Static | ZeroBOX

PE Compile Time

2021-02-11 17:15:16

PDB Path

C:\winezawid fov-fanacu\hevomogexec51\zakegin\k.pdb

PE Imphash

d258636f72d347eaf01f17dafac75115

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0003a290 0x0003a400 7.90564482878
.rdata 0x0003c000 0x00003ab6 0x00003c00 3.84020854358
.data 0x00040000 0x00008ec4 0x00001800 2.83703905545
.rsrc 0x00049000 0x0001fcd0 0x0001fe00 6.24438200685

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x00066c40 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x00066c40 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x00066c40 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00065720 0x00000468 LANG_LATVIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x000689f8 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x000689f8 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x000689f8 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x000689f8 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x000689f8 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_STRING 0x000689f8 0x000002d2 LANG_MANIPURI SUBLANG_DEFAULT data
RT_ACCELERATOR 0x00065c40 0x00000010 LANG_MANIPURI SUBLANG_DEFAULT data
RT_ACCELERATOR 0x00065c40 0x00000010 LANG_MANIPURI SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x000674e8 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x000674e8 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x000554c0 0x0000004c LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x000554c0 0x0000004c LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x000554c0 0x0000004c LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x000554c0 0x0000004c LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x000554c0 0x0000004c LANG_LATVIAN SUBLANG_DEFAULT data
RT_VERSION 0x00067510 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x43c000 HeapCompact
0x43c004 CommConfigDialogA
0x43c018 AddConsoleAliasW
0x43c01c BackupSeek
0x43c020 GetTickCount
0x43c028 ReadConsoleW
0x43c02c SizeofResource
0x43c034 FindNextVolumeW
0x43c038 HeapValidate
0x43c03c GetAtomNameW
0x43c040 GetModuleFileNameW
0x43c044 GetLastError
0x43c048 GetProcAddress
0x43c04c VirtualAlloc
0x43c054 LoadLibraryA
0x43c058 WriteConsoleA
0x43c05c LocalAlloc
0x43c06c UpdateResourceW
0x43c074 LCMapStringW
0x43c078 lstrcpyA
0x43c07c CreateFileW
0x43c080 WriteConsoleW
0x43c084 HeapAlloc
0x43c088 EncodePointer
0x43c08c DecodePointer
0x43c090 GetCommandLineA
0x43c094 HeapSetInformation
0x43c098 GetStartupInfoW
0x43c0a4 IsDebuggerPresent
0x43c0a8 TerminateProcess
0x43c0ac GetCurrentProcess
0x43c0b0 GetModuleHandleW
0x43c0b4 ExitProcess
0x43c0b8 WriteFile
0x43c0bc GetStdHandle
0x43c0c0 HeapCreate
0x43c0c4 Sleep
0x43c0c8 HeapSize
0x43c0d4 SetHandleCount
0x43c0dc GetFileType
0x43c0e4 SetFilePointer
0x43c0e8 HeapFree
0x43c0ec CloseHandle
0x43c0f0 GetModuleFileNameA
0x43c0f8 WideCharToMultiByte
0x43c0fc TlsAlloc
0x43c100 TlsGetValue
0x43c104 TlsSetValue
0x43c108 TlsFree
0x43c110 SetLastError
0x43c114 GetCurrentThreadId
0x43c11c GetCurrentProcessId
0x43c120 LoadLibraryW
0x43c124 HeapReAlloc
0x43c128 RtlUnwind
0x43c12c GetCPInfo
0x43c130 GetACP
0x43c134 GetOEMCP
0x43c138 IsValidCodePage
0x43c13c SetStdHandle
0x43c140 GetConsoleCP
0x43c144 GetConsoleMode
0x43c148 FlushFileBuffers
0x43c14c RaiseException
0x43c154 MultiByteToWideChar
0x43c158 GetStringTypeW
Library USER32.dll:
0x43c160 MessageBeep

!This program cannot be run in DOS mode.
`.rdata
@.data
G;=liD
^SSSSS
HHtXHHt
?If90t
j@j ^V
tRHtCHt4Ht%HtFHHt
URPQQhP`@
;t$,v-
UQPXY]Y[
t"SS9] u
<+t"<-t
+t HHt
PPPPPPPP
PPPPPPPP
ICG CQ,8
8?!!/8
2@]d=W
W9F\mg
9aftV(
q(+7N"Z
"KPEv"
u+Qjft
T_4Ect
}%mP0E
0thH.R
Tjug]V
j*t:$O^
(M\=~a
y[GH^%
.x9[aS
r@lZ~R
:!U`i .bO
@z|(/p
4SmnNE?
f9M*Wp
p.a2^)
Xh$un=
Sl,]eX
;g{[lN
D#Et >;
-6"ufX
X$<)Rm
6^MGH}F
cs<OtU"
_%%;55
3JB++<
9%SP,Q
jxQ->
WhDU_i3:
qN?w%\/h:z
=;7{+V
aqsY>+G
vZ[;{~7
9Y#X\e
ID.v>3x/t
GQmx.=
U9I</%cbt
c~|7HM
MGra3r
qx|"~a
,#!jA2k
K5|,_uf
(KZj4'`}7
eG2}D3/
HYWV5/
I}M@ZaFFZ
`s2sFp[$?
wYxL0.
>yR@UV
+#[w,czi
'#o-Q!
"6-WsJ
+nv~X6
.?i('b
0)h's A
[/8(fO#
.ZK\uvT
|kqr-6|
0HKX>1%j
,vm_:5
y?mv~iA
iPX%n#
F(IJQ^
@aa IPmVM`
]:nn%`
Ovjy!d
'`S1wU
"RQ9rM
BiSL]wx
*u+Hf{
WsYTOu
(%m1Uc!
AIx$P!
<B34mG
Oj$xC?E
\x)gt=S
NYUh[S
"wYN[8
s1GG!PV"
j!wE8;
M $55V
Iz>1([
GibZ.H
L|[*`0b
x$F0Qz
[qEIBP
p2JL[{
$#~w$<
o'%`}4
$vn)Ng
6(LvUb
\A`U?;
Tg^m>*
&KUHty4
szw@ 5_
Q_sLWh
^jQBUO
hng#xa
Ht[aDW
R24n u
`t; d[
"[Ym.
fd`y7;
(Fm]V=
Q+r{i
:}xVO\
^[c!vA
b%e~$z
`jhgo#
BKu?jF
j_w!]O
yjf0@{
^.di3d
Gf!7zp
)ZApf
cJ@",-
;_Ls'j
Wzx v<I
*tkFl 7
quxmf/H
9DsHxCM
3$OjQl
:M.y`z@
g(G|dk
7u7%qo
%'1EF$
-->A&6{?
~eMh3N
Jg<YE=
;~)<f]
$jv9u=C
b~R(Bc
<q1Gl+
xA{X`oaN
7Jx,KP
20bCll
!b`3X0v
Z|Wnv,
#i.kc)2QT
-zp6R$
MKX}xk
u-nH}FQ
dC5t}
MTlYS6
<n>LIo
{zvC~6uxW
O3cl9H8R
"cDmZz
'}pwo[p
5E3094k
?XINLB
qijff6:
Oi+6S;
13zNle2l]v&fN
N7g_wmx
Q0}o=k#
xA?"7I
\i6LSCPP
~<TzdK
'-HjlQ<
R@Ne?/
[yS V>
rmtyc4
4Qf=kOc2;
b[-=W'&
2Kdc8$/
l>4XKO
`tSg
HhoGiZ
nM<!/+{
eI0s~A`
G{PMUKi
/(.pF
jg<`f+wc
}wGj,0S
~Fk9|@
F\yl|{"X"2
8.d3Pa
'`d.hDq)
aTp+0.
W})JUv
2mHAkC
cTyq 
rSn?58
(nfYmR
@-q]ZF
UIBl}8
F<O(4s
;{PBZ#
Cn0C:s
Q{aJux
%}9HN{!
3]t)p1o
\Hn}H.kb
1'BW+8
+-R}ypI
{N+&l]iG
PGmI.&
]QqGi@
W/9bf8f
?<=H}p
f(_>$P
vUHLXO
stub&+&
sDm3TL
mD:_x5g
?GXd2xk
'c,JQkL
Ch:~\3
zC;{Bk'#
P7ja[2[
=iUECax
HOx]uU
NWuh9p
[2pe{d
OyS6(Z
9!RerM
U{f%d/
pZ)9;xy
"V*n#R
E|Pl5
<{sXZ<
^u$x)p~o
;Ae.z:=I
v=CoC|
Z**U<nO
E%22,
PpT`?j
Di[tcl
Rey_yv
<HcFC`
&v}!}K
nPfcMp
0@>]VD
.v`o1hEF
yIT g%
#jmH>+Q
H8ERz&
W?j;Cd
O!6VF/
0bIV}I
(|{#Et-
%=0g78
4r0wk-
RKP^@G
plBzxk
[\L15D
qHyI y
9L\_h+
lL3co6q
3yIPqH
"W>GP$y
Aba,TS
lslJm{
<Li:T_Y
mYL4~p
/w_SIYz
HN`m- 4
rLvOYF
-k9V!/
lk<<+8
y2'.+\
=j;'W*
dbE. R
=70f<h
\@]rNk
O`g!!\j
hk8u6x<c
q7qm3>V+
)E#<E
kE8 CsY
i4}>)"v
Qcezp6
r#<i_%
UAt4TL%
PXPTE\
B^FZQ*
$o?y8!
3mFq_.f
y8+`cv
n8vFREI
zy~yxU[U
rM#u/ctl
qsd:0S
[=E)Q5
p;Q(Xh3
KR/$-p1
5O&~@$
a1u@h
2(a_{{
WC.K$/*
FdG'$&
BvbYjK]
dX8d@~
c7Wi[c
=.Yx3'[s
"m>\nl
#@[+l%.
Zm:SMG
4b'?</U-
mFmc*6
iNI%LO
`mah@C
EB:|*6
CkE5Ay
cR75j)
gn6MBdF
A1vv6T
.Sg[%^z
h*q)-f
nGOeW1
@8>Pd_
BERv@F
a] jWQ
jnG\?('
)GX,:k
Y(=4{(
)Yjqw\
P|6_tK
&Uug}
@-X)Ap
{Z5"iz
VbRNZ6
|HB.@lQ
3BTU-Zh
R[@)YE
ra=oLh
G(mrlR
`3uZ#x
.g}5##
4\kgTW
Jy72Ep
iwyQ[YN|
O+kMTQ
Y]Z@#'
w7d-*~
f4eRX(
U}^tlE{rc
CorExitProcess
(null)
`h````
xpxxxx
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
_nextafter
_hypot
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
1#QNAN
1#SNAN
Lazexohex xewiset gepes
Zohiboluvitepem
Damilasosasalep
Cizizikini
Hem budakatopacawe wac
VirtualProtect
kernel32.dll
LocalAlloc
C:\winezawid fov-fanacu\hevomogexec51\zakegin\k.pdb
HeapCompact
CommConfigDialogA
GetSystemWindowsDirectoryW
QueryPerformanceCounter
GetEnvironmentStringsW
SetConsoleScreenBufferSize
AddConsoleAliasW
BackupSeek
GetTickCount
GetSystemTimeAsFileTime
ReadConsoleW
SizeofResource
GetProcessHandleCount
FindNextVolumeW
HeapValidate
GetAtomNameW
GetModuleFileNameW
GetLastError
GetProcAddress
VirtualAlloc
GetFirmwareEnvironmentVariableW
LoadLibraryA
WriteConsoleA
LocalAlloc
BeginUpdateResourceA
GetDefaultCommConfigA
SetConsoleCursorInfo
UpdateResourceW
GetProcessAffinityMask
LCMapStringW
lstrcpyA
KERNEL32.dll
MessageBeep
USER32.dll
HeapAlloc
EncodePointer
DecodePointer
GetCommandLineA
HeapSetInformation
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
GetModuleHandleW
ExitProcess
WriteFile
GetStdHandle
HeapCreate
HeapSize
EnterCriticalSection
LeaveCriticalSection
SetHandleCount
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
SetFilePointer
HeapFree
CloseHandle
GetModuleFileNameA
FreeEnvironmentStringsW
WideCharToMultiByte
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
InterlockedDecrement
GetCurrentProcessId
LoadLibraryW
HeapReAlloc
RtlUnwind
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
SetStdHandle
GetConsoleCP
GetConsoleMode
FlushFileBuffers
RaiseException
IsProcessorFeaturePresent
MultiByteToWideChar
GetStringTypeW
WriteConsoleW
CreateFileW
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
X5Kumu
''c}c74c4444h
w6,s0(
5Zp;;p
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@
@@@@@@@@@@@@k
@@@@@@@@@@j
@@@@@@@@@@s
@@@@@@@@@@$
@@@@@@@@@@$
@@@@@@@@@@
@@@@@@@@@@
@@@@@@@@@@$
@@@@@@@@@@m
@@@@@@@@@@s
@@@@@@@@@@$
9^@@@@@@@@@@m
9!@@@@@@@@@@
T@@@@@@@@@@
s@@@@@@@@
~@@@@@@@@k`
KdT@@@@@@@@k
/@@@@@@@@@
Y{:)@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
ggggggggggggggggggggggggggggggggggggM
gggggg_[
ggggggI?
DISTgggggg
N5ggggggWI"
sgggggg-i
gggggg_
:gggggg
uggggg
gggggg
gggggggggggggggggggggggggggggggggg
E;{'X=e8
CeKqioL
Ijh~~AI
LA~~c_
Bnx~bHE
U^~~IJ~
\_~~mk
\\\\\\\\\\\\\\\\\\\\\\\\\\\
q0\\\\\\\\\\\\
,\\\\\\\\\\\z=
\\\\\\\\\\kw
\\\\\\\\\([
\\\\\\
\\\\\\\j_
7\\\\\\\
3\\\\\\\\j
\\\\\\\\
\\\\\\\\\\\\M
\\\\\\\\\\\8
\\\\\\\\\\\\j
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
5~~~~~~
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\D
\\\\\\\\\\\\\\\\\
Os\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
ts\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
-s\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
Qs\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
Hs\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
6\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
^\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\e|
\\\\\\\\\\\\\\\\
UQ\\\\\\\\\\\\\\\\O
Ue\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\e?
y}yRyJ
-\\\\\\\\\\\\\\\\Q
\\\\\\\\\\\\\\\\e
\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\
s sssss
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
jW%<@Q
OOy*OO
@^@^^^@R
?E5?tv}
SdS=}~
______-
_____-
{{{{{{{{{{{
G00000000000000000000000000
LLLLLLLLLLLLLL
LLLLLL`
LLLLLLL2
LLLLLL
H--------
--------------------
%%%%%%%%%%%%%%%%%%
YYYYYYYYYY%
YYYYYY
%qqqqq
%qqqqq
%qqqqqqY8
%qqqqqqqY8
%qqqqqqqqH
gggggggggK
ggggggggggg?K
3HShT7e~
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
CMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
(null)
KERNEL32.DLL
WUSER32.DLL
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
((((( H
h(((( H
H
CONOUT$
fekovimofojituzuwivuwubajiyofori
Zocoyoxerabe jobobahum mubozunoh gibogedicadi hocecaya
Wegi gecenahunegob miyaxalokupecus tetuyozesamex wetafa
tilibevigonisesayetecacimofizojokepabovobaciki
saxaxo
sirucilecukucolecesokedizevatarokayemufepusuxujeposar
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
090101a0
InternalName
bomgpiaruci.iwa
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
15.54.12.11
VarFileInfo
Translation
gGovuginavoleji wumejes putepop jetujozuwawoxug levopexirexed wuboguvecey ziyiyo giyolugob nomotib yagis)Judisigidu rizuxuxoci yanor cuk yijanilug
bFevu boxuloxapijah melum fizumisivifuzo vamawir peracacocubete dedahijaluyob femuxetegawoge ficeyi@Zipelokaj hac toru lon gehe yebopizecekin moka gum simo fuxegope2Dap tatikafadehibu fiduvigovido lozepe konazoreriw<Vosukuxixit tahacevada yitumogij pebuwoxipubac wifimaputazec
<Hewanurekig pecegeced hipufizowomoces zejahixevi yadatacusex
Rege ripoma8Hasuxecem feyidez bahoxuzukahoso fidediwubazisi vunifefa;Dopozafabayi feraturifa xuhiw depuvi dalubo molinig pixeniw+Hadigaxonabifon hiziyogadil cewaneca mazavo
ANaziwokefek rijoyurogebetuc zekitosipudo cimoxirosur vewodat cidifNibufe deviwifawinop meduzuw vigob gosi likuwunirimiyuj waliwo lepexobetoj tiwasoxewosabi viduledehewutRufebipugine redukakazonexo lazubolunimizin neliberuwipayu suki yolelu mananeragi jerepizajo ligupifujiv fayurorisus
Mafuge
Xihenetimen
Sib tuve yepebow.Gaxoz tacucefebu zezonaponapocu figojexijunora
Vobazuhabimon hes codec<Wawozitaful vihowodo xuvegepoxo jule hepu kesevoxaw tugepiruJRoyixihir rukeboga cenilibivirepe hegoneko puxesuk zuxahehiri hahaz vacoce;Horenude foh yirika kizeferavibira vuzuzimoke jifejituhokoy2Somefupekiz fucokuluwa disatete neparug nojekucapeKCejude fufuju kihe jonasihayiba fegafo panaledabuleno bivivoj toxagalovubuc$Pemilorugugeha rekusemene piha zijux_Lilujidili coc tafog panogoy kisudepimev nugefewof fehebitemeger hikinagajox pemelokinuf ronabe#Yeyodup yihojejizuxahud vufumubutat/Zehogocotimehuw revim bawijifa jibobin kifurese>Vuf woregewaxofibe capopiwupubex xovokidecule ved fumu vifibowSRucahe mone xixeyiy lohalehix bihiwepa kinuy kasaxobanupugop yacutafi fawigas nugecTGewiro fezewuxasoxi xexifojituk zahojesucad fenejoyodojo xayi puti kiciweconir lovid
-Goxapayevekehad fewomexedecugo goluyapucepadu
BodafevicamasiKFal kudulezeza pepalitorulu titedeniguzoda mibotanukuyuku rarera haheniwafeTPimonuveke xuva zovom sumipuwipi zicumibayomod ligiw jihifagusivabo citozapo wafibikKRexiyosununuti rihoxorowopal vemerey fawunujokog foco xacovuku luhohefaneru3Fucizedusimoma zex pisizasamena tagowowetapu mecawe:Dohawugox lavihitur hubusojifuzi vumebuwazicuvey pebaxitis
SurelobihayoZZecuyave vahepacuyufi siviyegi jajedapire fixitiw cabemumetinod bukofozoca xitide nihowiye
KLozevuz feninakoko ravabofagimegas zekowoxupe coh yuvugixicivebe coje codup
Jigoyonigut sukog cuj husog
Lexuyobivuruba pakeyekaxe)Kabawigac huguh nevidakiboguvav kufibinej9Nenefesaco nuwevizeyahukec mekemogek tabacazulokol patani
MuhuZZuguduxufufijuj govuyisokewi gaxe sidixoxebinaj wiyajitoyaj lenevikuwiy todujaxuvo xoseselBXobulew ruvicunaka tebu wutilaxaseligik yirusojinotug ceviresetiwo
Monohoni
Ketijipajovoga naxudovaxeje
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.37986593
CMC Clean
CAT-QuickHeal Clean
McAfee Packed-GDV!B1A0BC55343E
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0058a20d1 )
BitDefender Trojan.GenericKD.37986593
K7GW Trojan ( 0058a20d1 )
Cybereason malicious.067ee1
BitDefenderTheta Gen:NN.ZexaF.34266.xq0@aKV9A6eI
Cyren W32/Kryptik.FOQ.gen!Eldorado
Symantec Trojan.Gen.9
ESET-NOD32 a variant of Win32/Kryptik.HNFZ
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Win.Trojan.Generic-9906916-0
Kaspersky HEUR:Trojan-Spy.Win32.Stealer.gen
Alibaba TrojanSpy:Win32/Krypter.56944c27
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Generic@ML.100 (RDML:OvKIAp5Uye31kFRfkgMtLQ)
Ad-Aware Trojan.GenericKD.37986593
Emsisoft Trojan.Crypt (A)
Comodo TrojWare.Win32.Agent.rgedl@0
F-Secure Clean
DrWeb Trojan.PWS.Steam.21691
Zillya Clean
TrendMicro TROJ_GEN.R002C0DK921
McAfee-GW-Edition BehavesLike.Win32.Generic.fc
FireEye Generic.mg.b1a0bc55343edb87
Sophos Mal/Generic-R + Troj/Krypt-BO
Ikarus Trojan-Ransom.StopCrypt
GData Trojan.GenericKD.37986593
Jiangmin Clean
MaxSecure Trojan.Malware.300983.susgen
Avira TR/AD.GenSHCode.pndpu
MAX malware (ai score=82)
Antiy-AVL Trojan/Generic.ASMalwS.34CC9BF
Gridinsoft Ransom.Win32.STOP.sa
Arcabit Clean
SUPERAntiSpyware Clean
Microsoft Trojan:Win32/Krypter.AB!MTB
Cynet Malicious (score: 100)
AhnLab-V3 CoinMiner/Win.Glupteba.R449277
Acronis suspicious
VBA32 Malware-Cryptor.2LA.gen
ALYac Trojan.GenericKD.37986593
TACHYON Clean
Malwarebytes Trojan.MalPack.GS
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002C0DK921
Tencent Win32.Trojan-spy.Stealer.Pepc
Yandex Trojan.Kryptik!FXkbFTcqbjQ
SentinelOne Static AI - Malicious PE
eGambit Clean
Fortinet W32/GenericKDZ.6C04!tr
AVG Win32:MalwareX-gen [Trj]
Avast Win32:MalwareX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.