Static | ZeroBOX

PE Compile Time

2020-03-20 02:22:40

PDB Path

C:\zotat_pihigikebidug_goranuz82_tukow\87\sogu82.pdb

PE Imphash

346d1123531c92f702a30851f3faa86c

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00027e10 0x00028000 6.32582684224
.rdata 0x00029000 0x0000a17a 0x0000a200 4.83644818411
.data 0x00034000 0x004d6468 0x00022a00 7.89062036006
.rsrc 0x0050b000 0x00005088 0x00005200 5.42705779622
.reloc 0x00511000 0x00006cf4 0x00006e00 2.69791382657

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x0050f690 0x000008a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x0050f690 0x000008a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x0050e218 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ICON 0x0050e218 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ICON 0x0050e218 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ICON 0x0050e218 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ICON 0x0050e218 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ICON 0x0050e218 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ACCELERATOR 0x0050e6e0 0x00000070 None SUBLANG_DEFAULT data
RT_ACCELERATOR 0x0050e6e0 0x00000070 None SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x0050ff38 0x00000022 None SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0050e680 0x0000005a LANG_CHINESE SUBLANG_CHINESE_SINGAPORE data
RT_VERSION 0x0050ff60 0x00000124 None SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x429004 EnumResourceNamesW
0x429008 SetPriorityClass
0x42900c WriteConsoleInputW
0x429010 SetFilePointer
0x429018 CopyFileExW
0x429024 WaitNamedPipeA
0x429028 CreateDirectoryW
0x42902c GlobalLock
0x429030 SetComputerNameW
0x429034 GetComputerNameW
0x429038 SetEvent
0x429040 GetTickCount
0x429044 VirtualFree
0x429048 GetCommandLineA
0x429050 LoadLibraryW
0x429058 InitAtomTable
0x42905c GetFileAttributesA
0x429064 CreateSemaphoreA
0x42906c GetSystemDirectoryA
0x429070 CompareStringW
0x429074 lstrlenW
0x429078 ReleaseActCtx
0x42907c GetFileSizeEx
0x429080 GetStartupInfoA
0x429084 GetCPInfoExW
0x429088 OpenMutexW
0x429090 GetLastError
0x429094 GetProcAddress
0x429098 GetProcessHeaps
0x42909c CreateNamedPipeA
0x4290a4 ReadFileEx
0x4290a8 CopyFileA
0x4290b0 LoadLibraryA
0x4290b4 OpenMutexA
0x4290bc LocalAlloc
0x4290c0 GetExitCodeThread
0x4290d8 HeapSetInformation
0x4290e0 FatalAppExitA
0x4290e4 GetCPInfoExA
0x4290e8 OpenSemaphoreW
0x4290ec GetVersionExA
0x4290f0 TlsAlloc
0x4290f4 FindAtomW
0x4290f8 UnregisterWaitEx
0x4290fc GetSystemTime
0x429100 LCMapStringW
0x429104 MoveFileA
0x429108 HeapValidate
0x42910c IsBadReadPtr
0x429110 RaiseException
0x42911c TerminateProcess
0x429120 GetCurrentProcess
0x42912c IsDebuggerPresent
0x429130 GetModuleFileNameW
0x429134 RtlUnwind
0x429138 GetACP
0x42913c GetOEMCP
0x429140 GetCPInfo
0x429144 IsValidCodePage
0x429148 TlsGetValue
0x42914c GetModuleHandleW
0x429150 TlsSetValue
0x429154 GetCurrentThreadId
0x429158 TlsFree
0x42915c SetLastError
0x429160 Sleep
0x429164 ExitProcess
0x429168 SetHandleCount
0x42916c GetStdHandle
0x429170 GetFileType
0x42917c GetCurrentProcessId
0x429184 GetModuleFileNameA
0x429190 WideCharToMultiByte
0x429198 HeapDestroy
0x42919c HeapCreate
0x4291a0 HeapFree
0x4291a4 WriteFile
0x4291a8 HeapAlloc
0x4291ac HeapSize
0x4291b0 HeapReAlloc
0x4291b4 VirtualAlloc
0x4291b8 DebugBreak
0x4291bc OutputDebugStringA
0x4291c0 WriteConsoleW
0x4291c4 OutputDebugStringW
0x4291c8 MultiByteToWideChar
0x4291cc GetStringTypeA
0x4291d0 GetStringTypeW
0x4291d4 GetLocaleInfoA
0x4291d8 LCMapStringA
0x4291e0 FlushFileBuffers
0x4291e4 GetConsoleCP
0x4291e8 GetConsoleMode
0x4291ec ReadFile
0x4291f0 CloseHandle
0x4291f4 SetStdHandle
0x4291f8 WriteConsoleA
0x4291fc GetConsoleOutputCP
0x429200 CreateFileA
0x429204 GetModuleHandleA

!This program cannot be run in DOS mode.
5ZRich
`.rdata
@.data
@.reloc
URPQQh| A
PPPPPPPP
PPPPPPPP
}'h$NC
;t$,v-
UQPXY]Y[
bad allocation
Unknown exception
f:\dd\vctools\crt_bld\self_x86\crt\src\onexit.c
Client
Ignore
Normal
Error: memory allocation: bad memory block type.
Invalid allocation size: %Iu bytes.
Client hook allocation failure.
Client hook allocation failure at file %hs line %d.
Error: possible heap corruption at or near 0x%p
The Block at 0x%p was allocated by aligned routines, use _aligned_realloc()
Error: memory allocation: bad memory block type.
Memory allocated at %hs(%d).
Invalid allocation size: %Iu bytes.
Memory allocated at %hs(%d).
Client hook re-allocation failure.
Client hook re-allocation failure at file %hs line %d.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
Memory allocated at %hs(%d).
Client hook free failure.
The Block at 0x%p was allocated by aligned routines, use _aligned_free()
%hs located at 0x%p is %Iu bytes long.
%hs located at 0x%p is %Iu bytes long.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
Memory allocated at %hs(%d).
DAMAGED
_heapchk fails with unknown return value!
_heapchk fails with _HEAPBADPTR.
_heapchk fails with _HEAPBADEND.
_heapchk fails with _HEAPBADNODE.
_heapchk fails with _HEAPBADBEGIN.
Bad memory block found at 0x%p.
Bad memory block found at 0x%p.
Memory allocated at %hs(%d).
Object dump complete.
crt block at 0x%p, subtype %x, %Iu bytes long.
normal block at 0x%p, %Iu bytes long.
client block at 0x%p, subtype %x, %Iu bytes long.
{%ld}
%hs(%d) :
#File Error#(%d) :
Dumping objects ->
Data: <%s> %s
Detected memory leaks!
f:\dd\vctools\crt_bld\self_x86\crt\src\_file.c
f:\dd\vctools\crt_bld\self_x86\crt\src\input.c
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
f:\dd\vctools\crt_bld\self_x86\crt\src\mbctype.c
EncodePointer
DecodePointer
f:\dd\vctools\crt_bld\self_x86\crt\src\tidtable.c
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
f:\dd\vctools\crt_bld\self_x86\crt\src\_sftbuf.c
(null)
`h````
xpxxxx
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
f:\dd\vctools\crt_bld\self_x86\crt\src\ioinit.c
f:\dd\vctools\crt_bld\self_x86\crt\src\mlock.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdargv.c
f:\dd\vctools\crt_bld\self_x86\crt\src\a_env.c
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library without using a manifest.
This is an unsupported way to load Visual C++ DLLs. You need to modify your application to build with a manifest.
For more information, see the "Visual C++ Libraries as Shared Side-by-Side Assemblies" topic in the product documentation.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
Assertion Failed
Warning
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
HeapQueryInformation
%s(%d) : %s
Assertion failed!
Assertion failed:
, Line
<file unknown>
Second Chance Assertion Failed: File
_CrtDbgReport: String too long or Invalid characters in String
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
bad exception
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetUserObjectInformationA
MessageBoxA
USER32.DLL
f:\dd\vctools\crt_bld\self_x86\crt\src\read.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
f:\dd\vctools\crt_bld\self_x86\crt\src\convrtcp.c
Unknown Runtime Check Error
Stack memory around _alloca was corrupted
A local variable was used before it was initialized
Stack memory was corrupted
A cast to a smaller data type has caused a loss of data. If this was intentional, you should mask the source of the cast with the appropriate bitmask. For example:
char c = (i & 0xFF);
Changing the code in this way will not affect the quality of the resulting optimized code.
The value of ESP was not properly saved across a function call. This is usually a result of calling a function declared with one calling convention with a function pointer declared with a different calling convention.
Stack around the variable '
' was corrupted.
The variable '
' is being used without being initialized.
MSPDB80.DLL
Stack around _alloca corrupted
Local variable used before initialization
Stack memory corruption
Cast to smaller type causing loss of data
Stack pointer corruption
CONOUT$
bad allocation
vulivotowukawegenime
kuhokinucey
dutosucefalohidinovugacubayin lolekut
xofeconotemabinicehajatadelid dixubiriwisulukubuwojefes tijemomuxafehucagubukehekedu keliwogobowojukayonah bogadeleropoxokenupujitujux
bubopamadajahicihuhovo
canepivasabizaxitelihojoxanewuhi
faregirizajubocezor jigujowepihogowo buzosudubeharexizeno zivefikecoyahapekulesotused
xiwedutojaxiriyecerihoyuhi xokunuxa hozisobosusum sizigabubuvileworeyuv diyesixekehezivatozeb
rowih wefugasufiyobi pevopunodikitayed
gutewefunexisipacubebojibet
ciyowewukikibemapeniboxavo
%s %d %f
miyokenegemi
banosokenefeb
dojerokanukipacoro
tidunutuzogazuvuzupenihibid wekuvetixitepelane powicimaveca saxopu dujomeyinemitixinidusebapi
mofonitoxupemedovusehiruvujiro
GAIsProcessorFeaturePresent
KERNEL32
?Dj0Q:W$=
5s3R6=
@_nextafter
_hypot
1#QNAN
1#SNAN
C:\zotat_pihigikebidug_goranuz82_tukow\87\sogu82.pdb
FileTimeToDosDateTime
EnumResourceNamesW
SetPriorityClass
WriteConsoleInputW
SetFilePointer
GetConsoleAliasesLengthW
CopyFileExW
InterlockedIncrement
InterlockedDecrement
WaitNamedPipeA
CreateDirectoryW
GlobalLock
SetComputerNameW
GetComputerNameW
SetEvent
FreeEnvironmentStringsA
GetTickCount
VirtualFree
GetCommandLineA
GetVolumeInformationA
LoadLibraryW
GetSystemWow64DirectoryW
InitAtomTable
GetFileAttributesA
IsProcessorFeaturePresent
CreateSemaphoreA
SetConsoleCursorPosition
GetSystemDirectoryA
CompareStringW
lstrlenW
ReleaseActCtx
GetFileSizeEx
GetStartupInfoA
GetCPInfoExW
OpenMutexW
GetHandleInformation
GetLastError
GetProcAddress
GetProcessHeaps
CreateNamedPipeA
WriteProfileSectionA
ReadFileEx
CopyFileA
GetPrivateProfileStringA
LoadLibraryA
OpenMutexA
GetConsoleScreenBufferInfo
LocalAlloc
GetExitCodeThread
SetCurrentDirectoryW
PostQueuedCompletionStatus
WriteProfileSectionW
SetEnvironmentVariableA
CreateIoCompletionPort
HeapSetInformation
GetCurrentDirectoryA
FatalAppExitA
GetCPInfoExA
OpenSemaphoreW
GetVersionExA
TlsAlloc
FindAtomW
UnregisterWaitEx
GetSystemTime
LCMapStringW
KERNEL32.dll
MoveFileA
HeapValidate
IsBadReadPtr
RaiseException
EnterCriticalSection
LeaveCriticalSection
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetModuleFileNameW
RtlUnwind
GetACP
GetOEMCP
GetCPInfo
IsValidCodePage
TlsGetValue
GetModuleHandleW
TlsSetValue
GetCurrentThreadId
TlsFree
SetLastError
ExitProcess
SetHandleCount
GetStdHandle
GetFileType
DeleteCriticalSection
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
GetModuleFileNameA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
HeapDestroy
HeapCreate
HeapFree
WriteFile
HeapAlloc
HeapSize
HeapReAlloc
VirtualAlloc
DebugBreak
OutputDebugStringA
WriteConsoleW
OutputDebugStringW
MultiByteToWideChar
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
LCMapStringA
InitializeCriticalSectionAndSpinCount
FlushFileBuffers
GetConsoleCP
GetConsoleMode
ReadFile
CloseHandle
SetStdHandle
WriteConsoleA
GetConsoleOutputCP
CreateFileA
GetModuleHandleA
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
DM'H+5/]\
faD[!=
X;z\8'P
swXX-g7
w"[{,F~
X@e3_m1
}B^4{t
ai$=?f
xjbm|Y
*Z\CH
]m@\=+
XtK7XXK
s^f2_8
st2Y|M
GHA_BV
ulT&1VA
mDaaag?
%g[zBk
nDb5\}
igX6e9
cn>cRT$
ZJA.xK/
M3p}%2
cJK1~3
NXQ})Z
Ypb+RF
t!X?5mY
k-L!+i
Bzq{mk
$gf8OR
Wj-cT(
tq]t*Z+
G;T.R[
EJA{7N
*:5X?*
)P/e_Q
Kwjc:Cc&&)
bC"jiL
3UN,Q:
luNt$D"
^7QNwc
R|*Z7k
{_=,=7
PGo}yKS?0
F'=v1oG
OWKh?x
bz)s`)
Z5hh]>m
t3x3/>3
)tjdWp
pS~}.ED
~>13BEJ}
2$jXBB
)*3@:PP
TD>g'&c
k(fnM4z~O
lx;~c.
A}ZXRt
2I=Poc23
U&9/O`
j2f=!
utw$4Y
1O;HGl
KdqJ|*
d$3l/N
6iP+8j:
u8?$Am
E?L-8y
*$|rW
B^nL4U
=><z<8
0F?v4\
O~tV
|u= .BF
z,x16c+
ZGO;m(
)2&u=I@O
d6!@G
,W=,u[
74d$s
`e]kLJWV
-PmsWG<
fc-a{xK
|-!5U?s(d
l$Gdzi
U#P[*rj
9+g$}K
>25Emm
-10Aq@
y:s#d@g
52OV;{
_F!'xw
tSS>=3
a8VY\i+K_.b:f
i`c+eXM
_-~@%x
SIo\OK
L@,ZFPB
Bmq%?l
(i.R1>
e+4S]N#P4o
r+izQo
_zMlQ&ePh
#"Z>lm1s
31IeZ~d
v%X9wM
/{097w
vvJc(85F
D_Z9/HS
*b+~[0
XvjRBR
Ngc>y<
4`YjkAa
#:iUCH
K%wbYCG
6cR">d
>1+th]
VOGY4
-v>%&s
l[DB/,a
b:.e@5
RXMH%s
k<23z$
eJR.E{M
vvK-]h
#-_ITL
%1LkNv
}gQH]i_
*\ !#Gn
t[6%.v
pZ0aH
Z[+\}RqI
$#MZiK
xTst4D
?j8zS]P
ljC6,/n
,VsyJ/Z
+m7} =
QV_L}[9
``2=l$
ijU)f
,M6-ei
TmGt^U{q/
BUY'7/
SoLU'
w[6&&8w
y~O56I=
<5C$vY
3?i0Pz
>A>40sN
/TjGcR
$f: 2v]e
Y\1>?r:
N_iS;G
+[ESrs
b[d&((
7y"JpoX
%\@cd9@z
S.O@#.
S9'P(bd
|y>jqw
+%YYFk@}d
t/Txy"
{f{#~}
&T4JG@
B]Eg%9p
\*|yUU
I![D(
oVxb T
c.x'>M;X
~"vb]X6
|7sXQC
b-Vvwr
pk9#"<
f}Kz_B
P8brBj
vKb*Kmc
B*E`|dk%
8X`3t\
'!mWq
!aZP\G
sH@fY
cP,Ild9
,U 2Ljv
a<Y`_z
udF67~
9EDP#O`D
8Q2!,p
>P~yJ\
R"B9[g
;X.pr=P
%HX2uH
H]'u)j
#iHc3l
gL332v1
e+D(.t
niY$uc
zKV#For
oTt$GxG
K`9'oGn.
OYIqV$+
jK45W9
Rnmo`P
AKo)O_A
Pp:x p>N6
ENNlIvZE
U hXXb
;J&tQ.~e
[k5eVUl8
Wpn4K$
e8|"SC
=0%H49
Fa$IFR
t4IfK<fS
muG_EZF
3LJX#N
/kbU,d/
,\E$tX
g}5.a*
GcryC,ns?^n
X-"<UKw
.rx^D2
't>\!-
Iu1HE
-JSBY@K
a+Kw/%/
S^`BhZ
#p9?ngu
iioH:F
7Nod*L
!(@Dz;r`
9S1[U'
)<@;Ou<
s .z6F
qtqulEb
W<'%!_
,?Vbih
i+]N0b
RVmuQ~
3. >S1
AF&&EEEEEEE
LLLLLLL
''''''''''''''
333GGGGG3''T
OOOVVV
OOVOVV
R,T'/GG
TTTTTTTTTTTTTTTT"9
''h $
$#$$$$
hhh3hh3hh3
ayyyyyyyyyyy
SSSSSSSS
$-!%{z
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

182=2O2u2~2
2G3g3}3
4@4E4J4
9*9B9S98:=:O:
;,<N<T<Z<
=0=9=c=h=m=
=!>->a>j>
>(?-???
5"5+50595E5N5o5
7 7&7,747:7@7H7Y7b7
9_:h:q:
;6;;;u;
>$>*>3>8>>>F>L>q>
>0?:?F?b?
;0G0t0y0~0
2F2a2m2r2
3>4D4|4
4,585Q5Z5_5
7'707@7L7b7n7w7
8R9W9\9|9
=(=-=?=S=
>!>'>4>
?(?-???e?q?
253Q3c3{3
9E:M:x:
;%;};6<H<Q<]<f<t<}<
<2=N=j=|=
>W>h>q>
3'373C3^3n3z3
3E4K4y4~4
5^6f6~6
888=8B8o8{8
8#959w9
;,>0>4>8><>@>D>H>
444P4l4
5&5B5^5z5
616H6M6_6
(0-0?0b0
081=1O1
292N2t2
3"3)33373@3R3\3
4#4-4R4\4
=!=*=1=8=H=^=h=
>!>(>8>N>X>
?%?*?/?9?>?C?M?R?W?a?f?l?u?~?
0)0.0<0V0\0l0r0
1'111:1A1G1h1m1
6'6k6t6
74797>7
;X;`;v;
=;=J=U=f=w=
>>@>M>Y>i>
?[?`?m?r?
1&2.2M2W2p2z2
4A4F4K4
4"545z5
6>6C6H6
H5L5P5T5X5\5`5d5h5l5p5t5x5|5
898?8S8*9=9Y9n9s9{9
<I<R<|<
=%=f=s=
>>;>d>{>
2'2<2H2T2d2
55)505
5<6[6a6r6
7<7K7^7
7%8u8}8
<!<0<<<G<Q<d<
< =C=Q=Z=m=
>$>+>>>T>[>n>
0/0C0N0g0p0
0?1D1I1P1}1
4?4c4j4t4
7"727>7Y7i7u7
7@8F8t8y8~8
8W9x9}9
;+;2;c;
<H<M<_<
>7?>?j?{?
2!2+252Y2b2k2h7u7~7
8-878=8H8O8U8^8d8o8y8
829q9}9
>!>:>@>I>N>W>g>n>
= =$=(=,=0=4=~=
>#>(>,>0>Q>{>
? ?$?(?,?
0=0J0U0j0
2X2f2y2
5$51565<5
6:6F6R6W6\6
8-82878
;/;4;9;
<=%=@=M=R=X=e=j=p=
=">'>,>1>d>p>|>
?=?B?G?L?
0"0'0,0W0\0a0
2#3*393Y3^3c3
4!4+4=4G4g4l4q4
5"5+535H5M5_5
6Z7m7s7
8 8$8(8,808r8
9%9/9P9U9_9m9r9|9
:H;Q;{;
<3<<<f<k<p<
=D=I=N=
?-?2?7?w?
1(2-2?2X2d3w3
8B:N:*;6;i;u;
181W1v1
575@5j5o5t5
7&717;7D7
::I:N:S:
:!;*;T;Y;^;
</<8<b<g<l<
>/>(?-???
2#282=2O2
4#4/444F4K4Q4W4o4v4
5&5b5k5
99:I:Y:h:m:
:;;^;g;
<3=<=f=k=p=
3&4+404r4~4
66$6o6
5 5$5(5,5054585<5@5D5\5`5d5h5l5
8;8@8E8
99)9=9C9K9U9c9i9t9~9
9!:,:M:
<=8=?=G=L=P=T=}=
=.>4>8><>@>
?+?]?d?h?l?p?t?x?|?
1"2.2[2`2e2
425>5k5p5u5
627>7k7p7u7
:?:D:I:
:%;*;/;
;&<I<R<|<
=:=W=a=
>Q>t>}>
?8?=?B?{?
00t0}0
11T1Y1^1
7H7d8n8
?-?2?7?x?
0/04090
3=3F3p3u3z3
41464;4z4
9[:d;p;
>3?;?z?
,040a0
0A1H1u1
3J3O3T3
9.93989]9f9
9":+:U:Z:_:
<M=g=p=
>4>=>r>w>|>
?)?2?g?l?q?
141@1x1}1
1*2R2^2
3G3L3Q3
4Q4V4[4
4"5I5w5
556^6h6
6<7Z7v7
;(<F<b<
1 2Q2d2
2<3M3z3@4J4r4
485=5O5
666N6W6
888V8x8}8
82979<9b9z9
;%;\;e;
<5<A<h<t<
=*=6=n=s=x=
>'>H>M>_>
??W?b?y?
0"0+0B0I0|0
0!1&1+1m1y1
5I6P6-7
7y8)959e9j9o9K:
1d1h1l1p1t1x1|1
2 2$2(2,2
4C5O5x8E9K9P9g9p9x9
;`=t=}=
>!>(>1>8>A>H>P>U>[>b>g>u>|>
?#?+?0?<?D?K?R?\?h?y?
b2q2y2
3!3Q3^3h3n3y3
4$4*444
55'555=5K5P5U5[5k5
6$6,6A6G6N6
7'767;7A7Q7[7h7m7r7x7~7
8.8b8h8
9+9]9c9q9w9
;;$;*;A;F;N;`;p;};
<(<5<:<@<`<
>#>0>B>
>'?A?J?R?z?
575<5A5s5
61666;6
8"9.9[9`9e9
:":O:T:Y:
1<1H1u1z1
4!5&5+5P5\5
798A8I8Q8o8w8
111s1z1
2#3`3z3
:\:`:d:h:l:p:t:x:|:
:D;H;L;P;T;X;\;`;d;h;l;p;
=&=P=U=Z=
0"0'0L0U0
1*131]1b1g1y2
5/6d6_7
=h>l>p>t>
5(6-6?6W6l6
>P>T>X>
5@6E6J6O6
2 2$2(2,2@2D2H2
$8(8,8
< <$<(<,<0<4<8<<<@<D<H<L<P<T<X<\<`<d<h<l<p<t<x<|<
(=,=0=4=8=<=
= =$=<=L=P=
>8>T>X>`>d>
? ?@?`?
(040P0\0d0p0
1(1H1h1
282D2`2|2
3$3(3D3H3d3h3x3
4 4(444d4h4
5(5H5h5p5
5 5(5,505h9l:p:t:
<$<,<4<<<D<L<T<\<d<l<t<|<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
2"2&2*2.22262:2>2B2F2J2N2R2V2Z2^2b2f2j2n2r2v2z2
3$3,343<3D3L3T3\3d3l3
jjjjjjj
jjjjjjjj
Bjjjjj
vscanf
f:\dd\vctools\crt_bld\self_x86\crt\src\scanf.c
(format != NULL)
ibase == 0 || (2 <= ibase && ibase <= 36)
strtoxq
f:\dd\vctools\crt_bld\self_x86\crt\src\strtoq.c
nptr != NULL
( (_Stream->_flag & _IOSTRG) || ( fn = _fileno(_Stream), ( (_textmode_safe(fn) == __IOINFO_TM_ANSI) && !_tm_unicode_safe(fn))))
fprintf
f:\dd\vctools\crt_bld\self_x86\crt\src\fprintf.c
(str != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgdel.cpp
_BLOCK_TYPE_IS_VALID(pHead->nBlockUse)
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgheap.c
_CrtCheckMemory()
_calloc_dbg_impl
(_HEAP_MAXREQ / nNum) >= nSize
_pFirstBlock == pOldBlock
_pLastBlock == pOldBlock
fRealloc || (!fRealloc && pNewBlock == pOldBlock)
pOldBlock->nLine == IGNORE_LINE && pOldBlock->lRequest == IGNORE_REQ
_CrtIsValidHeapPointer(pUserData)
_recalloc_dbg
(_HEAP_MAXREQ / count) >= size
pUserData != NULL
_pFirstBlock == pHead
_pLastBlock == pHead
pHead->nBlockUse == nBlockUse
pHead->nLine == IGNORE_LINE && pHead->lRequest == IGNORE_REQ
_msize_dbg
_CrtSetDbgFlag
(fNewBits==_CRTDBG_REPORT_FLAG) || ((fNewBits & 0x0ffff & ~(_CRTDBG_ALLOC_MEM_DF | _CRTDBG_DELAY_FREE_MEM_DF | _CRTDBG_CHECK_ALWAYS_DF | _CRTDBG_CHECK_CRT_DF | _CRTDBG_LEAK_CHECK_DF) ) == 0)
_CrtMemCheckpoint
state != NULL
(*_errno())
_printMemBlockData
(L"Buffer is too small" && 0)
Buffer is too small
(((_Src))) != NULL
strcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscpy_s.inl
((_Dst)) != NULL && ((_SizeInBytes)) > 0
Assertion Failed
Warning
Bf:\dd\vctools\crt_bld\self_x86\crt\src\dbgrpt.c
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
wcscpy_s(szOutMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
memcpy_s(szShortProgName, sizeof(TCHAR) * (260 - (szShortProgName - szExeName)), dotdotdot, sizeof(TCHAR) * 3)
<program name unknown>
wcscpy_s(szExeName, 260, L"<program name unknown>")
__crtMessageWindowW
(stream != NULL)
_input_l
f:\dd\vctools\crt_bld\self_x86\crt\src\input.c
nFloatStrUsed<=(*pnFloatStrSz)
f:\dd\vctools\crt_bld\self_x86\crt\src\setlocal.c
((ptloci->lc_category[category].wlocale != NULL) && (ptloci->lc_category[category].wrefcount != NULL)) || ((ptloci->lc_category[category].wlocale == NULL) && (ptloci->lc_category[category].wrefcount == NULL))
f:\dd\vctools\crt_bld\self_x86\crt\src\isctype.c
(unsigned)(c + 1) <= 256
KERNEL32.DLL
strtoxl
f:\dd\vctools\crt_bld\self_x86\crt\src\strtol.c
mscoree.dll
f:\dd\vctools\crt_bld\self_x86\crt\src\_sftbuf.c
str != NULL
flag == 0 || flag == 1
(null)
("'n' format specifier disabled", 0)
(ch != _T('\0'))
_output_l
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
c_fileno
f:\dd\vctools\crt_bld\self_x86\crt\src\fileno.c
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\eh\typname.cpp
pNode->next != NULL
strcpy_s(*env, cchars, p)
_setenvp
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), rterrs[tblindx].rterrtxt)
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "\n\n")
strncpy_s(pch, progname_size - (pch - progname), "...", 3)
strcpy_s(progname, progname_size, "<program name unknown>")
strcpy_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "Runtime Error!\n\nProgram: ")
_NMSG_WRITE
f:\dd\vctools\crt_bld\self_x86\crt\src\crt0msg.c
strcpy_s(szOutMessage, 4096, "_CrtDbgReport: String too long or IO Error")
strcpy_s(szExeName, 260, "<program name unknown>")
__crtMessageWindowA
_expand_base
f:\dd\vctools\crt_bld\self_x86\crt\src\expand.c
pBlock != NULL
kernel32.dll
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrptt.c
_CrtDbgReport: String too long or Invalid characters in String
wcscpy_s(szOutMessage2, 4096, L"_CrtDbgReport: String too long or Invalid characters in String")
e = mbstowcs_s(&ret, szOutMessage2, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage, 4096, szLineMessage)
strcat_s(szLineMessage, 4096, "\n")
strcat_s(szLineMessage, 4096, "\r")
strcat_s(szLineMessage, 4096, szUserMessage)
strcpy_s(szLineMessage, 4096, szFormat ? "Assertion failed: " : "Assertion failed!")
strcpy_s(szUserMessage, 4096, "_CrtDbgReport: String too long or IO Error")
_itoa_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportA
wcstombs_s(&ret, szaOutMessage, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage2, 4096, "_CrtDbgReport: String too long or Invalid characters in String")
wcstombs_s(((void *)0), szOutMessage2, 4096, szOutMessage, ((size_t)-1))
wcscpy_s(szOutMessage, 4096, szLineMessage)
%s(%d) : %s
wcscat_s(szLineMessage, 4096, L"\n")
wcscat_s(szLineMessage, 4096, L"\r")
wcscat_s(szLineMessage, 4096, szUserMessage)
wcscpy_s(szLineMessage, 4096, szFormat ? L"Assertion failed: " : L"Assertion failed!")
Assertion failed!
Assertion failed:
wcscpy_s(szUserMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
, Line
<file unknown>
Second Chance Assertion Failed: File
_itow_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportW
f:\dd\vctools\crt_bld\self_x86\crt\src\winsig.c
("Invalid signal or error", 0)
WUSER32.DLL
sizeInBytes >= count
src != NULL
memcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\memcpy_s.c
dst != NULL
wcscpy_s
((_Dst)) != NULL && ((_SizeInWords)) > 0
f:\dd\vctools\crt_bld\self_x86\crt\src\mbtowc.c
_loc_update.GetLocaleT()->locinfo->mb_cur_max == 1 || _loc_update.GetLocaleT()->locinfo->mb_cur_max == 2
_filbuf
f:\dd\vctools\crt_bld\self_x86\crt\src\_filbuf.c
_ungetc_nolock
f:\dd\vctools\crt_bld\self_x86\crt\src\ungetc_nolock.inl
nf:\dd\vctools\crt_bld\self_x86\crt\src\malloc.h
("Corrupted pointer passed to _freea", 0)
((((( H
h(((( H
H
strncpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcsncpy_s.inl
(L"String is not null terminated" && 0)
String is not null terminated
strcat_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscat_s.inl
E_isatty
f:\dd\vctools\crt_bld\self_x86\crt\src\isatty.c
(fh >= 0 && (unsigned)fh < (unsigned)_nhandle)
("Buffer too small", 0)
sizeInBytes > 0
_wctomb_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\wctomb.c
sizeInBytes <= INT_MAX
("inconsistent IOB fields", stream->_ptr - stream->_base >= 0)
f:\dd\vctools\crt_bld\self_x86\crt\src\_flsbuf.c
((state == ST_NORMAL) || (state == ST_TYPE))
("Incorrect format specifier", 0)
_output_s_l
B_set_error_mode
f:\dd\vctools\crt_bld\self_x86\crt\src\errmode.c
("Invalid error_mode", 0)
f:\dd\vctools\crt_bld\self_x86\crt\src\vsprintf.c
(count == 0) || (string != NULL)
_vsnprintf_helper
string != NULL && sizeInBytes > 0
_vsprintf_s_l
format != NULL
_vsnprintf_s_l
fclose
f:\dd\vctools\crt_bld\self_x86\crt\src\fclose.c
_fclose_nolock
("Invalid file descriptor. File possibly closed by a different thread",0)
(_osfile(filedes) & FOPEN)
_commit
f:\dd\vctools\crt_bld\self_x86\crt\src\commit.c
(filedes >= 0 && (unsigned)filedes < (unsigned)_nhandle)
(_osfile(fh) & FOPEN)
_write
f:\dd\vctools\crt_bld\self_x86\crt\src\write.c
isleadbyte(_dbcsBuffer(fh))
((cnt & 1) == 0)
_write_nolock
(buf != NULL)
_mbstowcs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\mbstowcs.c
s != NULL
retsize <= sizeInWords
bufferSize <= INT_MAX
_mbstowcs_s_l
(pwcs == NULL && sizeInWords == 0) || (pwcs != NULL && sizeInWords > 0)
length < sizeInTChars
2 <= radix && radix <= 36
sizeInTChars > (size_t)(is_neg ? 2 : 1)
sizeInTChars > 0
xtoa_s
f:\dd\vctools\crt_bld\self_x86\crt\src\xtoa.c
buf != NULL
_wcstombs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\wcstombs.c
pwcs != NULL
sizeInBytes > retsize
_wcstombs_s_l
(dst != NULL && sizeInBytes > 0) || (dst == NULL && sizeInBytes == 0)
wcscat_s
_vswprintf_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\vswprint.c
string != NULL && sizeInWords > 0
_vsnwprintf_s_l
xtow_s
(cnt <= INT_MAX)
f:\dd\vctools\crt_bld\self_x86\crt\src\read.c
(inputbuf != NULL)
_read_nolock
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
_lseeki64
f:\dd\vctools\crt_bld\self_x86\crt\src\lseeki64.c
_close
f:\dd\vctools\crt_bld\self_x86\crt\src\close.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_freebuf.c
stream != NULL
_get_osfhandle
f:\dd\vctools\crt_bld\self_x86\crt\src\osfinfo.c
_woutput_s_l
tCHC0C
kunerurigoci cofomumijulahuvinehulaficiraluzu
yoruyeporuyarepufodebek guniducok saruceji wur nufutajemuxotiho
yvazujenuximevajulacufohobadinu cev
gorenucazisoposam pom xafehazekefokuwomofexuyilavu
fisaximugutoyiwexagujifahebumune
celewaderoyoboli bijuc
potuxalowunelinamehukekik met kikihagekuwolorabaguke
kernel32.dll
medalemujuburosijagenoc
liceyituboninuwuh
dimefezoveyajawa
jazaducadatelixubisahazev
zeceheyamepumadewovopohuzi
yopusedi tiy
carihocohovuxelitayipe
siruxelidayasimeyezakolura
_controlfp_s(((void *)0), 0x00010000, 0x00030000)
_setdefaultprecision
f:\dd\vctools\crt_bld\self_x86\crt\src\intel\fp8.c
_cftoe_l
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\cvt.c
strcpy_s(p, (sizeInBytes == (size_t)-1 ? sizeInBytes : sizeInBytes - (p - buf)), "e+000")
sizeInBytes > (size_t)(3 + (ndec > 0 ? ndec : 0) + 5 + 1)
_cftoe2_l
sizeInBytes > (size_t)(1 + 4 + ndec + 6)
_cftoa_l
_cftof_l
_cftof2_l
_cftog_l
g_controlfp_s
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\tran\contrlfp.c
("Invalid input value", 0)
pflt != NULL
sizeInBytes > (size_t)((digits > 0 ? digits : 0) + 1)
_fptostr
f:\dd\vctools\crt_bld\self_x86\crt\src\_fptostr.c
strcpy_s(resultstr, resultsize, autofos.man)
_fltout2
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\cfout.c
__strgtold12_l
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\include\strgtold12.inl
_Locale != NULL
strcpy_s(fos->man, 21+1, "1#QNAN")
strcpy_s(fos->man, 21+1, "1#INF")
strcpy_s(fos->man, 21+1, "1#IND")
strcpy_s(fos->man, 21+1, "1#SNAN")
$I10_OUTPUT
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\x10fout.c
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
041816E8
Versus
72.59.30.83
Version
38.85.36.57
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Clean
FireEye Generic.mg.9008fe6b62bc7b92
CAT-QuickHeal Clean
McAfee Artemis!9008FE6B62BC
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
CrowdStrike win/malicious_confidence_100% (D)
Baidu Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Tencent Clean
Ad-Aware Clean
Sophos ML/PE-A
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.MultiPlug.fh
CMC Clean
Emsisoft Clean
Ikarus Trojan.Win32.Crypt
GData Clean
Jiangmin Clean
MaxSecure Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
BitDefenderTheta Gen:NN.ZexaF.34058.yuW@a8DN6viH
ALYac Clean
TACHYON Clean
VBA32 Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.Kryptik!1.C6FC (CLASSIC)
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Unsafe.AI_Score_98%
Fortinet Clean
Webroot Clean
Cybereason malicious.4ab7c6
Avast Clean
Qihoo-360 HEUR/QVM10.1.34CF.Malware.Gen
No IRMA results available.