Static | ZeroBOX

PE Compile Time

2022-11-27 18:26:45

PDB Path

C:\figineyopawi-wotijakut\vov xumepurebixiva83\yox.pdb

PE Imphash

019c3afb9e20d1069ec440ffb48da873

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000436be 0x00043800 7.81973035669
.data 0x00045000 0x00245844 0x00001e00 2.96829839426
.rsrc 0x0028b000 0x0001b088 0x0001b200 4.26174216439
.reloc 0x002a7000 0x0000340c 0x00003600 2.39142111697

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x002a4678 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x002a4678 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x002a4678 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x002a4678 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x002a4678 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x002a4678 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x002a4678 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x002a4678 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002a06a8 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x002a5d98 0x000002ee LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x002a5d98 0x000002ee LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x002a5d98 0x000002ee LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x002a5d98 0x000002ee LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x002a5d98 0x000002ee LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x002a4728 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x002a4728 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x002a4728 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x00294b10 0x00000068 None SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x00294b10 0x00000068 None SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x00294b10 0x00000068 None SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x00294b10 0x00000068 None SUBLANG_SYS_DEFAULT data
RT_VERSION 0x002a4750 0x00000230 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401018 GetConsoleAliasA
0x401020 WaitForSingleObject
0x401024 CancelWaitableTimer
0x401028 AddConsoleAliasW
0x401030 _lclose
0x401034 GetTickCount
0x401038 IsBadReadPtr
0x40103c GetConsoleTitleA
0x401044 WriteFile
0x40104c GlobalAlloc
0x401050 GetLocaleInfoW
0x401054 FreeConsole
0x401058 GetVersionExW
0x40105c GlobalFlags
0x401060 GetNamedPipeInfo
0x401064 FindNextVolumeW
0x401068 MulDiv
0x40106c ReplaceFileW
0x401070 GetModuleFileNameW
0x401074 CreateActCtxA
0x401078 GetStringTypeExA
0x40107c GetCommState
0x401080 GetProfileIntA
0x401084 GetLastError
0x40108c GetProcAddress
0x401090 AttachConsole
0x401094 GetLongPathNameA
0x401098 VirtualAlloc
0x40109c SetStdHandle
0x4010a4 _hwrite
0x4010a8 LoadLibraryA
0x4010ac OpenMutexA
0x4010b4 GetFileType
0x4010b8 CreateFileMappingW
0x4010c0 CreateEventW
0x4010c4 lstrcmpiW
0x4010c8 GetModuleHandleA
0x4010d4 _lopen
0x4010d8 FindAtomW
0x4010dc AddConsoleAliasA
0x4010e0 DebugBreak
0x4010e8 lstrlenA
0x4010f0 CreateJobObjectA
0x4010f4 GetTempFileNameW
0x4010f8 GetCommandLineA
0x4010fc GetStartupInfoA
0x401100 RaiseException
0x401104 RtlUnwind
0x401108 TerminateProcess
0x40110c GetCurrentProcess
0x401118 IsDebuggerPresent
0x40111c HeapAlloc
0x401120 HeapFree
0x401124 WideCharToMultiByte
0x401128 SetHandleCount
0x40112c GetStdHandle
0x401138 GetModuleHandleW
0x40113c Sleep
0x401140 ExitProcess
0x401144 GetModuleFileNameA
0x401158 TlsGetValue
0x40115c TlsAlloc
0x401160 TlsSetValue
0x401164 TlsFree
0x40116c SetLastError
0x401170 GetCurrentThreadId
0x401178 HeapCreate
0x40117c VirtualFree
0x401184 GetCurrentProcessId
0x40118c HeapReAlloc
0x401190 SetFilePointer
0x401194 GetConsoleCP
0x401198 GetConsoleMode
0x40119c GetCPInfo
0x4011a0 GetACP
0x4011a4 GetOEMCP
0x4011a8 IsValidCodePage
0x4011b0 HeapSize
0x4011b4 WriteConsoleA
0x4011b8 GetConsoleOutputCP
0x4011bc WriteConsoleW
0x4011c0 MultiByteToWideChar
0x4011c4 LCMapStringA
0x4011c8 LCMapStringW
0x4011cc GetStringTypeA
0x4011d0 GetStringTypeW
0x4011d4 GetLocaleInfoA
0x4011d8 FlushFileBuffers
0x4011dc CreateFileA
0x4011e0 CloseHandle
Library USER32.dll:
0x4011e8 CharLowerBuffA
Library GDI32.dll:
0x401008 GetCharWidthW
0x40100c EnumFontsA
Library ADVAPI32.dll:
0x401000 MapGenericMask

!This program cannot be run in DOS mode.
`.data
@.reloc
bad allocation
Unknown exception
bad exception
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
GAIsProcessorFeaturePresent
KERNEL32
_nextafter
_hypot
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
?CONOUT$
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
bad allocation
xizugukiwucugowasosekeririceyozobagisesuyoyelikobomagutidegayocefawi
denenubizeyoxehoyekujabiposu
foliwahoreminogibohogugafocuvovaluvumibuzihedomiduloti
kernel32.dll
majosahijewotimutetabocofuluvu
hicunoxuyapunuzaxumopimobe
mibizazeyuyonulezowolucekifakufu yijemilegokimucafesumazuhotoxiho jowojuyerucok
yupudayujufexalekopaj
rusuwalibexapofituh
xepogupufaxoxogosa rulazatabufabunek zulola
sarijezunugunirifojunanawuxekutubobikovoradamarezusawufonofegefoc
riveyovizisewusewawenagoje
hidiniruvikicuwozeyuxaluluzibecekobakobazadulijezulinisife
kernel32.dll
C:\figineyopawi-wotijakut\vov xumepurebixiva83\yox.pdb
D$ 1D$
D$ 1D$
udhP.@
SUVWu~
D$4Yc}
D$Pj;:-
D$x}k{8
D$p}u_h
D$0jKh
l$D;hmC
D$H;""
D$LT#0y
QQSVWd
j,hP6D
HtHu4j
s[S;7|G;w
tR99u2
0SSSSS
^SSSSS
j"^SSSSS
jTh07D
j@j ^V
>=Yt1j
tRHtCHt4Ht%HtFHHt
0A@@Ju
to=X`D
URPQQh
0SSSSS
0SSSSS
;t$,v-
UQPXY]Y[
_VVVVV
^WWWWW
t"SS9]
v$;5|`D
PPPPPPPP
PPPPPPPP
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
I%nmuo
:Wg t&G
~%NA|Z
K~fu\<
V<=3e"Y1
0g;XqQ
C1_a;.RT
fDb1x
of~za'
]B\;|'
v 4O\9k
bn,Mi
nZ=1\[
OQ[O-]
A^Dhm
G)DJ&f
p>b'+cS
l29s9O
OueDlm
$-CnH{
F0aNo;D
@>d^Tq
5:<F|"H
*ky9ba
6eiNZVf
+<X&+fRz
bFqAX,
KOKY/L
(Ib|.!
+grGZ
ttt.Vfu
GL@$@B7h
?<Zod8V
|tFrj4
={hhdz=l
zl@V(Z`m
9U3uUr
'XHIRQ
+^$$2/
Bh!F:2-
?CeX_`
LHq/SR
@*rUs0
.>/D)e
iZElXM
'Y]I1jL
h^(rI9eg
(O0<AL7&
hTP<G0
RfyCbP
Q.K`=Sd
1>W!|Fq<
6=ry*?
<JX-1d
pq}<*z
44`@<<KP=ao
{x~dTT
ETA+UJ=
&pjYWe
#+q9Mg
%:k7hg
!5W&ViD}
7.5m<0Nh
vKoON`!
|z"M]/X
?n~q'
e8-C5E9t
zx|bF'%
B#%v^,
RvkJ3
=Fl?UI
YC(Gt).
jL|7Aq
b(L`&#
jT]8}lp
Br<e#"]
p&`&my(
71}@AvC
^v7PdK@ibc
rRS{:S
k9osG;
BliOKHa
3^7Di#
NUF0(w
;mM|4jh3
d]C\q;<
fQ)=Dg
HJ+p_YG
3Y%jGS
>4ww.3
c(}=3Q
q^Rt7f<
%5@{8-
+=.(R4rF
U`^+=(
:QR#)#
A?^=^
1N!f`N
dDxndc
DUupY~{
s>9{N-
@tYu.O
SDZ{|'
'OKCfS
?eflSjUF
(EZ*|&
J!Nn+6
L9da>y(
dRxnWv
&Y>wmd|
VW39"AP
k@a"\w
4L]mYC
H"Kxa
Clw;+ME2
uIDjV}8z6Q
197_[S
ER).Y\Z<Z
.&jFx=
es$]IC
^!lR~B
Xc)pj%
%EUS'&@W
K+UCE#_
@+;hOe
Jr1qzI
[Q\D7N*P:S>
O8sE1oW
!LIu_l
S]+MO=x3>
6NeBK^
%lbFJW
+kls6;
;&Y-1qY
R_xDo[
>dM Y>}
1UDuyfK
cg@z=)1{uS
I<Uw2[
pl')jV6
zp.XI,
xk*m9|/3:
s'Q#y2
njc7Fj7
tM!!`E
o&dJdq2O,
KAI%|o$|7LA01
iwPU@15
)bN4jr
ndq,AV
1!KtJO
=o@.]Y
EYpP|Y.
+$-sb>
$S,5^7
Ym0S\ `(
iI/Vr,
F-3p r
3[I9~J0
/tDX=)
^TH%fg
)jL(5t
j".Op9r
SB"z(U
JQS*x$?
\KTMz=
;Eo#G*
( ]R.a
Db{Tt{N
zJmaMC
tcx5eW
|5~}}^<
 .XbV[
n3L#$COA6
{zUK<&
cV[/VM\
=Jq/l^A-:
$Fzxvv
,`+mp~
R'[C7B
G?R4K+.8
X?60$O
3t%;E'D
Bc4Dyl
F0MF*%m=5
MMOQ8{
Vkoh R&3
kM9/(i
luxne3"
/ U,"=
G {foi#X>*#
$z_.lI|rp
`%C3si
1zoP'
Sml/V"q
$uwyn8
i^Sxph
a:6DJ{Vg
0F3Fu^
B[+0Vdo
>]1gM:m
0s9xa8q
dD%C^\
Lw(Elf
J(Zk@`
FgJA=!
JNSG`
pSaby&
y1Qu51
>B_ AKT
l61@eQ
`~*jj:a
K zRHW
lA3o/1;\i
Yd!)I$>
FIojrZ7H
r`qr.Y
b:J :%#{"
0UV65l
c)%k']
ja~*\G
X0.$1}
_Wr!c
:(^-eN
X0pY=H
hZ0gV+%
7@?*I[
\9$v-'
{jW@1+
J5[T}P
Fr1%iR
ai/{T'
_nXpRE
93M,:SQ
uXSQmvC
lfM^H8
GHMnMDP
Ql-(6H
E3D<"l
n^+8$1
So|0N4e
zBuZ/2
bG=dl_'
k}k/EI.l0
8H#lC\
DBc/iK
o"#CA[
#F5l>X
+I\<I
4CX-wG#
'$d4>F
=;J7%H
2^W%4
[v=^"y
F<4172
!w9Zf
]:N=)v>]
c^C4>;C#
6fN-P6
"Ndaz@:+
-'6{Hh
e>"dqe
C7<M2C
&>p'6l
(hs&O"r
KSi7B9
[<5t/6
}]cJoa
8G!Sm0
+ykuVQ
f\L }ML1Yzk
/I!_-
z;iCYj
SQ&5eP,i8
X+uNcC
I7]^dP3s
:N7 j 2
["Z*Ic
Hap\X^
<&^lw'e
11+ni~
J;h+L8
/}R2}<KQ(
U<=!hJ
k7t x0
bSta6)
fV|j$g
wj,R}^
XT_7sU&
b,yxTD~
u/rLvy,
GVAsP"
ELxu`($
0x{(?O
>97IW$
]LaDqf@
A:GeN7
9JAz7a0
IBE8??P`
G+\8P'-
JPr#6h!
+Oe`A\
k=,4>Ck3#
P}Tkyg
MLI*]p
5/LF03o
e(RyF(
]P 2W"v
efh>r:p
8gM~Xk
}PIZSJY
?pX96f
'u6v"Q
tro4Dt
wL<eV
HsIN\aS
E*'D'k
%ANQ,Yn?
:yIG@`
d#6]&o
|5QGf
X"P7n'
Z#P+k6FZ*
FyDzoa1
YxL*od
Ul]e3$|
P"e{2|W
>4:>in
@5$ 'S
Z%%4=o
T2H!]WEc
xj7|v
YZFe08
~uY&en]
f$Eqe;
H.*qbne
~Y!t\Dy
LbYtg!
GzGJP3
V`LchaH
CRF*f|9
D1;Rlv
!@ hML
T/cR)9a&
v(`<zuo3
Sun'1K(
!kKkN,<
*1@!(1
>z42^J8\^
:JH>!C
$ =V $l
9E|&y(9
oayFKs
\OC%/3
?>mOy]
Sm5j0Z
<bdnik{
3U$Z:w
Mr1}@z
/NLh=CkN
gJh=PB
EUsM?L
{4DH]):U
v%Lw|w
O'm52^P
pbw.By
tH7<|+
J`;Rf/
OpEd,d
~W)`$M
J+O-O0
"",JKk
oy^0MN
)EJv;C
Q<;7g{
}pb=XD
Lf?lJw
(uH;?H:
w`xxYM=l
r?@O_2
k=t!yu
h*idf,
`tM&"j
b)r^ZZ
rxb>` +.
3AP![q
SbeoVi
R8KZ6
Q?:"A=GJ
d/+_Pm
P\kJ+1/
GetTempFileNameW
lstrlenA
WritePrivateProfileStructA
GetConsoleAliasesLengthW
GetCommState
GetConsoleAliasA
GetLogicalDriveStringsW
WaitForSingleObject
CancelWaitableTimer
AddConsoleAliasW
GetFileAttributesExA
_lclose
GetTickCount
IsBadReadPtr
GetConsoleTitleA
CancelDeviceWakeupRequest
WriteFile
SetProcessPriorityBoost
GlobalAlloc
GetLocaleInfoW
FreeConsole
GetVersionExW
GlobalFlags
GetNamedPipeInfo
FindNextVolumeW
MulDiv
ReplaceFileW
GetModuleFileNameW
CreateActCtxA
GetStringTypeExA
CreateJobObjectA
GetProfileIntA
GetLastError
ReadConsoleOutputCharacterA
GetProcAddress
AttachConsole
GetLongPathNameA
VirtualAlloc
SetStdHandle
EnterCriticalSection
_hwrite
LoadLibraryA
OpenMutexA
InterlockedExchangeAdd
GetFileType
CreateFileMappingW
FindFirstVolumeMountPointW
CreateEventW
lstrcmpiW
GetModuleHandleA
RequestWakeupLatency
SetProcessShutdownParameters
_lopen
FindAtomW
AddConsoleAliasA
DebugBreak
KERNEL32.dll
CharLowerBuffA
USER32.dll
EnumFontsA
GetCharWidthW
GetCharABCWidthsFloatW
GDI32.dll
MapGenericMask
ADVAPI32.dll
GetCommandLineA
GetStartupInfoA
RaiseException
RtlUnwind
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
HeapAlloc
HeapFree
WideCharToMultiByte
SetHandleCount
GetStdHandle
DeleteCriticalSection
LeaveCriticalSection
GetModuleHandleW
ExitProcess
GetModuleFileNameA
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
GetEnvironmentStringsW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
InterlockedDecrement
HeapCreate
VirtualFree
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
HeapReAlloc
SetFilePointer
GetConsoleCP
GetConsoleMode
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
InitializeCriticalSectionAndSpinCount
HeapSize
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
MultiByteToWideChar
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
FlushFileBuffers
CreateFileA
CloseHandle
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVexception@std@@
.?AVbad_alloc@std@@
9999999999999999999999999999999999999999999999999999999999999999999999999999999999999999y|
99999999999999999999
r999999999999999999D-
9999999999999999
l999999999999999
99999999999999
999999999999999y+YY
999999999999999
cTD99999999999H
9999999999
9999999999
999999999999
999999999999
9999999999999
999999999999
.999999999999
`99999.
999999999999999999
A999999999999999999H
<.999999999999999999
$.999999999999999999.H
99999999999999999999999999999999999999
??r?VD
#################################################u
!lBW##
THD##?
####Mn
#####vx
-######
8A#######3
#######|
########q
FQt##########
r########
)))))))))))))))))))))))))))))))))
XXXXXXXXXXXXXXXXX
iiiVM&MVVVVVVVVVVVVn
VVVVVVVVVVV
VVVVVVVVVV
VVVVVVVVVVB
&gFU%.&
VVVVVVVVV
&,VVVVVVVVB
VVVVVV/
VVV/VV
}U?_&\
LLFl||%O#
&&&&&&&&&
z_&&&&&&&&
&]]]]]SS
2DDDDDDDDDDDDD2
VVVVVV
VVVVVVV
VVVVVVVVV,&H
iVVVVVVVVVVVVVVVV-&
VVViVVVVVVVVVVVVk&.L
iViViV
iVVVVVVVVVVVVVV
ViVVViVVVVVVVV
VVVVVVVVVVVVVV
VViVViVVVVVVV
BBBgM(
***lUWwn
)**l*l
i
h8S+
sHxE(<xv
1m...............m
PPgPgP
fz.....z
.,P```````
.,gPgPgPPP^
.,ggOgggO
.,`ggOgO
>>>>>>I
hhhhhh
RLLBBBbi
n9rNr@r
LbMj,Z
%%KGuU
/-uv##``y_
ooICy&K
/LIbLbb
xA'''']x
]]]UUUUxx
a=5b8 4
}}||y}y
{{{|y}|
{}~}z~
~}{~{~
}}~|}}{y
~{~|~|y
}z||}~
}~|y{z~
|{~{z~
}~~}{{
~|}z|~
z{}~~}
|~~|{||
{||~}}
{}|~{}~
yz}{~z}
}~}y}~}
|z~~}~~
}|}{}|
|~~~|~
iiiiiiii
iiiiiiii
iiiiii
iiiiii
iiiiiiiii
iiiiiiiiii
iiiiiiii
iiiiiii
iiiiiiiii

2 2$2l2p2t2x2|2
0 0$0(0,0004080<0@0D0H0L0P0T0X0\0`0d0h0l0p0t0x0|0
1 1$1(1,1014181<1@1D1H1L1P1T1X1\1`1d1h1l1p1t1x1|1
<2@2H2L2P2T2
3(3,3<3@3D3L3d3t3x3
3"454e4k4p4v4}4
5C5N5S5Y5
6+666>6
7#7*717D7O7s7y7
8$8*83898?8F8M8S8Z8`8g8m8t8{8
9!9(9-939=9z9
:+:=:E:U:Z:b:q:}:
;';5;O;U;{;
020v0{0
0K5Y5`5i5z5
=-=5=@=
^0v0{0
:)=P=]=[?
131Q1X1\1`1d1h1l1p1t1
162A2\2c2h2l2p2
3Z3`3d3h3l3
45;5^5q5
1N2T2n2}2
3.383^3
4"4r4L5T5l5
< <$<(<,<0<4<~<
=#=(=,=0=Q={=
> >$>(>,>x>
0!0J0O0f0
00161K1T1
132;2N2Y2^2n2x2
3G3T3~3
5#5c5h5
8*8b8l8
:6;<;R;];t;
<-<_<x<
=$=+=R=X=c=o=
>&>,>9>C>J>b>q>x>
>#?)?S?Y?u?
-0P0Z0
1 1&1-131;1B1G1O1X1d1i1n1t1x1~1
21272S2
2!3)353
3(4.444:4@4F4M4T4[4b4i4p4w4
8<9\9a9g9k9q9u9{9
:$;+;5;_;m;s;
?)?/?I?N?]?f?s?~?
0.050;0I0P0U0^0k0q0
5k7v7~7
9W:w:g;
;w=W> ?Q?g?
4$4^4k4u4
858>8D8M8R8a8
=*=C=d=p=
6+717X7z7
8"8g8l8s8x8
:":(:6:?:N:S:]:k:
:M<T<Z<
7v8G:P:|:
<0>K>a>w>
0"040Z0g0u0
1@2K2y2
3[4$565C5O5Y5a5l5
9/969@9H9U9\9
=#=5=G=Y=
>0?6?Z?}?
> >B>}>
6O9U9Z9`9g9y9
<z>p?x?
1N2T2d2
<N?R?V?Z?^?b?f?j?n?r?v?z?
191C;J=
5G5R5V5[5
6$60686h6p6t6
7(7D7H7h7
84888T8X8t8x8
989T9X9x9
: :@:`:
;(;H;P;\;
0 0$0<0P0T0
2 2$2(2,2024282<2
2*5.52565J5N5R5V5j5n5r5v5
6$6,646<6D6L6
<P=`=p=
=*>.>2>6><>@>D>H>L>P>T>X>\>`>|>
?$?,?4?<?D?L?T?\?
0 0$0(0,0004080<0@0P0X0\0`0d0h0l0p0t0x0|0
1"1&1*1.12161:1>1B1F1J1N1R1V1Z1^1b1f1j1n1r1v1z1~1
mscoree.dll
KERNEL32.DLL
((((( H
h(((( H
H
viyaxod wunutadotujaguzisa mafisayelibogayavudebobeyijiheyi yehomotu
labatebaxayekatojijawexobedeyo hapufo
gubejogol movababehadiputetut
lerobeda
sizuzekakidilawikigu
wofewigapifacexehecowuninecimuzujurafajipusedolayebupatububofemixonotukejusuxukoxuluwud
azaforiyamalu
zucaceyigudezejenopi leroxiy
vujodojakuyah jukotomicoziseleyenokozeke
tabisukapetose
@jjjjjj
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
043831F6
FileDescription
OneField
LegalCopyright
Copyright (C) 2023, game
ProductsVersion
64.84.4.44
ProductName
SolarisDoors
ProductionVersion
55.77.17.57
VarFileInfo
Translation
>Sidumizu sococucakolife zivixu hivitixeziyeyoz hocecuzegorohiv2Jicehiyoja zibujevahuki danaruzamiz lizofimace kuvVSumumupobuxop jegenal gucuwukalocore kebeciw wibevo xep vocelugeyuc rofexomo foxenopopSSefo cigutizo wikucu jalilinosacuzu bifuxuweti harudacixox fewe xabevavahajal lobuy\Yetezewir xilazuvuyifufik fopacewo yuwulipidaxove luguza zifiwavi leno cuvakuvosa lanohawuno
Dajudoxu$Nurihaxasafi xivu guroloxoz boxanideaMip xiz wafinevosanus durifoseku wakopagoja lizuwucic hozudecucuwize dicihipewehog petufaxire favMZolomobip higaxu juraz sahuci gehoriz hezotasaxavijec morumivexo vin vinilideaFetirilibezawis yeteditat zadewaxefexumi leravoj wocavekivez burolo log dika xeporonetud yapakusaEZoho tori laneru sofugovutewoj codiki zibigohar jahoyemex vefugetaxar5Nohodudoy zog forarafohoy lubowewobewoboj honanezazip
\Tisex ziveletuvefubep guyucadirahat xuwesuj guruve ketofunalu mikuvizakosudo veyehebabaxizob
JWosivilu yupu zixuvuy velideso poxotepudocohed xiwofafupasic nagiwe zotihuJXovi nifuhezafoc bubocevotacinaj fidedaxunumiduh hebik zalajuritifu nujici,Batisu kebisuditiko wesifayojurazir gaviwiho
Pop&Kocafifan sulikagamub jegoh nimekucupu"Haleyoxa hiresazanadiri moposezuheZYoxadayubacini cozivahivefeho tatiworemed wuzese zidene vob gopobosivo pifimegisanoya yotuIDuzeveyobigelo dax pet vuyakatam seximayuduhokov lazakilejar zatafixofube>Nenacuhamoxa yute rewasicecoz bosupi xipuyigehubuh mivevakefig+Hojibefegus vawedimonikivi hehepuw jicituraVKipudifuwi purifetofefi per vubabetayab xekonubuxuvazeb zoh vuf vaziyibavaju kigenepon Zibefiwupuvujuv vejivo setecirigDSecosegoyucoxib fohalokifawe kakamoyu hubutegola tilesobey pugetonuz
Gegixuxo@Cazunaz wiy pokurumub moxukon gavejiheyema keyov luga bavucelujoPYacicemo dewet joyusupizopok zudezonu jekuyeluy mewozorolihuk pevolohaxa hamiyir
Zuvahosukuhitip/Kegutexezogat bapisowezorad jehaxusumonuv wumax
LHofe wavofoxevid kixeboyofucawed yiluvamamot pohadukiv zaxafezidenih ropuxom
tBudezizoxacaxem dusipuz silulepisik povohalayagene dalenakagewa guvowaropiyay mosidibinuj tobilofadifiduj dezofoyafo
MVatugonic batu xexa vicefalonivowax caziv femonim fobometafov pulabejupadumuvPNidulavacesad wofet sovabe zunuzifos zunatagitiji zerutu goviwuy yuzoxobamizevor
8Koyivukirife godikilal mugigexuf wanu fadaboza haluveyur;Mamorefacabaze mupizumafe walaherisizato ranoguhu morayalaf
FXiyihubejoburod rowobey ceza bazenutukop ladube zukasifolevo zivazivug
Zelar fonow kup
)Tif yazolakez jusebo wame gubofugokigijix
Risoxusa
BJiyu lolujeci tititomibi yaniyilobifijav reduza dagolo hejotemajuz
pZepuromox xihuzavom fupaxigikeduxo bimob migiviruwufo pigevatiw jetehegipejot lenucajibam xaguvajolaxag ginasuro4Bazefotufobil bum fagakesawaxa pedaz ladizac raz git7Vofulo buriyoc digamiyuli gahenege dumipayute zoka teha
OMinapebawola dotalovuni funiyefalez fagoyozunubudo xuponebutiton ciwixa zolepoc
.Peku jebim wuweril yayedovat zoxer wayicuxuwic
Yadadetoboj cel
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
tehtris Clean
ClamAV Win.Packer.pkr_ce1a-9980177-0
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!016341463C7F
Malwarebytes Trojan.MalPack.GS
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005690671 )
BitDefender Clean
K7GW Trojan ( 005690671 )
Cybereason Clean
Baidu Clean
VirIT Clean
Cyren W32/Kryptik.JUT.gen!Eldorado
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/GenKryptik.GKFC
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Rising Trojan.Generic@AI.100 (RDML:CilotW1vpdirHvUh1ljsvw)
TACHYON Clean
Emsisoft Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Worm.gc
Trapmine malicious.moderate.ml.score
FireEye Generic.mg.016341463c7fc28b
Sophos Troj/Krypt-VZ
Ikarus Win32.Outbreak
GData Win32.Trojan-Stealer.LummaStealer.YUHVPW
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Gridinsoft Spy.Win32.Gen.bot
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
Microsoft Trojan:Win32/Redline.SHL!MTB
Google Detected
AhnLab-V3 Clean
Acronis suspicious
BitDefenderTheta Clean
ALYac Clean
MAX Clean
DeepInstinct MALICIOUS
VBA32 Clean
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Static AI - Suspicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Kryptik.HTQJ!tr
AVG TrojanX-gen [Trj]
Avast TrojanX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.