Академический Документы
Профессиональный Документы
Культура Документы
GameMain+4202096 (0x0FBE8208,0xC9E8116F,0x00000000,0x230AC
---------------------------------------Loaded Modules
---------------------------------------0x00400000 - 0x0047D000 e:\dota 1.6\warcraft iii\war3.exe
0x015D0000 - 0x01698000 C:\Windows\system32\OPENGL32.dll
0x016A0000 - 0x01787000 C:\Windows\system32\DDRAW.dll
0x02940000 - 0x02946000 C:\Windows\system32\SensApi.dll
0x02F50000 - 0x03055000 C:\Windows\system32\d3d8.dll
0x15000000 - 0x15061000 e:\dota 1.6\warcraft iii\Storm.dll
0x21100000 - 0x2115F000 e:\dota 1.6\warcraft iii\mss32.dll
0x22600000 - 0x22616000 e:\dota 1.6\warcraft iii\redist\miles\Mssfast.m3d
0x22700000 - 0x22717000 e:\dota 1.6\warcraft iii\redist\miles\Mssdolby.m3d
0x22C00000 - 0x22C18000 e:\dota 1.6\warcraft iii\redist\miles\Msseax2.m3d
0x24600000 - 0x24611000 e:\dota 1.6\warcraft iii\redist\miles\Reverb3.flt
0x26F00000 - 0x26F2A000 e:\dota 1.6\warcraft iii\redist\miles\Mp3dec.asi
0x60000000 - 0x6005D000 e:\dota 1.6\warcraft iii\ijl15.dll
0x60D80000 - 0x61729000 C:\Windows\system32\nvd3dum.dll
0x69E60000 - 0x69ED2000 C:\Windows\system32\DSOUND.DLL
0x6A540000 - 0x6A576000 C:\Windows\system32\AUDIOSES.DLL
0x6AFC0000 - 0x6AFD5000 C:\Windows\system32\Cabinet.dll
0x6B560000 - 0x6B59C000 C:\Program Files\AVAST Software\Avast\snxhk.dll
0x6EAF0000 - 0x6EAF6000 C:\Windows\system32\d3d8thk.dll
0x6F000000 - 0x6FBB5000 e:\dota 1.6\warcraft iii\Game.dll
0x6FBE0000 - 0x6FC02000 C:\Windows\system32\GLU32.dll
0x70DB0000 - 0x70E4B000 C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e
3b_8.0.50727.4927_none_d08a205e442db5b5\MSVCR80.dll
0x71E10000 - 0x71E42000 C:\Windows\system32\WINMM.dll
0x72400000 - 0x724EB000 C:\Windows\system32\dbghelp.dll
0x74140000 - 0x74146000 C:\Windows\system32\DCIMAN32.dll
0x743E0000 - 0x743F3000 C:\Windows\system32\dwmapi.dll
0x74660000 - 0x7467C000 C:\Windows\system32\cryptnet.dll
0x746F0000 - 0x74730000 C:\Windows\system32\uxtheme.dll
0x74750000 - 0x74757000 C:\Windows\system32\avrt.dll
0x74780000 - 0x74875000 C:\Windows\System32\PROPSYS.dll
0x74880000 - 0x748B9000 C:\Windows\System32\MMDevApi.dll
0x748C0000 - 0x748E5000 C:\Windows\system32\powrprof.dll
0x74970000 - 0x74991000 C:\Windows\system32\ntmarta.dll
0x74F90000 - 0x74F95000 C:\Windows\System32\wshtcpip.dll
0x75070000 - 0x750F4000 C:\Windows\WinSxS\x86_microsoft.windows.common-controls
_6595b64144ccf1df_5.82.7600.16400_none_ebf9dccf6c73e561\COMCTL32.dll
0x75100000 - 0x75107000 C:\Windows\system32\WSOCK32.dll
0x75110000 - 0x75119000 C:\Windows\system32\VERSION.dll
0x75190000 - 0x751A6000 C:\Windows\system32\GPAPI.dll
0x751B0000 - 0x751C7000 C:\Windows\system32\USERENV.dll
0x752E0000 - 0x7531D000 C:\Windows\system32\bcryptprimitives.dll
0x75380000 - 0x7538E000 C:\Windows\system32\DEVRTL.dll
0x753A0000 - 0x753DB000 C:\Windows\system32\rsaenh.dll
0x755C0000 - 0x755FC000 C:\Windows\system32\mswsock.dll
0x75600000 - 0x75616000 C:\Windows\system32\CRYPTSP.dll
0x75710000 - 0x75727000 C:\Windows\system32\bcrypt.dll
0x75730000 - 0x75768000 C:\Windows\system32\ncrypt.dll
0x75A60000 - 0x75A7A000 C:\Windows\system32\SspiCli.dll
0x75AD0000 - 0x75ADC000 C:\Windows\system32\CRYPTBASE.dll
0x75B50000 - 0x75B5B000 C:\Windows\system32\profapi.dll
0x75BC0000 - 0x75BCC000 C:\Windows\system32\MSASN1.dll
0x75C00000 - 0x75C12000 C:\Windows\system32\DEVOBJ.dll
0x75CB0000 - 0x75CD7000 C:\Windows\system32\CFGMGR32.dll
0x75CE0000 - 0x75D2A000 C:\Windows\system32\KERNELBASE.dll
0x75D30000
0x75E50000
0x75EF0000
0x75F40000
0x760A0000
0x76170000
0x76280000
0x76ED0000
0x770D0000
0x77210000
0x772E0000
0x77340000
0x774E0000
0x774F0000
0x77580000
0x77590000
0x775B0000
0x776B0000
0x776F0000
0x77710000
0x777B0000
0x77860000
0x778E0000
0x77970000
0x77A00000
0x77B40000
0x77B50000
0x75E4C000
0x75EED000
0x75F3E000
0x7609C000
0x76169000
0x7621C000
0x76EC9000
0x770C9000
0x77205000
0x772DC000
0x77325000
0x774DD000
0x774EA000
0x77573000
0x77583000
0x775A9000
0x776A4000
0x776E5000
0x7770F000
0x777B0000
0x77851000
0x778DB000
0x77937000
0x779FF000
0x77B3C000
0x77B46000
0x77C24000
C:\Windows\system32\CRYPT32.dll
C:\Windows\system32\USP10.dll
C:\Windows\system32\GDI32.dll
C:\Windows\system32\ole32.dll
C:\Windows\system32\USER32.dll
C:\Windows\system32\msvcrt.dll
C:\Windows\system32\SHELL32.dll
C:\Windows\system32\iertutil.dll
C:\Windows\system32\urlmon.dll
C:\Windows\system32\MSCTF.dll
C:\Windows\system32\WLDAP32.dll
C:\Windows\system32\SETUPAPI.dll
C:\Windows\system32\LPK.dll
C:\Windows\system32\CLBCatQ.DLL
C:\Windows\system32\Normaliz.dll
C:\Windows\SYSTEM32\sechost.dll
C:\Windows\system32\WININET.dll
C:\Windows\system32\WS2_32.dll
C:\Windows\system32\IMM32.dll
C:\Windows\system32\ADVAPI32.dll
C:\Windows\system32\RPCRT4.dll
C:\Windows\system32\comdlg32.dll
C:\Windows\system32\SHLWAPI.dll
C:\Windows\system32\OLEAUT32.dll
C:\Windows\SYSTEM32\ntdll.dll
C:\Windows\system32\NSI.dll
C:\Windows\system32\kernel32.dll
---------------------------------------Memory Dump
---------------------------------------Code: 16 bytes starting at (EIP = 6F40B6C0)
6F40B6C0: 8B 41 3C 23 41 38 83 C1 38 83 F8 FF 75 03 33 C0 .A<#A8..8...u.3.
Stack: 1024 bytes starting at (ESP = 0012E214)
* = addr
0012E210:
0012E220:
0012E230:
0012E240:
0012E250:
0012E260:
0012E270:
0012E280:
0012E290:
0012E2A0:
0012E2B0:
0012E2C0:
0012E2D0:
0012E2E0:
0012E2F0:
0012E300:
0012E310:
0012E320:
0012E330:
00
9C
A8
6C
88
17
53
F0
FF
50
C4
F0
08
00
48
00
E2
50
50
00
D1
0C
31
00
00
54
15
FF
E2
31
20
82
00
E3
00
5D
E3
E3
00
45
3A
37
66
00
41
BD
FF
BD
D5
3C
BE
00
12
00
02
12
12
00
6F
6F
00
05
00
54
0F
7F
0F
01
6F
0F
00
00
00
15
00
00
**
2F
08
9F
9C
F7
10
F0
97
A0
00
90
7F
6F
1C
08
00
B8
93
78
21
82
E7
E5
E6
49
15
3C
00
00
09
11
11
CC
04
00
14
A0
E3
3C
BE
12
12
12
03
BD
03
B3
00
AB
E8
E8
0A
00
00
A0
45
12
6F
0F
00
00
00
15
0F
15
05
00
0B
C9
C9
23
00
00
0B
6F
00
D9
F8
6C
7C
E0
00
CC
50
54
00
FE
04
00
00
02
48
D6
9B
28
38
CB
E4
E4
E6
00
42
E2
48
00
FF
00
00
00
00
5D
B7
10
E6
93
0A
12
12
12
00
09
BD
D5
00
FF
00
00
A0
00
02
45
E8
82
6F
23
00
00
00
00
F8
0F
01
00
FF
00
00
0B
00
15
6F
C9
6F
B8
08
4C
64
F0
1F
0C
F0
F4
6C
01
AE
F8
00
00
00
F8
00
00
D1
00
65
72
D4
49
00
15
CD
E2
00
EF
CB
04
00
04
CB
00
00
45
00
76
2E
D4
03
00
BD
44
12
00
45
0A
00
00
00
0A
00
00
6F
00
65
78
22
15
00
0F
6F
00
00
6F
23
00
00
00
23
00
00
*
..../!<o.8.o..Eo
..Eo.......#....
..:o....l...Leve
l17.....|...dr.x
..f............"
.....I.......I..
STAT.....B......
.....<..P.......
........TH....Do
P...........l...
.1..............
. <o..........Eo
....o..........#
.......#........
H...............
........H]......
.]........Eo...#
P.....Eo........
P...x...(..o....
0012E340:
0012E350:
0012E360:
0012E370:
0012E380:
0012E390:
0012E3A0:
0012E3B0:
0012E3C0:
0012E3D0:
0012E3E0:
0012E3F0:
0012E400:
0012E410:
0012E420:
0012E430:
0012E440:
0012E450:
0012E460:
0012E470:
0012E480:
0012E490:
0012E4A0:
0012E4B0:
0012E4C0:
0012E4D0:
0012E4E0:
0012E4F0:
0012E500:
0012E510:
0012E520:
0012E530:
0012E540:
0012E550:
0012E560:
0012E570:
0012E580:
0012E590:
0012E5A0:
0012E5B0:
0012E5C0:
0012E5D0:
0012E5E0:
0012E5F0:
0012E600:
0012E610:
32
00
00
48
38
8D
D4
E0
24
E0
64
8D
00
24
AC
83
04
00
FF
C4
69
8C
41
41
1D
47
10
00
AC
00
AC
78
59
78
39
08
75
C0
C0
20
39
00
10
B0
01
AE
E8
04
00
E4
C6
02
B6
93
E4
93
69
02
00
E4
93
17
56
00
FF
60
DD
C3
11
11
00
FB
76
00
93
00
93
E5
92
E5
21
00
6E
E5
E5
00
21
00
7A
E5
00
EF
45
00
00
12
59
00
44
04
12
04
56
00
00
12
20
E8
FA
00
FF
83
5D
5D
65
E5
00
47
3E
FD
20
FD
20
12
94
12
10
00
63
12
12
10
10
00
BD
12
00
45
6F
00
00
00
13
00
6F
00
00
00
0B
00
00
00
0B
C9
22
00
FF
41
43
43
43
41
00
6F
6F
14
0B
14
0B
00
6F
00
00
00
68
00
00
00
00
00
0F
00
00
6F
FF
00
00
A8
28
F8
38
00
96
00
FF
28
00
00
02
88
64
43
00
00
5B
41
8C
8C
1D
74
AC
00
C6
00
AC
7C
B8
7C
9C
D0
7C
93
E8
74
50
10
FF
8C
A0
50
10
00
00
E8
E4
CB
C6
00
83
00
FF
E4
00
00
00
00
A2
EC
00
C8
BE
B1
23
23
00
E5
93
00
7C
00
93
E5
D1
E5
D1
F1
41
A0
E5
E5
43
7A
FF
4C
41
DD
E8
00
00
82
12
0A
59
00
3A
00
FF
12
00
00
00
74
40
47
16
AF
5F
5B
67
E7
00
12
20
00
3E
00
20
12
45
12
45
88
63
45
12
12
BF
BD
FF
D5
3C
BD
C9
00
00
6F
00
23
13
00
6F
00
FF
00
00
00
00
05
0B
6F
41
42
43
43
43
41
00
00
0B
00
6F
00
0B
00
6F
00
6F
C4
74
6F
00
00
0F
0F
7F
01
6F
0F
00
00
01
FF
E0
CC
00
00
00
00
6C
24
84
00
00
88
B4
C4
02
41
00
41
41
1A
70
78
A2
00
7C
00
D2
6C
20
39
50
FC
D6
2B
28
78
10
97
00
10
BB
AB
00
00
00
FF
93
00
00
00
00
00
44
E4
0C
00
00
00
E6
E5
00
11
00
51
51
00
78
E5
75
00
E5
00
41
44
00
21
DD
3A
B7
16
E6
E5
7A
3C
00
20
15
15
00
00
00
FF
04
55
00
00
00
00
57
12
3C
00
00
D2
12
12
00
65
00
52
D2
00
45
12
46
00
12
00
3C
57
10
10
BD
91
45
E8
82
12
BD
03
00
AB
E8
E8
00
00
00
FF
00
0B
00
00
00
00
0B
00
6F
00
00
01
00
00
00
43
3E
43
41
00
62
00
6F
00
00
00
6F
0B
00
00
0F
C4
6F
C9
6F
00
0F
15
00
0B
C9
C9
F8
00
01
03
00
C0
28
28
28
B4
C4
00
28
00
F7
CC
B8
AC
0D
8C
00
8C
8C
1A
0C
00
7C
10
00
10
74
FF
74
A4
58
00
58
00
00
7C
4B
A0
14
FE
04
01
CB
00
00
FC
00
00
E4
E4
E4
27
A8
00
E4
00
76
E4
6C
93
00
63
00
63
63
00
E6
00
E5
76
00
76
E5
FF
E5
D1
1D
00
1D
00
00
E5
9B
9B
00
FF
00
00
0A
00
00
45
00
55
12
12
12
20
3B
00
12
00
3E
12
82
20
00
54
00
54
D4
00
12
FD
12
3E
00
3E
12
FF
12
45
0B
96
0B
00
00
12
AF
BF
00
FF
00
00
23
00
00
6F
00
0B
00
00
00
0B
6F
00
00
00
6F
00
6F
0B
00
43
3E
43
41
00
00
14
00
6F
00
6F
00
FF
00
6F
23
43
23
00
00
00
71
0F
00
FF
00
00
2.Eo...........#
................
................
H......o......Eo
8.Y.(...........
.......#..U...U.
..Do8.Y.....(...
............(...
$.....:o....(...
.............' .
diV.....lDW...;o
....(...$.......
..........<o(...
$...............
.. ..........v>o
......t.........
.V."d.@......l.o
....C.Go...... .
.......A........
.`.A...BA.eC.cTC
i.]C[._C...>...>
..]CA.[CAQRC.cTC
A.eC.#gCAQ.A.c.A
A..A.#.A........
........pxEb....
G.Got...x.......
.v>o.. ..uFo|...
.............v>o
.. ..|>o|.......
.............v>o
.. ... ..A<ot...
x...|...lDW.....
Y..o..Eo ...t...
x...|...9!....Eo
9!....EoP...X..#
.........:.....C
unch|Act..EoX..#
......Eo+.......
........(..o....
...t...x...|...
9!..PC...z..K..q
.....z...<......
.z..............
.....L... ......
.....A<o........
..EoP...........
------------------------------------------------------------------------------