Download as txt, pdf, or txt
Download as txt, pdf, or txt
You are on page 1of 8

date/time

computer name
user name
registered owner
operating system
system language
system up time
program up time
processors
physical memory
free disk space
display mode
process id
allocated memory
command line
e" -UseTray
executable
current module
exec. date/time
version
compiled with
madExcept version
callstack crc
count
exception number
exception class
exception message

:
:
:
:
:
:
:
:
:
:
:
:
:
:
:

2015-12-13, 14:06:21, 200ms


GEORGE-PC
George <admin>
George
Windows 7 x64 Service Pack 1 build 7601
English
7 days 6 hours
7 days 6 hours
4x Intel(R) Core(TM) i3-2330M CPU @ 2.20GHz
1273/4044 MB (free/total)
(C:) 31,77 GB
1366x768, 32 bit
$7d8
59,38 MB
"C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\BoostSpeed.ex

:
:
:
:
:
:
:
:
:
:
:

BoostSpeed.exe
madExcept_.bpl
2010-11-30 17:26
10.0.0.24
Delphi 2009
3.0l
$09387b50, $98b6f858, $868815fa
14
5
EOutOfResources
Not enough timers available.

main thread ($7dc):


501573e9 +069 vcl120.bpl
50157414 +008 vcl120.bpl
0042cecc +030 BoostSpeed.exe
501c565a +2d2 vcl120.bpl
501c9ce7 +513 vcl120.bpl
501c5280 +024 vcl120.bpl
501c9b48 +374 vcl120.bpl
501c9400 +02c vcl120.bpl
775e7885 +00a USER32.dll
501eeabd +11d vcl120.bpl
501eeb02 +00a vcl120.bpl
501eee2d +0c9 vcl120.bpl
0045653c +068 BoostSpeed.exe
76063368 +010 kernel32.dll

Extctrls
TTimer.UpdateTimer
Extctrls
TTimer.SetEnabled
uAxHeaderTab 251 +10 TAxHeaderTab.CMMouseEnter
Controls
TControl.WndProc
Controls
TWinControl.WndProc
Controls
TControl.Perform
Controls
TWinControl.WndProc
Controls
TWinControl.MainWndProc
DispatchMessageW
Forms
TApplication.ProcessMessage
Forms
TApplication.HandleMessage
Forms
TApplication.Run
BoostSpeed
96 +9 initialization
BaseThreadInitThunk

thread $3c8:
77b80152 +0e ntdll.dll
NtWaitForMultipleObjects
76063368 +10 kernel32.dll BaseThreadInitThunk
thread $368:
77b7fd86 +00e ntdll.dll
NtDelayExecution
775f60d7 +163 USER32.dll
PeekMessageA
76063368 +010 kernel32.dll BaseThreadInitThunk
thread $7f8:
77b7fd86 +0e
75913bcf +5f
759144a0 +0a
0044db4c +1c
76063368 +10

ntdll.dll
NtDelayExecution
KERNELBASE.dll
SleepEx
KERNELBASE.dll
Sleep
BoostSpeed.exe uShortcutManager 90 +6 TCheckShortcutThread.Execute
kernel32.dll
BaseThreadInitThunk

thread $e18:
77b80152 +0e
759115f1 +fa
760619f7 +89
775f0864 +00
775f0b64 +1a
76063368 +10

ntdll.dll
KERNELBASE.dll
kernel32.dll
USER32.dll
USER32.dll
kernel32.dll

thread $14b0:
77b7fd86 +0e ntdll.dll
75913bcf +5f KERNELBASE.dll
759144a0 +0a KERNELBASE.dll
76063368 +10 kernel32.dll

NtWaitForMultipleObjects
WaitForMultipleObjectsEx
WaitForMultipleObjectsEx
MsgWaitForMultipleObjectsEx
MsgWaitForMultipleObjects
BaseThreadInitThunk
NtDelayExecution
SleepEx
Sleep
BaseThreadInitThunk

thread $15a4:
77b81f3b +0b ntdll.dll
NtWaitForWorkViaWorkerFactory
76063368 +10 kernel32.dll BaseThreadInitThunk
thread $1ff0:
775e7908 +26 USER32.dll
GetMessageW
76063368 +10 kernel32.dll BaseThreadInitThunk
thread $1754:
77b81f3b +0b ntdll.dll
NtWaitForWorkViaWorkerFactory
76063368 +10 kernel32.dll BaseThreadInitThunk
modules:
003c0000 Localizer.dll
Files (x86)\AVG\AVG PC Tuneup 2011
00400000 BoostSpeed.exe
Files (x86)\AVG\AVG PC Tuneup 2011
00540000 helper.dll
Files (x86)\AVG\AVG PC Tuneup 2011
006b0000 AxComponents20.bpl
Files (x86)\AVG\AVG PC Tuneup 2011
02db0000 AdvisorHelper.dll
Files (x86)\AVG\AVG PC Tuneup 2011
02df0000 SystemInformationHelper.dll
Files (x86)\AVG\AVG PC Tuneup 2011
02ec0000 DiskDefragHelper.dll
Files (x86)\AVG\AVG PC Tuneup 2011
038d0000 RescueCenterHelper.dll
Files (x86)\AVG\AVG PC Tuneup 2011
03db0000 commonforms.dll
Files (x86)\AVG\AVG PC Tuneup 2011
03f80000 aushelper.dll
Files (x86)\AVG\AVG PC Tuneup 2011
05de0000 RegistryCleanerHelper.dll
Files (x86)\AVG\AVG PC Tuneup 2011
05e50000 PerlRegExp.bpl
Files (x86)\AVG\AVG PC Tuneup 2011
50000000 rtl120.bpl
Files (x86)\AVG\AVG PC Tuneup 2011
50120000 vcl120.bpl
Files (x86)\AVG\AVG PC Tuneup 2011
57000000 madBasic_.bpl
Files (x86)\AVG\AVG PC Tuneup 2011
57800000 madDisAsm_.bpl
Files (x86)\AVG\AVG PC Tuneup 2011
59800000 madExcept_.bpl

10.0.0.24

C:\Program

10.0.0.24

C:\Program

10.0.0.24

C:\Program

3.0.0.24

C:\Program

10.0.0.24

C:\Program

10.0.0.24

C:\Program

10.0.0.24

C:\Program

10.0.0.24

C:\Program

10.0.0.22

C:\Program

5.0.1.50

C:\Program

10.0.0.24

C:\Program

1.0.0.0

C:\Program

12.0.3420.21218

C:\Program

12.0.3420.21218

C:\Program
C:\Program
C:\Program
C:\Program

Files (x86)\AVG\AVG PC Tuneup 2011


68380000 d3d9.dll
6.1.7601.17514
C:\Windows\
system32
68e10000 wmiutils.dll
6.1.7600.16385
C:\Windows\
system32\wbem
68e30000 wbemdisp.dll
6.1.7600.16385
C:\Windows\
system32\wbem
69b90000 d3d8.dll
6.1.7600.16385
C:\Windows\
system32
69f20000 DDRAW.dll
6.1.7600.16385
C:\Windows\
system32
6a280000 opengl32.dll
6.1.7600.16385
C:\Windows\
system32
6ccc0000 fastprox.dll
6.1.7601.17514
C:\Windows\
system32\wbem
70110000 perfdisk.dll
6.1.7600.16385
C:\Windows\
System32
70150000 GLU32.dll
6.1.7600.16385
C:\Windows\
system32
701b0000 perfproc.dll
6.1.7600.16385
C:\Windows\
System32
701c0000 atiu9pag.dll
8.14.1.6226
C:\Windows\
system32
70200000 NTDSAPI.dll
6.1.7600.16385
C:\Windows\
system32
70220000 wbemcomn.dll
6.1.7601.17514
C:\Windows\
system32
702c0000 wbemsvc.dll
6.1.7600.16385
C:\Windows\
system32\wbem
709c0000 Pdh.dll
6.1.7601.17514
C:\Windows\
system32
70a10000 wbemprox.dll
6.1.7600.16385
C:\Windows\
system32\wbem
71dd0000 gdiplus.dll
6.1.7601.18455
C:\Windows\
WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.18455_none_72d576
ad8665e853
71f60000 propsys.dll
7.0.7601.17514
C:\Windows\
system32
72060000 winmm.dll
6.1.7601.17514
C:\Windows\
system32
72210000 apphelp.dll
6.1.7601.17514
C:\Windows\
system32
72260000 SHFolder.dll
6.1.7600.16385
C:\Windows\
system32
72270000 oledlg.dll
6.1.7600.16385
C:\Windows\
system32
722a0000 snmpapi.dll
6.1.7600.16385
C:\Windows\
system32
722b0000 inetmib1.dll
6.1.7601.17514
C:\Windows\
system32
72350000 ntmarta.dll
6.1.7600.16385
C:\Windows\
system32
72390000 uxtheme.dll
6.1.7600.16385
C:\Windows\
system32
72450000 rsaenh.dll
6.1.7600.16385
C:\Windows\
system32
72490000 CRYPTSP.dll
6.1.7600.16385
C:\Windows\
system32
72750000 WINNSI.DLL
6.1.7600.16385
C:\Windows\
system32

72760000 IPHLPAPI.DLL
6.1.7601.17514
C:\Windows\
system32
72790000 Secur32.dll
6.1.7601.18798
C:\Windows\
system32
73ce0000 winspool.drv
6.1.7601.17514
C:\Windows\
system32
73d40000 comctl32.dll
6.10.7601.17514
C:\Windows\
WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_non
e_41e6975e2bd6f2b2
73ee0000 msimg32.dll
6.1.7600.16385
C:\Windows\
system32
73ef0000 oleacc.dll
7.0.0.0
C:\Windows\
system32
73f30000 wsock32.dll
6.1.7600.16385
C:\Windows\
system32
73f40000 mpr.dll
6.1.7600.16385
C:\Windows\
system32
73f60000 version.dll
6.1.7600.16385
C:\Windows\
system32
74840000 DWMAPI.DLL
6.1.7600.16385
C:\Windows\
system32
74940000 DCIMAN32.dll
6.1.7601.18177
C:\Windows\
system32
749d0000 d3d8thk.dll
6.1.7600.16385
C:\Windows\
system32
74ee0000 api-ms-win-downlevel-advapi32-l2-1-0.dll 6.2.9200.16492
C:\Windows\
system32
75380000 RpcRtRemote.dll
6.1.7601.17514
C:\Windows\
system32
75400000 PowrProf.dll
6.1.7600.16385
C:\Windows\
system32
754f0000 CRYPTBASE.dll
6.1.7600.16385
C:\Windows\
syswow64
75500000 SspiCli.dll
6.1.7601.18798
C:\Windows\
syswow64
75560000 SHLWAPI.dll
6.1.7601.17514
C:\Windows\
syswow64
755c0000 USERENV.dll
6.1.7601.17514
C:\Windows\
syswow64
755e0000 DEVOBJ.dll
6.1.7601.17621
C:\Windows\
syswow64
75600000 CLBCatQ.DLL
2001.12.8530.16385 C:\Windows\
syswow64
75690000 api-ms-win-downlevel-shlwapi-l1-1-0.dll 6.2.9200.16492
C:\Windows\
syswow64
756a0000 MSASN1.dll
6.1.7601.17514
C:\Windows\
syswow64
756b0000 api-ms-win-downlevel-user32-l1-1-0.dll 6.2.9200.16492
C:\Windows\
syswow64
756c0000 api-ms-win-downlevel-normaliz-l1-1-0.dll 6.2.9200.16492
C:\Windows\
syswow64
756d0000 WININET.dll
11.0.9600.17801
C:\Windows\
syswow64
758b0000 WLDAP32.dll
6.1.7601.17514
C:\Windows\
syswow64
75900000 KERNELBASE.dll
6.1.7601.18798
C:\Windows\
syswow64
75950000 setupapi.dll
6.1.7601.17514
C:\Windows\
syswow64
75af0000 MSCTF.dll
6.1.7601.18731
C:\Windows\

syswow64
75bc0000
syswow64
75ce0000
syswow64
75d90000
syswow64
75e30000
SysWOW64
75e50000
syswow64
75e80000
syswow64
75eb0000
syswow64
75f40000
syswow64
76030000
syswow64
76040000
syswow64
76050000
syswow64
76160000
syswow64
761f0000
syswow64
76e40000
system32
76f00000
syswow64
76f30000
syswow64
76fd0000
syswow64
76fe0000
syswow64
77130000
syswow64
77290000
syswow64
772a0000
syswow64
77340000
syswow64
77350000
syswow64
77390000
syswow64
775d0000
syswow64
776d0000
syswow64
77750000
syswow64
77b30000
syswow64
77b60000
SysWOW64

CRYPT32.dll

6.1.7601.18277

C:\Windows\

msvcrt.dll

7.0.7601.17744

C:\Windows\

ADVAPI32.dll

6.1.7601.18247

C:\Windows\

sechost.dll

6.1.7600.16385

C:\Windows\

IMAGEHLP.DLL

6.1.7601.18288

C:\Windows\

CFGMGR32.dll

6.1.7601.17621

C:\Windows\

oleaut32.dll

6.1.7601.18640

C:\Windows\

RPCRT4.dll

6.1.7601.18532

C:\Windows\

Psapi.dll

6.1.7600.16385

C:\Windows\

api-ms-win-downlevel-version-l1-1-0.dll 6.2.9200.16492

C:\Windows\

kernel32.dll

6.1.7601.18798

C:\Windows\

GDI32.dll

6.1.7601.18778

C:\Windows\

shell32.dll

6.1.7601.18762

C:\Windows\

IMM32.DLL

6.1.7601.17514

C:\Windows\

WINTRUST.dll

6.1.7601.18205

C:\Windows\

USP10.dll

1.626.7601.18454

C:\Windows\

normaliz.DLL

6.1.7600.16385

C:\Windows\

URLMON.DLL

11.0.9600.17801

C:\Windows\

ole32.dll

6.1.7601.17514

C:\Windows\

profapi.dll

6.1.7600.16385

C:\Windows\

LPK.dll

6.1.7601.18177

C:\Windows\

api-ms-win-downlevel-advapi32-l1-1-0.dll 6.2.9200.16492

C:\Windows\

WS2_32.dll

6.1.7601.17514

C:\Windows\

iertutil.dll

11.0.9600.17801

C:\Windows\

USER32.dll

6.1.7601.17514

C:\Windows\

comdlg32.dll

6.1.7601.17514

C:\Windows\

NSI.dll

6.1.7600.16385

C:\Windows\

api-ms-win-downlevel-ole32-l1-1-0.dll

6.2.9200.16492

C:\Windows\

ntdll.dll

6.1.7601.18798

C:\Windows\

processes:
0000 Idle
0004 System
0178 smss.exe
01e8 csrss.exe
0260 wininit.exe
027c csrss.exe
02a4 winlogon.exe
02d0 services.exe
02e0 lsass.exe
02e8 lsm.exe
0358 svchost.exe
03b8 svchost.exe
03ec MsMpEng.exe
0224 atiesrxx.exe
026c svchost.exe
0324 svchost.exe
0074 svchost.exe
041c svchost.exe
0440 stacsv64.exe
0508 svchost.exe
0564 svchost.exe
05b0 atieclxx.exe
0680 svchost.exe
0724 taskhost.exe
0750 dwm.exe
0784 explorer.exe
07d8 BoostSpeed.exe
iles (x86)\AVG\AVG PC Tuneup 2011
04b4 armsvc.exe
04d4 AppleMobileDeviceService.exe
06e0 mDNSResponder.exe
052c mbamscheduler.exe
0814 mbamservice.exe
0828 mbam.exe
iles (x86)\Malwarebytes Anti-Malware
085c svchost.exe
0898 svchost.exe
0aac sttray64.exe
0ab4 igfxtray.exe
0ad4 hkcmd.exe
0b08 igfxpers.exe
0be0 SynTPEnh.exe
0890 msseces.exe
0210 SynTPHelper.exe
0cdc svchost.exe
0f64 MOM.exe
0b5c firefox.exe
iles (x86)\Mozilla Firefox
0d6c CCC.exe
0bb0 SearchIndexer.exe
0bd4 wmpnetwk.exe
1228 svchost.exe
1328 HPSupportSolutionsFrameworkService.exe
1144 RIconMan.exe
127c PresentationFontCache.exe
0b3c NisSrv.exe
1360 Dropbox.exe
rge\AppData\Roaming\Dropbox\bin
0dc4 ACDSeeProInTouch2.exe

0
0
0
0
0
1
1
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
1
1
1
1

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
18
6
1184
213

0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
22
2
580
165

0
0
0
0
0
1

0
0
0
0
0
117

0
0
0
0
0
46 normal

C:\Program F

0
0
1
1
1
1
1
1
1
0
1
1

0
0
10
7
4
4
77
162
4
0
4
1291

0
0
16
5
19
4
41
108
3
0
9
143

normal
normal

C:\Program F

1
0
0
0
0
0
0
0
1

29
0
0
0
0
0
0
0
50

32 normal
0
0
0
0
0
0
0
69 normal

C:\Users\Geo

C:\Program F

1 33

normal
normal
normal
below normal C:\Program F

normal
normal
normal
normal
above normal
normal
above normal

normal

iles (x86)\ACD Systems\ACDSee Pro\5.0


0d8c audiodg.exe
196c WmiPrvSE.exe

0 0
0 0

0
0

hardware:
+ Batteries
- Microsoft AC Adapter
- Microsoft ACPI-Compliant Control Method Battery
- Microsoft Composite Battery
+ Computer
- ACPI x64-based PC
+ Disk drives
- ST320LT020-9YG142 ATA Device
+ Display adapters
- Intel(R) HD Graphics Family (driver 8.882.2.0)
- Radeon (TM) HD 6470M (driver 8.882.2.0)
+ DVD/CD-ROM drives
- hp DVD-RAM UJ8B1 ATA Device
+ Human Interface Devices
- HID-compliant consumer control device
- HID-compliant device
- HID-compliant device
- USB Input Device
- USB Input Device
+ IDE ATA/ATAPI controllers
- ATA Channel 0
- ATA Channel 4
- Standard AHCI 1.0 Serial ATA Controller
+ Imaging devices
- HP Webcam-101
+ Keyboards
- Standard PS/2 Keyboard
+ Mice and other pointing devices
- HID-compliant mouse
- Synaptics PS/2 Port TouchPad (driver 15.3.29.0)
+ Monitors
- Generic PnP Monitor
+ Network adapters
- Microsoft Virtual WiFi Miniport Adapter
- Qualcomm Atheros AR9285 802.11b/g/n WiFi Adapter (driver 10.0.0.67)
- Realtek PCIe FE Family Controller (driver 7.48.823.2011)
+ Processors
- Intel(R) Core(TM) i3-2330M CPU @ 2.20GHz
- Intel(R) Core(TM) i3-2330M CPU @ 2.20GHz
- Intel(R) Core(TM) i3-2330M CPU @ 2.20GHz
- Intel(R) Core(TM) i3-2330M CPU @ 2.20GHz
+ Sound, video and game controllers
- IDT High Definition Audio CODEC (driver 6.10.6365.0)
- Intel(R) Display Audio (driver 6.14.0.3074)
+ Storage volume shadow copies
- Generic volume shadow copy
- Generic volume shadow copy
+ System devices
- ACPI Fixed Feature Button
- ACPI Lid
- ACPI Power Button
- ACPI Thermal Zone
- Composite Bus Enumerator
- Direct memory access controller
- File as Volume Driver

- High Definition Audio Controller


- High precision event timer
- Intel(R) 82802 Firmware Hub Device
- Intel(R) Management Engine Interface (driver 7.0.0.1144)
- Microsoft ACPI-Compliant Embedded Controller
- Microsoft ACPI-Compliant System
- Microsoft System Management BIOS Driver
- Microsoft Virtual Drive Enumerator Driver
- Microsoft Windows Management Interface for ACPI
- Motherboard resources
- Motherboard resources
- Motherboard resources
- Numeric data processor
- PCI bus
- PCI standard host CPU bridge
- PCI standard ISA bridge
- PCI standard PCI-to-PCI bridge
- PCI standard PCI-to-PCI bridge
- PCI standard PCI-to-PCI bridge
- PCI standard PCI-to-PCI bridge
- Plug and Play Software Device Enumerator
- Programmable interrupt controller
- Remote Desktop Device Redirector Bus
- System board
- System CMOS/real time clock
- System timer
- Terminal Server Keyboard Driver
- Terminal Server Mouse Driver
- UMBus Root Bus Enumerator
- Volume Manager
+ Universal Serial Bus controllers
- Generic USB Hub
- Generic USB Hub
- Standard Enhanced PCI to USB Host Controller
- Standard Enhanced PCI to USB Host Controller
- USB Composite Device
- USB Composite Device
- USB Root Hub
- USB Root Hub
disassembling:
[...]
0042ceb5
call
-$2ad76 ($402144)
; Controls.TControl.SetCursor (Boo
stSpeed.exe)
0042ceb5
0042ceba 250 mov
dword ptr [ebx+$280], 1
0042cec4 251 mov
dl, 1
0042cec6
mov
eax, [ebx+$27c]
0042cecc
> call
-$2a9b5 ($40251c)
; ExtCtrls.TTimer.SetEnabled (Boos
tSpeed.exe)
0042cecc
0042ced1
loc_42ced1:
0042ced1 253 pop
ebx
0042ced2
ret

You might also like