Results 1 to 4 of 4

Thread: Watson wants to crash explorer

  1. #1
    Titanium Member
    Join Date
    Jul 2002
    blk helo target, WA

    Watson wants to crash explorer

    Does anyone know how to read Watson logs? This is what is happening (expl crashes anyway on startup) [I edited what I thought might not be important because post was too large - also computer name etc to keep it private]

    Microsoft (R) DrWtsn32
    Copyright (C) 1985-2001 Microsoft Corp. All rights reserved.

    Application exception occurred:
    App: C:\WINDOWS\Explorer.EXE (pid=1068)
    When: 4/6/2005 @ 11:14:58.937
    Exception number: 80000007

    *----> System Information <----*
    Computer Name: Reverend
    User Name: lynch
    Terminal Session Id: 0
    Number of Processors: 1
    Processor Type: x86 Family 6 Model 8 Stepping 0
    Windows Version: 5.1
    Current Build: 2600
    Service Pack: 2
    Current Type: Uniprocessor Free
    Registered Organization: Big Booger
    Registered Owner: Fastgame and rik
    *----> Task List <----*
    The text that you have entered is too long (21233 characters). Please shorten it to 10000 characters long.
    2364 Error 0x8007012B

    *----> Module List <----*
    The text that you have entered is too long (21233 characters). Please shorten it to 10000 characters long.
    *----> State Dump for Thread Id 0x6c4 <----*

    eax=0007fc9c ebx=00000003 ecx=0007fc94 edx=7c90eb94 esi=00117290 edi=00000000
    eip=7c90eb94 esp=0007fef0 ebp=0007ff08 iopl=0 nv up ei pl nz na pe nc
    cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000202

    *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ntdll.dll -
    function: ntdll!KiFastSystemCallRet
    7c90eb89 90 nop
    7c90eb8a 90 nop
    7c90eb8b 8bd4 mov edx,esp
    7c90eb8d 0f34 sysenter
    7c90eb8f 90 nop
    7c90eb90 90 nop
    7c90eb91 90 nop
    7c90eb92 90 nop
    7c90eb93 90 nop
    FAULT ->ntdll!KiFastSystemCallRet:
    7c90eb94 c3 ret
    7c90eb95 8da42400000000 lea esp,[esp]
    7c90eb9c 8d642400 lea esp,[esp]
    7c90eba0 90 nop
    7c90eba1 90 nop
    7c90eba2 90 nop
    7c90eba3 90 nop
    7c90eba4 90 nop
    7c90eba5 8d542408 lea edx,[esp+0x8]
    7c90eba9 cd2e int 2e

    *----> Stack Back Trace <----*
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\SHELL32.dll -
    WARNING: Stack unwind information not available. Following frames may be wrong.
    *** ERROR: Module load completed but symbols could not be loaded for C:\WINDOWS\Explorer.EXE
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\kernel32.dll -
    ChildEBP RetAddr Args to Child
    0007ff08 7ca0be04 00000000 0007ff5c 01016e95 ntdll!KiFastSystemCallRet
    0007ff14 01016e95 00117290 7ffd9000 0007ffc0 SHELL32!Ordinal201+0x28
    0007ff5c 0101e2b6 00000000 00000000 000205e2 Explorer+0x16e95
    0007ffc0 7c816d4f 00000000 00000000 7ffd9000 Explorer+0x1e2b6
    0007fff0 00000000 0101e24e 00000000 78746341 kernel32!RegisterWaitForInputIdle+0x49

    *----> Raw Stack Dump <----*
    The text that you have entered is too long (21233 characters). Please shorten it to 10000 characters long.
    *----> State Dump for Thread Id 0x70c <----*

    eax=00eaff54 ebx=00000000 ecx=000a3080 edx=7c90eb94 esi=000a3080 edi=000a3124
    eip=7c90eb94 esp=00eafe1c ebp=00eaff80 iopl=0 nv up ei pl zr na po nc
    cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000246

    function: ntdll!KiFastSystemCallRet
    7c90eb89 90 nop
    7c90eb8a 90 nop
    7c90eb8b 8bd4 mov edx,esp
    7c90eb8d 0f34 sysenter
    7c90eb8f 90 nop
    7c90eb90 90 nop
    7c90eb91 90 nop
    7c90eb92 90 nop
    7c90eb93 90 nop
    7c90eb94 c3 ret
    7c90eb95 8da42400000000 lea esp,[esp]
    7c90eb9c 8d642400 lea esp,[esp]
    7c90eba0 90 nop
    7c90eba1 90 nop
    7c90eba2 90 nop
    7c90eba3 90 nop
    7c90eba4 90 nop
    7c90eba5 8d542408 lea edx,[esp+0x8]
    7c90eba9 cd2e int 2e

    *----> Stack Back Trace <----*
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\RPCRT4.dll -
    WARNING: Stack unwind information not available. Following frames may be wrong.
    ChildEBP RetAddr Args to Child
    00eaff80 77e76c22 00eaffa8 77e76a3b 000a3080 ntdll!KiFastSystemCallRet
    00eaff88 77e76a3b 000a3080 00000000 0007f88c RPCRT4!I_RpcBCacheFree+0x5ea
    00eaffa8 77e76c0a 000b4a70 00eaffec 7c80b50b RPCRT4!I_RpcBCacheFree+0x403
    00eaffb4 7c80b50b 000c7270 00000000 0007f88c RPCRT4!I_RpcBCacheFree+0x5d2
    00eaffec 00000000 77e76bf0 000c7270 00000000 kernel32!GetModuleFileNameA+0x1b4

    *----> Raw Stack Dump <----*
    The text that you have entered is too long (21233 characters). Please shorten it to 10000 characters long.
    *----> State Dump for Thread Id 0x718 <----*

    eax=774fd888 ebx=00007530 ecx=7ffd9000 edx=00000000 esi=00000000 edi=00eeff50
    eip=7c90eb94 esp=00eeff20 ebp=00eeff78 iopl=0 nv up ei pl nz na po nc
    cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000 efl=00000206

    function: ntdll!KiFastSystemCallRet
    7c90eb89 90 nop
    7c90eb8a 90 nop
    7c90eb8b 8bd4 mov edx,esp
    7c90eb8d 0f34 sysenter
    7c90eb8f 90 nop
    7c90eb90 90 nop
    7c90eb91 90 nop
    7c90eb92 90 nop
    7c90eb93 90 nop
    7c90eb94 c3 ret
    7c90eb95 8da42400000000 lea esp,[esp]
    7c90eb9c 8d642400 lea esp,[esp]
    7c90eba0 90 nop
    7c90eba1 90 nop
    7c90eba2 90 nop
    7c90eba3 90 nop
    7c90eba4 90 nop
    7c90eba5 8d542408 lea edx,[esp+0x8]
    7c90eba9 cd2e int 2e

    *----> Stack Back Trace <----*
    WARNING: Stack unwind information not available. Following frames may be wrong.
    *** ERROR: Symbol file could not be found. Defaulted to export symbols for C:\WINDOWS\system32\ole32.dll -
    ChildEBP RetAddr Args to Child
    00eeff78 7c802451 0000ea60 00000000 00eeffb4 ntdll!KiFastSystemCallRet
    00eeff88 774fd6ae 0000ea60 000c5e58 774fd83b kernel32!Sleep+0xf
    00eeffb4 7c80b50b 000c5e58 7c910945 7c91094e ole32!IsValidInterface+0x295
    00eeffec 00000000 774fd888 000c5e58 00000000 kernel32!GetModuleFileNameA+0x1b4

    *----> Raw Stack Dump <----*
    The text that you have entered is too long (21233 characters). Please shorten it to 10000 characters long.
    *----> State Dump for Thread Id 0x728 <----*

    eax=804e5cf0 ebx=00000000 ecx=804e2af1 edx=b24416c8 esi=7c97c0d8 edi=00000000
    eip=7c90eb94 esp=00f3ec18 ebp=00f3eca0 iopl=0 nv up ei pl zr na po nc
    cs=001b ss=0023 ds=0000 es=1604 fs=003b gs=18a8 efl=00000246

    function: ntdll!KiFastSystemCallRet
    7c90eb89 90 nop
    7c90eb8a 90 nop
    7c90eb8b 8bd4 mov edx,esp
    7c90eb8d 0f34 sysenter
    7c90eb8f 90 nop
    7c90eb90 90 nop
    7c90eb91 90 nop
    7c90eb92 90 nop
    7c90eb93 90 nop
    7c90eb94 c3 ret
    7c90eb95 8da42400000000 lea esp,[esp]
    7c90eb9c 8d642400 lea esp,[esp]
    7c90eba0 90 nop
    7c90eba1 90 nop
    7c90eba2 90 nop
    7c90eba3 90 nop
    7c90eba4 90 nop
    7c90eba5 8d542408 lea edx,[esp+0x8]
    7c90eba9 cd2e int 2e

    *----> Stack Back Trace <----*

  2. #2
    Hardware guy Super Moderator FastGame's Avatar
    Join Date
    Apr 2002
    Blasters worm farm
    Registered Organization: Big Booger
    Computer Name: Reverend
    Registered Owner: Fastgame and rik
    Hmm we got tired of all your security software choking us, we're on strike and Mr Watson is our negotiator.....

  3. #3
    Titanium Member
    Join Date
    Jul 2002
    blk helo target, WA
    I'm sending Conan to kick Watson's ass.

  4. #4
    Techzonez Governor Super Moderator Conan's Avatar
    Join Date
    Apr 2002
    Quote Originally Posted by lynchknot
    I'm sending Conan to kick Watson's ass.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts