Static | ZeroBOX

PE Compile Time

2021-04-07 07:53:24

PDB Path

C:\vubaday_xox_jivote.pdb

PE Imphash

ea6e9add4feec4142f4eaf80b256f47a

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00022a80 0x00022c00 7.48903359578
.rdata 0x00024000 0x0000599c 0x00005a00 4.51613407918
.data 0x0002a000 0x0000c4f4 0x00002600 2.74296851386
.rsrc 0x00037000 0x0006a320 0x0001d400 6.445543657

Resources

Name Offset Size Language Sub-language File type
BUJAHAGIRAMOMEVAXESAB 0x00051b00 0x00000636 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD ASCII text, with very long lines, with no line terminators
YOCUSIDIHEBOSIZORIYEPASUGIHAXEDO 0x00051478 0x00000685 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD ASCII text, with very long lines, with no line terminators
RT_CURSOR 0x00053198 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x00053198 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x00053198 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_STRING 0x00053f00 0x0000041e LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_STRING 0x00053f00 0x0000041e LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_ACCELERATOR 0x00052180 0x00000018 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_ACCELERATOR 0x00052180 0x00000018 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_GROUP_CURSOR 0x00053a40 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x00053a40 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x000443a0 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000443a0 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000443a0 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000443a0 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x00053a68 0x000001b0 LANG_NEUTRAL SUBLANG_NEUTRAL data
None 0x00052198 0x0000000a LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x424000 HeapReAlloc
0x424004 GlobalDeleteAtom
0x424008 GetLocaleInfoA
0x424014 ReadConsoleA
0x42401c SetEvent
0x424020 GetCommandLineA
0x424024 CreateActCtxW
0x424028 GlobalAlloc
0x42402c CopyFileW
0x424030 FreeConsole
0x424038 HeapCreate
0x42403c FindNextVolumeW
0x424040 GetFileAttributesW
0x424044 GetModuleFileNameW
0x424048 lstrlenW
0x42404c SetConsoleTitleA
0x424050 FlushFileBuffers
0x424054 DeactivateActCtx
0x424058 InterlockedExchange
0x42405c GetProcAddress
0x424064 RemoveDirectoryA
0x424068 VerLanguageNameW
0x42406c WriteConsoleA
0x424070 LocalAlloc
0x424078 GetTapeParameters
0x424080 SetConsoleTitleW
0x424084 GetModuleHandleA
0x424088 EraseTape
0x42408c VirtualProtect
0x424090 EndUpdateResourceA
0x424094 FindFirstVolumeW
0x424098 GetCurrentProcessId
0x4240a0 FindNextVolumeA
0x4240a4 lstrcpyW
0x4240a8 CreateFileA
0x4240ac WideCharToMultiByte
0x4240b8 MultiByteToWideChar
0x4240bc Sleep
0x4240cc GetLastError
0x4240d0 HeapFree
0x4240d4 TerminateProcess
0x4240d8 GetCurrentProcess
0x4240e4 IsDebuggerPresent
0x4240e8 HeapAlloc
0x4240ec GetStartupInfoW
0x4240f0 GetCPInfo
0x4240f4 RtlUnwind
0x4240f8 RaiseException
0x4240fc LCMapStringW
0x424100 LCMapStringA
0x424104 GetStringTypeW
0x424108 VirtualFree
0x42410c VirtualAlloc
0x424110 GetModuleHandleW
0x424114 TlsGetValue
0x424118 TlsAlloc
0x42411c TlsSetValue
0x424120 TlsFree
0x424124 SetLastError
0x424128 GetCurrentThreadId
0x42412c SetFilePointer
0x424130 CloseHandle
0x424134 ExitProcess
0x424138 WriteFile
0x42413c GetStdHandle
0x424140 GetModuleFileNameA
0x424148 GetCommandLineW
0x42414c SetHandleCount
0x424150 GetFileType
0x424154 GetStartupInfoA
0x42415c GetTickCount
0x424164 GetStringTypeA
0x424168 HeapSize
0x42416c GetACP
0x424170 GetOEMCP
0x424174 IsValidCodePage
0x424178 GetUserDefaultLCID
0x42417c EnumSystemLocalesA
0x424180 IsValidLocale
0x424188 SetStdHandle
0x42418c GetConsoleCP
0x424190 GetConsoleMode
0x424194 LoadLibraryA
0x424198 GetLocaleInfoW
0x42419c GetConsoleOutputCP
0x4241a0 WriteConsoleW

Exports

Ordinal Address Name
1 0x401763 @GetFirstVice@8
!This program cannot be run in DOS mode.
`.rdata
@.data
FFYY;t$
FFYY;t$
t,hHjB
G09_(u
SVWj>3
0WWWWW
0WWWWW
QQSVWd
uQh`BB
^SSSSS
^SSSSS
0SSSSS
t"SS9]
0SSSSS
t h$TB
tNIt?It0It
u&hpSB
>=Yt1j
QQSVWh
j@j ^V
HtHu4j
s[S;7|G;w
YYh4TB
tR99u2
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
0A@@Ju
0SSSSS
PPPPPPPP
0SSSSS
tNh\]B
t=hX]B
u%h`]B
PPPPPPPP
t+WWVPV
URPQQh`
0WWWWW
AAFFf;
u,VVWV
t VV9u
;t$,v-
UQPXY]Y[
_VVVVV
^WWWWW
0SSSSS
_VVVVV
<+t(<-t$:
+t HHt
u;h fB
Rk6A@'
R}*>6I+
S$_-de
rAgr_\
6{W!Kv
i\x3zRL
h/ymj|:N
fSk1V9
3-^GeY
?SiZHoQJ
\cWR_j
k_&y:D
he\U}?
=6~k/q
]+p,ID
x<D]oc
|aU)+J
Gk-~a:
]I ;T#
A.!{Y<
bYY(yS
bw\W}X
h&;IX
[#'^6n
,c)N`x
5pg;vz"
^W'Y!KzbX
yp/@LN
D\:6:v\
=&^p+U_22w
68}IZ:
\*+ze7
hF*^kso
8eo7;
2SN73H
&$mt#p
zXz]Wk
A"X0>!
^':r, [F3
,pr{WTJ
Icy3zl
k|Pv#n
6Q|K7Gp
XCgx)
m{L/M3LF
C9Xg{X
^f+,q#a
5*Hw$c!
{ByW T
ew/XOh
iHcO_{'u
(MWFIdP
w|kl+z
yUnag,;5
|L\c|/
"N%vkx
(v8chKgQ
lz$iEJz
v-%$[m
TBisD<
e=[XRzl
3WD(l
r-UeR `
B0,$>ZnyO
t8`yIk
8tsCcI
]N)\{M
N%eD %
?w]1{V
TR>\rS0
DH6S,*
dR\sfPU
=yYF _
OVmv7X
~sG\/.
|/WYO2
p00]A1@
6-#N,Z6
g<eYeVR
>g$9y
9*@Q]w
X#UnDU?
]8=AIh
zH2qdh
;;h!eL
.soJXyvB
%:$wy<
$3@lH
*6liM5;
XXgFK8bvt
+9B+OF
;5t"%n
O`nA>
oVCHSk
)iN5^6
|(uckD
ik6A);
#2<&w4U
i_f"eo
*!4E<7M
8q-y0
dMwAS6
X`_6$`B+A
$%`]::
ZTwW~n
X#BTnaP
e %`m|C=$'
8WRbY$~
r8g'l9
M'lsUp
c\q.|_
2I>*0XEj
QV}p5Z~sW{L
NhoQC-
*;ff A
$Du+J@\:
ba:d[#m6
bad allocation
string too long
invalid string position
Unknown exception
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
bad exception
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
_nextafter
_hypot
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
GAIsProcessorFeaturePresent
KERNEL32
CONOUT$
1#QNAN
1#SNAN
bad allocation
kuhidukefub wijobijawimusago zalewijofuhuxukuyepanujonus gohabiraposekenapogakafete calaluneyukuwaxetoyumafotamobi
cehiwah manamuxezexemuwetesaxuzaduzawor
darujuwihunuyun zabebedidez zizofokajitaxipogejipubowexo gifitutatopumiduc deguvofagebifut
VirtualProtect
kernel32.dll
LocalAlloc
ojodobagulay
ios_base::badbit set
ios_base::failbit set
ios_base::eofbit set
bad cast
C:\vubaday_xox_jivote.pdb
HeapReAlloc
GlobalDeleteAtom
GetLocaleInfoA
InterlockedIncrement
GetQueuedCompletionStatus
ReadConsoleA
GetEnvironmentStringsW
SetEvent
GetCommandLineA
CreateActCtxW
GlobalAlloc
CopyFileW
FreeConsole
LeaveCriticalSection
HeapCreate
FindNextVolumeW
GetFileAttributesW
GetModuleFileNameW
lstrlenW
SetConsoleTitleA
FlushFileBuffers
DeactivateActCtx
InterlockedExchange
GetProcAddress
BeginUpdateResourceW
RemoveDirectoryA
VerLanguageNameW
WriteConsoleA
LocalAlloc
SetConsoleWindowInfo
GetTapeParameters
SetEnvironmentVariableA
SetConsoleTitleW
GetModuleHandleA
EraseTape
VirtualProtect
EndUpdateResourceA
FindFirstVolumeW
GetCurrentProcessId
GetPrivateProfileSectionW
FindNextVolumeA
lstrcpyW
KERNEL32.dll
WideCharToMultiByte
InterlockedDecrement
InterlockedCompareExchange
MultiByteToWideChar
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
GetLastError
HeapFree
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
HeapAlloc
GetStartupInfoW
GetCPInfo
RtlUnwind
RaiseException
LCMapStringW
LCMapStringA
GetStringTypeW
VirtualFree
VirtualAlloc
GetModuleHandleW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
SetFilePointer
CloseHandle
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
FreeEnvironmentStringsW
GetCommandLineW
SetHandleCount
GetFileType
GetStartupInfoA
QueryPerformanceCounter
GetTickCount
GetSystemTimeAsFileTime
GetStringTypeA
HeapSize
GetACP
GetOEMCP
IsValidCodePage
GetUserDefaultLCID
EnumSystemLocalesA
IsValidLocale
InitializeCriticalSectionAndSpinCount
SetStdHandle
GetConsoleCP
GetConsoleMode
LoadLibraryA
GetLocaleInfoW
GetConsoleOutputCP
WriteConsoleW
CreateFileA
nojop.exe
@GetFirstVice@8
.?AV_Locimp@locale@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$ctype@_W@std@@
.?AUctype_base@std@@
.?AVfacet@locale@std@@
.?AV?$basic_stringstream@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@
.?AV?$basic_stringbuf@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@
.?AV?$basic_iostream@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_ostream@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_istream@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_ios@_WU?$char_traits@_W@std@@@std@@
.?AV?$_Iosb@H@std@@
.?AVios_base@std@@
.?AVruntime_error@std@@
.?AVexception@std@@
.?AVfailure@ios_base@std@@
.?AVbad_cast@std@@
.?AVbad_alloc@std@@
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
%%%%%%%%%%%%%%%%
L#!!!!g
!g!g!g!gg
gg!g!!
%%%%%%%%%%%%%%%%
%%%%%%%%%%%%%%%%b
!!)b%%%%%%%%%%%%%%%%>b!
f5 X55 5
%%%%%%%%%%%%%%%%>
%%%%%%%%%%%%%%%%V
%%%%%%%%%%%%%%%%z
%%%%%%%%%%%%%%%%)b
%%%%%%%%%%%%%%%%U
%%%%%%%%%%%%%%%%U
>%%%%%%%%%%%%%%%%
]U%%%%%%%%%%%%%%%%
U%%%%%%%%%%%%%%%%
<^Y2Zg
%%%%%%%%%%%%%%%%
>%%%%%%%%%%%%%%%%
%%%%%%%%%%%%%%%%u
%%%%%%%%%%%%%%%%
%%%%%%%%%%%%%%%%
<E%%%%%%%%%%%%%%%%
*L%%%%%%%%%%%%%%%%
%%%%%%%%%%%%%%%u
>%%%%%%%%%%%%%%%
%%%%%%%%%%%%%%%
%%%%%%%%%%%%%%%
%%%%%%%%%%%%%%%
%%%%%%%%%%%%%%%
%%%%%%%%%%%%%%%a
%%%%%%%%%%%%%%%a
%%%%%%%%%%%%%%%>6
AARARw
%%%%%%%%%%%%%
La%%%%%%%%%%%%
a%%%%%%%%%%%%
%%%%%%%%%%%%V
%%%%%%%%%%%%U
%%%%%%%%%%%%
%%%%%%%%%%%%
%%%%%%%%%%%%
%%%%%%%%%%%%w
u%%%%%%%%%%%%
%%%%%%%%%%%%%
z\llll"
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
wj(\;w
,ljCbg
H8n'R7^-
&lqiF}
+}}}f{
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBB
BBBBBBBBBgvp^
BBBBBBBBBBBBBB88(X{
8BBBBgv
;BBBBBBBBBBBBB
EBBBBBBBBBB
8BBBBBBBBB[
EBBBBBB
EBBBBBB
EBBBBBB
BBBBBBBi
BBBBBBB
wG|LL=LD
1TvBBBBBBB7
XBBBBBBBX
BBBBBBB
xDxxbxM
BBBBBBBBB
BBBBBBBBB
BBBBBBBBBB
XBBBBBBBBBBBBB
BBBBBBBBBBBBBB
BBBBBBBBBBBBBBB
BBBBBBBBBBBBBBB
;BBBBBBBBBBBBBBBBB
n|Mv_BBBBBBBBBBBBBBBBB
&8BBBBBBBBBBBBBBBB
;BBBBBBBBBBBBBBBBBB
%8BBBBBBBBBBBBBBBBBBB
8BBBBBBBBBBBBBBBBBBBBBBW]
8BBBBBBBBBBBBBBBBBBBBBB0
0*8BBBBBBBBBBBBBBBBBBBBBEN
v8BBBBBBBBBBBBBBBBBBBBBE
BBBBBBBBBBBBBBBBBBBBBE
EBBBBBBBBBBBBBBBBBBBBBE
BBBBBBBBBBBBBBBBBBBBBBc
EBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
*EBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
.................................................q
#....4
.....3
MX......[
.......5
C.......I
........
..........
........
xW_~@J^
'Gjw\?
,No~eH
KKKKrryv
<<VU$Zg
C1pppp
&pp&p~E
SSXXX(
www6666B
mmmmmmmmmmm
mmmmmmmmmmm
mmmmmmmmmmm
mmmmmmmmmmm
mmmmmmmmmmmNi
mmmmmmmmmmmo
ZmmmmmmmmmmmN
mmmmmmmmmmmV
mmmmmmmmmmm
mmmmmmmmmmm@
mmmmmmmmmmm
mmmmmmmmmmmN3
mmmmmmmmmmmV/*
mmmmmmmmmmmN/j
%mmmmmmmmmmmNuf
mmmmmmmmmmm
mmmmmmmmmmm
]CJJr
%mmmmmmmmmmm
%mmmmmmmmmmm
mmmmmmmmmmm
mmmmmmmmmmm
[7[777[F
mmmmmmmmmmmH(
mmmmmmmmmmmo
mmmmmmmmmmm
!\mmmmmmmmmmm
mmmmmmmmmmm
mmmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
#########
#########
########!
########
########!
########
########
########
########
########
########
########
########
6########~!
J########!
J########
########
c#########################################################################################################################################################
@zzzzzz
lzzzzz)m
VXzzzzz
:[3zzzzz
hzzzzzan
zzzzz1
szzzzz%
zzzzzz
9?,6nnw
NZJ8uxt
]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]
]]]]]]
OOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO
]]]]]]
]]]]]]
0000000000000000000000000000
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
0000000
]]]]]]
00EP~Y
]]]]]]
00000000
0^PYVII
]]]]]]
000000
]]]]]]
0000000000B
]]]]]]
000000
]]]]]]
0000000@P
]]]]]]
0000000k
]]]]]]
000000
]]]]]]
000000
]]]]]]
000000
]]]]]]
000000
]]]]]]
000000
]]]]]]
]]]]]]
]]]]]]Kj
jK]]]]]]
]]]]]]
]]]]]]
]]]]]]
PW]]]]]]
NP]]]]]]
P]]]]]
PP]]]]
//////
P]]]]]]
P]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]P
P]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]P
P]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]PPP]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]P]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]
dddddddddddddd
dddddd
ddddddd
dddddd
dddddS
ffffffff
BBBBbbb
ffffffffffffffffffff
AAAAAA
AAAAAAA
AAAAAAAA
VVVVVV^^^
NP|%~~~~YYDD
"~~~~D
~~~~~~~~~~~~~~~~~~~~~Iz~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
uuuuuuuuuuuu
4Q\ym@j
,BL_L-^
Zahutoleh. Jixefazi. Kuju pizen rufenoza deraseb zogecoyedetuc. Necole juhuvitidiya. Kavihulivahug bahanuva xagoleni. Xozagemi yezoy wuso canihobamimuraf gupo. Tutapafonalejuc. Wuyiwil xejuwunafuyebic xotohaxamuvavuf leliwutotu liye. Hayireyimufor nuluwasosawoneg pizavixipuxosav. Gitajufapum. Gep jidajifakutunup caxatumu sucuye. Tumasutitozar napob lalohagecopop bubeg. Mosirah xogu wufagigafito. Wixil yolonetebuyi godez yorogapocayem bag. Vin jemuwa vapilo vezoci wuzapoju. Vipuwofobux notalunocad popod yasiretepiyef. Fedeceyurix hesej. Nateb comu yudoh. Vofelek. Gicurasitu nawegudoxulav wibomezisute xurocudo padotiwisaf. Buyujovotufike. Wigajaworugu gen vocigey teto. Wuzinode jib dapedab geyix. Muhuwem juvazesavadito vajutoteno herocecoco wuya. Rihezewebusif kosof zivedoc kez hedavuwekokowe. Dilepinokovate kaminucujag nopafubekil doluy. Feg. Tubaf hilohobofinanet xadol ropogirekivohaz. Vicaniyere nukawi nina. Yejenaxodobicex cimowativuda suvimog xiyalawi dajujeximotopak. Vubovosise tapet tegahafavajikud tixu
Vujadagixo potinujeyiwulep motesalorutug purozamanol. Bil corel. Piyoboyobe xamu lujosorobo. Heditijurozexum. Fobiwepijo nopedico fameruc dirawin. Jogaxijivon kivageho liziya fanusadof. Pufisujawap borale leledoson jidosib hehizikaz. Pocefifu febulovizavoy gedo poludepajiwuyik cuf. Ceri yara jajubogo zodanuroy. Boyavamixikutas buwota wuhezupowugu gukogokodabebar miboxepuhugupej. Dusijadixumito hisufajazolixut wugexa. Cupuhusi paxavuwufey wobibizoropaf xonaz kilu. Rajacu vuxirucigupi. Zapohati fifuyowutal. Lucuyucuz cetidicoriye meresisewak. Dopebajej bihifa zamutajuhi. Vopabagihoyey nizuyu. Sagetanuco dulihixiwab wutoforelicona netofulisosaliy dujoyaxumaxet. Pabikuripawi rugiwuyovubacux lenabelabej cubulij. Ziyurodegapafe zogayaze coco. Hegebuvigebaw. Puka ginexo. Yijonasopa. Wul cizokomugetotes babad zamonurecocor. Bax jaxokebupudewut. Piwadisoriw fuyozucuzakahuk viho. Xikolaguhigaki bem. Sumure jicusasaxiz naz sajixeyi. Fuyejemaruvi. Gove. Bucinero dexanocate tuvijar. Taficaci. Fiyurafe. Vuduyabizuzus cutel
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

((((( H
h(((( H
H
KERNEL32.DLL
mscoree.dll
dutudexiw
boxodexov rujavivokubecedubew lanokopipematonadofus pitoxabehobowerokinohogaxituk
gewudubudihewujawejurorivujetit
ruvalobibukuzefukeku
mumefere pavegurovi
miwipufurudugiciyumenuzujifuhuvutedizocuditejeyimitip
yojepajumoninoxugevotecokuyabapesuwayidamewakejivumatuturoguxowofukojurirotuyumiwim
Sekovufoyun romeru
Powu bekitahexozoman yoxefo
YOCUSIDIHEBOSIZORIYEPASUGIHAXEDO
BUJAHAGIRAMOMEVAXESAB
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
020224a6
InternalName
sajbmianozu.iya
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
2.4.59.42
VarFileInfo
Translation
z/Xuyahetumoral yukexuvuc buluku lawipi nofigasob
Puwimeneyimi
Wamejofic'Xayejosaropazo cuduzo yijufe xariwegoxi
Sor/Piyagog degud ranijupum ricaziledojasi pujesahocBikameviko sixuyacenafupi loko nebekunodufuge nipunahoreheh xigavopuh rek zolil zupo ragetifubodomiVMemoxalajewas gagokoci sejigubugazelo defepaya cagedazevawut fihew dijiraxi tuvuholewo
Fokecahalox
jWepezikowi geyolevaki mezekeri toh nabikakonupa rucijelilifoxu hicuyasasuvan mifawonupemex lata tabifovaji
Copu yakocapeSYixidi xuliyico bajapapakuri bubupumayep lizasafinaj jacip penifegocosid notefanura{Menefapozohunik gozopiritutu vevetaxezoz gudolake siludokudexon kafizedasex boxejagugax fatemukexihudep gugifeve sadeyezere
Rafo mogogiwolobufud Bozivu nani tazogocafirepa japil
YXakicemijiban dezaxisatoti culibavodu tosutaderozateb vit gedawayorese liw puxuriweyokaba
-Zapopu fawun nexemoluv sepuvijulayifuy hahiro
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Clean
FireEye Generic.mg.80deb4864d3e01ae
CAT-QuickHeal Clean
ALYac Clean
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (D)
BitDefender Gen:Variant.Jaik.48277
K7GW Clean
K7AntiVirus Clean
Baidu Clean
Cyren W32/Kryptik.EWJ.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 Clean
APEX Malicious
Paloalto generic.ml
Cynet Malicious (score: 100)
Kaspersky UDS:Backdoor.Win32.Androm.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Tencent Clean
Ad-Aware Gen:Variant.Jaik.48277
Emsisoft Gen:Variant.Jaik.48277 (B)
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.MultiPlug.dh
CMC Clean
Sophos ML/PE-A
Ikarus Trojan.Crypt
GData Gen:Variant.Jaik.48277
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=81)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
Microsoft Trojan:Win32/Sabsik.FL.B!ml
AhnLab-V3 Clean
Acronis suspicious
McAfee Clean
TACHYON Clean
VBA32 Clean
Malwarebytes Trojan.MalPack.GS
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.Generic@ML.98 (RDML:BNfUBZJIGhbAK9eRKBaT3g)
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Unsafe.AI_Score_99%
Fortinet Clean
BitDefenderTheta Gen:NN.ZexaF.34170.sq0@ae8FHYei
Cybereason malicious.7ac5d4
Avast Clean
MaxSecure Clean
No IRMA results available.