date/time : 2008-11-08, 12:49:01, 600ms computer name : MAXDATA-9C7880C user name : Owner registered owner : Owner operating system : Windows XP Service Pack 3 build 2600 system language : English system up time : 5 hours 36 minutes program up time : 5 hours 28 minutes processor : Intel(R) Celeron(R) CPU 3.06GHz physical memory : 98/447 MB (free/total) free disk space : (C:) 43.46 GB display mode : 1280x1024, 32 bit process id : $db4 allocated memory : 13.75 MB executable : cumulus.exe exec. date/time : 2008-10-27 11:13 version : compiled with : Delphi 2006/07 madExcept version : 3.0h contact name : Tony Usher contact email : callstack crc : $a18a24ce, $4ce351f0, $bb65811a exception number : 1 exception class : EIniFileException exception message : Unable to write to C:\Program Files\cumulus_1_8_3(483_b)\Cumulus\data\today.ini. main thread ($ec4): 0047d294 +05c cumulus.exe IniFiles TIniFile.WriteString 0047bf8a +03a cumulus.exe IniFiles TCustomIniFile.WriteFloat 006bfbd4 +1cc cumulus.exe MainUnit 1907 +27 WriteTodayFile 006c72cd +655 cumulus.exe MainUnit 3111 +66 DoLogfile 006c9ca2 +6c2 cumulus.exe MainUnit 3697 +122 TMainForm.ClockMinutesChanged 006cfc82 +002 cumulus.exe MainUnit 4909 +0 TMainForm.SLMinutesChanged 0066efdf +013 cumulus.exe SLHMTimer 321 +2 TSLHMTimer.MinutesChanged 0066f136 +072 cumulus.exe SLHMTimer 405 +14 TSLHMTimer.OnTimerEvent 0066eedc +034 cumulus.exe SLHMTimer 282 +4 TSLTimer.Timer 0066ec14 +008 cumulus.exe SLHMTimer 154 +1 TSLTimerThread.CallEvent 00477305 +0fd cumulus.exe Classes CheckSynchronize 004d43b2 +68a cumulus.exe Forms TApplication.WndProc 00478b48 +014 cumulus.exe Classes StdWndProc 7e4196c2 +00a USER32.dll DispatchMessageA 004d4b04 +0fc cumulus.exe Forms TApplication.ProcessMessage 004d4b3e +00a cumulus.exe Forms TApplication.HandleMessage 004d4e33 +0b3 cumulus.exe Forms TApplication.Run 006dee97 +1bb cumulus.exe cumulus 69 +24 initialization thread $d18 (THotLogParser): 7c90d1fa +00a ntdll.dll NtDelayExecution 7c8023eb +04b kernel32.dll SleepEx 7c802450 +00a kernel32.dll Sleep 0065df51 +311 cumulus.exe HotLog 1820 +93 THotLogParser.Execute 00450bbf +02b cumulus.exe madExcept HookedTThreadExecute 00477414 +034 cumulus.exe Classes ThreadProc 0040592c +028 cumulus.exe System 48 +0 ThreadWrapper 00450aa1 +00d cumulus.exe madExcept CallThreadProcSafe 00450b0b +037 cumulus.exe madExcept ThreadExceptFrame >> created by main thread ($ec4) at: 0065ce6d +035 cumulus.exe HotLog 1472 +1 THotLogParser.Create thread $f44 (THotLogWriter): 7c90d1fa +00a ntdll.dll NtDelayExecution 7c8023eb +04b kernel32.dll SleepEx 7c802450 +00a kernel32.dll Sleep 00664f1d +3e1 cumulus.exe HotLog 3513 +100 THotLogWriter.Execute 00450bbf +02b cumulus.exe madExcept HookedTThreadExecute 00477414 +034 cumulus.exe Classes ThreadProc 0040592c +028 cumulus.exe System 48 +0 ThreadWrapper 00450aa1 +00d cumulus.exe madExcept CallThreadProcSafe 00450b0b +037 cumulus.exe madExcept ThreadExceptFrame >> created by main thread ($ec4) at: 00664ad6 +016 cumulus.exe HotLog 3384 +1 THotLogWriter.Create thread $eb0 (TJvTimerThread): 7c90d1fa +0a ntdll.dll NtDelayExecution 7c8023eb +4b kernel32.dll SleepEx 006190b2 +a2 cumulus.exe JvTimer 459 +0 TJvTimerThread.Execute 00450bbf +2b cumulus.exe madExcept HookedTThreadExecute 00477414 +34 cumulus.exe Classes ThreadProc 0040592c +28 cumulus.exe System 48 +0 ThreadWrapper 00450aa1 +0d cumulus.exe madExcept CallThreadProcSafe 00450b0b +37 cumulus.exe madExcept ThreadExceptFrame >> created by main thread ($ec4) at: 00618f22 +32 cumulus.exe JvTimer 459 +0 TJvTimerThread.Create thread $fa4 (TJvHidDeviceReadThread): 7c90d1fa +0a ntdll.dll NtDelayExecution 7c8023eb +4b kernel32.dll SleepEx 00659d40 +60 cumulus.exe JvHidControllerClass TJvHidDeviceReadThread.Execute 00450bbf +2b cumulus.exe madExcept HookedTThreadExecute 00477414 +34 cumulus.exe Classes ThreadProc 0040592c +28 cumulus.exe System 48 +0 ThreadWrapper 00450aa1 +0d cumulus.exe madExcept CallThreadProcSafe 00450b0b +37 cumulus.exe madExcept ThreadExceptFrame >> created by main thread ($ec4) at: 00659c39 +21 cumulus.exe JvHidControllerClass TJvHidDeviceReadThread.CtlCreate thread $e4: 7c90df2a +0a ntdll.dll NtWaitForMultipleObjects 7c80956e +00 kernel32.dll WaitForMultipleObjectsEx 7c80a100 +13 kernel32.dll WaitForMultipleObjects 00450aa1 +0d cumulus.exe madExcept CallThreadProcSafe 00450b0b +37 cumulus.exe madExcept ThreadExceptFrame >> created by main thread ($ec4) at: 72d2328c +00 wdmaud.drv thread $670 (TSLTimerThread): 7c90df3a +00a ntdll.dll NtWaitForSingleObject 7c8025d5 +085 kernel32.dll WaitForSingleObjectEx 7c80253d +00d kernel32.dll WaitForSingleObject 00477893 +113 cumulus.exe Classes TThread.Synchronize 0047793a +01e cumulus.exe Classes TThread.Synchronize 0066ebf3 +043 cumulus.exe SLHMTimer 146 +9 TSLTimerThread.Execute 00450bbf +02b cumulus.exe madExcept HookedTThreadExecute 00477414 +034 cumulus.exe Classes ThreadProc 0040592c +028 cumulus.exe System 48 +0 ThreadWrapper 00450aa1 +00d cumulus.exe madExcept CallThreadProcSafe 00450b0b +037 cumulus.exe madExcept ThreadExceptFrame >> created by main thread ($ec4) at: 0066eb3a +03a cumulus.exe SLHMTimer 120 +4 TSLTimerThread.Create thread $a08: 7c90df3a +0a ntdll.dll NtWaitForSingleObject 7c8025d5 +85 kernel32.dll WaitForSingleObjectEx 7c80253d +0d kernel32.dll WaitForSingleObject 00450aa1 +0d cumulus.exe madExcept CallThreadProcSafe 00450b0b +37 cumulus.exe madExcept ThreadExceptFrame >> created by main thread ($ec4) at: 71abd374 +00 WS2_32.dll thread $824: 7c90da2a +0a ntdll.dll NtRemoveIoCompletion 00450aa1 +0d cumulus.exe madExcept CallThreadProcSafe 00450b0b +37 cumulus.exe madExcept ThreadExceptFrame >> created by main thread ($ec4) at: 71a5d926 +00 mswsock.dll modules: 00400000 cumulus.exe C:\Program Files\cumulus_1_8_3(483_b)\Cumulus 00c50000 avgrsstx.dll C:\WINDOWS\system32 030e0000 DesktopSearchSystem300000074.dll C:\Program Files\Copernic Desktop Search - Home 10000000 VantagePro.DLL C:\Program Files\cumulus_1_8_3(483_b)\Cumulus 16080000 mdnsNSP.dll C:\Program Files\Bonjour 5ad70000 uxtheme.dll 6.0.2900.5512 C:\WINDOWS\system32 5b0a0000 umdmxfrm.dll 5.1.2600.0 C:\WINDOWS\system32 5cd70000 serwvdrv.dll 5.1.2600.0 C:\WINDOWS\system32 5d090000 comctl32.dll 5.82.2900.5512 C:\WINDOWS\system32 5edd0000 olepro32.dll 5.1.2600.5512 C:\WINDOWS\system32 662b0000 hnetcfg.dll 5.1.2600.5512 C:\WINDOWS\system32 688f0000 HID.dll 5.1.2600.5512 C:\WINDOWS\system32 71a50000 mswsock.dll 5.1.2600.5625 C:\WINDOWS\System32 71a90000 wshtcpip.dll 5.1.2600.5512 C:\WINDOWS\System32 71aa0000 WS2HELP.dll 5.1.2600.5512 C:\WINDOWS\system32 71ab0000 WS2_32.dll 5.1.2600.5512 C:\WINDOWS\system32 71ad0000 wsock32.dll 5.1.2600.5512 C:\WINDOWS\system32 72cf0000 msadp32.acm 5.1.2600.5512 C:\WINDOWS\system32 72d10000 msacm32.drv 5.1.2600.0 C:\WINDOWS\system32 72d20000 wdmaud.drv 5.1.2600.5512 C:\WINDOWS\system32 73000000 winspool.drv 5.1.2600.5512 C:\WINDOWS\system32 732e0000 RICHED32.DLL 5.1.2600.0 C:\WINDOWS\system32 74720000 MSCTF.dll 5.1.2600.5512 C:\WINDOWS\system32 74e30000 RICHED20.dll C:\WINDOWS\system32 755c0000 msctfime.ime 5.1.2600.5512 C:\WINDOWS\system32 76380000 msimg32.dll 5.1.2600.5512 C:\WINDOWS\system32 76390000 IMM32.DLL 5.1.2600.5512 C:\WINDOWS\system32 763b0000 comdlg32.dll 6.0.2900.5512 C:\WINDOWS\system32 76b40000 winmm.dll 5.1.2600.5512 C:\WINDOWS\system32 76c30000 WINTRUST.dll 5.131.2600.5512 C:\WINDOWS\system32 76c90000 IMAGEHLP.dll 5.1.2600.5512 C:\WINDOWS\system32 76d60000 Iphlpapi.dll 5.1.2600.5512 C:\WINDOWS\system32 76f20000 DNSAPI.dll 5.1.2600.5625 C:\WINDOWS\system32 76f60000 WLDAP32.dll 5.1.2600.5512 C:\WINDOWS\system32 76fb0000 winrnr.dll 5.1.2600.5512 C:\WINDOWS\System32 76fc0000 rasadhlp.dll 5.1.2600.5512 C:\WINDOWS\system32 77120000 oleaut32.dll 5.1.2600.5512 C:\WINDOWS\system32 773d0000 comctl32.dll 6.0.2900.5512 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83 774e0000 ole32.dll 5.1.2600.5512 C:\WINDOWS\system32 77920000 SetupApi.dll 5.1.2600.5512 C:\WINDOWS\system32 77a80000 CRYPT32.dll 5.131.2600.5512 C:\WINDOWS\system32 77b20000 MSASN1.dll 5.1.2600.5512 C:\WINDOWS\system32 77bd0000 midimap.dll 5.1.2600.5512 C:\WINDOWS\system32 77be0000 MSACM32.dll 5.1.2600.5512 C:\WINDOWS\system32 77c00000 version.dll 5.1.2600.5512 C:\WINDOWS\system32 77c10000 msvcrt.dll 7.0.2600.5512 C:\WINDOWS\system32 77dd0000 ADVAPI32.dll 5.1.2600.5512 C:\WINDOWS\system32 77e70000 RPCRT4.dll 5.1.2600.5512 C:\WINDOWS\system32 77f10000 GDI32.dll 5.1.2600.5512 C:\WINDOWS\system32 77f60000 SHLWAPI.dll 6.0.2900.5512 C:\WINDOWS\system32 77fe0000 Secur32.dll 5.1.2600.5512 C:\WINDOWS\system32 7c800000 kernel32.dll 5.1.2600.5512 C:\WINDOWS\system32 7c900000 ntdll.dll 5.1.2600.5512 C:\WINDOWS\system32 7c9c0000 shell32.dll 6.0.2900.5512 C:\WINDOWS\system32 7e410000 USER32.dll 5.1.2600.5512 C:\WINDOWS\system32 7e4b0000 HHCtrl.ocx 5.2.3790.4110 C:\WINDOWS\system32 processes: 000 Idle 004 System normal 1d4 smss.exe normal C:\WINDOWS\system32 20c csrss.exe 224 winlogon.exe high C:\WINDOWS\system32 25c services.exe normal C:\WINDOWS\system32 268 lsass.exe normal C:\WINDOWS\system32 314 svchost.exe normal C:\WINDOWS\system32 35c svchost.exe 3bc svchost.exe normal C:\WINDOWS\System32 40c svchost.exe 47c svchost.exe 498 vsmon.exe normal C:\Windows\system32\ZoneLabs 5b4 spoolsv.exe normal C:\WINDOWS\system32 7c0 mainserv.exe normal C:\Program Files\APC\APC PowerChute Personal Edition 7d4 AppleMobileDeviceService.exe normal C:\Program Files\Common Files\Apple\Mobile Device Support\bin 7e0 avgwdsvc.exe normal C:\PROGRA~1\AVG\AVG8 7f8 mDNSResponder.exe normal C:\Program Files\Bonjour 080 crypserv.exe high C:\WINDOWS\system32 0cc fling.exe normal C:\Program Files\NCH Software\Fling 1a0 jqs.exe idle C:\Program Files\Java\jre6\bin 770 sqlservr.exe 170 RichVideo.exe normal C:\Program Files\CyberLink\Shared Files 1b0 slserv.exe normal C:\WINDOWS\system32 1e4 svchost.exe normal C:\WINDOWS\system32 3ec avgrsx.exe normal C:\PROGRA~1\AVG\AVG8 690 avgemc.exe normal C:\PROGRA~1\AVG\AVG8 8c8 Explorer.EXE normal C:\WINDOWS 9bc alg.exe a68 SOUNDMAN.EXE normal C:\WINDOWS b28 VTTimer.exe normal C:\WINDOWS\system32 b40 VProperty.exe normal C:\PROGRA~1\PHILIP~1 b90 D4.exe normal C:\Program Files\D4 c80 BJMyPrt.exe normal C:\Program Files\Canon\MyPrinter cd0 avgtray.exe normal C:\PROGRA~1\AVG\AVG8 cfc zlclient.exe normal C:\Program Files\Zone Labs\ZoneAlarm d3c QTTask.exe normal C:\Program Files\K-Lite Codec Pack\QuickTime d64 jusched.exe normal C:\Program Files\Java\jre6\bin d70 fling.exe normal C:\Program Files\NCH Software\Fling d9c iTunesHelper.exe normal C:\Program Files\iTunes dc0 SUPERAntiSpyware.exe normal C:\Program Files\SUPERAntiSpyware de0 ctfmon.exe normal C:\WINDOWS\system32 e30 GoogleUpdate.exe normal C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Update e68 DesktopSearchService.exe normal C:\Program Files\Copernic Desktop Search - Home ef0 BitMeter2.exe normal C:\Program Files\Codebox\BitMeter 0c0 iPodService.exe normal C:\Program Files\iPod\bin d60 WebCam3.exe normal C:\Program Files\CoffeeCup Software\WebCam 3.5 33c apcsystray.exe normal C:\Program Files\APC\APC PowerChute Personal Edition 9ac msimn.exe normal C:\Program Files\Outlook Express 9b4 chrome.exe normal C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application b4c chrome.exe below normal C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application db4 cumulus.exe normal C:\Program Files\cumulus_1_8_3(483_b)\Cumulus aa4 chrome.exe normal C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application f8c master.exe normal C:\Program Files\Game Master\Solitaire Master 9f0 SyncBack.exe normal C:\Program Files\2BrightSparks\SyncBack hardware: + Batteries - APC Battery BackUP (driver + Computer - ACPI Uniprocessor PC + Disk drives - HDS72808 0PLA380 SCSI Disk Device - Sony USB HS-CF Card USB Device - Sony USB HS-MS Card USB Device - Sony USB HS-SD Card USB Device - Sony USB HS-SM Card USB Device - ST340014A + Display adapters - VIA/S3G UniChrome Pro IGP (driver + DVD/CD-ROM drives - TSSTcorp CD/DVDW SH-S182D + Floppy disk controllers - Standard floppy disk controller + Floppy disk drives - Floppy disk drive + Human Interface Devices - American Power Conversion USB UPS - HID-compliant device - USB Human Interface Device + IDE ATA/ATAPI controllers - Primary IDE Channel - Secondary IDE Channel - VIA Bus Master IDE Controller - 0571 (driver 5.1.3790.140) + Imaging devices - Philips ToUcam Pro Camera; Video (driver 5.1.2535.0) + Keyboards - Standard 101/102-Key or Microsoft Natural PS/2 Keyboard + Mice and other pointing devices - PS/2 Compatible Mouse + Modems - Intel(R) 536EP V.92 Modem (driver + Monitors - Plug and Play Monitor + Network adapters - Realtek RTL8139 Family PCI Fast Ethernet NIC + Ports (COM & LPT) - Communications Port (COM1) - Communications Port (COM2) - ECP Printer Port (LPT1) + Processors - Intel(R) Celeron(R) CPU 3.06GHz + SCSI and RAID controllers - VIA SATA RAID Controller (driver 5.1.2600.510) + Sound, video and game controllers - Audio Codecs - Legacy Audio Drivers - Legacy Video Capture Devices - Media Control Devices - Philips ToUcam Pro Camera; Audio (Microphone) - Realtek AC'97 Audio for VIA (R) Audio Controller (driver - Unimodem Half-Duplex Audio Device - Video Codecs + System devices - ACPI Fan - ACPI Fixed Feature Button - ACPI Power Button - ACPI Sleep Button - ACPI Thermal Zone - ATK0110 ACPI UTILITY (driver 1043.2.15.37) - Direct memory access controller - ISAPNP Read Data Port - Microcode Update Device - Microsoft ACPI-Compliant System - Microsoft Composite Battery - Microsoft System Management BIOS Driver - Motherboard resources - Motherboard resources - Numeric data processor - PCI bus - Plug and Play Software Device Enumerator - Printer Port Logical Interface - Programmable interrupt controller - System board - System CMOS/real time clock - System speaker - System timer - Terminal Server Keyboard Driver - Terminal Server Mouse Driver - VIA CPU to AGP2.0/AGP3.0 Controller (driver - VIA Standard Host Bridge (driver - VIA Standard Host Bridge (driver - VIA Standard Host Bridge (driver - VIA Standard Host Bridge (driver - VIA Standard Host Bridge (driver - VIA Standard Host Bridge (driver - VIA Standard PCI to ISA Bridge (driver - Volume Manager + Universal Serial Bus controllers - Generic USB Hub - Philips Composite USB Device - USB 2.0 Root Hub - USB Mass Storage Device - USB Root Hub - USB Root Hub - USB Root Hub - USB Root Hub - VIA Rev 5 or later USB Universal Host Controller - VIA Rev 5 or later USB Universal Host Controller - VIA Rev 5 or later USB Universal Host Controller - VIA Rev 5 or later USB Universal Host Controller - VIA USB 2.0 Enhanced Host Controller (driver 5.1.2600.41) cpu registers: eax = 00f45cf0 ebx = 00f478e0 ecx = 00000000 edx = 0047d299 esi = 006bfee0 edi = 006bff44 eip = 0047d299 esp = 0012f874 ebp = 0012f8b8 stack dump: 0012f874 99 d2 47 00 de fa ed 0e - 01 00 00 00 07 00 00 00 ..G............. 0012f884 88 f8 12 00 99 d2 47 00 - f0 5c f4 00 e0 78 f4 00 ......G..\...x.. 0012f894 e0 fe 6b 00 44 ff 6b 00 - b8 f8 12 00 a4 f8 12 00 ..k.D.k......... 0012f8a4 44 ff 6b 00 e0 fe 6b 00 - a8 b9 47 00 f8 bd f8 00 D.k...k...G..... 0012f8b4 0b bf 47 00 e0 f8 12 00 - 8d bf 47 00 a8 13 f0 02 ..G.......G..... 0012f8c4 f0 f8 12 00 c8 51 40 00 - e0 f8 12 00 30 00 00 00 .....Q@.....0... 0012f8d4 38 65 73 00 a8 b9 47 00 - 00 00 00 00 04 fa 12 00 8es...G......... 0012f8e4 d7 fb 6b 00 00 00 00 e0 - a1 6e 50 40 fc f8 12 00 ..k......nP@.... 0012f8f4 c8 51 40 00 04 fa 12 00 - 0c fa 12 00 c8 51 40 00 .Q@..........Q@. 0012f904 04 fa 12 00 84 df 53 00 - 31 00 00 00 00 00 00 00 ......S.1....... 0012f914 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0012f924 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0012f934 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0012f944 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0012f954 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0012f964 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0012f974 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0012f984 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0012f994 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ 0012f9a4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................ disassembling: [...] 006bfbc4 wait 006bfbc5 mov ecx, $6bff44 ; 'Windrun' 006bfbca mov edx, $6bfee0 ; 'Wind' 006bfbcf mov eax, [ebp-$c] 006bfbd2 mov ebx, [eax] 006bfbd4 > call dword ptr [ebx+$38] 006bfbd7 1909 fld dword ptr [$709e60] 006bfbdd add esp, -8 006bfbe0 fstp qword ptr [esp] 006bfbe3 wait 006bfbe4 mov ecx, $6bff54 [...]