Function Graph 0Basic Block 0Opcode: 55sub_804a936:Opcode: 55push    ebpOpcode: 89 e5mov     ebpespOpcode: 83 ec 38sub     esp0x38 {var_3c}Opcode: 8b 45 0cmov     eaxdword [ebp+data_c {arg_8}]Opcode: 8b 4d 08mov     ecxdword [ebp+data_8 {arg_4}]Opcode: 89 4d fcmov     dword [ebp-0x4 {var_8}]ecxOpcode: 89 45 f8mov     dword [ebp-0x8 {var_c}]eaxOpcode: 89 45 f4mov     dword [ebp-0xc {var_10}]eaxOpcode: 2d 08 00 00 00sub     eaxdata_8Opcode: 89 45 f0mov     dword [ebp-0x10 {var_14}]eaxOpcode: 8b 45 f4mov     eaxdword [ebp-0xc {var_10}]Opcode: 25 00 00 f0 ffand     eax0xfff00000Opcode: 89 45 e4mov     dword [ebp-0x1c {var_20}]eaxOpcode: 8b 45 f4mov     eaxdword [ebp-0xc {var_10}]Opcode: 25 07 00 00 00and     eax0x7Opcode: 85 c0test    eaxeaxOpcode: 74 a5je      0x804a90fBasic Block 1Opcode: 8b 45 f0mov     eaxdword [ebp-0x10 {var_14}]Opcode: 8b 40 04mov     eaxdword [eax+data_4]Opcode: 25 01 00 00 00and     eaxdata_1Opcode: 85 c0test    eaxeaxOpcode: 74 d3je      0x804a8f1Basic Block 2Opcode: 8d 05 40 fd 04 08lea     eax[data_804fd40]  {"BAD SMALL FREE: address is not a…"}Opcode: 8b 4d f4mov     ecxdword [ebp-0xc {var_10}]Opcode: 89 04 24mov     dword [esp {var_3c}]eaxOpcode: 89 4c 24 04mov     dword [esp+data_4 {var_38}]ecxOpcode: e8 00 e3 ff ffcall    sub_8048c7fOpcode: e8 00 e3 ff ff{ Does not return }Basic Block 3Opcode: 8b 45 f0mov     eaxdword [ebp-0x10 {var_14}]Opcode: 81 78 04 00 00 02 00cmp     dword [eax+data_4]0x20000Opcode: 77 d9ja      0x804a8d6Basic Block 4Opcode: 8d 05 71 fd 04 08lea     eax[data_804fd71]  {"BAD SMALL FREE: double free ptr=…"}Opcode: 8b 4d f4mov     ecxdword [ebp-0xc {var_10}]Opcode: 89 04 24mov     dword [esp {var_3c}]eaxOpcode: 89 4c 24 04mov     dword [esp+data_4 {var_38}]ecxOpcode: e8 4c e3 ff ffcall    sub_8048c7fOpcode: e8 4c e3 ff ff{ Does not return }Basic Block 5Opcode: 8d 05 97 fd 04 08lea     eax[data_804fd97]  {"BAD SMALL FREE: corrupted size p…"}Opcode: 8b 4d f4mov     ecxdword [ebp-0xc {var_10}]Opcode: 89 04 24mov     dword [esp {var_3c}]eaxOpcode: 89 4c 24 04mov     dword [esp+data_4 {var_38}]ecxOpcode: e8 94 e3 ff ffcall    sub_8048c7fOpcode: e8 94 e3 ff ff{ Does not return }Basic Block 6Opcode: 8b 45 f0mov     eaxdword [ebp-0x10 {var_14}]Opcode: 81 78 04 10 00 00 00cmp     dword [eax+data_4]data_10Opcode: 0f 83 02 f1 ff ffjae     0x8049a0fBasic Block 7Opcode: 8b 45 f0mov     eaxdword [ebp-0x10 {var_14}]Opcode: 81 38 00 00 00 00cmp     dword [eax]data_0Opcode: 0f 85 69 fe ff ffjne     0x8049887Basic Block 8Opcode: eb c7jmp     0x804a8d6Basic Block 9Opcode: 8b 45 f0mov     eaxdword [ebp-0x10 {var_14}]Opcode: 8b 4d f0mov     ecxdword [ebp-0x10 {var_14}]Opcode: 2b 01sub     eaxdword [ecx]Opcode: 89 45 ecmov     dword [ebp-0x14 {var_18}]eaxOpcode: e9 d9 f5 ff ffjmp     0x8048e70Basic Block 10Opcode: c7 45 ec 00 00 00 00mov     dword [ebp-0x14 {var_18}]data_0Opcode: e9 46 f4 ff ffjmp     0x8048e70Basic Block 11Opcode: 8b 45 f0mov     eaxdword [ebp-0x10 {var_14}]Opcode: 8b 4d f0mov     ecxdword [ebp-0x10 {var_14}]Opcode: 03 41 04add     eaxdword [ecx+data_4]Opcode: 89 45 e8mov     dword [ebp-0x18 {var_1c}]eaxOpcode: 81 7d ec 00 00 00 00cmp     dword [ebp-0x14 {var_18}]data_0Opcode: 74 2fje      0x8048eb4Basic Block 12Opcode: 8b 45 e8mov     eaxdword [ebp-0x18 {var_1c}]Opcode: 8b 00mov     eaxdword [eax]Opcode: 8b 4d f0mov     ecxdword [ebp-0x10 {var_14}]Opcode: 3b 41 04cmp     eaxdword [ecx+data_4]Opcode: 74 1dje      0x8048edeBasic Block 13Opcode: 8b 45 ecmov     eaxdword [ebp-0x14 {var_18}]Opcode: 8b 40 04mov     eaxdword [eax+data_4]Opcode: 25 fe ff ff ffand     eax0xfffffffeOpcode: 8b 4d f0mov     ecxdword [ebp-0x10 {var_14}]Opcode: 3b 01cmp     eaxdword [ecx]Opcode: 74 1dje      0x8048eb4Basic Block 14Opcode: 81 7d ec 00 00 00 00cmp     dword [ebp-0x14 {var_18}]data_0Opcode: 74 60je      0x8048f47Basic Block 15Opcode: 8d 05 f4 fd 04 08lea     eax[data_804fdf4]  {"BAD SMALL FREE: heap corruption …"}Opcode: 8b 4d e8mov     ecxdword [ebp-0x18 {var_1c}]Opcode: 8b 55 f4mov     edxdword [ebp-0xc {var_10}]Opcode: 89 04 24mov     dword [esp {var_3c}]eaxOpcode: 89 4c 24 04mov     dword [esp+data_4 {var_38}]ecxOpcode: 89 54 24 08mov     dword [esp+data_8 {var_34}]edxOpcode: e8 a2 fd ff ffcall    sub_8048c7fOpcode: e8 a2 fd ff ff{ Does not return }Basic Block 16Opcode: 8d 05 c0 fd 04 08lea     eax[data_804fdc0]  {"BAD SMALL FREE: heap corruption …"}Opcode: 8b 4d ecmov     ecxdword [ebp-0x14 {var_18}]Opcode: 8b 55 f4mov     edxdword [ebp-0xc {var_10}]Opcode: 89 04 24mov     dword [esp {var_3c}]eaxOpcode: 89 4c 24 04mov     dword [esp+data_4 {var_38}]ecxOpcode: 89 54 24 08mov     dword [esp+data_8 {var_34}]edxOpcode: e8 cc fd ff ffcall    sub_8048c7fOpcode: e8 cc fd ff ff{ Does not return }Basic Block 17Opcode: 8b 45 e8mov     eaxdword [ebp-0x18 {var_1c}]Opcode: 8b 40 04mov     eaxdword [eax+data_4]Opcode: 25 01 00 00 00and     eaxdata_1Opcode: 85 c0test    eaxeaxOpcode: 74 5aje      0x8048fb0Basic Block 18Opcode: 8b 45 ecmov     eaxdword [ebp-0x14 {var_18}]Opcode: 8b 40 04mov     eaxdword [eax+data_4]Opcode: 25 01 00 00 00and     eaxdata_1Opcode: 85 c0test    eaxeaxOpcode: 74 51je      0x8048f47Basic Block 19Opcode: 8b 45 fcmov     eaxdword [ebp-0x4 {var_8}]Opcode: 8b 4d f0mov     ecxdword [ebp-0x10 {var_14}]Opcode: 8b 49 04mov     ecxdword [ecx+data_4]Opcode: 89 0c 24mov     dword [esp {var_3c}]ecxOpcode: 89 45 d8mov     dword [ebp-0x28 {var_2c}]eaxOpcode: e8 93 f4 ff ffcall    sub_8048457Opcode: 90nop     Opcode: 8b 4d f0mov     ecxdword [ebp-0x10 {var_14}]Opcode: 8b 55 d8mov     edxdword [ebp-0x28 {var_2c}]Opcode: 89 14 24mov     dword [esp {var_3c}]edxOpcode: 89 44 24 04mov     dword [esp+data_4 {var_38}]eaxOpcode: 89 4c 24 08mov     dword [esp+data_8 {var_34}]ecxOpcode: e8 53 f3 ff ffcall    sub_804832eOpcode: 90nop     Opcode: 83 c4 38add     esp0x38 {var_4}Opcode: 5dpop     ebpOpcode: e9 57 f2 ff ffjmp     0x804823cBasic Block 20Opcode: 8b 45 fcmov     eaxdword [ebp-0x4 {var_8}]Opcode: 8b 4d e8mov     ecxdword [ebp-0x18 {var_1c}]Opcode: 8b 49 04mov     ecxdword [ecx+data_4]Opcode: 81 e1 fe ff ff ffand     ecx0xfffffffeOpcode: 89 0c 24mov     dword [esp {var_3c}]ecxOpcode: 89 45 dcmov     dword [ebp-0x24 {var_28}]eaxOpcode: e8 e7 f4 ff ffcall    sub_8048457Opcode: 90nop     Opcode: 8b 4d e8mov     ecxdword [ebp-0x18 {var_1c}]Opcode: 8b 55 dcmov     edxdword [ebp-0x24 {var_28}]Opcode: 89 14 24mov     dword [esp {var_3c}]edxOpcode: 89 44 24 04mov     dword [esp+data_4 {var_38}]eaxOpcode: 89 4c 24 08mov     dword [esp+data_8 {var_34}]ecxOpcode: e8 bc fc ff ffcall    sub_8048c43Opcode: 90nop     Opcode: 8b 45 e8mov     eaxdword [ebp-0x18 {var_1c}]Opcode: 8b 40 04mov     eaxdword [eax+data_4]Opcode: 8b 4d f0mov     ecxdword [ebp-0x10 {var_14}]Opcode: 8b 51 04mov     edxdword [ecx+data_4]Opcode: 01 c2add     edxeaxOpcode: 89 51 04mov     dword [ecx+data_4]edxOpcode: 8b 45 f0mov     eaxdword [ebp-0x10 {var_14}]Opcode: 8b 4d f0mov     ecxdword [ebp-0x10 {var_14}]Opcode: 03 41 04add     eaxdword [ecx+data_4]Opcode: 89 45 e8mov     dword [ebp-0x18 {var_1c}]eaxOpcode: 8b 45 f0mov     eaxdword [ebp-0x10 {var_14}]Opcode: 8b 40 04mov     eaxdword [eax+data_4]Opcode: 8b 4d e8mov     ecxdword [ebp-0x18 {var_1c}]Opcode: 89 01mov     dword [ecx]eaxBasic Block 21Opcode: 8b 45 fcmov     eaxdword [ebp-0x4 {var_8}]Opcode: 8b 4d ecmov     ecxdword [ebp-0x14 {var_18}]Opcode: 8b 49 04mov     ecxdword [ecx+data_4]Opcode: 81 e1 fe ff ff ffand     ecx0xfffffffeOpcode: 89 0c 24mov     dword [esp {var_3c}]ecxOpcode: 89 45 e0mov     dword [ebp-0x20 {var_24}]eaxOpcode: e8 47 f5 ff ffcall    sub_8048457Opcode: 90nop     Opcode: 8b 4d ecmov     ecxdword [ebp-0x14 {var_18}]Opcode: 8b 55 e0mov     edxdword [ebp-0x20 {var_24}]Opcode: 89 14 24mov     dword [esp {var_3c}]edxOpcode: 89 44 24 04mov     dword [esp+data_4 {var_38}]eaxOpcode: 89 4c 24 08mov     dword [esp+data_8 {var_34}]ecxOpcode: e8 1c fd ff ffcall    sub_8048c43Opcode: 90nop     Opcode: 8b 45 f0mov     eaxdword [ebp-0x10 {var_14}]Opcode: 8b 40 04mov     eaxdword [eax+data_4]Opcode: 8b 4d ecmov     ecxdword [ebp-0x14 {var_18}]Opcode: 8b 51 04mov     edxdword [ecx+data_4]Opcode: 01 c2add     edxeaxOpcode: 89 51 04mov     dword [ecx+data_4]edxOpcode: 8b 45 ecmov     eaxdword [ebp-0x14 {var_18}]Opcode: 89 45 f0mov     dword [ebp-0x10 {var_14}]eaxOpcode: 8b 40 04mov     eaxdword [eax+data_4]Opcode: 8b 4d e8mov     ecxdword [ebp-0x18 {var_1c}]Opcode: 89 01mov     dword [ecx]eaxBasic Block 22Opcode: 81 24 24 ff ff ff 7fand     dword [esp {__return_addr}]0x7fffffffOpcode: 8b 0c 24mov     ecxdword [esp {__return_addr}]Opcode: 80 39 90cmp     byte [ecx]0x90Opcode: 0f 85 c2 2b 00 00jne     0x804ae11Basic Block 23Opcode: 59pop     ecxOpcode: 80 79 ff f4cmp     byte [ecx-0x1]0xf4Opcode: 75 08jne     0x804ae20Basic Block 24Opcode: c3retn    Basic Block 25Opcode: 81 f9 a0 80 04 08cmp     ecxdata_80480a0Opcode: 0f 84 65 01 00 00je      0x804af91Basic Block 26Opcode: 81 e1 ff ff ff 7fand     ecx0x7fffffffOpcode: ff e1jmp     ecxBasic Block 27Opcode: 55push    ebpOpcode: 89 e5mov     ebpespOpcode: 83 ec 0csub     espdata_c {var_c}Opcode: 8b 45 0cmov     eaxdword [ebp+data_c {arg_c}]Opcode: 8b 4d 08mov     ecxdword [ebp+data_8 {arg_8}]Opcode: 89 4d f8mov     dword [ebp-0x8 {var_8}]ecxOpcode: 89 45 f4mov     dword [ebp-0xc {var_c}]eaxOpcode: 8b 45 f8mov     eaxdword [ebp-0x8 {var_8}]Opcode: 8b 80 84 00 00 00mov     eaxdword [eax+0x84]Opcode: 8b 4d f4mov     ecxdword [ebp-0xc {var_c}]Opcode: 3b 81 84 00 00 00cmp     eaxdword [ecx+0x84]Opcode: 0f 86 06 02 00 00jbe     0x804b1c1Basic Block 28Opcode: b8 01 00 00 00mov     eaxdata_1Opcode: cd 80int     0x80Opcode: cd 80{ Does not return }Basic Block 29Opcode: 8b 45 f8mov     eaxdword [ebp-0x8 {var_8}]Opcode: 8b 80 84 00 00 00mov     eaxdword [eax+0x84]Opcode: 8b 4d f4mov     ecxdword [ebp-0xc {var_c}]Opcode: 3b 81 84 00 00 00cmp     eaxdword [ecx+0x84]Opcode: 75 e5jne     0x804b1baBasic Block 30Opcode: ba 01 00 00 00mov     edxdata_1Opcode: e9 ee 01 00 00jmp     0x804b1b3Basic Block 31Opcode: ba ff ff ff ffmov     edx0xffffffffOpcode: eb f2jmp     0x804b1b3Basic Block 32Opcode: ba 00 00 00 00mov     edxdata_0Opcode: eb d7jmp     0x804b1b3Basic Block 33Opcode: 89 d0mov     eaxedxOpcode: 83 c4 0cadd     espdata_c {__return_addr}Opcode: 5dpop     ebpOpcode: c3retn