Static | ZeroBOX

PE Compile Time

2020-11-24 09:09:23

PDB Path

C:\jevus76\zelozejo53.pdb

PE Imphash

db57d5e3d04b9a257784f752aaee46da

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000568fa 0x00056a00 7.87264203104
.data 0x00058000 0x02728d64 0x00010a00 0.34944801095
.maj 0x02781000 0x000080e8 0x00008200 0.0
.tuyiv 0x0278a000 0x00000270 0x00000400 0.0
.yepaku 0x0278b000 0x00000017 0x00000200 0.0
.tolako 0x0278c000 0x000003c3 0x00000400 0.0
.rsrc 0x0278d000 0x00011458 0x00011600 6.20426424884
.reloc 0x0279f000 0x00005bec 0x00005c00 1.17117495734

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x0279d7f8 0x0000000e LANG_FRENCH SUBLANG_FRENCH_SWISS data
AFX_DIALOG_LAYOUT 0x0279d7f8 0x0000000e LANG_FRENCH SUBLANG_FRENCH_SWISS data
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0279d318 0x00000468 LANG_MARATHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_DIALOG 0x0279d9b8 0x0000004c LANG_FRENCH SUBLANG_FRENCH_SWISS data
RT_STRING 0x0279e1a0 0x000002b4 LANG_FRENCH SUBLANG_FRENCH_SWISS data
RT_STRING 0x0279e1a0 0x000002b4 LANG_FRENCH SUBLANG_FRENCH_SWISS data
RT_STRING 0x0279e1a0 0x000002b4 LANG_FRENCH SUBLANG_FRENCH_SWISS data
RT_STRING 0x0279e1a0 0x000002b4 LANG_FRENCH SUBLANG_FRENCH_SWISS data
RT_GROUP_ICON 0x02796f48 0x00000076 LANG_MARATHI SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02796f48 0x00000076 LANG_MARATHI SUBLANG_DEFAULT data
RT_GROUP_ICON 0x02796f48 0x00000076 LANG_MARATHI SUBLANG_DEFAULT data
RT_VERSION 0x0279d818 0x000001a0 LANG_FRENCH SUBLANG_FRENCH_SWISS data

Imports

Library KERNEL32.dll:
0x401010 MoveFileExW
0x401018 GetCurrentProcess
0x401020 GetUserDefaultLCID
0x40102c LoadLibraryW
0x401030 SetConsoleMode
0x401034 GetBinaryTypeA
0x401038 GetGeoInfoA
0x40103c GetSystemDirectoryA
0x401040 lstrcmpW
0x401044 SetLastError
0x401048 GetProcAddress
0x40104c FreeLibrary
0x401050 RemoveDirectoryA
0x401054 GetDiskFreeSpaceW
0x401058 GetAtomNameA
0x40105c LoadLibraryA
0x401060 LocalAlloc
0x401064 OpenEventA
0x401068 OpenJobObjectW
0x40106c GetModuleFileNameA
0x401070 GetCommTimeouts
0x401074 GetShortPathNameW
0x401078 EnumCalendarInfoExA
0x40107c LCMapStringW
0x401080 CreateFileW
0x401084 RaiseException
0x401088 FindResourceA
0x401094 FlushFileBuffers
0x401098 SetStdHandle
0x40109c MultiByteToWideChar
0x4010a0 EncodePointer
0x4010a4 DecodePointer
0x4010a8 GetLastError
0x4010ac HeapReAlloc
0x4010b0 GetCommandLineA
0x4010b4 HeapSetInformation
0x4010b8 GetStartupInfoW
0x4010bc GetModuleHandleW
0x4010c0 ExitProcess
0x4010cc IsDebuggerPresent
0x4010d0 TerminateProcess
0x4010d8 GetCPInfo
0x4010e0 GetACP
0x4010e4 GetOEMCP
0x4010e8 IsValidCodePage
0x4010ec TlsAlloc
0x4010f0 TlsGetValue
0x4010f4 TlsSetValue
0x4010f8 TlsFree
0x4010fc GetCurrentThreadId
0x401108 Sleep
0x40110c HeapSize
0x401110 WriteFile
0x401114 WideCharToMultiByte
0x401118 GetConsoleCP
0x40111c GetConsoleMode
0x401120 SetHandleCount
0x401124 GetStdHandle
0x40112c GetFileType
0x401134 SetFilePointer
0x401138 HeapCreate
0x40113c HeapFree
0x401140 HeapAlloc
0x401144 GetModuleFileNameW
0x401150 GetTickCount
0x401154 GetCurrentProcessId
0x40115c GetStringTypeW
0x401160 RtlUnwind
0x401164 WriteConsoleW
0x401168 CloseHandle
Library USER32.dll:
0x401170 ClientToScreen
Library GDI32.dll:
0x401008 GetCharWidthFloatA
Library ADVAPI32.dll:
Library WINHTTP.dll:
0x401178 WinHttpSetTimeouts

!This program cannot be run in DOS mode.
`.data
@.tuyiv
@.yepaku
@.tolako
`.rsrc
@.reloc
CorExitProcess
(null)
`h````
xpxxxx
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
`h`hhh
xppwpp
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
_nextafter
_hypot
1#QNAN
1#SNAN
VirtualProtect
cekufoxavonugi
RSDSe6
C:\jevus76\zelozejo53.pdb
D$ -LFj
D$,p;"
D$D!gpU
l$h7n.$
l$8Hot
D$@;(c
D$H"FKo
l$Px8Ps
D$0"|#
l$pql~#
D$,=v$
D$0Phd4@
|*SSQVj
jXhpmE
HHtXHHt
?If90t
f-00f=
j@j ^V
uh\)@
^SSSSS
tRHtCHt4Ht%HtFHHt
t"SS9] u
PPPPPPPP
PPPPPPPP
URPQQh
u}h<3@
;t$,v-
UQPXY]Y[
<+t"<-t
+t HHt
u-hD4@
]7rSbfo
njQ9:Os
0Q 2(Z
S9ykwn
vw%JrC
bx,waMo
eiHOF[ZW
<p*%Yr
>oS'?]
%}x\9R|
#DMr#=W
gqZ^1
,G+F 8
c-P]*Fm
/.,wReBk_
*7Jd,DM
9Q!by=g
M(P[;F
8^A]k
y>50p9
HW*y[A
%c0lvT
x|vx=e
Y65'wF
h$?l:5
&GbFz2
Y~r8b0
`oOGZH
r!0kQB
RKbV5&
._^e{M
B![tWU
UoW'JU
Gn@"}@
po(Z+>F
~H"R[Jl6
X?tQzU
`2aHJI
o+7FVn
Wt{\^+
qyE+op
0fR]eVJP
9nrj`b
>u`b<?
~5w@D+`
YpNZ`"
vL2=kz
`Hq}9@
>dQCMS]
_R8F$-2v
lLK[\
^N!|nK
]QEE`l
,UeOtt
:QI|$
@fiF5t
[Gb?Bw.
W]DQDk
&N1~27
uAwpPw
;/?mlP
a"p@y7
mHYbbia
?]bO/hc
PqhNB_i
=x8-.l
`0DyOE
0v\t@h~k6o
B-4DRM(
Z0?:%S@
MDSlJcH
(lAfmy
d^E9W|
-/$}.v
Dly}.\|8
g5!uwI
:7wt3Xad!
&;h~Gt
|6cs87B
KvsrTx
'~Oma>
2gnG+~
{&*V0!
IGX,Ch4
WUg<S'-$0
3f47&M0
TmNum=
;QO&9E_
+v2x!a
s3\J2\
m?-)zZ
e!%l\6
f&k5dl`H^m9
I({'%$
WuRe_a
S\(|x?~
p(Dh75
x)qn^n
(2A()bH~
CU(>2co2
q}}_v$
%DL0FA
uEtXnSS
qdL-O5
T]gn"84
;Nr]\
l/Y_{Xl
hr;AsD]C
:GU[3=HF8;
*#K*oO
y`VOhW)
=;Ca}G
;GG$G5
$[N4D<
|y{E7rz(3
iKZqm>
I-UwVd
QUC(qe
4ku$]
xxA@:+G
fL6,5H
UL2;x(
t$lx\mO
cBI;f3Z/
qa;MP\
ti}WBC
/f'jg%j
zxny,):
Hyc,b
P50P_U
CbjBb+
yiT`0"d
vs!,D>
)%/\_[L
Cos]L7
K00<CgZ
Im\zf+RuQ`
h1drWR
zi5K(T
8*~:W@
_kXV6%
/~P5~NA
}B+?e/<
2lN$#l
!4j]-*
+?$*?F
{$05D)
:Tn|y+f
>8?<*Q,
QJYmJ{
'O|I4M
M2?x0x
04.T5?
]=d(WT
-n$Uyx
:IvG|$iG
DnZP\G
Ry{ t*
bihnd\
hX+1kX
se@CLj
d4oZ<J=
nN2iH4S}])
m7/Ma%
8? $_dk
-Li~%N
r(IU&t,
X_Lefp
ENY?5
E;@j7
t7bWo$
7SDs!wo
uoO1C"u
`3s]V&V
czF456v_5wT
Tk>>dVVS
vrq2W)
&`tM`E
%bc*'k
a;P5k
p:=C:{xM
g';\,~
3A$:6a
~a29;A%
{^+^Hl
XPaI8@
s*rDJw
mQ"<@D
-0P1Vp;
ac%{o&H2W_
yx~{{
T%sDm^'G+:
U]?qCk\
WC/U*jE\
Gp3jve
JC@7dtCMm>
\^Q{bf'
l}~+G/
uljX[|
`,!^H[
SA0PR9$
$S<{huwWd
o{a:0iM=qb .
:?1u|kc
PktYw)
tEGcM`r
^- $l@
?iKmz`
_\()`-
g;G}I3Bj
In#6#~
V'8wjMT:
TC^weg.EGa2
5 u`Ht
Ee'6NF
{LJ>wY99
3yst/#
T)l4+;bm
ZpZV*:
PieQxA
J'Tlun
oO%IMz_
V'~sE6ZW
OyC+l{c
RjR13:i%
I}GS(_
$EE037
X{R#Et
-i;!j*j|k
q"I~}x!
B>4#5v
C(9:w8'`~7
NZ{O?w
Ra*Mzd
h:Yw'2:[
naI9,X
-!YpwT
eNkPI
DsItb4s
$``vk"
uq@ebY
|\QJVc
OMtRe
j$Tr8Y
3~$L+M
eM)h0U.&x
#\)E9M]@
#+y~[/*
~"lt_jgt]
P$4!tM=/
E5W%_c
EO2!*
GBDeC{
XLa9*E
04z%lN
_ZCWe
_&[VNv
<D5aH=
vL:sQl
=DC2*C
~iv7/~
\Kw0$
346/wa`
l=SY=xnF
;,~$wuH
'|DtF
Wf),;
WAkj"^
s]@4[nE
E'#CkA
G+vcwn.
1SN|<HO
5e\0x_
pK~':`
L]31a0
?KU|"4c
L?0%o$5#E
gh+.~,.
@b{Tl!
ye3&Dh
8KMP67K
K$k.>S
li'uv{
kH<];X
(4_lSSi
S73QfJ_
DDfIiB
X]'Tx#[
$@:{UG
QR5zB"I
N>R.oS
f7[O$}1
uXs4Ye
u7nO4"26
0X;MqR
+VNawJ
OP 15pgq !~
yhYwXw2
8hf#%
U:U,43
*ZrrC<
n)N)Nr
,IT$Gl7
+w5yL|
]||`h(
p`Yh<_=ovN
hfJ9`{
0y,p@f_
3uaOc1
kU'r;
P&VO1F
c6p(e8
8MWZBr
?8ji?O
j/JQ=
%X,W.8
](5wdw,
JI(|!x
kv4|3{?E^
wK9Clu\CMh
u`=?P(%T
[Eqq2|cS
to/#pF
ZWTF7|Z
6q>/9x
\N$v7v/9
CGXEr6
:52Z<|H
v]A}PX
}^$I,n;
Muc+RkB
^h]HN/
TQkNJ+M
1/Yd(-
n]Bf7%
~S[g[/*~
a>A0?I'
*,<HIIc
cg[DXb
RRSC3{
{/uhkw
Ey[rGu
Z;bdP:
-Ouf)y
/<L4 8g
V\`e`dxy#
iei-0
hC@hA/S
(Huv=Nk
'MeWXP?
aQ3y<%/,
6FXrc,
"TG}Fx
A:&_U
-;iUS\
r8LbP
gRLChp
D3j{a
#['v4T
<^Bmam
C5c.Rda
lhU~=M:w
'uU[;8Ka
4,0i+oJ
Ctg,!
D#}I"'
H@\s#).
>bMmNn
(C\Dch;7R
sP(Rq2p
gUM>r}
2HSxPe|
N` Ud
kB-,-j@
"dwJ=p
{"// 7E=4
9_/n_)C
;8{s+D
~i"rGbe
Fj?_Hk
XDK'jli
A!CeaD
w:9c?T
1y]/^wzD
Ec=qZI
oH}^Zcp
)u1DCS
!zpj$}
d^FE0,
@v@XKS
#vRTQ@g
ofsgL 4,FOLH
p{ rN
/]Fv"%
T2FQ,Y
8p}M6t
V8p}F?t
xbuVcn
<oHpEDl%?
h6{O6 o
s}RSSJ
;6)\[$
%N,r11N4
U~wDtL
{lF|m%b
{wS$}5oQ$
TYd7)X!{
TN_S"l
&7}n 9!H
mh 0!
K%&oI<x
d"e&tcq}k
Y&",+n
h_PSCY
u%udom*d
nA&> K
`Uc4Zs
:6TcC%|
i`5yxH
,]G!Hq
8N-ReM
+hku`m
>yV&JAW
Iy$n(-
Wj~n4:
R*5T|h
-DB>VA
kfR!G_
cgr4KZL
Big~`
o"z5PU
|,~?.<
i/WnWk
Gh4V*S
4SZao~
q~V}l,6
p?XTum~
HePQx2P
,N$&_V
l%o,;K
E&n`f#
E/dT!<
-jyUgwt
T\av[W
Oa_k.*Zr3HK^
S"7KaW
S9]xf5
hu]B4'4v
C'4_\"
9V{; ,tK
9[jP:P
<;qlt,
[9Y0oI'
VaZwzB
,>H/]B
o1YXpe%HBJ
NoK7hU
SetDefaultCommConfigA
FindResourceA
GetConsoleAliasesLengthW
FreeLibrary
MoveFileExW
InterlockedDecrement
GetCurrentProcess
GetEnvironmentStringsW
GetUserDefaultLCID
GetConsoleAliasesLengthA
GetUserDefaultLangID
LoadLibraryW
SetConsoleMode
GetBinaryTypeA
GetGeoInfoA
GetSystemDirectoryA
lstrcmpW
SetLastError
GetProcAddress
RemoveDirectoryA
GetDiskFreeSpaceW
GetAtomNameA
LoadLibraryA
LocalAlloc
OpenEventA
OpenJobObjectW
GetModuleFileNameA
GetCommTimeouts
GetShortPathNameW
EnumCalendarInfoExA
LCMapStringW
KERNEL32.dll
ClientToScreen
USER32.dll
GetCharWidthFloatA
GDI32.dll
CreateRestrictedToken
ADVAPI32.dll
WinHttpSetTimeouts
WINHTTP.dll
MultiByteToWideChar
EncodePointer
DecodePointer
GetLastError
HeapReAlloc
GetCommandLineA
HeapSetInformation
GetStartupInfoW
GetModuleHandleW
ExitProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
IsProcessorFeaturePresent
GetCPInfo
InterlockedIncrement
GetACP
GetOEMCP
IsValidCodePage
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
GetCurrentThreadId
EnterCriticalSection
LeaveCriticalSection
HeapSize
WriteFile
WideCharToMultiByte
GetConsoleCP
GetConsoleMode
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
SetFilePointer
HeapCreate
HeapFree
HeapAlloc
GetModuleFileNameW
FreeEnvironmentStringsW
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
GetStringTypeW
RtlUnwind
WriteConsoleW
SetStdHandle
FlushFileBuffers
RaiseException
CreateFileW
CloseHandle
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
~V~w}2
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\D
\\\\\\\\\\\\\\\\\
Os\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
ts\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
-s\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
Qs\\\\\\\\\\\\\\\
s\\\\\\\\\\\\\\\
Hs\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\
6\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
^\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\e|
\\\\\\\\\\\\\\\\
UQ\\\\\\\\\\\\\\\\O
Ue\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\e?
y}yRyJ
-\\\\\\\\\\\\\\\\Q
\\\\\\\\\\\\\\\\e
\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\\^
\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\
s sssss
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
jW%<@Q
OOy*OO
@^@^^^@R
?E5?tv}
SdS=}~
______-
_____-
{{{{{{{{{{{
G00000000000000000000000000
LLLLLLLLLLLLLL
LLLLLL`
LLLLLLL2
LLLLLL
H--------
--------------------
%%%%%%%%%%%%%%%%%%
YYYYYYYYYY%
YYYYYY
%qqqqq
%qqqqq
%qqqqqqY8
%qqqqqqqY8
%qqqqqqqqH
gggggggggK
ggggggggggg?K
3HShT7e~
T8\8d8l8t8|8
5%6>6Q6s6i?
=4C4e4j4s4z4
5#5+5B5K5V5\5b5h5
6"6J6Y6_6e6r6
77$7*747>7H7N7Y7}7
:C:K:`:k:
;@;f;n;
<9=@=H=
2E3L3m3t3
4<5a5p5x5
858@8H8X8^8o8
;$;*;c;h;m;r;
<E<J<Q<V<]<b<p<
<c>j>v?
;#;?;b;u;
<!<><D<Y<~<
?;?@?F?J?P?T?Z?^?d?h?m?s?w?}?
1%151F1
4!4+494B4L4
4&5[5n5
6G7S7f7x7
8B8k8|8
:0;J;[;
<!<'<3<9<F<P<V<`<
=-=3=9=O=g=
>*>4>l>t>
?"?+?7?<?A?G?K?Q?V?\?a?p?
1+1=1K1`1j1
<P?T?X?\?`?d?h?l?q?
2(2e2k2
6]7-8^8t8
;>;I;l;
;*<\<t<{<
= =j=p=t=x=|=
0'0n0x0
0-1?1m1
313=3V3\3n3
6#6T6q6
6[8h8q8
9F9Q9[9l9w97;H;P;V;[;a;
<c<o<~<
='=P=X=h=o=y=
?H?N?S?a?p?~?
80=0O0m0
9+9=9c9u9
;$<1<6<D<u<
1,2T2m2
3*333]3}3
585C5I5Y5^5o5w5}5
636M6O8V8\8
9#9*91989?9F9N9V9^9j9s9x9~9
?$?+?3?8?<?@?i?
0 0$0(0,0
1I1P1T1X1\1`1d1h1l1
9+9A9I9
;(;5;C;s;<<
>%???H?v?|?
4z5n6v6'7
8G9M9[9
=(=H=h=
>(>H>T>p>|>
? ?<?@?`?
7 7$7(7,7074787<7@7D7H7L7P7T7X7\7`7d7h7l7p7t7x7|7
8 8$8(8,8084888
9 9,90989
= =$=(=,=0=4=H=L=P=T=X=\=`=d=h=l=x=|=
>$>,>4><>D>L>T>\>d>l>t>|>
mscoree.dll
(null)
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
nKERNEL32.DLL
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
@Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
((((( H
h(((( H
H
WUSER32.DLL
pCONOUT$
tivunaciyec
jjjjjjjjj
AFX_DIALOG_LAYOUT
ERRORDIALOG
VS_VERSION_INFO
StringFileInform
10808EA7
FileVersions
29.47.75.23
Copyrighz
Copyright (C) 2022, pozkarte
ProjectVersion
28.82.74.73
SomeInfo
Translate
Error!
&Ignore
RZexijupem kog piwap bejusipivixexo yareda wene mafo rozisovecanupif rugifopat kimoBSive palesipan gevuyuran tujale weyanuj xiweluxuhix pifiy nusexekieXuvomuzeyujez jicuha nomekoy gapizadezoduj kafarudupoh howolayuj dimepam gelome wekotefosij sejecakum
2Dap tatikafadehibu fiduvigovido lozepe konazorewap2Vosukuxixit tavada yitumogij pebuwubac wifiputazec
Yuhovoyuyamovupe
Xih tagibibokexic1Tuheketitinupom pogibajejosag helujoxedapu napuwo
Jakaro
6Hasuxecem feyidez bahoxuzukahoso fidedubazisi vunifara;Dopozafabayi feraturifa xuhiw depuvi dalubo molinig pixeniw-Hadigaxonabifon hiziyraogadil ceneca mazavode
Xubuwibi
*Vezuzoladec mehumusutonobaw vefadusococavu1Yonufuwu zatuso fixeyajeraref miyuyix rosadi fehiANaziwokefek rijoyurogebetuc zekitosipudo cimoxirosur vewodat cidi
MHufupolika fovava sof jixa vegomibower migukux pahedev hatecuzagix liceyohugo
LabegabunerurutDHixibe kuxen jugediwuzaxexif jelijapux bik goramep fewakow focipiyuf
JRoyixihir rukeboga cenilibiwirepe hegoneko puxesuk zuxahehiri hahaz vacoce7Horenude foh yirika kizeferavibira vuzuzoke jifejihokoy6Somefupekiz fucokuluwa disatete neparukagan nojekucape
#Yeyodup yihojejizuxahud vufumubutat3Zehogocotimehuw revim bawijifa jibobin kifuresedasy=Vuf woregewaxofibe capopipubex xovokidecule vedi fumu vifiwer
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Trojan.Multi.Generic.4!c
tehtris Generic.Malware
MicroWorld-eScan Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!68FCD1EBD9DE
Cylance Unsafe
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 00564bda1 )
BitDefender Clean
K7GW Trojan ( 00564bda1 )
Cybereason malicious.ce9728
Baidu Clean
VirIT Clean
Cyren W32/Kryptik.GOQ.gen!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Kryptik.HPQE
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Trojan:Win32/Starter.ali2000005
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!8.8 (CLOUD)
Ad-Aware Clean
TACHYON Clean
Sophos Mal/Generic-S
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Flyagent.hh
FireEye Generic.mg.68fcd1ebd9de5ff4
Emsisoft Clean
Ikarus Trojan.Crypter
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/RelineStealer.VK!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win.RunPE.C5133270
Acronis suspicious
BitDefenderTheta Clean
ALYac Clean
MAX Clean
VBA32 Malware-Cryptor.InstallCore.6
Malwarebytes Trojan.MalPack.GS
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.ERHN!tr
AVG PWSX-gen [Trj]
Avast PWSX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.