EurekaLog 7.3.1.0 Application: ------------------------------------------------------- 1.1 Start Date : Thu, 28 Apr 2016 09:56:00 +0200 1.2 Name/Description: Toad.exe - (Toad™ for Oracle®) 1.3 Version Number : 12.9.0.55 1.4 Parameters : 1.6 Up Time : 1 minute(s), 29 second(s) Exception: ------------------------------------------------------------------------------------------------------- 2.1 Date : Thu, 28 Apr 2016 09:57:29 +0200 2.2 Address : 041999E5 2.3 Module Name: Toad.exe - (Toad™ for Oracle®) 2.5 Type : EAccessViolation 2.6 Message : Access violation at address 041999E5 in module 'Toad.exe'. Read of address 1CDC0000. 2.7 ID : EB6A0000 2.8 Count : 1 2.11 Sent : 0 User: --------------------- 3.2 Name : sviluppo 3.3 Email: Active Controls: ----------------------------------------------------------------------------------------------------------------------------------- 4.1 Form Class : TfrmMain 4.2 Form Text : Toad for Oracle BETA expires on 25-maggio-2016 - [MEF@RGS_COLLAUDO (PROTASPC1:xdc1dbadm01) - Editor (New 1 *)] 4.3 Control Class: TtdDScintilla 4.4 Control Text : SELECT d.SEQU_LONG_ID, d.ID_RICHIESTA_PROTOCOLLO, d.CONTENT, d.TIPO_DOCUMENTO, d.CAMICIA, Make_ID_SIFE (SPLIT2 (d.op, '_')) AS OP, d.NUMERO_CAPITOLO, d.ANNO_CAPITOLO, d.PIANO_GESTIONE, d.NUMERO_PROTOCOLLO_MITT, d.DATA_PROTOCOLLO_MITT, d.CODICE_UFFICIO_MITT, d.DESC_UFFICIO_MITT, d.FK_AOO, d.FK_CAPITOLO, d.FLAG_ANNULLATO_01, d.DESC_ANNULLAMENTO, d.FLAG_PROTOCOLLATO_012, d.FK_DOC_PROT, d.ESITO_PROTOCOLLAZIONE, d.ESITO_INVIO_FEEDBACK, d.DTTM_CREAZIONE, d.LK_UTENTI_CREAZIONE, d.DTTM_AGGIORNAMENTO, d.LK_UTENTI_AGGIORNAMENTO, d.ID_FASCICOLO, d.CODICE_RAG, d.flag_manuale_01, d.tipo_operazione, t.sequ_long_id fk_tipo_documento, aoo.codi_codice codi_aoo, aoo.desc_nome desc_aoo, c.fk_ufficio_competenza, NVL (u.codi_ufficio, UP.codi_ufficio) AS codi_ufficio, t.sequ_long_id id_tipo_doc, Computer: ---------------------------------------------------------------- 5.2 Total Memory : 4294135808 (4,00 Gb) 5.3 Free Memory : 3455098880 (3,22 Gb) 5.4 Total Disk : 64424472576 (60,00 Gb) 5.5 Free Disk : 12137213952 (11,30 Gb) 5.6 System Up Time : 3 minute(s), 26 second(s) 5.7 Processor : Intel(R) Xeon(R) CPU E5-2620 0 @ 2.00GHz 5.12 Virtual Machine: VMWare ESX Operating System: ---------------------------------------------- 6.1 Type : Microsoft Windows 2003 (32 bit) 6.2 Build #: 3790 (5.2.3790.5295) Steps to reproduce: ------------ 8.1 Text: Call Stack Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------- |Methods |Details|Stack |Address |Module |Offset |Unit |Class |Procedure/Method |Line | ----------------------------------------------------------------------------------------------------------------------------------------------------------------- |*Exception Thread: ID=3480; Parent=0; Priority=-2 | |Class=; Name=MAIN | |DeadLock=0; Wait Chain=Impossibile trovare la procedura specificata | |Comment= | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|04 |00000000|041999E5|Toad.exe |000099E5|System | |_PCharLen |20462[3] | |00000040|04 |0042EF64|04383AB9|Toad.exe |001F3AB9|Vcl.Controls |TControl |WndProc |7204[91] | |00000040|04 |0042F090|04388417|Toad.exe |001F8417|Vcl.Controls |TWinControl |WndProc |9976[152] | |00000040|03 |0042F0DC|07512F34|Toad.exe |03382F34|tdDScintilla |TtdDScintilla|WndProc | | |00000040|04 |0042F18C|04388567|Toad.exe |001F8567|Vcl.Controls | |DoControlMsg |10045[12] | |00000040|04 |0042F2D8|04388417|Toad.exe |001F8417|Vcl.Controls |TWinControl |WndProc |9976[152] | |00000040|04 |0042F324|04387A6C|Toad.exe |001F7A6C|Vcl.Controls |TWinControl |MainWndProc |9689[3] | |00000040|04 |0042F354|04223B64|Toad.exe |00093B64|System.Classes | |StdWndProc |13878[8] | |00000040|03 |0042F36C|77F4B6E0|user32.dll |0001B6E0|USER32 | |RegisterLogonProcess | | |00000040|03 |0042F398|77F4B86F|user32.dll |0001B86F|USER32 | |RegisterLogonProcess | | |00000040|03 |0042F410|77F4C8B3|user32.dll |0001C8B3|USER32 | | (possible GetMessageW+154) | | |00000040|03 |0042F46C|77F4C9C3|user32.dll |0001C9C3|USER32 | | (possible GetClientRect+71) | | |00000040|03 |0042F494|7C9383A3|ntdll.dll |000283A3|ntdll | |KiUserCallbackDispatcher | | |00000040|03 |0042F4FC|77F4C332|user32.dll |0001C332|USER32 | |SendMessageW | | |00000040|03 |0042FA40|0F5E253B|SciLexer.dll|0006253B|SciLexer | | (possible _Scintilla_DirectFunction_16+363) | | |00000040|03 |0042FA7C|77F4B6E0|user32.dll |0001B6E0|USER32 | |RegisterLogonProcess | | |00000040|03 |0042FAA8|77F4B86F|user32.dll |0001B86F|USER32 | |RegisterLogonProcess | | |00000040|03 |0042FB20|77F4BFC9|user32.dll |0001BFC9|USER32 | | (possible CallWindowProcW+112) | | |00000040|03 |0042FB50|77F4BF6F|user32.dll |0001BF6F|USER32 | |CallWindowProcW | | |00000040|04 |0042FB70|04388517|Toad.exe |001F8517|Vcl.Controls |TWinControl |DefaultHandler |10017[30] | |00000040|04 |0042FCD4|04388417|Toad.exe |001F8417|Vcl.Controls |TWinControl |WndProc |9976[152] | |00000040|03 |0042FD20|07512F34|Toad.exe |03382F34|tdDScintilla |TtdDScintilla|WndProc | | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3496; Parent=3480; Priority=0 | |Class=TSendThread; Name=[Unnamed thread] Kind: TThread. Thread function: CSLog.TSendThread.Execute + $0. Thread caller: CSLog.TSendThread.Create + $1D (CSLog.TSendThread.Execute)| |DeadLock=0; Wait Chain=Impossibile trovare la procedura specificata | |Comment= | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|03 |00000000|7C93845C|ntdll.dll |0002845C|ntdll | |KiFastSystemCallRet | | |00000040|03 |09C3FEEC|7C821CA0|kernel32.dll|00021CA0|kernel32 | |WaitForSingleObject | | |00000040|03 |09C3FF00|05FAB316|Toad.exe |01E1B316|CSLog |TSendThread |Execute | | |00000040|04 |09C3FF28|04220ADA|Toad.exe |00090ADA|System.Classes | |ThreadProc |11769[11] | |00000040|04 |09C3FF58|042F3689|Toad.exe |00163689|EThreadsManager | |NakedBeginThreadWrapper |1331[5] | |00000040|04 |09C3FF68|044A0B48|Toad.exe |00310B48|EExceptionManager| |DefaultThreadHandleException |3780[6] | |00000040|04 |09C3FF8C|042F4A54|Toad.exe |00164A54|EThreadsManager | |ThreadWrapperCT |1877[17] | |00000040|03 |09C3FFBC|7C82484C|kernel32.dll|0002484C|kernel32 | | (possible GetModuleHandleA+220) | | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3584; Parent=3480; Priority=0 | |Class=TSaveSettingsThread; Name=[Unnamed thread] Kind: TThread. Thread function: tdSaveSettings.TSaveSettingsThread.Execute + $0. Thread caller: tdSaveSettings.TSaveSettingsThread.Create + $1D (tdSaveSettings.TSaveSettingsThread.Execute)| |DeadLock=0; Wait Chain=Impossibile trovare la procedura specificata | |Comment= | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|03 |00000000|7C93845C|ntdll.dll |0002845C|ntdll | |KiFastSystemCallRet | | |00000040|04 |0DC0FEFC|0422E816|Toad.exe |0009E816|System.SyncObjs |THandleObject|WaitFor |670[13] | |00000040|04 |0DC0FF58|042F3689|Toad.exe |00163689|EThreadsManager | |NakedBeginThreadWrapper |1331[5] | |00000040|04 |0DC0FF68|044A0B48|Toad.exe |00310B48|EExceptionManager| |DefaultThreadHandleException |3780[6] | |00000040|04 |0DC0FF8C|042F4A54|Toad.exe |00164A54|EThreadsManager | |ThreadWrapperCT |1877[17] | |00000040|03 |0DC0FFBC|7C82484C|kernel32.dll|0002484C|kernel32 | | (possible GetModuleHandleA+220) | | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3588; Parent=3480; Priority=0 | |Class=TWorkerThread; Name=[Unnamed thread] Kind: TThread. Thread function: VirtualTrees.TWorkerThread.Execute + $0. Thread caller: VirtualTrees.TWorkerThread.Create + $1B (VirtualTrees.TWorkerThread.Execute)| |DeadLock=0; Wait Chain=Impossibile trovare la procedura specificata | |Comment= | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|03 |00000000|7C93845C|ntdll.dll |0002845C|ntdll | |KiFastSystemCallRet | | |00000040|03 |0FAFFEF0|7C821CA0|kernel32.dll|00021CA0|kernel32 | |WaitForSingleObject | | |00000040|03 |0FAFFF04|04D9C4B5|Toad.exe |00C0C4B5|VirtualTrees |TWorkerThread|Execute | | |00000040|04 |0FAFFF28|04220ADA|Toad.exe |00090ADA|System.Classes | |ThreadProc |11769[11] | |00000040|04 |0FAFFF58|042F3689|Toad.exe |00163689|EThreadsManager | |NakedBeginThreadWrapper |1331[5] | |00000040|04 |0FAFFF68|044A0B48|Toad.exe |00310B48|EExceptionManager| |DefaultThreadHandleException |3780[6] | |00000040|04 |0FAFFF8C|042F4A54|Toad.exe |00164A54|EThreadsManager | |ThreadWrapperCT |1877[17] | |00000040|03 |0FAFFFBC|7C82484C|kernel32.dll|0002484C|kernel32 | | (possible GetModuleHandleA+220) | | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3484; Parent=0; Priority=0 | |Class=; Name= | |DeadLock=0; Wait Chain=Impossibile trovare la procedura specificata | |Comment= | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|03 |00000000|7C93845C|ntdll.dll |0002845C|ntdll | |KiFastSystemCallRet | | |00000040|03 |0105FF4C|7C91E32D|ntdll.dll |0000E32D|ntdll | | (possible RtlSetLastWin32ErrorAndNtStatusFromNtStatus+764)| | |00000040|03 |0105FFBC|7C82484C|kernel32.dll|0002484C|kernel32 | | (possible GetModuleHandleA+220) | | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3572; Parent=0; Priority=0 | |Class=; Name= | |DeadLock=0; Wait Chain=Impossibile trovare la procedura specificata | |Comment= | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|03 |00000000|7C93845C|ntdll.dll |0002845C|ntdll | |KiFastSystemCallRet | | |00000040|03 |0CE5FF88|77C5886D|rpcrt4.dll |0003886D|RPCRT4 | | (possible I_RpcFree+3011) | | |00000040|03 |0CE5FF90|77C5880A|rpcrt4.dll |0003880A|RPCRT4 | | (possible I_RpcFree+2912) | | |00000040|03 |0CE5FFB0|77C4B153|rpcrt4.dll |0002B153|RPCRT4 | | (possible NdrFullPointerInsertRefId+905) | | |00000040|03 |0CE5FFBC|7C82484C|kernel32.dll|0002484C|kernel32 | | (possible GetModuleHandleA+220) | | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3576; Parent=0; Priority=0 | |Class=; Name= | |DeadLock=0; Wait Chain=Impossibile trovare la procedura specificata | |Comment= | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|03 |00000000|7C93845C|ntdll.dll |0002845C|ntdll | |KiFastSystemCallRet | | |00000040|03 |0D25FF8C|7753BABD|ole32.dll |0004BABD|ole32 | | (possible CoFreeUnusedLibrariesEx+398) | | |00000040|03 |0D25FFB0|775316E1|ole32.dll |000416E1|ole32 | | (possible CoRegisterChannelHook+1331) | | |00000040|03 |0D25FFBC|7C82484C|kernel32.dll|0002484C|kernel32 | | (possible GetModuleHandleA+220) | | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3580; Parent=0; Priority=2 | |Class=; Name= | |DeadLock=0; Wait Chain=Impossibile trovare la procedura specificata | |Comment= | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|03 |00000000|7C93845C|ntdll.dll |0002845C|ntdll | |KiFastSystemCallRet | | |00000040|03 |0D69FF80|769A39FB|winmm.dll |000139FB|winmm | | (possible mciGetDeviceIDFromElementIDA+2664) | | |00000040|03 |0D69FFBC|7C82484C|kernel32.dll|0002484C|kernel32 | | (possible GetModuleHandleA+220) | | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3596; Parent=0; Priority=0 | |Class=; Name= | |DeadLock=0; Wait Chain=Impossibile trovare la procedura specificata | |Comment= | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|03 |00000000|7C93845C|ntdll.dll |0002845C|ntdll | |KiFastSystemCallRet | | |00000040|03 |11DFFC0C|71A32839|ws2_32.dll |00002839|WS2_32 | |select | | |00000040|03 |11DFFC5C|40E6B7EF|wininet.dll |0002B7EF|wininet | |InternetCrackUrlW | | |00000040|03 |11DFFFB4|40E67F3F|wininet.dll |00027F3F|wininet | | (possible InternetSetStatusCallback+468) | | |00000040|03 |11DFFFBC|7C82484C|kernel32.dll|0002484C|kernel32 | | (possible GetModuleHandleA+220) | | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3600; Parent=0; Priority=0 | |Class=; Name= | |DeadLock=0; Wait Chain=Impossibile trovare la procedura specificata | |Comment= | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|03 |00000000|7C93845C|ntdll.dll |0002845C|ntdll | |KiFastSystemCallRet | | |00000040|03 |121FFFBC|7C82484C|kernel32.dll|0002484C|kernel32 | | (possible GetModuleHandleA+220) | | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| | | |Running Thread: ID=3616; Parent=0; Priority=1 | |Class=; Name= | |DeadLock=0; Wait Chain=Impossibile trovare la procedura specificata | |Comment= | |---------------------------------------------------------------------------------------------------------------------------------------------------------------| |7FFFFFFE|03 |00000000|7C93845C|ntdll.dll |0002845C|ntdll | |KiFastSystemCallRet | | |00000040|03 |12DFFFBC|7C82484C|kernel32.dll|0002484C|kernel32 | | (possible GetModuleHandleA+220) | | ----------------------------------------------------------------------------------------------------------------------------------------------------------------- Modules Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |00630000|normaliz.dll |Unicode Normalization DLL |6.0.5441.0 |23552 |2006-06-29 08:05:44|C:\WINDOWS\system32\ | |02DC0000|TortoiseOverlays.dll |TortoiseSVN overlay handler shim |1.1.3.21564 |64792 |2011-06-13 10:20:44|C:\Programmi\File comuni\TortoiseOverlays\ | |02E00000|TortoiseStub32.dll |TortoiseSVN shell extension client |1.7.9.23248 |40328 |2012-08-30 19:01:52|C:\Programmi\TortoiseSVN\bin\ | |02E30000|TortoiseSVN32.dll |TortoiseSVN shell extension client |1.7.9.23248 |433544 |2012-08-30 19:01:52|C:\Programmi\TortoiseSVN\bin\ | |02ED0000|intl3_tsvn32.dll |LGPLed libintl for Windows NT/2000/XP and Windows 95/98/ME |0.14.6.0 |45960 |2012-08-30 19:01:26|C:\Programmi\TortoiseSVN\bin\ | |02EF0000|libsasl32.dll | |2.1.24.0 |70536 |2012-08-30 19:01:28|C:\Programmi\TortoiseSVN\bin\ | |02F20000|msvcp100.dll |Microsoft® C Runtime Library |10.0.40219.325 |421200 |2011-06-11 01:58:52|C:\WINDOWS\system32\ | |03820000|hhctrlui.dll |Controllo Microsoft® HTML Help |4.74.9429.0 |90112 |2007-02-17 06:46:52|C:\WINDOWS\system32\mui\0010\ | |04190000|Toad.exe |Toad™ for Oracle® |12.9.0.55 |89465752 |2016-04-25 13:07:36|C:\Programmi\Dell\Toad for Oracle 12.9 Beta\ | |0C770000|xpsp2res.dll |Messaggi del Service Pack 2 |5.2.3790.3959 |2962432 |2007-02-17 06:44:16|C:\WINDOWS\system32\ | |0F580000|SciLexer.dll |Scintilla.DLL - a Source Editing Component |3.6.1.1 |560128 |2015-10-30 15:56:22|C:\Programmi\Dell\Toad for Oracle 12.9 Beta\ | |10000000|libsvn_tsvn32.dll |Subversion library dll built for TortoiseSVN |1.7.6.60057 |3082120 |2012-08-30 19:01:28|C:\Programmi\TortoiseSVN\bin\ | |10E50000|oci.dll |Oracle Call Interface |11.2.0.1 |1036288 |2013-10-11 06:20:52|C:\Oracle\product\11.2.0.4\ | |116A0000|hnetcfg.dll |Gestione configurazione della rete domestica |5.2.3790.3959 |357888 |2007-02-17 07:00:44|C:\WINDOWS\system32\ | |12390000|w03a2409.dll |Messaggi Service Pack |5.2.3790.4043 |527360 |2007-03-19 18:48:35|C:\WINDOWS\system32\ | |12E00000|OraOCIEI11.dll |Oracle Call Interface Instant Client |11.2.0.1 |131194880|2013-10-11 06:23:12|C:\Oracle\product\11.2.0.4\ | |1B350000|QSE.dll |QSE DLL |12.9.0.55 |2132376 |2016-04-25 12:36:02|C:\Programmi\Dell\Toad for Oracle 12.9 Beta\ | |21D10000|QP5CA.dll | |5.293.16072.42295|2164496 |2016-03-13 01:43:36|C:\Programmi\Dell\Toad for Oracle 12.9 Beta\ | |23000000|QP5.dll | |5.293.16072.42030|20618000 |2016-03-13 01:43:34|C:\Programmi\Dell\Toad for Oracle 12.9 Beta\ | |38A70000|MSOXMLMF.DLL |Microsoft Office XML MIME Filter |12.0.6500.5000 |43392 |2009-02-26 17:45:38|C:\Programmi\File comuni\Microsoft Shared\OFFICE12\ | |3F500000|mxdwdrv.dll |Microsoft XPS Document Writer |0.3.6001.22204 |765440 |2008-07-06 14:06:10|C:\WINDOWS\system32\spool\drivers\w32x86\3\ | |40A70000|l3codeca.acm |MPEG Layer-3 Audio Codec for MSACM |1.9.0.306 |307260 |2010-02-02 11:03:59|C:\WINDOWS\system32\ | |40E40000|wininet.dll |Internet Extensions for Win32 |7.0.6000.21397 |841216 |2014-07-30 02:28:40|C:\WINDOWS\system32\ | |414E0000|iertutil.dll |Run time utility for Internet Explorer |7.0.6000.21397 |268288 |2014-07-30 02:28:40|C:\WINDOWS\system32\ | |44210000|urlmon.dll |OLE32 Extensions for Win32 |7.0.6000.21397 |1172992 |2014-07-30 02:28:40|C:\WINDOWS\system32\ | |4B720000|hhctrl.ocx |Microsoft® HTML Help Control |5.2.3790.3959 |546304 |2007-02-17 06:42:56|C:\WINDOWS\system32\ | |4DCC0000|msctfime.ime |Microsoft Text Frame Work Service IME |5.2.3790.3959 |177152 |2007-02-17 06:43:24|C:\WINDOWS\system32\ | |4DDF0000|GdiPlus.dll |Microsoft GDI+ |5.2.6002.23386 |1748992 |2014-05-05 15:23:40|C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.23386_x-ww_F56D83D5\ | |57150000|tssoft32.acm |Codec audio DSP Group TrueSpeech(TM) per MSACM V3.50 |1.1.1.5 |9728 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |57160000|sl_anet.acm |Audio codec for MS ACM |3.2.0.0 |86016 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |57180000|msgsm32.acm |Codec audio Microsoft GSM 6.10 per MSACM |5.2.3790.0 |20992 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |57190000|msg723.acm |CODEC Microsoft G.723.1 per MSACM |5.2.3790.3959 |122880 |2007-02-17 06:58:08|C:\WINDOWS\system32\ | |571B0000|msg711.acm |Microsoft CCITT G.711 (A-Law and u-Law) CODEC per MSACM |5.2.3790.0 |10240 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |571C0000|msaud32.acm |Windows Media Audio |8.0.0.4502 |282654 |2009-08-29 08:37:56|C:\WINDOWS\system32\ | |572A0000|imaadp32.acm |IMA ADPCM CODEC per MSACM |5.2.3790.0 |15872 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |58800000|msxml6.dll |MSXML 6.0 SP2 |6.20.2017.0 |1425048 |2014-04-03 16:13:06|c:\WINDOWS\system32\ | |5EAD0000|olepro32.dll | |5.2.3790.3959 |84480 |2007-02-17 06:43:42|C:\WINDOWS\system32\ | |61880000|oleacc.dll |Active Accessibility Core Component |7.0.3790.4909 |223744 |2011-09-26 12:10:44|C:\WINDOWS\system32\ | |661D0000|GrooveShellExtensions.dll|GrooveShellExtensions Module |12.0.6500.5000 |2217832 |2009-02-26 19:36:54|C:\Programmi\Microsoft Office\Office12\ | |68000000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |5.2.3790.3959 |213336 |2007-02-17 23:17:14|C:\WINDOWS\system32\ | |68100000|dssenh.dll |Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider|5.2.3790.3959 |147288 |2007-02-17 23:17:16|C:\WINDOWS\system32\ | |68EF0000|GrooveUtil.DLL |GrooveUtil Module |12.0.6606.1000 |967008 |2011-07-27 06:14:02|C:\Programmi\Microsoft Office\Office12\ | |68FF0000|GrooveNew.DLL |GrooveNew Module |12.0.6500.5000 |21856 |2009-02-26 19:36:48|C:\Programmi\Microsoft Office\Office12\ | |69600000|fontsub.dll |Font Subsetting DLL |5.2.3790.4603 |82944 |2009-10-15 23:23:39|C:\WINDOWS\system32\ | |6D7C0000|dbghelp.dll |Windows Image Helper |5.2.3790.3959 |665600 |2007-02-17 23:28:38|C:\WINDOWS\system32\ | |6E0C0000|msftedit.dll |Rich Text Edit Control, v4.1 |5.41.21.2506 |540160 |2007-02-17 06:43:26|C:\WINDOWS\system32\ | |6EE60000|libaprutil_tsvn32.dll |Apache Portable Runtime Utility Library |1.3.12.0 |210312 |2012-08-30 19:01:26|C:\Programmi\TortoiseSVN\bin\ | |6EEC0000|libapr_tsvn32.dll |Apache Portable Runtime Library |1.4.6.0 |134024 |2012-08-30 19:01:26|C:\Programmi\TortoiseSVN\bin\ | |71910000|wshtcpip.dll |Windows Sockets Helper DLL |5.2.3790.3959 |18944 |2007-02-17 06:44:46|C:\WINDOWS\system32\ | |71950000|mswsock.dll |Service Provider Microsoft Windows Sockets 2.0 |5.2.3790.4318 |258048 |2008-06-20 20:39:29|C:\WINDOWS\system32\ | |719A0000|uxtheme.dll |Libreria UxTheme di Microsoft |6.0.3790.3959 |207872 |2007-02-17 06:54:10|C:\WINDOWS\system32\ | |719E0000|wsock32.dll |DLL Windows Socket 32-Bit |5.2.3790.0 |24576 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |719F0000|rdpsnd.dll |Terminal Server MultiMedia Driver |5.2.3790.0 |18432 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |71A00000|mpr.dll |DLL del router multiple provider |5.2.3790.3959 |57856 |2007-02-17 06:58:02|C:\WINDOWS\system32\ | |71A20000|ws2help.dll |Helper di Windows Socket 2.0 per Windows NT |5.2.3790.3959 |19456 |2007-02-17 06:54:52|C:\WINDOWS\system32\ | |71A30000|ws2_32.dll |Windows Socket 2.0 32-Bit DLL |5.2.3790.3959 |83456 |2007-02-17 06:44:46|C:\WINDOWS\system32\ | |71A70000|netapi32.dll |Net Win32 API DLL |5.2.3790.5030 |345600 |2012-06-29 18:13:39|C:\WINDOWS\system32\ | |71DA0000|security.dll |Security Support Provider Interface |5.2.3790.0 |5632 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |72130000|sensapi.dll |SENS Connectivity API DLL |5.2.3790.3959 |6656 |2007-02-17 06:43:54|C:\WINDOWS\system32\ | |72B70000|msadp32.acm |Codec Microsoft ADPCM per MSACM |5.2.3790.0 |14848 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |72B90000|msacm32.drv |Microsoft Sound Mapper |5.2.3790.3959 |23040 |2007-02-17 06:58:04|C:\WINDOWS\system32\ | |72C80000|msxml3.dll |MSXML 3.0 SP10 |8.100.1055.0 |1187840 |2014-03-11 07:10:00|C:\WINDOWS\system32\ | |72EA0000|winspool.drv |Driver dello spooler di Windows |5.2.3790.3959 |151040 |2007-02-17 06:54:34|C:\WINDOWS\system32\ | |73970000|tsd32.dll | |1.3.3.7 |16896 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |73EC0000|icmp.dll |ICMP DLL |5.2.3790.0 |4608 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |743D0000|msctf.dll |MSCTF Server DLL |5.2.3790.3959 |316928 |2007-02-17 06:58:06|C:\WINDOWS\system32\ | |747A0000|powrprof.dll |Power Profile Helper DLL |6.0.3790.3959 |16896 |2007-02-17 06:43:44|C:\WINDOWS\system32\ | |74A20000|oledlg.dll |Supporto interfaccia utente di OLE 2.0 per Microsoft Windows® |5.2.3790.3959 |126464 |2007-02-17 06:55:10|C:\WINDOWS\system32\ | |758A0000|usp10.dll |Uniscribe Unicode script processor |1.422.3790.5340 |380416 |2014-05-05 15:22:15|C:\WINDOWS\system32\ | |75C80000|sxs.dll |Fusion 2.5 |5.2.3790.3959 |763904 |2007-02-17 06:56:56|C:\WINDOWS\system32\ | |75D40000|apphelp.dll |Libreria client compatibilità applicazione |5.2.3790.3959 |149504 |2007-02-17 06:59:16|C:\WINDOWS\system32\ | |75D90000|browseui.dll |Shell Browser UI Library |6.0.3790.4678 |1033216 |2010-03-11 12:12:30|C:\WINDOWS\system32\ | |76080000|msasn1.dll |ASN.1 Runtime APIs |5.2.3790.4584 |58880 |2009-09-04 23:27:22|C:\WINDOWS\system32\ | |760A0000|crypt32.dll |Crypto API32 |5.131.3790.5362 |604672 |2014-06-04 03:26:48|C:\WINDOWS\system32\ | |76170000|msimg32.dll |GDIEXT Client DLL |5.2.3790.0 |4608 |2003-04-08 14:00:00|C:\WINDOWS\system32\ | |76180000|imm32.dll |Windows IMM32 API Client DLL |5.2.3790.3959 |110592 |2007-02-17 06:43:02|C:\WINDOWS\system32\ | |761A0000|comdlg32.dll |DLL delle finestre di dialogo comuni |6.0.3790.3959 |277504 |2007-02-17 06:59:56|C:\WINDOWS\system32\ | |76490000|setupapi.dll |API dell'installazione di Windows |5.2.3790.3959 |1088000 |2007-02-17 06:56:02|C:\WINDOWS\system32\ | |765D0000|cryptdll.dll |Cryptography Manager |5.2.3790.3959 |33280 |2007-02-17 06:42:30|C:\WINDOWS\system32\ | |76810000|userenv.dll |Userenv |5.2.3790.3959 |786944 |2007-02-17 06:54:08|C:\WINDOWS\system32\ | |76970000|atl.dll |ATL Module for Windows XP (Unicode) |3.5.2284.2 |62976 |2009-07-17 20:51:26|C:\WINDOWS\system32\ | |76990000|winmm.dll |DLL API MCI |5.2.3790.4916 |176640 |2011-10-14 22:53:15|C:\WINDOWS\system32\ | |76A60000|psapi.dll |Process Status Helper |5.2.3790.3959 |20480 |2007-02-17 06:43:44|C:\WINDOWS\system32\ | |76A70000|credui.dll |Interfaccia utente Gestione credenziali |5.2.3790.3959 |166400 |2007-02-17 07:00:00|C:\WINDOWS\system32\ | |76AA0000|wintrust.dll |API di verifica attendibilità Microsoft |5.131.3790.5060 |169984 |2012-08-24 17:44:25|C:\WINDOWS\system32\ | |76B00000|imagehlp.dll |Windows NT Image Helper |5.2.3790.5240 |154112 |2013-10-19 05:37:47|C:\WINDOWS\system32\ | |76B80000|msv1_0.dll |Microsoft Authentication Package v1.0 |5.2.3790.4587 |146432 |2009-09-11 12:41:29|C:\WINDOWS\system32\ | |76BC0000|mprapi.dll |Windows NT MP Router Administration DLL |5.2.3790.3959 |90624 |2007-02-17 06:43:20|C:\WINDOWS\system32\ | |76BE0000|iphlpapi.dll |API helper IP |5.2.3790.3959 |96256 |2007-02-17 06:57:26|C:\WINDOWS\system32\ | |76C20000|cryptui.dll |Provider di interfaccia utente di Microsoft Trust |5.131.3790.3959 |518144 |2007-02-17 07:00:00|C:\WINDOWS\system32\ | |76CB0000|adsldpc.dll |ADs LDAP Provider C DLL |5.2.3790.3959 |153088 |2007-02-17 06:59:16|C:\WINDOWS\system32\ | |76CE0000|activeds.dll |DLL Livello router di AD |5.2.3790.3959 |200192 |2007-02-17 06:59:14|C:\WINDOWS\system32\ | |76D20000|rtutils.dll |Routing Utilities |5.2.3790.3959 |34816 |2007-02-17 06:43:52|C:\WINDOWS\system32\ | |76D30000|rasman.dll |Remote Access Connection Manager |5.2.3790.3959 |62976 |2007-02-17 06:43:48|C:\WINDOWS\system32\ | |76D50000|tapi32.dll |DLL client dell'API di Telefonia di Microsoft® Windows(TM) |5.2.3790.3959 |183808 |2007-02-17 06:56:58|C:\WINDOWS\system32\ | |76D80000|rasapi32.dll |API di Accesso remoto |5.2.3790.3959 |246272 |2007-02-17 06:55:34|C:\WINDOWS\system32\ | |76DC0000|dnsapi.dll |DLL API client DNS |5.2.3790.4840 |163328 |2011-03-03 09:05:19|C:\WINDOWS\system32\ | |76DF0000|wtsapi32.dll |Windows Terminal Server SDK APIs |5.2.3790.3959 |19456 |2007-02-17 06:44:46|C:\WINDOWS\system32\ | |76E00000|wldap32.dll |Win32 LDAP API DLL |5.2.3790.3959 |180736 |2007-02-17 06:54:36|C:\WINDOWS\system32\ | |76E40000|secur32.dll |Security Support Provider Interface |5.2.3790.4530 |65536 |2009-06-16 08:58:37|C:\WINDOWS\system32\ | |76E60000|winrnr.dll |LDAP RnR Provider DLL |5.2.3790.3959 |17408 |2007-02-17 06:44:40|C:\WINDOWS\system32\ | |76E70000|rasadhlp.dll |Remote Access AutoDial Helper |5.2.3790.3959 |7680 |2007-02-17 06:43:48|C:\WINDOWS\system32\ | |76F00000|comres.dll |Risorse COM+ |2001.12.4720.3959|1633280 |2007-02-17 06:59:56|C:\WINDOWS\system32\ | |77340000|comctl32.dll |User Experience Controls Library |6.0.3790.5190 |1052160 |2013-07-04 13:21:16|C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.3790.5190_x-ww_319264BE\| |774F0000|ole32.dll |Microsoft OLE per Windows |5.2.3790.5209 |1270272 |2013-08-05 15:34:41|C:\WINDOWS\system32\ | |77630000|clbcatq.dll |COM+ Configuration Catalog |2001.12.4720.3959|510976 |2007-02-17 06:42:26|C:\WINDOWS\system32\ | |77990000|winsta.dll |Winstation Library |5.2.3790.3959 |56320 |2007-02-17 06:44:40|C:\WINDOWS\system32\ | |77B40000|msacm32.dll |Filtro audio ACM Microsoft |5.2.3790.3959 |71168 |2007-02-17 06:58:04|C:\WINDOWS\system32\ | |77B60000|version.dll |Version Checking and File Installation Libraries |5.2.3790.3959 |18432 |2007-02-17 06:44:22|C:\WINDOWS\system32\ | |77B70000|msvcrt.dll |Windows NT CRT DLL |7.0.3790.3959 |348672 |2007-02-17 06:43:34|C:\WINDOWS\system32\ | |77BD0000|gdi32.dll |GDI Client DLL |5.2.3790.5418 |285696 |2014-08-24 14:29:57|C:\WINDOWS\system32\ | |77C20000|rpcrt4.dll |Remote Procedure Call Runtime |5.2.3790.5254 |648192 |2013-11-07 07:38:02|C:\WINDOWS\system32\ | |77CD0000|oleaut32.dll | |5.2.3790.4807 |553984 |2010-12-20 20:57:28|C:\WINDOWS\system32\ | |77EC0000|shlwapi.dll |Libreria leggera di utilità per la shell |6.0.3790.5318 |321536 |2014-03-26 05:45:23|C:\WINDOWS\system32\ | |77F30000|user32.dll |Windows USER API Client DLL |5.2.3790.4033 |585216 |2008-07-29 10:22:14|C:\WINDOWS\system32\ | |77FF0000|advapi32.dll |API Windows 32 Base avanzato |5.2.3790.4555 |692224 |2009-07-18 18:00:33|C:\WINDOWS\system32\ | |78130000|msvcr80.dll |Microsoft® C Runtime Library |8.0.50727.4027 |632656 |2009-03-28 11:28:02|C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4027_x-ww_E69378D0\ | |78AA0000|msvcr100.dll |Microsoft® C Runtime Library |10.0.40219.325 |773968 |2011-06-11 01:58:52|C:\WINDOWS\system32\ | |7C630000|ATL80.dll |ATL Module for Windows (Unicode) |8.0.50727.4053 |97280 |2009-07-11 19:41:02|C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666FD\ | |7C800000|kernel32.dll |DLL client di Windows NT BASE API |5.2.3790.5295 |1092096 |2014-02-06 11:26:14|C:\WINDOWS\system32\ | |7C910000|ntdll.dll |DLL del livello NT |5.2.3790.4937 |800256 |2011-11-22 18:28:28|C:\WINDOWS\system32\ | |7C9E0000|shell32.dll |DLL comune della shell di Windows |6.0.3790.5018 |8391680 |2012-06-08 17:55:39|C:\WINDOWS\system32\ | |7E020000|samlib.dll |SAM Library DLL |5.2.3790.3959 |47104 |2007-02-17 06:43:52|C:\WINDOWS\system32\ | |7E5A0000|unidrvui.dll |Interfaccia utente UniDriver |0.3.6001.22116 |744960 |2008-07-06 14:06:10|C:\WINDOWS\system32\spool\drivers\w32x86\3\ | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory |Priority|Threads|Path | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |0 |[System Process] | | |0 | |2 | | |4 |System | | |245760 |Normal |77 | | |316 |smss.exe |Windows NT Session Manager |5.2.3790.3959 |528384 |Normal |2 |C:\WINDOWS\system32\ | |364 |csrss.exe | | |0 |High |11 | | |388 |winlogon.exe |Applicazione Accesso a Windows NT |5.2.3790.3959 |2097152 |High |24 |C:\WINDOWS\system32\ | |436 |services.exe |Applicazione Servizi e Controller |5.2.3790.4455 |3743744 |Normal |15 |C:\WINDOWS\system32\ | |448 |lsass.exe |Shell LSA |5.2.3790.0 |8888320 |Normal |40 |C:\WINDOWS\system32\ | |632 |svchost.exe |Generic Host Process for Win32 Services |5.2.3790.3959 |3510272 |Normal |8 |C:\WINDOWS\system32\ | |712 |svchost.exe | | |0 |Normal |11 | | |784 |svchost.exe | | |0 |Normal |11 | | |820 |svchost.exe | | |0 |Normal |15 | | |836 |svchost.exe |Generic Host Process for Win32 Services |5.2.3790.3959 |34869248 |Normal |66 |C:\WINDOWS\system32\ | |940 |scardsvr.exe | | |0 |Normal |4 | | |988 |spoolsv.exe |Applicazione sottosistema spooler |5.2.3790.4759 |6238208 |Normal |15 |C:\WINDOWS\system32\ | |1040|msdtc.exe | | |0 |Normal |24 | | |1260|InjectWinSockServiceV6.exe| | |2961408 |Normal |4 |C:\Programmi\IEInspector\HTTPAnalyzerFullV6\ | |1276|inetinfo.exe |Internet Information Services |6.0.3790.3959 |9093120 |Normal |11 |C:\WINDOWS\system32\inetsrv\ | |1328|svchost.exe | | |0 |Normal |2 | | |1416|vmtoolsd.exe |VMware Tools Core Service |9.0.0.15210 |12791808 |High |7 |C:\Programmi\VMware\VMware Tools\ | |1564|mqsvc.exe |Message Queuing Service |5.2.2007.4530 |5779456 |Normal |29 |C:\WINDOWS\system32\ | |1672|svchost.exe |Generic Host Process for Win32 Services |5.2.3790.3959 |6766592 |Normal |17 |C:\WINDOWS\system32\ | |1700|wmiprvse.exe | | |0 |Normal |7 | | |1944|dllhost.exe |COM Surrogate |5.2.3790.3959 |8495104 |Normal |22 |C:\WINDOWS\system32\ | |1976|svchost.exe |Generic Host Process for Win32 Services |5.2.3790.3959 |4960256 |Normal |24 |C:\WINDOWS\system32\ | |2020|dllhost.exe |COM Surrogate |5.2.3790.3959 |7876608 |Normal |21 |C:\WINDOWS\system32\ | |2192|svchost.exe |Generic Host Process for Win32 Services |5.2.3790.3959 |4247552 |Normal |18 |C:\WINDOWS\system32\ | |2456|vssvc.exe |Servizio Copia Shadow del volume Microsoft®|5.2.3790.3959 |4161536 |Normal |7 |C:\WINDOWS\system32\ | |2680|csrss.exe | | |0 |High |9 | | |2704|winlogon.exe |Applicazione Accesso a Windows NT |5.2.3790.3959 |5054464 |High |9 |C:\WINDOWS\system32\ | |2872|rdpclip.exe |RDP Clip Monitor |5.2.3790.3959 |3739648 |Normal |4 |C:\WINDOWS\system32\ | |2992|explorer.exe |Esplora risorse |6.0.3790.3959 |19947520 |Normal |11 |C:\WINDOWS\ | |3072|GrooveMonitor.exe |GrooveMonitor Utility |12.0.6500.5000|4968448 |Normal |2 |C:\Programmi\Microsoft Office\Office12\ | |3096|vmtoolsd.exe |VMware Tools Core Service |9.0.0.15210 |11591680 |Normal |3 |C:\Programmi\VMware\VMware Tools\ | |3112|ctfmon.exe |CTF Loader |5.2.3790.3959 |2859008 |Normal |2 |C:\WINDOWS\system32\ | |3120|DTLite.exe |DAEMON Tools Lite |4.35.6.91 |11366400 |Normal |4 |C:\Programmi\DAEMON Tools Lite\ | |3148|bit4pin.exe |Universal Middleware - Smartcard Manager |1.2.1.0 |1503232 |Normal |2 |C:\Programmi\Bit4Id\Bit4id - CSP PKCS11 Oberthur\| |3200|TSVNCache.exe |TortoiseSVN status cache |1.7.9.23248 |11120640 |Normal |8 |C:\Programmi\TortoiseSVN\bin\ | |3344|wmiprvse.exe | | |0 |Normal |8 | | |3476|Toad.exe |Toad™ for Oracle® |12.9.0.55 |291717120|Normal |11 |C:\Programmi\Dell\Toad for Oracle 12.9 Beta\ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: ------------------------------------------------------------------------------------------ ; Base Address: $4199000, Allocation Base: $4190000, Region Size: 60108800 ; Allocation Protect: PAGE_EXECUTE_WRITECOPY, Protect: PAGE_EXECUTE_READ ; State: MEM_COMMIT, Type: MEM_IMAGE ; ; ; System._PCharLen (Line=20459 - Offset=0) ; ---------------------------------------- 041999DC 33D2 XOR EDX, EDX ; ; Line=20460 - Offset=2 ; --------------------- 041999DE 85C0 TEST EAX, EAX 041999E0 7409 JZ +9 ; ($041999EB) System._PCharLen (Line=20463) 041999E2 EB01 JMP +1 ; ($041999E5) System._PCharLen (Line=20462) ; ; Line=20462 - Offset=8 ; --------------------- 041999E4 42 INC EDX ; ; Line=20462 - Offset=9 ; --------------------- 041999E5 803C1000 CMP BYTE PTR [EAX+EDX], 0 ; <-- EXCEPTION 041999E9 75F9 JNZ -7 ; ($041999E4) System._PCharLen (Line=20462) ; ; Line=20463 - Offset=15 ; ---------------------- 041999EB 8BC2 MOV EAX, EDX Registers: ----------------------------- EAX: 1CDBFFF8 EDI: 1CDBFFF8 EBX: 0042F178 ESI: 1AE8DB70 ECX: 00000000 EBP: 0042EF60 EDX: 00000008 ESP: 0042EEF0 EIP: 041999E5 FLG: 00010202 EXP: 041999E5 STK: 0042EEF0 Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 1D135844: 00000000 041999E5: 80 3C 10 00 75 F9 8B C2 C3 8B C0 33 D2 85 C0 74 .<..u......3...t 1D135840: 00000000 041999F5: 0A EB 01 42 66 83 3C 50 00 75 F8 8B C2 C3 90 8B ...Bf.