Static | ZeroBOX

PE Compile Time

2020-06-11 15:43:10

PDB Path

C:\tinevuxere\71\meya62_tezosukeg\yenitil.pdb

PE Imphash

f47739d0cfd89d51cbbbec502f2604c9

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00022d90 0x00022e00 7.49434117376
.rdata 0x00024000 0x00005971 0x00005a00 4.51021837499
.data 0x0002a000 0x0000c3f4 0x00002600 2.74098525614
.rsrc 0x00037000 0x0006a328 0x0001d400 6.44401374491

Resources

Name Offset Size Language Sub-language File type
BUJAHAGIRAMOMEVAXESAB 0x00051b00 0x00000636 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD ASCII text, with very long lines, with no line terminators
YOCUSIDIHEBOSIZORIYEPASUGIHAXEDO 0x00051478 0x00000685 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD ASCII text, with very long lines, with no line terminators
RT_CURSOR 0x00053198 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x00053198 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x00053198 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00050f98 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_STRING 0x00053f08 0x0000041e LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_STRING 0x00053f08 0x0000041e LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_ACCELERATOR 0x00052180 0x00000018 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_ACCELERATOR 0x00052180 0x00000018 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_GROUP_CURSOR 0x00053a40 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x00053a40 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x000443a0 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000443a0 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000443a0 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000443a0 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x00053a68 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data
None 0x00052198 0x0000000a LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x424000 GlobalDeleteAtom
0x424004 GetLocaleInfoA
0x424008 HeapAlloc
0x42400c EndUpdateResourceW
0x424018 ReadConsoleA
0x424020 SetEvent
0x424024 GetCommandLineA
0x424028 CreateActCtxW
0x424030 GlobalAlloc
0x424034 CopyFileW
0x424038 FreeConsole
0x424040 HeapCreate
0x424044 FindNextVolumeW
0x424048 GetFileAttributesW
0x42404c GetModuleFileNameW
0x424050 lstrlenW
0x424054 SetConsoleTitleA
0x424058 FlushFileBuffers
0x42405c DeactivateActCtx
0x424060 InterlockedExchange
0x424064 GetProcAddress
0x42406c WriteConsoleA
0x424070 RemoveDirectoryW
0x424078 GetTapeParameters
0x424080 SetConsoleTitleW
0x424084 GetModuleHandleA
0x424088 EraseTape
0x42408c VirtualProtect
0x424090 GetCurrentProcessId
0x424098 FindNextVolumeA
0x42409c lstrcpyW
0x4240a0 CreateFileA
0x4240a4 WideCharToMultiByte
0x4240b0 MultiByteToWideChar
0x4240b4 Sleep
0x4240c4 GetLastError
0x4240c8 HeapFree
0x4240cc TerminateProcess
0x4240d0 GetCurrentProcess
0x4240dc IsDebuggerPresent
0x4240e0 HeapReAlloc
0x4240e4 GetStartupInfoA
0x4240e8 GetCPInfo
0x4240ec RtlUnwind
0x4240f0 RaiseException
0x4240f4 LCMapStringW
0x4240f8 LCMapStringA
0x4240fc GetStringTypeW
0x424100 VirtualFree
0x424104 VirtualAlloc
0x424108 GetModuleHandleW
0x42410c TlsGetValue
0x424110 TlsAlloc
0x424114 TlsSetValue
0x424118 TlsFree
0x42411c SetLastError
0x424120 GetCurrentThreadId
0x424124 SetFilePointer
0x424128 CloseHandle
0x42412c ExitProcess
0x424130 WriteFile
0x424134 GetStdHandle
0x424138 GetModuleFileNameA
0x424144 SetHandleCount
0x424148 GetFileType
0x424150 GetTickCount
0x424158 GetStringTypeA
0x42415c HeapSize
0x424160 GetACP
0x424164 GetOEMCP
0x424168 IsValidCodePage
0x42416c GetUserDefaultLCID
0x424170 EnumSystemLocalesA
0x424174 IsValidLocale
0x42417c SetStdHandle
0x424180 GetConsoleCP
0x424184 GetConsoleMode
0x424188 LoadLibraryA
0x42418c GetLocaleInfoW
0x424190 GetConsoleOutputCP
0x424194 WriteConsoleW

Exports

Ordinal Address Name
1 0x401787 @GetFirstVice@8
!This program cannot be run in DOS mode.
`.rdata
@.data
FFYY;t$
FFYY;t$
t,hDjB
G09_(u
SVWj>3
0WWWWW
0WWWWW
QQSVWd
uQhPBB
^SSSSS
^SSSSS
0SSSSS
GWhpLB
t"SS9]
0SSSSS
t$htLB
tNIt?It0It
u&h`SB
>=Yt1j
j@j ^V
FVhpLB
HtHu4j
s[S;7|G;w
YYh TB
tR99u2
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
0A@@Ju
0SSSSS
PPPPPPPP
0SSSSS
tNhL]B
t=hH]B
Vj@hpZB
u%hP]B
PPPPPPPP
t+WWVPV
URPQQh
u,VVWV
t VV9u
;t$,v-
UQPXY]Y[
_VVVVV
^WWWWW
0SSSSS
_VVVVV
<+t(<-t$:
+t HHt
I=\cj
9j@T3t
;M'k-S
/sve9
jM.Qj9
xDuo'0a
PV]@'}
D2"DH)7
(Kzh[z
pdp6Tb
i*VrF:
md%%5;
.,bKIE
~ PDOL0
0;<_sM
ziDm8s
uXSv[R
N WoU)g%
7H;+Z0
q,w^Of
>]3izf+
-65X@l$
{Tw&5oa
gwt'oL/
2]Ud]r
c)4,sf6
0EQIu4
pjcP?,
uD] X#M
.My(?U
-D7u<)
xy,u^=;
pes,wphJ
R.Y91g
)>]pB-
&J~C<o
YysTOl
a>@{DzN
<`=VMG
` W3hL
qQ9ncB
dRK?zo$
(}O%p3<!
=},1O^
ti!`<|
9AG8UD(
P|>re,
8S<:b6N{
TEXm D+
PM^"25
,>h[[o
Y{.m0TS
/Jq}WX
fd V_F
d6c"~c
Po<s`.
!-({,@
cq=w(
I{r:M8L
&S@;'d
caX$^L
8xhY2,
yPLeDi7
=LeKm;
[h;J|
R^k@EAGyd
VG6nJk
bNO:/~16
\nGFbF\
:d,N;B
_Cw@vqic
!MID7E
9&x"n*r
XMXFo4#8
(W)<(~
eCe|q=l
p8wG%(
z 'Cyo
>/#v;3o
6!~SOx
!jE3Ix1
P(f`H7
~-gq fH
D(Wj0M
_34K#gB
PmQC0La
u8TA2@i
mheN#}
qd((y<5
<j5X`n
<LZ|{s[
-a Pky
"/D$=X
bad allocation
string too long
invalid string position
Unknown exception
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
bad exception
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
_nextafter
_hypot
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
GAIsProcessorFeaturePresent
KERNEL32
CONOUT$
1#QNAN
1#SNAN
bad allocation
kuhidukefub wijobijawimusago zalewijofuhuxukuyepanujonus gohabiraposekenapogakafete calaluneyukuwaxetoyumafotamobi
cehiwah manamuxezexemuwetesaxuzaduzawor
darujuwihunuyun zabebedidez zizofokajitaxipogejipubowexo gifitutatopumiduc deguvofagebifut
VirtualProtect
kernel32.dll
LocalAlloc
ios_base::badbit set
ios_base::failbit set
ios_base::eofbit set
bad cast
C:\tinevuxere\71\meya62_tezosukeg\yenitil.pdb
GlobalDeleteAtom
GetLocaleInfoA
HeapAlloc
EndUpdateResourceW
InterlockedIncrement
GetQueuedCompletionStatus
ReadConsoleA
GetEnvironmentStringsW
SetEvent
GetCommandLineA
CreateActCtxW
GetEnvironmentStrings
GlobalAlloc
CopyFileW
FreeConsole
LeaveCriticalSection
HeapCreate
FindNextVolumeW
GetFileAttributesW
GetModuleFileNameW
lstrlenW
SetConsoleTitleA
FlushFileBuffers
DeactivateActCtx
InterlockedExchange
GetProcAddress
BeginUpdateResourceW
WriteConsoleA
RemoveDirectoryW
SetConsoleWindowInfo
GetTapeParameters
SetEnvironmentVariableA
SetConsoleTitleW
GetModuleHandleA
EraseTape
VirtualProtect
GetCurrentProcessId
GetPrivateProfileSectionW
FindNextVolumeA
lstrcpyW
KERNEL32.dll
WideCharToMultiByte
InterlockedDecrement
InterlockedCompareExchange
MultiByteToWideChar
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
GetLastError
HeapFree
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
HeapReAlloc
GetStartupInfoA
GetCPInfo
RtlUnwind
RaiseException
LCMapStringW
LCMapStringA
GetStringTypeW
VirtualFree
VirtualAlloc
GetModuleHandleW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
SetFilePointer
CloseHandle
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
FreeEnvironmentStringsA
FreeEnvironmentStringsW
SetHandleCount
GetFileType
QueryPerformanceCounter
GetTickCount
GetSystemTimeAsFileTime
GetStringTypeA
HeapSize
GetACP
GetOEMCP
IsValidCodePage
GetUserDefaultLCID
EnumSystemLocalesA
IsValidLocale
InitializeCriticalSectionAndSpinCount
SetStdHandle
GetConsoleCP
GetConsoleMode
LoadLibraryA
GetLocaleInfoW
GetConsoleOutputCP
WriteConsoleW
CreateFileA
wawehulaze.exe
@GetFirstVice@8
.?AV_Locimp@locale@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$ctype@_W@std@@
.?AUctype_base@std@@
.?AVfacet@locale@std@@
.?AV?$basic_stringstream@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@
.?AV?$basic_stringbuf@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@
.?AV?$basic_iostream@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_ostream@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_istream@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_ios@_WU?$char_traits@_W@std@@@std@@
.?AV?$_Iosb@H@std@@
.?AVios_base@std@@
.?AVruntime_error@std@@
.?AVexception@std@@
.?AVfailure@ios_base@std@@
.?AVbad_cast@std@@
.?AVbad_alloc@std@@
u`pV$HYg<
/3""""
$7\~~$
f{Cxx\~
ccccccccccccccccccccccccccccccccccccccccccccccccccccccccy
Pcccccccccccccy
PccccccccccccX:
9cccccccccc\
accccccccccu
cccccccccc
%6cccccccccc
6ccccccccccJ
cccccccccc
cccccccccc
.@ccccccccccM
qccccccccccu
*@cccccccccc
>ccccccccccM:s
GccccccccccJ
ccccccccccy
ucccccccc
`ccccccccX
ccccccccX
-ccccccccc
ccccccccccccccccccccccccccccccccccccccccccccccccccc
E;t)P9e-
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBB
BBBBBBBBBgvp^
BBBBBBBBBBBBBB88(X{
8BBBBgv
;BBBBBBBBBBBBB
EBBBBBBBBBB
8BBBBBBBBB[
EBBBBBB
EBBBBBB
EBBBBBB
BBBBBBBi
BBBBBBB
wG|LL=LD
1TvBBBBBBB7
XBBBBBBBX
BBBBBBB
xDxxbxM
BBBBBBBBB
BBBBBBBBB
BBBBBBBBBB
XBBBBBBBBBBBBB
BBBBBBBBBBBBBB
BBBBBBBBBBBBBBB
BBBBBBBBBBBBBBB
;BBBBBBBBBBBBBBBBB
n|Mv_BBBBBBBBBBBBBBBBB
&8BBBBBBBBBBBBBBBB
;BBBBBBBBBBBBBBBBBB
%8BBBBBBBBBBBBBBBBBBB
8BBBBBBBBBBBBBBBBBBBBBBW]
8BBBBBBBBBBBBBBBBBBBBBB0
0*8BBBBBBBBBBBBBBBBBBBBBEN
v8BBBBBBBBBBBBBBBBBBBBBE
BBBBBBBBBBBBBBBBBBBBBE
EBBBBBBBBBBBBBBBBBBBBBE
BBBBBBBBBBBBBBBBBBBBBBc
EBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
*EBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
.................................................q
#....4
.....3
MX......[
.......5
C.......I
........
..........
........
xW_~@J^
'Gjw\?
,No~eH
KKKKrryv
<<VU$Zg
C1pppp
&pp&p~E
SSXXX(
www6666B
mmmmmmmmmmm
mmmmmmmmmmm
mmmmmmmmmmm
mmmmmmmmmmm
mmmmmmmmmmmNi
mmmmmmmmmmmo
ZmmmmmmmmmmmN
mmmmmmmmmmmV
mmmmmmmmmmm
mmmmmmmmmmm@
mmmmmmmmmmm
mmmmmmmmmmmN3
mmmmmmmmmmmV/*
mmmmmmmmmmmN/j
%mmmmmmmmmmmNuf
mmmmmmmmmmm
mmmmmmmmmmm
]CJJr
%mmmmmmmmmmm
%mmmmmmmmmmm
mmmmmmmmmmm
mmmmmmmmmmm
[7[777[F
mmmmmmmmmmmH(
mmmmmmmmmmmo
mmmmmmmmmmm
!\mmmmmmmmmmm
mmmmmmmmmmm
mmmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
#########
#########
########!
########
########!
########
########
########
########
########
########
########
########
6########~!
J########!
J########
########
c#########################################################################################################################################################
@zzzzzz
lzzzzz)m
VXzzzzz
:[3zzzzz
hzzzzzan
zzzzz1
szzzzz%
zzzzzz
9?,6nnw
NZJ8uxt
]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]
]]]]]]
OOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO
]]]]]]
]]]]]]
0000000000000000000000000000
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
]]]]]]
0000000
]]]]]]
00EP~Y
]]]]]]
00000000
0^PYVII
]]]]]]
000000
]]]]]]
0000000000B
]]]]]]
000000
]]]]]]
0000000@P
]]]]]]
0000000k
]]]]]]
000000
]]]]]]
000000
]]]]]]
000000
]]]]]]
000000
]]]]]]
000000
]]]]]]
]]]]]]
]]]]]]Kj
jK]]]]]]
]]]]]]
]]]]]]
]]]]]]
PW]]]]]]
NP]]]]]]
P]]]]]
PP]]]]
//////
P]]]]]]
P]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]P
P]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]P
P]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]PPP]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]P]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]]
dddddddddddddd
dddddd
ddddddd
dddddd
dddddS
ffffffff
BBBBbbb
ffffffffffffffffffff
AAAAAA
AAAAAAA
AAAAAAAA
VVVVVV^^^
NP|%~~~~YYDD
"~~~~D
~~~~~~~~~~~~~~~~~~~~~Iz~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
uuuuuuuuuuuu
4Q\ym@j
,BL_L-^
Zahutoleh. Jixefazi. Kuju pizen rufenoza deraseb zogecoyedetuc. Necole juhuvitidiya. Kavihulivahug bahanuva xagoleni. Xozagemi yezoy wuso canihobamimuraf gupo. Tutapafonalejuc. Wuyiwil xejuwunafuyebic xotohaxamuvavuf leliwutotu liye. Hayireyimufor nuluwasosawoneg pizavixipuxosav. Gitajufapum. Gep jidajifakutunup caxatumu sucuye. Tumasutitozar napob lalohagecopop bubeg. Mosirah xogu wufagigafito. Wixil yolonetebuyi godez yorogapocayem bag. Vin jemuwa vapilo vezoci wuzapoju. Vipuwofobux notalunocad popod yasiretepiyef. Fedeceyurix hesej. Nateb comu yudoh. Vofelek. Gicurasitu nawegudoxulav wibomezisute xurocudo padotiwisaf. Buyujovotufike. Wigajaworugu gen vocigey teto. Wuzinode jib dapedab geyix. Muhuwem juvazesavadito vajutoteno herocecoco wuya. Rihezewebusif kosof zivedoc kez hedavuwekokowe. Dilepinokovate kaminucujag nopafubekil doluy. Feg. Tubaf hilohobofinanet xadol ropogirekivohaz. Vicaniyere nukawi nina. Yejenaxodobicex cimowativuda suvimog xiyalawi dajujeximotopak. Vubovosise tapet tegahafavajikud tixu
Vujadagixo potinujeyiwulep motesalorutug purozamanol. Bil corel. Piyoboyobe xamu lujosorobo. Heditijurozexum. Fobiwepijo nopedico fameruc dirawin. Jogaxijivon kivageho liziya fanusadof. Pufisujawap borale leledoson jidosib hehizikaz. Pocefifu febulovizavoy gedo poludepajiwuyik cuf. Ceri yara jajubogo zodanuroy. Boyavamixikutas buwota wuhezupowugu gukogokodabebar miboxepuhugupej. Dusijadixumito hisufajazolixut wugexa. Cupuhusi paxavuwufey wobibizoropaf xonaz kilu. Rajacu vuxirucigupi. Zapohati fifuyowutal. Lucuyucuz cetidicoriye meresisewak. Dopebajej bihifa zamutajuhi. Vopabagihoyey nizuyu. Sagetanuco dulihixiwab wutoforelicona netofulisosaliy dujoyaxumaxet. Pabikuripawi rugiwuyovubacux lenabelabej cubulij. Ziyurodegapafe zogayaze coco. Hegebuvigebaw. Puka ginexo. Yijonasopa. Wul cizokomugetotes babad zamonurecocor. Bax jaxokebupudewut. Piwadisoriw fuyozucuzakahuk viho. Xikolaguhigaki bem. Sumure jicusasaxiz naz sajixeyi. Fuyejemaruvi. Gove. Bucinero dexanocate tuvijar. Taficaci. Fiyurafe. Vuduyabizuzus cutel
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

((((( H
h(((( H
H
KERNEL32.DLL
mscoree.dll
dutudexiw
boxodexov rujavivokubecedubew lanokopipematonadofus pitoxabehobowerokinohogaxituk
gewudubudihewujawejurorivujetit
ruvalobibukuzefukeku
mumefere pavegurovi
miwipufurudugiciyumenuzujifuhuvutedizocuditejeyimitip
yojepajumoninoxugevotecokuyabapesuwayidamewakejivumatuturoguxowofukojurirotuyumiwim
Sekovufoyun romeru
kawoviwayome
Powu bekitahexozoman yoxefo
YOCUSIDIHEBOSIZORIYEPASUGIHAXEDO
BUJAHAGIRAMOMEVAXESAB
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
020224a6
InternalName
sajbmianozu.iya
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
2.41.59.42
VarFileInfo
Translation
/Xuyahetumoral yukexuvuc buluku lawipi nofigasob
Puwimeneyimi
Wamejofic'Xayejosaropazo cuduzo yijufe xariwegoxi
Sor/Piyagog degud ranijupum ricaziledojasi pujesahocBikameviko sixuyacenafupi loko nebekunodufuge nipunahoreheh xigavopuh rek zolil zupo ragetifubodomiVMemoxalajewas gagokoci sejigubugazelo defepaya cagedazevawut fihew dijiraxi tuvuholewo
Fokecahalox
jWepezikowi geyolevaki mezekeri toh nabikakonupa rucijelilifoxu hicuyasasuvan mifawonupemex lata tabifovaji
Copu yakocapeSYixidi xuliyico bajapapakuri bubupumayep lizasafinaj jacip penifegocosid notefanura{Menefapozohunik gozopiritutu vevetaxezoz gudolake siludokudexon kafizedasex boxejagugax fatemukexihudep gugifeve sadeyezere
Rafo mogogiwolobufud Bozivu nani tazogocafirepa japil
YXakicemijiban dezaxisatoti culibavodu tosutaderozateb vit gedawayorese liw puxuriweyokaba
-Zapopu fawun nexemoluv sepuvijulayifuy hahiro
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.Androm.m!c
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Fragtor.28394
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!5A320540EEEF
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Gen:Variant.Fragtor.28394
K7GW Clean
Cybereason malicious.188a60
BitDefenderTheta Gen:NN.ZexaF.34170.sq0@a4ub9rmi
Cyren W32/Kryptik.EWJ.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HMSQ
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky HEUR:Backdoor.Win32.Androm.gen
Alibaba Backdoor:Win32/Azorult.c836e1b9
NANO-Antivirus Clean
ViRobot Clean
Tencent Clean
Ad-Aware Gen:Variant.Fragtor.28394
TACHYON Clean
Emsisoft Trojan.Crypt (A)
Comodo TrojWare.Win32.UMal.rpmgf@0
F-Secure Clean
DrWeb Trojan.Siggen15.17445
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.MultiPlug.dh
FireEye Generic.mg.5a320540eeef00b5
Sophos Mal/Generic-S
Ikarus Trojan.Crypt
GData Win32.Trojan-Stealer.LokiBot.FVY81R
Jiangmin Clean
Webroot W32.Trojan.Gen
Avira Clean
Antiy-AVL Clean
Kingsoft Win32.Troj.Generic_a.a.(kcloud)
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Azorult.RMA!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
VBA32 Clean
ALYac Clean
MAX malware (ai score=99)
Malwarebytes Trojan.MalPack.GS
Panda Trj/Genetic.gen
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H07J421
Rising Trojan.Generic@ML.95 (RDMK:RGpjaqnlPC1EwpmNZ23VCA)
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Unsafe.AI_Score_99%
Fortinet W32/Kryptik.HMSO!tr
AVG FileRepMalware
Avast FileRepMalware
CrowdStrike win/malicious_confidence_100% (W)
MaxSecure Clean
No IRMA results available.