date/time         : 2013-12-30, 12:55:02, 218ms
computer name     : US-HOME01
user name         : Udo.Süß
registered owner  : Udo_Admin
operating system  : Windows 7 x64 Service Pack 1 build 7601
system language   : German
system up time    : 2 hours
program up time   : 11 minutes 46 seconds
processor         : AMD Athlon(tm) 64 Processor 3500+
physical memory   : 1057/3328 MB (free/total)
free disk space   : (C:) 30,40 GB (K:) 1323,13 GB
display mode      : 1920x1200, 32 bit
process id        : $1220
allocated memory  : 95,47 MB
executable        : streamwriter.exe
exec. date/time   : 2013-12-28 06:23
version           : 4.9.0.1
compiled with     : Delphi XE
madExcept version : 4.0.7
callstack crc     : $4dbe09a5, $fb94bdd6, $0d24daef
count             : 2
exception number  : 1
exception class   : EAccessViolation
exception message : Zugriffsverletzung bei Adresse 007351FF in Modul 'streamwriter.exe'. Lesen von Adresse 00000028.

main thread ($1060):
007351ff +16f streamwriter.exe ListsTab      2048  +37 TTitleTree.DoCompare
006e643a +03e streamwriter.exe VirtualTrees 33084   +8 MergeDescending
006e6522 +03a streamwriter.exe VirtualTrees 33147   +5 MergeSortDescending
006e6501 +019 streamwriter.exe VirtualTrees 33145   +3 MergeSortDescending
006e6514 +02c streamwriter.exe VirtualTrees 33146   +4 MergeSortDescending
006e6650 +110 streamwriter.exe VirtualTrees 33191  +28 TBaseVirtualTree.Sort
00734944 +068 streamwriter.exe ListsTab      1814   +8 TTitleTree.SortItems
00734cea +07a streamwriter.exe ListsTab      1927  +19 TTitleTree.DoHeaderClick
006c23e3 +18b streamwriter.exe VirtualTrees 10367  +58 TVirtualTreeColumns.HandleClick
006c5e3c +b88 streamwriter.exe VirtualTrees 12767 +258 TVTHeader.HandleMessage
006dc773 +09f streamwriter.exe VirtualTrees 27016  +26 TBaseVirtualTree.WndProc
00516600 +02c streamwriter.exe Controls                TWinControl.MainWndProc
004514dc +014 streamwriter.exe Classes                 StdWndProc
75ad7885 +00a USER32.dll                               DispatchMessageW
004f2767 +0f3 streamwriter.exe Forms                   TApplication.ProcessMessage
004f27aa +00a streamwriter.exe Forms                   TApplication.HandleMessage
004f2ad5 +0c9 streamwriter.exe Forms                   TApplication.Run
00779c97 +29b streamwriter.exe streamwriter   204  +46 initialization
754f3368 +010 kernel32.dll                             BaseThreadInitThunk

thread $1318:
771b0156 +0e ntdll.dll     NtWaitForMultipleObjects
754f3368 +10 kernel32.dll  BaseThreadInitThunk

thread $904: <priority:15>
771b0156 +0e ntdll.dll                  NtWaitForMultipleObjects
757d15e3 +fa KERNELBASE.dll             WaitForMultipleObjectsEx
754f19f7 +89 kernel32.dll               WaitForMultipleObjectsEx
754f41d3 +13 kernel32.dll               WaitForMultipleObjects
0058b26d +0d streamwriter.exe madExcept CallThreadProcSafe
0058b2d7 +37 streamwriter.exe madExcept ThreadExceptFrame
754f3368 +10 kernel32.dll               BaseThreadInitThunk
>> created by main thread ($1060) at:
6dc8f671 +00 dsound.DLL

thread $12b4:
771b0156 +0e ntdll.dll                  NtWaitForMultipleObjects
757d15e3 +fa KERNELBASE.dll             WaitForMultipleObjectsEx
754f19f7 +89 kernel32.dll               WaitForMultipleObjectsEx
0058b26d +0d streamwriter.exe madExcept CallThreadProcSafe
0058b2d7 +37 streamwriter.exe madExcept ThreadExceptFrame
754f3368 +10 kernel32.dll               BaseThreadInitThunk
>> created by thread $904 at:
64815ff1 +00 MMDevApi.dll

thread $1150: <priority:15>
771b0156 +0e ntdll.dll                  NtWaitForMultipleObjects
757d15e3 +fa KERNELBASE.dll             WaitForMultipleObjectsEx
754f19f7 +89 kernel32.dll               WaitForMultipleObjectsEx
754f41d3 +13 kernel32.dll               WaitForMultipleObjects
0058b26d +0d streamwriter.exe madExcept CallThreadProcSafe
0058b2d7 +37 streamwriter.exe madExcept ThreadExceptFrame
754f3368 +10 kernel32.dll               BaseThreadInitThunk
>> created by main thread ($1060) at:
6dc8f671 +00 dsound.DLL

thread $4dc: <priority:15>
771af8ca +0e ntdll.dll                  NtWaitForSingleObject
757d1497 +92 KERNELBASE.dll             WaitForSingleObjectEx
754f118f +3e kernel32.dll               WaitForSingleObjectEx
754f1143 +0d kernel32.dll               WaitForSingleObject
0058b26d +0d streamwriter.exe madExcept CallThreadProcSafe
0058b2d7 +37 streamwriter.exe madExcept ThreadExceptFrame
754f3368 +10 kernel32.dll               BaseThreadInitThunk
>> created by main thread ($1060) at:
11020ecc +00 bass.dll

thread $1134: <priority:2>
771b0156 +00e ntdll.dll                  NtWaitForMultipleObjects
757d15e3 +0fa KERNELBASE.dll             WaitForMultipleObjectsEx
754f19f7 +089 kernel32.dll               WaitForMultipleObjectsEx
754f41d3 +013 kernel32.dll               WaitForMultipleObjects
0058b26d +00d streamwriter.exe madExcept CallThreadProcSafe
0058b2d7 +037 streamwriter.exe madExcept ThreadExceptFrame
754f3368 +010 kernel32.dll               BaseThreadInitThunk
>> created by main thread ($1060) at:
11020dd1 +7a4 bass.dll                   BASS_Init

thread $c4c: <priority:15>
771af8ca +00e ntdll.dll                  NtWaitForSingleObject
757d1497 +092 KERNELBASE.dll             WaitForSingleObjectEx
754f118f +03e kernel32.dll               WaitForSingleObjectEx
0058b26d +00d streamwriter.exe madExcept CallThreadProcSafe
0058b2d7 +037 streamwriter.exe madExcept ThreadExceptFrame
754f3368 +010 kernel32.dll               BaseThreadInitThunk
>> created by main thread ($1060) at:
11020def +7c2 bass.dll                   BASS_Init

thread $1144: <priority:15>
771b0156 +0e ntdll.dll                  NtWaitForMultipleObjects
757d15e3 +fa KERNELBASE.dll             WaitForMultipleObjectsEx
754f19f7 +89 kernel32.dll               WaitForMultipleObjectsEx
754f41d3 +13 kernel32.dll               WaitForMultipleObjects
0058b26d +0d streamwriter.exe madExcept CallThreadProcSafe
0058b2d7 +37 streamwriter.exe madExcept ThreadExceptFrame
754f3368 +10 kernel32.dll               BaseThreadInitThunk
>> created by main thread ($1060) at:
6dc8f671 +00 dsound.DLL

thread $11f0 (TWorkerThread):
771af8ca +0e ntdll.dll                             NtWaitForSingleObject
757d1497 +92 KERNELBASE.dll                        WaitForSingleObjectEx
754f118f +3e kernel32.dll                          WaitForSingleObjectEx
754f1143 +0d kernel32.dll                          WaitForSingleObject
006bc38d +19 streamwriter.exe VirtualTrees 6332 +3 TWorkerThread.Execute
0058b38b +2b streamwriter.exe madExcept            HookedTThreadExecute
0044e816 +42 streamwriter.exe Classes              ThreadProc
004073f4 +28 streamwriter.exe System         44 +0 ThreadWrapper
0058b26d +0d streamwriter.exe madExcept            CallThreadProcSafe
0058b2d7 +37 streamwriter.exe madExcept            ThreadExceptFrame
754f3368 +10 kernel32.dll                          BaseThreadInitThunk
>> created by main thread ($1060) at:
006bc282 +16 streamwriter.exe VirtualTrees 6275 +1 TWorkerThread.Create

thread $b7c (TFileWatcher):
771b0156 +00e ntdll.dll                            NtWaitForMultipleObjects
757d15e3 +0fa KERNELBASE.dll                       WaitForMultipleObjectsEx
754f19f7 +089 kernel32.dll                         WaitForMultipleObjectsEx
754f41d3 +013 kernel32.dll                         WaitForMultipleObjects
0074a9c8 +124 streamwriter.exe FileWatcher 113 +26 TFileWatcher.Execute
0058b38b +02b streamwriter.exe madExcept           HookedTThreadExecute
0044e816 +042 streamwriter.exe Classes             ThreadProc
004073f4 +028 streamwriter.exe System       44  +0 ThreadWrapper
0058b26d +00d streamwriter.exe madExcept           CallThreadProcSafe
0058b2d7 +037 streamwriter.exe madExcept           ThreadExceptFrame
754f3368 +010 kernel32.dll                         BaseThreadInitThunk
>> created by main thread ($1060) at:
0074a842 +02e streamwriter.exe FileWatcher  68  +1 TFileWatcher.Create

thread $bb8 (TFileWatcher):
771b0156 +00e ntdll.dll                            NtWaitForMultipleObjects
757d15e3 +0fa KERNELBASE.dll                       WaitForMultipleObjectsEx
754f19f7 +089 kernel32.dll                         WaitForMultipleObjectsEx
754f41d3 +013 kernel32.dll                         WaitForMultipleObjects
0074a9c8 +124 streamwriter.exe FileWatcher 113 +26 TFileWatcher.Execute
0058b38b +02b streamwriter.exe madExcept           HookedTThreadExecute
0044e816 +042 streamwriter.exe Classes             ThreadProc
004073f4 +028 streamwriter.exe System       44  +0 ThreadWrapper
0058b26d +00d streamwriter.exe madExcept           CallThreadProcSafe
0058b2d7 +037 streamwriter.exe madExcept           ThreadExceptFrame
754f3368 +010 kernel32.dll                         BaseThreadInitThunk
>> created by main thread ($1060) at:
0074a842 +02e streamwriter.exe FileWatcher  68  +1 TFileWatcher.Create

thread $1058 (THomeThread):
771af8ca +00e ntdll.dll                          NtWaitForSingleObject
74f32f7b +05b WS2_32.dll                         WahReferenceContextByHandle
74f36a25 +09c WS2_32.dll                         select
0059339a +2fe streamwriter.exe Sockets   400 +80 TSocketThread.Execute
771bec5f +063 ntdll.dll                          bsearch
771be74d +078 ntdll.dll                          RtlAnsiStringToUnicodeString
0058b38b +02b streamwriter.exe madExcept         HookedTThreadExecute
0044e816 +042 streamwriter.exe Classes           ThreadProc
004073f4 +028 streamwriter.exe System     44  +0 ThreadWrapper
0058b26d +00d streamwriter.exe madExcept         CallThreadProcSafe
0058b2d7 +037 streamwriter.exe madExcept         ThreadExceptFrame
754f3368 +010 kernel32.dll                       BaseThreadInitThunk
>> created by main thread ($1060) at:
00592e85 +035 streamwriter.exe Sockets   221  +1 TSocketThread.Create

thread $134 (TICEThread):
771af8ca +00e ntdll.dll                          NtWaitForSingleObject
74f32f7b +05b WS2_32.dll                         WahReferenceContextByHandle
74f36a25 +09c WS2_32.dll                         select
0059339a +2fe streamwriter.exe Sockets   400 +80 TSocketThread.Execute
0069afa4 +000 streamwriter.exe ICEThread 597  +0 TICEThread.Execute
0058b38b +02b streamwriter.exe madExcept         HookedTThreadExecute
0044e816 +042 streamwriter.exe Classes           ThreadProc
004073f4 +028 streamwriter.exe System     44  +0 ThreadWrapper
0058b26d +00d streamwriter.exe madExcept         CallThreadProcSafe
0058b2d7 +037 streamwriter.exe madExcept         ThreadExceptFrame
754f3368 +010 kernel32.dll                       BaseThreadInitThunk
>> created by main thread ($1060) at:
00592e85 +035 streamwriter.exe Sockets   221  +1 TSocketThread.Create

thread $1248 (TICEThread):
771af8ca +00e ntdll.dll                          NtWaitForSingleObject
74f32f7b +05b WS2_32.dll                         WahReferenceContextByHandle
74f36a25 +09c WS2_32.dll                         select
0059339a +2fe streamwriter.exe Sockets   400 +80 TSocketThread.Execute
0069afa4 +000 streamwriter.exe ICEThread 597  +0 TICEThread.Execute
0058b38b +02b streamwriter.exe madExcept         HookedTThreadExecute
0044e816 +042 streamwriter.exe Classes           ThreadProc
004073f4 +028 streamwriter.exe System     44  +0 ThreadWrapper
0058b26d +00d streamwriter.exe madExcept         CallThreadProcSafe
0058b2d7 +037 streamwriter.exe madExcept         ThreadExceptFrame
754f3368 +010 kernel32.dll                       BaseThreadInitThunk
>> created by main thread ($1060) at:
00592e85 +035 streamwriter.exe Sockets   221  +1 TSocketThread.Create

thread $2d4 (TICEThread):
771af8ca +00e ntdll.dll                          NtWaitForSingleObject
74f32f7b +05b WS2_32.dll                         WahReferenceContextByHandle
74f36a25 +09c WS2_32.dll                         select
0059339a +2fe streamwriter.exe Sockets   400 +80 TSocketThread.Execute
0069afa4 +000 streamwriter.exe ICEThread 597  +0 TICEThread.Execute
0058b38b +02b streamwriter.exe madExcept         HookedTThreadExecute
0044e816 +042 streamwriter.exe Classes           ThreadProc
004073f4 +028 streamwriter.exe System     44  +0 ThreadWrapper
0058b26d +00d streamwriter.exe madExcept         CallThreadProcSafe
0058b2d7 +037 streamwriter.exe madExcept         ThreadExceptFrame
754f3368 +010 kernel32.dll                       BaseThreadInitThunk
>> created by main thread ($1060) at:
00592e85 +035 streamwriter.exe Sockets   221  +1 TSocketThread.Create

thread $e40:
771b1f3f +0b ntdll.dll     NtWaitForWorkViaWorkerFactory
754f3368 +10 kernel32.dll  BaseThreadInitThunk

thread $d38:
771b1f3f +0b ntdll.dll     NtWaitForWorkViaWorkerFactory
754f3368 +10 kernel32.dll  BaseThreadInitThunk

modules:
00310000 AquaSnap.Hook.dll                    C:\Program Files (x86)\AquaSnap
00400000 streamwriter.exe  4.9.0.1            K:\StreamWriter
05b10000 bass_aac.dll      2.4.4.2            C:\Users\Udo.Süß\AppData\Local\Temp\streamWriter
10000000 hooxpot.dll       1.6.0.0            L:\PortableApps\dexpot
10100000 lgscroll.dll      4.80.103.0         C:\Program Files\Logitech\SetPoint\x86
11000000 bass.dll          2.4.10.0           C:\Users\Udo.Süß\AppData\Local\Temp\streamWriter
647d0000 AUDIOSES.DLL      6.1.7601.17514     C:\Windows\system32
64810000 MMDevApi.dll      6.1.7601.17514     C:\Windows\System32
6a640000 tiptsf.dll        6.1.7600.16385     C:\Program Files (x86)\Common Files\microsoft shared\ink
6db40000 ntshrui.dll       6.1.7601.17755     C:\Windows\system32
6dc20000 EhStorShell.dll   6.1.7600.16385     C:\Windows\system32
6dc60000 dsound.DLL        6.1.7600.16385     C:\Windows\system32
6dce0000 slc.dll           6.1.7600.16385     C:\Windows\system32
6dcf0000 cscapi.dll        6.1.7601.17514     C:\Windows\system32
6e120000 WindowsCodecs.dll 6.2.9200.16583     C:\Windows\system32
6e320000 POWRPROF.dll      6.1.7600.16385     C:\Windows\system32
6e720000 MSVCR80.dll       8.0.50727.4940     C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
6ef80000 mscms.dll         6.1.7601.17514     C:\Windows\system32
6f570000 FaultRep.dll      6.1.7601.17514     C:\Windows\system32
70980000 dwmapi.dll        6.1.7600.16385     C:\Windows\system32
709a0000 uxtheme.dll       6.1.7600.16385     C:\Windows\system32
70a30000 winmm.dll         6.1.7601.17514     C:\Windows\system32
71050000 srvcli.dll        6.1.7601.17514     C:\Windows\system32
710e0000 wshtcpip.dll      6.1.7600.16385     C:\Windows\System32
71150000 rasadhlp.dll      6.1.7600.16385     C:\Windows\system32
71160000 fwpuclnt.dll      6.1.7601.18283     C:\Windows\System32
711a0000 winrnr.dll        6.1.7600.16385     C:\Windows\System32
711b0000 DNSAPI.dll        6.1.7601.17570     C:\Windows\system32
71210000 mswsock.dll       6.1.7601.18254     C:\Windows\System32
71250000 wshbth.dll        6.1.7601.17514     C:\Windows\system32
71260000 pnrpnsp.dll       6.1.7600.16385     C:\Windows\system32
71280000 napinsp.dll       6.1.7600.16385     C:\Windows\system32
71290000 NLAapi.dll        6.1.7601.17761     C:\Windows\system32
71de0000 profapi.dll       6.1.7600.16385     C:\Windows\system32
71ee0000 USERENV.dll       6.1.7601.17514     C:\Windows\system32
722d0000 apphelp.dll       6.1.7601.17514     C:\Windows\system32
72460000 WINNSI.DLL        6.1.7600.16385     C:\Windows\system32
72470000 IPHLPAPI.DLL      6.1.7601.17514     C:\Windows\system32
72700000 wsock32.dll       6.1.7600.16385     C:\Windows\system32
73f30000 olepro32.dll      6.1.7601.17514     C:\Windows\system32
73f50000 PROPSYS.dll       7.0.7601.17514     C:\Windows\System32
74380000 comctl32.dll      6.10.7601.17514    C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2
74540000 oleacc.dll        7.0.0.0            C:\Windows\system32
74830000 MSACM32.dll       6.1.7600.16385     C:\Windows\system32
74870000 msimg32.dll       6.1.7600.16385     C:\Windows\system32
74a70000 ntmarta.dll       6.1.7600.16385     C:\Windows\system32
74aa0000 winspool.drv      6.1.7601.17514     C:\Windows\system32
74b00000 version.dll       6.1.7600.16385     C:\Windows\system32
74bd0000 CRYPTBASE.dll     6.1.7600.16385     C:\Windows\syswow64
74be0000 SspiCli.dll       6.1.7601.18270     C:\Windows\syswow64
74c50000 comdlg32.dll      6.1.7601.17514     C:\Windows\syswow64
74cd0000 WLDAP32.dll       6.1.7601.17514     C:\Windows\syswow64
74d20000 MSCTF.dll         6.1.7600.16385     C:\Windows\syswow64
74f30000 WS2_32.dll        6.1.7601.17514     C:\Windows\syswow64
74fb0000 SETUPAPI.dll      6.1.7601.17514     C:\Windows\syswow64
751a0000 LPK.dll           6.1.7601.18177     C:\Windows\syswow64
751b0000 SHLWAPI.dll       6.1.7601.17514     C:\Windows\syswow64
75210000 msvcrt.dll        7.0.7601.17744     C:\Windows\syswow64
752c0000 IMM32.DLL         6.1.7601.17514     C:\Windows\system32
754e0000 kernel32.dll      6.1.7601.18229     C:\Windows\syswow64
755f0000 CFGMGR32.dll      6.1.7601.17621     C:\Windows\syswow64
75690000 GDI32.dll         6.1.7601.18275     C:\Windows\syswow64
75720000 ADVAPI32.dll      6.1.7601.18247     C:\Windows\syswow64
757c0000 KERNELBASE.dll    6.1.7601.18229     C:\Windows\syswow64
75810000 sechost.dll       6.1.7600.16385     C:\Windows\SysWOW64
75830000 USP10.dll         1.626.7601.18009   C:\Windows\syswow64
758d0000 oleaut32.dll      6.1.7601.17676     C:\Windows\syswow64
75a00000 CLBCatQ.DLL       2001.12.8530.16385 C:\Windows\syswow64
75a90000 NSI.dll           6.1.7600.16385     C:\Windows\syswow64
75aa0000 DEVOBJ.dll        6.1.7601.17621     C:\Windows\syswow64
75ac0000 USER32.dll        6.1.7601.17514     C:\Windows\syswow64
75bd0000 RPCRT4.dll        6.1.7601.18205     C:\Windows\syswow64
75de0000 ole32.dll         6.1.7601.17514     C:\Windows\syswow64
75f40000 shell32.dll       6.1.7601.18222     C:\Windows\syswow64
77190000 ntdll.dll         6.1.7601.18247     C:\Windows\SysWOW64

processes:
0000 Idle                               0 0   0
0004 System                             0 0   0
0128 smss.exe                           0 0   0
01d0 csrss.exe                          0 0   0
020c wininit.exe                        0 0   0
0214 csrss.exe                          1 0   0
0254 services.exe                       0 0   0
0264 winlogon.exe                       1 0   0
026c lsass.exe                          0 0   0
0274 lsm.exe                            0 0   0
02f0 svchost.exe                        0 0   0
0348 USBSRService.exe                   0 0   0
0364 nvvsvc.exe                         0 0   0
037c nvSCPAPISvr.exe                    0 0   0
03a0 svchost.exe                        0 0   0
03d0 svchost.exe                        0 0   0
015c svchost.exe                        0 0   0
0144 svchost.exe                        0 0   0
041c svchost.exe                        0 0   0
0458 audiodg.exe                        0 0   0
047c svchost.exe                        0 0   0
0554 nvxdsync.exe                       1 0   0
055c nvvsvc.exe                         1 0   0
0568 svchost.exe                        0 0   0
05e0 AvastSvc.exe                       0 0   0
066c spoolsv.exe                        0 0   0
0694 svchost.exe                        0 0   0
071c svchost.exe                        0 0   0
0744 Netzmanager_Service.exe            0 0   0
07f0 taskhost.exe                       1 28  23  normal
0584 dwm.exe                            1 21  3   high
0300 explorer.exe                       1 511 282 normal
07ac NvNetworkService.exe               0 0   0
05fc nvstreamsvc.exe                    0 0   0
0828 svchost.exe                        0 0   0
09b4 SOUNDMAN.EXE                       1 19  8   normal C:\Windows
09e4 NvTmru.exe                         1 9   4   normal C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core
0a58 nvstreamsvc.exe                    1 0   0
0a60 conhost.exe                        1 0   0
0a98 NvBackend.exe                      1 9   4   normal C:\Program Files (x86)\NVIDIA Corporation\Update Core
0b20 WmiPrvSE.exe                       0 0   0
0b74 USBSafelyRemove.exe                1 499 104 normal C:\Program Files (x86)\USB Safely Remove
0b88 SearchIndexer.exe                  0 0   0
0be4 AquaSnap.Daemon.exe                1 35  32  high   C:\Program Files (x86)\AquaSnap
07c4 DeskDrive.exe                      1 42  51  normal
0a48 AquaSnap.Daemon.x64.exe            1 14  13  high
0a7c Rainlendar2.exe                    1 49  48  normal
0b54 AvastUI.exe                        1 140 55  normal C:\Program Files\AVAST Software\Avast
0bf8 nvtray.exe                         1 81  5   normal
0c14 SetPoint.exe                       1 18  14  normal
0c20 WUDFHost.exe                       0 0   0
0c68 jusched.exe                        1 9   3   normal C:\Program Files (x86)\Common Files\Java\Java Update
0ce4 CNMNSST.exe                        1 15  7   normal C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX
0d68 VCDDaemon.exe                      1 18  8   normal C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive
0d70 netzmanager.exe                    1 35  37  normal
0e8c wmpnetwk.exe                       0 0   0
0aa0 SetPoint32.exe                     1 15  12  normal C:\Program Files\Logitech\SetPoint\x86
0da8 PortableAppsPlatform.exe           1 914 348 normal L:\PortableApps\PortableApps.com
0fb8 KHALMNPR.exe                       1 9   17  normal
119c phraseexpress.exe                  1 379 460 normal L:\PortableApps\phraseexpress
11b0 dexpot.exe                         1 302 391 normal L:\PortableApps\dexpot
1228 QW.EXE                             1 176 241 normal C:\Program Files (x86)\Lexware\Quicken\2010
10fc svchost.exe                        0 0   0
044c Dexpot64.exe                       1 9   8   normal
0b94 DexControl.exe                     1 14  11  normal L:\PortableApps\dexpot\plugins
10c4 thunderbird.exe                    1 496 76  normal C:\Program Files (x86)\Mozilla Thunderbird
0f28 firefox.exe                        1 180 108 normal C:\Program Files (x86)\Mozilla Firefox
1170 plugin-container.exe               1 9   23  normal C:\Program Files (x86)\Mozilla Firefox
0998 FlashPlayerPlugin_11_9_900_170.exe 1 9   9   normal C:\Windows\SysWOW64\Macromed\Flash
10a0 FlashPlayerPlugin_11_9_900_170.exe 1 28  25  normal C:\Windows\SysWOW64\Macromed\Flash
1220 streamwriter.exe                   1 748 240 normal K:\StreamWriter

hardware:
+ Computer
  - ACPI x64-based PC
+ Disk drives
  - Kingston DataTraveler 2.0 USB Device
  - SAMSUNG SP1654N ATA Device
  - WDC WD800JB-00JJC0 ATA Device
  - WDC WD800JD-08MSA1 ATA Device
  - WL2000GSA6454G ATA Device
+ Display adapters
  - NVIDIA GeForce 8500 GT (driver 9.18.13.3165)
+ DVD/CD-ROM drives
  - ELBY CLONEDRIVE SCSI CdRom Device
  - HL-DT-ST DVDRAM GSA-4163B ATA Device
  - PIONEER DVD-ROM DVD-105 ATA Device
+ Floppy disk drives
  - Diskettenlaufwerk
+ Floppy drive controllers
  - Standard-Diskettenlaufwerkcontroller
+ IDE ATA/ATAPI controllers
  - ATA Channel 0
  - ATA Channel 0
  - ATA Channel 0
  - ATA Channel 1
  - ATA Channel 1
  - ATA Channel 1
  - Standard-Zweikanal-PCI-IDE-Controller
  - Standard-Zweikanal-PCI-IDE-Controller
  - Standard-Zweikanal-PCI-IDE-Controller
+ Keyboards
  - PS/2 Keyboard (driver 4.82.4.0)
+ Mice and other pointing devices
  - PS/2 Mouse (driver 4.82.4.0)
+ Modems
  - PCI CX11252-41Z Soft Modem
+ Monitors
  - Dell U2412M(Digital) (driver 1.0.0.0)
+ Network adapters
  - Microsoft-ISATAP-Adapter
  - Microsoft-ISATAP-Adapter #2
  - NVIDIA nForce-Netzwerkcontroller
  - Teredo Tunneling Pseudo-Interface
  - WAN Miniport (IKEv2)
  - WAN-Miniport (IP)
  - WAN-Miniport (IPv6)
  - WAN-Miniport (L2TP)
  - WAN-Miniport (Netzwerkmonitor)
  - WAN-Miniport (PPPOE)
  - WAN-Miniport (PPTP)
  - WAN-Miniport (SSTP)
+ Portable Devices
  - Udo_Süß_8GB
+ Ports (COM & LPT)
  - Druckeranschluss (LPT1)
  - Kommunikationsanschluss (COM1)
+ Processors
  - AMD Athlon(tm) 64 Processor 3500+
+ Sound, video and game controllers
  - NVIDIA Virtual Audio Device (Wave Extensible) (WDM) (driver 1.2.12.0)
  - Realtek AC'97 Audio (driver 6.0.1.6305)
+ Storage controllers
  - Virtual CloneDrive (driver 5.4.7.0)
+ Storage volume shadow copies
  - Standard-Volumeschattenkopie
  - Standard-Volumeschattenkopie
  - Standard-Volumeschattenkopie
  - Standard-Volumeschattenkopie
  - Standard-Volumeschattenkopie
+ System devices
  - ACPI-Einschaltknopf
  - ACPI-Lüfter
  - ACPI-Schalter
  - ACPI-Thermozone
  - AMD DRAM und HyperTransport(tm)-Nachverfolgungsmoduskonfiguration
  - AMD HyperTransport(tm)-Konfiguration
  - AMD-Adresszuordnungskonfiguration
  - Busenumerator für Verbundgeräte
  - DMA-Controller
  - Enumerator-Treiber für Microsoft Virtual Drive
  - Hauptplatinenressourcen
  - Hauptplatinenressourcen
  - Hauptplatinenressourcen
  - Logische Schnittstelle für Druckeranschluss
  - Microsoft ACPI-konformes System
  - Microsoft-Systemverwaltungs-BIOS-Treiber
  - Numerischer Coprozessor
  - NVIDIA nForce PCI-Systemverwaltung
  - NVIDIA nForce4 HyperTransport-Brücke
  - PCI Standard-ISA-Brücke
  - PCI Standard-PCI-zu-PCI-Brücke
  - PCI Standard-PCI-zu-PCI-Brücke
  - PCI Standard-PCI-zu-PCI-Brücke
  - PCI Standard-PCI-zu-PCI-Brücke
  - PCI Standard-PCI-zu-PCI-Brücke
  - PCI-Bus
  - PnP-Softwaregeräte-Enumerator
  - Programmierbarer Interruptcontroller
  - Remote Desktop Device Redirector Bus
  - Sonstige AMD-Konfiguration
  - System CMOS/Echtzeituhr
  - Systemlautsprecher
  - Systemplatine
  - Systemzeitgeber
  - Terminalserver-Maustreiber
  - Terminalserver-Tastaturtreiber
  - Treiber für Datei-als-Volume
  - UMBus-Stamm-Busenumerator
  - UMBusenumerator
  - UMBusenumerator
  - UMBusenumerator
  - Volume-Verwaltung
+ Universal Serial Bus controllers
  - Generic USB Hub
  - Standard OpenHCD USB-Hostcontroller
  - Standard PCI-zu-USB erweiterter Hostcontroller
  - USB-Massenspeichergerät
  - USB-Root-Hub
  - USB-Root-Hub

cpu registers:
eax = 00000000
ebx = 082b8850
ecx = 0939dde0
edx = 00000000
esi = 0939d320
edi = 00000000
eip = 007351ff
esp = 0018fa0c
ebp = 0018fa28

stack dump:
0018fa0c  00 00 00 00 00 00 00 00 - 58 f3 72 00 b0 dd 39 09  ........X.r...9.
0018fa1c  f0 d2 39 09 b0 dd 39 09 - f0 d2 39 09 74 fa 18 00  ..9...9...9.t...
0018fa2c  40 64 6e 00 01 00 00 00 - f0 d2 39 09 02 00 00 00  @dn.......9.....
0018fa3c  f4 9b 2f 08 8c fa 18 00 - 40 64 6e 00 01 00 00 00  ../.....@dn.....
0018fa4c  30 d2 39 09 03 00 00 00 - f4 9b 2f 08 00 00 00 00  0.9......./.....
0018fa5c  58 f3 72 00 70 d2 39 09 - 70 bd 39 09 f0 d2 39 09  X.r.p.9.p.9...9.
0018fa6c  02 00 00 00 40 fa 18 00 - 8c fa 18 00 27 65 6e 00  ....@.......'en.
0018fa7c  ec fb 18 00 30 d2 39 09 - 04 00 00 00 f4 9b 2f 08  ....0.9......./.
0018fa8c  a4 fa 18 00 06 65 6e 00 - ec fb 18 00 30 d2 39 09  .....en.....0.9.
0018fa9c  07 00 00 00 f4 9b 2f 08 - bc fa 18 00 19 65 6e 00  ....../......en.
0018faac  ec fb 18 00 f0 bb 39 09 - 0e 00 00 00 f4 9b 2f 08  ......9......./.
0018fabc  d4 fa 18 00 06 65 6e 00 - ec fb 18 00 f0 bb 39 09  .....en.......9.
0018facc  1c 00 00 00 f4 9b 2f 08 - ec fa 18 00 19 65 6e 00  ....../......en.
0018fadc  ec fb 18 00 30 b5 39 09 - 37 00 00 00 f4 9b 2f 08  ....0.9.7...../.
0018faec  04 fb 18 00 19 65 6e 00 - ec fb 18 00 b0 a7 39 09  .....en.......9.
0018fafc  6d 00 00 00 f4 9b 2f 08 - 1c fb 18 00 19 65 6e 00  m...../......en.
0018fb0c  ec fb 18 00 10 a4 1d 09 - da 00 00 00 f4 9b 2f 08  ............../.
0018fb1c  34 fb 18 00 19 65 6e 00 - ec fb 18 00 e0 fe 3b 09  4....en.......;.
0018fb2c  b4 01 00 00 f4 9b 2f 08 - 4c fb 18 00 19 65 6e 00  ....../.L....en.
0018fb3c  ec fb 18 00 90 7d 3c 09 - 68 03 00 00 f4 9b 2f 08  .....}<.h...../.

disassembling:
[...]
0073516c        cmp     dword ptr [ecx], 0
0073516f        jz      loc_735257
00735175 2033   mov     edx, [ecx]
00735177        mov     edx, [edx+$10]
0073517a        mov     eax, [eax+$10]
0073517d        call    -$10a ($735078)        ; ListsTab.CmpC
00735182        mov     edi, eax
00735184        jmp     loc_735257
00735189 2037   mov     eax, [esi]
0073518b        test    eax, eax
0073518d        jz      loc_7351a8
0073518f        cmp     dword ptr [ecx], 0
00735192        jz      loc_7351a8
00735194 2038   mov     edx, [ecx]
00735196        mov     edx, [edx+4]
00735199        mov     eax, [eax+4]
0073519c        call    -$3168d1 ($41e8d0)     ; SysUtils.CompareText
007351a1        mov     edi, eax
007351a3        jmp     loc_735257
007351a8 2039   cmp     byte ptr [esi+8], 2
007351ac        jnz     loc_7351d2
007351ae        cmp     byte ptr [ecx+8], 2
007351b2        jnz     loc_7351d2
007351b4 2040   mov     eax, [ecx+4]
007351b7        mov     eax, [eax+8]
007351ba        mov     edx, [eax+$10]
007351bd        mov     eax, [esi+4]
007351c0        mov     eax, [eax+8]
007351c3        mov     eax, [eax+$10]
007351c6        call    -$3168fb ($41e8d0)     ; SysUtils.CompareText
007351cb        mov     edi, eax
007351cd        jmp     loc_735257
007351d2 2041   cmp     dword ptr [esi], 0
007351d5        jz      loc_7351e4
007351d7        cmp     dword ptr [ecx+4], 0
007351db        jnz     loc_7351e4
007351dd 2042   mov     edi, 1
007351e2 2043   jmp     loc_735257
007351e4        cmp     dword ptr [esi], 0
007351e7        jnz     loc_735257
007351e9        cmp     dword ptr [ecx+4], 0
007351ed        jz      loc_735257
007351ef 2044   or      edi, -1
007351f2        jmp     loc_735257
007351f4 2048   mov     eax, [esi]
007351f6        mov     eax, [eax+$28]
007351f9        xor     edx, edx
007351fb        push    edx
007351fc        push    eax
007351fd        mov     eax, [ecx]
007351ff      > mov     eax, [eax+$28]
00735202        xor     edx, edx
00735204        push    edx
00735205        push    eax
00735206        xor     eax, eax
00735208        call    -$18ac95 ($5aa578)     ; Functions.CmpInt
0073520d        mov     edi, eax
0073520f        jmp     loc_735257
00735211 2051   mov     eax, [ebp-4]
00735214        cmp     eax, [ebx+$8a4]
0073521a        jnz     loc_735223
0073521c 2052   mov     edi, 1
00735221        jmp     loc_735257
00735223 2053   mov     eax, [ebp-4]
00735226        cmp     eax, [ebx+$8a8]
0073522c        jnz     loc_735233
0073522e 2054   or      edi, -1
00735231        jmp     loc_735257
00735233 2055   mov     eax, [esi]
00735235        test    eax, eax
00735237        jz      loc_735255
00735239        cmp     dword ptr [ecx], 0
0073523c        jz      loc_735255
0073523e 2056   push    dword ptr [eax+$c]
00735241        push    dword ptr [eax+8]
00735244        mov     eax, [ecx]
00735246        push    dword ptr [eax+$c]
00735249        push    dword ptr [eax+8]
0073524c        call    -$209 ($735048)        ; ListsTab.CmpTime
00735251        mov     edi, eax
00735253        jmp     loc_735257
00735255 2058   xor     edi, edi
00735257 2060   mov     eax, edi
00735259        pop     edi
0073525a        pop     esi
0073525b        pop     ebx
0073525c        pop     ecx
0073525d        pop     ecx
0073525e        pop     ebp
0073525f        ret     4

