Static | ZeroBOX

PE Compile Time

2020-08-16 11:47:54

PDB Path

C:\gagegevu35\lokefac_vosuvobuz sowodebogo.pdb

PE Imphash

4b405a935ba1896da801696a6c1a4ade

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0005ce24 0x0005d000 7.9513960552
.rdata 0x0005e000 0x00004562 0x00004600 4.41677164525
.data 0x00063000 0x02837cc4 0x00004400 1.33192924658
.rsrc 0x0289b000 0x00018158 0x00018200 6.40583078736

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x028b2990 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x028b2990 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x028b2990 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x028b2990 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x028b0ba8 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_DIALOG 0x028b2c20 0x000000cc LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x028b2e58 0x000002fa LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x028b2e58 0x000002fa LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x028b10c0 0x00000028 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x028b10c0 0x00000028 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_CURSOR 0x028b2a40 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x028b2a40 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x028aa7e8 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x028aa7e8 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x028aa7e8 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x028aa7e8 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x028b2a68 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x45e000 GetComputerNameA
0x45e004 lstrlenA
0x45e008 LocalCompact
0x45e00c MoveFileExW
0x45e01c GetProfileStringW
0x45e020 GetUserDefaultLCID
0x45e024 SetEvent
0x45e028 IsBadReadPtr
0x45e030 ReadConsoleOutputA
0x45e038 GetVolumePathNameW
0x45e03c GetConsoleCP
0x45e04c lstrcpynW
0x45e050 GetConsoleAliasW
0x45e058 GetFileAttributesW
0x45e05c WriteConsoleW
0x45e060 ReadFile
0x45e064 CreateFileW
0x45e068 CreateActCtxA
0x45e06c GetACP
0x45e070 VerifyVersionInfoW
0x45e074 GetLastError
0x45e078 GetProcAddress
0x45e07c PeekConsoleInputW
0x45e080 EnumDateFormatsExA
0x45e088 GetProcessId
0x45e08c LocalAlloc
0x45e090 DeleteTimerQueue
0x45e098 CreateTapePartition
0x45e09c GlobalGetAtomNameW
0x45e0a4 SetSystemTime
0x45e0ac SetConsoleTitleW
0x45e0b0 GetModuleHandleA
0x45e0b4 lstrcatW
0x45e0b8 UpdateResourceW
0x45e0c0 GetConsoleTitleW
0x45e0c4 BuildCommDCBA
0x45e0c8 VirtualProtect
0x45e0cc SetCalendarInfoA
0x45e0d0 FindFirstVolumeA
0x45e0d4 EndUpdateResourceA
0x45e0d8 GetVersionExA
0x45e0dc AreFileApisANSI
0x45e0e8 GetCommandLineA
0x45e0ec GetStartupInfoA
0x45e0f0 RaiseException
0x45e0f4 RtlUnwind
0x45e0f8 GetModuleHandleW
0x45e0fc Sleep
0x45e100 ExitProcess
0x45e104 WriteFile
0x45e108 GetStdHandle
0x45e10c GetModuleFileNameA
0x45e110 TerminateProcess
0x45e114 GetCurrentProcess
0x45e118 IsDebuggerPresent
0x45e11c HeapAlloc
0x45e120 HeapFree
0x45e130 WideCharToMultiByte
0x45e138 SetHandleCount
0x45e13c GetFileType
0x45e144 TlsGetValue
0x45e148 TlsAlloc
0x45e14c TlsSetValue
0x45e150 TlsFree
0x45e158 SetLastError
0x45e15c GetCurrentThreadId
0x45e160 HeapCreate
0x45e164 VirtualFree
0x45e16c GetTickCount
0x45e170 GetCurrentProcessId
0x45e17c LoadLibraryA
0x45e184 VirtualAlloc
0x45e188 HeapReAlloc
0x45e18c HeapSize
0x45e190 GetCPInfo
0x45e194 GetOEMCP
0x45e198 IsValidCodePage
0x45e19c GetLocaleInfoA
0x45e1a0 LCMapStringA
0x45e1a4 MultiByteToWideChar
0x45e1a8 LCMapStringW
0x45e1ac GetStringTypeA
0x45e1b0 GetStringTypeW
Library USER32.dll:
0x45e1b8 RealGetWindowClassA

Exports

Ordinal Address Name
1 0x401065 @GetOtherVice@12
!This program cannot be run in DOS mode.
`.rdata
@.data
VVVVVVh
0WWWWW
0WWWWW
QQSVWd
0SSSSS
tNIt?It0It
>=Yt1j
j@j ^V
HtHu4j
s[S;7|G;w
tR99u2
0SSSSS
0SSSSS
tRHtCHt4Ht%HtFHHt
URPQQh
0A@@Ju
;t$,v-
UQPXY]Y[
_VVVVV
^WWWWW
t"SS9]
PPPPPPPP
PPPPPPPP
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
q{:*rkA
Pd7cv7
/)EX<[
0X6gS`
z8AUREzSN
-Z1q2]U
BzX8)
s?~!x:
$DJ%qvc
f1(0KHx
6^L%[/^
U8o7PQ;
}g]S>z\
|}H:U1
LC2T@vf7}v
5Dv9Z*
ye@@M(b
,-7mwNZ
p9H?.T5
WDwWH=
h"M$*I
629,cB
LY-2_U
8R, ),
nUqj!f
U,^*/W
=EBMEC
de,,Q?Y
P@mA2O%
|]Aw:/P
\N'6+/-
fyn7Te4
Z"@PT`x
!w+uww
z1R?fP
cpTGNr
&&tH7R
b7#TJ>
fA`]9q
+~_6le
XZiAH~'
-= *KX
m"%mpW
`#j?7p1
:_-tzH
Mj.*C%
e%#Vi:J@
I8y89(
,E4_fx
K54a!2i@@
3y\EeU
KpV2Akg
v@=bj~.
u)d#y^
U+% >
JJ6>vb
aOX9JuyF
4t`IKY
[!@ai"oSB/
wIi8'}q
Mc<2&}
.-zk.*_
c@Hp0n
XFN\oT
:_Q?$)zPk
R/;i!j
^pY[u[
{@@3}o
oy2t9
z#~`SvFc8#W
eR"OML
~s<:KNg
c/MM0B/_Q
l;b'cH
t$2hF=
lC|y+E
f f'Zl
T[R$<G
co'0y'd
L7/nJ1q
`92DRl
Xm"8MWgG]
)%i/=&]
;Qj0\Efr3w
"44h&
;LI/unvC
B7^+Dk@
|dk0Hl
UG#'JbZ
=sS5Kro
L+9.:E:@,MW
?u*aV@
RvH)Wg?^
PLC<gU
e .{O.
gFJ#hU
M]o0H
'E)cX[^
{uuz#jt
i.ec6\
5QIL=fz
RCb;QJ
f.BPe|
DV'U0xo
+n.L\j-
ZR9g%C
8M}Xk%
n(4"LY
S#Fsq<
Mt?$o'
uF2BNZ
srx]^f(
ot{`-'
|n%^O<30!
EO>R][
0o 7Lr
nbtyyl
'@-qci
(5p=FM
1(\~x1
+Ay<{B
U<.po\;
IFk+Hdm
-S?c-S)
_\XGZk
jaf|5,
2};~(G
=yj3JlO
|pjLQ4
P2wzXX9)
r)U ;B
Z;%{;_
brT7C,
0,F{=F
dvZs[bI
2wO#aIF
O-I.hI
-$5,,-J
""P6~9a
[nRlH^i
{},kb:%
|lx>Gw
C]hh9z
whG9X;
GdsH.S
RerbZZ
!&*:$5Z
BHPA3y5
u]$DR-
j`il%(
!y9mXQ
VmT$#)
~tr"~p
%),":rq_
0W^0O<
Bxh1<;w
}~o2hE@
`Z <^P
wnr~vn2
C*kY0VdI
;/#^sI%LI%
aWisdS
DMX1n
*_eXqb
Wco;6D
&E.z9_
{nl{<!
gA]'dC
gvi){j-
kGU{eA3'Dx
|/"a~z
VIc2$!
|@=m6tgF0
T^XRvCI
E$D7*
m9i,Xt
E?A*=(
"Y!e^
W >y(X
6\QY6Qn
"OlP,`
N;Y:%/
:(>B-w
eA^8H2i
0z$?Qz/
/OVm,R
0TS+,N
^KM"_[+
<U!:W,%
#t.K{K$
RU[+|S
sP[0c<q
0qd{z4
|}x5R&
T@&M~
<0m%7z#
:/xL\p"
!A3E)}
?|7r,`
T<woy
/1s\{<S
XDXO=R
P-Q K3
djx|WDg
Q!;#_Xe
U|iGs:X/
#ALYX"
'6IU"r
;^pw{&/
c^1\z4
!>X nV
.\rgDo-F
aIFc6<E2
@lHZ"@
mdp[8e
]VvsD3%
-3/ObI
Oc*&O!
,Dg/#W
_Q0aJX'
)!Q,v
0Cfdff=
`pBokAE
SP~hl)
p~wWo1
@.N/l,
L7iJx!
C?SYbp
[m\KNk
C`)M{s[
O]|kdp
3{P-v8@W
gAb3e9n
mn "IZ
m$>{YL
FkE[}?
o[!>$47]
}TwAKk
x&:LcG
m_5*km
h DT.;
j0?w+u
KDKq9T3
0="Br"
<!DOw4+
9H~,Qox
+W=9l
Hd@P&A
{FU<^,
Y.jj@A
jej]HX<Nd
=8d!1r
m0PH#V
fjCuJA
yF.I!B
WvUo#bG
"8?=/W
:p%ejw
q?oAyF1W
u-DoL}P
~gLsM%x
_,&q(`
Lnikv
F|\vI,{
Np\BM_
z()`F}
CScUA]
$(S1{t
"I2#5)L
K5^w.-
-kbbFD
~+b_.s
:D|A1;
og93'6
{'w`[>
@fZTEDbL
-{K4kh<
S}i]cE
y\KdQ1`O
MXsW>Z4g*
TvI{W4
_#*E[$~
P&?$\~~'
_B,.:!
bEcN{(o
l2BqH2~`n
k){_0k
urxo$2
@V38Tt
7NczOv9
oJ$#{1
VzoWgm
z~iczkVF
6;pXw&S
VXR~/{
f0`E,&
pXTi0_%I
nX{Hc)
V.KYff
Sa#ga'
p~QZ<cQ
q2;^Lj
9$tyO9Uh
x\i5@d
Id,pa',
e6qtt.
R0&]^>
p8'pi! M8yo
[ySZ;YJ
JV9%yES%
FgtU\EG
=bpdHEF
3GA_$z
Ax-%R0
SoH4juS
?,s Nu
EMPE}]k
AkX?sm
w(Z~^(|
qX\N9WsP
C+uE}W
nr/)1x
7mUx@R
{!kw|H
n.&!UP
Bfqg !
zZXF>!j
>4d>f r8
*!zuV\x9
Y3lDhW
HtX/Ek
S<~z46
XFB?|~J&b
Y"Y#=2
3+0'sY2
C+v_]g
5sr8oNr
G`C_+f?N
>j :1T
!px}K`
Clyn Q
twL<Ib*
4!OM,*
L&LU/\
h:. Odd
ckFoyF
$Yjr :
Sa\`&`
w=w@9?
(2!?}e
T>*Hsn
wsD|fQV
.lB8lJ
uo{Wq]r
dDSGo3
byby|Wy3
*i?exp9Rc
P#Eh5q
"$DM$E
i;1~L)
0mh6:+
x:*)61
W+mFl7N
UvS-O$
+e4NU$
}\^'5H
;64I"RK
Hm4ju
3_VNX<"
<HtaH7
;"m}p7
d]~@g]{
fTS(U$y
r\q$ek
@].`I8yU
.;($hJ
28IV:JDC
>b@#w.
b9EQ]B
_o!?Qa
JqF`Dl
f/juVk?
Kn TAr
g'=rS!
T l"7(!
PHh;j*
mUg^_n(Y>
5EPpU~!@
C8=[hM
*w_Gjg
];w.Kl,
+0v6ju
U)vlNH
\,/?i?
U2@5vhm
&KW)|P~*
G@#^.Xr
usX'z;~
8Xsb~M
fDYd?[
eY S[N
1{B#m86
O8JV+6k
NCDtp.
Xiq%mX
.{o"wP
]y=5z!
a*NBv5
2EVd.^
AuZ$9iX
(L;a.TZ
i+6_cb*
t-T_-]
NOWQ}D
,.wmx]Y
v4$hj"
r&(lmfsvW
%<VP21
EFK#MzxC
lU+u]$RD|Q
XT?kw;
do%|>a3
Y:u/poX*
->LbSj
XJKU+=
|Y=T##
s*]O%[?
?C>kKPD
fz}W!Dj5
RDUMW
m[-5`3A
SRc_gU
hu"2Bwu$
^QKHbDS[
G6`.!%9
B-W'ki
t(N=#=
3='C=d},
m[O!==
88#;Sn
ah2`Yb
\AOEBn
,~YF;>
x<FIw8
-?^#E9
8r_#V_
c(!R/@
7KPa|1
<=Ir7jJ
BdW65"
:"C4Kfz
L,hTXSz
V!*z+$
P7Ro^I:22
5O;*7`IN
F\~7}G&
1$&Z$8
bs,4~$)g
Z3c=Fc
k9bsv2(
;Wb+P)
zYe5%%k
E`7?$E~
QbePzu
~2n}m],
fXi?t
Dc[8v$
hwsq~c
bPf16g
kx9aXD
l=4`Af
:9l"BTEU
h{LY 0
bBq(Gnw&
w#B!<3
CtVJsU
Xm,ISb
gF#_E/
/fhYZy
}iFy_c
r5<ZP"C
c%T,zB
:LrM1Pf6
[bg?T`y
mSXxo^
_nzB;
w{/~~XB
=%b:(q
</,g'--eQ
L<:NUl7
$K8PJ+
RUALbd
@-aRKY
pYpxW6
,w{mk&
8{C!"
@X_XG$2o
MEjAd
0lT~XT
2|BP+8
"l'Co}
b2:l<v
'fcw>E
JLMj5t
~v/IG#a]E
g<-o0(
y Se?&
LM#XHe
W2HJs2T&
!}[^gy
M4nuRw
9I9C:X
{GsObHd
n{Vp\|
A'}rBU
>$ZpY`
A1frA=
2i{RoQAi
Aw=O{u
_;r.aqW
@Bj&a*
# QQ8L
qoVD}
\i'-N?
[+^;<R
@nf@xE
0^uAPR
|'?!n>H#8
WXh>XH
NjwCy,
{d@v)+*|
^@x%gW
40XB}f
IuWR_Q_
C:47uR
d*Qr*[
K_XPD
S#o/de
CZ)IG9
#AS8iq
<lo*Dv
%Y,CEv8K
bad allocation
string too long
invalid string position
Unknown exception
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
bad exception
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
_nextafter
_hypot
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
GAIsProcessorFeaturePresent
KERNEL32
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
bad allocation
mosesudojohicazizomoroye
Wiki velomidojeguyap
Japanipupi cuge lena
Rimed voz
yuwakivecukuruyogazugeguhikekaz
zipovolusufo
kernel32.dll
LocalAlloc
C:\gagegevu35\lokefac_vosuvobuz sowodebogo.pdb
GetComputerNameA
lstrlenA
LocalCompact
MoveFileExW
InterlockedDecrement
WritePrivateProfileSectionA
ReadConsoleOutputAttribute
GetProfileStringW
GetUserDefaultLCID
SetEvent
IsBadReadPtr
GetConsoleAliasesLengthA
ReadConsoleOutputA
InitializeCriticalSection
GetVolumePathNameW
GetConsoleCP
GetSystemWindowsDirectoryA
InterlockedPopEntrySList
LeaveCriticalSection
lstrcpynW
GetConsoleAliasW
SetConsoleCursorPosition
GetFileAttributesW
WriteConsoleW
ReadFile
CreateFileW
CreateActCtxA
GetACP
VerifyVersionInfoW
GetLastError
GetProcAddress
PeekConsoleInputW
EnumDateFormatsExA
GetConsoleDisplayMode
GetProcessId
LocalAlloc
DeleteTimerQueue
DnsHostnameToComputerNameA
CreateTapePartition
GlobalGetAtomNameW
WaitForMultipleObjects
SetSystemTime
SetEnvironmentVariableA
SetConsoleTitleW
GetModuleHandleA
lstrcatW
UpdateResourceW
CancelTimerQueueTimer
GetConsoleTitleW
BuildCommDCBA
VirtualProtect
SetCalendarInfoA
FindFirstVolumeA
EndUpdateResourceA
GetVersionExA
AreFileApisANSI
KERNEL32.dll
RealGetWindowClassA
USER32.dll
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetCommandLineA
GetStartupInfoA
RaiseException
RtlUnwind
GetModuleHandleW
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
TerminateProcess
GetCurrentProcess
IsDebuggerPresent
HeapAlloc
HeapFree
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
SetHandleCount
GetFileType
DeleteCriticalSection
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
HeapCreate
VirtualFree
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
EnterCriticalSection
LoadLibraryA
InitializeCriticalSectionAndSpinCount
VirtualAlloc
HeapReAlloc
HeapSize
GetCPInfo
GetOEMCP
IsValidCodePage
GetLocaleInfoA
LCMapStringA
MultiByteToWideChar
LCMapStringW
GetStringTypeA
GetStringTypeW
yidawixani.exe
@GetOtherVice@12
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVexception@std@@
.?AVbad_alloc@std@@
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
jjELxLWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
(WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW_
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW_
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
dWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
dWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
dWWWWWWWWWWWWWWWWWWWWWWWWWWWWWx
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWn
bWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
(WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
==4O(WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWd
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW$|&=
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
FFOaWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWW
lWWWWWWWWWW
(WWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWW(
O(WWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWW
G(WWWWWWWWWWWWWWWWWWWWWWWWWWWW
G(WWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWW
LWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWW
WWWWWWWWWWWWWWWWWWWWWWWWWWWWW
\WWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
TWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
aWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
aWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWa
WWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
ftWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWa
dWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
OdWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW$
dWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW$tdWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWWW
<=}d$0
93}e#
6ON~wF=
8T[sI1-
P>H}~DC
KPl:/=
T\}xD?
///////////////////////////
////////////
///////////
5//////////F
]/////////
//////
w///////
///////0H.
////////
////////0
////////////
%///////////
////////////
////////////////////////////////////////
z^t!zcZ'
~y~Zz}
hhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhh0Z
hhhhhhhhhhhhhh
R[hhhhhhhhhhhhh)T
hhhhhhhhhh
hhhhhhhhh
hhhhhh
hhhhhh
hhhhhh
]hhhhhhh
qhhhhhhh
ZhhhhhhhS(
8hhhhhhh8p
hhhhhhh
{Phhhhhhhhh)p
Thhhhhhhhh
hhhhhhhhhh
WJ8hhhhhhhhhhhhh
hhhhhhhhhhhhhhT
hhhhhhhhhhhhhhh
hhhhhhhhhhhhhhh
{P[hhhhhhhhhhhhhhhhhPq
i{Zyhhhhhhhhhhhhhhhhh
ttD++O
hhhhhhhhhhhhhhhh
T[hhhhhhhhhhhhhhhhhh@
hhhhhhhhhhhhhhhhhhhK
hhhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhhhhhhhh,
hhhhhhhhhhhhhhhhhhhhhhhhhhhhhhc
hhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhc
hhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhh
tttttttttttttttttt
5httttt
tttttt
ttttttt
O!ttttttt
^tttttttt
tttttttttt
ttttttttttttttttttttttttttttttttttttttt
iAEi,6Q
/Sh@&u
Drv6+~
Rwz%3IrO
Ju~!5m
,;g=(v
I<g|t2^
hhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
eeeZ4SS
hhhhhhhhhhhhhhhhh
v<eeeSS44s
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
vZkkkkkkkkkkkkkkkkkkkkk8Z
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
kkkkkkkkkkkkkkkkk
hhhhhhhhhhhhhhhhh
<v<<<<<ZZZZZZZ
hhhhhhhhhhhhhhhhh
vvvv<<Z<<ZZZZZZZZ
hhhhhhhhhhhhhhhhh
zzzzzz
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
(CCUUb
bUUC((r[
hhhhhhhhhhhhhhhhh
QQUbbxxxxxxx
hhhhhhhhhhhhhhhhh
UXxxxxyyyyyxyxxbb
hhhhhhhhhhhhhhhhh
xx@yyyaya
yyyyxxbQ
hhhhhhhhhhhhhhhhh
@ayaaaauaauauaaa@@Q
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
IIIIIIIIIIIIIIII
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
gYYYYYYYYYYYYYYYYYYY%<
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhh
wwwwwwwwwwwwwwwww
vvvvvvvvvvvvvv
wwwwwwwwwwwwwwwwww
ttttttttttt
ttttttttt
tttttttt
tttttttt
tttttttt
tttttttt
tttttttt
tttttttt
tttttttt
tttttttt
tttttttt
tttttttt
tttttttt
tttttttt
tttttttt
tttttttt
tttttttt
::::::::
tttttttt
tttttttt
ttttttttt
ttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttttt
%999999999%%%%%%9ooooooooo9%%%%%9=CCCCCCC=9%%%%%9=CooCooC=9%%%%%9=CCCCCCC=9%%%%%9
CooCooC
9%%%%%9
CCCCCCC
9%%%%%9
CooCooC
9%%%%%9
CCCCCCC
9%%%%%9
9%%%%%9
NNNNNNNo9%%%%%9oNYYYYYN
9%%%%%9
NaaaaaNo9%%%%%9oNNNNNNNo9%%%%%9ooooooooo9%%%%%%999999999%%%%%%
~z~h}~
zwswtxy
%^cav~
8H8$_ga
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

mscoree.dll
KERNEL32.DLL
((((( H
h(((( H
H
nuviyinacowiwikogutoxavihokeweye wibefuhobapuzamiritabehohomaro hofigivizo yipohemupuzojiper
xokihuwotoweye
Mazu xemuxasuwajusa bugim
Pine mogacobamuvu
Hod xuluyejuze tagusupozupulu
pitozegi ponujikodibapacadidiwayi demujelixanejerohacivotigagoc botosakuzum
hodabuwewej sebugitabodit bitajoyowafafutajo nafupaseweb
nokiloholede
xiloxona
ERRORDIALOG
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
085564c6
InternalName
fogsmoageke.emi
Copyright
Copyrighz (C) 2020, fodkageta
ProductVersion
9.51.22.12
VarFileInfo
Translation
Error!
Select One:
&Retry
&Abort
&Ignore
4Soruyetixu gojemevaxe hekuyi casak pisarev bokatisog
Sinibofogidobov ceremonikuficu5Belikuxozesus sawukesuwi relemiyafadas tuma xobojuxig
Buwerixiwiw lomoyig pap yota
yKotayidilojice cohutezari vidiw hiselijobulipo xikowo banaserur govelilisuluruh tonamejixuveco canucilivenajo vukemezepuxDJivemupejor togaxiwedin nifehofoyeyudu datinub ludidibab xikewogelahIWevojedepocapaj lix wagiyogi yemihihimavel nonuxumodikes cilumuhix pilegi
gTimemimipapa bivamapayuv buhig zak dumelovilu siwetabaxumaraz juxirihusi bilaju camotafibufonu sijakona
Antivirus Signature
Bkav W32.AIDetect.malware2
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Clean
FireEye Generic.mg.2919f1a121d1156f
CAT-QuickHeal Clean
McAfee Clean
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0056f9be1 )
BitDefender Clean
K7GW Trojan ( 0056f9be1 )
CrowdStrike win/malicious_confidence_100% (D)
Baidu Clean
Cyren W32/Kryptik.EUY.gen!Eldorado
Symantec Packed.Generic.525
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
ClamAV Clean
Kaspersky Clean
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Tencent Clean
Ad-Aware Clean
TACHYON Clean
Emsisoft Clean
Comodo Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.VirRansom.hc
CMC Clean
Sophos ML/PE-A + Troj/Krypt-W
Ikarus Clean
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Trojan.Win32.Packed.lu!heur
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
ALYac Clean
MAX Clean
VBA32 TrojanPSW.Racealer
Malwarebytes MachineLearning/Anomalous.97%
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.Kryptik!1.B40D (CLASSIC)
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Clean
Fortinet Clean
BitDefenderTheta Gen:NN.ZexaF.34058.Fq0@aWiuH9fi
Qihoo-360 HEUR/QVM10.1.3097.Malware.Gen
Cybereason Clean
Avast Clean
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.