Static | ZeroBOX

PE Compile Time

2022-03-12 02:11:24

PE Imphash

af39b18e1506ad42070ce5f318fcafa2

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00048505 0x00048600 6.61740363985
.rdata 0x0004a000 0x000122d4 0x00012400 4.98596756341
.data 0x0005d000 0x0000671c 0x00002a00 4.36443525426
.rsrc 0x00064000 0x000286bc 0x00028800 7.84610752566
.reloc 0x0008d000 0x00009432 0x00009600 4.87573803442

Resources

Name Offset Size Language Sub-language File type
HINTDATA 0x00064698 0x00000e78 LANG_ENGLISH SUBLANG_ENGLISH_US Little-endian UTF-16 Unicode text, with CRLF line terminators
ДЩЕАПМВУ 0x00065510 0x00024000 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_BITMAP 0x000897b0 0x000004a0 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_BITMAP 0x000897b0 0x000004a0 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_BITMAP 0x000897b0 0x000004a0 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_BITMAP 0x000897b0 0x000004a0 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MENU 0x00089d74 0x000002aa LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MENU 0x00089d74 0x000002aa LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0008a7f8 0x00000102 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0008a7f8 0x00000102 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0008a7f8 0x00000102 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0008a7f8 0x00000102 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0008c088 0x000000c6 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x0008c150 0x00000050 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x0008c428 0x0000026e LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with CRLF line terminators
RT_MANIFEST 0x0008c428 0x0000026e LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with CRLF line terminators
None 0x0008c698 0x00000022 LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library dbghelp.dll:
0x1004a630 SymCleanup
0x1004a634 SymGetOptions
0x1004a638 SymUnloadModule64
0x1004a63c SymGetLineFromAddr64
0x1004a640 SymGetSymFromAddr64
0x1004a644 SymLoadModuleExW
0x1004a648 SymSetOptions
0x1004a64c SymInitialize
0x1004a650 SymGetModuleInfo64
Library imagehlp.dll:
0x1004a658 UnMapAndLoad
0x1004a65c MapAndLoad
Library KERNEL32.dll:
0x1004a104 FlushFileBuffers
0x1004a108 LockFile
0x1004a10c UnlockFile
0x1004a110 SetEndOfFile
0x1004a114 GetFileSize
0x1004a118 DuplicateHandle
0x1004a11c GetCurrentProcess
0x1004a120 GetVolumeInformationW
0x1004a124 GetShortPathNameW
0x1004a128 CreateFileW
0x1004a130 GetFileSizeEx
0x1004a134 HeapAlloc
0x1004a138 HeapFree
0x1004a140 GetCommandLineA
0x1004a144 RtlUnwind
0x1004a148 RaiseException
0x1004a14c HeapReAlloc
0x1004a150 Sleep
0x1004a154 HeapSize
0x1004a158 TerminateProcess
0x1004a164 IsDebuggerPresent
0x1004a168 VirtualFree
0x1004a16c SetFilePointer
0x1004a170 HeapCreate
0x1004a174 HeapDestroy
0x1004a178 GetStdHandle
0x1004a17c GetModuleFileNameA
0x1004a180 GetCurrentDirectoryA
0x1004a184 GetDriveTypeA
0x1004a188 GetCPInfo
0x1004a18c GetACP
0x1004a190 GetOEMCP
0x1004a194 IsValidCodePage
0x1004a198 LCMapStringW
0x1004a19c SetHandleCount
0x1004a1a0 GetFileType
0x1004a1a4 GetStartupInfoA
0x1004a1ac GetEnvironmentStrings
0x1004a1b4 GetEnvironmentStringsW
0x1004a1bc GetTickCount
0x1004a1c0 GetTimeZoneInformation
0x1004a1c8 GetConsoleCP
0x1004a1cc GetConsoleMode
0x1004a1d0 LCMapStringA
0x1004a1d4 GetStringTypeA
0x1004a1d8 GetStringTypeW
0x1004a1dc GetLocaleInfoA
0x1004a1e0 SetStdHandle
0x1004a1e4 WriteConsoleA
0x1004a1e8 GetConsoleOutputCP
0x1004a1ec WriteConsoleW
0x1004a1f0 CreateFileA
0x1004a1f8 WriteFile
0x1004a1fc ReadFile
0x1004a200 lstrcmpiW
0x1004a204 GetStringTypeExW
0x1004a208 DeleteFileW
0x1004a20c MoveFileW
0x1004a210 GetCurrentDirectoryW
0x1004a214 GlobalFlags
0x1004a218 SystemTimeToFileTime
0x1004a21c GetThreadLocale
0x1004a220 TlsFree
0x1004a224 DeleteCriticalSection
0x1004a228 LocalReAlloc
0x1004a22c TlsSetValue
0x1004a230 TlsAlloc
0x1004a238 GlobalHandle
0x1004a23c GlobalReAlloc
0x1004a240 EnterCriticalSection
0x1004a244 TlsGetValue
0x1004a248 LeaveCriticalSection
0x1004a24c LocalAlloc
0x1004a250 InterlockedIncrement
0x1004a254 GetDiskFreeSpaceW
0x1004a258 GetFullPathNameW
0x1004a25c GetTempFileNameW
0x1004a260 GetFileTime
0x1004a264 SetFileTime
0x1004a268 GetFileAttributesW
0x1004a26c CloseHandle
0x1004a278 GetPrivateProfileIntW
0x1004a27c GetCurrentThread
0x1004a280 ConvertDefaultLocale
0x1004a284 EnumResourceLanguagesW
0x1004a288 GetLocaleInfoW
0x1004a28c CompareStringA
0x1004a290 InterlockedExchange
0x1004a294 GlobalGetAtomNameW
0x1004a298 lstrlenA
0x1004a29c lstrcmpA
0x1004a2a0 FindFirstFileW
0x1004a2a8 FileTimeToSystemTime
0x1004a2ac FindNextFileW
0x1004a2b0 FindClose
0x1004a2b4 InterlockedDecrement
0x1004a2b8 FreeResource
0x1004a2bc GetCurrentThreadId
0x1004a2c0 GlobalAddAtomW
0x1004a2c4 GlobalFindAtomW
0x1004a2c8 GlobalDeleteAtom
0x1004a2cc GetVersionExW
0x1004a2d0 CompareStringW
0x1004a2d4 LoadLibraryA
0x1004a2d8 lstrcmpW
0x1004a2dc GetVersionExA
0x1004a2e0 GetModuleHandleA
0x1004a2e4 GetCurrentProcessId
0x1004a2e8 GetModuleFileNameW
0x1004a2ec GlobalFree
0x1004a2f0 GlobalAlloc
0x1004a2f4 GlobalLock
0x1004a2f8 GlobalUnlock
0x1004a2fc lstrlenW
0x1004a300 MulDiv
0x1004a304 ExitProcess
0x1004a308 GetProcAddress
0x1004a30c LoadLibraryW
0x1004a310 GetLastError
0x1004a314 SetLastError
0x1004a318 GetModuleHandleW
0x1004a31c LocalFree
0x1004a320 FormatMessageW
0x1004a328 GetWindowsDirectoryW
0x1004a32c GetSystemDirectoryW
0x1004a330 SearchPathW
0x1004a334 MultiByteToWideChar
0x1004a338 FreeLibrary
0x1004a33c IsBadReadPtr
0x1004a340 LoadLibraryExW
0x1004a344 LockResource
0x1004a348 SizeofResource
0x1004a34c WideCharToMultiByte
0x1004a350 FindResourceW
0x1004a354 LoadResource
0x1004a358 VirtualAlloc
Library USER32.dll:
0x1004a3a8 DestroyMenu
0x1004a3ac ReuseDDElParam
0x1004a3b0 UnpackDDElParam
0x1004a3b4 PostQuitMessage
0x1004a3b8 ValidateRect
0x1004a3bc TranslateMessage
0x1004a3c0 GetMessageW
0x1004a3c4 ShowOwnedPopups
0x1004a3c8 SetWindowRgn
0x1004a3cc SetTimer
0x1004a3d0 KillTimer
0x1004a3d4 IsZoomed
0x1004a3d8 WindowFromPoint
0x1004a3dc GetSysColorBrush
0x1004a3e0 GetMenuItemInfoW
0x1004a3e4 DeleteMenu
0x1004a3e8 DestroyIcon
0x1004a3ec CharUpperW
0x1004a3f0 DrawMenuBar
0x1004a3f4 DefMDIChildProcW
0x1004a3f8 DefFrameProcW
0x1004a3fc InflateRect
0x1004a400 GetDesktopWindow
0x1004a404 GetActiveWindow
0x1004a40c GetNextDlgTabItem
0x1004a410 EndDialog
0x1004a414 SetMenuItemBitmaps
0x1004a41c ModifyMenuW
0x1004a420 EnableMenuItem
0x1004a424 CheckMenuItem
0x1004a428 SetWindowTextW
0x1004a42c IsDialogMessageW
0x1004a430 RegisterWindowMessageW
0x1004a434 SendDlgItemMessageW
0x1004a438 SendDlgItemMessageA
0x1004a43c WinHelpW
0x1004a440 IsChild
0x1004a444 GetCapture
0x1004a448 SetWindowsHookExW
0x1004a44c CallNextHookEx
0x1004a450 GetClassLongW
0x1004a454 GetClassNameW
0x1004a458 SetPropW
0x1004a45c GetPropW
0x1004a460 RemovePropW
0x1004a464 GetFocus
0x1004a468 SetFocus
0x1004a46c GetWindowTextLengthW
0x1004a470 GetWindowTextW
0x1004a474 LoadAcceleratorsW
0x1004a478 SetActiveWindow
0x1004a47c DispatchMessageW
0x1004a480 GetDlgItem
0x1004a484 GetTopWindow
0x1004a488 DestroyWindow
0x1004a48c UnhookWindowsHookEx
0x1004a490 GetMessageTime
0x1004a494 GetMessagePos
0x1004a498 PeekMessageW
0x1004a49c ScrollWindow
0x1004a4a0 TrackPopupMenu
0x1004a4a4 GetKeyState
0x1004a4a8 SetMenu
0x1004a4ac SetScrollRange
0x1004a4b0 GetScrollRange
0x1004a4b4 SetScrollPos
0x1004a4b8 GetScrollPos
0x1004a4bc SetForegroundWindow
0x1004a4c0 ShowScrollBar
0x1004a4c4 IsWindowVisible
0x1004a4c8 CreateWindowExW
0x1004a4cc GetClassInfoExW
0x1004a4d0 GetClassInfoW
0x1004a4d4 RegisterClassW
0x1004a4d8 AdjustWindowRectEx
0x1004a4dc EqualRect
0x1004a4e0 GetScrollInfo
0x1004a4e4 SetScrollInfo
0x1004a4e8 CopyRect
0x1004a4ec PtInRect
0x1004a4f0 GetDlgCtrlID
0x1004a4f4 DefWindowProcW
0x1004a4f8 CallWindowProcW
0x1004a4fc GetMenu
0x1004a500 SetWindowLongW
0x1004a504 SetWindowPos
0x1004a508 OffsetRect
0x1004a50c IntersectRect
0x1004a510 SystemParametersInfoA
0x1004a514 IsIconic
0x1004a518 GetWindowPlacement
0x1004a51c GetWindow
0x1004a520 GetSysColor
0x1004a524 EndPaint
0x1004a528 BeginPaint
0x1004a52c GetWindowDC
0x1004a530 ReleaseDC
0x1004a534 GetDC
0x1004a538 ClientToScreen
0x1004a53c ScreenToClient
0x1004a540 GrayStringW
0x1004a544 DrawTextExW
0x1004a548 DrawTextW
0x1004a54c TabbedTextOutW
0x1004a554 GetWindowLongW
0x1004a558 GetLastActivePopup
0x1004a55c IsWindowEnabled
0x1004a560 MessageBoxW
0x1004a564 LoadMenuW
0x1004a568 GetMenuState
0x1004a56c GetMenuStringW
0x1004a570 GetMenuItemID
0x1004a574 InsertMenuW
0x1004a578 GetMenuItemCount
0x1004a57c GetSubMenu
0x1004a580 SetCursor
0x1004a584 LoadCursorW
0x1004a588 InsertMenuItemW
0x1004a58c CreatePopupMenu
0x1004a590 SetRectEmpty
0x1004a594 GetCursorPos
0x1004a598 DestroyCursor
0x1004a59c SetCursorPos
0x1004a5a0 ReleaseCapture
0x1004a5a4 SetCapture
0x1004a5a8 RedrawWindow
0x1004a5ac TranslateAcceleratorW
0x1004a5b0 TranslateMDISysAccel
0x1004a5b4 GetForegroundWindow
0x1004a5b8 BringWindowToTop
0x1004a5bc CopyIcon
0x1004a5c0 InvalidateRect
0x1004a5c4 SystemParametersInfoW
0x1004a5c8 ShowWindow
0x1004a5cc MessageBeep
0x1004a5d0 EndDeferWindowPos
0x1004a5d4 DeferWindowPos
0x1004a5d8 MapWindowPoints
0x1004a5dc BeginDeferWindowPos
0x1004a5e0 IsWindow
0x1004a5e4 UpdateWindow
0x1004a5e8 LoadBitmapW
0x1004a5ec GetWindowRect
0x1004a5f0 GetParent
0x1004a5f4 SetLastErrorEx
0x1004a5f8 FillRect
0x1004a5fc SetRect
0x1004a600 DrawIcon
0x1004a604 LoadIconW
0x1004a608 GetClientRect
0x1004a60c GetSystemMetrics
0x1004a610 SendMessageW
0x1004a614 EnableWindow
0x1004a618 PostMessageW
Library GDI32.dll:
0x1004a044 TextOutW
0x1004a048 ExtTextOutW
0x1004a04c Escape
0x1004a050 SelectObject
0x1004a054 SetViewportOrgEx
0x1004a058 OffsetViewportOrgEx
0x1004a05c SetViewportExtEx
0x1004a060 ScaleViewportExtEx
0x1004a064 SetWindowExtEx
0x1004a068 ScaleWindowExtEx
0x1004a06c DeleteDC
0x1004a070 CreatePatternBrush
0x1004a074 CreateBitmap
0x1004a078 RectVisible
0x1004a07c CreateSolidBrush
0x1004a080 PatBlt
0x1004a084 DPtoLP
0x1004a088 CreateEllipticRgn
0x1004a08c LPtoDP
0x1004a090 Ellipse
0x1004a094 GetTextMetricsW
0x1004a098 GetTextExtentPoint32W
0x1004a09c GetCharWidthW
0x1004a0a0 CreateFontW
0x1004a0a4 StretchDIBits
0x1004a0a8 GetBkColor
0x1004a0ac PtVisible
0x1004a0b0 GetPixel
0x1004a0b4 SetBkColor
0x1004a0b8 RestoreDC
0x1004a0bc SaveDC
0x1004a0c0 GetDeviceCaps
0x1004a0c4 CreateFontIndirectW
0x1004a0c8 GetObjectW
0x1004a0cc Rectangle
0x1004a0d0 StretchBlt
0x1004a0d4 CreateCompatibleDC
0x1004a0d8 CreateCompatibleBitmap
0x1004a0dc GetStockObject
0x1004a0e0 DeleteObject
0x1004a0e4 IntersectClipRect
0x1004a0e8 ExcludeClipRect
0x1004a0ec GetClipBox
0x1004a0f0 SetMapMode
0x1004a0f4 SetTextColor
0x1004a0f8 SetBkMode
0x1004a0fc BitBlt
Library COMDLG32.dll:
0x1004a03c GetFileTitleW
Library WINSPOOL.DRV:
0x1004a620 DocumentPropertiesW
0x1004a624 ClosePrinter
0x1004a628 OpenPrinterW
Library ADVAPI32.dll:
0x1004a000 GetFileSecurityW
0x1004a004 SetFileSecurityW
0x1004a008 RegQueryValueW
0x1004a00c RegOpenKeyW
0x1004a010 RegEnumKeyW
0x1004a014 RegDeleteKeyW
0x1004a018 RegDeleteValueW
0x1004a01c RegSetValueExW
0x1004a020 RegCreateKeyExW
0x1004a024 RegOpenKeyExW
0x1004a028 RegQueryValueExW
0x1004a02c RegSetValueW
0x1004a030 RegCloseKey
0x1004a034 RegCreateKeyW
Library SHELL32.dll:
0x1004a374 DragFinish
0x1004a378 DragQueryFileW
0x1004a37c ExtractIconW
0x1004a380 SHGetFileInfoW
0x1004a384 ShellExecuteW
Library SHLWAPI.dll:
0x1004a38c PathRemoveExtensionW
0x1004a390 PathFindFileNameW
0x1004a394 PathRemoveFileSpecW
0x1004a398 PathStripToRootW
0x1004a39c PathFindExtensionW
0x1004a3a0 PathIsUNCW
Library ole32.dll:
0x1004a664 CoTaskMemFree
0x1004a668 CoUninitialize
0x1004a66c CoCreateInstance
0x1004a670 CoInitializeEx
Library OLEAUT32.dll:
0x1004a360 VariantInit
0x1004a364 VariantChangeType
0x1004a368 VariantClear
0x1004a36c SysAllocStringLen

Exports

Ordinal Address Name
1 0x1000a277 DllRegisterServer
!This program cannot be run in DOS mode.
[uRich
`.rdata
@.data
@.reloc
QQPh@!
Pjmh '
D$X+D$P
|$T+|$L
PVVVVQ
WWWWWj
t-Ht!Ht
SSSSSWj
NTSSSSSPj
t$$Pj"
L$$+L$
D$(+D$ P
L$8+L$0
T$8+T$0R
T$D+T$<j
L$H+L$@Q
L$<+T$4+
+T$@+T$D
A$_^][YY
L$ 9D$,
L$(9L$
D$ _^][
YY9D$
YY_^][
+T$$+T$(9T$
+T$$+T$(
\$,+l$(
9l$ w>
SVWjeXjrf
jtZj.f
PjMj6jc
j+j7jcj6j@j
@hCkELV
u1PPj1
PQQQQQ
S\_^[]
S\_^[]
t39w u&
_ 9w$u
u*9} t
Ht;O u
u=j0^VP
WWWWhd
SVWj(3
F(@@;F,v
tj9~8u@j
9~8ucj
F4_^[]
WWVPWWWW
+F(_^[;E
F(@;F,v
F(;^ r
F(;F0u
^(_^[]
~ 9^0u(
v WWWWSWh
;F u)VSS
R`_[^]
SSSSWSh
QQPQh8
9HhtK9M
tV9_ uQ
PSSSSS
HVt@HtWHuT
t#WWhl
WWjPPj
SSPPhd
PWVWWW
0WWWWS
WtrHHt
tA9wht<
9p t-S
Ph_^[]
WWWWQS
u$SShe
Ct9x<t9
YYf9>u
9~xuY9^
tZ9^ tU
t[9^ tV
@@f90u
uNf9u
t2Ht*Ht"Ht
t2It*It"It
FhjQSS
Fd9~ t-
Nl9~ t
Fx9~|u
F|9~ t
j j WW
j3PPPPP
j3PPPPP
QQSVW3
QQSVW3
^t@_^[]
u,j@Z3
RQQQQQ
;ALtHh,
RSSSSS
GGf97u
GGf97u
HtpHHt
9GDuR9O@uM
GD9wHu
^<to9p@u
0WWWWW
0WWWWW
9} tM9}$uC9}(uC3
9E vNPQ
9u(v(VS
9u wx3
^WWWWW
_VVVVV
@@f90u
AAf91u
0WWWWW
AAFFf;
0WWWWW
@@BBf;
@@BBf;
QQSVWd
YWWWWW
t=f99t8C;]
sfj\Yf
.t C;]
s%j.Zf
u^SSSP
0WWWWW
AAFFf;
^SSSSS
^SSSSS
0A@@Ju
Fj^FXf;
Fj-YFf;
tNjXXf;
ou-j8Xf;
^WWWWW
^WWWWW
HHtXHHt
>If90t
j@j ^V
>=Yt1j
HtHu4j
s[S;7|G;w
tR99u2
URPQQh$
^WWWWW
>:u8FV
Pf95,#
VVVVVQRSSj
uL9=0!
_VVVVV
^WWWWW
0SSSSS
0SSSSS
0SSSSS
t"SS9]
PPPPPPPP
PPPPPPPP
^SSSSS
j"^SSSSS
^SSSSS
;t$,v-
UQPXY]Y[
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
COleException
CInvalidArgException
CNotSupportedException
CMemoryException
CSimpleException
CException
CButton
CStatic
CBitmap
CBrush
CGdiObject
CPaintDC
CWindowDC
CClientDC
CUserException
CResourceException
GetMonitorInfoA
GetMonitorInfoW
EnumDisplayDevicesW
EnumDisplayMonitors
MonitorFromPoint
MonitorFromRect
MonitorFromWindow
GetSystemMetrics
DISPLAY
InitCommonControls
InitCommonControlsEx
InitNetworkAddressControl
HtmlHelpW
hhctrl.ocx
CCmdTarget
CDialog
DeactivateActCtx
ActivateActCtx
ReleaseActCtx
CreateActCtxW
CObject
CFileFind
file://
CMapStringToPtr
CArchiveException
CMDIChildWnd
CMDIFrameWnd
CControlBar
CFrameWnd
ImageList_Draw
ImageList_GetImageInfo
CImageList
ImageList_Create
ImageList_Destroy
CWinApp
Automation
Embedding
UnregserverPerUser
UnregisterPerUser
Unregserver
Unregister
RegserverPerUser
RegisterPerUser
Regserver
Register
GetSystemDefaultUILanguage
GetUserDefaultUILanguage
CMultiDocTemplate
CWinThread
CDocument
ReplaceFileW
CObArray
CTreeView
CFormView
CFileDialog
p4GetOpenFileNameW
GetSaveFileNameW
SHCreateItemFromParsingName
CCtrlView
CSplitterWnd
CPtrArray
CScrollView
CStatusBar
CToolBar
DllGetVersion
CMapPtrToPtr
CPtrList
CDockBar
CReBar
CDocTemplate
CDocManager
DllGetClassObject
CFileException
CCommonDialog
CToolTipCtrl
IsAppThemed
OpenThemeData
CloseThemeData
DrawThemeBackground
GetThemePartSize
IsThemeBackgroundPartiallyTransparent
DrawThemeParentBackground
CByteArray
bad allocation
CorExitProcess
HeapQueryInformation
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
(null)
`h````
xpxxxx
bad exception
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
GAIsProcessorFeaturePresent
KERNEL32
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
Unknown exception
1#QNAN
1#SNAN
CONOUT$
OLEACC.dll
CColorStaticText
CBinaryImage
CChildFrame
ImageList_AddMasked
CCrashFinderDoc
CCrashFinderTreeView
CFindView
CMainFrame
QE_[-s}
DllRegisterServer
CStaticLink
CreateStdAccessibleObject
AccessibleObjectFromWindow
LresultFromObject
SymInitialize
SymGetModuleInfo64
SymGetSymFromAddr64
SymGetLineFromAddr64
SymGetOptions
SymSetOptions
SymCleanup
SymLoadModuleExW
SymUnloadModule64
dbghelp.dll
MapAndLoad
UnMapAndLoad
imagehlp.dll
LoadResource
FindResourceW
WideCharToMultiByte
SizeofResource
LockResource
LoadLibraryExW
IsBadReadPtr
FreeLibrary
MultiByteToWideChar
SearchPathW
GetSystemDirectoryW
GetWindowsDirectoryW
GetEnvironmentVariableW
FormatMessageW
LocalFree
GetModuleHandleW
SetLastError
GetLastError
LoadLibraryW
GetProcAddress
ExitProcess
MulDiv
lstrlenW
GlobalUnlock
GlobalLock
GlobalAlloc
GlobalFree
GetModuleFileNameW
GetCurrentProcessId
GetModuleHandleA
GetVersionExA
lstrcmpW
LoadLibraryA
CompareStringW
GetVersionExW
GlobalDeleteAtom
GlobalFindAtomW
GlobalAddAtomW
GetCurrentThreadId
FreeResource
InterlockedDecrement
FindClose
FindNextFileW
FileTimeToSystemTime
FileTimeToLocalFileTime
FindFirstFileW
lstrcmpA
lstrlenA
GlobalGetAtomNameW
InterlockedExchange
CompareStringA
GetLocaleInfoW
EnumResourceLanguagesW
ConvertDefaultLocale
GetCurrentThread
GetPrivateProfileIntW
WritePrivateProfileStringW
GetPrivateProfileStringW
CloseHandle
GetFileAttributesW
SetFileTime
GetFileTime
GetTempFileNameW
GetFullPathNameW
GetDiskFreeSpaceW
InterlockedIncrement
LocalAlloc
LeaveCriticalSection
TlsGetValue
EnterCriticalSection
GlobalReAlloc
GlobalHandle
InitializeCriticalSection
TlsAlloc
TlsSetValue
LocalReAlloc
DeleteCriticalSection
TlsFree
GetThreadLocale
SystemTimeToFileTime
GlobalFlags
GetCurrentDirectoryW
MoveFileW
DeleteFileW
GetStringTypeExW
lstrcmpiW
ReadFile
WriteFile
SetFilePointer
FlushFileBuffers
LockFile
UnlockFile
SetEndOfFile
GetFileSize
DuplicateHandle
GetCurrentProcess
GetVolumeInformationW
GetShortPathNameW
CreateFileW
LocalFileTimeToFileTime
GetFileSizeEx
HeapAlloc
HeapFree
GetSystemTimeAsFileTime
GetCommandLineA
RtlUnwind
RaiseException
HeapReAlloc
HeapSize
TerminateProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
VirtualFree
VirtualAlloc
HeapCreate
HeapDestroy
GetStdHandle
GetModuleFileNameA
GetCurrentDirectoryA
GetDriveTypeA
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
LCMapStringW
SetHandleCount
GetFileType
GetStartupInfoA
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
GetEnvironmentStringsW
QueryPerformanceCounter
GetTickCount
GetTimeZoneInformation
InitializeCriticalSectionAndSpinCount
GetConsoleCP
GetConsoleMode
LCMapStringA
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
SetStdHandle
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
CreateFileA
SetEnvironmentVariableA
KERNEL32.dll
EnableWindow
SendMessageW
GetSystemMetrics
GetClientRect
LoadIconW
DrawIcon
SetRect
FillRect
SetLastErrorEx
GetParent
GetWindowRect
LoadBitmapW
UpdateWindow
IsWindow
BeginDeferWindowPos
MapWindowPoints
DeferWindowPos
EndDeferWindowPos
MessageBeep
ShowWindow
SystemParametersInfoW
InvalidateRect
CopyIcon
LoadCursorW
SetCursor
GetSubMenu
GetMenuItemCount
InsertMenuW
GetMenuItemID
GetMenuStringW
GetMenuState
LoadMenuW
MessageBoxW
IsWindowEnabled
GetLastActivePopup
GetWindowLongW
GetWindowThreadProcessId
TabbedTextOutW
DrawTextW
DrawTextExW
GrayStringW
ScreenToClient
ClientToScreen
ReleaseDC
GetWindowDC
BeginPaint
EndPaint
GetSysColor
GetWindow
GetWindowPlacement
IsIconic
SystemParametersInfoA
IntersectRect
OffsetRect
SetWindowPos
SetWindowLongW
GetMenu
CallWindowProcW
DefWindowProcW
GetDlgCtrlID
PtInRect
CopyRect
SetScrollInfo
GetScrollInfo
EqualRect
AdjustWindowRectEx
RegisterClassW
GetClassInfoW
GetClassInfoExW
CreateWindowExW
PostMessageW
IsWindowVisible
ShowScrollBar
SetForegroundWindow
GetScrollPos
SetScrollPos
GetScrollRange
SetScrollRange
SetMenu
GetKeyState
TrackPopupMenu
ScrollWindow
PeekMessageW
GetMessagePos
GetMessageTime
UnhookWindowsHookEx
DestroyWindow
GetTopWindow
GetDlgItem
DispatchMessageW
SetActiveWindow
GetForegroundWindow
GetWindowTextW
GetWindowTextLengthW
SetFocus
GetFocus
RemovePropW
GetPropW
SetPropW
GetClassNameW
GetClassLongW
CallNextHookEx
SetWindowsHookExW
GetCapture
IsChild
WinHelpW
SendDlgItemMessageA
SendDlgItemMessageW
RegisterWindowMessageW
IsDialogMessageW
SetWindowTextW
CheckMenuItem
EnableMenuItem
ModifyMenuW
GetMenuCheckMarkDimensions
SetMenuItemBitmaps
EndDialog
GetNextDlgTabItem
CreateDialogIndirectParamW
GetActiveWindow
GetDesktopWindow
InflateRect
DefFrameProcW
DefMDIChildProcW
DrawMenuBar
BringWindowToTop
TranslateMDISysAccel
TranslateAcceleratorW
RedrawWindow
SetCapture
ReleaseCapture
SetCursorPos
DestroyCursor
GetCursorPos
SetRectEmpty
CreatePopupMenu
InsertMenuItemW
LoadAcceleratorsW
DestroyMenu
ReuseDDElParam
UnpackDDElParam
PostQuitMessage
ValidateRect
TranslateMessage
GetMessageW
ShowOwnedPopups
SetWindowRgn
SetTimer
KillTimer
IsZoomed
WindowFromPoint
GetSysColorBrush
GetMenuItemInfoW
DeleteMenu
DestroyIcon
CharUpperW
USER32.dll
GetStockObject
CreateCompatibleBitmap
CreateCompatibleDC
StretchBlt
Rectangle
GetObjectW
CreateFontIndirectW
GetDeviceCaps
SaveDC
RestoreDC
SetBkColor
SetBkMode
SetTextColor
SetMapMode
GetClipBox
ExcludeClipRect
IntersectClipRect
DeleteObject
BitBlt
GetPixel
PtVisible
RectVisible
TextOutW
ExtTextOutW
Escape
SelectObject
SetViewportOrgEx
OffsetViewportOrgEx
SetViewportExtEx
ScaleViewportExtEx
SetWindowExtEx
ScaleWindowExtEx
DeleteDC
CreatePatternBrush
CreateBitmap
CreateSolidBrush
PatBlt
DPtoLP
CreateEllipticRgn
LPtoDP
Ellipse
GetTextMetricsW
GetTextExtentPoint32W
GetCharWidthW
CreateFontW
StretchDIBits
GetBkColor
GDI32.dll
GetFileTitleW
COMDLG32.dll
ClosePrinter
DocumentPropertiesW
OpenPrinterW
WINSPOOL.DRV
RegCloseKey
RegSetValueW
RegQueryValueExW
RegOpenKeyExW
RegCreateKeyExW
RegSetValueExW
RegDeleteValueW
RegDeleteKeyW
RegEnumKeyW
RegOpenKeyW
RegQueryValueW
SetFileSecurityW
GetFileSecurityW
RegCreateKeyW
ADVAPI32.dll
ShellExecuteW
DragFinish
DragQueryFileW
ExtractIconW
SHGetFileInfoW
SHELL32.dll
PathFindExtensionW
PathRemoveExtensionW
PathFindFileNameW
PathRemoveFileSpecW
PathStripToRootW
PathIsUNCW
SHLWAPI.dll
CoTaskMemFree
CoUninitialize
CoCreateInstance
CoInitializeEx
ole32.dll
OLEAUT32.dll
CrashFinder.dll
DllRegisterServer
.?AVCOleException@@
.?AVCException@@
.PAVCOleException@@
.PAVCObject@@
.PAVCMemoryException@@
.PAVCSimpleException@@
.PAVCNotSupportedException@@
.PAVCInvalidArgException@@
.?AVCSimpleException@@
.?AVCMemoryException@@
.?AVCNotSupportedException@@
.?AVCInvalidArgException@@
.?AVCAfxStringMgr@@
.?AUIAtlStringMgr@ATL@@
.?AVCMenu@@
.PAVCResourceException@@
.PAVCUserException@@
.?AVCResourceException@@
.?AVCUserException@@
.?AVCDC@@
.?AVCClientDC@@
.?AVCWindowDC@@
.?AVCPaintDC@@
.?AVXAccessible@CWnd@@
.?AVXAccessibleServer@CWnd@@
.?AVCTestCmdUI@@
.?AVCCmdUI@@
.?AV_AFX_HTMLHELP_STATE@@
.?AVCNoTrackObject@@
.?AV?$IAccessibleProxyImpl@VCAccessibleProxy@ATL@@@ATL@@
.?AUIAccessible@@
.?AUIDispatch@@
.?AUIUnknown@@
.?AUIAccessibleProxy@@
.?AV?$CMFCComObject@VCAccessibleProxy@ATL@@@@
.?AVCAccessibleProxy@ATL@@
.?AV?$CComObjectRootEx@VCComSingleThreadModel@ATL@@@ATL@@
.?AVCComObjectRootBase@ATL@@
.?AUIOleWindow@@
.?AVCRgn@@
.?AV_AFX_THREAD_STATE@@
.?AVAFX_MODULE_THREAD_STATE@@
.?AVAFX_MODULE_STATE@@
.?AVCDllIsolationWrapperBase@@
.?AVCComCtlWrapper@@
.?AVCCommDlgWrapper@@
.?AVCShellWrapper@@
.?AV_AFX_BASE_MODULE_STATE@@
.?AV?$CArray@W4LoadArrayObjType@CArchive@@ABW412@@@
.?AVCFileFind@@
.?AVCMapStringToPtr@@
.PAVCArchiveException@@
.?AVCArchiveException@@
.?AVCSplitterWnd@@
.?AV?$CTypedPtrArray@VCObArray@@PAVCBitmap@@@@
.?AVCObArray@@
.?AV?$CArray@PAUHWND__@@PAU1@@@
.?AV?$CList@PAUHWND__@@PAU1@@@
.?AVCImageList@@
.?AVCCommandLineInfo@@
.?AVCMultiDocTemplate@@
.?AVCDocTemplate@@
.?AVCMirrorFile@@
.?AVCFile@@
.?AVCFileException@@
.?AVCCommonDialog@@
.?AVXFileDialogEvents@CFileDialog@@
.?AUIFileDialogEvents@@
.?AVXFileDialogControlEvents@CFileDialog@@
.?AUIFileDialogControlEvents@@
.?AVCFileDialog@@
.?AVCPtrArray@@
.?AV_AFX_MOUSEANCHORWND@@
.?AVCStatusBar@@
.?AVCControlBar@@
.?AVCStatusCmdUI@@
.?AV?$CArray@HABH@@
.?AVCToolBar@@
.?AVCToolCmdUI@@
.?AUCThreadData@@
.?AVCChevronOwnerDrawMenu@@
.?AVCMapPtrToPtr@@
.?AVCHandleMap@@
.?AVCPtrList@@
.?AVCRecentFileList@@
.?AVCNewTypeDlg@@
.?AVCDocManager@@
.PAVCFileException@@
.?AVCToolTipCtrl@@
.?AVCByteArray@@
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
.?AVCFont@@
.?AVCGdiObject@@
.?AVCDialog@@
.?AVCAboutDlg@@
.?AVCColorStaticText@@
.?AVCStatic@@
.?AVCStaticLink@@
.?AV?$CSimpleStringT@_W$0A@@ATL@@
.?AV?$CStringT@_WV?$StrTraitMFC@_WV?$ChTraitsCRT@_W@ATL@@@@@ATL@@
.?AVCHyperlink@@
.?AVCObject@@
.?AVCCmdTarget@@
.?AVCWnd@@
.?AVCButton@@
.?AVCBigIcon@@
.PAVCException@@
.?AVCAppOptionsDlg@@
.?AVCBitmap@@
.?AVCBrush@@
.?AVCPen@@
.?AVCBinaryImage@@
3b_4^w?%qukDduR0P&LVwpzV^(b7#o1zbb?<>(!x?6l4iQT9zW0c158bsTrC>cM$&IA?qWxBfzUoT^INdB$o
.?AVCBinaryImageOptionsDlg@@
.?AVCFrameWnd@@
.?AVCMDIChildWnd@@
.?AVCChildFrame@@
.?AVCWinThread@@
.?AVCWinApp@@
.?AVCCrashFinderApp@@
.?AVCDocument@@
.?AVCCrashFinderDoc@@
.?AVCrashFinderTreeDisplay@@
.?AVCSymbolEngine@@
.?AVCView@@
.?AVCCtrlView@@
.?AVCTreeView@@
.?AVCCrashFinderTreeView@@
.?AVCScrollView@@
.?AVCFormView@@
.?AVCFindView@@
.?AVCEdit@@
.?AVCHexEdit@@
.?AVCMDIFrameWnd@@
.?AVCMainFrame@@
kb-X&
g=a:gc
gDYY[W
s|VKtX
da!78>
MyS*ls
0X#_^-7
|\K6^0
{|Pt,M`
a1S2g~
4$=UWl
[=c5Zv
c+ZCjS
i#w~P6i+
xLVH{pjxcT
lAy1M+
-?HeNo
}}?Z@Q
L{-36R
$5?uiEs1(i
V&IzJ=
v_Pcq?w{
D1]hOd
wFGBQ1Q
=61hY(
RX*L.S
\1!ta=p)
<;ss_p
BAqIg"J
mySW`sm
'h@mH`
sf d3%r
N>lt)wc
=DT!BkXs
QY3bO-
:C#r7W
B?P<G)Z
p)E.ND
uGR9+X
4f(Xs
tM G{]8
P^A-i?
aOV5. v
9423w[
_\oRm}7%
g?Ru~(Yf]
Qx20h'
`Lgd V
x2+=;_
/-JD4y#
@)6i5N
0J1}DT
k!a{B@
MP{s&R
wDKxI<
6h2pDx
[6:g`o
=v\jv0
-(^Kq#
PY{cxms
|!JuBr
{Dqu,r$
yk*fgR
kxS&>B
h7N/Gi
pmS'qp
%mPsQg
rsIWJM
5_*YuP
"1.jnZ
U1YnW<\O
D,exq:
1Sitmm
m|=HmT
LK:RvB
X:#"-xx
(i0Tfl5|F
Ad_R$L,x8y H
hhKy_4
`mfBYG
+AmW$'
eu0qw%1w
"+^LE;u
"-8`2g~
s&#J<;
]=)DL|I"
{LtSYe
%,bja
5}}W-is
OX7eI
_Z\rlr
Ca6-l5
-GH LO._
0Owj"iW
f*0.08
-M;EU.A
Gsi(}j
6:L?X6G
"qHosr6!
kFQVen
e;XwF(
l`26)e
0&}{%.
pS:[\&
{CYgKmYVt
]WU~`<
)up5i3
mNQ<Ns7
8btE4gF
gQX&W"
\_xMO|~
iYkn?5P
oFg)Z3
j0oe;uB
K@_PGFFlZ
NV*TIj
9:gFxPz
5K6sYc
'GJgJ-
TquFvYB
G[uZ:+
cXBfa'
!akcS<OBK
1~Op$
7Elw{H
$1iwr*R
176QW&
&ME3"u1
#|7/3m
:S3;3k
KS`%j{:
~:#%-L
T/"*iAhN
Bda=/4
K'mC*J9
&4.yvE
4EPaj{3
*\B43bf
L[GhsR
!`5L,
l*W|Xi
yoWVvi?h
zPyFAL
1:_SxC
~2Q}}D
*=J5Ibj
I*~a?>
bFnr"$<
:9d-<M
/TWe-O>s
8Fjzok
PBMqPW
W154B
zjpBH#*
`]("(Y
>SajdF
muf0)Q0
A8%Dse
NF)9Wj9F"
*(lE)+
vsan+b
?@\q&^i
?,pmE
$miNXG
'[9 "K
)'Fqu?
SEhZyb
Z]#nI-[
9[|W62
MpAdvQ.
9VA%n,
ylY[iXQCl
5R3!F*
)`S\<
-UXdlZ~8u
Qr_O<6[{
qv"5I(*
U1ebE\Vp
y'}.$
N-\ZW5U
sR^Y]%rW
]w<3Jg
Ed6I)8'
+EgX0PI
zx^6bf
|6d\Nb
abJI?]a
<1;q1I
IR}MpqiV
#iy]@N
t4RiZe
mjNp<[o
\]%W]f
Z'=\2
d#@Zju
3mDXN
91n/o
0ac'w/
Kni`?Em9
-^h-'T
i_!g-q_
$IIVKN-
$tF}R_
'LL6E0
q>0+Kq
pW**!wM
|6{mTw
m.,hl
9sjckd*m
"#}5;A
jF/\ms
2jsDZU
A$qh {
9O^+o&zx
;FT@@F
KxeF(-&
}T89b0
PpP:O)
aLV20!
@Dz1m=Ku
<|TViW
rv2uN<s
5MolO=
GyRH.bx]|'+
yw6*?y4:
5 .Is\
,{iK<SD
00i*1h
2 3rP*
L:Mc;B?
C v0@
k!v?n}
A.ygbc]65
}#}e/`
][`BI^
#l}8*U
0Od<T;
`:k[xz
Hrs9jy
99RI f
R`H8#I{
oy;Sg,
TL%)mm_
QTG!26=
I[^&gd
f%F1!un!D<
Z4#{i_
RWMl 
_:?L!s6
Ulc/Wc+
8q,DMuTT
>raXc[
d;k6g
TddOT}
wwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwww
wwwwwwwwwwww
wwwwwwwwwwwwwwwwwwwwwwwwwww
wwwwwwwwp
wwwwwwwwwwq
wwwwwp
wwwtDDDDp
wwwwwq
wwww
33330wp3
wwwwwp
wwwwGp
33330p333333
wwwtGp
wwwDD@
wwp0wwww
wwwtGp
wwp0wwww
wwwwwGp
pppwpDww
wwp0wwww
wwwwww
p0wwww
DDGwww
wwwppwwwDwp
wwwwwwww
p0wwww
wwqwwww
wwpDwp
wwwwwwpwppp0wwww
wwwwww
wwwwqwwww
wwwwwww
wwwwwwwwwwww
wwwwwwwwwwwwwwwwwwwwwwp
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity
version="2.7.0.0"
processorArchitecture="X86"
name="Wintellect.CrashFinder"
type="win32"
<description>Helps find crashes!</description>
<dependency>
<dependentAssembly>
<assemblyIdentity
type="win32"
name="Microsoft.Windows.Common-Controls"
version="6.0.0.0"
processorArchitecture="X86"
publicKeyToken="6595b64144ccf1df"
language="*"
/>
</dependentAssembly>
</dependency>
</assembly>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel>
</requestedPrivileges>
</security>
</trustInfo>
<dependency>
<dependentAssembly>
<assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="x86" publicKeyToken="6595b64144ccf1df" language="*"></assemblyIdentity>
</dependentAssembly>
</dependency>
</assembly>PA
PAPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADD
0$0+030A0Q0c0
1 1B1M1t1
3_4n4}4
8A9Q9]9j9
:::F:\:
;G;k;};
3&3E3O3t3
5!6S6X6
2E3U3l3
4*4f4}4
5=5B5G5*6L6^6
9$999N9k9
:C:N:V:s:
347a788
=&>1>C>h>
?7?G?q?
5+5l5|5
828R8h8z8
8'969<9_9
;.;9;D;S;\;g;x;~;
11&101:1D1V1s1}1
3P3V3`3t3
4 4&434C4d4l4
5#5G5S5
5>6D6P6c6l6}6
708P8\8
9*9P9e9
92:H:P:\:h:}:
;';.;:;S;s;
;+<1<Q<Z<
=-=<=m=s=
1<2\2o2
3+343j3
404E4J4P4`4s4
585R5k5q5w5
7=7Y7h7
7'8c8i8o8
8F9Y9e9k9t9}9
9(:Z:n:}:
=#=)=/=?=
>;?A?G?M?d?
060=0E0_0f0
1#1B1k1~1
2'2F2K2Q2W2s2
2Q3W3]3c3i3
434Y4^4d4m4y4
4'5,525E5Y5b5j5w5
6^6e6x6
9F9a9g9m9s9z9
:A:M:\:f:
;+;H;~;
<#<)<\<b<h<
='=H=Q=b=
>->F>M>W>
>m?s?y?
G0W0g0w0
1,1?1O1_1o1
252J2P2]2y2
2@3E3S3d3u3
3;4@4R4b4r4
5.5g5|5
6&626=6J6y6
71777H7
=8>F>V>w>
1-171O1
5%505v5
9'9C9f9q9
9e:s:{:
;+;<;^;n;
<-<J<o<t<y<
0;1G1x1}1
3.4Q4[4l4q4w4
5(5.545:5@5F5L5e5
5.6<6T6~6
;I<X<\<`<d<h<l<p<t<x<|<
==&=^=}=
6*7D7L7
: :V:c:y:
:%;0;6;T;
<,<><z<
=Y>e>|>
??3???V?
0"080A0]0b0
4,4X4^4
5#5.5_5h5
6=6]6b6
8L9Z9e9
9=:|:M;T;[;
=)>;>Y>l>y>
0G0l0}0
0*1P1_1g1y1
4C5Q9U9Y9]9a9e9i9m9q9u9y9}9
:!:%:):-:1:5:9:=:A:E:I:M:Q:U:Y:]:a:e:i:m:q:u:y:}:
2#2C2f2
7-7P7o7
7!8Q8m8
:<;B;H;N;
;5<M<k<,=:=M=
>B?I?Z?_?
6(787A7W7
:*;7;=;C;J;R;c;p;
=3>[>n>
?#???E?v?
4l5-686e6j6
637L8!9
6%8g8o8
9 9:9q9
=/>H>W>p>
2.2x2~2
5Y5h5~5
2B3w3B4d4
2-3D3\3i3
4,454<4I4V4q4
90:U:n:
<$<+<6<S<
95:<:M:x:
L0f0|0
0b1h1|1
2L3r3e4
8.9I9`9l9
;5;A;S;
<<P<r<
2I3N3Y3n3s3~3
5505a5
=(>1>W>p>
1"1'1!202{2
61666Y6g6z6
8%9.9?9[9|9
:I:O:e:j:
;+;<;W;{;
=T>[>6?T?j?t?
56(6<6V6
:%:?:<;y;
0L0h0{0
6+6J6Q6
>(?.?3?:?}?
7A8\8v8
;_;)<c<
3J3S3[3
8?9Z9n9z9
=%=3=:=@=X=
1"1'1-1E1<3
6757p7
4V5\5g5
6!6&616b6
6*929;9E9O9T9\9l9":=:Z<
6;7e7r7
<#=>=n=
5#5*505D5Q5d5n5s5
9@:Y:r:
;*;\;j;z;
525\5v5
0i1!2N3^3o3
7%7/7>7Z7a7z7
9W9`9~9
2c2-4Z4e4p4{4]5e5
>->W>z>
?#?A?L?i?
1/2M2W2
?%?5?G?W?|?
0+090@0J0[0b0i0o0x0
0?102R2_2
6!6/6J6Y6m6y6
7-8y8@9g9
>">x>}>
676=6f6l6
647A7K7^7w7
7>8i8|8
:j;1<A<
11/1O1_1{1
1;2F2g2r2
6(6{6(9j9
9c:.;r<
>,>J>P>
>0?=?n?{?
0K0X0}0
1&1Q1}1
2#2^2w2
3%4*454G4L4W4
6$606N6
;0;6;c;>=]=
3W4[4_4c4g4k4o4s4w4{4
5*606K6P6
617R7i7
===\=o=
0%0*0:0@0M0X0a0k0p0
1-1:1E1N1X1]1m1
2&212<2R2
>=?E?Z?e?
3"4;4d4i4
748:8U8
1=2C2g2
,;0;4;8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
1'2B2H2Q2X2z2
3%30393O3Z3t3
3$4)44494W4
7787R7n7
8(9.9Y9a9g9p9w9
;[>a>g>m>s>y>
?!?&?,?2?H?O?
0C0a0h0l0p0t0x0|0
0F1Q1l1s1x1|1
2 2j2p2t2x2|2
T1X1\1`1d1h1l1p1
979;F=J=N=R=V=Z=^=b=i=
>?>X>_>g>l>p>t>
?N?T?X?\?`?
0!0K0}0
0L1S1]1
3C5Q5W5q5v5
6#6+616;6B6V6]6c6q6x6}6
>#>/>8>@>J>P>V>u>
?L?Q?y?
0$0K0X0
4'4[4f4p4
7*7=7O7j7r7z7
8B8S8v8;9e9
<#<8<?<S<Z<r<~<
=%=,=9=\=q=
>)>A>g>
0(0-050;0B0H0O0U0]0d0i0q0z0
1 1&131S1Y1u1
8\9e9q9
:H:Q:]:t:z:
:;1;?;T;^;
;"<d<v<
9"9&9*9.92999M9n9t9
:E:O:w:
;!<+<{<
<_>p>x>~>
?3???L?S?
070F0K0l0q0
0#1)1B1H1
2;2H2T2\2d2p2
7#9;<b<o<m>a?
0J1W1l1~1
6 7,72787>7y7
808J8i8
929<9l9
<1<7<=<I<O<w<
=!=)=1=:=C=O=[=h=o=z=
2&2;2k2
2=3C3O3
0!00060D0M0\0a0k0y0
0[2b2h2
8M9Z;l;~;
<(<0<8=D=
<<(<d<l<}<
31>3N3i3
595C5L5W5l5s5y5
6j9q9C:`:
1$2P2x2
9a:W;_;
=5>;>K>
;D;N;f;
1`2f2r2
6)676g6
9%:=:Z:i:s:
:.;_;l;
<$<-<2<
=.=S=v=
=>B>]>
0-0H0y0
2%3H3k3
:4;^;f;};
>'>J>}>
?4?>?_?
5-575?5V5`5h5
6#6-656L6V6^6u6
9%:S:~:
1'10161B1Y1g1~1
2"2(2.22282H2T2Z2_2e2q2w2{2
33$3)3.3:3E3M3S3W3]3a3g3k3p3u3z3
4)444>4J4U4_4k4v4z4
6 707<7@7D7H7L7P7T7
8,888H8T8X8\8`8d8h8l8p8t8x8|8
9 9,9<9X9\9`9d9h9l9p9t9x9|9
: :$:(:,:0:4:8:<:@:D:H:L:P:T:X:\:`:d:h:l:p:t:x:|:
; ;$;(;,;0;4;8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
< <$<(<,<0<4<8<<<@<D<H<L<P<T<X<\<`<d<h<l<p<t<x<|<
= =$=(=,=0=4=L=P=T=X=\=`=
>(>,>8>H>T>d>p>
?(?4?8?<?@?D?H?L?P?T?X?\?`?d?h?l?p?t?x?
0 0$0(0,0004080<0@0D0H0L0P0T0X0\0`0d0h0l0p0t0x0
1 1$1(1,1014181<1@1D1H1L1P1T1X1\1`1d1h1l1p1t1x1|1
2@5D5H5L5P5T5X5\5`5d5h5l5p5t5x5|5
6 6$6(6,6064686<6@6D6H6L6P6T6X6\6`6d6h6l6p6t6x6|6
7 7D7H7
8 8$8(8,8084888<8@8D8H8L8P8\8h8t8
9,9D9\9t9
:4:L:d:|:
;$;<;P;T;l; <$<(<X<\<`<t<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
> >$>(>,>0>4>8><>@>D>H>L>P>T>X>\>`>d>t>x>
?$?@?D?H?L?
1 1$1(1,1014181<1@1D1H1L1P1T1X1\1
2$2(242@2D2P2T2X2\2`2d2h2l2p2t2x2|2
3 3$3(3,3034383<3@3D3H3L3P3T3X3\3`3d3h3l3p3t3x3|3
4 4$4(4,4044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
5 5$5(5,5054585<5@5D5H5L5P5T5X5\5`5d5h5l5p5t5x5|5
6,6D6\6t6
787<7T7l7
8,8H8L8P8T8X8\8`8d8h8l8p8t8x8|8
9 9$9(9,9094989<9@9D9H9L9P9T9X9\9`9d9h9l9p9t9x9|9
:,:D:\:t:
;4;L;d;|;
<$<(<,<0<4<8<<<@<D<H<L<P<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
?4?L?d?|?
0$0<0T0l0
1,1D1\1t1
242L2d2|2
3$3<3t3
9 9$9(9,9094989<9@9D9H9L9P9T9X9\9`9d9h9l9p9t9x9|9
9T:d:p:t:x:|:
:X;h;x;|;
< <$<<<T<l<
=(=,=0=4=D=P=T=`=d=h=l=p=t=x=|=
> >$>(>,>0>4>8><>@>D>H>L>P>T>X>\>`>d>h>l>p>t>x>|>
?4?D?P?T?l?
0 0$0(0,0004080<0@0D0H0L0P0T0X0\0`0d0h0l0p0t0x0|0
1 1$1(1,1014181<1@1D1H1
2 2$2(2,2024282<2@2D2H2L2P2T2X2\2`2d2h2l2p2t2x2|2
3 3$3(3,3034383<3@3D3H3L3P3T3X3\3`3d3h3l3
4 4$4(4,4044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
5 5$5(5,5054585<5@5D5H5L5P5T5X5\5`5d5h5l5p5t5x5|5
6(64686T6l6
7,7D7`7d7|7
8$8084888<8T8d8p8t8x8|8
9 9$9(9,9094989<9@9D9H9L9P9T9X9\9`9d9h9l9p9t9x9|9
: :$:(:,:0:4:8:<:@:D:H:L:P:T:X:\:`:d:h:l:p:t:x:|:
; ;$;(;,;0;4;8;<;@;D;H;d;|;
<<<L<X<\<`<d<h<l<p<t<x<|<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
>$><>T>l>
>D?T?p?t?x?|?
0 0$0(0,0004080<0@0D0H0L0P0T0X0\0`0d0h0l0p0t0x0|0
1 1$1<1T1l1
2,2D2\2t2
343L3d3|3
4$4<4T4
505@5L5P5T5X5\5`5
6 6$6(6,60646h6x6P8`8p8t8x8|8
9 9$9(9,9094989<9@9D9H9L9P9T9X9\9`9d9h9l9p9t9x9|9
; ;$;(;,;0;4;T<d<
> >$>(>,>0>4>8><>@>D>H>L>P>T>X>\>`>d>h>l>p>t>x>|>
? ?$?(?,?0?4?8?<?@?D?H?L?P?T?X?
5 5$5(5,50585<5@5D5H5L5T5X5\5`5d5l5p5x5|5
6 6$6(6,6<6@6D6H6|6
@5D5H5L5P5T5X5\5`5d5h5l5p5t5x5|5
6 6$6(6,6064686<6@6D6H6L6P6T6X6\6`6d6h6l6p6t6x6|6
l0p0t0L1\1|1
2 2$2(2,2024282<2@2D2H2L2P2T2X2\2`2d2h2l2p2t2x2|2
3 3$3(3,3034383<3@3D3H3L3P3T3X3\3`3d3h3l3p3t3x3|3
4 4$4(4,4044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
5 5$5(5,5054585<5@5D5H5L5P5T5X5\5`5d5h5l5p5t5x5|5
6 6$6(6,6064686<6@6D6H6L6P6T6X6\6`6d6h6l6p6t6x6|6
788<8@8D8H8L8P8T8X8\8`8d8h8l8p8t8x8|8
9 9$9(9,9094989<9@9D9H9L9P9T9X9\9`9d9h9l9p9t9x9|9
9 :$:(:,:0:4:P:T:X:\:`:d:h:l:p:t:x:|:
; ;$;(;,;0;4;8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
<(<,<0<4<8<<<@<D<H<L<P<T<X<\<`<d<h<l<p<t<x<|<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
0$0<0X0\0x0|0
1 1$1(1,101D1P1T1t1
2 2$2(2,2024282<2@2D2H2L2P2T2X2\2`2d2h2l2p2t2x2|2
4 4$4(4,4044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
5 5$5(5,5054585<5@5D5H5L5P5T5X5\5
6 6$6H6L6P6T6X6\6`6d6h6l6p6t6x6|6
7 7$7(7,7074787<7@7D7H7L7P7T7X7\7`7d7h7l7p7t7x7|7
8(8,8084888<8@8D8H8L8P8T8X8\8`8d8h8l8p8t8x8|8
9 9$9(9,9094989<9@9D9H9L9P9T9X9\9`9d9
:$:@:D:
; ;$;(;,;0;4;8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
< <$<(<,<0<4<8<H<X<|<
<D=H=\=`=p=t=x=|=
>$>4>8>H>L>P>T>X>`>x>
? ?0?4?D?H?L?T?l?p?
0 0(0@0P0T0d0h0l0p0t0|0
101@1D1T1X1\1`1h1
2(2,2<2@2H2`2p2t2
3 3(3@3D3\3l3p3
4$4(4,444L4\4`4h4
5 5$5(5,5054585<5@5D5L5d5h5
606@6D6L6d6h6
7 7$74787H7L7P7T7\7t7
8 8084888@8X8h8l8|8
9 9$9,9D9T9X9h9l9p9t9|9
:0:@:D:T:X:\:d:|:
;(;,;<;@;P;T;d;h;l;p;t;|;
<,<0<@<D<H<P<h<x<|<
=$=(=8=<=L=P=T=\=t=
>(>,><>@>D>H>P>h>l>
?(?,?<?@?D?H?L?P?X?p?
0 0$0(000H0L0d0t0x0|0
1(181<1L1P1T1X1\1d1|1
2 2$282<2L2P2T2\2t2
3(3,3<3@3D3L3d3t3x3
4$4(4,444L4\4`4p4t4|4
5(585<5L5P5T5X5\5`5h5
646D6H6X6\6`6h6
707@7D7X7\7l7p7
8 80848D8H8L8P8T8X8`8x8
9 9$94989<9@9D9H9P9h9x9|9
:$:(:,:4:L:\:`:h:
;4;D;H;L;P;X;p;
<4<D<H<X<\<`<d<l<
=$=4=8=H=L=P=X=p=
>$>4>8><>@>D>H>P>h>x>|>
? ?(?@?P?T?X?\?d?|?
0 00040<0T0d0h0x0|0
1 1$1(1,1014181@1X1h1l1p1t1x1|1
2$2<2L2P2T2X2\2`2d2l2
343D3H3L3P3T3\3t3
4<7D7H7L7P7X7t7
80888<8@8D8H8P8t8|8
8 90989<9@9D9H9P9l9x9
:$:,:4:@:`:h:p:x:
; ;(;4;p;x;
< <@<H<P<t<
=,=4=X=d=l=
> >4><>T>`>
? ?(?@?H?l?x?
040<0D0L0T0x0
181@1d1p1x1
2$2,282X2`2t2
3,343@3`3h3t3
4$4,4D4P4p4|4
50585D5d5p5
6$6<6D6L6X6x6
7(70787@7H7P7X7`7l7
8(848T8`8
9 9@9L9l9x9
:$:,:8:X:d:
;(;0;8;@;L;l;x;
< <,<L<X<x<
< =4=<=D=T=t=|=
> >4>@>H>`>h>p>x>
?0?P?X?`?l?
0 0@0H0P0X0d0
1 1@1L1l1t1
242@2`2l2
3$3<3H3h3t3
404<4D4\4d4p4
5 5(5@5L5l5t5
6 6(646T6\6
7$707P7\7|7
8$8H8h8p8x8
9$9,949<9D9L9T9\9d9l9t9|9
: :(:@:L:T:l:x:
;,;4;@;`;d;h;l;t;
<(<H<T<t<
=$=0=h=
>(>D>H>h>
?(?H?h?
080@0D0\0`0p0
1 1(10181<1D1X1`1t1
202P2l2p2
383X3x3
4 4(444T4`4
585@5H5P5\5|5
5 6(646T6`6
7$707P7X7d7
8 8,8L8T8\8d8p8
9,989\9|9
:8:@:L:l:t:|:
; ;,;L;X;x;
<(<H<P<X<d<
= =@=H=P=X=d=
>(>L>l>t>|>
0 0<0X0p0
1,1L1t1
505T5t5
5h6l6p6t6x6|6
707T7x7
909P9x9
<$<,<<<L<T<\<l<
=$=(=0=t=
>8>T>l>
? ?<?X?|?
4$4,444<4D4L4T4\4
:(:L:X:\:`:d:h:p:t:
=X=\=|=8><>
? ?$?(?,?0?4?8?<?@?D?H?L?P?T?X?\?`?d?h?l?p?t?x?|?
0@4T4p4
6<6T6l6
6,7074787<7@7h7t7x7
808P8h8
949P9h9
STATIC
BUTTON
SCROLLBAR
AfxWnd90su
AfxControlBar90su
AfxMDIFrame90su
AfxFrameOrView90su
AfxOleControl90su
AfxOldWndProc423
USER32
YaccParent
accChildCount
accChild
accName
accValue
accDescription
accRole
accState
accHelp
accHelpTopic
accKeyboardShortcut
accFocus
accSelection
accDefaultAction
accSelect
accLocation
accNavigate
accHitTest
accDoDefaultAction
#32768
Afx:%p:%x:%p:%p:%p
Afx:%p:%x
commctrl_DragListMsg
KERNEL32
comctl32.dll
comdlg32.dll
shell32.dll
tDelete
NoRemove
ForceRemove
mdiclient
f:\dd\vctools\vc7libs\ship\atlmfc\src\mfc\winfrm.cpp
ToolbarWindow32
ReBarWindow32
msctls_statusbar32
f:\dd\vctools\vc7libs\ship\atlmfc\src\mfc\winctrl2.cpp
pRecent File List
File%d
Settings
PreviewPages
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer
NoDrives
RestrictRun
NoNetConnectDisconnect
NoRecentDocsHistory
NoClose
Software\Microsoft\Windows\CurrentVersion\Policies\Network
NoEntireNetwork
Software\Microsoft\Windows\CurrentVersion\Policies\Comdlg32
NoPlacesBar
NoBackButton
NoFileMru
ntdll.dll
kernel32.dll
%s%s.dll
f:\dd\vctools\vc7libs\ship\atlmfc\src\mfc\appcore.cpp
software
Software\Classes\
system
Software\
f:\dd\vctools\vc7libs\ship\atlmfc\src\mfc\viewform.cpp
eShell32.dll
f:\dd\vctools\vc7libs\ship\atlmfc\src\mfc\viewcore.cpp
Marlett
f:\dd\vctools\vc7libs\ship\atlmfc\src\mfc\auxdata.cpp
combobox
System
r%s\shell\open\%s
%s\shell\print\%s
%s\shell\printto\%s
%s\DefaultIcon
%s\ShellNew
command
/p "%1"
/pt "%1" "%2" "%3" "%4"
ddeexec
[open("%1")]
[print("%1")]
[printto("%1","%2","%3","%4")]
NullFile
[printto("
[print("
[open("
InProcServer32
f:\dd\vctools\vc7libs\ship\atlmfc\src\mfc\filecore.cpp
{%08X-%04X-%04X-%02X%02X-%02X%02X%02X%02X%02X%02X}
commdlg_SetRGBColor
commdlg_help
commdlg_ColorOK
commdlg_FileNameOK
commdlg_ShareViolation
commdlg_LBSelChangedNotify
tooltips_class32
UxTheme.dll
%2\CLSID
%2\Insertable
%2\protocol\StdFileEditing\verb\0
%2\protocol\StdFileEditing\server
CLSID\%1
CLSID\%1\ProgID
CLSID\%1\InprocHandler32
ole32.dll
CLSID\%1\LocalServer32
CLSID\%1\Verb\0
&Edit,0,2
CLSID\%1\Verb\1
&Open,0,2
CLSID\%1\Insertable
CLSID\%1\AuxUserType\2
CLSID\%1\AuxUserType\3
CLSID\%1\DefaultIcon
CLSID\%1\MiscStatus
CLSID\%1\InProcServer32
CLSID\%1\DocObject
%2\DocObject
CLSID\%1\Printable
CLSID\%1\DefaultExtension
%9, %8
mscoree.dll
KERNEL32.DLL
(null)
((((( H
h(((( H
H
HINTDATA
C:\Program Files (x86)\Microsoft Visual Studio 9.0\VC\atlmfc\include\afxwin1.inl
Exception thrown in destructor
%s (%s:%d)
%s (%s:%d)
SYSTEM
No module at that address
No function at that address
Courier New
Symbol type :
SymNone
SymCoff
SymPdb
SymExport
SymDeferred
SymSym
SymDia
**UNKNOWN!!!!!
dShowDisplacements
InsertText
OneLine
ConfirmDeletions
ShowFullPaths
Bugslayer
C:\Program Files (x86)\Microsoft Visual Studio 9.0\VC\atlmfc\include\afxwin2.inl
SysTreeView32
Bottom
Status
\winhlp32.exe
Apartment
HINTDATA
IDR_MANIFEST
Helpful Hints for Maximizing Your CrashFinder Pleasure
- This version has wondeful updates from Scott Bloom, Ching
Ming Kwok, Jeff Shanholtz, Rich Peters, Pablo Presedo,
Julian Onions and Ken Gladstone! They all added lots of
great code and suggested some the features for
CrashFinder. Many thanks to all of them for extending
CrashFinder!
- Please read my book, "Debugging Applications for
Microsoft .NET and Microsoft Applications" for a complete
discussion of CrashFinder.
- In a nutshell, CrashFinder can help you find the source,
line, and function where a crash occured when you only
are given the a hexadecimal address from a beta tester,
or worse yet, your boss!
- A CrashFinder Project is an EXE and it's associated DLLs
and OCX's. Create a new CrashFinder Project and add the
main EXE with all the DLLs/OCXs it loads by pressing Ctrl+A
to insert them. After all the binaries are loaded, press
Ctrl+F to find the source, line and function of any
hexadecimal crash address.
- You need to make your release builds with debug symbols
by setting the options in your VB 6 project or VC makefile.
A program compiled without debug symbols should never
leave your shop.
CL.EXE -> /Zi
LINK.EXE -> /DEBUG /OPT:REF /OPT:ICF
- TURNING ON DEBUG SYMBOLS DOES NOT MEAN
THAT YOU ARE DOING A DEBUG BUILD. THE
DEBUG SYMBOLS ARE IN YOUR PDB FILES SO
UNLESS YOU ARE GIVING THOSE TO YOUR
CUSTOMERS, YOU ARE NOT GIVING AWAY ANY
SECRETS.
- You should keep copies of the binaries that you send out in
a very safe place. This way CrashFinder will find any
addresses correctly with exactly what is out in the field.
You should put your .PDB files with the binaries as well.
- To keep your relationship from crashing, you should give
your partner a big hug and tell him or her that you love
them every day.
Ctrl+N
&Open...
Ctrl+O
Recent File
&Toolbar
&Status Bar
&Options
&About CrashFinder...
Ctrl+N
&Open...
Ctrl+O
&Close
Ctrl+S
Save &As...
Recent File
Ctrl+C
&Find Crash
Ctrl+F
&Add Image
Ctrl+A
&Remove Image
Ctrl+R
&Image Properties
&Toolbar
&Status Bar
&Options
&Window
&Cascade
&Arrange Icons
&About CrashFinder...
About CrashFinder
MS Sans Serif
John Robbins
www.wintellect.com
Debugging Applications for Microsoft .NET and Microsoft Windows
Copyright
1997-2008
CrashFinder
CrashFinder Options
MS Sans Serif
Show full paths in project tree controls
Confirm deletions from projects
Show source and function displacements
One line result text in Find panel
Cancel
Append new searches in Find panel
Properties for :
MS Sans Serif
Hexadecimal load address
Cancel
Please note that changing the load address is only for the life of the current CrashFinder Project. The load address is always initiallly set to that of the binary image when the CrashFinder Project is first loaded.
MS Sans Serif
Hexadecimal Address(es):
CrashFinderf
CrashFinder Project
CrashFinder Project (*.cfp)
Antivirus Signature
Bkav Clean
Lionic Clean
tehtris Clean
MicroWorld-eScan Gen:Variant.Zusy.417103
FireEye Generic.mg.33ce0628fb349731
CAT-QuickHeal Clean
ALYac Trojan.Agent.Emotet
Cylance Unsafe
Sangfor Clean
K7AntiVirus Trojan ( 0058decb1 )
BitDefender Gen:Variant.Zusy.417103
K7GW Trojan ( 0058decb1 )
CrowdStrike win/malicious_confidence_100% (W)
Baidu Clean
VirIT Trojan.Win32.Emotet.DGM
Cyren W32/Emotet.EHE.gen!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 Win32/Emotet.CV
APEX Malicious
Paloalto generic.ml
ClamAV Win.Trojan.Generic-9941538-0
Kaspersky HEUR:Trojan-Banker.Win32.Emotet.pef
Alibaba Trojan:Win32/Emotetcrypt.ca8f63a2
NANO-Antivirus Trojan.Win32.Mansabo.jngssl
ViRobot Clean
Avast Win32:BotX-gen [Trj]
Tencent Trojan.Win32.Mansabo.ic
Ad-Aware Gen:Variant.Zusy.417103
TACHYON Trojan/W32.Mansabo.587264
Emsisoft Trojan.Emotet.Gen.A (A)
Comodo Clean
F-Secure Trojan.TR/AD.Nekark.mbmai
DrWeb Trojan.Emotet.1153
Zillya Trojan.Emotet.Win32.62333
TrendMicro TrojanSpy.Win32.EMOTET.YXCCOZ
McAfee-GW-Edition BehavesLike.Win32.Emotet.hc
CMC Clean
Sophos Mal/Generic-S + Troj/Emotet-CZQ
Ikarus Trojan-Spy.Emotet
GData Win32.Trojan.BSE.1TKINNF
Jiangmin Trojan.Mansabo.chu
Webroot Clean
Avira TR/AD.Nekark.mbmai
Kingsoft Win32.Troj.Undef.(kcloud)
Gridinsoft Clean
Arcabit Trojan.Zusy.D65D4F
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan-Banker.Win32.Emotet.pef
Microsoft Trojan:Win32/Emotetcrypt.IH!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win.BotX-gen.R477821
Acronis Clean
McAfee Emotet-FSQ!33CE0628FB34
MAX malware (ai score=83)
VBA32 Trojan.Emotet
Malwarebytes Trojan.Emotet
Zoner Clean
TrendMicro-HouseCall TrojanSpy.Win32.EMOTET.YXCCOZ
Rising Trojan.Emotet!1.DCA8 (CLASSIC)
Yandex Trojan.Emotet!dbHcRKq3+P8
SentinelOne Clean
MaxSecure Trojan.Malware.74088369.susgen
Fortinet W32/Emotet.1153!tr
BitDefenderTheta Clean
AVG Win32:BotX-gen [Trj]
Panda Trj/Genetic.gen
No IRMA results available.