Analysis

Category Started Completed Duration Log
FILE 2023-05-13 13:27:57 2023-05-13 13:30:12 135 seconds Show Log
2023-01-13 12:27:57,000 [root] INFO: Date set to: 01-13-23, time set to: 18:27:57
2023-01-13 12:27:57,015 [root] DEBUG: Starting analyzer from: C:\xataag
2023-01-13 12:27:57,015 [root] DEBUG: Storing results at: C:\qxRKFpNzUi
2023-01-13 12:27:57,015 [root] DEBUG: Pipe server name: \\.\PIPE\LBByKzHpld
2023-01-13 12:27:57,015 [root] DEBUG: No analysis package specified, trying to detect it automagically.
2023-01-13 12:27:57,015 [root] INFO: Automatically selected analysis package "exe"
2023-01-13 12:27:57,062 [root] DEBUG: Started auxiliary module Browser
2023-01-13 12:27:57,062 [modules.auxiliary.digisig] INFO: Skipping authenticode validation, signtool.exe was not found in bin/
2023-01-13 12:27:57,062 [root] DEBUG: Started auxiliary module DigiSig
2023-01-13 12:27:57,062 [root] DEBUG: Started auxiliary module Disguise
2023-01-13 12:27:57,062 [root] DEBUG: Started auxiliary module Human
2023-01-13 12:27:57,062 [root] DEBUG: Started auxiliary module Screenshots
2023-01-13 12:27:57,062 [root] DEBUG: Started auxiliary module Usage
2023-01-13 12:27:57,078 [lib.api.process] INFO: Successfully executed process from path "C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe" with arguments "" with pid 148
2023-01-13 12:27:57,078 [lib.api.process] DEBUG: Using QueueUserAPC injection.
2023-01-13 12:27:57,092 [lib.api.process] INFO: Injected into suspended 32-bit process with pid 148
2023-01-13 12:27:59,092 [lib.api.process] INFO: Successfully resumed process with pid 148
2023-01-13 12:27:59,092 [root] INFO: Added new process to list with pid: 148
2023-01-13 12:27:59,108 [root] INFO: Cuckoomon successfully loaded in process with pid 148.
2023-01-13 12:27:59,125 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\Local\Temp\Opera_installer_230113202759109148.dll
2023-01-13 12:27:59,217 [root] INFO: Disabling sleep skipping.
2023-01-13 12:27:59,217 [root] INFO: Announced 32-bit process name: installer.exe pid: 1328
2023-01-13 12:27:59,217 [lib.api.process] DEBUG: Using QueueUserAPC injection.
2023-01-13 12:27:59,233 [lib.api.process] INFO: Injected into suspended 32-bit process with pid 1328
2023-01-13 12:27:59,233 [root] INFO: Disabling sleep skipping.
2023-01-13 12:27:59,233 [root] INFO: Added new process to list with pid: 1328
2023-01-13 12:27:59,233 [root] INFO: Cuckoomon successfully loaded in process with pid 1328.
2023-01-13 12:27:59,250 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132027592501328.dll
2023-01-13 12:27:59,265 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports\settings.dat
2023-01-13 12:27:59,296 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer\opera_installer_20230113142819281.log
2023-01-13 12:27:59,312 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe
2023-01-13 12:27:59,328 [root] INFO: Announced 32-bit process name: installer.exe pid: 1452
2023-01-13 12:27:59,328 [lib.api.process] DEBUG: Using QueueUserAPC injection.
2023-01-13 12:27:59,342 [lib.api.process] INFO: Injected into suspended 32-bit process with pid 1452
2023-01-13 12:27:59,342 [root] INFO: Disabling sleep skipping.
2023-01-13 12:27:59,342 [root] INFO: Added new process to list with pid: 1452
2023-01-13 12:27:59,342 [root] INFO: Cuckoomon successfully loaded in process with pid 1452.
2023-01-13 12:27:59,358 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132027593431452.dll
2023-01-13 12:27:59,453 [root] INFO: Notified of termination of process with pid 1452.
2023-01-13 12:27:59,515 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\Local\Temp\opera_installer_ui.lck
2023-01-13 12:28:00,092 [root] INFO: Process with pid 1452 has terminated
2023-01-13 12:28:00,203 [modules.auxiliary.human] INFO: Found button "Install", clicking it
2023-01-13 12:28:01,203 [root] INFO: Announced 32-bit process name: installer.exe pid: 1832
2023-01-13 12:28:01,217 [lib.api.process] DEBUG: Using QueueUserAPC injection.
2023-01-13 12:28:01,265 [lib.api.process] INFO: Injected into suspended 32-bit process with pid 1832
2023-01-13 12:28:01,265 [root] INFO: Disabling sleep skipping.
2023-01-13 12:28:01,280 [root] INFO: Added new process to list with pid: 1832
2023-01-13 12:28:01,280 [root] INFO: Cuckoomon successfully loaded in process with pid 1832.
2023-01-13 12:28:01,280 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028012811832.dll
2023-01-13 12:28:01,312 [root] INFO: Announced 32-bit process name: installer.exe pid: 1220
2023-01-13 12:28:01,312 [lib.api.process] DEBUG: Using QueueUserAPC injection.
2023-01-13 12:28:01,328 [lib.api.process] INFO: Injected into suspended 32-bit process with pid 1220
2023-01-13 12:28:01,342 [root] INFO: Disabling sleep skipping.
2023-01-13 12:28:01,358 [root] INFO: Added new process to list with pid: 1220
2023-01-13 12:28:01,358 [root] INFO: Cuckoomon successfully loaded in process with pid 1220.
2023-01-13 12:28:01,358 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028013591220.dll
2023-01-13 12:28:01,453 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer\opera_installer_20230113142821453.log
2023-01-13 12:28:07,937 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
2023-01-13 12:28:07,953 [root] INFO: Added new file to list with path: C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
2023-01-13 12:28:40,819 [root] INFO: Notified of termination of process with pid 1832.
2023-01-13 12:28:40,928 [root] INFO: Notified of termination of process with pid 1220.
2023-01-13 12:28:41,164 [root] INFO: Process with pid 1832 has terminated
2023-01-13 12:28:42,164 [root] INFO: Process with pid 1220 has terminated
2023-01-13 12:29:58,164 [root] INFO: Analysis timeout hit, terminating analysis.
2023-01-13 12:29:58,164 [root] INFO: Created shutdown mutex.
2023-01-13 12:29:59,164 [root] INFO: Shutting down package.
2023-01-13 12:29:59,164 [root] INFO: Stopping auxiliary modules.
2023-01-13 12:30:00,164 [root] INFO: Finishing auxiliary modules.
2023-01-13 12:30:00,164 [root] INFO: Shutting down pipe server and dumping dropped files.
2023-01-13 12:30:00,273 [root] WARNING: Unable to access file at path "C:\Users\Administrator\AppData\Local\Temp\opera_installer_ui.lck": [Errno 13] Permission denied: u'C:\\Users\\Administrator\\AppData\\Local\\Temp\\opera_installer_ui.lck'
2023-01-13 12:30:00,319 [root] INFO: Analysis completed.

MalScore

6.8

Malicious

Machine

Name Label Manager Started On Shutdown On
cuckoo8 cuckoo8 VirtualBox 2023-05-13 13:27:58 2023-05-13 13:30:12

File Details

File Name installer.exe
File Size 4439760 bytes
File Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 451399b6ec289665d44b424ae8bb1f0d
SHA1 2c028f9a505c2b39d919e959cd753ef4a1682fa3
SHA256 0828078106bf0ef45f97ee0fcedba7dc95208ebbd80cb4a80cf1a682850f9f02
SHA512 3cdafc1c49e2a6c14fb5cf9f0a70e2785e785cdcf1433e0be6fab4b5f83e90f66761a834ca11e880c0126fa15557fcab32f36fa82dbf4bccf715f3c031310a34
CRC32 3D0D1A41
Ssdeep 98304:D+gUaxvVNn9G/KOylzFmT+DmvN6UjOjnz3BDOAU/+pA:Rzxvbn9G/zylzFmT+xjnz3BDOnmq
ClamAV None matched
Yara None matched

Signatures

Drops a binary and executes it
binary: C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe
Performs some HTTP requests
url: http://www.msftncsi.com/ncsi.txt
url: http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAfy81yHqHeveu%2FpR5k1Jb0%3D
The binary likely contains encrypted or compressed data.
section: name: .rsrc, entropy: 6.85, characteristics: IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ, raw_size: 0x003e6800, virtual_size: 0x003e6750
Network activity contains more than one unique useragent.
Process: installer.exe
User-Agent: Opera installer
Process: installer.exe
User-Agent: Opera NetInstaller/79.0.4143.22
Creates a hidden or system file
file: C:\Users\Administrator\AppData\Local\Temp\148_891547559
Creates a copy of itself
copy: C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe

Screenshots


Hosts

Direct IP Country Name
Y 8.8.8.8 [VT] unknown
N 37.228.108.132 [VT] unknown
N 192.229.211.108 [VT] unknown
N 129.6.15.29 [VT] unknown
N 107.167.125.189 [VT] unknown
N 107.167.110.218 [VT] unknown
N 104.93.21.9 [VT] unknown
N 104.93.21.35 [VT] unknown

DNS

Name Response Post-Analysis Lookup
time-b.nist.gov [VT] CNAME time-b-g.nist.gov [VT]
A 129.6.15.29 [VT]
129.6.15.29 [VT]
teredo.ipv6.microsoft.com [VT] NXDOMAIN [VT]
autoupdate.geo.opera.com [VT] A 37.228.108.132 [VT]
CNAME us-autoupdate.opera.com [VT]
A 37.228.108.133 [VT]
37.228.108.133 [VT]
desktop-netinstaller-sub.osp.opera.software [VT] CNAME submit-trn.osp.opera.software [VT]
CNAME submit.geo.opera.com [VT]
CNAME submit-target.osp.opera.software [VT]
A 107.167.125.189 [VT]
107.167.125.189 [VT]
www.msftncsi.com [VT] CNAME a1961.g2.akamai.net [VT]
A 104.93.21.19 [VT]
CNAME www.msftncsi.com.edgesuite.net [VT]
A 104.93.21.35 [VT]
104.93.21.35 [VT]
ocsp.digicert.com [VT] CNAME ocsp.edge.digicert.com [VT]
A 192.229.211.108 [VT]
CNAME fp2e7a.wpc.phicdn.net [VT]
CNAME fp2e7a.wpc.2be4.phicdn.net [VT]
192.229.211.108 [VT]
download.opera.com [VT] CNAME us-download.opera.com [VT]
A 107.167.110.218 [VT]
A 107.167.110.217 [VT]
CNAME download.geo.opera.com [VT]
107.167.110.217 [VT]
crl.microsoft.com [VT] CNAME crl.www.ms.akadns.net [VT]
A 104.93.21.9 [VT]
A 104.93.21.18 [VT]
CNAME a1363.dscg.akamai.net [VT]
104.93.21.9 [VT]

Summary

C:\Users\Administrator\AppData\Local\Temp\Opera_installer_230113202759109148.dll
C:\Users\Administrator\AppData\Local\Temp\MSIMG32.dll
C:\Windows\System32\msimg32.dll
C:\Users\Administrator\AppData\Local\Temp\installer.exe.Local\
C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7600.16385_none_72fc7cbf861225ca
C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7600.16385_none_72fc7cbf861225ca\GdiPlus.dll
C:\Users\Administrator\AppData\Local\Temp\dbghelp.dll
C:\Windows\System32\dbghelp.dll
C:\Users\Administrator\AppData\Local\Temp\Secur32.dll
C:\Windows\System32\secur32.dll
C:\Users\Administrator\AppData\Local\Temp\VERSION.dll
C:\Windows\System32\version.dll
C:\Users\Administrator\AppData\Local\Temp\USERENV.dll
C:\Windows\System32\userenv.dll
C:\Users\Administrator\AppData\Local\Temp\profapi.dll
C:\Windows\System32\profapi.dll
C:\Users\Administrator\AppData\Local\Temp\PROPSYS.dll
C:\Windows\System32\propsys.dll
C:\Users\Administrator\AppData\Local\Temp\WINMM.dll
C:\Windows\System32\winmm.dll
C:\Users\Administrator\AppData\Local\Temp\WINHTTP.dll
C:\Windows\System32\winhttp.dll
C:\Users\Administrator\AppData\Local\Temp\webio.dll
C:\Windows\System32\webio.dll
\Device\KsecDD
C:\Users\Administrator\AppData\Local\Temp\launcher.exe
C:\Users\Administrator\AppData\Local\launcher.exe
C:\Users\Administrator\AppData\Local\Temp\installer_prefs.json
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable
C:\Users\Administrator\AppData\Roaming\Opera Software
C:\Users\Administrator\AppData\Roaming
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports
\??\pipe\crashpad_148_WALROYUHQTSCDNOD
C:\DosDevices\pipe\
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports\reports
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports\settings.dat
C:\Users\Administrator\AppData\Local\Temp\installer.exe
C:\Users\Administrator\AppData\Local\Temp\.opera
C:\Users\Administrator\AppData\Local\Temp\148_891547559
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer
C:\Users\Administrator\AppData\Local\Temp\.opera\
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer\opera_installer_20230113142819281.log
C:\Users\Administrator\AppData\Local\Temp\opera.exe
C:\Users\Administrator\AppData\Local\Temp\localization
C:
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp
C:\Users\Administrator\AppData\Local\Programs\Opera
C:\Users\Administrator\AppData\Local\Programs
C:\Users\Administrator\AppData\Local\
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe
C:\Users\Administrator\AppData\Local\Temp\opera_installer_ui.lck
C:\Windows\Fonts\staticcache.dat
C:\Windows\System32\uxtheme.dll.Config
C:\Windows\System32\uxtheme.dll
C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc
C:\Windows\SysWOW64\en-US\MSCTF.dll.mui
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428191
C:\ProgramData\Microsoft\Network\Connections\Pbk\rasphone.pbk
C:\ProgramData\Microsoft\Network\Connections\Pbk\*.pbk
C:\Windows\System32\ras\*.pbk
C:\Users\Administrator\AppData\Roaming\Microsoft\Network\Connections\Pbk\rasphone.pbk
C:\Users\Administrator\AppData\Roaming\Microsoft\Network\Connections\Pbk\*.pbk
C:\Users\Administrator\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\*
C:\Users\Administrator\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs\*
C:\Users\Administrator\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs\*
C:\Windows\System32\en-US\WINHTTP.dll.mui
C:\Users\Administrator\AppData\LocalLow
C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
C:\Users\Administrator\AppData\Local\Temp\netmsg.dll
C:\Windows\System32\netmsg.dll
C:\Windows\System32\en-US\netmsg.dll.mui
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428191\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428191\*
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428192
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428192\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428192\*
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428193
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428193\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428193\*
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428194
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428194\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428194\*
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428195
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428195\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428195\*
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428196
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428196\opera_package
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132027592501328.dll
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports\metadata
C:\Windows\SysWOW64\en-US\KERNELBASE.dll.mui
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports\reports\*
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports\attachments\*
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132027593431452.dll
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\MSIMG32.dll
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe.Local\
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\dbghelp.dll
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\Secur32.dll
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\VERSION.dll
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\USERENV.dll
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\profapi.dll
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\PROPSYS.dll
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\WINMM.dll
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\WINHTTP.dll
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\webio.dll
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028012811832.dll
\??\pipe\crashpad_1832_NXPLDCQAENYKFIGC
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer\opera_installer_20230113142821453.log
C:\Users\Administrator\AppData\Local\Programs\
\??\mailslot\opera_installer\C:\Users\Administrator\AppData\Local\Programs\Opera
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028013591220.dll
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_230113202759109148.dll
C:\Windows\System32\msimg32.dll
C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7600.16385_none_72fc7cbf861225ca\GdiPlus.dll
C:\Windows\System32\dbghelp.dll
C:\Windows\System32\secur32.dll
C:\Windows\System32\version.dll
C:\Windows\System32\userenv.dll
C:\Windows\System32\profapi.dll
C:\Windows\System32\propsys.dll
C:\Windows\System32\winmm.dll
C:\Windows\System32\winhttp.dll
C:\Windows\System32\webio.dll
\Device\KsecDD
C:\Users\Administrator\AppData\Local\Temp\installer_prefs.json
\??\pipe\crashpad_148_WALROYUHQTSCDNOD
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports\settings.dat
C:\Users\Administrator\AppData\Local\Temp\installer.exe
C:\Windows\Fonts\staticcache.dat
C:\Windows\System32\uxtheme.dll.Config
C:\Windows\System32\uxtheme.dll
C:\Windows\SysWOW64\en-US\MSCTF.dll.mui
C:\Windows\System32\en-US\WINHTTP.dll.mui
C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
C:\Windows\System32\netmsg.dll
C:\Windows\System32\en-US\netmsg.dll.mui
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132027592501328.dll
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports\metadata
C:\Windows\SysWOW64\en-US\KERNELBASE.dll.mui
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132027593431452.dll
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028012811832.dll
\??\pipe\crashpad_1832_NXPLDCQAENYKFIGC
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028013591220.dll
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_230113202759109148.dll
\??\pipe\crashpad_148_WALROYUHQTSCDNOD
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports\settings.dat
C:\Users\Administrator\AppData\Local\Temp\.opera
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer\opera_installer_20230113142819281.log
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe
C:\Users\Administrator\AppData\Local\Temp\opera_installer_ui.lck
C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428191\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428192\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428193\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428194\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428195\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428196\opera_package
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132027592501328.dll
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports\metadata
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132027593431452.dll
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028012811832.dll
\??\pipe\crashpad_1832_NXPLDCQAENYKFIGC
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer\opera_installer_20230113142821453.log
\??\mailslot\opera_installer\C:\Users\Administrator\AppData\Local\Programs\Opera
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028013591220.dll
C:\Users\Administrator\AppData\Local\Temp\148_891547559
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer\opera_installer_20230113142819281.log
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428191\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428191
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428192\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428192
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428193\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428193
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428194\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428194
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428195\opera_package
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_202301131428195
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132027593431452.dll
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer\opera_installer_20230113142821453.log
C:\Users\Administrator\AppData\Local\Programs\Opera
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028012811832.dll
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028013591220.dll
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\SideBySide\AssemblyStorageRoots
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\LSA\AccessProviders
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\ProviderOrder
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\Windows NT Access Provider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\Windows NT Access Provider\ProviderPath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\RequireUniqueAccessibility
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\MartaExtension
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\UBR
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\ReleaseId
HKEY_CURRENT_USER\Software\Opera Software
HKEY_CLASSES_ROOT\CLSID\{FAE3D380-FEA4-4623-8C75-C6B61110B681}\Instance
HKEY_CLASSES_ROOT\CLSID\{FAE3D380-FEA4-4623-8C75-C6B61110B681}\Instance\Disabled
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Locale
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Locale\Alternate Sorts
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\Language Groups
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000409
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Language Groups\1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0\Disable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0\DataFilePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane4
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane10
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane11
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane12
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane13
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane14
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane15
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane16
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\System
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\SideBySide
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\FontSubstitutes
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes\Segoe UI
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\Compatibility\installer.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontLink\SystemLink
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Segoe UI
HKEY_LOCAL_MACHINE\Software\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}\Enable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{03B5835F-F03C-411B-9CE2-AA23E1171E36}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{07EB03D6-B001-41DF-9192-BF9B841EE71F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{3697C5FA-60DD-4B56-92D4-74A569205C16}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{531FDEBF-9B4C-4A43-A2AA-960E8FCDC732}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{70FAF614-E0B1-11D3-8F5C-00C04F9CF4AC}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{78CB5B0E-26ED-4FCC-854C-77E8F3D1AA80}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{81D4E9C9-1D3B-41BC-9E6C-4B40BF79E35E}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{8613E14C-D0C0-4161-AC0F-1DD2563286BC}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{A028AE76-01B1-46C2-99C4-ACD9858AE02F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{AE6BE008-07FB-400D-8BEB-337A64F7051F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{C1EE01F2-B3B6-4A6A-9DDD-E988C088EC82}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{DCBD6FA8-032F-11D3-B5B1-00C04FC324A1}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{E429B25A-E5D3-4D1F-9BE3-0C608477E3A1}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{F25E9F57-2FC8-4EB3-A41A-CCE5F08541E6}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{F89E9E58-BD2F-4008-9AC2-0F816C09F4EE}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}
HKEY_CURRENT_USER
HKEY_CURRENT_USER\Keyboard Layout\Toggle
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Language Hotkey
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Hotkey
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Layout Hotkey
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\CMF\Config
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CMF\Config\SYSTEM
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting\WMR
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_CURRENT_USER\Software\Microsoft\CTF\DirectSwitchHotkeys
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\CTF\EnableAnchorContext
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\KnownClasses
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableAutodial
HKEY_CURRENT_USER\Software\Classes
HKEY_CURRENT_USER\Software\Classes\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{55272A00-42CB-11CE-8135-00AA004BB851}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{55272A00-42CB-11CE-8135-00AA004BB851}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{55272A00-42CB-11CE-8135-00AA004BB851}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\TreatAs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\Progid
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocHandler32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocHandler
HKEY_LOCAL_MACHINE\Software\Microsoft\OleAut
HKEY_CURRENT_USER\Software\Classes\Interface\{BCD1DE7E-2DB1-418B-B047-4A74E101F8C1}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{BCD1DE7E-2DB1-418B-B047-4A74E101F8C1}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{BCD1DE7E-2DB1-418B-B047-4A74E101F8C1}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Classes\Interface\{2A1C9EB2-DF62-4154-B800-63278FCB8037}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2A1C9EB2-DF62-4154-B800-63278FCB8037}\ProxyStubClsid32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2A1C9EB2-DF62-4154-B800-63278FCB8037}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\windows\CurrentVersion\Internet Settings\Wpad
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\0a-00-27-00-00-00
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\0a-00-27-00-00-00\WpadDecision
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\0a-00-27-00-00-00\WpadDecisionTime
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\WpadExpirationDays
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\WpadLastNetwork
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoProxyDetectType
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000401
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000402
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000404
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000405
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000406
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000407
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000408
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000409
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000040a
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000040b
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000040c
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000040d
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000040e
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000040f
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000410
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000411
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000412
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000413
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000414
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000415
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000416
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000418
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000419
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000041a
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000041b
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000041c
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000041d
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000041e
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000041f
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000420
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000422
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000423
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000424
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000425
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000426
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000427
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000428
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000429
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000042a
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000042b
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000042c
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000042e
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000042f
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000432
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000437
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000438
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000439
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000043a
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000043b
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000043f
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000440
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000442
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000444
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000445
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000446
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000447
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000448
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000449
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000044a
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000044b
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000044c
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000044d
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000044e
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000450
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000451
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000452
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000453
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000454
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000045a
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000045b
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000461
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000463
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000465
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000468
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000046a
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000046c
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000046d
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000046e
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000046f
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000470
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000480
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000481
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000485
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000488
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000804
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000807
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000809
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000080a
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000080c
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000813
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000816
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000081a
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000082c
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000083b
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000843
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000850
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000085d
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000c04
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000c0c
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00000c1a
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00001004
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00001009
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000100c
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00001404
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00001809
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0000201a
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010401
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010401\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010402
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010402\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010405
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010405\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010407
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010407\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010408
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010408\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010409
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010409\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001040a
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001040a\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001040e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001040e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010410
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010410\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010415
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010415\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010416
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010416\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010418
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010418\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010419
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010419\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001041b
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001041b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001041e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001041e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001041f
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001041f\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010426
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010426\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010427
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010427\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001042b
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001042b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001042e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001042e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001042f
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001042f\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010437
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010437\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010439
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010439\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001043a
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001043a\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001043b
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001043b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010445
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010445\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001045a
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001045a\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001045b
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001045b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001045d
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001045d\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010465
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010465\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00010480
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010480\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001080c
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001080c\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0001083b
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001083b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00011009
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00011009\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00011809
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00011809\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020401
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020401\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020402
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020402\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020405
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020405\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020408
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020408\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020409
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020409\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020418
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020418\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0002041e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0002041e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020422
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020422\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020427
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020427\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0002042e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0002042e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020437
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020437\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00020445
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020445\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0002083b
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0002083b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00030402
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00030402\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00030408
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00030408\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00030409
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00030409\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\0003041e
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0003041e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00040402
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00040402\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00040408
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00040408\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00040409
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00040409\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00050408
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00050408\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00050409
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00050409\layout id
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\00060408
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00060408\layout id
HKEY_CURRENT_USER\Software\Microsoft\CTF\LayoutIcon\0409\00020409
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\FileDirectory
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\FileDirectory
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_USERS\S-1-5-21-2555225716-619377114-2949403143-500\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-2555225716-619377114-2949403143-500
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-2555225716-619377114-2949403143-500\ProfileImagePath
HKEY_CURRENT_USER\Software\Microsoft\windows\CurrentVersion\Internet Settings\Connections
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_IETLDLIST_FOR_DOMAIN_DETERMINATION
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_USE_IETLDLIST_FOR_DOMAIN_DETERMINATION
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionHigh
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldVersionHigh
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\AutoDetect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1A10
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Extensible Cache
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\LsaExtensionConfig\SspiCli
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\LsaExtensionConfig\SspiCli\CheckSignatureDll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\LsaExtensionConfig\SspiCli\CheckSignatureRoutine
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SecurityProviders
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurityProviders\SecurityProviders
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa\SspiCache
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Name
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Comment
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\RpcId
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Version
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\TokenSize
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SecurityProviders\SaslProfiles
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SecurityProviders\Schannel
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurityProviders\SCHANNEL\UserContextLockCount
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurityProviders\SCHANNEL\UserContextListCount
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\My\Certificates
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\My\CRLs
HKEY_CURRENT_USER\Software\Microsoft\SystemCertificates\My\CTLs
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\DiagnosticPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_USERS\S-1-5-21-2555225716-619377114-2949403143-500
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\State
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\Safety Warning Level
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\TrustedPublisher\Safer
HKEY_CURRENT_USER\Software\Policies\Microsoft\SystemCertificates\TrustedPublisher\Safer
HKEY_LOCAL_MACHINE\Software\Microsoft\SystemCertificates\TrustedPublisher\Safer
HKEY_LOCAL_MACHINE\Software\Microsoft\windows\CurrentVersion\Internet Settings\Connections
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\WinHttpSettings
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\SystemCertificates\ChainEngine\Config
HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\EnableInetUnknownAuth
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\CustomLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Nls\ExtendedLocale
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_CURRENT_USER\Software
HKEY_CURRENT_USER\Software\Opera Software\Last Stable Install Path
HKEY_CURRENT_USER\Software\Opera Software\Last Stable Install Path x64
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\ProviderOrder
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\Windows NT Access Provider\ProviderPath
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\RequireUniqueAccessibility
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\AccessProviders\MartaExtension
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\UBR
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\ReleaseId
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Locale\00000409
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\Language Groups\1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0\Disable
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\DataStore_V1.0\DataFilePath
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane2
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane4
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane5
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane6
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane7
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane8
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane9
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane10
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane11
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane12
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane13
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane14
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane15
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\LanguagePack\SurrogateFallback\Plane16
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes\Segoe UI
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}\Enable
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Language Hotkey
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Hotkey
HKEY_CURRENT_USER\Keyboard Layout\Toggle\Layout Hotkey
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CMF\Config\SYSTEM
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\CTF\EnableAnchorContext
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableAutodial
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{55272A00-42CB-11CE-8135-00AA004BB851}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocServer32\InprocServer32
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocServer32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B196B286-BAB4-101A-B69C-00AA00341D07}\InprocServer32\ThreadingModel
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{BCD1DE7E-2DB1-418B-B047-4A74E101F8C1}\ProxyStubClsid32\(Default)
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{2A1C9EB2-DF62-4154-B800-63278FCB8037}\ProxyStubClsid32\(Default)
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\0a-00-27-00-00-00\WpadDecision
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\0a-00-27-00-00-00\WpadDecisionTime
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\WpadExpirationDays
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\WpadLastNetwork
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoProxyDetectType
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010401\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010402\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010405\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010407\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010408\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010409\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001040a\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001040e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010410\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010415\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010416\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010418\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010419\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001041b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001041e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001041f\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010426\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010427\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001042b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001042e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001042f\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010437\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010439\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001043a\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001043b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010445\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001045a\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001045b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001045d\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010465\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00010480\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001080c\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0001083b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00011009\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00011809\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020401\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020402\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020405\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020408\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020409\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020418\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0002041e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020422\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020427\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0002042e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020437\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00020445\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0002083b\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00030402\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00030408\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00030409\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\0003041e\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00040402\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00040408\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00040409\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00050408\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00050409\layout id
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Keyboard Layouts\00060408\layout id
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASAPI32\FileDirectory
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\EnableFileTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\FileTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\EnableConsoleTracing
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\ConsoleTracingMask
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\MaxFileSize
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Tracing\installer_RASMANCS\FileDirectory
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-2555225716-619377114-2949403143-500\ProfileImagePath
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldDllVersionHigh
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldVersionLow
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IETld\IETldVersionHigh
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Security\DisableSecuritySettingsCheck
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\AutoDetect
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1A10
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\LsaExtensionConfig\SspiCli\CheckSignatureDll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\LsaExtensionConfig\SspiCli\CheckSignatureRoutine
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurityProviders\SecurityProviders
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Name
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Comment
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Capabilities
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\RpcId
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Version
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\Type
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa\SspiCache\credssp.dll\TokenSize
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurityProviders\SCHANNEL\UserContextLockCount
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurityProviders\SCHANNEL\UserContextListCount
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Certificate\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\FinalPolicy\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Message\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Signature\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\CertCheck\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Cleanup\{573E31F8-AABA-11D0-8CCB-00C04FC295EE}\$Function
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\State
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Security\Safety Warning Level
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\WinHttpSettings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllCreateCertificateChainEngine\Config\EnableInetUnknownAuth
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\CustomLocale\en-US
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Nls\ExtendedLocale\en-US
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles
HKEY_CURRENT_USER\Software\Opera Software\Last Stable Install Path
HKEY_CURRENT_USER\Software\Opera Software\Last Stable Install Path x64
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\DefaultConnectionSettings
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\WpadLastNetwork
HKEY_CURRENT_USER\Software\Opera Software
HKEY_CURRENT_USER\Software\Opera Software\Last Stable Install Path
HKEY_CURRENT_USER\Software\Opera Software\Last Stable Install Path x64
HKEY_CURRENT_USER\Software\Opera Software\Last Stable Install Path
kernel32.dll.InitializeCriticalSectionEx
kernel32.dll.FlsAlloc
kernel32.dll.FlsSetValue
kernel32.dll.FlsGetValue
kernel32.dll.LCMapStringEx
kernel32.dll.SleepConditionVariableCS
kernel32.dll.WakeAllConditionVariable
kernel32.dll.FlsFree
kernel32.dll.InitOnceExecuteOnce
kernel32.dll.CreateEventExW
kernel32.dll.CreateSemaphoreW
kernel32.dll.CreateSemaphoreExW
kernel32.dll.CreateThreadpoolTimer
kernel32.dll.SetThreadpoolTimer
kernel32.dll.WaitForThreadpoolTimerCallbacks
kernel32.dll.CloseThreadpoolTimer
kernel32.dll.CreateThreadpoolWait
kernel32.dll.SetThreadpoolWait
kernel32.dll.CloseThreadpoolWait
kernel32.dll.FlushProcessWriteBuffers
kernel32.dll.FreeLibraryWhenCallbackReturns
kernel32.dll.GetCurrentProcessorNumber
kernel32.dll.CreateSymbolicLinkW
kernel32.dll.GetTickCount64
kernel32.dll.GetFileInformationByHandleEx
kernel32.dll.SetFileInformationByHandle
kernel32.dll.InitializeConditionVariable
kernel32.dll.WakeConditionVariable
kernel32.dll.InitializeSRWLock
kernel32.dll.AcquireSRWLockExclusive
kernel32.dll.TryAcquireSRWLockExclusive
kernel32.dll.ReleaseSRWLockExclusive
kernel32.dll.SleepConditionVariableSRW
kernel32.dll.CreateThreadpoolWork
kernel32.dll.SubmitThreadpoolWork
kernel32.dll.CloseThreadpoolWork
kernel32.dll.CompareStringEx
kernel32.dll.GetLocaleInfoEx
kernel32.dll.AreFileApisANSI
kernel32.dll.EnumSystemLocalesEx
kernel32.dll.GetDateFormatEx
kernel32.dll.GetTimeFormatEx
kernel32.dll.GetUserDefaultLocaleName
kernel32.dll.IsValidLocaleName
kernel32.dll.LCIDToLocaleName
kernel32.dll.LocaleNameToLCID
cryptbase.dll.SystemFunction001
cryptbase.dll.SystemFunction002
cryptbase.dll.SystemFunction003
cryptbase.dll.SystemFunction004
cryptbase.dll.SystemFunction005
cryptbase.dll.SystemFunction028
cryptbase.dll.SystemFunction029
cryptbase.dll.SystemFunction034
cryptbase.dll.SystemFunction036
cryptbase.dll.SystemFunction040
cryptbase.dll.SystemFunction041
ntdll.dll.RtlCaptureStackBackTrace
opera_installer_230113202759109148.dll.RunInstaller
uxtheme.dll.ThemeInitApiHook
user32.dll.IsProcessDPIAware
ntmarta.dll.AccProvGetCapabilities
ntmarta.dll.GetMartaExtensionInterface
kernel32.dll.InitializeProcThreadAttributeList
kernel32.dll.UpdateProcThreadAttribute
kernel32.dll.DeleteProcThreadAttributeList
shell32.dll.SHGetKnownFolderPath
kernel32.dll.IsProcessorFeaturePresent
user32.dll.GetWindowInfo
user32.dll.GetAncestor
user32.dll.GetMonitorInfoA
user32.dll.EnumDisplayMonitors
user32.dll.EnumDisplayDevicesA
gdi32.dll.ExtTextOutW
gdi32.dll.GdiIsMetaPrintDC
windowscodecs.dll.DllGetClassObject
kernel32.dll.WerRegisterMemoryBlock
comctl32.dll.RegisterClassNameW
uxtheme.dll.EnableThemeDialogTexture
uxtheme.dll.OpenThemeData
uxtheme.dll.GetThemeBool
oleaut32.dll.#10
oleaut32.dll.#2
oleaut32.dll.#6
oleaut32.dll.#9
gdi32.dll.GetLayout
gdi32.dll.GdiRealizationInfo
gdi32.dll.FontIsLinked
advapi32.dll.RegOpenKeyExW
advapi32.dll.RegQueryValueExW
advapi32.dll.RegCloseKey
gdi32.dll.GetFontAssocStatus
advapi32.dll.RegQueryValueExA
advapi32.dll.RegQueryInfoKeyW
advapi32.dll.RegEnumKeyExW
gdi32.dll.GetTextFaceAliasW
gdi32.dll.GetTextExtentExPointWPri
uxtheme.dll.IsThemePartDefined
uxtheme.dll.GetThemeMargins
uxtheme.dll.GetThemeInt
uxtheme.dll.SetWindowTheme
uxtheme.dll.CloseThemeData
comctl32.dll.HIMAGELIST_QueryInterface
comctl32.dll.DrawShadowText
comctl32.dll.DrawSizeBox
comctl32.dll.DrawScrollBar
comctl32.dll.SizeBoxHwnd
comctl32.dll.ScrollBar_MouseMove
comctl32.dll.ScrollBar_Menu
comctl32.dll.HandleScrollCmd
comctl32.dll.DetachScrollBars
comctl32.dll.AttachScrollBars
comctl32.dll.CCSetScrollInfo
comctl32.dll.CCGetScrollInfo
comctl32.dll.CCEnableScrollBar
comctl32.dll.QuerySystemGestureStatus
uxtheme.dll.#49
uxtheme.dll.GetThemeColor
uxtheme.dll.GetThemeFont
imm32.dll.ImmIsIME
imm32.dll.ImmGetContext
imm32.dll.ImmReleaseContext
imm32.dll.ImmAssociateContext
advapi32.dll.RegEnumValueW
uxtheme.dll.DrawThemeBackground
ole32.dll.CoInitializeEx
ole32.dll.CoUninitialize
ole32.dll.CoRegisterInitializeSpy
ole32.dll.CoRevokeInitializeSpy
rasapi32.dll.RasConnectionNotificationW
sechost.dll.NotifyServiceStatusChangeA
advapi32.dll.RegDeleteTreeA
advapi32.dll.RegDeleteTreeW
ole32.dll.CoCreateInstance
ole32.dll.CoTaskMemAlloc
oleaut32.dll.#8
oleaut32.dll.DllGetClassObject
oleaut32.dll.DllCanUnloadNow
advapi32.dll.RegOpenKeyW
ole32.dll.StringFromIID
ole32.dll.CoTaskMemFree
iphlpapi.dll.GetAdaptersAddresses
dhcpcsvc.dll.DhcpRequestParams
oleaut32.dll.SysAllocString
oleaut32.dll.SysStringLen
oleaut32.dll.SysFreeString
version.dll.GetFileVersionInfoSizeW
version.dll.GetFileVersionInfoW
version.dll.VerQueryValueW
wininet.dll.InternetInitializeAutoProxyDll
wininet.dll.IsHostInProxyBypassList
cryptsp.dll.SystemFunction035
schannel.dll.SpUserModeInitialize
advapi32.dll.RegCreateKeyExW
crypt32.dll.CertDuplicateStore
crypt32.dll.CertControlStore
crypt32.dll.CertCloseStore
secur32.dll.FreeContextBuffer
ncrypt.dll.SslOpenProvider
ncrypt.dll.GetSChannelInterface
bcryptprimitives.dll.GetHashInterface
ncrypt.dll.SslIncrementProviderReferenceCount
ncrypt.dll.SslImportKey
bcryptprimitives.dll.GetCipherInterface
ncrypt.dll.SslLookupCipherSuiteInfo
crypt32.dll.CertDuplicateCertificateContext
wintrust.dll.HTTPSCertificateTrust
wintrust.dll.HTTPSFinalProv
wintrust.dll.SoftpubInitialize
wintrust.dll.SoftpubLoadMessage
wintrust.dll.SoftpubLoadSignature
wintrust.dll.SoftpubCheckCert
wintrust.dll.SoftpubCleanup
cryptsp.dll.CryptAcquireContextA
winhttp.dll.WinHttpOpen
winhttp.dll.WinHttpSetTimeouts
winhttp.dll.WinHttpSetOption
winhttp.dll.WinHttpCrackUrl
shlwapi.dll.StrCmpNW
winhttp.dll.WinHttpConnect
winhttp.dll.WinHttpOpenRequest
winhttp.dll.WinHttpGetDefaultProxyConfiguration
winhttp.dll.WinHttpGetIEProxyConfigForCurrentUser
nsi.dll.NsiAllocateAndGetTable
cfgmgr32.dll.CM_Open_Class_Key_ExW
iphlpapi.dll.ConvertInterfaceGuidToLuid
iphlpapi.dll.GetIfEntry2
iphlpapi.dll.GetIpForwardTable2
iphlpapi.dll.GetIpNetEntry2
iphlpapi.dll.FreeMibTable
nsi.dll.NsiFreeTable
oleaut32.dll.#500
winhttp.dll.WinHttpGetProxyForUrl
winhttp.dll.WinHttpSendRequest
ws2_32.dll.GetAddrInfoW
ws2_32.dll.WSASocketW
ws2_32.dll.#2
ws2_32.dll.#21
ws2_32.dll.#9
ws2_32.dll.WSAIoctl
ws2_32.dll.FreeAddrInfoW
ws2_32.dll.#6
ws2_32.dll.#5
ws2_32.dll.WSARecv
ws2_32.dll.WSASend
winhttp.dll.WinHttpReceiveResponse
winhttp.dll.WinHttpQueryHeaders
shlwapi.dll.StrStrIW
winhttp.dll.WinHttpQueryDataAvailable
winhttp.dll.WinHttpReadData
winhttp.dll.WinHttpCloseHandle
crypt32.dll.CertDuplicateCertificateChain
crypt32.dll.CertGetCertificateContextProperty
cryptsp.dll.CryptReleaseContext
crypt32.dll.CertFreeCertificateChain
crypt32.dll.CertFreeCertificateContext
ncrypt.dll.SslEncryptPacket
ncrypt.dll.SslDecryptPacket
rpcrt4.dll.RpcBindingFree
ncrypt.dll.SslDecrementProviderReferenceCount
ncrypt.dll.SslFreeObject
ws2_32.dll.#3
ws2_32.dll.#116
opera_installer_2301132027592501328.dll.RunInstaller
kernel32.dll.SetUnhandledExceptionFilter
dwmapi.dll.DwmIsCompositionEnabled
opera_installer_2301132027593431452.dll.RunInstaller
advapi32.dll.UnregisterTraceGuids
opera_installer_2301132028012811832.dll.RunInstaller
advapi32.dll.RegEnumKeyW
opera_installer_2301132028013591220.dll.RunInstaller
C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports" "--crash-count-file=C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\crash_count.txt" --url=https://crashstats-collector.opera.com/collector/submit --annotation=channel=Stable --annotation=plat=Win32 --annotation=prod=OperaDesktop --annotation=ver=79.0.4143.22 --initial-client-data=0x1a0,0x1a4,0x1a8,0x174,0x1ac,0x750c23e8,0x750c23f8,0x750c2404
"C:\Users\ADMINI~1\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe" --version
"C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe" --backend --install --import-browser-data=0 --enable-stats=1 --enable-installer-stats=1 --launchopera=1 --installfolder="C:\Users\Administrator\AppData\Local\Programs\Opera" --profile-folder --language=en --singleprofile=0 --copyonly=0 --allusers=0 --setdefaultbrowser=1 --pintotaskbar=1 --pin-additional-shortcuts=1 --server-tracking-data=server_tracking_data --initial-pid=148 --package-dir-prefix="C:\Users\ADMINI~1\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_20230113142819" --session-guid=8b259d1c-e774-4802-a2b6-0db823eac497 --desktopshortcut=1 --wait-for-package --initial-proc-handle=0005000000000000
C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports" "--crash-count-file=C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\crash_count.txt" --url=https://crashstats-collector.opera.com/collector/submit --annotation=channel=Stable --annotation=plat=Win32 --annotation=prod=OperaDesktop --annotation=ver=79.0.4143.22 --initial-client-data=0x1ac,0x1b0,0x1b4,0x174,0x1b8,0x73c723e8,0x73c723f8,0x73c72404
Local\Opera/Installer/UI_lock
Local\MSCTF.Asm.MutexDefault1
Global\Opera/Installer/C:/Users/Administrator/AppData/Local/Programs/Opera
IESQMMUTEX_0_208
Local\!IETld!Mutex
DBWinMutex

PE Information

Image Base 0x00400000
Entry Point 0x0040cede
Reported Checksum 0x00440376
Actual Checksum 0x00440376
Minimum OS Version 5.1
PDB Path installer.exe.pdb
Compile Time 2021-09-10 08:02:19
Icon
Icon Exact Hash b8de8cd70d2ca3c190635b2500928066
Icon Similarity Hash 7a1e7ff60c1258cfd381e280ef511693

Version Infos

LegalCopyright Copyright Opera Software 2021
InternalName Opera
FileVersion 79.0.4143.22
CompanyName Opera Software
ProductName Opera Installer
ProductVersion 79.0.4143.22
FileDescription Opera Installer
Translation 0x0409 0x04b0

Sections

Name Virtual Address Virtual Size Size of Raw Data Characteristics Entropy
.text 0x00001000 0x0003f85e 0x0003fa00 IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 6.66
.rdata 0x00041000 0x0000e454 0x0000e600 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 4.58
.data 0x00050000 0x00003470 0x00001c00 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 3.74
.00cfg 0x00054000 0x00000004 0x00000200 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 0.06
.tls 0x00055000 0x00000009 0x00000200 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 0.02
.voltbl 0x00056000 0x000000eb 0x00000200 3.64
.rsrc 0x00057000 0x003e6750 0x003e6800 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 6.85
.reloc 0x0043e000 0x00003320 0x00003400 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 6.57

Overlay

Offset 0x0043a200
Size 0x00001cd0

Resources

Name Offset Size Language Sub-language Entropy File type
PNG 0x00058c14 0x00000a11 LANG_ENGLISH SUBLANG_ENGLISH_US 7.61 PNG image data, 194 x 72, 8-bit colormap, non-interlaced
PNG 0x00058c14 0x00000a11 LANG_ENGLISH SUBLANG_ENGLISH_US 7.61 PNG image data, 194 x 72, 8-bit colormap, non-interlaced
PNG 0x00058c14 0x00000a11 LANG_ENGLISH SUBLANG_ENGLISH_US 7.61 PNG image data, 194 x 72, 8-bit colormap, non-interlaced
PNG 0x00058c14 0x00000a11 LANG_ENGLISH SUBLANG_ENGLISH_US 7.61 PNG image data, 194 x 72, 8-bit colormap, non-interlaced
TXT 0x00061bbc 0x0000291a LANG_ENGLISH SUBLANG_ENGLISH_US 4.55 UTF-8 Unicode text, with very long lines
TXT 0x00061bbc 0x0000291a LANG_ENGLISH SUBLANG_ENGLISH_US 4.55 UTF-8 Unicode text, with very long lines
TXT 0x00061bbc 0x0000291a LANG_ENGLISH SUBLANG_ENGLISH_US 4.55 UTF-8 Unicode text, with very long lines
TXT 0x00061bbc 0x0000291a LANG_ENGLISH SUBLANG_ENGLISH_US 4.55 UTF-8 Unicode text, with very long lines
TXT 0x00061bbc 0x0000291a LANG_ENGLISH SUBLANG_ENGLISH_US 4.55 UTF-8 Unicode text, with very long lines
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_ICON 0x00069350 0x000025a8 LANG_ENGLISH SUBLANG_ENGLISH_US 5.10 data
RT_RCDATA 0x0006b8f8 0x003d16d0 LANG_ENGLISH SUBLANG_ENGLISH_US 6.84 PE32 executable (DLL) (console) Intel 80386, for MS Windows
RT_GROUP_ICON 0x0043cfc8 0x000000ae LANG_ENGLISH SUBLANG_ENGLISH_US 3.06 MS Windows icon resource - 12 icons, 16x16, 16-colors
RT_VERSION 0x0043d078 0x000002ac LANG_ENGLISH SUBLANG_ENGLISH_US 3.42 data
RT_MANIFEST 0x0043d324 0x0000042c LANG_ENGLISH SUBLANG_ENGLISH_US 5.33 XML 1.0 document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators

Imports

Library USER32.dll:
0x44c9d4 MessageBoxW
Library COMCTL32.dll:
Library KERNEL32.dll:
0x44c9e8 CloseHandle
0x44c9ec CompareStringW
0x44c9f0 CreateEventW
0x44c9f4 CreateFileW
0x44c9f8 DecodePointer
0x44ca00 DeleteFileW
0x44ca04 EncodePointer
0x44ca0c EnumSystemLocalesW
0x44ca10 ExitProcess
0x44ca14 FindClose
0x44ca18 FindFirstFileExW
0x44ca1c FindNextFileW
0x44ca20 FindResourceW
0x44ca24 FlushFileBuffers
0x44ca28 FormatMessageA
0x44ca30 FreeLibrary
0x44ca34 GetACP
0x44ca38 GetCPInfo
0x44ca3c GetCommandLineA
0x44ca40 GetCommandLineW
0x44ca44 GetConsoleMode
0x44ca48 GetConsoleOutputCP
0x44ca4c GetCurrentProcess
0x44ca50 GetCurrentProcessId
0x44ca54 GetCurrentThreadId
0x44ca58 GetDateFormatW
0x44ca60 GetFileSizeEx
0x44ca64 GetFileType
0x44ca68 GetLastError
0x44ca6c GetLocaleInfoW
0x44ca70 GetModuleFileNameW
0x44ca74 GetModuleHandleExW
0x44ca78 GetModuleHandleW
0x44ca7c GetOEMCP
0x44ca80 GetProcAddress
0x44ca84 GetProcessHeap
0x44ca88 GetStartupInfoW
0x44ca8c GetStdHandle
0x44ca90 GetStringTypeW
0x44ca94 GetSystemInfo
0x44ca98 GetSystemTime
0x44caa0 GetTempPathW
0x44caa4 GetTimeFormatW
0x44caac GetUserDefaultLCID
0x44cab0 GetVersionExW
0x44cab4 HeapAlloc
0x44cab8 HeapFree
0x44cabc HeapReAlloc
0x44cac0 HeapSize
0x44cac8 InitializeSListHead
0x44cacc IsDebuggerPresent
0x44cad4 IsValidCodePage
0x44cad8 IsValidLocale
0x44cadc LCMapStringW
0x44cae4 LoadLibraryExA
0x44cae8 LoadLibraryExW
0x44caec LoadLibraryW
0x44caf0 LoadResource
0x44caf4 LockResource
0x44caf8 MultiByteToWideChar
0x44cb00 RaiseException
0x44cb04 ReadConsoleW
0x44cb08 ReadFile
0x44cb10 ResetEvent
0x44cb14 RtlUnwind
0x44cb1c SetEvent
0x44cb20 SetFilePointerEx
0x44cb24 SetLastError
0x44cb28 SetStdHandle
0x44cb30 SizeofResource
0x44cb38 TerminateProcess
0x44cb3c TlsAlloc
0x44cb40 TlsFree
0x44cb44 TlsGetValue
0x44cb48 TlsSetValue
0x44cb50 VirtualProtect
0x44cb54 VirtualQuery
0x44cb60 WideCharToMultiByte
0x44cb64 WriteConsoleW
0x44cb68 WriteFile

!This program cannot be run in DOS mode.$
.text
`.rdata
@.data
.00cfg
@.tls
.voltbl
.rsrc
@.reloc
D$`PRj
L$ RPj
Ph,-E
Ph4-E
Ph<-E
PhD-E
PhL-E
PhT-E
Ph\-E
Phd-E
Ph$-E
Phl-E
Pht-E
uXhL D
t/h(!D
ARPRQh
Ph@BD
t#VhXBD
35$ E
35h"E
u!hl"E
URPQQh
Vh UD
Vh(UD
Vh0UD
Vh8UD
tjhXiD
xg;5`'E
SVWQj
SVWQj
xE;5`'E
xE;5`'E
;5`'E
;5`'E
;=`'E
SVWUj
Af95F(E
bad exception
bad allocation
SleepConditionVariableCS
WakeAllConditionVariable
bad array new length
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
InitOnceExecuteOnce
CreateEventExW
CreateSemaphoreW
CreateSemaphoreExW
CreateThreadpoolTimer
SetThreadpoolTimer
WaitForThreadpoolTimerCallbacks
CloseThreadpoolTimer
CreateThreadpoolWait
SetThreadpoolWait
CloseThreadpoolWait
FlushProcessWriteBuffers
FreeLibraryWhenCallbackReturns
GetCurrentProcessorNumber
CreateSymbolicLinkW
GetCurrentPackageId
GetTickCount64
GetFileInformationByHandleEx
SetFileInformationByHandle
GetSystemTimePreciseAsFileTime
InitializeConditionVariable
WakeConditionVariable
InitializeSRWLock
AcquireSRWLockExclusive
TryAcquireSRWLockExclusive
ReleaseSRWLockExclusive
SleepConditionVariableSRW
CreateThreadpoolWork
SubmitThreadpoolWork
CloseThreadpoolWork
CompareStringEx
GetLocaleInfoEx
LCMapStringEx
address family not supported
address in use
address not available
already connected
argument list too long
argument out of domain
bad address
bad file descriptor
bad message
broken pipe
connection aborted
connection already in progress
connection refused
connection reset
cross device link
destination address required
device or resource busy
directory not empty
executable format error
file exists
file too large
filename too long
function not supported
host unreachable
identifier removed
illegal byte sequence
inappropriate io control operation
interrupted
invalid argument
invalid seek
io error
is a directory
message size
network down
network reset
network unreachable
no buffer space
no child process
no link
no lock available
no message available
no message
no protocol option
no space on device
no stream resources
no such device or address
no such device
no such file or directory
no such process
not a directory
not a socket
not a stream
not connected
not enough memory
not supported
operation canceled
operation in progress
operation not permitted
operation not supported
operation would block
owner dead
permission denied
protocol error
protocol not supported
read only file system
resource deadlock would occur
resource unavailable try again
result out of range
state not recoverable
stream timeout
text file busy
timed out
too many files open in system
too many files open
too many links
too many symbolic link levels
value too large
wrong protocol type
(null)
INITY
inity
SNAN)
snan)
IND)ind)d
No error
Operation not permitted
No such file or directory
No such process
Interrupted function call
Input/output error
No such device or address
Arg list too long
Exec format error
Bad file descriptor
No child processes
Resource temporarily unavailable
Not enough space
Permission denied
Bad address
Unknown error
Resource device
File exists
Improper link
No such device
Not a directory
Is a directory
Invalid argument
Too many open files in system
Too many open files
Inappropriate I/O control operation
File too large
No space left on device
Invalid seek
Read-only file system
Too many links
Broken pipe
Domain error
Result too large
Resource deadlock avoided
Filename too long
No locks available
Function not implemented
Directory not empty
Illegal byte sequence
CorExitProcess
INITY
inity
SNAN)
snan)
IND)ind)
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__vectorcall
__clrcall
__eabi
__swift_1
__swift_2
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`RTTI
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
operator ""
operator co_await
operator<=>
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
`anonymous namespace'
AreFileApisANSI
EnumSystemLocalesEx
GetDateFormatEx
GetTimeFormatEx
GetUserDefaultLocaleName
IsValidLocaleName
LCIDToLocaleName
LocaleNameToLCID
AppPolicyGetProcessTerminationMethod
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
March
April
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
NAN(SNAN)
nan(snan)
NAN(IND)
nan(ind)
e+000
1#INF
1#QNAN
1#SNAN
1#IND
log10
log10
BC .=
"B <1=
#.X'=
atan2
floor
ldexp
_cabs
_hypot
frexp
_logb
_nextafter
bad cast
vector
SetDefaultDllDirectories
RunInstaller
(Error cannot be retrieved)
Unknown exception
iostream
unspecified iostream_category error
ios_base::clear
unsupported locale for standard input
0123456789abcdefABCDEFxX+-pPiInN
%H:%M:%S%m/%d/%y%Y-%m-%d%I:%M:%S %p%H:%M%H:%M:%S
0123456789
money_get error
0123456789
%.0Lf
false
%m/%d/%y
%H:%M:%S
%a %b %d %H:%M:%S %Y
%I:%M:%S %p
locale not supported
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
March
April
August
September
October
November
December
allocator<T>::allocate(size_t n) 'n' exceeds maximum supported size
bad allocation
basic_string
unknown error %d
installer.exe.pdb
MessageBoxW
InitCommonControlsEx
AcquireSRWLockExclusive
CloseHandle
CompareStringW
CreateEventW
CreateFileW
DecodePointer
DeleteCriticalSection
DeleteFileW
EncodePointer
EnterCriticalSection
EnumSystemLocalesW
ExitProcess
FindClose
FindFirstFileExW
FindNextFileW
FindResourceW
FlushFileBuffers
FormatMessageA
FreeEnvironmentStringsW
FreeLibrary
GetACP
GetCPInfo
GetCommandLineA
GetCommandLineW
GetConsoleMode
GetConsoleOutputCP
GetCurrentProcess
GetCurrentProcessId
GetCurrentThreadId
GetDateFormatW
GetEnvironmentStringsW
GetFileSizeEx
GetFileType
GetLastError
GetLocaleInfoW
GetModuleFileNameW
GetModuleHandleExW
GetModuleHandleW
GetOEMCP
GetProcAddress
GetProcessHeap
GetStartupInfoW
GetStdHandle
GetStringTypeW
GetSystemInfo
GetSystemTime
GetSystemTimeAsFileTime
GetTempPathW
GetTimeFormatW
GetTimeZoneInformation
GetUserDefaultLCID
GetVersionExW
HeapAlloc
HeapFree
HeapReAlloc
HeapSize
InitializeCriticalSectionAndSpinCount
InitializeSListHead
IsDebuggerPresent
IsProcessorFeaturePresent
IsValidCodePage
IsValidLocale
LCMapStringW
LeaveCriticalSection
LoadLibraryExA
LoadLibraryExW
LoadLibraryW
LoadResource
LockResource
MultiByteToWideChar
QueryPerformanceCounter
RaiseException
ReadConsoleW
ReadFile
ReleaseSRWLockExclusive
ResetEvent
RtlUnwind
SetEnvironmentVariableW
SetEvent
SetFilePointerEx
SetLastError
SetStdHandle
SetUnhandledExceptionFilter
SizeofResource
SleepConditionVariableSRW
TerminateProcess
TlsAlloc
TlsFree
TlsGetValue
TlsSetValue
UnhandledExceptionFilter
VirtualProtect
VirtualQuery
WaitForSingleObjectEx
WakeAllConditionVariable
WideCharToMultiByte
WriteConsoleW
WriteFile
USER32.dll
COMCTL32.dll
KERNEL32.dll
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$basic_ios@DU?$char_traits@D@__1@std@@@__1@std@@
.?AV?$basic_ios@_WU?$char_traits@_W@__1@std@@@__1@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@__1@std@@@__1@std@@
.?AV?$basic_streambuf@_WU?$char_traits@_W@__1@std@@@__1@std@@
.?AV?$basic_istream@DU?$char_traits@D@__1@std@@@__1@std@@
.?AV?$basic_istream@_WU?$char_traits@_W@__1@std@@@__1@std@@
.?AV?$basic_ostream@DU?$char_traits@D@__1@std@@@__1@std@@
.?AV?$basic_ostream@_WU?$char_traits@_W@__1@std@@@__1@std@@
.?AVbad_cast@std@@
.?AVlength_error@std@@
.?AVlogic_error@std@@
.?AVexception@std@@
.?AV__do_message@__1@std@@
.?AVerror_category@__1@std@@
.?AV__shared_count@__1@std@@
.?AVruntime_error@std@@
.?AV__iostream_category@__1@std@@
.?AVfailure@ios_base@__1@std@@
.?AVsystem_error@__1@std@@
.?AVios_base@__1@std@@
.?AV?$__stdinbuf@D@__1@std@@
.?AV?$__stdinbuf@_W@__1@std@@
.?AV?$__stdoutbuf@D@__1@std@@
.?AV?$__stdoutbuf@_W@__1@std@@
.?AV?$collate@D@__1@std@@
.?AVfacet@locale@__1@std@@
.?AV?$collate@_W@__1@std@@
.?AV?$num_get@DV?$istreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AU?$__num_get@D@__1@std@@
.?AU__num_get_base@__1@std@@
.?AV?$num_get@_WV?$istreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AU?$__num_get@_W@__1@std@@
.?AV?$num_put@DV?$ostreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AU?$__num_put@D@__1@std@@
.?AU__num_put_base@__1@std@@
.?AV?$num_put@_WV?$ostreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AU?$__num_put@_W@__1@std@@
.?AV?$time_get@DV?$istreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AVtime_base@__1@std@@
.?AV?$__time_get_c_storage@D@__1@std@@
.?AV?$time_get@_WV?$istreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AV?$__time_get_c_storage@_W@__1@std@@
.?AV?$time_put@DV?$ostreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AV__time_put@__1@std@@
.?AV?$time_put@_WV?$ostreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AV?$moneypunct@D$0A@@__1@std@@
.?AVmoney_base@__1@std@@
.?AV?$moneypunct@D$00@__1@std@@
.?AV?$moneypunct@_W$0A@@__1@std@@
.?AV?$moneypunct@_W$00@__1@std@@
.?AV?$money_get@DV?$istreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AV?$__money_get@D@__1@std@@
.?AV?$money_get@_WV?$istreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AV?$__money_get@_W@__1@std@@
.?AV?$money_put@DV?$ostreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AV?$__money_put@D@__1@std@@
.?AV?$money_put@_WV?$ostreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AV?$__money_put@_W@__1@std@@
.?AV?$messages@D@__1@std@@
.?AVmessages_base@__1@std@@
.?AV?$messages@_W@__1@std@@
.?AV?$codecvt@DDU_Mbstatet@@@__1@std@@
.?AVcodecvt_base@__1@std@@
.?AV?$codecvt@_WDU_Mbstatet@@@__1@std@@
.?AV?$codecvt@_SDU_Mbstatet@@@__1@std@@
.?AV?$codecvt@_UDU_Mbstatet@@@__1@std@@
.?AV__imp@locale@__1@std@@
.?AV?$ctype@D@__1@std@@
.?AVctype_base@__1@std@@
.?AV?$ctype@_W@__1@std@@
.?AV?$numpunct@D@__1@std@@
.?AV?$numpunct@_W@__1@std@@
.?AVbad_alloc@std@@
.?AVout_of_range@std@@
.?AVbad_exception@std@@
.?AVtype_info@@
.?AVbad_array_new_length@std@@
\qA%u
wwwwwwwwwwp
wwwwwwwwwwp
wwwwwwwwwwwwwwp
wwwwwwwwwwwwwwp
wwwwwwwwwwwwwwp
wwwwwwwwwwwwwwwwwwwww
wwwwwwwwwwwwwwwwwwwww
wwwwwwwwwwwwwwwwwwwww
%5455555555555%
*:::::::::::::*
,NNNINIIJJJNIN,
%.%%%%%%%%%%%-%
<HHINR&
<BDEFO(
=BDDFK)
8%CBDEF9*
2RQPPRR0PIIOOR1
5FJJJJJHJJJFHJJFJJJJ4
8KKSKKKSKKSKKSKKSKKK9
=SSSSSSSSSSSSSSSSSSS=
>hiiiiiiiiiiimmmiimg@
4A44444444444444444?4
Uffffopos5
T[`_`accq6
U\\``adcr7
X[`_`acdr8
`[_``bdcr:
#`^_``bbfr;
W`]``bcdr=
)Y[``bcfr?
/``abcdrA
(V`ccfnB
KtsrrrrsstKrfgiopqqtK
KKKKKKKKKKKKKKKKKKKKK
QdddddddddddddddddddddddddddR
VfgffffffffffgffeffffffgffffV
YssssstsstssssssstssssssssstY
]ttttttttttttttttttttttttttt]
P^^^^^^^^^_dwN
m8/./././././../.e
n:/./././././.<e
ggggggggggggggggggggggggggggg
ZijiiijiiijiiijiiiiiijijiiiiijijiiiiiiijiiZ
]kkkkkkkkkkkkkkkkkjkkkkkkkkkkkkkkkkkkkkkkk]
Xih$!""""!"""""!"=hihXeeeeefeefefefefeeeeeX
!This program cannot be run in DOS mode.$
.text
`.rdata
@.data
.00cfg
@.tls
.voltbl
CPADinfo0
.rsrc
@.reloc
expand 32-byte k
ChaCha20 for x86, CRYPTOGAMS by <appro@openssl.org>
AES for Intel AES-NI, CRYPTOGAMS by <appro@openssl.org>
*p[[[[[[[[[[[[[[[[
Vector Permutation AES for x86/SSSE3, Mike Hamburg (Stanford University)
Montgomery Multiplication for x86, CRYPTOGAMS by <appro@openssl.org>
GHASH for x86, CRYPTOGAMS by <appro@openssl.org>
SHA1 block transform for x86, CRYPTOGAMS by <appro@openssl.org>
SHA256 block transform for x86, CRYPTOGAMS by <appro@openssl.org>
SHA512 block transform for x86, CRYPTOGAMS by <appro@openssl.org>
T$4Rj
t$tRj
\$8SWj
\$ Sj
RPWVj
Vhhhh
t$$Vj
Whhhh
Vhhhh
Vhhhh
FHh5u
tih3u
D$$j3h
\$8SPj
t$\Vj
L$(Qj
D$$j"h
D$@PSj
D$`PVj
D$8Pj
|$HQj
WPVVj
|(WQj
D$@Ph
D$@Ph
D$@Ph
D$@Ph
L$LQj
L$0VRj
L$0VPj
L$0j4Sj
L$`j4Sj
w@PWj
D$(Wj
L$@SPj
t$PVj
D$ Sj
D$ Sj
L$$Pj
D$`Pj
D$DPj
t$PRj
ARPRQh
SVWUj
SVWQj
SVWQj
Systj
PVSPWPh
D$ Ph
PQVVj
D$HPj
D$(Pj
T$PSPWj
SPRWj
L$ Pj
L$ Pj
7RQWj
bad exception
bad allocation
SleepConditionVariableCS
WakeAllConditionVariable
bad array new length
AcquireSRWLockExclusive
ReleaseSRWLockExclusive
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
InitOnceExecuteOnce
CreateEventExW
CreateSemaphoreW
CreateSemaphoreExW
CreateThreadpoolTimer
SetThreadpoolTimer
WaitForThreadpoolTimerCallbacks
CloseThreadpoolTimer
CreateThreadpoolWait
SetThreadpoolWait
CloseThreadpoolWait
FlushProcessWriteBuffers
FreeLibraryWhenCallbackReturns
GetCurrentProcessorNumber
CreateSymbolicLinkW
GetCurrentPackageId
GetTickCount64
GetFileInformationByHandleEx
SetFileInformationByHandle
GetSystemTimePreciseAsFileTime
InitializeConditionVariable
WakeConditionVariable
InitializeSRWLock
TryAcquireSRWLockExclusive
SleepConditionVariableSRW
CreateThreadpoolWork
SubmitThreadpoolWork
CloseThreadpoolWork
CompareStringEx
GetLocaleInfoEx
LCMapStringEx
address family not supported
address in use
address not available
already connected
argument list too long
argument out of domain
bad address
bad file descriptor
bad message
broken pipe
connection aborted
connection already in progress
connection refused
connection reset
cross device link
destination address required
device or resource busy
directory not empty
executable format error
file exists
file too large
filename too long
function not supported
host unreachable
identifier removed
illegal byte sequence
inappropriate io control operation
interrupted
invalid argument
invalid seek
io error
is a directory
message size
network down
network reset
network unreachable
no buffer space
no child process
no link
no lock available
no message available
no message
no protocol option
no space on device
no stream resources
no such device or address
no such device
no such file or directory
no such process
not a directory
not a socket
not a stream
not connected
not enough memory
not supported
operation canceled
operation in progress
operation not permitted
operation not supported
operation would block
owner dead
permission denied
protocol error
protocol not supported
read only file system
resource deadlock would occur
resource unavailable try again
result out of range
state not recoverable
stream timeout
text file busy
timed out
too many files open in system
too many files open
too many links
too many symbolic link levels
value too large
wrong protocol type
?u='@u='@
(null)
INITY
inity
SNAN)
snan)
IND)ind)
No error
Operation not permitted
No such file or directory
No such process
Interrupted function call
Input/output error
No such device or address
Arg list too long
Exec format error
Bad file descriptor
No child processes
Resource temporarily unavailable
Not enough space
Permission denied
Bad address
Unknown error
Resource device
File exists
Improper link
No such device
Not a directory
Is a directory
Invalid argument
Too many open files in system
Too many open files
Inappropriate I/O control operation
File too large
No space left on device
Invalid seek
Read-only file system
Too many links
Broken pipe
Domain error
Result too large
Resource deadlock avoided
Filename too long
No locks available
Function not implemented
Directory not empty
Illegal byte sequence
CorExitProcess
UTF-8
UTF-16LEUNICODE
INITY
inity
SNAN)
snan)
IND)ind)T
Visual C++ CRT: Not enough memory to complete call to strerror.
COMSPEC
cmd.exe
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__vectorcall
__clrcall
__eabi
__swift_1
__swift_2
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`RTTI
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
operator ""
operator co_await
operator<=>
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
`anonymous namespace'
AreFileApisANSI
EnumSystemLocalesEx
GetDateFormatEx
GetTimeFormatEx
GetUserDefaultLocaleName
IsValidLocaleName
LCIDToLocaleName
LocaleNameToLCID
RoInitialize
RoUninitialize
AppPolicyGetProcessTerminationMethod
AppPolicyGetThreadInitializationType
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
March
April
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
NAN(SNAN)
nan(snan)
NAN(IND)
nan(ind)
e+000
7asin
atan2
m0_$@
log10
atan2
floor
ldexp
_cabs
_hypot
frexp
_logb
_nextafter
log10
m0_$@
m0_$@
1#INF
1#QNAN
1#SNAN
1#IND
i^^?(>
Y:/(A6>
MVx:>
[j&,>
F\IE>
B'=>>
in]D>
F"VM>
30}->
0)LK>
?Dj0Q:W$=
Lyc>=
?C;0=
?4j<=
Nl,"=
5s3R6=
BC .=
"B <1=
#.X'=
=\uI=
Eb2]A=
2ieO=
|W8A=
V%A+=
>,'1D=
?g)([|X>=
r7Yr7=
.K="=
#wi#:=
bad cast
vector
0x%llx + 0x%llx (%s)
../../opera/desktop/windows/installer/backend_process_launcher_impl.cc
Running the installer elevated.
Cannot elevate with UAC disabled
This process should already be elevated, but isn't.
Could not run the elevated installer process
Elevated installer
Elevated process returned an error.
Run elevated to
permanently
temporarily
give permissions on the install folder
Cannot elevate: UAC disabled
Failed to obtain user name
User name is
Failed to create event for communicating with the elevated process
Could not run the elevated process for grabbing install permissions
Failed to wait for the elevated process:
Running installer from the package with command line:
GetDpiForWindow
GetDpiForMonitor
../../opera/desktop/windows/installer/feature_fetcher_impl.cc
Failed fetching features information.
Failed to parse response.
https://features.opera-api.com/api/v2/features?country=%s&language=%s&uuid=%s&product=%s&channel=%s&version=%s
../../opera/desktop/windows/installer/geolocation/geolocation.cc
InitWithFetchIfNeeded
Failed fetching geolocation.
Geolocation server response could not be parsed.
GeolocationDoneOnWorker
../../opera/desktop/windows/installer/installation_folder_details_fetcher_impl.cc
FetchStatus
../../opera/desktop/windows/installer/installation_folder_details_impl.cc
Initializing status:
with recovery mode
Path is empty
Path is not a valid Win32 path
Path is relative
Path is a file path
Path is to a non-writable CD-ROM
Drive not found
Path is a folder
Path is an existing installation
Path is not an existing installation
Path is a root folder that's not valid
(probably invalid drive letter)
Path is valid
Path is child of a file (invalid)
Testing shortcuts
Determining write access
Determining whether we handled http
Reading existing tracking data
Reading prefs
Reading existing experiments status
Test experiment was enabled in install folder.
Finding current user profile
Obtaining current user country
Obtaining current user language
../../opera/desktop/windows/installer/installation_package_impl.cc
WaitUntilReady
Need to wait for actual package
Event name for package_ready:
Failed to open a handle to the package ready event
Failed to watch the package ready event
Failed to start installer process from the package folder:
Installer process did not complete successfully.
Package is ready
Opera GX
Opera
60.0.3255.50747
60.0.3255.50962
60.0.3255.51199
62.0.3331.52
62.0.3331.81
62.0.3331.96
62.0.3331.105
62.0.3331.112
62.0.3331.117
../../opera/desktop/windows/installer/installer.cc
Beginning installation
Installation was interrupted
Cannot run the backend installer.
Post elevation installation tasks only
Parent pid:
Could not create installation folder
AppId for new installation:
Installation subfolder
is in use
Can't uninstall when
Changing the status of the test experiment.
Saving last installation path.
Could not write last installation path
Could not delete legacy x64 last install path
Event name for interrupted installation:
Failed to open a handle to the installation interrupted event
Failed to watch the installation interrupted event
Elevated process did not write new installation status
Running post elevation installation tasks.
suite
assistant
Launching
component subinstaller with command line
Finalizing successful installation
Installation cancelled
Installation succeeded
Launching opera with command line
../../opera/desktop/windows/installer/installer_controller.cc
Terminating the controller
Controller already terminated
, Error type:
Package complete
Installer error:
Installer succeeded
Fetcher error
Fetcher error:
Failed to launch reinstall process
:Installer message:
../../opera/desktop/windows/installer/installer_main_parts.cc
Initializing controller with fetcher.
The requested mode requires to be run inside an existing package, but is not. The program may malfunction.
Initializing controller without fetcher.
Creating silent controller
Creating UI controller
../../opera/desktop/windows/installer/interprocess_state_impl.cc
Failed parsing ui thread id
utm.medium
../../opera/desktop/windows/installer/ipc/ipc_receiver.cc
Creating mailslot
Failed creating
IPCReceiver
Closing mailslot
I/O still pending on mailslot.
Cannot read from mailslot
Installer IPC thread
Preparing to receive IPC on
Could not start IPC thread
Connect
Stopping RPC receiver
Close
OnMessageReceived
../../opera/desktop/windows/installer/ipc/ipc_sender.cc
Preparing to send IPC on
Stopping RPC sender
Opening mailslot
Failed opening
IPCSenderImpl
Closing mailslot.
Messages unsent:
Cannot write to mailslot
localization/
opera_125_percent.pak
opera_150_percent.pak
opera_200_percent.pak
opera_250_percent.pak
direct_unpacking
Cannot read the package version file
Invalid package version found in package folder
Cannot create the installation subfolder.
Cannot create subfolder for package.
Cannot copy unpacked files to subfolder.
Cannot unpack the installer
Cannot read debug files list
Cannot read debug root files list
Cannot copy package file '
../../opera/desktop/windows/installer/permission_grantor_impl.cc
is_elevated_admin:
Installation requires elevation, but cannot elevate when silent
Using write permissions from the status
Single profile installations are only allowed to locations where the user has write access
All users, no admin privs or force UAC; elevate
Write privileges for install folder:
Could not obtain write permissions to installation folder
Running elevated because of folder privileges
Cannot run elevated
Succeeded elevated run
Get permissions failed
Run elevated to
Failed to create undo event for communicating with the elevated process
../../opera/desktop/windows/installer/pref_default_overrides_fetcher.cc
Fetching default prefs overrides to
with tracking data
Fetch
Failed fetching default prefs overrides
Default prefs overrides fetched successfully
DoneOnWorker
http://localhost:3001
api/prefs/?product=$1&version=$2
../../opera/desktop/windows/installer/profile_adjustor_impl.cc
Adjusting profile
Updating profile language
Removing stat pref from the user profile
Removing tracking ua file from the user profile
Installed new custom edition to the user profile
Failed to copy new custom edition file.
Flag the fact that custom content was updated in profile.
../../opera/desktop/windows/installer/protocol_handler_setup_impl.cc
Storing old default browser settings for all users
Storing old default browser settings for current users
Setup
Setting up file handlers for the current user.
../../opera/desktop/windows/installer/runner/backend_process_installer_runner_impl.cc
Using initial process handle
Failed parsing initial process handle
Using initial pid
Failed parsing initial pid
Failed opening initial process
Missing information about initial process
Failed watching initial process
Waiting for settings to be ready
Settings already obtained. Running.
Installer backend exiting
Starting installation
Settings obtained. Running.
Sending IPC_MESSAGE_ENTERING_PHASE(
Sending IPC_MESSAGE_STARTING_NEW_MAIN_PROCESS(
Sending IPC_MESSAGE_RETURNED_TO_PREVIOUS_MAIN_PROCESS
Sending IPC_MESSAGE_TOTAL_STEPS(
Sending IPC_MESSAGE_STEP_STARTING
Sending IPC_MESSAGE_STEP_FINISHED
Sending IPC_FILE_COPY_RETRY
Sending IPC_MESSAGE_ERROR(
Sending IPC_MESSAGE_SUCCESS
Process terminating.
Installer UI process ended
../../opera/desktop/windows/installer/runner/main_process_installer_runner_impl.cc
Duplicate installation attempt detected
The settings are not valid
Installer mutex name:
Could not create installer mutex
Installer mailslot name:
Could not connect to mailslot
Could not create installation interruption event
Cannot create the package ready event
Package is already available
Could not duplicate own process handle
launching installer backend:
Could not launch installer backend process
Installer backend started.
Could not monitor the installer process handle
Package ready event invalid
Stopping installer backend (if running)
Sending installation interrupted event
Letting go of the installer mutex
Recording that we have the package
Informing the installer backend that the package is ready
Installer backend process signaled
Received a message without installer signature
Received invalid IPC_MESSAGE_STARTING_NEW_MAIN_PROCESS
message
IPC_MESSAGE_STARTING_NEW_MAIN_PROCESS(
) received
IPC_MESSAGE_RETURNED_TO_PREVIOUS_MAIN_PROCESS received
Received invalid IPC_MESSAGE_TOTAL_STEPS message
IPC_MESSAGE_TOTAL_STEPS(
Received invalid IPC_MESSAGE_STEP_STARTING
IPC_MESSAGE_STEP_STARTING received
Received invalid IPC_MESSAGE_STEP_FINISHED
The package uses legacy IPC_MESSAGE_STEP_FINISHED
IPC_MESSAGE_STEP_FINISHED received
IPC_MESSAGE_IMPORTANT_EVENT received
Received invalid IPC_MESSAGE_ERROR message
IPC_MESSAGE_ERROR(
IPC_MESSAGE_SUCCESS received
Received invalid IPC_MESSAGE_ENTERING_PHASE message
IPC_MESSAGE_ENTERING_PHASE(
Received installer message with invalid type
../../opera/desktop/windows/installer/scoped_download_folder.cc
Using download folder from command line
Could not create temporary installer folder
Could not obtain temporary installer folder
Installer download folder:
Installer Temp
../../opera/desktop/windows/installer/settings_impl.cc
Obtaining system language
Initializing settings
utm.defbr
utm.fsce
defbr:
fsce:
Destroying settings
Settings from command line
Settings as command line:
Found
paths for standalone install mode.
Cannot read Publisher in an uninstall key
Cannot read Display Name in an uninstall key
DisplayName does not start with Opera
Retrieving default installation folder path
- Using command line:
- Using the registry:
- Using the standard folder:
Default install folder: not from command line
Default install folder: not from registry
Default install folder: for all users
Default install folder: for all standalone
Default install folder: for current user
Changing Settings using SetMode
set to:
Attempt setting install_language_ to:
Actual install_language_ set:
Setting install folder to:
Refreshing folder details
Install folder set:
Invalid install folder
Operation:
Using settings from existing installation
language:
status for install folder:
valid_parent folder:
has_write_access:
installation_folder_problem:
existing_installation:
existing_installation_traces:
desktop_shortcut_exists:
enable_stats:
import_browser_data:
is_http_handler:
old_product_type:
pinned_shortcut_paths:
profile_path:
temporary_shortcut_folder:
temporary_shortcut_folder_exists:
recreate_desktop_shortcut:
recreate_pinned_shortcut:
recreate_start_menu_shortcut:
single_profile:
start_menu_shortcut_exists:
welcome_url:
Install folder reg value [legacy x64]:
Install folder reg value [standard]:
Install folder reg value [beta=next]:
Install folder reg value [primordial]:
Install folder from reg value
COPY_ONLY
SINGLE_PROFILE
LAUNCH_OPERA
ALL_USERS_FLAG
DEFAULT_BROWSER
IMPORT_BROWSER_DATA
ENABLE_OPERA_STATS
ENABLE_INSTALLER_STATS
PIN_ADDITIONAL_SHORTCUTS
PINNED_SHORTCUT
DELETE_PROFILE
not set
../../opera/desktop/windows/installer/silent_installer_controller.cc
Start
Installer error: terminating
Installer ended. Error is:
. terminating
OnBackendProcessTerminated
Settings obtained. Starting.
Cannot elevate when silent. Switching to current user mode.
Single user folder could not be changed
Could not switch to current user mode
Elevation needed, but no viable fallback folder
Package fetcher failed.
Got tracking data from status.
Cannot display UI requested by fetcher when running silently
DisplayProxyLoginUIAndPostResult
This version of Opera doesn't support windows versions prior to Windows 7
SSE2 not supported by the computer
Got tracking data from package.
Preparing to run the installer.
Failed to run the backend. Show whatever error was reported
../../opera/desktop/windows/installer/steps/clean_registry_step.cc
Cleaning up registry
Cleanup for key
with depth
copy_file
file_copy_retry
../../opera/desktop/windows/installer/steps/copy_file_step.cc
Copying file
because of error:
Failed copying
delete_file_step
../../opera/desktop/windows/installer/steps/delete_file_step.cc
Deleting file
Cannot delete file
remove_minimal_install_file
../../opera/desktop/windows/installer/steps/delete_minimal_install_file_step.cc
Removing minimal install file.
install_extra_apps
../../opera/desktop/windows/installer/steps/install_extra_apps_step.cc
Don't install extra apps on a USB install
Installing extra apps
Cannot read extra apps file
Extra apps present :
Processing extra app
Bad app description
Component installer does not exist
Signature error for extra app installer
signed =
Running extra app installer
Could not get extra app '
' exit code
Extra app installer exit code is
install_helper
Installer helper not present in unpacked files
Cannot copy installer helper
install_shortcuts
../../opera/desktop/windows/installer/steps/install_shortcuts_step.cc
Installing shortcuts
Prepare shortcut on desktop for all:
Prepare shortcut in start menu for all:
Cannot schedule install steps
Cannot schedule upgrade steps
Cannot schedule fix resources steps
Cannot read standard files list
Cannot read root files list
Cannot read extra files list
Schedule upgrade steps
Schedule fix downloadable resources failed
../../opera/desktop/windows/installer/steps/installer_step_scheduler_impl.cc
PostNextStep
Normal files list
No files in normal files list
Root files list
install_tracking_data
setup_registry
../../opera/desktop/windows/installer/steps/installer_steps.cc
Setting up the registry
Uninstall key:
Written
Failed writing
value
to key
default value to key
Failed writing uninstallation information
write_installation_status
Writing the installation status
Failed saving the installation status
update_installation_status
setup_file_and_protocol_handlers
Setting up protocol handlers.
finalize
Finalizing the installation
Creating scheduled task
$(Arg0)
Could not create scheduled task
Setting autoupdate task error counter to :
Could not initialize task scheduler
Install completion marker write
remove_old_files
Removing installed files.
No old status files found.
Cannot load an old file to string:
Found invalid old status file:
Found old status file:
Deleting
remove_old_root_files
Removing old files from installation root
Unpinning shortcut
Unpinning
successful
failed
Using shortcut name
Creating master shortcut
Creating master shortcut at
Failed to create shortcut at
Creating
shortcut at
Failed to create
Pinning
shortcut
move_old_status
Preserving previous installer status.
No previous status file found.
Creating folder for old status files.
Moving old status file.
uninstall_finalize
Finalizing the uninstallation
Failed to remove installation status file
Attempting to reset the default browser to IE.
IsWow64Process
Wow64DisableWow64FsRedirection
Wow64RevertWow64FsRedirection
Trying to display the uninstall survey
?version=
&uuid=
Uninstall survey shown in
microsoft-edge:
Uninstall survey shown in Edge.
-incognito
Uninstall survey shown in Internet Explorer.
uninstall_components
uninstall_cleanup
Cleaning up files after uninstallation
Removing scheduled task
:again
ping -n 2 127.0.0.1
del "
rmdir "
del %0
Starting final cleanup batch file.
Deleting user profile.
register_protocol_handlers
\Capabilities\URLAssociations
SOFTWARE\Clients\StartMenuInternet\
REG_SZ
Failed creating a FirewallManager.
Failed creating a firewall rules.
PinSync
SET PID%d_RUNNING=TRUE
IF ERRORLEVEL 1 SET PID%d_RUNNING=FALSE)
IF %%PID%d_RUNNING%%==TRUE GOTO :again
move_file
../../opera/desktop/windows/installer/steps/move_file_step.cc
Moving root file
Failed moving
remove_old_toast_notifier
F../../opera/desktop/windows/installer/steps/remove_old_toast_notifier_step.cc
Unexpected result creating NotificationActivator; hr=0x
remove_shortcuts
../../opera/desktop/windows/installer/steps/remove_shortcuts_step.cc
Removing shortctus.
Unpinning shortcuts
Unpinning extra shortcuts
Removing desktop shortcut.
Removing start menu shortcut.
Removing temporary shortcut folder.
Removing promoted site shortcut.
update_shortcuts
../../opera/desktop/windows/installer/steps/update_shortcuts_step.cc
Removing shortcut
Recreating shortcut
Moving shortcut
Preparing to add shortcut
Updating shortcuts
Shortcuts need to be renamed
Handling desktop shortcut:
Handling start menu shortcut:
Handling pinned shortcut:
Unpinning existing shortcuts
Unpinning existing shortcuts (with repin)
verify_downloadable_resources
Downloadable resource checksum validation error:
verify_package_contents
' cannot be opened.
Package verification failed, files '
write_installer_prefs
../../opera/desktop/windows/installer/steps/write_installer_prefs_step.cc
Writing installer prefs to
Writing welcome page url pref
Writing country pref
Writing features_remote_flag pref
Writing features_dna_requirements_pref
Writing features_remote_guid pref
Writing profile folder pref
Writing install language pref
Writing browser edition pref
Writing NIUID
Writing temp folder pref
Writing autoupdate pref
Writing import browser data and enables stats prefs.
../../opera/desktop/windows/installer/ui/button_strip.cc
Failed to register window class "
305.1i
../../opera/desktop/windows/installer/ui/controls/progress_bar.cc
SetProgress
../../opera/desktop/windows/installer/ui/custom_message_box.cc
Displaying custom message box
../../opera/desktop/windows/installer/ui/installer_ui_controller.cc
Another instance of the installer UI is running. Switching to it
Installer termination reported
UI already terminated
Installer terminated successfully. Finishing.
Unreported uninstaller error.
Unreported installer error.
Initializing installer UI
Could not initialize installer window
Starting the package fetcher
Reporting error
Handling pending error
Offering the user to switch to a Current User install
Obtaining full package
OnGetFullPackageClicked
Downloading full package with default browser
Downloading full package with IE
Accept clicked.
Installation already in progress.
Still waiting for status
Tracking data is ready for handling
An error is pending. Show it first.
Running pending fetcher callback.
Restarting fetching after background tries failed.
New status obtained
Need to handle tracking data from new path
runimmediately set or Accept already clicked
OnPathChanged
Reporting fetcher error.
Fetcher error
Exceeded maximum number of fetcher retries,
we won't retry until user decides to.
Package will be downloaded.
Package fetched successfully.
Obtained UI callback request from fetcher
UI has been terminated already.
Run the callback at once.
Store callback information for later.
DoDisplayProxyLoginUIAndPostResult
&product=%s%%20%s
&arch=x64
../../opera/desktop/windows/installer/ui/installer_ui_lock_impl.cc
Getting installer UI mutex
Obtained installer UI lock for
Didn't obtain installer UI lock for
Could not read owners' tid from file
Existing installer UI lock file is invalid
../../opera/desktop/windows/installer/ui/installer_window_impl.cc
Window creation failed
WARNING YES
WARNING NO
UNINSTALL
ACCEPT
CANCEL
REINSTALL
RETRY
SURVEY
FULL_PACKAGE
OPTIONS
PRIVACY
CLOSE
../../opera/desktop/windows/installer/ui/progress_calculator_impl.cc
Notifying of installation progress
../../opera/desktop/windows/installer/ui/screens/options_screen.cc
Adding item #
to the language dropdown failed
../../opera/desktop/windows/installer/ui/screens/progress_screen.cc
OnShow
OnProgressChanged
../../opera/desktop/windows/installer/ui/screens/root_screen.cc
Displaying error: "
" and
don't
offer full package
../../opera\desktop/windows/installer/ui/screens/screen.h
video
websites
crashes
ad_blocking
extensions
../../opera/desktop/windows/installer/ui/screens/survey_screen.cc
OnLinkClicked
https://www.opera.com/privacy
../../opera/desktop/windows/installer/utils/installer_utils.cc
Reading files list :
Cannot read files list to string
Attempting to start installation with invalid settings
Not enough disk space:
The path is invalid
Installation does not exist
Installation target contains different Opera product
https://www.opera.com
../../opera/desktop/windows/installer/installer_main.cc
Cannot initialize the message box
%s installer starting - version
Command line:
Install folder from command line:
Uninstall:
Silent:
Run Immediately
Backend
Inside package
Autoupdate:
Using default message loop
Using UI message loop
installer
Retrieving experiment states from installation folder...
Retrieved experiment states from installation folder
Cannot read experiment states from installation folder
Obtained experiment states from command line
Test experiment is enabled
Cannot find own file path
Failed reading payload
Found full package
Tracking data:
External should only ever be reported after calling
SetPayload
Package architecture:
Instantiating settings
Running backend
RunInstaller
CONOUT$
false
PAUSE
Disabling Avro in this process
Enabling Avro in this process
%s Installer
OPERA_INSTALLER_VERBOSITY
Run the installer fully unattended. No dialog will be displayed in this mode. If it isn't running with sufficient privileges, the installer will fail instead of prompting the user.
Run the installer mostly unattended. The installation will start immediately and the progress dialog will be displayed. The installer will prompt the user for elevation if needed.
LANGUAGE
Install %s in the specified language.This language will also be used during installation.
The Operating system UI language.
Install %s in the specified folder.
If true, install %s for all users on the system.
True when running from an administrative acount.
If true, the installer will only copy the files to the installation folder and will otherwise not perform any modification on the system.
False.
If true, the installer will set up %s to use a singleprofile located in the installation folder.
If true, make %s the default browser for this user or computer.
True for %s Stable.
If true, create a shortcut for %s on the desktop.
True.
If true, create a shortcut for %s on the start menu.
If true, pin %s to the taskbar.
If true and utm_medium=PB, pins additional shortcuts to the taskbar.
If true, %s is set up to import user data from the previously default browser when creating new user profiles.
If true, %s will by default gather and report statistics.
If true, installer will by default gather and report statistics.
If true, %s is launched once the installation is completed.
FOLDER
[0|1]
WARNING
ERROR
FATAL
UNKNOWN
[%s : %d] RAW:
../../third_party/abseil-cpp/absl/types/bad_optional_access.cc
Bad optional access
Unknown exception
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
Sunday
RtlCaptureStackBackTrace
ntdll.dll
double
basic_string
string
iostream
Bad variant access
../../third_party/abseil-cpp/absl/types/bad_variant_access.cc
Unknown field type %u (errno: %d, %s)
../../third_party/perfetto/src/protozero/field.cc
%s (errno: %d, %s)
PERFETTO_CHECK(writer_)
../../third_party/perfetto/src/protozero/scattered_heap_buffer.cc
PERFETTO_CHECK(false)
[printf format error]
%s:%s
[%03u.%03u]
Aunknown
thread constructor failed
malloc
global/
Complete
Infinity
-Infinity
posted_from
source
__metadata
snapshot
disabled-by-default-cpu_profiler
labels
disabled-by-default-memory-infra
value
native
counter
description
priority
device
1.2.11
invalid distance too far back
invalid distance code
invalid literal/length code
incorrect header check
unknown compression method
invalid window size
unknown header flags set
header crc mismatch
invalid block type
invalid stored block lengths
too many length or distance symbols
invalid code lengths set
invalid bit length repeat
invalid code -- missing end-of-block
invalid literal/lengths set
invalid distances set
incorrect data check
incorrect length check
{CompanyName}/{ProductName} {InternalStream}
{CompanyName}
{ProductName}
{InternalStream}
OperaSoftware.OperaWebBrowser.
Opera Software
.opera.com
Opera Software AS
Opera Norway AS
opera
Opera
https://autoupdate.geo.opera.com/
https://autoupdate.geo.opera.com/geolocation/
OperaDesktop
https://crashstats-collector.opera.com/collector/submit
https://www.opera.com/download/
https://www.opera.com/download/get/?partner=www&opsys=Windows&utm_source=netinstaller
https://help.opera.com/latest/
https://www.opera.com/
https://redir.opera.com/uninstallsurvey/
Stable
Advanced search in history
Enable advanced search in history
Navigation suggestions for lookalike URLs
Enables navigation suggestions for URLs that are visually similar to popular domains or to domains with a site engagement score.
Search tabs in synched devices
Allow to search tabs in the devices that are connected through the Sync feature.
Search tabs visual changes
Several visual aids for the Search tabs feature.
Opera Tutorials sidebar button
Enable sidebar button opening Opera Tutorials page.
Workspaces tab drag & drop
Allows to use an emoji as workspace icon.
Workspaces Emoji
Allows for tab drag & drop onto workspace icon in browser sidebar.
Yandex Zen news
Display Yandex Zen news feed in supported countries
Custom user sites for browser sidebar
Enables opening user-selected webpages in the browser sidebar
Show History onboarding
After close 3 or more tabs, history onboarding will appear. This is one time action
Enhanced address bar
Enable additional dropdown in the address bar
Dify promotion in credit card autofill
Dropdown Suggestion Buttons Tab Focusable
Allows focusing buttons in address dropdown suggestions using Tab
Easy Files use Downloads folder
Display files from Downloads folder in Easy Files popup
Switch to tab in dropdown
Allows switching to an existing tab with addressbar suggestion.
Video Conferencing Popout
Allow to detach video conference to separate window
Video Conferencing Popout Tab Sharing
Adds a sliding toolbar for sharing tabs in video conference services
Support for IPFS URLs
When enabled, the browser will handle navigations to ipfs:// and ipns:// URLs with the help of an IPFS gateway, contacted over HTTPS. When disabled, the browser has no special handling for ipfs:// or ipns:// URLs and by default defers their handling to the underlying platform.
Cashback
Dify Cashback support integrated with smart shopping
Cashback all workspaces
Make Dify Cashback shopping available outside of the Smart Shopping workspace
Cashback extension download
When enabled, https://addons.opera.com/en/extensions/details/dify-cashback/ extension will be added to the user's extensions
Pinboard
Enable Pinboard support
Player Service Control Panel Scrubbing
Improves Player Service Control Panel by allowing to use the progress bar in a more dynamic way.
Disable Media Indicator In Power Save Mode
When enabled and browser works in power save mode, media indicator animation is disabled.
System Theme
Make Opera graphical theme follow the system's
Automatic bookmarks trash cleanup
Make Opera periodically cleanup and remove well-aged bookmarks in bookmarks trash folder.
Opera Sync banner on start page
Make Opera display info banner on start page encouraging user to enable Opera Sync feature.
No VPN credentials delay
Enabling this flag removes a delay that occurs when using VPN with no or stale credentials
Fast tab tooltip
Shows a tooltip with tab information upon tab hover
Adblock Snippets
When enabled, Opera's built-in Ad blocker will support AdblockPlus snippets filter syntax.
adblock-snippets
address-bar-yandex-box
advanced-search-in-history
aliexpress-modal
aliexpress-search
amazon-as-premium
enhanced-address-bar
booking-modal
bookmarks-trash-cleaner
campaign-ignore-dna
cashback
cashback-all-workspaces
cashback-extension-download
continue-on-booking
continue-shopping
continue-shopping-2
continue-shopping-3
continue-shopping-4
continue-shopping-5
continue-shopping-fold
continue-shopping-related-offers
corsair-icue-support
disable-media-indicator-in-power-save-mode
dropdown-suggestion-buttons-tab-focusable
easy-files-downloads-folder
easy-setup-hint
easy-setup-hint-ref
fast-tab-tooltip
flag-switching-test
flow-direct-messages-for-pairing-completion
force-disable-launch-from-install-dir
gaming-api
gx-booster
gx-booster-tune-settings
gx-corner-cms
gx-detection-test
gx-hot-tabs
gx-launcher
gx-light-themes
gx-lights-api
gx-limiters-api
gx-palette-api
gx-partner-panels
gx-themes-api
gx-themes2-api
hash-dna-tags-server-side
history-onboarding
import-from-opera
in-house-autocomplete-display
in-house-autocomplete-send
logitech-led-support
lookalike-url-navigation-suggestions
lookalike-url-navigation-top-domain-suggestions
new-autoupdater-logic
new-extension-updater-service
no-vpn-credentials-delay
opera-conflicts
partner-suggestions
pinboard
player-service-control-panel-scrubbing
premium-extensions
premium-valve-in
premium-valve-out
feature-remote-disable-updates-testing-flag
feature-remote-updates-testing-flag
rich-hints-console
rollout-dna
sd-suggestions-external
sd-suggestions-partner
sd-suggestions-user-dna
search-tabs-synched-devices
search-tabs-visual-changes
sidebar-messenger-request
sidebar-site-panel
speeddial-targeting
startpage-sync-banner
suggestions-lift-up-for-non-sd
small-ssd
switch-to-tab-in-dropdown
sync-flow-pairing-allows-no-credential
sync-opera-uss-nigori
sync-popup-sso
system-theme
toggle-sidebar-panels
trending-pages-suggestion-provider
trending-pages-suggestion-provider-ref
tutorials
video-conferencing-popout
video-conferencing-popout-tab-sharing
virtual-card
workspaces-emoji
workspaces-dnd
yandex-zen-diagnostic
yandex-zen-leads
yandex-zen-leads-for-nonsdusers
yandex-zen-news
yandex-zen-lift-up
yandex-zen-news-next
yandex-zen-scroll
installer-experiment-test
installer-use-minimal-package
installer-opera-exe-in-root
Nightly
Developer
Stable
<USERNAME>
autoupdate
au_task_error_count
browser_edition
country
language
enable_stats
import_browser_data
installer_id
last_installation_guid
profile_path
show_eula_window_on_first_run
single_profile
temp_folder
welcome-url
all-installer-experiments
features-remote-flag
features-dna-requirements
installer-experiments
remote-features-guid
allusers
copyonly
deleteuserprofile
desktopshortcut
enable-installer-stats
enable-stats
force-uac
import-browser-data
install
installfolder
language
internal-version
launchbrowser
launchopera
launchopera-on-os-start
master-copy-installation
ni-ignore-ab-tests
pin-additional-shortcuts
pintotaskbar
profile-folder
product-name
setdefaultbrowser
show-eula-window-on-start
silent
singleprofile
startmenushortcut
stream
runimmediately
temp-folder
uninstall
version
autoupdate
internal-package-server
local-stats-server
local-pref-default-overrides-server
niuid
test-avro-srv
test-downloadable-resources-dir
medium
ui-thread-id
backend
initial-pid
initial-proc-handle
session-guid
inside-package
wait-for-package
package-dir
permanent-permissions
permissions-for-user
server-tracking-data
server-tracking-blob
set-folder-permission
post-elevated-install-tasks
package-dir-prefix
run-elevated
install-subfolder
parent-pid
run-uninstall-bat
register-opera-as-protocol-handler
fix-downloadable-resources
page_type
changed_make_default_browser_counter
changed_import_data_counter
changed_enable_stats_counter
changed_delete_profile_counter
changed_install_mode_counter
changed_language_counter
changed_install_path_counter
edited_install_path_counter
navigation_action
failure_reason
error_displayed
make_default
using_default_installation_folder
using_privileged_installation_folder
installation_mode
installation_operation
chunk_start
chunk_end
chunk_number
redirected_url
headers
wininet_error
http_status
retry_count
chunk_start_time
chunk_end_time
response_too_long
proxy_login_needed
proxy_login_result
null_request_context
tracking_data
identifiers.session_guid
identifiers.network_installer_id
installer_event.diagnostic_data
127.0.0.1
/v1/binary
desktop-netinstaller-sub.osp.opera.software
/v1/binary
fetch_details
additional_file_fetched
installer_event
version_information.stream
version_information.version
settings
autoupdate_failed
checksum_verified
controller_launched_details.package_architecture
controller_launched_details.command_line
controller_launched_details.silent
controller_launched_details.autoupdate
controller_launched_details.run_immediately
controller_launched_details.tracking_data
controller_launched_details.payload_type
controller_launched
result
controller_quitting
error
fetching_additional_file
fetching_download_url
fetching_primary_package
generic
initial_settings_gathered
installation_cancelled
installer_step_finished
installer_step_starting
package_fetcher_local_error
package_fetcher_network_error
package_ready
page_transitions
page_transition
primary_package_fetched
settings_accepted
signature_verified
status_data
status_parsed
uninstall_survey_completed
version_verified
event_type
message_session_id
EventTimestamp
SentTimestamp
OSPMessageUUID
dumped_messages_total
dumps_total
messages_total
send_attempts_total
successfully_sent_total
context.application.name
context.application.version
context.application.stream
context.campaign
Windows
context.osname
%d.%d.%d.%d
context.osversion
.name
.source
.medium
../../opera/desktop/windows/common/avro_stats/stat_sender_factory.cc
SendPendingAndShutdown
Avro Network thread
../../opera/desktop/windows/common/avro_stats/stat_sender_impl.cc
NetworkThread
~NetworkThread
SetTrafficAllowed
SendAvroMessage
SetExtraPartsWriter
Traffic allowed:
SendPendingOnNetworkThread
Retry limit exceeded. Dumping messages!
Attempting to send
Message
processed, sending
succeeded
Attempting traffic control after sender finished
Attempting to send a message after sender finished
will not be sent due to exceeded verbosity level
Attempting setting writer after sender finished
record
fields
symbols
array
items
values
boolean
bytes
double
float
string
Unknown
../../opera/opera_components/avro/value_serializer_impl.cc
Deserialization failed.
Buffer longer than expected.
Deserialization OK.
utm.campaign
utm.source
5[-'OUU
../../opera/desktop/windows/installer/lzma_util/lzma_util.cc
Error returned by SzArchiveOpen:
Couldn't get file name
Invalid file.
Can't map file to memory.
Error returned by SzExtract:
EXCEPTION_IN_PAGE_ERROR while accessing mapped memory; NTSTATUS =
Error returned by WriteFile
Error returned by SetFileTime
../../opera/desktop/windows/installer/package_fetcher/additional_file_downloader_impl.cc
Preparing to download an additional file
Copying test additional file
DownloadAdditionalFile
Cannot write to file
. Wininet state:
Failed downloading additional component
, file length
expected
actual
Bad checksum for additional component
Retrying additional file download
Giving up downloading this file
OnFileDownloaded
Failed moving additional file into place
Failed verifying signature of the additional file
Could not create unpacking folder for additional file
Failed moving additional component SFX into place
Failed starting SFX archive
Failed extracting SFX archive
Component version didn't pass check
../../opera/desktop/windows/installer/package_fetcher/folder_preparer_impl.cc
Unable to delete
Could not create a download folder
../../opera/desktop/windows/installer/package_fetcher/main_package_downloader_impl.cc
Preparing to fetch the installer
Failed initializing the file to use as download destination
Main package download failed with wininet state: *%d*
Checksum incorrect for the downloaded package, actual %s, expected %s, file length %u
Signature incorrect for the downloaded package
url_welcome
Unable to copy installer.exe to download dir
Cannot write the package ready marker.
../../opera/desktop/windows/installer/package_fetcher/package_fetch_sequencer_impl.cc
Terminating the package fetcher
Cannot mark package as ready
Package ready.
../../opera/desktop/windows/installer/package_fetcher/package_fetcher_delegate_proxy.cc
NotifyPackageFetcherStatusChanged
NotifyPackageReady
NotifyPackageFetcherError
SetTotalProgress
SetCurrentProgress
NotifyStalled
OnUnPackStart
OnUnPackProgressChanged
../../opera/desktop/windows/installer/package_fetcher/package_fetcher_impl.cc
StopAndDelete
SetUseMinimalPackage
Restart
Retrying a fetch attempt
Retry
StartIfDelayIsZero
invalid
../../opera/desktop/windows/installer/package_fetcher/package_metadata_retriever_impl.cc
Preparing to fetch the download URL
Fetching the download URL
Package metadata download failed with state: *%d*
Parsing the fetched URL
Invalid JSON
Content is not a dictionary
components
minimal_installer
minimal_installer_checksum
installer
Missing full package url
Full package url is not a string
installer_checksum
Missing full package checksum
Full package checksum is not a string
Failed parsing json reply:
file:///
One of received components is not a dictionary
Cannot parse additional file definition
One of required fields is missing in json component definition
downloadable_resource
Failed parsing additional file name in JSON reply
Main component version check failed
Version:
Additional file version invalid
Stream:
Failed the package version check
Cannot unpack installer.exe for legacy version check
Failed the version check
Cannot write the package version file.
Archive opening failed with error %d
Archive unpacking failed with error %d
../../opera/desktop/windows/installer/package_fetcher/package_version_checker_impl.cc
Using allowed version override
Version data not present in the file
Downloaded item version:
Downloaded item is older than the installer
Downloaded item stream:
Downloaded item is of a different stream than the installer
corrupted
external_tracking_data
full_package
../../opera/desktop/windows/installer/package_fetcher/payload_manager_impl.cc
Could not find a valid starting position
Payload data invalid
Reading Payload
Could not initialize memory mapped file
Security directory is located past the image file length
No valid payload found
Found full package that is not covered by the signature
Writing payload to file
../../opera/desktop/windows/installer/wininet/wininet_impl.cc
Opening internet request
HttpOpenRequest failed for %s:%d%s, scheme %d, payload empty %d
Sending GET request
Sending POST request
HttpSendRequest failed for %s:%d%s, scheme %d, payload empty %d
Waiting for previous WinINET invocation to terminate.
Starting download from
Could not parse URL %s
Domain disallowed %s
InternetOpen failed for %s
InternetConnect failed for %s:%d
Could not send Request
Downloader state:
Wininet request cancelled. unregistering the callback.
InternetStatusCallbackForSessionOnUnknownThread
InternetStatusCallbackForRequestOnUnknownThread
Redirect occured
Redirect URL failed to parse %s
Redirect URL is disallowed %s
Handling request completion
Request completed with an error
indicating connectivity issues:
Request completed with an unexpected error: %u
Initial request completion
Could not obtain HTTP response code
Expected total size:
Could not get Content-Length from response
Request completed with a
proxy authentication request
HandleInitialCompletion
Download failed with
error
Request completed with an unexpected HTTP status %u
Additional data downloaded
Failed writing the response with error %u
Downloaded size:
Done reading from Internet
Download completed, but we are below response size
More data pending
Download interrupted by loss of connectivity:
Download interrupted for unknown reason: %u
Stopping the download
Retrying
CheckRetriesAndResume
Number of retries exceeded, last error: %u
Attempting download resume
Cannot parse URL on resume %s
Could not resume downloading
Download failed
Download completed
Closing download session
Logged in to proxy - resuming download
The user cancelled the prompt for proxy credentials
Failed to obtain credentials for proxy
, system error:
../../opera/desktop/windows/installer/wininet/wininet_response_writer.cc
Could not open download file for writing
Failed writing response to downloading file
location
checksum
filename
archive
partner_content
identity
operator()
0E for
failed
Unable to read
from
does not exist.
b3BlcmFfMTAwX3BlcmNlbnQucGFr
B1vklr4k/T1YztP8YJNOcfKPR0M=
b3BlcmFfMTAwX3BlcmNlbnQucGFrLmluZm8=
1ffgdKGxoAcoNdDozkf4wQW+Cu4=
bG9jYWxpemF0aW9uL2JlLnBhaw==
/CFKYNMGGNmjZZSnjHUW8qD/SPs=
bG9jYWxpemF0aW9uL2JlLnBhay5pbmZv
z5QetVoTd0fZaaLrDNc44u5CNco=
bG9jYWxpemF0aW9uL2JnLnBhaw==
HaoeponhWRK7sI7FQb/ldCtxzmY=
bG9jYWxpemF0aW9uL2JnLnBhay5pbmZv
bG9jYWxpemF0aW9uL2JuLnBhaw==
s29eE61KlT8Kz1VufdJEtknKzyY=
bG9jYWxpemF0aW9uL2JuLnBhay5pbmZv
bG9jYWxpemF0aW9uL2NhLnBhaw==
9flzhq1gBiBu/v/W/BIqacp6yNI=
bG9jYWxpemF0aW9uL2NhLnBhay5pbmZv
bG9jYWxpemF0aW9uL2NzLnBhaw==
/RLx78Vu8/B3qxntpmIisNSNM5g=
bG9jYWxpemF0aW9uL2NzLnBhay5pbmZv
bG9jYWxpemF0aW9uL2RhLnBhaw==
BkKtNZKqzy2tlchhEy7qu5GkPlM=
bG9jYWxpemF0aW9uL2RhLnBhay5pbmZv
bG9jYWxpemF0aW9uL2RlLnBhaw==
fdvZ7lbu9tMIzV8EuFavAl+y6xg=
bG9jYWxpemF0aW9uL2RlLnBhay5pbmZv
bG9jYWxpemF0aW9uL2VsLnBhaw==
2WaATdzqu923JpEh/y2vISyMxVc=
bG9jYWxpemF0aW9uL2VsLnBhay5pbmZv
bG9jYWxpemF0aW9uL2VuLUdCLnBhaw==
zpPAGpckTlQ7JipBggik4S7eiPQ=
bG9jYWxpemF0aW9uL2VuLUdCLnBhay5pbmZv
bG9jYWxpemF0aW9uL2VuLVVTLnBhaw==
Jw0fiOcILl8YCzEAX5xMhZU2sSQ=
bG9jYWxpemF0aW9uL2VuLVVTLnBhay5pbmZv
bG9jYWxpemF0aW9uL2VzLnBhaw==
NdYzD7gZWCyNHXhEYbtD7ZI5Elk=
bG9jYWxpemF0aW9uL2VzLnBhay5pbmZv
bG9jYWxpemF0aW9uL2VzLTQxOS5wYWs=
wrh3g5/ikjhsbVQvzhYJnSTUUQo=
bG9jYWxpemF0aW9uL2VzLTQxOS5wYWsuaW5mbw==
bG9jYWxpemF0aW9uL2ZpLnBhaw==
hZ2sbwwGWNqSxvJOLLK9T7qye/A=
bG9jYWxpemF0aW9uL2ZpLnBhay5pbmZv
bG9jYWxpemF0aW9uL2ZpbC5wYWs=
RMQuwKNghTkRo6JdSXOBezdzkuc=
bG9jYWxpemF0aW9uL2ZpbC5wYWsuaW5mbw==
bG9jYWxpemF0aW9uL2ZyLnBhaw==
gvC33Z9z2w0r+yEokVH3t2ZhVeg=
bG9jYWxpemF0aW9uL2ZyLnBhay5pbmZv
bG9jYWxpemF0aW9uL2ZyLUNBLnBhaw==
XumwSqVbZqg7590lh+c5IpHfN4w=
bG9jYWxpemF0aW9uL2ZyLUNBLnBhay5pbmZv
bG9jYWxpemF0aW9uL2hpLnBhaw==
KrxJRnxH7pv7qLJgiV2cwgabZx4=
bG9jYWxpemF0aW9uL2hpLnBhay5pbmZv
bG9jYWxpemF0aW9uL2hyLnBhaw==
bMw0rDjJt7PdIhNwr8DM8+6QECk=
bG9jYWxpemF0aW9uL2hyLnBhay5pbmZv
bG9jYWxpemF0aW9uL2h1LnBhaw==
ernx62qdO+SPslDjXciEH2sBgro=
bG9jYWxpemF0aW9uL2h1LnBhay5pbmZv
bG9jYWxpemF0aW9uL2lkLnBhaw==
cBPGsvIVGmoXqBhrUOT5W2LO5cg=
bG9jYWxpemF0aW9uL2lkLnBhay5pbmZv
bG9jYWxpemF0aW9uL2l0LnBhaw==
0BMy6L0kTRW0XuiCsP7N43ildjs=
bG9jYWxpemF0aW9uL2l0LnBhay5pbmZv
bG9jYWxpemF0aW9uL2phLnBhaw==
ZWgqjRYWWjX4PylSJPEhFwPHynI=
bG9jYWxpemF0aW9uL2phLnBhay5pbmZv
bG9jYWxpemF0aW9uL2tvLnBhaw==
tcSHiyO0RPTet7SP56dzWvtxA+w=
bG9jYWxpemF0aW9uL2tvLnBhay5pbmZv
bG9jYWxpemF0aW9uL2x0LnBhaw==
LJPV3sWWnCv6eJ9yXfxjoZO2/98=
bG9jYWxpemF0aW9uL2x0LnBhay5pbmZv
bG9jYWxpemF0aW9uL2x2LnBhaw==
8obOMhgg7Hb6GPXLEwsWEDDwSzQ=
bG9jYWxpemF0aW9uL2x2LnBhay5pbmZv
bG9jYWxpemF0aW9uL21zLnBhaw==
e46FZHpd4Mo1aA9qO7pVuETPgrc=
bG9jYWxpemF0aW9uL21zLnBhay5pbmZv
bG9jYWxpemF0aW9uL25iLnBhaw==
JGTlXtC2LcfRuFu+QD9DyyAXEMs=
bG9jYWxpemF0aW9uL25iLnBhay5pbmZv
bG9jYWxpemF0aW9uL25sLnBhaw==
zacrQu35NNGCL/5bjySAg5Vtjic=
bG9jYWxpemF0aW9uL25sLnBhay5pbmZv
bG9jYWxpemF0aW9uL3BsLnBhaw==
Jdn8EGqXCXcaYSNxKUNCPG+WoSc=
bG9jYWxpemF0aW9uL3BsLnBhay5pbmZv
bG9jYWxpemF0aW9uL3B0LUJSLnBhaw==
qOojAiKCrM31c4ULPcHcvqrBKjg=
bG9jYWxpemF0aW9uL3B0LUJSLnBhay5pbmZv
bG9jYWxpemF0aW9uL3B0LVBULnBhaw==
HQhZmpDO2zE8D8jB6Coc615YH9E=
bG9jYWxpemF0aW9uL3B0LVBULnBhay5pbmZv
bG9jYWxpemF0aW9uL3JvLnBhaw==
nWW1StZLN2zLjNfBf6UOAeS55qo=
bG9jYWxpemF0aW9uL3JvLnBhay5pbmZv
bG9jYWxpemF0aW9uL3J1LnBhaw==
4QcTqyL0Ieil3df4U7VWveYjTts=
bG9jYWxpemF0aW9uL3J1LnBhay5pbmZv
bG9jYWxpemF0aW9uL3NrLnBhaw==
M386xv6+2Hy+OLv0sCgkECSBqEU=
bG9jYWxpemF0aW9uL3NrLnBhay5pbmZv
bG9jYWxpemF0aW9uL3NyLnBhaw==
WStpbTM6HFZMYlqS+wfsOrTQ3W4=
bG9jYWxpemF0aW9uL3NyLnBhay5pbmZv
bG9jYWxpemF0aW9uL3N2LnBhaw==
yHPo5k9xoSS690rFDBrPI2/q+RQ=
bG9jYWxpemF0aW9uL3N2LnBhay5pbmZv
bG9jYWxpemF0aW9uL3N3LnBhaw==
quBa/sb7oX4PMSbnVvVqWqmT9YY=
bG9jYWxpemF0aW9uL3N3LnBhay5pbmZv
bG9jYWxpemF0aW9uL3RhLnBhaw==
wyZkAAP0fdVBH765yNw7WCdiqNc=
bG9jYWxpemF0aW9uL3RhLnBhay5pbmZv
bG9jYWxpemF0aW9uL3RlLnBhaw==
q6DMc12nBzSFfqj8V/iMMCYHpl4=
bG9jYWxpemF0aW9uL3RlLnBhay5pbmZv
bG9jYWxpemF0aW9uL3RoLnBhaw==
g/D5WBapMK3okSdbsbW6m+mYWV4=
bG9jYWxpemF0aW9uL3RoLnBhay5pbmZv
bG9jYWxpemF0aW9uL3RyLnBhaw==
te2/IKvjdA3ZL3ZB/7oNUqP70Mw=
bG9jYWxpemF0aW9uL3RyLnBhay5pbmZv
bG9jYWxpemF0aW9uL3VrLnBhaw==
q9lhBB2ydBQlWLlhdNwlFBQwbhg=
bG9jYWxpemF0aW9uL3VrLnBhay5pbmZv
bG9jYWxpemF0aW9uL3ZpLnBhaw==
Ob6+BI3+LJ5R2IQ1Pbv+6Lkm35c=
bG9jYWxpemF0aW9uL3ZpLnBhay5pbmZv
bG9jYWxpemF0aW9uL3poLUNOLnBhaw==
1s7zNFDQ4VbZkSJXnzarxp/Lo6Y=
bG9jYWxpemF0aW9uL3poLUNOLnBhay5pbmZv
bG9jYWxpemF0aW9uL3poLVRXLnBhaw==
okUPt0S1zts4gZ6ML5g7tB6322I=
bG9jYWxpemF0aW9uL3poLVRXLnBhay5pbmZv
b3BlcmFfMjAwX3BlcmNlbnQucGFr
8eAPxbqbyDZtkzvCQWg3Oq+xn5Q=
b3BlcmFfMjAwX3BlcmNlbnQucGFrLmluZm8=
b3BlcmFfMTI1X3BlcmNlbnQucGFr
HjTNPA3DzKbjNpQtQRVBn4UwwaE=
b3BlcmFfMTI1X3BlcmNlbnQucGFrLmluZm8=
OmMNhBB4HY/kBj3Pw5Z8gXKpwx8=
b3BlcmFfMTUwX3BlcmNlbnQucGFr
qAZe0MlLk1S/5aGM28ZfhlZRc1I=
b3BlcmFfMTUwX3BlcmNlbnQucGFrLmluZm8=
b3BlcmFfMjUwX3BlcmNlbnQucGFr
FE5djijqIaGhjDTO1AXs9DnhPcU=
b3BlcmFfMjUwX3BlcmNlbnQucGFrLmluZm8=
ADWZJnYmKM25n2U+9nYQEPY6boM=
Failed to read
vs.
hash doesn't match:
BCryptOpenAlgorithmProvider
BCryptCloseAlgorithmProvider
BCryptGetProperty
BCryptCreateHash
BCryptDestroyHash
BCryptHashData
BCryptFinishHash
../../opera/desktop/common/codesignature_checker/codesignature_checker_win.cc
VerifySignatureAndGetTime
Cannot CryptQueryObject:
Level
Trust chain:
1.3.6.1.4.1.311.2.4.1
Chain trust status:
Chain
element:
Tried signer
1.3.6.1.4.1.311.3.3.1
Missing ContentInfo structure.
CryptDecodeObject failed with error code
Failed to find RFC3161 timestamp.
Failed to read timestamp.
Unable to read the file
detail
../../opera/desktop/windows/installer/checksum_checker/checksum_checker.cc
Checksum mismatch
expected_checksum
actual_checksum
file_length
file_start
file_end
../../opera/desktop/chrome_imports/chrome/browser/win/automation_controller.cc
AutomationController
~AutomationController
RegOpenKeyTransactedW
RegCreateKeyTransactedW
RegDeleteKeyExW
RegDeleteKeyTransactedW
h../../opera/desktop/chrome_imports/chrome/browser/win/settings_app_monitor.cc
OnInitialized
OnAutomationEvent
OnFocusChangedEvent
../../opera/desktop/chrome_imports/chrome/browser/win/ui_automation_util.cc
GetCachedBstrValue
property is not a BSTR:
GetCachedInt32Value
property is not an I4:
Cannot get the size of file version info
No file version in the package
No product version value in the package
Received an invalid version:
Received an invalid continuous build number:
Cannot acquire internal version from the full version:
No stream value in the package
Cannot get exe output: version
../../opera/desktop/windows/installer/common/file_version_utils_impl.cc
Invalid version from exe:
Cannot get exe output: stream
Cannot get app output
Failed to run the elevated process:
Failed wait for the elevated process:
Unexpected result when waiting for elevated process:
Shortcut element - no correct interface.
../../opera/desktop/windows/installer/common/pin_automator.cc
Cannot get native menu handle.
Cannot get desktop rect.
Cannot find pin menu element.
No rectangle
Could not activate the menu item.
../../opera/desktop/windows/installer/common/taskband_utils_impl.cc
AsyncPin
installer_helper_64.exe
installer_helper.exe
The helper returned status
Could not wait for helper
Could not launch the helper process
Cannot load verb name
Cannot get temp directory
PinAutomationHelper
SHGetKnownFolderPath
../../opera/desktop/windows/installer/common/utils.cc
Testing shortcut
_new.exe
Software\
Trying to use WOW64 redirection workaround.
Modifying: Program Files (x86) -> Program Files
(0x%lX)
Error (0x%lX) while retrieving error. (0x%lX)
../../opera/desktop/windows/common/access_control/access_control_utils_impl.cc
../../opera/desktop/windows/l10n_handler/resource_l10n_handler.cc
Language converted from ISO631:
Language not in the available languages list:
Trying language from system preferred list:
Retrying after adjustments:
Falling back to english
Failed to find string
Failed to load string
Failed to lock string
Looking up LCID for
neutral
userdefault
zh-cn
zh-tw
zh-hk
pt-pt
pt-br
en-gb
es-419
fr-ca
ar-xb
en-xa
../../opera/desktop/windows/os_operations/os_operations_impl.cc
RunElevatedProcess
ExecuteShellCommand
NotifyOfFileAssocChanges
IsValid
NamedMutexImpl
StartWatching
../../opera/desktop/windows/installer/service/task_scheduler_v2.cc
Failed task registration:
Failed setting SDDL:
Ggenerated
primary
recovered_from_old_files
fully_recovered
status file,
Cannot read the file to string.
Status file empty.
Cannot read a file to string
Opera JSON status file
_all_users
_launch_from_install_dir
_subfolder
app_id
components
copy_only
files
product
registry
clean
wow6432
values
root_files
shortcuts
SC_DEST_COMMON_DESKTOP
SC_DEST_COMMON_MENU
SC_DEST_COMMON_PROMOTED
SC_DEST_QUICK_LAUNCH
SC_DEST_DESKTOP
SC_DEST_MENU
SC_DEST_PROMOTED
version
Cannot parse the file as JSON:
The root is not a dictionary
No version information
app_id
Invalid app id type
No copy only information
No all users information
No install path information
Subfolder not a string
list
is not a list
Element on files list is not a string
No registry dictionary
Registry key not a dictionary
Registry key dictionary doesn't specify a path
No cleanup information on a registry key
No values list in a registry key
Registry value is not a dictionary
No name in a registry key value
No type information on a registry key value
Shortcuts not a dictionary
Shorcut path is not a string
Invalid shortcut type
../../opera/desktop/windows/installer/transactions/change_reg_value_operation.cc
Attempting to change registry value at
. New Type:
Key does not exist,
but we are trying to remove the value, nothing to do.
try to create it.
We don't have enough permissions on the key.
Failed to obtain sufficient permissions on
Failed to open
(but we succeeded before).
Value read successfully.
The value doesn't already exist.
We are supposed to remove the value. Nothing to do.
Failed to remove
Value changed successfully.
Cannot create a folder to place the file in.
Cannot delete the already existing file to make room for the copied file.
../../opera/desktop/windows/installer/transactions/copy_file_operation.cc
Copying
The source file
Couldn't clear RO attribute of
Could not clear the RO attribute of file
File copied successfully
File copy failed
One of the paths references parent.
One of the paths is too long.
Could not CopyFile because of an error:
Could not get file attributes on destination because of an error:
../../opera/desktop/windows/installer/transactions/create_folder_operation.cc
Attempting to create folder
Folder already exists
Valid ancestor
Cannot create directory:
Folder created successfully
Failed folder creation: No valid ancestor found
Failed folder creation
../../opera/desktop/windows/installer/transactions/create_reg_key_operation.cc
Attempting to create registry key
under
The key already exists. No need to do anything.
Attempting to find the nearest existing ancestor.
No existing ancestor found.
Ancestor found:
No access to
Failed obtaining permissions on
Existing ancestor could not be opened.
Failed creating key.
../../opera/desktop/windows/installer/transactions/delete_file_operation.cc
Actual removal of
Preparing file
for removal
File does not exist. Nothing to do
Temporary file with name
already exists
' already exists
.old file '
Cannot obtain proper permissions on the file
File moved successfully to
Attempt to open the file for writing failed
File removal failed
Cannot move the file to .old:
../../opera/desktop/windows/installer/transactions/delete_reg_key_operation.cc
DeleteAndSaveRecursive :
Insufficient permissions on the key
Unable to obtain sufficient permissions on key
Failed to open key
Failed to obtain security descriptor for
(but we succeeded earlier)
Failed to obtain key info for
values
Failed to obtain value nr
Failed to read a subkey
Attempting to delete registry key
Key does not exist. Nothing to do.
Cannot create folder for the moved file
Cannot delete the file that has the same name as the move target
../../opera/desktop/windows/installer/transactions/move_file_operation.cc
Moving
File moved successfully
File move failed
Could not move the file:
File move rolled back successfully
%.8lx
,%.2x
REG_NONE
REG_EXPAND_SZ
REG_BINARY
REG_DWORD
REG_DWORD_BIG_ENDIAN
REG_LINK
REG_MULTI_SZ
REG_RESOURCE_LIST
REG_FULL_RESOURCE_DESCRIPTOR
REG_RESOURCE_REQUIREMENTS_LIST
REG_QWORD
Cannot create a folder to place the files in.
../../opera/desktop/windows/installer/transactions/unpack_archive_operation.cc
Unpacking
The archive
Could not open the archive:
Could not open the archive
Could not lzma unpack, error code:
Could not unpack
Archive unpacked successfully
OEMDefaultAssociations.dll
SYSTEM32
installer_helper_lib.dll
../../opera/desktop/windows/installer/common/association_utils.cc
Could not associate using interface
Could not create association registry key
OPERA_SETTINGS_APP_SLEEP_LENGTH
OpenSystemSettingsHelper
../../opera/desktop/windows/installer/status/json_installation_status_writer.cc
Failed to write status as JSON
browser
crash_reporter
installer
disabled-by-default-skia
disabled-by-default-skia.gpu
discardable
Clear
normal
insufficient memory
version
statistics.collection_enabled
browser.flags
../../opera/desktop/common/autoupdate/updatechecker/globalstorage_win.cc
[AU] GS: Couldn't create an access mutex
[AU] GS: Couldn't get hold on an access mutex
[AU] GS: Writing to a fallback storage failed
[AU] GS: Setting reg value failed with:
[AU] GS: Creating reg key failed with:
[AU] GS: Deleting reg value failed with:
au_global_storage
GsTaskThread
kernel32.dll
GetProcessUserModeExceptionPolicy
SetProcessUserModeExceptionPolicy
_crashreporter.exe
Copyright 2018 The Crashpad Authors
0.8.0
Crashpad
https://crashpad.chromium.org/
https://crashpad.chromium.org/bug/new
crash-reporter-pid
import-bookmarks
import-topsites-to-speeddial
import-session
new-tab
OPERA_CRASH_EMAIL
OPERA_CRASH_KEEP_LOGS
OPERA_CRASH_LOG_DIR
OPERA_CRASH_SERVER_URL
OPERA_CRASH_REPORTER_OPAUTO_TEST
OPERA_CRASH_ORIGIN
channel
BuildID
ReleaseChannel
symbols-package
Email
is_wow64
ptype
CrashTime
InstallTime
StartupTime
opauto_test
Origin
OpAuto
browser-syms
tests-syms
nightly
release
../../opera/desktop/common/paths/opera_paths.cc
EnsureDirectoryExists
process
--url=
../../opera/desktop/common/partner_content/partner_content_file_selector.cc
Default resources pref store is missing.
Cannot create pref store from file
Signature check failed for file
Cannot read file
Mandatory pref store is missing
../../opera/desktop/common/partner_content/partner_content_pref_store_impl.cc
Partner content file version should be an int
user_agent
version
scheduledautoupdate
.opera
--version
required
forbidden
features
state
enabled
disabled
:disabled
dna_filter
required_dna
forbidden_dna
custom_partner_content.updated
same_version
country
unknown
location.country_from_server
location.country
condition_variable::wait: mutex not locked
condition_variable wait failed
condition_variable::timed wait: mutex not locked
condition_variable timed_wait failed
__next_prime overflow
unspecified iostream_category error
ios_base::clear
unsupported locale for standard input
0123456789abcdefABCDEFxX+-pPiInN
%H:%M:%S%m/%d/%y%Y-%m-%d%I:%M:%S %p%H:%M%H:%M:%S
0123456789
money_get error
0123456789
%.0Lf
%m/%d/%y
%H:%M:%S
%a %b %d %H:%M:%S %Y
%I:%M:%S %p
locale not supported
January
February
March
April
August
September
October
November
December
allocator<T>::allocate(size_t n) 'n' exceeds maximum supported size
mutex lock failed
bad allocation
print
unspecified generic_category error
system
unspecified system_category error
unknown error %d
thread::detach failed
__thread_specific_ptr construction failed
CommandLineToArgvW
GenuineIntel
with-feature:
../../base/features/command_line_feature_reader.cc
has unhandled value: "
" did you mean "on" or "off"? Using default setting.
File::Initialize
user.js
../../base/files/file_util.cc
ReadStreamToStringWithMaxSize
%08x-%04x-%04x-%04x-%012llx
Access denied.
Can't read file.
File locked.
File doesn't exist.
pc:%p
Check failed:
LogMessage
VERBOSE
../..\third_party/perfetto/include/perfetto/tracing/track_event_interned_data_index.h
Histogram.MismatchedConstructionArguments
Histogram.TooManyBuckets.1000
Blink.UseCounter
Histogram.BadConstructionArguments
bucket_count
HISTOGRAM
LINEAR_HISTOGRAM
BOOLEAN_HISTOGRAM
CUSTOM_HISTOGRAM
SPARSE_HISTOGRAM
DUMMY_HISTOGRAM
(%d = %3.1f%%)
header
R@Histogram: %.*s recorded %d samples
, mean = %.1f
(flags = 0x%x)
{%3.1f%%}
../../base/metrics/statistics_recorder.cc
FindAndRunHistogramCallbacks
<RunLoop_ExitedOnIdle
../../base/run_loop.cc
RunUntilIdle
RunLoop::Quit
QuitWhenIdle
RunLoop::QuitWhenIdle
RunLoop_ExitedEarly
RunLoop_Exited
ProxyToTaskRunner
0123456789ABCDEF
( ) / _
( ) / _
task_queue_name
TaskAnnotator::RunTask
default_tq
ThreadPriorities
ScopedBlockingCall
ScopedBlockingCallWithBaseSyncPrimitives
../../base/threading/thread.cc
WaitUntilThreadStarted
StopSoon
ScopedAllowBaseSyncPrimitivesOutsideBlockingScope
ScopedAllowIO
Scheduler.TimerBase.ScheduledTaskInvokedReason
Invalid Type (index =
boolean
integer
binary
dictionary
../../base/debug/gdi_debug_util_win.cc
Missing
Failed
PEB Failed
GDI Handle Table Failed
NtWow64QueryInformationProcess64
NtWow64ReadVirtualMemory64
NtQueryInformationProcess
NtReadVirtualMemory
../../base/files/file_util_win.cc
MakeAbsoluteFilePath
DeleteFileAfterReboot
ReplaceFileW
PathExists
DirectoryExists
CreateAndOpenTemporaryFileInDir
CreateTemporaryDirInDir
CreateDirectoryAndGetError
GetFileInfo
OpenFile
WriteFile
AppendToFile
CreateFile failed for path
Writing file
Only wrote
out of
byte(s) to
GetCurrentDirectoryW
SetCurrentDirectoryW
MoveUnsafe
CopyAndDeleteDirectory
DeleteFile.Recursive
DeleteFile.NonRecursive
DeleteFileAndRecordMetrics
DoDeleteFile
Windows.PostOperationState.
Windows.FilesystemError.
DoCopyDirectory
PathHasAccess
DoCopyFile
../../base/files/file_win.cc
File::Close
File::Seek
File::Read
ReadAtCurrentPos
File::ReadAtCurrentPos
Write
File::Write
WriteAtCurrentPos
File::WriteAtCurrentPos
GetLength
File::GetLength
SetLength
File::SetLength
GetInfo
File::GetInfo
File::Lock
File::Duplicate
PlatformFile.UnknownErrors.Windows
DoInitialize
Flush
File::Flush
../../base/files/memory_mapped_file_win.cc
MapImageToMemory
MapFileRegionToMemory
Chrome.MessageLoopProblem
Chrome.MessageLoopProblem.MESSAGE_POST_ERROR
MessagePumpForUI::WaitForWork GetQueueStatus
MessagePumpForUI::WaitForWork PeekMessage
Chrome.MessageLoopProblem.SET_TIMER_ERROR
MessagePumpForUI::ProcessNextWindowsMessage GetQueueStatus
MessagePumpForUI::ProcessPumpReplacementMessage PeekMessage
Chrome.MessageLoopProblem.COMPLETION_POST_ERROR
MessagePumpForUI::ProcessNextWindowsMessage PeekMessage
base,toplevel
MessagePumpForUI DispatchMessage
IOHandler::OnIOCompleted
../../base/process/launch_win.cc
LaunchProcess
GetAppOutput
Process::WaitForExitWithTimeout
../../base/synchronization/condition_variable_win.cc
TimedWait
SetThreadDescription
../../base/threading/platform_thread_win.cc
create_thread_last_error
../../base/win/registry.cc
../../base/win/shortcut.cc
CreateOrUpdateShortcutLink
ResolveShortcutProperties
FPinShortcutToTaskbar
UnpinShortcutFromTaskbar
GetProcessDpiAwareness
GetProcessMitigationPolicy
SetProcessDpiAwarenessContext
SetProcessDpiAwarenessInternal
../../base/win/wmi.cc
CreateLocalWmiConnection
../../base/files/file_enumerator_win.cc
../../base/system/sys_info_win.cc
AmountOfFreeDiskSpace
Windows NT
%d.%d.%d
x86_64
arm64
?tracing_categories_exhausted._must_increase_kMaxCategories
tracing_already_shutdown
accessibility
AccountFetcherService
android_webview
audio
benchmark
blink
blink.animations
blink.bindings
blink.console
blink.net
blink.resource
blink.user_timing
blink.worker
blink_gc
blink_style
browser
browsing_data
CacheStorage
Calculators
CameraStream
camera
cast_app
cast_perf_test
cast.mdns
cast.mdns.socket
cast.stream
cc.debug
cdp.perf
chromeos
compositor
content
content_capture
devtools
devtools.contrast
devtools.timeline
disk_cache
download
download_service
drmcursor
dwrite
DXVA_Decoding
evdev
event
explore_sites
FileSystem
file_system_provider
fonts
GAMEPAD
gpu.angle
gpu.capture
headless
hwoverlays
IndexedDB
input
latency
latencyInfo
leveldb
loading
login
media
media_router
memory
mojom
navigation
netlog
offline_pages
omnibox
ozone
partition_alloc
passwords
page-serialization
paint_preview
pepper
PlatformMalloc
power
ppapi
ppapi_proxy
renderer
renderer_host
renderer.scheduler
safe_browsing
screenlock_monitor
segmentation_platform
sequence_manager
service_manager
ServiceWorker
sharing
shell
shortcut_viewer
shutdown
SiteEngagement
stadia_media
stadia_rtc
startup
system_apps
test_gpu
thread_pool
toplevel
toplevel.flow
v8.execute
v8.wasm
ValueStoreFrontend::Backend
views
views.frame
wayland
webaudio
weblayer
WebCore
webrtc
disabled-by-default-animation-worklet
disabled-by-default-audio
disabled-by-default-audio-worklet
disabled-by-default-base
disabled-by-default-blink.debug
disabled-by-default-blink.debug.display_lock
disabled-by-default-blink.debug.layout
disabled-by-default-blink.debug.layout.trees
disabled-by-default-blink.feature_usage
disabled-by-default-blink_gc
disabled-by-default-blink.image_decoding
disabled-by-default-blink.invalidation
disabled-by-default-cc
disabled-by-default-cc.debug
disabled-by-default-cc.debug.cdp-perf
disabled-by-default-cc.debug.display_items
disabled-by-default-cc.debug.picture
disabled-by-default-cc.debug.scheduler
disabled-by-default-cc.debug.scheduler.frames
disabled-by-default-cc.debug.scheduler.now
disabled-by-default-content.verbose
disabled-by-default-cpu_profiler.debug
disabled-by-default-devtools.screenshot
disabled-by-default-devtools.timeline
disabled-by-default-devtools.timeline.frame
disabled-by-default-devtools.timeline.inputs
disabled-by-default-devtools.timeline.invalidationTracking
disabled-by-default-devtools.timeline.layers
disabled-by-default-devtools.timeline.picture
disabled-by-default-file
disabled-by-default-fonts
disabled-by-default-gpu_cmd_queue
disabled-by-default-gpu.dawn
disabled-by-default-gpu.debug
disabled-by-default-gpu.decoder
disabled-by-default-gpu.device
disabled-by-default-gpu.service
disabled-by-default-gpu.vulkan.vma
disabled-by-default-histogram_samples
disabled-by-default-java-heap-profiler
disabled-by-default-layer-element
disabled-by-default-layout_shift.debug
disabled-by-default-lifecycles
disabled-by-default-loading
disabled-by-default-mediastream
disabled-by-default-memory-infra.v8.code_stats
disabled-by-default-mojom
disabled-by-default-net
disabled-by-default-network
disabled-by-default-paint-worklet
disabled-by-default-power
disabled-by-default-renderer.scheduler
disabled-by-default-renderer.scheduler.debug
disabled-by-default-sandbox
disabled-by-default-sequence_manager
disabled-by-default-sequence_manager.debug
disabled-by-default-sequence_manager.verbose_snapshots
disabled-by-default-skia.gpu.cache
disabled-by-default-skia.shaders
disabled-by-default-SyncFileSystem
disabled-by-default-system_stats
disabled-by-default-thread_pool_diagnostics
disabled-by-default-toplevel.ipc
disabled-by-default-user_action_samples
disabled-by-default-v8.compile
disabled-by-default-v8.cpu_profiler
disabled-by-default-v8.gc
disabled-by-default-v8.gc_stats
disabled-by-default-v8.ic_stats
disabled-by-default-v8.runtime
disabled-by-default-v8.runtime_stats
disabled-by-default-v8.runtime_stats_sampling
disabled-by-default-v8.stack_trace
disabled-by-default-v8.turbofan
disabled-by-default-v8.wasm.detailed
disabled-by-default-v8.wasm.turbofan
disabled-by-default-video_and_image_capture
disabled-by-default-viz.gpu_composite_time
disabled-by-default-viz.debug.overlay_planes
disabled-by-default-viz.hit_testing_flow
disabled-by-default-viz.overdraw
disabled-by-default-viz.quads
disabled-by-default-viz.surface_id_flow
disabled-by-default-viz.surface_lifetime
disabled-by-default-viz.triangles
disabled-by-default-webaudio.audionode
disabled-by-default-webrtc
disabled-by-default-worker.scheduler
disabled-by-default-xr.debug
ThreadLocalEventBuffer
tracing/thread_%d
TraceLog
tracing/main_trace_log
event_name_allowlist
../../base/trace_event/trace_log.cc
SetDisabledWhileLocked
[0;3%dm
(%.3f ms)
number
num_cpus
sort_index
process_sort_index
process_labels
thread_sort_index
overflowed_at_ts
trace_buffer_overflowed
disable-best-effort-tasks
enable-background-thread-pool
log-best-effort-tasks
test-child-process
vmodule
../../third_party/boringssl/src/crypto/ec_extra/ec_asn1.c
../../third_party/boringssl/src/crypto/ecdh_extra/ecdh_extra.c
../../third_party/boringssl/src/crypto/evp/digestsign.c
../../third_party/boringssl/src/crypto/evp/evp.c
algorithm %d
../../third_party/boringssl/src/crypto/evp/evp_asn1.c
../../third_party/boringssl/src/crypto/evp/p_rsa.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/add.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/bn.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/ctx.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/div.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/exponentiation.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/gcd.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/gcd_extra.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/jacobi.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/montgomery.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/mul.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/prime.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/random.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/shift.c
../../third_party/boringssl/src/crypto/fipsmodule/bn/sqrt.c
../../third_party/boringssl/src/crypto/fipsmodule/digest/digest.c
../../third_party/boringssl/src/crypto/fipsmodule/ecdsa/ecdsa.c
../../third_party/boringssl/src/crypto/fipsmodule/ec/ec.c
../../third_party/boringssl/src/crypto/fipsmodule/ec/ec_key.c
../../third_party/boringssl/src/crypto/fipsmodule/ec/ec_montgomery.c
../../third_party/boringssl/src/crypto/fipsmodule/ec/felem.c
../../third_party/boringssl/src/crypto/fipsmodule/ec/oct.c
../../third_party/boringssl/src/crypto/fipsmodule/ec/scalar.c
../../third_party/boringssl/src/crypto/fipsmodule/ec/simple.c
../../third_party/boringssl/src/crypto/fipsmodule/ec/wnaf.c
../../third_party/boringssl/src/crypto/fipsmodule/rsa/blinding.c
../../third_party/boringssl/src/crypto/fipsmodule/rsa/padding.c
../../third_party/boringssl/src/crypto/fipsmodule/rsa/rsa.c
../../third_party/boringssl/src/crypto/fipsmodule/rsa/rsa_impl.c
#NIST P-521
"NIST P-384
NIST P-256
!NIST P-224
)E\\*=../../third_party/boringssl/src/crypto/fipsmodule/ec/p256.c
../../third_party/boringssl/src/crypto/mem.c
../../third_party/boringssl/src/crypto/rsa_extra/rsa_asn1.c
need dictionary
stream end
file error
stream error
data error
buffer error
incompatible version
%d.%d
Opera Internet Browser
20210910_170001
../../crypto/signature_verifier.cc
VerifyInit
VerifyUpdate
VerifyFinal
file://
0123456789
abcdefghijklmnopqrstuvwxyz
abcdefghijklmnopqrstuvwxyz
0123456789:
abcdefghijklmnopqrstuvwxyz[
about
filesystem
https
javascript
mailto
quic-transport
xK4K5
../../components/prefs/json_pref_store.cc
ReadPrefsAsync
CommitPendingWrite
PostWriteCallback
Secure_Preferences
Preferences
Local_State
Settings.RestoreFromBackupResult.
Settings.JsonDataReadSizeKilobytes.
../../components/prefs/persistent_pref_store.cc
is_incognito: yes
is_incognito: no
../../components/prefs/pref_service.cc
InitFromStorage
URLRequestContext
../../third_party/protobuf/src/google/protobuf/arena.cc
CHECK failed: (min_bytes) <= (std::numeric_limits<size_t>::max() - kBlockHeaderSize):
../../third_party/protobuf/src/google/protobuf/generated_message_util.cc
CHECK failed: (scc->visit_status.load(std::memory_order_relaxed)) == (SCCInfoBase::kRunning):
(cannot determine missing fields for lite message)
../../third_party/protobuf/src/google/protobuf/message_lite.cc
exceeded maximum protobuf size of 2GB:
Requested size is too large to fit into size_t.
../../third_party/protobuf/src/google/protobuf/repeated_field.cc
CHECK failed: (new_size) <= ((std::numeric_limits<size_t>::max() - kRepHeaderSize) / sizeof(old_rep->elements[0])):
intl.app_locale
../../third_party/crashpad/crashpad/client/crashpad_client_win.cc
CreateThread
WaitForSingleObject
not connected
crash server failed to launch, no dump captured
SetEvent
\\.\pipe\crashpad_%lu_
CreateNamedPipe
database
metrics-dir
crash-count-file
annotation
attachment
OpenProcess
--initial-client-data=
::InitializeProcThreadAttributeList
::UpdateProcThreadAttribute
InitializeProcThreadAttributeList (size) succeeded, expected failure
InitializeProcThreadAttributeList (size)
InitializeProcThreadAttributeList
UpdateProcThreadAttribute
CreateProcess
CloseHandle thread
CloseHandle process
::DeleteProcThreadAttributeList
crash server failed to launch, self-terminating
crash server did not respond, self-terminating
unknown
unknown
crash_counter_name
Inbound rule to allow mDNS traffic.
(mDNS-In)
start-maximized
user-data-dir
crashpad-handler
../../components/crash/core/app/crashpad.cc
Annotations dictionary too long when setting command line
Command line argument too long:
ptype
osarch
%s:%d: %s
LOG_FATAL
channel
special
Win32
OPERA_CRASHPAD_PIPE_NAME
--type=
--user-data-dir=
/prefetch:7
--monitor-self
--monitor-self-argument=
--monitor-self-annotation=ptype=
canary
fallback-handler
/prefetch:7
SetUnhandledExceptionFilter
CrashpadMainThread
user_experience_metrics.reporting_enabled
Error initializing symbols (
(No symbol) [0x
.UsedPct
UMA.PersistentAllocator.
.Errors
../../base/metrics/persistent_memory_allocator.cc
Corruption detected in shared-memory segment.
FlushPartial
Syntax error.
Invalid escape sequence.
Unexpected token.
Trailing comma not allowed.
Too much nesting.
Unexpected data after root element.
Unsupported encoding. JSON must be UTF-8.
Dictionary keys must be quoted.
Input string is too large (>2GB).
Number cannot be represented.
Line: %i, column: %i, %s
\u%04X
\u003C
\u2028
\u2029
../../base/debug/activity_tracker.cc
RecordProcessExit
-dummy_histogram
-spare
-active
UMA.NegativeSamples.Reason
UMA.NegativeSamples.Increment
UMA.NegativeSamples.Histogram
ProgramW6432
../../base/native_library_win.cc
PinSystemLibrary
LoadNativeLibraryHelper
AddDllDirectory
LibraryLoader.LoadNativeLibraryWindows
LoadSystemLibraryHelper
?SequenceManager
queue_name
SequenceManagerImpl::UnregisterTaskQueue
SequenceManagerImpl::MoveReadyDelayedTasksToWorkQueues
task_type
SequenceManagerImpl::SelectNextTask
SequenceManager.YieldToNative
SequenceManagerImpl::NotifyWillProcessTaskObservers
SequenceManager.WillProcessTaskObservers
SequenceManager.QueueNotifyWillProcessTask
SequenceManager.WillProcessTaskTimeObservers
SequenceManager.QueueOnTaskStarted
SequenceManagerImpl::NotifyDidProcessTaskObservers
SequenceManager.QueueOnTaskCompleted
SequenceManager.DidProcessTaskTimeObservers
SequenceManager.DidProcessTaskObservers
SequenceManager.QueueNotifyDidProcessTask
duration
LongTask
active_queues
queues_to_gracefully_shutdown
queues_to_delete
selector
selected_queue
work_queue_name
native_work_priority
time_domains
SequenceManagerImpl::MaybeReclaimMemory
RunControlPriorityTask
RunHighestPriorityTask
RunVeryHighPriorityTask
RunHighPriorityTask
RunNormalPriorityTask
RunLowPriorityTask
RunBestEffortPriorityTask
NativeWork
Foreground
Background
../../base/threading/scoped_blocking_call_internal.cc
MonitorNextJankWindowIfNecessary
timestamp_us
blocking_type
../../base/synchronization/waitable_event_win.cc
DumpWithoutCrashing
%016llX%016llX
ScopedMayLoadLibraryAtBackgroundPriority
ScopedMayLoadLibraryAtBackgroundPriority : Priority Increased
../../base/win/message_window.cc
Failed to register the window class for a message-only window
Failed to create a message-only window
Process
GetHandleVerifier
NtQueryObject
NtQuerySystemInformation
Malloc
0x%llx
%s/%s
resident_size
(Other)
TraceBuffer
TraceBufferChunk
TraceEvent
TraceEvent(Unused)
TracedValue
ConvertableToTraceFormat
AllocationRegister
TypeNameDeduplicator
StackFrameDeduplicator
std::string
base::Value
TraceEventMemoryOverhead
FrameMetrics
-Google.Chrome
Begin
Instant
Async Begin
Async Step Into
Async Step Past
Async End
Nestable Async Begin
Nestable Async End
Nestable Async Instant
Phase Flow Begin
Phase Flow Step
Phase Flow End
Phase Metadata
Phase Counter
Phase Sample
Phase Create Object
Phase Snapshot Object
Phase Delete Object
Phase
Complete End
disabled-by-default
__DISABLED_OTHER_EVENTS
__OTHER_EVENTS
disabled-by-default-toplevel.flow
unused_bit_20
unused_bit_21
unused_bit_22
unused_bit_23
unused_bit_24
unused_bit_25
unused_bit_26
unused_bit_27
unused_bit_28
unused_bit_29
unused_bit_30
unused_bit_31
unused_bit_32
unused_bit_33
unused_bit_34
unused_bit_35
unused_bit_36
unused_bit_37
unused_bit_38
unused_bit_39
unused_bit_40
unused_bit_41
edge_webview
diagnostic_event
UntrackedTask
event_whitelist_predicate
OPENSSL_ia32cap
../../third_party/boringssl/src/crypto/evp/evp_ctx.c
../../third_party/boringssl/src/crypto/dsa/dsa.c
../../third_party/boringssl/src/crypto/evp/p_rsa_asn1.c
../../third_party/boringssl/src/crypto/evp/p_ec_asn1.c
../../third_party/boringssl/src/crypto/evp/p_dsa_asn1.c
../../third_party/boringssl/src/crypto/evp/p_ed25519_asn1.c
../../third_party/boringssl/src/crypto/evp/p_x25519_asn1.c
../../third_party/boringssl/src/crypto/dsa/dsa_asn1.c
../../third_party/boringssl/src/crypto/ex_data.c
../../third_party/boringssl/src/crypto/bn_extra/bn_asn1.c
0123456789ABCDEF
uts46
nfkc_cf
ICUDATA
icudt69l-
ICUDATA-
icudt69l
zoneinfo64
timezoneTypes
windowsZones
metaZones
ImportantFile.FileCreateError
ImportantFile.FileWriteError
error writing, bytes_written=
ImportantFile.FileReplaceRetryCount
ImportantFile.FileRenameError
ImportantFileWriter::WriteNow
../../base/files/important_file_writer.cc
WriteNowWithBackgroundDataProducer
ScheduleWrite
ImportantFile.SerializationDuration
ImportantFile.TempFileFailures
ImportantFile.FileDeleteRetryExceededError
DeleteTmpFileWithRetry
ImportantFile.FileDeleteNoRetryError
ImportantFile.FileDeleteRetrySuccessCount
Pref observer for
found at shutdown.
../../components/prefs/pref_notifier_impl.cc
bookmark_bar.show_on_all_tabs
profile.icon_version
default_search_provider_data.template_url_data
Init observer found at shutdown.
../../components/prefs/pref_value_store.cc
Expected type for
but got
in store
object_count
bytes
objects
../../third_party/protobuf/src/google/protobuf/stubs/common.cc
This program requires version
of the Protocol Buffer runtime library, but the installed version is
. Please update your library. If you compiled the program yourself, make sure that your headers are from the same version of Protocol Buffers as your link-time library. (Version verification failed in "
This program was compiled against version
of the Protocol Buffer runtime library, which is not compatible with the installed version (
). Contact the program author for an update. If you compiled the program yourself, make sure that your headers are from the same version of Protocol Buffers as your link-time library. (Version verification failed in "
../../third_party/protobuf/src\google/protobuf/parse_context.h
Can't happen
thread
../../third_party/crashpad/crashpad/util/win/registration_protocol_win.cc
CreateFile
WaitNamedPipe
SetNamedPipeHandleState
TransactNamedPipe
TransactNamedPipe: expected
, observed
ConvertStringSecurityDescriptorToSecurityDescriptor
BuildSecurityDescriptor
../../third_party/crashpad/crashpad/util/win/process_info.cc
VirtualQueryEx
RegionSize == 0
UncheckedAllocate
NtQuerySystemInformation SystemExtendedHandleInformation
Reading x64 process from x86 process not supported
GetProcessBasicInformation failed
ReadProcessData failed
ReadMemoryInfo failed
range at 0x%llx, size 0x%llx fully unreadable
range at 0x%llx, size 0x%llx partially unreadable
::IsWow64Process
::NtQueryInformationProcess
NtQueryInformationProcess incorrect size
peb address 0x%llx out of range
ReadProcessMemory
bool __cdecl crashpad::(anonymous namespace)::ReadStruct(HANDLE, crashpad::WinVMAddress, T *) [T = crashpad::process_types::PEB<crashpad::process_types::internal::Traits64>]
incorrect size
bool __cdecl crashpad::(anonymous namespace)::ReadStruct(HANDLE, crashpad::WinVMAddress, T *) [T = crashpad::process_types::RTL_USER_PROCESS_PARAMETERS<crashpad::process_types::internal::Traits64>]
ReadProcessMemory UNICODE_STRING
ReadProcessMemory UNICODE_STRING incorrect size
bool __cdecl crashpad::(anonymous namespace)::ReadStruct(HANDLE, crashpad::WinVMAddress, T *) [T = crashpad::process_types::PEB_LDR_DATA<crashpad::process_types::internal::Traits64>]
bool __cdecl crashpad::(anonymous namespace)::ReadStruct(HANDLE, crashpad::WinVMAddress, T *) [T = crashpad::process_types::LDR_DATA_TABLE_ENTRY<crashpad::process_types::internal::Traits64>]
bool __cdecl crashpad::(anonymous namespace)::ReadStruct(HANDLE, crashpad::WinVMAddress, T *) [T = crashpad::process_types::PEB<crashpad::process_types::internal::Traits32>]
bool __cdecl crashpad::(anonymous namespace)::ReadStruct(HANDLE, crashpad::WinVMAddress, T *) [T = crashpad::process_types::RTL_USER_PROCESS_PARAMETERS<crashpad::process_types::internal::Traits32>]
bool __cdecl crashpad::(anonymous namespace)::ReadStruct(HANDLE, crashpad::WinVMAddress, T *) [T = crashpad::process_types::PEB_LDR_DATA<crashpad::process_types::internal::Traits32>]
bool __cdecl crashpad::(anonymous namespace)::ReadStruct(HANDLE, crashpad::WinVMAddress, T *) [T = crashpad::process_types::LDR_DATA_TABLE_ENTRY<crashpad::process_types::internal::Traits32>]
../../third_party/crashpad/crashpad/util/win/scoped_process_suspend.cc
NtSuspendProcess
NtResumeProcess
::NtOpenThread
::NtQuerySystemInformation
::NtQueryInformationThread
::NtQueryObject
::NtSuspendProcess
::NtResumeProcess
::RtlGetUnloadEventTraceEx
(0x%08lx)
<failed to retrieve error message (0x%lx)>
../../third_party/crashpad/crashpad/util/win/scoped_handle.cc
CloseHandle
FindClose
::InitializeCriticalSectionEx
../../third_party/crashpad/crashpad/util/win/critical_section_with_debug_info.cc
InitializeCriticalSectionEx
../../third_party/crashpad/crashpad/util/win/initial_client_data.cc
expected 8 comma separated arguments
0x%x,0x%x,0x%x,0x%x,0x%x,0x%I64x,0x%I64x,0x%I64x
could not convert '
' to HANDLE
' to WinVMAddress
F../../third_party/crashpad/crashpad/client/settings.cc
Settings magic is not
Settings version is not
Invalid file handle
restart_cmd_line_key_
%s%zu
%08x-%04hx-%04hx-%02hhx%02hhx-%02hhx%02hhx%02hhx%02hhx%02hhx%02hhx
%08x-%04x-%04x-%02x%02x-%02x%02x%02x%02x%02x%02x
../../third_party/crashpad/crashpad/client/crash_report_database_win.cc
could not open
attachment
couldn't be opened, skipping
DeleteFile
unexpected attachment dir name
CreateDirectory
GetFileAttributes
: not a directory
LockFileEx
failed to rewind to read
failed to read header
unexpected header
record size out of range
failed to read records
bad string table
invalid string table index
failed to stat report
UnlockFileEx
failed to rewind to write
failed to truncate
failed to write header
expected to start with
failed to write records
failed to write string table
exception-pointers
thread
ProcessPrivateUsage
ProcessPeakWorkingSetSize
ProcessPeakPagefileUsage
SystemCommitRemaining
SystemCommitLimit
initial-client-data
monitor-self
monitor-self-annotation
monitor-self-argument
no-identify-client-via-url
no-periodic-tasks
no-rate-limit
no-upload-gzip
pipe-name
--annotation
failed to parse --initial-client-data
--monitor-self-annotation
--initial-client-data or --pipe-name is required
--initial-client-data and --pipe-name are incompatible
--database is required
../../third_party/crashpad/crashpad/handler/handler_main.cc
SetProcessShutdownParameters
CrashpadMetrics
requires KEY=VALUE
has duplicate key
, discarding value
--monitor-self-argument=--monitor-self is not supported
--no-identify-client-via-url
--no-periodic-tasks
--no-rate-limit
--no-upload-gzip
--monitor-self-annotation=%s=%s
ActivityTracker.CollectCrash.Status
SharedMemoryTracker
delayed
immediate
immediate_starvation_count
control
highest
very_high
best_effort
TaskQueueImpl::UnregisterTaskQueue
../../base/task/sequence_manager/task_queue_impl.cc
UnregisterTaskQueue
PushOntoDelayedIncomingQueue
unregistered
task_queue_id
enabled
time_domain_name
any_thread_.immediate_incoming_queuesize
delayed_incoming_queue_size
immediate_work_queue_size
delayed_work_queue_size
any_thread_.immediate_incoming_queuecapacity
immediate_work_queue_capacity
delayed_work_queue_capacity
delay_to_next_task_ms
current_fence
delayed_fence_seconds_from_now
immediate_incoming_queue
delayed_work_queue
immediate_work_queue
delayed_incoming_queue
enqueue_order
sequence_num
nestable
is_high_res
is_cancelled
delayed_run_time
delayed_run_time_milliseconds_from_now
task_posted_to_disabled_queue
delay_ms
SequenceManager PostTask
ThreadControllerImpl::DoWork
RunTask
SequenceManager RunTask
ThreadControllerImpl::RunTask
ThreadController: application tasks disallowed
SequenceManager::DoIdleWork
registered_delay_count
next_delay_ms
RealTimeDomain::DelayTillNextTask
RealTimeDomain
../../base/task/thread_pool/pooled_task_runner_delegate.cc
ThreadPoolServiceThread
../../base/task/thread_pool/delayed_task_manager.cc
ScheduleProcessRipeTasksOnServiceThread
Shared
ForegroundBlocking
BackgroundBlocking
ThreadPoolSingleThread%s%d
ThreadPoolSingleThreadCOMSTA%s%d
../../base/task/thread_pool/pooled_single_thread_task_runner_manager.cc
GetWorkFromWindowsMessageQueue
?ThreadPool.NumTasksBeforeDetach.
ThreadPool%sWorker
../../base/task/thread_pool/thread_group_impl.cc
ScheduleAdjustMaxTasks
ThreadPool_PostTask
../../base/task/thread_pool/task_tracker.cc
task_info
ThreadPool_TaskInfo
ThreadPool_RunTask_ContinueOnShutdown
ThreadPool_RunTask_SkipOnShutdown
ThreadPool_RunTask_BlockShutdown
ThreadPool_RunTask
parallel
sequenced
single thread
task_priority
execution_mode
sequence_token
../../base/task/thread_pool/sequence.cc
MayBlockWithoutDelay
DisableJobYield
DisableFairJobScheduling
DisableJobUpdatePriority
WakeUpStrategyFeature
strategy
WakeUpAfterGetWork
UseNativeThreadPool
UseBackgroundNativeThreadPool
UseFiveMinutesThreadReclaimTime
centralized-wakeups
serialized-wakeups
exponential-wakeups
greedy-wakeups
?malloc/metadata_fragmentation_caches
malloc/win_heap
shared_memory/
android::ResourceManagerImpl
AutocompleteController
BlinkGC
BlinkObjectCounters
BlobStorageContext
Canvas
ClientDiscardableSharedMemoryManager
DevTools
DiscardableSharedMemoryManager
DOMStorage
DownloadService
ExtensionFunctions
gpu::BufferManager
gpu::RenderbufferManager
gpu::ServiceDiscardableManager
gpu::ServiceTransferCache
gpu::SharedImageStub
gpu::TextureManager
GrShaderCache
FontCaches
HistoryReport
IPCChannel
IndexedDBBackingStore
IndexedDBFactoryImpl
InMemoryURLIndex
JavaHeap
LevelDB
LeveldbValueStore
LocalStorage
MadvFreeDiscardableMemoryAllocator
ManualFillingCache
MemoryCache
MojoHandleTable
MojoLevelDB
MojoMessages
PartitionAlloc
ProcessMemoryMetrics
SharedContextState
V8Isolate
WebMediaPlayer_MainThread
WebMediaPlayer_MediaThread
SyncDirectory
TabRestoreServiceHelper
VizProcessContextProvider
blink_gc/main/heap
blink_gc/workers/heap/worker_0x?
blink_objects/AdSubframe
blink_objects/ArrayBufferContents
blink_objects/AudioHandler
blink_objects/ContextLifecycleStateObserver
blink_objects/DetachedScriptState
blink_objects/Document
blink_objects/Frame
blink_objects/JSEventListener
blink_objects/LayoutObject
blink_objects/MediaKeySession
blink_objects/MediaKeys
blink_objects/Node
blink_objects/Resource
blink_objects/RTCPeerConnection
blink_objects/ScriptPromise
blink_objects/V8PerContextData
blink_objects/WorkerGlobalScope
blink_objects/UACSSResource
blink_objects/ResourceFetcher
canvas/ResourceProvider/SkSurface
canvas/ResourceProvider/SkSurface/0x?
components/download/controller_0x?
devtools/file_watcher_0x?
discardable/madv_free_allocated
discardable/child_0x?
extensions/functions
extensions/value_store/Extensions.Database.Open.Settings/0x?
extensions/value_store/Extensions.Database.Open.Rules/0x?
extensions/value_store/Extensions.Database.Open.State/0x?
extensions/value_store/Extensions.Database.Open/0x?
extensions/value_store/Extensions.Database.Restore/0x?
extensions/value_store/Extensions.Database.Value.Restore/0x?
font_caches/font_platform_data_cache
font_caches/shape_caches
gpu/discardable_cache/cache_0x?
gpu/discardable_cache/cache_0x?/avg_image_size
gpu/gl/buffers/context_group_0x?
gpu/gl/renderbuffers/context_group_0x?
gpu/gl/textures/context_group_0x?
gpu/gr_shader_cache/cache_0x?
gpu/shared_images/client_0x?
gpu/transfer_cache/cache_0x?
gpu/transfer_cache/cache_0x?/avg_image_size
history/delta_file_service/leveldb_0x?
history/usage_reports_buffer/leveldb_0x?
java_heap
java_heap/allocated_objects
leveldatabase
leveldatabase/block_cache/browser
leveldatabase/block_cache/in_memory
leveldatabase/block_cache/unified
leveldatabase/block_cache/web
leveldatabase/db_0x?
leveldatabase/db_0x?/block_cache
leveldatabase/memenv_0x?
malloc/allocated_objects
malloc/partitions
malloc/partitions/allocator
malloc/partitions/allocator/thread_cache
malloc/partitions/allocator/thread_cache/main_thread
malloc/partitions/aligned
malloc/partitions/original
malloc/partitions/nonscannable
media/webmediaplayer/audio/player_0x?
media/webmediaplayer/data_source/player_0x?
media/webmediaplayer/demuxer/player_0x?
media/webmediaplayer/video/player_0x?
media/webmediaplayer/player_0x?
mojo/data_pipe_consumer
mojo/data_pipe_producer
mojo/invitation
mojo/messages
mojo/message_pipe
mojo/platform_handle
mojo/queued_ipc_channel_message/0x?
mojo/shared_buffer
mojo/unknown
mojo/watcher
net/http_network_session_0x?
net/http_network_session_0x?/quic_stream_factory
net/http_network_session_0x?/socket_pool
net/http_network_session_0x?/spdy_session_pool
net/http_network_session_0x?/ssl_client_session_cache
net/http_network_session_0x?/stream_factory
net/url_request_context
net/url_request_context/app_request
net/url_request_context/app_request/0x?
net/url_request_context/app_request/0x?/cookie_monster
net/url_request_context/app_request/0x?/cookie_monster/cookies
net/url_request_context/app_request/0x?/cookie_monster/tasks_pending_global
net/url_request_context/app_request/0x?/cookie_monster/tasks_pending_for_key
net/url_request_context/app_request/0x?/http_cache
net/url_request_context/app_request/0x?/http_cache/memory_backend
net/url_request_context/app_request/0x?/http_cache/simple_backend
net/url_request_context/app_request/0x?/http_network_session
net/url_request_context/extensions
net/url_request_context/extensions/0x?
net/url_request_context/extensions/0x?/cookie_monster
net/url_request_context/extensions/0x?/cookie_monster/cookies
net/url_request_context/extensions/0x?/cookie_monster/tasks_pending_global
net/url_request_context/extensions/0x?/cookie_monster/tasks_pending_for_key
net/url_request_context/extensions/0x?/http_cache
net/url_request_context/extensions/0x?/http_cache/memory_backend
net/url_request_context/extensions/0x?/http_cache/simple_backend
net/url_request_context/extensions/0x?/http_network_session
net/url_request_context/isolated_media
net/url_request_context/isolated_media/0x?
net/url_request_context/isolated_media/0x?/cookie_monster
net/url_request_context/isolated_media/0x?/cookie_monster/cookies
net/url_request_context/isolated_media/0x?/cookie_monster/tasks_pending_global
net/url_request_context/isolated_media/0x?/cookie_monster/tasks_pending_for_key
net/url_request_context/isolated_media/0x?/http_cache
net/url_request_context/isolated_media/0x?/http_cache/memory_backend
net/url_request_context/isolated_media/0x?/http_cache/simple_backend
net/url_request_context/isolated_media/0x?/http_network_session
net/url_request_context/main
net/url_request_context/main/0x?
net/url_request_context/main/0x?/cookie_monster
net/url_request_context/main/0x?/cookie_monster/cookies
net/url_request_context/main/0x?/cookie_monster/tasks_pending_global
net/url_request_context/main/0x?/cookie_monster/tasks_pending_for_key
net/url_request_context/main/0x?/http_cache
net/url_request_context/main/0x?/http_cache/memory_backend
net/url_request_context/main/0x?/http_cache/simple_backend
net/url_request_context/main/0x?/http_network_session
net/url_request_context/main_media
net/url_request_context/main_media/0x?
net/url_request_context/main_media/0x?/cookie_monster
net/url_request_context/main_media/0x?/cookie_monster/cookies
net/url_request_context/main_media/0x?/cookie_monster/tasks_pending_global
net/url_request_context/main_media/0x?/cookie_monster/tasks_pending_for_key
net/url_request_context/main_media/0x?/http_cache
net/url_request_context/main_media/0x?/http_cache/memory_backend
net/url_request_context/main_media/0x?/http_cache/simple_backend
net/url_request_context/main_media/0x?/http_network_session
net/url_request_context/mirroring
net/url_request_context/mirroring/0x?
net/url_request_context/mirroring/0x?/cookie_monster
net/url_request_context/mirroring/0x?/cookie_monster/cookies
net/url_request_context/mirroring/0x?/cookie_monster/tasks_pending_global
net/url_request_context/mirroring/0x?/cookie_monster/tasks_pending_for_key
net/url_request_context/mirroring/0x?/http_cache
net/url_request_context/mirroring/0x?/http_cache/memory_backend
net/url_request_context/mirroring/0x?/http_cache/simple_backend
net/url_request_context/mirroring/0x?/http_network_session
net/url_request_context/proxy
net/url_request_context/proxy/0x?
net/url_request_context/proxy/0x?/cookie_monster
net/url_request_context/proxy/0x?/cookie_monster/cookies
net/url_request_context/proxy/0x?/cookie_monster/tasks_pending_global
net/url_request_context/proxy/0x?/cookie_monster/tasks_pending_for_key
net/url_request_context/proxy/0x?/http_cache
net/url_request_context/proxy/0x?/http_cache/memory_backend
net/url_request_context/proxy/0x?/http_cache/simple_backend
net/url_request_context/proxy/0x?/http_network_session
net/url_request_context/safe_browsing
net/url_request_context/safe_browsing/0x?
net/url_request_context/safe_browsing/0x?/cookie_monster
net/url_request_context/safe_browsing/0x?/cookie_monster/cookies
net/url_request_context/safe_browsing/0x?/cookie_monster/tasks_pending_global
net/url_request_context/safe_browsing/0x?/cookie_monster/tasks_pending_for_key
net/url_request_context/safe_browsing/0x?/http_cache
net/url_request_context/safe_browsing/0x?/http_cache/memory_backend
net/url_request_context/safe_browsing/0x?/http_cache/simple_backend
net/url_request_context/safe_browsing/0x?/http_network_session
net/url_request_context/system
net/url_request_context/system/0x?
net/url_request_context/system/0x?/cookie_monster
net/url_request_context/system/0x?/cookie_monster/cookies
net/url_request_context/system/0x?/cookie_monster/tasks_pending_global
net/url_request_context/system/0x?/cookie_monster/tasks_pending_for_key
net/url_request_context/system/0x?/http_cache
net/url_request_context/system/0x?/http_cache/memory_backend
net/url_request_context/system/0x?/http_cache/simple_backend
net/url_request_context/system/0x?/http_network_session
net/url_request_context/unknown
net/url_request_context/unknown/0x?
net/url_request_context/unknown/0x?/cookie_monster
net/url_request_context/unknown/0x?/cookie_monster/cookies
net/url_request_context/unknown/0x?/cookie_monster/tasks_pending_global
net/url_request_context/unknown/0x?/cookie_monster/tasks_pending_for_key
net/url_request_context/unknown/0x?/http_cache
net/url_request_context/unknown/0x?/http_cache/memory_backend
net/url_request_context/unknown/0x?/http_cache/simple_backend
net/url_request_context/unknown/0x?/http_network_session
omnibox/autocomplete_controller/0x?
omnibox/in_memory_url_index/0x?
passwords/manual_filling_controller/0x?
web_cache/Image_resources
web_cache/CSS stylesheet_resources
web_cache/Script_resources
web_cache/XSL stylesheet_resources
web_cache/Font_resources
web_cache/Code_cache
web_cache/Encoded_size_duplicated_in_data_urls
web_cache/Other_resources
partition_alloc/allocated_objects
partition_alloc/partitions
partition_alloc/partitions/array_buffer
partition_alloc/partitions/buffer
partition_alloc/partitions/fast_malloc
partition_alloc/partitions/layout
skia/gpu_resources/context_0x?
skia/sk_glyph_cache
skia/sk_resource_cache
sqlite
ui/resource_manager_0x?/default_resource/0x?
ui/resource_manager_0x?/tinted_resource
site_storage/blob_storage/0x?
v8/main/code_stats
v8/main/contexts/detached_context
v8/main/contexts/native_context
v8/main/global_handles
v8/main/heap/code_space
v8/main/heap/code_stats
v8/main/heap/code_large_object_space
v8/main/heap/large_object_space
v8/main/heap/map_space
v8/main/heap/new_large_object_space
v8/main/heap/new_space
v8/main/heap/old_space
v8/main/heap/read_only_space
v8/main/malloc
v8/main/zapped_for_debug
v8/utility/code_stats
v8/utility/contexts/detached_context
v8/utility/contexts/native_context
v8/utility/global_handles
v8/utility/heap/code_space
v8/utility/heap/code_large_object_space
v8/utility/heap/large_object_space
v8/utility/heap/map_space
v8/utility/heap/new_large_object_space
v8/utility/heap/new_space
v8/utility/heap/old_space
v8/utility/heap/read_only_space
v8/utility/malloc
v8/utility/zapped_for_debug
v8/workers/code_stats/isolate_0x?
v8/workers/contexts/detached_context/isolate_0x?
v8/workers/contexts/native_context/isolate_0x?
v8/workers/global_handles/isolate_0x?
v8/workers/heap/code_space/isolate_0x?
v8/workers/heap/code_large_object_space/isolate_0x?
v8/workers/heap/large_object_space/isolate_0x?
v8/workers/heap/map_space/isolate_0x?
v8/workers/heap/new_large_object_space/isolate_0x?
v8/workers/heap/new_space/isolate_0x?
v8/workers/heap/old_space/isolate_0x?
v8/workers/heap/read_only_space/isolate_0x?
v8/workers/malloc/isolate_0x?
v8/workers/zapped_for_debug/isolate_0x?
site_storage/index_db/db_0x?
site_storage/index_db/memenv_0x?
site_storage/index_db/in_flight_0x?
site_storage/local_storage/0x?/cache_size
site_storage/localstorage/0x?/cache_size
site_storage/localstorage/0x?/leveldb
site_storage/session_storage/0x?
site_storage/session_storage/0x?/cache_size
sync/0x?/kernel
sync/0x?/store
sync/0x?/model_type/APP
sync/0x?/model_type/APP_LIST
sync/0x?/model_type/APP_SETTING
sync/0x?/model_type/ARC_PACKAGE
sync/0x?/model_type/AUTOFILL
sync/0x?/model_type/AUTOFILL_PROFILE
sync/0x?/model_type/AUTOFILL_WALLET
sync/0x?/model_type/AUTOFILL_WALLET_OFFER
sync/0x?/model_type/BOOKMARK
sync/0x?/model_type/DEVICE_INFO
sync/0x?/model_type/DICTIONARY
sync/0x?/model_type/EXTENSION
sync/0x?/model_type/EXTENSION_SETTING
sync/0x?/model_type/HISTORY_DELETE_DIRECTIVE
sync/0x?/model_type/MANAGED_USER
sync/0x?/model_type/MANAGED_USER_SETTING
sync/0x?/model_type/NIGORI
sync/0x?/model_type/OS_PREFERENCE
sync/0x?/model_type/OS_PRIORITY_PREFERENCE
sync/0x?/model_type/PASSWORD
sync/0x?/model_type/PREFERENCE
sync/0x?/model_type/PRINTER
sync/0x?/model_type/PRIORITY_PREFERENCE
sync/0x?/model_type/READING_LIST
sync/0x?/model_type/SEARCH_ENGINE
sync/0x?/model_type/SECURITY_EVENT
sync/0x?/model_type/SEND_TAB_TO_SELF
sync/0x?/model_type/SESSION
sync/0x?/model_type/SHARING_MESSAGE
sync/0x?/model_type/THEME
sync/0x?/model_type/TYPED_URL
sync/0x?/model_type/USER_CONSENT
sync/0x?/model_type/USER_EVENT
sync/0x?/model_type/WALLET_METADATA
sync/0x?/model_type/WEB_APP
sync/0x?/model_type/WIFI_CONFIGURATION
sync/0x?/model_type/WORKSPACE_DESK
tab_restore/service_helper_0x?/entries
tab_restore/service_helper_0x?/entries/tab_0x?
tab_restore/service_helper_0x?/entries/window_0x?
tracing/heap_profiler_blink_gc/AllocationRegister
tracing/heap_profiler_malloc/AllocationRegister
tracing/heap_profiler_partition_alloc/AllocationRegister
disabled-by-default-*
"0x%llx"
"Unsupported (crbug.com/1225176)"
"NaN"
"-Infinity"
"Infinity"
EventSetInformation
../../third_party/boringssl/src/crypto/evp/p_ec.c
../../third_party/boringssl/src/crypto/evp/p_ed25519.c
../../third_party/boringssl/src/crypto/evp/p_x25519.c
../../third_party/boringssl/src/crypto/ecdsa_extra/ecdsa_asn1.c
abcdefghijklmnopqrstuvwxyz234567mailto:
ICU_DATA
ICU_TIMEZONE_FILES_DIR
Returns.
Returns %d.
Returns. Status = %d.
Returns %d. Status = %d.
Returns %d. Status = %p.
../../base/files/important_file_writer_cleaner.cc
AddDirectory
ScheduleTask
Windows.TmpFileDeleter.SuccessCount
Windows.TmpFileDeleter.FailCount
application/octet-stream
expected
../../third_party/crashpad/crashpad/util/win/scoped_local_alloc.cc
LocalFree
../../third_party/crashpad/crashpad/util/file/file_io.cc
ReadExactly: expected
WriteFile
ReadFile
../../third_party/crashpad/crashpad/util/file/file_io_win.cc
CreateFile
SetFilePointerEx
SetEndOfFile
../../third_party/crashpad/crashpad/util/file/filesystem_win.cc
GetFileTime
not a directory
Not a directory
RemoveDirectory
FindFirstFileEx
../../third_party/crashpad/crashpad/util/file/file_writer.cc
WriteIoVec(): no iovecs
../../third_party/crashpad/crashpad/util/file/directory_reader_win.cc
Empty directory path
FindFirstFile
FindNextFile
../../third_party/crashpad/crashpad/util/file/file_reader.cc
ReadFile
Crashpad.CrashReportPending
Crashpad.CrashReportSize
Crashpad.CrashUpload.AttemptSuccessful
Crashpad.CrashUpload.Skipped
Crashpad.ExceptionCaptureResult
Crashpad.ExceptionCode.Win
Crashpad.HandlerLifetimeMilestone
Crashpad.HandlerCrash.ExceptionCode.Win
Crashpad.ExceptionEncountered
POSIXLY_CORRECT
%s: argument required for option `
upload_file_minidump
../../third_party/crashpad/crashpad/handler/crash_report_upload_thread.cc
reserved key
product
%c%s=%s
../../third_party/crashpad/crashpad/client/prune_crash_reports.cc
PruneCrashReportDatabase: Failed to get pending reports
PruneCrashReportDatabase: Failed to get completed reports
Database Pruning: Failed to remove report
../../third_party/crashpad/crashpad/util/win/exception_handler_server.cc
GetFileInformationByHandleEx
forged shutdown request, got:
unhandled message type:
unexpected version. got:
expecting:
forged client pid, real pid:
, got:
ImpersonateNamedPipeClient
failed to open
ConnectNamedPipe
RegisterWaitForSingleObject crash dump requested
RegisterWaitForSingleObject non-crash dump requested
RegisterWaitForSingleObject process end
::GetNamedPipeClientProcessId
../../third_party/crashpad/crashpad/util/win/session_end_watcher.cc
CreateEvent
PostMessage
RegisterClass
CreateWindow
GetMessage
GetWindowLongPtr
SetWindowLongPtr
UnregisterClass
DestroyWindow
../../third_party/crashpad/crashpad/util/misc/paths_win.cc
GetModuleFileName
../../third_party/crashpad/crashpad/handler/win/crash_report_exception_handler.cc
PrepareNewCrashReport failed
WriteEverything failed
couldn't be created, skipping
FinishedWritingCrashReport failed
ActivityTracker.CollectCrash.Event
gen/components/browser_watcher/activity_report.pb.cc
browser_watcher.SystemState
browser_watcher.CodeModule
browser_watcher.TypedValue.Reference
browser_watcher.TypedValue
browser_watcher.Activity
browser_watcher.Exception
browser_watcher.ThreadState
browser_watcher.ProcessState.MemoryState.WindowsMemory
browser_watcher.ProcessState.MemoryState
browser_watcher.ProcessState
browser_watcher.FieldTrial
browser_watcher.SystemMemoryState.WindowsMemory
browser_watcher.SystemMemoryState
browser_watcher.StabilityReport
../../third_party/crashpad/crashpad/util/process/process_memory.cc
size
out of bounds for size_t
short read
unterminated string
ActivityTracker.Collect.AnalyzerCreationError
%08X%zx
%08X%04X%04X%02X%02X%02X%02X%02X%02X%02X%02X%x
ActivityTrackerLocation
ThreadController active
ThreadController::Suspended
WorkerThread born
WorkerThread active
WorkerThread dead
RoInitialize
../../base/win/scoped_winrt_initializer.cc
RoUninitialize
BEST_EFFORT
USER_VISIBLE
USER_BLOCKING
PCScan.SurvivedQuarantineSize
PCScan.SurvivedQuarantinePercent
../../base/allocator/partition_allocator/starscan/stats_collector.cc
quarantine size:
, swept bytes:
, survival rate:
PCScan.Mutator.Clear
PCScan.Mutator.ScanStack
PCScan.Mutator.Scan
PCScan.Mutator
.Mutator.Clear
PA.PCScan.
.Mutator.ScanStack
.Mutator.Scan
.Mutator
PCScan.Scanner.Clear
PCScan.Scanner.Scan
PCScan.Scanner.Sweep
PCScan.Scanner
.Scanner.Clear
.Scanner.Scan
.Scanner.Sweep
.Scanner
../../third_party/crashpad/crashpad/util/file/file_seeker.cc
SeekSet(): expected
../../third_party/crashpad/crashpad/snapshot/minidump/process_snapshot_minidump.cc
minidump signature mismatch
minidump version mismatch
duplicate streams for type
crashpad_info size mismatch
crashpad_info version mismatch
misc_info size mismatch
module_list size mismatch
module_crashpad_info_list size mismatch
duplicate module_crashpad_info_list minidump_module_list_index
memory_info_list size mismatch
thread_list size mismatch
system info size mismatch
Failed to read stream with ID 0x
at index
../../third_party/crashpad/crashpad/handler/minidump_to_upload_parameters.cc
duplicate key
duplicate annotation name
list_annotations
; filename="%s"%s
Content-Type: %s%s
multipart/form-data; boundary=%s
Content-Type
Content-Encoding
---MultipartBoundary-
0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz
%%%02x
--%s%sContent-Disposition: form-data; name="%s"
../../third_party/crashpad/crashpad/util/net/http_transport_win.cc
WinHttpOpen
WinHttpSetTimeouts
WinHttpCrackUrl
WinHttpConnect
WinHttpOpenRequest
Content-Length
WinHttpAddRequestHeaders
WinHttpSendRequest
WinHttpWriteData
WinHttpReceiveResponse
WinHttpQueryHeaders
HTTP status %lu
WinHttpReadData
%s/%s WinHTTP
/%lu.%lu.%lu.%lu
Windows_NT/%lu.%lu.%lu.%lu (
; WoW64
%s: error 0x%lx while retrieving error 0x%lx
%s: %s (0x%lx)
WinHttpCloseHandle
%%%02X
../../third_party/crashpad/crashpad/util/thread/thread_win.cc
../../third_party/crashpad/crashpad/util/win/scoped_set_event.cc
../../third_party/crashpad/crashpad/snapshot/win/process_snapshot_win.cc
ReadMemory ExceptionInformation failed
unexpected unloaded module list element size
failed to read target address
failed to read unloaded module data
../../third_party/crashpad/crashpad\snapshot/memory_snapshot_generic.h
different process_memory_ for snapshots
ReadMemory PEB
ReadMemory PEB_LDR_DATA
ReadMemory RTL_USER_PROCESS_PARAMETERS
failed to read RTL_CRITICAL_SECTION
../../third_party/crashpad/crashpad/minidump/minidump_file_writer.cc
discarding duplicate stream of type
out of range
offset
../../third_party/crashpad/crashpad/handler/user_stream_data_source.cc
AddUserExtensionStream failed
channel
platform
ptype
product
start-timestamp
version
../../third_party/crashpad/crashpad/util/synchronization/semaphore_win.cc
CreateSemaphore
../../third_party/crashpad/crashpad/snapshot/minidump/minidump_simple_string_dictionary_reader.cc
simple_string_dictionary size mismatch
../../third_party/crashpad/crashpad/snapshot/minidump/module_snapshot_minidump.cc
CodeView record in module too small to contain signature
CodeView record in module marked as PDB70 but too small
Bad CodeView signature in module
minidump_module_crashpad_info size mismatch
minidump_module_crashpad_info version mismatch
../../third_party/crashpad/crashpad/util/net/http_body_gzip.cc
deflateInit2:
deflate:
deflateEnd:
../../third_party/crashpad/crashpad/util/win/module_version.cc
GetFileVersionInfoSize:
GetFileVersionInfo:
VerQueryValue
../../third_party/crashpad/crashpad/snapshot/win/system_snapshot_win.cc
GetVersionEx
%s %u.%u.%u.%s%s
dwNumberOfProcessors exceeds uint8_t storage
Debug,
Patched,
Prerelease,
Private,
Special,
../../third_party/crashpad/crashpad/snapshot/win/process_reader_win.cc
GetProcessTimes
couldn't retrieve modules
NtQueryInformationThread
invalid stack range:
process
not found
NtOpenThread
SuspendThread
Thread
should be suspended, but previous_suspend_count is
GetThreadContext
ResumeThread
../../third_party/crashpad/crashpad/snapshot/win/exception_snapshot_win.cc
thread ID
not found in process
EXCEPTION_POINTERS read failed
null ExceptionRecord
ExceptionRecord
dropping chained ExceptionRecord
ContextRecord
../../third_party/crashpad/crashpad/snapshot/win/module_snapshot_win.cc
could not read simple address_ranges from
could not read user data stream entry from
../../third_party/crashpad/crashpad/util/process/process_memory_win.cc
Failed to initialize ProcessInfo.
ReadMemory at 0x
bytes failed
range at 0x%llx, size 0x%zx completely inaccessible
start of range at 0x%llx, size 0x%zx inaccessible
../../third_party/crashpad/crashpad/snapshot/memory_snapshot.cc
invalid empty range at 0x%llx
invalid range at 0x%llx, size %Iu
ranges not overlapping or abutting: (0x%llx, size %Iu) and (0x%llx, size %Iu)
../../third_party/crashpad/crashpad/minidump/minidump_writable.cc
AuthenticAMD
HygonGenuine
crashpad
%s.%s,%s,%s
../../third_party/crashpad/crashpad\util/numeric/in_range_cast.h
value
%s; %s
StartupTime
CrashTime
process_private_usage
process_peak_private_usage
process_working_set_size
process_peak_working_set_size
process_virtual_usage
process_peak_virtual_usage
mem_physical_total
mem_physical_avail
mem_page_file_total
mem_page_file_avail
../../third_party/crashpad/crashpad/minidump/minidump_writer_util.cc
timestamp
string
cannot be converted to UTF-16 losslessly
UTF-16 length
will be truncated to UTF-16 length
../../third_party/crashpad/crashpad/snapshot/minidump/minidump_string_list_reader.cc
string_list size mismatch
../../third_party/crashpad/crashpad/snapshot/minidump/minidump_annotation_reader.cc
annotation list size mismatch
annotation object size mismatch
%s (%d)
../../third_party/crashpad/crashpad/snapshot/capture_memory.cc
unaligned range
ReadMemory
../../third_party/crashpad/crashpad/snapshot/win/cpu_context_win.cc
non-x86 context
../../third_party/crashpad/crashpad/util/process/process_memory_range.cc
invalid range
read out of range
CPADinfo
../../third_party/crashpad/crashpad/snapshot/win/pe_image_reader.cc
small crashpad info section size
could not read crashpad info from
unexpected crashpad info signature 0x%x, version %u in %s
crashpad info struct size
large for section size
large crashpad info size
could not read data directory from
CodeView debug entry of unexpected size in
could not read debug directory from
encountered non-7.0 CodeView debug record in
version info size
too small for structure of size
could not read version info from
unexpected VS_VERSIONINFO in
unexpected VS_FIXEDFILEINFO in
could not read dos header from
invalid e_magic in dos header of
could not read nt headers from
invalid signature in nt headers of
supplied section name too long
could not read section
../../third_party/crashpad/crashpad/snapshot/crashpad_types/crashpad_info_reader.cc
invalid signature 0x
unexpected version
Unsetting invalid TriState
../../third_party/crashpad/crashpad/snapshot/win/pe_image_annotations_reader.cc
could not read simple annotations from
duplicate simple annotation
could not read annotations list object in
could not read annotation at index
could not read annotation name at index
could not read annotation value at index
../../third_party/crashpad/crashpad/minidump/minidump_context_writer.cc
unknown context architecture
../../third_party/crashpad/crashpad/snapshot/win/process_subrange_reader.cc
range
outside of range
invalid read range
attempt to read outside of
range
at range
invalid range
../../third_party/crashpad/crashpad/snapshot/win/pe_image_resource_reader.cc
could not read resource data entry from
directory for entry id
expected non-directory for entry language
expected non-directory for entry in
could not read resource directory from
could not read resource directory named entries from
could not read resource directory ID entries from
installer_lib.dll.pdb
CallNtPowerInformation
POWRPROF.dll
installer_lib.dll
GetHandleVerifier
RunInstaller
AcquireSRWLockExclusive
AcquireSRWLockShared
AllocConsole
AssignProcessToJobObject
CallbackMayRunLong
CancelIo
CloseHandle
CloseThreadpool
CloseThreadpoolWork
CompareStringW
ConnectNamedPipe
CopyFileW
CreateDirectoryW
CreateEventW
CreateFileA
CreateFileMappingW
CreateFileW
CreateIoCompletionPort
CreateMailslotW
CreateMutexW
CreateNamedPipeW
CreatePipe
CreateProcessW
CreateSemaphoreW
CreateThread
CreateThreadpool
CreateThreadpoolWork
CreateToolhelp32Snapshot
DecodePointer
DeleteCriticalSection
DeleteFileW
DeleteProcThreadAttributeList
DeviceIoControl
DisconnectNamedPipe
DuplicateHandle
EncodePointer
EnterCriticalSection
EnumSystemLocalesW
ExitProcess
ExitThread
ExpandEnvironmentStringsW
FileTimeToSystemTime
FindClose
FindFirstFileExW
FindNextFileW
FindResourceExW
FindResourceW
FlsAlloc
FlsSetValue
FlushFileBuffers
FlushViewOfFile
FormatMessageA
FreeEnvironmentStringsW
FreeLibrary
FreeLibraryAndExitThread
GetACP
GetCPInfo
GetCommandLineA
GetCommandLineW
GetConsoleMode
GetConsoleOutputCP
GetCurrentDirectoryW
GetCurrentProcess
GetCurrentProcessId
GetCurrentThread
GetCurrentThreadId
GetDateFormatW
GetDiskFreeSpaceExW
GetDriveTypeW
GetEnvironmentStringsW
GetEnvironmentVariableW
GetExitCodeProcess
GetFileAttributesExW
GetFileAttributesW
GetFileInformationByHandle
GetFileInformationByHandleEx
GetFileSizeEx
GetFileTime
GetFileType
GetFullPathNameW
GetHandleInformation
GetLastError
GetLocalTime
GetLocaleInfoW
GetLogicalDrives
GetLongPathNameW
GetModuleFileNameW
GetModuleHandleA
GetModuleHandleExW
GetModuleHandleW
GetNativeSystemInfo
GetOEMCP
GetProcAddress
GetProcessHandleCount
GetProcessHeap
GetProcessId
GetProcessTimes
GetProductInfo
GetQueuedCompletionStatus
GetStartupInfoW
GetStdHandle
GetStringTypeW
GetSystemDefaultLCID
GetSystemDirectoryW
GetSystemInfo
GetSystemTimeAsFileTime
GetTempPathW
GetThreadContext
GetThreadId
GetThreadLocale
GetThreadPreferredUILanguages
GetThreadPriority
GetTickCount
GetTimeFormatW
GetTimeZoneInformation
GetUserDefaultLCID
GetVersion
GetVersionExW
GetWindowsDirectoryW
GlobalAlloc
GlobalFree
GlobalLock
GlobalMemoryStatusEx
GlobalUnlock
InitOnceExecuteOnce
InitializeConditionVariable
InitializeCriticalSection
InitializeCriticalSectionAndSpinCount
InitializeCriticalSectionEx
InitializeProcThreadAttributeList
InitializeSListHead
InitializeSRWLock
InterlockedFlushSList
IsDebuggerPresent
IsProcessorFeaturePresent
IsValidCodePage
IsValidLocale
IsWow64Process
K32GetPerformanceInfo
K32GetProcessMemoryInfo
LCMapStringW
LeaveCriticalSection
LoadLibraryA
LoadLibraryExA
LoadLibraryExW
LoadLibraryW
LoadResource
LocalAlloc
LocalFree
LockFileEx
LockResource
MapViewOfFile
MoveFileExW
MoveFileW
MulDiv
MultiByteToWideChar
OpenEventW
OpenMutexW
OpenProcess
OutputDebugStringA
OutputDebugStringW
PeekNamedPipe
PostQueuedCompletionStatus
Process32FirstW
Process32NextW
QueryFullProcessImageNameW
QueryPerformanceCounter
QueryPerformanceFrequency
QueryThreadCycleTime
RaiseException
ReadConsoleW
ReadFile
ReadProcessMemory
RegisterWaitForSingleObject
ReleaseMutex
ReleaseSRWLockExclusive
ReleaseSRWLockShared
ReleaseSemaphore
RemoveDirectoryW
ReplaceFileW
ResetEvent
ResumeThread
RtlCaptureStackBackTrace
RtlUnwind
SetConsoleCtrlHandler
SetCurrentDirectoryW
SetEndOfFile
SetEnvironmentVariableW
SetEvent
SetFileAttributesW
SetFileInformationByHandle
SetFilePointer
SetFilePointerEx
SetFileTime
SetHandleInformation
SetLastError
SetNamedPipeHandleState
SetProcessShutdownParameters
SetStdHandle
SetThreadPriority
SetThreadpoolThreadMaximum
SetThreadpoolThreadMinimum
SetUnhandledExceptionFilter
SizeofResource
Sleep
SleepConditionVariableSRW
SleepEx
SubmitThreadpoolWork
SuspendThread
SystemTimeToFileTime
SystemTimeToTzSpecificLocalTime
TerminateProcess
TlsAlloc
TlsFree
TlsGetValue
TlsSetValue
TransactNamedPipe
TryAcquireSRWLockExclusive
TzSpecificLocalTimeToSystemTime
UnhandledExceptionFilter
UnlockFileEx
UnmapViewOfFile
UnregisterWaitEx
UpdateProcThreadAttribute
VirtualAlloc
VirtualFree
VirtualProtect
VirtualQuery
VirtualQueryEx
WaitForMultipleObjects
WaitForSingleObject
WaitForSingleObjectEx
WaitForThreadpoolWorkCallbacks
WaitNamedPipeW
WakeAllConditionVariable
WakeConditionVariable
WideCharToMultiByte
WriteConsoleW
WriteFile
lstrcmpA
lstrcmpiW
AllowSetForegroundWindow
BeginPaint
CallNextHookEx
CallWindowProcW
CharNextW
CharUpperW
ClientToScreen
CreateWindowExW
DefWindowProcW
DestroyWindow
DialogBoxParamW
DispatchMessageW
DrawTextW
EnableMenuItem
EnableWindow
EndDialog
EndPaint
EnumDisplayMonitors
EnumThreadWindows
FillRect
FindWindowExW
GetActiveWindow
GetAsyncKeyState
GetClientRect
GetCursorPos
GetDC
GetDesktopWindow
GetDlgItem
GetFocus
GetForegroundWindow
GetGuiResources
GetMessageW
GetParent
GetQueueStatus
GetSystemMenu
GetWindow
GetWindowLongW
GetWindowRect
GetWindowTextLengthW
GetWindowTextW
InflateRect
InvalidateRect
IsWindowEnabled
IsWindowVisible
KillTimer
LoadCursorW
LoadIconW
LoadStringW
MapWindowPoints
MessageBoxW
MsgWaitForMultipleObjectsEx
OffsetRect
PeekMessageW
PostMessageW
PostQuitMessage
PtInRect
RegisterClassExW
RegisterClassW
RegisterHotKey
ReleaseCapture
ReleaseDC
ScreenToClient
SendInput
SendMessageW
SendNotifyMessageW
SetCapture
SetCursor
SetFocus
SetForegroundWindow
SetProcessDPIAware
SetTimer
SetWindowLongW
SetWindowPos
SetWindowTextW
SetWindowsHookExW
ShowWindow
SystemParametersInfoW
TrackMouseEvent
TranslateMessage
UnhookWindowsHookEx
UnregisterClassW
UnregisterHotKey
WaitForInputIdle
wsprintfW
BitBlt
CreateCompatibleBitmap
CreateCompatibleDC
CreateDIBSection
CreateFontW
CreatePen
CreateRectRgn
CreateSolidBrush
DeleteDC
DeleteObject
GetDeviceCaps
GetObjectW
GetStockObject
LineTo
MoveToEx
RoundRect
SelectClipRgn
SelectObject
SetBkMode
SetStretchBltMode
SetTextColor
AccessCheck
AdjustTokenPrivileges
AllocateAndInitializeSid
BuildExplicitAccessWithNameW
BuildSecurityDescriptorW
BuildTrusteeWithSidW
CheckTokenMembership
ConvertStringSecurityDescriptorToSecurityDescriptorW
CreateProcessAsUserW
DuplicateToken
EqualSid
EventRegister
EventUnregister
EventWrite
FreeSid
GetExplicitEntriesFromAclW
GetNamedSecurityInfoW
GetTokenInformation
GetUserNameW
ImpersonateNamedPipeClient
LookupPrivilegeValueW
OpenProcessToken
RegCloseKey
RegCreateKeyExW
RegDeleteKeyExW
RegDeleteKeyW
RegDeleteValueA
RegDeleteValueW
RegEnumKeyExW
RegEnumValueW
RegGetKeySecurity
RegNotifyChangeKeyValue
RegOpenKeyExW
RegQueryInfoKeyW
RegQueryValueExA
RegQueryValueExW
RegSetValueExA
RegSetValueExW
RevertToSelf
SetEntriesInAclW
SetNamedSecurityInfoW
SystemFunction036
CommandLineToArgvW
SHAssocEnumHandlersForProtocolByApplication
SHBrowseForFolderW
SHChangeNotify
SHCreateAssociationRegistration
SHCreateItemFromParsingName
SHGetDesktopFolder
SHGetFolderPathW
SHGetKnownFolderPath
SHGetPathFromIDListW
SHOpenWithDialog
ShellExecuteA
ShellExecuteExW
ShellExecuteW
CoAllowSetForegroundWindow
CoCreateInstance
CoInitializeEx
CoRegisterInitializeSpy
CoRevokeInitializeSpy
CoSetProxyBlanket
CoTaskMemAlloc
CoTaskMemFree
CoTaskMemRealloc
CoUninitialize
CreateStreamOnHGlobal
IIDFromString
PropVariantClear
StringFromGUID2
AlphaBlend
GradientFill
GdipAlloc
GdipCloneImage
GdipCreateBitmapFromStream
GdipCreateHBITMAPFromBitmap
GdipDisposeImage
GdipFree
GdiplusShutdown
GdiplusStartup
MiniDumpWriteDump
SymCleanup
SymFromAddr
SymGetLineFromAddr64
SymGetSearchPathW
SymInitialize
SymSetOptions
SymSetSearchPathW
GetUserNameExW
HttpOpenRequestW
HttpQueryInfoW
HttpSendRequestW
InternetCloseHandle
InternetConnectW
InternetCrackUrlW
InternetErrorDlg
InternetOpenW
InternetReadFile
InternetSetStatusCallbackW
CertCloseStore
CertFindCertificateInStore
CertFreeCertificateChain
CertFreeCertificateContext
CertGetCertificateChain
CertGetNameStringW
CryptDecodeObject
CryptHashCertificate
CryptMsgClose
CryptMsgGetParam
CryptQueryObject
WinVerifyTrust
GetFileVersionInfoSizeW
GetFileVersionInfoW
VerQueryValueW
PathMatchSpecW
SHDeleteKeyW
CreateEnvironmentBlock
DestroyEnvironmentBlock
InitPropVariantFromCLSID
timeBeginPeriod
timeEndPeriod
timeGetTime
WinHttpAddRequestHeaders
WinHttpCloseHandle
WinHttpConnect
WinHttpCrackUrl
WinHttpOpen
WinHttpOpenRequest
WinHttpQueryHeaders
WinHttpReadData
WinHttpReceiveResponse
WinHttpSendRequest
WinHttpSetTimeouts
WinHttpWriteData
KERNEL32.dll
USER32.dll
GDI32.dll
ADVAPI32.dll
SHELL32.dll
ole32.dll
MSIMG32.dll
COMCTL32.dll
gdiplus.dll
dbghelp.dll
Secur32.dll
WININET.dll
CRYPT32.dll
WINTRUST.dll
OLEAUT32.dll
VERSION.dll
SHLWAPI.dll
USERENV.dll
PROPSYS.dll
WINMM.dll
WINHTTP.dll
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$basic_ios@_WU?$char_traits@_W@__1@std@@@__1@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@__1@std@@@__1@std@@
.?AV?$basic_streambuf@_WU?$char_traits@_W@__1@std@@@__1@std@@
.?AV?$basic_istream@_WU?$char_traits@_W@__1@std@@@__1@std@@
.?AV?$basic_ostream@_WU?$char_traits@_W@__1@std@@@__1@std@@
.?AVbad_cast@std@@
.?AVlength_error@std@@
.?AVlogic_error@std@@
.?AVexception@std@@
.?AV__do_message@__1@std@@
.?AVerror_category@__1@std@@
.?AV__shared_count@__1@std@@
.?AVoverflow_error@std@@
.?AVruntime_error@std@@
.?AV__iostream_category@__1@std@@
.?AVfailure@ios_base@__1@std@@
.?AVsystem_error@__1@std@@
.?AVios_base@__1@std@@
.?AV?$__stdinbuf@D@__1@std@@
.?AV?$__stdinbuf@_W@__1@std@@
.?AV?$__stdoutbuf@D@__1@std@@
.?AV?$__stdoutbuf@_W@__1@std@@
.?AV?$collate@D@__1@std@@
.?AVfacet@locale@__1@std@@
.?AV?$collate@_W@__1@std@@
.?AV?$num_get@DV?$istreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AU?$__num_get@D@__1@std@@
.?AU__num_get_base@__1@std@@
.?AV?$num_get@_WV?$istreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AU?$__num_get@_W@__1@std@@
.?AV?$num_put@DV?$ostreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AU?$__num_put@D@__1@std@@
.?AU__num_put_base@__1@std@@
.?AV?$num_put@_WV?$ostreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AU?$__num_put@_W@__1@std@@
.?AV?$time_get@DV?$istreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AVtime_base@__1@std@@
.?AV?$__time_get_c_storage@D@__1@std@@
.?AV?$time_get@_WV?$istreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AV?$__time_get_c_storage@_W@__1@std@@
.?AV?$time_put@DV?$ostreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AV__time_put@__1@std@@
.?AV?$time_put@_WV?$ostreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AV?$moneypunct@D$0A@@__1@std@@
.?AVmoney_base@__1@std@@
.?AV?$moneypunct@D$00@__1@std@@
.?AV?$moneypunct@_W$0A@@__1@std@@
.?AV?$moneypunct@_W$00@__1@std@@
.?AV?$money_get@DV?$istreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AV?$__money_get@D@__1@std@@
.?AV?$money_get@_WV?$istreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AV?$__money_get@_W@__1@std@@
.?AV?$money_put@DV?$ostreambuf_iterator@DU?$char_traits@D@__1@std@@@__1@std@@@__1@std@@
.?AV?$__money_put@D@__1@std@@
.?AV?$money_put@_WV?$ostreambuf_iterator@_WU?$char_traits@_W@__1@std@@@__1@std@@@__1@std@@
.?AV?$__money_put@_W@__1@std@@
.?AV?$messages@D@__1@std@@
.?AVmessages_base@__1@std@@
.?AV?$messages@_W@__1@std@@
.?AV?$codecvt@DDU_Mbstatet@@@__1@std@@
.?AVcodecvt_base@__1@std@@
.?AV?$codecvt@_WDU_Mbstatet@@@__1@std@@
.?AV?$codecvt@_SDU_Mbstatet@@@__1@std@@
.?AV?$codecvt@_UDU_Mbstatet@@@__1@std@@
.?AV__imp@locale@__1@std@@
.?AV?$ctype@D@__1@std@@
.?AVctype_base@__1@std@@
.?AV?$ctype@_W@__1@std@@
.?AV?$numpunct@D@__1@std@@
.?AV?$numpunct@_W@__1@std@@
.?AVbad_alloc@std@@
.?AVout_of_range@std@@
.?AV__generic_error_category@__1@std@@
.?AV__system_error_category@__1@std@@
.?AVNormalizer2@icu_69@@
.?AVNormalizer2WithImpl@icu_69@@
.?AVUnicodeString@icu_69@@
.?AVReplaceable@icu_69@@
.?AVUObject@icu_69@@
.?AVUMemory@icu_69@@
.?AVComposeNormalizer2@icu_69@@
.?AVDecomposeNormalizer2@icu_69@@
.?AVFCDNormalizer2@icu_69@@
.?AVNormalizer2Impl@icu_69@@
.?AVUTS46@icu_69@@
.?AVIDNA@icu_69@@
.?AVLoadedNormalizer2Impl@icu_69@@
.?AVUVector@icu_69@@
.?AVbad_exception@std@@
.?AVtype_info@@
.?AV_com_error@@
.?AVbad_array_new_length@std@@
daPC0
zh-TW
Dl:A>
`PLTE
1tRNS
4tRNS
{PLTE
(tRNS
ZPLTE
{PLTE
(tRNS
lPLTE
#tRNS
uPLTE
&tRNS
1tRNS
3tRNS
6tRNS
xPLTE
'tRNS
TPLTE
0tRNS
~PLTE
)tRNS
iPLTE
"tRNS
y1@!]
?<hPQd8<P
4UhB^Y!*8
\W_DMVH1;
!(3[bj
M Cmp
;4d0f*[
.tRNS
*tRNS
H'%r)
9K!z#
\qA%u
o0D0(
D0D0H0(
0W0f0
aW0f0
0-N&
-N&
0W0f0D0~0Y0
0W0f0D0~0Y0& $
[hQj0
[hQj0
0D0o0
0k0o0
eX[n0$
g0Y0)
_a0O0`0U0D0
B0h0
t1uo0UOg0Y0K0?
0~0_0o0
0~0Y0
:y[0Z0k0
g0Y0=
0[0f0!|XSk0
bW0f0O0`0U0D0
Tpenc(
v(u7bpenc(
Y6R0R
y?eV{<
1YWe@
jHh0R
k?eV{<
>">*>2>D>L>
>'?/???G?O?W?i?q?
>I?Q?Y?a?
?'?/?
>(?/?
<&=C=R=a>
545S5b5
?;?M?u?
<,=>=Z=%>5>U>e>
>H?O?
? ?n?
>n?{?
>:?H?
<$<,<c<}>
> ?3?k?
>R?h?
>d?t?
=C>@?d?
3+30353A3i3n3
>2>@>h?
> ?C?Y?
<9=1?
<Y=|=
>$?,?
8Z9v9{9
=4>m?
?C?x?}?
<3=1>
5$5P5
;1<?<3=_>d>w>]?
>l>Z?_?d?p?
>/?;?k?p?
=y=F>@?
>^?x?
7,=j>
<=>f>
:2:d:
>,?8?h?
<l=Z>
>3?C?
?P?V?
<E=->i?
<A>O>
?m?{?
8 <=>
3R4P5!8Y8>;U;P<q=
7f8D>I>
;C<s>
<<=p>
>!?.?u?
:<;r=
=,=C?
;D<L<\<4=<=L=/>}>
=R>b>c?
7"8#<
?"?H?v?
>;?@?D?H?L?
<9===A=E=I=M=Q=U=
>=>M?
<.?N?
$0$8/8
6!8k8
>M?U?
=F?J?N?R?V?Z?^?b?o?
2#2n2
;o=4?
<{>[?
10D0T0
537/8u8
=3>T?
>Z?_?
=#>c>
? ?*?/?4?:?>?M?Q?
=\>??
>%>/>9>G>R>Y>^>j>
88;c;
=8>r>
= =(=0=
7 7$7(7
6`9d9h9l9
3 3$3(3,3034383<3@3D3H3L3P3T3
7 707@7P7`7p7
>p?t?x?|?
0 0$0(0
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><dependency><dependentAssembly><assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="*" publicKeyToken="6595b64144ccf1df" language="*"></assemblyIdentity></dependentAssembly></dependency><trustInfo xmlns="urn:schemas-microsoft-com:asm.v3"><security><requestedPrivileges><requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel></requestedPrivileges></security></trustInfo><compatibility xmlns="urn:schemas-microsoft-com:compatibility.v1"><application><supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"></supportedOS><supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"></supportedOS><supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"></supportedOS><supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}"></supportedOS><supportedOS Id="{8e0f7a12-bfb3-4fe8-b9a5-48fd50a15a9a}"></supportedOS></application></compatibility></assembly>PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDING
5 6'6y9
?A?L?y?
:?=_=5>
<>=N>
>6?S?_?
<N=_=
='>,>
8,;T;9?Q?
8"8O8Z8
2 2j<n<r<v<
404P4
api-ms-win-core-synch-l1-2-0.dll
kernel32.dll
EKERNEL32.DLL
(null)
minkernel\crts\ucrt\inc\corecrt_internal_strtox.h
__crt_strtox::floating_point_value::as_double
_is_double
__crt_strtox::floating_point_value::as_float
!_is_double
mscoree.dll
BLC_ALL
LC_COLLATE
LC_CTYPE
LC_MONETARY
LC_NUMERIC
LC_TIME
Dapi-ms-win-core-datetime-l1-1-1
api-ms-win-core-fibers-l1-1-1
api-ms-win-core-file-l1-2-2
api-ms-win-core-localization-l1-2-1
api-ms-win-core-localization-obsolete-l1-2-0
api-ms-win-core-processthreads-l1-1-2
api-ms-win-core-string-l1-1-0
api-ms-win-core-synch-l1-2-0
api-ms-win-core-sysinfo-l1-2-1
api-ms-win-core-winrt-l1-1-0
api-ms-win-core-xstate-l2-1-0
api-ms-win-rtcore-ntuser-window-l1-1-0
api-ms-win-security-systemfunctions-l1-1-0
ext-ms-win-ntuser-dialogbox-l1-1-0
ext-ms-win-ntuser-windowstation-l1-1-0
advapi32
kernel32
ntdll
api-ms-win-appmodel-runtime-l1-1-2
user32
api-ms-
ext-ms-
Dja-JP
zh-CN
ko-KR
zh-TW
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
March
April
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
en-US
american
american english
american-english
australian
belgian
canadian
chinese
chinese-hongkong
chinese-simplified
chinese-singapore
chinese-traditional
dutch-belgian
english-american
english-aus
english-belize
english-can
english-caribbean
english-ire
english-jamaica
english-nz
english-south africa
english-trinidad y tobago
english-uk
english-us
english-usa
french-belgian
french-canadian
french-luxembourg
french-swiss
german-austrian
german-lichtenstein
german-luxembourg
german-swiss
irish-english
italian-swiss
norwegian
norwegian-bokmal
norwegian-nynorsk
portuguese-brazilian
spanish-argentina
spanish-bolivia
spanish-chile
spanish-colombia
spanish-costa rica
spanish-dominican republic
spanish-ecuador
spanish-el salvador
spanish-guatemala
spanish-honduras
spanish-mexican
spanish-modern
spanish-nicaragua
spanish-panama
spanish-paraguay
spanish-peru
spanish-puerto rico
spanish-uruguay
spanish-venezuela
swedish-finland
swiss
america
britain
china
czech
england
great britain
holland
hong-kong
new-zealand
pr china
pr-china
puerto-rico
slovak
south africa
south korea
south-africa
south-korea
trinidad & tobago
united-kingdom
united-states
utf-8
am/pm
zh-CHS
ar-SA
bg-BG
ca-ES
cs-CZ
da-DK
de-DE
el-GR
fi-FI
fr-FR
he-IL
hu-HU
is-IS
it-IT
nl-NL
nb-NO
pl-PL
pt-BR
ro-RO
ru-RU
hr-HR
sk-SK
sq-AL
sv-SE
th-TH
tr-TR
ur-PK
id-ID
uk-UA
be-BY
sl-SI
et-EE
lv-LV
lt-LT
fa-IR
vi-VN
hy-AM
az-AZ-Latn
eu-ES
mk-MK
tn-ZA
xh-ZA
zu-ZA
af-ZA
ka-GE
fo-FO
hi-IN
mt-MT
se-NO
ms-MY
kk-KZ
ky-KG
sw-KE
uz-UZ-Latn
tt-RU
bn-IN
pa-IN
gu-IN
ta-IN
te-IN
kn-IN
ml-IN
mr-IN
sa-IN
mn-MN
cy-GB
gl-ES
kok-IN
syr-SY
div-MV
quz-BO
ns-ZA
mi-NZ
ar-IQ
de-CH
en-GB
es-MX
fr-BE
it-CH
nl-BE
nn-NO
pt-PT
sr-SP-Latn
sv-FI
az-AZ-Cyrl
se-SE
ms-BN
uz-UZ-Cyrl
quz-EC
ar-EG
zh-HK
de-AT
en-AU
es-ES
fr-CA
sr-SP-Cyrl
se-FI
quz-PE
ar-LY
zh-SG
de-LU
en-CA
es-GT
fr-CH
hr-BA
smj-NO
ar-DZ
zh-MO
de-LI
en-NZ
es-CR
fr-LU
bs-BA-Latn
smj-SE
ar-MA
en-IE
es-PA
fr-MC
sr-BA-Latn
sma-NO
ar-TN
en-ZA
es-DO
sr-BA-Cyrl
sma-SE
ar-OM
en-JM
es-VE
sms-FI
ar-YE
en-CB
es-CO
smn-FI
ar-SY
en-BZ
es-PE
ar-JO
en-TT
es-AR
ar-LB
en-ZW
es-EC
ar-KW
en-PH
es-CL
ar-AE
es-UY
ar-BH
es-PY
ar-QA
es-BO
es-SV
es-HN
es-NI
es-PR
zh-CHT
af-za
ar-ae
ar-bh
ar-dz
ar-eg
ar-iq
ar-jo
ar-kw
ar-lb
ar-ly
ar-ma
ar-om
ar-qa
ar-sa
ar-sy
ar-tn
ar-ye
az-az-cyrl
az-az-latn
be-by
bg-bg
bn-in
bs-ba-latn
ca-es
cs-cz
cy-gb
da-dk
de-at
de-ch
de-de
de-li
de-lu
div-mv
el-gr
en-au
en-bz
en-ca
en-cb
en-gb
en-ie
en-jm
en-nz
en-ph
en-tt
en-us
en-za
en-zw
es-ar
es-bo
es-cl
es-co
es-cr
es-do
es-ec
es-es
es-gt
es-hn
es-mx
es-ni
es-pa
es-pe
es-pr
es-py
es-sv
es-uy
es-ve
et-ee
eu-es
fa-ir
fi-fi
fo-fo
fr-be
fr-ca
fr-ch
fr-fr
fr-lu
fr-mc
gl-es
gu-in
he-il
hi-in
hr-ba
hr-hr
hu-hu
hy-am
id-id
is-is
it-ch
it-it
ja-jp
ka-ge
kk-kz
kn-in
kok-in
ko-kr
ky-kg
lt-lt
lv-lv
mi-nz
mk-mk
ml-in
mn-mn
mr-in
ms-bn
ms-my
mt-mt
nb-no
nl-be
nl-nl
nn-no
ns-za
pa-in
pl-pl
pt-br
pt-pt
quz-bo
quz-ec
quz-pe
ro-ro
ru-ru
sa-in
se-fi
se-no
se-se
sk-sk
sl-si
sma-no
sma-se
smj-no
smj-se
smn-fi
sms-fi
sq-al
sr-ba-cyrl
sr-ba-latn
sr-sp-cyrl
sr-sp-latn
sv-fi
sv-se
sw-ke
syr-sy
ta-in
te-in
th-th
tn-za
tr-tr
tt-ru
uk-ua
ur-pk
uz-uz-cyrl
uz-uz-latn
vi-vn
xh-za
zh-chs
zh-cht
zh-cn
zh-hk
zh-mo
zh-sg
zh-tw
zu-za
CONOUT$
Opera installer 79.0.4143.22.0
Opera_installer_
Visit www.opera.com to download compatible version.
In line
When reporting this error, click on this text and press Ctrl+C to copy it.
Kernel32.dll
version.dll
%02d%02d%02d%02d%02d%02d%03d%d
efalse
%m/%d/%y
%H:%M:%S
%a %b %d %H:%M:%S %Y
p%I:%M:%S %p
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
cJanuary
February
March
April
August
September
October
November
December
api-ms-win-core-synch-l1-2-0.dll
kernel32.dll
KERNEL32.DLL
(null)
minkernel\crts\ucrt\inc\corecrt_internal_strtox.h
__crt_strtox::floating_point_value::as_double
_is_double
__crt_strtox::floating_point_value::as_float
!_is_double
mscoree.dll
LC_ALL
LC_COLLATE
LC_CTYPE
LC_MONETARY
LC_NUMERIC
LC_TIME
UTF-8
UTF-16LEUNICODE
api-ms-win-core-datetime-l1-1-1
api-ms-win-core-fibers-l1-1-1
api-ms-win-core-file-l1-2-2
api-ms-win-core-localization-l1-2-1
api-ms-win-core-localization-obsolete-l1-2-0
api-ms-win-core-processthreads-l1-1-2
api-ms-win-core-string-l1-1-0
api-ms-win-core-synch-l1-2-0
api-ms-win-core-sysinfo-l1-2-1
api-ms-win-core-winrt-l1-1-0
api-ms-win-core-xstate-l2-1-0
api-ms-win-rtcore-ntuser-window-l1-1-0
api-ms-win-security-systemfunctions-l1-1-0
ext-ms-win-ntuser-dialogbox-l1-1-0
ext-ms-win-ntuser-windowstation-l1-1-0
advapi32
kernel32
ntdll
api-ms-win-appmodel-runtime-l1-1-2
user32
api-ms-
ext-ms-
ja-JP
zh-CN
ko-KR
zh-TW
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
March
April
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
en-US
american
american english
american-english
australian
belgian
canadian
chinese
chinese-hongkong
chinese-simplified
chinese-singapore
chinese-traditional
dutch-belgian
english-american
english-aus
english-belize
english-can
english-caribbean
english-ire
english-jamaica
english-nz
english-south africa
english-trinidad y tobago
english-uk
english-us
english-usa
french-belgian
french-canadian
french-luxembourg
french-swiss
german-austrian
german-lichtenstein
german-luxembourg
german-swiss
irish-english
italian-swiss
norwegian
norwegian-bokmal
norwegian-nynorsk
portuguese-brazilian
spanish-argentina
spanish-bolivia
spanish-chile
spanish-colombia
spanish-costa rica
spanish-dominican republic
spanish-ecuador
spanish-el salvador
spanish-guatemala
spanish-honduras
spanish-mexican
spanish-modern
spanish-nicaragua
spanish-panama
spanish-paraguay
spanish-peru
spanish-puerto rico
spanish-uruguay
spanish-venezuela
swedish-finland
swiss
america
britain
china
czech
england
great britain
holland
hong-kong
new-zealand
pr china
pr-china
puerto-rico
slovak
south africa
south korea
south-africa
south-korea
trinidad & tobago
united-kingdom
united-states
utf-8
am/pm
zh-CHS
ar-SA
bg-BG
ca-ES
cs-CZ
da-DK
de-DE
el-GR
fi-FI
fr-FR
he-IL
hu-HU
is-IS
it-IT
nl-NL
nb-NO
pl-PL
pt-BR
ro-RO
ru-RU
hr-HR
sk-SK
sq-AL
sv-SE
th-TH
tr-TR
ur-PK
id-ID
uk-UA
be-BY
sl-SI
et-EE
lv-LV
lt-LT
fa-IR
vi-VN
hy-AM
az-AZ-Latn
eu-ES
mk-MK
tn-ZA
xh-ZA
zu-ZA
af-ZA
ka-GE
fo-FO
hi-IN
mt-MT
se-NO
ms-MY
kk-KZ
ky-KG
sw-KE
uz-UZ-Latn
tt-RU
bn-IN
pa-IN
gu-IN
ta-IN
te-IN
kn-IN
ml-IN
mr-IN
sa-IN
mn-MN
cy-GB
gl-ES
kok-IN
syr-SY
div-MV
quz-BO
ns-ZA
mi-NZ
ar-IQ
de-CH
en-GB
es-MX
fr-BE
it-CH
nl-BE
nn-NO
pt-PT
sr-SP-Latn
sv-FI
az-AZ-Cyrl
se-SE
ms-BN
uz-UZ-Cyrl
quz-EC
ar-EG
zh-HK
de-AT
en-AU
es-ES
fr-CA
sr-SP-Cyrl
se-FI
quz-PE
ar-LY
zh-SG
de-LU
en-CA
es-GT
fr-CH
hr-BA
smj-NO
ar-DZ
zh-MO
de-LI
en-NZ
es-CR
fr-LU
bs-BA-Latn
smj-SE
ar-MA
en-IE
es-PA
fr-MC
sr-BA-Latn
sma-NO
ar-TN
en-ZA
es-DO
sr-BA-Cyrl
sma-SE
ar-OM
en-JM
es-VE
sms-FI
ar-YE
en-CB
es-CO
smn-FI
ar-SY
en-BZ
es-PE
ar-JO
en-TT
es-AR
ar-LB
en-ZW
es-EC
ar-KW
en-PH
es-CL
ar-AE
es-UY
ar-BH
es-PY
ar-QA
es-BO
es-SV
es-HN
es-NI
es-PR
zh-CHT
af-za
ar-ae
ar-bh
ar-dz
ar-eg
ar-iq
ar-jo
ar-kw
ar-lb
ar-ly
ar-ma
ar-om
ar-qa
ar-sa
ar-sy
ar-tn
ar-ye
az-az-cyrl
az-az-latn
be-by
bg-bg
bn-in
bs-ba-latn
ca-es
cs-cz
cy-gb
da-dk
de-at
de-ch
de-de
de-li
de-lu
div-mv
el-gr
en-au
en-bz
en-ca
en-cb
en-gb
en-ie
en-jm
en-nz
en-ph
en-tt
en-us
en-za
en-zw
es-ar
es-bo
es-cl
es-co
es-cr
es-do
es-ec
es-es
es-gt
es-hn
es-mx
es-ni
es-pa
es-pe
es-pr
es-py
es-sv
es-uy
es-ve
et-ee
eu-es
fa-ir
fi-fi
fo-fo
fr-be
fr-ca
fr-ch
fr-fr
fr-lu
fr-mc
gl-es
gu-in
he-il
hi-in
hr-ba
hr-hr
hu-hu
hy-am
id-id
is-is
it-ch
it-it
ja-jp
ka-ge
kk-kz
kn-in
kok-in
ko-kr
ky-kg
lt-lt
lv-lv
mi-nz
mk-mk
ml-in
mn-mn
mr-in
ms-bn
ms-my
mt-mt
nb-no
nl-be
nl-nl
nn-no
ns-za
pa-in
pl-pl
pt-br
pt-pt
quz-bo
quz-ec
quz-pe
ro-ro
ru-ru
sa-in
se-fi
se-no
se-se
sk-sk
sl-si
sma-no
sma-se
smj-no
smj-se
smn-fi
sms-fi
sq-al
sr-ba-cyrl
sr-ba-latn
sr-sp-cyrl
sr-sp-latn
sv-fi
sv-se
sw-ke
syr-sy
ta-in
te-in
th-th
tn-za
tr-tr
tt-ru
uk-ua
ur-pk
uz-uz-cyrl
uz-uz-latn
vi-vn
xh-za
zh-chs
zh-cht
zh-cn
zh-hk
zh-mo
zh-sg
zh-tw
zu-za
CONOUT$
SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System
EnableLUA
user32.dll
wshcore.dll
.opera-api.com
.opera.com
Opera Software
7*.json*
{CompanyRegistryKey}
Last {CustomizedProduct}{Stream} Install Path
{InstallFolder}\
Last {Stream} Install Path x64
\\.\mailslot\
%ls_%d
.opera.com
.oslo.osa
localhost
127.0.0.1
.ams.osa
.service.osa
resources
dGlobal\Opera/Installer/
Publisher
yDisplayName
Stable
developer
Developer
nightly
Last install path
Install Path
Last
Install Path x64
Software\Microsoft\Windows\CurrentVersion\RunOnce
{Uninstall}
facebook
_icon.ico
.SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\InstallInfo
ReinstallCommand
kernel32
nhttp
Internet Explorer
.html
https
=?&Google\Chrome\Application\chrome.exe
Mozilla Firefox\firefox.exe
Internet Explorer\iexplore.exe
k.old
Opera*Message Center.lnk
ButtonStrip
ButtonStrip
Button
ComboBox
OperaProgressBar
Static
Segoe UI
MS Shell Dlg
Segoe UI
%ProgramFiles%\Internet Explorer\iexplore.exe
Local\%ls/Installer/UI_lock
xopera_installer_ui.lck
InstallerMainWindow
Opera Installer
ErrorScreen
ErrorScreen
OptionsScreen
OptionsScreen
tooltips_class32
ProgressScreen
ProgressScreen
RootScreen
cRootScreen
SurveyScreen
TOSScreen
UninstallScreen
WelcomeScreen
UninstallScreen
SurveyScreen
WelcomeScreen
TOSScreen
rError
This program requires a computer that supports SSE2 instructions.
Yopera_installer_%02d%02d%02d%02d%02d%02d%03d.log
profile
}installer_prefs.json
installer.exe
launcher.exe
notification_helper.exe
Opera installer
HTTP/1.1
e_sfx.exe
kadditional_file.tmp
assistant
downloadable_resource
partner_content
_%02d%02d%02d%02d%02d%02d
Lhttp://autoupdate-staging.services.ams.osa/
netinstaller/
/windows/x64
gadditional_files=
.opera.com
Server
X-Served-By
Content-Length
eRange: bytes=
NetInstaller/
eassistant
suite
assistant_package
opera_package
ready
package_version
ignore_ab_tests
bcrypt
hSHA1
ObjectLength
server_tracking_data
pref_default_overrides
ForceRemove
NoRemove
Delete
AppID
CLSID
Component Categories
FileType
Interface
Hardware
SECURITY
SYSTEM
Software
TypeLib
APPID
Module
Module_Raw
REGISTRY
Classes
HKEY_CLASSES_ROOT
HKEY_CURRENT_USER
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_PERFORMANCE_DATA
HKEY_DYN_DATA
HKEY_CURRENT_CONFIG
Advapi32.dll
tSystemSettings_DefaultApps_Browser_Button
SystemSettings_DefaultApps_Browser_App*_HyperlinkButton
SystemSettings_DefaultApps_Browser_*_Button
settingsFlyout
DefaultAppsFlyoutPresenter
Flyout
ApplicationFrameWindow
e\StringFileInfo\000004B0\ProductVersion
\StringFileInfo\000004B0\ContinuousVersion
\StringFileInfo\000004B0\Stream
Progman
SysListView32
#32768
n*.lnk
Last Band Check
{90AA3A4E-1CBA-4233-B8BB-535773D48449}
eShell32.dll
shell32.dll
CLASSES_ROOT\
MACHINE\
CURRENT_USER\
USERS\
?"<>*|:
Global\
Local\
Software\Microsoft\Windows\CurrentVersion\Uninstall
SeTakeOwnershipPrivilege
gpt-PT
runas
sSoftware\Clients\StartMenuInternet
\\.\%lc:
d%lc:\
Software\Classes\{ProgID}
FriendlyTypeName
{Product} Web Document
URL Protocol
Software\Classes\{ProgID}\DefaultIcon
{InstallFolder}\Launcher.exe,0
Software\Classes\{ProgID}\shell\open\command
"{InstallFolder}\Launcher.exe" -noautoupdate -- "%1"
Software\Classes\{ProgID}\shell\open\ddeexec
Software\Classes\{ProgID}\shell\open\ddeexec\Application
Software\Classes\{ProgID}\shell\open\ddeexec\Topic
.opdownload
.shtml
.xhtml
Internet Browser
Previous Default Browser
Software\Classes\ProgID
Software\Classes\CLSID\
opera_installer\
Autoupdate
OperaInstaller/PackageReady
OperaInstaller/InstallationInterrupted
OperaInstaller/GiveInstallPermission
OperaInstaller/GiveInstallPermission/Undo
extra_apps
files_list
installer_helper.exe
installer_helper_64.exe
root_files_list
k.bat
installer_prefs_include.json
minimal_install
_installer.exe
%02d-%02d-%02dT%02d:%02d:%02d
Run once
Daily run
Logon run
D:(A;;GRGX;;;AU)
eAssets
Resources.pri
launcher.visualelementsmanifest.xml
opera.exe
installer.exe
InstallLocation
old_status
installation_status.json
Software\Classes\.opdownload\OpenWithProgIDs
{ProgID}
Software\Classes\.htm\OpenWithProgIDs
Software\Classes\.html\OpenWithProgIDs
Software\Classes\.pdf\OpenWithProgIDs
Software\Classes\.shtml\OpenWithProgIDs
Software\Classes\.xht\OpenWithProgIDs
Software\Classes\.xhtml\OpenWithProgIDs
Software\Classes\Applications\{Executable}\shell\open\command
"{InstallFolder}\Launcher.exe" "%1"
Software\Microsoft\Windows\CurrentVersion\App Paths\{Executable}
"{InstallFolder}\Launcher.exe"
"{InstallFolder}"
Software\Microsoft\Windows\CurrentVersion\RunOnce
{Product}
Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted
{InstallFolder}\Launcher.exe
Software\RegisteredApplications
{Product} {Stream}
Software\Clients\StartMenuInternet\{ProgID}\Capabilities
Software\Clients\StartMenuInternet\{ProgID}
Software\Clients\StartMenuInternet\{ProgID}\DefaultIcon
Software\Clients\StartMenuInternet\{ProgID}\InstallInfo
ShowIconsCommand
"{InstallFolder}\Launcher.exe" --showicons
HideIconsCommand
"{InstallFolder}\Launcher.exe" --hideicons
"{InstallFolder}\Launcher.exe" --makedefaultbrowser
IconsVisible
Software\Clients\StartMenuInternet\{ProgID}\shell\open\command
ApplicationDescription
Do more on the web
ApplicationIcon
"{InstallFolder}\Launcher.exe",0
ApplicationName
Software\Clients\StartMenuInternet\{ProgID}\Capabilities\FileAssociations
Software\Clients\StartMenuInternet\{ProgID}\Capabilities\Startmenu
StartMenuInternet
Software\Clients\StartMenuInternet\{ProgID}\Capabilities\UrlAssociations
mailto
{ToastActivator}\LocalServer32
"{NotificationHelper}"
ServerExecutable
{NotificationHelper}
{Product} {Stream} {Version}
DisplayIcon
DisplayVersion
{Version}
HelpLink
{HelpURL}
{InstallFolder}
NoModify
NoRepair
{Company}
UninstallString
"{InstallFolder}\Launcher.exe" /uninstall
URLInfoAbout
{CompanyURL}
URLUpdateInfo
{DownloadsURL}
.exe
DInstallFolder
Version
Executable
Product
CustomizedProduct
Company
CompanyRegistryKey
Stream
Uninstall
HelpURL
CompanyURL
DownloadsURL
ProgID
ToastActivator
NotificationHelper
Extension
Protocol
Software\Classes\{Extension}
Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\{Extension}\UserChoice
Progid
Software\Classes\{Protocol}
EditFlags
Software\Classes\{Protocol}\DefaultIcon
Software\Classes\{Protocol}\shell\open\command
"{InstallFolder}\launcher.exe" -noautoupdate -- "%1"
Software\Classes\{Protocol}\shell\open\ddeexec
Software\Classes\{Protocol}\shell\open\ddeexec\Application
Software\Classes\{Protocol}\shell\open\ddeexec\Topic
Software\Microsoft\Windows\Shell\Associations\UrlAssociations\{Protocol}\UserChoice
Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\
Software\Microsoft\Windows\Shell\Associations\UrlAssociations\
\UserChoice
ProgId
SOFTWARE\Classes\
\shell\open\command
lexplore
://somewhere
{4CD6ED57-618E-4B47-BD93-0963D3EB4FF4}
{5E35B9FB-FB98-4565-8E0D-B7468DA31B81}
{14EBCC88-2831-4FC8-A5DF-9F36A81DB12C}
{1C5C9D10-1225-4C97-8C51-98E1B6F0D4E0}
{229D59E2-F94A-402E-9A9F-3B84A1ACED77}
{C7225171-B9A7-4CF7-861F-85AB7BA3C5B2}
{FC0BE3A5-6BE4-423C-B287-248934E379C7}
{2A848E25-D688-4AA3-8E55-0C16CB3A2DFB}
{CA635855-B44E-4541-9591-9FAA53354A53}
UserChoice
windows.immersivecontrolpanel_cw5n1h2txyewy!microsoft.windows.immersivecontrolpanel
page=SettingsPageAppsDefaults
page=SettingsPageAppsDefaults&target=%ls
SystemSettings_DefaultApps_%ls
Browser
Email
SettingsPageAppsDefaultsProtocolView
SOFTWARE\Microsoft\Windows\Shell\Associations\UrlAssociations\%ls\UserChoice
oauc_registry_mutex
1browser
e_browsertests
_integration_tests
_ui_tests
Crash Reports
crash_count.txt
localization
dictionaries
extensions
browser.js
siteprefs.json
ab_tests.json
purchases-schemas.json
video_conference_popout.json
test_data
test_data_desktop
themes
standard_themes
themes_backup
adblocker_data
tab_cycler_thumbnails
tcustom_partner_content.json
default_partner_content.json
tracking_user_agent.json
ftrue
false
%m/%d/%y
%H:%M:%S
%a %b %d %H:%M:%S %Y
p%I:%M:%S %p
tSunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
cJanuary
February
March
April
August
September
October
November
December
api-ms-win-downlevel-shell32-l1-1-0.dll
scoped_dir
debug.log
ntdll.dll
r.tmp
nKernel32.dll
taskbarpin
taskbarunpin
ykernel32.dll
SOFTWARE\Microsoft\Windows NT\CurrentVersion
ReleaseId
ROOT\CIMV2
Win32_Process
Create
CommandLine
ReturnValue
ProcessId
@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@`
.backup
Local State
erundll32.exe
)Local State
Preferences
crashpad_handler.exe
%ls;%ls
Microsoft
Quick Launch
User Pinned
TaskBar
ImplicitAppShortcuts
dOpera_MessageWindow
tcombase.dll
!"#$%&'()*+,-./0123456789:;<=>DDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDD
D:(A;;GA;;;SY)(A;;GWGR;;;S-1-15-2-1)S:(ML;;;;;S-1-16-0)
rCURRENT_USER
attachments
greports
settings.dat
ymetadata
--thread=
api-ms-win-eventing-provider-l1-1-0.dll
advapi32.dll
x\\.\pipe
crashpad_SessionEndWatcher
Pwinhttp.dll
kernel32.dll
VS_VERSION_INFO
scheduled
Opera
MS Shell Dlg
The installer file appears corrupted. Please go to <a href="tos">www.opera.com</a> and download Opera again.
Button1
Button2
VS_VERSION_INFO
StringFileInfo
040904b0
CompanyName
Opera Software
FileDescription
Opera Installer
FileVersion
79.0.4143.22
InternalName
Opera
LegalCopyright
Copyright Opera Software 2021
ProductName
Opera Installer
ProductVersion
79.0.4143.22
VarFileInfo
Translation
de privadesa</a>.
No s'ha pogut baixar Opera.!No s'ha pogut extreure el paquet.
Problemes amb la VPN
cilment a les converses en curs mentre navegues per Internet.
my s VPN
internetu.
cestu
ring for beskyttelse af personlige oplysninger</a>.
, du vil annullere installationen?
Problemer med VPN
lg en installationssti
chten Sie die Installation wirklich abbrechen?
lt Opera auf dem neuesten Stand.*Opera konnte nicht heruntergeladen werden.$Entpacken des Pakets fehlgeschlagen.
Abbrechen
Probleme mit dem VPN
hrend Sie im Internet surfen.
</a>.
By continuing, you will not be able to browse the Internet with the safe and secure Opera browser. Your local browser data will be lost. Are you sure you want to continue?ROpera has not finished installing. Are you sure you want to quit the installation?
Package extraction failed.
Cancel
Select the installation path
Are you sure you want to continue?ROpera has not finished installing. Are you sure you want to quit the installation?
Package extraction failed.
Cancel
Select the installation path
n de privacidad</a>.
n del paquete.
Cancelar
Problemas con la VPN
cil acceso a tus conversaciones mientras navegas en internet.
s seguro de que quieres abandonar el proceso?
Mantiene Opera actualizado. No se ha podido descargar Opera.#No se ha podido extraer el paquete.
Cancelar
Problemas con la VPN
<a href="tos">tietosuojalausunnostamme</a>.
onnistui.
Peruuta
Valitse asennuspolku
Isa pa, puwede mong malaman kung paano pinapamahalaan at pinoprotektahan ng Opera ang iyong data sa aming <a href="tos">Pahayag sa Privacy</a>.
Sa pagpapatuloy, hindi ka makapag-browse sa internet na may ligtas at seguridad na Opera browser. Ang data ng iyong local browser ay mawawala. Gusto mo bang ipagpatuloy?bHindi natapos sa Opera ang pag-install. Sigurado ka bang hindi mo na ipagpatuloy ang installation?
Nabigong i-download ang Opera.(Hindi nagawa ang pag-extract ng package.
Kanselahin
Kasama na sa sidebar ang full web na mga bersyon ng mga messenger, na nagbibigay ng madaling access sa iyong mga kasalukuyang pag-uusap habang bina-browse ang internet.
Piliin ang path ng pag-install
e</a>.
l'installation. Voulez-vous interrompre l'installation?
Annuler
mes avec le VPN
vos conversations tout en naviguant sur Internet.
installation
</a>.
Annuler
vos conversations en cours tout en surfant sur Internet.
lectionnez le chemin d'installation
oj <a href="tos">Izjavi o privatnosti</a>.
elite prekinuti instalaciju?
Izdvajanje paketa nije uspjelo.
Odaberite put instalacije
sa sikertelen.
ma a VPN-nel
seit.
&Tidak_Dengan mengklik "$1" Anda menyetujui <a href="tos">Perjanjian Lisensi Pengguna Akhir</a> Opera.~Anda juga bisa mempelajari bagaimana Opera menangani dan melindungi data Anda dalam <a href="tos">Pernyataan Privasi</a> kami.
Dengan melanjutkan, Anda tidak akan bisa menjelajah Internet dengan aman dan terlindungi browser Opera. Data browser lokal Anda akan hilang. Anda yakin ingin melanjutkan?NOpera belum selesai menginstal. Apakah Anda yakin ingin keluar dari instalasi?
Batal
Pilih lokasi intalasi
Per sapere come Opera tratta e protegge i tuoi dati, puoi leggere la nostra <a href="tos">Dichiarazione sulla riservatezza</a>.
terminata. Sei sicuro di voler uscire e interromperla?
Problemi con la VPN
Le versioni web delle app di messaggistica sono ora integrate nella barra laterale, per consentirti di conversare facilmente mentre navighi in Internet.
Installazione in corso&Seleziona il percorso di installazione
duomenis.
skleisti nepavyko.
Atsisakyti
ti</a>.
anas programmu?
Atcelt
kojot internetu.
Batal
Masalah dengan VPN
Versi penuh web messenger kini berada di bar sisi anda, memberikan akses mudah kepada perbualan yang berterusan semasa melayari internet.
Pilih laluan pemasangan
ring</a>.
at du vil avbryte installeringen?
Problemer med VPN
Internett.
Velg installasjonsbane
&NeenDoor op "$1" te klikken, ga je akkoord met Opera's <a href="tos">Licentieovereenkomst voor eindgebruikers</a>.iJe kunt ook lezen hoe Opera je gegevens verwerkt en beschermt in ons <a href="tos">Privacy-statement</a>.
Als je doorgaat, kan je niet op internet browsen met de veilige Opera-browser. Je verliest je plaatselijke browserdata. Weet je zeker dat je door wilt gaan?VOpera is niet klaar met installeren. Weet je zeker dat je de installatie wilt stoppen?
Annuleren
Problemen met VPN
Selecteer het installatiepad
ci</a>.
instalatora?
Anuluj
czeniem VPN
dania Internetu.
instalacji
o de Privacidade</a>.
Falha ao extrair o pacote.
Cancelar
Problemas com a VPN
navega pela Internet.
o de pacote falhou.
Cancelar
s suas atuais conversas ao mesmo tempo que navega na internet.
ti instalarea?
n timp ce navighezi pe internet.
Calea pentru instalare
dajov</a>.
my s funkciou VPN
as prehliadania internetu.
</a>.
rt <a href="tos">Sekretessmeddelande</a>.
att du vill avsluta installationen?
Paketuppackningen misslyckades.
Avbryt
Problem med VPN
Matatizo ya VPN
Matoleo kamili ya wavuti ya messenger sasa yanapatikana katika upauupande wako, hivyo kutoa ufikiaji rahisi wa mazungumzo yako yanayoendelea unapovinjari kwenye intaneti.
Chagua njia ya usakinishaji
renebilirsiniz.
inize emin misiniz?
</a>.
i VPN
t internet.
VS_VERSION_INFO
StringFileInfo
040904b0
CompanyName
Opera Software
FileDescription
Opera Installer
FileVersion
79.0.4143.22
InternalName
Opera
LegalCopyright
Copyright Opera Software 2021
ProductName
Opera Installer
ProductVersion
79.0.4143.22
VarFileInfo
Translation
No antivirus signatures available.

Process Tree

  • installer.exe 148 "C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe"
    • installer.exe 1328 C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Administrator\AppData\Roaming\Opera Softwar ...(truncated)
    • installer.exe 1452 "C:\Users\ADMINI~1\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe" --version
    • installer.exe 1832 "C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe" --backend --install --import-browser-data=0 --enable-stats=1 --enable-installer-stats=1 --launchopera=1 --installfolder="C:\Users\Administrator\App ...(truncated)
      • installer.exe 1220 C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Administrator\AppData\Roaming\Opera Softwar ...(truncated)

installer.exe, PID: 148, Parent PID: 1132
Full Path: C:\Users\Administrator\AppData\Local\Temp\installer.exe
Command Line: "C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe"
installer.exe, PID: 1328, Parent PID: 148
Full Path: C:\Users\Administrator\AppData\Local\Temp\installer.exe
Command Line: C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports" "--crash-count-file=C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\crash_count.txt" --url=https://crashstats-collector.opera.com/collector/submit --annotation=channel=Stable --annotation=plat=Win32 --annotation=prod=OperaDesktop --annotation=ver=79.0.4143.22 --initial-client-data=0x1a0,0x1a4,0x1a8,0x174,0x1ac,0x750c23e8,0x750c23f8,0x750c2404
installer.exe, PID: 1452, Parent PID: 148
Full Path: C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe
Command Line: "C:\Users\ADMINI~1\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe" --version
installer.exe, PID: 1832, Parent PID: 148
Full Path: C:\Users\Administrator\AppData\Local\Temp\installer.exe
Command Line: "C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe" --backend --install --import-browser-data=0 --enable-stats=1 --enable-installer-stats=1 --launchopera=1 --installfolder="C:\Users\Administrator\AppData\Local\Programs\Opera" --profile-folder --language=en --singleprofile=0 --copyonly=0 --allusers=0 --setdefaultbrowser=1 --pintotaskbar=1 --pin-additional-shortcuts=1 --server-tracking-data=server_tracking_data --initial-pid=148 --package-dir-prefix="C:\Users\ADMINI~1\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_20230113142819" --session-guid=8b259d1c-e774-4802-a2b6-0db823eac497 --desktopshortcut=1 --wait-for-package --initial-proc-handle=0005000000000000
installer.exe, PID: 1220, Parent PID: 1832
Full Path: C:\Users\Administrator\AppData\Local\Temp\installer.exe
Command Line: C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports" "--crash-count-file=C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\crash_count.txt" --url=https://crashstats-collector.opera.com/collector/submit --annotation=channel=Stable --annotation=plat=Win32 --annotation=prod=OperaDesktop --annotation=ver=79.0.4143.22 --initial-client-data=0x1ac,0x1b0,0x1b4,0x174,0x1b8,0x73c723e8,0x73c723f8,0x73c72404

Hosts

Direct IP Country Name
Y 8.8.8.8 [VT] unknown
N 37.228.108.132 [VT] unknown
N 192.229.211.108 [VT] unknown
N 129.6.15.29 [VT] unknown
N 107.167.125.189 [VT] unknown
N 107.167.110.218 [VT] unknown
N 104.93.21.9 [VT] unknown
N 104.93.21.35 [VT] unknown

TCP

Source Source Port Destination Destination Port
192.168.56.108 49173 104.93.21.35 www.msftncsi.com 80
192.168.56.108 49211 104.93.21.9 crl.microsoft.com 80
192.168.56.108 49177 107.167.110.218 download.opera.com 443
192.168.56.108 49184 107.167.110.218 download.opera.com 443
192.168.56.108 49188 107.167.110.218 download.opera.com 443
192.168.56.108 49194 107.167.110.218 download.opera.com 443
192.168.56.108 49200 107.167.110.218 download.opera.com 443
192.168.56.108 49204 107.167.110.218 download.opera.com 443
192.168.56.108 49171 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49172 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49174 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49175 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49179 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49180 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49182 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49185 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49186 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49187 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49190 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49191 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49192 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49193 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49195 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49196 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49197 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49201 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49202 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49203 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49205 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49208 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49210 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49212 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49213 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49214 107.167.125.189 desktop-netinstaller-sub.osp.opera.software 443
192.168.56.108 49176 192.229.211.108 ocsp.digicert.com 80
192.168.56.108 49169 37.228.108.132 autoupdate.geo.opera.com 443
192.168.56.108 49170 37.228.108.132 autoupdate.geo.opera.com 443
192.168.56.108 49183 37.228.108.132 autoupdate.geo.opera.com 443
192.168.56.108 49199 37.228.108.132 autoupdate.geo.opera.com 443

UDP

Source Source Port Destination Destination Port
192.168.56.108 123 129.6.15.29 time-b.nist.gov 123
192.168.56.108 137 192.168.56.255 137
192.168.56.108 138 192.168.56.255 138
192.168.56.108 51722 224.0.0.252 5355
192.168.56.108 52619 224.0.0.252 5355
192.168.56.108 55150 224.0.0.252 5355
192.168.56.108 55920 224.0.0.252 5355
192.168.56.108 57546 224.0.0.252 5355
192.168.56.108 62411 224.0.0.252 5355
192.168.56.108 62503 224.0.0.252 5355
192.168.56.108 62901 224.0.0.252 5355
192.168.56.108 63115 224.0.0.252 5355
192.168.56.108 65294 224.0.0.252 5355
192.168.56.108 65447 224.0.0.252 5355
192.168.56.108 49454 8.8.8.8 53
192.168.56.108 49845 8.8.8.8 53
192.168.56.108 49905 8.8.8.8 53
192.168.56.108 50436 8.8.8.8 53
192.168.56.108 54422 8.8.8.8 53
192.168.56.108 56439 8.8.8.8 53
192.168.56.108 58174 8.8.8.8 53
192.168.56.108 60141 8.8.8.8 53
192.168.56.108 63102 8.8.8.8 53

DNS

Name Response Post-Analysis Lookup
time-b.nist.gov [VT] CNAME time-b-g.nist.gov [VT]
A 129.6.15.29 [VT]
129.6.15.29 [VT]
teredo.ipv6.microsoft.com [VT] NXDOMAIN [VT]
autoupdate.geo.opera.com [VT] A 37.228.108.132 [VT]
CNAME us-autoupdate.opera.com [VT]
A 37.228.108.133 [VT]
37.228.108.133 [VT]
desktop-netinstaller-sub.osp.opera.software [VT] CNAME submit-trn.osp.opera.software [VT]
CNAME submit.geo.opera.com [VT]
CNAME submit-target.osp.opera.software [VT]
A 107.167.125.189 [VT]
107.167.125.189 [VT]
www.msftncsi.com [VT] CNAME a1961.g2.akamai.net [VT]
A 104.93.21.19 [VT]
CNAME www.msftncsi.com.edgesuite.net [VT]
A 104.93.21.35 [VT]
104.93.21.35 [VT]
ocsp.digicert.com [VT] CNAME ocsp.edge.digicert.com [VT]
A 192.229.211.108 [VT]
CNAME fp2e7a.wpc.phicdn.net [VT]
CNAME fp2e7a.wpc.2be4.phicdn.net [VT]
192.229.211.108 [VT]
download.opera.com [VT] CNAME us-download.opera.com [VT]
A 107.167.110.218 [VT]
A 107.167.110.217 [VT]
CNAME download.geo.opera.com [VT]
107.167.110.217 [VT]
crl.microsoft.com [VT] CNAME crl.www.ms.akadns.net [VT]
A 104.93.21.9 [VT]
A 104.93.21.18 [VT]
CNAME a1363.dscg.akamai.net [VT]
104.93.21.9 [VT]

HTTP Requests

URI Data
http://www.msftncsi.com/ncsi.txt
GET /ncsi.txt HTTP/1.1
Connection: Close
User-Agent: Microsoft NCSI
Host: www.msftncsi.com

http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAfy81yHqHeveu%2FpR5k1Jb0%3D
GET /MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAfy81yHqHeveu%2FpR5k1Jb0%3D HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: ocsp.digicert.com

http://crl.microsoft.com/pki/crl/products/CodeSignPCA2.crl
GET /pki/crl/products/CodeSignPCA2.crl HTTP/1.1
Cache-Control: max-age = 900
Connection: Keep-Alive
Accept: */*
If-Modified-Since: Mon, 16 Apr 2012 23:49:48 GMT
If-None-Match: "0f6669b2b1ccd1:0"
User-Agent: Microsoft-CryptoAPI/6.1
Host: crl.microsoft.com

SMTP traffic

No SMTP traffic performed.

IRC traffic

No IRC requests performed.

ICMP traffic

No ICMP traffic performed.

CIF Results

No CIF Results

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Suricata HTTP

No Suricata HTTP

Sorry! No dropped Suricata Extracted files.
File name installer.exe
Associated Filenames
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer Temp\installer.exe
File Size 4439760 bytes
File Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 451399b6ec289665d44b424ae8bb1f0d
SHA1 2c028f9a505c2b39d919e959cd753ef4a1682fa3
SHA256 0828078106bf0ef45f97ee0fcedba7dc95208ebbd80cb4a80cf1a682850f9f02
CRC32 3D0D1A41
Ssdeep 98304:D+gUaxvVNn9G/KOylzFmT+DmvN6UjOjnz3BDOAU/+pA:Rzxvbn9G/zylzFmT+xjnz3BDOnmq
ClamAV None
Yara None matched
VirusTotal Search for Analysis
Download
File name B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
Associated Filenames
C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
File Size 471 bytes
File Type data
MD5 a201599436b8835e95e105b5248a4381
SHA1 204fbabd27e8631dcc2dc7362f1e38d5d3150500
SHA256 2174530abbcb5cf3109a45a4cfaa2f5f5c8193ff91dc8ec146d20dfc03e8c27a
CRC32 5FD69B96
Ssdeep 12:JD2+zEL5J72+WAED94htw30bSFg9TeubtvtmL7luR3bMD:JD2+zMf72+l8etyiSFg99btFmQRLe
ClamAV None
Yara None matched
VirusTotal Search for Analysis
Download
File name opera_installer_20230113142821453.log
Associated Filenames
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer\opera_installer_20230113142821453.log
File Size 2593 bytes
File Type ASCII text, with very long lines
MD5 744e673c26858baae5c131e10b0a8a9a
SHA1 3ddf837c448ca203e61300d661755d035a552fae
SHA256 2ce79d8a9365c0816943b2089741892b43a82b9d8df678c4e596ee50fa0836e9
CRC32 EA6AA887
Ssdeep 48:ObS0bLCNZBw6u2/AGuNZdLTVt3fbiE20bSbdOXb9bxb2bvTm6l7OYE0qr26Pb24U:BA5YO63OH2vJ
ClamAV None
Yara None matched
VirusTotal Search for Analysis
DownloadDisplay Text
[0113/142821.453:INFO:installer_main.cc(428)] Opera installer starting - version 79.0.4143.22 Stable
[0113/142821.453:INFO:installer_main.cc(431)] Command line: "C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe" --backend --install --import-browser-data=0 --enable-stats=1 --enable-installer-stats=1 --launchopera=1 --installfolder="C:\Users\Administrator\AppData\Local\Programs\Opera" --profile-folder --language=en --singleprofile=0 --copyonly=0 --allusers=0 --setdefaultbrowser=1 --pintotaskbar=1 --pin-additional-shortcuts=1 --server-tracking-data=server_tracking_data --initial-pid=148 --package-dir-prefix="C:\Users\ADMINI~1\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_20230113142819" --session-guid=8b259d1c-e774-4802-a2b6-0db823eac497 --desktopshortcut=1 --wait-for-package --initial-proc-handle=0005000000000000
[0113/142821.453:INFO:installer_main.cc(452)] Install folder from command line: C:\Users\Administrator\AppData\Local\Programs\Opera
[0113/142821.453:INFO:installer_main.cc(455)] Uninstall:0
[0113/142821.453:INFO:installer_main.cc(456)] Silent:0
[0113/142821.453:INFO:installer_main.cc(457)] Run Immediately0
[0113/142821.453:INFO:installer_main.cc(459)] Backend1
[0113/142821.453:INFO:installer_main.cc(460)] Inside package0
[0113/142821.453:INFO:installer_main.cc(461)] Autoupdate:0
[0113/142821.453:INFO:payload_manager_impl.cc(78)] Reading Payload
[0113/142821.453:WARNING:installer_main.cc(572)] Failed reading payload
[0113/142821.453:INFO:settings_impl.cc(631)] Found 2 paths for standalone install mode.
[0113/142821.453:INFO:resource_l10n_handler.cc(112)] Language not in the available languages list: 
[0113/142821.453:INFO:resource_l10n_handler.cc(118)] Trying language from system preferred list: en-US
[0113/142821.453:INFO:resource_l10n_handler.cc(161)] Retrying after adjustments: en-US
[0113/142821.453:INFO:resource_l10n_handler.cc(118)] Trying language from system preferred list: en
[0113/142821.453:INFO:settings_impl.cc(1107)] Install folder set: C:\Users\Administrator\AppData\Local\Programs\Opera
[0113/142821.453:INFO:settings_impl.cc(1165)] Operation: 1
[0113/142821.453:INFO:installer.cc(155)] Beginning installation
[0113/142821.453:INFO:permission_grantor_impl.cc(135)] Write privileges for install folder: 1
[0113/142821.468:INFO:installation_package_impl.cc(70)] Need to wait for actual package
[0113/143028.773:INFO:installer.cc(172)] Installation was interrupted
[0113/143028.773:INFO:installer.cc(755)] Installation cancelled
[0113/143028.773:INFO:backend_process_installer_runner_impl.cc(187)] Installer backend exiting
File name opera_installer_20230113142819281.log
Associated Filenames
C:\Users\Administrator\AppData\Local\Temp\.opera\Opera Installer\opera_installer_20230113142819281.log
File Size 11613 bytes
File Type ASCII text, with very long lines
MD5 d0735b327893e30e481ad0abf6b4158d
SHA1 5c421fc81973cd98a642570dd8e3fddad5cf9e2d
SHA256 5fbf620303e0f6be6c1ad491790d9a362e93ccf9cb640f0516d2570531632033
CRC32 92125F9F
Ssdeep 192:B8bPn5Yc/Yp5/pwcYO/B5AY3/uCwYz/5QgYB/t5wYl/TlcFv:BQ5DExTVZaYGZchHu1yCbGv
ClamAV None
Yara None matched
VirusTotal Search for Analysis
DownloadDisplay Text
[0113/142819.296:INFO:installer_main.cc(428)] Opera installer starting - version 79.0.4143.22 Stable
[0113/142819.296:INFO:installer_main.cc(431)] Command line: "C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe"
[0113/142819.296:INFO:installer_main.cc(455)] Uninstall:0
[0113/142819.296:INFO:installer_main.cc(456)] Silent:0
[0113/142819.296:INFO:installer_main.cc(457)] Run Immediately0
[0113/142819.296:INFO:installer_main.cc(459)] Backend0
[0113/142819.296:INFO:installer_main.cc(460)] Inside package0
[0113/142819.296:INFO:installer_main.cc(461)] Autoupdate:0
[0113/142819.296:INFO:payload_manager_impl.cc(78)] Reading Payload
[0113/142819.296:WARNING:installer_main.cc(572)] Failed reading payload
[0113/142819.296:INFO:settings_impl.cc(631)] Found 2 paths for standalone install mode.
[0113/142819.296:INFO:resource_l10n_handler.cc(112)] Language not in the available languages list: 
[0113/142819.296:INFO:resource_l10n_handler.cc(118)] Trying language from system preferred list: en-US
[0113/142819.296:INFO:resource_l10n_handler.cc(161)] Retrying after adjustments: en-US
[0113/142819.296:INFO:resource_l10n_handler.cc(118)] Trying language from system preferred list: en
[0113/142819.515:INFO:scoped_download_folder.cc(59)] Installer download folder: C:\Users\ADMINI~1\AppData\Local\Temp\.opera\Opera Installer Temp
[0113/142819.515:INFO:installer_ui_lock_impl.cc(28)] Getting installer UI mutex
[0113/142819.515:INFO:settings_impl.cc(1107)] Install folder set: C:\Users\Administrator\AppData\Local\Programs\Opera
[0113/142819.515:INFO:settings_impl.cc(1165)] Operation: 1
[0113/142819.515:INFO:installer_ui_controller.cc(290)] Initializing installer UI
[0113/142819.796:INFO:wininet_impl.cc(310)] Starting download from https://autoupdate.geo.opera.com/geolocation/
[0113/142819.796:INFO:wininet_impl.cc(705)] Stopping the download
[0113/142819.796:INFO:package_fetch_sequencer_impl.cc(144)] Starting the package fetcher
[0113/142819.812:INFO:package_metadata_retriever_impl.cc(206)] Preparing to fetch the download URL
[0113/142819.812:INFO:package_metadata_retriever_impl.cc(248)] Fetching the download URL
[0113/142819.812:INFO:wininet_impl.cc(310)] Starting download from https://autoupdate.geo.opera.com/v2/netinstaller/Stable/windows/x64
[0113/142955.203:INFO:installer_ui_controller.cc(472)] Accept clicked.
[0113/142955.203:INFO:main_process_installer_runner_impl.cc(68)] Beginning installation
[0113/142955.203:INFO:main_process_installer_runner_impl.cc(191)] launching installer backend: "C:\Users\ADMINI~1\AppData\Local\Temp\installer.exe" --backend --install --import-browser-data=0 --enable-stats=1 --enable-installer-stats=1 --launchopera=1 --installfolder="C:\Users\Administrator\AppData\Local\Programs\Opera" --profile-folder --language=en --singleprofile=0 --copyonly=0 --allusers=0 --setdefaultbrowser=1 --pintotaskbar=1 --pin-additional-shortcuts=1 --server-tracking-data=server_tracking_data --initial-pid=148 --package-dir-prefix="C:\Users\ADMINI~1\AppData\Local\Temp\.opera\Opera Installer Temp\opera_package_20230113142819" --session-guid=8b259d1c-e774-4802-a2b6-0db823eac497 --desktopshortcut=1 --wait-for-package --initial-proc-handle=0005000000000000
[0113/155932.046:INFO:wininet_impl.cc(562)] Initial request completion
[0113/155932.046:INFO:wininet_impl.cc(586)] Could not get Content-Length from response: Error (0x13D) while retrieving error. (0x2F76)
[0113/155932.046:INFO:wininet_impl.cc(823)] Download completed
[0113/155932.406:INFO:wininet_impl.cc(562)] Initial request completion
[0113/155932.406:INFO:wininet_impl.cc(586)] Could not get Content-Length from response: Error (0x13D) while retrieving error. (0x2F76)
[0113/155932.406:INFO:wininet_impl.cc(823)] Download completed
[0113/155932.406:INFO:main_package_downloader_impl.cc(66)] Preparing to fetch the installer
[0113/155932.406:INFO:wininet_impl.cc(310)] Starting download from https://download.opera.com/download/get/?id=57360&autoupdate=1&ni=1&stream=stable
[0113/155935.843:ERROR:wininet_impl.cc(879)] Request completed with an unexpected error: 12037
[0113/155935.843:ERROR:wininet_impl.cc(810)] Download failed
[0113/155935.843:ERROR:package_fetch_sequencer_impl.cc(414)] Request completed with an unexpected error: 12037

Main package download failed with wininet state: *4*
[0113/155935.843:INFO:package_fetcher_impl.cc(100)] Retrying a fetch attempt
[0113/160042.734:INFO:wininet_impl.cc(705)] Stopping the download
[0113/160042.734:INFO:package_fetch_sequencer_impl.cc(144)] Starting the package fetcher
[0113/160042.734:INFO:package_metadata_retriever_impl.cc(206)] Preparing to fetch the download URL
[0113/160042.734:INFO:package_metadata_retriever_impl.cc(248)] Fetching the download URL
[0113/160042.734:INFO:wininet_impl.cc(310)] Starting download from https://autoupdate.geo.opera.com/v2/netinstaller/Stable/windows/x64
[0113/160046.266:INFO:wininet_impl.cc(562)] Initial request completion
[0113/160046.266:INFO:wininet_impl.cc(586)] Could not get Content-Length from response: Error (0x13D) while retrieving error. (0x2F76)
[0113/160046.266:INFO:wininet_impl.cc(823)] Download completed
[0113/160046.266:INFO:main_package_downloader_impl.cc(66)] Preparing to fetch the installer
[0113/160046.266:INFO:wininet_impl.cc(310)] Starting download from https://download.opera.com/download/get/?id=57360&autoupdate=1&ni=1&stream=stable
[0113/160048.600:ERROR:wininet_impl.cc(879)] Request completed with an unexpected error: 12037
[0113/160048.600:ERROR:wininet_impl.cc(810)] Download failed
[0113/160048.600:ERROR:package_fetch_sequencer_impl.cc(414)] Request completed with an unexpected error: 12037

Main package download failed with wininet state: *4*
[0113/160048.600:INFO:package_fetcher_impl.cc(100)] Retrying a fetch attempt
[0113/160125.102:INFO:wininet_impl.cc(705)] Stopping the download
[0113/160125.102:INFO:package_fetch_sequencer_impl.cc(144)] Starting the package fetcher
[0113/160125.102:INFO:package_metadata_retriever_impl.cc(206)] Preparing to fetch the download URL
[0113/160125.102:INFO:package_metadata_retriever_impl.cc(248)] Fetching the download URL
[0113/160125.102:INFO:wininet_impl.cc(310)] Starting download from https://autoupdate.geo.opera.com/v2/netinstaller/Stable/windows/x64
[0113/160125.939:INFO:wininet_impl.cc(562)] Initial request completion
[0113/160125.939:INFO:wininet_impl.cc(586)] Could not get Content-Length from response: Error (0x13D) while retrieving error. (0x2F76)
[0113/160125.939:INFO:wininet_impl.cc(823)] Download completed
[0113/160125.939:INFO:main_package_downloader_impl.cc(66)] Preparing to fetch the installer
[0113/160125.939:INFO:wininet_impl.cc(310)] Starting download from https://download.opera.com/download/get/?id=57360&autoupdate=1&ni=1&stream=stable
[0113/160129.276:ERROR:wininet_impl.cc(879)] Request completed with an unexpected error: 12037
[0113/160129.276:ERROR:wininet_impl.cc(810)] Download failed
[0113/160129.276:ERROR:package_fetch_sequencer_impl.cc(414)] Request completed with an unexpected error: 12037

Main package download failed with wininet state: *4*
[0113/160129.276:INFO:package_fetcher_impl.cc(100)] Retrying a fetch attempt
[0113/160143.436:INFO:wininet_impl.cc(705)] Stopping the download
[0113/160143.436:INFO:package_fetch_sequencer_impl.cc(144)] Starting the package fetcher
[0113/160143.436:INFO:package_metadata_retriever_impl.cc(206)] Preparing to fetch the download URL
[0113/160143.436:INFO:package_metadata_retriever_impl.cc(248)] Fetching the download URL
[0113/160143.436:INFO:wininet_impl.cc(310)] Starting download from https://autoupdate.geo.opera.com/v2/netinstaller/Stable/windows/x64
[0113/160144.121:INFO:wininet_impl.cc(562)] Initial request completion
[0113/160144.121:INFO:wininet_impl.cc(586)] Could not get Content-Length from response: Error (0x13D) while retrieving error. (0x2F76)
[0113/160144.121:INFO:wininet_impl.cc(823)] Download completed
[0113/160144.121:INFO:main_package_downloader_impl.cc(66)] Preparing to fetch the installer
[0113/160144.121:INFO:wininet_impl.cc(310)] Starting download from https://download.opera.com/download/get/?id=57360&autoupdate=1&ni=1&stream=stable
[0113/160147.457:ERROR:wininet_impl.cc(879)] Request completed wi <truncated>
File name settings.dat
Associated Filenames
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Crash Reports\settings.dat
File Size 40 bytes
File Type data
MD5 727f26a59159f0fb17fced9c62e3e074
SHA1 433d561486068b750a3b4964d3316eff4e8c9531
SHA256 68a23946d5c2b3204ba1f29c746da8d670bce4cb7848c07b177754394cca5a27
CRC32 2C643A35
Ssdeep 3:FkUVbq:2
ClamAV None
Yara None matched
VirusTotal Search for Analysis
Download
File name Opera_installer_2301132027593431452.dll
Associated Filenames
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132027593431452.dll
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028012811832.dll
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132028013591220.dll
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_230113202759109148.dll
C:\Users\Administrator\AppData\Local\Temp\Opera_installer_2301132027592501328.dll
File Size 4003536 bytes
File Type PE32 executable (DLL) (console) Intel 80386, for MS Windows
MD5 7193a83d5d057ba07653f24587db1f37
SHA1 fb3728c21153cf1b3af654c614a52245e644f05a
SHA256 8e4f48679f87b5e8c786fd264bb511f86fef5d98ef16e8acff07bbcfc920313a
CRC32 826C545E
Ssdeep 98304:PaxvVNn9G/KOylzFmT+DmvN6UjOjnz3BDOAU/+p6:Sxvbn9G/zylzFmT+xjnz3BDOnmo
ClamAV None
Yara None matched
VirusTotal Search for Analysis
Download
File name B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
Associated Filenames
C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_ADE4E4D3A3BCBCA5C39C54D362D88565
File Size 434 bytes
File Type data
MD5 be997d0503e00893bdf88ed44089aca5
SHA1 653a04120c9e621dc027a1473c7b3b735e651a10
SHA256 df34edd42afc4fa69283500a0bd3a820a886f03a3a609514303f6cc7507d3b19
CRC32 7CD6A001
Ssdeep 6:kK3FN3f23Hmn/aIKOlPXlRNfOAUMivhClroFH7q0yNXImolv9RUuQ2vmLlCn+VCo:dN77KYmxMiv8sFbq0yNYmc3Q2N+kYvCk
ClamAV None
Yara None matched
VirusTotal Search for Analysis
Download
JSON Report Download

Comments



No comments posted

Processing ( 5.573 seconds )

  • 1.815 Static
  • 1.571 NetworkAnalysis
  • 0.759 BehaviorAnalysis
  • 0.485 Strings
  • 0.418 VirusTotal
  • 0.207 Dropped
  • 0.201 peid
  • 0.103 TargetInfo
  • 0.007 AnalysisInfo
  • 0.006 config_decoder
  • 0.001 Debug

Signatures ( 0.301 seconds )

  • 0.035 ransomware_message
  • 0.027 antiav_detectreg
  • 0.025 stealth_timeout
  • 0.016 api_spamming
  • 0.015 decoy_document
  • 0.014 antivm_generic_disk
  • 0.013 stealth_file
  • 0.011 mimics_filetime
  • 0.011 infostealer_ftp
  • 0.01 virus
  • 0.009 bootkit
  • 0.009 reads_self
  • 0.009 antidbg_windows
  • 0.008 infostealer_browser
  • 0.006 antiav_detectfile
  • 0.006 infostealer_im
  • 0.005 hancitor_behavior
  • 0.005 antianalysis_detectreg
  • 0.004 antiemu_wine_func
  • 0.004 infostealer_browser_password
  • 0.004 kovter_behavior
  • 0.004 infostealer_bitcoin
  • 0.004 infostealer_mail
  • 0.003 injection_createremotethread
  • 0.003 antivm_vbox_keys
  • 0.002 antivm_generic_services
  • 0.002 injection_explorer
  • 0.002 antivm_generic_scsi
  • 0.002 persistence_autorun
  • 0.002 injection_runpe
  • 0.002 antivm_vbox_files
  • 0.002 antivm_vmware_keys
  • 0.002 ransomware_files
  • 0.001 tinba_behavior
  • 0.001 hawkeye_behavior
  • 0.001 rat_nanocore
  • 0.001 antiav_avast_libs
  • 0.001 network_anomaly
  • 0.001 dridex_behavior
  • 0.001 recon_programs
  • 0.001 betabot_behavior
  • 0.001 antivm_vbox_libs
  • 0.001 kibex_behavior
  • 0.001 h1n1_behavior
  • 0.001 antianalysis_detectfile
  • 0.001 antidbg_devices
  • 0.001 antivm_generic_diskreg
  • 0.001 antivm_parallels_keys
  • 0.001 antivm_vpc_keys
  • 0.001 antivm_xen_keys
  • 0.001 geodo_banking_trojan
  • 0.001 modify_proxy
  • 0.001 browser_security
  • 0.001 darkcomet_regkeys
  • 0.001 disables_browser_warn
  • 0.001 network_torgateway
  • 0.001 ransomware_extensions
  • 0.001 recon_fingerprint

Reporting ( 1.156 seconds )

  • 1.156 JsonDump
Task ID 1713
Mongo ID 645fd7402694ed0cf6a0f9c7
Cuckoo release 1.3-NG