Static | ZeroBOX

PE Compile Time

2020-11-11 22:39:59

PDB Path

C:\roxezozohugit\93_hezaki_72 nebo\domeviwawi_hagemat\delohaz.pdb

PE Imphash

9e3ac2424cecff905bdab3e7336b91cb

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000386b0 0x00038800 7.86926221521
.rdata 0x0003a000 0x00004b32 0x00004c00 4.46101371381
.data 0x0003f000 0x00009004 0x00001800 2.90700563227
.rsrc 0x00049000 0x00015bf8 0x00015c00 6.23464815038

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x0005d550 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0005d550 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0005d550 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0005d550 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0005d550 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0005b628 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x0005e750 0x000004a6 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0005e750 0x000004a6 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0005e750 0x000004a6 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0005e750 0x000004a6 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0005e750 0x000004a6 LANG_MANIPURI SUBLANG_DEFAULT data
RT_ACCELERATOR 0x0005bb50 0x00000010 LANG_MANIPURI SUBLANG_DEFAULT data
RT_ACCELERATOR 0x0005bb50 0x00000010 LANG_MANIPURI SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x0005d600 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0005d600 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0005d600 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0004ea48 0x0000004c LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0004ea48 0x0000004c LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0004ea48 0x0000004c LANG_LATVIAN SUBLANG_DEFAULT data
RT_VERSION 0x0005d628 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x43a008 SetThreadContext
0x43a014 HeapAlloc
0x43a018 UpdateResourceA
0x43a01c HeapFree
0x43a024 BackupSeek
0x43a028 GetTickCount
0x43a02c GlobalAlloc
0x43a030 LoadLibraryW
0x43a034 SizeofResource
0x43a038 GetTapePosition
0x43a040 WriteConsoleW
0x43a044 GetAtomNameW
0x43a048 LCMapStringA
0x43a04c GetLastError
0x43a050 GetProcAddress
0x43a054 VirtualAlloc
0x43a05c LoadLibraryA
0x43a060 WriteConsoleA
0x43a068 GetModuleFileNameA
0x43a070 AddConsoleAliasA
0x43a074 FindNextVolumeA
0x43a078 lstrcpyA
0x43a080 CreateFileW
0x43a084 GetStringTypeW
0x43a088 GetModuleHandleW
0x43a08c ExitProcess
0x43a090 DecodePointer
0x43a094 GetCommandLineA
0x43a098 HeapSetInformation
0x43a09c GetStartupInfoW
0x43a0a8 IsDebuggerPresent
0x43a0ac EncodePointer
0x43a0b0 TerminateProcess
0x43a0b4 GetCurrentProcess
0x43a0bc WriteFile
0x43a0c0 GetStdHandle
0x43a0c4 GetModuleFileNameW
0x43a0c8 HeapCreate
0x43a0d8 RtlUnwind
0x43a0dc SetHandleCount
0x43a0e0 GetFileType
0x43a0e8 SetFilePointer
0x43a0ec CloseHandle
0x43a0f0 TlsAlloc
0x43a0f4 TlsGetValue
0x43a0f8 TlsSetValue
0x43a0fc TlsFree
0x43a104 SetLastError
0x43a108 GetCurrentThreadId
0x43a114 WideCharToMultiByte
0x43a11c GetCurrentProcessId
0x43a124 RaiseException
0x43a128 Sleep
0x43a12c CreateFileA
0x43a130 GetCPInfo
0x43a134 GetACP
0x43a138 GetOEMCP
0x43a13c IsValidCodePage
0x43a140 GetConsoleCP
0x43a144 GetConsoleMode
0x43a148 SetStdHandle
0x43a14c FlushFileBuffers
0x43a150 HeapSize
0x43a154 HeapReAlloc
0x43a158 SetEndOfFile
0x43a15c GetProcessHeap
0x43a160 MultiByteToWideChar
0x43a164 ReadFile
0x43a168 LCMapStringW
Library USER32.dll:
0x43a170 GetCursorPos
Library ADVAPI32.dll:

!This program cannot be run in DOS mode.
`.rdata
@.data
f-00f=
^SSSSS
<at,<rt"<wt
URPQQh
HHtXHHt
?If90t
j@j ^V
tRHtCHt4Ht%HtFHHt
tCHt(Ht
;t$,v-
UQPXY]Y[
t"SS9] u
<+t"<-t
+t HHt
PPPPPPPP
PPPPPPPP
yUm(p|g
u_V\0.
ZO8tme
AvFT4e#d
E`hoja&
&8tnTb
&#PZ7t
;.FC s
Gtp6 C
c]t`)Q
jdo7W(n
},)2=TnL%
pp>y<|'
#oQ4qE
p~w@BA
0)Hp*tn7/4
.mx()F_^L
f$9>9c
c\ej?Y
/}aGYvC
}\hvoD
5Q>hG=
{Rz^`
gE3")cw-z
;zm;%X
kjD9~%
5@63~VV`
35s>U6
8=~D4E
n+O@T7
NrCItm
Zk'f~T
J|S# Q?
kn6IQk|)
a`kv(3
+)-j.Z4?
7Mn4v^
vsYt_Q
h'jo~!
"eVi{Q
c/DQZt
(Cz/mm
M=Zl_|~
MX?aq]
1xD:W[h
dZ0<36j
O`.vT3
|[`HnWR
@5-|-e9
/Ua^%L3
f%9jw$k;
P=k)g8
#ff6Ql*`
$PgE+O
I+Uw,/,
%v+2pX
vZw`&C
]}9S#
,:6VYhI
GqMrq&
J#V&bq
2/_xir
:xKa+<
O~#$Rxt\>q
}-(&ff
{P*.QH{O
ZukTZ5
$8m)>)
v@@y;&
A-Hy'o
30Ko^b
'@'R>&9
?Qx&%X
;{xCeX5
P'hwj9
;p?HO?G
u|sxfhi
">.9tF
MIoAjh
Z/#D$R1TA$
G';N_%J
`')4'd
`)=%!O
JC*__m
Y+]3Zwy
h-`'L@
jev0+dq
l6X_jy
eevi;C*
c_Ro)9
:1Z3[<
fUvN:J
hDRorh
zi_HH!
^fQ~t<w
2/x!K]
>#Ao^q
Qe/U&A
ry;nuj
0t9P1}
nF=aH
!f1)u.)
t/Z-D3N
:G=EYl><
Eh%L,`]
tyGH%Za
k,&^wd
{*Isg2
K:{"<C
q+p9d
o:cx&JR:/
;G>EW1*
~`>nt0
uJ{xU~K
x>>rd:
bQ?zt};
:v)cY@]
##Z7DJ
|E(KrK
3'o= ^P
mQ,de$
M)hnU\*
]nz7oy
zPn?}J
m;pn'y
C [1JA
o9uppQ
e^$e%E
(JbQ;j
#%j".!
74;$gA
S0Q><VT
$[PNV`
sT?HE6'z
BWyUQ}
)4msAY
-9$/@&
W&-|M@
zL7Ib"ba
4>]DhEj
OHH'}Y
W-w&o:x
-JfVMT&
9p!JBA
\WlG96
$[r94e
#Isa8M
pW<!Kg
zr.7?vk
L#,70b
d4pKI#
|XN}3!
g;gx1|
+Jn+]"
=Ao;"5
8MaLxMP
^R)+^
sYM+~&
kU+>Hw
6:UYC%
~!a[EC
8^Cn#}0
QtHC4
<ti n$-n
9$Y"QAj
>@J%ni
|o'94h
4~$sk_
:cMj]?
P_H;jr;!
E3Sl(<1
v1@i66kU
tLWwvA
AxT7V
R3JE]l_
K`6)L:
}p1m:*`
`|=+gl5
toy84H
6x:5W0
9EZJcDMX
WfAW0f
SG4j;)
5RI>Qt
;V}nUb
b^;SPT
|g?l>F
L D|V0
e\`i|-B<
s g0,H
}=1cgoV
!3^[1-
l$fX:"
Zk=}Bq,<6
i{{WOMrx&
Q&&eD)Hc
tbUZ|%{Os".
,sXR%bmc
6.t04Q
A/M1s$
C#FnV
No(5^R
$Y|gu56>
Zs*s\ZRuu
RX)FIu
i!h~[jb4Lo@~
\gZwHn1
ck4m,j
M\\g#;
uSE}>1
x.7cq2aj
l4S`?z`
<&`BI:
t(-@$f
m% /:>
yt;WG[
;/@X3\
<X@:VBT
{**D5e
ot2=bD&
CG1l#r4
+@ZN)!ce
KXIw+0
sp[fTR
WqqCp"
+zf1~^t8
ZU*h4V
/40L68G
e@\L"]
#dJ%[W
L$F,48
WVu,wJ
^]@Y_.
p]]Prn}5
y&wZ.%
,j3hRG(
6cG=ND
'*\:,_d
Q#/h9P
!3rV7Tx
c;qK_
$NM,wy
9mz[_V
;,g1^ D
# k%uv
A~if%X;K
?3`EM`
8=?Y)V
oGql06
nV6`YG
.3*7GP
Na]=LY
}(Mp<d{
()TXiB
=66Y7z
gs$CT7B
))$V)O
q%;h8r
"E&< zXk
N5$KD
5S`E^,
-p!wY;
G)w9P-
x-Y\k_
=gq7r@
US[:syi
*`V>fl<
zBg"Y/
A8`j51
Y:V4,M
CCtJv(
"~(K*:
N{b(B45C
X!6DT5
[Lq$Wu:5Ql
L4ff#=
dzNn38
ijJ&seT
+U "2-
i/AH2b+
{7,6tBK
A= BqO
5{;>KF
4 m#g;
hfQjUSh
OwxeE?sHcr
qwnsO'
Zf$r},
E\OCcI
$rQB(F
a'4vaOyf|
n_1kbs
9pFl@\;
ifPSmE
wtr`/2 1
g^!n;*G
P>-ijK
z?6pLh
]F:f,1
nFtW5F
)o3<Pa=
hwB&!tK
xvlg[J
qd"#2;
/f(ry?
rkowd'
~"O/M(
){g;}D
CorExitProcess
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
UTF-16LE
UNICODE
(null)
`h````
xpxxxx
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
_nextafter
_hypot
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
1#QNAN
1#SNAN
Sezinusujafa narumos wohitehehoga
nacanogulofameguyakuridipijidarugozene
gavumoribifokevesibotunujiviyosiwemajiki
Cizizikisani
VirtualProtect
kernel32.dll
LocalAlloc
lamagukogehaxehugohetohucuxitegafabukulojanosawizenop
RSDS,;
C:\roxezozohugit\93_hezaki_72 nebo\domeviwawi_hagemat\delohaz.pdb
SetProcessAffinityMask
SetThreadContext
WriteConsoleOutputCharacterW
GetDefaultCommConfigW
HeapAlloc
UpdateResourceA
HeapFree
GetEnvironmentStringsW
BackupSeek
GetTickCount
GlobalAlloc
LoadLibraryW
SizeofResource
GetTapePosition
SetConsoleCursorPosition
WriteConsoleW
GetAtomNameW
LCMapStringA
GetLastError
GetProcAddress
VirtualAlloc
GetFirmwareEnvironmentVariableW
LoadLibraryA
WriteConsoleA
BeginUpdateResourceA
GetModuleFileNameA
SetConsoleCursorInfo
AddConsoleAliasA
FindNextVolumeA
lstrcpyA
KERNEL32.dll
GetCursorPos
USER32.dll
NotifyChangeEventLog
ADVAPI32.dll
GetModuleHandleW
ExitProcess
DecodePointer
GetCommandLineA
HeapSetInformation
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
EncodePointer
TerminateProcess
GetCurrentProcess
IsProcessorFeaturePresent
WriteFile
GetStdHandle
GetModuleFileNameW
HeapCreate
EnterCriticalSection
LeaveCriticalSection
InitializeCriticalSectionAndSpinCount
RtlUnwind
SetHandleCount
GetFileType
DeleteCriticalSection
SetFilePointer
CloseHandle
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
InterlockedDecrement
FreeEnvironmentStringsW
WideCharToMultiByte
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
RaiseException
CreateFileA
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
GetConsoleCP
GetConsoleMode
SetStdHandle
FlushFileBuffers
HeapSize
HeapReAlloc
SetEndOfFile
GetProcessHeap
MultiByteToWideChar
ReadFile
LCMapStringW
GetStringTypeW
CreateFileW
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
CeKqioL
Ijh~~AI
LA~~c_
Bnx~bHE
U^~~IJ~
\_~~mk
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\D
\\\\\\\\\\\\\\\\\
Os\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
ts\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
-s\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
Qs\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
Hs\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
6\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
^\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\e|
\\\\\\\\\\\\\\\\
UQ\\\\\\\\\\\\\\\\O
Ue\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\e?
y}yRyJ
-\\\\\\\\\\\\\\\\Q
\\\\\\\\\\\\\\\\e
\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\
s sssss
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
jW%<@Q
OOy*OO
@^@^^^@R
?E5?tv}
SdS=}~
iiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiii
iiiiii
iiiiii
llllllllllllllllllllllllllllllllllllll
iiiiii
lllllrlrlrrrrrrrrrrrrrrrrrrrrrrrrrrrrl
iiiiii
iiiiii
iiiiii
iiiiii
iiiiii
iiiiii
lrrrrr
iiiiii
iiiiii
iiiiii
iiiiii
lrrrrrrr
iiiiii
lrrrrr
iiiiii
llrrrrrrrr
iiiiii
llrrrrrr
iiiiii
lllrrrrrrrrrr|O::s
iiiiii
lllllrrrrrr
iiiiii
llllrlrrrrrrr*
iiiiii
lllllrlrrrrrrr
iiiiii
llllllrlrrrrrr9
iiiiii
lllllllrlrrrrrr9
iiiiii
llllllllllrrrrrr9
iiiiii
lllllllllllrrrrrr9
iiiiii
lllllllllrllrrrrrr9
iiiiii
llllllllllllllrrrrr9
iiiiii
llllllllllllrrlrlrrr9
iiiiiij
&&&&&&&&&
jiiiiii
iiiiii
iiiiii
iiiiii
}iiiiii
iiiiii
''''''
iiiiii
iiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiii
iiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiii
iiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiii
iiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiii
iiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiii
[[[[[[[[
[[[[[[[
\\33((
CCCCCC
jCCCC6
jjjCCC
jjjjjC`T
jjjjjC
jjjjjj
jjjjjjj
jjjjjjjjw
$$$$::WW
$$$$Wz
$$$$Wzz
}.$$$$gggggggggggggg
$$$$$$$$$$$$$$$$$$$$$
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
222222222.
22222222222
:V`|sGs
8KQhY<c{
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
CMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
E(null)
KERNEL32.DLL
WUSER32.DLL
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
((((( H
h(((( H
H
CONOUT$
fekovimofojituzuwivuwubajiyofori
kupokopopecehicuvevujukamuno
fusanegebafehoxesiberanumehexopovuf
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
090101a0
InternalName
bomgpiaruci.iwa
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
15.54.12.11
VarFileInfo
Translation
gGovuginavoleji wumejes putepop jetujozuwawoxug levopexirexed wuboguvecey ziyiyo giyolugob nomotib yagis)Judisigidu rizuxuxoci yanor cuk yijanilug
bFevu boxuloxapijah melum fizumisivifuzo vamawir peracacocubete dedahijaluyob femuxetegawoge ficeyi@Zipelokaj hac toru lon gehe yebopizecekin moka gum simo fuxegope2Dap tatikafadehibu fiduvigovido lozepe konazoreriw<Vosukuxixit tahacevada yitumogij pebuwoxipubac wifimaputazec
<Hewanurekig pecegeced hipufizowomoces zejahixevi yadatacusex
Rege ripoma8Hasuxecem feyidez bahoxuzukahoso fidediwubazisi vunifefa;Dopozafabayi feraturifa xuhiw depuvi dalubo molinig pixeniw+Hadigaxonabifon hiziyogadil cewaneca mazavo
1Yonufuwu zatuso fixeyajeraref miyuyix rosadi fehiANaziwokefek rijoyurogebetuc zekitosipudo cimoxirosur vewodat cidifNibufe deviwifawinop meduzuw vigob gosi likuwunirimiyuj waliwo lepexobetoj tiwasoxewosabi viduledehewutRufebipugine redukakazonexo lazubolunimizin neliberuwipayu suki yolelu mananeragi jerepizajo ligupifujiv fayurorisus
DHixibe kuxen jugediwuzaxexif jelijapux bik goramep fewakow focipiyuf
Mafuge
Xihenetimen
Sib tuve yepebow.Gaxoz tacucefebu zezonaponapocu figojexijunora
Vobazuhabimon hes codec<Wawozitaful vihowodo xuvegepoxo jule hepu kesevoxaw tugepiruJRoyixihir rukeboga cenilibivirepe hegoneko puxesuk zuxahehiri hahaz vacoce;Horenude foh yirika kizeferavibira vuzuzimoke jifejituhokoy2Somefupekiz fucokuluwa disatete neparug nojekucapeKCejude fufuju kihe jonasihayiba fegafo panaledabuleno bivivoj toxagalovubuc$Pemilorugugeha rekusemene piha zijux_Lilujidili coc tafog panogoy kisudepimev nugefewof fehebitemeger hikinagajox pemelokinuf ronabe#Yeyodup yihojejizuxahud vufumubutat/Zehogocotimehuw revim bawijifa jibobin kifurese>Vuf woregewaxofibe capopiwupubex xovokidecule ved fumu vifibowSRucahe mone xixeyiy lohalehix bihiwepa kinuy kasaxobanupugop yacutafi fawigas nugecTGewiro fezewuxasoxi xexifojituk zahojesucad fenejoyodojo xayi puti kiciweconir lovid
-Goxapayevekehad fewomexedecugo goluyapucepadu
BodafevicamasiKFal kudulezeza pepalitorulu titedeniguzoda mibotanukuyuku rarera haheniwafeTPimonuveke xuva zovom sumipuwipi zicumibayomod ligiw jihifagusivabo citozapo wafibikKRexiyosununuti rihoxorowopal vemerey fawunujokog foco xacovuku luhohefaneru3Fucizedusimoma zex pisizasamena tagowowetapu mecawe:Dohawugox lavihitur hubusojifuzi vumebuwazicuvey pebaxitis
SurelobihayoZZecuyave vahepacuyufi siviyegi jajedapire fixitiw cabemumetinod bukofozoca xitide nihowiye
KLozevuz feninakoko ravabofagimegas zekowoxupe coh yuvugixicivebe coje codup
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic malicious (high confidence)
DrWeb Clean
MicroWorld-eScan Gen:Variant.Fragtor.38608
FireEye Generic.mg.e8b8ef36382d2d04
CAT-QuickHeal Clean
ALYac Clean
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Gen:Variant.Fragtor.38608
K7GW Hacktool ( 700007861 )
Cybereason malicious.39966a
Arcabit Clean
BitDefenderTheta Gen:NN.ZexaF.34266.vq0@aSP!JMiI
Cyren W32/Kryptik.FOQ.gen!Eldorado
Symantec Trojan.Gen.2
ESET-NOD32 a variant of Win32/GenKryptik.FNEA
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Generic@ML.100 (RDML:sT3TmqiwbVTwI0wylmaZlA)
Ad-Aware Gen:Variant.Fragtor.38608
Sophos ML/PE-A
Comodo Clean
F-Secure Clean
Baidu Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.fc
CMC Clean
Emsisoft Gen:Variant.Fragtor.38608 (B)
SentinelOne Static AI - Malicious PE
Jiangmin Clean
MaxSecure Trojan.Malware.300983.susgen
Avira Clean
MAX malware (ai score=82)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Microsoft Trojan:MSIL/Reline.BE!MTB
SUPERAntiSpyware Clean
ZoneAlarm Clean
GData Gen:Variant.Fragtor.38608
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
McAfee GenericRXQC-OC!E8B8EF36382D
TACHYON Clean
VBA32 Malware-Cryptor.2LA.gen
Malwarebytes Malware.AI.3526614876
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Trojan.Win32.Crypt
eGambit Clean
Fortinet Clean
Webroot Clean
AVG FileRepMalware
Avast FileRepMalware
CrowdStrike win/malicious_confidence_100% (D)
No IRMA results available.