Static | ZeroBOX

PE Compile Time

2021-02-23 16:48:43

PDB Path

C:\haxisal\gorekidirewep.pdb

PE Imphash

e42bd2eea2c5b7013388ffede97cef98

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00012c70 0x00012e00 7.24848944014
.rdata 0x00014000 0x0000453e 0x00004600 4.04999996998
.data 0x00019000 0x02ac41a0 0x00001800 2.99748249745
.tovutuv 0x02ade000 0x00000272 0x00000400 0.0
.rsrc 0x02adf000 0x0001e888 0x0001ea00 6.31613109144

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x02afb550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02afb550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02afb550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02afb550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02afb550 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_CURSOR 0x02afc548 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x02afc548 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x02afc548 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02afb038 0x00000468 LANG_CZECH SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x02afd480 0x00000406 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_STRING 0x02afd480 0x00000406 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_STRING 0x02afd480 0x00000406 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x02afcdf0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x02afcdf0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x02af4c78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02af4c78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02af4c78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02af4c78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02af4c78 0x00000068 LANG_CZECH SUBLANG_DEFAULT data
RT_VERSION 0x02afce18 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x414010 SetEvent
0x414014 FlushViewOfFile
0x414018 ReadConsoleW
0x414020 CreateActCtxW
0x414024 GlobalAlloc
0x414028 Sleep
0x41402c InitAtomTable
0x414030 HeapCreate
0x414034 WriteConsoleW
0x414038 GetAtomNameW
0x41403c GetModuleFileNameW
0x414044 SetTapePosition
0x414048 SetLastError
0x41404c GetProcAddress
0x414050 VirtualAlloc
0x414058 LoadLibraryA
0x41405c GetModuleFileNameA
0x414064 GetCPInfoExA
0x41406c Module32Next
0x414070 ReleaseMutex
0x414074 EndUpdateResourceA
0x414078 GetVersionExA
0x41407c FindNextVolumeA
0x414080 lstrcpyW
0x414084 LCMapStringW
0x414088 SetConsoleTitleA
0x41408c HeapReAlloc
0x414090 HeapSize
0x414094 GetStringTypeW
0x414098 EncodePointer
0x41409c DecodePointer
0x4140a0 GetModuleHandleW
0x4140a4 ExitProcess
0x4140a8 GetCommandLineW
0x4140ac HeapSetInformation
0x4140b0 GetStartupInfoW
0x4140bc IsDebuggerPresent
0x4140c0 TerminateProcess
0x4140c4 GetCurrentProcess
0x4140c8 TlsAlloc
0x4140cc TlsGetValue
0x4140d0 TlsSetValue
0x4140d4 TlsFree
0x4140dc GetCurrentThreadId
0x4140e0 GetLastError
0x4140e8 HeapAlloc
0x4140ec ReadFile
0x4140f8 HeapFree
0x414100 SetHandleCount
0x414104 GetStdHandle
0x41410c GetFileType
0x414114 SetFilePointer
0x414118 GetCPInfo
0x41411c GetACP
0x414120 GetOEMCP
0x414124 IsValidCodePage
0x414128 CloseHandle
0x41412c LoadLibraryW
0x414130 WriteFile
0x41413c GetTickCount
0x414140 GetCurrentProcessId
0x414148 WideCharToMultiByte
0x41414c GetConsoleCP
0x414150 GetConsoleMode
0x414154 MultiByteToWideChar
0x414158 RtlUnwind
0x41415c RaiseException
0x414160 SetStdHandle
0x414164 FlushFileBuffers
0x414168 CreateFileW
Library USER32.dll:
0x414170 ClientToScreen
Library GDI32.dll:
0x414000 GetBitmapBits
Library WINHTTP.dll:
0x414178 WinHttpQueryOption

!This program cannot be run in DOS mode.
`.rdata
@.data
.tovutuvr
@.rsrc
SSSSSS
j h0xA
jXhPxA
HHtXHHt
?If90t
F\=@QA
t h<^A
tWItHIt9It
j@j ^V
<+t"<-t
+t HHt
^SSSSS
QQSVWh
URPQQh }@
t"SS9] u
;t$,v-
UQPXY]Y[
PPPPPPPP
PPPPPPPP
^f#-^%k
U&GzUR?{
!7|+elp
%?(6PrCRc
s-jXkC1{5
]<?'W2
I5.K8S
ciOsc+w
un<w#Ps
}CygI5U?
9Bc)"f
-)tuB;b*
Q?pWd+%&*_
=?S)Nh
$l~VNn
~rNLHwT
HB|k&+
1~Bs {
WKsRZ
d<c3n{.E;
f"E3DV
\Q%3[)
jA de=NB
^zsBtP
]oBsLX4
R">4RF
z(-X1Q
l@!i!MWNjr
>[ ZRR
hiDkU?
QQSVWd
t=MOC
HtHu4j
t*=RCC
;7|G;p
tR99u2
CorExitProcess
(null)
`h````
xpxxxx
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
_nextafter
_hypot
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
1#QNAN
1#SNAN
Sip muwuliruvonabeposusoxohu soliciji
colenivadehuhejewohij
VirtualProtect
kernel32.dll
LocalAlloc
%s %f %c
bad exception
Unknown exception
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
C:\haxisal\gorekidirewep.pdb
HeapReAlloc
SetProcessAffinityMask
SetEnvironmentVariableW
GetEnvironmentStringsW
SetEvent
FlushViewOfFile
ReadConsoleW
FindActCtxSectionStringA
CreateActCtxW
GlobalAlloc
InitAtomTable
HeapCreate
WriteConsoleW
GetAtomNameW
GetModuleFileNameW
SetConsoleTitleA
SetTapePosition
SetLastError
GetProcAddress
VirtualAlloc
BeginUpdateResourceW
LoadLibraryA
GetModuleFileNameA
CreateIoCompletionPort
GetCPInfoExA
SetProcessShutdownParameters
Module32Next
ReleaseMutex
EndUpdateResourceA
GetVersionExA
FindNextVolumeA
lstrcpyW
LCMapStringW
KERNEL32.dll
ClientToScreen
USER32.dll
GetBitmapBits
GDI32.dll
WinHttpQueryOption
WINHTTP.dll
EncodePointer
DecodePointer
GetModuleHandleW
ExitProcess
GetCommandLineW
HeapSetInformation
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
GetLastError
InterlockedDecrement
HeapAlloc
ReadFile
EnterCriticalSection
LeaveCriticalSection
HeapFree
IsProcessorFeaturePresent
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
SetFilePointer
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
CloseHandle
LoadLibraryW
WriteFile
FreeEnvironmentStringsW
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
WideCharToMultiByte
GetConsoleCP
GetConsoleMode
MultiByteToWideChar
RtlUnwind
RaiseException
SetStdHandle
FlushFileBuffers
GetStringTypeW
HeapSize
CreateFileW
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
.?AVtype_info@@
::?eX];?:
;:5/GG
c;5/55
]!;];;c5
php--2
JJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJ/2.r$2M
JJJJJJJJJJJJJ/
JJJJJJJJJJJJ
JJJJJJJJJJ
JJJJJJJJJJ
fJJJJJJJJJJ
JJJJJJJJJJ
JJJJJJJJJJ
_fJJJJJJJJJJ
fJJJJJJJJJJ
JJJJJJJJJJ
JJJJJJJJJJ
JJJJJJJJJJ
JJJJJJJJJJ
JJJJJJJJJJ
</jgJJJJJJJJJJ/
JJJJJJJJ2|
;JJJJJJJJ
+gJJJJJJJJ
JJJJJJJJJ2TA/
/r//r
JJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJ
((((((((((((((((((((((((((((((((((((:n
((((((=3
((((((
zry((((((
((((((
((((((]1
p((((((=
((((((
7h(((([
((((((
v((((((((((((((((((((((((((((((((((
C9w%S5c4
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFe#2
tFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFVO
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFV
:FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF;
=u)u/(
FFFFFFFFFFFFFFFFFFFFFFFFFFFFF.
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFXT
FFFFFFFFFFFFFFFFFFFFFFFFFFFFF
7FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
tFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
tFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF$9
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF~
FFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFF
UtFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFt
tFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFF:
tFFFFFFFFFFFFFFFFFFFFFFFFFFFF;g
tFFFFFFFFFFFFFFFFFFFFFFFFFFFF;g
FFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFF;
FFFFFFFFFFFFFFFFFFFFFFFFFFFFF;
eFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
wPFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF$"
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF$P
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
@gFr`~.
I[X~sPM
]h~~ef
Quv~YLJ~
R~~~f\_~
?mu~`FD~
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<
<<<<<<<<<
~~@K<<<<<<<<<<<<<<
<<<<<<<<<<<<<$~|
<<<<<<<<<<Kt]
<<<<<<<<<
<<<<<<
<<<<<<
<<<<<<PGj
6<<<<<<<)
<<<<<<<
<<<<<<<o
<<<<<<<
'<<<<<<<Q%
S?SShSp
<<<<<<<<<$G
~<<<<<<<<<
Q<<<<<<<<<<
<<<<<<<<<<<<<'
<<<<<<<<<<<<<<~V
<<<<<<<<<<<<<<<d
<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<~
<<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<<;
<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<<<<<<<<
'<<<<<<<<<<<<<<<<<<<<<<k>
<<<<<<<<<<<<<<<<<<<<<<<
MG'<<<<<<<<<<<<<<<<<<<<<<<<<
|'<<<<<<<<<<<<<<<<<<<<<<<<<<<8
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<ud
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<u
;V@Q<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''
'''''''''''''''''''
'''''''
'''''''''''
['''''''''
''''''''
'''''''
'''''''B
'''''''
6'''''''
''''''''
}'''''''''l1Y_|
''''''''''
''''''''''''
''''''''''''''
''''''''''''''S
y''''''''''''''
''''''''''''''''5
'''''''''''''''''
y'''''''''''''''''O
|'''''''''''''''''}
''''''''''''''''']
:~'''''''''''''''''''][rN
'''''''''''''''''''''
'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''
Aj<\:q
Dg~Q8}~
+LmybD
4k~~]K
3Qu~mL~
/Kx~nB~
]]]]]$$$$$$$.$
$P.P.P
auP/]]W
nn'K!/
%O%OOO%
|422~c
|||||||||
|||||||||rmo
||||||||
||||||||
||||||||
||||||||mm
||||||||HHz
||||||||
||||||||
||||||||
||||||||
||||||||
00GKLO
||||||||vv
%||||||||
||||||||
||||||||S
||||||||]
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
=C4=svz
KK~"KJ
QaO={~|
d>~e<
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

mscoree.dll
(null)
KERNEL32.DLL
wHH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
@runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
AMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
((((( H
h(((( H
H
WUSER32.DLL
CONOUT$
bamebivemivenililifevuziv
xa wapazahidoyijukimapomofeyiyibag cihuvuzewew gucotufe
vumitodenagelahigizanuyoxohihumivagofam
goliyapiladonoloduriziponoricewapalukejabeyupanufimevowinegapacisiloguviyogasugahuhasihenu
AFX_DIALOG_LAYOUT
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
080824a0
InternalName
namgpiamico.iwa
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
91.40.21.87
VarFileInfo
Translation
<Gobubuluvivug kusehiyey cowogel kafuzoh valelevu xugojulutiyDKacef zugesey noriv zokuze kusudiwike junuk gajadumox nabegofujekiku*Yexa pimudajagevey mawoyafegetigu viyotavuVMute fimawa liwewakugupem vuhiyis birez dikirixomuy zuta notofafuzeyizam yarenigijajid
Sawuxul rutibezaluyNXarirot zusah cedofu kugerex celebe rozidereka pos gavobarijo micobowide hiwek,Nidupapozixa narululucegani hazede nupafemob'Vuxihixa muzisamikepolod nuvo xutezelik4Pohamav yemogig gizehakuguzeyun juyowofuy nariboxoya
Gafija halocuzay mukeli hufo1Xikipil sinaromul yebebimalemupir majadudevev vij
Nimimeta
Nubabenusidasil zatetoceholODikanipemirifol micikiyabovuc cowixahixafu tezafuhosex bizo gakusa fobupoyanaxa4Pahusukunu vapepazoseve mop xita buricuz dazolicigup/Walurixof dokudixiradew sodepir fahinonuyujicag]Manujiruzona viki bazixezojucosi kuwume vamunej cot yiburarocod wilupoyew wusuvowo jotudepebu
Zumeniducajatac nin\Jicaxejumigomu hodazocuwo sav guliyic guxoyuhozagiv yebikuboleh vujukodafare gin feyeredifag
Giz kodota tiziwibumap<Pegis lul jefimiwifeyopud remosacuhuyige cimeganoregiwu cuya
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Trojan.Multi.Generic.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.Generic.30893015
FireEye Generic.mg.fa1bbe98e6ecfc6a
CAT-QuickHeal Trojan.Multi
McAfee Packed-GDV!FA1BBE98E6EC
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
BitDefender Trojan.Generic.30893015
K7GW Trojan ( 005894ae1 )
K7AntiVirus Trojan ( 005894ae1 )
Arcabit Trojan.Generic.D1D763D7
BitDefenderTheta Gen:NN.ZexaF.34236.nu0@aaz4NQdG
Cyren W32/Kryptik.FOQ.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HNAD
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Win.Trojan.Generic-9903807-0
Kaspersky HEUR:Trojan.Win32.Zenpak.gen
Alibaba Trojan:Win32/Racealer.9d6863d8
NANO-Antivirus Clean
ViRobot Clean
Tencent Clean
Ad-Aware Trojan.Generic.30893015
Sophos Mal/Generic-R + Troj/Krypt-BO
Comodo Clean
F-Secure Clean
DrWeb Trojan.DownLoader43.51281
VIPRE Clean
TrendMicro TROJ_GEN.R002C0PJL21
McAfee-GW-Edition BehavesLike.Win32.Generic.dh
CMC Clean
Emsisoft Trojan.Crypt (A)
Ikarus Trojan.Win32.Crypt
Jiangmin Clean
Webroot W32.Trojan.Agent.Gen
Avira Clean
MAX malware (ai score=100)
Antiy-AVL Clean
Kingsoft Win32.Hack.Undef.(kcloud)
Gridinsoft Trojan.Win32.Packed.vb
Microsoft Trojan:Win32/Racealer.AA!MTB
SUPERAntiSpyware Clean
ZoneAlarm Clean
GData Trojan.Generic.30893015
Cynet Malicious (score: 100)
AhnLab-V3 Ransomware/Win.STOP.R446694
Acronis suspicious
VBA32 BScope.Backdoor.MSIL.NanoBot
ALYac Trojan.GenericKD.37841845
TACHYON Clean
Malwarebytes Trojan.MalPack.GS
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002C0PJL21
Rising Trojan.Kryptik!1.DA21 (CLASSIC)
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.FMJB!tr
AVG Win32:Trojan-gen
Cybereason malicious.b74166
Avast Win32:Trojan-gen
No IRMA results available.