Static | ZeroBOX

PE Compile Time

2022-11-29 14:11:01

PDB Path

C:\sucagidupusehi\pahopigap\5\muhoyawa.pdb

PE Imphash

2d9ed3462f8a74bfd1231e2e9de56b43

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00027f7a 0x00028000 7.58275975321
.data 0x00029000 0x00245844 0x00001e00 2.95573680413
.rsrc 0x0026f000 0x00019398 0x00019400 4.2602732032
.reloc 0x00289000 0x0000332e 0x00003400 2.52425334561

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00286618 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x00287e10 0x00000582 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x00287e10 0x00000582 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x00287e10 0x00000582 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x00287e10 0x00000582 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x00287e10 0x00000582 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0027aa80 0x00000068 None SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x0027aa80 0x00000068 None SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x0027aa80 0x00000068 None SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x0027aa80 0x00000068 None SUBLANG_SYS_DEFAULT data
RT_VERSION 0x00286ae8 0x00000238 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401018 GetModuleHandleW
0x40101c IsBadReadPtr
0x40102c FreeConsole
0x401030 GetVersionExW
0x401038 MulDiv
0x40103c GetModuleFileNameW
0x401040 CreateActCtxA
0x401048 ReplaceFileA
0x40104c GetStringTypeExA
0x401050 GetStdHandle
0x401058 OpenMutexW
0x40105c GetLastError
0x401064 GetProcAddress
0x401068 AttachConsole
0x40106c SleepEx
0x401070 VirtualAlloc
0x401074 _hwrite
0x401078 LoadLibraryA
0x401080 LocalAlloc
0x401084 GetFileType
0x401088 CreateFileMappingW
0x401090 GetNumberFormatW
0x401094 CreateEventW
0x401098 GetModuleFileNameA
0x40109c lstrcmpiW
0x4010a0 GetModuleHandleA
0x4010a4 CreateMutexA
0x4010b4 GetCurrentThreadId
0x4010b8 FindAtomW
0x4010c0 DebugBreak
0x4010c4 FindNextVolumeA
0x4010c8 AddConsoleAliasW
0x4010cc CancelWaitableTimer
0x4010d0 GetCommState
0x4010d4 WaitForSingleObject
0x4010d8 GetLongPathNameA
0x4010dc GetCommandLineA
0x4010e0 GetStartupInfoA
0x4010e4 RaiseException
0x4010e8 RtlUnwind
0x4010ec TerminateProcess
0x4010f0 GetCurrentProcess
0x4010fc IsDebuggerPresent
0x401100 HeapAlloc
0x401104 HeapFree
0x401108 WideCharToMultiByte
0x40110c SetHandleCount
0x40111c Sleep
0x401120 ExitProcess
0x401124 WriteFile
0x401138 TlsGetValue
0x40113c TlsAlloc
0x401140 TlsSetValue
0x401144 TlsFree
0x40114c SetLastError
0x401154 HeapCreate
0x401158 VirtualFree
0x401160 GetTickCount
0x401164 GetCurrentProcessId
0x40116c HeapReAlloc
0x401170 SetFilePointer
0x401174 GetConsoleCP
0x401178 GetConsoleMode
0x40117c GetCPInfo
0x401180 GetACP
0x401184 GetOEMCP
0x401188 IsValidCodePage
0x401190 HeapSize
0x401194 SetStdHandle
0x401198 WriteConsoleA
0x40119c GetConsoleOutputCP
0x4011a0 WriteConsoleW
0x4011a4 MultiByteToWideChar
0x4011a8 LCMapStringA
0x4011ac LCMapStringW
0x4011b0 GetStringTypeA
0x4011b4 GetStringTypeW
0x4011b8 GetLocaleInfoA
0x4011bc FlushFileBuffers
0x4011c0 CreateFileA
0x4011c4 CloseHandle
Library USER32.dll:
0x4011cc CharLowerBuffA
Library GDI32.dll:
0x401008 GetCharWidthW
0x40100c EnumFontsW
Library ADVAPI32.dll:
0x401000 MapGenericMask

!This program cannot be run in DOS mode.
`.data
@.reloc
bad allocation
Unknown exception
bad exception
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
_nextafter
_hypot
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
GAIsProcessorFeaturePresent
KERNEL32
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
?CONOUT$
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
bad allocation
bizifoditutig
renenivucivefukuvemosudexiyozim
fucuwematahafenibezujulokoc yuyarahim
fevadixifahazikiletidikowavative hiferof hadafotahufowojunazo
jasozarinirazawiveyiy xupoyihelituwowakewezoyu gayasugudemexobahetoyesovunadub xesepalopuv
wilofusasonamapofedahu
kernel32.dll
RSDS[B
C:\sucagidupusehi\pahopigap\5\muhoyawa.pdb
D$ 1D$
D$ 1D$
D$<ipxU
D$tYc}
D$Pj;:-
D$x}k{8
D$p}u_h
D$0jKh
D$,%.y
l$|;hmC
D$H;""
D$TT#0y
QQSVWd
HtHu4j
s[S;7|G;w
tR99u2
0SSSSS
^SSSSS
j"^SSSSS
j@j ^V
tNIt?It0It
>=Yt1j
tRHtCHt4Ht%HtFHHt
0A@@Ju
URPQQh
0SSSSS
0SSSSS
;t$,v-
UQPXY]Y[
_VVVVV
^WWWWW
t"SS9]
PPPPPPPP
PPPPPPPP
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
u;hp-@
u,hh-@
>.$1u&
pD;#GM
bIVkN{kI"b{
<o)D;j
/jy04z
zgJDJiy
m=jktJ
1iVPgt
Oh}'\;
XQ?vFT
#wQG;*
/585J
HH[2@S
pY5mRe
2qHIFI
#pWqry
QApr7k
^|BG$#
#m]$
%?e^Lw&|{J
z2zvWf
eL+XBG
3HQAk`
[JN C$~
Z~.Nv-G
.BL\[6
<s6IU)
<TkX>i
lb8&2,l
9rbw7+
g5Z=@+
d-5gOk+@
b-UP`
[Iz7lXa
~2V+?/
nZ0]->
uM`-wU
eW'['T
VL.1HL
]mVI +a<
\w/[C,I
IoG+uK
aV3T%o
g~%Diu*U
lRe#97
ovb`*W
895P%$
tYhklm
O7k0_%!
EC|~QI
70<UQnQYY
!ECG^rj
VxYc/0
ov_E)8
i|@|D#d%
SGxW T
Xcg-AXaj
~lUv}W
+[11T=
4$iT_U>8
ev(kk>
`>!?K<
,Kau!YRT
m%/0!s
OI\A2#$
3@ng{q
>!Oqb&
T?6Qn@
8J7w7V
lMKW;a
hU8D0c
Ogq3Ab
\AY|"4
(>TJ#,
~!9AsI\
9tI4?C
se-%'L
z94[Q`
eQ"m-M[]
1v$9|R
)m +*/
yxEYCY
3{oA1a
z`8@Oo
Fz2:+I
qkvJ;2
yQu|T5s
z!Mb<8l
3$yi'
cwD^4<C
aW,uwo
utEn3?G
9[<$*1y
x'2pP
/QXbjW
N({(Z+r
C_qv:'o:
H2:1?-
B#410e
/9jy!Et
R]Mfzc
Z72qBv[
(H=qvB
k8'?-k
zN*GR$
usX6&{
v;5 $9;D
R.-QYA
SdbFKu
eA?)Hz
ge%_@J
,<KH_N>
oh>Ut&
0,`4Lx
}y BN
RgDFG
+%L-JQ
fx3qAO
%`aqYL
O@\L4P68
@nf>K1
uuw<)x
coThlP\
)@cer"
tP9Ka0r
qkU,R&r0[
w>A<Ji
X"j-+5q
IJ#,)B]0
iNz[i8i
{k+:Er
z%q/@c
Q`RbH/4
>v#y2$
}/jKEm
9/w&kZ
zt"/1Y
?bnr..y^
xf*g*>
j.[$O>2
^bP+;Ro
FH/%-h
HdV9Yz
>Qh"e+
_9&&7r
g-=%6T
Uv./y^
*XNW'o
GetCommState
WaitForSingleObject
CancelWaitableTimer
AddConsoleAliasW
SleepEx
GetModuleHandleW
IsBadReadPtr
GetConsoleAliasesLengthA
WaitForMultipleObjectsEx
GetPrivateProfileIntA
FreeConsole
GetVersionExW
WritePrivateProfileStructW
MulDiv
GetModuleFileNameW
CreateActCtxA
WritePrivateProfileStringW
ReplaceFileA
GetStringTypeExA
GetStdHandle
GetLogicalDriveStringsA
OpenMutexW
GetLastError
ReadConsoleOutputCharacterA
GetProcAddress
AttachConsole
GetLongPathNameA
VirtualAlloc
_hwrite
LoadLibraryA
InterlockedExchangeAdd
LocalAlloc
GetFileType
CreateFileMappingW
FindFirstVolumeMountPointW
GetNumberFormatW
CreateEventW
GetModuleFileNameA
lstrcmpiW
GetModuleHandleA
CreateMutexA
GetFileAttributesExW
GetConsoleCursorInfo
ScrollConsoleScreenBufferA
GetCurrentThreadId
FindAtomW
EnumResourceLanguagesW
DebugBreak
FindNextVolumeA
KERNEL32.dll
CharLowerBuffA
USER32.dll
EnumFontsW
GetCharWidthW
GetCharABCWidthsFloatW
GDI32.dll
MapGenericMask
ADVAPI32.dll
GetCommandLineA
GetStartupInfoA
RaiseException
RtlUnwind
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
HeapAlloc
HeapFree
WideCharToMultiByte
SetHandleCount
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
ExitProcess
WriteFile
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
GetEnvironmentStringsW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
InterlockedDecrement
HeapCreate
VirtualFree
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
HeapReAlloc
SetFilePointer
GetConsoleCP
GetConsoleMode
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
InitializeCriticalSectionAndSpinCount
HeapSize
SetStdHandle
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
MultiByteToWideChar
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
FlushFileBuffers
CreateFileA
CloseHandle
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVexception@std@@
.?AVbad_alloc@std@@
////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
'//////////////////////////////////////W9
////////////////////////////////////o
/////////////////////////////////o
///////////////////////////////
//////////////////////////////
/////////////////////////////q1_
/////////////////////////////
/////////////////////////////
//////////////////////////////8
//////////////////////////////
///////////////////////////////
/////////////////////////////////
B/////////////////////////////////////////
E\B/////////////////////////////////////////0K
/////////////////////////////////////////
/////////////////////////////////////////`
//////////
////////////////////////////
#//////////Zk
////////////////////////////
+F/////////
////////////////////////////
F///////
////////////////////////////
////////////////////////////
7c////////////////////////////
'////////////////////////////
/////////////////////////////
W/////////////////////////////
//////////////////////////////F/
//////////////////////////////
///////////////////////////////F<
/////////////////////////////////
//////////////////////////////////////
////////////////////////////////////////
////////////////////////////////////////
//////////////////////////////////////////0
////////////////////////////////////////////0
//////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
UWV9VW
V'_;?V^.
_u};9FQ\
jjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjj
jjjjjjjjjjjjjjjjjjj
jjjjjjj+
jjjjjjjjjjj
jjjjjjjjj+
+jjjjjjjj
_wjjjjjjj
ijjjjjjj
Cijjjjjjj+
;jjjjjjj
jjjjjjjj
Wjjjjjjjjj,
+jjjjjjjjjj
ojjjjjjjjjjjj
Ulzjjjjjjjjjjjjjjw
jjjjjjjjjjjjjj7
jjjjjjjjjjjjjjo
wjjjjjjjjjjjjjjjjR
Tjjjjjjjjjjjjjjjjj
jjjjjjjjjjjjjjjjj<Z^
jjjjjjjjjjjjjjjjjW
jjjjjjjjjjjjjjjjj
J*J.AC
bjjjjjjjjjjjjjjjjjjj
jjjjjjjjjjjjjjjjjjjjj W
jjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjj
~~~~~~
RRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRR
]]]]+RR
R3]****
RRRRRRR}
----------o
j-------
-------
------
>>>>kkQ
?33^3^
4kccccccccccc\
--c-cc-c-cc
-----------
wk--c--c-c-
wk--------c";
k--c-c--c
iiiiiiii
5555555*^7
8jjjjjjj-
kkk666666K
4[4V!!4
\Prrh!!!!*::::-z
!!!!!!!!!
l!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
J\||YY
EQ5wwL
d0d8888800
0f0000
WWWW11
iiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiii%
iiiiii%
@[iiiiii
iiiiii
6iiiiii
iiiiii
iiiiii%
iiiiii
#iiiiii
_iiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiii
{|}y|~~|
~|||{z{
|}~}{~
|}{}~z
~}}}~|{~}
{~~~}}z
|}~z{y|~
z{y~}{
||||{~
|}|}~}
}}zy{|}
}zz{z}{~
|{z{{|
y}z{}z
~}|~z|
|z|||}~{
}|||}z|
}{|~~z
}}z}}|}
~~}~|{}~
z~{|}~~}
}{~|~~{
~}}|z}~}~
z||}|{
y}{~{}}}
{|}|~}y{
~z~~{}~}~}
~{~~}~yz|
|~z}~~
2L2P2T2X2\2`2
2 2$2(2,2024282<2@2D2H2L2P2T2X2\2`2d2h2l2p2t2x2|2
2 20242D2H2P2h2x2|2
545H5p5
6 7%7+787>7
88%8,83888L8V8_8|8
9-999E9K9Q9b9o9x9
::+:R:b:x:~:
?"?(?6?z?
>4N4U4\4D5J5r5
;8<E<u<{<
=#=+=6=
^0v0{0
:)=P=]=[?
131Q1X1\1`1d1h1l1p1t1
162A2\2c2h2l2p2
3Z3`3d3h3l3
45;5^5q5
1N2T2n2}2
3.383^3
4"4r4L5T5l5
<*<P<k<r<{<
= =$=(=,=0=4=8=>=I=a=
?(?/?7?<?@?D?m?
0$0(0,000
1M1T1X1\1`1d1h1l1p1
282=2#3.3
4!5<5B5K5R5t5
66*636I6T6n6z6
7#7.737Q7
8,8c8{8
909U9z9
:b;o;x;
<\<g<q<
<@>Q>Y>_>d>j>
? ?-?4?k?
0'0,0M0R0w0}0
1$1+1?1F1^1j1p1|1
2%2H2]2
5#5)5.5=5S5^5c5n5s5~5
5#6(666E6h6u6
6!7,7W7b7
88'8/8;8D8I8O8Y8b8m8y8~8
<<<A<G<K<Q<U<[<_<e<i<n<t<x<~<
>?>M>S>v>}>
2)2.2=2F2S2^2p2
3)30353>3K3Q3k3|3
738x8K:V:^:
<7=W=G>p>
7>7K7U7c7l7v7
;$;-;2;A;h;
=H>_>p>
>)?[?d?p?
0#0D0P0w0
3H4M4_4}4
=&=<=D=
2/2A2g2t2
3:4@4g4
4,515v5{5
7"71777E7N7]7b7l7z7
7\9c9i9
8+969d9r9
<&<3<?<I<Q<\<
00&00080E0L0|0
4%474I4
5 6&6J6m6
?$?@?]?
8Z9P:X:
<.=4=D=
?,?0?@?d?p?x?
0(0H0h0
1(141P1\1t1x1
282X2t2x2
3 3@3`3
4$484@4D4L4T4\4h4
0 0$0<0P0T0
2 2$2(2,2024282<2
2*5.52565J5N5R5V5j5n5r5v5
6$6,646<6D6L6
<P=`=p=
=*>.>2>6>D>L>T>\>d>l>t>|>
?$?l?p?t?x?|?
0 0$0(0,0004080<0@0D0H0L0P0T0X0\0`0p0x0|0
1"1&1*1.12161:1>1B1F1J1N1R1V1Z1^1b1f1j1n1r1v1z1~1
mscoree.dll
KERNEL32.DLL
((((( H
h(((( H
H
juduzay tisuronupogegobanokiyuziwewotugi lewawadutejamikosabiz norad
kirumitadicusojujineguyiyo reliwehimobudusafesahorusipiro
potocavegica
jeguxufo xevuholucedumahemalaxavebu
mifotupoh
bisasijucifaw
povinatufopewehepogiyexaveboside
mojuforafuzudogudukeyitofoh
kernel32.dll
mgesorakocinobinuruyamikufiw
hagayaxewewagucizinahegej
@jjjjjj
@jjjjj
jjjjjj
@jjjjj
VS_VERSION_INFO
StringFileInfo
043831F6
FileDescription
PowerSqueze
LegalCopyright
Copyright (C) 2023, history
ProductsVersion
70.31.21.16
ProductName
SolarisDoors
ProductionVersion
18.88.74.16
VarFileInfo
Translation
QBegarozu tewuvucom dukona rerekuziricuyu sadejul cuye dagusafiy dajejagani gedihiXZoxubu heyanemuvozunir zevusuxexacu yituzek xudapupuwij faj sudasu duzacujuma zik wajagi
Mira pohasorowoc nulo@Depewowodevarog xidehun satiwu medoziziy yas tujox ketanevocezesWDogufe hudixufereh wuwegeh lebe kezahu cabumoroxab cam pizaz peyezudipaja hajibimisolul?Ditaxoho ciwejafikoruk zobozow xapoh hijo bifibixif xeyukozowiy=Dopowuz tixeberupem xojepojicope hagepevi bacijafihusido fatu,Xuyozeno vadifiyiyezono yoyogu bacakunetunec
FajejitixafQKolajutiz mubunicose wuta keracuwolahu yedewizayuseku vijedunahopoyiy cayal vukuk.Wirubamigize buxizefojo bopajuyeguw sitipogofu@Caxozot dihalafol vezoxehopahamu zufenebiz geroxu pihupijol suju
[Zuyoburis moja zeneyedahaxa belanocuwa zalekufa wuxu bigirexeko dugofogodavadob vibebecaruv
<Soyapugusowetol ruzewanipi kavox fekoz bilesilehones lefojukHDoyeve bemedusezamikas voyesomik noyayusovuc zuduvofizejov fexaxomo tifa2Jeduzidajama nacerubehi xaf tupage kuxawisuligurij
Fonuziwusazu_Nozo lex yewic ruyolesotiyajir nibulagahides ziredovivemo botuduheseno jenuwunor fahu wofotelic
Rabejugoh dupi goyigilohapapul$Kimokinez viz memobu givixidodibumav
Zinomalujuxopad
Zijix nixu{Jumakuvobenuxux vasijolugurul yix dedanorewideted dadidipimar xirifewul cokacuhuzojebiv ximejirulojaf xuyadun kalonulifipoh/Yavuserole silehox cinezoma kutel cozenawasogox
Tow vefadu sexoz nezup rob
Giz hikigulefazili/Haxiyoguzuko jaho zimonunugigaxop munay xecutiw5Hup wozivosi sukaloxe sihuwixe fiwevubozan xebi hofil
Yozavefib
Cadodalesuv)Bafohow migizejidacun kaj fucaf wozagugag
Gexorijoxo
Hurovaru
Cekoxutak tohunelogavusakDKijazoginopo pof cuxeba bojo darecizej zalinuyizidurok ruzo dedegapu
*Vegoxixez wan zebuyifilebij razokevufocebiLJebolalamuwaken puwapumameje wori gosu nidakibac nemutuy huconisiviji xuviso
$Bugij fudulatumacuzuf nekavukedelupu
>Pehufakamicuvon pozohej geyeti nomoyawocin yekaliyifoluw nonal
/Jusufi nacabocasi tabuyucak wudeci sagefi zimaxATenujexeli get xihuw covinoyoyegape pem ticoyibiwifupo mahuki mab
fDikinunap yijecokihobobi niyayujas cerizucoseceven purufowihami xaninologimu hodegosos xalo yesay jite
Sutu duhuyeno_Deh hikikopizot wofoyesawoge dezumevopuzager puxuzena nupiyunumezu heyeyipiyotak kaxu pixucusih7Xafamukeyineped yayimuyoye gowisoyewepug palidoreh guwe6Pabub hevewozotoz xacokayo kuxita rejeda javuni fanane
Tadosodixo
Yulijovowiliza xakodahorikGKukapeko hezutu puz rif teyevinobinih feze zewubepe kahuy wivexikigozap-Zixedeho cadurocar pek gihu xuhaxalu rakehenoACizopabelugol gapej xefazekaw yuvad fekazujul peruvegib mutovasaw
Lodozaziyeje wihucawo-Yafep fibibenazuhekim loravitekec nob lecikid
DHebeyoyevuda fejuwu winataguhuma futil raxafibew reyem hutarupomonit?Jubagayutenixog kuvetej gaciwerefavu redawufakam xowesiyasixuxe
:Nefozomohay titocidulesa lobuso xupivunawupok buxeduboyicu
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Mokes.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.67273994
ClamAV Win.Packer.pkr_ce1a-9980177-0
CMC Clean
CAT-QuickHeal Ransom.Stop.P5
McAfee Artemis!3D8207E1CE67
Malwarebytes Trojan.MalPack.GS
VIPRE Trojan.GenericKD.67273994
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 00516fdf1 )
BitDefender Trojan.GenericKD.67273994
K7GW Trojan ( 005690671 )
Cybereason malicious.e00de0
Baidu Clean
VirIT Clean
Cyren W32/Kryptik.JXT.gen!Eldorado
Symantec Trojan Horse
tehtris Clean
ESET-NOD32 a variant of Win32/Kryptik.HTQP
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky HEUR:Backdoor.Win32.Mokes.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Trojan.Win.Z.Sabsik.289280.L
Rising Backdoor.Mokes!8.619 (TFE:5:rNGu38W1VhL)
TACHYON Clean
Sophos Troj/Krypt-VZ
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Trojan.Win32.PRIVATELOADER.YXDE2Z
McAfee-GW-Edition BehavesLike.Win32.Generic.dh
Trapmine suspicious.low.ml.score
FireEye Generic.mg.3d8207e1ce6762ff
Emsisoft Trojan.GenericKD.67273994 (B)
Ikarus Trojan.Win32.Crypt
GData Win32.Trojan.PSE.AA8BTI
Jiangmin Clean
Webroot W32.Trojan.Gen
Avira Clean
Antiy-AVL Trojan[Backdoor]/Win32.Mokes
Gridinsoft Trojan.Win32.Amadey.bot
Xcitium Clean
Arcabit Trojan.Generic.D402850A
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Backdoor.Win32.Mokes.gen
Microsoft Trojan:Win32/RedLine.CAS!MTB
Google Detected
AhnLab-V3 Trojan/Win.Generic.C5397385
Acronis suspicious
BitDefenderTheta Clean
ALYac Clean
MAX malware (ai score=86)
DeepInstinct MALICIOUS
VBA32 Backdoor.Androm
Cylance unsafe
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall Trojan.Win32.PRIVATELOADER.YXDE2Z
Tencent Malware.Win32.Gencirc.13c3391b
Yandex Clean
SentinelOne Clean
MaxSecure Trojan.Malware.10612570.susgen
Fortinet W32/PossibleThreat
AVG Win32:DropperX-gen [Drp]
Avast Win32:DropperX-gen [Drp]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.