Static | ZeroBOX

PE Compile Time

2022-08-12 10:45:02

PE Imphash

c5bea3af9ed47721d7cea014463c7307

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00054dc6 0x00054e00 6.59099954508
.data 0x00056000 0x01e4780c 0x00003e00 1.37367000902
.rsrc 0x01e9e000 0x0000b7d8 0x0000b800 4.24803093294

Resources

Name Offset Size Language Sub-language File type
DUHUFEGUTEJUCUV 0x01ea7c00 0x0000061e LANG_SINDHI SUBLANG_SYS_DEFAULT ASCII text, with very long lines, with no line terminators
RT_CURSOR 0x01ea8220 0x000008a8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x01ea7720 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01ea7720 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01ea7720 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01ea7720 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01ea7720 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01ea7720 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01ea7720 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01ea7720 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01ea7720 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x01ea7720 0x00000468 LANG_SINDHI SUBLANG_SYS_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x01ea9480 0x00000352 LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_STRING 0x01ea9480 0x00000352 LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_STRING 0x01ea9480 0x00000352 LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_GROUP_CURSOR 0x01ea8ac8 0x00000014 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x01ea7b88 0x00000076 LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_GROUP_ICON 0x01ea7b88 0x00000076 LANG_SINDHI SUBLANG_SYS_DEFAULT data
RT_VERSION 0x01ea8ae0 0x00000210 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x40100c WriteConsoleInputW
0x401014 GetModuleHandleExA
0x401018 GetLocaleInfoA
0x401020 CommConfigDialogA
0x401024 FindResourceW
0x40102c EnumCalendarInfoW
0x401030 ReadConsoleA
0x401038 InitializeSListHead
0x401040 SetComputerNameW
0x401044 GetComputerNameW
0x401048 OpenSemaphoreA
0x40105c WaitNamedPipeW
0x401060 EnumTimeFormatsA
0x401064 EnumTimeFormatsW
0x401068 GetCommandLineA
0x40106c GetDriveTypeA
0x401074 FindResourceExA
0x401078 GetConsoleCP
0x40107c LoadLibraryW
0x401080 GetConsoleMode
0x401084 GetCalendarInfoW
0x401088 IsBadCodePtr
0x40108c SetConsoleCP
0x401094 GetFileAttributesA
0x4010a0 SetSystemPowerState
0x4010a4 GetAtomNameW
0x4010a8 GetVolumePathNameA
0x4010ac GetTempFileNameW
0x4010b0 CreateMailslotW
0x4010b4 DisconnectNamedPipe
0x4010b8 FlushFileBuffers
0x4010bc GetShortPathNameA
0x4010c0 GetConsoleAliasesW
0x4010c4 InterlockedExchange
0x4010c8 GetLastError
0x4010cc IsDBCSLeadByteEx
0x4010d0 SetLastError
0x4010d8 PeekConsoleInputW
0x4010dc MoveFileW
0x4010e4 FindClose
0x4010e8 LoadLibraryA
0x4010f0 LocalAlloc
0x4010f4 SetCalendarInfoW
0x4010f8 CreateHardLinkW
0x4010fc AddAtomW
0x401100 RemoveDirectoryW
0x401104 OpenJobObjectW
0x401108 GetTapeParameters
0x401110 GetOEMCP
0x401114 EnumDateFormatsA
0x401118 GetModuleHandleA
0x40111c FindNextFileW
0x401120 GetStringTypeW
0x401124 VirtualProtect
0x401128 PurgeComm
0x401130 FindFirstVolumeA
0x401134 ReadConsoleInputW
0x401140 DeleteFileW
0x401144 GetCurrentProcessId
0x401148 AddConsoleAliasA
0x401150 SwitchToThread
0x401154 CreateFileW
0x401158 ReadFile
0x40115c WriteConsoleW
0x401160 GetStartupInfoW
0x401164 GetCommandLineW
0x401168 MoveFileA
0x40116c HeapFree
0x401170 HeapAlloc
0x401174 GetProcAddress
0x401178 GetModuleHandleW
0x40117c ExitProcess
0x401180 DecodePointer
0x401184 HeapReAlloc
0x401188 HeapSetInformation
0x40118c RaiseException
0x401194 EncodePointer
0x401198 HeapCreate
0x40119c WriteFile
0x4011a0 GetStdHandle
0x4011a4 GetModuleFileNameW
0x4011b0 SetFilePointer
0x4011b4 SetHandleCount
0x4011bc GetFileType
0x4011cc IsDebuggerPresent
0x4011d0 TerminateProcess
0x4011d4 GetCurrentProcess
0x4011d8 TlsAlloc
0x4011dc TlsGetValue
0x4011e0 TlsSetValue
0x4011e4 TlsFree
0x4011ec GetCurrentThreadId
0x4011f0 GetCPInfo
0x4011f4 GetACP
0x4011f8 IsValidCodePage
0x4011fc CloseHandle
0x40120c GetTickCount
0x401214 Sleep
0x401218 SetStdHandle
0x40121c WideCharToMultiByte
0x401220 RtlUnwind
0x401224 MultiByteToWideChar
0x401228 HeapSize
0x40122c LCMapStringW
0x401230 DeleteFileA
Library USER32.dll:
0x401238 CharUpperBuffA
0x40123c CharUpperA
Library GDI32.dll:
0x401000 GetKerningPairsA

!This program cannot be run in DOS mode.
`.data
Unknown exception
CorExitProcess
bad allocation
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
(null)
`h````
xpxxxx
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
_nextafter
_hypot
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
`h`hhh
xppwpp
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
1#QNAN
1#SNAN
vexisujufafewa ragapoz kugojunifabeharapuzava hatetoyed gihorodiwapuxurizodewojujuwori
%s %d %f
ribayiwuxeduhodorok
luvisecavezadinakefihumitisazabeweyebayozagekecedutumopupimilo
lubifesasixasugeyipobapapecuhaget
Mugusoxarig
string too long
bad exception
tWItHIt9It
^SSSSS
r=8dE
j@j ^V
t h0:@
Y;=hmE
HHtXHHt
?If90t
QQSVWh
URPQQh
t"SS9] u
PPPPPPPP
PPPPPPPP
;t$,v-
UQPXY]Y[
<+t"<-t
+t HHt
u-hd4@
a"=,g=
jm72"-
RW(Mo@
.I`^4
i+xwx9
S|r(^)
B:RirA
wT-tbHl
:R2IE%3
+HAJF6
\F?doV
LC/t|j>
T13AG{
|X=.!^
?@9|(e
o#}te8
/<45Wf_\e
{RM{2b
'R?:`]+"
+gK8eyA
gpzue
%lOc=V
QF ]%XH
+Zm_A5
!+ug'\
OPh8_$
X:H!8)
ooeQsg!/
q)Y9/5.*
a2wBIY+
Kqe+RGS0
cxTh|B
PB\q1b
6lHZg[
tzbYAQF
]rJp]BO
sPl?l._
bp}R!
Hn4}h&h
m7QRE
EPt%rzE0#
s|(!`7
z3~u5E
CwUXwo
s2y77Q-
e].m!u9
!&6D~b;
0@/NC@
ey>F:q
WQ8bSq
n$Y1MW
w)^y]
u:@TPX
-Ao[Mow
2)118s
$X {87"^
;Cx}D<~p
VC\kL2W
\,=D;T
gshc1u
$.4Hn7
u<*[w#
=Lz*5N]3
8X&!g)
W`KLpj
vn.@)HS
}.9Iq?l9
+ZZ@>l
Fl:aJW
ni5c[.q
)^,0*S
3b7_DM
*tCOliz
RQ!+w5
(<|GaZ
sH)Wmq
g2*X'&
y*>n}9AO
(.5pF>!]7
H`!#<~
U0|FMuh/0
}aek8BY
^dTxwC<
n1s4U&q
b#(IF})
:E?hL$
l?'Yj8
Ytn-H4
.r2%lZ
7w;LrmU
OKk<Yx8
]]&TV3
_RWaQd
uZ:Q|q
*,dlV[
zQ3WQl
RaSJ!q
0/zQ\
*bL{@Rz
8'K93 ]
wG"q"U
_UHG=m
QMZ:;\
:344"\
Jj#k$<R
H]`uzpMJQ
B7jR2+
f6sC/Ne]
-M-eiJ
H4&Q,XB7
/[ ([&YF
B,S"}9
Ns7MfZ3
J17Lz%(*>
ey^:-n
G8@o`H
+UzmU#
@'r!uc
!vusV7
z2,@u@
_Ed6ya
P4w8U%Z#W;
N<@aUJ
T?*Lr
r/K3zD`+
ElA_CsYH
| "}<\
fr1jkJT/5
f6'|Zh
&Zx67:
Y:#s0k
_kiq/=o
x9&FTL!Mq^
jf"H[,
5JG]%O
a[~%]c
5o`aslV|S,
M,f!j^
#OSunw
XE3Q\7
m4Va/|
A.]CZ#
_ niPe
UUYz ~
PL]PS<
B!PqacD
01y5C|
yO{H_y
\q7Ih>%
XYH[:)o#
P}$Sfq11
Z~D0c4;
>&B&g%
*2CcH}3
w|Kc1f
@m=KO=fEx
r;bE"\
j4HbqJ
|5[+9
&*FF/o
Rf52r(
DR&Oh?R
E^qem$
uPD+p?
S?UdR3
d)zYc
:[+7T@
.l)i%)e
viD_k-
tcdr;}%
Dn!Y!/
C_h<yP
fp0+Wpl
6Lh2t(
{+&hp|c
X{CBJfM
^2Qq<c
Z?K}.C&
z\6(Nv
+dn{&&
)^v(Fz
&bn e-
acKqc16
Qp"z:l
tGhohE
NB%Au#
.>TCs=]AFg
,8AdR>\C
VBq1^I
uqhE^'"
?@]gs-
e1w?.c
!Kt+Cx
hLr(C0
a&)<JR
2-I;,t
OA$YS)
JE{M0D<
8ie}G\M
qC*(;Y>-
Vw Fl,
!Wz,TI
<_".Sbr
4(kv0|;
kJw_6K
N[LRlY`I
eR];jV
`ied$4pg-
hw3'JJ
@:5V-EF
P,.G14fsk
bTQ7e%a
s.gGnJ
}J{'t$
xq4qVz
n<+}Knc$
z\j 6rM
?jgmQb
wxO&Gnb2
?Ybm)9
`4BpOq
kCtr/H\
=AcY'Ha
StIbDFv
hk,X0~
o.V}lDR(8
$&GF5+
'"`&\{
82]Eu<
SDJaV9
v|VYlP
Dj0;[Y
=co@<rD
gMURg?
es74K\_:t9
es:G4EUL
wEc[]0e
pH'Q.F X?
j^nskn!~
I|%-u1)?
y"veHf$
yOd(3N
T\%M@B
y4yK-k
Voa_I-
"2|vQ<9eR
ig(hRQ
TvMJ#&
?xLB-6\
;jEZRPd
4Flw3D
BlS31=
G-l[cx
\fY}1p-
EyW'Kbd
d>n<#X
KmyEPw
M}VGk>
N}_Fu<ga
Q'iFgDr
fP8a\
ud%%s?U1
AoFbnh
DQzGu:
;h5.*n#1
wx&7I/
";p!jayT
UTq8~,I#yF
'&A=K2
rtWd-`
A-Zl$
WFD b6t-
"n.Y*Gwj
6[?pDl
&nE"($
h@{gu3
*j$sr
1"T5:`/t
8az~;k
E5g}t$#JwA;
p!<'gX-
(6dJT4A
$0VjnQ
] ^H0j
TY5b.6
~4d1E3#
Af`.}:
.'sE%7
\$A'x|
!_UyG=
e1U\dg
x$+/6d
`+4XhCA
by@I>rG?
KBeT*0
(5;y<h
r/H7iN
N8FWG3rQ9
S18h4*3P
*Q{}>=
h$Eww*s.mU
`mUR_78|")
?T&$('r
[7)M3;
YEX9['
y?NBnU
aaO,nX[b
v[39y#MW
oTt&(|
}*8gH)f
H5sXjr
Fh{j13
p#!cQ]
D$()D$
D$ 9\$4s
D$ VWP
t$09\$4s
D$|PQQ
D$LPh`9@
D$D[v
QQSVWd
t=MOC
HtHu4j
t*=RCC
;7|G;p
tR99u2
GetCommandLineW
GetTempFileNameW
SetDefaultCommConfigA
WriteConsoleInputW
GetConsoleAliasesLengthW
GetModuleHandleExA
GetLocaleInfoA
GetConsoleAliasExesA
CommConfigDialogA
FindResourceW
BuildCommDCBAndTimeoutsA
EnumCalendarInfoW
ReadConsoleA
InterlockedDecrement
InitializeSListHead
GetNamedPipeHandleStateA
SetComputerNameW
GetComputerNameW
OpenSemaphoreA
FreeEnvironmentStringsA
GenerateConsoleCtrlEvent
FindNextVolumeMountPointA
GetCompressedFileSizeW
WaitNamedPipeW
EnumTimeFormatsA
EnumTimeFormatsW
GetCommandLineA
GetDriveTypeA
GetEnvironmentStrings
FindResourceExA
GetConsoleCP
LoadLibraryW
GetConsoleMode
GetCalendarInfoW
IsBadCodePtr
SetConsoleCP
DeleteVolumeMountPointW
GetFileAttributesA
EnumSystemCodePagesA
HeapQueryInformation
SetSystemPowerState
GetAtomNameW
GetVolumePathNameA
GetStartupInfoW
CreateMailslotW
DisconnectNamedPipe
FlushFileBuffers
GetShortPathNameA
GetConsoleAliasesW
InterlockedExchange
GetLastError
IsDBCSLeadByteEx
SetLastError
ReadConsoleOutputCharacterA
PeekConsoleInputW
MoveFileW
EnumSystemCodePagesW
FindClose
LoadLibraryA
InterlockedExchangeAdd
LocalAlloc
SetCalendarInfoW
CreateHardLinkW
AddAtomW
RemoveDirectoryW
OpenJobObjectW
GetTapeParameters
GetPrivateProfileSectionNamesA
GetOEMCP
EnumDateFormatsA
GetModuleHandleA
FindNextFileW
GetStringTypeW
VirtualProtect
PurgeComm
QueryPerformanceFrequency
FindFirstVolumeA
ReadConsoleInputW
GetWindowsDirectoryW
GetVolumeNameForVolumeMountPointW
DeleteFileW
GetCurrentProcessId
AddConsoleAliasA
ReadConsoleOutputCharacterW
SwitchToThread
KERNEL32.dll
CharUpperBuffA
CharUpperA
USER32.dll
GetKerningPairsA
GDI32.dll
MoveFileA
HeapFree
HeapAlloc
GetProcAddress
GetModuleHandleW
ExitProcess
DecodePointer
HeapReAlloc
HeapSetInformation
RaiseException
IsProcessorFeaturePresent
EncodePointer
HeapCreate
WriteFile
GetStdHandle
GetModuleFileNameW
EnterCriticalSection
LeaveCriticalSection
SetFilePointer
SetHandleCount
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
GetCPInfo
GetACP
IsValidCodePage
CloseHandle
FreeEnvironmentStringsW
GetEnvironmentStringsW
QueryPerformanceCounter
GetTickCount
GetSystemTimeAsFileTime
SetStdHandle
WideCharToMultiByte
RtlUnwind
MultiByteToWideChar
HeapSize
LCMapStringW
WriteConsoleW
ReadFile
CreateFileW
DeleteFileA
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVexception@std@@
.?AVbad_alloc@std@@
.?AVbad_exception@std@@
}~||~~
||~||y
||~~~{}
z|~z|}
{|{z|~
}~~}}{
}~|z}|}
~~zz~|
}||z{|{
}~~|}|
{yz|{z
z~}{~z{
|~|~}y|
~}{|~~}
}{z{~y
{z~z|{
|{{~{z
~}z}}}
~}}{z{
~{{~}~}}
~{{|y~
~}}~|{~~}~
}{~~{{{
z~~}y|
|~||~}
TTTTTTTTTTTTTTTTTTTTTTTTTT
MMMMMMMMMMMMMMMMMMMMM
((((((
(((((U
UUUUUUUUUUUU(M
(((((((U(UUU(M
EE((((((((((EM
EEEEEEEEEEE(EM
MMMMMMMMMEMMMM
MMMMMMMMMMMMMMMMMMMMM
MMMMMMMMMMMMMMMMMMMMM
RRRRRRRRRRR
RRRRRRRRR

O99999999999999999999999OlRRUM
PMMMMMMMMMMMMMMMMMMMMMMMPlRRUM
PM?66666666
777xxxccxcccc~~~~~~
77777xxxcccccccc~oMP
77777xxxxxccccoMP@
777xxxxxc
77777xx
0PM?6
0PM?66
66666666
888666666666
??888666666666
??8866666666
RfO9,,,
;;;;;;

hhhhhhhh
\@@@@@@@@@@@@@@$h
wh@q
@qQQ
QQQQ
QQQ
ZZ{{{{
ZZZ{{{{
ZZZ{{{Z
qqqq==
qqqq====
bbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbb
bbbbbbb
9bbbbbb
9bbbbb
eC?<bbbb
555333
555333
$$$53333ukJ9
$$$55uk=
bbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbb
**********
NNNNNNN
NNNNNNNNN
Xun wacoc fixoneheceda boyocefijaruko. Vujixagam sirafebasasarul sefo rewubehoxawegam. Zugodojapujep zixon. Yayiyowa yim wafohaxi toxavuhewo gazikogugufibol. Tafazo cexasuge jeyufayow gur. Ranucifeleciwac wavaworuhiba. Gihafazowo cujaxez. Tapuwalice. Xicacelole gizub. Sudelite. Xikes conovuwox xaberugaxor piyatanozivume. Lideboye xomehug yuzij ropepiwikaramih. Hodopuhoyomat. Wifepozu gezawidejiku wodehimihos nibupeforetayij taxagidululiy. Wicodexahuf. Xiyagebihu. Kij nesudoh. Dufotutocopep gadamuwud fakocebuwo besep fupuxuratolupa. Mocohumu losi dimoxi kogazoleb rez. Gayamuwosaye jucixobuxuze tutihiwonivuv linalenoxaxu bunuxu. Foxabeloyovit. Kikik yitucatotu nep. Lehehixujo huwivujadedak riyucago. Buzedu xeliboxahini jik cisucomawecocu codaley. Wuhut man yigeziliwu. Bubaca. Powox xewesolu sabohoxokafe. Parayigujom rilarovo hepozazupumekod hamom. Yad vawajowehucor. Fadotalexavo vuvi jivixuj suwudoyoja. Dite fexi sop kisavifitom vac. Sugazibum tetir menodelav gabawon tejucefe. Bikovipo xarak. Parukavidu. Wigesa
mscoree.dll
wruntime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
@Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
KERNEL32.DLL
(null)
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
WUSER32.DLL
((((( H
h(((( H
H
ECONOUT$
saxigataga
bowixusidoh
zacalefokigumiyuwanuwekiwililideferihojowahotutosisetuxunelumukeyilagugohubuh
milujapudegipijugisosdfgixefufimiwuyubeyazagutasukorawamuropusojoliheyegewapacohi
guvosukanazayonuxiruvamepijeturepoculusezimigicitipojohayahe
tipepoyuhaceyaxopusekibuna
royubiyeyivewuzinagifuhulevayudavomoyoyomodetodiwesudaciyudirafayiwizuvevixororoxuhih
Piv pebovof wudizuvecigudoluz
paxijuhevitewabem patiyosejowivasekotiyibat webibesejafov bugipakanukixoxiduporetanesotimu limuboxajabojutahaduvepugufe
Xiw silavucenulotosade yux
kfepirahaponejere visavotu
DUHUFEGUTEJUCUV
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
027485B3
InternalName
Onomilichas.exe
LegalTrademark1
DoesntGet
OriginalFilename
Bujingle.exe
ProductName
Jsdgsdfu
ProductVersion
87.100.86.81
VarFileInfo
Translation
SLupatofezucib lukizaxewem nejaveg cugewamezoy dapim menihewup tedekucolasated firif
[Xuhuruhofeg botorazila gol ziyiretumusu tirupa fohifabuf hemir vemusiz hotadarat pafepejusuEPado juliwox dibixubabicuhu heb lizahefekofiz lepefamipehave fudavapoDZapazewafum yutapuc gusoxorolulemi toweledimi vatigadiba yemofobekezcLupotejope yoyifovo tepuwubabawev dule zefusiwuhuyo gasotetoficocaz jisu sademojoxo yalidezokoz voy7Yilayuvo lupi gulowoweni wapafel lex lew tuzi pisayuser
ISelu kicisufa gupad gorifo hogire zuyufuf puzuwavof vehahegiyofin ludirenAHucecodef wupokenecopawid xavayac tabinonitatez fegofivizawi jova
Tinelifijaxi)Noyawavih hik falanifasevefes bivut tohugBPozifanipi debesodege bivuvolitawu wis yekicusi tacupogilok piyicoTPaxenuc tezoneva nipepasipigeni jizarohi bexeruza vij yumezolomudobo xivopaxatacetivWXemax bamaju sotexa ratitofasog guzocixit nup zubufihewetixe yaguxomimok beribadunogune
'Mowibifasazuboc zomirozefedodup xozagub
`Bayumuzetatutas yikozac yavu boyesovuwop yuvayasozerop guzeyiya virayulomom sahar puwulugurucamojFifotijuxonu nozolirokol zel luruc wekazobixoyihun pitehajeyimilu pinowaniw dopahuzipeji zitu docavujikacu
Lamefitukehovim[Nonozovon yeso minazusofe kuyosohefuhu winobodo limuyemeda dexawubuxeyu kovoy fineyado zesi!Tuwuyih yema sikiveg gemexivoxijaDCoyonowategasaz masikexij zeyubibevebe cuz howecebejucak volaxogiwix
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Tofsee.4!c
Elastic malicious (high confidence)
ClamAV Clean
FireEye Generic.mg.4452e402d1149530
CAT-QuickHeal Ransom.Stop.P5
Skyhigh BehavesLike.Win32.Lockbit.gh
ALYac Clean
Cylance unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Trojan.GenericKD.69613297
K7GW Hacktool ( 700007861 )
CrowdStrike win/malicious_confidence_100% (W)
Baidu Clean
VirIT Clean
Symantec ML.Attribute.HighConfidence
tehtris Generic.Malware
ESET-NOD32 a variant of Win32/Kryptik.HUWD
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Trojan.GenericKD.69613297
Rising Trojan.Generic@AI.100 (RDML:op9SLJdBHqc4jlfBecUOFA)
Sophos ML/PE-A
F-Secure Clean
DrWeb Trojan.PWS.Steam.36526
VIPRE Clean
TrendMicro TrojanSpy.Win32.VIDAR.YXDJFZ
Trapmine malicious.high.ml.score
CMC Clean
Emsisoft Trojan.GenericKD.69613297 (B)
Ikarus Trojan.Crypt
Jiangmin Clean
Webroot W32.Trojan.FL
Google Detected
Avira TR/Crypt.Agent.sdsnd
MAX malware (ai score=88)
Antiy-AVL Trojan[Backdoor]/Win32.Tofsee
Kingsoft malware.kb.a.1000
Microsoft Trojan:Win32/SmokeLoader.H!MTB
Gridinsoft Spy.Win32.Vidar.bot
Xcitium Clean
Arcabit Trojan.Generic.D42636F1
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
GData Trojan.GenericKD.69613297
Varist W32/Kryptik.KTB2.gen!Eldorado
AhnLab-V3 Infostealer/Win.SmokeLoader.C5391028
Acronis suspicious
McAfee Artemis!4452E402D114
TACHYON Clean
DeepInstinct MALICIOUS
VBA32 Clean
Malwarebytes Trojan.MalPack.GS
Panda Clean
Zoner Clean
TrendMicro-HouseCall TrojanSpy.Win32.VIDAR.YXDJFZ
Tencent Trojan.Win32.Obfuscated.gen
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Kryptik.HUWD!tr
BitDefenderTheta Clean
AVG Win32:CrypterX-gen [Trj]
Cybereason malicious.0c0b87
Avast Win32:CrypterX-gen [Trj]
No IRMA results available.