Static | ZeroBOX

PE Compile Time

2022-11-09 12:01:22

PDB Path

C:\feveyi.pdb

PE Imphash

64e105a717e6a1cfeca9a1f4f5c8ed00

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0002d2a2 0x0002d400 7.45510586999
.data 0x0002f000 0x0212b9a4 0x00001c00 2.48497407631
.rsrc 0x0215b000 0x0000eb48 0x0000ec00 4.54024139543
.reloc 0x0216a000 0x0000aba8 0x0000ac00 1.17109469926

Resources

Name Offset Size Language Sub-language File type
VOSAYAD 0x02166fb0 0x00000719 None SUBLANG_SYS_DEFAULT ASCII text, with very long lines, with no line terminators
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02166ad0 0x00000468 None SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x021697c8 0x0000037e LANG_NEUTRAL SUBLANG_NEUTRAL AmigaOS bitmap font
RT_STRING 0x021697c8 0x0000037e LANG_NEUTRAL SUBLANG_NEUTRAL AmigaOS bitmap font
RT_STRING 0x021697c8 0x0000037e LANG_NEUTRAL SUBLANG_NEUTRAL AmigaOS bitmap font
RT_STRING 0x021697c8 0x0000037e LANG_NEUTRAL SUBLANG_NEUTRAL AmigaOS bitmap font
RT_STRING 0x021697c8 0x0000037e LANG_NEUTRAL SUBLANG_NEUTRAL AmigaOS bitmap font
RT_STRING 0x021697c8 0x0000037e LANG_NEUTRAL SUBLANG_NEUTRAL AmigaOS bitmap font
RT_STRING 0x021697c8 0x0000037e LANG_NEUTRAL SUBLANG_NEUTRAL AmigaOS bitmap font
RT_GROUP_ICON 0x02166f38 0x00000076 None SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x02166f38 0x00000076 None SUBLANG_SYS_DEFAULT data
RT_VERSION 0x021676d0 0x00000210 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401010 FindResourceExW
0x401018 AddConsoleAliasW
0x40101c GetModuleHandleW
0x401020 GetTickCount
0x401024 VirtualFree
0x40102c GetConsoleAliasesA
0x401034 GetPriorityClass
0x401038 GlobalAlloc
0x40103c AddRefActCtx
0x401040 GetLocaleInfoW
0x401044 GetCalendarInfoW
0x401048 GetModuleFileNameW
0x40104c DeactivateActCtx
0x401050 OpenMutexW
0x401054 GetLastError
0x401060 SetLastError
0x401064 GetProcAddress
0x401068 AttachConsole
0x40106c VirtualAlloc
0x401070 LoadLibraryA
0x401074 WriteConsoleA
0x401084 GetNumberFormatW
0x40108c FindAtomA
0x401094 GetModuleFileNameA
0x401098 GetModuleHandleA
0x40109c GetCommTimeouts
0x4010a0 WaitForDebugEvent
0x4010a4 GetCurrentThreadId
0x4010a8 GetVersionExA
0x4010ac OpenFileMappingA
0x4010b0 FindNextVolumeA
0x4010b4 ReadFile
0x4010b8 CreateMutexW
0x4010c4 GetDateFormatW
0x4010c8 GetProcessHeap
0x4010cc SetEndOfFile
0x4010d0 FlushFileBuffers
0x4010d4 WriteConsoleW
0x4010e0 Sleep
0x4010f4 HeapFree
0x4010f8 TerminateProcess
0x4010fc GetCurrentProcess
0x401108 IsDebuggerPresent
0x40110c GetCommandLineA
0x401110 GetStartupInfoA
0x401114 RtlUnwind
0x401118 RaiseException
0x40111c LCMapStringA
0x401120 WideCharToMultiByte
0x401124 MultiByteToWideChar
0x401128 LCMapStringW
0x40112c GetCPInfo
0x401130 HeapAlloc
0x401134 SetHandleCount
0x401138 GetStdHandle
0x40113c GetFileType
0x401140 HeapCreate
0x401144 HeapReAlloc
0x401148 TlsGetValue
0x40114c TlsAlloc
0x401150 TlsSetValue
0x401154 TlsFree
0x401158 HeapSize
0x40115c ExitProcess
0x401160 WriteFile
0x401178 GetCurrentProcessId
0x401180 GetACP
0x401184 GetOEMCP
0x401188 IsValidCodePage
0x40118c GetUserDefaultLCID
0x401190 GetLocaleInfoA
0x401194 EnumSystemLocalesA
0x401198 IsValidLocale
0x40119c GetStringTypeA
0x4011a0 GetStringTypeW
0x4011a4 SetFilePointer
0x4011a8 GetConsoleCP
0x4011ac GetConsoleMode
0x4011b4 CloseHandle
0x4011b8 CreateFileA
0x4011bc SetStdHandle
0x4011c0 GetConsoleOutputCP
Library USER32.dll:
0x4011d0 GetComboBoxInfo
0x4011d4 CharToOemBuffW
Library GDI32.dll:
Library ADVAPI32.dll:
Library WINHTTP.dll:
Library MSIMG32.dll:
0x4011c8 AlphaBlend

!This program cannot be run in DOS mode.
`.data
@.reloc
bad allocation
string too long
invalid string position
Unknown exception
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
UTF-16LE
UNICODE
(null)
`h````
xpxxxx
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
bad exception
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
CONOUT$
bad allocation
lejojegadocuzoyeg
wuniwe
kernel32.dll
ios_base::badbit set
ios_base::failbit set
ios_base::eofbit set
bad cast
C:\feveyi.pdb
^\9nTr
^@9n8r
D$ VSUP
D$HPW3
D$ 1D$
D$ 1D$
PVVVVVVVVVV
D$DPSS
F09^(u
0WWWWW
_VVVVV
0WWWWW
QQSVWd
t"SS9]
0SSSSS
^SSSSS
j"^SSSSS
j@j ^V
F\=P#@
<at9<rt,<wt
URPQQh
HHtXHHt
>If90t
>=Yt1j
HtHu4j
s[S;7|G;w
tR99u2
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
0A@@Ju
0SSSSS
PPPPPPPP
0SSSSS
Vj@h(*@
PPPPPPPP
t+WWVPV
tGHt.Ht&
^SSSSS
8VVVVV
;t$,v-
UQPXY]Y[
^SSSSS
^SSSSS
u,VVWV
t VV9u
&!wH|T
|zQ/1
R&ayHC
1@oq-(
1:|2KE
hRgpN|
u0tXk0
#U&x!g
c3HV/:,
BrpP1Bi
MM1UM$
Etr7pPqO
60.8I?
s:50Ex
ZAXM\F
DrNORK
1jF6}8
sYLMnQ
;Zq>qy
6Y;AcG
g=0[IH
(fo#_]~
K5T?R;
E9W\$"
a)>f`DKS
is?4F(
D Frxz
\Z}HM^
WHsH9%
:5X2u7
{Z;DF/9~^t
)u@xHBx
,|4l>8c
.Z<##;
Z-6`qoH
nw vl
#Cu$]JJ
PXfQpq
H.9%vS
tH:z+%
cd[M}Y-V
Mi+ [p
ZR,/`,=
_Z3.ur
oaPXy'
{BLjp]8'
|SyJQI
t7R7rq
(*c#g@w
[=[7FYg<
w-`'5"
{}Dly
PvMpg0
<e$DF_
6>H>=c
P]<1/b
rq5Vc
VCu?XwG
v:6At
Hfx,)w
ZeE|14
2B6#&S
>eE&I
KRZzy
sT25S=YT
7|Nmokc
*oHppO
4?jr0_
p~9j4t
SOY*W|
Ooh\lt
)S,d#6E%
tm<@Vc
o{%,49
K##kHa
Z;vh#UMy
km0gwt
E)5ZMt
NX>)-5x?
SU Fge
()W=he
,5tP|s)Y;
.U>c+\
4?4m#P8
hAcgyP=
YOupCP
1l`9/n
}KkR9/
1;}]4_
2>W`(s
=!P9}t
^6/)5|
zoggOC
\+tfo"GZ.g
4rcjH99P
5!%k31
\eZm47
lq!Fc@l
Z>IEb`
<"g@~+
zQZWwN;
h*N~p@
QCCx04
iz:m1:
]w:|~IB`
3-@aZ
0.3dz#
(uAcsa
ap k `
4hX=Uj
X]%4/G
La$#;n
R^0h*a]
)sKTT.
-Qh|{`r-
^"&$=5Sp
r8SxU:
:vG6T'
M?RCKh
moF`Bz
};:Gr8
ib}tBP
@N*5tPJ
\]]7P
~aF{Ieg'
@;K_&Gq
NH_~Z,
,YQ4zy
?vV'|
QNd\dW
T0{(+3
}N+G}R(
:CQ'q
e>4hBHKv
V8!*&:-HM
x!=:F.aW
HYK`3+
GetDateFormatW
CreateMutexW
WritePrivateProfileStructA
FindResourceExW
GetLogicalDriveStringsW
AddConsoleAliasW
GetModuleHandleW
GetTickCount
VirtualFree
GenerateConsoleCtrlEvent
GetConsoleAliasesA
GetConsoleAliasesLengthA
GetPriorityClass
GlobalAlloc
AddRefActCtx
GetLocaleInfoW
GetCalendarInfoW
GetModuleFileNameW
DeactivateActCtx
OpenMutexW
GetLastError
GetCurrentDirectoryW
ChangeTimerQueueTimer
SetLastError
ReadConsoleOutputCharacterA
GetProcAddress
AttachConsole
VirtualAlloc
LoadLibraryA
WriteConsoleA
InterlockedExchangeAdd
GetConsoleScreenBufferInfo
FindFirstVolumeMountPointW
GetNumberFormatW
GetCurrentConsoleFont
FindAtomA
WaitForMultipleObjects
GetModuleFileNameA
GetModuleHandleA
GetCommTimeouts
WaitForDebugEvent
GetCurrentThreadId
GetVersionExA
OpenFileMappingA
FindNextVolumeA
KERNEL32.dll
CharToOemBuffW
GetComboBoxInfo
USER32.dll
GetCharacterPlacementW
GDI32.dll
GetEventLogInformation
ADVAPI32.dll
WinHttpCheckPlatform
WINHTTP.dll
AlphaBlend
MSIMG32.dll
InterlockedIncrement
InterlockedDecrement
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
HeapFree
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetCommandLineA
GetStartupInfoA
RtlUnwind
RaiseException
LCMapStringA
WideCharToMultiByte
MultiByteToWideChar
LCMapStringW
GetCPInfo
HeapAlloc
SetHandleCount
GetStdHandle
GetFileType
HeapCreate
HeapReAlloc
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
HeapSize
ExitProcess
WriteFile
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
GetEnvironmentStringsW
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
GetACP
GetOEMCP
IsValidCodePage
GetUserDefaultLCID
GetLocaleInfoA
EnumSystemLocalesA
IsValidLocale
GetStringTypeA
GetStringTypeW
SetFilePointer
GetConsoleCP
GetConsoleMode
InitializeCriticalSectionAndSpinCount
CloseHandle
CreateFileA
SetStdHandle
GetConsoleOutputCP
WriteConsoleW
FlushFileBuffers
SetEndOfFile
GetProcessHeap
ReadFile
.?AV_Locimp@locale@std@@
.?AVout_of_range@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$ctype@D@std@@
.?AUctype_base@std@@
.?AVfacet@locale@std@@
.?AV?$basic_stringstream@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_stringbuf@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_iostream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ostream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_istream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ios@DU?$char_traits@D@std@@@std@@
.?AV?$_Iosb@H@std@@
.?AVios_base@std@@
.?AVruntime_error@std@@
.?AVexception@std@@
.?AVlogic_error@std@@
.?AVfailure@ios_base@std@@
.?AVlength_error@std@@
.?AVbad_cast@std@@
.?AVbad_alloc@std@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@M
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@c
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@c
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
^?E@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@{
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@#
`@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
T@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
k@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@9K^
k@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
E@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@|
E@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@_K
r@@@@@@@@@@M
@@@@@@@@@@@@@@@@@@@@@@@@@@@@|
@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@|
@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@|QtH*
@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@
G @@@@@@@@@@@@@@@@@@@@@@@@@@@@%
@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
J@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
|r@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
r@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@r@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@r
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu'
Buuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuu
Juuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuu
6+uuuuuuuuuuuuuuuuuu
Auuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuu@
uuuuuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuuuu
HuuuuuuuuZ
uuuuuuuuuuuuuuuuuu0
uuuuuuu
uuuuuuuuuuuuuuuuuu
uuuuuu I
uuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuW
uuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuu
g$8uuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuu"?x
uuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuu;_
uuuuuuuuuuuuuuuuuuuuuuuuuuuuu!
uuuuuuuuuuuuuuuu
|z|{|~~
~zy{{~~
y}~}}z~zz}
z|{|{~
|z}zz|
}|}|}~
~~z~~{|
~{~z{~||
{{z~{y}
||}zy~
{{|{}y
{|{{{|~~
}~}{}{|
z{}~}}
z{~}||
z{~~{y
|}}~~{
~|{|~~
y|||z|
|}{~~}|{~
~~~z~{
~}~}|~
}~~z~{}
y}{|{~|z
|y}~}~
|~|z~zy
~}z|{~
{{}z|}
}z{{{~
}|~~z|
PJ~f:|iT
:(:t i
((`E:p
T,|PPd/PP
:::E!d
y--}
E&EQ&*
?<P3T8
~~~~~~
Ziyo mewulew bixinelujuya cotomot gihebiloleyu. Yoxevejobiv lat kuyo yosufereja. Zixasul jokujunaxod. Liw. Temajupawuzop dizafiranuwo. Tohoda tajonis duhefemanola mot wix. Lubuxa zoneliyaz behunove koximisisicorup mijiwozusexade. Kizezupefayug wiloheyud menov. Sixixawap reboco xugerel tuniyayubaha. Fizuvet ficoro pukacon. Nubip. Xicoyacaci mikehaf zipobatalibuf yumepacarifo. Diciyamex hefiwok yezotizul. Lenecolila jakosimim docelenora rujafevub zapicexikonex. Xexitijo zusiluz six howiwucunoh xuxolax. Tihokayawemajo nukewakocefoya tokaxep rekusan bahij. Bogaxe nil yopedazuvoho linexicawewov. Lazoyelotubu. Zagecolipe mahetixeyiwi jixewu tacowewanuge xililigiye. Bagirinex hezawaci varip. Guhucoyikasezu kiv jag viselezudeg gasixazaz. Yuhoxevagub xemacuc cusuzokiwa zup. Wasakipaxo zubobogopovob donojayid. Yafemumuvorevab sav dasiwoy yetoconece. Rinidowadey. Yep xahoda hilicavum lakadayuw jaxokitenimebi. Roza rezojimojila xucopet gexasefucihedo xilumoroj. Zujigobawufiy rabotivoge jigakeyemafu jojejiku gegitejoj. Re
2$2(2p2t2x2|2
3(:0:8:@:H:P:X:`:h:p:x:
; ;(;0;8;@;H;P;X;`;h;p;x;
< <(<0<8<@<H<P<X<`<h<p<x<
3 3$3(3,3034383<3@3D3H3L3P3T3X3\3`3d3h3l3p3t3x3|3
4 4$4(4,4044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
8 8$8(8,8084888<8@8D8H8L8P8T8X8\8`8d8h8l8p8t8x8|8
8<9@9H9L9P9T9
:,:0:4:8:@:X:h:l:|:
;$;(;,;4;L;\;`;p;t;x;|;
<$<4<8<H<L<T<l<|<
=,=0=4=<=T=d=h=x=|=
> >0>4>8><>@>D>H>L>P>T>\>t>x>
? ?8?<?T?X?p?t?
0$04080H0L0P0X0p0
1 1(1@1
99Q95;y;
< <[<u<
=>6>e>k>p>v>}>
> ?'?O?_?
0>0U0`0h0
0;1A1V1\1b1h1v1
2!2*2/2D2J2S2Y2_2f2m2s2z2
3&353J3Z3a3l3r3
4C4V4d4j4p4
5>5L5Y5g5l5
626l6t6
7 7&7+72797g7l7v7{7
882878=8B8
<%<:<O<s<
3@3G3"4`4n4|4
:s;#<O<V<m<u<{<
=o=A>J>
?!?0?9?
040[0d0}0
0>1K1U1Z1
22>2[2y2
6$6/646H6X6h6x6
<+<0<G<
1)262f2l2t2
3'3x3}3
>#>,>8>D>P>\>g>
:0;B;O;[;e;m;x;
;o<=B=
4&404:4e4m4
5(5/575<5@5D5m5
6$6(6,606
7M7T7X7\7`7d7h7l7p7
7/888D8{8
8*9_9x9
: :$:n:t:x:|:
; ;A;k;
5Y5_5y5
6$696C6i6
7\8d8|8
9&939:9D9n9|9
:*=8=>=X=]=l=u=
>">)>=>D>J>X>_>d>m>z>
6Y6_6k6
99%909<9Q9X9l9s9
:$:3:9:B:N:\:b:n:t:
;+;k;q;
<,=3=N=S=[=a=h=n=u={=
>&>+>8>F>L>Y>y>
>2?8?e?n?
M0U0h0s0x0
1!1a1n1
485[5}5
6"626D6I6
:2;E;`;
%1T1y1\3X5\5`5d5h5l5p5t5
7R8X8v8
9M9R9z9
> ?&?<?G?^?j?w?~?
0I0b0q0v0
1>1F1X1]1b1g1w1
2E2J2Q2V2]2b2
1 1&1-141;1B1I1P1W1_1g1o1{1
8<8N8`8
9L:^:p:
0*030=0q0|0
243@3S3e3
4/4X4i4V6l6}6
;%<k<t<
44)4A4H4R4Z4g4n4
5)7F7r7
:f:A;y;
?8?l?r?~?
0'0@0^0
:9:B:W:
2W2w2Y5{5
>!>&>0>>>~>
9C9Q9Y9f9
;&<R<z<
56,6L6x6M7
7)7I7i7
8+9W9w9
:0:<:\:d:p:
;,;0;4;<;P;p;
<,<0<8<<<X<x<
=0=<=X=d=
> >(>,>D>H>X>|>
? ?$?,?@?\?`?|?
0 0@0\0`0
1(141P1p1
2 2(2<2D2H2L2T2\2d2x2
3 3(30383@3L3
4$404P4\4|4
5,585X5`5h5p5x5
6$606\6|6
04080X0
2h6p6t6x6
7$7,747H7L7
848@8D8H8L8P8X8\8`8d8h8l8p8t8x8|8
9 9$9(9,9094989<9@9D9P9
2(3D3`3
9(9H9d9
((((( H
h(((( H
H
KERNEL32.DLL
mscoree.dll
E(null)
sogunewosizidogowidotujoho fexanabila wohazebevirekazehofu jajegoy
yucipefihaxonapuponotenujarunohi japujixitaxotiyir
limiwininoxujirexavuxuyabeba
tesidoyekacolejodiyawetites
kernel32.dll
xonimehakibihex
wuworeyaze
felewineri
larebapudidirobibagaximibe
VOSAYAD
VS_VERSION_INFO
StringFileInfo
043831F6
InternalName
SheatEating
FileDescription
PowerSquirell
ProductsVersion
16.59.43.89
ProductName
SonarDoor
ProductionVersion
28.73.67.9
VarFileInfo
Translation
+Japugiwa bimezahuri gutuvozipoweyo latarapa\Cuvemoyicul gowomotufosuz cixiwivado kujakegelidaha lelutulemanu kecibilebal kavajojugahobowPNavo sayewerubiv wipuwebiru vono lemicenamad weger cecigohuloxug voputabifuwexav9Hofuleyoroda jowuyosisagid rowewudanozoban fosigaxarawado
PerenohusapulcCewisokuwavibeh rojinen yiravu kotido natelefidek dusuvaxac viruhodenijemev kahemoxeha lunocawonoku
PajosovFPec rihefoma kowubeguwiwalu rakuri gov pezezojozifix bocatiwali gavoziSKivu taji kabedujipup tacikevaz nukivegekiwu vinatuvuzopoten kigipayotexa didavarageGacarukalicusu civivecalawoyo pexiseno jiva cefokaxezohiv kawiraxifosu yububalav fujeluyawulu fokitumbVifog tunoris yecamino semimiloyu xisutitiresol rigavomos hakale veyapiwemafuz jijigodiri wobekijaDNosizicisahar mufegohimis xar jokezomewo ficodozi xepojoyahusufu hic
GSitojomiwideha xuvehakih gisabih fumuwomotux meyihovohihe bewuwoderasek
4Hubivukilovilup jix mum cuhowupobibita min zosipobig
Ceciza zorago denirovYerurilosulizu sipadenohukibes gubiradit suwebubuhorij mibecu sinoxojixenus hojiruxoferobag panakuxazoki jixebicuhivasVZegitovifedo kelafohu noxucuxisu mesuwedawivamey xapapenuzimezu gabo wasehefen mahupoj%Pacudagijaxabiv hetisoz boyudifuvenit
Fizose`Jisarepahuriyum vogimodogilec maparuvive fewufehipez xefunifowipaz badodiro sanesuw jilow numepo
Buvefewako vujakamebufagakdReyidefe yivifokigin yojugehew yigi dadikayoxo yegiku tusagihigeriyu joxoyabayit sega xumorumohitumi
YeyoPJinotahuhup hecov mivapowezana pupojid welohuh fipi xecezawafa sebof cati busariDVoyudewusipi mebirulolo satibihuluge rayoducayuhipol wizebebolihixotWDapetekiwoh xure hin durodurefefojub rizewev geradefajigi gagaf bovepocefusu reraparewu
Tiloliludih
Hupud zeg joxe kihehurivu?Papejo dur nicanewiwe sijofifi bihikujoxan hihakifetunucuz fopi
)Xuxukovikipi hudegav tumigo ceyojinalonihMCetutowacahoto kubokoci nol bir fizemupoyaparo bonucesacunudu miruwe rexajobi
8Mayobul jelijobuzay bakiyoyivur zafocusakomapam hahexuca
JJiruj roci logij rimi bucokuhofi temuciwebasuso yek mugarifodovuxah hozepu
(Yijovilawajeb rumamavixadij tafivugoxuho
Paj yerezujucosac cidivunito
Sarogamixoyo nipoma mipuhuvSXeg sob wepoh cinajifoco xalocipi dawoxehol zek wamebetatimo hinuxocad fowadepegosu
(Nejupikuricago puhoke puhehasasi popijan
WJawasubowa bepuyovunon fagebu palijugamezizu hun fitajedusihiy hicom liholotupol naroko
[Vetizar momici vusufume hadudivi risefanodudakeg gizera neluwiloxujo wazoyehot pitofuzi far4Xetey kegemiku vudas cuvu dotepatuyorahep nimoruwuwo
JYacu dununavuxozifap xuyaw guvagakeh zijuyikuvum nan piyokum vev golitesat
5Tisinod pijateb cabojada waxigutucecozu dajiyu patofiXMuwumepesero sijulezi duselovodike renatalara wojojamusa vitap yipa mahuyasumukuw rivuza
Zogudab soba karihaluk
Niwa yoduwohazokobal
Hiruret zabohas todozu gev*Tacerav riva zufurotoyadabo hew huvusolepu/Horulaf lezotutiseroji jemenimolebo rumapubupobHDijujikuyoro fipafapaxek pehes zimeboluyebuxat jererujahok liceluberuwuc
Nemuvaj riyezuhojo jisrXenohebopati wikaxezemor nominam nicumixovij rajabuk rebuwarubu tenilaketegic minehupo livojinaxubahat falixoyihitWJurubesacadam sofaseburu moxevayag dox hetametil lohediceden jecunovohigow teratapa xec*Vexahuha zewikarepebuz nucoduvu xug gobido
Mujeyahawece6Hocacipibez besi zajobobeh gogudi vewidonat xajarovuva'Ganape tovojotugewokip ziv xup yer cako
Dakudigej doyatu diviMixonowisixa xopud dokijafaketiiJufelurigibab mozoliso yotajahapohutac hoyevavomopeduc wareceh kitetu natetaxomuyox ceyafozas segesimodocHFemukop tuvasisinomu vasuyup jawoxo fujinomuvajuj hifime wexesitivotibujAXon wabasusasa jahufu kuruy dow peg lejuzanazoc xebutu tapemivayi
Hive vodeyo nofadumabenale,Xupekeyibaja mitugugosidusin mosanidalusijugUDoxayumasorivav piwuva dewocixiwekeso zawaxexo noj zubijuzay vanavuburugekol hojaxise
Huyuvivade xuk
Xekiyem gomuyezerokGagum vetuv fozefuco vudusovaje
9Tebe gibehebonakeda gux tabacipay lubitenew suliwe goleta
Judokozezolajuj
Jux godokumeke gujuduyagaziFLarulijokukev vanasejamucis pikedujox fafewubele webawa rayaluboce vid<Witapimo gogakobaziy horave zohimozin zewicanek zudusunu kavQKuvoh kofumozo hipehobogu yerudoju mifupuxibix nisujoyu liguvoyapon fat topuxevucAJicezum judotavi miy diyufukigibigig ludexukagekuzo pato fociyahu
Taculikup wowecezof wose tuh
UBapahuzotex cijubixo kiciyujazilaya manakado zahime neriveho kizukacipuhih tucuxusume
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Raccoon.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Zusy.471545
ClamAV Win.Packer.pkr_ce1a-9980177-0
FireEye Generic.mg.fdc78ab84bc21751
CAT-QuickHeal Ransom.Stop.P5
ALYac Gen:Variant.Zusy.471545
Malwarebytes Trojan.MalPack.GS
VIPRE Gen:Variant.Zusy.471545
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0056f9be1 )
BitDefender Gen:Variant.Zusy.471545
K7GW Trojan ( 0056f9be1 )
CrowdStrike win/malicious_confidence_100% (W)
Baidu Clean
VirIT Clean
Cyren W32/Kryptik.JZO.gen!Eldorado
Symantec Trojan Horse
tehtris Generic.Malware
ESET-NOD32 a variant of Win32/Kryptik.HTTF
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky HEUR:Backdoor.Win32.Androm.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Stealer.Agent!8.C2 (TFE:5:GiqU8fBiq8O)
Emsisoft Gen:Variant.Zusy.471545 (B)
F-Secure Clean
DrWeb Trojan.MulDrop9.52626
Zillya Clean
TrendMicro TROJ_GEN.R053C0DF923
McAfee-GW-Edition BehavesLike.Win32.Lockbit.dh
Trapmine malicious.moderate.ml.score
CMC Clean
Sophos Mal/Generic-S
SentinelOne Static AI - Suspicious PE
GData Gen:Variant.Zusy.471545
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=81)
Antiy-AVL Trojan[PSW]/Win32.Raccoon
Gridinsoft Ransom.Win32.STOP.dg!n
Xcitium Clean
Arcabit Trojan.Zusy.D731F9
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Backdoor.Win32.Androm.gen
Microsoft Trojan:Win32/Glupteba.PAI!MTB
Google Detected
AhnLab-V3 Malware/Win.Generic.R585166
Acronis suspicious
McAfee Artemis!FDC78AB84BC2
TACHYON Clean
DeepInstinct MALICIOUS
VBA32 Clean
Cylance unsafe
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R053C0DF923
Tencent Trojan.Win32.Obfuscated.gen
Yandex Clean
Ikarus Trojan-Spy.Agent
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.ERHN!tr
BitDefenderTheta Clean
AVG Win32:TrojanX-gen [Trj]
Cybereason malicious.3d289c
Avast Win32:TrojanX-gen [Trj]
No IRMA results available.