date/time         : 2010-09-19, 23:51:06, 130ms
computer name     : JAMES-LAPTOP
user name         : James
registered owner  : James / Toshiba
operating system  : Windows Vista Service Pack 2 build 6002
system language   : English
system up time    : 3 hours 45 minutes
program up time   : 10 minutes 14 seconds
processors        : 2x Intel(R) Core(TM)2 Duo CPU T6400 @ 2.00GHz
physical memory   : 1175/2939 MB (free/total)
free disk space   : (C:) 128.07 GB
display mode      : 800x600, 16 bit
process id        : $2144
allocated memory  : 192.42 MB
executable        : Armada2.exe
current module    : Armada2Hook.dll
module date/time  : 2008-01-19 06:06
compiled with     : Delphi 2006/07
madExcept version : 3.0f
callstack crc     : $6cbf0bf9, $da46a623, $da46a623
exception number  : 1
exception class   : EAccessViolation
exception message : Access violation at address 006695E6 in module 'Armada2.exe'. Write of address 00000018.

Main ($1d68):
006695e6 +21b16e Armada2.exe   savegame.obj
004835aa +00015a Armada2.exe   Program.obj
00559b7a +0000fa Armada2.exe   TransportLocal.obj
0045edd4 +000164 Armada2.exe   AudioManager.obj
00487293 +0001b3 Armada2.exe   Program.obj
00486b44 +000544 Armada2.exe   Program.obj
0047608d +000023 Armada2.exe   ArmadaWin.obj
00476042 +0000d2 Armada2.exe   ArmadaWin.obj
006734f4 +22507c Armada2.exe   savegame.obj
75f2d0e7 +000010 kernel32.dll  BaseThreadInitThunk

thread $1578: <priority:15>
7754560e +0a ntdll.dll                 NtWaitForMultipleObjects
75f2a5d1 +ef kernel32.dll              WaitForMultipleObjectsEx
75f2a6eb +13 kernel32.dll              WaitForMultipleObjects
0300fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
0300fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
75f2d0e7 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($1d68) at:
6b1694f6 +00 DSOUND.dll

thread $260c: <priority:15>
7754560e +0a ntdll.dll                 NtWaitForMultipleObjects
75f2a5d1 +ef kernel32.dll              WaitForMultipleObjectsEx
75f2a6eb +13 kernel32.dll              WaitForMultipleObjects
0300fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
0300fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
75f2d0e7 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($1d68) at:
6b1694f6 +00 DSOUND.dll

thread $2780: <priority:-3>
7754560e +0a ntdll.dll                 NtWaitForMultipleObjects
75f2a5d1 +ef kernel32.dll              WaitForMultipleObjectsEx
75f2a6eb +13 kernel32.dll              WaitForMultipleObjects
0300fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
0300fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
75f2d0e7 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($1d68) at:
6b172095 +00 DSOUND.dll

thread $1734: <priority:15>
7754560e +0a ntdll.dll                 NtWaitForMultipleObjects
75f2a5d1 +ef kernel32.dll              WaitForMultipleObjectsEx
0300fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
0300fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
75f2d0e7 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($1d68) at:
735451cc +00 wdmaud.drv

thread $2304: <priority:15>
7754560e +0a ntdll.dll                 NtWaitForMultipleObjects
75f2a5d1 +ef kernel32.dll              WaitForMultipleObjectsEx
75f2a6eb +13 kernel32.dll              WaitForMultipleObjects
00463ce7 +57 Armada2.exe               BinkThread.obj
0300fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
0300fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
75f2d0e7 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($1d68) at:
00463ace +4e Armada2.exe               BinkThread.obj

thread $117c: <priority:15>
7754477e +00a ntdll.dll                 NtDelayExecution
75f2998a +04c kernel32.dll              SleepEx
75ee1c67 +00a kernel32.dll              Sleep
004dd1f1 +191 Armada2.exe               InputThread.obj
0300fb49 +00d Armada2Hook.dll madExcept CallThreadProcSafe
0300fbb3 +037 Armada2Hook.dll madExcept ThreadExceptFrame
75f2d0e7 +010 kernel32.dll              BaseThreadInitThunk
>> created by Main ($1d68) at:
004dd21b +01b Armada2.exe               InputThread.obj

modules:
00150000 NetworkManager.dll                            C:\Program Files\Activision\Star Trek Armada II
001a0000 d3d8.dll                                      C:\Program Files\Activision\Star Trek Armada II
00400000 Armada2.exe                43.0.0.0           C:\Program Files\Activision\Star Trek Armada II
00c90000 FOmsvc.dll                                    C:\Program Files\Activision\Star Trek Armada II
02fc0000 Armada2Hook.dll                               C:\Program Files\Activision\Star Trek Armada II
05170000 igdumdx32.dll              7.15.10.1502       C:\Windows\system32
059c0000 a2_tutorial5S.dsl                             C:\Program Files\Activision\Star Trek Armada II\missions
05a20000 a2_tutorial5R.drl                             C:\Program Files\Activision\Star Trek Armada II\missions
05da0000 igdumd32.dll               7.15.10.1502       C:\Windows\system32
10000000 Win2kDisableTaskSwitch.dll                    C:\Program Files\Activision\Star Trek Armada II
30000000 binkw32.dll                1.2.4.0            C:\Program Files\Activision\Star Trek Armada II
5be50000 d3d8.dll                   6.0.6001.18000     C:\Windows\system32
5de90000 MSVCP60.dll                7.0.6002.18005     C:\Windows\system32
60c40000 ASOEHOOK.DLL               17.7.0.12          C:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\17.7.0.12
6add0000 MSVFW32.dll                6.0.6002.18158     C:\Windows\system32
6ae00000 AVIFIL32.dll               6.0.6002.18158     C:\Windows\system32
6b160000 DSOUND.dll                 6.0.6002.18005     C:\Windows\system32
6c4d0000 IconCodecService.dll       6.0.6000.16386     C:\Windows\system32
6c7e0000 AcGenral.DLL               6.0.6002.18244     C:\Windows\AppPatch
6d290000 ShimEng.dll                6.0.6000.16386     C:\Windows\system32
6d2b0000 d3d8thk.dll                6.0.6000.16386     C:\Windows\system32
6d2f0000 dwmapi.dll                 6.0.6001.18000     C:\Windows\system32
6dd60000 sfc_os.dll                 6.0.6001.18000     C:\Windows\system32
6ecd0000 sfc.dll                    6.0.6000.16386     C:\Windows\system32
6f750000 dbghelp.dll                6.0.6001.18000     C:\Windows\system32
6f910000 MSVCR90.dll                9.0.30729.4148     C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2
6f9c0000 MSVCP90.dll                9.0.30729.4148     C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2
71940000 WindowsCodecs.dll          7.0.6002.18107     C:\Windows\system32
71ad0000 midimap.dll                6.0.6002.18005     C:\Windows\system32
71b90000 COMCTL32.dll               5.82.6001.18000    C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6001.18000_none_886786f450a74a05
71cd0000 wsock32.dll                6.0.6001.18000     C:\Windows\system32
73350000 audioeng.dll               6.0.6001.18000     C:\Windows\system32
733c0000 AUDIOSES.DLL               6.0.6002.18005     C:\Windows\system32
73540000 wdmaud.drv                 6.0.6002.18005     C:\Windows\system32
73780000 MSACM32.dll                6.0.6001.18000     C:\Windows\system32
737d0000 msacm32.drv                6.0.6002.18005     C:\Windows\system32
73820000 ksuser.dll                 6.0.6000.16386     C:\Windows\system32
73860000 OLEACC.dll                 7.0.6002.18155     C:\Windows\system32
738a0000 WINMM.dll                  6.0.6002.18005     C:\Windows\system32
74830000 MMDevApi.dll               6.0.6002.18005     C:\Windows\System32
74890000 UxTheme.dll                6.0.6001.18000     C:\Windows\system32
74970000 comctl32.dll               6.10.6002.18005    C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0
74de0000 WINTRUST.dll               6.0.6002.18169     C:\Windows\system32
74e20000 AVRT.dll                   6.0.6001.18000     C:\Windows\system32
74e70000 VERSION.dll                6.0.6002.18005     C:\Windows\system32
74e90000 POWRPROF.dll               6.0.6002.18005     C:\Windows\system32
75470000 CRYPT32.dll                6.0.6002.18005     C:\Windows\system32
75570000 MPR.dll                    6.0.6002.18005     C:\Windows\system32
755f0000 MSASN1.dll                 6.0.6002.18106     C:\Windows\system32
75850000 NETAPI32.dll               6.0.6002.18005     C:\Windows\system32
75990000 apphelp.dll                6.0.6002.18005     C:\Windows\system32
75a20000 Secur32.dll                6.0.6002.18051     C:\Windows\system32
75a40000 USERENV.dll                6.0.6002.18005     C:\Windows\system32
75b80000 PSAPI.DLL                  6.0.6000.16386     C:\Windows\system32
75b90000 GDI32.dll                  6.0.6002.18005     C:\Windows\system32
75be0000 SETUPAPI.dll               6.0.6002.18005     C:\Windows\system32
75d70000 USER32.dll                 6.0.6002.18005     C:\Windows\system32
75e10000 MSCTF.dll                  6.0.6002.18005     C:\Windows\system32
75ee0000 kernel32.dll               6.0.6002.18005     C:\Windows\system32
75fc0000 NSI.dll                    6.0.6001.18000     C:\Windows\system32
75fd0000 iertutil.dll               8.0.6001.18943     C:\Windows\system32
762b0000 msvcrt.dll                 7.0.6002.18005     C:\Windows\system32
76360000 ADVAPI32.dll               6.0.6002.18005     C:\Windows\system32
76430000 comdlg32.dll               6.0.6002.18005     C:\Windows\system32
764b0000 urlmon.dll                 8.0.6001.18943     C:\Windows\system32
765f0000 IMM32.dll                  6.0.6002.18005     C:\Windows\system32
76610000 OLEAUT32.dll               6.0.6002.18005     C:\Windows\system32
766a0000 USP10.dll                  1.626.6002.18244   C:\Windows\system32
76720000 RPCRT4.dll                 6.0.6002.18024     C:\Windows\system32
767f0000 SHELL32.dll                6.0.6002.18287     C:\Windows\system32
77300000 ole32.dll                  6.0.6002.18005     C:\Windows\system32
77450000 SHLWAPI.dll                6.0.6002.18005     C:\Windows\system32
774b0000 IMAGEHLP.dll               6.0.6001.18000     C:\Windows\system32
774e0000 ntdll.dll                  6.0.6002.18005     C:\Windows\system32
77620000 LPK.DLL                    6.0.6002.18051     C:\Windows\system32
77630000 CLBCatQ.DLL                2001.12.6931.18000 C:\Windows\system32
776c0000 WS2_32.dll                 6.0.6001.18000     C:\Windows\system32

processes:
0000 Idle                         0
0004 System                       0
0204 smss.exe                     0
0250 csrss.exe                    0
027c csrss.exe                    1
0284 wininit.exe                  0
02ac winlogon.exe                 1
02d4 services.exe                 0
02e0 lsass.exe                    0
02ec lsm.exe                      0
0378 svchost.exe                  0
03a4 PresentationFontCache.exe    0
03d0 svchost.exe                  0
03f4 svchost.exe                  0
0450 svchost.exe                  0
0474 svchost.exe                  0
0494 svchost.exe                  0
04cc audiodg.exe                  0
04f4 svchost.exe                  0
050c SLsvc.exe                    0
0548 svchost.exe                  0
05f4 svchost.exe                  0
0698 wlanext.exe                  0
06ec spoolsv.exe                  0
0718 svchost.exe                  0
07e0 svchost.exe                  0
07fc AppleMobileDeviceService.exe 0
00f4 atashost.exe                 0
0138 mDNSResponder.exe            0
014c ccproxy.exe                  0
0144 CFSvcs.exe                   0
0334 svchost.exe                  0
0570 mdm.exe                      0
074c ccsvchst.exe                 0
0814 NLSSRV32.EXE                 0
084c svchost.exe                  0
0874 RegSrvc.exe                  0
0898 svchost.exe                  0
08c4 TMachInfo.exe                0
08f0 TNaviSrv.exe                 0
0910 TODDSrv.exe                  0
0924 TosCoSrv.exe                 0
0960 TosIPCSrv.exe                0
097c ViewpointService.exe         0
098c svchost.exe                  0
09b4 WLIDSVC.EXE                  0
09c8 SearchIndexer.exe            0
0bec YahooAUService.exe           0
0cb0 WLIDSVCM.EXE                 0
0d0c ccsvchst.exe                 1
0d3c Dwm.exe                      1 high         C:\Windows\system32
0da0 taskeng.exe                  1 normal       C:\Windows\system32
0db0 Explorer.EXE                 1 normal       C:\Windows
0f0c IAANTmon.exe                 0
0cd4 ToshibaServiceStation.exe    1 normal       C:\Program Files\Toshiba\TOSHIBA Service Station
0ccc SynTPEnh.exe                 1 above normal C:\Program Files\Synaptics\SynTP
0ef4 RtHDVCpl.exe                 1 normal       C:\Windows
0f34 igfxpers.exe                 1 normal       C:\Windows\System32
0708 NDSTray.exe                  1 normal       C:\Program Files\Toshiba\ConfigFree
0cc0 igfxtray.exe                 1 normal       C:\Windows\System32
0b8c IAAnotif.exe                 1 normal       C:\Program Files\Intel\Intel Matrix Storage Manager
0d44 HPWLan.exe                   1 normal       C:\Program Files\HP Wireless Adapter
04e0 hpwuSchd2.exe                1 normal       C:\Program Files\HP\HP Software Update
04d4 hkcmd.exe                    1 normal       C:\Windows\System32
047c GrooveMonitor.exe            1 normal       C:\Program Files\Microsoft Office\Office12
02d0 jusched.exe                  1 normal       C:\Program Files\Common Files\Java\Java Update
0cd8 iTunesHelper.exe             1 normal       C:\Program Files\iTunes
079c ehtray.exe                   1 normal       C:\Windows\ehome
0d50 aim.exe                      1 normal       C:\Program Files\AIM
0740 igfxsrvc.exe                 1 normal       C:\Windows\system32
0870 Skype.exe                    1 normal       C:\Program Files\Skype\Phone
08d8 wmpnscfg.exe                 1 normal       C:\Program Files\Windows Media Player
0a40 ConnectMgr.exe               1 normal       C:\Program Files\HP Wireless Printer Adapter
0a80 hpqtra08.exe                 1 normal       C:\Program Files\HP\Digital Imaging\bin
0f28 LaunchU3.exe                 1 normal       C:\ProgramData\U3\U3Launcher
0f88 traybar.exe                  1 normal       C:\Program Files\Camera Assistant Software for Toshiba
0970 LimeWire.exe                 1 normal       C:\Program Files\LimeWire
0ff4 ONENOTEM.EXE                 1 normal       C:\Program Files\Microsoft Office\Office12
096c MSASCui.exe                  1 normal       C:\Program Files\Windows Defender
0a7c ehmsas.exe                   1 normal       C:\Windows\ehome
1044 CEC_MAIN.exe                 1 normal       C:\Program Files\Camera Assistant Software for Toshiba
113c WmiPrvSE.exe                 0
1204 CFSwMgr.exe                  1 normal       C:\Program Files\Toshiba\ConfigFree
13bc skypePM.exe                  1 normal       C:\Program Files\Skype\Plugin Manager
15ec conime.exe                   1 normal       C:\Windows\system32
17c0 wmpnetwk.exe                 0
0e30 dllhost.exe                  0
0750 iPodService.exe              0
1110 hpqSTE08.exe                 1 normal       C:\Program Files\HP\Digital Imaging\bin
13b4 hpqbam08.exe                 1 normal       C:\Program Files\HP\Digital Imaging\bin
127c SynTPHelper.exe              1
16c8 iTunes.exe                   1 normal       C:\Program Files\iTunes
12e8 AppleMobileDeviceHelper.exe  1 normal       C:\Program Files\Common Files\Apple\Mobile Device Support
1318 distnoted.exe                1 normal       C:\Program Files\Common Files\Apple\Apple Application Support
15d0 iexplore.exe                 1 normal       C:\Program Files\Internet Explorer
13b0 FlashUtil10i_ActiveX.exe     1 normal       C:\Windows\system32\Macromed\Flash
1814 iexplore.exe                 1 normal       C:\Program Files\Internet Explorer
1da0 iexplore.exe                 1 normal       C:\Program Files\Internet Explorer
1b64 iexplore.exe                 1 normal       C:\Program Files\Internet Explorer
2144 Armada2.exe                  1 normal       C:\Program Files\Activision\Star Trek Armada II

hardware:
+ Batteries
  - Microsoft AC Adapter
  - Microsoft ACPI-Compliant Control Method Battery
+ Computer
  - ACPI x86-based PC
+ Disk drives
  - FUJITSU MHZ2250BH G1
  - Maxtor 3200 USB Device
+ Display adapters
  - Mobile Intel(R) 4 Series Express Chipset Family (driver 7.15.10.1502)
  - Mobile Intel(R) 4 Series Express Chipset Family (driver 7.15.10.1502)
+ DVD/CD-ROM drives
  - TSSTcorp CDDVDW TS-L633A
+ IDE ATA/ATAPI controllers
  - Intel(R) ICH9M-E/M SATA AHCI Controller (driver 8.0.0.1039)
+ Imaging devices
  - Chicony USB 2.0 Camera (driver 6.2.238.214)
+ Keyboards
  - Standard PS/2 Keyboard
+ Mice and other pointing devices
  - Synaptics PS/2 Port TouchPad (driver 11.2.4.0)
+ Modems
  - TOSHIBA Software Modem
+ Monitors
  - Generic PnP Monitor
+ Network adapters
  - Intel(R) WiFi Link 5100 AGN (driver 13.1.1.1)
  - Realtek PCIe FE Family Controller (driver 6.235.304.2010)
+ Processors
  - Intel(R) Core(TM)2 Duo CPU     T6400  @ 2.00GHz
  - Intel(R) Core(TM)2 Duo CPU     T6400  @ 2.00GHz
+ Sound, video and game controllers
  - Realtek High Definition Audio (driver 6.0.1.5599)
+ Storage controllers
  - Microsoft iSCSI Initiator
+ Storage volume shadow copies
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
+ System devices
  - ACPI Fan
  - ACPI Fixed Feature Button
  - ACPI Lid
  - ACPI Power Button
  - ACPI Thermal Zone
  - Direct Application Launch Button
  - Direct Application Launch Button
  - Direct memory access controller
  - High Definition Audio Controller
  - High precision event timer
  - HP-USB-Virtual-Driver (driver 1.7.1.0)
  - Intel(R) 82801 PCI Bridge - 2448
  - Intel(R) ICH9 Family PCI Express Root Port 1 - 2940 (driver 8.6.1.1002)
  - Intel(R) ICH9 Family PCI Express Root Port 2 - 2942 (driver 8.6.1.1002)
  - Intel(R) ICH9 Family PCI Express Root Port 5 - 2948 (driver 8.6.1.1002)
  - Intel(R) ICH9 Family SMBus Controller - 2930 (driver 8.6.1.1001)
  - Intel(R) ICH9M LPC Interface Controller - 2919 (driver 8.6.1.1002)
  - Microsoft ACPI-Compliant Embedded Controller
  - Microsoft ACPI-Compliant System
  - Microsoft Composite Battery
  - Microsoft System Management BIOS Driver
  - Mobile Intel(R) 45 Express Chipset Series Processor to DRAM Controller - 2A40 (driver 8.7.0.1007)
  - Motherboard resources
  - Numeric data processor
  - PCI bus
  - Plug and Play Software Device Enumerator
  - Programmable interrupt controller
  - System CMOS/real time clock
  - System timer
  - Terminal Server Keyboard Driver
  - Terminal Server Mouse Driver
  - TOSHIBA Firmware Linkage Driver (driver 1.0.0.3)
  - TOSHIBA x86 ACPI-Compliant Value Added Logical and General Purpose Device (driver 2.0.0.1)
  - UMBus Enumerator
  - UMBus Root Bus Enumerator
  - Volume Manager
+ TosSec Class
  - TOSHIBA tos_sps32 Driver (driver 4.0.2007.1115)
+ Universal Serial Bus controllers
  - HP USB Virtual Driver (driver 1.7.1.0)
  - Intel(R) ICH9 Family USB Universal Host Controller - 2934
  - Intel(R) ICH9 Family USB Universal Host Controller - 2935
  - Intel(R) ICH9 Family USB Universal Host Controller - 2936
  - Intel(R) ICH9 Family USB Universal Host Controller - 2937
  - Intel(R) ICH9 Family USB Universal Host Controller - 2938
  - Intel(R) ICH9 Family USB Universal Host Controller - 2939
  - Intel(R) ICH9 Family USB2 Enhanced Host Controller - 293A
  - Intel(R) ICH9 Family USB2 Enhanced Host Controller - 293C
  - Realtek USB 2.0 Card Reader (driver 6.0.6000.20131)
  - USB Composite Device
  - USB Mass Storage Device
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub

cpu registers:
eax = 0568bc01
ebx = 3d6147af
ecx = 00000000
edx = 00739098
esi = 0905bb34
edi = 0a798b68
eip = 006695e6
esp = 0012fb28
ebp = 0012fb44

stack dump:
0012fb28  50 da 85 05 68 8b 79 0a - 4a eb 66 00 af 47 61 3d  P...h.y.J.f..Ga=
0012fb38  af 47 61 3d 00 00 00 00 - 37 00 00 00 88 fb 12 00  .Ga=....7.......
0012fb48  af 35 48 00 af 47 61 3d - af 47 61 3d af 47 61 3d  .5H..Ga=.Ga=.Ga=
0012fb58  90 06 73 05 5c 70 37 e1 - 06 08 00 00 00 00 00 00  ..s.\p7.........
0012fb68  01 00 00 00 06 08 00 00 - 00 00 00 00 01 00 00 00  ................
0012fb78  af 47 61 3d ac fd 12 00 - 88 c0 69 00 ff ff ff ff  .Ga=......i.....
0012fb88  b8 fd 12 00 7f 9b 55 00 - 7f 03 00 00 03 00 00 00  ......U.........
0012fb98  30 7b 73 00 00 00 00 00 - 00 00 00 00 00 00 00 00  0{s.............
0012fba8  00 00 17 54 41 50 53 01 - 00 00 00 08 80 04 80 57  ...TAPS........W
0012fbb8  07 00 00 01 00 c8 2b 45 - 80 fc 12 00 60 fc 12 00  ......+E....`...
0012fbc8  08 f4 2b 76 08 00 00 00 - 68 96 4b 02 15 f4 2b 76  ..+v....h.K...+v
0012fbd8  7f 03 00 00 10 00 00 00 - d7 a5 f2 75 01 00 00 00  ...........u....
0012fbe8  2c fc 12 00 01 00 00 00 - 00 00 00 00 20 a6 f2 75  ,..............u
0012fbf8  83 96 d7 b9 68 96 4b 02 - 5c fd 12 00 00 00 00 00  ....h.K.\.......
0012fc08  24 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00  $...............
0012fc18  00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00  ................
0012fc28  00 00 00 00 a0 00 00 00 - 24 00 00 00 01 00 00 00  ........$.......
0012fc38  00 00 00 00 89 8e c1 b9 - 80 fc 12 00 41 f3 2b 76  ............A.+v
0012fc48  60 fc 12 00 00 00 00 00 - 41 f3 2b 76 05 00 00 00  `.......A.+v....
0012fc58  60 fc 12 00 88 fc 12 00 - 08 00 00 00 60 31 35 76  `...........`15v

disassembling:
0044e478 sub_44e478:                      ; function entry point
0044e478   les     ecx, [esp+eax*4]
0044e47b   sal     byte ptr [esi+eax*2-$76], $46
0044e480   sub     [eax+$18], ch
0044e483   dec     edx
0044e484   outsd
0044e485   add     [eax+$57], dl
0044e488   call    +$e0953 ($52ede0)      ; FileUtil.obj (Armada2.exe)
0044e48d   add     esp, $c
0044e490   test    al, al
0044e492   jz      loc_44e4c4
0044e494   mov     cl, [esi+$29]
0044e497   push    $6f4a24                ; 'fullyPlannedPath'
0044e49c   push    ecx
0044e49d   push    edi
0044e49e   call    +$e093d ($52ede0)      ; FileUtil.obj (Armada2.exe)
0044e4a3   add     esp, $c
0044e4a6   test    al, al
0044e4a8   jz      loc_44e4c4
0044e4aa   mov     dl, [esi+$2a]
0044e4ad   push    $6f4a38                ; 'turnOn'
0044e4b2   push    edx
0044e4b3   push    edi
0044e4b4   call    +$e0927 ($52ede0)      ; FileUtil.obj (Armada2.exe)
0044e4b9   add     esp, $c
0044e4bc   mov     byte ptr [ebp+$b], 1
0044e4c0   test    al, al
0044e4c2   jnz     loc_44e4c8
0044e4c4   mov     byte ptr [ebp+$b], 0
0044e4c8   mov     eax, [esi+$20]
0044e4cb   mov     dword ptr [ebp-4], 0
0044e4d2   test    eax, eax
0044e4d4   jz      loc_44e4e4
0044e4d6   mov     ecx, [eax+$1cc]
0044e4dc   push    $6f4a40                ; 'gameObjectClass'
0044e4e1   push    edi
0044e4e2   jmp     loc_44e4ed
0044e4e4   push    $6f4a50                ; 'gameObjectClass'
0044e4e9   push    edi
0044e4ea   lea     ecx, [ebp-4]
0044e4ed   call    +$20f6be ($65dbb0)
0044e4f2   mov     eax, [esi+$24]
0044e4f5   test    eax, eax
0044e4f7   jz      loc_44e507
0044e4f9   mov     ecx, [eax+$208]
0044e4ff   push    $6f4a60                ; 'weaponClass'
0044e504   push    edi
0044e505   jmp     loc_44e510
0044e507   push    $6f4a6c                ; 'weaponClass'
0044e50c   push    edi
0044e50d   lea     ecx, [ebp-4]
0044e510   call    +$20f69b ($65dbb0)
0044e515   push    ebx
0044e516   mov     ebx, [esi+$2c]
0044e519   test    ebx, ebx
0044e51b   setnz   bl
0044e51e   mov     [ebp-8], bl
0044e521   push    $6f4a78                ; 'hasMates'
0044e526   mov     eax, [ebp-8]
0044e529   push    eax
0044e52a   push    edi
0044e52b   call    +$e08b0 ($52ede0)      ; FileUtil.obj (Armada2.exe)
0044e530   mov     cl, [ebp+$b]
0044e533   add     esp, $c
0044e536   and     cl, al
0044e538   test    bl, bl
0044e53a   mov     [ebp+$b], cl
0044e53d   pop     ebx
0044e53e   jz      loc_44e561
0044e540   mov     ecx, [esi+$2c]
0044e543   push    $6f4a84                ; 'undef_intvector'
0044e548   push    ecx
0044e549   push    edi
0044e54a   call    +$dea21 ($52cf70)      ; FileUtil.obj (Armada2.exe)
0044e54f   mov     cl, [ebp+$b]
0044e552   add     esp, $c
0044e555   and     cl, al
0044e557   pop     edi
0044e558   mov     al, cl
0044e55a   pop     esi
0044e55b   mov     esp, ebp
0044e55d   pop     ebp
0044e55e   ret     4
0044e561   mov     al, [ebp+$b]
0044e564   pop     edi
0044e565   pop     esi
0044e566   mov     esp, ebp
0044e568   pop     ebp
0044e569   ret     4

date/time         : 2010-09-20, 00:29:16, 510ms
computer name     : JAMES-LAPTOP
user name         : James
registered owner  : James / Toshiba
operating system  : Windows Vista Service Pack 2 build 6002
system language   : English
system up time    : 4 hours 25 minutes
program up time   : 49 seconds
processors        : 2x Intel(R) Core(TM)2 Duo CPU T6400 @ 2.00GHz
physical memory   : 889/2939 MB (free/total)
free disk space   : (C:) 128.04 GB
display mode      : 800x600, 16 bit
process id        : $1630
allocated memory  : 211.36 MB
executable        : Armada2.exe
current module    : Armada2Hook.dll
module date/time  : 2008-01-19 06:06
compiled with     : Delphi 2006/07
madExcept version : 3.0f
contact name      : James Terranova
contact email     : jetnova16@yahoo.com
callstack crc     : $2a35f336, $f93faae8, $f93faae8
exception number  : 1
exception class   : EAccessViolation
exception message : Access violation at address 0053C334 in module 'Armada2.exe'. Read of address 00000008.

Main ($580):
0053c334 +000084 Armada2.exe   SObject.obj
00401421 +000021 Armada2.exe   AiMission.obj
00602608 +000378 Armada2.exe   LoadSaveGame.obj
00602fb4 +0002a4 Armada2.exe   LoadSaveGame.obj
00484d70 +000030 Armada2.exe   Program.obj
00485897 +000117 Armada2.exe   Program.obj
00487246 +000166 Armada2.exe   Program.obj
00486b44 +000544 Armada2.exe   Program.obj
0047608d +000023 Armada2.exe   ArmadaWin.obj
00476042 +0000d2 Armada2.exe   ArmadaWin.obj
006734f4 +22507c Armada2.exe   savegame.obj
75f2d0e7 +000010 kernel32.dll  BaseThreadInitThunk

thread $5ac: <priority:15>
7754560e +0a ntdll.dll                 NtWaitForMultipleObjects
75f2a5d1 +ef kernel32.dll              WaitForMultipleObjectsEx
75f2a6eb +13 kernel32.dll              WaitForMultipleObjects
02c4fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
02c4fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
75f2d0e7 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($580) at:
6b1694f6 +00 DSOUND.dll

thread $2790: <priority:15>
7754560e +0a ntdll.dll                 NtWaitForMultipleObjects
75f2a5d1 +ef kernel32.dll              WaitForMultipleObjectsEx
75f2a6eb +13 kernel32.dll              WaitForMultipleObjects
02c4fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
02c4fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
75f2d0e7 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($580) at:
6b1694f6 +00 DSOUND.dll

thread $1b58:
7754555e +0a ntdll.dll     NtTraceControl
774ef6bb +40 ntdll.dll     EtwpNotificationThread
75f2d0e7 +10 kernel32.dll  BaseThreadInitThunk

thread $23b8: <priority:-3>
7754560e +0a ntdll.dll                 NtWaitForMultipleObjects
75f2a5d1 +ef kernel32.dll              WaitForMultipleObjectsEx
75f2a6eb +13 kernel32.dll              WaitForMultipleObjects
02c4fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
02c4fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
75f2d0e7 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($580) at:
6b172095 +00 DSOUND.dll

thread $27f8: <priority:15>
7754560e +0a ntdll.dll                 NtWaitForMultipleObjects
75f2a5d1 +ef kernel32.dll              WaitForMultipleObjectsEx
02c4fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
02c4fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
75f2d0e7 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($580) at:
735451cc +00 wdmaud.drv

thread $f44: <priority:15>
7754560e +0a ntdll.dll                 NtWaitForMultipleObjects
75f2a5d1 +ef kernel32.dll              WaitForMultipleObjectsEx
75f2a6eb +13 kernel32.dll              WaitForMultipleObjects
00463ce7 +57 Armada2.exe               BinkThread.obj
02c4fb49 +0d Armada2Hook.dll madExcept CallThreadProcSafe
02c4fbb3 +37 Armada2Hook.dll madExcept ThreadExceptFrame
75f2d0e7 +10 kernel32.dll              BaseThreadInitThunk
>> created by Main ($580) at:
00463ace +4e Armada2.exe               BinkThread.obj

modules:
00250000 NetworkManager.dll                            C:\Program Files\Activision\Star Trek Armada II
002a0000 d3d8.dll                                      C:\Program Files\Activision\Star Trek Armada II
00330000 FOmsvc.dll                                    C:\Program Files\Activision\Star Trek Armada II
00400000 Armada2.exe                43.0.0.0           C:\Program Files\Activision\Star Trek Armada II
02c00000 Armada2Hook.dll                               C:\Program Files\Activision\Star Trek Armada II
057e0000 igdumdx32.dll              7.15.10.1502       C:\Windows\system32
05970000 igdumd32.dll               7.15.10.1502       C:\Windows\system32
10000000 Win2kDisableTaskSwitch.dll                    C:\Program Files\Activision\Star Trek Armada II
30000000 binkw32.dll                1.2.4.0            C:\Program Files\Activision\Star Trek Armada II
59ee0000 d3d8.dll                   6.0.6001.18000     C:\Windows\system32
5de90000 MSVCP60.dll                7.0.6002.18005     C:\Windows\system32
60c40000 ASOEHOOK.DLL               17.7.0.12          C:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\17.7.0.12
6add0000 MSVFW32.dll                6.0.6002.18158     C:\Windows\system32
6ae00000 AVIFIL32.dll               6.0.6002.18158     C:\Windows\system32
6b160000 DSOUND.dll                 6.0.6002.18005     C:\Windows\system32
6c4d0000 IconCodecService.dll       6.0.6000.16386     C:\Windows\system32
6c7e0000 AcGenral.DLL               6.0.6002.18244     C:\Windows\AppPatch
6d290000 ShimEng.dll                6.0.6000.16386     C:\Windows\system32
6d2b0000 d3d8thk.dll                6.0.6000.16386     C:\Windows\system32
6d2f0000 dwmapi.dll                 6.0.6001.18000     C:\Windows\system32
6dd60000 sfc_os.dll                 6.0.6001.18000     C:\Windows\system32
6ecd0000 sfc.dll                    6.0.6000.16386     C:\Windows\system32
6f750000 dbghelp.dll                6.0.6001.18000     C:\Windows\system32
6f910000 MSVCR90.dll                9.0.30729.4148     C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2
6f9c0000 MSVCP90.dll                9.0.30729.4148     C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.4148_none_5090ab56bcba71c2
71940000 WindowsCodecs.dll          7.0.6002.18107     C:\Windows\system32
71ad0000 midimap.dll                6.0.6002.18005     C:\Windows\system32
71b90000 COMCTL32.dll               5.82.6001.18000    C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6001.18000_none_886786f450a74a05
71cd0000 wsock32.dll                6.0.6001.18000     C:\Windows\system32
73350000 audioeng.dll               6.0.6001.18000     C:\Windows\system32
733c0000 AUDIOSES.DLL               6.0.6002.18005     C:\Windows\system32
73540000 wdmaud.drv                 6.0.6002.18005     C:\Windows\system32
73780000 MSACM32.dll                6.0.6001.18000     C:\Windows\system32
737d0000 msacm32.drv                6.0.6002.18005     C:\Windows\system32
73820000 ksuser.dll                 6.0.6000.16386     C:\Windows\system32
73860000 OLEACC.dll                 7.0.6002.18155     C:\Windows\system32
738a0000 WINMM.dll                  6.0.6002.18005     C:\Windows\system32
74830000 MMDevApi.dll               6.0.6002.18005     C:\Windows\System32
74890000 UxTheme.dll                6.0.6001.18000     C:\Windows\system32
74970000 comctl32.dll               6.10.6002.18005    C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0
74de0000 WINTRUST.dll               6.0.6002.18169     C:\Windows\system32
74e20000 AVRT.dll                   6.0.6001.18000     C:\Windows\system32
74e70000 VERSION.dll                6.0.6002.18005     C:\Windows\system32
74e90000 POWRPROF.dll               6.0.6002.18005     C:\Windows\system32
75470000 CRYPT32.dll                6.0.6002.18005     C:\Windows\system32
75570000 MPR.dll                    6.0.6002.18005     C:\Windows\system32
755f0000 MSASN1.dll                 6.0.6002.18106     C:\Windows\system32
75850000 NETAPI32.dll               6.0.6002.18005     C:\Windows\system32
75990000 apphelp.dll                6.0.6002.18005     C:\Windows\system32
75a20000 Secur32.dll                6.0.6002.18051     C:\Windows\system32
75a40000 USERENV.dll                6.0.6002.18005     C:\Windows\system32
75b80000 PSAPI.DLL                  6.0.6000.16386     C:\Windows\system32
75b90000 GDI32.dll                  6.0.6002.18005     C:\Windows\system32
75be0000 SETUPAPI.dll               6.0.6002.18005     C:\Windows\system32
75d70000 USER32.dll                 6.0.6002.18005     C:\Windows\system32
75e10000 MSCTF.dll                  6.0.6002.18005     C:\Windows\system32
75ee0000 kernel32.dll               6.0.6002.18005     C:\Windows\system32
75fc0000 NSI.dll                    6.0.6001.18000     C:\Windows\system32
75fd0000 iertutil.dll               8.0.6001.18943     C:\Windows\system32
762b0000 msvcrt.dll                 7.0.6002.18005     C:\Windows\system32
76360000 ADVAPI32.dll               6.0.6002.18005     C:\Windows\system32
76430000 comdlg32.dll               6.0.6002.18005     C:\Windows\system32
764b0000 urlmon.dll                 8.0.6001.18943     C:\Windows\system32
765f0000 IMM32.dll                  6.0.6002.18005     C:\Windows\system32
76610000 OLEAUT32.dll               6.0.6002.18005     C:\Windows\system32
766a0000 USP10.dll                  1.626.6002.18244   C:\Windows\system32
76720000 RPCRT4.dll                 6.0.6002.18024     C:\Windows\system32
767f0000 SHELL32.dll                6.0.6002.18287     C:\Windows\system32
77300000 ole32.dll                  6.0.6002.18005     C:\Windows\system32
77450000 SHLWAPI.dll                6.0.6002.18005     C:\Windows\system32
774b0000 IMAGEHLP.dll               6.0.6001.18000     C:\Windows\system32
774e0000 ntdll.dll                  6.0.6002.18005     C:\Windows\system32
77620000 LPK.DLL                    6.0.6002.18051     C:\Windows\system32
77630000 CLBCatQ.DLL                2001.12.6931.18000 C:\Windows\system32
776c0000 WS2_32.dll                 6.0.6001.18000     C:\Windows\system32

processes:
0000 Idle                         0
0004 System                       0
0204 smss.exe                     0
0250 csrss.exe                    0
027c csrss.exe                    1
0284 wininit.exe                  0
02ac winlogon.exe                 1
02d4 services.exe                 0
02e0 lsass.exe                    0
02ec lsm.exe                      0
0378 svchost.exe                  0
03a4 PresentationFontCache.exe    0
03d0 svchost.exe                  0
03f4 svchost.exe                  0
0450 svchost.exe                  0
0474 svchost.exe                  0
0494 svchost.exe                  0
04cc audiodg.exe                  0
04f4 svchost.exe                  0
050c SLsvc.exe                    0
0548 svchost.exe                  0
05f4 svchost.exe                  0
0698 wlanext.exe                  0
06ec spoolsv.exe                  0
0718 svchost.exe                  0
07e0 svchost.exe                  0
07fc AppleMobileDeviceService.exe 0
00f4 atashost.exe                 0
0138 mDNSResponder.exe            0
014c ccproxy.exe                  0
0144 CFSvcs.exe                   0
0334 svchost.exe                  0
0570 mdm.exe                      0
074c ccsvchst.exe                 0
0814 NLSSRV32.EXE                 0
084c svchost.exe                  0
0874 RegSrvc.exe                  0
0898 svchost.exe                  0
08c4 TMachInfo.exe                0
08f0 TNaviSrv.exe                 0
0910 TODDSrv.exe                  0
0924 TosCoSrv.exe                 0
0960 TosIPCSrv.exe                0
097c ViewpointService.exe         0
098c svchost.exe                  0
09b4 WLIDSVC.EXE                  0
09c8 SearchIndexer.exe            0
0bec YahooAUService.exe           0
0cb0 WLIDSVCM.EXE                 0
0d0c ccsvchst.exe                 1
0d3c Dwm.exe                      1 high         C:\Windows\system32
0da0 taskeng.exe                  1 normal       C:\Windows\system32
0db0 Explorer.EXE                 1 normal       C:\Windows
0f0c IAANTmon.exe                 0
0cd4 ToshibaServiceStation.exe    1 normal       C:\Program Files\Toshiba\TOSHIBA Service Station
0ccc SynTPEnh.exe                 1 above normal C:\Program Files\Synaptics\SynTP
0ef4 RtHDVCpl.exe                 1 normal       C:\Windows
0f34 igfxpers.exe                 1 normal       C:\Windows\System32
0708 NDSTray.exe                  1 normal       C:\Program Files\Toshiba\ConfigFree
0cc0 igfxtray.exe                 1 normal       C:\Windows\System32
0b8c IAAnotif.exe                 1 normal       C:\Program Files\Intel\Intel Matrix Storage Manager
0d44 HPWLan.exe                   1 normal       C:\Program Files\HP Wireless Adapter
04e0 hpwuSchd2.exe                1 normal       C:\Program Files\HP\HP Software Update
04d4 hkcmd.exe                    1 normal       C:\Windows\System32
047c GrooveMonitor.exe            1 normal       C:\Program Files\Microsoft Office\Office12
02d0 jusched.exe                  1 normal       C:\Program Files\Common Files\Java\Java Update
0cd8 iTunesHelper.exe             1 normal       C:\Program Files\iTunes
079c ehtray.exe                   1 normal       C:\Windows\ehome
0d50 aim.exe                      1 normal       C:\Program Files\AIM
0740 igfxsrvc.exe                 1 normal       C:\Windows\system32
0870 Skype.exe                    1 normal       C:\Program Files\Skype\Phone
08d8 wmpnscfg.exe                 1 normal       C:\Program Files\Windows Media Player
0a40 ConnectMgr.exe               1 normal       C:\Program Files\HP Wireless Printer Adapter
0a80 hpqtra08.exe                 1 normal       C:\Program Files\HP\Digital Imaging\bin
0f28 LaunchU3.exe                 1 normal       C:\ProgramData\U3\U3Launcher
0f88 traybar.exe                  1 normal       C:\Program Files\Camera Assistant Software for Toshiba
0970 LimeWire.exe                 1 normal       C:\Program Files\LimeWire
0ff4 ONENOTEM.EXE                 1 normal       C:\Program Files\Microsoft Office\Office12
096c MSASCui.exe                  1 normal       C:\Program Files\Windows Defender
0a7c ehmsas.exe                   1 normal       C:\Windows\ehome
1044 CEC_MAIN.exe                 1 normal       C:\Program Files\Camera Assistant Software for Toshiba
113c WmiPrvSE.exe                 0
1204 CFSwMgr.exe                  1 normal       C:\Program Files\Toshiba\ConfigFree
13bc skypePM.exe                  1 normal       C:\Program Files\Skype\Plugin Manager
15ec conime.exe                   1 normal       C:\Windows\system32
17c0 wmpnetwk.exe                 0
0e30 dllhost.exe                  0
0750 iPodService.exe              0
1110 hpqSTE08.exe                 1 normal       C:\Program Files\HP\Digital Imaging\bin
13b4 hpqbam08.exe                 1 normal       C:\Program Files\HP\Digital Imaging\bin
127c SynTPHelper.exe              1
16c8 iTunes.exe                   1 normal       C:\Program Files\iTunes
12e8 AppleMobileDeviceHelper.exe  1 normal       C:\Program Files\Common Files\Apple\Mobile Device Support
1318 distnoted.exe                1 normal       C:\Program Files\Common Files\Apple\Apple Application Support
15d0 iexplore.exe                 1 normal       C:\Program Files\Internet Explorer
1b64 iexplore.exe                 1 normal       C:\Program Files\Internet Explorer
0528 FlashUtil10i_ActiveX.exe     1 normal       C:\Windows\system32\Macromed\Flash
2138 iexplore.exe                 1 normal       C:\Program Files\Internet Explorer
1cf4 iexplore.exe                 1 normal       C:\Program Files\Internet Explorer
0de4 taskeng.exe                  0
1630 Armada2.exe                  1 normal       C:\Program Files\Activision\Star Trek Armada II

hardware:
+ Batteries
  - Microsoft AC Adapter
  - Microsoft ACPI-Compliant Control Method Battery
+ Computer
  - ACPI x86-based PC
+ Disk drives
  - FUJITSU MHZ2250BH G1
+ Display adapters
  - Mobile Intel(R) 4 Series Express Chipset Family (driver 7.15.10.1502)
  - Mobile Intel(R) 4 Series Express Chipset Family (driver 7.15.10.1502)
+ DVD/CD-ROM drives
  - TSSTcorp CDDVDW TS-L633A
+ IDE ATA/ATAPI controllers
  - Intel(R) ICH9M-E/M SATA AHCI Controller (driver 8.0.0.1039)
+ Imaging devices
  - Chicony USB 2.0 Camera (driver 6.2.238.214)
+ Keyboards
  - Standard PS/2 Keyboard
+ Mice and other pointing devices
  - Synaptics PS/2 Port TouchPad (driver 11.2.4.0)
+ Modems
  - TOSHIBA Software Modem
+ Monitors
  - Generic PnP Monitor
+ Network adapters
  - Intel(R) WiFi Link 5100 AGN (driver 13.1.1.1)
  - Realtek PCIe FE Family Controller (driver 6.235.304.2010)
+ Processors
  - Intel(R) Core(TM)2 Duo CPU     T6400  @ 2.00GHz
  - Intel(R) Core(TM)2 Duo CPU     T6400  @ 2.00GHz
+ Sound, video and game controllers
  - Realtek High Definition Audio (driver 6.0.1.5599)
+ Storage controllers
  - Microsoft iSCSI Initiator
+ Storage volume shadow copies
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
  - Generic volume shadow copy
+ System devices
  - ACPI Fan
  - ACPI Fixed Feature Button
  - ACPI Lid
  - ACPI Power Button
  - ACPI Thermal Zone
  - Direct Application Launch Button
  - Direct Application Launch Button
  - Direct memory access controller
  - High Definition Audio Controller
  - High precision event timer
  - HP-USB-Virtual-Driver (driver 1.7.1.0)
  - Intel(R) 82801 PCI Bridge - 2448
  - Intel(R) ICH9 Family PCI Express Root Port 1 - 2940 (driver 8.6.1.1002)
  - Intel(R) ICH9 Family PCI Express Root Port 2 - 2942 (driver 8.6.1.1002)
  - Intel(R) ICH9 Family PCI Express Root Port 5 - 2948 (driver 8.6.1.1002)
  - Intel(R) ICH9 Family SMBus Controller - 2930 (driver 8.6.1.1001)
  - Intel(R) ICH9M LPC Interface Controller - 2919 (driver 8.6.1.1002)
  - Microsoft ACPI-Compliant Embedded Controller
  - Microsoft ACPI-Compliant System
  - Microsoft Composite Battery
  - Microsoft System Management BIOS Driver
  - Mobile Intel(R) 45 Express Chipset Series Processor to DRAM Controller - 2A40 (driver 8.7.0.1007)
  - Motherboard resources
  - Numeric data processor
  - PCI bus
  - Plug and Play Software Device Enumerator
  - Programmable interrupt controller
  - System CMOS/real time clock
  - System timer
  - Terminal Server Keyboard Driver
  - Terminal Server Mouse Driver
  - TOSHIBA Firmware Linkage Driver (driver 1.0.0.3)
  - TOSHIBA x86 ACPI-Compliant Value Added Logical and General Purpose Device (driver 2.0.0.1)
  - UMBus Enumerator
  - UMBus Root Bus Enumerator
  - Volume Manager
+ TosSec Class
  - TOSHIBA tos_sps32 Driver (driver 4.0.2007.1115)
+ Universal Serial Bus controllers
  - HP USB Virtual Driver (driver 1.7.1.0)
  - Intel(R) ICH9 Family USB Universal Host Controller - 2934
  - Intel(R) ICH9 Family USB Universal Host Controller - 2935
  - Intel(R) ICH9 Family USB Universal Host Controller - 2936
  - Intel(R) ICH9 Family USB Universal Host Controller - 2937
  - Intel(R) ICH9 Family USB Universal Host Controller - 2938
  - Intel(R) ICH9 Family USB Universal Host Controller - 2939
  - Intel(R) ICH9 Family USB2 Enhanced Host Controller - 293A
  - Intel(R) ICH9 Family USB2 Enhanced Host Controller - 293C
  - Realtek USB 2.0 Card Reader (driver 6.0.6000.20131)
  - USB Composite Device
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub
  - USB Root Hub

cpu registers:
eax = 00000000
ebx = 055969f8
ecx = 00000058
edx = 00e78fc0
esi = 006f4c54
edi = 00e78fc0
eip = 0053c334
esp = 0012fa40
ebp = 0012fa7c

stack dump:
0012fa40  28 06 1f 0b e8 a7 59 05 - f8 69 59 05 58 fa 12 00  (.....Y..iY.X...
0012fa50  c1 ef 53 00 43 cb ba 3d - 88 fa 12 00 de 86 48 00  ..S.C..=......H.
0012fa60  1d 87 48 00 e8 a7 59 05 - 01 00 00 00 c0 3f 94 25  ..H...Y......?.%
0012fa70  00 00 00 00 00 00 00 00 - 00 00 00 00 88 fa 12 00  ................
0012fa80  26 14 40 00 f8 69 59 05 - 10 fc 12 00 0d 26 60 00  &.@..iY......&`.
0012fa90  f8 69 59 05 3d 35 2c 76 - 03 9c 2b 76 00 00 e7 00  .iY.=5,v..+v....
0012faa0  00 00 00 00 10 9c 2b 76 - 6b 72 2d a5 4c 06 1f 0b  ......+vkr-.L...
0012fab0  4c 06 1f 0b 54 fe 12 00 - 21 7a 2d a5 05 00 00 00  L...T...!z-.....
0012fac0  ec fa 12 00 cc 6d 59 05 - a8 fa 12 00 cc 6d 59 05  .....mY......mY.
0012fad0  38 fb 12 00 7d e4 2c 76 - 93 14 14 d3 fe ff ff ff  8...}.,v........
0012fae0  10 9c 2b 76 78 f2 eb 5d - 50 55 68 05 0c 00 00 00  ..+vx..]PUh.....
0012faf0  08 fb 12 00 e5 d6 ec 5d - 01 00 00 00 61 32 5f 66  .......]....a2_f
0012fb00  65 64 30 32 2e 74 74 00 - 5c f4 12 00 cb af 54 00  ed02.tt.\.....T.
0012fb10  c0 f9 12 00 05 00 00 00 - 6c 2e 71 00 c0 f9 12 00  ........l.q.....
0012fb20  00 00 00 00 64 2e 71 00 - c0 f9 12 00 00 00 80 bf  ....d.q.........
0012fb30  5c 2e 71 00 c0 f9 12 00 - 00 00 80 bf 54 2e 71 00  \.q.........T.q.
0012fb40  c0 f9 12 00 50 fc 9f 04 - 01 ac c5 77 00 20 c1 77  ....P......w...w
0012fb50  00 00 00 00 00 00 00 00 - 00 00 00 00 38 f4 12 00  ............8...
0012fb60  b0 60 81 01 d8 f9 12 00 - ce 22 6a 00 ff ff ff ff  .`......."j.....
0012fb70  70 f4 12 00 18 37 60 00 - c0 f9 12 00 66 65 64 65  p....7`.....fede

disassembling:
[...]
0053c326   mov     ebx, [ebp+8]
0053c329   mov     eax, [ebp-4]
0053c32c   jmp     loc_53c334
0053c32e   mov     eax, [edi+8]
0053c331   mov     ebx, [ebp+8]
0053c334 > call    dword ptr [eax+8]
0053c337   mov     ecx, [ebp-8]
0053c33a   mov     esi, eax
0053c33c   push    esi
0053c33d   push    ecx
0053c33e   mov     ecx, ebx
[...]

