Static | ZeroBOX

PE Compile Time

2020-07-16 08:48:22

PDB Path

C:\moxepivitayu dehofu.pdb

PE Imphash

ad35223e42e488e819f8bab49b2709bc

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00038990 0x00038a00 7.87290271712
.rdata 0x0003a000 0x00004cb4 0x00004e00 4.42235411491
.data 0x0003f000 0x00009044 0x00001800 2.95807409301
.rsrc 0x00049000 0x00025fb8 0x00026000 6.32808164322

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x0006cf28 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x0006cf28 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x0006cf28 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0006ba00 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x0006ece0 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_ACCELERATOR 0x0006bf28 0x00000010 LANG_MANIPURI SUBLANG_DEFAULT data
RT_ACCELERATOR 0x0006bf28 0x00000010 LANG_MANIPURI SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x0006d7d0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0006d7d0 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0005ee08 0x00000068 LANG_LATVIAN SUBLANG_DEFAULT data
RT_VERSION 0x0006d7f8 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x43a010 ReadConsoleA
0x43a01c BackupSeek
0x43a020 GetTickCount
0x43a024 GlobalAlloc
0x43a02c LoadLibraryW
0x43a030 SizeofResource
0x43a038 HeapValidate
0x43a040 GetAtomNameW
0x43a044 LCMapStringA
0x43a048 GetLastError
0x43a04c GetProcAddress
0x43a050 VirtualAlloc
0x43a054 SetStdHandle
0x43a058 LoadLibraryA
0x43a05c WriteConsoleA
0x43a064 SetSystemTime
0x43a068 GetModuleFileNameA
0x43a070 UpdateResourceW
0x43a078 AddConsoleAliasA
0x43a07c SetFileValidData
0x43a080 FindNextVolumeA
0x43a084 lstrcpyW
0x43a088 CreateFileW
0x43a08c WriteConsoleW
0x43a090 HeapAlloc
0x43a094 GetModuleHandleW
0x43a098 ExitProcess
0x43a09c DecodePointer
0x43a0a0 GetCommandLineA
0x43a0a4 HeapSetInformation
0x43a0a8 GetStartupInfoW
0x43a0b4 IsDebuggerPresent
0x43a0b8 EncodePointer
0x43a0bc TerminateProcess
0x43a0c0 GetCurrentProcess
0x43a0c4 HeapFree
0x43a0cc WriteFile
0x43a0d0 GetStdHandle
0x43a0d4 GetModuleFileNameW
0x43a0d8 HeapCreate
0x43a0e8 RtlUnwind
0x43a0ec SetHandleCount
0x43a0f0 GetFileType
0x43a0f8 SetFilePointer
0x43a0fc CloseHandle
0x43a100 TlsAlloc
0x43a104 TlsGetValue
0x43a108 TlsSetValue
0x43a10c TlsFree
0x43a114 SetLastError
0x43a118 GetCurrentThreadId
0x43a124 WideCharToMultiByte
0x43a128 GetCurrentProcessId
0x43a130 Sleep
0x43a134 CreateFileA
0x43a138 GetCPInfo
0x43a13c GetACP
0x43a140 GetOEMCP
0x43a144 IsValidCodePage
0x43a148 GetConsoleCP
0x43a14c GetConsoleMode
0x43a150 FlushFileBuffers
0x43a154 HeapSize
0x43a158 RaiseException
0x43a15c HeapReAlloc
0x43a160 SetEndOfFile
0x43a164 GetProcessHeap
0x43a168 MultiByteToWideChar
0x43a16c ReadFile
0x43a170 LCMapStringW
0x43a174 GetStringTypeW
Library USER32.dll:
0x43a17c SetCursorPos

!This program cannot be run in DOS mode.
`.rdata
@.data
f-00f=
^SSSSS
<at,<rt"<wt
URPQQh@9@
HHtXHHt
?If90t
j@j ^V
tRHtCHt4Ht%HtFHHt
tCHt(Ht
;t$,v-
UQPXY]Y[
t"SS9] u
<+t"<-t
+t HHt
PPPPPPPP
PPPPPPPP
8GO SG
#')[mY
Yn;!"z
!#$J7
E!il})
E=@@[]
P#po#*
)&8"z\
x3r"V-
}}SPqE
+sYwtj
\<f!{6uGD
H8kIJN
0<{M-lq+
cY(|2|
$A0h5V
7d^4ms
4Lv,zR#
g,opP2
'(.F5J
I;St+W0
!}Xkz'
?)|Q2$
8oma-R
&-:d. <pS7
[;$N]
Mf`Idx-8Sc
sQH'RE
AC<8tg|
"&Aa%|=
]h_cR)
Uq(}C@.I
NK7{M*
x;f,x/
NivR']
2?Be=iQ
.!}"{i
+*VKkPr
TcW*F.
9$ZfwP
xX:<;2
ri$Ohc
]o8R.J
`$[-CP
mElab+3EX
U3c9r{
XnJBR)F
J?Z~ZJ
Dc^~xJ
WNmkV7N
$6_5k5
pjC*j@
FHu4R7
[/q'`]$
Pvd\}S4$3
Jbk8=K
Y:dQIA
`[l5V
, :rSS
p_X>}$
m)+[O
IY;o|HG
E/<"uK2
g<[^+;
v@'bQ
{Im.`+
_cu<ys
s/>-a/
lypt&S
s1O_<<2
"}sdVJ
sZ8q?m
DFdv:^
9]*nV!
iOj0DZT
4r.0eW
C55RE9w%VEi
`O9K~$
4{[NVcZ
fMm#Ee
ceeQkx
Gn.w$QQ;
T_cj*L7
_IW .?4
/G}ttd
X>qcVB
TTm:wC
9UON$3It
~Y;DZr&
HO:>17>
-1KGt[
graDoqD
D)ZB="
_K{#?a
nzFSPo
VYjN}Y)P<
$FMH$2
v3g@*'x1
<2ek,^R|+
~(ll>
pWVOi=O
ae$_|6
XJASK}
S9WA]t
VE@~xHr
cqrc7"D
^9CVt8R
z!Z$,!
]bd^149
MX)*C
CG?h_P5
8eH""Z
%Nj1k=-
SWH>]@
y:bE_{
e5@S I
U#xIB}[
hmK$a4=L
cUFZMCx
MRO$TU
A8f41S
M,G5.e
D7A2p}?
De4\mHk
TrbxFdf
eM t8X
@V$bMu9'a
K#"NIN
q#{i6L
MAyR$u
%ubwQr
qAv%^-
e7o_?.
:zlW%{RB
xSdUyI
s7UtIt
goJSye
XcwKm4
/)?&L.
X@Nc??%
6h-7~
zHn:nuq
3g$7rD1D
ujmOX %49Yc
mwL6{;
[M,F%:
.H4q5[Z
\=n]5s
^s0yP8
3""nT#
LxjS)F
X6p:dPk
r3LjC
HN;fm6
V`vd6dj
&;inU2
\L ^u/r
y7$@`#,
6wt&0P
D|o/e=
*:yLY2
]."9_O
J80nme
\u;AP(
47|1aa
&[ `RF)
R1{R>_
2bwT'\
6bH@'}
cMrES&&V
&fnl5V
/I&nG9Vr)
tVuMlQ<
RTB@u#
4^@?+%
KAs]4l
i/Z=nJ
tICyLi
`HnF6^
FT#6i
WFU!A8oG
\dbdp6
%'.ZQ1
i<DM(n
Q!U=P|
o7eNu,yA
iTo^Cu
7I@Qs)
x1e(]*<
V)FvZ
L.o8a+JH
w7S/#e
q:!/K)
x?w\sN
,>ZJH8
mLOeH?Q:
Mx<UMp
|BPDK
A[h]Do
\{gymZ
mi8SB9
`S}jn_
u>'E"]
;e 9D'
Z9[6P.
ZMr"s+
94_<jO
VN8`Mwp
_j8]H)U
;@D^C
7%Fh$'
4OZiZ:
~dS j$"]
&1)'!4
p\pA}P(
&v[(?{
8VQS5&
=t{Dj+N
Qy`uD6
S&ClXV
z?!VQ:
M5@z,C
3q7T4
leH/t(W
&_9xf)
W&7(iz+
0#rFG+
\?|9\m
;k[gJ7
qbTE7[{
s5yacP
>,e*]Hk
!SmG|iCf
O>Tb/`
;;/1pfV
/j8}Iski
AFWD"b
0kS,Zz
?DrD1M
yz^;KqR
E#T.uo
l34)xc
\q/O6Z
=3[(DB
zH9e;#
BfQz'~S
O{qMHk
)uPh'J
Qo,w_]
B&)doml.&
h{yj4$
OR_,#O
SP{k`e
/o!.aSe
h;,d9I&
}'_=mZ
D*.(Ky
ji7hh-
>rj}EY
h/ =aN
m*wXpc
Kr?Hso92
koT+NR
MUTv{.
v=/uG+
b(v>/A
mDbBiB6_
Wx+G={
}g{@(n
t/xLENHk
v6w<hB%
Q:Z sN
Ftg{]*i
M|=vRq
y_T?:Y?
AxJ+S}
5z<H+@~:
zZ~,\>t(V
*d9kfP
*Fpw{s
^tux9h7l
Wsi"R^8Y
r\b4&r
LL[M#/
`-9[94
Y~*&H:
@X!CqN
C DIoC
==/,]0B@\O
v:G]pt
UGeU%g
K"5Fw{>I
os{b"1N
L'^wm:
CK('?Q
\j+Sj5
gX/c,2
-6Avm?
)4>}e/
L<,I^tw
,v[q7
: m/6/h
],-*cC
[q?!_WW
BHw:wX
gx$31G
[n3u&L{
"Xo-|S6
/H,qSY
4W9]:o
YsJKY}
}dV_[z
&wO)s
ubX49giW
q+6{**P
(;KW>Tb
Unknown exception
CorExitProcess
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
UTF-16LE
UNICODE
(null)
`h````
xpxxxx
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
_nextafter
_hypot
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
1#QNAN
1#SNAN
Lazexohex xewiset gepes
Zohiboluvitepem
Damilasosasalep
Hem budakatopacawe wac
Zaxedunaxu sujaxin cukoxefacaluya somadexufiyu
Yajapo
VirtualProtect
kernel32.dll
LocalAlloc
lamagukogehaxehugohetohucuxitegafabukulojanosawizenop
C:\moxepivitayu dehofu.pdb
FillConsoleOutputCharacterA
SetProcessAffinityMask
GetConsoleAliasesLengthW
GetDefaultCommConfigW
ReadConsoleA
QueryPerformanceCounter
GetEnvironmentStringsW
BackupSeek
GetTickCount
GlobalAlloc
GetFirmwareEnvironmentVariableA
LoadLibraryW
SizeofResource
GetSystemWindowsDirectoryA
HeapValidate
SetConsoleCursorPosition
GetAtomNameW
LCMapStringA
GetLastError
GetProcAddress
VirtualAlloc
SetStdHandle
LoadLibraryA
WriteConsoleA
BeginUpdateResourceA
SetSystemTime
GetModuleFileNameA
SetConsoleCursorInfo
UpdateResourceW
GetProcessAffinityMask
AddConsoleAliasA
SetFileValidData
FindNextVolumeA
lstrcpyW
KERNEL32.dll
SetCursorPos
USER32.dll
HeapAlloc
GetModuleHandleW
ExitProcess
DecodePointer
GetCommandLineA
HeapSetInformation
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
EncodePointer
TerminateProcess
GetCurrentProcess
HeapFree
IsProcessorFeaturePresent
WriteFile
GetStdHandle
GetModuleFileNameW
HeapCreate
EnterCriticalSection
LeaveCriticalSection
InitializeCriticalSectionAndSpinCount
RtlUnwind
SetHandleCount
GetFileType
DeleteCriticalSection
SetFilePointer
CloseHandle
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
InterlockedDecrement
FreeEnvironmentStringsW
WideCharToMultiByte
GetCurrentProcessId
GetSystemTimeAsFileTime
CreateFileA
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
GetConsoleCP
GetConsoleMode
FlushFileBuffers
HeapSize
RaiseException
HeapReAlloc
SetEndOfFile
GetProcessHeap
MultiByteToWideChar
ReadFile
LCMapStringW
GetStringTypeW
WriteConsoleW
CreateFileW
.?AVexception@std@@
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
) s 8Q
ccJJ2y
HuuXXg
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
<<<<<<<<<<<<<<
<<<<<<<<<<<<<<
<<<<<<<<<<<<<q
<<<<<<<<<<<<<}
<<<<<<<<<<<<<
<<<<<<<<<<<<<<Bh
<<<<<<<<<<<<<<
<<<<<<<<<<<<<Z
<<<<<<<<<<<<<
<<<<<<<<<<<<<
<<<<<<<<<<<<<
<<<<<<<<<<<<<
<<<<<<<<<<<<<
<<<<<<<<<<<<<
<<<<<<<<<<<<<
<<<<<<<<<<<<<
<<<<<<<<<<<<<
<<<<<<<<<<<<<~
<<<<<<<<<<<<<
<<<<<<<<<<<qs
7<<<<<<<<<<
<<<<<<<<<<
<<<<<<<<<<
<<<<<<<<<<
<<<<<<<<<<
q<<<<<<<<<<n
<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<<
GBx%_>i8
CeKqioL
Ijh~~AI
LA~~c_
Bnx~bHE
U^~~IJ~
\_~~mk
\\\\\\\\\\\\\\\\\\\\\\\\\\\
q0\\\\\\\\\\\\
,\\\\\\\\\\\z=
\\\\\\\\\\kw
\\\\\\\\\([
\\\\\\
\\\\\\\j_
7\\\\\\\
3\\\\\\\\j
\\\\\\\\
\\\\\\\\\\\\M
\\\\\\\\\\\8
\\\\\\\\\\\\j
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
5~~~~~~
nnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnn
Rnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnz
nnnnnnnnnnnnnnnnn
nnnnnnnnn
nnnnnnnnnnnnnn
2(0gqonnnnnnnnnnnnn
nnnnnnnnnn
nnnnnnnnnE
nnnnnn
<>jlTT
nnnnnn
X?j#&d
nnnnnn
nnnnnnn
nnnnnnn
"s)b)__[
nnnnnnn'9h
2nnnnnnn2r
nnnnnnn
Bnnnnnnnnn
#[nnnnnnnnn
nnnnnnnnnn
b2nnnnnnnnnnnnn
nnnnnnnnnnnnnn[
nnnnnnnnnnnnnnn
nnnnnnnnnnnnnnn
BonnnnnnnnnnnnnnnnnB
gnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnn
2*9&"_
AxQ[onnnnnnnnnnnnnnnnnn
}#00T?
nnnnnnnnnnnnnnnnnnn[)r[q<hu
nnnnnnnnnnnnnnnnnnnnnn]
nnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnn
[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[/[[[[[[[[[[[[[[[[[[[
[[[[[[[<
</[[[[[[[[[[[
[[[[[[[[[<
<[[[[[[[[
=Yk`HDBB
[[[[[[[/
[[[[[[[
[[[[[[[<GmS
[[[[[[[
[[[[[[[[U
[[[[[[[[[
<[[[[[[[[[[
.Cyo+o3S
[[[[[[[[[[[[j
[[[[[[[[[[[[[[
[[[[[[[[[[[[[[
.[[[[[[[[[[[[[[
[[[[[[[[[[[[[[[[Ad
`[[[[[[[[[[[[[[[[[lr4
.[[[[[[[[[[[[[[[[[^y3a
[[[[[[[[[[[[[[[[[
[[[[[[[[[[[[[[[[[
0[[[[[[[[[[[[[[[[[[[
[[[[[[[[[[[[[[[[[[[[[
[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[
,Mo|bF
Fb~~xK
\q~~~K
-e~~7N
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\D
\\\\\\\\\\\\\\\\\
Os\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
ts\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
-s\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
Qs\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
Hs\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
6\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
^\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\e|
\\\\\\\\\\\\\\\\
UQ\\\\\\\\\\\\\\\\O
Ue\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\e?
y}yRyJ
-\\\\\\\\\\\\\\\\Q
\\\\\\\\\\\\\\\\e
\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\
s sssss
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
jW%<@Q
OOy*OO
@^@^^^@R
?E5?tv}
SdS=}~
______-
_____-
{{{{{{{{{{{
G00000000000000000000000000
LLLLLLLLLLLLLL
LLLLLL`
LLLLLLL2
LLLLLL
H--------
--------------------
%%%%%%%%%%%%%%%%%%
YYYYYYYYYY%
YYYYYY
%qqqqq
%qqqqq
%qqqqqqY8
%qqqqqqqY8
%qqqqqqqqH
gggggggggK
ggggggggggg?K
3HShT7e~
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
CMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
E(null)
KERNEL32.DLL
WUSER32.DLL
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
((((( H
h(((( H
H
CONOUT$
fekovimofojituzuwivuwubajiyofori
pCizizikisani
Zocoyoxerabe jobobahum mubozunoh gibogedicadi hocecaya
Wegi gecenahunegob miyaxalokupecus tetuyozesamex wetafa
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
090101a0
InternalName
bomgpiaruci.iwa
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
15.54.12.11
VarFileInfo
Translation
gGovuginavoleji wumejes putepop jetujozuwawoxug levopexirexed wuboguvecey ziyiyo giyolugob nomotib yagis)Judisigidu rizuxuxoci yanor cuk yijanilug
bFevu boxuloxapijah melum fizumisivifuzo vamawir peracacocubete dedahijaluyob femuxetegawoge ficeyi@Zipelokaj hac toru lon gehe yebopizecekin moka gum simo fuxegope2Dap tatikafadehibu fiduvigovido lozepe konazoreriw<Vosukuxixit tahacevada yitumogij pebuwoxipubac wifimaputazec
<Hewanurekig pecegeced hipufizowomoces zejahixevi yadatacusex
Rege ripoma8Hasuxecem feyidez bahoxuzukahoso fidediwubazisi vunifefa;Dopozafabayi feraturifa xuhiw depuvi dalubo molinig pixeniw+Hadigaxonabifon hiziyogadil cewaneca mazavo
ANaziwokefek rijoyurogebetuc zekitosipudo cimoxirosur vewodat cidifNibufe deviwifawinop meduzuw vigob gosi likuwunirimiyuj waliwo lepexobetoj tiwasoxewosabi viduledehewutRufebipugine redukakazonexo lazubolunimizin neliberuwipayu suki yolelu mananeragi jerepizajo ligupifujiv fayurorisus
Mafuge
Xihenetimen
Sib tuve yepebow.Gaxoz tacucefebu zezonaponapocu figojexijunora
Vobazuhabimon hes codec<Wawozitaful vihowodo xuvegepoxo jule hepu kesevoxaw tugepiruJRoyixihir rukeboga cenilibivirepe hegoneko puxesuk zuxahehiri hahaz vacoce;Horenude foh yirika kizeferavibira vuzuzimoke jifejituhokoy2Somefupekiz fucokuluwa disatete neparug nojekucapeKCejude fufuju kihe jonasihayiba fegafo panaledabuleno bivivoj toxagalovubuc$Pemilorugugeha rekusemene piha zijux_Lilujidili coc tafog panogoy kisudepimev nugefewof fehebitemeger hikinagajox pemelokinuf ronabe#Yeyodup yihojejizuxahud vufumubutat/Zehogocotimehuw revim bawijifa jibobin kifurese>Vuf woregewaxofibe capopiwupubex xovokidecule ved fumu vifibowSRucahe mone xixeyiy lohalehix bihiwepa kinuy kasaxobanupugop yacutafi fawigas nugecTGewiro fezewuxasoxi xexifojituk zahojesucad fenejoyodojo xayi puti kiciweconir lovid
-Goxapayevekehad fewomexedecugo goluyapucepadu
BodafevicamasiKFal kudulezeza pepalitorulu titedeniguzoda mibotanukuyuku rarera haheniwafeTPimonuveke xuva zovom sumipuwipi zicumibayomod ligiw jihifagusivabo citozapo wafibikKRexiyosununuti rihoxorowopal vemerey fawunujokog foco xacovuku luhohefaneru3Fucizedusimoma zex pisizasamena tagowowetapu mecawe:Dohawugox lavihitur hubusojifuzi vumebuwazicuvey pebaxitis
SurelobihayoZZecuyave vahepacuyufi siviyegi jajedapire fixitiw cabemumetinod bukofozoca xitide nihowiye
KLozevuz feninakoko ravabofagimegas zekowoxupe coh yuvugixicivebe coje codup
Jigoyonigut sukog cuj husog
Lexuyobivuruba pakeyekaxe)Kabawigac huguh nevidakiboguvav kufibinej9Nenefesaco nuwevizeyahukec mekemogek tabacazulokol patani
MuhuZZuguduxufufijuj govuyisokewi gaxe sidixoxebinaj wiyajitoyaj lenevikuwiy todujaxuvo xoseselBXobulew ruvicunaka tebu wutilaxaseligik yirusojinotug ceviresetiwo
Monohoni
Ketijipajovoga naxudovaxeje
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Fragtor.38608
FireEye Generic.mg.0742a9d7aa05cf88
CAT-QuickHeal Clean
McAfee GenericRXQC-OC!0742A9D7AA05
Malwarebytes Ransom.LockBit
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Gen:Variant.Fragtor.38608
K7GW Hacktool ( 700007861 )
Cybereason malicious.5108c9
Arcabit Clean
BitDefenderTheta Gen:NN.ZexaF.34266.zq0@auYjstiI
Cyren W32/Kryptik.FOQ.gen!Eldorado
Symantec Packed.Generic.528
ESET-NOD32 Clean
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Tencent Clean
Ad-Aware Gen:Variant.Fragtor.38608
Sophos ML/PE-A
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.gc
CMC Clean
Emsisoft Gen:Variant.Fragtor.38608 (B)
SentinelOne Static AI - Malicious PE
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=86)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Microsoft Trojan:MSIL/RedLine.RPS!MTB
SUPERAntiSpyware Clean
ZoneAlarm Clean
GData Gen:Variant.Fragtor.38608
Cynet Malicious (score: 100)
AhnLab-V3 Malware/Win.OC.R449232
Acronis suspicious
VBA32 Malware-Cryptor.2LA.gen
ALYac Gen:Variant.Fragtor.38608
TACHYON Clean
Cylance Unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Malware.Heuristic!ET#92% (RDMK:cmRtazrKBK5RwpkT/yzTDsGp7x30)
Yandex Clean
Ikarus Trojan.Win32.Crypt
eGambit Clean
Fortinet Clean
Avast Clean
CrowdStrike win/malicious_confidence_100% (W)
MaxSecure Clean
No IRMA results available.