26

Re: PCMAV 6.2 + Clamav 0.97

mas Fajar, real time protector yg selalu muncul bad folder itu kenapa ya, kalau flash disk di colok?? ini mas tiap kali masuk di flash disk berulang kali muncul bad folder pdhl sy sudah cure berkali2 di flash disk yg sama.

Thumbs up

27

Re: PCMAV 6.2 + Clamav 0.97

Mas fajar, untuk versi PCMAV berkutnya tolong diperhatikan lagi fungsi parameternya seperti FORCE, NOUPDCLAM yg masih saja proses updatenya bisa berjalan. khususnya parameter FORCE sepertinya kurang nampak fungsinya,  oh ya Mas sekedar saran cara penggunaan parameter PCMAV yg benar, klu bisa dimuat juga dalam README.TXT, agar lebih memudahkan pengguna. Tks

Last edited by Rahman (01-01-2012 05:41:36)

Thumbs up

28

Re: PCMAV 6.2 + Clamav 0.97

Rahman wrote:

mas Fajar, real time protector yg selalu muncul bad folder itu kenapa ya, kalau flash disk di colok?? ini mas tiap kali masuk di flash disk berulang kali muncul bad folder pdhl sy sudah cure berkali2 di flash disk yg sama.

pas dicure, isi keterangnnya apa? kedelete apa kaga om?

29

Re: PCMAV 6.2 + Clamav 0.97

user wrote:
Rahman wrote:

mas Fajar, real time protector yg selalu muncul bad folder itu kenapa ya, kalau flash disk di colok?? ini mas tiap kali masuk di flash disk berulang kali muncul bad folder pdhl sy sudah cure berkali2 di flash disk yg sama.

pas dicure, isi keterangnnya apa? kedelete apa kaga om?

keterangannya sama seperti cure virus.

Thumbs up

30

Re: PCMAV 6.2 + Clamav 0.97

Rahman wrote:

keterangannya sama seperti cure virus.

maksudnya, keterangan setelah dicure, (kolom disamping kanan nama virus) berhasil apa ga? klo peringatan bad folder muncul, berarti ga sukses keterangan  ya?

31

Re: PCMAV 6.2 + Clamav 0.97

user wrote:
Rahman wrote:

keterangannya sama seperti cure virus.

maksudnya, keterangan setelah dicure, (kolom disamping kanan nama virus) berhasil apa ga? klo peringatan bad folder muncul, berarti ga sukses keterangan  ya?

berhasil di cure, this was object clean kalau g salah. cuma setiap kali buka flash disk yg sma berulang kali muncul bad folder

Thumbs up

32

Re: PCMAV 6.2 + Clamav 0.97

Rahman wrote:
user wrote:
Rahman wrote:

keterangannya sama seperti cure virus.

maksudnya, keterangan setelah dicure, (kolom disamping kanan nama virus) berhasil apa ga? klo peringatan bad folder muncul, berarti ga sukses keterangan  ya?

berhasil di cure, this was object clean kalau g salah. cuma setiap kali buka flash disk yg sma berulang kali muncul bad folder

Folder autorun.inf? Bisa gunakan Extension Manager "Autorun Remover". Klo gak bisa mungkin bisa gunakan Delete On Reboot / Secure Delete. smile

Like and Invite Your Friends to Like this Fan Page Majalah PC Media : http://www.facebook.com/pages/Majalah-P … 1773385582
Follow and Retweet Majalah PC Media : https://twitter.com/PCMedia_ID

33

Re: PCMAV 6.2 + Clamav 0.97

indraramadhan094 wrote:
Rahman wrote:
user wrote:

maksudnya, keterangan setelah dicure, (kolom disamping kanan nama virus) berhasil apa ga? klo peringatan bad folder muncul, berarti ga sukses keterangan  ya?

berhasil di cure, this was object clean kalau g salah. cuma setiap kali buka flash disk yg sma berulang kali muncul bad folder

Folder autorun.inf? Bisa gunakan Extension Manager "Autorun Remover". Klo gak bisa mungkin bisa gunakan Delete On Reboot / Secure Delete. smile


ok, Tks atas infonya..

Thumbs up

34

Re: PCMAV 6.2 + Clamav 0.97

Mas fajar tolong diperhatikan lagi parameter "FORCE" karena parameter ini hampir2 g berfungsi, sepertinya sama saja tanpa menggunakan parameter "FORCE".. semoga di versi berikutnya parameter2 PCMAV semuanya berjalan dengan semestinya. contohnya banyak virus yg tidak bisa di cure, pdhl sudah menggunakan parameter "FORCE".

Thumbs up

35

Re: PCMAV 6.2 + Clamav 0.97

Tim Pcmav jgn lupa extman.exe diperhatikan lagi, soalnya saat extension manager di tutup, Extman.exe tetap berjalan di proses task manager, jadi kita harus end process manual begitupun Pcmav express, padahl udah di exit, tetapi masih tetap berjalan di proses task manager.

Last edited by Rahman (07-01-2012 21:19:10)

Thumbs up

36

Re: PCMAV 6.2 + Clamav 0.97

ada bug lagi nih tim Pcmav. saat eject Flash disk selalu muncul pesan seperti ini:
http://www.4freeimagehost.com/resized/122ace553871.jpg

Last edited by Rahman (08-01-2012 13:25:16)

Thumbs up

37

Re: PCMAV 6.2 + Clamav 0.97

http://i43.tinypic.com/2vt9j6g.jpgIsi file bugreport.txt

date/time         : 2012-01-15, 14:34:28, 334ms
computer name     : ALFIANR-PC
user name         : alfianr <admin>
registered owner  : alfianr
operating system  : Windows 7 x64 build 7600
system language   : Indonesian
system up time    : 39 minutes 43 seconds
program up time   : 16 minutes 14 seconds
processors        : 4x Intel(R) Core(TM) i5-2410M CPU @ 2.30GHz
physical memory   : 2846/4004 MB (free/total)
free disk space   : (C:) 130,07 GB (D:) 198,24 GB
display mode      : 1366x768, 32 bit
process id        : $ba4
allocated memory  : 239,76 MB
command line      : "D:\Software\PCMAV\PCMAV.exe" /REGCLEAN /FORCE
executable        : PCMAV.exe
exec. date/time   : 2011-11-08 13:26
version           : 6.2.0.0
compiled with     : Delphi 2006/07
madExcept version : 3.0n
PCMAV.exe.mad     : $000270c8, $32fc3f68, $d01a3045
contact name      : Alfian Ramadhani
contact email     : m.alfian1995@gmail.com
callstack crc     : $c493c5bb, $01e9570e, $01e9570e
exception number  : 1
exception class   : EAssertionFailed
exception message : Assertion failure (Z:\comp\IndyTiburon\Lib\Core\IdThread.pas, line 521).

PCMAVQuarantine ($9b4):
0052ca98 +024 PCMAV.exe    segment%131 public%8186
0052c744 +260 PCMAV.exe    segment%131 public%8178
7749010a +00a ntdll.dll                KiUserExceptionDispatcher
00487736 +002 PCMAV.exe    segment%40  public%4085
0052c9db +013 PCMAV.exe    segment%131 public%8183
0052c541 +05d PCMAV.exe    segment%131 public%8178
004554a3 +02b PCMAV.exe    segment%23  public%2362
00477140 +034 PCMAV.exe    segment%31  public%3446
004056f4 +028 PCMAV.exe    segment%0   public%250
00455385 +00d PCMAV.exe    segment%23  public%2360
004553ef +037 PCMAV.exe    segment%23  public%2361
75903675 +010 kernel32.dll             BaseThreadInitThunk
>> created by main thread ($458) at:
00405754 +050 PCMAV.exe    segment%0   public%251

main thread ($458):
774a00f6 +00e ntdll.dll                  NtWaitForMultipleObjects
767b095c +0fa KERNELBASE.dll             WaitForMultipleObjectsEx
75901628 +089 kernel32.dll               WaitForMultipleObjectsEx
753b03d4 +0f4 USER32.dll                 MsgWaitForMultipleObjectsEx
753b0669 +01a USER32.dll                 MsgWaitForMultipleObjects
004777b3 +04f PCMAV.exe      segment%31  public%3463
004772b1 +02d PCMAV.exe      segment%31  public%3448
0052c8d5 +0dd PCMAV.exe      segment%131 public%8180
00404784 +008 PCMAV.exe      segment%0   public%191
00462054 +008 PCMAV.exe      segment%26  public%2715
00543080 +028 PCMAV.exe      segment%158 public%8655
00477aa7 +047 PCMAV.exe      segment%31  public%3476
0047789b +047 PCMAV.exe      segment%31  public%3465
004a6e98 +0b0 PCMAV.exe      segment%55  public%4890
004aaf3d +0c9 PCMAV.exe      segment%55  public%5107
004bd388 +028 PCMAV.exe      segment%59  public%5713
004be015 +0e1 PCMAV.exe      segment%59  public%5738
00477aa7 +047 PCMAV.exe      segment%31  public%3476
004bc1b6 +032 PCMAV.exe      segment%59  public%5664
00459d56 +026 PCMAV.exe      segment%26  public%2445
004055d9 +021 PCMAV.exe      segment%0   public%246
006923bb +27f PCMAV.exe      segment%427 public%13315
75903675 +010 kernel32.dll               BaseThreadInitThunk

thread $41c (TWndProc): <suspended>
00405754 +50 PCMAV.exe segment%0 public%251

thread $884:
774a00f6 +0e ntdll.dll     NtWaitForMultipleObjects
75903675 +10 kernel32.dll  BaseThreadInitThunk

thread $fd8:
7749f86a +0e ntdll.dll                 NtWaitForSingleObject
767b0810 +92 KERNELBASE.dll            WaitForSingleObjectEx
7590117f +3e kernel32.dll              WaitForSingleObjectEx
00455385 +0d PCMAV.exe      segment%23 public%2360
004553ef +37 PCMAV.exe      segment%23 public%2361
75903675 +10 kernel32.dll              BaseThreadInitThunk
>> created by thread $e84 at:
75901ec3 +1b kernel32.dll              CreateThread

thread $a24 (TRegMonitorThread):
7749f86a +0e ntdll.dll                  NtWaitForSingleObject
767b0810 +92 KERNELBASE.dll             WaitForSingleObjectEx
7590117f +3e kernel32.dll               WaitForSingleObjectEx
75901133 +0d kernel32.dll               WaitForSingleObject
0067b015 +15 PCMAV.exe      segment%289 public%13029
004554a3 +2b PCMAV.exe      segment%23  public%2362
00477140 +34 PCMAV.exe      segment%31  public%3446
004056f4 +28 PCMAV.exe      segment%0   public%250
00455385 +0d PCMAV.exe      segment%23  public%2360
004553ef +37 PCMAV.exe      segment%23  public%2361
75903675 +10 kernel32.dll               BaseThreadInitThunk
>> created by main thread ($458) at:
00405754 +50 PCMAV.exe      segment%0   public%251

thread $fb0 (TRegMonitorThread):
7749f86a +0e ntdll.dll                  NtWaitForSingleObject
767b0810 +92 KERNELBASE.dll             WaitForSingleObjectEx
7590117f +3e kernel32.dll               WaitForSingleObjectEx
75901133 +0d kernel32.dll               WaitForSingleObject
0067b015 +15 PCMAV.exe      segment%289 public%13029
004554a3 +2b PCMAV.exe      segment%23  public%2362
00477140 +34 PCMAV.exe      segment%31  public%3446
004056f4 +28 PCMAV.exe      segment%0   public%250
00455385 +0d PCMAV.exe      segment%23  public%2360
004553ef +37 PCMAV.exe      segment%23  public%2361
75903675 +10 kernel32.dll               BaseThreadInitThunk
>> created by main thread ($458) at:
00405754 +50 PCMAV.exe      segment%0   public%251

thread $b84:
7749fd2a +0e ntdll.dll                 NtDelayExecution
767b2c4a +5f KERNELBASE.dll            SleepEx
767b351b +0a KERNELBASE.dll            Sleep
00455385 +0d PCMAV.exe      segment%23 public%2360
004553ef +37 PCMAV.exe      segment%23 public%2361
75903675 +10 kernel32.dll              BaseThreadInitThunk
>> created by main thread ($458) at:
75901ec3 +1b kernel32.dll              CreateThread

thread $578:
774a1edf +0b ntdll.dll     NtWaitForWorkViaWorkerFactory
75903675 +10 kernel32.dll  BaseThreadInitThunk

thread $54c (TgtTimerThread):
7749f86a +0e ntdll.dll                 NtWaitForSingleObject
767b0810 +92 KERNELBASE.dll            WaitForSingleObjectEx
7590117f +3e kernel32.dll              WaitForSingleObjectEx
75901133 +0d kernel32.dll              WaitForSingleObject
004d484b +13 PCMAV.exe      segment%65 public%6344
004554a3 +2b PCMAV.exe      segment%23 public%2362
00477140 +34 PCMAV.exe      segment%31 public%3446
004056f4 +28 PCMAV.exe      segment%0  public%250
00455385 +0d PCMAV.exe      segment%23 public%2360
004553ef +37 PCMAV.exe      segment%23 public%2361
75903675 +10 kernel32.dll              BaseThreadInitThunk
>> created by main thread ($458) at:
00405754 +50 PCMAV.exe      segment%0  public%251

thread $7c8 (TgtTimerThread):
7749f86a +0e ntdll.dll                 NtWaitForSingleObject
767b0810 +92 KERNELBASE.dll            WaitForSingleObjectEx
7590117f +3e kernel32.dll              WaitForSingleObjectEx
75901133 +0d kernel32.dll              WaitForSingleObject
004d484b +13 PCMAV.exe      segment%65 public%6344
004554a3 +2b PCMAV.exe      segment%23 public%2362
00477140 +34 PCMAV.exe      segment%31 public%3446
004056f4 +28 PCMAV.exe      segment%0  public%250
00455385 +0d PCMAV.exe      segment%23 public%2360
004553ef +37 PCMAV.exe      segment%23 public%2361
75903675 +10 kernel32.dll              BaseThreadInitThunk
>> created by main thread ($458) at:
00405754 +50 PCMAV.exe      segment%0  public%251

thread $bbc (TgtTimerThread):
7749f86a +0e ntdll.dll                 NtWaitForSingleObject
767b0810 +92 KERNELBASE.dll            WaitForSingleObjectEx
7590117f +3e kernel32.dll              WaitForSingleObjectEx
75901133 +0d kernel32.dll              WaitForSingleObject
004d484b +13 PCMAV.exe      segment%65 public%6344
004554a3 +2b PCMAV.exe      segment%23 public%2362
00477140 +34 PCMAV.exe      segment%31 public%3446
004056f4 +28 PCMAV.exe      segment%0  public%250
00455385 +0d PCMAV.exe      segment%23 public%2360
004553ef +37 PCMAV.exe      segment%23 public%2361
75903675 +10 kernel32.dll              BaseThreadInitThunk
>> created by main thread ($458) at:
00405754 +50 PCMAV.exe      segment%0  public%251

thread $474:
774a1edf +0b ntdll.dll     NtWaitForWorkViaWorkerFactory
75903675 +10 kernel32.dll  BaseThreadInitThunk

thread $da8:
774a1edf +0b ntdll.dll     NtWaitForWorkViaWorkerFactory
75903675 +10 kernel32.dll  BaseThreadInitThunk

thread $d10:
774a1edf +0b ntdll.dll     NtWaitForWorkViaWorkerFactory
75903675 +10 kernel32.dll  BaseThreadInitThunk

processes:
000 Idle                 0 0   0
004 System               0 0   0
138 smss.exe             0 0   0   normal
198 csrss.exe            0 0   0   normal
1f4 wininit.exe          0 0   0   high
214 csrss.exe            1 174 83  normal
238 services.exe         0 0   0   normal
248 lsass.exe            0 0   0   normal
250 lsm.exe              0 0   0   normal
2c4 svchost.exe          0 0   0   normal
308 winlogon.exe         1 6   0   high
328 svchost.exe          0 0   0   normal
37c svchost.exe          0 0   0   normal
3a0 svchost.exe          0 0   0   normal
3d0 svchost.exe          0 0   0   normal
3f8 stacsv64.exe         0 0   0   normal
3c4 svchost.exe          0 0   0   normal
490 svchost.exe          0 0   0   normal
500 dwm.exe              1 11  2   normal
53c spoolsv.exe          0 0   0   normal
55c taskhost.exe         1 26  21  normal
588 svchost.exe          0 0   0   normal
5ec AESTSr64.exe         0 0   0   normal
6ac explorer.exe         1 470 277 normal
794 quickset.exe         1 15  13  normal
4b0 Apoint.exe           1 93  42  normal
48c igfxtray.exe         1 12  5   normal
470 hkcmd.exe            1 9   16  normal
454 igfxpers.exe         1 9   4   normal
814 sttray64.exe         1 16  15  normal
8ac WmiPrvSE.exe         0 0   0   normal
8fc DAP.exe              1 934 257 normal       C:\Program Files (x86)\DAP
9ec ApMsgFwd.exe         1 9   6   normal
a84 hidfind.exe          1 9   3   normal
a90 ApntEx.exe           1 13  5   normal
ab4 conhost.exe          1 27  10  normal
abc jusched.exe          1 9   2   normal       C:\Program Files (x86)\Common Files\Java\Java Update
ad4 IAStorIcon.exe       1 33  15  normal       C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology
b5c SearchIndexer.exe    0 0   0   normal
0f4 svchost.exe          0 0   0   normal
8f8 IAStorDataMgrSvc.exe 0 0   0   normal       C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology
5a0 LMS.exe              0 0   0   normal       C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS
840 svchost.exe          0 0   0   normal
664 UNS.exe              0 0   0   normal       C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS
49c audiodg.exe          0 0   0
ba4 PCMAV.exe            1 283 177 normal       D:\Software\PCMAV
7e0 Mobile Partner.exe   1 351 127 normal       C:\Program Files (x86)\Mobile Partner
b58 chrome.exe           1 55  41  normal       C:\Users\alfianr\AppData\Local\Google\Chrome\Application
f30 chrome.exe           1 10  1   normal       C:\Users\alfianr\AppData\Local\Google\Chrome\Application
cfc chrome.exe           1 9   9   normal       C:\Users\alfianr\AppData\Local\Google\Chrome\Application
918 chrome.exe           1 23  1   below normal C:\Users\alfianr\AppData\Local\Google\Chrome\Application

cpu registers:
eax = 1cb36690
ebx = 025f6090
ecx = 2a33f9b0
edx = 0052ca98
esi = 00000000
edi = 2a33feb0
eip = 0052ca98
esp = 2a33f984
ebp = 2a33f9bc

stack dump:
2a33f984  98 ca 52 00 de fa ed 0e - 01 00 00 00 07 00 00 00  ..R.............
2a33f994  98 f9 33 2a 98 ca 52 00 - 90 66 b3 1c 90 60 5f 02  ..3*..R..f...`_.
2a33f9a4  00 00 00 00 b0 fe 33 2a - bc f9 33 2a b4 f9 33 2a  ......3*..3*..3*
2a33f9b4  98 ca 52 00 c0 6c b4 1c - cc fe 33 2a 47 c7 52 00  ..R..l....3*G.R.
2a33f9c4  00 00 00 00 a7 26 50 77 - 90 60 5f 02 d0 fa 33 2a  .....&Pw.`_...3*
2a33f9d4  fc f9 33 2a 08 fa 33 2a - 00 00 00 00 00 00 00 00  ..3*..3*........
2a33f9e4  00 00 00 00 b9 87 4d 77 - d0 fa 33 2a b0 fe 33 2a  ......Mw..3*..3*
2a33f9f4  20 fb 33 2a a4 fa 33 2a - a4 fe 33 2a cd 87 4d 77  ..3*..3*..3*..Mw
2a33fa04  b0 fe 33 2a b8 fa 33 2a - 8b 87 4d 77 d0 fa 33 2a  ..3*..3*..Mw..3*
2a33fa14  b0 fe 33 2a 20 fb 33 2a - a4 fa 33 2a 07 c7 52 00  ..3*..3*..3*..R.
2a33fa24  00 00 00 00 d0 fa 33 2a - b0 fe 33 2a 2e 87 4d 77  ......3*..3*..Mw
2a33fa34  d0 fa 33 2a b0 fe 33 2a - 20 fb 33 2a a4 fa 33 2a  ..3*..3*..3*..3*
2a33fa44  07 c7 52 00 00 00 00 00 - d0 fa 33 2a a4 53 5b 02  ..R.......3*.S[.
2a33fa54  58 65 73 11 00 01 00 00 - 01 00 00 00 00 00 00 00  Xes.............
2a33fa64  4c fa 33 2a 00 00 00 00 - 78 fb 33 2a 55 01 3c 75  L.3*....x.3*U.<u
2a33fa74  ec 00 ec 10 fe ff ff ff - c0 6e 3a 75 f8 f8 aa 74  .........n:u...t
2a33fa84  7e 03 0b 00 12 b0 00 00 - 00 00 00 00 00 00 00 00  ~...............
2a33fa94  00 00 00 00 2b f8 aa 74 - 0b f9 aa 74 2c 07 ec 10  ....+..t...t,...
2a33faa4  fe ff ff ff 72 00 00 00 - 00 00 34 2a 00 c0 33 2a  ....r.....4*..3*
2a33fab4  2b f8 aa 00 58 fe 33 2a - 0f 01 49 77 d0 fa 33 00  +...X.3*..Iw..3.

disassembling:
0052ca74 public segment%131.public%8186 (PCMAV.exe):  ; function entry point
0052ca74   push    ebp
0052ca75   mov     ebp, esp
0052ca77   push    ecx
0052ca78   mov     [ebp-4], eax
0052ca7b   mov     eax, [ebp-4]
0052ca7e   cmp     dword ptr [eax+$44], 0
0052ca82   jnz     loc_52ca98
0052ca82
0052ca84   mov     ecx, $209
0052ca89   mov     edx, $52caec           ; 'Z:\comp\IndyTiburon\Lib\Core\IdThread.pas'
0052ca8e   mov     eax, $52cb20           ; 'Assertion failure'
0052ca93   call    -$1273ec ($4056ac)     ; segment%0.public%249 (PCMAV.exe)
0052ca93
0052ca98 loc_52ca98:
0052ca98 > mov     eax, [ebp-4]
0052ca9b   mov     eax, [eax+$44]
0052ca9e   call    -$a536f ($487734)      ; segment%40.public%4085 (PCMAV.exe)
0052ca9e
0052caa3   xor     eax, eax
0052caa5   push    ebp
0052caa6   push    $52cad9                ; segment%0.public%227 (PCMAV.exe)
0052caab   push    dword ptr fs:[eax]
0052caae   mov     fs:[eax], esp
0052cab1   mov     eax, [ebp-4]
0052cab4   or      byte ptr [eax+$51], 1
0052cab8   mov     eax, [ebp-4]
0052cabb   call    -$b5364 ($47775c)      ; segment%31.public%3462 (PCMAV.exe)
0052cabb
0052cac0   xor     eax, eax
0052cac2   pop     edx
0052cac3   pop     ecx
0052cac4   pop     ecx
0052cac5   mov     fs:[eax], edx
0052cac8   push    $52cae0
0052cac5
0052cacd loc_52cacd:
0052cacd   mov     eax, [ebp-4]
0052cad0   mov     eax, [eax+$44]
0052cad3   call    -$a539c ($48773c)      ; segment%40.public%4086 (PCMAV.exe)
0052cad3
0052cad8   ret
0052cad8
0052cad8 ; ---------------------------------------------------------
0052cad8
0052cad9   jmp     -$127b8e ($404f50)     ; segment%0.public%227 (PCMAV.exe)
0052cad9
0052cade   jmp     loc_52cacd
0052cade
0052cade ; ---------------------------------------------------------
0052cade
0052cae0   pop     ecx
0052cae1   pop     ebp
0052cae2   ret

Thumbs up

38

Re: PCMAV 6.2 + Clamav 0.97

mungkin PCMAV mas alfian di gabungkan ma Clamav, soalnya saya juga pakai pcmav 6.2 di windows 7 build 7600 aman2 saja Mas. mudah2n Momod Fajar bisa menjelaskan bug ini..

Thumbs up

39

Re: PCMAV 6.2 + Clamav 0.97

date/time         : 2012-01-24, 18:30:40, 796ms
computer name     : MEDIA
user name         : PC MEDIA <admin>
registered owner  : PC MEDIA
operating system  : Windows XP Service Pack 3 build 2600
system language   : English
system up time    : 1 minute 11 seconds
program up time   : 46 seconds
processors        : 2x Intel(R) Core(TM)2 Duo CPU E4500 @ 2.20GHz
physical memory   : 675/1013 MB (free/total)
free disk space   : (C:) 13.61 GB (D:) 42.78 GB
display mode      : 1024x768, 32 bit
process id        : $1ac
allocated memory  : 54.82 MB
command line      : "D:\Pcmav\PCMAV.exe" /RTP
executable        : PCMAV.exe
exec. date/time   : 2011-11-08 13:26
version           : 6.2.0.0
compiled with     : Delphi 2006/07
madExcept version : 3.0n
PCMAV.exe.mad     : $000270c8, $32fc3f68, $d01a3045
callstack crc     : $14048139, $ee13f159, $ee13f159
count             : 2
exception number  : 1
exception class   : EInvalidOperation
exception message : Cannot change Visible in OnShow or OnHide.

main thread ($1b0):
004c2d55 +055 PCMAV.exe  segment%59  public%5879
004a954f +2bb PCMAV.exe  segment%55  public%5016
004ad546 +4fa PCMAV.exe  segment%55  public%5163
004bf437 +553 PCMAV.exe  segment%59  public%5775
004a91dc +024 PCMAV.exe  segment%55  public%5012
004aca0e +112 PCMAV.exe  segment%55  public%5155
004acb51 +0e5 PCMAV.exe  segment%55  public%5156
004af3d6 +026 PCMAV.exe  segment%55  public%5249
004a954f +2bb PCMAV.exe  segment%55  public%5016
004ad546 +4fa PCMAV.exe  segment%55  public%5163
004bf437 +553 PCMAV.exe  segment%59  public%5775
004a91dc +024 PCMAV.exe  segment%55  public%5012
004a7dde +026 PCMAV.exe  segment%55  public%4938
004bed6e +03a PCMAV.exe  segment%59  public%5770
004c3626 +002 PCMAV.exe  segment%59  public%5889
0068ce2e +06a PCMAV.exe  segment%292 public%13159
004c357d +055 PCMAV.exe  segment%59  public%5887
004c34a5 +021 PCMAV.exe  segment%59  public%5886
004c6662 +22a PCMAV.exe  segment%59  public%6012
004788b4 +014 PCMAV.exe  segment%31  public%3553
7e4196c2 +00a USER32.dll             DispatchMessageA
004c71fc +0fc PCMAV.exe  segment%59  public%6025
004c721e +00a PCMAV.exe  segment%59  public%6026
00508e53 +013 PCMAV.exe  segment%91  public%7333
00508cc4 +034 PCMAV.exe  segment%90  public%7329
00521cc6 +01a PCMAV.exe  segment%117 public%7896
00521a88 +044 PCMAV.exe  segment%117 public%7888
00521ae8 +034 PCMAV.exe  segment%117 public%7889
0052adb9 +009 PCMAV.exe  segment%127 public%8113
005243c5 +07d PCMAV.exe  segment%121 public%7983
00523fc5 +159 PCMAV.exe  segment%121 public%7978
00523dec +024 PCMAV.exe  segment%121 public%7976
005f2034 +024 PCMAV.exe  segment%242 public%11817
005f23c8 +158 PCMAV.exe  segment%242 public%11820
005f21dd +06d PCMAV.exe  segment%242 public%11819
005f20f6 +06a PCMAV.exe  segment%242 public%11818
005ef44c +038 PCMAV.exe  segment%242 public%11783
00607906 +20a PCMAV.exe  segment%274 public%12292
0068add8 +214 PCMAV.exe  segment%292 public%13146
004c1b5f +027 PCMAV.exe  segment%59  public%5838
004c2c2c +010 PCMAV.exe  segment%59  public%5876
004a954f +2bb PCMAV.exe  segment%55  public%5016
004ad546 +4fa PCMAV.exe  segment%55  public%5163
004bf437 +553 PCMAV.exe  segment%59  public%5775
004acc70 +02c PCMAV.exe  segment%55  public%5158
004788b4 +014 PCMAV.exe  segment%31  public%3553
7e42f406 +044 USER32.dll             SendMessageA
004bc3b8 +010 PCMAV.exe  segment%59  public%5670
004c179e +12e PCMAV.exe  segment%59  public%5831
004ad1ad +161 PCMAV.exe  segment%55  public%5163
0048edf0 +06c PCMAV.exe  segment%43  public%4251
004acc70 +02c PCMAV.exe  segment%55  public%5158
004788b4 +014 PCMAV.exe  segment%31  public%3553
7c90e450 +010 ntdll.dll              KiUserCallbackDispatcher
004a954f +2bb PCMAV.exe  segment%55  public%5016
004ad546 +4fa PCMAV.exe  segment%55  public%5163
004bf437 +553 PCMAV.exe  segment%59  public%5775
004acc70 +02c PCMAV.exe  segment%55  public%5158
004788b4 +014 PCMAV.exe  segment%31  public%3553
7c90e450 +010 ntdll.dll              KiUserCallbackDispatcher
004a954f +2bb PCMAV.exe  segment%55  public%5016
004ad546 +4fa PCMAV.exe  segment%55  public%5163
004bf437 +553 PCMAV.exe  segment%59  public%5775
004a91dc +024 PCMAV.exe  segment%55  public%5012
004aca0e +112 PCMAV.exe  segment%55  public%5155
004acb51 +0e5 PCMAV.exe  segment%55  public%5156
004af3d6 +026 PCMAV.exe  segment%55  public%5249
004a954f +2bb PCMAV.exe  segment%55  public%5016
004be081 +031 PCMAV.exe  segment%59  public%5739
004bdcd9 +011 PCMAV.exe  segment%59  public%5735
00404b55 +01d PCMAV.exe  segment%0   public%214
004bdcb0 +174 PCMAV.exe  segment%59  public%5734
004a91dc +024 PCMAV.exe  segment%55  public%5012
004a7dde +026 PCMAV.exe  segment%55  public%4938
004bed6e +03a PCMAV.exe  segment%59  public%5770
004c7531 +09d PCMAV.exe  segment%59  public%6032
00692305 +1c9 PCMAV.exe  segment%427 public%13315

thread $218 (TgtTimerThread):
7c90df3a +0a ntdll.dll               NtWaitForSingleObject
7c8025d5 +85 kernel32.dll            WaitForSingleObjectEx
7c80253d +0d kernel32.dll            WaitForSingleObject
004d484b +13 PCMAV.exe    segment%65 public%6344
004554a3 +2b PCMAV.exe    segment%23 public%2362
00477140 +34 PCMAV.exe    segment%31 public%3446
004056f4 +28 PCMAV.exe    segment%0  public%250
00455385 +0d PCMAV.exe    segment%23 public%2360
004553ef +37 PCMAV.exe    segment%23 public%2361
>> created by main thread ($1b0) at:
004d47c6 +1e PCMAV.exe    segment%65 public%6341

thread $678 (TWndProc): <suspended>
00669917 +1f PCMAV.exe segment%283 public%12870

thread $9c:
7c90d9ba +00a ntdll.dll                NtReadFile
7c801873 +061 kernel32.dll             ReadFile
005b7e4d +1e5 PCMAV.exe    segment%209 public%10674
00455385 +00d PCMAV.exe    segment%23  public%2360
004553ef +037 PCMAV.exe    segment%23  public%2361
>> created by thread $77c at:
005b80bc +22c PCMAV.exe    segment%209 public%10675

thread $b0 (TgtTimerThread):
7c90df3a +0a ntdll.dll               NtWaitForSingleObject
7c8025d5 +85 kernel32.dll            WaitForSingleObjectEx
7c80253d +0d kernel32.dll            WaitForSingleObject
004d484b +13 PCMAV.exe    segment%65 public%6344
004554a3 +2b PCMAV.exe    segment%23 public%2362
00477140 +34 PCMAV.exe    segment%31 public%3446
004056f4 +28 PCMAV.exe    segment%0  public%250
00455385 +0d PCMAV.exe    segment%23 public%2360
004553ef +37 PCMAV.exe    segment%23 public%2361
>> created by main thread ($1b0) at:
004d47c6 +1e PCMAV.exe    segment%65 public%6341

processes:
000 Idle          0   0
004 System        0   0   normal
270 smss.exe      0   0   normal C:\WINDOWS\system32
2a8 csrss.exe     43  54  normal C:\WINDOWS\system32
2c4 winlogon.exe  40  11  high   C:\WINDOWS\system32
2f0 services.exe  4   0   normal C:\WINDOWS\system32
2fc lsass.exe     4   0   normal C:\WINDOWS\system32
3ac svchost.exe   4   0   normal C:\WINDOWS\system32
3f0 svchost.exe   4   0   normal C:\WINDOWS\system32
450 svchost.exe   4   3   normal C:\WINDOWS\System32
4b0 svchost.exe   4   0   normal C:\WINDOWS\system32
4d4 svchost.exe   4   0   normal C:\WINDOWS\system32
588 spoolsv.exe   4   0   normal C:\WINDOWS\system32
618 NBService.exe 4   0   normal C:\Program Files\Nero\Nero8\Nero BackItUp
6e0 Explorer.EXE  221 104 normal C:\WINDOWS
720 RTPSvc.exe    4   0   normal C:\WINDOWS\system32
790 wdfmgr.exe    4   0   normal C:\WINDOWS\system32
7f0 igfxtray.exe  10  3   normal C:\WINDOWS\system32
7f8 hkcmd.exe     8   15  normal C:\WINDOWS\system32
098 igfxpers.exe  8   4   normal C:\WINDOWS\system32
0a0 RTHDCPL.EXE   782 163 normal C:\WINDOWS
0b8 ctfmon.exe    25  9   normal C:\WINDOWS\system32
0c8 IDMan.exe     93  59  normal C:\Program Files\Internet Download Manager
11c igfxsrvc.exe  8   3   normal C:\WINDOWS\system32
1ac PCMAV.exe     266 150 normal D:\Pcmav
248 IEMonitor.exe 22  12  normal C:\Program Files\Internet Download Manager
3b4 wuauclt.exe   4   1   normal C:\WINDOWS\system32
6bc alg.exe       4   0   normal C:\WINDOWS\System32
75c wscntfy.exe   17  6   normal C:\WINDOWS\system32
1e0 taskmgr.exe   113 124 high   C:\WINDOWS\system32
22c wmiprvse.exe  7   4   normal C:\WINDOWS\system32\wbem

cpu registers:
eax = 02582150
ebx = 0012e9b8
ecx = 02582150
edx = 004c2d55
esi = 00ff28f0
edi = 00ff28f0
eip = 004c2d55
esp = 0012e7c8
ebp = 0012e818

stack dump:
0012e7c8  55 2d 4c 00 de fa ed 0e - 01 00 00 00 07 00 00 00  U-L.............
0012e7d8  dc e7 12 00 55 2d 4c 00 - 50 21 58 02 b8 e9 12 00  ....U-L.P!X.....
0012e7e8  f0 28 ff 00 f0 28 ff 00 - 18 e8 12 00 f8 e7 12 00  .(...(..........
0012e7f8  d4 e9 12 00 d0 4f 40 00 - 18 e8 12 00 f0 28 ff 00  .....O@......(..
0012e808  f0 28 ff 00 b8 e9 12 00 - 00 00 00 00 f0 28 ff 00  .(...........(..
0012e818  44 e9 12 00 52 95 4a 00 - f0 28 ff 00 00 00 00 00  D...R.J..(......
0012e828  b8 e9 12 00 8c e8 12 00 - 2a 26 80 7c 00 00 00 00  ........*&.|....
0012e838  00 f0 fd 7f 9c e8 12 00 - 2a 26 80 7c 58 e8 12 00  ........*&.|X...
0012e848  00 26 80 7c 0c 30 76 74 - 00 00 00 00 cc 01 02 00  .&.|.0vt........
0012e858  14 00 00 00 01 00 00 00 - 00 00 00 00 00 00 00 00  ................
0012e868  10 00 00 00 80 0f 05 fd - ff ff ff ff 00 a0 fd 7f  ................
0012e878  00 f0 fd 7f 6c e8 12 00 - 00 00 00 00 4c e8 12 00  ....l.......L...
0012e888  ff ff ff ff ec e8 12 00 - c0 9a 83 7c 08 26 80 7c  ...........|.&.|
0012e898  ff ff ff ff 00 26 80 7c - 42 25 80 7c ec 00 00 00  .....&.|B%.|....
0012e8a8  0c da 90 7c c7 24 80 7c - ec 00 00 00 00 00 00 00  ...|.$.|........
0012e8b8  fc e8 12 00 7a 57 75 74 - ec 00 00 00 00 5f 75 74  ....zWut....._ut
0012e8c8  0c 30 76 74 28 fe 15 00 - cc 01 02 00 24 01 22 01  .0vt(.......$.".
0012e8d8  00 00 22 01 cc 01 02 00 - 0c 30 76 74 c8 e8 12 00  .."......0vt....
0012e8e8  d8 e8 12 00 ec 00 00 00 - ec 00 00 00 08 5f 75 74  ............._ut
0012e8f8  ff ff ff ff 00 5f 75 74 - ef f7 73 74 b0 01 00 00  ....._ut..st....

disassembling:
004c2d00 public segment%59.public%5879 (PCMAV.exe):  ; function entry point
004c2d00   push    ebp
004c2d01   mov     ebp, esp
004c2d03   add     esp, -8
004c2d06   push    ebx
004c2d07   push    esi
004c2d08   push    edi
004c2d09   xor     ecx, ecx
004c2d0b   mov     [ebp-8], ecx
004c2d0e   mov     [ebp-4], eax
004c2d11   xor     eax, eax
004c2d13   push    ebp
004c2d14   push    $4c335c                ; segment%0.public%227 (PCMAV.exe)
004c2d19   push    dword ptr fs:[eax]
004c2d1c   mov     fs:[eax], esp
004c2d1f   mov     eax, [ebp-4]
004c2d22   test    byte ptr [eax+$1c], $10
004c2d26   jnz     loc_4c2d55
004c2d26
004c2d28   mov     eax, [ebp-4]
004c2d2b   test    byte ptr [eax+$358], 4
004c2d32   jz      loc_4c2d55
004c2d32
004c2d34   lea     edx, [ebp-8]
004c2d37   mov     eax, [$6a4500]
004c2d3c   call    -$baff1 ($407d50)      ; segment%0.public%388 (PCMAV.exe)
004c2d3c
004c2d41   mov     ecx, [ebp-8]
004c2d44   mov     dl, 1
004c2d46   mov     eax, [$46add8]
004c2d4b   call    -$62c30 ($460120)      ; segment%26.public%2635 (PCMAV.exe)
004c2d4b
004c2d50   call    -$bdc61 ($4050f4)      ; segment%0.public%230 (PCMAV.exe)
004c2d50
004c2d55 loc_4c2d55:
004c2d55 > mov     eax, [$6aaeb0]
004c2d5a   call    +$5309 ($4c8068)       ; segment%59.public%6052 (PCMAV.exe)
004c2d5a
004c2d5f   mov     eax, [ebp-4]
004c2d62   or      byte ptr [eax+$358], 4
004c2d69   xor     edx, edx
004c2d6b   push    ebp
004c2d6c   push    $4c333f                ; segment%0.public%227 (PCMAV.exe)
004c2d71   push    dword ptr fs:[edx]
004c2d74   mov     fs:[edx], esp
004c2d77   mov     eax, [ebp-4]
004c2d7a   test    byte ptr [eax+$1c], $10
004c2d7e   jnz     loc_4c32f9
004c2d7e
004c2d84   mov     eax, [ebp-4]
004c2d87   cmp     byte ptr [eax+$1da], 0
004c2d8e   jz      loc_4c31ed
004c2d8e
004c2d94   xor     eax, eax
004c2d96   push    ebp
004c2d97   push    $4c2db8                ; segment%0.public%225 (PCMAV.exe)
004c2d9c   push    dword ptr fs:[eax]
004c2d9f   mov     fs:[eax], esp
004c2da2   mov     eax, [ebp-4]
004c2da5   mov     si, $ffab
004c2da9   call    -$be436 ($404978)      ; segment%0.public%200 (PCMAV.exe)
004c2da9
004c2dae   xor     eax, eax
004c2db0   pop     edx
004c2db1   pop     ecx
004c2db2   pop     ecx
004c2db3   mov     fs:[eax], edx
004c2db6   jmp     loc_4c2dcf
004c2db6
004c2db6 ; ---------------------------------------------------------
004c2db6
004c2db8   jmp     -$be121 ($404c9c)      ; segment%0.public%225 (PCMAV.exe)
004c2db8
004c2dbd   mov     edx, [ebp-4]
004c2dc0   mov     eax, [$6aaeb0]
004c2dc5   call    +$4842 ($4c760c)       ; segment%59.public%6035 (PCMAV.exe)
004c2dc5
004c2dca   call    -$bdc5f ($405170)      ; segment%0.public%232 (PCMAV.exe)
004c2dca
004c2dcf loc_4c2dcf:
004c2dcf   mov     eax, [ebp-4]
004c2dd2   cmp     byte ptr [eax+$278], 4
004c2dd9   jz      loc_4c2dfb
004c2dd9
004c2ddb   mov     eax, [ebp-4]
004c2dde   cmp     byte ptr [eax+$278], 6
004c2de5   jnz     loc_4c2ede
004c2de5
004c2deb   mov     eax, [ebp-4]
004c2dee   cmp     byte ptr [eax+$277], 1
004c2df5   jnz     loc_4c2ede
004c2df5
004c2dfb loc_4c2dfb:
004c2dfb   mov     eax, [ebp-4]
004c2dfe   cmp     byte ptr [eax+$277], 1
004c2e05   jnz     loc_4c2e41
004c2e05
004c2e07   mov     eax, [$6aaeb0]
004c2e0c   mov     eax, [eax+$44]
004c2e0f   call    -$1b610 ($4a7804)      ; segment%55.public%4922 (PCMAV.exe)
004c2e0f
004c2e14   mov     ebx, eax
004c2e16   mov     eax, [ebp-4]
004c2e19   sub     ebx, [eax+$48]
004c2e1c   sar     ebx, 1
004c2e1e   jns     loc_4c2e23
004c2e1e
004c2e20   adc     ebx, 0
004c2e1e
004c2e23 loc_4c2e23:
004c2e23   mov     eax, [$6aaeb0]
004c2e28   mov     eax, [eax+$44]
004c2e2b   call    -$1b5e8 ($4a7848)      ; segment%55.public%4924 (PCMAV.exe)
004c2e2b
004c2e30   mov     esi, eax
004c2e32   mov     eax, [ebp-4]
004c2e35   sub     esi, [eax+$4c]
004c2e38   sar     esi, 1
004c2e3a   jns     loc_4c2e73
004c2e3a
004c2e3c   adc     esi, 0
004c2e3f   jmp     loc_4c2e73
004c2e3f
004c2e3f ; ---------------------------------------------------------
004c2e3f
004c2e41 loc_4c2e41:
004c2e41   mov     eax, [$6aaeb4]
004c2e46   call    +$1a0d ($4c4858)       ; segment%59.public%5940 (PCMAV.exe)
004c2e46
004c2e4b   mov     ebx, eax
004c2e4d   mov     eax, [ebp-4]
004c2e50   sub     ebx, [eax+$48]
004c2e53   sar     ebx, 1
004c2e55   jns     loc_4c2e5a
004c2e55
004c2e57   adc     ebx, 0
004c2e55
004c2e5a loc_4c2e5a:
004c2e5a   mov     eax, [$6aaeb4]
004c2e5f   call    +$19e8 ($4c484c)       ; segment%59.public%5939 (PCMAV.exe)
004c2e5f
004c2e64   mov     esi, eax
004c2e66   mov     eax, [ebp-4]
004c2e69   sub     esi, [eax+$4c]
004c2e6c   sar     esi, 1
004c2e6e   jns     loc_4c2e73
004c2e6e
004c2e70   adc     esi, 0
004c2e6e
004c2e73 loc_4c2e73:
004c2e73   mov     eax, [$6aaeb4]
004c2e78   call    +$19f3 ($4c4870)       ; segment%59.public%5942 (PCMAV.exe)
004c2e78
004c2e7d   cmp     ebx, eax
004c2e7f   jge     loc_4c2e8d
004c2e7f
004c2e81   mov     eax, [$6aaeb4]
004c2e86   call    +$19e5 ($4c4870)       ; segment%59.public%5942 (PCMAV.exe)
004c2e86
004c2e8b   mov     ebx, eax
004c2e86
004c2e8d loc_4c2e8d:
004c2e8d   mov     eax, [$6aaeb4]
004c2e92   call    +$19cd ($4c4864)       ; segment%59.public%5941 (PCMAV.exe)
004c2e92
004c2e97   cmp     esi, eax
004c2e99   jge     loc_4c2ea7
004c2e99
004c2e9b   mov     eax, [$6aaeb4]
004c2ea0   call    +$19bf ($4c4864)       ; segment%59.public%5941 (PCMAV.exe)
004c2ea0
004c2ea5   mov     esi, eax
004c2ea0
004c2ea7 loc_4c2ea7:
004c2ea7   mov     eax, [ebp-4]
004c2eaa   mov     eax, [eax+$48]
004c2ead   push    eax
004c2eae   mov     eax, [ebp-4]
004c2eb1   mov     eax, [eax+$4c]
004c2eb4   push    eax
004c2eb5   mov     ecx, esi
004c2eb7   mov     edx, ebx
004c2eb9   mov     eax, [ebp-4]
004c2ebc   mov     ebx, [eax]
004c2ebe   call    dword ptr [ebx+$88]
004c2ebe
004c2ec4   mov     eax, [ebp-4]
004c2ec7   cmp     byte ptr [eax+$57], 0
004c2ecb   jz      loc_4c30f9
004c2ecb
004c2ed1   mov     eax, [ebp-4]
004c2ed4   call    -$2825 ($4c06b4)       ; segment%59.public%5818 (PCMAV.exe)
004c2ed4
004c2ed9   jmp     loc_4c30f9
004c2ed9
004c2ed9 ; ---------------------------------------------------------
004c2ed9
004c2ede loc_4c2ede:
004c2ede   mov     eax, [ebp-4]
004c2ee1   movzx   eax, byte ptr [eax+$278]
004c2ee8   mov     edx, eax
004c2eea   add     dl, -6
004c2eed   sub     dl, 2
004c2ef0   jnb     loc_4c2ffe
004c2ef0
004c2ef6   mov     eax, [$6aaeb0]
004c2efb   mov     esi, [eax+$44]
004c2efe   mov     eax, [ebp-4]
004c2f01   cmp     byte ptr [eax+$278], 7
004c2f08   jnz     loc_4c2f25
004c2f08
004c2f0a   mov     eax, [ebp-4]
004c2f0d   mov     eax, [eax+4]
004c2f10   mov     edx, [$4ba6d8]
004c2f16   call    -$be613 ($404908)      ; segment%0.public%197 (PCMAV.exe)
004c2f16
004c2f1b   test    al, al
004c2f1d   jz      loc_4c2f25
004c2f1d
004c2f1f   mov     eax, [ebp-4]
004c2f22   mov     esi, [eax+4]
004c2f1f
004c2f25 loc_4c2f25:
004c2f25   test    esi, esi
004c2f27   jz      loc_4c2f61
004c2f27
004c2f29   mov     eax, esi
004c2f2b   call    -$466c ($4be8c4)       ; segment%59.public%5750 (PCMAV.exe)
004c2f2b
004c2f30   mov     ebx, eax
004c2f32   mov     eax, [esi+$48]
004c2f35   mov     edx, [ebp-4]
004c2f38   sub     eax, [edx+$48]
004c2f3b   sar     eax, 1
004c2f3d   jns     loc_4c2f42
004c2f3d
004c2f3f   adc     eax, 0
004c2f3d
004c2f42 loc_4c2f42:
004c2f42   add     ebx, eax
004c2f44   mov     eax, esi
004c2f46   call    -$4667 ($4be8e4)       ; segment%59.public%5751 (PCMAV.exe)
004c2f46
004c2f4b   mov     edx, [esi+$4c]
004c2f4e   mov     ecx, [ebp-4]
004c2f51   sub     edx, [ecx+$4c]
004c2f54   sar     edx, 1
004c2f56   jns     loc_4c2f5b
004c2f56
004c2f58   adc     edx, 0
004c2f56
004c2f5b loc_4c2f5b:
004c2f5b   add     eax, edx
004c2f5d   mov     esi, eax
004c2f5f   jmp     loc_4c2f93
004c2f5f
004c2f5f ; ---------------------------------------------------------
004c2f5f
004c2f61 loc_4c2f61:
004c2f61   mov     eax, [$6aaeb4]
004c2f66   call    +$18ed ($4c4858)       ; segment%59.public%5940 (PCMAV.exe)
004c2f66
004c2f6b   mov     ebx, eax
004c2f6d   mov     eax, [ebp-4]
004c2f70   sub     ebx, [eax+$48]
004c2f73   sar     ebx, 1
004c2f75   jns     loc_4c2f7a
004c2f75
004c2f77   adc     ebx, 0
004c2f75
004c2f7a loc_4c2f7a:
004c2f7a   mov     eax, [$6aaeb4]
004c2f7f   call    +$18c8 ($4c484c)       ; segment%59.public%5939 (PCMAV.exe)
004c2f7f
004c2f84   mov     esi, eax
004c2f86   mov     eax, [ebp-4]
004c2f89   sub     esi, [eax+$4c]
004c2f8c   sar     esi, 1
004c2f8e   jns     loc_4c2f93
004c2f8e
004c2f90   adc     esi, 0
004c2f8e
004c2f93 loc_4c2f93:
004c2f93   mov     eax, [$6aaeb4]
004c2f98   call    +$18d3 ($4c4870)       ; segment%59.public%5942 (PCMAV.exe)
004c2f98
004c2f9d   cmp     ebx, eax
004c2f9f   jge     loc_4c2fad
004c2f9f
004c2fa1   mov     eax, [$6aaeb4]
004c2fa6   call    +$18c5 ($4c4870)       ; segment%59.public%5942 (PCMAV.exe)
004c2fa6
004c2fab   mov     ebx, eax
004c2fa6
004c2fad loc_4c2fad:
004c2fad   mov     eax, [$6aaeb4]
004c2fb2   call    +$18ad ($4c4864)       ; segment%59.public%5941 (PCMAV.exe)
004c2fb2
004c2fb7   cmp     esi, eax
004c2fb9   jge     loc_4c2fc7
004c2fb9
004c2fbb   mov     eax, [$6aaeb4]
004c2fc0   call    +$189f ($4c4864)       ; segment%59.public%5941 (PCMAV.exe)
004c2fc0
004c2fc5   mov     esi, eax
004c2fc0
004c2fc7 loc_4c2fc7:
004c2fc7   mov     eax, [ebp-4]
004c2fca   mov     eax, [eax+$48]
004c2fcd   push    eax
004c2fce   mov     eax, [ebp-4]
004c2fd1   mov     eax, [eax+$4c]
004c2fd4   push    eax
004c2fd5   mov     ecx, esi
004c2fd7   mov     edx, ebx
004c2fd9   mov     eax, [ebp-4]
004c2fdc   mov     ebx, [eax]
004c2fde   call    dword ptr [ebx+$88]
004c2fde
004c2fe4   mov     eax, [ebp-4]
004c2fe7   cmp     byte ptr [eax+$57], 0
004c2feb   jz      loc_4c30f9
004c2feb
004c2ff1   mov     eax, [ebp-4]
004c2ff4   call    -$2945 ($4c06b4)       ; segment%59.public%5818 (PCMAV.exe)
004c2ff4
004c2ff9   jmp     loc_4c30f9
004c2ff9
004c2ff9 ; ---------------------------------------------------------
004c2ff9
004c2ffe loc_4c2ffe:
004c2ffe   cmp     al, 5
004c3000   jnz     loc_4c30f9
004c3000
004c3006   mov     eax, [ebp-4]
004c3009   cmp     byte ptr [eax+$277], 1
004c3010   jnz     loc_4c304c
004c3010
004c3012   mov     eax, [$6aaeb0]
004c3017   mov     eax, [eax+$44]
004c301a   call    -$1b81b ($4a7804)      ; segment%55.public%4922 (PCMAV.exe)
004c301a
004c301f   mov     ebx, eax
004c3021   mov     eax, [ebp-4]
004c3024   sub     ebx, [eax+$48]
004c3027   sar     ebx, 1
004c3029   jns     loc_4c302e
004c3029
004c302b   adc     ebx, 0
004c3029
004c302e loc_4c302e:
004c302e   mov     eax, [$6aaeb0]
004c3033   mov     eax, [eax+$44]
004c3036   call    -$1b7f3 ($4a7848)      ; segment%55.public%4924 (PCMAV.exe)
004c3036
004c303b   mov     esi, eax
004c303d   mov     eax, [ebp-4]
004c3040   sub     esi, [eax+$4c]
004c3043   sar     esi, 1
004c3045   jns     loc_4c30a8
004c3045
004c3047   adc     esi, 0
004c304a   jmp     loc_4c30a8
004c304a
004c304a ; ---------------------------------------------------------
004c304a
004c304c loc_4c304c:
004c304c   mov     eax, [$6aaeb4]
004c3051   call    +$1832 ($4c4888)       ; segment%59.public%5944 (PCMAV.exe)
004c3051
004c3056   mov     ebx, eax
004c3058   sar     ebx, 1
004c305a   jns     loc_4c305f
004c305a
004c305c   adc     ebx, 0
004c305a
004c305f loc_4c305f:
004c305f   mov     eax, [$6aaeb4]
004c3064   call    +$1807 ($4c4870)       ; segment%59.public%5942 (PCMAV.exe)
004c3064
004c3069   add     ebx, eax
004c306b   mov     eax, [ebp-4]
004c306e   mov     eax, [eax+$48]
004c3071   sar     eax, 1
004c3073   jns     loc_4c3078
004c3073
004c3075   adc     eax, 0
004c3073
004c3078 loc_4c3078:
004c3078   sub     ebx, eax
004c307a   mov     eax, [$6aaeb4]
004c307f   call    +$17f8 ($4c487c)       ; segment%59.public%5943 (PCMAV.exe)
004c307f
004c3084   mov     esi, eax
004c3086   sar     esi, 1
004c3088   jns     loc_4c308d
004c3088
004c308a   adc     esi, 0
004c3088
004c308d loc_4c308d:
004c308d   mov     eax, [$6aaeb4]
004c3092   call    +$17cd ($4c4864)       ; segment%59.public%5941 (PCMAV.exe)
004c3092
004c3097   add     esi, eax
004c3099   mov     eax, [ebp-4]
004c309c   mov     eax, [eax+$4c]
004c309f   sar     eax, 1
004c30a1   jns     loc_4c30a6
004c30a1
004c30a3   adc     eax, 0
004c30a1
004c30a6 loc_4c30a6:
004c30a6   sub     esi, eax
004c30a3
004c30a8 loc_4c30a8:
004c30a8   mov     eax, [$6aaeb4]
004c30ad   call    +$17be ($4c4870)       ; segment%59.public%5942 (PCMAV.exe)
004c30ad
004c30b2   cmp     ebx, eax
004c30b4   jge     loc_4c30c2
004c30b4
004c30b6   mov     eax, [$6aaeb4]
004c30bb   call    +$17b0 ($4c4870)       ; segment%59.public%5942 (PCMAV.exe)
004c30bb
004c30c0   mov     ebx, eax
004c30bb
004c30c2 loc_4c30c2:
004c30c2   mov     eax, [$6aaeb4]
004c30c7   call    +$1798 ($4c4864)       ; segment%59.public%5941 (PCMAV.exe)
004c30c7
004c30cc   cmp     esi, eax
004c30ce   jge     loc_4c30dc
004c30ce
004c30d0   mov     eax, [$6aaeb4]
004c30d5   call    +$178a ($4c4864)       ; segment%59.public%5941 (PCMAV.exe)
004c30d5
004c30da   mov     esi, eax
004c30d5
004c30dc loc_4c30dc:
004c30dc   mov     eax, [ebp-4]
004c30df   mov     eax, [eax+$48]
004c30e2   push    eax
004c30e3   mov     eax, [ebp-4]
004c30e6   mov     eax, [eax+$4c]
004c30e9   push    eax
004c30ea   mov     ecx, esi
004c30ec   mov     edx, ebx
004c30ee   mov     eax, [ebp-4]
004c30f1   mov     ebx, [eax]
004c30f3   call    dword ptr [ebx+$88]
004c30f3
004c30f9 loc_4c30f9:
004c30f9   mov     eax, [ebp-4]
004c30fc   mov     byte ptr [eax+$278], 0
004c3103   mov     eax, [ebp-4]
004c3106   cmp     byte ptr [eax+$277], 1
004c310d   jnz     loc_4c31c8
004c310d
004c3113   mov     eax, [ebp-4]
004c3116   cmp     byte ptr [eax+$273], 2
004c311d   jnz     loc_4c3155
004c311d
004c311f   push    0
004c3121   mov     eax, [ebp-4]
004c3124   call    -$130fd ($4b002c)      ; segment%55.public%5292 (PCMAV.exe)
004c3124
004c3129   push    eax
004c312a   push    $223
004c312f   mov     eax, [$6aaeb0]
004c3134   mov     eax, [eax+$44]
004c3137   mov     eax, [eax+$29c]
004c313d   push    eax
004c313e   call    -$b9d87 ($4093bc)      ; segment%3.public%1011 (PCMAV.exe)
004c313e
004c3143   push    3
004c3145   mov     eax, [ebp-4]
004c3148   call    -$13121 ($4b002c)      ; segment%55.public%5292 (PCMAV.exe)
004c3148
004c314d   push    eax
004c314e   call    -$b9c87 ($4094cc)      ; segment%3.public%1045 (PCMAV.exe)
004c314e
004c3153   jmp     loc_4c31a6
004c3153
004c3153 ; ---------------------------------------------------------
004c3153
004c3155 loc_4c3155:
004c3155   mov     eax, [ebp-4]
004c3158   movzx   eax, byte ptr [eax+$273]
004c315f   mov     eax, [eax*4+$698004]
004c3166   push    eax
004c3167   mov     eax, [ebp-4]
004c316a   call    -$13143 ($4b002c)      ; segment%55.public%5292 (PCMAV.exe)
004c316a
004c316f   push    eax
004c3170   call    -$b9ca9 ($4094cc)      ; segment%3.public%1045 (PCMAV.exe)
004c3170
004c3175   mov     eax, [ebp-4]
004c3178   mov     eax, [eax+$48]
004c317b   mov     edx, [ebp-4]
004c317e   mov     edx, [edx+$4c]
004c3181   shl     edx, $10
004c3184   or      eax, edx
004c3186   push    eax
004c3187   push    0
004c3189   push    5
004c318b   mov     eax, [ebp-4]
004c318e   call    -$13167 ($4b002c)      ; segment%55.public%5292 (PCMAV.exe)
004c318e
004c3193   push    eax
004c3194   push    $408eb4                ; segment%3.public%850 (PCMAV.exe)
004c3199   call    -$ba39a ($408e04)      ; segment%3.public%828 (PCMAV.exe)
004c3199
004c319e   mov     eax, [ebp-4]
004c31a1   call    -$1b07e ($4a8128)      ; segment%55.public%4964 (PCMAV.exe)
004c31a1
004c31a6 loc_4c31a6:
004c31a6   push    0
004c31a8   push    0
004c31aa   push    $234
004c31af   mov     eax, [$6aaeb0]
004c31b4   mov     eax, [eax+$44]
004c31b7   mov     eax, [eax+$29c]
004c31bd   push    eax
004c31be   call    -$b9e07 ($4093bc)      ; segment%3.public%1011 (PCMAV.exe)
004c31be
004c31c3   jmp     loc_4c3327
004c31c3
004c31c3 ; ---------------------------------------------------------
004c31c3
004c31c8 loc_4c31c8:
004c31c8   mov     eax, [ebp-4]
004c31cb   movzx   eax, byte ptr [eax+$273]
004c31d2   mov     eax, [eax*4+$698004]
004c31d9   push    eax
004c31da   mov     eax, [ebp-4]
[...]

Thumbs up

40

Re: PCMAV 6.2 + Clamav 0.97

ada lagi nih Mas Fajar, tolong di perbaiki lagi fungsi Parameter "FORCE" karena hampir2 nggk berfungsi dengan baik...
btw dimana bisa dapatkan PCMAV 6.3 mas fajar??

Thumbs up

41

Re: PCMAV 6.2 + Clamav 0.97

@Rahman: silahkan gunakan program Patcher yang dapat di download di hXXp://www.sendspace.com/file/qkchgy

Tujuan program ini untuk mencegah PCMAV stuck (menu di tray icon tidak dapat ditampilkan) jika komputer dalam mode  idle atau setelah mode standbye.

Thumbs up

42

Re: PCMAV 6.2 + Clamav 0.97

fajar.anggiawan wrote:

@Rahman: silahkan gunakan program Patcher yang dapat di download di hXXp://www.sendspace.com/file/qkchgy

Tujuan program ini untuk mencegah PCMAV stuck (menu di tray icon tidak dapat ditampilkan) jika komputer dalam mode  idle atau setelah mode standbye.

Trima kasih nih Mas Fajar, Patchernya berfungsi dengan baik...
Maaf ya kalau bnyk keluhan Mas Fajar, jgn bosan ya bls threatnya.....
salam buat PCMAV Predatornya.. big_smile

Last edited by Rahman (28-01-2012 12:37:34)

Thumbs up