Re: IIS 6.0 hangs not serving pages

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance

From: Pat [MSFT] (patfilot_at_online.microsoft.com)
Date: 02/04/05


Date: Fri, 4 Feb 2005 09:59:53 -0800

Threads 15 & 24 are the only threads doing any work and they are both
blocked making a cross apartment (possibly cross process) call. So, either:
1) They are blocking on each other
or
2) They are blocking on a call to another process.

I can't tell from this log.

I can tell that r2w25api.dll is involved. It is unlikely to be the culprit
but is part of the chain. So, you need to find out why that DLL is making a
cross apartment/cross process call and to what it is calling. If you can
find that out, you may be able to track down the root cause.

Pat

"Photon" <Photon@discussions.microsoft.com> wrote in message
news:8853F1B5-F690-4B30-94D5-0E02E2734B6B@microsoft.com...
> Pat, here is log with the correct symbols. Thanks in advance!
>
>
> Microsoft (R) Windows Debugger Version 6.4.0007.2
> Copyright (c) Microsoft Corporation. All rights reserved.
>
>
> Loading Dump File
> [D:\Apps\IISDebugLogs\Hang_Mode__Date_02-01-2005__Time_18-10-52PM\PID-3328__W3WP.EXE_-Report2Web_AppPool-__full_1250_2005-02-01_18-11-02-281_0D00.dmp]
> User Mini Dump File with Full Memory: Only application data is available
>
> Comment: 'Full dump in Hang Mode for
> W3WP.EXE_-Report2Web_AppPool-_running_on_REPORTS'
> Windows Server 2003 Version 3790 MP (2 procs) Free x86 compatible
> Product: Server, suite: TerminalServer SingleUserTS
> Debug session time: Tue Feb 1 18:11:03.000 2005 (GMT-6)
> System Uptime: 0 days 0:03:11.781
> Process Uptime: 0 days 0:00:55.000
> Symbol search path is:
> symsrv*symsrv.dll*D:\Progra~1\Window~2*http://msdl.microsoft.com/download/symbols
> ;D:\Program Files\Windows Symbol Files
> Executable search path is:
> .................................................................
> (d00.d04): Wake debugger - code 80000007 (!!! second chance !!!)
> eax=77fc30d4 ebx=77d12184 ecx=00000000 edx=00000000 esi=00000154
> edi=00000000
> eip=7ffe0304 esp=0006fe5c ebp=0006fecc iopl=0 nv up ei pl zr na po
> nc
> cs=001b ss=0023 ds=0023 es=0023 fs=003b gs=0000
> efl=00000246
> SharedUserData!SystemCallStub+0x4:
> 7ffe0304 c3 ret
> WARNING: Whitespace at end of path element
> 0:000> .reload
> .................................................................
> 0:000> ~*kb250
>
> . 0 Id: d00.d04 Suspend: 1 Teb: 7ffde000 Unfrozen
> ChildEBP RetAddr Args to Child
> 0006fe58 77f43741 77e41817 00000154 00000000
> SharedUserData!SystemCallStub+0x4
> 0006fe5c 77e41817 00000154 00000000 00000000
> ntdll!ZwWaitForSingleObject+0xc
> 0006fecc 77e4168f 00000154 ffffffff 00000000
> kernel32!WaitForSingleObjectEx+0xac
> 0006fedc 5a3635ae 00000154 ffffffff 00000000
> kernel32!WaitForSingleObject+0xf
> 0006feec 5a364d7d 00264f20 5a3a1d98 00000000
> w3dt!WP_CONTEXT::RunMainThreadLoop+0xe
> 0006fef4 5a3a1d98 00000000 010013b4 5a3a5d54 w3dt!UlAtqStartListen+0x2d
> 0006ff00 5a3a5d54 010013ec 010013b4 010017af
> w3core!W3_SERVER::StartListen+0x8e
> 0006ff0c 010017af 00000007 00263940 00000000 w3core!UlW3Start+0xea
> 0006ff44 0100195e 00000007 00263940 00264670 w3wp!wmain+0x236
> 0006ffc0 77e4f38c 00000000 00000000 7ffdf000 w3wp!wmainCRTStartup+0x12f
> 0006fff0 00000000 0100182f 00000000 78746341
> kernel32!BaseProcessStart+0x23
>
> 1 Id: d00.b28 Suspend: 1 Teb: 7ffdd000 Unfrozen
> ChildEBP RetAddr Args to Child
> 009bfea0 77f4372d 77f6c86c 00000002 009bfef0
> SharedUserData!SystemCallStub+0x4
> 009bfea4 77f6c86c 00000002 009bfef0 00000001
> ntdll!NtWaitForMultipleObjects+0xc
> 009bff48 77f6d7f5 00000002 009bff70 00000000
> ntdll!EtwpWaitForMultipleObjectsEx+0xf7
> 009bffb8 77e4a990 00000000 00000000 00000000 ntdll!EtwpEventPump+0x27d
> 009bffec 00000000 77f6d651 00000000 00000000 kernel32!BaseThreadStart+0x34
>
> 2 Id: d00.b50 Suspend: 1 Teb: 7ffdc000 Unfrozen
> ChildEBP RetAddr Args to Child
> 009fff9c 77f4262b 77f6b5b2 00000001 009fffb0
> SharedUserData!SystemCallStub+0x4
> 009fffa0 77f6b5b2 00000001 009fffb0 00000000 ntdll!NtDelayExecution+0xc
> 009fffb8 77e4a990 00000000 00000000 00000000 ntdll!RtlpTimerThread+0x45
> 009fffec 00000000 77f6b56d 00000000 00000000 kernel32!BaseThreadStart+0x34
>
> 3 Id: d00.b54 Suspend: 1 Teb: 7ffdb000 Unfrozen
> ChildEBP RetAddr Args to Child
> 00a3ff70 77f430c7 77f7e6ae 000000c4 00a3ffb0
> SharedUserData!SystemCallStub+0x4
> 00a3ff74 77f7e6ae 000000c4 00a3ffb0 00a3ffb4
> ntdll!ZwRemoveIoCompletion+0xc
> 00a3ffb8 77e4a990 00000000 00000000 00000000 ntdll!RtlpWorkerThread+0x3b
> 00a3ffec 00000000 77f7e673 00000000 00000000 kernel32!BaseThreadStart+0x34
>
> 4 Id: d00.b60 Suspend: 1 Teb: 7ffda000 Unfrozen
> ChildEBP RetAddr Args to Child
> 00aafe20 77f4313f 77c57b85 0000010c 00aaff7c
> SharedUserData!SystemCallStub+0x4
> 00aafe24 77c57b85 0000010c 00aaff7c 00000000
> ntdll!NtReplyWaitReceivePortEx+0xc
> 00aaff8c 77c60829 77c60771 00095b10 00000000
> rpcrt4!LRPC_ADDRESS::ReceiveLotsaCalls+0x193
> 00aaff90 77c60771 00095b10 00000000 00000000
> rpcrt4!RecvLotsaCallsWrapper+0x9
> 00aaffb0 77c60857 0008a0f8 77e4a990 00095d50
> rpcrt4!BaseCachedThreadRoutine+0x9c
> 00aaffb8 77e4a990 00095d50 00000000 00000000
> rpcrt4!ThreadStartRoutine+0x17
> 00aaffec 00000000 77c60840 00095d50 00000000 kernel32!BaseThreadStart+0x34
>
> 5 Id: d00.b4c Suspend: 1 Teb: 7ffd9000 Unfrozen
> ChildEBP RetAddr Args to Child
> 00aeff10 77f4262b 77e418ea 00000000 00aeff54
> SharedUserData!SystemCallStub+0x4
> 00aeff14 77e418ea 00000000 00aeff54 77e4178f ntdll!NtDelayExecution+0xc
> 00aeff7c 77e416ee 0000ea60 00000000 77162501 kernel32!SleepEx+0x68
> 00aeff88 77162501 0000ea60 00098b60 771625ea kernel32!Sleep+0xb
> 00aeff94 771625ea 00000000 77160000 00098b60
> ole32!CROIDTable::WorkerThreadLoop+0x12
> 00aeff9c 77160000 00098b60 00098b60 00aeffec
> ole32!CRpcThread::WorkerLoop+0x1e
> 00aeffac 77162653 00000000 00000000 77e4a990
> ole32!_imp__InstallApplication
> <PERF> (ole32+0x0)
> 00aeffb8 77e4a990 00098b60 00000000 00000000
> ole32!CRpcThreadCache::RpcWorkerThreadEntry+0x1f
> 00aeffec 00000000 77162634 00098b60 00000000 kernel32!BaseThreadStart+0x34
>
> 6 Id: d00.b8c Suspend: 1 Teb: 7ffd8000 Unfrozen
> ChildEBP RetAddr Args to Child
> 00caff28 77f430c7 77e430bc 0000014c 00caff84
> SharedUserData!SystemCallStub+0x4
> 00caff2c 77e430bc 0000014c 00caff84 00caff70
> ntdll!ZwRemoveIoCompletion+0xc
> 00caff58 5a302360 0000014c 00caff80 00caff84
> kernel32!GetQueuedCompletionStatus+0x27
> 00caff90 5a302531 00000000 002683f0 00caffec
> w3tp!THREAD_POOL_DATA::ThreadPoolThread+0x31
> 00caffa4 5a301d27 00268378 00000000 00000000
> w3tp!THREAD_POOL_DATA::ThreadPoolThread+0x21
> 00caffb8 77e4a990 002683f0 00000000 00000000
> w3tp!THREAD_MANAGER::ThreadManagerThread+0x35
> 00caffec 00000000 5a301cf2 002683f0 00000000 kernel32!BaseThreadStart+0x34
>
> 7 Id: d00.ba8 Suspend: 1 Teb: 7ffd7000 Unfrozen
> ChildEBP RetAddr Args to Child
> 00ceff28 77f430c7 77e430bc 0000014c 00ceff84
> SharedUserData!SystemCallStub+0x4
> 00ceff2c 77e430bc 0000014c 00ceff84 00ceff70
> ntdll!ZwRemoveIoCompletion+0xc
> 00ceff58 5a302360 0000014c 00ceff80 00ceff84
> kernel32!GetQueuedCompletionStatus+0x27
> 00ceff90 5a302531 00000000 00268410 00ceffec
> w3tp!THREAD_POOL_DATA::ThreadPoolThread+0x31
> 00ceffa4 5a301d27 00268378 00000000 00000000
> w3tp!THREAD_POOL_DATA::ThreadPoolThread+0x21
> 00ceffb8 77e4a990 00268410 00000000 00000000
> w3tp!THREAD_MANAGER::ThreadManagerThread+0x35
> 00ceffec 00000000 5a301cf2 00268410 00000000 kernel32!BaseThreadStart+0x34
>
> 8 Id: d00.bac Suspend: 1 Teb: 7ffd6000 Unfrozen
> ChildEBP RetAddr Args to Child
> 00d2ff28 77f430c7 77e430bc 0000014c 00d2ff84
> SharedUserData!SystemCallStub+0x4
> 00d2ff2c 77e430bc 0000014c 00d2ff84 00d2ff70
> ntdll!ZwRemoveIoCompletion+0xc
> 00d2ff58 5a302360 0000014c 00d2ff80 00d2ff84
> kernel32!GetQueuedCompletionStatus+0x27
> 00d2ff90 5a302531 00000000 00268430 00d2ffec
> w3tp!THREAD_POOL_DATA::ThreadPoolThread+0x31
> 00d2ffa4 5a301d27 00268378 00000000 00000000
> w3tp!THREAD_POOL_DATA::ThreadPoolThread+0x21
> 00d2ffb8 77e4a990 00268430 00000000 00000000
> w3tp!THREAD_MANAGER::ThreadManagerThread+0x35
> 00d2ffec 00000000 5a301cf2 00268430 00000000 kernel32!BaseThreadStart+0x34
>
> 9 Id: d00.b5c Suspend: 1 Teb: 7ffd5000 Unfrozen
> ChildEBP RetAddr Args to Child
> 00d6ff28 77f430c7 77e430bc 0000014c 00d6ff84
> SharedUserData!SystemCallStub+0x4
> 00d6ff2c 77e430bc 0000014c 00d6ff84 00d6ff70
> ntdll!ZwRemoveIoCompletion+0xc
> 00d6ff58 5a302360 0000014c 00d6ff80 00d6ff84
> kernel32!GetQueuedCompletionStatus+0x27
> 00d6ff90 5a302531 00000000 00268450 00d6ffec
> w3tp!THREAD_POOL_DATA::ThreadPoolThread+0x31
> 00d6ffa4 5a301d27 00268378 00000000 00000000
> w3tp!THREAD_POOL_DATA::ThreadPoolThread+0x21
> 00d6ffb8 77e4a990 00268450 00000000 00000000
> w3tp!THREAD_MANAGER::ThreadManagerThread+0x35
> 00d6ffec 00000000 5a301cf2 00268450 00000000 kernel32!BaseThreadStart+0x34
>
> 10 Id: d00.c1c Suspend: 1 Teb: 7ffd4000 Unfrozen
> ChildEBP RetAddr Args to Child
> 00e2fcec 77f4372d 77f75297 00000003 00e2fd34
> SharedUserData!SystemCallStub+0x4
> 00e2fcf0 77f75297 00000003 00e2fd34 00000001
> ntdll!NtWaitForMultipleObjects+0xc
> 00e2ffb8 77e4a990 00000000 00000000 00000000 ntdll!RtlpWaitThread+0x158
> 00e2ffec 00000000 77f75155 00000000 00000000 kernel32!BaseThreadStart+0x34
>
> 11 Id: d00.470 Suspend: 1 Teb: 7ffaf000 Unfrozen
> ChildEBP RetAddr Args to Child
> 016dff14 77f43741 77e41817 000001c8 00000000
> SharedUserData!SystemCallStub+0x4
> 016dff18 77e41817 000001c8 00000000 00000000
> ntdll!ZwWaitForSingleObject+0xc
> 016dff88 77e4168f 000001c8 ffffffff 00000000
> kernel32!WaitForSingleObjectEx+0xac
> 016dff98 5a3a51f7 000001c8 ffffffff 00000000
> kernel32!WaitForSingleObject+0xf
> 016dffb8 77e4a990 00000000 00000000 00000000
> w3core!HTTP_COMPRESSION::CompressionThread+0x85
> 016dffec 00000000 5a3a51d0 00000000 00000000 kernel32!BaseThreadStart+0x34
>
> 12 Id: d00.b7c Suspend: 1 Teb: 7ffae000 Unfrozen
> ChildEBP RetAddr Args to Child
> 0172fe20 77f4313f 77c57b85 0000010c 0172ff7c
> SharedUserData!SystemCallStub+0x4
> 0172fe24 77c57b85 0000010c 0172ff7c 00000000
> ntdll!NtReplyWaitReceivePortEx+0xc
> 0172ff8c 77c60829 77c60771 00095b10 00000000
> rpcrt4!LRPC_ADDRESS::ReceiveLotsaCalls+0x193
> 0172ff90 77c60771 00095b10 00000000 00000000
> rpcrt4!RecvLotsaCallsWrapper+0x9
> 0172ffb0 77c60857 0008a0f8 77e4a990 000b85a8
> rpcrt4!BaseCachedThreadRoutine+0x9c
> 0172ffb8 77e4a990 000b85a8 00000000 00000000
> rpcrt4!ThreadStartRoutine+0x17
> 0172ffec 00000000 77c60840 000b85a8 00000000 kernel32!BaseThreadStart+0x34
>
> 13 Id: d00.c58 Suspend: 1 Teb: 7ffad000 Unfrozen
> ChildEBP RetAddr Args to Child
> 0176ff8c 77f4262b 77f6f0fc 00000001 0176ffac
> SharedUserData!SystemCallStub+0x4
> 0176ff90 77f6f0fc 00000001 0176ffac 00000000 ntdll!NtDelayExecution+0xc
> 0176ffb8 77e4a990 000b96c0 00000000 00000000 ntdll!RtlpIOWorkerThread+0x3d
> 0176ffec 00000000 77f6f0bf 000b96c0 00000000 kernel32!BaseThreadStart+0x34
>
> 14 Id: d00.eb0 Suspend: 1 Teb: 7ffac000 Unfrozen
> ChildEBP RetAddr Args to Child
> 017cfecc 77f4372d 77e41bfa 00000002 017cff1c
> SharedUserData!SystemCallStub+0x4
> 017cfed0 77e41bfa 00000002 017cff1c 00000001
> ntdll!NtWaitForMultipleObjects+0xc
> 017cff78 77e4b0e4 00000002 0152a320 00000000
> kernel32!WaitForMultipleObjectsEx+0x11a
> *** ERROR: Symbol file could not be found. Defaulted to export symbols
> for
> SOAPIS30.dll -
> 017cff90 017730fd 00000002 0152a320 00000000
> kernel32!WaitForMultipleObjects+0x17
> WARNING: Stack unwind information not available. Following frames may be
> wrong.
> 017cffb8 77e4a990 0152a390 00000000 00000000 SOAPIS30+0x30fd
> 017cffec 00000000 01773070 0152a390 00000000 kernel32!BaseThreadStart+0x34
>
> 15 Id: d00.eac Suspend: 1 Teb: 7ffab000 Unfrozen
> ChildEBP RetAddr Args to Child
> 0180ea70 77f4372d 77e41bfa 00000002 0180eac0
> SharedUserData!SystemCallStub+0x4
> 0180ea74 77e41bfa 00000002 0180eac0 00000001
> ntdll!NtWaitForMultipleObjects+0xc
> 0180eb1c 77d076f5 00000002 0180eb44 00000000
> kernel32!WaitForMultipleObjectsEx+0x11a
> 0180eb78 77161edd 00000001 0180ebc0 000003e8
> user32!RealMsgWaitForMultipleObjectsEx+0x13f
> 0180eba0 77161f60 0180ebc0 000003e8 0180ebd0
> ole32!CCliModalLoop::BlockFn+0x7e
> 0180ebc8 7726af8d ffffffff 0014b160 0010508c ole32!ModalLoop+0x59
> 0180ebe4 7726b1a5 00000000 0014b160 00000000 ole32!ThreadSendReceive+0x9e
> 0180ebfc 7726b087 0180ecb8 0014b160 0180ed08
> ole32!CRpcChannelBuffer::SwitchAptAndDispatchCall+0x10f
> 0180ecd0 77192fe5 0014b160 0180edd8 0180edc8
> ole32!CRpcChannelBuffer::SendReceive2+0xb6
> 0180ece8 77192f8f 0180edd8 0180edc8 0014b160
> ole32!CCliModalLoop::SendReceive+0x1c
> 0180ed4c 771ac725 0014b160 0180edd8 0180edc8
> ole32!CAptRpcChnl::SendReceive+0x68
> 0180eda0 77ce6a4e 00000001 0180edd8 0180edc8
> ole32!CCtxComChnl::SendReceive+0x8f
> 0180edbc 77ce6bdf 0014b34c 0180ee04 00000000
> rpcrt4!NdrProxySendReceive+0x41
> 0180f18c 7714c59e 770eef58 770ed85a 0180f1a4 rpcrt4!NdrClientCall2+0x1bc
> 0180f19c 7714d744 0014b34c 60030002 018dbb38
> oleaut32!IDispatch_RemoteInvoke_Proxy+0x15
> *** ERROR: Symbol file could not be found. Defaulted to export symbols
> for
> MSSOAP30.dll -
> 0180f45c 018feeea 0014b34c 60030002 018dbb38
> oleaut32!IDispatch_Invoke_Proxy+0xb4
> WARNING: Stack unwind information not available. Following frames may be
> wrong.
> 0180f524 018ef053 01580ea0 0180f81c 0180faac
> MSSOAP30!DllRegisterServer+0x1e491
> 0180fdbc 018ed9be 015753dc 77be000d 0180fe84
> MSSOAP30!DllRegisterServer+0xe5fa
> 0180fe48 0177453a 00000000 00d88928 0152a398
> MSSOAP30!DllRegisterServer+0xcf65
> 0180fe70 01774cf5 00000000 77e4b0cd 0152a398 SOAPIS30+0x453a
> 0180ff9c 017730cc 000001f8 00000000 00d88928
> SOAPIS30!GetExtensionVersion+0x176
> 0180ffb8 77e4a990 0152a398 00000000 00000000 SOAPIS30+0x30cc
> 0180ffec 00000000 01773070 0152a398 00000000 kernel32!BaseThreadStart+0x34
>
> 16 Id: d00.f24 Suspend: 1 Teb: 7ffaa000 Unfrozen
> ChildEBP RetAddr Args to Child
> 0184fecc 77f4372d 77e41bfa 00000002 0184ff1c
> SharedUserData!SystemCallStub+0x4
> 0184fed0 77e41bfa 00000002 0184ff1c 00000001
> ntdll!NtWaitForMultipleObjects+0xc
> 0184ff78 77e4b0e4 00000002 0152a320 00000000
> kernel32!WaitForMultipleObjectsEx+0x11a
> 0184ff90 017730fd 00000002 0152a320 00000000
> kernel32!WaitForMultipleObjects+0x17
> WARNING: Stack unwind information not available. Following frames may be
> wrong.
> 0184ffb8 77e4a990 0152a3a0 00000000 00000000 SOAPIS30+0x30fd
> 0184ffec 00000000 01773070 0152a3a0 00000000 kernel32!BaseThreadStart+0x34
>
> 17 Id: d00.f14 Suspend: 1 Teb: 7ffa9000 Unfrozen
> ChildEBP RetAddr Args to Child
> 0188fecc 77f4372d 77e41bfa 00000002 0188ff1c
> SharedUserData!SystemCallStub+0x4
> 0188fed0 77e41bfa 00000002 0188ff1c 00000001
> ntdll!NtWaitForMultipleObjects+0xc
> 0188ff78 77e4b0e4 00000002 0152a320 00000000
> kernel32!WaitForMultipleObjectsEx+0x11a
> 0188ff90 017730fd 00000002 0152a320 00000000
> kernel32!WaitForMultipleObjects+0x17
> WARNING: Stack unwind information not available. Following frames may be
> wrong.
> 0188ffb8 77e4a990 0152a3a8 00000000 00000000 SOAPIS30+0x30fd
> 0188ffec 00000000 01773070 0152a3a8 00000000 kernel32!BaseThreadStart+0x34
>
> 18 Id: d00.230 Suspend: 1 Teb: 7ffa8000 Unfrozen
> ChildEBP RetAddr Args to Child
> 018cfecc 77f4372d 77e41bfa 00000002 018cff1c
> SharedUserData!SystemCallStub+0x4
> 018cfed0 77e41bfa 00000002 018cff1c 00000001
> ntdll!NtWaitForMultipleObjects+0xc
> 018cff78 77e4b0e4 00000002 0152a320 00000000
> kernel32!WaitForMultipleObjectsEx+0x11a
> 018cff90 017730fd 00000002 0152a320 00000000
> kernel32!WaitForMultipleObjects+0x17
> WARNING: Stack unwind information not available. Following frames may be
> wrong.
> 018cffb8 77e4a990 0152a3b0 00000000 00000000 SOAPIS30+0x30fd
> 018cffec 00000000 01773070 0152a3b0 00000000 kernel32!BaseThreadStart+0x34
>
> 19 Id: d00.fc8 Suspend: 1 Teb: 7ffa7000 Unfrozen
> ChildEBP RetAddr Args to Child
> 02afff14 77f43741 77e41817 00000328 00000000
> SharedUserData!SystemCallStub+0x4
> 02afff18 77e41817 00000328 00000000 00000000
> ntdll!ZwWaitForSingleObject+0xc
> 02afff88 77e4168f 00000328 ffffffff 00000000
> kernel32!WaitForSingleObjectEx+0xac
> 02afff98 70a05c99 00000328 ffffffff 00000000
> kernel32!WaitForSingleObject+0xf
> 02afffb4 70a0625a 77e4a990 00000000 00000000
> asp!CApplnCleanupMgr::ApplnCleanupDoWork+0x19
> 02afffb8 77e4a990 00000000 00000000 00000000
> asp!CApplnCleanupMgr::ApplnCleanupThread+0xa
> 02afffec 00000000 70a06250 00000000 00000000 kernel32!BaseThreadStart+0x34
>
> 20 Id: d00.fcc Suspend: 1 Teb: 7ffa6000 Unfrozen
> ChildEBP RetAddr Args to Child
> 02c3fe1c 77f4372d 77e41bfa 00000002 02c3fe6c
> SharedUserData!SystemCallStub+0x4
> 02c3fe20 77e41bfa 00000002 02c3fe6c 00000001
> ntdll!NtWaitForMultipleObjects+0xc
> 02c3fec8 77d076f5 00000002 02c3fef0 00000000
> kernel32!WaitForMultipleObjectsEx+0x11a
> 02c3ff24 77d077f5 00000001 70a36fa0 ffffffff
> user32!RealMsgWaitForMultipleObjectsEx+0x13f
> 02c3ff40 70a183cc 00000001 70a36fa0 00000000
> user32!MsgWaitForMultipleObjects+0x1d
> 02c3ff80 77bbb9c3 77bc91ed 70a36f84 00000000
> asp!CMTACallbackThread::Thread+0x4c
> 02c3ff8c 00000000 00000000 01546ad0 ade36c90 msvcrt!free+0xc8
>
> 21 Id: d00.ff8 Suspend: 1 Teb: 7ffa5000 Unfrozen
> ChildEBP RetAddr Args to Child
> 02c7fefc 77f43741 77e41817 00000384 00000000
> SharedUserData!SystemCallStub+0x4
> 02c7ff00 77e41817 00000384 00000000 00000000
> ntdll!ZwWaitForSingleObject+0xc
> 02c7ff70 77e4168f 00000384 ffffffff 00000000
> kernel32!WaitForSingleObjectEx+0xac
> 02c7ff80 709f4800 00000384 ffffffff 00000000
> kernel32!WaitForSingleObject+0xf
> 02c7ffb4 77f5cd6b 77e4a990 00000000 00000000
> asp!CViperReqManager::WatchThread+0x65
>
> 22 Id: d00.fec Suspend: 1 Teb: 7ffa4000 Unfrozen
> ChildEBP RetAddr Args to Child
> 02cdfef0 77f43741 77e41817 000003b0 00000000
> SharedUserData!SystemCallStub+0x4
> 02cdfef4 77e41817 000003b0 00000000 02cdff38
> ntdll!ZwWaitForSingleObject+0xc
> 02cdff64 77e4168f 000003b0 00002710 00000000
> kernel32!WaitForSingleObjectEx+0xac
> 02cdff74 75630e16 000003b0 00002710 015470c0
> kernel32!WaitForSingleObject+0xf
> 02cdff84 77bc91ed 756afed0 00000000 00000000
> comsvcs!CSTAThreadPool::LoadBalanceThreadControlLoop+0x25
> 02cdffb8 77e4a990 01546ef8 00000000 00000000 msvcrt!_endthreadex+0x95
> 02cdffec 00000000 77bc917e 01546ef8 00000000 kernel32!BaseThreadStart+0x34
>
> 23 Id: d00.c8 Suspend: 1 Teb: 7ffa3000 Unfrozen
> ChildEBP RetAddr Args to Child
> 02d1fee8 77f43741 77e41817 000003b0 00000000
> SharedUserData!SystemCallStub+0x4
> 02d1feec 77e41817 000003b0 00000000 02d1ff30
> ntdll!ZwWaitForSingleObject+0xc
> 02d1ff5c 77e4168f 000003b0 00003a98 00000000
> kernel32!WaitForSingleObjectEx+0xac
> 02d1ff6c 756308f3 000003b0 00003a98 00000000
> kernel32!WaitForSingleObject+0xf
> 02d1ff84 77bc91ed 756afed0 00000000 00000000
> comsvcs!CSTAThreadPool::KillThreadControlLoop+0x21
> 02d1ffb8 77e4a990 01546f90 00000000 00000000 msvcrt!_endthreadex+0x95
> 02d1ffec 00000000 77bc917e 01546f90 00000000 kernel32!BaseThreadStart+0x34
>
> 24 Id: d00.108 Suspend: 1 Teb: 7ffa2000 Unfrozen
> ChildEBP RetAddr Args to Child
> 02d5e0dc 77f4372d 77e41bfa 00000002 02d5e12c
> SharedUserData!SystemCallStub+0x4
> 02d5e0e0 77e41bfa 00000002 02d5e12c 00000001
> ntdll!NtWaitForMultipleObjects+0xc
> 02d5e188 77d076f5 00000002 02d5e1b0 00000000
> kernel32!WaitForMultipleObjectsEx+0x11a
> 02d5e1e4 77161edd 00000001 02d5e22c 000003e8
> user32!RealMsgWaitForMultipleObjectsEx+0x13f
> 02d5e20c 77161f60 02d5e22c 000003e8 02d5e23c
> ole32!CCliModalLoop::BlockFn+0x7e
> 02d5e234 771d3b39 ffffffff 0012d534 7726bf2a ole32!ModalLoop+0x59
> 02d5e240 7726bf2a 0012cbe0 02d5e318 0012d534 ole32!SwitchSTA+0x1e
> 02d5e25c 7726b087 02d5e318 0012d534 02d5e368
> ole32!CRpcChannelBuffer::SwitchAptAndDispatchCall+0xbd
> 02d5e330 77192fe5 0012d534 02d5e438 02d5e428
> ole32!CRpcChannelBuffer::SendReceive2+0xb6
> 02d5e348 77192f8f 02d5e438 02d5e428 0012d534
> ole32!CCliModalLoop::SendReceive+0x1c
> 02d5e3ac 771ac725 0012d534 02d5e438 02d5e428
> ole32!CAptRpcChnl::SendReceive+0x68
> 02d5e400 77ce6a4e 00000001 02d5e438 02d5e428
> ole32!CCtxComChnl::SendReceive+0x8f
> 02d5e41c 77ce6bdf 0015b9fc 02d5e464 06000169
> rpcrt4!NdrProxySendReceive+0x41
> 02d5e7ec 77ce69cb 770eef58 770ed81e 02d5e824 rpcrt4!NdrClientCall2+0x1bc
> 02d5e80c 77c64fcf 0000001c 00000005 02d5e844
> rpcrt4!ObjectStublessClient+0x89
> 02d5e81c 73671272 0015b9fc 7358b348 02d5e84c rpcrt4!ObjectStubless+0xf
> 02d5e844 7367b25b 11042a6c 00000000 02d5e948 msvbvm60!Adjustor929
> *** ERROR: Symbol file could not be found. Defaulted to export symbols
> for
> r2w25api.dll -
> 02d5e854 111833fc 02d5e8e0 0015b9fc 11042a6c msvbvm60!__vbaVarCopy+0x151
> WARNING: Stack unwind information not available. Following frames may be
> wrong.
> 02d5e948 770f6109 000ccbb0 02d5eb98 00000000
> r2w25api!DllCanUnloadNow+0x113c9a
> 02d5e964 7359a2fb 000ccbb0 0000024c 00000004 oleaut32!DispCallFunc+0x15d
> 02d5f2c0 7359a0f4 000ccbb0 1103b1e4 6003008f
> msvbvm60!EpiInvokeMethod+0x5a3
> 02d5f31c 7348b427 000ccbb0 6003008f 73479f4c
> msvbvm60!BASIC_CLASS_Invoke+0x64
> 02d5f370 7347f39c 01547740 000ccbb0 6003008f
> vbscript!CatchIDispatchInvoke+0x46
> 02d5f3bc 7346368c 01547648 000ccbb0 6003008f vbscript!IDispatchInvoke+0x95
> 02d5f4d0 73462f95 01547648 000ccbb0 6003008f vbscript!InvokeDispatch+0x138
> 02d5f4f4 7346576e 01547648 000ccbb0 6003008f vbscript!InvokeByName+0x40
> 02d5f7d0 73463c33 00000000 00000000 01547648
> vbscript!CScriptRuntime::Run+0x1331
> 02d5f8d4 73463d42 00000000 00000000 015484a0
> vbscript!CScriptEntryPoint::Call+0x65
> 02d5f938 73481a54 01554308 00000000 00000000
> vbscript!CSession::Execute+0xb6
> 02d5f9e0 7348b675 00000000 02d5f984 00000000
> vbscript!NameTbl::InvokeEx+0x533
> 02d5fa10 709fd709 015476c8 015540f4 709f6f00
> vbscript!LocalsNameTbl::Invoke+0x53
> 02d5fa60 709e5ee1 70a022a4 00000000 02041e90
> asp!CActiveScriptEngine::TryCall+0x70
> 02d5fa9c 709e5f21 70a022a4 00000000 02d5fb3c
> asp!CActiveScriptEngine::Call+0x31
> 02d5fab0 709f536f 02d5fb3c 00000000 70a022a4
> asp!CallScriptFunctionOfEngine+0x21
> 02d5facc 709fa180 02d5fb3c 70a022a4 02d5fb84 asp!CallScriptFunction+0x1f
> 02d5fb1c 709f5287 02341e90 02d5fb84 02d5fb3c asp!ExecuteGlobal+0x1cd
> 02d5fb60 709e5573 02841e90 02341e90 02d5fb84 asp!Execute+0xa2
> 02d5fbb0 709e5726 00000000 00000000 000fe948
> asp!CHitObj::ViperAsyncCallback+0x3ec
> 02d5fbd0 75633107 02981e90 00086410 02d5fd90
> asp!CViperAsyncRequest::OnCall+0x8c
> 02d5fbec 77204c67 000fe948 02d5fcc0 00000000
> comsvcs!CSTAActivityWork::STAActivityWorkHelper+0x30
> 02d5fc38 7720539a 00000000 00103300 756330d7 ole32!EnterForCallback+0xc0
> 02d5fd98 771e03a4 02d5fc70 756330d7 000fe948 ole32!SwitchForCallback+0x194
> 02d5fdc4 771c7e10 00103300 756330d7 000fe948 ole32!PerformCallback+0x52
> 02d5fe48 77207984 00086410 756330d7 000fe948
> ole32!CObjectContext::InternalContextCallback+0x140
> 02d5fe68 756332b3 00086410 756330d7 000fe948
> ole32!CObjectContext::DoCallback+0x1a
> 02d5fed4 756337ad 000f69a8 000f6988 000fa624
> comsvcs!CSTAActivityWork::DoWork+0x137
> 02d5fee8 75633f71 000fe948 00000001 000f6988
> comsvcs!CSTAThread::DoWork+0x14
> 02d5ff04 7563423b 00000000 01546ef8 01547028
> comsvcs!CSTAThread::ProcessQueueWork+0x30
> 02d5ff84 77bc91ed 000f6988 00000000 00000000
> comsvcs!CSTAThread::WorkerLoop+0x17a
> 02d5ffb8 77e4a990 01547028 00000000 00000000 msvcrt!_endthreadex+0x95
> 02d5ffec 00000000 77bc917e 01547028 00000000 kernel32!BaseThreadStart+0x34
>
> 25 Id: d00.184 Suspend: 1 Teb: 7ffa1000 Unfrozen
> ChildEBP RetAddr Args to Child
> 02d9fb24 77f43741 77f5d64e 000002f8 00000000
> SharedUserData!SystemCallStub+0x4
> 02d9fb28 77f5d64e 000002f8 00000000 00000000
> ntdll!ZwWaitForSingleObject+0xc
> 02d9fb64 77f42044 000002f8 709fad68 02081ef4
> ntdll!RtlpWaitForCriticalSection+0x126
> 02d9fb6c 709fad68 02081ef4 023c2068 02981ec8
> ntdll!RtlEnterCriticalSection+0x46
> 02d9fbb0 709e5726 02d9fbcc 00000000 00149ad0
> asp!CHitObj::ViperAsyncCallback+0x108
> 02d9fbd0 75633107 02981ec8 000867a8 02d9fd90
> asp!CViperAsyncRequest::OnCall+0x8c
> 02d9fbec 77204c67 00149ad0 02d9fcc0 00000000
> comsvcs!CSTAActivityWork::STAActivityWorkHelper+0x30
> 02d9fc38 7720539a 00000000 001033b4 756330d7 ole32!EnterForCallback+0xc0
> 02d9fd98 771e03a4 02d9fc70 756330d7 00149ad0 ole32!SwitchForCallback+0x194
> 02d9fdc4 771c7e10 001033b4 756330d7 00149ad0 ole32!PerformCallback+0x52
> 02d9fe48 77207984 000867a8 756330d7 00149ad0
> ole32!CObjectContext::InternalContextCallback+0x140
> 02d9fe68 756332b3 000867a8 756330d7 00149ad0
> ole32!CObjectContext::DoCallback+0x1a
> 02d9fed4 756337ad 00100fe8 00100fc8 001145cc
> comsvcs!CSTAActivityWork::DoWork+0x137
> 02d9fee8 75633f71 00149ad0 00000001 00100fc8
> comsvcs!CSTAThread::DoWork+0x14
> 02d9ff04 7563423b 00000000 01546f90 01547028
> comsvcs!CSTAThread::ProcessQueueWork+0x30
> 02d9ff84 77bc91ed 00100fc8 00000000 00000000
> comsvcs!CSTAThread::WorkerLoop+0x17a
> 02d9ffb8 77e4a990 01547028 00000000 00000000 msvcrt!_endthreadex+0x95
> 02d9ffec 00000000 77bc917e 01547028 00000000 kernel32!BaseThreadStart+0x34
>
> 26 Id: d00.658 Suspend: 1 Teb: 7ffa0000 Unfrozen
> ChildEBP RetAddr Args to Child
> 02ddfdcc 77f4372d 77e41bfa 00000003 02ddfe1c
> SharedUserData!SystemCallStub+0x4
> 02ddfdd0 77e41bfa 00000003 02ddfe1c 00000001
> ntdll!NtWaitForMultipleObjects+0xc
> 02ddfe78 77d076f5 00000003 02ddfea0 00000000
> kernel32!WaitForMultipleObjectsEx+0x11a
> 02ddfed4 77d077f5 00000002 02ddff74 ffffffff
> user32!RealMsgWaitForMultipleObjectsEx+0x13f
> 02ddfef0 756342a4 00000002 02ddff74 00000000
> user32!MsgWaitForMultipleObjects+0x1d
> 02ddff84 77bc91ed 00101d00 00000000 00000000
> comsvcs!CSTAThread::WorkerLoop+0x1e3
> 02ddffb8 77e4a990 01547028 00000000 00000000 msvcrt!_endthreadex+0x95
> 02ddffec 00000000 77bc917e 01547028 00000000 kernel32!BaseThreadStart+0x34
>
> 27 Id: d00.43c Suspend: 1 Teb: 7ff9f000 Unfrozen
> ChildEBP RetAddr Args to Child
> 02e1fdcc 77f4372d 77e41bfa 00000003 02e1fe1c
> SharedUserData!SystemCallStub+0x4
> 02e1fdd0 77e41bfa 00000003 02e1fe1c 00000001
> ntdll!NtWaitForMultipleObjects+0xc
> 02e1fe78 77d076f5 00000003 02e1fea0 00000000
> kernel32!WaitForMultipleObjectsEx+0x11a
> 02e1fed4 77d077f5 00000002 02e1ff74 ffffffff
> user32!RealMsgWaitForMultipleObjectsEx+0x13f
> 02e1fef0 756342a4 00000002 02e1ff74 00000000
> user32!MsgWaitForMultipleObjects+0x1d
> 02e1ff84 77bc91ed 001027f0 00000000 00000000
> comsvcs!CSTAThread::WorkerLoop+0x1e3
> 02e1ffb8 77e4a990 01547028 00000000 00000000 msvcrt!_endthreadex+0x95
> 02e1ffec 00000000 77bc917e 01547028 00000000 kernel32!BaseThreadStart+0x34
>
> 28 Id: d00.11cc Suspend: 1 Teb: 7ff9e000 Unfrozen
> ChildEBP RetAddr Args to Child
> 0335ff70 77f430c7 77f7e6ae 000000c4 0335ffb0
> SharedUserData!SystemCallStub+0x4
> 0335ff74 77f7e6ae 000000c4 0335ffb0 0335ffb4
> ntdll!ZwRemoveIoCompletion+0xc
> 0335ffb8 77e4a990 00000000 00000000 00000000 ntdll!RtlpWorkerThread+0x3b
> 0335ffec 00000000 77f7e673 00000000 00000000 kernel32!BaseThreadStart+0x34
>
> 29 Id: d00.11d0 Suspend: 1 Teb: 7ff9d000 Unfrozen
> ChildEBP RetAddr Args to Child
> 0339ff70 77f430c7 77f7e6ae 000000c4 0339ffb0
> SharedUserData!SystemCallStub+0x4
> 0339ff74 77f7e6ae 000000c4 0339ffb0 0339ffb4
> ntdll!ZwRemoveIoCompletion+0xc
> 0339ffb8 77e4a990 00000000 00000000 00000000 ntdll!RtlpWorkerThread+0x3b
> 0339ffec 00000000 77f7e673 00000000 00000000 kernel32!BaseThreadStart+0x34
>



Relevant Pages