Static | ZeroBOX

PE Compile Time

2020-08-31 13:26:53

PDB Path

C:\hovokopuzarax_82\rucibonariduwi-pisugopu\sezo\55.pdb

PE Imphash

2f3a2cbde47abc5415a01609e3c61f2d

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000290c0 0x00029200 6.3431614322
.rdata 0x0002b000 0x0000cde0 0x0000ce00 5.47952700704
.data 0x00038000 0x00028f68 0x00011400 7.73998390823
.rsrc 0x00061000 0x00006420 0x00006600 5.61781023007
.reloc 0x00068000 0x00003e1e 0x00004000 4.2339138649

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x00066d30 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00066d30 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00066d30 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00066d30 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00066d30 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00066d30 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00066d30 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ACCELERATOR 0x00067200 0x00000080 LANG_UKRAINIAN SUBLANG_DEFAULT data
RT_ACCELERATOR 0x00067200 0x00000080 LANG_UKRAINIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x00067198 0x00000068 LANG_TELUGU SUBLANG_DEFAULT data
RT_VERSION 0x00067318 0x00000108 LANG_UKRAINIAN SUBLANG_DEFAULT PDP-11 pure executable not stripped

Imports

Library KERNEL32.dll:
0x42b004 GetComputerNameA
0x42b008 GetFileSize
0x42b00c SetFilePointer
0x42b010 lstrlenA
0x42b01c CommConfigDialogA
0x42b024 FreeLibrary
0x42b030 ZombifyActCtx
0x42b034 GlobalLock
0x42b038 GetProfileSectionA
0x42b044 GetTickCount
0x42b048 GetCommConfig
0x42b04c LocalFlags
0x42b058 SetCommState
0x42b060 TlsSetValue
0x42b068 FindResourceExA
0x42b06c GlobalAlloc
0x42b070 LoadLibraryW
0x42b074 _hread
0x42b078 GetCalendarInfoA
0x42b088 InitAtomTable
0x42b08c GetBinaryTypeA
0x42b090 ReadFile
0x42b094 GetBinaryTypeW
0x42b098 SetConsoleTitleA
0x42b09c VirtualUnlock
0x42b0a4 GetStartupInfoA
0x42b0a8 GetStdHandle
0x42b0ac GetCPInfoExW
0x42b0b4 GetComputerNameExW
0x42b0b8 VerLanguageNameA
0x42b0c0 CreateNamedPipeA
0x42b0cc SetComputerNameA
0x42b0d0 GetLocalTime
0x42b0d4 LoadLibraryA
0x42b0d8 CreateSemaphoreW
0x42b0e0 Process32NextW
0x42b0e8 EnumResourceNamesA
0x42b0ec WriteProfileStringW
0x42b0f0 BuildCommDCBA
0x42b0f4 VirtualProtect
0x42b0f8 CompareStringA
0x42b0fc _lopen
0x42b100 FindAtomW
0x42b104 GetVersion
0x42b108 DeleteFileW
0x42b10c UnregisterWaitEx
0x42b114 LCMapStringW
0x42b118 CopyFileExA
0x42b11c AreFileApisANSI
0x42b120 GetLastError
0x42b124 WideCharToMultiByte
0x42b128 GetCommandLineA
0x42b12c HeapValidate
0x42b130 IsBadReadPtr
0x42b134 RaiseException
0x42b138 TerminateProcess
0x42b13c GetCurrentProcess
0x42b148 IsDebuggerPresent
0x42b14c GetModuleFileNameW
0x42b150 GetACP
0x42b154 GetOEMCP
0x42b158 GetCPInfo
0x42b15c IsValidCodePage
0x42b160 GetProcAddress
0x42b164 TlsGetValue
0x42b168 GetModuleHandleW
0x42b16c TlsAlloc
0x42b170 GetCurrentThreadId
0x42b174 TlsFree
0x42b178 SetLastError
0x42b188 SetHandleCount
0x42b18c GetFileType
0x42b194 GetCurrentProcessId
0x42b19c Sleep
0x42b1a0 ExitProcess
0x42b1a4 GetModuleFileNameA
0x42b1b0 HeapDestroy
0x42b1b4 HeapCreate
0x42b1b8 HeapFree
0x42b1bc VirtualFree
0x42b1c0 WriteFile
0x42b1c4 HeapAlloc
0x42b1c8 HeapSize
0x42b1cc HeapReAlloc
0x42b1d0 VirtualAlloc
0x42b1d4 DebugBreak
0x42b1d8 OutputDebugStringA
0x42b1dc WriteConsoleW
0x42b1e0 OutputDebugStringW
0x42b1e4 RtlUnwind
0x42b1e8 MultiByteToWideChar
0x42b1ec LCMapStringA
0x42b1f0 GetStringTypeA
0x42b1f4 GetStringTypeW
0x42b1f8 GetLocaleInfoA
0x42b1fc GetConsoleCP
0x42b200 GetConsoleMode
0x42b208 FlushFileBuffers
0x42b20c SetStdHandle
0x42b210 WriteConsoleA
0x42b214 GetConsoleOutputCP
0x42b218 CloseHandle
0x42b21c CreateFileA
0x42b220 GetModuleHandleA
Library USER32.dll:
0x42b228 GetMessageTime
0x42b22c GetMenuInfo

!This program cannot be run in DOS mode.
`.rdata
@.data
@.reloc
uZj[hH
PPPPPPPP
PPPPPPPP
URPQQh
;t$,v-
UQPXY]Y[
j0h "C
u#hx*C
jhp+C
u!hh-C
j1hpHC
j1hpHC
bad allocation
Unknown exception
f:\dd\vctools\crt_bld\self_x86\crt\src\onexit.c
Client
Ignore
Normal
Error: memory allocation: bad memory block type.
Invalid allocation size: %Iu bytes.
Client hook allocation failure.
Client hook allocation failure at file %hs line %d.
Error: possible heap corruption at or near 0x%p
The Block at 0x%p was allocated by aligned routines, use _aligned_realloc()
Error: memory allocation: bad memory block type.
Memory allocated at %hs(%d).
Invalid allocation size: %Iu bytes.
Memory allocated at %hs(%d).
Client hook re-allocation failure.
Client hook re-allocation failure at file %hs line %d.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
Memory allocated at %hs(%d).
Client hook free failure.
The Block at 0x%p was allocated by aligned routines, use _aligned_free()
%hs located at 0x%p is %Iu bytes long.
%hs located at 0x%p is %Iu bytes long.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
Memory allocated at %hs(%d).
DAMAGED
_heapchk fails with unknown return value!
_heapchk fails with _HEAPBADPTR.
_heapchk fails with _HEAPBADEND.
_heapchk fails with _HEAPBADNODE.
_heapchk fails with _HEAPBADBEGIN.
Bad memory block found at 0x%p.
Bad memory block found at 0x%p.
Memory allocated at %hs(%d).
Object dump complete.
crt block at 0x%p, subtype %x, %Iu bytes long.
normal block at 0x%p, %Iu bytes long.
client block at 0x%p, subtype %x, %Iu bytes long.
{%ld}
%hs(%d) :
#File Error#(%d) :
Dumping objects ->
Data: <%s> %s
Detected memory leaks!
f:\dd\vctools\crt_bld\self_x86\crt\src\mbctype.c
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
EncodePointer
DecodePointer
f:\dd\vctools\crt_bld\self_x86\crt\src\tidtable.c
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
f:\dd\vctools\crt_bld\self_x86\crt\src\_file.c
f:\dd\vctools\crt_bld\self_x86\crt\src\input.c
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_sftbuf.c
(null)
`h````
xpxxxx
f:\dd\vctools\crt_bld\self_x86\crt\src\mlock.c
f:\dd\vctools\crt_bld\self_x86\crt\src\ioinit.c
CorExitProcess
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdargv.c
f:\dd\vctools\crt_bld\self_x86\crt\src\a_env.c
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library without using a manifest.
This is an unsupported way to load Visual C++ DLLs. You need to modify your application to build with a manifest.
For more information, see the "Visual C++ Libraries as Shared Side-by-Side Assemblies" topic in the product documentation.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
Assertion Failed
Warning
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
HeapQueryInformation
%s(%d) : %s
Assertion failed!
Assertion failed:
, Line
<file unknown>
Second Chance Assertion Failed: File
_CrtDbgReport: String too long or Invalid characters in String
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetUserObjectInformationA
MessageBoxA
USER32.DLL
bad exception
f:\dd\vctools\crt_bld\self_x86\crt\src\convrtcp.c
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
f:\dd\vctools\crt_bld\self_x86\crt\src\read.c
Unknown Runtime Check Error
Stack memory around _alloca was corrupted
A local variable was used before it was initialized
Stack memory was corrupted
A cast to a smaller data type has caused a loss of data. If this was intentional, you should mask the source of the cast with the appropriate bitmask. For example:
char c = (i & 0xFF);
Changing the code in this way will not affect the quality of the resulting optimized code.
The value of ESP was not properly saved across a function call. This is usually a result of calling a function declared with one calling convention with a function pointer declared with a different calling convention.
Stack around the variable '
' was corrupted.
The variable '
' is being used without being initialized.
CONOUT$
MSPDB80.DLL
Stack around _alloca corrupted
Local variable used before initialization
Stack memory corruption
Cast to smaller type causing loss of data
Stack pointer corruption
bad allocation
Hahotibocawi jowicemijez
jonefucomahegalacoyalovojovoyozerolururusigigiwohoxuyoyuropoguficitov
bapuvafetuloveloxucawafebekorenavagasaxilayumoyamexabamaralulotoriponojusiwayuvameweyakigonusowu
Nafijituv vefepivupududil xeg peyubigog zojokabuwagetub
Fohiyufopec linuxejasoga gevunenen bugorilehosin
jorawikusowivazanodamisanunejirupogedubunewokirotuhubepilekihuxulixuvonabecumunufosanubeyizenucahakeped
paguzohugijekaj
racosubewepa
levihufanogisojinasitogatopacaxuhozuwohu
mevaxadulikuguxobizi
jupitoremezevuzaxorisu
fedikohegixumihihavarinigocedujufewowihihoherenoxizigujihehofinibomujedufalonajalisucavijof
tusofihopahasukugiheyigeyumepemajuwatebufijarezajex
dahaxodawuyobekurijawevedope
Fuzagebisog nufa hiyowu
Xobanifim
cupegivajumewurusipehihezenahigupusexuxiy
fitowaxuhakiborikeyekig
jecegeyicibugibupo
GAIsProcessorFeaturePresent
KERNEL32
RUUUUU
?ZEM-'^
?{yK+;
?765@Z
?e')lW
UUUUUU
?333333
?333333
?UUUUUU
?$rxxx
i^^?(>
Y:/(A6>
1#QNAN
1#SNAN
_nextafter
_hypot
RSDSW
C:\hovokopuzarax_82\rucibonariduwi-pisugopu\sezo\55.pdb
GetVolumeNameForVolumeMountPointA
GetComputerNameA
GetFileSize
SetFilePointer
lstrlenA
GetConsoleAliasesLengthW
GetConsoleAliasExesA
CommConfigDialogA
GetConsoleAliasExesLengthA
FreeLibrary
InterlockedIncrement
InterlockedDecrement
ZombifyActCtx
GlobalLock
GetProfileSectionA
GetFileAttributesExA
FreeEnvironmentStringsA
GetTickCount
GetCommConfig
LocalFlags
GetConsoleAliasesLengthA
GetWindowsDirectoryA
SetCommState
SetProcessPriorityBoost
TlsSetValue
GetEnvironmentStrings
FindResourceExA
GlobalAlloc
LoadLibraryW
_hread
GetCalendarInfoA
GetSystemWow64DirectoryW
SetSystemTimeAdjustment
GetSystemWindowsDirectoryA
InitAtomTable
GetBinaryTypeA
ReadFile
GetBinaryTypeW
SetConsoleTitleA
VirtualUnlock
SetCurrentDirectoryA
GetStartupInfoA
GetStdHandle
GetCPInfoExW
GetCurrentDirectoryW
GetComputerNameExW
VerLanguageNameA
SetFirmwareEnvironmentVariableW
CreateNamedPipeA
WriteProfileSectionA
FreeUserPhysicalPages
SetComputerNameA
GetLocalTime
LoadLibraryA
CreateSemaphoreW
SetConsoleCtrlHandler
Process32NextW
CreateIoCompletionPort
EnumResourceNamesA
WriteProfileStringW
BuildCommDCBA
VirtualProtect
CompareStringA
_lopen
FindAtomW
GetVersion
DeleteFileW
UnregisterWaitEx
ReadConsoleOutputCharacterW
LCMapStringW
CopyFileExA
AreFileApisANSI
KERNEL32.dll
GetMessageTime
GetMenuInfo
USER32.dll
GetLastError
WideCharToMultiByte
GetCommandLineA
HeapValidate
IsBadReadPtr
RaiseException
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetModuleFileNameW
GetACP
GetOEMCP
GetCPInfo
IsValidCodePage
GetProcAddress
TlsGetValue
GetModuleHandleW
TlsAlloc
GetCurrentThreadId
TlsFree
SetLastError
EnterCriticalSection
LeaveCriticalSection
DeleteCriticalSection
SetHandleCount
GetFileType
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
ExitProcess
GetModuleFileNameA
FreeEnvironmentStringsW
GetEnvironmentStringsW
HeapDestroy
HeapCreate
HeapFree
VirtualFree
WriteFile
HeapAlloc
HeapSize
HeapReAlloc
VirtualAlloc
DebugBreak
OutputDebugStringA
WriteConsoleW
OutputDebugStringW
RtlUnwind
MultiByteToWideChar
LCMapStringA
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
GetConsoleCP
GetConsoleMode
InitializeCriticalSectionAndSpinCount
FlushFileBuffers
SetStdHandle
WriteConsoleA
GetConsoleOutputCP
CloseHandle
CreateFileA
GetModuleHandleA
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
g84w:&n
P%LJaZ
W 2a&7N3
;Y6_!1
$8N{MK
5`fb\G
TGhkH
{|x.OD
xA# <D`
-fIeMXC
{/;yJA
:dhM2J
Wcl+45
8cq:a
~jxCvKOHg]
Z>u<nVEMs
fnb7Vj
`"6Y]q
B` RGB
S))s,\
XJQS%T
Jw<YeH
U}GLv$6
OmmZ1*
*sH-*L
-+%0i=
b@AJm%Z
9nt4(D2o2
D3g_k8
baQF}S1
Lo1gY1
gN0*}:g
d<\hKJ$EF
pbS\=!*s_?
{lSIu_
AWCZ'X
0/|DeE
%>~KITw
gQ@L1v
sK\t=P]
0H$z7H
nTNMYd
%F?;8w
*8mVAV
b%ALS3
5(*0<V
U{~h<)'
N\PY\?_
Avu>K
yq=M:E\c
q.$|S&
^+ h/h=+
DBmms
V[~q:n0
>1=\G3"ne~
/-6z|q
}UVy6
(O(UCB
*N~.8\
'L<4R&t
Yken`9
)P>C63s
v(OgV9
u$^d*y9
/)b7e+k
6JBaIE
.c%+\Xh
sWJ/N/
;h:YS bC
j]m/P{
fc5pu0
/-t@rV/
mtIY[q5
i)4<l^
npt4<j
5L0! R
VEm0Y;
MM:TB),
45rU6-
aon=ff
3sr4!
)t|[x
+aFTghQ
r:H#@A
JS-U6NI
jbKz,Hk
MnC-"1
Lum2BT
Snqjox
^G?aH_R
Oylis?Q
C6R*#v
h`wnq*
}%Y2{L
FmsRiXa
N]BUfMWY
20[?cUz#
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&
d&&&&&&&&&&&&&&&&&&&d
&&&&&&&&&&&&&&&&&&&&&
d&&&&&&&&&&&&&&&d
&&&&&&&&&&&&&&&&&&&&&d
&&&&&&&&&&&
d&&&&&&&&&&&&&&&&&&&&&
&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&d
NNNNNNNNN
d&&&&&&&&&&&&&&&&&&&&&&&&
KKKKKKKKKKK////////
&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&
mmmmmmmmmmm/
&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&d
@sm222222
22222222
d&&&&&&&&&&&&&&&&&&&&d
d&&&&&&&&&&&&&&&&&&d
2.....................2
d&&&&&&&&&&&&&&&&d
d&&&&&&&&&&&&&&d
ggggggggggggg
d&&&&&&&&&&&&d
ggggggg.
d&&&&&&&&&&d
######.sD
d&&&&&&&&d
Ds.##################4##########4#
d&&&&&&d
444444444444444444444444444#.2
d&&&&&
&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&
;:::::::::;
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&C
d&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
;,,,,,;
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
aaaaaaa
iiiiii
WWWWWWWWWWWWWWWWWWW_
WWWWWWWW
WWWWWWWW
lWWWWWWWW
WWWWWWWWR
WWWWWWWr/oooooo
WWWWWro!!!!!!!!
~WWWWWW
WWWWWWWWWWW
WWWWWWWWWWWW
WWWWWWWWWWWWWWR
WWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
m'VsS5W
'e|x3
)GW5 z
9Ph?${
%E[B$}
(BX;#|
j$QzM6Vq"
);( IiP%O
}.Gri?_x=p
031<1f1k1p1
6(7-727
8:8?8D8
:";.;[;`;e;
<.=:=g=l=q=
=H>M>_>
0H1M1_1
1$202c2o2
6X7]7o7
9L9n9t9z9
; ;6;B;K;P;Y;e;n;
='=/=8=@=F=L=T=Z=`=h=y=
0191V1[1
2/242U2u2
4&4.4;4D4J4S4X4^4f4l4
5P5Z5f5
6(7-7?7
8 9,9B9T9
;L;X;q;z;
<#<4<g<
=#=(=>=G=P=`=l=
?r?w?|?
2(3,30343H3M3_3s3
4+4A4G4T4
5+525H5M5_5
9-:v:{:
182=2B2I2
303<3W3g3s3
6&616I6R6_6
6+6_6w6
994989P9U9b9
:7;G;N;];r;y;
<'<0<4<:<@<F<L<Q<V<\<a<g<p<w<~<
=(=K=R=~=
>>3>H>]>g>u>
0X0]0o0N1
4H4q4z4
5(676{6
7D7I7N7
161?1r1
273m3.464N4l4
6?6K6{6
<l<p<t<x<|<
2!2Q2V2[2
<1@1D1H1L1P1T1X1\1`1d1h1l1p1
4I4N4S4
4 4$4(4,4044484P4T4X4\4`4
566>6]6g6
8!8Q8V8[8
:N:S:X:
3X9\9`9d9h9l9p9t9x9|9
: :=;L;V;n;
<-<:<G<T<h<m<
>>>G>q>v>{>
?:???D?
77R7\7
9H9S9`9h9w9
:2:<:x:
<%<[<j<u<
=(=-=?=`=m=y=
=,>=>{>
>)?/?=?G?w?
/0<0a1u1{1
3,4K4Q4b4
4,5;5N5q5
: :,:7:A:T:
;3;A;J;];
<.<D<K<^<
>>3>>>W>`>|>
>/?4?9?@?m?r?w?|?
0X0]0o0
414K4W4k4w4
5-595I5U5
5!6&6+606W6
6%7.7X7]7b7
748;8J8
99-979E9K9Z9l9r9
:e: ;';
=X=]=o=
>3>:>I>
?]?d?i?o?
5#5,555F5U5a5r5}5
6!6)626J6S6
7L7X7y7
7-;8;@;g;m;u;
<#<*<P<X<
=4M4w4
<(</<7<<<@<D<m<
=$=(=,=0=
>M>T>X>\>`>d>h>l>p>
0K1g1x1}1
1_2e2y2~2
4L4Q4V4
4?5s5x5}5
5e6j6o6
848h8w8
;%;*;0;
;$<0<<<A<F<v<{<
>!>[>`>e>
$0I0}0
2'2,212
33_3f3m3
3=4I4v4{4
526E6v6
77-727<7J7O7Y7m7s7{7
7#8.8Q8\8}8
9;9@9E9
9&:+:0:
9&919;9D9
?4?S?r?
14191>1
243<3A4J4t4y4~4
595>5C5
6D6I6N6
67(7R7W7\7
789=9O9
<)<C<c<
<Y=e=q>
6F6K6P6
9<9A9F9h:m:
:3;8;=;f;~;
<&=5=h=
>$>->b>g>l>
>+?t?}?
$0-0b0g0l0
1?2`2w2
4I4S4x4
8H8b9w9
9D:N:g:
;&;<;E;R;
<'<Q<V<[<m<z<
0!0Q0V0[0
2N2S2X2
2'2W2\2a2
3@3D3H3L3P3T3X3\3`3d3h3l3p3t3x3
4/5f5s5
586=6O6f6
7(818[8`8e8
9"9,9:9?9I9]9c9k9u9
:A:L:m:
;;';,;0;4;];
===D=H=L=P=T=X=\=`=
=1>:>d>i>n>
0;0@0E0
3K3P3U3
5K5P5U5
5,62686>6D6J6Q6X6_6f6m6t6{6
9,91969
;D<P<}<
+040^0c0h0
; ;M;R;W;
<4<9<><
>!?&?+?k?s?
;0D0n0s0x0
2'3,313
==H?M?_?
H2M2_2
>!>&>L>d>m>
0A1d1m1
1(2-222Y2b2
4!4&4L4d4p4
5"5'5Z5
536?6w6|6
;(;F;&<0<:<s<
> ?X?v?
1'111o1
3!3H3T3`3v3
4N4S4X4~4
5(5-5?5d5
576B6Y6d6m6{6
7"7)7R7
0H0M0R0
001G1}1
3m=s=x=~=
>+>1>8>E>[>r>w>}>
3'3j3r3z3
4-5\5d5j5~5
6"61676C6R6c6k6
6<7N7T7\7b7u7z7
8=8L8R8g8
;$;S;a;r;w;};
<<,<3<8<@<r<}<
=G=K=Q=U=[=_=e=i=o=s=y=}=
0+0J0O0T0
344@4m4r4w4
6C6O6|6
9+:0:5:g:s:
:;$;);
2E2J2O233?3l3q3v3
5 6,6Y6^6c6 9t9
;*<2<F<P<n<z<
=$=0=d=n=v=
>T>c>k>q>
2%252F2
2D3Q3}3
4&4e4q4
4)555=5
626:6B6w6
9):Z;c;
;4<=<g<l<q<
=H>M>R>
2@3D3H3L3P3T3X3\3i344<4Q4
9:*:{:
=d>h>l>p>t>x>|>
<&=Q>X>
0t5x5|5
586<6@6
=7><>A>F>|>
959@9c9n9
<H<M<_<w<
@2D2H2L2P2T2h2l2p2
9d9h9l9p9t9
$9(9,9
3 3$3(3,3034383<3@3D3H3L3P3T3X3\3`3d3h3l3p3t3x3|3
1 1$1d3h3l3p3t3
4787@7D7H7L7
8 8$84888<8D8\8`8x8
909P9l9p9x9|9
:8:X:x:
: ;@;`;l;
<$<(<H<h<
=$=(=H=T=p=|=
> >@>\>`>|>
? ?(?,?H?P?T?l?p?
(0H0h0
6@7P7`7p7
<$<,<4<<<D<L<T<\<d<l<t<|<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
p=t=x=|=
>$>,>4><>D>L>T>\>d>l>t>|>
jjjjjjj
Bjjjjj
("Buffer too small", 0)
sizeInBytes > 0
_wctomb_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\wctomb.c
sizeInBytes <= INT_MAX
vscanf
f:\dd\vctools\crt_bld\self_x86\crt\src\scanf.c
(format != NULL)
(count == 0) || (string != NULL)
_vswprintf_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\vswprint.c
string != NULL && sizeInWords > 0
format != NULL
_vsnwprintf_s_l
printf
f:\dd\vctools\crt_bld\self_x86\crt\src\printf.c
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgdel.cpp
_BLOCK_TYPE_IS_VALID(pHead->nBlockUse)
f:\dd\vctools\crt_bld\self_x86\crt\src\feoferr.c
(stream != NULL)
ferror
( (_Stream->_flag & _IOSTRG) || ( fn = _fileno(_Stream), ( (_textmode_safe(fn) == __IOINFO_TM_ANSI) && !_tm_unicode_safe(fn))))
f:\dd\vctools\crt_bld\self_x86\crt\src\puts.c
(string != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgheap.c
_CrtCheckMemory()
_calloc_dbg_impl
(_HEAP_MAXREQ / nNum) >= nSize
_pFirstBlock == pOldBlock
_pLastBlock == pOldBlock
fRealloc || (!fRealloc && pNewBlock == pOldBlock)
pOldBlock->nLine == IGNORE_LINE && pOldBlock->lRequest == IGNORE_REQ
_CrtIsValidHeapPointer(pUserData)
_recalloc_dbg
(_HEAP_MAXREQ / count) >= size
pUserData != NULL
_pFirstBlock == pHead
_pLastBlock == pHead
pHead->nBlockUse == nBlockUse
pHead->nLine == IGNORE_LINE && pHead->lRequest == IGNORE_REQ
_msize_dbg
_CrtSetDbgFlag
(fNewBits==_CRTDBG_REPORT_FLAG) || ((fNewBits & 0x0ffff & ~(_CRTDBG_ALLOC_MEM_DF | _CRTDBG_DELAY_FREE_MEM_DF | _CRTDBG_CHECK_ALWAYS_DF | _CRTDBG_CHECK_CRT_DF | _CRTDBG_LEAK_CHECK_DF) ) == 0)
_CrtMemCheckpoint
state != NULL
(*_errno())
_printMemBlockData
Assertion Failed
Warning
Bf:\dd\vctools\crt_bld\self_x86\crt\src\dbgrpt.c
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
wcscpy_s(szOutMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
memcpy_s(szShortProgName, sizeof(TCHAR) * (260 - (szShortProgName - szExeName)), dotdotdot, sizeof(TCHAR) * 3)
<program name unknown>
wcscpy_s(szExeName, 260, L"<program name unknown>")
__crtMessageWindowW
f:\dd\vctools\crt_bld\self_x86\crt\src\setlocal.c
((ptloci->lc_category[category].wlocale != NULL) && (ptloci->lc_category[category].wrefcount != NULL)) || ((ptloci->lc_category[category].wlocale == NULL) && (ptloci->lc_category[category].wrefcount == NULL))
KERNEL32.DLL
(L"Buffer is too small" && 0)
Buffer is too small
(((_Src))) != NULL
strcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscpy_s.inl
((_Dst)) != NULL && ((_SizeInBytes)) > 0
ibase == 0 || (2 <= ibase && ibase <= 36)
strtoxl
f:\dd\vctools\crt_bld\self_x86\crt\src\strtol.c
nptr != NULL
strtoxq
f:\dd\vctools\crt_bld\self_x86\crt\src\strtoq.c
_input_l
f:\dd\vctools\crt_bld\self_x86\crt\src\input.c
nFloatStrUsed<=(*pnFloatStrSz)
("inconsistent IOB fields", stream->_ptr - stream->_base >= 0)
f:\dd\vctools\crt_bld\self_x86\crt\src\_flsbuf.c
str != NULL
("'n' format specifier disabled", 0)
_woutput_l
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
((state == ST_NORMAL) || (state == ST_TYPE))
("Incorrect format specifier", 0)
_woutput_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\_sftbuf.c
flag == 0 || flag == 1
(null)
(ch != _T('\0'))
_output_l
f:\dd\vctools\crt_bld\self_x86\crt\src\fwrite.c
("Inconsistent Stream Count. Flush between consecutive read and write", stream->_cnt >= 0)
num <= (SIZE_MAX / size)
(buffer != NULL)
_fwrite_nolock
c_fileno
f:\dd\vctools\crt_bld\self_x86\crt\src\fileno.c
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\eh\typname.cpp
pNode->next != NULL
mscoree.dll
strcpy_s(*env, cchars, p)
_setenvp
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), rterrs[tblindx].rterrtxt)
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "\n\n")
strncpy_s(pch, progname_size - (pch - progname), "...", 3)
strcpy_s(progname, progname_size, "<program name unknown>")
strcpy_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "Runtime Error!\n\nProgram: ")
_NMSG_WRITE
f:\dd\vctools\crt_bld\self_x86\crt\src\crt0msg.c
strcpy_s(szOutMessage, 4096, "_CrtDbgReport: String too long or IO Error")
strcpy_s(szExeName, 260, "<program name unknown>")
__crtMessageWindowA
_expand_base
f:\dd\vctools\crt_bld\self_x86\crt\src\expand.c
pBlock != NULL
kernel32.dll
f:\dd\vctools\crt_bld\self_x86\crt\src\isctype.c
(unsigned)(c + 1) <= 256
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrptt.c
_CrtDbgReport: String too long or Invalid characters in String
wcscpy_s(szOutMessage2, 4096, L"_CrtDbgReport: String too long or Invalid characters in String")
e = mbstowcs_s(&ret, szOutMessage2, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage, 4096, szLineMessage)
strcat_s(szLineMessage, 4096, "\n")
strcat_s(szLineMessage, 4096, "\r")
strcat_s(szLineMessage, 4096, szUserMessage)
strcpy_s(szLineMessage, 4096, szFormat ? "Assertion failed: " : "Assertion failed!")
strcpy_s(szUserMessage, 4096, "_CrtDbgReport: String too long or IO Error")
_itoa_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportA
wcstombs_s(&ret, szaOutMessage, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage2, 4096, "_CrtDbgReport: String too long or Invalid characters in String")
wcstombs_s(((void *)0), szOutMessage2, 4096, szOutMessage, ((size_t)-1))
wcscpy_s(szOutMessage, 4096, szLineMessage)
%s(%d) : %s
wcscat_s(szLineMessage, 4096, L"\n")
wcscat_s(szLineMessage, 4096, L"\r")
wcscat_s(szLineMessage, 4096, szUserMessage)
wcscpy_s(szLineMessage, 4096, szFormat ? L"Assertion failed: " : L"Assertion failed!")
Assertion failed!
Assertion failed:
wcscpy_s(szUserMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
, Line
<file unknown>
Second Chance Assertion Failed: File
_itow_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportW
f:\dd\vctools\crt_bld\self_x86\crt\src\winsig.c
("Invalid signal or error", 0)
WUSER32.DLL
sizeInBytes >= count
src != NULL
memcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\memcpy_s.c
dst != NULL
wcscpy_s
((_Dst)) != NULL && ((_SizeInWords)) > 0
f:\dd\vctools\crt_bld\self_x86\crt\src\malloc.h
("Corrupted pointer passed to _freea", 0)
((((( H
h(((( H
H
nstrncpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcsncpy_s.inl
(L"String is not null terminated" && 0)
String is not null terminated
strcat_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscat_s.inl
f:\dd\vctools\crt_bld\self_x86\crt\src\mbtowc.c
_loc_update.GetLocaleT()->locinfo->mb_cur_max == 1 || _loc_update.GetLocaleT()->locinfo->mb_cur_max == 2
_filbuf
f:\dd\vctools\crt_bld\self_x86\crt\src\_filbuf.c
_ungetc_nolock
f:\dd\vctools\crt_bld\self_x86\crt\src\ungetc_nolock.inl
("Invalid file descriptor. File possibly closed by a different thread",0)
(_osfile(fh) & FOPEN)
_lseeki64
f:\dd\vctools\crt_bld\self_x86\crt\src\lseeki64.c
(fh >= 0 && (unsigned)fh < (unsigned)_nhandle)
_write
f:\dd\vctools\crt_bld\self_x86\crt\src\write.c
isleadbyte(_dbcsBuffer(fh))
((cnt & 1) == 0)
_write_nolock
(buf != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
_isatty
f:\dd\vctools\crt_bld\self_x86\crt\src\isatty.c
(str != NULL)
_output_s_l
B_set_error_mode
f:\dd\vctools\crt_bld\self_x86\crt\src\errmode.c
("Invalid error_mode", 0)
f:\dd\vctools\crt_bld\self_x86\crt\src\vsprintf.c
_vsnprintf_helper
string != NULL && sizeInBytes > 0
_vsprintf_s_l
_vsnprintf_s_l
D_mbstowcs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\mbstowcs.c
s != NULL
retsize <= sizeInWords
bufferSize <= INT_MAX
_mbstowcs_s_l
(pwcs == NULL && sizeInWords == 0) || (pwcs != NULL && sizeInWords > 0)
length < sizeInTChars
2 <= radix && radix <= 36
sizeInTChars > (size_t)(is_neg ? 2 : 1)
sizeInTChars > 0
xtoa_s
f:\dd\vctools\crt_bld\self_x86\crt\src\xtoa.c
buf != NULL
_wcstombs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\wcstombs.c
pwcs != NULL
sizeInBytes > retsize
_wcstombs_s_l
(dst != NULL && sizeInBytes > 0) || (dst == NULL && sizeInBytes == 0)
wcscat_s
xtow_s
fclose
f:\dd\vctools\crt_bld\self_x86\crt\src\fclose.c
_fclose_nolock
(_osfile(filedes) & FOPEN)
_commit
f:\dd\vctools\crt_bld\self_x86\crt\src\commit.c
(filedes >= 0 && (unsigned)filedes < (unsigned)_nhandle)
(cnt <= INT_MAX)
f:\dd\vctools\crt_bld\self_x86\crt\src\read.c
(inputbuf != NULL)
_read_nolock
_get_osfhandle
f:\dd\vctools\crt_bld\self_x86\crt\src\osfinfo.c
_close
f:\dd\vctools\crt_bld\self_x86\crt\src\close.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_freebuf.c
stream != NULL
mebaricusuhe
colakafi jovivekosorodirotufimipa rimipepimapokofo nudecudicococawocebamenih hefihejoho
butedisirexunisosixe
lavasuhumiwagumolehitevazadopitogiyubocobohihok
golerazuzeretizagakuzerene
zicasipunajidegayamusegabosecezepohebavevasunufeholuredefafazo
fcoyevurojitikafot
dabolasixofalanagetutikoworafurebobucuxoxu
soxapusuwaxuyizavunutuwagarajoxicewagerofurujup
sucavezewozujigumacafamojanexuxuyesoduwovuwovutejufeguhi
conibavebekoyurisageyomagefu
Tezatetu kubuzeyowijor yewoci teku guyomiki
_controlfp_s(((void *)0), 0x00010000, 0x00030000)
_setdefaultprecision
f:\dd\vctools\crt_bld\self_x86\crt\src\intel\fp8.c
_cftoe_l
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\cvt.c
strcpy_s(p, (sizeInBytes == (size_t)-1 ? sizeInBytes : sizeInBytes - (p - buf)), "e+000")
sizeInBytes > (size_t)(3 + (ndec > 0 ? ndec : 0) + 5 + 1)
_cftoe2_l
sizeInBytes > (size_t)(1 + 4 + ndec + 6)
_cftoa_l
_cftof_l
_cftof2_l
_cftog_l
_controlfp_s
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\tran\contrlfp.c
("Invalid input value", 0)
pflt != NULL
sizeInBytes > (size_t)((digits > 0 ? digits : 0) + 1)
_fptostr
f:\dd\vctools\crt_bld\self_x86\crt\src\_fptostr.c
strcpy_s(resultstr, resultsize, autofos.man)
_fltout2
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\cfout.c
__strgtold12_l
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\include\strgtold12.inl
_Locale != NULL
strcpy_s(fos->man, 21+1, "1#QNAN")
strcpy_s(fos->man, 21+1, "1#INF")
strcpy_s(fos->man, 21+1, "1#IND")
strcpy_s(fos->man, 21+1, "1#SNAN")
$I10_OUTPUT
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\conv\x10fout.c
VS_VERSION_INFO
041816E8
ProductsVersion
92.49.3.47
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Trojan.Win32.Stop.j!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKDZ.76638
FireEye Generic.mg.cd8f5f89a0d7a618
CAT-QuickHeal Trojanransom.Stop
Qihoo-360 Win32/Ransom.Stop.HwoC5KcA
ALYac Trojan.GenericKDZ.76638
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0057fff61 )
BitDefender Trojan.GenericKDZ.76638
K7GW Trojan ( 0057fff61 )
Cybereason malicious.62de2b
Baidu Clean
Cyren W32/Kryptik.ESK.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HLVQ
APEX Malicious
Paloalto generic.ml
ClamAV Win.Malware.Generic-9881904-0
Kaspersky HEUR:Trojan-Ransom.Win32.Stop.gen
Alibaba Ransom:Win32/StopCrypt.ad8eba93
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.C6FC (CLASSIC)
Ad-Aware Trojan.GenericKDZ.76638
Emsisoft Trojan.Crypt (A)
Comodo Clean
F-Secure Clean
DrWeb Trojan.PWS.Siggen3.1438
Zillya Clean
TrendMicro Ransom_Stop.R002C0WGS21
McAfee-GW-Edition BehavesLike.Win32.Emotet.fh
CMC Clean
Sophos Mal/Generic-S
SentinelOne Static AI - Malicious PE
GData Trojan.GenericKDZ.76638
Jiangmin Clean
Webroot Clean
Avira TR/Crypt.Agent.opchk
MAX malware (ai score=82)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Malware.Win32.MigratedCloud.cc
Arcabit Trojan.Generic.D12B5E
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Ransom:Win32/StopCrypt.MVK!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win.Generic.R434638
Acronis suspicious
McAfee Packed-GDT!CD8F5F89A0D7
TACHYON Clean
VBA32 BScope.Trojan.Crypt
Malwarebytes Trojan.MalPack.GS
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall Ransom_Stop.R002C0WGS21
Tencent Clean
Yandex Trojan.Kryptik!jXerHyybjPA
Ikarus Trojan.Win32.Crypt
eGambit Unsafe.AI_Score_96%
Fortinet W32/Kryptik.HLWQ!tr
BitDefenderTheta Gen:NN.ZexaF.34050.uuW@aON4OXoI
AVG Win32:PWSX-gen [Trj]
Avast Win32:PWSX-gen [Trj]
CrowdStrike win/malicious_confidence_90% (W)
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.