Static | ZeroBOX

PE Compile Time

2021-01-19 01:27:11

PDB Path

C:\xupot-huseziho\rahotinuli\35 puh\70\lapogixoci\lugo\xili.pdb

PE Imphash

477c037bd85187d535326c948fa8e5de

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0002f6d0 0x0002f800 7.88578376223
.rdata 0x00031000 0x00004dbf 0x00004e00 5.67068755472
.data 0x00036000 0x0288f584 0x00003e00 1.28823737752
.rsrc 0x028c6000 0x00013010 0x00013200 6.49779578138

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_ICON 0x028d83b8 0x00000468 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA GLS_BINARY_LSB_FIRST
RT_DIALOG 0x028d8af0 0x000000a2 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x028d8eb0 0x0000015e LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_STRING 0x028d8eb0 0x0000015e LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_ACCELERATOR 0x028d88d0 0x00000028 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_ACCELERATOR 0x028d88d0 0x00000028 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_GROUP_ICON 0x028d1ff8 0x00000068 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_GROUP_ICON 0x028d1ff8 0x00000068 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_GROUP_ICON 0x028d1ff8 0x00000068 LANG_SERBIAN SUBLANG_ARABIC_ALGERIA data
RT_VERSION 0x028d8938 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data
None 0x028d8928 0x0000000a LANG_NEUTRAL SUBLANG_NEUTRAL data
None 0x028d8928 0x0000000a LANG_NEUTRAL SUBLANG_NEUTRAL data
None 0x028d8928 0x0000000a LANG_NEUTRAL SUBLANG_NEUTRAL data
None 0x028d8928 0x0000000a LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x431008 lstrlenA
0x43100c EnumDateFormatsExW
0x431010 WriteConsoleOutputW
0x431018 GetConsoleAliasA
0x43102c GetUserDefaultLCID
0x431030 WriteConsoleInputA
0x431034 GetComputerNameW
0x431038 SetEvent
0x431040 GetConsoleTitleA
0x431044 CreateActCtxW
0x43104c GetConsoleCP
0x431050 GetVersionExW
0x431058 lstrcpynW
0x431060 GetFileAttributesW
0x431064 VerifyVersionInfoA
0x43106c IsBadWritePtr
0x431074 GetSystemDirectoryA
0x431078 CreateFileW
0x43107c lstrcatA
0x431080 GetACP
0x431084 GetVolumePathNameA
0x431088 FlushFileBuffers
0x43108c InterlockedExchange
0x431090 GetLastError
0x431094 GetProcAddress
0x431098 PeekConsoleInputW
0x4310a0 LocalLock
0x4310ac SetTimerQueueTimer
0x4310b0 GetLocalTime
0x4310b4 WriteConsoleA
0x4310b8 LocalAlloc
0x4310bc DeleteTimerQueue
0x4310c0 CreateTapePartition
0x4310c8 GlobalGetAtomNameW
0x4310d4 GetModuleFileNameA
0x4310d8 GetModuleHandleA
0x4310e0 EndUpdateResourceA
0x4310e4 ReadConsoleInputW
0x4310e8 FindFirstVolumeW
0x4310ec GetCurrentProcessId
0x4310f0 AreFileApisANSI
0x4310f4 LCMapStringW
0x431104 HeapReAlloc
0x431108 HeapAlloc
0x43110c GetModuleHandleW
0x431110 Sleep
0x431114 ExitProcess
0x431118 GetCommandLineA
0x43111c GetStartupInfoA
0x431120 WriteFile
0x431124 GetStdHandle
0x431128 TlsGetValue
0x43112c TlsAlloc
0x431130 TlsSetValue
0x431134 TlsFree
0x431138 SetLastError
0x43113c GetCurrentThreadId
0x431148 HeapCreate
0x43114c VirtualFree
0x431150 HeapFree
0x431154 VirtualAlloc
0x431158 TerminateProcess
0x43115c GetCurrentProcess
0x431160 IsDebuggerPresent
0x431164 LoadLibraryA
0x431178 WideCharToMultiByte
0x43117c SetHandleCount
0x431180 GetFileType
0x431188 GetTickCount
0x431190 RaiseException
0x431194 GetCPInfo
0x431198 GetOEMCP
0x43119c IsValidCodePage
0x4311a0 RtlUnwind
0x4311a4 HeapSize
0x4311a8 GetLocaleInfoA
0x4311ac GetStringTypeA
0x4311b0 MultiByteToWideChar
0x4311b4 GetStringTypeW
0x4311b8 LCMapStringA
Library USER32.dll:
0x4311c0 RealGetWindowClassA
Library ADVAPI32.dll:
0x431000 AdjustTokenGroups

Exports

Ordinal Address Name
1 0x401003 @GetAnotherVice@12
2 0x401000 @SetFirstEverVice@4
!This program cannot be run in DOS mode.
`.rdata
@.data
VVVVVVhL>C
VVVVVV
VVVVVV
uBh}H@
jXh0PC
j hXPC
tNIt?It0It
Y;=xfC
>=Yt1j
j@j ^V
0SSSSS
0SSSSS
0SSSSS
to=xlC
0A@@Ju
URPQQh
_VVVVV
^WWWWW
tRHtCHt4Ht%HtFHHt
PPPPPPPP
PPPPPPPP
t"SS9]
;t$,v-
UQPXY]Y[
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
&{UAUv/
)NJ*)B#
`8WdBv
Fs.HAw%
~Ub).C
p$_R8^
CW%~=
NK <*XH7
D-?G`_
V ]!c'qk
zR<7WZ
0AcHXe
c+_gax
QRZ&/n3O
Js| w)%8
9*ps~^
K^(n3=J
e.1je}
^FDTbE
m]C\~:"0
f<r`i*
ru[Vwt
t7yz-I
WMQ(z;
3Klcy\q#
;Z v-\H
Cg2/4'
a;[Yu6
d=KKtr5
kch}!]
3Q)G[:
~t_lzY
AiLi"M
i[Bb(v
C5I4'HA
=v8)'
~l*w+v+t
2+s%L"
I6olVb
/U&XyL
Sh'`ajsx
)$]ET8
`J;8_e|A
H}hp6a
_!K&\G
0?@.t%I?,
1K^fGH
s~f3jE1
" 1$")G
E6=.<<x
o@ON5G
|&oEWT
lcj_SX
zXK(v_
%Bn 2:N
BV"'8!@
Xca631
5&Xjl,X
Oi`;zT
]D<)W
lFOT0g
@,B$rQnnw
3=gW-8
O|7"S<xh
2e8Fl?
Qmr< E
%a2:Pw
:(/`G\BB
s'{nir
/1%m6|
Ngm0"'*
"lf<gX
ulBD!D
I%Tj~H
$-H&thy
%Pjn0d
@<AO3{
R$X?/l
gE;D4
sb&7z+
^cvHUBh
X)D}_-`
Emd({P
8rZD(6
-IpC_3y
lq.m;;|Ds
A&@*'u#jS
RqCKN&X
Ed*gI]
|,8]4?(d
\4CT7=o
-[xl@7"
|xB)/Z
>F(s;"
a}cP:]
nk]_C8
2CQ8';
'f,!1D
T(kzu5le
zqME\g[3u
?UKViB
pKfqGz86
p~7d'A9
li8x)hG
x@ Msr
.+u?fv3
p"o S2
C3}<eO
F[Er|_
OrKsAt+
BA9;*m
xB)lT
oq&g!<
^0HhW+r
addy c!3q
P4z,ur
&poda|
\8d3Oj
(M>P%i+
kX?"UCH7u
WhT8vG
Mu"__[
&.7ipHT
:];J.1
[+XM%*
T%0Edm
AQ}$V>&
L69[yH4Xm
JuBU@O
s8KbXN
PQ^an|
}Fe}&y'
xYKw2?
c\Aj/m
aIWt5F
^"NFSi
{f;.ha
da9dJa
>Y`47
(uS'tH
MwaSl[
P`@WV)o?~{
E3j|Q2
CV.xZO
XdH|/rp
M:7Fw"3
z:k0l
}0Z@9}2
H*"c_7
xP+Id$S
7=&S&9
V('#7F)
Hci;]H`Y
@oL5>t
P/V/!=
}W>c**
XI"Tn&
t6WB1=y
~*Yr~I:,
Z["7c.
%'\0Y|
xynq<k
/WQ$}J5O
O@O$T=
.V?UV$f
.&f#[j8$
A\W=JL
mI7c\gi0O
fWBi*^
drsd4c
mR:?li?
i"4;o*t
-;Z/(_s
"D{nM6
9|`m%[
-cJBrU
so8'd~
x w5~;^
3]Mm=E
ox\>KC
_3h^9x
zVZw7V
<E%P*14%
qBW-Dx
4?iu}k
jnc+2E
AO+&:|
0\8("W
/.\?SA
#L{5,C
Yt%s:6
K6b00)
}.1_cA
u%` )S
0dKg'A[
!xIz{-
| ([{'
1 s^/W$
BV!oHt
n7[P@P
*,usm/
::cz"{
-K(q%$
Dc:P@"
^7Yinlx
P^Ao(-p
h12`[6
WTLth0r
i!$k@p
>U4)}NYI
F07}ivto
Qr-6,3
|!n}fI
3Ux&e#
\'K}L
9_iCAB
2oE%ii
-heDR(
^~+bqY
l}S,cB
EuLSHD
z(9bgI
UBF~xg
M#HY3j
RJ6gE|
ED()f8
;JOwNx
91*bia
CT$8Hg
=.m2My
DMh#Z
]!tbNv
'V;Q-qW=
Aa87Wkt
$7CVY"
[7Ell;
_Fh)T
z4[?U{
')'/F/
|SuA;(4
R9p$M&R8X
j)Rhnnb
C)8`xs9
oNQW-j
YoNOr|
|;^JCEo'
;(.[%
L?g6'u
V""V>JsRF:
*o5Jis
Whix`Bd-
Nzjjbf6a
W},*O*Ey
7\bZLA
c!iR#e
%XpM]j
;`)8!j
w~[j49
\]cU(-&%
2>jBy0
f=\+w5#X
!)d/(s
p>5Zvb
)=*xl4
yhJx8t
{nGuDM@
;52VED\K
0o!_-<
Y^_+S:
ia1$I|
)I.8|k
")sz >
PFF=gv
}(\>am
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
?ZEM-'^
?{yK+;
?765@Z
?e')lW
UUUUUU
?333333
?333333
?UUUUUU
?$rxxx
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
_nextafter
_hypot
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
GAIsProcessorFeaturePresent
KERNEL32
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
bad allocation
jaxelonagaxijegegocameliyasikexi
gitulurabojipoyuj
hesutuce
kernel32.dll
LocalAlloc
VirtualProtect
divugezenowuxeg fowavaxafarilojihulinemeyoha nalowexukosugulomebemogudoxezi
C:\xupot-huseziho\rahotinuli\35 puh\70\lapogixoci\lugo\xili.pdb
GetSystemDefaultLangID
lstrlenA
EnumDateFormatsExW
WriteConsoleOutputW
InterlockedIncrement
GetConsoleAliasA
InterlockedDecrement
WritePrivateProfileSectionA
GetSystemWindowsDirectoryW
GetEnvironmentStringsW
GetUserDefaultLCID
WriteConsoleInputA
GetComputerNameW
SetEvent
GetConsoleAliasesLengthA
GetConsoleTitleA
CreateActCtxW
InitializeCriticalSection
GetConsoleCP
GetVersionExW
DnsHostnameToComputerNameW
lstrcpynW
SetConsoleCursorPosition
GetFileAttributesW
VerifyVersionInfoA
HeapQueryInformation
IsBadWritePtr
GetCompressedFileSizeA
GetSystemDirectoryA
CreateFileW
lstrcatA
GetACP
GetVolumePathNameA
FlushFileBuffers
InterlockedExchange
GetLastError
GetProcAddress
PeekConsoleInputW
CreateTimerQueueTimer
LocalLock
GetConsoleDisplayMode
EnterCriticalSection
SetTimerQueueTimer
GetLocalTime
WriteConsoleA
LocalAlloc
DeleteTimerQueue
CreateTapePartition
BeginUpdateResourceA
GlobalGetAtomNameW
WaitForMultipleObjects
SetEnvironmentVariableA
GetModuleFileNameA
GetModuleHandleA
WriteConsoleOutputAttribute
EndUpdateResourceA
ReadConsoleInputW
FindFirstVolumeW
GetCurrentProcessId
AreFileApisANSI
KERNEL32.dll
RealGetWindowClassA
USER32.dll
AdjustTokenGroups
ADVAPI32.dll
UnhandledExceptionFilter
SetUnhandledExceptionFilter
HeapReAlloc
HeapAlloc
GetModuleHandleW
ExitProcess
GetCommandLineA
GetStartupInfoA
WriteFile
GetStdHandle
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
DeleteCriticalSection
LeaveCriticalSection
HeapCreate
VirtualFree
HeapFree
VirtualAlloc
TerminateProcess
GetCurrentProcess
IsDebuggerPresent
LoadLibraryA
InitializeCriticalSectionAndSpinCount
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
SetHandleCount
GetFileType
QueryPerformanceCounter
GetTickCount
GetSystemTimeAsFileTime
RaiseException
GetCPInfo
GetOEMCP
IsValidCodePage
RtlUnwind
HeapSize
GetLocaleInfoA
GetStringTypeA
MultiByteToWideChar
GetStringTypeW
LCMapStringA
LCMapStringW
wahimoc.exe
@GetAnotherVice@12
@SetFirstEverVice@4
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
AV3smDQQ<
ssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssssss
sssssssssssssssssssssssss
ssssssssssssssssssssssss
sssssssssssssssssssss
sssssssssssssssssss2
~sssssssssssssssssss
ssssssssssssssssss
_sssssssssssssssssssV
Aqsssssssssssssssssss
sssssssssssssssssssss
l7ssssssssssssssssssssssssssss
ssssssssssssssssssssssssssss
6!ssssssssssssssssssssssssssss
ssssssss`assssssssssssssssss
sssssssy
ssssssssssssssssss
C/Pssssss
ssssssssssssssssss
ssssssssssssssssss
ussssssssssssssssss
sssssssssssssssssss#
@sssssssssssssssssss
ssssssssssssssssssssT
sssssssssssssssssssssZ0'
->ssssssssssssssssssssss
Nsssssssssssssssssssssssss?Yf"|
ssssssssssssssssssssssssss
Ossssssssssssssssssssssssssss
ssssssssssssssss
oooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo<
oooooooooooj
oooooooooo
![ooooooooo
oooooooooo
oooooooooooooW:
ooooooooooooo
ooooooooooooo
ooo$ooooooooo
w2ooooooooo
oooooooooL"
+ooooooooo
Z&8ooooo
>YauK43
>[a|~ty
$MTq>0D~W
)QCt~tv
Z`~zIA
rrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
00Drrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
Crrrrrrrrrrrrrrrrr
rrrrrrrrr
rrrrrrrrrrrrrrUU2
$Urrrr
rrrrrrrrrrrrr4
rrrrrrrrrr
vUrrrrrrrrrd>%P
rrrrrrC
rrrrrr
rrrrrrqe
frrrrrrr
mrrrrrrr
RWR~~=
Llrrrrrrr
rrrrrrr
{y0rrrrrrr
rrrrrrrrr4
rrrrrrrrr
rrrrrrrrrr
rrrrrrrrrrrrr0
Drrrrrrrrrrrrrr
rrrrrrrrrrrrrrr
rrrrrrrrrrrrrrr
rrrrrrrrrrrrrrrrr
rrrrrrrrrrrrrrrrr
WT*UrrrrrrrrrrrrrrrrCbb
rrrrrrrrrrrrrrrrrr
Urrrrrrrrrrrrrrrrrrr=R
>$UrrrrrrrrrrrrrrrrrrrrrrB=
Urrrrrrrrrrrrrrrrrrrrrr
Urrrrrrrrrrrrrrrrrrrrr
lUrrrrrrrrrrrrrrrrrrrrr
rrrrrrrrrrrrrrrrrrrrr
rrrrrrrrrrrrrrrrrrrrr
0rrrrrrrrrrrrrrrrrrrrrrcI
rrrrrrrrrrrrrrrrrrrrrrrC
e0rrrrrrrrrrrrrrrrrrrrrrrrr
b0rrrrrrrrrrrrrrrrrrrrrrrrrrrK
rrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
rrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
rrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
^^^^^^^^^^^^^^^^^^
KeF^^{w
^^X|-6
.`v^^^^A
&^^^^^^
^^^^^^^
^^^^^^^
^^^^^^^^4
k^^^^^^^^^^qS
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
*Qp; j
kFKj18R
4YkC(v
U{{'7MuQ
4k~\0c
1Lc;"v
/<kA,|
{6d~~Bl~Z
]

]
]
6qqqq6




]mD777
qqYYYYY

]]<]<]66]



D777])










,,,,,,,

,,,,,,,,

999999







++++|++|+|+++

||||www+w





GGGGGDGDDDDDDDVVV77G
]
GDGDDDDDVVV`
]
GGGGGG

]
]
&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&
}&&&&&&&&&&&&&&&&}
&&&&&&&&&&&&&&
}}}}}}
NNNuNuNN
}|}||}||||||
77JEEEEEEEEEEE77777777777E::::::::::::J777777777J::
J J J J
::E77777777E:
:K77777777E:
:K77777777E:
:K77777777E:
:K77777777E:
:K77777777E:
:K77777777E:
:: ::
:K77777777E:
::K::
:K77777777E:
:K77777777E:
:K77777777E:N
N:K77777777E:
:K77777777E:
:K77777777E:
:K77777777E:
""""""""
:K77777777E:M
M:K77777777E
:E777777777EEEEEEEEEEEEEE777777777777777777777777777777777777777777777777777777777777777777777777777777777
MRRRRRRRM
MRRRRRRRM
7RRRRRRR7
7RRRRRRR7
777777777
|wxz}wy
#$ *dakw
:H;+bod
mscoree.dll
KERNEL32.DLL
((((( H
h(((( H
H
ribaxodekuhewem
lapahinizi
ERRORDIALOG(
VS_VERSION_INFO
StringFileInform
080564c6
InternalName
sagzmeoleke.ewi
Copyright
Copyrighz (C) 2021, fudkageta
ProductVersion
7.21.22.123
VarFileInfo
Translation
Error!
Select One:
&Retry
&Abort
Zaj sozapubujobih%Nocisi wito bud yaronuba rajometavokeADepavisapuju ravexemacehazas buvozekurutahe joju harahugepaga nov#Wamexuyacekoz dafecitis hucuhejudelLRapuhapuwokeni pilenisovedo leh viruwecuyej gifariza bimemecofocedor nukawocTBavenebihixa tusayezejifiz tetasodedowaf rizovukuyami xaromupo kasizelox razicomemox?Xibusejaxutuhix cupanigaloxul sufetugijeyod vukuwuneveki yatuvo
Xeposo,Zabe zuciy gexevezuxusaz sowa yen zerodesiru
Keyixubuto
Zozacux gopimicuhojah wotani#Dapavabasuto bedufab dolu fihusujer$Busavuy nuloketapig dicagad sem tovo
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.Noon.l!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.46813067
FireEye Generic.mg.46b2b8e7621a93ae
CAT-QuickHeal Clean
McAfee Packed-GDT!46B2B8E7621A
Malwarebytes Trojan.MalPack.GS
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0056f9be1 )
BitDefender Trojan.GenericKD.46813067
K7GW Trojan ( 0056f9be1 )
Cybereason malicious.1e0eb6
Baidu Clean
Cyren W32/Kryptik.EWJ.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HMCU
APEX Malicious
Paloalto generic.ml
ClamAV Win.Malware.Generic-9886591-0
Kaspersky HEUR:Trojan-Ransom.Win32.Blocker.gen
Alibaba Trojan:Win32/runner.ali1000123
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.D82C (CLASSIC)
Ad-Aware Trojan.GenericKD.46813067
Sophos Mal/Generic-S
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Mal_HPGen-50
McAfee-GW-Edition BehavesLike.Win32.Generic.fc
CMC Clean
Emsisoft Trojan.Agent (A)
SentinelOne Static AI - Suspicious PE
GData Trojan.GenericKD.46813067
Jiangmin Clean
MaxSecure Trojan.Malware.300983.susgen
Avira Clean
MAX malware (ai score=86)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Ransom.Win32.STOP.ko!se37341
Arcabit Trojan.Generic.D2CA4F8B
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Ransom:Win32/StopCrypt.MPK!MTB
Cynet Malicious (score: 100)
AhnLab-V3 CoinMiner/Win.Glupteba.R437681
Acronis suspicious
BitDefenderTheta Gen:NN.ZexaF.34088.sq1@amDvdhpG
TACHYON Clean
VBA32 BScope.TrojanRansom.Blocker
Panda Clean
Zoner Clean
TrendMicro-HouseCall Mal_HPGen-50
Tencent Win32.Trojan.Inject.Auto
Yandex Clean
Ikarus Trojan.Crypt
eGambit Unsafe.AI_Score_71%
Fortinet W32/GenKryptik.FJBW!tr
Webroot Clean
AVG FileRepMetagen [Malware]
Avast FileRepMetagen [Malware]
CrowdStrike win/malicious_confidence_100% (W)
Qihoo-360 Win32/Heur.Generic.HwoCUugA
No IRMA results available.