Static | ZeroBOX

PE Compile Time

2023-02-16 03:17:09

PE Imphash

21da461f3efed5a7777f903bfcf58d74

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000204c0 0x00020600 5.09781080423
.data 0x00022000 0x01e5a12c 0x00016600 7.2427788435
.rsrc 0x01e7d000 0x000144f0 0x00014600 3.72556262567

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x01e8f860 0x000010a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x01e8f860 0x000010a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x01e8f860 0x000010a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40
RT_CURSOR 0x01e8f860 0x000010a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01e8f028 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x01e90fa0 0x0000054c LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_STRING 0x01e90fa0 0x0000054c LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_STRING 0x01e90fa0 0x0000054c LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_GROUP_CURSOR 0x01e90908 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x01e90908 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x01e8f490 0x00000068 LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x01e8f490 0x00000068 LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x01e8f490 0x00000068 LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x01e8f490 0x00000068 LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_VERSION 0x01e90938 0x00000274 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401018 EnumCalendarInfoA
0x401024 MoveFileExA
0x40103c CreateJobObjectW
0x401044 GetProfileStringW
0x401048 AddConsoleAliasW
0x401050 GetModuleHandleW
0x401058 GetNumberFormatA
0x401060 EnumTimeFormatsA
0x401064 GetCommandLineA
0x401068 GetDriveTypeA
0x40106c GetConsoleCP
0x401070 LoadLibraryW
0x401074 TerminateThread
0x401078 FatalAppExitW
0x40107c CopyFileW
0x401088 GetStartupInfoW
0x40108c CreateMailslotW
0x401090 SetLocaleInfoA
0x401094 InterlockedExchange
0x401098 GetStartupInfoA
0x40109c SetThreadLocale
0x4010a4 GetLastError
0x4010ac BackupRead
0x4010b0 RemoveDirectoryA
0x4010b8 LoadLibraryA
0x4010bc OpenMutexA
0x4010c0 GetProcessId
0x4010c4 LocalAlloc
0x4010c8 EnumDateFormatsA
0x4010cc GlobalUnWire
0x4010d0 GetModuleHandleA
0x4010d8 FindNextFileW
0x4010dc VirtualProtect
0x4010e4 PeekConsoleInputA
0x4010e8 GetShortPathNameW
0x4010ec OpenSemaphoreW
0x4010f0 FindAtomW
0x4010f4 FindFirstVolumeW
0x4010fc DeleteFileW
0x401100 CreateFileW
0x401104 ReadFile
0x401108 FlushFileBuffers
0x40110c GetCommandLineW
0x401110 FindFirstFileW
0x401114 GetFileSize
0x401118 EnumResourceNamesW
0x40111c GetComputerNameA
0x401124 Sleep
0x401138 EncodePointer
0x40113c DecodePointer
0x401140 HeapAlloc
0x401144 GetProcAddress
0x401148 ExitProcess
0x40114c DeleteFileA
0x401150 HeapReAlloc
0x401154 HeapSetInformation
0x401158 RaiseException
0x40115c HeapFree
0x401160 RtlUnwind
0x40116c IsDebuggerPresent
0x401170 TerminateProcess
0x401174 GetCurrentProcess
0x40117c SetHandleCount
0x401180 GetStdHandle
0x401188 GetFileType
0x40118c WriteFile
0x401190 GetModuleFileNameW
0x401194 HeapCreate
0x401198 TlsAlloc
0x40119c TlsGetValue
0x4011a0 TlsSetValue
0x4011a4 TlsFree
0x4011a8 SetLastError
0x4011ac GetCurrentThreadId
0x4011b0 HeapSize
0x4011b8 GetTickCount
0x4011bc GetCurrentProcessId
0x4011c4 GetCPInfo
0x4011c8 GetACP
0x4011cc GetOEMCP
0x4011d0 IsValidCodePage
0x4011d4 GetStringTypeW
0x4011d8 MultiByteToWideChar
0x4011dc SetFilePointer
0x4011e0 WideCharToMultiByte
0x4011e4 GetConsoleMode
0x4011e8 LCMapStringW
0x4011ec SetStdHandle
0x4011f0 WriteConsoleW
0x4011f4 CloseHandle
Library USER32.dll:
0x4011fc GetComboBoxInfo
0x401200 CharUpperW
Library GDI32.dll:
0x401008 GetBoundsRect
0x40100c SelectPalette
0x401010 GetTextFaceW
Library ADVAPI32.dll:
0x401000 LookupAccountSidW

!This program cannot be run in DOS mode.
cRich#l
`.data
Unknown exception
CorExitProcess
bad allocation
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
(null)
`h````
xpxxxx
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
_nextafter
_hypot
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
1#QNAN
1#SNAN
xoyobixokozivu
invalid string position
string too long
vector<T> too long
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
QQSVWd
HHtXHHt
?If90t
tWItHIt9It
r=(%B
j@j ^V
t hT @
^SSSSS
Y;=`)B
QQSVWh
t=MOC
HtHu4j
t*=RCC
;7|G;p
tR99u2
PPPPPPPP
PPPPPPPP
URPQQh
;t$,v-
UQPXY]Y[
t"SS9] u
<+t"<-t
+t HHt
u-h|4@
D$(Pj@QR
D$X}p$z
D$h+9Kp
D$PEIe6
D$ AYM(
D$4?<L\
l$Xf'nB
l$d=h P
D$,(R7
f-00f=
tRHtCHt4Ht%HtFHHt
GetCommandLineW
GetComputerNameA
EnumResourceNamesW
GetFileSize
FindFirstFileW
SetLocaleInfoA
EnumCalendarInfoA
GetConsoleAliasesLengthW
GetNumaProcessorNode
MoveFileExA
BuildCommDCBAndTimeoutsA
SystemTimeToTzSpecificLocalTime
InterlockedIncrement
InterlockedDecrement
SetDefaultCommConfigW
CreateJobObjectW
GetEnvironmentStringsW
GetProfileStringW
AddConsoleAliasW
SetVolumeMountPointW
GetModuleHandleW
GenerateConsoleCtrlEvent
GetNumberFormatA
GetConsoleAliasExesW
EnumTimeFormatsA
GetCommandLineA
GetDriveTypeA
GetConsoleCP
LoadLibraryW
TerminateThread
FatalAppExitW
CopyFileW
SetVolumeMountPointA
SetConsoleCursorPosition
GetStartupInfoW
CreateMailslotW
GetPrivateProfileIntW
InterlockedExchange
GetStartupInfoA
SetThreadLocale
GetHandleInformation
GetLastError
GetCurrentDirectoryW
BackupRead
RemoveDirectoryA
EnumSystemCodePagesW
LoadLibraryA
OpenMutexA
GetProcessId
LocalAlloc
EnumDateFormatsA
GlobalUnWire
GetModuleHandleA
FreeEnvironmentStringsW
FindNextFileW
VirtualProtect
GetCurrentDirectoryA
PeekConsoleInputA
GetShortPathNameW
OpenSemaphoreW
FindAtomW
FindFirstVolumeW
GetVolumeNameForVolumeMountPointW
DeleteFileW
KERNEL32.dll
GetComboBoxInfo
CharUpperW
USER32.dll
GetTextFaceW
SelectPalette
GetBoundsRect
GDI32.dll
LookupAccountSidW
ADVAPI32.dll
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
EncodePointer
DecodePointer
HeapAlloc
GetProcAddress
ExitProcess
DeleteFileA
HeapReAlloc
HeapSetInformation
RaiseException
HeapFree
RtlUnwind
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
IsProcessorFeaturePresent
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
WriteFile
GetModuleFileNameW
HeapCreate
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
HeapSize
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
GetStringTypeW
MultiByteToWideChar
SetFilePointer
WideCharToMultiByte
GetConsoleMode
LCMapStringW
SetStdHandle
WriteConsoleW
FlushFileBuffers
ReadFile
CreateFileW
CloseHandle
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVfacet@locale@std@@
.?AV_Locimp@locale@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AV?$basic_stringbuf@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AVexception@std@@
yjg+sT
un(&Dq
}:I9Ly(
NM@bZR
#kJ)&8
_ESx"J
?=*t/_
8%1@C>
)$?ZxX@Sb
ysmB_{
rl4!lU
|h7$dV
BS&[0X
%v`l+
G![>/^
2&tI#=.
))|s}L
:uSPP/Ag4
*s1c{S
Tne;?_8
4v=ddZ
v$qG=9
1TK+0}
rhk@{3
Hp4BP9
lmsZ"3
U-4sv)
ViSEAd
~kir,8
)l6-8,0
pLAYcP
ANEh\$H
+HhLZ
b#_j\R5
hi=AO^
jE]m+PU
$0cgmiB
H\*$,)
"@H`Wa
T){(u}
S9><ePye
@5)ubZY
_BdjPH
S`s'?
/\gv]#
|*,.].
gXin%H]W\n<
.ZfKiD
=yM9n{
\STV*B
O]n+K3
S}|TkZ
nB[W$Z
;LaW=0
SHOY[i,
9}RpUd
5<|t&}:VJ
.m'-5Pf
Be};h&9
`$YMhl
Y>kF\!
<B8+"8
2fS2A>
iIu'9U&
0JB%\(
Fg]86Z
?jKOa1
~R&%"Cw
IuKp(6
n4y#W0
y"7A&'
'}|j:
;9DBQH
1Gu>mD
wAvUQP
=7tY47
qK1$SI
bNps~X
-6\5vK
tpc06_
gg\G8W
)j-75ck
UAJ3s
&p=~`'
k"P|e}
e-_otg
w_~xw6ygf
'ISXl5y
ax]Uyc
v[yUn#Xh
O%n)(0
_N-HBl|_
H]>^pczDB
[Ntt51Z
CQP)'n
]0X"@.
F%|J e
.%(<#AOK
S7K6@~
<l:4`}
\~h@@N+
}_z;BZ-
cRu-&C=
,R+wfv
w}y{(so?
Vp -zN
=cCk{Af
cfV{yl
hA0m\)
1"r_^J\
XK7_0m
]3/S}E
3&~IPG
93UP(A
,: .an
oY[K<;
iEfBd$Q
0s*oU
Gq-TNh
6[L_Y@
o %,X4e
h<RjvH
P4#5s|!
9r1pU7
^/zJM$
9WB1Qr
C5&{La
M!PWk
-$CU8"
ewo9j_
0:Dp&NMxv
,<F'&2
{f*i>=
6o5:R%
-&Ci`3fHO
#3RA>E
.?AVbad_alloc@std@@
RRRRRRRRRRR
hJJ5JJO
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
=^^^^^^^^^
^^^^^^^^u
^^^^^^^
^^^^^^
V^^^^^u
V^^^^^
V^^^^^
u^^^^^u
V^^^^^
L=======
u^^^^^)
V^^^^^
;;;;;;;;;;;;;;d
^^^^^)
l;;Zet
V^^^^^
)^^^^^)
***A*AA
V^^^^^
***A*A*
)^^^^^)
V^^^^^
)^^^^^)
u^^^^^)
^^^^^)
ZZZZZZZZZZZZZZZZ
=^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
EEEEEEEEEE
QQQQQQ,M
*XXXXX
MQ5Q55QM
X,,,,,QM
baaa~~~
baaa~~~
bccca~~~~
bbcccaa
IIIIIIIIIIIIIIIIIIIIIIIIIIIIIIIIIIIII
GGGGGGGGGL
ccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccVccccccccccccccccccccccV
cccccccccccccccccccccci
ccccccccccccccccccccc
cccccccccccccccccccccV
Vccccccccccccccccccccc
Vcccccccccccccccccccc
cccccccccccccccccccc
cccccccccccccccccc
ccccccccccccccccccc
iccccccccccccccccc
cccccccccccccccccc
Vcccccccccccccccc
ccccccccccccccccc
cccccccccccccc
Vcccccccccccccccc
\cccccccccccccc
\cccccccccccccc
cccccccccccccV!j[aj
cccccccccccc
cccccccccccc
cccccccccc
\cccccccccccV
cccccc
ccccccccccc
}Vcccccccccc
ccccccccc
ccccccccci
Vccccccccc
ccccccccccV
Vcccccccccccc
ccccccccccccccc
ccccccccccccccccccc
VVcccccccccccccccccccccccc
cccccccccccccccccccccccccccccccc
\ccccccccccccccccccccccccccccccccc
ccccccccccccccccccccccccccccccccccc
cccccccccccccccccccccccccccccccccccc
\ccccccccccccccccccccccccccccccccccccc
Ucccccccccccccccccccccccccccccccccccccc
Vcccccccccccccccccccccccccccccccccccccccc
iccccccccccccccccccccccccccccccccccccccccc
cccccccccccccccccccccccccccccccccccccccccc
Vcccccccccccccccccccccccccccccccccccccccccccc
cccccccccccccccccccccccccccccccccccccccccccccV
ccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccccc
TTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTT
TTTTTTTTTTTTTTTTTTTTTTTTTTTTTTT
TTTTTTTTTTTTTTT
_TTTTTTTTTTTTTT
aTTTTTTTTTTTTTT
TTTTTTTTTTTTT
TTTTTTTTTTTTT6
TTTTTTTTTTT
TTTTTTTTTTTT6
7TTTTTTTTTT
LTTTTTTTTTTT6u
TTTTTTTTT
TTTTTTTTT
LTTTTTTTTT
TTTTTT
TTTTTTTq
TTTTTTT
#aTTTTTTT
2TTTTTT-
&TTTTTTTT
16LTTTTTTTTTTR
TTTTTTTTTTTTTTT
1e]00e1@
TTTTTTTTTTTTTTTTTTTT
TTTTTTTTTTTTTTTTTTTTTTT
TTTTTTTTTTTTTTTTTTTTTTTT
TTTTTTTTTTTTTTTTTTTTTTTTT
TTTTTTTTTTTTTTTTTTTTTTTTTTT
rTTTTTTTTTTTTTTTTTTTTTTTTTTTTq
TTTTTTTTTTTTTTTTTTTTTTTTTTTTT9TTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTTT
ddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddd#dddddddddd
ddddddddddd
dddddddddd#
3dddddddddd
ddddddddd#6
ddddddddd
dddddddd#
ddddddd}
dddddd#
}dddddd#
"3dddd#ta
dddddd
gt]dddddd
~ddddd3
ddddddd
dddddddddd
~ddddddddddddddd
dddddddddddddddd#
Ndddddddddddddddddd#
}ddddddddddddddddddd#
dddddddddddddddddddd#
dddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddddd
}z~|}{~
|}{}|~
{{~{}~
{{{}z}
|~z{|}|z
||~{~}
z{~|}|
~}~y}{
~{~||{
}~~}~|
~y|||~|~
z}{}|z
~||~}~
~}}}{|
~{~|~z|
zy/:][[
[[]:/yz
44444444444444444
..4..4...........
(.(.((.(.((((((((
()()()())()()()()
1.))))))I))))))))I).
1(IIIIIIIIIIIIILIIIII(1
)LLLLLLLLLLLLLLLLLLLLL)
K[[[[y
GGGGGGGGG
y[[[[K
mmmmmmmmm
m#mm#m#
#######
*ppppp
''''''''''''
nnnnnnnnnnnnnnnnnnn1
nnnnnnnn
=nnnnnnnn
wwwMnnnnnnnn
rrrrrPGnnnnnnnn
nnnnnnnCb
nnnnnC
HQ~Ennnnnn
nnnnnnnnnnn
nnnnnnnnnnnn
nnnnnnnnnnnnnn
nnnnnnnnnnnnnn
nnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnnn
mscoree.dll
(null)
wruntime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
@Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
KERNEL32.DLL
((((( H
h(((( H
H
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
WUSER32.DLL
CONOUT$
xejifosepegumitopokupumajutuwin luyewinoxezutapizucayuhomujafi tit
VS_VERSION_INFO
StringFileInfo
029385B3
CompanyName
Thunderstuck
FileDescriptions
Anybodies
FileVersions
42.51.49
InternalName
Cascade.exe
LegalCopyrights
Challangers bottle
ProductName
ProductVersion
57.5.64.0
VarFileInfo
Translation
Gijiy cawuvij&Far susaliyeronoma gar suravavebucocewUWewicuma havadim jiwohatum yusewag ris todepuwoto duvukitodi ciwed sujojux yukuyanogu8Pimume nifuf dux zug huxeguna lanid lokejama vumasoxihay@Gamupu hiwiposot pejozawularom momuwe reyirepopus kejijikirojese
DTunabawivuyu zucizimemujeb ducadiyogesu wimafimiz cedayukahiz ledule
YVarupadoy sola masosekerak yulezumemahal pipulozuce xogul zagutuvuhapogud fudapivayiyanoz
2Lovipuxed lufetanu xarezohivivapuw bugenu rajobege
KPoyu fetekapacapihu kizazafah canuzeyatazado hibemirijon mojumosim tiwibuje]Jemadupuzur sinax zududahefemez menokote letibarefap mayetilujokuw robalozejali kepevew vahaf
<Posawifocahofod nuholisasu vimipe fahutiyej maremumu movifes
Yilepenarelibaw(Ricuro jabuxepebud nizuhuzi tapedizavexi
Lec rogolafukaruyid puj
wNucazuretomuj xohipaji fepikuhovun tivobavureragis zuzegawiw yumuzipece yuzofocomanukuc miluduwahedak jiyebiz cekojuwax
Denicoc yojem pehBTidinewo pirazumax fomuto wemiticufaluhat koyif gevuxiz wuwirejope8Hoxegeguve tokal fano nekuhes dokizeyerax sedurubem nopebDahukowemab wud nunimojiwif zagowoceruna nezu dofesevifax nokeb nowakapi fudasevusibeyiv nigulimos
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
Elastic Windows.Trojan.Smokeloader
ClamAV Clean
FireEye Generic.mg.655655e9b1744d3f
CAT-QuickHeal Ransom.Stop.P5
McAfee Clean
Malwarebytes Clean
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 00516fdf1 )
BitDefender Clean
K7GW Trojan ( 00516fdf1 )
Cybereason malicious.219bbe
Baidu Clean
VirIT Clean
Cyren W32/Kryptik.KMY.gen!Eldorado
Symantec ML.Attribute.HighConfidence
tehtris Generic.Malware
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky VHO:Backdoor.Win32.Mokes.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Rising Trojan.SmokeLoader!1.E66C (CLASSIC)
Sophos ML/PE-A
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Generic.fm
Trapmine malicious.high.ml.score
CMC Clean
Emsisoft Clean
SentinelOne Static AI - Malicious PE
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Gridinsoft Ransom.Win32.STOP.bot!n
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm VHO:Backdoor.Win32.Mokes.gen
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Google Detected
AhnLab-V3 Trojan/Win.Generic.R603362
Acronis suspicious
BitDefenderTheta Clean
ALYac Clean
TACHYON Clean
DeepInstinct MALICIOUS
VBA32 Clean
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Trojan.Crypt
MaxSecure Clean
Fortinet Clean
AVG Clean
Avast Clean
CrowdStrike win/malicious_confidence_100% (D)
No IRMA results available.