Static | ZeroBOX

PE Compile Time

2020-05-06 08:05:34

PDB Path

C:\semurifulej.pdb

PE Imphash

f43d32468f3d02d6bc45f98f703cafd2

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0001a3bb 0x0001a400 6.2568543919
.rdata 0x0001c000 0x000085b0 0x00008600 4.59196800523
.data 0x00025000 0x02795ac4 0x00050800 7.97856239583
.rsrc 0x027bb000 0x00003120 0x00003200 6.50837755751
.reloc 0x027bf000 0x00010980 0x00010a00 1.02688703814

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x027bdfe8 0x00000002 LANG_MONGOLIAN SUBLANG_DEFAULT data
PAMIFEGIHURULUFUKIYUVUWOGULOJOK 0x027bd860 0x000006f0 LANG_MONGOLIAN SUBLANG_DEFAULT ASCII text, with very long lines, with no line terminators
RT_ICON 0x027bb2a0 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US dBase III DBT, version number 0, next free block index 40
RT_ACCELERATOR 0x027bdf50 0x00000078 LANG_MONGOLIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x027bd848 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x027bdff0 0x00000130 LANG_MONGOLIAN SUBLANG_DEFAULT data
None 0x027bdfd8 0x0000000a LANG_MONGOLIAN SUBLANG_DEFAULT data
None 0x027bdfd8 0x0000000a LANG_MONGOLIAN SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x41c008 CopyFileExW
0x41c00c TlsGetValue
0x41c014 GetCommState
0x41c018 GetProfileStringW
0x41c01c UnlockFile
0x41c020 CallNamedPipeW
0x41c028 GetNumberFormatA
0x41c02c FindResourceExA
0x41c030 GlobalAlloc
0x41c03c HeapDestroy
0x41c040 CreateSemaphoreA
0x41c048 GetModuleFileNameW
0x41c050 GetSystemDirectoryA
0x41c054 CreateActCtxA
0x41c058 GetBinaryTypeW
0x41c05c lstrlenW
0x41c060 LCMapStringA
0x41c064 GetStartupInfoA
0x41c068 SetThreadLocale
0x41c06c GetStdHandle
0x41c070 GetThreadContext
0x41c078 GetLastError
0x41c07c GetProcAddress
0x41c080 CreateNamedPipeA
0x41c088 LoadLibraryA
0x41c08c OpenMutexA
0x41c098 FindAtomA
0x41c09c SetSystemTime
0x41c0a0 FindNextFileA
0x41c0a8 GetModuleHandleA
0x41c0b0 HeapSetInformation
0x41c0b4 WriteProfileStringW
0x41c0bc SetFileShortNameA
0x41c0c0 FindAtomW
0x41c0c4 UnregisterWaitEx
0x41c0c8 GetSystemTime
0x41c0cc DeleteFileA
0x41c0d8 GetCPInfoExW
0x41c0dc GetCommandLineW
0x41c0e0 WideCharToMultiByte
0x41c0e4 EncodePointer
0x41c0e8 DecodePointer
0x41c0ec GetStartupInfoW
0x41c0f0 TerminateProcess
0x41c0f4 GetCurrentProcess
0x41c100 IsDebuggerPresent
0x41c108 GetACP
0x41c10c GetOEMCP
0x41c110 GetCPInfo
0x41c114 IsValidCodePage
0x41c118 TlsAlloc
0x41c11c TlsSetValue
0x41c120 GetCurrentThreadId
0x41c124 TlsFree
0x41c128 GetModuleHandleW
0x41c12c SetLastError
0x41c130 HeapValidate
0x41c134 IsBadReadPtr
0x41c138 ExitProcess
0x41c140 SetHandleCount
0x41c148 GetFileType
0x41c154 GetTickCount
0x41c158 GetCurrentProcessId
0x41c168 HeapCreate
0x41c16c WriteFile
0x41c174 OutputDebugStringA
0x41c178 WriteConsoleW
0x41c17c OutputDebugStringW
0x41c180 LoadLibraryW
0x41c184 RtlUnwind
0x41c188 LCMapStringW
0x41c18c MultiByteToWideChar
0x41c190 GetStringTypeW
0x41c194 SetFilePointer
0x41c198 GetConsoleCP
0x41c19c GetConsoleMode
0x41c1a0 HeapAlloc
0x41c1a4 GetModuleFileNameA
0x41c1a8 HeapReAlloc
0x41c1ac HeapSize
0x41c1b4 HeapFree
0x41c1b8 SetStdHandle
0x41c1bc FlushFileBuffers
0x41c1c0 RaiseException
0x41c1c4 CreateFileW
0x41c1c8 CloseHandle
Library GDI32.dll:
0x41c000 GetCharWidthW

!This program cannot be run in DOS mode.
Rich;ds
`.rdata
@.data
@.reloc
t hD!B
u\j[hp
URPQQh`?A
jfh@B
jfh@B
jgh@B
jgh@B
jih@B
jih@B
jjh@B
jjh@B
u!h` B
jfh@B
jfh@B
jgh@B
jgh@B
jih@B
jih@B
jjh@B
jjh@B
;t$,v-
UQPXY]Y[
j,hx#B
j,hx#B
j-hx#B
j-hx#B
jEhx#B
PPPPPPPP
PPPPPPPP
j.h %B
j.h %B
j/h %B
j/h %B
j9h %B
f:\dd\vctools\crt_bld\self_x86\crt\src\onexit.c
f:\dd\vctools\crt_bld\self_x86\crt\src\mbctype.c
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
f:\dd\vctools\crt_bld\self_x86\crt\src\tidtable.c
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
(null)
`h````
xpxxxx
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
Client
Ignore
Normal
Error: memory allocation: bad memory block type.
Invalid allocation size: %Iu bytes.
Client hook allocation failure.
Client hook allocation failure at file %hs line %d.
Error: possible heap corruption at or near 0x%p
The Block at 0x%p was allocated by aligned routines, use _aligned_realloc()
Error: memory allocation: bad memory block type.
Memory allocated at %hs(%d).
Invalid allocation size: %Iu bytes.
Memory allocated at %hs(%d).
Client hook re-allocation failure.
Client hook re-allocation failure at file %hs line %d.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
Memory allocated at %hs(%d).
Client hook free failure.
The Block at 0x%p was allocated by aligned routines, use _aligned_free()
%hs located at 0x%p is %Iu bytes long.
%hs located at 0x%p is %Iu bytes long.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
Memory allocated at %hs(%d).
DAMAGED
_heapchk fails with unknown return value!
_heapchk fails with _HEAPBADPTR.
_heapchk fails with _HEAPBADEND.
_heapchk fails with _HEAPBADNODE.
_heapchk fails with _HEAPBADBEGIN.
Bad memory block found at 0x%p.
Bad memory block found at 0x%p.
Memory allocated at %hs(%d).
Object dump complete.
crt block at 0x%p, subtype %x, %Iu bytes long.
normal block at 0x%p, %Iu bytes long.
client block at 0x%p, subtype %x, %Iu bytes long.
{%ld}
%hs(%d) :
#File Error#(%d) :
Dumping objects ->
Data: <%s> %s
Detected memory leaks!
CorExitProcess
f:\dd\vctools\crt_bld\self_x86\crt\src\_file.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_sftbuf.c
f:\dd\vctools\crt_bld\self_x86\crt\src\ioinit.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdargv.c
f:\dd\vctools\crt_bld\self_x86\crt\src\w_env.c
f:\dd\vctools\crt_bld\self_x86\crt\src\mlock.c
%s(%d) : %s
Assertion failed!
Assertion failed:
_CrtDbgReport: String too long or IO Error
, Line
<file unknown>
Second Chance Assertion Failed: File
_CrtDbgReport: String too long or Invalid characters in String
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
`h`hhh
xppwpp
Assertion Failed
Warning
Microsoft Visual C++ Debug Library
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
<program name unknown>
bad exception
GetUserObjectInformationA
MessageBoxA
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
Unknown exception
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
nazirebecove
pucutezaxeguzedol belarahemu maxutemibiyagizesa yirevoteguxegevurisaseheda jaheli
jelecawureyojiwiz
cacopisocalelav lubofunikaremufunopi wecatanebuneboneporohuhag
kernel32.dll
beloludehuwovaficarivoti
yobufowayopujayerinugotelaxa
fejixujor
xizanilifelorizifadedozuyov ruwimepozowopocoxuc cejezovewevocelalixenihuvol
dehufozidizuledulutanen mabigumilujudonihinimuvuved canabi
vozibulojejuco
lizifesuhazosisigilapizokeyaki
gezaxodisatobo
nesapohofolutafilageceme
cusaxevilazux
yobuwexogu
cegivikatohunuyowas
jurayisotiharuyexarule
vikiwoyijacefabemufoxe
godunohetu
cajomizevudiyaxoxijumetoyuvavak
sivuzimoyuxajode
C:\semurifulej.pdb
GetCommandLineW
GetThreadContext
CopyFileExW
TlsGetValue
InterlockedIncrement
GetCommState
GetProfileStringW
UnlockFile
CallNamedPipeW
FreeEnvironmentStringsA
GetNumberFormatA
FindResourceExA
GlobalAlloc
GetPrivateProfileIntA
GetConsoleAliasExesLengthW
HeapDestroy
CreateSemaphoreA
EnumResourceLanguagesA
GetModuleFileNameW
GetCompressedFileSizeA
GetSystemDirectoryA
CreateActCtxA
GetBinaryTypeW
lstrlenW
LCMapStringA
GetStartupInfoA
SetThreadLocale
GetStdHandle
GetCPInfoExW
FreeLibraryAndExitThread
GetLastError
GetProcAddress
CreateNamedPipeA
EnterCriticalSection
LoadLibraryA
OpenMutexA
WritePrivateProfileStringA
SetThreadIdealProcessor
FindAtomA
SetSystemTime
FindNextFileA
CreateIoCompletionPort
GetModuleHandleA
FindFirstChangeNotificationA
HeapSetInformation
WriteProfileStringW
GetCurrentDirectoryA
SetFileShortNameA
FindAtomW
UnregisterWaitEx
GetSystemTime
DeleteFileA
GetVolumeInformationW
LocalFileTimeToFileTime
KERNEL32.dll
GetCharWidthW
GDI32.dll
WideCharToMultiByte
EncodePointer
DecodePointer
GetStartupInfoW
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
InterlockedDecrement
GetACP
GetOEMCP
GetCPInfo
IsValidCodePage
TlsAlloc
TlsSetValue
GetCurrentThreadId
TlsFree
GetModuleHandleW
SetLastError
HeapValidate
IsBadReadPtr
ExitProcess
LeaveCriticalSection
SetHandleCount
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
FreeEnvironmentStringsW
GetEnvironmentStringsW
HeapCreate
WriteFile
IsProcessorFeaturePresent
OutputDebugStringA
WriteConsoleW
OutputDebugStringW
LoadLibraryW
RtlUnwind
LCMapStringW
MultiByteToWideChar
GetStringTypeW
SetFilePointer
GetConsoleCP
GetConsoleMode
HeapAlloc
GetModuleFileNameA
HeapReAlloc
HeapSize
HeapQueryInformation
HeapFree
SetStdHandle
FlushFileBuffers
RaiseException
CreateFileW
CloseHandle
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
.?AVtype_info@@
/D)U?@
1tA6r$
n&Q0j@
/JYtH#D
kO>A5^
0sBdR>
$G!I!
NMER1\
j~X,#u
=k8EA<
)a:Zgg
C!BSD9
k/$bbX
Aa:jJ[
3.-2uK
1"}t@?
0Pm-71
U:I-<_*d
nVjTZ)!
':(H4-
f{RdZ+y
r|@Rt;
{\~=E'
isfla%4
;We]n
YobT)$
RN N|V>
NG-!&Cs
{@|U|Y
+fub+<
u{YqZ[
^%}j_/
/:,lz=7
*.uGR=
=fJ/d`
yiIfLC2
1J n,+/
;A_EaW
R|]./H
;{R%1x
VT&}{A
`?3#KK:
@,q^4GZ
,'pUG.1^
5Dg}hm
@#UK}T
\#.w#
!t@p]B
VMr?I
r_1F;B3!*
*L-RP8
fDzuzY
?`\&w+
lv!-Bg
ZVD8|^
%/P?b\0
A}I0&
u4W\\5c
]=gMWhD
DV*QD>
b\cqhmV
O!Xmxuf
T@1>x:
cOE5mB
S[EXp6(
( S#+C
`)'t"D
X=Wm[k
&K(^R_Z
09N#ey
rCN`XID
Ry|.p_Vcm
oPq^i
1kAvw>
<W{3=
.Yn{V%
:?)3$7
X4br^z
T*$wq@
lb|a{r
"7gYtc
A_M&@V:Z
^ap%{8k/oi
BNqKgE
}U6>*6w6L~
% pgkL
n>acK7
q,W{oC
yOr2~#hg
[l|Yp!
],]}SEJ]
@k1mSK}
;p+Z%zv'
$7lw<(,
*0Nbgm'
FR H/%c
\9xyA7@)
8NC?]+
#@Fd$H
LZa%f
0sku<A {02
%[Q, _n
J% pt`av
cpOdAG
K|k\&iA
]g0O>b
p,Z/`:>
wp,\TR
d`nl0Tg
2NF0(2
o+E[.-
ED@\/M
}1@%i
nZRtX+
5g`0\N#
V*c3I@
\W2:!
?y8e}?
!{shW}
f"3V@I
YDva9T
d47z0!
4+;>-K
[iq04A
bnIc(\
cw6>+}
,ng3dFF
n_)z;@7X
Eo01vdzW
@"[O9j
enf=1)
$%Yv|-
0/c3N4
=6zvRY
)0d#z,&fi
5x{0Oc%@
^{REV}
Gmsw}~
2KQXz8v
*]Bo/;
LEp>J":
O!7S*~
NG<e\N(
N6E$#c
ZOhFNF
`dmR]0D
/jr* [
CA3pQ"
bY;&k:
$L>-X]},j
,gJIm@
RmLRi6p
az7JF
u6?=Vk
dm'5T@
Fx!{S]
9=ocEp
rmHxXQ
i5IxfVg
n_W4$L
`->( A
oL vhT
qRFcy'
)2U. Yq
[KFH7;
xFv?=[
(t&O$r
Upy(V
cu\JzMb|F
Vt0AMI
[b~ShSg
uWhB{=
>3"3E[@$
c`]JV%
kfRvr0
{"s(C!5
Ps0Z2Q
F?scf\
F5v`%2
m WKTmdw
3VrWQ`
hlC~{;
hP-A'X
dZmeH) <
1Ll",/
iMbdZ$D8
D}5nIR
-650P]\
U!\/)k
~G'CH<
A |o{M
8qlg)+B
G"u#>G
rY.\1Rf
k#vK*7i3
QTC-Vi`1
K?LHob
Y\uf.Xj
8EA3V*
~j*wN,mv
ejfg8
\h9{zj
1E`iCI
beOI.Q:
y4X]Q|
'r,xVd[
/,D\L>
EEB~7p(H
LA@d_$
jJ@NkR
f17?8N
jvGnVC
DRMb:(
?SbeS(
BOyRYi
_D/n6})&
GJ!nSN.pP
H#utr0
vP1_?{
CYxB>=
`tlU6B
Amb88hO
bg493*k
O1'>~Q
bIs)i*
}b8<%oM
6T`74N
-;;;AJy
: F,L)
"^K/&=
p(}QG{Im9
-/5#|C
Lr^$=S
yK&Wo-
M&w7 S
tLb"d1]
=7-f=}
e0(<aK
+oDc7v
70AkJt<
hp@m?N
Z=WY@5
a:b$ks#
N|MMa>
D'b115
HiM0]N
9r7YCT3
B'M^*W4
8L&~/mQ/\_`
'ckaDO
m$&Zx0
ZBAAu
S~Nyyd
&LGV-O
{[&VhZ+
3elo4&
CU98ib
`:ZC#o
j"4KRg
e3O!"Axk~
_ru/4a
B$4"$
">a{pj
=ZHrq7
)eEiY$
Di.{>I
'.Mc&I
~IF'mp# #O
PmL;m
BR<TFT
/$(2na^!`
6<khWa
ya0}5
B&1qv{
ZmhUCIJ@y
r5N:4E
~@|p_xq
yO#0T.|
:_#%'D
5j.?@af
F6z,tG|
VA(4Zx
!"(("i
Q#q.<A
"1#Dt*
[#.@'J
iFrs.y
BK{R9W
x lhT%m
\CthgVp"
u'(Gj$
~t(xk-(
0< )IV
z2c#H72>Yz(z
[^1OO>
i_ )/f2g
(r1W9
(q(RO`
E!|E0X51>
&%l>jG
>oXZU
b}W\Ll
y*c{@S
Z02#?!
nXM|75
ofs+i
2;nu1Z}Le
^:s([7
_H[ooo
Oev|R?S`
fR0J^R
M&]\]v
&?Smg&
,mJ[x.{2
PZ?")g
BQO0v4
c&Q$3+
Yd5,q$
mji#}
M<*]/6
[mB]gz
qu~eSF
$s9{UC
e3c|]:H
V@C:TvK
}24;y6
]%'M&vR
>$t~-YWBi(
dze&c!
tae4gy
Xk,`YA
b% ccg
I_+5#$
"%|v*:
:uye+
CN(Kx'
k2USeS2
n:|*sj
DC`6O9]
4G-CF|
JguE|T
}%z3hU
VbmCS(
JF;C`kE
U*l2aY
o)0rVRI
3@%l7x
J'k$|fS
,^bf8
`@=q8S
q<q&u;7
kW|4?WG P
IMHGw^
n#utT
lCuUqXc
)<4F.>
#f_0a:
ynFxvz
X[Y0,+
0!OGx}
Z.BuLX3
p#FFhJi+\#9
[`8_}zU
vc3p<]
Z3YL_R
2!M`)YH
bk}^9oy
1?yz393>Bn
sm5f5;L>
~_i[Qy
g1z)+Em
\~he-/Z
L#E^}=
L`st;tiY
PUsEY
Er<vWw:
cs:z6w
Jh,R}U
m|?]:WnJ
z~!1&N
ifLq,\yA
8mw,Oz
HeSN\<
961jF6
&iu4E0b
H(</RN_
?^/,u(x
BN:yr%
Zj4'Alq
f$&SkA
9P2^%;
htP$f5
XPKyapH
k&R6'SA
SOV ;H
jf?5uR
[HRHLG
#KszEt?;
VnLNbL+WSn
_\5_fxsRI
a_z_EgWz
7F6'o\
PZIg8
ve'!9*
k2\\+V
.>+CWl
L>72"z6
yxzNHd<
i#T3/"g
[4XB .D
w#Ytnu
QJ)#dxn
SVFt*Q
cx0{8_6
jXYk5=
:W6l$hBjU
ijt.,h
7X3s"xk
+A@qj
tf,'_k<
UGwa7Q;
KDz,f&
_7E{}1Yb
[i8KiK)
C| Jz
}y}Moo
JYGib"G
w&M.o\
~JU.dG
Ndt,&)
{0{_rbg\
|5~H9i
YL^:&9
^jEtto1>
rzO:mXtgB?
#l<#!B
og%$k
xV+u%Lm
Rtz'@a$
mXQ:a
<esva
?oP~St@
nq.sAkx
sTO,!Z
RcOR+H
Z_;ceAe
=.#5./*kC
.^"N!T
)H@YJ#%
,w]KEv
gPc5{|
ufL(_J
`jST>.
ml:YHp
AHP"Nl
Ku?"0@7.q^
.)A:.5
SuTSYH
B_kb1A
]dB>,e|
vX\|Wr
";,A8Z
z3[{0n
;6TsOHN
:,QVK09
tKYjYKt/
#'nS[7Vm
!=`T/Q
B)fSRRv
v<Gz/2
0NJ00P
:gx}!*
J./<J6
zkhN>w
v\~K")
UQQ:9Z6RwVz
_C[aS`
$rZdL'
j{{cxv
T4!#=M
+Z[0WO
9g6ylfa8
5WpzGe
=N+eFx
}4j6?
+hUxlks
Pssu,
cb5W17
+(wvv$
%3<!#}
JXqFW
>s8F,
Y[^:kYKPS
XQR! U
tI9QHZ
_>Zh35g
}XdE!!+
8U=Df
}roIMr
HRI)!`1
s([Q&S=
/^=G~_<
{)-N%
sV!|#0G
O4paZax
\x7b3,
2c+qYhW!z
KIq~:V_?
qM_jC@
=cE9<h
VD&o?Z
+#d~Gn
?Kgt`
9v8W2AF
z#:SJe
.%-Pq_
/!N#5K
oy#M,M3
+rJH9K2
g*W3tf
9S+\>4
Rn[}$c
g S#Lo
-|p31l
B6HZoc
dF+lI(
& r6` y
Pf7yxJ
gqi&/[
CE7g\C
MwmPBL
>lLL~)
l`"@SM
rNZ(wbc
Y"H(g<
}E|uEk
7wx+5q
EUP)-5
htX9Ga
jlBNW1
<T\[a}W
H,=*`
Ai;x.S
4ct5/+}
F S#A P
@#M 7(O
R7"J<!P
R7N @
.9(K:,D
;(P!6#P
9 Q!9-I
A'V!:,S
Bed yicexukuji budujugenolaxo habi. Tajayuladud hedova peyimibipef. Migu rov. Zefidodixo yototokeraluten zoy cipowerir. Rotiluci yehudoxabipibig hecesojuzap faxomos. Hute. Pimix ruyovucaso lilofohezomifib. Xudohazo vebak tukobirexu. Romove nijadokakowijoz wizokeyak guxayubusuwowub. Vizewalu jedonicawi xidibalevak pibi terisod. Zih zirud buzidowume niwafopinixofed. Dafowabah zamibafakoruja. Dolorugokuh padu dazegibifo. Pomivimejalowap fak kazesacofaxudex diduxugigomi fos. Vidupudotewiy fewuzewexuliy xeciluho yedufutoni zofoyonif. Hafoxuju petewinuda depurupatil puvenoduw. Hopahiku wafey cepevixep. Vope. Xujisu kebegavaba. Wosegagir. Rojuti yucimevug xeduxow bep kajapijus. Jaxuviziyurag hapiru. Wocaxuyamicote fonanarijep. Narajuz vuxozavocepor. Bojavededageji madan vuriya tiputaz. Lega musunex. Wac. Vorowon zanizek gubavageverapur liya. Buracu wusikocuhi bumizadon. Buzisamo bilazin. Kewifu wuyi rixobenale pulisiniwi gesuyojigebajel. Sefo. Jehop savapifacufatod cuzotagenan. Firosacahuna dito. Kipudarehuf. Wimow.
0#1,1V1[1`1
2I3Z3r3
4&5+505
:H:M:R:
;)<5<b<g<l<
,050_0d0i0
1C1L1v1{1
5=6D6\6Q7\7f7
;#;>;N;Z;
;%<+<Y<^<c<
>!>9>B>O>
7%7G:Z:|:
(0-0?0b0
1-141@1G1i1o1
22$2*2/252>2E2L2a2h2m2s2z2
3@3g3o3v3}3
55C5I5P5j5
:%;1;a;f;k;
<"=.=^=c=h=
6`<d<h<l<p<t<x<|<
= =$=(=
>B>G>L>
0 0%0b0n0
2+30353w3
4+50555r5z5
7/7c7k7t7
868;8i8
9@:I:b:
=#=,=O=i=
=B>_>d>
0&01090B0M0V0^0k0t0z0
2!2)2>2X2]2o2
3'303J3j3
3P4\4r4
7#7-797S7d7
8.83888N8W8`8p8|8
:r:w:|:
=(>,>0>4>H>M>_>s>
?+?A?G?T?
050A0n0s0x0
1X2]2o2
2!3Z3j3
4!434K4
4&5+5i5[6
7,7<7A7
8#8+8C8
9=9L9U9
:(:,:2:9:X:]:o:
:@;V;];e;l;
<I<O<]<g<
9d?h?l?p?t?x?|?
0 0$0(0,0|0
0!1&1+1m1y1
5I6P6-7
7y8)959e9j9o9K:
1\1`1d1h1l1p1t1x1|1
4!4*484B4P4V4
5-5>5X5a5k5
7=7G7f7
9D9I9N9w9
< =&=:=
>7>L>Q>Y>n>7?Q?{?
1<1A1F1
2#20282G2\2h2t2
5Q5[5b5
5>6]6c6t6
7A7P7c7
<$<+<><T<[<n<
<7=C=l=
?=?M?R?W?\?
0"0?0D0I0W0r0w0i1n1
2%232v2
3/3K3t3
6,696>6D6Q6V6\6
7"7'7Z7f7r7w7|7
83888=8B8
9"9M9R9W9
:):2:d:
<'<1<O<T<Y<
>?>E>`>m>r>x>
?B?G?L?Q?
0%0*0/040]0b0g0l0
1=1B1G1L1w1|1
2>2G2y2
4C4J4Y4y4~4
4:5A5K5]5g5
696B6K6S6h6m6
8<9@9D9H9L9P9
9(:4:::O:Y:s:x:}:
<%=*=/=S=\=
=1>:>d>i>n>
?-?2?7?
0#0M0R0W0
1(2G2f2
3 3?3^3}3
444;4C4H4L4P4y4
4*5054585<5
5'6Y6`6d6h6l6p6t6x6|6
697H7M7_7
8F8^8g8
;B;G;L;r;
=B=G=L=r=
>?@?W?c?
0)131X1
4(5B6W6
6$7.7G7
9A9F9K9m9
<*=6=f=k=p=
?*?Z?_?d?
0,0\0a0f0
1%2,2`3g3>4
6"6R6W6\677
=L>P>T>X>\>`>d>h>l>p>t>x>|>
414K4W4k4w4
5-595I5U5
5!6&6+606W6
7E7L7^7e7
8.959D9r9y9
9H<M<_<x<f=l=q=
=8>=>O>f>m>
4"4h5m5
6*656J6
788F8Y8s8
: :%:q:z:
::;C;m;r;w;
;!<J<S<}<
=5=^=g=
1B1k1t1
1L2R2X2^2d2j2q2x2
3!3'3?3F3
7"7'7h7p7
78$8)8
889@9}9
;F;O;y;~;
;(<Q<Z<
=6=_=h=
>&?/?Y?^?c?
0A0J0t0y0~0
1 2%2*2c2k2
2*333]3b3g314=4j4o4t4
4&5/5Y5^5c5
7_9d:p:
>.>3>8>]>f>
>"?+?U?Z?_?
0`4m4z7
888D8P8f8
9>9C9H9n9
:';2;H;V;r;y;
<3<8<=<G<N<S<X<b<i<n<s<}<
<?=J=Q=k=v=}=
> >%>2>~>
3<3E3o3t3y3"4+4U4Z4_4
55V5y5
5'6,616j6
9H:M:_:
<4<;<C<H<L<P<y<
<*=0=4=8=<=
='>Y>`>d>h>l>p>t>x>|>
>E?K?P?g?p?x?
(0-0?0
1*131h1m1r1
354>4f5t5}5
6!6*616:6A6I6P6Y6_6e6k6r6w6
<<-<\<
=#=8===D=w=
>!>)>:>D>M>S>c>m>u>
>0?5?:?
0 0&070<0A0G0M0
1)1<1A1F1K1Q1[1
1)212E2W2d2q2x2}2
2"32373=3B3G3L3Q3W3
24787<7
t6x6|6
4$4,444<4D4L4T4\4d4l4t4|4
D1X1\1`1l4p4t4x4|4P<T<X<\<`<d<h<l<p<t<x<|<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
l3p3x3|3
44484P4`4d4x4|4
585T5X5x5
6(646P6p6
707P7p7
8 8<8@8\8`8|8
9 9@9H9L9h9p9t9
7 7$7(7,7074787<7@7D7H7L7P7T7X7h7l7p7t7x7|7
;8=<=@=D=H=L=P=T=X=\=h=l=p=t=x=|=
Ajjjjjjj
jjjjjjjj
jjjjjjj
Ajjjjj
("Buffer too small", 0)
sizeInBytes > 0
_wctomb_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\wctomb.c
sizeInBytes <= INT_MAX
(string != NULL)
sprintf
f:\dd\vctools\crt_bld\self_x86\crt\src\sprintf.c
(format != NULL)
c(count == 0) || (string != NULL)
_vswprintf_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\vswprint.c
string != NULL && sizeInWords > 0
format != NULL
_vsnwprintf_s_l
( (_Stream->_flag & _IOSTRG) || ( fn = _fileno(_Stream), ( (_textmode_safe(fn) == __IOINFO_TM_ANSI) && !_tm_unicode_safe(fn))))
f:\dd\vctools\crt_bld\self_x86\crt\src\puts.c
Assertion Failed
Warning
Af:\dd\vctools\crt_bld\self_x86\crt\src\dbgrpt.c
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
wcscpy_s(szOutMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
(*_errno())
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
memcpy_s(szShortProgName, sizeof(TCHAR) * (260 - (szShortProgName - szExeName)), dotdotdot, sizeof(TCHAR) * 3)
<program name unknown>
wcscpy_s(szExeName, 260, L"<program name unknown>")
__crtMessageWindowW
f:\dd\vctools\crt_bld\self_x86\crt\src\localref.c
((ptloci->lc_category[category].wlocale != NULL) && (ptloci->lc_category[category].wrefcount != NULL)) || ((ptloci->lc_category[category].wlocale == NULL) && (ptloci->lc_category[category].wrefcount == NULL))
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
KERNEL32.DLL
("inconsistent IOB fields", stream->_ptr - stream->_base >= 0)
f:\dd\vctools\crt_bld\self_x86\crt\src\_flsbuf.c
str != NULL
(null)
("'n' format specifier disabled", 0)
(ch != _T('\0'))
_output_l
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
(stream != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\vsprintf.c
_vsnprintf_helper
string != NULL && sizeInBytes > 0
_vsprintf_s_l
_vsnprintf_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgheap.c
_CrtCheckMemory()
_pFirstBlock == pOldBlock
_pLastBlock == pOldBlock
fRealloc || (!fRealloc && pNewBlock == pOldBlock)
pOldBlock->nLine == IGNORE_LINE && pOldBlock->lRequest == IGNORE_REQ
_CrtIsValidHeapPointer(pUserData)
pUserData != NULL
_pFirstBlock == pHead
_pLastBlock == pHead
pHead->nBlockUse == nBlockUse
pHead->nLine == IGNORE_LINE && pHead->lRequest == IGNORE_REQ
_BLOCK_TYPE_IS_VALID(pHead->nBlockUse)
_msize_dbg
_CrtSetDbgFlag
(fNewBits==_CRTDBG_REPORT_FLAG) || ((fNewBits & 0x0ffff & ~(_CRTDBG_ALLOC_MEM_DF | _CRTDBG_DELAY_FREE_MEM_DF | _CRTDBG_CHECK_ALWAYS_DF | _CRTDBG_CHECK_CRT_DF | _CRTDBG_LEAK_CHECK_DF) ) == 0)
_CrtMemCheckpoint
state != NULL
_printMemBlockData
mscoree.dll
_woutput_l
((state == ST_NORMAL) || (state == ST_TYPE))
("Incorrect format specifier", 0)
_woutput_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\_sftbuf.c
flag == 0 || flag == 1
f:\dd\vctools\crt_bld\self_x86\crt\src\fwrite.c
("Inconsistent Stream Count. Flush between consecutive read and write", stream->_cnt >= 0)
num <= (SIZE_MAX / size)
(buffer != NULL)
_fwrite_nolock
c_fileno
f:\dd\vctools\crt_bld\self_x86\crt\src\fileno.c
wcscpy_s(*env, cchars, p)
_wsetenvp
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
AMicrosoft Visual C++ Runtime Library
wcscat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), error_text)
wcscat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), L"\n\n")
wcsncpy_s(pch, progname_size - (pch - progname), L"...", 3)
wcscpy_s(progname, progname_size, L"<program name unknown>")
Runtime Error!
Program:
wcscpy_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), L"Runtime Error!\n\nProgram: ")
_NMSG_WRITE
f:\dd\vctools\crt_bld\self_x86\crt\src\crt0msg.c
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrptt.c
_CrtDbgReport: String too long or Invalid characters in String
wcscpy_s(szOutMessage2, 4096, L"_CrtDbgReport: String too long or Invalid characters in String")
e = mbstowcs_s(&ret, szOutMessage2, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage, 4096, szLineMessage)
strcpy_s(szOutMessage, 4096, "_CrtDbgReport: String too long or IO Error")
strcat_s(szLineMessage, 4096, "\n")
strcat_s(szLineMessage, 4096, "\r")
strcat_s(szLineMessage, 4096, szUserMessage)
strcpy_s(szLineMessage, 4096, szFormat ? "Assertion failed: " : "Assertion failed!")
strcpy_s(szUserMessage, 4096, "_CrtDbgReport: String too long or IO Error")
_itoa_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportA
wcstombs_s(&ret, szaOutMessage, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage2, 4096, "_CrtDbgReport: String too long or Invalid characters in String")
wcstombs_s(((void *)0), szOutMessage2, 4096, szOutMessage, ((size_t)-1))
wcscpy_s(szOutMessage, 4096, szLineMessage)
%s(%d) : %s
wcscat_s(szLineMessage, 4096, L"\n")
wcscat_s(szLineMessage, 4096, L"\r")
wcscat_s(szLineMessage, 4096, szUserMessage)
wcscpy_s(szLineMessage, 4096, szFormat ? L"Assertion failed: " : L"Assertion failed!")
Assertion failed!
Assertion failed:
wcscpy_s(szUserMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
, Line
<file unknown>
Second Chance Assertion Failed: File
_itow_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportW
f:\dd\vctools\crt_bld\self_x86\crt\src\winsig.c
("Invalid signal or error", 0)
WUSER32.DLL
sizeInBytes >= count
src != NULL
memcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\memcpy_s.c
dst != NULL
(L"Buffer is too small" && 0)
Buffer is too small
(((_Src))) != NULL
wcscpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscpy_s.inl
((_Dst)) != NULL && ((_SizeInWords)) > 0
f:\dd\vctools\crt_bld\self_x86\crt\src\malloc.h
("Corrupted pointer passed to _freea", 0)
((((( H
h(((( H
H
("Invalid file descriptor. File possibly closed by a different thread",0)
(_osfile(fh) & FOPEN)
_lseeki64
f:\dd\vctools\crt_bld\self_x86\crt\src\lseeki64.c
(fh >= 0 && (unsigned)fh < (unsigned)_nhandle)
_write
f:\dd\vctools\crt_bld\self_x86\crt\src\write.c
isleadbyte(_dbcsBuffer(fh))
((cnt & 1) == 0)
_write_nolock
(buf != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
_isatty
f:\dd\vctools\crt_bld\self_x86\crt\src\isatty.c
_output_s_l
strcpy_s(szExeName, 260, "<program name unknown>")
__crtMessageWindowA
_expand_base
f:\dd\vctools\crt_bld\self_x86\crt\src\expand.c
pBlock != NULL
f:\dd\vctools\crt_bld\self_x86\crt\src\isctype.c
(unsigned)(c + 1) <= 256
f:\dd\vctools\crt_bld\self_x86\crt\src\mbtowc.c
_loc_update.GetLocaleT()->locinfo->mb_cur_max == 1 || _loc_update.GetLocaleT()->locinfo->mb_cur_max == 2
(str != NULL)
_set_error_mode
f:\dd\vctools\crt_bld\self_x86\crt\src\errmode.c
("Invalid error_mode", 0)
(L"String is not null terminated" && 0)
String is not null terminated
wcscat_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscat_s.inl
wcsncpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcsncpy_s.inl
G_mbstowcs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\mbstowcs.c
s != NULL
retsize <= sizeInWords
bufferSize <= INT_MAX
_mbstowcs_s_l
(pwcs == NULL && sizeInWords == 0) || (pwcs != NULL && sizeInWords > 0)
strcat_s
((_Dst)) != NULL && ((_SizeInBytes)) > 0
strcpy_s
length < sizeInTChars
2 <= radix && radix <= 36
sizeInTChars > (size_t)(is_neg ? 2 : 1)
sizeInTChars > 0
xtoa_s
f:\dd\vctools\crt_bld\self_x86\crt\src\xtoa.c
buf != NULL
_wcstombs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\wcstombs.c
pwcs != NULL
sizeInBytes > retsize
_wcstombs_s_l
(dst != NULL && sizeInBytes > 0) || (dst == NULL && sizeInBytes == 0)
xtow_s
A_get_osfhandle
f:\dd\vctools\crt_bld\self_x86\crt\src\osfinfo.c
fclose
f:\dd\vctools\crt_bld\self_x86\crt\src\fclose.c
_fclose_nolock
(_osfile(filedes) & FOPEN)
_commit
f:\dd\vctools\crt_bld\self_x86\crt\src\commit.c
(filedes >= 0 && (unsigned)filedes < (unsigned)_nhandle)
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgdel.cpp
CONOUT$
_close
f:\dd\vctools\crt_bld\self_x86\crt\src\close.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_freebuf.c
stream != NULL
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\eh\typname.cpp
pNode->_Next != NULL
wutasehuluredewivunit
mihekamutuvatikime
fatomifahegohofivonofijot
fiwolap
rinacorakocohamilozub ziyivusovujocatawu
todenorifibumusi
nimelemivorag yejicixumi petozahayamivarosire kapugenoxotef
wobilopeziwifutanunuvigiver
faviwiyagilukarem
svoyazi runiroboxorezetivedur nolokihodujiyopumuyicukevac kewivaguhozec
layasifayiwif
yobegukuhuwoka
PAMIFEGIHURULUFUKIYUVUWOGULOJOK
AFX_DIALOG_LAYOUT
VS_VERSION_INFO
055816E7
ProductVers
15.3.10.13
Version
23.8.20.17
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Ulise.303597
FireEye Generic.mg.576a11fa707efc78
CAT-QuickHeal Ransom.Stop.Z5
McAfee Packed-GDT!576A11FA707E
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Gen:Variant.Ulise.303597
K7GW Clean
CrowdStrike win/malicious_confidence_100% (D)
BitDefenderTheta Gen:NN.ZexaF.34170.HuW@aK1hFCjO
Cyren Clean
Symantec Packed.Generic.620
ESET-NOD32 Clean
Baidu Clean
APEX Malicious
Paloalto Clean
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
SUPERAntiSpyware Clean
Rising Trojan.Generic@ML.91 (RDML:z+fsfoMEPb8L5WF163iyoA)
Ad-Aware Gen:Variant.Ulise.303597
TACHYON Clean
Emsisoft Gen:Variant.Ulise.303597 (B)
Comodo Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.MultiPlug.hc
CMC Clean
Sophos ML/PE-A
Ikarus Clean
GData Gen:Variant.Ulise.303597
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
ViRobot Clean
ZoneAlarm Clean
Microsoft Ransom:Win32/StopCrypt.MIK!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
VBA32 Clean
ALYac Gen:Variant.Ulise.303597
MAX malware (ai score=83)
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Clean
Fortinet Clean
Cybereason malicious.d957fd
Avast Clean
No IRMA results available.