Static | ZeroBOX

PE Compile Time

2020-08-24 16:23:47

PDB Path

C:\ruwiceliyacako.pdb

PE Imphash

f29709d3d8fb23714c868be088ee3357

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0001c930 0x0001ca00 6.27985738804
.rdata 0x0001e000 0x000084b6 0x00008600 4.75924952371
.data 0x00027000 0x01f8a1fc 0x00022800 7.91266530514
.rsrc 0x01fb2000 0x000108a0 0x00010a00 5.38780625047

Resources

Name Offset Size Language Sub-language File type
FIDUSANEHODEZAY 0x01fbf7b0 0x000002fa None SUBLANG_DEFAULT ASCII text, with very long lines, with no line terminators
TAR 0x01fbe8c8 0x00000ee8 None SUBLANG_DEFAULT ASCII text, with very long lines, with no line terminators
RT_CURSOR 0x01fc1ea8 0x000008a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01fc1ea8 0x000008a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01fc1ea8 0x000008a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01fc1ea8 0x000008a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01fc1ea8 0x000008a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01fc1ea8 0x000008a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ICON 0x01fbe3e8 0x00000468 LANG_FRENCH SUBLANG_FRENCH_SWISS GLS_BINARY_LSB_FIRST
RT_ACCELERATOR 0x01fbfab0 0x00000080 None SUBLANG_DEFAULT data
RT_ACCELERATOR 0x01fbfab0 0x00000080 None SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x01fc2750 0x00000022 None SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x01fc2750 0x00000022 None SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x01fc2750 0x00000022 None SUBLANG_DEFAULT data
RT_GROUP_ICON 0x01fb8030 0x0000005a LANG_FRENCH SUBLANG_FRENCH_SWISS data
RT_GROUP_ICON 0x01fb8030 0x0000005a LANG_FRENCH SUBLANG_FRENCH_SWISS data
RT_GROUP_ICON 0x01fb8030 0x0000005a LANG_FRENCH SUBLANG_FRENCH_SWISS data
RT_VERSION 0x01fc2778 0x00000124 None SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x41e004 UnregisterWait
0x41e008 GetFileSize
0x41e00c SetThreadContext
0x41e010 GetNativeSystemInfo
0x41e014 SetFilePointer
0x41e018 lstrlenA
0x41e020 SetLocalTime
0x41e034 WaitForSingleObject
0x41e038 GetComputerNameW
0x41e040 GetTickCount
0x41e044 WaitNamedPipeW
0x41e048 WriteFile
0x41e04c SetCommState
0x41e050 GetCommandLineA
0x41e054 TlsSetValue
0x41e058 GetPriorityClass
0x41e05c AddRefActCtx
0x41e060 LoadLibraryW
0x41e064 GetConsoleMode
0x41e068 TerminateThread
0x41e06c CopyFileW
0x41e070 GetVersionExW
0x41e074 SetConsoleMode
0x41e078 GetBinaryTypeA
0x41e07c GetOverlappedResult
0x41e080 CompareStringW
0x41e084 GetStartupInfoW
0x41e088 GlobalUnlock
0x41e08c VerifyVersionInfoW
0x41e090 CreateDirectoryA
0x41e094 GetCPInfoExW
0x41e098 OpenMutexW
0x41e09c GetLastError
0x41e0a0 IsDBCSLeadByteEx
0x41e0a8 GetProcAddress
0x41e0ac VirtualAlloc
0x41e0b8 ResetEvent
0x41e0bc OpenWaitableTimerA
0x41e0c0 LoadLibraryA
0x41e0c4 CreateSemaphoreW
0x41e0c8 LocalAlloc
0x41e0d4 HeapWalk
0x41e0d8 Process32NextW
0x41e0dc WriteProfileStringA
0x41e0e4 GetModuleHandleA
0x41e0e8 EnumResourceNamesA
0x41e0f0 FatalAppExitA
0x41e0f4 GetCurrentThreadId
0x41e0f8 OpenSemaphoreW
0x41e0fc FindAtomW
0x41e100 LCMapStringW
0x41e104 CopyFileExA
0x41e108 DeleteFileA
0x41e10c WideCharToMultiByte
0x41e110 GetStartupInfoA
0x41e114 HeapValidate
0x41e118 IsBadReadPtr
0x41e11c RaiseException
0x41e120 TerminateProcess
0x41e124 GetCurrentProcess
0x41e130 IsDebuggerPresent
0x41e134 GetModuleFileNameW
0x41e138 GetACP
0x41e13c GetOEMCP
0x41e140 GetCPInfo
0x41e144 IsValidCodePage
0x41e148 TlsGetValue
0x41e14c GetModuleHandleW
0x41e150 TlsAlloc
0x41e154 TlsFree
0x41e158 SetLastError
0x41e15c Sleep
0x41e160 ExitProcess
0x41e174 GetCurrentProcessId
0x41e17c GetModuleFileNameA
0x41e18c SetHandleCount
0x41e190 GetStdHandle
0x41e194 GetFileType
0x41e198 HeapDestroy
0x41e19c HeapCreate
0x41e1a0 HeapFree
0x41e1a4 VirtualFree
0x41e1a8 HeapAlloc
0x41e1ac HeapSize
0x41e1b0 HeapReAlloc
0x41e1b4 DebugBreak
0x41e1b8 OutputDebugStringA
0x41e1bc WriteConsoleW
0x41e1c0 OutputDebugStringW
0x41e1c4 RtlUnwind
0x41e1c8 MultiByteToWideChar
0x41e1cc LCMapStringA
0x41e1d0 GetStringTypeA
0x41e1d4 GetStringTypeW
0x41e1d8 GetLocaleInfoA
0x41e1e0 GetConsoleCP
0x41e1e4 SetStdHandle
0x41e1e8 WriteConsoleA
0x41e1ec GetConsoleOutputCP
0x41e1f0 CreateFileA
0x41e1f4 CloseHandle
0x41e1f8 FlushFileBuffers

!This program cannot be run in DOS mode.
`.rdata
@.data
u!h(#B
PPPPPPPP
PPPPPPPP
URPQQh
u!h@.B
u!hP0B
j)h02B
j)h02B
jGh(4B
u!h(3B
j9h(=B
j9h(=B
jEh0?B
jEh0?B
u!h @B
jfh8BB
jfh8BB
}'h4~B
;t$,v-
UQPXY]Y[
uWhxLB
u$hDOB
bad allocation
Unknown exception
f:\dd\vctools\crt_bld\self_x86\crt\src\onexit.c
Client
Ignore
Normal
Error: memory allocation: bad memory block type.
Invalid allocation size: %Iu bytes.
Client hook allocation failure.
Client hook allocation failure at file %hs line %d.
Error: possible heap corruption at or near 0x%p
The Block at 0x%p was allocated by aligned routines, use _aligned_realloc()
Error: memory allocation: bad memory block type.
Memory allocated at %hs(%d).
Invalid allocation size: %Iu bytes.
Memory allocated at %hs(%d).
Client hook re-allocation failure.
Client hook re-allocation failure at file %hs line %d.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
Memory allocated at %hs(%d).
Client hook free failure.
The Block at 0x%p was allocated by aligned routines, use _aligned_free()
%hs located at 0x%p is %Iu bytes long.
%hs located at 0x%p is %Iu bytes long.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
Memory allocated at %hs(%d).
DAMAGED
_heapchk fails with unknown return value!
_heapchk fails with _HEAPBADPTR.
_heapchk fails with _HEAPBADEND.
_heapchk fails with _HEAPBADNODE.
_heapchk fails with _HEAPBADBEGIN.
Bad memory block found at 0x%p.
Bad memory block found at 0x%p.
Memory allocated at %hs(%d).
Object dump complete.
crt block at 0x%p, subtype %x, %Iu bytes long.
normal block at 0x%p, %Iu bytes long.
client block at 0x%p, subtype %x, %Iu bytes long.
{%ld}
%hs(%d) :
#File Error#(%d) :
Dumping objects ->
Data: <%s> %s
Detected memory leaks!
f:\dd\vctools\crt_bld\self_x86\crt\src\mbctype.c
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
EncodePointer
DecodePointer
f:\dd\vctools\crt_bld\self_x86\crt\src\tidtable.c
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
f:\dd\vctools\crt_bld\self_x86\crt\src\mlock.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdargv.c
f:\dd\vctools\crt_bld\self_x86\crt\src\a_env.c
f:\dd\vctools\crt_bld\self_x86\crt\src\ioinit.c
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library without using a manifest.
This is an unsupported way to load Visual C++ DLLs. You need to modify your application to build with a manifest.
For more information, see the "Visual C++ Libraries as Shared Side-by-Side Assemblies" topic in the product documentation.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
Assertion Failed
Warning
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
HeapQueryInformation
%s(%d) : %s
Assertion failed!
Assertion failed:
, Line
<file unknown>
Second Chance Assertion Failed: File
_CrtDbgReport: String too long or Invalid characters in String
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_file.c
(null)
`h````
xpxxxx
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetUserObjectInformationA
MessageBoxA
USER32.DLL
bad exception
f:\dd\vctools\crt_bld\self_x86\crt\src\convrtcp.c
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
Unknown Runtime Check Error
Stack memory around _alloca was corrupted
A local variable was used before it was initialized
Stack memory was corrupted
A cast to a smaller data type has caused a loss of data. If this was intentional, you should mask the source of the cast with the appropriate bitmask. For example:
char c = (i & 0xFF);
Changing the code in this way will not affect the quality of the resulting optimized code.
The value of ESP was not properly saved across a function call. This is usually a result of calling a function declared with one calling convention with a function pointer declared with a different calling convention.
Stack around the variable '
' was corrupted.
The variable '
' is being used without being initialized.
CONOUT$
MSPDB80.DLL
Stack around _alloca corrupted
Local variable used before initialization
Stack memory corruption
Cast to smaller type causing loss of data
Stack pointer corruption
bad allocation
pedizificujozinapihenikacujowarolojuvawusoziz
wivomomenutoruyeselexe
liyubomamenideru
xavexefimaroyizociwofipevuxok
wobujetivorinubihugoyabu
jixolosokunexedonupigey
lunepolalohobanofe
xusicukapexi
widap girecimohab
newayigogoxecisujitepayecicolu
kernel32.dll
jalivivexajetaguru
diledigadidobego kolicohidig gikuhaleki mufepodijunifanawe
dicuhexozupati
seyuhugocazobapeba
johebafodufe
xabeduniperiwabuyehodabetewapero
ducikimem
RSDS_%D$_
C:\ruwiceliyacako.pdb
FileTimeToDosDateTime
UnregisterWait
GetFileSize
SetThreadContext
GetNativeSystemInfo
SetFilePointer
lstrlenA
GetConsoleAliasesLengthW
SetLocalTime
InterlockedIncrement
GetQueuedCompletionStatus
InterlockedDecrement
GetSystemWindowsDirectoryW
WaitForSingleObject
GetComputerNameW
FreeEnvironmentStringsA
GetTickCount
WaitNamedPipeW
WriteFile
SetCommState
GetCommandLineA
TlsSetValue
GetPriorityClass
AddRefActCtx
LoadLibraryW
GetConsoleMode
TerminateThread
CopyFileW
GetVersionExW
SetConsoleMode
GetBinaryTypeA
GetOverlappedResult
CompareStringW
GetStartupInfoW
GlobalUnlock
VerifyVersionInfoW
CreateDirectoryA
GetCPInfoExW
OpenMutexW
GetLastError
IsDBCSLeadByteEx
ReadConsoleOutputCharacterA
GetProcAddress
VirtualAlloc
WriteProfileSectionA
GetPrivateProfileStringA
ResetEvent
OpenWaitableTimerA
LoadLibraryA
CreateSemaphoreW
LocalAlloc
SetCurrentDirectoryW
WriteProfileSectionW
HeapWalk
Process32NextW
WriteProfileStringA
CreateIoCompletionPort
GetModuleHandleA
EnumResourceNamesA
GetConsoleCursorInfo
FatalAppExitA
GetCurrentThreadId
OpenSemaphoreW
FindAtomW
LCMapStringW
CopyFileExA
DeleteFileA
KERNEL32.dll
WideCharToMultiByte
GetStartupInfoA
HeapValidate
IsBadReadPtr
RaiseException
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetModuleFileNameW
GetACP
GetOEMCP
GetCPInfo
IsValidCodePage
TlsGetValue
GetModuleHandleW
TlsAlloc
TlsFree
SetLastError
ExitProcess
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
GetModuleFileNameA
GetEnvironmentStrings
FreeEnvironmentStringsW
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
GetFileType
HeapDestroy
HeapCreate
HeapFree
VirtualFree
HeapAlloc
HeapSize
HeapReAlloc
DebugBreak
OutputDebugStringA
WriteConsoleW
OutputDebugStringW
RtlUnwind
MultiByteToWideChar
LCMapStringA
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
InitializeCriticalSectionAndSpinCount
GetConsoleCP
SetStdHandle
WriteConsoleA
GetConsoleOutputCP
CreateFileA
CloseHandle
FlushFileBuffers
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
9j!O!y
/0+u6I$C
~6AI$C
2m"C'v
.|CBTd<k
~gjZ#y<H
A{%5"
2J_`bz6
\E`2DRm
=Xt+8h
S|pBA4
3FFw]3V
y]b"&u
7[x1R1
(j=i(D
)Y79rhj
m:Sz>@
|fL$~
|D=MVp
!J8'Bx3P&nt
]!CJt
b{v:(9
zJ/,KjM
N:uDsI/
2s%CH]
<zl+gU
M{p5}[
~~~ThR
HtCt<s
V`B\'t
AJF(5S
o>q:=K
c1~0E6~/
@%^?Z[t
MYqg07v8|
d#P3Au
H)&VH'
Lw/PTV<
.R=baSN
v}a(Zs
)g~c'X
PRq}Jq
[ Uk9K
:)4J24
Ctjtk
!S]lSe^M
m1i,p5(
nU^`f
l?+{S+
b/cn0C
)2k<hL
5r`rGMx
7A=L*c CqnW
7xibYU
X^bC8c
,aUYgL
(LZ4'6
@F(T4:
xkn-3t
C<b9HM
-8RFl6
e13~$r
w/lpV(
99'.~}-
Xa4j`2
E t>&<
=_0hi(C
%8<Mp*s
9`G?FJn
]QD\7_
,$xy-5W~X
-fg60n
Q}[@hb
l)/,c>
1$YDR"|,t
GX)5n\
u9]k52
trq?3G51
AIn\K>
nZ.!h6
4z$@eVq
?M|d<s
>u[o}0
r"s\Q#c
5C+l-O
?+Z@v
-nODL"
P}zt)\
#.&-Yj
/k'dq+
s572zB
Fqv6*{
ryq`\r
!3Vd(<
7A{W"@
EjaR^p*
ZN\Btc
Vuz6Ps^
z^jSJt
4PprWv~
dd\C)S
<A]6):
7,#wF
&nk"G$
w>pTx\A
AY~&&{
0v+U|z[[/
v6l&l2
~XS$$
+^L(2L
6|'Ej%
Pr:a"%d
`.%Cul
j#;Lg1
f[y|;b
1zjIk
658MF}
#]QfS2
{:B[BjG
zCQSBV=
oq)^H!
<j>CYG
]9i+gQQ:
wLd*=f
>6!XRp
~PoggP
eE_':@&tN
8'?19d
]!gehZr
&-])c[
8=<oy4?
|+>\8d
w"U)$c
y]5jhV
p.`B^8
b5F'fQNv
n`Ww~5
#rbW;}K
82 n'M
t]"y,0!
*K!.(oy
IMH4v(
}4-/bY2
{`Y:.k
\@,Pna
N=eVF(/'
|YzQP
"H.T=
tqX(TR0
p?R>8:
XL"<a/s
|(*^f5_*
XJT0n|A
*~2H[7
rTMsr'
vie#:e
hgO8Va
m[+b^)
|ZeeHVR
KnoG)G
sYf\RNx
|_|'tb
rIQsX8
V|8,~n
%#v_eZ
)9FsVr
,B/Rp3
!;RIIk<
WXa$/=
o3 ]P;/
ATK[J>H
zZH>KV
2h%D(,
QZ&I;1
*,A8)+
G47dL~b
Q oEPu.
x.|pz}
"vP pM
$/b3Vm-
Oe#I W
G"oGDD
Jb_2[m
1FXvO/
qWX?W0A&_0b
%_0-wncM}j
H'klU
}-}/%+
DKr]R
JI%xx1
<_g\?6:
}}QGM(;K
**7WkE
61'"0L
5s&m}$
:r%'5+g
thBoL#6
'_#[S$
'0DQzK:
T`Y37N
ZV'nj"
Rm.qX^
$8n;/
GE\=iZ
Cf<Hd
k(!9nca?=
iBPMyG
|D_}1^^<h
$vBelRnaM
%Vb4m|en
&|i#K$y
QK>N80
bx<}T+L
CW.X$F
Vj%c.u
0uFqGW
F9)fS[6
?'Q`h9
2BS2JM
W]XTf5
RRrB@s
m-XZ;Un"mpn
NrLKVe\^
oooooooooooooooom
mmmmmmm
GmGmmmmm
GGGGGG
h-aaaaaaaaaaaaaa
_aA
JJJJggg
JJgggJZa_
_aZ^^888
^^^^88
^^^^8888Ah
________________
}XXXXXXXXXX } }}
XX yyy
n___???
n___???
n222_????C
nn222__C
CCdd777
ooooo&&
22222222222222222222
2222>&
&&&&&&&&&
(((((((
(((((((((L
22222222222222222
bd^Q~~
"/#)~~~
XmmU,,
@MMMgU
@MMMMMX
//////
L///////
4$-~T
Domayoxikejupa zebikovu jonoheyozuciz yuzolikirejubuz. Tufowovezawu xasoyesalisidim woguwik dovo. Likaharocadaj kehikaliyud rudagihoje yicugesoweweki holabopoluha. Digi pav. Vixarosi xanititadudi voriciwiyohaw boziwij. Mezofa dovatosorupof cozaxibucanezuz jofekirolu dexihe. Xiwoxokabupi lapitutiruyuzaz poku. Voyawibuviyemo. Deriwinazi vecuhizaza lusovozecujavi hujuk low. Kevucaconajafa yulofow. Xagedodosul. Xocuzizeyewiki jayi risavu danazapimifoxi. Zuyunijobinudem yufiyey. Geve sumiguraxume pebafezumobeyak lahuwapohu. Meroy kisumetav bam sisafibutoyijon ziyovepoviso. Duyejuk helakekaya degegerako guxifirokerev. Tuhaxubi limezafilawo vavesin dekapocesuye. Yopavinogexe. Dacux fizij hoguvezarimux. Fuzamicaga. Wumapamokikiwe xogigebucisa pav kan. Mocizogeguy sajesoni xisacevih hub. Nifinebiyocere bipop gewivurefabe lihuduvem havugokij. Hudivicusob. Satuyi zobar jagilumofiyuwuh coxirev wegeketoc. Joloka. Waduhu fatomo. Futade yimapubuji sinowumahos. Nuxexon pegazar. Wufe fikoroziheca. Lokazufo. Zobopuxonigujot ta
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

("Buffer too small", 0)
sizeInBytes > 0
_wctomb_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\wctomb.c
sizeInBytes <= INT_MAX
c(count == 0) || (string != NULL)
_vswprintf_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\vswprint.c
(format != NULL)
string != NULL && sizeInWords > 0
format != NULL
_vsnwprintf_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgdel.cpp
_BLOCK_TYPE_IS_VALID(pHead->nBlockUse)
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgheap.c
_CrtCheckMemory()
_calloc_dbg_impl
(_HEAP_MAXREQ / nNum) >= nSize
_pFirstBlock == pOldBlock
_pLastBlock == pOldBlock
fRealloc || (!fRealloc && pNewBlock == pOldBlock)
pOldBlock->nLine == IGNORE_LINE && pOldBlock->lRequest == IGNORE_REQ
_CrtIsValidHeapPointer(pUserData)
pUserData != NULL
_pFirstBlock == pHead
_pLastBlock == pHead
pHead->nBlockUse == nBlockUse
pHead->nLine == IGNORE_LINE && pHead->lRequest == IGNORE_REQ
_msize_dbg
_CrtSetDbgFlag
(fNewBits==_CRTDBG_REPORT_FLAG) || ((fNewBits & 0x0ffff & ~(_CRTDBG_ALLOC_MEM_DF | _CRTDBG_DELAY_FREE_MEM_DF | _CRTDBG_CHECK_ALWAYS_DF | _CRTDBG_CHECK_CRT_DF | _CRTDBG_LEAK_CHECK_DF) ) == 0)
_CrtMemCheckpoint
state != NULL
(*_errno())
_printMemBlockData
Assertion Failed
Warning
Af:\dd\vctools\crt_bld\self_x86\crt\src\dbgrpt.c
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
wcscpy_s(szOutMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
memcpy_s(szShortProgName, sizeof(TCHAR) * (260 - (szShortProgName - szExeName)), dotdotdot, sizeof(TCHAR) * 3)
<program name unknown>
wcscpy_s(szExeName, 260, L"<program name unknown>")
__crtMessageWindowW
f:\dd\vctools\crt_bld\self_x86\crt\src\setlocal.c
((ptloci->lc_category[category].wlocale != NULL) && (ptloci->lc_category[category].wrefcount != NULL)) || ((ptloci->lc_category[category].wlocale == NULL) && (ptloci->lc_category[category].wrefcount == NULL))
KERNEL32.DLL
(L"Buffer is too small" && 0)
Buffer is too small
(((_Src))) != NULL
strcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscpy_s.inl
((_Dst)) != NULL && ((_SizeInBytes)) > 0
ibase == 0 || (2 <= ibase && ibase <= 36)
strtoxl
f:\dd\vctools\crt_bld\self_x86\crt\src\strtol.c
nptr != NULL
strtoxq
f:\dd\vctools\crt_bld\self_x86\crt\src\strtoq.c
mscoree.dll
("inconsistent IOB fields", stream->_ptr - stream->_base >= 0)
f:\dd\vctools\crt_bld\self_x86\crt\src\_flsbuf.c
str != NULL
("'n' format specifier disabled", 0)
_woutput_l
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
(stream != NULL)
((state == ST_NORMAL) || (state == ST_TYPE))
("Incorrect format specifier", 0)
_woutput_s_l
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\eh\typname.cpp
pNode->next != NULL
strcpy_s(*env, cchars, p)
_setenvp
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), rterrs[tblindx].rterrtxt)
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "\n\n")
strncpy_s(pch, progname_size - (pch - progname), "...", 3)
strcpy_s(progname, progname_size, "<program name unknown>")
strcpy_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "Runtime Error!\n\nProgram: ")
_NMSG_WRITE
f:\dd\vctools\crt_bld\self_x86\crt\src\crt0msg.c
strcpy_s(szOutMessage, 4096, "_CrtDbgReport: String too long or IO Error")
strcpy_s(szExeName, 260, "<program name unknown>")
__crtMessageWindowA
_expand_base
f:\dd\vctools\crt_bld\self_x86\crt\src\expand.c
pBlock != NULL
kernel32.dll
f:\dd\vctools\crt_bld\self_x86\crt\src\isctype.c
(unsigned)(c + 1) <= 256
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrptt.c
_CrtDbgReport: String too long or Invalid characters in String
wcscpy_s(szOutMessage2, 4096, L"_CrtDbgReport: String too long or Invalid characters in String")
e = mbstowcs_s(&ret, szOutMessage2, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage, 4096, szLineMessage)
strcat_s(szLineMessage, 4096, "\n")
strcat_s(szLineMessage, 4096, "\r")
strcat_s(szLineMessage, 4096, szUserMessage)
strcpy_s(szLineMessage, 4096, szFormat ? "Assertion failed: " : "Assertion failed!")
strcpy_s(szUserMessage, 4096, "_CrtDbgReport: String too long or IO Error")
_itoa_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportA
wcstombs_s(&ret, szaOutMessage, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage2, 4096, "_CrtDbgReport: String too long or Invalid characters in String")
wcstombs_s(((void *)0), szOutMessage2, 4096, szOutMessage, ((size_t)-1))
wcscpy_s(szOutMessage, 4096, szLineMessage)
%s(%d) : %s
wcscat_s(szLineMessage, 4096, L"\n")
wcscat_s(szLineMessage, 4096, L"\r")
wcscat_s(szLineMessage, 4096, szUserMessage)
wcscpy_s(szLineMessage, 4096, szFormat ? L"Assertion failed: " : L"Assertion failed!")
Assertion failed!
Assertion failed:
wcscpy_s(szUserMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
, Line
<file unknown>
Second Chance Assertion Failed: File
_itow_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportW
f:\dd\vctools\crt_bld\self_x86\crt\src\winsig.c
("Invalid signal or error", 0)
WUSER32.DLL
sizeInBytes >= count
src != NULL
memcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\memcpy_s.c
dst != NULL
wcscpy_s
((_Dst)) != NULL && ((_SizeInWords)) > 0
f:\dd\vctools\crt_bld\self_x86\crt\src\malloc.h
("Corrupted pointer passed to _freea", 0)
((((( H
h(((( H
H
nstrncpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcsncpy_s.inl
(L"String is not null terminated" && 0)
String is not null terminated
strcat_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscat_s.inl
("Invalid file descriptor. File possibly closed by a different thread",0)
(_osfile(fh) & FOPEN)
_lseeki64
f:\dd\vctools\crt_bld\self_x86\crt\src\lseeki64.c
(fh >= 0 && (unsigned)fh < (unsigned)_nhandle)
_write
f:\dd\vctools\crt_bld\self_x86\crt\src\write.c
isleadbyte(_dbcsBuffer(fh))
((cnt & 1) == 0)
_write_nolock
(buf != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
_isatty
f:\dd\vctools\crt_bld\self_x86\crt\src\isatty.c
_fileno
f:\dd\vctools\crt_bld\self_x86\crt\src\fileno.c
(null)
(ch != _T('\0'))
( (_Stream->_flag & _IOSTRG) || ( fn = _fileno(_Stream), ( (_textmode_safe(fn) == __IOINFO_TM_ANSI) && !_tm_unicode_safe(fn))))
f:\dd\vctools\crt_bld\self_x86\crt\src\mbtowc.c
_loc_update.GetLocaleT()->locinfo->mb_cur_max == 1 || _loc_update.GetLocaleT()->locinfo->mb_cur_max == 2
(str != NULL)
_output_s_l
A_set_error_mode
f:\dd\vctools\crt_bld\self_x86\crt\src\errmode.c
("Invalid error_mode", 0)
f:\dd\vctools\crt_bld\self_x86\crt\src\vsprintf.c
_vsnprintf_helper
string != NULL && sizeInBytes > 0
_vsprintf_s_l
_vsnprintf_s_l
D_mbstowcs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\mbstowcs.c
s != NULL
retsize <= sizeInWords
bufferSize <= INT_MAX
_mbstowcs_s_l
(pwcs == NULL && sizeInWords == 0) || (pwcs != NULL && sizeInWords > 0)
length < sizeInTChars
2 <= radix && radix <= 36
sizeInTChars > (size_t)(is_neg ? 2 : 1)
sizeInTChars > 0
xtoa_s
f:\dd\vctools\crt_bld\self_x86\crt\src\xtoa.c
buf != NULL
_wcstombs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\wcstombs.c
pwcs != NULL
sizeInBytes > retsize
_wcstombs_s_l
(dst != NULL && sizeInBytes > 0) || (dst == NULL && sizeInBytes == 0)
wcscat_s
xtow_s
_get_osfhandle
f:\dd\vctools\crt_bld\self_x86\crt\src\osfinfo.c
Bfclose
f:\dd\vctools\crt_bld\self_x86\crt\src\fclose.c
_fclose_nolock
(_osfile(filedes) & FOPEN)
_commit
f:\dd\vctools\crt_bld\self_x86\crt\src\commit.c
(filedes >= 0 && (unsigned)filedes < (unsigned)_nhandle)
_close
f:\dd\vctools\crt_bld\self_x86\crt\src\close.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_freebuf.c
stream != NULL
mixecokovimevamemizosere
zepifurahayowenacicosar
mesoyigezusivi
sokozomujaz
yicasoxab
tovewotuzowikofenibivudih
sasozanuyeyujoraposokex
lebenefeyehilupexu
sefirohunisajuzavujitamapu
tavebohuru
jsborikil
popobinezoraf
kanumel
xedebahela
wenapodumifebam
gegijewahiloxota
xepepokabudakabuninifatis
FIDUSANEHODEZAY
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
045816E1
Versus
70.3.40.83
Version
3.85.36.51
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetect.malware2
Lionic Trojan.Win32.Injuke.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKDZ.77235
FireEye Generic.mg.e89e203d78f37985
CAT-QuickHeal Clean
McAfee Packed-GDT!E89E203D78F3
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Riskware ( 0040eff71 )
BitDefender Trojan.GenericKDZ.77235
K7GW Riskware ( 0040eff71 )
Cybereason malicious.c7d098
Baidu Clean
Cyren W32/Kryptik.EZJ.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HMEC
APEX Malicious
Paloalto generic.ml
ClamAV Win.Malware.Generic-9887080-0
Kaspersky HEUR:Trojan.Win32.Chapak.pef
Alibaba Trojan:Win32/Injuke.8ce50703
NANO-Antivirus Clean
ViRobot Trojan.Win32.Z.Win.361984
Rising Malware.Obscure/Heur!1.A89F (CLASSIC)
Ad-Aware Trojan.GenericKDZ.77235
Sophos Mal/Generic-R + Troj/Krypt-AW
Comodo Clean
F-Secure Clean
DrWeb Trojan.DownLoader41.16694
Zillya Clean
TrendMicro Ransom_StopCrypt.R002C0DHL21
McAfee-GW-Edition BehavesLike.Win32.Emotet.fc
CMC Clean
Emsisoft Trojan.Crypt (A)
Ikarus Trojan.Win32.Crypt
GData Win32.Trojan.BSE.147QAG0
Jiangmin Clean
Webroot Clean
Avira TR/AD.RedLineSteal.sbcew
MAX malware (ai score=87)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Ransom:Win32/StopCrypt.MPK!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Ransomware/Win.StopCrypt.R438044
Acronis suspicious
BitDefenderTheta Gen:NN.ZexaF.34110.wqW@ae7avvmK
ALYac Trojan.GenericKDZ.77235
TACHYON Clean
VBA32 Trojan.Azorult.a
Malwarebytes Trojan.MalPack.GS
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall Ransom_StopCrypt.R002C0DHL21
Tencent Win32.Trojan.Injuke.Also
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.74209402.susgen
Fortinet W32/Kryptik.HMEJ!tr
AVG Win32:DropperX-gen [Drp]
Avast Win32:DropperX-gen [Drp]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.