Static | ZeroBOX

PE Compile Time

2020-08-28 15:37:35

PDB Path

C:\mabozod.pdb

PE Imphash

a06df199bc5c29ff1f7c13754059d5f1

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0002f9e6 0x0002fa00 7.78613843379
.data 0x00031000 0x0046c3f8 0x00004e00 0.82582801745
.rsrc 0x0049e000 0x0001fb78 0x0001fc00 6.46963594837

Resources

Name Offset Size Language Sub-language File type
SEJUWUSIZABUTUXAKAYUPIGIGEYOKAHA 0x004bb430 0x000008bd LANG_SERBIAN SUBLANG_DEFAULT ASCII text, with very long lines, with no line terminators
RT_CURSOR 0x004bcd28 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x004bcd28 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x004bcd28 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x004baf50 0x00000468 LANG_SERBIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x004bda28 0x0000014a LANG_SERBIAN SUBLANG_DEFAULT data
RT_STRING 0x004bda28 0x0000014a LANG_SERBIAN SUBLANG_DEFAULT data
RT_ACCELERATOR 0x004bbd28 0x00000010 LANG_SERBIAN SUBLANG_DEFAULT data
RT_ACCELERATOR 0x004bbd28 0x00000010 LANG_SERBIAN SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x004bd5d0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x004bd5d0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x004ae358 0x00000068 LANG_SERBIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x004ae358 0x00000068 LANG_SERBIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x004ae358 0x00000068 LANG_SERBIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x004ae358 0x00000068 LANG_SERBIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x004ae358 0x00000068 LANG_SERBIAN SUBLANG_DEFAULT data
RT_VERSION 0x004bd5f8 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x40100c GetConsoleAliasW
0x40101c GetConsoleCP
0x401020 VerifyVersionInfoA
0x401024 WriteConsoleA
0x401028 SetLastError
0x40102c CreateFileW
0x401038 EnumDateFormatsExA
0x40103c GetCurrentProcessId
0x401040 LoadLibraryA
0x401044 IsDebuggerPresent
0x401048 SetConsoleCP
0x40104c FindFirstVolumeW
0x401050 WriteFile
0x401054 BuildCommDCBW
0x401058 VerLanguageNameA
0x40105c AreFileApisANSI
0x401060 WriteProcessMemory
0x401064 SetEvent
0x401068 GetExitCodeThread
0x40106c EndUpdateResourceW
0x401070 GetCPInfo
0x401074 GetLastError
0x401078 UpdateResourceA
0x40107c SetConsoleTitleW
0x401080 SetFilePointer
0x401084 LoadLibraryExA
0x401088 CopyFileW
0x40108c ReadConsoleA
0x401090 ActivateActCtx
0x401094 AddRefActCtx
0x401098 HeapLock
0x40109c CreateActCtxW
0x4010a0 ReadConsoleOutputA
0x4010a4 GetProcessHeaps
0x4010ac GetUserDefaultLCID
0x4010b4 HeapAlloc
0x4010b8 UnmapViewOfFile
0x4010bc GetAtomNameA
0x4010c0 HeapSize
0x4010c4 GetGeoInfoW
0x4010c8 GetCurrentProcess
0x4010cc VirtualProtect
0x4010d0 GetProcAddress
0x4010d4 GetModuleHandleA
0x4010d8 CreateThread
0x4010dc GetVersionExW
0x4010e4 WaitForSingleObject
0x4010e8 SetSystemPowerState
0x4010ec VerifyVersionInfoW
0x4010f8 GetMailslotInfo
0x4010fc GetCPInfoExA
0x401108 GetComputerNameW
0x40110c CommConfigDialogW
0x401110 GetConsoleAliasA
0x401114 GetConsoleWindow
0x40111c GetDiskFreeSpaceA
0x401120 CreateFileA
0x401138 Sleep
0x401148 RaiseException
0x40114c RtlUnwind
0x401158 GetCommandLineA
0x40115c GetStartupInfoA
0x401160 HeapFree
0x401164 TerminateProcess
0x401168 GetModuleHandleW
0x40116c TlsGetValue
0x401170 TlsAlloc
0x401174 TlsSetValue
0x401178 TlsFree
0x40117c GetCurrentThreadId
0x401180 VirtualFree
0x401184 VirtualAlloc
0x401188 HeapReAlloc
0x40118c HeapCreate
0x401190 ExitProcess
0x401194 GetStdHandle
0x401198 GetModuleFileNameA
0x40119c SetHandleCount
0x4011a0 GetFileType
0x4011b0 WideCharToMultiByte
0x4011bc GetTickCount
0x4011c0 GetACP
0x4011c4 GetOEMCP
0x4011c8 IsValidCodePage
0x4011cc GetLocaleInfoA
0x4011d0 GetStringTypeA
0x4011d4 MultiByteToWideChar
0x4011d8 GetStringTypeW
0x4011e0 SetStdHandle
0x4011e4 LCMapStringA
0x4011e8 LCMapStringW
0x4011ec GetConsoleMode
0x4011f0 FlushFileBuffers
0x4011f4 CloseHandle
0x4011f8 GetConsoleOutputCP
0x4011fc WriteConsoleW
Library USER32.dll:
0x401208 GetAltTabInfoA
Library ADVAPI32.dll:
0x401000 AdjustTokenGroups
0x401004 BackupEventLogA

!This program cannot be run in DOS mode.
`.data
bad allocation
zajoxabelasagurekafonixetopedicokepey
cahenokejocijugujinugacokimugizirafehewisamiwetutonuwacogohatudo
Zaneji gexev boti dutuhunaw
fagokehiwaxugetifakejopufofevobosaroceluvuwagajisozasudifunikoseyeyujonu
kupayavuguxahisezimicomuxadadaxulehumuwowererikirageseyimupozoxiwove
gimobagahawalepacinixegijugomuligewizohiromohiwajevokamijohazozucedutuyikupoh
kernel32.dll
LocalAlloc
VirtualProtect
fiveyuditobozomaduhotunesuwidij
Zacujacufawuku
Tilihic cogolo
bad allocation
string too long
invalid string position
Unknown exception
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
bad exception
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
CONOUT$
C:\mabozod.pdb
M?&RG!
,W8<>e
`iE9yGK
Ui^mQ.
ig~~Vz
=oJbi
*1|GM
+G(R/1
\k_78G
mi~.aV
B`E4~'A0|
Hc7kc'_T
fBy4[Y
p}%*9{
\3GCbu
1^<]q'
2*R8'L
)c&sk
'4K,aT&
#LoSEp
g~V %+N
=3?[x&
y?a8EBq
zJ-_5n
G5X6P>
BN!V@8|`
:geEl
S,C9.D
k*pAhi
\p>v.6
V]^UH;
Wqh=dl
$!x4v)6
G0Nsz=ea
_fEKbs&
qB?q/Pa
@@4zA%
Z&?h {
-ppW"1
odJwu6
'VfSw"
N;9H:9
p(@_|&=
*5-*NS
+wxzO(
\bjl2('V
d\Ihks,E
So7R89
VMwY`l
WrM{{W
7tx!F})
YQ)4vM1
V>u[GS
0E5{Fy
j-,h`}
z?[<x/
e{vK$#W
{Y_Xc%
#|F79.
ZW:g~)<
, LaV
xdr]gC
+I~D,<D
=Mq/U
@ Eq ~
'^lhMz>
k-ZwpM
% Uwq
zZ9qP7
j\}!mx+
]aYD]W
:`&2-$p
5-yqd@
sMP\,g
J@Kf5h0N
g~z=.Hf
'G,U6EP
%Ht6L*
y0ocp
#,@vFo
D'+70[s"
AO2ig*<
Is!rqW
ENv.Y'j
<<Q:)4
u{xBjue
p1{Fkb
=7+;k9|6kx
//vKq
!)YF/,
{.gQ\V
eo|)=+
h]0TWS
".5!^(.UF
ff3jH#
`f.oEz
i!k,G8
R._isDV
y]?6Z
*Y8NugE2q
:_K]T;
YGSe}c
Tl<5\'G
xHf92c
M0yo'2E
SS>(Z
KVM^1x
?YiAO
O,=3&r
5D.;V-
i8!+k=
2i/9b9=
0*0*lu
B\ch>9
XE~Y3J
Q}fV)c
.IE1Yk
D[d|gI
Lb<Y]\
mRgB"[
NT<.ILM:
Q9;G9$[J
SaOXX_
bt:#tU
Iy|&8K
~HL(ql
.zz}4#
DEM%Wn%
MTAMWfQ
t0$t7I
IGViL5:
whGa~0
z~oV+(
LA}{%z
z=sssGUo
?b+j,z$#h
8bgA3s]8
yn%]w0#
g$Ih!k
`!1x3d[
+q/9d{
,'8y)z?
qDXp9
9|v\`m
~mAE0^
{bnk_WF
S24sx?
OQ`^/m
t[`FKb
lm9W|+2
~wL1A9vl
S,r8Njd
9\-Jdh
],K5{C
VLzB@z
b Lv[w
3!\\QPW
?0'N\f_
N4j rml
Upf/9d
PmRgiq
|k9Gd-Emr
~~`$YI
dt#G4m
zzeQP@P
81lR58
{WOy3/
8JDSp
p)}\x4
K\>rhSm
$,9>IP
eh"W+w/[.
G$p\TA
8jwsCeM
14(j1+
:PwsLZ<
Cz<+LU
7V6"3
Tu#-&1
m|VW4~
j!k)[>
nl&;T>l
i@u<#v
7y!EYX
ZF?! Z
+oaaX9t
V9d&O
U90yrDB
k#Q)^Hu
O[eLHrZ?
=}m?$M
AbZV:wn\Jy
+[k}N^
Y,Z\.U
~17OiI
~!jmTQ
5}:.`&
!rGj*)g
TGc`{K
8\,)3Ph
CUv$y_@
NHt/|t7
.Pc/&b
~8Ra@IHS.
,,,m-$
CtKs'j
1Y"9w
rAb#\5
95?;@G
\2`~3j_"
wZVW1M
CGncXSOgJ;N\D
BW1f$F
N(s,kf6
XY[6<?
K0Xeg/X
S;nuyd
-q%ddSK
ngHuC.
sZ=pn%H
Bqm~j
{Rz1B1
R)~HnS
"4?G^+h
nOw)7@
"DUfH
Rc108((o~
>dQGzwc
uEX9tnu~
&qh'F5=
g:5yA`
t<%MK^U
,EN6i
)IZ(Xp*
VT+j~O
'/Z=W{
jZelk6
6mT.> H_
L:3j^w
AZ25Rd
BCww+9
bw6/'$
{<$L:x
B<z<q*
Wp/U2k^
~eSfwRHsG
D2'$0z
b^)G/<
]g#TvK
!8Jfax
{\y=kQj
5)cqPs
ZxZD^yq
\Sp\(~H
VVVVVVhP
E@bcs%
^u(VVV
PSSSSS
0WWWWW
QQSVWd
0WWWWW
to=hFC
0SSSSS
HtHu4j
s[S;7|G;w
tR99u2
j@j ^V
>=Yt1j
0A@@Ju
0SSSSS
PPPPPPPP
0SSSSS
PPPPPPPP
URPQQhp
;t$,v-
UQPXY]Y[
t"SS9]
t+WWVPV
EnterCriticalSection
GetConsoleAliasesLengthA
CreateActCtxW
GetConsoleAliasW
InterlockedPopEntrySList
GetConsoleDisplayMode
CreateConsoleScreenBuffer
GetConsoleCP
VerifyVersionInfoA
WriteConsoleA
SetLastError
CreateFileW
WritePrivateProfileSectionA
GetPrivateProfileSectionW
EnumDateFormatsExA
GetCurrentProcessId
LoadLibraryA
IsDebuggerPresent
SetConsoleCP
FindFirstVolumeW
WriteFile
BuildCommDCBW
VerLanguageNameA
AreFileApisANSI
WriteProcessMemory
SetEvent
GetExitCodeThread
EndUpdateResourceW
GetCPInfo
GetLastError
UpdateResourceA
SetConsoleTitleW
SetFilePointer
LoadLibraryExA
CopyFileW
ReadConsoleA
ActivateActCtx
AddRefActCtx
HeapLock
DnsHostnameToComputerNameA
ReadConsoleOutputA
GetProcessHeaps
GetSystemWindowsDirectoryW
GetUserDefaultLCID
BuildCommDCBAndTimeoutsA
HeapAlloc
UnmapViewOfFile
GetAtomNameA
HeapSize
GetGeoInfoW
GetCurrentProcess
VirtualProtect
GetProcAddress
GetModuleHandleA
CreateThread
GetVersionExW
SetProcessAffinityMask
WaitForSingleObject
SetSystemPowerState
VerifyVersionInfoW
WriteConsoleOutputCharacterW
SetTimeZoneInformation
GetMailslotInfo
GetCPInfoExA
SetEnvironmentVariableA
GetFileAttributesExA
GetComputerNameW
CommConfigDialogW
GetConsoleAliasA
GetConsoleWindow
GetSystemTimeAsFileTime
GetDiskFreeSpaceA
KERNEL32.dll
GetAltTabInfoA
RealChildWindowFromPoint
USER32.dll
AdjustTokenGroups
BackupEventLogA
ADVAPI32.dll
InterlockedIncrement
InterlockedDecrement
InitializeCriticalSection
DeleteCriticalSection
LeaveCriticalSection
RaiseException
RtlUnwind
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetCommandLineA
GetStartupInfoA
HeapFree
TerminateProcess
GetModuleHandleW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
GetCurrentThreadId
VirtualFree
VirtualAlloc
HeapReAlloc
HeapCreate
ExitProcess
GetStdHandle
GetModuleFileNameA
SetHandleCount
GetFileType
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
QueryPerformanceCounter
GetTickCount
GetACP
GetOEMCP
IsValidCodePage
GetLocaleInfoA
GetStringTypeA
MultiByteToWideChar
GetStringTypeW
InitializeCriticalSectionAndSpinCount
SetStdHandle
LCMapStringA
LCMapStringW
GetConsoleMode
FlushFileBuffers
CloseHandle
GetConsoleOutputCP
WriteConsoleW
CreateFileA
.?AVbad_alloc@std@@
.?AVexception@std@@
.?AV?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_stringbuf@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@
.?AVfacet@locale@std@@
.?AV_Locimp@locale@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
zf$zzzh
vx<NNx
l`/`eT[
33333333333333333333333333333333333`
333333333336j
3333333333
333333333
d33333333331
3333333333333
k3333333333333
3333333333333T
333333333
}%333333333
333333333e
333333333
333333333333
nY33333333333333
33333333
/FB|n=5
0KRkF))
AZY~~lx
KJf2+4|M
F9bzip
SOup@8
$Ues>01
nnnnnnnnnnnnnnnnnnnnnnnnnnn8
|nnnnnnnnnnnn
nnnnnnnnnnn
nnnnnnnnnnD
nnnnnnnnn
Innnnnn
gnnnnnnn
,ja"nnnnnnn
nnnnnnnn
nnnnnnnn
nnnnnnnnnnnn']X
nnnnnnnnnnn
nnnnnnnnnnnn
/nnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnn
~[W%~Sh$}Rs
)~my:~}t[
ysy}}t
*,*Kq!
333333333333333333
333333
3333333
n3333333
33333333
3333333333
333333333333333333333333333333333333333
d9Ac$+I
>kr,&}
1ZsP x
Oqy*CkH
'2a9q
>k{8v
B5awn)W}t9e
ET[[[[[[[[[[[[[[[[[[[[[TE
```````````````````````
#;TTTT;#
+TT|||||{
C`````
C`````
C`````
x[[kkk
C`````
`````[[x
CCCCCCCCCCCCCCCCCCCCC
C`````
C`````
C`````
`````[
C`````
[`````
;T````
CCCCCCCCCCCCCCCCC;
vvvvvvvvvvvvvvvvxA
E`````
``````x`
ET[[[[[[[[[[[[[[[[[[[[BTE
ccccccccccccccccc
K5555K
K!%%%%%%KK
%$$$$%$%
cccccccccccccccccc
33333333333
333333333
33333333
33333333
33333333
33333333
33333333
33333333
33333333
33333333
33333333
33333333
33333333
kkkkkkkkkk
33333333
33333333
33333333
33333333
33333333
kkkkkkkkkk
33333333
333333333
333333333333333333333333333333333333333333333333333333333333333333333333333333333
666666666
6/////////6
6/////////6
666666666
ztzawxz
tqpppur
y~{sy|x
xrz`vus
![^Xt}
0D3"XaZ{}
``````
T(xxxx
MeYOy#
UUUUUUUUUUU
\\\\\\\\\\\\\\\\\\\\\\\\
+++|||
+++|||
+++||||
0000004444{{{{
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
JJJJJJJJJJJJJJ
J*J*********
J*J*J*J*******
JJ*J*************
JJ*J*J*J******
JJJ*J*J**J********
JJ*JJ*J
J********
JJJJ*J*
******
JJJJJJ
JJJ*J*J$r
&*****
JJJJJJJ
JJJJJJB
C{Mk]W
&*****J*
****JJ
&****J
aKa5K
sssRRs
||||||
3333``
66`````
333333333333333333333
333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333
gggggggggggg
g...XXXXX
g...X.XX
g....XXXXXX
g8....6:XXXXg
g888..:n
g8888.n
g88888.n
g8888888tn
L~kJ~
3=[O$M
Hujenimupukifaz johiyaxemeh. Fiz. Jiyopetebecaso. Vamevepodixidog lifocivigegew tib. Majonivuj fiwewuko sokomoherefomok. Selabiciva leju dujenefel daceburupifazep. Haxedimex dapawejazosil relib jacupikow. Zocisoz. Xatipe. Cahimoredigi subukakaro xoniji. Saw dohedac buv xohicegekomune. Texedagevafun fomis. Hecawega mipuhuxasuwugox. Xenufe zabolebanekiz wisemidipexari. Medatukafivo. Pix yaxokeveco paco fipologoduteh. Xofo. Kanepeti. Howof juwa pem bawofemefi. Roh velasicoyenuyuj bidevegulekuvif. Pitod nubifimego jadewenuboze xezayisagi zuji. Bubuyixafuva. Gesadigarelogux. Sujuhe yucogubaxod. Tiwitoxufozoh hagur guv jepisaxuhatu. Kix wiyugo ginadicubur vitopamub. Ludi xur. Pojihepo. Wobogonujovuwik rinozorohugoyu fupuyofod. Licafevijiyuku gejirecoho. Lom yuse sakemukudux geximihube rosi. Kekujodo yoxoxojotuziweg. Rofi xameyazohew kerifopoc. Duroxadoyob. Bunodom. Yolopuvakolor leko lerusewofoceg. Ceke topofodewil. Nihoconikefig gayebiwubokijeg fuzirakabutenu. Mijewulebocap kilob. Wufa zoduluyizuxe. Haxuso wuxa te
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

lafolawilugehazocinogohigugalug
tukonezihasaniwovadesicacugozakorekuxefolesojihoturegosojinazusisep
wrojadalego
kozoveyewelujurokonawuwo
Sepiroxivomozab nofikelul sezi
KERNEL32.DLL
mscoree.dll
((((( H
h(((( H
H
SEJUWUSIZABUTUXAKAYUPIGIGEYOKAHA
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
081564b6
InternalName
coggmuofoke.exi
Copyright
Copyrighz (C) 2020, wodkaguds
ProductVersion
97.78.38.10
VarFileInfo
Translation
Mudefeho voz_Disaponefujadiw tujanifemorez liwayiwuri gawul hor lipuzepasabemev poyaraf firom fatire duyojil0Cenivuxodiriy ciwepi delidic vaboxeruxuc yupereg1Yezuluzemu tijemefedojalib tewodi rolevucagudoyas*Vekeyot dukopizac wafebehef zinisudayemuga5Wosuy pejosejahe fed yuyatasixikete mice zobuyujicena
SRosadesapulehov barok kexusiyo nedurotexekocir sikafocoyurop gow motem xamipup lobiBDilosecac mar tem nup yarusiyoxiwugiw burozifenohak vevevexebinipa
Antivirus Signature
Bkav W32.AIDetect.malware2
Lionic Trojan.Win32.Convagent.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Clean
FireEye Generic.mg.f3cf8f5fb6694a2f
CAT-QuickHeal Clean
Qihoo-360 Win32/Heur.Generic.HwoCzicA
McAfee Artemis!F3CF8F5FB669
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Riskware ( 0049f6ae1 )
BitDefender Clean
K7GW Riskware ( 0049f6ae1 )
Cybereason Clean
Baidu Clean
Cyren Clean
Symantec Packed.Generic.525
ESET-NOD32 a variant of Win32/GenKryptik.FHWZ
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Ransom:Win32/GandCrab.b8856b7c
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.D82C (CLASSIC)
Ad-Aware Clean
TACHYON Clean
Emsisoft Clean
Comodo Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Generic.fc
CMC Clean
Sophos Mal/Generic-S
SentinelOne Static AI - Malicious PE
GData Clean
Jiangmin Clean
Webroot W32.Trojan.Gen
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Azorult!ml
Cynet Clean
AhnLab-V3 Clean
Acronis suspicious
BitDefenderTheta Clean
ALYac Clean
MAX Clean
VBA32 Clean
Malwarebytes Trojan.MalPack.GS
Panda Trj/Genetic.gen
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Trojan-Spy.MSIL.Agent
eGambit Clean
Fortinet W32/GenKryptik.ERHN!tr
AVG Win32:DropperX-gen [Drp]
Avast Win32:DropperX-gen [Drp]
CrowdStrike win/malicious_confidence_90% (W)
MaxSecure Clean
No IRMA results available.