Static | ZeroBOX

PE Compile Time

2022-09-20 03:33:40

PDB Path

C:\bicoyemojix\hasupadunawax\jibar41\ziy\98-la.pdb

PE Imphash

f719d133eb0a7f30a0b9bd8ad8b269ee

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000392b6 0x00039400 7.88036001778
.data 0x0003b000 0x004e3cbc 0x00001600 2.03679109548
.rsrc 0x0051f000 0x00024588 0x00024600 4.31996093962
.reloc 0x00544000 0x00004e4c 0x00005000 1.31703373977

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x00540b38 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x00540b38 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x00540b38 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x00540b38 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x00540b38 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0053e840 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x00543220 0x00000368 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x00543220 0x00000368 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x00543220 0x00000368 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x00543220 0x00000368 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x00543220 0x00000368 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x00543220 0x00000368 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x00543220 0x00000368 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x00540be8 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x00540be8 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0053eca8 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0053eca8 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0053eca8 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0053eca8 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0053eca8 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_VERSION 0x00540c10 0x00000200 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401014 ReadConsoleA
0x401018 GetConsoleAliasA
0x401020 GetCurrentProcess
0x401024 AddConsoleAliasW
0x401028 GetComputerNameW
0x40102c GetTickCount
0x401030 GetConsoleAliasesA
0x401034 GetConsoleTitleA
0x40103c CreateActCtxW
0x401040 CreateDirectoryExW
0x401048 GetCalendarInfoA
0x40104c FormatMessageW
0x401050 WriteConsoleOutputA
0x401054 FindNextVolumeW
0x401058 ReadFile
0x40105c GetModuleFileNameW
0x401060 GetStringTypeExA
0x40106c GetLastError
0x401070 SetLastError
0x401074 FindResourceExW
0x401078 GetProcAddress
0x40107c VirtualAlloc
0x401084 IsValidCodePage
0x401088 LoadLibraryA
0x40108c WriteConsoleA
0x401090 CreateEventW
0x401094 GlobalHandle
0x40109c GetOEMCP
0x4010a4 VirtualProtect
0x4010ac GetVersionExA
0x4010b0 FindAtomW
0x4010b4 FindFirstVolumeW
0x4010b8 GetCurrentProcessId
0x4010bc OpenFileMappingA
0x4010c0 CommConfigDialogW
0x4010c4 CreateThread
0x4010cc GetLocaleInfoA
0x4010d4 CreateTimerQueue
0x4010dc LocalUnlock
0x4010e0 GetStringTypeW
0x4010e4 GetStringTypeA
0x4010ec Sleep
0x401100 HeapFree
0x401104 TerminateProcess
0x401110 IsDebuggerPresent
0x401114 MultiByteToWideChar
0x401118 GetCommandLineA
0x40111c GetStartupInfoA
0x401120 RtlUnwind
0x401124 RaiseException
0x401128 LCMapStringA
0x40112c WideCharToMultiByte
0x401130 LCMapStringW
0x401134 GetCPInfo
0x401138 HeapAlloc
0x40113c HeapCreate
0x401140 VirtualFree
0x401144 HeapReAlloc
0x401148 GetModuleHandleW
0x40114c TlsGetValue
0x401150 TlsAlloc
0x401154 TlsSetValue
0x401158 TlsFree
0x40115c GetCurrentThreadId
0x401160 HeapSize
0x401164 ExitProcess
0x401168 GetACP
0x40116c WriteFile
0x401170 GetStdHandle
0x401174 GetModuleFileNameA
0x401188 SetHandleCount
0x40118c GetFileType
Library USER32.dll:
0x4011a4 CharUpperBuffA
0x4011a8 GetWindowLongW
0x4011ac LoadMenuW
0x4011b0 CharToOemBuffW
0x4011b4 GetCaretPos
Library GDI32.dll:
0x40100c GetTextExtentPointW
Library ADVAPI32.dll:
0x401000 ReportEventA
0x401004 ReadEventLogW
Library ole32.dll:
0x4011cc CoGetPSClsid
Library WINHTTP.dll:
0x4011bc WinHttpOpen
Library MSIMG32.dll:
0x40119c TransparentBlt

!This program cannot be run in DOS mode.
Rc~BRc~BRc~BL1
BCc~BL1
B]c~BRc
BSc~BL1
BSc~BL1
BSc~BRichRc~B
`.data
@.reloc
bad allocation
Unknown exception
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
bad allocation
towisu cuxale gibuhi yivepakucuyudowudupitijoz xirohise
kernel32.dll
wonamobuzolaficepode
nelinabogozejohu
kernel32.dll
C:\bicoyemojix\hasupadunawax\jibar41\ziy\98-la.pdb
D$$1D$
D$$1D$
QQSVWd
HtHu4j
s[S;7|G;w
tR99u2
t"SS9]
0SSSSS
0A@@Ju
u&hx!@
>=Yt1j
j@j ^V
0SSSSS
PPPPPPPP
0SSSSS
PPPPPPPP
t+WWVPV
URPQQh
;t$,v-
UQPXY]Y[
4R9Rx?
rgvAjS
j<tknB
*x0F!'
^GYiksNd
*#*g#T5
|\5y] )/
d<i<oQ
xRq,wD
`uG0lj<
tV2SG9,
Ulv<MD
:zrLWC6
[si/uy(
6I)iBA
Fe_lIve
jL4 l3
$#:>Z4t
G^dT7&
aLKVE92
WlqD)C
+|a]>@
0.m}hg
)k$c_UL>
UEH@^n
a0G\mJ
Jl+*l`
w6kfyV
-nBY42
Sh)\=a
)[UTU>4l6X
aD|Ngs
QN91Wuo
8d&J=(
De$<R%(>
AthEgR,F
!~E;vVm@tX
I'0A:l
W:Yql)
$>UrAan
bZ.Oct6
Mfx1nOi
O|lnG&
gH~8Vy
qh?VrU
@Mv7.Y
^GnfU<
8'6wYG
mWm]%tkhC
8A6h00
j=TBA
!}usMe
aG"d'}V$
nwvuQWLh
K;p6$8I\^
M#%}`N
aRD-M8
8\~wuAB
.iT*aZ3
'UI\]m
p2efU)
gT^q2!?ds
^1T_i
>0h] G
>%(KJ$
@mhvTz
"|S)^I
1/-`E]f_o
a+?"J-(
yyUh@;^R
IL}ZyS
%|%!-^
qr[?o
_k<epP
>q2e:@
;^}m-#
&5M.|A
g,Krhj
_)'Ds
!2=4#JK
'*~<n>|p
$N6^*{r
uX-0C?
.X40:0)9
tddCKe
TVD*|H
#l&uUc@
{MxMmo|
Z|K/\N
tS5R`6
H<6<pg
,T@-dP
+t\*O;
5"@6XAf
=30-$D
'ot=q%ci
Ajv9'I/
,r$]HIH
dR+WT@u
&cX |H
WC#xl
'6M3n~
k.h.gw
EVzy~j
R6yKYu
ur}do$
8S0>_a
KcZ0hn
!WjB{V
5*pntn
&DK~<2
e/+~I+
NhBCDz
KR8DfZ
O\>eJ!
ZQs8gJG
ESSIn?
V*"Jo>2
^|Bd}L(%iP
Lg"i7a4
T^4h*g
Sc/qaH
5O^m5{
[OQcf
E'00`q
d@<.--
6_gJc,
PM),E^n:
B`c/F$
.H>eYK
<,a9R\;
eHMTB}
S]@Zz7
!Dw[4[
g#(C&;
iTR`yk
yv`{eg
0'S{Tal
"*cr8
UpsNaT\
g0/&{QM
>f&7:<
`k&mar
S%d;uM
bP-N7)
)bI<q>2
wY+laOQ
B3(?;]1
L'HC+|QT
4D9KMs
)!X@~{
|ThFc0qf
*!QuKY
Y^rKeG
Rh`[OP
g4>]SsC
B3pGn ZC
04Eof?y}a
C[oBdm
gVP;.o{
@)WH0
V;8b>p
G#A+",R
mKf \p
tjeO^1
R^jxK<
ah1-d{!
w7]#-hI
i)/QV
Wr]ZUo
_-|~+3.
a?/fe)
v;nI;<
}R6n=
8yo{Wg
y1? EC
3ydLx}
t:c5Ie$
T@nvx3
j>A`P
\?h"\D
aY!+.3
a&;eD8
(yk*m[M+
A;I)Y~
}dK/~*r
^+T<lL
6)*rG,MP;6E
<w5%kYF
j5s`?`
tYO Ku
6GB{h$
P+>&^$@
Ol@lOI
D%78Am
f2w7Z+
2u#]/0
8-gI$P
Hjk%X s
}iB|jn
9-4vTe
]bz)4x2ZZ
D!d1X"
RJz5+#
z=T>"y
ysHFE8
({M4Z>
Q6dqG-
pw&6&Q
oO@T5$
2O$_XY
fIS?$t
@$9xNI
OgelhOf
iL0A?n
y5tDL
v uc@_
#lIF_g=
Z|t[e
t-zva]
$S%0Yl
rlmdZN
g_&g\4
B"TkQ}
reGE7T
,`B{:_
(`=E'yp
XLCMj4a
$=>X^}
PV4M1_
0kr{am
s|%ak5
F;q}!
XY<=W
2S(7Al*
{KKQTo
mPM>2P;T
{:PH"6
B\'f%H
}k[\iJ
X[yMl7v
j9|Feb
60k`iQ{y
!Amgn0
4'<e`+
UwF.[&
!cn1ycEL
\UBAr)
fFZ*ZT
,Uy\e<
Jm-*O%
G)q|6v
X27w$1
TYbl]L
X)^^-VWOT
-kS"uv
*#_9$n
`X{21!
9kBjH/:"|
~q"TWv
`I[-TD!
;[ tn
.#>h"x
vT<;zyDHx$2
g7u4u
ip7H}D
;|}Y.I}%sj36
'c0=tr
\0MXIez
M<Vb\w
GhVuv
`q{o)T
){V7^Mt
Z$3YS" `
xq,IZJ
90?:+W
q=~V~3
ZGK.#&
p;Td-#
]71y#]
n|.1;%v
vx2[tC
L5mFM\w
1bp3T2
}|17B|
pp"D.Q
X)?+D<
6D^Tx.V
%inHz
S_"}p<
*mVAlmniOP
IjBxbh
BuU^-
*lg@FVC
R;r7:6A&
`!zU73s
BnpmZz
<s>V!|
$AA\`$
:|<V]c
8]c\40~
=Kfj>g
G6YAY6bWW
xHb&w2
S*nj2
_>)p!.
D^#&AE
wWvOx>
)H|Cmgibie
z"MuH`
ovy-.m8
A/x<>}
Z6G@`|Z
XI1.$/
).1934
&4b1?>
Rf_B=u.
W!@qB{+
Z$7Ek"
Z_:Pm#
(40-1I
FZK'Z#
nd$JD_
N,SZj&;
aRL\S"
LocalUnlock
CreateTimerQueue
GetLocaleInfoA
GetConsoleAliasExesA
FindResourceExW
ReadConsoleA
GetConsoleAliasA
InterlockedDecrement
GetCurrentProcess
AddConsoleAliasW
GetComputerNameW
GetTickCount
GetConsoleAliasesA
GetConsoleTitleA
GetWindowsDirectoryA
CreateActCtxW
CreateDirectoryExW
SetProcessPriorityBoost
GetCalendarInfoA
FormatMessageW
WriteConsoleOutputA
FindNextVolumeW
ReadFile
GetModuleFileNameW
GetStringTypeExA
SetCurrentDirectoryA
GetLogicalDriveStringsA
GetLastError
SetLastError
ReadConsoleOutputCharacterA
GetProcAddress
VirtualAlloc
BeginUpdateResourceW
IsValidCodePage
LoadLibraryA
WriteConsoleA
CreateEventW
GlobalHandle
WaitForMultipleObjects
GetOEMCP
QueryMemoryResourceNotification
VirtualProtect
GetCurrentDirectoryA
GetVersionExA
FindAtomW
FindFirstVolumeW
GetCurrentProcessId
OpenFileMappingA
CommConfigDialogW
CreateThread
KERNEL32.dll
CharToOemBuffW
GetCaretPos
GetWindowLongW
LoadMenuW
CharUpperBuffA
USER32.dll
GetTextExtentPointW
GDI32.dll
ReportEventA
ReadEventLogW
ADVAPI32.dll
CoGetPSClsid
ole32.dll
WinHttpOpen
WinHttpSetDefaultProxyConfiguration
WinHttpCheckPlatform
WINHTTP.dll
TransparentBlt
MSIMG32.dll
InterlockedIncrement
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
HeapFree
TerminateProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
MultiByteToWideChar
GetCommandLineA
GetStartupInfoA
RtlUnwind
RaiseException
LCMapStringA
WideCharToMultiByte
LCMapStringW
GetCPInfo
HeapAlloc
HeapCreate
VirtualFree
HeapReAlloc
GetModuleHandleW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
GetCurrentThreadId
HeapSize
ExitProcess
GetACP
WriteFile
GetStdHandle
GetModuleFileNameA
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
GetEnvironmentStringsW
SetHandleCount
GetFileType
QueryPerformanceCounter
GetSystemTimeAsFileTime
GetStringTypeA
GetStringTypeW
InitializeCriticalSectionAndSpinCount
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVexception@std@@
.?AVbad_alloc@std@@
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\O[
n\\\\\\\\\\\\\\\\\p
\\\\\\\\\
\\\\\\\\\\\\\\
\\\\\\\\\\\\\[e
\\\\\\\\\\
,]eAAJ
\\\\\\\\\4x
\\\\\\n
\\\\\\%-j
\\\\\\b
\\\\\\\
H\\\\\\\%*
\\\\\\\
\\\\\\\
\\\\\\\
\\\\\\\\\[
2e\\\\\\\\\
\\\\\\\\\\
\\\\\\\\\\\\\
\\\\\\\\\\\\\\eP
\\\\\\\\\\\\\\\-
\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\n
\\\\\\\\\\\\\\\\\\A
\\\\\\\\\\\\\\\\\\\e
\\\\\\\\\\\\\\\\\\\\\\*
\\\\\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\\
p\\\\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\\\!
\\\\\\\\\\\\\\\\\\\\\\\n
0~;}B.
\\\\\\\\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
E\*p;|)k:
k)fM1E
*************************************************
^**x0`y
*****w
******7
*******
Mo*******m
e5N#********6
b4**********rIc
K********
(((((((((((((((((((((((((((((((((((((((((((((((((((((((
(((((((((((
(((((((((
rQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQ
(((((((
@@@x@xxxxxxxxxxxxxxxxx
e***PPP
Q)>>>b
ee***D
Q)bb>>>
Q)bbbd>>>
Q+@bbbb>bb
Q)dddbbb>>>
Q+dddd@bb>>>b
ddbbbb>><
~IIIIIo
dddddbbb
fIIII5T
IIIII5
IIIIII?T/
IIIIII5?
X?IIIIII?T
ss5I?/
QQQQQQQ
11111111
ZUUUUUUUUUUUUUZ
Nbbb>>>
{{{{{{{{
@bbb>>b
|ddbbbb>>>
ddddbbb>>
Ew
8(((((
((((((
(((((((((
(((((((((
yyyyyyyy
V(((((((((
V((((((((((
((((((((((((((((((((((
(((((((((((((((((((((((
(((((((((((((((((((((((((
m(((((((((((((((((((((((((((
KW(((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((
;;;;;XXXXXXXXXXXXXXXXXXXXXX
;;;;;;;
BBBBBBBBBBBBBBBBBBBB
M,;;;;;XX
X;;;;X
X;;;Xg XL9
MX;;;X
pMX;;;X
o>>>>p
%`````
z<<<<<<<<<<<
XXXXXX,,;;;X
;;;;;X
;;;;;X
;;;;;;X
_(6/XXXXXt;;;;;;;X
;;;;;;;;;;;;;;;X
=;;;;;;;;;;;;;;;;XXXXXXXX
;;;;;;;;;;;;;;;;;;;;;;;;;;;
n;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;
ffffffffffffff
iiiiii
iyyyyyyyyyy
LLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLL+g
LLLLLLLLLLLLLLLLLS
LLLLLLLLLLLLLLLLS
LLLLLLLLLLLLLLLSh
LLLLLLLLLLLLLLLS
LLLLLLLLLLLLLLLS
LLLLLLLLLLLLLLLS
LLLLLLLLLLLLLLLS
LLLLLLLLLLLLLLL2g
LLLLLLLLLLLLLLL3
LLLLLLLLLLLLLLL3
LLLLLLLLLLLLLLL2
LLLLLLLLLLLLLLL2
LLLLLLLLLLLLLLL
LLLLLLLLLLLLLLL2
LLLLLLLLLLLLLLL
LLLLLLLLLLLLLLL
LLLLLLLLLLLLLLL
aCDpO[
LLLLLLLLLLLLLLLL
PY]LLLLLLLLLLLLLLLL|
LLLLLLLLLLLLLLLLv
LLLLLLLLLLLLLLLLv
gLLLLLLLLLLLLLLLLv
]LLLLLLLLLLLLLLLLv
LLLLLLLLLLLLLLLL9
__z,,zZezze
LLLLLLLLLLLLLLLLv
gLLLLLLLLLLLLLLLL9
ALLLLLLLLLLLLLLLL9=[
N~LLLLLLLLLLLLLLLL
]LLLLLLLLLLLLLLLL9
dc88c8c?c??
LLLLLLLLLLLLLLLL
LLLLLLLLLLLLLLLL
LLLLLLLLLLLLLLLL
LLLLLLLLLLLLLLLL
~LLLLLLLLLLLLLLLL~
LLLLLLLLLLLLLLLL
d#!'!cc
LLLLLLLLLLLLLLLL
\\\GGGG
]LLLLLLLLLLLLLLLL
~LLLLLLLLLLLLLLLL
LLLLLLLLLLLLLLLLL
SLLLLLLLLLLLLLLLLLg
LLLLLLLLLLLLLLLLLL
2LLLLLLLLLLLLLLLLLLLL
SSSSSSS
2LLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLL
XXXX---U-U-U!
UUUUUUM$
UUUUU[
UUUUU)
,h3UUUUU
UUUUUu
UUUUUc
UUUUUI
UUUUUX
UUUUUw
8UUUUUo
UUUUUU
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------g1-5
----------------Uw
----------------%wK
----------------
---------------->
---------------->
----------------
----------------
----------------3
----------------&%
----------------&1K
>----------------
&----------------1J
Y"9pI9z
0&----------------3%
----------------%
>----------------1
----------------
----------------
1----------------%%m
----------------%
Yzw----------------
%g---------------
>---------------
&g---------------J%y
1---------------
g---------------
%g---------------
Jg---------------
}%g---------------
%g--------------->
1g-------------
------------g
------------%
------------
------------&r
------------
------------
------------
j------------
------------Jw
%31wJ%
-------------g
1----------------------------------------------------------------------------------------------------
8SSSOOOO
~}~}|}
}y|~~~
y~}{y}
}{~}||}
~}y{|{
|~}~|~{}
|}z~~|
~}|{~|
~~~~|}
z~{z}|
~||~{{
{}{z}|
|~|~|~
}}||}~}
z~z|}~
~~~}|~{~
}|{}}~}{
{|||{|
{~}{~{
aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa
aaaaaa
aaaaaaa
aaaaaaaaaa
aaaaaaaaaaa
aaaaaaaaa
aaaaaaaaaaaaaa
aaaaaaaaaaaa
'''''''''n
((:iiDD
VVV111
(((:iiDD
(::iiDD
((::iiDD
bbbbbbbbbbbbbbbbbbbbbbbbb
55555555555555
555555
5555555n
5555554
cccccccccccccc
DD!!!!!!!!!!!!DDD!????????????!DD!
DDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDD
iiiiiiii
iiiiiiii
iiiiii
iiiiii
iiiiiiiii
iiiiiiiiii
iiiiiiii
iiiiiii
iiiiiiiii

1P2T2X2`2d2h2
2,3034383
9 9$9(9,9094989<9@9D9H9L9P9T9X9\9`9d9h9l9p9t9x9|9
: :$:(:,:0:4:8:<:@:D:H:L:P:T:X:\:`:d:h:l:
=<>@>P>T>d>h>p>
? ?0?4?<?T?
%0+00060=0D0K0R0Y0`0f0m0s0y0
1%1+1O1
4!41464L4c4m4w4}4
5e5s5y5
5&6+6:6@6F6f6l6
7!71797D7R7l7r7x7
8N8_8d8
8F9L9R9X9
:_:g:q:
;(;8;H;X;j;~;
>Z?d?q?
1+21292F2Z2o2
2=3B3L3
:?:_:$;N;
7<7I7G9a:s:
?3?Q?X?\?`?d?h?l?p?t?
60A0\0c0h0l0p0
1Z1`1d1h1l1
2$202i2r2~2
33'3,30343]3
5=5D5H5L5P5T5X5\5`5
6'7-7M7
8#8M8[8a8
<7<<<K<T<a<l<~<
=#=)=7=>=C=L=Y=_=y=
2Y4d4l4
9"9I9O9Z9f9{9
:#:0:::A:Y:h:o:|:
; ;J;P;l;
;$<G<Q<
=$=*=2=9=>=F=O=[=`=e=k=o=u=z=
>(>.>J>f>
?J?e?k?t?{?
0"0'070A0H0S0\0r0}0
1G1L1W1\1z1+282@2p2,3i3
5>5K5U5c5l5v5
9$9-929A9h9
?$?\?f?
10262L2W2n2z2
3'3Y3r3
6&6I6V6b6j6r6~6
758>8D8(9.949:9@9F9M9T9[9b9i9p9w9
< <2<D<V<h<z<
>%>,>6>>>K>R>
6V6\6h6
878k8q8}8
8,9Y9e9q:8;=;O;m;
>2>8>G>M>\>b>p>y>
??^?e?k?
"292\2f2r2|2
3 3<3@3\3`3|3
4$40484h4p4t4
5(5H5T5p5|5
64686X6t6x6
70787<7D7L7T7`7
7(989H9X9h9
:$:,:4:<:D:L:T:\:d:l:t:
; ;$;(;,;0;4;8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;
((((( H
h(((( H
H
KERNEL32.DLL
mscoree.dll
sigabicegehonufabokifade jonimalenakewaxuwibeyik jawukiyucuyeniyepijivufalupuko noxezupijetimime
Gagowidedojaf sudacavumo veroxonafo
Hufazisox towugomi
dinoticusuyosu
pezosuseguvozuhoguzucamidudefow
sisugitubomij
@jjjjjj
@jjjjjjjjjjj
@jjjjjjjjj
@jjjjjjj
@jjjjj
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
043831F6
InternalName
Alhimicus
FileDescription
NoJustice
ProductsVersion
19.21.39
ProductName
ZoomaDoop
ProductionVersion
19.87.40.39
VarFileInfo
Translation
@Vezicomudeberoc fovafijuj zete kuxihica hexecuco juresavosidenumLXusakijo tuwuvoh donubufidila lidozahamezi dacuzurogoda hevuheresabik vutibo#Sis gaseciyod xun jogil jokigoyumay
Butu zupinudop ticulukunikaluOXolovol hugowolafise modug hiwurejavu dijaxobawe jiwitekapowuma lejuzoyoxi tofo
Gatuminemiwajiw
MolaklVitohipimufopic rikajasotexo papezijizo gavotukez wel jesolacuz gaminuti wodatubagabedix jogu fodaxuruketifuFXosufih mepezezoj widemitu tunihoyemoc hukurayipaga toso napecorifarat
Muxuk bew kigifugoxili
NupunugasanagYHeboyovaxeloram geki zagizubuwej tavekazohepa jugace kiko sedawobuyihidoc mubakalajexapuv
Fetazi nif
<Figepezuvubijab vufupesupapizid ropufemov marohagexasebe sirGTiramuh behavat gimezomiwodexam derefolexeyes gugimojiyid keyoyuyulewiv
tFazewereb raregefaruhoxa nazegesujadoza zosulayujolomul lusun texayerigovizub regebavec cokogifo jodakemarosiv yiyut
Rosa dipolegQGoyihe hurohituliva canicolimopi kajev lejo moba zejuruyifip pivukipiwexi rajelot>Gupevodu gegadujigub xohohid jicakufeduw bogacojufokuw bunoyedIDisab sitedi wunihuc rafevut lixajemupu rajaserogah kinozaw toku yahovomu;Xugowefoliwudo cugoxeloxupay pek zatuhufoloyox hif luzuzoma.Nogebimagobado dapivejarul jiluhebutil cezivuf%Rixijamifopu taciratam fibun ruveyevo
ZFefemuyug zimiju buyowuzulurel tarowupofoga wemecul ruruwo gucuxobipucef cirecutikuca caki
Fanadur
Jibosiparorav femo josuxon
Mukoratabata
Ziz gasuleremazayuf
Tugofe xemewajikim genopeyulagHixejotemo nek suw yisinokexoxo wucekekuza xarerihor piyojureyu kekotucunawi vozejalebaw hifulihocobifi
Gosuhub hukasukazedu
Sihib fidob sikuwixul napuwob<Kerixig kajow semeroyucebi kitaliguhibuw tilo lulakehojanohu(Duvedimetojobaf nunewiho lababazobazisof
Mav dob3Waxudivine soxofubexatawuc nitotuwejuzi fajanitetuk
FefazagadekonOZanufi govekifotitevis zavumicibij yimubuzo lugiyevoh kunucegegafozi lubowupiji:Yelokowu wagirajese kenehusi rayasidaxi govuse suvas somupYGuyitihilubawu gonimot kogabidaker difusafa jatizinebo yenu nasaneyiwetip xexopixaniv kajKTebamehesiju lijavihu jitugadicolodoz vebuzihotavi jegipaxezejat jenobibofa
Molidu bosonezeyi nekolexinu:Silim yan tozekac hizohox voyujup kuma xec mipun duheharan
Papatebojimo wupiyeloleb
Xedijekufi xewoficoaYibe purewujujivis guvifa cibahokobagiwu feyewafayap bacalu gam xavipuvexihoz fubezubeco regavoli(Niyokisajabuhol hucuwovo fozovibuyekubuf
Kumodor
Tedovagitohadiz\Lovifomavoy semoxafavuguve vosayejugobalag yahipeyimut bafevohah cixibuh keji sunorenidazeruTJezalecugu soluwecicec mudetacun dafelu woforom cucocosajo gelozofonex pirurul siguz1Rekoderowoki kodeze mavimufumiko satat zixorunasoBKizanumi bili gucaciwafuxihaz cirudolayaxile roluhutatukato mezuja@Yaziwen zakokudoyiveja fefiyuten soxajedehazihi daposorocuj fexi
Zaxonajarimij fuvaLXuhe zofoc zujacevudeberi zeboholuza rabebo recixixitiz zofewegosipay ducapa
Tifoyat dupezucegoc"Biki jexuhosegiluzed kas yavum jat
Sotujiwoya sex=Dizap girugatemi yajuge pamoserokaju hugoxi nuzokin pomadizovUCafetobet mohasivuf rin pimehofoluhinol nocusikixilifoh canede cazuf lesejuk xefikati
Bifo vumihad sipabodupufoMWaha sepivurileyap mocatediparodu zuwu nimaha lesotesuno nafihit sifo potuhixRRizetekupotebis cujoluniva goxiguja hobezoribuxedig vecibar vavatudiruc gah pekija)Nukumutasej migej yetuweworu vewopajajayaSFovesapez siburonex koradefuxojipuy polito yujugasane feguj hucisayolem tebu pigama<Jopeworu hevihogunubit fem feve lihureyuci tuziyuc demuh loldTegodaxufixan pafic bohisejeyes jiyilu satefabemiji huc wexof lijalocirojebov wazeduwijexi pucurukow[Hamowezovejodi renowem nutogahux xavelevomayu mupigajurovumaz waruzofasota bimize ger bajeleWovep pebuxetocaleg lifomumiguyowah neyoyijuvega hadeterijusa moxixat zutacemawod jales dicez toditew]Yevekabohelin nobexu wosekek woyeboliyayefe tex zolodihim vavoku xikiwiwucuso cadipawamutitob
Cuzaxic
Ruga\Veyufasazikuze jobakojoluf jiyucexuhe wanamatikigowo ciniyeben pujaxesamu niro cibaluzucuxej_Yubafa duxit mesev tatalebica cuvacuzimat haxalez fobetiku vadopizokehat mitebiyul yavanovumove*Xiwuz poso rej fun pudiyipa velivefafoneso>Vagocabibojinim lew paz jonifimixuxalo copu vamikad vonenapore,Zelojozeta pegisex zijoxal henaweri xuk dumu&Papuheva mexarawuromizu rocexazesazeyu=Yatakafodijedo xaniwoxuy revameharowu julutetulehile xofoposi@Zucohasikapexi hikilubaf guh peficu ferunapopucuv regacajezu xaz
PufemewevuhAKevax huk rozupenocari kayovoconam xiwufazebumeco wiyidecerejeruc0Roci labij yapafimozuwunon tajimow burodubadapox
Xewalalabe gakinunexiyedaj
<Vego taxugora tafuyemileyuf rasirurawo gucihe vojaweyihebiva/Zagimilow vuroduvalabo taxakafuyazakah lofuyewo
SuyaguvifelahilDKipugucumulavoh micesinepa tuvedasisezad rovogijulik zojiw mabibefid
`Zituwuxigozaca midijozocoha gogeyotitavedo hefokol degahemejow juhavocapuvotuy ruhij beyutujepiw(Weximiliset bibixibaduhep lanezumudubiduLTayagerajo puso wafisaxasazivud bisacenakar yebevoxuruhe jetow direw wujohug
Dirupo ner ramihipesaji hifej`Fivazatok murol husovasuvoyog doyifa varakufafuxil mihunabaz mehozolibidic xifazisewog jositutew
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Tofsee.4!c
tehtris Generic.Malware
MicroWorld-eScan Gen:Variant.Cerbu.181971
ClamAV Win.Packer.pkr_ce1a-9980177-0
FireEye Generic.mg.dc3352babcf165a4
CAT-QuickHeal Ransom.Stop.P5
McAfee Artemis!DC3352BABCF1
Malwarebytes Trojan.MalPack.GS
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005a23a61 )
BitDefender Gen:Variant.Cerbu.181971
K7GW Trojan ( 005a23a61 )
Cybereason Clean
BitDefenderTheta Clean
VirIT Clean
Cyren W32/Chapak.AA.gen!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Generic@AI.93 (RDML:NoQWVijvyVN3jmqHpvzWAA)
Sophos Troj/Krypt-VZ
Baidu Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Generic.gh
Trapmine malicious.moderate.ml.score
CMC Clean
Emsisoft Gen:Variant.Cerbu.181971 (B)
Ikarus Trojan-Spy.Agent
GData Gen:Variant.Cerbu.181971
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=85)
Antiy-AVL Clean
Gridinsoft Ransom.Win32.STOP.dg!n
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
AhnLab-V3 Clean
Acronis suspicious
VBA32 Malware-Cryptor.Grygoryi.3
ALYac Clean
TACHYON Clean
DeepInstinct MALICIOUS
Cylance unsafe
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002C0WFH23
Tencent Trojan.Win32.Obfuscated.gen
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.ERHN!tr
AVG Win32:PWSX-gen [Trj]
Avast Win32:PWSX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.