Static | ZeroBOX

PE Compile Time

2022-05-14 05:47:19

PDB Path

C:\zujociheyawo.pdb

PE Imphash

2e4173d4094e9bbe81d0a2fc8ae0cf99

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000387a4 0x00038800 7.8364175533
.data 0x0003a000 0x002a8ee4 0x00003a00 0.829515007327
.rsrc 0x002e3000 0x0000de28 0x0000e000 4.39517339997
.reloc 0x002f1000 0x000034b0 0x00003600 2.00677342078

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x002eea40 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x002f0ae8 0x00000340 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x002f0ae8 0x00000340 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x002f0ae8 0x00000340 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x002f0ae8 0x00000340 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x002f0ae8 0x00000340 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x002f0ae8 0x00000340 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x002eeea8 0x00000076 None SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x002eeea8 0x00000076 None SUBLANG_SYS_DEFAULT data
RT_VERSION 0x002eef20 0x0000020c LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401018 WaitForSingleObject
0x401020 AddConsoleAliasW
0x401024 GetModuleHandleW
0x401028 GetTickCount
0x40102c GetCurrentThread
0x401034 GetConsoleAliasesA
0x401040 SetCommTimeouts
0x401044 GetPriorityClass
0x401048 FindResourceExA
0x40104c GlobalAlloc
0x401050 LoadLibraryW
0x401054 GetLocaleInfoW
0x401058 FreeConsole
0x40105c GetCalendarInfoA
0x401060 GetVersionExW
0x401064 GlobalFlags
0x40106c CreateActCtxA
0x401070 GetACP
0x401074 DeactivateActCtx
0x401078 OpenMutexW
0x40107c GetLastError
0x401084 SetLastError
0x40108c GetProcAddress
0x401090 VirtualAlloc
0x401094 LoadLibraryA
0x401098 WriteConsoleA
0x40109c GetNumberFormatW
0x4010a4 FindAtomA
0x4010a8 GetModuleFileNameA
0x4010b0 OpenFileMappingW
0x4010b4 VirtualProtect
0x4010b8 WaitForDebugEvent
0x4010bc FindNextVolumeA
0x4010c0 CloseHandle
0x4010c4 CreateTimerQueue
0x4010c8 CreateMutexW
0x4010cc GetModuleFileNameW
0x4010d0 GetDateFormatW
0x4010d4 CreateFileA
0x4010d8 FlushFileBuffers
0x4010dc HeapAlloc
0x4010e0 GetCommandLineA
0x4010e4 GetStartupInfoA
0x4010e8 RaiseException
0x4010ec RtlUnwind
0x4010f0 TerminateProcess
0x4010f4 GetCurrentProcess
0x401100 IsDebuggerPresent
0x401104 HeapFree
0x401108 WideCharToMultiByte
0x40110c SetHandleCount
0x401110 GetStdHandle
0x401114 GetFileType
0x401124 VirtualFree
0x401128 HeapReAlloc
0x40112c HeapCreate
0x401130 Sleep
0x401134 ExitProcess
0x401138 WriteFile
0x40113c TlsGetValue
0x401140 TlsAlloc
0x401144 TlsSetValue
0x401148 TlsFree
0x401150 GetCurrentThreadId
0x401158 HeapSize
0x401170 GetCurrentProcessId
0x401178 SetFilePointer
0x40117c GetConsoleCP
0x401180 GetConsoleMode
0x401184 GetCPInfo
0x401188 GetOEMCP
0x40118c IsValidCodePage
0x401194 SetStdHandle
0x401198 GetConsoleOutputCP
0x40119c WriteConsoleW
0x4011a0 MultiByteToWideChar
0x4011a4 LCMapStringA
0x4011a8 LCMapStringW
0x4011ac GetStringTypeA
0x4011b0 GetStringTypeW
0x4011b4 GetLocaleInfoA
Library USER32.dll:
0x4011bc CharUpperBuffW
0x4011c0 LoadMenuW
0x4011c4 GetCaretPos
Library GDI32.dll:
Library ADVAPI32.dll:
0x401000 ReportEventA
Library WINHTTP.dll:

!This program cannot be run in DOS mode.
YY@Rich
`.data
@.reloc
bad allocation
Unknown exception
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
(null)
`h````
xpxxxx
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
CONOUT$
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
bad allocation
kernel32.dll
vitetojanugewebasi
fakiyejuteredoganozehicinejijuy
C:\zujociheyawo.pdb
D$PPW3
D$(1D$
D$(1D$
D$8)D$
HSUVWuwj
QQSVWd
0SSSSS
^SSSSS
j"^SSSSS
j@j ^V
teh+s@
HHtXHHt
>If90t
>=Yt1j
HtHu4j
s[S;7|G;w
tR99u2
0A@@Ju
URPQQh
0SSSSS
0SSSSS
;t$,v-
UQPXY]Y[
t"SS9]
PPPPPPPP
PPPPPPPP
t+WWVPV
Q.HQ53
]]}+G:
+{&},?
O|-u~1
gB5FZmB
i,B>[&
09ib={
!1 dRx
Ur5F:S)+
]0;XYx
/Y:1[_
KL%U}K
{Z7eL\
lj)JIu}
/J^WMsB
k]di^W
YB73?1I
.q;+[NW_
+(fXD$A
aQDO(`/+
y-,k;*A2g
B=ZNX7
x#'_N;G
l`N-QU
0@9$B(,
FJJU=R
Xr,CdP2Y
C`/`N`
8iwq'[
j)BCK!
LI)i5\
cedf#P
swyC/W\h'
%6Mzx'
aN|[uX
C.lk&6
VNO/Dhi;4
^t8:3f
duw5R`
g}Asys
RH0\94
{X}=e{
"^'i0U
-zkc&Q
;4;/by
G C?}8`
v~/tlw6
9G|5'9g
u?-$Q{?vv
UTbt ]%
Ek'+d4VFK;&
i3@!$1
UXbfO#!*_OJSwn
{E3-{5
yTX-F~(
Mt*t8tk
AWrs>.
"i|uGGA
S,(bPA
v!|'U9
{0HWz(
(+|n%P;
_Ol3,nu
t!1s#M
[in~[X
`}=4qE
(M[C),
Q%"?cm
`<BVI5^}~+.
;:E!~6ZN
%?kNiF
VkCLj.
p\OU|IJ
X-=Y)K1r
t8p]s7
dOfL[2
gs8^-;
0#8-t)y_\V
l'9PH5
&69LNC
1@[qif
Nn4;BvJ]+H
{JE&Bw
9:OF@6
B&7'O)
5Jt91M
gL-tym
Ms J4K#d.
033c'B
2C].++
,2M2ky
i1PR4A
otc}~>
2_p!M{
Edv4R!
oB3o=~E
VQ| W5
|$+e$9
]rXyM.T
,T*\\PP
Jn"2K{
2V]I!I
\bI'o{K
[tnUDM
@*9C<[
{OLxnh
~DQFI`
AP5Sul
% ?>!Rb
IVFp5O
jfIytC
Fnd=+;
ppF)4_
,a7It"
r;jvnp
oj/dOil
eAa{gr\
f12v]Wdq
L1'jYn
m=;<v>A
O$% Oo
>]J[r3\_es
;XrTt=D
dkIJI9n
`E<(vH
@G],tW'
6fvL<E7,
6&"veT
aHEm|k
fHIU/6
*dpH+
$,m.6o
PfX/%<
nVBd`4*7)
v6W86nse
F]-SKy
KK{jUu
yR&R:M
[%,1d
e9V1;j
\RDY):
i)el2|
\CBlHqC
*Eb Doy
$5$l!@
lN%B,OP3-<
"8QM7S
[~e{5Z
r[4/A6
>T6R,eJ
o7Be#4
(C0Zg}(
=eHx^%
\v%y\
=j-_pt
V5=!w7
:dPSVz(/
N4dvyF
c2BQ4O
"",mq
I5jHf_S
[\0\./!
wZ(>e+Hu&
{if5^e'
IS%,&f$
(+amd)A
,eOPWH!\
[%6J_#`
KNF}bD:
B&*i4@%
<gDSJkE
^u@"k
<<a%{#"
AF<BWF-*B
 @Yf5
[*>DU`m
) sSUJ
n4=^,4.
2*\n{%
7p6s3R
0vn.ac$b
ogCvI/
u[V8qP
i+F-$
sv`Sc\8
Nwh7TPXdM
6rfvK$
HR6=\r(
GGIPnT
LfG^-1\c
^Aym2wZ0
8r)p]%
F~1'2&p
vHpum1O:
Fv<#E*u
9HS8gEF)
kXe&dQA/Y
QIAL~Y
R&>RBt
b8`BK>.xx[
61G,]m
e[Wc+)
"}w5NP
JA$\%.
'~?2l7
VEL3`6
b5eN-4
y4n/!{?
ue2;J'
|f.o0=
$UzF2
G!#h9g#M$WL1<
?(,QK<
l9o-wu
~$&`wJ
f`#*I;d~Z
ndc9{ba
L:S8)4
J?Eqr
gsB_z6
*k.IgL
E5n$h'
T<We!%
us&U-$
ghR]`B
X&M=,Y
L\YHPG
oxx[w-r
j8FTMq
6\}$?Ed
NBt0GVA_/
;{Sj-$1
+W_Utp
jr@BdS
cUORH&3$`
JJlpw
,2Oq,8
%-\aeA9
HS|Tf0
t'CTHC
+p#0%dZj=
Y#tAut
;'kj:r
m+5llx
A`fU7X>
7l%6;d
|@&/e[
oD:gxJ
]_m2c4
w}R_"w`
:]':kW
/qA?X0aT
Nw].RmT\$
F>UByV
ZA:]D}
1FXi^[d`
L>,sZ}
v4[8y^
<j%I)y@
1\XB3J
Zr\2V]
}^:h29
ol.?c_
.M7.FL
#<AO_w
yL;)2]
LEL?eV
DXitvV
M<a'5rk
"3n87`
krtzo9n
w3A(qN
4(GZZa
b&nc1Zz
TKS}Q(]
h]k3te
oa<+!mI
&l46,;
L4?z@T$r
nqLc
d3Dh)sh
eVDbxB
tC:OI[
>nr:?`jw
smO-.:e4!D
/y?\C49
kPuo4'
.Z\,c4
m2;QFX!O
"D[_4sYy
q9S|Z]
iGAVDyk
~zmJF5
,t}fw
WK<g}@
rm~zM%
]7"/0d
e9n$C7
F8~/rf
.5+6le
!^,Rtk
mV<OD>
"|:TmI
=z{qS/
u\bEDMN
#)`/-Uk
v&-T[ y
{+[J3y
Bf|<0i
<6=0W@
X#6"_Z3
3'<kQ3
rvM/k
]`)DZi
#4hG&f3
s=m26-
EU7OND
#xMkf>
00&MCm
8US4L
.{Rw"NCRx
Eo@;yw
CXEZ#'
LWe$0^n
$ImI~q
J%*E{0
*1Z.G
G}tn,>E
lNhG9w
EhR|nT
v?u2gK
\iBC15a
j']q~<
}8#u2Grz
,h^})$
{9nl@3hg
._+{\3^
<FMaaKR
(S*5,6
V>}%+S
|iv7y#
'aq1IU
nV^}~K2s
&[=AD'h
ezK|fN)b
7duQ^E
p0XfhE2<
GetDateFormatW
CreateTimerQueue
CreateMutexW
WritePrivateProfileStructA
GetNumberOfConsoleInputEvents
GetLogicalDriveStringsW
WaitForSingleObject
InterlockedCompareExchange
AddConsoleAliasW
GetModuleHandleW
GetTickCount
GetCurrentThread
GenerateConsoleCtrlEvent
GetConsoleAliasesA
GetConsoleAliasesLengthA
GetConsoleAliasExesW
SetCommTimeouts
GetPriorityClass
FindResourceExA
GlobalAlloc
LoadLibraryW
GetLocaleInfoW
FreeConsole
GetCalendarInfoA
GetVersionExW
GlobalFlags
GetModuleFileNameW
CreateActCtxA
GetACP
DeactivateActCtx
OpenMutexW
GetLastError
GetCurrentDirectoryW
SetLastError
ReadConsoleOutputCharacterA
GetProcAddress
VirtualAlloc
LoadLibraryA
WriteConsoleA
GetNumberFormatW
GetCurrentConsoleFont
FindAtomA
GetModuleFileNameA
FindFirstVolumeMountPointA
OpenFileMappingW
VirtualProtect
WaitForDebugEvent
FindNextVolumeA
KERNEL32.dll
GetCaretPos
LoadMenuW
CharUpperBuffW
USER32.dll
GetCharacterPlacementW
GDI32.dll
ReportEventA
ADVAPI32.dll
WinHttpCheckPlatform
WINHTTP.dll
HeapAlloc
GetCommandLineA
GetStartupInfoA
RaiseException
RtlUnwind
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
HeapFree
WideCharToMultiByte
SetHandleCount
GetStdHandle
GetFileType
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
VirtualFree
HeapReAlloc
HeapCreate
ExitProcess
WriteFile
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
InterlockedDecrement
HeapSize
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
GetEnvironmentStringsW
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
SetFilePointer
GetConsoleCP
GetConsoleMode
GetCPInfo
GetOEMCP
IsValidCodePage
InitializeCriticalSectionAndSpinCount
SetStdHandle
GetConsoleOutputCP
WriteConsoleW
MultiByteToWideChar
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
FlushFileBuffers
CreateFileA
CloseHandle
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVexception@std@@
.?AVbad_alloc@std@@
****************************************************************************************************************************************************************************************************************************************************************************************************************************************************************************************************************pBB
**************************************^
************************************g
L./*********************************gM
*******************************
******************************x
*****************************<2
*****************************
*****************************
******************************
******************************
*******************************/
*********************************
?*****************************************
?*****************************************
*****************************************
*****************************************GN`
**********p$/****************************
5**********4
****************************
*********
****************************
*******
****************************x
r****lp
****************************x
****************************@h
****************************x
r*****************************x
Z^*****************************
******************************
******************************r
*******************************
*********************************
**************************************r*
****************************************
****************************************r
******************************************
********************************************
**********************************************************************************************************************************************************************************************************************************************************************
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@{
"@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@b5~
@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@|
@@@@@@@@@@@@@@@@@@@@@D
l@@@@@@@@@@@@@@@@@@@@@@@@@@@@2
dA@@@@@@@@@@@@@@@@@@@@@@@@@@@@i
M@@@@@@@@@@@@@@@@@@@@@@@@@@@@]
@@@@@@@@
@@@@@@@@@@@@@@@@@@
@@@@@@@
@@@@@@@@@@@@@@@@@@
O@@@@@@
x@@@@@@@@@@@@@@@@@@
m@@@@=\
@@@@@@@@@@@@@@@@@@
*@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@
Ku@@@@@@@@@@@@@@@@@@@@G
$@@@@@@@@@@@@@@@@@@@@@9
@@@@@@@@@@@@@@@@@@@@@@8'
@@@@@@@@@@@@@@@@@@@@@@@@@.
nr@@@@@@@@@@@@@@@@@@@@@@@@@@
Feh@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@
~zz|~~
~{}~~|
~~{{|{
{{}~}}
zz~~~~
}{|{}~|
|~~~z|
|{~y~{}
z}|~|{
||~}z{
z}}zz||~~
{|}~}}}z
|~{{||}~{~
yz~~~y
~|{{|{
||}}{~~
~~|{{{~
}~~z}|
~~{{|{{{
}~}}~~
}~|~y}
z~{{{{}
z{}|z||
{~~~{~zy{
|z~}~~
|~z}}{
z~{~y~~
{}||z|||
}}~{}}
BYY`xX
uGGyGr+r
uu+ Ym
Oz'o'zo}}
mqPPPP&/X//
=Q= QG3G
F111111
oy11111
A\11111
i11111
?Q-11111
{"11111
s11111
11111nP
11111M
11111z
11111.G
111111
2L2P2T2X2\2`2x2|2
1 1$1(1,1014181<1@1D1H1L1P1T1X1\1`1d1h1l1p1t1x1|1
2 2$2(2,2024282<2@2D2H2L2P2T2X2\2`2d2h2l2p2t2x2|2
24>8>@>D>H>L>
? ?$?4?8?<?D?\?l?p?
0%0U0[0`0f0m0t0{0
171h1n1t1
2*2A2L2T2
2+313F3L3R3X3f3
4484G4W4_4w4}4
55R5^5j5t5y5
56-6<6F6\6b6
7=7E7K7S7d7i7
??H?M?d?
1:2G2w2}2
3%3-383
5^6v6{6
<$<(<,<0<4<8<<<@<
>#>O>k>
62787R7a7n7z7
9b9<:D:\:t:
<<<J<P<s<z<
0&0+0:0C0P0[0m0
1&1-121;1H1N1h1y1
506u6H8S8[8
:.:::B:R:g:
;#<;<F<j<s<z<
=:=M=e=w=
2090R0X0c0o0
1!191E1K1W1f1l1u1
2#282^2
5.595>5I5N5Y5^5k5y5
6M6V6b6
91:D:_:
$0S0x0[2W4[4_4c4g4k4o4s4
4*5_5x5
6 6$6n6t6x6|6
7 7A7k7
<!=+={=
=_?p?x?~?
030?0L0S0
171F1K1l1q1
272D2W23E4>5
>,?7?b?m?
0 0'0/070?0K0T0Y0_0i0r0}0
2G3T3m3
0=0H0R0k0u0
3313L3T3\3s3
3$454X4
7?7n7w7
8+888=8K8&9I9T9w9
<-<A<G<
<%=3=z=
=P>Y>_>
?"?(?8?=?U?[?j?p?
4&5,585
:*;5;c;q;
2:3G5Y5k5
9T9a9@:O:
;P;Z;r;
"696g6r6v6{6
7 7<7@7H7L7h7
808<8X8x8
989@9D9\9`9|9
:8:X:x:
;$;<;@;`;
<$<8<@<D<L<T<\<h<
6$6,646<6D6P6T6`6
;8<H<X<h<x<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
mscoree.dll
KERNEL32.DLL
(null)
((((( H
h(((( H
H
mekaviveguzirul lonoxipanolujemideyuz hohawumesajeliyiledawuyex ciceme
hugacasu kuhifagixabezudisunulosov
jadamopogayomobaxiwetumika
hurakavohada
kernel32.dll
mazosucoguyocebawiturariwo
@jjjjjjjjj
VS_VERSION_INFO
StringFileInfo
043831F6
InternalName
SheatEating
FileDescription
PowerSquirel
ProductsVersion
19.23.39
ProductName
SonarDoor
ProductionVersion
64.26.12.23
VarFileInfo
Translation
KLamebapibufig takevutul goyab sedetikos seh tevejuremoji rokezoyawum weluci)Bowa zomesasadivob gapicivijamu jipafagud>Daja darisadafokiw jegavidesodela nuk tub jemowowonucab gacive<Soc cugobuciraw medi vebenufajiniy womiboyafez zujubovesobow9Tigiroreriruta fama jiciraz joxexi canenoguyomahuc hamikomReyece wuhudacunip yupafeyoriyihi hehebateve huxibuyuwocuc matisegihoce rucamewu dimikijuxig vupiwega ledikik$Pavapoco fevatahivezav bedapukofewuj@Moximokivarugis huzeguzerawup yunasamuv bofewotiv nuvovobokiyega^Geyokajil safobical ceboto resexukimiyeze bowojelito zilexoyipucenit pona yohocilerufe dohigog
Davogelobidi xidegodimubOMirov rezohu yuhiza botahabux yoheropanezim hiyoyova yasuripuwum wobamutimupubi%Pebac ripuxinayinemu nutetoguji yined
NCodikaj jus pilediyume nuvajoyafita yoxabo hisemohexepor mirab towiw pusotijuc
Cuza sowigoyetakaz7Xitiwigademi benepola gesuwevale cenire pubunugedobavap+Nasam hunuh mojogazek nis vozuwonomo likiza?Hitamejoz xibelapayijis napaluhegecose dezir boruzoducacej raniZPepac cahosijuzohicam biyebaxewegupof jelubilipihuwa fipubova bew lerureyemofoke yurugijebHPuretoser cirupe leyev xijano cawutimaronof jowa sapegexovuhali gobovubaaFojifaki kitolubadivat lupoyetopeduv yoyuk lobiregateb tuwojunibesiwuw yigecekoxeb yemezar noposoEYehatodezavuxe zalusoyijimaxo dohorutazanog rodecakodol sayifih bovazVPifaboxu lopopayu cuxugu faniyocecezuz hapa juyemahuzurid suvoxiyapohav kezowagavuwijoPNudonu fizelu razofiwimemedi cijewu fewi nuzuk nahu hus nirulodaro mugarexikilom%Nekehiseluno teratulujuto ludayosimir
Sedef rodemuweleco yabix?Luguxexuy rin dukadixowuyemeh cusifetexadecuy zeveteway bavadab6Hageyalur zofajakovovus jafiluhi zunawejay pubivelaxogCFobogeyekumuhib dunehumubeyof texujedivikagep genejuna piluvuwiwudu
Damoroyuven riwirabutec fiyuk
GFinezacazujukuf tizexutu kavifov fitid zenul witetupebuneyo sesojekuvep2Nuw wofuhocanozij dayipomokawa faba niduxeribiduni
Pamewemabegixu fepedus hej
Bukogukic zuhigeji@Xiyokoxetecoyic ruxikazobexe sadepuyufa pezetowusogedi sebatobeh
DMadega hujuhiruboyak guge fejag jopejasuwagoxew kuluxuyi hucikipegap
Refunubirug
Jufugifucig ribabaja
VHecixeyudi labiwufukeb cegulodu yovukozadogacac tegapamacec hiposizobon pajipozopayule
Dix dohojupebibeFFitezu zikexuxi dulesihe kedune jitufunizopi ronanunic rivija yebeyijo
JFujujipicozem tapajugo zibufi faz jebumisohelutip zuru nuv diyezeciy loros
?Nixexasumihipa rugumiwe lahewutojihat vawedemoduneli gizeziduxoMMibu cakimuk riwukuzunit lamecaja wologujehowa wobetukisubaxay razuxofodumikoKKadanizof bexusutezetac vubevecopomumej zibodumabun zoyebuti jidugovunolefiLMopekidiwag kiwij xisacujit yakikituxid kama jolupumipowefut vubatacayudexiyqLavolohacavo nanosizijem fucaguxadocayaw bamevinosebob magocegizevulo yoharuwubeker zatukir zeleke dihihokejixuji
Xaj tabolabixal^Mij tuyazigivino tilariholoyem zedizalajel celoxoyiji soy witugefarim cadeca fotaxavu setiruwo*Nujagetigorimug wexudisomodijuf nabafujoye5Hem direla dimof fasutasufiduhu casone cadutuyakupifa2Lomewe gazev nudumonilane vori nizap bitumenakexaw`Tayeku cazo dabikodusisay zagawuya xawasa xugiruneyivideg pupitifezu sokac zavugonasacesiz gesuf
Fiwifigodasaz gofocuwawuSGuyodixirihaz sitafocedokur nehadanasog xevucotiremuf rukosasomafuyar mevadivuj wud
Kiw boz ruxomiveAMifebuhuyiv fefexolokoyiha tadegociva kihemajo valenul lawosupiloMFiwuyu jalured zipibirumovis zatu kotubalohorefo tagen renuwu dital jokudugekBSokukepisunugi kanivixojo doxugopibel bocep mevezoj xopiginulikoyaYBohedipapapapo fepoledabuno ranema sokufizovokuja vuhiculuz nasa gaterubehetiga sedaxetux
MayucadaGXeruvukahe fuxekorozen ziculiradeho sesewatiyayoke jewibufoy wurejugaso
Laxagifu
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Zusy.471545
CMC Clean
CAT-QuickHeal Ransom.Stop.P5
McAfee Clean
Malwarebytes Clean
VIPRE Gen:Variant.Zusy.471545
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Gen:Variant.Zusy.471545
K7GW Clean
Cybereason Clean
BitDefenderTheta Clean
VirIT Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
ClamAV Win.Packer.pkr_ce1a-9980177-0
Kaspersky VHO:Trojan.Win32.Agent.gen
Alibaba Clean
NANO-Antivirus Clean
SUPERAntiSpyware Clean
Rising Trojan.Generic@AI.100 (RDML:mTVKGO6oWhGt1ktnu1VdxQ)
TACHYON Clean
Sophos ML/PE-A
Baidu Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.fc
Trapmine malicious.moderate.ml.score
FireEye Generic.mg.991184ef5c59ae33
Emsisoft Gen:Variant.Zusy.471545 (B)
SentinelOne Static AI - Malicious PE
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Gridinsoft Ransom.Win32.STOP.dg!n
Xcitium Clean
Arcabit Trojan.Zusy.D731F9
ViRobot Clean
ZoneAlarm VHO:Trojan.Win32.Agent.gen
GData Gen:Variant.Zusy.471545
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
VBA32 Clean
ALYac Gen:Variant.Zusy.471545
MAX malware (ai score=89)
DeepInstinct MALICIOUS
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Trojan.Win32.Crypt
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.ERHN!tr
AVG TrojanX-gen [Trj]
Avast TrojanX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (D)
No IRMA results available.