Static | ZeroBOX

PE Compile Time

2023-02-10 08:07:13

PE Imphash

c8008ea7e1665c11ca589c6a7cb5626c

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0000810e 0x00008200 6.53185956849
.rdata 0x0000a000 0x00016a90 0x00016c00 5.92091207396
.data 0x00021000 0x02728f84 0x00002800 1.04256197655
.rsrc 0x0274a000 0x00009770 0x00009800 5.36882243772

Resources

Name Offset Size Language Sub-language File type
MOTEGUB 0x02750c38 0x00000476 LANG_TSWANA SUBLANG_DEFAULT ASCII text, with very long lines, with no line terminators
RT_CURSOR 0x027510b0 0x00000ea8 LANG_NEUTRAL SUBLANG_NEUTRAL dBase III DBT, version number 0, next free block index 40, 1st item "\251\317"
RT_ICON 0x02750758 0x00000468 LANG_TSWANA SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02750758 0x00000468 LANG_TSWANA SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02750758 0x00000468 LANG_TSWANA SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02750758 0x00000468 LANG_TSWANA SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02750758 0x00000468 LANG_TSWANA SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02750758 0x00000468 LANG_TSWANA SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02750758 0x00000468 LANG_TSWANA SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x02750758 0x00000468 LANG_TSWANA SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x02753040 0x0000072e LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x02753040 0x0000072e LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x02753040 0x0000072e LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x02753040 0x0000072e LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x02751f58 0x00000014 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x02750bc0 0x00000076 LANG_TSWANA SUBLANG_DEFAULT data
RT_VERSION 0x02751f70 0x000001e4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x40a000 GetComputerNameA
0x40a004 LocalUnlock
0x40a008 GetDateFormatW
0x40a00c HeapReAlloc
0x40a010 HeapCompact
0x40a018 GetLocaleInfoA
0x40a01c HeapFree
0x40a020 CreateHardLinkA
0x40a028 GetModuleHandleW
0x40a02c GlobalAlloc
0x40a030 GlobalFindAtomA
0x40a034 LoadLibraryW
0x40a03c WriteConsoleOutputA
0x40a040 SetConsoleCP
0x40a044 GetAtomNameW
0x40a048 CreateFileW
0x40a050 GetLongPathNameW
0x40a054 GetThreadLocale
0x40a058 GetProcAddress
0x40a05c LoadLibraryA
0x40a060 SetCalendarInfoW
0x40a068 HeapWalk
0x40a06c FindAtomA
0x40a070 CreatePipe
0x40a074 GetModuleFileNameA
0x40a078 SetConsoleTitleW
0x40a084 SetFileAttributesW
0x40a088 SetFilePointer
0x40a08c WriteConsoleW
0x40a090 CloseHandle
0x40a094 HeapAlloc
0x40a098 ExitProcess
0x40a09c DecodePointer
0x40a0a0 GetCommandLineA
0x40a0a4 HeapSetInformation
0x40a0a8 GetStartupInfoW
0x40a0ac TerminateProcess
0x40a0b0 GetCurrentProcess
0x40a0bc IsDebuggerPresent
0x40a0c0 WriteFile
0x40a0c4 GetStdHandle
0x40a0c8 GetModuleFileNameW
0x40a0cc HeapCreate
0x40a0d0 EncodePointer
0x40a0dc GetLastError
0x40a0e4 TlsAlloc
0x40a0e8 TlsGetValue
0x40a0ec TlsSetValue
0x40a0f0 TlsFree
0x40a0f8 SetLastError
0x40a0fc GetCurrentThreadId
0x40a108 WideCharToMultiByte
0x40a110 SetHandleCount
0x40a114 GetFileType
0x40a11c GetTickCount
0x40a120 GetCurrentProcessId
0x40a128 Sleep
0x40a12c RtlUnwind
0x40a130 GetCPInfo
0x40a134 GetACP
0x40a138 GetOEMCP
0x40a13c IsValidCodePage
0x40a140 MultiByteToWideChar
0x40a144 HeapSize
0x40a148 GetConsoleCP
0x40a14c GetConsoleMode
0x40a150 FlushFileBuffers
0x40a158 LCMapStringW
0x40a15c GetStringTypeW
0x40a160 ReadFile
0x40a164 SetStdHandle
Library USER32.dll:
0x40a16c GetMonitorInfoW
0x40a170 LoadIconA

!This program cannot be run in DOS mode.
RichZ<
`.rdata
@.data
uTVWh?=@
^SSSSS
j@j ^V
URPQQh
;t$,v-
UQPXY]Y[
t"SS9] u
PPPPPPPP
PPPPPPPP
CorExitProcess
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
1+6=qH
FX70wva
S^'EHt
-c{G2ZXGi%
agash'
gYa<wVbK
Sgi9LV
'@H _an
,(s#Db
J/"0FV,B
9|I3@
N<SJhg
l7xY(-2
i9xP\Z
@IFF@#
dBzug*
Vz1~r$
L}LqRL
]7cd$shvD
+qW:r%<
Z@N-gw
k?0Zr(D
g]nV>mQ
mMw$_BU
wqGqP-
p}wSJF
x/T.%x
emVwo%%k
p>TcC]
FQm]b+
JJ.SF<
t}KH2v
5RF5:]k
q7AtTP
ComO3)
%UQf_$
4.D)9k
1<0G#.L5+
d<Nn%Z
Bf%9$)
'?>N+*bA
A[ ,G=zbLe
0ZikeJ
Is*4p|
#=Uj~8(
*)e?%>
*6yw6jf
c2K %*
Kpj&Ych]
v[gRu(
r.j8x2
@T`[*b
'4Sj}|
0KLgP.Y
vjRr?O
oPZzf6jL
j1[M}l
t$#o ~@
(HNi6TO
yzYmgT
)~|?hA
i\{kc5
G<nw4k
{il3A.-7Aq
m>,{:H
D-y| ~J
}!&0XbY
;nf[H\
IZf:SZ
]U$A|Q
k^w\#h>
x|0)tx
d:!Av[U
=gX,.&3
P#Fup
~#iNx{u
cusuwone
0 %s %d %f
msimg32.dll
GetComputerNameA
LocalUnlock
GetDateFormatW
HeapReAlloc
HeapCompact
GetConsoleAliasesLengthW
GetLocaleInfoA
HeapFree
CreateHardLinkA
GetSystemDefaultLCID
GetModuleHandleW
GlobalAlloc
GlobalFindAtomA
LoadLibraryW
GetConsoleAliasExesLengthW
WriteConsoleOutputA
SetConsoleCP
GetAtomNameW
CreateFileW
WritePrivateProfileStringW
GetLongPathNameW
GetThreadLocale
GetProcAddress
LoadLibraryA
SetCalendarInfoW
FindFirstVolumeMountPointW
HeapWalk
FindAtomA
CreatePipe
GetModuleFileNameA
SetConsoleTitleW
GetCurrentDirectoryA
DeleteCriticalSection
SetFileAttributesW
KERNEL32.dll
GetMonitorInfoW
LoadIconA
USER32.dll
HeapAlloc
ExitProcess
DecodePointer
GetCommandLineA
HeapSetInformation
GetStartupInfoW
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
WriteFile
GetStdHandle
GetModuleFileNameW
HeapCreate
EncodePointer
EnterCriticalSection
LeaveCriticalSection
GetLastError
InitializeCriticalSectionAndSpinCount
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
InterlockedDecrement
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
SetHandleCount
GetFileType
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
RtlUnwind
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
MultiByteToWideChar
HeapSize
GetConsoleCP
GetConsoleMode
FlushFileBuffers
IsProcessorFeaturePresent
LCMapStringW
GetStringTypeW
ReadFile
CloseHandle
WriteConsoleW
SetFilePointer
SetStdHandle
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
+++++++++++++++++
6gkkkkk
6kkkkk
+++++++++++++++++
""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""
"""""""""""""""""""""""""""""""\W""""""""""""""""""""""""""""""\
W"""""""""""""""""""""""""""""\
"""""""""""""""""(\\\\\\\\\\
""""""""""""""""\
W"""""""""""""""\
\""""""""""""""\tB
"""""""""""""\rBbE
""""""""""""\G
"""""""""""\G<YEE
@@@222
""""""""""\_
@@@22bbYee4
"""""""""\
@@@222bYeee
""""""""\
@@@22bb
x""""""""\
Ro@@22bY
"""""""""\
""""""""""\
"""""""""""\
""""""""""""\
\"""""""""""""\0
>""""""""""""""\
W"""""""""""""""(\\\\\\\\\\
W"""""""""""""""""""""""""""(
""""""""""""""""""""""""""""\
"""""""""""""""""""""""""""""\
""""""""""""""""""""""""""""""("""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""""
Yodekejowimapuw. Xug cupepasuzuyu gutitahicegomo zas. Kayuxotaduceluz mab. Bayisak. Tajabukususan. Cogakov vekugu. Sunedoxat cetitijuh. Dorawudarafijer wayizoc tuzoni wesamumafema telebonaj. Surened bezeyami gijojiluy pedapilad hecugawawesit. Bapumuri povamanijo toxuwireg mosumeg. Zudajitumomiva katutatipiz faso. Xamifij. Fugusa yihogejozeji. Lofayokanocuf rici gadaw gegemis zijoparahag. Kedizi. Puziciluhun rahi. Wofehuri bazapimewar rujewev. Neliti fac. Sezetilakiti sazuxovuy karurenotezuc lopogokojifike garajer. Feto gimoximari xonaveyi powuhulohac. Suxapimofe hakebamuruvo laf nepawowarakusi yihesomicumu. Yuhatobojuyij pawexe. Ralahakilexevo habeva fihucebade racinasunalu. Zemocorilotowab. Wuwayes pes nabohuc vapibakefexofa sawotajak. Nihe hone. Duvetuzin jatumomadu hakuzecot nepeseyu wipevirerukon. Golego ganayo vulufuf. Pojidu. Lofov nuvigohododef pezujeti lehefenu. Bufajuri. Sor lihahanoxuged potibu zuser lubuwayoxejure. Jocako jey. Naj midotuci xilagelebupesox gonivuyusiwix jubo. Banukezijeb pivo viwej
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii
jjjjjj
mscoree.dll
Bruntime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
@Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
KERNEL32.DLL
WUSER32.DLL
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
((((( H
h(((( H
H
CONOUT$
tapexuc
kernel32.dll
ldigetufeyukifulax
tucebezajexi tidanum nabozutevodonohukojilumogubef zah dalasohobokihemomidalilahizoyab
MOTEGUB
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
040504E4
FileVersions
57.10.21.33
ProductVersion
92.82.36.45
InternalName
Slupido
LegalCopyrights
CompanyNames
VarFileInfo
Translation
SZeha rubolu lufowolatopazep rimomedoxevas yupirawezoyenug giruvilalo seredi jegutas2Bacusegiwuyalog viga divecesapi yazuy vavedaxohoki
CFocef vudalasoto kik dukasuwog cer zuvizovine yasocuwopuxado pimaye!Ritapixekarul mave nucizeketegite
Weworasafa yuj/Geteyo pavowonusomepuf yezenaroseye siyawuxosef
Domukavuwa maj fevoteyofa3Rutuheporolun zinihepuy kotirusaremiti nunexuhufike(Kuveliy paxepoge fitapabic kololededatez2Nelut yinuwehamusem nahuba bozep mus mibociyimozas$Zalivivihak vuyuzatebofunat wunohohekDazitufewuwixam gegaxakojum bijahuhimop nugovijacow vomi dukowuguf fesohojofafoyov wasitehet yarocarunifanu6Nulakososa yusinutit bamomoru jiciricadefa zuw fikeheciVanikenofami gifizoxeba hidelukavuzon nizu lozohuy mazowece cagakukonujijed yugobifaronato likuh ruxoxime
RekacakarimEXiwepokuvi tate busuburoxana validiwazi tikulunugeteb jilu xigelimegavSiderebikodojim luvo bixisanujoledo jejifuhecife jekeyuhole hopawixeruzoj jeruv poyosizudufudaw pusuxihumofule foguroz
Ranabanu
EGetudoluxukivo sohugihazeweb semejiloxujore yar mejotedid xuyiyeyojal%Vejagewosoweb fozihexi hucugofuhakini
Ceza ganitozoluw hovu wazafu\Jufeyacecozipar doyuwurakicowe vupugazo tadazopunokoj mukalojef dugolukujifej zawiles cugoya9Xazuy jenakuzisozupud kegigamirelus gof nij capuzi yahigo
Lefi tojitiliIJok vupezisozesog pawudicocoy defefubuv yulenahema widemeferovam gabapebowHazacuhoyoravuv wexekufariwoyax jaziserasewige kupajacoh kadewohupupa fapejolavazi buzubunipu deluma soj kivimuzolemehigNiralagigijawex mure sukuwore xuhahitoneb femimimoh witawupune kukirudirid pevezapazokerey cug yurolalu
lKaganificununaf virasuhisa jukanisa bayarezuyutuc hoyudurutaxat citiretu fotutop watigulixis pohamigahoxojuloSorevihum jorenosakisoyey turukacanigu weketujezerid lanabejoro tadoletizixu sarawi gadexacupoyete gekidoluxoyi
Ciyi zoyeBPote hilitucegig cosagexaz rusikofebahor hucawesuher mulatisoz laj
OSayevuy juga kahu hicodacucubux soponasatedafam ram nun diba vehinuyaniru paciyVTed votipez sivafocagiboz gugonoke buhu gek kefoliwovavokor wafedikocogeza zaxucag nul1Bacuhuyetayiwab nuzon sodemusihow jifopojerebocolIFexuxefugahura cifumucalivel rovadawipesun hihij yekika pil romubecawobujAMayetu rec lewukedecahopeg wuhofo wub nafusoyaj dugohovoc xexulewEMaceju wenerarogi kova gefotiyofup luhajim yunimojevuve terikenigivivTYowowerufizog fawodijexules sukifidowogo dipekujejahituv vefahu zaxuzotux guc besihu(Hato luwuxezefe mir munosenuwolu musigelMBinuyarecos mogorositapu joh wiweyotigo lamiligefirako vexopugiro kojuw zucox?Fivaj zije kij kowujevozo gobuvasixe rok marejas ficesovesowene:Xacapagelokim gosapekozeyi darokosamemebu peleha palahumob
Kapuxacipagu kixDTeyuk yifikipoco cahadukaxupoked nixez savafonukemi gasocadi wediyonLXehutag zimuwex cubewuxovenen peyamujac keduxabolalipe xufiwurocikof kehuvaf
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Mokes.m!c
tehtris Generic.Malware
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
ALYac Clean
Cylance unsafe
Zillya Clean
Sangfor Ransom.Win32.Save.a
K7AntiVirus Clean
Alibaba Clean
K7GW Clean
Cybereason Clean
Baidu Clean
VirIT Clean
Paloalto Clean
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 Clean
APEX Malicious
Avast FileRepMalware [Pws]
Cynet Clean
Kaspersky UDS:Trojan.Win32.Strab.gen
BitDefender Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Tencent Clean
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
Trapmine malicious.high.ml.score
FireEye Generic.mg.af2027f509b6f4b2
Emsisoft Clean
SentinelOne Static AI - Malicious PE
GData Clean
Jiangmin Clean
Varist Clean
Avira Clean
Antiy-AVL Clean
Kingsoft malware.kb.a.999
Gridinsoft Trojan.Win32.Downloader.dd!n
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:Trojan.Win32.Strab.gen
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Clean
MAX Clean
VBA32 Clean
Malwarebytes Generic.Malware/Suspicious
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.SmokeLoader!1.F900 (CLASSIC)
Yandex Clean
Ikarus Trojan.Win32.Krypt
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Kryptik.GYGF!tr
BitDefenderTheta Gen:NN.ZexaF.36802.kq0@aqKAeHgG
AVG FileRepMalware [Pws]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (D)
alibabacloud Clean
No IRMA results available.