Static | ZeroBOX

PE Compile Time

2022-07-19 21:52:07

PDB Path

C:\bajuruci\noporirenipa\jexeyejavo.pdb

PE Imphash

3681c7ed963e765002642844f31bc81f

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0003d4a8 0x0003d600 7.74610195631
.data 0x0003f000 0x0147c73c 0x00001c00 2.7109881388
.rsrc 0x014bc000 0x0000d9b0 0x0000da00 4.12113123223
.reloc 0x014ca000 0x000096fc 0x00009800 0.946387930012

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x014c8b60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x014c8b60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x014c8b60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x014c8b60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x014c8b60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x014c8b60 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x014c5258 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x014c5258 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x014c5258 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x014c5258 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x014c5258 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x014c5258 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x014c5258 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x014c5258 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x014c5258 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_ICON 0x014c5258 0x00000468 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN GLS_BINARY_LSB_FIRST
RT_STRING 0x014c9368 0x00000644 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x014c90c8 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x014c90c8 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x014c56c0 0x00000068 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN data
RT_GROUP_ICON 0x014c56c0 0x00000068 LANG_PORTUGUESE SUBLANG_PORTUGUESE_BRAZILIAN data
RT_VERSION 0x014c90f8 0x00000270 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401000 GetComputerNameA
0x401010 WriteConsoleInputA
0x401014 GetTickCount
0x401018 GetCommConfig
0x40101c GetCurrentThread
0x401020 LoadLibraryW
0x401024 ReadConsoleInputA
0x401028 FormatMessageW
0x40102c TransactNamedPipe
0x401030 GetNamedPipeInfo
0x401034 GetModuleFileNameW
0x401038 CreateActCtxA
0x40103c GetACP
0x401040 DisconnectNamedPipe
0x401044 GetConsoleAliasesW
0x401048 GetProfileIntA
0x40104c GetLastError
0x401050 GetProcAddress
0x401054 VirtualAlloc
0x401058 SearchPathA
0x40105c LoadLibraryA
0x401060 DeleteTimerQueue
0x401068 Module32FirstW
0x40106c FoldStringW
0x401070 FindNextFileA
0x401074 GetModuleHandleA
0x401078 HeapSetInformation
0x40107c UpdateResourceW
0x401080 WriteProfileStringW
0x401084 TlsAlloc
0x401088 AreFileApisANSI
0x40108c LCMapStringW
0x401090 LCMapStringA
0x401094 GetStringTypeW
0x4010a0 TerminateProcess
0x4010a4 GetCurrentProcess
0x4010a8 IsDebuggerPresent
0x4010ac GetStartupInfoW
0x4010b0 RaiseException
0x4010b4 RtlUnwind
0x4010b8 GetModuleHandleW
0x4010bc Sleep
0x4010c0 ExitProcess
0x4010c4 WriteFile
0x4010c8 GetStdHandle
0x4010cc GetModuleFileNameA
0x4010d0 HeapAlloc
0x4010d4 HeapFree
0x4010d8 WideCharToMultiByte
0x4010dc GetConsoleCP
0x4010e0 GetConsoleMode
0x4010e4 FlushFileBuffers
0x4010f4 TlsGetValue
0x4010f8 TlsSetValue
0x4010fc TlsFree
0x401104 SetLastError
0x401108 GetCurrentThreadId
0x40110c SetFilePointer
0x401118 GetCommandLineW
0x40111c SetHandleCount
0x401120 GetFileType
0x401124 GetStartupInfoA
0x401128 HeapCreate
0x40112c VirtualFree
0x401134 GetCurrentProcessId
0x401140 HeapReAlloc
0x401144 WriteConsoleA
0x401148 GetConsoleOutputCP
0x40114c WriteConsoleW
0x401150 MultiByteToWideChar
0x401154 SetStdHandle
0x401158 GetCPInfo
0x40115c GetOEMCP
0x401160 IsValidCodePage
0x401164 HeapSize
0x401168 GetLocaleInfoA
0x40116c CreateFileA
0x401170 CloseHandle
0x401174 GetStringTypeA
Library USER32.dll:
0x40117c LoadMenuA
0x401180 CharLowerBuffW
0x401188 CharToOemBuffW
0x40118c CharUpperBuffW

!This program cannot be run in DOS mode.
`.data
@.reloc
bad allocation
Unknown exception
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
(null)
`h````
xpxxxx
RUUUUU
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
bad exception
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
`h`hhh
xppwpp
i^^?(>
Y:/(A6>
GAIsProcessorFeaturePresent
KERNEL32
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
CONOUT$
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
_nextafter
_hypot
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
bad allocation
bad exception
kernel32.dll
VirtualAlloc
Gupexuwufinusac
Dorodacec zilohalixoh gacusutidumed sobagodum
Leciravodokis pamifirijidivuz judomivavapudux
C:\bajuruci\noporirenipa\jexeyejavo.pdb
WWWWWW
/SVWue3
9u>VVV
PVhpQ@
VVVVVVV
0WWWWW
QQSVWd
0SSSSS
HHtXHHt
>If90t
f-00f=
>=Yt1j
QQSVWh
j@j ^V
HtHu4j
s[S;7|G;w
tR99u2
0SSSSS
0SSSSS
URPQQh
0A@@Ju
^SSSSS
j"^SSSSS
tNIt?It0It
_VVVVV
^WWWWW
tRHtCHt4Ht%HtFHHt
0WWWWW
AAFFf;
;t$,v-
UQPXY]Y[
PPPPPPPP
PPPPPPPP
t"SS9]
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
9%eiOkRr7
X|kW7L(
[n~Nz8*
Dh8SH:
.ri,[S
F(4R)>s
p.cc+z
RMDku7
}WAeq%y
HAO>dy
dN|&0[n`E}w
c%P{Ra
W[WAB[@
01*Jyw
fKJ[1>
m0R^|?
k0kpP\h
A!-{08
f77GY[
3`|)je
5y4o/w
LJ`3veD
&p,.k
A^hu1)
ed@l/-
m?5udn=&
8Qr?rvAH
(m1sl{"
8g'C<6
~?dB,+
E)v?9Q
/!n6Y\
YEgV(wb=
yBI^:M\L\*
(e{->>
1_<1>3
e-lX>$Q
v&T|hg
%=o2NC
<4*P,K
zxxj9E
/SCe[x
ZU#kZI.
=0HhMx
#ITc@[
}l+9'g/
<mf9l
@%\Y3A
R7esL)
"y3\fjq
HIxGp[
S[*Lxh]
)PL^7e
^{\$y!b
s3wYg#)KB
bOcG}o
:\q;yc
r-1[cGQjt
8+%p1:
$b7)3Eb
r*x\we^V
gk6q)0
vW2Lq!
BZo./X
%H<~:3
9Y{]8S
!p^<{L
Ps3\K|
Qrn^tx
V{N(an
Tr|lXG
9J<v^~
Y>'j>s
&@lY[A
WG;U)_6
a$Y5p]
yXcV2",
c,W+z>0'
GW9MmW
wE[Rw+h[a?
**,E;I
L($aa0wc4
>(Tcs]Z
L7?^b/?p
2mS(%
0Ht8g
pe~ cB4
.^w.3P
e4ZkU9.
cj$22Q
m/+b0&t
`bGC28
DQ"mi>|*BE
<fQ%r }
H=_k^^
UfpY85
*"s]$DV
X/ #h4
vLjdUN
)iu_a;
uH93bSx
96}0+m
82X.Z1
X""EN>
#F3M])F
0(<b8{
zl\~\}I
7F==CI
]jV,HG
:;]]6c
Vb@"j0T
BUl_<
(*W*|sp
UnmY'Q
Rb=sY
8agV1
U/zxr2
T0#]Gs
$I7gyqK
a[K}5
Wu9HZYg?
ev$V=O|
-ATykwc
Zc64SBO
_#Pmc,
3&U%4"
9#kpj5(
CQf{$m
GY6!'t
E]!{+_
yu}`:A
\UOuW2r
yf9sIU7
y!5WHYF
V,<r$~K
~hsggP
ACpnjT
;H*_Gn
u)sV0n
T-pB/L
~'zX[
F52b64
LIkK%
MTNO~r
94ty"v
%`0_yr5
2\#Dk.
ttT#Q6}
FWH._7
V||nRP
Zz|= c
3>u1m=&
[2cK1+
|b:1k
DJ"PdJf
O|&~}p.
3w+Q9i
B=,szE
9=ox~
g@9R+P
K3N'sQ
Q'/SF[qiK
{[CnFC!:p
_uUHll
hh|8z+`V
1U:t5N
1vVfNg
Bgit"'
$Q3;fz
>241&0
@l^8I
b\ZX.R
$[#m_3q
*4^ i(S4W
eqIG[X
k[C#ts
?qO+"t
EbX{tt
zu0Pzp
'P*U-J\
>V6cWq
Q,#5$L
F#GtNS
<j8DbxG-C
5gGRd$
7PDq4`
n+(t0+
cG]1UY
jeMz+7
*lr7xdu
SgqU0v
%Jg7E6(
_*pJGH
XCw1$y<pz:
C;EooD
=OVM@|
Dm-1s5
6pEP%]
^D]h{]
}UXG[S
%#6i<
`c/5i%
i37;Rk
m~5R.*
Bt'5a-
X<n{J;
(qUS|[
\$mPK98oe
`jW8C&
/bJ5,8:`
-~XYx9n(
X@5U.R
@Ih!m5R
T~<`kN
k@Y%o:
.%e%}A
iwv3"L
N@R?CH
'{BHFT]
i?'93C
Zc$XG:^
_^w~_r
^]1Zf_B
zTBCc
+DFPPP
Zv?0F$
zE3q`11
\TT5D^
nc)81{
6Z$TY#
h4<EN
QFj'I2
/8KdD*i
P%Z.n"S+
h`8|.K
@^-`YW_E
ucg~4D
-PP<C&
nK?WH _
e9Ar(Tu
a\|';[V
/Pb2hAY
aor D6x
>a *%<b
yQ%{5l
c*aPQ5$
j4(kFN)f
s[7Du%
/gx3G-
AVgH?U
G<ia?j
L!jPlWI,
I*q, ~j
#?x4Tsv
T]SG|7-
v h<.(@
<wkop$
qLE^9v
/Tq=[I
xi[pl3P
2!3sVS
4pji &
qtf /Wp
o%!P(
Knlw3#
8KhR7%
vM12GYa
8Nb+H*H
jf:8AN`
ldf1+c
(hE7dH^qq
hK@D5ju
5~7(?L
D\0&Tt
}-M (4
8Y$dVP%
umU r"tO
cfrfiA
GetComputerNameA
GetConsoleAliasesLengthW
InterlockedDecrement
InterlockedCompareExchange
WriteConsoleInputA
GetTickCount
GetCommConfig
GetCurrentThread
LoadLibraryW
ReadConsoleInputA
FormatMessageW
TransactNamedPipe
GetNamedPipeInfo
GetModuleFileNameW
CreateActCtxA
GetACP
DisconnectNamedPipe
GetConsoleAliasesW
GetProfileIntA
GetLastError
GetProcAddress
VirtualAlloc
SearchPathA
LoadLibraryA
DeleteTimerQueue
FindNextChangeNotification
Module32FirstW
FoldStringW
FindNextFileA
GetModuleHandleA
HeapSetInformation
UpdateResourceW
WriteProfileStringW
TlsAlloc
AreFileApisANSI
KERNEL32.dll
CharToOemBuffW
CreateAcceleratorTableA
CharLowerBuffW
LoadMenuA
CharUpperBuffW
USER32.dll
UnhandledExceptionFilter
SetUnhandledExceptionFilter
TerminateProcess
GetCurrentProcess
IsDebuggerPresent
GetStartupInfoW
RaiseException
RtlUnwind
GetModuleHandleW
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
HeapAlloc
HeapFree
WideCharToMultiByte
GetConsoleCP
GetConsoleMode
FlushFileBuffers
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
SetFilePointer
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetCommandLineW
SetHandleCount
GetFileType
GetStartupInfoA
HeapCreate
VirtualFree
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
InitializeCriticalSectionAndSpinCount
HeapReAlloc
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
MultiByteToWideChar
SetStdHandle
GetCPInfo
GetOEMCP
IsValidCodePage
HeapSize
GetLocaleInfoA
CreateFileA
CloseHandle
GetStringTypeA
GetStringTypeW
LCMapStringA
LCMapStringW
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
.?AVbad_alloc@std@@
}~|}~}
~}}|{~
|~}}{|y~
{~}}{|
|}}|z}y|
}}}~~}~z
{|{||z
}z~z|~
z|~z{}
~~||}||z
y{{~}~|
}|zz|{
{|TmT9V
ZdJe(/
#XSF+6
')T`L`
~~~~~~
iiiiiiii
iiiiiiii
iiiiii
iiiiii
iiiiiiiii
iiiiiiiiii
iiiiiiii
iiiiiii
iiiiiiiii

2 282<2
044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
5 5$5(5,5054585<5@5D5H5L5P5T5X5\5`5d5h5l5p5t5x5|5
<2@2H2L2P2T2
3(3,3<3@3D3L3d3t3x3
3A4N4z4
4S5h5s5x5~5
7#7D7m7t7
8'8/888>8F8O8\8j8q8
9)92989N9W9e9n9
=">2>=>`>$?1?I?]?
5-545L5n5
7'7=7O7
7&818\8g8
:1;7;?;L;`;u;
343@3H3X3m3
5c5h5m5r5
6P6U6\6a6h6m6
:3:Q:X:\:`:d:h:l:p:t:
:6;A;\;c;h;l;p;
<Z<`<d<h<l<
>3>j>{>
>%?+?<?R?
:(:<:B:K:^:
;7;?;E;_;n;{;
<<)<O<
=b=<>D>\>t>
?%?9?@?g?m?x?
0)0/0;0A0N0X0_0w0
081>1h1n1
1B2e2o2
3 3(3.353;3B3H3P3W3\3d3m3y3~3
4&4F4L4h4
6,7J7p7
2#2Z2b2v2
3$303<3H3T3`3
4(444@4L4
7$7(7.72787<7B7F7_7
:C:a:h:l:p:t:x:|:
:F;Q;l;s;x;|;
< <j<p<t<x<|<
=#===q=
1!1>1D1Y1~1
1J2`2p2
313Z3_3v3
3@4F4i4
638?8E8J8P8
9*919E9f9l9
9=:G:o:
<*<7<C<K<S<_<
<?=e>^?
8X9^9d9j9p9v9}9
:#:):/:E:L:Z:
;/;M;a;g;
<B<Z=c=o=
>5>C>I>Y>^>v>|>
>)?F?c?
5*5=5H5N5T5Y5b5
6%666<6M6
=3=A=I=V=t=~=
0 090W0
3K3Y3b3
4!4-5k506Z6
;$;X;c;m;
>'>:>L>g>o>w>
4#5,555B5h5
5 6$6(6,6064686<6@6D6H6L6P6
4Y5s5|5
7"7s7y7
8M8m8s8x8~8
8$9C;U;g;
?(?>?F?
1+191i1
2 3*3B3k3
R4d4v4
5 5<5@5\5`5
6(6H6h6
787X7t7x7
888@8D8\8`8|8
989X9x9
:8:T:X:x:
;,;@;`;l;
0H0P0d0l0t0|0
8@<X=\=`=d=h=l=p=t=x=|=
> >$>(>,>0>4>8><>@>D>P>t>|>
?$?,?4?<?D?L?T?
mscoree.dll
KERNEL32.DLL
(null)
((((( H
h(((( H
H
ratur bapedapaseferugahilawu
riyugaxecogixesudecazoniyijuca gitifop megihodejewewej necuruy kuyafuxonofuziyirekibawurofizu
jawicob mofuvonoxaf rekotowiduxacaba
kernel32.dll
msimg32.dll
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
042831F2
FileDescription
Redemption
LegalCopyright
Copyright (C) 2023, always
OriginalFilename
bigthing.exe
ProductsVersion
5.69.69.21
ProductName
Failure
ProductionVersion
46.18.83.87
VarFileInfo
Translation
WFozadevufajici zagim xejolifis xuzaya xogiwur kuxu minuwerayapi xuru giwoho tizorafeguzaXoyazegevelig xewox dadixil jodewe laxij fagepif nanuvijucifur hulicolesayoyis sokitotanafigi giz2Banofiyic kegu rodovotuju kikudetux yoduzab leyito
Sasizuwitofadib noyipivaMJiwemiga zisu baduwovo fuhoy wiyiy diyi cigariniko tojuyirojose letuyataboroy
Zopiso+Domojezujufilu zijugazogosefa dixoseh xigog
mYovefehusaciy cebepujayimiyeh yemuzu paligo rodewoyojomoja yulu begofurayofu lirukepogoda rabijuvotul hudoyepIKuxuxagaxuwoxu racosewufod tutesesido febuwelav rajo toyimiredo hufabalodbJihuruwar zodozuvupofoxup hinisulageye zohu rifikoyum fogakinabovi cexah cujo beximecale rigawerux/Supawup dutucayule seligomevagex zefijerataveza>Fitec hucegumakosucim yudevejudexa vemuru dezokob nidafusapewa
Yewuluf gedas
No antivirus signatures available.
No IRMA results available.