Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Ethereal-dev: [Ethereal-dev] 0.8.16 crashing on Win2k

Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.

From: "Visser, Martin (SNO)" <Martin.Visser@xxxxxxxxxx>
Date: Fri, 23 Mar 2001 12:47:47 +0800
Hi,

The Ethereal 0.8.16 Win32 binary seems to be a bit unstable. I am getting
exceptions some times. It seems to be when I capture with real-time display,
but also I have had it when Ethereal loads the capture after stopping. (I
loaded the new WinPcap but it has the same symptoms).

Anyway,  here's what DrWatson thinks of it ->

Application exception occurred:
        App:  (pid=1580)
        When: 23/03/2001 @ 15:34:09.273
        Exception number: c0000005 (access violation)

*----> System Information <----*
        Computer Name: VISSERMA
        User Name: VisserMa
        Number of Processors: 1
        Processor Type: x86 Family 6 Model 5 Stepping 0
        Windows 2000 Version: 5.0
        Current Build: 2195
        Service Pack: 1
        Current Type: Uniprocessor Free
        Registered Organization: Compaq Computers Australia
        Registered Owner: Martin Visser

*----> Task List <----*
   0 Idle.exe
   8 System.exe
 140 SMSS.exe
 168 csrss.exe
 188 WINLOGON.exe
 216 services.exe
 228 LSASS.exe
 376 svchost.exe
 420 svchost.exe
 476 spoolsv.exe
 572 cisvc.exe
 520 clisvcl.exe
 568 CpqDFWAg.exe
 600 hibserv.exe
 664 NAVAPSVC.exe
 792 NPSSVC.exe
 828 regsvc.exe
 856 mstask.exe
 872 snmp.exe
 920 WinMgmt.exe
 200 mspmspsv.exe
1020 SMSAPM32.exe
1180 alertsvc.exe
1200 explorer.exe
1272 hotkey.exe
1348 rundll32.exe
 492 CPQKL.exe
1052 CPQKT.exe
1148 EM_EXEC.exe
1392 launch32.exe
1396 wcescomm.exe
1416 msmsgs.exe
1440 rundll32.exe
1516 SMSMon32.exe
1532 navapw32.exe
1548 OSA.exe
1376 sqlmangr.exe
1424 achron.exe
1564 cidaemon.exe
1580 ethereal.exe
 760 WINWORD.exe
 424 OUTLOOK.exe
 444 MAPISP32.exe
 256 ethereal.exe
1696 DRWTSN32.exe
   0 _Total.exe

(00400000 - 0063C000) 
(77F80000 - 77FFA000) 
(75050000 - 75058000) 
(77E80000 - 77F35000) 
(75030000 - 75044000) 
(78000000 - 78046000) 
(77DB0000 - 77E0A000) 
(77D40000 - 77DB0000) 
(75020000 - 75028000) 
(10000000 - 10120000) 
(00230000 - 00239000) 
(00240000 - 00289000) 
(00290000 - 00345000) 
(77E10000 - 77E74000) 
(77F40000 - 77F7C000) 
(00350000 - 00359000) 
(00360000 - 003B4000) 
(75E60000 - 75E7A000) 
(77A50000 - 77B45000) 
(69800000 - 69A42000) 
(70BD0000 - 70C1C000) 
(71700000 - 7178A000) 
(003C0000 - 003CB000) 
(691D0000 - 69255000) 
(779B0000 - 77A45000) 
(01390000 - 01398000) 
(78280000 - 7828C000) 
(77980000 - 779A4000) 
(777E0000 - 777E8000) 
(77950000 - 77979000) 
(777F0000 - 777F5000) 
(77830000 - 7783E000) 
(01850000 - 0185F000) 

State Dump for Thread Id 0x200

eax=01791000 ebx=00e04450 ecx=01791000 edx=00003abb esi=0012dfc0
edi=0012df68
eip=0052fed0 esp=0012de78 ebp=0012de90 iopl=0         nv up ei ng nz na po
cy
cs=001b  ss=0023  ds=0023  es=0023  fs=003b  gs=0000
efl=00000287


function: <nosymbols>
        0052feab d1e0             shl     eax,1
        0052fead a3e8226200       mov     [006222e8],eax
ds:006222e8=00004000
        0052feb2 8b0de8226200     mov     ecx,[006222e8]
ds:006222e8=00004000
        0052feb8 51               push    ecx
        0052feb9 8b15ec226200     mov     edx,[006222ec]
ds:006222ec=00e43fc0
        0052febf 52               push    edx
        0052fec0 e887c60000       call    0053c54c
        0052fec5 83c408           add     esp,0x8
        0052fec8 a3ec226200       mov     [006222ec],eax
ds:006222ec=00e43fc0
        0052fecd 8b4508           mov     eax,[ebp+0x8]
ss:00bab466=????????
FAULT ->0052fed0 8a08             mov     cl,[eax]
ds:01791000=??
        0052fed2 884dfc           mov     [ebp+0xfc],cl
ss:00bab466=??
        0052fed5 8b5508           mov     edx,[ebp+0x8]
ss:00bab466=????????
        0052fed8 83c201           add     edx,0x1
        0052fedb 895508           mov     [ebp+0x8],edx
ss:00bab466=????????
        0052fede 833d0c9b610001   cmp   dword ptr [00619b0c],0x1
ds:00619b0c=00000001
        0052fee5 7e1b             jle     00536702
        0052fee7 6857010000       push    0x157
        0052feec 8b45fc           mov     eax,[ebp+0xfc]
ss:00bab466=????????
        0052feef 25ff000000       and     eax,0xff
        0052fef4 50               push    eax
        0052fef5 e83e4b0100       call    00544a38

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1  Param#2  Param#3  Param#4  Function Name
0012DE90 004B3D9A 01791000 000010C4 006D25E8 002550A4 !<nosymbols> 
0012DF30 004B5A38 01790010 0000007A 01780A60 00DE277C !<nosymbols> 
0012DFE4 00475F25 01790010 0000005A 01780A60 00DE277C !<nosymbols> 
0012E468 00475B0C 01790010 0000003A 01780A60 00DE277C !<nosymbols> 
0012E4A0 0052CE87 01790010 00000036 01780A60 00DE277C !<nosymbols> 
0012E4CC 004C50AF 00D62020 0000008B 00DC9A20 00637880 !<nosymbols> 
0012E4EC 004C5E36 00DC99F0 00000014 00637880 00DE277C !<nosymbols> 
0012E5F0 0052CEBB 00DC99F0 00637880 00DE277C 0012E6CC !<nosymbols> 
0012E618 00452A21 006D6C80 00000006 00DC99F0 00637880 !<nosymbols> 
0012E684 0052CEBB 00DC99C0 00637880 00DE277C 0012E850 !<nosymbols> 
0012E6AC 00441721 006D89C0 00000800 00DC99C0 00637880 !<nosymbols> 
0012E744 0044156C 00DE0800 00DC9990 0000000E 00637880 !<nosymbols> 
0012E804 0052CEBB 00DC9990 00637880 00DE277C 00DEE3B4 !<nosymbols> 
0012E82C 00442B92 006D8B40 00000001 00DC9990 00637880 !<nosymbols> 
0012E8D0 0052C77C 00DC9990 00637880 00DE277C 00000000 !<nosymbols> 
0012E94C 00532F10 00DEBC00 00DC913C 01790010 01780A60 !<nosymbols> 
0012E96C 004F0B47 00DC913C 01790010 01780A60 00DE277C !<nosymbols> 
0012E9BC 004F0A55 01780A60 00627600 00DC913C 01790010 !<nosymbols> 
0012E9F8 004F066F 00627600 00005650 00005650 0012FA5C !<nosymbols> 
0012EA0C 004EE883 00627600 0000001C 0012FA50 00000008 !<nosymbols> 
0012FA5C 004EE5C3 00627600 00000000 00000000 00000003 !<nosymbols> 
0012FA84 002514D1 00000000 00000000 0012FAC4 002511F5 !<nosymbols> 
0012FAC4 0025005F 00E04450 004EE546 00000000 00241D73
!g_main_context_get_poll_func 
0012FB14 0025075C 00D7FF18 00D7FF18 00000001 00000010 !g_get_current_time 
0012FB44 00250902 00D7FF18 7FFFFFFF 00DC8858 00000001
!g_main_context_dispatch 
0012FB84 00250C4F 00D7FF18 00000001 00000001 00250AFF
!g_main_context_dispatch 
0012FBB4 1007A869 00DC7640 00000001 00505D15 00D99E70 !g_main_loop_run 
0012FBF4 005039EE 00000000 23222120 27262524 2B2A2928 !gtk_main 
0012FF24 00503B75 00000001 00C60F20 0012FFC0 0054806E !<nosymbols> 
0012FF34 0054806E 00400000 00000000 00134121 00000001 !<nosymbols> 
0012FFC0 77E992A6 00D2D550 00000846 7FFDF000 C0000005 !<nosymbols> 
0012FFF0 00000000 00547F8E 00000000 000000C8 00000100
kernel32!GetCommandLineW 

*----> Raw Stack Dump <----*
0012de78  f9 ff ff ff 00 00 00 00 - 4e 11 79 01 00 00 00 00
........N.y.....
0012de88  b7 3a 00 00 00 00 00 00 - 30 df 12 00 9a 3d 4b 00
.:......0....=K.
0012de98  00 10 79 01 c4 10 00 00 - e8 25 6d 00 a4 50 25 00
..y......%m..P%.
0012dea8  01 00 00 00 a4 50 25 00 - 50 44 e0 00 06 00 00 00
.....P%.PD......
0012deb8  f0 e5 12 00 a4 50 25 00 - 18 08 66 01 b0 70 61 00
.....P%...f..pa.
0012dec8  00 00 e0 00 00 00 53 00 - 08 00 e0 00 00 00 00 00
......S.........
0012ded8  40 00 dc 00 c4 10 61 00 - 00 00 12 00 f9 89 52 00
@.....a.......R.
0012dee8  00 45 e3 00 00 00 00 00 - 08 00 de 00 50 e3 de 00
.E..........P...
0012def8  d8 3f 12 00 00 00 52 00 - 04 00 00 00 41 ef 66 01
.?....R.....A.f.
0012df08  68 4e e1 00 50 e3 de 00 - 34 df 12 00 7c 70 52 00
hN..P...4...|pR.
0012df18  38 00 e3 00 cd 10 00 00 - 0a 00 00 00 58 00 00 00
8...........X...
0012df28  02 00 00 00 90 20 67 01 - e4 df 12 00 38 5a 4b 00  .....
g.....8ZK.
0012df38  10 00 79 01 7a 00 00 00 - 60 0a 78 01 7c 27 de 00
..y.z...`.x.|'..
0012df48  fc 45 e3 00 04 10 00 00 - 00 20 00 00 41 ef 00 00  .E.......
..A...
0012df58  90 05 00 00 90 20 67 01 - 68 4e e1 00 01 00 00 00  .....
g.hN......
0012df68  b0 05 00 00 3a 00 00 00 - 00 00 00 00 00 00 00 00
....:...........
0012df78  f0 e5 12 00 06 00 00 00 - 2c 75 5d 00 ec 7b e2 00
........,u]..{..
0012df88  32 8a 52 00 fc 45 e3 00 - 98 0b 66 01 3a 00 00 00
2.R..E....f.:...
0012df98  10 fa e3 00 10 fa e3 00 - 00 00 00 00 04 10 00 00
................
0012dfa8  00 20 00 00 41 ef 00 00 - 90 05 00 00 02 00 00 00  .
..A...........

State Dump for Thread Id 0x1ac

eax=7ffd2004 ebx=00000003 ecx=0162f8e0 edx=00000000 esi=77f820e5
edi=00000003
eip=77f820f0 esp=0162fd24 ebp=0162fd70 iopl=0         nv up ei pl zr na po
nc
cs=001b  ss=0023  ds=0023  es=0023  fs=0038  gs=0000
efl=00000246


function: NtWaitForMultipleObjects
        77f820e5 b8e9000000       mov     eax,0xe9
        77f820ea 8d542404         lea     edx,[esp+0x4]
ss:020ad2fb=????????
        77f820ee cd2e             int     2e
        77f820f0 c21400           ret     0x14

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1  Param#2  Param#3  Param#4  Function Name
0162FD70 77E860C6 0162FD48 00000001 00000000 00000000
ntdll!NtWaitForMultipleObjects 
0162FFB4 77E837CD 00000004 0014DA74 7FFDE000 0014F530
kernel32!WaitForMultipleObjects 
0162FFEC 00000000 00000000 00000000 00000000 00000000 kernel32!TlsSetValue 

State Dump for Thread Id 0x54c

eax=77d52ba1 ebx=00000246 ecx=00000000 edx=00000000 esi=0013ece8
edi=0013ed28
eip=77f82230 esp=01d7fe28 ebp=01d7ff74 iopl=0         nv up ei pl nz na pe
nc
cs=001b  ss=0023  ds=0023  es=0023  fs=0038  gs=0000
efl=00000202


function: NtReplyWaitReceivePortEx
        77f82225 b8ac000000       mov     eax,0xac
        77f8222a 8d542404         lea     edx,[esp+0x4]
ss:027fd3ff=????????
        77f8222e cd2e             int     2e
        77f82230 c21400           ret     0x14
        77f82233 55               push    ebp
        77f82234 8bec             mov     ebp,esp
        77f82236 56               push    esi
        77f82237 57               push    edi
        77f82238 53               push    ebx
        77f82239 8bf4             mov     esi,esp
        77f8223b ff7514           push    dword ptr [ebp+0x14]
ss:027fd54a=????????
        77f8223e ff7510           push    dword ptr [ebp+0x10]
ss:027fd54a=????????
        77f82241 ff750c           push    dword ptr [ebp+0xc]
ss:027fd54a=????????
        77f82244 ff5508           call    dword ptr [ebp+0x8]
ss:027fd54a=????????
        77f82247 8be6             mov     esp,esi

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1  Param#2  Param#3  Param#4  Function Name
01D7FF74 77D525D2 77D52C07 0013ECE8 00000000 00000000
ntdll!NtReplyWaitReceivePortEx 
01D7FFA8 77D52BB9 0014D870 01D7FFEC 77E837CD 0014FF50
rpcrt4!NdrVaryingArrayFree 
01D7FFB4 77E837CD 0014FF50 00000000 00000000 0014FF50
rpcrt4!NdrVaryingArrayFree 
01D7FFEC 00000000 00000000 00000000 00000000 00000000 kernel32!TlsSetValue 


Martin Visser
Technology Consultant - Compaq Global Services

Compaq Computer Australia
410 Concord Road
Rhodes, Sydney NSW 2138
Australia

Phone: +61-2-9022-5630
Mobile: +61-411-254-513
Fax:+61-2-9022-7001
Email:martin.visser@xxxxxxxxxx