Você está na página 1de 6

date/time

: 2016-09-21, 11:19:49, 31ms


computer name
: HP-PC
user name
: hp
registered owner : hp
operating system : Windows 7 build 7600
system language : Indonesian
system up time
: 23 minutes 8 seconds
program up time : 12 seconds
processors
: 2x AMD E-300 APU with Radeon(tm) HD Graphics
physical memory : 2430/3579 MB (free/total)
free disk space : (C:) 199,22 GB
display mode
: 1366x768, 32 bit
process id
: $70
allocated memory : 70,92 MB
command line
: "C:\Program Files\TeraCopy\teracopy.exe" Copy *"C:\Users\hp\
AppData\Roaming\TeraCopy\FileList.dat" "D:\TINA"
executable
: teracopy.exe
exec. date/time : 2013-12-07 16:04
version
: 2.3.0.0
compiled with
: Delphi XE2
madExcept version : 3.0o
teracopy.exe.mad : $0000a8d0, $28564387, $cb1f2015
contact name
: Hartina
contact email
: Hartina884@gmail.com
callstack crc
: $75675b3b, $be80791f, $be80791f
exception number : 1
exception class : EOutOfMemory
exception message : Out of memory.
thread $cf0:
004cee48 +388
004a60fd +00d
004a6167 +037
758b1172 +010
>> created by
758b2818 +01b

teracopy.exe segment%54
teracopy.exe segment%32
teracopy.exe segment%32
kernel32.dll
thread $c34 at:
kernel32.dll

public%4209
public%3659
public%3660
BaseThreadInitThunk
CreateThread

main thread ($14c8):


77578fbd +026 user32.dll
GetMessageW
004eafd7 +de7 teracopy.exe segment%54 public%4352
758b1172 +010 kernel32.dll
BaseThreadInitThunk
thread $a08:
77445e7a +0a ntdll.dll
NtWaitForWorkViaWorkerFactory
758b1172 +10 kernel32.dll BaseThreadInitThunk
thread $838:
77445e4a +0a ntdll.dll
NtWaitForMultipleObjects
758b1172 +10 kernel32.dll BaseThreadInitThunk
thread $1798:
77445e7a +0a ntdll.dll
NtWaitForWorkViaWorkerFactory
758b1172 +10 kernel32.dll BaseThreadInitThunk
thread $c34:
7744570a +0a
7574aba7 +59
758adaf8 +4f
004a60fd +0d
004a6167 +37

ntdll.dll
NtReadFile
KERNELBASE.dll
ReadFile
kernel32.dll
ReadFile
teracopy.exe segment%32 public%3659
teracopy.exe segment%32 public%3660

758b1172 +10 kernel32.dll


>> created by thread $e58 at:
758b2818 +1b kernel32.dll

BaseThreadInitThunk
CreateThread

modules:
00400000 teracopy.exe
2.3.0.0
C:\Program Files\TeraCopy
10000000 idmmkb.dll
6.19.9.1
C:\Program Files\Internet Download
Manager
690d0000 wsock32.dll
6.1.7600.16385
C:\Windows\system32
71110000 winmm.dll
6.1.7600.16385
C:\Windows\system32
72a60000 explorerframe.dll 6.1.7600.16385
C:\Windows\system32
73b60000 ntmarta.dll
6.1.7600.16385
C:\Windows\system32
74180000 DUI70.dll
6.1.7600.16385
C:\Windows\system32
743d0000 propsys.dll
7.0.7600.16385
C:\Windows\system32
744d0000 comctl32.dll
6.10.7600.16385
C:\Windows\WinSxS\x86_microsoft.wi
ndows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc
74840000 DUser.dll
6.1.7600.16385
C:\Windows\system32
74870000 uxtheme.dll
6.1.7600.16385
C:\Windows\system32
749f0000 version.dll
6.1.7600.16385
C:\Windows\system32
74a80000 dwmapi.dll
6.1.7600.16385
C:\Windows\system32
75420000 SspiCli.dll
6.1.7600.16385
C:\Windows\system32
754a0000 CRYPTBASE.dll
6.1.7600.16385
C:\Windows\system32
756f0000 CFGMGR32.dll
6.1.7600.16385
C:\Windows\system32
75720000 DEVOBJ.dll
6.1.7600.16385
C:\Windows\system32
75740000 KERNELBASE.dll
6.1.7600.16385
C:\Windows\system32
75850000 NSI.dll
6.1.7600.16385
C:\Windows\system32
75860000 kernel32.dll
6.1.7600.16385
C:\Windows\system32
75950000 RPCRT4.dll
6.1.7600.16385
C:\Windows\system32
75b40000 USP10.dll
1.626.7600.16385 C:\Windows\system32
75be0000 ole32.dll
6.1.7600.16385
C:\Windows\system32
75d40000 GDI32.dll
6.1.7600.16385
C:\Windows\system32
75d90000 SetupApi.dll
6.1.7600.16385
C:\Windows\system32
75f30000 comdlg32.dll
6.1.7600.16385
C:\Windows\system32
75fb0000 advapi32.dll
6.1.7600.16385
C:\Windows\system32
76050000 oleaut32.dll
6.1.7600.16385
C:\Windows\system32
760e0000 LPK.dll
6.1.7600.16385
C:\Windows\system32
761f0000 CLBCatQ.DLL
2001.12.8530.16385 C:\Windows\system32
76280000 msvcrt.dll
7.0.7600.16385
C:\Windows\system32
76330000 WS2_32.dll
6.1.7600.16385
C:\Windows\system32
763a0000 SHLWAPI.dll
6.1.7600.16385
C:\Windows\system32
76460000 shell32.dll
6.1.7600.16385
C:\Windows\system32
770b0000 WLDAP32.dll
6.1.7600.16385
C:\Windows\system32
77100000 MSCTF.dll
6.1.7600.16385
C:\Windows\system32
773e0000 IMM32.DLL
6.1.7600.16385
C:\Windows\system32
77400000 ntdll.dll
6.1.7600.16385
C:\Windows\SYSTEM32
77540000 sechost.dll
6.1.7600.16385
C:\Windows\SYSTEM32
77560000 user32.dll
6.1.7600.16385
C:\Windows\system32
processes:
0000 Idle
0004 System
0104 smss.exe
0168 csrss.exe
01c0 wininit.exe
01cc csrss.exe
0200 winlogon.exe
0214 services.exe
0234 lsass.exe
023c lsm.exe
02b0 svchost.exe

0
0
0
0
0
1
1
0
0
0
0

0
0
0
0
0
0
0
0
0
0
0

0
0
0
0
0
0
0
0
0
0
0

02fc svchost.exe
032c atiesrxx.exe
0388 svchost.exe
03a8 svchost.exe
03cc svchost.exe
0470 svchost.exe
04a8 atieclxx.exe
0508 svchost.exe
0598 wlanext.exe
05a8 conhost.exe
0604 spoolsv.exe
0630 svchost.exe
0688 taskhost.exe
06cc Dwm.exe
06dc taskeng.exe
06f8 Explorer.EXE
0754 SM?RTP.exe
075c softinfo.exe
0790 70eb3384d02f8b259b007cc711286a2c.exe
03f8 PDVD10Serv.exe
rLink\PowerDVD10
04c0 brs.exe
rLink\Shared files
056c armsvc.exe
0694 YouCamService.exe
rLink\YouCam
070c GrooveMonitor.exe
osoft Office\Office12
0784 softinfo.exe
ware Informer
0124 Seviler.exe
oaming\GameLauncher\Seviler
016c IDMan.exe
rnet Download Manager
0110 HPWriterSrv3.exe
08a0 sqlservr.exe
0958 OpenDHCPServer.exe
09a4 sqlwriter.exe
09c0 svchost.exe
09d8 ScreenShotServ.exe
0a2c QuickCapture.exe
kCapture\1.1.0.3000053
0b78 70eb3384d02f8b259b007cc711286a2c.exe
0d34 WmiPrvSE.exe
0f30 IEMonitor.exe
rnet Download Manager
0fc0 YouCam.exe
rLink\YouCam
1268 SearchIndexer.exe
12b8 CLWFLService.exe
12dc svchost.exe
1308 svchost.exe
1660 mscorsvw.exe
169c svchost.exe
16e8 svchost.exe
061c audiodg.exe
1068 svchost.exe
0070 teracopy.exe
Copy

0
0
0
0
0
0
1
0
0
0
0
0
1
1
1
1
1
1
0
1

0
0
0
0
0
0
0
0
0
0
0
0
26
17
0
768
0
0
0
9

1 9

0
0
0
0
0
0
0
0
0
0
0
0
22
2
0
450
0
0
0
7
5

normal C:\Windows\system32
high C:\Windows\system32
normal C:\Windows

normal C:\Program Files\Cybe


normal C:\Program Files\Cybe

0 0 0
1 29 49 normal C:\Program Files\Cybe
1 9

normal C:\Program Files\Micr

1 202 85 normal C:\Program Files\Soft


1 4

normal C:\Users\hp\AppData\R

1 101 71 normal C:\Program Files\Inte


0
0
0
0
0
0
1

0
0
0
0
0
0
53

0
0
0
0
0
0
7

normal C:\Program Files\Quic

1 0 0
0 0 0
1 18 16 normal C:\Program Files\Inte
1 19 9
0
0
0
0
0
0
0
0
0
1

0
0
0
0
0
0
0
0
0
140

normal C:\Program Files\Cybe

0
0
0
0
0
0
0
0
0
90 normal C:\Program Files\Tera

hardware:
+ Batteries
- Microsoft AC Adapter
- Microsoft ACPI-Compliant Control Method Battery
- Microsoft Composite Battery
+ Bluetooth Radios
- Broadcom 20702 Bluetooth 4.0 Adapter (driver 6.5.1.6650)
- Microsoft Bluetooth Enumerator
+ Computer
- ACPI x86-based PC
+ Disk drives
- WDC WD50 00BPVT-60HXZT3 SATA Disk Device
+ Display adapters
- AMD Radeon HD 6310 Graphics (driver 15.200.1062.1004)
+ DVD/CD-ROM drives
- TSSTcorp CDDVDW SU-208BB SATA CdRom Device
+ IDE ATA/ATAPI controllers
- AMD SATA Controller (driver 1.2.1.402)
+ Imaging devices
- HP Webcam-101
+ Keyboards
- Standard PS/2 Keyboard
+ Memory technology driver
- Realtek PCIE CardReader (driver 10.0.10130.28157)
+ Mice and other pointing devices
- PS/2 Compatible Mouse
+ Monitors
- Generic PnP Monitor
+ Network adapters
- Bluetooth Device (Personal Area Network)
- Broadcom 802.11n Network Adapter (driver 6.34.223.5)
- Microsoft Virtual WiFi Miniport Adapter
- Realtek PCIe FE Family Controller (driver 7.92.115.2015)
+ Processors
- AMD E-300 APU with Radeon(tm) HD Graphics
- AMD E-300 APU with Radeon(tm) HD Graphics
+ Sound, video and game controllers
- CyberLink WebCam Virtual Driver (driver 6.0.5600.0)
- High Definition Audio Device
+ Storage volume shadow copies
- Generic volume shadow copy
- Generic volume shadow copy
- Generic volume shadow copy
- Generic volume shadow copy
- Generic volume shadow copy
- Generic volume shadow copy
- Generic volume shadow copy
+ System devices
- ACPI Fixed Feature Button
- ACPI Lid
- ACPI Power Button
- ACPI Thermal Zone
- AMD SMBus (driver 5.12.0.31)
- ATI I/O Communications Processor PCI Bus Controller
- Composite Bus Enumerator
- Direct memory access controller
- File as Volume Driver
- High Definition Audio Controller
- High precision event timer
- Microsoft ACPI-Compliant Embedded Controller

- Microsoft ACPI-Compliant System


- Microsoft System Management BIOS Driver
- Microsoft Virtual Drive Enumerator Driver
- Microsoft Windows Management Interface for ACPI
- Motherboard resources
- Motherboard resources
- Numeric data processor
- PCI bus
- PCI Express standard Root Port
- PCI Express standard Root Port
- PCI Express standard Root Port
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard host CPU bridge
- PCI standard ISA bridge
- Plug and Play Software Device Enumerator
- Programmable interrupt controller
- Remote Desktop Device Redirector Bus
- System board
- System CMOS/real time clock
- System speaker
- System timer
- Terminal Server Keyboard Driver
- Terminal Server Mouse Driver
- UMBus Enumerator
- UMBus Root Bus Enumerator
- Volume Manager
+ Universal Serial Bus controllers
- Standard Enhanced PCI to USB Host Controller (driver 1.0.0.5)
- Standard Enhanced PCI to USB Host Controller (driver 1.0.0.5)
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- USB Composite Device
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
disassembling:
[...]
004cee34 mov
004cee38 mov
004cee3b add
004cee3e mov
004cee43 call
004cee48 > mov
004cee4b mov
004cee4e xor
004cee50 call
004cee55 jz
004cee5b mov
[...]

byte ptr [eax+$2c], 0


eax, [ebp-$c]
eax, $28
edx, $4cf438
-$c7884 ($4075c4)
; segment%0.public%300 (teracopy.exe)
eax, [ebp-$c]
eax, [eax+$c]
edx, edx
-$c6ecd ($407f88)
; segment%0.public%344 (teracopy.exe)
loc_4cef42
eax, [ebp-$c]

error details:
eror

Você também pode gostar