[Bug 24328] Filter Forge 2 demo fails to launch with error: <class XFW::OSCallError> ::GetScrollInfo failed. (ExeCryptor protection)

wine-bugs at winehq.org wine-bugs at winehq.org
Mon Feb 13 11:38:07 CST 2012


http://bugs.winehq.org/show_bug.cgi?id=24328

GyB <gyebro69 at gmail.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
           Keywords|                            |download, obfuscation
                URL|                            |http://www.filterforge.com/
                   |                            |download/Filter%20Forge%202
                   |                            |%20Setup.exe
                 CC|                            |gyebro69 at gmail.com
            Summary|Filter Forge 2 demo fails   |Filter Forge 2 demo fails
                   |to launch with error:       |to launch with error:
                   |<class XFW::OSCallError>    |<class XFW::OSCallError>
                   |::GetScrollInfo failed.     |::GetScrollInfo failed.
                   |                            |(ExeCryptor protection)

--- Comment #3 from GyB <gyebro69 at gmail.com> 2012-02-13 11:38:07 CST ---
Still a problem in Wine-1.4rc3.
Both Filter Forge 2 and FF 3 share the reported problem (download link for FF2
Trial added to url).

Filter Forge 2 Setup.exe   md5sum: baf5f49ff0f56f3e859d6df4fd6ce3d5

Running the application after a clean install I am greeted with a window,
offering 2 options: <Buy Filter Forge> and <Use Trial - 30 Days Left>.
Clicking on <Use Trial...> results in the error message mentioned in the bug
title.

This could be another bug caused by the copy-protection scheme named
ExeCryptor.
See also bug #28001 and bug #29567.

-=[ ProtectionID v0.6.4.0 JULY]=-
(c) 2003-2010 CDKiLLER & TippeX
Build 07/08/10-17:57:05
Ready...
Scanning -> C:\Program Files\Filter Forge 2\Bin\FFXCmdRenderer-x86.exe
File Type : 32-Bit Exe (Subsystem : Win CUI / 3), Size : 3232112 (0315170h)
Byte(s)
-> File Appears to be Digitally Signed @ Offset 0313E00h, size : 01370h / 04976
byte(s)
[File Heuristics] -> Flag : 00000000000000011100001000100111 (0x0001C227)
[!] EXE Cryptor v2.4.0 RC v1.02 (with un-compressed code section) detected !
- Scan Took : 1.429 Second(s)

Scanning -> C:\Program Files\Filter Forge 2\Bin\Filter Forge x86.exe
File Type : 32-Bit Exe (Subsystem : Win GUI / 2), Size : 8144752 (07C4770h)
Byte(s)
[x] Warning - FileAlignment seems wrong.. is 0x00000200, calculated 0x00000400
-> File Appears to be Digitally Signed @ Offset 07C3400h, size : 01370h / 04976
byte(s)
[File Heuristics] -> Flag : 00000000000000011100001000100111 (0x0001C227)
[!] EXE Cryptor v2.4.0 RC v1.02 (with un-compressed code section) detected !
[!] Possible CD/DVD-Key or Serial Check -> SerialNumber
[CompilerDetect] -> Visual C++ 7.1 (Visual Studio 2003)
- Scan Took : 0.62 Second(s)

Scanning -> C:\Program Files\Filter Forge 2\Bin\Filter Forge x86-SSE2.exe
File Type : 32-Bit Exe (Subsystem : Win GUI / 2), Size : 8197488 (07D1570h)
Byte(s)
-> File Appears to be Digitally Signed @ Offset 07D0200h, size : 01370h / 04976
byte(s)
[File Heuristics] -> Flag : 00000000000000011100001000100111 (0x0001C227)
[!] EXE Cryptor v2.4.0 RC v1.02 (with un-compressed code section) detected !
[!] Possible CD/DVD-Key or Serial Check -> SerialNumber
[CompilerDetect] -> Visual C++ 7.1 (Visual Studio 2003)
- Scan Took : 0.58 Second(s)

Scanning -> C:\Program Files\Filter Forge 2\Bin\Filter Forge.exe
File Type : 32-Bit Exe (Subsystem : Win GUI / 2), Size : 3130224 (02FC370h)
Byte(s)
-> File Appears to be Digitally Signed @ Offset 02FB000h, size : 01370h / 04976
byte(s)
[File Heuristics] -> Flag : 00000000000000000000000000000100 (0x00000004)
[!] Possible CD/DVD-Key or Serial Check -> SerialNumber
[CompilerDetect] -> Visual C++ 7.1 (Visual Studio 2003)
[!] File appears to have no protection or is using an unknown protection
- Scan Took : 0.350 Second(s)

-- 
Configure bugmail: http://bugs.winehq.org/userprefs.cgi?tab=email
Do not reply to this email, post in Bugzilla using the
above URL to reply.
------- You are receiving this mail because: -------
You are watching all bug changes.



More information about the wine-bugs mailing list