Crash in cfgrelay, Analyzed 8 dumps, total processed 289, rate equals 2.77%



Top 1: Version = 2.7224.1000.620, Total count = 8


dump count = 1

ChildEBP RetAddr  
0429f5b0 77402d1a ntdll!RtlpCoalesceFreeBlocks+0x702
0429f6a8 77402c05 ntdll!RtlpFreeHeap+0x1f4
0429f6c8 753098cd ntdll!RtlFreeHeap+0x142
0429f714 7530a941 msvcrt!free+0xcd
0429f748 774093c5 msvcrt!_freefls+0x12a
0429f764 7742216f ntdll!RtlProcessFlsData+0x57
0429f7fc 77422403 ntdll!LdrShutdownThread+0x35
0429f80c 768d19e8 ntdll!RtlExitUserThread+0x2a
0429f820 76bad5f2 KERNELBASE!FreeLibraryAndExitThread+0x5f
0429f830 0f4c8d76 kernel32!FreeLibraryAndExitThreadStub+0x10
0429f844 0f4c8e52 CfgRelay!common_end_thread+0x56
0429f850 0f4c8cc8 CfgRelay!_endthreadex+0xd
0429f88c 76b9344d CfgRelay!thread_start<unsigned int (__stdcall*)(void *)>+0x5c
0429f898 77409802 kernel32!BaseThreadInitThunk+0xe
0429f8d8 774097d5 ntdll!__RtlUserThreadStart+0x70
0429f8f0 00000000 ntdll!_RtlUserThreadStart+0x1b
88e30553c847a189583a872963a2c500_000.dmp

dump count = 1

ChildEBP RetAddr  
05cff080 0fed97e2 KERNELBASE!RaiseException+0x62
05cff0c4 0fec82db CfgRelay!_CxxThrowException+0x66
05cff0e0 05cff0f0 CfgRelay!__scrt_throw_std_bad_alloc+0x1c
WARNING: Frame IP not in any known module. Following frames may be wrong.
05cff0e4 0fe8ecec 0x5cff0f0
05cff0f0 0fe7eb67 CfgRelay!std::_Default_allocate_traits::_Allocate+0xc
05cff108 0fe7eb15 CfgRelay!std::_Allocate_manually_vector_aligned<std::_Default_allocate_traits>+0x27
05cff114 0fe90f19 CfgRelay!std::_Allocate<8,std::_Default_allocate_traits,0>+0x15
05cff124 0fe830dd CfgRelay!std::allocator<char>::allocate+0x19
05cff158 0fe910f6 CfgRelay!std::basic_string<char,std::char_traits<char>,std::allocator<char> >::_Reallocate_grow_by<<lambda_ab246b20b9526e2ef7792587e4298a77>,char const *,unsigned int>+0x6d
05cff184 0fe9101c CfgRelay!std::basic_string<char,std::char_traits<char>,std::allocator<char> >::append+0x96
05cff19c 0fe87b63 CfgRelay!std::basic_string<char,std::char_traits<char>,std::allocator<char> >::append+0x2c
05cff1ac 0fe8dcec CfgRelay!std::basic_string<char,std::char_traits<char>,std::allocator<char> >::operator+=+0x13
05cff290 0fe7cf0b CfgRelay!SlowCfgReaderHandler::String+0x12c
05cff2e8 0fe7d7df CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::ParseString<0,rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0x17b
05cff304 0fe7cc09 CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::ParseValue<0,rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0x7f
05cff320 0fe7d7f1 CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::ParseObject<0,rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0x1e9
05cff338 0fe7b93c CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::ParseValue<0,rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0x91
05cff350 0fe7d803 CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::ParseArray<0,rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0xec
05cff368 0fe7cc09 CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::ParseValue<0,rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0xa3
05cff384 0fe7d7f1 CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::ParseObject<0,rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0x1e9
05cff39c 0fe7cc09 CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::ParseValue<0,rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0x91
05cff3b8 0fe7d7f1 CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::ParseObject<0,rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0x1e9
05cff3d0 0fe7b6f3 CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::ParseValue<0,rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0x91
05cff3f8 0fe7b83b CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::Parse<0,rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0x123
05cff410 0fe8859a CfgRelay!rapidjson::GenericReader<rapidjson::UTF8<char>,rapidjson::UTF8<char>,rapidjson::CrtAllocator>::Parse<rapidjson::GenericStringStream<rapidjson::UTF8<char> >,SlowCfgReaderHandler>+0x1b
05cff500 0fe8b0d3 CfgRelay!RapidJsonParser::AddSlowCfg+0x8a
05cff57c 0fe9941c CfgRelay!CConfigMgr::InitLocalCfg+0xb3
05cff5f0 0fe9cc9d CfgRelay!CMainWnd::OnCreate+0x7c
05cff608 0fe9a212 CfgRelay!CMainWnd::_ProcessWindowMessage+0x3d
05cff634 0fe9c327 CfgRelay!CMainWnd::ProcessWindowMessage+0x32
05cff690 714d1896 CfgRelay!ATL::CWindowImplBaseT<ATL::CWindow,ATL::CWinTraits<1442840576,0> >::WindowProc+0x67
05cff6b0 764de0bb atlthunk!GetAtlThunkData+0xf3
05cff6dc 764e8849 user32!_InternalCallWinProc+0x2b
05cff700 764eb145 user32!InternalCallWinProc+0x20
05cff7d0 764d8503 user32!UserCallWinProcCheckWow+0x1be
05cff838 764db205 user32!DispatchClientMessage+0x1b3
05cff904 7651dc34 user32!__fnINLPCREATESTRUCT+0xa5
05cffba0 77a178bf user32!VerNtUserCreateWindowEx+0x244
05cffcc8 764daa98 ntdll!wcstombs+0x8f
05cffd08 0fe78f50 user32!CreateWindowExW+0x38
05cffd4c 0fe78e70 CfgRelay!ATL::CWindowImplBaseT<ATL::CWindow,ATL::CWinTraits<1442840576,0> >::Create+0xd0
05cffd80 0fe7962e CfgRelay!ATL::CWindowImpl<CMainWnd,ATL::CWindow,ATL::CWinTraits<1442840576,0> >::Create+0x90
05cffdf8 0fea2e5f CfgRelay!CConfigCenterTrayClient::Process+0x6e
05cffe04 0fee8cc3 CfgRelay!CThread::ThreadProc+0x1f
05cffe40 76178674 CfgRelay!thread_start<unsigned int (__stdcall*)(void *)>+0x57
05cffe54 77a05e17 kernel32!BaseThreadInitThunk+0x24
05cffe9c 77a05de7 ntdll!__RtlUserThreadStart+0x2f
05cffeac 00000000 ntdll!_RtlUserThreadStart+0x1b
9d7bd1b2eb9d9723ce2645549d3fe61a_001.dmp

dump count = 1

0985f860 07c6eecd CfgRelay!COnlineConfig::OnHttpStatus+0x3fa
0985f88c 07c66eaf NetBridge!CHttpTask::UpdateProgress+0x4d
0985f8c8 07c69282 NetBridge!CHttpCurl::EndDownload+0x1cf
0985f9b4 07c70646 NetBridge!CHttpCurl::ThreadImpl+0x162
0985f9c8 07c70a9d NetBridge!CXThread::Execute+0x36
0985fce8 07c70b28 NetBridge!ATL::CWorkerThread<ATL::CRTThreadTraits>::WorkerThreadProc+0x14d
0985fd10 07cc75ad NetBridge!ATL::CWorkerThread<ATL::CRTThreadTraits>::_WorkerThreadProc+0x38
0985fd4c 771e344d NetBridge!thread_start<unsigned int (__stdcall*)(void *)>+0x57
0985fd58 77be9802 kernel32!BaseThreadInitThunk+0xe
0985fd98 77be97d5 ntdll!__RtlUserThreadStart+0x70
0985fdb0 00000000 ntdll!_RtlUserThreadStart+0x1b
bc5c99bf3c44b7cc4bacaebc05a0778b_000.dmp

dump count = 1

ChildEBP RetAddr  
0365f9dc 5492cd02 CfgRelay!CMainWnd::SetMsgHandled
0365f9f4 5492a212 CfgRelay!CMainWnd::_ProcessWindowMessage+0xa2
0365fa20 5492c327 CfgRelay!CMainWnd::ProcessWindowMessage+0x32
0365fa7c 767862fa CfgRelay!ATL::CWindowImplBaseT<ATL::CWindow,ATL::CWinTraits<1442840576,0> >::WindowProc+0x67
0365faa8 76786d3a user32!InternalCallWinProc+0x23
0365fb20 767877c4 user32!UserCallWinProcCheckWow+0x109
0365fb80 7678788a user32!DispatchMessageWorker+0x3b5
0365fb90 54909881 user32!DispatchMessageW+0xf
0365fbb4 5490964b CfgRelay!WTL::CMessageLoop::Run+0xc1
0365fc10 54932e5f CfgRelay!CConfigCenterTrayClient::Process+0x8b
0365fc1c 54978cc3 CfgRelay!CThread::ThreadProc+0x1f
0365fc58 760f344d CfgRelay!thread_start<unsigned int (__stdcall*)(void *)>+0x57
0365fc64 77739802 kernel32!BaseThreadInitThunk+0xe
0365fca4 777397d5 ntdll!__RtlUserThreadStart+0x70
0365fcbc 00000000 ntdll!_RtlUserThreadStart+0x1b
1815a99e54881cb43e394212fc6bbfd7_000.dmp

dump count = 1

ChildEBP RetAddr  
0651f460 775be0c3 ntdll!RtlpLowFragHeapFree+0x31
0651f478 764e14ad ntdll!RtlFreeHeap+0x105
0651f48c 76a45844 kernel32!HeapFree+0x14
0651f4c8 76a45ed4 wininet!INTERNET_CONNECT_HANDLE_OBJECT::~INTERNET_CONNECT_HANDLE_OBJECT+0x33f
0651f4ec 76a4587d wininet!HTTP_REQUEST_HANDLE_OBJECT::~HTTP_REQUEST_HANDLE_OBJECT+0x670
0651f4f8 76a40b47 wininet!HTTP_REQUEST_HANDLE_OBJECT::`scalar deleting destructor'+0xd
0651f514 76a4033d wininet!HANDLE_OBJECT::Dereference+0xfffc0bda
0651f520 76a40a5b wininet!DereferenceObject+0x2c
0651f578 76a40765 wininet!InternalInternetCloseHandle+0x2ee
0651f5dc 76206e35 wininet!InternetCloseHandle+0x85
0651f5f8 76206e6b urlmon!CINet::TerminateRequest+0xa4
0651f604 7623aeac urlmon!CINetHttp::TerminateRequest+0xb
0651f630 761f714d urlmon!CTransaction::UnlockRequest+0x19a
0651f644 761f71e4 urlmon!CTransData::~CTransData+0x51
0651f660 761f4a76 urlmon!CBinding::~CBinding+0x33b
0651f694 761f46d8 urlmon!CUrlMon::StartBinding+0x221
0651f6c4 76220663 urlmon!CUrlMon::BindToStorage+0x8e
0651f70c 76220d84 urlmon!CBaseBSCB::KickOffDownload+0x93
0651f93c 0fd60855 urlmon!URLDownloadToCacheFileW+0x84
0651fd98 0fd5e5e9 CfgRelay!CStatisticImpl::InternalDownloadFile+0xa5
0651fdf4 0fd98cc3 CfgRelay!CStatisticImpl::DownloadThreadProc+0x139
0651fe30 764e343d CfgRelay!thread_start<unsigned int (__stdcall*)(void *)>+0x57
0651fe3c 775c9812 kernel32!BaseThreadInitThunk+0xe
0651fe7c 775c97e5 ntdll!__RtlUserThreadStart+0x70
0651fe94 00000000 ntdll!_RtlUserThreadStart+0x1b
b39fd517457e8a0d83d0a518bcbfa53b_000.dmp

dump count = 1

ChildEBP RetAddr  
05a6d67c 77b7e0f3 ntdll!RtlpLowFragHeapFree+0x31
05a6d694 76116f2a ntdll!RtlFreeHeap+0x105
05a6d6a8 76117014 ole32!CRetailMalloc_Free+0x1c
05a6d6b8 752db1d5 ole32!CoTaskMemFree+0x13
05a6d6c0 753d3668 wininet!WxCoTaskAllocator::Free+0x14
05a6d72c 7537cef8 wininet!HostWCharToCharEx+0x226
05a6d75c 752f272e wininet!HostCharToAce+0x71
05a6d79c 75788e66 wininet!IsHostInProxyBypassList+0x9e
05a6d8d8 7571975a urlmon!CSecurityManager::CheckProxyBypassRule+0x4e8de
05a6db44 75719f6b urlmon!CSecurityManager::_MapComponentsToZone+0x1c1
05a6e05c 75719e58 urlmon!CSecurityManager::_MapUrlToZoneDirect+0xcb
05a6e0f4 757180b8 urlmon!CSecurityManager::MapUrlToZoneEx2Internal+0x530
05a6e138 75716bd6 urlmon!CSecurityManager::GetZoneFromUriInternal+0x127
05a6e1a4 75717d10 urlmon!CSecurityManager::MapUrlToZoneEx2Private+0x1f8
05a6e1c8 7573509e urlmon!CSecurityManager::MapUrlToZoneEx2+0x20
05a6e1fc 75736aa6 urlmon!GetIDNFlagsForUri+0x4e
05a6e228 75776e33 urlmon!CINetHttp::SetOptionsForUnicodeUrl+0x26
05a6ea70 757361f2 urlmon!CINetHttp::INetAsyncOpenRequest+0x46d
05a6eaa4 757769af urlmon!CINet::INetAsyncConnect+0x350
05a6eac4 757364d3 urlmon!CINet::INetAsyncOpen+0x280
05a6eb08 75769ced urlmon!CINet::StartCommon+0x54c
05a6eb44 75722a24 urlmon!COInetProt::StartEx+0x181
05a6f010 75770e4a urlmon!CTransaction::StartEx+0xebe
05a6f090 757249f7 urlmon!CBinding::StartBinding+0x921
05a6f0dc 757246d8 urlmon!CUrlMon::StartBinding+0x1a6
05a6f10c 75750663 urlmon!CUrlMon::BindToStorage+0x8e
05a6f154 75750d84 urlmon!CBaseBSCB::KickOffDownload+0x93
05a6f384 0ff40855 urlmon!URLDownloadToCacheFileW+0x84
05a6f7e0 0ff3e5e9 CfgRelay!CStatisticImpl::InternalDownloadFile+0xa5
05a6f83c 0ff78cc3 CfgRelay!CStatisticImpl::DownloadThreadProc+0x139
05a6f878 765f343d CfgRelay!thread_start<unsigned int (__stdcall*)(void *)>+0x57
05a6f884 77b89812 kernel32!BaseThreadInitThunk+0xe
05a6f8c4 77b897e5 ntdll!__RtlUserThreadStart+0x70
05a6f8dc 00000000 ntdll!_RtlUserThreadStart+0x1b
3d4962e9f675dcc69905f262740d8e1f_002.dmp

dump count = 1

ChildEBP RetAddr  
03bcf990 7790ef04 ntdll!RtlpInsertFreeBlock+0x430
03bcf9d0 778f440f ntdll!RtlpDeCommitFreeBlock+0x9a
03bcfac8 778f2c05 ntdll!RtlpFreeHeap+0x214
03bcfae8 756698cd ntdll!RtlFreeHeap+0x142
03bcfb34 7566a941 msvcrt!free+0xcd
03bcfb68 778f93c5 msvcrt!_freefls+0x12a
03bcfb84 7791216f ntdll!RtlProcessFlsData+0x57
03bcfc1c 77912403 ntdll!LdrShutdownThread+0x35
03bcfc2c 766219e8 ntdll!RtlExitUserThread+0x2a
03bcfc40 75b5d5f2 KERNELBASE!FreeLibraryAndExitThread+0x5f
03bcfc50 0f988d76 kernel32!FreeLibraryAndExitThreadStub+0x10
03bcfc64 0f988e52 CfgRelay!common_end_thread+0x56
03bcfc70 0f988cc8 CfgRelay!_endthreadex+0xd
03bcfcac 75b4344d CfgRelay!thread_start<unsigned int (__stdcall*)(void *)>+0x5c
03bcfcb8 778f9802 kernel32!BaseThreadInitThunk+0xe
03bcfcf8 778f97d5 ntdll!__RtlUserThreadStart+0x70
03bcfd10 00000000 ntdll!_RtlUserThreadStart+0x1b
6e0f3d5b949181b8cb807f41a4475f10_000.dmp

dump count = 1

ChildEBP RetAddr  
0560ec9c 74ed0fcb KERNELBASE!FindCodePageHashNode+0x27
0560ecc8 74ed1470 KERNELBASE!GetCPHashNode+0x97
0560ecd4 74ed182a KERNELBASE!NlsGetACPFromLocale+0x47
0560ef08 75d2eb6b KERNELBASE!CompareStringA+0x45
0560ef38 75d291a1 wininet!CompareStringNA+0x5a
0560f0a8 75d2c90a wininet!HTTP_REQUEST_HANDLE_OBJECT::LocalEndCacheWrite+0x3c1
0560f0cc 75d2c53e wininet!HTTP_REQUEST_HANDLE_OBJECT::HttpQueryDataAvailable_Fsm+0x260
0560f0d8 75d1bcbf wininet!CFsm_HttpQueryDataAvailable::RunSM+0x37
0560f118 75d1c379 wininet!CFsm::Run+0x7a
0560f130 75d2c4e0 wininet!DoFsm+0x25
0560f140 75d2c485 wininet!HTTP_REQUEST_HANDLE_OBJECT::HttpQueryDataAvailable+0x29
0560f154 75d2c459 wininet!QueryAvailable_Fsm+0x23
0560f160 75d1bcbf wininet!CFsm_QueryAvailable::RunSM+0x34
0560f1a0 75d1c379 wininet!CFsm::Run+0x7a
0560f1b8 75d28bac wininet!DoFsm+0x25
0560f234 7561607c wininet!InternetQueryDataAvailable+0x1b0
0560f460 75615fef urlmon!CINet::INetDataAvailable+0x83
0560f46c 75615763 urlmon!CINet::INetRead+0x2e
0560f47c 756157d9 urlmon!CINet::INetQueryInfo+0x62
0560f490 756152ad urlmon!CINet::OnINetInternal+0x9e
0560f4a4 7561528d urlmon!CINet::MyContinue+0x17
0560f4b4 75615271 urlmon!CINetProtImpl::Continue+0x13
0560f4c4 7561524e urlmon!CINetEmbdFilter::Continue+0x14
0560f4dc 75611e6b urlmon!CINet::Continue+0x28
0560f4ec 75611e42 urlmon!COInetProt::Continue+0x14
0560f4fc 75611e4d urlmon!CTransaction::OnINetInternalCallback+0x2d
0560f51c 75608dac urlmon!CTransaction::OnINetCallback+0x8b
0560f534 74cf62fa urlmon!TransactionWndProc+0x28
0560f560 74cf6d3a user32!InternalCallWinProc+0x23
0560f5d8 74cf77c4 user32!UserCallWinProcCheckWow+0x109
0560f638 74cf7bca user32!DispatchMessageWorker+0x3bc
0560f648 7561424b user32!DispatchMessageA+0xf
0560f688 7561419b urlmon!CTransaction::CompleteOperation+0x86
0560f6c4 7560b6f0 urlmon!CTransaction::StartEx+0x578
0560f74c 7560b265 urlmon!CBinding::StartBinding+0x602
0560f790 7560b346 urlmon!CUrlMon::StartBinding+0x169
0560f7b8 7562b567 urlmon!CUrlMon::BindToStorage+0x90
0560f7fc 7562b68c urlmon!CBaseBSCB::KickOffDownload+0x193
0560f9ac 51b60855 urlmon!URLDownloadToCacheFileW+0x108
0560fe08 51b5e5e9 CfgRelay!CStatisticImpl::InternalDownloadFile+0xa5
0560fe64 51b98cc3 CfgRelay!CStatisticImpl::DownloadThreadProc+0x139
0560fea0 75f6344d CfgRelay!thread_start<unsigned int (__stdcall*)(void *)>+0x57
0560feac 771a9802 kernel32!BaseThreadInitThunk+0xe
0560feec 771a97d5 ntdll!__RtlUserThreadStart+0x70
0560ff04 00000000 ntdll!_RtlUserThreadStart+0x1b
d674b807276a157e800176c227cd2ac9_000.dmp