bug report

9
date/time : 2016-03-22, 19:28:18, 631ms computer name : DESKTOP-4JK6TG7 user name : Tommy <admin> registered owner : Tommy operating system : Windows NT New x64 build 9200 system language : English system up time : 6 days 22 hours program up time : 28 seconds processors : 8x Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz physical memory : 5761/8091 MB (free/total) free disk space : (C:) 57.76 GB (D:) 113.45 GB display mode : 1536x864, 32 bit process id : $367c allocated memory : 38.13 MB executable : RetunRO-Patcher.exe exec. date/time : 2016-03-09 19:14 version : 2.6.1.66 compiled with : Delphi 2010 madExcept version : 3.0l callstack crc : $df3be962, $6348d7f0, $6348d7f0 count : 2 exception number : 1 exception class : EAccessViolation exception message : Access violation at address 005140E7 in module 'RetunRO-Patc her.exe'. Read of address 00000010. main thread ($3020): 005140e7 +00f RetunRO-Patcher.exe Forms TCustomForm.IsFormSizeStored 005140cd +005 RetunRO-Patcher.exe Forms TCustomForm.IsClientSizeStore d 005167e3 +58b RetunRO-Patcher.exe Forms TCustomForm.CreateParams 004f3002 +02e RetunRO-Patcher.exe Controls TWinControl.CreateWnd 00512aed +005 RetunRO-Patcher.exe Forms TScrollingWinControl.CreateWn d 0051685e +00a RetunRO-Patcher.exe Forms TCustomForm.CreateWnd 004f3552 +016 RetunRO-Patcher.exe Controls TWinControl.CreateHandle 004f722c +01c RetunRO-Patcher.exe Controls TWinControl.HandleNeeded 004f7239 +005 RetunRO-Patcher.exe Controls TWinControl.GetHandle 0051c511 +02d RetunRO-Patcher.exe Forms GetTopMostWindows 74da3a75 +015 user32.dll EnumWindows 0051c5c5 +02d RetunRO-Patcher.exe Forms TApplication.DoNormalizeTopMo sts 0051c69a +002 RetunRO-Patcher.exe Forms TApplication.NormalizeTopMost s 0051ced0 +31c RetunRO-Patcher.exe Forms TApplication.WndProc 0049f5b8 +014 RetunRO-Patcher.exe Classes StdWndProc 77e58f34 +034 ntdll.dll KiUserCallbackDispatcher 74da92ba +00a user32.dll DestroyWindow 00580ceb +01f RetunRO-Patcher.exe OleCtrls TOleControl.Destroy 004f18a6 +0ae RetunRO-Patcher.exe Controls TWinControl.Destroy 00512ac4 +038 RetunRO-Patcher.exe Forms TScrollingWinControl.Destroy 005138bd +0f9 RetunRO-Patcher.exe Forms TCustomForm.Destroy 0049e2c3 +057 RetunRO-Patcher.exe Classes TComponent.DestroyComponents 005118b9 +035 RetunRO-Patcher.exe Forms DoneApplication 0046ed76 +026 RetunRO-Patcher.exe SysUtils DoExitProc 00406669 +065 RetunRO-Patcher.exe System 985 +0 @Halt0 00618d33 +3af RetunRO-Patcher.exe Thor 236 +72 initialization 778b38f2 +022 KERNEL32.DLL BaseThreadInitThunk thread $26b0:

Upload: tommy-tomz-arisandy

Post on 14-Jul-2016

21 views

Category:

Documents


3 download

DESCRIPTION

ffff

TRANSCRIPT

date/time : 2016-03-22, 19:28:18, 631mscomputer name : DESKTOP-4JK6TG7user name : Tommy <admin>registered owner : Tommyoperating system : Windows NT New x64 build 9200system language : Englishsystem up time : 6 days 22 hoursprogram up time : 28 secondsprocessors : 8x Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHzphysical memory : 5761/8091 MB (free/total)free disk space : (C:) 57.76 GB (D:) 113.45 GBdisplay mode : 1536x864, 32 bitprocess id : $367callocated memory : 38.13 MBexecutable : RetunRO-Patcher.exeexec. date/time : 2016-03-09 19:14version : 2.6.1.66compiled with : Delphi 2010madExcept version : 3.0lcallstack crc : $df3be962, $6348d7f0, $6348d7f0count : 2exception number : 1exception class : EAccessViolationexception message : Access violation at address 005140E7 in module 'RetunRO-Patcher.exe'. Read of address 00000010.

main thread ($3020):005140e7 +00f RetunRO-Patcher.exe Forms TCustomForm.IsFormSizeStored005140cd +005 RetunRO-Patcher.exe Forms TCustomForm.IsClientSizeStored005167e3 +58b RetunRO-Patcher.exe Forms TCustomForm.CreateParams004f3002 +02e RetunRO-Patcher.exe Controls TWinControl.CreateWnd00512aed +005 RetunRO-Patcher.exe Forms TScrollingWinControl.CreateWnd0051685e +00a RetunRO-Patcher.exe Forms TCustomForm.CreateWnd004f3552 +016 RetunRO-Patcher.exe Controls TWinControl.CreateHandle004f722c +01c RetunRO-Patcher.exe Controls TWinControl.HandleNeeded004f7239 +005 RetunRO-Patcher.exe Controls TWinControl.GetHandle0051c511 +02d RetunRO-Patcher.exe Forms GetTopMostWindows74da3a75 +015 user32.dll EnumWindows0051c5c5 +02d RetunRO-Patcher.exe Forms TApplication.DoNormalizeTopMosts0051c69a +002 RetunRO-Patcher.exe Forms TApplication.NormalizeTopMosts0051ced0 +31c RetunRO-Patcher.exe Forms TApplication.WndProc0049f5b8 +014 RetunRO-Patcher.exe Classes StdWndProc77e58f34 +034 ntdll.dll KiUserCallbackDispatcher74da92ba +00a user32.dll DestroyWindow00580ceb +01f RetunRO-Patcher.exe OleCtrls TOleControl.Destroy004f18a6 +0ae RetunRO-Patcher.exe Controls TWinControl.Destroy00512ac4 +038 RetunRO-Patcher.exe Forms TScrollingWinControl.Destroy005138bd +0f9 RetunRO-Patcher.exe Forms TCustomForm.Destroy0049e2c3 +057 RetunRO-Patcher.exe Classes TComponent.DestroyComponents005118b9 +035 RetunRO-Patcher.exe Forms DoneApplication0046ed76 +026 RetunRO-Patcher.exe SysUtils DoExitProc00406669 +065 RetunRO-Patcher.exe System 985 +0 @Halt000618d33 +3af RetunRO-Patcher.exe Thor 236 +72 initialization778b38f2 +022 KERNEL32.DLL BaseThreadInitThunk

thread $26b0:

778b38f2 +22 KERNEL32.DLL BaseThreadInitThunk

thread $3fb4:778b38f2 +22 KERNEL32.DLL BaseThreadInitThunk

thread $2ba8:778b38f2 +22 KERNEL32.DLL BaseThreadInitThunk

thread $2fb4:778b38f2 +22 KERNEL32.DLL BaseThreadInitThunk

thread $14a0:778b38f2 +22 KERNEL32.DLL BaseThreadInitThunk

thread $2248:76e3a324 +104 KERNELBASE.dll WaitForMultipleObjectsEx00464631 +00d RetunRO-Patcher.exe madExcept CallThreadProcSafe0046469b +037 RetunRO-Patcher.exe madExcept ThreadExceptFrame778b38f2 +022 KERNEL32.DLL BaseThreadInitThunk>> created by main thread ($3020) at:74c7484b +000 combase.dll

thread $2810:778b38f2 +22 KERNEL32.DLL BaseThreadInitThunk

thread $42e8:778b38f2 +22 KERNEL32.DLL BaseThreadInitThunk

thread $1810:778b38f2 +22 KERNEL32.DLL BaseThreadInitThunk

thread $2284:778b38f2 +22 KERNEL32.DLL BaseThreadInitThunk

thread $2144:76e3a324 +104 KERNELBASE.dll WaitForMultipleObjectsEx74d8c465 +175 user32.dll MsgWaitForMultipleObjectsEx74bf6fd9 +089 combase.dll CoWaitForMultipleHandles778b38f2 +022 KERNEL32.DLL BaseThreadInitThunk

modules:00400000 RetunRO-Patcher.exe 2.6.1.66 D:\Astaroth Ragnarok Online_25be90000 MSHTML.dll 11.0.10586.0 C:\Windows\SYSTEM3263760000 ieframe.dll 11.0.10586.0 C:\Windows\SYSTEM3264bb0000 ieapfltr.dll 11.0.10586.0 C:\Windows\SYSTEM3264d30000 srpapi.dll 6.2.10586.0 C:\Windows\SYSTEM3264d50000 olepro32.dll 6.2.10586.0 C:\Windows\SYSTEM3264d70000 apphelp.dll 6.2.10586.0 C:\Windows\system3266120000 MLANG.dll 6.2.10586.0 C:\Windows\SYSTEM326a620000 twinapi.appcore.dll 6.2.10586.0 C:\Windows\system326a6f0000 dcomp.dll 6.2.10586.0 C:\Windows\system326bee0000 d3d11.dll 6.2.10586.0 C:\Windows\system326c700000 iertutil.dll 11.0.10586.0 C:\Windows\SYSTEM326c9d0000 urlmon.dll 11.0.10586.0 C:\Windows\SYSTEM326cbd0000 fwbase.dll 6.2.10586.0 C:\Windows\SYSTEM326d2d0000 dataexchange.dll 6.2.10586.0 C:\Windows\system326d320000 dxgi.dll 6.2.10586.0 C:\Windows\system326dd50000 WININET.dll 11.0.10586.0 C:\Windows\SYSTEM326df60000 comctl32.dll 6.10.10586.0 C:\Windows\WinSxS\x86_m

icrosoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da45286e4c0000 wsock32.dll 6.2.10586.0 C:\Windows\SYSTEM326e4d0000 DAVHLPR.DLL 6.2.10586.0 C:\Windows\SYSTEM326e8b0000 uxtheme.dll 6.2.10586.0 C:\Windows\system326ec80000 winspool.drv 6.2.10586.0 C:\Windows\SYSTEM326ecf0000 Fwpuclnt.dll 6.2.10586.0 C:\Windows\SYSTEM326f990000 Secur32.dll 6.2.10586.0 C:\Windows\SYSTEM326f9d0000 CRYPTSP.dll 6.2.10586.0 C:\Windows\SYSTEM3270c80000 msimg32.dll 6.2.10586.0 C:\Windows\SYSTEM3272050000 WINNSI.DLL 6.2.10586.0 C:\Windows\SYSTEM32720d0000 rasadhlp.dll 6.2.10586.0 C:\Windows\System3272110000 DNSAPI.dll 6.2.10586.0 C:\Windows\SYSTEM3273430000 ondemandconnroutehelper.dll 6.2.10586.0 C:\Windows\SYSTEM3273450000 bcrypt.dll 6.2.10586.0 C:\Windows\SYSTEM3273900000 PROPSYS.dll 7.0.10586.0 C:\Windows\SYSTEM3273ab0000 mswsock.dll 6.2.10586.0 C:\Windows\system3273b10000 dwmapi.dll 6.2.10586.0 C:\Windows\system32741f0000 version.dll 6.2.10586.0 C:\Windows\SYSTEM3274200000 winhttp.dll 6.2.10586.0 C:\Windows\SYSTEM3274850000 IPHLPAPI.DLL 6.2.10586.0 C:\Windows\SYSTEM3274a20000 CRYPTBASE.dll 6.2.10586.0 C:\Windows\SYSTEM3274a30000 SspiCli.dll 6.2.10586.0 C:\Windows\SYSTEM3274b00000 RPCRT4.dll 6.2.10586.0 C:\Windows\SYSTEM3274bb0000 combase.dll 6.2.10586.0 C:\Windows\SYSTEM3274d70000 user32.dll 6.2.10586.0 C:\Windows\SYSTEM3274ec0000 sechost.dll 6.2.10586.0 C:\Windows\SYSTEM3274f70000 shlwapi.dll 6.2.10586.0 C:\Windows\SYSTEM3274fc0000 comdlg32.dll 6.2.10586.0 C:\Windows\SYSTEM32750c0000 bcryptPrimitives.dll 6.2.10586.0 C:\Windows\SYSTEM3275120000 windows.storage.dll 6.2.10586.0 C:\Windows\SYSTEM3275620000 MSCTF.dll 6.2.10586.0 C:\Windows\SYSTEM3275740000 shell32.dll 6.2.10586.0 C:\Windows\SYSTEM3276c20000 NSI.dll 6.2.10586.0 C:\Windows\SYSTEM3276c30000 MSASN1.dll 6.2.10586.0 C:\Windows\SYSTEM3276c40000 oleaut32.dll 6.2.10586.0 C:\Windows\SYSTEM3276ce0000 cfgmgr32.dll 6.2.10586.0 C:\Windows\SYSTEM3276d20000 WS2_32.dll 6.2.10586.0 C:\Windows\SYSTEM3276d80000 KERNELBASE.dll 6.2.10586.0 C:\Windows\SYSTEM3277070000 advapi32.dll 6.2.10586.0 C:\Windows\SYSTEM32770f0000 kernel.appcore.dll 6.2.10586.0 C:\Windows\SYSTEM3277100000 GDI32.dll 6.2.10586.0 C:\Windows\SYSTEM32776d0000 powrprof.dll 6.2.10586.0 C:\Windows\SYSTEM3277720000 ole32.dll 6.2.10586.0 C:\Windows\SYSTEM3277810000 shcore.dll 6.2.10586.0 C:\Windows\SYSTEM32778a0000 KERNEL32.DLL 6.2.10586.0 C:\Windows\SYSTEM32779e0000 clbcatq.dll 2001.12.10941.16384 C:\Windows\SYSTEM3277a70000 IMM32.DLL 6.2.10586.0 C:\Windows\SYSTEM3277aa0000 NETAPI32.dll 6.2.10586.0 C:\Windows\SYSTEM3277ac0000 profapi.dll 6.2.10586.0 C:\Windows\SYSTEM3277ae0000 FirewallAPI.dll 6.2.10586.0 C:\Windows\SYSTEM3277b40000 msvcrt.dll 7.0.10586.0 C:\Windows\SYSTEM3277c60000 CRYPT32.dll 6.2.10586.0 C:\Windows\SYSTEM3277de0000 ntdll.dll 6.2.10586.0 C:\Windows\SYSTEM32

processes:0000 Idle 0 0 00004 System 0 0 00188 smss.exe 0 0 00290 csrss.exe 0 0 0

02f4 wininit.exe 0 0 00374 services.exe 0 0 0037c lsass.exe 0 0 003d8 svchost.exe 0 0 0007c svchost.exe 0 0 00250 svchost.exe 0 0 00210 svchost.exe 0 0 003b0 svchost.exe 0 0 003ec svchost.exe 0 0 00478 WUDFHost.exe 0 0 004d4 svchost.exe 0 0 00504 nvvsvc.exe 0 0 0056c igfxCUIService.exe 0 0 00574 svchost.exe 0 0 005e8 svchost.exe 0 0 0071c AsLdrSrv.exe 0 0 0072c GFNEXSrv.exe 0 0 0077c IntelCpHeciSvc.exe 0 0 007cc spoolsv.exe 0 0 008d4 dasHost.exe 0 0 00930 AdminService.exe 0 0 00948 AsusGameFirstService.exe 0 0 00954 AsusWSWinService.exe 0 0 00960 CxAudMsg64.exe 0 0 00968 esif_uf.exe 0 0 009a8 SASrv.exe 0 0 009b8 svchost.exe 0 0 009f8 wpsupdatesvr.exe 0 0 00a1c mfevtps.exe 0 0 00a28 mfemms.exe 0 0 00a3c MemopalCrawler.exe 0 0 00a8c NvNetworkService.exe 0 0 00aa0 nvstreamsvc.exe 0 0 00ad0 GfExperienceService.exe 0 0 00ad8 sqlwriter.exe 0 0 00aec svchost.exe 0 0 00b48 sqlservr.exe 0 0 00b88 svchost.exe 0 0 00618 TeamViewer_Service.exe 0 0 00c64 mfevtps.exe 0 0 00df8 mfefire.exe 0 0 00f34 WmiPrvSE.exe 0 0 01230 PresentationFontCache.exe 0 0 01678 SearchIndexer.exe 0 0 01980 mfefire.exe 0 0 019d4 McAPExe.exe 0 0 01a2c mcshield.exe 0 0 00828 svchost.exe 0 0 025c4 McCSPServiceHost.exe 0 0 0210c WmiPrvSE.exe 0 0 00b74 GamesAppIntegrationService.exe 0 0 01608 jhi_service.exe 0 0 0178c LMS.exe 0 0 0277c XtuService.exe 0 0 02720 ICCProxy.exe 0 0 02768 isa.exe 0 0 0203c McCBEntAndInstru.exe 0 0 00dc4 conhost.exe 0 0 021c8 McUICnt.exe 0 0 0112c dllhost.exe 0 0 0

0f64 PEFService.exe 0 0 01c70 McSvHost.exe 0 0 01d80 mcsacore.exe 0 0 02e2c dllhost.exe 0 0 03090 svchost.exe 0 0 03ebc csrss.exe 16 0 03c74 winlogon.exe 16 0 0351c dwm.exe 16 0 0298c audiodg.exe 0 0 03bc0 nvxdsync.exe 16 0 02260 nvvsvc.exe 16 0 027bc HControl.exe 16 0 030bc esif_assist_64.exe 16 4 2 normal C:\Windows\Temp\DPTF4278 nvtray.exe 16 81 4 normal C:\Program Files\NVIDIA Corporation\Display436c McUICnt.exe 16 15 28 normal C:\Program Files\Common Files\McAfee\platform3178 sihost.exe 16 4 20 normal C:\Windows\System323b14 USBChargerPlus.exe 16 35 10 below normal C:\Program Files (x86)\ASUS\USBChargerPlus38c4 ROGGamingKey.exe 16 42 10 high C:\Program Files (x86)\ASUS\ROG Gaming Center11a0 taskhostw.exe 16 13 18 normal C:\Windows\System32340c ACMON.exe 16 31 4 below normal C:\Program Files (x86)\ASUS\Splendid37c0 asusgiftbox.exe 16 15 22 below normal C:\Program Files (x86)\ASUS\Giftbox1ac0 NvBackend.exe 16 4 10 normal C:\Program Files (x86)\NVIDIA Corporation\Update Core3410 RuntimeBroker.exe 16 35 24 normal C:\Windows\System321f28 explorer.exe 16 269 252 normal C:\Windows3500 igfxEM.exe 16 13 14 normal C:\Windows\System323710 igfxHK.exe 16 13 11 normal C:\Windows\System32282c igfxTray.exe 16 7 4 normal C:\Windows\System322770 ATKOSD2.exe 16 18 16 normal C:\Program Files (x86)\ASUS\ATK Package\ATKOSD20e54 taskeng.exe 0 0 03de8 DMedia.exe 16 10 5 normal C:\Program Files (x86)\ASUS\ATK Package\ATK Media2968 NvStreamNetworkService.exe 0 0 02c14 nvstreamsvc.exe 16 0 0358c conhost.exe 0 0 03c78 conhost.exe 16 0 04208 SearchProtocolHost.exe 0 0 03f98 ShellExperienceHost.exe 16 4 49 normal C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy3d88 SearchUI.exe 16 17 61 normal C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy2b70 AsusTPLoader.exe 16 81 33 below normal C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x6415a4 asusgiftbox.exe 16 4 14 below normal C:\Program Files (x86)\ASUS\Giftbox3f8c asusgiftbox.exe 16 4 1 below normal C:\Program Files (x86)\ASUS\Giftbox3870 asusgiftbox.exe 16 4 1 below normal C:\Program Files (x86)\ASUS\Giftbox2b38 AsusTPCenter.exe 16 80 35 below normal C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x640868 AsusTPHelper.exe 16 18 15 below normal C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64

3c94 CAudioFilterAgent64.exe 16 9 6 normal C:\Program Files\CONEXANT\cAudioFilterAgent3d64 OneDrive.exe 16 22 22 normal C:\Users\Tommy\AppData\Local\Microsoft\OneDrive2f34 CheckNDISPort_df.exe 16 16 14 normal C:\Program Files (x86)\BOLT Mobile WiFi Hostless Modem\BOLT! 4G MF900a30 CancelAutoPlay_df.exe 16 16 12 normal C:\Program Files (x86)\BOLT Mobile WiFi Hostless Modem\BOLT! 4G MF901fec SmartAudio.exe 16 31 31 normal C:\Program Files\CONEXANT\SAII14d0 wuapihost.exe 16 4 1 normal C:\Windows\System322c58 svchost.exe 16 4 1 normal C:\Windows\System322ee4 taskhostw.exe 16 4 5 normal C:\Windows\System323660 InstallAgent.exe 16 4 2 normal C:\Windows\System323cd4 CompatTelRunner.exe 0 0 034ec FIRSTRUN.EXE 16 63 44 below normal C:\Program Files (x86)\Microsoft Office\Office151fa0 LiveUpdate.exe 16 42 37 below normal C:\Program Files (x86)\ASUS\ASUS Live Update42c8 conhost.exe 0 0 0276c CompatTelRunner.exe 0 0 03d5c PING.EXE 16 0 0 normal C:\Windows\System32426c conhost.exe 16 22 13 normal C:\Windows\System32367c RetunRO-Patcher.exe 16 94 46 normal D:\Astaroth Ragnarok Online_2

hardware:+ {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc} - Fax - Foxit PhantomPDF Printer - Microsoft Print to PDF - Microsoft XPS Document Writer - Root Print Queue+ {36fc9e60-c465-11cf-8056-444553540000} - Intel(R) USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) - USB Composite Device - USB Root Hub (xHCI)+ {4d36e965-e325-11ce-bfc1-08002be10318} - Slimtype DVD A DA8A6SH+ {4d36e966-e325-11ce-bfc1-08002be10318} - ACPI x64-based PC+ {4d36e967-e325-11ce-bfc1-08002be10318} - HGST HTS541010A9E680 - SAMSUNG MZNLF128HCHP-00004+ {4d36e968-e325-11ce-bfc1-08002be10318} - Intel(R) HD Graphics 530 (driver 20.19.15.4300) - NVIDIA GeForce GTX 960M (driver 10.18.13.5354)+ {4d36e96a-e325-11ce-bfc1-08002be10318} - Intel(R) 100 Series/C230 Chipset Family SATA AHCI Controller (driver 14.5.0.1081)+ {4d36e96b-e325-11ce-bfc1-08002be10318} - PC/AT Enhanced PS/2 Keyboard (101/102-Key)+ {4d36e96c-e325-11ce-bfc1-08002be10318} - ALFALINK BTS33 Hands-Free - ALFALINK BTS33 Stereo - Conexant SmartAudio HD (driver 8.66.16.50) - Intel(R) Display Audio (driver 8.20.0.580) - NVIDIA Virtual Audio Device (Wave Extensible) (WDM) (driver 1.2.28.0)+ {4d36e96e-e325-11ce-bfc1-08002be10318} - Generic PnP Monitor

+ {4d36e96f-e325-11ce-bfc1-08002be10318} - ASUS Touchpad (driver 8.0.0.19) - HID-compliant mouse+ {4d36e970-e325-11ce-bfc1-08002be10318} - Realtek PCIE CardReader (driver 10.0.10143.21278)+ {4d36e972-e325-11ce-bfc1-08002be10318} - Bluetooth Device (Personal Area Network) - Qualcomm Atheros AR956x Wireless Network Adapter (driver 10.0.0.321) - Realtek PCIe GBE Family Controller (driver 10.2.703.2015)+ {4d36e97b-e325-11ce-bfc1-08002be10318} - Microsoft Storage Spaces Controller+ {4d36e97d-e325-11ce-bfc1-08002be10318} - ACPI Fixed Feature Button - ACPI Lid - ACPI Processor Aggregator - ACPI Sleep Button - ACPI Thermal Zone - ALFALINK BTS33 Hands-Free Audio and Call Control HID Enumerator - ASUS Wireless Radio Control (driver 1.0.0.5) - Composite Bus Enumerator - High Definition Audio Controller - High precision event timer - Intel(R) 100 Series/C230 Series Chipset Family LPC Controller - A14E (driver 10.1.1.9) - Intel(R) 100 Series/C230 Series Chipset Family PCI Express Root Port #3 - A112 (driver 10.1.1.9) - Intel(R) 100 Series/C230 Series Chipset Family PCI Express Root Port #4 - A113 (driver 10.1.1.9) - Intel(R) 100 Series/C230 Series Chipset PMC - A121 (driver 10.1.1.9) - Intel(R) 100 Series/C230 Series Chipset SMBus - A123 (driver 10.1.1.9) - Intel(R) 100 Series/C230 Series Chipset Thermal subsystem - A131 (driver 10.1.1.9) - Intel(R) Management Engine Interface (driver 11.0.0.1157) - Intel(R) Power Engine Plug-in - Intel(R) Serial IO I2C Host Controller - A160 (driver 30.63.1519.7) - Intel(R) Serial IO I2C Host Controller - A161 (driver 30.63.1519.7) - Intel(R) Watchdog Timer Driver (Intel(R) WDT) (driver 11.0.0.1005) - Intel(R) Xeon(R) E3 - 1200/1500 v5/6th Gen Intel(R) Core(TM) PCIe Controller (x16) - 1901 (driver 10.1.1.9) - Legacy device - Microsoft ACPI-Compliant Embedded Controller - Microsoft ACPI-Compliant System - Microsoft Basic Display Driver - Microsoft Basic Render Driver - Microsoft System Management BIOS Driver - Microsoft UEFI-Compliant System - Microsoft Virtual Drive Enumerator - Microsoft Windows Management Interface for ACPI - Microsoft Windows Management Interface for ACPI - Motherboard resources - Motherboard resources - Motherboard resources - Motherboard resources - Motherboard resources - Motherboard resources - Motherboard resources - Motherboard resources - NDIS Virtual Network Adapter Enumerator - Numeric data processor - PCI Express Root Complex

- PCI standard host CPU bridge - Plug and Play Software Device Enumerator - Programmable interrupt controller - Remote Desktop Device Redirector Bus - System CMOS/real time clock - System timer - UMBus Root Bus Enumerator - Volume Manager+ {50127dc3-0f36-415e-a6cc-4cb3be910b65} - Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz - Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz - Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz - Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz - Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz - Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz - Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz - Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz+ {62f9c741-b25a-46ce-b54c-9bccce08b6f2} - Bluetooth - Microsoft Device Association Root Enumerator - Microsoft GS Wavetable Synth - Microsoft Passport Container Enumeration Bus - Microsoft Radio Device Enumeration Bus - Smart Card Device Enumeration Bus - Wi-Fi+ {6bdd1fc6-810f-11d0-bec7-08002be2092f} - USB2.0 HD UVC WebCam+ {72631e54-78a4-11d0-bcf7-00aa00b7b32a} - Microsoft AC Adapter - Microsoft ACPI-Compliant Control Method Battery+ {745a17a0-74d3-11d0-b6fe-00a0c90f57da} - ALFALINK BTS33 Hands-Free Call Control HID - HID-compliant vendor-defined device - HID-compliant wireless radio controls - I2C HID Device - USB Input Device+ {c166523c-fe0c-4a94-a586-f1a80cfbbf3e} - Microphone (Conexant SmartAudio HD) - Speakers (Conexant SmartAudio HD)+ {c3077fcd-9c3c-482f-9317-460712f23efd} - Intel(R) Dynamic Platform and Thermal Framework Generic Participant (driver 8.1.10600.150) - Intel(R) Dynamic Platform and Thermal Framework Generic Participant (driver 8.1.10600.150) - Intel(R) Dynamic Platform and Thermal Framework Generic Participant (driver 8.1.10600.150) - Intel(R) Dynamic Platform and Thermal Framework Generic Participant (driver 8.1.10600.150) - Intel(R) Dynamic Platform and Thermal Framework Manager (driver 8.1.10600.150) - Intel(R) Dynamic Platform and Thermal Framework Processor Participant (driver 8.1.10600.150)+ {d94ee5d8-d189-4994-83d2-f68d7d41b0e6} - Trusted Platform Module 2.0+ {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} - ALFALINK BTS33 - Microsoft Bluetooth Enumerator - Microsoft Bluetooth LE Enumerator - Qualcomm Atheros Bluetooth 4.0 (driver 10.0.1.1)+ {f2e7dd72-6468-4e36-b6f1-6488f42c1b52}

- System Firmware

cpu registers:eax = 024f0100ebx = 024f0100ecx = 0019f784edx = 00000000esi = 0051504cedi = 0019f77ceip = 005140e7esp = 0019f700ebp = 00000000

stack dump:0019f700 d2 40 51 00 00 01 4f 02 - e8 67 51 00 98 8d e1 77 [email protected] 00 00 00 00 ca d8 ff ff - f0 fa 19 00 48 f8 19 00 ............H...0019f720 00 01 4f 02 00 01 4f 02 - 00 01 4f 02 08 30 4f 00 ..O...O...O..0O.0019f730 0c f9 19 00 b0 5e 40 00 - 48 f8 19 00 ff ff ff ff .....^@.H.......0019f740 00 01 4f 02 00 01 4f 02 - 00 00 00 00 00 00 00 00 ..O...O.........0019f750 c0 00 85 00 80 00 00 00 - 90 02 85 00 0c 00 00 00 ................0019f760 84 02 85 00 15 00 00 00 - 00 00 00 00 00 00 00 00 ................0019f770 00 00 00 00 30 ee e5 77 - 0c 00 00 00 04 42 54 02 ....0..w.....BT.0019f780 00 00 00 86 00 00 0d 00 - 72 01 00 00 72 00 00 00 ........r...r...0019f790 1b 03 00 00 54 02 00 00 - 00 00 00 00 00 00 00 00 ....T...........0019f7a0 08 00 00 00 60 d4 40 00 - 00 00 00 00 00 00 00 00 ....`[email protected] 00 00 40 00 00 00 00 00 - 03 00 01 00 00 00 00 00 [email protected] 00 00 00 00 00 00 00 00 - 54 00 4d 00 61 00 69 00 ........T.M.a.i.0019f7d0 6e 00 46 00 72 00 6d 00 - 00 00 00 00 00 00 00 00 n.F.r.m.........0019f7e0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................0019f7f0 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................0019f800 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................0019f810 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................0019f820 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................0019f830 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

disassembling:[...]0040664c mov eax, $62eb1c00406651 call -$10e ($406548) ; System.ExitDll00406656 cmp byte ptr [ebx+$28], 00040665a jnz loc_4066700040665c cmp dword ptr [edi], 00040665f jz loc_40667000406661 mov eax, [edi]00406663 mov esi, eax00406665 xor eax, eax00406667 mov [edi], eax00406669 > call esi0040666b cmp dword ptr [edi], 00040666e jnz loc_40666100406670 cmp byte ptr [ebx+$28], 200406674 jnz loc_40668400406676 cmp dword ptr [$619000], 00040667d jnz loc_4066840040667f xor eax, eax00406681 mov [ebx+$c], eax00406684 call +$5d3e7 ($463a70) ; madExcept.InterceptFinalizeUnits00406689 cmp byte ptr [ebx+$28], 1[...]