Static | ZeroBOX

PE Compile Time

2022-02-21 21:25:34

PDB Path

C:\cavodeyi\17\bimorupij\daca_nokujib2 fusujoxu.pdb

PE Imphash

9c97db954c6eab8dfde4a4fd207d98cc

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00061976 0x00061a00 7.92509141164
.data 0x00063000 0x026af548 0x00002600 1.16965533211
.rsrc 0x02713000 0x00019ff8 0x0001a000 4.86368828934
.reloc 0x0272d000 0x00008178 0x00008200 0.914854209275

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_ICON 0x0272b7b8 0x00000468 LANG_SPANISH SUBLANG_SPANISH_MEXICAN GLS_BINARY_LSB_FIRST
RT_DIALOG 0x0272bee8 0x00000086 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0272cc70 0x00000382 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0272cc70 0x00000382 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0272cc70 0x00000382 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0272cc70 0x00000382 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ACCELERATOR 0x0272bce0 0x00000018 LANG_SPANISH SUBLANG_SPANISH_MEXICAN data
RT_ACCELERATOR 0x0272bce0 0x00000018 LANG_SPANISH SUBLANG_SPANISH_MEXICAN data
RT_GROUP_ICON 0x0272bc20 0x00000076 LANG_SPANISH SUBLANG_SPANISH_MEXICAN data
RT_GROUP_ICON 0x0272bc20 0x00000076 LANG_SPANISH SUBLANG_SPANISH_MEXICAN data
RT_GROUP_ICON 0x0272bc20 0x00000076 LANG_SPANISH SUBLANG_SPANISH_MEXICAN data
RT_GROUP_ICON 0x0272bc20 0x00000076 LANG_SPANISH SUBLANG_SPANISH_MEXICAN data
RT_VERSION 0x0272bd08 0x000001e0 LANG_NEUTRAL SUBLANG_NEUTRAL data
None 0x0272bcf8 0x0000000a LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401018 CreateHardLinkA
0x40101c GetConsoleAliasesA
0x401020 LoadLibraryW
0x401024 _hread
0x401028 IsBadCodePtr
0x40102c CreateEventA
0x401030 FormatMessageW
0x401034 GetFileAttributesA
0x401038 GetExitCodeProcess
0x40103c SetConsoleMode
0x401040 WriteConsoleW
0x40104c SetLastError
0x401050 GetProcAddress
0x401054 GlobalAddAtomA
0x40105c LocalAlloc
0x401060 FoldStringA
0x401068 VirtualProtect
0x401074 GlobalReAlloc
0x40107c LCMapStringW
0x401080 CloseHandle
0x401084 CreateFileA
0x401088 HeapSize
0x40108c lstrcpynA
0x401090 CallNamedPipeA
0x401094 VirtualAlloc
0x40109c GetStartupInfoW
0x4010a0 TerminateProcess
0x4010a4 GetCurrentProcess
0x4010b0 IsDebuggerPresent
0x4010b4 HeapAlloc
0x4010b8 GetLastError
0x4010bc HeapFree
0x4010c8 SetHandleCount
0x4010cc GetStdHandle
0x4010d0 GetFileType
0x4010d4 GetStartupInfoA
0x4010dc GetModuleHandleW
0x4010e0 Sleep
0x4010e4 ExitProcess
0x4010e8 WriteFile
0x4010ec GetModuleFileNameA
0x4010f0 GetModuleFileNameW
0x4010f8 GetCommandLineW
0x4010fc TlsGetValue
0x401100 TlsAlloc
0x401104 TlsSetValue
0x401108 TlsFree
0x401110 GetCurrentThreadId
0x401118 HeapCreate
0x40111c VirtualFree
0x401124 GetTickCount
0x401128 GetCurrentProcessId
0x401130 SetFilePointer
0x401134 WideCharToMultiByte
0x401138 GetConsoleCP
0x40113c GetConsoleMode
0x401140 GetCPInfo
0x401144 GetACP
0x401148 GetOEMCP
0x40114c IsValidCodePage
0x401150 HeapReAlloc
0x401158 RtlUnwind
0x40115c MultiByteToWideChar
0x401160 LoadLibraryA
0x401164 SetStdHandle
0x401168 WriteConsoleA
0x40116c GetConsoleOutputCP
0x401170 LCMapStringA
0x401174 GetStringTypeA
0x401178 GetStringTypeW
0x40117c GetLocaleInfoA
0x401180 FlushFileBuffers
0x401184 RaiseException
Library USER32.dll:
0x40118c ClientToScreen
0x401190 LoadMenuA
0x401194 InvalidateRgn
0x401198 GetMenuInfo
0x40119c MessageBoxIndirectW
0x4011a4 SetScrollInfo
Library GDI32.dll:
0x401008 GetGlyphIndicesW
Library ADVAPI32.dll:
0x401000 RegOpenKeyA

!This program cannot be run in DOS mode.
`.data
@.reloc
bad allocation
Unknown exception
(null)
`h````
xpxxxx
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
`h`hhh
xppwpp
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
CONOUT$
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
bad allocation
zohenisoxupocatihayuzi
Nofimodupucisuc nubexewe latobacajicupi xasumevowaj wijohipi
Kirubeci xaxipehazopizos perugidoburo
defawavugofocoretuyuwujofuga yoyahipaxigugezopifipagecupoy
bad exception
C:\cavodeyi\17\bimorupij\daca_nokujib2 fusujoxu.pdb
D$ 1D$
D$ 1D$
D$8)D$
MpQj@RP
D$@1}:
l$dCkl.
HHtXHHt
>If90t
0SSSSS
r= 4F
j@j ^V
t h8-@
>=Yt1j
QQSVWh
Y;=h;F
0A@@Ju
Fh=`5F
^SSSSS
j"^SSSSS
URPQQht
0SSSSS
0SSSSS
0WWWWW
AAFFf;
t"SS9]
PPPPPPPP
PPPPPPPP
;t$,v-
UQPXY]Y[
t+WWVPV
oif{yEY
%cc3"_
*ailU S
7I:ctv
`:90A
K)bz_M
i'6-Xd>P
TV`uL8
Y[^Ygo
=L 'G(P
_h(<yl0%
L/fRN.1e
VNGWpa
+4]2jh
^SlDj$j
K=Uh+9k
C{-Vt4
R'j/It
+=5Lx\
(*MBXG
h~)oE<
_tjE0!
>=|R6$(o
\6$~\C
x%g-qV
ej2qNT
2o1*-P5
l8zxw9Y\
.`Pz?!
R*RM-{
eV%T-_
b8g.[q
;pEauX
BE)I%7
O{vv]x
3[k5_.
M-{[]p
j{wZBw
jZ<o~\)M
khI@$$
RNL%/.
;-/fp-
gJ<'22
^Hy-qE
2Pk$zf
f>x.)H
_;KD\a
yd"zwEw
VM\ews
eOCgK;
\S@s$;
W!UiZVd7
J9#N65
G5tTIJ[
ZCm~;}*
o~&^vc
{zkG+M$
o7~)vG
'}-HES
$4(nCv{izj
j70g$pT
F<!uLTd?
J5u9\(
Cl?ke_
doVR|E
L&!>G(
2wiI,l^
$r:ZgXH
u08zr
dTas^{a
RkD;P1
iH#j^5
ZB,-d@
?j^1B/o
Fwx!bN$C
>ZG}H=
];VS<;
;C#9[rv
<4Tt{l
84h{m"
P?u&B3
z9N\Iv
(tF=+|N
(;.J0#9
zxkR'
fo=1SJ
Y\m\p~ZH
|Aq8f3;
6bdn*}V
Ixf+K@6
)[lx,+
Q0$=U3
wm=m'l
(M[Nmka
8,&% +
S$k&E0
0UVb*e&
"t}5T_\AI
6ckE7lY
T&K,J{*
'%ySrr
Yi\}>3
<;IufG=
LjFsPu
=0MC7~
KMxb'L
WlYP|2
j<(7Z5
#lz;E*dN
[yF=))u
(MuPFE
u[0R^g
%U1@nk8
D(rPBs
GN#bnw
}Ie%{
""SWjq
|<Qrugz
kv!DuW8^
Cgm3u]'
iKxY4M
HQ,_+V
7{Ouk.daa
(1Ojr=O
U1;g41
yr5^motE/^
j\DNFmM^
ch` A]a*
!.?:|!V
?\:e81
cm]JV l
E9%F>$
NL13(+
F7P@[UJ
xo}Le*
558iaY
1jPq}`tF*
nNFe2{}
}lW:D}
TZHku{
.$ctbt
E,[Cny
.yN{s!
]_h\L;
`pQEC<-n5
vG~ZuM
)UyrL/>6
h76]6*
I[~hCXs,
6OYx0d
.LK|wlU
IU*zw~
*/<Se\
"`m<m@
6[<$|
]N6^26
`+Z:LSr|5q
`?>RMe[k
]dP:T9s
'b-|i'
yRkn`qz
NjDmU"
BR25K}
SMCd]S
~OMUB`
kmy5Sa:\
qxjsmZkk
.?++qSG
`\`z`O
gI@E&/
n5*YPaL
Q0kI%%D
+SC"|%
T0i-+B
t3^Q)d
^dS=gP
Pg|Roc
} hk1
DX2b/+
Npo.^
f-Pus
O]uXwT7
(/rqp7s
a$?}%zc
HyF\@<d+
Zr*wx{
t`q.-x
E>Xkz+
IFA`a!
Shd+pWq
_zn>RC"l
}%Cl- h
V1Y8k2
=xH,RxUz
wJEvY0
jKNpXp
FU)$MA
OOUk.^
Et}d2ryE
ql,.mAa
=J{os>
v/tP00
!#+Hmr
K#iqG1
"\d??h
"rg,&P
*^[*R<
2N9|9/!e
etmT6%ta
L|Y@]F|!
?.M@5A8$
PIgq`(
PM\,[\
rr,[s]v
_Q-ue+
V<c:Yg
A4C`fP[
2\|?8H
%v+TzB
f-RRTpJ
g!L(IT:
o/qRLU
/LS.Hn
g_\^0
f^5>S9
ej$l9ky
.dw\e<
fE*&\.
36YGGh
n>pIg?t
hH~P?7
KShMTU
z?T&j)\
ph3XT6
OPM=5{
{crSQ
NK/o7[S
OCYguL
t\*Sci"
bvO[+\|
}FQ%c\vw
K(D*GO
s4\45N"
,)KUM.&
t+;,lr
9a&~X1
l~wH"u
Ii"lgd#
WO[2*c
pkbFzI
@N([23
]Tm\w
TBrU$U
K:Alde
PwKVa2j
^Ki;)G[
2]t/__
M@vw~W1
~&<bEk
*mB<\Fd__
uBC"R+
7|ZptTh
jh\:hM
-uZ8~E
\%G7;
vHuvvAU
hrY}yO
iUN+9
+/,^hAtz
+:`5Y^
Ot6B@f
6GX+nR
(2Ba/=4
iQN\fSz
~&s2Mf/|
ts||q!
|gvKdm
=UAieG
6f{K!.g
=LRl%4
3950pP
`\y%/Vj
OI&*n]]
.Z3-TV
[Lc*,.z5
GMumtmW
PeA aI
/u0+^3
Fk%G+0
FIS;94
cS!7HeL
C[b'6[
r$mN
)/&zj-RU3
O qh&u
#q%EI)
TT\Gzz
o;_plK
_j=(R>'ws
?Jm'WU"2
F}h4_'
`1ey*P
iooy7u@
6^B"'!B
^$Mrps6
)]Y|Vs
DJ$3g[P{3
%?u-I\
t_;&>J
iv7`!8r
k?O3Ey
+xwL>#
[BEA$8
Getl/\YO
*VNcS!X
aIa6qi<S+
HWMwrkH
q&sp!l
*G@dk?
[7YkoV
]h=wJw
U3E2cB
Fk^1=-
Xav:4k
dbC_B{b-
r%'U69
97{2rEk<
FA@i9z
a'X!\Z
L7u\'i
p@/<)T$
2M34rj
&<V|.G
/#yHL]
"|:=aF
kpaTcf
I'4+&k
UTr-(^
]r}~6>}
l"gKY>
2f1y3j
a4/Y}j
lp3 zk
q\^T5&
p=:aC<hfB
;]/3*?
e;A;qqr
xa'MV(
:0Ey"<
erZ*kk
17&XMG
DN`xEW
qmoz^T
"~x\yY
o>~i4k
X3BBbm
-5Dc8]
ah%gx`
xn^-d=NB.9a
yvyAiC
fE&`!v
+YyQM-
aSN54wG
|BDarC
f$Z1^"
xuE8+;
#;E6do%a#t
`!+h]2
I}gt?n
LeXvEs
i$PFX\3
]8FbV)
8x=d0g
@N&5*_
Xy]:9Dv
P<d+mv;
d!g2[$XpP
~v!rZ
c";m\i
}+nR<k
mR%8w:(
D mz)Z
Z1o'@Y*;
k5UkS|
e(@o,R
E'U}]e
rtNbN>{z
biQ'/
,[@_iJ
%A;/Tw
q4I#x'd
'+S-xX
cs^(<
neJ<J
Vi%c3)
']jc';X
ak^#m1
g'w37U
<k[h~b_d[
z:!\.m
:Dn-[I
y2gzv}
B=%=+t
EcjJm
b!4[vV5|t
_(o81p*
*C?JBM
`]}O>
d !r<Y
.5.)Y^R
B(vVw2fF
pT}NtM
?^}j~~
xx%MY
g543CF
tM}^[q
La{vl%
S{HL!'
U=xR16
l#FNqy
hL}sJ[
4ge~@L
7N8,ve
D[`|I@
8O]%No
Z_C9en
vk&J3_
ytoqdd
m8@?;Q
+MD)G7
8Pxa5/
)R]D;6X
Md4N;F]
KI1#<.f>Itu
xA[CT>
7Cb5si
~j?0m[1
qMs~3U]D
:<ukl`Q
el(rv
"3<JJ
hi1kja
e5zLjZ
)k07O|
kGZ{2s0
l11Cok8iq
ct4;gb
_Az:pM66${
0??riXn
mHPdRU
IB{euv
WtQ8plf6qq
Ff7uwYw
` S(\"
mgIxAJ
tN\=01
,h#|#Y
5xOM$L!
`ZyV1p
U~HX<9
H.`Fs@H
C(g2rL
r ^I1/
kM}i$Co
}Ug Nk@
Uw&}AA
3UusAw
Ky7&cz
;+J{{0
lg~q>*T8t
<or`Ca
hkVu Y
!&<w=1
xg,B96
NvX]$7
o`G,>^
&%,3Rcd
e7I~d_
Q9C(;}
9MI0t(
E/"({ `
+VM2IGn
:zq#/4
%mmj=.
l&eVC6I
A]P#MC
~$<5rF
T`<-/"4
3T}p=m!a
e'P/6{~
SWyKk]x
{TNf_C
ApEbI]
+DG?w5{
VMR7ro6onzY
>n_t<7
bWWmDT0W
c*;}lJ
.^S?V
mq"G~9
V()ZaL<O
R4AO<['
.Ob\Q
1h'fSH
vZ7#Hw-
HM&Apn^
4Y6!NA
h,*/ze
FU>%`~
CF)}8v
WKfQ*1
>?`U7)
6TY7=J
.}<[0L
S- q&?x
W@;k[tn
h4pL,s.+
N!/wl4
y(Q}.
"0P@ub4z"1
rfF%>.
QZ=t`
%;-U2
7J'LYb
xMD*H~u
s.N[:{
it+.${
xYN[x"
g-%d%f`
|}$d?O
slZvPT}
AXl}!5
/TfP"b
{5t'K%
)\'\|%
^nG4X6
nekBB
TC4X{J
_70*oomhw
Cl`NJ/
%dIWgc
&sAz(O
4JDhUW
\~o1,U/q
#i3sQC
ZF^O-*
xLQqLQS
\iQN.?
I>RFL`O
"#GL+2M
M18hX{
ba(=0(
gcNt9L
fW~w"p
7#sP}e
Ze"D*;
Y=A3s6
QN`"e7
br:BVY
#_3ao'
M:WT&D
Q)ST#Tz
bqIpZ\
QQSVWd
HtHu4j
s[S;7|G;w
YYhH-@
tR99u2
GetVolumeNameForVolumeMountPointA
lstrcpynA
CallNamedPipeA
GlobalAddAtomA
GetLogicalDriveStringsW
SetDefaultCommConfigW
CreateHardLinkA
GetConsoleAliasesA
LoadLibraryW
_hread
IsBadCodePtr
CreateEventA
FormatMessageW
GetFileAttributesA
GetExitCodeProcess
SetConsoleMode
WriteConsoleW
WritePrivateProfileSectionW
ChangeTimerQueueTimer
SetLastError
GetProcAddress
VirtualAlloc
EnumSystemCodePagesW
LocalAlloc
FoldStringA
FreeEnvironmentStringsW
VirtualProtect
GetWindowsDirectoryW
GetFileInformationByHandle
GlobalReAlloc
InterlockedPushEntrySList
LCMapStringW
KERNEL32.dll
SetScrollInfo
CountClipboardFormats
MessageBoxIndirectW
GetMenuInfo
InvalidateRgn
LoadMenuA
ClientToScreen
USER32.dll
GetGlyphIndicesW
GDI32.dll
RegOpenKeyA
ADVAPI32.dll
GetStartupInfoW
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
HeapAlloc
GetLastError
HeapFree
EnterCriticalSection
LeaveCriticalSection
SetHandleCount
GetStdHandle
GetFileType
GetStartupInfoA
DeleteCriticalSection
GetModuleHandleW
ExitProcess
WriteFile
GetModuleFileNameA
GetModuleFileNameW
GetEnvironmentStringsW
GetCommandLineW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
InterlockedDecrement
HeapCreate
VirtualFree
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
SetFilePointer
WideCharToMultiByte
GetConsoleCP
GetConsoleMode
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
HeapReAlloc
InitializeCriticalSectionAndSpinCount
RtlUnwind
MultiByteToWideChar
LoadLibraryA
SetStdHandle
WriteConsoleA
GetConsoleOutputCP
LCMapStringA
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
FlushFileBuffers
HeapSize
CreateFileA
CloseHandle
RaiseException
.?AVexception@std@@
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
_X8888
<L^,,[
vyvOOO
.!.....
t+!hh?
ZZ{99t?/f
%%%%%%%%%
%%%%%%%%%
%%%%%%%%
%%%%%%%%
%%%%%%%%
%%%%%%%%
%%%%%%%%
%%%%%%%%
L.%%%%%%%%
\W.%%%%%%%%
%%%%%%%%
%%%%%%%%
%%%%%%%%hh?U,
C%%%%%%%%
%%%%%%%%
%%%%%%%%
9|%%%%%%%%V
%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%%
qqqqqq
qqqqqc
uqqqqq
WRqqqqqYVK.
f2=qqqqqC
qqqqq4
qqqqqi
Fqqqqq
hqqqqqq
sqmmullwmlprrrwssww
cAEHHA
LDC((@C
K'DAB(CA'
b06D6+('D
K#*&&A'E'
=!!'$%&"*A@@+D
7!$6&*'$"
8$5$*5*!+D*@H
F%%*8"@A
7 4%!4*!*&*@@AD+@
3.,$#*D''!)+(A
.4))538*$*"?
S/-06!4&$&8))D(@(N
...604 $&$"DE*'N
/.335!!)6$&)
.)044!")&'D)L
`Z]:T---.335%)0?#"K
_Z]_[QV0..
!0$%$5*L
ZTUU]\W:7764068+F+b
]R\VU\]]]<[<=7[<KKM
USQTQUVUT;>]=VF<<Kd
XP^QW\:[UTUVaVF];;j
QWUSSTRS\]T=9;bF9j
OPQPQO10S2T0V97=c
OOOP/1
.16::108c
zzzzoznzin{qjnddnn
q|~wrpsn|ozts~rnts||prwzq
EB;;;=?
ZTQG%(%
ZLNP,/,/8-+D
THGJG+JMQ0QX
UHHKHGG(G,/J
#.I#/.0
p\jwtbyga`qZos
_xed]i^
F2*3-.<l
J57; 9
[UMOXSV
VVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVV
''''''''''''''''''''''''''''''''''''''''
VVVVVV'
'VVVVVV'
'VVVVVV'
LLLLLLLLLLLLLLLLLLLLLLLLLLLL
'VVVVVV'
LsLsLsssLssssssss
'VVVVVV'
LLsLsLsLssssLssssss
'VVVVVV'
LLsLsLsLsLsssssssssss
'VVVVVV'
LsLsLsLssLsLssLssssss
'VVVVVV'
LLLsLsLsLssssLsssssssss
'VVVVVV'
LLLLLsLsLLsLsssLsssssss
'VVVVVV'
LsLsLLsLsLsssLssssssssss
'VVVVVV'
LLLLsLLsLsLsLsLsLsLssssssss
'VVVVVV'
LLLsLLsLLsL
ssssssssss
'VVVVVV'
LLLLLLLsLLs?;;;
t!sLssssss
'VVVVVV'
LLLLLsLLsLL8;
tsssssss
'VVVVVV'
LLLLLLLLsL
;tsssssss
'VVVVVV'
LLLLLLsLLLs
~))))*
'VVVVVV'
LLLLLLLLLL
'VVVVVV'
LLLLLLsLt;"Dm
ssssss
'VVVVVV'
LLLLLLL!;
'VVVVVV'
LLLLLLL
'VVVVVV'
LLLLLL{;o
ssssss
'VVVVVV'
LLLLLL{;o
sssssy
'VVVVVV'
LLLLLL{;o
'VVVVVV'
LLLLLL{;o
'VVVVVV'
LLLLLL{;o
'VVVVVV'
LLLLL{;o
'VVVVVV'
LLL{;o
'VVVVVV
VVVVVV
VVVVVV
QQ``xx
VVVVVV
QQQ``xx
VVVVVV
n;9VVVVVV
QQQ``x
;VVVVVV
n;VVVVV
5;;VVVV=
;VVVVVV=
o;VVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVV;o
o;VVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVV;o
o;VVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVV;;;VVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVV;VVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVVV
GGGGGtGtGttttttttttttttGG
Gtttttt
GtttttttL
GGtttttt+
GGGttttt5
GGGGGtttt
GGGGGttttt
GGGGGGGGttt
GGGGGGGtGttt
uuuuuuuuuuuuuuuuuu
u"""""
u"""""
u""""""
u"""""""
u""""""""_]*
u``````
HHPPPPP~
XXXXXXXXXXXX
dddGGGGGXGXG
dddGdGGXGXGG
ddddGGGGGGXG
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
: :$:(:,:0:4:8:<:@:D:H:L:P:T:X:\:`:d:h:l:p:t:x:|:
; ;$;(;,;0;4;8;<;8=<=@=D=
=H>L>\>`>h>
?W?c?o?
B0N0n0t0
11+141>1H1
2"2d2q2z2
4?4W4n4z4
8$8*8B8M8v8|8
040;0C0
<=&=H=O=
?)?N?b?t?{?
1`2h2}2
0!090e0
2'2^2o2N3`3
4"42494H4T4a4
5,555Y5
6)7Y7k7
8\9d9|9
9><E<'=
2'4W4}4e6
9#:A:H:L:P:T:X:\:`:d:
:&;1;L;S;X;\;`;
<J<P<T<X<\<
=9=T=Z=c=j=
>&>0>7>B>K>a>l>
?6?;?F?K?i?
0'0D0{0
1 1H1m1
4[4f4p4
7!7F7L7W7c7x7
8-898?8K8Z8`8i8u8
;S;Z;u;z;
<"<-<2<=<B<M<R<_<m<s<
=7=D=P=X=`=l=
3h415b5x5
8$:5:o:|:
>*>F>O>U>^>c>r>
2>2G2S2
717E7K7T7g7
7 8@8N8S8
;);/;5;:;C;`;f;q;v;~;
/0;0n0
3!3E3f3r3
0'1,11161F1u1
2 2%2,212
293H3d3r3x3
7+868d8r8
1)1;1]1o1
23393E3
5H5N5Z5
6%616:6?6E6O6X6c6o6t6
6787?7G7L7P7T7}7
7.84888<8@8
9+9]9d9h9l9p9t9x9|9
<0B0p0v0{0
081E1$232
203:3R3{3
8O9g9l9
;?<L<_<'=M>F?
:':H:d:h:p:t:
;8;D;`;
< <@<`<l<
=(=H=h=
>(>0><>p>x>|>
?4?8?T?X?`?h?p?t?|?
5$5,545<5
;(;L;X;\;`;d;h;p;t;x;|;
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
(null)
mscoree.dll
KERNEL32.DLL
((((( H
h(((( H
H
xopocefugapipujihudomokehimit
kernel32.dll
Dehogevigojukan xunehehevida zejadabos vetojacipad luxoxitatebulu
@jjjjj
VS_VERSION_INFO
StringFileInfo
041301F2
FilesVersion
64.55.66.15
InternalNames
SoftProd
LegalCopyright
Copyright (C) 2023, shmaer
ProductName
SlayerPath
VarFileInfo
Translation
Select One:
&Retry again
YDisacexidelara dobebu rudegokonivej kujohigekiga nok widamovu kozikehisa cosub yipadujeyiBXuwolasamiso xecugu lanepaxevaruha xubinidotuvuci cevufabala kezak^Fihohilujumet wafosevego vepumamulo tiwarizopasameb visehariyo tihuvazuwefonoc tav zoyezokabex
Sop binuyewaxameza mefahjYiluvenekekuw yexihuli dixegimurun cesohirirovafa zepehosuhe koy giyatucetah henitusovudi nefirukuc sitageFCeduvip lutiyola kegazeto zutovarem medoxuxofowin pinebufiz wagupupibo
Zori lixewevor
Miyebijujajixi[Regan biramifujoduzif vame jowoxeju duwopacudozik nagay zodobesorokeh wolu koyuwevu ranapem
)Zuxamibehofew webitidihisuh texihawisavex
KSufupap xorajuhupofusa fapaguduwabin cesunef vuseziwo fepi marubego lozeyul
fTejon hafevecutovosog rexomecu hoxonateguz kuluvemuhobilu sadeyamacumara vinocug sugijehunuxab rihukuk*Valesac cigayufet fobisaker behucufuh riki
Najagunoxizul wogosuti5Pime xim yepuxalec powuve mehajejareyuru gebakapinabe
Mucecedumama
4Dixehun mohuhutosezasaf yeladuyorowil gepedoxasileteLKadip xezocuxocoxup casir betijogavikafop zowuduvinaj cefayariguwakid dizupe
MGebagugonow kuxenamide pefipab payacilonupije ruxa tasoxeyagox gocucipacisini
XRulonukamesed xigozakuj tusotoduxumori vihe wezeyidududa kacifeloz fafumaka zexivahileta
Zezecapom xovitegojibek:Rimumira lehuwo wuruhohir kinozerih murujererotil gerasutu[Sekohik gayul rizetatohiwaxad yusug levo kaxevocifa jixe zocagof loyexazipol wavosodekecegu
9Fimanitipez dixemacilipakej judego zeruwolaco puva kepile4Jot hutomomabumobu xacihagomopu jedebita pasibacadif
6Duvakuvefem hawun pudupemigu lur kejobecanucape yuwagoEDonawibovuxa cakinuvazuzid moworutuyiru lowufogocaf vabal yubicocezag
cYene wojoxatunudoyur visenusacofa govufib rotubufako jenud vekujovetopaw yevovisixerox nedosugagonadMilutoyecex zemifoj fahekajava jizija gijajifokosun bodo yobahisonid migovoj cofutavetixajo koxutago
Gebalimacetaf
BMilinusituhikuf raxakalez codifenew pogeva getewekahahip kiwakexax
Muzin pigewutenowuwo#Sosaleb xukumuxage jak zodunogikega
dSedobagucobisor lut yihonahiruyucuh lipezu yekixorume dejexutih digiwuyam zulif dadidanepisid jehehu
Antivirus Signature
Bkav W32.AIDetectNet.01
Lionic Trojan.Win32.Convagent.4!c
tehtris Generic.Malware
MicroWorld-eScan Gen:Variant.Mikey.145851
ClamAV Win.Packer.pkr_ce1a-9980177-0
CMC Clean
CAT-QuickHeal Ransom.Stop.P5
McAfee Artemis!F0A2D9E0876B
Cylance unsafe
VIPRE Gen:Variant.Mikey.145851
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0056d16b1 )
BitDefender Gen:Variant.Mikey.145851
K7GW Trojan ( 0056d16b1 )
CrowdStrike win/malicious_confidence_100% (W)
BitDefenderTheta Clean
VirIT Clean
Cyren W32/Kryptik.JFR.gen!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Kryptik.HTBZ
APEX Malicious
Paloalto generic.ml
Cynet Malicious (score: 100)
Kaspersky HEUR:Backdoor.Win32.Mokes.gen
Alibaba Trojan:Win32/Kryptik.00bca450
NANO-Antivirus Trojan.Win32.Kryptik.jvgyjs
ViRobot Clean
Rising Trojan.Kryptik!1.E2E3 (CLASSIC)
TACHYON Clean
Emsisoft Gen:Variant.Mikey.145851 (B)
Baidu Clean
F-Secure Trojan.TR/Kryptik.avnqd
DrWeb Trojan.Siggen20.13578
Zillya Clean
TrendMicro TrojanSpy.Win32.REDLINE.YXDCTZ
McAfee-GW-Edition BehavesLike.Win32.Lockbit.hc
Trapmine suspicious.low.ml.score
FireEye Generic.mg.f0a2d9e0876b2de2
Sophos Troj/Krypt-VZ
SentinelOne Static AI - Suspicious PE
GData Gen:Variant.Mikey.145851
Jiangmin Clean
Webroot Clean
Avira TR/Kryptik.avnqd
Antiy-AVL Trojan/Win32.GenKryptik
Gridinsoft Ransom.Win32.Gen.bot
Xcitium Clean
Arcabit Trojan.Mikey.D239BB
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Backdoor.Win32.Mokes.gen
Microsoft Trojan:Win32/Redline.GFV!MTB
Google Detected
AhnLab-V3 Trojan/Win.PWSX-gen.R564225
Acronis suspicious
VBA32 BScope.Trojan.Denes
ALYac Gen:Variant.Mikey.145851
MAX malware (ai score=81)
Malwarebytes Trojan.MalPack.GS
Panda Trj/Genetic.gen
Zoner Clean
TrendMicro-HouseCall TrojanSpy.Win32.REDLINE.YXDCTZ
Tencent Win32.Backdoor.Mokes.Dplw
Yandex Trojan.Kryptik!ukbr5OcHW3U
Ikarus Trojan-Ransom.GandCrab
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.GHVH!tr
AVG Win32:RansomX-gen [Ransom]
Avast Win32:RansomX-gen [Ransom]
No IRMA results available.