Not sure what the problem is, all my media, docs, work fine. When i try and install something from my software folder nothing happens.. i click on the .exe and nothing.. i checked the error logs and get this :
Faulting application name: Setup.exe_unknown, version: 0.0.0.0, time stamp: 0x465f51fb
Faulting module name: Setup.exe, version: 0.0.0.0, time stamp: 0x465f51fb
Exception code: 0xc0000096
Fault offset: 0x0009cfc1
Faulting process id: 0x120c
Faulting application start time: 0x01c9f28d8b040376
Faulting application path: \\MEDIASERVER\Software\QuickBooks\QB 2009 Premier\Setup.exe
Faulting module path: \\MEDIASERVER\Software\QuickBooks\QB 2009 Premier\Setup.exe
Report Id: c92531c4-5e80-11de-b804-001cc473de84
This(eventlog) is from my w7 machine (7100) also tried this on my XP box and on the WHS server itself and get the same error.. I have about 40GB of apps and NONE of them work.. cant install anything.. i also copied some files locally and NADA.. same thing.. what strange is that i can access the folder fine, make changes to it,add files, read pdf's, txt.. just it will not let me install anything..
Any ideas.. I attached a log dump from whs log folder (drwtsn32.log)
Microsoft (R) DrWtsn32
Copyright (C) 1985-2002 Microsoft Corp. All rights reserved.
Application exception occurred:
App: D:\shares\Software\teracopy2b4.exe (pid=5252)
When: 6/21/2009 @ 12:06:32.406
Exception number: c0000096 (privileged instruction)
*----> System Information <----*
Computer Name: MEDIASERVER
User Name: Administrator
Terminal Session Id: 1
Number of Processors: 1
Processor Type: x86 Family 6 Model 22 Stepping 1
Windows Version: 5.2
Current Build: 3790
Service Pack: 2
Current Type: Uniprocessor Free
Registered Organization: Windows Home Server
Registered Owner: Windows Home Server
*----> Task List <----*
0 System Process
4 System
364 smss.exe
412 csrss.exe
436 winlogon.exe
484 services.exe
496 lsass.exe
688 svchost.exe
776 svchost.exe
832 svchost.exe
860 svchost.exe
900 svchost.exe
1052 spoolsv.exe
1076 msdtc.exe
1196 mDNSResponder.exe
1224 svchost.exe
1264 BackgroundTranscoder.exe
1312 HPOnlineBackupService.exe
1364 IAANTMon.exe
1384 inetinfo.exe
1420 llssrv.exe
1508 MediaReorganizeService.exe
1732 svchost.exe
1748 sbscrexe.exe
1780 svchost.exe
1840 svchost.exe
1876 twonkymedia.exe
1996 svchost.exe
2012 vds.exe
2072 SearchIndexer.exe
2144 firefly.exe
2256 TwonkyMediaServer.exe
2296 HPServerMonitor.exe
2336 qsm.exe
2404 TransportService.exe
2508 wmccds.exe
2620 pdl.exe
2852 wmiprvse.exe
3064 portfwd.exe
3104 svchost.exe
3144 whsarch.exe
3216 whsbackup.exe
3716 dmadmin.exe
3796 msiexec.exe
3860 alg.exe
3968 wmiprvse.exe
384 w3wp.exe
1028 demigrator.exe
3060 svchost.exe
3416 csrss.exe
1824 winlogon.exe
4020 rdpclip.exe
3624 Explorer.EXE
732 iaanotif.exe
2284 ctfmon.exe
1048 WindowsSearch.exe
924 svchost.exe
4260 mmc.exe
4412 SearchProtocolHost.exe
4700 vssvc.exe
5200 SearchFilterHost.exe
5252 teracopy2b4.exe
5284 drwtsn32.exe
*----> Module List <----*
0000000000400000 - 0000000000413852: D:\shares\Software\teracopy2b4.exe
0000000075490000 - 00000000754f5000: C:\WINDOWS\system32\USP10.dll
0000000076290000 - 00000000762ad000: C:\WINDOWS\system32\IMM32.DLL
0000000076f50000 - 0000000076f63000: C:\WINDOWS\system32\Secur32.dll
0000000077380000 - 0000000077411000: C:\WINDOWS\system32\user32.dll
0000000077420000 - 0000000077523000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.3790.3959_x-ww_D8713E55\comctl32.dll
0000000077670000 - 00000000777a9000: C:\WINDOWS\system32\ole32.dll
0000000077ba0000 - 0000000077bfa000: C:\WINDOWS\system32\msvcrt.dll
0000000077c00000 - 0000000077c49000: C:\WINDOWS\system32\GDI32.dll
0000000077c50000 - 0000000077cef000: C:\WINDOWS\system32\RPCRT4.dll
0000000077d00000 - 0000000077d8b000: C:\WINDOWS\system32\oleaut32.dll
0000000077da0000 - 0000000077df2000: C:\WINDOWS\system32\SHLWAPI.dll
0000000077e40000 - 0000000077f42000: C:\WINDOWS\system32\kernel32.dll
000000007c800000 - 000000007c8c2000: C:\WINDOWS\system32\ntdll.dll
000000007d1e0000 - 000000007d27c000: C:\WINDOWS\system32\ADVAPI32.dll
000000007f000000 - 000000007f009000: C:\WINDOWS\system32\LPK.DLL
*----> State Dump for Thread Id 0x1488 <----*
eax=77e5f385 ebx=77e40000 ecx=00000000 edx=77ec0d20 esi=00412b34 edi=00412a28
eip=00412b45 esp=0012ff68 ebp=0012ffa0 iopl=0 nv up ei ng nz ac pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00010292
*** WARNING: Unable to verify checksum for D:\shares\Software\teracopy2b4.exe
*** ERROR: Module load completed but symbols could not be loaded for D:\shares\Software\teracopy2b4.exe
function: teracopy2b4
00412b38 07 pop es
00412b39 59 pop ecx
00412b3a 51 push ecx
00412b3b ad lodsd
00412b3c 89c2 mov edx,eax
00412b3e ffd7 call edi
00412b40 59 pop ecx
00412b41 50 push eax
00412b42 e2f6 loop teracopy2b4+0x12b3a (00412b3a)
00412b44 2f das
FAULT ->00412b45 ee out dx,al
00412b46 c47794 les esi,[edi-0x6c]
00412b49 5c pop esp
00412b4a c3 ret
00412b4b 777c ja teracopy2b4+0x12bc9 (00412bc9)
00412b4d 53 push ebx
00412b4e c3 ret
00412b4f 77db ja teracopy2b4+0x12b2c (00412b2c)
00412b51 f1 ???
00412b52 c177a4f1 shl dword ptr [edi-0x5c],0xf1
00412b56 c17775d6 shl dword ptr [edi+0x75],0xd6
*----> Stack Back Trace <----*
ChildEBP RetAddr Args to Child
0012ffa0 00000000 0012fff0 0012ffc0 7ffda000 teracopy2b4+0x12b45
*----> Raw Stack Dump <----*
000000000012ff68 8b f3 e5 77 26 6a e7 77 - e3 7a e7 77 65 23 e4 77 ...w&j.w.z.we#.w
000000000012ff78 b9 24 e4 77 ff 45 e6 77 - 6f 3e e6 77 67 61 65 6c .$.w.E.wo>.wgael
000000000012ff88 69 63 75 6d 00 00 00 00 - 00 00 40 00 7a 3d e6 77 icum......@.z=.w
000000000012ff98 ca 1d e4 77 00 00 e4 77 - 00 00 00 00 00 00 00 00 ...w...w........
000000000012ffa8 f0 ff 12 00 c0 ff 12 00 - 00 a0 fd 7f 0c 86 82 7c ...............|
000000000012ffb8 b0 ff 12 00 00 00 00 00 - d8 98 40 00 3b f2 e6 77 ..........@.;..w
000000000012ffc8 00 00 00 00 00 00 00 00 - 00 a0 fd 7f 96 00 00 c0 ................
000000000012ffd8 c8 ff 12 00 9c fb 12 00 - ff ff ff ff 60 1a e6 77 ............`..w
000000000012ffe8 48 f2 e6 77 00 00 00 00 - 00 00 00 00 00 00 00 00 H..w............
000000000012fff8 00 2a 41 00 00 00 00 00 - 41 63 74 78 20 00 00 00 .*A.....Actx ...
0000000000130008 01 00 00 00 80 4f 00 00 - 24 01 00 00 00 00 00 00 .....O..$.......
0000000000130018 20 00 00 00 00 00 00 00 - 14 00 00 00 01 00 00 00 ...............
0000000000130028 0a 00 00 00 34 00 00 00 - b4 01 00 00 01 00 00 00 ....4...........
0000000000130038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000130048 00 00 00 00 02 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000130058 00 00 00 00 14 03 00 00 - 9c 01 00 00 00 00 00 00 ................
0000000000130068 5b 49 59 2d b0 04 00 00 - 32 00 00 00 e4 04 00 00 [IY-....2.......
0000000000130078 d2 02 00 00 00 00 00 00 - ba 71 32 f3 b8 07 00 00 .........q2.....
0000000000130088 4a 00 00 00 04 08 00 00 - 1a 03 00 00 00 00 00 00 J...............
0000000000130098 cd ea ce 32 20 0b 00 00 - 42 00 00 00 64 0b 00 00 ...2 ...B...d...
*----> State Dump for Thread Id 0x148c <----*
eax=7c80e1fa ebx=00a8fef0 ecx=00000000 edx=00000000 esi=00000002 edi=00000000
eip=7c82860c esp=00a8fea4 ebp=00a8ff48 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll -
function: ntdll!KiFastSystemCallRet
7c8285ee e82c000000 call ntdll!RtlRaiseException (7c82861f)
7c8285f3 8b0424 mov eax,[esp]
7c8285f6 8be5 mov esp,ebp
7c8285f8 5d pop ebp
7c8285f9 c3 ret
7c8285fa 8da42400000000 lea esp,[esp]
7c828601 8da42400000000 lea esp,[esp]
ntdll!KiFastSystemCall:
7c828608 8bd4 mov edx,esp
7c82860a 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c82860c c3 ret
7c82860d 8da42400000000 lea esp,[esp]
7c828614 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c828618 8d542408 lea edx,[esp+0x8]
7c82861c cd2e int 2e
7c82861e c3 ret
ntdll!RtlRaiseException:
7c82861f 55 push ebp
7c828620 8bec mov ebp,esp
7c828622 8da42430fdffff lea esp,[esp-0x2d0]
*----> Stack Back Trace <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
WARNING: Stack unwind information not available. Following frames may be wrong.
00a8ff48 7c80e4a2 00000002 00a8ff70 00000000 ntdll!KiFastSystemCallRet
00a8ffb8 77e6482f 00000000 00000000 00000000 ntdll!RtlSetLastWin32ErrorAndNtStatusFromNtStatus+0x301
00a8ffec 00000000 7c80e1fa 00000000 00000000 kernel32!GetModuleHandleA+0xdf
*----> Raw Stack Dump <----*
0000000000a8fea4 19 7d 82 7c bb e5 80 7c - 02 00 00 00 f0 fe a8 00 .}.|...|........
0000000000a8feb4 01 00 00 00 01 00 00 00 - 10 ff a8 00 00 10 00 00 ................
0000000000a8fec4 88 1f 89 00 c0 a3 88 7c - 24 00 00 00 01 00 00 00 .......|$.......
0000000000a8fed4 00 00 00 00 00 00 00 00 - 30 00 00 00 ff ff ff ff ........0.......
0000000000a8fee4 ff ff ff ff 61 d3 80 7c - 00 00 00 00 64 00 00 00 ....a..|....d...
0000000000a8fef4 70 00 00 00 08 00 00 c0 - 00 10 00 00 30 ff a8 00 p...........0...
0000000000a8ff04 f1 96 82 7c f6 96 82 7c - 00 10 00 00 00 a2 2f 4d ...|...|....../M
0000000000a8ff14 ff ff ff ff 00 a0 fd 7f - c0 a3 88 7c 10 ff a8 00 ...........|....
0000000000a8ff24 f0 fe a8 00 00 97 82 7c - 02 00 00 00 c0 fe a8 00 .......|........
0000000000a8ff34 ae e1 80 7c dc ff a8 00 - 90 82 82 7c c8 d3 80 7c ...|.......|...|
0000000000a8ff44 00 00 00 00 b8 ff a8 00 - a2 e4 80 7c 02 00 00 00 ...........|....
0000000000a8ff54 70 ff a8 00 00 00 00 00 - e0 93 04 00 01 00 00 00 p...............
0000000000a8ff64 00 00 00 00 00 00 00 00 - 00 00 00 00 64 00 00 00 ............d...
0000000000a8ff74 70 00 00 00 00 10 00 00 - 88 1f 89 00 00 10 00 00 p...............
0000000000a8ff84 90 2f 89 00 80 90 88 7c - 00 00 00 00 20 00 00 00 ./.....|.... ...
0000000000a8ff94 a0 90 88 7c 00 10 00 00 - 80 90 88 7c 88 1f 89 00 ...|.......|....
0000000000a8ffa4 00 00 00 00 a0 90 88 7c - e5 03 00 00 00 10 00 00 .......|........
0000000000a8ffb4 90 2f 89 00 ec ff a8 00 - 2f 48 e6 77 00 00 00 00 ./....../H.w....
0000000000a8ffc4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000a8ffd4 c4 ff a8 00 34 ff 82 80 - ff ff ff ff 60 1a e6 77 ....4.......`..w
Application exception occurred:
App: D:\shares\Software\Tag & Rename\TagRename335\TagRename335.exe (pid=5424)
When: 6/21/2009 @ 12:07:18.750
Exception number: c0000096 (privileged instruction)
*----> System Information <----*
Computer Name: MEDIASERVER
User Name: Administrator
Terminal Session Id: 1
Number of Processors: 1
Processor Type: x86 Family 6 Model 22 Stepping 1
Windows Version: 5.2
Current Build: 3790
Service Pack: 2
Current Type: Uniprocessor Free
Registered Organization: Windows Home Server
Registered Owner: Windows Home Server
*----> Task List <----*
0 System Process
4 System
364 smss.exe
412 csrss.exe
436 winlogon.exe
484 services.exe
496 lsass.exe
688 svchost.exe
776 svchost.exe
832 svchost.exe
860 svchost.exe
900 svchost.exe
1052 spoolsv.exe
1076 msdtc.exe
1196 mDNSResponder.exe
1224 svchost.exe
1264 BackgroundTranscoder.exe
1312 HPOnlineBackupService.exe
1364 IAANTMon.exe
1384 inetinfo.exe
1420 llssrv.exe
1508 MediaReorganizeService.exe
1732 svchost.exe
1748 sbscrexe.exe
1780 svchost.exe
1840 svchost.exe
1876 twonkymedia.exe
1996 svchost.exe
2012 vds.exe
2072 SearchIndexer.exe
2144 firefly.exe
2256 TwonkyMediaServer.exe
2296 HPServerMonitor.exe
2336 qsm.exe
2404 TransportService.exe
2508 wmccds.exe
2620 pdl.exe
2852 wmiprvse.exe
3064 portfwd.exe
3104 svchost.exe
3144 whsarch.exe
3216 whsbackup.exe
3716 dmadmin.exe
3796 msiexec.exe
3860 alg.exe
3968 wmiprvse.exe
384 w3wp.exe
1028 demigrator.exe
3060 svchost.exe
3416 csrss.exe
1824 winlogon.exe
4020 rdpclip.exe
3624 Explorer.EXE
732 iaanotif.exe
2284 ctfmon.exe
1048 WindowsSearch.exe
924 svchost.exe
4260 mmc.exe
4412 SearchProtocolHost.exe
4700 vssvc.exe
5200 SearchFilterHost.exe
5424 TagRename335.exe
5448 drwtsn32.exe
*----> Module List <----*
0000000000400000 - 0000000000414652: D:\shares\Software\Tag & Rename\TagRename335\TagRename335.exe
0000000075490000 - 00000000754f5000: C:\WINDOWS\system32\USP10.dll
0000000076290000 - 00000000762ad000: C:\WINDOWS\system32\IMM32.DLL
0000000076f50000 - 0000000076f63000: C:\WINDOWS\system32\Secur32.dll
0000000077380000 - 0000000077411000: C:\WINDOWS\system32\user32.dll
0000000077420000 - 0000000077523000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.3790.3959_x-ww_D8713E55\comctl32.dll
0000000077670000 - 00000000777a9000: C:\WINDOWS\system32\ole32.dll
0000000077ba0000 - 0000000077bfa000: C:\WINDOWS\system32\msvcrt.dll
0000000077c00000 - 0000000077c49000: C:\WINDOWS\system32\GDI32.dll
0000000077c50000 - 0000000077cef000: C:\WINDOWS\system32\RPCRT4.dll
0000000077d00000 - 0000000077d8b000: C:\WINDOWS\system32\oleaut32.dll
0000000077da0000 - 0000000077df2000: C:\WINDOWS\system32\SHLWAPI.dll
0000000077e40000 - 0000000077f42000: C:\WINDOWS\system32\kernel32.dll
000000007c800000 - 000000007c8c2000: C:\WINDOWS\system32\ntdll.dll
000000007d1e0000 - 000000007d27c000: C:\WINDOWS\system32\ADVAPI32.dll
000000007f000000 - 000000007f009000: C:\WINDOWS\system32\LPK.DLL
*----> State Dump for Thread Id 0x1534 <----*
eax=77e5f385 ebx=77e40000 ecx=00000000 edx=77ec0d20 esi=00413934 edi=00413828
eip=00413945 esp=0012ff68 ebp=0012ffa0 iopl=0 nv up ei ng nz ac pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00010292
*** WARNING: Unable to verify checksum for D:\shares\Software\Tag & Rename\TagRename335\TagRename335.exe
*** ERROR: Module load completed but symbols could not be loaded for D:\shares\Software\Tag & Rename\TagRename335\TagRename335.exe
function: TagRename335
00413938 07 pop es
00413939 59 pop ecx
0041393a 51 push ecx
0041393b ad lodsd
0041393c 89c2 mov edx,eax
0041393e ffd7 call edi
00413940 59 pop ecx
00413941 50 push eax
00413942 e2f6 loop TagRename335+0x1393a (0041393a)
00413944 2f das
FAULT ->00413945 ee out dx,al
00413946 c47794 les esi,[edi-0x6c]
00413949 5c pop esp
0041394a c3 ret
0041394b 777c ja TagRename335+0x139c9 (004139c9)
0041394d 53 push ebx
0041394e c3 ret
0041394f 77db ja TagRename335+0x1392c (0041392c)
00413951 f1 ???
00413952 c177a4f1 shl dword ptr [edi-0x5c],0xf1
00413956 c17775d6 shl dword ptr [edi+0x75],0xd6
*----> Stack Back Trace <----*
ChildEBP RetAddr Args to Child
0012ffa0 00000000 0012fff0 0012ffc0 7ffdf000 TagRename335+0x13945
*----> Raw Stack Dump <----*
000000000012ff68 8b f3 e5 77 26 6a e7 77 - e3 7a e7 77 65 23 e4 77 ...w&j.w.z.we#.w
000000000012ff78 b9 24 e4 77 ff 45 e6 77 - 6f 3e e6 77 67 61 65 6c .$.w.E.wo>.wgael
000000000012ff88 69 63 75 6d 00 00 00 00 - 00 00 40 00 7a 3d e6 77 icum......@.z=.w
000000000012ff98 ca 1d e4 77 00 00 e4 77 - 00 00 00 00 00 00 00 00 ...w...w........
000000000012ffa8 f0 ff 12 00 c0 ff 12 00 - 00 f0 fd 7f 0c 86 82 7c ...............|
000000000012ffb8 b0 ff 12 00 00 00 00 00 - 1c 99 40 00 3b f2 e6 77 ..........@.;..w
000000000012ffc8 00 00 00 00 00 00 00 00 - 00 f0 fd 7f 96 00 00 c0 ................
000000000012ffd8 c8 ff 12 00 9c fb 12 00 - ff ff ff ff 60 1a e6 77 ............`..w
000000000012ffe8 48 f2 e6 77 00 00 00 00 - 00 00 00 00 00 00 00 00 H..w............
000000000012fff8 00 38 41 00 00 00 00 00 - 41 63 74 78 20 00 00 00 .8A.....Actx ...
0000000000130008 01 00 00 00 80 4f 00 00 - 24 01 00 00 00 00 00 00 .....O..$.......
0000000000130018 20 00 00 00 00 00 00 00 - 14 00 00 00 01 00 00 00 ...............
0000000000130028 0a 00 00 00 34 00 00 00 - b4 01 00 00 01 00 00 00 ....4...........
0000000000130038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000130048 00 00 00 00 02 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000130058 00 00 00 00 14 03 00 00 - 9c 01 00 00 00 00 00 00 ................
0000000000130068 5b 49 59 2d b0 04 00 00 - 32 00 00 00 e4 04 00 00 [IY-....2.......
0000000000130078 d2 02 00 00 00 00 00 00 - ba 71 32 f3 b8 07 00 00 .........q2.....
0000000000130088 4a 00 00 00 04 08 00 00 - 1a 03 00 00 00 00 00 00 J...............
0000000000130098 cd ea ce 32 20 0b 00 00 - 42 00 00 00 64 0b 00 00 ...2 ...B...d...
*----> State Dump for Thread Id 0x1538 <----*
eax=7c80e1fa ebx=00a8fef0 ecx=00000000 edx=00000000 esi=00000002 edi=00000000
eip=7c82860c esp=00a8fea4 ebp=00a8ff48 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll -
function: ntdll!KiFastSystemCallRet
7c8285ee e82c000000 call ntdll!RtlRaiseException (7c82861f)
7c8285f3 8b0424 mov eax,[esp]
7c8285f6 8be5 mov esp,ebp
7c8285f8 5d pop ebp
7c8285f9 c3 ret
7c8285fa 8da42400000000 lea esp,[esp]
7c828601 8da42400000000 lea esp,[esp]
ntdll!KiFastSystemCall:
7c828608 8bd4 mov edx,esp
7c82860a 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c82860c c3 ret
7c82860d 8da42400000000 lea esp,[esp]
7c828614 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c828618 8d542408 lea edx,[esp+0x8]
7c82861c cd2e int 2e
7c82861e c3 ret
ntdll!RtlRaiseException:
7c82861f 55 push ebp
7c828620 8bec mov ebp,esp
7c828622 8da42430fdffff lea esp,[esp-0x2d0]
*----> Stack Back Trace <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
WARNING: Stack unwind information not available. Following frames may be wrong.
00a8ff48 7c80e4a2 00000002 00a8ff70 00000000 ntdll!KiFastSystemCallRet
00a8ffb8 77e6482f 00000000 00000000 00000000 ntdll!RtlSetLastWin32ErrorAndNtStatusFromNtStatus+0x301
00a8ffec 00000000 7c80e1fa 00000000 00000000 kernel32!GetModuleHandleA+0xdf
*----> Raw Stack Dump <----*
0000000000a8fea4 19 7d 82 7c bb e5 80 7c - 02 00 00 00 f0 fe a8 00 .}.|...|........
0000000000a8feb4 01 00 00 00 01 00 00 00 - 10 ff a8 00 00 10 00 00 ................
0000000000a8fec4 88 1f 89 00 c0 a3 88 7c - 24 00 00 00 01 00 00 00 .......|$.......
0000000000a8fed4 00 00 00 00 00 00 00 00 - 30 00 00 00 ff ff ff ff ........0.......
0000000000a8fee4 ff ff ff ff 61 d3 80 7c - 00 00 00 00 64 00 00 00 ....a..|....d...
0000000000a8fef4 70 00 00 00 08 00 00 c0 - 00 10 00 00 30 ff a8 00 p...........0...
0000000000a8ff04 f1 96 82 7c f6 96 82 7c - 00 10 00 00 00 a2 2f 4d ...|...|....../M
0000000000a8ff14 ff ff ff ff 00 f0 fd 7f - c0 a3 88 7c 10 ff a8 00 ...........|....
0000000000a8ff24 f0 fe a8 00 00 97 82 7c - 02 00 00 00 c0 fe a8 00 .......|........
0000000000a8ff34 ae e1 80 7c dc ff a8 00 - 90 82 82 7c c8 d3 80 7c ...|.......|...|
0000000000a8ff44 00 00 00 00 b8 ff a8 00 - a2 e4 80 7c 02 00 00 00 ...........|....
0000000000a8ff54 70 ff a8 00 00 00 00 00 - e0 93 04 00 01 00 00 00 p...............
0000000000a8ff64 00 00 00 00 00 00 00 00 - 00 00 00 00 64 00 00 00 ............d...
0000000000a8ff74 70 00 00 00 00 10 00 00 - 88 1f 89 00 00 10 00 00 p...............
0000000000a8ff84 90 2f 89 00 80 90 88 7c - 00 00 00 00 20 00 00 00 ./.....|.... ...
0000000000a8ff94 a0 90 88 7c 00 10 00 00 - 80 90 88 7c 88 1f 89 00 ...|.......|....
0000000000a8ffa4 00 00 00 00 a0 90 88 7c - e5 03 00 00 00 10 00 00 .......|........
0000000000a8ffb4 90 2f 89 00 ec ff a8 00 - 2f 48 e6 77 00 00 00 00 ./....../H.w....
0000000000a8ffc4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000a8ffd4 c4 ff a8 00 34 ff 82 80 - ff ff ff ff 60 1a e6 77 ....4.......`..w
Application exception occurred:
App: D:\shares\Software\Tag & Rename\TagRename335\TagRename335.exe (pid=5772)
When: 6/21/2009 @ 12:24:16.734
Exception number: c0000096 (privileged instruction)
*----> System Information <----*
Computer Name: MEDIASERVER
User Name: Administrator
Terminal Session Id: 1
Number of Processors: 1
Processor Type: x86 Family 6 Model 22 Stepping 1
Windows Version: 5.2
Current Build: 3790
Service Pack: 2
Current Type: Uniprocessor Free
Registered Organization: Windows Home Server
Registered Owner: Windows Home Server
*----> Task List <----*
0 System Process
4 System
364 smss.exe
412 csrss.exe
436 winlogon.exe
484 services.exe
496 lsass.exe
688 svchost.exe
776 svchost.exe
832 svchost.exe
860 svchost.exe
900 svchost.exe
1052 spoolsv.exe
1076 msdtc.exe
1196 mDNSResponder.exe
1224 svchost.exe
1264 BackgroundTranscoder.exe
1312 HPOnlineBackupService.exe
1364 IAANTMon.exe
1384 inetinfo.exe
1420 llssrv.exe
1508 MediaReorganizeService.exe
1732 svchost.exe
1748 sbscrexe.exe
1780 svchost.exe
1840 svchost.exe
1876 twonkymedia.exe
1996 svchost.exe
2012 vds.exe
2072 SearchIndexer.exe
2144 firefly.exe
2256 TwonkyMediaServer.exe
2296 HPServerMonitor.exe
2336 qsm.exe
2404 TransportService.exe
2508 wmccds.exe
2620 pdl.exe
2852 wmiprvse.exe
3064 portfwd.exe
3104 svchost.exe
3144 whsarch.exe
3216 whsbackup.exe
3716 dmadmin.exe
3860 alg.exe
384 w3wp.exe
1028 demigrator.exe
3416 csrss.exe
1824 winlogon.exe
4020 rdpclip.exe
3624 Explorer.EXE
732 iaanotif.exe
2284 ctfmon.exe
1048 WindowsSearch.exe
924 svchost.exe
4260 mmc.exe
4916 HomeServerConsole.exe
4232 wmiprvse.exe
5920 vssvc.exe
2796 svchost.exe
2944 w3wp.exe
5772 TagRename335.exe
4200 drwtsn32.exe
*----> Module List <----*
0000000000400000 - 0000000000414652: D:\shares\Software\Tag & Rename\TagRename335\TagRename335.exe
0000000075490000 - 00000000754f5000: C:\WINDOWS\system32\USP10.dll
0000000076290000 - 00000000762ad000: C:\WINDOWS\system32\IMM32.DLL
0000000076f50000 - 0000000076f63000: C:\WINDOWS\system32\Secur32.dll
0000000077380000 - 0000000077411000: C:\WINDOWS\system32\user32.dll
0000000077420000 - 0000000077523000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.3790.3959_x-ww_D8713E55\comctl32.dll
0000000077670000 - 00000000777a9000: C:\WINDOWS\system32\ole32.dll
0000000077ba0000 - 0000000077bfa000: C:\WINDOWS\system32\msvcrt.dll
0000000077c00000 - 0000000077c49000: C:\WINDOWS\system32\GDI32.dll
0000000077c50000 - 0000000077cef000: C:\WINDOWS\system32\RPCRT4.dll
0000000077d00000 - 0000000077d8b000: C:\WINDOWS\system32\oleaut32.dll
0000000077da0000 - 0000000077df2000: C:\WINDOWS\system32\SHLWAPI.dll
0000000077e40000 - 0000000077f42000: C:\WINDOWS\system32\kernel32.dll
000000007c800000 - 000000007c8c2000: C:\WINDOWS\system32\ntdll.dll
000000007d1e0000 - 000000007d27c000: C:\WINDOWS\system32\ADVAPI32.dll
000000007f000000 - 000000007f009000: C:\WINDOWS\system32\LPK.DLL
*----> State Dump for Thread Id 0x1564 <----*
eax=77e5f385 ebx=77e40000 ecx=00000000 edx=77ec0d20 esi=00413934 edi=00413828
eip=00413945 esp=0012ff68 ebp=0012ffa0 iopl=0 nv up ei ng nz ac pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00010292
*** WARNING: Unable to verify checksum for D:\shares\Software\Tag & Rename\TagRename335\TagRename335.exe
*** ERROR: Module load completed but symbols could not be loaded for D:\shares\Software\Tag & Rename\TagRename335\TagRename335.exe
function: TagRename335
00413938 07 pop es
00413939 59 pop ecx
0041393a 51 push ecx
0041393b ad lodsd
0041393c 89c2 mov edx,eax
0041393e ffd7 call edi
00413940 59 pop ecx
00413941 50 push eax
00413942 e2f6 loop TagRename335+0x1393a (0041393a)
00413944 2f das
FAULT ->00413945 ee out dx,al
00413946 c47794 les esi,[edi-0x6c]
00413949 5c pop esp
0041394a c3 ret
0041394b 777c ja TagRename335+0x139c9 (004139c9)
0041394d 53 push ebx
0041394e c3 ret
0041394f 77db ja TagRename335+0x1392c (0041392c)
00413951 f1 ???
00413952 c177a4f1 shl dword ptr [edi-0x5c],0xf1
00413956 c17775d6 shl dword ptr [edi+0x75],0xd6
*----> Stack Back Trace <----*
ChildEBP RetAddr Args to Child
0012ffa0 00000000 0012fff0 0012ffc0 7ffd5000 TagRename335+0x13945
*----> Raw Stack Dump <----*
000000000012ff68 8b f3 e5 77 26 6a e7 77 - e3 7a e7 77 65 23 e4 77 ...w&j.w.z.we#.w
000000000012ff78 b9 24 e4 77 ff 45 e6 77 - 6f 3e e6 77 67 61 65 6c .$.w.E.wo>.wgael
000000000012ff88 69 63 75 6d 00 00 00 00 - 00 00 40 00 7a 3d e6 77 icum......@.z=.w
000000000012ff98 ca 1d e4 77 00 00 e4 77 - 00 00 00 00 00 00 00 00 ...w...w........
000000000012ffa8 f0 ff 12 00 c0 ff 12 00 - 00 50 fd 7f 0c 86 82 7c .........P.....|
000000000012ffb8 b0 ff 12 00 00 00 00 00 - 1c 99 40 00 3b f2 e6 77 ..........@.;..w
000000000012ffc8 00 00 00 00 00 00 00 00 - 00 50 fd 7f 96 00 00 c0 .........P......
000000000012ffd8 c8 ff 12 00 9c fb 12 00 - ff ff ff ff 60 1a e6 77 ............`..w
000000000012ffe8 48 f2 e6 77 00 00 00 00 - 00 00 00 00 00 00 00 00 H..w............
000000000012fff8 00 38 41 00 00 00 00 00 - 41 63 74 78 20 00 00 00 .8A.....Actx ...
0000000000130008 01 00 00 00 80 4f 00 00 - 24 01 00 00 00 00 00 00 .....O..$.......
0000000000130018 20 00 00 00 00 00 00 00 - 14 00 00 00 01 00 00 00 ...............
0000000000130028 0a 00 00 00 34 00 00 00 - b4 01 00 00 01 00 00 00 ....4...........
0000000000130038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000130048 00 00 00 00 02 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000130058 00 00 00 00 14 03 00 00 - 9c 01 00 00 00 00 00 00 ................
0000000000130068 5b 49 59 2d b0 04 00 00 - 32 00 00 00 e4 04 00 00 [IY-....2.......
0000000000130078 d2 02 00 00 00 00 00 00 - ba 71 32 f3 b8 07 00 00 .........q2.....
0000000000130088 4a 00 00 00 04 08 00 00 - 1a 03 00 00 00 00 00 00 J...............
0000000000130098 cd ea ce 32 20 0b 00 00 - 42 00 00 00 64 0b 00 00 ...2 ...B...d...
*----> State Dump for Thread Id 0xbb8 <----*
eax=7c80e1fa ebx=00a8fef0 ecx=00000000 edx=00000000 esi=00000002 edi=00000000
eip=7c82860c esp=00a8fea4 ebp=00a8ff48 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll -
function: ntdll!KiFastSystemCallRet
7c8285ee e82c000000 call ntdll!RtlRaiseException (7c82861f)
7c8285f3 8b0424 mov eax,[esp]
7c8285f6 8be5 mov esp,ebp
7c8285f8 5d pop ebp
7c8285f9 c3 ret
7c8285fa 8da42400000000 lea esp,[esp]
7c828601 8da42400000000 lea esp,[esp]
ntdll!KiFastSystemCall:
7c828608 8bd4 mov edx,esp
7c82860a 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c82860c c3 ret
7c82860d 8da42400000000 lea esp,[esp]
7c828614 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c828618 8d542408 lea edx,[esp+0x8]
7c82861c cd2e int 2e
7c82861e c3 ret
ntdll!RtlRaiseException:
7c82861f 55 push ebp
7c828620 8bec mov ebp,esp
7c828622 8da42430fdffff lea esp,[esp-0x2d0]
*----> Stack Back Trace <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
WARNING: Stack unwind information not available. Following frames may be wrong.
00a8ff48 7c80e4a2 00000002 00a8ff70 00000000 ntdll!KiFastSystemCallRet
00a8ffb8 77e6482f 00000000 00000000 00000000 ntdll!RtlSetLastWin32ErrorAndNtStatusFromNtStatus+0x301
00a8ffec 00000000 7c80e1fa 00000000 00000000 kernel32!GetModuleHandleA+0xdf
*----> Raw Stack Dump <----*
0000000000a8fea4 19 7d 82 7c bb e5 80 7c - 02 00 00 00 f0 fe a8 00 .}.|...|........
0000000000a8feb4 01 00 00 00 01 00 00 00 - 10 ff a8 00 00 10 00 00 ................
0000000000a8fec4 88 1f 89 00 c0 a3 88 7c - 24 00 00 00 01 00 00 00 .......|$.......
0000000000a8fed4 00 00 00 00 00 00 00 00 - 30 00 00 00 ff ff ff ff ........0.......
0000000000a8fee4 ff ff ff ff 61 d3 80 7c - 00 00 00 00 64 00 00 00 ....a..|....d...
0000000000a8fef4 70 00 00 00 08 00 00 c0 - 00 10 00 00 30 ff a8 00 p...........0...
0000000000a8ff04 f1 96 82 7c f6 96 82 7c - 00 10 00 00 00 a2 2f 4d ...|...|....../M
0000000000a8ff14 ff ff ff ff 00 50 fd 7f - c0 a3 88 7c 10 ff a8 00 .....P.....|....
0000000000a8ff24 f0 fe a8 00 00 97 82 7c - 02 00 00 00 c0 fe a8 00 .......|........
0000000000a8ff34 ae e1 80 7c dc ff a8 00 - 90 82 82 7c c8 d3 80 7c ...|.......|...|
0000000000a8ff44 00 00 00 00 b8 ff a8 00 - a2 e4 80 7c 02 00 00 00 ...........|....
0000000000a8ff54 70 ff a8 00 00 00 00 00 - e0 93 04 00 01 00 00 00 p...............
0000000000a8ff64 00 00 00 00 00 00 00 00 - 00 00 00 00 64 00 00 00 ............d...
0000000000a8ff74 70 00 00 00 00 10 00 00 - 88 1f 89 00 00 10 00 00 p...............
0000000000a8ff84 90 2f 89 00 80 90 88 7c - 00 00 00 00 20 00 00 00 ./.....|.... ...
0000000000a8ff94 a0 90 88 7c 00 10 00 00 - 80 90 88 7c 88 1f 89 00 ...|.......|....
0000000000a8ffa4 00 00 00 00 a0 90 88 7c - e5 03 00 00 00 10 00 00 .......|........
0000000000a8ffb4 90 2f 89 00 ec ff a8 00 - 2f 48 e6 77 00 00 00 00 ./....../H.w....
0000000000a8ffc4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000a8ffd4 c4 ff a8 00 34 ff 82 80 - ff ff ff ff 60 1a e6 77 ....4.......`..w
Application exception occurred:
App: D:\shares\Software\QuickBooks\QB 2009 Premier\Setup.exe (pid=3056)
When: 6/21/2009 @ 12:24:31.312
Exception number: c0000096 (privileged instruction)
*----> System Information <----*
Computer Name: MEDIASERVER
User Name: Administrator
Terminal Session Id: 1
Number of Processors: 1
Processor Type: x86 Family 6 Model 22 Stepping 1
Windows Version: 5.2
Current Build: 3790
Service Pack: 2
Current Type: Uniprocessor Free
Registered Organization: Windows Home Server
Registered Owner: Windows Home Server
*----> Task List <----*
0 System Process
4 System
364 smss.exe
412 csrss.exe
436 winlogon.exe
484 services.exe
496 lsass.exe
688 svchost.exe
776 svchost.exe
832 svchost.exe
860 svchost.exe
900 svchost.exe
1052 spoolsv.exe
1076 msdtc.exe
1196 mDNSResponder.exe
1224 svchost.exe
1264 BackgroundTranscoder.exe
1312 HPOnlineBackupService.exe
1364 IAANTMon.exe
1384 inetinfo.exe
1420 llssrv.exe
1508 MediaReorganizeService.exe
1732 svchost.exe
1748 sbscrexe.exe
1780 svchost.exe
1840 svchost.exe
1876 twonkymedia.exe
1996 svchost.exe
2012 vds.exe
2072 SearchIndexer.exe
2144 firefly.exe
2256 TwonkyMediaServer.exe
2296 HPServerMonitor.exe
2336 qsm.exe
2404 TransportService.exe
2508 wmccds.exe
2620 pdl.exe
2852 wmiprvse.exe
3064 portfwd.exe
3104 svchost.exe
3144 whsarch.exe
3216 whsbackup.exe
3716 dmadmin.exe
3860 alg.exe
384 w3wp.exe
1028 demigrator.exe
3416 csrss.exe
1824 winlogon.exe
4020 rdpclip.exe
3624 Explorer.EXE
732 iaanotif.exe
2284 ctfmon.exe
1048 WindowsSearch.exe
924 svchost.exe
4260 mmc.exe
4916 HomeServerConsole.exe
4232 wmiprvse.exe
5920 vssvc.exe
2796 svchost.exe
2944 w3wp.exe
3056 Setup.exe
3176 SearchProtocolHost.exe
4284 drwtsn32.exe
*----> Module List <----*
0000000000400000 - 000000000049dcce: D:\shares\Software\QuickBooks\QB 2009 Premier\Setup.exe
0000000071640000 - 000000007180d000: C:\WINDOWS\AppPatch\AcGenral.DLL
0000000071af0000 - 0000000071b12000: C:\WINDOWS\system32\ShimEng.dll
0000000071b70000 - 0000000071ba6000: C:\WINDOWS\system32\UxTheme.dll
0000000071bc0000 - 0000000071bc8000: C:\WINDOWS\system32\rdpsnd.dll
0000000071c40000 - 0000000071c97000: C:\WINDOWS\system32\NETAPI32.dll
0000000075490000 - 00000000754f5000: C:\WINDOWS\system32\USP10.dll
0000000075e60000 - 0000000075e87000: C:\WINDOWS\system32\apphelp.dll
0000000076290000 - 00000000762ad000: C:\WINDOWS\system32\IMM32.DLL
0000000076920000 - 00000000769e2000: C:\WINDOWS\system32\USERENV.dll
0000000076aa0000 - 0000000076acd000: C:\WINDOWS\system32\WINMM.dll
0000000076b70000 - 0000000076b7b000: C:\WINDOWS\system32\PSAPI.DLL
0000000076f50000 - 0000000076f63000: C:\WINDOWS\system32\Secur32.dll
00000000771f0000 - 0000000077201000: C:\WINDOWS\system32\WINSTA.dll
0000000077380000 - 0000000077411000: C:\WINDOWS\system32\USER32.dll
0000000077420000 - 0000000077523000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.3790.3959_x-ww_D8713E55\comctl32.dll
0000000077670000 - 00000000777a9000: C:\WINDOWS\system32\ole32.dll
0000000077b70000 - 0000000077b84000: C:\WINDOWS\system32\MSACM32.dll
0000000077b90000 - 0000000077b98000: C:\WINDOWS\system32\VERSION.dll
0000000077ba0000 - 0000000077bfa000: C:\WINDOWS\system32\msvcrt.dll
0000000077c00000 - 0000000077c49000: C:\WINDOWS\system32\GDI32.dll
0000000077c50000 - 0000000077cef000: C:\WINDOWS\system32\RPCRT4.dll
0000000077d00000 - 0000000077d8b000: C:\WINDOWS\system32\OLEAUT32.dll
0000000077da0000 - 0000000077df2000: C:\WINDOWS\system32\SHLWAPI.dll
0000000077e40000 - 0000000077f42000: C:\WINDOWS\system32\kernel32.dll
000000007c800000 - 000000007c8c2000: C:\WINDOWS\system32\ntdll.dll
000000007c8d0000 - 000000007d0cf000: C:\WINDOWS\system32\SHELL32.dll
000000007d1e0000 - 000000007d27c000: C:\WINDOWS\system32\ADVAPI32.dll
000000007f000000 - 000000007f009000: C:\WINDOWS\system32\LPK.DLL
*----> State Dump for Thread Id 0xccc <----*
eax=77e5f385 ebx=77e40000 ecx=00000000 edx=77ec0d20 esi=0049cfb0 edi=0049cea4
eip=0049cfc1 esp=0013ff68 ebp=0013ffa0 iopl=0 nv up ei ng nz ac pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00010292
*** ERROR: Module load completed but symbols could not be loaded for D:\shares\Software\QuickBooks\QB 2009 Premier\Setup.exe
function: Setup
0049cfb4 07 pop es
0049cfb5 59 pop ecx
0049cfb6 51 push ecx
0049cfb7 ad lodsd
0049cfb8 89c2 mov edx,eax
0049cfba ffd7 call edi
0049cfbc 59 pop ecx
0049cfbd 50 push eax
0049cfbe e2f6 loop Setup+0x9cfb6 (0049cfb6)
0049cfc0 2f das
FAULT ->0049cfc1 ee out dx,al
0049cfc2 c47794 les esi,[edi-0x6c]
0049cfc5 5c pop esp
0049cfc6 c3 ret
0049cfc7 777c ja Setup+0x9d045 (0049d045)
0049cfc9 53 push ebx
0049cfca c3 ret
0049cfcb 77db ja Setup+0x9cfa8 (0049cfa8)
0049cfcd f1 ???
0049cfce c177a4f1 shl dword ptr [edi-0x5c],0xf1
0049cfd2 c17775d6 shl dword ptr [edi+0x75],0xd6
*----> Stack Back Trace <----*
ChildEBP RetAddr Args to Child
0013ffa0 00000000 0013fff0 0013ffc0 7ffda000 Setup+0x9cfc1
*----> Raw Stack Dump <----*
000000000013ff68 8b f3 e5 77 26 6a e7 77 - e3 7a e7 77 65 23 e4 77 ...w&j.w.z.we#.w
000000000013ff78 b9 24 e4 77 ff 45 e6 77 - 6f 3e e6 77 67 61 65 6c .$.w.E.wo>.wgael
000000000013ff88 69 63 75 6d 00 00 00 00 - 00 00 40 00 7a 3d e6 77 icum......@.z=.w
000000000013ff98 ca 1d e4 77 00 00 e4 77 - 00 00 00 00 00 00 00 00 ...w...w........
000000000013ffa8 f0 ff 13 00 c0 ff 13 00 - 00 a0 fd 7f 0c 86 82 7c ...............|
000000000013ffb8 b0 ff 13 00 00 00 00 00 - 04 13 40 00 3b f2 e6 77 ..........@.;..w
000000000013ffc8 00 00 00 00 00 00 00 00 - 00 a0 fd 7f 96 00 00 c0 ................
000000000013ffd8 c8 ff 13 00 9c fb 13 00 - ff ff ff ff 60 1a e6 77 ............`..w
000000000013ffe8 48 f2 e6 77 00 00 00 00 - 00 00 00 00 00 00 00 00 H..w............
000000000013fff8 7c ce 49 00 00 00 00 00 - 41 63 74 78 20 00 00 00 |.I.....Actx ...
0000000000140008 01 00 00 00 80 4f 00 00 - 24 01 00 00 00 00 00 00 .....O..$.......
0000000000140018 20 00 00 00 00 00 00 00 - 14 00 00 00 01 00 00 00 ...............
0000000000140028 0a 00 00 00 34 00 00 00 - b4 01 00 00 01 00 00 00 ....4...........
0000000000140038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000140048 00 00 00 00 02 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000140058 00 00 00 00 14 03 00 00 - 9c 01 00 00 00 00 00 00 ................
0000000000140068 5b 49 59 2d b0 04 00 00 - 32 00 00 00 e4 04 00 00 [IY-....2.......
0000000000140078 d2 02 00 00 00 00 00 00 - ba 71 32 f3 b8 07 00 00 .........q2.....
0000000000140088 4a 00 00 00 04 08 00 00 - 1a 03 00 00 00 00 00 00 J...............
0000000000140098 cd ea ce 32 20 0b 00 00 - 42 00 00 00 64 0b 00 00 ...2 ...B...d...
*----> State Dump for Thread Id 0x1298 <----*
eax=7c80e1fa ebx=00c1fef0 ecx=00000000 edx=00000000 esi=00000002 edi=00000000
eip=7c82860c esp=00c1fea4 ebp=00c1ff48 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll -
function: ntdll!KiFastSystemCallRet
7c8285ee e82c000000 call ntdll!RtlRaiseException (7c82861f)
7c8285f3 8b0424 mov eax,[esp]
7c8285f6 8be5 mov esp,ebp
7c8285f8 5d pop ebp
7c8285f9 c3 ret
7c8285fa 8da42400000000 lea esp,[esp]
7c828601 8da42400000000 lea esp,[esp]
ntdll!KiFastSystemCall:
7c828608 8bd4 mov edx,esp
7c82860a 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c82860c c3 ret
7c82860d 8da42400000000 lea esp,[esp]
7c828614 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c828618 8d542408 lea edx,[esp+0x8]
7c82861c cd2e int 2e
7c82861e c3 ret
ntdll!RtlRaiseException:
7c82861f 55 push ebp
7c828620 8bec mov ebp,esp
7c828622 8da42430fdffff lea esp,[esp-0x2d0]
*----> Stack Back Trace <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
WARNING: Stack unwind information not available. Following frames may be wrong.
00c1ff48 7c80e4a2 00000002 00c1ff70 00000000 ntdll!KiFastSystemCallRet
00c1ffb8 77e6482f 00000000 00000000 00000000 ntdll!RtlSetLastWin32ErrorAndNtStatusFromNtStatus+0x301
00c1ffec 00000000 7c80e1fa 00000000 00000000 kernel32!GetModuleHandleA+0xdf
*----> Raw Stack Dump <----*
0000000000c1fea4 19 7d 82 7c bb e5 80 7c - 02 00 00 00 f0 fe c1 00 .}.|...|........
0000000000c1feb4 01 00 00 00 01 00 00 00 - 10 ff c1 00 00 10 00 00 ................
0000000000c1fec4 88 1f a2 00 c0 a3 88 7c - 24 00 00 00 01 00 00 00 .......|$.......
0000000000c1fed4 00 00 00 00 00 00 00 00 - 30 00 00 00 ff ff ff ff ........0.......
0000000000c1fee4 ff ff ff ff 61 d3 80 7c - 00 00 00 00 88 00 00 00 ....a..|........
0000000000c1fef4 94 00 00 00 08 00 00 c0 - 00 10 00 00 30 ff c1 00 ............0...
0000000000c1ff04 f1 96 82 7c f6 96 82 7c - 00 10 00 00 00 a2 2f 4d ...|...|....../M
0000000000c1ff14 ff ff ff ff 00 a0 fd 7f - c0 a3 88 7c 10 ff c1 00 ...........|....
0000000000c1ff24 f0 fe c1 00 00 97 82 7c - 02 00 00 00 c0 fe c1 00 .......|........
0000000000c1ff34 ae e1 80 7c dc ff c1 00 - 90 82 82 7c c8 d3 80 7c ...|.......|...|
0000000000c1ff44 00 00 00 00 b8 ff c1 00 - a2 e4 80 7c 02 00 00 00 ...........|....
0000000000c1ff54 70 ff c1 00 00 00 00 00 - e0 93 04 00 01 00 00 00 p...............
0000000000c1ff64 00 00 00 00 00 00 00 00 - 00 00 00 00 88 00 00 00 ................
0000000000c1ff74 94 00 00 00 00 10 00 00 - 88 1f a2 00 00 10 00 00 ................
0000000000c1ff84 90 2f a2 00 80 90 88 7c - 00 00 00 00 20 00 00 00 ./.....|.... ...
0000000000c1ff94 a0 90 88 7c 00 10 00 00 - 80 90 88 7c 88 1f a2 00 ...|.......|....
0000000000c1ffa4 00 00 00 00 a0 90 88 7c - e5 03 00 00 00 10 00 00 .......|........
0000000000c1ffb4 90 2f a2 00 ec ff c1 00 - 2f 48 e6 77 00 00 00 00 ./....../H.w....
0000000000c1ffc4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000c1ffd4 c4 ff c1 00 34 ff 82 80 - ff ff ff ff 60 1a e6 77 ....4.......`..w
Application exception occurred:
App: D:\shares\Software\[Data Recovery apps]\Recover My Files v.3.94.4393\RecoverMyFiles-Setup.exe (pid=4068)
When: 6/21/2009 @ 12:24:43.109
Exception number: c0000096 (privileged instruction)
*----> System Information <----*
Computer Name: MEDIASERVER
User Name: Administrator
Terminal Session Id: 1
Number of Processors: 1
Processor Type: x86 Family 6 Model 22 Stepping 1
Windows Version: 5.2
Current Build: 3790
Service Pack: 2
Current Type: Uniprocessor Free
Registered Organization: Windows Home Server
Registered Owner: Windows Home Server
*----> Task List <----*
0 System Process
4 System
364 smss.exe
412 csrss.exe
436 winlogon.exe
484 services.exe
496 lsass.exe
688 svchost.exe
776 svchost.exe
832 svchost.exe
860 svchost.exe
900 svchost.exe
1052 spoolsv.exe
1076 msdtc.exe
1196 mDNSResponder.exe
1224 svchost.exe
1264 BackgroundTranscoder.exe
1312 HPOnlineBackupService.exe
1364 IAANTMon.exe
1384 inetinfo.exe
1420 llssrv.exe
1508 MediaReorganizeService.exe
1732 svchost.exe
1748 sbscrexe.exe
1780 svchost.exe
1840 svchost.exe
1876 twonkymedia.exe
1996 svchost.exe
2012 vds.exe
2072 SearchIndexer.exe
2144 firefly.exe
2256 TwonkyMediaServer.exe
2296 HPServerMonitor.exe
2336 qsm.exe
2404 TransportService.exe
2508 wmccds.exe
2620 pdl.exe
2852 wmiprvse.exe
3064 portfwd.exe
3104 svchost.exe
3144 whsarch.exe
3216 whsbackup.exe
3716 dmadmin.exe
3860 alg.exe
384 w3wp.exe
1028 demigrator.exe
3416 csrss.exe
1824 winlogon.exe
4020 rdpclip.exe
3624 Explorer.EXE
732 iaanotif.exe
2284 ctfmon.exe
1048 WindowsSearch.exe
924 svchost.exe
4260 mmc.exe
4916 HomeServerConsole.exe
4232 wmiprvse.exe
5920 vssvc.exe
2796 svchost.exe
2944 w3wp.exe
3176 SearchProtocolHost.exe
2896 SearchFilterHost.exe
4068 RecoverMyFiles-Setup.exe
4144 drwtsn32.exe
*----> Module List <----*
0000000000400000 - 0000000000413652: D:\shares\Software\[Data Recovery apps]\Recover My Files v.3.94.4393\RecoverMyFiles-Setup.exe
0000000075490000 - 00000000754f5000: C:\WINDOWS\system32\USP10.dll
0000000076290000 - 00000000762ad000: C:\WINDOWS\system32\IMM32.DLL
0000000076f50000 - 0000000076f63000: C:\WINDOWS\system32\Secur32.dll
0000000077380000 - 0000000077411000: C:\WINDOWS\system32\user32.dll
0000000077420000 - 0000000077523000: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.3790.3959_x-ww_D8713E55\comctl32.dll
0000000077670000 - 00000000777a9000: C:\WINDOWS\system32\ole32.dll
0000000077ba0000 - 0000000077bfa000: C:\WINDOWS\system32\msvcrt.dll
0000000077c00000 - 0000000077c49000: C:\WINDOWS\system32\GDI32.dll
0000000077c50000 - 0000000077cef000: C:\WINDOWS\system32\RPCRT4.dll
0000000077d00000 - 0000000077d8b000: C:\WINDOWS\system32\oleaut32.dll
0000000077da0000 - 0000000077df2000: C:\WINDOWS\system32\SHLWAPI.dll
0000000077e40000 - 0000000077f42000: C:\WINDOWS\system32\kernel32.dll
000000007c800000 - 000000007c8c2000: C:\WINDOWS\system32\ntdll.dll
000000007d1e0000 - 000000007d27c000: C:\WINDOWS\system32\ADVAPI32.dll
000000007f000000 - 000000007f009000: C:\WINDOWS\system32\LPK.DLL
*----> State Dump for Thread Id 0xecc <----*
eax=77e5f385 ebx=77e40000 ecx=00000000 edx=77ec0d20 esi=00412934 edi=00412828
eip=00412945 esp=0012ff68 ebp=0012ffa0 iopl=0 nv up ei ng nz ac pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00010292
*** ERROR: Module load completed but symbols could not be loaded for D:\shares\Software\[Data Recovery apps]\Recover My Files v.3.94.4393\RecoverMyFiles-Setup.exe
function: RecoverMyFiles_Setup
00412938 07 pop es
00412939 59 pop ecx
0041293a 51 push ecx
0041293b ad lodsd
0041293c 89c2 mov edx,eax
0041293e ffd7 call edi
00412940 59 pop ecx
00412941 50 push eax
00412942 e2f6 loop RecoverMyFiles_Setup+0x1293a (0041293a)
00412944 2f das
FAULT ->00412945 ee out dx,al
00412946 c47794 les esi,[edi-0x6c]
00412949 5c pop esp
0041294a c3 ret
0041294b 777c ja RecoverMyFiles_Setup+0x129c9 (004129c9)
0041294d 53 push ebx
0041294e c3 ret
0041294f 77db ja RecoverMyFiles_Setup+0x1292c (0041292c)
00412951 f1 ???
00412952 c177a4f1 shl dword ptr [edi-0x5c],0xf1
00412956 c17775d6 shl dword ptr [edi+0x75],0xd6
*----> Stack Back Trace <----*
ChildEBP RetAddr Args to Child
0012ffa0 00000000 0012fff0 0012ffc0 7ffde000 RecoverMyFiles_Setup+0x12945
*----> Raw Stack Dump <----*
000000000012ff68 8b f3 e5 77 26 6a e7 77 - e3 7a e7 77 65 23 e4 77 ...w&j.w.z.we#.w
000000000012ff78 b9 24 e4 77 ff 45 e6 77 - 6f 3e e6 77 67 61 65 6c .$.w.E.wo>.wgael
000000000012ff88 69 63 75 6d 00 00 00 00 - 00 00 40 00 7a 3d e6 77 icum......@.z=.w
000000000012ff98 ca 1d e4 77 00 00 e4 77 - 00 00 00 00 00 00 00 00 ...w...w........
000000000012ffa8 f0 ff 12 00 c0 ff 12 00 - 00 e0 fd 7f 0c 86 82 7c ...............|
000000000012ffb8 b0 ff 12 00 00 00 00 00 - f0 97 40 00 3b f2 e6 77 ..........@.;..w
000000000012ffc8 00 00 00 00 00 00 00 00 - 00 e0 fd 7f 96 00 00 c0 ................
000000000012ffd8 c8 ff 12 00 9c fb 12 00 - ff ff ff ff 60 1a e6 77 ............`..w
000000000012ffe8 48 f2 e6 77 00 00 00 00 - 00 00 00 00 00 00 00 00 H..w............
000000000012fff8 00 28 41 00 00 00 00 00 - 41 63 74 78 20 00 00 00 .(A.....Actx ...
0000000000130008 01 00 00 00 80 4f 00 00 - 24 01 00 00 00 00 00 00 .....O..$.......
0000000000130018 20 00 00 00 00 00 00 00 - 14 00 00 00 01 00 00 00 ...............
0000000000130028 0a 00 00 00 34 00 00 00 - b4 01 00 00 01 00 00 00 ....4...........
0000000000130038 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000130048 00 00 00 00 02 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000130058 00 00 00 00 14 03 00 00 - 9c 01 00 00 00 00 00 00 ................
0000000000130068 5b 49 59 2d b0 04 00 00 - 32 00 00 00 e4 04 00 00 [IY-....2.......
0000000000130078 d2 02 00 00 00 00 00 00 - ba 71 32 f3 b8 07 00 00 .........q2.....
0000000000130088 4a 00 00 00 04 08 00 00 - 1a 03 00 00 00 00 00 00 J...............
0000000000130098 cd ea ce 32 20 0b 00 00 - 42 00 00 00 64 0b 00 00 ...2 ...B...d...
*----> State Dump for Thread Id 0x1034 <----*
eax=7c80e1fa ebx=00a8fef0 ecx=00000000 edx=00000000 esi=00000002 edi=00000000
eip=7c82860c esp=00a8fea4 ebp=00a8ff48 iopl=0 nv up ei pl zr na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll -
function: ntdll!KiFastSystemCallRet
7c8285ee e82c000000 call ntdll!RtlRaiseException (7c82861f)
7c8285f3 8b0424 mov eax,[esp]
7c8285f6 8be5 mov esp,ebp
7c8285f8 5d pop ebp
7c8285f9 c3 ret
7c8285fa 8da42400000000 lea esp,[esp]
7c828601 8da42400000000 lea esp,[esp]
ntdll!KiFastSystemCall:
7c828608 8bd4 mov edx,esp
7c82860a 0f34 sysenter
ntdll!KiFastSystemCallRet:
7c82860c c3 ret
7c82860d 8da42400000000 lea esp,[esp]
7c828614 8d642400 lea esp,[esp]
ntdll!KiIntSystemCall:
7c828618 8d542408 lea edx,[esp+0x8]
7c82861c cd2e int 2e
7c82861e c3 ret
ntdll!RtlRaiseException:
7c82861f 55 push ebp
7c828620 8bec mov ebp,esp
7c828622 8da42430fdffff lea esp,[esp-0x2d0]
*----> Stack Back Trace <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll -
ChildEBP RetAddr Args to Child
WARNING: Stack unwind information not available. Following frames may be wrong.
00a8ff48 7c80e4a2 00000002 00a8ff70 00000000 ntdll!KiFastSystemCallRet
00a8ffb8 77e6482f 00000000 00000000 00000000 ntdll!RtlSetLastWin32ErrorAndNtStatusFromNtStatus+0x301
00a8ffec 00000000 7c80e1fa 00000000 00000000 kernel32!GetModuleHandleA+0xdf
*----> Raw Stack Dump <----*
0000000000a8fea4 19 7d 82 7c bb e5 80 7c - 02 00 00 00 f0 fe a8 00 .}.|...|........
0000000000a8feb4 01 00 00 00 01 00 00 00 - 10 ff a8 00 00 10 00 00 ................
0000000000a8fec4 88 1f 89 00 c0 a3 88 7c - 24 00 00 00 01 00 00 00 .......|$.......
0000000000a8fed4 00 00 00 00 00 00 00 00 - 30 00 00 00 ff ff ff ff ........0.......
0000000000a8fee4 ff ff ff ff 61 d3 80 7c - 00 00 00 00 64 00 00 00 ....a..|....d...
0000000000a8fef4 70 00 00 00 08 00 00 c0 - 00 10 00 00 30 ff a8 00 p...........0...
0000000000a8ff04 f1 96 82 7c f6 96 82 7c - 00 10 00 00 00 a2 2f 4d ...|...|....../M
0000000000a8ff14 ff ff ff ff 00 e0 fd 7f - c0 a3 88 7c 10 ff a8 00 ...........|....
0000000000a8ff24 f0 fe a8 00 00 97 82 7c - 02 00 00 00 c0 fe a8 00 .......|........
0000000000a8ff34 ae e1 80 7c dc ff a8 00 - 90 82 82 7c c8 d3 80 7c ...|.......|...|
0000000000a8ff44 00 00 00 00 b8 ff a8 00 - a2 e4 80 7c 02 00 00 00 ...........|....
0000000000a8ff54 70 ff a8 00 00 00 00 00 - e0 93 04 00 01 00 00 00 p...............
0000000000a8ff64 00 00 00 00 00 00 00 00 - 00 00 00 00 64 00 00 00 ............d...
0000000000a8ff74 70 00 00 00 00 10 00 00 - 88 1f 89 00 00 10 00 00 p...............
0000000000a8ff84 90 2f 89 00 80 90 88 7c - 00 00 00 00 20 00 00 00 ./.....|.... ...
0000000000a8ff94 a0 90 88 7c 00 10 00 00 - 80 90 88 7c 88 1f 89 00 ...|.......|....
0000000000a8ffa4 00 00 00 00 a0 90 88 7c - e5 03 00 00 00 10 00 00 .......|........
0000000000a8ffb4 90 2f 89 00 ec ff a8 00 - 2f 48 e6 77 00 00 00 00 ./....../H.w....
0000000000a8ffc4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000000a8ffd4 c4 ff a8 00 34 ff 82 80 - ff ff ff ff 60 1a e6 77 ....4.......`..w