Você está na página 1de 37

date/time

computer name
user name
registered owner
operating system
system language
system up time
program up time
processors
physical memory
free disk space
display mode
process id
allocated memory
largest free block
executable
exec. date/time
version
compiled with
madExcept version
callstack crc
exception number
exception class
exception message

:
:
:
:
:
:
:
:
:
:
:
:
:
:
:
:
:
:
:
:
:
:
:
:

2016-07-08, 10:36:03, 74ms


LEANDRO
Leandro S
Leandro S
Windows 8.1 Tablet PC x64 build 9600
Portuguese
1 day 2 hours
2 hours 7 minutes
3x AMD Athlon(tm) II X3 455 Processor
1741/3838 MB (free/total)
(C:) 56,79 GB
1920x1080, 32 bit
$16ec
135,07 MB
1,29 GB
Habil_Cliente.exe
2016-07-06 08:56
7.4.1.20
Delphi XE6
4.0.14
$cc9c7323, $a61e83f6, $f541981c
8
EComponentError
A component named frmMessageBox already exists.

main thread ($564):


00553eb5 +0fd Habil_Cliente.exe
name
0055465a +05a Habil_Cliente.exe
005da4dd +06d Habil_Cliente.exe
00546c92 +102 Habil_Cliente.exe
nent
00540c4e +032 Habil_Cliente.exe
005365ab +057 Habil_Cliente.exe
Res
00537eff +05f Habil_Cliente.exe
00537f8d +061 Habil_Cliente.exe
t
006ed5b6 +0c6 Habil_Cliente.exe
02b6d41e +02a Habil_Cliente.exe
01a022e9 +089 Habil_Cliente.exe
ionCancelaExecute
00555113 +00f Habil_Cliente.exe
005bb6e2 +086 Habil_Cliente.exe
00554f97 +013 Habil_Cliente.exe
ute
005dc51c +058 Habil_Cliente.exe
005ffc22 +01e Habil_Cliente.exe
00d458d8 +0a0 Habil_Cliente.exe
00d46ab6 +0f6 Habil_Cliente.exe
Up
005dc96c +038 Habil_Cliente.exe
005dc9e8 +070 Habil_Cliente.exe
77c0d78f +02b ntdll.dll
her
005dbfdd +2bd Habil_Cliente.exe
005e0af5 +5c9 Habil_Cliente.exe
005ff8cc +06c Habil_Cliente.exe
c
00d46242 +086 Habil_Cliente.exe

System.Classes

TComponent.ValidateRe

System.Classes
Vcl.Controls
System.Classes

TComponent.SetName
TControl.SetName
TReader.ReadRootCompo

System.Classes
System.Classes

TStream.ReadComponent
InternalReadComponent

System.Classes
System.Classes

InitComponent
InitInheritedComponen

Vcl.Forms
TCustomForm.Create
untFuncoesCliente 1553 +6 Mensagem
untBaseCadastros 214 +6 TfrmBaseCadastros.Act
System.Classes
Vcl.ActnList
System.Classes

TBasicAction.Execute
TCustomAction.Execute
TBasicActionLink.Exec

Vcl.Controls
Vcl.StdCtrls
cxButtons
cxButtons

TControl.Click
TCustomButton.Click
1655 +8 TcxCustomButton.Click
2141 +10 TcxCustomButton.Mouse

Vcl.Controls
Vcl.Controls

TControl.DoMouseUp
TControl.WMLButtonUp
KiUserCallbackDispatc

Vcl.Controls
Vcl.Controls
Vcl.StdCtrls

TControl.WndProc
TWinControl.WndProc
TButtonControl.WndPro

cxButtons

1926 +8 TcxCustomButton.WndPr

oc
005e013c
oc
00555e08
76c993cc
006f837f
essage
006f83c2
ssage
006f86f5
02c8b5f7
7563a532

+02c Habil_Cliente.exe Vcl.Controls

TWinControl.MainWndPr

+014 Habil_Cliente.exe System.Classes


+00b user32.dll
+0f3 Habil_Cliente.exe Vcl.Forms

StdWndProc
DispatchMessageW
TApplication.ProcessM

+00a Habil_Cliente.exe Vcl.Forms

TApplication.HandleMe

+0c9 Habil_Cliente.exe Vcl.Forms


+227 Habil_Cliente.exe Habil_Cliente
+00c KERNEL32.DLL

TApplication.Run
360 +40 initialization
BaseThreadInitThunk

thread $b70: <priority:2>


76c98940 +46 user32.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
7563a532 +0c KERNEL32.DLL
>> created by main thread ($564) at:
71b2546b +00 winmm.dll

GetMessageA
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $b8c:
7576117a +b1 KERNELBASE.dll
757610bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
7563a532 +0c KERNEL32.DLL
>> created by main thread ($564) at:
778b51e4 +00 WS2_32.dll

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $1198:
7576117a +b1 KERNELBASE.dll
757610bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
7563a532 +0c KERNEL32.DLL
>> created by main thread ($564) at:
6f19f83b +00 winspool.drv

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $17cc:
7576117a +b1 KERNELBASE.dll
757610bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
7563a532 +0c KERNEL32.DLL
>> created by main thread ($564) at:
6a8533a6 +00 Flash.ocx

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $12b4:
7576117a +b1 KERNELBASE.dll
757610bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
7563a532 +0c KERNEL32.DLL
>> created by main thread ($564) at:
6a8533a6 +00 Flash.ocx

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $a64:
7576117a +b1 KERNELBASE.dll
757610bb +0d KERNELBASE.dll

WaitForSingleObjectEx
WaitForSingleObject

004b4015 +0d Habil_Cliente.exe madExcept CallThreadProcSafe


004b407a +32 Habil_Cliente.exe madExcept ThreadExceptFrame
7563a532 +0c KERNEL32.DLL
BaseThreadInitThunk
>> created by main thread ($564) at:
6a8533a6 +00 Flash.ocx
thread $c04 (TSignalThread):
7576124c +4d KERNELBASE.dll
SleepEx
757611f1 +0a KERNELBASE.dll
Sleep
005530cd +01 Habil_Cliente.exe System.Classes
TThread.Sleep
02b91292 +66 Habil_Cliente.exe Messenger
139 +6 TSignalThread.Execute
004b412f +2b Habil_Cliente.exe madExcept
HookedTThreadExecute
005521ed +49 Habil_Cliente.exe System.Classes
ThreadProc
0040b600 +28 Habil_Cliente.exe System
133 +0 ThreadWrapper
004b4015 +0d Habil_Cliente.exe madExcept
CallThreadProcSafe
004b407a +32 Habil_Cliente.exe madExcept
ThreadExceptFrame
7563a532 +0c KERNEL32.DLL
BaseThreadInitThunk
>> created by main thread ($564) at:
02b911f2 +22 Habil_Cliente.exe Messenger
127 +1 TSignalThread.Create
thread $11d0 (TTimerThread):
7576124c +4d KERNELBASE.dll
SleepEx
757611f1 +0a KERNELBASE.dll
Sleep
005530cd +01 Habil_Cliente.exe System.Classes
TThread.Sleep
02b91342 +2a Habil_Cliente.exe Messenger
155 +3 TTimerThread.Execute
004b412f +2b Habil_Cliente.exe madExcept
HookedTThreadExecute
005521ed +49 Habil_Cliente.exe System.Classes
ThreadProc
0040b600 +28 Habil_Cliente.exe System
133 +0 ThreadWrapper
004b4015 +0d Habil_Cliente.exe madExcept
CallThreadProcSafe
004b407a +32 Habil_Cliente.exe madExcept
ThreadExceptFrame
7563a532 +0c KERNEL32.DLL
BaseThreadInitThunk
>> created by main thread ($564) at:
02b912de +22 Habil_Cliente.exe Messenger
146 +1 TTimerThread.Create
thread $98c (TDSClientCallbackChannelManager.TDSChannelThread):
77897524 +17b WS2_32.dll
00c133c2 +04a Habil_Cliente.exe IdStackWindows
tListWindows.FDSelect
00c13360 +020 Habil_Cliente.exe IdStackWindows
tListWindows.SelectRead
00c23bb6 +006 Habil_Cliente.exe IdSocketHandle
tHandle.Select
00c23984 +044 Habil_Cliente.exe IdSocketHandle
eadable
00c23a1c +06c Habil_Cliente.exe IdSocketHandle
tHandle.Readable
00c26b86 +006 Habil_Cliente.exe IdIOHandlerStack
dlerStack.Readable
00c20589 +081 Habil_Cliente.exe IdIOHandler
dler.ReadFromSource
00c20a5d +01d Habil_Cliente.exe IdIOHandler
dler.ReadBytes
00c1fce1 +025 Habil_Cliente.exe IdIOHandler
dler.ReadByte
011550ff +003 Habil_Cliente.exe IPPeerCommon
dlerPeerIP.ReadByte
009d82ec +044 Habil_Cliente.exe Data.DbxSocketChannelNative
PLayer.ReadData
009d8264 +224 Habil_Cliente.exe Data.DbxSocketChannelNative
PLayer.Read

select
TIdSocke
TIdSocke
TIdSocke
CheckIsR
TIdSocke
TIdIOHan
TIdIOHan
TIdIOHan
TIdIOHan
TIdIOHan
TDBXIdTC
TDBXIdTC

009d7981 +00d Habil_Cliente.exe Data.DbxSocketChannelNative


TDBXSock
etChannel.Read
009d9246 +02e Habil_Cliente.exe Data.DBXTransportFilter
TDBXFilt
erSocketChannel.FillBuffer
009d952a +2ba Habil_Cliente.exe Data.DBXTransportFilter
TDBXFilt
erSocketChannel.Read
009af5b3 +017 Habil_Cliente.exe Data.DBXStream
TDBXJSon
StreamReader.FillBuffer
009ac596 +036 Habil_Cliente.exe Data.DBXStream
TDBXJSon
StreamReader.Next
009ad330 +008 Habil_Cliente.exe Data.DBXStream
TDBXJSon
StreamReader.Next
009b9df4 +058 Habil_Cliente.exe Data.DBXMessageHandlerJSonClient
TDBXJSon
ClientInputConnectionHandler.DbxExecute
009b8483 +003 Habil_Cliente.exe Data.DBXMessageHandlerCommon
TDBXExec
uteMessage.HandleMessage
009baa37 +16b Habil_Cliente.exe Data.DBXMessageHandlerJSonClient
TDBXJSon
ClientOutputConnectionHandler.DbxExecute
009dbf98 +080 Habil_Cliente.exe Data.DBXClient
TDBXClie
ntCommand.Execute
009dbd4c +000 Habil_Cliente.exe Data.DBXClient
TDBXClie
ntCommand.DerivedExecuteUpdate
00904044 +044 Habil_Cliente.exe Data.DBXCommon
TDBXComm
and.ExecuteUpdate
0090451b +00f Habil_Cliente.exe Data.DBXCommon
TDBXMorp
hicCommand.ExecuteUpdate
009f659e +122 Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.ExecuteRemote
009f74d0 +088 Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.RegisterCallback$112$ActRec.$0$Body
009f9bed +01d Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.TDSChannelThread.Execute
004b412f +02b Habil_Cliente.exe madExcept
HookedTT
hreadExecute
005521ed +049 Habil_Cliente.exe System.Classes
ThreadPr
oc
0040b600 +028 Habil_Cliente.exe System
133 +0 ThreadWr
apper
004b4015 +00d Habil_Cliente.exe madExcept
CallThre
adProcSafe
004b407a +032 Habil_Cliente.exe madExcept
ThreadEx
ceptFrame
7563a532 +00c KERNEL32.DLL
BaseThre
adInitThunk
>> created by main thread ($564) at:
009f9b8f +04f Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.TDSChannelThread.Create
modules:
00240000
Koinonia
00270000
Koinonia
00400000
Koinonia
04ec0000
Koinonia
050f0000
Koinonia
06cc0000

libxslt.dll
Software\Habil Empresarial
libxmlsec.dll
Software\Habil Empresarial
Habil_Cliente.exe
7.4.1.20
Software\Habil Empresarial
libxml2.dll
Software\Habil Empresarial
iconv.dll
1.9.0.0
Software\Habil Empresarial
ssleay32.dll
0.9.8.14

C:\Program Files (x86)\


C:\Program Files (x86)\
C:\Program Files (x86)\
C:\Program Files (x86)\
C:\Program Files (x86)\
C:\Program Files (x86)\

Koinonia Software\Habil Empresarial


10000000 libeay32.dll
0.9.8.14
C:\Program Files (x86)\
Koinonia Software\Habil Empresarial
62e80000 zlib1.dll
1.2.8.0
C:\Program Files (x86)\
Koinonia Software\Habil Empresarial
697a0000 ieframe.dll
11.0.9600.16384
C:\Windows\SYSTEM32
6a250000 mscms.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6a2d0000 UIAutomationCore.DLL
7.2.9600.16384
C:\Windows\SYSTEM32
6a3c0000 DINPUT8.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6a400000 DSOUND.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6a480000 Flash.ocx
11.8.800.133
C:\Windows\SYSTEM32\Mac
romed\Flash
6cdd0000 Msftedit.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
6d0c0000 globinputhost.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d0e0000 Bcp47Langs.dll
6.3.9600.16384
C:\Windows\System32
6d130000 Windows.Globalization.dll 6.3.9600.16384
C:\Windows\System32
6d2b0000 HHCtrl.OCX
6.3.9600.16384
C:\Windows\SYSTEM32
6d340000 msxml6.dll
6.30.9600.16384
C:\Windows\SYSTEM32
6d4f0000 msls31.dll
3.10.349.0
C:\Windows\SYSTEM32
6d530000 RICHED20.DLL
5.31.23.1230
C:\Windows\SYSTEM32
6d630000 IdnDL.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d640000 WindowsCodecs.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d790000 olepro32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d7b0000 security.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d7c0000 uxtheme.dll
6.3.9600.16384
C:\Windows\system32
6d8a0000 FaultRep.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d900000 propsys.dll
7.0.9600.16384
C:\Windows\system32
6da30000 msimg32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6da40000 dwmapi.dll
6.3.9600.16384
C:\Windows\system32
6da60000 usp10.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6da80000 FONTSUB.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6daa0000 comctl32.dll
6.10.9600.16384
C:\Windows\WinSxS\x86_m
icrosoft.windows.common-controls_6595b64144ccf1df_6.0.9600.16384_none_a9f4965301
334e09
6dc90000 oleacc.dll
7.2.9600.16384
C:\Windows\SYSTEM32
6dce0000 tiptsf.dll
6.3.9600.16384
C:\Program Files (x86)\
Common Files\microsoft shared\ink
6f0d0000 cscapi.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6f180000 winspool.drv
6.3.9600.16384
C:\Windows\SYSTEM32
6f340000 fwpuclnt.dll
6.3.9600.16384
C:\Windows\System32
6f6c0000 rasadhlp.dll
6.3.9600.16384
C:\Windows\System32
6f740000 urlmon.dll
11.0.9600.16384
C:\Windows\SYSTEM32
6fc80000 ntmarta.dll
6.3.9600.16384
C:\Windows\SYSTEM32
70570000 DEVOBJ.dll
6.3.9600.16384
C:\Windows\SYSTEM32
70590000 WINMMBASE.dll
6.3.9600.16384
C:\Windows\SYSTEM32
71b20000 winmm.dll
6.3.9600.16384
C:\Windows\SYSTEM32
72c40000 SHFolder.dll
6.3.9600.16384
C:\Windows\SYSTEM32
72d40000 winrnr.dll
6.3.9600.16384
C:\Windows\System32
72d50000 NLAapi.dll
6.3.9600.16384
C:\Windows\system32
72d70000 pnrpnsp.dll
6.3.9600.16384
C:\Windows\system32
72d90000 napinsp.dll
6.3.9600.16384
C:\Windows\system32
73060000 WINSTA.dll
6.3.9600.16384
C:\Windows\SYSTEM32
73970000 POWRPROF.dll
6.3.9600.16384
C:\Windows\SYSTEM32
73b40000 mswsock.dll
6.3.9600.16384
C:\Windows\System32
73b90000 kernel.appcore.dll
6.3.9600.16384
C:\Windows\SYSTEM32
73ba0000 ondemandconnroutehelper.dll 6.3.9600.16384
C:\Windows\SYSTEM32
73c30000 SECUR32.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
73df0000 DPAPI.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
73e00000 wkscli.dll
6.3.9600.16384
C:\Windows\SYSTEM32
73f30000 USERENV.dll
6.3.9600.16384
C:\Windows\SYSTEM32

74690000 bcrypt.dll
6.3.9600.16384
C:\Windows\SYSTEM32
746b0000 rsaenh.dll
6.3.9600.16384
C:\Windows\system32
746e0000 CRYPTSP.dll
6.3.9600.16384
C:\Windows\SYSTEM32
748b0000 wtsapi32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74a60000 profapi.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74a70000 SHCORE.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
74b20000 WINNSI.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
74b30000 iertutil.dll
11.0.9600.16384
C:\Windows\SYSTEM32
74df0000 iphlpapi.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74e10000 DNSAPI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74e90000 winhttp.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74f30000 wininet.dll
11.0.9600.16384
C:\Windows\SYSTEM32
75100000 version.dll
6.3.9600.16384
C:\Windows\SYSTEM32
751f0000 wsock32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75590000 bcryptPrimitives.dll
6.3.9600.16384
C:\Windows\SYSTEM32
755f0000 CRYPTBASE.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75600000 SspiCli.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75620000 KERNEL32.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
75760000 KERNELBASE.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75830000 shell32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
769e0000 MSASN1.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76a40000 crypt32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76bc0000 SHLWAPI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76c10000 IMM32.DLL
6.3.9600.16384
C:\Windows\system32
76c40000 NSI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76c50000 WINTRUST.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76c90000 user32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76de0000 oleaut32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76e70000 gdiplus.dll
6.3.9600.16384
C:\Windows\WinSxS\x86_m
icrosoft.windows.gdiplus_6595b64144ccf1df_1.1.9600.16384_none_dadf89385bc5c7d7
76fc0000 RPCRT4.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77090000 sechost.dll
6.3.9600.16384
C:\Windows\SYSTEM32
770d0000 advapi32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
771e0000 comdlg32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77290000 psapi.dll
6.3.9600.16384
C:\Windows\SYSTEM32
772a0000 clbcatq.dll
2001.12.10530.16384 C:\Windows\SYSTEM32
77320000 combase.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77470000 gdi32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77580000 SETUPAPI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77730000 MSCTF.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77890000 WS2_32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
778e0000 cfgmgr32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77920000 ole32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77a30000 Normaliz.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77a40000 msvcrt.dll
7.0.9600.16384
C:\Windows\SYSTEM32
77bd0000 ntdll.dll
6.3.9600.16384
C:\Windows\SYSTEM32
7c340000 MSVCR71.dll
7.10.3052.4
C:\Program Files (x86)\
Koinonia Software\Habil Empresarial
processes:
0000 Idle
0004 System
0150 smss.exe
01b0 csrss.exe
020c wininit.exe
0240 services.exe
0248 lsass.exe
02bc svchost.exe
02e0 svchost.exe
0364 svchost.exe

0
0
0
0
0
0
0
0
0
0

0
0
0
0
0
0
0
0
0
0

0
0
0
0
0
0
0
0
0
0

039c svchost.exe
03c4 svchost.exe
0110 svchost.exe
0294 SbieSvc.exe
0470 svchost.exe
04c0 AvastSvc.exe
0544 spoolsv.exe
0568 svchost.exe
0578 svchost.exe
0628 SkypeC2CAutoUpdateSvc.exe
0654 SkypeC2CPNRSvc.exe
0698 Everything.exe
06a4 dasHost.exe
06d8 fbguard.exe
07fc svchost.exe
0718 vmnat.exe
0774 vmware-converter-a.exe
0838 vmware-converter.exe
084c vmware-converter.exe
0890 vmware-authd.exe
08dc vmnetdhcp.exe
08fc vmware-usbarbitrator64.exe
09a8 fbserver.exe
0ad4 svchost.exe
0818 HPSupportSolutionsFrameworkService.exe
0df8 SearchIndexer.exe
164c csrss.exe
1148 winlogon.exe
16dc dwm.exe
0ca8 WmiPrvSE.exe
0cdc taskhostex.exe
0d18 explorer.exe
0fb0 TabTip.exe
0598 TabTip32.exe
1454 Everything.exe
16f0 HDesk_Cliente.exe
86)\Koinonia Software\Hbil Desk
044c OutlookMessenger.exe
86)\Outlook Messenger
142c Habil_Tray.exe
86)\Koinonia Software\Habil Empresarial
1598 Habil_Servidor_MSA.exe
86)\Koinonia Software\Habil Empresarial
17e8 SbieCtrl.exe
1314 Skype.exe
86)\Skype\Phone
0ea8 ACBrNFeMonitor.exe
0f74 pdf24.exe
86)\PDF24
0a8c jusched.exe
86)\Common Files\Java\Java Update
04b0 vmware-tray.exe
86)\VMware\VMware Workstation
11f4 AvastUI.exe
0b20 unsecapp.exe
172c LiveZilla.exe
86)\LiveZilla
05e4 Habil_ServidorRelatorios.exe
86)\Koinonia Software\Habil Empresarial
0b9c Habil_Emissor.exe

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
3
3
3
0
3
3
3
3
3
3

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
13
580
0
0
47
551

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
16
386
0
0
15
259

normal
normal
normal
normal C:\Program Files (x

3 904 384 normal C:\Program Files (x


3 243 118 normal C:\Program Files (x
3 189 114 normal C:\Program Files (x
3 119 57 normal
3 253 141 normal C:\Program Files (x
3 71 82 normal C:\ACBrNFeMonitor
3 29 15 normal C:\Program Files (x
3 12 6

normal C:\Program Files (x

3 25 13 normal C:\Program Files (x


3 0 0
3 0 0
3 165 126 normal C:\Program Files (x
3 127 65 normal C:\Program Files (x
3 161 89 normal C:\Program Files (x

86)\Koinonia Software\Habil Empresarial


1244 chrome.exe
86)\Google\Chrome\Application
0f28 chrome.exe
86)\Google\Chrome\Application
0af0 chrome.exe
86)\Google\Chrome\Application
0dcc chrome.exe
86)\Google\Chrome\Application
0eb0 chrome.exe
86)\Google\Chrome\Application
136c NOTEPAD.EXE
16ec Habil_Cliente.exe
86)\Koinonia Software\Habil Empresarial
0670 dllhost.exe
1370 Foxit Reader Updater.exe
ppData\Local\Temp
10e0 chrome.exe
86)\Google\Chrome\Application
03d8 chrome.exe
86)\Google\Chrome\Application
1610 RuntimeBroker.exe
16fc splwow64.exe
13cc audiodg.exe
1060 taskeng.exe
14a0 AvastEmUpdate.exe

3 72 48 normal C:\Program Files (x


3 4

normal C:\Program Files (x

3 14 6

normal C:\Program Files (x

3 0

normal C:\Program Files (x

3 0

normal C:\Program Files (x

3 23 22 normal C:\Windows\SysWOW64
3 784 604 normal C:\Program Files (x
3 155 183 normal
3 47 25 normal C:\Users\LEANDR~1\A
3 0

idle

C:\Program Files (x

3 0

idle

C:\Program Files (x

3
3
0
0
0

2
2
0
0
0

normal
normal

9
4
0
0
0

hardware:
+ {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}
- \\skywalker\HP LaserJet P1005
- \\TESTE\HP LaserJet 1020
- \\wagner-pc\HP LaserJet 1020
- Fax
- Fila de Impresso da Raiz
- Foxit Reader PDF Printer
- Microsoft XPS Document Writer
- PDF24 Fax
- PDF24 PDF
+ {36fc9e60-c465-11cf-8056-444553540000}
- Gertec PPC Control Device (driver 2.1.6.35)
- Standard Enhanced PCI to USB Host Controller
- Standard Enhanced PCI to USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- USB Composite Device
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
+ {4d36e966-e325-11ce-bfc1-08002be10318}
- PC com base em x64 ACPI
+ {4d36e967-e325-11ce-bfc1-08002be10318}
- ST3500418AS ATA Device
+ {4d36e968-e325-11ce-bfc1-08002be10318}

- ATI Radeon 3000 Graphics (Microsoft Corporation - WDDM v1.1) (driver 8.97.10
.6)
+ {4d36e96a-e325-11ce-bfc1-08002be10318}
- ATA Channel 0
- ATA Channel 0
- ATA Channel 1
- ATA Channel 1
- Controlador de canal duplo padro PCI IDE
- Controlador de canal duplo padro PCI IDE
+ {4d36e96b-e325-11ce-bfc1-08002be10318}
- Teclado Padro PS/2
+ {4d36e96c-e325-11ce-bfc1-08002be10318}
- Dispositivo de High Definition Audio
+ {4d36e96e-e325-11ce-bfc1-08002be10318}
- Monitor Genrico PnP
+ {4d36e96f-e325-11ce-bfc1-08002be10318}
- Mouse compatvel com HID
+ {4d36e972-e325-11ce-bfc1-08002be10318}
- Adaptador do Microsoft ISATAP #2
- Microsoft Kernel Debug Network Adapter
- Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30)
- TAP-Windows Adapter V9 (driver 9.0.0.9)
- Teredo Tunneling Pseudo-Interface
- VIA Velocity-Family Gigabit Ethernet Adapter
- VMware Virtual Ethernet Adapter for VMnet1 (driver 4.2.3.0)
- VMware Virtual Ethernet Adapter for VMnet8 (driver 4.2.3.0)
+ {4d36e978-e325-11ce-bfc1-08002be10318}
- Porta de comunicao (COM1)
+ {4d36e97b-e325-11ce-bfc1-08002be10318}
- Controlador de Espaos de Armazenamento da Microsoft
+ {4d36e97d-e325-11ce-bfc1-08002be10318}
- Alto-falante do sistema
- ATI I/O Communications Processor PCI Bus Controller
- ATI I/O Communications Processor SMBus Controller
- ATK0110 ACPI UTILITY (driver 1043.6.0.0)
- Barramento Redirecionador de Dispositivos de rea de Trabalho Remota
- Boto de recurso fixo ACPI
- Boto ligar/desligar ACPI
- CMOS do sistema/relgio em tempo real
- Controlador de acesso direto memria
- Controlador de High Definition Audio
- Controlador de interrupo programvel
- Driver de Renderizao Bsico da Microsoft
- Driver de Vdeo Bsico da Microsoft
- Enumerador de Adaptador de Rede Virtual NDIS
- Enumerador de Barramento de Composio
- Enumerador de Barramento de Raiz UMBus
- Enumerador de Dispositivos de Software Plug and Play
- Enumerador de Unidade Virtual Microsoft
- Gerenciador de Volumes
- Interface de Gerenciamento do Microsoft Windows para ACPI
- Microsoft ACPI-Compliant System
- Microsoft System Management BIOS Driver
- PCI bus
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge

- PCI standard ISA bridge


- PCI standard PCI-to-PCI bridge
- PCI standard PCI-to-PCI bridge
- PCI standard PCI-to-PCI bridge
- Placa de sistema
- Processador de dados numricos
- Recursos da placa-me
- Recursos da placa-me
- Recursos da placa-me
- Recursos da placa-me
- Recursos da placa-me
- Timer de eventos de alta preciso
- Timer do sistema
- VMware VMCI Host Device (driver 9.5.10.0)
{50127dc3-0f36-415e-a6cc-4cb3be910b65}
- AMD Athlon(tm) II X3 455 Processor
- AMD Athlon(tm) II X3 455 Processor
- AMD Athlon(tm) II X3 455 Processor
{533c5b84-ec70-11d2-9505-00c04f79deaf}
- Cpia de sombra de volume genrica
- Cpia de sombra de volume genrica
- Cpia de sombra de volume genrica
{62f9c741-b25a-46ce-b54c-9bccce08b6f2}
- Barramento do Adaptador de Transio IPv4 IPv6 da Microsoft
- Microsoft Device Association Root Enumerator
- PEDRO: Suporte:
- RAFAEL: Rafael Meyer:
- RECEPCAOPONTO
{745a17a0-74d3-11d0-b6fe-00a0c90f57da}
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo definido pelo fornecedor compatvel com HID
- Tela sensvel ao toque compatvel com HID
{c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
- Alto-falantes (Dispositivo de High Definition Audio)
- Microfone (Dispositivo de High Definition Audio)

cpu
eax
ebx
ecx
edx
esi
edi
eip
esp
ebp

registers:
= 07815130
= 00000000
= 00000000
= 04ff2820
= 0f4addbc
= 006e8150
= 00553eba
= 0018f8c4
= 0018f924

stack dump:
0018f8c4 ba
0018f8d4 d8
0018f8e4 bc
0018f8f4 48
0018f904 bc
0018f914 40
0018f924 68
0018f934 bc
0018f944 e2
0018f954 dc

3e
f8
dd
f9
dd
67
f9
dd
a4
d5

55
18
4a
18
4a
9f
18
4a
5d
4a

00
00
0f
00
0f
0e
00
0f
00
0f

de
ba
50
38
11
f0
5d
40
70
60

fa
3e
81
ac
f9
19
46
67
f9
fa

ed
55
6e
40
18
ab
55
9f
18
18

0e
00
00
00
00
06
00
0e
00
00

01
30
24
24
00
00
bc
60
38
74

00
51
f9
f9
00
00
dd
fa
ac
bb

00
81
18
18
00
00
4a
18
40
51

00
07
00
00
00
00
0f
00
00
00

07
00
f4
40
00
00
21
00
68
00

00
00
f8
67
00
00
65
00
f9
00

00
00
18
9f
00
00
53
00
18
00

00
00
00
0e
00
00
00
00
00
00

.>U.............
.....>U.0Q......
..J.P.n.$.......
H...8.@.$...@g..
..J.............
@g..............
h...]FU...J.!eS.
..J.@g..`.......
..].p...8.@.h...
..J.`...t.Q.....

0018f964
0018f974
0018f984
0018f994
0018f9a4
0018f9b4
0018f9c4
0018f9d4
0018f9e4
0018f9f4

bc
17
d0
dc
00
00
40
53
00
b0

dd
ae
f9
d5
00
00
67
0c
00
65

disassembling:
[...]
02b6d40a
eAllTopMosts
02b6d40f 1553
02b6d415
02b6d417
02b6d419
02b6d41e
>
02b6d423
02b6d426 1554
02b6d429
02b6d42a
02b6d42d
[...]

4a
40
18
4a
00
00
9f
54
40
53

0f
00
00
0f
00
00
0e
00
00
00

d0
d0
d8
60
00
f8
40
f8
40
1c

f9
f9
f9
fa
00
f9
67
f9
e7
fa

18
18
18
18
00
18
9f
18
4e
18

00
00
00
00
00
00
0e
00
0f
00

95
88
38
40
00
c5
40
38
60
38

6c
f9
ac
67
00
9e
e7
ac
fa
ac

54
18
40
9f
00
40
4e
40
18
40

00
00
00
0e
00
00
0f
00
00
00

7c
38
d0
00
00
d8
f0
f0
14
14

f9
ac
f9
00
00
f9
f9
f9
fa
fa

18
40
18
00
00
18
18
18
18
18

00
00
00
00
00
00
00
00
00
00

..J......lT.|...
..@.........8.@.
........8.@.....
..J.`...@g......
................
..........@.....
@g..@g..@.N.....
S.T.....8.@.....
..@.@.N.`.......
.eS.....8.@.....

call

-$247662f ($6f6de0)

; Vcl.Forms.TApplication.Normaliz

mov
mov
mov
mov
call
mov
mov
push
mov
push

ecx, [$2cde0d4]
ecx, [ecx]
dl, 1
eax, [$2b5e930]
-$247ff33 ($6ed4f0)
[ebp-$14], eax
eax, [ebp-$c]
eax
al, [ebp+$10]
eax

; Vcl.Forms.TCustomForm.Create

date/time
: 2016-07-08, 10:36:39, 780ms
computer name
: LEANDRO
user name
: Leandro S
registered owner : Leandro S
operating system : Windows 8.1 Tablet PC x64 build 9600
system language
: Portuguese
system up time
: 1 day 2 hours
program up time
: 23 seconds
processors
: 3x AMD Athlon(tm) II X3 455 Processor
physical memory
: 1710/3838 MB (free/total)
free disk space
: (C:) 56,79 GB
display mode
: 1920x1080, 32 bit
process id
: $1358
allocated memory : 132,56 MB
largest free block : 1,27 GB
executable
: Habil_Cliente.exe
exec. date/time
: 2016-07-06 08:56
version
: 7.4.1.20
compiled with
: Delphi XE6
madExcept version : 4.0.14
callstack crc
: $f971b4e6, $51348eaf, $b3007c63
exception number : 1
exception class
: EAccessViolation
exception message : Access violation at address 00F8EE83 in module 'Habil_Clien
te.exe'. Read of address 000000D0.
main thread ($1574):
00f8ee83 +00f Habil_Cliente.exe dxLayoutContainer 18417 +1 TdxLayoutContainer.S
etCustomization
00f566d4 +018 Habil_Cliente.exe dxLayoutControl
2043 +1 TdxCustomLayoutContr
ol.SetCustomization
00f5628a +016 Habil_Cliente.exe dxLayoutControl
1853 +1 TdxCustomLayoutContr
ol.Destroy

77c0d7b6 +00a ntdll.dll


tcher
0054598d +0ad Habil_Cliente.exe
00545bb8 +088 Habil_Cliente.exe
t
00545e69 +089 Habil_Cliente.exe
r
00545dd7 +067 Habil_Cliente.exe
00553da9 +001 Habil_Cliente.exe
005d97d7 +02f Habil_Cliente.exe
005ddf01 +025 Habil_Cliente.exe
e
00cf5d1d +029 Habil_Cliente.exe
ate
00545c4f +11f Habil_Cliente.exe
t
00545e69 +089 Habil_Cliente.exe
r
00545da8 +038 Habil_Cliente.exe
00553da9 +001 Habil_Cliente.exe
005d97d7 +02f Habil_Cliente.exe
005ddf01 +025 Habil_Cliente.exe
e
006eddbd +06d Habil_Cliente.exe
e
00546d67 +1d7 Habil_Cliente.exe
onent
00540c4e +032 Habil_Cliente.exe
t
005365ab +057 Habil_Cliente.exe
tRes
00537eff +05f Habil_Cliente.exe
00537ed4 +034 Habil_Cliente.exe
00537f8d +061 Habil_Cliente.exe
nt
006ed5b6 +0c6 Habil_Cliente.exe
02b37ece +02e Habil_Cliente.exe
sExecute
00555113 +00f Habil_Cliente.exe
005bb6e2 +086 Habil_Cliente.exe
e
02b4af20 +788 Habil_Cliente.exe
Click
00cf68ac +060 Habil_Cliente.exe
onClick
00cf7458 +078 Habil_Cliente.exe
essEventsOnViewInfoChanging
007ee08f +02f Habil_Cliente.exe
EventsOnViewInfoChanging
007eda4c +09c Habil_Cliente.exe
Container
007ec26a +056 Habil_Cliente.exe
00d3226a +022 Habil_Cliente.exe
useUp
005dc96c +038 Habil_Cliente.exe
005dc9e8 +070 Habil_Cliente.exe
005dbfdd +2bd Habil_Cliente.exe
005e0af5 +5c9 Habil_Cliente.exe
007ffcf2 +13a Habil_Cliente.exe
007ec5e8 +0dc Habil_Cliente.exe

KiUserExceptionDispa
System.Classes
System.Classes

CreateComponent
TReader.ReadComponen

System.Classes

TReader.ReadDataInne

System.Classes
System.Classes
Vcl.Controls
Vcl.Controls

TReader.ReadData
TComponent.ReadState
TControl.ReadState
TWinControl.ReadStat

cxEdit

3272 +2 TcxCustomEdit.ReadSt

System.Classes

TReader.ReadComponen

System.Classes

TReader.ReadDataInne

System.Classes
System.Classes
Vcl.Controls
Vcl.Controls

TReader.ReadData
TComponent.ReadState
TControl.ReadState
TWinControl.ReadStat

Vcl.Forms

TCustomForm.ReadStat

System.Classes

TReader.ReadRootComp

System.Classes

TStream.ReadComponen

System.Classes

InternalReadComponen

System.Classes
System.Classes
System.Classes

InitComponent
InitComponent
InitInheritedCompone

Vcl.Forms
dmActions

TCustomForm.Create
1358 +1 TActions.AbreFamilia

System.Classes
Vcl.ActnList

TBasicAction.Execute
TCustomAction.Execut

KSDBButtonEdit

277 +98 TKSButtonEdit.Button

cxEdit

3587 +7 TcxCustomEdit.DoButt

cxEdit

3893 +8 TcxCustomEdit.DoProc

cxContainer

4544 +5 TcxContainer.Process

cxContainer

4392 +14 TcxContainer.Refresh

cxContainer
cxMaskEdit

3726 +3 TcxContainer.MouseUp
2906 +1 TcxCustomMaskEdit.Mo

Vcl.Controls
Vcl.Controls
Vcl.Controls
Vcl.Controls
cxControls
cxContainer

TControl.DoMouseUp
TControl.WMLButtonUp
TControl.WndProc
TWinControl.WndProc
5780 +19 TcxControl.WndProc
3875 +53 TcxContainer.WndProc

00d1e5ca +12a Habil_Cliente.exe


dProc
00806cc9 +019 Habil_Cliente.exe
bject.DefaultProc
00f9007c +018 Habil_Cliente.exe
lWndProc
008070b1 +019 Habil_Cliente.exe
bjectList.WndProc
005e013c +02c Habil_Cliente.exe
roc
00555e08 +014 Habil_Cliente.exe
76c993cc +00b user32.dll
006f837f +0f3 Habil_Cliente.exe
Message
006f83c2 +00a Habil_Cliente.exe
essage
006f86f5 +0c9 Habil_Cliente.exe
02c8b5f7 +227 Habil_Cliente.exe
7563a532 +00c KERNEL32.DLL

cxTextEdit

5228 +23 TcxCustomTextEdit.Wn

cxControls

8839 +1 TcxWindowProcLinkedO

dxLayoutContainer 18880 +1 TdxLayoutItem.Contro


cxControls

8951 +1 TcxWindowProcLinkedO

Vcl.Controls

TWinControl.MainWndP

System.Classes
Vcl.Forms

StdWndProc
DispatchMessageW
TApplication.Process

Vcl.Forms

TApplication.HandleM

Vcl.Forms
Habil_Cliente

TApplication.Run
360 +40 initialization
BaseThreadInitThunk

main thread ($1574), inner exception level 1:


>> EAccessViolation, Access violation at address 00F8EE83 in module 'Habil_Clien
te.exe'. Read of address 000000D0
00f8ee83 +00f Habil_Cliente.exe dxLayoutContainer 18417 +1 TdxLayoutContainer.S
etCustomization
00f566d4 +018 Habil_Cliente.exe dxLayoutControl
2043 +1 TdxCustomLayoutContr
ol.SetCustomization
00f5628a +016 Habil_Cliente.exe dxLayoutControl
1853 +1 TdxCustomLayoutContr
ol.Destroy
77c0d7b6 +00a ntdll.dll
KiUserExceptionDispa
tcher
0054598d +0ad Habil_Cliente.exe System.Classes
CreateComponent
00545bb8 +088 Habil_Cliente.exe System.Classes
TReader.ReadComponen
t
00545e69 +089 Habil_Cliente.exe System.Classes
TReader.ReadDataInne
r
00545dd7 +067 Habil_Cliente.exe System.Classes
TReader.ReadData
00553da9 +001 Habil_Cliente.exe System.Classes
TComponent.ReadState
005d97d7 +02f Habil_Cliente.exe Vcl.Controls
TControl.ReadState
005ddf01 +025 Habil_Cliente.exe Vcl.Controls
TWinControl.ReadStat
e
00cf5d1d +029 Habil_Cliente.exe cxEdit
3272 +2 TcxCustomEdit.ReadSt
ate
00545c4f +11f Habil_Cliente.exe System.Classes
TReader.ReadComponen
t
00545e69 +089 Habil_Cliente.exe System.Classes
TReader.ReadDataInne
r
00545da8 +038 Habil_Cliente.exe System.Classes
TReader.ReadData
00553da9 +001 Habil_Cliente.exe System.Classes
TComponent.ReadState
005d97d7 +02f Habil_Cliente.exe Vcl.Controls
TControl.ReadState
005ddf01 +025 Habil_Cliente.exe Vcl.Controls
TWinControl.ReadStat
e
006eddbd +06d Habil_Cliente.exe Vcl.Forms
TCustomForm.ReadStat
e
00546d67 +1d7 Habil_Cliente.exe System.Classes
TReader.ReadRootComp
onent
00540c4e +032 Habil_Cliente.exe System.Classes
TStream.ReadComponen
t
005365ab +057 Habil_Cliente.exe System.Classes
InternalReadComponen
tRes

00537eff +05f Habil_Cliente.exe


00537ed4 +034 Habil_Cliente.exe
00537f8d +061 Habil_Cliente.exe
nt
006ed5b6 +0c6 Habil_Cliente.exe
02b37ece +02e Habil_Cliente.exe
sExecute
00555113 +00f Habil_Cliente.exe
005bb6e2 +086 Habil_Cliente.exe
e
02b4af20 +788 Habil_Cliente.exe
Click
00cf68ac +060 Habil_Cliente.exe
onClick
00cf7458 +078 Habil_Cliente.exe
essEventsOnViewInfoChanging
007ee08f +02f Habil_Cliente.exe
EventsOnViewInfoChanging
007eda4c +09c Habil_Cliente.exe
Container
007ec26a +056 Habil_Cliente.exe
00d3226a +022 Habil_Cliente.exe
useUp
005dc96c +038 Habil_Cliente.exe
005dc9e8 +070 Habil_Cliente.exe
005dbfdd +2bd Habil_Cliente.exe
005e0af5 +5c9 Habil_Cliente.exe
007ffcf2 +13a Habil_Cliente.exe
007ec5e8 +0dc Habil_Cliente.exe
00d1e5ca +12a Habil_Cliente.exe
dProc
00806cc9 +019 Habil_Cliente.exe
bject.DefaultProc
00f9007c +018 Habil_Cliente.exe
lWndProc
008070b1 +019 Habil_Cliente.exe
bjectList.WndProc
005e013c +02c Habil_Cliente.exe
roc
00555e08 +014 Habil_Cliente.exe
76c993cc +00b user32.dll
006f837f +0f3 Habil_Cliente.exe
Message
006f83c2 +00a Habil_Cliente.exe
essage
006f86f5 +0c9 Habil_Cliente.exe
02c8b5f7 +227 Habil_Cliente.exe
7563a532 +00c KERNEL32.DLL

System.Classes
System.Classes
System.Classes
Vcl.Forms
dmActions

InitComponent
InitComponent
InitInheritedCompone
TCustomForm.Create
1358 +1 TActions.AbreFamilia

System.Classes
Vcl.ActnList

TBasicAction.Execute
TCustomAction.Execut

KSDBButtonEdit

277 +98 TKSButtonEdit.Button

cxEdit

3587 +7 TcxCustomEdit.DoButt

cxEdit

3893 +8 TcxCustomEdit.DoProc

cxContainer

4544 +5 TcxContainer.Process

cxContainer

4392 +14 TcxContainer.Refresh

cxContainer
cxMaskEdit

3726 +3 TcxContainer.MouseUp
2906 +1 TcxCustomMaskEdit.Mo

Vcl.Controls
Vcl.Controls
Vcl.Controls
Vcl.Controls
cxControls
cxContainer
cxTextEdit

TControl.DoMouseUp
TControl.WMLButtonUp
TControl.WndProc
TWinControl.WndProc
5780 +19 TcxControl.WndProc
3875 +53 TcxContainer.WndProc
5228 +23 TcxCustomTextEdit.Wn

cxControls

8839 +1 TcxWindowProcLinkedO

dxLayoutContainer 18880 +1 TdxLayoutItem.Contro


cxControls

8951 +1 TcxWindowProcLinkedO

Vcl.Controls

TWinControl.MainWndP

System.Classes
Vcl.Forms

StdWndProc
DispatchMessageW
TApplication.Process

Vcl.Forms

TApplication.HandleM

Vcl.Forms
Habil_Cliente

TApplication.Run
360 +40 initialization
BaseThreadInitThunk

thread $12d8:
7563a532 +c KERNEL32.DLL BaseThreadInitThunk
thread $74c:
7563a532 +c KERNEL32.DLL BaseThreadInitThunk
thread $b5c:
76c98940 +46
004b4015 +0d
004b407a +32
7563a532 +0c

<priority:2>
user32.dll
GetMessageA
Habil_Cliente.exe madExcept CallThreadProcSafe
Habil_Cliente.exe madExcept ThreadExceptFrame
KERNEL32.DLL
BaseThreadInitThunk

>> created by main thread ($1574) at:


71b2546b +00 winmm.dll
thread $1620:
7576117a +b1 KERNELBASE.dll
757610bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
7563a532 +0c KERNEL32.DLL
>> created by main thread ($1574) at:
778b51e4 +00 WS2_32.dll
thread $a98:
7576117a +b1 KERNELBASE.dll
757610bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
7563a532 +0c KERNEL32.DLL
>> created by main thread ($1574) at:
6f19f83b +00 winspool.drv

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $f90:
7563a532 +c KERNEL32.DLL BaseThreadInitThunk
thread $908:
7576117a +b1 KERNELBASE.dll
757610bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
7563a532 +0c KERNEL32.DLL
>> created by main thread ($1574) at:
6a8533a6 +00 Flash.ocx

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $cac:
7576117a +b1 KERNELBASE.dll
757610bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
7563a532 +0c KERNEL32.DLL
>> created by main thread ($1574) at:
6a8533a6 +00 Flash.ocx

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $e4c:
7576117a +b1 KERNELBASE.dll
757610bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
7563a532 +0c KERNEL32.DLL
>> created by main thread ($1574) at:
6a8533a6 +00 Flash.ocx

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $a10:
7563a532 +c KERNEL32.DLL BaseThreadInitThunk
thread $e0:
004b4015 +0d Habil_Cliente.exe madExcept CallThreadProcSafe
004b407a +32 Habil_Cliente.exe madExcept ThreadExceptFrame
7563a532 +0c KERNEL32.DLL
BaseThreadInitThunk
>> created by main thread ($1574) at:
7734bba1 +00 combase.dll

thread $148c (TSignalThread):


7576124c +4d KERNELBASE.dll
SleepEx
757611f1 +0a KERNELBASE.dll
Sleep
005530cd +01 Habil_Cliente.exe System.Classes
TThread.Sleep
02b91292 +66 Habil_Cliente.exe Messenger
139 +6 TSignalThread.Execute
004b412f +2b Habil_Cliente.exe madExcept
HookedTThreadExecute
005521ed +49 Habil_Cliente.exe System.Classes
ThreadProc
0040b600 +28 Habil_Cliente.exe System
133 +0 ThreadWrapper
004b4015 +0d Habil_Cliente.exe madExcept
CallThreadProcSafe
004b407a +32 Habil_Cliente.exe madExcept
ThreadExceptFrame
7563a532 +0c KERNEL32.DLL
BaseThreadInitThunk
>> created by main thread ($1574) at:
02b911f2 +22 Habil_Cliente.exe Messenger
127 +1 TSignalThread.Create
thread $dfc (TTimerThread):
7576124c +4d KERNELBASE.dll
SleepEx
757611f1 +0a KERNELBASE.dll
Sleep
005530cd +01 Habil_Cliente.exe System.Classes
TThread.Sleep
02b91342 +2a Habil_Cliente.exe Messenger
155 +3 TTimerThread.Execute
004b412f +2b Habil_Cliente.exe madExcept
HookedTThreadExecute
005521ed +49 Habil_Cliente.exe System.Classes
ThreadProc
0040b600 +28 Habil_Cliente.exe System
133 +0 ThreadWrapper
004b4015 +0d Habil_Cliente.exe madExcept
CallThreadProcSafe
004b407a +32 Habil_Cliente.exe madExcept
ThreadExceptFrame
7563a532 +0c KERNEL32.DLL
BaseThreadInitThunk
>> created by main thread ($1574) at:
02b912de +22 Habil_Cliente.exe Messenger
146 +1 TTimerThread.Create
thread $12f4 (TDSClientCallbackChannelManager.TDSChannelThread):
77897524 +17b WS2_32.dll
00c133c2 +04a Habil_Cliente.exe IdStackWindows
tListWindows.FDSelect
00c13360 +020 Habil_Cliente.exe IdStackWindows
tListWindows.SelectRead
00c23bb6 +006 Habil_Cliente.exe IdSocketHandle
tHandle.Select
00c23984 +044 Habil_Cliente.exe IdSocketHandle
eadable
00c23a1c +06c Habil_Cliente.exe IdSocketHandle
tHandle.Readable
00c26b86 +006 Habil_Cliente.exe IdIOHandlerStack
dlerStack.Readable
00c20589 +081 Habil_Cliente.exe IdIOHandler
dler.ReadFromSource
00c20a5d +01d Habil_Cliente.exe IdIOHandler
dler.ReadBytes
00c1fce1 +025 Habil_Cliente.exe IdIOHandler
dler.ReadByte
011550ff +003 Habil_Cliente.exe IPPeerCommon
dlerPeerIP.ReadByte
009d82ec +044 Habil_Cliente.exe Data.DbxSocketChannelNative
PLayer.ReadData
009d8264 +224 Habil_Cliente.exe Data.DbxSocketChannelNative
PLayer.Read
009d7981 +00d Habil_Cliente.exe Data.DbxSocketChannelNative
etChannel.Read
009d9246 +02e Habil_Cliente.exe Data.DBXTransportFilter
erSocketChannel.FillBuffer
009d952a +2ba Habil_Cliente.exe Data.DBXTransportFilter

select
TIdSocke
TIdSocke
TIdSocke
CheckIsR
TIdSocke
TIdIOHan
TIdIOHan
TIdIOHan
TIdIOHan
TIdIOHan
TDBXIdTC
TDBXIdTC
TDBXSock
TDBXFilt
TDBXFilt

erSocketChannel.Read
009af5b3 +017 Habil_Cliente.exe Data.DBXStream
TDBXJSon
StreamReader.FillBuffer
009ac596 +036 Habil_Cliente.exe Data.DBXStream
TDBXJSon
StreamReader.Next
009ad330 +008 Habil_Cliente.exe Data.DBXStream
TDBXJSon
StreamReader.Next
009b9df4 +058 Habil_Cliente.exe Data.DBXMessageHandlerJSonClient
TDBXJSon
ClientInputConnectionHandler.DbxExecute
009b8483 +003 Habil_Cliente.exe Data.DBXMessageHandlerCommon
TDBXExec
uteMessage.HandleMessage
009baa37 +16b Habil_Cliente.exe Data.DBXMessageHandlerJSonClient
TDBXJSon
ClientOutputConnectionHandler.DbxExecute
009dbf98 +080 Habil_Cliente.exe Data.DBXClient
TDBXClie
ntCommand.Execute
009dbd4c +000 Habil_Cliente.exe Data.DBXClient
TDBXClie
ntCommand.DerivedExecuteUpdate
00904044 +044 Habil_Cliente.exe Data.DBXCommon
TDBXComm
and.ExecuteUpdate
0090451b +00f Habil_Cliente.exe Data.DBXCommon
TDBXMorp
hicCommand.ExecuteUpdate
009f659e +122 Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.ExecuteRemote
009f74d0 +088 Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.RegisterCallback$112$ActRec.$0$Body
009f9bed +01d Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.TDSChannelThread.Execute
004b412f +02b Habil_Cliente.exe madExcept
HookedTT
hreadExecute
005521ed +049 Habil_Cliente.exe System.Classes
ThreadPr
oc
0040b600 +028 Habil_Cliente.exe System
133 +0 ThreadWr
apper
004b4015 +00d Habil_Cliente.exe madExcept
CallThre
adProcSafe
004b407a +032 Habil_Cliente.exe madExcept
ThreadEx
ceptFrame
7563a532 +00c KERNEL32.DLL
BaseThre
adInitThunk
>> created by main thread ($1574) at:
009f9b8f +04f Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.TDSChannelThread.Create
modules:
00250000
Koinonia
00380000
Koinonia
003b0000
Koinonia
00400000
Koinonia
04ec0000
Koinonia
08510000
Koinonia
10000000
Koinonia
62e80000
Koinonia

libxml2.dll
Software\Habil Empresarial
libxslt.dll
Software\Habil Empresarial
libxmlsec.dll
Software\Habil Empresarial
Habil_Cliente.exe
Software\Habil Empresarial
iconv.dll
Software\Habil Empresarial
ssleay32.dll
Software\Habil Empresarial
libeay32.dll
Software\Habil Empresarial
zlib1.dll
Software\Habil Empresarial

C:\Program Files (x86)\


C:\Program Files (x86)\
C:\Program Files (x86)\
7.4.1.20

C:\Program Files (x86)\

1.9.0.0

C:\Program Files (x86)\

0.9.8.14

C:\Program Files (x86)\

0.9.8.14

C:\Program Files (x86)\

1.2.8.0

C:\Program Files (x86)\

697a0000 ieframe.dll
11.0.9600.16384
C:\Windows\SYSTEM32
6a250000 mscms.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6a2d0000 UIAutomationCore.DLL
7.2.9600.16384
C:\Windows\SYSTEM32
6a3c0000 DINPUT8.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6a400000 DSOUND.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6a480000 Flash.ocx
11.8.800.133
C:\Windows\SYSTEM32\Mac
romed\Flash
6cdd0000 Msftedit.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
6d0c0000 globinputhost.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d0e0000 Bcp47Langs.dll
6.3.9600.16384
C:\Windows\System32
6d130000 Windows.Globalization.dll 6.3.9600.16384
C:\Windows\System32
6d2b0000 HHCtrl.OCX
6.3.9600.16384
C:\Windows\SYSTEM32
6d340000 msxml6.dll
6.30.9600.16384
C:\Windows\SYSTEM32
6d4f0000 msls31.dll
3.10.349.0
C:\Windows\SYSTEM32
6d530000 RICHED20.DLL
5.31.23.1230
C:\Windows\SYSTEM32
6d630000 IdnDL.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d640000 WindowsCodecs.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d790000 olepro32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d7b0000 security.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d7c0000 uxtheme.dll
6.3.9600.16384
C:\Windows\system32
6d8a0000 FaultRep.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d900000 propsys.dll
7.0.9600.16384
C:\Windows\system32
6da30000 msimg32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6da40000 dwmapi.dll
6.3.9600.16384
C:\Windows\system32
6da60000 usp10.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6da80000 FONTSUB.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6daa0000 comctl32.dll
6.10.9600.16384
C:\Windows\WinSxS\x86_m
icrosoft.windows.common-controls_6595b64144ccf1df_6.0.9600.16384_none_a9f4965301
334e09
6dc90000 oleacc.dll
7.2.9600.16384
C:\Windows\SYSTEM32
6dce0000 tiptsf.dll
6.3.9600.16384
C:\Program Files (x86)\
Common Files\microsoft shared\ink
6f0d0000 cscapi.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6f180000 winspool.drv
6.3.9600.16384
C:\Windows\SYSTEM32
6f340000 fwpuclnt.dll
6.3.9600.16384
C:\Windows\System32
6f6c0000 rasadhlp.dll
6.3.9600.16384
C:\Windows\System32
6f740000 urlmon.dll
11.0.9600.16384
C:\Windows\SYSTEM32
6fc80000 ntmarta.dll
6.3.9600.16384
C:\Windows\SYSTEM32
70570000 DEVOBJ.dll
6.3.9600.16384
C:\Windows\SYSTEM32
70590000 WINMMBASE.dll
6.3.9600.16384
C:\Windows\SYSTEM32
71b20000 winmm.dll
6.3.9600.16384
C:\Windows\SYSTEM32
72c40000 SHFolder.dll
6.3.9600.16384
C:\Windows\SYSTEM32
72d40000 winrnr.dll
6.3.9600.16384
C:\Windows\System32
72d50000 NLAapi.dll
6.3.9600.16384
C:\Windows\system32
72d70000 pnrpnsp.dll
6.3.9600.16384
C:\Windows\system32
72d90000 napinsp.dll
6.3.9600.16384
C:\Windows\system32
73060000 WINSTA.dll
6.3.9600.16384
C:\Windows\SYSTEM32
73970000 POWRPROF.dll
6.3.9600.16384
C:\Windows\SYSTEM32
73b40000 mswsock.dll
6.3.9600.16384
C:\Windows\System32
73b90000 kernel.appcore.dll
6.3.9600.16384
C:\Windows\SYSTEM32
73ba0000 ondemandconnroutehelper.dll 6.3.9600.16384
C:\Windows\SYSTEM32
73c30000 SECUR32.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
73df0000 DPAPI.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
73e00000 wkscli.dll
6.3.9600.16384
C:\Windows\SYSTEM32
73f30000 USERENV.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74690000 bcrypt.dll
6.3.9600.16384
C:\Windows\SYSTEM32
746b0000 rsaenh.dll
6.3.9600.16384
C:\Windows\system32
746e0000 CRYPTSP.dll
6.3.9600.16384
C:\Windows\SYSTEM32
748b0000 wtsapi32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74a60000 profapi.dll
6.3.9600.16384
C:\Windows\SYSTEM32

74a70000 SHCORE.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
74b20000 WINNSI.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
74b30000 iertutil.dll
11.0.9600.16384
C:\Windows\SYSTEM32
74df0000 iphlpapi.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74e10000 DNSAPI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74e90000 winhttp.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74f30000 wininet.dll
11.0.9600.16384
C:\Windows\SYSTEM32
75100000 version.dll
6.3.9600.16384
C:\Windows\SYSTEM32
751f0000 wsock32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75590000 bcryptPrimitives.dll
6.3.9600.16384
C:\Windows\SYSTEM32
755f0000 CRYPTBASE.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75600000 SspiCli.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75620000 KERNEL32.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
75760000 KERNELBASE.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75830000 shell32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
769e0000 MSASN1.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76a40000 crypt32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76bc0000 SHLWAPI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76c10000 IMM32.DLL
6.3.9600.16384
C:\Windows\system32
76c40000 NSI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76c90000 user32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76de0000 oleaut32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76e70000 gdiplus.dll
6.3.9600.16384
C:\Windows\WinSxS\x86_m
icrosoft.windows.gdiplus_6595b64144ccf1df_1.1.9600.16384_none_dadf89385bc5c7d7
76fc0000 RPCRT4.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77090000 sechost.dll
6.3.9600.16384
C:\Windows\SYSTEM32
770d0000 advapi32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
771e0000 comdlg32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
772a0000 clbcatq.dll
2001.12.10530.16384 C:\Windows\SYSTEM32
77320000 combase.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77470000 gdi32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77580000 SETUPAPI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77730000 MSCTF.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77890000 WS2_32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
778e0000 cfgmgr32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77920000 ole32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77a30000 Normaliz.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77a40000 msvcrt.dll
7.0.9600.16384
C:\Windows\SYSTEM32
77bd0000 ntdll.dll
6.3.9600.16384
C:\Windows\SYSTEM32
7c340000 MSVCR71.dll
7.10.3052.4
C:\Program Files (x86)\
Koinonia Software\Habil Empresarial
processes:
0000 Idle
0004 System
0150 smss.exe
01b0 csrss.exe
020c wininit.exe
0240 services.exe
0248 lsass.exe
02bc svchost.exe
02e0 svchost.exe
0364 svchost.exe
039c svchost.exe
03c4 svchost.exe
0110 svchost.exe
0294 SbieSvc.exe
0470 svchost.exe
04c0 AvastSvc.exe
0544 spoolsv.exe

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0

0568 svchost.exe
0578 svchost.exe
0628 SkypeC2CAutoUpdateSvc.exe
0654 SkypeC2CPNRSvc.exe
0698 Everything.exe
06a4 dasHost.exe
06d8 fbguard.exe
07fc svchost.exe
0718 vmnat.exe
0774 vmware-converter-a.exe
0838 vmware-converter.exe
084c vmware-converter.exe
0890 vmware-authd.exe
08dc vmnetdhcp.exe
08fc vmware-usbarbitrator64.exe
09a8 fbserver.exe
0ad4 svchost.exe
0818 HPSupportSolutionsFrameworkService.exe
0df8 SearchIndexer.exe
164c csrss.exe
1148 winlogon.exe
16dc dwm.exe
0ca8 WmiPrvSE.exe
0cdc taskhostex.exe
0d18 explorer.exe
0fb0 TabTip.exe
0598 TabTip32.exe
1454 Everything.exe
16f0 HDesk_Cliente.exe
86)\Koinonia Software\Hbil Desk
044c OutlookMessenger.exe
86)\Outlook Messenger
142c Habil_Tray.exe
86)\Koinonia Software\Habil Empresarial
1598 Habil_Servidor_MSA.exe
86)\Koinonia Software\Habil Empresarial
17e8 SbieCtrl.exe
1314 Skype.exe
86)\Skype\Phone
0ea8 ACBrNFeMonitor.exe
0f74 pdf24.exe
86)\PDF24
0a8c jusched.exe
86)\Common Files\Java\Java Update
04b0 vmware-tray.exe
86)\VMware\VMware Workstation
11f4 AvastUI.exe
0b20 unsecapp.exe
172c LiveZilla.exe
86)\LiveZilla
05e4 Habil_ServidorRelatorios.exe
86)\Koinonia Software\Habil Empresarial
0b9c Habil_Emissor.exe
86)\Koinonia Software\Habil Empresarial
1244 chrome.exe
86)\Google\Chrome\Application
0f28 chrome.exe
86)\Google\Chrome\Application
0af0 chrome.exe
86)\Google\Chrome\Application

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
3
3
3
0
3
3
3
3
3
3

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
13
576
0
0
47
551

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
18
390
0
0
15
260

normal
normal
normal
normal C:\Program Files (x

3 904 384 normal C:\Program Files (x


3 243 118 normal C:\Program Files (x
3 189 114 normal C:\Program Files (x
3 119 57 normal
3 253 141 normal C:\Program Files (x
3 71 82 normal C:\ACBrNFeMonitor
3 29 15 normal C:\Program Files (x
3 12 6

normal C:\Program Files (x

3 25 13 normal C:\Program Files (x


3 0 0
3 0 0
3 168 127 normal C:\Program Files (x
3 127 65 normal C:\Program Files (x
3 161 89 normal C:\Program Files (x
3 72 48 normal C:\Program Files (x
3 4

normal C:\Program Files (x

3 14 6

normal C:\Program Files (x

0dcc chrome.exe
86)\Google\Chrome\Application
0eb0 chrome.exe
86)\Google\Chrome\Application
136c NOTEPAD.EXE
0670 dllhost.exe
1370 Foxit Reader Updater.exe
ppData\Local\Temp
10e0 chrome.exe
86)\Google\Chrome\Application
03d8 chrome.exe
86)\Google\Chrome\Application
1610 RuntimeBroker.exe
16fc splwow64.exe
13cc audiodg.exe
1060 taskeng.exe
14a0 AvastEmUpdate.exe
0750 svchost.exe
1358 Habil_Cliente.exe
86)\Koinonia Software\Habil Empresarial

3 0

normal C:\Program Files (x

3 0

normal C:\Program Files (x

3 23 22 normal C:\Windows\SysWOW64
3 155 183 normal
3 47 25 normal C:\Users\LEANDR~1\A
3 0

idle

C:\Program Files (x

3 0

idle

C:\Program Files (x

3
3
0
0
0
0
3

2 normal
3 normal
0
0
0
0
599 normal C:\Program Files (x

9
4
0
0
0
0
791

hardware:
+ {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}
- \\skywalker\HP LaserJet P1005
- \\TESTE\HP LaserJet 1020
- \\wagner-pc\HP LaserJet 1020
- Fax
- Fila de Impresso da Raiz
- Foxit Reader PDF Printer
- Microsoft XPS Document Writer
- PDF24 Fax
- PDF24 PDF
+ {36fc9e60-c465-11cf-8056-444553540000}
- Gertec PPC Control Device (driver 2.1.6.35)
- Standard Enhanced PCI to USB Host Controller
- Standard Enhanced PCI to USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- USB Composite Device
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
+ {4d36e966-e325-11ce-bfc1-08002be10318}
- PC com base em x64 ACPI
+ {4d36e967-e325-11ce-bfc1-08002be10318}
- ST3500418AS ATA Device
+ {4d36e968-e325-11ce-bfc1-08002be10318}
- ATI Radeon 3000 Graphics (Microsoft Corporation - WDDM v1.1) (driver 8.97.10
.6)
+ {4d36e96a-e325-11ce-bfc1-08002be10318}
- ATA Channel 0
- ATA Channel 0
- ATA Channel 1

+
+
+
+
+

+
+
+

- ATA Channel 1
- Controlador de canal duplo padro PCI IDE
- Controlador de canal duplo padro PCI IDE
{4d36e96b-e325-11ce-bfc1-08002be10318}
- Teclado Padro PS/2
{4d36e96c-e325-11ce-bfc1-08002be10318}
- Dispositivo de High Definition Audio
{4d36e96e-e325-11ce-bfc1-08002be10318}
- Monitor Genrico PnP
{4d36e96f-e325-11ce-bfc1-08002be10318}
- Mouse compatvel com HID
{4d36e972-e325-11ce-bfc1-08002be10318}
- Adaptador do Microsoft ISATAP #2
- Microsoft Kernel Debug Network Adapter
- Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30)
- TAP-Windows Adapter V9 (driver 9.0.0.9)
- Teredo Tunneling Pseudo-Interface
- VIA Velocity-Family Gigabit Ethernet Adapter
- VMware Virtual Ethernet Adapter for VMnet1 (driver 4.2.3.0)
- VMware Virtual Ethernet Adapter for VMnet8 (driver 4.2.3.0)
{4d36e978-e325-11ce-bfc1-08002be10318}
- Porta de comunicao (COM1)
{4d36e97b-e325-11ce-bfc1-08002be10318}
- Controlador de Espaos de Armazenamento da Microsoft
{4d36e97d-e325-11ce-bfc1-08002be10318}
- Alto-falante do sistema
- ATI I/O Communications Processor PCI Bus Controller
- ATI I/O Communications Processor SMBus Controller
- ATK0110 ACPI UTILITY (driver 1043.6.0.0)
- Barramento Redirecionador de Dispositivos de rea de Trabalho Remota
- Boto de recurso fixo ACPI
- Boto ligar/desligar ACPI
- CMOS do sistema/relgio em tempo real
- Controlador de acesso direto memria
- Controlador de High Definition Audio
- Controlador de interrupo programvel
- Driver de Renderizao Bsico da Microsoft
- Driver de Vdeo Bsico da Microsoft
- Enumerador de Adaptador de Rede Virtual NDIS
- Enumerador de Barramento de Composio
- Enumerador de Barramento de Raiz UMBus
- Enumerador de Dispositivos de Software Plug and Play
- Enumerador de Unidade Virtual Microsoft
- Gerenciador de Volumes
- Interface de Gerenciamento do Microsoft Windows para ACPI
- Microsoft ACPI-Compliant System
- Microsoft System Management BIOS Driver
- PCI bus
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard ISA bridge
- PCI standard PCI-to-PCI bridge
- PCI standard PCI-to-PCI bridge
- PCI standard PCI-to-PCI bridge
- Placa de sistema
- Processador de dados numricos

- Recursos da placa-me
- Recursos da placa-me
- Recursos da placa-me
- Recursos da placa-me
- Recursos da placa-me
- Timer de eventos de alta preciso
- Timer do sistema
- VMware VMCI Host Device (driver 9.5.10.0)
{50127dc3-0f36-415e-a6cc-4cb3be910b65}
- AMD Athlon(tm) II X3 455 Processor
- AMD Athlon(tm) II X3 455 Processor
- AMD Athlon(tm) II X3 455 Processor
{533c5b84-ec70-11d2-9505-00c04f79deaf}
- Cpia de sombra de volume genrica
- Cpia de sombra de volume genrica
- Cpia de sombra de volume genrica
{62f9c741-b25a-46ce-b54c-9bccce08b6f2}
- Barramento do Adaptador de Transio IPv4 IPv6 da Microsoft
- Microsoft Device Association Root Enumerator
- PEDRO: Suporte:
- RAFAEL: Rafael Meyer:
- RECEPCAOPONTO
{745a17a0-74d3-11d0-b6fe-00a0c90f57da}
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo definido pelo fornecedor compatvel com HID
- Tela sensvel ao toque compatvel com HID
{c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
- Alto-falantes (Dispositivo de High Definition Audio)
- Microfone (Dispositivo de High Definition Audio)

cpu
eax
ebx
ecx
edx
esi
edi
eip
esp
ebp

registers:
= 00000000
= 00409eca
= 00f52d88
= 00000000
= 00000000
= 0018f5c4
= 00f8ee83
= 0018f0bc
= 0018f0c8

stack dump:
0018f0bc 40
0018f0cc d9
0018f0dc 8f
0018f0ec 50
0018f0fc 00
0018f10c 34
0018f11c 00
0018f12c 70
0018f13c c4
0018f14c c4
0018f15c c4
0018f16c 20
0018f17c c5
0018f18c 00
0018f19c 00
0018f1ac 02

26
66
62
bc
00
f1
00
f2
f5
f5
f5
f2
9e
00
e0
00

58
f5
f5
81
00
18
00
18
18
18
18
18
40
00
17
01

0b
00
00
0d
00
00
00
00
00
00
00
00
00
00
00
00

cc
45
20
e4
a4
40
81
ac
08
70
20
c4
04
70
00
00

f0
64
f2
f5
5e
f1
d9
f1
f2
f2
f2
f5
77
f2
00
00

18
61
18
18
55
18
c0
18
18
18
18
18
ce
18
19
00

00
00
00
00
00
00
77
00
00
00
00
00
02
00
00
00

00
50
38
dd
38
00
20
74
53
ac
00
70
44
c4
00
00

00
bc
a1
9e
2e
00
f2
f5
d9
f1
00
f2
3d
f5
00
00

00
81
c4
40
dc
00
18
18
c0
18
00
18
55
18
00
00

00
0d
41
00
0e
00
00
00
77
00
00
00
00
00
00
00

d8
f0
40
50
20
00
c4
95
20
c5
f5
ac
20
32
00
00

f0
f0
f1
bc
f2
00
f5
d9
f2
9e
8e
f1
f2
00
00
00

18
18
18
81
18
00
18
c0
18
40
c3
18
18
00
00
00

00
00
81
0d
00
00
00
77
00
00
77
00
00
00
00
00

@&X.............
.f..Eda.P.......
.b.. ...8..A@...
P.........@.P...
.....^U.8... ...
4...@...........
.......w .......
p.......t......w
........S..w ...
....p.........@.
.... ..........w
.......p.......
..@..w..D=U. ...
....p.......2...
................
................

0018f1bc
0018f1cc
0018f1dc
0018f1ec

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

disassembling:
[...]
00f8ee75
mov
00f8ee77
add
00f8ee7a
mov
00f8ee7d
mov
00f8ee80 18417 mov
00f8ee83
> cmp
00f8ee8a
jnz
00f8ee90 18419 mov
00f8ee93
mov
00f8ee99
cmp
00f8ee9c
jz
[...]

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

00
00
00
00

................
................
................
................

ebp, esp
esp, -$c
[ebp-5], dl
[ebp-4], eax
eax, [ebp-4]
dword ptr [eax+$d0], 0
loc_f8efd8
eax, [ebp-4]
al, [eax+$a4]
al, [ebp-5]
loc_f8efbc

date/time
: 2016-07-21, 08:32:07, 61ms
computer name
: LEANDRO
user name
: Leandro S
registered owner : Leandro S
operating system : Windows 8.1 Tablet PC x64 build 9600
system language
: Portuguese
system up time
: 50 minutes 36 seconds
program up time
: 32 minutes 28 seconds
processors
: 3x AMD Athlon(tm) II X3 455 Processor
physical memory
: 2157/3838 MB (free/total)
free disk space
: (C:) 59,46 GB
display mode
: 1920x1080, 32 bit
process id
: $720
allocated memory : 145,33 MB
largest free block : 1,23 GB
executable
: Habil_Cliente.exe
exec. date/time
: 2016-07-19 09:48
version
: 7.4.5.1
compiled with
: Delphi XE6
madExcept version : 4.0.14
callstack crc
: $766436ae, $20f4ba2e, $943b68e2
exception number : 1
exception class
: TDBXError
exception message : Remote error: Este CNPJ no esta liberado para emisso da NFe p
elo Hbil Empresrial .
main thread ($468):
0090795d +051 Habil_Cliente.exe Data.DBXCommon
ontext.Error
009078e2 +02a Habil_Cliente.exe Data.DBXCommon
ontext.Error
009ad8cf +103 Habil_Cliente.exe Data.DBXStream
SonStreamReader.ReadErrorBody
009b9e87 +0eb Habil_Cliente.exe Data.DBXMessageHandlerJSonClient
SonClientInputConnectionHandler.DbxExecute
009b8483 +003 Habil_Cliente.exe Data.DBXMessageHandlerCommon
xecuteMessage.HandleMessage
009baa37 +16b Habil_Cliente.exe Data.DBXMessageHandlerJSonClient
SonClientOutputConnectionHandler.DbxExecute
009dbf98 +080 Habil_Cliente.exe Data.DBXClient

TDBXC
TDBXC
TDBXJ
TDBXJ
TDBXE
TDBXJ
TDBXC

lientCommand.Execute
009dbcbf +007 Habil_Cliente.exe Data.DBXClient
lientCommand.DerivedExecuteQuery
00903fc5 +045 Habil_Cliente.exe Data.DBXCommon
ommand.ExecuteQuery
00904507 +00f Habil_Cliente.exe Data.DBXCommon
orphicCommand.ExecuteQuery
00ca7c00 +1a0 Habil_Cliente.exe Data.SqlExpr
omSQLDataSet.ExecuteStatement
00ca7975 +121 Habil_Cliente.exe Data.SqlExpr
omSQLDataSet.ExecSQL
00cab841 +009 Habil_Cliente.exe Data.SqlExpr
erverMethod.ExecuteMethod
02b6cc83 +1db Habil_Cliente.exe untFuncoesCliente
taMetodoEmissor
02b6d0f4 +134 Habil_Cliente.exe untFuncoesCliente
taMetodo
02b6d5b2 +18e Habil_Cliente.exe untFuncoesCliente
taMetodo
027516a5 +0e1 Habil_Cliente.exe untNFe
Fe.btnOk_PreVisualizarClick
005dc533 +06f Habil_Cliente.exe Vcl.Controls
rol.Click
005ffc22 +01e Habil_Cliente.exe Vcl.StdCtrls
omButton.Click
00d458d8 +0a0 Habil_Cliente.exe cxButtons
stomButton.Click
00600728 +010 Habil_Cliente.exe Vcl.StdCtrls
omButton.CNCommand
00d462fb +033 Habil_Cliente.exe cxButtons
stomButton.CNCommand
005dbfdd +2bd Habil_Cliente.exe Vcl.Controls
rol.WndProc
005e0af5 +5c9 Habil_Cliente.exe Vcl.Controls
ontrol.WndProc
005ff8cc +06c Habil_Cliente.exe Vcl.StdCtrls
onControl.WndProc
00d4624f +093 Habil_Cliente.exe cxButtons
stomButton.WndProc
005dbc18 +024 Habil_Cliente.exe Vcl.Controls
rol.Perform
005e0c5b +023 Habil_Cliente.exe Vcl.Controls
trolMsg
005e16e3 +00b Habil_Cliente.exe Vcl.Controls
ontrol.WMCommand
005dbfdd +2bd Habil_Cliente.exe Vcl.Controls
rol.WndProc
77d4d78f +02b ntdll.dll
rCallbackDispatcher
005dbfdd +2bd Habil_Cliente.exe Vcl.Controls
rol.WndProc
005e0af5 +5c9 Habil_Cliente.exe Vcl.Controls
ontrol.WndProc
007ffcf2 +13a Habil_Cliente.exe cxControls
ntrol.WndProc
007ec5e8 +0dc Habil_Cliente.exe cxContainer
ntainer.WndProc
005e013c +02c Habil_Cliente.exe Vcl.Controls
ontrol.MainWndProc
00555e08 +014 Habil_Cliente.exe System.Classes

TDBXC
TDBXC
TDBXM
TCust
TCust
TSqlS
247 +22 Execu
284 +4 Execu
336 +18 Execu
1008 +3 TfrmN
TCont
TCust
1655 +8 TcxCu
TCust
1948 +2 TcxCu
TCont
TWinC
TButt
1929 +11 TcxCu
TCont
DoCon
TWinC
TCont
KiUse
TCont
TWinC
5780 +19 TcxCo
3875 +53 TcxCo
TWinC
StdWn

dProc
77d4d78f +02b ntdll.dll
rCallbackDispatcher
7576e8f9 +126 user32.dll
essageW
7576d7d3 +086 user32.dll
indowProcW
005e0c06 +0e6 Habil_Cliente.exe
ontrol.DefaultHandler
00d459af +023 Habil_Cliente.exe
stomButton.DefaultHandler
005dc988 +010 Habil_Cliente.exe
rol.WMLButtonUp
77d4d78f +02b ntdll.dll
rCallbackDispatcher
005dbfdd +2bd Habil_Cliente.exe
rol.WndProc
005e0af5 +5c9 Habil_Cliente.exe
ontrol.WndProc
005ff8cc +06c Habil_Cliente.exe
onControl.WndProc
00d4624f +093 Habil_Cliente.exe
stomButton.WndProc
005e013c +02c Habil_Cliente.exe
ontrol.MainWndProc
00555e08 +014 Habil_Cliente.exe
dProc
757693cc +00b user32.dll
tchMessageW
006f837f +0f3 Habil_Cliente.exe
ication.ProcessMessage
006f83aa +00a Habil_Cliente.exe
ication.ProcessMessages
0274ebb2 +146 Habil_Cliente.exe
Fe.btnPreVisualizarClick
005dc533 +06f Habil_Cliente.exe
rol.Click
005ffc22 +01e Habil_Cliente.exe
omButton.Click
00d458d8 +0a0 Habil_Cliente.exe
stomButton.Click
00600728 +010 Habil_Cliente.exe
omButton.CNCommand
00d462fb +033 Habil_Cliente.exe
stomButton.CNCommand
005dbfdd +2bd Habil_Cliente.exe
rol.WndProc
005e0724 +1f8 Habil_Cliente.exe
ontrol.WndProc
005ff8cc +06c Habil_Cliente.exe
onControl.WndProc
00d4624f +093 Habil_Cliente.exe
stomButton.WndProc
005e013c +02c Habil_Cliente.exe
ontrol.MainWndProc
00555e08 +014 Habil_Cliente.exe
dProc
00d45f9a +00e Habil_Cliente.exe
stomButton.GetGroupIndex
00806cc9 +019 Habil_Cliente.exe

KiUse
SendM
CallW
Vcl.Controls
cxButtons
Vcl.Controls

TWinC
1672 +2 TcxCu
TCont
KiUse

Vcl.Controls

TCont

Vcl.Controls

TWinC

Vcl.StdCtrls

TButt

cxButtons

1929 +11 TcxCu

Vcl.Controls

TWinC

System.Classes

StdWn
Dispa

Vcl.Forms

TAppl

Vcl.Forms

TAppl

untNFe

704 +10 TfrmN

Vcl.Controls

TCont

Vcl.StdCtrls

TCust

cxButtons
Vcl.StdCtrls
cxButtons

1655 +8 TcxCu
TCust
1948 +2 TcxCu

Vcl.Controls

TCont

Vcl.Controls

TWinC

Vcl.StdCtrls

TButt

cxButtons

1929 +11 TcxCu

Vcl.Controls

TWinC

System.Classes

StdWn

cxButtons

1847 +1 TcxCu

cxControls

8839 +1 TcxWi

ndowProcLinkedObject.DefaultProc
00f9007c +018 Habil_Cliente.exe dxLayoutContainer
youtItem.ControlWndProc
008070b1 +019 Habil_Cliente.exe cxControls
ndowProcLinkedObjectList.WndProc
005dbc18 +024 Habil_Cliente.exe Vcl.Controls
rol.Perform
005e0c5b +023 Habil_Cliente.exe Vcl.Controls
trolMsg
005e16e3 +00b Habil_Cliente.exe Vcl.Controls
ontrol.WMCommand
005dbfdd +2bd Habil_Cliente.exe Vcl.Controls
rol.WndProc
77d4d78f +02b ntdll.dll
rCallbackDispatcher
005dbfdd +2bd Habil_Cliente.exe Vcl.Controls
rol.WndProc
00409f11 +01d Habil_Cliente.exe System
rConstruction
00409828 +010 Habil_Cliente.exe System
ct.Create
0080c667 +013 Habil_Cliente.exe cxClasses
jectLinkController.AddLink
005e013c +02c Habil_Cliente.exe Vcl.Controls
ontrol.MainWndProc
00555e08 +014 Habil_Cliente.exe System.Classes
dProc
77d4d78f +02b ntdll.dll
rCallbackDispatcher
7576e8f9 +126 user32.dll
essageW
7576d7d3 +086 user32.dll
indowProcW
005e0c06 +0e6 Habil_Cliente.exe Vcl.Controls
ontrol.DefaultHandler
00d459af +023 Habil_Cliente.exe cxButtons
stomButton.DefaultHandler
005dc988 +010 Habil_Cliente.exe Vcl.Controls
rol.WMLButtonUp
005dbfdd +2bd Habil_Cliente.exe Vcl.Controls
rol.WndProc
005e0af5 +5c9 Habil_Cliente.exe Vcl.Controls
ontrol.WndProc
005ff8cc +06c Habil_Cliente.exe Vcl.StdCtrls
onControl.WndProc
00d4624f +093 Habil_Cliente.exe cxButtons
stomButton.WndProc
00806cc9 +019 Habil_Cliente.exe cxControls
ndowProcLinkedObject.DefaultProc
00f9007c +018 Habil_Cliente.exe dxLayoutContainer
youtItem.ControlWndProc
008070b1 +019 Habil_Cliente.exe cxControls
ndowProcLinkedObjectList.WndProc
005e013c +02c Habil_Cliente.exe Vcl.Controls
ontrol.MainWndProc
00555e08 +014 Habil_Cliente.exe System.Classes
dProc
757693cc +00b user32.dll
tchMessageW
006f837f +0f3 Habil_Cliente.exe Vcl.Forms

18880 +1 TdxLa
8951 +1 TcxWi
TCont
DoCon
TWinC
TCont
KiUse
TCont
182 +0 @Afte
182 +0 TObje
2015 +1 TcxOb
TWinC
StdWn
KiUse
SendM
CallW
TWinC
1672 +2 TcxCu
TCont
TCont
TWinC
TButt
1929 +11 TcxCu
8839 +1 TcxWi
18880 +1 TdxLa
8951 +1 TcxWi
TWinC
StdWn
Dispa
TAppl

ication.ProcessMessage
006f83c2 +00a Habil_Cliente.exe Vcl.Forms
ication.HandleMessage
006f86f5 +0c9 Habil_Cliente.exe Vcl.Forms
ication.Run
02c92607 +227 Habil_Cliente.exe Habil_Cliente
alization
758ca532 +00c KERNEL32.DLL
hreadInitThunk
thread $12c4: <priority:2>
75768940 +46 user32.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
758ca532 +0c KERNEL32.DLL
>> created by main thread ($468) at:
71c6546b +00 winmm.dll

GetMessageA
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $b30:
75dc117a +b1 KERNELBASE.dll
75dc10bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
758ca532 +0c KERNEL32.DLL
>> created by main thread ($468) at:
760f51e4 +00 WS2_32.dll

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $ff4:
75dc117a +b1 KERNELBASE.dll
75dc10bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
758ca532 +0c KERNEL32.DLL
>> created by main thread ($468) at:
6f2df83b +00 winspool.drv

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $1050:
75dc117a +b1 KERNELBASE.dll
75dc10bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
758ca532 +0c KERNEL32.DLL
>> created by main thread ($468) at:
69d833a6 +00 Flash.ocx

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $554:
75dc117a +b1 KERNELBASE.dll
75dc10bb +0d KERNELBASE.dll
004b4015 +0d Habil_Cliente.exe madExcept
004b407a +32 Habil_Cliente.exe madExcept
758ca532 +0c KERNEL32.DLL
>> created by main thread ($468) at:
69d833a6 +00 Flash.ocx

WaitForSingleObjectEx
WaitForSingleObject
CallThreadProcSafe
ThreadExceptFrame
BaseThreadInitThunk

thread $127c:
75dc117a +b1 KERNELBASE.dll
WaitForSingleObjectEx
75dc10bb +0d KERNELBASE.dll
WaitForSingleObject
004b4015 +0d Habil_Cliente.exe madExcept CallThreadProcSafe
004b407a +32 Habil_Cliente.exe madExcept ThreadExceptFrame
758ca532 +0c KERNEL32.DLL
BaseThreadInitThunk

TAppl
TAppl
361 +40 initi
BaseT

>> created by main thread ($468) at:


69d833a6 +00 Flash.ocx
thread $bec (TSignalThread):
75dc124c +4d KERNELBASE.dll
SleepEx
75dc11f1 +0a KERNELBASE.dll
Sleep
005530cd +01 Habil_Cliente.exe System.Classes
TThread.Sleep
02b979e2 +66 Habil_Cliente.exe Messenger
139 +6 TSignalThread.Execute
004b412f +2b Habil_Cliente.exe madExcept
HookedTThreadExecute
005521ed +49 Habil_Cliente.exe System.Classes
ThreadProc
0040b600 +28 Habil_Cliente.exe System
182 +0 ThreadWrapper
004b4015 +0d Habil_Cliente.exe madExcept
CallThreadProcSafe
004b407a +32 Habil_Cliente.exe madExcept
ThreadExceptFrame
758ca532 +0c KERNEL32.DLL
BaseThreadInitThunk
>> created by main thread ($468) at:
02b97942 +22 Habil_Cliente.exe Messenger
127 +1 TSignalThread.Create
thread $1074 (TTimerThread):
75dc124c +4d KERNELBASE.dll
SleepEx
75dc11f1 +0a KERNELBASE.dll
Sleep
005530cd +01 Habil_Cliente.exe System.Classes
TThread.Sleep
02b97a92 +2a Habil_Cliente.exe Messenger
155 +3 TTimerThread.Execute
004b412f +2b Habil_Cliente.exe madExcept
HookedTThreadExecute
005521ed +49 Habil_Cliente.exe System.Classes
ThreadProc
0040b600 +28 Habil_Cliente.exe System
182 +0 ThreadWrapper
004b4015 +0d Habil_Cliente.exe madExcept
CallThreadProcSafe
004b407a +32 Habil_Cliente.exe madExcept
ThreadExceptFrame
758ca532 +0c KERNEL32.DLL
BaseThreadInitThunk
>> created by main thread ($468) at:
02b97a2e +22 Habil_Cliente.exe Messenger
146 +1 TTimerThread.Create
thread $1064 (TDSClientCallbackChannelManager.TDSChannelThread):
760d7524 +17b WS2_32.dll
00c133c2 +04a Habil_Cliente.exe IdStackWindows
tListWindows.FDSelect
00c13360 +020 Habil_Cliente.exe IdStackWindows
tListWindows.SelectRead
00c23bb6 +006 Habil_Cliente.exe IdSocketHandle
tHandle.Select
00c23984 +044 Habil_Cliente.exe IdSocketHandle
eadable
00c23a1c +06c Habil_Cliente.exe IdSocketHandle
tHandle.Readable
00c26b86 +006 Habil_Cliente.exe IdIOHandlerStack
dlerStack.Readable
00c20589 +081 Habil_Cliente.exe IdIOHandler
dler.ReadFromSource
00c20a5d +01d Habil_Cliente.exe IdIOHandler
dler.ReadBytes
00c1fce1 +025 Habil_Cliente.exe IdIOHandler
dler.ReadByte
011550ff +003 Habil_Cliente.exe IPPeerCommon
dlerPeerIP.ReadByte
009d82ec +044 Habil_Cliente.exe Data.DbxSocketChannelNative
PLayer.ReadData
009d8264 +224 Habil_Cliente.exe Data.DbxSocketChannelNative
PLayer.Read
009d7981 +00d Habil_Cliente.exe Data.DbxSocketChannelNative
etChannel.Read
009d9246 +02e Habil_Cliente.exe Data.DBXTransportFilter

select
TIdSocke
TIdSocke
TIdSocke
CheckIsR
TIdSocke
TIdIOHan
TIdIOHan
TIdIOHan
TIdIOHan
TIdIOHan
TDBXIdTC
TDBXIdTC
TDBXSock
TDBXFilt

erSocketChannel.FillBuffer
009d952a +2ba Habil_Cliente.exe Data.DBXTransportFilter
TDBXFilt
erSocketChannel.Read
009af5b3 +017 Habil_Cliente.exe Data.DBXStream
TDBXJSon
StreamReader.FillBuffer
009ac596 +036 Habil_Cliente.exe Data.DBXStream
TDBXJSon
StreamReader.Next
009ad330 +008 Habil_Cliente.exe Data.DBXStream
TDBXJSon
StreamReader.Next
009b9df4 +058 Habil_Cliente.exe Data.DBXMessageHandlerJSonClient
TDBXJSon
ClientInputConnectionHandler.DbxExecute
009b8483 +003 Habil_Cliente.exe Data.DBXMessageHandlerCommon
TDBXExec
uteMessage.HandleMessage
009baa37 +16b Habil_Cliente.exe Data.DBXMessageHandlerJSonClient
TDBXJSon
ClientOutputConnectionHandler.DbxExecute
009dbf98 +080 Habil_Cliente.exe Data.DBXClient
TDBXClie
ntCommand.Execute
009dbd4c +000 Habil_Cliente.exe Data.DBXClient
TDBXClie
ntCommand.DerivedExecuteUpdate
00904044 +044 Habil_Cliente.exe Data.DBXCommon
TDBXComm
and.ExecuteUpdate
0090451b +00f Habil_Cliente.exe Data.DBXCommon
TDBXMorp
hicCommand.ExecuteUpdate
009f659e +122 Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.ExecuteRemote
009f74d0 +088 Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.RegisterCallback$112$ActRec.$0$Body
009f9bed +01d Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.TDSChannelThread.Execute
004b412f +02b Habil_Cliente.exe madExcept
HookedTT
hreadExecute
005521ed +049 Habil_Cliente.exe System.Classes
ThreadPr
oc
0040b600 +028 Habil_Cliente.exe System
182 +0 ThreadWr
apper
004b4015 +00d Habil_Cliente.exe madExcept
CallThre
adProcSafe
004b407a +032 Habil_Cliente.exe madExcept
ThreadEx
ceptFrame
758ca532 +00c KERNEL32.DLL
BaseThre
adInitThunk
>> created by main thread ($468) at:
009f9b8f +04f Habil_Cliente.exe Datasnap.DSCommon
TDSClien
tCallbackChannelManager.TDSChannelThread.Create
modules:
00240000
Koinonia
002a0000
Koinonia
003a0000
Koinonia
00400000
Koinonia
050a0000
Koinonia
08530000
Koinonia
10000000
Koinonia

libxslt.dll
Software\Habil Empresarial
libxml2.dll
Software\Habil Empresarial
libxmlsec.dll
Software\Habil Empresarial
Habil_Cliente.exe
Software\Habil Empresarial
iconv.dll
Software\Habil Empresarial
ssleay32.dll
Software\Habil Empresarial
libeay32.dll
Software\Habil Empresarial

C:\Program Files (x86)\


C:\Program Files (x86)\
C:\Program Files (x86)\
7.4.5.1

C:\Program Files (x86)\

1.9.0.0

C:\Program Files (x86)\

0.9.8.14

C:\Program Files (x86)\

0.9.8.14

C:\Program Files (x86)\

60730000 Ninput.dll
6.3.9600.16384
C:\Windows\system32
60a10000 globinputhost.dll
6.3.9600.16384
C:\Windows\SYSTEM32
60a30000 Windows.Globalization.dll 6.3.9600.16384
C:\Windows\System32
62e80000 zlib1.dll
1.2.8.0
C:\Program Files (x86)\
Koinonia Software\Habil Empresarial
64d40000 FONTSUB.dll
6.3.9600.16384
C:\Windows\SYSTEM32
69840000 mscms.dll
6.3.9600.16384
C:\Windows\SYSTEM32
698c0000 UIAutomationCore.DLL
7.2.9600.16384
C:\Windows\SYSTEM32
699b0000 Flash.ocx
11.8.800.133
C:\Windows\SYSTEM32\Mac
romed\Flash
6b0f0000 ieframe.dll
11.0.9600.16384
C:\Windows\SYSTEM32
6bba0000 DINPUT8.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6bbe0000 DSOUND.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6c200000 Bcp47Langs.dll
6.3.9600.16384
C:\Windows\System32
6d2c0000 IdnDL.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d2d0000 Msftedit.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
6d500000 HHCtrl.OCX
6.3.9600.16384
C:\Windows\SYSTEM32
6d590000 WindowsCodecs.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d6e0000 msxml6.dll
6.30.9600.16384
C:\Windows\SYSTEM32
6d890000 olepro32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d8b0000 security.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d8c0000 msimg32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d8d0000 FaultRep.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6d930000 comctl32.dll
6.10.9600.16384
C:\Windows\WinSxS\x86_m
icrosoft.windows.common-controls_6595b64144ccf1df_6.0.9600.16384_none_a9f4965301
334e09
6db20000 propsys.dll
7.0.9600.16384
C:\Windows\system32
6dc50000 msls31.dll
3.10.349.0
C:\Windows\SYSTEM32
6dc90000 usp10.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6dcb0000 RICHED20.DLL
5.31.23.1230
C:\Windows\SYSTEM32
6dd80000 dwmapi.dll
6.3.9600.16384
C:\Windows\system32
6ddc0000 uxtheme.dll
6.3.9600.16384
C:\Windows\system32
6dea0000 oleacc.dll
7.2.9600.16384
C:\Windows\SYSTEM32
6e300000 tiptsf.dll
6.3.9600.16384
C:\Program Files (x86)\
Common Files\microsoft shared\ink
6f210000 cscapi.dll
6.3.9600.16384
C:\Windows\SYSTEM32
6f2c0000 winspool.drv
6.3.9600.16384
C:\Windows\SYSTEM32
6f480000 fwpuclnt.dll
6.3.9600.16384
C:\Windows\System32
6f4d0000 rasadhlp.dll
6.3.9600.16384
C:\Windows\System32
6f550000 urlmon.dll
11.0.9600.16384
C:\Windows\SYSTEM32
6fdc0000 ntmarta.dll
6.3.9600.16384
C:\Windows\SYSTEM32
706b0000 DEVOBJ.dll
6.3.9600.16384
C:\Windows\SYSTEM32
706d0000 WINMMBASE.dll
6.3.9600.16384
C:\Windows\SYSTEM32
71c60000 winmm.dll
6.3.9600.16384
C:\Windows\SYSTEM32
72d80000 SHFolder.dll
6.3.9600.16384
C:\Windows\SYSTEM32
72e80000 winrnr.dll
6.3.9600.16384
C:\Windows\System32
72e90000 NLAapi.dll
6.3.9600.16384
C:\Windows\system32
72eb0000 pnrpnsp.dll
6.3.9600.16384
C:\Windows\system32
72ed0000 napinsp.dll
6.3.9600.16384
C:\Windows\system32
731a0000 WINSTA.dll
6.3.9600.16384
C:\Windows\SYSTEM32
73ab0000 POWRPROF.dll
6.3.9600.16384
C:\Windows\SYSTEM32
73b10000 mswsock.dll
6.3.9600.16384
C:\Windows\System32
73b80000 ondemandconnroutehelper.dll 6.3.9600.16384
C:\Windows\SYSTEM32
73ce0000 kernel.appcore.dll
6.3.9600.16384
C:\Windows\SYSTEM32
73cf0000 SECUR32.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
73f30000 DPAPI.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
73f40000 wkscli.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74070000 USERENV.dll
6.3.9600.16384
C:\Windows\SYSTEM32
747d0000 bcrypt.dll
6.3.9600.16384
C:\Windows\SYSTEM32
747f0000 rsaenh.dll
6.3.9600.16384
C:\Windows\system32

74820000 CRYPTSP.dll
6.3.9600.16384
C:\Windows\SYSTEM32
749f0000 wtsapi32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74ba0000 profapi.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74bb0000 SHCORE.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
74c60000 WINNSI.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
74c70000 iertutil.dll
11.0.9600.16384
C:\Windows\SYSTEM32
74f30000 iphlpapi.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74f50000 DNSAPI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
74fd0000 winhttp.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75070000 wininet.dll
11.0.9600.16384
C:\Windows\SYSTEM32
75240000 version.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75330000 wsock32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
756d0000 bcryptPrimitives.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75730000 CRYPTBASE.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75740000 SspiCli.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75760000 user32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
758b0000 KERNEL32.DLL
6.3.9600.16384
C:\Windows\SYSTEM32
759f0000 IMM32.DLL
6.3.9600.16384
C:\Windows\system32
75a60000 NSI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75a70000 SETUPAPI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75c20000 oleaut32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75cb0000 ole32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75dc0000 KERNELBASE.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75ea0000 combase.dll
6.3.9600.16384
C:\Windows\SYSTEM32
75ff0000 MSASN1.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76090000 sechost.dll
6.3.9600.16384
C:\Windows\SYSTEM32
760d0000 WS2_32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
76120000 clbcatq.dll
2001.12.10530.16384 C:\Windows\SYSTEM32
761a0000 cfgmgr32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
761e0000 gdiplus.dll
6.3.9600.16384
C:\Windows\WinSxS\x86_m
icrosoft.windows.gdiplus_6595b64144ccf1df_1.1.9600.16384_none_dadf89385bc5c7d7
76330000 shell32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77550000 comdlg32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
775e0000 Normaliz.dll
6.3.9600.16384
C:\Windows\SYSTEM32
775f0000 SHLWAPI.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77640000 crypt32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77830000 advapi32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
778b0000 gdi32.dll
6.3.9600.16384
C:\Windows\SYSTEM32
779c0000 RPCRT4.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77a80000 msvcrt.dll
7.0.9600.16384
C:\Windows\SYSTEM32
77b40000 MSCTF.dll
6.3.9600.16384
C:\Windows\SYSTEM32
77d10000 ntdll.dll
6.3.9600.16384
C:\Windows\SYSTEM32
7c340000 MSVCR71.dll
7.10.3052.4
C:\Program Files (x86)\
Koinonia Software\Habil Empresarial
processes:
0000 Idle
0004 System
0158 smss.exe
01b0 csrss.exe
0204 wininit.exe
0214 csrss.exe
0240 services.exe
0248 lsass.exe
0270 winlogon.exe
02c4 svchost.exe
02f4 svchost.exe
0360 dwm.exe
036c svchost.exe
03a4 svchost.exe

0
0
0
0
0
1
0
0
1
0
0
1
0
0

0
0
0
0
0
0
0
0
0
0
0
0
0
0

0
0
0
0
0
0
0
0
0
0
0
0
0
0

03e0 svchost.exe
0170 svchost.exe
02d4 SbieSvc.exe
0458 svchost.exe
04b4 AvastSvc.exe
052c spoolsv.exe
054c svchost.exe
0568 svchost.exe
05fc SkypeC2CAutoUpdateSvc.exe
0650 SkypeC2CPNRSvc.exe
0698 Everything.exe
06a4 dasHost.exe
06d0 fbguard.exe
0668 vmnat.exe
0640 vmware-converter-a.exe
0828 vmware-converter.exe
0848 vmware-converter.exe
08a4 vmnetdhcp.exe
08d4 vmware-usbarbitrator64.exe
0904 vmware-authd.exe
0a08 fbserver.exe
0ac0 svchost.exe
0b58 HPSupportSolutionsFrameworkService.exe
0768 SearchIndexer.exe
0f0c WmiPrvSE.exe
0f70 taskhostex.exe
02f0 explorer.exe
0e38 TabTip.exe
0cd0 TabTip32.exe
028c Everything.exe
0598 OutlookMessenger.exe
86)\Outlook Messenger
0b28 Habil_Tray.exe
86)\Koinonia Software\Habil Empresarial
0b14 Habil_Emissor.exe
86)\Koinonia Software\Habil Empresarial
0df8 Habil_Servidor_MSA.exe
86)\Koinonia Software\Habil Empresarial
0d5c SbieCtrl.exe
0c40 Skype.exe
86)\Skype\Phone
099c ACBrNFeMonitor.exe
02a8 pdf24.exe
86)\PDF24
0cd4 jusched.exe
86)\Common Files\Java\Java Update
04c4 vmware-tray.exe
86)\VMware\VMware Workstation
0c88 AvastUI.exe
1048 unsecapp.exe
10b0 LiveZilla.exe
86)\LiveZilla
1110 HDesk_Cliente.exe
86)\Koinonia Software\Hbil Desk
1230 splwow64.exe
0fa4 Habil_ServidorRelatorios.exe
86)\Koinonia Software\Habil Empresarial
0720 Habil_Cliente.exe
86)\Koinonia Software\Habil Empresarial
0d50 taskeng.exe

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
1
1
1
1
1

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
13
238
0
0
47
673

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
15
269
0
0
15
282

normal
normal
normal
normal C:\Program Files (x

1 256 134 normal C:\Program Files (x


1 157 84 normal C:\Program Files (x
1 194 115 normal C:\Program Files (x
1 119 57 normal
1 173 140 normal C:\Program Files (x
1 71 82 normal C:\ACBrNFeMonitor
1 29 15 normal C:\Program Files (x
1 12 6

normal C:\Program Files (x

1 25 13 normal C:\Program Files (x


1 0 0
1 0 0
1 134 111 normal C:\Program Files (x
1 449 233 normal C:\Program Files (x
1 4 2 normal
1 127 65 normal C:\Program Files (x
1 816 692 normal C:\Program Files (x
0 0

0d90 AvastEmUpdate.exe
03fc WmiPrvSE.exe

0 0
0 0

0
0

hardware:
+ {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}
- \\skywalker\HP LaserJet P1005
- \\TESTE\HP LaserJet 1020
- \\wagner-pc\HP LaserJet 1020
- Fax
- Fila de Impresso da Raiz
- Foxit Reader PDF Printer
- Microsoft XPS Document Writer
- PDF24 Fax
- PDF24 PDF
+ {36fc9e60-c465-11cf-8056-444553540000}
- Gertec PPC Control Device (driver 2.1.6.35)
- Standard Enhanced PCI to USB Host Controller
- Standard Enhanced PCI to USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- USB Composite Device
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
+ {4d36e966-e325-11ce-bfc1-08002be10318}
- PC com base em x64 ACPI
+ {4d36e967-e325-11ce-bfc1-08002be10318}
- ST3500418AS ATA Device
+ {4d36e968-e325-11ce-bfc1-08002be10318}
- ATI Radeon 3000 Graphics (Microsoft Corporation - WDDM v1.1) (driver 8.97.10
.6)
+ {4d36e96a-e325-11ce-bfc1-08002be10318}
- ATA Channel 0
- ATA Channel 0
- ATA Channel 1
- ATA Channel 1
- Controlador de canal duplo padro PCI IDE
- Controlador de canal duplo padro PCI IDE
+ {4d36e96b-e325-11ce-bfc1-08002be10318}
- Teclado Padro PS/2
+ {4d36e96c-e325-11ce-bfc1-08002be10318}
- Dispositivo de High Definition Audio
+ {4d36e96e-e325-11ce-bfc1-08002be10318}
- Monitor Genrico PnP
+ {4d36e96f-e325-11ce-bfc1-08002be10318}
- Mouse compatvel com HID
+ {4d36e972-e325-11ce-bfc1-08002be10318}
- Adaptador do Microsoft ISATAP #2
- Microsoft Kernel Debug Network Adapter
- Qualcomm Atheros AR8161 PCI-E Gigabit Ethernet Controller (NDIS 6.30)
- TAP-Windows Adapter V9 (driver 9.0.0.9)
- Teredo Tunneling Pseudo-Interface
- VIA Velocity-Family Gigabit Ethernet Adapter

+
+
+

+
+

- VMware Virtual Ethernet Adapter for VMnet1 (driver 4.2.3.0)


- VMware Virtual Ethernet Adapter for VMnet8 (driver 4.2.3.0)
{4d36e978-e325-11ce-bfc1-08002be10318}
- Porta de comunicao (COM1)
{4d36e97b-e325-11ce-bfc1-08002be10318}
- Controlador de Espaos de Armazenamento da Microsoft
{4d36e97d-e325-11ce-bfc1-08002be10318}
- Alto-falante do sistema
- ATI I/O Communications Processor PCI Bus Controller
- ATI I/O Communications Processor SMBus Controller
- ATK0110 ACPI UTILITY (driver 1043.6.0.0)
- Barramento Redirecionador de Dispositivos de rea de Trabalho Remota
- Boto de recurso fixo ACPI
- Boto ligar/desligar ACPI
- CMOS do sistema/relgio em tempo real
- Controlador de acesso direto memria
- Controlador de High Definition Audio
- Controlador de interrupo programvel
- Driver de Renderizao Bsico da Microsoft
- Driver de Vdeo Bsico da Microsoft
- Enumerador de Adaptador de Rede Virtual NDIS
- Enumerador de Barramento de Composio
- Enumerador de Barramento de Raiz UMBus
- Enumerador de Dispositivos de Software Plug and Play
- Enumerador de Unidade Virtual Microsoft
- Gerenciador de Volumes
- Interface de Gerenciamento do Microsoft Windows para ACPI
- Microsoft ACPI-Compliant System
- Microsoft System Management BIOS Driver
- PCI bus
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard ISA bridge
- PCI standard PCI-to-PCI bridge
- PCI standard PCI-to-PCI bridge
- PCI standard PCI-to-PCI bridge
- Placa de sistema
- Processador de dados numricos
- Recursos da placa-me
- Recursos da placa-me
- Recursos da placa-me
- Recursos da placa-me
- Recursos da placa-me
- Timer de eventos de alta preciso
- Timer do sistema
- VMware VMCI Host Device (driver 9.5.10.0)
{50127dc3-0f36-415e-a6cc-4cb3be910b65}
- AMD Athlon(tm) II X3 455 Processor
- AMD Athlon(tm) II X3 455 Processor
- AMD Athlon(tm) II X3 455 Processor
{533c5b84-ec70-11d2-9505-00c04f79deaf}
- Cpia de sombra de volume genrica
{62f9c741-b25a-46ce-b54c-9bccce08b6f2}
- Barramento do Adaptador de Transio IPv4 IPv6 da Microsoft
- MARI-PC
- Microsoft Device Association Root Enumerator

- PEDRO: Suporte:
- RAFAEL: Rafael Meyer:
- RECEPCAOPONTO
+ {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo de Entrada USB
- Dispositivo definido pelo fornecedor compatvel com HID
- Tela sensvel ao toque compatvel com HID
+ {c166523c-fe0c-4a94-a586-f1a80cfbbf3e}
- Alto-falantes (Dispositivo de High Definition Audio)
- Microfone (Dispositivo de High Definition Audio)
cpu
eax
ebx
ecx
edx
esi
edi
eip
esp
ebp

registers:
= 0ecfde80
= 0edb45e8
= 00000000
= 04fa2868
= 0ecfde80
= 00000005
= 00907962
= 0018e200
= 0018e248

stack dump:
0018e200 62
0018e210 14
0018e220 80
0018e230 50
0018e240 e8
0018e250 74
0018e260 10
0018e270 00
0018e280 03
0018e290 00
0018e2a0 08
0018e2b0 70
0018e2c0 90
0018e2d0 00
0018e2e0 85
0018e2f0 80
0018e300 24
0018e310 24
0018e320 00
0018e330 d0

79
e2
de
e2
45
e2
c2
00
00
00
e3
74
c0
e3
84
0d
e3
e3
00
ea

disassembling:
[...]
02b6cc6f
02b6cc74 246
02b6cc77 241
02b6cc7a
02b6cc80 247
02b6cc83
>
ecuteMethod
02b6cc88 248
02b6cc8b
02b6cc91
02b6cc96
02b6cc9b

90
18
cf
18
db
18
d8
00
00
00
18
01
d8
18
9b
61
18
18
00
ef

00
00
0e
00
0e
00
0e
00
00
00
00
0f
0e
00
00
0b
00
00
00
0d

de
62
05
38
00
38
00
a0
70
00
38
90
00
90
3c
00
9a
d0
54
70

fa
79
00
ac
00
ac
00
e2
74
00
ac
c0
00
c0
aa
00
bf
ea
e3
74

ed
90
00
40
00
40
00
18
01
00
40
d8
00
d8
9b
00
9d
ef
18
01

0e
00
00
00
00
00
00
00
0f
00
00
0e
00
0e
00
01
00
0d
00
0f

01
80
48
48
68
68
98
38
90
dc
dc
00
d8
90
60
90
3c
70
c4
c8

00
de
e2
e2
e2
e2
e2
ac
c0
e2
e2
00
41
fd
a1
c0
e3
74
bc
3f

call
inc
dec
jnz
mov
call

-$2761e54 ($40ae20)
dword ptr [ebp-$10]
dword ptr [ebp-$1c]
loc_2b6cbd1
eax, [ebp-$14]
-$1ec1450 ($cab838)

mov
mov
mov
call
test

eax, [ebp-$14]
eax, [eax+$1e0]
edx, $2b6ce68
-$24331ef ($739aac)
eax, eax

00
cf
18
18
18
18
18
40
d8
18
18
00
61
5b
63
d8
18
01
9d
90

00
0e
00
00
00
00
00
00
0e
00
00
00
0b
10
0d
0e
00
0f
00
00

07
e8
30
05
e7
03
d4
98
00
87
03
00
80
00
40
28
38
00
03
78

00
45
e2
00
78
00
d8
e2
00
9e
00
00
0d
e3
6b
f1
ac
00
00
e3

00
db
18
00
90
00
9a
18
00
9b
00
00
61
18
f3
ed
40
00
00
18

00
0e
00
00
00
00
00
00
00
00
00
00
0b
00
0f
0f
00
00
00
00

by..............
....by.......E..
........H...0...
P...8.@.H.......
.E......h....x..
t...8.@.h.......
................
........8.@.....
....pt..........
................
....8.@.........
pt..............
.........Aa...a.
..........[.....
....<...`.c.@k..
..a.........(...
$.......<...8.@.
$.......pt......
....T...........
....pt...?..x...

; System.@DoneExcept

; Data.SqlExpr.TSqlServerMethod.Ex

; Data.DB.TParams.FindParam

[...]

Você também pode gostar