Summary | ZeroBOX

file.exe

Raccoon Stealer Malicious Library OS Processor Check PE32 PE File
Category Machine Started Completed
FILE s1_win7_x6402 July 9, 2021, 9:25 a.m. July 9, 2021, 9:29 a.m.
Size 752.0KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 9e2521860ebdce53dbe422612566d4ea
SHA256 2afd735ca5d2ad8a8478c4832e4827b150e30d5f0b7c1dc174ce934017ee1d76
CRC32 C98DB1A6
ssdeep 12288:4mxD6ymQskvInWCO7UqCRFyQdDB91kWAravG3HjFPVelfqShZ9k7yY:V6ympWBERQIDBIWZG3HjFPVO5
PDB Path C:\zuvoxejo_sacehuboza63\wexa75-xi.pdb
Yara
  • Raccoon_Stealer_1_Zero - Raccoon Stealer
  • IsPE32 - (no description)
  • OS_Processor_Check_Zero - OS Processor Check
  • PE_Header_Zero - PE File Signature
  • Malicious_Library_Zero - Malicious_Library

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path C:\zuvoxejo_sacehuboza63\wexa75-xi.pdb
resource name AFX_DIALOG_LAYOUT
resource name LOY
Time & API Arguments Status Return Repeated

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0

__exception__

stacktrace:
_vsnprintf+0xa9 strncpy_s-0x79 ntdll+0x79e31 @ 0x777d9e31
GetProfileStringW+0x5b74 EnumResourceNamesW-0x40041 kernel32+0x43120 @ 0x75b63120
_hockey@4+0x575 file+0xa2ed7 @ 0x4a2ed7
_hockey@4+0x15c3 file+0xa3f25 @ 0x4a3f25
_hyppo@4-0x9b4a3 file+0x74b6 @ 0x4074b6
_hyppo@4-0x9b61a file+0x733f @ 0x40733f
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x75b333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x77799ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x77799ea5

exception.instruction_r: 80 78 07 05 0f 84 64 8a 01 00 f6 40 07 3f 0f 84
exception.symbol: _vsnprintf+0xd0 strncpy_s-0x52 ntdll+0x79e58
exception.instruction: cmp byte ptr [eax + 7], 5
exception.module: ntdll.dll
exception.exception_code: 0xc0000005
exception.offset: 499288
exception.address: 0x777d9e58
registers.esp: 1621920
registers.edi: 5505024
registers.eax: 4294967288
registers.ebp: 1621964
registers.edx: 0
registers.ebx: 0
registers.esi: 0
registers.ecx: 5505024
1 0 0
Time & API Arguments Status Return Repeated

NtProtectVirtualMemory

process_identifier: 2404
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 1
length: 512000
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x0055c000
process_handle: 0xffffffff
1 0 0
section {u'size_of_data': u'0x000a3600', u'virtual_address': u'0x00001000', u'entropy': 7.845654859028808, u'name': u'.text', u'virtual_size': u'0x000a3531'} entropy 7.84565485903 description A section with a high entropy has been found
entropy 0.87017310253 description Overall entropy of this PE file is high
Time & API Arguments Status Return Repeated

__anomaly__

tid: 2408
message: Encountered 65537 exceptions, quitting.
subcategory: exception
function_name:
1 0 0
Bkav W32.AIDetect.malware2
Elastic malicious (high confidence)
FireEye Generic.mg.9e2521860ebdce53
Cylance Unsafe
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_90% (D)
BitDefenderTheta Gen:NN.ZexaF.34790.VuW@aCcIFDkG
Cyren W32/Kryptik.EME.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/GenKryptik.FHID
APEX Malicious
Paloalto generic.ml
Kaspersky UDS:DangerousObject.Multi.Generic
Avast Win32:PWSX-gen [Trj]
Emsisoft Trojan.Crypt (A)
McAfee-GW-Edition BehavesLike.Win32.Lockbit.bc
Sophos ML/PE-A + Troj/Kryptik-TR
Webroot W32.Trojan.Gen
Gridinsoft Trojan.Win32.Packed.lu!heur
Microsoft Trojan:Win32/Hynamer.A!ml
ZoneAlarm UDS:DangerousObject.Multi.Generic
Cynet Malicious (score: 100)
Acronis suspicious
McAfee Packed-GDT!9E2521860EBD
VBA32 BScope.Trojan.Wacatac
Malwarebytes Trojan.MalPack
Rising Trojan.Generic@ML.87 (RDML:3E0pA2p58WsBLm5N0umvdw)
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Kryptik.HLQC!tr
AVG Win32:PWSX-gen [Trj]