Static | ZeroBOX

PE Compile Time

2022-05-03 06:11:25

PDB Path

C:\tidat\mepimopaponip83\xiyul93\xac 48\giwahucadub10_kakohev\c.pdb

PE Imphash

b1c876aff73f9f8dbccfab3d20189f30

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000250c8 0x00025200 7.58278269291
.data 0x00027000 0x01fd0020 0x00001a00 2.1168585203
.rsrc 0x01ff8000 0x00026c48 0x00026e00 4.11832466827
.reloc 0x0201f000 0x00009630 0x00009800 0.947404733462

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x0201d8c0 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0201d8c0 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0201d8c0 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0201d8c0 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0201d8c0 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0201d8c0 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0201d8c0 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0201d8c0 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0201d8c0 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0201d8c0 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x02019468 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_STRING 0x0201e918 0x00000330 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0201e918 0x00000330 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0201e918 0x00000330 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0201e918 0x00000330 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0201d970 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0201d970 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0201d970 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0201d970 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x020198d0 0x00000068 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN data
RT_GROUP_ICON 0x020198d0 0x00000068 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN data
RT_GROUP_ICON 0x020198d0 0x00000068 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN data
RT_GROUP_ICON 0x020198d0 0x00000068 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN data
RT_GROUP_ICON 0x020198d0 0x00000068 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN data
RT_GROUP_ICON 0x020198d0 0x00000068 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN data
RT_VERSION 0x0201d998 0x00000230 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401008 GetProfileIntW
0x40100c FindResourceW
0x401010 GlobalAddAtomA
0x401014 CompareFileTime
0x401018 AddConsoleAliasW
0x40101c GetComputerNameW
0x401020 GetTickCount
0x401024 GetConsoleAliasesA
0x40102c GlobalAlloc
0x401030 LoadLibraryW
0x401034 GetLocaleInfoW
0x401038 TransactNamedPipe
0x40103c FindNextVolumeW
0x401044 GetGeoInfoA
0x401048 ReadFile
0x40104c AllocConsole
0x401050 GetLastError
0x401054 SetLastError
0x401058 lstrcmpiA
0x40105c GetProcAddress
0x401060 VirtualAlloc
0x401068 LoadLibraryA
0x40106c OpenMutexA
0x401070 CreateEventW
0x401074 CreateMutexA
0x401078 FatalAppExitA
0x40107c _lopen
0x401080 SetFileShortNameA
0x401084 ReadConsoleInputW
0x401088 CreateFileA
0x40108c SetStdHandle
0x401090 DisconnectNamedPipe
0x4010a0 Sleep
0x4010bc MultiByteToWideChar
0x4010c0 GetStartupInfoW
0x4010c4 RaiseException
0x4010c8 RtlUnwind
0x4010cc HeapFree
0x4010d0 GetModuleHandleW
0x4010d4 ExitProcess
0x4010d8 WriteFile
0x4010dc GetStdHandle
0x4010e0 GetModuleFileNameA
0x4010e4 TerminateProcess
0x4010e8 GetCurrentProcess
0x4010ec IsDebuggerPresent
0x4010f0 GetCPInfo
0x4010f4 GetACP
0x4010f8 GetOEMCP
0x4010fc IsValidCodePage
0x401100 TlsGetValue
0x401104 TlsAlloc
0x401108 TlsSetValue
0x40110c TlsFree
0x401110 GetCurrentThreadId
0x401114 HeapAlloc
0x401118 HeapSize
0x40111c GetModuleFileNameW
0x401128 GetCommandLineW
0x40112c SetHandleCount
0x401130 GetFileType
0x401134 GetStartupInfoA
0x401138 HeapCreate
0x40113c VirtualFree
0x401144 GetCurrentProcessId
0x40114c HeapReAlloc
0x401150 GetLocaleInfoA
0x401154 GetStringTypeA
0x401158 GetStringTypeW
0x401160 LCMapStringA
0x401164 WideCharToMultiByte
0x401168 LCMapStringW
0x40116c GetConsoleCP
0x401170 GetConsoleMode
0x401174 FlushFileBuffers
0x401178 SetFilePointer
0x40117c CloseHandle
0x401180 WriteConsoleA
0x401184 GetConsoleOutputCP
0x401188 WriteConsoleW
Library USER32.dll:
0x401190 LoadMenuW
0x401194 CharLowerBuffA
0x401198 CharUpperBuffA
Library ADVAPI32.dll:
0x401000 InitializeAcl

!This program cannot be run in DOS mode.
`.data
@.reloc
bad allocation
string too long
invalid string position
Unknown exception
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
(null)
`h````
xpxxxx
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
`h`hhh
xppwpp
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
CONOUT$
bad allocation
nejirotevugewufuwesejinacerure
%s %f %c
VirtualProtect
Nuf fubemolurujiginakipokicisarapiyo yevipuvi
vevap wifudulahahamiyitapo mutaromozacecilona zotakirefabasor riyefudeyiyuhucepijiyuporifucaki
msimg32.dll
C:\tidat\mepimopaponip83\xiyul93\xac 48\giwahucadub10_kakohev\c.pdb
D$(1D$
D$4,/@
0WWWWW
wSSWVj
0WWWWW
jXh8PB
QQSVWd
HtHu4j
s[S;7|G;w
tR99u2
to=x~B
0A@@Ju
Fh=psB
Y;=xyB
0SSSSS
HHtXHHt
>If90t
>=Yt1j
QQSVWh
jTh0SB
j@j ^V
0SSSSS
PPPPPPPP
0SSSSS
PPPPPPPP
t"SS9]
URPQQhH
^SSSSS
j"^SSSSS
0WWWWW
AAFFf;
;t$,v-
UQPXY]Y[
t+WWVPV
g!z{9c
3{I#O5
J}^lJJ
nNzOl/
wH.<}|N
G@o(RgS+F
:s-8>\7
iNHxw
7}X8pH
0nkx4me
H"^}}%T}
>t7gw}
~?Bg)oE~s
h|Thp5Bh
vmg8W'
"}I)[3O
qWY<&,<
I)E;_/
M[_QB#zba
i/zM7(n
ONu<o>
COmL^K
8$2E0~
%<E!(o
i*F["x3
_:Io>U;f
D:(Kg,
5uY].G&0Y
iKN\m;G
%bK!?I
-=ib_p
yAr?]TMw
vh4oB4
s<::T3
P[k&4@
#,q{UH
s;U0jH1
GO]:?
*frr7Cb3
2 jcSf^s
<(6BM(a
T9Apt~2?o
<Q/2H<
w4SzT=
s8,-<,
E2h9;]
xBvOrh
O:Nn_,#
n/!wT60
<~Lh,8
n"PWh5
51,sW6q
jvE1:Y
:XYCtO
W4W: '
=9U~}}L
xd9 E:
=kb/0X
PCd<3V
s/G(V{
0.nw:A
JcS--N
~T&**h
V>ir+W
Vz9m#f
O8>M[`
@Um!;67*i
2~yK8A5
+_Q6="|
])i"h?
_<$U0g=
V\\ToH(
8kZ0H&
G;TM(3E
N6RjM<
?0.&PK
9-nq;l@
"(?ow"
l0qhhv<
YoNxZxpI
a=#\V.m
IwuDLzQ`z
k#?kmF
?TW0hC
C|Y5?
`%BLUC
qV]B`P
G"FDoQQK7
QT2s?rx
r=#`(ZN1i
Oj+nX5
x2Fm+`
chHK2H{
ux}S!tI
@=x\m>
>,Xsz4
Bb;8"8
^XE30JOcG/
E_wFc$
mm}3o6/
7H+pK?}
m7/Y5R
c1eN,@
=9n0oQ
>H]4WG
~$g,q1i
A-;$8!
K>:EKI
gY"q+(
kX583_H.F
W{cF*n
ka"O2y
l=\ee_Pz
rKIc)r
<@1XWM
;_K^tM*
RL3:BD;
&\,5Pm]
.(%L#)
/t0e5-
^{wU}])
){@KnJ
)<$Nj;
C4)j>
n~i-)A
LQ*{6'
R[5$+b
r)!JOE
xd:X8z
B\q,vJ
dn_f2f
ChcSqg
0fI>(2
/J;2)o
GetConsoleAliasesLengthW
AllocConsole
GetProfileIntW
FindResourceW
GlobalAddAtomA
CompareFileTime
AddConsoleAliasW
GetComputerNameW
GetTickCount
GetConsoleAliasesA
GetWindowsDirectoryA
GlobalAlloc
LoadLibraryW
GetLocaleInfoW
TransactNamedPipe
FindNextVolumeW
SetConsoleCursorPosition
GetGeoInfoA
ReadFile
DisconnectNamedPipe
GetLastError
SetLastError
lstrcmpiA
GetProcAddress
VirtualAlloc
EnumSystemCodePagesW
LoadLibraryA
OpenMutexA
CreateEventW
CreateMutexA
FatalAppExitA
_lopen
SetFileShortNameA
ReadConsoleInputW
KERNEL32.dll
CharLowerBuffA
LoadMenuW
CharUpperBuffA
USER32.dll
InitializeAcl
ADVAPI32.dll
InterlockedIncrement
InterlockedDecrement
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
UnhandledExceptionFilter
SetUnhandledExceptionFilter
MultiByteToWideChar
GetStartupInfoW
RaiseException
RtlUnwind
HeapFree
GetModuleHandleW
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
TerminateProcess
GetCurrentProcess
IsDebuggerPresent
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
GetCurrentThreadId
HeapAlloc
HeapSize
GetModuleFileNameW
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetCommandLineW
SetHandleCount
GetFileType
GetStartupInfoA
HeapCreate
VirtualFree
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
HeapReAlloc
GetLocaleInfoA
GetStringTypeA
GetStringTypeW
InitializeCriticalSectionAndSpinCount
LCMapStringA
WideCharToMultiByte
LCMapStringW
GetConsoleCP
GetConsoleMode
FlushFileBuffers
SetFilePointer
CloseHandle
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
SetStdHandle
CreateFileA
.?AVout_of_range@std@@
.?AVfacet@locale@std@@
.?AV_Locimp@locale@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$basic_stringbuf@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AVexception@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVbad_alloc@std@@
||}z|~{
~y||~|~
}|~~~~
|{}}|z
{}|{|~
}}~{{~
{|{}{z
|~{~~|
{{|~z}
{{|{z~|z
~|z}~{}
z~|~{}
{|~}~}~|
{|~~|~
||z~~z
|~}{||
{}|}~z
~|~|~}{}z
~|{}|{
{zz}}~
|{~|~}
z{y~|~
|~z}{{
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!;
b!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!6
!!!!!!!!!!!!!!!!!
!!!!!!!!!p
!!!!!!!!!!!!!!jj]
j!!!!p
!!!!!!!!!!!!!
VV5O(,(1
[bn!!!!!!!!!!
yj!!!!!!!!!
[sn!!!!!!
n!!!!!!
~n!!!!!!k?
!!!!!!!
<~!!!!!!!
!!!!!!!
<]!!!!!!!]?}X
!!!!!!!
!!!!!!!!!
:i:_ef
HW!!!!!!!!!;U
!!!!!!!!!!;p
-]!!!!!!!!!!!!!
\(DP928v5vvg
!!!!!!!!!!!!!!W
!!!!!!!!!!!!!!![s
!!!!!!!!!!!!!!!;s
!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!
j!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!U
j!!!!!!!!!!!!!!!!!!!W
j!!!!!!!!!!!!!!!!!!!!!!\
3j!!!!!!!!!!!!!!!!!!!!!!
j!!!!!!!!!!!!!!!!!!!!!n
j!!!!!!!!!!!!!!!!!!!!!n
!!!!!!!!!!!!!!!!!!!!!n
+n!!!!!!!!!!!!!!!!!!!!!n
!!!!!!!!!!!!!!!!!!!!!!
+n!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
n!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
44444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444
4444444444444444444eAU4444444
44444444444n
444444444
44444444
0+{4444444
4444444sq
4444444
54444444
n44444444
444444444y;
4444444444U;:zx
444444444444
44444444444444{
fcB44444444444444
:44444444444444
{4444444444444444
44444444444444444N
:44444444444444444]xf
x'44444444444444444
44444444444444444=
6`@4444444444444444444=
444444444444444444444B
444444444444444444444444444444444444444444444444444444444444444444444444444444444
9999999999999999999999999999999999999999999999999
99999aA2
999999|N!
9999999
\9999999p
:99999999]
;9999999999
99999999
'''''''''''''''''''''''''''''''''''''''''''''''''''''''
::::::::::::::::::::::::::::::::::y''''''''''':
:y'''''''''
:1$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
:'''''''
:'''''
:::::$ov
:'''''
:$ovvv
:''''':
:''''':
:''''':
:''''':
:$ouuu
:''''':
:$ uuuu
:''''':
:''''':
nuuuuu
:''''':
:''''':
Z:b nn
:''''':
Z:b nnn
:''''':
:''''':
UUUtt]
:''''':
t]Dg$$$$$$$
:''''':
x:''''':
<<<<<##
x:''''':
:''''':
:::::::::::::::::
,Jvvvv
:''''':
:''''':
RRRRRRRR
:''''':x
:''''':
''''':x[
iV:@''''':x[P
fjVjVjVVY
'''''':x[
x:''''''''':
:''''''''':
Q''''''''':
::::::::::Q'''''''''':
p'''''''''''''''''''''':
8''''''''''''''''''''''':?
'''''''''''''''''''''''''y:
'''''''''''''''''''''''''''&:::::::::::
'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''
[[[[[HHHHHHHHHHHHHHHHHHHHHH
[[[[[[[JH'
[[[[[HHm
H[[[[H
#rrrr^^^^^^^^^^
j^^^^^^^Z
H[[[HB
w^^^^^^^Z
H[[[HB
^^^^^^Z
H[[[HB
^^^^^Z
H[[[HB
H[[[HB
H[[[HB
H[[[HB
H[[[HB
H[[[HB
H[[[H$
H[[[H$
cH[[[H$
)))))))))
cH[[[H$
eH[[[H9#^^
nHHHHHH
^^^^^^^^^^^|
N[[[[[H9
M[[[[[H9
^^^^^^^^
[[[[[[H
[[[[[[[H
[[[[[[[[[[[[[[[H
99v99v
[[[[[[[[[[[[[[[[HHHHHHHH_1
Di[[[[[[[[[[[[[[[[[[[[[[[[[[[
[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[[
SSSSSSSSSSSSSSS
sLLLLLLLL
gSSSSSgz
fSSSSS
?SSSSS
666666
SSMSS]
~~~~~~
u)@@)@)G)GG
NNNN;"f""#f~c
(((((((+(
(H+H+H
I
@
R.#
xbyu
,
N0

.
*8
*OV!
?O

.

r*y
%

y
[ssWWsEWW&
{y
Z
d

01

R
I~
"@"IHHHH

~~~~~~~~~
~~~~~~~~~
~~~~~~~~O
~~~~~~~~^Y6
~~~~~~~~O
~~~~~~~~gg
~~~~~~~~55
d1%~~~~~~~~^
~~~~~~~~^Od
~~~~~~~~V
~~~~~~~~V
~~~~~~~~V_
~~~~~~~~__
~~~~~~~~mO
~~~~~~~~O
~~~~~~~~
~~~~~~~~n
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
OOOOOO
aSOOOOO
\OOOOOg
OOOOOe
OOOOOW
Q>cOOOOO
9OOOOO?(
EOOOOOO
))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))>
))))))))))))))))P
F////C
/C/C/C/CC0CC/C//
))))))))))))))))
R))))))))))))))))
P///q-
))))))))))))))))
R))))))))))))))))
R))))))))))))))))v
R))))))))))))))))
))))))))))))))))
p77fTU
nCZR))))))))))))))))
R))))))))))))))))
))))))))))))))))RR
))))))))))))))))
&$8qH@
))))))))))))))))
))))))))))))))))
))))))))))))))))
))))))))))))))))=
))))))))))))))))|
))))))))))))))))
))))))))))))))))
))))))))))))))))
>)))))))))))))))=
$IlT([[<]7
)))))))))))))))
>)))))))))))))))
)))))))))))))))
CQR>)))))))))))))))
>)))))))))))))))
>)))))))))))))))=
>)))))))))))))))=
>)))))))))))))))
>)))))))))))))
=))))))))))))>
=))))))))))))
WWlq-;
))))))))))))vl0F
))))))))))))
))))))))))))R
))))))))))))
))))))))))))
))))))))))))
=))))))))))))
)))))))))))))>
))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
iiiiiiii
iiiiiiii
iiiiii
iiiiii
iiiiiiiii
iiiiiiiiii
iiiiiiii
iiiiiii
iiiiiiiii

1024282<2@2D2H2L2P2T2X2\2
; ;$;(;,;0;4;8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
? ?$?(?,?0?4?8?<?@?D?H?L?P?T?X?\?`?
4080H0L0P0T0\0t0
1,101@1D1L1d1t1x1
2$2(2,242L2\2`2p2t2x2
3,3<3@3H3`3
4555u5
8%8F8a8s8
8A9G9X9_9g9
;";-;6;=;I;R;_;u;
<?<]<|<
>*>6>;>
69,9C9a9
>,>K>h>
161@1T1
2&2-282>2I2N2d2o2
7/8H8q8v8
;';;;M;T;Z;l;t;
$1D1}1
3(445}5
>7?=?N?y?
4#4+4;4P4
5C6H6M6R6b6
60757<7A7H7M7
8:9?9g9
;1;8;<;@;D;H;L;P;T;
<!<<<C<H<L<P<q<
<:=@=D=H=L=
22)2]2h2r2
4 5,5?5Q5l5t5|5
6D6U6h6n6y6
70777O7[7a7m7|7
898N8t8
9#:+:u:|:
;;.;D;O;T;_;d;o;t;
<2=8=X=
F1M1_1e1
2*2?2I2o2
00%0B0
1&2/2;2r2{2
2&3i3o3@4
/0H0O0W0\0`0d0
0>1D1H1L1P1
2;2m2t2x2|2
283X3]3A4N4
4T5Z5s5y5!6,6k6
8,939H9
:;;k;};
<#<W<\<j<y<
>$>+>2>9>@>G>O>W>_>k>t>y>
>/?6?@?j?x?~?
0&343:3T3Y3h3q3~3
4%494@4F4T4[4`4i4v4|4
;A=S=e=
6$6-6<6A6K6Y6
:N;<8>Y>e>
5;6A6e6
.0N0>1g1
;5<?<W<
>6>S>c>~>
0$0+0=0 1
=1=L=i=
>#>->9>E>O>Y>c>n>r>w>
?$?D?P?p?x?
000L0P0X0\0x0
1 1$1<1@1\1`1h1p1x1|1
282X2x2
3(3D3H3d3h3
4(4H4T4p4
50585L5T5h5p5
606D6P6X6p6|6
7 7(747T7\7h7
0004080X0
14181D1L1T1\1d1l1t1|1
9(989\9h9l9p9t9x9
> >$>(>,>0>4>8><>@>D>H>L>P>T>X>\>`>p>x>|>
mscoree.dll
KERNEL32.DLL
(null)
((((( H
h(((( H
H
xijubogomoyoruweke cenogoyalexixulo musorenab fofikatuvugifoculirotax mebukiwejedorifutirayimuluti
wacucinusukalepimalediz lomudayiboyodatixuwu zituvaradiyobiyujacih juyasihamodimafumoyexopi
kernel32.dll
kernel32.dll
jjjjjjj
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
042831F2
FileDescription
Unweather
LegalCopyright
Copyright (C) 2023, historical
ProductsVersion
63.53.38.9
ProductName
Spruits
ProductionVersion
39.19.17.96
VarFileInfo
Translation
JJebuw witiwusosit penixuwutuhic sigemaliyiban wuxihozo rusadaxezefeja lelu?Zuhelanaxat hok tesiwiyomitex lafare yev wumol xuro xunudoxonihSFowij zit nerahuhadevi ruvufuhutah jevubakad pibaraf kelamafehohora tam bogovicukeg
KesehiKJimohoxurufabab fovegumadovis daw wocoyibin wocatisorugovod cokusuyewojiwaf
Wexumewi pob
Zohucug ruzutuga
KojoHVocoyuremiyixub wagofo diducevefegan visopehoruzoz wigece foceki bucisiv
NazalodUKuxikonunaniy ziyozorugere xecofova mubizumeji pukid kijeci firox hudibavalapohi mexe
KelVPevinotuzuz zixuvoc reho gidosacabaye kabedexem fubatoled cetubicuye witajunigaf katoj
nLugawixiyohu haridesenecu jacedoponax kasulipa mifuzidebihecow recojaputeh zuzaputodar kugub yiwubiver poyiwuzNFogayemul bevikobakiyedu micoco huj wobofulewi talenuvutaxajep buhezid sudexoz
pNemebuxoselobab kok howoribupora mesakenel vihuyazocih cobulimenazide yiboranigewoxa simesuc negifirader dezejeydVibi cehiy robibecitulina maloda baborewovurope biliculozuv fepigicoyojewoc cuxipafocir kevimuzixeha
.Zivirat yijet jiwataz rupenuhemubog nagoviloga$Gatifuhi jupumucowis vixupujemoyojafjKogonameda veluvanovidata zopupodisado fuvinigusom bexaperareli malacosozo sacezamociyevun gexo movaraxacoADimisaz timilehoki rekagoben nuruwuka ciloparele celeyevuka sabun+Bopiti fihula rewehujes juhidupu horolameha
Zasadaweto
Vur wecolojosisFCahurenexa cobufodusel hovojel kibopocuvasowew jex yadohabuf jarafageb3Nam xudikuhu tag cafojuxuyowoc sehonimawajuwus vejeUJefeconejavepuj burebeyurero pabo yexahemekoy fifilof netorodob vuroxu vucukubiganahi.Wakig vuxedida febitawalage salu vavafowulituh
RNotapacuhime wucohasivagi yoyegicel xuragapec wusomiz werukap hoteziled kihedosaca
Nokibofeguw
Vusatay,Tohamuxi fusopiloge jibefuvut cibuzoluxigeriiTozusuheyanibu buwalenog nerifigegel tucuhu kocuxaraho xokukojeyizu goxarocud caloxinixaj yunemowohewisab
Fexu tavap niso7Sipe gakagugibita lecudih calizex wugikus zaluxijibenej*Hisetofu digarokuguloli jakelalofet nijixeVZomegepawazid cuhanibuyikupo kudobam gucolicix zikonaferihiz towegocuze refijuwunapemi&Disizalus beput zukexagudutoxot huyiga
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
tehtris Generic.Malware
DrWeb Clean
MicroWorld-eScan Clean
FireEye Generic.mg.aa936f35ba4f0386
CAT-QuickHeal Ransom.Stop.P5
McAfee Artemis!AA936F35BA4F
Malwarebytes Trojan.MalPack.GS
Zillya Clean
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
Cybereason Clean
BitDefenderTheta Clean
VirIT Clean
Cyren W32/Kryptik.KGI.gen!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
ClamAV Win.Packer.pkr_ce1a-9980177-0
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.B663 (CLASSIC)
TACHYON Clean
Sophos Troj/Krypt-VK
F-Secure Clean
Baidu Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Worm.fm
Trapmine suspicious.low.ml.score
CMC Clean
Emsisoft Clean
Ikarus Trojan.Win32.Crypt
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Gridinsoft Ransom.Win32.STOP.dg!n
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
VBA32 Clean
ALYac Clean
MAX Clean
DeepInstinct MALICIOUS
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Trojan.Win32.Obfuscated.gen
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Clean
Fortinet W32/GenKryptik.ERHN!tr
AVG CrypterX-gen [Trj]
Avast CrypterX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.