Subject: Re: Fatal Thread From NSD
############################################################### FATAL THREAD 12/20 [ NLNOTES: 1128: 15f4]
FP=0x0965fa84, PC=0x606fc3e2, SP=0x0965f770
stkbase=09660000, total stksize=262144, used stksize=2192
EAX=0x00000000, EBX=0x0845f818, ECX=0x60d3a83e, EDX=0x0845fb7a
ESI=0x00000001, EDI=0x09d92c9c, CS=0x00000023, SS=0x0000002b
DS=0x0000002b, ES=0x0000002b, FS=0x00000053, GS=0x0000002b Flags=0x00010202
Exception code: c0000005 (ACCESS_VIOLATION)
############################################################
@[ 1] 0x606fc3e2 nnotes.CManageDIP::DoPerson+306 (9d92c9c,845f818,965fabc,606ff9b4)
@[ 2] 0x606fe458 nnotes.CManageDIP::DoPeople+56 (9d92caa,0,0,845f818)
@[ 3] 0x606ff9b4 nnotes.CManageDIP::FormatUserItems+244 (965fad8,0,845f818,72fb018)
@[ 4] 0x606ffe40 nnotes.CManageDIP::GetUsers+80 (72fb018,0,635533ba,692ee8)
@[ 5] 0x606ffebe nnotes.CManageDIP::ProcessData+78 (845f818,0,0,0)
@[ 6] 0x600fe5af nnotes.ThreadWrapper@4+175 (0)
[ 7] 0x76cde4a5 kernel32.BaseThreadInitThunk+14 (0)
[ 8] 0x7733cfed ntdll.RtlCreateUserProcess+140 (600fe500)
[ 9] 0x7733d1ff ntdll.RtlCreateProcessParameters+78 (600fe500)
############################################################
PASS 2 : FATAL THREAD with STACK FRAMES 12/20 [ NLNOTES: 1128: 15f4]
FP=0965fa84, PC=606fc3e2, SP=0965f770
stkbase=09660000, total stksize=262144, used stksize=2192
Exception code: c0000005 (ACCESS_VIOLATION)
############################################################
Disassembly of c. 10 instructions before and after faulting address 606fc3e2:
606fc3bd 8b7d08 mov edi,[ebp+0x8] ss:0c86a59a=e2ecffdd
606fc3c0 683ca8d360 push 0x60d3a83c
606fc3c5 57 push edi
606fc3c6 e8855f92ff call 60022350
606fc3cb 85c0 test eax,eax
606fc3cd 7461 jz 606fc430
606fc3cf be01000000 mov esi,0x1
606fc3d4 8d9362030000 lea edx,[ebx+0x362] ds:0845fb7a=00000000
606fc3da 8d9b00000000 lea ebx,[ebx] ds:0845f818=00000000
606fc3e0 8b02 mov eax,[edx] ds:0845fb7a=00000000
FAULT ->606fc3e2 8b4004 mov eax,[eax+0x4] ds:0320ab16=00000000
606fc3e5 85c0 test eax,eax
606fc3e7 740b jz 606fc3f4
606fc3e9 8a08 mov cl,[eax] ds:00000000=??
606fc3eb 84c9 test cl,cl
606fc3ed 7405 jz 606fc3f4
606fc3ef 80f92e cmp cl,0x2e
606fc3f2 7524 jnz 606fc418
606fc3f4 83c601 add esi,0x1
606fc3f7 83c204 add edx,0x4
606fc3fa 83fe02 cmp esi,0x2
606fc3fd 7ee1 jle 606fc4e0
@[ 1] 0x606fc3e2 nnotes.CManageDIP::DoPerson+306 (9d92c9c)
0965fa84 94FA6509 58E46F60 9C2CD909 18F84508 | ..e. X.o` .,.. ..E. |
@[ 2] 0x606fe458 nnotes.CManageDIP::DoPeople+56 (9d92caa)
0965fa94 BCFA6509 B4F96F60 AA2CD909 00000000 | ..e. ..o` .,.. .... |
0965faa4 00000000 18F84508 00000000 688810F0 | .... ..E. .... h... |
0965fab4 22FB4508 9C2CD909 | ".E. .,.. |
@[ 3] 0x606ff9b4 nnotes.CManageDIP::FormatUserItems+244 (965fad8)
0965fabc DCFA6509 40FE6F60 D8FA6509 00000000 | ..e. @.o` ..e. .... |
0965facc 18F84508 18B02F07 560C0000 21040000 | ..E. ../. V... !... |
@[ 4] 0x606ffe40 nnotes.CManageDIP::GetUsers+80 (72fb018)
0965fadc 64FF6509 BEFE6F60 18B02F07 00000000 | d.e. ..o` ../. .... |
0965faec BA335563 E82E6900 EE576900 03000000 | .3Uc ..i. .Wi. .... |
0965fafc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fb0c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fb1c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fb2c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fb3c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fb4c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fb5c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fb6c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fb7c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fb8c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fb9c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fbac 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fbbc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fbcc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fbdc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fbec 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fbfc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fc0c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fc1c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fc2c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fc3c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fc4c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fc5c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fc6c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fc7c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fc8c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fc9c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fcac 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fcbc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fccc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fcdc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fcec 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fcfc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fd0c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fd1c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fd2c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fd3c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fd4c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fd5c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fd6c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fd7c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fd8c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fd9c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fdac 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fdbc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fdcc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fddc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fdec 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fdfc 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fe0c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fe1c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fe2c 00000000 28110000 30C10000 00000000 | .... (... 0... .... |
0965fe3c 00000B7B 10F0FFFF 00004878 00000000 | ...{ .... ..Hx .... |
0965fe4c 09610000 00000000 00000000 00000000 | .a.. .... .... .... |
0965fe5c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fe6c 2C7A3962 E0E03100 6CFE6509 01000000 | ,z9b ..1. l.e. .... |
0965fe7c 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965fe8c E0E03100 00000000 01000000 01000000 | ..1. .... .... .... |
0965fe9c 2C7A3962 78E23100 9CFE6509 03000000 | ,z9b x.1. ..e. .... |
0965feac 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965febc 78E23100 00000000 01000000 01000000 | x.1. .... .... .... |
0965fecc 2C7A3962 C0F43000 9CFE6509 E8FE6509 | ,z9b ..0. ..e. ..e. |
0965fedc 00000000 07000000 2C7A3962 C0143100 | .... .... ,z9b ..1. |
0965feec 6CFE6509 58053A03 00000000 07000000 | l.e. X.:. .... .... |
0965fefc 2C7A3962 50153100 6CFE6509 04586900 | ,z9b P.1. l.e. .Xi. |
0965ff0c 00000000 07000000 2C7A3962 50F53000 | .... .... ,z9b P.0. |
0965ff1c 9CFE6509 EE576900 00000000 07000000 | ..e. .Wi. .... .... |
0965ff2c E0FCB163 00000000 24BE8707 00000000 | ...c .... $... .... |
0965ff3c 00000860 44000000 4D000000 068810F0 | ...` D... M... .... |
0965ff4c 067B10F0 7887D000 9885D000 C4FF6509 | .{.. x... .... ..e. |
0965ff5c C489AF63 FFFFFFFF | ...c .... |
@[ 5] 0x606ffebe nnotes.CManageDIP::ProcessData+78 (845f818)
0965ff64 88FF6509 AFE50F60 18F84508 00000000 | ..e. ...` ..E. .... |
0965ff74 00000000 00000000 00000000 90315563 | .... .... .... .1Uc |
0965ff84 00000000 | .... |
@[ 6] 0x600fe5af nnotes.ThreadWrapper@4+175 (0)
0965ff88 94FF6509 A5E4CD76 00000000 | ..e. ...v .... |
[ 7] 0x76cde4a5 kernel32.BaseThreadInitThunk+14 (0)
0965ff94 D4FF6509 EDCF3377 00000000 033E5D7E | ..e. ..3w .... .>]~ |
0965ffa4 00000000 00000000 00000000 050000C0 | .... .... .... .... |
0965ffb4 ABC4CE76 ABC4CE76 A0FF6509 54F36509 | ...v ...v ..e. T.e. |
0965ffc4 FFFFFFFF 26293777 EF1B1600 00000000 | .... &)7w .... .... |
[ 8] 0x7733cfed ntdll.RtlCreateUserProcess+140 (600fe500)
0965ffd4 ECFF6509 FFD13377 00E50F60 00000000 | ..e. ..3w ...` .... |
0965ffe4 00000000 00000000 | .... .... |
[ 9] 0x7733d1ff ntdll.RtlCreateProcessParameters+78 (600fe500)
---------- Dump of stack from SP to FP ----------
0965f770 00000000 18F84508 5AFB4508 6167726F | .... ..E. Z.E. agro |
0965f780 6E652F4F 553D562D 5553412F 4F3D564B | ne/O U=V- USA/ O=VK |
0965f790 49000000 00000000 00000000 00000000 | I... .... .... .... |
0965f7a0 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f7b0 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f7c0 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f7d0 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f7e0 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f7f0 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f800 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f810 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f820 00000000 52003A03 B0B2ED60 4C703962 | .... R.:. ...` Lp9b |
0965f830 98F96509 00010000 00000000 C0673100 | ..e. .... .... .g1. |
0965f840 01000000 A8F86509 23470160 B0B2ED60 | .... ..e. #G.` ...` |
0965f850 54ACD360 BCF96509 DC050000 3BC43F03 | T..` ..e. .... ;.?. |
0965f860 F4150000 9F120060 A4140060 F00D8A04 | .... ...` ...` .... |
0965f870 74C44303 36000000 9F120060 F00D8A04 | t.C. 6... ...` .... |
0965f880 00000000 C80D8A04 98F86509 FE110060 | .... .... ..e. ...` |
0965f890 F00D8A04 A4140060 F00D8A04 00000000 | .... ...` .... .... |
0965f8a0 BCFA6509 F00D8A04 01000000 C4F86509 | ..e. .... .... ..e. |
0965f8b0 7D7F1760 ED0D8A04 BCFA6509 00000000 | }..` .... ..e. .... |
0965f8c0 21290000 DCF86509 96290060 21290000 | !).. ..e. .).` !).. |
0965f8d0 FCF86509 00000000 E4F86509 E31A0060 | ..e. .... ..e. ...` |
0965f8e0 F00D8A04 F4150000 3BC43F03 28110000 | .... .... ;.?. (... |
0965f8f0 0CF96509 D9380060 3BC43F03 28110000 | ..e. .8.` ;.?. (... |
0965f900 F4150000 1CF96509 A4140060 90005A0A | .... ..e. ...` ..Z. |
0965f910 74705B0A 680C0000 8E005A0A 8E00D909 | tp[. h... ..Z. .... |
0965f920 00000000 1EFA4508 00000000 00000000 | .... ..E. .... .... |
0965f930 40F96509 FE110060 90005A0A 01000000 | @.e. ...` ..Z. .... |
0965f940 58F96509 27170060 90005A0A 8F5EF360 | X.e. '..` ..Z. .^.` |
0965f950 1B000000 90005A0A 84F96509 2C1F0060 | .... ..Z. ..e. ,..` |
0965f960 CC005A0A 2E00FA60 1C000000 C4C8D202 | ..Z. ...` .... .... |
0965f970 84F96509 53821A60 905EF360 2E00FA60 | ..e. S..` .^.` ...` |
0965f980 1C000000 34FA6509 FA260060 E85DF360 | .... 4.e. .&.` .].` |
0965f990 5C0C0000 18000000 D0CBAF0A 5C0C0000 | \... .... .... \... |
0965f9a0 E85DF360 E85DF360 00000000 00000000 | .].` .].` .... .... |
0965f9b0 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f9c0 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f9d0 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f9e0 00000000 00000000 00000000 00000000 | .... .... .... .... |
0965f9f0 A92CD909 01000000 00000000 00000000 | .,.. .... .... .... |
0965fa00 01000000 00000000 03000000 A92CD909 | .... .... .... .,.. |
0965fa10 00000000 3B000000 34FA6509 5C2F4D62 | .... ;... 4.e. \/Mb |
0965fa20 64FA6509 01000000 9C3AC860 1300BC02 | d.e. .... .:.` .... |
0965fa30 1C6CBC02 68FA6509 288A0160 64FA6509 | .l.. h.e. (..` d.e. |
0965fa40 01000000 9C3AC860 01000000 1C6CBC02 | .... .:.` .... .l.. |
0965fa50 00000000 5AFB4508 18F84508 9C2CD909 | .... Z.E. ..E. .,.. |
0965fa60 9D3AC860 A92CD909 80FA6509 B6E50160 | .:.` .,.. ..e. ...` |
0965fa70 9CFA6509 9C3AC860 8EFA6509 00000000 | ..e. .:.` ..e. .... |
0965fa80 9C2CD909 | .,.. |
############################################################
PASS 3 : FATAL THREAD with PARAMETER DATA 12/20 [ NLNOTES: 1128: 15f4]
############################################################
@[ 1] 0x606fc3e2 nnotes.CManageDIP::DoPerson+306 (9d92c9c)
Parameter 1:
09d92c9c 3C506F73 746D6173 74657240 3E000000 | <Pos tmas ter@ >... |
09d92cac E8170000 00000000 00000000 00000000 | .... .... .... .... |
@[ 2] 0x606fe458 nnotes.CManageDIP::DoPeople+56 (9d92caa)
Parameter 1:
09d92caa 0000 | .. |
09d92cac E8170000 00000000 00000000 00000000 | .... .... .... .... |
09d92cbc 00000000 00000000 00000000 0000 | .... .... .... .. |
@[ 3] 0x606ff9b4 nnotes.CManageDIP::FormatUserItems+244 (965fad8)
Parameter 1:
0965fad8 21040000 64FF6509 BEFE6F60 18B02F07 | !... d.e. ..o` ../. |
0965fae8 00000000 BA335563 E82E6900 EE576900 | .... .3Uc ..i. .Wi. |
@[ 4] 0x606ffe40 nnotes.CManageDIP::GetUsers+80 (72fb018)
Parameter 1:
072fb018 4E6F7465 733A2F2F 2F383532 35363438 | Note s:// /852 5648 |
072fb028 39303037 32323130 432F2F46 46384544 | 9007 2210 C//F F8ED |
072fb038 34303333 34363435 37413038 35323536 | 4033 4645 7A08 5256 |
072fb048 39434630 30353935 43303000 D20B2200 | 9CF0 0595 C00. ..". |
@[ 5] 0x606ffebe nnotes.CManageDIP::ProcessData+78 (845f818)
Parameter 1:
0845f818 00000000 00000000 00000000 00000000 | .... .... .... .... |
0845f828 00000000 00000000 00000000 00000000 | .... .... .... .... |
@[ 6] 0x600fe5af nnotes.ThreadWrapper@4+175 (0)
[ 7] 0x76cde4a5 kernel32.BaseThreadInitThunk+14 (0)
[ 8] 0x7733cfed ntdll.RtlCreateUserProcess+140 (600fe500)
Parameter 1:
600fe500 558BEC83 EC0C5356 57E842B2 FDFF6828 | U... ..SV W.B. ..h( |
600fe510 8100006A 008BD8E8 D457F0FF 8BF88DB7 | ...j .... .W.. .... |
[ 9] 0x7733d1ff ntdll.RtlCreateProcessParameters+78 (600fe500)
Parameter 1:
600fe500 558BEC83 EC0C5356 57E842B2 FDFF6828 | U... ..SV W.B. ..h( |
600fe510 8100006A 008BD8E8 D457F0FF 8BF88DB7 | ...j .... .W.. .... |