Sunteți pe pagina 1din 6

date/time

: 2016-02-29, 14:50:07, 685ms


computer name
: USER-PC
user name
: user <admin>
registered owner : Microsoft / Microsoft
operating system : Windows 7 x64 Service Pack 1 build 7601
system language : English
system up time
: 4 days 3 hours
program up time : 3 minutes 32 seconds
processors
: 4x Intel(R) Core(TM) i3-3240 CPU @ 3.40GHz
physical memory : 1310/4062 MB (free/total)
free disk space : (C:) 85.58 GB
display mode
: 1600x900, 32 bit
process id
: $1600
allocated memory : 48.76 MB
command line
: "C:\Program Files\TeraCopy\teracopy.exe" Copy *"C:\Users\use
r\AppData\Roaming\TeraCopy\FileList.dat" "G:\FOTO AGUS TITIP"
executable
: teracopy.exe
exec. date/time : 2013-12-07 16:04
version
: 2.3.0.0
compiled with
: Delphi XE2
madExcept version : 3.0o
teracopy.exe.mad : $0000a8d0, $28564387, $cb1f2015
contact name
: aghoose
contact email
: aghoose@gmail.com
callstack crc
: $75675b3b, $be80791f, $be80791f
exception number : 1
exception class : EOutOfMemory
exception message : Out of memory.
thread $a2c:
004cee48 +388
004a60fd +00d
004a6167 +037
778d33a8 +010
>> created by
778d34d0 +01b

teracopy.exe
teracopy.exe
teracopy.exe
kernel32.dll
thread $17cc
kernel32.dll

segment%54 public%4209
segment%32 public%3659
segment%32 public%3660
BaseThreadInitThunk
at:
CreateThread

main thread ($568):


757e7908 +026 user32.dll
GetMessageW
004eafd7 +de7 teracopy.exe segment%54 public%4352
778d33a8 +010 kernel32.dll
BaseThreadInitThunk
thread $fa0:
77e10156 +0e ntdll.dll
NtWaitForMultipleObjects
778d33a8 +10 kernel32.dll BaseThreadInitThunk
thread $17cc:
77e0f8fe +00e
773edd4e +112
778d3f02 +04f
004a60fd +00d
004a6167 +037
778d33a8 +010
>> created by
778d34d0 +01b

ntdll.dll
KERNELBASE.dll
kernel32.dll
teracopy.exe segment%32
teracopy.exe segment%32
kernel32.dll
thread $678 at:
kernel32.dll

modules:
00400000 teracopy.exe
10000000 idmmkb.dll
wnload Manager

2.3.0.0
6.19.9.1

NtReadFile
ReadFile
ReadFile
public%3659
public%3660
BaseThreadInitThunk
CreateThread
C:\Program Files\TeraCopy
C:\Program Files (x86)\Internet Do

6a790000 DUI70.dll
6.1.7600.16385
C:\Windows\system32
6aa20000 explorerframe.dll 6.1.7601.17514
C:\Windows\system32
70510000 propsys.dll
7.0.7601.17514
C:\Windows\system32
707c0000 dwmapi.dll
6.1.7600.16385
C:\Windows\system32
70890000 uxtheme.dll
6.1.7600.16385
C:\Windows\system32
70910000 comctl32.dll
6.10.7601.17514
C:\Windows\WinSxS\x86_microsoft.wi
ndows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2
73620000 winmm.dll
6.1.7601.17514
C:\Windows\system32
73940000 DUser.dll
6.1.7600.16385
C:\Windows\system32
74720000 wsock32.dll
6.1.7600.16385
C:\Windows\system32
75600000 ntmarta.dll
6.1.7600.16385
C:\Windows\system32
75690000 version.dll
6.1.7600.16385
C:\Windows\system32
75760000 CRYPTBASE.dll
6.1.7600.16385
C:\Windows\syswow64
75770000 SspiCli.dll
6.1.7601.17514
C:\Windows\syswow64
757d0000 user32.dll
6.1.7601.17514
C:\Windows\syswow64
758d0000 WLDAP32.dll
6.1.7601.17514
C:\Windows\syswow64
75920000 MSCTF.dll
6.1.7600.16385
C:\Windows\syswow64
759f0000 comdlg32.dll
6.1.7601.17514
C:\Windows\syswow64
75a90000 shell32.dll
6.1.7601.17514
C:\Windows\syswow64
766e0000 ole32.dll
6.1.7601.17514
C:\Windows\syswow64
76840000 GDI32.dll
6.1.7601.17514
C:\Windows\syswow64
76a20000 oleaut32.dll
6.1.7601.17514
C:\Windows\syswow64
76cf0000 SetupApi.dll
6.1.7601.17514
C:\Windows\syswow64
76e90000 ADVAPI32.dll
6.1.7601.18247
C:\Windows\syswow64
76f40000 LPK.dll
6.1.7600.16385
C:\Windows\syswow64
76f50000 WS2_32.dll
6.1.7601.17514
C:\Windows\syswow64
76f90000 SHLWAPI.dll
6.1.7601.17514
C:\Windows\syswow64
76ff0000 USP10.dll
1.626.7601.17514 C:\Windows\syswow64
77140000 IMM32.DLL
6.1.7601.17514
C:\Windows\system32
773b0000 CFGMGR32.dll
6.1.7601.17514
C:\Windows\syswow64
773e0000 KERNELBASE.dll
6.1.7601.18015
C:\Windows\syswow64
77650000 CLBCatQ.DLL
2001.12.8530.16385 C:\Windows\syswow64
776e0000 sechost.dll
6.1.7600.16385
C:\Windows\SysWOW64
77700000 RPCRT4.dll
6.1.7601.17514
C:\Windows\syswow64
77800000 msvcrt.dll
7.0.7600.16385
C:\Windows\syswow64
778c0000 kernel32.dll
6.1.7601.18015
C:\Windows\syswow64
779d0000 DEVOBJ.dll
6.1.7600.16385
C:\Windows\syswow64
77dc0000 NSI.dll
6.1.7600.16385
C:\Windows\syswow64
77df0000 ntdll.dll
6.1.7601.18247
C:\Windows\SysWOW64
processes:
0000 Idle
0004 System
0170 smss.exe
0210 csrss.exe
0250 wininit.exe
026c csrss.exe
0294 services.exe
02b4 winlogon.exe
02bc lsass.exe
02c4 lsm.exe
0350 svchost.exe
0390 nvvsvc.exe
03a8 nvSCPAPISvr.exe
03dc svchost.exe
0224 svchost.exe
028c svchost.exe
03cc svchost.exe
0410 svchost.exe
04f0 svchost.exe

0
0
0
0
0
1
0
1
0
0
0
0
0
0
0
0
0
0
0

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0

0548 nvxdsync.exe
0550 nvvsvc.exe
05a0 spoolsv.exe
05bc svchost.exe
0690 taskhost.exe
06b8 taskeng.exe
06d4 dwm.exe
0730 ProcessGovernor.exe
0740 ProcessLasso.exe
0748 SM?RTP.exe
adav
0754 explorer.exe
0498 RtkNGUI64.exe
081c egui.exe
086c armsvc.exe
0888 AstSrv.exe
08a8 HD-LogRotatorService.exe
08d8 CLHNServiceForPowerDVD.exe
095c ekrn.exe
0980 HeciServer.exe
099c iSCTAgent.exe
09b8 Jhi_service.exe
0a0c c2c_service.exe
0a6c ss_conn_service.exe
0a88 svchost.exe
0ab4 TeamViewer_Service.exe
0ae8 WDDriveService.exe
0b08 NvBackend.exe
IDIA Corporation\Update Core
0b74 WDBackupEngine.exe
0be0 IDMan.exe
ternet Download Manager
0c5c iSCTsysTray.exe
tel(R) Smart Connect Technology
0c9c rundll32.exe
0de4 nvtray.exe
0e74 WDDriveAutoUnlock.exe
stern Digital\WD Security
0e7c hpwuschd2.exe
\HP Software Update
0e8c WDDMStatus.exe
stern Digital\WD Quick View
0e98 PWRISOVM.EXE
0b6c svchost.exe
0670 SearchIndexer.exe
0da8 svchost.exe
1190 IEMonitor.exe
ternet Download Manager
1358 explorer.exe
07d8 AdguardSvc.exe
0f5c Adguard.exe
guard
1040 LMS.exe
10a0 daemonu.exe
0dfc svchost.exe
1320 UNS.exe
127c firefox.exe
zilla Firefox
0648 dllhost.exe
1478 uTorrent.exe

1
1
0
0
1
1
1
1
1
1

0
0
0
0
28
10
21
4
163
98

0
0
0
0
23
3
2
2
113
66

1
1
1
0
0
0
0
0
0
0
0
0
0
0
0
0
1

416
20
183
0
0
0
0
0
0
0
0
0
0
0
0
0
4

301
30
58
0
0
0
0
0
0
0
0
0
0
0
0
0
1

normal
normal
high
high
above normal
below normal C:\Program Files (x86)\Sm
normal
normal
normal

normal

C:\Program Files (x86)\NV

0 0 0
1 358 153 normal

C:\Program Files (x86)\In

1 15
Agent
1 62
1 81
1 40

11 normal

C:\Program Files\Intel\In

6 normal
4 normal
15 normal

C:\Program Files (x86)\We

1 9

normal

C:\Program Files (x86)\HP

1 71 19 normal

C:\Program Files (x86)\We

1
0
0
0
1

C:\Program Files (x86)\In

18
0
0
0
18

8 normal
0
0
0
16 normal

1 366 179 normal


0 0 0
1 91 56 below normal C:\Program Files (x86)\Ad
0
0
0
0
1

0
0
0
0
224

0
0 normal
0
0
152 normal

C:\Program Files (x86)\Mo

0 0 0
1 205 100 normal

C:\Users\user\AppData\Roa

ming\uTorrent
1488 utorrentie.exe
1
ming\uTorrent\updates\3.4.5_41712
0604 utorrentie.exe
1
ming\uTorrent\updates\3.4.5_41712
1078 TrustedInstaller.exe
0
1680 audiodg.exe
0
1408 mpc-hc64.exe
1
0eb4 WINWORD.EXE
1
crosoft Office\Office12
1184 splwow64.exe
1
0bc4 EXCEL.EXE
1
crosoft Office\Office12
0714 EXCEL.EXE
1
crosoft Office\Office12
0474 calc.exe
1
1308 WUDFHost.exe
0
144c WmiPrvSE.exe
0
06a8 SearchProtocolHost.exe
0
1600 teracopy.exe
1
10e8 dllhost.exe
1
0330 SearchFilterHost.exe
0

10 11 normal

C:\Users\user\AppData\Roa

10 11 normal

C:\Users\user\AppData\Roa

0
0
275
278

0
0
465 normal
79 normal

C:\Program Files (x86)\Mi

4 3 normal
315 111 normal

C:\Program Files (x86)\Mi

235 80 normal

C:\Program Files (x86)\Mi

145
0
0
0
128
9
0

66
0
0
0
86
6
0

normal

normal
normal
idle

C:\Program Files\TeraCopy

hardware:
+ Computer
- ACPI x64-based PC
+ Disk drives
- Multiple Card Reader USB Device
- TOSHIBA DT01ACA050 ATA Device
- WD My Book 1230 USB Device
+ Display adapters
- NVIDIA GeForce 210 (driver 9.18.13.4144)
+ DVD/CD-ROM drives
- HL-DT-ST DVDRAM GH24NSC0 ATA Device
+ Human Interface Devices
- HID-compliant consumer control device
- HID-compliant consumer control device
- HID-compliant device
- USB Input Device
- USB Input Device
- USB Input Device
- USB Input Device
+ IDE ATA/ATAPI controllers
- ATA Channel 0
- ATA Channel 1
- Intel(R) 6 Series/C200 Series Chipset Family 6 Port SATA AHCI Controller - 1
C02 (driver 9.2.0.1011)
+ Keyboards
- HID Keyboard Device
- HID Keyboard Device
+ Mice and other pointing devices
- HID-compliant mouse
+ Monitors
- Generic PnP Monitor
+ Network adapters
- Realtek PCIe FE Family Controller (driver 106.12.1119.2014)
- TAP-Windows Adapter V9 (driver 9.0.0.21)
+ Portable Devices
- E:\
+ Ports (COM & LPT)

- Communications Port (COM1)


- Printer Port (LPT1)
+ Processors
- Intel(R) Core(TM) i3-3240 CPU @ 3.40GHz
- Intel(R) Core(TM) i3-3240 CPU @ 3.40GHz
- Intel(R) Core(TM) i3-3240 CPU @ 3.40GHz
- Intel(R) Core(TM) i3-3240 CPU @ 3.40GHz
+ Sound, video and game controllers
- NVIDIA High Definition Audio (driver 1.3.30.1)
- NVIDIA High Definition Audio (driver 1.3.30.1)
- NVIDIA High Definition Audio (driver 1.3.30.1)
- NVIDIA High Definition Audio (driver 1.3.30.1)
- Realtek High Definition Audio (driver 6.0.1.6839)
+ Storage volume shadow copies
- Generic volume shadow copy
- Generic volume shadow copy
+ System devices
- ACPI Fan
- ACPI Fan
- ACPI Fan
- ACPI Fan
- ACPI Fan
- ACPI Fixed Feature Button
- ACPI Power Button
- ACPI Thermal Zone
- ACPI Thermal Zone
- Composite Bus Enumerator
- Direct memory access controller
- File as Volume Driver
- High Definition Audio Controller
- High Definition Audio Controller
- High precision event timer
- Intel(R) 6 Series/C200 Series Chipset Family PCI Express Root Port 1 - 1C10
(driver 9.2.0.1016)
- Intel(R) 6 Series/C200 Series Chipset Family PCI Express Root Port 5 - 1C18
(driver 9.2.0.1016)
- Intel(R) 6 Series/C200 Series Chipset Family SMBus Controller - 1C22 (driver
9.2.0.1011)
- Intel(R) 82802 Firmware Hub Device
- Intel(R) H61 Express Chipset Family LPC Interface Controller - 1C5C (driver
9.2.0.1016)
- Intel(R) Management Engine Interface (driver 8.1.10.1275)
- Intel(R) Smart Connect Technology Device (driver 1.0.8.0)
- Microsoft ACPI-Compliant System
- Microsoft System Management BIOS Driver
- Microsoft Virtual Drive Enumerator Driver
- Motherboard resources
- Motherboard resources
- Motherboard resources
- Motherboard resources
- Motherboard resources
- Numeric data processor
- PCI bus
- Plug and Play Software Device Enumerator
- Printer Port Logical Interface
- Programmable interrupt controller
- Remote Desktop Device Redirector Bus
- System board
- System CMOS/real time clock
- System timer

- Terminal Server Keyboard Driver


- Terminal Server Mouse Driver
- UMBus Enumerator
- UMBus Enumerator
- UMBus Root Bus Enumerator
- Volume Manager
- Xeon(R) processor E3-1200 v2/3rd Gen Core processor DRAM Controller - 0150 (
driver 9.3.0.1011)
- Xeon(R) processor E3-1200 v2/3rd Gen Core processor PCI Express Root Port 0151 (driver 9.3.0.1011)
+ Universal Serial Bus controllers
- Generic USB Hub
- Generic USB Hub
- Intel(R) 6 Series/C200 Series Chipset Family USB Enhanced Host Controller 1C26 (driver 9.2.0.1031)
- Intel(R) 6 Series/C200 Series Chipset Family USB Enhanced Host Controller 1C2D (driver 9.2.0.1031)
- USB Composite Device
- USB Mass Storage Device
- USB Mass Storage Device
- USB Root Hub
- USB Root Hub
+ WD Drive Management devices
- WD SES Device (driver 1.0.17.0)
disassembling:
[...]
004cee34 mov
004cee38 mov
004cee3b add
004cee3e mov
004cee43 call
004cee48 > mov
004cee4b mov
004cee4e xor
004cee50 call
004cee55 jz
004cee5b mov
[...]

byte ptr [eax+$2c], 0


eax, [ebp-$c]
eax, $28
edx, $4cf438
-$c7884 ($4075c4)
; segment%0.public%300 (teracopy.exe)
eax, [ebp-$c]
eax, [eax+$c]
edx, edx
-$c6ecd ($407f88)
; segment%0.public%344 (teracopy.exe)
loc_4cef42
eax, [ebp-$c]

error details:
copying files from mini sd card to hard drive

S-ar putea să vă placă și