[go: up one dir, main page]

0% found this document useful (0 votes)
20 views12 pages

Quevedo F. Distribucion Normal. Medwave 2011 May 1105

Download as txt, pdf, or txt
Download as txt, pdf, or txt
Download as txt, pdf, or txt
You are on page 1/ 12

date/time : 2016-06-02, 09:07:27, 672ms

computer name : PERSONAL


user name : pc
registered owner : pc / PERSONAL
operating system : Windows 7 build 7600
system language : Spanish
system up time : 1 minute
program up time : 4 seconds
processors : 2x Intel(R) Celeron(R) CPU 847 @ 1.10GHz
physical memory : 929/1872 MB (free/total)
free disk space : (C:) 274,70 GB
display mode : 1024x600, 32 bit
process id : $b94
allocated memory : 24,09 MB
largest free block : 1,45 GB
executable : UmmyVideoDownloader.exe
exec. date/time : 2016-06-02 07:56
version : 1.6.0.4
compiled with : Delphi XE6
madExcept version : 4.0.12
callstack crc : $c8309653, $673244a9, $673244a9
exception number : 1
exception class : EAccessViolation
exception message : Access violation at address 00699FA1 in module
'UmmyVideoDownloader.exe'. Read of address 00000000.

main thread ($b98):


00699fa1 +12d UmmyVideoDownloader.exe MVDLog 50 +14 AddDebugLog
006aad4c +2a0 UmmyVideoDownloader.exe MVDLang 146 +45
TTranslateLang.LoadTranslate
006ab03b +043 UmmyVideoDownloader.exe MVDLang 183 +3
TTranslateLang.InitLang
00803fbd +131 UmmyVideoDownloader.exe UmmyVideoDownloader 105 +33 initialization
76471172 +010 kernel32.dll
BaseThreadInitThunk

thread $bd4:
775a5e4a +0a ntdll.dll NtWaitForMultipleObjects
76471172 +10 kernel32.dll BaseThreadInitThunk

thread $be0:
775a5e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
76471172 +10 kernel32.dll BaseThreadInitThunk

thread $be8:
775a5e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
76471172 +10 kernel32.dll BaseThreadInitThunk

thread $bec:
775a5e6a +0a ntdll.dll NtWaitForSingleObject
75911796 +66 KERNELBASE.dll WaitForSingleObjectEx
7646effe +3e kernel32.dll WaitForSingleObjectEx
004a7205 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a726a +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
76471172 +10 kernel32.dll BaseThreadInitThunk
>> created by thread $be8 at:
73e4325b +00 rasman.dll

thread $bf8:
775a5e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
76471172 +10 kernel32.dll BaseThreadInitThunk

thread $c1c:
775a5e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
76471172 +10 kernel32.dll BaseThreadInitThunk

cpu registers:
eax = 00000000
ebx = 00699f7d
ecx = 00000062
edx = 01f3df44
esi = 00000000
edi = 0012f934
eip = 00699fa1
esp = 0012f940
ebp = 0012f974

stack dump:
0012f940 ac fe 12 00 cc 98 40 00 - 74 f9 12 00 ac fe 12 00 ......@.t.......
0012f950 00 00 00 00 36 ad 6a 00 - 00 00 00 00 00 00 00 00 ....6.j.........
0012f960 00 00 00 00 83 a1 70 2a - 6c c3 e4 40 00 00 00 00 ......p*l..@....
0012f970 00 00 00 00 0c ff 12 00 - 51 ad 6a 00 00 00 00 00 ........Q.j.....
0012f980 7f be 52 00 20 4a fb 01 - 88 fa 12 00 b4 f9 12 00 ..R. J..........
0012f990 c0 f9 12 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012f9a0 f9 65 5a 77 88 fa 12 00 - ac fe 12 00 b8 fa 12 00 .eZw............
0012f9b0 5c fa 12 00 a0 fe 12 00 - 0d 66 5a 77 ac fe 12 00 \........fZw....
0012f9c0 70 fa 12 00 cb 65 5a 77 - 88 fa 12 00 ac fe 12 00 p....eZw........
0012f9d0 b8 fa 12 00 5c fa 12 00 - 31 ad 6a 00 00 00 00 00 ....\...1.j.....
0012f9e0 88 fa 12 00 ac fe 12 00 - 3d 8d 58 77 88 fa 12 00 ........=.Xw....
0012f9f0 ac fe 12 00 b8 fa 12 00 - 5c fa 12 00 31 ad 6a 00 ........\...1.j.
0012fa00 20 00 00 00 88 fa 12 00 - 0c 6d f3 01 00 00 00 00 ........m......
0012fa10 82 00 84 00 0c 6d f3 01 - 41 00 00 00 28 02 00 00 .....m..A...(...
0012fa20 02 00 00 00 00 00 00 00 - 82 00 00 00 00 00 00 00 ................
0012fa30 82 00 00 00 6a fb 12 00 - 0c 6d f3 01 82 00 08 02 ....j....m......
0012fa40 e8 fa 12 00 01 fa 12 01 - 8e 6d f3 01 00 00 00 00 .........m......
0012fa50 00 00 00 00 00 00 00 00 - 4d bd 5b 77 31 5d 71 77 ........M.[w1]qw
0012fa60 72 00 00 00 00 00 13 00 - 00 b0 12 00 80 fa 12 00 r...............
0012fa70 ec fd 12 00 57 64 5a 77 - 88 fa 12 00 b8 fa 12 00 ....WdZw........

disassembling:
[...]
00699f93 sub eax, 4
00699f96 mov eax, [eax]
00699f98 mov ecx, eax
00699f9a add ecx, ecx
00699f9c mov eax, [$811734]
00699fa1 > mov ebx, [eax]
00699fa3 call dword ptr [ebx+$10]
00699fa6 51 xor eax, eax
00699fa8 pop edx
00699fa9 pop ecx
00699faa pop ecx
[...]

date/time : 2016-06-02, 09:07:37, 841ms


computer name : PERSONAL
user name : pc
registered owner : pc / PERSONAL
operating system : Windows 7 build 7600
system language : Spanish
system up time : 1 minute 9 seconds
program up time : 14 seconds
processors : 2x Intel(R) Celeron(R) CPU 847 @ 1.10GHz
physical memory : 887/1872 MB (free/total)
free disk space : (C:) 274,74 GB
display mode : 1024x600, 32 bit
process id : $ba4
allocated memory : 45,58 MB
largest free block : 1,31 GB
executable : UmmyVideoDownloader.exe
exec. date/time : 2016-06-02 07:56
version : 1.6.0.4
compiled with : Delphi XE6
madExcept version : 4.0.12
callstack crc : $c8309653, $669d60bc, $091c27d0
exception number : 1
exception class : EAccessViolation
exception message : Access violation at address 00699FA1 in module
'UmmyVideoDownloader.exe'. Read of address 00000000.

main thread ($ba8):


00699fa1 +12d UmmyVideoDownloader.exe MVDLog 50 +14 AddDebugLog
0070f6ae +182 UmmyVideoDownloader.exe MVDHTTP 113 +20 HttpSend
0070f98c +084 UmmyVideoDownloader.exe MVDHTTP 128 +10 SendStat
007334fd +129 UmmyVideoDownloader.exe MVDGoogleAnalytics 42 +15 SendEvent
007f4adf +053 UmmyVideoDownloader.exe MainUnit 1250 +3
TMVDMainForm.FormDestroy
00667c75 +031 UmmyVideoDownloader.exe Vcl.Forms
TCustomForm.DoDestroy
00667a4d +06d UmmyVideoDownloader.exe Vcl.Forms
TCustomForm.BeforeDestruction
00408c69 +009 UmmyVideoDownloader.exe System 57 +0
@BeforeDestruction
00667a5e +006 UmmyVideoDownloader.exe Vcl.Forms
TCustomForm.Destroy
00408588 +008 UmmyVideoDownloader.exe System 57 +0 TObject.Free
0053b01f +05b UmmyVideoDownloader.exe System.Classes
TComponent.DestroyComponents
00665ad5 +035 UmmyVideoDownloader.exe Vcl.Forms DoneApplication
0044f70d +021 UmmyVideoDownloader.exe System.SysUtils DoExitProc
0040a0c1 +065 UmmyVideoDownloader.exe System 57 +0 @Halt0
0080408c +200 UmmyVideoDownloader.exe UmmyVideoDownloader 122 +50 initialization
76471172 +010 kernel32.dll
BaseThreadInitThunk

thread $bd0:
775a5e4a +0a ntdll.dll NtWaitForMultipleObjects
76471172 +10 kernel32.dll BaseThreadInitThunk

thread $bd8:
775a5e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
76471172 +10 kernel32.dll BaseThreadInitThunk

thread $c08:
775a5e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
76471172 +10 kernel32.dll BaseThreadInitThunk
thread $c0c:
775a5e6a +0a ntdll.dll NtWaitForSingleObject
75911796 +66 KERNELBASE.dll WaitForSingleObjectEx
7646effe +3e kernel32.dll WaitForSingleObjectEx
004a7205 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a726a +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
76471172 +10 kernel32.dll BaseThreadInitThunk
>> created by thread $c08 at:
73e4325b +00 rasman.dll

thread $c10:
775a5e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
76471172 +10 kernel32.dll BaseThreadInitThunk

thread $c28 (TWorkerThread):


775a5e6a +0a ntdll.dll NtWaitForSingleObject
75911796 +66 KERNELBASE.dll WaitForSingleObjectEx
7646effe +3e kernel32.dll WaitForSingleObjectEx
7646efad +0d kernel32.dll WaitForSingleObject
007ab396 +26 UmmyVideoDownloader.exe VirtualTrees 6375 +4 TWorkerThread.Execute
004a731f +2b UmmyVideoDownloader.exe madExcept HookedTThreadExecute
00539a75 +49 UmmyVideoDownloader.exe System.Classes ThreadProc
0040a218 +28 UmmyVideoDownloader.exe System 57 +0 ThreadWrapper
004a7205 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a726a +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
76471172 +10 kernel32.dll BaseThreadInitThunk
>> created by main thread ($ba8) at:
007ab27a +16 UmmyVideoDownloader.exe VirtualTrees 6316 +1 TWorkerThread.Create

thread $c44: <priority:1>


775a57ea +0a ntdll.dll NtRemoveIoCompletion
004a7205 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a726a +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
76471172 +10 kernel32.dll BaseThreadInitThunk
>> created by main thread ($ba8) at:
750fc3df +00 mswsock.dll

thread $c54:
759c72a4 +171 WS2_32.dll gethostbyname
004a7205 +00d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a726a +032 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
76471172 +010 kernel32.dll BaseThreadInitThunk
>> created by thread $c4c at:
759c4d5c +000 WS2_32.dll

thread $cb4:
775a5e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
76471172 +10 kernel32.dll BaseThreadInitThunk

thread $cb8:
775a5e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
76471172 +10 kernel32.dll BaseThreadInitThunk

cpu registers:
eax = 00000000
ebx = 00699f7d
ecx = 0000003c
edx = 01f12efc
esi = 00000000
edi = 0012f884
eip = 00699fa1
esp = 0012f890
ebp = 0012f8c4

stack dump:
0012f890 a8 fd 12 00 cc 98 40 00 - c4 f8 12 00 a8 fd 12 00 ......@.........
0012f8a0 00 00 00 00 a9 f6 70 00 - 00 00 00 00 00 00 00 00 ......p.........
0012f8b0 00 00 00 00 b1 7b 67 2b - 6c c3 e4 40 00 00 00 00 .....{g+l..@....
0012f8c0 00 00 00 00 e4 fd 12 00 - b3 f6 70 00 00 00 00 00 ..........p.....
0012f8d0 45 b0 70 00 20 c7 ed 01 - d8 f9 12 00 04 f9 12 00 E.p. ...........
0012f8e0 10 f9 12 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012f8f0 f9 65 5a 77 d8 f9 12 00 - a8 fd 12 00 08 fa 12 00 .eZw............
0012f900 ac f9 12 00 9c fd 12 00 - 0d 66 5a 77 a8 fd 12 00 .........fZw....
0012f910 c0 f9 12 00 cb 65 5a 77 - d8 f9 12 00 a8 fd 12 00 .....eZw........
0012f920 08 fa 12 00 ac f9 12 00 - a4 f6 70 00 00 00 00 00 ..........p.....
0012f930 d8 f9 12 00 a8 fd 12 00 - 3d 8d 58 77 d8 f9 12 00 ........=.Xw....
0012f940 a8 fd 12 00 08 fa 12 00 - ac f9 12 00 a4 f6 70 00 ..............p.
0012f950 f0 83 ed 01 d8 f9 12 00 - 20 f8 de 01 38 fa 12 00 ........ ...8...
0012f960 00 00 00 00 a4 fb 12 00 - 01 00 00 00 fc 01 01 00 ................
0012f970 00 00 73 00 32 00 5f 00 - 33 00 32 00 2e 00 44 00 ..s.2._.3.2...D.
0012f980 4c 00 4c 00 00 00 5b 77 - 03 00 00 00 00 00 00 00 L.L...[w........
0012f990 00 00 00 00 d4 f9 12 00 - ad e6 5b 77 01 00 00 00 ..........[w....
0012f9a0 a4 fb 12 00 0c e7 5b 77 - 24 fa 12 00 18 fa 12 00 ......[w$.......
0012f9b0 72 00 00 00 00 00 13 00 - 00 40 12 00 00 00 00 00 r........@......
0012f9c0 3c fd 12 00 57 64 5a 77 - d8 f9 12 00 08 fa 12 00 <...WdZw........

disassembling:
[...]
00699f93 sub eax, 4
00699f96 mov eax, [eax]
00699f98 mov ecx, eax
00699f9a add ecx, ecx
00699f9c mov eax, [$811734]
00699fa1 > mov ebx, [eax]
00699fa3 call dword ptr [ebx+$10]
00699fa6 51 xor eax, eax
00699fa8 pop edx
00699fa9 pop ecx
00699faa pop ecx
[...]

date/time : 2016-06-16, 08:42:22, 701ms


computer name : PERSONAL
user name : pc
registered owner : pc / PERSONAL
operating system : Windows 7 build 7600
system language : Spanish
system up time : 49 minutes 13 seconds
program up time : 28 seconds
processors : 2x Intel(R) Celeron(R) CPU 847 @ 1.10GHz
physical memory : 1126/1872 MB (free/total)
free disk space : (C:) 267,24 GB
display mode : 1024x600, 32 bit
process id : $4c0
allocated memory : 42,42 MB
largest free block : 1,31 GB
executable : UmmyVideoDownloader.exe
exec. date/time : 2016-06-16 08:32
version : 1.7.0.0
compiled with : Delphi XE6
madExcept version : 4.0.12
callstack crc : $d7746903, $fec54089, $837aee27
exception number : 1
exception class : EAccessViolation
exception message : Access violation at address 007E7AEF in module
'UmmyVideoDownloader.exe'. Read of address 00000000.

main thread ($d84):


007e7aef +033 UmmyVideoDownloader.exe MVDYuotubePLUnit 692 +9
TMVDYuotubePLForm.SetProcessing
007e7c7f +02b UmmyVideoDownloader.exe MVDYuotubePLUnit 728 +1
TMVDYuotubePLForm.UpdateList
007e7364 +2c0 UmmyVideoDownloader.exe MVDYuotubePLUnit 627 +44
TMVDYuotubePLForm.ProcUrl$7753$ActRec.$0$Body
00710a84 +008 UmmyVideoDownloader.exe MVDHTTP 276 +0
GetStrByURLAsync$7421$ActRec.$1$Body
0069a36c +008 UmmyVideoDownloader.exe MBParallel 43 +0
TThreadProc.Execute$7331$ActRec.$0$Body
00539925 +13d UmmyVideoDownloader.exe System.Classes
CheckSynchronize
00671b8e +76e UmmyVideoDownloader.exe Vcl.Forms
TApplication.WndProc
0053d214 +014 UmmyVideoDownloader.exe System.Classes StdWndProc
76c28e97 +00a USER32.dll
DispatchMessageW
006724a3 +0f3 UmmyVideoDownloader.exe Vcl.Forms
TApplication.ProcessMessage
006724ce +00a UmmyVideoDownloader.exe Vcl.Forms
TApplication.ProcessMessages
006b65bf +02b UmmyVideoDownloader.exe OverbyteIcsWndControl 700 +15
TIcsWndControl.MessagePump
0070b0df +077 UmmyVideoDownloader.exe OverbyteIcsHttpProt 3550 +11
THttpCli.DoRequestSync
0070db3c +00c UmmyVideoDownloader.exe OverbyteIcsHttpProt 4667 +1 THttpCli.Post
0070f875 +125 UmmyVideoDownloader.exe MVDHTTP 105 +12 HttpSend
0070fbb0 +084 UmmyVideoDownloader.exe MVDHTTP 128 +10 SendStat
00734c6d +129 UmmyVideoDownloader.exe MVDGoogleAnalytics 75 +15 SendEvent
007f653f +053 UmmyVideoDownloader.exe MainUnit 1402 +3
TMVDMainForm.FormDestroy
00408c69 +009 UmmyVideoDownloader.exe System 2965 +0
@BeforeDestruction
00667a5e +006 UmmyVideoDownloader.exe Vcl.Forms
TCustomForm.Destroy
00408588 +008 UmmyVideoDownloader.exe System 2965 +0 TObject.Free
0053b01f +05b UmmyVideoDownloader.exe System.Classes
TComponent.DestroyComponents
00665ad5 +035 UmmyVideoDownloader.exe Vcl.Forms
DoneApplication
0044f70d +021 UmmyVideoDownloader.exe System.SysUtils DoExitProc
0040a0c1 +065 UmmyVideoDownloader.exe System 2965 +0 @Halt0
00806084 +200 UmmyVideoDownloader.exe UmmyVideoDownloader 140 +57 initialization
756d1172 +010 kernel32.dll
BaseThreadInitThunk

thread $6dc:
77135e4a +0a ntdll.dll NtWaitForMultipleObjects
756d1172 +10 kernel32.dll BaseThreadInitThunk
thread $e18:
77135e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
756d1172 +10 kernel32.dll BaseThreadInitThunk

thread $d34:
77135e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
756d1172 +10 kernel32.dll BaseThreadInitThunk

thread $df4:
77135e6a +0a ntdll.dll NtWaitForSingleObject
75321796 +66 KERNELBASE.dll WaitForSingleObjectEx
756ceffe +3e kernel32.dll WaitForSingleObjectEx
004a7205 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a726a +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
756d1172 +10 kernel32.dll BaseThreadInitThunk
>> created by thread $d34 at:
7382325b +00 rasman.dll

thread $2a8:
77135e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
756d1172 +10 kernel32.dll BaseThreadInitThunk

thread $7e0 (TWorkerThread):


77135e6a +0a ntdll.dll NtWaitForSingleObject
75321796 +66 KERNELBASE.dll WaitForSingleObjectEx
756ceffe +3e kernel32.dll WaitForSingleObjectEx
756cefad +0d kernel32.dll WaitForSingleObject
007ac9fa +26 UmmyVideoDownloader.exe VirtualTrees 6375 +4 TWorkerThread.Execute
004a731f +2b UmmyVideoDownloader.exe madExcept HookedTThreadExecute
00539a75 +49 UmmyVideoDownloader.exe System.Classes ThreadProc
0040a218 +28 UmmyVideoDownloader.exe System 2965 +0 ThreadWrapper
004a7205 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a726a +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
756d1172 +10 kernel32.dll BaseThreadInitThunk
>> created by main thread ($d84) at:
007ac8de +16 UmmyVideoDownloader.exe VirtualTrees 6316 +1 TWorkerThread.Create

thread $8c0: <priority:1>


771357ea +0a ntdll.dll NtRemoveIoCompletion
004a7205 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a726a +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
756d1172 +10 kernel32.dll BaseThreadInitThunk
>> created by main thread ($d84) at:
74c8c3df +00 mswsock.dll

thread $d10:
77135e6a +0a ntdll.dll NtWaitForSingleObject
75321796 +66 KERNELBASE.dll WaitForSingleObjectEx
756ceffe +3e kernel32.dll WaitForSingleObjectEx
756cefad +0d kernel32.dll WaitForSingleObject
004a7205 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a726a +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
756d1172 +10 kernel32.dll BaseThreadInitThunk
>> created by thread $4b8 at:
767e4d5c +00 WS2_32.dll

thread $36c (TThreadProc):


77135e6a +00a ntdll.dll NtWaitForSingleObject
75321796 +066 KERNELBASE.dll WaitForSingleObjectEx
756ceffe +03e kernel32.dll WaitForSingleObjectEx
756cefad +00d kernel32.dll WaitForSingleObject
00457bae +002 UmmyVideoDownloader.exe System.SysUtils WaitForSyncWaitObj
00457cf7 +01f UmmyVideoDownloader.exe System.SysUtils WaitOrSignalObj
00409419 +065 UmmyVideoDownloader.exe System 2965 +0 TMonitor.Wait
00409488 +020 UmmyVideoDownloader.exe System 2965 +0 TMonitor.Wait
0053a53b +13b UmmyVideoDownloader.exe System.Classes TThread.Synchronize
0053a61e +042 UmmyVideoDownloader.exe System.Classes TThread.Synchronize
0069a3c5 +055 UmmyVideoDownloader.exe MBParallel 41 +4 TThreadProc.Execute
004a731f +02b UmmyVideoDownloader.exe madExcept HookedTThreadExecute
00539a75 +049 UmmyVideoDownloader.exe System.Classes ThreadProc
0040a218 +028 UmmyVideoDownloader.exe System 2965 +0 ThreadWrapper
004a7205 +00d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a726a +032 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
756d1172 +010 kernel32.dll BaseThreadInitThunk
>> created by main thread ($d84) at:
0069a184 +034 UmmyVideoDownloader.exe MBParallel 27 +1 AsyncCall

thread $290:
77135e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
756d1172 +10 kernel32.dll BaseThreadInitThunk

thread $4f0:
77135e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
756d1172 +10 kernel32.dll BaseThreadInitThunk

cpu registers:
eax = 00000000
ebx = 00000000
ecx = 00000000
edx = 00000000
esi = 042ad870
edi = ffffffff
eip = 007e7aef
esp = 0012f9b0
ebp = 0012fa64

stack dump:
0012f9b0 98 d1 e7 01 40 0d e7 01 - 84 7c 7e 00 6c fa 12 00 ....@....|~.l...
0012f9c0 cc 98 40 00 64 fa 12 00 - 98 d1 e7 01 40 0d e7 01 ..@.d.......@...
0012f9d0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012f9e0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012f9f0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fa00 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fa10 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fa20 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fa30 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fa40 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fa50 00 00 00 00 00 00 00 00 - 00 00 00 00 18 e3 e7 01 ................
0012fa60 70 d8 2a 04 2c fb 12 00 - 69 73 7e 00 3c fb 12 00 p.*.,...is~.<...
0012fa70 cc 98 40 00 2c fb 12 00 - 88 fc 12 00 80 32 eb 01 ..@.,........2..
0012fa80 40 0d e7 01 00 00 00 00 - 00 00 00 00 00 00 00 00 @...............
0012fa90 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012faa0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fab0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fac0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fad0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0012fae0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
disassembling:
[...]
007e7ad6 689 mov edx, ebx
007e7ad8 mov eax, [esi+$3b4]
007e7ade call -$1fa88f ($5ed254) ; Vcl.ExtCtrls.TTimer.SetEnabled
007e7ae3 690 mov [esi+$3e8], bl
007e7ae9 692 mov eax, [esi+$3b8]
007e7aef > mov edx, [eax]
007e7af1 call dword ptr [edx+$a4]
007e7af7 693 pop esi
007e7af8 pop ebx
007e7af9 ret

date/time : 2016-11-04, 08:17:38, 981ms


computer name : PERSONAL
user name : pc
registered owner : pc / PERSONAL
operating system : Windows 7 build 7600
system language : Spanish
system up time : 32 minutes 23 seconds
program up time : 20 minutes 51 seconds
processors : 2x Intel(R) Celeron(R) CPU 847 @ 1.10GHz
physical memory : 705/1872 MB (free/total)
free disk space : (C:) 256,35 GB
display mode : 1024x600, 32 bit
process id : $7e0
allocated memory : 46,26 MB
largest free block : 1,30 GB
executable : UmmyVideoDownloader.exe
exec. date/time : 2016-11-04 08:14
version : 1.7.2.2
compiled with : Delphi XE6
madExcept version : 4.0.12
callstack crc : $5f315f31, $99947c53, $cb620bb3
exception number : 1
exception class : EAccessViolation
exception message : Access violation at address 5F315F31 in module
'UmmyVideoDownloader.exe'. Read of address 5F315F31.

thread $f10 (TThreadProc):


5f315f31 +000 ???
11060b3d +04d LIBEAY32.DLL BIO_ctrl
11060c1b +00b LIBEAY32.DLL
BIO_ctrl_pending
006d445b +043 UmmyVideoDownloader.exe OverbyteIcsWSocket 15497 +6
TCustomSslWSocket.my_BIO_ctrl_pending
006db88a +2a6 UmmyVideoDownloader.exe OverbyteIcsWSocket 18213 +56
TCustomSslWSocket.TriggerEvents
006d7b79 +171 UmmyVideoDownloader.exe OverbyteIcsWSocket 16700 +46
TCustomSslWSocket.InternalShutdown
006d7647 +0bf UmmyVideoDownloader.exe OverbyteIcsWSocket 16569 +15
TCustomSslWSocket.Shutdown
006d99d4 +0e8 UmmyVideoDownloader.exe OverbyteIcsWSocket 17369 +23
TCustomSslWSocket.InternalClose
006c5fa4 +00c UmmyVideoDownloader.exe OverbyteIcsWSocket 9381 +1
TCustomWSocket.Close
006d752e +0ca UmmyVideoDownloader.exe OverbyteIcsWSocket 16548 +15
TCustomSslWSocket.Close
006ec405 +1ad UmmyVideoDownloader.exe OverbyteIcsHttpProt 3576 +37
THttpCli.DoRequestSync
006eecf0 +00c UmmyVideoDownloader.exe OverbyteIcsHttpProt 4640 +1 THttpCli.Get
0073bbd0 +084 UmmyVideoDownloader.exe UVDDownloader 307 +11
TDownloader.start$350$ActRec.$0$Body
0067afd0 +040 UmmyVideoDownloader.exe MBParallel 39 +2
TThreadProc.Execute
0040a218 +028 UmmyVideoDownloader.exe System 1938 +0 ThreadWrapper
004a7221 +00d UmmyVideoDownloader.exe madExcept
CallThreadProcSafe
004a7286 +032 UmmyVideoDownloader.exe madExcept
ThreadExceptFrame
775c1172 +010 kernel32.dll
BaseThreadInitThunk
>> created by main thread ($b98) at:
0067ada4 +034 UmmyVideoDownloader.exe MBParallel 27 +1 AsyncCall

main thread ($b98):


75f893f1 +00a USER32.dll WaitMessage
00673305 +149 UmmyVideoDownloader.exe Vcl.Forms TApplication.Idle
0067252b +017 UmmyVideoDownloader.exe Vcl.Forms
TApplication.HandleMessage
00672851 +0c9 UmmyVideoDownloader.exe Vcl.Forms TApplication.Run
00805170 +1f8 UmmyVideoDownloader.exe UmmyVideoDownloader 125 +49 initialization
775c1172 +010 kernel32.dll
BaseThreadInitThunk

thread $e5c:
77715e4a +0a ntdll.dll NtWaitForMultipleObjects
775c1172 +10 kernel32.dll BaseThreadInitThunk

thread $ed0:
77715e6a +0a ntdll.dll NtWaitForSingleObject
759c1796 +66 KERNELBASE.dll WaitForSingleObjectEx
775beffe +3e kernel32.dll WaitForSingleObjectEx
004a7221 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a7286 +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
775c1172 +10 kernel32.dll BaseThreadInitThunk
>> created by thread $918 at:
73d5325b +00 rasman.dll

thread $e34 (TWorkerThread):


77715e6a +0a ntdll.dll NtWaitForSingleObject
759c1796 +66 KERNELBASE.dll WaitForSingleObjectEx
775beffe +3e kernel32.dll WaitForSingleObjectEx
775befad +0d kernel32.dll WaitForSingleObject
007ab95a +26 UmmyVideoDownloader.exe VirtualTrees 6375 +4 TWorkerThread.Execute
004a733b +2b UmmyVideoDownloader.exe madExcept HookedTThreadExecute
00539aad +49 UmmyVideoDownloader.exe System.Classes ThreadProc
0040a218 +28 UmmyVideoDownloader.exe System 1938 +0 ThreadWrapper
004a7221 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a7286 +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
775c1172 +10 kernel32.dll BaseThreadInitThunk
>> created by main thread ($b98) at:
007ab83e +16 UmmyVideoDownloader.exe VirtualTrees 6316 +1 TWorkerThread.Create

thread $3cc: <priority:1>


777157ea +0a ntdll.dll NtRemoveIoCompletion
004a7221 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a7286 +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
775c1172 +10 kernel32.dll BaseThreadInitThunk
>> created by main thread ($b98) at:
7526c3df +00 mswsock.dll

thread $870:
77715e6a +0a ntdll.dll NtWaitForSingleObject
759c1796 +66 KERNELBASE.dll WaitForSingleObjectEx
775beffe +3e kernel32.dll WaitForSingleObjectEx
775befad +0d kernel32.dll WaitForSingleObject
004a7221 +0d UmmyVideoDownloader.exe madExcept CallThreadProcSafe
004a7286 +32 UmmyVideoDownloader.exe madExcept ThreadExceptFrame
775c1172 +10 kernel32.dll BaseThreadInitThunk
>> created by thread $e3c at:
76424d5c +00 WS2_32.dll

thread $d8:
77715e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
775c1172 +10 kernel32.dll BaseThreadInitThunk

thread $3d8:
77715e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
775c1172 +10 kernel32.dll BaseThreadInitThunk

thread $f48:
77715e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
775c1172 +10 kernel32.dll BaseThreadInitThunk

thread $ea0:
77715e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
775c1172 +10 kernel32.dll BaseThreadInitThunk

thread $294:
77715e7a +0a ntdll.dll NtWaitForWorkViaWorkerFactory
775c1172 +10 kernel32.dll BaseThreadInitThunk

cpu registers:
eax = 5f315f31
ebx = 00000000
ecx = 1205004a
edx = 0000000a
esi = 0403f6c8
edi = 00000000
eip = 5f315f31
esp = 0625fcc8
ebp = 00000000

stack dump:
0625fcc8 3f 0b 06 11 c8 f6 03 04 - 0a 00 00 00 00 00 00 00 ?...............
0625fcd8 00 00 00 00 c8 f6 03 04 - 50 fd 25 06 80 c1 2e 02 ........P.%.....
0625fce8 80 c1 2e 02 20 0c 06 11 - c8 f6 03 04 0a 00 00 00 .... ...........
0625fcf8 00 00 00 00 00 00 00 00 - 5d 44 6d 00 c8 f6 03 04 ........]Dm.....
0625fd08 58 fd 25 06 cc 98 40 00 - 50 fd 25 06 00 00 00 00 X.%...@.P.%.....
0625fd18 03 00 00 00 80 c1 2e 02 - 00 00 00 00 00 00 00 00 ................
0625fd28 ff 60 6d 00 07 61 6d 00 - 00 00 00 00 03 00 00 00 .`m..am.........
0625fd38 80 c1 2e 02 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0625fd48 00 00 00 00 00 00 00 00 - 9c fd 25 06 8f b8 6d 00 ..........%...m.
0625fd58 a4 fd 25 06 cc 98 40 00 - 9c fd 25 06 00 00 00 00 ..%...@...%.....
0625fd68 01 00 00 00 80 c1 2e 02 - 00 00 00 00 00 00 00 00 ................
0625fd78 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0625fd88 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0625fd98 00 00 00 00 c8 fd 25 06 - 7e 7b 6d 00 d0 fd 25 06 ......%.~{m...%.
0625fda8 cc 98 40 00 c8 fd 25 06 - 01 00 00 00 80 c1 2e 02 ..@...%.........
0625fdb8 00 00 00 00 00 00 00 00 - 00 00 00 00 01 00 00 00 ................
0625fdc8 f8 fd 25 06 4c 76 6d 00 - 00 fe 25 06 cc 98 40 00 ..%.Lvm...%...@.
0625fdd8 f8 fd 25 06 00 00 00 00 - 80 c1 2e 02 01 00 00 00 ..%.............
0625fde8 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0625fdf8 28 fe 25 06 da 99 6d 00 - 3c fe 25 06 cc 98 40 00 (.%...m.<.%...@.

disassembling:
[...]
006d444b mov [ebp-4], eax
006d444e 15495 jmp loc_6d44e1
006d4453 15497 push edi
006d4454 mov eax, [$8228c0]
006d4459 mov eax, [eax]
006d445b > call eax
006d445d pop ecx
006d445e mov [ebp-4], eax
006d4461 15499 mov dl, 8
006d4463 mov eax, esi
006d4465 mov ecx, [eax]
[...]

You might also like