Static | ZeroBOX

PE Compile Time

2022-07-17 20:02:54

PE Imphash

c5cca9d2a82fe533fcc4c2209568ef92

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0000af90 0x0000b000 6.01507451623
.data 0x0000c000 0x000906ac 0x00013200 7.84789021639
.rsrc 0x0009d000 0x0000fe1e 0x00010000 3.71657158092

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x0009d7e8 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x0009d7e8 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000abc50 0x00000468 LANG_SAAMI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x000ac524 0x000003a0 LANG_SAAMI SUBLANG_DEFAULT data
RT_STRING 0x000ac524 0x000003a0 LANG_SAAMI SUBLANG_DEFAULT data
RT_ACCELERATOR 0x000ac954 0x000000a8 LANG_SAAMI SUBLANG_DEFAULT data
RT_ACCELERATOR 0x000ac954 0x000000a8 LANG_SAAMI SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x000aca10 0x00000014 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x000aca10 0x00000014 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x000acac0 0x00000068 LANG_SAAMI SUBLANG_DEFAULT data
RT_GROUP_ICON 0x000acac0 0x00000068 LANG_SAAMI SUBLANG_DEFAULT data
RT_GROUP_ICON 0x000acac0 0x00000068 LANG_SAAMI SUBLANG_DEFAULT data
RT_VERSION 0x000acb28 0x00000258 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x000acd80 0x00000092 LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators
None 0x000ace14 0x0000000a LANG_SAAMI SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x401000 PulseEvent
0x401004 lstrcmpA
0x401008 FindFirstFileW
0x40100c CopyFileExW
0x401010 _llseek
0x401014 EnumCalendarInfoW
0x40101c GlobalLock
0x401024 SleepEx
0x401028 GetModuleHandleW
0x401030 EnumTimeFormatsW
0x401034 WriteFileGather
0x401038 EnumResourceTypesA
0x40103c GlobalAlloc
0x401040 GetSystemDirectoryW
0x401044 AddRefActCtx
0x401048 CopyFileW
0x401050 GetConsoleAliasW
0x401054 GetFileAttributesW
0x40105c RaiseException
0x401060 GetShortPathNameA
0x401064 GetCPInfoExW
0x401068 SetLastError
0x40106c GetProcAddress
0x401074 LoadLibraryA
0x401078 OpenWaitableTimerW
0x40107c SetCalendarInfoW
0x401084 GetExitCodeThread
0x401088 AddAtomW
0x40108c CreateEventW
0x401090 FindNextFileW
0x401094 ReadConsoleInputW
0x401098 LocalSize
0x40109c EnumCalendarInfoExA
0x4010a0 GetLastError
0x4010a4 MoveFileA
0x4010a8 DeleteFileA
0x4010ac HeapReAlloc
0x4010b0 GetCommandLineA
0x4010b4 HeapSetInformation
0x4010b8 GetStartupInfoW
0x4010bc HeapAlloc
0x4010c4 DecodePointer
0x4010d0 IsDebuggerPresent
0x4010d4 EncodePointer
0x4010d8 TerminateProcess
0x4010dc GetCurrentProcess
0x4010e0 HeapCreate
0x4010e4 HeapFree
0x4010e8 ExitProcess
0x4010ec WriteFile
0x4010f0 GetStdHandle
0x4010f4 GetModuleFileNameW
0x4010f8 GetModuleFileNameA
0x401100 WideCharToMultiByte
0x401108 SetHandleCount
0x401110 GetFileType
0x401118 TlsAlloc
0x40111c TlsGetValue
0x401120 TlsSetValue
0x401124 TlsFree
0x40112c GetCurrentThreadId
0x401138 GetTickCount
0x40113c GetCurrentProcessId
0x401144 Sleep
0x401148 GetCPInfo
0x40114c GetACP
0x401150 GetOEMCP
0x401154 IsValidCodePage
0x401158 RtlUnwind
0x40115c LoadLibraryW
0x401160 GetConsoleCP
0x401164 GetConsoleMode
0x401168 FlushFileBuffers
0x40116c LCMapStringW
0x401170 MultiByteToWideChar
0x401174 GetStringTypeW
0x401178 SetFilePointer
0x401180 HeapSize
0x401184 CloseHandle
0x401188 WriteConsoleW
0x40118c SetStdHandle
0x401190 CreateFileW
Library USER32.dll:
0x401198 LoadMenuW

!This program cannot be run in DOS mode.
`.data
(null)
`h````
xpxxxx
CorExitProcess
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
Fer wadamopenobumi bufexixopi zoz winagemecadis
Hanoc yocecaj dij
%s %d %f
HHtXHHt
?If90t
uTVWhwR@
^SSSSS
j@j ^V
URPQQh
t"SS9] u
;t$,v-
UQPXY]Y[
PPPPPPPP
PPPPPPPP
D$xfkp
PulseEvent
lstrcmpA
FindFirstFileW
CopyFileExW
_llseek
EnumCalendarInfoW
SetDefaultCommConfigW
GlobalLock
InterlockedCompareExchange
SleepEx
GetModuleHandleW
GetWindowsDirectoryA
EnumTimeFormatsW
WriteFileGather
EnumResourceTypesA
GlobalAlloc
GetSystemDirectoryW
AddRefActCtx
CopyFileW
LeaveCriticalSection
GetConsoleAliasW
GetFileAttributesW
WritePrivateProfileSectionW
RaiseException
GetShortPathNameA
GetCPInfoExW
SetLastError
GetProcAddress
GetFirmwareEnvironmentVariableW
LoadLibraryA
OpenWaitableTimerW
SetCalendarInfoW
FindFirstVolumeMountPointW
GetExitCodeThread
AddAtomW
CreateEventW
FindNextFileW
ReadConsoleInputW
LocalSize
EnumCalendarInfoExA
KERNEL32.dll
LoadMenuW
USER32.dll
GetLastError
MoveFileA
DeleteFileA
HeapReAlloc
GetCommandLineA
HeapSetInformation
GetStartupInfoW
HeapAlloc
EnterCriticalSection
DecodePointer
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
EncodePointer
TerminateProcess
GetCurrentProcess
HeapCreate
HeapFree
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameW
GetModuleFileNameA
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
SetHandleCount
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
InterlockedDecrement
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
RtlUnwind
LoadLibraryW
GetConsoleCP
GetConsoleMode
FlushFileBuffers
LCMapStringW
MultiByteToWideChar
GetStringTypeW
SetFilePointer
IsProcessorFeaturePresent
HeapSize
CloseHandle
WriteConsoleW
SetStdHandle
CreateFileW
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
=IPlK[
VSyG1$
_N*BwR<g
'0$K^3~
YRm`XQ
"Lcx{j
;>E)AQ1
?@_28[)
2p$T'[Ek
gz;l6G
04r[=
VFeGf@
PoOBp<
UTacBU
24`G5"
\aLN|M
B, <Gp7W
/E$H*TT
EeM_g.
x*K<3
>Mi6DR
))hAh*
nSDQ>*iv
|~}c1&
"|H|p=)
Cs-@\
T!C2E'
"hy{|r
kNSS#iC
Hc,%h'
&}8lY3
_N`Tl%`
z]G*^@
}e\'@]w
]]%Z/K
:"f3@YSpx
l.Vt|o
yS7V/1$
N0]ZT1
YcLX::
wnuuNd
e5:@9*
{A2h@#|f)B%
Qtv kw
!sNg]x
:Op3jz
!#Or5G
*p)n7D=
sK^T0!
iHu+31
ya*TlB
N:++7Nh
\hR;!v
DE$7Th
\<5-O?
[yk+3mf
{g=o#m;
5R-&#5
>26{ U
U^-8ir
[\:gRx
WQIE2o
f< 9Cz
j}Y2^/<
kT.mO<kO<
?@5Q:w
q1))o>
`o6p/43&EC
m`&h4"oea4
jl5$jv
PY/sW`
;F"o|+b
jSD.Id&c
{,tJZV
DHQ\_~!v?
zZpZa^<
M-I! G
Y678xb
sKuBW1
C0:)#w
ru*,* xd
D,t\6B
=9 ~#l
vk@r+$u
4%']y1
3H43CF
oP}6h<A~>"
8pJLR-
(emhK3"
iPN;o
h*-")
x\a>7Il
h$>f_RL
G:8^\%
,E>`_?e
Z\~oYM
JCs~>\
R!c/c"Gt
xODd`2*
-_'JUN
TN3zti
sVr(T|
]}2qE
.R?OB
jg&Uh!-*
*:2'K
L%Gd@d
q(Qw9r
Sl^JEJ
c]|p2&
8\KzEDs7k
ngES9XH
AlOX,
gbpA/v
9j-E+g
C(;Ur)n
AVL:B0
/< 8-c
)]Dz]@
'g:2QA
j*%Y35p
i51Xl
*A<W+0
yh(`jE
yyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyy
yyyyyyyyyy
....Byyyyyyyyyy
..Byyyyyyyyyy
______________
Byyyyyyyyyy
}_____________
yyyyyyyyyy
______________
yyyyyyyyyy
}_____________
yyyyyyyyyy
______________
yyyyyyyyyy
______________
yyyyyyyyyy
}}___________
yyyyyyyyyy
}}}_______
yyyyyyyyyy
yyyyyyyyyy
yyyyyyyyyy
yyyyyyyyyy
yyyyyyyyyy
yyyyyyyyyy
yyyyyyyyyy
yyyyyyyyyy
yyyyyyyyyy
~~~~~~~~~~~~~~~~~~~~
yyyyyyyyyy
~~~~~~~~~~~~~~~~~~~~
yyyyyyyyyy
yyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyy
_~|~L~
g}~}[{
mmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmmmmmmmmm
Jmmmmmmmmmmmmmmmmmmmmmm9
mmmmmmmmmmmmmmmmmmmmm
Emmmmmmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmmmmmmm
Emmmmmmmmmmmmmmmmmmmm
immmmmmmmmmmmmmmmmm
Jmmmmmmmmmmmmmmmmmmm
9mmmmmmmmmmmmmmmmm
Jmmmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmmmE|XXt
Emmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmJ
mmmmmmmmmmmmmmmm
mmmmmmmmmmmmmm
mmmmmmmmmmmmmm
Smmmmmmmmmmmmm
Jmmmmmmmmmmmm
mmmmmmmmmmmm
bX<3%2
Emmmmmmmmmm
mmmmmmmmmmm
Simmmmmm
,,,,,"C%O
Emmmmmmmmmmm
,,,,,,
mmmmmmmmmmJ
,,,,,,,,
JmmmmmmmmmE
22222%
,,,,,,,,,
Emmmmmmmmm9
<",,,,,,,,,,,,,,!XX
mmmmmmmmmi
"jj;;6
,,,,,,,,,,,,,`aX
mmmmmmmmmm
"j;;;;
,,,,,,,,
mmmmmmmmmmmmi
jj;;;6
,,,,"H2O
EmmmmmmmmmmmmmmmJ
JmmmmmmmmmmmmmmmmmmmE
mmmmmmmmmmmmmmmmmmmmmmmmi9
Emmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
Smmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
cmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
9mmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
immmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
mmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
Emmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
Jmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmmm
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>
k>>>>>>>>>>>>>>J7s>>>>>>>>>>>>>
A>>>>>>>>>>>>>
,>>>>>>>>>>>
>>>>>>>>>>>>
>>>>>>>>>>s
>>>>>>>>>>>
Ns>>>>>>>>>
>>>>>>>>>v/
>>>>>>>>>sq
kP>>>>>>v
>>>>>>>N
>>>>>>>
ik>>>>>>>s
>>>>>>
%>>>>>>>>s
>>>>>>>>>>
>>>>>>>>>>>>>>>
n80LL8n
sd>>>>>>>>>>>>>>>>>>>>d,I'tt
ds>>>>>>>>>>>>>>>>>>>>>>>,
>>>>>>>>>>>>>>>>>>>>>>>>,
>>>>>>>>>>>>>>>>>>>>>>>>>,
>>>>>>>>>>>>>>>>>>>>>>>>>>>,`
>>>>>>>>>>>>>>>>>>>>>>>>>>>>NA
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
qqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqq
qqqqqqqqqq
>qqqqqqqqqqq
qqqqqqqqqq
}Cqqqqqqqqqq
:qqqqqqqqq
:qqqqqqqqqj#:qqqqqqqq
(qqqqqqq=
|Oqqqqqq
=qqqqqq
GCqqqq
:qqqqqq:
C0fl]]]k
qqqqqq:
qqqqqC
H]]]]]w
:qqqqqqq:
N:qqqqqqqqqq
qqqqqqqqqqqqqqq
qqqqqqqqqqqqqqqq
.qqqqqqqqqqqqqqqqqq
=qqqqqqqqqqqqqqqqqqq
|eqqqqqqqqqqqqqqqqqqqq
8qqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqq
yyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyy
yyyyyy
yyyyyyy
*yyyyyy
yyyyd
yyyy=oG
yyyyyyyy
yyyyyyyyyy
yyyyyyyyyyy
=yyyyyyyyyyyyy
yyyyyyyyyyyyyyyyyyyyyy
dEEdU
UdEEd
GEdU
]OEG
E
E
UOU
nnnnnnnnnnn
nuuuuuu
uuuuuuuu
HHHHHHHHHHHHHHHHHHHHHHHHHHH
vvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvavvvvvvvvvvv"vvvvvvvvvvv4W|vvvvvvv
vvvvvvvvvvv
__g4vvvN+
vvvvvvvvvvv%
XXX+vvvvvvvvvvvvgF_FX
_4vvvvvvvvvvvv.
vvvvvvvvvvvv+
vvvvvvvvvvvvv
%vvvvvvvvvvv
/vvvvvvvvv
/vvvvvvv
/vvvvv
$$$$$$
vvvvvvv/4-
Evvvvvvvvvvvvvvv
vvvvvvvvvvvvvvvvvv
vvvvvvvvvvvvvvvvvvvv
vvvvvvvvvvvvvvvvvvvv
vvvvvvvvvvvvvvvvvvvvvvM
vvvvvvvvvvvvvvvvvvvvvvavvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvv
[[[[[[[[[[[[[[[[[[[
tO[[[[
[[[[[[[[
[[[[[[[[t,,
,,,F[[[[[[[[
[[[[[[[[
[[[[[[[
Ye[[[[[[
[[[[[[[[[[[N
[[[[[[[[[[[[
[[[[[[[[[[[[[[
[[[[[[[[[[[[[[
[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
</assembly>
(null)
mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
@Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
KERNEL32.DLL
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
WUSER32.DLL
((((( H
h(((( H
H
CONOUT$
Bedowe cukon nov
kayowezivetad
fukowoxisiravusehuhedasituwucovefetenaxogukulirevok
Tenu joyabak
Bipovey duz
jjjjjj
/ P6pL
,/KPip
/-P?pR
3Puhi busetubog konen zuvafiyenonon dacih pabajucuzeTHuyucenib bejufive wusoga gode nugoriye zepisoyog gifepuxari dadilecedit lilokufomel
MemojiwiFWederemanuwuv tomo yec pece huc gitepuyapupa jomoluremava pexej behuxi
LitiracuaDopavacirovuca sagar cutofixafek nemirolahevomip lojuwad ceralovut wibezasi neyinava lovemonegeba8Mekepovitek ciyesufiyinitit voze conicopoxamo manamizole&Mezahesu xaremolafivabe hegunegaba maj?Gasusogeca raroy jacaj juyi basasip wufowososacine vosu jigawonJPixibayayukunip nefoh nikevijirusa dobamumiwegebat wodugimolih wifetarifuv
8Fosojemasixun tulosejewexuteb tugikotivuti yozet vemucikuGikuni muruyijapayo bovogarofezayi navuremepa cupofafizoyi vomijedogud yohi nofusaraluze zejaxixayewo zunuhorejifimub
BadipOCude hozijabucorixa dimicuw punavibekurawe hunuyajojeyup juwotuv gorofukusajibabRanenukes vebikani jejapu wesedabohaxer rezenulivawase dimujepuh lec kusejisozeg pili pamurayuzomoXSazikit mehu yiwihic fux nabicu cexipurixefuni futolasakocalex jek diroka somuripunaxaju
VS_VERSION_INFO
StringFileInfo
046805E6
CompanyName
Furious
FileDescriptions
WorldWrappering
FilesVersion
4.1.61.53
InternalName
FlavorCourse.exe
LegalTrademarks1
Glab industries
ProductName
SpecialistTuning
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetectNet.01
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Jaik.129274
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!097D8371EEA9
Cylance unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
BitDefender Gen:Variant.Jaik.129274
K7GW Clean
K7AntiVirus Clean
Baidu Clean
VirIT Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win32/Kryptik.HTAU
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan-Ransom.Win32.Stop.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.E392 (CLASSIC)
TACHYON Clean
Emsisoft Gen:Variant.Jaik.129274 (B)
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.ch
Trapmine malicious.high.ml.score
FireEye Generic.mg.097d8371eea941a8
Sophos ML/PE-A
Ikarus Trojan.Win32.Crypt
GData Gen:Variant.Jaik.129274
Jiangmin Clean
Webroot Clean
Avira HEUR/AGEN.1224190
Antiy-AVL Trojan[Backdoor]/Win32.Mokes
Gridinsoft Clean
Xcitium Clean
Arcabit Trojan.Jaik.D1F8FA
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/SmokeLoader.CK!MTB
Google Detected
AhnLab-V3 Clean
Acronis Clean
BitDefenderTheta Clean
ALYac Clean
MAX malware (ai score=80)
VBA32 BScope.Backdoor.Tofsee
Malwarebytes Clean
Panda Trj/Genetic.gen
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Win32.Trojan-Ransom.Stop.Tsmw
Yandex Clean
SentinelOne Static AI - Suspicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.GHOS!tr
AVG Win32:CrypterX-gen [Trj]
Avast Win32:CrypterX-gen [Trj]
No IRMA results available.