Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- --------------------------------------------------------------------------------
- Starting profile on 2016/07/17 at 15:18:03
- Operating System: Microsoft Windows NT/2000/XP/2003/Vista based Home Premium (64-bit), version 6.01.7601 Service Pack 1
- Program Executable: c:\users\yumetodo\desktop\x264guiex_2.36v2\setup\AUOSETUP.EXE
- Program Arguments:
- Starting Directory: C:\Users\yumetodo\Desktop\x264guiEx_2.36v2\setup\
- Search Path: C:\Program Files\Microsoft HPC Pack 2008 R2\Bin\;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\CambridgeSoft\ChemOffice2015\ChemScript\Lib;C:\Program Files\NVIDIA GPU Computing Toolkit\CUDA\v7.5\bin;C:\Program Files\NVIDIA GPU Computing Toolkit\CUDA\v7.5\libnvvp;C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\windows\system32;C:\windows;C:\windows\System32\Wbem;C:\windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\Java\jdk1.8.0_91\bin;C:\Program Files (x86)\Intel\OpenCL SDK\3.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\3.0\bin\x64;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files\Microsoft DNX\Dnvm\;C:\Program Files (x86)\Windows Kits\8.1\Windows Performance Toolkit\;C:\Program Files\Microsoft SQL Server\120\Tools\Binn\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\for_cmd;C:\windows\System32\WindowsPowerShell\v1.0\;C:\program1\aviutl100\exe_files;C:\Program1\LLVM\bin;C:\Program Files\doxygen\bin;C:\Users\yumetodo\node_modules\.bin;C:\program1\gnuplot\bin;C:\Program Files (x86)\Lua\5.1;C:\Program Files (x86)\Lua\5.1\clibs;C:\Program Files (x86)\CambridgeSoft\ChemOffice2014\ChemScript\Lib;C:\Program Files (x86)\Skype\Phone\;C:\Program Files\Microsoft SQL Server\130\Tools\Binn\;C:\Users\yumetodo\AppData\Local\Programs\Python\Python35-32;C:\Users\yumetodo\AppData\Local\Programs\Python\Python35-32\Scripts;C:\Program Files\Git\cmd;C:\Users\yumetodo\AppData\Local\Programs\Python\Python35-32\Scripts\;C:\Users\yumetodo\AppData\Local\Programs\Python\Python35-32\;C:\lib\cocos2d-x-3.8\templates;C:\lib\cocos2d-x-3.8\tools\cocos2d-console\bin;C:\Users\yumetodo\.dnx\bin;C:\Program Files (x86)\Microsoft VS Code\bin;C:\Program Files (x86)\Microsoft VS Code Insiders\bin;C:\Program Files (x86)\Nodist\bin
- Options Selected:
- Simulate ShellExecute by inserting any App Paths directories into the PATH environment variable.
- Log DllMain calls for process attach and process detach messages.
- Hook the process to gather more detailed dependency information.
- Log LoadLibrary function calls.
- Log GetProcAddress function calls.
- Log thread information.
- Use simple thread numbers instead of actual thread IDs.
- Log first chance exceptions.
- Log debug output messages.
- Use full paths when logging file names.
- Automatically open and profile child processes.
- --------------------------------------------------------------------------------
- Started "c:\users\yumetodo\desktop\x264guiex_2.36v2\setup\AUOSETUP.EXE" (process 0x1C5C) at address 0x00FD0000 by thread 1. Successfully hooked module.
- Loaded "c:\windows\syswow64\NTDLL.DLL" at address 0x77DA0000 by thread 1. Successfully hooked module.
- Loaded "c:\windows\syswow64\MSCOREE.DLL" at address 0x70A80000 by thread 1. Successfully hooked module.
- Loaded "c:\windows\syswow64\KERNEL32.DLL" at address 0x76E30000 by thread 1. Successfully hooked module.
- Loaded "c:\windows\syswow64\KERNELBASE.DLL" at address 0x77800000 by thread 1. Successfully hooked module.
- DllMain(0x77800000, DLL_PROCESS_ATTACH, 0x00000000) in "c:\windows\syswow64\KERNELBASE.DLL" called by thread 1.
- DllMain(0x77800000, DLL_PROCESS_ATTACH, 0x00000000) in "c:\windows\syswow64\KERNELBASE.DLL" returned 1 (0x1) by thread 1.
- DllMain(0x76E30000, DLL_PROCESS_ATTACH, 0x00000000) in "c:\windows\syswow64\KERNEL32.DLL" called by thread 1.
- DllMain(0x76E30000, DLL_PROCESS_ATTACH, 0x00000000) in "c:\windows\syswow64\KERNEL32.DLL" returned 1 (0x1) by thread 1.
- Injected "c:\program1\depends22_x86\DEPENDS.DLL" at address 0x08370000 by thread 1.
- DllMain(0x70A80000, DLL_PROCESS_ATTACH, 0x00000000) in "c:\windows\syswow64\MSCOREE.DLL" called by thread 1.
- DllMain(0x08370000, DLL_PROCESS_ATTACH, 0x00000000) in "c:\program1\depends22_x86\DEPENDS.DLL" called by thread 1.
- DllMain(0x08370000, DLL_PROCESS_ATTACH, 0x00000000) in "c:\program1\depends22_x86\DEPENDS.DLL" returned 1 (0x1) by thread 1.
- GetProcAddress(0x76E30000 [c:\windows\syswow64\KERNEL32.DLL], "FlsAlloc") called from "c:\windows\syswow64\MSCOREE.DLL" at address 0x70A86F3C and returned 0x76E44EF3 by thread 1.
- STATUS_STACK_BUFFER_OVERRUN encountered
- Entrypoint reached. All implicit modules have been loaded.
- Exited "c:\users\yumetodo\desktop\x264guiex_2.36v2\setup\AUOSETUP.EXE" (process 0x1C5C) with code -1073740791 (0xC0000409) by thread 1.
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement