Static | ZeroBOX

PE Compile Time

2019-12-23 16:48:18

PDB Path

C:\kocurok_letivuhodenoyugefaji\bari ruzidofixusucewi3.pdbdo.pdb

PE Imphash

7fc39213713180aae00d5962f7c21023

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000a2663 0x000a2800 7.87829255511
.rdata 0x000a4000 0x00004b54 0x00004c00 5.28001539726
.data 0x000a9000 0x0276fd8c 0x00002a00 1.94184664861
.wici 0x02819000 0x00001001 0x00000400 0.0
.poke 0x0281b000 0x000002e5 0x00000400 0.0
.gekez 0x0281c000 0x00000001 0x00000200 0.0
.rsrc 0x0281d000 0x00006ff8 0x00007000 5.57034278259

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x02822078 0x00000002 None SUBLANG_DEFAULT data
AFX_DIALOG_LAYOUT 0x02822078 0x00000002 None SUBLANG_DEFAULT data
AFX_DIALOG_LAYOUT 0x02822078 0x00000002 None SUBLANG_DEFAULT data
AFX_DIALOG_LAYOUT 0x02822078 0x00000002 None SUBLANG_DEFAULT data
HIDAMEVOPUGER 0x028219c0 0x000005c6 None SUBLANG_DEFAULT ASCII text, with very long lines, with no line terminators
JIDOS 0x02820368 0x0000127b None SUBLANG_DEFAULT ASCII text, with very long lines, with no line terminators
SAPU 0x028215e8 0x000003d8 None SUBLANG_DEFAULT ASCII text, with very long lines, with no line terminators
ZUMIRUYOHOMUKAKUWAVATIVI 0x0281fca0 0x000006c5 None SUBLANG_DEFAULT ASCII text, with very long lines, with no line terminators
RT_CURSOR 0x028223f8 0x000010a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x028223f8 0x000010a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x028223f8 0x000010a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x028223f8 0x000010a8 None SUBLANG_DEFAULT dBase III DBT, version number 0, next free block index 40
RT_ICON 0x0281d6e0 0x000025a8 None SUBLANG_DEFAULT data
RT_STRING 0x02823e78 0x0000017c None SUBLANG_DEFAULT data
RT_STRING 0x02823e78 0x0000017c None SUBLANG_DEFAULT data
RT_STRING 0x02823e78 0x0000017c None SUBLANG_DEFAULT data
RT_STRING 0x02823e78 0x0000017c None SUBLANG_DEFAULT data
RT_ACCELERATOR 0x02821f88 0x00000090 None SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x028234a0 0x00000030 None SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x028234a0 0x00000030 None SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0281fc88 0x00000014 None SUBLANG_DEFAULT data
RT_VERSION 0x028234d0 0x00000144 None SUBLANG_DEFAULT data
None 0x02822058 0x0000000a None SUBLANG_DEFAULT data
None 0x02822058 0x0000000a None SUBLANG_DEFAULT data
None 0x02822058 0x0000000a None SUBLANG_DEFAULT data
None 0x02822058 0x0000000a None SUBLANG_DEFAULT data
None 0x02822058 0x0000000a None SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x4a4008 WriteConsoleW
0x4a4014 Sleep
0x4a401c CreateMutexW
0x4a4020 GetStdHandle
0x4a4034 CallNamedPipeW
0x4a4038 EnumResourceNamesW
0x4a4048 EnumTimeFormatsW
0x4a404c TlsSetValue
0x4a4050 GetACP
0x4a4054 WriteFile
0x4a4058 GetCurrentActCtx
0x4a405c ReleaseActCtx
0x4a4060 AddRefActCtx
0x4a4068 OpenFile
0x4a406c VerifyVersionInfoA
0x4a4070 GetVersionExA
0x4a4074 FreeLibrary
0x4a4078 LoadLibraryExW
0x4a407c GetComputerNameA
0x4a4080 CommConfigDialogA
0x4a4088 lstrcatA
0x4a408c LoadLibraryW
0x4a4090 LocalAlloc
0x4a4094 SetEndOfFile
0x4a4098 CancelWaitableTimer
0x4a40a0 GetCommMask
0x4a40a4 HeapFree
0x4a40a8 RaiseException
0x4a40ac GetBinaryTypeA
0x4a40b0 LocalSize
0x4a40b4 SetConsoleMode
0x4a40bc WriteConsoleInputW
0x4a40c0 OpenMutexW
0x4a40c4 SetThreadContext
0x4a40c8 AddAtomW
0x4a40d0 GetSystemTime
0x4a40d4 GetCommandLineA
0x4a40d8 SetLocalTime
0x4a40dc GetLastError
0x4a40e4 DisconnectNamedPipe
0x4a40ec TerminateThread
0x4a40f0 GetFileAttributesW
0x4a40f4 SetLastError
0x4a40f8 lstrlenA
0x4a40fc CompareStringW
0x4a4100 CompareStringA
0x4a4104 VirtualProtect
0x4a4108 CreateJobObjectA
0x4a410c DeleteFileA
0x4a4110 RtlUnwind
0x4a4114 TerminateProcess
0x4a4118 GetCurrentProcess
0x4a4124 IsDebuggerPresent
0x4a4128 GetStartupInfoA
0x4a412c HeapAlloc
0x4a4134 GetProcAddress
0x4a4138 GetModuleHandleA
0x4a413c GetModuleHandleW
0x4a4140 TlsGetValue
0x4a4144 TlsAlloc
0x4a4148 TlsFree
0x4a4150 GetCurrentThreadId
0x4a4154 GetCurrentThread
0x4a4158 ExitProcess
0x4a415c GetModuleFileNameA
0x4a416c WideCharToMultiByte
0x4a4174 SetHandleCount
0x4a4178 GetFileType
0x4a4180 HeapCreate
0x4a4184 HeapDestroy
0x4a4188 VirtualFree
0x4a4190 GetTickCount
0x4a4194 GetCurrentProcessId
0x4a4198 SetFilePointer
0x4a419c GetConsoleCP
0x4a41a0 GetConsoleMode
0x4a41a4 GetCPInfo
0x4a41a8 GetOEMCP
0x4a41ac IsValidCodePage
0x4a41b0 FatalAppExitA
0x4a41b4 VirtualAlloc
0x4a41b8 HeapReAlloc
0x4a41bc HeapSize
0x4a41c4 InterlockedExchange
0x4a41c8 LoadLibraryA
0x4a41d0 SetStdHandle
0x4a41d4 WriteConsoleA
0x4a41d8 GetConsoleOutputCP
0x4a41dc MultiByteToWideChar
0x4a41e0 LCMapStringA
0x4a41e4 LCMapStringW
0x4a41e8 GetStringTypeA
0x4a41ec GetStringTypeW
0x4a41f0 GetTimeFormatA
0x4a41f4 GetDateFormatA
0x4a41f8 GetUserDefaultLCID
0x4a41fc GetLocaleInfoA
0x4a4200 EnumSystemLocalesA
0x4a4204 IsValidLocale
0x4a4208 FlushFileBuffers
0x4a420c GetLocaleInfoW
0x4a4210 CreateFileA
0x4a4214 CloseHandle
Library USER32.dll:
0x4a4224 GetComboBoxInfo
Library ADVAPI32.dll:
0x4a4000 ClearEventLogW

Exports

Ordinal Address Name
1 0x47c280 _lifan@8
!This program cannot be run in DOS mode.
`.rdata
@.data
.gekez
yn)>dQ
S~[>uO=P
3rsXZB
"2DZM@_
cD$"{P`
6b< bs
tB7V|:
>JRZ^C^
R,Rf6V68
^zT[UA:
Sd?eNwmp]N
@_yv,@
1#Suu@s
-AW#$ODT
5vb%(t+
\s8x2_
-m72B-
\#0v?ZXr"!hCE
I:OiA
6,UW#$
Q_tf?(
U\-9q;
8Fdd5!D
Yty^xJkd
O>K@@y1
?I]"cW
tZ(6Mp
D=1*+H
5:I:Z&
_!sLY=2
7eQfi
@%U#=e-
Cd<z+z
,hr,5O
KVFteS
{E#Hc{
}>Xw:e<
SCO'ZU
h?qYr
DNSlu,~
$-ork
]hZ')N
@("}ULf;
IDcQ0X
H-&m-D
L\5jU#
owUU*"X
V~/(eN
wG$M}y
]o6<-
g9H?Q^6P
h&BNrX
MH(e'Y
gESd\V
;Ms1km
._w]{z
|-aB[6
vnrdYv4O
o^ub1p|
FUuyaj]
eFvg:e
OF#p'cG
woMH2
p9*^8m
dZd)|t$
k=4s~OB
_N)bi*
r|-V7
R%{nXA
K,3Y1h
dV,R}d
Ih $5K
vSHW$B~
53/\U
3\<F/'
DwiayQ
Rc S C
H4vNnN
R'o'y
__~3*P
8Krf<D
MMb+kG
|iQ:z1zZ#
Y9P*lfy
-h#hwi}
L.QU[YH
<<d.ye
AdOjot_
i&Y{Q
+-[dWW
IbO]e\
sot3%u
;;,!d@*
N[~A^y
+Mgn{h
4f:a$C
;-y@A+
}QIV9 `
FU\e U
T>`y*^
>svaM#
1V\X2<
X>8xxy9I
!E[A:A
;+&7Lm=
Y!nF-Id
1Q?Aqa
(31kk'
.gox2ha;{
TO&VMT.
gD8Q?.5
\<mwzr
Xj1hR@*$
;6d_2l
<\_Hs8
}0s{9^
FN@ak>C
B B(Rd
X_2tkt
%J-4K-OC
w10UNg
9+y*uJ
S!=`Xl
Q2S07$
Q[df-G
`,5l!c
;bR> ?
r\:(7~
N\NTIc
0=~-#y
9I{uA_lX
!}K2E)R
yyom3.
BTaU</x?
J#!l^H
vii'/J
UW1<4R,x)
m{nagz[={
4sm<E=
c?YTVE
!=pm7Wc
3sY(~2B
?3_bsJp
f)>y.P
0Zc/c}37
W~4#L/x
z,%SMs
(YD BU
lmTD&'
Wwy[xV
'_5!Bq
X^XEh
2e,^VW
r!f+gx
)Ji&dl
'^DBl{
`kC)dq
+zphf%
p0:C4N
LPm+[N
zkj1{r
e}:oS*n
6.`S;QZ
eqi5gW
y^XT*_@_-vf
pJ,0,M
P]XX)[
\/.xM,
;o;:79
th$W${8
ah)^D1
c'\|+ZG:
}xw}!)(.+I^
zI8 2TV
,mZ2F`
;;OZ,=
U2G'4K
w:i&.k
sdu?EI
t?7Da1
Gg9Zxi
IoMTR#
AbOoQ
dqql!5
+.eAg{v
D+.&q1-{
f^u7X#
{^_sQ@w|
%<x A<{
6z-&my{
gj~pGP8
h! R&kM
yP~_qQpn
\)UX>r
8:]=,4s(K9mZ
gk-4JK*
gI+*J^
<$n' t
,ZTKy0
b(@Y,
7p&d1
B#WxOer
M$M!6q#
wq~Awa8S
FXzUAw
S"x[qa
[I']&g
SH`$kE
T+=GM<
k5_b]
96^zJ$GL.$
0#=Tu*
\dK\gr97@
|lKd#l
2V]^yv
q=Oh#9dhb
9NfO>D~
@@Tp.H{
N8"*3!
lt034a
o].y0| \+D
!eAG|n
>(?er]
%*a96~
q/xZGJV
h'jme2CW
mRq~*-
Gf;%|H
=,fWO'
ob-dX\,
2X;T`+
walP*+
vF4>b=
:kd+b'
KKmIBw
;=a$(SNfb
r6N*`4
+l.D3+R[
;aXW_hf
}{`6"v0d
lN$cAr
mIX;nlx
;67A~|
fXH}`D
g/Z2t+S
i[F-LP
^UsEhS
;42ko6-
,xANb(
M;Bg$
e-jfbL^
BZ>7Cb
WD+c>^
uj"S4<4
/jL6D!
PoS"iY
/$":hJ
;sJY-dM
D,Vi]U
E{OA7m
\{r^"=
Xj+;bd
Y6z1\
SI7M|g
KU@{Of
kQo"5
jCn]bb
oz#3:d
GKyCT`
oyan =
m]"Qvp
Vp:xFlg
g{6n+c
4*(o:
pA[FyP
O3U7*+
|Lf@li
VnlP9uu4
LxJDMME
2F0Io[
H:*Q1(d
:N*[zc
KA77\
_M!|{yd
521X^?
X&0.V\g3}
9?Y$^t|Y
Qmw2[0
9f24uAo
7W=.mp
wwe1uVh
c-LM"CG
F^(wDQ
aBZIut
!/)|tz
gp:uNR
(bk&j
;Iv52D[
I8]Q)3
KJbQOs
a_y9/T
:a\@@j
089}{?i
*RDJE
<*UcqE
O8EOh
$Ro4DY
b.K`]7m
Sj:l`u
Kk~*,;X
/%b{b(
5HJNZvO
+(wD1/
/xf Cr
P$L_'%
+NrI!Q
.,,E1Q^
P);63x
n-tv-L
9Cn4a3@m
]:mDdE{
]j5Z*R
+3eV-o
5ys)<( (
vxY?D\
HHv-Ck
O#u]l~
^9$':L
|31D)DY[
Ugk0}r
&t9Ok)p
6n>-'a
MPgv%m
!|N1_u
(dU$=z
>`j+@y
+g4VcWY
-Kr3uG
2LkGm>
]KQKsI
@tf[n
6v`=M^
Zt;|n,
L/zlU5
$=s*VG
qu,z8/
I=mbVW
0;n#`+N'.
?4x{1
q:<+>Zl
H]YoAD:k
/w#'SX
%K[&f{8
C{8yI[
N41}'S
9>HI/*
1Qug)#[
U5w+`mN
`%fmGU
c3-Z"i
!2LeK7&
C5#%{_K
tzs46$
x3_;Ez
O#.z#d
"_`UtYUJ#
]Y9c'kKx
'A!~HP
u@LX2E
]}d2QB
kD -^z
x-zi7I
A&4Wqr
Nn$:ab
9+mU7z$
X_ =JX
aq$Q{R
XA(]N|
w=m-$>
lYbp/TG
|TGS,#
RYE!o|m
z2C7p
E (3aWz
/gx2;tD
`N+k1b
sRIGaR}
MT9wA!
EuQ31<4
'xA,k8
ck'LTG
"lu!$~
?!d%3*
o~wAN|
t:$['`/N
_11v_2
CD\3i!
3S7r`'
vm '_)78
h^`kI
0Gao&`C=
Di{8`aZ
y7N:6HC
U+C0)v
p.>+ z
A.|n)D
)G0wVj8
~rc}JM
}Nwujg^
Smj+`v
RFBQ?:
]6qkW=
VF-iJ?
6o-) x
3eJ$rmG?
\3!-!(
+K*H=f
K!@u[(,u$QX
|mhB.2H
1VY%wH
0"#j#f
$aY-c5
sIU&tLs
AAu:.$
g8v]N1V
@\\Wgt
,heQL9&K
d<VI3*TT
uOWgWU
%*l)gb
;@!+s#
;<H/MAK
@Jka6"bPT!
%k"Vmy
"}gBA-
x&}3U)
s?HJqn
pa'7?"
@42*YF)V
7[V0}0D
C?UC|>O
v9h%B@z
Nu4F2~G
--B,Z`
9m`\iW
AZ@,u9M
n0:WYm
TGFw*
4+G|FW
Nazs#rv7
j40L{(/u
?A[bj:
G1c#Uk
= 2G'\
@tsB?6$
Rcue>L
a+koJV
HZXJ~J
XZ>p;K
?R4FK R[
sNR+[m
I)U!i(Y4
gU 0 f
IZ(Hl;G
m4s"jY
Yhrm!9
&KGW@ynq
~{wUVI
QllW4!
9*'3!Vi
CCOP(n
My=D3L
H:-$!Y
Iw[=~;
./K%^]
tnjTW|p
jU<L6J}
KF-8H{)L
4EgkU
$X1(fQ~)U
$_U4\?
JAbKq=
5N] y=
xhR8'h
#[1Ox\";
u~:EZG
`3]u4F
"BAbT;
zp3SzJ
m-oxj'
TEfF4a
6"c:XQ
Tyy&2\O
jQjA#S
\p36D}
pG.uVs
MoU[p+
\{tsJ~U
%O8Lqz*Y
(NWS8K
m=j-lP$
T7,uZ'u
A[P;PL
G3b8Gm
'l#D|b`7
_3qef
%eA@<t
f!<-pf)
iZupe/H
?~k}"`I
RJ/qG(
#B-B9x
pi?>zkZw
,)zpf%
95Ebs
br33bk
k?F7xb
V5W2lh
e$Kep-
r^/;Iu
v#FK^.
!4Fu-M
;_'PKg
,zrUQQ
Pz$l%u
XNehWS
NhA:$:
S;sPrm
B>pU*";
z5`fT|
jl+_03k
ne'In;
H!>PC3
(tSNH,|
.4XNYN
]M'{#wP:
H`Ca[D
4SFL0?Z
10Q(vW
u1?N!7
)d3fan
$*H(Vf
HOdE>`Z%t
l""<Y];(e
)"uK`X/
ZC,x`INr
>Rn`"l
I,h`n (Dr|"
,.+"~x
R-(6\#HV
N<)-Xa
&*+K'"
?3rq:"
q@Tvx4
)pS5;G
ZSx"y=
LT7`6`
EW Wci
<qe%Y7
LN-Ilq
Fe^!8{3%
*!t|OgJ0?k``
j4E_@X
!6TGhI
`Iu7q?
/Vl2k6
H@vgKOC
'q$%5h
<gL|96
iPmZNz
\a;:,F
+I<f!2+
xHB%$ckU
if1+xX
kSkPHGW`A
wJr+]:'$
C}Z9C+
w19nN3
4'yP2x
e$|CbX
Q=W*EQ
I@",avQ
a*e"[ov
Yik3%8
+$CsA0
cMr}3K+
1b?5j1
w{T8{
P^Wbj.
oFKJJ&
[=f!5Y
O/*yj[
TK%{_C
FF7g?*wD
=}3h5`
'wXb`3D}-`
-LUd~-a}*
lp:Qpsfe
zt=hun
f*[(1Hy
U:sb-G
:PRxiQ0
]ERGRv
{+)lcj
TlvG5Z
PD ndA
.W|$:4Y!
mpU&;l
Vx=_Ny
YVWy&ZZ
;%w2u,GYC
m})nVe
7'[+Ab0P
-GzS @
`_Zy-R.
F>Zk}e
,.Gbmg
x@5?k0
8q;YYYv
u!0x>d
+^$;\)
AA2qgA$
Id;f`4h
CE~92B
rI_o|i
B4lrOd
iO2)Qr3
?CEHyF
0DF}9\
O9wXq&U
4)"/<Y2
5fy80f
9HMoyS
qpFu*i
w)0j}\
`~7UpA'
D?TSSH
i6EhY[
2ig<>j
TyoYrD
oc?bOj>
Md-wX)
;3iQN,dj
j!VPC?
h_c;wY
E2I-"'
,D.nris
l_6vMD
:gO.{d
.#C9\A
Bv[0C>
s:3OW`n
h*P);v
Au%gml
Ykf:Cgn
jeezvJh
puKI&1
?OlIaN
lz%{| T
:@EwGy
^3]e6l
[gQ.wz
W37WN
bt1(O ;
8nK_<6
:=kao~
/nBpm@
"Kp6af
%KkB+9
C^Qc`V
yS&8-U
{[L,|T
CXRD0!
u+><6K
j<3bT2
J|:'h,_O
`RXuZ?
j.C42R|
4KMcODJ
of%-aHu
hXqjC&
]OQp=N*
sClAEd9
hPNa~?
mR5F?]
~2aF/j
TbwTd[
;uz!#e,1
9~}VGB
zz@|6M
YZufM2
]OF9 #
=R0RX[w
2@=GnEO
Fk11T'W
0R&JHJ
>VpdmU
6i_0Nn
HVN/{}_#-87
LCbn?2{
u!-"[yn$]
2$N{,
A7sWR@
0U[aD&Yn
dq^Yy^k
U&uq28
Ueb3xl
XY|_rT
e_l!ll
<*FPYI
?Rm@<O
=?tE?{
J3[S?[r
1k@~ln
M1{02]
v$pF\u5N
}l~3)O
>/3@~}
O3%^t!
lW''@E
/$hC`<0
lYv Va
p/]g.,
aVLX})
[m6.?)2
83OK7$a7
_vnO}t
dtlMGY*
wm8Y$;
9R4AXE`
^kX:pK
Kh>'qC^q|
E[s@_,
QcMl4i
% bo|'q
NVx1R2a4(;>
,(UFjs
1ZICLY
Oh@3`$
W#o>Qe#
TB\djD
W=K<th{
/To542
=2mHJya
LGlBpr
(?>K.c
:Uxw61
'<g8o/
:Jq.%`
4vy+@f
Q:JgHB
}f5Vh
":Bvv
Q2Q'-u
]Q!N]
Z6{Iz-ppx
b 1Vp_
HYiS$y
y\K>~
&%44J@,
Jy( Zd
cDmk}W{C
[0>;V7
=;)Qr]
p;1_~/
z&#6>r
`c!J_D,
JUg1z+
zl`996
9-B=rY
apJ8Jj
1(J73e
EX>U9R
V+><z?
2z;s w
;N0f8H]
{)4khS
p_V,&d4
QH"1gZ
GcOs|S
p6] 9p
y@QuuR
Vkl5b*
_SnuY3
S(ndzkm
2$BX,O
Kp:|=a>
b|]K?J
;!M:ay
^Z28Og
|`c)4oPvU
|3bY+ S
6\Pzy4
B&rcx$
E\@0CR
Ko_n^.
|6L*E;n
_~<UBR7
cA $"Ox
[)zM1U
\$T,vn
Of;6d]
)b1[0@
WHC|=)
&-Ur:S
B}7V!F
reD63
#wsPq_
]IG9w"
p;rgk|
j%Sv0r
JJ57/g
yFU>oo
@QWHDI
eg|$Tg
9\^?gJ
=1:~G
Y33d@/
*Ci4NzC
Jj<\.rp
zb!my:O
HQAtVm
g=L\sX
)/gO';BM
VuG'o- $=Q=
?rHIKZk0
FN]-[9
*8rcE*
@MI^$>
&R1,7*!2
<ZA~hQ
iEC8B4
UW>~5a
EI9fS1{?
5Snu\d
1#k-"4
_e67>
hVo>O?
S/F9$8
/p>$K-
[aN\NL
XW5eC3
vSmV_ fk
^hOD"{
O~^V/aPe
\7Kj;n
|"}mz}
O8vN46$AM~q
(&xqPw
wgIT(^
k&$WH(
O~8r+M&
g++a(B
)AALc"t
yT6D#n
_|~Kmr
36@meS
GwnT')q
't.NGN
j4/eSPL
VfzQCE
=jO}/i
/$6_GW
/qyU@3z!
[b_h?J
EeQZJ]
j!WXt9u
Ezo;Xy
Pc^DfRYE
eY&bN>
;WV1)] l0
0Xq5N
E84NUcu
wmD]Bq
\wIiFc
$tmtV
9P@~Jf
-_og[#
_,Q]_Sb
zv.g(i
e-_^hY
+*-Q,w
TDfV``
QQSVWd
0WWWWW
0WWWWW
jXhhuJ
HHtXHHt
>If90t
_VVVVV
^WWWWW
HtHu4j
s[S;7|G;w
tR99u2
F\=0LJ
tehpaH
0SSSSS
>=Yt1j
jTh`yJ
j@j ^V
0A@@Ju
^SSSSS
j"^SSSSS
tM<it-<ot)<ut%<xt!<Xt
<dty<itu<otq<utm<xti<Xte
HIf98t
HHtYHHt
URPQQh
0SSSSS
_VVVVV
;t$,v-
UQPXY]Y[
HHt*HHt
<0|<9
tK<_t<<$t8<<t4<>t0<-t,<a|
<z~$<A|
<0|O<9
tU<A|B<P
tY<@tO<Zt
tQh<SJ
t\<@tXj'
Du h<VJ
NtFNt#NuV
t.<@t5V
TtUHtKHtAHt
0t-HHt
u+h XJ
jdhP{J
jdhp{J
t!hXXJ
t!hLXJ
AtIHt0Hu
_VVVVV
_VVVVV
0SSSSS
0SSSSS
GWhtYJ
t"SS9]
FVhtYJ
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
.;1s(N
HHt4HHt
Ht\Ht,
teHtFHt&Hu
ty<%tA
PPPPPPPP
PPPPPPPP
<+t(<-t$:
+t HHt
u,VVWV
t VV9u
t+WWVPV
^SSSSS
^SSSSS
j,h8}J
>:u8FV
VVVVVQRSSj
^SSSSS
^SSSSS
0SSSSS
^SSSSS
^WWWWW
0SSSSS
8VVVVV
bad allocation
ualProtect
vector<T> too long
bad allocation
string too long
invalid string position
invalid string argument
Unknown exception
(null)
`h````
xpxxxx
GAIsProcessorFeaturePresent
KERNEL32
bad exception
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
{flat}
`non-type-template-parameter
unsigned
short
<ellipsis>
,<ellipsis>
throw(
`template-parameter
cli::pin_ptr<
cli::array<
`anonymous namespace'
generic-type-
template-parameter-
`unknown ecsu'
union
struct
class
coclass
cointerface
extern "C"
[thunk]:
public:
protected:
private:
virtual
static
`template static data member destructor helper'
`template static data member constructor helper'
`local static destructor helper'
`adjustor{
`vtordisp{
`vtordispex{
const
volatile
volatile
volatile
signed
double
UNKNOWN
__int128
wchar_t
__int64
__int16
__int32
__int8
__w64
SystemFunction036
ADVAPI32.DLL
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
1#QNAN
1#SNAN
CONIN$
CONOUT$
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
C:\kocurok_letivuhodenoyugefaji\bari ruzidofixusucewi3.pdb
do.pdb
CreateJobObjectA
GetProcessPriorityBoost
WriteConsoleW
GetSystemPowerStatus
DeleteVolumeMountPointW
GetDefaultCommConfigW
CreateMutexW
GetStdHandle
InterlockedDecrement
SetSystemTimeAdjustment
FileTimeToSystemTime
GetNamedPipeHandleStateW
CallNamedPipeW
EnumResourceNamesW
BuildCommDCBAndTimeoutsA
EnterCriticalSection
DebugSetProcessKillOnExit
EnumTimeFormatsW
TlsSetValue
GetACP
WriteFile
GetCurrentActCtx
ReleaseActCtx
AddRefActCtx
GetHandleInformation
OpenFile
VerifyVersionInfoA
GetVersionExA
FreeLibrary
LoadLibraryExW
GetComputerNameA
CommConfigDialogA
VirtualProtect
lstrcatA
LoadLibraryW
LocalAlloc
SetEndOfFile
CancelWaitableTimer
GetCurrentDirectoryW
GetCommMask
HeapFree
RaiseException
GetBinaryTypeA
LocalSize
SetConsoleMode
GetLargestConsoleWindowSize
WriteConsoleInputW
OpenMutexW
SetThreadContext
AddAtomW
FindVolumeMountPointClose
GetSystemTime
GetCommandLineA
SetLocalTime
GetLastError
GetSystemTimeAsFileTime
DisconnectNamedPipe
SetConsoleCursorInfo
TerminateThread
GetFileAttributesW
SetLastError
lstrlenA
KERNEL32.dll
GetComboBoxInfo
USER32.dll
ClearEventLogW
ADVAPI32.dll
DeleteFileA
RtlUnwind
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetStartupInfoA
HeapAlloc
LeaveCriticalSection
GetProcAddress
GetModuleHandleA
GetModuleHandleW
TlsGetValue
TlsAlloc
TlsFree
InterlockedIncrement
GetCurrentThreadId
GetCurrentThread
ExitProcess
GetModuleFileNameA
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
SetHandleCount
GetFileType
DeleteCriticalSection
HeapCreate
HeapDestroy
VirtualFree
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
SetFilePointer
GetConsoleCP
GetConsoleMode
GetCPInfo
GetOEMCP
IsValidCodePage
FatalAppExitA
VirtualAlloc
HeapReAlloc
HeapSize
SetConsoleCtrlHandler
InterlockedExchange
LoadLibraryA
InitializeCriticalSectionAndSpinCount
SetStdHandle
WriteConsoleA
GetConsoleOutputCP
MultiByteToWideChar
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
GetTimeFormatA
GetDateFormatA
GetUserDefaultLCID
GetLocaleInfoA
EnumSystemLocalesA
IsValidLocale
FlushFileBuffers
GetLocaleInfoW
CreateFileA
CloseHandle
GetTimeZoneInformation
CompareStringA
CompareStringW
SetEnvironmentVariableA
bado.exe
_lifan@8
.?AVlength_error@std@@
.?AVlogic_error@std@@
.?AVexception@std@@
.?AVbad_alloc@std@@
.?AVinvalid_argument@std@@
.?AVout_of_range@std@@
.?AVtype_info@@
.?AVbad_cast@std@@
.?AVbad_typeid@std@@
.?AV__non_rtti_object@std@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
Yuvese vikalehacezuyi. Cenaxon yozopowicu telodozoweduse. Locusofeja bibuke gidihohowokucen yavejibogekoxif. Vikekodav bucide cicanoso. Voniga gevefizewavuh fujibonigaji hozasahi jodomapudi. Sedul wiloja kuhuxan yuwuros perokaxus. Nafefedizihi zeyiv cebakepahovilo vuritex citugicenu. Gam. Cepuxi lixiz cuxay. Sumufi vuducomivam. Cucase tiyu meturenib. Putus jicudifucifik sagevixezerina. Zagafow cer. Lubiwojalelez gefasacolog josacupimeyipes xove vowexiyokaho. Danawagade xoy dor pobu. Zocuhuruyu cer kihaki muselove pomo. Zasomiduyavamu zanimiruhibowet devirazopapi bayewa. Pepazuhefuw jaxozixa. Megige xihusa. Yafefeda hurogudaju tuhuwexumabe toba cudokitasoha. Deyeyonadu lurezen pinure kihiwipoyekejom. Pegi vokofaritoy gudi. Ragakih. Karo petewosox nukiwis sedumelamava wik. Dazevavapero gukebupanata wiwu hivepadu. Yicehomohonu bigaken zuhisofarew xategexezafare siru. Ciladamogemip lon. Sogacuyi wobabuzeze volamedevipome rijec fusebi. Xufen vokumelayiyide huxagakulo zehayesupusox vipapu. Fetopuguyuka. Bebuyekuxiv
Humawer cejekatab filuxa gofohutuseh pejajo. Nevaririfudi hiwehemi faga. Juziceyakafivif jekisix. Vemayatopoxi zelevo putubeboped. Tivilicehuyimu. Kuteziha tiyonaci vixocucejitiy ferupeyu. Kav. Tixa ferize kojon. Ratofejonase mezi wepuv moyulus husarusamoyowic. Lemezo masesug. Viya videfe. Devucemeg cenamifo. Tibinomadigoxis soyitad fopayeduhe zizonewawukuz xog. Kelifujukikita. Ligibukobeg. Kogebel fazohim yereloxunaxa. Tehibajikuf jeriyerize tazipahud yivugigeforiwoh kara. Sekepebico zefesotaxehan josibatebu. Bowosexa nixawobez. Dulikapijik yomuli cige. Huwedofuxogizar hamuhunepoti ciy. Koweyecavuhixom. Rodiwohudo dida mipimacenixibo nujizovibona. Jihazexikusa licesiguxixo tedin ledexusila. Hutoku meruvosofuj. Hupaxebe yitikef. Yodeja feyokozi voxufojeb gugehisehiwu yux. Zeketibix rihac zutu. Xebogo yipawonucakoruw weririwik cegico. Jijut ganipegukalip wukewidotoheju nojekok loruyedegomi. Bemujayoxafe raw wenegafe fanikigisobegur rilupupekoci. Nad. Mecahezizulo vovuwih wolelabusotu xigur dadutiwir. Kilinoreg
Vavaha. Lukapoveyiwe meyogitof. Dofubikurad. Gerefoye tuwenufutaz. Mepoxayogiwer. Beyice rifujowuzigo mejowazigesufu pelujixuxiveha. Lirasoxenuh cuyunaxosox. Hiponibab. Yijitewu ludekezanagikij huvanovozaguri. Dexoxacati wov goci munafanizagimo mujuna. Tocibovulolohi xobefihiguc. Gatakuwudenako nefeda cecehumizi bozise. Kavaxafonera. Lizabetow mopuxixe suwip jekukowu. Letipurusu yulojadisuvur dahecome pokumawux. Raj gabocututerilav senihupucof tosuvopacojipoy cabuwacagujimih. Sakuyex zumaxoxumo colovurazekos juwoxibalufi. Yoseyimiru. Rakanowutu lozojupijo dicuni hop sino. Dejalepogadegix lemonamuj mixufowu. Vihedediyovin pabedavozohor zexojosovuw sibecumec. Vesudisohube. Bojuyisag pohucuso. Homacobiw lonez. Woralaziletepo hokonowugo nihilido jehi. Gemuxiciyepav. Dapowovigokuf. Joxoxakafim libotelu hiv jajopapucu miz. Vatuleg mebu falocafetufemaj loxukunusigut nodotojujuc. Wag zuratogu laxanuy katoc. Nilokavi sutuhofebayi. Nipajekugexumo sicunog. Wumexa. Xilikeve mikogesTejato dakikized. Lopemen tuleyiwedomaci
Jjjjjjjj
Jjjjjjjj
Jjjjjj
kernel32.dll
sekuheniwikahedesimemacovoc
H(null)
KERNEL32.DLL
mscoree.dll
((((( H
h(((( H
H
ZUMIRUYOHOMUKAKUWAVATIVI
HIDAMEVOPUGER
AFX_DIALOG_LAYOUT(
VS_VERSION_INFO
StringFileInfo
041904E6
FileVerus
1.0.2.18
ProductVersys
1.6.28.29
VarFileInfo
Translations
-Vege rucuv kumumijisip rufatidezaluxo yilusot
Luliro sivakapisopu^Junazezak canogowaraxu wos marayawihi xebagakovi leduhinoc vuraficuf jidogoxugegijap bubupuvot,Bibay ciyasetilo bidojafamiseda nubaxidedecu
Gisicopayitivot
Gazugasuzola
KolapafezuforerEFameraxejuhuh pac xikoh zakaparese xaxediga posovevid nibix dezafuceh.Gimuxacowib hogarow widubekikabohad nawafokeni
Xix xibegemuhenFJoxixebivoyugof volefejozirep mufe hoboyenoxiju wojesemuna mojo capiri
dMahapohiv tasitamevew deyogamuvizo jokepirorobomab bihazizapa xawizo hikirelujikamus lepalakevugitor
Mit bumogabez xic
Bapajinomuv xikogubozazefod8Giciweferi rak homeku yenixabiris loyilof guv hujaputeho
QZirezub noziginox xinecuyikal vowojoyop juxahanehewe wufikipaxah kumaye mawifutixVDesuwa winipuji tuwagura hos rideyogesi fevanodawit fenupahimut boberupobiv vix kuyiru
Viyu gufugun natowotatotuXKuxipiyitekit rahayepodohu zayegu haperonorisey vuxajebucavarim gebeseyupi jesecuror yar
Kukiwalujez
Kizidetakogir
EDewacoj wogujodopuc kesul xozaci julayolix nifepevune mecinitiranunaf
"Lokadodezusuge vonimenodotasaz pan"Lufobavohu zesufibeki yicihosasujeLGetumik vanozecub ceru panogozor hob dacohivozalofo bahig haderemohuw siwisa
Kofewonufu womanul zilononakuw
Antivirus Signature
Bkav W32.AIDetect.malware1
Elastic malicious (high confidence)
MicroWorld-eScan Clean
FireEye Generic.mg.28babff4bf714869
CAT-QuickHeal Clean
McAfee Packed-GDK!28BABFF4BF71
Cylance Unsafe
Zillya Clean
AegisLab Trojan.Win32.Malicious.4!c
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
BitDefender Clean
K7GW Clean
K7AntiVirus Clean
Arcabit Clean
Baidu Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/GenKryptik.FEDH
APEX Malicious
Avast Win32:TrojanX-gen [Trj]
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Malware.Obscure/Heur!1.9E03 (CLOUD)
Ad-Aware Clean
TACHYON Clean
Sophos Mal/Generic-R + Troj/Androm-TY
Comodo Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Generic.bc
CMC Clean
Emsisoft Clean
SentinelOne Static AI - Malicious PE
Jiangmin Clean
MaxSecure Clean
Avira Clean
Kingsoft Clean
Gridinsoft Clean
Microsoft Trojan:Win32/Wacatac.B!ml
SUPERAntiSpyware Clean
ZoneAlarm Clean
GData Clean
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
BitDefenderTheta Gen:NN.ZexaF.34678.SCW@aqppZDcG
ALYac Clean
MAX Clean
VBA32 Clean
Malwarebytes Trojan.MalPack.GS
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Clean
eGambit Clean
Fortinet Clean
Webroot Clean
AVG Win32:TrojanX-gen [Trj]
Paloalto generic.ml
Qihoo-360 Clean
No IRMA results available.