Static | ZeroBOX

PE Compile Time

2022-06-22 10:56:57

PE Imphash

e690d90f10792337897b6f984bebcd48

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000298f0 0x00029a00 6.55306860077
.data 0x0002b000 0x003b8538 0x00015a00 7.48146157465
.rsrc 0x003e4000 0x00018b30 0x00018c00 4.62815133816

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x003fc0f0 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x003fc0f0 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x003fc0f0 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003fbb08 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x003fca38 0x000000f6 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x003fca38 0x000000f6 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x003fca38 0x000000f6 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x003fca38 0x000000f6 LANG_TAMIL SUBLANG_DEFAULT data
RT_ACCELERATOR 0x003fbfe8 0x000000a8 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x003fbf70 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x003fbf70 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x003fbf70 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x003fbf70 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x003fbf70 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x003fbf70 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_VERSION 0x003fc0f8 0x0000026c LANG_NEUTRAL SUBLANG_NEUTRAL data
None 0x003fc0d0 0x0000000a LANG_TAMIL SUBLANG_DEFAULT data
None 0x003fc0d0 0x0000000a LANG_TAMIL SUBLANG_DEFAULT data
None 0x003fc0d0 0x0000000a LANG_TAMIL SUBLANG_DEFAULT data
None 0x003fc0d0 0x0000000a LANG_TAMIL SUBLANG_DEFAULT data
None 0x003fc0d0 0x0000000a LANG_TAMIL SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x40101c EnumCalendarInfoW
0x401028 SetComputerNameW
0x40102c GetComputerNameW
0x401034 GetModuleHandleW
0x401038 GetTickCount
0x40103c EnumResourceTypesA
0x401040 GetDriveTypeA
0x401044 LoadLibraryW
0x401048 SetConsoleCP
0x40104c GetFileAttributesA
0x401050 SetConsoleMode
0x401054 GetConsoleAliasW
0x401058 GetFileAttributesW
0x40105c GetModuleFileNameW
0x401060 GetVolumePathNameA
0x401068 GetStringTypeExA
0x401070 GetStringTypeA
0x401074 OpenMutexW
0x40107c GetProcAddress
0x401080 GetComputerNameExW
0x401088 RemoveDirectoryA
0x40108c PrepareTape
0x401094 LocalAlloc
0x401098 SetCalendarInfoW
0x4010a4 Process32NextW
0x4010a8 FindNextFileA
0x4010b0 CreateMutexA
0x4010b8 WaitForDebugEvent
0x4010bc GetVersionExA
0x4010c0 FindAtomW
0x4010cc DeleteFileA
0x4010d0 CloseHandle
0x4010d4 WriteConsoleW
0x4010d8 EnumSystemLocalesA
0x4010dc DebugActiveProcess
0x4010e4 EncodePointer
0x4010e8 DecodePointer
0x4010ec Sleep
0x4010f0 InterlockedExchange
0x401104 GetLastError
0x401108 HeapFree
0x40110c HeapReAlloc
0x401110 GetCommandLineA
0x401114 HeapSetInformation
0x401118 GetStartupInfoW
0x40111c RaiseException
0x401120 RtlUnwind
0x401124 HeapAlloc
0x401128 WideCharToMultiByte
0x40112c LCMapStringW
0x401130 MultiByteToWideChar
0x401134 GetCPInfo
0x40113c HeapCreate
0x401140 HeapDestroy
0x401144 SetFilePointer
0x401148 SetHandleCount
0x40114c GetStdHandle
0x401154 GetFileType
0x40115c IsDebuggerPresent
0x401160 TerminateProcess
0x401164 GetCurrentProcess
0x401168 HeapSize
0x40116c ExitProcess
0x401170 WriteFile
0x401174 GetModuleFileNameA
0x40117c TlsAlloc
0x401180 TlsGetValue
0x401184 TlsSetValue
0x401188 TlsFree
0x40118c SetLastError
0x401190 GetCurrentThreadId
0x401194 GetCurrentThread
0x40119c GetCurrentProcessId
0x4011a4 GetLocaleInfoW
0x4011a8 FatalAppExitA
0x4011ac GetACP
0x4011b0 GetOEMCP
0x4011b4 IsValidCodePage
0x4011b8 GetUserDefaultLCID
0x4011bc GetLocaleInfoA
0x4011c0 IsValidLocale
0x4011c4 GetStringTypeW
0x4011cc SetStdHandle
0x4011d0 GetConsoleCP
0x4011d4 GetConsoleMode
0x4011d8 FlushFileBuffers
0x4011dc FreeLibrary
0x4011e0 CreateFileW
Library USER32.dll:
0x4011e8 GetMenu
Library ADVAPI32.dll:
0x401000 ReportEventA

!This program cannot be run in DOS mode.
`.data
generic
iostream
system
iostream stream error
Unknown exception
bad allocation
Visual C++ CRT: Not enough memory to complete call to strerror.
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
CorExitProcess
(null)
`h````
xpxxxx
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
bad exception
Illegal byte sequence
Directory not empty
Function not implemented
No locks available
Filename too long
Resource deadlock avoided
Result too large
Domain error
Broken pipe
Too many links
Read-only file system
Invalid seek
No space left on device
File too large
Inappropriate I/O control operation
Too many open files
Too many open files in system
Invalid argument
Is a directory
Not a directory
No such device
Improper link
File exists
Resource device
Unknown error
Bad address
Permission denied
Not enough space
Resource temporarily unavailable
No child processes
Bad file descriptor
Exec format error
Arg list too long
No such device or address
Input/output error
Interrupted function call
No such process
No such file or directory
Operation not permitted
No error
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
SystemFunction036
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
{flat}
`non-type-template-parameter
unsigned
short
<ellipsis>
,<ellipsis>
throw(
`template-parameter
cli::pin_ptr<
cli::array<
`anonymous namespace'
generic-type-
template-parameter-
`unknown ecsu'
union
struct
class
coclass
cointerface
extern "C"
[thunk]:
public:
protected:
private:
virtual
static
`template static data member destructor helper'
`template static data member constructor helper'
`local static destructor helper'
`adjustor{
`vtordisp{
`vtordispex{
const
volatile
volatile
volatile
signed
double
<unknown>
wchar_t
UNKNOWN
__int128
__int32
__int64
__int16
__w64
__int8
std::nullptr_t
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
bad locale name
ios_base::badbit set
ios_base::failbit set
ios_base::eofbit set
Boj coyobaviciwicezikimejofudoy bit masevonuyeyuhiyifod pujezarufuwomaratosogusoguk
bixuhabowovinonaseviwofe
mewejoli dujasehajefa perajecifehiruxayebudurebo mokuyojarujipaluyumodojafibu hiyaporohapaliyuxu
cohaponimexofuzih xahikakibisoxaborejawu livitucuruw
rorunecunozarig
lotizabisaxukocicadufovoviwuzek bij
nayetu
0.1 %f
tecacixupogehuzeje
bitenalujimovad
wepinenavahefix ric
vumamubojofole fuhoket
depugemozegufosacakidutilefi fiyiwixe gevuwafebuzemekakakixajucebirupo
semizohawejakimicizotetugan cisoluzuvafibuguwodahezotozemo rayelijixuva
xubiwufoluxutosagipavipiwepohalu kaxatakunin
buraxizula boviyanijohetiwul tejuyusacevizikuyonekakehujis nuwetohovebipar
invalid string position
vector<T> too long
string too long
bad cast
1#QNAN
1#SNAN
D$$^][
_9>t&j
QQSVWd
.t|PVj@
t"SS9] u
j@j ^V
VPPPPP
HHtXHHt
?If90t
^SSSSS
t=MOC
HtHu4j
t*=RCC
;7|G;p
tR99u2
F Pj*S
F$Pj+Sj
F(Pj,S
F,Pj-S
F0Pj.S
F4Pj/S
F8PjDS
F<PjES
F@PjFS
FDPjGS
FHPjHS
FLPjIS
FPPjJS
FTPjKS
FXPjLS
F\PjMS
F`PjNS
FdPjOS
FhPj8S
FlPj9S
FpPj:S
FtPj;S
FxPj<S
F|Pj=S
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
CHPjPV
CLPjQV
PPPPPPPP
PPPPPPPP
URPQQh
HHtYHHt
tM<it-<ot)<ut%<xt!<Xt
<it|<otx<utt<xtp<Xtl
HHtiHHt
HHt*HHt
<0|<9
tK<_t<<$t8<<t4<>t0<-t,<a|
<z~$<A|
<0|L<9
tI<A|2<P
t]<@tS<Zt
tfh(=@
tp<@tl
Du'h8@@
OtFOt#OuV
t4<@t;V
Tt^HtTHtJHt
0t1HHt
<@tJ!~
t!hPB@
t!hDB@
AtJHt4Hu
<?tG<Xt
u}hXC@
t VV9u
;t$,v-
UQPXY]Y[
D$tfkp
D$0PSSS
<+t"<-t
+t HHt
u-hHM@
DebugActiveProcess
GetStringTypeA
DebugActiveProcessStop
GetConsoleAliasExesLengthA
BuildCommDCBAndTimeoutsA
SetUnhandledExceptionFilter
InterlockedIncrement
EnumCalendarInfoW
WritePrivateProfileSectionA
GetEnvironmentStringsW
SetComputerNameW
GetComputerNameW
FreeEnvironmentStringsA
GetModuleHandleW
GetTickCount
EnumResourceTypesA
GetDriveTypeA
LoadLibraryW
SetConsoleCP
GetFileAttributesA
SetConsoleMode
GetConsoleAliasW
GetFileAttributesW
GetModuleFileNameW
GetVolumePathNameA
FindNextVolumeMountPointW
GetStringTypeExA
GetNamedPipeHandleStateW
EnumSystemLocalesA
OpenMutexW
InterlockedFlushSList
GetProcAddress
GetComputerNameExW
BeginUpdateResourceW
RemoveDirectoryA
PrepareTape
GetPrivateProfileStringA
LocalAlloc
SetCalendarInfoW
AddVectoredExceptionHandler
PostQueuedCompletionStatus
Process32NextW
FindNextFileA
FindFirstVolumeMountPointA
CreateMutexA
RequestWakeupLatency
WaitForDebugEvent
GetVersionExA
FindAtomW
GetFileInformationByHandle
GetConsoleProcessList
DeleteFileA
KERNEL32.dll
GetMenu
USER32.dll
ReportEventA
ADVAPI32.dll
InterlockedDecrement
EncodePointer
DecodePointer
InterlockedExchange
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
GetLastError
HeapFree
HeapReAlloc
GetCommandLineA
HeapSetInformation
GetStartupInfoW
RaiseException
RtlUnwind
HeapAlloc
WideCharToMultiByte
LCMapStringW
MultiByteToWideChar
GetCPInfo
IsProcessorFeaturePresent
HeapCreate
HeapDestroy
SetFilePointer
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
UnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
HeapSize
ExitProcess
WriteFile
GetModuleFileNameA
FreeEnvironmentStringsW
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
GetCurrentThread
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
GetLocaleInfoW
FatalAppExitA
GetACP
GetOEMCP
IsValidCodePage
GetUserDefaultLCID
GetLocaleInfoA
IsValidLocale
GetStringTypeW
SetConsoleCtrlHandler
SetStdHandle
GetConsoleCP
GetConsoleMode
FlushFileBuffers
FreeLibrary
WriteConsoleW
CloseHandle
CreateFileW
.?AVerror_category@std@@
.?AV_Generic_error_category@std@@
.?AV_Iostream_error_category@std@@
.?AV_System_error_category@std@@
.?AV_Locimp@locale@std@@
.?AVlogic_error@std@@
.?AVinvalid_argument@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVoverflow_error@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVbad_typeid@std@@
.?AV__non_rtti_object@std@@
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$ctype@D@std@@
.?AUctype_base@std@@
.?AVfacet@locale@std@@
.?AV?$basic_stringstream@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_stringbuf@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_iostream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ostream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_istream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ios@DU?$char_traits@D@std@@@std@@
.?AV?$_Iosb@H@std@@
.?AVios_base@std@@
.?AVruntime_error@std@@
.?AVexception@std@@
.?AVfailure@ios_base@std@@
.?AVsystem_error@std@@
3kNQ}u
:-o7x;
wY;1z9
5&x6O5
q+us{9
pY}Vy'
d_-v-s
E=y#8~
h_=_*qGgJ
vIje $
9,by~P
e8\\9~
@/uef 'p
xn?M{c
A4k^qg@F
g>]T9GT
Mwqy9v
Ecw7s`
IGas=s
z66)8'
.Kx9y*
-&g"_b
GRi#`nu
Zc#u=a
TZ3s#
zW*9[I
^TiL)/
B,FNv'
x[~u|jfw
Ry:/z4
cGyL,t
?q'{UF
Cah3"(5
tOvWS2
(,oLCQ
iPbQk?
,q}'A@
TFH.:nrW
y]')a<4
6B|b\i
'9bxc[
A:(e\jn
JZ!rN,
8UpS;yF
fZ/I {
%a"*i%
8|4d{,c
b,tm6k
8p%H;H
S(W>Ls
@cw([O
(a9e71F
`%.I_>
@B >9A
GR[Z>nG=7
f|t>I_
/yzS4Ws"3
+$S/%!
nYow;Vf
W5Ek`a/E
9&}<t&g`p
Ak6WYW2z
&Wp)s~
Tk!'PE
u&SE^U
dA^{LSH
=Y\O+8[
MtK7"0jn
&a`#t
)*nVR(j(
1:.f6A
#@w8xW
-D6'}0
8.YuI4q
~i':ES
m&:??|
S)<o*}
=R!@~d
x6|$cr
sb.AAy
+L2S=#
,\g"lQH
R6TLwt
aiJ=AT
Fxb6LFwzs
'eX+>S
yrU\zZ
H>ag\"
y-$:
&%^HDl
}J~F?H
vf+xM3
,veg3/N
aKI]_E
HG&!{B
XRgtEl
h|ZVbp
Qlv?oA
P&7k%uZ
;i5MQR
/-$ab)
}IjqVC
]!E>%l
mXKb@)
I;6,~vv
lkkQS#
-$wpw@|U_
Xs2M`E
.?AVbad_cast@std@@
.?AVbad_alloc@std@@
#99999999999
_9eeeeeeeee[[e[
.9999cc
:hXXXh:
wwwwwwwwwwwww
)))))))
w)RgwG
)))))w
wwwwww
wwwwwwwww
wwwwwwwwwwwww
gggUgggggg
MMMM55MMMMMMMM555
gwy#mK
llll}}}
}PP"""
lZZPPPP""
lBBZZZPPPP"
--BBBBZZZPPPZ
---BBBBZZZZ
--B-BBB
KMG))g
gg9M5555555555555555F
OOOOOIEXXOE
IIIIE11
\\\\\\EPP
XXXXXXXXX
1(((((XXX
dddMWo
P5<<<3
Hooooooooo
HHHHHHHHHH
uoooooooooooooo
ooooooooooooo
uoooooooooooooouI
ooooooooooooo
uoooooooooooooou
uoooooooooooooouTTG
ooooooooooou
ooooooou
P((((((((((((((((((((P
GGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGi
GGGGGGGGG=,bg
GGGGGGGGG
GGGGGGGGG\"a
hGGGGGGGGG\
GGGGGGGGG?
D9]GGGGGGGGG=
]GGGGGGGGG\"
GGGGGGGGG
GGGGGGGGG
yGGGGGGGGG
>wUGGGGGGGGG=
1y4GGGGGGGGd
GGGGGGGGGLDa}
]GGGGGGGGGRDo
2GGGGGGGGG
GGGGGGGG.^!j
g]GGGGGGGGG\
GGGGGGGGGm
GGGGGGGGd
GGGGGGGG\
GGGGGGGG
GGGGGGG.
GGGGGG\";
GGGGG\
GGGGGd*9
GGGGGGd
R=GGGGGM
MGGGGGGGi=P
GGGGGGG
GGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGG
~|{~z{
}z~~}|
~}|{}z{
{|{yz~}{{
~z}|}z~|{
}|~}}||
z}~|}{~
{{}~|{|
~{~y{|
z|~|}~
y{}}~y
{|{{z~|
~~||y~~
|z{{{~
~~}{~~{}~
|}|}~{{}
~~}|~|
~}{{}z
|}{||z{
z|~}{}|{
6}IIIII
IIII}6
6qIIIIII
IIIIIIIIIIEIIIIIIIIII
GGGGGGGG_6
6)G-----------------
jjjjjjjjjjjjj
\ys6666
6666sy\
&&&&&&&
W+333W
77777777+
(+=====
zzzzzzzzz
NNNNNNNNNNNNNNNNNNN
:BNNNN
<NNNNNNNN
NNNNNNNN:
|NNNNNNNN<EEEEE
NNNNNNNN
77777=
NNNNNNN
)NNNNNN
NNNNNNNNNNN
NNNNNNNNNNNN
NNNNNNNNNNNNNN
NNNNNNNNNNNNNN
NNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNN
666666666666
^^^^^^^^^^^^^^^^^^^^^^^^^^^
^8HHHHHHHHHHHHHHHHHHHHHHH8^
oooooooo}o}o}}o}}}}o
??????S
}SSSSS
}/###SSSS
//####SSSS
//###SSSSS
/####SSSSX
o}}XXXXX
//###SX
}}}}}X}XXX
o}o}}}}}X}XXXX
oo}oo}}}}}}}X}XXXX
oooooooo}}}}}}}}XXXo
ooooooooo}}}}}}}o
ooooooooo}o}}o
oooooooo}o
""""""
%^^^^^^^^^^^^^^^^^^^^^^^^^^^%
iiiiiiiiiiiiiiii
ii8RRRRRRRRRRRRR|
||G8RRRRRR8Ri|
RRRRRRRRR
8RRRRRRRRRRRRR
,~~~~~~~~~~~~~~
>>>222
>>2>22
ffffffffffffffffffffffffffffffffffffffffffffffffffffff
BBBBBBBBBB
fffffff
"ffffff
"fffff
T/ffff
BBB2B222228222
rrr$$$z
rr$$$]]]
rrr$$]z
ffffffffffffffffffffffffffffffffffffffffffffffffff
,,,,,,,,
wSSSSSSSw
,SSSSSSSSS[,,
((((( H
h(((( H
H
mscoree.dll
(null)
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
@Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
KERNEL32.DLL
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
ADVAPI32.DLL
WUSER32.DLL
CONOUT$
wahasigebedinavifejobutuwecigam
xetuyocoxoxegurugubosoyijugeno cuzojuwuxuyobaxujixomomomihacuzo tavefupilafuzibijuvobitebif vukemezanixaxupidimox
rufayogunuwicuheh lukaxujoc
neconudawocuhuyozogejecehogibe
jogezudolapibebohurefayojihinaho kodulufuse muxicakadirinonagaxobo kucizivocahohaxuraxan jehogesuvovelutufa
zusoconiwoniromobonutuwobufepanu
riwuzapete nobokisunecotupuziyehetepikofaw giv cogevesagexaxozovibacegujo
nahisetuyewina zikigafagocaniwuzusibuxuhu canijomonusivar
civuyakugodi cafodotepogefewadovudabulotepu wodanebeyayivajunepizovamocaj
@jjjjjjj
@jjjjjjjjj
AFX_DIALOG_LAYOUT
VS_VERSION_INFO
StringFileInfo
049805B6
CompanyName
LaffingDonald
FileDescriptions
NiceIncorporated
FileVersion
37.86.51.17
LegalTrademark1
ElonGetsIt
OriginalFilename
HerbalEssentials.exe
ProductName
BuffalloBill
VarFileInfo
Translation
HNujul rina netavabatikap dayo rafurevodas sorocofowad pohiwawoyow gitiki
'Yul gewoxa fiwisimahunaviw zufutowedape?Firo wabomapa kodaxacesi farirucafo rafowatini lokunudunen fefe
MJepizuya tiwec wes sevude bahogusifol cag videcoxan laras wemob mezuyeralenid
8Nunoyozonaw vanogonobane soh zihuzijonunawa bope lafibem
Ruzekadanuxika sixevatiwag dom4Wilekiwenonuvaw detesikakodag sogepabu timisumulabiy
7Hozumopemepoxot bukawi dacipa yade huxeto coliwimeduzol3Weyizewokav casetinubafus juxopigokupecu kisibuhuni
XosibilesevofJuwuxovezon muxucuko pukacahiy bozegag zogadipo wepubarir towezeca fitejiramaxi fahihem vuwayonixahevobKupubacefalah kubeminezo cacapi jowa gowehidiyu bonasohovovo sadokufoko fozawayarur hovututobonuroLDomif zuguvuta getemowoze badagagabaruwod zatuhevugacojax mirihupayi bozijox
Solubafek yewaxa nalimu
Balufesilobuci
Kapi nofu zazukize sey
DizekeOVavamoge xocifigimemo howovehis xiluvafow pila zak nofuwugibun nojumori fed wof
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Trojan.Win32.Androm.4!c
Elastic malicious (high confidence)
DrWeb Trojan.PWS.Stealer.23680
MicroWorld-eScan Gen:Variant.Ser.Zusy.4170
FireEye Generic.mg.0455be9da54c7231
CAT-QuickHeal Ransom.Stop.P5
McAfee Artemis!0455BE9DA54C
Cylance unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005a3c991 )
BitDefender Gen:Variant.Ser.Zusy.4170
K7GW Trojan ( 005a3c991 )
CrowdStrike win/malicious_confidence_100% (W)
BitDefenderTheta Clean
VirIT Clean
Cyren W32/Kryptik.JPA.gen!Eldorado
Symantec Packed.Generic.528
tehtris Clean
ESET-NOD32 a variant of Win32/Kryptik.HTIY
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky HEUR:Trojan-PSW.Win32.Rhadamanthus.gen
Alibaba TrojanPSW:Win32/Rhadamanthus.53819b3c
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Generic@AI.100 (RDML:kacXVXXTf3ARnMNCPH6dUg)
Emsisoft Gen:Variant.Ser.Zusy.4170 (B)
F-Secure Trojan.TR/AD.LokiBot.vgfwt
Baidu Clean
VIPRE Gen:Variant.Ser.Zusy.4170
TrendMicro TROJ_GEN.R03BC0DDJ23
McAfee-GW-Edition BehavesLike.Win32.Lockbit.fh
Trapmine malicious.high.ml.score
CMC Clean
Sophos Mal/Generic-S
Ikarus Trojan.Kryptik
Jiangmin Clean
Webroot W32.Trojan.Gen
Google Detected
Avira TR/AD.LokiBot.vgfwt
MAX malware (ai score=82)
Antiy-AVL Trojan/Win32.Sabsik
Gridinsoft Ransom.Win32.LokiBot.bot
Xcitium Malware@#2ccp9frnu1oxg
Arcabit Trojan.Ser.Zusy.D104A
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan-PSW.Win32.Rhadamanthus.gen
GData Win32.Trojan.PSE.3CN6UD
Cynet Malicious (score: 100)
AhnLab-V3 Malware/Win.Generic.C5413959
Acronis Clean
VBA32 Clean
TACHYON Clean
DeepInstinct MALICIOUS
Malwarebytes Trojan.MalPack.GS
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R03BC0DDJ23
Tencent Win32.Trojan-QQPass.QQRob.Dkjl
Yandex Clean
SentinelOne Static AI - Suspicious PE
MaxSecure Clean
Fortinet W32/PossibleThreat
AVG Win32:BotX-gen [Trj]
Avast Win32:BotX-gen [Trj]
No IRMA results available.