__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlRetrieveNtUserPfn+0x2ea RtlOpenCurrentUser-0x2c8 ntdll+0x5ada7 @ 0x773fada7
RtlRetrieveNtUserPfn+0x4bb RtlOpenCurrentUser-0xf7 ntdll+0x5af78 @ 0x773faf78
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633016
registers.edi:
1633104
registers.eax:
23117
registers.ebp:
1633076
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633140
registers.edi:
1633236
registers.eax:
23117
registers.ebp:
1633200
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000662016
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageNtHeader+0x1b RtlDeleteCriticalSection-0x1476 ntdll+0x3317f @ 0x773d317f
RtlDosPathNameToNtPathName_U_WithStatus+0x33e LdrAccessResource-0x572 ntdll+0x4199e @ 0x773e199e
RtlDosPathNameToNtPathName_U_WithStatus+0x2de LdrAccessResource-0x5d2 ntdll+0x4193e @ 0x773e193e
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1633032
registers.edi:
1633120
registers.eax:
23117
registers.ebp:
1633092
registers.edx:
0
registers.ebx:
0
registers.esi:
33882112
registers.ecx:
1633024
1
0
0
__exception__
Sept. 24, 2021, 5:04 p.m.
stacktrace:
RtlImageDirectoryEntryToData+0x5c RtlAddRefActivationContext-0x80 ntdll+0x2f5a2 @ 0x773cf5a2
RtlImageDirectoryEntryToData+0x1a RtlAddRefActivationContext-0xc2 ntdll+0x2f560 @ 0x773cf560
RtlDosPathNameToNtPathName_U_WithStatus+0x10e LdrAccessResource-0x7a2 ntdll+0x4176e @ 0x773e176e
RtlRetrieveNtUserPfn+0x464 RtlOpenCurrentUser-0x14e ntdll+0x5af21 @ 0x773faf21
RtlDosPathNameToNtPathName_U_WithStatus+0x26e LdrAccessResource-0x642 ntdll+0x418ce @ 0x773e18ce
RtlDosPathNameToNtPathName_U_WithStatus+0xee LdrAccessResource-0x7c2 ntdll+0x4174e @ 0x773e174e
RtlLoadString+0x9c TpSetTimer-0x5bd ntdll+0x43e5f @ 0x773e3e5f
LoadStringBaseExW+0x51 LoadStringA-0x91 kernelbase+0x13b2a @ 0x76a83b2a
LoadStringA+0x1d RegisterClassExA-0x5a user32+0x1db3e @ 0x755bdb3e
New_user32_LoadStringA@16+0x91 New_user32_LoadStringW@16-0x8b @ 0x72bf7322
0x20560e3
0x2054117
0x2054204
escrow+0x52fd8 @ 0x452fd8
escrow+0x549f9 @ 0x4549f9
escrow+0x4a2b @ 0x404a2b
escrow+0x4a93 @ 0x404a93
BaseThreadInitThunk+0x12 VerifyConsoleIoHandle-0xb3 kernel32+0x133ca @ 0x757333ca
RtlInitializeExceptionChain+0x63 RtlAllocateActivationContextStack-0xa1 ntdll+0x39ed2 @ 0x773d9ed2
RtlInitializeExceptionChain+0x36 RtlAllocateActivationContextStack-0xce ntdll+0x39ea5 @ 0x773d9ea5
exception.instruction_r:
66 39 06 0f 85 7d c8 00 00 8b 46 3c 89 45 dc 3a
exception.symbol:
RtlImageNtHeaderEx+0x5a RtlImageDirectoryEntryToData-0x57 ntdll+0x2f4ef
exception.instruction:
cmp word ptr [esi], ax
exception.module:
ntdll.dll
exception.exception_code:
0xc0000005
exception.offset:
193775
exception.address:
0x773cf4ef
registers.esp:
1632884
registers.edi:
1632980
registers.eax:
23117
registers.ebp:
1632944
registers.edx:
0
registers.ebx:
33882112
registers.esi:
33882112
registers.ecx:
2000558592
1
0
0