Static | ZeroBOX

PE Compile Time

2022-02-16 06:32:11

PDB Path

C:\xunop\jakor.pdb

PE Imphash

15ebf67abb27d44912527463f0610891

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00039d0c 0x00039e00 7.79755483759
.data 0x0003b000 0x000410c4 0x00001c00 2.76257191632
.rsrc 0x0007d000 0x00011de8 0x00011e00 4.51503676149
.reloc 0x0008f000 0x00001f8e 0x00002000 3.37783974871

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x0008cf60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0008cf60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0008cf60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0008cf60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0008cf60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0008cf60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0008cf60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0008cf60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x000891d0 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_STRING 0x0008e7a8 0x0000063a LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0008e7a8 0x0000063a LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0008e7a8 0x0000063a LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0008e7a8 0x0000063a LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0008d4c8 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0008d4c8 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0008d4c8 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x00089638 0x00000068 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN data
RT_GROUP_ICON 0x00089638 0x00000068 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN data
RT_VERSION 0x0008d4f8 0x00000204 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401008 FindResourceA
0x40100c SetLocaleInfoA
0x401010 EnumCalendarInfoA
0x401014 GetStringTypeA
0x401018 GetProfileIntW
0x401020 GetComputerNameW
0x401024 CreateHardLinkA
0x401028 LockFile
0x40102c GetTickCount
0x401030 GetConsoleAliasesA
0x401034 GetDateFormatA
0x401038 FindResourceExA
0x40103c ReadConsoleInputA
0x401040 _hread
0x401044 GetVersionExW
0x40104c FindNextVolumeW
0x401050 Beep
0x401054 VerifyVersionInfoA
0x401058 GetVolumePathNameA
0x40105c ReplaceFileA
0x401060 FlushFileBuffers
0x401068 FindFirstFileA
0x40106c CreateMutexW
0x401070 GetLastError
0x401074 SetLastError
0x401078 lstrcmpiA
0x40107c GetProcAddress
0x401080 GetLongPathNameA
0x401084 EnumDateFormatsExA
0x401088 HeapUnlock
0x40108c CopyFileA
0x401090 LoadLibraryA
0x401094 LocalAlloc
0x4010a0 GetModuleHandleA
0x4010a4 CreateMutexA
0x4010a8 VirtualProtect
0x4010b4 lstrcpyA
0x4010b8 CloseHandle
0x4010bc CreateFileA
0x4010c0 WriteConsoleW
0x4010c4 GetConsoleOutputCP
0x4010c8 WriteConsoleA
0x4010cc OpenMutexW
0x4010d0 GetDateFormatW
0x4010dc Sleep
0x4010f8 MultiByteToWideChar
0x4010fc GetStartupInfoW
0x401100 HeapFree
0x401104 RtlUnwind
0x401108 RaiseException
0x40110c GetModuleHandleW
0x401110 ExitProcess
0x401114 WriteFile
0x401118 GetStdHandle
0x40111c GetModuleFileNameA
0x401120 TerminateProcess
0x401124 GetCurrentProcess
0x401128 IsDebuggerPresent
0x40112c HeapAlloc
0x401130 WideCharToMultiByte
0x401134 SetHandleCount
0x401138 GetFileType
0x40113c GetStartupInfoA
0x401140 TlsGetValue
0x401144 TlsAlloc
0x401148 TlsSetValue
0x40114c TlsFree
0x401150 GetCurrentThreadId
0x401154 HeapSize
0x401158 GetCPInfo
0x40115c GetACP
0x401160 GetOEMCP
0x401164 IsValidCodePage
0x401168 GetModuleFileNameW
0x401174 GetCommandLineW
0x401178 HeapCreate
0x40117c VirtualFree
0x401184 GetCurrentProcessId
0x40118c VirtualAlloc
0x401190 HeapReAlloc
0x401194 GetLocaleInfoA
0x401198 GetStringTypeW
0x4011a0 SetFilePointer
0x4011a4 GetConsoleCP
0x4011a8 GetConsoleMode
0x4011ac LCMapStringA
0x4011b0 LCMapStringW
0x4011b4 SetStdHandle
Library USER32.dll:
0x4011bc CharUpperBuffW
0x4011c0 GetMenuBarInfo
0x4011c4 CharLowerBuffW
0x4011c8 DdeQueryStringW
0x4011cc GetClipboardOwner
0x4011d0 CharToOemBuffA
Library ADVAPI32.dll:
0x401000 LogonUserW

!This program cannot be run in DOS mode.
`.data
@.reloc
bad allocation
Unknown exception
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
(null)
`h````
xpxxxx
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
`h`hhh
xppwpp
_nextafter
_hypot
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
GAIsProcessorFeaturePresent
KERNEL32
CONOUT$
1#QNAN
1#SNAN
bad allocation
lopido
Gaz kediwana
%s %f %c
kernel32.dll
tajuhasubisewanupamip
pelunobega
jotofocika
msimg32.dll
C:\xunop\jakor.pdb
D$$1D$
D$ d)D$
T$DRPPf
D$$1D$
L$ _^]
/SUVWue
T$@Rj@QP
T$ RPPf
umh 0@
QQSVWd
0SSSSS
tNIt?It0It
^SSSSS
j"^SSSSS
j@j ^V
tehWo@
0A@@Ju
>=Yt1j
QQSVWh
HtHu4j
s[S;7|G;w
tR99u2
0SSSSS
PPPPPPPP
0SSSSS
PPPPPPPP
URPQQh4
t"SS9]
0WWWWW
AAFFf;
;t$,v-
UQPXY]Y[
t+WWVPV
_VVVVV
^WWWWW
0SSSSS
_VVVVV
<+t(<-t$:
+t HHt
6^8\w/`
({=0(&
IzQ2^.
[qov^9Cv
&3XMZ{]H
g]<'`F
#p%zz:
#All^8~t
&F["CA
%(gh({
ytXG.!
Oq1ko
zKnvl
<a5<Q"
TqmCF@
`tO@"[
&:>n,J
0tJw7h
Gx:n8O
/h(e3(
lLM:Wean
&20:oI>
aNKV7To
n$FNs;
q$d#V'
y'c\fTpN
j$g2<R\
Qz{pS:
dz.L5v
^6[Z_
8Ue6:8
y?fjg,
2~CD"?k@X
DWUQ%p
<a+x"lo
o\Ry34
o977z?\
SM.4$#
z]Hhv"A
sN"PPj
Vc3@>+
sf&3p
x_O`8) d
H=.ynJ
wH08XVz
i]ne^a
YYm?%
QlMg,
=R%,hN
\]S93G
=\VW !
|(@oq`
\m_i[x
a@LxN:T
:l+moM
vjZ9.j
!T*:*j
zzSOH%Dc
"jQFS=
!S=U966H
@O"[+(Z
q;EV-Y:
='oUNa<bu
g,1nkDEn
anPvR5D
LVVu2|
Xd#:4
]<vh' R
zPnX|uUa
peinhC*
V*+H\l
V ]z ?
(QX`1'
\l52B0#x
bTFU+-
yMj3cX
qQy;3gTA
8uy$,j
W84^p>
)<D2RKn
D0ii~%
|gj_k
}/5S78m
(QvpI{
|-~OQMj
F3t,0
t"UHxH
\1nc^*
_kaKfJ
V0IATY
^+agw`
_Jbl2s
RSA(5qn*
D*yTj{e
at7CQ|
XJH0oB9
;x,59Q
pM7\xo
#=@bPEo(
|'PQ#@
m(j23?t\
Ls]RS
t0,80A
XS y<+.
;};;Nc
&.<kXu$
[f1D}F
UQe8;'
~Lvp+R
zTz?=[
)H>=Vp
HJ9:$I
?("^/&Sy
K[%NO
&F_/yC
_!G";O
ccYD<B1
53wz/hdq
{}u%\
C\` 1Q
Lw&R|6
w+Bax{
vk>%$W
%5b$Z"c
'aoT$/E"S
2h#^?
`Neeg)
9WL~\>G
)R3x,
oKwZ/za
*5pL2:
)[<iz#}<
n=6,KL
zr[p t
m5g~gm
)Do?[Q
T0CXX#
u3oVE<<
)ZyLLr
Y5c!6v!
B #}Vs
7)">A
610x_>
6G4<E(
Jd;xjjo:
1?bsj$?
'_[k!Q
Ezt+[w
l%~Ruw
X(Bys!L9/
-NO~u1
b1=P/VVo3s
y5DvF+(
WsRPBs
]?m?`)v!
K_)[_X
5gAd?U
t4~D"#
a?KSo/
tVT}I0<C
{`)m~)
i-ruRG
YkfU>
m8ACFx/
G)[1zQ$`
=.)`xr
q~"5'V
!@f*~n
f.V2jYV
Y"L?M'
Rxr?5~V^eE
`BqW@Wh
TdyXB^ F4K
TQIADNY|-^
Xc/E`t
2?H/fc
]U.$y(
fVe'wC
WM\,M_
m*k>b5e(dt
-)7IwD
~MldtoP
%a."|g':
P\\"lg
_v$xw 3xf
@#E;'0
2hn\E7
/o\` ay<
^Ah/'^
{Z<E<-
z9^%wY
vLIE:)6
pqmgt
9 xUe
i4IUPXb@D
=ZAn+S
W)h1wRQo
bso[pg
)7rZ2|
:>>1TS{
eV'cUO|
4:CQ8O
{}6ii~7
V_ %9}B
wDkLE<
)2EeUW
Y4ikCR
"LbdEz
`NCwk2
7Q8)G=
h+>SXtx
WXVQ3d
EY8i/r
b?E%i(>(
Vc_GjR
4=H3&#
|. q}bqT
kwDA4FG
YA7S?|S
Y6|n?X
qxj9293o
dhWyaz
g"ru?y
.O8n>N
[#Y"&'-
bi\/v2
=)QX7[f
MgSCc:
=N p<M
0JNAmR
ch]GLz
qTiLPQ$
X@a#`Ua)Xk
2|Ae`t{
$>> !n;
!X.B6r
H@dU_a
j3P2e)
mY%h3hn
[S7($6
k},y}E
Xff~S
z\rrVwv
gh55'*
]\ZE8j
R1UQHE,%m
W;$!J?
K4vJ ]
HAO5ma
jGae):
"Vz^RT
B+,wYbs{
cz_cp15[
-!qv?7u
<7{>T6*
^'T@BOB6H
afxn;z(l
EE,#9VFb/H
^$w=Od
uQpc71
"Xt+R_kH@-
kC$d:(
v2(?zA
B%9l(4
`mnJWS
,:PIz\
R6>Z)6
&_unA;
Db8Q"Q
20x%Q
@)5,4i
!j5{{h
y"$l~Nq
uP,:+9
0Yo.og
Qg}1:aRx
qO)G2>
a$s!6+
*0E^`U
@S2)?mG5V Dw1
*7n*ve
>]L!{p
5pJD(V
U}rhv|)
1?bIu5lI
m;c.]X
g`b6ht'
g:_cvZ
g7aB"h
>cW+C
#.{Iqr8
")d3};
ni IbNz
"<~$FS
GetDateFormatW
CreateMutexW
FindResourceA
SetLocaleInfoA
EnumCalendarInfoA
GetStringTypeA
GetProfileIntW
GetSystemWindowsDirectoryW
GetComputerNameW
CreateHardLinkA
LockFile
GetTickCount
GetConsoleAliasesA
GetDateFormatA
FindResourceExA
ReadConsoleInputA
_hread
GetVersionExW
EnumSystemCodePagesA
FindNextVolumeW
VerifyVersionInfoA
GetVolumePathNameA
ReplaceFileA
FlushFileBuffers
SetCurrentDirectoryA
FindFirstFileA
OpenMutexW
GetLastError
SetLastError
lstrcmpiA
GetProcAddress
GetLongPathNameA
EnumDateFormatsExA
HeapUnlock
CopyFileA
LoadLibraryA
LocalAlloc
BeginUpdateResourceA
SetProcessWorkingSetSize
GetModuleHandleA
CreateMutexA
VirtualProtect
GetWindowsDirectoryW
FileTimeToLocalFileTime
lstrcpyA
KERNEL32.dll
GetClipboardOwner
DdeQueryStringW
CharLowerBuffW
GetMenuBarInfo
CharUpperBuffW
CharToOemBuffA
USER32.dll
LogonUserW
ADVAPI32.dll
InterlockedIncrement
InterlockedDecrement
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
UnhandledExceptionFilter
SetUnhandledExceptionFilter
MultiByteToWideChar
GetStartupInfoW
HeapFree
RtlUnwind
RaiseException
GetModuleHandleW
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
TerminateProcess
GetCurrentProcess
IsDebuggerPresent
HeapAlloc
WideCharToMultiByte
SetHandleCount
GetFileType
GetStartupInfoA
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
GetCurrentThreadId
HeapSize
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
GetModuleFileNameW
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetCommandLineW
HeapCreate
VirtualFree
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
VirtualAlloc
HeapReAlloc
GetLocaleInfoA
GetStringTypeW
InitializeCriticalSectionAndSpinCount
SetFilePointer
GetConsoleCP
GetConsoleMode
LCMapStringA
LCMapStringW
SetStdHandle
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
CreateFileA
CloseHandle
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
__________________________________
FFFFFFFFFFF_
FFFFFFFFF
_FFFFFFF
GGGGGGGGGGGGGGGGGV
_FFFFF
llllllllllll
_FFFFF
lllllllllllV
_FFFFF_
BllllllllllV
_FFFFF_
llllllllll
_FFFFF_
(lllllllllV
_FFFFF_
llllllll
_FFFFF_
Bllllll;V
_FFFFF_
lll;llV
_FFFFF_
llll;V
_FFFFF_
_FFFFF_
_FFFFF_
_FFFFF_
TI6666
_FFFFF_
TII6666*
_FFFFF_
TIII66
_FFFFF_
TIIIII
Y_FFFFF_
SOY_FFFFF_
IIII666
_FFFFF_
!_________________
_FFFFF_
!!!!!!!!!!!!!
_FFFFF_
_FFFFF_Y
_FFFFF_
llllll
FFFFF_Y
lllllll
lllllllll
zzzzzzzzRz1R_
FFFFF_Y
llllllllllllllll
<R<R<RR
FFFFFF_Y
llllllllllll`
l~OY_FFFFFFFFF_
llllllllllllll
_FFFFFFFFF_
llllllll
FFFFFFFFF_
Illllllllllllllw
-__________
FFFFFFFFFF_
lllllllB
FFFFFFFFFFFFFFFFFFFFFF_
|FFFFFFFFFFFFFFFFFFFFFFF_
FFFFFFFFFFFFFFFFFFFFFFFFF
rFFFFFFFFFFFFFFFFFFFFFFFFFFF/___________y9
FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF
{{{{{0000000000000000000000
{{{{{{{
5{{{{{00
'~222FFFFFFFFFFF2
0{{{{0
x0{{{0
x0{{{0
x0{{{0
01'OOOO
x0{{{0
<0{{{0
<0{{{0
~hhhySDDDD[
e0{{{0
0{{{0u
%00000055{{{0u7
{{{{{0u
{{{{{0u
{{{{{{0
{{{{{{{0
{{{{{{{{{{{{{{{0
uuiuui
{{{{{{{{{{{{{{{{00000000m
y{{{{{{{{{{{{{{{{{{{{{{{{{{{TXI{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{{
i444444444444444i
yyyyyyyy
zz&z&z
[&&&&&
z{{{{{{{
&z&z&zzz
&&e&&&e
{&&e&e\
vc44444
GGGGGGG$
C&&&&&&&&&&
<<<<8[
{|~~~~
~}{{~{|
}~|zz|
|{|}~~z
}~~~~{y
~~|~{{
{z}|~|{{
~}|}}{
{}}|z|{
}{}}}}}}
|y~}z{
}|}z}zz{}
}}z|y}
z~~}}~}~|
~}||}}z
zy{|{{|
|{~|}z}
|~~{z~
{}~|y}|
{}z{}{
~y~|~~
}y|~||
zzz}~{
{~}}~~
|}}|~|
||}|~|
}~}|z|~|
~}~}{z
,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,
sT,,,,,,,,,,,,,,,,a
,,,,,,,,,,,,,,,,-
(5A515
t,,,,,,,,,,,,,,,,|a
l|,,,,,,,,,,,,,,,,
t,,,,,,,,,,,,,,,,
t,,,,,,,,,,,,,,,,
t,,,,,,,,,,,,,,,,Xt
,,,,,,,,,,,,,,,,l|I
t,,,,,,,,,,,,,,,,i-
&t,,,,,,,,,,,,,,,,i
,,,,,,,,,,,,,,,,ttN
Iti,,,,,,,,,,,,,,,,
&i,,,,,,,,,,,,,,,,l-
,,,,,,,,,,,,,,,,-/I
,,,,,,,,,,,,,,,,
,,,,,,,,,,,,,,,,
,,,,,,,,,,,,,,,,
,,,,,,,,,,,,,,,,--1
/,,,,,,,,,,,,,,,,-
,,,,,,,,,,,,,,,,
be%-"tu
,,,,,,,,,,,,,,,
,,,,,,,,,,,,,,,
,,,,,,,,,,,,,,,$-
,,,,,,,,,,,,,,,
,,,,,,,,,,,,,,,
,,,,,,,,,,,,,,,
,,,,,,,,,,,,,,,
,,,,,,,,,,,,,,,
,,,,,,,,,,,,,,,
,,,,,,,,,,,,,U
,,,,,,,,,,,,
,,,,,,,,,,,,-
,,,,,,,,,,,,
,,,,,,,,,,,,i
U,,,,,,,,,,,,t
U,,,,,,,,,,,,
U,,,,,,,,,,,,
,,,,,,,,,,,,u
,,,,,,,,,,,,$
,,,,,,,,,,,,,
,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,
ree[L[
iiiiiiii
iiiiiiii
iiiiii
iiiiii
iiiiiiiii
iiiiiiiiii
iiiiiiii
iiiiiii
iiiiiiiii

2 2d2h2l2
< <$<(<,<0<4<8<<<@<D<H<L<P<T<X<\<`<d<h<l<p<t<x<|<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=
l0p0x0|0
1 1$1,1D1T1X1h1l1p1x1
3(323H3\3
4 5,5<5L5V5
536<6B6H6P6V6\6j6p6u6
7(7-7<7B7H7j7{7
748P8m8x8
9)999?9h9s9}9
:8:@:H:R:a:n:t:~:
; ;+;0;F;Q;t;8<E<]<q<
=G>\>e>n>
1:2S2|2
3%3:3E3
3#4o4z4
4"5)5J5Q5
9P:h:m:
0'1B1H1Q1X1z1
2%20292O2Z2t2
2$3)34393W3
7A7J7Q7Z7
8$8<8N8r8
;2;^;z;
>?>o>x>
>!?<?C?L?U?^?g?p?|?
4+414c4
5"6(6z6
7%777E7Z7d7
7(818N8
:^<e<~<
=+=2=F=M=e=q=w=
>>,>O>d>
11%1*10151D1Z1e1j1u1z1
1-262B2y2
2-3p3v3
7E7P7Z7s7}7
:':9:T:\:d:{:
<<'<,<0<4<]<
>=>D>H>L>P>T>X>\>`>
394D4N4_4j4
5\6c6x6
63787F7U7x7
8O8h8o8w8|8
9^9d9h9l9p9
;\;c;m;
=S?a?g?
0#0.030;0A0K0R0f0m0s0
5"5)50575?5G5O5[5d5i5o5y5
:+:2:b:
>&?4?:?J?O?g?m?|?
<2=8=\=
>&>8>E>Q>[>c>n>
4%5?5H5
848D8_8
:/:9:B:M:b:i:o:
7$7P7V7_7f7
1=1Q2G3O3
5%6+6;6
;<6<f<
%3)3-3135393=3A3E3I3M3Q3^394Q4`4
<&<0<<<H<R<^<j<t<~<
=,=0=P=l=p=x=|=
>4>8>X>d>
?(?H?P?T?l?p?
0,00080@0H0L0T0h0
1$1(1H1h1t1
20282L2T2h2
1$1,141<1D1L1T1\1d1l1t1
9P;`;p;
;0=4=`=d=h=l=p=t=x=|=
> >(>,>0>4>8><>@>D>H>L>X>p>t>x>|>
?$?,?4?<?D?L?T?\?d?l?t?|?
mscoree.dll
(null)
KERNEL32.DLL
((((( H
h(((( H
H
koxoziwasigohajinujeduz cakezucofiwizawekatiwe tegimubeciho jafotovahuh rifetefexapuganic
danibotok
muvicikuxeyiliya wulufabidafedurikukija tijamisu pabunosifefaye
kernel32.dll
wajezi
lkefes
@jjjjj
@jjjjj
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
043831F2
InternalName
Rasberry
FileDescription
Underwear
ProductsVersion
65.22.84.57
ProductName
GoldenSig
ProductionVersion
0.65.70.31
VarFileInfo
Translation
?Kiwisezevakuv damodemezuxito feh dirakerogi fijopinokabepo teweNPagubehe yekuvadap kipenegexedox mefuzomate hagivoj lokuyohiwahi wefaj nikecopAMuticojilemit rojoludamile potavilizi zahe wikodowecog sutunoramiTSoyiri yajivewidenogif bolamuyub vobonulehonuroz yavonuxoh nivisuvohi vozemaxutanexe`Hocefawi falaruz wicuvisifi naf yikacozu relodilacenikif hufunus zatekabuja puneyevoxunal xiveceVHisazuwu lotohasof hecibos newec cubaw ninaxutub gayifasenalaw ruzimiwe pagagizicocoza
HopecuXNetanus suw hoda jojewitarepu zebazuwiyu loxibakece tix lirezesiwuro xic wakalebutukemelCGofoxohane vuf dusuhona roroh luzilakenakune web doc xuluyapalutomaMHoh zuyefizomurar mewe gure puxima xoyegafiluw cecinoru yeten gebakowujigucap
Tececudu dipiwosu
'Lexidehimov peyunelotaso lebomuzipaziga
{Nuxijoram jiwiyexus gobetiwinayavi suxeviwebehah luhoni senitexavemom lorimeforosaze novivewucexu tizeviteci tewawogeyohojo
hTijad zuyotaboca pikek vuzupocuveja nehurimeza dekuxanolulidu xinuromazowuti rohejovocatoh xibecufocimeg
Lohewi
%Fuyik guvajetahava giwi wicopalufawis
Vubunubigabubo navol
Kehulav nisabuzekuwez!Gihice fuxomemuzo fejiyohifa denaIRupogototal hesihumi yop weserel pinatozudidohud pafejux watekezehide jepfCobedosivakeke botovas kuzofezinu pihari bolocito decuyiyivimep lucu mapacojojane xiseberezogoko dakenuKoyijijocux lupiwazoxemec yokikojipim natejilivehades texuwev biticomego fafibit puninipug lokutepalox jijadecodiciteOBujenuxi wewagilesarupel raxetaxi kidoku nonawukibe tarerilibezoyef gevanatafipSRomi tapob sigoyexupuh momula voyedabuwexax siwevopo voragiwemi tahuhaye rilipagihuFNafuvijux lopecoh joyiwawel bikafi lebora kewefeweti wasefovu gawunehu
Zukosoka damuwigi sap
Cajiwewudavob tixurazilu
Horevav hiticivKJumakosi yalemimulegi cikotacum xapawudajuxubow getifozas goyeteterazuv hej+Fugolidoyi jukevo kucuhed lowojerepi fixagi
Fove mexac jiwowosatofawa
Xakidi wijezipufexeXTamutiyazizuh fuyawugejigaduz gekulapo homebuli yij mukubarogipu zowipe sazu hodimenuwap~Lenohewiyekeya xabicitepir kogicihuneg gag badohosetema funenozixupip bobaxewepuhanof xalixocoyujiras salupavidijuda yumediyix
Xetolanofov
EGacilinuwi gocasoju gukob togubiruw muyizaroraf mugejocabayi medorimoJSajuliwopibokin ritidoxepe dojefuwa dar caxoteyenafu mazatef tovarebogameg
Nirigahiwe zabaso?Marujekezukud pazixafuzod tuvuxeba xoxucavifez semifovu mumireh3Maxecun zetubududu walagexi kawuy punabahu sejubeviRSunidedicaza hiwegufumoso kejuxicetucuri yoy tiwerin potocejisu wibowefumumug yoyu
Kihinugepibalo,Wumu gacake yuborimicepu socihex kur rabalah
Fub sox wate hopija
Hisov votitibofHozaxeyesot coc pinasuhedajoxo zudevucisixul sofitajakoz sijopuxijanerus goy dasicufijena zehujebozudi%Wuvas gozehena nibusi dotosuci satahaTHenasuteyizun rudoxego lituhes wuro kewapezelul zifife karasupujix hoxetezisiw sirub
WukupijozuxZRih zonizemuh seduyez hazehunohobo civakikaramuco kayigunecekayux rasejoyive gucazubazohak
Vumupukuta
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
tehtris Clean
DrWeb Clean
MicroWorld-eScan Clean
FireEye Generic.mg.beb8f75815003ffc
CAT-QuickHeal Ransom.Stop.P5
McAfee Clean
Cylance unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005690671 )
BitDefender Clean
K7GW Trojan ( 005690671 )
Cybereason malicious.537163
BitDefenderTheta Clean
VirIT Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky UDS:Trojan-Spy.Win32.Stealer.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.B663 (CLASSIC)
Sophos Clean
F-Secure Clean
Baidu Win32.Trojan.Kryptik.jm
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.fc
Trapmine suspicious.low.ml.score
CMC Clean
Emsisoft Clean
Ikarus Trojan.Win32.Azorult
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:Trojan-Spy.Win32.Stealer.gen
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
AhnLab-V3 Clean
Acronis suspicious
VBA32 Clean
ALYac Clean
TACHYON Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Clean
Fortinet W32/GenKryptik.ERHN!tr
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (D)
No IRMA results available.