26

Re: PCMAV 6.0 Asgard

bug Pcmav di windows 7 ultimate, kemudian icon pcmav yg aktif di sistem tray sering tidak dapat di klik kanan jadi tidak dapat menggunakan fitur pcmav yang baru. hal ini sdh terjadi dari versi pcmav sebelumnya. chef kira2 apa penyebab terjadinya hal ini?
Problem signature:
Problem Event Name: APPCRASH
Application Name: PCMAV.exe
Application Version: 6.0.0.0
Application Timestamp: 4e673c6b
Fault Module Name: PCMAV.exe
Fault Module Version: 6.0.0.0
Fault Module Timestamp: 4e673c6b
Exception Code: c0000005
Exception Offset: 00276b77
OS Version: 6.1.7600.2.0.0.256.1
Locale ID: 1033
Additional Information 1: 38b5
Additional Information 2: 38b50225276f5e40961c183dc779185e
Additional Information 3: e70a
Additional Information 4: e70a0ee534fa893da2c47c2f6a557ee5

Read our privacy statement online:
http://go.microsoft.com/fwlink/?linkid= … cid=0×0409

If the online privacy statement is not available, please read our privacy statement offline:
C:\Windows\system32\en-US\erofflps.txt

Edited: Silahkan lihat htxp://virusindonesia.com/forum/viewtopic.php?pid=15031

Last edited by fajar.anggiawan (08-11-2011 07:18:05)

Thumbs up

27

Re: PCMAV 6.0 Asgard

Ada error di PCMAV 6.
Muncul waktu scan seluruh drive C.
Jadi proses scan berhenti dan ada pesan crash/madexcept  smile

Bugreportnya ada di
http://tinypaste.com/007fef02

Mudah2an di versi 6.1 sudah diperbaiki.

Besok laporan lagi pake versi 6.1  wink

Thumbs up

28

Re: PCMAV 6.0 Asgard

hari wrote:

Jadi proses scan berhenti dan ada pesan crash/madexcept

Error tersebut disebabkan oleh penggunaan library ClamAV terbaru. Saat ini PCMAV stabil dengan library ClamAV 0.95x yang dapat di download di hxxp://www.sendspace.com/file/0rgasu

Thumbs up

29

Re: PCMAV 6.0 Asgard

fajar.anggiawan wrote:

Error tersebut disebabkan oleh penggunaan library ClamAV terbaru. Saat ini PCMAV stabil dengan library ClamAV 0.95x yang dapat di download di hxxp://www.sendspace.com/file/0rgasu

Terima kasih responnya  smile
Sudah saya coba dengan PCMAV 6.1.

Ternyata memang folder plugins\clamav (berisi versi 0.97.3) harus dihapus terlebih dulu agar error seperti ini tidak terjadi.

Kalau tidak dihapus; error (pesan crashnya) muncul, tapi madexceptnya tidak  sad

Thumbs up

30

Re: PCMAV 6.0 Asgard

lapor update.vdb nya jadi error seperti ini.
pertama
http://1.bp.blogspot.com/-LQiPxlB0qn0/TsKHC6CdUqI/AAAAAAAAHu0/JiT-hum1dMc/s1600/update+158-153.bmp

kedua
http://4.bp.blogspot.com/-GCGAgUedExY/TsKI0rmq9iI/AAAAAAAAHu8/Qu9MmTv3Bfk/s1600/erorvdb.JPG

Last edited by wokey (15-11-2011 22:46:31)

31

Re: PCMAV 6.0 Asgard

Bug Report, saat exit PCMAV.

date/time         : 2011-11-16, 20:55:06, 778ms
computer name     : AMARTIN-PC
user name         : amartin <admin>
registered owner  : amartin
operating system  : Windows 7 build 7600
system language   : English
system up time    : 3 minutes 30 seconds
program up time   : 2 minutes 55 seconds
processors        : 2x AMD Athlon(tm) 64 X2 Dual Core Processor 5000+
physical memory   : 1119/1791 MB (free/total)
free disk space   : (C:) 8.52 GB (D:) 17.25 GB
display mode      : 1360x768, 32 bit
process id        : $754
allocated memory  : 171.81 MB
command line      : "D:\PCMAV 6.x Asgard\PCMAV.exe" /RTP
executable        : PCMAV.exe
exec. date/time   : 2011-09-07 16:42
version           : 6.0.0.0
compiled with     : Delphi 2006/07
madExcept version : 3.0m beta 1
PCMAV.exe.mad     : $00026e28, $4d433f27, $4a241791
callstack crc     : $43ec36ed, $ab474bd7, $ab474bd7
exception number  : 1
exception class   : EAccessViolation
exception message : Access violation at address 00589BA0 in module 'PCMAV.exe'. Write of address 000002C0.

main thread ($758):
00589ba0 +01c PCMAV.exe    segment%187 public%9646
0060982d +015 PCMAV.exe    segment%273 public%12251
005419ad +015 PCMAV.exe    segment%157 public%8594
004749bf +00f PCMAV.exe    segment%31  public%3431
00474649 +0fd PCMAV.exe    segment%31  public%3424
00474de6 +06a PCMAV.exe    segment%31  public%3442
004748c9 +02d PCMAV.exe    segment%31  public%3427
0052a519 +0dd PCMAV.exe    segment%130 public%8116
00404784 +008 PCMAV.exe    segment%0   public%191
0045f66c +008 PCMAV.exe    segment%26  public%2694
00541921 +025 PCMAV.exe    segment%157 public%8590
004750bf +047 PCMAV.exe    segment%31  public%3455
00474eb3 +047 PCMAV.exe    segment%31  public%3444
004a4490 +0b0 PCMAV.exe    segment%54  public%4865
00404b32 +002 PCMAV.exe    segment%0   public%213
0046b930 +024 PCMAV.exe    segment%31  public%3074
004750bf +047 PCMAV.exe    segment%31  public%3455
004b97ae +032 PCMAV.exe    segment%58  public%5639
0045736e +026 PCMAV.exe    segment%26  public%2424
004055d9 +021 PCMAV.exe    segment%0   public%246
00690333 +27f PCMAV.exe    segment%423 public%13231
762d1172 +010 kernel32.dll             BaseThreadInitThunk

thread $c60 (TWndProc): <suspended>
0066786b +1f PCMAV.exe segment%282 public%12790

thread $cc0:
77c25e7a +0a ntdll.dll     NtWaitForWorkViaWorkerFactory
762d1172 +10 kernel32.dll  BaseThreadInitThunk

thread $ccc:
77c25e4a +0a ntdll.dll     NtWaitForMultipleObjects
762d1172 +10 kernel32.dll  BaseThreadInitThunk

thread $fb0:
77c25e6a +0a ntdll.dll       NtWaitForSingleObject
75e01796 +66 KERNELBASE.dll  WaitForSingleObjectEx
762ceffe +3e kernel32.dll    WaitForSingleObjectEx
762d1172 +10 kernel32.dll    BaseThreadInitThunk

thread $fb8:
77c25e7a +0a ntdll.dll     NtWaitForWorkViaWorkerFactory
762d1172 +10 kernel32.dll  BaseThreadInitThunk

thread $fbc:
77c25e6a +0a ntdll.dll                 NtWaitForSingleObject
75e01796 +66 KERNELBASE.dll            WaitForSingleObjectEx
762ceffe +3e kernel32.dll              WaitForSingleObjectEx
762cefad +0d kernel32.dll              WaitForSingleObject
00452b5d +0d PCMAV.exe      segment%23 public%2340
00452bc7 +37 PCMAV.exe      segment%23 public%2341
762d1172 +10 kernel32.dll              BaseThreadInitThunk
>> created by main thread ($758) at:
76c294a0 +00 wininet.dll

thread $fc0:
77c24c1a +0a ntdll.dll                 NtDelayExecution
75e01870 +4f KERNELBASE.dll            SleepEx
75e01813 +0a KERNELBASE.dll            Sleep
00452b5d +0d PCMAV.exe      segment%23 public%2340
00452bc7 +37 PCMAV.exe      segment%23 public%2341
762d1172 +10 kernel32.dll              BaseThreadInitThunk
>> created by thread $fbc at:
7668642e +00 ole32.dll

thread $fd4: <priority:1>
77c257ea +0a ntdll.dll     NtRemoveIoCompletion
762d1172 +10 kernel32.dll  BaseThreadInitThunk

thread $fec:
77c25e6a +00a ntdll.dll                 NtWaitForSingleObject
75e01796 +066 KERNELBASE.dll            WaitForSingleObjectEx
762ceffe +03e kernel32.dll              WaitForSingleObjectEx
762cefad +00d kernel32.dll              WaitForSingleObject
00474c13 +113 PCMAV.exe      segment%31 public%3436
00474cba +01e PCMAV.exe      segment%31 public%3437
004749d1 +00d PCMAV.exe      segment%31 public%3432
00474799 +075 PCMAV.exe      segment%31 public%3425
004056f4 +028 PCMAV.exe      segment%0  public%250
00452b5d +00d PCMAV.exe      segment%23 public%2340
00452bc7 +037 PCMAV.exe      segment%23 public%2341
762d1172 +010 kernel32.dll              BaseThreadInitThunk

thread $c94:
77c25d6a +0a ntdll.dll     NtTraceControl
77bfe9bb +3c ntdll.dll     EtwpNotificationThread
762d1172 +10 kernel32.dll  BaseThreadInitThunk

thread $d84 (TRegMonitorThread):
77c25e6a +0a ntdll.dll                  NtWaitForSingleObject
75e01796 +66 KERNELBASE.dll             WaitForSingleObjectEx
762ceffe +3e kernel32.dll               WaitForSingleObjectEx
762cefad +0d kernel32.dll               WaitForSingleObject
00678eae +12 PCMAV.exe      segment%288 public%12949
00452c7b +2b PCMAV.exe      segment%23  public%2342
00474758 +34 PCMAV.exe      segment%31  public%3425
004056f4 +28 PCMAV.exe      segment%0   public%250
00452b5d +0d PCMAV.exe      segment%23  public%2340
00452bc7 +37 PCMAV.exe      segment%23  public%2341
762d1172 +10 kernel32.dll               BaseThreadInitThunk
>> created by main thread ($758) at:
00678d98 +18 PCMAV.exe      segment%288 public%12946

thread $734 (TRegMonitorThread):
77c25e6a +0a ntdll.dll                  NtWaitForSingleObject
75e01796 +66 KERNELBASE.dll             WaitForSingleObjectEx
762ceffe +3e kernel32.dll               WaitForSingleObjectEx
762cefad +0d kernel32.dll               WaitForSingleObject
00678eae +12 PCMAV.exe      segment%288 public%12949
00452c7b +2b PCMAV.exe      segment%23  public%2342
00474758 +34 PCMAV.exe      segment%31  public%3425
004056f4 +28 PCMAV.exe      segment%0   public%250
00452b5d +0d PCMAV.exe      segment%23  public%2340
00452bc7 +37 PCMAV.exe      segment%23  public%2341
762d1172 +10 kernel32.dll               BaseThreadInitThunk
>> created by main thread ($758) at:
00678d98 +18 PCMAV.exe      segment%288 public%12946

thread $f48:
77c2586a +00a ntdll.dll                NtReplyWaitReceivePort
005b5f6c +030 PCMAV.exe    segment%208 public%10605
00452b5d +00d PCMAV.exe    segment%23  public%2340
00452bc7 +037 PCMAV.exe    segment%23  public%2341
762d1172 +010 kernel32.dll             BaseThreadInitThunk
>> created by thread $ad0 at:
005b6437 +263 PCMAV.exe    segment%208 public%10606

thread $f4c: <priority:1>
77c25e6a +00a ntdll.dll                  NtWaitForSingleObject
75e01796 +066 KERNELBASE.dll             WaitForSingleObjectEx
762ceffe +03e kernel32.dll               WaitForSingleObjectEx
762cefad +00d kernel32.dll               WaitForSingleObject
005b5bee +012 PCMAV.exe      segment%208 public%10604
00452b5d +00d PCMAV.exe      segment%23  public%2340
00452bc7 +037 PCMAV.exe      segment%23  public%2341
762d1172 +010 kernel32.dll               BaseThreadInitThunk
>> created by thread $ad0 at:
005b6458 +284 PCMAV.exe      segment%208 public%10606

thread $ff4:
77c25e7a +0a ntdll.dll     NtWaitForWorkViaWorkerFactory
762d1172 +10 kernel32.dll  BaseThreadInitThunk

processes:
000 Idle                   0 0   0
004 System                 0 0   0
10c smss.exe               0 0   0   normal       C:\Windows\system32
164 csrss.exe              0 0   0   normal       C:\Windows\system32
1a8 wininit.exe            0 0   0   high         C:\Windows\system32
1b4 csrss.exe              1 174 79  normal       C:\Windows\system32
1d8 services.exe           0 0   0   normal       C:\Windows\system32
1f0 lsass.exe              0 0   0   normal       C:\Windows\system32
1f8 lsm.exe                0 0   0   normal       C:\Windows\system32
234 winlogon.exe           1 6   0   high         C:\Windows\system32
28c svchost.exe            0 0   0   normal       C:\Windows\system32
2d4 svchost.exe            0 0   0   normal       C:\Windows\system32
32c Ati2evxx.exe           0 0   0   normal       C:\Windows\system32
354 svchost.exe            0 0   0   normal       C:\Windows\System32
378 svchost.exe            0 0   0   normal       C:\Windows\System32
3a0 svchost.exe            0 0   0   normal       C:\Windows\system32
3fc audiodg.exe            0 0   0
440 svchost.exe            0 0   0   normal       C:\Windows\system32
4a8 svchost.exe            0 0   0   normal       C:\Windows\system32
524 spoolsv.exe            0 0   0   normal       C:\Windows\System32
548 svchost.exe            0 0   0   normal       C:\Windows\system32
558 Ati2evxx.exe           1 9   5   normal       C:\Windows\system32
5b8 ASCService.exe         0 0   0   normal       C:\Program Files\IObit\Advanced SystemCare 4
6c8 Dwm.exe                1 18  2   high         C:\Windows\system32
6e0 taskeng.exe            1 10  3   normal       C:\Windows\system32
6e8 Explorer.EXE           1 591 458 normal       C:\Windows
6f4 taskhost.exe           1 26  20  normal       C:\Windows\system32
744 SmartDefrag.exe        1 643 108 below normal C:\Program Files\IObit\Smart Defrag 2
754 PCMAV.exe              1 230 134 below normal D:\PCMAV 6.x Asgard
788 svchost.exe            0 0   0   normal       C:\Windows\system32
7c8 RTPSvc.exe             0 0   0   normal       C:\Windows\system32
0f4 sppsvc.exe             0 0   0   normal       C:\Windows\system32
1d0 STacSV.exe             0 0   0   normal       C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_534a8eb833a146ef
82c WUDFHost.exe           0 0   0   normal       C:\Windows\system32
990 GrooveMonitor.exe      1 9   4   normal       C:\Program Files\Microsoft Office\Office12
9c4 sttray.exe             1 16  14  normal       C:\Program Files\IDT\WDM
9cc MOM.exe                1 10  9   normal       C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
9d4 ASCTray.exe            1 41  31  normal       C:\Program Files\IObit\Advanced SystemCare 4
9dc IDMan.exe              1 89  67  normal       C:\Program Files\Internet Download Manager
a78 SearchIndexer.exe      0 0   0   normal       C:\Windows\system32
afc wmpnetwk.exe           0 0   0   normal       C:\Program Files\Windows Media Player
b60 CCC.exe                1 38  49  normal       C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
bf4 IEMonitor.exe          1 18  16  normal       C:\Program Files\Internet Download Manager
e38 svchost.exe            0 0   0   normal       C:\Windows\System32
e40 SearchProtocolHost.exe 1 9   6   idle         C:\Windows\system32
e60 SearchFilterHost.exe   0 0   0   idle         C:\Windows\system32
eb0 wmiprvse.exe           0 0   0   normal       C:\Windows\system32\wbem
dcc mscorsvw.exe           0 0   0   normal       C:\Windows\Microsoft.NET\Framework\v2.0.50727
fa8 svchost.exe            0 0   0   normal       C:\Windows\System32
cf8 wmiprvse.exe           0 0   0   normal       C:\Windows\system32\wbem
e14 DllHost.exe            1 9   5   normal       C:\Windows\system32
458 WinRAR.exe             1 0   0   normal

cpu registers:
eax = 00000000
ebx = 00000000
ecx = 00695102
edx = 00000000
esi = 01bc6da0
edi = 03566480
eip = 00589ba0
esp = 0012fddc
ebp = 0012fde4

stack dump:
0012fddc  80 64 56 03 00 00 00 00 - 50 fe 12 00 32 98 60 00  .dV.....P...2.`.
0012fdec  b3 19 54 00 a0 6d bc 01 - c2 49 47 00 c0 6d bc 01  ..T..m...IG..m..
0012fdfc  4c 46 47 00 0c fe 12 00 - a0 4d 40 00 50 fe 12 00  LFG......M@.P...
0012fe0c  18 fe 12 00 95 46 47 00 - 50 fe 12 00 24 fe 12 00  .....FG.P...$...
0012fe1c  f2 46 47 00 50 fe 12 00 - 20 ff 12 00 11 47 47 00  .FG.P........GG.
0012fe2c  50 fe 12 00 80 64 56 03 - a0 6d bc 01 01 00 00 00  P....dV..m......
0012fe3c  a0 fe 12 00 d0 4d 47 00 - 10 11 ca 01 e4 fe 56 0e  .....MG.......V.
0012fe4c  00 00 00 01 a0 fe 12 00 - eb 4d 47 00 80 64 56 03  .........MG..dV.
0012fe5c  60 03 00 00 1c 01 00 00 - fc 58 c2 77 db c3 e0 75  `........X.w...u
0012fe6c  60 03 00 00 7c fe 12 00 - a0 fe 12 00 a0 6d bc 01  `...|........m..
0012fe7c  67 4d 47 00 a0 6d bc 01 - 00 00 00 00 ce 48 47 00  gMG..m.......HG.
0012fe8c  a0 6d bc 01 01 64 56 03 - 1e a5 52 00 59 4d 48 01  .m...dV...R.YMH.
0012fe9c  a0 6d bc 01 a0 23 c4 01 - 87 47 40 00 71 f6 45 00  .m...#...G@.q.E.
0012feac  26 19 54 00 80 64 56 03 - a0 23 c4 01 88 0e ca 01  &.T..dV..#......
0012febc  c2 50 47 00 a0 23 c4 01 - 00 00 00 00 a0 23 c4 01  .PG..#.......#..
0012fecc  b8 4e 47 00 00 7e c7 01 - 00 00 00 00 00 00 00 00  .NG..~..........
0012fedc  95 44 4a 00 41 47 40 00 - 01 0c 9c 00 35 4b 40 00  .DJ.AG@.....5K@.
0012feec  35 b9 46 00 20 28 c0 01 - 00 00 00 00 00 00 00 00  5.F..(..........
0012fefc  3a 85 4a 00 34 ff 12 00 - a0 23 c4 01 a0 23 c4 01  :.J.4....#...#..
0012ff0c  00 00 00 00 85 a9 4b 00 - 70 b4 c6 01 28 e1 c9 01  ......K.p...(...

disassembling:
00589b84 public segment%187.public%9646 (PCMAV.exe):  ; function entry point
00589b84   push    ebp
00589b85   mov     ebp, esp
00589b87   push    ecx
00589b88   push    ebx
00589b89   mov     ebx, edx
00589b8b   mov     [ebp-4], eax
00589b8e   test    ebx, ebx
00589b90   jz      loc_589b9d
00589b90
00589b92   mov     eax, [ebx+$254]
00589b98   cmp     eax, [ebp-4]
00589b9b   jnz     loc_589c11
00589b9b
00589b9d loc_589b9d:
00589b9d   mov     eax, [ebp-4]
00589ba0 > mov     byte ptr [eax+$2c0], 1
00589ba7   xor     eax, eax
00589ba9   push    ebp
00589baa   push    $589c0a                ; segment%0.public%227 (PCMAV.exe)
00589baf   push    dword ptr fs:[eax]
00589bb2   mov     fs:[eax], esp
00589bb5   mov     edx, ebx
00589bb7   mov     eax, [ebp-4]
00589bba   call    -$58b ($589634)        ; segment%187.public%9629 (PCMAV.exe)
00589bba
00589bbf   test    ebx, ebx
00589bc1   jnz     loc_589bd3
00589bc1
00589bc3   or      edx, -1
00589bc6   mov     eax, [ebp-4]
00589bc9   mov     ecx, [eax]
00589bcb   call    dword ptr [ecx+$e4]
00589bcb
00589bd1   jmp     loc_589bf2
00589bd1
00589bd1 ; ---------------------------------------------------------
00589bd1
00589bd3 loc_589bd3:
00589bd3   mov     eax, [ebp-4]
00589bd6   cmp     ebx, [eax+$2b4]
00589bdc   jnz     loc_589bf2
00589bdc
00589bde   mov     eax, ebx
00589be0   call    -$c19 ($588fcc)        ; segment%187.public%9608 (PCMAV.exe)
00589be0
00589be5   mov     edx, eax
00589be7   mov     eax, [ebp-4]
00589bea   mov     ecx, [eax]
00589bec   call    dword ptr [ecx+$e4]
00589bec
00589bf2 loc_589bf2:
00589bf2   xor     eax, eax
00589bf4   pop     edx
00589bf5   pop     ecx
00589bf6   pop     ecx
00589bf7   mov     fs:[eax], edx
00589bfa   push    $589c11
00589bf7
00589bff loc_589bff:
00589bff   mov     eax, [ebp-4]
00589c02   mov     byte ptr [eax+$2c0], 0
00589c09   ret
00589c09
00589c09 ; ---------------------------------------------------------
00589c09
00589c0a   jmp     -$184cbf ($404f50)     ; segment%0.public%227 (PCMAV.exe)
00589c0a
00589c0f   jmp     loc_589bff
00589c0f
00589c0f ; ---------------------------------------------------------
00589c0f
00589c11 loc_589c11:
00589c11   pop     ebx
00589c12   pop     ecx
00589c13   pop     ebp
00589c14   ret