Static | ZeroBOX

PE Compile Time

2022-09-27 18:28:26

PDB Path

C:\jonafu.pdb

PE Imphash

2a0116df27e92a9910b42edcbfe45f8d

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x001be5b4 0x001be600 7.99081796502
.data 0x001c0000 0x01ff0edc 0x00004800 1.20739972742
.rsrc 0x021b1000 0x000080f0 0x00008200 5.16440656095
.reloc 0x021ba000 0x0000990c 0x00009a00 0.937735023351

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x021b7cb8 0x00000568 LANG_PUNJABI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_CURSOR 0x021b7cb8 0x00000568 LANG_PUNJABI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_CURSOR 0x021b7cb8 0x00000568 LANG_PUNJABI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x021b60b0 0x00000468 LANG_PUNJABI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x021b60b0 0x00000468 LANG_PUNJABI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x021b60b0 0x00000468 LANG_PUNJABI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x021b60b0 0x00000468 LANG_PUNJABI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x021b60b0 0x00000468 LANG_PUNJABI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x021b8ac8 0x00000622 LANG_PUNJABI SUBLANG_DEFAULT data
RT_STRING 0x021b8ac8 0x00000622 LANG_PUNJABI SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x021b8220 0x00000030 LANG_PUNJABI SUBLANG_DEFAULT data
RT_GROUP_ICON 0x021b6518 0x0000004c LANG_PUNJABI SUBLANG_DEFAULT data
RT_VERSION 0x021b8250 0x00000264 LANG_PUNJABI SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x401008 CreateFileA
0x40100c FindFirstFileW
0x401010 SetFilePointer
0x40101c ClearCommError
0x401020 GetCurrentProcess
0x401030 CreateHardLinkA
0x401038 GetModuleHandleW
0x40103c ReadConsoleW
0x401040 SizeofResource
0x401044 LocalHandle
0x401048 GetConsoleAliasesW
0x40104c GetLastError
0x401050 GetProcAddress
0x401054 VirtualAlloc
0x401058 GetDateFormatW
0x40105c VirtualAllocEx
0x401060 GetTempFileNameA
0x401064 LoadLibraryA
0x401070 SetFileApisToANSI
0x401078 GetOEMCP
0x40107c GlobalUnWire
0x401080 FatalExit
0x401084 FindNextFileW
0x401088 WaitForDebugEvent
0x401090 DeleteAtom
0x401094 CloseHandle
0x401098 FlushFileBuffers
0x40109c WriteConsoleW
0x4010a0 GetConsoleOutputCP
0x4010a4 CopyFileA
0x4010b0 Sleep
0x4010b4 ExitProcess
0x4010b8 GetStartupInfoW
0x4010bc RaiseException
0x4010c0 RtlUnwind
0x4010c4 WriteFile
0x4010c8 GetStdHandle
0x4010cc GetModuleFileNameA
0x4010d0 TerminateProcess
0x4010d4 IsDebuggerPresent
0x4010d8 HeapAlloc
0x4010dc HeapFree
0x4010e8 SetHandleCount
0x4010ec GetFileType
0x4010f0 GetStartupInfoA
0x4010f8 TlsGetValue
0x4010fc TlsAlloc
0x401100 TlsSetValue
0x401104 TlsFree
0x40110c SetLastError
0x401110 GetCurrentThreadId
0x40111c GetModuleFileNameW
0x401128 GetCommandLineW
0x40112c HeapCreate
0x401130 VirtualFree
0x401138 GetTickCount
0x40113c GetCurrentProcessId
0x401144 HeapReAlloc
0x401148 GetCPInfo
0x40114c GetACP
0x401150 IsValidCodePage
0x401154 WideCharToMultiByte
0x401158 GetConsoleCP
0x40115c GetConsoleMode
0x401160 MultiByteToWideChar
0x401164 GetModuleHandleA
0x401168 SetStdHandle
0x40116c HeapSize
0x401170 GetLocaleInfoA
0x401174 LCMapStringA
0x401178 LCMapStringW
0x40117c GetStringTypeA
0x401180 GetStringTypeW
0x401184 WriteConsoleA
Library USER32.dll:
0x40118c CharUpperBuffA
0x401190 LoadMenuW
0x401194 CharLowerBuffA
0x401198 FlashWindow
0x40119c OemToCharW
Library ADVAPI32.dll:
0x401000 BackupEventLogA

!This program cannot be run in DOS mode.
Rich62
`.data
@.reloc
bad allocation
Unknown exception
CorExitProcess
bad exception
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
(null)
`h````
xpxxxx
RUUUUU
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
`h`hhh
xppwpp
i^^?(>
Y:/(A6>
GAIsProcessorFeaturePresent
KERNEL32
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
_nextafter
_hypot
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
CONOUT$
1#QNAN
1#SNAN
bad allocation
fixatakiviyelaxexosoyifovar
izobohokaci
msimg32.dll
C:\jonafu.pdb
VVVVVVV
j8Sh$H@
0WWWWW
QQSVWd
HtHu4j
s[S;7|G;w
tR99u2
0SSSSS
uL9=pR\
HHtXHHt
>If90t
j@j ^V
>=Yt1j
QQSVWh
0SSSSS
0SSSSS
0A@@Ju
^SSSSS
j"^SSSSS
URPQQh@
tNIt?It0It
_VVVVV
^WWWWW
tRHtCHt4Ht%HtFHHt
0WWWWW
AAFFf;
;t$,v-
UQPXY]Y[
GWh =@
t"SS9]
FVh =@
PPPPPPPP
PPPPPPPP
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
u;h,G@
u,h$G@
+]"M)`r
*?AXP?s
^bm&tB#
Z(Z^z>
!?ra6oKm.
?Yos!-
V:NAHk
DM0f3&
Xl_y3r
($>>;@
6{f1a[
Jf"tg7t
@B_3Z)
fcD>.,
d OfZ=
-e8:{n
zuC|[S
&$/T9n
i:wMdU
f/L"aZj
@_qxzsP
JnZv0@a
Ee,T;!<
,7iyim7
W;+" k
VlwE<Fi
c@bld6
$IzJ<^
,bvyWc
o;5QW~
`.ae [>
cAGeiU
ozQP-V
(`](wf
Oe/O4U
,rykSR
Fhc';r
fN\x2-
Xk&Zy&
gGzK"H
^/t;'/
.9{Na9
k#f*6/
UtWF0@#
\Mt`\3
_a!F^@
V{c$.M
ky(}hVu
ES}S*@
gx6r~-
Bsb%tN
SR]SY>3
t* }?)
*{gOrg
;<~w?k
WOr0;0
CI X>=
,6"e6F<
/]znJt
sl^(A4
LEB=IB8^
<v%&$$B
yvdqG9
Mk(pW@r
m*FP*6P
S$9O?+o
* #[|*'
v/e9Ph
hr$dZr
:E#j:s
n1!#7^
n\X1-,,
5Xo>WK!n
*7j_KUj}b
p{:D<7
-b$}1DW9J2
M}E50W
?WgX0Xu
q:XlfV
iG>H*E
ofOTw@o
L0*#?7
O/#rMC`
5hxiq3<
|?WloP4-%%Y
22('UNi@
;MVsC7uw#
FBCsx9R
7j|Ida
%P&r6K
D<(Iuny
q8vz0Y|
'X4l6#
w#Ow>
SZYDT@!
FUZV#0^
+,78x
a`SM0a
g44EG0
Ol+m`%c
?rX?%|6
VLLW"g
%vuh'To
rs*=*%
UBypT^
ik9mjq
6U##jz
'6&Am7]
9)*_SD
";mftQ
-v\2vrA=
TSM_'m
F&R&DZ
,H@"y$b
B3roWS
6dF-m
6`Z4\`hnOD/
U/3|-+
\>\Rhr*P
W_=Tr3
>MN:gj
;hFp<=`n"
H3-(M"
';h' 2
EGH:qMr
}7O^J,
u{0o%{
j}"yu8
@p(u+94
"#L]B
F?Tm&d
n%p)a<
xg |Q6
YDP2 |
$U\J>"
TbjNCf
vP1g85
9BDe>0
6Z HH4
IWeMjH
G/YIT{s3[
mb"Q4Ik
sFVRgoaP
l=K%q5
=Cj"e#
u-aQg-
:8O:r9
74<;y9F
"K'\V=
W/O>>W
#s?Jf:
HQKbP
0)X2{h
I)I1v$['
K^: h.RP
F HcdAc"
Vs3U4$"NQ
Z8FAC}
8pfwy/
vK*tW-
|W9&47
1yVvwc
`/(ua]Tw
FuaW7P
sV+$k,
L",3#QX
1a8O@K
y-,Yp5g
.C#<j7
5stC7t-
o>i>k{
^c2"#3
p|T/kl#
~evZzu#
mRM- 4
|&#LQo
Qll8}8
HNTRsIQ
VW9hUB
$()*1W
A @"#~"-
a`j>5A
Vmf^=1
LCGWAN
k6Iox.
2g/D7{
_E3L?/
HnW'jc3
!<^l7Q
t5Z4=\O.
"k6TGD
DSVV5Z
UXJKxr
0""j*10"
m5GI+(*S
gXPTf
X+V#Qi3
t50fyk?-t
]:.'Ct
i~g)hY
[:zp>d
5WA XE
]l_%
BZi97G
0V;-Y!
"pM^Z`
$@3|9c
`k8w\:j
us\|[a
Tl=1^jh
1Lw>S]P
IXce,QUM
7RSO.K|
xMw4ld
y2UMcnNC
F(-+Y4
6*D Bd
-y`9A~Y
lt+z9f"
0wTF4^
8a3xxJs
}=q:&-
7V(q?
J1b)I5$
F=V?Y>
~n$O>N
dr_YDK
b`R!-Y
5LU=OeAt
L"~b ?
/Z/RGH
=Xr_YA7
_tZ<73[
AQ'DO\
:<>ziZ
i[AWQ4
Ax98LR7O
X&`B_G
3=!TyYg
'g&*k\
(oYYB W|
[#X>"$
j&NC k
jCQ_Yd{p
QLF9FQ
w_UtE4
~@`PuI
6[^YYZ
aRKz91O}
5y=SBG
2n\ok?Su)
@Jm;;7(D
s{G5Zbs
WYV74t_
papztrk
(g5DX7M
ns/x{s
&#RJ&k
5Q}KM`
?<zh:
wI??&a.
cIgiP`T}Z)
ySS)h\
RFs#EX
zI?bnq<
?~}XH[&
`6i^c]
p"!dKA
L'S<C=
f%uAY~M]
ktb0#[/PD
)l-K7T
9;T#$F
$(Pi&^
ASx.sI
v?SB57
|\,?MFvs
}~[@`
/9[""6
^v)PuL
\;W/P2
Vu8)s-
h-mvd!
$Ry='<
L,d>KG@
Sm~|jlK
qzw<&SD
H);kGs,&Cu
iP=LOY
y82%t
c=esbK
2aj]jqY
q76]\}J
P`)bxB
3S4G-O
r.t*L\
Cc*z=)%
iSw)c|
gR&#Ji
,,p ZY
QG"|2<+rr-
~\2!l\
5r1@Of
b|FPpN
l=aJym
5+Ey]G0
z>6E^;
rboJ\^
Kb: xW
l"=e(`p
l2+($[
&|{MGe
Q(qyM#
D":iNA
%(k51zU0Z>
F"5Zo7
\5.!xS=
_w'M[u
;&?Mzr
R}K9:R\,
LRS=9
>Yd1qn
):x@6>
t\pg6)`
j5XV<5E
;9J.Qdn
*v'w<#
J#$B9_
v$nlJv
bK|/_:
>Fq1JW
D{|eh/
;'.jN
uBm\,^
/*nZ0C-
ZSHG$Ir-'&
]UF]iY
U3~6os
z{rUGQ
S8UZfj
!SD*o[
Y>*/m
!!g9[W
)$Q.@4
c&j5<DB,Ob=w
,U;Xcgl
~v`'oI}
6YNGD
q)+/45
xPLO.
bk,1pt
KS,#Vp
wwyddI
rDEhUj
4.:r~$sW$
6#t9i6
~z]R,fQsr
nmvsUk
=W_*Wg
1S[EQ3
4]m7Y$/
!t_{"E[
$@NE(W
#mZoT/
qqnoIg
5N7<U(
$lhhC9
`6Tb331
l~<-(k
ctu)p[<'N<
"3M%3s$rj9
1TN[qZ
2GI-O9H.PB
`.I=uG
K"frC3
AD/=P
XdPhmOo
Q_`{wK
PWgr%\
.5@&r`
7i]cO9)Px
HJGe@r
w&X{|G
=M?caX
-NcG B
LtLUpn.
Sw1v1G
F6tfc|
]#S[{C,
w<a0/Gbe
+KH<BO
#^X=*s
eDWAj
<-l3]o
hJ/+ 2CL
4,N*={
$>Y&/
K-@j.l8
syD+^9
j=04rV{R'gZ
.-gRsk
hva.[@P
l;z-i+
L*78lV
\h[ua>~
{,uHGo
Xoa3lO
(M"R<c
{q_6OyMh
oA!E+!ujB
#k(/<{D<7h`
Z~g S'*
6C?Q\A%
l.`2vi
&+d:]<
`0NskRor
8'Q/R
Z>Y^<G
g*|-ZY
E"Q(1Eq
6QAF>Du
_0a3GJT
0L@u^r;3
Cas'H
A(,Re,U
'5H- {
Q!#.nn6}H
-Wx|(@+
?~o1'&
\T"i5R
rH}Nq3[L*
'=/dLc
-vWA]80h
^eJ?z`:,
P:fSco
z 9`<7
HF"T&
450GC,
CBf'd[
EB#t.<TI
cM9x;=
XHm>%A"
>6x!&|
SFD03k(
^"fX-6K
Wfv|Q#|o
Zc,Vkj
>sH 9d
6,>mGMN
]!?Ekpu
eN;C-e]
V*g::/Cm
w$uNW
2Z6t?L5H
&flG3wle
JIPj}hT
.sU[GiN
3TO6dFn
1 |2rtA
iQ&43%
d]7pu.@
IXiH[A
9?)IQ^
9]S4hi
ULowXz4
CnsFBI%
|1 !-h
unykDVO
Q(vuRn
xs'<ka
_?N1O-4
>:{aR5R<
B"aq)!
XBGPkW{h
]4_%'g
Dme\By
?<<2Ww{
/zTmgC
c]F#Lj#a
=l]|QU
]]LvRD
TWb%s1
cBjF=
1DgIZ})
/3jO1r
wV+}!Ay
o5}/^[
\wJthV
iiJlp[
1}>Sx5N
.2urK_
B_K4<$
rYV3Ep
-TilVcKas
LgPVBX
~6-(`W
;sTF
@T!Vgy
{|@uL
hFgdb&
<yqJja*
x8z[=f
4hw/d$p
lKvtP[
MljW&q
UAEnd+
-X(Tnn
#[,N5}Y
6m$rMv
#ZP{O:>
3}Xped
36)'8$_L
Eo{5(D?/c
-2{+,w
2?&C@3
Hl4.9W
{f\&$Dns
vngKLF
i.Qll&
(9c<F6
J-No=*
7<p>/\
*M%PO-
F|*|rZc
Tmx*-Ny
Sbzni_J
RfK\=i
Wm YL#&
CN4pE`D
"sPueo(
brEWpa=
v`d),]<
LLqyD+
uGe)0v
0-72~%@
?b_X8>
8,AR9
#VV>~Vs
6rlFTg
9^dB;
!S^:P{N
PN po,`
q?jvCLh
-^*|/$X
@ZwcfDfA
A6x\W{s
s@BUq,q
pdp'~T
+^m]U]
a{in7
?H`[77
93*y(Q
3c<2rA
WL'Y,h
T<U/wy6
H0fjcCt
#hxg^.ox~
~5TIgE
~~_3/n
w#_Wa*S
&?E<6!J
m|W`zlu
'R2z|v?6
o;x\H
1#G6^G
.I "wf
nLC'B<
l3aD[*X
!*Pepx
&?xoro$
DHX>t+
gycVF=
~5;M\g
5y;9YOu
i@%:f$
w@Q_h^^):
W4 Ku"
SeIJ=]$\VY
3S0j9DV
'NH?<d@
`eFr\j
QawpiT
=ksYV31
xCLb&
2Aq>]~
J$-jYc
O$+8j
y|cY(K
q=*1OF
/XN88,
W$]5::=q7
^4$PR%K
dk=Cjv
:E#.n:
#=]uy=Oz
YRyslc
D!z80(?
$Zm=4R0u
`Ka gb
"<_ejK
GbMI;
xal^^$
u@x#Ff
5k$09.
uDvhBn
u3Y'I`
=es#=O
Xr/aD'7
-Yh:8y
k+nOtQy
/(8[OFK
+JXSNj+
uT"ry[
Uq[oABHo
'zbBt,
%G?07'e
{g)wp
VhJ~M`
wrUJ<J
lhXMW[
=TW]j[?z
q=G6*m,>
B!VFoS
]3jcH_
]w}BSk69
ir;I9qBM
aXGYm\
/*~L%R_|
[sfj!3
wI|U{&
OM\v_8
W,N{%s
/mujv#
,`au|TU
,c1!qD
& %tow
D.H7/U
/'_b>?
=k>c5JB
?(+|>.
t^JBe!
c{PKs0\1H
"]}ceY*g7
w0yD+<!
v{-GLY
9Za.V.
mZA'Zf_
D@-tc#.
m~nj}5
DAK!UPzYtv
Hh;~U\@
q[eq-y
C@c~W
?t(.l3,
JLNQ`S)
WvX7Ty
/mBc9G>
:]00\B
*HPky0jG
ooVBqHR
p}/D|FM
]Sb_/9
%r[4:e
g#S )D
mI59 \
"n9hFz-c
W!+U9TrdU
Wnp__d
E9'8hX
nOz)r'
{GJ}qZ
,3:]x@
}YBGbl6|]Cf
Q9)S<
wUc(z^t
=r#@mOX
8_%BA8Nn
"Zb(]"VZ
uAe,w;Y
[gZB-*
xl|9f_
hWGomR
vEx8N,
Dn8?+)b
"+g`T;GaJ
"JGv$q
|=Mq Q
f,M7T@=k
6&K>c^A
Hnzc"H
?&5rq|O
}w2P6H9x:r/
g]rhdE
x'}DI9
'F'"L@
T,`!cQ
B5~<={
0x}2#G
0=jov7qI
no#7 -
Ha^R"oN
xSzT~{V
LbeyJ5:
8Ya,fQ
Q0o83`5
vHGOk`
4xUB>b
N& oPpV
I_pc}=%
>fHXN|C
oxK)9f
sdBugR
UzRh'{
smWpze
>~rT]XO
=!%P&7p3F>
`:Ka|w1
iKUXo09
[E!T4b
OF"w\!
6xiX)T
D*D~ky
ueX^(Apu
%#XCFj
J,[f0pD
m|1k]Vq8
x>XqnR
C1kiQ:ws
|]f5"
O-Sg]c
sXfc-5
$a}E5U
@}C0ld
Nr5C"@
q7t3m%}M
zFN6%d
CfM|518B
#R*u!;
og~PM^
bx,WE#
<mS[wR
&BZm>K
+Ma1hq[
?-}Ff#
\@(ycp
B8ztb2
U9b41{E
} U~2n
J[lF&
OaRnoqA
p((>K9
)EDEfx=@J8
nvg\!d
i7kN`;c
H "8uG
Ca_6n
h`dd;}p
GJqX;Xz
b7W1ik
mb"pxz
+.fvB\
a}QD&>h
aELlIEp
vi%XogR
H Yz:-
*$_EF*3
1-K%KuU
sCMM@e
:=pk(^u
=aE#Y^B
MxBw(:H
1lx9GjP
.<+SP-5*BcS
BkMSqe
U(Il,q
o(>`{,
OaZ|Z)Pdy
o3VA#H
&9W5V"
A(~#,1/K
-9"D`s
\%^W%bsm
^n)]c5=
.dz+bI
}R}J,s
]rd\kP
-5!'x~
KNu|!
S<Wr8"n
X?C*tG
RmYy>)
Ow+zz$
vp1*Pj
v{)(gu>
-pk>{
@yY??1
3T*O:&
x0a<x{Ki`
oo42PE
9"LsnO}o:|
F9%wkN
}('_7-
iFb&W]
Jp|S:o
Ry9f]E
Y qMFY
HwIWhV?
{yHBVt
$MVPxn
f8m5\o
gN *[x
1Kvo*yh
z{czk*@7
=-5]:[
NWq>0N
i2N#hE
c!DIh!
tE6c)f
D9xnt+
$3H#Q,
!e]j\>
*.vh){
'(TE>W=
3n(TvE
OjEOr;b
^f\Jnz
n?].XA
KM})9X
~%bp:x
/!c(hu%
7-#U~R@
XK?F?=
NS&|tE
@syQiR[
-'V)Q(
7H!biu
TWDyL)
NHYVU)T
~!Ko\5T
PjBU*4i
b"VQx] g
n/c28#F
),%NAR
uAJ?gx$
J}v/j0Fh
h'dUUk
f#Z1zB
xyGr2a
_o00Uzc
!%CSpi?)
teatb4TS
R0]fBp
hP!K;c
U<*fajdn
_2-ewx
PUk3je
wt>CY_?
;R3MjW
*+2.[s
B]>U*'s3
@@@v9;
~*m'mL
8$5=;pR
R&\`,
'\$/oN
-0=6_p
.G<>O]
AM:*rVN
JT0/?o
a/iCZ9
;@@?%1
43 |O-2
+Dw{2:
!]4mUtQQUa
-^BY-8
P)Po83
XlH:O=
x^s{4a
E5)qcV,
OP%[FF
S{=f
IX)P}
~n,R|;
D{mx5K
j=lcS>
3Kt--1;5:
C=L_^%"
QA69Ow
L8L2u|
V][f~G
Ql3 lr
tO/yT?
3S2d(J
gN@$c{
Ja|bO,
kk?=n`n
20c3u[L
jLh1/4
K"GKCC'
%IRS?o
m3nnsW
(9qSM:
ujOmcL1
m60}p6
O\CXR)
se\]qR
a:4zC!rQC(M
Kq<t?
fj!pvR7D1t
Y^d5c'
zqK2y"!
,P&Wg'
jDB9sx=<
zS|=(.@l
e']"i)
DIiy}'
6a=L?b[
Q8EpKe
)|Whfl(
TD1xV!t
t8~\Rw
3eIe&PK
d}!ls0
ph`#tG)
RULK6\bw
g2pkQXE
m\G4r1$Q+
`y,8}N>
IU/FMD;
{=de%[
Ca$OVl
T]Y&aa
9GAWRj
)]2K.s
Qp_^2S[
j2I4#;
mGGt&H\
`'D&/&
[/*)L`0
@uMBg&
a:%<Zlnh
k%YqWZg-
5vh4qN"-nhBe^?
04er()
dM]m0jl
{r_Glj
$,3bB
[o0D"F
?p V<Oe>
6~o8r[\
QM5xtJ
-H",4O
0u-[$K
pE`wY
0(_>}"
x95bz`
&yKp|O36
g{:7hw>w
ED;-1l(m
/9$mR/+
<i;d.T
iNkf#Xo
kQUzAH
aaxk*R
8EIS$!
)Jbq>7K
(+`2jU
9!\9Vd
s[L{X]
cu)o'Z
6(*-g+
k~'Ty6
m8sMJ
{=8[ h
Ws]zL[F>
1qRX/
[&r'Md
&p`A_T #
EAdn"A
[yXJ.?
,7U"7
?`roIY
KgLz $*
kqS%t<
U>trT6
-'".~)
--nl\cN@O
$[:y44;cR
*N`e8:
<8%y)Q"
E[BUvN
^TC*G
%lMOhgA
k|DM0>e
Cw'>bkj
nJ\arwO
R@Zl(C
r:_vJb
&LaER8E
9k+iwR
C<K\P.
p{S)2|
rOS6s6v
|D5S gH
@rL1o^FRY
y!G+!e
!i6yDC
4$|3.|
{4D.QV
O?C@
SkM/^'~
eUHFPe:
SF@`qL1
'SxPh;
*V3O.
kJ]{u]
n\oZi,A|
<7V~()H
E[v|3
/+0}-tG
G}3]]7
*X.:U'
$u8@"ixV
@Wo*]+
$<eDa!Q
'_7$fxZ
sSBzm,
F^?*m<
aV;(r
QFS7kG
CosfUP
N:|K;7
HgNbFf
I;B!kP
J=&?7h@
#*.\ D/
jf>uTI
`#<4cz
0p-A~+
_rs`0vP.j
pDxs>Z=
kT-_71F
Q+;]|(
oevftu
<v8a^z
?d3LH0
ZtR;r;e9
U:X)2D
2@ML&y
hrLP24
=`c%q3v
@YTu'"IAZ
}7/fkFV
rIr|ja
,=Ruw6
pUUQ\k
ra_K"Y
0Dou-d
(C.D&@D
$=M(_
M*xxs&
NH|*OV
:.=30e+^
"J+fqt
^Sj:)5]
(_8VFG
6 MX9
=7,NaNa
oqRoiv
GZKa'K
RFp8eR9E
sA>B2-
H@=W<^
G^SC'g-
([C`5D
A7&Xe0&
m';8yE>
|jmJz]
b$/Pt9
o,Otx<CQ
ydUwDh
LZ?hdQ
_%dl}E
plO@J{z_Lqo
s_na\^
d^,wpR
>u^6rC
ov|HKa
xn#q.*~
vh7v&f
43}ophc
fP$[\%
W/)k|]2
\q!OuZ
u}r\q;
ct;OvA
wt-uO,n
MYEP9>d
r^t8IL4{
O+=RK?
7$)[%*
7`zF/
=a/)r
8d2v29O(`xh
N}H?$a
I1e4,]
1 Ty6,
k>VOC2
m_(](f
m#__B~
0.I}'P
sZnt@^
esIrt\z
(rEw1
[p0x.n
Nc]/xu
rZ*'.+
ktU!!r
N[5$ )
W;/<~{
2k=H;v
QJ^#|,
]Vd[9!
UwH1n&
/wcOnSQ
gE\hh1j
(|YoMNy
^u;Odt.
cmSWI
enCcMq
E4TpiL&t
K6tKxZ
Dv5<!B
ysXrebH
M!4E}s
Dx+/(A
W#6e;ql
].|-?5_
Uvsc]*
D%DRu.
>Zj+]<
<.h?9\
|0/?eL
{[Ty3F
O7.!!J9>7
ky\<cBKrSQ
&jvK'+2
i\hIt5
a2'o)B
>?2n4UC`
`6L2>N
X\6OX*
nSgvci+
+wBmbV
a#ag|d
Kf)FGI
r0M$?fN,
?zO89rm
6`i}gT
@igTs\Y4
XO@ |U
7P^5R"
n;{agf3
hBj2wH
pE70L
6|E}@k
GVG;@A
M${U^_
rbElJ\
c+zFdr
L|G|8r
?U3&!1]
83$2f|
sk^(&B
Qy[oN-
BxunD:
UDblk_
$\apRS
-4B%\<I
o1%z8U
;L >h8#j
"`;7aO
1l|7+
f~x*?[
|#Ga>^O
%"@'T)
@15;4G
6JfrP@
>x<,-E
w^$R~OlPz
?V/uJ
G"y]T
u%O[2q
zJn&7g
RB[1If
8d{V4*L
l<>jz7
Q/CJn2
$y J|=
zg|)1.l
!]}wnM
7q=H'#
p9otTt
c|+_7$
,_njcf
W>R.3"5
iUApZf
_=,qFw
qp)h9jt<cmM
RsszdQ
E<zhsgPR
roM;;
SscH]?A
&^v*7M
4a4hw1
GYN&P@
[Zi'(}u
#l\;.K$q
%0_Ue*8
KgWQ-D`
4arqRUz
FIQ}~,
fRL6{]
FDK.Ll
Q-&BsW
4?4M_`
p0BBWz
3lgOwG
KNI"zDJ|y
2OAW*YM
MBw=#.
vKDg&%
0Q_6^pl-
:gsN5{
$OD487
(yk%w}Za
ff,1dm
f`vZEAZ
7uXbCr)
NUp+CQ
lk>nY~
(E#(EQ
ajO}w8
nR$4ij
K.U(/t
"LbNbu
{a^$*}
E l-DDG
a8-;|g\
]'/}H+J*
y{&ksd
a)jOvt
4Iu/T/
"-]:Jf'[
]T 9;y
^w|X!M
&\Z`(4
Jf/?2]
}HOq?>
Tz`M3!
'qOjp}
<hTd:n
S9u1X-
<<;8O4l
z`1XCr
7BaB=.
wb_lCk
x:Fo%*e}
Duk;_6
_$4(rN
ZCaE6sy
d/Nc90
Q,UOO{
;rP"t-
fNd7)<
khPDjQU
{ML7BY
~|D&+z1l
4vLEN*
0_t`"P
j<SX6&E
8p^$Dw
YID75`
O^-MO5
O5"Q>"/
6@:bZ7
AHi>oSb5
)pXgye
XNetx9n
d%' ct,
> ALZmyK
F{>&,q
U9c[6(n
]8S! 4
K8';ml
z_!{`Ul*)C
$-9W|*R&)m
%rh2Jq
qN:ggK
o4t=O !
dnby,LE1
K?6'M~
!vwR:]`
LE5{tPw
]j0Fo$
@O0lkf"
v((ZlP
HWdl;E
xnT2P8
0a|3!:
N|8+&#y
t'+T`?
Y!ez^q
i@%l!GI
hE_K2u
o68M).
hvdM6"
hXUa#m!
lA/s=#)U'
AMg9kf
:x%jDuEEG
s4GI(}
`~Q~'i&
o8g:YT
9BF>0_|4*
5M>6 V
'\imG,
BOEs$7
p>-52
Yj]eTR*
'#_ur`
?LUQe
W3Vq,n
Tg[dRs
#,xF4Y
"{'h=U
gGa*J;<
K^ nc_f
6@%/)(
pix_|V
`H_.:L
Qek&tL
%cVE[yB
fG")$=m#-x
EuO4W19
q@U'_Y
g2zIVTORW
BPC\WZ
c!O\@$d
WgAp*'
s-Z+1a
\OE##z;2<,
/L=%o+
^?FUK8
$^\~+P=
*JQt4VB-
-j1x]D
v.f]Yw
uv[xo
'( K(Y
9%u0lm
Fq]4^i
^gNf@g
L9nBI4Wn
A?3\s
#y;_1x
R/Me @z
aO {t$
Y8?j8J
]LTB?(5
)P6*p7
z#8)TF
{pX6Di
[~p'cEv
adfWt\C<o
RFX/37R
M<M->G
=??@1]
(jtvM:
@g"~Ip
:oh!g-
m1H<#B[
,XD|}Z
f}]8M%y
Sn8K&8
dGt!G($
#nXn#>
)5X{*i
7*jmtCb%
S`uddco
)w#H&U
32;XFK
T2YM]7
;f1Ow@
\m#y`i\z
iF+ERU
#C$WF
~g+Mb f
?l6)V|y
`pg$~;
yW y2-
c^cEc7
e*l)[*o]&
/],vxq
rmvRw<(
EIi[j'
j%:#AL
:LXl-G
feV3tW#
MTjV{n
#61 Jd
!t9\rk
C!k,6g
d_6=V^i4
\)]Iul
;=dRik$
n}HD.[
f)~y4G
]g["-x;
yo(<9R
C_N$Bl
l f>u,
YD`Wc\
dBa=`=n
nz(<&{
5m{RXwg^
z@*&2`
r[7/=V
G{Z,ER
E77^u}Y
5& ZY"y
OamE|IK
N+!?6*
zpmu#r
%sQ/,*
Kt4;{B
4gM=E4
O?-=bx4gt^I^k
Fcut!(@
}Dg#xC
bHk7QiD
!)Q"s
i$=+3R
R<&86uR
l)sOP3
KR-ouq
q|3h4D
G}-R.>8
AAicLF
o?ic7l
<Q|lxv
!1aV40
D-ljkz
Ycs"AU;
kv$-;Q
m=&9WB,
;hq9h'll
TK&ea?
XR0jt&Tl)
*-bs3i
IWMZ.Z
9^</waW
a]9)T5
gJlmnN
:DMP{+
+VG3,:\
iG=s+l
EeX&U7
>I.dYf
_i/,i~
vr%=3:,
,ije?E
%LwE8K
Hv-Xt
1iu3'9o[d
prn}/3~X
rz|~c,}
A~wWSZ
lqmXLA
@1'd15
QXXB@@
iQRx\j
Hz;g1\
ru$Od{
y<HK7.
c%JTLiemC
Acr_fI^
Z!<%NP
X\y`R\
'l<taJ
<KwY..*
1n$>o7A
;n%8*+
sLi"HHi
S~85nVv
aw7$hLYN
rA^/[Z
!xpn4:
T,x)*S_^}p
xtDuepBZd
480oDn
:>Tyh4
g6;DFE
LHmY|+
EDjl2a
\v[q"4>
dbsQ|{
0m^I.@
qw0r>\E
gom@5g}+E
&W%`z1
$w5wD+
hT6mMFW
eFBNHu
%DS/Wc
Vt""[/
`"(L*^
}DJB%"O
y(m;jq
y PnlKf
VWRZ]c^n;
M.Cq9A
c/paT#s
NxvD]J
T10~a{
2J=YBA
C*<3Y.
R%P`V}_
X:AJnAu
spW>$JPv
S_ADG3y`l
T}D]RJ
D^2~2|f
i)lez
QBJBR(,
~,K|A5|>
rl;6T3&
PWK<:>
\FI%4
@+!FqML
T58$mli
3N<"&L
p?.o{0
{sWYcx1$z
b&94i7v
U8-NVK
zTk_{C
yvP9\%d
\!^x[E
gJ78^R
:w4W^
$(<09y
V4nm}H
%+KmSB
c6D&g
l =p)+
a'-b>j
&=:,[f0
[[R5XK
V4<N,A4
wb!zb{
W6m5l(M
ErJg%J
>.iL7x
>jKY5=
<T}7#I
4IS5c:NNWWM
!%&cR>
x_l>.q
>.8''J+
#4\9ptd
#(+m;Hg
`@sAZu@
zCnVXI
\0#hr
o,mZ@2-
bdAVe,
W5(_a~
tv5OHz
NDj"\6
%L<,/I
_$v2uP
{z^@F8q
tr&}g{4
:[I^\)P6e
8_;)TM
8-*P|+D)C?m
L%>9hEQ
VTTaW9,
PtC[zW
xqI+3P
o(]S}
r^4:WC
D\2*Q5>
\LchZ}
\qZbgC-qK
[,(dvX
WNl<'3b.,&*
91ArT\
La6)!:Gy
c3=.*Z
Ugz">A
~Xv3^M
oqTOv
ygEdq^
lRXbRp
F_&G7g
#$v[wY+
{|vS3XF
GU=k0Yax
$NCiU9
wt#lx||r
ZT"V`7+d
Ev923w6jX
(EaX]6
U"H2epe
?.znWb
OY xNAU,
LHE".F<3
HE:Hp6
=RV\gq
HU/r},RK
Aj(ph7
oT3G_0*
mW~|KqA`
M);zc
N3/:!p
5u+$D|b
z`uLBB
/sdm.W
.`iONZa%x
OIgT^vz)*"
\ZHAOd
!q<,<W[Pj/
hfV DQ
=3K2c=[/
Ee!DO2z
QZu8xb
:nNBez
DT4l4:
ipL(Ig
cRc&`\
gs>zMq
d~?s%QI
hYki(Hm
!!qr-w!
YS5U%(
JL@KD
H{L\,5
nEh9t&
\KL)D=
pd1?|v
Cb\uqC
y~<n<m
S;tvRZl
L8/^^d
]&L(=,
\22j4j
}cFSg8
&Wm)=t
8Kp{aT;k
="uQ'i
%x&CV>
,OnW_AB
[*mfXay
JE?#^Q
&-&/DN
M$)dhS
5y[U')
eE:lDH
F-VsRH
DdRO+~1*;
Hw& C1}
a6'}PZQ"
?amO1.
.C8X@]A5
]@+6&J
8sf/%~(<Y
`wJU\^
bgiHVga[c
b4-,M
Q&O'&)
c`{vJW>
tkNbQU
#r-\Z;
wT)CnQ88/dD
lz5i3W
z?s|~e1C
uQ2/ZI
}7B&&^
7SG\Gn
4#Ytt^
7Mg\'
xp]&u
rq/|:
Vptf'<
vj/Qt?T
G5wH?Z
#41@06
6&H:pO
& v#O"I
od+dhf
U2%1?|
(Vf+2S
%oHiVZ5
@s'_3z:
Nzoir?
/L!gvl
#pu<Os
yEkAKT
AvyU{Q
%NH){ff]
lwlg>M
H6{^S=
5o>^gD
h !N)z
"fN1yZ
.[hIdz~T
XZb6#qri!-
nc7`q>m
#^wi >
lU_v*/
WS}W/~
6Fao?"
F4Kn~N
5YMuw>u
knnb_g
zfz??|
-!d2"z
sHST`
M&l1E@
1;Y'Ox
iT8~Q2l3H
`o5Dgv
f"_|IA
/:n`Ui
cl~;$%
X,lt&CR
tQ#\VGD
,TuQ7a(
\^uXw.Cmu
u^c-9B
oi&E;C
s@*P)w3_$<
"7d^>Id
x[cnOO
3PoOo8
'x!|/3
sd@oNg
Lu(+f]}F@
bW|wX"
G,1~fg
O!,;=|
bY02s[
p4~t1Uy<
R2g _A
[NuG<@/=.
n~4n'v
I9aFlP
]O|y9@
wAVKm|Y"
ll{O|.
&+"=-=ph[
6FH[Ft
d>LZXFi
;C$NHt
}.wFa~
?cuuez
+KCF)}
"zV4Z#
n9WWN\x
z^m4<}h
=y7NZY
PO%y`>
lg/RgJ
"qxJ("v
EH]}9x
FzttDEJ
!tI|@(
4^S%3)HQ
zUYPVlZ2f
}>e7Yu2g
tsa+It
o5?5/DOkb
w2W%6Fk
#F%1kS
5YS<-w
yQHVPG
gX,BH(
TcZaP<
?g5as0
gH|,++s
DQ,b+alBk
D\F }Q/
I$?8@A@
.jkKJ[
CWgp^1
4(0l.7
VeRP~q
V;'$ye
:@d_1/
rw*"$M
A<u7'E
4IBok(
bQms=<MJ
j>Gs>(
)"K6m!-
Mi|g0X9
2>sRtX;
|::~S%EN
E4[JvK
mDn>0X0
C3OT!y
C*!K'A6Ue
?7Q>H]
u]?)n96FD
Op&CN:~
Eq+(P
.xInYOI
KSq#Qq=@#}x
(W:[^yS,
gJ?2vW
qYa'O*
{sT}Z?
bX&G/S
^/dvt{
5;)kht
RSr%@bM
2DWMq$-I]
0$;riNN
`b0wN:
\Nef5
aYF]%3
+nz7Tc
zW|JFZ
a$3}P&
Tj\jYB8
C%J+X,
Fn#_^'
e#).3*
E]+EV#HN
@;_Gc<}
E!)@vA
\6zUFS
"YP6*3b~
$lnh/Y>
Hd4!?)
FhIm#hf
E>OB\.@P
t2HdF,
#^/%j
^,0ln#
u{a~?+6C
tK~"rv
ro]:@"
_fBhZ r
/:RqD>
`X+$M1_N
39HRwb
f=bjpZ
{\UOi1
JitN%vl
90Vk(x
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Windigo.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Jaik.168894
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!EC8952A8DCBB
Malwarebytes Trojan.MalPack.GS
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
Alibaba Trojan:Win32/Kryptik.996e02c9
K7GW Clean
Cybereason Clean
Baidu Clean
VirIT Clean
Cyren W32/Convagent.DI.gen!Eldorado
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win32/Kryptik.HUKZ
APEX Malicious
Paloalto Clean
ClamAV Win.Packer.pkr_ce1a-9980177-0
Kaspersky HEUR:Trojan.Win32.Tasker.gen
BitDefender Gen:Variant.Jaik.168894
NANO-Antivirus Clean
SUPERAntiSpyware Clean
Tencent Trojan.Win32.Obfuscated.gen
TACHYON Clean
Sophos Troj/Krypt-VK
F-Secure Clean
DrWeb Trojan.MulDrop23.7557
VIPRE Gen:Variant.Jaik.168894
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
Trapmine malicious.high.ml.score
FireEye Generic.mg.ec8952a8dcbbfaa1
Emsisoft Gen:Variant.Jaik.168894 (B)
SentinelOne Static AI - Malicious PE
Jiangmin Clean
Webroot Clean
Google Detected
Avira Clean
Antiy-AVL Clean
Microsoft Trojan:Win32/SmokeLoader.RDI!MTB
Gridinsoft Malware.Win32.Sabsik.cc
Xcitium Clean
Arcabit Clean
ViRobot Clean
ZoneAlarm HEUR:Trojan.Win32.Tasker.gen
GData Gen:Variant.Jaik.168894
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win.SmokeLoader.R600456
Acronis suspicious
VBA32 BScope.TrojanRansom.Stealc
ALYac Gen:Variant.Jaik.168894
MAX malware (ai score=82)
DeepInstinct MALICIOUS
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R049H0DHN23
Rising Trojan.Kryptik!1.B663 (CLASSIC)
Yandex Clean
Ikarus Trojan.Win32.Azorult
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.ERHN!tr
BitDefenderTheta Clean
AVG Win32:DropperX-gen [Drp]
Avast Win32:DropperX-gen [Drp]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.