Static | ZeroBOX

PE Compile Time

2020-06-26 03:27:04

PDB Path

C:\zipu\miyizevojegib28\vixaxufuyolige_jatami\yajihasutas.pdb

PE Imphash

1bd6d269463cc591268b8d14694f5ae5

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0001ba50 0x0001bc00 6.28623010521
.rdata 0x0001d000 0x000087b8 0x00008800 4.78599004572
.data 0x00026000 0x000317bc 0x00023800 7.91810622384
.rsrc 0x00058000 0x00002890 0x00002a00 6.25306614987
.reloc 0x0005b000 0x00003738 0x00003800 3.84440610923

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x00058130 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US dBase III DBT, version number 0, next free block index 40
RT_ACCELERATOR 0x0005a6f0 0x00000078 LANG_SERBIAN SUBLANG_ARABIC_MOROCCO data
RT_GROUP_ICON 0x0005a6d8 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x0005a768 0x00000124 LANG_SERBIAN SUBLANG_ARABIC_MOROCCO data

Imports

Library KERNEL32.dll:
0x41d000 GetCommandLineW
0x41d004 GetThreadContext
0x41d008 UnregisterWait
0x41d014 CopyFileExW
0x41d018 CallNamedPipeA
0x41d01c HeapAlloc
0x41d020 SetWaitableTimer
0x41d02c GlobalLock
0x41d030 GetProfileStringW
0x41d038 CreateNamedPipeW
0x41d03c LocalFlags
0x41d040 SetCommState
0x41d048 GetSystemTimes
0x41d04c ActivateActCtx
0x41d050 GlobalAlloc
0x41d058 GetSystemDirectoryW
0x41d060 LoadLibraryW
0x41d064 TerminateThread
0x41d06c VerifyVersionInfoA
0x41d070 IsDBCSLeadByte
0x41d078 lstrlenW
0x41d07c LCMapStringA
0x41d080 InterlockedExchange
0x41d084 GetStartupInfoA
0x41d088 SetThreadLocale
0x41d08c GetCPInfoExW
0x41d090 GetLastError
0x41d094 SetLastError
0x41d098 GetProcAddress
0x41d09c SetStdHandle
0x41d0a4 LoadLibraryA
0x41d0ac FindAtomA
0x41d0b0 GetModuleFileNameA
0x41d0b4 GetThreadPriority
0x41d0bc GetModuleHandleA
0x41d0c4 HeapSetInformation
0x41d0cc FindNextFileW
0x41d0d0 WriteProfileStringW
0x41d0d8 GetCurrentThreadId
0x41d0dc TlsAlloc
0x41d0e0 LocalSize
0x41d0e8 GetSystemTime
0x41d0ec GetProfileSectionW
0x41d0f0 GetStartupInfoW
0x41d0f4 HeapValidate
0x41d0f8 IsBadReadPtr
0x41d0fc RaiseException
0x41d104 GetFileType
0x41d108 WriteFile
0x41d10c WideCharToMultiByte
0x41d110 GetConsoleCP
0x41d114 GetConsoleMode
0x41d118 GetModuleHandleW
0x41d11c Sleep
0x41d120 ExitProcess
0x41d124 TlsGetValue
0x41d128 TlsSetValue
0x41d12c TlsFree
0x41d130 TerminateProcess
0x41d134 GetCurrentProcess
0x41d140 IsDebuggerPresent
0x41d144 GetModuleFileNameW
0x41d148 RtlUnwind
0x41d14c GetACP
0x41d150 GetOEMCP
0x41d154 GetCPInfo
0x41d158 IsValidCodePage
0x41d164 GetTickCount
0x41d168 GetCurrentProcessId
0x41d174 SetHandleCount
0x41d178 GetStdHandle
0x41d17c HeapDestroy
0x41d180 HeapCreate
0x41d184 HeapFree
0x41d188 VirtualFree
0x41d18c HeapSize
0x41d190 HeapReAlloc
0x41d194 VirtualAlloc
0x41d19c WriteConsoleA
0x41d1a0 GetConsoleOutputCP
0x41d1a4 WriteConsoleW
0x41d1a8 MultiByteToWideChar
0x41d1ac SetFilePointer
0x41d1b0 GetStringTypeA
0x41d1b4 GetStringTypeW
0x41d1b8 GetLocaleInfoA
0x41d1bc DebugBreak
0x41d1c0 OutputDebugStringA
0x41d1c4 OutputDebugStringW
0x41d1c8 LCMapStringW
0x41d1cc CreateFileA
0x41d1d0 CloseHandle
0x41d1d4 FlushFileBuffers

!This program cannot be run in DOS mode.
`.rdata
@.data
@.reloc
t h,!B
URPQQh\
PPPPPPPP
PPPPPPPP
j7hH B
j7hH B
j=hH B
j=hH B
j>hH B
j>hH B
}'h@lB
y!h`)B
u!h`.B
u!h`.B
;t$,v-
UQPXY]Y[
jfhH3B
jfhH3B
jghH3B
jghH3B
jihH3B
jihH3B
jjhH3B
jjhH3B
u!h`2B
u!h`4B
u!hX6B
u!hh-B
u!h`.B
jfhH3B
jfhH3B
jghH3B
jghH3B
jihH3B
jihH3B
jjhH3B
jjhH3B
u!h`2B
j.h08B
jJhp9B
jJhp9B
j]hp9B
j]hp9B
j{hp9B
j{hp9B
u!hx+B
u!h`:B
u!hT+B
u!h`:B
y!h`)B
j0h(>B
bad allocation
Unknown exception
f:\dd\vctools\crt_bld\self_x86\crt\src\onexit.c
Client
Ignore
Normal
Error: memory allocation: bad memory block type.
Invalid allocation size: %Iu bytes.
Client hook allocation failure.
Client hook allocation failure at file %hs line %d.
Error: possible heap corruption at or near 0x%p
The Block at 0x%p was allocated by aligned routines, use _aligned_realloc()
Error: memory allocation: bad memory block type.
Memory allocated at %hs(%d).
Invalid allocation size: %Iu bytes.
Memory allocated at %hs(%d).
Client hook re-allocation failure.
Client hook re-allocation failure at file %hs line %d.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
Memory allocated at %hs(%d).
Client hook free failure.
The Block at 0x%p was allocated by aligned routines, use _aligned_free()
%hs located at 0x%p is %Iu bytes long.
%hs located at 0x%p is %Iu bytes long.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
Memory allocated at %hs(%d).
DAMAGED
_heapchk fails with unknown return value!
_heapchk fails with _HEAPBADPTR.
_heapchk fails with _HEAPBADEND.
_heapchk fails with _HEAPBADNODE.
_heapchk fails with _HEAPBADBEGIN.
Bad memory block found at 0x%p.
Bad memory block found at 0x%p.
Memory allocated at %hs(%d).
Object dump complete.
crt block at 0x%p, subtype %x, %Iu bytes long.
normal block at 0x%p, %Iu bytes long.
client block at 0x%p, subtype %x, %Iu bytes long.
{%ld}
%hs(%d) :
#File Error#(%d) :
Dumping objects ->
Data: <%s> %s
Detected memory leaks!
Illegal byte sequence
Directory not empty
Function not implemented
No locks available
Filename too long
Resource deadlock avoided
Result too large
Domain error
Broken pipe
Too many links
Read-only file system
Invalid seek
No space left on device
File too large
Inappropriate I/O control operation
Too many open files
Too many open files in system
Invalid argument
Is a directory
Not a directory
No such device
Improper link
File exists
Resource device
Unknown error
Bad address
Permission denied
Not enough space
Resource temporarily unavailable
No child processes
Bad file descriptor
Exec format error
Arg list too long
No such device or address
Input/output error
Interrupted function call
No such process
No such file or directory
Operation not permitted
No error
CorExitProcess
EncodePointer
DecodePointer
f:\dd\vctools\crt_bld\self_x86\crt\src\tidtable.c
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
f:\dd\vctools\crt_bld\self_x86\crt\src\mbctype.c
f:\dd\vctools\crt_bld\self_x86\crt\src\mlock.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdargv.c
f:\dd\vctools\crt_bld\self_x86\crt\src\w_env.c
f:\dd\vctools\crt_bld\self_x86\crt\src\ioinit.c
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library without using a manifest.
This is an unsupported way to load Visual C++ DLLs. You need to modify your application to build with a manifest.
For more information, see the "Visual C++ Libraries as Shared Side-by-Side Assemblies" topic in the product documentation.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
Assertion Failed
Warning
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
HeapQueryInformation
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
%s(%d) : %s
Assertion failed!
Assertion failed:
, Line
<file unknown>
Second Chance Assertion Failed: File
_CrtDbgReport: String too long or Invalid characters in String
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
bad exception
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetUserObjectInformationA
MessageBoxA
USER32.DLL
(null)
`h````
xpxxxx
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
CONOUT$
Unknown Runtime Check Error
Stack memory around _alloca was corrupted
A local variable was used before it was initialized
Stack memory was corrupted
A cast to a smaller data type has caused a loss of data. If this was intentional, you should mask the source of the cast with the appropriate bitmask. For example:
char c = (i & 0xFF);
Changing the code in this way will not affect the quality of the resulting optimized code.
The value of ESP was not properly saved across a function call. This is usually a result of calling a function declared with one calling convention with a function pointer declared with a different calling convention.
Stack around the variable '
' was corrupted.
The variable '
' is being used without being initialized.
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
f:\dd\vctools\crt_bld\self_x86\crt\src\convrtcp.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_file.c
`h`hhh
xppwpp
MSPDB80.DLL
Stack around _alloca corrupted
Local variable used before initialization
Stack memory corruption
Cast to smaller type causing loss of data
Stack pointer corruption
bad allocation
Siwenuy wukuyikig vagoyod
safogeneyubaxuvekirabagikidi
vajozuja
kernel32.dll
pidigubaxiyigesujusiduzobegocufaxapopokeliligidudifitazobuvetuxovosuwekapeputuvujacokuwiga
jetarecozuzusanufahoxuwayezuluyuros
metazuyipadekofijan
gutipalutagiwerihivunevohufituseni
xebumowavoyewapanedut
buvexosugesaregaju
lufuwacimajoceeufoharesexer
RSDS|3
C:\zipu\miyizevojegib28\vixaxufuyolige_jatami\yajihasutas.pdb
GetCommandLineW
GetThreadContext
UnregisterWait
DosDateTimeToFileTime
FindFirstChangeNotificationW
CopyFileExW
CallNamedPipeA
HeapAlloc
SetWaitableTimer
InterlockedIncrement
InterlockedDecrement
GlobalLock
GetProfileStringW
FreeEnvironmentStringsA
CreateNamedPipeW
LocalFlags
SetCommState
SetProcessPriorityBoost
GetSystemTimes
ActivateActCtx
GlobalAlloc
GetPrivateProfileIntA
GetSystemDirectoryW
GetVolumeInformationA
LoadLibraryW
TerminateThread
LeaveCriticalSection
VerifyVersionInfoA
IsDBCSLeadByte
GetCompressedFileSizeA
lstrlenW
LCMapStringA
InterlockedExchange
GetStartupInfoA
SetThreadLocale
GetCPInfoExW
GetLastError
SetLastError
GetProcAddress
SetStdHandle
DisableThreadLibraryCalls
LoadLibraryA
WritePrivateProfileStringA
FindAtomA
GetModuleFileNameA
GetThreadPriority
CreateIoCompletionPort
GetModuleHandleA
QueryMemoryResourceNotification
HeapSetInformation
FreeEnvironmentStringsW
FindNextFileW
WriteProfileStringW
GetCurrentDirectoryA
GetCurrentThreadId
TlsAlloc
LocalSize
EnumResourceLanguagesW
GetSystemTime
GetProfileSectionW
KERNEL32.dll
GetStartupInfoW
HeapValidate
IsBadReadPtr
RaiseException
EnterCriticalSection
GetFileType
WriteFile
WideCharToMultiByte
GetConsoleCP
GetConsoleMode
GetModuleHandleW
ExitProcess
TlsGetValue
TlsSetValue
TlsFree
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetModuleFileNameW
RtlUnwind
GetACP
GetOEMCP
GetCPInfo
IsValidCodePage
DeleteCriticalSection
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
HeapDestroy
HeapCreate
HeapFree
VirtualFree
HeapSize
HeapReAlloc
VirtualAlloc
InitializeCriticalSectionAndSpinCount
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
MultiByteToWideChar
SetFilePointer
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
DebugBreak
OutputDebugStringA
OutputDebugStringW
LCMapStringW
CreateFileA
CloseHandle
FlushFileBuffers
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
kF%Umy
yOIa%2
hBOIa%2
=s<v_}
~!pi=f>
PxM[]XJ/Hx7
kw7o&s
}?%ajG/{0
[/OE ;
@j2Ag+
t*W2).
aAzsD
Aw1,/~
%:pH*Z
oG+WV_
^RoP!'
: .hr
A%v%2$
D]KP.~
(IEB5`
o}yOsH
%Eb=W$
wL[EXD
]rHQDe
Z]#3 =J
HdLh'R7
<'Oavm
[dX\z)
3qz5tv
}^w-*G
qR'|fg
`S^ TU
LsHdf|~
P=`UrU*
i]b:{M
mtGq(hW
vBO}[kn}T
Wa{O5>
=yd,}+T
^|:B6Im
b;t'^r
11!m"#
2F"Csk
p?=RH>h>
6};wZ.
'>Z.{Bh
rrb#x\|
;X_$@~
WQ5Gj~3
u6w1P}cw
Jd5S4K
V&]L07
Eqot) s
yi"#MG
Z;~#Nv
U>i7>z-
Ku]td7N52P
_twR#$
shb3dg
2L<nBp{qy:e
Z'L^R<+
La"3A|
1/::_$$
S#RpIzK
D!@MiuxGmC
/_Y\VU
,-z*8n'e
T bYm`
>?qU.B
BH(JkPQ
#zoeX-
6Esvi8
6+!CK7
1Uwk#+
*2|T-X
DI>Gi
vOi$f
9FO}g]
0"YnBh
bgGMUv
i0FNJ5|[=
1wFY(S
)ttOH"
GJo"{T
,4-pL
jpo0D%
~1omGL$
vKN/T~
DirDli
M'<)|tb
H:^#[qY
TCYsHR?
@+KLpy
}W/]\)
e-94z_
?/74$rC
33l"[*
JP`ep`
9b(e""JD
T_/fFy
+vGsy9
3!awJr
E:.b9v
;<Rn{Q
U#`i>i
71&aI2
!5^2z'
9DFba
+\Yi9Ry
p`*X/?y
0r-NoO
J1`iZfab
j.Qk9
R\=DNhg'
lQXBD|]
o_wT[7
Fb37O
qr0+f=
i,.}jq:
SZ`8}L
n#$Lxs
S&_Zo{S
Bn:7Y@W
C=<?Y^
)`T4XG
IY5T`C
<+~Gh'
?o'&s]
R^dL8p
7#Wcks
I2c%mP
<2~y#zA
-VDy<IPu
wi.}4S
,U*]_H
J5zd*B
KdA7)D
F&#FA^
4^NJLk
[q!"O6-
%@lPoG
b-N:XB
N=5fr:
D(j[aP
F<w|[5
8WViFY
L?N7mC
2VGRPwKD
us`i7@
x?7*V\
>{B/@aX
U#S05O
}Ha+=<
=#q@_N0
~p_Wjh
cO@uA3
NSBU)
ICuAb8
y)nFXs
`uC{Ct
xb8_?h
@-?$!v
\:g[XL
P'%?Wmf
@x*TF&
t$!I!Q
3.6:#CTL
`mnHv6#
YG@W}i
QDYu1G
LcNX [
5.Z%w-j&
]DMv;>
#X(Z_x
/,58ws
H4|I;k{
[AoDy)&
Wt}O8+
`)sT>z
zX.xH%
nAb`Q8
\: qNk
'D]La)
X;1R#mP
=E3[#j
R]BQC;
@d9M\|}
i3wX|M
?=2>"q
*0?KSAp8
xZGZm!
DxhDV(
yX:=vN
!^$hIa
L~[CpH
e7#.P^
HcZ6?b
&u9\*1G
9YFnbe
q&\!qut
]!X*cRJ
#A-NAr
:=`@O`
,kzZS>U9
DlmWyRpnmK
Y0~x@,2
-vH)E]Y
9&?Z3v,
lc/}}1
TJ+O_?
naxv(f_Z
@XzLV.Z>3
|r}w=.
T=Ky6
/8F?IX
J\{*uSK
I/1iqPW
jk1UJCT
Vgq7ET&
_S;JM7~
eTK ;Iq
?!bc)
)cEk1
<8w2&sg
x`n"-P
Y@^.Bm
7g6jKq1?
%qM1[|
Lx[v>\
z9A~!l
1&p"vM
R'Qp91
B7 P!8
617:7d7i7n7i;z;
=8>=>O>f>
1C283=3O3
3494V4[4
6T6]6v6
7?7D7I7u7
9!919=9S9_9h9n9w9
>0>:>F>a>g>p>
>8?@?I?Y?e?{?
0"0R0^0
041:1r1x1
1,222k2w2
353?3K3f3
4/4U4a4
5X6]6o6
7.737P7U7r7w7
;';T;Y;^;k;
=.=3=8=^=
?/?[?`?
0*0U0w0
3L3Q3V3
324B4G4
4%5A5e5q5
576Z6f6
6*7/747W7x7}7
:4:=:r:w:|:
;4<=<r<w<|<
%0Y0c0
3$4.4X4r5
5T6^6w6
9!:*:T:Y:^:
<4<9<><~<
<(=9=}=
>&>P>U>Z>
4=4L4U4
5*5.545;5X5]5o5
7Y7_7m7w7
9!9(989N9X9
:(:>:H:
;;);.;3;=;B;G;Q;V;\;e;n;w;
<,<F<L<\<b<x<
=!=*=1=7=X=]=o=
888=8O8d8h8
:\;A<L<V<
< =`=p=u=z=
?.?>?J?v?
0I0N0S0
5$666A6Y6b6o6
3F3S3`3m3
4;5b5i5{5
6"7,7u7~7
9#90989G9\9h9t9
;1<;<B<
===C=T=
=!>0>C>s>}>
7H8M8S8d8j8
:!:&:+:5:a:q:v:{:
;&;C;H;M;W;b;};
?.?3?8?=?
&020Q0k0w0
111M1Y1i1u1
2A2F2K2P2w2
33E3N3x3}3
3T4[4j4
41595?5M5W5e5k5z5
989x9}9
:%:4:S:Z:i:
:!;(;2;};
1(131:1C1L1U1f1u1
2!2*2;2A2I2R2j2s2
3:3l3x3
3M7X7`7
7%8C8J8p8x899
66'6,60646]6
8=8D8H8L8P8T8X8\8`8
9(9-9?9f9
:#:-:6:A:V:`:{:
>*>0>P>h>m>
>3?8?=?f?~?
0&151h1
4484t6
6/767=7Z7w7
8F8K8P8
:F:i:y:
?4?S?r?
14191>1
243<3z4
7F8M8x8
=&=2=7=<=l=q=v=
4 4-42484E4J4P4
5D5P5\5a5f5
6"6'6,6
777<7A7{7
:9:>:C:
;';G;L;Q;
<*<0<E<O<p<u<
>%?*?/?S?\?
10:0d0i0n0
1-12171
2#2M2R2W2
9z9H<M<_<
8!8(8/868=8D8K8S8[8c8o8x8}8
?!?K?P?U?
0*0/090M0S0[0e0s0y0
111<1]1
3/4H4O4W4\4`4d4
4>5D5H5L5P5
6;6m6t6x6|6
;.;3;8;R<^<
=>=v=~=
4'40484?4E4N4W4^4r4
5!6;6D6
:&:P:U:Z:
3=3I3v3{3
6;8D9P9}9
96:B:o:t:y:
>A>j>s>
>!?(?U?~?
0*1/141
2B3N3{3
7=7F7p7u7z7
858:8?8~8
:V;h;q;};
<<R<n<
>9>B>l>q>v>
???D?I?
1E1J1O1
4 4b4n4
5 5$5(5,50545L5P5T5X5\5
8)9.939
9094989<9@9t9x9|9
1#1C1_1
5/5\5e5
5B6K6u6z6
6(7-7?7v7
8G8L8Q8
8H9M9_9
:2:J:S:
=#=)=0=D=N=k=v=|=
>)?@?M?
2 2k2{2
2:3@3H3O3T3Z3`3f3t3
4Z4l4t4z4
5'5-535Q5`5f5w5<6A6I6[6t6
7*707=7E7M7U7
8(8:8@8F8T8}8
9Q9a9f9l9x9}9
2h2l2p2X4\4
,1@1D1H1L1P1
7 7$7(7,7074787<7@7D7H7L7P7T7X7\7`7d7h7l7p7t7x7|7
8 8$8(8,8084888<8@8D8H8L8P8T8X8\8`8d8h8l8
P1T1X1\1`1d1
3`4d4t4x4
6$6(6D6H6P6T6p6
707P7p7
8 8,8H8h8
9,909P9p9
:,:0:P:p:|:
; ;(;,;D;H;d;h;
< <@<`<l<
2 2$2(2,2024282<2@2D2H2L2P2T2X2\2`2d2l2
3<3H3L3P3T3X3`3d3h3l3
:$:,:4:<:D:L:T:\:d:l:t:|:
; ;$;(;,;0;4;8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
<<<@<`<d<(=,=P=X=
jjjjjjjj
Ajjjjjjj
Ajjjjjj
cibase == 0 || (2 <= ibase && ibase <= 36)
strtoxl
f:\dd\vctools\crt_bld\self_x86\crt\src\strtol.c
nptr != NULL
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgdel.cpp
_BLOCK_TYPE_IS_VALID(pHead->nBlockUse)
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgheap.c
_CrtCheckMemory()
_calloc_dbg_impl
(_HEAP_MAXREQ / nNum) >= nSize
_pFirstBlock == pOldBlock
_pLastBlock == pOldBlock
fRealloc || (!fRealloc && pNewBlock == pOldBlock)
pOldBlock->nLine == IGNORE_LINE && pOldBlock->lRequest == IGNORE_REQ
_CrtIsValidHeapPointer(pUserData)
pUserData != NULL
_pFirstBlock == pHead
_pLastBlock == pHead
pHead->nBlockUse == nBlockUse
pHead->nLine == IGNORE_LINE && pHead->lRequest == IGNORE_REQ
_msize_dbg
_CrtSetDbgFlag
(fNewBits==_CRTDBG_REPORT_FLAG) || ((fNewBits & 0x0ffff & ~(_CRTDBG_ALLOC_MEM_DF | _CRTDBG_DELAY_FREE_MEM_DF | _CRTDBG_CHECK_ALWAYS_DF | _CRTDBG_CHECK_CRT_DF | _CRTDBG_LEAK_CHECK_DF) ) == 0)
_CrtMemCheckpoint
state != NULL
(*_errno())
_printMemBlockData
(_osfile(fh) & FOPEN)
_get_osfhandle
f:\dd\vctools\crt_bld\self_x86\crt\src\osfinfo.c
(fh >= 0 && (unsigned)fh < (unsigned)_nhandle)
("Invalid file descriptor. File possibly closed by a different thread",0)
_write
f:\dd\vctools\crt_bld\self_x86\crt\src\write.c
isleadbyte(_dbcsBuffer(fh))
((cnt & 1) == 0)
_write_nolock
(buf != NULL)
(L"Buffer is too small" && 0)
Buffer is too small
(((_Src))) != NULL
strcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscpy_s.inl
((_Dst)) != NULL && ((_SizeInBytes)) > 0
strtoxq
f:\dd\vctools\crt_bld\self_x86\crt\src\strtoq.c
mscoree.dll
KERNEL32.DLL
f:\dd\vctools\crt_bld\self_x86\crt\src\setlocal.c
((ptloci->lc_category[category].wlocale != NULL) && (ptloci->lc_category[category].wrefcount != NULL)) || ((ptloci->lc_category[category].wlocale == NULL) && (ptloci->lc_category[category].wrefcount == NULL))
f:\dd\vctools\crt_bld\self_x86\crt\src\isctype.c
(unsigned)(c + 1) <= 256
Assertion Failed
Warning
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrpt.c
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
wcscpy_s(szOutMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
memcpy_s(szShortProgName, sizeof(TCHAR) * (260 - (szShortProgName - szExeName)), dotdotdot, sizeof(TCHAR) * 3)
<program name unknown>
wcscpy_s(szExeName, 260, L"<program name unknown>")
__crtMessageWindowW
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\eh\typname.cpp
pNode->next != NULL
wcscpy_s(*env, cchars, p)
_wsetenvp
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), rterrs[tblindx].rterrtxt)
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "\n\n")
strncpy_s(pch, progname_size - (pch - progname), "...", 3)
strcpy_s(progname, progname_size, "<program name unknown>")
strcpy_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "Runtime Error!\n\nProgram: ")
_NMSG_WRITE
f:\dd\vctools\crt_bld\self_x86\crt\src\crt0msg.c
strcpy_s(szOutMessage, 4096, "_CrtDbgReport: String too long or IO Error")
strcpy_s(szExeName, 260, "<program name unknown>")
__crtMessageWindowA
_expand_base
f:\dd\vctools\crt_bld\self_x86\crt\src\expand.c
pBlock != NULL
kernel32.dll
(format != NULL)
(str != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\mbtowc.c
_loc_update.GetLocaleT()->locinfo->mb_cur_max == 1 || _loc_update.GetLocaleT()->locinfo->mb_cur_max == 2
_isatty
f:\dd\vctools\crt_bld\self_x86\crt\src\isatty.c
_lseeki64
f:\dd\vctools\crt_bld\self_x86\crt\src\lseeki64.c
f:\dd\vctools\crt_bld\self_x86\crt\src\winsig.c
("Invalid signal or error", 0)
nf:\dd\vctools\crt_bld\self_x86\crt\src\malloc.h
("Corrupted pointer passed to _freea", 0)
((((( H
h(((( H
H
strncpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcsncpy_s.inl
(L"String is not null terminated" && 0)
String is not null terminated
strcat_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscat_s.inl
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrptt.c
_CrtDbgReport: String too long or Invalid characters in String
wcscpy_s(szOutMessage2, 4096, L"_CrtDbgReport: String too long or Invalid characters in String")
e = mbstowcs_s(&ret, szOutMessage2, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage, 4096, szLineMessage)
strcat_s(szLineMessage, 4096, "\n")
strcat_s(szLineMessage, 4096, "\r")
strcat_s(szLineMessage, 4096, szUserMessage)
strcpy_s(szLineMessage, 4096, szFormat ? "Assertion failed: " : "Assertion failed!")
strcpy_s(szUserMessage, 4096, "_CrtDbgReport: String too long or IO Error")
_itoa_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportA
wcstombs_s(&ret, szaOutMessage, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage2, 4096, "_CrtDbgReport: String too long or Invalid characters in String")
wcstombs_s(((void *)0), szOutMessage2, 4096, szOutMessage, ((size_t)-1))
wcscpy_s(szOutMessage, 4096, szLineMessage)
%s(%d) : %s
wcscat_s(szLineMessage, 4096, L"\n")
wcscat_s(szLineMessage, 4096, L"\r")
wcscat_s(szLineMessage, 4096, szUserMessage)
wcscpy_s(szLineMessage, 4096, szFormat ? L"Assertion failed: " : L"Assertion failed!")
Assertion failed!
Assertion failed:
wcscpy_s(szUserMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
, Line
<file unknown>
Second Chance Assertion Failed: File
_itow_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportW
WUSER32.DLL
sizeInBytes >= count
src != NULL
memcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\memcpy_s.c
dst != NULL
wcscpy_s
((_Dst)) != NULL && ((_SizeInWords)) > 0
A_set_error_mode
f:\dd\vctools\crt_bld\self_x86\crt\src\errmode.c
("Invalid error_mode", 0)
("inconsistent IOB fields", stream->_ptr - stream->_base >= 0)
f:\dd\vctools\crt_bld\self_x86\crt\src\_flsbuf.c
str != NULL
(null)
("'n' format specifier disabled", 0)
(ch != _T('\0'))
( (_Stream->_flag & _IOSTRG) || ( fn = _fileno(_Stream), ( (_textmode_safe(fn) == __IOINFO_TM_ANSI) && !_tm_unicode_safe(fn))))
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
(stream != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\vsprintf.c
(count == 0) || (string != NULL)
_vsnprintf_helper
("Buffer too small", 0)
string != NULL && sizeInBytes > 0
_vsprintf_s_l
format != NULL
_vsnprintf_s_l
length < sizeInTChars
2 <= radix && radix <= 36
sizeInTChars > (size_t)(is_neg ? 2 : 1)
sizeInTChars > 0
xtoa_s
f:\dd\vctools\crt_bld\self_x86\crt\src\xtoa.c
buf != NULL
_mbstowcs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\mbstowcs.c
s != NULL
retsize <= sizeInWords
bufferSize <= INT_MAX
_mbstowcs_s_l
(pwcs == NULL && sizeInWords == 0) || (pwcs != NULL && sizeInWords > 0)
_wcstombs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\wcstombs.c
pwcs != NULL
sizeInBytes > retsize
_wcstombs_s_l
(dst != NULL && sizeInBytes > 0) || (dst == NULL && sizeInBytes == 0)
wcscat_s
_vswprintf_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\vswprint.c
string != NULL && sizeInWords > 0
_vsnwprintf_s_l
xtow_s
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
_fileno
f:\dd\vctools\crt_bld\self_x86\crt\src\fileno.c
sizeInBytes > 0
_wctomb_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\wctomb.c
sizeInBytes <= INT_MAX
((state == ST_NORMAL) || (state == ST_TYPE))
("Incorrect format specifier", 0)
_output_s_l
B_woutput_s_l
fclose
f:\dd\vctools\crt_bld\self_x86\crt\src\fclose.c
_fclose_nolock
(_osfile(filedes) & FOPEN)
_commit
f:\dd\vctools\crt_bld\self_x86\crt\src\commit.c
(filedes >= 0 && (unsigned)filedes < (unsigned)_nhandle)
_close
f:\dd\vctools\crt_bld\self_x86\crt\src\close.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_freebuf.c
stream != NULL
Yafonaw yejaruboxinuji woj zihube tuhohot
Hufugub liguced
zorulipuyayedejolezejobabacezizu
negupesijohoveborokovus
kekugesagicubigareyocor
riwucesomaverocanu
xotopifijubidofodira mevawep sofefuxoril honiregomobumutavonezogukimu varidecoleyifabidotexik
bifubofijatu bipolinagovuvuhizel
makulahezihamofahesofuyoz jikezoheza
punutobobibulidiburazayuzicu
kojoxulurovemosujizamocojuyi
jahosafiwac
ranuzokakepayig
bodubec
VS_VERSION_INFO
045816E5
Versus
15.3.40.83
Version
27.8.40.57
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetect.malware2
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Fragtor.22696
CMC Clean
CAT-QuickHeal Clean
McAfee GenericRXAA-AA!25B544886F92
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Gen:Variant.Fragtor.22696
K7GW Clean
Cybereason malicious.13ed73
BitDefenderTheta Gen:NN.ZexaF.34142.tuW@aufdDVkO
Cyren Clean
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HMNK
Baidu Clean
APEX Malicious
Paloalto Clean
ClamAV Clean
Kaspersky HEUR:Trojan.Win32.Injuke.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.D975 (CLASSIC)
Ad-Aware Gen:Variant.Fragtor.22696
Sophos Mal/Generic-S
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Generic.fc
FireEye Generic.mg.25b544886f92efc3
Emsisoft Gen:Variant.Fragtor.22696 (B)
Ikarus Trojan.Win32.Glupteba
Jiangmin Clean
eGambit Unsafe.AI_Score_98%
Avira Clean
MAX malware (ai score=88)
Antiy-AVL Clean
Kingsoft Clean
Microsoft PWS:MSIL/RedLine.GG!MTB
Gridinsoft Clean
Arcabit Trojan.Fragtor.D58A8
SUPERAntiSpyware Clean
ZoneAlarm Clean
GData Gen:Variant.Fragtor.22696
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win.MalPE.R442032
Acronis suspicious
VBA32 Malware-Cryptor.Azorult.gen
ALYac Clean
TACHYON Clean
Malwarebytes Trojan.MalPack
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Kryptik.HMNI!tr
Webroot Clean
AVG Win32:PWSX-gen [Trj]
Avast Win32:PWSX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (D)
No IRMA results available.