Application exception occurred:
App: spoolsv.exe (pid=696)
When: 7/20/2003 @ 23:53:54.757
Exception number: c0000005 (access violation)

*----> System Information <----*
User Name: SYSTEM
Number of Processors: 1
Processor Type: x86 Family 6 Model 7 Stepping 3
Windows 2000 Version: 5.0
Current Build: 2195
Service Pack: 3
Current Type: Uniprocessor Free

*----> Task List <----*
0 Idle.exe
8 System.exe
136 smss.exe
160 csrss.exe
180 winlogon.exe
208 services.exe
220 lsass.exe
396 svchost.exe
460 svchost.exe
496 regsvc.exe
516 MSTask.exe
548 WinMgmt.exe
576 svchost.exe
804 Explorer.exe
944 internat.exe
952 bwprnmon.exe
992 soffice.exe
1012 ntvdm.exe
1172 IEXPLORE.exe
688 locator.exe
1256 mmc.exe
1316 Anti-Trojan.exe
1236 drwtsn32.exe
696 spoolsv.exe
1296 mmc.exe
380 drwtsn32.exe
1128 drwtsn32.exe
0 _Total.exe

(01000000 - 0100D000)
(77F80000 - 77FFB000)
(78000000 - 78046000)
(77E80000 - 77F36000)
(77DB0000 - 77E0D000)
(77D30000 - 77DA1000)
(77F40000 - 77F7C000)
(77E10000 - 77E75000)
(75E60000 - 75E7A000)
(76A90000 - 76AA2000)
(75030000 - 75043000)
(75020000 - 75028000)
(77980000 - 779A4000)
(75050000 - 75058000)
(77340000 - 77353000)
(77520000 - 77525000)
(77320000 - 77337000)
(75150000 - 75160000)
(75170000 - 751BF000)
(77BE0000 - 77BEF000)
(751C0000 - 751C6000)
(77950000 - 7797A000)
(77A50000 - 77B45000)
(779B0000 - 77A4B000)
(773B0000 - 773DE000)
(77380000 - 773A2000)
(77830000 - 7783E000)
(77880000 - 7790D000)
(77C10000 - 77C6E000)
(774E0000 - 77512000)
(774C0000 - 774D1000)
(77530000 - 77552000)
(77B50000 - 77BD9000)
(77C70000 - 77CBA000)
(77360000 - 77379000)
(777F0000 - 777F5000)
(76120000 - 76161000)
(77820000 - 77827000)
(759B0000 - 759B6000)
(76980000 - 7699B000)
(68010000 - 68101000)
(77800000 - 7781E000)
(76620000 - 76630000)
(20000000 - 20007000)
(733E0000 - 733EE000)
(76AB0000 - 76AB7000)
(76A80000 - 76A8D000)
(76A70000 - 76A76000)
(6B460000 - 6B467000)

State Dump for Thread Id 0x47c

eax=00000004 ebx=00000000 ecx=00000000 edx=00000000 esi=00000000
edi=00000034
eip=77f839eb esp=0006fbf0 ebp=0006fc60 iopl=0 nv up ei pl zr
na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000
efl=00000246


function: NtReadFile
77f839e0 b8a1000000 mov eax,0xa1
77f839e5 8d542404 lea edx,[esp+0x4]
ss:00b6d1c3=????????
77f839e9 cd2e int 2e
77f839eb c22400 ret 0x24

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
0006FC60 77DB2252 00000034 0006FD38 00000216 0006FC88 ntdll!NtReadFile
0006FC8C 77DB20F2 00000034 0006FD38 00000216 0006FCC4
advapi32!StartServiceCtrlDispatcherW
0006FD08 77DB1E43 00000034 0006FD38 00000216 000D0258
advapi32!StartServiceCtrlDispatcherW
0006FF68 0100232B 0100B3D0 010022FB 00000001 00233570
advapi32!StartServiceCtrlDispatcherW
0006FFC0 77E9CA90 000D0258 014FF06C 7FFDF000 77DB89D2
spoolsv!YGetPrinterDriverDirectory
0006FFF0 00000000 01002206 00000000 000000C8 00000100
kernel32!CreateProcessW

*----> Raw Stack Dump <----*
0006fbf0 07 7f e8 77 34 00 00 00 - 00 00 00 00 00 00 00 00
....w4...........
0006fc00 00 00 00 00 38 fc 06 00 - 38 fd 06 00 16 02 00 00
.....8...8.......
0006fc10 00 00 00 00 00 00 00 00 - c4 fc 06 00 7c 7e e8 77
.............|~.w
0006fc20 38 fd 06 00 00 00 00 00 - 01 00 00 00 d8 53 07 00
8............S..
0006fc30 4c fd 06 00 00 00 00 00 - 60 00 00 00 58 47 07 00
L.......`...XG..
0006fc40 b8 02 00 00 00 00 00 00 - 18 fc 06 00 f8 fc 06 00
.................
0006fc50 f8 fc 06 00 56 18 ea 77 - 38 7f e8 77 ff ff ff ff
.....V..w8..w....
0006fc60 8c fc 06 00 52 22 db 77 - 34 00 00 00 38 fd 06 00
.....R".w4...8...
0006fc70 16 02 00 00 88 fc 06 00 - 00 00 00 00 d8 53 07 00
..............S..
0006fc80 38 fd 06 00 00 00 00 00 - 00 00 00 00 08 fd 06 00
8...............
0006fc90 f2 20 db 77 34 00 00 00 - 38 fd 06 00 16 02 00 00 .
..w4...8.......
0006fca0 c4 fc 06 00 58 02 0d 00 - 00 00 00 00 00 f0 fd 7f
.....X...........
0006fcb0 8b 96 d3 77 68 4d 07 00 - 4c fd 06 00 00 00 00 00
....whM..L.......
0006fcc0 f4 fc 06 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................
0006fcd0 80 53 07 00 58 47 07 00 - 0c 04 00 00 70 00 65 00
..S..XG......p.e.
0006fce0 31 00 35 00 01 00 00 00 - 30 24 db 77 00 00 00 00
1.5.....0$.w....
0006fcf0 a4 fc 06 00 68 4d 07 00 - 58 ff 06 00 fb 19 db 77
.....hM..X......w
0006fd00 40 56 db 77 ff ff ff ff - 68 ff 06 00 43 1e db 77
@V.w....h...C..w
0006fd10 34 00 00 00 38 fd 06 00 - 16 02 00 00 58 02 0d 00
4...8.......X...
0006fd20 6c f0 4f 01 00 f0 fd 7f - 00 00 23 00 a0 35 23 00
l.O.......#..5#.

State Dump for Thread Id 0x40c

eax=77f75af9 ebx=00000000 ecx=0000021e edx=00000000 esi=77f8377b
edi=00000060
eip=77f83786 esp=0028ff60 ebp=0028ff84 iopl=0 nv up ei pl zr
na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000
efl=00000246


function: NtWaitForSingleObject
77f8377b b8ea000000 mov eax,0xea
77f83780 8d542404 lea edx,[esp+0x4]
ss:00d8d533=????????
77f83784 cd2e int 2e
77f83786 c20c00 ret 0xc

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
0028FF84 77E87837 00000060 FFFFFFFF 00000000 01002375
ntdll!NtWaitForSingleObject
0028FFEC 00000000 00000000 00000000 00000000 00000000
kernel32!WaitForSingleObject

State Dump for Thread Id 0x464

eax=00000078 ebx=000493e0 ecx=00077c40 edx=00000000 esi=00074ed0
edi=000493e0
eip=77f837dc esp=002cfebc ebp=002cfee4 iopl=0 nv up ei ng nz
ac po cy
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000
efl=00000297


function: ZwRemoveIoCompletion
77f837d1 b8a8000000 mov eax,0xa8
77f837d6 8d542404 lea edx,[esp+0x4]
ss:00dcd48f=????????
77f837da cd2e int 2e
77f837dc c21400 ret 0x14
77f837df 53 push ebx
77f837e0 f7e1 mul ecx
77f837e2 8bd8 mov ebx,eax
77f837e4 8b442408 mov eax,[esp+0x8]
ss:00dcd48f=????????
77f837e8 f7642414 mul dword ptr [esp+0x14]
ss:00dcd48f=????????
77f837ec 03d8 add ebx,eax
77f837ee 8b442408 mov eax,[esp+0x8]
ss:00dcd48f=????????
77f837f2 f7e1 mul ecx
77f837f4 03d3 add edx,ebx
77f837f6 5b pop ebx
77f837f7 c21000 ret 0x10

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
002CFEE4 77D40090 00000044 002CFF1C 002CFF0C 002CFF14
ntdll!ZwRemoveIoCompletion
002CFF20 77D48565 000493E0 002CFF60 002CFF5C 002CFF70
rpcrt4!PerformRpcInitialization
002CFF74 77D48444 77D42528 00074ED0 00000008 0028FD54
rpcrt4!NdrClientContextUnmarshall
002CFFA8 77D424DA 00077C18 002CFFEC 77E887DD 00077C40
rpcrt4!NdrClientContextUnmarshall
002CFFB4 77E887DD 00077C40 00000008 0028FD54 00077C40
rpcrt4!NdrConformantArrayMemorySize
002CFFEC 00000000 00000000 00000000 00000000 00000000
kernel32!GetModuleFileNameA

State Dump for Thread Id 0x498

eax=77d424c2 ebx=00077de8 ecx=00000018 edx=00000000 esi=000766b0
edi=00000100
eip=77f83bb8 esp=0030fe28 ebp=0030ff74 iopl=0 nv up ei pl nz
na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000
efl=00000206


function: NtReplyWaitReceivePortEx
77f83bad b8ac000000 mov eax,0xac
77f83bb2 8d542404 lea edx,[esp+0x4]
ss:00e0d3fb=????????
77f83bb6 cd2e int 2e
77f83bb8 c21400 ret 0x14

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
0030FF74 77D420D9 77D42528 000766B0 77F8B1CE 77D424C2
ntdll!NtReplyWaitReceivePortEx
0030FFA8 77D424DA 000753D8 0030FFEC 77E887DD 00077DE8
rpcrt4!NdrConformantArrayMemorySize
0030FFB4 77E887DD 00077DE8 77F8B1CE 77D424C2 00077DE8
rpcrt4!NdrConformantArrayMemorySize
0030FFEC 00000000 00000000 00000000 00000000 00000000
kernel32!GetModuleFileNameA

State Dump for Thread Id 0x484

eax=77f47a0b ebx=00000000 ecx=7ffd9000 edx=00000000 esi=00078684
edi=0100b2e0
eip=77f47a16 esp=007dff80 ebp=77f8316d iopl=0 nv up ei pl zr
na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000
efl=00000246


function: GdiGetSpoolMessage
77f47a0b b8c2100000 mov eax,0x10c2
77f47a10 8d542404 lea edx,[esp+0x4]
ss:012dd553=????????
77f47a14 cd2e int 2e
77f47a16 c21000 ret 0x10

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
77F8316D 4AFFC033 E0850F08 89000005 FF900C42 8D0F044A
gdi32!GdiGetSpoolMessage
0424548B 00000000 00000000 00000000 00000000 00000000

State Dump for Thread Id 0x4f0

eax=00827e08 ebx=00000000 ecx=00827ce8 edx=00820030 esi=00828000
edi=00827e08
eip=780014c4 esp=0081e29c ebp=0081e2bc iopl=0 nv up ei pl nz
na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000
efl=00000202


function: wcscpy
780014ac 8b442404 mov eax,[esp+0x4]
ss:0131b86f=????????
780014b0 56 push esi
780014b1 668b11 mov dx,[ecx]
ds:00827ce8=0030
780014b4 8d7002 lea esi,[eax+0x2]
ds:013253da=????????
780014b7 668910 mov [eax],dx
ds:00827e08=0066
780014ba 41 inc ecx
780014bb 41 inc ecx
780014bc 6685d2 test dx,dx
780014bf 740a jz _unDNameEx+0x16fe (78007acb)
780014c1 668b11 mov dx,[ecx]
ds:00827ce8=0030
FAULT ->780014c4 668916 mov [esi],dx
ds:00828000=????
780014c7 46 inc esi
780014c8 46 inc esi
780014c9 ebef jmp _unDNameEx+0xfed (780073ba)
780014cb 5e pop esi
780014cc c3 ret

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
0081E2BC 76123806 008264D0 008264A8 00826488 008264F0 !wcscpy
0081E760 7612350C 00000019 0081E784 008220D8 00825FF8
localspl!EnumPrintProcessorDatatypesW
0081E998 7612347D 000001E8 008220D8 00825FF8 00826430
localspl!EnumPrintProcessorDatatypesW
0081EBD4 76122F9D 00000004 0081EBF4 008220D8 00825FF8
localspl!EnumPrintProcessorDatatypesW
0081EE08 76122E74 000001DC 00825FF8 008220D8 008220D8
localspl!InitializePrintMonitor
0081F250 76133B71 00000198 76120000 00000001 00000000
localspl!InitializePrintMonitor
0081F678 7612179D 00000002 00000001 0081F6A0 00000000
localspl!SplCreateSpooler
0081F918 76A9151D 00821F28 00000150 00000000 77DB68B9
localspl!InitializePrintProvidor
0081F93C 76A912D5 76A91FA4 00000000 00000000 00000000
spoolss!InitializeRouter
0081FFB4 77E887DD 000000B8 00000000 00000000 00076088
spoolss!InitializeRouter
0081FFEC 00000000 01002BA8 00076088 00000000 000000C8
kernel32!GetModuleFileNameA

*----> Raw Stack Dump <----*
0081e29c f0 7a 82 00 d8 3a 12 76 - 08 7e 82 00 f0 7a 82 00
..z...:.v.~...z..
0081e2ac 00 00 00 00 f8 5f 82 00 - 04 00 00 00 91 01 00 00
......_..........
0081e2bc 60 e7 81 00 06 38 12 76 - d0 64 82 00 a8 64 82 00
`....8.v.d...d..
0081e2cc 88 64 82 00 f0 64 82 00 - 50 65 82 00 08 7e 82 00
..d...d..Pe...~..
0081e2dc 3a 81 db 77 00 00 00 00 - 00 00 00 00 88 e3 81 00
:..w............
0081e2ec 40 b7 fc 77 48 13 07 00 - 78 81 07 00 08 e4 81 00
@..wH...x.......
0081e2fc 12 02 00 00 08 e4 81 00 - 00 00 00 00 d0 21 07 00
..............!..
0081e30c 12 02 00 00 98 e4 81 00 - 08 e4 81 00 00 00 00 00
.................
0081e31c 00 00 00 00 44 00 00 00 - 00 00 ff ff 88 e3 81 00
.....D...........
0081e32c a8 91 08 00 a8 91 08 00 - 44 e3 81 00 00 00 00 00
.........D.......
0081e33c fc a4 f8 77 18 00 00 00 - 00 00 00 00 64 e3 81 00
....w........d...
0081e34c 40 00 00 00 00 00 00 00 - 00 00 07 00 44 00 00 00
@...........D...
0081e35c 00 00 00 00 00 00 00 00 - 6c 00 1a 02 01 21 07 00
.........l....!..
0081e36c 94 e3 81 00 f8 e2 81 00 - dc e6 81 00 dc e6 81 00
.................
0081e37c 95 2b f8 77 18 36 f8 77 - ff ff ff ff 9c e3 81 00
..+.w.6.w........
0081e38c 90 4f f8 77 00 00 07 00 - 00 00 00 00 78 81 07 00
..O.w........x...
0081e39c c0 e3 81 00 6f 4f f8 77 - 78 81 07 00 e8 3a 07 00
.....oO.wx....:..
0081e3ac b9 02 f9 77 08 e4 81 00 - 00 80 fd 7f 98 e4 81 00
....w............
0081e3bc 00 00 00 00 40 e4 81 00 - db d9 f8 77 e8 3a 07 00
.....@......w.:..
0081e3cc 98 e4 81 00 04 e4 81 00 - 00 e4 81 00 28 e4 81 00
.............(...

State Dump for Thread Id 0x4b8

eax=778321fe ebx=00000004 ecx=77db0260 edx=00000000 esi=77f837a7
edi=00000004
eip=77f837b2 esp=00c8fd24 ebp=00c8fd70 iopl=0 nv up ei pl zr
na po nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000
efl=00000246


function: NtWaitForMultipleObjects
77f837a7 b8e9000000 mov eax,0xe9
77f837ac 8d542404 lea edx,[esp+0x4]
ss:0178d2f7=????????
77f837b0 cd2e int 2e
77f837b2 c21400 ret 0x14

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
00C8FD70 77E8A31D 00C8FD48 00000001 00000000 00000000
ntdll!NtWaitForMultipleObjects
00C8FFB4 77E887DD 00000005 00000000 000B000A 000957C8
kernel32!WaitForMultipleObjects
00C8FFEC 00000000 778321FE 000957C8 00000000 000000C8
kernel32!GetModuleFileNameA

*----> Raw Stack Dump <----*
00c8fd24 b7 7a e8 77 04 00 00 00 - 48 fd c8 00 01 00 00 00
..z.w....H.......
00c8fd34 00 00 00 00 00 00 00 00 - 01 00 00 00 c8 57 09 00
..............W..
00c8fd44 01 00 00 00 04 01 00 00 - 08 01 00 00 18 01 00 00
.................
00c8fd54 74 01 00 00 00 00 00 00 - 00 6b 4a 80 00 00 00 00
t........kJ.....
00c8fd64 30 8f 20 81 40 5a 88 81 - 1c fc 51 bd b4 ff c8 00 0.
..@Z....Q.....
00c8fd74 1d a3 e8 77 48 fd c8 00 - 01 00 00 00 00 00 00 00
....wH...........
00c8fd84 00 00 00 00 00 00 00 00 - b2 22 83 77 04 00 00 00
..........".w....
00c8fd94 b0 fe c8 00 00 00 00 00 - ff ff ff ff c8 57 09 00
..............W..
00c8fda4 0a 00 0b 00 00 00 00 00 - 48 73 65 e2 4c 73 65 e2
.........Hse.Lse.
00c8fdb4 00 52 8a 81 00 00 00 00 - 01 00 00 00 38 00 00 00
..R..........8...
00c8fdc4 23 00 00 00 23 00 00 00 - 00 00 00 00 0a 00 0b 00
#...#...........
00c8fdd4 c8 57 09 00 00 6c f8 77 - 60 02 db 77 fe 21 83 77
..W...l.w`..w.!.w
00c8fde4 00 00 00 00 85 87 e8 77 - 1b 00 00 00 00 02 00 00
........w........
00c8fdf4 fc ff c8 00 23 00 00 00 - 8c 4f 45 80 80 fb 51 bd
.....#....OE...Q.
00c8fe04 48 f8 4d 81 48 f8 4d 81 - 40 00 00 00 24 fb 51 bd
H.M.H.M.@...$.Q.
00c8fe14 d0 f8 44 80 00 41 1e 81 - 00 00 00 00 00 00 00 00
...D..A..........
00c8fe24 88 2f 78 81 a6 24 49 80 - 88 2f 78 81 d4 00 00 00
../x..$I../x.....
00c8fe34 40 6a 8a 81 03 00 10 00 - 48 f8 4d 81 40 6a 8a 81
@j......H.M.@j..
00c8fe44 60 f8 4d 81 48 f8 4d 81 - 4c f8 4d 81 00 00 00 00
`.M.H.M.L.M.....
00c8fe54 88 2f 78 81 01 00 00 00 - 20 41 1e 81 01 00 00 00 ./x.....
A......