Static | ZeroBOX

PE Compile Time

2021-06-16 10:58:41

PE Imphash

218d0fc4cb99087b61778979ff7fe694

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00001dc7 0x00001e00 5.56434445792
.rdata 0x00003000 0x0001fcc0 0x0001fe00 7.85104508975
.data 0x00023000 0x00011a38 0x00000200 0.648295048272
.gicos 0x00035000 0x0000000a 0x00000200 0.0
.sehiz 0x00036000 0x00000064 0x00000200 0.0
.rsrc 0x00037000 0x0001526f 0x00015400 4.51382925595

Resources

Name Offset Size Language Sub-language File type
MAREYUH 0x000373e0 0x00000100 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with no line terminators
RT_ICON 0x0004b370 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0004b370 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0004b370 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0004b370 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0004b370 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0004b370 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0004b370 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0004b370 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0004b370 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0004b370 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0004b370 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_MENU 0x0004b7d8 0x00000620 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0004be28 0x00000076 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0004be28 0x00000076 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x0004bea0 0x00000110 LANG_MALAY SUBLANG_MALAY_BRUNEI_DARUSSALAM 0420 Alliant virtual executable common library not stripped
RT_MANIFEST 0x0004bfb0 0x000002bf LANG_ENGLISH SUBLANG_ENGLISH_US XML 1.0 document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators

Imports

Library MSVCR90.dll:
0x4030cc scanf
0x4030d0 fread
0x4030d8 ??2@YAPAXI@Z
0x4030dc __p__commode
0x4030e0 __p__fmode
0x4030e4 _adjust_fdiv
0x4030e8 _encode_pointer
0x4030ec _configthreadlocale
0x4030f0 _initterm_e
0x4030f4 _initterm
0x4030f8 _wcmdln
0x4030fc exit
0x403100 _XcptFilter
0x403104 _exit
0x403108 _cexit
0x40310c __wgetmainargs
0x403110 _amsg_exit
0x403114 __set_app_type
0x403118 ?terminate@@YAXXZ
0x40311c _unlock
0x403120 __dllonexit
0x403124 _lock
0x403128 ??3@YAXPAX@Z
0x40312c _encoded_null
0x403130 __FrameUnwindFilter
0x403134 _onexit
0x403138 _decode_pointer
0x403140 _invoke_watson
0x403144 _controlfp_s
0x403148 __setusermatherr
0x40314c _crt_debugger_hook
0x403150 printf
Library KERNEL32.dll:
0x403038 GetFileType
0x40303c GetModuleHandleA
0x403040 GetProcessId
0x403044 GlobalAlloc
0x403048 GetLastError
0x40304c GetProcAddress
0x403054 GetSystemTimes
0x40305c CompareFileTime
0x403060 GetNativeSystemInfo
0x403068 LoadLibraryW
0x40306c LoadLibraryA
0x403070 IsDebuggerPresent
0x403078 InterlockedExchange
0x40307c Sleep
0x403084 GetStartupInfoW
0x403090 GetTickCount
0x403094 GetCurrentThreadId
0x403098 GetCurrentProcessId
0x4030a0 TerminateProcess
0x4030a4 GetCurrentProcess
Library USER32.dll:
0x403168 CreateWindowExA
0x40316c ShowWindow
0x403170 UpdateWindow
0x403174 SetCursor
0x40317c AdjustWindowRect
0x403180 GetClientRect
0x403184 AnimateWindow
0x403188 LoadIconW
0x40318c CreateCaret
Library GDI32.dll:
0x403010 SetPolyFillMode
0x403014 BitBlt
0x40301c EndPath
0x403020 StretchBlt
0x403024 GetPolyFillMode
0x403028 CreateEllipticRgn
0x40302c CreateDIBitmap
0x403030 SetWinMetaFileBits
Library ADVAPI32.dll:
0x403000 ReportEventA
Library SHELL32.dll:
0x403158 DragQueryPoint
0x40315c DragAcceptFiles
0x403160 ShellExecuteW
Library MSIMG32.dll:
0x4030ac TransparentBlt
0x4030b0 GradientFill
Library COMCTL32.dll:
0x403008 None
Library WINHTTP.dll:
0x403194 WinHttpConnect
0x403198 WinHttpOpenRequest
Library mscoree.dll:
0x4031a0 _CorExeMain

!This program cannot be run in DOS mode.
`.rdata
@.data
.gicos
.sehiz
JJ csm
bad allocation
Zo^[u
1USUibu
6SR+u"}
/*$x'u
6Q2.r~
,~)9d
mn"1,k;d
1"LM,&
k)-vv,
A!zPqD
.K-^7.
s=o+W^
7hn4O{
=z1O'c
t{utkmb
lth%{fL
K=H%*A:'
EM'mv8rl9
s9"p:~
&f:IP$
Z471;*
gCBzpI
/fv^7h
L6U+D<!,
GO=drX
D>Gw$M
=ya<o_K
yaW3&`,
/fKlyV
giI_^Xq
S*cg?k
zX@V'G7T
^P]k&ge
sd8FNtO
&Gb_?^
?Bs_@R@LC'
q?^>ZrZ
->@9Ms
Ppawlt
S3nv-l
'wz=58
-1ADp\
)h *&w
NTb;K6q
~FcP~v
uKSg" V
V)eB$3
[~Owza
a-v:][
'>4>iD
Bm+JUg+
m Eq_S
bMZcDP
5Pq=+%{
CR\UhQe
]^@0="
z=dA u^
hX,DnUG
&dq~x?
6YYY\B
Y}[8B3
D??!>QP
olV.,b
%[\<@)
|x["[U-9:
(m-UkX
KcWm)d
PAqAoUJ%
M]S9Iv
7&t+iDq\
gr.zwSz
?szKR6
UT'7zt
Cv(bjt
CFP".g
(FHy/g
.Lb`?z
g"\+Px^
7hwCTnO
eP>I7G]R
)ZT-^J
T^W&A2#
%=-0C6
A2V74a
C#ucMQ
jx@r"Xh
\*^fkz{cUA
wVHRbx
=TNnIo
|?OE|^
E7APNQ
2'&Bgo
}{HFz/ui
l^2+>T
`lW9["SYQ?
)#lmtS
S.|:~$Y
o`&Zy\
-4J2M
M[)\?<8
deU*HlM
a.d\IAT
}X7t=t
}e._k
*#R}(@
x>0YpX
gl)l?9{v
)vvs4[
&mv|L\
|=T4U0:
a6ugMc
`\r,hi
KiT=ud
B}uQv8
IZ9x/
*7`Teg
iNyijn=B&`
n}=iCL+
>W_;n}
:1r+6q
d,MdwN|
6qg=ar
6lCBUS`
'I8bk
)7{;t1]
t=i40_P
rBZ1?)
Q~qgH!G
+cFo?Sn
K1h*Dsa}
(J^po]o
x2d6]+=qck5
O*7X,
A[(C|9c
9|8&n5
D5X`5y
8tA}Y!
-Oh:5,
^*QNIM
)BcrZ{0
=Awq3T&
*I+IT3
d|bFm93N
M8:hhd
ZzE)%_
8w\&D
!F/Pe-E
2!!H`Qn7
*byH'AiS,
d+]K"W9?
2I8m=w
tF7@hO
!,]%9nH
YFOB'(N
b.R1s-
,o)kv.7
+[vF*Y
ukP4N_|Z
X=]iJB
QMxk)g
lllVz#
1ii*}0,
="Zp0%x
9|+j/w
)lDV^^
{1OiBc
PnFyl8
uG6$3.
|kH'OO
R`K_LF
rC3,|?.,T
$A{FRS
/EGn]y
(Ll4pw
.6@;Au[
ha{D/{
$=@?|?
eUk38Zt
hSzC >'
[{tx&@0
m(Q+y0q4
[:>}4d
, [>9"
4XImC.
{]]R+h
iN-[ 9
OkR[ja;
r;<@[rW
<&r;5q
?_-4)
Bj4OuA
MlowBfr
W2yHO.
GDrJ;<
,[/?$v
z K7[
~|^nw
$7Xgu[
X"90+P
;?@tE:
h.v}^e
'H<TcV
d,=v.?f
cV(#s]~'
g+B9ce
X9]kR>
pb/3j!5
Ngn#eK
VirtualProtect
kernel32.dll
0 %s %d %f
haxomowilecaruto
v2.0.50727
#Strings
<Module>
$ArrayType$$$BY0P@$$CBD
<CppImplementationDetails>
$ArrayType$$$BY0BP@$$CBD
$ArrayType$$$BY01$$CBD
$ArrayType$$$BY0CA@$$CB_W
$ArrayType$$$BY0DB@$$CB_W
$ArrayType$$$BY0L@$$CB_W
$ArrayType$$$BY0CF@$$CB_W
$ArrayType$$$BY0BH@$$CB_W
$ArrayType$$$BY0BB@$$CBD
$ArrayType$$$BY0L@$$CBD
$ArrayType$$$BY0N@$$CBD
_Aux_cont
_iobuf
HINSTANCE__
basic_ifstream<char,std::char_traits<char> >
basic_stringstream<char,std::char_traits<char>,std::allocator<char> >
vector<unsigned long,std::allocator<unsigned long> >
_Vector_val<unsigned long,std::allocator<unsigned long> >
_FILETIME
HRGN__
HICON__
HWND__
$ArrayType$$$BY0EAA@D
tagRECT
HDROP__
tagPOINT
$ArrayType$$$BY0BJGEH@E
_TRIVERTEX
$ArrayType$$$BY0GE@E
$ArrayType$$$BY0GE@V?$basic_stringstream@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
$ArrayType$$$BY09E
HENHMETAFILE__
$ArrayType$$$BY0CIAA@D
_SYSTEM_INFO
$ArrayType$$$BY0CIAA@K
HMENU__
HBITMAP__
tagBITMAPINFOHEADER
tagBITMAPINFO
tagMETAFILEPICT
LanguageSupport
<CrtImplementationDetails>
gcroot<System::String ^>
$ArrayType$$$BY00Q6MPBXXZ
Progress
$ArrayType$$$BY0A@P6AXXZ
$ArrayType$$$BY0A@P6AHXZ
__enative_startup_state
TriBool
_EXCEPTION_POINTERS
_Fac_node
ThisModule
mscorlib
Microsoft.VisualC
CallConvStdcall
System.Runtime.CompilerServices
CallConvCdecl
CallConvThiscall
IsConst
DebugInfoInPDBAttribute
MiscellaneousBitsAttribute
NativeCppClassAttribute
ValueType
System
IsSignUnspecifiedByte
DecoratedNameAttribute
IsImplicitlyDereferenced
IsLong
CLSCompliantAttribute
SecurityAction
System.Security.Permissions
SecurityPermissionAttribute
AssemblyAttributesGoHereSM
IsVolatile
UnsafeValueTypeAttribute
Exception
Object
DebuggerStepThroughAttribute
System.Diagnostics
ReliabilityContractAttribute
System.Runtime.ConstrainedExecution
Consistency
EventArgs
PrePrepareMethodAttribute
EventHandler
FixedAddressValueTypeAttribute
GCHandle
System.Runtime.InteropServices
IntPtr
AppDomain
RuntimeHelpers
Interlocked
System.Threading
Marshal
OutOfMemoryException
IsBoxed
ModuleHandle
RuntimeMethodHandle
RuntimeTypeHandle
Module
System.Reflection
SuppressUnmanagedCodeSecurityAttribute
System.Security
delete
MyRegisterClass_drgoidg
hInstance
InitInstance_dfhtyj
nCmdShow
mysrand_erlgoerbg
dummy_fhjfuk
wWinMain
hPrevInstance
lpCmdLine
nShowCmd
std.vector<unsigned long,std::allocator<unsigned long> >.{ctor}
std.vector<unsigned long,std::allocator<unsigned long> >.{dtor}
std._Vector_val<unsigned long,std::allocator<unsigned long> >.{dtor}
<CrtImplementationDetails>.NativeDll.IsSafeForManagedCode
<CrtImplementationDetails>.DefaultDomain.DoNothing
cookie
<CrtImplementationDetails>.DefaultDomain.HasPerProcess
<CrtImplementationDetails>.DefaultDomain.HasNative
<CrtImplementationDetails>.DefaultDomain.NeedsInitialization
<CrtImplementationDetails>.DefaultDomain.Initialize
?A0x250abb45.??__E?Initialized@CurrentDomain@<CrtImplementationDetails>@@$$Q2HA@@YMXXZ
?A0x250abb45.??__E?Uninitialized@CurrentDomain@<CrtImplementationDetails>@@$$Q2HA@@YMXXZ
?A0x250abb45.??__E?IsDefaultDomain@CurrentDomain@<CrtImplementationDetails>@@$$Q2_NA@@YMXXZ
?A0x250abb45.??__E?InitializedVtables@CurrentDomain@<CrtImplementationDetails>@@$$Q2W4State@Progress@2@A@@YMXXZ
?A0x250abb45.??__E?InitializedNative@CurrentDomain@<CrtImplementationDetails>@@$$Q2W4State@Progress@2@A@@YMXXZ
?A0x250abb45.??__E?InitializedPerProcess@CurrentDomain@<CrtImplementationDetails>@@$$Q2W4State@Progress@2@A@@YMXXZ
?A0x250abb45.??__E?InitializedPerAppDomain@CurrentDomain@<CrtImplementationDetails>@@$$Q2W4State@Progress@2@A@@YMXXZ
<CrtImplementationDetails>.LanguageSupport.InitializeVtables
<CrtImplementationDetails>.LanguageSupport.InitializeDefaultAppDomain
<CrtImplementationDetails>.LanguageSupport.InitializeNative
<CrtImplementationDetails>.LanguageSupport.InitializePerProcess
<CrtImplementationDetails>.LanguageSupport.InitializePerAppDomain
<CrtImplementationDetails>.LanguageSupport.InitializeUninitializer
<CrtImplementationDetails>.LanguageSupport._Initialize
<CrtImplementationDetails>.LanguageSupport.UninitializeAppDomain
<CrtImplementationDetails>.LanguageSupport._UninitializeDefaultDomain
<CrtImplementationDetails>.LanguageSupport.UninitializeDefaultDomain
<CrtImplementationDetails>.LanguageSupport.DomainUnload
source
arguments
<CrtImplementationDetails>.LanguageSupport.Cleanup
innerException
<CrtImplementationDetails>.LanguageSupport.Initialize
.cctor
<CrtImplementationDetails>.LanguageSupport.{ctor}
<CrtImplementationDetails>.LanguageSupport.{dtor}
gcroot<System::String ^>.{ctor}
gcroot<System::String ^>.{dtor}
gcroot<System::String ^>.=
gcroot<System::String ^>..P$AAVString@System@@
___CxxCallUnwindDtor
___CxxCallUnwindVecDtor
pVecDtor
__ehvec_dtor
?A0x644ad69d.ArrayUnwindFilter
pExPtrs
__ArrayUnwind
__ehvec_ctor
<CrtImplementationDetails>.AtExitLock._handle
<CrtImplementationDetails>.AtExitLock._lock_Set
<CrtImplementationDetails>.AtExitLock._lock_Get
<CrtImplementationDetails>.AtExitLock._lock_Destruct
<CrtImplementationDetails>.AtExitLock.IsInitialized
<CrtImplementationDetails>.AtExitLock.AddRef
?A0x11773762.__alloc_global_lock
?A0x11773762.__dealloc_global_lock
_exit_callback
_initatexit_m
_initatexit_app_domain
_app_exit_callback
_initterm_e
pfbegin
_initterm
<CrtImplementationDetails>.ThisModule.Handle
_initterm_m
<CrtImplementationDetails>.ThisModule.ResolveMethod<void const * __clrcall(void)>
methodToken
_wWinMainCRTStartup
std.basic_ifstream<char,std::char_traits<char> >.__vbaseDtor
std.basic_stringstream<char,std::char_traits<char>,std::allocator<char> >.__dflt_ctor_closure
std.basic_stringstream<char,std::char_traits<char>,std::allocator<char> >.__vbaseDtor
std.basic_ifstream<char,std::char_traits<char> >.{ctor}
LocalFileTimeToFileTime
CreateEllipticRgn
printf
SetCursor
GetCurrentProcessId
BitBlt
TransparentBlt
GetSystemRegistryQuota
DragQueryPoint
GetModuleHandleA
GradientFill
ShellExecuteW
AnimateWindow
GetFileType
GetProcessId
StretchBlt
LoadLibraryA
DragAcceptFiles
WinHttpOpenRequest
GetClientRect
GetWindowTextLengthA
GetProcAddress
GetLastError
ReportEventA
LoadIconW
_invalid_parameter_noinfo
IsProcessorFeaturePresent
LoadLibraryW
CreateWindowExA
GetPolyFillMode
EndPath
GlobalAlloc
SetPolyFillMode
WinHttpConnect
GetSystemTimes
GetTickCount
ShowWindow
CreateCaret
CompareFileTime
GetCurrentProcess
UpdateWindow
AdjustWindowRect
CreateDIBitmap
CreateStatusWindowA
GetNativeSystemInfo
SetWinMetaFileBits
CreateDiscardableBitmap
_getFiberPtrId
_amsg_exit
__security_init_cookie
<CrtImplementationDetails>.ThrowModuleLoadException
<CrtImplementationDetails>.DoDllLanguageSupportValidation
<CrtImplementationDetails>.ThrowNestedModuleLoadException
<CrtImplementationDetails>.RegisterModuleUninitializer
<CrtImplementationDetails>.DoCallBackInDefaultDomain
_cexit
__FrameUnwindFilter
terminate
_encode_pointer
_decode_pointer
_encoded_null
??_C@_0P@GHFPNOJB@bad?5allocation?$AA@
??_C@_0BP@PCIEPNJB@AAABBOOFFFAQWERZ189000KKKKKZzZ?$AA@
??_C@_1EA@KGMDBIJD@?$AAd?$AAe?$AAn?$AAa?$AAj?$AAi?$AAt?$AAo?$AAw?$AAa?$AAp?$AAi?$AAy?$AAa?$AAf?$AAo?$AAn?$AAa?$AAt?$AAa?$AAy?$AAi?$AAw?$AAi?$AAd?$AAe?$AAf?$AAi?$AAy?$AAu?$AAd?$AA?$AA@
??_C@_1GC@KCAGIKGN@?$AAy?$AAo?$AAc?$AAa?$AAk?$AAi?$AAm?$AAe?$AAb?$AAi?$AAd?$AAe?$AAx?$AAu?$AAz?$AAi?$AAd?$AAo?$AAt?$AAe?$AAb?$AA?5?$AAd?$AAi?$AAd?$AAa?$AAr?$AAo?$AAh?$AAo?$AAh?$AAo@
??_C@_1BG@PBFCNNDP@?$AAx?$AAi?$AAc?$AAi?$AAl?$AAa?$AAj?$AAo?$AAd?$AAa?$AA?$AA@
??_C@_1EK@LMOCKKNM@?$AAn?$AAJ?$AAK?$AA?5?$AAk?$AAa?$AAg?$AAa?$AAt?$AAi?$AAh?$AAa?$AAs?$AAu?$AAc?$AAa?$AAp?$AAu?$AAm?$AAi?$AAc?$AAa?$AAt?$AAo?$AAw?$AAi?$AAw?$AAe?$AAv?$AAe?$AAc?$AAu@
??_C@_1CO@KLOBNFGK@?$AAz?$AAi?$AAf?$AAa?$AAz?$AAo?$AAb?$AAi?$AAk?$AAu?$AAl?$AAi?$AAz?$AAa?$AAc?$AAe?$AAd?$AAe?$AA?4?$AAd?$AAl?$AAl?$AA?$AA@
??_C@_01GBGANLPD@0?$AA@
??_C@_0BB@PLGGAEKO@haxomowilecaruto?$AA@
??_C@_0L@EAILMMMA@0?5?$CFs?5?$CFd?5?$CFf?$AA@
??_C@_0N@MDJJJHMB@kernel32?4dll?$AA@
??_C@_0P@IGDMCLEE@VirtualProtect?$AA@
payloadData
FP_VirtualProtect
holdrand
szTitle
payloadBuf
szSomething
moduleFileName
std.?A0x9d139b09._bad_alloc_Message
?A0x250abb45.__xc_mp_z
?Uninitialized@CurrentDomain@<CrtImplementationDetails>@@$$Q2HA
?A0x250abb45.?Uninitialized$initializer$@CurrentDomain@<CrtImplementationDetails>@@$$Q2P6MXXZA
?A0x250abb45.__xi_vt_a
?InitializedPerAppDomain@CurrentDomain@<CrtImplementationDetails>@@$$Q2W4State@Progress@2@A
?A0x250abb45.?InitializedPerAppDomain$initializer$@CurrentDomain@<CrtImplementationDetails>@@$$Q2P6MXXZA
?IsDefaultDomain@CurrentDomain@<CrtImplementationDetails>@@$$Q2_NA
?A0x250abb45.?IsDefaultDomain$initializer$@CurrentDomain@<CrtImplementationDetails>@@$$Q2P6MXXZA
?A0x250abb45.__xc_ma_a
?InitializedNative@CurrentDomain@<CrtImplementationDetails>@@$$Q2W4State@Progress@2@A
?A0x250abb45.?InitializedNative$initializer$@CurrentDomain@<CrtImplementationDetails>@@$$Q2P6MXXZA
?Initialized@CurrentDomain@<CrtImplementationDetails>@@$$Q2HA
?A0x250abb45.?Initialized$initializer$@CurrentDomain@<CrtImplementationDetails>@@$$Q2P6MXXZA
?A0x250abb45.__xc_ma_z
?InitializedVtables@CurrentDomain@<CrtImplementationDetails>@@$$Q2W4State@Progress@2@A
?A0x250abb45.?InitializedVtables$initializer$@CurrentDomain@<CrtImplementationDetails>@@$$Q2P6MXXZA
?A0x250abb45.__xi_vt_z
?InitializedPerProcess@CurrentDomain@<CrtImplementationDetails>@@$$Q2W4State@Progress@2@A
?A0x250abb45.?InitializedPerProcess$initializer$@CurrentDomain@<CrtImplementationDetails>@@$$Q2P6MXXZA
?InitializedPerProcess@DefaultDomain@<CrtImplementationDetails>@@2_NA
?Entered@DefaultDomain@<CrtImplementationDetails>@@2_NA
?InitializedNative@DefaultDomain@<CrtImplementationDetails>@@2_NA
?Count@AllDomains@<CrtImplementationDetails>@@2HA
?hasNative@DefaultDomain@<CrtImplementationDetails>@@0W4State@TriBool@2@A
?hasPerProcess@DefaultDomain@<CrtImplementationDetails>@@0W4State@TriBool@2@A
?InitializedNativeFromCCTOR@DefaultDomain@<CrtImplementationDetails>@@2_NA
?A0x250abb45.__xc_mp_a
__unep@?DoNothing@DefaultDomain@<CrtImplementationDetails>@@$$FCGJPAX@Z
__unep@?_UninitializeDefaultDomain@LanguageSupport@<CrtImplementationDetails>@@$$FCGJPAX@Z
std.?A0x9e79dd2a._bad_alloc_Message
std.?A0x9e79dd2a._Fac_head
__exit_list_size_app_domain
__onexitbegin_app_domain
?A0x11773762.__exit_list_size
__onexitend_app_domain
?A0x11773762.__onexitbegin_m
?A0x11773762.__onexitend_m
?_lock@AtExitLock@<CrtImplementationDetails>@@$$Q0PAXA
?_ref_count@AtExitLock@<CrtImplementationDetails>@@$$Q0HA
__xc_z
__native_vcclrit_reason
__xc_a
__xi_a
__native_startup_state
__xi_z
__native_startup_lock
__native_dllmain_reason
value__
op_Explicit
ToPointer
KeepAlive
IsDefaultAppDomain
get_CurrentDomain
PrepareConstrainedRegions
get_Target
set_Target
Increment
Decrement
Exchange
CompareExchange
GetExceptionPointers
FromIntPtr
ToIntPtr
AllocHGlobal
FreeHGlobal
GetTypeFromHandle
get_Module
GetFunctionPointer
ResolveMethodHandle
get_ModuleHandle
_stub.exe
SkipVerification
System.Security.Permissions.SecurityPermissionAttribute, mscorlib, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
SkipVerification
??3@YAXPAX@Z
MSVCR90.dll
_amsg_exit
__wgetmainargs
_cexit
_XcptFilter
_wcmdln
_initterm
_initterm_e
_configthreadlocale
__setusermatherr
_adjust_fdiv
__p__commode
__p__fmode
_encode_pointer
__set_app_type
?terminate@@YAXXZ
_unlock
__dllonexit
_onexit
_decode_pointer
_except_handler4_common
_invoke_watson
_controlfp_s
_crt_debugger_hook
InterlockedExchange
InterlockedCompareExchange
GetStartupInfoW
SetUnhandledExceptionFilter
QueryPerformanceCounter
GetTickCount
GetCurrentThreadId
GetCurrentProcessId
GetSystemTimeAsFileTime
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
IsDebuggerPresent
KERNEL32.dll
LoadLibraryA
LoadLibraryW
IsProcessorFeaturePresent
GetNativeSystemInfo
CompareFileTime
LocalFileTimeToFileTime
GetSystemTimes
GetSystemRegistryQuota
GetProcAddress
GetLastError
GlobalAlloc
GetProcessId
GetModuleHandleA
GetFileType
LoadIconW
AnimateWindow
GetClientRect
AdjustWindowRect
GetWindowTextLengthA
SetCursor
CreateCaret
UpdateWindow
ShowWindow
CreateWindowExA
USER32.dll
CreateDiscardableBitmap
SetWinMetaFileBits
CreateDIBitmap
CreateEllipticRgn
GetPolyFillMode
StretchBlt
EndPath
SetPolyFillMode
BitBlt
GDI32.dll
ReportEventA
ADVAPI32.dll
ShellExecuteW
DragAcceptFiles
DragQueryPoint
SHELL32.dll
GradientFill
TransparentBlt
MSIMG32.dll
COMCTL32.dll
WinHttpOpenRequest
WinHttpConnect
WINHTTP.dll
??_D?$basic_ifstream@DU?$char_traits@D@std@@@std@@QAEXXZ
??_D?$basic_stringstream@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEXXZ
??_F?$basic_stringstream@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QAEXXZ
??0?$basic_ifstream@DU?$char_traits@D@std@@@std@@QAE@PBDHH@Z
MSVCP90.dll
??2@YAPAXI@Z
_invalid_parameter_noinfo
printf
__FrameUnwindFilter
_encoded_null
?DoCallBackInDefaultDomain@<CrtImplementationDetails>@@YAXP6GJPAX@Z0@Z
?ThrowNestedModuleLoadException@<CrtImplementationDetails>@@YAXP$AAVException@System@@0@Z
?ThrowModuleLoadException@<CrtImplementationDetails>@@YAXP$AAVString@System@@@Z
?RegisterModuleUninitializer@<CrtImplementationDetails>@@YAXP$AAVEventHandler@System@@@Z
?DoDllLanguageSupportValidation@<CrtImplementationDetails>@@YAXXZ
?ThrowModuleLoadException@<CrtImplementationDetails>@@YAXP$AAVString@System@@P$AAVException@3@@Z
msvcm90.dll
_CorExeMain
mscoree.dll
Mecasal xoloyuwakiherar fojigubodal. Yahu jazub dek. Dorabiyu hovazenudebeger puk cisutemuvobu jovadarap. Jutido tod. Deko code. Muwukesax vididaneyunazu. Hece wuwov welehaho viyilu. Hefolig vipeyeret jodukefocuvuy ziniyitatixet nimepoceboduy. Nuwa tadidib(
~{zz~|~
yz|~|y
|zz{|~}
~}z~}{
z~|~}~
~y{}}~
||}|~||
||||}{
}{~y~}
~{z|~{~
|~||~~
}|~|{~
}}}}y}
~{~|z}
~}}}||
~{~~}||{
y}~~|y}
~~{z{|
~{z~|~}
{~~~y~
}~~~~|~y~
{{|z}|
}}~|}}y
|z~}{{
}}{}|}z
}~{|}}
~z|z~z
~z~}{y|~~
y~{~z{
~~|~~~}{
y}|yy|
||{{{~
}~{|}}
z|~~}{
|~~~~~
}~|{~~
|}~||y~
}|~~{}
~||}z{
|{z~{~
}|}|{}
~z{}}~{
{}~{}~
||{z}|
z~~z}~|
|}||~{
{|z~z}
|}zz}{|
z{{|{}
{|}z~|
}}}y|~
}~}||~
}z|y||
{{~z~}
y~|||z
}}{{{|}
}z|||{|
}|~}}}
|z~~|{||
~|{|}~
}~~}|~
{~z~{}z
~~~}}z
|{z~~|}
~}z|y~
~~z|{z
''''''''''''''''''''''''''''
'rrrrrrrrr
TGGGGGGGGG
''''''''''
''''''AA'''
'''''''
'''''''
GGGGGGGGGC
''''''''
''''''
'''''''
IIeecc33
IIIeecc33
EE$$ZI
IIIeec333
EE$$$ZZ
\EEE$$$ZZZ
Ieeec33
eeeeeeee
\\\\\\\\\\\\
******
***********
cccccnnnnnnnnn
*Q@z@@*s
@@z*|RR++
Q*cccn;;
*cc;cn;
cccccn
ccccccc
{*ncc*
cccccccncnncc*
ccc;c;;;n
L5LLLLLLLLLLLL
2222222
Lz5L5L2
z55555
FFFFFFFFFFzF
555555555555555555
22222222222222222
DDDDDDDDDDDD
2222222222222222222
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><assemblyIdentity version="1.0.0.0" name="MyApplication.app"></assemblyIdentity><dependency><dependentAssembly><assemblyIdentity type="win32" name="Microsoft.VC90.CRT" version="9.0.21022.8" processorArchitecture="x86" publicKeyToken="1fc8b3b9a1e18e3b"></assemblyIdentity></dependentAssembly></dependency><trustInfo xmlns="urn:schemas-microsoft-com:asm.v2"><security><requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3"><requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel></requestedPrivileges></security></trustInfo></assembly>
zifazobikulizacede.dll
denajitowapiyafonatayiwidefiyud
yocakimebidexuzidoteb didarohohojepasutisawejime
xicilajoda
nJK kagatihasucapumicatowiwevecujaji
The C++ module failed to load during vtable initialization.
The C++ module failed to load while attempting to initialize the default appdomain.
The C++ module failed to load during native initialization.
The C++ module failed to load during process initialization.
The C++ module failed to load during appdomain initialization.
The C++ module failed to load during registration for the unload events.
The C++ module failed to load.
MAREYUH
Zawixemad gal dirucer
Giculola daherop reri kuja
Ratidas
Yojovuha hepi
Cezamipabu boliyuyaro
Goxecek zihey luw xikohexug
Towe sobefu mupuw jekul jihegug
Gemutazo bajenoju vubul palabaf
Far cela nenika bapi
Xohe pinu dahif siruvo pugec
Fititajivo lakoleca dekosodic
Moyepa catirusuj xibecaxazu boxiwa
Losohe
Xawe xozukoke lofufah
Moj kupavole gori rici
Cixujibe
Numarit pajikive siv masexu
Wakajewo mefubuni matupuvuk pesov rob
Mudetan fohumarari becacipe
Yetariwiye
Jexisi zebuxe hasuna
Sir cucemobu gewaku
Fuyola dajimo yuyuyeh wafeliki
Juperiwu royixipixi suhucumucu
Fololamezo tare
Nabevudowe pihuniwufu
Kexiyaya cuy
Lox pay xivijokoya gozeveno dofihal
Yelinu
Zokacudak tecoga bowoh
Jitoj tiheronefu falizu
Kehu sibo
VS_VERSION_INFO
StringFileInfo
080904b0
ProductVersion
1.3.0.1
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetectNet.01
Lionic Trojan.Win32.Generic.4!c
tehtris Generic.Malware
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
ALYac Clean
Cylance Unsafe
VIPRE Clean
Sangfor Suspicious.Win32.Save.a
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
Cybereason malicious.915d9b
Baidu Clean
VirIT Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
SUPERAntiSpyware Trojan.Agent/Gen-Kryptik
MicroWorld-eScan Clean
Avast Win32:CrypterX-gen [Trj]
Tencent Clean
Ad-Aware Clean
Sophos ML/PE-A
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Dropper.dh
Trapmine malicious.high.ml.score
FireEye Generic.mg.04eda26f8ffd07ed
Emsisoft Clean
SentinelOne Static AI - Suspicious PE
Jiangmin Clean
Webroot Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft malware.kb.c.(kcloud)
Microsoft Trojan:Win32/CryptInject.FB!MTB
Gridinsoft Trojan.Win32.Downloader.sa
Arcabit Clean
ViRobot Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
GData Win32.Packed.Kryptik.2KWNMG
Google Clean
AhnLab-V3 Clean
Acronis Clean
McAfee Artemis!04EDA26F8FFD
TACHYON Clean
VBA32 Clean
Malwarebytes MachineLearning/Anomalous.100%
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.CryptInject!8.F425 (CLOUD)
Yandex Clean
Ikarus Clean
MaxSecure Trojan.Malware.300983.susgen
Fortinet PossibleThreat
BitDefenderTheta Gen:NN.ZemsilF.36106.ny0@a0Ph@EnO
AVG Win32:CrypterX-gen [Trj]
Panda Clean
No IRMA results available.