Static | ZeroBOX

PE Compile Time

2022-12-13 23:06:29

PE Imphash

652c7ff7afcc08a2e9c5186e380250b2

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0001afc2 0x0001b000 4.80284362739
.data 0x0001c000 0x01ee7380 0x00041e00 7.98325137296
.rsrc 0x01f04000 0x00012fa0 0x00013000 3.77288336059

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x01f15538 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01f15538 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01f15538 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01f15538 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01f15538 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01f15538 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01f15538 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_CURSOR 0x01f15538 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01f128a8 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x01f16e18 0x00000184 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x01f16e18 0x00000184 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x01f16e18 0x00000184 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x01f16e18 0x00000184 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x01f16e18 0x00000184 LANG_TAMIL SUBLANG_DEFAULT data
RT_ACCELERATOR 0x01f12d88 0x00000068 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x01f15508 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x01f15508 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x01f15508 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x01f15508 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x01f07c20 0x0000005a LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x01f07c20 0x0000005a LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x01f07c20 0x0000005a LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x01f07c20 0x0000005a LANG_TAMIL SUBLANG_DEFAULT data
RT_VERSION 0x01f15df8 0x00000270 LANG_NEUTRAL SUBLANG_NEUTRAL data
None 0x01f12df0 0x0000000a LANG_TAMIL SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x40100c _llseek
0x401014 MoveFileExW
0x401018 OpenJobObjectA
0x40101c GetConsoleAliasA
0x401030 GetProfileStringW
0x401038 GetTimeFormatA
0x40103c OpenSemaphoreA
0x401040 GetTickCount
0x40104c WaitNamedPipeW
0x401050 GetDateFormatA
0x401054 EnumTimeFormatsW
0x40105c GetCommandLineA
0x401060 GlobalAlloc
0x401068 SetFileShortNameW
0x40106c LoadLibraryW
0x401070 ReadConsoleInputA
0x401074 _hread
0x401078 GetCalendarInfoA
0x401084 GetFileAttributesA
0x401088 GetExitCodeProcess
0x40108c SetConsoleMode
0x401090 GetWriteWatch
0x401094 TerminateProcess
0x401098 LocalHandle
0x40109c lstrcatA
0x4010a0 GetDriveTypeW
0x4010a8 GetStartupInfoA
0x4010ac OpenMutexW
0x4010b4 SetLastError
0x4010bc GetProcAddress
0x4010c0 PeekConsoleInputW
0x4010c4 MoveFileW
0x4010c8 OpenWaitableTimerA
0x4010cc LoadLibraryA
0x4010d4 GetFileType
0x4010dc GetNumberFormatW
0x4010e0 GlobalGetAtomNameW
0x4010e4 AddAtomA
0x4010e8 EnumDateFormatsA
0x4010f0 GetModuleHandleA
0x4010f4 CreateMutexA
0x4010fc FindNextFileW
0x401100 CreateMailslotA
0x401108 EnumDateFormatsW
0x401110 FindFirstVolumeA
0x401114 EndUpdateResourceA
0x401124 DebugBreak
0x401128 EnumSystemLocalesW
0x40112c DeleteFileA
0x401134 GetStartupInfoW
0x40113c GetLastError
0x401140 WideCharToMultiByte
0x401144 MoveFileA
0x401148 HeapFree
0x40114c HeapAlloc
0x401150 GetCommandLineW
0x401154 HeapSetInformation
0x401158 GetCPInfo
0x40115c GetACP
0x401160 GetOEMCP
0x401164 IsValidCodePage
0x401168 EncodePointer
0x40116c TlsAlloc
0x401170 TlsGetValue
0x401174 TlsSetValue
0x401178 DecodePointer
0x40117c TlsFree
0x401180 GetModuleHandleW
0x401184 GetCurrentThreadId
0x401190 IsDebuggerPresent
0x401194 GetCurrentProcess
0x401198 HeapCreate
0x40119c ExitProcess
0x4011a0 WriteFile
0x4011a4 GetStdHandle
0x4011a8 GetModuleFileNameW
0x4011b4 SetFilePointer
0x4011bc SetHandleCount
0x4011c8 GetCurrentProcessId
0x4011d0 LCMapStringW
0x4011d4 MultiByteToWideChar
0x4011d8 GetStringTypeW
0x4011dc Sleep
0x4011e4 RtlUnwind
0x4011e8 SetStdHandle
0x4011ec GetConsoleCP
0x4011f0 GetConsoleMode
0x4011f4 FlushFileBuffers
0x4011f8 HeapReAlloc
0x4011fc HeapSize
0x401200 ReadFile
0x401204 WriteConsoleW
0x401208 CloseHandle
0x40120c CreateFileW
0x401210 RaiseException
Library GDI32.dll:
0x401000 GetTextFaceW
0x401004 GetCharWidthA

!This program cannot be run in DOS mode.
`.data
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
(null)
`h````
xpxxxx
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
`h`hhh
xppwpp
pozagomuma
rofivunomotoyasoyilonaw
vasoluxocawub tusodamapuxahakonazovupiyikob bowahixavudawofive
0.1 %f
xiwosawugidejupimer
zilociretadihofusebuzuyen
lamizulominibijojosuxepezerihodijoxarorenegebu
yizikokipu
_nextafter
_hypot
1#QNAN
1#SNAN
F\=(!@
^SSSSS
t h@#0
HHtXHHt
?If90t
QQSVWh
j@j ^V
t"SS9] u
u}h<*@
URPQQhp
PPPPPPPP
PPPPPPPP
;t$,v-
UQPXY]Y[
D$PPQQ
D$4PQQf
D$ :a&
D$LOf*A
D$\,]H~
tWItHIt9It
<+t"<-t
+t HHt
u-hD.@
SetProcessAffinityMask
SetInformationJobObject
GetDriveTypeW
_llseek
InterlockedIncrement
MoveFileExW
OpenJobObjectA
GetConsoleAliasA
InterlockedDecrement
GetLogicalDriveStringsW
GetSystemWindowsDirectoryW
QueryPerformanceCounter
GetProfileStringW
SetConsoleScreenBufferSize
GetTimeFormatA
OpenSemaphoreA
GetTickCount
GenerateConsoleCtrlEvent
GetConsoleAliasExesW
WaitNamedPipeW
GetDateFormatA
EnumTimeFormatsW
GetUserDefaultLangID
GetCommandLineA
GlobalAlloc
GetPrivateProfileIntA
SetFileShortNameW
LoadLibraryW
ReadConsoleInputA
_hread
GetCalendarInfoA
GetConsoleAliasExesLengthW
DeleteVolumeMountPointW
GetFileAttributesA
GetExitCodeProcess
SetConsoleMode
GetWriteWatch
TerminateProcess
LocalHandle
lstrcatA
GetStartupInfoW
SetCurrentDirectoryA
GetStartupInfoA
OpenMutexW
GetHandleInformation
SetLastError
ReadConsoleOutputCharacterA
GetProcAddress
PeekConsoleInputW
MoveFileW
OpenWaitableTimerA
LoadLibraryA
InterlockedExchangeAdd
GetFileType
BuildCommDCBAndTimeoutsW
GetNumberFormatW
GlobalGetAtomNameW
AddAtomA
EnumDateFormatsA
CreateIoCompletionPort
GetModuleHandleA
CreateMutexA
FreeEnvironmentStringsW
FindNextFileW
CreateMailslotA
GetCurrentDirectoryA
EnumDateFormatsW
GetUserDefaultUILanguage
FindFirstVolumeA
EndUpdateResourceA
GetWindowsDirectoryW
GetVolumeNameForVolumeMountPointW
MoveFileWithProgressW
DebugBreak
EnumSystemLocalesW
DeleteFileA
KERNEL32.dll
GetTextFaceW
GetCharWidthA
GDI32.dll
GetLastError
WideCharToMultiByte
MoveFileA
HeapFree
HeapAlloc
GetCommandLineW
HeapSetInformation
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
EncodePointer
TlsAlloc
TlsGetValue
TlsSetValue
DecodePointer
TlsFree
GetModuleHandleW
GetCurrentThreadId
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetCurrentProcess
HeapCreate
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameW
EnterCriticalSection
LeaveCriticalSection
SetFilePointer
GetEnvironmentStringsW
SetHandleCount
InitializeCriticalSectionAndSpinCount
DeleteCriticalSection
GetCurrentProcessId
GetSystemTimeAsFileTime
LCMapStringW
MultiByteToWideChar
GetStringTypeW
IsProcessorFeaturePresent
RtlUnwind
SetStdHandle
GetConsoleCP
GetConsoleMode
FlushFileBuffers
HeapReAlloc
HeapSize
ReadFile
WriteConsoleW
CloseHandle
CreateFileW
RaiseException
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
D7HLpg
E#;T m
-CJ]~S
&Y][&_
KBE7@(Y][&_
5;*WWSlr.
AQ(\86
z/r9P<z
w`" oI
eG1@Rj
[1,CT)
FD|A!E
`_BTEY
D[.vf2
lxC'Q\3Pda
EiJlin
2J<j;>
k>m^VK
`U8SZ]j
p4e7{3|T
lcr(m6'J
+W+XgR
rQprqIg-;
&eDLs1.pH
e17&_A-
V)-)NHD"Y<J0
Y*B2h%
Es9NpR
$[|A.[6H
-&?Uj+
Viu&^+7
1KF*6!
,CZ.rr
=Za#N.
t>Sb,x/
%J3H([
32~L-^
w6'N~dQ3Ub
:=k%*yW
H]n9F?L
EB?|S~
agOd7x
Qs%]U;
}!5Kn Z}~c
&HL9F&
5uL86Z
nsP%d%umb
<"([?k
+x7j$&
Q|~uQR_
RN,CaGM
@0z_a6
'C4S5JDy
3i;<Dzx
Y:$h_i
9VwWNcD
*/b}7roGi
suA~V_
d2c(.!
5>oaC5x
T@\@"*?
ZPXBd"!j(#
)p3T#F
U>06aT
kit"6Y
Hbd5E8
m7"[Sc
}fnJov,
+ts +U
\4%=Y{
(GC>C1
~Vf^ni
65)~)I
9/:_N_
Q$,{PK
4k)}ue
t4|}1v
dMc{cjm
>AEF)GQ
u{wTDz
-Co=n;i
NeE~~
~+RxW(
U=85m|z-
72Dz_"
!<7NDH.?
zH9Ml"'
Kcs\=@
S"f#<u
^?ALnl}x
dp@th+
L*~OKx
yWUF&{
>S7kv6P
`}~4jt
g*4VWH
WU@Aq\^
AM AKd
}})Sd M
{~H4KH5
)}^\DP
pXIfb5
9{1=P:I
\/3sm9
^a,>4]A
oxIuNLR
Ny@mv_$
}g$ 2ZG`
QUO?9V^V
*HavL=
Ajy))Y
op9HdxJ
GfU?9o0>
uDRl/!
N1M@c#
g@VH6.
<Si2#
b(`gHq:t
,yOd2{
]rurp&
C3_YTB
HB8*3?w
1^vk`5B
JMV([roU
$8w) L
Uc2{?K
JIXHO}+,
^dpAQE>
=pe1n(&
'=JnXR82!
<x~%n%&Yy/H
RxhM^N
j9"lOb
C8A.41
4qRFF~
/Z}rB
fuJ!C}U/
7zFj`&zA7
lor`P
(vP,=L
v<6Q[w
lNQMsm
TBvPA*
h^C-&e
SX6mK8
tY@jL$
}PcLM2
}d;bjm
hxt%n9
/~7W{
>iB8q-)
9Y6ICJ"
5K2{Juk
#,*InH
c!)RV?
:!(CPg|
+/-z15
<,rNP>
#XF t<{
~&W1cA
Q1<uC|
G*f/8!
Enml n
+!2S')
9|;/x
s=6g}w
uwonKOO
<7"Ipb
[MfBliy
Fc!V>DL
i?eh5F4
@,KcY=!~
4km*sI
e=Jf%
kL5a$_XFT
B(AST)~N
k)MJLS
7pd8<W
lW^]AFr&
ke4Ouam
WaH=~b0P
8nLqX<
ZQ>^K8{/
`wMhQeO
=("u38Q5
AZ5d4y
>6Y:|4tG
Azj1OuhP
bH$^\@
e~^^qS!
~a|74-
.|?RKs
@(4^tW
0"Uv@#
jcgM7,
P= D8Z
aE^BCP
7h^5xu
lSP|/sb
MX(/vtiM
b3g)-P
nRw^RC
4jG\s<l
G3-@J/Wf
xoL)cK
!KiYuT
Ul3)f?)
-xEG.X
n>=cc&
L&Y[KbR5hD
0qu2|R
OD~[!P
rigoH`
S3HqIa
o6,gwawO
EF{bP<
;5Izg2I
9IV}&`
s(2m!O
!Af63p7
>YUM,ym
4Fx)\a]
-``(/Q
:0F%QX
m#bb&v
h2y&P{0
SBbFR%
s1o1;7[
Q>"FDP
FZB{3o
^VACn3
d+Ugk7
Ot:j"Z)
'G\]vb
[1i16Ueof
i:nn5L
H2P#`O
"vs/1K
tE F@R
X/,M'
Fj{O[kU
%("En[
^V]wBL
9!$h;S
ZnP.]
:(."-U
H?*(_|
9IMUyU
w[yew&
w*kK9H
=6-iGhW
@4Yb{
J-OSB|az
"7crL).
S&dqPs
3]|,Sh/|
nX`j\<
c9Ji$Z
!vKFit
m0#@
<eBy}yI
UEm,B*_
0+MvA-Y
dLW]p?
>"WZBz
H11*uV
i,`Kvi
/B~3,F
ms Sm]o
/= ;S22,
hwXsVc
MLA:B2
ZjZa5"
zV7KE/
HFP,!{
o6P|v+
DmZhjl
; ZP47.
0p}H[/
L92huy
xwngiBO
|y^c&n
!J:^A+!:P
8"`o:8
f1tun%
;k[Gp
#-(s_^
mqA2wha
4otZ
;`qiR}
|Jzi5f
31rML9"
r;tuiq
Dua(gJ
k j+sC
y"se2
hLtsbQ
bpho0_p
JE'O^S
bxX8y]
0k*)#
R:fD%j
u0xAj9
avmc~`
M~2oqmOI
y$CWPDS
d;N eUT8
D4A4zg
0+@J6b
Prh1e&
o-qOf_
b6-.m,
ygB_M8
A=xxWTF
(}]eX!}
G+*w:>S
68.l}0
bA6)W^
imT||xgk
c~78+*
kO]]e
,"]G~M
]] :xGe^
[SSQ{I
D6lIXRfS
v"xJjcnw
%%B|)=0
_I"I?Cx
K->g4K1/
ScG|K?$
V59U0
5FkTQ=Df*Q
m75 &U
A^{_E
z4d;}H
Y]ELtXRf`
CJ>#|@
fC@AF
Vry$1Z
$h3B_b
;EJ4{~4
|G#[9n
`01kX8
Mr)G>W
%TXBB>kni
QJj8P9
Mb nqI}
(hyae
%6'#{8B3
KE~7QI
rJ.9Q]
&}]XO8(A
nUp&"qA
Zf!"MSa
K@:e-H
4ryg{~
k5m"ANB'
6z8hqJ
"+p5>M$
3I3X3]
|5~8d:^
:T8BaK
~,`aV1
V e_-J-
IBq}QJ
n|WIGsC
|IYAK=
`;,[>c
_MMZ=N
i>P1QZ=
OZ`w>B0
2EJnq7
,kqq}Z
&{KDg{
$_&5Qhjn1p
h9DN);
1jC+|6
e'VDVaT
v9(}<!
l,Y@+>
=cL1pW
NQ~|i
4ajy8<
|;c*jZ
;P6H1
0H\D/quS'
__o4+U
a=?"W)
4w~@ys
j XRO|
9{X=(J)
Nk?Z+]
SXd4xO
BR[dZ;ry
DQ"uG\r
+[j!|G
3[(z`:Xu
Jt-ZD)
3eHV&0
",Q]sw
.h: ;r
lv=%&A
ZwcreU
A{4_(>
VP<@tL
B{Ugjf]
fO[J#od
'(al[<
aqU_PG
.yBd~.
VpIR*9#
W?2R!r
ycc\I"
`f[zr*
`GKrGt
Dij|*`
MRPM3t
7V#5>>
iZfTs
7z;^g5H~ltW
jFp?16)
*M}<I|
(W[hf;
LY>=!Cj-
RZr!o.:
PII9KI
X_HLP&
vK_!1b
:W[uc]M
0|DsK#GthJ:
#PmkV3
U#&z=H!
?&\J`t1
CgG9qC
_!-8J$\
_z%KfH;
+{ClU-
Lh",>W
E-H[#y
LGo|U6
M3?,M.
CYAr6.oT
E}T[5b<
v!w=@%
XF0Gt"
.X74|_,7
Aw?,@i
BHW=zZFv
7ld'z"T2|
e&Lw-{+
m9cWf$
zS`@@Cv$w
h80"?\c
9+GBTVN
}lGc!.
.-os!/|
I4bH.9
6{Kiog
-QczxJ]
HKOw]"U
:eR^SP3
l@6?y.
<HX*H<{Z
Gts3hR
,&jyB[b/
[5555555
>
X]]QQQ
]]]]QQQ
]]]]QQQQ
???????????????????????????????????????????????????????????????????????????????X
XX???????LX
f??????X
f?????X
XXXXXXXXX
HHHHHXXX8H888X
OOO,,,
????Lu
_ndd]]
nnnddd]]]m
NNnnndddm
L?????????????????????????
::::::::
iiiiiiiiii
HHHHHHH
________H
:HHHHHHHHH:::
{{~}~~
{|{y{y
||~zz|y
zyy}y|
~||{|~
{~|z|}|}
~yz|}z
~|||}}
~~~||}
|~z{~~
~}}|~{
}{~z}{
}|||}z~
}~~|~~}
z{{|~}
{}~|zz
}||}~|
{{{{}~
y|}}w{~z|
//////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////8
dddddddddd
//////////
aaaa l 5555
//////////
aaa l55
//////////3GG
((((((((((((((
//////////3GG
)(((((((((((((
aad//////////3GG
((((((((((((((
//////////3GG
)(((((((((((((
//////////3GG
((((((((((((((
//////////3GG
((((((((((((((
//////////3GGVv))(((((((((((
GG3//////////3GG
]]v)))(((((((
GG3//////////3GG
]]]]))(((
GG3//////////3GGB
GG3//////////3GG}
GG3//////////3GG
GG3//////////3GG
BGG3//////////3GG
DBGG3//////////3GG
BB}GG3//////////3GG
GG3//////////3GGGGGGGGGGGGGGGGGGGG3//////////3GGGGGGGGGGGGGGGGGGGG3//////////O33333333333333333333O////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
#|XXXXXk~~
IIIIII
BIIIIIII}
GIII}0)yK
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$1$$$$$$$$$$
$$$$$$$$$$$S$$$$$$$$$$1v
$$$$$$$$$$
s$$$$$$$$$1
6s$$$$$$$$$
s$$$$$$$$1
7$$$$$$$
y9$$$$$$1
$$$$$$1
6s$$$$$$sCdH
#$$$$$$s
s$$$$$$$s
s$$$$$$$$$$
$$$$$$$$$$$$$$$=
^$$$$$$$$$$$$$$$$1
c$$$$$$$$$$$$$$$$$$1
$$$$$$$$$$$$$$$$$$$1
y;$$$$$$$$$$$$$$$$$$$$1
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
nKERNEL32.DLL
mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
@Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
(null)
((((( H
h(((( H
H
WUSER32.DLL
ECONOUT$
rtadarojununekedur
nugezitagegapoloditeyav
rofipil
vutevutuzogumepejibogaj
pebigafamevetevedetuv
tevamipodaxu
jjjjjj
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
029385B1
CompanyName
Sutener
FileDescriptions
Somewhere
FileVersion
46.76.13.71
InternalName
Literally.exe
LegalCopyrights
Challangers kenia
ProductName
ProductVersion
50.42.90.58
VarFileInfo
Translation
Pagivosoyowa yiyaxijibavahe yosmZucuducel lokabimuvuz semarejemoxelo beyinilubo zezoyekotehu jeyiyucerifap gazakeyen xacuratu luzita fakolega"Zov walisuhuvopoge legepehibesigeliFokalumiyoxiso juyexuge dohujuberewalab jeko yeracociboc pay nudomuhanigaju gexihuj mobaxabil sagoxoxazovJJaxuk xin gasukonizo sohucetelacifoh lacacicol juteviye xikowepebi lajusafJPofuloxafozif cesasap simudilawiyij torululekazuze jetirajana numerodoxoco
Nusig nemirocerigijov
Tugoyikazadixas rubiparOBurubokukafa wejib nifu gecaleyijizune tubeyabera rey nitowisevewuce sirapawado
Xurite dovepukalemuga
Ludajipokecoca
Zidaxe bicefewodasoca lukesesa
Lev fifenaxamar
Vehakocozigay
Yorisowoxej
?Vekece pey cidoleyerocona rokawuworaxiwat beye neliyuy lude nid7Nipezemuwof zajewoba galituwas tumowasivetiya dojuhunab
Muzexumasok nojihamapugopuy zog
xDihanawazesajib husowiyehibopi jizojolajovol dimak revedut pozax bevaloyenuzizoy tosafirureyev kupeyezawuwil mebibizerov4Cis vin kuvibezowobo wexunob lukozogin behacavigusinTVijaki lipiwomima tasogec hunulegez miwewaroriwode gakifabo ditumig ferixobef tirida
)Fojeduco devebuh mebalo base miwifuguvibe
Lojife sog5Wawawawapolun defovegilabasuz zivagumi cuvobutorufave
TGipuzebafivom cisavuved kijetaxu xaril garetuhezaruw hahena duxey sosidik dit jekolo9Gaminiyaye pirirazara wewe yajoxo mahalicemafud dutekarecFZehihotev jukavoduvat gibobobama sejovilaxome kidirekitosop legihu xed=Hezazo fitav sizadoh lajajuluvu dopawidedupanuh gacavow feyozIWucecozoxecuy dicazogofowa weh jiz wuvuheguvobed fuvunoyoxotil diyofuseji+Xubilom docemeciv yisov wovibuzegolij tuzuw
Fumisenilobu teyawafafuxive0Furavumozaz wonojediyucuya vikevulukuzago hacera8Hasohayumagil fijegakaco yoxokome bexaciduk xinejonikure
.Nusibehogot roruki wihu pemujimesibaw fexoyuwo;Munanuvelipifi sazojanacami jopa zabufonuv yahofuyid vasajo
RetoECevijorejen yukoyegogedeb mukelubagi pifez gufovigol sulocojoxa voxaf
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Androm.4!c
tehtris Generic.Malware
ClamAV Clean
CMC Clean
CAT-QuickHeal Ransom.Stop.P5
McAfee Artemis!902B8B84AB8E
Cylance unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005a60081 )
BitDefender Gen:Variant.Zusy.481070
K7GW Trojan ( 005a60081 )
Cybereason malicious.0b4649
Baidu Clean
VirIT Clean
Cyren W32/ABRisk.RIBK-9328
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Kryptik.HUIB
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Zusy.481070
Rising Trojan.Kryptik!1.E962 (CLASSIC)
TACHYON Clean
Sophos Troj/Krypt-VK
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Trojan.Win32.AMADEY.YXDHKZ
McAfee-GW-Edition BehavesLike.Win32.Shohdi.gc
Trapmine malicious.high.ml.score
FireEye Generic.mg.902b8b84ab8e7727
Emsisoft Gen:Variant.Zusy.481070 (B)
Ikarus Trojan.Bulta
GData Gen:Variant.Zusy.481070
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Trojan/MSIL.Convagent
Gridinsoft Spy.Win32.Vidar.bot
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
Microsoft Trojan:Win32/Redline.DAY!MTB
Google Detected
AhnLab-V3 Trojan/Win.BotX-gen.R597171
Acronis Clean
BitDefenderTheta Clean
ALYac Clean
MAX malware (ai score=80)
DeepInstinct MALICIOUS
VBA32 BScope.Backdoor.Tofsee
Malwarebytes Trojan.MalPack.GS
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall Trojan.Win32.AMADEY.YXDHKZ
Tencent Trojan.Win32.Obfuscated.gen
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Clean
Fortinet W32/Kryptik.HUIA!tr
AVG Win32:BotX-gen [Trj]
Avast Win32:BotX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.