date/time         : 2011-09-30, 01:50:14, 316ms
computer name     : JAMES-LAPTOP
user name         : James
registered owner  : James / Toshiba
operating system  : Windows Vista Service Pack 2 build 6002
system language   : English
system up time    : 7 hours 40 minutes
program up time   : 32 seconds
processors        : 2x Intel(R) Core(TM)2 Duo CPU T6400 @ 2.00GHz
physical memory   : 1618/2939 MB (free/total)
free disk space   : (C:) 148.39 GB
display mode      : 800x600, 16 bit
process id        : $21e0
allocated memory  : 83.00 MB
executable        : Armada2.exe
current module    : Armada2Hook.dll
module date/time  : 2008-01-19 06:06
compiled with     : Delphi 2006/07
madExcept version : 3.0f
callstack crc     : $178fab77, $5af11499, $5af11499
exception number  : 1
exception class   : EStackOverflow
exception message : Stack overflow.

Main ($2524):
0049ad96 +000006 Armada2.exe   TechnologyTree.obj
0049add6 +000046 Armada2.exe   TechnologyTree.obj
00499fda +00038a Armada2.exe   TechnologyTree.obj
0049a854 +000084 Armada2.exe   TechnologyTree.obj
006024ed +00025d Armada2.exe   LoadSaveGame.obj
00602fb4 +0002a4 Armada2.exe   LoadSaveGame.obj
00484d70 +000030 Armada2.exe   Program.obj
00485897 +000117 Armada2.exe   Program.obj
00487246 +000166 Armada2.exe   Program.obj
00486b44 +000544 Armada2.exe   Program.obj
0047608d +000023 Armada2.exe   ArmadaWin.obj
00476042 +0000d2 Armada2.exe   ArmadaWin.obj
006734f4 +22507c Armada2.exe   savegame.obj
7589d307 +000010 kernel32.dll  BaseThreadInitThunk

thread $27ac: <priority:15>
770f545e +0a ntdll.dll                 NtWaitForMultipleObjects
7589a7f1 +ef kernel32.dll              WaitForMultipleObjectsEx
7589a90b +13 kernel32.dll              WaitForMultipleObjects
02d3fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
02d3fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
7589d307 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($2524) at:
6a9e94f6 +00 DSOUND.dll

thread $20d0: <priority:15>
766632ce +0a USER32.dll                GetForegroundWindow
02d3fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
02d3fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
7589d307 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($2524) at:
6a9e94f6 +00 DSOUND.dll

thread $1680:
770f53ae +0a ntdll.dll     NtTraceControl
7709f6fa +40 ntdll.dll     EtwpNotificationThread
7589d307 +10 kernel32.dll  BaseThreadInitThunk

thread $1d88: <priority:-3>
770f545e +0a ntdll.dll                 NtWaitForMultipleObjects
7589a7f1 +ef kernel32.dll              WaitForMultipleObjectsEx
7589a90b +13 kernel32.dll              WaitForMultipleObjects
02d3fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
02d3fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
7589d307 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($2524) at:
6a9f2095 +00 DSOUND.dll

thread $2468: <priority:15>
770f545e +0a ntdll.dll                 NtWaitForMultipleObjects
7589a7f1 +ef kernel32.dll              WaitForMultipleObjectsEx
02d3fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
02d3fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
7589d307 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($2524) at:
730651cc +00 wdmaud.drv

thread $221c: <priority:15>
770f545e +0a ntdll.dll                 NtWaitForMultipleObjects
7589a7f1 +ef kernel32.dll              WaitForMultipleObjectsEx
7589a90b +13 kernel32.dll              WaitForMultipleObjects
00463ce7 +57 Armada2.exe               BinkThread.obj
02d3fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
02d3fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
7589d307 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($2524) at:
00463ace +4e Armada2.exe               BinkThread.obj

modules:
00150000 d3d8.dll                                      C:\Program Files\Activision\Star Trek Armada II
00290000 NetworkManager.dll                            C:\Program Files\Activision\Star Trek Armada II
00400000 Armada2.exe                43.0.0.0           C:\Program Files\Activision\Star Trek Armada II
00ec0000 FOmsvc.dll                                    C:\Program Files\Activision\Star Trek Armada II
02cf0000 Armada2Hook.dll                               C:\Program Files\Activision\Star Trek Armada II
04f60000 igdumdx32.dll              7.15.10.1502       C:\Windows\system32
05a30000 igdumd32.dll               7.15.10.1502       C:\Windows\system32
10000000 Win2kDisableTaskSwitch.dll                    C:\Program Files\Activision\Star Trek Armada II
30000000 binkw32.dll                1.2.4.0            C:\Program Files\Activision\Star Trek Armada II
5e140000 d3d8.dll                   6.0.6001.18000     C:\Windows\system32
66690000 MSVCP60.dll                7.0.6002.18005     C:\Windows\system32
67990000 MSVFW32.dll                6.0.6002.18158     C:\Windows\system32
695e0000 AVIFIL32.dll               6.0.6002.18158     C:\Windows\system32
6a9e0000 DSOUND.dll                 6.0.6002.18005     C:\Windows\system32
6be20000 d3d8thk.dll                6.0.6000.16386     C:\Windows\system32
6ce80000 AcGenral.DLL               6.0.6002.18417     C:\Windows\AppPatch
6d360000 ShimEng.dll                6.0.6000.16386     C:\Windows\system32
6d380000 dbghelp.dll                6.0.6001.18000     C:\Windows\system32
6dda0000 dwmapi.dll                 6.0.6001.18000     C:\Windows\system32
6ddb0000 sfc_os.dll                 6.0.6001.18000     C:\Windows\system32
6ddd0000 sfc.dll                    6.0.6000.16386     C:\Windows\system32
6fb20000 COMCTL32.dll               5.82.6002.18305    C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6002.18305_none_88f3a38569c2c436
6fc10000 wsock32.dll                6.0.6001.18000     C:\Windows\system32
719c0000 MSACM32.dll                6.0.6001.18000     C:\Windows\system32
719e0000 audioeng.dll               6.0.6001.18000     C:\Windows\system32
71a50000 AUDIOSES.DLL               6.0.6002.18005     C:\Windows\system32
72ec0000 midimap.dll                6.0.6002.18005     C:\Windows\system32
72ed0000 msacm32.drv                6.0.6002.18005     C:\Windows\system32
73060000 wdmaud.drv                 6.0.6002.18005     C:\Windows\system32
730c0000 ksuser.dll                 6.0.6000.16386     C:\Windows\system32
73330000 MMDevApi.dll               6.0.6002.18005     C:\Windows\System32
73390000 AVRT.dll                   6.0.6001.18000     C:\Windows\system32
73f90000 OLEACC.dll                 7.0.6002.18155     C:\Windows\system32
73fd0000 WINMM.dll                  6.0.6002.18005     C:\Windows\system32
74180000 UxTheme.dll                6.0.6001.18000     C:\Windows\system32
74520000 comctl32.dll               6.10.6002.18305    C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3
748d0000 WINTRUST.dll               6.0.6002.18169     C:\Windows\system32
749d0000 VERSION.dll                6.0.6002.18005     C:\Windows\system32
74a40000 POWRPROF.dll               6.0.6002.18005     C:\Windows\system32
75090000 CRYPT32.dll                6.0.6002.18005     C:\Windows\system32
75190000 MPR.dll                    6.0.6002.18005     C:\Windows\system32
751f0000 MSASN1.dll                 6.0.6002.18106     C:\Windows\system32
75230000 NETAPI32.dll               6.0.6002.18005     C:\Windows\system32
75560000 apphelp.dll                6.0.6002.18005     C:\Windows\system32
755c0000 Secur32.dll                6.0.6002.18051     C:\Windows\system32
755e0000 USERENV.dll                6.0.6002.18005     C:\Windows\system32
75690000 PSAPI.DLL                  6.0.6000.16386     C:\Windows\system32
75730000 RPCRT4.dll                 6.0.6002.18024     C:\Windows\system32
75850000 kernel32.dll               6.0.6002.18449     C:\Windows\system32
75930000 SHELL32.dll                6.0.6002.18393     C:\Windows\system32
76450000 USP10.dll                  1.626.6002.18244   C:\Windows\system32
764d0000 OLEAUT32.dll               6.0.6002.18357     C:\Windows\system32
76650000 USER32.dll                 6.0.6002.18005     C:\Windows\system32
766f0000 IMM32.dll                  6.0.6002.18005     C:\Windows\system32
76710000 NSI.dll                    6.0.6001.18000     C:\Windows\system32
76720000 comdlg32.dll               6.0.6002.18005     C:\Windows\system32
767a0000 CLBCatQ.DLL                2001.12.6931.18000 C:\Windows\system32
76830000 MSCTF.dll                  6.0.6002.18005     C:\Windows\system32
76900000 msvcrt.dll                 7.0.6002.18005     C:\Windows\system32
769b0000 ADVAPI32.dll               6.0.6002.18005     C:\Windows\system32
76a80000 iertutil.dll               8.0.6001.19120     C:\Windows\system32
76c70000 urlmon.dll                 8.0.6001.19120     C:\Windows\system32
76db0000 SETUPAPI.dll               6.0.6002.18005     C:\Windows\system32
76f40000 ole32.dll                  6.0.6002.18277     C:\Windows\system32
77090000 ntdll.dll                  6.0.6002.18327     C:\Windows\system32
771c0000 IMAGEHLP.dll               6.0.6001.18000     C:\Windows\system32
77200000 WS2_32.dll                 6.0.6001.18000     C:\Windows\system32
77230000 SHLWAPI.dll                6.0.6002.18393     C:\Windows\system32
77290000 LPK.DLL                    6.0.6002.18051     C:\Windows\system32
772a0000 GDI32.dll                  6.0.6002.18005     C:\Windows\system32

processes:
0000 Idle                         0
0004 System                       0
01e8 smss.exe                     0
0274 csrss.exe                    0
02a0 csrss.exe                    1
02a8 wininit.exe                  0
02cc services.exe                 0
02dc lsass.exe                    0
02e4 lsm.exe                      0
032c winlogon.exe                 1
03a0 svchost.exe                  0
03cc PresentationFontCache.exe    0
03f8 svchost.exe                  0
0424 MsMpEng.exe                  0
04e0 svchost.exe                  0
051c svchost.exe                  0
053c svchost.exe                  0
05a0 audiodg.exe                  0
05c4 svchost.exe                  0
05d8 SLsvc.exe                    0
0608 svchost.exe                  0
0690 svchost.exe                  0
0748 wlanext.exe                  0
07ec spoolsv.exe                  0
0130 svchost.exe                  0
05fc armsvc.exe                   0
066c svchost.exe                  0
0394 AppleMobileDeviceService.exe 0
07b0 atashost.exe                 0
015c mDNSResponder.exe            0
01f4 CFSvcs.exe                   0
0664 svchost.exe                  0
080c mdm.exe                      0
0850 NLSSRV32.EXE                 0
0950 svchost.exe                  0
095c RegSrvc.exe                  0
096c svchost.exe                  0
09cc TNaviSrv.exe                 0
09dc TODDSrv.exe                  0
09f0 TosCoSrv.exe                 0
0a2c TosIPCSrv.exe                0
0a44 ViewpointService.exe         0
0a54 svchost.exe                  0
0a64 WLIDSVC.EXE                  0
0a7c SearchIndexer.exe            0
0aa8 YahooAUService.exe           0
0ac0 WLIDSVCM.EXE                 0
0b90 WmiPrvSE.exe                 0
0bf4 IAANTmon.exe                 0
0c54 unsecapp.exe                 0
0c80 NortonDNSSvc.exe             0
0d14 SDWinSec.exe                 0
0e58 taskeng.exe                  1 normal       C:\Windows\system32
0ecc Dwm.exe                      1 high         C:\Windows\system32
05f4 Explorer.EXE                 1 normal       C:\Windows
0fe4 ToshibaServiceStation.exe    1 normal       C:\Program Files\Toshiba\TOSHIBA Service Station
0fe8 SynTPEnh.exe                 1 above normal C:\Program Files\Synaptics\SynTP
038c RtHDVCpl.exe                 1 normal       C:\Windows
024c igfxpers.exe                 1 normal       C:\Windows\System32
06fc NDSTray.exe                  1 normal       C:\Program Files\Toshiba\ConfigFree
0e90 igfxtray.exe                 1 normal       C:\Windows\System32
0fb8 IAAnotif.exe                 1 normal       C:\Program Files\Intel\Intel Matrix Storage Manager
0ec0 HPWLan.exe                   1 normal       C:\Program Files\HP Wireless Adapter
09c0 hpwuSchd2.exe                1 normal       C:\Program Files\HP\HP Software Update
0738 hkcmd.exe                    1 normal       C:\Windows\System32
0a38 GrooveMonitor.exe            1 normal       C:\Program Files\Microsoft Office\Office12
0e84 jusched.exe                  1 normal       C:\Program Files\Common Files\Java\Java Update
0f5c msseces.exe                  1 normal       C:\Program Files\Microsoft Security Client
07b8 iTunesHelper.exe             1 normal       C:\Program Files\iTunes
0eb8 ehtray.exe                   1 normal       C:\Windows\ehome
0e3c aim.exe                      1 normal       C:\Program Files\AIM
0f70 igfxsrvc.exe                 1 normal       C:\Windows\system32
04d8 Skype.exe                    1 normal       C:\Program Files\Skype\Phone
054c wmpnscfg.exe                 1 normal       C:\Program Files\Windows Media Player
0744 ConnectMgr.exe               1 normal       C:\Program Files\HP Wireless Printer Adapter
0484 hpqtra08.exe                 1 normal       C:\Program Files\HP\Digital Imaging\bin
0bac LaunchU3.exe                 1 normal       C:\ProgramData\U3\U3Launcher
0d6c NortonDNSTray.exe            1 normal       C:\Program Files\Norton DNS
0e7c traybar.exe                  1 normal       C:\Program Files\Camera Assistant Software for Toshiba
0b68 ONENOTEM.EXE                 1 normal       C:\Program Files\Microsoft Office\Office12
0ff8 ehmsas.exe                   1 normal       C:\Windows\ehome
10d4 CEC_MAIN.exe                 1 normal       C:\Program Files\Camera Assistant Software for Toshiba
12d4 wmpnetwk.exe                 0
14cc NisSrv.exe                   0
165c CFSwMgr.exe                  1 normal       C:\Program Files\Toshiba\ConfigFree
1724 iPodService.exe              0
0920 SynTPHelper.exe              1
0938 hpqSTE08.exe                 1 normal       C:\Program Files\HP\Digital Imaging\bin
0d88 hpqbam08.exe                 1 normal       C:\Program Files\HP\Digital Imaging\bin
0844 TMachInfo.exe                0
0d68 conime.exe                   1 normal       C:\Windows\system32
112c FrostWire.exe                1 normal       C:\Program Files\FrostWire 5
1578 svchost.exe                  0
12e8 iTunes.exe                   1 normal       C:\Program Files\iTunes
0380 AppleMobileDeviceHelper.exe  1 normal       C:\Program Files\Common Files\Apple\Mobile Device Support
179c distnoted.exe                1 normal       C:\Program Files\Common Files\Apple\Apple Application Support
17f4 ccsvchst.exe                 0
050c ccsvchst.exe                 1
1170 taskeng.exe                  0
26e8 NOTEPAD.EXE                  1 normal       C:\Windows\system32
24dc SearchProtocolHost.exe       0
033c SearchFilterHost.exe         0
21e0 Armada2.exe                  1 normal       C:\Program Files\Activision\Star Trek Armada II

hardware:
+ Batteries
  - Microsoft AC Adapter
  - Microsoft ACPI-Compliant Control Method Battery
+ Computer
  - ACPI x86-based PC
+ Disk drives
  - FUJITSU MHZ2250BH G1
  - Maxtor 3200 USB Device
+ Display adapters
  - Mobile Intel(R) 4 Series Express Chipset Family (driver 7.15.10.1502)
  - Mobile Intel(R) 4 Series Express Chipset Family (driver 7.15.10.1502)
+ DVD/CD-ROM drives
  - TSSTcorp CDDVDW TS-L633A
+ IDE ATA/ATAPI controllers
  - Intel(R) ICH9M-E/M SATA AHCI Controller (driver 8.0.0.1039)
+ Imaging devices
  - Chicony USB 2.0 Camera (driver 6.2.238.214)
+ Keyboards
  - Standard PS/2 Keyboard
+ Mice and other pointing devices
  - Synaptics PS/2 Port TouchPad (driver 11.2.4.0)
+ Modems
  - Smartphone Wireless USB Modem (driver 4.1.1.0)
  - TOSHIBA Software Modem
+ Monitors
  - Generic PnP Monitor
+ Network adapters
  - Intel(R) WiFi Link 5100 AGN (driver 13.1.1.1)
  - Realtek PCIe FE Family Controller (driver 6.241.623.2010)
+ Processors
  - Intel(R) Core(TM)2 Duo CPU     T6400  @ 2.00GHz
  - Intel(R) Core(TM)2 Duo CPU     T6400  @ 2.00GHz
+ Sound, video and game controllers
  - Realtek High Definition Audio (driver 6.0.1.5599)
+ Storage controllers
  - Microsoft iSCSI Initiator
+ Storage volume shadow copies
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
+ System devices
  - ACPI Fan
  - ACPI Fixed Feature Button
  - ACPI Lid
  - ACPI Power Button
  - ACPI Thermal Zone
  - Direct Application Launch Button
  - Direct Application Launch Button
  - Direct memory access controller
  - High Definition Audio Controller
  - High precision event timer
  - HP-USB-Virtual-Driver (driver 1.7.1.0)
  - Intel(R) 82801 PCI Bridge - 2448
  - Intel(R) ICH9 Family PCI Express Root Port 1 - 2940 (driver 8.6.1.1002)
  - Intel(R) ICH9 Family PCI Express Root Port 2 - 2942 (driver 8.6.1.1002)
  - Intel(R) ICH9 Family PCI Express Root Port 5 - 2948 (driver 8.6.1.1002)
  - Intel(R) ICH9 Family SMBus Controller - 2930 (driver 8.6.1.1001)
  - Intel(R) ICH9M LPC Interface Controller - 2919 (driver 8.6.1.1002)
  - Microsoft ACPI-Compliant Embedded Controller
  - Microsoft ACPI-Compliant System
  - Microsoft Composite Battery
  - Microsoft System Management BIOS Driver
  - Mobile Intel(R) 45 Express Chipset Series Processor to DRAM Controller - 2A40 (driver 8.7.0.1007)
  - Motherboard resources
  - Numeric data processor
  - PCI bus
  - Plug and Play Software Device Enumerator
  - Programmable interrupt controller
  - System CMOS/real time clock
  - System timer
  - Terminal Server Keyboard Driver
  - Terminal Server Mouse Driver
  - TOSHIBA Firmware Linkage Driver (driver 1.0.0.3)
  - TOSHIBA x86 ACPI-Compliant Value Added Logical and General Purpose Device (driver 2.0.0.1)
  - UMBus Enumerator
  - UMBus Root Bus Enumerator
  - Volume Manager
+ TosSec Class
  - TOSHIBA tos_sps32 Driver (driver 4.0.2007.1115)
+ Universal Serial Bus controllers
  - HP USB Virtual Driver (driver 1.7.1.0)
  - Intel(R) ICH9 Family USB Universal Host Controller - 2934
  - Intel(R) ICH9 Family USB Universal Host Controller - 2935
  - Intel(R) ICH9 Family USB Universal Host Controller - 2936
  - Intel(R) ICH9 Family USB Universal Host Controller - 2937
  - Intel(R) ICH9 Family USB Universal Host Controller - 2938
  - Intel(R) ICH9 Family USB Universal Host Controller - 2939
  - Intel(R) ICH9 Family USB2 Enhanced Host Controller - 293A
  - Intel(R) ICH9 Family USB2 Enhanced Host Controller - 293C
  - Realtek USB 2.0 Card Reader (driver 6.0.6000.20131)
  - USB Composite Device
  - USB Mass Storage Device
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub

cpu registers:
eax = ffffff01
ebx = 09109f84
ecx = 09109f84
edx = 00000001
esi = 08fb64c0
edi = 08fb4508
eip = 0049ad96
esp = 00032ff4
ebp = 00033004

stack dump:
00032ff4  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
00033004  28 30 03 00 db ad 49 00 - 08 45 fb 08 c0 64 fb 08  (0....I..E...d..
00033014  84 9f 10 09 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
00033024  84 9f 10 09 4c 30 03 00 - db ad 49 00 08 45 fb 08  ....L0....I..E..
00033034  c0 64 fb 08 84 9f 10 09 - 00 00 00 00 00 00 00 00  .d..............
00033044  00 00 00 00 84 9f 10 09 - 70 30 03 00 db ad 49 00  ........p0....I.
00033054  08 45 fb 08 c0 64 fb 08 - 84 9f 10 09 00 00 00 00  .E...d..........
00033064  00 00 00 00 00 00 00 00 - 84 9f 10 09 94 30 03 00  .............0..
00033074  db ad 49 00 08 45 fb 08 - c0 64 fb 08 84 9f 10 09  ..I..E...d......
00033084  00 00 00 00 00 00 00 00 - 00 00 00 00 84 9f 10 09  ................
00033094  b8 30 03 00 db ad 49 00 - 08 45 fb 08 c0 64 fb 08  .0....I..E...d..
000330a4  84 9f 10 09 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
000330b4  84 9f 10 09 dc 30 03 00 - db ad 49 00 08 45 fb 08  .....0....I..E..
000330c4  c0 64 fb 08 84 9f 10 09 - 00 00 00 00 00 00 00 00  .d..............
000330d4  00 00 00 00 84 9f 10 09 - 00 31 03 00 db ad 49 00  .........1....I.
000330e4  08 45 fb 08 c0 64 fb 08 - 84 9f 10 09 00 00 00 00  .E...d..........
000330f4  00 00 00 00 00 00 00 00 - 84 9f 10 09 24 31 03 00  ............$1..
00033104  db ad 49 00 08 45 fb 08 - c0 64 fb 08 84 9f 10 09  ..I..E...d......
00033114  00 00 00 00 00 00 00 00 - 00 00 00 00 84 9f 10 09  ................
00033124  48 31 03 00 db ad 49 00 - 08 45 fb 08 c0 64 fb 08  H1....I..E...d..

disassembling:
0049ad90 public TechnologyTree.obj:       ; function entry point
0049ad90   push    ebp
0049ad91   mov     ebp, esp
0049ad93   sub     esp, $10
0049ad96 > push    ebx
0049ad97   mov     ebx, ecx
0049ad99   mov     [ebp-4], ebx
0049ad9c   mov     ecx, [ebx+$4c]
0049ad9f   mov     al, [ecx+$c]
0049ada2   test    al, al
[...]

