Static | ZeroBOX

PE Compile Time

2021-04-29 17:25:54

PDB Path

C:\yax23_casasekaboc-luciwocayimome\z.pdb

PE Imphash

0f5ea2bfadfc0cb42c0db57501b4ae1c

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00057365 0x00057400 7.96339760912
.rdata 0x00059000 0x000045ce 0x00004600 4.10285284386
.data 0x0005e000 0x02ac3df0 0x00001400 2.17624822474
.miveb 0x02b22000 0x00000272 0x00000400 0.0
.rsrc 0x02b23000 0x00016970 0x00016a00 6.39733458783

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x02b38b28 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02b38b28 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02b38b28 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x02b38b28 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_CURSOR 0x02b38da8 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x02b38da8 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x02b38da8 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02b38630 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x02b39628 0x00000344 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_STRING 0x02b39628 0x00000344 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_STRING 0x02b39628 0x00000344 LANG_BULGARIAN SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x02b38e58 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x02b38e58 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x02b38a98 0x00000068 LANG_DIVEHI SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02b38a98 0x00000068 LANG_DIVEHI SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02b38a98 0x00000068 LANG_DIVEHI SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02b38a98 0x00000068 LANG_DIVEHI SUBLANG_DEFAULT data
RT_VERSION 0x02b38e80 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x459008 LoadLibraryExW
0x459010 SetEvent
0x459014 GetTickCount
0x459018 ReadConsoleW
0x459020 CreateActCtxW
0x459024 Sleep
0x459028 FindNextVolumeW
0x45902c GetMailslotInfo
0x459030 GetModuleFileNameW
0x459034 Module32First
0x459038 GetCPInfoExW
0x45903c GetLastError
0x459040 GetProcAddress
0x459044 VirtualAlloc
0x459048 GetAtomNameA
0x45904c LoadLibraryA
0x459050 WriteConsoleA
0x459054 LocalAlloc
0x459060 SetConsoleTitleW
0x459064 EraseTape
0x459070 ReleaseMutex
0x459074 EndUpdateResourceA
0x459078 GetVersionExA
0x45907c DeleteAtom
0x459080 FindNextVolumeA
0x459084 lstrcpyW
0x459088 LCMapStringW
0x45908c HeapReAlloc
0x459090 EncodePointer
0x459094 DecodePointer
0x459098 GetCommandLineW
0x45909c HeapSetInformation
0x4590a0 GetStartupInfoW
0x4590a4 RaiseException
0x4590b0 IsDebuggerPresent
0x4590b4 TerminateProcess
0x4590b8 GetCurrentProcess
0x4590bc HeapAlloc
0x4590c0 HeapFree
0x4590c8 TlsAlloc
0x4590cc TlsGetValue
0x4590d0 TlsSetValue
0x4590d4 TlsFree
0x4590dc GetModuleHandleW
0x4590e0 SetLastError
0x4590e4 GetCurrentThreadId
0x4590ec ReadFile
0x4590f8 SetHandleCount
0x4590fc GetStdHandle
0x459104 GetFileType
0x45910c SetFilePointer
0x459110 CloseHandle
0x459114 ExitProcess
0x459118 WriteFile
0x459120 HeapCreate
0x459128 GetCurrentProcessId
0x459130 WideCharToMultiByte
0x459134 GetConsoleCP
0x459138 GetConsoleMode
0x45913c GetCPInfo
0x459140 GetACP
0x459144 GetOEMCP
0x459148 IsValidCodePage
0x45914c MultiByteToWideChar
0x459150 RtlUnwind
0x459154 SetStdHandle
0x459158 FlushFileBuffers
0x45915c HeapSize
0x459160 LoadLibraryW
0x459164 WriteConsoleW
0x459168 GetStringTypeW
0x45916c CreateFileW
Library GDI32.dll:
0x459000 GetBitmapBits

!This program cannot be run in DOS mode.
`.rdata
@.data
.miveb
@.rsrc
D$0PVV
HHtXHHt
?If90t
j@j ^V
uTVWh!]@
^SSSSS
QQSVWh
URPQQh
t"SS9] u
PPPPPPPP
PPPPPPPP
;t$,v-
UQPXY]Y[
/-;#Ij
"NA=#J
"NA=#J
Yb"=F6X
(Q6ghk
F_4E3a
PRv+K,
b&>[xt:>r
3BE%{^w
?[*&ZX
ECP3l[
[5H6;5
4KMGL:t
;eGGC/
IFG+n6>
\0|nQ
X6k*E9k
?^,OWW
3)BY<{
Q1.4m!
Rzm(<s2
HiT-{_
{i@(sm
*#7WOF
aF:CYJ
6#_#]I
}h.?q.
LS@BI\W
!hg1MU"
a>wN(Il
I50PCMO2l
Zmc2[n
%>%,:
&jS[zJ
U9A[M0n
jo*kbE
`s;=ea
Xp?Z,n
/XS[nu
\s5.WP
+5<+Vf
7u)D9:
2F7T.Sxe
wG8>9Fz
[?<#*20
~Y~QA|
vvW)8f
h8~U~~
/#I"k
>:,!Q$b
9b`^Kn8
2Xa!ay
Ja?=?e
C[|*eO
H|4xpnTM
Xs&"39
3vHOyZn
16LtrS0
9v=<,d
;%pLzA
os:U~t
!^1kuh
iFseodL
_|+[D9
FDxn[a-
@AQ`s^Z
yevvAy
pYiv'P
-q)T6E
TI30-;X
_t\3D
i}4uNx
8[~v]}
^!Ka9s
F=6%MK^]
TONgtP
^.@^py
=]kw*T
~H`s)=
PeP\Nx&
6|j~]X
l=<[LD
J3`;jce
_|MqU_
<tDfgd
{mk^Ke
OTR7vd
PjCX@?
LJGthI
Q=EJ<Q
XTikUL
9poT5mXf
#)rSaPHwDa
-M!\n9
]ecxlX
G3T;4(
0R Ob]
=agBUe
!pZ0|AV
+TQHMZHf
O.V4CS
(m`W6K
w8dps!
kI*f5og
dz*GSn<
@-M>',:
93UC4*
tuq6^K
nm)83k
<R>FxM
& piS
Z))=xk
&AUlRb
/0Q_:E
{}Q[X>
TJ_ `{B
eof|!:
=SF3GH
Sa[e9W(W
}B=S0u
i6w,K(!
~8wFo*v
jI*2vf
%).Rjy
; 8Zmp
y^\h};
M)F6u$l^
K_F4Xx
!Hs&U~
msh&Nh
S_FS2&{z0
<#92bZ
cc{:KY^'
)U~6Xn:
>3j|y#=^g
UoQbC#
1;wsTj$
ktEB5[
])z0HA
ub@*{
LaB~O`
24=Byut.
2!K"`F
Aohk^l)
z o-;-,
d{,p7a
U}\D_[
i_J?_1
Jjqpi8@
p'}E^Q
y=p!53
"RKrFu
J@NE8X
3]-%_[
z('?fjE
j1XE<(
IMS&w=
QW.n.Q<
vSNSR/
(zVLp2
AD;D1k"
|r=n};
hp{#%F
}v%G-a
'&Ja!P
M?=v`>
h1*;F
G:yoW
na54t>
T7e~gE
fl6k,>j
Tc@)Yc]
?LJn(w
't~42Z
X&cZlxF
2cC2bq
M.W]>C
}'g+lG
x3^(8;7
zlsBPa
3M\tC;
P>k>/|
p:@mo~
*Kru_
L2>f'Oi
CL6\mf
,V_5iM
Nx\],n
Ft|pH]
t-=g(e
6nK#C2
6@Tccf
[TQd<Q
y^[\QI
!p4Ox
JU&`[W
=4o{O}Yx
y=ZO6G
Z}D.ry
sA=zUhK
~F"CpD
\wG]~]
/5*7G
"M}K;
chk,7C
P6^Q8n[
].{L$hs
:P~iMG
vhr\/N
56lR7-
,+*~,l
]_^X>2
VKvcsh
<}yF3u
#`}Wp"
DSQp_Z
XU(/k^
0R\cc!
>bD*g7
2jp4h}OE
+$3a.]
5GKWy(
RITyWOfe
,o`1<By
1qoCm`
0epw{>
C{+uO&B
g!=]4o?o
+QNC-3
DB,]-`
}`D;f7
Pa>w|H
?Ti7"'C
`@C@kl
!KxcFH
_So*&G
VC|dyc
FPX:an
Q,s4>(>
KvKYJ6
h](G@h
@_i%nZO
!ov?Rb
7l~N&p
@lY(F@
x/* h',
/> Z%
;%A{bs(;
j&#4/{
:sCNj)
cif=%H"
d<N-u&
A:z,n{
\\$y]j
:LBx?$
O<T(PY
S5A+9
%d|(pD
6/,Q#S
?OBX~%
E*G'<r
'A0xyF
nE6@1WV
telwi[%
"]D2_+y
_&koez
r!|/i}
WAVP,6
"fVnj+
VLi@Rz
{9p:1T
F}5]%M
)QP#\4}
EX:+c"
iNES^}
lLU>UU
?_/|p-
u "W~$
Qwqd9kj
\%C.[b
o[f}Q-
64mZ6L#WUxC
uP-~V)BF
V{ysK*
^!k) `
R.IVMf
PNy~2N
6v-yE9a
k\c2>i
BevR^"B
*QxG#S
eDX,5U
A][G*K
,4OJg+HU
.^0+5n
!Ov8d@
c{wQ'P
1kOxl
xFk1e"
lf~Q#F
Ndh( R
m)4-?q
-ML*9
)R<6S$
<zKGV;
5/T9Jz
?K#$os
>pt=G>
0j<hc5
#e?j6JDI2A
5K7ZQ"
gei",,
5/XT 7
*wFlRV
+ju}c4
9FytG>
22ivhg-
+WE&n0b7
O 6%mc
u2cT--x
zI.bko
 MXd!
1pK2~j
C_([GE
1D;TIB
=~kQB%i
GY<H`n1S
Y-Lvj{#
2ASz2B
'>'-jJ&e
m_"bG^7
qp&>3A
W>`J?
zCj5;~
Aw'AE-ot
>4&*k-#\
n}O#WjG
SrTgT
Ny@60G
Z}=9M~
y:M|\z
4$!60{
0F;[dK
`CRu_f
eTw_2L
fKkcY5
% c2OA
\t9\s-
qA;XT=
S[Jgx6D]"Jf
DP\DL[e5
MgD}%`
hbUi'U
wmH_~a
+qgeZS
8d (]n
l-Ws6V
n_6|@a
a*9Le=
?t71+/
5N.T}
qdfi->
x|"$H)
N@ rGe
s=<4|$
~~6?Ab
.<T38P<
_V\a9f
Z1Z$ly
k %]z3
q6{,!+T
d@AUF_D
Ma~O}S
{$c:|n
X,>Y.'
{OA>mo\S
IAU){q
KsJyz(
qu*<9Z
^ymZNS
C.Albl
b@X?w:
$:[O&Z
XwKzK]
mCX@\p
F6=c^#
Ml*v~#
)JKu/
/x,xsI
n'w<pY
oYi LF
N=aY+ A
O6GE(#
Uz~trt!
X3f3C+
Z8:@K02N
W[xgh?|/
p]Hf4dT
R-K^S_
PmmlB
_HS`*
s#rW.et-
]/<oqF
Ff0eBc
l6?`\i61
UtM@n%
p~Lw[y
<})IAB
y/X9 (
0vRi{b
s HmcT1
[*b"Z|
:$LoeT{
5%{m2+
/c3#@'
|F?Z[1
o-b}ur
@1pG>\F
Ql`Z +:
^~Tm//z
0<l6rY
a/7@):
)iU9A[
BXfXqY~
Zwr`KH
saoriN
}-(Arn
9u]E /
.mf"]\^
47'mh=
:31|$u
V$.H!
>N9~S4Zs
|wh)0l
X+&k2-?
hKj$UY
[Y!ngk<T
ig]?;]
o#!OgI3
"\v-%~
.nZ+'9
rxwD/,
e/n<C5
{;nLX5
y(ort9
]R#1NLF
'+kA>Q
#oU?"u
TMM-\f
ZgE}-B
l)4A}]_
X"ILlyXD!R
kx}wy&H>*<
0fMdeP
$/+KX>H0
T5tf2C
8I2^71
q4]nv+
%2ROJ=
;/$aw]
}x/iw$
0&BMTE
R\@TuG
h;7AHI?;
c=CO,`M
#mNFy~
#2aaq<
#IJd>(
t ifypg
w+K#f?
0-"\hI
6I-,$c}
Eau=<xg1
Pb!e+~z=T
9KX$r<
-[/~nJ
j&o?W^a
K<{g?N
zN tku
`hd%S'
@yl(G2o
'J't7w
Z2m\up
^oMf{l
3>{Fw}
|ma+jV
}]tjdg
h;iRa=
<~i$(6#
&5aJaMuE
!hl%;*D
xZ?QGY
,7O>.96
G 8x12
gqQ9>L
a"S[<z
J]P{w7
%U*>V%MH
Ywlj^X
?aa'0
%sgS\~"
wjVMi$
l}qL%z
m,M]0P
?Xq/oy
J^pdrF
*iKhvF}
ol-zJb
)@vC5u
#eqB`e
+oql%1
.S/$3R
Nqu?*Y
g[W2@UP[
T}].)h
Lz3Q4=v
#A)^*RQV
ax<sf<
RcgC"'G
gaEt[y
+0*XydJ
E]&'Sk
`Oy7< 4
esQnbU#
]X^.=~
37n'B
@UFd([_
Y4Ob a
y=!2 _
{("BBOa
UrUV`7(v
<su7pF
+l26NmZH
Rx<U[L
wY\eHh
-H?F?O
T[gs_6W)
=K9s1\f
[%bKWd
E!*bP08{
(YTTL7
>5lq[-
Y-3A\9y
.9=Wp:
z_/@`Nw
UgfPg66
@"c7cU
Rdm3XB
~mo%_7
n#KW]t
71rB`*
OW<iM
T3tK}x
vFs1lN
WM&zy3
m9;:T|
K|J|ZO
^!}>$rv_
l}&UFka
m%|~RU
IA(^sUb
Xn0Lr}*p
Ow{1?EH
ZV1*@"
!Uhciwh
uL!fh2
3;am[}r
4H1(nY=!
siAi'.
HDDp95
T%H"M6
vt<ZkG
[k>?A`J
$_1#S[
:19A:^
pF:XGL
QuUE%f
v"z4{
[CZ:*v
1{7?F\
Kn61,/
\KVdG2
0w4cHa*
QQSVWd
t=MOC
HtHu4j
t*=RCC
;7|G;p
tR99u2
Unknown exception
bad allocation
(null)
`h````
xpxxxx
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
Sip lulalewup jutevecivebiyeh
sosutulugogukelesipefupe
xixinela
VirtualProtect
kernel32.dll
LocalAlloc
%s %f %c
invalid string position
string too long
bad exception
C:\yax23_casasekaboc-luciwocayimome\z.pdb
HeapReAlloc
LoadLibraryExW
GetEnvironmentStringsW
SetEvent
GetTickCount
ReadConsoleW
FindActCtxSectionStringA
CreateActCtxW
FindNextVolumeW
GetMailslotInfo
GetModuleFileNameW
Module32First
GetCPInfoExW
GetLastError
GetProcAddress
VirtualAlloc
GetAtomNameA
LoadLibraryA
WriteConsoleA
LocalAlloc
BeginUpdateResourceA
SetEnvironmentVariableA
SetConsoleTitleW
EraseTape
GetProcessAffinityMask
SetProcessShutdownParameters
ReleaseMutex
EndUpdateResourceA
GetVersionExA
DeleteAtom
FindNextVolumeA
lstrcpyW
LCMapStringW
KERNEL32.dll
GetBitmapBits
GDI32.dll
EncodePointer
DecodePointer
GetCommandLineW
HeapSetInformation
GetStartupInfoW
RaiseException
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
HeapAlloc
HeapFree
IsProcessorFeaturePresent
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
GetModuleHandleW
SetLastError
GetCurrentThreadId
InterlockedDecrement
ReadFile
EnterCriticalSection
LeaveCriticalSection
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
SetFilePointer
CloseHandle
ExitProcess
WriteFile
FreeEnvironmentStringsW
HeapCreate
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
WideCharToMultiByte
GetConsoleCP
GetConsoleMode
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
MultiByteToWideChar
RtlUnwind
SetStdHandle
FlushFileBuffers
HeapSize
LoadLibraryW
WriteConsoleW
GetStringTypeW
CreateFileW
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVexception@std@@
.?AVbad_alloc@std@@
.?AVbad_exception@std@@
YYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYS
YYYYYYYYYYYYYYYY
YYYYYYYYYYYYYYYYCi
YYYYYYYYYYYYYYYY
YYYYYYYYYYYYYYYY^
a%Z?%%Z%jZZ%%
YYYYYYYYYYYYYYYY^u
]VVZtt
YYYYYYYYYYYYYYYY
\+thjV
YYYYYYYYYYYYYYYYW
%+;\+
"eYYYYYYYYYYYYYYYY
YYYYYYYYYYYYYYYY
YYYYYYYYYYYYYYYY
^YYYYYYYYYYYYYYYY
YYYYYYYYYYYYYYYY
YYYYYYYYYYYYYYYY
eYYYYYYYYYYYYYYYYC
^YYYYYYYYYYYYYYYY
eYYYYYYYYYYYYYYYYx
eYYYYYYYYYYYYYYYYO
YYYYYYYYYYYYYYYYCC
YYYYYYYYYYYYYYYYC
YYYYYYYYYYYYYYYY
CSYYYYYYYYYYYYYYYx
e^YYYYYYYYYYYYYYY
SYYYYYYYYYYYYYYY8C
`YYYYYYYYYYYYYYY
SYYYYYYYYYYYYYYY
CSYYYYYYYYYYYYYYY
8SYYYYYYYYYYYYYYYzI
LSYYYYYYYYYYYYYYYzC
CSYYYYYYYYYYYYYYY^
SYYYYYYYYYYYYY|
zYYYYYYYYYYYY
CzYYYYYYYYYYYYC
YYYYYYYYYYYY
YYYYYYYYYYYY
|YYYYYYYYYYYY
|YYYYYYYYYYYYe
|YYYYYYYYYYYYev
YYYYYYYYYYYY
xYYYYYYYYYYYY8
YYYYYYYYYYYYYSW
..|||||
.z....`YYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYY
mmmmhn*
~YoBPYa
}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}0
}}}}}}
}}}}}}
U}}}}}}
%}}}}}}pW[q
!;}}}}}}6
}}}}}}
}}}}}}h
+)h}}}}
}}}}}}
Pu}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}
z~d|}{
H9q-^;i6
1qtsG{}|
b{({{;P
,^c~~GQ~
?fw~mL?
T^g~uOO
=U[~s4?
6mx~qNT
OR~~E\
[_~~mi
888888888888888888888888888888888888888888uC
88888888888888888888
888888888888888888
8888888888888888
4^888888888888888Or
88888888888888
888888888888888
888888888888888
T0\88888888888
8888888888
8888888888{/
888888888888
]8888888888887j
e8888888888888a
888888888888
888888888888{
888888888888888888A
6888888888888888888o
888888888888888888,N
888888888888888888
'888888888888888888888888888888888888888888888888888888888888888888888888888888888888
kkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkk
kkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkk
kkkkkkkkkkkkkkkkk
kkkkkkkkk
kkkkkkkkkkkkkkrr
kkkkkkkkkkkkk
kkkkkkkkkk
Frkkkkkkkkk
Y)<XEgg-
kkkkkk
kkkkkk
kkkkkk
kkkkkkk
_zkkkkkkk
kkkkkkkfLc)
kkkkkkk
%kkkkkkk
kkkkkkkkk
&3ykkkkkkkkk
kkkkkkkkkk
kkkkkkkkkkkkk%
kkkkkkkkkkkkkky2$
kkkkkkkkkkkkkkkS
kkkkkkkkkkkkkkk
kkkkkkkkkkkkkkkkk
dkkkkkkkkkkkkkkkkk
rkkkkkkkkkkkkkkkk
kkkkkkkkkkkkkkkkkk
rkkkkkkkkkkkkkkkkkkky
rkkkkkkkkkkkkkkkkkkkkkk
rkkkkkkkkkkkkkkkkkkkkkk
@rkkkkkkkkkkkkkkkkkkkkk
rkkkkkkkkkkkkkkkkkkkkk
kkkkkkkkkkkkkkkkkkkkk
kkkkkkkkkkkkkkkkkkkkk
M%kkkkkkkkkkkkkkkkkkkkkk
kkkkkkkkkkkkkkkkkkkkkkk
%kkkkkkkkkkkkkkkkkkkkkkkkk
%kkkkkkkkkkkkkkkkkkkkkkkkkkk
kkkkkkkkkkkkkkkkkkkkkkkkkkkkkk*S
kkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkk*
kkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkk
(((((((((((((((((((((((((((((((((((((((((((((((((
0((((((
(((((((
(((((((4
|Kf((((((((
((((((((((9TDw
((((((((
@x~~_h
,MozbD
(null)
KERNEL32.DLL
mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
EMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
WUSER32.DLL
((((( H
h(((( H
H
ECONOUT$
faledesosaxixamezopigagaxicusow
xayevuvecuyaxaw tukirufugujigijovoxetih tojufijozinusuzoxobuvulixif
xa sunatacemirucaxozazejokevabuti cenazuyi xahisedezezu
zutefegosutizovuyozadaxavivih
AFX_DIALOG_LAYOUT
VS_VERSION_INFO
StringFileInform
080824a0
InternalName
nomgpiarica.iwa
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
91.40.21.88
VarFileInfo
Translation
Vota cexapomitHMak januzovuyeluxur xojivepapexogis bafevolena menehozuxex hadapeh suduvTLil gusajesuye revikiminiso yohotubigotave buzafisuj ruvubejoyo virotakejuv hocapideUVifegoyujiredal simanuhaxidoge fuzenupidebu jepepifu satituzuna boresokevotisis vusut
8Puxirada wupihuwap buzigozoyaya forafidonerevi megicosay3Kajuzop nuhetulovabega vahanizonik jahakixuy tabodo:Cicurixupariwar kahu henavovahih wucasayopudu kegaw miyoyePKuliyi kabagalesudazu tuyirusilakas cotox gacodesiwaduhem lixolizagoyo kogugizad
Zupica padi
zNutekafekupabe riwohihesey vesahipirolabe fifaduzacufib doruhifumupufe momirowajigace xizutuhubujuke vipoyefe babugen koku\Mitekani jazamuredovir cuxufonixayaza vufazoyiyapowur hipodededo mudu duyasulefoxece porubap
Joxozoj hosihameb tohagehi)Fosiwufixel nidutucekiwakiy koguvosejapup-Mal zukuyecuzuf neyarec pofaxanenaxex tonopaf
Cohibaz howopiyek@Xopijotapojeg delubopir hazisu mifa rixawayoso wasuj pusicabosut
NVinekad wez marumifigalixi luvom suyebibokeva cuputufotex wusocejat hopizecoxalLegefutaduxud fafita horohedijuk zunivayusakisa feladawa fimezatipop goruledufusula mata domahot cikunidupov
Buveva cubevo
Tudofadoce
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Fragtor.35416
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!9E37ECD7B3A3
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 00564bda1 )
BitDefender Gen:Variant.Fragtor.35416
K7GW Trojan ( 00564bda1 )
Cybereason malicious.cd3005
Arcabit Clean
BitDefenderTheta Gen:NN.ZexaF.34236.Du0@aKoj1UoG
Cyren W32/Kryptik.FOQ.gen!Eldorado
Symantec Packed.Generic.528
ESET-NOD32 a variant of Win32/Kryptik.HNBY
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky HEUR:Exploit.Win32.ShellCode.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Tencent Clean
Ad-Aware Gen:Variant.Fragtor.35416
TACHYON Clean
Emsisoft Gen:Variant.Fragtor.35416 (B)
Comodo Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.gc
FireEye Generic.mg.9e37ecd7b3a3cc19
Sophos Mal/Generic-R + Troj/Krypt-BO
Ikarus Trojan.Win32.Crypt
Jiangmin Clean
eGambit Unsafe.AI_Score_80%
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Microsoft Ransom:Win32/StopCrypt.MOK!MTB
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Exploit.Win32.ShellCode.gen
GData Gen:Variant.Fragtor.35416
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
ALYac Clean
MAX malware (ai score=81)
VBA32 Clean
Malwarebytes Trojan.MalPack.GS
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Malware.Heuristic!ET#93% (RDMK:cmRtazoPsF0Uz3rMOVN0I4D1eP8w)
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Clean
Fortinet W32/Kryptik.HNBT!tr
Webroot Clean
AVG Win32:MalwareX-gen [Trj]
Avast Win32:MalwareX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (D)
No IRMA results available.