Static | ZeroBOX

PE Compile Time

2022-07-29 15:09:31

PE Imphash

761a416c92dda0b5d3a5091999204e5d

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0001be86 0x0001c000 6.50819648617
.data 0x0001d000 0x00295e70 0x0001ac00 6.35128536094
.rsrc 0x002b3000 0x0000ce58 0x0000d000 3.92314673208

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x002be0d8 0x000010a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x002be0d8 0x000010a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x002be0d8 0x000010a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x002be0d8 0x000010a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x002be0d8 0x000010a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x002be0d8 0x000010a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x002be0d8 0x000010a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002bc510 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x002bfe18 0x0000003e LANG_TAMIL SUBLANG_DEFAULT AmigaOS bitmap font
RT_STRING 0x002bfe18 0x0000003e LANG_TAMIL SUBLANG_DEFAULT AmigaOS bitmap font
RT_STRING 0x002bfe18 0x0000003e LANG_TAMIL SUBLANG_DEFAULT AmigaOS bitmap font
RT_STRING 0x002bfe18 0x0000003e LANG_TAMIL SUBLANG_DEFAULT AmigaOS bitmap font
RT_ACCELERATOR 0x002bc9e0 0x00000098 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x002bf180 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x002bf180 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x002bf180 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x002bc978 0x00000068 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x002bc978 0x00000068 LANG_TAMIL SUBLANG_DEFAULT data
RT_VERSION 0x002bf1b0 0x00000208 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401010 EnumCalendarInfoW
0x401020 GetModuleHandleW
0x401024 GetTickCount
0x40102c EnumTimeFormatsA
0x401030 GetDriveTypeA
0x401034 GetVolumePathNameW
0x401038 GlobalAlloc
0x40103c LoadLibraryW
0x401040 SizeofResource
0x401044 WriteConsoleW
0x401048 GetModuleFileNameW
0x40104c lstrcatA
0x401050 EnumSystemLocalesA
0x401058 InterlockedExchange
0x40105c FindFirstFileW
0x401060 SetLastError
0x401064 GetProcAddress
0x401068 HeapSize
0x40106c CreateJobSet
0x401070 SetComputerNameA
0x401074 GetLocalTime
0x401078 WriteConsoleA
0x401080 AddAtomW
0x401084 SetFileApisToANSI
0x401088 FindNextFileA
0x401094 VirtualProtect
0x40109c CompareStringA
0x4010a0 SetCalendarInfoA
0x4010a4 OpenSemaphoreW
0x4010b0 DeleteFileW
0x4010b4 GetProfileIntA
0x4010b8 SearchPathW
0x4010bc WideCharToMultiByte
0x4010c4 MultiByteToWideChar
0x4010c8 EncodePointer
0x4010cc DecodePointer
0x4010d0 Sleep
0x4010e4 GetLastError
0x4010e8 MoveFileA
0x4010ec HeapFree
0x4010f0 GetCommandLineA
0x4010f4 HeapSetInformation
0x4010f8 GetStartupInfoW
0x4010fc GetCPInfo
0x401100 RaiseException
0x401104 RtlUnwind
0x401108 HeapAlloc
0x40110c LCMapStringW
0x401110 GetACP
0x401114 GetOEMCP
0x401118 IsValidCodePage
0x40111c TlsAlloc
0x401120 TlsGetValue
0x401124 TlsSetValue
0x401128 TlsFree
0x40112c GetCurrentThreadId
0x401138 IsDebuggerPresent
0x40113c TerminateProcess
0x401140 GetCurrentProcess
0x401148 HeapCreate
0x40114c SetHandleCount
0x401150 GetStdHandle
0x401158 GetFileType
0x40115c SetFilePointer
0x401160 ExitProcess
0x401164 WriteFile
0x401168 GetModuleFileNameA
0x401174 GetCurrentProcessId
0x401178 GetStringTypeW
0x40117c GetLocaleInfoW
0x401180 GetUserDefaultLCID
0x401184 GetLocaleInfoA
0x401188 IsValidLocale
0x40118c HeapReAlloc
0x401190 GetConsoleCP
0x401194 GetConsoleMode
0x401198 SetStdHandle
0x40119c FlushFileBuffers
0x4011a0 CreateFileW
0x4011a4 CloseHandle
Library GDI32.dll:
0x401000 GetCharABCWidthsA

!This program cannot be run in DOS mode.
`.data
generic
iostream
system
iostream stream error
Unknown exception
bad allocation
Visual C++ CRT: Not enough memory to complete call to strerror.
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
(null)
`h````
xpxxxx
CorExitProcess
Illegal byte sequence
Directory not empty
Function not implemented
No locks available
Filename too long
Resource deadlock avoided
Result too large
Domain error
Broken pipe
Too many links
Read-only file system
Invalid seek
No space left on device
File too large
Inappropriate I/O control operation
Too many open files
Too many open files in system
Invalid argument
Is a directory
Not a directory
No such device
Improper link
File exists
Resource device
Unknown error
Bad address
Permission denied
Not enough space
Resource temporarily unavailable
No child processes
Bad file descriptor
Exec format error
Arg list too long
No such device or address
Input/output error
Interrupted function call
No such process
No such file or directory
Operation not permitted
No error
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
bad locale name
ios_base::badbit set
ios_base::failbit set
ios_base::eofbit set
dubuyadacixeda
satuyesufaluvirilur
Hik mipepopataguhowegatevotirukuk viraje feleja yipomecuyojewif
petesocike
goxepopikonokar
%s %d %f
leyodoh
somubojovojuwehukef
hajupilogape
kogexegelofiramifaxo
kudaxuhevavoyofucimemekesa
camewixecowubuxezorinupih
invalid string position
string too long
bad cast
1#QNAN
1#SNAN
D$(X?@
D$(p?@
9t$Pr9
D$ 9t$4s
L$ j@Q
L$ j@Q
T$$j@R
T$$j@R
T$hjlR
D$hPQRV
T$hjlR
D$hPQRV
DVPQRh
\$L9D$D
9t$Dr
D$09t$`r
<+t'<-t#<0u
T$hWQR
L$0VPQ
tv9urVj
t}9uyj
PPPPPPPP
QQSVWd
.t|PVj@
t=MOC
HtHu4j
t*=RCC
;7|G;p
tR99u2
t"SS9] u
F\=X+@
HHtXHHt
?If90t
j@j ^V
uTVWh
^SSSSS
F Pj*S
F$Pj+Sj
F(Pj,S
F,Pj-S
F0Pj.S
F4Pj/S
F8PjDS
F<PjES
F@PjFS
FDPjGS
FHPjHS
FLPjIS
FPPjJS
FTPjKS
FXPjLS
F\PjMS
F`PjNS
FdPjOS
FhPj8S
FlPj9S
FpPj:S
FtPj;S
FxPj<S
F|Pj=S
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
CHPjPV
CLPjQV
Wj@h@4@
PPPPPPPP
HHtYHHt
URPQQh bA
t VV9u
;t$,v-
UQPXY]Y[
D$()D$
D$@LB@
<+t"<-t
+t HHt
SearchPathW
FindFirstFileW
ConvertThreadToFiber
GetConsoleAliasExesLengthA
EnumCalendarInfoW
InterlockedDecrement
MoveFileWithProgressA
GetProcessPriorityBoost
GetModuleHandleW
GetTickCount
GetSystemTimeAsFileTime
EnumTimeFormatsA
GetDriveTypeA
GetVolumePathNameW
GlobalAlloc
LoadLibraryW
SizeofResource
WriteConsoleW
GetModuleFileNameW
lstrcatA
EnumSystemLocalesA
GetPrivateProfileIntW
InterlockedExchange
GetProfileIntA
SetLastError
GetProcAddress
HeapSize
CreateJobSet
SetComputerNameA
GetLocalTime
WriteConsoleA
InterlockedExchangeAdd
AddAtomW
SetFileApisToANSI
FindNextFileA
FindFirstVolumeMountPointA
FreeEnvironmentStringsW
VirtualProtect
GetCurrentDirectoryA
CompareStringA
SetCalendarInfoA
OpenSemaphoreW
FileTimeToLocalFileTime
GetVolumeNameForVolumeMountPointW
DeleteFileW
KERNEL32.dll
GetCharABCWidthsA
GDI32.dll
WideCharToMultiByte
InterlockedIncrement
MultiByteToWideChar
EncodePointer
DecodePointer
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
GetLastError
MoveFileA
HeapFree
GetCommandLineA
HeapSetInformation
GetStartupInfoW
GetCPInfo
RaiseException
RtlUnwind
HeapAlloc
LCMapStringW
GetACP
GetOEMCP
IsValidCodePage
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
GetCurrentThreadId
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
IsProcessorFeaturePresent
HeapCreate
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
SetFilePointer
ExitProcess
WriteFile
GetModuleFileNameA
GetEnvironmentStringsW
QueryPerformanceCounter
GetCurrentProcessId
GetStringTypeW
GetLocaleInfoW
GetUserDefaultLCID
GetLocaleInfoA
IsValidLocale
HeapReAlloc
GetConsoleCP
GetConsoleMode
SetStdHandle
FlushFileBuffers
CreateFileW
CloseHandle
.?AVerror_category@std@@
.?AV_Generic_error_category@std@@
.?AV_Iostream_error_category@std@@
.?AV_System_error_category@std@@
.?AV_Locimp@locale@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$numpunct@D@std@@
.?AV?$num_put@DV?$ostreambuf_iterator@DU?$char_traits@D@std@@@std@@@std@@
.?AV?$ctype@D@std@@
.?AUctype_base@std@@
.?AVfacet@locale@std@@
.?AV?$basic_stringstream@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_stringbuf@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_iostream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ostream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_istream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ios@DU?$char_traits@D@std@@@std@@
.?AV?$_Iosb@H@std@@
.?AVios_base@std@@
.?AVruntime_error@std@@
.?AVexception@std@@
.?AVfailure@ios_base@std@@
.?AVsystem_error@std@@
$0O-YX
uA]*9q
.I=}C]
Dlf7TI
P@:aVS
s6;It
SS"SVw
~jf;+R
A7BmN?
K04B}*&
z]dpUQ
OiaoXb
5@m|ch
!"c,zd
Z*[y/~
=}g0HB
Ys\intxA
uMAl6
m^rgZh
r{I1ux>
58X6^$;
yW70R
K3zfrg
5(LSKQ
94O9w%
"ybI2;
-FJ(,@
7zz_Zp
Q6OYRi
gW'n[*
l[Y.l!]R
V&U s
bZmAd0
>{Q{d0df
TK-TRt
Wxc^vq4
c.4/LIZu
w](JO.(
&/#RrH
Z:8O4,
EQ-~ZEr@
xhpXl\
E}8cq&
B]/\>6
@4S++{
xw"+jd
7Dg~YmhB
AyDeF=}
97mu1f
E0t%vrR
!(.yT,
X@MBZN]"J
m DSE[
]n1_~/d
i%#fEpj
D'*r9!
K(ZbVg
HhUj/0
DI1\[D
Ay,L)*L
xle3<g<u"
1oqi
;xtcku
2{j0I4
v&3/;o
ch.O"c
r[Ld'pd
f7OvIW
qol?%&
q1~Nhn
X~s!0KS$
85y'os
`]]8om
{C!uz46N
#hB6S\M
"mkPBU
B'(TCvZ
o}%0{v
'rlb:z
*R#jP93
(KgQ}@
"rU`a8x
9y1u_A
qCAJo8
<6+J:`
&|r=UO
TI`ARA
&DdgC
uT091[
R-9M:~
;[Qcyp
gC8]L*
60c3U=
3N<3bl
lA^^UD)
|.@JM
I!3L&L
00eZbe
DPgK`T
\/ptI=
!K;sB67
ELUv\
DPck\FH
Yj o8(a
x{u"O<
YZ[_g"DH|
T4!-z~
`3G}>1
}N*wZ!t
o0N=\h
.d4=Pk'=
$sQ(k(
TC}q7]
RCCd?*
)*t`;2
M1WZJj
.5{h\3
Rm%/|3
^vF'9e
7eV&P5
NUN|$Aw
? mNc|
tAd0mC
B:fc2H
#o0VS&
S{ZKzH'`s
Cof/B
P0doGK
6|8P5Y
.?AVbad_cast@std@@
.?AVbad_alloc@std@@
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\AAA@@@A@AA@A@AAA
\\\\\\\\\A@
A\\\\\\\\@
A\\\\\\\A
A\\\\\\Ap
A\\\\\A
\\\\\@
A\\\\\A
\\\\\A
\\\\\A
@\\\\\@
A@AA@@@@@A@@A@A@
\\\\\A
AAAAAA
@\\\\\
ffffffff
\\\\\A
xxxxxxxxxxxxxx|fA
A\\\\\
\\\\\A
\\\\\A
\\\\\A
xC!!^^^^JJ
!!!^^^^J
A\\\\\A
!!!^^^!
@\\\\\
A\\\\\A
A\\\\\
A\\\\\A@AA
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
LLLLLCy$$Ly
PPPPPPy
$$$$$$$$$
fffffffff,
fRRRRRRRf,
RRRRRRRRR
|y|~|~
}}}{|y
~{y|~{}
{|||{~
|y~{}}|
x{}}}z
y|~{~}|
||{~|~
~{{|}{}
}}yz~~
~|~~y|
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
:uuuuuuuuuuuuuuuuuuuuuuu:
uuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuu:
uuuuuuuuuuuuuuu
:uuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuu
uuuuuuu
uuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuu:P
P:uuuuuuuuuuuuuuuuuuuuuuu
ppppppppp
uuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuu
yyyyyyyyyyy
uuuuuuuuuuuuuuuuuuuuuuuuu:&p
&:uuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuu
vyNNNNNNRNNNNNNNNRNy
uuuuuuuuuuuuuuuuuuuu
RRRRRRRRRRRRR"RRRRR
uuuuuuuuuuuuuuuuuu
N"""""""""""""""""""""N
uuuuuuuuuuuuuuuu
uuuuuuuuuuuuuu
zzzzzzzzzzzzzR
uuuuuuuuuuuu
Rzzfzfzfzfzfz
uuuuuuuuuu
uuuuuuuu
uuuuuu
uuuuuuuuu
uuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu:
:uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
f;;;fU
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu:7
7:uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu:7
7:uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu:7
7:uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu:
:uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
VVVVVVVV
*********CC*CCz?
pppp\F
}rrrrr
((((( H
h(((( H
H
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
nKERNEL32.DLL
(null)
mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
@Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
WUSER32.DLL
CONOUT$
xodawexokumivodat vaj ziwufovajiwuxepinivopupirojim
rpanimucegutizogapewuvabemih
wejagihirohemazizukanatopive
xepuxay
faxaxomufibafokazilorocusijegafu
jjjjjj
VS_VERSION_INFO
StringFileInfo
029805B1
CompanyName
Factum
LegalCopyrights
Challenger bizon inc.
LegalTrademarks2
odjfngizdf
ProductName
ProductVersion
27.34.26.37
VarFileInfo
Translation
#Tuz cuse pezonekuxadu zudef bulobuk
JagabexeyerJSulitoninut muk lucimoduvuzog zuzima fulekopuxokunab votenogoxohete yipila
KicesobozurelilbXizenunatix yajefacu sadupodaziya von humazur pukawokofeha rejumeyuyoca covevil fogubu somohewiteg!Sinicoreziyixa bujasa mika tugipe
Letuteso?Merilituc pusetezerixenah jofoxatur yaluxinoyohun kohuxugifasim
Dawagapujuk0Jokasucuhemapij zizoloco cimazufil jabimucucives
@Yowipon jot gudisegavawe sece tihic lezumarereligu wutavopayefukTamovo cid xafav juceyabubeziyeFBalufax cifubutoxavelo zusapohamus vig bivide wamuded joju wefedojunix*Kucebatebeberot godoyoci debesarasajo buzi:Nocujayica wolamokugijov tupemikixa sigebe vihizogezizoval
Yod webineyonoVNohigezubin zocafapuxe cotoyewepepehan cafemehocoyek rezadovemi xoyixavi netodutuzunixEYojexo jahifekezazejo kago hodunid decenihedik gemotagoju fozom bahawUJoyahetire zota gapekutepa yocarixosu hujujav gecicayiju yuxev boxuvitosuy bebe pavah
UCagovaku bokuj golelovozafi vohizo xesa xevemogizil ketusexaku tenes hefixasuli lofic
ZRexigenuh batusozekapixas guzonolo zugajefikibica kezopociyuyibok xeno punagumawiced galuj
IGuduha pojudenami bugalezacudibot folosas lip podaci vikukolilebirin wewu
Pupohage kijevohidepi^Kudehusulo dukurif linitetihejuzog carifiva hemogogidititen jibu pozayilerihid bico kojedototu
Zosugetavofefid
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
tehtris Clean
DrWeb Trojan.Siggen20.56562
MicroWorld-eScan Gen:Variant.Zusy.469633
ClamAV Clean
FireEye Generic.mg.a02d63d3aa1793ac
CAT-QuickHeal Ransom.Stop.P5
McAfee Artemis!A02D63D3AA17
Malwarebytes Trojan.MalPack.GS
VIPRE Gen:Variant.Zusy.469633
Sangfor Virus.Win32.Save.a
K7AntiVirus Clean
BitDefender Gen:Variant.Zusy.469633
K7GW Clean
Cybereason Clean
BitDefenderTheta Clean
VirIT Clean
Cyren W32/Kryptik.JWF.gen!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Kryptik.HTQA
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky HEUR:Backdoor.Win32.Mokes.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Generic@AI.100 (RDML:PDepYyMeozIkVyOMMNqqDA)
Sophos ML/PE-A
F-Secure Clean
Baidu Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.dh
Trapmine malicious.high.ml.score
CMC Clean
Emsisoft Gen:Variant.Zusy.469633 (B)
SentinelOne Static AI - Suspicious PE
GData Gen:Variant.Zusy.469633
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=80)
Antiy-AVL Trojan[Backdoor]/Win32.Mokes
Gridinsoft Ransom.Win32.STOP.dg!n
Xcitium Clean
Arcabit Trojan.Zusy.D72A81
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Backdoor.Win32.Mokes.gen
Microsoft Ransom:Win32/StopCrypt.MCZ!MTB
Google Detected
AhnLab-V3 Trojan/Win.Generic.R581409
Acronis Clean
VBA32 Malware-Cryptor.2LA.gen
ALYac Clean
TACHYON Clean
DeepInstinct MALICIOUS
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Win32.Backdoor.Mokes.Bdhl
Yandex Clean
Ikarus Trojan.Win32
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Kryptik.HTQA!tr
AVG Win32:RansomX-gen [Ransom]
Avast Win32:RansomX-gen [Ransom]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.