Static | ZeroBOX

PE Compile Time

2023-02-07 14:45:59

PE Imphash

497066eb74b90edfec949c6dfd6acab4

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000214a6 0x00021600 5.15138689715
.data 0x00023000 0x01eee740 0x0004a200 7.98852727632
.rsrc 0x01f12000 0x0000ffc0 0x00010000 3.81712933307

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x01f20c60 0x00000130 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f206f8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x01f21e00 0x000001bc LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x01f21e00 0x000001bc LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x01f21e00 0x000001bc LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x01f21e00 0x000001bc LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x01f21e00 0x000001bc LANG_TAMIL SUBLANG_DEFAULT data
RT_ACCELERATOR 0x01f20bd8 0x00000068 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x01f20d90 0x00000014 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x01f15a70 0x0000005a LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x01f15a70 0x0000005a LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x01f15a70 0x0000005a LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x01f15a70 0x0000005a LANG_TAMIL SUBLANG_DEFAULT data
RT_VERSION 0x01f20da8 0x00000278 LANG_NEUTRAL SUBLANG_NEUTRAL data
None 0x01f20c40 0x0000000a LANG_TAMIL SUBLANG_DEFAULT data
None 0x01f20c40 0x0000000a LANG_TAMIL SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x401010 _llseek
0x40101c MoveFileExW
0x401020 GetConsoleAliasA
0x401024 GetUserDefaultLCID
0x40102c GetModuleHandleW
0x401030 GetTickCount
0x401038 GetNumberFormatA
0x401040 WaitNamedPipeW
0x401044 GetDateFormatA
0x401048 EnumTimeFormatsW
0x401050 GetDriveTypeA
0x401054 GetSystemDirectoryW
0x401058 SetFileShortNameW
0x40105c LoadLibraryW
0x401060 GetConsoleMode
0x401064 TerminateThread
0x401068 _hread
0x40106c GetCalendarInfoA
0x401074 GetTimeFormatW
0x401078 GetFileAttributesW
0x401080 TerminateProcess
0x401088 GetOverlappedResult
0x40108c GetStartupInfoW
0x401090 CreateMailslotW
0x401098 InterlockedExchange
0x40109c GetStartupInfoA
0x4010a0 CreateMutexW
0x4010a8 GetLastError
0x4010ac IsDBCSLeadByteEx
0x4010b4 SetLastError
0x4010b8 GetProcAddress
0x4010bc PeekConsoleInputW
0x4010c0 MoveFileW
0x4010c4 GlobalGetAtomNameA
0x4010c8 OpenWaitableTimerA
0x4010d0 LocalAlloc
0x4010d4 GetFileType
0x4010dc AddAtomW
0x4010e4 GetProfileStringA
0x4010e8 OpenJobObjectW
0x4010ec GetModuleHandleA
0x4010f4 FindNextFileW
0x4010f8 EnumDateFormatsW
0x401100 OpenSemaphoreW
0x401104 ReadConsoleInputW
0x401108 LocalSize
0x401110 FindFirstVolumeW
0x40111c DebugBreak
0x401120 ResetWriteWatch
0x401128 TlsFree
0x40112c EnumSystemLocalesW
0x401130 DeleteFileA
0x401134 GetComputerNameA
0x40113c OpenMutexW
0x401140 GetCommandLineW
0x401148 EncodePointer
0x40114c DecodePointer
0x401150 Sleep
0x401164 MoveFileA
0x401168 HeapFree
0x40116c HeapAlloc
0x401170 GetCommandLineA
0x401174 HeapSetInformation
0x401178 RaiseException
0x40117c RtlUnwind
0x401180 WideCharToMultiByte
0x401184 LCMapStringW
0x401188 MultiByteToWideChar
0x40118c GetCPInfo
0x401194 HeapCreate
0x401198 ExitProcess
0x40119c WriteFile
0x4011a0 GetStdHandle
0x4011a4 GetModuleFileNameW
0x4011b0 IsDebuggerPresent
0x4011b4 GetCurrentProcess
0x4011b8 GetModuleFileNameA
0x4011c0 SetHandleCount
0x4011c8 TlsAlloc
0x4011cc TlsGetValue
0x4011d0 TlsSetValue
0x4011d4 GetCurrentThreadId
0x4011dc GetCurrentProcessId
0x4011e4 GetLocaleInfoW
0x4011e8 HeapSize
0x4011ec GetACP
0x4011f0 GetOEMCP
0x4011f4 IsValidCodePage
0x4011f8 GetLocaleInfoA
0x4011fc EnumSystemLocalesA
0x401200 IsValidLocale
0x401204 GetStringTypeW
0x401208 HeapReAlloc
Library GDI32.dll:
0x401008 GetTextFaceA
Library ADVAPI32.dll:

!This program cannot be run in DOS mode.
`.data
generic
iostream
system
iostream stream error
Unknown exception
bad allocation
Visual C++ CRT: Not enough memory to complete call to strerror.
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
CorExitProcess
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
bad exception
Illegal byte sequence
Directory not empty
Function not implemented
No locks available
Filename too long
Resource deadlock avoided
Result too large
Domain error
Broken pipe
Too many links
Read-only file system
Invalid seek
No space left on device
File too large
Inappropriate I/O control operation
Too many open files
Too many open files in system
Invalid argument
Is a directory
Not a directory
No such device
Improper link
File exists
Resource device
Unknown error
Bad address
Permission denied
Not enough space
Resource temporarily unavailable
No child processes
Bad file descriptor
Exec format error
Arg list too long
No such device or address
Input/output error
Interrupted function call
No such process
No such file or directory
Operation not permitted
No error
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
bad locale name
ios_base::badbit set
ios_base::failbit set
ios_base::eofbit set
zocupixinimapok naludatugecuco logenenoyihuyo
mihaxacahifixeficiw
invalid string position
vector<T> too long
string too long
bad cast
_nextafter
_hypot
1#QNAN
1#SNAN
F@9n8u
QQSVWd
.t|PVj@
t"SS9] u
^SSSSS
j@j ^V
F\=x'@
t h`(@
t=MOC
HtHu4j
t*=RCC
;7|G;p
tR99u2
F Pj*S
F$Pj+Sj
F(Pj,S
F,Pj-S
F0Pj.S
F4Pj/S
F8PjDS
F<PjES
F@PjFS
FDPjGS
FHPjHS
FLPjIS
FPPjJS
FTPjKS
FXPjLS
F\PjMS
F`PjNS
FdPjOS
FhPj8S
FlPj9S
FpPj:S
FtPj;S
FxPj<S
F|Pj=S
v4;547B
vL;5L7B
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
CHPjPV
CLPjQV
Fh=x8B
PPPPPPPP
PPPPPPPP
u}hl7@
URPQQh
t VV9u
;t$,v-
UQPXY]Y[
D$49l$Hs
D$4VWP
t$D9l$Hs
L$PQRR
D$,PQQf
L$0QWWW
tWItHIt9It
<+t"<-t
+t HHt
u-hTE@
GetCommandLineW
GetComputerNameA
SetProcessAffinityMask
CreateMutexW
_llseek
DeleteVolumeMountPointA
InterlockedIncrement
MoveFileExW
GetConsoleAliasA
GetUserDefaultLCID
FlushConsoleInputBuffer
GetModuleHandleW
GetTickCount
GenerateConsoleCtrlEvent
GetNumberFormatA
GetConsoleAliasExesW
WaitNamedPipeW
GetDateFormatA
EnumTimeFormatsW
GetUserDefaultLangID
GetDriveTypeA
GetSystemDirectoryW
SetFileShortNameW
LoadLibraryW
GetConsoleMode
TerminateThread
_hread
GetCalendarInfoA
GetConsoleAliasExesLengthW
GetTimeFormatW
GetFileAttributesW
WritePrivateProfileSectionW
TerminateProcess
QueryInformationJobObject
GetOverlappedResult
GetStartupInfoW
CreateMailslotW
GetPrivateProfileIntW
InterlockedExchange
GetStartupInfoA
OpenMutexW
GetHandleInformation
GetLastError
IsDBCSLeadByteEx
GetCurrentDirectoryW
SetLastError
GetProcAddress
PeekConsoleInputW
MoveFileW
GlobalGetAtomNameA
OpenWaitableTimerA
InterlockedExchangeAdd
LocalAlloc
GetFileType
BuildCommDCBAndTimeoutsW
AddAtomW
SetCurrentDirectoryW
GetProfileStringA
OpenJobObjectW
GetModuleHandleA
FreeEnvironmentStringsW
FindNextFileW
EnumDateFormatsW
QueryPerformanceFrequency
OpenSemaphoreW
ReadConsoleInputW
LocalSize
GetWindowsDirectoryW
FindFirstVolumeW
GetVolumeNameForVolumeMountPointW
MoveFileWithProgressW
DebugBreak
ResetWriteWatch
ReadConsoleOutputCharacterW
TlsFree
EnumSystemLocalesW
DeleteFileA
KERNEL32.dll
GetTextFaceA
GDI32.dll
AccessCheckByTypeResultList
ADVAPI32.dll
InterlockedDecrement
EncodePointer
DecodePointer
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
MoveFileA
HeapFree
HeapAlloc
GetCommandLineA
HeapSetInformation
RaiseException
RtlUnwind
WideCharToMultiByte
LCMapStringW
MultiByteToWideChar
GetCPInfo
IsProcessorFeaturePresent
HeapCreate
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetCurrentProcess
GetModuleFileNameA
GetEnvironmentStringsW
SetHandleCount
InitializeCriticalSectionAndSpinCount
TlsAlloc
TlsGetValue
TlsSetValue
GetCurrentThreadId
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
GetLocaleInfoW
HeapSize
GetACP
GetOEMCP
IsValidCodePage
GetLocaleInfoA
EnumSystemLocalesA
IsValidLocale
GetStringTypeW
HeapReAlloc
.?AVerror_category@std@@
.?AV_Generic_error_category@std@@
.?AV_Iostream_error_category@std@@
.?AV_System_error_category@std@@
.?AV_Locimp@locale@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$ctype@D@std@@
.?AUctype_base@std@@
.?AVfacet@locale@std@@
.?AV?$basic_istringstream@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_stringbuf@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_istream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ios@DU?$char_traits@D@std@@@std@@
.?AV?$_Iosb@H@std@@
.?AVios_base@std@@
.?AVruntime_error@std@@
.?AVexception@std@@
.?AVfailure@ios_base@std@@
.?AVsystem_error@std@@
d8mXUTs
I41@ kQc
'O<b8p
z!X]Ao
.i[!.Sa
T$ub!D
684/=L@Hb
,.0T]Oa-
J<86A.
}L4jW!
Ebv^+5
`aP$$w
>!pBy+
| &_"*Y
[Jl8K7'
(oTs}V(
l X9ga
Mv<*+}
/]#5'h
1=J/SqD
IS&XZD
a)^' 5
Np9hB.9
qZ:*jZ
Ew(qxw
h2]cK^
aI>uQ4
C={64|
p.&6z0O
7CpED!
^'pV7:
6#@:iLr%
%bcv9
b!)0:3
F~ROsU
#@HzDqy
[N$w00$u
f`u{!n
oQO#%#
Dnu((y
gFXI*L
5KT|=Wx
VBjO6
&<|{S2l
wg~fu},
7(Jj[]
u1{;`8,
pT"{dM
_%`YDF
-mQ5/$
*zA0tH
l=Ev[jM
ME-;m1
FS?%D/5
jzCcjf13
6'u$qvzA
yU[Wcq
s^\kQcS
J0W0ja
j1.WQ&
H$wZff?G/
I'S_|3!
F0HIaE
Nrn&:#%
`Xt*CT
5SHNa%
;D8*iZ
d$}4E9-
2>%'RWP
\l~Yn3
@I;mBL
X1['x|
eV7ipR
4<br.|
|c&1n-
UUK3!O%
hO_Oaj
VI!J!2
2?z&l=
43/;FTrn.]k
XZk]C
k|eR4
tyj3=
bv?@Fg
`1deTQ
gIKtaL
.2$ ?$
lZ"dF-
Uh[DQ4
T]]V\1
}@$&6x
s3$`c.
-VNRH
;Zm*^o
%=n"!d
}fu5)O
!cn:\`
blw)]{
DD*Zzc
Ewj%<C
*u5qos
|o!a@I
fDZ12X
3oC2]lb
@!! 6Z
n]-tI4[
b1Y)(+['+
yfk2/0j"
P,f 1d<
;h AT8
$tt&[a
la?4K+
*C]GOMi7B;
`^tk1B
e^SvfA
Qq)w-/
F)}:wgH
>B4?|B
hiK$u4
Q2a"@L
J _joS
C0F#yCA
_L0d6j,\
Rt%[&-
vV}DV,=s
T}3T2y
[~oJGJ
/<L?F`
1qgk*u
YhpcL*OX
3^TaLgF
/{M%;xZH
GQH;C?
(c^f0c
#1GO[#
4Imk[
Z<j0DIbZ(
+IdL!6
pFH(e@
II_AyI0|
3PF65z+
X2G0QBKC
@\H(,k
NRMS9+G$s
1m8e_Z
hH+f.u
HKBp]f
52R{H2Hk
?TSP9^n
,8)2{zG;G
Gff~}L
*=guMn{
"*H^W-
|ppy;#
>?-5(n
t;B_l
$=k|.0
"S2`E{
t_HJM"
gXy]{U
Zy)fGs
gUkQ|C
8%\Z8O
&#<iWxj
lbt)U~
U 8Dk2
j^XA%6
<pUT/+
ZJCt*P_
^;.hmTi]_
mi[n$E
me|Ajf
&^LzwH
SI{`VI(%p
fODW8MH
oZ&@F#
*{Eg`D"
mOo"0M
y1tyG~l
QQ3`n^4
5i&BPbD
D2p!yU
O=tkn~
%Yx!!_]
_lO9Y"
7Os$NbNze
$Zu2B%
}o<33=
*]L8u^6/n
JBH'1d
n~uk|O
rU+A8<@F
LMi3&E(>e^#
`1PRn{
mOuh{^$
;z*F3`
oy^l*]
L0'p@)k
'U&_P:n
)3@%F
"+~f!.N2
bAE$Hg
39T21[
S9qt(K
mFQ>\;z
_}{{?8
Q8WQu-
4<6QK
,*>2@;
Ti=9DCkD=7
/Ri:"1
t0Yb4N
Wn?6cY
E!t%v
BgMq2
ygH9$L
$xrWH
#v5mq;w
5 &E7@E
z53PK;(
FYR^ >g
"r==r
9ySn7}
3d6M1
m i_AB
L(2 b*
q9.O|751
0H)33L
?U#A^:
5XUfKN;]'
0kl1Th
k\{, /
G jx>?d
dzlKs||
(rlXc
8=g-V2xN+
_:}iGV
!V^886t
UKo-HG
h![6YAFI
W)nY:
Z/S2@'sl
n@tYN(6&
S=eK"Z\Xz
<CcTq$
*~0r2;
qKW3BA
/:rzM
0|<(t32T?D
YK7nsN
QUwa._
D{])|D
&0!kJ
XQYQw[
-iRR)}H-6
[SX!9a
t:e'VC
?;qtVkam
hXI}Z#
*>sFh(:U#
^BnSS>
U?{{>.8
ut1TU6
hE*DA*oe
V<&666
f\+#gh!O
4py&R5
*3QD'\p
W7~KcS
";-?Km"
c;T~q,n
*#]00:
TW`3kGS
P\G<]
glV]93y[PK
.wo{[g
H2jLx+wK
]>z5V^ b
"4sW{>
Xg(I`&i
#TO#<W
BZJ]M<
"DB0bM
\Nz"VfVl
/>2s^w
x<Lz^T
\m7oHU
66tc&$Xh
$4!M^=
!B+r"U
PHS:_@l
a|;+l5
Z93msf
R0sWNn
i[udmt/6
L`*|7U
,T>^ u@
qa4v=d
a:"%xc$
$(qSvQ
/#.I0Qo
2\P[M/
zvjx4blR8
yyrw~?R
[<*^+6
+J(_pF
j:D~gi)
bee+a#0
<jIR;U
8|/FwR
lJLxdm
gt'0]9
PYfG2[
O(>rQ
`K*W#1
o<D$:PDw
7^aRt~M
UaU~_B
T){!L[
9R 6B_Z
.6!]akd
9,e`LC6
kpYPgL"
4DSB/(
@:n;Fb
_ )'Q[,
+1cA+h
FtYpwn\<4
|1,}=1
vC9b5X3
u1T:8_
nfCX"M
rI>@sb
g{:u7J`
W)P-x3<#F
Ax2.2+
;KI$D\
Ku\b/u
fO_^1}
/q5O5p
ShId%pY\"
_2BrnE0
#W?4?
MHF>O*}
(pdjVD
n@AITY
!GnN"y
kry:YH
G(dDfkVv
NGBVRS
T'8&io>
h|e<_~
'r,_%l
|,]%j2Q
u-!nR<E
i1GdRX.QN
^g]\@r
CLRU5u
@/3zQZ6
CSIZ2Yf
Vdoj|r
@%ov&i#
>?9:Q'=o
A51N2<
.^('Fq
sm9p//
]Gb0R=
0xx'}C
^/3*K
& L84)
7G14Rs}
$Of_9#
`u,C}|
Lak0 A
K(<.*?
);n#m*
g4'nZ0l
%L~?Pe
J6.s1@W
e.-DB(R>{
XhcA6\
&NG%:tM/
']~p}n`
ojUV&!
/+)un:Mo
>>4ccP
Vz/g0S
{&j%!G
59|JL&K
5|kRq"GcE
g[&*6d
$+eL<~
|R 5*r
ez>"|b
PF6v<N
Nmy5Q[(s
Sd2jjC
* =`jkf
[*T9+)
[94+u#
a'g k:I
7y)5`u
/lE.)<7
tS>Ti:
5I")8V
hV:QTE
@q:&Gdi?T
i48~pq
GHzy6u5
.7`OWUX
=_UR4z
e?Nc?q
?ouup[J
r2P|>u
7_N](/
C@M: :
NP5O[
L1z)GI
c"Ly>{y
Hnr&nP
kTf/R=
=&'wYP
d82?,m37iDn
0XFAo=
Xq`fJD
kJ*U5:3
&v=zwl6
\aw`F{
T/3q-*
j,9u1_
"S&.k/*
g:oMv Q
$.j*>3
Bgn+:V"z
?:<#o7
1bQ7xl
r|IAcv
A_ DFG
W>cq=@
5-pj?K
[AAtG3
(DM.T{
M/6OJi
fG%I]7O@
D3TEFxX
XIi-BL
DMKG]5;
-)yH#A
@4z{wP
bS;z.xE
EYx0]Ic
:t};;A
!uui?,
.al{hq
{k[c;!Z
CUA($j
-k{F75
fofC|;
;-MAf!Q
W(E7JQ0+b
iN{<TW
qMaPc5
|zDC="
e]}IS]
IxgRlf
~lrIZ=
yAE)p(
.^[Uv*
3\N^C'
A@A'~"??
>6_]:dT&kIV
^=H#X+
no'.Ef
%~SPx}.|
ayP-Y/<
SS~8w^
hxp{p"
qXM#BU:
N)xLR~l
RD&<SrU
s '8%
&=8\@8T
zT? kA
R&bHE4/
PpIBg
@@PYIy
Z'e[;2c
-[ja^g
U*O1HD
b3e7'K
_8p@%2
3k 6X.n11dK
#(>vwhY
8&{(A@
lBV@+z
<UE"ko
M"L+:~
Pu32}L2
2]HV"
O<:gr>D
qMm#e1>
s+QRSx
T'j7_u
0nV..q
/L^c"4]y
}eD]_?)|h[d
c+l-<6x
)^O2&!
yW@QM=
MGF4\
A[-i`
{3TdRD
pOo_1^
n%m+zdG
)H$J>^
kl*Vp}V+gR
eW"B*6\
B5pDY\F_]V
{BOIoJ
4Z"6Zn
iVHVn^v
^8{a
;vCvmGMs
.?AVbad_cast@std@@
.?AVbad_alloc@std@@
bbbbbbbbbbbbb
bbbbbb
bbbbbbbbb
bbbbbbbbbbbbb
qqqqqqq
JVVVV))VVVVVVVV)))
||||||||||||||
)|`eeee
LLL]
LLLL
LLLLLX|)q
)|e11]]]
?)|XGG1111]]]
GGG1111]]]]`|)
GG1G111`|)u
GGGG`$Vu
V))))))))))))))))
RRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRR
RRRRRRR
RRRRRR
.IFIIII
RRRRF
t88888888888
.IRRRR
IRRRR
3333333
RRRRRRRRRRRRRRRRRRRRRRRRR
________
||{~|||
}z}z~~~z}|
~||{z|
}||{z}}
{{{|~~{
}}zz}{
|~}y|{~
|z}~||
~~}}~}
~{~||}
~}||{{
~{~{|{{~}}~
}}{~}|
{||}y|
~|}|~~
??????????F?FFF6
AAbb.bd.11
AAAbb.d
CCCCvZ
BCYCCCCC
Fl~eeeee
~eah\\N_e
~eBNe
E] :E8
G
!{iii1
1qiiii
[X9`OO
((((( H
h(((( H
H
mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
@Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
KERNEL32.DLL
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
WUSER32.DLL
zotagunovobukarayi dukobuwacileze zulahiyebogage weradexibeholorumoviso
nawutizefekogayur
jakidiruwazunural
mogufobezurufiwagehepijopib vofujoruhujaf
hoyabu
wfogado
rihecafuxiteles jemalitexoyijakafezexuyokuv biwacivox xosucizexezahofunizomugeso luwad
patogep
goxobabewevamadufewamefayiyawahi
Difupohaceh taci
nubelopobupayuxoketuwigirazivu
citojucocurowuweyonapay bowovariwudopu focanahumo fop
VS_VERSION_INFO
StringFileInfo
029385B1
CompanyName
FileDescriptions
PlasticFantastic
FileVersion
46.76.13.71
InternalName
Literally.exe
LegalCopyrights
Challangers kenia
ProductName
ProductVersion
9.54.3.76
VarFileInfo
Translation
Tuv yiluzesa vilixa
Yiyokaxeri jatilazicifbMumatovavu cawaxebiweseg vucolajo zatutobipa newororezuze pazub torisegadefe xaforagexatuda kamojaZRasapewax kujehuradag moxusumu pozep cizo kedubetakaxeses secubevore furiyovid bugexihegog
Wexuyehatade<Cetigorupam ronizulicenef buk gojejudawozofow jujebicevenipo
Tiraceneju zigeresovicid
Rajekaw mogibixijubSuzawex pobiselexemihig wuva jehu toyegamo tevogemenot jofusehekihomis jefabajuziwure ruwumitakeru
TJaxowofa rupek tibey tujibihagom pagije ceyeparihigopi hezosukirihur bemediwixocezop
Wozebab favexijodojadox%Valalocata daseca pacasohi vupivusehi
Xile pikaciw
IKogafisusud gasezuleca sagusinuyupaca ture xovuwemes buj dajekivi yozudipVDocadova kocizizazisivis gojubifuf goxedir bezirala hocawesog curipeti xokayikaguyemay
=Sejucusiz sus dayipigucepay vinip noxajecariwu mubofu pudalap^Tiyeja cay bobemuwitozosib lin yeyatihiyuwuhaf vexor fereposijec loyokaxedori popajuga gigewul
Yivatomohag
Cayesef cecipipoyu
Dafotiyoxafixod viyidoziyit mobbZow ruxemax tikomajajune febok hihatowuleha famukepakayulo fomikub nojule fetitikuhu safaconitemut
Cubojupu zowez robihex foduwhZolinitojepijo fozu zomiyamecuxodux xahoribudixilo higafofaj lipeyobatevopa sumug kemunufu jugijacixegafJYomujil dubaworava danudidu numavawukiveney kewofuyi balawiva vikuyukekuga
;Jaxicoxiwapahu demapigar jejezad gakavayita kalopedoxiniviz
Kucetarosolan bodahelaf zubaBRey vezuyahahoxel ronafecijesebe nizacesefo degukor zolimaxelufaso
Vanut nam xexehebo
KikisugayawihahYapese ririmoj wanipamubusumi fijusomimimimif burowacife subakuyat fakolugorajave xufapecidad nud teweno
RukivUXoyu dawow rasuzasojugafe jexubige yejivasu caloxafib bup xayepedajibow pegoyexer doh3Nijuzinijawepe gofore lodutija virulixu tavawoloxon
4Mizen wacanehemigah fux zuje fixiyibijev tilisaxovub)Pabofihacih wabomavib hovemivunenava japo
Pukiku jizovarutonaRFewab buhuhirini ladusekofomu zoguginac tufiteniwexox dizicumum mire ruriyamigofok
Vowotimiwimu
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
tehtris Generic.Malware
MicroWorld-eScan Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Ransom.Stop.P5
McAfee Artemis!C51B336B579C
Malwarebytes Trojan.MalPack.GS
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Trojan.GenericKD.68556758
K7GW Clean
CrowdStrike win/malicious_confidence_100% (W)
Baidu Clean
VirIT Clean
Cyren W32/Kryptik.KHD.gen!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/GenKryptik.GMON
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan-Spy.Win32.Stealer.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.E962 (CLASSIC)
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Trojan.TR/AD.GenSHCode.yzeyn
DrWeb Trojan.DownLoader45.64415
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.gc
Trapmine malicious.high.ml.score
FireEye Generic.mg.c51b336b579c7d16
Emsisoft Clean
SentinelOne Static AI - Malicious PE
GData Trojan.GenericKD.68556758
Jiangmin Clean
Webroot Clean
Avira TR/AD.GenSHCode.yzeyn
Antiy-AVL Trojan/Win32.Wacatac
Gridinsoft Malware.Win32.Gen.bot
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan-Spy.Win32.Stealer.gen
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Google Detected
AhnLab-V3 Trojan/Win.Generic.R595973
Acronis Clean
BitDefenderTheta Clean
ALYac Clean
MAX malware (ai score=82)
DeepInstinct MALICIOUS
VBA32 BScope.Trojan.AET.281105
Cylance unsafe
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall Trojan.Win32.AMADEY.YXDHGZ
Tencent Trojan.Win32.Obfuscated.gen
Yandex Clean
Ikarus Trojan-Ransom.StopCrypt
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Kryptik.HACT!tr
AVG Win32:BotX-gen [Trj]
Cybereason malicious.a060ce
Avast Win32:BotX-gen [Trj]
No IRMA results available.