Static | ZeroBOX

PE Compile Time

2020-10-26 14:38:19

PDB Path

C:\val.pdb

PE Imphash

324eb7eba0d6f4cd042276a6e19d7718

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0001bed0 0x0001c000 7.61637567397
.rdata 0x0001d000 0x00004490 0x00004600 4.06360909607
.data 0x00022000 0x02ac41a0 0x00001800 3.00886544229
.late 0x02ae7000 0x00000272 0x00000400 0.0
.rsrc 0x02ae8000 0x0001e888 0x0001ea00 6.30277308943

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x02b04550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02b04550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02b04550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02b04550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02b04550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_CURSOR 0x02b05548 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x02b05548 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x02b05548 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b04038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x02b06480 0x00000406 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_STRING 0x02b06480 0x00000406 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_STRING 0x02b06480 0x00000406 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x02b05df0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x02b05df0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x02afdc78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02afdc78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02afdc78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02afdc78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02afdc78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_VERSION 0x02b05e18 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x41d00c ReadConsoleW
0x41d014 CreateActCtxW
0x41d018 GlobalAlloc
0x41d01c Sleep
0x41d020 InitAtomTable
0x41d024 HeapCreate
0x41d028 FindNextVolumeW
0x41d02c GetAtomNameW
0x41d030 GetMailslotInfo
0x41d034 GetModuleFileNameW
0x41d038 SetConsoleTitleA
0x41d03c SetTapePosition
0x41d040 SetLastError
0x41d044 GetProcAddress
0x41d048 VirtualAlloc
0x41d04c ResetEvent
0x41d050 LoadLibraryA
0x41d054 WriteConsoleA
0x41d060 GetModuleFileNameA
0x41d06c GetCPInfoExA
0x41d070 Module32Next
0x41d074 ReleaseMutex
0x41d078 EndUpdateResourceA
0x41d07c GetVersionExA
0x41d080 FindNextVolumeA
0x41d084 lstrcpyW
0x41d088 HeapReAlloc
0x41d08c EncodePointer
0x41d090 DecodePointer
0x41d094 GetModuleHandleW
0x41d098 ExitProcess
0x41d09c GetCommandLineW
0x41d0a0 HeapSetInformation
0x41d0a4 GetStartupInfoW
0x41d0b0 IsDebuggerPresent
0x41d0b4 TerminateProcess
0x41d0b8 GetCurrentProcess
0x41d0bc TlsAlloc
0x41d0c0 TlsGetValue
0x41d0c4 TlsSetValue
0x41d0c8 TlsFree
0x41d0d0 GetCurrentThreadId
0x41d0d4 GetLastError
0x41d0dc HeapAlloc
0x41d0e0 ReadFile
0x41d0ec HeapFree
0x41d0f4 SetHandleCount
0x41d0f8 GetStdHandle
0x41d100 GetFileType
0x41d108 SetFilePointer
0x41d10c GetCPInfo
0x41d110 GetACP
0x41d114 GetOEMCP
0x41d118 IsValidCodePage
0x41d11c CloseHandle
0x41d120 LoadLibraryW
0x41d124 WriteFile
0x41d130 GetTickCount
0x41d134 GetCurrentProcessId
0x41d13c WideCharToMultiByte
0x41d140 GetConsoleCP
0x41d144 GetConsoleMode
0x41d148 MultiByteToWideChar
0x41d14c RtlUnwind
0x41d150 RaiseException
0x41d154 SetStdHandle
0x41d158 FlushFileBuffers
0x41d15c LCMapStringW
0x41d160 GetStringTypeW
0x41d164 HeapSize
0x41d168 WriteConsoleW
0x41d16c CreateFileW
Library GDI32.dll:
0x41d000 GetBitmapBits
Library WINHTTP.dll:
0x41d174 WinHttpSetOption

!This program cannot be run in DOS mode.
`.rdata
@.data
@.rsrc
SSSSSS
HHtXHHt
?If90t
tWItHIt9It
j@j ^V
Fh=h$B
to=x/B
<+t"<-t
+t HHt
^SSSSS
QQSVWh
URPQQh
t"SS9] u
;t$,v-
UQPXY]Y[
PPPPPPPP
PPPPPPPP
]Nc"#b4
]Nc"#b4
]Nc"#b4
-!gKM$
B!C&W1\
Rs\Zq;.6
IlQp9Z
206A=Z
##F-7N
scbV.{-*
#VSuDH
^[;HyT%
V;"@@q~
@,jExr
<fWMsN
..jINo
ka^>&9
LGOz5-
io!HUC
[2iuJf
`BBKKU
1%8"qc
PZio\RC
jL?@Oj
mZ6WJA
x%i~@4
r/G,d7
y{37H_
[;8@i<
dl-%1l
M"k'!t
>k-j'5
-UC01[n
m>gxX\
4}j8$.
vEOwb]
/A$F=%
=R|0dW
|M9VH}
&qmLrh
-GtZ&7m
r{']R\
d}NjdzZ/
\o@L-
.:[cPO
XuzF>!
$hHDN
xq[>S/i
hf+>^P
3{|3@"
^T#-eD
dz`?qn
GyeTfqt
l@p*uT
$Mz|b3$
P>BV]vS
SUrutmCGD
5FPJlV
;:i^X^&
!\(:ut
%Q)w=%
i.N1*|
mk_|BXu
dv`vMZ<
QQ'E&2
=?]_G"
I|zu!`J
tJs:93
8zZ}(X
]^q0cP
K w`QZ
r|l<i5
cUrn>d
CtXG)x
2o<_>4OH
gJOE\
.=`Br<
|z%Mvk
oG6I+jj#u
^{~U}Zq
Jx3HG/
F]a(ue`
?ce{^`zUYxR
K VGB4k?
$]!(BU
I{qqmS
'zcMGu
4K9|<ij
tRDnU
i=G#.j@9
S/QA7x
)cXn:C
cGAy2v)
)nog}W*"E
?7'4rmC
/my%Ee%P
F^BCnF
(hLTY
p0GbC\*+
`GDY8B
*/V"bi<a
x(3h5
\W[|Z2R}<
~0:vF6
.jtt;O
ZIfZEc
B5iw,a
C 3^+(
I."+*r-N/@
\ni}D~f2
_$wZ~4
]q;?z,SY
QQSVWd
t=MOC
HtHu4j
t*=RCC
;7|G;p
tR99u2
CorExitProcess
(null)
`h````
xpxxxx
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
_nextafter
_hypot
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
1#QNAN
1#SNAN
Sip muwuliruvonabeposusoxohu soliciji
colenivadehuhejewohij
ligejimayogusesoludinakedigudetoyehodir
foxexidoxomeyakesiremukawivamihejabehehiluxufisucineberohivoworujezavikunalovebijobacozovu
VirtualProtect
kernel32.dll
LocalAlloc
%s %f %c
bad exception
Unknown exception
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
C:\val.pdb
HeapReAlloc
GetEnvironmentStringsW
ReadConsoleW
FindActCtxSectionStringA
CreateActCtxW
GlobalAlloc
InitAtomTable
HeapCreate
FindNextVolumeW
GetAtomNameW
GetMailslotInfo
GetModuleFileNameW
SetConsoleTitleA
SetTapePosition
SetLastError
GetProcAddress
VirtualAlloc
ResetEvent
LoadLibraryA
WriteConsoleA
BeginUpdateResourceA
SetEnvironmentVariableA
GetModuleFileNameA
GetProcessShutdownParameters
GetProcessAffinityMask
GetCPInfoExA
Module32Next
ReleaseMutex
EndUpdateResourceA
GetVersionExA
FindNextVolumeA
lstrcpyW
KERNEL32.dll
GetBitmapBits
GDI32.dll
WinHttpSetOption
WINHTTP.dll
EncodePointer
DecodePointer
GetModuleHandleW
ExitProcess
GetCommandLineW
HeapSetInformation
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
GetLastError
InterlockedDecrement
HeapAlloc
ReadFile
EnterCriticalSection
LeaveCriticalSection
HeapFree
IsProcessorFeaturePresent
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
SetFilePointer
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
CloseHandle
LoadLibraryW
WriteFile
FreeEnvironmentStringsW
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
WideCharToMultiByte
GetConsoleCP
GetConsoleMode
MultiByteToWideChar
RtlUnwind
RaiseException
SetStdHandle
FlushFileBuffers
LCMapStringW
GetStringTypeW
HeapSize
WriteConsoleW
CreateFileW
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
.?AVtype_info@@
1b99+#TT
\pgg?\
b'Qpp.?V
TTg.Q`?
QQ.9Tf
HH``.g+:FH
=KC=za#
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
5FFFFFFFFFFFFF
-5FFFFFFFFFFFF
sK&FFFFFFFFFF
FFFFFFFFFFS
FFFFFFFFFF
4jFFFFFFFFFF
jFFFFFFFFFF
FFFFFFFFFF
FFFFFFFFFF
FFFFFFFFFF
FFFFFFFFFFS
FFFFFFFFFF
FFFFFFFFFF
FFFFFFFFFF
FFFFFFFFFF
]*SFFFFFFFF
FFFFFFFF
FFFFFFFF
]FFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
E6u+X;a3
3ppqI|}
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFe#2
tFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFVO
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFV
:FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF;
=u)u/(
FFFFFFFFFFFFFFFFFFFFFFFFFFFFF.
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFXT
FFFFFFFFFFFFFFFFFFFFFFFFFFFFF
7FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
tFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
tFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF$9
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF~
FFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFF
UtFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFt
tFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFF:
tFFFFFFFFFFFFFFFFFFFFFFFFFFFF;g
tFFFFFFFFFFFFFFFFFFFFFFFFFFFF;g
FFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFF;
FFFFFFFFFFFFFFFFFFFFFFFFFFFFF;
eFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
wPFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF$"
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF$P
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
@gFr`~.
I[X~sPM
]h~~ef
Quv~YLJ~
R~~~f\_~
?mu~`FD~
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<
<<<<<<<<<
~~@K<<<<<<<<<<<<<<
<<<<<<<<<<<<<$~|
<<<<<<<<<<Kt]
<<<<<<<<<
<<<<<<
<<<<<<
<<<<<<PGj
6<<<<<<<)
<<<<<<<
<<<<<<<o
<<<<<<<
'<<<<<<<Q%
S?SShSp
<<<<<<<<<$G
~<<<<<<<<<
Q<<<<<<<<<<
<<<<<<<<<<<<<'
<<<<<<<<<<<<<<~V
<<<<<<<<<<<<<<<d
<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<~
<<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<<;
<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<
'<<<<<<<<<<<<<<<<<<<<<<k>
<<<<<<<<<<<<<<<<<<<<<<<
MG'<<<<<<<<<<<<<<<<<<<<<<<<<
|'<<<<<<<<<<<<<<<<<<<<<<<<<<<8
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<ud
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<u
;V@Q<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''
'''''''''''''''''''
'''''''
'''''''''''
['''''''''
''''''''
'''''''
'''''''B
'''''''
6'''''''
''''''''
}'''''''''l1Y_|
''''''''''
''''''''''''
''''''''''''''
''''''''''''''S
y''''''''''''''
''''''''''''''''5
'''''''''''''''''
y'''''''''''''''''O
|'''''''''''''''''}
''''''''''''''''']
:~'''''''''''''''''''][rN
'''''''''''''''''''''
'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''
Aj<\:q
Dg~Q8}~
+LmybD
4k~~]K
3Qu~mL~
/Kx~nB~
]]]]]$$$$$$$.$
$P.P.P
auP/]]W
nn'K!/
%O%OOO%
|422~c
|||||||||
|||||||||rmo
||||||||
||||||||
||||||||
||||||||mm
||||||||HHz
||||||||
||||||||
||||||||
||||||||
||||||||
00GKLO
||||||||vv
%||||||||
||||||||
||||||||S
||||||||]
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
=C4=svz
KK~"KJ
QaO={~|
d>~e<
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

mscoree.dll
(null)
KERNEL32.DLL
wHH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
@runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
AMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
((((( H
h(((( H
H
WUSER32.DLL
CONOUT$
bamebivemivenililifevuziv
xa wapazahidoyijukimapomofeyiyibag cihuvuzewew gucotufe
AFX_DIALOG_LAYOUT
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
080824a0
InternalName
namgpiamico.iwa
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
91.40.21.87
VarFileInfo
Translation
<Gobubuluvivug kusehiyey cowogel kafuzoh valelevu xugojulutiyDKacef zugesey noriv zokuze kusudiwike junuk gajadumox nabegofujekiku*Yexa pimudajagevey mawoyafegetigu viyotavuVMute fimawa liwewakugupem vuhiyis birez dikirixomuy zuta notofafuzeyizam yarenigijajid
Sawuxul rutibezaluyNXarirot zusah cedofu kugerex celebe rozidereka pos gavobarijo micobowide hiwek,Nidupapozixa narululucegani hazede nupafemob'Vuxihixa muzisamikepolod nuvo xutezelik4Pohamav yemogig gizehakuguzeyun juyowofuy nariboxoya
Gafija halocuzay mukeli hufo1Xikipil sinaromul yebebimalemupir majadudevev vij
Nimimeta
Nubabenusidasil zatetoceholODikanipemirifol micikiyabovuc cowixahixafu tezafuhosex bizo gakusa fobupoyanaxa4Pahusukunu vapepazoseve mop xita buricuz dazolicigup/Walurixof dokudixiradew sodepir fahinonuyujicag]Manujiruzona viki bazixezojucosi kuwume vamunej cot yiburarocod wilupoyew wusuvowo jotudepebu
Zumeniducajatac nin\Jicaxejumigomu hodazocuwo sav guliyic guxoyuhozagiv yebikuboleh vujukodafare gin feyeredifag
Giz kodota tiziwibumap<Pegis lul jefimiwifeyopud remosacuhuyige cimeganoregiwu cuya
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Trojan.Multi.Generic.4!c
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Packed-GDV!75D7E4D17302
Malwarebytes MachineLearning/Anomalous.95%
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0056d16b1 )
BitDefender Clean
K7GW Trojan ( 0056d16b1 )
Cybereason malicious.3ee00a
Baidu Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HNAL
APEX Malicious
Paloalto generic.ml
Cynet Malicious (score: 100)
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
SUPERAntiSpyware Clean
MicroWorld-eScan Clean
Rising Trojan.Kryptik!1.DA21 (CLASSIC)
Ad-Aware Clean
Sophos ML/PE-A + Troj/Krypt-BO
Comodo Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Generic.dh
FireEye Generic.mg.75d7e4d1730247c0
Emsisoft Clean
Ikarus Clean
Jiangmin Clean
Webroot Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft Clean
Microsoft Trojan:Win32/Azorult!ml
Gridinsoft Clean
Arcabit Clean
ViRobot Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
GData Clean
AhnLab-V3 Clean
Acronis suspicious
ALYac Clean
TACHYON Clean
VBA32 Clean
Cylance Unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Unsafe.AI_Score_87%
Fortinet Clean
BitDefenderTheta Gen:NN.ZexaF.34236.qu0@a45Rs0gG
Avast Clean
CrowdStrike win/malicious_confidence_100% (W)
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.