You are on page 1of 7

date/time

: 2011-08-12, 03:47:38, 756ms


computer name
: HARNAWAN
user name
: xXx <admin>
registered owner : xXx
operating system : Windows 7 build 7600
system language : Indonesian
system up time
: 2 days 15 hours
program up time : 4 seconds
processors
: 2x AMD Athlon(tm) 64 X2 Dual Core Processor 4000+
physical memory : 1223/2047 MB (free/total)
free disk space : (C:) 17,28 GB (D:) 108,31 GB
display mode
: 1360x768, 32 bit
process id
: $8fc
allocated memory : 37,71 MB
executable
: MaxaRO Patcher.exe
exec. date/time : 2011-07-09 03:00
version
: 2.6.1.66
compiled with
: Delphi 2010
madExcept version : 3.0l
callstack crc
: $8d29c7a5, $7ccedf7e, $7ccedf7e
count
: 7
exception number : 1
exception class : EAccessViolation
exception message : Access violation at address 005140E7 in module 'MaxaRO Patch
er.exe'. Read of address 00000010.
main thread ($708):
005140e7 +00f MaxaRO Patcher.exe
005140cd +005 MaxaRO Patcher.exe
005167e3 +58b MaxaRO Patcher.exe
004f3002 +02e MaxaRO Patcher.exe
00512aed +005 MaxaRO Patcher.exe
0051685e +00a MaxaRO Patcher.exe
004f3552 +016 MaxaRO Patcher.exe
004f722c +01c MaxaRO Patcher.exe
004f7239 +005 MaxaRO Patcher.exe
0051c511 +02d MaxaRO Patcher.exe
7575579a +011 USER32.dll
0051c5c5 +02d MaxaRO Patcher.exe
ts
0051c69a +002 MaxaRO Patcher.exe
0051ced0 +31c MaxaRO Patcher.exe
0049f5b8 +014 MaxaRO Patcher.exe
76e2642b +02b ntdll.dll
00580ceb +01f MaxaRO Patcher.exe
004f18a6 +0ae MaxaRO Patcher.exe
00512ac4 +038 MaxaRO Patcher.exe
005138bd +0f9 MaxaRO Patcher.exe
0049e2c3 +057 MaxaRO Patcher.exe
005118b9 +035 MaxaRO Patcher.exe
0046ed76 +026 MaxaRO Patcher.exe
00406669 +065 MaxaRO Patcher.exe
00618d33 +3af MaxaRO Patcher.exe
75ca1192 +010 kernel32.dll

Forms
Forms
Forms
Controls
Forms
Forms
Controls
Controls
Controls
Forms
Forms
Forms
Forms
Classes
OleCtrls
Controls
Forms
Forms
Classes
Forms
SysUtils
System
Thor

TCustomForm.IsFormSizeStored
TCustomForm.IsClientSizeStored
TCustomForm.CreateParams
TWinControl.CreateWnd
TScrollingWinControl.CreateWnd
TCustomForm.CreateWnd
TWinControl.CreateHandle
TWinControl.HandleNeeded
TWinControl.GetHandle
GetTopMostWindows
EnumWindows
TApplication.DoNormalizeTopMos
TApplication.NormalizeTopMosts
TApplication.WndProc
StdWndProc
KiUserCallbackDispatcher
TOleControl.Destroy
TWinControl.Destroy
TScrollingWinControl.Destroy
TCustomForm.Destroy
TComponent.DestroyComponents
DoneApplication
DoExitProc
985 +0 @Halt0
236 +72 initialization
BaseThreadInitThunk

thread $bc4:
76e25e6a +0a ntdll.dll
NtWaitForMultipleObjects
75ca1192 +10 kernel32.dll BaseThreadInitThunk
thread $ffc:

76e25e9a +0a ntdll.dll


NtWaitForWorkViaWorkerFactory
75ca1192 +10 kernel32.dll BaseThreadInitThunk
thread $8d4:
76e25e8a +0a
75151796 +66
75c9effe +3e
75ca1192 +10

ntdll.dll
KERNELBASE.dll
kernel32.dll
kernel32.dll

NtWaitForSingleObject
WaitForSingleObjectEx
WaitForSingleObjectEx
BaseThreadInitThunk

thread $738:
76e25e9a +0a ntdll.dll
NtWaitForWorkViaWorkerFactory
75ca1192 +10 kernel32.dll BaseThreadInitThunk
thread $cf8:
76e25e9a +0a ntdll.dll
NtWaitForWorkViaWorkerFactory
75ca1192 +10 kernel32.dll BaseThreadInitThunk
thread $918:
76e25e8a +0a
75151796 +66
75c9effe +3e
75c9efad +0d
75ca1192 +10

ntdll.dll
KERNELBASE.dll
kernel32.dll
kernel32.dll
kernel32.dll

thread $4c8:
76e25e8a +0a
76f4302b +5b
76f44a1d +9c
75ca1192 +10

ntdll.dll
WS2_32.dll
WS2_32.dll
kernel32.dll

NtWaitForSingleObject
WaitForSingleObjectEx
WaitForSingleObjectEx
WaitForSingleObject
BaseThreadInitThunk
NtWaitForSingleObject
WahReferenceContextByHandle
select
BaseThreadInitThunk

thread $568: <priority:1>


76e2580a +0a ntdll.dll
NtRemoveIoCompletion
75ca1192 +10 kernel32.dll BaseThreadInitThunk
thread $e4c:
76e25e8a +0a
75151796 +66
75c9effe +3e
75c9efad +0d
75ca1192 +10
modules:
00400000
5e190000
6b6a0000
6e3d0000
6fe50000
703f0000
72920000
72df0000
73000000
73080000
730e0000
73200000
73340000
73370000
734b0000
734e0000
73580000
735c0000

ntdll.dll
KERNELBASE.dll
kernel32.dll
kernel32.dll
kernel32.dll

MaxaRO Patcher.exe
MSHTML.dll
ieframe.dll
rasadhlp.dll
sensapi.dll
winspool.drv
MLANG.dll
wsock32.dll
fwpuclnt.dll
iphlpapi.DLL
WINNSI.DLL
olepro32.dll
peerdist.dll
NLAapi.dll
ntmarta.dll
msimg32.dll
OLEACC.dll
rtutils.dll

NtWaitForSingleObject
WaitForSingleObjectEx
WaitForSingleObjectEx
WaitForSingleObject
BaseThreadInitThunk
2.6.1.66
9.0.8112.16421
9.0.8112.16421
6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
6.1.7600.16385
7.0.0.0
6.1.7600.16617

D:\MELONRO\RagnarokOnline
C:\Windows\system32
C:\Windows\System32
C:\Windows\system32
C:\Windows\system32
C:\Windows\system32
C:\Windows\system32
C:\Windows\system32
C:\Windows\System32
C:\Windows\system32
C:\Windows\system32
C:\Windows\system32
C:\Windows\system32
C:\Windows\system32
C:\Windows\system32
C:\Windows\system32
C:\Windows\System32
C:\Windows\system32

735f0000 rasman.dll
6.1.7600.16385
C:\Windows\system32
73610000 RASAPI32.dll
6.1.7600.16385
C:\Windows\system32
73a20000 dwmapi.dll
6.1.7600.16385
C:\Windows\system32
73e60000 uxtheme.dll
6.1.7600.16385
C:\Windows\system32
73fe0000 comctl32.dll
6.10.7600.16661
C:\Windows\WinSxS\x86_microsoft.w
indows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd
74470000 version.dll
6.1.7600.16385
C:\Windows\system32
74510000 wshtcpip.dll
6.1.7600.16385
C:\Windows\System32
745e0000 USERENV.dll
6.1.7600.16385
C:\Windows\system32
748b0000 dnsapi.DLL
6.1.7600.16385
C:\Windows\system32
749e0000 mswsock.dll
6.1.7600.16385
C:\Windows\system32
74b80000 AUTHZ.dll
6.1.7600.16385
C:\Windows\system32
74bb0000 wship6.dll
6.1.7600.16385
C:\Windows\System32
74e70000 Secur32.dll
6.1.7600.16385
C:\Windows\system32
74e90000 SSPICLI.DLL
6.1.7600.16385
C:\Windows\system32
74eb0000 apphelp.dll
6.1.7600.16481
C:\Windows\system32
74f00000 CRYPTBASE.dll
6.1.7600.16385
C:\Windows\system32
74f80000 profapi.dll
6.1.7600.16385
C:\Windows\system32
75150000 KERNELBASE.dll
6.1.7600.16385
C:\Windows\system32
75280000 LPK.dll
6.1.7600.16385
C:\Windows\system32
75290000 SHLWAPI.dll
6.1.7600.16385
C:\Windows\system32
752f0000 advapi32.dll
6.1.7600.16385
C:\Windows\system32
75390000 sechost.dll
6.1.7600.16385
C:\Windows\SYSTEM32
75550000 urlmon.dll
9.0.8112.16421
C:\Windows\system32
75690000 msvcrt.dll
7.0.7600.16385
C:\Windows\system32
75740000 USER32.dll
6.1.7600.16385
C:\Windows\system32
75810000 ole32.dll
6.1.7600.16624
C:\Windows\system32
75970000 NSI.dll
6.1.7600.16385
C:\Windows\system32
75980000 USP10.dll
1.626.7600.16385 C:\Windows\system32
75a20000 IMM32.DLL
6.1.7600.16385
C:\Windows\system32
75a40000 WLDAP32.dll
6.1.7600.16385
C:\Windows\system32
75a90000 comdlg32.dll
6.1.7600.16385
C:\Windows\system32
75b10000 RPCRT4.dll
6.1.7600.16385
C:\Windows\system32
75bc0000 oleaut32.dll
6.1.7600.16385
C:\Windows\system32
75c50000 kernel32.dll
6.1.7600.16481
C:\Windows\system32
75d90000 GDI32.dll
6.1.7600.16385
C:\Windows\system32
75de0000 shell32.dll
6.1.7600.16644
C:\Windows\system32
76a30000 MSCTF.dll
6.1.7600.16385
C:\Windows\system32
76b00000 iertutil.dll
9.0.8112.16421
C:\Windows\system32
76cc0000 WININET.dll
9.0.8112.16421
C:\Windows\system32
76de0000 ntdll.dll
6.1.7600.16559
C:\Windows\SYSTEM32
76f20000 PSAPI.DLL
6.1.7600.16385
C:\Windows\system32
76f30000 Normaliz.dll
6.1.7600.16385
C:\Windows\system32
76f40000 WS2_32.dll
6.1.7600.16385
C:\Windows\system32
76f80000 CLBCatQ.DLL
2001.12.8530.16385 C:\Windows\system32
processes:
000 Idle
004 System
140 smss.exe
19c csrss.exe
1e4 wininit.exe
1f0 csrss.exe
214 services.exe
224 lsass.exe
22c lsm.exe
288 winlogon.exe
2d4 svchost.exe
334 svchost.exe
3b8 svchost.exe

0
0
0
0
0
1
0
0
0
1
0
0
0

0
0
0
0
0
0
0
0
0
0
0
0
0

0
0
0
0
0
0
0
0
0
0
0
0
0

3dc svchost.exe
410 svchost.exe
498 svchost.exe
4f8 svchost.exe
544 AvastSvc.exe
69c spoolsv.exe
6cc svchost.exe
6ec taskeng.exe
710 taskhost.exe
system32
7b0 rundll32.exe
7ec ApplicationUpdater.exe
1b0 ijplmsvc.exe
1f4 taskeng.exe
system32
6e4 rbmonitor.exe
Files\Uniblue\RegistryBooster
7c0 gbtray.exe
Files\IObit\Game Booster
860 CodeMeter.exe
904 AvastUI.exe
Files\Alwil Software\Avast5
93c PWRISOVM.EXE
Files\PowerISO
9c8 BJMYPRT.EXE
Files\Canon\MyPrinter
a64 jusched.exe
Files\Common Files\Java\Java Update
ac8 SearchSettings.exe
Files\Common Files\Spigot\Search Settings
adc GoogleToolbarNotifier.exe
Files\Google\GoogleToolbarNotifier
bd4 svchost.exe
c28 CodeMeterCC.exe
Files\CodeMeter\Runtime\bin
c30 ONENOTEM.EXE
Files\Microsoft Office\Office12
ee0 ymsgr_tray.exe
Files\Yahoo!\Messenger
d60 svchost.exe
c6c jucheck.exe
Files\Common Files\Java\Java Update
768 explorer.exe
ef8 SearchIndexer.exe
734 Rim.Desktop.AutoUpdate.exe
Files\Research In Motion\BlackBerry Desktop
f14 PresentationFontCache.exe
3fc AdobeARM.exe
Files\Common Files\Adobe\ARM\1.0
ef0 svchost.exe
a24 svchost.exe
1a4 wmpnetwk.exe
728 GoogleToolbarInstaller_updater_signed.exe
4d4 NMIndexStoreSvr.exe
Files\Common Files\Nero\Lib
be0 NMIndexingService.exe
1a8 start.exe
ending
854 conhost.exe
system32

0
0
0
0
0
0
0
0
1

0
0
0
0
0
0
0
0
95

0
0
0
0
0
0
0
0
44 normal

C:\Windows\

0
0
0
1

0
0
0
12

0
0
0
3

normal

C:\Windows\

normal

C:\Program

1 9

1 102 38 below normal C:\Program


0 0 0
1 66 14 normal

C:\Program

1 18 8

normal

C:\Program

1 43 20 normal

C:\Program

1 9

normal

C:\Program

1 22 15 normal

C:\Program

1 18 13 normal

C:\Program

0 0 0
1 62 20 normal

C:\Program

1 21 7

normal

C:\Program

1 93 10 normal

C:\Program

0 0 0
1 14 6

normal

C:\Program

1 940 560 normal


0 0 0
1 29 24 normal

C:\Windows

C:\Program

0 0 0
1 24 27 normal

C:\Program

0
0
0
0
1

0
0
0
0
9

0
0
0
0
8

normal

C:\Program

0 0
1 4

0
1

normal

D:\BOT RO\V

1 36 15 normal

C:\Windows\

884 chrome.exe
x\AppData\Local\Google\Chrome\Application
b38 chrome.exe
x\AppData\Local\Google\Chrome\Application
df8 chrome.exe
x\AppData\Local\Google\Chrome\Application
e7c chrome.exe
x\AppData\Local\Google\Chrome\Application
bb4 audiodg.exe
8fc MaxaRO Patcher.exe
RagnarokOnline

1 471 117 normal

C:\Users\xX

1 10 1

normal

C:\Users\xX

1 24 1

below normal C:\Users\xX

1 16 1

normal

C:\Users\xX

0 0 0
1 92 47 normal

D:\MELONRO\

hardware:
+ Computer
- ACPI x86-based PC
+ Disk drives
- ST3250318AS ATA Device
+ Display adapters
- ATI Radeon HD 4600 Series (driver 8.741.0.0)
+ DVD/CD-ROM drives
- HL-DT-ST CD-RW GCE-8525B ATA Device
+ Floppy disk drives
- Floppy disk drive
+ Floppy drive controllers
- Standard floppy disk controller
+ Human Interface Devices
- USB Input Device
+ IDE ATA/ATAPI controllers
- ATA Channel 0
- ATA Channel 0
- ATA Channel 1
- ATA Channel 1
- Standard Dual Channel PCI IDE Controller
- Standard Dual Channel PCI IDE Controller
+ Keyboards
- Standard PS/2 Keyboard
+ Mice and other pointing devices
- HID-compliant mouse
+ Modems
- Standard Modem
+ Monitors
- Generic PnP Monitor
+ Network adapters
- Realtek RTL8101E Family PCI-E Fast Ethernet NIC (NDIS 6.20)
+ Ports (COM & LPT)
- Printer Port (LPT1)
- RIM Virtual Serial Port v2 (COM3) (driver 2.2.0.3)
- RIM Virtual Serial Port v2 (COM4) (driver 2.2.0.3)
+ Processors
- AMD Athlon(tm) 64 X2 Dual Core Processor 4000+
- AMD Athlon(tm) 64 X2 Dual Core Processor 4000+
+ Sound, video and game controllers
- ATI High Definition Audio Device (driver 7.11.0.7706)
- High Definition Audio Device
+ System devices
- ACPI Fixed Feature Button
- ACPI Power Button
- AMD Address Map Configuration
- AMD DRAM and HyperTransport(tm) Trace Mode Configuration
- AMD HyperTransport(tm) Configuration

- AMD Miscellaneous Configuration


- ATI I/O Communications Processor LPC Controller
- ATI I/O Communications Processor PCI Bus Controller
- ATI I/O Communications Processor SMBus Controller
- Composite Bus Enumerator
- Direct memory access controller
- File as Volume Driver
- High Definition Audio Controller
- High Definition Audio Controller
- High precision event timer
- Microsoft ACPI-Compliant System
- Microsoft System Management BIOS Driver
- Microsoft Virtual Drive Enumerator Driver
- Motherboard resources
- Motherboard resources
- Motherboard resources
- Motherboard resources
- Numeric data processor
- PCI bus
- PCI standard host CPU bridge
- PCI standard PCI-to-PCI bridge
- PCI standard PCI-to-PCI bridge
- Plug and Play Software Device Enumerator
- Printer Port Logical Interface
- Programmable interrupt controller
- Remote Desktop Device Redirector Bus
- System board
- System CMOS/real time clock
- System speaker
- System timer
- Terminal Server Keyboard Driver
- Terminal Server Mouse Driver
- UMBus Enumerator
- UMBus Root Bus Enumerator
- Volume Manager
+ Universal Serial Bus controllers
- Standard Enhanced PCI to USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- Standard OpenHCD USB Host Controller
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
- USB Root Hub
cpu
eax
ebx
ecx
edx
esi
edi
eip
esp
ebp

registers:
= 01575470
= 01575470
= 0012f898
= 00000000
= 0051504c
= 0012f890
= 005140e7
= 0012f814
= 00000000

stack dump:
0012f814 d2
0012f824 00
0012f834 70
0012f844 18
0012f854 70
0012f864 28
0012f874 84
0012f884 b5
0012f894 00
0012f8a4 f4
0012f8b4 08
0012f8c4 00
0012f8d4 00
0012f8e4 6e
0012f8f4 00
0012f904 00
0012f914 00
0012f924 00
0012f934 00
0012f944 00

40
f9
54
fa
54
35
00
c3
00
01
00
00
00
00
00
00
00
00
00
00

disassembling:
[...]
0040664c
00406651
00406656
0040665a
0040665c
0040665f
00406661
00406663
00406665
00406667
00406669
>
0040666b
0040666e
00406670
00406674
00406676
0040667d
0040667f
00406681
00406684
00406689
[...]

51
12
57
12
57
1d
00
6b
00
00
00
40
00
46
00
00
00
00
00
00

mov
call
cmp
jnz
cmp
jz
mov
mov
xor
mov
call
cmp
jnz
cmp
jnz
cmp
jnz
xor
mov
call
cmp

00
00
01
00
01
00
00
7b
86
00
00
00
00
00
00
00
00
00
00
00

70
e0
70
b0
70
04
03
00
00
13
60
00
00
72
00
00
00
00
00
00

54
34
54
5e
54
00
32
00
00
02
d4
00
00
00
00
00
00
00
00
00

57
e3
57
40
57
00
e3
00
0d
00
40
00
00
6d
00
00
00
00
00
00

01
76
01
00
01
00
76
00
00
00
00
00
00
00
00
00
00
00
00
00

e8
0f
70
5c
00
28
82
00
ae
00
00
03
54
00
00
00
00
00
00
00

67
35
54
f9
00
d0
00
00
01
00
00
00
00
00
00
00
00
00
00
00

51
e3
57
12
00
25
00
1d
00
00
00
01
4d
00
00
00
00
00
00
00

00
76
01
00
00
00
00
00
00
00
00
00
00
00
00
00
00
00
00
00

20
5c
08
ff
00
70
df
8c
65
00
00
00
61
00
00
00
00
00
00
00

cb
f9
30
ff
72
46
31
a8
00
00
00
00
00
00
00
00
00
00
00
00

25
12
4f
ff
75
26
e3
63
00
00
00
00
69
00
00
00
00
00
00
00

00
00
00
ff
75
00
76
01
00
00
00
00
00
00
00
00
00
00
00
00

.@Q.pTW..gQ...%.
.....4.v.5.v\...
pTW.pTW.pTW..0O.
.....^@.\.......
pTW.pTW......ruu
(5......(.%.pF&.
.....2.v.....1.v
..k{..........c.
............e...
................
....`.@.........
..@.............
........T.M.a.i.
n.F.r.m.........
................
................
................
................
................
................

eax, $62eb1c
-$10e ($406548)
; System.ExitDll
byte ptr [ebx+$28], 0
loc_406670
dword ptr [edi], 0
loc_406670
eax, [edi]
esi, eax
eax, eax
[edi], eax
esi
dword ptr [edi], 0
loc_406661
byte ptr [ebx+$28], 2
loc_406684
dword ptr [$619000], 0
loc_406684
eax, eax
[ebx+$c], eax
+$5d3e7 ($463a70)
; madExcept.InterceptFinalizeUnits
byte ptr [ebx+$28], 1

You might also like