Static | ZeroBOX

PE Compile Time

2022-02-25 08:07:59

PDB Path

C:\batuhisajece\ruw ninuyi.pdb

PE Imphash

b1a5bdbc77a4868d9509a53571fbe8fe

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00021b56 0x00021c00 7.64136286844
.data 0x00023000 0x004e64fc 0x00003e00 0.988888051978
.rsrc 0x0050a000 0x000201d8 0x00020200 4.15810908697
.reloc 0x0052b000 0x00004a46 0x00004c00 1.60391598759

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x005295a0 0x00000468 LANG_TELUGU SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x00529c80 0x00000558 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x00529a08 0x00000076 LANG_TELUGU SUBLANG_DEFAULT data
RT_GROUP_ICON 0x00529a08 0x00000076 LANG_TELUGU SUBLANG_DEFAULT data
RT_GROUP_ICON 0x00529a08 0x00000076 LANG_TELUGU SUBLANG_DEFAULT data
RT_GROUP_ICON 0x00529a08 0x00000076 LANG_TELUGU SUBLANG_DEFAULT data
RT_GROUP_ICON 0x00529a08 0x00000076 LANG_TELUGU SUBLANG_DEFAULT data
RT_VERSION 0x00529a80 0x00000200 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401014 GetProfileIntW
0x401018 ClearCommError
0x401020 ReadConsoleA
0x40102c GetComputerNameW
0x401030 UnlockFile
0x401034 GetTickCount
0x401038 GetConsoleAliasesA
0x40103c FormatMessageA
0x401044 SetCommTimeouts
0x401048 GetVolumePathNameW
0x40104c FindResourceExA
0x401050 SetCommConfig
0x401054 ReadConsoleInputA
0x401058 WriteConsoleOutputA
0x40105c GetStringTypeExW
0x401060 FindNextVolumeW
0x401064 WriteConsoleW
0x401068 ReplaceFileW
0x40106c GetModuleFileNameW
0x401074 GetACP
0x401078 VirtualQuery
0x401084 GetLastError
0x401088 GetProcAddress
0x40108c VirtualAlloc
0x401094 LoadLibraryA
0x401098 OpenMutexA
0x40109c MoveFileA
0x4010a0 CreateFileMappingW
0x4010a4 GetModuleHandleA
0x4010a8 PurgeComm
0x4010b0 OpenSemaphoreW
0x4010b4 FindFirstVolumeA
0x4010b8 GetVersionExA
0x4010c0 GetCurrentProcessId
0x4010c4 LCMapStringW
0x4010c8 LCMapStringA
0x4010cc CreateMutexW
0x4010d0 SetFilePointer
0x4010d4 GetDateFormatW
0x4010dc Sleep
0x4010f0 GetCommandLineA
0x4010f4 GetStartupInfoA
0x4010fc HeapFree
0x401100 RtlUnwind
0x401104 RaiseException
0x401108 HeapAlloc
0x40110c GetModuleHandleW
0x401110 TlsGetValue
0x401114 TlsAlloc
0x401118 TlsSetValue
0x40111c TlsFree
0x401120 SetLastError
0x401124 GetCurrentThreadId
0x401128 HeapSize
0x40112c ExitProcess
0x401130 TerminateProcess
0x401134 GetCurrentProcess
0x401138 IsDebuggerPresent
0x40113c WriteFile
0x401140 GetStdHandle
0x401144 GetModuleFileNameA
0x401154 WideCharToMultiByte
0x40115c SetHandleCount
0x401160 GetFileType
0x401164 HeapCreate
0x401168 VirtualFree
0x401174 HeapReAlloc
0x401178 GetCPInfo
0x40117c GetOEMCP
0x401180 IsValidCodePage
0x401184 GetLocaleInfoA
0x401188 GetStringTypeA
0x40118c MultiByteToWideChar
0x401190 GetStringTypeW
Library USER32.dll:
0x40119c CharUpperBuffA
0x4011a0 LoadMenuW
0x4011a4 GetSysColorBrush
0x4011a8 SetCaretPos
0x4011ac CharToOemBuffA
Library GDI32.dll:
0x40100c GetTextExtentPointW
Library ADVAPI32.dll:
0x401000 ReportEventA
0x401004 ReadEventLogW

!This program cannot be run in DOS mode.
`.data
@.reloc
bad allocation
string too long
invalid string position
Unknown exception
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
bad allocation
rogakejasosoxicalice jetadizemudozenekanetavete
momegekujapazadatawebe
kernel32.dll
kernel32.dll
Foze vujobosu
Nayekofibupise hip
Yigopenopukex tora zinifelisowu sofumidako
jifoxeyuxefijogasepahikap
docobunimibejisupifeg zureyepes fawuyedimitivanalefecabe wurisu
vixotebubigokovawi
C:\batuhisajece\ruw ninuyi.pdb
D$$1D$
L$\Qhx-@
D$$1D$
VVVVVVVVV
VVVVVVV
D$<PQQf
u<hD1@
0WWWWW
0WWWWW
QQSVWd
0SSSSS
Y;=86B
>=Yt1j
j@j ^V
HtHu4j
s[S;7|G;w
tR99u2
v$;5,7B
0A@@Ju
Fh=P7B
0SSSSS
PPPPPPPP
0SSSSS
PPPPPPPP
URPQQh
;t$,v-
UQPXY]Y[
t"SS9]
t+WWVPV
T\8XQl
z5*'Yy
,Rtn7.]
p4!8z:*
/1K5t\%
vkyvZX
2~?t!B
j+*o>t`
GGr\9y
+]DUX*
g|P#Y|
yD~eT^
+N:,fV-
Y@O{-$2
uC":!j
}_fDv@x
579$l~p
b~78Y7
;sy'Ea
>?S:xW5
ZQGl`O
nV&!Q.W!
8R&hhr|
2#MC8y=
zr2XRv
|wU8Py
G6B6Hn
i'SC-1B
{_']3!
7?7sKi
>v6hPS
MPP$iO
pgZ;}17Bf{T:
WM\h!sm
u$o&2`
FUVQ[u"
^_B7%i
9~G)xD
2v^fV6
&335w-RE
tAPet
}-;:*
f*Bl Uf
Y\$Ijk
j#m%0h
5p*A$YY
1<P@bK
gS;N4(
\I_pM^
r-GU#l
$n#/",
|V7"6(h
7Ln4!D
XeshNb|h.
(9+'-#
>uw!f5>
#lI{}e
'E>gU$
w_/h"r
<el~7F
l5uoc
zgwv\J
HZ&J`A
c6rrWE
({ft-^
ZC#BSy
oCurCrHUt
0ZzhR:WX
oA'4$+
Dj<1OB)
0#QbVf
o$qJ}_c
q*W0
f9T&$QD!
J<*p-_
0DyO#6
N04[uQ
pbAz. Ne
mk0`r]
e];^~HV
At+wq5j
8UPlOl
HO#Bu(
;WChR{T
Q;B$;KT
{b?swywXp08
Rh)8xT
4l+SBp
<C\i)1
h~gFc
&oGqj(
8@I:&X&
5hyzj2
eRF0wh
4<e#G:4x
&b,$mI
GDy.TK3/
z5-li8
1s~Wt~X
^fKNt&
(b BLZ
w6!^CJ~
fx;:;S<2
ik5!}}
&Sfw<|
_?~E.9
;AXq7R
(u0)M^
HY=Qa3
/#9w~Bma
|/Pe'*
1y(~'~S
w<+6&Vs
cb2Cv0p^
LEijR7
Z)KC||
8TPG;`Km
CJRans,
J"io5TA
?2)O'
cB"yc
-KsV4%P|
d7Ul0r1
$g{A=|
1*,N5
;k"Y~"D
bbk:p5
!qIpu?
P&eCoAV
K'Hn3}
Il_.Mn
u$.1hJ
WaZdC|'
mwy%HWx":
UO0Ck9
0`]3s3%
C.+npO
8e<phb
f_ ].
/PNB<L
y%xpH-L
2?|s F
AyzQH
2&J~J.:
!i_Gh6
}>eBhks
<u&M*L
BYoW7_M
1hPKx_
GetDateFormatW
CreateMutexW
SetFilePointer
VirtualQuery
GetProfileIntW
ClearCommError
SetUnhandledExceptionFilter
ReadConsoleA
InterlockedDecrement
GetLogicalDriveStringsW
GetComputerNameW
UnlockFile
GetTickCount
GetConsoleAliasesA
FormatMessageA
GetWindowsDirectoryA
SetCommTimeouts
GetVolumePathNameW
FindResourceExA
SetCommConfig
ReadConsoleInputA
WriteConsoleOutputA
GetStringTypeExW
FindNextVolumeW
WriteConsoleW
ReplaceFileW
GetModuleFileNameW
GetCompressedFileSizeA
GetACP
SetCurrentDirectoryA
GetLogicalDriveStringsA
GetLastError
GetProcAddress
VirtualAlloc
BeginUpdateResourceW
LoadLibraryA
OpenMutexA
MoveFileA
CreateFileMappingW
GetModuleHandleA
PurgeComm
GetCurrentDirectoryA
OpenSemaphoreW
FindFirstVolumeA
GetVersionExA
GetWindowsDirectoryW
GetCurrentProcessId
KERNEL32.dll
SetCaretPos
GetSysColorBrush
LoadMenuW
CharUpperBuffA
CharToOemBuffA
USER32.dll
GetTextExtentPointW
GDI32.dll
ReportEventA
ReadEventLogW
ADVAPI32.dll
InterlockedIncrement
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
GetCommandLineA
GetStartupInfoA
UnhandledExceptionFilter
HeapFree
RtlUnwind
RaiseException
HeapAlloc
GetModuleHandleW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
HeapSize
ExitProcess
TerminateProcess
GetCurrentProcess
IsDebuggerPresent
WriteFile
GetStdHandle
GetModuleFileNameA
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
SetHandleCount
GetFileType
HeapCreate
VirtualFree
QueryPerformanceCounter
GetSystemTimeAsFileTime
HeapReAlloc
GetCPInfo
GetOEMCP
IsValidCodePage
GetLocaleInfoA
GetStringTypeA
MultiByteToWideChar
GetStringTypeW
InitializeCriticalSectionAndSpinCount
LCMapStringA
LCMapStringW
.?AVfacet@locale@std@@
.?AV_Locimp@locale@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$basic_stringbuf@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AVexception@std@@
.?AVbad_alloc@std@@
x@6p-l,
< hvvN
)gu6Q3
366FppF
?mRAbnnbm
kHkAR=t
3'WQlN,
}<50Zu
~~~~~~
W0000000000000000000000000000000000
iii?i?????????????????
5i2222
PPP222
5PPPPi22
PP2222
JPPPPP222
EEEEEEEE+
FFFFFOO
00000000000000000
rPP2222
PPPP222
0000000000p
00000000000
rrrrrrrrrrrrrrrrrrrr
66666666666
bbbb""
-----@
beeeeeeeeeee
WWWWWWWWWWWWWW
`XXXXXXXX
pUUUg`
O1$$$$$
GUUU`UI
U$$t$$$t`
VfKKKKKKKKKKK
|2KKKKKKKKKKKK
bKKKKKKKKKKKKKKKKKKKKK
KKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKK
<zI@oiR
o;8F}a
3333333"3q3
RRRRRRli
RRRRRj
2PRRRRR
YRRRRR
RRRRRG
RRRRRt}
`RRRRR
FRRRRR
RRRRRR
hhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhmo
s`hhhhhhhhhhhhhhhhao|
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhG
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhGa
hhhhhhhhhhhhhhhhas
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhh
hhhhhhhhhhhhhhhhaaD
shhhhhhhhhhhhhhhha/
ohhhhhhhhhhhhhhhh//
hhhhhhhhhhhhhhh
hhhhhhhhhhhhhhh
hhhhhhhhhhhhhhh(a
hhhhhhhhhhhhhhh
hhhhhhhhhhhhhhh
hhhhhhhhhhhhhhh
inxx~dx
hhhhhhhhhhhhhhh
hhhhhhhhhhhhhhh
hhhhhhhhhhhhhhh
hhhhhhhhhhhhh_
hhhhhhhhhhhh
hhhhhhhhhhhha
8hhhhhhhhhhhh
`8hhhhhhhhhhhh
_hhhhhhhhhhhh
Lj?_hhhhhhhhhhhh
`_hhhhhhhhhhhh
)hhhhhhhhhhhhx
hhhhhhhhhhhh(o
x/hhhhhhhhhhhhh
szs)))))zz_____88
hhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhhh
{-<<h
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>c
>>>>>>c
>>>>>>
3>>>>>>
p>>>>>>
2>>>>>>
e>>>>>>c"
>>>>>>+
>>>>>>
=m>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
{z~z}|
z}{~|}
}~}z~z
~yyz~{
~{|z{}
{y~~{{y
{}~|z}{~|~}~~
{~y|y}y
{}||z{
|||}}}z
~}}}}}
|~~|}{
~{{~|y~
{||{|{
|}~}z}}
{}~~}~~
~}|~{~}~|
z}}~~|
z{~~{}}
}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}}
}}}}}}
}}}}}}}
}}}}}}}}}}
}}}}}}}}}}}
}}}}}}}}}
}}}}}}}}}}}}}}
}}}}}}}}}}}}
///////////{A
CCCpppEE==BB
ppEEE==BB
pppEE=BBc
CCCpppEEE==B
CCCppppE==BBc
)))***
CpEpE===B
WWWWWW
3...ZZZ~A
-++++++++++++++++++++++++++
uuuuuuuuuuuuuu
uQuQQQQQQQQQ
uQuQuQuQQQQQQQ
uuQuQQQQQQQQQQQQQ
uuQuQuQuQQQQQQ
uuuQuQuQQuQQQQQQQQ
uuQuuQu
uQQQQQQQQ
uuuuQuQ~
QQQQQQ
uuuuuu
uuuQuQu>
uuuuuuu
uuuuuu2
QQQQQuQ+
QQQQuu+
QQQQu+
uuuuuY
TTTTTTTTTT
TTTTTT
TTPTPPPPP
xxxxxx
]pppp))))))))))))))
ppppppppppppppppppppp
ppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppppp
------------
SSSSSSSSSSSSSSSSSSSSSSSSSSSSSSSSS
~~~~~~
1024282<2@2D2H2T2X2\2`2d2h2l2p2t2
28:<:@:D:X:\:
094989<9@9D9H9L9P9T9X9\9`9d9h9l9p9t9x9|9
: :$:(:,:0:4:8:<:@:D:H:L:P:T:X:\:`:d:h:l:p:t:x:|:
L2P2T2X2\2`2d2h2l2p2t2x2|2
4(4,4<4@4D4L4d4t4x4
5(5,5<5@5H5`5p5t5
6 6(6@6P6T6d6h6l6t6
647A7R7e7
889[9a9g9m9
:5:P:\:a:q:
=(=1=A=Q=V=i=
>>>_>h>n>s>
?-?c?h?w?}?
0@0F0V0f0n0y0~0
12181>1D1R1i1
2)2/242:2[2v4
<+<1<;<J<i<
<<=G=X=d=l=r=
2=2F2_2o2
2 3-373<3^3n3~3
5*5;5E5b5
8C8H8_8<9
:-:?:F:L:^:f:q:
>D?\?a?
1#2H2{2
9 9+979L9S9g9n9
::.:4:=:I:W:]:i:o:|:
;&;f;l;
<'=.=I=N=V=\=c=i=p=v=~=
>!>&>3>A>G>T>t>z>
?*?c?l?x?
0?0H0u0
0'1/1B1M1R1b1l1s1~1
1;2H2r2w2
2V3c3m3
6?6X6_6g6l6p6t6
7N7T7X7\7`7
8!8K8}8
8N9`92:<:I:d:k:
;"<(<F<}<
="=J=o=
0Z2k2s2y2~2
3.3:3G3N3
424@4T4u4{4
5L5V5~5
797F7R7Z7b7n7
8(8/878<8@8D8m8
9$9(9,909
:M:T:X:\:`:d:h:l:p:
;#;(;-;=;l;z;
<.=5=?=i=w=}=
%13191S1X1g1p1}1
2$282?2E2S2Z2_2h2u2{2
003W3d3b5V6
6H7N7T7Z7`7f7m7t7{7
8858<8
:.:@:R:d:v:
=1><>F>_>i>|>
1%1@1H1P1g1
6 7&7J7m7
9!:-:9;H<
?#?(?2?@?
2+272A2I2T2
89:9\9|9
:@:P:|:
;$;,;8;X;d;
<$<D<H<L<T<h<p<|<
=8=X=x=
>$>(>H>h>
>(?0?4?L?P?l?p?x?
0(0H0d0h0
1 1$1(1@1T1
3$3,343<3D3L3T3\3d3l3t3|3
3(5,5P5T5
6(6,6064686@6D6H6L6P6T6X6\6`6d6h6l6p6t6x6|6
7 7$7(7,787x;p<t<x<|<
KERNEL32.DLL
mscoree.dll
((((( H
h(((( H
H
nekagihavonexawibeyidumehef cogit cidifegudacuvotav
jayadafejoku ton novojihoyidonosagazu
Jol xagujabunikabepilelahugapagafode munuyetijimadaka
rupeloguyejuxaxaceyohajijuxuyesatadegulavawoy
nuwilisocideyoyipoyuwacigavi
wusec masibelanaconafavo nev
xafakevanexujodupiciyoriregoco larebacexewohuzigifivinomofaj rukilitefijasejofiyigoboroj wujivutuka
kirirun kanoyebagahogavusoc
Cadaminala wunecexamazo gesidedolucuhe
vijuharafidexit midibufafasakukihofapiri kegedelopa
kajecukop zabewuvelajikukafuwopaluju liriruvuga coranezefacicalicetol
Fayihogelepilu xasosiwaheke fobexu
Liwosixo
Hukedovubarere
Cubovof fawaconopuga tibaganaj mese faleg
rofunijuhaledivuf xetasaveleyivovufetaru cozocoyazinayizafe hixuroneyoye
@jjjjj
VS_VERSION_INFO
StringFileInfo
043831F6
InternalName
Imbiciluz
FileDescription
AstroPlan
ProductsVersion
1.0.0.1
ProductName
MeetTheRock
ProductionVersion
27.85.42.51
VarFileInfo
Translation
dXifijecijonare gezu witihogibam tihetorixikote gimi xoxuciwutuvada nekomi fefokuvabejokag xotumoteko1Yidi karow vavuxaj jiyise hukeb ciyi momiridojano`Sezilewuzi vevagaj nunawehoyolinup jevegogeyomef duyicezav vayoha movulu lenehaw wumidacuje hoki
Negihobehuvo juw doxacez wix<Pakocekit zuresap jaxevecaca paralowo mafemajadowufa docanol&Xevazigapehano huw guhivubizi paxarite
Meberecilaxaw mamobanub yob
Popone
Semogur0Hexokor cohavudexovuyiy bac faxi wafoliroputosil
Teheyunet puyusahi ribitaMNohorunezata rohinose tepo rubodag witutese zevicayijuj zac jenup korogekegup
kPazafilozutuday dafi yuzofunopog repesumuwusunit panowajihotu lolujacoseguju xasazazodukob kuhihave pimiyin
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Generic.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.67645333
CMC Clean
CAT-QuickHeal Clean
ALYac Clean
Malwarebytes Trojan.MalPack.GS
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Trojan.GenericKD.67645333
K7GW Clean
CrowdStrike win/malicious_confidence_100% (W)
Baidu Clean
VirIT Clean
Cyren W32/Kryptik.KAO.gen!Eldorado
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win32/Kryptik.HTWC
APEX Malicious
Paloalto Clean
ClamAV Win.Packer.pkr_ce1a-9980177-0
Kaspersky HEUR:Trojan.Win32.Chapak.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Generic@AI.100 (RDML:ffovSeA1AWfWeO4EZCxXrg)
Sophos Troj/Krypt-VZ
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.dh
Trapmine malicious.moderate.ml.score
FireEye Generic.mg.dabf4bf05dadea76
Emsisoft Trojan.GenericKD.67645333 (B)
Ikarus Trojan-Banker.UrSnif
GData Win32.Trojan.Agent.RLX5NG
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=84)
Antiy-AVL Trojan/Win32.Wacatac
Gridinsoft Ransom.Win32.STOP.dg!n
Xcitium Clean
Arcabit Trojan.Generic.D4082F95
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.Win32.Chapak.gen
Microsoft Trojan:Win32/Amadey.GGO!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win.Generic.C5397385
Acronis suspicious
McAfee Artemis!DABF4BF05DAD
TACHYON Clean
DeepInstinct MALICIOUS
VBA32 Trojan.Buzus
Cylance unsafe
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Static AI - Suspicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.ERHN!tr
BitDefenderTheta Clean
AVG Win32:DropperX-gen [Drp]
Avast Win32:DropperX-gen [Drp]
No IRMA results available.