KIX32.EXE gives Access Violation in Samba CVS PDC

valankar at bigfoot.com valankar at bigfoot.com
Sat Mar 27 04:22:29 GMT 1999


Hello, we are experiencing a problem running Kixstart for NT when using
Samba CVS as a PDC. I had reported a similar problem a few months ago. I
last updated CVS at Wed Mar 24 1998. The program KIX32.EXE crashes when it
is run with a Dr. Watson access violation error. I have included samba
debug logs at level 3, and also drwtsn32.log generated by NT. If you need
the KIX32.EXE program, I have it available at:

http://indiana.cse.fau.edu/~valankar/KIX32.EXE

	We are running Samba on a SPARC Solaris 2.5.1 machine. Any help
appreciated.

	Viraj


log.machinename
---------------

[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 61 of length 93
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBntcreateX (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/nttrans.c:nt_open_pipe(514)
  nt_open_pipe: Known pipe samr opening.
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 62 of length 152
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=72 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)api_pipe_bind_req: \PIPE\samr -> \PIPE\lsass
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 63 of length 140
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=60 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:04, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_CONNECT
[1999/03/24 17:35:04, 3] rpc_server/srv_lsa_hnd.c:set_lsa_policy_samr_pol_status(195)
  Setting policy status=20 pnum=3
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 64 of length 95
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBntcreateX (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/nttrans.c:nt_open_pipe(514)
  nt_open_pipe: Known pipe lsarpc opening.
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 65 of length 152
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=72 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "lsarpc" (pnum 700d)api_pipe_bind_req: \PIPE\lsarpc -> \PIPE\lsass
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 66 of length 164
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=84 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "lsarpc" (pnum 700d)Doing \PIPE\lsarpc
[1999/03/24 17:35:04, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: LSA_OPENPOLICY2
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 67 of length 126
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=46 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "lsarpc" (pnum 700d)Doing \PIPE\lsarpc
[1999/03/24 17:35:04, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: LSA_QUERYINFOPOLICY
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 68 of length 124
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=44 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "lsarpc" (pnum 700d)Doing \PIPE\lsarpc
[1999/03/24 17:35:04, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: LSA_CLOSE
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 69 of length 46
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBclose (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 70 of length 156
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=76 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:04, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_OPEN_DOMAIN
[1999/03/24 17:35:04, 3] rpc_server/srv_lsa_hnd.c:set_lsa_policy_samr_sid(216)
  Setting policy sid=S-1-5-21-3640219026-56508495-3524654312 pnum=4
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 71 of length 144
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=64 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:04, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_OPEN_DOMAIN
[1999/03/24 17:35:04, 3] rpc_server/srv_lsa_hnd.c:set_lsa_policy_samr_sid(216)
  Setting policy sid=S-1-5-32 pnum=5
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 72 of length 176
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=96 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:04, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_LOOKUP_NAMES
[1999/03/24 17:35:04, 3] rpc_server/srv_lsa_hnd.c:get_lsa_policy_samr_sid(239)
  Getting policy sid=S-1-5-21-3640219026-56508495-3524654312 pnum=4
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 73 of length 132
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=52 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:04, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_OPEN_USER
[1999/03/24 17:35:04, 3] rpc_server/srv_lsa_hnd.c:set_lsa_policy_samr_rid(175)
  Setting policy device rid=8c4 pnum=6
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 74 of length 126
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=46 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:04, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_QUERY_USERINFO
[1999/03/24 17:35:04, 3] rpc_server/srv_lsa_hnd.c:get_lsa_policy_samr_rid(258)
  Getting policy device rid=8c4 pnum=6
[1999/03/24 17:35:04, 3] rpc_server/srv_samr.c:get_user_info_21(1819)
  User:[valankar]
[1999/03/24 17:35:04, 3] smbd/process.c:process_smb(565)
  Transaction 75 of length 124
[1999/03/24 17:35:04, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:04, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:04, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=44 params=0 setup=2
[1999/03/24 17:35:04, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:04, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:04, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_QUERY_USERGROUPS
[1999/03/24 17:35:04, 3] rpc_server/srv_lsa_hnd.c:get_lsa_policy_samr_rid(258)
  Getting policy device rid=8c4 pnum=6
[1999/03/24 17:35:04, 0] smbd/uid.c:become_root(366)
  ERROR: become root depth is non zero
[1999/03/24 17:35:04, 0] smbd/uid.c:unbecome_root(387)
  ERROR: unbecome root depth is 0
[1999/03/24 17:35:04, 0] smbd/uid.c:become_root(366)
  ERROR: become root depth is non zero
[1999/03/24 17:35:05, 0] smbd/uid.c:unbecome_root(387)
  ERROR: unbecome root depth is 0
[1999/03/24 17:35:05, 0] smbd/uid.c:become_root(366)
  ERROR: become root depth is non zero
[1999/03/24 17:35:05, 0] smbd/uid.c:unbecome_root(387)
  ERROR: unbecome root depth is 0
[1999/03/24 17:35:05, 0] smbd/uid.c:become_root(366)
  ERROR: become root depth is non zero
[1999/03/24 17:35:05, 0] smbd/uid.c:unbecome_root(387)
  ERROR: unbecome root depth is 0
[1999/03/24 17:35:05, 0] smbd/uid.c:become_root(366)
  ERROR: become root depth is non zero
[1999/03/24 17:35:05, 0] smbd/uid.c:unbecome_root(387)
  ERROR: unbecome root depth is 0
[1999/03/24 17:35:05, 0] smbd/uid.c:become_root(366)
  ERROR: become root depth is non zero
[1999/03/24 17:35:05, 0] smbd/uid.c:unbecome_root(387)
  ERROR: unbecome root depth is 0
[1999/03/24 17:35:05, 3] smbd/process.c:process_smb(565)
  Transaction 76 of length 388
[1999/03/24 17:35:05, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:05, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=308 params=0 setup=2
[1999/03/24 17:35:05, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:05, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:05, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_QUERY_USERALIASES
[1999/03/24 17:35:05, 3] rpc_server/srv_lsa_hnd.c:get_lsa_policy_samr_sid(239)
  Getting policy sid=S-1-5-32 pnum=5
[1999/03/24 17:35:05, 3] smbd/process.c:process_smb(565)
  Transaction 77 of length 124
[1999/03/24 17:35:05, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:05, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=44 params=0 setup=2
[1999/03/24 17:35:05, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:05, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:05, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_CLOSE_HND
[1999/03/24 17:35:05, 3] rpc_server/srv_lsa_hnd.c:close_lsa_policy_hnd(299)
  Closed policy name pnum=6
[1999/03/24 17:35:05, 3] smbd/process.c:process_smb(565)
  Transaction 78 of length 124
[1999/03/24 17:35:05, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:05, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=44 params=0 setup=2
[1999/03/24 17:35:05, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:05, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:05, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_CLOSE_HND
[1999/03/24 17:35:05, 3] rpc_server/srv_lsa_hnd.c:close_lsa_policy_hnd(299)
  Closed policy name pnum=4
[1999/03/24 17:35:05, 3] smbd/process.c:process_smb(565)
  Transaction 79 of length 124
[1999/03/24 17:35:05, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:05, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=44 params=0 setup=2
[1999/03/24 17:35:05, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:05, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:05, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_CLOSE_HND
[1999/03/24 17:35:05, 3] rpc_server/srv_lsa_hnd.c:close_lsa_policy_hnd(299)
  Closed policy name pnum=5
[1999/03/24 17:35:05, 3] smbd/process.c:process_smb(565)
  Transaction 80 of length 156
[1999/03/24 17:35:05, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:05, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=76 params=0 setup=2
[1999/03/24 17:35:05, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:05, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:05, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_OPEN_DOMAIN
[1999/03/24 17:35:05, 3] rpc_server/srv_lsa_hnd.c:set_lsa_policy_samr_sid(216)
  Setting policy sid=S-1-5-21-3640219026-56508495-3524654312 pnum=4
[1999/03/24 17:35:05, 3] smbd/process.c:process_smb(565)
  Transaction 81 of length 126
[1999/03/24 17:35:05, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:05, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=46 params=0 setup=2
[1999/03/24 17:35:05, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:05, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:05, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_QUERY_DOMAIN_INFO
[1999/03/24 17:35:05, 3] smbd/process.c:process_smb(565)
  Transaction 82 of length 126
[1999/03/24 17:35:05, 3] smbd/process.c:switch_message(402)
  switch message SMBtrans (pid 19089)
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:05, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp
[1999/03/24 17:35:05, 3] smbd/ipc.c:reply_trans(3601)
  trans <\PIPE\> data=46 params=0 setup=2
[1999/03/24 17:35:05, 3] smbd/ipc.c:named_pipe(3456)
  named pipe command on <> name
[1999/03/24 17:35:05, 3] smbd/ipc.c:api_fd_reply(3243)
  Got API command 0x26 on pipe "samr" (pnum 700c)Doing \PIPE\samr
[1999/03/24 17:35:05, 3] rpc_server/srv_pipe.c:api_rpc_command(678)
  api_rpc_command: SAMR_QUERY_DOMAIN_INFO
[1999/03/24 17:35:06, 3] smbd/process.c:process_smb(565)
  Transaction 83 of length 46
[1999/03/24 17:35:06, 3] smbd/process.c:switch_message(402)
  switch message SMBclose (pid 19089)
[1999/03/24 17:35:06, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /usr/sambacvs/bin
[1999/03/24 17:35:06, 3] lib/doscalls.c:dos_ChDir(319)
  dos_ChDir to /tmp


drwtsn32.log
------------


Microsoft (R) Windows NT (TM) Version 4.00 DrWtsn32
Copyright (C) 1985-1996 Microsoft Corp. All rights reserved.



Application exception occurred:
        App:  (pid=130)
        When: 3/24/1999 @ 17:35:42.334
        Exception number: c0000005 (access violation)

*----> System Information <----*
        Computer Name: UPROC01
        User Name: valankar
        Number of Processors: 1
        Processor Type: x86 Family 6 Model 3 Stepping 4
        Windows Version: 4.0
        Current Build: 1381
        Current Type: Uniprocessor Free
        Registered Organization: FAU
        Registered Owner: Mahesh Neelakanta

*----> Task List <----*
   0 Idle.exe
   2 System.exe
  20 smss.exe
  30 csrss.exe
  34 WINLOGON.exe
  40 SERVICES.exe
  43 LSASS.exe
  68 SPOOLSS.exe
  82 smartagt.exe
  89 RPCSS.exe
  44 NDDEAGNT.exe
 120 EXPLORER.exe
 136 systray.exe
 138 comsmd.exe
 140 daconfig.exe
 142 em_exec.exe
  71 CMD.exe
 130 KIX32.exe
 126 DRWTSN32.exe
   0 _Total.exe

(00400000 - 00400000) 
(77f60000 - 77fbc000) dll\ntdll.dbg
(77800000 - 7783a000) dll\netapi32.dbg
(779f0000 - 77a36000) dll\msvcrt.dbg
(77f00000 - 77f5e000) dll\kernel32.dbg
(77dc0000 - 77dfe000) dll\advapi32.dbg
(77e70000 - 77ec4000) dll\user32.dbg
(77ed0000 - 77efc000) dll\gdi32.dbg
(77e10000 - 77e62000) dll\rpcrt4.dbg
(77840000 - 77849000) dll\NetRap.dbg
(777e0000 - 777ed000) dll\samlib.dbg
(77720000 - 77731000) dll\mpr.dbg
(77fd0000 - 77ffa000) dll\winmm.dbg
(5f600000 - 5f618000) drv\winspool.dbg
(6bd00000 - 6bd1a000) d:\c151a11\bin\i386\free\cs32ba11.dll
(5f810000 - 5f817000) dll\rpcltc1.dbg

State Dump for Thread Id 0x86

eax=00000000 ebx=00000014 ecx=0012f4a0 edx=00140548 esi=00000000 edi=00142668
eip=7781fcfc esp=0012f43c ebp=0012f46c iopl=0         nv up ei pl zr na po nc
cs=001b  ss=0023  ds=0023  es=0023  fs=003b  gs=0000             efl=00000246


function: NetUserModalsGet
        7781fcd6 7421             jz      NetUserModalsGet+0x289 (7781fcf9)
        7781fcd8 83fe01           cmp     esi,0x1
        7781fcdb 746b             jz      NetUserModalsGet+0x2d8 (7781fd48)
        7781fcdd 83fe02           cmp     esi,0x2
        7781fce0 0f84c5000000     je      NetUserModalsGet+0x33b (7781fdab)
        7781fce6 83fe03           cmp     esi,0x3
        7781fce9 0f8427010000     je      NetUserModalsGet+0x3a6 (7781fe16)
        7781fcef bf7c000000       mov     edi,0x7c
        7781fcf4 e9cafdffff       jmp     NetUserModalsGet+0x53 (7781fac3)
        7781fcf9 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
FAULT ->7781fcfc 0fb708           movzx   ecx,word ptr [eax]         ds:00000000=????
        7781fcff 890f             mov     [edi],ecx              ds:00142668=00140128
        7781fd01 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
        7781fd04 ff700c           push    dword ptr [eax+0xc]    ds:00f0ea06=????????
        7781fd07 83c008           add     eax,0x8
        7781fd0a ff30             push    dword ptr [eax]        ds:00000000=????????
        7781fd0c e8a3470000       call    778244b4
        7781fd11 894704           mov     [edi+0x4],eax          ds:0105106e=????????
        7781fd14 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
        7781fd17 ff7014           push    dword ptr [eax+0x14]   ds:00f0ea06=????????
        7781fd1a 83c010           add     eax,0x10
        7781fd1d ff30             push    dword ptr [eax]        ds:00000000=????????

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1  Param#2  Param#3  Param#4  Function Name
0012f46c 0040162b 0012f8b4 00000000 0012f4a0 77fa55b0 netapi32!NetUserModalsGet 

*----> Raw Stack Dump <----*
0012f43c  b0 55 fa 77 ca c1 f6 77 - 00 f0 fd 7f 00 00 00 00  .U.w...w........
0012f44c  00 00 00 00 b0 f4 12 00 - 00 00 00 00 00 00 00 00  ................
0012f45c  00 00 00 00 48 26 14 00 - 00 00 00 00 78 1d 14 00  ....H&......x...
0012f46c  e4 fc 12 00 2b 16 40 00 - b4 f8 12 00 00 00 00 00  ....+. at .........
0012f47c  a0 f4 12 00 b0 55 fa 77 - ca c1 f6 77 00 f0 fd 7f  .....U.w...w....
0012f48c  00 00 00 00 00 00 00 00 - 34 ec 81 77 3b ee 81 77  ........4..w;..w
0012f49c  dc f4 12 00 68 26 14 00 - fc 12 80 77 e4 f6 12 00  ....h&.....w....
0012f4ac  1b 12 80 77 76 00 61 00 - 6c 00 61 00 6e 00 6b 00  ...wv.a.l.a.n.k.
0012f4bc  61 00 72 00 00 00 de 77 - c4 f7 12 00 00 00 00 02  a.r....w........
0012f4cc  f4 f4 12 00 00 00 00 00 - 70 f5 12 00 00 00 00 00  ........p.......
0012f4dc  00 00 00 00 00 00 00 00 - 10 00 00 00 70 f5 12 00  ............p...
0012f4ec  79 00 5c 00 4d 00 61 00 - 18 00 00 00 62 1e fd 77  y.\.M.a.....b..w
0012f4fc  54 00 00 00 3c f7 12 00 - 02 00 00 00 20 f5 12 00  T...<....... ...
0012f50c  18 02 00 00 38 f7 12 00 - 00 00 00 00 6e 4e f0 77  ....8.......nN.w
0012f51c  a8 0e 14 00 78 f5 12 00 - b9 9a dd 77 10 00 00 00  ....x......w....
0012f52c  68 f5 12 00 70 f5 12 00 - 00 00 00 00 00 00 00 02  h...p...........
0012f53c  00 00 00 00 c4 f7 12 00 - 00 00 00 00 fc 7e d0 6b  .............~.k
0012f54c  b8 29 f1 77 0a 00 00 00 - 4f 00 4e 00 5c 00 53 00  .).w....O.N.\.S.
0012f55c  79 00 73 00 74 00 65 00 - 6d 00 5c 00 7a 00 7c 00  y.s.t.e.m.\.z.|.
0012f56c  bc f5 12 00 00 00 00 00 - 00 00 00 00 c8 f7 12 00  ................



Application exception occurred:
        App:  (pid=132)
        When: 3/24/1999 @ 17:35:56.264
        Exception number: c0000005 (access violation)

*----> System Information <----*
        Computer Name: UPROC01
        User Name: valankar
        Number of Processors: 1
        Processor Type: x86 Family 6 Model 3 Stepping 4
        Windows Version: 4.0
        Current Build: 1381
        Current Type: Uniprocessor Free
        Registered Organization: FAU
        Registered Owner: Mahesh Neelakanta

*----> Task List <----*
   0 Idle.exe
   2 System.exe
  20 smss.exe
  30 csrss.exe
  34 WINLOGON.exe
  40 SERVICES.exe
  43 LSASS.exe
  68 SPOOLSS.exe
  82 smartagt.exe
  89 RPCSS.exe
  44 NDDEAGNT.exe
 120 EXPLORER.exe
 136 systray.exe
 138 comsmd.exe
 140 daconfig.exe
 142 em_exec.exe
  71 CMD.exe
 132 KIX32.exe
 130 DRWTSN32.exe
   0 _Total.exe

(00400000 - 00400000) 
(77f60000 - 77fbc000) dll\ntdll.dbg
(77800000 - 7783a000) dll\netapi32.dbg
(779f0000 - 77a36000) dll\msvcrt.dbg
(77f00000 - 77f5e000) dll\kernel32.dbg
(77dc0000 - 77dfe000) dll\advapi32.dbg
(77e70000 - 77ec4000) dll\user32.dbg
(77ed0000 - 77efc000) dll\gdi32.dbg
(77e10000 - 77e62000) dll\rpcrt4.dbg
(77840000 - 77849000) dll\NetRap.dbg
(777e0000 - 777ed000) dll\samlib.dbg
(77720000 - 77731000) dll\mpr.dbg
(77fd0000 - 77ffa000) dll\winmm.dbg
(5f600000 - 5f618000) drv\winspool.dbg
(6bd00000 - 6bd1a000) d:\c151a11\bin\i386\free\cs32ba11.dll
(5f810000 - 5f817000) dll\rpcltc1.dbg

State Dump for Thread Id 0x81

eax=00000000 ebx=00000014 ecx=0012f4a0 edx=00140548 esi=00000000 edi=00142668
eip=7781fcfc esp=0012f43c ebp=0012f46c iopl=0         nv up ei pl zr na po nc
cs=001b  ss=0023  ds=0023  es=0023  fs=003b  gs=0000             efl=00000246


function: NetUserModalsGet
        7781fcd6 7421             jz      NetUserModalsGet+0x289 (7781fcf9)
        7781fcd8 83fe01           cmp     esi,0x1
        7781fcdb 746b             jz      NetUserModalsGet+0x2d8 (7781fd48)
        7781fcdd 83fe02           cmp     esi,0x2
        7781fce0 0f84c5000000     je      NetUserModalsGet+0x33b (7781fdab)
        7781fce6 83fe03           cmp     esi,0x3
        7781fce9 0f8427010000     je      NetUserModalsGet+0x3a6 (7781fe16)
        7781fcef bf7c000000       mov     edi,0x7c
        7781fcf4 e9cafdffff       jmp     NetUserModalsGet+0x53 (7781fac3)
        7781fcf9 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
FAULT ->7781fcfc 0fb708           movzx   ecx,word ptr [eax]         ds:00000000=????
        7781fcff 890f             mov     [edi],ecx              ds:00142668=00140128
        7781fd01 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
        7781fd04 ff700c           push    dword ptr [eax+0xc]    ds:00f0ea06=????????
        7781fd07 83c008           add     eax,0x8
        7781fd0a ff30             push    dword ptr [eax]        ds:00000000=????????
        7781fd0c e8a3470000       call    778244b4
        7781fd11 894704           mov     [edi+0x4],eax          ds:0105106e=????????
        7781fd14 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
        7781fd17 ff7014           push    dword ptr [eax+0x14]   ds:00f0ea06=????????
        7781fd1a 83c010           add     eax,0x10
        7781fd1d ff30             push    dword ptr [eax]        ds:00000000=????????

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1  Param#2  Param#3  Param#4  Function Name
0012f46c 0040162b 0012f8b4 00000000 0012f4a0 77fa55b0 netapi32!NetUserModalsGet 

*----> Raw Stack Dump <----*
0012f43c  b0 55 fa 77 ca c1 f6 77 - 00 f0 fd 7f 00 00 00 00  .U.w...w........
0012f44c  00 00 00 00 b0 f4 12 00 - 00 00 00 00 00 00 00 00  ................
0012f45c  00 00 00 00 48 26 14 00 - 00 00 00 00 78 1d 14 00  ....H&......x...
0012f46c  e4 fc 12 00 2b 16 40 00 - b4 f8 12 00 00 00 00 00  ....+. at .........
0012f47c  a0 f4 12 00 b0 55 fa 77 - ca c1 f6 77 00 f0 fd 7f  .....U.w...w....
0012f48c  00 00 00 00 00 00 00 00 - 34 ec 81 77 3b ee 81 77  ........4..w;..w
0012f49c  dc f4 12 00 68 26 14 00 - fc 12 80 77 e4 f6 12 00  ....h&.....w....
0012f4ac  1b 12 80 77 76 00 61 00 - 6c 00 61 00 6e 00 6b 00  ...wv.a.l.a.n.k.
0012f4bc  61 00 72 00 00 00 de 77 - c4 f7 12 00 00 00 00 02  a.r....w........
0012f4cc  f4 f4 12 00 00 00 00 00 - 70 f5 12 00 00 00 00 00  ........p.......
0012f4dc  00 00 00 00 00 00 00 00 - 78 00 00 00 70 f5 12 00  ........x...p...
0012f4ec  79 00 5c 00 4d 00 61 00 - 18 00 00 00 62 1e fd 77  y.\.M.a.....b..w
0012f4fc  50 00 00 00 3c f7 12 00 - 02 00 00 00 20 f5 12 00  P...<....... ...
0012f50c  18 02 00 00 38 f7 12 00 - 00 00 00 00 6e 4e f0 77  ....8.......nN.w
0012f51c  a8 0e 14 00 78 f5 12 00 - b9 9a dd 77 78 00 00 00  ....x......wx...
0012f52c  68 f5 12 00 70 f5 12 00 - 00 00 00 00 00 00 00 02  h...p...........
0012f53c  00 00 00 00 c4 f7 12 00 - 00 00 00 00 fc 7e d0 6b  .............~.k
0012f54c  b8 29 f1 77 0a 00 00 00 - 4f 00 4e 00 5c 00 53 00  .).w....O.N.\.S.
0012f55c  79 00 73 00 74 00 65 00 - 6d 00 5c 00 7a 00 7c 00  y.s.t.e.m.\.z.|.
0012f56c  bc f5 12 00 00 00 00 00 - 00 00 00 00 c8 f7 12 00  ................



Application exception occurred:
        App:  (pid=127)
        When: 3/24/1999 @ 17:57:16.225
        Exception number: c0000005 (access violation)

*----> System Information <----*
        Computer Name: UPROC01
        User Name: valankar
        Number of Processors: 1
        Processor Type: x86 Family 6 Model 3 Stepping 4
        Windows Version: 4.0
        Current Build: 1381
        Current Type: Uniprocessor Free
        Registered Organization: FAU
        Registered Owner: Mahesh Neelakanta

*----> Task List <----*
   0 Idle.exe
   2 System.exe
  20 smss.exe
  30 csrss.exe
  34 WINLOGON.exe
  40 SERVICES.exe
  43 LSASS.exe
  68 SPOOLSS.exe
  82 smartagt.exe
  89 RPCSS.exe
  44 NDDEAGNT.exe
 120 EXPLORER.exe
 136 systray.exe
 138 comsmd.exe
 140 daconfig.exe
 142 em_exec.exe
  71 CMD.exe
 127 KIX32.exe
 130 DRWTSN32.exe
   0 _Total.exe

(00400000 - 00400000) 
(77f60000 - 77fbc000) dll\ntdll.dbg
(77800000 - 7783a000) dll\netapi32.dbg
(779f0000 - 77a36000) dll\msvcrt.dbg
(77f00000 - 77f5e000) dll\kernel32.dbg
(77dc0000 - 77dfe000) dll\advapi32.dbg
(77e70000 - 77ec4000) dll\user32.dbg
(77ed0000 - 77efc000) dll\gdi32.dbg
(77e10000 - 77e62000) dll\rpcrt4.dbg
(77840000 - 77849000) dll\NetRap.dbg
(777e0000 - 777ed000) dll\samlib.dbg
(77720000 - 77731000) dll\mpr.dbg
(77fd0000 - 77ffa000) dll\winmm.dbg
(5f600000 - 5f618000) drv\winspool.dbg
(6bd00000 - 6bd1a000) d:\c151a11\bin\i386\free\cs32ba11.dll
(5f810000 - 5f817000) dll\rpcltc1.dbg

State Dump for Thread Id 0x5c

eax=00000000 ebx=00000014 ecx=0012f4a0 edx=00140548 esi=00000000 edi=00142668
eip=7781fcfc esp=0012f43c ebp=0012f46c iopl=0         nv up ei pl zr na po nc
cs=001b  ss=0023  ds=0023  es=0023  fs=003b  gs=0000             efl=00000246


function: NetUserModalsGet
        7781fcd6 7421             jz      NetUserModalsGet+0x289 (7781fcf9)
        7781fcd8 83fe01           cmp     esi,0x1
        7781fcdb 746b             jz      NetUserModalsGet+0x2d8 (7781fd48)
        7781fcdd 83fe02           cmp     esi,0x2
        7781fce0 0f84c5000000     je      NetUserModalsGet+0x33b (7781fdab)
        7781fce6 83fe03           cmp     esi,0x3
        7781fce9 0f8427010000     je      NetUserModalsGet+0x3a6 (7781fe16)
        7781fcef bf7c000000       mov     edi,0x7c
        7781fcf4 e9cafdffff       jmp     NetUserModalsGet+0x53 (7781fac3)
        7781fcf9 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
FAULT ->7781fcfc 0fb708           movzx   ecx,word ptr [eax]         ds:00000000=????
        7781fcff 890f             mov     [edi],ecx              ds:00142668=00140128
        7781fd01 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
        7781fd04 ff700c           push    dword ptr [eax+0xc]    ds:00f0ea06=????????
        7781fd07 83c008           add     eax,0x8
        7781fd0a ff30             push    dword ptr [eax]        ds:00000000=????????
        7781fd0c e8a3470000       call    778244b4
        7781fd11 894704           mov     [edi+0x4],eax          ds:0105106e=????????
        7781fd14 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
        7781fd17 ff7014           push    dword ptr [eax+0x14]   ds:00f0ea06=????????
        7781fd1a 83c010           add     eax,0x10
        7781fd1d ff30             push    dword ptr [eax]        ds:00000000=????????

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1  Param#2  Param#3  Param#4  Function Name
0012f46c 0040162b 0012f8b4 00000000 0012f4a0 77fa55b0 netapi32!NetUserModalsGet 

*----> Raw Stack Dump <----*
0012f43c  b0 55 fa 77 ca c1 f6 77 - 00 f0 fd 7f 00 00 00 00  .U.w...w........
0012f44c  00 00 00 00 b0 f4 12 00 - 00 00 00 00 00 00 00 00  ................
0012f45c  00 00 00 00 48 26 14 00 - 00 00 00 00 78 1d 14 00  ....H&......x...
0012f46c  e4 fc 12 00 2b 16 40 00 - b4 f8 12 00 00 00 00 00  ....+. at .........
0012f47c  a0 f4 12 00 b0 55 fa 77 - ca c1 f6 77 00 f0 fd 7f  .....U.w...w....
0012f48c  00 00 00 00 00 00 00 00 - 34 ec 81 77 3b ee 81 77  ........4..w;..w
0012f49c  dc f4 12 00 68 26 14 00 - fc 12 80 77 e4 f6 12 00  ....h&.....w....
0012f4ac  1b 12 80 77 76 00 61 00 - 6c 00 61 00 6e 00 6b 00  ...wv.a.l.a.n.k.
0012f4bc  61 00 72 00 00 00 de 77 - c4 f7 12 00 00 00 00 02  a.r....w........
0012f4cc  f4 f4 12 00 00 00 00 00 - 70 f5 12 00 00 00 00 00  ........p.......
0012f4dc  00 00 00 00 00 00 00 00 - 70 00 00 00 70 f5 12 00  ........p...p...
0012f4ec  79 00 5c 00 4d 00 61 00 - 18 00 00 00 62 1e fd 77  y.\.M.a.....b..w
0012f4fc  50 00 00 00 3c f7 12 00 - 02 00 00 00 20 f5 12 00  P...<....... ...
0012f50c  18 02 00 00 38 f7 12 00 - 00 00 00 00 6e 4e f0 77  ....8.......nN.w
0012f51c  a8 0e 14 00 78 f5 12 00 - b9 9a dd 77 70 00 00 00  ....x......wp...
0012f52c  68 f5 12 00 70 f5 12 00 - 00 00 00 00 00 00 00 02  h...p...........
0012f53c  00 00 00 00 c4 f7 12 00 - 00 00 00 00 fc 7e d0 6b  .............~.k
0012f54c  b8 29 f1 77 0a 00 00 00 - 4f 00 4e 00 5c 00 53 00  .).w....O.N.\.S.
0012f55c  79 00 73 00 74 00 65 00 - 6d 00 5c 00 7a 00 7c 00  y.s.t.e.m.\.z.|.
0012f56c  bc f5 12 00 00 00 00 00 - 00 00 00 00 c8 f7 12 00  ................



Application exception occurred:
        App:  (pid=98)
        When: 3/24/1999 @ 17:58:48.397
        Exception number: c0000005 (access violation)

*----> System Information <----*
        Computer Name: UPROC01
        User Name: valankar
        Number of Processors: 1
        Processor Type: x86 Family 6 Model 3 Stepping 4
        Windows Version: 4.0
        Current Build: 1381
        Current Type: Uniprocessor Free
        Registered Organization: FAU
        Registered Owner: Mahesh Neelakanta

*----> Task List <----*
   0 Idle.exe
   2 System.exe
  20 smss.exe
  30 csrss.exe
  34 WINLOGON.exe
  40 SERVICES.exe
  43 LSASS.exe
  68 SPOOLSS.exe
  82 smartagt.exe
  89 RPCSS.exe
  44 NDDEAGNT.exe
 120 EXPLORER.exe
 136 systray.exe
 138 comsmd.exe
 140 daconfig.exe
 142 em_exec.exe
  71 CMD.exe
  98 KIX32.exe
 130 DRWTSN32.exe
   0 _Total.exe

(00400000 - 00400000) 
(77f60000 - 77fbc000) dll\ntdll.dbg
(77800000 - 7783a000) dll\netapi32.dbg
(779f0000 - 77a36000) dll\msvcrt.dbg
(77f00000 - 77f5e000) dll\kernel32.dbg
(77dc0000 - 77dfe000) dll\advapi32.dbg
(77e70000 - 77ec4000) dll\user32.dbg
(77ed0000 - 77efc000) dll\gdi32.dbg
(77e10000 - 77e62000) dll\rpcrt4.dbg
(77840000 - 77849000) dll\NetRap.dbg
(777e0000 - 777ed000) dll\samlib.dbg
(77720000 - 77731000) dll\mpr.dbg
(77fd0000 - 77ffa000) dll\winmm.dbg
(5f600000 - 5f618000) drv\winspool.dbg
(6bd00000 - 6bd1a000) d:\c151a11\bin\i386\free\cs32ba11.dll
(5f810000 - 5f817000) dll\rpcltc1.dbg

State Dump for Thread Id 0x7e

eax=00000000 ebx=00000014 ecx=0012f4a0 edx=00140548 esi=00000000 edi=00142668
eip=7781fcfc esp=0012f43c ebp=0012f46c iopl=0         nv up ei pl zr na po nc
cs=001b  ss=0023  ds=0023  es=0023  fs=003b  gs=0000             efl=00000246


function: NetUserModalsGet
        7781fcd6 7421             jz      NetUserModalsGet+0x289 (7781fcf9)
        7781fcd8 83fe01           cmp     esi,0x1
        7781fcdb 746b             jz      NetUserModalsGet+0x2d8 (7781fd48)
        7781fcdd 83fe02           cmp     esi,0x2
        7781fce0 0f84c5000000     je      NetUserModalsGet+0x33b (7781fdab)
        7781fce6 83fe03           cmp     esi,0x3
        7781fce9 0f8427010000     je      NetUserModalsGet+0x3a6 (7781fe16)
        7781fcef bf7c000000       mov     edi,0x7c
        7781fcf4 e9cafdffff       jmp     NetUserModalsGet+0x53 (7781fac3)
        7781fcf9 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
FAULT ->7781fcfc 0fb708           movzx   ecx,word ptr [eax]         ds:00000000=????
        7781fcff 890f             mov     [edi],ecx              ds:00142668=00140128
        7781fd01 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
        7781fd04 ff700c           push    dword ptr [eax+0xc]    ds:00f0ea06=????????
        7781fd07 83c008           add     eax,0x8
        7781fd0a ff30             push    dword ptr [eax]        ds:00000000=????????
        7781fd0c e8a3470000       call    778244b4
        7781fd11 894704           mov     [edi+0x4],eax          ds:0105106e=????????
        7781fd14 8b45f8           mov     eax,[ebp-0x8]          ss:0103de72=????????
        7781fd17 ff7014           push    dword ptr [eax+0x14]   ds:00f0ea06=????????
        7781fd1a 83c010           add     eax,0x10
        7781fd1d ff30             push    dword ptr [eax]        ds:00000000=????????

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1  Param#2  Param#3  Param#4  Function Name
0012f46c 0040162b 0012f8b4 00000000 0012f4a0 77fa55b0 netapi32!NetUserModalsGet 

*----> Raw Stack Dump <----*
0012f43c  b0 55 fa 77 ca c1 f6 77 - 00 f0 fd 7f 00 00 00 00  .U.w...w........
0012f44c  00 00 00 00 b0 f4 12 00 - 00 00 00 00 00 00 00 00  ................
0012f45c  00 00 00 00 48 26 14 00 - 00 00 00 00 78 1d 14 00  ....H&......x...
0012f46c  e4 fc 12 00 2b 16 40 00 - b4 f8 12 00 00 00 00 00  ....+. at .........
0012f47c  a0 f4 12 00 b0 55 fa 77 - ca c1 f6 77 00 f0 fd 7f  .....U.w...w....
0012f48c  00 00 00 00 00 00 00 00 - 34 ec 81 77 3b ee 81 77  ........4..w;..w
0012f49c  dc f4 12 00 68 26 14 00 - fc 12 80 77 e4 f6 12 00  ....h&.....w....
0012f4ac  1b 12 80 77 76 00 61 00 - 6c 00 61 00 6e 00 6b 00  ...wv.a.l.a.n.k.
0012f4bc  61 00 72 00 00 00 de 77 - c4 f7 12 00 00 00 00 02  a.r....w........
0012f4cc  f4 f4 12 00 00 00 00 00 - 70 f5 12 00 00 00 00 00  ........p.......
0012f4dc  00 00 00 00 00 00 00 00 - 70 00 00 00 70 f5 12 00  ........p...p...
0012f4ec  79 00 5c 00 4d 00 61 00 - 18 00 00 00 62 1e fd 77  y.\.M.a.....b..w
0012f4fc  50 00 00 00 3c f7 12 00 - 02 00 00 00 20 f5 12 00  P...<....... ...
0012f50c  18 02 00 00 38 f7 12 00 - 00 00 00 00 6e 4e f0 77  ....8.......nN.w
0012f51c  a8 0e 14 00 78 f5 12 00 - b9 9a dd 77 70 00 00 00  ....x......wp...
0012f52c  68 f5 12 00 70 f5 12 00 - 00 00 00 00 00 00 00 02  h...p...........
0012f53c  00 00 00 00 c4 f7 12 00 - 00 00 00 00 fc 7e d0 6b  .............~.k
0012f54c  b8 29 f1 77 0a 00 00 00 - 4f 00 4e 00 5c 00 53 00  .).w....O.N.\.S.
0012f55c  79 00 73 00 b0 55 fa 77 - 00 00 e7 77 01 f0 fd 7f  y.s..U.w...w....
0012f56c  bc f5 12 00 00 00 00 00 - 60 f5 12 00 c8 f7 12 00  ........`.......






More information about the samba-ntdom mailing list