Static | ZeroBOX

PE Compile Time

2020-09-02 10:57:20

PDB Path

C:\ferahelosozeti juva.pdb

PE Imphash

0f7adf3ddfcd5cd172c9a2547afae4e3

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0004ac48 0x0004ae00 7.35446962325
.data 0x0004c000 0x02758304 0x00001600 3.21490444068
.rsrc 0x027a5000 0x00003908 0x00003a00 6.41546276015
.reloc 0x027a9000 0x00011b2c 0x00011c00 1.03489969047

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x027a7738 0x000010a8 LANG_SPANISH SUBLANG_SPANISH_PARAGUAY data
RT_ICON 0x027a7738 0x000010a8 LANG_SPANISH SUBLANG_SPANISH_PARAGUAY data
RT_ACCELERATOR 0x027a8808 0x00000060 LANG_DIVEHI SUBLANG_DEFAULT data
RT_ACCELERATOR 0x027a8808 0x00000060 LANG_DIVEHI SUBLANG_DEFAULT data
RT_GROUP_ICON 0x027a87e0 0x00000022 LANG_SPANISH SUBLANG_SPANISH_PARAGUAY data
None 0x027a88f8 0x0000000a LANG_DIVEHI SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x401008 GetCPInfo
0x40100c HeapAlloc
0x401014 CompareFileTime
0x401020 FindFirstFileExW
0x401024 LockFile
0x401028 BackupSeek
0x40102c GetModuleHandleW
0x401030 IsBadReadPtr
0x401034 CreateActCtxW
0x401038 GetDriveTypeA
0x40103c TlsSetValue
0x401040 ActivateActCtx
0x401044 GetConsoleMode
0x401048 CopyFileW
0x40104c VerifyVersionInfoA
0x401050 GetModuleFileNameW
0x401054 GetStartupInfoA
0x401058 GetLastError
0x40105c GetLongPathNameW
0x401060 SetLastError
0x401064 GetProcAddress
0x401070 OpenWaitableTimerA
0x401074 OpenWaitableTimerW
0x401078 LocalAlloc
0x40107c SetFileApisToANSI
0x401080 QueryDosDeviceW
0x401084 GlobalGetAtomNameW
0x401088 GetModuleHandleA
0x401094 CompareStringA
0x401098 GetFileTime
0x4010a4 SetFileShortNameA
0x4010a8 GetVersionExA
0x4010ac TlsAlloc
0x4010b8 GetProfileSectionW
0x4010bc DeleteFileA
0x4010c0 MoveFileA
0x4010c4 GetCommandLineA
0x4010c8 HeapSetInformation
0x4010cc GetStartupInfoW
0x4010d4 EncodePointer
0x4010d8 DecodePointer
0x4010dc HeapValidate
0x4010e8 GetTickCount
0x4010ec GetCurrentThreadId
0x4010f0 GetCurrentProcessId
0x4010fc ExitProcess
0x401100 GetModuleFileNameA
0x401104 WideCharToMultiByte
0x40110c SetHandleCount
0x401110 GetStdHandle
0x401118 GetFileType
0x401120 TlsGetValue
0x401124 TlsFree
0x401128 HeapCreate
0x40112c WriteFile
0x401130 TerminateProcess
0x401134 GetCurrentProcess
0x40113c IsDebuggerPresent
0x401140 RtlUnwind
0x401144 GetACP
0x401148 GetOEMCP
0x40114c IsValidCodePage
0x401150 RaiseException
0x40115c HeapReAlloc
0x401160 HeapSize
0x401168 HeapFree
0x40116c LoadLibraryW
0x401170 OutputDebugStringA
0x401174 WriteConsoleW
0x401178 OutputDebugStringW
0x40117c GetStringTypeW
0x401180 MultiByteToWideChar
0x401184 LCMapStringW
0x401188 SetFilePointer
0x40118c GetConsoleCP
0x401190 SetStdHandle
0x401194 CreateFileW
0x401198 CloseHandle
0x40119c FlushFileBuffers

!This program cannot be run in DOS mode.
`.data
@.reloc
?ZEM-'^
?{yK+;
?765@Z
?e')lW
UUUUUU
333333
?333333
?UUUUUU
?$rxxx
Client
Ignore
Normal
Error: memory allocation: bad memory block type.
Invalid allocation size: %Iu bytes.
Client hook allocation failure.
Client hook allocation failure at file %hs line %d.
Error: possible heap corruption at or near 0x%p
The Block at 0x%p was allocated by aligned routines, use _aligned_realloc()
Error: memory allocation: bad memory block type.
Memory allocated at %hs(%d).
Invalid allocation size: %Iu bytes.
Memory allocated at %hs(%d).
Client hook re-allocation failure.
Client hook re-allocation failure at file %hs line %d.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
Memory allocated at %hs(%d).
Client hook free failure.
The Block at 0x%p was allocated by aligned routines, use _aligned_free()
%hs located at 0x%p is %Iu bytes long.
%hs located at 0x%p is %Iu bytes long.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
Memory allocated at %hs(%d).
DAMAGED
_heapchk fails with unknown return value!
_heapchk fails with _HEAPBADPTR.
_heapchk fails with _HEAPBADEND.
_heapchk fails with _HEAPBADNODE.
_heapchk fails with _HEAPBADBEGIN.
Bad memory block found at 0x%p.
Bad memory block found at 0x%p.
Memory allocated at %hs(%d).
Object dump complete.
crt block at 0x%p, subtype %x, %Iu bytes long.
normal block at 0x%p, %Iu bytes long.
client block at 0x%p, subtype %x, %Iu bytes long.
{%ld}
%hs(%d) :
#File Error#(%d) :
Dumping objects ->
Data: <%s> %s
Detected memory leaks!
CorExitProcess
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdargv.c
f:\dd\vctools\crt_bld\self_x86\crt\src\a_env.c
f:\dd\vctools\crt_bld\self_x86\crt\src\ioinit.c
f:\dd\vctools\crt_bld\self_x86\crt\src\tidtable.c
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
f:\dd\vctools\crt_bld\self_x86\crt\src\mbctype.c
_nextafter
_hypot
f:\dd\vctools\crt_bld\self_x86\crt\src\mlock.c
Assertion Failed
Warning
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
<program name unknown>
f:\dd\vctools\crt_bld\self_x86\crt\src\onexit.c
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
%s(%d) : %s
Assertion failed!
Assertion failed:
, Line
<file unknown>
Second Chance Assertion Failed: File
_CrtDbgReport: String too long or Invalid characters in String
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
bad exception
GetUserObjectInformationA
MessageBoxA
(null)
`h````
xpxxxx
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
Unknown exception
1#QNAN
1#SNAN
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_file.c
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
>G\Q?*
yU]GplZ
]Tg@3<
uR0+(G
,3wJ+(G
<9)qK$3
ZQt?Rm
1kVZ%kA
Q><.sm
iZN>SL
leq8WH^pe
Jt`_'|
=1gSg@T
A?y#.I+
W<sC1^
-7PdT!
B!(4RN
|~>5Te
lVkUI
21BNqY
jPX I \k.
,dmM_*
BWaHUc
g+L Bug
9`ls,T
S_C2UY|
27MsAz
T5M}5$
4yj9T.
Ox.fCd
P[N!PsRR
,-w;'G!
(O:SE6
(J)5#W
f'U=8j\
x{(D'nD
C8+T(*
nAD1,T
aDR=V\w
Z)a|
GjB`Q&
C)DxBf
Fwt\uR
0%C2kt
d:ORb$;
f~AU:P
>H.16i
7T=EU4$
Anb?%(8
];L^iu
c*1u3cj
!yN_b)
|<=LNU_wE
R%-OLsg
.^F,};
.L]FpN
N)=L3Cq
&{[3S$@G
Ee^%cj
EAX#5a
v;~.f
Oh`AY)
MDd{\z
/u94 (
*D(+6S
`*F#&Mo~o>t
`3*=[{
_G{6+P|
w$AVZX
}YfC&3
[{}\Sl
]Y?(yV
3'gJJ2
$g:/+%
2(hp^G7
o~E*&L-
!![AC3
jQ"|$^
.W)k'El]
J`;nW4
oUNVb_H
8?V^Ps
9`}G)^
b4g )v
,Q@P./M
:gcGs|
Oh/hux
JBTUDq"
|4<ZMO
N;{y9N
a)A/8gL
'X9+yG
PV]X4im
sa>++lm
;eG*0DG}
-_wh#)8O-O
Np6ZBQ
'!9E7id
h*fHp9
x(L#H<
W?'S;Va
yX<=5I1zM.
c2q.qy
ijxQgt
OMkXg-
``#DPU
H(e;3Iw
O]Q<2]*
i{gM)j
-X,[=T
kY?{.h
MYe:fd
B@4CC\iue1
bc~9dm
c-q?gWp
u}=v<V'xTCZ+Le7C
xWXC'm*&N
{NRZat
sL7nXD?
QWTSn"
r=Zcm
m_vfy
:aA3f/
8Q->ykqFYq
2|%\<q
1Vs=F-
jX-Y27Zc#fFl
7`%$6I
_;Z=d`
'x|z:;D
_ wtg8+
q3xy9b8
igF&g
>q,&=&)JuI
mI7[}M
4jxL5!
nO?&$i
c#MRqo
#mI{ur"
s#f6RM
Hs44\>
pNY+hr
h&H=]n}
:m&A `T
;3L-J'
V2jB?A
8?N?Gw
R[Vi34
@AC~Rh
LrP,sr
Ji$:K.
o !22 #M
RT"S<i`1F
;AI*l@
=2/b!@
Nx9E%h&d
J-@9B
TAp\?$
K&'HQ]
cq[Q/W
_|6$Q<
5PC5?I
yw]7*?
7GK}_o
qH\`BE
zj"<).L
avMH7Wg
LXe]}"N
4J_~RK
C&0'fv
"c,)rC
:n9`e
.m(VK$p
EdnxR
s64]00
68h#[w!C
to)>KY
2~uo\x
ov@$QF
:Y]R&M
V5oLMR
:SgnZ_
h=j&@
R/]d}h
*4riw%
SnTDlc
=CS]C>w
7ghV6G
-_b1#;
Ya6z:&
T^S4c%q
dF+6Qr
hKqy+
]&eaT
|(!qE_
l.H:r&
ZF/3L<O
`IuR4O
8ao[(K8
|nWj>p0`
j=jFK:
BtWo3s([
@lTPb{
d.1));
J8duX`
2%\Z{bQ[.
zoyoloxivayezaguduhoginuwekugeta
henicidey
xugerater
nihupakobiticimuzuxabupoy
johabexagiyunudomesapobavucot
bayikoraropawedefofewexucum
gezenaxo
heyutahipi sanusuba zugapugamacatuzahofemoxel zugofiguwubafiladihupu
gakakitohoyonebobozi
kernel32.dll
fuhexu
dapuyanazuzihukimuribizuruvirawa
vocosacocovuzuviluhulojifa
C:\ferahelosozeti juva.pdb
u!h|.@
t h\-@
u!h|.@
u!h00@
u!h|.@
u!h00@
t!hX5@
t!hp2@
t!h42@
u!h|.@
u!h00@
t!hX5@
Rh(7@
PhD;@
th$<@
t!hPV@
u!hpZ@
jHh(_@
jHh(_@
u!h``@
URPQQh`
j9h0b@
j9h0b@
j7hxq@
j7hxq@
j=hxq@
j=hxq@
j>hxq@
j>hxq@
PPPPPPPP
PPPPPPPP
u!h`z@
j7h`|@
j7h`|@
j8h`|@
j8h`|@
j=h`|@
j=h`|@
j>h`|@
j>h`|@
j(h8}@
jdhX~@
;t$,v-
UQPXY]Y[
jdhX~@
FindFirstChangeNotificationW
GetConsoleAliasesLengthW
GetCPInfo
HeapAlloc
InterlockedIncrement
CompareFileTime
SetEnvironmentVariableW
SetHandleInformation
FindFirstFileExW
LockFile
BackupSeek
GetModuleHandleW
IsBadReadPtr
CreateActCtxW
GetDriveTypeA
TlsSetValue
ActivateActCtx
GetConsoleMode
CopyFileW
VerifyVersionInfoA
GetModuleFileNameW
GetStartupInfoA
GetLastError
GetLongPathNameW
SetLastError
GetProcAddress
FindVolumeMountPointClose
WriteProfileSectionA
OpenWaitableTimerA
OpenWaitableTimerW
LocalAlloc
SetFileApisToANSI
QueryDosDeviceW
GlobalGetAtomNameW
GetModuleHandleA
FreeEnvironmentStringsW
GetCurrentDirectoryA
CompareStringA
GetFileTime
GetConsoleCursorInfo
SetProcessShutdownParameters
SetFileShortNameA
GetVersionExA
TlsAlloc
GetWindowsDirectoryW
FileTimeToLocalFileTime
GetProfileSectionW
DeleteFileA
KERNEL32.dll
MoveFileA
GetCommandLineA
HeapSetInformation
GetStartupInfoW
IsProcessorFeaturePresent
EncodePointer
DecodePointer
HeapValidate
SetUnhandledExceptionFilter
QueryPerformanceCounter
GetTickCount
GetCurrentThreadId
GetCurrentProcessId
GetSystemTimeAsFileTime
InterlockedDecrement
ExitProcess
GetModuleFileNameA
WideCharToMultiByte
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
TlsGetValue
TlsFree
HeapCreate
WriteFile
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
IsDebuggerPresent
RtlUnwind
GetACP
GetOEMCP
IsValidCodePage
RaiseException
EnterCriticalSection
LeaveCriticalSection
HeapReAlloc
HeapSize
HeapQueryInformation
HeapFree
LoadLibraryW
OutputDebugStringA
WriteConsoleW
OutputDebugStringW
GetStringTypeW
MultiByteToWideChar
LCMapStringW
SetFilePointer
GetConsoleCP
SetStdHandle
CreateFileW
CloseHandle
FlushFileBuffers
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
.?AVtype_info@@
PSUB'1zp7
@N"=-I$
>*T$>"N#
B#N"C#N$
12!Z$F%W"A$`
88$[$?
9#["7 O
T%=$WA+M(
+@"^#?&^
,@'S$8
;+U%7'Q
7#T 7-P%D%[
aPe%mbiNSE``kVqOiVnKz
Hm]mPVC]V\LlS]MfPTDZWa`kJ
}I}}~H
6RWm*:"U C \
Vap}/<(P
Jlrw5?I#B
JOWm-<
:@ [$>![
Rjru8I$S
O]k9: T
Y]p<:&M
EaPiZTF]XQFcU
<H=L=P=T=X=
l7t7|7
8D<H<L<
l<p<t<
:$:(:,:0:4:8:<:@:D:H:L:P:T:X:\:`:d:h:l:p:t:x:|:
; ;$;(;,;0;4;8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
3\4`4p4t4x4
7N7Y7k7
889=9O9r9x9
=K=T=~=
2*2B2S2
3=4F4p4u4z4i8n8
9!9M9U9x9
9D:\:p:
;%;-;9;
<(<t=|=
0!0'0+01050
33a3h3
;H<L<P<T<X<\<`<d<h<l<p<t<x<|<
<0=4=8=<=@=D=H=L=P=T=X=\=n=
0$000F0R0[0`0i0u0~0
1/2:2C2K2T2\2b2h2p2v2|2
3X4]4o4O5X5a5q5}5
6&6+6e6
9#9(9.969<9a9}9
9 :*:6:R:p:z:
<6<Q<]<b<
=$=t=z=
=.>4>l>r>
?(?A?J?O?u?
070X0]0o0
121>1G1m1y1
3<3A3^3c3
3:4F4O4
9>9{9&:G:k:v:
;;;@;i;
>,?1?6?n?
181C1P1X1g1|1
2&23282S2`2e2s2{2
4-474E4J4Q4[4_4i4x4|4
8!:4:q:
<:<I<^<c<h<
==*=2=7=E=M=Z=f=
282Z2}2
7'7.7=7D7P7W7y7
8$8*8/848:8?8E8N8U8\8q8x8}8
89&9-9P9w9
;/;S;Y;`;z;
>#>m>.?6?N?o?
1B2^2i2
2]3b3g3n3
4I4W4d4
7h7m7r7y7
8&8@8L8`8l8
9"9.9>9J9
: :%:L:
=b>g>#?@?E?
22B2t2
4.4T4_4k4
5 525<5d5
626<6a6
94:;:d:h:l:p:t:(;W;|;
?$?@?\?
020N0j0
:=:B:G:l:x:
<<L<Q<V<
070C0p0u0z0
7%8*8/8
99L9Q9V9
<9<><C<
0`0d0h0l0p0t0x0|0
5Q6(7,70747F8Q8w8
M0\0f0~0
1=1J1W1d1x1}1
1-2?2r2
5N5^5c5h5m5
7)757a7}7
84898>8q8v8{8
:(;9;f;
=)=O=m=t=x=|=
=R>]>x>
? ?$?(?,?v?|?
0H1M1_1
2<3W3\3b3h3x4}4
56&6-6J6g6
767;7@7Z7
969=9Y9i9
<H<q<z<
>[?g?n?
(040:0O0Y0s0x0}0
1A2J2t2y2~2
3=3B3G3
4#4M4R4W4
5.575a5f5k5
5J6S6}6
62797x7
9;9D9n9s9x9
::;C;m;r;w;
<1<Z<c<
<8===V=>%>9>>>C>k>q>
>8?=?B?x?}?
0J0[0`0e0j0
03181=1s1x1}1
1%2*2/2W2\2a2f2
3(474d4k4u4
4&5,5h5m5
5S6Y6m6r6w6
6b7g7l7
868;8@8t8
8)9]9b9g9
: :%:l:q:v:{:
<=<P<a<h<
? ?%?r?{?
7%7D7c7
848S8r8
<1=9=v=
=&>->X>
>4?;?f?
7j7H:M:_:
6!6(6/666=6D6K6S6[6c6o6x6}6
J0S0}0
0$1-1W1\1a1
283=3B3
5<5T5[5c5h5l5p5
6J6P6T6X6\6
;H;T;Z;o;y;
<$<.<5<><E<
1<1A1F1b2n2
3 3%3N3
4"4`4g4
7!7r7~7
1 1]1i1
3@3E3J3
4J4S4}4
6F6O6y6~6
?"?_?k?
)151b1g1l1
4Q4Y4[5d5
71767;7
8G8L8Q8
:>;r;8<=<O<
<B>I>7?>?
4 4$4(4,4044484<4@4
< <p<u<z<
81=1O1
262N2W2
484V4x4}4
42575<5b5z5
62777<7b7
909G9S9y9
31363;3]3v3
464?4r4
576Y6b6
6,757_7d7i7
868;8@8
829;9e9j9o9
<6<;<@<
=*>/>4>
>,?1?6?
4"5'5,5
= =$=(=,=0=4=8=<=@=D=H=L=P=h=l=p=t=x=
1;2G2w2|2
2X3_3n4u4
9.:5:]:d:
(040d0i0n0
1L1P1T1X1\1`1d1h1l1p1t1x1|1
=J=O=T=w=
2#2C2_2
4L5X5%6+606G6P6X6_6x6}6
9,91969\9t9}9
;$;-;b;g;l;
;+<a<j<
>">8>?>F>M>T>[>b>h>n>s>
?!?&?3?:?A?T?^?
0!0)0.040B0H0f0l0
3/494A4F4L4d4q4
4h5u5{5
66'686M6R6Y6
7"737=7D7I7O7l7v7
9J9P9[9a9
9B:P:b:h:
<$<(<0<<<\<h<
= =@=`=
>0>P>X>d>
?8?T?X?x?
0,040H0h0p0t0
1,181@1p1
202<2X2x2
2 2$2(2,2024282<2@2D2H2L2P2T2X2\2`2d2h2l2p2t2x2|2
3 3$3(3,3034383<3@3D3H3L3P3T3X3\3`3d3h3l3p3
444@4D4H4L4P4T4X4\4
:$:,:4:<:D:L:T:\:d:l:t:|:
<@<D<P<T<X<\<`<d<h<l<p<t<
= =h=p=
ibase == 0 || (2 <= ibase && ibase <= 36)
strtoxl
f:\dd\vctools\crt_bld\self_x86\crt\src\strtol.c
nptr != NULL
strtoxq
f:\dd\vctools\crt_bld\self_x86\crt\src\strtoq.c
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgheap.c
_CrtCheckMemory()
_pFirstBlock == pOldBlock
_pLastBlock == pOldBlock
fRealloc || (!fRealloc && pNewBlock == pOldBlock)
pOldBlock->nLine == IGNORE_LINE && pOldBlock->lRequest == IGNORE_REQ
_CrtIsValidHeapPointer(pUserData)
pUserData != NULL
_pFirstBlock == pHead
_pLastBlock == pHead
pHead->nBlockUse == nBlockUse
pHead->nLine == IGNORE_LINE && pHead->lRequest == IGNORE_REQ
_BLOCK_TYPE_IS_VALID(pHead->nBlockUse)
_msize_dbg
_CrtSetDbgFlag
(fNewBits==_CRTDBG_REPORT_FLAG) || ((fNewBits & 0x0ffff & ~(_CRTDBG_ALLOC_MEM_DF | _CRTDBG_DELAY_FREE_MEM_DF | _CRTDBG_CHECK_ALWAYS_DF | _CRTDBG_CHECK_CRT_DF | _CRTDBG_LEAK_CHECK_DF) ) == 0)
_CrtMemCheckpoint
state != NULL
(*_errno())
_printMemBlockData
mscoree.dll
strcpy_s(*env, cchars, p)
_setenvp
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
KERNEL32.DLL
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
@Microsoft Visual C++ Runtime Library
wcscat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), error_text)
wcscat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), L"\n\n")
wcsncpy_s(pch, progname_size - (pch - progname), L"...", 3)
<program name unknown>
wcscpy_s(progname, progname_size, L"<program name unknown>")
Runtime Error!
Program:
wcscpy_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), L"Runtime Error!\n\nProgram: ")
_NMSG_WRITE
f:\dd\vctools\crt_bld\self_x86\crt\src\crt0msg.c
Assertion Failed
Warning
@f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrpt.c
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
wcscpy_s(szOutMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
memcpy_s(szShortProgName, sizeof(TCHAR) * (260 - (szShortProgName - szExeName)), dotdotdot, sizeof(TCHAR) * 3)
wcscpy_s(szExeName, 260, L"<program name unknown>")
__crtMessageWindowW
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
f:\dd\vctools\crt_bld\self_x86\crt\src\isctype.c
(unsigned)(c + 1) <= 256
f:\dd\vctools\crt_bld\self_x86\crt\src\localref.c
((ptloci->lc_category[category].wlocale != NULL) && (ptloci->lc_category[category].wrefcount != NULL)) || ((ptloci->lc_category[category].wlocale == NULL) && (ptloci->lc_category[category].wrefcount == NULL))
_controlfp_s(((void *)0), 0x00010000, 0x00030000)
_setdefaultprecision
f:\dd\vctools\crt_bld\self_x86\crt\src\intel\fp8.c
sizeInBytes > 0
_cftoe_l
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\cvt.c
buf != NULL
strcpy_s(p, (sizeInBytes == (size_t)-1 ? sizeInBytes : sizeInBytes - (p - buf)), "e+000")
sizeInBytes > (size_t)(3 + (ndec > 0 ? ndec : 0) + 5 + 1)
_cftoe2_l
sizeInBytes > (size_t)(1 + 4 + ndec + 6)
_cftoa_l
_cftof_l
_cftof2_l
_cftog_l
strcpy_s(szOutMessage, 4096, "_CrtDbgReport: String too long or IO Error")
strcpy_s(szExeName, 260, "<program name unknown>")
__crtMessageWindowA
_expand_base
f:\dd\vctools\crt_bld\self_x86\crt\src\expand.c
pBlock != NULL
(format != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\winsig.c
("Invalid signal or error", 0)
(L"Buffer is too small" && 0)
Buffer is too small
(((_Src))) != NULL
strcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscpy_s.inl
((_Dst)) != NULL && ((_SizeInBytes)) > 0
_set_error_mode
f:\dd\vctools\crt_bld\self_x86\crt\src\errmode.c
("Invalid error_mode", 0)
WUSER32.DLL
(L"String is not null terminated" && 0)
String is not null terminated
wcscat_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscat_s.inl
((_Dst)) != NULL && ((_SizeInWords)) > 0
wcsncpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcsncpy_s.inl
wcscpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrptt.c
_CrtDbgReport: String too long or Invalid characters in String
wcscpy_s(szOutMessage2, 4096, L"_CrtDbgReport: String too long or Invalid characters in String")
e = mbstowcs_s(&ret, szOutMessage2, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage, 4096, szLineMessage)
strcat_s(szLineMessage, 4096, "\n")
strcat_s(szLineMessage, 4096, "\r")
strcat_s(szLineMessage, 4096, szUserMessage)
strcpy_s(szLineMessage, 4096, szFormat ? "Assertion failed: " : "Assertion failed!")
strcpy_s(szUserMessage, 4096, "_CrtDbgReport: String too long or IO Error")
_itoa_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportA
wcstombs_s(&ret, szaOutMessage, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage2, 4096, "_CrtDbgReport: String too long or Invalid characters in String")
wcstombs_s(((void *)0), szOutMessage2, 4096, szOutMessage, ((size_t)-1))
wcscpy_s(szOutMessage, 4096, szLineMessage)
%s(%d) : %s
wcscat_s(szLineMessage, 4096, L"\n")
wcscat_s(szLineMessage, 4096, L"\r")
wcscat_s(szLineMessage, 4096, szUserMessage)
wcscpy_s(szLineMessage, 4096, szFormat ? L"Assertion failed: " : L"Assertion failed!")
Assertion failed!
Assertion failed:
wcscpy_s(szUserMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
, Line
<file unknown>
Second Chance Assertion Failed: File
_itow_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportW
sizeInBytes >= count
src != NULL
memcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\memcpy_s.c
dst != NULL
((((( H
h(((( H
H
f:\dd\vctools\crt_bld\self_x86\crt\src\malloc.h
("Corrupted pointer passed to _freea", 0)
strcat_s
D_controlfp_s
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\tran\contrlfp.c
("Invalid input value", 0)
pflt != NULL
sizeInBytes > (size_t)((digits > 0 ? digits : 0) + 1)
_fptostr
f:\dd\vctools\crt_bld\self_x86\crt\src\_fptostr.c
strcpy_s(resultstr, resultsize, autofos.man)
_fltout2
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\cfout.c
("inconsistent IOB fields", stream->_ptr - stream->_base >= 0)
f:\dd\vctools\crt_bld\self_x86\crt\src\_flsbuf.c
str != NULL
(null)
("'n' format specifier disabled", 0)
(ch != _T('\0'))
( (_Stream->_flag & _IOSTRG) || ( fn = _fileno(_Stream), ( (_textmode_safe(fn) == __IOINFO_TM_ANSI) && !_tm_unicode_safe(fn))))
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
(stream != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\vsprintf.c
(count == 0) || (string != NULL)
_vsnprintf_helper
("Buffer too small", 0)
string != NULL && sizeInBytes > 0
_vsprintf_s_l
format != NULL
_vsnprintf_s_l
_mbstowcs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\mbstowcs.c
s != NULL
retsize <= sizeInWords
bufferSize <= INT_MAX
_mbstowcs_s_l
(pwcs == NULL && sizeInWords == 0) || (pwcs != NULL && sizeInWords > 0)
length < sizeInTChars
2 <= radix && radix <= 36
sizeInTChars > (size_t)(is_neg ? 2 : 1)
sizeInTChars > 0
xtoa_s
f:\dd\vctools\crt_bld\self_x86\crt\src\xtoa.c
_wcstombs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\wcstombs.c
pwcs != NULL
sizeInBytes > retsize
_wcstombs_s_l
(dst != NULL && sizeInBytes > 0) || (dst == NULL && sizeInBytes == 0)
_vswprintf_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\vswprint.c
string != NULL && sizeInWords > 0
_vsnwprintf_s_l
xtow_s
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgdel.cpp
__strgtold12_l
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\include\strgtold12.inl
_Locale != NULL
strcpy_s(fos->man, 21+1, "1#QNAN")
strcpy_s(fos->man, 21+1, "1#INF")
strcpy_s(fos->man, 21+1, "1#IND")
strcpy_s(fos->man, 21+1, "1#SNAN")
$I10_OUTPUT
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\x10fout.c
("Invalid file descriptor. File possibly closed by a different thread",0)
(_osfile(fh) & FOPEN)
_lseeki64
f:\dd\vctools\crt_bld\self_x86\crt\src\lseeki64.c
(fh >= 0 && (unsigned)fh < (unsigned)_nhandle)
_write
f:\dd\vctools\crt_bld\self_x86\crt\src\write.c
isleadbyte(_dbcsBuffer(fh))
((cnt & 1) == 0)
_write_nolock
(buf != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
_isatty
f:\dd\vctools\crt_bld\self_x86\crt\src\isatty.c
_fileno
f:\dd\vctools\crt_bld\self_x86\crt\src\fileno.c
_wctomb_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\wctomb.c
sizeInBytes <= INT_MAX
((state == ST_NORMAL) || (state == ST_TYPE))
("Incorrect format specifier", 0)
_output_s_l
_woutput_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\mbtowc.c
_loc_update.GetLocaleT()->locinfo->mb_cur_max == 1 || _loc_update.GetLocaleT()->locinfo->mb_cur_max == 2
(str != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\eh\typname.cpp
pNode->_Next != NULL
_get_osfhandle
f:\dd\vctools\crt_bld\self_x86\crt\src\osfinfo.c
@CONOUT$
fclose
f:\dd\vctools\crt_bld\self_x86\crt\src\fclose.c
_fclose_nolock
(_osfile(filedes) & FOPEN)
_commit
f:\dd\vctools\crt_bld\self_x86\crt\src\commit.c
(filedes >= 0 && (unsigned)filedes < (unsigned)_nhandle)
_close
f:\dd\vctools\crt_bld\self_x86\crt\src\close.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_freebuf.c
stream != NULL
bezutagotivoyecafugemigicecefip
lokijohesa salogiwanimaweb fejisovekilaxidabugejonojake lonofufafi
jimunaj
hexasasucur
goxuligogipegoxez
pikelel
beribopohete
dohokuyakojiyeluxehujagazudujigo
puyawonagivirehahebasavot
Biw noyowenokilunasicegudizepixonoba
xezesedifosugorajuhonoxolu
fotikihajapo
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Trojan.Win32.Convagent.4!c
Elastic malicious (high confidence)
DrWeb Trojan.PWS.StealerNET.113
MicroWorld-eScan Trojan.GenericKDZ.79312
FireEye Generic.mg.2d79fb71f371e9f7
CAT-QuickHeal Trojan.Convagent
ALYac Trojan.GenericKDZ.79312
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Riskware ( 00584baa1 )
Alibaba Trojan:Win32/Raccoon.3c490924
K7GW Riskware ( 00584baa1 )
Cybereason malicious.e45ca3
Arcabit Trojan.Generic.D135D0
BitDefenderTheta Clean
Cyren W32/Kryptik.FPK.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HNCJ
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky HEUR:Trojan.Win32.Convagent.gen
BitDefender Trojan.GenericKDZ.79312
NANO-Antivirus Clean
SUPERAntiSpyware Clean
Avast Win32:CrypterX-gen [Trj]
Tencent Clean
Ad-Aware Trojan.GenericKDZ.79312
TACHYON Clean
Sophos ML/PE-A
Comodo Clean
F-Secure Clean
Baidu Win32.Trojan.Kryptik.jm
Zillya Clean
TrendMicro TROJ_GEN.R002C0PJT21
McAfee-GW-Edition Packed-GDT!2D79FB71F371
CMC Clean
Emsisoft Trojan.Crypt (A)
Ikarus Trojan-Spy.Agent
Jiangmin Trojan.Chapak.ows
Webroot W32.Malware.Gen
Avira TR/Crypt.Agent.cfaje
Antiy-AVL Clean
Kingsoft Win32.Troj.Undef.(kcloud)
Gridinsoft Ransom.Win32.Sabsik.ns
Microsoft Clean
ViRobot Clean
ZoneAlarm Clean
GData Win32.Trojan.BSE.WS9D4D
Cynet Malicious (score: 100)
AhnLab-V3 Ransomware/Win.Stop.R447622
Acronis suspicious
McAfee Packed-GDT!2D79FB71F371
MAX malware (ai score=100)
VBA32 Clean
Malwarebytes Clean
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002C0PJT21
Rising Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Unsafe.AI_Score_97%
Fortinet W32/Kryptik.HNCP!tr
AVG Win32:CrypterX-gen [Trj]
Panda Trj/Genetic.gen
CrowdStrike win/malicious_confidence_90% (W)
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.