Professional Documents
Culture Documents
bsuirender
madExcept
System
bscommon
bscommon
bscommon
subtitles
bsuirender
vidovrfrmu
mbsplayu
mbsplayu
Controls
Controls
Forms
Controls
Classes
Forms
Forms
Forms
bsplayer
1198
2293
2313
2346
78
822
108
4014
1254
4667
6364
6259
31881
661
+1 BSUIOSD.StopAndFreeThread
MyRaiseExceptProc
ErrorAt
+6 InitDllData
+1 GetDllPosOfs
+1 LoadPackedLibrary
+3 SubtitlesModInitFromDLL
+19 BSUIOSD.Create
+15 Tvidovrfrm.Init
+239 TMBSPlayer.OpenFile
+49 TMBSPlayer.msgDisp
+53 TControl.WndProc
+33 TWinControl.WndProc
TCustomForm.WndProc
+3 TWinControl.MainWndProc
+0 StdWndProc
DispatchMessageA
TApplication.ProcessMessage
TApplication.HandleMessage
TApplication.Run
+421 initialization
BaseThreadInitThunk
thread $a60:
75e53368 +10 kernel32.dll BaseThreadInitThunk
thread $c78:
75e53368 +10 kernel32.dll BaseThreadInitThunk
thread $1034:
75e53368 +10 kernel32.dll BaseThreadInitThunk
thread $1490:
75e53368 +10 kernel32.dll BaseThreadInitThunk
modules:
00400000 bsplayer.exe
2.7.0.1080
C:\Users\Darjan\Desktop
694b0000 DCIMAN32.dll
6.1.7601.23453
C:\Windows\system32
694c0000 ddraw.dll
6.1.7600.16385
C:\Windows\system32
695b0000 wsock32.dll
6.1.7600.16385
C:\Windows\system32
695c0000 dsound.dll
6.1.7600.16385
C:\Windows\system32
6e000000 DUI70.dll
6.1.7600.16385
C:\Windows\system32
6e0c0000 DUser.dll
6.1.7600.16385
C:\Windows\system32
6e0f0000 explorerframe.dll 6.1.7601.18952
C:\Windows\system32
73b70000 WindowsCodecs.dll 6.2.9200.21830
C:\Windows\system32
73cb0000 dwmapi.dll
6.1.7600.16385
C:\Windows\system32
73f70000 POWRPROF.dll
6.1.7600.16385
C:\Windows\system32
73fa0000 WINMM.dll
6.1.7601.17514
C:\Windows\system32
73fe0000 uxtheme.dll
6.1.7600.16385
C:\Windows\system32
740c0000 olepro32.dll
6.1.7601.23452
C:\Windows\system32
740e0000 msimg32.dll
6.1.7600.16385
C:\Windows\system32
74460000 WINSTA.dll
6.1.7601.18540
C:\Windows\system32
74770000 rasadhlp.dll
6.1.7600.16385
C:\Windows\system32
74780000 fwpuclnt.dll
6.1.7601.18283
C:\Windows\System32
747c0000 WINNSI.DLL
6.1.7600.16385
C:\Windows\system32
747d0000 IPHLPAPI.DLL
6.1.7601.17514
C:\Windows\system32
747f0000 DNSAPI.dll
6.1.7601.17570
C:\Windows\system32
74840000 propsys.dll
7.0.7601.17514
C:\Windows\system32
74940000 comctl32.dll
6.10.7601.18837
C:\Windows\WinSxS\x86_microsoft.wi
ndows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
74ae0000 wshtcpip.dll
6.1.7600.16385
C:\Windows\System32
74af0000 wship6.dll
6.1.7600.16385
C:\Windows\System32
74b00000 mswsock.dll
6.1.7601.23451
C:\Windows\System32
74fe0000 wtsapi32.dll
6.1.7601.17514
C:\Windows\system32
75320000 ntmarta.dll
6.1.7600.16385
C:\Windows\system32
75350000 winspool.drv
6.1.7601.17514
C:\Windows\system32
753b0000 version.dll
6.1.7600.16385
C:\Windows\system32
75480000 CRYPTBASE.dll
6.1.7601.23545
C:\Windows\syswow64
75490000 SspiCli.dll
6.1.7601.23545
C:\Windows\syswow64
754f0000 IMM32.DLL
6.1.7601.17514
C:\Windows\system32
75550000 RPCRT4.dll
6.1.7601.23545
C:\Windows\syswow64
75640000 CLBCatQ.DLL
2001.12.8530.16385 C:\Windows\syswow64
756d0000 sechost.dll
6.1.7600.16385
C:\Windows\SysWOW64
756f0000 advapi32.dll
6.1.7601.23543
C:\Windows\syswow64
757b0000 USER32.dll
6.1.7601.23528
C:\Windows\syswow64
758b0000 comdlg32.dll
6.1.7601.17514
C:\Windows\syswow64
75940000 ole32.dll
6.1.7601.23392
C:\Windows\syswow64
75af0000 OLEAUT32.dll
6.1.7601.23512
C:\Windows\syswow64
75e40000 kernel32.dll
6.1.7601.23543
C:\Windows\syswow64
75f50000 MSCTF.dll
6.1.7601.18731
C:\Windows\syswow64
76020000 WS2_32.dll
6.1.7601.23451
C:\Windows\syswow64
76070000 USP10.dll
1.626.7601.19054 C:\Windows\syswow64
76120000 SETUPAPI.dll
6.1.7601.17514
C:\Windows\syswow64
762c0000 CFGMGR32.dll
6.1.7601.17621
C:\Windows\syswow64
76550000 NSI.dll
6.1.7600.16385
C:\Windows\syswow64
76560000 KERNELBASE.dll
6.1.7601.23543
C:\Windows\syswow64
76720000 WLDAP32.dll
6.1.7601.17514
C:\Windows\syswow64
76770000 DEVOBJ.dll
6.1.7601.17621
C:\Windows\syswow64
76790000 LPK.dll
6.1.7601.23453
C:\Windows\syswow64
767a0000 msvcrt.dll
7.0.7601.17744
C:\Windows\syswow64
76850000 SHLWAPI.dll
6.1.7601.17514
C:\Windows\syswow64
76a30000 SHELL32.dll
77680000 GDI32.dll
77ba0000 ntdll.dll
6.1.7601.18952
6.1.7601.23457
6.1.7601.23543
C:\Windows\syswow64
C:\Windows\syswow64
C:\Windows\SysWOW64
hardware:
+ Batteries
- Microsoft Composite Battery
+ Computer
- ACPI x64-based PC
+ Disk drives
- i-FlashDisk K8 128GB ATA Device
- ST3500413AS ATA Device
- USB Device
+ Display adapters
- NVIDIA GeForce GTS 450 (driver 10.18.13.6839)
+ DVD/CD-ROM drives
- DiscSoft Virtual SCSI CdRom Device
- DiscSoft Virtual SCSI CdRom Device
- Optiarc DVD RW AD-7260S ATA Device
+ Human Interface Devices
- HID-compliant consumer control device
- HID-compliant device
- HID-compliant device
- HID-compliant device
- HID-compliant game controller
- USB Human Interface Device (driver 6.6.6000.0)
- USB Input Device
- USB Input Device
- USB Input Device
+ IDE ATA/ATAPI controllers
- ATA Channel 0
- ATA Channel 0
- ATA Channel 0
- ATA Channel 1
- ATA Channel 1
- ATA Channel 1
- Standard Dual Channel PCI IDE Controller
- Standard Dual Channel PCI IDE Controller
- Standard Dual Channel PCI IDE Controller
+ IEEE 1394 Bus host controllers
- VIA 1394 OHCI Compliant Host Controller
+ Keyboards
- HID Keyboard Device
+ Mice and other pointing devices
- HID-compliant mouse
- HID-compliant mouse
+ Monitors
- Generic PnP Monitor
+ Network adapters
- Realtek PCIe GBE Family Controller (driver 7.46.610.2011)
+ Portable Devices
- H:\
+ Ports (COM & LPT)
- Communications Port (COM1)
+ Printers
- Samsung Universal Print Driver 2 (driver 2.50.6.0)
+ Processors
- AMD Phenom(tm) II X4 955 Processor
- AMD Phenom(tm) II X4 955 Processor
- AMD Phenom(tm) II X4 955 Processor
registers:
= 00000000
= 028b86e0
= 005bc808
= 00242881
= 028b86e0
= 0018f8fc
= 005be5f2
= 0018f104
= 0018f918
stack dump:
0018f104 81
0018f114 f1
0018f124 b0
0018f134 00
0018f144 28
0018f154 f8
0018f164 9b
0018f174 fc
0018f184 fc
0018f194 78
0018f1a4 28
0018f1b4 a0
0018f1c4 00
0018f1d4 c8
0018f1e4 3c
0018f1f4 08
0018f204 00
0018f214 43
0018f224 78
0018f234 4f
28
48
2b
00
f2
f5
34
f1
f8
f2
f2
05
00
f4
f2
00
00
01
f2
c5
24
40
91
00
18
18
c0
18
18
18
18
03
00
18
18
00
19
bb
18
56
00
00
02
00
00
00
77
00
00
00
00
74
00
00
00
00
00
77
00
76
29
e0
28
00
fc
dd
28
d9
3c
fc
cb
cc
f8
4c
48
00
00
28
de
07
db
86
f2
00
f8
34
f2
48
34
f1
29
f1
f5
f4
00
00
a0
f2
fa
00
5b
8b
18
00
18
c0
18
40
c0
18
6b
18
18
18
00
00
18
18
ed
00
00
02
00
00
00
77
00
00
77
00
00
00
00
00
00
00
00
00
0e
00
00
00
54
00
78
fc
fc
00
28
d9
03
a4
45
eb
30
ff
02
78
03
cb
00
00
f1
00
f2
f8
f8
00
f2
48
00
1f
58
a1
d9
ff
00
f2
00
29
00
00
18
00
18
18
18
00
18
40
00
bc
c1
bd
28
ff
00
18
00
6b
00
00
00
00
00
00
00
00
00
00
00
77
77
77
00
ff
00
00
00
00
de
cb
60
c9
fc
10
78
28
fc
e0
48
40
00
38
70
72
b0
28
00
b0
48
29
f1
34
f1
f2
f2
f2
f8
f8
00
f1
00
d9
a2
00
f5
f2
00
2b
40
6b
18
c0
18
18
18
18
18
18
00
18
00
28
bd
00
18
18
00
91
00
00
00
77
00
00
00
00
00
00
00
00
00
00
77
00
00
00
00
02
.($.).[......H@.
.H@..........)k.
.+..(...T...`...
.............4.w
(.......x.......
.....4.w........
.4.w(.......x...
.....H@.....(...
....<4.w(.......
x........H@.....
(....)k.....H...
...t.......w@...
........EX.w....
....L......w8.(.
<...H...0.(.p..w
............r...
................
C..w(...x...(...
x...............
O.Vv.....)k..+..
disassembling:
005be5ec
public bsuirender.BSUIOSD.StopAndFreeThread: ; function entry poi
nt
005be5ec 1197 push
ebx
005be5ed
mov
ebx, eax
005be5ef 1198 mov
eax, [ebx+$48]
005be5f2
> mov
edx, [eax]
005be5f4
call
dword ptr [edx]
005be5f6 1199 mov
eax, [ebx+$28]
005be5f9
test
eax, eax
005be5fb
jz
loc_5be61e
005be5fd 1201 cmp
byte ptr [eax+$51], 0
[...]