=RSMARK=
.text
`.rdata
@.data
.rsrc
@.reloc
T$$Rj
D$ Pj
WVQPj
D$\Pj
T$,Rj
SPUQj
SRUPj
YQPSh
bad allocation
MiniDumpWriteDump
OpenThread
Thread32First
Thread32Next
CreateToolhelp32Snapshot
DllUnregisterServer
DllRegisterServer
DllCanUnloadNow
DllGetClassObject
ARSCOM
SetPermLayers
CLSID\{AC3909C5-DC79-47e5-86CA-7FB5C041A37C}
Session\%d\%s-%s-%d
%s-%s-%d
map/set<T> too long
invalid map/set<T> iterator
C:\DistributedAutoLink\Temp\CompileOutputDir\rsmain.pdb
SetUnhandledExceptionFilter
GetModuleFileNameW
LoadLibraryW
GetProcAddress
FreeLibrary
CreateFileW
CloseHandle
GetCurrentThreadId
GetCurrentProcessId
GetCurrentProcess
GetModuleHandleW
SuspendThread
GetLocalTime
RaiseException
GetCommandLineW
GetFileSize
SetFilePointer
lstrlenA
FindResourceExW
FindResourceW
LoadResource
CreateProcessW
InterlockedDecrement
WaitForSingleObject
OutputDebugStringW
GetTickCount
GetPrivateProfileStringW
WriteFile
WideCharToMultiByte
Sleep
SizeofResource
GetVersionExW
GetExitCodeProcess
lstrcpynW
GetFileAttributesW
lstrcatA
MultiByteToWideChar
lstrlenW
GetPrivateProfileIntW
OpenMutexW
GetLastError
GetCurrentDirectoryW
MoveFileW
LoadLibraryA
Process32FirstW
OpenMutexA
ProcessIdToSessionId
LocalAlloc
LockResource
Process32NextW
CreateToolhelp32Snapshot
ReleaseMutex
GetWindowsDirectoryW
DeleteFileW
LocalFree
SetFileAttributesW
lstrcpyA
lstrcmpiW
KERNEL32.dll
SendMessageW
AllowSetForegroundWindow
IsWindow
CharUpperW
FindWindowW
USER32.dll
OpenProcessToken
GetSidSubAuthority
GetSidSubAuthorityCount
GetTokenInformation
RegQueryValueExW
RegOpenKeyExA
RegQueryInfoKeyA
RegEnumValueA
RegOpenKeyExW
RegCloseKey
ADVAPI32.dll
ShellExecuteW
ShellExecuteExW
SHELL32.dll
CoCreateInstance
CoSetProxyBlanket
CoUninitialize
CoInitializeSecurity
CoInitialize
CoInitializeEx
ole32.dll
OLEAUT32.dll
??1?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAE@XZ
??0?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAE@PB_W@Z
??$?8_WU?$char_traits@_W@std@@V?$allocator@_W@1@@std@@YA_NABV?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@0@PB_W@Z
?npos@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@2IB
?find_last_of@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QBEI_WI@Z
?erase@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@II@Z
?assign@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@ABV12@II@Z
?append@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@PB_W@Z
?append@?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV12@ABV12@@Z
??Y?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAEAAV01@PB_W@Z
??0?$basic_string@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@QAE@ABV01@@Z
??1?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@XZ
??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@ABV01@@Z
??0?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAE@PBD@Z
MSVCP90.dll
PathRemoveExtensionW
SHLWAPI.dll
_set_invalid_parameter_handler
wcscat_s
wcscpy_s
wcsrchr
swprintf_s
??3@YAXPAX@Z
wcschr
memmove_s
_wcsicmp
sprintf
??1exception@std@@UAE@XZ
??0exception@std@@QAE@XZ
??0exception@std@@QAE@ABV01@@Z
memmove
_strlwr
calloc
wcsnlen
_wcslwr
_wcslwr_s
_invalid_parameter_noinfo
wcsstr
_recalloc
??_V@YAXPAX@Z
_vsnwprintf
swscanf_s
memcpy_s
_wcsupr
wcsspn
wcscspn
??2@YAPAXI@Z
strchr
MSVCR90.dll
_unlock
__dllonexit
_encode_pointer
_lock
_onexit
_decode_pointer
_amsg_exit
__wgetmainargs
_cexit
_exit
_XcptFilter
_wcmdln
_initterm
_initterm_e
_configthreadlocale
__setusermatherr
_adjust_fdiv
__p__commode
__p__fmode
__set_app_type
_crt_debugger_hook
_except_handler4_common
?terminate@@YAXXZ
?_type_info_dtor_internal_method@type_info@@QAEXXZ
_invoke_watson
_controlfp_s
InterlockedExchange
InterlockedCompareExchange
GetStartupInfoW
TerminateProcess
UnhandledExceptionFilter
IsDebuggerPresent
QueryPerformanceCounter
GetSystemTimeAsFileTime
EnterCriticalSection
LeaveCriticalSection
InitializeCriticalSection
DeleteCriticalSection
HeapDestroy
HeapAlloc
HeapFree
HeapReAlloc
HeapSize
GetProcessHeap
memset
_CxxThrowException
__CxxFrameHandler3
memcpy
.?AVtype_info@@
.?AV_com_error@@
welcome Rising*youarelawless!y2a3n4g5Y6U7q8i@S9I0N#A.C%O(M-)<>ABI993JIEM,;'{jkliewaqlsiqomv.z^iwaql}-_=+)_(l;2j2f90aslkjflkasjas32092JKLSJFbASAUI/Z/A[/,./|@~`FS'.Z,MF920SDLAFJKAL9320QFFMmlajfl,.<>//|348q9729|fjlail3jo798,ksafa302-s;akfa;=_++-0-_))0-0-p23is
welcome Rising*youarelawless!y2a$n4g5Y6U7q8i@S9I0N#A.C%O(M-)<>ABI99*JIEM,;'{jkliewaqlsiqomv.z^iwaql}-_=+)_(l;2j@f90aslkjflkasjas6j09kJKLSJFbASAUI/Z/A[/,./|@~`FS'.Z,MF920SDLAFJKAL9320QFFMmlajfl,.<>//|348q9729|fjlail3jo798,ksafa302-s;akfa;=_++-0-_))0-0-p^bis
ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/
.?AVIImpModuleBase@rsdk@@
.?AV?$tImpModuleMid@VCRSComLoader@@@rsdk@@
.?AVCRSComLoader@@
.?AVCAtlException@ATL@@
.?AVexception@std@@
.?AVout_of_range@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
pl}J/*
</assembly>PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGX
>D?V?x?
54585P5
>8>D>
dbghelp.dll
c:\%s
kernel32.dll
%04d-%02d-%02d(%02d-%02d-%02d)
/ClearAppCompatFlags
/RestartByWMI
SOFTWARE\Rising\%s
installpath
datapath
SOFTWARE\Rising\
\NetConfig.ini
SETTING
Software\Microsoft\Windows\CurrentVersion
ProgramFilesDir
\Program Files
\Rising\RSD
RAV.INI
LEVEL
DEBUG
OUTPUT
LOGSIZE
RS_DEBUG_VIEW
2.log
[0x%08X]
[%04u]
[%04d-%02d-%02d][%02d:%02d:%02d:%03d]
[DETAIL]
[ACTION]
[WAINNING]
[ALERT]
[FATAL]
LOGNAME
\logfiles
\Rising\RSD\Data\
WILLREBOOT
SETUP
Rav.ini
@ROOT\CIMV2
Create
Win32_Process
CommandLine
CurrentDirectory
ReturnValue
SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers
apphelp.dll
ravmond.exe
ravmonexe
rstray.exe
rstrayexe
CB508F94-4FFA-4fa7-A4BC-CFC2A25A564A
Global\CB508F94-4FFA-4fa7-A4BC-CFC2A25A564A
C41DE27C-DE6B-440b-8CA4-5C9DAAB44B07
Global\C41DE27C-DE6B-440b-8CA4-5C9DAAB44B07
126EEC93-7882-4e96-9133-6C285F30AAA4
Global\126EEC93-7882-4e96-9133-6C285F30AAA4
<rsmain.exe> IsRavTryRunEx Entering ......
{D6EB0652-1172-4e51-BFC6-6AF63762C09C}
-srv setup
%installpath%
"%s\rsstub.exe"
/highrun /binpath "%s" /logon
/highrun /binpath "%s" /argument "%s" /logon
/runxml:
/highintegrity
\rscom.dll
\cfgxml\rscom.xml
\cfgxml\
rsshell xmls, rscomxml[%s], proccfgxml[%s]
rsxml3w.dll
runas
VS_VERSION_INFO
StringFileInfo
080404b0
CompanyName
Beijing Rising Information Technology Co., Ltd.
FileDescription
FileVersion
24.0.0.35
InternalName
Beijing Rising Information Technology Co., Ltd.
LegalCopyright
Copyright(C) 2015-2016 Beijing Rising Information Technology Co., Ltd. All Rights Reserved.
OriginalFilename
rsmain.exe
ProductName
rsmain Application
ProductVersion
24.00
SpecialBuild
20150901100559781
VarFileInfo
Translation