EurekaLog 7.0.4.0
Application:
-------------------------------------------------------------------
1.1 Start Date : Thu, 1 Mar 2018 08:00:23 +0300
1.2 Name/Description: onlineradioplayer.exe - (OnlineRadioPlayer)
1.3 Version Number : 3.5.0.93
1.4 Parameters :
1.5 Compilation Date: Fri, 30 Sep 2016 17:18:10 +0300
1.6 Up Time : 7 hour(s), 55 minute(s), 13 second(s)
Exception:
---------------------------------------------------------
2.1 Date : Thu, 1 Mar 2018 15:55:37 +0300
2.2 Address : 77C5F918
2.3 Module Name :
2.4 Module Version:
2.5 Type : EFrozenApplication
2.6 Message : The application seems to be frozen.
2.7 ID : 0E0C0000
2.8 Count : 1
2.9 Status : New
2.10 Note :
2.11 Sent : 0
User:
-------------------------------------------------------
3.1 ID : Сергей
3.2 Name :
3.3 Email :
3.5 Privileges: SeIncreaseQuotaPrivilege - OFF
SeSecurityPrivilege - OFF
SeTakeOwnershipPrivilege - OFF
SeLoadDriverPrivilege - OFF
SeSystemProfilePrivilege - OFF
SeSystemtimePrivilege - OFF
SeProfileSingleProcessPrivilege - OFF
SeIncreaseBasePriorityPrivilege - OFF
SeCreatePagefilePrivilege - OFF
SeBackupPrivilege - OFF
SeRestorePrivilege - OFF
SeShutdownPrivilege - OFF
SeDebugPrivilege - OFF
SeSystemEnvironmentPrivilege - OFF
SeChangeNotifyPrivilege - ON
SeRemoteShutdownPrivilege - OFF
SeUndockPrivilege - OFF
SeManageVolumePrivilege - OFF
SeImpersonatePrivilege - ON
SeCreateGlobalPrivilege - ON
SeIncreaseWorkingSetPrivilege - OFF
SeTimeZonePrivilege - OFF
SeCreateSymbolicLinkPrivilege - OFF
Active Controls:
-----------------------------------------------------------------------------------------------------------------------------
4.1 Form Class : Chrome_WidgetWin_1
4.2 Form Text : На семинаре в райисполкоме обсудили Декрет №7 — Новости Солигорска-Солигорский телеканал - Google Chrome
4.3 Control Class:
4.4 Control Text :
Computer:
-----------------------------------------------------------
5.2 Total Memory : 4187168768
5.3 Free Memory : 1119195136
5.4 Total Disk : 53694595072
5.5 Free Disk : 21044822016
5.6 System Up Time: 7 hour(s), 57 minute(s), 10 second(s)
Operating System:
--------------------------------------------
6.1 Type : Microsoft Windows 7 (64 bit)
6.2 Build # : 7601
6.3 Update : Service pack 1
6.4 Language: Russian
6.5 Charset : 204
Steps to reproduce:
------------
8.1 Text:
Call Stack Information:
-------------------------------------------------------------------------------------------------------------------------------------------------------------------
|Methods |Details|Stack |Address |Module |Offset |Unit |Class |Procedure/Method |Line |
-------------------------------------------------------------------------------------------------------------------------------------------------------------------
|*Exception Thread: ID=4272; Parent=0; Priority=0 |
|Class=; Name=MAIN |
|DeadLock=0; Wait Chain=thread: [ 10B0 / 4272 ] is blocked |
|Comment= |
|-----------------------------------------------------------------------------------------------------------------------------------------------------------------|
|7FFFFFFE|03 |00000000|77C5F91D|ntdll.dll |0001F91D|ntdll | |ZwWriteFile | |
|00000020|03 |0018FA0C|75AD12C7|kernel32.dll |000112C7|kernel32 | |WriteFile | |
|00000020|04 |0018FA28|00438620|onlineradioplayer.exe|00038620|SysUtils | |FileWrite |7110[2] |
|00000020|04 |0018FA50|00464077|onlineradioplayer.exe|00064077|Classes |THandleStream |Write |6472[0] |
|00000020|04 |0018FA54|004639BE|onlineradioplayer.exe|000639BE|Classes |TStream |WriteBuffer |6271[3] |
|00000020|04 |0018FA6C|0046434B|onlineradioplayer.exe|0006434B|Classes |TCustomMemoryStream|SaveToStream |6579[1] |
|00000020|04 |0018FA74|00464384|onlineradioplayer.exe|00064384|Classes |TCustomMemoryStream|SaveToFile |6588[3] |
|00000020|04 |0018FA90|007E4254|onlineradioplayer.exe|003E4254|TRadioStreamUnit |TRadioStream |Save |101[10] |
|00000020|04 |0018FAB0|007E4695|onlineradioplayer.exe|003E4695|TRadioStreamUnit |TRadioStream |SaveStream |187[21] |
|00000020|04 |0018FB0C|007F6361|onlineradioplayer.exe|003F6361|TRadioStreamThreadUnit|TRadioStreamThread |SaveStream |447[4] |
|00000020|04 |0018FB1C|007F6433|onlineradioplayer.exe|003F6433|TRadioStreamThreadUnit|TRadioStreamThread |SetRecordingType |497[31] |
|00000020|04 |0018FB28|007F0A1F|onlineradioplayer.exe|003F0A1F|TRadiocentMainFormUnit|TRadiocentMainForm |RecordButtonClick |977[10] |
|00000020|04 |0018FB30|0068606E|onlineradioplayer.exe|0028606E|bsSkinCtrls |TbsSkinButton |ButtonClick |5108[18] |
|00000020|04 |0018FB4C|005948A4|onlineradioplayer.exe|001948A4|Controls |TControl |DoMouseUp |7318[2] |
|00000020|03 |0018FC8C|76E42ABC|USER32.dll |00022ABC|USER32 | |GetCapture | |
|00000020|04 |0018FC94|0059805B|onlineradioplayer.exe|0019805B|Controls |TWinControl |IsControlMouseMsg |9608[1] |
|00000020|04 |0018FCC0|005987C8|onlineradioplayer.exe|001987C8|Controls |TWinControl |WndProc |9831[144] |
|00000020|04 |0018FD0C|0068646B|onlineradioplayer.exe|0028646B|bsSkinCtrls |TbsSkinButton |WndProc |5237[35] |
|00000020|04 |0018FD1C|00597E68|onlineradioplayer.exe|00197E68|Controls |TWinControl |MainWndProc |9552[3] |
|00000020|04 |0018FD4C|0046DBF4|onlineradioplayer.exe|0006DBF4|Classes | |StdWndProc |13491[8] |
|00000020|03 |0018FD90|76E36D35|USER32.dll |00016D35|USER32 | |(possible GetThreadDesktop+210) | |
|00000020|03 |0018FE08|76E377BF|USER32.dll |000177BF|USER32 | |(possible CharPrevW+307) | |
|00000020|03 |0018FE68|76E37885|USER32.dll |00017885|USER32 | |DispatchMessageW | |
|00000020|04 |0018FE78|005F5517|onlineradioplayer.exe|001F5517|Forms |TApplication |ProcessMessage |9760[23] |
|00000020|04 |0018FE94|005F555A|onlineradioplayer.exe|001F555A|Forms |TApplication |HandleMessage |9790[1] |
|00000020|04 |0018FEB8|005F5885|onlineradioplayer.exe|001F5885|Forms |TApplication |Run |9927[26] |
|00000020|04 |0018FEE8|00807A08|onlineradioplayer.exe|00407A08|Radiocent_ru | |Initialization |218[120] |
|00000020|03 |0018FFD8|77C79EC0|ntdll.dll |00039EC0|ntdll | |(possible RtlInitializeExceptionChain+49)| |
-------------------------------------------------------------------------------------------------------------------------------------------------------------------
Modules Information:
--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
|Handle |Name |Description |Version |Size |Modified |Path |
--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
|00400000|onlineradioplayer.exe|OnlineRadioPlayer |3.5.0.93 |6903528 |2016-09-30 18:00:48|C:\Program Files (x86)\OnlineRadioPlayer\ |
|00CE0000|bass_fx.dll |BASS_FX |2.4.8.0 |29784 |2012-07-31 11:24:56|C:\Program Files (x86)\OnlineRadioPlayer\ |
|067F0000|bass_aac.dll |Advanced Audio Coding and MPEG-4 add-on for the BASS library |2.4.3.0 |151768 |2011-05-24 13:33:22|C:\Program Files (x86)\OnlineRadioPlayer\ |
|10000000|RocketDock.dll | | |69632 |2007-09-02 12:57:36|D:\PROGRAMS\RocketDock\ |
|10100000|basswma.dll |BASSWMA |2.4.4.0 |17472 |2010-09-17 12:28:26|C:\Program Files (x86)\OnlineRadioPlayer\ |
|10300000|bassenc.dll |BASSenc |2.4.9.1 |16448 |2012-03-24 15:13:42|C:\Program Files (x86)\OnlineRadioPlayer\ |
|11000000|bass.dll |BASS |2.4.8.1 |105016 |2011-09-06 12:47:40|C:\Program Files (x86)\OnlineRadioPlayer\ |
|4DAE0000|midas.dll |Borland MIDAS Component Package |6.0.10.157 |293888 |2002-02-01 19:00:00|C:\Windows\SysWOW64\ |
|6BC40000|msacm32.dll |Фильтр диспетчера аудиосжатия Microsoft |6.1.7600.16385 |72192 |2009-07-14 04:15:42|C:\Windows\System32\ |
|6C190000|AudioSes.dll |Сеанс обработки звука |6.1.7601.17514 |195584 |2010-11-21 06:23:55|C:\Windows\System32\ |
|6C1D0000|MMDevAPI.dll |MMDevice API |6.1.7601.17514 |213504 |2010-11-21 06:23:51|C:\Windows\System32\ |
|6CD90000|bcryptprimitives.dll |Windows Cryptographic Primitives Library |6.1.7600.16385 |249680 |2009-07-14 04:17:54|C:\Windows\SysWOW64\ |
|6D2C0000|bcrypt.dll |Windows Cryptographic Primitives Library (Wow64) |6.1.7600.16385 |80896 |2009-07-14 04:11:20|C:\Windows\System32\ |
|6D2E0000|ncrypt.dll |Криптографическая библиотека (Windows) |6.1.7601.17940 |220160 |2012-12-22 18:04:17|C:\Windows\System32\ |
|6D690000|schannel.dll |TLS / SSL Security Provider |6.1.7601.17940 |247808 |2012-12-22 18:04:17|C:\Windows\SysWOW64\ |
|705A0000|credssp.dll |Credential Delegation Security Package |6.1.7601.17514 |17408 |2010-11-21 06:24:33|C:\Windows\System32\ |
|705B0000|gpapi.dll |Клиентские функции API групповой политики |6.1.7600.16385 |79872 |2009-07-14 04:15:22|C:\Windows\System32\ |
|705D0000|riched20.dll |Rich Text Edit Control, v3.1 |5.31.23.1230 |473600 |2010-11-21 06:24:28|C:\Windows\System32\ |
|706D0000|msimg32.dll |GDIEXT Client DLL |6.1.7600.16385 |4608 |2009-07-14 04:15:44|C:\Windows\System32\ |
|708B0000|FWPUCLNT.DLL |API пользовательского режима FWP/IPsec |6.1.7601.17514 |216576 |2010-11-21 06:24:08|C:\Windows\System32\ |
|708F0000|rasadhlp.dll |Remote Access AutoDial Helper |6.1.7600.16385 |11776 |2009-07-14 04:16:12|C:\Windows\System32\ |
|70900000|uxtheme.dll |Библиотека тем UxTheme (Microsoft) |6.1.7600.16385 |245760 |2009-07-14 04:11:24|C:\Windows\System32\ |
|70D50000|WSHTCPIP.DLL |Библиотека DLL помощника службы Winsock2 (TL/IPv4) |6.1.7600.16385 |9216 |2009-07-14 04:16:20|C:\Windows\System32\ |
|70D70000|mswsock.dll |Расширение поставщика службы API Microsoft Windows Sockets 2.0|6.1.7601.17514 |232448 |2010-11-21 06:24:09|C:\Windows\System32\ |
|70DE0000|nlaapi.dll |Network Location Awareness 2 |6.1.7601.17761 |52224 |2012-12-22 18:27:38|C:\Windows\System32\ |
|70E20000|wship6.dll |Библиотека DLL помощника Winsock2 (TL/IPv6) |6.1.7600.16385 |10752 |2009-07-14 04:16:20|C:\Windows\System32\ |
|70E30000|winmm.dll |MCI API DLL |6.1.7601.17514 |194048 |2010-11-21 06:24:16|C:\Windows\System32\ |
|70E70000|dsound.dll |DirectSound |6.1.7600.16385 |453632 |2009-07-14 04:15:13|C:\Windows\System32\ |
|70EF0000|secur32.dll |Security Support Provider Interface |6.1.7601.17940 |22016 |2012-12-22 18:04:17|C:\Windows\System32\ |
|710E0000|rtutils.dll |Routing Utilities |6.1.7601.17514 |37376 |2010-11-21 06:24:01|C:\Windows\System32\ |
|710F0000|rasman.dll |Remote Access Connection Manager |6.1.7600.16385 |76800 |2009-07-14 04:16:12|C:\Windows\System32\ |
|71110000|rasapi32.dll |Remote Access API |6.1.7600.16385 |325120 |2009-07-14 04:16:12|C:\Windows\System32\ |
|71170000|ntmarta.dll |Поставщик Windows NT MARTA |6.1.7600.16385 |121856 |2009-07-14 04:16:11|C:\Windows\System32\ |
|71220000|comctl32.dll |Библиотека элементов управления взаимодействия с пользователем|6.10.7601.17514 |1680896 |2010-11-21 06:23:55|C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\|
|71E00000|powrprof.dll |DLL модуля поддержки профиля управления питанием |6.1.7600.16385 |145408 |2009-07-14 04:16:12|C:\Windows\System32\ |
|727C0000|SensApi.dll |SENS Connectivity API DLL |6.1.7600.16385 |10752 |2009-07-14 04:16:13|C:\Windows\System32\ |
|72EA0000|profapi.dll |User Profile Basic API |6.1.7600.16385 |31744 |2009-07-14 04:16:12|C:\Windows\System32\ |
|72EB0000|userenv.dll |Userenv |6.1.7601.17514 |81920 |2010-11-21 06:24:16|C:\Windows\System32\ |
|73260000|rsaenh.dll |Microsoft Enhanced Cryptographic Provider |6.1.7600.16385 |242936 |2009-07-14 04:17:54|C:\Windows\System32\ |
|732A0000|cryptsp.dll |Cryptographic Service Provider API |6.1.7600.16385 |78848 |2009-07-14 04:15:07|C:\Windows\System32\ |
|73480000|aswhookx.dll |Hook Library |18.1.3.23126 |199936 |2018-02-19 08:03:27|C:\Program Files\AVAST Software\Avast\ |
|74070000|avrt.dll |Multimedia Realtime Runtime |6.1.7600.16385 |14336 |2009-07-14 04:14:58|C:\Windows\System32\ |
|74400000|dwmapi.dll |Интерфейс API диспетчера окон рабочего стола (Майкрософт) |6.1.7600.16385 |67072 |2009-07-14 04:15:13|C:\Windows\System32\ |
|74430000|winspool.drv |Драйвер диспетчера очереди Windows |6.1.7601.17514 |320000 |2010-11-21 06:24:08|C:\Windows\System32\ |
|74520000|propsys.dll |Система страниц свойств (Microsoft) |7.0.7601.17514 |988160 |2010-11-21 06:24:08|C:\Windows\System32\ |
|74700000|dbghelp.dll |Windows Image Helper |6.1.7601.17514 |854016 |2010-11-21 06:24:09|C:\Windows\SysWOW64\ |
|74C50000|version.dll |Version Checking and File Installation Libraries |6.1.7601.17647 |21504 |2012-12-22 18:04:44|C:\Windows\System32\ |
|74F00000|dnsapi.dll |Динамическая библиотека API DNS-клиента |6.1.7601.17570 |270336 |2012-12-22 17:57:01|C:\Windows\System32\ |
|74F70000|webio.dll |API протоколов передачи по Веб |6.1.7601.17725 |314880 |2012-12-22 18:05:50|C:\Windows\System32\ |
|74FC0000|winhttp.dll |Службы HTTP Windows |6.1.7601.17514 |351232 |2010-11-21 06:24:08|C:\Windows\System32\ |
|75020000|winnsi.dll |Network Store Information RPC interface |6.1.7600.16385 |16896 |2009-07-14 04:16:19|C:\Windows\System32\ |
|75030000|IPHLPAPI.DLL |IP Helper API |6.1.7601.17514 |103936 |2010-11-21 06:24:32|C:\Windows\System32\ |
|75790000|CRYPTBASE.dll |Base cryptographic API DLL |6.1.7600.16385 |36864 |2009-07-14 04:15:07|C:\Windows\SysWOW64\ |
|757A0000|sspicli.dll |Security Support Provider Interface |6.1.7601.17940 |96768 |2012-12-22 18:04:17|C:\Windows\SysWOW64\ |
|75800000|msctf.dll |Серверная библиотека MSCTF |6.1.7600.16385 |828928 |2009-07-14 04:15:43|C:\Windows\SysWOW64\ |
|758D0000|nsi.dll |NSI User-mode interface DLL |6.1.7600.16385 |8704 |2009-07-14 04:16:11|C:\Windows\SysWOW64\ |
|758E0000|advapi32.dll |Расширенная библиотека API Windows 32 |6.1.7601.17514 |640512 |2010-11-21 06:24:28|C:\Windows\SysWOW64\ |
|75980000|gdi32.dll |GDI Client DLL |6.1.7601.17514 |311296 |2010-11-21 06:24:14|C:\Windows\SysWOW64\ |
|75A10000|shlwapi.dll |Библиотека небольших программ оболочки |6.1.7601.17514 |350208 |2010-11-21 06:23:48|C:\Windows\SysWOW64\ |
|75A70000|KERNELBASE.dll |Библиотека клиента Windows NT BASE API |6.1.7601.17965 |274944 |2012-12-22 18:30:52|C:\Windows\SysWOW64\ |
|75AC0000|kernel32.dll |Библиотека клиента Windows NT BASE API |6.1.7601.17965 |1114112 |2012-12-22 18:30:52|C:\Windows\SysWOW64\ |
|75BD0000|shell32.dll |Общая библиотека оболочки Windows |6.1.7601.17859 |12873728|2012-12-22 18:18:36|C:\Windows\SysWOW64\ |
|768A0000|psapi.dll |Process Status Helper |6.1.7600.16385 |6144 |2009-07-14 04:16:12|C:\Windows\SysWOW64\ |
|768B0000|sechost.dll |Host for SCM/SDDL/LSA Lookup APIs |6.1.7600.16385 |92160 |2009-07-14 04:16:13|C:\Windows\SysWOW64\ |
|768D0000|clbcatq.dll |COM+ Configuration Catalog |2001.12.8530.16385|522240 |2009-07-14 04:15:03|C:\Windows\SysWOW64\ |
|76960000|msasn1.dll |ASN.1 Runtime APIs |6.1.7601.17514 |34304 |2010-11-21 06:23:48|C:\Windows\SysWOW64\ |
|769D0000|ws2_32.dll |32-разрядная библиотека Windows Socket 2.0 |6.1.7601.17514 |206848 |2010-11-21 06:23:55|C:\Windows\SysWOW64\ |
|76A10000|setupapi.dll |Windows Setup API |6.1.7601.17514 |1667584 |2010-11-21 06:23:51|C:\Windows\SysWOW64\ |
|76BB0000|Wldap32.dll |Win32 LDAP API DLL |6.1.7601.17514 |269824 |2010-11-21 06:24:16|C:\Windows\SysWOW64\ |
|76C00000|ole32.dll |Microsoft OLE для Windows |6.1.7601.17514 |1414144 |2010-11-21 06:24:01|C:\Windows\SysWOW64\ |
|76D60000|oleaut32.dll | |6.1.7601.17676 |571904 |2012-12-22 18:03:01|C:\Windows\SysWOW64\ |
|76E20000|user32.dll |Многопользовательская библиотека клиента USER API Windows |6.1.7601.17514 |833024 |2010-11-21 06:24:20|C:\Windows\SysWOW64\ |
|76F20000|wininet.dll |Расширения Интернета для Win32 |8.0.7601.17514 |980992 |2010-11-21 06:24:08|C:\Windows\SysWOW64\ |
|770B0000|usp10.dll |Uniscribe Unicode script processor |1.626.7601.17946 |626176 |2012-12-22 18:25:57|C:\Windows\SysWOW64\ |
|77150000|imagehlp.dll |Windows NT Image Helper |6.1.7601.17787 |159232 |2012-12-22 18:12:42|C:\Windows\SysWOW64\ |
|77180000|imm32.dll |Multi-User Windows IMM32 API Client DLL |6.1.7601.17514 |119808 |2010-11-21 06:24:25|C:\Windows\System32\ |
|771E0000|devobj.dll |Device Information Set DLL |6.1.7601.17621 |64512 |2012-12-22 18:01:54|C:\Windows\SysWOW64\ |
|77200000|urlmon.dll |Расширения OLE32 для Win32 |8.0.7601.17514 |1229824 |2010-11-21 06:24:16|C:\Windows\SysWOW64\ |
|77340000|normaliz.dll |Unicode Normalization DLL |6.1.7600.16385 |2048 |2009-07-14 04:09:00|C:\Windows\SysWOW64\ |
|77350000|iertutil.dll |Run time utility for Internet Explorer |8.0.7601.17514 |2064384 |2010-11-21 06:24:03|C:\Windows\SysWOW64\ |
|77550000|rpcrt4.dll |Библиотека удаленного вызова процедур |6.1.7601.17514 |663040 |2010-11-21 06:24:11|C:\Windows\SysWOW64\ |
|77640000|crypt32.dll |API32 криптографии |6.1.7601.17856 |1159680 |2012-12-22 18:15:39|C:\Windows\SysWOW64\ |
|77760000|cfgmgr32.dll |Configuration Manager DLL |6.1.7601.17621 |145920 |2012-12-22 18:01:54|C:\Windows\SysWOW64\ |
|77790000|msvcrt.dll |Windows NT CRT DLL |7.0.7601.17744 |690688 |2012-12-22 18:13:04|C:\Windows\SysWOW64\ |
|77C10000|lpk.dll |Language Pack |6.1.7600.16385 |25600 |2009-07-14 04:11:23|C:\Windows\SysWOW64\ |
|77C40000|ntdll.dll |Системная библиотека NT |6.1.7601.17725 |1292080 |2012-12-22 18:11:35|C:\Windows\SysWOW64\ |
--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Processes Information:
----------------------
Assembler Information:
--------------------------------------------------------------------------------
; ntdll.ZwWriteFile (Line=0 - Offset=16)
; --------------------------------------
77C5F918 adc eax, $000000C0 ; ANSI: '...'; UNICODE: '...' ; <-- EXCEPTION
;
; Line=0 - Offset=21
; ------------------
77C5F91D add esp, +$04
;
; Line=0 - Offset=24
; ------------------
77C5F920 ret $24
Registers:
-----------------------------
EAX: ???? EDI: ????
EBX: ???? ESI: ????
ECX: ???? EBP: ????
EDX: ???? ESP: ????
EIP: ???? FLG: ????
EXP: 77C5F918 STK: 042DFC40
Stack: Memory Dump:
------------------ ---------------------------------------------------------------------------
042DFC7C: 0353AC24 77C5F918: 15 C0 00 00 00 83 C4 04 C2 24 00 90 B8 06 00 00 .........$......
042DFC78: 75AA0AF6 77C5F928: 00 B9 1C 00 00 00 8D 54 24 04 64 FF 15 C0 00 00 .......T$.d.....
042DFC74: 00000013 77C5F938: 00 83 C4 04 C2 14 00 90 B8 07 00 00 00 B9 0C 00 ................
042DFC70: 042DFD44 77C5F948: 00 00 8D 54 24 04 64 FF 15 C0 00 00 00 83 C4 04 ...T$.d.........
042DFC6C: 042DFDB4 77C5F958: C2 0C 00 90 B8 08 00 00 00 33 C9 8D 54 24 04 64 .........3..T$.d
042DFC68: 06E6C000 77C5F968: FF 15 C0 00 00 00 83 C4 04 C2 10 00 B8 09 00 00 ................
042DFC64: 000010B0 77C5F978: 00 33 C9 8D 54 24 04 64 FF 15 C0 00 00 00 83 C4 .3..T$.d........
042DFC60: 042DFD44 77C5F988: 04 C2 08 00 B8 0A 00 00 00 33 C9 8D 54 24 04 64 .........3..T$.d
042DFC5C: 005FEF9E 77C5F998: FF 15 C0 00 00 00 83 C4 04 C2 10 00 B8 0B 00 00 ................
042DFC58: 042DFD50 77C5F9A8: 00 B9 07 00 00 00 8D 54 24 04 64 FF 15 C0 00 00 .......T$.d.....
042DFC54: 042DFD44 77C5F9B8: 00 83 C4 04 C2 08 00 90 B8 0C 00 00 00 33 C9 8D .............3..
042DFC50: 005FEF84 77C5F9C8: 54 24 04 64 FF 15 C0 00 00 00 83 C4 04 C2 04 00 T$.d............
042DFC4C: 042DFC58 77C5F9D8: B8 0D 00 00 00 33 C9 8D 54 24 04 64 FF 15 C0 00 .....3..T$.d....
042DFC48: 042DFD44 77C5F9E8: 00 00 83 C4 04 C2 14 00 B8 0E 00 00 00 33 C9 8D .............3..
042DFC44: 005FEF4D 77C5F9F8: 54 24 04 64 FF 15 C0 00 00 00 83 C4 04 C2 14 00 T$.d............
042DFC40: 042DFD44 77C5FA08: B8 0F 00 00 00 33 C9 8D 54 24 04 64 FF 15 C0 00 .....3..T$.d....