MZ@ !L!This program cannot be run in DOS mode. $pZ4f 4f 4f = )f Ye6f Yb3f 4g zf Yg0f Yf5f Yo3f YЙ 5f Yd5f Rich4f PEdЛW" DZP i`AT8$8``.textBD `.rdataL@`BH@@.data@ @.pdata@@.rsrc8@@.reloc$@BH(R u =tLQLSRPyDLT3ҹqRGL#TPER%&m,vuc=u3LTRH HtFQH%6=Ԥu-LSQ)u H ĞIH(Hl$Ht$WH IHuE33u=u=LƋHHl$0Ht$8H _WH\$UVAVHH@3HM3HEHu(fuEfEPyL5SD3PLMLrSPL SL TPLEHE(E3HD$ HZSEqAR3yLTHM(LE H5T5y LHT^D9u LTADDFPHM(HtOH9utHMO3HMOH\$pH@A^^]HHXHxL`Lp UHHp H+H3H` E3fED3Ld$`HEHTEE3fEEt$HELd$pALeE3Ld$hDe@LefDeHD$ ,2HM-HMNJy DL`OLMMuLS3ҹQJKfD95/uH2؅y LSgLMHEE3HHD$ ,؅yDLMHEwE3HD$ HS,؅xHMwLEgHS.؅y LS}gv&HMwDGHR0؅y L$SHMwLEHHS2xcLEH `L+EHHtAft fHHuHu HAfD1Eɋ1CVAIHMwLEoHR$.؅yLKRD3ҹHEotpHiȀigHE'L5HD$HE3HH HD$@HHE3HD$83H.HD$0Lt$(Lt$ H؅y LRtw4HMwHHM~HyDLR3ҹHAL9uteH %`3LEHI0$HHMHtGHMHtGHMwHtGHĈA^_[]HL$USWHH@3HM3H}0H}(f}HEEfE} IG؅yLDOD3ҹdGLEHE0E3HD$ HIAI)؅y L"LHM0HJE3-؅yLQ3ҹG`E3HE(E3HD$ HQAI)x6HM(LE H7R+x9} tLZRFHM(HtRFHM0HtCFH9}tHMCF3HM?FH@_[]H\$UVWHH@33Hfu3HEEfEfuHEEfE\FyDLQ3ҋEH@RHMELM(3LE3$F؅yL7R3ҋDEiHaRHMEHM(LM0E3HUE؅y LURHU(HHE09F3ҋϋ؅y LRLRQEދH\$`H@_^]@SVWH`HnH3H$PH AH+IHAHLD$@HD$0HD$ &C3uB NH|$0t+|$@1CVAt nHGAI;A HAGɅxA΅t0L+LL$DL+IHtAft fHHuHuHtf3H$PH3]0H`_^[@SH`Hd$pWD$Pt{HD$PE3HD$HE3HD$p3HD$@HHd$8HeHD$0Hd$(Hd$ C؅yDLQ3ҹC3HL$pHtAH`[HHXHpHxUAVAWHH@ HwH3H0 3HL$x3҉t$pDF`23Ht$PLGQHD$X3HD$`ffuf ffAH4L Q33DFjAHu @$>AyDL*Q3AoBeH%0L_QAHADH@J؅yDLfQ3A+BLE333@HHu4?LQ3DAA?؁NgHA?u4?LQD3AA?؁N LME3HQHs?uI?LQHMf?LQHM}؅yLQD3A&AHt$0D$(HME3ɉ\$ @DC ?Hu>LQ(H>AHM?؅y LR|AH?uv>L?RLRIH؅y LR.>H>HIHL$0LD$(LRHEH HD$ !؅y L@SHD$PD$phHD$HH HD$pE3HD$@HHt$8E3Ht$0t$(t$ +>u=L2SHL$PHt =Ht$PHL$XHt =Ht$XHt y H=H0 H3+L$@ I[ Is(I{0IA_A^]H\$UVWHH@3HM3HEH}(f}EfE>yLRD3ҹ>VLEHE(E3HD$ HSAq{!y L|SHM(LE HS#y LS9u DHM(HtD>H9}tHMD>3HM@>H\$pH@_^]HHXHpHxUATAUAVAWHHHHsH3HE3HL$P3Ll$8ALl$@H\$HA@Dl$0fDl$PHD$RD$ZfD$^fDl$p=yLQD3ҹ=LD$XHD$8E3HD$ HQC y LDRHL$8LD$0HS"y LRDD$0HL$8A]=AHT$p3j;u9;LR3Dȹ=:DADNULD$XHD$@E3HD$ HRAIy LhSHL$@LD$HHT$p%y!DLS3ҹ<H\$HH\$HHHfD9,su ADfHSA H C;u0tG C;tG  CD;ufF9,{t A;wF명OG D;rfD,K.+DžtDFH H K DFH HMHC=;HT$pfD9+HL$`;HL$@HT$` <EHL$8HtP;HL$@Ht@;HteH %`3LD$HHI0;L9l$XtHL$P;3HL$P;AHH3p'L$I[0Is8I{@IA_A^A]A\]HL$@L2"WLSR'AHtPO!4LRH\$H|$3HBH=LDϺWDGILEx*IDMtf99t HHuHtML+DLExRIK CDI+t6HI+MLH+Mt ftfIHHuHu HAzf9H\$AH|$LD$LL$ SUVWH(3HBH=HWGx5HZHHLL$h>9xHH;wuf,^f,^zHtf.H(_^][H\$Hl$Ht$WATAUAVAWH E3IHLEAH`HHfD9,AuJH;HH;eH %`3DDHI0f9HHHuL4Q3ҹ8M3Hb(f Dvf;uEAEHf93ttfD9+t f7AHAH]H7uHCfuI;t v fD9kuHftHfHEfufD/A9LKP3ҹ 8LMteH %`3HI08L.LO3ҹ7WH\$PHl$XHt$`H A_A^A]A\_LSH`IcICICWICE3ICE3IcH>IC3IcHIcD$P7؅yDLO3ҹ173ۋH`[@SH0tH%L=PI6HHuLfO3ҹ6NH5؄u LiOH 53ҹu LpODLOD$ q63H0[HHXHhHp HPWH 3H9-OuLP3ҹ)6"H Qf9)t HHuHeH %`H+H\$83ffHI0DD6HHu L-PL3HX%LD$8HO4fH{QG,5^GNEGG0 %H ~H}4tDLO3ҹJ5L+P3ҹ65eH %`L3HI0F5AWL7O3ҹ5H\$03Hl$@Ht$HH _H\$Hl$Ht$WH033H91vbHk|+ uOH LKDD+L͋T+HD$ 33ɅL+ tDLhP3ҹk4;;rH\$@Hl$HHt$P%@H0_H\$Hl$Ht$ WATAUAVAWH0E3H LHLHuLYP3WH͋fD9 t HHuHLH OL+HLD$`fD9 t HHuHeH %`E@=H+AHI0L$U3GLAAL+HItA0ft fHIuAzMuHAfD>D˅y LN|HI;vfD?AAL+HBHtA>ft fHHuHuHAfD?˅y LNA*L)NWLMD3ҹ/LcM3ҹ/WH\$@Hl$HHt$PH A_A^_H\$UVWATAUAVAWH0E3MLMuLN3ҹO/WHHu LFNغA܋fD9 t HHuWHuIHH+IHH$yDL9N3ҹ.eH %`HELH$3HI0/HHuL@N3ҹ.9L$HMMeI؅yLBND3ҹR.H-eH %`3MHH+HD$ HHI0HHuv;.eH %`E3L$3M.HI0`.IHuLM3ҹ-bLIH؅GDLMD-Iu E3M.!H$E3M.H;sSeH %`H+3HI0L]-IHeLD$ HSIHp؅y LKHeH %`L?3HI0s-IHH HHWEDGEx]HvDfD(EHt.H+LL+H:HtAft fHHuHu HAzfD) HtfD(AEAeH %`L3HI0x,H\$pH0A_A^A]A\_^]H\$Hl$Ht$WH0HIHH -I{+3u33fl$ HHD$"HL$ D$*fD$.+HHL$ D,hH,H2+uHM+FFH,H+uH++F$H,H*uH +HL$`H\$@3Hl$HHt$PH0_H\$UVWATAUAVAWHl$HHqxH3HE33H]LH]L]lj]HEHEHE HuLbK3ҹ*WH9teH %`3AHI0#+LHuLDJ3ҹ*oeH %`3AHI0*LHuLJ3ҹV*HuI9;LEI؅a3H9]%3H]HEHEHteH %`3LEHI0*H],LEHMI؅Hu3HtPMLd$ Hy LK&HEMLMHD$ IITyL9KD3ҋl)H9]]MEEEf~MEu0fH~HH fuH0fuHE8u Hr$AHkBL9MBL9EBD9 AI9EDžt6AGFDLI3ҋ(Hu,DLtI3ҋ(LJ3ҋ(@3HteH %`3LEHI0(H9}teH %`3LEHI0{(eH %`M3HI0c(MteH %`M3HI0F(HMH3PH$HĠA_A^A]A\_^]H\$Ht$ HL$UWAVHHpE3HM3DuEF(^3fDuHEAEfELu Lu0LE HU0؅y!DLI3ҹp'  eH %`3AHI0'HHuLF3ҹ*'eH%0LILM H@L$ H؅yDLI3ҹ&HHM&HMHUE3E35'HEE0WHEHMLuEE@'HMM&yDLI3ҹb&yDLIaAL9u teH %`3LE HI0O&L9u0teH %`3LE0HI00&HteH %`L3HI0&L\$pI[(Is8IA^_]HL$USVWAVAWHHXE3HM3L}8fD}AHEEEAfEL}PL}@L}HH%LEHE8E3HD$ HIAO؅y LC*7HM8LEPHIHuP؅HHM8$LEHE8E3HD$ H;AI؅xHM8LE@H/؅y DL*3ҹ$Lu@Lu@MtMHUHI)H}HL<3ҹ$WyDL&I3ҹi$dHt$fD9?tHM8LH} ؅y$L8I'HHM $HM8HU$A@LwHD3ҹ$y!L9}8t*HHM#HM8HUF$HM8Ht#Ht!eH %`3LEPHI0#Lu@H}HMteH %`3LE@HI0#H}HHteH %`3LEHHI0#HXA_A^_^[]LI[IKWH@3IK3f|$0ICD$:fD$>I{"LD$8HD$PE3HD$ HF؅yDL%H3ҹ" HL$P#HL$PHt}"H\$XH@_H\$Ht$HL$UWAVHH@3E3Lu IfDuHHEEfEHMHM"LEHE E3HD$ HEAN؅y L'D3ҹ"HM HGLF ؅y LGHM H HL$ ؅y LHeH%0D@@EuLPH3ҹ!@%HM HYH؅y L_HTAHM Ht(!LF3ҹP!WH\$hHt$pH@A^_]HHXHpHxUHXHH[nH3HHd$@HL$`Hd$H3HA HuLD$HHT$@Ht$H؅yL;3ҿDȋ HT$@HL$`H3ҋ؅y L;Hd$XHIHLHHD$PH CHAHD$8HD$PHd$0Hd$(HD$ EtDL93ҋ HHL$`؅yL;3<3HteH %`3LD$HHI0H|$@teH %`3LD$@HI0yDLF3ҋeH%03eH %`AX@HI0HHuL>3ҋB?L qF\$ LFH؅yDLF3ҋLE333HHu$LFD3ҋ@T$`3tHMDƒ9uHIuҁ(=uMHL$`3ɅҁwˆH5uHu(&L'FeLF3ҋ)\L=F3ҋ3eH %`L3HI0!HH3( L$I[IsI{ I]H\$3HBADI;AWEGEx?DHt+L+L+IHtAft fHHuHuHAzHtfH\$AH\$Ht$H|$UATAUAVAWHHp3ME3HEfDMMEHfEDAHLuPMMMIЋfD9 t HHuHwLHL+HfD9 t HHuHRH+J I;0HQH;HHHeH %`LHI0HHuLE3ҹ<"HLEHHt$ MH؅y%DL}C3ҹہHHMLMLBEHEE0WHELELeAE@IE ؅y[DLp 3ҹsDALdDA!AL"DAWL!9D3ҹ13HteH %`L3HI08LC3ҹ L\$pI[0Is8I{@IA_A^A]A\]LI[IkVWAVH@33fl$0MICHD$:HfD$>l$hHHIKA(OeH %`DE3HI0HHuLC3ҹBrHD$hLHD$(HT$0AD$ H؅xu G ALΉD$ LC3ҹeH %`L3HI0LnB3ҹ H\$`Hl$pH@A^_^LI[IsECWH@33ft$0HICHىD$:fD$>Ht\HtWIK$DNE3HD$`DL$(HT$0HD$ H؅yLωD$ L4C3ҹދLA3ҹ H\$PHt$XH@_LI[IkIsWH@33fl$0IICHD$:HfD$>HtqHtlHtgIK\HHf9,CuEAD$(HT$0E3H\$ H؅yLωD$ LB3ҹ/݋L@3ҹ H\$PHl$XHt$`H@_H\$WH`H,eH3H$PHL$0D3_3LD$0DH|$ HW+I؅yL$BD3ҹf9D$0vL7BDL$0HD$8HfEcH_HVIK5eH %`D3HI0HHuL?3ҹ$HD$xLHD$(HT$0At$ H؅y LωD$ L?3ҹ}t!LL@3ҹ{D$xLu HIMt=H=w5HIAܾWHtfD9!t HHuHtHH+ IWޅxHI̅y%DLw@3ҹ*ہHYH;eH %`L3HI0gIHHuL43ҹHAHCH;Gx>AHt+H+L+HHtAft fHHuHuHzHtfD!yDL23ҹS$AL?3ҹ2eH %`L3HI0=L<3ҹ L\$@I[0Ik@IA_A^A\_^ffH; auHfuHbH(uH(@SH H3SHRHȺ H [H%HL$HH -aHbHD$HE3HT$PHL$HHD$@H|$@tBHD$8HD$XHD$0HD$`HD$(H`HD$ LL$@LD$HHT$P3c#HJaHHaH9aHH.aHaH_H$H`_ __HkH _HHkH _H|_HHkH _Hi_HHkH M_HLhHkH @_HLhH [HĈH\$ UHH HeH2-+H^H;HMzHEHEH1EH1EdHH1ETHMH3EH3HM HEE HH H3E H3EH#H3-+H;HDH]^H\$HHHV^H ]H(MA8HIH(@SEHALALtA@McPLHcL#IcJHCHHKAt AHLL3I[%%ff`Pccc 5Hv&4̛ܛ$̘P~dfXz:T^H2l|š8BΚP؝&>`rԞ "0DVjޟ |RRP`++AORGuidLevelFlagsCircularSizeu: AWERDIAG: Verifier.dll loaded. Enabling Autoverifier. WERDIAG: ProcessStartupSettingsUpdate failed. NTSTATUS: %08X WERDIAG: FDR will be enabled WERDIAG: Stopping Autoverifier WERDIAG: Stopping FDR WERDIAG: AutoVerifier: Failed getting current user registry path. NTSTATUS: %08X WERDIAG: AutoVerifier: Path is: %S Software\Microsoft\Windows\Windows Error Reporting\Plugins\AutoverifierWERDIAG: AutoVerifier: Subkey is: %S WERDIAG: AutoVerifier: could not open settings key. NTSTATUS: %08X AutoverifierEnabledWERDIAG: AutoVerifier: could not read enabled flag. NTSTATUS: %08X WERDIAG: AutoVerifier: Enabled flag: %u \Registry\Machine\Software\Microsoft\Windows\Windows Error ReportingWERDIAG: Failed opening registry key. NTSTATUS: %08X ErrorPortWERDIAG: PluginsNtGetRegStringValue failed. NTSTATUS: %08X WERDIAG: SignalStartWerSvc failed NTSTATUS: %08X WERDIAG: NtQuerySysInfo(ErrorPortTimeouts) failed. NTSTATUS: %08X WERDIAG: WaitForWerSvc failed. NTSTATUS: %08X WERDIAG: WaitForWerSvc timed out, failing the call with NTSTATUS: %08X WERDIAG: RtlAllocateAndInitializeSid failed. NTSTATUS: %08X WERDIAG: NtAlpcConnectPort failed. NTSTATUS: %08X WERDIAG: NtAlpcConnectPort timed out, failing the call with NTSTATUS %08X WERDIAG: NtAlpcSendWaitReceivePort failed. NTSTATUS: %08X WERDIAG: Service returned failure status. NTSTATUS: %08X WERDIAG: Failed getting current user registry path. NTSTATUS: %08X Software\Microsoft\Windows NT\CurrentVersion\Image File Execution OptionsWERDIAG: Handle to registry key is null WERDIAG: Failed getting process name. NTSTATUS: %08X AutoverifierAutoVerifierCountWERDIAG: Failed reading key value. NTSTATUS: %08X WERDIAG: Failed writing registry value. NTSTATUS: %08X OriginalBucketAutoVerifierTimeDurationWERDIAG: Failed creating timer thread. NTSTATUS: %08X WERDIAG: Failed deleting autovefier enabled flag. NTSTATUS: %08X WERDIAG: Failed writing key value \Registry\Machine\SYSTEM\CurrentControlSet\Control\Session ManagerImageExecutionOptionsWERDIAG: Not disabling HKCU IFEO look-up because its statically enabled. WERDIAG: Thread failed to wait for the specified time; Disabling autoverifier. NTSTATUS: %08X verifier.dllWERDIAG: Failed obtaining verifier.dll handle. NTSTATUS: %08X VerifierForceNormalHeapWERDIAG: Failed obtaining VerifierForceNormalHeap function address. NTSTATUS: %08X WERDIAG: Failed switching to normal heap mode. NTSTATUS: %08X WERDIAG: Verifier switched to light mode \KernelObjects\SystemErrorPortReadynT DWERDIAG: AppRecorder: Failed creating AppRecorder thread. NTSTATUS: %08X Local\{DF2B7FCA-C5B0-4638-A4AD-59F7F76CE540}WERDIAG: AppRecorder: ProcessStartupSettingsUpdate failed. HRESULT: %08X %d-AppRecorderEnabledWERDIAG: AppRecorder: Failed creating apprecorder event name string. HRESULT: %08X WERDIAG: AppRecorder: Failed creating event. Win32 error: %08X WERDIAG: AppRecorder: Failed to get temp folder path. Win32 error: %08X WERWERDIAG: AppRecorder: Failed to get temp file name. Win32 error: %08X .AppRecorderData.xmlWERDIAG: AppRecorder: Failed to create temp file name. HRESULT: %08X WERDIAG: AppRecorder: Failed to create apprecorder temp file. Win32 error: %08X WERDIAG: AppRecorder: Failed to register the log file with WER. HRESULT: %08X WERDIAG: AppRecorder: Failed to get system folder path. Win32 error: %08X \psr.exeWERDIAG: AppRecorder: Failed to create UAR executable image path. HRESULT: %08X %s /start /output %s /gui 0 /recordpid %d /stopevent %s /sc 0 /noarc 1 /waitonpid 1WERDIAG: AppRecorder: Failed to create UAR process command line. HRESULT: %08X WERDIAG: AppRecorder: Failed to create UAR process. Win32 error: %08X WERDIAG: AppRecorder: Failed getting current user registry path. NTSTATUS: %08X Software\Microsoft\Windows\Windows Error Reporting\Plugins\AppRecorderWERDIAG: AppRecorder: AppRecorder settings key is not present. NTSTATUS: %08X AppRecorderEnabledWERDIAG: AppRecorder: AppRecorder enabled flag is not present. NTSTATUS: %08X AppRecorderCountWERDIAG: AppRecorder: Failed to get current process name. Win32 error: %08X Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\LayersWERDIAG: AppRecorder: Failed to open App Recorder layer key. NTSTATUS: %08X WERDIAG: AppRecorder: Failed to get application appcompat layers. NTSTATUS: %08X AppRecorderWERDIAG: AppRecorder: Failed to update application appcompat layers. NTSTATUS: %08X WERDIAG: AppRecorder: Failed to update App Recorder run count. NTSTATUS: %08X WERDIAG: Invalid params WERDIAG: Arithmetic overflow WERDIAG: OOM WERDIAG: Failed creating FDR thread. NTSTATUS: %08X WERDIAG: GetTraceLoggerHandle failed WERDIAG: GetTraceEnableLevel failed WERDIAG: GetTraceEnableFlags failed WERDIAG: Internal provider enabled for Level %u, Flags %lu WERDIAG: Tracing disabled for internal provider WERDIAG: Provider not registered. RegisterTraceGuids failed with %d WERDIAG: Internal provider: FDR did not start yet; Message lost WERDIAG: Failed determining string length. HRESULT: %08X WERDIAG: Memory allocation for event failed. WERDIAG: Internal provider failed to log message. Win32 error: %08X WERDIAG: Internal log message WERDIAG: Failed reading the session settings of updating the process ID. HRESULT: %08X WERDIAG: Failed parsing settings string. HRESULT: %08X WERDIAG: Failed to enable logging. HRESULT: %08X FDR startedWERDIAG: Failed enabling trace provider. Win32 error: %08X FDR Tracing SessionWERDIAG: Invalid arguments: Log path cannot be null WERDIAG: Unable to allocate %d bytes for properties structure. WERDIAG: Failed copying string buffer. HRESULT: %08X WERDIAG: StartTrace failed for the internal provider. Win32 error: %08X WERDIAG: Failed enabling internal trace provider. Win32 error: %08X WERDIAG: Invalid args: The pair string cannot be null WERDIAG: Failed obtaining string length. HRESULT: %08X WERDIAG: Invalid format: expected '='. WERDIAG: Invalid args WERDIAG: Failed getting string length. HRESULT: %08X WERDIAG: Failed copying string. HRESULT: %08X WERDIAG: Invalid arguments: Buffer or separator character cannot be null WERDIAG: Invalid arguments: String buffer cannot be null WERDIAG: Failed obtaining the length of the input string. HRESULT: %08X WERDIAG: Out of resources allocating memory for string buffer WERDIAG: Failed making a copy of the original settings string. HRESULT: %08X WERDIAG: Failed copying characters to pair buffer. HRESULT: %08X WERDIAG: Invalid argument: settins string cannot be NULL WERDIAG: Failed extracting next token from settings string. HRESULT: %08X WERDIAG: Failed extracting next pair from the current token. HRESULT: %08X WERDIAG: Error parsing current pair; Ignoring pair and continuing parsing. HRESULT: %08X WERDIAG: Failed updating settings; Parsing continues. HRESULT: %08X WERDIAG: Log file size was not specified; Logging will not be enabled WERDIAG: Failed reading session settings, cannot delete log file. HRESULT: %08X %s_%dWERDIAG: Failed appending process ID to log file name. HRESULT: %08X WERDIAG: Failed deleting file. NTSTATUS: %08X WERDIAG: Session settings and/or FDR layer were not deleted successfuly. HRESULT: %08X Software\Microsoft\Windows\Windows Error Reporting\Plugins\FDR\CurrentSessionAppPathWERDIAG: Failed reading string value from registry. NTSTATUS: %08X FDRWERDIAG: UtilRemoveAppCompatLayerFromList failed. HRESULT: %08X WERDIAG: PluginsNtSetRegStringValue failed. NTSTATUS: %08X WERDIAG: Failed opening session registry key. NTSTATUS: %08X WERDIAG: Invalid arguments; pointer to string buffer cannot be null SessionSettingsWERDIAG: Failed reading FDR settings value from registry. NTSTATUS: %08X LogPathWERDIAG: Failed reading log file path value from registry. NTSTATUS: %08X WERDIAG: Get current process ID failed ProcIDWERDIAG: Failed writing process ID to registry. NTSTATUS: %08X WERDIAG: StartFDR failed 0x%x FDR_FLUSH_MESSAGE%s-%dWERDIAG: Failed concatenating strings. HRESULT: %08X WERDIAG: Failed creating event. Win32 error: %08X WERDIAG: Failed setting event. Win32 error: %08X WERDIAG: Flushing done, done signal sent WERDIAG: Unexpected event response or failed waiting for event DFԓ@+f9vKtdgWERDIAG: Invalid parameters WERDIAG: SizeTAdd failed. NTSTATUS: %08X WERDIAG: Arithmetic operation failed. NTSTATUS: %08X WERDIAG: Insufficient resources %s\%sWERDIAG: Key: %S WERDIAG: Out of resources allocating memory for key information structure WERDIAG: Failed extracting registry value %S. NTSTATUS: %08X WERDIAG: Failed writing to value %S. NTSTATUS: %08X WERDIAG: Failed writing to value %S. NTSTATUS %08X WERDIAG: NtQueryInformationProcess failed. NTSTATUS: %08X WERDIAG: Invalid size returned. NTSTATUS: %08X WERDIAG: Registry value %S is not of type string WERDIAG: Failed determining string buffer length. HRESULT: %08X WERDIAG: Failed with integer overflow ЛW.vЛW |wRSDS,S>JAVmWerDiagController.pdbGCTLB.text$mnR.text$mn$00`.rdata$brc`.idata$5c.00cfgc0.cfguardd*.rdata.rdata$zzzdbg.xdata.edata@.idata$2\.idata$3p.idata$4P.idata$6P.data$brcP.data` .bss.pdata`.rsrc$01`.rsrc$02BdT2 p4r `P3 ""Ē"t"4"PR`  p0Prp0P4 rp`P Lp`0RP03 "tn"dm"4l"hPR0 4rp`P7 &tZ&dY&4X&RPR  t4Bp ` P 0 d T 4 2p0R0d T42pd T 4Rp dT4 Rp d T 42p 4R p`P* 4 p`PRd4pP p`0P4 r pd4 rpP/ t8d7464PR4 td4PT4 r p `d 4 rpd T 4 rp 4N LpRP T4r p `20    4 2P0)W֓ēГ`+WerDiagController.dllQueryOriginalBucketStartAppRecorderStartFDRȕd8a0ap`ޙXa ax,aHb֚hbb(aؕHaPaa"bؖRHbXbHv&4̛ܛ$̘P~dfXz:T^H2l|š8BΚP؝&>`rԞ "0DVjޟ |RtlCaptureContext RtlLookupFunctionEntryRtlVirtualUnwindUnhandledExceptionFilterSetUnhandledExceptionFilter GetCurrentProcessMTerminateProcessQueryPerformanceCounter GetCurrentProcessIdGetCurrentThreadIdGetSystemTimeAsFileTimeGetTickCountapi-ms-win-core-libraryloader-l1-2-0.dllapi-ms-win-core-rtlsupport-l1-2-0.dllapi-ms-win-core-errorhandling-l1-1-1.dllapi-ms-win-core-processthreads-l1-1-2.dllapi-ms-win-core-profile-l1-1-0.dllapi-ms-win-core-sysinfo-l1-2-1.dllgLdrDisableThreadCalloutsForDll"DbgPrintExntdll.dlli_vsnwprintf_wcsnicmplisspacememmovewcschr_wcsicmp_wtoimsvcrt.dllWerRegisterFileapi-ms-win-core-windowserrorreporting-l1-1-0.dllCloseHandleReadProcessMemoryGetLastErrorOpenEventWCreateEventW<GetTempPathW:GetTempFileNameW DeleteFileWCreateFileWGetSystemDirectoryWGetProcessIdCreateProcessWGetModuleFileNameWGetTraceLoggerHandleGetTraceEnableLevelGetTraceEnableFlagsRegisterTraceGuidsWTraceEventStartTraceW6WaitForSingleObject)SetEventapi-ms-win-core-handle-l1-1-0.dllapi-ms-win-core-memory-l1-1-2.dllapi-ms-win-core-synch-l1-2-0.dllapi-ms-win-core-file-l1-2-1.dllapi-ms-win-eventing-classicprovider-l1-1-0.dllapi-ms-win-eventing-controller-l1-1-0.dllEnableTraceapi-ms-win-eventing-legacy-l1-1-0.dllNtCloseRtlFormatCurrentUserKeyPathRtlFreeUnicodeString!RtlInitUnicodeString@EtwEventWriteNoRegistrationZwUpdateWnfStateDataZwQueryWnfStateNameInformationNtQuerySystemInformationmNtWaitForSingleObjectNtOpenEventRtlAllocateAndInitializeSidNtAlpcConnectPortNtAlpcSendWaitReceivePortRtlFreeHeapRtlFreeSid,RtlCreateUserThread/NtDeleteKey*NtDelayExecutionrLdrGetDllHandleRtlInitAnsiStringzLdrGetProcedureAddress2NtDeleteValueKeyRtlAllocateHeapRtlGUIDFromStringfRtlDosPathNameToNtPathName_U.NtDeleteFileNtOpenKeyNtQueryValueKeyFNtSetValueKeyNtQueryInformationProcessmemcpymemsetP2-+] fIP@H(#0#$T$5(d<((){))Q+`++đ+,̑,.ԑ..."1(1p3x360677 ;H;,=l4=??P@X@AA1E8EEԒE+Hܒ4HgIpI*J 0JKKCL0LL!OH@O^O`dO|OOOdO1Ql8QRtR-R4RRRR0 H`4VS_VERSION_INFO 98 98?&StringFileInfo040904B0LCompanyNameMicrosoft Corporation\FileDescriptionWER Diagnostic Controllern'FileVersion10.0.14393.0 (rs1_release.160715-1616)TInternalNameWER Diagnostic Controller.LegalCopyright Microsoft Corporation. All rights reserved.TOriginalFilenameWERDiagController.dllj%ProductNameMicrosoft Windows Operating System> ProductVersion10.0.14393.0DVarFileInfo$Translation `hȣ