Static | ZeroBOX

PE Compile Time

2020-10-19 03:24:21

PDB Path

C:\tazaluwoceci\58_d.pdb

PE Imphash

6b22ece31495fe337ab5b098b4e30ca3

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0006ecc0 0x0006ee00 7.9742731216
.rdata 0x00070000 0x00004ee6 0x00005000 5.59450347828
.data 0x00075000 0x0288fa68 0x00004200 1.22285517114
.rsrc 0x02905000 0x0000fdf0 0x0000fe00 6.60154264128

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x029140b0 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_DIALOG 0x02914798 0x000000cc LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x02914c88 0x00000164 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_STRING 0x02914c88 0x00000164 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_STRING 0x02914c88 0x00000164 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_ACCELERATOR 0x029145b8 0x00000028 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_ACCELERATOR 0x029145b8 0x00000028 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_GROUP_ICON 0x02914518 0x00000068 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_GROUP_ICON 0x02914518 0x00000068 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_GROUP_ICON 0x02914518 0x00000068 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_VERSION 0x029145e0 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x470000 EnumDateFormatsExW
0x470004 MoveFileExA
0x470008 EndUpdateResourceW
0x470020 GetUserDefaultLCID
0x470024 WaitForSingleObject
0x47002c GetComputerNameW
0x470030 SetEvent
0x470038 CreateActCtxW
0x47003c GetConsoleCP
0x470040 LocalShrink
0x470044 ReadConsoleOutputW
0x470048 GetVersionExW
0x47004c GetFileAttributesA
0x470050 lstrcpynW
0x470054 GetConsoleAliasW
0x470058 VerifyVersionInfoA
0x47005c WriteConsoleW
0x470064 IsBadWritePtr
0x470068 ReadFile
0x47006c GetModuleFileNameW
0x470074 GetSystemDirectoryA
0x470078 CreateFileW
0x47007c lstrcatA
0x470080 GetACP
0x470084 GetVolumePathNameA
0x470088 lstrlenW
0x47008c SetConsoleTitleA
0x470090 VerifyVersionInfoW
0x470094 InterlockedExchange
0x470098 GetLastError
0x47009c GetProcAddress
0x4700a4 GetLocalTime
0x4700a8 GetProcessId
0x4700ac LocalAlloc
0x4700b0 SetCalendarInfoW
0x4700b8 CreateTapePartition
0x4700c0 SetFileApisToANSI
0x4700c4 GlobalGetAtomNameW
0x4700cc GetModuleHandleA
0x4700d0 UpdateResourceW
0x4700d8 GetConsoleTitleW
0x4700dc BuildCommDCBA
0x4700e0 VirtualProtect
0x4700e4 PeekConsoleInputA
0x4700e8 FindFirstVolumeW
0x4700f0 GetStartupInfoW
0x4700f4 HeapAlloc
0x470100 GetModuleHandleW
0x470104 TlsGetValue
0x470108 TlsAlloc
0x47010c TlsSetValue
0x470110 TlsFree
0x470114 SetLastError
0x470118 GetCurrentThreadId
0x47011c Sleep
0x470120 ExitProcess
0x470124 WriteFile
0x470128 GetStdHandle
0x47012c GetModuleFileNameA
0x470134 GetCommandLineW
0x470138 SetHandleCount
0x47013c GetFileType
0x470140 GetStartupInfoA
0x470148 HeapCreate
0x47014c VirtualFree
0x470150 HeapFree
0x470158 GetTickCount
0x47015c GetCurrentProcessId
0x470164 RaiseException
0x470168 TerminateProcess
0x47016c GetCurrentProcess
0x470170 IsDebuggerPresent
0x470178 VirtualAlloc
0x47017c HeapReAlloc
0x470180 GetCPInfo
0x470184 GetOEMCP
0x470188 IsValidCodePage
0x47018c RtlUnwind
0x470190 LoadLibraryA
0x470198 GetLocaleInfoA
0x47019c GetStringTypeA
0x4701a0 MultiByteToWideChar
0x4701a4 GetStringTypeW
0x4701a8 LCMapStringA
0x4701ac WideCharToMultiByte
0x4701b0 LCMapStringW
0x4701b4 HeapSize
Library USER32.dll:
0x4701bc RealGetWindowClassA

!This program cannot be run in DOS mode.
`.rdata
@.data
gu,h8.G
VVVVVVh@/G
"uoVVV
VVVh40G
tNIt?It0It
F\= "G
Y;=0VG
>=Yt1j
QQSVWh
j@j ^V
to=X\G
0A@@Ju
Fh=@VG
URPQQh
_VVVVV
^WWWWW
tRHtCHt4Ht%HtFHHt
0SSSSS
0SSSSS
0SSSSS
0WWWWW
AAFFf;
v$;5|\G
PPPPPPPP
PPPPPPPP
t"SS9]
;t$,v-
UQPXY]Y[
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
WfE@j0
1kW)j!|
[=X\9+e
OWMwN{
(V;ua~-Y
kEtsx\
TOkM V
pCO,(% |
B)|*"M
_JzO5H3
~l-Oig
.8uk<i
]<DVAt
C$]c]A
=""u-zk
V6kt}x
'=if}+
z.F:37!
3hSn*=
v4;:+ku-X
2`^I74
P%Rm;0
/,!SX5q
S 4i.S
3)bN?nx
4u?23
iP$rN_/
g{VR<-
nP+!g
`0lj"Xgs
`I2}G&
-;Vv#=
H[#sMk
Ill;3G
*%3 )'
74\3)D
)?ZfIl
kM>m,0[
]Hy/\
Nr5WW{
` [kf&
<*_3;n
\d)(h=
F:jGB=
54 Xoj
37*F-B
V.02&dYH
z?\1ls
_b"2-E
|&C^-X
.LqCTF
[Nr"o(
S>6tTD
k2Jc(R
To\YKT_s
$I'v[z>
a`O+c3
9'/*m)59Y
<"t1P?6
IP#4=1
^D^]O4
yyMZ#9
+paE8.<
_T$w;CX
>pt0Lv*
k)`%BE\=
98/hM
W$/`t4Zk
(2Y1j"
P*]9k@T
fE x,.
r6.I>F
u%+(.3
C++NKnm
Fr1Bi1O
C@.,.-M
_O[V;H
}sG06}
<s\vCQ
"y,c~R
Y=Ov*5
kgb:F%%p;
R}\Zj3F
Rc_I,
C`'-vdj
|AG6OR
m.8u
HSjh:
~Az`tv
Gf2p=;#
"#:(-
U3Ba6_
@%2R\o
3\{<'*9
$D_*6Z
BZi=?O
D8LJrk
z]+B*M
^D[f nw
F4i\b[
eJoq8OZKS
2T}2{++
~O[![)
7bKlCY
Ep[nx-
,/%m=z
}'*N Y
PH??bb
{^8I^
XRd !cI
[|:w|ky
dsB4Y9Yu
gq@4`Jnu
5SWqA
C '5x,n
7DNt++)
37mb-y
hC>hoIv$>f
Z9GFC[
xtgDnh
OAohWm
t?Gw6Z
F73D%J
wF4x@U#
L[nAa'
veA#XL
F[D4474
vKle7y
-Zh(2:
cN!(JP(
PwT,,<~g
!i0Lkr
?aWQcX '
cm(|.[h
D \{U+
Yf6YS!^
GcjEE!
L@QiI
}GTd-7
( 6e!gFwr-r
6PK+/(
rC|riQ@
^Ej,su
XWe!B>
wBqY{n
|W\mcZ
)=.5rV
E|o^Q2"'Lq@*e
Ox@6yz
82,teW
#<DCHJ
/.,HT^
mkAi om
C(!x<,4a
Wq}(e{h
4sW|0xV
S)0U||
[9|t8k
`cq3f:
(;9,eK
q'C0Y/
+M'R<*i
0t{=vV
|YH2KQ
<2r.+d
M.|8:w<
"[K3.~
uEwp#&h
h*T&Sd;
U(dw6;
ST?^"s
VM=@6>[U
C;,t_Yu'
c}c=#4
6&MM[3
[2[,"$
zbk%jy
q l[Zv
nZO"%B|
h,i7h!
Gl`.*l
;6d`2t4
x(5`Qd
)_gm15O
^jiq]#
0EjZI`
}A L6)1
>#IgMd
)8!X4Ut
nN3KXq
a;C=R2
kkdbD)p
~p2bn\H
?>vUCr
#AV/!+
O'ys<YZgD
_o#< d
gwSHS/
Z!4xye
?bX{G>0
;y^GR+
5lC>o23L%W
yW}z/5w
([uowJF
!ELHcx
<f9J:=
v00Eix
vR1`u2\viT0J6
`zd/L=
6B8:~#
N\]Y+^6E
b(5B]A
bv!gs\1
xDD)f+b
HfP3jv
#ywQvl
!/~'fK
ueTS1oW
i9~{}L
0goDE[TO
/a{1)6
8'a:d'
"-Aw"&p
o2GF3!
RTE&Xg
{$W?5.5
|KJ8#u
2G{ps)
xtlwUF
S!Kn .
[#d@'1
yKmhLq;
>${Bt5
$e`jkN
=w or}S!
e<HP!
Hd[Vb2
jv?5-dU
qf@Yenu
R|CPdx
axz)o?d
i&Zx*?OS
4bh$o=
|B!Jr7
`RK^3a
'i=[+'
?DE/C#jl
c&r@VF
Bj`WJi
=`f&.;
@!AB(~
$A6~aw
`h[YJ,
-tJ(ph
X c+}Nz
-0JB<\
j9?"S4
S2:}$X
`RRhfF
|&`p=aA
vUf4JY
wVQy52
Xeiy9x
8OZ^8=ev
nzoGsE
<LQu2o
iI PxL
!f;;3^
1V=39_1
d.84BG7
lJY8su
+IrHdB
<}iQ"e
i4q38m
S(~0r
;O$mV]
TNa/Wv&eLq
g[=)9#vw
>UT!C\[
\uJJqjOK
e3H)r%
O3S*>)
zDw@gs
T$*Z7I
(M=+oh
`__hQm>
ua$<_4+
^@'%,+
WZ@j}-C
6c%MC(
'C"3BWga
%bKipo
-;6cjq
]g]NiD
;P6]AV
Gzi"<XM
{VUepzax
1+_!9m{
b'IJzS
M=}XUm
fg"2@h
n4.7ir
Ity2YVK
\T|/a4
FR*P;V
$n|&T3
/anI!"b
Uh#YlErJ
{km>K.
-;?#I/
j:nM[2
O^4-l(
8:FC%D/
H'_aNz
>lT$>?
KF,?l
\jzY,Pw
ciB*hBw
^;4R$y=ag
[=mja1Q79
?E)+#j
V5q4ZPR
lqE{fQ
?}CqaH
Ih.t|A
g,?ea
LUp+.T
f]@xRkl
LgLj%9
{+&D+
R1.z*r
M:em%}
f0aNL'
n.tsTIz
pM$f *
htE~{[
k^/]Y3L
PY9}ry
4m16 `0Z
.9?NCn
_eA8+o
zTB!~:U
P*It>M
O`%(/A
OaEJwqw
N]:-6a
geDr8P
Z"Czz)
I%\WZ
:N0RZ*
hEnP{Jv
vi|k'?
9*j@wj
)9L\DZ
qpV':'
+&ty-
":8N{z
uKvD]i
JxL0>,}
q77HX=
Xf$/A;FT
/W3dsV
|w9eY*
3w%?!aE
H9pdYg
/s._KZ
+^b}Y<
o*~(p16
Vp~$:(
0B_ Cg
ZSPp` /9
uJjS@e
hLT^n.H
ekJ|bL
{3q 7@
-UG|Z1W
[rXIv0
m5RGrd
@Po|e
o,N=]"(
)L\QQ"4B
V`kLmft
wf98R K
:sol>oRF
YGym:\l
tz)Fakl
+Qf0:)
N;Ty~P
Kxt$gY?
<9M?<`u
Sx+6N"(#{
@^YFpz
p0KT?f
IYrK$z
>0*ql+
!:|lue
d1NRagO
;xQgqu
)t1]?o
bA;T]d
|Nq.93
ZECT5n
|X&x_]bI
2(1WJC
fhs5t?
;W*Bx%}
3xfI.0q
P(hk.R
Pw3*&;"
6\@?sx
!?Zc$4~
Ho;5Ja|
6W2V<U
oY8 {\
Fix$!/p
.3JKL}
i^z]A}
vROQ$#
;uI=}S]
m4CUN-Y
1x[-`b
*pzg"
ve=\]j
*lvO'b[
Yq'EM
|<zu>T
*Y'/a^
`_=/PU
|A\!8D
}QCz|$
s7 dvB
dH,8J1
rrw>^!
W*[cU@
$$l=U?p
<ebnwY
ko8B{i
l+VlHC
Fu#S=o
osWh\~
{Tdge
S~&QM}
g&%~.-jg&
.ApLXzd
T'o]n%
V!(Zer
d{E9vR^
^kG3oL
bVf:N5
S~0Ao.h{Q7
%U*:tJ
Iq4Y=H
+"p]~i
6vEyCw`
f;~?Krg
f~/w'F
@Q{R@0
X?cL }
|YGc~L
S'Ney%
s-Y":pl
3C=;ML
.8'(k9bcV
gtBkRz
UwJv+>
f~6F/l|q
i2M^}\
k]pN|U2
HpO1{m
P/%Ee*
aFclV2
Km(!<Cm
;29? C;
.3rS%qY
|QM{:@
VMaC|ca0
(G&FM2+~3
'**wCi}5
]aS1#r
:f<EFcI
m5-jq/
!)zZx*
z5e\}
ob8]5e
tHX6?S
,Zn6I{
R ad9K
.9![lB
T7sy0,
J@0>ED
{NOS@rX)
-sHeH5
:mHjM>x
$-%H~1
#[t9-hy
2Hj<ct|
OF}C$A
|;8gmi
:%4_F\]F
k^S7|.
^@$h.`u<
)_EI^ky
yiFfeX
X!:G/Q
7{}`ZO|!
?JXvsu
Ur4v9C
PM*[k[
VLr%DJ
A6ht]K-
utWj"tpo
x@f)1@
+,U5Al
r88zE2A
_SmEZ*
>#K5#F
3|iR!x!_j
r92#!t
P.k6k:
Q.G1-OQ
AHM2D'P#
Qzbddze
lVL=6R
Jb`R7<c
e4d>d
-DPwX}
a!ASDiD
c^x/L./
`bXYJx
w=iT&7
U&yzM
>JGeFV
4& vmW
*U}"JI
Iw_iEh
(TRwR)
sW61.y
\9Umd#
o+|F$e+
pL<<^NQa
sZQt}Z\
^JZYQfa
hv}Z\e
@T}&Vh
:<_Hk$
RB|?(/
K+wK$
Khq;2n
@U])'Z
ge6#3!
N$UA:l\
M74E`z
Ea- 1Y
f-|zo5
/GpWJe
Wc&#*m
)BEBrN
YEk(A}
vT5S9+
h9 h$w8[k
Eq$S[K
7"Rd$#
Q#?fR1l+
c^^(Ne
Q]aXpQ`F]]
HD!-9oek
.O,i*"
HE#)k3
:Rl'B^P&]
:h2G.S"
Zt9"";
?l!iU:
B\d[v;
G1;([)
J_lB=Y
Gg!jeT
"bs87s9
}&#/ 5r
li<>s45
(PXins
RO*cO"
&lqFCQ?
WphMY@{
Z;T[NFvf
UZ'N2<"do
H/[F]H%
(*a'DB
E$V) +
X8F'1%b
aD[N#?3
K-*~MI[
FRdF]m
j_%yeDH
tq,tJ?
8v"%4n
Zzqi2d
lHoeWn
>rfjy8
zfXox?
/&d4d/u6\
'@3JKl
UuDn[4I
5fb"v$-
]H"&=&
O(>F:j
BSuDOk
H x,9T
\tox$'K
o!9riw
k,+\C9gX
r-~Y=>$
ph-E4s
jM3S6
o%>}8.S`
_4[-H7
q*;~bD+
f`z.rb
]0}k*]B$Z6]y
'NclUcN]}
N1j*um
3`ncm{)
U$}\hqW
T'9\p#
d]5cBu
-N D0
YR8g[nr
T_V^Z1;
h#qi<2
-i9DV
W$E\q{
RD?1"auVl]
@Ad7ANI
p5w49sE
62<*Q%
5Y~A'zB=c
.)#?H -
JgpB4!
C@~sm^
&JISZ[
Z=R:g:
zNo{-v
'(_Z6w
49(_ F0
iDL{Z\
if &Ql
E$Msw>
$JGme
~~=*/&
[P:x52
[J?*oH
_Hk\ZR8
lJS)O8L
2/~;,V
INCHkly
iz,Ko]M
L.d{dq
#,5~57
%J)^!.
2vtj;tR~
jV'x7#>
;w_C.p
yUM.$e
y`X$ kd
U25!n2Z2q[%
qF6STL
#v:*BK
u^XA|$
+jh8R
2RoP!i
5]A]O
@nA|Sv
.SyLDKDo
pmFRs8; ;X
{f%}zg
+R}Ns!
+]v^O[
\kF*8e
*6u>W@
;O-Do
y]I'jlz
LG(E;M
TQ:5$%m
?~i'vo
5H42(3
NR,SE@XbP!
Z7qUJO
=3I[ir
fVnBu-
$zA'OD
z dg;R
/rw}_7
^uO*"d
}`oa>/&
#Kh$P(
A?BZl
;6h#CFq
7av7 ]
7xjKgs2
QGd\&fR
9pM;>V
nZ*w(K&
|<.Ap3
4/fu](
<?.q6Dj
Czu+;PP
/PJ|z(.
#/=Enil
rRAzD*
+\D.L
nyQQ`h
7B,'!Uvx
r9G:io
Wv^c&i
x#z}{
px9;O%
{ \N$*
?xeRYH_
Do(M9.
faVZ|z_a
Usv|<?
s+VJ_^Tp*
+=3l5B
n2S3ML
]ML!]r{'
*ey~KK+
)[t=_&
war.1R#R3
>"l1D!n0u
2H~H=4
'7)2!{e
Ls!9uz
h.G(MxI
@n5pJ}S
C,KUQR`~
W`KDfqB
/8j3>v
~jsjwg
sA>}6>2
u(&79@=
DIn?xw
Jf?&sVR
'Namf^Go*0&
Pf6>I^u4
w@%7CE
^mO`%&'
ejoDBZ
JC'qd\
tQoz\io
H#|+F%&Q
r#'F{/
0H#q`/\$
WB>1/]P
D8jx{4jRi|xm
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
?ZEM-'^
?{yK+;
?765@Z
?e')lW
UUUUUU
?333333
?333333
?UUUUUU
?$rxxx
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
_nextafter
_hypot
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
GAIsProcessorFeaturePresent
KERNEL32
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
bad allocation
rugazozurepawuvenoni kosenaninovikekusokaz cesagit
cihumuniyulomavivowufosusecim voyicerocagovuhacidaxulicawo siwupajumur pafayoxadajidahudeyaxisiyu
gavazetunepel
wenukusatubenufuv
husara sokulanihexesifegu godevagemomarewubodeh fuhoyexe gatuxilu
kernel32.dll
LocalAlloc
xawomoremaletuhozikovizigo xanolakolumetavaxa vejibabuzay
RSDSIar
C:\tazaluwoceci\58_d.pdb
GetSystemDefaultLangID
EnumDateFormatsExW
MoveFileExA
EndUpdateResourceW
InterlockedIncrement
InterlockedDecrement
ReadConsoleOutputAttribute
GetSystemWindowsDirectoryW
GetEnvironmentStringsW
GetUserDefaultLCID
WaitForSingleObject
SetConsoleScreenBufferSize
GetComputerNameW
SetEvent
GetConsoleAliasesLengthA
CreateActCtxW
GetConsoleCP
LocalShrink
ReadConsoleOutputW
GetVersionExW
GetFileAttributesA
lstrcpynW
GetConsoleAliasW
VerifyVersionInfoA
WriteConsoleW
WritePrivateProfileSectionW
IsBadWritePtr
ReadFile
GetModuleFileNameW
GetCompressedFileSizeA
GetSystemDirectoryA
CreateFileW
lstrcatA
GetACP
GetVolumePathNameA
lstrlenW
SetConsoleTitleA
VerifyVersionInfoW
InterlockedExchange
GetLastError
GetProcAddress
EnterCriticalSection
GetLocalTime
GetProcessId
LocalAlloc
SetCalendarInfoW
DnsHostnameToComputerNameA
CreateTapePartition
SetConsoleDisplayMode
SetFileApisToANSI
GlobalGetAtomNameW
SetEnvironmentVariableA
GetModuleHandleA
UpdateResourceW
CancelTimerQueueTimer
GetConsoleTitleW
BuildCommDCBA
VirtualProtect
PeekConsoleInputA
FindFirstVolumeW
KERNEL32.dll
RealGetWindowClassA
USER32.dll
GetStartupInfoW
HeapAlloc
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetModuleHandleW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
FreeEnvironmentStringsW
GetCommandLineW
SetHandleCount
GetFileType
GetStartupInfoA
DeleteCriticalSection
HeapCreate
VirtualFree
HeapFree
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
RaiseException
TerminateProcess
GetCurrentProcess
IsDebuggerPresent
LeaveCriticalSection
VirtualAlloc
HeapReAlloc
GetCPInfo
GetOEMCP
IsValidCodePage
RtlUnwind
LoadLibraryA
InitializeCriticalSectionAndSpinCount
GetLocaleInfoA
GetStringTypeA
MultiByteToWideChar
GetStringTypeW
LCMapStringA
WideCharToMultiByte
LCMapStringW
HeapSize
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
@m42P<
EqPO#f
mkc)U|?
<W^tJ21
#LQo<0@~U
SSSSSSSSSSSSSSSSSSSSSSSSSSS
SSSSSSSSSSSS
SSSSSSSSSSS
SSSSSSSSSS
SSSSSSSSSE
SSSSSSx
SSSSSSS
8[SSSSSSS
\SSSSSSSS
SSSSSSSS
SSSSSSSSSSSSB
SSSSSSSSSSS
}SSSSSSSSSSSS
SSSSSSSSSSSSSSSSSSSSSSSSSSSSSSSSSSSSSSSS
E][[nE\
p''@+>
0[,,,A/
```````````````````````````````````````````````````````````````````````````````````
```````````````````
*```````K
```````````
i$`````````K
FK````````
```````
s```````
s```````KO
```````0i#tUC
````````2F
`````````
K``````````*
1````````````
5``````````````
4FZ``````````````W
``````````````1
i:Fld/c9
````````````````
a`````````````````\
`````````````````
`````````````````
`````````````````
eH```````````````````
`````````````````````Z
````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````````
F7+8s0\
jDHi/8Q
1Wj@&v
Sy{&5MrP
.Jb9 u
,<i>*y
KERNEL32.DLL
mscoree.dll
((((( H
h(((( H
H
xeverubutudih xitiradufumijexetakovilizar
pujonotetudafawufojiy dijebecerebopitaruvazonozaji riferujehonosenipah
xaxelivozi vos
nalovitivexedotarej
mimuburenagaxiza
lifaderotirojilotovuziyezucer
ERRORDIALOG
VS_VERSION_INFO
StringFileInform
081564c6
InternalName
sigzmuegeke.ehi
Copyright
Copyrighz (C) 2021, fodkageta
ProductVersion
29.51.22.11
VarFileInfo
Translation
Error!
Select One:
&Retry
&Abort
&Ignore
2Tewicaholax cigijom nuxazohoxo hacuyoruji pucameto
Yapanuj juvu;Woseh xawusu valosuj yav wuyogemir vewoyameb voyehef robexe@Dica rumegebama napa cazirem meke wolepalozi fizoyosuya gihotobi(Piyilukalila vipoxutudadana yenozimabavo
Cixirarideboga cusuy vorihup
Hugibohawifu popepivu
cGujepavuru mojenunutilono nimezexuraw sicu zopob jewuxolegetivok tujacatarof teyutonibabofoz nicume(Sihohoxuka vuti hinupapamuxabe wovopufeh1Xaxeriwaz habojiv buw barulafefune xeyuxi toyebup
Juz vasux dihimu zuyiworocavec
Topegigorazezoy jukec
Kiyolajak)Jonoseyegir dumiwehoxihugu noruduyaxuzuca
[Jipahusoyidudel ceborecorebu surinunolu gihimisigubaw wajajuzuhoj bucogiwimo mizituxiwibibi
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Clean
Elastic malicious (high confidence)
DrWeb Clean
MicroWorld-eScan Clean
FireEye Generic.mg.aa95e1e1d2c37f9a
CAT-QuickHeal Clean
McAfee Clean
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0056f9be1 )
BitDefender Clean
K7GW Trojan ( 0056f9be1 )
Cybereason Clean
BitDefenderTheta Gen:NN.ZexaF.34058.Iq0@aO4KVNnG
Cyren Clean
Symantec ML.Attribute.HighConfidence
ESET-NOD32 Clean
Zoner Clean
TrendMicro-HouseCall Clean
Paloalto generic.ml
ClamAV Clean
Kaspersky Clean
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.B40D (CLASSIC)
Ad-Aware Clean
Sophos ML/PE-A
Comodo Clean
F-Secure Clean
Baidu Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.hc
CMC Clean
Emsisoft Clean
SentinelOne Static AI - Malicious PE
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Sabsik.TE.B!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
VBA32 BScope.Trojan.Eb
ALYac Clean
TACHYON Clean
Malwarebytes MachineLearning/Anomalous.95%
Panda Clean
APEX Malicious
Tencent Clean
Yandex Clean
Ikarus Clean
eGambit Unsafe.AI_Score_74%
Fortinet Clean
Qihoo-360 HEUR/QVM10.1.4663.Malware.Gen
Avast Clean
CrowdStrike win/malicious_confidence_100% (D)
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.