Static | ZeroBOX

PE Compile Time

2023-05-28 06:10:48

PE Imphash

f785b0c64982fe4ad638456ea1aec30d

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00016d0f 0x00016e00 6.65927162618
.FtMHL 0x00018000 0x0000ba9a 0x0000bc00 6.23168622008
.rdata 0x00024000 0x000056ae 0x00005800 5.26337813229
.data 0x0002a000 0x00072948 0x00070a00 7.95047336443
.rsrc 0x0009d000 0x00000610 0x00000800 3.32989435011
kzqjs 0x0009e000 0x00001000 0x00000d4c 4.74988809603

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x0009d200 0x00000410 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x0009d0a0 0x0000015a LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with CRLF line terminators

Imports

Library KERNEL32.dll:
0x424020 GetLocaleInfoW
0x424024 SetStdHandle
0x424028 WriteConsoleW
0x42402c GetConsoleOutputCP
0x424030 WriteConsoleA
0x424034 LoadLibraryA
0x42403c GetStringTypeW
0x424040 GetStringTypeA
0x424044 IsValidLocale
0x424048 EnumSystemLocalesA
0x42404c GetLocaleInfoA
0x424050 GetUserDefaultLCID
0x424054 IsValidCodePage
0x424058 GetOEMCP
0x42405c GetACP
0x424060 HeapSize
0x424064 CloseHandle
0x424068 CreateFileA
0x42406c ReadFile
0x424070 FlushFileBuffers
0x424074 GetConsoleMode
0x424078 GetConsoleCP
0x424080 GetCurrentProcessId
0x424084 GetTickCount
0x42408c GetStartupInfoA
0x424090 GetFileType
0x424094 SetHandleCount
0x4240a4 GetModuleFileNameA
0x4240a8 GetStdHandle
0x4240ac WriteFile
0x4240b0 ExitProcess
0x4240b4 HeapReAlloc
0x4240b8 VirtualAlloc
0x4240bc VirtualFree
0x4240c0 HeapCreate
0x4240c8 MultiByteToWideChar
0x4240cc GetModuleHandleA
0x4240d0 SetFilePointer
0x4240d4 GetProcAddress
0x4240e0 WideCharToMultiByte
0x4240e4 Sleep
0x4240e8 InterlockedExchange
0x4240fc RtlUnwind
0x424100 TerminateProcess
0x424104 GetCurrentProcess
0x424110 IsDebuggerPresent
0x424114 RaiseException
0x424118 GetLastError
0x42411c HeapFree
0x424120 GetCommandLineA
0x424124 LCMapStringA
0x424128 LCMapStringW
0x42412c GetCPInfo
0x424130 GetModuleHandleW
0x424134 TlsGetValue
0x424138 TlsAlloc
0x42413c TlsSetValue
0x424140 TlsFree
0x424144 SetLastError
0x424148 GetCurrentThreadId
0x42414c HeapAlloc
Library USER32.dll:
0x424154 GetWindowRect
0x424158 IsMenu
0x42415c GetSubMenu
0x424160 SetDlgItemInt
0x424164 GetWindowPlacement
0x424168 CharLowerBuffA
0x42416c EnableMenuItem
0x424170 CheckMenuRadioItem
0x424174 GetSysColor
0x424178 KillTimer
0x42417c DestroyIcon
0x424180 DestroyWindow
0x424184 PostQuitMessage
0x424188 GetClientRect
0x42418c MoveWindow
0x424190 GetSystemMenu
0x424194 SetTimer
0x424198 SetWindowPlacement
0x42419c InsertMenuItemA
0x4241a0 GetMenu
0x4241a4 CheckMenuItem
0x4241a8 SetMenuItemInfoA
0x4241ac SetActiveWindow
0x4241b0 DefDlgProcA
0x4241b4 RegisterClassA
0x4241b8 EndDialog
0x4241bc SetDlgItemTextA
0x4241c4 GetClipboardData
0x4241c8 CloseClipboard
0x4241cc GetClassInfoA
0x4241d0 CallWindowProcA
0x4241d4 SetWindowLongA
0x4241d8 IsDlgButtonChecked
0x4241dc SetWindowTextA
0x4241e0 CheckDlgButton
0x4241e4 GetActiveWindow
0x4241e8 LoadCursorA
0x4241ec MessageBoxA
0x4241f0 wsprintfA
0x4241f4 GetDlgItemTextA
0x4241f8 SendMessageA
0x4241fc GetCursorPos
0x424200 TrackPopupMenu
0x424204 ClientToScreen
0x424208 DestroyMenu
0x42420c CreatePopupMenu
0x424210 AppendMenuA
0x424214 SendDlgItemMessageA
0x424218 GetDlgItem
Library GDI32.dll:
0x424000 GetStockObject
0x424004 DeleteObject
0x424008 SetBkMode
0x42400c SetTextColor
0x424010 CreateFontIndirectA
0x424014 SelectObject
0x424018 GetObjectA
Library kernel32.dll:
0x49ea9c ReadThread
0x49eaa0 ReadHandle
0x49eaa4 QueryStyle
0x49eaa8 OpenBrush
Library user32.dll:
0x49eab0 UnregisterProcess
0x49eab4 ReadCursor
0x49eab8 CreateThread
0x49eabc GetStyle
0x49eac0 DestroyProcess
Library advapi32.dll:
0x49eac8 TerminateClass
0x49eacc AllocateMessage
0x49ead0 RegisterEvent
0x49ead4 AllocateBitmap
0x49ead8 SetWindow
0x49eadc TerminateTimer

!This program cannot be run in DOS mode.
`.FtMHL
`.rdata
@.data
@kzqjs
tz9uvj
F09^(u
<xt.<Xu,
<xt.<Xu,
QQSVWd
0WWWWW
PPPPPPPP
0WWWWW
HtHu4j
s[S;7|G;w
YYh<PB
tR99u2
GWhpQB
t"SS9]
^SSSSS
^SSSSS
_VVVVV
^WWWWW
0SSSSS
t h,PB
u&hP`B
>=Yt1j
j@j ^V
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
0A@@Ju
0SSSSS
0SSSSS
Vj@h@gB
u%h jB
FVhpQB
PPPPPPPP
t+WWVPV
0SSSSS
_VVVVV
;t$,v-
UQPXY]Y[
URPQQh\/A
^SSSSS
j"^SSSSS
HHtYHHt
u,VVWV
t VV9u
<+t(<-t$:
+t HHt
u;hdrB
u,h\rB
t4h\LB
t:hDLB
bad allocation
fobdhfdifjzecplanguopkireqmixneojnogrfbkodabrppwxcwaxmzrymiyluylzbmmjzpyhyfuls
tdnvuuzyzmebgfcdqzjdf
plzdmrulhkgfag
iedkkguuypaokwcmcblodigqhbklymaycfmieyfyjocnjrczqvymivaigddufupzhfdyydmueukgnqpmuwrxpbemswfjsjufg
iedkkguuypaokwcmcblodigqhbklymaycfmieyfyjocnjrczqvymivaigddufupzhfdyydmueukgnqpmuwrxpbemswfjsjufg
iedkkguuypaokwcmcblodigqhbklymaycfmieyfyjocnjrczqvymivaigddufupzhfdyydmueukgnqpmuwrxpbemswfjsjufg
kefaawsiuczbbnapbjanezujntayxloxqnnejxhaibouttsaxtvcnrdfejespgbwkogdrpveexdnsjqqyozaa
qswxmhhnizssrikuuxfgkeqjovmygafhjwxbueie
kefaawsiuczbbnapbjanezujntayxloxqnnejxhaibouttsaxtvcnrdfejespgbwkogdrpveexdnsjqqyozaa
kefaawsiuczbbnapbjanezujntayxloxqnnejxhaibouttsaxtvcnrdfejespgbwkogdrpveexdnsjqqyozaa
kefaawsiuczbbnapbjanezujntayxloxqnnejxhaibouttsaxtvcnrdfejespgbwkogdrpveexdnsjqqyozaa
kefaawsiuczbbnapbjanezujntayxloxqnnejxhaibouttsaxtvcnrdfejespgbwkogdrpveexdnsjqqyozaa
zzehuxxcjt
uxakttrcpcmjmyrmxwldnsigtvtpaqlpphsfqrpqpvyquyfujlewvsdyuhatqpkq
fsdxnnxejtqvbeyvyxmeducsgblbemcvglbvelzsatzzjnrtdxiveppjljkvnqdkwx
fsdxnnxejtqvbeyvyxmeducsgblbemcvglbvelzsatzzjnrtdxiveppjljkvnqdkwx
fsdxnnxejtqvbeyvyxmeducsgblbemcvglbvelzsatzzjnrtdxiveppjljkvnqdkwx
sktprtqwbxlzzujmxawaktizidcgvtrryyftg
nrfalfeuqvndbphvjbnmmpcyjwqiywisennoc
xzlrnxawqtcovvm
shstjoyhcfffqfqzvalkgwj
eokvhfmqlsigvvcykqgfliqntezqnaphmnsobampcwpiy
ywiurgdzabcieirp
vfzhkkofdsxwrskduvhrrsbamsvbchhlibnytdeyqldjxjidisjehqggoobnzdgafdftrhzizlkfqjxsk
qchyymyoqcphcufustvuzydmrpess
ntwtjptccfevymiktjhfhzeffudyuvvdjixgqtzpyvskjfghozveojfzzaltpcodbbgiskalxdiejttygiqieqfmdp
berlnnmwyiduqdysiafaekkddcdcxnwbgqaaclhwijxwwltvzidmebolbfsv
agbvrcdbfkjypkafyfmhlfftc
VirtualProtect
FreeConsole
Console freed.
Failed to retrieve function address.
x is equal to y!
x is not equal to y!
Sum of array elements:
Enter your name:
Hello,
Enter a number:
is even.
is odd.
Count:
Sum of a and b:
is even.
is odd.
Flag is true!
Flag is false!
Value of f:
Number is positive.
Number is negative.
Number is zero.
Array element
x is equal to y
x is greater than y
x is less than y
Hello, world!
ios_base::eofbit set
ios_base::failbit set
ios_base::badbit set
vector<T> too long
bad cast
0123456789abcdefABCDEF
bad allocation
string too long
invalid string position
0123456789abcdefghijklmnopqrstuvwxyz
0123456789abcdefghijklmnopqrstuvwxyz
Unknown exception
bad exception
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
GAIsProcessorFeaturePresent
KERNEL32
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
(null)
`h````
xpxxxx
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
`h`hhh
xppwpp
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
CONOUT$
GetProcAddress
GetModuleHandleA
MultiByteToWideChar
GetEnvironmentStringsW
KERNEL32.dll
GetDlgItem
SendDlgItemMessageA
AppendMenuA
CreatePopupMenu
DestroyMenu
ClientToScreen
TrackPopupMenu
GetCursorPos
SendMessageA
GetDlgItemTextA
wsprintfA
MessageBoxA
LoadCursorA
GetActiveWindow
CheckDlgButton
SetWindowTextA
IsDlgButtonChecked
SetWindowLongA
CallWindowProcA
GetClassInfoA
CloseClipboard
GetClipboardData
EnumClipboardFormats
SetDlgItemTextA
EndDialog
RegisterClassA
DefDlgProcA
SetActiveWindow
SetMenuItemInfoA
CheckMenuItem
GetMenu
InsertMenuItemA
SetWindowPlacement
SetTimer
GetSystemMenu
MoveWindow
GetClientRect
PostQuitMessage
DestroyWindow
DestroyIcon
KillTimer
GetSysColor
CheckMenuRadioItem
EnableMenuItem
CharLowerBuffA
GetWindowPlacement
SetDlgItemInt
GetSubMenu
IsMenu
GetWindowRect
USER32.dll
SelectObject
CreateFontIndirectA
SetTextColor
SetBkMode
DeleteObject
GetStockObject
GetObjectA
GDI32.dll
InterlockedIncrement
InterlockedDecrement
WideCharToMultiByte
InterlockedExchange
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
RtlUnwind
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
RaiseException
GetLastError
HeapFree
GetCommandLineA
LCMapStringA
LCMapStringW
GetCPInfo
GetModuleHandleW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
HeapAlloc
HeapCreate
VirtualFree
VirtualAlloc
HeapReAlloc
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
SetHandleCount
GetFileType
GetStartupInfoA
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
GetConsoleCP
GetConsoleMode
FlushFileBuffers
ReadFile
SetFilePointer
CloseHandle
HeapSize
GetACP
GetOEMCP
IsValidCodePage
GetUserDefaultLCID
GetLocaleInfoA
EnumSystemLocalesA
IsValidLocale
GetStringTypeA
GetStringTypeW
InitializeCriticalSectionAndSpinCount
LoadLibraryA
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
SetStdHandle
GetLocaleInfoW
CreateFileA
@(\l$0
xHHDpx(
ttlD,dd
<$D($P
,(H$xt$`$L
0,|0lH(p
lLLdDL
8th`T\
b{(1`Ub
]3XWeT
YC5p?EP5
9XG.X/
;<Nc9F^
|0'oyl
OO\=#;
?>P-$t
xPH1;
iY,s1@
\4f8_/
[`YK#q<
PghUU;4
@!:Y$[
Ys0?*)
kkXKyO
[mHO;d;Q`
4[,_8<
nC&-M B$
Ucz1oo
"=J!K
Aqa^ImU?%
%<{AyY
,i'U5W@w
$N7R;],
waLckZ
iepY|\
b!EQ^y#
M@'yt-
8~z&K
)x^%9/
c%]|B=Gy
?m&z{y
P!s^BI
@6j9,
Pc[&m=
p;:"q3
C^MtiS)
?9$Vg d
SC~ua5"aQ
uF]Knf
:aj5&M
%c!W"tW#O-
|CELGr;(
)Y~;I[
qWK>G-$
'u0iPl
q._U;9
Toiw)O
<>gZB=!1
X_ZZ'A
|)RCA~
aNI@=>q
k74[s2
N64+krCQc
%ZCJz
rs1%+O
;'"Ki#
wNf!_[mf
E.[E%
9R3|Op
T?hJ1{Q
\gJJ}
Zyy Qu(.r
VEWI~#
O`g;bS]
`?fd3O
sAJ7Dn
7M@9w24
zGA15w
6N!Q=F
[IM,"s
Y"q95Zc
=zSYSrS
;"1"-R
`aP #
M)|59T
e2MvEJS
*#IfksF
O~+mTy
SYn|
>3)qvk
pjnW9j
MGL}9Y|
KW.Y-qzw
j}Ku&)
b59e2Y^
CYkNkB
)V7mjP_
r7}iZk.
"=rO@N
P=ZM+Y
Eil]A`b*k
a0ACNN
@0cnb+}
o9puc)$
Ri.=}M
hIi84/m?
AmYEr&
,$4,ye0
&^w=iX
N.O!=.
1'[gu<
j_Y; C
VL_)D;
l?nZM
[>4cM8
lob{%4
Um[s&>
)U]$:P
IQl'#>OY,
w;rwqH
',73j#
q##lSS~
1e/9`WU
u Z\dWG
(#V7YHkaD<
0e>sia
J.qn]:)
IwxGVj
z[b"Q!
y+=NoY
8o2&M=
N[m#Dz
6W~$'0
I^=Ai"
2/W`'/
}^C1!T7
wt;^F9
MqdJ)C}
-C4cW@
BNc-gT
v;%[Wf
c-`e[ld
5P>!1_
{EAP/eX3u
T9r}#1
Y~?R*q
j^1a=n
C}GpCJj
^CeSFK
!jURlh
,/+72:
[Co`/_k
C!1qe<)
P4uC;7
S}O<=4
PyT-LT|
gi78Zz
<8:<L
JiHk,0
&mMlON
v` =ii
3}w!,\v
t\39AH
5-h\5L
:hOq4H>4*Z
1!pt*d
|^xlg``
H./a]Z
Xqah
8'i G!
[L78:>
B(wd#<
]lwY|'
p\I<xE
:I#+b<
w_U p/
[z\h!W'iylt
PWPk$J@9
v*]@O5
@\Tsw_
d><jHg
ZJ7a?t
_{ |J0
^!Dh[=<O}
AHg1<(K>3
(LIsl<
S\4E0hJt
g*gd @
G7C-udJ
Q@U)#h
`aTx$1x
`Lz$(,P
MvT[<q
@,4wFrPtd|
Q{K&F|
XDEe)p
^r4.(VC
_?RL\_
osCHT$
)o\v_J
31ecqs!
xht(?o
Z;#2m~
E<iZl
Bi0+}Mps
$ T\<<d
\`D4,
(ttxtP
>P@&>`
t p*h"\
z.ljzj
]f5DzH
%4!wRH4
7:3t0@
RKy.wK9
aE6dntD
fm$tk~
a^!ZYR$
+XYe(xG
o\:'a
l1?a~T
q7(c$IDb
dPc&/"
V`!ix!)
oI j,R=M
_ !D]}
Yxzbp-
iqXE5a
5YeqvM&
m2.6Daz
?qK$J^
?eQXhyM
X-l0oBJ
^h58X;
Y!(!o:
6^QA`p
Y8}9O9
Cf",Ez
WNBIU;C
Tu}:}!w
v?-v16
yCdA '
-?[~Iy
x")%Axh+
gUGEPM
$tCBV0+
mU\a$9_
$(i_Ya=it?
JNHiq|
/m=]<RY
3I9n?M
7A$@g_
t@cu)R@!
3OmJm^
|%j&F8
RLi]HvI
t11pMY
QuqWY?
VK>=cA
E64Sx1
].el,a
4O*};n
h,AIkHF)}V
}VEyu-Y
LN\mIU
;ERMS'
1kkMQ&T
q4@+$2
yYe9)4
dx|7TV
[T!Q\W)V
&C%aPl
xaQ%9N
YJ$]BL`
[_\`91
*aj=r51(
y]A)vUHp+
81yP-c
}WR+vU
sQe`"}
Bx>YM,
)QAL;$
V\TR_-d8
e!!Z$~
uuP6#)U[
{f=T}
jJz]i#
)P!Q5=
VUvKLE
XY~^2y
EB]9N1(
FIe%+`
aL\U>xs
)EwL1"
A~xaaI
|(NA5NKL
'yT\ lU:a
\!ssYd
%W v+}
o{l01y
5Hug-b+q
Q"Y}08qe
H=wI1$0
I)}H)!
bB@h@I
=~1!)r
uE2|ejD
4GpU*]
U|@ke66"mtga>
b!.\x[U
NZ-!=&
K=~:M5f
@7G9fq,
vBex$i
JKR%>P
q%'1uQ
`nj95&
&`&pS
Pe, -M
aau#yI
LmZv)7a&B
AzBRe`
}H!qewM
U8q-;N
:u$|;P
%k|1%1Mc
2v&d%Pt
I]1z.RA
lz>pHd
1pT=V2
0_t%hBf
H[}Ld+a{
Q$wq\QC
1}O\n}>
qqk5! U5
AXr8y6
{%|I)g
"j~DD%
zuDp'Q
^9YjqyP&8
iUH1)]
^Zyn)w
R<}?Ug
:(2Vi<
&U \oR
Hc)I Hc8'
fL'EhuXX
DHeEEw
E`5zEo
u1mF9
~bINNAxd
bDxPY$
,c`>!0
q\'SM!
Q"4P.d@5Yn
pP.pAOr
-\rML%wVm
nq-!HI
q%=,K]
q$yix
=/S29
T kTi?
*tn]9m
<I%Tz[
y%/5}ev
YFF}92
N25+=KrQ.
>Xj!aN
yiTt}Y
r(I49H
F"wV1h
vPasAQ
XzMQ8q
$}1q5<
<gbAAh:kVmo
=-[L]G
)(AEjU)l
cJ!QBb*
tYh[Zzw
^q8cw=U
)zL2Q5#;
+<0}x0R
iu}~y}x~
Tb1B;
J5]gXJ
ntk@hqi,7
u(DCF0
9gmhFb
%vejWW
0,5xcI
`6Lbj}
Ema)'"y
!K]I2%
[0r}m!y
yEF]WeF)
4+p4a@
'_'owM
!$)7&;
*7}.u]
Uon%U5
QE<_n7
\"}O0l
K3:6<#x
=e}"FB
pM!^eM
-);a8Q
?tK&X8
l+0~gF-m
6(Uf6Q6
<z]\}
"OGJtP
U]^6Ty
9QsI\C
tixLGJJ
erY50_
V}G~e*
Y$2vz#
rRSm>W
X$EhDO
/Gl=s~
h-o"xNl&
Ydho$M
1-%U_
7ZF54x/:u
u1dCRF
Ux`iL.1
kpI>ZF
kJi)UY
Ae29*y
x+!Y<$
oGe!keD[M9
iYNeq.
10v#%@Q
G,3y^X
$qG~!CY
wegMS-
{\^m#l
%EO!tD
8y\XoDO
YM~$B^E
E{e,Vd
-WMpze
~]YX4W
0Tg{I<
7!XJUs
8g>RUI
TA5"8i
hg$]5na-
z;7 %1(0k
w}<Yd<
XIK-uq%
<!m{1/
!\XL!M
f.Qx^1/
"6{ERH
-*a#5Q
E:Y]a;
c@%4Qi
n=i/VG
AAu*8c
INJEYV
K/heud
}a}[{Q
<qu|O9
D,s1(n
jM1)}7
5MN }=s
A#)HMa`
0)hMQ3
~*;0usH
^1T<O4
z`'}45
Yr5mDoy
T\c&X5>
anAai[
!i%avM1
T_60#7
G6Z>1\(y
c7uO#Y
ARL)?|tnyJ
=n.lA.
t00vbt
@C{R,Qv
g5IQ0,
#yq(<,=l
>DJJ-5
NL-N-,'
W$)mo8
Hprh3}
sY=-eP]
2>LTaF>
U5Z'sin:^2\
vMmIS-%QE
$u`8W5
gKiV/}N
?QhIs1
&56aq4
_9S-9)
)a)x-S
y(5&UCI
6<zih@
$$bR],)
z79'dq
Re"k,M
8DyB\-q
Sh(JE@
V<\/a]
:>-5Fr
!5968UQ
ewUN>l5
uIqey,
Y _QL)|
QM"21a
}bN&,qLh
7JM(vr
IdxBu9f2
h4mn>
'j-|;ihx
}|GN/4
>!MF4
O15p=Id
;-nR>
9*P<WI
Qkk4Wi
d6^1Ut
S< E9-
+ C]a8
M=Le$bg
$%]7C31
3i]i,)
zEipiM
Gy/%/j
=xPSF5(
,z\;s9
CIi8Q|`
n9?ZEE(
qUF]Om
`TpGYe1
4q;>2
}eP|gh
w~=)Ui5I
MJ6U$9
Ay}NO1
!L=>B7N(
Zvo"<1
g;!z>oaj
UY^IR'
ciU#]B{
b1h%mn
>5/5]+
)MP9AFmT
mu1wgb
RxUsBz
Q."Tb=e
<19e=k
Ve]M$ Q
|Y39 e
RxzM>5G
K1kapT
^-])o%
t!QMy8
={Q _
V.YJ5,
\oD&4A
Ux#N2I,
d_pYTS
Amyt>NW
bIEO>K
}d/)KEdL
]bUs{Lt
SIu)|9
<LHe!m
U_]jL@u
AY1}ay
=;E'kAQ
Q(n0!?
L(s"&3+$XD
YK_A]y
5.$UTE
U!?%mZ
J6mE%
I jM!G
e}.e_B9t
yzn%%
m)|1Ei
*.'/WK-
9u(d"z90
(Nw9p<
lQ8ur*
^}d8sJ
Pcxy[_
a:YA- v
@E[W$!08
%uyI!7
T>A) O
-,PGs`
9|x/e]
cDU($[
~?7~5L
QJ:Jk9
,g91Q]
D5qX[)
4AFac^
0vZj1R
}(D~}]
Sf3eyjN
L!z^rV
mt/8jYMn
WzyBx*-
-Hp_ZI
!pyg`W$
!Ee}l-}E
z9.<%
S81Phs
=L)apD
V$h>&0fY
WS\7TQf
%mbb0S
}+VY@q
qI|c1h
iAQZeM
x?)s#
8pv*%q
@A%@<[
E^;wus^}
$x{=E]
}~iP}m
M>Jc=8
2$nB:D
}d]@`P
1q,~MX
Y)Sd3q)|
^yO$yZ
nz=rA>r
\>v!Q7u
vWoxU-
k0Gju%}cc%p
D;z1yQ
h%=_OgUX
1an\ukUT!
!R|_1P#
Q%j$c|
r=IDw1
.iLq[ru
1?$#e_55G!E
('Dm1c
0YwUqv
v)bNIy
Staoq41
j5$17@Q)
U6A 6=
s) ZYUe
2+o5'^
4HvE=Up
<{"aIA
;93V*
A_g-7/
*<]MsX6
y%vhL)q
BRs!E7[Q
ELWMU+
Fz1BEu
G,9u_`n
YYFni9
BQ<%3m
`Y=DL^I
uXQRq^
0'|Ih,
l.Fy8h
k*ji^m
5}|b4%
0=0aYTc
%Ayp=)UKj
M;R@!`)
IMj)Rm
l('^DV
t#$yM
E.Fl0.
qpxgqM
?E ;(`(
T@}%i \.
7^/5rz1
xf1=I
%A-nQm@<
R]X(;g
+ |x-%
L'-\$2u
a?/lm!
~eR3i;
5m=rpd
RYLc}&1
!i.*Nd
:mM4XS
VI`(Nv
n-rL]hM]
#Cd-hMa
!ETHG_
,LKQuI
q=w`uY
vB05-h
-..)uUQ
%yt<Ky,
5Dyx,
YeH8g!
6W)[q@(#>
44]]H$
]:F,5#N
*SYa+'
H!m8$;
M@_<-U
{2a3m3%
z\Fq[A
${BztQ
o`ENeB
gY,xr0
-ue^T*
jiK$@:
AeX,l]
Fy4l[9
xT[i^go
b9=)$9SLZ#
A\#uA!}
7)YUpd
U" BA5gXs=
95r6li<
ha`Hsb
$ueunWQ
}uy@tS
x[(nm*
~p2j?R
dY9]1Bm
M1h CerCM
uqm)H!
4u;sw)
<+iQ0>
{&y:|R
2rf}|_
`EUeO:9
U9wFyb
99ao=7>5
3lr5Q2
%lzxUhP
&)\mor?
U!leci
Q!@PKg_fI"
TU-j97
{-]oBU
Miy"XE
t_z$$/
8{r!sw
F :%X4
Jz9Ex,
=/%$AU
;A<1lu
V#U.s!q
X=@Kr7
Nl~)FA
(X+43CM7
<qZ~/<
%dY]<C
{5wGS$ dV
o]% x^
EQbMa{
4HBlm&
(fi-#t
.NqIGJ
L%K5VW
"Tu])>
dtDtP L4
N9zY"!j1
7Mb&d$0
w-PLNO
KP@F6a
(v!)x
{={9Xs
i@5dE6
j+z)m:
6;q`>;
LpH$n*
pT$@`X
<\(Lx0
vr{%?
|<d<l
,Fy}aD
P{9/+'l
T(X td
tp8ldL
$|LP``
80P\,8
H(h8L\p
d,L|xT
xP,4<H
8H4xd8@H\
<p$8Hl,
.?AVfailure@ios_base@std@@
.?AVruntime_error@std@@
.?AVexception@std@@
.?AVlength_error@std@@
.?AVlogic_error@std@@
.?AVbad_cast@std@@
.?AV?$ctype@D@std@@
.?AUctype_base@std@@
.?AVfacet@locale@std@@
.?AVbad_alloc@std@@
.?AV?$num_put@DV?$ostreambuf_iterator@DU?$char_traits@D@std@@@std@@@std@@
.?AV?$num_get@DV?$istreambuf_iterator@DU?$char_traits@D@std@@@std@@@std@@
.?AV?$numpunct@D@std@@
.?AVios_base@std@@
.?AV?$_Iosb@H@std@@
.?AV?$basic_istream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ios@DU?$char_traits@D@std@@@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AV?$basic_filebuf@DU?$char_traits@D@std@@@std@@
.?AVcodecvt_base@std@@
.?AV?$codecvt@DDH@std@@
.?AV?$basic_ostream@DU?$char_traits@D@std@@@std@@
.?AVout_of_range@std@@
.?AV_Locimp@locale@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
KERNEL32.dll
GetLocaleInfoW
SetStdHandle
WriteConsoleW
GetConsoleOutputCP
WriteConsoleA
LoadLibraryA
InitializeCriticalSectionAndSpinCount
GetStringTypeW
GetStringTypeA
IsValidLocale
EnumSystemLocalesA
GetLocaleInfoA
GetUserDefaultLCID
IsValidCodePage
GetOEMCP
GetACP
HeapSize
CloseHandle
CreateFileA
ReadFile
FlushFileBuffers
GetConsoleMode
GetConsoleCP
GetSystemTimeAsFileTime
GetCurrentProcessId
GetTickCount
QueryPerformanceCounter
GetStartupInfoA
GetFileType
SetHandleCount
FreeEnvironmentStringsW
GetEnvironmentStrings
FreeEnvironmentStringsA
GetModuleFileNameA
GetStdHandle
WriteFile
ExitProcess
HeapReAlloc
VirtualAlloc
VirtualFree
HeapCreate
GetEnvironmentStringsW
MultiByteToWideChar
GetModuleHandleA
SetFilePointer
GetProcAddress
InterlockedIncrement
InterlockedDecrement
WideCharToMultiByte
InterlockedExchange
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
RtlUnwind
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
RaiseException
GetLastError
HeapFree
GetCommandLineA
LCMapStringA
LCMapStringW
GetCPInfo
GetModuleHandleW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
HeapAlloc
USER32.dll
GetWindowRect
IsMenu
GetSubMenu
SetDlgItemInt
GetWindowPlacement
CharLowerBuffA
EnableMenuItem
CheckMenuRadioItem
GetSysColor
KillTimer
DestroyIcon
DestroyWindow
PostQuitMessage
GetClientRect
MoveWindow
GetSystemMenu
SetTimer
SetWindowPlacement
InsertMenuItemA
GetMenu
CheckMenuItem
SetMenuItemInfoA
SetActiveWindow
DefDlgProcA
RegisterClassA
EndDialog
SetDlgItemTextA
EnumClipboardFormats
GetClipboardData
CloseClipboard
GetClassInfoA
CallWindowProcA
SetWindowLongA
IsDlgButtonChecked
SetWindowTextA
CheckDlgButton
GetActiveWindow
LoadCursorA
MessageBoxA
wsprintfA
GetDlgItemTextA
SendMessageA
GetCursorPos
TrackPopupMenu
ClientToScreen
DestroyMenu
CreatePopupMenu
AppendMenuA
SendDlgItemMessageA
GetDlgItem
GDI32.dll
GetStockObject
DeleteObject
SetBkMode
SetTextColor
CreateFontIndirectA
SelectObject
GetObjectA
kernel32.dll
ReadThread
ReadHandle
QueryStyle
OpenBrush
user32.dll
UnregisterProcess
ReadCursor
CreateThread
GetStyle
DestroyProcess
advapi32.dll
TerminateClass
AllocateMessage
RegisterEvent
AllocateBitmap
SetWindow
TerminateTimer
Western Cape1
Durbanville1
Thawte1
Thawte Certification10
Thawte Timestamping CA0
121221000000Z
201230235959Z0^1
Symantec Corporation100.
'Symantec Time Stamping Services CA - G20
http://ocsp.thawte.com0
.http://crl.thawte.com/ThawteTimestampingCA.crl0
TimeStamp-2048-10
Symantec Corporation100.
'Symantec Time Stamping Services CA - G20
121018000000Z
201229235959Z0b1
Symantec Corporation1402
+Symantec Time Stamping Services Signer - G40
http://ts-ocsp.ws.symantec.com07
+http://ts-aia.ws.symantec.com/tss-ca-g2.cer0<
+http://ts-crl.ws.symantec.com/tss-ca-g2.crl0(
TimeStamp-2048-20
DigiCert Inc1
www.digicert.com1$0"
DigiCert Assured ID Root CA0
131022120000Z
281022120000Z0r1
DigiCert Inc1
www.digicert.com110/
(DigiCert SHA2 Assured ID Code Signing CA0
p1f3q>
http://ocsp.digicert.com0C
7http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0
4http://crl4.digicert.com/DigiCertAssuredIDRootCA.crl0:
4http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0O
https://www.digicert.com/CPS0
DigiCert Inc1
www.digicert.com110/
(DigiCert SHA2 Assured ID Code Signing CA0
201104000000Z
231108235959Z0p1
Bayern1
TeamSpeak Systems GmbH10
TeamSpeak Systems GmbH0
/http://crl3.digicert.com/sha2-assured-cs-g1.crl05
/http://crl4.digicert.com/sha2-assured-cs-g1.crl0L
https://www.digicert.com/CPS0
http://ocsp.digicert.com0N
Bhttp://cacerts.digicert.com/DigiCertSHA2AssuredIDCodeSigningCA.crt0
25E)ncF7
DigiCert Inc1
www.digicert.com110/
(DigiCert SHA2 Assured ID Code Signing CA
Symantec Corporation100.
'Symantec Time Stamping Services CA - G2
201125140737Z0#
((((( H
h(((( H
H
KERNEL32.DLL
(null)
mscoree.dll
VS_VERSION_INFO
StringFileInfo
040904E4
Comments
89xsFFtL50ny6xUspFdoyy6dFsphWF
CompanyName
The Home Depot, Inc.
FileDescription
The Home Depot, Inc. Product
FileVersion
8,899,96,489
InternalName
PFI9RMldpu
LegalCopyright
Copyright
The Home Depot, Inc. All rights reserved.
LegalTrademarks
Trademark
The Home Depot, Inc.
OriginalFilename
aA86qISn
ProductName
9hlzzkvdzc8g
ProductVersion
8,899,96,489
VarFileInfo
Translation
<<<Obsolete>>
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
tehtris Clean
MicroWorld-eScan Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!63D2AB075242
Malwarebytes Clean
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
CrowdStrike win/malicious_confidence_90% (W)
Baidu Clean
VirIT Clean
Cyren Clean
Symantec Clean
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Kryptik.HTQK
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Clean
TACHYON Clean
Sophos Generic ML PUA (PUA)
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
Trapmine malicious.high.ml.score
FireEye Generic.mg.63d2ab075242a38f
Emsisoft Clean
Ikarus Trojan.Win32.Crypt
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Gridinsoft Trojan.Heur!.00012031
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
GData Clean
Google Detected
AhnLab-V3 Clean
Acronis Clean
BitDefenderTheta Clean
ALYac Clean
MAX Clean
DeepInstinct MALICIOUS
VBA32 BScope.TrojanPSW.RedLine
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Static AI - Suspicious PE
MaxSecure Clean
Fortinet Clean
AVG FileRepMalware [Pws]
Cybereason Clean
Avast FileRepMalware [Pws]
No IRMA results available.