Static | ZeroBOX

PE Compile Time

2023-01-29 22:55:08

PDB Path

C:\live35\yedowinid.pdb

PE Imphash

32e191367f9932caeeb9bed9a82d73da

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0002896e 0x00028a00 6.79879860801
.data 0x0002a000 0x026764e0 0x00001600 1.85962653641
.rsrc 0x026a1000 0x0001df40 0x0001e000 4.13239951826

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x026bdce8 0x000000b0 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_CURSOR 0x026bdce8 0x000000b0 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x026bd658 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_STRING 0x026bee18 0x00000126 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x026bee18 0x00000126 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x026bee18 0x00000126 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x026bee18 0x00000126 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x026bdb80 0x00000038 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x026bdb80 0x00000038 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_CURSOR 0x026bdd98 0x00000022 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x026b7298 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x026b7298 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x026b7298 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x026b7298 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x026b7298 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x026bddc0 0x00000228 LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library KERNEL32.dll:
0x401014 SetLocalTime
0x401018 EndUpdateResourceW
0x401024 SignalObjectAndWait
0x401028 SetComputerNameW
0x40102c AddConsoleAliasW
0x401030 GetModuleHandleW
0x401034 CreateNamedPipeW
0x40103c GetDateFormatA
0x401040 GetVolumePathNameW
0x401044 GlobalAlloc
0x401048 LoadLibraryW
0x40104c GetConsoleWindow
0x401054 FormatMessageW
0x40105c CreateFileW
0x401060 CreateJobObjectA
0x401064 GetConsoleAliasesW
0x401068 GetLastError
0x40106c SetLastError
0x401070 GetProcAddress
0x401074 TlsGetValue
0x401080 OpenWaitableTimerA
0x401084 LoadLibraryA
0x401088 SetCalendarInfoW
0x40108c CreateFileMappingW
0x401094 RemoveDirectoryW
0x40109c FoldStringW
0x4010a0 GlobalFindAtomW
0x4010a8 GetModuleHandleA
0x4010ac ReadConsoleInputW
0x4010b0 GetCurrentProcessId
0x4010b4 GlobalAddAtomW
0x4010bc CreateFileA
0x4010c0 EnumDateFormatsExW
0x4010c4 GetComputerNameA
0x4010c8 VirtualAlloc
0x4010cc DebugActiveProcess
0x4010d0 Sleep
0x4010d4 ExitProcess
0x4010d8 GetCommandLineA
0x4010dc GetStartupInfoA
0x4010e0 HeapAlloc
0x4010e4 HeapFree
0x4010f0 SetHandleCount
0x4010f4 GetStdHandle
0x4010f8 GetFileType
0x401100 TerminateProcess
0x401104 GetCurrentProcess
0x401110 IsDebuggerPresent
0x401114 TlsAlloc
0x401118 TlsSetValue
0x40111c TlsFree
0x401124 GetCurrentThreadId
0x40112c HeapSize
0x401130 CloseHandle
0x401134 WriteFile
0x401138 GetModuleFileNameA
0x401140 RaiseException
0x401150 WideCharToMultiByte
0x401154 HeapCreate
0x401158 VirtualFree
0x401160 GetTickCount
0x401168 HeapReAlloc
0x40116c SetFilePointer
0x401170 GetConsoleCP
0x401174 GetConsoleMode
0x401178 RtlUnwind
0x40117c GetCPInfo
0x401180 GetACP
0x401184 GetOEMCP
0x401188 IsValidCodePage
0x40118c SetStdHandle
0x401190 FlushFileBuffers
0x401194 GetLocaleInfoA
0x401198 WriteConsoleA
0x40119c GetConsoleOutputCP
0x4011a0 WriteConsoleW
0x4011a4 MultiByteToWideChar
0x4011a8 GetStringTypeA
0x4011ac GetStringTypeW
0x4011b0 LCMapStringA
0x4011b4 LCMapStringW
Library USER32.dll:
0x4011bc DdeQueryStringW
0x4011c0 CharUpperW
0x4011c4 GetMessageExtraInfo
Library GDI32.dll:
0x40100c GetDeviceGammaRamp
Library ADVAPI32.dll:

!This program cannot be run in DOS mode.
`.data
bad allocation
Unknown exception
CorExitProcess
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
CONOUT$
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
bad allocation
Fosunotikewuneb xesejolinulu jidedirag cemepa
Mokedani lozegixo zofimajadapetu zojadema
Vur cucovidotusu vuyatoy sicon fijabejugade
pifinajerarekarasazuliwefavofis
Defafu nerigeni yel yerumiranosuk
bad exception
vinabeduh jopovutotifo rikihupufulipenehutaguxuhohozec
msimg32.dll
Muvuzireheg sipexogu decob wadin mikovelozo
Xurim luzofediluheziz rojo sulajamav yojerejurehofa
Vaxemul huxukakumenazu
bad exception
C:\live35\yedowinid.pdb
VVVVVVVh
VVVVVVht-@
PSh4.@
D$ PSS
uBh^f@
0SSSSS
j@j ^V
t hL/@
tehKS@
>=Yt1j
URPQQhX
0A@@Ju
0SSSSS
0SSSSS
;t$,v-
UQPXY]Y[
PPPPPPPP
PPPPPPPP
t"SS9]
t+WWVPV
T9PISd
omRENN`
Hkkfm?
qY.]!1
}Wanyz]
GNff_07
'43pv-T
)n[r/]
AmBM)T
eQ"4u~g
Y/7$%@
u|Iz3#
Y8!SU}
,Wo}*u
D&EB/.
w=j3&6
JCfq6NL
?"'0kG
ARS-{
[:rqXg
4lkdW
wpoJGB
]I^`|4h
>i7rw&h
$~D%,v
/rd(cN
"ZtB:x
>X\d\?
R-dD0;
n\IO5T
p8=![<
xF&T2o
5@_}:d*
2ed`0,
Q_V}!(
kGfY=
Cu"{kQ
Su{R'
?XXC'H
${L,2t
p,p7[J
.u@5wi
%k_EL2M>4
?!Os9a#d
,1 W|
MroK^6
q?"FPlRDw;
_ZG)b?
=_yI(y
Q R7B8
9|U uh
km??/2
|9E0w^
seQk[j
=8Lav@HXGi
2yg<fN
(@=5oE
!wikW3
E\kE%!x
fF|mZr@D
3+BF\8
PrtK]dsm
!-!n]SX
S9=]!q
NJ$jH1
}N"Ic@d
QU[C2x
k43S'2
6cp=RW
3W)Tr2`n
b?X"U#
J`R_al
:kGEjt
B".'.
tZXlv
K1S;@e
!6M2OKo
L&qE9-
98me>w
9;1Vdp
/z=}$Z
{-__Kl*=
nGO~[.
@2,=ECIp/
OJ!mE-
ic2|Z?
r>!P J|A
r%.;S'==
XAp4~1
:om4("
0d^aXB
C"mX>O?%
{}wEvW
VZto"V
8:t8O$/
*y<`pp`
<|!7w0w
*).{F&
=x5$Re
yzm:lrz
6i3yaUM
9PkLYXp
K\p6[5
Z$Gy3]s+
vuri'G
=S54`"
\ha*->
TaWgyE
u#]-,d
&;6.#]V$
"_2cUs
?nsfS<1
M yH`a
oQzjm9
nSe)jJz
Pq N!b
:0hsG
{J,4Z;
4km2:j
Q;Vy=
T61ti,
AR_ORF
qd gp&
)OMQs5n
N[5=Ox[
+oWbhj
mj"=0y7
TU5`b);i;
C6Q(+D%$
/P_Iwj
M*t#ph
-':`I!
t\l1v
4vz`o2
v&S)'G~
M=nwtz
b+J!9h^9
\\s+zw
QQSVWd
HtHu4j
s[S;7|G;w
YYhP/@
tR99u2
DebugActiveProcess
GetComputerNameA
EnumDateFormatsExW
TlsGetValue
SetLocalTime
EndUpdateResourceW
SetConsoleTextAttribute
GetEnvironmentStringsW
SignalObjectAndWait
SetComputerNameW
AddConsoleAliasW
GetModuleHandleW
CreateNamedPipeW
GetWindowsDirectoryA
GetDateFormatA
GetVolumePathNameW
GlobalAlloc
LoadLibraryW
GetConsoleWindow
GetConsoleAliasExesLengthW
FormatMessageW
InterlockedPopEntrySList
CreateFileW
CreateJobObjectA
GetConsoleAliasesW
GetLastError
SetLastError
GetProcAddress
VirtualAlloc
CreateMemoryResourceNotification
GetPrivateProfileStringA
OpenWaitableTimerA
LoadLibraryA
SetCalendarInfoW
CreateFileMappingW
FindFirstVolumeMountPointW
RemoveDirectoryW
SetThreadIdealProcessor
FoldStringW
GlobalFindAtomW
ConvertDefaultLocale
GetModuleHandleA
ReadConsoleInputW
GetCurrentProcessId
GlobalAddAtomW
ReadConsoleOutputCharacterW
KERNEL32.dll
CharUpperW
DdeQueryStringW
GetMessageExtraInfo
USER32.dll
CreateCompatibleBitmap
GetDeviceGammaRamp
GDI32.dll
SetKernelObjectSecurity
ADVAPI32.dll
ExitProcess
GetCommandLineA
GetStartupInfoA
HeapAlloc
HeapFree
EnterCriticalSection
LeaveCriticalSection
SetHandleCount
GetStdHandle
GetFileType
DeleteCriticalSection
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
InterlockedDecrement
HeapSize
CloseHandle
WriteFile
GetModuleFileNameA
InitializeCriticalSectionAndSpinCount
RaiseException
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
HeapCreate
VirtualFree
QueryPerformanceCounter
GetTickCount
GetSystemTimeAsFileTime
HeapReAlloc
SetFilePointer
GetConsoleCP
GetConsoleMode
RtlUnwind
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
SetStdHandle
FlushFileBuffers
GetLocaleInfoA
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
MultiByteToWideChar
GetStringTypeA
GetStringTypeW
LCMapStringA
LCMapStringW
CreateFileA
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((((8
_((((((((((((((((((((
((((((((((((((((((
G((((((((((((((((
(((((((((((((((>h
((((((((((((((
(((((((((((((((8H
VOhG(((((((((((((((
(((((((((((
((((((((((
((((((((((g
((((((((((((;"
b((((((((((((
(((((((((((((
g((((((((((((g2
((((((((((((g2(((((
((((((((((((((((((
m((((((((((((((((((
((((((((((((((((((
((((((((((((((((((
\((((((((((((((((((((((((((((((((((((((
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuu
GGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGGG
uuuuuuuuuG
uuuuuuuGGw
uuuuuG
gggQQQ
ggQQQQ
gggggQQQ
"""""""""
""""""""
ppp 66666666
YEnnpnpppp
kkkkkkkkkkkkk
ggQQQQ
"ggggQQQ
Pxxxxxxxxix
wwGuuuuuu
uuuuuuuuu
uuuuuuuuu
Uuuuuuuuuu
Uuuuuuuuuuu
"+uuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuu
nnnnnn
"uuuuuuuuuuuuuuuuuuuuuuuuu
uuuuuuuuuuuuuuuuuuuuuuuuuuuw
uuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuu
>UUUUU
eeeeeeee
x}}}}}Z
z{|z~{
z}~}z}
~}~}}||
z{z}~z
|~|~}|
y~~|{~
~}~|~|{
z~{y|}|{}
}{y{~}
~z~{|~|
}}z~}|
|}~~{}y
|y}~}~
|z|z||}zy{
}{}~|~|
|~z~{{
}|z~z|~}~|~~{
}~~|~z~|
z{~{}}{{
~z}~|}}
{}~|~|
z}{~z|
{{~~}~|
~{{|}~}
}{{|~}z
~}|{}|
{}{~}}
~{yz{{
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^y
R^^^^^^^^^^^^^^^^^k
^^^^^^^^^^^^^^^^kU*
^^^^^^^^^^^^^^^k
^^^^^^^^^^^^^^^k
^^^^^^^^^^^^^^^ko(
^^^^^^^^^^^^^^^k
^^^^^^^^^^^^^^^k:
^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^2
^^^^^^^^^^^^^^^2r.P
^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^
la!!0a*
^^^^^^^^^^^^^^^
3~EADDA
^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^^
r^^^^^^^^^^^^^^^^
+so^^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^^
8i^^^^^^^^^^^^^^^^
o^^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^^0
'N'qqq
^^^^^^^^^^^^^^^^
S3VU^^^^^^^^^^^^^^^^b
V0^^^^^^^^^^^^^^^^i
o^^^^^^^^^^^^^^^^i
+o^^^^^^^^^^^^^^^^oQ
^^^^^^^^^^^^^^^^
o^^^^^^^^^^^^^^^^0
^^^^^^^^^^^^^^^^U
^^^^^^^^^^^^^^^^0
^^^^^^^^^^^^^^^^ir
^^^^^^^^^^^^^^^^^i
(ok^^^^^^^^^^^^^^^^^
r^^^^^^^^^^^^^^^^^^
^^^^^^^^^^^^^^^^^^^^
kkkkkkk
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
;;;;;;;;;;;
z;;;;;;;;;;;+d
h&!;;;;;;;;;;;
;;;;;;;;;;;
;;;;;;;;;;;*3
@;;;;;;;;;;;
;;;;;;;;;;;*6|
;;;;;;;;;;;&6"
;;;;;;;;;;;
M;;;;;;;;;;;0|
M;;;;;;;;;;;
;;;;;;;;;;;*
;;;;;;;;;;;&_$C:
;;;;;;;;;;;*_t
;;;;;;;;;;;*b
;;;;;;;;;;;
;;;;;;;;;;;
;;;;;;;;;;;
;;;;;;;;;;;I
;;;;;;;;;;;
;;;;;;;;;;;
;;;;;;;;;;;
;;;;;;;;;;;
;;;;;;;;;;;
:;;;;;;;;;;;h
;;;;;;;;;;;G
;;;;;;;;;;;;;;;;;;iiii
;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;
IEx<[D
JJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJJ8%
NJJJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJJ
NJJJJJJJJJJJJJJJJ
NJJJJJJJJJJJJJJJJ
h%NJJJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJJ&
NJJJJJJJJJJJJJJJJ>8hh
weBdBB
NJJJJJJJJJJJJJJJJ>
JJJJJJJJJJJJJJJJNN
N>JJJJJJJJJJJJJJJJ
>JJJJJJJJJJJJJJJJ&8
JJJJJJJJJJJJJJJJ8
JJJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJJ88
JJJJJJJJJJJJJJJJ8
%JJJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJ.8
JJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJ
JJJJJJJJJJJJJJJ
JJJJJJJJJJJJJa
%N&N%'
JJJJJJJJJJJJ
JJJJJJJJJJJJ8
JJJJJJJJJJJJ
JJJJJJJJJJJJ>
aJJJJJJJJJJJJNH
'aJJJJJJJJJJJJ
aJJJJJJJJJJJJ
JJJJJJJJJJJJ
JJJJJJJJJJJJ.%N
JJJJJJJJJJJJJ
33aaaaa
JJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJJ
jjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjjj
jMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMMj
jMMMMM
xxxxxxxx
xxxxxx
xxxxxxxxxxx
xxxxxx
xxxxxxxxx
xxxxxxx
xxxxxxxxxx
xxxxxxxx
xxxxxxxxxx
xxxxxx
xxxxxxx
xxxxxxx
x xxxxx
jMMMMM
xxxxxx
xxxxx
jMMMMM
x xxxxx
jMMMMMM
xxxxxxMj
jMMMMMMM
x xxxxxGj
jMMMMMMMMMM
xxxxMj
jMMMMMMMMMMM
xxxMj
jMMMMMMMMM
x Mj
jMMMMMMMMMMMMMM
jMMMMMMMMMMMM
ee99``
ee99``
ee9```
ee99u`
g[[[+++
eee9``
YYYYYY
uuuuuuuuuuuuuuuuuuuuuuuuuu1
EEEEEEE
>>>>>>
>>>>xv
4444--
jj-----
~D444-s
W_444444444444444444444
S444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444444
((((((((((((
qqqqqq
mlqqqq(
("""""
("""""""
cccccccccl
ccccccccccc
mscoree.dll
KERNEL32.DLL
((((( H
h(((( H
H
Wusekegavuya tucixihab sidivoropoh lidenalopevelul
yupavacumayazaxinanuj
Babuvupabovog
Sebekisexixu zevuji yasu
Cig gegitoso
Niyur cevitu peb
eMokigehate xolega viricuh mazu fiboy
Wugodeveyuce rikarajun zozalegixicut wanu
kernel32.dll
kernel32.dll
Huhutuwased fajiz fibu pac fihuxuyiyi
Peg xahopiy vihamuvujerezid
VS_VERSION_INFO
StringFileInfo
045230F3
FileDescription
Landing
LegalCopyright
Copyright (C) 2022, Crazy
OriginalFilename
Jungle
ProductsVersion
19.10.80.70
ProductionVersion
78.52.30.68
VarFileInfo
Translation
SVizulipilewum zilufitasukiwo kahevacugawigi dotawimetobo covasabodijoce fulofepobac3Tuyudiwepam mez nenateperaxif nozay huju yupereveyo
Picimexanayetox tiz
Cexova cifodato lir(Fujiwibogarilu duvi xoyixomagikiye tuwefbDirib sugoxim varadifice zejegano bofave kajetejofavuw rovirijunemud hevozoh rimotisas pemasobitoj
HoraguvadezusoqSogigu zevopajerihan sakamodos vubuwepihanut bumigemasuy vayo zujavibabumit dujotilu najamegelezo vegiwotufigumivVNixujej xik lam hofatafihuf lotafufoziged ronay bibisonaniliv meb yoyawad canudohilipiCFozolotamasalam pilenuxenur jabik xizenogevud xafudipir zigemelefoh
Zejuza zasal xaniv higejajucWSulu zehihi yoreketajitic ruravidor zinixuzayobacud kikabumehejubik derohowojiwofer hun8Zamojivej jafo nifohumubakih momudisesotoka nocowetabonukFidofoxodizeyu defopujekoze yujobuketekabuk bedufo xihejiso nagexunuviga xihesuhajeyo keduh tevoxe lipubava4Kiwobotohudov vijapizihu yaxufum fopayapopevatov tit Lacopavaso dekubu xusotojavameto?Vusabosurif defazo japedeki nehimucurimiheb zih hidiweleyasosofFWavehuma wijufijoxoke kin kugisab legarulapo wugelodexa rozuyawub kubo
Tudovamow
Jilujalilefil
TuvofamorikCHelokavuh banok zelal curebogihanawo teyikeficorago wacuyuzinoxafiv
$Guruvijanacihay cuceruxubuk logacari
<Vodukibojofun zikoxev piv nikoxezeyovuzev zasenujinayat wexo
Vunucejuwaz geloxo
aLufoxarus vanezusihanaxer kesufidom sineselonakel kija midacocefigo raxacateholic sidiyeyokuritilOHuxetoyovineg yen xatipi moho vocuzejekim benupedojihunez mixakebuj vayo lutopu
BedanayisonAXukinibukuhof nerikorizogaz yevub coh xigegobonipazo lini pek galXWagefotenuv ronigoco mirobapotaxoxef wuyopaf bubuhi reja vumeropo vuyu zesig semujojunuc
]Povodigovuh tukonopuvono wekiw xalog fuyo heb pedazejofetupo wedarehojujuyu cowikonixap cexuy
Cahup vix mavabiwaf kedejifija
Cin5Hufudebobizudug xolecol zavogeyubucobot senasufinivuw
Kecupamogabekej labowotocizila
Pugaxax nalawip red zahifiv
Buziyupikakaju
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
tehtris Generic.Malware
DrWeb Clean
ClamAV Win.Packer.pkr_ce1a-9980177-0
CMC Clean
CAT-QuickHeal Ransom.Stop.P5
Skyhigh BehavesLike.Win32.Lockbit.dh
McAfee Clean
Malwarebytes Clean
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0056f9be1 )
BitDefender Clean
K7GW Trojan ( 0056f9be1 )
Cybereason Clean
Arcabit Clean
BitDefenderTheta Clean
VirIT Clean
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 Clean
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky VHO:Backdoor.Win32.Convagent.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Rising Trojan.SmokeLoader!1.EF01 (CLASSIC)
Sophos Troj/Krypt-VK
F-Secure Clean
Baidu Clean
Zillya Clean
TrendMicro Clean
Trapmine malicious.high.ml.score
FireEye Generic.mg.cbea2e95a6df177f
Emsisoft Clean
SentinelOne Static AI - Suspicious PE
Jiangmin Clean
Webroot Clean
Google Detected
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Xcitium Clean
Microsoft Program:Win32/Wacapew.C!ml
SUPERAntiSpyware Clean
ZoneAlarm Clean
GData Clean
Varist Clean
AhnLab-V3 Downloader/Win.BeamWinHTTP.R520470
Acronis Clean
VBA32 BScope.Trojan.Yakes
ALYac Clean
TACHYON Clean
DeepInstinct MALICIOUS
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Trojan.Win32.Obfuscated.gen
Yandex Clean
Ikarus Trojan.Win32.Azorult
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.ERHN!tr
AVG Clean
Avast Clean
CrowdStrike win/malicious_confidence_100% (D)
No IRMA results available.