Static | ZeroBOX

PE Compile Time

2020-05-19 19:57:08

PDB Path

C:\nasuxitoti\wanuketas\yal\yabovu fapetuxo\lekagokese\heguna.pdb

PE Imphash

c4bbba65aaf569dae0a87d41cd5cbbf2

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00028490 0x00028600 6.35758109592
.rdata 0x0002a000 0x0000b7b4 0x0000b800 5.40104796428
.data 0x00036000 0x004c4fa8 0x00011400 7.72702440259
.rsrc 0x004fb000 0x00003850 0x00003a00 5.91585433972
.reloc 0x004ff000 0x00006c68 0x00006e00 2.71524245677

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x004fe158 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ICON 0x004fe158 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ICON 0x004fe158 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ICON 0x004fe158 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ICON 0x004fe158 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ICON 0x004fe158 0x00000468 LANG_CHINESE SUBLANG_CHINESE_SINGAPORE GLS_BINARY_LSB_FIRST
RT_ACCELERATOR 0x004fe620 0x00000070 None SUBLANG_DEFAULT data
RT_ACCELERATOR 0x004fe620 0x00000070 None SUBLANG_DEFAULT data
RT_GROUP_ICON 0x004fe5c0 0x0000005a LANG_CHINESE SUBLANG_CHINESE_SINGAPORE data
RT_VERSION 0x004fe728 0x00000124 None SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x42a000 GetComputerNameA
0x42a004 EnumResourceNamesW
0x42a008 UnregisterWait
0x42a00c SetPriorityClass
0x42a010 WriteConsoleInputW
0x42a014 SetFilePointer
0x42a024 WaitNamedPipeA
0x42a028 CompareFileTime
0x42a030 CreateDirectoryW
0x42a034 GlobalLock
0x42a038 SetEvent
0x42a040 GetTickCount
0x42a044 GetCommandLineA
0x42a048 GlobalAlloc
0x42a04c AddRefActCtx
0x42a050 LoadLibraryW
0x42a05c CreateSemaphoreA
0x42a060 ReadFile
0x42a064 GetModuleFileNameW
0x42a068 CompareStringW
0x42a06c lstrlenW
0x42a070 LCMapStringA
0x42a074 GetFileSizeEx
0x42a078 GetStartupInfoA
0x42a07c OpenMutexW
0x42a088 SetLastError
0x42a08c GetProcAddress
0x42a090 VirtualAlloc
0x42a098 ReadFileEx
0x42a09c CopyFileA
0x42a0a4 LoadLibraryA
0x42a0a8 OpenMutexA
0x42a0b0 GetExitCodeThread
0x42a0bc FindAtomA
0x42a0c4 HeapSetInformation
0x42a0cc FatalAppExitA
0x42a0d0 GetCPInfoExA
0x42a0d4 OpenSemaphoreW
0x42a0d8 GetVersionExA
0x42a0dc TlsAlloc
0x42a0e0 GetSystemTime
0x42a0e4 CopyFileExA
0x42a0e8 HeapValidate
0x42a0ec IsBadReadPtr
0x42a0f0 RaiseException
0x42a0fc TerminateProcess
0x42a100 GetCurrentProcess
0x42a10c IsDebuggerPresent
0x42a110 SetHandleCount
0x42a114 GetStdHandle
0x42a118 GetFileType
0x42a124 GetCurrentThreadId
0x42a128 GetCurrentProcessId
0x42a130 GetModuleHandleW
0x42a134 Sleep
0x42a138 ExitProcess
0x42a13c GetModuleFileNameA
0x42a148 WideCharToMultiByte
0x42a14c GetLastError
0x42a154 TlsGetValue
0x42a158 TlsSetValue
0x42a15c TlsFree
0x42a160 HeapDestroy
0x42a164 HeapCreate
0x42a168 HeapFree
0x42a16c VirtualFree
0x42a170 WriteFile
0x42a174 HeapAlloc
0x42a178 HeapSize
0x42a17c HeapReAlloc
0x42a180 GetACP
0x42a184 GetOEMCP
0x42a188 GetCPInfo
0x42a18c IsValidCodePage
0x42a190 RtlUnwind
0x42a194 DebugBreak
0x42a198 OutputDebugStringA
0x42a19c WriteConsoleW
0x42a1a0 OutputDebugStringW
0x42a1a4 MultiByteToWideChar
0x42a1ac LCMapStringW
0x42a1b0 GetStringTypeA
0x42a1b4 GetStringTypeW
0x42a1b8 GetLocaleInfoA
0x42a1bc FlushFileBuffers
0x42a1c0 GetConsoleCP
0x42a1c4 GetConsoleMode
0x42a1c8 CloseHandle
0x42a1cc SetStdHandle
0x42a1d0 WriteConsoleA
0x42a1d4 GetConsoleOutputCP
0x42a1d8 CreateFileA
0x42a1dc GetModuleHandleA

!This program cannot be run in DOS mode.
`.rdata
@.data
@.reloc
URPQQh
PPPPPPPP
PPPPPPPP
}'h$nC
;t$,v-
UQPXY]Y[
j1h0=C
j1h0=C
j.hX?C
j|hxBC
bad allocation
Unknown exception
f:\dd\vctools\crt_bld\self_x86\crt\src\onexit.c
Client
Ignore
Normal
Error: memory allocation: bad memory block type.
Invalid allocation size: %Iu bytes.
Client hook allocation failure.
Client hook allocation failure at file %hs line %d.
Error: possible heap corruption at or near 0x%p
The Block at 0x%p was allocated by aligned routines, use _aligned_realloc()
Error: memory allocation: bad memory block type.
Memory allocated at %hs(%d).
Invalid allocation size: %Iu bytes.
Memory allocated at %hs(%d).
Client hook re-allocation failure.
Client hook re-allocation failure at file %hs line %d.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
Memory allocated at %hs(%d).
Client hook free failure.
The Block at 0x%p was allocated by aligned routines, use _aligned_free()
%hs located at 0x%p is %Iu bytes long.
%hs located at 0x%p is %Iu bytes long.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
Memory allocated at %hs(%d).
DAMAGED
_heapchk fails with unknown return value!
_heapchk fails with _HEAPBADPTR.
_heapchk fails with _HEAPBADEND.
_heapchk fails with _HEAPBADNODE.
_heapchk fails with _HEAPBADBEGIN.
Bad memory block found at 0x%p.
Bad memory block found at 0x%p.
Memory allocated at %hs(%d).
Object dump complete.
crt block at 0x%p, subtype %x, %Iu bytes long.
normal block at 0x%p, %Iu bytes long.
client block at 0x%p, subtype %x, %Iu bytes long.
{%ld}
%hs(%d) :
#File Error#(%d) :
Dumping objects ->
Data: <%s> %s
Detected memory leaks!
f:\dd\vctools\crt_bld\self_x86\crt\src\_file.c
f:\dd\vctools\crt_bld\self_x86\crt\src\input.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_sftbuf.c
(null)
`h````
xpxxxx
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
f:\dd\vctools\crt_bld\self_x86\crt\src\ioinit.c
f:\dd\vctools\crt_bld\self_x86\crt\src\mlock.c
CorExitProcess
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdargv.c
f:\dd\vctools\crt_bld\self_x86\crt\src\a_env.c
EncodePointer
DecodePointer
f:\dd\vctools\crt_bld\self_x86\crt\src\tidtable.c
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library without using a manifest.
This is an unsupported way to load Visual C++ DLLs. You need to modify your application to build with a manifest.
For more information, see the "Visual C++ Libraries as Shared Side-by-Side Assemblies" topic in the product documentation.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
Assertion Failed
Warning
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
HeapQueryInformation
f:\dd\vctools\crt_bld\self_x86\crt\src\mbctype.c
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
%s(%d) : %s
Assertion failed!
Assertion failed:
, Line
<file unknown>
Second Chance Assertion Failed: File
_CrtDbgReport: String too long or Invalid characters in String
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetUserObjectInformationA
MessageBoxA
USER32.DLL
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
bad exception
f:\dd\vctools\crt_bld\self_x86\crt\src\read.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
Unknown Runtime Check Error
Stack memory around _alloca was corrupted
A local variable was used before it was initialized
Stack memory was corrupted
A cast to a smaller data type has caused a loss of data. If this was intentional, you should mask the source of the cast with the appropriate bitmask. For example:
char c = (i & 0xFF);
Changing the code in this way will not affect the quality of the resulting optimized code.
The value of ESP was not properly saved across a function call. This is usually a result of calling a function declared with one calling convention with a function pointer declared with a different calling convention.
Stack around the variable '
' was corrupted.
The variable '
' is being used without being initialized.
f:\dd\vctools\crt_bld\self_x86\crt\src\convrtcp.c
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
MSPDB80.DLL
Stack around _alloca corrupted
Local variable used before initialization
Stack memory corruption
Cast to smaller type causing loss of data
Stack pointer corruption
CONOUT$
bad allocation
jexumepaheweyewidewogaloduwayiriho
dutosucefalohidinovugacubayin lolekut
xofeconotemabinicehajatadelid dixubiriwisulukubuwojefes tijemomuxafehucagubukehekedu keliwogobowojukayonah bogadeleropoxokenupujitujux
bubopamadajahicihuhovo
kuhokinucey
canepivasabizaxitelihojoxanewuhi
faregirizajubocezor jigujowepihogowo buzosudubeharexizeno zivefikecoyahapekulesotused
xiwedutojaxiriyecerihoyuhi xokunuxa hozisobosusum sizigabubuvileworeyuv diyesixekehezivatozeb
kernel32.dll
sepuxodihukilosivagocef
bavefofukinikehup
rowih wefugasufiyobi pevopunodikitayed
vokumilizodekatu
nahokorunizesoyexiwumamab
%s %d %f
miyokenegemi
banosokenefeb
dojerokanukipacoro
tidunutuzogazuvuzupemihibid wekuvetixitepasane powicimavera saxotu dujomeyinemetixinidusebapi
mofonitoxupemedovusehiruvujiro
ripopenarenejamenomoto
kapepujasapivazujijowofako
GAIsProcessorFeaturePresent
KERNEL32
?Dj0Q:W$=
5s3R6=
?ZEM-'^
?{yK+;
?765@Z
?e')lW
UUUUUU
?333333
?333333
?UUUUUU
?$rxxx
@_nextafter
_hypot
1#QNAN
1#SNAN
C:\nasuxitoti\wanuketas\yal\yabovu fapetuxo\lekagokese\heguna.pdb
GetComputerNameA
EnumResourceNamesW
UnregisterWait
SetPriorityClass
WriteConsoleInputW
SetFilePointer
GetConsoleAliasesLengthW
InterlockedIncrement
InterlockedDecrement
WaitNamedPipeA
CompareFileTime
SetEnvironmentVariableW
CreateDirectoryW
GlobalLock
SetEvent
FreeEnvironmentStringsA
GetTickCount
GetCommandLineA
GlobalAlloc
AddRefActCtx
LoadLibraryW
GetSystemWow64DirectoryW
IsProcessorFeaturePresent
CreateSemaphoreA
ReadFile
GetModuleFileNameW
CompareStringW
lstrlenW
LCMapStringA
GetFileSizeEx
GetStartupInfoA
OpenMutexW
GetHandleInformation
GetCurrentDirectoryW
SetLastError
GetProcAddress
VirtualAlloc
WriteProfileSectionA
ReadFileEx
CopyFileA
GetPrivateProfileStringA
LoadLibraryA
OpenMutexA
GetConsoleScreenBufferInfo
GetExitCodeThread
SetCurrentDirectoryW
PostQueuedCompletionStatus
FindAtomA
CreateIoCompletionPort
HeapSetInformation
GetConsoleCursorInfo
FatalAppExitA
GetCPInfoExA
OpenSemaphoreW
GetVersionExA
TlsAlloc
GetSystemTime
CopyFileExA
KERNEL32.dll
HeapValidate
IsBadReadPtr
RaiseException
EnterCriticalSection
LeaveCriticalSection
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
SetHandleCount
GetStdHandle
GetFileType
DeleteCriticalSection
QueryPerformanceCounter
GetCurrentThreadId
GetCurrentProcessId
GetSystemTimeAsFileTime
GetModuleHandleW
ExitProcess
GetModuleFileNameA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
GetLastError
GetEnvironmentStringsW
TlsGetValue
TlsSetValue
TlsFree
HeapDestroy
HeapCreate
HeapFree
VirtualFree
WriteFile
HeapAlloc
HeapSize
HeapReAlloc
GetACP
GetOEMCP
GetCPInfo
IsValidCodePage
RtlUnwind
DebugBreak
OutputDebugStringA
WriteConsoleW
OutputDebugStringW
MultiByteToWideChar
InitializeCriticalSectionAndSpinCount
LCMapStringW
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
FlushFileBuffers
GetConsoleCP
GetConsoleMode
CloseHandle
SetStdHandle
WriteConsoleA
GetConsoleOutputCP
CreateFileA
GetModuleHandleA
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
[_?}WdGP
[Og#DqX%
U}&617
C1/fBq
,@sgn '
7Rl}j~
^i?IS8
`#vj_t
#3~6H~W
Ja%%.P<
+2J6vpl
!XUeP2
\QU$bhd
(5'"nAJ
v0nOc;
w{}CUsm
cxU$w(
&M=4,4
Y+)CCO
)&B=$5
{gCQd|
JJ_)Vxu
IIv({s/
xfeXV$
892zPm
_VE.lhU
jyDaMz
)IM[|j
IZ(D:u
eAP,&~
`0&|Qg
9N{YbD
MCnOaG
{*]nxf
;W/wG*
<4wperKGn
j;NZkt
,s/iJm
!3Q$L6
Ep^Z3h
+4Ut+5B
#P6{X<
JR+1s9
OU-Q5:
*VVCd#
y* TZ4YKCj
yaP-NH%-[_yr
|R[^C|
OFly*x
f`YLgq
{~l*>f
y[.K+}o[g*B
A9Ku#
NZO%u~
2RXfg]
jA6w;2;
p)Tf}v
1\D&yD
Z`cxH]
?d19e&
Bu<6K8
V@j/}f
^>PwRF
A6ttdRA
vf;VYZ
II:p7
>-A5}`
>u.eQ)l6
>_Xlo]
+NRzu_
HNa&?)
zxN>fXs
DR@sEb
I`:wN)
MnpG.]d
K,}<D(
L];lVI4
-xIY>P
('%vau
-n'3xv&
YMg* /
LpFtYc5
qg(uf^0
n5|4\;#
L~yaXi
y;sCwB
%ch"u0~
ScJq/D
(>n?VH
eG2=<Rqu
0O8SM
Bh=B-M>
$5v`bB
K7,|c]
1cWnhiK
Z;(@>h
.M}EXfp
I`$aE sN
Z$LaK.
UWts]W%
Z$Lj'X~K
D4Ee!3p
CN}c9a
~^P6[#
fjSF<v
@Iz=iK
i#G@<D
K[U+o&w
=M*PBr^w
#Vvl.u
9Y.vE}
Yzp'MsI/
K[&}!RHz
u_<J^/D
CC*ck`A4(]
Q
????????
M88&&&
,,8888&&&
22WWW888&&&
DD2222WW8W88,
DDD2222W,,W
DDD222D~
{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{
6666666666
{{{{{{{
{{{{{{
jvvvvvi
vkkkkk
k&&&&&&
??jv{{{{
??jv{{{{
k""666
jv{{{{
rrrwww
i{{{{?
2222:7
v{{{{6
{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{
,,,,,,,,,
{},~~|
#/ ({}}
1H2M2_2
2W3x3}3
3 4)4S4X4]4
>$>4>@>V>b>k>p>y>
30>0G0O0X0`0f0l0t0z0
4?4Y4v4{4
425O5T5u5
5'636s6
7!7)727=7F7N7[7d7j7s7x7~7
7 8,8p8z8
9H:M:_:
; ;:;Z;
;@<L<b<t<
>(>l>x>
?)?C?T?
0>0C0H0^0g0p0
3"3'3U3
5H6L6P6T6h6m6
747K7a7g7t7
71888K8R8h8m8
;+<0<Y<
0!0&0^0
2D2I2N2
3$4)4.4n4u4
5+646^6c6h6
<0<5<:<
&080A0M0V0d0m0{0
0"1>1Z1l1
1G2X2a2}2
3|3a4l4v4
8'878C8^8n8z8
8E9K9y9~9
:^;f;~;
=8===B=o={=
=#>5>w>
0,3034383<3@3D3H3
9&:+:0:r:~:
;1<=<m<r<w<!=(=6>=>q?x?
1'232c2h2m2H3
:H:L:P:T:X:\:`:d:h:l:p:t:x:|:
=9=?=S=*>=>Y>n>s>{>
1I1R1|1
2%2f2s2
33;3d3{3
7'7<7H7T7d7
7(808F8S8X8s8
:%:6:G:_:i:w:|:
;);9;U;
;+<0<=<B<P<h<
2!3/3:3B3G3U3]3j3v3
:0:7:A:J:Q:X:h:~:
: ;';1;:;A;H;X;n;x;
<;<E<J<O<Y<^<c<m<r<w<
=!='=5=;=I=N=\=v=|=
='>/>6>G>Q>Z>a>g>
03090\0
3#343:3T3[3a3
3+4e4p4
515A5F5K5P5
6'626M6R6y6
6H7M7_7~7
:f:k:p:x:
;!;;;G;[;g;
<)<9<E<
>H>M>R>
>$?+?:?q?x?
0'050;0J0\0b0
4H4M4_4
5#5*595x5}5
6M6T6Y6_6o6u6{6
<%<6<E<Q<b<m<v<
="=:=C=
><>H>i>
2(202W2]2e2r2z2
4-;=;g;
0(1-1?1
2)2>2d2o2{2
3#3'303B3L3t3
4B4L4q4
7D8K8t8x8|8
000L0u0
1"1>1Z1v1
2(2-2?2b2
2M3x3}3
77'7,70747]7
9=9D9H9L9P9T9X9\9`9
10?0N0d0
0H2M2_2
33I3]3
5;5A5\5i5n5t5
6H6M6R6W6
7+70757:7c7h7m7r7
8C8H8M8R8}8
8'9,91969Y9b9
;4;;;E;W;a;
;8<=<V<#=)===B=G=o=u=
=2>7><>r>w>|>
?D?U?Z?_?d?
-02070m0r0w0|0
0<1A1F1K1n1w1
3 31383s3z3
3(4/4j4q4{4
4.545i5r5{5
7l8p8t8x8|8
9N9Z9`9u9
:#:):4:>:P:
;"<+<U<Z<_<
=*>3>]>b>g>
>!?J?S?}?
Q0]0i1x2}2
969;9@9
<,<1<6<{=
> >6>A>
3I4X4]4o4
6&7+707r7~7
99$9o9
8 8$8(8,8084888<8@8D8\8`8d8h8l8
8&939H9M9_9
<+<0<5<~<
=-=3=;=E=S=Y=d=n=
>!?)?f?o?
0H0q0z0
0$1+1V1
5#5N5w5
;$;(;,;0;4;8;<;@;
;Z<h<u<
9$:):.:k:t:
<B<N<{<
<?=K=x=}=
=9>E>r>w>|>
22&2-242;2C2K2S2_2h2m2s2}2
<<<A<F<l<
=!=Z=c=
>4>=>r>w>|>
40=0r0w0|0
3%4Y4c4
7$8.8X8r9
9T:^:w:
30353:3s3{3
3:4C4m4r4w4A5M5z5
566?6i6n6s6
:$;0;];b;g;
<"<O<T<Y<
>:?C?m?r?w?
!0J0S0}0
151^1g1
4"5.5[5`5e5
6.7:7g7l7q7
9&9P9U9Z9
::^:g:
='=0=x=}=
=2>7><>b>z>
>'?,?1?j?
E0h0t0
181=1B1i1u1
2V2[2`2
>]?f?|?
0H0M0_0
0B1e1n1
1,21262r2
4-4Z4 5*5Y5w5
6 7Q7d7
788=8O8
8"9:9C9x9}9
<(<4<@<V<
<.=3=8=^=v=
?"?9?D?M?[?|?
0-191i1n1s1
8%9*9/9
0$1(1,1014181<1@1D1H1L1P1T1X1p1t1x1|1
9'90989?9E9N9W9^9
; =4===B=X=_=f=m=t={=
>">'>5><>C>T>^>{>
?$?0?@?
22A2I2
3)3.3H3
3A4L4R4
506@6G6M6U6
7#7)7/7M7\7b7w7
:2:@:R:X:^:i:s:{:
;E;P;Z;m;
<7<;<A<E<K<O<U<Y<_<c<i<m<s<w<}<
<M=g=t=
0>0I0[0z0
676<6A6s6
71767;7
9":.:[:`:e:
;";O;T;Y;
2<2H2u2z2
5!6&6+6P6\6
899A9I9Q9o9w9
212s2z2
3#4`4z4
;\;`;d;h;l;p;t;x;|;
;D<H<L<P<T<X<\<`<d<h<l<p<
>%?6?u?
90E0M0
1B1J1R1
3)495j6s6
7D7M7w7|7
8X9]9b9
>(?n?v?
0%7i8
;1<;<]<
= >$>(>,>0>4>8><>w>
676B6e6p6
617D9S9B<W<l<
:1;=;j;o;t;
T4X4\4`4d4h4l4p4t4x4|4
5 5i5s5
5I6);a<f<k<p<
=!=&=\=a=f=k=
2 2`2d2h2`5d5
h8l8p8
0 0$0(0,0004080<0@0D0H0L0P0T0X0\0`0d0h0l0p0t0x0|0
1 1$1(1,10141
? ?4?8?<?
p0t0x0|0
,30383<3@3D3
4,40444<4T4X4p4
5 5<5@5H5L5h5
6(6H6h6p6|6
7 7@7`7l7
808P8p8x8
9$9@9L9h9t9
:$:T:X:`:h:p:t:|:
; ;<;@;P;t;
<4<8<X<x<
0@0H004<4@4
6$6,646<6D6L6T6\6d6l6t6|6
; <0<@<P<`<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
="=&=*=.=2=6=:=>=B=F=J=N=R=V=Z=^=b=f=j=n=r=v=z=~=
>$>,>4><>D>L>T>\>d>l>t>|>
Bjjjjj
vscanf
f:\dd\vctools\crt_bld\self_x86\crt\src\scanf.c
(format != NULL)
( (_Stream->_flag & _IOSTRG) || ( fn = _fileno(_Stream), ( (_textmode_safe(fn) == __IOINFO_TM_ANSI) && !_tm_unicode_safe(fn))))
fprintf
f:\dd\vctools\crt_bld\self_x86\crt\src\fprintf.c
(str != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgdel.cpp
_BLOCK_TYPE_IS_VALID(pHead->nBlockUse)
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgheap.c
_CrtCheckMemory()
_calloc_dbg_impl
(_HEAP_MAXREQ / nNum) >= nSize
_pFirstBlock == pOldBlock
_pLastBlock == pOldBlock
fRealloc || (!fRealloc && pNewBlock == pOldBlock)
pOldBlock->nLine == IGNORE_LINE && pOldBlock->lRequest == IGNORE_REQ
_CrtIsValidHeapPointer(pUserData)
_recalloc_dbg
(_HEAP_MAXREQ / count) >= size
pUserData != NULL
_pFirstBlock == pHead
_pLastBlock == pHead
pHead->nBlockUse == nBlockUse
pHead->nLine == IGNORE_LINE && pHead->lRequest == IGNORE_REQ
_msize_dbg
_CrtSetDbgFlag
(fNewBits==_CRTDBG_REPORT_FLAG) || ((fNewBits & 0x0ffff & ~(_CRTDBG_ALLOC_MEM_DF | _CRTDBG_DELAY_FREE_MEM_DF | _CRTDBG_CHECK_ALWAYS_DF | _CRTDBG_CHECK_CRT_DF | _CRTDBG_LEAK_CHECK_DF) ) == 0)
_CrtMemCheckpoint
state != NULL
(*_errno())
_printMemBlockData
(L"Buffer is too small" && 0)
Buffer is too small
(((_Src))) != NULL
strcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscpy_s.inl
((_Dst)) != NULL && ((_SizeInBytes)) > 0
ibase == 0 || (2 <= ibase && ibase <= 36)
strtoxl
f:\dd\vctools\crt_bld\self_x86\crt\src\strtol.c
nptr != NULL
strtoxq
f:\dd\vctools\crt_bld\self_x86\crt\src\strtoq.c
Assertion Failed
Warning
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrpt.c
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
wcscpy_s(szOutMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
memcpy_s(szShortProgName, sizeof(TCHAR) * (260 - (szShortProgName - szExeName)), dotdotdot, sizeof(TCHAR) * 3)
<program name unknown>
wcscpy_s(szExeName, 260, L"<program name unknown>")
__crtMessageWindowW
(stream != NULL)
_input_l
f:\dd\vctools\crt_bld\self_x86\crt\src\input.c
nFloatStrUsed<=(*pnFloatStrSz)
f:\dd\vctools\crt_bld\self_x86\crt\src\_sftbuf.c
str != NULL
flag == 0 || flag == 1
(null)
("'n' format specifier disabled", 0)
(ch != _T('\0'))
_output_l
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
c_fileno
f:\dd\vctools\crt_bld\self_x86\crt\src\fileno.c
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\eh\typname.cpp
pNode->next != NULL
mscoree.dll
strcpy_s(*env, cchars, p)
_setenvp
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
KERNEL32.DLL
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), rterrs[tblindx].rterrtxt)
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "\n\n")
strncpy_s(pch, progname_size - (pch - progname), "...", 3)
strcpy_s(progname, progname_size, "<program name unknown>")
strcpy_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "Runtime Error!\n\nProgram: ")
_NMSG_WRITE
f:\dd\vctools\crt_bld\self_x86\crt\src\crt0msg.c
strcpy_s(szOutMessage, 4096, "_CrtDbgReport: String too long or IO Error")
strcpy_s(szExeName, 260, "<program name unknown>")
__crtMessageWindowA
_expand_base
f:\dd\vctools\crt_bld\self_x86\crt\src\expand.c
pBlock != NULL
kernel32.dll
f:\dd\vctools\crt_bld\self_x86\crt\src\setlocal.c
((ptloci->lc_category[category].wlocale != NULL) && (ptloci->lc_category[category].wrefcount != NULL)) || ((ptloci->lc_category[category].wlocale == NULL) && (ptloci->lc_category[category].wrefcount == NULL))
f:\dd\vctools\crt_bld\self_x86\crt\src\isctype.c
(unsigned)(c + 1) <= 256
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrptt.c
_CrtDbgReport: String too long or Invalid characters in String
wcscpy_s(szOutMessage2, 4096, L"_CrtDbgReport: String too long or Invalid characters in String")
e = mbstowcs_s(&ret, szOutMessage2, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage, 4096, szLineMessage)
strcat_s(szLineMessage, 4096, "\n")
strcat_s(szLineMessage, 4096, "\r")
strcat_s(szLineMessage, 4096, szUserMessage)
strcpy_s(szLineMessage, 4096, szFormat ? "Assertion failed: " : "Assertion failed!")
strcpy_s(szUserMessage, 4096, "_CrtDbgReport: String too long or IO Error")
_itoa_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportA
wcstombs_s(&ret, szaOutMessage, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage2, 4096, "_CrtDbgReport: String too long or Invalid characters in String")
wcstombs_s(((void *)0), szOutMessage2, 4096, szOutMessage, ((size_t)-1))
wcscpy_s(szOutMessage, 4096, szLineMessage)
%s(%d) : %s
wcscat_s(szLineMessage, 4096, L"\n")
wcscat_s(szLineMessage, 4096, L"\r")
wcscat_s(szLineMessage, 4096, szUserMessage)
wcscpy_s(szLineMessage, 4096, szFormat ? L"Assertion failed: " : L"Assertion failed!")
Assertion failed!
Assertion failed:
wcscpy_s(szUserMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
, Line
<file unknown>
Second Chance Assertion Failed: File
_itow_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportW
f:\dd\vctools\crt_bld\self_x86\crt\src\winsig.c
("Invalid signal or error", 0)
WUSER32.DLL
sizeInBytes >= count
src != NULL
memcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\memcpy_s.c
dst != NULL
wcscpy_s
((_Dst)) != NULL && ((_SizeInWords)) > 0
f:\dd\vctools\crt_bld\self_x86\crt\src\mbtowc.c
_loc_update.GetLocaleT()->locinfo->mb_cur_max == 1 || _loc_update.GetLocaleT()->locinfo->mb_cur_max == 2
_filbuf
f:\dd\vctools\crt_bld\self_x86\crt\src\_filbuf.c
_ungetc_nolock
f:\dd\vctools\crt_bld\self_x86\crt\src\ungetc_nolock.inl
_isatty
f:\dd\vctools\crt_bld\self_x86\crt\src\isatty.c
(fh >= 0 && (unsigned)fh < (unsigned)_nhandle)
("Buffer too small", 0)
sizeInBytes > 0
_wctomb_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\wctomb.c
sizeInBytes <= INT_MAX
("inconsistent IOB fields", stream->_ptr - stream->_base >= 0)
f:\dd\vctools\crt_bld\self_x86\crt\src\_flsbuf.c
((state == ST_NORMAL) || (state == ST_TYPE))
("Incorrect format specifier", 0)
_output_s_l
B_set_error_mode
f:\dd\vctools\crt_bld\self_x86\crt\src\errmode.c
("Invalid error_mode", 0)
(L"String is not null terminated" && 0)
String is not null terminated
strcat_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscat_s.inl
strncpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcsncpy_s.inl
f:\dd\vctools\crt_bld\self_x86\crt\src\malloc.h
("Corrupted pointer passed to _freea", 0)
((((( H
h(((( H
H
f:\dd\vctools\crt_bld\self_x86\crt\src\vsprintf.c
(count == 0) || (string != NULL)
_vsnprintf_helper
string != NULL && sizeInBytes > 0
_vsprintf_s_l
format != NULL
_vsnprintf_s_l
@fclose
f:\dd\vctools\crt_bld\self_x86\crt\src\fclose.c
_fclose_nolock
("Invalid file descriptor. File possibly closed by a different thread",0)
(_osfile(filedes) & FOPEN)
_commit
f:\dd\vctools\crt_bld\self_x86\crt\src\commit.c
(filedes >= 0 && (unsigned)filedes < (unsigned)_nhandle)
(_osfile(fh) & FOPEN)
_write
f:\dd\vctools\crt_bld\self_x86\crt\src\write.c
isleadbyte(_dbcsBuffer(fh))
((cnt & 1) == 0)
_write_nolock
(buf != NULL)
_mbstowcs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\mbstowcs.c
s != NULL
retsize <= sizeInWords
bufferSize <= INT_MAX
_mbstowcs_s_l
(pwcs == NULL && sizeInWords == 0) || (pwcs != NULL && sizeInWords > 0)
length < sizeInTChars
2 <= radix && radix <= 36
sizeInTChars > (size_t)(is_neg ? 2 : 1)
sizeInTChars > 0
xtoa_s
f:\dd\vctools\crt_bld\self_x86\crt\src\xtoa.c
buf != NULL
_wcstombs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\wcstombs.c
pwcs != NULL
sizeInBytes > retsize
_wcstombs_s_l
(dst != NULL && sizeInBytes > 0) || (dst == NULL && sizeInBytes == 0)
wcscat_s
_vswprintf_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\vswprint.c
string != NULL && sizeInWords > 0
_vsnwprintf_s_l
xtow_s
(cnt <= INT_MAX)
f:\dd\vctools\crt_bld\self_x86\crt\src\read.c
(inputbuf != NULL)
_read_nolock
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
_lseeki64
f:\dd\vctools\crt_bld\self_x86\crt\src\lseeki64.c
_close
f:\dd\vctools\crt_bld\self_x86\crt\src\close.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_freebuf.c
stream != NULL
_get_osfhandle
f:\dd\vctools\crt_bld\self_x86\crt\src\osfinfo.c
_woutput_s_l
kunerurigoci cofomumijulahuvinehulaficiraluzu
yoruyeporuyarepufodebek guniducok saruceji wur nufutajemuxotiho
gorenucazisoposam pom xafehazekefokuwomofexuyilavu
fisaximugutoyiwexagujifahebumune
celewaderoyoboli bijuc
potuxalowunelinamehukekik met kikihagekuwolorabaguke
dasiponazuzemijofakubijoyaf
wajunevigifokulegulavocipo
zeceheyamepumadewovopohuzi
yopusedi tiy
_controlfp_s(((void *)0), 0x00010000, 0x00030000)
_setdefaultprecision
f:\dd\vctools\crt_bld\self_x86\crt\src\intel\fp8.c
_cftoe_l
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\cvt.c
strcpy_s(p, (sizeInBytes == (size_t)-1 ? sizeInBytes : sizeInBytes - (p - buf)), "e+000")
sizeInBytes > (size_t)(3 + (ndec > 0 ? ndec : 0) + 5 + 1)
_cftoe2_l
sizeInBytes > (size_t)(1 + 4 + ndec + 6)
_cftoa_l
_cftof_l
_cftof2_l
_cftog_l
_controlfp_s
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\tran\contrlfp.c
("Invalid input value", 0)
pflt != NULL
sizeInBytes > (size_t)((digits > 0 ? digits : 0) + 1)
_fptostr
f:\dd\vctools\crt_bld\self_x86\crt\src\_fptostr.c
strcpy_s(resultstr, resultsize, autofos.man)
_fltout2
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\cfout.c
__strgtold12_l
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\include\strgtold12.inl
_Locale != NULL
strcpy_s(fos->man, 21+1, "1#QNAN")
strcpy_s(fos->man, 21+1, "1#INF")
strcpy_s(fos->man, 21+1, "1#IND")
strcpy_s(fos->man, 21+1, "1#SNAN")
$I10_OUTPUT
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\x10fout.c
VS_VERSION_INFO
041816E8
Versus
72.59.40.83
Version
38.85.36.51
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetect.malware2
Lionic Trojan.Win32.Generic.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.46781890
CMC Clean
CAT-QuickHeal Clean
ALYac Trojan.SmokeLoader
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Trojan.GenericKD.46781890
K7GW Trojan ( 00580df61 )
CrowdStrike win/malicious_confidence_100% (W)
Baidu Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/GenKryptik.FIWW
APEX Malicious
Paloalto generic.ml
ClamAV Win.Dropper.Raccoon-9885550-0
Kaspersky HEUR:Trojan.Win32.Chapak.gen
Alibaba Clean
NANO-Antivirus Clean
SUPERAntiSpyware Clean
Rising Malware.Obscure/Heur!1.A89F (CLASSIC)
Ad-Aware Trojan.GenericKD.46781890
Sophos Mal/Generic-R
Comodo Clean
F-Secure Clean
DrWeb Trojan.Siggen14.60125
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Trojan.fh
MaxSecure Trojan.Malware.300983.susgen
FireEye Generic.mg.06a029882deabf22
Emsisoft Trojan.GenericKD.46781890 (B)
SentinelOne Static AI - Suspicious PE
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=84)
Antiy-AVL Clean
Kingsoft Win32.Troj.Undef.(kcloud)
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Gridinsoft Clean
Arcabit Clean
ViRobot Clean
ZoneAlarm HEUR:Trojan.Win32.Chapak.gen
GData Win32.Trojan-Downloader.SmokeLoader.FOMP91
Cynet Malicious (score: 100)
AhnLab-V3 Malware/Win.Generic.C4589841
Acronis suspicious
McAfee Packed-GDT!06A029882DEA
TACHYON Clean
VBA32 Trojan.Win32.Azorult.a
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Win32.Outbreak
eGambit Unsafe.AI_Score_95%
Fortinet W32/Wacatac.DF!tr
BitDefenderTheta Gen:NN.ZexaF.34058.tuW@a8TLpfoH
AVG Win32:Trojan-gen
Avast Win32:Trojan-gen
Qihoo-360 Win32/Heur.Generic.HwoCOQcA
No IRMA results available.