Microsoft (R) Windows Debugger Version 6.11.0001.404 X86 Copyright (c) Microsoft Corporation. All rights reserved. *** wait with pending attach Symbol search path is: *** Invalid *** **************************************************************************** * Symbol loading may be unreliable without a symbol search path. * * Use .symfix to have the debugger choose a symbol path. * * After setting your symbol path, use .reload to refresh symbol locations. * **************************************************************************** Executable search path is: ModLoad: 00400000 00702000 D:\SPACS\Diagnose\Diagnose.exe ModLoad: 7c920000 7c9b3000 C:\WINDOWS\system32\ntdll.dll ModLoad: 7c800000 7c91e000 C:\WINDOWS\system32\kernel32.dll ModLoad: 10000000 10040000 D:\SPACS\Common\LoginDll.dll ModLoad: 77bd0000 77bd8000 C:\WINDOWS\system32\VERSION.dll ModLoad: 73d30000 73e2e000 C:\WINDOWS\system32\MFC42.DLL ModLoad: 77be0000 77c38000 C:\WINDOWS\system32\msvcrt.dll ModLoad: 77ef0000 77f39000 C:\WINDOWS\system32\GDI32.dll ModLoad: 77d10000 77da0000 C:\WINDOWS\system32\USER32.dll ModLoad: 7d590000 7dd84000 C:\WINDOWS\system32\SHELL32.dll ModLoad: 77da0000 77e49000 C:\WINDOWS\system32\ADVAPI32.dll ModLoad: 77e50000 77ee2000 C:\WINDOWS\system32\RPCRT4.dll ModLoad: 77fc0000 77fd1000 C:\WINDOWS\system32\Secur32.dll ModLoad: 77f40000 77fb6000 C:\WINDOWS\system32\SHLWAPI.dll ModLoad: 76990000 76acd000 C:\WINDOWS\system32\ole32.dll ModLoad: 770f0000 7717b000 C:\WINDOWS\system32\OLEAUT32.dll ModLoad: 00380000 00391000 C:\WINDOWS\system32\MSVCIRT.dll ModLoad: 00710000 009eb000 C:\WINDOWS\system32\BCGCBPRO800.dll ModLoad: 76320000 76367000 C:\WINDOWS\system32\comdlg32.dll ModLoad: 5d170000 5d20a000 C:\WINDOWS\system32\COMCTL32.dll ModLoad: 73540000 7357d000 C:\WINDOWS\system32\ODBC32.dll ModLoad: 76b10000 76b3a000 C:\WINDOWS\system32\WINMM.dll ModLoad: 75ff0000 76055000 C:\WINDOWS\system32\MSVCP60.dll ModLoad: 009f0000 00b52000 D:\SPACS\Common\ManagerDll.dll ModLoad: 00b60000 00e70000 D:\SPACS\Common\CommonDll.dll ModLoad: 73ac0000 73ad7000 C:\WINDOWS\system32\AVIFIL32.dll ModLoad: 77bb0000 77bc5000 C:\WINDOWS\system32\MSACM32.dll ModLoad: 73b40000 73b60000 C:\WINDOWS\system32\MSVFW32.dll ModLoad: 71a20000 71a37000 C:\WINDOWS\system32\WS2_32.dll ModLoad: 71a10000 71a18000 C:\WINDOWS\system32\WS2HELP.dll ModLoad: 5fdd0000 5fe25000 C:\WINDOWS\system32\NETAPI32.dll ModLoad: 71a90000 71aa2000 C:\WINDOWS\system32\MPR.dll ModLoad: 00e70000 0138e000 D:\SPACS\Diagnose\ReportLib.dll ModLoad: 003a0000 003aa000 D:\SPACS\Diagnose\MouseKeyIdle.dll ModLoad: 01390000 019a4000 D:\SPACS\Diagnose\VideoStation.dll ModLoad: 68be0000 68be9000 C:\WINDOWS\system32\HID.DLL ModLoad: 76060000 761b6000 C:\WINDOWS\system32\SETUPAPI.dll ModLoad: 73af0000 73b02000 C:\WINDOWS\system32\AVICAP32.dll ModLoad: 5efe0000 5eff7000 C:\WINDOWS\system32\OLEPRO32.DLL ModLoad: 019b0000 01a39000 D:\SPACS\Diagnose\CallLib.dll ModLoad: 003b0000 003e9000 D:\SPACS\Diagnose\UniPrint.dll ModLoad: 76300000 7631d000 C:\WINDOWS\system32\IMM32.DLL ModLoad: 62c20000 62c29000 C:\WINDOWS\system32\LPK.DLL ModLoad: 73fa0000 7400b000 C:\WINDOWS\system32\USP10.dll ModLoad: 61be0000 61bed000 C:\WINDOWS\system32\MFC42LOC.DLL ModLoad: 77180000 77283000 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll ModLoad: 1f840000 1f857000 C:\WINDOWS\system32\odbcint.dll ModLoad: 5adc0000 5adf7000 C:\WINDOWS\system32\UxTheme.dll ModLoad: 762f0000 762f5000 C:\WINDOWS\system32\msimg32.dll ModLoad: 73250000 73255000 C:\WINDOWS\system32\RICHED32.DLL ModLoad: 74d90000 74dfd000 C:\WINDOWS\system32\RICHED20.dll ModLoad: 024b0000 024fd000 C:\WINDOWS\system32\VrvHook.dll ModLoad: 76bc0000 76bcb000 C:\WINDOWS\system32\psapi.dll ModLoad: 74680000 746cc000 C:\WINDOWS\system32\MSCTF.dll ModLoad: 02590000 02693000 C:\WINDOWS\system32\prthook.dll ModLoad: 72f70000 72f96000 C:\WINDOWS\system32\WINSPOOL.DRV ModLoad: 76eb0000 76eec000 C:\WINDOWS\system32\Rasapi32.dll ModLoad: 76e60000 76e72000 C:\WINDOWS\system32\rasman.dll ModLoad: 76e80000 76eaf000 C:\WINDOWS\system32\TAPI32.dll ModLoad: 76e50000 76e5e000 C:\WINDOWS\system32\rtutils.dll ModLoad: 76680000 76726000 C:\WINDOWS\system32\wininet.dll ModLoad: 765e0000 76673000 C:\WINDOWS\system32\CRYPT32.dll ModLoad: 76db0000 76dc2000 C:\WINDOWS\system32\MSASN1.dll ModLoad: 76fa0000 7701f000 C:\WINDOWS\system32\CLBCATQ.DLL ModLoad: 77020000 770ba000 C:\WINDOWS\system32\COMRes.dll ModLoad: 4dd10000 4dd93000 C:\Program Files\Common Files\System\ado\msado15.dll ModLoad: 75b50000 75b75000 C:\WINDOWS\system32\MSDART.DLL ModLoad: 02c70000 031b9000 C:\WINDOWS\system32\xpsp2res.dll ModLoad: 73640000 7366e000 C:\WINDOWS\system32\msctfime.ime ModLoad: 03520000 03549000 C:\WINDOWS\system32\VrvKeyBoard.dll ModLoad: 72d70000 72de7000 C:\Program Files\Common Files\System\Ole DB\oledb32.dll ModLoad: 74fa0000 74fb1000 C:\Program Files\Common Files\System\Ole DB\OLEDB32R.DLL ModLoad: 4a950000 4a989000 C:\Program Files\Common Files\System\Ole DB\msdaora.dll ModLoad: 61060000 61077000 C:\Program Files\Common Files\System\Ole DB\MSDATL3.dll ModLoad: 03510000 03514000 C:\Program Files\Common Files\System\Ole DB\MSDAORAR.DLL ModLoad: 03660000 0367d000 d:\oracle\ora92\bin\oci.dll ModLoad: 03680000 03689000 d:\oracle\ora92\bin\OCIW32.DLL ModLoad: 60600000 60784000 d:\oracle\ora92\bin\ORACLIENT9.DLL ModLoad: 610a0000 6113f000 d:\oracle\ora92\bin\oracore9.dll ModLoad: 612a0000 61319000 d:\oracle\ora92\bin\oranls9.dll ModLoad: 613a0000 613b1000 d:\oracle\ora92\bin\oraunls9.dll ModLoad: 71a40000 71a4b000 C:\WINDOWS\system32\WSOCK32.dll ModLoad: 60800000 60806000 d:\oracle\ora92\bin\oravsn9.dll ModLoad: 60500000 60590000 d:\oracle\ora92\bin\oracommon9.dll ModLoad: 03690000 038e7000 d:\oracle\ora92\bin\orageneric9.dll ModLoad: 62fc0000 6303d000 d:\oracle\ora92\bin\oraxml9.dll ModLoad: 630f0000 63110000 d:\oracle\ora92\bin\oraxsd9.dll ModLoad: 615a0000 61629000 d:\oracle\ora92\bin\orannzsbb9.dll ModLoad: 61480000 61534000 d:\oracle\ora92\bin\oran9.dll ModLoad: 61400000 6142c000 d:\oracle\ora92\bin\oranl9.dll ModLoad: 61960000 61971000 d:\oracle\ora92\bin\oranldap9.dll ModLoad: 62000000 62024000 d:\oracle\ora92\bin\oraldapclnt9.dll ModLoad: 616b0000 616c7000 d:\oracle\ora92\bin\orancrypt9.dll ModLoad: 62300000 6233e000 d:\oracle\ora92\bin\ORATRACE9.dll ModLoad: 61730000 61766000 d:\oracle\ora92\bin\oranro9.dll ModLoad: 617c0000 617c6000 d:\oracle\ora92\bin\oranhost9.dll ModLoad: 617d0000 617d6000 d:\oracle\ora92\bin\oranoname9.dll ModLoad: 616a0000 616a6000 d:\oracle\ora92\bin\orancds9.dll ModLoad: 61820000 61827000 d:\oracle\ora92\bin\orantns9.dll ModLoad: 64000000 64007000 d:\oracle\ora92\bin\oranms.dll ModLoad: 64020000 64030000 d:\oracle\ora92\bin\oranmsp.dll ModLoad: 60a00000 60d13000 d:\oracle\ora92\bin\orapls9.dll ModLoad: 62500000 62507000 d:\oracle\ora92\bin\oraslax9.dll ModLoad: 61350000 61360000 d:\oracle\ora92\bin\orasnls9.dll ModLoad: 60810000 60816000 d:\oracle\ora92\bin\orawtc9.dll ModLoad: 62600000 62675000 d:\oracle\ora92\bin\orasql9.dll ModLoad: 75690000 757cc000 C:\WINDOWS\system32\comsvcs.dll ModLoad: 75090000 750a4000 C:\WINDOWS\system32\colbact.DLL ModLoad: 75050000 75063000 C:\WINDOWS\system32\MTXCLU.DLL ModLoad: 762a0000 762b2000 C:\WINDOWS\system32\CLUSAPI.DLL ModLoad: 75010000 75022000 C:\WINDOWS\system32\RESUTILS.DLL ModLoad: 759d0000 75a7f000 C:\WINDOWS\system32\USERENV.dll ModLoad: 61910000 6191c000 d:\oracle\ora92\bin\orantcp9.dll ModLoad: 719c0000 719fe000 C:\WINDOWS\system32\mswsock.dll ModLoad: 60fd0000 61025000 C:\WINDOWS\system32\hnetcfg.dll ModLoad: 71a00000 71a08000 C:\WINDOWS\System32\wshtcpip.dll ModLoad: 1b5d0000 1b665000 C:\WINDOWS\system32\MSWSTR10.DLL ModLoad: 72df0000 72e41000 C:\Program Files\Common Files\System\msadc\msadce.dll ModLoad: 1f370000 1f375000 C:\Program Files\Common Files\System\msadc\msadcer.dll ModLoad: 69b10000 69c6f000 C:\WINDOWS\system32\msxml4.dll ModLoad: 74cf0000 74d81000 C:\WINDOWS\system32\mlang.dll ModLoad: 75c60000 75d00000 C:\WINDOWS\system32\urlmon.dll ModLoad: 78520000 785c3000 C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\MSVCR90.dll ModLoad: 76d70000 76d92000 C:\WINDOWS\system32\appHelp.dll ModLoad: 49460000 4986b000 C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL ModLoad: 78480000 7850e000 C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\MSVCP90.dll ModLoad: 78e20000 78e4b000 C:\WINDOWS\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_353599c2\ATL90.DLL (e34.65c): Break instruction exception - code 80000003 (first chance) eax=7ffda000 ebx=00000001 ecx=00000002 edx=00000003 esi=00000004 edi=00000005 eip=7c92120e esp=032cffcc ebp=032cfff4 iopl=0 nv up ei pl zr na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=00000246 *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - ntdll!DbgBreakPoint: 7c92120e cc int 3 Missing image name, possible paged-out or corrupt data. Missing image name, possible paged-out or corrupt data. Missing image name, possible paged-out or corrupt data. 0:005> .symfix 0:005> .reload Reloading current modules ................................................................ ............................................................... *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll - 0:005> bp kernel32!loadlibrarya Missing image name, possible paged-out or corrupt data. Missing image name, possible paged-out or corrupt data. Missing image name, possible paged-out or corrupt data. 0:005> bl 0 e 7c801d7b 0001 (0001) 0:**** kernel32!LoadLibraryA 0:005> g Breakpoint 0 hit eax=00000000 ebx=00000001 ecx=023ef630 edx=73e0e578 esi=023ef630 edi=024143e8 eip=7c801d7b esp=0012f5dc ebp=0012f6b0 iopl=0 nv up ei pl zr na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 kernel32!LoadLibraryA: 7c801d7b 8bff mov edi,edi Missing image name, possible paged-out or corrupt data. Missing image name, possible paged-out or corrupt data. Missing image name, possible paged-out or corrupt data. *** WARNING: Unable to verify checksum for D:\SPACS\Diagnose\Diagnose.exe *** ERROR: Module load completed but symbols could not be loaded for D:\SPACS\Diagnose\Diagnose.exe 0:000> u kernel32!loadlibrarya kernel32!LoadLibraryA: 7c801d7b 8bff mov edi,edi 7c801d7d 55 push ebp 7c801d7e 8bec mov ebp,esp 7c801d80 837d0800 cmp dword ptr [ebp+8],0 7c801d84 53 push ebx 7c801d85 56 push esi 7c801d86 7414 je kernel32!LoadLibraryA+0x88 (7c801d9c) 7c801d88 6850e1807c push offset kernel32!`string' (7c80e150) 0:000> t eax=00000000 ebx=00000001 ecx=023ef630 edx=73e0e578 esi=023ef630 edi=024143e8 eip=0012f595 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl zr na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246 +0x12f594: 0012f595 9c pushfd 0:000> u 0012f595 +0x12f594: 0012f595 9c pushfd 0012f596 6874f31200 push offset +0x12f373 (0012f374) 0012f59b e860fdffff call +0x12f2ff (0012f300) 0012f5a0 9d popfd 0012f5a1 61 popad 0012f5a2 81c4dc020000 add esp,offset +0x2db (000002dc) 0012f5a8 e9ce276d7c jmp kernel32!LoadLibraryA (7c801d7b) 0012f5ad 0000 add byte ptr [eax],al 0:000> p eax=00000000 ebx=00000001 ecx=023ef630 edx=73e0e578 esi=023ef630 edi=024143e8 eip=0012f596 esp=0012f2dc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f595: 0012f596 6874f31200 push offset +0x12f373 (0012f374) 0:000> p eax=00000000 ebx=00000001 ecx=023ef630 edx=73e0e578 esi=023ef630 edi=024143e8 eip=0012f59b esp=0012f2d8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f59a: 0012f59b e860fdffff call +0x12f2ff (0012f300) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f5a0 esp=0012f2dc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f59f: 0012f5a0 9d popfd 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f5a1 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f5a0: 0012f5a1 61 popad 0:000> p eax=00000000 ebx=00000001 ecx=023ef630 edx=73e0e578 esi=023ef630 edi=024143e8 eip=0012f5a2 esp=0012f300 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f5a1: 0012f5a2 81c4dc020000 add esp,offset +0x2db (000002dc) 0:000> p eax=00000000 ebx=00000001 ecx=023ef630 edx=73e0e578 esi=023ef630 edi=024143e8 eip=0012f5a8 esp=0012f5dc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f5a7: 0012f5a8 e9ce276d7c jmp kernel32!LoadLibraryA (7c801d7b) 0:000> p eax=00000000 ebx=00000001 ecx=023ef630 edx=73e0e578 esi=023ef630 edi=024143e8 eip=0012f595 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f594: 0012f595 9c pushfd 0:000> p eax=00000000 ebx=00000001 ecx=023ef630 edx=73e0e578 esi=023ef630 edi=024143e8 eip=0012f596 esp=0012f2dc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f595: 0012f596 6874f31200 push offset +0x12f373 (0012f374) 0:000> p eax=00000000 ebx=00000001 ecx=023ef630 edx=73e0e578 esi=023ef630 edi=024143e8 eip=0012f59b esp=0012f2d8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f59a: 0012f59b e860fdffff call +0x12f2ff (0012f300) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f5a0 esp=0012f2dc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f59f: 0012f5a0 9d popfd 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f5a1 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f5a0: 0012f5a1 61 popad 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f295 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f294: 0012f295 9c pushfd 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f296 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f295: 0012f296 6874f01200 push offset +0x12f073 (0012f074) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f29b esp=0012efd8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f29a: 0012f29b e860fdffff call +0x12efff (0012f000) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a0 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f29f: 0012f2a0 9d popfd 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a1 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a0: 0012f2a1 61 popad 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a2 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a1: 0012f2a2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9f4020000 jmp +0x12f5a0 (0012f5a1) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f295 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f294: 0012f295 9c pushfd 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f296 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f295: 0012f296 6874f01200 push offset +0x12f073 (0012f074) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f29b esp=0012efd8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f29a: 0012f29b e860fdffff call +0x12efff (0012f000) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a0 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f29f: 0012f2a0 9d popfd 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a1 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a0: 0012f2a1 61 popad 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a2 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a1: 0012f2a2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f295 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f294: 0012f295 9c pushfd 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f296 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f295: 0012f296 6874f01200 push offset +0x12f073 (0012f074) 0:000> p eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f29b esp=0012efd8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f29a: 0012f29b e860fdffff call +0x12efff (0012f000) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a0 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f29f: 0012f2a0 9d popfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a1 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a0: 0012f2a1 61 popad 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012ef95 esp=0012ece0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12ef94: 0012ef95 9c pushfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012ef96 esp=0012ecdc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12ef95: 0012ef96 6874ed1200 push offset +0x12ed73 (0012ed74) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012ef9b esp=0012ecd8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12ef9a: 0012ef9b e860fdffff call +0x12ecff (0012ed00) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012efa0 esp=0012ecdc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12ef9f: 0012efa0 9d popfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012efa1 esp=0012ece0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12efa0: 0012efa1 61 popad 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012efa2 esp=0012ed00 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12efa1: 0012efa2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012efa8 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12efa7: 0012efa8 e9f4020000 jmp +0x12f2a0 (0012f2a1) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a1 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a0: 0012f2a1 61 popad 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a2 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a1: 0012f2a2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012efb5 esp=0012ed00 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12efb4: 0012efb5 9c pushfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012efb6 esp=0012ecfc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12efb5: 0012efb6 6894ed1200 push offset +0x12ed93 (0012ed94) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012efbb esp=0012ecf8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12efba: 0012efbb e860fdffff call +0x12ed1f (0012ed20) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012efc0 esp=0012ecfc ebp=0012f6b0 iopl=0 nv up ei pl nz ac po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000212 +0x12efbf: 0012efc0 9d popfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012efc1 esp=0012ed00 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12efc0: 0012efc1 61 popad 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012efc2 esp=0012ed20 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12efc1: 0012efc2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012efc8 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206 +0x12efc7: 0012efc8 e9d5020000 jmp +0x12f2a1 (0012f2a2) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a2 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206 +0x12f2a1: 0012f2a2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f295 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f294: 0012f295 9c pushfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f296 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f295: 0012f296 6874f01200 push offset +0x12f073 (0012f074) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f29b esp=0012efd8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f29a: 0012f29b e860fdffff call +0x12efff (0012f000) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a0 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f29f: 0012f2a0 9d popfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a1 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a0: 0012f2a1 61 popad 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a2 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a1: 0012f2a2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f295 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f294: 0012f295 9c pushfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f296 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f295: 0012f296 6874f01200 push offset +0x12f073 (0012f074) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f29b esp=0012efd8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f29a: 0012f29b e860fdffff call +0x12efff (0012f000) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a0 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f29f: 0012f2a0 9d popfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a1 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a0: 0012f2a1 61 popad 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a2 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a1: 0012f2a2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f295 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f294: 0012f295 9c pushfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f296 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f295: 0012f296 6874f01200 push offset +0x12f073 (0012f074) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f29b esp=0012efd8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f29a: 0012f29b e860fdffff call +0x12efff (0012f000) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a0 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f29f: 0012f2a0 9d popfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a1 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a0: 0012f2a1 61 popad 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a2 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a1: 0012f2a2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f295 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f294: 0012f295 9c pushfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f296 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f295: 0012f296 6874f01200 push offset +0x12f073 (0012f074) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f29b esp=0012efd8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f29a: 0012f29b e860fdffff call +0x12efff (0012f000) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a0 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f29f: 0012f2a0 9d popfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a1 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a0: 0012f2a1 61 popad 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a2 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a1: 0012f2a2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f295 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f294: 0012f295 9c pushfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f296 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f295: 0012f296 6874f01200 push offset +0x12f073 (0012f074) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f29b esp=0012efd8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f29a: 0012f29b e860fdffff call +0x12efff (0012f000) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a0 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f29f: 0012f2a0 9d popfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a1 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a0: 0012f2a1 61 popad 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a2 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a1: 0012f2a2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f295 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f294: 0012f295 9c pushfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f296 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f295: 0012f296 6874f01200 push offset +0x12f073 (0012f074) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f29b esp=0012efd8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f29a: 0012f29b e860fdffff call +0x12efff (0012f000) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a0 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f29f: 0012f2a0 9d popfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a1 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a0: 0012f2a1 61 popad 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a2 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a1: 0012f2a2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f295 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f294: 0012f295 9c pushfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f296 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f295: 0012f296 6874f01200 push offset +0x12f073 (0012f074) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f29b esp=0012efd8 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f29a: 0012f29b e860fdffff call +0x12efff (0012f000) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a0 esp=0012efdc ebp=0012f6b0 iopl=0 nv up ei pl nz ac pe nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000216 +0x12f29f: 0012f2a0 9d popfd 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a1 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a0: 0012f2a1 61 popad 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a2 esp=0012f000 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a1: 0012f2a2 81c4e0020000 add esp,offset +0x2df (000002e0) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f2a8 esp=0012f2e0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f2a7: 0012f2a8 e9fbffffff jmp +0x12f2a7 (0012f2a8) 0:000> eax=024b0000 ebx=00000001 ecx=00000001 edx=7c99b178 esi=023ef630 edi=024143e8 eip=0012f295 esp=0012efe0 ebp=0012f6b0 iopl=0 nv up ei pl nz na po nc cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202 +0x12f294: 0012f295 9c pushfd 0:000> gu (e34.41c): Break instruction exception - code 80000003 (first chance) eax=7ffda000 ebx=00000001 ecx=00000002 edx=00000003 esi=00000004 edi=00000005 eip=7c92120e esp=031cffcc ebp=031cfff4 iopl=0 nv up ei pl zr na pe nc cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=00000246 ntdll!DbgBreakPoint: 7c92120e cc int 3 0:001> g