raze

what do make of this raze? i got it off from dr. watson.

Application exception occurred:
App: C:\Games\Divine Divinity\Run\div.exe (pid=248)
When: 7/8/2003 @ 16:59:02.064
Exception number: c0000005 (access violation)

*----> System Information <----*
Computer Name: MERLIN
User Name: romel
Terminal Session Id: 0
Number of Processors: 1
Processor Type: x86 Family 6 Model 8 Stepping 3
Windows Version: 5.1
Current Build: 2600
Service Pack: None
Current Type: Uniprocessor Free
Registered Organization:
Registered Owner: Merlin

*----> Task List <----*
0 System Process
4 System
364 smss.exe
428 csrss.exe
452 winlogon.exe
496 services.exe
508 lsass.exe
668 svchost.exe
712 svchost.exe
768 svchost.exe
816 svchost.exe
876 ccEvtMgr.exe
1016 spoolsv.exe
1112 alg.exe
1160 NPROTECT.EXE
1192 nvsvc32.exe
1240 nopdb.exe
1584 Explorer.EXE
1852 ccApp.exe
1908 RUNDLL32.EXE
240 devldr32.exe
248 div.exe
1608 drwtsn32.exe

*----> Module List <----*
(0000000000320000 - 000000000033a000: C:\Games\Divine Divinity\Run\DivDialogSystem.dll
(0000000000340000 - 00000000003bb000: C:\Games\Divine Divinity\Run\fmod.dll
(00000000003c0000 - 00000000003f1000: C:\Games\Divine Divinity\Run\unrar.dll
(0000000000400000 - 0000000000763000: C:\Games\Divine Divinity\Run\div.exe
(0000000001dd0000 - 0000000001e1b000: C:\Games\Divine Divinity\Run\slash4.dll
(0000000010000000 - 000000001008a000: C:\Games\Divine Divinity\Run\Osiris.dll
(0000000030000000 - 000000003006d000: C:\Games\Divine Divinity\Run\binkw32.dll
(0000000051000000 - 0000000051047000: E:\WINDOWS\System32\DDRAW.dll
(0000000051080000 - 00000000510d6000: E:\WINDOWS\System32\DSOUND.DLL
(000000005b0a0000 - 000000005b0a7000: E:\WINDOWS\System32\umdmxfrm.dll
(000000005cd70000 - 000000005cd77000: E:\WINDOWS\System32\serwvdrv.dll
(000000005ef80000 - 000000005ef84000: E:\WINDOWS\System32\KsUser.dll
(0000000072d10000 - 0000000072d18000: E:\WINDOWS\System32\msacm32.drv
(0000000072d20000 - 0000000072d29000: E:\WINDOWS\System32\wdmaud.drv
(0000000073bc0000 - 0000000073bc6000: E:\WINDOWS\System32\DCIMAN32.dll
(0000000076390000 - 00000000763aa000: E:\WINDOWS\System32\IMM32.dll
(0000000076b40000 - 0000000076b6c000: E:\WINDOWS\System32\WINMM.dll
(00000000771b0000 - 00000000772ca000: E:\WINDOWS\system32\ole32.dll
(00000000772d0000 - 0000000077333000: E:\WINDOWS\system32\shlwapi.dll
(0000000077bd0000 - 0000000077bd7000: E:\WINDOWS\System32\midimap.dll
(0000000077be0000 - 0000000077bf4000: E:\WINDOWS\System32\MSACM32.dll
(0000000077c00000 - 0000000077c07000: E:\WINDOWS\system32\VERSION.dll
(0000000077c10000 - 0000000077c63000: E:\WINDOWS\system32\msvcrt.dll
(0000000077c70000 - 0000000077cb0000: E:\WINDOWS\system32\GDI32.dll
(0000000077cc0000 - 0000000077d35000: E:\WINDOWS\system32\RPCRT4.dll
(0000000077d40000 - 0000000077dcd000: E:\WINDOWS\system32\USER32.dll
(0000000077dd0000 - 0000000077e5b000: E:\WINDOWS\system32\ADVAPI32.dll
(0000000077e60000 - 0000000077f45000: E:\WINDOWS\system32\kernel32.dll
(0000000077f50000 - 0000000077ff9000: E:\WINDOWS\System32\ntdll.dll

*----> State Dump for Thread Id 0x22c <----*

eax=0000e600 ebx=01bfe350 ecx=ffff832a edx=000082c7 esi=01c08040 edi=fffff631
eip=0055b9c0 esp=0012ebec ebp=0000efcf iopl=0 nv up ei pl nz na po cy
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=00000207

*** WARNING: Unable to verify checksum for C:\Games\Divine Divinity\Run\div.exe
*** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\Games\Divine Divinity\Run\div.exe -
function: div
0055b9a9 3bc7 cmp eax,edi
0055b9ab 7cf2 jl div+0x15b99f (0055b99f)
0055b9ad 8be8 mov ebp,eax
0055b9af 2beb sub ebp,ebx
0055b9b1 2be9 sub ebp,ecx
0055b9b3 743d jz div+0x15b9f2 (0055b9f2)
0055b9b5 8bdf mov ebx,edi
0055b9b7 c1e304 shl ebx,0x4
0055b9ba 03de add ebx,esi
0055b9bc 895c2448 mov [esp+0x48],ebx
FAULT ->0055b9c0 892b mov [ebx],ebp ds:0023:01bfe350=????????
0055b9c2 8bda mov ebx,edx
0055b9c4 c1e304 shl ebx,0x4
0055b9c7 03de add ebx,esi
0055b9c9 895c243c mov [esp+0x3c],ebx
0055b9cd 8b5c2444 mov ebx,[esp+0x44]
0055b9d1 8beb mov ebp,ebx
0055b9d3 2bea sub ebp,edx
0055b9d5 8b54243c mov edx,[esp+0x3c]
0055b9d9 03e9 add ebp,ecx
0055b9db 8b5208 mov edx,[edx+0x8]

*----> Stack Back Trace <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
0000efcf 00000000 00000000 00000000 00000000 div+0x15b9c0

*----> Raw Stack Dump <----*
000000000012ebec 44 20 bd f9 34 5f fe ff - d2 32 12 0a 04 00 00 00 D ..4_...2......
000000000012ebfc e0 6f b1 0c 22 41 00 00 - 02 00 00 00 08 00 00 00 .o.."A..........
000000000012ec0c 20 f0 6e 00 a3 20 00 00 - 16 82 a6 c1 b7 72 00 00 .n.. .......r..
000000000012ec1c 00 00 00 00 ea a0 d5 2d - 2a 41 00 00 e0 32 c8 01 .......-*A...2..
000000000012ec2c 01 00 00 00 07 73 00 00 - 50 e3 bf 01 01 00 00 00 .....s..P.......
000000000012ec3c 01 00 00 00 01 00 00 00 - 01 00 00 00 01 00 00 00 ................
000000000012ec4c 01 00 00 00 01 00 00 00 - 01 00 00 00 01 00 00 00 ................
000000000012ec5c 01 00 00 00 01 00 00 00 - 01 00 00 00 01 00 00 00 ................
000000000012ec6c 01 00 00 00 01 00 00 00 - 03 00 00 00 02 00 00 00 ................
000000000012ec7c 02 00 00 00 02 00 00 00 - 01 00 00 00 01 00 00 00 ................
000000000012ec8c 01 00 00 00 01 00 00 00 - 01 00 00 00 01 00 00 00 ................
000000000012ec9c 01 00 00 00 01 00 00 00 - 01 00 00 00 01 00 00 00 ................
000000000012ecac 01 00 00 00 01 00 00 00 - 01 00 00 00 02 00 00 00 ................
000000000012ecbc 02 00 00 00 02 00 00 00 - 02 00 00 00 02 00 00 00 ................
000000000012eccc 02 00 00 00 01 00 00 00 - 01 00 00 00 01 00 00 00 ................
000000000012ecdc 01 00 00 00 01 00 00 00 - 01 00 00 00 01 00 00 00 ................
000000000012ecec 01 00 00 00 01 00 00 00 - 01 00 00 00 01 00 00 00 ................
000000000012ecfc 01 00 00 00 01 00 00 00 - 01 00 00 00 01 00 00 00 ................
000000000012ed0c 01 00 00 00 01 00 00 00 - 01 00 00 00 01 00 00 00 ................
000000000012ed1c 01 00 00 00 01 00 00 00 - 01 00 00 00 01 00 00 00 ................

*----> State Dump for Thread Id 0x108 <----*

eax=72d22ecc ebx=0386ff1c ecx=77f75520 edx=00000000 esi=00000000 edi=7ffdf000
eip=7ffe0304 esp=0386fed4 ebp=0386ff70 iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=00000202

function: <nosymbols>
7ffe02f2 0000 add [eax],al
7ffe02f4 0000 add [eax],al
7ffe02f6 0000 add [eax],al
*SharedUserSystemCall:
7ffe02f8 0000 add [eax],al
7ffe02fa 0000 add [eax],al
7ffe02fc 0000 add [eax],al
7ffe02fe 0000 add [eax],al
7ffe0300 8bd4 mov edx,esp
7ffe0302 0f34 sysenter
7ffe0304 c3 ret
7ffe0305 9c pushfd
7ffe0306 810c2400010000 or dword ptr [esp],0x100
7ffe030d 9d popfd
7ffe030e c3 ret
7ffe030f 8bd4 mov edx,esp
7ffe0311 0f05 syscall
7ffe0313 c3 ret
7ffe0314 90 nop
7ffe0315 9c pushfd
7ffe0316 810c2400010000 or dword ptr [esp],0x100

*----> Stack Back Trace <----*
*** ERROR: Symbol file could not be found. Defaulted to export symbols for E:\WINDOWS\System32\ntdll.dll -
*** ERROR: Symbol file could not be found. Defaulted to export symbols for E:\WINDOWS\system32\kernel32.dll -
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
0386fed0 77f7f49f 77e74bd8 00000002 0386ff1c *SharedUserSystemCall+0xc (FPO: [0,0,0])
0386ff70 77e74c70 00000002 0386ffa4 00000000 ntdll!ZwWaitForMultipleObjects+0xc
0386ffb4 77e802ed 00000000 0012f118 00000000 kernel32!WaitForMultipleObjects+0x17
0386ffec 00000000 72d22ecc 00000000 00000000 kernel32!OpenConsoleW+0xb8

*----> Raw Stack Dump <----*
000000000386fed4 9f f4 f7 77 d8 4b e7 77 - 02 00 00 00 1c ff 86 03 ...w.K.w........
000000000386fee4 01 00 00 00 00 00 00 00 - 00 00 00 00 18 f1 12 00 ................
000000000386fef4 00 00 00 00 00 00 00 00 - a0 ef 4b ff 9c 36 50 c0 ..........K..6P.
000000000386ff04 00 00 00 00 8b 00 00 00 - 00 30 50 c0 02 00 00 00 .........0P.....
000000000386ff14 00 f0 fd 7f 00 d0 fd 7f - 18 01 00 00 14 01 00 00 ................
000000000386ff24 77 a4 4e 80 50 47 e0 80 - bc 48 e0 80 95 f2 57 80 w.N.PG...H....W.
000000000386ff34 08 c1 e5 80 50 47 e0 80 - 1c ff 86 03 78 c8 ca 80 ....PG......x...
000000000386ff44 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000386ff54 10 00 00 00 f0 fe 86 03 - 00 00 00 00 dc ff 86 03 ................
000000000386ff64 86 bb e9 77 80 19 e8 77 - 00 00 00 00 b4 ff 86 03 ...w...w........
000000000386ff74 70 4c e7 77 02 00 00 00 - a4 ff 86 03 00 00 00 00 pL.w............
000000000386ff84 ff ff ff ff 00 00 00 00 - 0c 2f d2 72 02 00 00 00 ........./.r....
000000000386ff94 a4 ff 86 03 00 00 00 00 - ff ff ff ff 00 00 00 00 ................
000000000386ffa4 18 01 00 00 14 01 00 00 - 00 00 00 00 6f ef f7 77 ............o..w
000000000386ffb4 ec ff 86 03 ed 02 e8 77 - 00 00 00 00 18 f1 12 00 .......w........
000000000386ffc4 00 00 00 00 00 00 00 00 - fa 6c 4f 80 00 d0 fd 7f .........lO.....
000000000386ffd4 c0 ff 86 03 07 00 00 00 - ff ff ff ff 86 bb e9 77 ...............w
000000000386ffe4 80 5b e9 77 00 00 00 00 - 00 00 00 00 00 00 00 00 .[.w............
000000000386fff4 cc 2e d2 72 00 00 00 00 - 00 00 00 00 00 00 00 00 ...r............
0000000003870004 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

*----> State Dump for Thread Id 0x660 <----*

eax=510cc44e ebx=0014fbb8 ecx=77e74c08 edx=00000000 esi=00000000 edi=7ffdf000
eip=7ffe0304 esp=0396fd8c ebp=0396fe28 iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=00000202

function: <nosymbols>
7ffe02f2 0000 add [eax],al
7ffe02f4 0000 add [eax],al
7ffe02f6 0000 add [eax],al
*SharedUserSystemCall:
7ffe02f8 0000 add [eax],al
7ffe02fa 0000 add [eax],al
7ffe02fc 0000 add [eax],al
7ffe02fe 0000 add [eax],al
7ffe0300 8bd4 mov edx,esp
7ffe0302 0f34 sysenter
7ffe0304 c3 ret
7ffe0305 9c pushfd
7ffe0306 810c2400010000 or dword ptr [esp],0x100
7ffe030d 9d popfd
7ffe030e c3 ret
7ffe030f 8bd4 mov edx,esp
7ffe0311 0f05 syscall
7ffe0313 c3 ret
7ffe0314 90 nop
7ffe0315 9c pushfd
7ffe0316 810c2400010000 or dword ptr [esp],0x100

*----> Stack Back Trace <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
*** ERROR: Symbol file could not be found. Defaulted to export symbols for E:\WINDOWS\System32\DSOUND.DLL -
ChildEBP RetAddr Args to Child
0396fd88 77f7f49f 77e74bd8 00000040 0014fbb8 *SharedUserSystemCall+0xc (FPO: [0,0,0])
0396fe28 77e74c70 00000040 0396fe74 00000000 ntdll!ZwWaitForMultipleObjects+0xc
0396ff74 510bfde5 ffffffff 0000003f 03716120 kernel32!WaitForMultipleObjects+0x17
0396ff94 510bf96c 0016011c 037160d4 00000220 DSOUND+0x3fde5
0396ffa8 510bf9d6 00000000 510c0063 77e802ed DSOUND+0x3f96c
0396ffec 00000000 510c005a 037160d4 00000000 DSOUND+0x3f9d6

*----> Raw Stack Dump <----*
000000000396fd8c 9f f4 f7 77 d8 4b e7 77 - 40 00 00 00 b8 fb 14 00 [email]...w.K.w@.......[/email]
000000000396fd9c 01 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000396fdac 40 00 00 00 01 00 00 00 - 00 c0 fd 7f 01 00 00 00 @...............
000000000396fdbc 00 00 00 00 38 00 00 00 - 23 00 00 00 40 00 00 00 ....8...#...@...
000000000396fdcc 00 f0 fd 7f 00 c0 fd 7f - d4 60 71 03 28 00 00 00 .........`q.(...
000000000396fddc 6f 00 74 00 5a 00 0c 51 - b4 c8 12 00 f4 02 e8 77 o.t.Z..Q.......w
000000000396fdec 1b 00 00 00 00 02 00 00 - b8 fb 14 00 00 c0 fd 7f ................
000000000396fdfc 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................
000000000396fe0c 10 00 00 00 a8 fd 96 03 - 0e 6a 53 80 dc ff 96 03 .........jS.....
000000000396fe1c 86 bb e9 77 80 19 e8 77 - 00 00 00 00 74 ff 96 03 ...w...w....t...
000000000396fe2c 70 4c e7 77 40 00 00 00 - 74 fe 96 03 00 00 00 00 [email]pL.w@...t.......[/email]
000000000396fe3c ff ff ff ff 00 00 00 00 - 7c f4 0b 51 40 00 00 00 ........|..Q@...
000000000396fe4c 74 fe 96 03 00 00 00 00 - ff ff ff ff 48 f7 0b 51 t...........H..Q
000000000396fe5c 40 00 00 00 ff ff ff ff - 00 00 00 00 74 fe 96 03 @...........t...
000000000396fe6c d4 60 71 03 d4 60 71 03 - 20 02 00 00 60 01 00 00 .`q..`q. ...`...
000000000396fe7c 74 01 00 00 40 01 00 00 - 94 02 00 00 3c 02 00 00 [email]t...@.......<...[/email]
000000000396fe8c 50 01 00 00 10 02 00 00 - 1c 02 00 00 6c 02 00 00 P...........l...
000000000396fe9c 98 02 00 00 5c 01 00 00 - 3c 01 00 00 44 02 00 00 ....\...<...D...
000000000396feac 78 01 00 00 48 01 00 00 - 68 01 00 00 58 01 00 00 x...H...h...X...
000000000396febc 64 01 00 00 7c 01 00 00 - 80 01 00 00 84 01 00 00 d...|...........

*----> State Dump for Thread Id 0x72c <----*

eax=01db0000 ebx=03c6fddc ecx=03c6fe70 edx=00000000 esi=00000000 edi=7ffdf000
eip=7ffe0304 esp=03c6fd94 ebp=03c6fe30 iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=00000202

function: <nosymbols>
7ffe02f2 0000 add [eax],al
7ffe02f4 0000 add [eax],al
7ffe02f6 0000 add [eax],al
*SharedUserSystemCall:
7ffe02f8 0000 add [eax],al
7ffe02fa 0000 add [eax],al
7ffe02fc 0000 add [eax],al
7ffe02fe 0000 add [eax],al
7ffe0300 8bd4 mov edx,esp
7ffe0302 0f34 sysenter
7ffe0304 c3 ret
7ffe0305 9c pushfd
7ffe0306 810c2400010000 or dword ptr [esp],0x100
7ffe030d 9d popfd
7ffe030e c3 ret
7ffe030f 8bd4 mov edx,esp
7ffe0311 0f05 syscall
7ffe0313 c3 ret
7ffe0314 90 nop
7ffe0315 9c pushfd
7ffe0316 810c2400010000 or dword ptr [esp],0x100

*----> Stack Back Trace <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
03c6fd90 77f7f49f 77e74bd8 00000001 03c6fddc *SharedUserSystemCall+0xc (FPO: [0,0,0])
03c6fe30 77e74c70 00000001 03c6fe7c 00000000 ntdll!ZwWaitForMultipleObjects+0xc
03c6ff7c 510a1566 000001f4 00000000 00000000 kernel32!WaitForMultipleObjects+0x17
03c6ffa8 510bf9d6 0012cb64 510c0063 77e802ed DSOUND+0x21566
03c6ffec 00000000 510c005a 03711efc 00000000 DSOUND+0x3f9d6

*----> Raw Stack Dump <----*
0000000003c6fd94 9f f4 f7 77 d8 4b e7 77 - 01 00 00 00 dc fd c6 03 ...w.K.w........
0000000003c6fda4 01 00 00 00 00 00 00 00 - c8 fd c6 03 00 00 00 00 ................
0000000003c6fdb4 01 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000003c6fdc4 c8 fd c6 03 c0 b4 b3 ff - ff ff ff ff 01 00 00 00 ................
0000000003c6fdd4 00 f0 fd 7f 00 b0 fd 7f - 64 02 00 00 00 00 00 00 ........d.......
0000000003c6fde4 58 4c e7 77 44 fe c6 03 - 08 4c e7 77 a8 82 71 03 XL.wD....L.w..q.
0000000003c6fdf4 00 00 00 00 00 00 00 00 - dc fd c6 03 00 00 00 00 ................
0000000003c6fe04 14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000003c6fe14 10 00 00 00 b0 fd c6 03 - 00 00 00 00 dc ff c6 03 ................
0000000003c6fe24 86 bb e9 77 80 19 e8 77 - 00 00 00 00 7c ff c6 03 ...w...w....|...
0000000003c6fe34 70 4c e7 77 01 00 00 00 - 7c fe c6 03 00 00 00 00 pL.w....|.......
0000000003c6fe44 f4 01 00 00 00 00 00 00 - 7c f4 0b 51 01 00 00 00 ........|..Q....
0000000003c6fe54 7c fe c6 03 00 00 00 00 - f4 01 00 00 48 f7 0b 51 |...........H..Q
0000000003c6fe64 01 00 00 00 f4 01 00 00 - 00 00 00 00 7c fe c6 03 ............|...
0000000003c6fe74 fc 1e 71 03 fc 1e 71 03 - 64 02 00 00 bc fe c6 03 ..q...q.d.......
0000000003c6fe84 00 00 00 00 00 00 00 00 - a0 fe c6 03 b8 fe c6 03 ................
0000000003c6fe94 01 00 00 00 00 00 00 00 - 02 00 00 00 00 00 00 00 ................
0000000003c6fea4 00 00 00 00 c8 fe c6 03 - 8f 4d e7 77 5c 02 00 00 .........M.w\...
0000000003c6feb4 04 00 00 00 00 10 00 00 - 04 00 00 00 20 00 00 00 ............ ...
0000000003c6fec4 a2 50 e7 77 ff ff ff ff - 7f ef f7 77 9f f4 f7 77 .P.w.......w...w

*----> State Dump for Thread Id 0x1f4 <----*

eax=00000000 ebx=00000004 ecx=00000020 edx=00000000 esi=00000000 edi=03e6ff70
eip=7ffe0304 esp=03e6ff30 ebp=03e6ff88 iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=00000202

function: <nosymbols>
7ffe02f2 0000 add [eax],al
7ffe02f4 0000 add [eax],al
7ffe02f6 0000 add [eax],al
*SharedUserSystemCall:
7ffe02f8 0000 add [eax],al
7ffe02fa 0000 add [eax],al
7ffe02fc 0000 add [eax],al
7ffe02fe 0000 add [eax],al
7ffe0300 8bd4 mov edx,esp
7ffe0302 0f34 sysenter
7ffe0304 c3 ret
7ffe0305 9c pushfd
7ffe0306 810c2400010000 or dword ptr [esp],0x100
7ffe030d 9d popfd
7ffe030e c3 ret
7ffe030f 8bd4 mov edx,esp
7ffe0311 0f05 syscall
7ffe0313 c3 ret
7ffe0314 90 nop
7ffe0315 9c pushfd
7ffe0316 810c2400010000 or dword ptr [esp],0x100

*----> Stack Back Trace <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
03e6ff2c 77f7e76f 77e775b7 00000000 03e6ff54 *SharedUserSystemCall+0xc (FPO: [0,0,0])
03e6ff88 77e61bf1 0000000a 00000000 0034f393 ntdll!NtDelayExecution+0xc
00000003 00000000 00000000 00000000 00000000 kernel32!Sleep+0xb

*----> Raw Stack Dump <----*
0000000003e6ff30 6f e7 f7 77 b7 75 e7 77 - 00 00 00 00 54 ff e6 03 o..w.u.w....T...
0000000003e6ff40 e8 9a c7 03 8c 21 37 00 - 04 00 00 00 3e f8 0b 51 .....!7.....>..Q
0000000003e6ff50 54 ff e6 03 60 79 fe ff - ff ff ff ff 14 00 00 00 T...`y..........
0000000003e6ff60 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................
0000000003e6ff70 40 ff e6 03 94 ff e6 03 - dc ff e6 03 86 bb e9 77 @..............w
0000000003e6ff80 30 21 e8 77 00 00 00 00 - 03 00 00 00 f1 1b e6 77 0!.w...........w
0000000003e6ff90 0a 00 00 00 00 00 00 00 - 93 f3 34 00 0a 00 00 00 ..........4.....
0000000003e6ffa0 65 f8 34 00 0a 00 00 00 - ec ff e6 03 00 00 00 00 e.4.............
0000000003e6ffb0 78 01 71 03 e0 40 71 03 - ed 02 e8 77 00 00 00 00 [email]x.q..@q....w....[/email]
0000000003e6ffc0 78 01 71 03 e0 40 71 03 - 00 00 00 00 06 00 00 00 [email]x.q..@q.........[/email]
0000000003e6ffd0 00 a0 fd 7f c0 ff e6 03 - 07 00 00 00 ff ff ff ff ................
0000000003e6ffe0 86 bb e9 77 80 5b e9 77 - 00 00 00 00 00 00 00 00 ...w.[.w........
0000000003e6fff0 00 00 00 00 9e f7 34 00 - 00 00 00 00 00 00 00 00 ......4.........
0000000003e70000 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000003e70010 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000003e70020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000003e70030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000003e70040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000003e70050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................
0000000003e70060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00 ................

*----> State Dump for Thread Id 0x104 <----*

eax=003777a0 ebx=00000000 ecx=003777a0 edx=00000000 esi=00000000 edi=03f6ff68
eip=7ffe0304 esp=03f6ff28 ebp=03f6ff80 iopl=0 nv up ei pl nz na pe nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=00000202

function: <nosymbols>
7ffe02f2 0000 add [eax],al
7ffe02f4 0000 add [eax],al
7ffe02f6 0000 add [eax],al
*SharedUserSystemCall:
7ffe02f8 0000 add [eax],al
7ffe02fa 0000 add [eax],al
7ffe02fc 0000 add [eax],al
7ffe02fe 0000 add [eax],al
7ffe0300 8bd4 mov edx,esp
7ffe0302 0f34 sysenter
7ffe0304 c3 ret
7ffe0305 9c pushfd
7ffe0306 810c2400010000 or dword ptr [esp],0x100
7ffe030d 9d popfd
7ffe030e c3 ret
7ffe030f 8bd4 mov edx,esp
7ffe0311 0f05 syscall
7ffe0313 c3 ret
7ffe0314 90 nop
7ffe0315 9c pushfd
7ffe0316 810c2400010000 or dword ptr [esp],0x100

*----> Stack Back Trace <----*
WARNING: Stack unwind information not available. Following frames may be wrong.
ChildEBP RetAddr Args to Child
03f6ff24 77f7e76f 77e775b7 00000000 03f6ff4c *SharedUserSystemCall+0xc (FPO: [0,0,0])
03f6ff80 77e61bf1 0000000a 00000000 0034f393 ntdll!NtDelayExecution+0xc
03f6ffb4 77e802ed 00000000 03710178 037140e0 kernel32!Sleep+0xb
03f6ffec 00000000 003617b2 00000000 00000000 kernel32!OpenConsoleW+0xb8

*----> Raw Stack Dump <----*
0000000003f6ff28 6f e7 f7 77 b7 75 e7 77 - 00 00 00 00 4c ff f6 03 o..w.u.w....L...
0000000003f6ff38 78 01 71 03 c4 8c 37 00 - 00 00 00 00 00 00 00 00 x.q...7.........
0000000003f6ff48 4c ff f6 03 60 79 fe ff - ff ff ff ff 14 00 00 00 L...`y..........
0000000003f6ff58 01 00 00 00 00 00 00 00 - 00 00 00 00 10 00 00 00 ................
0000000003f6ff68 38 ff f6 03 97 02 00 00 - dc ff f6 03 86 bb e9 77 8..............w
0000000003f6ff78 30 21 e8 77 00 00 00 00 - b4 ff f6 03 f1 1b e6 77 0!.w...........w
0000000003f6ff88 0a 00 00 00 00 00 00 00 - 93 f3 34 00 0a 00 00 00 ..........4.....
0000000003f6ff98 eb 18 36 00 0a 00 00 00 - 78 01 71 03 e0 40 71 03 [email]..6.....x.q..@q.[/email]
0000000003f6ffa8 00 00 00 00 b0 ff f6 03 - 00 00 00 00 ec ff f6 03 ................
0000000003f6ffb8 ed 02 e8 77 00 00 00 00 - 78 01 71 03 e0 40 71 03 [email]...w....x.q..@q.[/email]
0000000003f6ffc8 00 00 00 00 fa 6c 4f 80 - 00 90 fd 7f c0 ff f6 03 .....lO.........
0000000003f6ffd8 07 00 00 00 ff ff ff ff - 86 bb e9 77 80 5b e9 77 ...........w.[.w
0000000003f6ffe8 00 00 00 00 00 00 00 00 - 00 00 00 00 b2 17 36 00 ..............6.
0000000003f6fff8 00 00 00 00 00 00 00 00 - 00 00 0b 04 00 00 10 03 ................
0000000003f70008 00 00 00 00 00 00 00 00 - 00 50 13 00 00 50 13 00 .........P...P..
0000000003f70018 b0 0f 00 00 00 0b 00 00 - 03 00 65 00 00 00 25 00 ..........e...%.
0000000003f70028 6e 00 1d 00 02 00 00 00 - 03 00 65 00 00 00 25 00 n.........e...%.
0000000003f70038 6e 00 1d 00 02 00 00 00 - 03 00 65 00 00 00 25 00 n.........e...%.
0000000003f70048 6e 00 1d 00 02 00 00 00 - 03 00 65 00 00 00 25 00 n.........e...%.
0000000003f70058 6e 00 1d 00 02 00 00 00 - 03 00 65 00 00 00 25 00 n.........e...%.


and this one from windows error reports:

?xml version="1.0" encoding="UTF-16"?>
<DATABASE>
<EXE NAME="div.exe" FILTER="GRABMI_FILTER_PRIVACY">
<MATCHING_FILE NAME="UnRAR.exe" SIZE="40960" CHECKSUM="0x94FDE28D" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="07/19/2002 15:13:20" UPTO_LINK_DATE="07/19/2002 15:13:20" />
<MATCHING_FILE NAME="unrar.dll" SIZE="158208" CHECKSUM="0xBE12E3DD" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="05/14/2002 12:26:28" UPTO_LINK_DATE="05/14/2002 12:26:28" />
<MATCHING_FILE NAME="div.exe" SIZE="2445312" CHECKSUM="0x31C91468" BIN_FILE_VERSION="1.0.0.34" BIN_PRODUCT_VERSION="1.0.0.34" PRODUCT_VERSION="1, 0, 0, 34" FILE_DESCRIPTION="Divine Divinity" COMPANY_NAME="Larian Studios" PRODUCT_NAME="Larian Studios' Divine Divinity" FILE_VERSION="1, 0, 0, 34" ORIGINAL_FILENAME="DIV.exe" INTERNAL_NAME="Divine Divinity" LEGAL_COPYRIGHT="Copyright � Larian Studios, Arrakis NV 1999,2002" VERFILEDATEHI="0x0" VERFILEDATELO="0x0" VERFILEOS="0x40004" VERFILETYPE="0x1" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" UPTO_BIN_FILE_VERSION="1.0.0.34" UPTO_BIN_PRODUCT_VERSION="1.0.0.34" LINK_DATE="05/02/2003 20:24:32" UPTO_LINK_DATE="05/02/2003 20:24:32" VER_LANGUAGE="English (United States) [0x409]" />
<MATCHING_FILE NAME="DrvMgt.dll" SIZE="40960" CHECKSUM="0x3948D175" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="05/10/2002 09:57:26" UPTO_LINK_DATE="05/10/2002 09:57:26" />
<MATCHING_FILE NAME="binkw32.dll" SIZE="357939" CHECKSUM="0xADBD330C" BIN_FILE_VERSION="1.5.7.0" BIN_PRODUCT_VERSION="1.5.7.0" PRODUCT_VERSION="1.5g" FILE_DESCRIPTION="RAD Video Tools" COMPANY_NAME="RAD Game Tools, Inc." PRODUCT_NAME="Bink and Smacker" FILE_VERSION="1.5g" LEGAL_COPYRIGHT="Copyright (C) 1994-2002, RAD Game Tools, Inc." VERFILEDATEHI="0x0" VERFILEDATELO="0x0" VERFILEOS="0x0" VERFILETYPE="0x1" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" UPTO_BIN_FILE_VERSION="1.5.7.0" UPTO_BIN_PRODUCT_VERSION="1.5.7.0" LINK_DATE="05/16/2002 19:48:35" UPTO_LINK_DATE="05/16/2002 19:48:35" />
<MATCHING_FILE NAME="configtool.exe" SIZE="188416" CHECKSUM="0xA852CFB" BIN_FILE_VERSION="1.0.0.3" BIN_PRODUCT_VERSION="1.0.0.3" PRODUCT_VERSION="1, 0, 0, 3" FILE_DESCRIPTION="configtool MFC Application" COMPANY_NAME="" PRODUCT_NAME="configtool Application" FILE_VERSION="1, 0, 0, 3" ORIGINAL_FILENAME="configtool.EXE" INTERNAL_NAME="configtool" LEGAL_COPYRIGHT="Copyright (C) 1999" VERFILEDATEHI="0x0" VERFILEDATELO="0x0" VERFILEOS="0x4" VERFILETYPE="0x1" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" UPTO_BIN_FILE_VERSION="1.0.0.3" UPTO_BIN_PRODUCT_VERSION="1.0.0.3" LINK_DATE="08/19/2002 20:49:22" UPTO_LINK_DATE="08/19/2002 20:49:22" VER_LANGUAGE="English (United States) [0x409]" />
<MATCHING_FILE NAME="DivDialogSystem.dll" SIZE="98304" CHECKSUM="0xD0125E6E" BIN_FILE_VERSION="1.5.0.1" BIN_PRODUCT_VERSION="1.5.0.1" PRODUCT_VERSION="1, 5, 0, 1" FILE_DESCRIPTION="DivDialogSystem" COMPANY_NAME="Larian" PRODUCT_NAME="Larian DivDialogSystem" FILE_VERSION="1, 5, 0, 1" ORIGINAL_FILENAME="DivDialogSystem.dll" INTERNAL_NAME="DivDialogSystem" LEGAL_COPYRIGHT="Copyright � 2000-2001" VERFILEDATEHI="0x0" VERFILEDATELO="0x0" VERFILEOS="0x40004" VERFILETYPE="0x2" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x10005" UPTO_BIN_FILE_VERSION="1.5.0.1" UPTO_BIN_PRODUCT_VERSION="1.5.0.1" LINK_DATE="09/11/2002 09:22:49" UPTO_LINK_DATE="09/11/2002 09:22:49" VER_LANGUAGE="English (United States) [0x409]" />
<MATCHING_FILE NAME="fmod.dll" SIZE="127488" CHECKSUM="0x4767FC32" BIN_FILE_VERSION="3.6.0.0" BIN_PRODUCT_VERSION="3.6.0.0" PRODUCT_VERSION="3.6" FILE_DESCRIPTION="FMOD" COMPANY_NAME="Firelight Firelight Technologies Pty, Ltd" PRODUCT_NAME="FMOD" FILE_VERSION="3.6" ORIGINAL_FILENAME="fmod.dll" INTERNAL_NAME="FMOD" LEGAL_COPYRIGHT="Copyright � 1994-2002, Firelight Technologies Pty, Ltd." VERFILEDATEHI="0x0" VERFILEDATELO="0x0" VERFILEOS="0x40004" VERFILETYPE="0x2" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" UPTO_BIN_FILE_VERSION="3.6.0.0" UPTO_BIN_PRODUCT_VERSION="3.6.0.0" LINK_DATE="08/18/2002 13:50:22" UPTO_LINK_DATE="08/18/2002 13:50:22" VER_LANGUAGE="English (Australia) [0xc09]" />
<MATCHING_FILE NAME="NlsEng.dll" SIZE="28672" CHECKSUM="0xE7159846" BIN_FILE_VERSION="1.0.0.1" BIN_PRODUCT_VERSION="1.0.0.1" PRODUCT_VERSION="1, 0, 0, 1" FILE_DESCRIPTION="NlsEng DLL" COMPANY_NAME="" PRODUCT_NAME="NlsEng Dynamic Link Library" FILE_VERSION="1, 0, 0, 1" ORIGINAL_FILENAME="NlsEng.DLL" INTERNAL_NAME="NlsEng" LEGAL_COPYRIGHT="Copyright (C) 2002" VERFILEDATEHI="0x0" VERFILEDATELO="0x0" VERFILEOS="0x4" VERFILETYPE="0x2" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" UPTO_BIN_FILE_VERSION="1.0.0.1" UPTO_BIN_PRODUCT_VERSION="1.0.0.1" LINK_DATE="08/19/2002 22:33:22" UPTO_LINK_DATE="08/19/2002 22:33:22" VER_LANGUAGE="German (Germany) [0x407]" />
<MATCHING_FILE NAME="Osiris.dll" SIZE="348160" CHECKSUM="0x236D8DC0" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="09/11/2002 09:05:44" UPTO_LINK_DATE="09/11/2002 09:05:44" />
<MATCHING_FILE NAME="slash1.dll" SIZE="270336" CHECKSUM="0xE22F6A1D" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="09/11/2002 08:58:15" UPTO_LINK_DATE="09/11/2002 08:58:15" />
<MATCHING_FILE NAME="slash2.dll" SIZE="241664" CHECKSUM="0x93475167" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="09/10/2002 09:54:56" UPTO_LINK_DATE="09/10/2002 09:54:56" />
<MATCHING_FILE NAME="slash3.dll" SIZE="299008" CHECKSUM="0x4D9FBEE8" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="09/10/2002 09:57:20" UPTO_LINK_DATE="09/10/2002 09:57:20" />
<MATCHING_FILE NAME="slash4.dll" SIZE="286720" CHECKSUM="0x9FD6CA86" MODULE_TYPE="WIN32" PE_CHECKSUM="0x0" LINKER_VERSION="0x0" LINK_DATE="09/10/2002 09:56:39" UPTO_LINK_DATE="09/10/2002 09:56:39" />
</EXE>
<EXE NAME="kernel32.dll" FILTER="GRABMI_FILTER_THISFILEONLY">
<MATCHING_FILE NAME="kernel32.dll" SIZE="926720" CHECKSUM="0x6262EEA5" BIN_FILE_VERSION="5.1.2600.0" BIN_PRODUCT_VERSION="5.1.2600.0" PRODUCT_VERSION="5.1.2600.0" FILE_DESCRIPTION="Windows NT BASE API Client DLL" COMPANY_NAME="Microsoft Corporation" PRODUCT_NAME="Microsoft� Windows� Operating System" FILE_VERSION="5.1.2600.0 (xpclient.010817-1148)" ORIGINAL_FILENAME="kernel32" INTERNAL_NAME="kernel32" LEGAL_COPYRIGHT="� Microsoft Corporation. All rights reserved." VERFILEDATEHI="0x0" VERFILEDATELO="0x0" VERFILEOS="0x40004" VERFILETYPE="0x2" MODULE_TYPE="WIN32" PE_CHECKSUM="0xE8792" LINKER_VERSION="0x50001" UPTO_BIN_FILE_VERSION="5.1.2600.0" UPTO_BIN_PRODUCT_VERSION="5.1.2600.0" LINK_DATE="08/18/2001 05:33:02" UPTO_LINK_DATE="08/18/2001 05:33:02" VER_LANGUAGE="English (United States) [0x409]" />
</EXE>
</DATABASE>