 80 7c - 90 1e 68 06 f0 fc 38 02 ...|)..|..h...8. 00000000078cffc4 00 00 90 7c 90 1e 68 06 - 00 a0 f9 7f 00 46 3c 82 ...|..h......F<. 00000000078cffd4 c0 ff 8c 07 98 ff ce 81 - ff ff ff ff b0 9a 83 7c ...............| 00000000078cffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 00000000078cfff4 3e ec 2d 06 90 1e 68 06 - 00 00 00 00 00 00 00 00 >.-...h......... 00000000078d0004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000078d0014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000078d0024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xe38 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=069bc3f0 edi=00000000 eip=7c90e514 esp=079cfef4 ebp=079cff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 079cff20 062bc37b 00000938 079cff48 079cff4c ntdll!KiFastSystemCallRet 079cff58 062a4eb7 00000003 062bb4dd 069bd8b0 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 079cffac 062decbd 7c900000 7c80b729 06681e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 079cffec 00000000 062dec3e 06681e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000079cfef4 4a da 90 7c e6 a7 80 7c - 38 09 00 00 4c ff 9c 07 J..|...|8...L... 00000000079cff04 38 ff 9c 07 18 ff 9c 07 - 00 00 00 00 e4 37 1a 06 8............7.. 00000000079cff14 48 d7 9b 06 90 71 a0 06 - 96 c1 2b 06 58 ff 9c 07 H....q....+.X... 00000000079cff24 7b c3 2b 06 38 09 00 00 - 48 ff 9c 07 4c ff 9c 07 {.+.8...H...L... 00000000079cff34 54 ff 9c 07 ff ff ff ff - 00 00 00 00 b0 d8 9b 06 T............... 00000000079cff44 90 1e 68 06 00 00 00 00 - 00 00 00 00 01 38 1a 06 ..h..........8.. 00000000079cff54 90 71 a0 06 ac ff 9c 07 - b7 4e 2a 06 03 00 00 00 .q.......N*..... 00000000079cff64 dd b4 2b 06 b0 d8 9b 06 - 04 38 1a 06 f0 fc 38 02 ..+......8....8. 00000000079cff74 00 00 90 7c 18 ec 2d 06 - b0 d8 9b 06 b3 08 a3 c9 ...|..-......... 00000000079cff84 f0 fc 38 02 00 00 90 7c - 90 1e 68 06 80 ff 9c 07 ..8....|..h..... 00000000079cff94 80 ff 9c 07 dc ff 9c 07 - dc ff 9c 07 70 e7 2d 06 ............p.-. 00000000079cffa4 ef 7b 7c c8 00 00 00 00 - ec ff 9c 07 bd ec 2d 06 .{|...........-. 00000000079cffb4 00 00 90 7c 29 b7 80 7c - 90 1e 68 06 f0 fc 38 02 ...|)..|..h...8. 00000000079cffc4 00 00 90 7c 90 1e 68 06 - 00 90 f9 7f 00 46 3c 82 ...|..h......F<. 00000000079cffd4 c0 ff 9c 07 98 ff ce 81 - ff ff ff ff b0 9a 83 7c ...............| 00000000079cffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 00000000079cfff4 3e ec 2d 06 90 1e 68 06 - 00 00 00 00 00 00 00 00 >.-...h......... 00000000079d0004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000079d0014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000079d0024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xde8 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=000009ec edi=00000000 eip=7c90e514 esp=07b0feb8 ebp=07b0ff1c iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 07b0ff1c 7c802542 000009ec 0001d4c0 00000000 ntdll!KiFastSystemCallRet 07b0ff30 062d0ceb 000009ec 0001d4c0 00000000 kernel32!WaitForSingleObject+0x12 07b0ff68 061a3804 016cd870 7c900000 062dec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x12aa4c 07b0ffac 062decbd 7c900000 7c80b729 069e1e20 GoogleToolbarDynamic_32_B31C6BD+0x3804 07b0ffec 00000000 062dec3e 069e1e20 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000007b0feb8 5a df 90 7c db 25 80 7c - ec 09 00 00 00 00 00 00 Z..|.%.|........ 0000000007b0fec8 ec fe b0 07 ea 00 00 00 - 30 a2 9d 06 00 00 00 00 ........0....... 0000000007b0fed8 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007b0fee8 10 00 00 00 00 74 79 b8 - ff ff ff ff 00 f0 fd 7f .....ty......... 0000000007b0fef8 00 80 f9 7f ec fe b0 07 - 00 00 00 00 cc fe b0 07 ................ 0000000007b0ff08 88 62 e3 77 9c ff b0 07 - b0 9a 83 7c 08 26 80 7c .b.w.......|.&.| 0000000007b0ff18 00 00 00 00 30 ff b0 07 - 42 25 80 7c ec 09 00 00 ....0...B%.|.... 0000000007b0ff28 c0 d4 01 00 00 00 00 00 - 68 ff b0 07 eb 0c 2d 06 ........h.....-. 0000000007b0ff38 ec 09 00 00 c0 d4 01 00 - 00 00 00 00 30 a2 9d 06 ............0... 0000000007b0ff48 20 1e 9e 06 aa ed 2d 06 - b6 38 1a 06 88 bc b3 cf .....-..8...... 0000000007b0ff58 00 00 00 00 30 a2 9d 06 - a4 39 1a 06 30 a2 9d 06 ....0....9..0... 0000000007b0ff68 ac ff b0 07 04 38 1a 06 - 70 d8 6c 01 00 00 90 7c .....8..p.l....| 0000000007b0ff78 18 ec 2d 06 30 a2 9d 06 - b3 08 8f c9 70 d8 6c 01 ..-.0.......p.l. 0000000007b0ff88 00 00 90 7c 20 1e 9e 06 - 80 ff b0 07 80 ff b0 07 ...| ........... 0000000007b0ff98 dc ff b0 07 dc ff b0 07 - 70 e7 2d 06 ef 7b 7c c8 ........p.-..{|. 0000000007b0ffa8 00 00 00 00 ec ff b0 07 - bd ec 2d 06 00 00 90 7c ..........-....| 0000000007b0ffb8 29 b7 80 7c 20 1e 9e 06 - 70 d8 6c 01 00 00 90 7c )..| ...p.l....| 0000000007b0ffc8 20 1e 9e 06 00 80 f9 7f - 00 46 3c 82 c0 ff b0 07 ........F<..... 0000000007b0ffd8 b0 28 cf 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c .(.........|0..| 0000000007b0ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 3e ec 2d 06 ............>.-. *----> Zrzut stanu dla wątku o identyfikatorze 0xdb4 <----* eax=00000000 ebx=00000000 ecx=00000004 edx=00000000 esi=032de290 edi=0860451c eip=3f618020 esp=086044f8 ebp=08604504 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: mshtml!Ordinal103 3f618007 c075ee8b shl byte ptr [ebp-0x12],0x8b 3f61800b 40 inc eax 3f61800c 70e9 jo mshtml!Ordinal103+0xdc837 (3f617ff7) 3f61800e 16 push ss 3f61800f 94 xchg eax,esp 3f618010 e3ff jecxz mshtml!Ordinal103+0xdc851 (3f618011) 3f618012 8bc6 mov eax,esi 3f618014 e8b6ff1f00 call mshtml+0x4e7fcf (3f817fcf) 3f618019 8bf0 mov esi,eax 3f61801b e9b593e3ff jmp mshtml!DllGetClassObject+0x1040d0 (3f4513d5) BŁĄD ->3f618020 395314 cmp [ebx+0x14],edx ds:0023:00000014=???????? 3f618023 743a jz mshtml!Ordinal103+0xdc89f (3f61805f) 3f618025 8b4e38 mov ecx,[esi+0x38] 3f618028 89550c mov [ebp+0xc],edx 3f61802b 395004 cmp [eax+0x4],edx 3f61802e 750d jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618030 395018 cmp [eax+0x18],edx 3f618033 7508 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618035 394838 cmp [eax+0x38],ecx 3f618038 7503 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f61803a 89450c mov [ebp+0xc],eax *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\jscript.dll - ChildEBP RetAddr Args to Child 08604504 3f45135d 086045c8 08604538 0860451c mshtml!Ordinal103+0xdc860 0860453c 3f452257 07ca6850 032dfa20 02926594 mshtml!DllGetClassObject+0x104058 0860460c 3f4ae631 07ca6850 032dfa20 00000000 mshtml!DllGetClassObject+0x104f52 08604640 3f4ac39b 07ca6850 032dfa20 00000000 mshtml!Ordinal104+0xccc1 08604774 3f4abe87 07ca6850 032dfa20 00000000 mshtml!Ordinal104+0xaa2b 086047a4 3f4ac898 07ca6850 032dfa20 00000000 mshtml!Ordinal104+0xa517 08604864 3f4a93b9 00000000 032dfa20 00000000 mshtml!Ordinal104+0xaf28 08604984 3f4aab8a 032b2990 0288cf60 032dfa20 mshtml!Ordinal104+0x7a49 08604a58 3f4ab0c0 032b2990 0288cf60 02922f1c mshtml!Ordinal104+0x921a 08604af8 3f4a9b96 032b2990 0288cf60 032dfa20 mshtml!Ordinal104+0x9750 08604b4c 3f4ace27 07ca6850 032dfa20 00000000 mshtml!Ordinal104+0x8226 08604bf0 3f4af5b7 07ca6850 032dfa20 00000000 mshtml!Ordinal104+0xb4b7 08604cc8 3f4aeaba 07ca6850 00000000 00000001 mshtml!Ordinal104+0xdc47 08604ddc 3f4ae8be 07ca6850 00000000 08604f0c mshtml!Ordinal104+0xd14a 08604e28 3f4a7c15 07ca6850 00158760 00000000 mshtml!Ordinal104+0xcf4e 08604f88 3f4af97b 07ca6850 032dfa20 00158760 mshtml!Ordinal104+0x62a5 08604ffc 3f4af0c1 032dfa20 00000000 00000000 mshtml!Ordinal104+0xe00b 086050b8 3f4b51c0 032dfa20 00000000 08605168 mshtml!Ordinal104+0xd751 086051a0 3f4b66b9 032dfa20 00000000 00000001 mshtml!Ordinal104+0x13850 086051d4 3f4b7564 3fffffff 00000000 00000001 mshtml!Ordinal104+0x14d49 0860521c 3f4b7414 032dfa20 00000000 086052f8 mshtml!Ordinal104+0x15bf4 086052fc 3f4b737d 032dfa20 00000000 00000000 mshtml!Ordinal104+0x15aa4 08605344 3f4b7198 032dfa20 0860536c 00000000 mshtml!Ordinal104+0x15a0d 08605390 3f4b5f74 032dfa20 00000000 0024c090 mshtml!Ordinal104+0x15828 08605504 3f4b5e15 032dfa20 00000000 0024c090 mshtml!Ordinal104+0x14604 08605570 3f4b5c85 032dfa20 00000000 0024c090 mshtml!Ordinal104+0x144a5 08605650 3f4b629e 032dfa20 086056f8 086058a8 mshtml!Ordinal104+0x14315 08605794 3f4b6b24 032dfa20 00000000 0024c090 mshtml!Ordinal104+0x1492e 086058cc 3f4d5540 07ca6850 0024c090 00000001 mshtml!Ordinal104+0x151b4 086058f0 3f4d54ed 07ca6850 032b2390 0024c090 mshtml!Ordinal104+0x33bd0 08605994 3f4ab7ce 0024c090 03428360 086059bb mshtml!Ordinal104+0x33b7d 08605b04 3f3eb947 08605cc8 08605c60 00000000 mshtml!Ordinal104+0x9e5e 08605c3c 3f3fe4ee 03428360 00000000 00000000 mshtml!DllGetClassObject+0x9e642 08605d38 3f5cd0c0 00100000 08605d90 04166140 mshtml!DllGetClassObject+0xb11e9 08605d4c 3f3d8c8d 08605d90 08605d90 3f3e1fff mshtml!Ordinal103+0x91900 08605d6c 3f3d8e57 08605d90 0445ec20 00000000 mshtml!DllGetClassObject+0x8b988 08605dc4 3f3d6e02 08605e58 0021dfc8 08605e58 mshtml!DllGetClassObject+0x8bb52 08605e1c 3f3d6d75 02968028 00000000 0021e08c mshtml!DllGetClassObject+0x89afd 08605e44 3f3e1efa 08605e58 0021e1b8 3f3a10a0 mshtml!DllGetClassObject+0x89a70 08605e8c 3f3b53ca 0000000f 00000000 00000000 mshtml!DllGetClassObject+0x94bf5 08605eb0 3f5587e5 07e53de8 00000001 045d46d8 mshtml!DllGetClassObject+0x680c5 08605edc 3f5588d2 07e53de8 03fcc2c0 00001200 mshtml!Ordinal103+0x1d025 08605f00 3f512165 07e53de8 045d46d8 03fcc2c0 mshtml!Ordinal103+0x1d112 08605f20 3f41ab53 07e53de8 03fcc2c0 07d8d908 mshtml!Ordinal104+0x707f5 08605f94 3f426bf1 07e53de8 800103f2 00000002 mshtml!DllGetClassObject+0xcd84e 08605fe4 3f4328c8 07e53de8 800103f2 00000002 mshtml!DllGetClassObject+0xd98ec 08606010 3f41a551 07e53de8 800103f2 00000002 mshtml!DllGetClassObject+0xe55c3 08606060 3fc53a9a 07e53848 800103f2 00000002 mshtml!DllGetClassObject+0xcd24c 086060a0 3fc539e6 045cf218 800103f2 00000409 jscript!DllGetClassObject+0xc855 086060dc 3fc54f26 045cf218 00000409 00000002 jscript!DllGetClassObject+0xc7a1 0860619c 3fc54e80 800103f2 00000002 045d46d0 jscript!DllGetClassObject+0xdce1 086061d0 3fc54b96 045cf218 086062f8 00000002 jscript!DllGetClassObject+0xdc3b 08606368 3fc513ab 08606380 086067a0 086067a0 jscript!DllGetClassObject+0xd951 08606450 3fc512e5 086067a0 00000003 045d4780 jscript!DllGetClassObject+0xa166 0860649c 3fc52a05 086067a0 00000003 045d4780 jscript!DllGetClassObject+0xa0a0 08606520 3fc528c5 045eb0f8 045cf218 00000003 jscript!DllGetClassObject+0xb7c0 08606554 3fc543fc 045cf218 00000000 00000003 jscript!DllGetClassObject+0xb680 08606594 3fc524c1 045cf218 08606604 045eaea8 jscript!DllGetClassObject+0xd1b7 086065d0 3fc52d6d 045cf218 08606604 00000003 jscript!DllGetClassObject+0xb27c 0860661c 3fc54235 045cf218 00000003 086067a0 jscript!DllGetClassObject+0xbb28 0860664c 3fc53114 045cf218 00000000 00000003 jscript!DllGetClassObject+0xcff0 086067e8 3fc513ab 08606800 08606c20 08606c20 jscript!DllGetClassObject+0xbecf 086068d0 3fc512e5 08606c20 00000002 045d4880 jscript!DllGetClassObject+0xa166 0860691c 3fc52a05 08606c20 00000002 045d4880 jscript!DllGetClassObject+0xa0a0 086069a0 3fc528c5 045ea778 045cf218 00000003 jscript!DllGetClassObject+0xb7c0 086069d4 3fc543fc 045cf218 00000000 00000003 jscript!DllGetClassObject+0xb680 08606a14 3fc524c1 045cf218 08606a84 045d2000 jscript!DllGetClassObject+0xd1b7 08606a50 3fc52d6d 045cf218 08606a84 00000003 jscript!DllGetClassObject+0xb27c 08606a9c 3fc54235 045cf218 00000003 08606c20 jscript!DllGetClassObject+0xbb28 08606acc 3fc53114 045cf218 00000000 00000003 jscript!DllGetClassObject+0xcff0 08606c68 3fc513ab 08606c80 086070a0 086070a0 jscript!DllGetClassObject+0xbecf 08606d50 3fc512e5 086070a0 00000000 045d4960 jscript!DllGetClassObject+0xa166 08606d9c 3fc52a05 086070a0 00000000 045d4960 jscript!DllGetClassObject+0xa0a0 08606e20 3fc528c5 045e8218 045cf218 00000001 jscript!DllGetClassObject+0xb7c0 08606e54 3fc543fc 045cf218 00000000 00000001 jscript!DllGetClassObject+0xb680 08606e94 3fc524c1 045cf218 08606f04 046b5c50 jscript!DllGetClassObject+0xd1b7 08606ed0 3fc52d6d 045cf218 08606f04 00000001 jscript!DllGetClassObject+0xb27c 08606f1c 3fc54235 045cf218 00000001 086070a0 jscript!DllGetClassObject+0xbb28 08606f4c 3fc53114 045cf218 00000000 00000001 jscript!DllGetClassObject+0xcff0 086070e8 3fc513ab 08607100 08607688 08607688 jscript!DllGetClassObject+0xbecf 086071d0 3fc512e5 08607688 00000002 045d4a10 jscript!DllGetClassObject+0xa166 0860721c 3fc52a05 08607688 00000002 045d4a10 jscript!DllGetClassObject+0xa0a0 086072a0 3fc528c5 03f6c880 045cf218 00000001 jscript!DllGetClassObject+0xb7c0 086072d4 3fc73b5f 045cf218 00000000 00000001 jscript!DllGetClassObject+0xb680 0860731c 3fc54327 045cf218 086073c0 08607688 jscript!DllCanUnloadNow+0x103df 08607384 3fc52a05 08607688 00000003 045d4a10 jscript!DllGetClassObject+0xd0e2 08607408 3fc528c5 03f878b0 045cf218 00000003 jscript!DllGetClassObject+0xb7c0 0860743c 3fc543fc 045cf218 00000000 00000003 jscript!DllGetClassObject+0xb680 0860747c 3fc524c1 045cf218 086074ec 03f6c880 jscript!DllGetClassObject+0xd1b7 086074b8 3fc52d6d 045cf218 086074ec 00000003 jscript!DllGetClassObject+0xb27c 08607504 3fc54235 045cf218 00000003 08607688 jscript!DllGetClassObject+0xbb28 08607534 3fc53114 045cf218 00000000 00000003 jscript!DllGetClassObject+0xcff0 086076d0 3fc513ab 086076e8 08607b08 08607b08 jscript!DllGetClassObject+0xbecf 086077b8 3fc512e5 08607b08 00000003 045d4b00 jscript!DllGetClassObject+0xa166 08607804 3fc52a05 08607b08 00000003 045d4b00 jscript!DllGetClassObject+0xa0a0 08607888 3fc528c5 03fa8ad8 045cf218 00000003 jscript!DllGetClassObject+0xb7c0 086078bc 3fc543fc 045cf218 00000000 00000003 jscript!DllGetClassObject+0xb680 086078fc 3fc524c1 045cf218 0860796c 045d2000 jscript!DllGetClassObject+0xd1b7 08607938 3fc52d6d 045cf218 0860796c 00000003 jscript!DllGetClassObject+0xb27c 08607984 3fc54235 045cf218 00000003 08607b08 jscript!DllGetClassObject+0xbb28 *----> Zrzut stosu <----* 00000000086044f8 c8 45 60 08 50 68 ca 07 - 00 00 00 00 3c 45 60 08 .E`.Ph...... Zrzut stanu dla wątku o identyfikatorze 0xa70 <----* eax=00000000 ebx=0890fea8 ecx=00000000 edx=00000000 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=0890fe80 ebp=0890ff1c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0890ff1c 7c80a115 00000002 0890ff58 00000000 ntdll!KiFastSystemCallRet 0890ff38 0622e03b 00000002 0890ff58 00000000 kernel32!WaitForMultipleObjects+0x18 0890ff68 061a3804 0860d8b4 7c900000 062dec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x87d9c 0890ffac 062decbd 7c900000 7c80b729 069da458 GoogleToolbarDynamic_32_B31C6BD+0x3804 0890ffec 00000000 062dec3e 069da458 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000890fe80 4a df 90 7c 90 95 80 7c - 02 00 00 00 a8 fe 90 08 J..|...|........ 000000000890fe90 01 00 00 00 00 00 00 00 - 00 00 00 00 a0 74 a0 06 .............t.. 000000000890fea0 a0 74 a0 06 fd a0 80 7c - 00 0b 00 00 fc 0a 00 00 .t.....|........ 000000000890feb0 17 00 00 00 01 00 00 00 - 8c d5 4e 77 8c 45 90 02 ..........Nw.E.. 000000000890fec0 d4 fe 90 08 ac d6 4e 77 - 14 00 00 00 01 00 00 00 ......Nw........ 000000000890fed0 00 00 00 00 00 00 00 00 - 10 00 00 00 f9 1a 4f 77 ..............Ow 000000000890fee0 cc e3 43 04 60 ff 90 08 - 00 f0 fd 7f 00 60 f9 7f ..C.`........`.. 000000000890fef0 2c b6 15 00 00 00 00 00 - a8 fe 90 08 c5 16 4f 77 ,.............Ow 000000000890ff00 02 00 00 00 9c fe 90 08 - 3c 78 5f 77 9c ff 90 08 ........ Zrzut stanu dla wątku o identyfikatorze 0xbbc <----* eax=72cb30e8 ebx=0874fef8 ecx=0000007c edx=00150000 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=0874fed0 ebp=0874ff6c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\wdmaud.drv - ChildEBP RetAddr Args to Child 0874ff6c 7c80a115 00000002 0874ffa4 00000000 ntdll!KiFastSystemCallRet 0874ff88 72cb312a 00000002 0874ffa4 00000000 kernel32!WaitForMultipleObjects+0x18 0874ffb4 7c80b729 00000000 04382200 001ae008 wdmaud!midMessage+0x348 0874ffec 00000000 72cb30e8 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000874fed0 4a df 90 7c 90 95 80 7c - 02 00 00 00 f8 fe 74 08 J..|...|......t. 000000000874fee0 01 00 00 00 00 00 00 00 - 00 00 00 00 00 22 38 04 ............."8. 000000000874fef0 00 00 00 00 00 00 00 00 - 38 0b 00 00 28 0b 00 00 ........8...(... 000000000874ff00 ff 32 91 7c 00 00 52 74 - 6c 44 65 63 6f 64 65 50 .2.|..RtlDecodeP 000000000874ff10 6f 69 6e 74 bc 31 ef 81 - 14 00 00 00 01 00 00 00 oint.1.......... 000000000874ff20 00 00 00 00 00 00 00 00 - 10 00 00 00 54 30 ef 81 ............T0.. 000000000874ff30 58 7c 91 7c 4a 8d 57 80 - 00 f0 fd 7f 00 c0 f9 7f X|.|J.W......... 000000000874ff40 00 c0 f9 7f 00 00 00 00 - f8 fe 74 08 00 00 00 00 ..........t..... 000000000874ff50 02 00 00 00 ec fe 74 08 - 00 00 00 00 dc ff 74 08 ......t.......t. 000000000874ff60 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 88 ff 74 08 ...|...|......t. 000000000874ff70 15 a1 80 7c 02 00 00 00 - a4 ff 74 08 00 00 00 00 ...|......t..... 000000000874ff80 ff ff ff ff 00 00 00 00 - b4 ff 74 08 2a 31 cb 72 ..........t.*1.r 000000000874ff90 02 00 00 00 a4 ff 74 08 - 00 00 00 00 ff ff ff ff ......t......... 000000000874ffa0 08 e0 1a 00 38 0b 00 00 - 28 0b 00 00 00 00 00 00 ....8...(....... 000000000874ffb0 1a da 90 7c ec ff 74 08 - 29 b7 80 7c 00 00 00 00 ...|..t.)..|.... 000000000874ffc0 00 22 38 04 08 e0 1a 00 - 00 00 00 00 00 c0 f9 7f ."8............. 000000000874ffd0 00 46 3c 82 c0 ff 74 08 - 88 e9 bf 81 ff ff ff ff .F<...t......... 000000000874ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 000000000874fff0 00 00 00 00 e8 30 cb 72 - 00 00 00 00 00 00 00 00 .....0.r........ 0000000008750000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xbc <----* eax=0000059d ebx=00000b64 ecx=00000510 edx=044d9010 esi=08a0ff98 edi=7e37772b eip=7c90e514 esp=08a0ff54 ebp=08a0ff78 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WINMM.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 08a0ff78 76b24e31 08a0ff98 00000000 00000000 ntdll!KiFastSystemCallRet 08a0ffb4 7c80b729 00000b64 00000200 0000002b WINMM!PlaySoundW+0x7e2 08a0ffec 00000000 76b24dca 00000b64 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000008a0ff54 be 91 36 7e 6b 77 37 7e - 98 ff a0 08 00 00 00 00 ..6~kw7~........ 0000000008a0ff64 00 00 00 00 00 00 00 00 - 64 0b 00 00 2b 77 37 7e ........d...+w7~ 0000000008a0ff74 00 00 00 00 b4 ff a0 08 - 31 4e b2 76 98 ff a0 08 ........1N.v.... 0000000008a0ff84 00 00 00 00 00 00 00 00 - 00 00 00 00 00 02 00 00 ................ 0000000008a0ff94 2b 00 00 00 06 01 1e 00 - bc 03 00 00 d0 bd 4a 04 +.............J. 0000000008a0ffa4 00 00 00 00 f8 41 b2 00 - d8 00 00 00 a8 01 00 00 .....A.......... 0000000008a0ffb4 ec ff a0 08 29 b7 80 7c - 64 0b 00 00 00 02 00 00 ....)..|d....... 0000000008a0ffc4 2b 00 00 00 64 0b 00 00 - 00 70 f9 7f 00 46 3c 82 +...d....p...F<. 0000000008a0ffd4 c0 ff a0 08 88 e9 bf 81 - ff ff ff ff b0 9a 83 7c ...............| 0000000008a0ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 0000000008a0fff4 ca 4d b2 76 64 0b 00 00 - 00 00 00 00 08 00 00 00 .M.vd........... 0000000008a10004 00 01 00 03 ee ff ee ff - 00 00 00 00 00 00 99 00 ................ 0000000008a10014 00 90 37 00 00 00 a1 08 - 00 04 00 00 40 00 a1 08 ..7.........@... 0000000008a10024 00 00 e1 08 79 03 00 00 - 01 00 00 00 f8 05 99 00 ....y........... 0000000008a10034 00 00 00 00 f0 6f a9 08 - 00 00 00 00 30 a3 08 00 .....o......0... 0000000008a10044 08 01 0c 03 a2 04 00 00 - b0 0e 01 00 1c 00 00 00 ................ 0000000008a10054 90 9d 00 00 40 01 00 00 - 20 08 01 00 a4 01 00 00 ....@... ....... 0000000008a10064 74 19 05 00 d0 9e 00 00 - 2a 0d 00 00 cc 0e 01 00 t.......*....... 0000000008a10074 08 0f 01 00 0a 33 01 00 - 18 b4 a0 0a 0c 00 00 00 .....3.......... 0000000008a10084 77 00 69 00 6e 00 64 00 - 6f 00 77 00 00 00 00 00 w.i.n.d.o.w..... Wystąpił wyjątek aplikacji: Apl: C:\Program Files\Internet Explorer\iexplore.exe (pid=3964) Kiedy: 2013-07-05 @ 11:54:48.994 Numer wyjątku: c0000005 (naruszenie praw dostępu) *----> Informacje o systemie <----* Nazwa komputera: OEM-23004A62F73 Nazwa użytkownika: oem Identyfikator sesji terminala: 0 Liczba procesorów: 1 Typ procesora: x86 Family 15 Model 2 Stepping 7 Wersja systemu Windows: 5.1 Bieżąca kompilacja: 2600 Dodatek Service Pack: 3. Bieżący typ: Uniprocessor Free Zarejestrowana organizacja: Zarejestrowany właściciel: oem *----> Lista zadań <----* 0 System Process 4 System 792 smss.exe 848 csrss.exe 876 winlogon.exe 920 services.exe 932 lsass.exe 1104 svchost.exe 1192 svchost.exe 1340 svchost.exe 1412 svchost.exe 1524 svchost.exe 1856 Explorer.EXE 1936 spoolsv.exe 572 egui.exe 704 svchost.exe 768 ACService.exe 820 ekrn.exe 812 ctfmon.exe 824 GoogleToolbarNotifier.exe 1420 mdm.exe 1488 svchost.exe 1124 alg.exe 1588 iexplore.exe 3964 iexplore.exe 3412 drwtsn32.exe *----> Lista modułów <----* (0000000000400000 - 000000000049c000: C:\Program Files\Internet Explorer\iexplore.exe (00000000016d0000 - 00000000019a2000: C:\WINDOWS\system32\xpsp2res.dll (0000000001cb0000 - 0000000001cb9000: C:\WINDOWS\system32\Normaliz.dll (0000000002390000 - 00000000023a0000: C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (00000000024c0000 - 00000000025b9000: C:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (00000000026e0000 - 0000000002709000: C:\WINDOWS\system32\msls31.dll (00000000043d0000 - 0000000004845000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll (0000000004d00000 - 0000000005d1f000: C:\WINDOWS\system32\Macromed\Flash\Flash32_11_7_700_202.ocx (0000000007220000 - 000000000731f000: C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E7110F8B630E4F04.dll (0000000010000000 - 0000000010033000: C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (000000001b000000 - 000000001b00c000: C:\WINDOWS\system32\ImgUtil.dll (000000001b060000 - 000000001b06e000: C:\WINDOWS\system32\pngfilt.dll (000000001f840000 - 000000001f858000: C:\WINDOWS\system32\odbcint.dll (0000000035c50000 - 0000000035c89000: C:\WINDOWS\system32\Dxtrans.dll (0000000035cb0000 - 0000000035d07000: C:\WINDOWS\system32\Dxtmsft.dll (000000003f330000 - 000000003f8f0000: C:\WINDOWS\system32\mshtml.dll (000000003fc30000 - 000000003fce4000: C:\WINDOWS\system32\jscript.dll (000000003fcf0000 - 000000003fdd7000: C:\WINDOWS\system32\WININET.dll (0000000040390000 - 000000004057c000: C:\WINDOWS\system32\iertutil.dll (0000000040580000 - 000000004101d000: C:\WINDOWS\system32\IEFRAME.dll (0000000042a20000 - 0000000042a4f000: C:\WINDOWS\system32\iepeers.dll (00000000451f0000 - 00000000451f6000: C:\Program Files\Internet Explorer\xpshims.dll (0000000045330000 - 0000000045464000: C:\WINDOWS\system32\urlmon.dll (0000000045530000 - 0000000045570000: C:\Program Files\Internet Explorer\ieproxy.dll (000000004ebc0000 - 000000004ed6b000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll (0000000059bc0000 - 0000000059c61000: C:\WINDOWS\system32\dbghelp.dll (000000005b1d0000 - 000000005b208000: C:\WINDOWS\system32\uxtheme.dll (000000005cfe0000 - 000000005d006000: C:\WINDOWS\system32\ShimEng.dll (000000005d520000 - 000000005d5ba000: C:\WINDOWS\system32\comctl32.dll (0000000061880000 - 00000000618ba000: C:\WINDOWS\system32\OLEACC.dll (0000000066780000 - 00000000667d8000: C:\WINDOWS\system32\hnetcfg.dll (0000000068000000 - 0000000068036000: C:\WINDOWS\system32\rsaenh.dll (000000006d440000 - 000000006d44c000: C:\Program Files\Java\jre6\bin\jp2ssv.dll (000000006d970000 - 000000006d97a000: C:\WINDOWS\system32\ddrawex.dll (000000006daf0000 - 000000006db02000: C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (000000006ff40000 - 000000006ff95000: C:\WINDOWS\system32\NETAPI32.dll (0000000071620000 - 0000000071699000: C:\WINDOWS\AppPatch\AcLayers.DLL (00000000719f0000 - 0000000071a30000: C:\WINDOWS\System32\mswsock.dll (0000000071a30000 - 0000000071a38000: C:\WINDOWS\System32\wshtcpip.dll (0000000071a40000 - 0000000071a48000: C:\WINDOWS\system32\WS2HELP.dll (0000000071a50000 - 0000000071a67000: C:\WINDOWS\system32\ws2_32.dll (0000000071ac0000 - 0000000071ad2000: C:\WINDOWS\system32\MPR.dll (0000000071ba0000 - 0000000071bb3000: C:\WINDOWS\System32\SAMLIB.dll (0000000071bc0000 - 0000000071bce000: C:\WINDOWS\System32\ntlanman.dll (0000000071c30000 - 0000000071c37000: C:\WINDOWS\System32\NETRAP.dll (0000000071c40000 - 0000000071c80000: C:\WINDOWS\System32\NETUI1.dll (0000000071c80000 - 0000000071c97000: C:\WINDOWS\System32\NETUI0.dll (0000000071cf0000 - 0000000071d0b000: C:\WINDOWS\system32\actxprxy.dll (0000000072260000 - 0000000072265000: C:\WINDOWS\system32\sensapi.dll (0000000072ca0000 - 0000000072ca8000: C:\WINDOWS\system32\msacm32.drv (0000000072cb0000 - 0000000072cb9000: C:\WINDOWS\system32\wdmaud.drv (0000000072ea0000 - 0000000072f0f000: C:\WINDOWS\system32\ieapfltr.dll (0000000072f90000 - 0000000072fb6000: C:\WINDOWS\system32\WINSPOOL.DRV (00000000736f0000 - 000000007373b000: C:\WINDOWS\system32\DDRAW.dll (0000000073ac0000 - 0000000073ad5000: C:\WINDOWS\system32\mscms.dll (0000000073b30000 - 0000000073b44000: C:\WINDOWS\system32\sti.dll (0000000073b50000 - 0000000073b56000: C:\WINDOWS\system32\DCIMAN32.dll (0000000073ea0000 - 0000000073efc000: C:\WINDOWS\system32\DSOUND.dll (0000000074600000 - 000000007463d000: C:\WINDOWS\system32\ODBC32.dll (00000000746a0000 - 00000000746ca000: C:\WINDOWS\system32\msimtf.dll (00000000746d0000 - 000000007471c000: C:\WINDOWS\system32\MSCTF.dll (0000000074a90000 - 0000000074a97000: C:\WINDOWS\system32\CFGMGR32.dll (0000000075180000 - 00000000751ae000: C:\WINDOWS\system32\msctfime.ime (0000000075940000 - 0000000075a39000: C:\WINDOWS\system32\MSGINA.dll (0000000075d70000 - 0000000075e01000: C:\WINDOWS\system32\MLANG.dll (0000000075f30000 - 0000000075f37000: C:\WINDOWS\System32\drprov.dll (0000000075f40000 - 0000000075f4a000: C:\WINDOWS\System32\davclnt.dll (0000000076330000 - 0000000076340000: C:\WINDOWS\system32\WINSTA.dll (0000000076350000 - 0000000076355000: C:\WINDOWS\system32\MSIMG32.dll (0000000076360000 - 000000007637d000: C:\WINDOWS\system32\IMM32.DLL (0000000076380000 - 00000000763c9000: C:\WINDOWS\system32\comdlg32.dll (0000000076770000 - 000000007677c000: C:\WINDOWS\system32\cryptdll.dll (0000000076970000 - 0000000076996000: C:\WINDOWS\system32\ntshrui.dll (00000000769a0000 - 0000000076a55000: C:\WINDOWS\system32\USERENV.dll (0000000076b00000 - 0000000076b11000: C:\WINDOWS\system32\ATL.DLL (0000000076b20000 - 0000000076b4e000: C:\WINDOWS\system32\WINMM.dll (0000000076be0000 - 0000000076beb000: C:\WINDOWS\system32\PSAPI.DLL (0000000076c20000 - 0000000076c4e000: C:\WINDOWS\system32\WINTRUST.dll (0000000076c80000 - 0000000076ca8000: C:\WINDOWS\system32\IMAGEHLP.dll (0000000076d50000 - 0000000076d69000: C:\WINDOWS\system32\iphlpapi.dll (0000000076e70000 - 0000000076e7e000: C:\WINDOWS\system32\rtutils.dll (0000000076e80000 - 0000000076e92000: C:\WINDOWS\system32\rasman.dll (0000000076ea0000 - 0000000076ecf000: C:\WINDOWS\system32\TAPI32.dll (0000000076ed0000 - 0000000076f0c000: C:\WINDOWS\system32\RASAPI32.dll (0000000076f10000 - 0000000076f37000: C:\WINDOWS\system32\DNSAPI.dll (0000000076f40000 - 0000000076f48000: C:\WINDOWS\system32\WTSAPI32.dll (0000000076fb0000 - 0000000076fb6000: C:\WINDOWS\system32\rasadhlp.dll (0000000076fc0000 - 000000007703f000: C:\WINDOWS\system32\CLBCATQ.DLL (0000000077040000 - 000000007710d000: C:\WINDOWS\system32\COMRes.dll (0000000077110000 - 000000007719b000: C:\WINDOWS\system32\OLEAUT32.dll (00000000773c0000 - 00000000774c3000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll (00000000774d0000 - 000000007760e000: C:\WINDOWS\system32\ole32.dll (0000000077910000 - 0000000077a06000: C:\WINDOWS\system32\SETUPAPI.dll (0000000077a70000 - 0000000077b06000: C:\WINDOWS\system32\CRYPT32.dll (0000000077b10000 - 0000000077b22000: C:\WINDOWS\system32\MSASN1.dll (0000000077b30000 - 0000000077b52000: C:\WINDOWS\system32\appHelp.dll (0000000077bc0000 - 0000000077bc7000: C:\WINDOWS\system32\midimap.dll (0000000077bd0000 - 0000000077be5000: C:\WINDOWS\system32\MSACM32.dll (0000000077bf0000 - 0000000077bf8000: C:\WINDOWS\system32\VERSION.dll (0000000077c00000 - 0000000077c58000: C:\WINDOWS\system32\msvcrt.dll (0000000077c60000 - 0000000077c85000: C:\WINDOWS\system32\msv1_0.dll (0000000077dc0000 - 0000000077e6c000: C:\WINDOWS\system32\ADVAPI32.dll (0000000077e70000 - 0000000077f03000: C:\WINDOWS\system32\RPCRT4.dll (0000000077f10000 - 0000000077f59000: C:\WINDOWS\system32\GDI32.dll (0000000077f60000 - 0000000077fd6000: C:\WINDOWS\system32\SHLWAPI.dll (0000000077fe0000 - 0000000077ff1000: C:\WINDOWS\system32\Secur32.dll (0000000078130000 - 00000000781cb000: C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll (000000007c340000 - 000000007c396000: C:\Program Files\Java\jre6\bin\MSVCR71.dll (000000007c800000 - 000000007c8fd000: C:\WINDOWS\system32\kernel32.dll (000000007c900000 - 000000007c9b4000: C:\WINDOWS\system32\ntdll.dll (000000007c9c0000 - 000000007d1de000: C:\WINDOWS\system32\SHELL32.dll (000000007d1e0000 - 000000007d49c000: C:\WINDOWS\system32\msi.dll (000000007d9a0000 - 000000007db06000: C:\WINDOWS\system32\query.dll (000000007e360000 - 000000007e3f1000: C:\WINDOWS\system32\USER32.dll (000000007e690000 - 000000007e740000: C:\WINDOWS\system32\SXS.DLL *----> Zrzut stanu dla wątku o identyfikatorze 0xff8 <----* eax=02070000 ebx=0013fc50 ecx=0013fc30 edx=7c90e514 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=0013fc28 ebp=0013fcc4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\USER32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\iertutil.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\IEFRAME.dll - *** ERROR: Module load completed but symbols could not be loaded for C:\Program Files\Internet Explorer\iexplore.exe *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll - ChildEBP RetAddr Args to Child 0013fcc4 7e3695f9 00000001 0013fcec 00000000 ntdll!KiFastSystemCallRet 0013fd20 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 0013fd70 404f873a 00000000 00000001 00000001 iertutil!Ordinal73+0x103 0013fd90 4062415a 00000001 00000001 77f648e4 iertutil!Ordinal537+0x52 0013fde0 00401484 001556f8 0000000a 0040b090 IEFRAME!Ordinal320+0x15aa6 0013ff2c 0040128e 00400000 00000000 0002070c iexplore+0x1484 0013ffc0 7c81776f 0013cb68 0013cd54 7ffdf000 iexplore+0x128e 0013fff0 00000000 00401a25 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49 *----> Zrzut stosu <----* 000000000013fc28 4a df 90 7c 90 95 80 7c - 01 00 00 00 50 fc 13 00 J..|...|....P... 000000000013fc38 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000013fc48 01 00 00 00 06 00 00 00 - 30 00 00 00 80 fc 13 00 ........0....... 000000000013fc58 b5 27 4f 40 38 13 e5 00 - 02 00 00 00 07 28 03 00 .'O@8........(.. 000000000013fc68 08 00 00 00 2c fd 13 00 - 14 00 00 00 01 00 00 00 ....,........... 000000000013fc78 00 00 00 00 00 00 00 00 - 10 00 00 00 5d 28 4f 40 ............](O@ 000000000013fc88 70 00 00 00 01 00 00 00 - 00 f0 fd 7f 00 e0 fd 7f p............... 000000000013fc98 5c f6 90 7c 00 00 00 00 - 50 fc 13 00 01 00 00 00 \..|....P....... 000000000013fca8 01 00 00 00 44 fc 13 00 - 00 00 99 00 b0 ff 13 00 ....D........... 000000000013fcb8 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 20 fd 13 00 ...|...|.... ... 000000000013fcc8 f9 95 36 7e 01 00 00 00 - ec fc 13 00 00 00 00 00 ..6~............ 000000000013fcd8 ff ff ff ff 01 00 00 00 - 00 00 00 00 68 47 99 00 ............hG.. 000000000013fce8 00 00 00 00 30 00 00 00 - 00 00 99 00 00 00 00 00 ....0........... 000000000013fcf8 e3 c2 c1 77 00 00 00 00 - 68 47 99 00 00 00 00 00 ...w....hG...... 000000000013fd08 30 fd 13 00 a6 92 4f 40 - 00 00 00 00 01 00 00 00 0.....O@........ 000000000013fd18 00 e0 fd 7f 30 00 00 00 - 70 fd 13 00 3e 71 4f 40 ....0...p...>qO@ 000000000013fd28 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 000000000013fd38 ec fc 13 00 07 28 03 00 - 68 47 99 00 03 18 02 00 .....(..hG...... 000000000013fd48 b0 ff 13 00 94 5c c2 77 - 88 20 c0 77 ff ff ff ff .....\.w. .w.... 000000000013fd58 ce c3 c1 77 e7 c3 c1 77 - 64 00 00 00 00 00 00 00 ...w...wd....... *----> Zrzut stanu dla wątku o identyfikatorze 0x8d0 <----* eax=00000006 ebx=00c6fed0 ecx=00000001 edx=00000007 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=00c6fea8 ebp=00c6ff44 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ADVAPI32.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 00c6ff44 77de8631 00000002 00c6ff6c 00000000 ntdll!KiFastSystemCallRet 00c6ffb4 7c80b729 00000000 00000000 77de8ae4 ADVAPI32!WmiFreeBuffer+0x24e 00c6ffec 00000000 77de848a 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000000c6fea8 4a df 90 7c 90 95 80 7c - 02 00 00 00 d0 fe c6 00 J..|...|........ 0000000000c6feb8 01 00 00 00 01 00 00 00 - 04 ff c6 00 e8 3e a7 00 .............>.. 0000000000c6fec8 60 66 e3 77 00 10 00 00 - 78 00 00 00 80 00 00 00 `f.w....x....... 0000000000c6fed8 c0 fe c6 00 00 00 00 00 - dc ff c6 00 b0 9a 83 7c ...............| 0000000000c6fee8 28 10 81 7c 00 10 00 00 - 14 00 00 00 01 00 00 00 (..|............ 0000000000c6fef8 00 00 00 00 00 00 00 00 - 10 00 00 00 00 a2 2f 4d ............../M 0000000000c6ff08 ff ff ff ff 00 10 00 00 - 00 f0 fd 7f 00 d0 fd 7f ................ 0000000000c6ff18 dc ff c6 00 04 ff c6 00 - d0 fe c6 00 06 00 00 00 ................ 0000000000c6ff28 02 00 00 00 c4 fe c6 00 - 06 00 00 00 dc ff c6 00 ................ 0000000000c6ff38 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 b4 ff c6 00 ...|...|........ 0000000000c6ff48 31 86 de 77 02 00 00 00 - 6c ff c6 00 00 00 00 00 1..w....l....... 0000000000c6ff58 e0 93 04 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000c6ff68 e4 8a de 77 78 00 00 00 - 80 00 00 00 00 10 00 00 ...wx........... 0000000000c6ff78 e8 3e a7 00 00 00 00 00 - 00 10 00 00 e0 2e a7 00 .>.............. 0000000000c6ff88 e0 66 e3 77 d0 00 00 00 - 00 67 e3 77 00 10 00 00 .f.w.....g.w.... 0000000000c6ff98 00 00 00 00 e0 66 e3 77 - e8 3e a7 00 00 67 e3 77 .....f.w.>...g.w 0000000000c6ffa8 e5 03 00 00 00 10 00 00 - e0 2e a7 00 ec ff c6 00 ................ 0000000000c6ffb8 29 b7 80 7c 00 00 00 00 - 00 00 00 00 e4 8a de 77 )..|...........w 0000000000c6ffc8 00 00 00 00 00 d0 fd 7f - 00 46 3c 82 c0 ff c6 00 .........F<..... 0000000000c6ffd8 90 59 cb 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c .Y.........|0..| *----> Zrzut stanu dla wątku o identyfikatorze 0x384 <----* eax=000000c0 ebx=00000000 ecx=00000000 edx=00000007 esi=0013f770 edi=0015ea40 eip=7c90e514 esp=00faff9c ebp=00faffb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 00faffb4 7c80b729 00000000 0015ea40 0013f770 ntdll!KiFastSystemCallRet 00faffec 00000000 7c927d83 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000000faff9c 1a d2 90 7c ca 7d 92 7c - 01 00 00 00 ac ff fa 00 ...|.}.|........ 0000000000faffac 00 00 00 00 00 00 00 80 - ec ff fa 00 29 b7 80 7c ............)..| 0000000000faffbc 00 00 00 00 40 ea 15 00 - 70 f7 13 00 00 00 00 00 ....@...p....... 0000000000faffcc 00 c0 fd 7f 00 46 3c 82 - c0 ff fa 00 90 0c c6 81 .....F<......... 0000000000faffdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 0000000000faffec 00 00 00 00 00 00 00 00 - 83 7d 92 7c 00 00 00 00 .........}.|.... 0000000000fafffc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb000c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb001c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb002c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00bc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000000fb00cc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xce0 <----* eax=010afe38 ebx=03d00938 ecx=77c1c2e3 edx=01520002 esi=00000938 edi=00000000 eip=7c90e514 esp=010af648 ebp=010af6ac iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ole32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\RPCRT4.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ieapfltr.dll - ChildEBP RetAddr Args to Child 010af6ac 7c802542 00000938 ffffffff 00000000 ntdll!KiFastSystemCallRet 010af6c0 77510197 00000938 ffffffff 03d00938 kernel32!WaitForSingleObject+0x12 010af6dc 775f2e50 03d00938 03b75aa0 00000000 ole32!CoQueryProxyBlanket+0x5c5 010af6fc 775f208a 010af7c4 010af8d4 02900228 ole32!StgGetIFillLockBytesOnFile+0x11c40 010af7dc 7751c982 02900228 010af8d4 010af8c4 ole32!StgGetIFillLockBytesOnFile+0x10e7a 010af848 7751597c 02900228 010af8d4 010af8c4 ole32!ReleaseStgMedium+0x12e7 010af89c 77ef5db5 00000001 010af8d4 010af8c4 ole32!CoGetObject+0xd26 010af8b8 77ef5ead 03dde8fc 010af900 0600015b RPCRT4!NdrProxySendReceive+0x40 010afc9c 77ef5e42 774d6228 774d95e6 010afcd4 RPCRT4!NdrProxySendReceive+0x138 010afcbc 77e88519 0000000c 00000008 010afd54 RPCRT4!NdrProxySendReceive+0xcd 010afccc 77515557 03dde8fc 010afd08 010afdfc RPCRT4!CreateStubFromTypeInfo+0x11c 010afd54 77515171 0015b100 775151ca 0000170d ole32!CoGetObject+0x901 010afda8 72ea1b6d 775f7908 0000170d 72ea19a8 ole32!CoGetObject+0x51b 010afdc8 72ea1a9c 042d92b8 010afdfc 042d92b0 ieapfltr+0x1b6d 010afee4 72ea13da 042d92b0 72ea13b9 00000001 ieapfltr+0x1a9c 010afef8 7c92796d 042d92b0 7c97e460 03ea7530 ieapfltr+0x13da 010aff40 7c9279ab 72ea13b9 042d92b0 00000000 ntdll!RtlGUIDFromString+0x283 010aff60 7c927a6d 00000000 042d92b0 03ea7530 ntdll!RtlGUIDFromString+0x2c1 010aff74 7c927a44 7c927991 00000000 042d92b0 ntdll!RtlGUIDFromString+0x383 010affb4 7c80b729 00000000 fffffffd 00000000 ntdll!RtlGUIDFromString+0x35a 010affec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000010af648 5a df 90 7c db 25 80 7c - 38 09 00 00 00 00 00 00 Z..|.%.|8....... 00000000010af658 00 00 00 00 00 00 00 00 - a0 5a b7 03 38 09 d0 03 .........Z..8... 00000000010af668 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000010af678 10 00 00 00 14 01 00 00 - d9 4c 50 77 00 f0 fd 7f .........LPw.... 00000000010af688 00 b0 fd 7f 00 00 00 00 - 7d b2 51 77 5c f6 0a 01 ........}.Qw\... 00000000010af698 00 04 00 00 8c fc 0a 01 - b0 9a 83 7c 08 26 80 7c ...........|.&.| 00000000010af6a8 00 00 00 00 c0 f6 0a 01 - 42 25 80 7c 38 09 00 00 ........B%.|8... 00000000010af6b8 ff ff ff ff 00 00 00 00 - dc f6 0a 01 97 01 51 77 ..............Qw 00000000010af6c8 38 09 00 00 ff ff ff ff - 38 09 d0 03 c4 f7 0a 01 8.......8....... 00000000010af6d8 a0 5a b7 03 fc f6 0a 01 - 50 2e 5f 77 38 09 d0 03 .Z......P._w8... 00000000010af6e8 a0 5a b7 03 00 00 00 00 - 00 00 00 00 28 02 90 02 .Z..........(... 00000000010af6f8 28 02 90 02 dc f7 0a 01 - 8a 20 5f 77 c4 f7 0a 01 (........ _w.... 00000000010af708 d4 f8 0a 01 28 02 90 02 - c4 f8 0a 01 00 00 00 00 ....(........... 00000000010af718 11 01 04 80 20 e1 97 7c - 00 00 00 00 00 00 00 00 .... ..|........ 00000000010af728 c0 b5 0a 04 08 6f 48 40 - b2 4b 44 40 c8 f9 0a 01 .....oH@.KD@.... 00000000010af738 00 00 00 00 2c e6 0a 01 - 00 00 00 00 1c f8 0a 01 ....,........... 00000000010af748 54 fa 0a 01 00 00 00 00 - 78 f7 0a 01 ae b4 4a 40 T.......x.....J@ 00000000010af758 c8 f9 0a 01 3e aa 4a 40 - 9c f7 0a 01 00 00 00 00 ....>.J@........ 00000000010af768 da d1 4e 77 6c 98 5f 77 - a7 d1 4e 77 90 f7 0a 01 ..Nwl._w..Nw.... 00000000010af778 da a1 51 77 d8 5a b7 03 - d9 4c 50 77 68 5b b7 03 ..Qw.Z...LPwh[.. *----> Zrzut stanu dla wątku o identyfikatorze 0xf3c <----* eax=000000c0 ebx=00000000 ecx=011affb0 edx=7c90e514 esi=00000000 edi=00000001 eip=7c90e514 esp=011afcec ebp=011affb4 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 011affb4 7c80b729 00000000 00000020 fffffffd ntdll!KiFastSystemCallRet 011affec 00000000 7c92a3f3 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000011afcec 4a df 90 7c 1a a5 92 7c - 03 00 00 00 30 fd 1a 01 J..|...|....0... 00000000011afcfc 01 00 00 00 01 00 00 00 - 00 00 00 00 20 00 00 00 ............ ... 00000000011afd0c fd ff ff ff 00 00 00 00 - a0 f9 97 7c a0 f9 97 7c ...........|...| 00000000011afd1c 0c 01 00 00 3c 0f 00 00 - 03 00 00 00 03 00 00 00 ....<........... 00000000011afd2c 02 00 00 00 08 01 00 00 - 0c 04 00 00 f4 00 00 00 ................ 00000000011afd3c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd4c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd5c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd6c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd7c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd8c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afd9c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdbc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdcc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afddc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdec 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afdfc 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe0c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000011afe1c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xe8 <----* eax=00160078 ebx=00000000 ecx=001522c8 edx=00160078 esi=001531f0 edi=03d243b8 eip=7c90e514 esp=012cfe18 ebp=012cff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 012cff80 77e76caf 012cffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 012cff88 77e76ad1 001531f0 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x61c 012cffa8 77e76c97 0015fb98 012cffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 012cffb4 7c80b729 00160060 7c90e920 0013f774 RPCRT4!I_RpcBCacheFree+0x604 012cffec 00000000 77e76c7d 00160060 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000012cfe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 2c 01 ...|.e.w$...t.,. 00000000012cfe28 38 fe 2c 01 b8 43 d2 03 - 50 ff 2c 01 00 00 00 00 8.,..C..P.,..... 00000000012cfe38 28 00 40 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 (.@.....4....... 00000000012cfe48 aa 8e 01 00 00 00 00 00 - 02 00 00 00 04 00 00 00 ................ 00000000012cfe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000012cfe68 00 00 00 00 00 00 00 00 - 10 02 00 00 60 f1 87 07 ............`... 00000000012cfe78 01 00 00 00 24 00 00 00 - ff ff ff ff 02 08 07 00 ....$........... 00000000012cfe88 05 08 0b 00 00 00 00 00 - e2 0b 00 00 6e db 7c d2 ............n.|. 00000000012cfe98 6d ae cf 11 96 b8 44 45 - 53 54 00 00 00 00 00 00 m.....DEST...... 00000000012cfea8 30 00 00 00 00 00 00 00 - 00 00 31 00 34 00 32 00 0.........1.4.2. 00000000012cfeb8 39 00 38 00 32 00 31 00 - 32 00 39 00 00 00 1f 00 9.8.2.1.2.9..... 00000000012cfec8 35 00 1e 00 00 00 75 00 - 6e 00 64 00 6f 00 66 00 5.....u.n.d.o.f. 00000000012cfed8 65 00 6e 00 2e 00 70 00 - 6c 00 00 00 1f 00 36 00 e.n...p.l.....6. 00000000012cfee8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 00000000012cfef8 02 04 00 00 84 00 00 00 - 00 00 00 00 ff ff ff ff ................ 00000000012cff08 ff ff ff 7f 02 04 00 00 - 98 00 00 00 00 00 00 00 ................ 00000000012cff18 00 00 00 00 b2 c2 4d 80 - ba c2 4d 80 1c a8 fc 81 ......M...M..... 00000000012cff28 b0 a6 fc 81 80 ff 2c 01 - 85 d1 e7 77 48 ff 2c 01 ......,....wH.,. 00000000012cff38 95 d1 e7 77 e0 10 90 7c - 38 00 16 00 60 00 16 00 ...w...|8...`... 00000000012cff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xf6c <----* eax=00000002 ebx=013ceef0 ecx=00e404b4 edx=00000006 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=013ceec8 ebp=013cef64 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 013cef64 7c80a115 00000002 00160660 00000000 ntdll!KiFastSystemCallRet 013cef80 404f2e7c 00000002 00160660 00000000 kernel32!WaitForMultipleObjects+0x18 013cffac 404f8611 013cffec 7c80b729 00161cc0 iertutil!Ordinal457+0x421 013cffb4 7c80b729 00161cc0 7c910222 7c91019b iertutil!Ordinal430+0x34 013cffec 00000000 404f8604 00161cc0 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000013ceec8 4a df 90 7c 90 95 80 7c - 02 00 00 00 f0 ee 3c 01 J..|...|......<. 00000000013ceed8 01 00 00 00 00 00 00 00 - 00 00 00 00 02 00 00 00 ................ 00000000013ceee8 c0 1c 16 00 01 1c 16 00 - 38 01 00 00 44 01 00 00 ........8...D... 00000000013ceef8 60 00 91 7c ff ff ff ff - 5d 00 91 7c 00 00 15 00 `..|....]..|.... 00000000013cef08 00 00 15 00 00 00 00 00 - 14 00 00 00 01 00 00 00 ................ 00000000013cef18 00 00 00 00 00 00 00 00 - 10 00 00 00 80 ee 3c 01 ..............<. 00000000013cef28 60 7a 1c 00 dc ff 3c 01 - 00 f0 fd 7f 00 80 fd 7f `z....<......... 00000000013cef38 ff ff ff ff 00 00 00 00 - f0 ee 3c 01 00 00 15 00 ..........<..... 00000000013cef48 02 00 00 00 e4 ee 3c 01 - 60 ef 3c 01 dc ff 3c 01 ......<.`.<...<. 00000000013cef58 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 80 ef 3c 01 ...|...|......<. 00000000013cef68 15 a1 80 7c 02 00 00 00 - 60 06 16 00 00 00 00 00 ...|....`....... 00000000013cef78 ff ff ff ff 00 00 00 00 - ac ff 3c 01 7c 2e 4f 40 ..........<.|.O@ 00000000013cef88 02 00 00 00 60 06 16 00 - 00 00 00 00 ff ff ff ff ....`........... 00000000013cef98 22 02 91 7c c0 1c 16 00 - 9b 01 91 7c 00 00 00 00 "..|.......|.... 00000000013cefa8 00 00 00 00 60 06 16 00 - d8 05 16 00 00 00 01 01 ....`........... 00000000013cefb8 24 df a6 48 56 e5 e2 11 - 83 6b 00 0b 6a 18 0d 21 $..HV....k..j..! 00000000013cefc8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefd8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013cefe8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000013ceff8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xc50 <----* eax=000001ca ebx=014cfe74 ecx=00185560 edx=7c90e514 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=014cfe4c ebp=014cfee8 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 014cfee8 7e3695f9 00000001 014cff10 00000000 ntdll!KiFastSystemCallRet 014cff44 404f713e 00000000 00000000 ffffffff USER32!GetLastInputInfo+0x105 014cff94 404f86ae 00000001 00000000 0013facc iertutil!Ordinal73+0x103 014cffb4 7c80b729 0015f0f8 0013facc 0013f98c iertutil!Ordinal536+0x59 014cffec 00000000 404f8655 0015f0f8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000014cfe4c 4a df 90 7c 90 95 80 7c - 01 00 00 00 74 fe 4c 01 J..|...|....t.L. 00000000014cfe5c 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000014cfe6c 01 00 00 00 06 00 00 00 - 58 01 00 00 da 2c 4f 40 ........X....,O@ 00000000014cfe7c e4 fe 4c 01 d9 8b 36 7e - 00 70 fd 7f e4 fe 4c 01 ..L...6~.p....L. 00000000014cfe8c 5a 88 36 7e a4 fe 4c 01 - 14 00 00 00 01 00 00 00 Z.6~..L......... 00000000014cfe9c 00 00 00 00 00 00 00 00 - 10 00 00 00 01 00 00 00 ................ 00000000014cfeac 00 00 00 00 00 00 00 00 - 00 f0 fd 7f 00 70 fd 7f .............p.. 00000000014cfebc 30 00 00 00 00 00 00 00 - 74 fe 4c 01 00 00 00 00 0.......t.L..... 00000000014cfecc 01 00 00 00 68 fe 4c 01 - 34 ff 4c 01 dc ff 4c 01 ....h.L.4.L...L. 00000000014cfedc b0 9a 83 7c 80 96 80 7c - 00 00 00 00 44 ff 4c 01 ...|...|....D.L. 00000000014cfeec f9 95 36 7e 01 00 00 00 - 10 ff 4c 01 00 00 00 00 ..6~......L..... 00000000014cfefc ff ff ff ff 01 00 00 00 - 00 00 00 00 01 00 00 00 ................ 00000000014cff0c 00 00 00 00 58 01 00 00 - 00 00 00 00 44 ff 4c 01 ....X.......D.L. 00000000014cff1c 02 94 36 7e 6c ff 4c 01 - 00 00 00 00 00 00 00 00 ..6~l.L......... 00000000014cff2c 0c ff 4c 01 01 00 00 00 - 00 00 00 00 01 00 00 00 ..L............. 00000000014cff3c 00 70 fd 7f 58 01 00 00 - 94 ff 4c 01 3e 71 4f 40 .p..X.....L.>qO@ 00000000014cff4c 00 00 00 00 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 00000000014cff5c 10 ff 4c 01 68 47 99 00 - f8 f0 15 00 00 00 00 00 ..L.hG.......... 00000000014cff6c 00 02 33 00 00 04 00 00 - 00 00 00 00 00 00 00 00 ..3............. 00000000014cff7c 69 0a b3 00 68 02 00 00 - a9 02 00 00 00 00 00 00 i...h........... *----> Zrzut stanu dla wątku o identyfikatorze 0xf60 <----* eax=3f35f968 ebx=00000000 ecx=00238ee0 edx=00000040 esi=00163018 edi=00000000 eip=7c90e514 esp=016cdde8 ebp=016cfeec iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00040246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 016cfeec 4065330f 00163018 0015f1f0 001605e8 ntdll!KiFastSystemCallRet 016cffa4 404f8061 00996748 00000000 016cffec IEFRAME!Ordinal170+0x46f4 016cffb4 7c80b729 001605e8 0015f1f0 00000000 iertutil!Ordinal405+0x2c 016cffec 00000000 404f8053 001605e8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000016cdde8 18 94 36 7e 2a c3 6a 40 - 00 00 00 00 48 67 99 00 ..6~*.j@....Hg.. 00000000016cddf8 18 30 16 00 e4 59 17 00 - 8a 02 41 00 ac 88 18 00 .0...Y....A..... 00000000016cde08 9a 01 1d 00 18 01 00 00 - ff ff 00 00 22 24 8c bf ............"$.. 00000000016cde18 1d 77 b3 00 fe 02 00 00 - e1 01 00 00 f6 00 16 00 .w.............. 00000000016cde28 00 00 00 00 01 00 00 00 - 01 00 00 00 40 92 19 00 ............@... 00000000016cde38 00 00 00 00 a0 77 21 00 - 00 00 00 00 ec 84 18 00 .....w!......... 00000000016cde48 88 8c 18 00 00 00 00 00 - 00 00 00 00 48 8d 18 00 ............H... 00000000016cde58 68 00 74 00 74 00 70 00 - 3a 00 2f 00 2f 00 70 00 h.t.t.p.:././.p. 00000000016cde68 69 00 65 00 6b 00 6e 00 - 65 00 7a 00 64 00 72 00 i.e.k.n.e.z.d.r. 00000000016cde78 6f 00 77 00 65 00 73 00 - 74 00 6f 00 70 00 79 00 o.w.e.s.t.o.p.y. 00000000016cde88 2e 00 70 00 6c 00 2f 00 - 67 00 72 00 7a 00 79 00 ..p.l./.g.r.z.y. 00000000016cde98 62 00 69 00 63 00 61 00 - 2d 00 73 00 74 00 6f 00 b.i.c.a.-.s.t.o. 00000000016cdea8 70 00 3f 00 75 00 74 00 - 6d 00 5f 00 73 00 6f 00 p.?.u.t.m._.s.o. 00000000016cdeb8 75 00 72 00 63 00 65 00 - 3d 00 67 00 6f 00 6f 00 u.r.c.e.=.g.o.o. 00000000016cdec8 67 00 6c 00 65 00 26 00 - 75 00 74 00 6d 00 5f 00 g.l.e.&.u.t.m._. 00000000016cded8 6d 00 65 00 64 00 69 00 - 75 00 6d 00 3d 00 63 00 m.e.d.i.u.m.=.c. 00000000016cdee8 70 00 63 00 26 00 75 00 - 74 00 6d 00 5f 00 63 00 p.c.&.u.t.m._.c. 00000000016cdef8 61 00 6d 00 70 00 61 00 - 69 00 67 00 6e 00 3d 00 a.m.p.a.i.g.n.=. 00000000016cdf08 75 00 6e 00 64 00 6f 00 - 66 00 65 00 6e 00 67 00 u.n.d.o.f.e.n.g. 00000000016cdf18 64 00 6e 00 00 00 00 00 - 00 00 00 00 00 00 00 00 d.n............. *----> Zrzut stanu dla wątku o identyfikatorze 0x690 <----* eax=77e76c7d ebx=00000000 ecx=77dd0b6a edx=00000048 esi=00162c38 edi=00000100 eip=7c90e514 esp=01aafe18 ebp=01aaff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01aaff80 77e76caf 01aaffa8 77e76ad1 00162c38 ntdll!KiFastSystemCallRet 01aaff88 77e76ad1 00162c38 001629c8 00000000 RPCRT4!I_RpcBCacheFree+0x61c 01aaffa8 77e76c97 0015fb98 01aaffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01aaffb4 7c80b729 00162d20 001629c8 00000000 RPCRT4!I_RpcBCacheFree+0x604 01aaffec 00000000 77e76c7d 00162d20 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001aafe18 aa da 90 7c e3 65 e7 77 - 98 01 00 00 74 ff aa 01 ...|.e.w....t... 0000000001aafe28 00 00 00 00 68 44 16 00 - 50 ff aa 01 5c 5b 96 f4 ....hD..P...\[.. 0000000001aafe38 75 ff 56 80 d0 89 35 e1 - 00 00 00 00 d8 03 30 82 u.V...5.......0. 0000000001aafe48 00 00 00 00 00 00 00 00 - 02 4d 07 e1 00 00 07 e1 .........M...... 0000000001aafe58 13 00 00 00 4c 5b 96 f4 - b9 5e 56 80 14 00 00 00 ....L[...^V..... 0000000001aafe68 f8 5a 07 e1 0e 00 00 00 - f8 5a 07 e1 d0 89 35 e1 .Z.......Z....5. 0000000001aafe78 a0 5c 00 00 50 5c 96 f4 - 7d fe 56 80 d8 03 30 82 .\..P\..}.V...0. 0000000001aafe88 00 00 00 00 00 00 00 00 - 10 5b 07 e1 f8 5a 07 e1 .........[...Z.. 0000000001aafe98 50 5c 96 f4 bf fe 56 80 - 00 00 00 00 00 01 00 00 P\....V......... 0000000001aafea8 10 5b 07 e1 ec 5b 96 f4 - 00 00 3f 82 af b9 54 80 .[...[....?...T. 0000000001aafeb8 00 00 00 00 50 e7 3e 82 - 3c 5c 96 f4 00 00 00 00 ....P.>.<\...... 0000000001aafec8 01 00 00 00 00 00 00 00 - 01 00 00 00 01 00 00 00 ................ 0000000001aafed8 00 00 00 00 00 00 00 00 - 00 00 00 00 7c 0f 00 00 ............|... 0000000001aafee8 00 00 00 00 00 00 00 00 - 8c ca c8 81 00 00 00 00 ................ 0000000001aafef8 02 00 00 00 34 5c 96 f4 - d2 c7 56 80 02 00 00 00 ....4\....V..... 0000000001aaff08 00 00 00 00 04 00 00 00 - 40 29 56 80 3c 9f bf 81 ........@)V.<... 0000000001aaff18 24 5c 96 f4 b2 c2 4d 80 - ba c2 4d 80 0c 9f bf 81 $\....M...M..... 0000000001aaff28 a0 9d bf 81 80 ff aa 01 - 85 d1 e7 77 48 ff aa 01 ...........wH... 0000000001aaff38 95 d1 e7 77 e0 10 90 7c - 58 49 16 00 20 2d 16 00 ...w...|XI.. -.. 0000000001aaff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0x994 <----* eax=774ee4ef ebx=00007530 ecx=001672f0 edx=7c8855f8 esi=00000000 edi=01baff50 eip=7c90e514 esp=01baff20 ebp=01baff78 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01baff78 7c802455 0000ea60 00000000 01baffb4 ntdll!KiFastSystemCallRet 01baff88 774ee3e3 0000ea60 00164680 774ee4a2 kernel32!Sleep+0xf 01baffb4 7c80b729 00164680 7465536c 73655248 ole32!StringFromGUID2+0x51d 01baffec 00000000 774ee4ef 00164680 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001baff20 1a d2 90 7c f1 23 80 7c - 00 00 00 00 50 ff ba 01 ...|.#.|....P... 0000000001baff30 50 25 80 7c f8 7d 5f 77 - 30 75 00 00 14 00 00 00 P%.|.}_w0u...... 0000000001baff40 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................ 0000000001baff50 00 ba 3c dc ff ff ff ff - 0c 00 00 00 50 ff ba 01 ..<.........P... 0000000001baff60 30 ff ba 01 af ac 80 7c - dc ff ba 01 b0 9a 83 7c 0......|.......| 0000000001baff70 60 24 80 7c 00 00 00 00 - 88 ff ba 01 55 24 80 7c `$.|........U$.| 0000000001baff80 60 ea 00 00 00 00 00 00 - b4 ff ba 01 e3 e3 4e 77 `.............Nw 0000000001baff90 60 ea 00 00 80 46 16 00 - a2 e4 4e 77 00 00 00 00 `....F....Nw.... 0000000001baffa0 6c 53 65 74 80 46 16 00 - 00 00 4d 77 0a e5 4e 77 lSet.F....Mw..Nw 0000000001baffb0 48 52 65 73 ec ff ba 01 - 29 b7 80 7c 80 46 16 00 HRes....)..|.F.. 0000000001baffc0 6c 53 65 74 48 52 65 73 - 80 46 16 00 00 40 fd 7f lSetHRes.F...@.. 0000000001baffd0 00 46 3c 82 c0 ff ba 01 - 40 6e c0 81 ff ff ff ff .F<.....@n...... 0000000001baffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000001bafff0 00 00 00 00 ef e4 4e 77 - 80 46 16 00 00 00 00 00 ......Nw.F...... 0000000001bb0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001bb0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xe70 <----* eax=03d220d8 ebx=00000000 ecx=00000059 edx=03d220d8 esi=001531f0 edi=028ac1e8 eip=7c90e514 esp=01cafe18 ebp=01caff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 01caff80 77e76caf 01caffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 01caff88 77e76ad1 001531f0 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x61c 01caffa8 77e76c97 0015fb98 01caffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 01caffb4 7c80b729 001776c8 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x604 01caffec 00000000 77e76c7d 001776c8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000001cafe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff ca 01 ...|.e.w$...t... 0000000001cafe28 e8 c1 8a 02 e8 c1 8a 02 - 50 ff ca 01 00 00 00 00 ........P....... 0000000001cafe38 28 00 40 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 (.@.....4....... 0000000001cafe48 9a 8e 01 00 00 00 00 00 - 02 00 00 00 04 00 00 00 ................ 0000000001cafe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001cafe68 00 00 00 00 00 00 00 00 - 0c 01 00 00 80 12 09 04 ................ 0000000001cafe78 01 00 00 00 68 00 00 00 - ff ff ff ff 01 08 00 00 ....h........... 0000000001cafe88 05 08 0b 00 00 00 00 00 - 52 04 00 00 1f 00 00 00 ........R....... 0000000001cafe98 16 00 00 00 68 00 61 00 - 73 00 5f 00 6a 00 73 00 ....h.a.s._.j.s. 0000000001cafea8 00 00 1f 00 00 00 0c 00 - 00 00 31 00 00 00 1f 00 ..........1..... 0000000001cafeb8 00 74 1e 00 00 00 75 00 - 6e 00 64 00 6f 00 66 00 .t....u.n.d.o.f. 0000000001cafec8 65 00 6e 00 2e 00 70 00 - 6c 00 00 00 1f 00 74 00 e.n...p.l.....t. 0000000001cafed8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 0000000001cafee8 02 04 00 00 74 00 00 00 - 00 00 00 00 ff ff ff 7f ....t........... 0000000001cafef8 02 04 00 00 84 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000001caff08 00 00 00 00 00 00 00 00 - 00 00 00 00 ac 16 f8 81 ................ 0000000001caff18 24 ac cd f3 b2 c2 4d 80 - ba c2 4d 80 7c 16 f8 81 $.....M...M.|... 0000000001caff28 10 15 f8 81 80 ff ca 01 - 85 d1 e7 77 48 ff ca 01 ...........wH... 0000000001caff38 95 d1 e7 77 e0 10 90 7c - 30 8e 16 00 c8 76 17 00 ...w...|0....v.. 0000000001caff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xa90 <----* eax=03a81318 ebx=00000000 ecx=00000099 edx=03a81318 esi=001531f0 edi=028acbc0 eip=7c90e514 esp=0217fe18 ebp=0217ff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0217ff80 77e76caf 0217ffa8 77e76ad1 001531f0 ntdll!KiFastSystemCallRet 0217ff88 77e76ad1 001531f0 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x61c 0217ffa8 77e76c97 0015fb98 0217ffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 0217ffb4 7c80b729 0017c060 00000000 003a0288 RPCRT4!I_RpcBCacheFree+0x604 0217ffec 00000000 77e76c7d 0017c060 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000217fe18 aa da 90 7c e3 65 e7 77 - 24 01 00 00 74 ff 17 02 ...|.e.w$...t... 000000000217fe28 38 fe 17 02 c0 cb 8a 02 - 50 ff 17 02 00 00 00 00 8.......P....... 000000000217fe38 84 00 9c 00 00 00 00 00 - 34 06 00 00 b0 05 00 00 ........4....... 000000000217fe48 ac 8e 01 00 00 00 00 00 - 02 00 00 00 01 00 00 00 ................ 000000000217fe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000217fe68 00 00 00 00 00 00 00 00 - 00 00 02 00 38 00 00 00 ............8... 000000000217fe78 01 00 00 00 2c 00 00 00 - ff ff ff ff 02 08 07 00 ....,........... 000000000217fe88 05 08 0b 00 9f 01 00 00 - d6 0b 00 00 2c 00 00 00 ............,... 000000000217fe98 01 00 00 00 d2 07 00 00 - 03 00 6a 40 38 48 ea 03 ..........j@8H.. 000000000217fea8 04 00 00 00 3c d5 66 40 - 38 00 00 00 00 00 00 00 ....<.f@8....... 000000000217feb8 0b 00 91 02 a0 b0 91 02 - 00 00 00 80 20 00 00 00 ............ ... 000000000217fec8 50 00 00 00 00 00 00 00 - 6e 00 64 00 6f 00 66 00 P.......n.d.o.f. 000000000217fed8 65 00 6e 00 2e 00 70 00 - 6c 00 00 00 1f 00 36 00 e.n...p.l.....6. 000000000217fee8 0c 00 00 00 2f 00 00 00 - ff ff ff ff ff ff ff 7f ..../........... 000000000217fef8 02 04 00 00 84 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000217ff08 90 00 00 00 00 00 00 00 - 98 00 00 00 00 00 00 00 ................ 000000000217ff18 24 7c ea f3 b2 c2 4d 80 - ba c2 4d 80 0c bf eb 81 $|....M...M..... 000000000217ff28 a0 bd eb 81 80 ff 17 02 - 85 d1 e7 77 48 ff 17 02 ...........wH... 000000000217ff38 95 d1 e7 77 e0 10 90 7c - 58 88 18 00 60 c0 17 00 ...w...|X...`... 000000000217ff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xbf8 <----* eax=028d6ae0 ebx=00238fd0 ecx=7c936d80 edx=0000000c esi=7fffffff edi=ffffffff eip=7c90e514 esp=02bcfad4 ebp=02bcfb10 iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\System32\mswsock.dll - WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ws2_32.dll - *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WININET.dll - ChildEBP RetAddr Args to Child 02bcfb10 719f5fa7 0000057c 00000584 00000000 ntdll!KiFastSystemCallRet 02bcfc04 71a5314f 00000001 02bcfe84 02bcfc7c mswsock+0x5fa7 02bcfc54 3fcfe9f9 00000001 02bcfe84 02bcfc7c ws2_32!select+0xa7 02bcffac 3fd06043 02bcffec 7c80b729 001b7870 WININET!Ordinal346+0x6ae 02bcffb4 7c80b729 001b7870 a037a077 016c8828 WININET!InternetSetStatusCallbackA+0x1e3 02bcffec 00000000 3fd06036 001b7870 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002bcfad4 5a df 90 7c 2b 40 9f 71 - 7c 05 00 00 01 00 00 00 Z..|+@.q|....... 0000000002bcfae4 fc fa bc 02 b4 fb bc 02 - 84 fe bc 02 a4 fb bc 02 ................ 0000000002bcfaf4 1d 52 77 ae 65 79 ce 01 - ff ff ff ff ff ff ff 7f .Rw.ey.......... 0000000002bcfb04 d0 8f 23 00 00 00 00 00 - 00 00 00 00 04 fc bc 02 ..#............. 0000000002bcfb14 a7 5f 9f 71 7c 05 00 00 - 84 05 00 00 00 00 00 00 ._.q|........... 0000000002bcfb24 04 00 00 00 80 fd bc 02 - 20 88 1b 00 7c fc bc 02 ........ ...|... 0000000002bcfb34 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002bcfb44 01 00 00 00 80 0f 05 fd - ff ff ff ff 00 00 00 00 ................ 0000000002bcfb54 00 a0 fa 7f 1c 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002bcfb64 00 00 00 00 fc fd 90 7c - 00 00 00 00 00 00 00 00 .......|........ 0000000002bcfb74 38 fc bc 02 44 fb bc 02 - 01 00 00 00 1c 00 00 00 8...D........... 0000000002bcfb84 d0 8f 23 00 c0 fb bc 02 - 7c fc bc 02 80 fd bc 02 ..#.....|....... 0000000002bcfb94 00 00 00 00 a4 fb bc 02 - 00 00 00 00 00 00 00 00 ................ 0000000002bcfba4 80 0f 05 fd ff ff ff ff - 01 00 00 00 00 00 00 00 ................ 0000000002bcfbb4 84 05 00 00 19 00 00 00 - b9 7c 92 7c 04 01 00 00 .........|.|.... 0000000002bcfbc4 91 79 92 7c 08 95 90 07 - 00 00 00 00 f0 94 90 07 .y.|............ 0000000002bcfbd4 10 00 00 00 00 00 00 00 - e8 03 00 00 0c fc bc 02 ................ 0000000002bcfbe4 03 7c 92 7c ba 0e 00 00 - 28 fb bc 02 0c 15 a4 71 .|.|....(......q 0000000002bcfbf4 44 fc bc 02 28 72 a1 71 - 60 2e 9f 71 ff ff ff ff D...(r.q`..q.... 0000000002bcfc04 54 fc bc 02 4f 31 a5 71 - 01 00 00 00 84 fe bc 02 T...O1.q........ *----> Zrzut stanu dla wątku o identyfikatorze 0x8fc <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=00000420 edi=00000000 eip=7c90e514 esp=02ccff08 ebp=02ccff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\mshtml.dll - ChildEBP RetAddr Args to Child 02ccff6c 7c802542 00000420 000927c0 00000000 ntdll!KiFastSystemCallRet 02ccff80 3f3da2c9 00000420 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 02ccffa0 3f340774 028ab6d8 3f340837 028b1128 mshtml!DllGetClassObject+0x8cfc4 02ccffb4 7c80b729 0023b638 028ab6d8 028b1128 mshtml+0x10774 02ccffec 00000000 3f340829 0023b638 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002ccff08 5a df 90 7c db 25 80 7c - 20 04 00 00 00 00 00 00 Z..|.%.| ....... 0000000002ccff18 3c ff cc 02 00 00 00 00 - 38 b6 23 00 00 00 00 00 <.......8.#..... 0000000002ccff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002ccff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 f0 fd 7f .....D_......... 0000000002ccff48 00 90 fa 7f 3c ff cc 02 - 4a c3 3d 3f 1c ff cc 02 ....<...J.=?.... 0000000002ccff58 4a c3 3d 3f dc ff cc 02 - b0 9a 83 7c 08 26 80 7c J.=?.......|.&.| 0000000002ccff68 00 00 00 00 80 ff cc 02 - 42 25 80 7c 20 04 00 00 ........B%.| ... 0000000002ccff78 c0 27 09 00 00 00 00 00 - a0 ff cc 02 c9 a2 3d 3f .'............=? 0000000002ccff88 20 04 00 00 c0 27 09 00 - 00 00 33 3f 38 b6 23 00 ....'....3?8.#. 0000000002ccff98 38 b6 23 00 38 b6 23 00 - b4 ff cc 02 74 07 34 3f 8.#.8.#.....t.4? 0000000002ccffa8 d8 b6 8a 02 37 08 34 3f - 28 11 8b 02 ec ff cc 02 ....7.4?(....... 0000000002ccffb8 29 b7 80 7c 38 b6 23 00 - d8 b6 8a 02 28 11 8b 02 )..|8.#.....(... 0000000002ccffc8 38 b6 23 00 00 90 fa 7f - 00 46 3c 82 c0 ff cc 02 8.#......F<..... 0000000002ccffd8 b8 bb e8 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 0000000002ccffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 0000000002ccfff8 38 b6 23 00 00 00 00 00 - 00 00 00 00 00 00 00 00 8.#............. 0000000002cd0008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002cd0018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002cd0028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002cd0038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xa0 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=02dcff70 ebp=02dcffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02dcffb4 7c80b729 00000000 775f7068 00163250 ntdll!KiFastSystemCallRet 02dcffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002dcff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff dc 02 J..|...|........ 0000000002dcff80 b0 ff dc 02 98 ff dc 02 - a0 ff dc 02 68 70 5f 77 ............hp_w 0000000002dcff90 50 32 16 00 00 00 00 00 - 00 00 00 00 f0 94 90 07 P2.............. 0000000002dcffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 0000000002dcffb0 08 95 90 07 ec ff dc 02 - 29 b7 80 7c 00 00 00 00 ........)..|.... 0000000002dcffc0 68 70 5f 77 50 32 16 00 - 00 00 00 00 00 80 fa 7f hp_wP2.......... 0000000002dcffd0 00 46 3c 82 c0 ff dc 02 - 80 bb e8 81 ff ff ff ff .F<............. 0000000002dcffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000002dcfff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000002dd0000 09 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd0090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002dd00a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xc38 <----* eax=77e76c7d ebx=00000000 ecx=003a3a10 edx=00000000 esi=00162c38 edi=00000100 eip=7c90e514 esp=02edfe18 ebp=02edff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02edff80 77e76caf 02edffa8 77e76ad1 00162c38 ntdll!KiFastSystemCallRet 02edff88 77e76ad1 00162c38 00000000 00000000 RPCRT4!I_RpcBCacheFree+0x61c 02edffa8 77e76c97 0015fb98 02edffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 02edffb4 7c80b729 0024b920 00000000 00000000 RPCRT4!I_RpcBCacheFree+0x604 02edffec 00000000 77e76c7d 0024b920 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002edfe18 aa da 90 7c e3 65 e7 77 - 98 01 00 00 74 ff ed 02 ...|.e.w....t... 0000000002edfe28 00 00 00 00 68 34 d2 03 - 50 ff ed 02 00 00 00 00 ....h4..P....... 0000000002edfe38 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edfe48 00 00 00 00 00 00 00 00 - 02 00 00 00 00 00 00 00 ................ 0000000002edfe58 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edfe68 00 00 00 00 0f 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edfe78 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edfe88 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edfe98 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edfea8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edfeb8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edfec8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edfed8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edfee8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edfef8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000002edff08 00 00 00 00 00 00 00 00 - 00 00 00 00 64 19 f5 81 ............d... 0000000002edff18 24 bc 08 f4 b2 c2 4d 80 - ba c2 4d 80 34 19 f5 81 $.....M...M.4... 0000000002edff28 c8 17 f5 81 80 ff ed 02 - 85 d1 e7 77 48 ff ed 02 ...........wH... 0000000002edff38 95 d1 e7 77 e0 10 90 7c - 68 12 8b 02 20 b9 24 00 ...w...|h... .$. 0000000002edff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0x86c <----* eax=77e76c7d ebx=00000000 ecx=001b0ed0 edx=02edfb94 esi=00162c38 edi=00000100 eip=7c90e514 esp=02fdfe18 ebp=02fdff80 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 02fdff80 77e76caf 02fdffa8 77e76ad1 00162c38 ntdll!KiFastSystemCallRet 02fdff88 77e76ad1 00162c38 00000006 000e000d RPCRT4!I_RpcBCacheFree+0x61c 02fdffa8 77e76c97 0015fb98 02fdffec 7c80b729 RPCRT4!I_RpcBCacheFree+0x43e 02fdffb4 7c80b729 0024ba40 00000006 000e000d RPCRT4!I_RpcBCacheFree+0x604 02fdffec 00000000 77e76c7d 0024ba40 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000002fdfe18 aa da 90 7c e3 65 e7 77 - 98 01 00 00 74 ff fd 02 ...|.e.w....t... 0000000002fdfe28 00 00 00 00 d8 cc 8a 02 - 50 ff fd 02 e8 6a c9 81 ........P....j.. 0000000002fdfe38 02 00 00 00 a4 5b 96 f4 - e8 6a c9 81 02 00 00 00 .....[...j...... 0000000002fdfe48 f0 7b 3c 82 32 01 57 80 - 02 7b 3c 82 00 00 c9 81 .{<.2.W..{<..... 0000000002fdfe58 e8 6a c9 81 ce 09 00 00 - cd 09 00 00 88 0c 77 e2 .j............w. 0000000002fdfe68 00 00 00 02 0c 00 00 00 - f3 10 60 80 00 00 00 00 ..........`..... 0000000002fdfe78 0c 00 00 00 90 0c 77 e2 - a0 9d bf 81 98 5b 96 f4 ......w......[.. 0000000002fdfe88 a1 7d 56 80 d0 89 35 e1 - d8 05 00 00 f0 7b 3c 82 .}V...5......{<. 0000000002fdfe98 d0 89 35 e1 e8 6a c9 81 - d8 05 00 00 00 00 00 00 ..5..j.......... 0000000002fdfea8 e4 89 35 e1 b0 1b 0e e1 - e9 6a c9 81 b4 5b 96 f4 ..5......j...[.. 0000000002fdfeb8 c8 7e 56 80 d0 89 35 e1 - b0 1b 0e e1 f0 7b 3c 82 .~V...5......{<. 0000000002fdfec8 03 00 10 00 e8 6a c9 81 - d8 05 00 00 fc 5b 96 f4 .....j.......[.. 0000000002fdfed8 75 ff 56 80 d0 89 35 e1 - 00 00 00 00 d8 03 30 82 u.V...5.......0. 0000000002fdfee8 00 00 00 00 00 00 00 00 - 98 94 2c e1 48 2d e9 e1 ..........,.H-.. 0000000002fdfef8 00 00 00 00 68 5c 96 f4 - 6c 0c 77 e2 01 00 00 00 ....h\..l.w..... 0000000002fdff08 e8 6a c9 81 03 00 10 00 - e8 6a c9 81 4c 7e bf 81 .j.......j..L~.. 0000000002fdff18 24 5c 96 f4 b2 c2 4d 80 - ba c2 4d 80 1c 7e bf 81 $\....M...M..~.. 0000000002fdff28 b0 7c bf 81 80 ff fd 02 - 85 d1 e7 77 48 ff fd 02 .|.........wH... 0000000002fdff38 95 d1 e7 77 e0 10 90 7c - d0 13 8b 02 40 ba 24 00 ...w...|....@.$. 0000000002fdff48 00 a2 2f 4d ff ff ff ff - 00 5d 1e ee ff ff ff ff ../M.....]...... *----> Zrzut stanu dla wątku o identyfikatorze 0xcbc <----* eax=0023a3a0 ebx=c0000000 ecx=00000004 edx=00224dd8 esi=00000000 edi=71a2793c eip=7c90e514 esp=032aff7c ebp=032affb4 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 032affb4 7c80b729 719fd65f 00150000 00000000 ntdll!KiFastSystemCallRet 032affec 00000000 719fd2c6 02906cc8 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 00000000032aff7c 4a da 90 7c 20 d3 9f 71 - 40 06 00 00 bc ff 2a 03 J..| ..q@.....*. 00000000032aff8c b0 ff 2a 03 a4 ff 2a 03 - 68 d3 9f 71 00 00 15 00 ..*...*.h..q.... 00000000032aff9c 00 00 00 00 c8 6c 90 02 - 00 00 00 00 00 00 00 00 .....l.......... 00000000032affac 00 00 9f 71 c0 ed dd 03 - ec ff 2a 03 29 b7 80 7c ...q......*.)..| 00000000032affbc 5f d6 9f 71 00 00 15 00 - 00 00 00 00 c8 6c 90 02 _..q.........l.. 00000000032affcc 00 50 fa 7f 00 46 3c 82 - c0 ff 2a 03 b8 bb e8 81 .P...F<...*..... 00000000032affdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 00000000032affec 00 00 00 00 00 00 00 00 - c6 d2 9f 71 c8 6c 90 02 ...........q.l.. 00000000032afffc 00 00 00 00 43 6c 69 65 - 6e 74 20 55 72 6c 43 61 ....Client UrlCa 00000000032b000c 63 68 65 20 4d 4d 46 20 - 56 65 72 20 35 2e 32 00 che MMF Ver 5.2. 00000000032b001c 00 c0 6e 00 00 40 00 00 - 00 dd 00 00 38 17 00 00 ..n..@......8... 00000000032b002c 00 00 00 00 00 00 10 00 - 00 00 00 00 00 00 00 00 ................ 00000000032b003c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000032b004c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000032b005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000032b006c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000032b007c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000032b008c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000032b009c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000032b00ac 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xfc4 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=03c9ff70 ebp=03c9ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 03c9ffb4 7c80b729 00000000 00000000 00000000 ntdll!KiFastSystemCallRet 03c9ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000003c9ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff c9 03 J..|...|........ 0000000003c9ff80 b0 ff c9 03 98 ff c9 03 - a0 ff c9 03 00 00 00 00 ................ 0000000003c9ff90 00 00 00 00 00 00 00 00 - 00 00 00 00 90 8b 90 07 ................ 0000000003c9ffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 0000000003c9ffb0 f8 89 90 07 ec ff c9 03 - 29 b7 80 7c 00 00 00 00 ........)..|.... 0000000003c9ffc0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 40 fa 7f .............@.. 0000000003c9ffd0 00 46 3c 82 c0 ff c9 03 - e8 43 bf 81 ff ff ff ff .F<......C...... 0000000003c9ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000003c9fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000003ca0000 41 63 74 78 20 00 00 00 - 01 00 00 00 5c 19 00 00 Actx .......\... 0000000003ca0010 7c 00 00 00 00 00 00 00 - 20 00 00 00 00 00 00 00 |....... ....... 0000000003ca0020 14 00 00 00 01 00 00 00 - 03 00 00 00 34 00 00 00 ............4... 0000000003ca0030 bc 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000003ca0040 00 00 00 00 00 00 00 00 - 00 00 00 00 02 00 00 00 ................ 0000000003ca0050 00 00 00 00 00 00 00 00 - 00 00 00 00 78 01 00 00 ............x... 0000000003ca0060 76 01 00 00 00 00 00 00 - cd ea ce 32 f0 02 00 00 v..........2.... 0000000003ca0070 42 00 00 00 34 03 00 00 - 02 03 00 00 10 00 00 00 B...4........... 0000000003ca0080 03 00 00 00 8c 00 00 00 - 02 00 00 00 01 00 00 00 ................ 0000000003ca0090 bc 00 00 00 7c 05 00 00 - 01 00 00 00 02 00 00 00 ....|........... 0000000003ca00a0 38 06 00 00 74 00 00 00 - 01 00 00 00 03 00 00 00 8...t........... *----> Zrzut stanu dla wątku o identyfikatorze 0xf18 <----* eax=00000000 ebx=00000000 ecx=001b0ed0 edx=00002000 esi=0000077c edi=00000000 eip=7c90e514 esp=0638ff08 ebp=0638ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0638ff6c 7c802542 0000077c 000927c0 00000000 ntdll!KiFastSystemCallRet 0638ff80 3f3da2c9 0000077c 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 0638ffa0 3f340774 0024b1d0 3f340837 00000020 mshtml!DllGetClassObject+0x8cfc4 0638ffb4 7c80b729 00216b08 0024b1d0 00000020 mshtml+0x10774 0638ffec 00000000 3f340829 00216b08 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000638ff08 5a df 90 7c db 25 80 7c - 7c 07 00 00 00 00 00 00 Z..|.%.||....... 000000000638ff18 3c ff 38 06 00 00 00 00 - 08 6b 21 00 00 00 00 00 <.8......k!..... 000000000638ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000638ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 f0 fd 7f .....D_......... 000000000638ff48 00 00 fa 7f 3c ff 38 06 - af c2 3d 3f 1c ff 38 06 ....<.8...=?..8. 000000000638ff58 00 00 00 00 dc ff 38 06 - b0 9a 83 7c 08 26 80 7c ......8....|.&.| 000000000638ff68 00 00 00 00 80 ff 38 06 - 42 25 80 7c 7c 07 00 00 ......8.B%.||... 000000000638ff78 c0 27 09 00 00 00 00 00 - a0 ff 38 06 c9 a2 3d 3f .'........8...=? 000000000638ff88 7c 07 00 00 c0 27 09 00 - 00 00 33 3f 08 6b 21 00 |....'....3?.k!. 000000000638ff98 08 6b 21 00 08 6b 21 00 - b4 ff 38 06 74 07 34 3f .k!..k!...8.t.4? 000000000638ffa8 d0 b1 24 00 37 08 34 3f - 20 00 00 00 ec ff 38 06 ..$.7.4? .....8. 000000000638ffb8 29 b7 80 7c 08 6b 21 00 - d0 b1 24 00 20 00 00 00 )..|.k!...$. ... 000000000638ffc8 08 6b 21 00 00 00 fa 7f - 00 46 3c 82 c0 ff 38 06 .k!......F<...8. 000000000638ffd8 b8 bb e8 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 000000000638ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 000000000638fff8 08 6b 21 00 00 00 00 00 - 00 00 00 00 00 00 00 00 .k!............. 0000000006390008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006390018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006390028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006390038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x6c4 <----* eax=000000e9 ebx=00000000 ecx=00560650 edx=00000001 esi=00000810 edi=00000000 eip=7c90e514 esp=0658ff08 ebp=0658ff6c iopl=0 nv up ei ng nz ac pe cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000293 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0658ff6c 7c802542 00000810 000927c0 00000000 ntdll!KiFastSystemCallRet 0658ff80 3f3da2c9 00000810 000927c0 3f330000 kernel32!WaitForSingleObject+0x12 0658ffa0 3f340774 0000005a 3f340837 00000000 mshtml!DllGetClassObject+0x8cfc4 0658ffb4 7c80b729 03b93440 0000005a 00000000 mshtml+0x10774 0658ffec 00000000 3f340829 03b93440 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000658ff08 5a df 90 7c db 25 80 7c - 10 08 00 00 00 00 00 00 Z..|.%.|........ 000000000658ff18 3c ff 58 06 00 00 00 00 - 40 34 b9 03 00 00 00 00 <.X.....@4...... 000000000658ff28 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 000000000658ff38 10 00 00 00 00 44 5f 9a - fe ff ff ff 00 f0 fd 7f .....D_......... 000000000658ff48 00 e0 f9 7f 3c ff 58 06 - af c2 3d 3f 1c ff 58 06 ....<.X...=?..X. 000000000658ff58 00 00 00 00 dc ff 58 06 - b0 9a 83 7c 08 26 80 7c ......X....|.&.| 000000000658ff68 00 00 00 00 80 ff 58 06 - 42 25 80 7c 10 08 00 00 ......X.B%.|.... 000000000658ff78 c0 27 09 00 00 00 00 00 - a0 ff 58 06 c9 a2 3d 3f .'........X...=? 000000000658ff88 10 08 00 00 c0 27 09 00 - 00 00 33 3f 40 34 b9 03 .....'....3?@4.. 000000000658ff98 40 34 b9 03 40 34 b9 03 - b4 ff 58 06 74 07 34 3f @4..@4....X.t.4? 000000000658ffa8 5a 00 00 00 37 08 34 3f - 00 00 00 00 ec ff 58 06 Z...7.4?......X. 000000000658ffb8 29 b7 80 7c 40 34 b9 03 - 5a 00 00 00 00 00 00 00 )..|@4..Z....... 000000000658ffc8 40 34 b9 03 00 e0 f9 7f - 00 46 3c 82 c0 ff 58 06 @4.......F<...X. 000000000658ffd8 20 3e c3 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c >.........|0..| 000000000658ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 29 08 34 3f ............).4? 000000000658fff8 40 34 b9 03 00 00 00 00 - 00 00 00 00 00 00 00 00 @4.............. 0000000006590008 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006590018 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006590028 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006590038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x74c <----* eax=35c51a30 ebx=03da72f4 ecx=7c936d80 edx=7c936d2b esi=00000000 edi=001b1960 eip=7c90e514 esp=06eeff10 ebp=06eeff3c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\Dxtrans.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 06eeff3c 35c51a76 00000868 06eeff8c 06eeff90 ntdll!KiFastSystemCallRet 06eeffb4 7c80b729 03da72f4 001b1960 016c6b88 Dxtrans+0x1a76 06eeffec 00000000 35c51a30 03da72f4 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000006eeff10 4a da 90 7c e6 a7 80 7c - 68 08 00 00 90 ff ee 06 J..|...|h....... 0000000006eeff20 54 ff ee 06 34 ff ee 06 - 00 00 00 00 88 6b 6c 01 T...4........kl. 0000000006eeff30 60 19 1b 00 f4 72 da 03 - 02 00 00 00 b4 ff ee 06 `....r.......... 0000000006eeff40 76 1a c5 35 68 08 00 00 - 8c ff ee 06 90 ff ee 06 v..5h........... 0000000006eeff50 94 ff ee 06 ff ff ff ff - 95 2e c7 55 60 19 1b 00 ...........U`... 0000000006eeff60 88 6b 6c 01 f4 72 da 03 - 00 00 00 00 c8 52 4e 80 .kl..r.......RN. 0000000006eeff70 e7 12 6f 80 10 75 fc 81 - 50 4d 9c f8 20 9a ed e1 ..o..u..PM.. ... 0000000006eeff80 e0 79 bd 81 01 b0 dc 81 - 00 00 00 00 20 e0 f6 81 .y.......... ... 0000000006eeff90 39 ac 4f 80 00 00 00 00 - 00 00 00 00 f4 72 da 03 9.O..........r.. 0000000006eeffa0 00 00 00 00 58 ff ee 06 - dc ff ee 06 dd 7f c7 35 ....X..........5 0000000006eeffb0 00 00 00 00 ec ff ee 06 - 29 b7 80 7c f4 72 da 03 ........)..|.r.. 0000000006eeffc0 60 19 1b 00 88 6b 6c 01 - f4 72 da 03 00 d0 f9 7f `....kl..r...... 0000000006eeffd0 00 46 3c 82 c0 ff ee 06 - 80 f3 ed 81 ff ff ff ff .F<............. 0000000006eeffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000006eefff0 00 00 00 00 30 1a c5 35 - f4 72 da 03 00 00 00 00 ....0..5.r...... 0000000006ef0000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006ef0010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006ef0020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006ef0030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000006ef0040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xea4 <----* eax=35c51a30 ebx=03da72f4 ecx=7c936d80 edx=7c936d2b esi=00000000 edi=001b1960 eip=7c90e514 esp=06feff10 ebp=06feff3c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 06feff3c 35c51a76 00000868 06feff8c 06feff90 ntdll!KiFastSystemCallRet 06feffb4 7c80b729 03da72f4 001b1960 016c6b88 Dxtrans+0x1a76 06feffec 00000000 35c51a30 03da72f4 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000006feff10 4a da 90 7c e6 a7 80 7c - 68 08 00 00 90 ff fe 06 J..|...|h....... 0000000006feff20 54 ff fe 06 34 ff fe 06 - 00 00 00 00 88 6b 6c 01 T...4........kl. 0000000006feff30 60 19 1b 00 f4 72 da 03 - 02 00 00 00 b4 ff fe 06 `....r.......... 0000000006feff40 76 1a c5 35 68 08 00 00 - 8c ff fe 06 90 ff fe 06 v..5h........... 0000000006feff50 94 ff fe 06 ff ff ff ff - 95 2e d7 55 60 19 1b 00 ...........U`... 0000000006feff60 88 6b 6c 01 f4 72 da 03 - 00 00 00 00 c8 52 4e 80 .kl..r.......RN. 0000000006feff70 e7 12 6f 80 58 bb bf 81 - 50 5d 96 f4 00 00 00 00 ..o.X...P]...... 0000000006feff80 c8 52 4e 80 01 12 6f 80 - 00 00 00 00 20 e0 f6 81 .RN...o..... ... 0000000006feff90 39 ac 4f 80 00 00 00 00 - 00 00 00 00 f4 72 da 03 9.O..........r.. 0000000006feffa0 00 00 00 00 58 ff fe 06 - dc ff fe 06 dd 7f c7 35 ....X..........5 0000000006feffb0 00 00 00 00 ec ff fe 06 - 29 b7 80 7c f4 72 da 03 ........)..|.r.. 0000000006feffc0 60 19 1b 00 88 6b 6c 01 - f4 72 da 03 00 c0 f9 7f `....kl..r...... 0000000006feffd0 00 46 3c 82 c0 ff fe 06 - 98 96 cb 81 ff ff ff ff .F<............. 0000000006feffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 0000000006fefff0 00 00 00 00 30 1a c5 35 - f4 72 da 03 00 00 00 00 ....0..5.r...... 0000000006ff0000 0d 00 9f 4e 01 00 3f 00 - 3f 00 3f 00 3f 00 00 00 ...N..?.?.?.?... 0000000006ff0010 00 00 00 00 00 00 00 00 - 00 00 03 01 00 00 01 00 ................ 0000000006ff0020 02 00 03 00 04 00 05 00 - 06 00 07 00 08 00 09 00 ................ 0000000006ff0030 0a 00 0b 00 0c 00 0d 00 - 0e 00 0f 00 10 00 11 00 ................ 0000000006ff0040 12 00 13 00 14 00 15 00 - 16 00 17 00 18 00 19 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xaac <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=7c97e440 edi=7c97e460 eip=7c90e514 esp=0720ff70 ebp=0720ffb4 iopl=0 nv up ei ng nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000286 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0720ffb4 7c80b729 00000000 02bcf8ec 001ad880 ntdll!KiFastSystemCallRet 0720ffec 00000000 7c910250 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000720ff70 4a da 90 7c 8d 02 91 7c - 04 01 00 00 ac ff 20 07 J..|...|...... . 000000000720ff80 b0 ff 20 07 98 ff 20 07 - a0 ff 20 07 ec f8 bc 02 .. ... ... ..... 000000000720ff90 80 d8 1a 00 00 00 00 00 - 00 00 00 00 30 75 ea 03 ............0u.. 000000000720ffa0 00 7c 28 e8 ff ff ff ff - 35 1c 6f 80 91 79 92 7c .|(.....5.o..y.| 000000000720ffb0 a0 77 ea 03 ec ff 20 07 - 29 b7 80 7c 00 00 00 00 .w.... .)..|.... 000000000720ffc0 ec f8 bc 02 80 d8 1a 00 - 00 00 00 00 00 a0 f9 7f ................ 000000000720ffd0 00 46 3c 82 c0 ff 20 07 - 60 a9 2f 82 ff ff ff ff .F<... .`./..... 000000000720ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 000000000720fff0 00 00 00 00 50 02 91 7c - 00 00 00 00 00 00 00 00 ....P..|........ 0000000007210000 00 00 00 00 9f 40 13 00 - 10 00 90 01 17 00 b0 01 .....@.......... 0000000007210010 ff ff ff 00 ff ff ff 00 - 00 00 00 00 00 00 00 00 ................ 0000000007210020 ff ff ff 00 ff ff ff 00 - 00 00 00 00 00 00 00 00 ................ 0000000007210030 00 00 00 00 01 00 00 00 - 0d 02 01 01 00 00 00 00 ................ 0000000007210040 00 00 00 00 00 00 00 00 - 00 00 00 00 02 00 00 00 ................ 0000000007210050 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007210060 00 00 00 00 1f 00 89 01 - 00 00 00 00 ff ff ff ff ................ 0000000007210070 ff ff ff ff 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007210080 00 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007210090 21 00 8a 01 00 00 00 40 - 06 00 00 00 00 00 00 00 !......@........ 00000000072100a0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 40 ...............@ *----> Zrzut stanu dla wątku o identyfikatorze 0x230 <----* eax=04570869 ebx=04abaa80 ecx=000000bd edx=02190064 esi=00000960 edi=00000000 eip=7c90e514 esp=074aff2c ebp=074aff90 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_32_B31C6BD7B909D093.dll - ChildEBP RetAddr Args to Child 074aff90 7c802542 00000960 ffffffff 00000000 ntdll!KiFastSystemCallRet 074affa4 0457087c 00000960 ffffffff 00000000 kernel32!WaitForSingleObject+0x12 074affec 00000000 04570869 04abaa80 00000000 GoogleToolbarDynamic_32_B31C6BD+0x1a087c *----> Zrzut stosu <----* 00000000074aff2c 5a df 90 7c db 25 80 7c - 60 09 00 00 00 00 00 00 Z..|.%.|`....... 00000000074aff3c 00 00 00 00 d0 0e 1b 00 - 80 aa ab 04 80 aa ab 04 ................ 00000000074aff4c 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000074aff5c 10 00 00 00 e8 13 4f 80 - dc ff 4a 07 00 f0 fd 7f ......O...J..... 00000000074aff6c 00 b0 f9 7f 00 00 00 00 - 1a 41 3f 04 40 ff 4a 07 .........A?.@.J. 00000000074aff7c 1c 41 d9 08 dc ff 4a 07 - b0 9a 83 7c 08 26 80 7c .A....J....|.&.| 00000000074aff8c 00 00 00 00 a4 ff 4a 07 - 42 25 80 7c 60 09 00 00 ......J.B%.|`... 00000000074aff9c ff ff ff ff 00 00 00 00 - ec ff 4a 07 7c 08 57 04 ..........J.|.W. 00000000074affac 60 09 00 00 ff ff ff ff - 00 00 00 00 29 b7 80 7c `...........)..| 00000000074affbc 80 aa ab 04 d0 0e 1b 00 - 00 00 00 00 80 aa ab 04 ................ 00000000074affcc 00 b0 f9 7f 00 46 3c 82 - c0 ff 4a 07 40 2c 2e 82 .....F<...J.@,.. 00000000074affdc ff ff ff ff b0 9a 83 7c - 30 b7 80 7c 00 00 00 00 .......|0..|.... 00000000074affec 00 00 00 00 00 00 00 00 - 69 08 57 04 80 aa ab 04 ........i.W..... 00000000074afffc 00 00 00 00 c8 00 00 00 - 30 01 00 00 ff ee ff ee ........0....... 00000000074b000c 02 10 00 00 00 00 00 00 - 00 fe 00 00 00 00 10 00 ................ 00000000074b001c 00 20 00 00 00 02 00 00 - 00 20 00 00 2f fc 01 00 . ....... ../... 00000000074b002c ff ef fd 7f 17 00 08 06 - 00 00 00 00 00 00 00 00 ................ 00000000074b003c 00 00 00 00 00 00 00 00 - 88 05 4b 07 0f 00 00 00 ..........K..... 00000000074b004c f8 ff ff ff 50 00 4b 07 - 50 00 4b 07 40 06 4b 07 ....P.K.P.K.@.K. 00000000074b005c 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x434 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=0701c680 edi=00000000 eip=7c90e514 esp=0238fef4 ebp=0238ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0238ff20 044ec37b 000009fc 0238ff48 0238ff4c ntdll!KiFastSystemCallRet 0238ff58 044d4eb7 00000000 044eb4dd 07020ed8 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0238ffac 0450ecbd 7c900000 7c80b729 04ab1e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0238ffec 00000000 0450ec3e 04ab1e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000238fef4 4a da 90 7c e6 a7 80 7c - fc 09 00 00 4c ff 38 02 J..|...|....L.8. 000000000238ff04 38 ff 38 02 18 ff 38 02 - 00 00 00 00 e4 37 3d 04 8.8...8......7=. 000000000238ff14 00 0e 02 07 18 c5 01 07 - 96 c1 4e 04 58 ff 38 02 ..........N.X.8. 000000000238ff24 7b c3 4e 04 fc 09 00 00 - 48 ff 38 02 4c ff 38 02 {.N.....H.8.L.8. 000000000238ff34 54 ff 38 02 ff ff ff ff - 00 00 00 00 d8 0e 02 07 T.8............. 000000000238ff44 90 1e ab 04 00 00 00 00 - 00 00 00 00 01 00 00 00 ................ 000000000238ff54 18 c5 01 07 ac ff 38 02 - b7 4e 4d 04 00 00 00 00 ......8..NM..... 000000000238ff64 dd b4 4e 04 d8 0e 02 07 - 04 38 3d 04 e0 d7 a5 04 ..N......8=..... 000000000238ff74 00 00 90 7c 18 ec 50 04 - d8 0e 02 07 89 8a f1 53 ...|..P........S 000000000238ff84 e0 d7 a5 04 00 00 90 7c - 90 1e ab 04 80 ff 38 02 .......|......8. 000000000238ff94 80 ff 38 02 dc ff 38 02 - dc ff 38 02 70 e7 50 04 ..8...8...8.p.P. 000000000238ffa4 d5 f9 af 55 00 00 00 00 - ec ff 38 02 bd ec 50 04 ...U......8...P. 000000000238ffb4 00 00 90 7c 29 b7 80 7c - 90 1e ab 04 e0 d7 a5 04 ...|)..|........ 000000000238ffc4 00 00 90 7c 90 1e ab 04 - 00 d0 fa 7f 00 46 3c 82 ...|.........F<. 000000000238ffd4 c0 ff 38 02 58 70 b8 81 - ff ff ff ff b0 9a 83 7c ..8.Xp.........| 000000000238ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000238fff4 3e ec 50 04 90 1e ab 04 - 00 00 00 00 4d 5a 90 00 >.P.........MZ.. 0000000002390004 03 00 00 00 04 00 00 00 - ff ff 00 00 b8 00 00 00 ................ 0000000002390014 00 00 00 00 40 00 00 00 - 00 00 00 00 00 00 00 00 ....@........... 0000000002390024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x6fc <----* eax=00000000 ebx=024bfea8 ecx=00000000 edx=00000000 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=024bfe80 ebp=024bff1c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 024bff1c 7c80a115 00000002 024bff58 00000000 ntdll!KiFastSystemCallRet 024bff38 0445e03b 00000002 024bff58 00000000 kernel32!WaitForMultipleObjects+0x18 024bff68 043d3804 04a5d8b4 7c900000 0450ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x87d9c 024bffac 0450ecbd 7c900000 7c80b729 04ab58a8 GoogleToolbarDynamic_32_B31C6BD+0x3804 024bffec 00000000 0450ec3e 04ab58a8 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000024bfe80 4a df 90 7c 90 95 80 7c - 02 00 00 00 a8 fe 4b 02 J..|...|......K. 00000000024bfe90 01 00 00 00 00 00 00 00 - 00 00 00 00 00 12 02 07 ................ 00000000024bfea0 00 12 02 07 fd a0 80 7c - 20 0a 00 00 1c 0a 00 00 .......| ....... 00000000024bfeb0 17 00 00 00 01 00 00 00 - 8c d5 4e 77 dc 59 90 02 ..........Nw.Y.. 00000000024bfec0 d4 fe 4b 02 ac d6 4e 77 - 14 00 00 00 01 00 00 00 ..K...Nw........ 00000000024bfed0 00 00 00 00 00 00 00 00 - 10 00 00 00 f9 1a 4f 77 ..............Ow 00000000024bfee0 ac 89 f0 03 60 ff 4b 02 - 00 f0 fd 7f 00 c0 fa 7f ....`.K......... 00000000024bfef0 2c b6 15 00 00 00 00 00 - a8 fe 4b 02 c5 16 4f 77 ,.........K...Ow 00000000024bff00 02 00 00 00 9c fe 4b 02 - 3c 78 5f 77 9c ff 4b 02 ......K. Zrzut stanu dla wątku o identyfikatorze 0xa60 <----* eax=00000000 ebx=04bffea8 ecx=00000000 edx=00000000 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=04bffe80 ebp=04bfff1c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 04bfff1c 7c80a115 00000002 04bfff58 00000000 ntdll!KiFastSystemCallRet 04bfff38 0445e03b 00000002 04bfff58 00000000 kernel32!WaitForMultipleObjects+0x18 04bfff68 043d3804 016cd8b4 7c900000 0450ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x87d9c 04bfffac 0450ecbd 7c900000 7c80b729 04abab60 GoogleToolbarDynamic_32_B31C6BD+0x3804 04bfffec 00000000 0450ec3e 04abab60 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 0000000004bffe80 4a df 90 7c 90 95 80 7c - 02 00 00 00 a8 fe bf 04 J..|...|........ 0000000004bffe90 01 00 00 00 00 00 00 00 - 00 00 00 00 60 f3 ab 04 ............`... 0000000004bffea0 60 f3 ab 04 fd a0 80 7c - 2c 0a 00 00 28 0a 00 00 `......|,...(... 0000000004bffeb0 17 00 00 00 01 00 00 00 - 8c d5 4e 77 cc 4e 90 02 ..........Nw.N.. 0000000004bffec0 d4 fe bf 04 ac d6 4e 77 - 14 00 00 00 01 00 00 00 ......Nw........ 0000000004bffed0 00 00 00 00 00 00 00 00 - 10 00 00 00 f9 1a 4f 77 ..............Ow 0000000004bffee0 d4 8a f0 03 60 ff bf 04 - 00 f0 fd 7f 00 20 fa 7f ....`........ .. 0000000004bffef0 e4 b6 15 00 00 00 00 00 - a8 fe bf 04 c5 16 4f 77 ..............Ow 0000000004bfff00 02 00 00 00 9c fe bf 04 - 3c 78 5f 77 9c ff bf 04 ........ Zrzut stanu dla wątku o identyfikatorze 0xddc <----* eax=4ebd7456 ebx=07fcfe7c ecx=001b0ed0 edx=4ebd9079 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=07fcfe54 ebp=07fcfef0 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22791_x-ww_c8dff154\gdiplus.dll - ChildEBP RetAddr Args to Child 07fcfef0 7e3695f9 00000002 07fcff18 00000000 ntdll!KiFastSystemCallRet 07fcff4c 7e3696a8 00000001 07fcffac ffffffff USER32!GetLastInputInfo+0x105 07fcff68 4ebd74b2 00000001 07fcffac 00000000 USER32!MsgWaitForMultipleObjects+0x1f 07fcffb4 7c80b729 00000000 000004ab 00000011 gdiplus!GdipGetVisibleClipBoundsI+0xad4 07fcffec 00000000 4ebd7456 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 0000000007fcfe54 4a df 90 7c 90 95 80 7c - 02 00 00 00 7c fe fc 07 J..|...|....|... 0000000007fcfe64 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007fcfe74 02 00 00 00 00 00 00 00 - 38 0a 00 00 58 0a 00 00 ........8...X... 0000000007fcfe84 cc 99 99 00 cc 99 cc 00 - cc 99 ff 00 cc cc 00 00 ................ 0000000007fcfe94 cc cc 33 00 cc cc 66 00 - 14 00 00 00 01 00 00 00 ..3...f......... 0000000007fcfea4 00 00 00 00 00 00 00 00 - 10 00 00 00 cc ff 66 00 ..............f. 0000000007fcfeb4 cc ff 99 00 cc ff cc 00 - 00 f0 fd 7f 00 80 f9 7f ................ 0000000007fcfec4 ff 00 33 00 00 00 00 00 - 7c fe fc 07 ff 00 cc 00 ..3.....|....... 0000000007fcfed4 02 00 00 00 70 fe fc 07 - ff 33 33 00 dc ff fc 07 ....p....33..... 0000000007fcfee4 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 4c ff fc 07 ...|...|....L... 0000000007fcfef4 f9 95 36 7e 02 00 00 00 - 18 ff fc 07 00 00 00 00 ..6~............ 0000000007fcff04 ff ff ff ff 00 00 00 00 - 40 a3 37 7e a4 72 d4 4e ........@.7~.r.N 0000000007fcff14 00 00 00 00 38 0a 00 00 - 58 0a 00 00 ff cc 00 00 ....8...X....... 0000000007fcff24 ff cc 33 00 ff cc 66 00 - ff cc 99 00 ff cc cc 00 ..3...f......... 0000000007fcff34 ff cc ff 00 ff ff 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000007fcff44 00 80 f9 7f 58 0a 00 00 - 68 ff fc 07 a8 96 36 7e ....X...h.....6~ 0000000007fcff54 01 00 00 00 ac ff fc 07 - ff ff ff ff ff 04 00 00 ................ 0000000007fcff64 18 ff fc 07 b4 ff fc 07 - b2 74 bd 4e 01 00 00 00 .........t.N.... 0000000007fcff74 ac ff fc 07 00 00 00 00 - ff ff ff ff ff 04 00 00 ................ 0000000007fcff84 ab 04 00 00 11 00 00 00 - 00 00 00 00 39 ac 4f 80 ............9.O. *----> Zrzut stanu dla wątku o identyfikatorze 0x9c4 <----* eax=00000000 ebx=00000000 ecx=00000000 edx=00000000 esi=00000a7c edi=00000000 eip=7c90e514 esp=081cfeb8 ebp=081cff1c iopl=0 nv up ei ng nz ac po cy cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000297 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 081cff1c 7c802542 00000a7c 0001d4c0 00000000 ntdll!KiFastSystemCallRet 081cff30 04500ceb 00000a7c 0001d4c0 00000000 kernel32!WaitForSingleObject+0x12 081cff68 043d3804 04a5d870 7c900000 0450ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x12aa4c 081cffac 0450ecbd 7c900000 7c80b729 07055e90 GoogleToolbarDynamic_32_B31C6BD+0x3804 081cffec 00000000 0450ec3e 07055e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 00000000081cfeb8 5a df 90 7c db 25 80 7c - 7c 0a 00 00 00 00 00 00 Z..|.%.||....... 00000000081cfec8 ec fe 1c 08 ea 00 00 00 - 58 5e 05 07 00 00 00 00 ........X^...... 00000000081cfed8 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000081cfee8 10 00 00 00 00 74 79 b8 - ff ff ff ff 00 f0 fd 7f .....ty......... 00000000081cfef8 00 70 f9 7f ec fe 1c 08 - 00 00 00 00 cc fe 1c 08 .p.............. 00000000081cff08 88 62 e3 77 9c ff 1c 08 - b0 9a 83 7c 08 26 80 7c .b.w.......|.&.| 00000000081cff18 00 00 00 00 30 ff 1c 08 - 42 25 80 7c 7c 0a 00 00 ....0...B%.||... 00000000081cff28 c0 d4 01 00 00 00 00 00 - 68 ff 1c 08 eb 0c 50 04 ........h.....P. 00000000081cff38 7c 0a 00 00 c0 d4 01 00 - 00 00 00 00 58 5e 05 07 |...........X^.. 00000000081cff48 90 5e 05 07 aa ed 50 04 - b6 38 3d 04 b4 19 bb f6 .^....P..8=..... 00000000081cff58 00 00 00 00 58 5e 05 07 - a4 39 3d 04 58 5e 05 07 ....X^...9=.X^.. 00000000081cff68 ac ff 1c 08 04 38 3d 04 - 70 d8 a5 04 00 00 90 7c .....8=.p......| 00000000081cff78 18 ec 50 04 58 5e 05 07 - 89 8a d5 59 70 d8 a5 04 ..P.X^.....Yp... 00000000081cff88 00 00 90 7c 90 5e 05 07 - 80 ff 1c 08 80 ff 1c 08 ...|.^.......... 00000000081cff98 dc ff 1c 08 dc ff 1c 08 - 70 e7 50 04 d5 f9 af 55 ........p.P....U 00000000081cffa8 00 00 00 00 ec ff 1c 08 - bd ec 50 04 00 00 90 7c ..........P....| 00000000081cffb8 29 b7 80 7c 90 5e 05 07 - 70 d8 a5 04 00 00 90 7c )..|.^..p......| 00000000081cffc8 90 5e 05 07 00 70 f9 7f - 00 46 3c 82 c0 ff 1c 08 .^...p...F<..... 00000000081cffd8 d0 ff ce 81 ff ff ff ff - b0 9a 83 7c 30 b7 80 7c ...........|0..| 00000000081cffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 3e ec 50 04 ............>.P. *----> Zrzut stanu dla wątku o identyfikatorze 0xae0 <----* eax=00000300 ebx=00000000 ecx=01000100 edx=01000100 esi=0701c680 edi=00000000 eip=7c90e514 esp=0862fef4 ebp=0862ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0862ff20 044ec37b 000009fc 0862ff48 0862ff4c ntdll!KiFastSystemCallRet 0862ff58 044d4eb7 00000001 044eb4dd 07020f00 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0862ffac 0450ecbd 7c900000 7c80b729 04ab1e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0862ffec 00000000 0450ec3e 04ab1e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000862fef4 4a da 90 7c e6 a7 80 7c - fc 09 00 00 4c ff 62 08 J..|...|....L.b. 000000000862ff04 38 ff 62 08 18 ff 62 08 - 00 00 00 00 e4 37 3d 04 8.b...b......7=. 000000000862ff14 00 0e 02 07 98 68 ab 04 - 96 c1 4e 04 58 ff 62 08 .....h....N.X.b. 000000000862ff24 7b c3 4e 04 fc 09 00 00 - 48 ff 62 08 4c ff 62 08 {.N.....H.b.L.b. 000000000862ff34 54 ff 62 08 ff ff ff ff - 00 00 00 00 00 0f 02 07 T.b............. 000000000862ff44 90 1e ab 04 00 00 00 00 - 00 00 00 00 01 38 3d 04 .............8=. 000000000862ff54 98 68 ab 04 ac ff 62 08 - b7 4e 4d 04 01 00 00 00 .h....b..NM..... 000000000862ff64 dd b4 4e 04 00 0f 02 07 - 04 38 3d 04 f0 fc 38 02 ..N......8=...8. 000000000862ff74 00 00 90 7c 18 ec 50 04 - 00 0f 02 07 89 8a ab 59 ...|..P........Y 000000000862ff84 f0 fc 38 02 00 00 90 7c - 90 1e ab 04 80 ff 62 08 ..8....|......b. 000000000862ff94 80 ff 62 08 dc ff 62 08 - dc ff 62 08 70 e7 50 04 ..b...b...b.p.P. 000000000862ffa4 d5 f9 af 55 00 00 00 00 - ec ff 62 08 bd ec 50 04 ...U......b...P. 000000000862ffb4 00 00 90 7c 29 b7 80 7c - 90 1e ab 04 f0 fc 38 02 ...|)..|......8. 000000000862ffc4 00 00 90 7c 90 1e ab 04 - 00 30 f9 7f 00 46 3c 82 ...|.....0...F<. 000000000862ffd4 c0 ff 62 08 58 70 b8 81 - ff ff ff ff b0 9a 83 7c ..b.Xp.........| 000000000862ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000862fff4 3e ec 50 04 90 1e ab 04 - 00 00 00 00 4d 5a 90 00 >.P.........MZ.. 0000000008630004 03 00 00 00 04 00 00 00 - ff ff 00 00 b8 00 00 00 ................ 0000000008630014 00 00 00 00 40 00 00 00 - 00 00 00 00 00 00 00 00 ....@........... 0000000008630024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x18c <----* eax=00000201 ebx=00000000 ecx=00000210 edx=00e14661 esi=0701c680 edi=00000000 eip=7c90e514 esp=0889fef4 ebp=0889ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0889ff20 044ec37b 000009fc 0889ff48 0889ff4c ntdll!KiFastSystemCallRet 0889ff58 044d4eb7 00000002 044eb4dd 07020f28 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0889ffac 0450ecbd 7c900000 7c80b729 04ab1e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0889ffec 00000000 0450ec3e 04ab1e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000889fef4 4a da 90 7c e6 a7 80 7c - fc 09 00 00 4c ff 89 08 J..|...|....L... 000000000889ff04 38 ff 89 08 18 ff 89 08 - 00 00 00 00 e4 37 3d 04 8............7=. 000000000889ff14 00 0e 02 07 f0 81 05 07 - 96 c1 4e 04 58 ff 89 08 ..........N.X... 000000000889ff24 7b c3 4e 04 fc 09 00 00 - 48 ff 89 08 4c ff 89 08 {.N.....H...L... 000000000889ff34 54 ff 89 08 ff ff ff ff - 00 00 00 00 28 0f 02 07 T...........(... 000000000889ff44 90 1e ab 04 00 00 00 00 - 00 00 00 00 01 38 3d 04 .............8=. 000000000889ff54 f0 81 05 07 ac ff 89 08 - b7 4e 4d 04 02 00 00 00 .........NM..... 000000000889ff64 dd b4 4e 04 28 0f 02 07 - 04 38 3d 04 f0 fc 38 02 ..N.(....8=...8. 000000000889ff74 00 00 90 7c 18 ec 50 04 - 28 0f 02 07 89 8a 40 59 ...|..P.(.....@Y 000000000889ff84 f0 fc 38 02 00 00 90 7c - 90 1e ab 04 80 ff 89 08 ..8....|........ 000000000889ff94 80 ff 89 08 dc ff 89 08 - dc ff 89 08 70 e7 50 04 ............p.P. 000000000889ffa4 d5 f9 af 55 00 00 00 00 - ec ff 89 08 bd ec 50 04 ...U..........P. 000000000889ffb4 00 00 90 7c 29 b7 80 7c - 90 1e ab 04 f0 fc 38 02 ...|)..|......8. 000000000889ffc4 00 00 90 7c 90 1e ab 04 - 00 20 f9 7f 00 46 3c 82 ...|..... ...F<. 000000000889ffd4 c0 ff 89 08 58 70 b8 81 - ff ff ff ff b0 9a 83 7c ....Xp.........| 000000000889ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000889fff4 3e ec 50 04 90 1e ab 04 - 00 00 00 00 00 00 00 00 >.P............. 00000000088a0004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000088a0014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 00000000088a0024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0x828 <----* eax=00369e99 ebx=00000000 ecx=00000000 edx=00000000 esi=0701c680 edi=00000000 eip=7c90e514 esp=0899fef4 ebp=0899ff20 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0899ff20 044ec37b 000009fc 0899ff48 0899ff4c ntdll!KiFastSystemCallRet 0899ff58 044d4eb7 00000003 044eb4dd 07020f50 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x1160dc 0899ffac 0450ecbd 7c900000 7c80b729 04ab1e90 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0xfec18 0899ffec 00000000 0450ec3e 04ab1e90 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000899fef4 4a da 90 7c e6 a7 80 7c - fc 09 00 00 4c ff 99 08 J..|...|....L... 000000000899ff04 38 ff 99 08 18 ff 99 08 - 00 00 00 00 e4 37 3d 04 8............7=. 000000000899ff14 00 0e 02 07 e8 cf 03 07 - 96 c1 4e 04 58 ff 99 08 ..........N.X... 000000000899ff24 7b c3 4e 04 fc 09 00 00 - 48 ff 99 08 4c ff 99 08 {.N.....H...L... 000000000899ff34 54 ff 99 08 ff ff ff ff - 00 00 00 00 50 0f 02 07 T...........P... 000000000899ff44 90 1e ab 04 00 00 00 00 - 00 00 00 00 01 38 3d 04 .............8=. 000000000899ff54 e8 cf 03 07 ac ff 99 08 - b7 4e 4d 04 03 00 00 00 .........NM..... 000000000899ff64 dd b4 4e 04 50 0f 02 07 - 04 38 3d 04 f0 fc 38 02 ..N.P....8=...8. 000000000899ff74 00 00 90 7c 18 ec 50 04 - 50 0f 02 07 89 8a 50 59 ...|..P.P.....PY 000000000899ff84 f0 fc 38 02 00 00 90 7c - 90 1e ab 04 80 ff 99 08 ..8....|........ 000000000899ff94 80 ff 99 08 dc ff 99 08 - dc ff 99 08 70 e7 50 04 ............p.P. 000000000899ffa4 d5 f9 af 55 00 00 00 00 - ec ff 99 08 bd ec 50 04 ...U..........P. 000000000899ffb4 00 00 90 7c 29 b7 80 7c - 90 1e ab 04 f0 fc 38 02 ...|)..|......8. 000000000899ffc4 00 00 90 7c 90 1e ab 04 - 00 10 f9 7f 00 46 3c 82 ...|.........F<. 000000000899ffd4 c0 ff 99 08 58 70 b8 81 - ff ff ff ff b0 9a 83 7c ....Xp.........| 000000000899ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000899fff4 3e ec 50 04 90 1e ab 04 - 00 00 00 00 50 00 15 00 >.P.........P... 00000000089a0004 50 00 15 00 00 00 00 00 - 00 00 00 00 00 00 20 00 P............. . 00000000089a0014 00 00 20 00 38 12 00 00 - 00 0b 00 00 00 00 00 00 .. .8........... 00000000089a0024 08 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xc90 <----* eax=00000000 ebx=00000000 ecx=00000004 edx=00000000 esi=03a1bb98 edi=08d9451c eip=3f618020 esp=08d944f8 ebp=08d94504 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: mshtml!Ordinal103 3f618007 c075ee8b shl byte ptr [ebp-0x12],0x8b 3f61800b 40 inc eax 3f61800c 70e9 jo mshtml!Ordinal103+0xdc837 (3f617ff7) 3f61800e 16 push ss 3f61800f 94 xchg eax,esp 3f618010 e3ff jecxz mshtml!Ordinal103+0xdc851 (3f618011) 3f618012 8bc6 mov eax,esi 3f618014 e8b6ff1f00 call mshtml+0x4e7fcf (3f817fcf) 3f618019 8bf0 mov esi,eax 3f61801b e9b593e3ff jmp mshtml!DllGetClassObject+0x1040d0 (3f4513d5) BŁĄD ->3f618020 395314 cmp [ebx+0x14],edx ds:0023:00000014=???????? 3f618023 743a jz mshtml!Ordinal103+0xdc89f (3f61805f) 3f618025 8b4e38 mov ecx,[esi+0x38] 3f618028 89550c mov [ebp+0xc],edx 3f61802b 395004 cmp [eax+0x4],edx 3f61802e 750d jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618030 395018 cmp [eax+0x18],edx 3f618033 7508 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f618035 394838 cmp [eax+0x38],ecx 3f618038 7503 jnz mshtml!Ordinal103+0xdc87d (3f61803d) 3f61803a 89450c mov [ebp+0xc],eax *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\jscript.dll - ChildEBP RetAddr Args to Child 08d94504 3f45135d 08d945c8 08d94538 08d9451c mshtml!Ordinal103+0xdc860 08d9453c 3f452257 0781f010 03a1b218 02938a6c mshtml!DllGetClassObject+0x104058 08d9460c 3f4ae631 0781f010 03a1b218 00000000 mshtml!DllGetClassObject+0x104f52 08d94640 3f4ac39b 0781f010 03a1b218 00000000 mshtml!Ordinal104+0xccc1 08d94774 3f4abe87 0781f010 03a1b218 00000000 mshtml!Ordinal104+0xaa2b 08d947a4 3f4ac898 0781f010 03a1b218 00000000 mshtml!Ordinal104+0xa517 08d94864 3f4a93b9 00000000 03a1b218 00000000 mshtml!Ordinal104+0xaf28 08d94984 3f4aab8a 039ee088 03dc9d60 03a1b218 mshtml!Ordinal104+0x7a49 08d94a58 3f4ab0c0 039ee088 03dc9d60 029389c4 mshtml!Ordinal104+0x921a 08d94af8 3f4a9b96 039ee088 03dc9d60 03a1b218 mshtml!Ordinal104+0x9750 08d94b4c 3f4ace27 0781f010 03a1b218 00000000 mshtml!Ordinal104+0x8226 08d94bf0 3f4af5b7 0781f010 03a1b218 00000000 mshtml!Ordinal104+0xb4b7 08d94cc8 3f4aeaba 0781f010 00000000 00000001 mshtml!Ordinal104+0xdc47 08d94ddc 3f4ae8be 0781f010 00000000 08d94f0c mshtml!Ordinal104+0xd14a 08d94e28 3f4a7c15 0781f010 03e79418 00000000 mshtml!Ordinal104+0xcf4e 08d94f88 3f4af97b 0781f010 03a1b218 03e79418 mshtml!Ordinal104+0x62a5 08d94ffc 3f4af0c1 03a1b218 00000000 00000000 mshtml!Ordinal104+0xe00b 08d950b8 3f4b51c0 03a1b218 00000000 08d95168 mshtml!Ordinal104+0xd751 08d951a0 3f4b66b9 03a1b218 00000000 00000001 mshtml!Ordinal104+0x13850 08d951d4 3f4b7564 3fffffff 00000000 00000001 mshtml!Ordinal104+0x14d49 08d9521c 3f4b7414 03a1b218 00000000 08d952f8 mshtml!Ordinal104+0x15bf4 08d952fc 3f4b737d 03a1b218 00000000 00000000 mshtml!Ordinal104+0x15aa4 08d95344 3f4b7198 03a1b218 08d9536c 00000000 mshtml!Ordinal104+0x15a0d 08d95390 3f4b5f74 03a1b218 00000000 0024d7b8 mshtml!Ordinal104+0x15828 08d95504 3f4b5e15 03a1b218 00000000 0024d7b8 mshtml!Ordinal104+0x14604 08d95570 3f4b5c85 03a1b218 00000000 0024d7b8 mshtml!Ordinal104+0x144a5 08d95650 3f4b629e 03a1b218 08d956f8 08d958a8 mshtml!Ordinal104+0x14315 08d95794 3f4b6b24 03a1b218 00000000 0024d7b8 mshtml!Ordinal104+0x1492e 08d958cc 3f4d5540 0781f010 0024d7b8 00000001 mshtml!Ordinal104+0x151b4 08d958f0 3f4d54ed 0781f010 039ea678 0024d7b8 mshtml!Ordinal104+0x33bd0 08d95994 3f4ab7ce 0024d7b8 03b6b160 08d959bb mshtml!Ordinal104+0x33b7d 08d95b04 3f3eb947 08d95cc8 08d95c60 00000000 mshtml!Ordinal104+0x9e5e 08d95c3c 3f3fe4ee 03b6b160 00000000 00000000 mshtml!DllGetClassObject+0x9e642 08d95d38 3f5cd0c0 00100000 08d95d90 03e70638 mshtml!DllGetClassObject+0xb11e9 08d95d4c 3f3d8c8d 08d95d90 08d95d90 3f3e1fff mshtml!Ordinal103+0x91900 08d95d6c 3f3d8e57 08d95d90 03feaed0 00000000 mshtml!DllGetClassObject+0x8b988 08d95dc4 3f3d6e02 08d95e58 0021c9a8 08d95e58 mshtml!DllGetClassObject+0x8bb52 08d95e1c 3f3d6d75 03b75800 00000000 0021ca6c mshtml!DllGetClassObject+0x89afd 08d95e44 3f3e1efa 08d95e58 0021cb98 3f3a10a0 mshtml!DllGetClassObject+0x89a70 08d95e8c 3f3b53ca 0000000f 00000000 00000000 mshtml!DllGetClassObject+0x94bf5 08d95eb0 3f5587e5 0794eb38 00000001 042b7718 mshtml!DllGetClassObject+0x680c5 08d95edc 3f5588d2 0794eb38 040d1b30 00001200 mshtml!Ordinal103+0x1d025 08d95f00 3f512165 0794eb38 042b7718 040d1b30 mshtml!Ordinal103+0x1d112 08d95f20 3f41ab53 0794eb38 040d1b30 07910ce8 mshtml!Ordinal104+0x707f5 08d95f94 3f426bf1 0794eb38 800103f2 00000002 mshtml!DllGetClassObject+0xcd84e 08d95fe4 3f4328c8 0794eb38 800103f2 00000002 mshtml!DllGetClassObject+0xd98ec 08d96010 3f41a551 0794eb38 800103f2 00000002 mshtml!DllGetClassObject+0xe55c3 08d96060 3fc53a9a 078e2f78 800103f2 00000002 mshtml!DllGetClassObject+0xcd24c 08d960a0 3fc539e6 04146bd0 800103f2 00000409 jscript!DllGetClassObject+0xc855 08d960dc 3fc54f26 04146bd0 00000409 00000002 jscript!DllGetClassObject+0xc7a1 08d9619c 3fc54e80 800103f2 00000002 042b7710 jscript!DllGetClassObject+0xdce1 08d961d0 3fc54b96 04146bd0 08d962f8 00000002 jscript!DllGetClassObject+0xdc3b 08d96368 3fc513ab 08d96380 08d967a0 08d967a0 jscript!DllGetClassObject+0xd951 08d96450 3fc512e5 08d967a0 00000003 042b77c0 jscript!DllGetClassObject+0xa166 08d9649c 3fc52a05 08d967a0 00000003 042b77c0 jscript!DllGetClassObject+0xa0a0 08d96520 3fc528c5 04336298 04146bd0 00000003 jscript!DllGetClassObject+0xb7c0 08d96554 3fc543fc 04146bd0 00000000 00000003 jscript!DllGetClassObject+0xb680 08d96594 3fc524c1 04146bd0 08d96604 0433af20 jscript!DllGetClassObject+0xd1b7 08d965d0 3fc52d6d 04146bd0 08d96604 00000003 jscript!DllGetClassObject+0xb27c 08d9661c 3fc54235 04146bd0 00000003 08d967a0 jscript!DllGetClassObject+0xbb28 08d9664c 3fc53114 04146bd0 00000000 00000003 jscript!DllGetClassObject+0xcff0 08d967e8 3fc513ab 08d96800 08d96c20 08d96c20 jscript!DllGetClassObject+0xbecf 08d968d0 3fc512e5 08d96c20 00000002 042b78c0 jscript!DllGetClassObject+0xa166 08d9691c 3fc52a05 08d96c20 00000002 042b78c0 jscript!DllGetClassObject+0xa0a0 08d969a0 3fc528c5 0433afe0 04146bd0 00000003 jscript!DllGetClassObject+0xb7c0 08d969d4 3fc543fc 04146bd0 00000000 00000003 jscript!DllGetClassObject+0xb680 08d96a14 3fc524c1 04146bd0 08d96a84 0431a258 jscript!DllGetClassObject+0xd1b7 08d96a50 3fc52d6d 04146bd0 08d96a84 00000003 jscript!DllGetClassObject+0xb27c 08d96a9c 3fc54235 04146bd0 00000003 08d96c20 jscript!DllGetClassObject+0xbb28 08d96acc 3fc53114 04146bd0 00000000 00000003 jscript!DllGetClassObject+0xcff0 08d96c68 3fc513ab 08d96c80 08d970a0 08d970a0 jscript!DllGetClassObject+0xbecf 08d96d50 3fc512e5 08d970a0 00000000 042b79a0 jscript!DllGetClassObject+0xa166 08d96d9c 3fc52a05 08d970a0 00000000 042b79a0 jscript!DllGetClassObject+0xa0a0 08d96e20 3fc528c5 041b2188 04146bd0 00000001 jscript!DllGetClassObject+0xb7c0 08d96e54 3fc543fc 04146bd0 00000000 00000001 jscript!DllGetClassObject+0xb680 08d96e94 3fc524c1 04146bd0 08d96f04 043a6990 jscript!DllGetClassObject+0xd1b7 08d96ed0 3fc52d6d 04146bd0 08d96f04 00000001 jscript!DllGetClassObject+0xb27c 08d96f1c 3fc54235 04146bd0 00000001 08d970a0 jscript!DllGetClassObject+0xbb28 08d96f4c 3fc53114 04146bd0 00000000 00000001 jscript!DllGetClassObject+0xcff0 08d970e8 3fc513ab 08d97100 08d97688 08d97688 jscript!DllGetClassObject+0xbecf 08d971d0 3fc512e5 08d97688 00000002 042b7a50 jscript!DllGetClassObject+0xa166 08d9721c 3fc52a05 08d97688 00000002 042b7a50 jscript!DllGetClassObject+0xa0a0 08d972a0 3fc528c5 043a6748 04146bd0 00000001 jscript!DllGetClassObject+0xb7c0 08d972d4 3fc73b5f 04146bd0 00000000 00000001 jscript!DllGetClassObject+0xb680 08d9731c 3fc54327 04146bd0 08d973c0 08d97688 jscript!DllCanUnloadNow+0x103df 08d97384 3fc52a05 08d97688 00000003 042b7a50 jscript!DllGetClassObject+0xd0e2 08d97408 3fc528c5 041739c0 04146bd0 00000003 jscript!DllGetClassObject+0xb7c0 08d9743c 3fc543fc 04146bd0 00000000 00000003 jscript!DllGetClassObject+0xb680 08d9747c 3fc524c1 04146bd0 08d974ec 043a6748 jscript!DllGetClassObject+0xd1b7 08d974b8 3fc52d6d 04146bd0 08d974ec 00000003 jscript!DllGetClassObject+0xb27c 08d97504 3fc54235 04146bd0 00000003 08d97688 jscript!DllGetClassObject+0xbb28 08d97534 3fc53114 04146bd0 00000000 00000003 jscript!DllGetClassObject+0xcff0 08d976d0 3fc513ab 08d976e8 08d97b08 08d97b08 jscript!DllGetClassObject+0xbecf 08d977b8 3fc512e5 08d97b08 00000003 042b7b40 jscript!DllGetClassObject+0xa166 08d97804 3fc52a05 08d97b08 00000003 042b7b40 jscript!DllGetClassObject+0xa0a0 08d97888 3fc528c5 0432be78 04146bd0 00000003 jscript!DllGetClassObject+0xb7c0 08d978bc 3fc543fc 04146bd0 00000000 00000003 jscript!DllGetClassObject+0xb680 08d978fc 3fc524c1 04146bd0 08d9796c 0431a258 jscript!DllGetClassObject+0xd1b7 08d97938 3fc52d6d 04146bd0 08d9796c 00000003 jscript!DllGetClassObject+0xb27c 08d97984 3fc54235 04146bd0 00000003 08d97b08 jscript!DllGetClassObject+0xbb28 *----> Zrzut stosu <----* 0000000008d944f8 c8 45 d9 08 10 f0 81 07 - 00 00 00 00 3c 45 d9 08 .E.......... Zrzut stanu dla wątku o identyfikatorze 0x850 <----* eax=00000000 ebx=0852fea8 ecx=00000000 edx=00000000 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=0852fe80 ebp=0852ff1c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0852ff1c 7c80a115 00000002 0852ff58 00000000 ntdll!KiFastSystemCallRet 0852ff38 0445e03b 00000002 0852ff58 00000000 kernel32!WaitForMultipleObjects+0x18 0852ff68 043d3804 08d9d8b4 7c900000 0450ec18 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x87d9c 0852ffac 0450ecbd 7c900000 7c80b729 07015008 GoogleToolbarDynamic_32_B31C6BD+0x3804 0852ffec 00000000 0450ec3e 07015008 00000000 GoogleToolbarDynamic_32_B31C6BD!BrokerWinMain+0x138a1e *----> Zrzut stosu <----* 000000000852fe80 4a df 90 7c 90 95 80 7c - 02 00 00 00 a8 fe 52 08 J..|...|......R. 000000000852fe90 01 00 00 00 00 00 00 00 - 00 00 00 00 30 b8 05 07 ............0... 000000000852fea0 30 b8 05 07 fd a0 80 7c - 80 0b 00 00 7c 0b 00 00 0......|....|... 000000000852feb0 17 00 00 00 01 00 00 00 - 8c d5 4e 77 3c 61 90 02 ..........Nw Zrzut stanu dla wątku o identyfikatorze 0xb50 <----* eax=72cb30e8 ebx=0942fef8 ecx=000000e9 edx=00150000 esi=00000000 edi=7ffdf000 eip=7c90e514 esp=0942fed0 ebp=0942ff6c iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* WARNING: Stack unwind information not available. Following frames may be wrong. *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\wdmaud.drv - ChildEBP RetAddr Args to Child 0942ff6c 7c80a115 00000002 0942ffa4 00000000 ntdll!KiFastSystemCallRet 0942ff88 72cb312a 00000002 0942ffa4 00000000 kernel32!WaitForMultipleObjects+0x18 0942ffb4 7c80b729 00000000 001bbd20 001b0ed0 wdmaud!midMessage+0x348 0942ffec 00000000 72cb30e8 00000000 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000942fed0 4a df 90 7c 90 95 80 7c - 02 00 00 00 f8 fe 42 09 J..|...|......B. 000000000942fee0 01 00 00 00 00 00 00 00 - 00 00 00 00 20 bd 1b 00 ............ ... 000000000942fef0 00 00 00 00 00 00 00 00 - 2c 06 00 00 58 06 00 00 ........,...X... 000000000942ff00 00 00 00 00 b4 ea 18 e1 - 80 ec bc f3 ec fd e9 08 ................ 000000000942ff10 22 00 00 00 bc 31 bf 81 - 14 00 00 00 01 00 00 00 "....1.......... 000000000942ff20 00 00 00 00 00 00 00 00 - 10 00 00 00 54 30 bf 81 ............T0.. 000000000942ff30 30 ec bc f3 4a 8d 57 80 - 00 f0 fd 7f 00 90 f9 7f 0...J.W......... 000000000942ff40 00 90 f9 7f 00 00 00 00 - f8 fe 42 09 00 00 00 00 ..........B..... 000000000942ff50 02 00 00 00 ec fe 42 09 - 00 00 00 00 dc ff 42 09 ......B.......B. 000000000942ff60 b0 9a 83 7c 80 96 80 7c - 00 00 00 00 88 ff 42 09 ...|...|......B. 000000000942ff70 15 a1 80 7c 02 00 00 00 - a4 ff 42 09 00 00 00 00 ...|......B..... 000000000942ff80 ff ff ff ff 00 00 00 00 - b4 ff 42 09 2a 31 cb 72 ..........B.*1.r 000000000942ff90 02 00 00 00 a4 ff 42 09 - 00 00 00 00 ff ff ff ff ......B......... 000000000942ffa0 d0 0e 1b 00 2c 06 00 00 - 58 06 00 00 00 00 00 00 ....,...X....... 000000000942ffb0 1a da 90 7c ec ff 42 09 - 29 b7 80 7c 00 00 00 00 ...|..B.)..|.... 000000000942ffc0 20 bd 1b 00 d0 0e 1b 00 - 00 00 00 00 00 90 f9 7f ............... 000000000942ffd0 00 46 3c 82 c0 ff 42 09 - 70 03 c3 81 ff ff ff ff .F<...B.p....... 000000000942ffe0 b0 9a 83 7c 30 b7 80 7c - 00 00 00 00 00 00 00 00 ...|0..|........ 000000000942fff0 00 00 00 00 e8 30 cb 72 - 00 00 00 00 00 00 00 00 .....0.r........ 0000000009430000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ *----> Zrzut stanu dla wątku o identyfikatorze 0xaa8 <----* eax=0000059d ebx=00000bcc ecx=00000510 edx=078dc000 esi=0952ff98 edi=7e37772b eip=7c90e514 esp=0952ff54 ebp=0952ff78 iopl=0 nv up ei pl zr na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 funkcja: ntdll!KiFastSystemCallRet 7c90e4fa e829000000 call ntdll!RtlRaiseException (7c90e528) 7c90e4ff 8b0424 mov eax,[esp] 7c90e502 8be5 mov esp,ebp 7c90e504 5d pop ebp 7c90e505 c3 ret 7c90e506 8da42400000000 lea esp,[esp] 7c90e50d 8d4900 lea ecx,[ecx] ntdll!KiFastSystemCall: 7c90e510 8bd4 mov edx,esp 7c90e512 0f34 sysenter ntdll!KiFastSystemCallRet: 7c90e514 c3 ret 7c90e515 8da42400000000 lea esp,[esp] 7c90e51c 8d642400 lea esp,[esp] ntdll!KiIntSystemCall: 7c90e520 8d542408 lea edx,[esp+0x8] 7c90e524 cd2e int 2e 7c90e526 c3 ret 7c90e527 90 nop ntdll!RtlRaiseException: 7c90e528 55 push ebp 7c90e529 8bec mov ebp,esp *----> Wsteczne śledzenie stosu <----* *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\WINMM.dll - WARNING: Stack unwind information not available. Following frames may be wrong. ChildEBP RetAddr Args to Child 0952ff78 76b24e31 0952ff98 00000000 00000000 ntdll!KiFastSystemCallRet 0952ffb4 7c80b729 00000bcc 00000200 0000002b WINMM!PlaySoundW+0x7e2 0952ffec 00000000 76b24dca 00000bcc 00000000 kernel32!GetModuleFileNameA+0x1ba *----> Zrzut stosu <----* 000000000952ff54 be 91 36 7e 6b 77 37 7e - 98 ff 52 09 00 00 00 00 ..6~kw7~..R..... 000000000952ff64 00 00 00 00 00 00 00 00 - cc 0b 00 00 2b 77 37 7e ............+w7~ 000000000952ff74 00 00 00 00 b4 ff 52 09 - 31 4e b2 76 98 ff 52 09 ......R.1N.v..R. 000000000952ff84 00 00 00 00 00 00 00 00 - 00 00 00 00 00 02 00 00 ................ 000000000952ff94 2b 00 00 00 92 02 1e 00 - bc 03 00 00 10 0f b9 03 +............... 000000000952ffa4 00 00 00 00 9b 62 b3 00 - d9 02 00 00 38 01 00 00 .....b......8... 000000000952ffb4 ec ff 52 09 29 b7 80 7c - cc 0b 00 00 00 02 00 00 ..R.)..|........ 000000000952ffc4 2b 00 00 00 cc 0b 00 00 - 00 50 f9 7f 00 46 3c 82 +........P...F<. 000000000952ffd4 c0 ff 52 09 70 03 c3 81 - ff ff ff ff b0 9a 83 7c ..R.p..........| 000000000952ffe4 30 b7 80 7c 00 00 00 00 - 00 00 00 00 00 00 00 00 0..|............ 000000000952fff4 ca 4d b2 76 cc 0b 00 00 - 00 00 00 00 00 00 00 00 .M.v............ 0000000009530004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009530014 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009530024 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009530034 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009530044 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009530054 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009530064 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009530074 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0000000009530084 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................