Ovaron

Member
  • Content Count

    1
  • Joined

  • Last visited

Community Reputation

0 Neutral

About Ovaron

  • Rank
    New Member
  1. I've tried to run the Emergency Kit Scanner on a W2k SP4 machine, from the HDD. The frontend works, but when I try to start the GUI scanner, the scanner crashes before opening any application window. The command line scanner runs without flaw. The Exception information (partly anonymized) follows. Any hint ? --------------------- EurekaLog 6.0.24 Application: --------------------------------------------------------------------- 1.1 Start Date : Wed, 20 Oct 2010 14:47:26 +0200 1.2 Name/Description: a2emergencykit.exe - (Emsisoft Emergency Kit) 1.3 Version Number : 1.0.0.22 1.4 Parameters : 1.5 Compilation Date: Fri, 15 Oct 2010 05:52:23 +0200 1.6 Up Time : 0 second Exception: ------------------------------------------------------------------- 2.1 Date : Wed, 20 Oct 2010 14:47:27 +0200 2.2 Address : 004201BC 2.3 Module Name : a2emergencykit.exe - (Emsisoft Emergency Kit) 2.4 Module Version: 1.0.0.22 2.5 Type : EOSError 2.6 Message : System Error. Code:_87. Falscher Parameter. 2.7 ID : 16AC 2.8 Count : 1 2.9 Status : New 2.10 Note : User: ------------------------------------------------------- 3.1 ID : (...) 3.2 Name : (...) 3.3 Email : 3.4 Company : (...) 3.5 Privileges: SeChangeNotifyPrivilege - ON SeSecurityPrivilege - OFF SeBackupPrivilege - OFF SeRestorePrivilege - OFF SeSystemtimePrivilege - OFF SeShutdownPrivilege - OFF SeRemoteShutdownPrivilege - OFF SeTakeOwnershipPrivilege - OFF SeDebugPrivilege - OFF SeSystemEnvironmentPrivilege - OFF SeSystemProfilePrivilege - OFF SeProfileSingleProcessPrivilege - OFF SeIncreaseBasePriorityPrivilege - OFF SeLoadDriverPrivilege - ON SeCreatePagefilePrivilege - OFF SeIncreaseQuotaPrivilege - OFF SeUndockPrivilege - ON SeImpersonatePrivilege - ON SeCreateGlobalPrivilege - ON Active Controls: -------------------------------------------------- 4.1 Form Class : TMainStarter 4.2 Form Text : a-squared Emergency USB Stick 4.3 Control Class: 4.4 Control Text : Computer: ------------------------------------------------------------------------- 5.1 Name : (...) 5.2 Total Memory : 2048 Mb 5.3 Free Memory : 1468 Mb 5.4 Total Disk : 19,53 Gb 5.5 Free Disk : 8,4 Gb 5.6 System Up Time: 14 days, 5 hours, 11 minutes, 11 seconds 5.7 Processor : Intel® Pentium® 4 CPU 2.53GHz 5.8 Display Mode : 1600 x 1200, 16 bit 5.9 Display DPI : 96 5.10 Video Card : NVIDIA GeForce4 MX 440 (driver 2.9.8.0 - RAM 64 MB) 5.11 Printer : HP Color LaserJet 5500 PCL6 (driver 4.18.0.410) Operating System: -------------------------------------- 6.1 Type : Microsoft Windows 2000 6.2 Build # : 2195 6.3 Update : Service Pack 4 6.4 Language: German 6.5 Charset : 0 Network: --------------------------------------------------------------------- (...) Call Stack Information: --------------------------------------------------------------------------------------- |Address |Module |Unit |Class |Procedure/Method|Line | --------------------------------------------------------------------------------------- |Running Thread: ID=1400; Priority=0; Class=; [Main] | |-------------------------------------------------------------------------------------| |006109B2|a2emergencykit.exe|Main.pas |TaSquaredFree|FormCreate |965[15]| |00632457|a2emergencykit.exe|a2emergencykit.dpr| | |44[2] | --------------------------------------------------------------------------------------- Modules Information: ---------------------------------------------------------------------------------------------------------------------------------------------------------------- |Handle |Name |Description |Version |Size |Modified |Path | ---------------------------------------------------------------------------------------------------------------------------------------------------------------- |00400000|a2emergencykit.exe|Emsisoft Emergency Kit |1.0.0.22 |4135824|2010-10-18 11:04:02|C:\EMSISOFTEMERGENCYKIT\run| |01680000|a2framework.dll |Framework Module |5.0.0.37 |1678240|2010-10-18 11:03:46|C:\EMSISOFTEMERGENCYKIT\run| |02100000|a2update.dll |Updater Module |5.0.0.40 |2824088|2010-10-18 11:03:48|C:\EMSISOFTEMERGENCYKIT\RUN| |03040000|RICHED20.DLL |Rich Text Edit Control, v3.0 |5.30.23.1215 |431888 |2003-06-19 12:05:04|C:\WINNT\system32 | |035A0000|shdocvw.dll |Bibliothek fr Shell-Dokumente und -Steuerelemente|6.0.2800.1692 |1338368|2005-06-18 00:25:32|C:\WINNT\system32 | |10000000|wm_hooks.dll |VNC Server Hooking DLL for Win32 |4.0.0.26 |58336 |2005-03-11 15:40:28|C:\Programme\RealVNC\VNC4 | |68F30000|PSAPI.dll |Process Status Helper |5.0.2134.1 |28944 |1999-12-10 14:00:00|C:\WINNT\system32 | |6B150000|msimg32.dll |GDIEXT Client DLL |5.0.2180.1 |5392 |1999-12-10 14:00:00|C:\WINNT\system32 | |71710000|COMCTL32.dll |Common Controls Library |5.81.4916.400 |529680 |2002-08-29 09:32:28|C:\WINNT\system32 | |74F60000|mswsock.dll |Microsoft WinSock-Erweiterungs-APIs |5.0.2195.6603 |66320 |2003-06-19 12:05:04|C:\WINNT\system32 | |74F90000|WS2HELP.DLL |Windows Socket 2.0 Helper fr Windows NT |5.0.2134.1 |18192 |1999-12-10 14:00:00|C:\WINNT\system32 | |74FA0000|WS2_32.DLL |Windows Socket 2.0 32-Bit DLL |5.0.2195.6601 |69904 |2003-06-19 12:05:04|C:\WINNT\system32 | |74FC0000|wsock32.dll |Windows-Socket 32-Bit-DLL |5.0.2195.6603 |23824 |2003-06-19 12:05:04|C:\WINNT\system32 | |750C0000|SAMLIB.dll |SAM Library DLL |5.0.2195.6944 |51984 |2005-06-03 00:44:58|C:\WINNT\system32 | |75130000|NETRAP.dll |Net Remote Admin Protocol DLL |5.0.2134.1 |11536 |1999-12-10 14:00:00|C:\WINNT\system32 | |75940000|LZ32.DLL |LZ Expand/Compress API DLL |5.0.2195.6611 |10000 |2003-06-19 12:05:04|C:\WINNT\system32 | |75DF0000|imm32.dll |Windows 2000 IMM32 API Client DLL |5.0.2195.6655 |96528 |2003-06-19 12:05:04|C:\WINNT\system32 | |768D0000|WINTRUST.DLL |Microsoft Vertrauensverifizierungs-APIs |5.131.2195.6824|167184 |2005-06-03 00:44:42|C:\WINNT\system32 | |76B00000|comdlg32.dll |Common Dialog-DLL |5.0.3700.6693 |245520 |2003-06-19 12:05:04|C:\WINNT\system32 | |772A0000|SHLWAPI.dll |Shell Light-weight Utility Library |6.0.2800.1692 |409088 |2005-05-25 10:15:16|C:\WINNT\system32 | |77400000|MSASN1.dll |ASN.1 Runtime APIs |5.0.2195.6905 |56592 |2005-06-03 00:44:42|C:\WINNT\system32 | |777F0000|winspool.drv |Windows-Spoolertreiber |5.0.2195.6659 |114448 |2003-06-19 12:05:04|C:\WINNT\system32 | |77810000|version.dll |Version Checking and File Installation Libraries |5.0.2195.6623 |16144 |2003-06-19 12:05:04|C:\WINNT\system32 | |77880000|ntdll.dll |DLL fr NT-Layer |5.0.2195.7006 |505616 |2005-06-03 00:45:02|C:\WINNT\system32 | |77910000|IMAGEHLP.dll |Windows NT Image Helper |5.0.2195.6613 |128784 |2003-06-19 12:05:04|C:\WINNT\system32 | |77940000|WLDAP32.DLL |Win32 LDAP-API-DLL |5.0.2195.7017 |146704 |2005-06-03 00:44:40|C:\WINNT\system32 | |77970000|DNSAPI.DLL |DNS Client API DLL |5.0.2195.7003 |136976 |2005-06-03 00:44:40|C:\WINNT\system32 | |779A0000|oleaut32.dll | |2.40.4522.0 |626960 |2003-06-19 12:05:04|C:\WINNT\system32 | |77BE0000|NTDSAPI.dll |NT5DS |5.0.2195.6666 |57616 |2003-06-19 12:05:04|C:\WINNT\system32 | |77D20000|RPCRT4.dll |Remote Procedure Call Runtime |5.0.2195.7020 |477968 |2005-06-03 00:44:38|C:\WINNT\system32 | |77E00000|USER32.dll |Client-DLL fr Windows 2000 USER-API |5.0.2195.7032 |420112 |2005-06-03 00:44:38|C:\WINNT\system32 | |77E70000|KERNEL32.dll |Client-DLL fr Windows NT-Basis-API |5.0.2195.7006 |768272 |2005-06-03 00:45:00|C:\WINNT\system32 | |77F40000|GDI32.dll |GDI Client DLL |5.0.2195.7011 |246544 |2005-04-08 04:54:30|C:\WINNT\system32 | |78000000|msvcrt.dll |Microsoft ® C Runtime Library |6.1.9844.0 |286773 |2003-06-19 12:05:04|C:\WINNT\system32 | |782F0000|MPR.DLL |Router-DLL fr Mehrfachanbieter |5.0.2195.6824 |57104 |2005-06-03 00:44:50|C:\WINNT\system32 | |784A0000|CLBCATQ.DLL | |2000.2.3511.0 |552720 |2005-06-03 00:44:38|C:\WINNT\system32 | |79350000|ADVAPI32.dll |Erweitertes Windows 32 Base-API |5.0.2195.7038 |401680 |2005-06-03 00:44:38|C:\WINNT\system32 | |79430000|SECUR32.DLL |Security Support Provider Interface |5.0.2195.6695 |48912 |2003-06-19 12:05:04|C:\WINNT\system32 | |799D0000|crypt32.dll |Krypto-API32 |5.131.2195.6926|566544 |2005-06-03 00:44:42|C:\WINNT\system32 | |7CE20000|netapi32.dll |Net Win32 API DLL |5.0.2195.7038 |326928 |2005-06-03 00:44:54|C:\WINNT\system32 | |7CE80000|ole32.dll |Microsoft OLE fr Windows |5.0.2195.7034 |1042192|2005-06-03 00:44:40|C:\WINNT\system32 | |7CF90000|shell32.dll |Windows Shell Common Dll |5.0.3900.7032 |2457360|2005-06-03 00:44:40|C:\WINNT\system32 | ---------------------------------------------------------------------------------------------------------------------------------------------------------------- Processes Information: ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |ID |Name |Description |Version |Memory |Priority |Threads|Path | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |8 |System | | |233472 |Normal |39 | | |164 |smss.exe | | |434176 |Normal |6 |\SystemRoot\System32 | |208 |winlogon.exe | | |2740224 |High |17 |C:\WINNT\system32 | |236 |services.exe |Anwendung fr Dienste und Controller |5.0.2195.7035 |23306240 |Normal |44 |C:\WINNT\system32 | |248 |lsass.exe |LSA-Exe und Server-DLL |5.0.2195.7011 |6025216 |Normal |18 |C:\WINNT\system32 | |436 |svchost.exe |Generic Host Process for Win32 Services |5.0.2134.1 |4816896 |Normal |10 |C:\WINNT\system32 | |476 |spoolsv.exe |Spooler SubSystem App |5.0.2195.7059 |5734400 |Normal |15 |C:\WINNT\system32 | |512 |svchost.exe |Generic Host Process for Win32 Services |5.0.2134.1 |7413760 |Normal |19 |C:\WINNT\System32 | |528 |NTPD.EXE | | |3567616 |Real-Time |5 |C:\WINNT\system32 | |536 |llssrv.exe |Microsoft License Server |5.0.2195.7021 |2215936 |Normal |9 |C:\WINNT\System32 | |552 |nvsvc32.exe |NVIDIA Driver Helper Service, Version 29.80|6.13.10.2980 |1310720 |Normal |3 |C:\WINNT\System32 | |748 |regsvc.exe |Remote Registry Service |5.0.2195.6701 |3133440 |Normal |2 |C:\WINNT\system32 | |764 |MSTask.exe |Taskplaner-Engine |4.71.2195.6972|3543040 |Normal |6 |C:\WINNT\system32 | |812 |WinMgmt.exe |Windows-Verwaltungsinstrumentation |1.50.1085.100 |679936 |Normal |4 |C:\WINNT\System32\WBEM | |848 |WinVNC4.exe |VNC Server Free Edition for Win32 |4.1.1.0 |13369344 |Normal |5 |C:\Programme\RealVNC\VNC4 | |860 |svchost.exe |Generic Host Process for Win32 Services |5.0.2134.1 |7471104 |Normal |5 |C:\WINNT\system32 | |900 |Dfssvc.exe |Windows NT Distributed File System Service |5.0.2195.6664 |1736704 |Normal |2 |C:\WINNT\system32 | |948 |msdtc.exe |MS DTC console program |1999.9.3421.3 |5996544 |Normal |21 |C:\WINNT\System32 | |1056|Explorer.EXE |Windows Explorer |5.0.3700.6690 |2351104 |Normal |15 |C:\WINNT | |1212|SOUNDMAN.EXE |Avance Sound Manager |5.0.0.0 |1822720 |Normal |1 |C:\WINNT | |1260|a2emergencykit.exe|Emsisoft Emergency Kit |1.0.0.22 |17891328 |Normal |4 |C:\EMSISOFTEMERGENCYKIT\run | |1328|svchost.exe |Generic Host Process for Win32 Services |5.0.2134.1 |3473408 |Normal |10 |C:\WINNT\System32 | |1912|start.exe |USB Stick Starter |1.0.0.27 |4960256 |Normal |3 |C:\EmsisoftEmergencyKit | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------- Assembler Information: -------------------------------------------------------------------------------- 0042019A call -$00002997 0042019F mov edx, eax 004201A1 jmp +$14 004201A3 mov ecx, [$640A88] 004201A9 mov dl, $01 004201AB mov eax, dword ptr [EOSError] 004201B0 call -$00002A7D 004201B5 mov edx, eax 004201B7 mov [edx+$18], ebx 004201BA mov eax, edx 004201BC call -$0001A1ED ; <-- EXCEPTION 004201C1 xor eax, eax 004201C3 pop edx 004201C4 pop ecx 004201C5 pop ecx 004201C6 mov fs:[eax], edx 004201C9 push $004201DE ; '[?]??S??u.?P????[?SV?.5.>c' 004201CE lea eax, [ebp-$14] 004201D1 call -$000189BE 004201D6 ret Registers: ----------------------------- EAX: 03A1A6A8 EDI: 02BF3440 EBX: 00000057 ESI: 02BF3440 ECX: 00412100 ESP: 0012FAF8 EDX: 004201C1 EIP: 004201BC Stack: Memory Dump: ------------------ --------------------------------------------------------------------------- 0012FAF8: 0012FB28 004201BC: E8 13 5E FE FF 33 C0 5A 59 59 64 89 10 68 DE 01 ..^..3.ZYYd..h.. 0012FAFC: 00405EB0 004201CC: 42 00 8D 45 EC E8 42 76 FE FF C3 E9 54 5C FE FF B..E..Bv....T\.. 0012FB00: 0012FB1C 004201DC: EB F0 5B 8B E5 5D C3 90 53 8B D8 85 DB 75 05 E8 ..[..]..S....u.. 0012FB04: 02BF3440 004201EC: 50 FF FF FF 8B C3 5B C3 53 56 B3 01 8B 35 1C 3E P.....[.SV...5.> 0012FB08: 00000000 004201FC: 63 00 EB 07 FF 56 04 8B D8 8B 36 84 DB 74 04 85 c....V....6..t.. 0012FB0C: 00000057 0042020C: F6 75 F1 8B C3 5E 5B C3 53 56 BE 1C 3E 63 00 EB .u...^[.SV..>c.. 0012FB10: 00000000 0042021C: 12 8B 1E 8B 03 89 06 BA 08 00 00 00 8B C3 E8 01 ................ 0012FB14: 010E0834 0042022C: 40 FE FF 83 3E 00 75 E9 5E 5B C3 90 53 68 70 02 @...>.u.^[..Shp. 0012FB18: 00000011 0042023C: 42 00 E8 31 C8 FE FF 8B D8 85 DB 74 10 68 8C 02 B..1.......t.h.. 0012FB1C: 0012FC40 0042024C: 42 00 53 E8 50 C8 FE FF A3 B4 3B 63 00 83 3D B4 B.S.P.....;c..=. 0012FB20: 0042014A 0042025C: 3B 63 00 00 75 0A B8 84 78 41 00 A3 B4 3B 63 00 ;c..u...xA...;c. 0012FB24: 00544A22 0042026C: 5B C3 00 00 6B 00 65 00 72 00 6E 00 65 00 6C 00 [...k.e.r.n.e.l. 0012FB28: 0012FC94 0042027C: 33 00 32 00 2E 00 64 00 6C 00 6C 00 00 00 00 00 3.2...d.l.l..... 0012FB2C: 00405EB0 0042028C: 47 00 65 00 74 00 44 00 69 00 73 00 6B 00 46 00 G.e.t.D.i.s.k.F. 0012FB30: 0012FC40 0042029C: 72 00 65 00 65 00 53 00 70 00 61 00 63 00 65 00 r.e.e.S.p.a.c.e. 0012FB34: 0110A1FC 004202AC: 45 00 78 00 57 00 00 00 BA 01 00 00 00 92 F0 0F E.x.W...........