Summary | ZeroBOX

pwT9QYNhI0gG4M

Generic Malware Malicious Library PE32 PE File DLL
Category Machine Started Completed
FILE s1_win7_x6401 Aug. 11, 2021, 10:12 a.m. Aug. 11, 2021, 10:14 a.m.
Size 184.0KB
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 3a0b8a28eb7ec8f7fd012fe96511089a
SHA256 236573a8a10d62500b47250138a5b8fa7bedcdaf68c4f039db5ba166abac57d6
CRC32 270D19EC
ssdeep 3072:DDHMD9LnP1KxPqM8/1xYTCKJJ+xpm2s7E7jnR1VzGQiEFMF4svQ:fMhP1cq7/16CT9jnR1Vz7if
Yara
  • Generic_Malware_Zero - Generic Malware
  • IsDLL - (no description)
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Time & API Arguments Status Return Repeated

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 0
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 0
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 0
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 0
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 1
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 1
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 1
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 1
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 2
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 2
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 2
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 2
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 3
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 3
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 3
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 3
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 4
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 4
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 4
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 4
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 5
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 5
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 5
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 5
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 6
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 6
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 6
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 6
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 7
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 7
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 7
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 7
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 8
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 8
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 8
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 8
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 9
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 9
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 9
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 9
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 10
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 10
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 10
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 10
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 11
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 11
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea30 pwt9qynhi0gg4m+0x6a32
exception.address: 0x73d56a32
registers.esp: 1962524
registers.edi: 0
registers.eax: 11
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83 c4 08
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea2f pwt9qynhi0gg4m+0x6a33
exception.address: 0x73d56a33
registers.esp: 1962524
registers.edi: 0
registers.eax: 11
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea32 pwt9qynhi0gg4m+0x6a30
exception.address: 0x73d56a30
registers.esp: 1962524
registers.edi: 0
registers.eax: 12
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0

__exception__

stacktrace:
FnloderTrRppee-0x211a3 pwt9qynhi0gg4m+0x42bf @ 0x73d542bf
FnloderTrRppee-0x239c3 pwt9qynhi0gg4m+0x1a9f @ 0x73d51a9f
FnloderTrRppee-0x23715 pwt9qynhi0gg4m+0x1d4d @ 0x73d51d4d
LdrResSearchResource+0xb4d LdrResFindResourceDirectory-0x16c ntdll+0x3d8a9 @ 0x773dd8a9
LdrResSearchResource+0xa10 LdrResFindResourceDirectory-0x2a9 ntdll+0x3d76c @ 0x773dd76c
LdrLoadDll+0x7b _strcmpi-0x304 ntdll+0x3c4b5 @ 0x773dc4b5
New_ntdll_LdrLoadDll@16+0x7b New_ntdll_LdrUnloadDll@4-0xb7 @ 0x72bed4cf
LoadLibraryExW+0x178 LoadLibraryExA-0x2a kernelbase+0x11d2a @ 0x76a81d2a
rundll32+0x14ed @ 0xce14ed
rundll32+0x1baf @ 0xce1baf
rundll32+0x12e8 @ 0xce12e8
rundll32+0x1901 @ 0xce1901
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5

exception.instruction_r: cc cc cc 40 eb f0 8b 04 24 64 a3 00 00 00 00 83
exception.instruction: int3
exception.exception_code: 0x80000003
exception.symbol: FnloderTrRppee-0x1ea31 pwt9qynhi0gg4m+0x6a31
exception.address: 0x73d56a31
registers.esp: 1962524
registers.edi: 0
registers.eax: 12
registers.ebp: 1962632
registers.edx: 603409
registers.ebx: 116
registers.esi: 1195458601
registers.ecx: 0
1 0 0
section {u'size_of_data': u'0x0001f000', u'virtual_address': u'0x00007000', u'entropy': 7.685538071628054, u'name': u'.rdata', u'virtual_size': u'0x0001e742'} entropy 7.68553807163 description A section with a high entropy has been found
entropy 0.688888888889 description Overall entropy of this PE file is high
Time & API Arguments Status Return Repeated

__anomaly__

tid: 112
message: Encountered 65537 exceptions, quitting.
subcategory: exception
function_name:
1 0 0