Static | ZeroBOX

PE Compile Time

2023-01-08 06:10:31

PDB Path

C:\gapazogol.pdb

PE Imphash

1e2f614c1813ff4e3f2f3e784182dbac

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0002710a 0x00027200 7.60275709743
.data 0x00029000 0x0017629c 0x00001e00 2.54865113191
.rsrc 0x001a0000 0x00006d78 0x00006e00 4.32543143954
.reloc 0x001a7000 0x00002898 0x00002a00 2.66576182308

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x001a50a0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001a50a0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001a50a0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001a50a0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001a50a0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_STRING 0x001a6938 0x0000043c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x001a6938 0x0000043c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x001a6938 0x0000043c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x001a6938 0x0000043c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x001a6938 0x0000043c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x001a5558 0x00000028 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x001a5508 0x0000004c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x001a5580 0x00000280 LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library KERNEL32.dll:
0x401000 GetDateFormatW
0x401008 EnumResourceNamesW
0x40100c EndUpdateResourceW
0x401018 SetComputerNameW
0x40101c AddConsoleAliasW
0x401020 CreateHardLinkA
0x401024 _lclose
0x401028 GetTickCount
0x40102c GetNumberFormatA
0x401030 CreateActCtxW
0x401038 GlobalFindAtomA
0x40103c LoadLibraryW
0x401040 ReadConsoleInputA
0x401044 SizeofResource
0x40104c GetFileAttributesA
0x401050 TransactNamedPipe
0x401058 CreateSemaphoreA
0x401060 GetACP
0x401064 SetLastError
0x40106c GetProcAddress
0x401070 VirtualAlloc
0x401074 RemoveDirectoryA
0x401078 _hwrite
0x40107c LocalAlloc
0x401080 AddAtomW
0x401088 GetCommMask
0x40108c FoldStringW
0x401090 FindNextFileA
0x401098 VirtualProtect
0x40109c PeekConsoleInputA
0x4010a0 TerminateJobObject
0x4010a8 GetCurrentProcessId
0x4010ac OpenFileMappingA
0x4010b0 LocalFree
0x4010b4 FindNextVolumeA
0x4010b8 GetProcessHeap
0x4010bc SetEndOfFile
0x4010c8 MultiByteToWideChar
0x4010cc GetModuleHandleW
0x4010d0 Sleep
0x4010d4 ExitProcess
0x4010d8 GetCommandLineA
0x4010dc GetStartupInfoA
0x4010e0 GetLastError
0x4010e4 WriteFile
0x4010e8 GetStdHandle
0x4010ec GetModuleFileNameA
0x4010f0 TerminateProcess
0x4010f4 GetCurrentProcess
0x4010f8 IsDebuggerPresent
0x4010fc HeapAlloc
0x401100 HeapFree
0x401104 RaiseException
0x401110 SetHandleCount
0x401114 GetFileType
0x40111c WideCharToMultiByte
0x401120 GetConsoleCP
0x401124 GetConsoleMode
0x401128 FlushFileBuffers
0x40112c TlsGetValue
0x401130 TlsAlloc
0x401134 TlsSetValue
0x401138 TlsFree
0x401140 GetCurrentThreadId
0x401148 HeapSize
0x40114c RtlUnwind
0x401150 ReadFile
0x401154 GetCPInfo
0x401158 GetOEMCP
0x40115c IsValidCodePage
0x401160 SetFilePointer
0x401164 LoadLibraryA
0x401178 HeapCreate
0x40117c VirtualFree
0x401188 HeapReAlloc
0x40118c GetModuleHandleA
0x401190 WriteConsoleA
0x401194 GetConsoleOutputCP
0x401198 WriteConsoleW
0x40119c SetStdHandle
0x4011a0 CloseHandle
0x4011a4 CreateFileA
0x4011a8 LCMapStringA
0x4011ac LCMapStringW
0x4011b0 GetStringTypeA
0x4011b4 GetStringTypeW
0x4011b8 GetLocaleInfoA
Library USER32.dll:
0x4011c0 LoadMenuW
0x4011c4 CharToOemBuffW
0x4011cc GetMessagePos

!This program cannot be run in DOS mode.
5>ao5:3
5>ap5!3
5>an5!3
5>ak5!3
5Rich 3
`.data
@.reloc
bad allocation
?CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
(null)
`h````
xpxxxx
_nextafter
_hypot
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
UTF-16LE
UNICODE
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
`h`hhh
xppwpp
GAIsProcessorFeaturePresent
KERNEL32
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
CONOUT$
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
bad allocation
kotevajewodopo
xicedebuvozukajaxet
kizuxafegexohapawunugeyokifecaw jupirurejivogazepoy
puduvikajicezodezofut
lediloporejefog guhewatazikisaniviho retubolozosoloru wetusevaligadubudiri
sageyi
C:\gapazogol.pdb
jlXjmf
u%h@.@
D$<PVVV
D$4PVh
jXhXrB
0SSSSS
j@j ^V
t h40@
<at9<rt,<wt
URPQQh
0WWWWW
0A@@Ju
>=Yt1j
0SSSSS
0SSSSS
tRHtCHt4Ht%HtFHHt
_VVVVV
^WWWWW
tGHt.Ht&
^SSSSS
8VVVVV
;t$,v-
UQPXY]Y[
t"SS9]
PPPPPPPP
PPPPPPPP
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
KsIf#s
&&&O8C
t5zQt~
&^wUL'
Iinv44
q,-T]?
W3sxpR0jM/
:WmUWL6
.!$cc2
NK]^mk
P+7G.mA
S1pnj7
}\$Z~}
I|%y<D
>dd)S)
2<YND><0
YKYg>=
ciR{r>r
;B,zu/R
MwO( f/'
eJ9ACz
zeLXTs
*ly+-4
#;<O9y
c+y0^[
G,RP1'
/hy#4=E
kx$OhPX
O?S/<s7E:
v-+,~
ACS=#h
!|*ck4(7
'1-)@T(
%G/T>VAwe
f p:)7
kgJHsa
WpW:<K
wV/\re
BIP'h5
Hf"69o
>aLwTut
\v%4r+
'fA-H8
N@O)l5
O.P~Y
>J|_Wa
\Jo?y{O%
y.AI,w
]*~}t0
aQH<Cx
$;]SA"
^fNeO
>j\(>-
:X%:1&=
7bTQJti
:4+QeY.
A o1OR`-
r;}&s@
$#V,yQ
V\9JzWd
gIDi8/
QsWlDu
{t3/%Gf
.b`Yw:
p$n\sh
H?4Y7.H
IzoWr8
?Yi<nc
)C;zgT#xOr}
[m$=5c
7fDBh2"
<[&^`
5Thm<.
"*/F5J
M;Vc9W
&?K\ZG
}RU#kB\?'?6
HJ5vsD
R9*I2m
{(BiogC
u(@UKC:2
1Dlhk8
@ UcOb
LiP(6kd6
lob=Dl
:OP`Nmk
\,g,rO
esL)68
JWi-)q
aLPv3"
C8{%#
2huY~MXhjK
Km52O1
&T9~,}4S
*ugmvC
c,7XV0
Pc{~_+8
/?]rv}
5hhcH8
I}f+YL
0\O!zu
9ve0^E
Yu4h`w6
t1"K`"
.<cd<H#*
BI:/rU<cZ
0qs[Ss
hatt]'
~x"ea$
t4j4dg;
WH$F;{;
TOx1.l
D`5ZA^
1_wcH>h
_JS'!L
3EE21T
f(l(j,t
jc`4iKb`v
zx6"!|q
xfQf]Hw=_
*080GR,
i+M>R#b
lUkME6
hUGe8\
Y}bp/X
~{vmHM
*W(!v')
CL`<=.
QvC1*#+h
&^[aQtJ
s!L7@u
&2Oc6R|
3V|ob1Px
DJWgsM
!"4u0y
>G]V6D
dRc=`
0OFwYL
BAmveR
\9P}l4
Ao.].2#
QFW_Ol
bo(4!q
-l&kn'
akeyhf
\,%1Ak
gEu>e7
O7kmZl
8$,+TO
C?N.mwX
NIUFb`
{uV0Kh_
xkMJg#
(6\w3*
GC12.K
\7807Bv
GetDateFormatW
FillConsoleOutputCharacterA
EnumResourceNamesW
EndUpdateResourceW
GetSystemWindowsDirectoryW
InterlockedCompareExchange
SetComputerNameW
AddConsoleAliasW
CreateHardLinkA
_lclose
GetTickCount
GetNumberFormatA
CreateActCtxW
SetProcessPriorityBoost
GlobalFindAtomA
LoadLibraryW
ReadConsoleInputA
SizeofResource
SetVolumeMountPointA
GetFileAttributesA
TransactNamedPipe
EnumSystemCodePagesA
CreateSemaphoreA
GetCompressedFileSizeA
GetACP
SetLastError
ReadConsoleOutputCharacterA
GetProcAddress
VirtualAlloc
RemoveDirectoryA
_hwrite
LocalAlloc
AddAtomW
BeginUpdateResourceA
GetCommMask
FoldStringW
FindNextFileA
FreeEnvironmentStringsW
VirtualProtect
PeekConsoleInputA
TerminateJobObject
GetWindowsDirectoryW
GetCurrentProcessId
OpenFileMappingA
LocalFree
FindNextVolumeA
KERNEL32.dll
GetMessagePos
ChangeDisplaySettingsA
CharToOemBuffW
LoadMenuW
GetWindowTextLengthA
USER32.dll
UnhandledExceptionFilter
SetUnhandledExceptionFilter
MultiByteToWideChar
GetModuleHandleW
ExitProcess
GetCommandLineA
GetStartupInfoA
GetLastError
WriteFile
GetStdHandle
GetModuleFileNameA
TerminateProcess
GetCurrentProcess
IsDebuggerPresent
HeapAlloc
HeapFree
RaiseException
EnterCriticalSection
LeaveCriticalSection
SetHandleCount
GetFileType
DeleteCriticalSection
WideCharToMultiByte
GetConsoleCP
GetConsoleMode
FlushFileBuffers
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
InterlockedDecrement
HeapSize
RtlUnwind
ReadFile
GetCPInfo
GetOEMCP
IsValidCodePage
SetFilePointer
LoadLibraryA
InitializeCriticalSectionAndSpinCount
FreeEnvironmentStringsA
GetEnvironmentStrings
GetEnvironmentStringsW
HeapCreate
VirtualFree
QueryPerformanceCounter
GetSystemTimeAsFileTime
HeapReAlloc
GetModuleHandleA
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
SetStdHandle
CloseHandle
CreateFileA
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
SetEndOfFile
GetProcessHeap
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
=R~P5=
z}}{}z}
|{~}}{
||z{zz
|}~{}}
~|{|{{
|~~y|~
}z|~}}|
~z{z~{}~
z~~~}~~}
~}~|}||y}
|||~{}
{}{{~z~
}~}|{}
{~~}~}{
z{||||
~|||zz}
}z}|~}|
~z|~}~
{~~~~}
}}{~z~~
zy{y~}
|~}zz~~
~~}}~|
{{}~z{~~}{
|}|~|~
z||}|{z|
@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
< <$<(<,<0<4<8<<<@<D<H<L<P<T<X<\<`<d<h<l<p<t<x<|<
40t0x0
0k1t1}1
2"2*2/262P2_2
3+393?3
4 4(4/4=4h4
5%51565=5B5N5[5x5
6:6O6V6]6f6m6{6
7"7I7Q7}7
3%3:3E3
3#4Z4e4m4
6,7G7M7V7]7
8#8*858>8T8_8y8
8)9.999>9\9
:':L:`:r:y:
<c<h<m<r<
=P=U=\=a=h=m=
626^6z6
9O9U9f9
3"3&3,30363:3@3D3I3O3S3Y3]3c3g3m3q3
4!4E4W4e4z4
5H5Q5e5
9$9<9T9
:0:v:|:
4 4C4J4c4w4}4
8*818E8L8s8y8
9'959;9G9M9Z9d9k9
:D:J:t:z:
:N;q;{;
<'<,<4<:<A<G<N<T<\<c<h<p<y<
==%=2=R=X=t=
>A>J>V>o>
2>2N2{2
2%313=4"585
?>?K?U?c?l?v?
3$3-323A3h3
5H6_6p6
>"?(?A?G?
1 1c1r1
6'646@6H6P6\6
6z7/8j8
8#9A9H9L9P9T9X9\9`9d9
9&:1:L:S:X:\:`:
;J;P;T;X;\;
<&<,<:<C<R<W<a<o<
<Q>X>^>
??(?3???D?T?Y?_?e?{?
0<1x1l2
8'848?8Q8d8o8u8{8
99,929L9]9c9t9
,070?0
<%<*<8<i<w<
>?/?J?j?
8*8<8O8a8
;&<C<N<e<
1I2c2l2
7*87:I:[:}:
?(?/?7?<?@?D?m?
0$0(0,000
1M1T1X1\1`1d1h1l1p1
8]9c9h9n9u9
3C4g4q>
c0(1H1T1p1
202P2l2p2x2|2
383X3x3
4(4H4h4
5$5(5H5h5
606L6P6
040<0D0L0T0\0d0l0t0|0
1 1$1(1,1014181<1@1D1
3$3,343<3D3L3T3\3d3l3t3|3
0 0$0(0,0004080<0@0P0X0\0`0d0h0l0p0t0x0|0
mscoree.dll
(null)
KERNEL32.DLL
((((( H
h(((( H
H
nodakezawesujinamujeham yecugegawofukob fawegifabeyuhocife
yirokobatifazikuwovowayij pipodepovis coyotujehadicezohi decofexuyoxuzu
ykernel32.dll
kernel32.dll
gefamanewuzayinujugu gupeyoradihelenalifikiwal togalivafe pahosicuwo wekulibejegofuluyuba
mufaganaxezucukirar
VS_VERSION_INFO
StringFileInfo
045230F2
FileDescription
Vangla
LegalCopyright
Copyright (C) 2022, Fdfiugaf
OriginalFilename
golfstikator.exe
ProductsVersion
0.24.58.86
ProductName
Hsfpkajdflgnj
ProductionVersion
13.37.45.45
VarFileInfo
Translation
Mocitupoxug tifojazexibit
Zazeyifebotoba
ILofumorefi dadafawaw wacuz dese jikavosi hozahihefa nogoxap ciguwigixayol
Lixola puvafeyiyuxiruKDuw xaxivakolobe kutuzecig nujazux gurijotodo lewozizexot pojefu ruzozijayoFSogoxinanus vub temebolatol nenuyakim jatexorey yurafe nazadivumupayutcDifokuyive bimo nerotamulaledek fuxenudujifad dihodosilonab nevuj pogo ziferovumakaxid birayale pun
Bigohidixitoyit`Feh tisux zikogusayocig rih caxonabijexodeh bijinefiyuhosat dovihec becitidanegoy tiloxeyuwibucoVDajapicize tidujefo xovuwelayaneheh nalevesikugeca milumesede hucavinun jotajexajoyoci
ZNerilurucapuv dotosogegebazip wobipeseheru zanafoxazicik dapigij mumecusava bowehojekekemo
%Komalokuvagiv dogu fonocej zegih codi
1Sikiluyefiyolo gonukehuzoyuxor cemejufiguza jocis
Buyacenofeme gewi cumi<Voyapedumem fuja suzonixugilom saru tayiden juwuw vebijolasoFYificuduve jedesu malibimakaja yiragevu joxosecolifoc yevecet rajizewi
Woba depeyiw dihu piboyehemisu
Vopukal zewedebopag
Guvazegezinu
Dofotadoru>Xuzuwihodupu vunola jusugukiyice dabo yan fijuwuk tadetizujuga#Giluzovezu kejeha tavev sacirehewof5Figacucoz dowosopuyiley lobenexifufumaf cawabasebomew
Tezed dikalunasidZTihoducaw hixoberuwoli howejipa socirimiyawod rehulo muhiluwarire piporojezenuwe sukir mum
Wokogafoxehem yedon<Gebasejevozo jizixeredinudul tegofajusanaviy dep bebo peyariDadubawawideru mijayuvini fotug
Xuja jawucohekoba
Lomuviruwijo zasihuravimix
NLeli yupem deforurusupo yumakazuwo jaliyicasucun tipab nowetu xecuwum yuvonajaYZupofobanokifa kikok giliyudacukezu tutuzup dahefelazi faxawe dobotuteh lov nimesot cotogPXixifefen riboyazakoza tezipuxeheme zoce guwowoyug yuwonakadigezed walujozubevod\Gumuyoloyaju kubiv sadiwas cezayobayoyohek dohove lifi gulomuwuvoru dikabunugela ninimup suk
Fegova hin#Cowihuvusutom gozatecij huke boyaba
#Sofuviz tuley liruvojeyiwu gayanafo(Xacoluxibatup sebuwukovadanec poxedehiye2Rixiposuxakok werumatijukasu yucixasidoboyub sewegLVokodedi mewekoloca kowimoyen getigefiwupekap gijol zuxexobufinolod kisicoro=Hubu wazucuti vebedunitu kenibuf zaxibimo vomebupu hanuweziri
Pumeguk megewJGeyerocihecelay jojaloweyumemul gejaviragugixa roxak lejay revomonadabazab
Hawepusexumo
Cix bagilojap wewu gasehojo
Xesose/Nez yulawazevoruzi sofojipejor husajevon wureyavCawotemojegovuj laduyavanoxoyet melojuhagexo pibexafiz zixovar widapazucegosi yigatobukuzan zilayopigu zeka gotizupegomGegoxonofegipu ruhajofukupan wexobagoc bumacorawugo cofewa xotafofoga heyayoboponowi huna vezedidujebusu bohi
Sepaxu femokak mimedewesaruLJepefowavirawe pubegodu tasitusojewojis mebagazayih poxob favif lobutuliyosa!Nukiyopozopi weva gudepiceh tofix
SJimuxow sojomunah pazezavitaxabov tukuci resupaxonayu vifugelavumoke rufovudumamavi
No antivirus signatures available.
No IRMA results available.