Edit C:\Windows\SysWOW64\verifier.dll
MZ? ÿÿ ¸ @ ð º ´ Í!¸LÍ!This program cannot be run in DOS mode. $ ïoQ4«?g«?g«?gvñòg¬?gvñôg¨?g«>g"?gvññg¬?gvñõgª?gvñíg??gvñögª?gvñógª?gRich«?g PE L øJPT à ! z T ° ? 3 @A ? B $¢ ( À Ø " ?- Ð D) Ð ÐT \ .text Rx z `.data Ä ? X ~ @ À.idata B Ö @ @.rsrc Ø À è @ @.reloc D) Ð * ø @ B °` a b c °c g Pi ? p? °? P? à? °? P? p? ? à? À? ? Ð? ð? 0? p? @ 0¡ ¢ p¢ ?¢ ?¢ à Àà °Ú ðá Àå @ù pù ° Ð ? p ° P ? Ð Ð ? P Ð P! p+ , °O a e °f @i ðj ?k ? ?? °? Ð? ð? Ð? ? à? ? @? p? ? ?? Ð? ð? À£ À« @¬ À¬ @ Ð P® Ю ¯ `¯ ?¯ ௠?° ± À± `² p³ г p´ à´ Pµ ðµ · À· à· ?¸ P¹ p¹ » p» `¼ ?¼ ?¼ 0½ н P¾ ྠ`¿ À ?À Á ?Á  ? à pà ÀÃ Ä ?Ä àÄ @Æ `Ñ àÑ Ò `Ó °× @Ø àØ ?Ù Ú àÛ pÜ Ý ?â Ðè @é ê ñ àñ °ó ðó Põ ?õ Ðõ ÷ ÷ Ðø Pù ðú ü ý `þ ° ` À 0 p Ð ` ? à P À 0 Ð À 0 ? à @ ð p à ` ð ? ° ? ð P 0 0 À 0! °! 0" À" 0# °# 0$ °$ % % & à& Ð' ( ?) `* À* `+ à+ @- ?. / / à0 1 2 P2 P3 ?3 ?4 À4 ð4 5 P5 Ð5 @6 ð6 7 P8 9 °9 `: ; ; 0< À< P= à= p> Ð> ? p? Ð? `@ À@ A `A B B 0C pD E ÐE F PG °G H `H ÀH I pI ÐI J ?J àJ @K K L `L ÀL M N ?N àN 0O ?O àO @P °P Q pQ ÐQ 0R ?R ðR PS àS ?T àT PU °U V `V ÀV W ?W ÐW PX ÐX pY Z ÀZ [ ?[ ð[ @\ °\ ] p] à] @^ ^ _ ` P` ?` pa Pb 0c àc d pe àe Àf g °h `i ði Pj j ?l @m ðm pn o @o po ðo pp p @q ðs t t t 0t @t `t pt Ðt àt ðt u u u 0u Àv x z øJPT % ,U ,I ?æØæ * F a u l t I n j e c t i o n I n c l u d e D l l s F a u l t I n j e c t i o n E x c l u d e D l l s F a u l t I n j e c t i o n T i m e O u t F a u l t I n j e c t i o n P r o b a b i l i t y AVRF: fault injecting call made from %p AVRF:FINJ: invalid fault injection class %X Not used. Current thread using the heap Last thread that used the heap Heap handle multithreaded access in HEAP_NO_SERIALIZE heap heap handle with incorrect signature \ K e r n e l O b j e c t s \ H i g h C o m m i t C o n d i t i o n Page heap: pid 0x%X: page heap enabled with flags 0x%X. Process heap handle attempt to destroy process heap Size requested extreme size request Address HeapRoot Page heap: freeing a null pointer Page heap count Actual count process heap list count is wrong Corruption Address Block size Heap block corrupted header block already freed corruption address corrupted infix pattern for freed block Heap owning the block Heap used in the call corrupted heap pointer or using wrong heap corrupted suffix pattern corrupted prefix pattern Corrupted stamp corrupted start stamp corrupted end stamp Exception code exception raised while verifying block corrupted heap block heap signature heap block virtual storage list entry list head list count AVRF: Reached the end of heap list without finding heap index %x. Total number of heaps %x heap list entry AVRF: EntryContents.Blink = %p, expected %p VerifierRegisterLayer AVRF: Spy [%s, %u]: %X VerifierRegisterBasicsLayers VerifierUnregisterLayer VerifierUnregisterBasicsLayers This verifier stop is continuable. After debugging it use `go' to continue. This verifier stop is not continuable. Process will be terminated when you use the `go' debugger command. =========================================================== VERIFIER STOP %p: pid 0x%X: %s %p : %s %p : %s %p : %s %p : %s =========================================================== %s =========================================================== AVRF: Noncontinuable verifier stop %p encountered. Terminating process ... AVRF: Terminate process after verifier stop failed with %X AVRF: Invalid LayerDescriptor or BreakDecriptor passed for Stop code 0x%X AVRF: Invalid Stop code 0x%X passed to VerifierStopMessageEx AVRF: Failed to initialize logging and stop support %s AVRF:bogus string length, overflow AVRF:Failed to save message into stop list StopProcessing stop code a d v a p i 3 2 . d l l RegCreateKeyExW RegCloseKey RegQueryValueExW RegSetValueExW RegDeleteValueW S O F T W A R E \ M i c r o s o f t \ W i n d o w s N T \ C u r r e n t V e r s i o n \ I m a g e F i l e E x e c u t i o n O p t i o n s \ G l o b a l F l a g AVRF: settings: result %u %x 0 x % 0 8 X V e r i f i e r F l a g s { 9 7 6 0 9 4 1 A - 8 D A 5 - 4 d b e - 8 4 3 B - 0 E B D 3 7 6 C A B 0 2 } H a n d l e s B a s i c s { 1 5 9 D 6 0 E C - F 4 5 9 - 4 5 6 b - A 2 7 B - 1 0 7 6 A D 5 9 F 8 F 4 } L o c k s { E D D A 9 6 D B - D 2 1 6 - 4 6 7 d - B E 3 C - 8 6 0 3 7 4 5 E D A 4 3 } T L S { 8 A 7 0 B 8 A 4 - 4 F A 6 - 4 1 c 3 - 8 5 E E - 5 9 5 F C B 3 E 1 0 5 1 } M e m o r y { F 8 6 B 0 2 2 F - E 5 8 9 - 4 e 8 f - B 0 D D - 6 B 7 A F 9 D 7 1 A 5 9 } E x c e p t i o n s { 9 7 0 b d 2 8 7 - 2 e 5 a - 4 a 0 6 - 9 0 8 4 - 9 e 3 9 4 d 4 c 2 6 9 7 } D i r t y S t a c k s M i s c e l l a n e o u s { 0 2 A 5 B 4 0 C - 2 F 2 2 - 4 4 0 9 - B B 3 7 - 7 E F 0 D 3 F 3 4 A 8 8 } D a n g e r o u s A P I s { d e 3 5 a 0 c 0 - d 3 b 8 - 1 1 d 9 - 8 c d 5 - 0 8 0 0 2 0 0 c 9 a 6 6 } T i m e R o l l O v e r { F 1 5 F C 2 4 E - 5 3 A 0 - 4 4 4 D - 8 D 2 8 - F 7 6 9 7 E D D 9 C 8 3 } T h r e a d p o o l { 5 F E 3 2 3 7 2 - C E 7 1 - 4 3 f 9 - B 7 5 D - 6 A D 4 B 1 B 0 8 D 6 A } I n p u t O u t p u t { 8 1 E E C 8 D A - 0 E 6 1 - 4 9 4 2 - 8 0 3 7 - 9 A 6 C 4 A 8 6 5 1 0 D } L e a k { 6 3 3 5 D 1 C F - 7 9 5 5 - 4 1 4 e - 8 C 6 A - 1 A 4 0 A C 9 3 5 7 A C } S R W L o c k n t d l l . d l l LdrGetProcedureAddressForCaller AVRF: AVrfpLdrGetProcedureAddress (%p, %s) -> new address %p P a g e H e a p S i z e R a n g e S t a r t P a g e H e a p S i z e R a n g e E n d P a g e H e a p R a n d o m P r o b a b i l i t y P a g e H e a p D l l R a n g e S t a r t P a g e H e a p D l l R a n g e E n d P a g e H e a p T a r g e t D l l s P a g e H e a p V i r t u a l M e m o r y P e r c e n t P a g e H e a p C o m m i t M e m o r y P e r c e n t AVRF: failed to initialize call trackers (%X). AVRF: failed to initialize FreeMemoryCallBacks (%X). AVRF: VerifierRegisterBasicsLayers failed. AVRF: VerifierLoadEssentialStrings failed, status %#x AVRF: NtQuerySystemInformation (SystemBasicInformation) failed, status %#x O A N O C A C H E 1 AVRF: failed to define OANOCACHE variable (%X). AVRF: Failed to initialize verifier.dll provider for %ws with flags 0x%X. AVRF: verifier.dll provider initialized for %ws with flags 0x%X AVRF: Exception during verifier.dll init for %ws with flags 0x%X. T h r e a d @, @ `&