old documents cause word 2000 to crash

  • Thread starter Robert Miltenberger
  • Start date
R

Robert Miltenberger

I work for ODU. I have an user that has documents from Word 5. The user
is now using Office 2000. I solved 1 of 2 problems with converting from
Word 5 to Word 2000. When the user opens some documents, Word crashes
and a Dr. Watson log file is generated.

Here's the entry for the crash in the log file:

Application exception occurred:
App: (pid=2056)
When: 11/1/2004 @ 13:45:15.322
Exception number: c0000005 (access violation)

*----> System Information <----*
Computer Name: WIN2K
User Name: User1080
Number of Processors: 1
Processor Type: x86 Family 6 Model 7 Stepping 3
Windows 2000 Version: 5.0
Current Build: 2195
Service Pack: 4
Current Type: Uniprocessor Free
Registered Organization: Old Dominion University
Registered Owner: odu

*----> Task List <----*
0 Idle.exe
8 System.exe
152 SMSS.exe
172 CSRSS.exe
192 WINLOGON.exe
220 SERVICES.exe
232 LSASS.exe
404 svchost.exe
456 svchost.exe
504 spoolsv.exe
592 FrameworkServic.exe
644 Mcshield.exe
660 VsTskMgr.exe
692 naPrdMgr.exe
752 NALNTSRV.exe
860 WolSerNT.exe
884 ZenRem32.exe
952 uphclean.exe
972 WinMgmt.exe
996 mspmspsv.exe
1008 svchost.exe
1020 WM.exe
1140 WMRUNDLL.exe
1572 NALWIN32.exe
1756 explorer.exe
1552 NALDESK.exe
460 dpmw32.exe
676 nwtray.exe
548 shstat.exe
1200 UpdaterUI.exe
1596 atiptaxx.exe
1228 (e-mail address removed)
1740 progkill.exe
1684 NLNOTES.exe
1516 ntaskldr.exe
1604 firefox.exe
1948 WINWORD.exe
1832 agentsvr.exe
2056 WINWORD.exe
1996 DRWTSN32.exe
0 _Total.exe

(30000000 - 30871000)
(77F80000 - 77FFD000)
(7C2D0000 - 7C332000)
(7C570000 - 7C628000)
(77D30000 - 77DA1000)
(77F40000 - 77F7E000)
(77E10000 - 77E75000)
(308C0000 - 30E1D000)
(77A50000 - 77B3F000)
(782F0000 - 78535000)
(63180000 - 631E9000)
(78000000 - 78045000)
(71710000 - 71794000)
(77800000 - 7781E000)
(76620000 - 76630000)
(775A0000 - 77630000)
(779B0000 - 77A4B000)
(01270000 - 01474000)
(77840000 - 7787E000)
(770C0000 - 770E3000)
(58200000 - 582C9000)
(75170000 - 751BF000)
(7C340000 - 7C34F000)
(77BF0000 - 77C01000)
(77980000 - 779A4000)
(75050000 - 75058000)
(75030000 - 75044000)
(75020000 - 75028000)
(77950000 - 7797A000)
(751C0000 - 751C6000)
(75150000 - 7515F000)
(50D20000 - 50D4B000)
(50D00000 - 50D15000)
(50DF0000 - 50E10000)
(50DB0000 - 50DDB000)
(50D50000 - 50D97000)
(50DA0000 - 50DAB000)
(58300000 - 58338000)
(58380000 - 583BD000)
(77820000 - 77827000)
(759B0000 - 759B6000)
(6A400000 - 6A41B000)
(01ED0000 - 01EED000)
(01EF0000 - 01F62000)
(75160000 - 7516C000)
(75210000 - 75225000)
(751D0000 - 75208000)
(01F70000 - 01FAE000)
(76B30000 - 76B6E000)

State Dump for Thread Id 0x7c8

eax=001971e4 ebx=00000000 ecx=00dd0012 edx=0018000c esi=0018f928 edi=
00194418
eip=01f8b66a esp=0012b804 ebp=0012b810 iopl=0 nv up ei pl nz ac
po nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=
00000216


function: <nosymbols>
01f8b647 e8f4b8feff call RtfToForeign32+0xa90 (01f76f40)
01f8b64c 8d4dfc lea ecx,[ebp+0xfc]
ss:00ba56f6=????????
01f8b64f 8b155896f901 mov edx,[01f99658]
ds:01f99658=00189040
01f8b655 51 push ecx
01f8b656 52 push edx
01f8b657 e884b9feff call RtfToForeign32+0xb30 (01f76fe0)
01f8b65c 33c0 xor eax,eax
01f8b65e 668b06 mov ax,[esi]
ds:0018f928=78bc
01f8b661 0305d412fa01 add eax,[01fa12d4]
ds:01fa12d4=0018f928
01f8b667 8945f8 mov [ebp+0xf8],eax
ss:00ba56f6=????????
FAULT ->01f8b66a 803800 cmp byte ptr [eax],0x0
ds:001971e4=??
01f8b66d 743c jz 01f941ab
01f8b66f 8b45fc mov eax,[ebp+0xfc]
ss:00ba56f6=????????
01f8b672 685d020000 push 0x25d
01f8b677 8d4dfc lea ecx,[ebp+0xfc]
ss:00ba56f6=????????
01f8b67a c6007b mov byte ptr [eax],0x7b
ds:001971e4=??
01f8b67d 51 push ecx
01f8b67e ff45fc inc dword ptr [ebp+0xfc]
ss:00ba56f6=????????
01f8b681 e88ab8feff call RtfToForeign32+0xa60 (01f76f10)
01f8b686 8d4dfc lea ecx,[ebp+0xfc]
ss:00ba56f6=????????
01f8b689 8d55f8 lea edx,[ebp+0xf8]
ss:00ba56f6=????????
01f8b68c 51 push ecx

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
0012B810 01F83F39 4F4E0011 00000001 00000003 FFFFFFFF !<nosymbols>
0012BE5C 01F83B0C 01F99668 0000000F 01F7647F 445C3A43 !<nosymbols>
0012BF94 305497F1 00DD000C 00000000 00DD001C 00DD0024 !<nosymbols>
0012BFB8 30549739 00DD000C 00000000 00DD001C 00DD0024 !wdCommandDispatch
0012C5A8 303B0030 00000003 0012CC1C 00000000 04220000 !wdCommandDispatch
0012CC08 300BDBE0 00000003 00000000 04220000 0000002C !wdCommandDispatch
0012CE44 3010679A 00000003 00000001 00000000 FFFFFFFF !<nosymbols>
0012DDC4 30141F78 0012E23C 00740AAC 04220000 00000000 !<nosymbols>
0012E20C 30145048 0012E23C 00740AAC 0012FCA8 00020000 !<nosymbols>
0012F320 3013BFB7 00000000 00000000 00000000 00000000 !<nosymbols>
0012F374 304A8B11 0012FCA8 00000001 00000000 00000024 !<nosymbols>
0012FD0C 304A849F 000004E4 00000001 000003E1 00000000 !wdCommandDispatch
0012FE70 304AA079 00000001 00222228 00DD0004 00000000 !wdCommandDispatch
000003E8 00000000 00000000 00000000 00000000 00000000 !wdCommandDispatch

*----> Raw Stack Dump <----*
0012b804 68 96 f9 01 e4 71 19 00 - 48 90 18 00 5c be 12 00 h....q..H...
\...
0012b814 39 3f f8 01 11 00 4e 4f - 01 00 00 00 03 00 00 00
9?....NO........
0012b824 ff ff ff ff 2a 00 2c 00 - 98 0d 19 00 00 00 00 00 ....
*.,.........
0012b834 43 00 00 00 be b8 02 00 - 08 00 00 00 02 00 08 00
C...............
0012b844 04 00 02 00 0a 00 00 00 - 02 22 b9 12 00 00 00 0a
.........."......
0012b854 00 01 22 b9 12 00 00 00 - 6c 00 02 2e ba 12 00 00
...".....l.......
0012b864 00 0a 00 01 2e ba 12 00 - 00 00 6c 00 02 00 00 00
...........l.....
0012b874 00 01 00 0a 00 01 00 00 - 00 00 01 00 6c 00 fd 77
.............l..w
0012b884 86 7c f8 77 5e 7c f8 77 - e8 0c 19 00 00 00 00 00 .
|.w^|.w........
0012b894 00 00 00 00 00 00 00 00 - 00 00 13 00 00 00 00 00
.................
0012b8a4 01 03 14 00 02 00 00 00 - 43 00 3a 00 5c 00 57 00 ........C.:.
\.W.
0012b8b4 49 00 4e 00 4e 00 54 00 - 5c 00 4d 00 53 00 54 00 I.N.N.T.
\.M.S.T.
0012b8c4 58 00 54 00 43 00 4e 00 - 56 00 2e 00 49 00 4e 00
X.T.C.N.V...I.N.
0012b8d4 49 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
I...............
0012b8e4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................
0012b8f4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................
0012b904 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................
0012b914 00 00 00 00 4c b9 12 00 - 56 00 00 00 8c 2a f8 77
.....L...V....*.w
0012b924 00 00 13 00 a8 16 13 00 - 56 00 00 00 08 c8 14 00
.........V.......
0012b934 24 b9 12 00 00 02 00 00 - 14 bb 12 00 55 1f f8 77
$...........U..w

State Dump for Thread Id 0x7d4

eax=00000022 ebx=00158750 ecx=00000010 edx=00000000 esi=001585f0 edi=
00000100
eip=77f83310 esp=01affe28 ebp=01afff74 iopl=0 nv up ei pl nz na
po nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=
00000206


function: ZwReplyWaitReceivePortEx
77f83305 b8ac000000 mov eax,0xac
77f8330a 8d542404 lea edx,[esp+0x4]
ss:02579d0f=????????
77f8330e cd2e int 2e
77f83310 c21400 ret 0x14

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
01AFFF74 77D37B4C 77D35924 001585F0 77D33E01 00130000 ntdll!
ZwReplyWaitReceivePortEx
01AFFFA8 77D358D6 00157DA0 01AFFFEC 7C57438B 00158750 rpcrt4!
NdrCorrelationInitialize
01AFFFB4 7C57438B 00158750 77D33E01 00130000 00158750 rpcrt4!
RpcBindingFree
01AFFFEC 00000000 00000000 00000000 00000000 00000000 kernel32!
TlsSetValue

State Dump for Thread Id 0x824

eax=00188000 ebx=00000102 ecx=01bffd0c edx=00000000 esi=77f82826 edi=
01bfff74
eip=77f82831 esp=01bfff60 ebp=01bfff7c iopl=0 nv up ei pl nz na
po nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=
00000206


function: NtDelayExecution
77f82826 b832000000 mov eax,0x32
77f8282b 8d542404 lea edx,[esp+0x4]
ss:02679e47=????????
77f8282f cd2e int 2e
77f82831 c20800 ret 0x8
77f82834 53 push ebx
77f82835 51 push ecx
77f82836 6a00 push 0x0
77f82838 c70701000000 mov dword ptr [edi],0x1
ds:01bfff74=dc3cba00
77f8283e ff750c push dword ptr [ebp+0xc]
ss:02679e62=????????
77f82841 50 push eax
77f82842 e879fdffff call RtlMultiByteToUnicodeN
(77f825c0)
77f82847 e928fcffff jmp RtlConsoleMultiByteToUnicodeN+
0x333 (77f82474)

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
01BFFF7C 7C573A22 0000EA60 00000000 77AB8FFB 0000EA60 ntdll!
NtDelayExecution
00007530 00000000 00000000 00000000 00000000 00000000 kernel32!Sleep

*----> Raw Stack Dump <----*
01bfff60 4e 3a 57 7c 00 00 00 00 - 74 ff bf 01 ce 3a 57 7c
N:W|....t....:W|
01bfff70 78 00 17 00 00 ba 3c dc - ff ff ff ff 30 75 00 00 x.....
<.....0u..
01bfff80 22 3a 57 7c 60 ea 00 00 - 00 00 00 00 fb 8f ab 77
":W|`..........w
01bfff90 60 ea 00 00 ee 50 ab 77 - 00 00 00 00 00 00 a5 77
`....P.w.......w
01bfffa0 78 00 17 00 ec ff bf 01 - 78 00 17 00 46 50 ab 77
x.......x...FP.w
01bfffb0 45 7d a6 77 30 7d a6 77 - 8b 43 57 7c 78 00 17 00
E}.w0}.w.CW|x...
01bfffc0 45 7d a6 77 30 7d a6 77 - 78 00 17 00 00 c0 fd 7f
E}.w0}.wx.......
01bfffd0 d4 02 d6 02 c0 ff bf 01 - d4 02 d6 02 ff ff ff ff
.................
01bfffe0 97 e5 57 7c a8 a0 57 7c - 00 00 00 00 00 00 00 00
...W|..W|........
01bffff0 00 00 00 00 2c 50 ab 77 - 78 00 17 00 00 00 00 00
.....,P.wx.......
01c00000 00 00 00 00 00 00 ff ff - 00 00 00 00 14 83 00 00
.................
01c00010 00 00 00 00 40 00 00 00 - 0c 02 00 00 14 00 00 00 ....
@...........
01c00020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................
01c00030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................
01c00040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................
01c00050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................
01c00060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................
01c00070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................
01c00080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................
01c00090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
.................

I have open the documents on my workstation with the safe mode of word
(winword.exe /a), but when I try it on the user's computer, it crashes.
When we both try to open the file, it crashes, so its the document.
Other documents open correclty and others crash. Any suggestions?
 
G

garfield-n-odie

Word 5.x was a Macintosh version of Word. What converter are you using
to open the files? If it's the Word 6.x converter, try using the Word
4.x converter instead.

Robert said:
I work for ODU. I have an user that has documents from Word 5. The user
is now using Office 2000. I solved 1 of 2 problems with converting from
Word 5 to Word 2000. When the user opens some documents, Word crashes
and a Dr. Watson log file is generated.

Here's the entry for the crash in the log file:

Application exception occurred:
App: (pid=2056)
When: 11/1/2004 @ 13:45:15.322
Exception number: c0000005 (access violation)

*----> System Information <----*
Computer Name: WIN2K
User Name: User1080
Number of Processors: 1
Processor Type: x86 Family 6 Model 7 Stepping 3
Windows 2000 Version: 5.0
Current Build: 2195
Service Pack: 4
Current Type: Uniprocessor Free
Registered Organization: Old Dominion University
Registered Owner: odu

*----> Task List <----*
0 Idle.exe
8 System.exe
152 SMSS.exe
172 CSRSS.exe
192 WINLOGON.exe
220 SERVICES.exe
232 LSASS.exe
404 svchost.exe
456 svchost.exe
504 spoolsv.exe
592 FrameworkServic.exe
644 Mcshield.exe
660 VsTskMgr.exe
692 naPrdMgr.exe
752 NALNTSRV.exe
860 WolSerNT.exe
884 ZenRem32.exe
952 uphclean.exe
972 WinMgmt.exe
996 mspmspsv.exe
1008 svchost.exe
1020 WM.exe
1140 WMRUNDLL.exe
1572 NALWIN32.exe
1756 explorer.exe
1552 NALDESK.exe
460 dpmw32.exe
676 nwtray.exe
548 shstat.exe
1200 UpdaterUI.exe
1596 atiptaxx.exe
1228 (e-mail address removed)
1740 progkill.exe
1684 NLNOTES.exe
1516 ntaskldr.exe
1604 firefox.exe
1948 WINWORD.exe
1832 agentsvr.exe
2056 WINWORD.exe
1996 DRWTSN32.exe
0 _Total.exe

(30000000 - 30871000)
(77F80000 - 77FFD000)
(7C2D0000 - 7C332000)
(7C570000 - 7C628000)
(77D30000 - 77DA1000)
(77F40000 - 77F7E000)
(77E10000 - 77E75000)
(308C0000 - 30E1D000)
(77A50000 - 77B3F000)
(782F0000 - 78535000)
(63180000 - 631E9000)
(78000000 - 78045000)
(71710000 - 71794000)
(77800000 - 7781E000)
(76620000 - 76630000)
(775A0000 - 77630000)
(779B0000 - 77A4B000)
(01270000 - 01474000)
(77840000 - 7787E000)
(770C0000 - 770E3000)
(58200000 - 582C9000)
(75170000 - 751BF000)
(7C340000 - 7C34F000)
(77BF0000 - 77C01000)
(77980000 - 779A4000)
(75050000 - 75058000)
(75030000 - 75044000)
(75020000 - 75028000)
(77950000 - 7797A000)
(751C0000 - 751C6000)
(75150000 - 7515F000)
(50D20000 - 50D4B000)
(50D00000 - 50D15000)
(50DF0000 - 50E10000)
(50DB0000 - 50DDB000)
(50D50000 - 50D97000)
(50DA0000 - 50DAB000)
(58300000 - 58338000)
(58380000 - 583BD000)
(77820000 - 77827000)
(759B0000 - 759B6000)
(6A400000 - 6A41B000)
(01ED0000 - 01EED000)
(01EF0000 - 01F62000)
(75160000 - 7516C000)
(75210000 - 75225000)
(751D0000 - 75208000)
(01F70000 - 01FAE000)
(76B30000 - 76B6E000)

State Dump for Thread Id 0x7c8

eax=001971e4 ebx=00000000 ecx=00dd0012 edx=0018000c esi=0018f928 edi=
00194418
eip=01f8b66a esp=0012b804 ebp=0012b810 iopl=0 nv up ei pl nz ac
po nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=
00000216


function: <nosymbols>
01f8b647 e8f4b8feff call RtfToForeign32+0xa90 (01f76f40)
01f8b64c 8d4dfc lea ecx,[ebp+0xfc]
ss:00ba56f6=????????
01f8b64f 8b155896f901 mov edx,[01f99658]
ds:01f99658=00189040
01f8b655 51 push ecx
01f8b656 52 push edx
01f8b657 e884b9feff call RtfToForeign32+0xb30 (01f76fe0)
01f8b65c 33c0 xor eax,eax
01f8b65e 668b06 mov ax,[esi]
ds:0018f928=78bc
01f8b661 0305d412fa01 add eax,[01fa12d4]
ds:01fa12d4=0018f928
01f8b667 8945f8 mov [ebp+0xf8],eax
ss:00ba56f6=????????
FAULT ->01f8b66a 803800 cmp byte ptr [eax],0x0
ds:001971e4=??
01f8b66d 743c jz 01f941ab
01f8b66f 8b45fc mov eax,[ebp+0xfc]
ss:00ba56f6=????????
01f8b672 685d020000 push 0x25d
01f8b677 8d4dfc lea ecx,[ebp+0xfc]
ss:00ba56f6=????????
01f8b67a c6007b mov byte ptr [eax],0x7b
ds:001971e4=??
01f8b67d 51 push ecx
01f8b67e ff45fc inc dword ptr [ebp+0xfc]
ss:00ba56f6=????????
01f8b681 e88ab8feff call RtfToForeign32+0xa60 (01f76f10)
01f8b686 8d4dfc lea ecx,[ebp+0xfc]
ss:00ba56f6=????????
01f8b689 8d55f8 lea edx,[ebp+0xf8]
ss:00ba56f6=????????
01f8b68c 51 push ecx

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
0012B810 01F83F39 4F4E0011 00000001 00000003 FFFFFFFF !<nosymbols>
0012BE5C 01F83B0C 01F99668 0000000F 01F7647F 445C3A43 !<nosymbols>
0012BF94 305497F1 00DD000C 00000000 00DD001C 00DD0024 !<nosymbols>
0012BFB8 30549739 00DD000C 00000000 00DD001C 00DD0024 !wdCommandDispatch
0012C5A8 303B0030 00000003 0012CC1C 00000000 04220000 !wdCommandDispatch
0012CC08 300BDBE0 00000003 00000000 04220000 0000002C !wdCommandDispatch
0012CE44 3010679A 00000003 00000001 00000000 FFFFFFFF !<nosymbols>
0012DDC4 30141F78 0012E23C 00740AAC 04220000 00000000 !<nosymbols>
0012E20C 30145048 0012E23C 00740AAC 0012FCA8 00020000 !<nosymbols>
0012F320 3013BFB7 00000000 00000000 00000000 00000000 !<nosymbols>
0012F374 304A8B11 0012FCA8 00000001 00000000 00000024 !<nosymbols>
0012FD0C 304A849F 000004E4 00000001 000003E1 00000000 !wdCommandDispatch
0012FE70 304AA079 00000001 00222228 00DD0004 00000000 !wdCommandDispatch
000003E8 00000000 00000000 00000000 00000000 00000000 !wdCommandDispatch

*----> Raw Stack Dump <----*
0012b804 68 96 f9 01 e4 71 19 00 - 48 90 18 00 5c be 12 00 h....q..H...
\...
0012b814 39 3f f8 01 11 00 4e 4f - 01 00 00 00 03 00 00 00
9?....NO........
0012b824 ff ff ff ff 2a 00 2c 00 - 98 0d 19 00 00 00 00 00 ....
*.,.........
0012b834 43 00 00 00 be b8 02 00 - 08 00 00 00 02 00 08 00
C...............
0012b844 04 00 02 00 0a 00 00 00 - 02 22 b9 12 00 00 00 0a
........."......
0012b854 00 01 22 b9 12 00 00 00 - 6c 00 02 2e ba 12 00 00
..".....l.......
0012b864 00 0a 00 01 2e ba 12 00 - 00 00 6c 00 02 00 00 00
..........l.....
0012b874 00 01 00 0a 00 01 00 00 - 00 00 01 00 6c 00 fd 77
............l..w
0012b884 86 7c f8 77 5e 7c f8 77 - e8 0c 19 00 00 00 00 00 .
|.w^|.w........
0012b894 00 00 00 00 00 00 00 00 - 00 00 13 00 00 00 00 00
................
0012b8a4 01 03 14 00 02 00 00 00 - 43 00 3a 00 5c 00 57 00 ........C.:.
\.W.
0012b8b4 49 00 4e 00 4e 00 54 00 - 5c 00 4d 00 53 00 54 00 I.N.N.T.
\.M.S.T.
0012b8c4 58 00 54 00 43 00 4e 00 - 56 00 2e 00 49 00 4e 00
X.T.C.N.V...I.N.
0012b8d4 49 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
I...............
0012b8e4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
................
0012b8f4 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
................
0012b904 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
................
0012b914 00 00 00 00 4c b9 12 00 - 56 00 00 00 8c 2a f8 77
....L...V....*.w
0012b924 00 00 13 00 a8 16 13 00 - 56 00 00 00 08 c8 14 00
........V.......
0012b934 24 b9 12 00 00 02 00 00 - 14 bb 12 00 55 1f f8 77
$...........U..w

State Dump for Thread Id 0x7d4

eax=00000022 ebx=00158750 ecx=00000010 edx=00000000 esi=001585f0 edi=
00000100
eip=77f83310 esp=01affe28 ebp=01afff74 iopl=0 nv up ei pl nz na
po nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=
00000206


function: ZwReplyWaitReceivePortEx
77f83305 b8ac000000 mov eax,0xac
77f8330a 8d542404 lea edx,[esp+0x4]
ss:02579d0f=????????
77f8330e cd2e int 2e
77f83310 c21400 ret 0x14

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
01AFFF74 77D37B4C 77D35924 001585F0 77D33E01 00130000 ntdll!
ZwReplyWaitReceivePortEx
01AFFFA8 77D358D6 00157DA0 01AFFFEC 7C57438B 00158750 rpcrt4!
NdrCorrelationInitialize
01AFFFB4 7C57438B 00158750 77D33E01 00130000 00158750 rpcrt4!
RpcBindingFree
01AFFFEC 00000000 00000000 00000000 00000000 00000000 kernel32!
TlsSetValue

State Dump for Thread Id 0x824

eax=00188000 ebx=00000102 ecx=01bffd0c edx=00000000 esi=77f82826 edi=
01bfff74
eip=77f82831 esp=01bfff60 ebp=01bfff7c iopl=0 nv up ei pl nz na
po nc
cs=001b ss=0023 ds=0023 es=0023 fs=0038 gs=0000 efl=
00000206


function: NtDelayExecution
77f82826 b832000000 mov eax,0x32
77f8282b 8d542404 lea edx,[esp+0x4]
ss:02679e47=????????
77f8282f cd2e int 2e
77f82831 c20800 ret 0x8
77f82834 53 push ebx
77f82835 51 push ecx
77f82836 6a00 push 0x0
77f82838 c70701000000 mov dword ptr [edi],0x1
ds:01bfff74=dc3cba00
77f8283e ff750c push dword ptr [ebp+0xc]
ss:02679e62=????????
77f82841 50 push eax
77f82842 e879fdffff call RtlMultiByteToUnicodeN
(77f825c0)
77f82847 e928fcffff jmp RtlConsoleMultiByteToUnicodeN+
0x333 (77f82474)

*----> Stack Back Trace <----*

FramePtr ReturnAd Param#1 Param#2 Param#3 Param#4 Function Name
01BFFF7C 7C573A22 0000EA60 00000000 77AB8FFB 0000EA60 ntdll!
NtDelayExecution
00007530 00000000 00000000 00000000 00000000 00000000 kernel32!Sleep

*----> Raw Stack Dump <----*
01bfff60 4e 3a 57 7c 00 00 00 00 - 74 ff bf 01 ce 3a 57 7c
N:W|....t....:W|
01bfff70 78 00 17 00 00 ba 3c dc - ff ff ff ff 30 75 00 00 x.....
<.....0u..
01bfff80 22 3a 57 7c 60 ea 00 00 - 00 00 00 00 fb 8f ab 77
":W|`..........w
01bfff90 60 ea 00 00 ee 50 ab 77 - 00 00 00 00 00 00 a5 77
`....P.w.......w
01bfffa0 78 00 17 00 ec ff bf 01 - 78 00 17 00 46 50 ab 77
x.......x...FP.w
01bfffb0 45 7d a6 77 30 7d a6 77 - 8b 43 57 7c 78 00 17 00
E}.w0}.w.CW|x...
01bfffc0 45 7d a6 77 30 7d a6 77 - 78 00 17 00 00 c0 fd 7f
E}.w0}.wx.......
01bfffd0 d4 02 d6 02 c0 ff bf 01 - d4 02 d6 02 ff ff ff ff
................
01bfffe0 97 e5 57 7c a8 a0 57 7c - 00 00 00 00 00 00 00 00
..W|..W|........
01bffff0 00 00 00 00 2c 50 ab 77 - 78 00 17 00 00 00 00 00
....,P.wx.......
01c00000 00 00 00 00 00 00 ff ff - 00 00 00 00 14 83 00 00
................
01c00010 00 00 00 00 40 00 00 00 - 0c 02 00 00 14 00 00 00 ....
@...........
01c00020 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
................
01c00030 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
................
01c00040 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
................
01c00050 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
................
01c00060 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
................
01c00070 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
................
01c00080 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
................
01c00090 00 00 00 00 00 00 00 00 - 00 00 00 00 00 00 00 00
................

I have open the documents on my workstation with the safe mode of word
(winword.exe /a), but when I try it on the user's computer, it crashes.
When we both try to open the file, it crashes, so its the document.
Other documents open correclty and others crash. Any suggestions?
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top