Static | ZeroBOX

PE Compile Time

2022-08-11 15:01:59

PDB Path

C:\sodosecabu\jaki\jun-jebutuney\nuwuhoye.pdb

PE Imphash

b2deb6462ddc9e096b1ba263bc3b3e01

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00026af4 0x00026c00 7.61248359613
.data 0x00028000 0x0017629c 0x00001e00 2.54125451638
.rsrc 0x0019f000 0x000056f0 0x00005800 4.33736412354
.reloc 0x001a5000 0x00002876 0x00002a00 2.63214057782

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x001a3f90 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001a3f90 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001a3f90 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001a3f90 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001a3f90 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ACCELERATOR 0x001a4448 0x00000028 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x001a43f8 0x0000004c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x001a4470 0x00000280 LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library KERNEL32.dll:
0x401008 AddConsoleAliasW
0x40100c _lclose
0x401010 GetTickCount
0x401014 GetNumberFormatA
0x401020 GlobalAlloc
0x401024 GlobalFindAtomA
0x401028 LoadLibraryW
0x40102c SizeofResource
0x401034 TransactNamedPipe
0x401038 GetFileAttributesW
0x401040 CreateActCtxA
0x401044 GetACP
0x40104c SetLastError
0x401054 GetProcAddress
0x401058 VirtualAlloc
0x401060 RemoveDirectoryA
0x401068 SetComputerNameA
0x40106c _hwrite
0x401070 CreateHardLinkW
0x401074 AddAtomW
0x40107c GetCommMask
0x401080 FoldStringW
0x401084 OpenFileMappingW
0x40108c FindNextFileW
0x401090 VirtualProtect
0x401094 PeekConsoleInputA
0x401098 OpenSemaphoreW
0x40109c EndUpdateResourceA
0x4010a0 ReadConsoleInputW
0x4010a4 TerminateJobObject
0x4010a8 GetCurrentProcessId
0x4010ac LocalFree
0x4010b0 FindNextVolumeA
0x4010b4 GetProcessHeap
0x4010b8 SetEndOfFile
0x4010c4 MultiByteToWideChar
0x4010c8 GetModuleHandleW
0x4010cc Sleep
0x4010d0 ExitProcess
0x4010d4 GetCommandLineA
0x4010d8 GetStartupInfoA
0x4010dc GetLastError
0x4010e0 WriteFile
0x4010e4 GetStdHandle
0x4010e8 GetModuleFileNameA
0x4010ec TerminateProcess
0x4010f0 GetCurrentProcess
0x4010f4 IsDebuggerPresent
0x4010f8 HeapAlloc
0x4010fc HeapFree
0x401100 RaiseException
0x40110c SetHandleCount
0x401110 GetFileType
0x401118 WideCharToMultiByte
0x40111c GetConsoleCP
0x401120 GetConsoleMode
0x401124 FlushFileBuffers
0x401128 TlsGetValue
0x40112c TlsAlloc
0x401130 TlsSetValue
0x401134 TlsFree
0x40113c GetCurrentThreadId
0x401144 HeapSize
0x401148 RtlUnwind
0x40114c ReadFile
0x401150 GetCPInfo
0x401154 GetOEMCP
0x401158 IsValidCodePage
0x40115c SetFilePointer
0x401160 LoadLibraryA
0x401174 HeapCreate
0x401178 VirtualFree
0x401184 HeapReAlloc
0x401188 GetModuleHandleA
0x40118c WriteConsoleA
0x401190 GetConsoleOutputCP
0x401194 WriteConsoleW
0x401198 SetStdHandle
0x40119c CloseHandle
0x4011a0 CreateFileA
0x4011a4 LCMapStringA
0x4011a8 LCMapStringW
0x4011ac GetStringTypeA
0x4011b0 GetStringTypeW
0x4011b4 GetLocaleInfoA
Library USER32.dll:
0x4011bc LoadMenuW
0x4011c0 CharToOemBuffW
0x4011c8 GetMessagePos

!This program cannot be run in DOS mode.
f 3z5 3z5 3z5>a
5:3z5>a
5%3z5 3{5
5!3z5>a
5!3z5>a
5!3z5Rich 3z5
`.data
@.reloc
bad allocation
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
(null)
`h````
xpxxxx
_nextafter
_hypot
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
UTF-16LE
UNICODE
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
`h`hhh
xppwpp
GAIsProcessorFeaturePresent
KERNEL32
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
CONOUT$
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
bad allocation
kotevajewodopo
lediloporejefog guhewatazikisaniviho retubolozosoloru wetusevaligadubudiri
sageyi
C:\sodosecabu\jaki\jun-jebutuney\nuwuhoye.pdb
jlXjmf
u!h8-@
jXhXlB
0SSSSS
j@j ^V
<at9<rt,<wt
URPQQh
0WWWWW
0A@@Ju
>=Yt1j
0SSSSS
0SSSSS
tRHtCHt4Ht%HtFHHt
_VVVVV
^WWWWW
tGHt.Ht&
^SSSSS
8VVVVV
;t$,v-
UQPXY]Y[
t"SS9]
PPPPPPPP
PPPPPPPP
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
ai@.T6
EV|7[0A
w;guvi
;Dni=m
lrjhf!
$#RrjQ
!l:eo<:
Ev(H}1S
L%qg1B
!ZOM,Q
Jhs]yB{
,=e'%q
/G `W
WZ4)}QRm
BJtc)I
!Z1p3;
LnJ<JR
8*L{+"_
jY$Oub
aCK0~j
e}h%[;
8=cGsu
n1?HQK
F-`xs8
p/[KuZ
y+*eUv
X}\Us.
W`}KuM\
=[=\0Tj
].Do$9
u.Itskq
k05|7o\
8Kw=M|[
V' R2'
Ntlt|J`p
H^0sA^
CJq&%Knk}
UnP%8+
%7:kKo4M
` }f:X
8bPGK
jX4IJ)
P"66rb
=Mhcl-
c";:cn
`xZ-Yp
C}*S]2
zht+^P
|^|pBoY
CpxECn9
KWP\R:
4Manjk}
tRyIOSB
D1}$*X
7%Z`9;
O;-mJ#\
Z8tv0
|#zacXeL
5=g< T@
T=?.;A
>zY9%,
9`h,Y|#
v}G:Y5i
ChSU>i
z-3fb~
:nsKv"
u\N"zXD
oAr-?aB
=V}QFB
TY_k#E
%QpKGo
O42<BN
vZVdvU
0C7dk.
FX}L6?S
Mkaj!"
>]0b)
n<f<4m
xovIt=,v
XF+d4_
BZ_/(}
%{TyXP
i0eD$~
B4g(%H
~AZ8O
FLo@Xx
OKW!<IERC
BRU({x
zSn#Ue
&p:K^O9}
R<#a<q
5sV<|]
OY7z)0
tcCjTOHp
kP[Ce1
Xr:qe!
I[0<9S<5
ISmA9X
d5,l!]Z
:91+[l
yTSj-wH
m1_>e_
?dlKS2|
geghwP
*9^hD!
($hl>)s
~e;]Y;
H6.Dr=U
gv{4gU
l~wdE<3
r]W#QS
q0MOl<`
kH,LwV^m=
Io)TF\P
@RE+mD
|f/Z.;_
:\I!i
nfcM!f
y&6i+5
'b{a_^
flA$uP
Pb |@-LL
o,k]q-X
m:WDM@
rz=uPj
2O:Ql-
JyE=$B
*eZ7+A
B&iC^zd
,rGAo&
a-Ti(3
5`xN=
x#!|f2
rwlu.m
^X|}PR
l=pR\v
FkO9%b[
TYV_Xzh
^.-XW
K@@5Qe
uY?xHS
0']:_jG
*coy"l
.~Jy$Q
mF~z^1
[%\>iv
b8).hB
1%K*\
=42{w;
Y;SF|QL
Zym3nd
w43$.g
5i7-tE
+A`n?#
C5v>yUb
IkHVzt
GetSystemWindowsDirectoryW
InterlockedCompareExchange
AddConsoleAliasW
_lclose
GetTickCount
GetNumberFormatA
GetWindowsDirectoryA
SetProcessPriorityBoost
GlobalAlloc
GlobalFindAtomA
LoadLibraryW
SizeofResource
SetVolumeMountPointA
TransactNamedPipe
GetFileAttributesW
GetCompressedFileSizeA
CreateActCtxA
GetACP
FillConsoleOutputCharacterW
SetLastError
ReadConsoleOutputCharacterA
GetProcAddress
VirtualAlloc
BeginUpdateResourceW
RemoveDirectoryA
EnumSystemCodePagesW
SetComputerNameA
_hwrite
CreateHardLinkW
AddAtomW
BeginUpdateResourceA
GetCommMask
FoldStringW
OpenFileMappingW
FreeEnvironmentStringsW
FindNextFileW
VirtualProtect
PeekConsoleInputA
OpenSemaphoreW
EndUpdateResourceA
ReadConsoleInputW
TerminateJobObject
GetCurrentProcessId
LocalFree
FindNextVolumeA
KERNEL32.dll
GetMessagePos
ChangeDisplaySettingsA
CharToOemBuffW
LoadMenuW
GetWindowTextLengthA
USER32.dll
UnhandledExceptionFilter
SetUnhandledExceptionFilter
MultiByteToWideChar
GetModuleHandleW
ExitProcess
GetCommandLineA
GetStartupInfoA
GetLastError
WriteFile
GetStdHandle
GetModuleFileNameA
TerminateProcess
GetCurrentProcess
IsDebuggerPresent
HeapAlloc
HeapFree
RaiseException
EnterCriticalSection
LeaveCriticalSection
SetHandleCount
GetFileType
DeleteCriticalSection
WideCharToMultiByte
GetConsoleCP
GetConsoleMode
FlushFileBuffers
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
InterlockedDecrement
HeapSize
RtlUnwind
ReadFile
GetCPInfo
GetOEMCP
IsValidCodePage
SetFilePointer
LoadLibraryA
InitializeCriticalSectionAndSpinCount
FreeEnvironmentStringsA
GetEnvironmentStrings
GetEnvironmentStringsW
HeapCreate
VirtualFree
QueryPerformanceCounter
GetSystemTimeAsFileTime
HeapReAlloc
GetModuleHandleA
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
SetStdHandle
CloseHandle
CreateFileA
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
SetEndOfFile
GetProcessHeap
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxxx
(cfxxxxxxxxxxxxxxxxxxx
dxxxxxxxxxxxxxxxxxxx
#Mjxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxJ
xxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxxxxxxxxxx
l^Sxxxxxxxx1
xxxxxxxxxxxxxxxxxx
\rxxxxxxx;
HxxxxxxxxxxxxxxxxxxZ
xxxxxx
xxxxxxxxxxxxxxxxxx}
9xxxxX6
xxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxsn
xxxxxxxxxxxxxxxxxxx=w
xxxxxxxxxxxxxxxxxxx"~vOu`W
xxxxxxxxxxxxxxxxxxxxk
xxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxxxxxxx
xxxxxxxxxxxxxxxxxxxxxxxxxx
m+xxxxxxxxxxxxxxxxxxxxxxxxxxxxx
'xxxxxxxxxxxxxxxx
}{|~{{
~}|{{~
{{}~|}}z|
|~y||~~
}{~z|{
}~|{{}}~
}}|{z~
{~{{|{
~{z|~}
{}~}~}z
{|~y~}
~~z~~|
~~z}~z
~y||||~z~
{{z{|}
~|z||~
|y~~{|
}{z}{}
z{z}{}
y~z|}}}z
|y||~~
}{}z}~~z~
@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
< <$<(<,<0<4<8<<<@<D<H<L<P<T<X<\<`<d<h<l<p<t<x<|<
=,>0>8><>@>D>
??(?1?:?C?L?U?[?a?g?
0#0*0K0[0m0{0
1)1@1F1h1
21292A2I2P2Y2^2
3(333<3Z3c3i3
4J4O4T4Y4l4
6!6+676
638V8a8
9;:T:}:
66'626
8\9e9k9
:::R:]:
;,;Q;d;|;
>>/>;>
0a1k1x1
2)3/3O3
9$:G;Y;k;
<!<%<+</<4<:<><D<H<N<R<X<\<u<
=0=B=P=e=o=
>3><>P>q>w>
?H?R?z?
3 3f3l3x3
<0<g<q<
=3=:=S=g=m=v=
1!151<1c1i1t1
2%2+272=2J2T2[2s2
243:3d3j3
3>4a4k4
5$5*51575>5D5L5S5X5`5i5u5z5
6"6B6H6d6
617:7F7_7
:.;>;k;s;
}051?1
7.8;8E8S8\8f8
:];i;|;
<"<1<X<
>8?O?`?
I0[0p2}2
9#9S9t9
?$?0?8?@?L?p?x?
j01Z1
21282<2@2D2H2L2P2T2
3!3<3C3H3L3P3q3
3:4@4D4H4L4
5*535B5G5Q5_5
5A7H7N7~7
8#8/848D8I8O8U8k8r8
9,:h:\;
<O<~<.=
1$1/1A1T1_1e1k1p1y1
2"2<2M2S2d2
5(5Y5g5o5|5
88:8Z8
1,1?1Q1
535>5U5z5
:9;S;\;
1'393K3m3
88'8,80848]8
:=:D:H:L:P:T:X:\:`:
1M2S2X2^2e2w2
8!8l;p;t;x;|;
c:(;H;T;p;
<0<P<l<p<x<|<
=8=X=x=
>(>H>h>
?$?(?H?h?
000L0P0
040<0D0L0T0\0d0l0t0|0
1 1$1(1,1014181<1@1D1
3$3,343<3D3L3T3\3d3l3t3|3
0 0$0(0,0004080<0@0P0X0\0`0d0h0l0p0t0x0|0
mscoree.dll
(null)
KERNEL32.DLL
((((( H
h(((( H
H
kernel32.dll
kernel32.dll
VS_VERSION_INFO
StringFileInfo
045230F2
FileDescription
Vangla
LegalCopyright
Copyright (C) 2022, Fdfiugaf
OriginalFilename
golfstikator.exe
ProductsVersion
23.24.5.55
ProductName
Hsfpkajdalgnj
ProductionVersion
18.35.93.36
VarFileInfo
Translation
No antivirus signatures available.
No IRMA results available.