Static | ZeroBOX

PE Compile Time

2020-06-28 23:39:58

PDB Path

C:\girewe.pdb

PE Imphash

2bb7e5ee230d0f5bc1553fe65bd4be1f

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00031a60 0x00031c00 7.84939666923
.rdata 0x00033000 0x00004494 0x00004600 3.99888258089
.data 0x00038000 0x02ac41a0 0x00001800 3.00400843897
.cecabe 0x02afd000 0x00000272 0x00000400 0.0
.rsrc 0x02afe000 0x0001e888 0x0001ea00 6.30844939362

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x02b1a550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02b1a550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02b1a550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02b1a550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02b1a550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_CURSOR 0x02b1b548 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x02b1b548 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x02b1b548 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b1a038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x02b1c480 0x00000406 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_STRING 0x02b1c480 0x00000406 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_STRING 0x02b1c480 0x00000406 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x02b1bdf0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x02b1bdf0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x02b13c78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02b13c78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02b13c78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02b13c78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02b13c78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_VERSION 0x02b1be18 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x433008 GetCurrentProcess
0x433014 SetEvent
0x433018 GetTickCount
0x43301c ReadConsoleW
0x433024 GlobalAlloc
0x433028 Sleep
0x43302c InitAtomTable
0x433030 HeapCreate
0x433034 FindNextVolumeW
0x433038 WriteConsoleW
0x43303c GetMailslotInfo
0x433040 CreateActCtxA
0x433044 SetConsoleTitleA
0x433048 SetTapePosition
0x43304c Module32First
0x433050 SetLastError
0x433054 GetProcAddress
0x433058 VirtualAlloc
0x43305c GetAtomNameA
0x433060 LoadLibraryA
0x433070 GetCPInfoExA
0x433074 ReleaseMutex
0x433078 EndUpdateResourceA
0x43307c GetVersionExA
0x433080 FindNextVolumeA
0x433084 lstrcpyW
0x433088 LCMapStringW
0x43308c GetModuleFileNameW
0x433090 HeapReAlloc
0x433094 EncodePointer
0x433098 DecodePointer
0x43309c GetModuleHandleW
0x4330a0 ExitProcess
0x4330a4 GetCommandLineW
0x4330a8 HeapSetInformation
0x4330ac GetStartupInfoW
0x4330b8 IsDebuggerPresent
0x4330bc TerminateProcess
0x4330c0 TlsAlloc
0x4330c4 TlsGetValue
0x4330c8 TlsSetValue
0x4330cc TlsFree
0x4330d4 GetCurrentThreadId
0x4330d8 GetLastError
0x4330e0 HeapAlloc
0x4330e4 ReadFile
0x4330f0 HeapFree
0x4330f8 SetHandleCount
0x4330fc GetStdHandle
0x433104 GetFileType
0x43310c SetFilePointer
0x433110 GetCPInfo
0x433114 GetACP
0x433118 GetOEMCP
0x43311c IsValidCodePage
0x433120 CloseHandle
0x433124 LoadLibraryW
0x433128 WriteFile
0x433134 GetCurrentProcessId
0x43313c WideCharToMultiByte
0x433140 GetConsoleCP
0x433144 GetConsoleMode
0x433148 MultiByteToWideChar
0x43314c RtlUnwind
0x433150 RaiseException
0x433154 SetStdHandle
0x433158 FlushFileBuffers
0x43315c GetStringTypeW
0x433160 HeapSize
0x433164 CreateFileW
Library GDI32.dll:
0x433000 GetBitmapBits

!This program cannot be run in DOS mode.
`.rdata
@.data
.cecabe
@.rsrc
SSSSSS
j h hC
jXh@hC
HHtXHHt
?If90t
F\=0AC
t h,NC
tWItHIt9It
j@j ^V
<+t"<-t
+t HHt
^SSSSS
QQSVWh
URPQQh
t"SS9] u
;t$,v-
UQPXY]Y[
PPPPPPPP
PPPPPPPP
Ci>&<4
U8n^)L
D,/ Ef
d~3X{9:
_D!ixK
o"|>@YDln
ttn9Gw
V&,x6jF
)P/K]M
iS`:lP
Y"J=`kR
Gatpzr
*FaS2Xu/p
3rb,<G
r0oa=hbW
ggap(3
av~WE{
>|WmK>
]^ZM@t
;{o8j?^
3qm-eVii
{s+?}
=T&\..
B/1^UT
b6'_09
,-XfiB
]?6dLR|
Q- }rr2
#%8E6c
Iy]VUt
_rV40[
nW"Wj2
jnD\1<
mS#C,Rg
d[F*CVt2
n3_6#Fz
/Z6&5s7(
) X!J9
9bn\[rly
MooD4j
D#d=o\
}UmVTJrL
M-~R@+
4zhRNG
z@-ID"U
Fy+7yd
J'3s\]sV-E
M.Y)GV{
<Vy|QB
G(MDz]
O+4R]_4
w%xMI^
3{m{wmE
TTCa6<
!%,rY||
\[r$q\[4
YjfZt*
'u=U9j:*
c $+uV
dW5=Th[.l
7m7<>Gg
;d(w;vn%
ezkm?(
9oDKz:
?@{$}=1
xTG{p(E
9*]0"t
2@U,
^l:o9x"PY
s>Bm%$?
?UoCMh4
Ldd`ud
JMcyGmm1=f
)*?hLU
)Ot1?A
\4!44<
|60k7gb
/0veO=
\8:zq%
TC/">7
n{w9}pS
O f8RD
'CC1vT
_8@b)nd
.kq%mw
zowpx7
$8rxDF
N`=/%
M8*C#
"Yel}M
SbJlk{
=%XCDt
-KRkww
4PHIpx
G:s[7?-(|%p
Q$6`a6
!yP!<',
6om@!'
`WYXZ.:
6W$$|D8
[6Ag~1
*6&`.i
HB!)zq
$k|]=@
hRY.e\}
xA/X93
!uT|$u
%iB?;e
;eLyLx
]~thdR
Yxw~<l
.fkXkmc'9
_[X uXc
~s6<NN(
0Ov`|6N
3fCcGE
! 1cKW
Wy_'eH
8JQg1y
m&fz#3
0D+0|~5
eQ%jYB)J
P&bIYx}0r
x(K>bud
EX$xG
z\tX+]/j
QDlK5W
YGaoU'G]z;
f{s8R&
Jbc\l46
_ib+4-^
M#RV2u^
tc`!8>
;}WQC3
?+K;`u/
p'aUq.m
jzn_#GZ
BlXUKM
v0K52D$
NWj350
8._.G0_
uvrY9U
nsjt@X
INOY|k
PsE;D-K\
hjtQgs
R4<4:4
vsk-pL
L:g*X8
wi19A2I
G!Lc6g+7
~ZuUD/"
5EJ@a,(
&<%/_2
WC]E98
:v+ID%
;Co6tz
|0~5]B
ym8&5P
R}:@]gO
s-GpPq
xk*}e,
q 6`Sqt
&[N8%`
x=<r4%5F
\T\3x0+
k/[`bAu.
9G?ggd
x*7 E
rLJ3$Q
EbZ)|A
>"~WLv
^Rr=A S"b
zGE2w`
Qvm!Xc
`K8?g
F2f.cJ
+]}iZ!
n/54xF
c7/T[J\
*p"bos
Ds.8E7V
VQW:5V
C&pA=u@
88k'H!
_QlBuB
6kwvM'O>F/h
dmQ;!F
_MOTl|'
"vIT}r
GRSVcg
^=k7"`
2qjXi&8
*FEXP?
jj@ aIY
<vuRW/
&uB`B?
te*bAo
)*+*@?
q%2cOo
u"Wdi
rFM9&A
ibS ,o
~ha!1W
9M}=l_
2H(8S$
9_V=.Z
6C} [!,
1RGB6Y
@'_<Q0
8gMAic
$ffP6!
UL}Q&z
`%^U_O
{ =znD
lJD(!dA
kU#8)O3ke
8xz("wB
YIh|C{
*&g;!|
|%`4KpA
XmeK+e
LHT>rh
cLX"DH
w16<Pk
:>C2@_
wR8PQd)j
/L+l0FzW
!+N=A
VH1>x}
ahLZ))
MWiZc(
t[T"cv)8"*<R
}h}tO*
~99!%}RVp
x;)3l>8
IQU,6Q
/h);uN
nw/\f.a
AX.YBc`Xw
`i^;d4
Z0N}ey
~5"64N
60\gCA
y._3,EDhuY
+=775b
\LH+Pr
A&[ut.IJ
:7V=UARTW,_
QQSVWd
t=MOC
HtHu4j
t*=RCC
;7|G;p
tR99u2
CorExitProcess
(null)
`h````
xpxxxx
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
_nextafter
_hypot
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
1#QNAN
1#SNAN
Sip muwuliruvonabeposusoxohu soliciji
colenivadehuhejewohij
VirtualProtect
kernel32.dll
LocalAlloc
%s %f %c
bad exception
Unknown exception
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
C:\girewe.pdb
HeapReAlloc
GetCurrentProcess
SetEnvironmentVariableW
GetEnvironmentStringsW
SetEvent
GetTickCount
ReadConsoleW
FindActCtxSectionStringA
GlobalAlloc
InitAtomTable
HeapCreate
FindNextVolumeW
WriteConsoleW
GetMailslotInfo
GetModuleFileNameW
CreateActCtxA
SetConsoleTitleA
SetTapePosition
Module32First
SetLastError
GetProcAddress
VirtualAlloc
GetAtomNameA
LoadLibraryA
BeginUpdateResourceA
GetProcessShutdownParameters
GetProcessAffinityMask
GetCPInfoExA
ReleaseMutex
EndUpdateResourceA
GetVersionExA
FindNextVolumeA
lstrcpyW
LCMapStringW
KERNEL32.dll
GetBitmapBits
GDI32.dll
EncodePointer
DecodePointer
GetModuleHandleW
ExitProcess
GetCommandLineW
HeapSetInformation
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
GetLastError
InterlockedDecrement
HeapAlloc
ReadFile
EnterCriticalSection
LeaveCriticalSection
HeapFree
IsProcessorFeaturePresent
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
SetFilePointer
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
CloseHandle
LoadLibraryW
WriteFile
FreeEnvironmentStringsW
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
WideCharToMultiByte
GetConsoleCP
GetConsoleMode
MultiByteToWideChar
RtlUnwind
RaiseException
SetStdHandle
FlushFileBuffers
GetStringTypeW
HeapSize
CreateFileW
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
.?AVtype_info@@
eeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeee
vxeeeeeeeeeeeeeeeest
VKVKVKVKK
KKVKVV
>eeeeeeeeeeeeeeee3
&eeeeeeeeeeeeeeee+sVVV?j
+eeeeeeeeeeeeeeee
&eeeeeeeeeeeeeeee
&eeeeeeeeeeeeeeee
&eeeeeeeeeeeeeeee
^eeeeeeeeeeeeeeee
VoZ;O;
KD&eeeeeeeeeeeeeeee
&eeeeeeeeeeeeeeee
eeeeeeeeeeeeeeee&&
eeeeeeeeeeeeeeee
eeeeeeeeeeeeeeee
jKs^eeeeeeeeeeeeeeee3
eeeeeeeeeeeeeeee
^eeeeeeeeeeeeeeee
;Vk^eeeeeeeeeeeeeeee8
eeeeeeeeeeeeeeee33
eeeeeeeeeeeeeeee3
teeeeeeeeeeeeeeee
eeeeeeeeeeeeeee
eeeeeeeeeeeeeeeL
eeeeeeeeeeeeeee
SbeeeeeeeeeeeeeeeL^
eeeeeeeeeeeeeeeL>
eeeeeeeeeeeeeeeL
eeeeeeeeeeeeeeeG
eeeeeeeeeeeeeeeG3
eeeeeeeeeeeeeee
t}t}S}>^
eeeeeeeeeeeee
k^tGeeeeeeeeeeee}
3Geeeeeeeeeeee3
eeeeeeeeeeee
eeeeeeeeeeee
eeeeeeeeeeee&UKF
eeeeeeeeeeee^
eeeeeeeeeeee^
^1eeeeeeeeeeeef
eeeeeeeeeeee
eeeeeeeeeeeee
11111<<
<G<<<<beeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeee
44444444444444444444444444444444444444444444444444444444444444444444444F
44444444444444
44444444444444
4444444444444P
p4444444444444
4444444444444
44444444444444
*/44444444444444
4444444444444q
4444444444444
444444444444418
.B4444444444444
44444444444441
<yy{4444444444444;
M]F4444444444444;8
(Mf/.6{4444444444444
F4444444444444
y=F4444444444444
4444444444444
4444444444444b
S44444444444PQ
o4444444444b
XF4444444444
F4444444444S9
F4444444444S@9
4444444444
T*EE:V:
P4444444444)FFF
444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444
wwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwww
Yfywwwwww
wwwwww
wwwwww
wwwwwwhr=Ql!
wwwwwwS
ewwwwww
wwwwww
$xwwwww
wwwwKM
wwwwwwG
}%wwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwww
D7z%]5e6
2rptFz
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFe#2
tFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFVO
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFV
:FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF;
=u)u/(
FFFFFFFFFFFFFFFFFFFFFFFFFFFFF.
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFXT
FFFFFFFFFFFFFFFFFFFFFFFFFFFFF
7FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
tFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
tFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF$9
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF~
FFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFF
UtFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFt
tFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFF:
tFFFFFFFFFFFFFFFFFFFFFFFFFFFF;g
tFFFFFFFFFFFFFFFFFFFFFFFFFFFF;g
FFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFF;
FFFFFFFFFFFFFFFFFFFFFFFFFFFFF;
eFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
wPFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF$"
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF$P
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
@gFr`~.
I[X~sPM
]h~~ef
Quv~YLJ~
R~~~f\_~
?mu~`FD~
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<
<<<<<<<<<
~~@K<<<<<<<<<<<<<<
<<<<<<<<<<<<<$~|
<<<<<<<<<<Kt]
<<<<<<<<<
<<<<<<
<<<<<<
<<<<<<PGj
6<<<<<<<)
<<<<<<<
<<<<<<<o
<<<<<<<
'<<<<<<<Q%
S?SShSp
<<<<<<<<<$G
~<<<<<<<<<
Q<<<<<<<<<<
<<<<<<<<<<<<<'
<<<<<<<<<<<<<<~V
<<<<<<<<<<<<<<<d
<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<~
<<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<<;
<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<
'<<<<<<<<<<<<<<<<<<<<<<k>
<<<<<<<<<<<<<<<<<<<<<<<
MG'<<<<<<<<<<<<<<<<<<<<<<<<<
|'<<<<<<<<<<<<<<<<<<<<<<<<<<<8
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<ud
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<u
;V@Q<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''
'''''''''''''''''''
'''''''
'''''''''''
['''''''''
''''''''
'''''''
'''''''B
'''''''
6'''''''
''''''''
}'''''''''l1Y_|
''''''''''
''''''''''''
''''''''''''''
''''''''''''''S
y''''''''''''''
''''''''''''''''5
'''''''''''''''''
y'''''''''''''''''O
|'''''''''''''''''}
''''''''''''''''']
:~'''''''''''''''''''][rN
'''''''''''''''''''''
'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''
Aj<\:q
Dg~Q8}~
+LmybD
4k~~]K
3Qu~mL~
/Kx~nB~
]]]]]$$$$$$$.$
$P.P.P
auP/]]W
nn'K!/
%O%OOO%
|422~c
|||||||||
|||||||||rmo
||||||||
||||||||
||||||||
||||||||mm
||||||||HHz
||||||||
||||||||
||||||||
||||||||
||||||||
00GKLO
||||||||vv
%||||||||
||||||||
||||||||S
||||||||]
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
=C4=svz
KK~"KJ
QaO={~|
d>~e<
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

mscoree.dll
(null)
KERNEL32.DLL
wHH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
@runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
CMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
((((( H
h(((( H
H
WUSER32.DLL
CONOUT$
bamebivemivenililifevuziv
xa wapazahidoyijukimapomofeyiyibag cihuvuzewew gucotufe
rirojoxelayufeyorobigefirijecipayotajek
lilitezutavehitusikutiyazowogetolamayesabagotiludumivabomunaboyidiyufalikapesomugazoviwesi
AFX_DIALOG_LAYOUT
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
080824a0
InternalName
namgpiamico.iwa
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
91.40.21.87
VarFileInfo
Translation
<Gobubuluvivug kusehiyey cowogel kafuzoh valelevu xugojulutiyDKacef zugesey noriv zokuze kusudiwike junuk gajadumox nabegofujekiku*Yexa pimudajagevey mawoyafegetigu viyotavuVMute fimawa liwewakugupem vuhiyis birez dikirixomuy zuta notofafuzeyizam yarenigijajid
Sawuxul rutibezaluyNXarirot zusah cedofu kugerex celebe rozidereka pos gavobarijo micobowide hiwek,Nidupapozixa narululucegani hazede nupafemob'Vuxihixa muzisamikepolod nuvo xutezelik4Pohamav yemogig gizehakuguzeyun juyowofuy nariboxoya
Gafija halocuzay mukeli hufo1Xikipil sinaromul yebebimalemupir majadudevev vij
Nimimeta
Nubabenusidasil zatetoceholODikanipemirifol micikiyabovuc cowixahixafu tezafuhosex bizo gakusa fobupoyanaxa4Pahusukunu vapepazoseve mop xita buricuz dazolicigup/Walurixof dokudixiradew sodepir fahinonuyujicag]Manujiruzona viki bazixezojucosi kuwume vamunej cot yiburarocod wilupoyew wusuvowo jotudepebu
Zumeniducajatac nin\Jicaxejumigomu hodazocuwo sav guliyic guxoyuhozagiv yebikuboleh vujukodafare gin feyeredifag
Giz kodota tiziwibumap<Pegis lul jefimiwifeyopud remosacuhuyige cimeganoregiwu cuya
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Clean
CMC Clean
CAT-QuickHeal Clean
ALYac Clean
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 00564bda1 )
BitDefender Clean
K7GW Trojan ( 00564bda1 )
CrowdStrike win/malicious_confidence_100% (W)
BitDefenderTheta Gen:NN.ZexaF.34236.vu0@aW5G2unG
Cyren Clean
Symantec Packed.Generic.528
ESET-NOD32 Clean
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.DA21 (CLASSIC)
Ad-Aware Clean
Emsisoft Clean
Comodo Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.fc
FireEye Generic.mg.f2abae5000fe7126
Sophos ML/PE-A + Troj/Krypt-BO
Ikarus Clean
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
McAfee Packed-GDV!F2ABAE5000FE
TACHYON Clean
VBA32 Clean
Malwarebytes MachineLearning/Anomalous.97%
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Unsafe.AI_Score_93%
Fortinet Clean
Cybereason malicious.148373
Avast Clean
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.