Static | ZeroBOX

PE Compile Time

2020-05-29 19:55:55

PDB Path

C:\payug.pdb

PE Imphash

b4a5f131bf57e0871ab3cda52113b279

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000139dc 0x00013a00 7.25219970187
.rdata 0x00015000 0x0000422c 0x00004400 4.27306483616
.data 0x0001a000 0x00085b40 0x00002400 2.22420638282
.rsrc 0x000a0000 0x00015366 0x00015400 6.52688831561

Resources

Name Offset Size Language Sub-language File type
FIBOLUWAWABUROBI 0x000a085c 0x00000685 LANG_SAAMI SUBLANG_ARABIC_LIBYA ASCII text, with very long lines, with no line terminators
RT_CURSOR 0x000a1144 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x000a1144 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x000a1144 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000b3e04 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_STRING 0x000b4768 0x00000610 LANG_SAAMI SUBLANG_ARABIC_LIBYA data
RT_STRING 0x000b4768 0x00000610 LANG_SAAMI SUBLANG_ARABIC_LIBYA data
RT_STRING 0x000b4768 0x00000610 LANG_SAAMI SUBLANG_ARABIC_LIBYA data
RT_ACCELERATOR 0x000b4da0 0x00000020 LANG_SAAMI SUBLANG_ARABIC_LIBYA data
RT_ACCELERATOR 0x000b4da0 0x00000020 LANG_SAAMI SUBLANG_ARABIC_LIBYA data
RT_GROUP_CURSOR 0x000b4dd4 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x000b4dd4 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x000b4ee8 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000b4ee8 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000b4ee8 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x000b4f50 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x000b5104 0x00000262 LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library KERNEL32.dll:
0x415008 GetLocaleInfoA
0x41500c LoadResource
0x415010 EndUpdateResourceW
0x415018 GlobalSize
0x415020 WaitForSingleObject
0x415024 AddConsoleAliasW
0x415028 SetEvent
0x41502c ReadConsoleW
0x415034 GetCommandLineA
0x415038 GlobalAlloc
0x415044 GetModuleFileNameW
0x415048 ReleaseSemaphore
0x41504c GetConsoleOutputCP
0x415050 GetProcAddress
0x415058 VerLanguageNameW
0x41505c WriteConsoleA
0x415060 GetProcessId
0x415068 LockResource
0x415070 GlobalGetAtomNameW
0x415074 SetSystemTime
0x415078 EnumResourceTypesW
0x41507c GetModuleFileNameA
0x415080 GetModuleHandleA
0x415084 EraseTape
0x415088 FindFirstVolumeW
0x415090 HeapAlloc
0x415094 GetLastError
0x415098 HeapReAlloc
0x41509c GetStartupInfoA
0x4150a0 RaiseException
0x4150a4 RtlUnwind
0x4150a8 TerminateProcess
0x4150ac GetCurrentProcess
0x4150b8 IsDebuggerPresent
0x4150bc HeapFree
0x4150c4 VirtualFree
0x4150c8 VirtualAlloc
0x4150cc HeapCreate
0x4150d0 GetModuleHandleW
0x4150d4 Sleep
0x4150d8 ExitProcess
0x4150dc WriteFile
0x4150e0 GetStdHandle
0x4150e4 SetHandleCount
0x4150e8 GetFileType
0x4150ec SetFilePointer
0x4150fc WideCharToMultiByte
0x415100 TlsGetValue
0x415104 TlsAlloc
0x415108 TlsSetValue
0x41510c TlsFree
0x415114 SetLastError
0x415118 GetCurrentThreadId
0x415120 GetTickCount
0x415124 GetCurrentProcessId
0x415130 LoadLibraryA
0x415134 SetStdHandle
0x415138 GetConsoleCP
0x41513c GetConsoleMode
0x415140 FlushFileBuffers
0x415144 HeapSize
0x415148 GetCPInfo
0x41514c GetACP
0x415150 GetOEMCP
0x415154 IsValidCodePage
0x415158 WriteConsoleW
0x41515c MultiByteToWideChar
0x415160 LCMapStringA
0x415164 LCMapStringW
0x415168 GetStringTypeA
0x41516c GetStringTypeW
0x415170 CloseHandle
0x415174 CreateFileA
Library USER32.dll:
Library GDI32.dll:
0x415000 GetCharWidth32A

!This program cannot be run in DOS mode.
`.rdata
@.data
0WWWWW
0WWWWW
QQSVWd
0SSSSS
tNIt?It0It
j@j ^V
>=Yt1j
t$h4ZA
HtHu4j
s[S;7|G;w
tR99u2
URPQQhT{@
0SSSSS
0SSSSS
0A@@Ju
;t$,v-
UQPXY]Y[
_VVVVV
^WWWWW
t"SS9]
PPPPPPPP
PPPPPPPP
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
u;h4mA
u,h,mA
5)kaAm
e>jLQ;*k
!"eE|$
'CkNrD
\:1-DA
AJ1<5Y
;`*ns*
oPaCu"
?zuIvAm
\WVX"a
uQ+S1B
)I#TXH
m$y)h
?bV|T.3
GZMhLF`s
Egb9{I
q'jLew
sGNo2)
iv$)=
rS_a{pN
m"${+[
i)CSq\
6g|I{u
8>bT)H$
?$\7rc
VF3G5/O
{"8v@$8aU
li/`=M
?y[j
:iG.f$
ESc$+L
bSprU{"/
eaFTpa
bad allocation
string too long
invalid string position
Unknown exception
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
bad exception
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
_nextafter
_hypot
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
GAIsProcessorFeaturePresent
KERNEL32
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
CONOUT$
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
bad allocation
kixucigehorosaxuyumugavek
gigezexolepapenaluvofiyiyosogovamovuvokopojuhutatunecezopokaduyu
duwoyisewekehalowazikazidamulacokiwesamehatazaku
kernel32.dll
LocalAlloc
VirtualProtect
C:\payug.pdb
GetSystemDefaultLangID
GetLocaleInfoA
LoadResource
EndUpdateResourceW
InterlockedDecrement
GlobalSize
GetEnvironmentStringsW
WaitForSingleObject
AddConsoleAliasW
SetEvent
ReadConsoleW
FindActCtxSectionStringA
GetCommandLineA
GlobalAlloc
GetSystemWindowsDirectoryA
LeaveCriticalSection
GetModuleFileNameW
ReleaseSemaphore
GetConsoleOutputCP
GetProcAddress
EnterCriticalSection
VerLanguageNameW
WriteConsoleA
GetProcessId
ProcessIdToSessionId
LockResource
BeginUpdateResourceA
GlobalGetAtomNameW
SetSystemTime
EnumResourceTypesW
GetModuleFileNameA
GetModuleHandleA
EraseTape
FindFirstVolumeW
KERNEL32.dll
RealChildWindowFromPoint
USER32.dll
GetCharWidth32A
GDI32.dll
HeapAlloc
GetLastError
HeapReAlloc
GetStartupInfoA
RaiseException
RtlUnwind
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
HeapFree
DeleteCriticalSection
VirtualFree
VirtualAlloc
HeapCreate
GetModuleHandleW
ExitProcess
WriteFile
GetStdHandle
SetHandleCount
GetFileType
SetFilePointer
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
InitializeCriticalSectionAndSpinCount
LoadLibraryA
SetStdHandle
GetConsoleCP
GetConsoleMode
FlushFileBuffers
HeapSize
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
WriteConsoleW
MultiByteToWideChar
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
CloseHandle
CreateFileA
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVexception@std@@
.?AVbad_alloc@std@@
Giluhipekiyac bobajutux. Dikahimehinapul. Velodumipoco. Cepubahutixok. Yiroj cihuciwocaxif vorib. Nosewusarepal hisimezec wuw namubilaxajokub xevowehat. Dedamacubumez rub vera zayutakecihi hurone. Xilocecalo liyezetula kuwocorayarid xesati vafefexa. Jisapecote xiko xeno. Veh. Citakecutanerag fipo. Wodo yuyigi zijinu jepuhusoyosesis vim. Gelazo xowugohizito. Bucaneyelowiseb hun. Vafesilo voxuzeriyosono gehasup. Gezosahuje maroroji pajoxemewafoj cufas nawar. Hisuxogu givimiwah. Xudirazoraw nexapawizusik sisi wemerehimawewik. Pojufi fugederu mija kuzolizumabu. Fidiloraloh numiborun guguje zuxax kapamemahuw. Corubuxufibit gazijigojajume zinihekekisasok nuf. Javimufayaki cayukid. Magudazegugen yeniloboxihebib zolod kitaweyixoha donexal. Betubemukacewo zuwuvegiger rososi. Vadal vizotocime. Davejafocapu lufasuk woc. Tafuyo xejosiconoruyi. Wabubesaxajolar josidokono vekej. Dorivivaf wupoxosetato cupidawujejar ludezemedujo pulaz. Rug dog hape tidoxiyekihake yerixikukikomiw. Jonokek nupitavimusi. Curiwon kesedofireh pe
GFZT-,
jY]Yb/
MMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMM+
CD5MMMMM
czMMMMMM
MMMMMMMf]
~MMMMMMMST
MMMMMMMM
_MMMMMMMMMM)
dMMMMMMMM
sNZz:B\
$EdtX8
=YqD.~
W>t.W>Zh
o{W(6n
aaaa-U
H*HHb*
34&6ffo
@hx%1_
LUC5oyk
llllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllll&
&llllll
EEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEE
llllll
llllll
llllll
********
llllll
******
llllll
***********
llllll
******
llllll
*********
llllll
*******
llllll
**********
llllll
********
llllll
zM**********
llllll
******
llllll
*******
llllll
*******
llllll
llllll
*X*****
llllll
X******
llllll
XX*****
llllll
*X*****
llllll
XX******
llllll
*X*****
llllll
XX****
llllll
llllll
llllll
llllll
llllll
???????????
llllll
llllll
llllll
llllll
llllll
llllll
PPPPPP>>>>eeee
g))))F
llllll
llllllllllllllllllllllllllllllllllllllll
llllllllllllllllllllllllllllllllllllllllll
llllllllllllllllllllllllllllllllllllllllllll
llllllllllllllllllllllllllllllllllllllllllllll
llllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllll
ffffffffffffff
f%f%%%%%%%%%
f%f%f%f%%%%%%%
ff%f%%%%%%%%%%%%%
ff%f%f%f%%%%%%
fff%f%f%%f%%%%%%%%
ff%ff%f
f%%%%%%%%
ffff%f%u,
%%%%%%
ffffff
fff%f%fzQ
fffffff
ffffff
%%%%%f%
%%%%ff
{{{{{{{{
{{{{{{{{{{{{{{{{{{{{
FFFFFFFFFFFFFFf
ttf&]f
{{;;;;;;;;;f&
Yf{{;Pvv
6dhhZ&
K{{;;;;;;;;;;;
f{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{
/LYqg7h
&;H\G'Y
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" processorArchitecture="X86" name="hello" type="win32"></assemblyIdentity>
<description>Hello World</description>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges>
<requestedExecutionLevel level="requireAdministrator" uiAccess="false"></requestedExecutionLevel>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
mscoree.dll
KERNEL32.DLL
((((( H
h(((( H
H
wujuyaxofiwegiyisebeze
FIBOLUWAWABUROBI
UJoyuxumahare zagimas pez lugiya fapijoxamaber lumemax yumacabe kawajadapufu cuwutotil
Pahuwezehop xayeluhopuwovul
Gacewitiduvifek ratikamokesoli
Zefavoni situzixotezaji nawo
]Xoferakuxebub fosi vag waloc kosizabeceboge hoducixecak rimu cijinekubojabiz gaj cuwapihenizacWajoxemorusebo tonabozazek ludepe japevusajinelu subeketo leyu matojiloziwoho fofoziwedema kuxiyame9Heposotosofuka sategawe xuvobobuwog valesag pifexudifohup
Pukoyafinezo vegat bijuciw vobublFomegihumawonoc tizexekekude lamecakeloriya gemo kalipiyojecora siyafevozoluvi fonicuyukutoxes yuximaterisij-Xevi cujasahiyupurot pixinufu falevu lerotiri
[Nuxigih vimuwataretizi renafipa gugodamadabi vucitup mahivob nuzuwakodufibet helevugumacalebZuvic zatecel cunayoseve nilekuvucuj dunakam hiconavetukay kazisejayo tiseponiye jatedafaxu zuvozaDJuxuzuwogeg kinudacawumal guyuvig toxixiguce guwamuheruhoyok guruvop<Hohoxorekaje xipa tabilexojenu zenad heziporayunigi pakirobu5Juwetetudav rapey cisuzigicisux jafadija kucelimomido
Decut nakiraw daruxu
USurocexij fisufofizojufu rocu hagonisimeh guvekolawu cotedepu jivebenigikinot canukevTYituxaduraciyoz ceritet capoy bekafuk jek yobaxigematewu saxe gesixeniy jasumolubuwa1Lecifeyayum fogevesudazu besilibavicefa xukutudefQTujigupoh gogaru vubataloyil safoyax guy tuguxefipazeyeh vujilenexo vazemafi buweGWeyagur potufocalewaw manuvacigut maxug rohizujawuv susobezedatusa koye
VS_VERSION_INFO
StringFileInform
020224a6
InternalName
sojbmoeminu.ihe
Copyright
Copyrighz (C) 2021, fudkagata
ProductVersion
8.19.590.38
VarFileInfo
Translation
No antivirus signatures available.
No IRMA results available.