Static | ZeroBOX

PE Compile Time

2022-06-13 16:33:02

PDB Path

C:\hoxi\hobokepeteye46\kum9\cagotihit4-pow.pdb

PE Imphash

fb06b251ec823ec2b055f38e217cf323

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00038b66 0x00038c00 7.71112983915
.data 0x0003a000 0x000b1dc0 0x00001e00 2.99524952402
.rsrc 0x000ec000 0x00012d30 0x00012e00 4.04315327596
.reloc 0x000ff000 0x00002256 0x00002400 3.42822548096

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x000fc2c8 0x00000002 LANG_ENGLISH SUBLANG_ENGLISH_US data
AFX_DIALOG_LAYOUT 0x000fc2c8 0x00000002 LANG_ENGLISH SUBLANG_ENGLISH_US data
AFX_DIALOG_LAYOUT 0x000fc2c8 0x00000002 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_CURSOR 0x000fda20 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_CURSOR 0x000fda20 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_CURSOR 0x000fda20 0x00000568 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x000fbd60 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_STRING 0x000feb18 0x00000214 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x000feb18 0x00000214 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x000feb18 0x00000214 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x000fc240 0x00000048 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_CURSOR 0x000fdf88 0x00000030 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000f59a0 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000f59a0 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x000f59a0 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x000fdfb8 0x00000268 LANG_ENGLISH SUBLANG_ENGLISH_US MS Windows COFF Motorola 68000 object file
None 0x000fc288 0x0000000a LANG_ENGLISH SUBLANG_ENGLISH_US data
None 0x000fc288 0x0000000a LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library KERNEL32.dll:
0x401018 SetComputerNameExA
0x401020 FindResourceW
0x40102c GlobalAddAtomA
0x401030 GetCommState
0x401038 CreateDirectoryW
0x40103c AddConsoleAliasW
0x401048 GetModuleHandleW
0x40104c GetTickCount
0x401050 CreateNamedPipeW
0x401054 GetConsoleAliasesA
0x401058 GetPriorityClass
0x40105c GetCurrencyFormatW
0x401060 LoadLibraryW
0x401064 GetExitCodeProcess
0x40106c GetConsoleAliasW
0x401070 MultiByteToWideChar
0x401074 GetVolumePathNameA
0x401078 GetLastError
0x401080 FindFirstFileW
0x401084 GetProcAddress
0x401088 VirtualAlloc
0x40108c BackupWrite
0x401090 RemoveDirectoryA
0x401098 SearchPathA
0x4010a0 OpenWaitableTimerW
0x4010a4 LocalAlloc
0x4010a8 GetNumberFormatW
0x4010b0 FoldStringA
0x4010b4 GlobalFindAtomW
0x4010bc UpdateResourceW
0x4010c0 VirtualProtect
0x4010c4 PeekConsoleInputA
0x4010c8 ReadConsoleInputW
0x4010d0 SetFileAttributesW
0x4010d8 CreateFileA
0x4010dc SetVolumeLabelA
0x4010e4 SetLastError
0x4010e8 GetModuleHandleA
0x4010ec HeapAlloc
0x4010f0 Sleep
0x4010f4 ExitProcess
0x4010f8 GetStartupInfoW
0x4010fc RaiseException
0x401100 RtlUnwind
0x401104 GetCPInfo
0x401110 GetACP
0x401114 GetOEMCP
0x401118 IsValidCodePage
0x40111c TlsGetValue
0x401120 TlsAlloc
0x401124 TlsSetValue
0x401128 TlsFree
0x40112c GetCurrentThreadId
0x401130 TerminateProcess
0x401134 GetCurrentProcess
0x401140 IsDebuggerPresent
0x401144 HeapFree
0x401154 VirtualFree
0x401158 HeapReAlloc
0x40115c HeapCreate
0x401160 WriteFile
0x401164 GetStdHandle
0x401168 GetModuleFileNameA
0x40116c HeapSize
0x401170 LoadLibraryA
0x401178 GetModuleFileNameW
0x401184 GetCommandLineW
0x401188 SetHandleCount
0x40118c GetFileType
0x401190 GetStartupInfoA
0x401198 GetCurrentProcessId
0x4011a0 LCMapStringA
0x4011a4 WideCharToMultiByte
0x4011a8 LCMapStringW
0x4011ac GetStringTypeA
0x4011b0 GetStringTypeW
0x4011b4 GetLocaleInfoA
Library USER32.dll:
0x4011c4 LoadMenuW
0x4011c8 CharToOemBuffW
Library GDI32.dll:
0x401000 GetCharWidthA
0x40100c GetBoundsRect
Library SHELL32.dll:
0x4011bc ShellAboutW

!This program cannot be run in DOS mode.
`.data
@.reloc
bad allocation
string too long
invalid string position
Unknown exception
CorExitProcess
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
_nextafter
_hypot
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
RUUUUU
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
GAIsProcessorFeaturePresent
KERNEL32
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
i^^?(>
Y:/(A6>
< Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
?1#QNAN
1#SNAN
bad allocation
redapohaturujonicaxikiracas
vepiterotatacerewerecebetiw
mosegoxotajace
suvukefasodego bideyeri jatuzexunolihakepazituzoguj cupakonu susokuzizujoloyuvog
vujumo
bad exception
ak judelotasitemozuked
yinezihexabujunujaci
C:\hoxi\hobokepeteye46\kum9\cagotihit4-pow.pdb
u1VVVVVV
VVVVVVVV
VVVVVVhhY@
VVVVVV
PVh`Z@
VVVVVV
0WWWWW
0WWWWW
QQSVWd
HtHu4j
s[S;7|G;w
tR99u2
0A@@Ju
<+t(<-t$:
+t HHt
0SSSSS
f-00f=
tNIt?It0It
u&hP$@
f-00f=
>=Yt1j
QQSVWh
j@j ^V
GWh</@
t"SS9]
FVh</@
0SSSSS
PPPPPPPP
0SSSSS
PPPPPPPP
_VVVVV
^WWWWW
tRHtCHt4Ht%HtFHHt
URPQQh
0WWWWW
AAFFf;
;t$,v-
UQPXY]Y[
t+WWVPV
0SSSSS
_VVVVV
b)PL_o&
{Q9ok9
qz!$24
EO.lQU
Z'*A.
I6vEsX
Ny\dzp
ZHL?c;
C%?*09F
|U\FVO
F>(gbz
&trGo-
w%ZJ0x
(O$v,@
wR|yH%
:La6]7H
vs?3w~
Xyr,[I`
(4|mz?
QL>2Wh
xQL4/|9
vA>)+o!
L(Af@]DW
PHTW:R
Xg;)oX
WAcRTZs`
#7Py15JB%
hCx/<XR
j!9RxsT
gShj$I
NB}e=R*
JA-ZSng
or(1e"
)dYWgK
d8qf$k
ULXsy
GRV**)
x@xqW/
(%:!h
7H5#6$O
G;:'~<_,3
@VR(Qz
\[dadA
7LuZEB
&*>10^
N(PZGd
x+e:B\G&G
4(S'93\'
JhF~KIe
Mtw2Mb
T_]IHN
"B(4*N
H%v%{Q
&vL|]Jr
yp^EOX
}Xq/+<
GMXSRc
(`?<M"C
$b9HJ&
Ukh,'4
[}>+D;j
^Q"34*E
3o!!i=
#,g3&"
O`VBiH
DFM{d8
rG<d@H
ZUKnA{Ey
xk&^6'
^L2&fv
F+kL3rv
x'g%yC[
vCAP!g
K!BIVK'
rYXda(_
:SI_gaf
@5Lc )
,d(}XA
A,%P1VY"
Ur>[Y-#
hciN)
Nw m_d/
Dp-pE'
Jx3>Ls
wnZ~Px
T?h+m)
n[5H&s
YkZ=\?
af"gGt
56nr@
syNhox
(2Va#
S_E5oY
-R-3Vt
uR:XFM! qx
5S2EKV
k`K7K2
>#z8iM
X)9Z+#sG
Yt_bj3>
W2<%my
#O=djl
qI+MHt
}*qFLj
"&|]o-
+g;h>
Iek~Ph@%/I$a;
*FnH_*
Z.b;:#F
jhmnPjy*d
rJGek>
,;3 Sw
]1Yqrd
!97m4S
dln4zeb6r2
rU`i,a
AHZT&
);@ MZ
[dFj
z!+DP+
H,%4A
g@"puW%
VJ0\4Yy
^q%X%K
b;|\L"
uxiQd9r
fI#bWx=
"*1"}{
WWl*wW{Z2
"m&mg+
pzOBbW
,@]Va.
>N0Q{^x
n EnDU
uE+IIa^A
Q0Rw?&TP
Owe=$`
HNsPj
Hf.v8$t
4l;Kg^
''f!-`
7Ro-{nh{
0m@z#N
-d]K)E
7|Yt!
RFv:}6
i;"=[B
}m|Ya.J
-.jr*
vB(O<Y
OKP.(9
km~W}x=g
q+c/oBg)t
I`#t\'V
-qL@T(0
S!NgQOK^
Tk}:~h6"
rX~{khT
H'{C:
$sbCxM
c_{:Nr
rnun!p
D=k;Ch1
QXCuO(9m
n>X9(d(2[
f&0;5#
-zdui0'uDLE
s>9]&F
H@\'nU
EQ^_Ks
wBKP
uO4^53Ha
5Qs(SxYq6
96X!sG5
x(*'|-
VRU' Q
vgM3=ce
"\j e$f/|p
QCMbjw
Kk8l_^
<;D)Mm
+);AZxk
\wK^E/
@{zSC?
HBau/h
(#5LF'
P4AniM
e1gfL)3
$8ER}C
4#Yi+g
N[_y5`
IdFrB-
C@BDp!
.rYF?|
yq`;u3"
{6G<<We
"#E$~jr
#t'U;#6
,MNiN~
WX()VSD
/0iff}
gTM"Py(
Wh]Zc}
D;OA6S
[,YdnKq{
Zg/1@1
zmkB?<
"0'^&
?9hE7pS
Y?{>K
{AUT7?
K#rxG8
$NsIW{.
;`2(2!
/RgO!kU
RB}'08
r(gr&\
,-T;>R)M
5*dsc$3
0kw27<
Rg> 
_^:[;)
.t?\d0
yzlv`
|5$"xE
:a)qI%Q
<l*,xW
P&(/->0ZqF
^?|*{eH
hGMvy]
O!]Te]
Z`Yc>H
v%XKeu~
7$<Fw!^_
2&>`0YU
H@>VR$*
2,i.xJW
87uT5G
:i6xUg4
ZFp/
PEWo2)
<WPn&R
"oq5DV;(
nh];'W
Q<:>7G
[o"BNS
]=(e@i
f8dqM h
{5z{v+
sgC>wo|14T
i.^lnux
g8ATzx
M8wWG$
j.x8}!
PYr5F\
3%$#S~
+pYbDh
l8WA`_
t}&O-
DOI\4q
v,@6}Gv
R|g+f-
>Q6}XB
;RgXy9
FillConsoleOutputCharacterA
SetVolumeLabelA
CreateFileA
FindFirstFileW
GetConsoleAliasesLengthW
SetComputerNameExA
GetConsoleAliasExesLengthA
FindResourceW
BuildCommDCBAndTimeoutsA
DeleteVolumeMountPointA
GlobalAddAtomA
GetCommState
GetSystemWindowsDirectoryW
CreateDirectoryW
AddConsoleAliasW
FindCloseChangeNotification
FreeEnvironmentStringsA
GetModuleHandleW
GetTickCount
CreateNamedPipeW
GetConsoleAliasesA
GetPriorityClass
GetCurrencyFormatW
LoadLibraryW
GetExitCodeProcess
IsProcessorFeaturePresent
GetConsoleAliasW
MultiByteToWideChar
GetVolumePathNameA
GetLastError
InterlockedFlushSList
SetLastError
GetProcAddress
VirtualAlloc
BackupWrite
RemoveDirectoryA
EnumSystemCodePagesW
SearchPathA
InterlockedExchangeAdd
OpenWaitableTimerW
LocalAlloc
GetNumberFormatW
SetConsoleWindowInfo
FoldStringA
GlobalFindAtomW
DebugSetProcessKillOnExit
UpdateResourceW
VirtualProtect
PeekConsoleInputA
ReadConsoleInputW
GetWindowsDirectoryW
SetFileAttributesW
LocalFileTimeToFileTime
KERNEL32.dll
CharToOemBuffW
LoadMenuW
ChangeDisplaySettingsW
USER32.dll
GetCharABCWidthsFloatA
GetCharacterPlacementA
GetCharWidthA
GetBoundsRect
GDI32.dll
ShellAboutW
SHELL32.dll
HeapAlloc
ExitProcess
GetStartupInfoW
RaiseException
RtlUnwind
GetCPInfo
InterlockedIncrement
InterlockedDecrement
GetACP
GetOEMCP
IsValidCodePage
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
GetCurrentThreadId
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
HeapFree
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
VirtualFree
HeapReAlloc
HeapCreate
WriteFile
GetStdHandle
GetModuleFileNameA
HeapSize
LoadLibraryA
InitializeCriticalSectionAndSpinCount
GetModuleFileNameW
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetCommandLineW
SetHandleCount
GetFileType
GetStartupInfoA
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
LCMapStringA
WideCharToMultiByte
LCMapStringW
GetStringTypeA
GetStringTypeW
GetLocaleInfoA
GetModuleHandleA
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
.?AVbad_alloc@std@@
||{}{~}
{}}}~{
~~{|~{
z}~}{|
}}{z}{
{~{|~|}
~}z||}z
~}{{~~
|}z~}}z~
|||}~}
~|{{~|
{~{z}|
}~|z~~
}|z{{~
z{||}|
}|{{}z{
{~}||~
|}|||{
|{~||z
{}}}~~
~}~|~~
@~~~~uN~~N~u~u~u~uuCuu~u~~N
DDF%Dd
@QhY%22D'
}}kkkkk
}>}}}}
J;D{pK{{
cuQJFcD
OOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO
V
V
V||
V |
V|
V||
V |
V||
V |
V||
V||
a@@@@@@@@@@@@@@@@@@@@@@@@@@
555555555
5555555
5555555555555
555555
55555555
55555555
555555
111OOOOOOOOOOOOOOOOOO11111Ollllll
O1111Olll
O1111Olll
O1111Ollll
O1111O
llllBH
O1111O
O1111O
O1111O
O1111O
O1111O
O1111O
lO1111O
BlO1111O
<1111!d
1111!dd
1111??????????????
111111111111111111111
111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111111
WWWWWW
BBBBBBB9
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
~~~~~~
1<2@2D2H2L2P2T2X2\2`2d2h2
3h3l3p3t30=4=8=
7 7$7(7,7074787<7@7D7H7L7P7T7X7\7`7d7h7l7p7t7x7|7
8 8$8(8,8084888<8@8D8H8L8
< <$<(<0<H<X<\<l<p<
=$=<=L=P=X=p=
='>6>C>M>
090K0Y0`0m0|0
1"1/151[1j1
22(2/2=2B2J2U2[2i2q2
3&383T3
4&434@4H4S4Z4c4u4
5#51595C5K5Q5s5
6.63696[6h6p6u6<7]7l8
>">Q>^>q>
4!595b5
6)646a6l6~6
8R8X8x8
9"9)939:9e9p9
:,:1:H:
=S>[>n>y>~>
?'?g?t?
0I1W1i1t1
2 252Z2n2
7'848>8L8U8_8
:V;b;u;
<*<Q<z<
>1?H?Y?
0>0D0O0[0p0w0
1%1/161N1]1d1q1
2?2E2a2y2
3<3F3~3
44'4.434;4D4P4U4Z4`4d4j4o4u4z4
v0F3]3
7?7X7_7g7l7p7t7
8N8T8X8\8`8
9!9K9}9
9N:`:2;<;I;d;k;
<I=U=e=q=
0K1L2\2m2u2
2#3+383
4)454A4M4r4{4
5'505o5s5w5{5
01%111
20262?2R2v2
3+393>3
6 6%6.6K6Q6\6a6i6o6y6
>r>L?T?l?
5&6/6;6t6}6
:.:::F:R:~:
:$;.;6;W;k;
<#<+<1<H<N<_<v<}<
>1>8><>@>D>H>L>P>T>
?!?<?C?H?L?P?q?
:0@0D0H0L0
5%636z6
6P7Y7_7
;;q;|;
==$=*=
>>@>F>x>
?!?I?b?
70=0e0
0X1^1d1j1p1v1}1
2#2)2/2E2L2
7'84:F:X:z:
?$?3?9?H?N?\?e?t?y?
0J0Q0W0
484>4J4
9#9,9T9q9
9 9$9)9D9T9
:0:4:8:@:T:\:p:x:
: ;@;\;`;|;
< <D<P<X<
=(=H=h=
>8>X>x>
?8?@?T?\?p?x?|?
0$0D0d0h0
5P6`6p6
9$9,949<9D9L9T9\9d9l9t9|9
94;<;D;L;T;\;d;l;t;|;
<*<.<2<6<J<N<R<V<d<p<t<x<|<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
1>2B2F2J2N2R2V2Z2^2b2f2j2n2r2v2z2~2
3"3&3*3.32363:3
mscoree.dll
KERNEL32.DLL
((((( H
h(((( H
H
wavojuvowidorujowujusuramofok
kernel32.dll
kernel32.dll
fujisoc
Pipivoxev hitoroganow fogacohujicu
msimg32.dll
AFX_DIALOG_LAYOUT
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
042230F3
FileDescription
Vanzay
LegalCopyright
Copyright (C) 2022, Junior
OriginalFilenames
glitters
ProductsVersion
28.19.31.48
ProductName
Fascadent
ProductionVersion
35.99.14.19
VarFileInfo
Translation
^Suxafepaw sofugele hotuhahoci gewapevup kisukibiwibitel bowedejafek guhibaroyon rerikabiwejudaMGusiyuwebosi zujezasiluyudof xutegelatu lobanodihayeme nipehel sohemipejozixa-Yacixupexay nukeh pesutuyalajuk sogamixoyebad
Gura wucuzavupohoruxFJinuz tococim fad fezebecabalum cocugavi hum xecucezav titebatufuvupaj7Luvoyokajuh wolerosusakore hoxa koge ciso nikavuzij tey
Zasemehipadihuz
Kekupoputa del
Liyamopirodo
gBesidacek wivu maducanuz vuvuwuniluxida sihekozoxivu yiyosevameku sezogizuwem potefu rerokokenesoh pixofSema xugufolilu facirixof rakomukoyin nebiwewemabiji pacetijexema yolakuloviyose tanilomaliw gukotevuxIVonaxu jerafepewir gere bucegiyusuhunam ledokuyo sapopavisew viz robucoxe-Yada widupa copagaciwid tijaralohugu beyefogu
Revivejujahe bexub9Gafuwule lir putiwucobujaxak lesasatepohogi vivegenesurap.Pelecujopiheji veduma gojisutepimic bubafexedeIDomigatayowapo morobihuzer tihufexi hulizale picivehujuwem gisubupenitiva
dDohuru zapejone tesa gesulowomalov vowuriyutibusiy zapapebev jeziwufubutago nejakazupa relayofaxejaw^Yekayunazogi kufaxugezuyalad nukemesaxif xojokone piduf mas hacir sosa cixogisimoha zenoyuxexu
;Jaxorafamepoliv dekucebita haxusenihu toxekegivizuba homexo
Gefupi bojoyibijuleha
OYesinejori lamubosicoje yelevecadere niramijijovuc ciciloyufiducu laraximuh dag
XDehajujepelele bedazowu muhano cizuvacoyetane dikub gicidumif wugegikazo dodaxivonax xez
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Generic.4!c
Elastic malicious (high confidence)
DrWeb Clean
MicroWorld-eScan Clean
FireEye Generic.mg.e4c5c50d9c573109
CAT-QuickHeal Ransom.Stop.P5
Skyhigh BehavesLike.Win32.Lockbit.fc
McAfee Artemis!E4C5C50D9C57
Malwarebytes Trojan.MalPack.GS
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005ace911 )
Alibaba Clean
K7GW Trojan ( 005ace911 )
CrowdStrike win/malicious_confidence_100% (W)
Arcabit Clean
BitDefenderTheta Clean
VirIT Clean
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win32/Kryptik.HVDW
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.Zenpak.gen
BitDefender Clean
NANO-Antivirus Clean
SUPERAntiSpyware Clean
Avast BotX-gen [Trj]
Tencent Trojan.Win32.Obfuscated.gen
Sophos Troj/Krypt-VK
F-Secure Clean
Baidu Clean
VIPRE Clean
TrendMicro Clean
Trapmine malicious.moderate.ml.score
CMC Clean
Emsisoft Clean
SentinelOne Static AI - Malicious PE
Jiangmin Clean
Webroot Clean
Google Detected
Avira Clean
MAX Clean
Antiy-AVL Trojan/Win32.Sabsik.fl
Kingsoft malware.kb.a.1000
Gridinsoft Ransom.Win32.STOP.bot!n
Xcitium Clean
Microsoft Trojan:Win32/Znyonm
ViRobot Clean
ZoneAlarm UDS:Trojan.Win32.Zenpak.gen
GData Clean
Varist Clean
AhnLab-V3 Clean
Acronis suspicious
VBA32 BScope.Trojan.Klubdepa
ALYac Clean
TACHYON Clean
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H07K523
Rising Trojan.Generic@AI.100 (RDML:rHLxQ2CYCM0Jx6m5hruroA)
Yandex Clean
Ikarus Trojan.Win32.SmokeLoader
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.ERHN!tr
AVG BotX-gen [Trj]
Cybereason malicious.6d6d10
DeepInstinct MALICIOUS
No IRMA results available.