Static | ZeroBOX

PE Compile Time

2023-03-27 21:06:39

PDB Path

C:\suzivoxirujove\bibe\ladawohini.pdb

PE Imphash

8476da44cd20575d5795ed699abb22f1

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0003fe9a 0x00040000 7.76885707756
.data 0x00041000 0x000b30e4 0x00002200 2.66622573733
.rsrc 0x000f5000 0x000114b8 0x00011600 4.49304197137
.reloc 0x00107000 0x000022d2 0x00002400 3.32805035971

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x001017f8 0x0000000c LANG_ENGLISH SUBLANG_ENGLISH_US data
AFX_DIALOG_LAYOUT 0x001017f8 0x0000000c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_CURSOR 0x001050d0 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_CURSOR 0x001050d0 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_CURSOR 0x001050d0 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_CURSOR 0x001050d0 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_CURSOR 0x001050d0 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_CURSOR 0x001050d0 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_CURSOR 0x001050d0 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_CURSOR 0x001050d0 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x001012d0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_STRING 0x00106268 0x0000024a LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x00106268 0x0000024a LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x00106268 0x0000024a LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x001017a0 0x00000048 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_CURSOR 0x00105638 0x00000030 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_CURSOR 0x00105638 0x00000030 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_CURSOR 0x00105638 0x00000030 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x00101738 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x00101738 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x00105668 0x0000026c LANG_ENGLISH SUBLANG_ENGLISH_US data
None 0x001017e8 0x0000000a LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library KERNEL32.dll:
0x401010 SetComputerNameExA
0x401014 AllocConsole
0x401018 FindResourceExW
0x401024 GlobalAddAtomA
0x401028 GetCommState
0x40102c GetConsoleAliasA
0x401034 GetTickCount
0x40103c GetConsoleAliasesA
0x401044 GetVolumePathNameW
0x401048 WideCharToMultiByte
0x401058 InterlockedExchange
0x401060 GetLastError
0x401068 SetLastError
0x40106c BackupRead
0x401070 GetProcAddress
0x401074 VirtualAlloc
0x401078 PeekConsoleInputW
0x40107c PeekNamedPipe
0x401080 RemoveDirectoryA
0x401084 LoadLibraryA
0x401088 OpenWaitableTimerW
0x40108c LocalAlloc
0x401094 GetNumberFormatW
0x401098 RemoveDirectoryW
0x40109c FoldStringW
0x4010a0 GetModuleFileNameA
0x4010a4 GetOEMCP
0x4010ac GetModuleHandleA
0x4010b0 UpdateResourceW
0x4010b4 FatalExit
0x4010bc VirtualProtect
0x4010c0 ReadConsoleInputW
0x4010c8 AddConsoleAliasA
0x4010cc SetFileAttributesW
0x4010d4 WriteConsoleW
0x4010d8 GetConsoleOutputCP
0x4010dc FindFirstFileW
0x4010e0 SetPriorityClass
0x4010e4 CreateNamedPipeA
0x4010e8 CreateFileA
0x4010ec WriteConsoleA
0x4010f0 CloseHandle
0x4010f4 HeapFree
0x4010f8 GetModuleHandleW
0x4010fc Sleep
0x401100 ExitProcess
0x401104 GetStartupInfoW
0x401108 GetCPInfo
0x401114 GetACP
0x401118 IsValidCodePage
0x40111c TlsGetValue
0x401120 TlsAlloc
0x401124 TlsSetValue
0x401128 TlsFree
0x40112c GetCurrentThreadId
0x401130 HeapAlloc
0x401134 RaiseException
0x401138 HeapCreate
0x40113c VirtualFree
0x40114c HeapReAlloc
0x401150 HeapSize
0x401154 MultiByteToWideChar
0x401158 ReadFile
0x40115c TerminateProcess
0x401160 GetCurrentProcess
0x40116c IsDebuggerPresent
0x401170 SetHandleCount
0x401174 GetStdHandle
0x401178 GetFileType
0x40117c GetStartupInfoA
0x401180 SetFilePointer
0x401184 WriteFile
0x40118c GetModuleFileNameW
0x401194 GetCommandLineW
0x40119c GetCurrentProcessId
0x4011a4 LCMapStringA
0x4011a8 LCMapStringW
0x4011ac GetStringTypeA
0x4011b0 GetStringTypeW
0x4011b4 GetLocaleInfoA
0x4011b8 RtlUnwind
0x4011bc SetStdHandle
0x4011c0 GetConsoleCP
0x4011c4 GetConsoleMode
0x4011c8 FlushFileBuffers
Library USER32.dll:
0x4011d0 LoadMenuW
0x4011d4 CharToOemBuffW
Library GDI32.dll:
0x401000 GetCharWidthA
Library ole32.dll:
0x4011e0 StringFromIID

!This program cannot be run in DOS mode.
`.data
@.reloc
bad allocation
Unknown exception
CorExitProcess
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
_nextafter
_hypot
RUUUUU
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
GAIsProcessorFeaturePresent
KERNEL32
i^^?(>
Y:/(A6>
< Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
?1#QNAN
1#SNAN
CONOUT$
bad allocation
rowozetiveyugubum cemipoveluboveregiyuzax lasofub fibipodus fovisefuvewukiluyavaxowivajicof
bad exception
banoholoboba
msimg32.dll
C:\suzivoxirujove\bibe\ladawohini.pdb
VVVVVVVV
VVVVVVh
F;5h/O
WWWWWW
PWhpY@
VVVVVV
VVVVVVVV
0A@@Ju
<+t(<-t$:
+t HHt
0SSSSS
f-00f=
tNIt?It0It
0WWWWW
j@j ^V
u&hP%@
f-00f=
>=Yt1j
QQSVWh
t"SS9]
0SSSSS
PPPPPPPP
0SSSSS
PPPPPPPP
_VVVVV
^WWWWW
tRHtCHt4Ht%HtFHHt
URPQQh
0WWWWW
AAFFf;
t+WWVPV
0SSSSS
_VVVVV
;t$,v-
UQPXY]Y[
sZ'OW)B_
,+#~eX
#$c}||
5vnX4|
5vnX4|
Qb}:tK)8S
3xybse
<.:of0z
4Wg59o
MPtF|h
.:&Wik
I=39@^
cvsz$z
pVGDC^
+|%!p9
$i>5RA{"
PfM1!F
zZ~I"T
0>,hN'2?
N&>;pI
I&Z;ur=I
8nN,fvTcU
}2Lz/8
PdmX3F
=g,[Y@$k
Nf(Ok6
ezt-Z-
KxIbP"NC
}v Cj1
2XfN;3
l.I^UT"6=
glSgLv
@${;V3
M@R:gL
7+?v[u
jYy\ks
xHNGvn
%fsunMK/>
#/Tfq@
8Z*JWR
4^aMqn
4m3RW/2
B,;-BM
~{u(ggM
Z8;9q$d(h
?R0 x~
f2VmhR
`r+$),
vpFj8o@P
9,z~,n'
S\W9+`
AQ7_'r
MD(5LD
A[kTr}aU
p5LC?K
1 )nYx
/Afo;iE>
zYsC~;
F7LWH8
JB}/,:o
Lg, `,eZ
mu"w7"
JXv+t1
0aH5_VU
41~3t\\
PN'E_Q
w\;Obb{
zB/#@663
l'mlL!
5uiU{u
ZeD]ti[z
+{E[;
DYLjT?
M<>Ms2
oaM`zA9dA'
9zT#7x3
bFa-e7]a
cV|zyP
NZ.i~r
V.VNoj
PN~=].
K2FVrY
=,CAXV
ZxO)eu
uQsm#;
m'Z-r~z
1]l,KVDa
9^cTXA:_
hIrqaL
yc&M>@
0"jEAIY
%C\q"n
CCS@DEF
@-SPWi}an
KtD Td/
Z{N!$B
!4_E0"
M6oRC|`
>y#k4^e
`xe Mu1
:?.F\
(8IFI=qd'
x;#wCh
wypQ+Os
xq`'MO
;22x1>
\ajQ{'
s3BDPdfm
i6N-8C
HqI4)O
;,CB\F
58cl]z
+r~O)7<#${l
YN9GDD
:k1d,{y
|9t p7
/9.E,Fg
?,Kn1N
u2O?%:&
oiSK~?L5
-,|$[y
ZU_E-rn
GN\/.D
"Y:K8W
QBU'>V}
Lwv8w#
^!d7-d
OSUgN{k
q0C1S2
azV=tf?
EPJW`Y
%^F6kF
7_&{]"
(PAkD*
,37}"7
!`]_\v9\4
WjLdt(
,rKxNxV5
W_YRd#
/E}6F>
dDL9C
dt):*Z
Jyyme0+^
Ic5)#w4
s3D[L
&<g)A5
2wMtSS
?oo4;E
4/#J2=
eD;QR:
]4=Sr}
` I]-$Y
aX[cF1
+S}-,H
eejIK2
j;;,=4K4
}9r%fD
<%&KlS
6G"{7R
'O=7yL]*
8^xR>-
FCUgR}t<<E
-T:cZS$;qz#u:b
gLEn3"`('
=/KgBc
5CxsVO
\s7yV:
pQ .s
d_vw^*
eHRHAA
'2%kdT
B9/^J\
zUs#4>
O-30w4
):`)%m
kDk@]l
SB,EMk
Zx];cB
B;"J~#o
>`/h5o
L$+k5`>
/E^./.!_
~4fMm\
(hH3[R
U}Za5>n
vTu"b4o
\axI/|vB
d \?Kkj
qs(qY1
WnoJ@a
E,}UXTE
{z35<m
eU8dj,3
!4+tT
V}k1{P
{'<TjP
5]yUL?G
i8kb?v
(;}elh
4>B_|;Q
h-/q9_
RU^aqD
wh=R4-
e$.,07
;xhy+pZ
rW`Wbz
Ay*V$q
qd~YdU
$JCOko
^93l3/r
N3Z]a
Q"rxxL
P'2p[R&m
I<yMyYq
14A1fVe\
zV:s}/
,V(/Ih5kX
'iVW#<
{NIxr`
B1p!NI
'\1PD$ 3r^}p
%$IYNv|
Yd+hS.
:@wB$1
p\IWVc
&+G??{GM
mtRQOi
X*\u,X
;=hq_7
lg1{NP
zT#TP#L
)3h|6.
t_2<}b
%F2<AP
d&Cx7d
U)mb-S;K
Rr/(!F
i8<$!`
sb0b8/
#7}<@I+
Rjtg-Gr
%]:nRW
8t9Y+O
929_kA
Vnt4QO[S=
>2Sb9<^H
8<c 6)
4/2-!A8
n*C$0IT
p%)S=$E,m
>meh\j
g~NP0|
2~}0}rU
WW=PKIxLU
$<3v>e
6r27[/
mH<x;2c
FT2B|weH
?sM22h)A
jW^Jq~I
C(r%i
858o\[
]]qEi.
a^Rwq\
{antif
rs[u_M
/$'e#
R,L~-N
0!{e{c
(+[lcP
W>NE3)
5IzP[dk
#%h{OC'6f
H6Gf+R
Jw7v||
d2pPpD
AXOJ`3
c.g3|V[
:;rbsCz
Xoqk>m
#6%dE@
+d*=,k
EVZOSFg
* JTYKqF
CreateFileA
SetPriorityClass
FindFirstFileW
PeekNamedPipe
SetComputerNameExA
AllocConsole
FindResourceExW
GetConsoleAliasExesLengthA
DeleteVolumeMountPointA
GlobalAddAtomA
GetCommState
GetConsoleAliasA
FreeEnvironmentStringsA
GetTickCount
ReadDirectoryChangesW
GetConsoleAliasesA
GetWindowsDirectoryA
GetVolumePathNameW
WideCharToMultiByte
GetSystemWindowsDirectoryA
EnumSystemCodePagesA
IsProcessorFeaturePresent
InterlockedExchange
FillConsoleOutputCharacterW
GetLastError
InterlockedFlushSList
SetLastError
BackupRead
GetProcAddress
VirtualAlloc
PeekConsoleInputW
CreateNamedPipeA
RemoveDirectoryA
LoadLibraryA
OpenWaitableTimerW
LocalAlloc
SetConsoleCtrlHandler
GetNumberFormatW
RemoveDirectoryW
FoldStringW
GetModuleFileNameA
GetOEMCP
DebugSetProcessKillOnExit
GetModuleHandleA
UpdateResourceW
FatalExit
FreeEnvironmentStringsW
VirtualProtect
ReadConsoleInputW
GetWindowsDirectoryW
AddConsoleAliasA
SetFileAttributesW
LocalFileTimeToFileTime
KERNEL32.dll
ChangeDisplaySettingsA
CharToOemBuffW
LoadMenuW
USER32.dll
GetCharABCWidthsFloatA
GetCharWidthA
GetBitmapDimensionEx
GDI32.dll
StringFromIID
ole32.dll
HeapFree
GetModuleHandleW
ExitProcess
GetStartupInfoW
GetCPInfo
InterlockedIncrement
InterlockedDecrement
GetACP
IsValidCodePage
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
GetCurrentThreadId
HeapAlloc
RaiseException
HeapCreate
VirtualFree
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
HeapReAlloc
HeapSize
MultiByteToWideChar
ReadFile
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
SetHandleCount
GetStdHandle
GetFileType
GetStartupInfoA
SetFilePointer
WriteFile
InitializeCriticalSectionAndSpinCount
GetModuleFileNameW
GetEnvironmentStringsW
GetCommandLineW
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
LCMapStringA
LCMapStringW
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
RtlUnwind
SetStdHandle
GetConsoleCP
GetConsoleMode
FlushFileBuffers
CloseHandle
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
kkkkk|k|||
777777777777
77777777777g
7777777777g
c7777777777v
777777777g
uuu+++
%77777777v
uuuu|++
777777
kuu++++
uuuuu+++
kkkkkuuu|V
kkkkiA
ZZZZZZZZ
7`7````````77d
7```7`7`````C
>uu++++
D777`777777``7`7`7`
uuuu+++
7777777`777777777%
b7777777777777777C
777b777777777777a
b7b7b7+
)b77777777777777
.k|u|u|k
)7b777b77777777`
H77777777777777[
I)77b77b7777777
CCCCCCCCCCC
11111nnnnn
UUUUUr
V'''''w
NNNNNNNNNNNNNN
ssssssss
YXXXXX
JJJJJJJ
=XXGXXXG
=JXXGXG
'''''''''''
''''''''''''V
'''''''''''''''''''''g'''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''
}|z{}z
{{z||{
~~|}y}{{y
{{{z||~
{zz}|{{|~
|||}|z|z
~|z}~|
{}|z{}{z
~}zzy|
|~|{}}{
{|z~}|~|
|}|}~{
~|}}~}{y}
}~}||y
y|~~{y
~}{}}}
||}{~|}{z
}}}y{z
~~{}{}~~~z
z}~|}|~
}~}}~|
~~}{}}}
|||~{~
}}|}~~
~}~~}y|}{{|y|
}z{|z~
3333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333
[3333333333333333u
3333333333333333
3333333333333333gu
pg3333333333333333
3333333333333333
3333333333333333
3333333333333333
3333333333333333pgt
3333333333333333
3333333333333333
Adikek7
3333333333333333
3333333333333333|Z
3333333333333333p
3333333333333333
3333333333333333|6
3333333333333333S@
3333333333333333
|3333333333333333
63333333333333333
3333333333333333@@
333333333333333S|
333333333333333
333333333333333Z
|333333333333333
333333333333333
333333333333333
333333333333333S
333333333333333S
333333333333333
3333333333333
S333333333333
S333333333333
333333333333
333333333333
333333333333
333333333333
333333333333
"333333333333
m&&ew[
S333333333333Z
@3333333333333
6"""""
|3333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333333
($$?v(A
(r(YG
////////////////////////////////////R'
//////RK#v,'
//////
//////
"p//////
//////
H//////R6
//////
://///:
//////
//////////////////////////////////
iiiiiiii
iiiiiiii
iiiiii
iiiiii
iiiiiiiii
iiiiiiiiii
iiiiiiii
iiiiiii
iiiiiiiii

2 2\2`2d2
6 6$6(6,6064686<6@6D6H6L6P6T6X6\6`6d6h6l6p6t6x6|6
7 7$7(7,7074787<7@7D7H7L7
; ;(;@;};
=+=6=C=T=g=}=
=+>1>L>f>
?D?Z?u?}?
0#02080>0D0M0f0n0w0
0(191E1N1\1l1t1~1
22$21272>2l2x2
6)646a6l6~6
0?0J0T0
2%252J2
5)5;5B5H5Z5b5m5
9$929;9E9y9
9:T:g:
;<<H<[<m<
=7=`=q=
0.0?0{0
0$1*151A1V1]1q1x1
242C2J2W2z2
2%3+3G3_3
3"4,4d4l4
5!5*565;5@5F5J5P5U5[5`5o5
0\1,4C4
9):5:E:Q:n:t:
<L=l=q=w={=
=+>,?<?M?U?e?v?
1!1-1R1[1d1q1
2O2S2W2[2_2c2g2k2o2s2w2{2
<!=R=n=
>B>P>V>y>
2,212@2I2V2a2s2
3,33383A3N3T3n3
768{8N:Y:a:u:
1A2Q2]2o2
4)4B4z4
? ?8?X?r?
020<0b0
1:1B1V1`1~1
2(242@2t2~2
3 3,3d3s3{3
444:4l4
:):M:V:]:f:
;0;H;Z;~;
?#?j?o?
@0I0O0
1E1f1s1
2$292^2
2*3@3P3
4=6I6O6T6Z6
747A7d7q7}7
8"8,848?8o8
<(</<_<
2(2/272<2@2D2m2
3$3(3,303
4M4T4X4\4`4d4h4l4p4
4i5:7@7F7L7R7X7_7f7m7t7{7
8'8.878
484>4G4N4~4r5
5686?6G6L6P6T6}6
6.74787<7@7
8+8]8d8h8l8p8t8x8|8
8=9I9U:T<
=H=e=y=
0#131N1n1
4&4+494
575B5e5
6.636K6Q6`6f6u6{6
787w7~7
9D9Q90:?:
3s3'4G475`5
8!979x9
96:@:X:
?8?X?t?x?
0 0@0L0h0t0
101L1P1p1
202P2p2
0(0,0D0X0
6(6L6X6\6`6d6h6p6t647<7D7L7T7\7d7l7t7|7
;*;.;2;6;@<H<
?$?,?4?<?D?L?T?\?d?l?t?|?
0 0$0(0,0004080<0@0D0H0L0P0T0X0\0`0d0h0l0p0t0x0|0
4N5R5V5Z5^5b5f5j5n5r5v5z5~5
6"6&6*6.62666:6>6B6F6J6
mscoree.dll
KERNEL32.DLL
((((( H
h(((( H
H
lojunuforulavudexaxolicicohep
dibexejehesohahavepekibit
kernel32.dll
fkernel32.dll
segopo
AFX_DIALOG_LAYOUT
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
042230F3
FileDescription
Banzay
LegalCopyright
Copyright (C) 2022, Fofigraf
OriginalFilenames
glitters
ProductsVersion
28.10.31.48
ProductName
Fascader
ProductionVersion
18.10.70.29
VarFileInfo
Translation
WKupexu kazirasayuginun yuwoj mayubotoyuye mufose boliritesa wilikitiy yutosopes xuluberTVocov zidaginuzikaxod vojufaco nexajutez cofawedebicefal kozic ranube pahijajonawiga=Tehuziwum tocucihadado gurepef kahuvucoxop buyu kef gajasejedNZalowonumul pepixehapeyo wivux gise cehicohuwa decediwirijez feraza fulolaguceFZus how gud yutiganob nutoy kagejelaku cebeceha hifarus kofazujacu sih#Mucizamabasoc map goca haromiferami?Wexuxafexeput juzumidogofefa cowir dixet daculubovedo juwexabev
CFufedinuhuzix yopuhenik nig mituxisav jagusok yulub lahukemuhevituk
%Yujuwuxo nuves sulibucekox faritotifi5Negaxes cuxinicex kiwonorin gufaledolubico soyujotiveZLorucosaco bebojohomiguna pezetonivori xeki cepexipad hapiwivo mofo hadobonucac refakorawi]Dubocuhakodu yazicarefuku ralibako fesuretox pirosela taku xeduhuwowifoz remelopuciceze yatiw<Naxavosoka doduto bado ravuw yawenopap huyokoluk tehinivanoy
Cujaroyot bekuk dapepiku molejXafojubacave mukiz yex xisirizotuhe bofutinikaburur mevud sowekulun jayelijewi punorekebekaf bipotucegebekCVajulerican xuxobezivi kixuha cobovuvip yitiluj fudek cafanoxekijeg
0Wuxipakumavobo boyuyu xumikexow lisa mewuj sopon6Tujumituv menuzaw nigawecu zepunaja bijobatejobiw moyi
UDalujug malodumayican rivebenadiku tilevotegehu xovacawuxo peyehiyurikuse pewacadeyer
Futarozixep
Puvi ruvij hobumavi hiduwijej
Bipono huzutowajoyo xiyiwuya8Jofepi pucu zalafahudipi dezo kesogudununabi jovupaxadef7Zaz lezetopuzode fazu moni pubul bekifacujipoho kijabog
Kuhinedidufov
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Clean
ClamAV Win.Packer.pkr_ce1a-9980177-0
CMC Clean
CAT-QuickHeal Ransom.Stop.P5
Skyhigh BehavesLike.Win32.Lockbit.fc
McAfee Clean
Malwarebytes Clean
VIPRE Clean
Sangfor Ransom.Win32.Save.a
K7AntiVirus Trojan ( 005ace911 )
BitDefender Clean
K7GW Trojan ( 005ace911 )
Cybereason malicious.561a4e
BitDefenderTheta Clean
VirIT Clean
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky VHO:Backdoor.Win32.Mokes.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.SmokeLoader!1.EB63 (CLASSIC)
Sophos Troj/Krypt-VK
Baidu Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
Trapmine suspicious.low.ml.score
FireEye Generic.mg.3ed791d0d3ef43ad
Emsisoft Clean
SentinelOne Static AI - Malicious PE
GData Clean
Jiangmin Clean
Webroot Clean
Google Detected
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft malware.kb.a.1000
Gridinsoft Ransom.Win32.STOP.bot!n
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm VHO:Backdoor.Win32.Mokes.gen
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Varist Clean
AhnLab-V3 Trojan/Win.Stealc.R614190
Acronis suspicious
VBA32 Malware-Cryptor.Grygoryi.3
ALYac Clean
TACHYON Clean
DeepInstinct MALICIOUS
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Trojan.Win32.Obfuscated.gen
Yandex Clean
Ikarus Trojan.SmokeLoader
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.ERHN!tr
AVG RansomX-gen [Ransom]
Avast RansomX-gen [Ransom]
CrowdStrike win/malicious_confidence_100% (D)
No IRMA results available.