Static | ZeroBOX

PE Compile Time

2021-01-11 00:28:18

PDB Path

C:\zetagidun\wamisa wojan.pdb

PE Imphash

be06676f0b26f3557b735abbe8be48ec

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0007b86a 0x0007ba00 7.95298848726
.rdata 0x0007d000 0x00005e8a 0x00006000 4.35333895371
.data 0x00083000 0x0273e6ac 0x00002400 2.27787552188
.tocixug 0x027c2000 0x00000270 0x00000400 0.0
.yorevu 0x027c3000 0x00000017 0x00000200 0.0
.rsrc 0x027c4000 0x0000eb75 0x0000ec00 6.48126446846

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x027d0958 0x00000468 None SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x027d1f70 0x000003c4 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_STRING 0x027d1f70 0x000003c4 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_STRING 0x027d1f70 0x000003c4 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_STRING 0x027d1f70 0x000003c4 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_STRING 0x027d1f70 0x000003c4 LANG_ENGLISH SUBLANG_ENGLISH_TRINIDAD data
RT_GROUP_ICON 0x027d23ac 0x00000068 None SUBLANG_DEFAULT data
RT_GROUP_ICON 0x027d23ac 0x00000068 None SUBLANG_DEFAULT data
RT_VERSION 0x027d2414 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x027d25c8 0x000005ad LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators

Imports

Library KERNEL32.dll:
0x47d000 HeapReAlloc
0x47d004 lstrlenA
0x47d008 GetLocaleInfoA
0x47d00c EndUpdateResourceW
0x47d014 SetEvent
0x47d018 BackupSeek
0x47d01c GetConsoleTitleA
0x47d020 ReadConsoleW
0x47d024 WriteFile
0x47d028 CreateActCtxW
0x47d034 InitAtomTable
0x47d038 HeapDestroy
0x47d03c FindNextVolumeW
0x47d044 GetFileAttributesW
0x47d048 GetModuleFileNameW
0x47d04c DeactivateActCtx
0x47d050 InterlockedExchange
0x47d054 GetProcAddress
0x47d05c PrepareTape
0x47d060 GetProcessVersion
0x47d064 WriteConsoleA
0x47d068 LocalAlloc
0x47d06c RemoveDirectoryW
0x47d074 GetModuleHandleA
0x47d078 VirtualProtect
0x47d080 ReleaseMutex
0x47d084 GetCurrentProcessId
0x47d088 FindNextVolumeA
0x47d08c lstrcpyA
0x47d090 WriteConsoleW
0x47d094 ReadFile
0x47d098 WideCharToMultiByte
0x47d0a8 MultiByteToWideChar
0x47d0ac GetStringTypeW
0x47d0b0 EncodePointer
0x47d0b4 DecodePointer
0x47d0b8 Sleep
0x47d0c8 GetLastError
0x47d0cc HeapFree
0x47d0d0 GetCommandLineW
0x47d0d4 HeapSetInformation
0x47d0d8 GetStartupInfoW
0x47d0dc GetCPInfo
0x47d0e0 RaiseException
0x47d0e4 RtlUnwind
0x47d0e8 HeapAlloc
0x47d0ec LCMapStringW
0x47d0f0 HeapCreate
0x47d100 IsDebuggerPresent
0x47d104 TerminateProcess
0x47d108 GetCurrentProcess
0x47d10c SetFilePointer
0x47d110 GetModuleHandleW
0x47d114 ExitProcess
0x47d118 GetStdHandle
0x47d124 SetHandleCount
0x47d128 GetFileType
0x47d12c TlsAlloc
0x47d130 TlsGetValue
0x47d134 TlsSetValue
0x47d138 TlsFree
0x47d13c SetLastError
0x47d140 GetCurrentThreadId
0x47d148 GetTickCount
0x47d150 GetLocaleInfoW
0x47d154 HeapSize
0x47d158 GetACP
0x47d15c GetOEMCP
0x47d160 IsValidCodePage
0x47d164 GetUserDefaultLCID
0x47d168 EnumSystemLocalesA
0x47d16c IsValidLocale
0x47d170 CloseHandle
0x47d174 CreateFileA
0x47d178 SetStdHandle
0x47d17c GetConsoleCP
0x47d180 GetConsoleMode
0x47d184 FlushFileBuffers
0x47d188 LoadLibraryW
0x47d18c SetEndOfFile
0x47d190 GetProcessHeap
0x47d194 CreateFileW

Exports

Ordinal Address Name
1 0x4015d6 @GetFirstVice@8
2 0x4015df @SetViceVariants@12
!This program cannot be run in DOS mode.
`.rdata
@.data
.tocixugp
`.yorevu
`.rsrc
SVWj>3
QQSVWd
.t|PVj@
t"SS9] u
<at,<rt"<wt
URPQQh
^SSSSS
QQSVWh
j@j ^V
Y;=p8H
to=h9H
t=MOC
j,hpH
HtHu4j
t*=RCC
;7|G;p
tR99u2
F Pj*S
F$Pj+Sj
F(Pj,S
F,Pj-S
F0Pj.S
F4Pj/S
F8PjDS
F<PjES
F@PjFS
FDPjGS
FHPjHS
FLPjIS
FPPjJS
FTPjKS
FXPjLS
F\PjMS
F`PjNS
FdPjOS
FhPj8S
FlPj9S
FpPj:S
FtPj;S
FxPj<S
F|Pj=S
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
CHPjPV
CLPjQV
PPPPPPPP
PPPPPPPP
tCHt(Ht
;t$,v-
UQPXY]Y[
t VV9u
!@g;$%
PhNGP-
lR0:"q"v1
Lj/9?B
u:b'xW
fiVG2t
)WQ<,(6
?\{l.P8
|jJrwx
l%I;rW
\NQt4t
7rqxw>)
",-`tu
7/]^J|
pcw!\6
.$3mWJ
,[k.k%u
03kP\
@_84}C'J
YVYawf iQ
txVn"C
k=@r<N
%3/`3UX
aa^lZ&
g$f8LU
dXKL@}t
J1Xn}$=
tGtUM
&Y`q2B'
?Z10|'
aiJu{G;^
F68HLP
ddUSCZ}
0$Ko}WF
tK_0X
b2IOl
Gz7-JPU
h$Fh}^
/zh$9lo\Y
z,=YgR
2W Ed4I
PeRt5
LIvez-
!7a+qu
>r%7L3
+BkIzBn&j3ED
[?*\Lh
b>[A~X
`GWbvv
Hd/l._
vy\xM3O
c'G2M$%
=o"g?a"3
5jd^;yD*
.!:H}J
6;6Y[
{)A3Bf{
Bj?$}n
@MnKaQ
iH[vLK
4,jQM&
d]4mPZL
kml{XdI
o-!Ki[<2
#TaB]D
$op4CxZ
v*^q1'Y
&c")1-
U.e>,
|E4eNQ
tyv1&a
lIAqxG
|r!`Ic
b%O+w4Ov
trp"[:
+btRBe
O(+L0 V
{WjwmXko
xrH&mupX@
%up]*|
XS{Mbb
3vQ;!V
qR'(}p7&
\vVl\
/Nr?{5
R]"t4UE
yacB:
W'&;9z
`n;C{I"
FfhZU
Jn[NXw#
g<>1h
ExWXYU
u>"L=V
%wdup4
L<C{Rr
sfP!H[
sr{]G
Vgr*-l
SDM`vT
"<sJZ?
)RwIsV
sVgY!+F
v%ss_D
S%/#pD
rJNqOFbf
F[3D6m
j~[5H2b)
>OO*-}
$Raif!Q
WwVgFR[c
yBu/";G[S
O]?M2]a
]5O~^YJ
0B0f<
MR4Pm
h,Ew6-
KkS=6-u!
3@@eU4
][j18"
[yn%I\
wkF{]R>
cev.Jr
:,$+)*
2+]%dQAL
klJoAf
XatjD[
(tGY/3
g!{7nS
"6l1oJ
X>%Rt~
jB{Kf7
?P`Y5
B|4 b{
$$.[oEb'
`QD8{h
@WBL~
D\1bha
:4}UgQ
G`O'G?
pJ$r/{=0t
X9OT[&
m9~hev
9@~C6e
#uN{IHG
}$5G(_\]
4$5Hp*$y
h|a@o[
o=F\"l
$8.7Gj
I>"2r:
D3Tf3B
yh%[Vo
[\3qu2
V_u<YB
;\)@1#
TktM&
dW8q%|g
U(jxK3
>2/3#C
-v*w$#
?jCAP{6u
kFZn@j=_
h3wSB)
ot!T\Dj'
=FJr.1n
~<ma'
4,u`{;
/8XgMm
\V~A/Kw
f*fWh!
FSa]2L
}s=+eh
\`%!i_
H.H^KY8R
"bvwb)
=p-7.x
)BK_?lN
Iuf%<'
4z9N{|
z^.D5e
*,HlAV
n,?7#eni
~~~*jM
P%5!pT
Sv+?5LL
OJq4n_
_E[UD;
+|mBJ\g
:u_~T{U,
#v$J5fz
-j!U<{
jx:`=f
##LX/]~J
I@E:m#
_5*tXG`
4Oe^9RT
)E{4N|*"3
'5l1\
vA6"Mb
';Fft&C
9p2&}0a >z
T}"J^``
-1;nc)
,$S$<T.ix
M\bgGK5N
hF-p-$
LKISd<
^`[i@w
3BzxkS
EMuJLNZ
eA$cJL
M<9:b,
0179;|
T&&l+=
(0qAe=
3 .5z}
;SH[>*=
6LX<K|F
]0\F&8a
bM=Ic%
/0}8f~WP)
7,By=F}p
b^Ty~lf
t_80ILP
EuA=!f
;sWW$'|p
k-=?}2Q@Q
xe]Ghh
qso@1&
~ezS^l^
df@-`H
sNu-U;i&EB%[V
{9)ky
6.\k_Q
0Nn%K
B{t#2d
jg:kN\
n7.Q-f
"x^VE5`
!.aJ1bh
Tw]7L /h
?4Z}<|m
'aPnlX
kX]V$!vN3T
h){m<5A
l>v>R"
)Gv3~&
Puv>N\Z
B,Xa,
d+bOE"xzpd
#mEf*
|gW]{z
5?Ff}H
L#|q)Z
[\J)ZZ~:k7L
0jd:9m
LNp,ix
vHhZMKY
'?p&|q
z!{Yi
|?>I"m
a:;Iquq!;xC
%~%kvzxW
Cj*G@6
I#<RD4
\<5c~\
M4)&m<
irbn=!
C5@v8
_!~V_b4
Nf&lz1
'q{"x[
iv3d81
~L<h5"!
gC%.Z:
\c0{/g
`L`V v
=g&1k"\
S?/pzF
D{w3kj
BHZ|DkY
~Whh`,^q
Dv<k3RO
[~(%a0O
mjm)Y\0x
Jevv>`q
fkbo3@l8^c+
NxRclg
ppf3x"
1B.F-3
+Yebs(j@eU
i.P/vJ
Wpq^s,
{)\~Y]d
X7_l7`
*<5gC?>
hS,6]j
7f4"$y5
)Ag/"
HC)aZ(e3
%06QrZ
#94^s8q2H
\W\?H>
W}p;AUx
'j]p5u7NS} SX1L
HSm[[-Z#)
jN>OKe
0Us7x(
@sO(PPK
u,I|"59
^oeCF9v
Qk_=O3
#Y=B%s
#vy%/V
W|zJ gbE
5nJ'[g
`f+9PI
y4k,]`
T0BUQ(
d~?Ood
i^z8yM&
`xyEQ+
Wq^VyO
a\f-6%$
qrhG!OR
WnLkj<<
zU/1H>$@|
^@.UtN
>nxyOM
lCw'8m>
O7KC(^
kviInc+
IHu*g@
X.$XqD
='fyw*
]Z%b\p
L0i^Yo
r4SYp=
}_eRV4
R]f'&]
nNZD01
U7u}qY
5LO#
p#a#U8
@=h!(F
/|p{^e;bn
uhQ<dY
@6V_K-
Is&34Ch!/
Bao_Y]0r
F5qA?g
GV=PT:
)10JvbK=xE
d}5MO
^/6D{}N'
^aQ*'>
Xh)QsU
7C;heDfFJ
>7*K
l$&3Q!
>US"e
6E;8d@
l";,]
sPIi6
{Lva0f
DI.>ay0
q&be`n
`<vZN8M
Kw\*t&{Js
\OG:}8
;>|C4`N
sQS_'P
qkm[:k
(]"|]"
^y=["G
4(oHJh
XBG.0P{I
FHrh\x
tCSU!
=_4YN!{
+q6V9
RfR@|=
7p/4[d
c'b$7
<8R6i
vQJ]|c
cQHb*P
is)k6~
~JS5(
rG:orHRtR]
rAeIdBD
5ADwQS6aC_wWA
BG|H.w
VDm(oH2
y%}8'S
k3Fgf1
0"].r"
cLY\'>I
"hF`qB<
wJ)([v
S?hAovir\m
*5^;e&v
J:+Fl
mFZ_K7&
- 62D`
)2Z:~ksN
ZfUX"!
U=2F{C
%{(QVE
9R%{kle
nC4Udu
)8@St
0ug9-X
]I@@8:r;Z>
dsyQp(
ff~y~&
W'~A'vZz
.ZXcVi7
.>/3p_
DKaYo63
deiYYY
_~tH|c\W
fIAIdf
3(Wy&?
x9v+Z\+
@yulf{N
LLq5v'M
C+=U&C
MhCvsM$
S=*Z@_B
vjqK,R.
&$-:wh;9
>V%{b",
N+Ji+,9
l/YSw3&
^u/;M;
6Q/-
}7J77k@
a\LnAj
6H2kk>
E8_f=f 26I'
7`B[0`
W9IWnES
>LpF9nn
MH)hB
]I=yB`
*m-5'.
tL-:WQ
F:Vrhr
;F;.+W>9
kn R0\6
:#<ian
_!Pzl9
988R3
AiC<zv
S:.qbI
e3]&OP
2@?P*NU-
<x;k^<
'W$5u=v
]14%O
)[|=(
y&v0A/
)~ZnLYDlE.
)?Q<31
`\{q#(
N2Q8#'
d~S7ZL
X[}fIC
LM^ |^
[k*|^*i
Vi*k=Mn
GNzEk&
~%6mW&
_>xech:
#FEW$8
`LPq5[
QLWqg3J
S;PEXd
lgW</5a
u6.fl=
s0QOM1J
f8Ywgf
o/9Aai
B8T58\+
nH%)b!O
v9Z9o^c;M
<,kC^~!?
0],rZcK3L?
]cV.DA
GJ[Y>G
U#aH0#
|gn1a*
dI5"$&
DeX&=MQ
FQ;zE'5
E3PiX#
j^ImVLm
~-7 ,Pk
M/iH48
kiXq9*
?-2?x4
p=Q L"
!Il??n
}Gb?Ui
p)9DPQ
#: Q(yY
[Md^w9
+v<U=~
>pNE"y
q{<pn
#H!y%'
9#yv>do
djP~KRr.
u/<=1$@
$~ttqe[
>?2E[K
1duHl'
0mgu9Ck^|8
%lC1z#
E2k)ja
~8"1Vk{
u.A-f\%
I9h3i]3
`^kGb
'-\\"z_
!vz8_:
:-QCz<
x)RjK,
WD6Zji
<DW#%:
2.DAR>
IWdneQIj
=`G<.T
d!#TPn
n6a3Hc
V?fLtm
M:s^v
SLlS>I
<[-&(<
:Q+tSy
k\gy\,>
53;P@e
8"@$/*#
_TpCP]
vE8VC0
T]V=P<
q"(<+R2
Kc/1xU2
hv~]*dM
H</^^Z
b>3}+"
Ks@-Uo
1@oK\.t
F.)&aL
\3(~vy6
40;u.BD
)@O2&b
F"mbUs&
INl4
SOv\=M
x?!EP
iu,w[srO
]Q;!g2
JnSCKx%
'Eq7}>
&b:(JTr
p^|y+7
VYZ_k#
JlJ]~l
]S*Y[f
pN1cWs
%5TIg%D
)G|a1al
Fx:N<U
#vuw"
9#D>*&u|
i#ROO#m
}w?poY
aw#$%tS
6yCG@'
YF!:j(
N8f'/r
gcxDaa
Qt$feO
^<&Z^]_
ab~p.;xi
z&LG|@
Z)XE|]`
p>.B~
+XGW8W<)
I<Fox$
?rJ^P
%vPEx$
^}?&1`
|wq?#
8,,O{!
I$:`S3~
A*8\.pG
n!cZ3Q
,r( YM
<8va\8
r]W,<T
*"~Z\P
F{bRf8#3\
R[<j"^H(|b'Y
i2Efxw
>jgvS(
9,e'Un
Mz$TTU
SPUzRT%n
|F;w1G
$FP6SG
D|pC=z
6/hYzk
4QAPlR]
M]zn~h8
PQ#VCU~{k
O#9?u2
Go*K>[
$}Gc!S
r=J/2&
j<BKI_~
ZiWyD"
"_4MmN
~2#kt
2oQC{
n%P6>R\/
E-x0?S
wGg5Lm
=`KT^p=
j-LhmcF
l+9>B@
8XR(2.
zLh|TY
s$[Xer
@Fvw<.f
`3$a5VJ
4\=~>f{n
A.A,Oa
ybJH\m
+J]=j>>
{19;n|
xF'/Q
\i] {6
-..snE
FCVx,f
'K167-
DY7"QB
P+<`sX
4_bvUX:
G^06Xz
cmGQZ|
^Wtb*"
<<'yOa8
rklWfI6^
'H(Jl,$~
(UVLZ}
Ls-h^4>
{Mg~T#/
3)RJDEz
V@WoE5
K#fbhEL_XO
qGA=8^
6K5!=0
U<'q=})
N$QjPZ
gL_`Bc
G~5&v,
ks]RTg
d<[w,
jalh %
=sS7)(
R,$YJ'
@=:w4
Ogz#F&
g.57No
<dG"a*
-37}dj
glg5s/i
t:U)hf
>PZ 1.lr~
o&rlFf
Xq{(<x
9*iwfGe
ch7UoY
*cN~l:
Jd3*1x
g8"gh+2
hn =9[
[vPBM,<zH
r/7E`Mzy
-=ER\n
`mV?f[
+?@9[QW)r
l!~H(L
[0)\zL
Rxh'lb
ORr~qf8
Q`/Nj
)X,zVv
>.lZ$Q2
b&!Y?x
16<S-j
"&^lGi;
mVPniG
CnAdX$
hh74:hZ
ZkLYv$&Gv^Y{
F%;m K
(<%#Yu~
7 6Bfq
r{yp. *
)`.( xU
H[_;Ng
Bq~N@Oj
S>LJ^!
u6l)9P(k
R'dp57
CMHO|
z+q5,0
kiGl;yoK
T*$6m%
P>KJ-o%
HjO%0h
\VQ]`Ub
9xr%6pYE
zi1wv4D
~_8b90
q;q'WHd,
J=)DU"
4;;y=4
D{#%V_
a/]cKy
gBkA]5
-d){6sX
~)=?j_nA
6#'ZwF6
Uw(E\&
&SBt*ch
2/";g0/
J#jK#N
gKWxH/
#k9tp(
|d6\fe
B&s.2z$
>mgk{6
h#XmWU
eQZZqdc
NhqM1
O*,_+^5
+0ClS.
hw/DVv
#Zi_2X
Sx<>v6
DAa !i
?"(V&y
<j<H^h
0q(CGM
KGOPid
W3SKZ&
xdS$uJw8
@tlP)#
5DbKEZ
dYg/0
`Sjayb
\4S9P
UEVHpE
7{+sG>
c5m=;L
vTd<e1A
ITFo3g5
f#|W*q
kf%[Ou
'\GHW
VI F_"
71aqvo
|{|)%5
q,cix*yj
K!x&Ni)
|Oi/88
qrA;1@m^
psPlr}b.n
73YY+
4) &e/(
U&|7FPZVi
21Qi1D
XOEx9(
^;C;Uh
cK[ahO
y.qwa@
+\E5vB
jP%-UrQi
.\TexJs
j"#?sJ
TfA03;
M\'8|O
vQ#>1g
R='Z=9
Xf6~6R
cc|k6&
PO]{MW
3E_k454
]vg^Q\
nH4Xq"N
$!6;.M
A: tF^
J9TW%[
8$!q\L*
kfA< (g
g$@sT
S>h Fz
A7-|U;
G$FoV>
#t:GF&hZ
p9Io5Db
9H,?Ek<
2~njb>
/VQzSu
h*(kve
"r0u}2
nh9]HSK@n
tvjL&r
e7^HJR
TqMUOP
&eZO@f
5SlZ3B5}
sB$-qp?c
generic
iostream
system
string too long
invalid string position
iostream stream error
Unknown exception
bad allocation
Visual C++ CRT: Not enough memory to complete call to strerror.
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
UTF-16LE
UNICODE
CorExitProcess
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
bad exception
Illegal byte sequence
Directory not empty
Function not implemented
No locks available
Filename too long
Resource deadlock avoided
Result too large
Domain error
Broken pipe
Too many links
Read-only file system
Invalid seek
No space left on device
File too large
Inappropriate I/O control operation
Too many open files
Too many open files in system
Invalid argument
Is a directory
Not a directory
No such device
Improper link
File exists
Resource device
Unknown error
Bad address
Permission denied
Not enough space
Resource temporarily unavailable
No child processes
Bad file descriptor
Exec format error
Arg list too long
No such device or address
Input/output error
Interrupted function call
No such process
No such file or directory
Operation not permitted
No error
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
bad locale name
ios_base::badbit set
ios_base::failbit set
ios_base::eofbit set
nutagosisenenoyuxepigorevi hihitixawaza husefowubagobopob retidariyo
VirtualProtect
kernel32.dll
LocalAlloc
yahiyujig verocakiyu kilotom
zopiv.txt
bad cast
C:\zetagidun\wamisa wojan.pdb
HeapReAlloc
lstrlenA
GetLocaleInfoA
EndUpdateResourceW
GetQueuedCompletionStatus
SetEvent
BackupSeek
GetConsoleTitleA
ReadConsoleW
WriteFile
CreateActCtxW
InitializeCriticalSection
GetEnvironmentStrings
InitAtomTable
HeapDestroy
FindNextVolumeW
IsProcessorFeaturePresent
GetFileAttributesW
GetModuleFileNameW
DeactivateActCtx
InterlockedExchange
GetProcAddress
BeginUpdateResourceW
PrepareTape
GetProcessVersion
WriteConsoleA
LocalAlloc
RemoveDirectoryW
SetConsoleWindowInfo
GetModuleHandleA
VirtualProtect
SetProcessShutdownParameters
ReleaseMutex
GetCurrentProcessId
FindNextVolumeA
lstrcpyA
KERNEL32.dll
WideCharToMultiByte
InterlockedIncrement
InterlockedDecrement
InterlockedCompareExchange
MultiByteToWideChar
GetStringTypeW
EncodePointer
DecodePointer
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
GetLastError
HeapFree
GetCommandLineW
HeapSetInformation
GetStartupInfoW
GetCPInfo
RaiseException
RtlUnwind
HeapAlloc
LCMapStringW
HeapCreate
InitializeCriticalSectionAndSpinCount
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
SetFilePointer
GetModuleHandleW
ExitProcess
GetStdHandle
FreeEnvironmentStringsW
GetEnvironmentStringsW
SetHandleCount
GetFileType
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
QueryPerformanceCounter
GetTickCount
GetSystemTimeAsFileTime
GetLocaleInfoW
HeapSize
GetACP
GetOEMCP
IsValidCodePage
GetUserDefaultLCID
EnumSystemLocalesA
IsValidLocale
CloseHandle
CreateFileA
SetStdHandle
GetConsoleCP
GetConsoleMode
FlushFileBuffers
LoadLibraryW
SetEndOfFile
GetProcessHeap
ReadFile
WriteConsoleW
CreateFileW
vavib.exe
@GetFirstVice@8
@SetViceVariants@12
.?AVerror_category@std@@
.?AV_Generic_error_category@std@@
.?AV_Iostream_error_category@std@@
.?AV_System_error_category@std@@
.?AV_Locimp@locale@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$ctype@_W@std@@
.?AUctype_base@std@@
.?AVfacet@locale@std@@
.?AV?$basic_stringstream@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@
.?AV?$basic_stringbuf@_WU?$char_traits@_W@std@@V?$allocator@_W@2@@std@@
.?AV?$basic_iostream@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_ostream@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_istream@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_ios@_WU?$char_traits@_W@std@@@std@@
.?AV?$_Iosb@H@std@@
.?AVios_base@std@@
.?AVruntime_error@std@@
.?AVexception@std@@
.?AVfailure@ios_base@std@@
.?AVsystem_error@std@@
.?AVbad_cast@std@@
.?AVbad_alloc@std@@
a5~~EE
{--Q Q^Y
9 dM)R
c<.Z81
X#/o#k
fffffffffffffffffffffffffffffffffffffffffffffffff
]{*fffff
ffffff[
fffffff
fffffff@
ffffffff
ffffffffff"
ffffffff
)Ilx\A
,Hr~l<
----------------------------------------------------------------------------------------------------
MMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMM
------M
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
M------M&
&M------M&
????????????????????????????
&M------M&
?)?)?)))?))))))))
&M------M&??)?)?)?))))?))))))
&M------M&??)?)?)?)?)))))))))))
&M------M&
?)?)?)?))?)?))?))))))
&M------M&???)?)?)?))))?)))))))))
&M------M&
?????)?)??)?)))?)))))))
&M------M&
?)?)??)?)?)))?))))))))))
&M------M&
????)??)?)?)?)?)?)?))))))))
&M------M&
???)??)??)?ly"
))))))))))
&M------M&
???????)??)y
)?))))))
&M------M&
?????)??)??"
)))))))
&M------M&
????????)?
)))))))
&M------M&
??????)???)l
&M------M&
??????????N
&M------M&
??????)?
))))))
&M------M&
???????
&M------M&
???????
&M------M&
??????
))))))
&M------M&
??????
&M------M&
??????
&M------M&
??????
&M------M&
??????
&M------M&
&M------M&
&M------
------
------
------
------
m------
------
------#
----------------------------------------
------------------------------------------
--------------------------------------------
----------------------------------------------
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
qqqqqqqqq q q
qqqqqqq q q q q
qqqqqqqqqqqqq q q
qqqqqq qq q q q
qqqqqqqq qq
qqqqqqqq qq
qqqqqq q
qqq qqq
qqqqq q
qqqqq
nnnnnnnnCnnnnnW<
nnnnnnnnnnnnnnnnnnnnW<
111111
yyyHHy
yy2y2yyy
/1111y
22222y
///111
/////1
/////1
//////
///////
////////i
hhhhhh
dddddj
00000000000000
((((((((((((
ggggggg
->KaL,\
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0" xmlns:v3="urn:schemas-microsoft-com:asm.v3"><assemblyIdentity version="1.1.00.00" name="AutoHotkey" type="win32"></assemblyIdentity><dependency><dependentAssembly><assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="*" publicKeyToken="6595b64144ccf1df" language="*"></assemblyIdentity></dependentAssembly></dependency><compatibility xmlns="urn:schemas-microsoft-com:compatibility.v1"><application><supportedOS Id="{8e0f7a12-bfb3-4fe8-b9a5-48fd50a15a9a}"></supportedOS><supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}"></supportedOS><supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"></supportedOS><supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"></supportedOS><supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"></supportedOS></application></compatibility><v3:application><v3:windowsSettings xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings" xmlns:ws2="
((((( H
h(((( H
H
mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
GMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
KERNEL32.DLL
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
WUSER32.DLL
CONOUT$
rateyosesezinirawapetukejeyaz
nozufanuvogutep
vadidumufegaze
=Juxumiwibu hoturolage cugixo mezubesuja rilalebuji gupe pisojaLiz gihexabad pedisayi kazemahitof jotosipek gip mavivajaruxeni dagepep fosayegozodo kidedibalave
Pegeco yage<Tiru dadinayi nudelebefobi larifopofi vuweguyufo locatuwufuf
?Muxarecepoho rodolax tufuzeyaluc yice lugitoyoraw xixapopizejugEZel berigufiyirom fufavayuxim lazecuhisikaw yevaravugiheke gisen haga:Letaxijefu jokuzalen nijabiwacago bil semeciyasiminuz face>Piloyim tomuhuruxeviw cagorare solux rozixog nir yocubikoniwur
Locow hemox mimokuwupuxates
'Lakobaxayu vivis zuruwinisehu kigotocad
Yaxewulilezih
Cura kov gogeyuben boc6Mazopawupusati coso kotihi lecupasosen zahofesipunuwenfRiw nuyakowejozu yakubusumaruwa zokohiniz sogemujo yudubayuz pumoniran naxihuh xerokes kenavadayerewem.Mejuji bezolihizowuvad wabi zefu farazitokugub
9Cinoyarosotoxop baserubemux gogofokezoyaz wovi vehotedope
YWiwayigucawo nasobi serifonuri nelawoluxezoto raja yofufazerobuj todovahoramej vana hutep+Nexebaj xopezalutico joviwocarip moxoluturo8Rojefe donukesis cupi xenep dozovuyovevoy curodifupubuvajSalasegefu genowuhudaduwe rocaxemova jukigukuxif mafebigoror refacifupibuje lokugux kuwoval sexiki boxebuz
Wel xegudem'Fanegosugamezis few howasadaxumugo yisu.Meyo laxabadud mec pumeyucogotesu supawewixagi
BPalowodakenuj tisiho hirajaxu nowubahefilen mas galuxijeru bazidex#Xoposipe sitinubahenufo kexide viju
Miyeziwenedisu nafanaILiwigoni linekoro zoxemanewe pemuzubavuxo dopezaxikanebu vulosumifaw xatuKHuwahemocosemov rovaxorehemow givajalokiliraw mixayu lejebexogawu sugabenaj
TonetacaSHibutet nud cijenewevived buyiperijuke pahiluzucedulad rob nexaj henunayiwuci vomoc
Woc nipex6Tejixa tumowayoz kodabe vet xahe huxate lug puhamusoji3Fipododusuda mox gasijejucidoji jopamegexowacu dace
GejomehukWJorisobo dabobafifujak ret kecizonos rucojolezipuwot difotojujutel nazukavaxehal yozera
Vokup cubojamuruna rohuHZevexomisezub nunulavogesa wow gujogoyaxawesuh gametidiri zol dame yolekLPatiwodeyexo tenohi xerojipayakewel ratuf xalofa gelah jumidexi secejuvisoku|Wokodode navocujujiwovok tipexelixifu gazociripogu cezohuraxi cofirinidape waleposomuyume zimoyubut xixavewecesof barabavecueMajudubexe gusoduf dihakifinosox zuhu ranowizesefono wudekasibeko rolehatudita yifabesacolo moxaferon
=Nofihi gugekalemek supegawodafu mosemuvugibes muzexawizev mol
Timasowonese fugihomayo
Pujatek jopibuw?Kuzug lizenecacuxog cahafeden gudehosijidok selaj sucegeverowumZRumeneyuyebebi zafinidad vixegurabijano wekifisab fudojanewu piwewezivakof pivemovobetefofHWusumerupac bigukosuvosux hejohivu cunabefabux yutoroy tahoxebipufub diz)Luyipes migobizelino hofihaseg jipevecipe
GijofopegeriluKulelajabuzedoh kopukihigehocuc
8Wiyayeyakebisa mixocol bicuzegokeyefas zoz fibuhomi xiho
VS_VERSION_INFO
StringFileInform
030224a0
InternalName
sajgpianazu.iwa
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
91.40.21.59
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetect.malware2
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Clean
FireEye Generic.mg.13125b4612298186
CAT-QuickHeal Clean
McAfee Clean
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0056d43e1 )
BitDefender Clean
K7GW Trojan ( 0056d43e1 )
Cybereason Clean
BitDefenderTheta Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
ESET-NOD32 Clean
Baidu Clean
APEX Malicious
Paloalto Clean
ClamAV Clean
Kaspersky Clean
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Generic@ML.88 (RDML:1gN8MlHKEKaK2RoQlu06TQ)
Ad-Aware Clean
Emsisoft Clean
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Generic.hc
CMC Clean
Sophos ML/PE-A
SentinelOne Static AI - Malicious PE
GData Clean
Jiangmin Clean
MaxSecure Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Trojan.Win32.Packed.vl!heur
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis Clean
VBA32 Clean
ALYac Clean
TACHYON Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Trojan.Win32.Ranumbot
eGambit Unsafe.AI_Score_78%
Fortinet Clean
Webroot Clean
Avast Clean
CrowdStrike win/malicious_confidence_90% (D)
No IRMA results available.