Static | ZeroBOX

PE Compile Time

2021-03-12 23:36:39

PDB Path

C:\saxuf25-sutizu.pdb

PE Imphash

ad35223e42e488e819f8bab49b2709bc

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000388a0 0x00038a00 7.86997248307
.rdata 0x0003a000 0x00004cb4 0x00004e00 4.42186059533
.data 0x0003f000 0x00009044 0x00001800 2.95973259142
.rsrc 0x00049000 0x00025fb8 0x00026000 6.32251324557

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x0006cf28 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x0006cf28 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x0006cf28 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_ACCELERATOR 0x0006bf28 0x00000010 LANG_MANIPURI SUBLANG_DEFAULT data
RT_ACCELERATOR 0x0006bf28 0x00000010 LANG_MANIPURI SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x0006d7d0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0006d7d0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_VERSION 0x0006d7f8 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x43a010 ReadConsoleA
0x43a01c BackupSeek
0x43a020 GetTickCount
0x43a024 GlobalAlloc
0x43a02c LoadLibraryW
0x43a030 SizeofResource
0x43a038 HeapValidate
0x43a040 GetAtomNameW
0x43a044 LCMapStringA
0x43a048 GetLastError
0x43a04c GetProcAddress
0x43a050 VirtualAlloc
0x43a054 SetStdHandle
0x43a058 LoadLibraryA
0x43a05c WriteConsoleA
0x43a064 SetSystemTime
0x43a068 GetModuleFileNameA
0x43a070 UpdateResourceW
0x43a078 AddConsoleAliasA
0x43a07c SetFileValidData
0x43a080 FindNextVolumeA
0x43a084 lstrcpyW
0x43a088 CreateFileW
0x43a08c WriteConsoleW
0x43a090 HeapAlloc
0x43a094 GetModuleHandleW
0x43a098 ExitProcess
0x43a09c DecodePointer
0x43a0a0 GetCommandLineA
0x43a0a4 HeapSetInformation
0x43a0a8 GetStartupInfoW
0x43a0b4 IsDebuggerPresent
0x43a0b8 EncodePointer
0x43a0bc TerminateProcess
0x43a0c0 GetCurrentProcess
0x43a0c4 HeapFree
0x43a0cc WriteFile
0x43a0d0 GetStdHandle
0x43a0d4 GetModuleFileNameW
0x43a0d8 HeapCreate
0x43a0e8 RtlUnwind
0x43a0ec SetHandleCount
0x43a0f0 GetFileType
0x43a0f8 SetFilePointer
0x43a0fc CloseHandle
0x43a100 TlsAlloc
0x43a104 TlsGetValue
0x43a108 TlsSetValue
0x43a10c TlsFree
0x43a114 SetLastError
0x43a118 GetCurrentThreadId
0x43a124 WideCharToMultiByte
0x43a128 GetCurrentProcessId
0x43a130 Sleep
0x43a134 CreateFileA
0x43a138 GetCPInfo
0x43a13c GetACP
0x43a140 GetOEMCP
0x43a144 IsValidCodePage
0x43a148 GetConsoleCP
0x43a14c GetConsoleMode
0x43a150 FlushFileBuffers
0x43a154 HeapSize
0x43a158 RaiseException
0x43a15c HeapReAlloc
0x43a160 SetEndOfFile
0x43a164 GetProcessHeap
0x43a168 MultiByteToWideChar
0x43a16c ReadFile
0x43a170 LCMapStringW
0x43a174 GetStringTypeW
Library USER32.dll:
0x43a17c SetCursorPos

!This program cannot be run in DOS mode.
`.rdata
@.data
f-00f=
^SSSSS
<at,<rt"<wt
URPQQh@9@
HHtXHHt
?If90t
j@j ^V
tRHtCHt4Ht%HtFHHt
tCHt(Ht
;t$,v-
UQPXY]Y[
t"SS9] u
<+t"<-t
+t HHt
PPPPPPPP
PPPPPPPP
:!am^<O|
>7!(ar
|);28^$^
k0x$`EC
ct"mo;
O@4mG,
Pb=]@f
Qkkp#6
mnDJ*
wS8O;Z
Fbau89
w966~VCQ
@q"G#!
R?z DD
Lc`_z~x
FAJtfi
XB!A _
.},jZNn8#d
TZL]w9
fCbzW,
QG6JV<
Y*bVYY-?3
T]FT=qE
'7W4[O
xt w&?oPwQn
b.y8$1
%dh!L]
mDMO[>
iz^"
\CHio7
ongYt(z1
J!&trc
d))>e9
B%b+/t
jih2_OM
,8"s1+
>oUz:r
3j6!i<(
,wU."f
7hSV[H
KNT2ZO_
;qB'$b
k[Px}YT
~)zk0!2
jIUyV2
_Nap/3
P/H#0QF
*|>wy#]
%?;0Y
.l@JgU
mK@G>=
iO=knp<
.:N^h _
@]*w l
YU(&y|
F}yc!4
2C}:M7t
C!6]E
H0,K4@rI
[:XG&So
_LGes"
iOrq4_e'
)#vs%1
C,6ArZ
&1"PeE
j)(U+;
}T1fiMK
iQ9OPr
>SG=Exc
?2~l@}Q
B)&KCO
kDTqnT
%uX,FM
IC#;T&
0~zsiP
d%C7q
sdNY,rv
UF%F!n
=pC_i4
W/`yI:
S.B||C
S /bg\h
&|.]K.
tX7/&3
./5k/S
Q(p{:u
3[~DJCy%{
K5`N'c'
A<S?s0d0
]4@+S?
T->txa
X]as|
!V8wc]^
BQ1Jxm
_U[A+)
@_4RGKI
w~3?e&
Wr50Qy4
6# B$B
nnc3RO
J/97X^
a]*Wc&
Pc-BE.
PmlEZ
5[Jwr^
]]q;.n
xzE30E
8&`1@2*)
1?<8om;
3`qh(~
ayZj8E6
:GA#$x
sD93 `}'
n%&in
26O=y*
.{\=~Sf
h/WpaDh
LS#~`BL
#)EF[fOK
'>-g/\
yC[f@'|
xPU0D#
r*c!Dg'\
{$4y$<
Uf;>6}
^y)m,a
$i/:K|\U
CA7p5^Q
"G0< j
358AXw>
0N3UioY
Fc)X8u
s6Pfu{Rf|
{x:Yg/
Gl4Cgq
vw}z_@b
I'[_9pF
U3h?DZ*
xI]?e|
*DqWEC
)!3j=M
FUer3w
w]Uqafz
LLN;#]1
TegDrO
VQ(02@lM
cXp9i/
<qtejY
70ON}'R
n,}oQ-
P}&DEQ
}z28A%
)hd.OL
0Xl(Dy6
,.zU?Z
`85wPJ&
G0K&l[
S-? 5OF
w>1NhJ
/eU<a*
z9#;KF;
lM\po<%v
CG/5t
FDG~PY
LB-2$}-
Wd983+
C]|>67~0
zRY=UH
mZTZLPn
O6n s8
?8gwgE
b.7 *l
@wX=:r
C(euUpO
FCFu1
]|3(KV
J"QR6i
N!"$uG
dqE+BF1
5zEfHRm
f)=,H
vXFsE@
lY]\0R
Y4d>4B
Yyk]g+D"
R OvnS
th8q3!
D*DU^#
x)H!WI
|>@n:t j9
FB3H;
0'L\)t
"{2R!x"
:p{HM0
9VY"CJ
A+M%)O
| !m
}C7p+"3
r,9ozd
rm2RJK
<Op+}yc
a@M~fE
I7gM_K
uGyGJx
n^L-LH
$ed1\0
'`uV*\t=g
3p/]7m
CoVY8(
V;<0*A
zf0Y!D)?R<
>i\'HtK!
IFk@rT
@Gs<Bk[
Y,t=f,
=5ASh=(
\~)kP+
EB~E>A
:|<Q36
4|ucCx
I_ohx?
5])q,U
s1<CO"%@
5G(\y'
_Z'$6?
+1Xf69
12pWuq
VKfES+
Z|4W-`s
p$kvdI
/PII?r
W9zqzM
~sW0ZL
!x$M1V
o_7DPu
@9ex,,
oKe1Ha
T[zcRl
OT^HS|
vd_[*@|
T9r-qNiN!
6K\{>)1
3K"vsF
-!ea++
\1J]ef#
X;W"ZP
[(~o? Q
v]7VMsB
OW1q8$=
#9=eI&
.OgLh9
=WuZG56
5R%ym)
&!xc?
kJ)6~"%(
U[PS[)
gg{Mnw
Jzmq+ZvJ
o{P/]B
oYnP2r
{av9q=14lW
=8o:!sa
722* 4
,qYfGV
]=zI"w
"r`!6*S
).# Z}
qLZ&<A
4ugf@/F
S@J2nC
p]d28
UL# cd
ilExGZ
]x6uOo`
-udLB/i
_>(^3n[
cN<K4?
* r\f"
'JIVbT
6Ev>+)
Q|vm5W
%u@Y\F
lvx\XL
B["aWw
w=Z6xL
vkH,?s
oI;;Nr9
gt]h1evU
B9|QNw
Ziu}t}*\
9kgK{"MN
h&-\wN
/3q7/d;
! *y^6
-",B!C
VW"N@"Q
_2u,;YaMXy
peWNYhkGn
KwvWAN:CU
3>0v=8b
Is #<l
#L#.*?
')E0?2
Q'XF5d
f-#ywV
1vo$7B_
zps)f2J
b*M5CS>0up
5o"]WW
5;I[c6
C&WX t
l M$pr
Sh]+YkS
vJl=L@g
l^Zdt|
"vS$M[
E?2+LBd(
ViUg*~
c$NIA4(
w?^4JD@
xp3U>3
O?W{+(
\emrp$}
~ TOqX
2SaZ/qo
,_1wEWz
S:];jd
G$U/h2l~9
z!R\bV
u9:A9(%
>O$\ BxUg
|VsvpiK
H-s~JH
<pw3q^
6r-*:E
,W0jiD
}Dj3b#\
Jep~XX}ZN
\vP{T
?P#g&#e
E}scRtJ
Unknown exception
CorExitProcess
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
UTF-16LE
UNICODE
(null)
`h````
xpxxxx
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
_nextafter
_hypot
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
1#QNAN
1#SNAN
Lazexohex xewiset gepes
Zohiboluvitepem
Damilasosasalep
Hem budakatopacawe wac
Zaxedunaxu sujaxin cukoxefacaluya somadexufiyu
Yajapo
VirtualProtect
kernel32.dll
LocalAlloc
lamagukogehaxehugohetohucuxitegafabukulojanosawizenop
RSDS#b
C:\saxuf25-sutizu.pdb
FillConsoleOutputCharacterA
SetProcessAffinityMask
GetConsoleAliasesLengthW
GetDefaultCommConfigW
ReadConsoleA
QueryPerformanceCounter
GetEnvironmentStringsW
BackupSeek
GetTickCount
GlobalAlloc
GetFirmwareEnvironmentVariableA
LoadLibraryW
SizeofResource
GetSystemWindowsDirectoryA
HeapValidate
SetConsoleCursorPosition
GetAtomNameW
LCMapStringA
GetLastError
GetProcAddress
VirtualAlloc
SetStdHandle
LoadLibraryA
WriteConsoleA
BeginUpdateResourceA
SetSystemTime
GetModuleFileNameA
SetConsoleCursorInfo
UpdateResourceW
GetProcessAffinityMask
AddConsoleAliasA
SetFileValidData
FindNextVolumeA
lstrcpyW
KERNEL32.dll
SetCursorPos
USER32.dll
HeapAlloc
GetModuleHandleW
ExitProcess
DecodePointer
GetCommandLineA
HeapSetInformation
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
EncodePointer
TerminateProcess
GetCurrentProcess
HeapFree
IsProcessorFeaturePresent
WriteFile
GetStdHandle
GetModuleFileNameW
HeapCreate
EnterCriticalSection
LeaveCriticalSection
InitializeCriticalSectionAndSpinCount
RtlUnwind
SetHandleCount
GetFileType
DeleteCriticalSection
SetFilePointer
CloseHandle
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
InterlockedDecrement
FreeEnvironmentStringsW
WideCharToMultiByte
GetCurrentProcessId
GetSystemTimeAsFileTime
CreateFileA
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
GetConsoleCP
GetConsoleMode
FlushFileBuffers
HeapSize
RaiseException
HeapReAlloc
SetEndOfFile
GetProcessHeap
MultiByteToWideChar
ReadFile
LCMapStringW
GetStringTypeW
WriteConsoleW
CreateFileW
.?AVexception@std@@
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
%oov^^%vooph)
vvvvo^vv^vovovovoo
oovovv^*8k
hllh3ul
hllllu
ZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZh`
``8=ZZZZZZZZZZZZZZ
ZZZZZZZZZZZZZZ
mmYTYj
ZZZZZZZZZZZZZ
ZZZZZZZZZZZZZ
ZZZZZZZZZZZZZ
ZZZZZZZZZZZZZZ
ZZZZZZZZZZZZZZ
ZZZZZZZZZZZZZ
ZZZZZZZZZZZZZ
ZZZZZZZZZZZZZ]L
ZZZZZZZZZZZZZ=T?
ZZZZZZZZZZZZZ]
ZZZZZZZZZZZZZJ.
fhZZZZZZZZZZZZZJL?g
ZZZZZZZZZZZZZ:
rhZZZZZZZZZZZZZ:x,^
hZZZZZZZZZZZZZ
ZZZZZZZZZZZZZ
KZZZZZZZZZZZZZ
;ZZZZZZZZZZZ
ZZZZZZZZZZ
AhZZZZZZZZZZ
hZZZZZZZZZZ;
hZZZZZZZZZZ;9
cKZZZZZZZZZZ
ZZZZZZZZZZ[hhh
ZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZZ
J>u%[4j3
*vtsJ{|
CeKqioL
Ijh~~AI
LA~~c_
Bnx~bHE
U^~~IJ~
\_~~mk
\\\\\\\\\\\\\\\\\\\\\\\\\\\
q0\\\\\\\\\\\\
,\\\\\\\\\\\z=
\\\\\\\\\\kw
\\\\\\\\\([
\\\\\\
\\\\\\\j_
7\\\\\\\
3\\\\\\\\j
\\\\\\\\
\\\\\\\\\\\\M
\\\\\\\\\\\8
\\\\\\\\\\\\j
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
5~~~~~~
nnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnn
Rnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnz
nnnnnnnnnnnnnnnnn
nnnnnnnnn
nnnnnnnnnnnnnn
2(0gqonnnnnnnnnnnnn
nnnnnnnnnn
nnnnnnnnnE
nnnnnn
<>jlTT
nnnnnn
X?j#&d
nnnnnn
nnnnnnn
nnnnnnn
"s)b)__[
nnnnnnn'9h
2nnnnnnn2r
nnnnnnn
Bnnnnnnnnn
#[nnnnnnnnn
nnnnnnnnnn
b2nnnnnnnnnnnnn
nnnnnnnnnnnnnn[
nnnnnnnnnnnnnnn
nnnnnnnnnnnnnnn
BonnnnnnnnnnnnnnnnnB
gnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnn
2*9&"_
AxQ[onnnnnnnnnnnnnnnnnn
}#00T?
nnnnnnnnnnnnnnnnnnn[)r[q<hu
nnnnnnnnnnnnnnnnnnnnnn]
nnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnn
[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[/[[[[[[[[[[[[[[[[[[[
[[[[[[[<
</[[[[[[[[[[[
[[[[[[[[[<
<[[[[[[[[
=Yk`HDBB
[[[[[[[/
[[[[[[[
[[[[[[[<GmS
[[[[[[[
[[[[[[[[U
[[[[[[[[[
<[[[[[[[[[[
.Cyo+o3S
[[[[[[[[[[[[j
[[[[[[[[[[[[[[
[[[[[[[[[[[[[[
.[[[[[[[[[[[[[[
[[[[[[[[[[[[[[[[Ad
`[[[[[[[[[[[[[[[[[lr4
.[[[[[[[[[[[[[[[[[^y3a
[[[[[[[[[[[[[[[[[
[[[[[[[[[[[[[[[[[
0[[[[[[[[[[[[[[[[[[[
[[[[[[[[[[[[[[[[[[[[[
[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[
,Mo|bF
Fb~~xK
\q~~~K
-e~~7N
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\D
\\\\\\\\\\\\\\\\\
Os\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
ts\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
-s\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
Qs\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
Hs\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
6\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
^\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\e|
\\\\\\\\\\\\\\\\
UQ\\\\\\\\\\\\\\\\O
Ue\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\e?
y}yRyJ
-\\\\\\\\\\\\\\\\Q
\\\\\\\\\\\\\\\\e
\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\
s sssss
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
jW%<@Q
OOy*OO
@^@^^^@R
?E5?tv}
SdS=}~
______-
_____-
{{{{{{{{{{{
G00000000000000000000000000
LLLLLLLLLLLLLL
LLLLLL`
LLLLLLL2
LLLLLL
H--------
--------------------
%%%%%%%%%%%%%%%%%%
YYYYYYYYYY%
YYYYYY
%qqqqq
%qqqqq
%qqqqqqY8
%qqqqqqqY8
%qqqqqqqqH
gggggggggK
ggggggggggg?K
3HShT7e~
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
CMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
E(null)
KERNEL32.DLL
WUSER32.DLL
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
((((( H
h(((( H
H
CONOUT$
fekovimofojituzuwivuwubajiyofori
pCizizikisani
Zocoyoxerabe jobobahum mubozunoh gibogedicadi hocecaya
Wegi gecenahunegob miyaxalokupecus tetuyozesamex wetafa
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
090101a0
InternalName
bomgpiaruci.iwa
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
15.54.12.11
VarFileInfo
Translation
gGovuginavoleji wumejes putepop jetujozuwawoxug levopexirexed wuboguvecey ziyiyo giyolugob nomotib yagis)Judisigidu rizuxuxoci yanor cuk yijanilug
bFevu boxuloxapijah melum fizumisivifuzo vamawir peracacocubete dedahijaluyob femuxetegawoge ficeyi@Zipelokaj hac toru lon gehe yebopizecekin moka gum simo fuxegope2Dap tatikafadehibu fiduvigovido lozepe konazoreriw<Vosukuxixit tahacevada yitumogij pebuwoxipubac wifimaputazec
<Hewanurekig pecegeced hipufizowomoces zejahixevi yadatacusex
Rege ripoma8Hasuxecem feyidez bahoxuzukahoso fidediwubazisi vunifefa;Dopozafabayi feraturifa xuhiw depuvi dalubo molinig pixeniw+Hadigaxonabifon hiziyogadil cewaneca mazavo
ANaziwokefek rijoyurogebetuc zekitosipudo cimoxirosur vewodat cidifNibufe deviwifawinop meduzuw vigob gosi likuwunirimiyuj waliwo lepexobetoj tiwasoxewosabi viduledehewutRufebipugine redukakazonexo lazubolunimizin neliberuwipayu suki yolelu mananeragi jerepizajo ligupifujiv fayurorisus
Mafuge
Xihenetimen
Sib tuve yepebow.Gaxoz tacucefebu zezonaponapocu figojexijunora
Vobazuhabimon hes codec<Wawozitaful vihowodo xuvegepoxo jule hepu kesevoxaw tugepiruJRoyixihir rukeboga cenilibivirepe hegoneko puxesuk zuxahehiri hahaz vacoce;Horenude foh yirika kizeferavibira vuzuzimoke jifejituhokoy2Somefupekiz fucokuluwa disatete neparug nojekucapeKCejude fufuju kihe jonasihayiba fegafo panaledabuleno bivivoj toxagalovubuc$Pemilorugugeha rekusemene piha zijux_Lilujidili coc tafog panogoy kisudepimev nugefewof fehebitemeger hikinagajox pemelokinuf ronabe#Yeyodup yihojejizuxahud vufumubutat/Zehogocotimehuw revim bawijifa jibobin kifurese>Vuf woregewaxofibe capopiwupubex xovokidecule ved fumu vifibowSRucahe mone xixeyiy lohalehix bihiwepa kinuy kasaxobanupugop yacutafi fawigas nugecTGewiro fezewuxasoxi xexifojituk zahojesucad fenejoyodojo xayi puti kiciweconir lovid
-Goxapayevekehad fewomexedecugo goluyapucepadu
BodafevicamasiKFal kudulezeza pepalitorulu titedeniguzoda mibotanukuyuku rarera haheniwafeTPimonuveke xuva zovom sumipuwipi zicumibayomod ligiw jihifagusivabo citozapo wafibikKRexiyosununuti rihoxorowopal vemerey fawunujokog foco xacovuku luhohefaneru3Fucizedusimoma zex pisizasamena tagowowetapu mecawe:Dohawugox lavihitur hubusojifuzi vumebuwazicuvey pebaxitis
SurelobihayoZZecuyave vahepacuyufi siviyegi jajedapire fixitiw cabemumetinod bukofozoca xitide nihowiye
KLozevuz feninakoko ravabofagimegas zekowoxupe coh yuvugixicivebe coje codup
Jigoyonigut sukog cuj husog
Lexuyobivuruba pakeyekaxe)Kabawigac huguh nevidakiboguvav kufibinej9Nenefesaco nuwevizeyahukec mekemogek tabacazulokol patani
MuhuZZuguduxufufijuj govuyisokewi gaxe sidixoxebinaj wiyajitoyaj lenevikuwiy todujaxuvo xoseselBXobulew ruvicunaka tebu wutilaxaseligik yirusojinotug ceviresetiwo
Monohoni
Ketijipajovoga naxudovaxeje
Antivirus Signature
Bkav W32.AIDetect.malware2
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Fragtor.38608
FireEye Generic.mg.04bc789722301c03
CAT-QuickHeal Clean
ALYac Gen:Variant.Fragtor.38608
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Gen:Variant.Fragtor.38608
K7GW Hacktool ( 700007861 )
CrowdStrike win/malicious_confidence_100% (D)
Baidu Clean
Cyren W32/Kryptik.FOQ.gen!Eldorado
Symantec Packed.Generic.528
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Malware.Heuristic!ET#92% (RDMK:cmRtazqtKg3w5HMVE9QdQerdXM0i)
Ad-Aware Gen:Variant.Fragtor.38608
Emsisoft Gen:Variant.Fragtor.38608 (B)
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.gc
CMC Clean
Sophos ML/PE-A
SentinelOne Static AI - Malicious PE
GData Gen:Variant.Fragtor.38608
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=87)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
McAfee GenericRXQC-OC!04BC78972230
TACHYON Clean
VBA32 Malware-Cryptor.2LA.gen
Malwarebytes Ransom.LockBit
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Trojan.Win32.Crypt
eGambit Clean
Fortinet Clean
BitDefenderTheta Gen:NN.ZexaF.34266.zq0@a8da5ReI
Cybereason malicious.f0d56a
Avast Clean
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.