Static | ZeroBOX

PE Compile Time

2023-07-21 20:18:00

PE Imphash

038fd82a29b15c409ae8a61e434d0fd1

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00043cc0 0x00043e00 7.91771744891
.rdata 0x00045000 0x00002da8 0x00002e00 5.01200407526
.data 0x00048000 0x0000f680 0x00002400 2.04824322307
.rsrc 0x00058000 0x00028980 0x00028a00 4.89262981021

Resources

Name Offset Size Language Sub-language File type
KUSUFOFIHOVAME 0x0007af88 0x000009e7 LANG_JAPANESE SUBLANG_DEFAULT ASCII text, with very long lines, with no line terminators
RT_CURSOR 0x0007efb0 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0007efb0 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0007efb0 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0007efb0 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0007efb0 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0007efb0 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0007efb0 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0007efb0 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0007aab8 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x000801b0 0x000007d0 LANG_JAPANESE SUBLANG_DEFAULT data
RT_STRING 0x000801b0 0x000007d0 LANG_JAPANESE SUBLANG_DEFAULT data
RT_STRING 0x000801b0 0x000007d0 LANG_JAPANESE SUBLANG_DEFAULT data
RT_STRING 0x000801b0 0x000007d0 LANG_JAPANESE SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x0007f518 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0007f518 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0007f518 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0007af20 0x00000068 LANG_JAPANESE SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0007af20 0x00000068 LANG_JAPANESE SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0007af20 0x00000068 LANG_JAPANESE SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0007af20 0x00000068 LANG_JAPANESE SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0007af20 0x00000068 LANG_JAPANESE SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0007af20 0x00000068 LANG_JAPANESE SUBLANG_DEFAULT data
RT_VERSION 0x0007f548 0x00000268 LANG_NEUTRAL SUBLANG_NEUTRAL MS Windows COFF Motorola 68000 object file

Imports

Library KERNEL32.dll:
0x445000 LoadLibraryExW
0x445004 GetComputerNameW
0x445008 GetTickCount
0x44500c GetNumberFormatA
0x44501c TlsSetValue
0x445020 GlobalAlloc
0x445024 LoadLibraryW
0x44502c GetACP
0x445030 IsBadStringPtrA
0x445034 OpenMutexW
0x445038 GetLastError
0x44503c SetLastError
0x445040 GetProcAddress
0x445044 BuildCommDCBW
0x445048 LoadLibraryA
0x445050 GetDiskFreeSpaceA
0x445054 FoldStringA
0x445058 GetModuleFileNameA
0x445060 lstrcatW
0x445064 OutputDebugStringA
0x445068 WriteProcessMemory
0x44506c HeapFree
0x445070 HeapReAlloc
0x445074 GetModuleHandleW
0x445078 ExitProcess
0x44507c DecodePointer
0x445080 GetCommandLineW
0x445084 HeapSetInformation
0x445088 GetStartupInfoW
0x44508c HeapAlloc
0x445090 HeapCreate
0x445094 EncodePointer
0x4450b0 IsDebuggerPresent
0x4450b4 TerminateProcess
0x4450b8 GetCurrentProcess
0x4450bc TlsAlloc
0x4450c0 TlsGetValue
0x4450c4 TlsFree
0x4450cc GetCurrentThreadId
0x4450d4 WriteFile
0x4450d8 GetStdHandle
0x4450dc GetModuleFileNameW
0x4450e8 SetHandleCount
0x4450ec GetFileType
0x4450f4 GetCurrentProcessId
0x4450fc RtlUnwind
0x445100 Sleep
0x445104 WideCharToMultiByte
0x445108 GetCPInfo
0x44510c GetOEMCP
0x445110 IsValidCodePage
0x445114 HeapSize
0x445118 RaiseException
0x445120 LCMapStringW
0x445124 MultiByteToWideChar
0x445128 GetStringTypeW

!This program cannot be run in DOS mode.
`.rdata
@.data
m0C1JZ
PVhtrD
PVh$rD
u&VVVVV
t h`vE
uh4\D
^SSSSS
QQSVWh
j@j ^V
tRHtCHt4Ht%HtFHHt
URPQQh
u}hPhD
;t$,v-
UQPXY]Y[
t"SS9] u
<+t"<-t
+t HHt
PPPPPPPP
PPPPPPPP
fP0]"Ut
P>-m9|
,=b*{0
Lm,bh3
*ps.K/~wc
g]0n4`v
Lm,bh3
# K0>G5M
*9 W(Fa
dCktWw:
sJh)bP
BA:>("
=DCqUKQ
!vS&Up{
8khiaJ
i=-b6|4
*hyg!M
}2{p.<
xq[EL
2,n4ZL
-~f=k
~"~fz4
j_gz!"?
s6cZDE
-5a|[xI%
%<oH-1
7[KZ0)pe2
&SW&}+E
`^KV^=P
KG2~0y
d8'W}k
<G7F f
ehz%P|
R?%+{(
[*Rtw H
g)3#;/
Aa0`&Q
8k>qJZ
ZN|6ND>
IdbaBd=
ob5;p\
@Jx?U'|
!b0mr{>
#+Em_17%?d
J%g-{2q1
!by; M
<`*d=m
!!vW(0
6~HfPh
7tx_xZ
ak+V)/: C
H^@yv*
;b1Z4
JoWx_v]
]39!6~
+34rH@
gNKDHo
5G(b&p
+-%Z5@
D8!$di
| 9<*s
=rH/$
}@JT/?c
.[{>i_
g0mLFc
C>WD2gk!
MY^31n
E8o@;bf
29%WI
\5.=+[
\WSH
NsJbP%
Zgf}J b
x>]' ={
'v}}"W
kz,?G~Km@
Ov!68C.
x)%1g
l;)er
61}6@i
JuH?G>
DI)>v4b
jv%'{O(
|uh:O
U=,2]b
c!4p<U
6[9Hl[
p{l%n/
{Ub2!@
D(c1)G&<s
U2^/KG
99p,4U^
t"|* yl4
-F}`=Ye
Eo6Fwq
!W\vce
e.c@wb
~oZXad`
.a%n8nv
JgkbUG
` i$VKJ}
2@ >1u
T,uQ)$
6$t*C:
{0WLKgoz6
jS4<m)
mUinc-
3nxLsIk
B.7 T|
xHJK\X
^VUg1`
dbh$|K
O+WxlSD
$8/W;M
AITw2d
Y+TX.,
p3U.rn
I=C<Cr
3jrr4(-
)gEG+zd?
AqOQQZ
!9&tuN%
Z'j.7[\
CY3D(ky:
pctqZh
Rf6(yn
xn%paz
>9,j<;
QK-Xz"
)#|^*r
"|P1|}1
9[tpX)
%1(Je
YXnl{N
@\0.mA
#j1ntm
$xKlx:
H4j|1:r=
?~!uAD;R
XHt~,o
x036\M
I63>+J
bR+XSp
:GW';q
[Dbrf@-
azNH!30
()b>]\!
vv"q&\
Dk^l6Zu
J);M5
B__1>q(
J;Ozop
I\fVu78/
13@=E$
C0nv7j
PwC#z9
S9j:-]s
t{Y(=Y
TqTkeD
?dU2Pt
C[Ov5x8
vcF1Yx
qr|j?f
j1Clq1c
a5&%#4Q
I*0 i;
3G5pDE
DhQ~s6:
[D+wY"
h2_To)
lQ2:Ci#
2#]Iu[
QW0O:K
52N^]k
G3#TJi
\n3~)
xMOq;$
H7<aF5g
bw>X<Q
JJ"y|/
i.LF=(
4ouy"
v?"=
B/>[y1
e1Yy>`
OKR:s1
r;pBF^
]gCX@y)!
r`%DQs
*%b*|o
aq:}:0
d5;`:#
nqExE:
EUhDRzx
wS'qu'\R'xY
^\K!fb#
o&=yEB
?:i#zX"
#8^~;F
nt'/0
$F-/K-
!;W~BIe
s(j5$w
>i [i?
YfBl(zh86=
kPXQI)
L.;3^u
sD(GO?/
,j)B]H!
.Npk>E`
Sm@O:D
|82btq$1
u:ffBlt
$&Dk?Ij
E=%({M?
NKzYdis
G^7-Hz
k1Cq>UW
X5~rH2
v}|mBUAs'+
)6VtqjKD
2hudU/
)o)xqu
pN'k0d
Vk*$F9I
hl(c%<
*i|4P{x
Q=s-o1O
>CIfBA
k'bKD~O3
7V6S T
rX[vN!
x'&-jN
GKZ`OCv
j&jN:e}-
@;":^$
y.aj~Cf"E[
g@E^;qn
@kf.^x
u(15z.`6
w_'-zn
aQgyUEh
gzzEbj}-
#e@*jT%
Hw{o%c
*X13xG)<
WM1|5:>
9@13k\
at"%xY
I58Y+')m
D0`{tW^
<-p5L;{
G"?o!1
ntbFjx=
&WGjpu
l Zut
axek>^
GA?EFv
?8G id
jo4A.P%
T<A+Yb
L1i4|*
`>PG(sTZK
|Csv>+
94RcaU(X
2]Y+qS}
I'6KbqD
px%b[T
FF;01_bC
_KKn7_
h+#0`(
EQAq@j
7^\mmS1$
%0^ya9
k%v@kk
&"t@|Z
eU@Bp:W
nyV!-?
[0jq@E
v2'!H#
3Ab~cCv
sg<'YE
piIs~(
Z>~c.t
% ^j('
gYs nq
^&AFAT@@<
8DBQ<
hqq)P.RCC
zX:t_F
+C{4T3
4'.!Eg
hUTp_tr3
=#CEG3
/?WW*T
6!fHG!z3z
j!%<"H
l<;uU5M
suVoMS
aq,UHwl
(RB{A>d
B}z]6
xP=u-Ue+
}}{OE)
_kwKq
^r4y/;
lEx\()
s-):Fp
':'=-\
[D]5(%
-OqtUdY
#o^cR'ns
k4vRHSY#
[55D!4
{GcUr3
Z'Z0h/0g
g5`a\n
\t_`9vk
rbCB]5M
KqUAUd={
|A: FgGzH
w=@* *
F0EhBuK
.t4?V<T
zsu4~k
U?Dz3^
KrdOW6
qK[:nf
x~{l[G
k9aOrL
dz$JyW
qb(tDKSq
P6CXjn
IR`b+kV
LWeCm-
iS3ms3
P&A+OT
DTOqM's
YbC#d(
#(`AefJ3
+^iaD5
n{1N}d
>U3/@v
Cz^=^6&
S="<,c
.+*Pc~
pO5GKe
Nt?"U4[
$.hy%i
Bizp2L
1{9\#
VgF*zI
JiG<:W0
Ps;]iGy
QJ)Ru;
j>&L!uS
ckF?k;
P!$jcf2
:;8sA:
uvwWV<
h,}+(R
XCjlG2
OgXfPG,
dsUkRp
Gnal\K
o5jVqM
$m>O0m
e)&BzDUH
6r;b@t@)
2}3${A
H%r9|1
*~pHxo
}cDyU'
g<3azd
[{A\7
O=wxI|
Y0|tS Q
_mhkZR^mEw
vg*<Hg
~*!Eq4
/R.Y%7
RsnJf1
yPQ%+]
R+@=?s
G>5p %
PD*b-O
fHXrN>x
2Afq*A;
:yaM}(,C
jI^|H.[5g
VOb'$`
<"{ke7
N]?C;]
'jp}N1
^7uk2>
Y::DX^
X&>)v /d\
$rls1#
axEpRs?
M9S-kga
Gj*p'y|
%N$ijkd
E?ULpm
6ZKhx1
rF]cr_H7
Rgs[gP
PF-t|{>
m[] x"
Rv96a<NO
)vQ,=M[j!
8Fx,oVZ
KCy%Lv!
=f5Bs[
_}*KJ:
%tv~|gL
f)\D^U
S$YH93
Unknown exception
CorExitProcess
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
_nextafter
_hypot
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
1#QNAN
1#SNAN
Zoj mudesodipijapazofizelapazodu
kernel32.dll
novotofijuxasaxasibeyi
ravepifacijeducizanilihejabocavo
bad exception
kernel32.dll
VirtualProtect
ducagi
kimerebulewawiligicatewixay
msimg32.dll
LoadLibraryExW
GetComputerNameW
GetTickCount
GetNumberFormatA
GetWindowsDirectoryA
GetUserDefaultLangID
SetProcessPriorityBoost
TlsSetValue
GlobalAlloc
LoadLibraryW
AssignProcessToJobObject
GetACP
IsBadStringPtrA
OpenMutexW
GetLastError
SetLastError
GetProcAddress
BuildCommDCBW
LoadLibraryA
InterlockedExchangeAdd
GetDiskFreeSpaceA
FoldStringA
GetModuleFileNameA
FindFirstVolumeMountPointA
lstrcatW
OutputDebugStringA
WriteProcessMemory
KERNEL32.dll
HeapFree
HeapReAlloc
GetModuleHandleW
ExitProcess
DecodePointer
GetCommandLineW
HeapSetInformation
GetStartupInfoW
HeapAlloc
HeapCreate
EncodePointer
InitializeCriticalSectionAndSpinCount
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
TlsAlloc
TlsGetValue
TlsFree
InterlockedIncrement
GetCurrentThreadId
InterlockedDecrement
WriteFile
GetStdHandle
GetModuleFileNameW
FreeEnvironmentStringsW
GetEnvironmentStringsW
SetHandleCount
GetFileType
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
RtlUnwind
WideCharToMultiByte
GetCPInfo
GetOEMCP
IsValidCodePage
HeapSize
RaiseException
IsProcessorFeaturePresent
LCMapStringW
MultiByteToWideChar
GetStringTypeW
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
g#292g
++++++++++++++++++++++++++++
++++++++++++++++++++++
++++++++++++++{
>++++++++++++++
++++++++++++++
++++++++++++++
++++++++++++++++
*+++++++++++++++++++++
+++++++++++++++++++++U
++++++
++++++++++++Q
++++++
++++++++++++
+++++#0w++++++++++++^|
Jg++++++++++++
X+++++++++++++_
i+++++++++++++
++++++++++++++Y
d[P+++++++++++++++KL&C
+++++++++++++++++R2F
N++++++++++++++++++++'
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
#####################################
###########
##########
#########
##########
#############SZ
#############7
########
########
9########
########2Qh
#########/
############
=4##############
######
5Q3~/U0
4T9~94
0Q2~3_.
<`-~+`3
a_~]-[
n4q~k(7
s2-~qO
+3~d,.~
./~`6#~
2@~3K}t'
*<?F52
u|(6UjI4?
2(3?+34f
;F?zQ,.xs%+FE;,Zth{
7+9F+-vS
>6U9</
*)YX.,~
83R]*6|
A0~~04
*1sK/5?-
9-ht1E~
+,~~=<NN
25F1&1
9;J623
1/dr47~
.&XP/,L3*4[
64e~CM6^81.
:NcV{R
-i~/3Z
9AdU~N
I9?oq),h
P3|o=@z/
</W>52~
94L]3D
/7OmFK
.:mx-Arx2H<
5~M~5NAL81?
*3.U.);~
*.Tq891,
x&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&o
.................................
OOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO
..G&OO
.&&&&&OP4
O.&OP444
&OPMMM
&OiMMMM
&.Pg!&
OOOOOOO
&.PgI&Si
!&+ieq
)55555555
bbbbb@@
I&&&&&&&&&&&&&&&&&
u!IIIIIIIIIIIII!_
#66666666
kf&GG.
Q&&&&&&&&&&
eleleleeeeee
o&$::::::::::
G&&&&&&&&&&&
LLLLLLLLLLLLLLLLLLLL
MmmmmmF
XX?vvqvqv
%.hqqqqq
8nL*Xv
bbi]:\r
v4444444
qvqvqvvv
qqQqqqQ
4qqQqQwtR
|XXXXXX
NNNNNNN9
yyyygH
>>+cyyY@@@@@xzt
yyyy&))))
yyyyyyyyy
R35Gyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyyy
n4FMF/6K<6
QC`Fsn
S//6X0V
Vry+Mx
O4a6!!!
z}{}{~
~||z{}
~}~{|z
~|~}z{
|~|}}{{
}}~}|~
z|z}~{
}z}|{|
}}|}}~
|~|}}{
{~~{|}z
{~{}|{
}~~|z|
|zz||~
~{~zz}
{z{~{~
~z}}~|}~
~}}zz}
~zz}~|
|}z|}|}
|}||y}
z~~|~y~
{}~}{}|{~~|
|}z}}|
Vo`````````````````````oV
:NNNNNNNNNNNNNNNNNNNNNNN:
~`~`~`~`~`~`~`~`~
+{{{22
N;:::`
8NNN:;``
8NNNNN``;:
8NNNNN~`NN;;:
8NNNNN~~NNNN;
8NNNNN`~NNNNN
8NNNNN~`NNNNN
8NNNNN~~NNN:
+++++8888888
++8++88888888

QQ||||
ZHZHHHH
mZZZZZZZZZZZZZZm
nnnnnnnnnnnnnnnn;
oNNN:;;:::::L:LLLLLLL___
VNNNNN:;;::::
:L:LLLLL___
:NNNNNN;N:N:N::;::::::NN:
Vo````````````````````
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&q
&&&&&&&&&&&&&H~~~~~~~~~~~~~~~~~~
&&&&&&&&&&&q5~
&&&&&&&&&&
&&&&&&&&&&
}~H&&&&&&&&&&
&&&&&&&&&&
}~H&&&&&&&&&&
&&&&&&&&&&
}~H&&&&&&&&&&
&&&&&&&&&&
~H&&&&&&&&&&
&&&&&&&&&&
~H&&&&&&&&&&
&&&&&&&&&&
~H&&&&&&&&&&
&&&&&&&&&&
~mp\\\\\
Vm~H&&&&&&&&&&
&&&&&&&&&&
~H&&&&&&&&&&
&&&&&&&&&&
x;;;;x;x
~H&&&&&&&&&&
&&&&&&&&&&
XXXXXXX
~H&&&&&&&&&&
&&&&&&&&&&
&&&&&&&&&&q~~~~555kkkEEm
&&&&&&&&&&&H
ssssss}}s
&&&&&&&&&&&&&
&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&&
sUUUUUUUUUUU
UUUUUUUUUUUUUU
vvvvvv
UUUUUUUUU
HWWWWWWWH
HWUUWUUWH
HWWWWWWWH
CWUUWUUWC
CWWWWWWWC
CWUUWUUWC
CWWWWWWWC
CCCCCCCCC
UUUUUUUUU
vvvvvv
.+3:yvu
=97A}t
\\\\sl\\l\s\s\s\ssHss\s\\l
XI];GXd[\\i)
]I|]]I]
\lIGXX]
;>GGd]
gd-B>VV
owmNwNGs
ofmmn`Y
xx-Apm
yv+3ff
G]IGG%
b{{{{{
__
....................................
......
......
......
......
\......B
......
......
t....\
......U
..................................
Jafuyadusalusuh duxafa. Liwo zesecokiyew fejep pudaniyejocof. Wosazokofawajab gayo gote cegeta. Gajenohom velohekudujipid. Ruwefajofewezef ludalefebawatof gapacarefako hicawilexa bozihocihebo. Lapodonulig wixucomaki hejinufaxijasew metatopemesey fezefoxudaxuj. Rirunogos. Mejewodokon ricafafojaxo mucix gap yufiwipibo. Devecizoluzo lipizap. Pemi rogabawecacor bolave. Nahizuyihac ninuxo sicepoju. Ride larexenem tekehufuduz hisizujepoje. Duzijusotitojed. Fitepoyivopok yaxoto. Ticewud tovohew tupemaba yix. Gumowilicosodiy tul rubakuzac. Luh hiyuselumiyi zupikefibef pirujayenu. Poyinejez tazare nawarobucita valavumajex wumofi. Vir yiwecenicevi rapiwezibiw diguhezunitet. Guvaf fudivebadopud rivohagena cap. Weciruxewenoyu yotibebebica. Yegipizurovican xirezacunor vudolakono ragejimexuye lasebixuzoyiv. Jexawe hivinisoyuvuy. Xemasenonizexen juy kejo juved yigunucukatofey. Dedupuve losozaxukisazo sazatomodug. Kufoyixapa seceha wuxulobacu. Xifih. Robavoyiwafoduz sunom. Kamoge wonipapocik zezexuf peviwoma jodiradiv. Rut h


mscoree.dll
KERNEL32.DLL
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
DMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
DHH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
WUSER32.DLL
((((( H
h(((( H
H
lemaposesubaxojelazuzudi
kernel32.dll
KUSUFOFIHOVAME
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
032824E6
FileVersions
76.51.27.10
InternalName
FileDescription
LegalCopyright
Copyrights (C) 2023, sadf
OriginalFilenames
ProductName
ProductVersions
8.22.79
VarFileInfo
Translation
Yafatujomefed yagimo/Tadagasivijeje mesevucidi suk ticucaz suyen hin
Luju pebuli>Ruzazejozefoyeb kodukeyagefaj redopexot lutis waf yuje numaziz\Gulakajivamih ceyufuzelupi dowikudapatita wofuzezolosic mitot moluxiyuvufacor dawiwicevilave
Jagabafinetena pon
SekijufiWDonit segikunosac horazakuvudog xijul tofolaji vikiyadekixipo vefokezinu nafu gimirason
CocoluhotuIDixabuduxeze fepirola pafenipukijawi mexetage vef zodakejowutiwes wucilul0Tel kawigicaz behaco yopucofupa sev wuk pilinuso2Rilox fifim dap waweyibe vowimusamikexi hexi narur`Farajifowakimo dafebej foc jucal fixovipabunoma kozaxij cucimepo safupagifi tayixokaze bonagixiy@Hinikak matuza bumow xukutal menaseheyona juf lomofeciye wuxuneg
Huloti xuyahicom
Wijosocitapiyet jako sile4Xuweluw muruxemazizelak voh yapo sifib nakikobufutus1Higocugevumokek tas besukicerasani dehemesavoxusi
Duretebe
iTegizuyaje kasilibel kulaviyiyat zakokotoz hayehayevoweyu ted roduxexiv wetusurotihuyu yitemejasonan jaweZXakoroyawigij camu dociralovogi yexomonixexawex luzaxode tacipilo gayaziyanelesaz vorocizi
'Licarakovapu pihu xiyaya jifipipenafifu9Zihov zibayaraze segutom besiwe hojihogov hasorerojupiguk
dYitasomawetewad gonovad kedurewa maxarucisoy texaku facotosuho gohuy labafojiwaki wixunoyitivag pemo
'Mevo fez camobo cobuket heporapujafututOMolozajumodeg litawupu yasapis fizuna jovotusu lipujaf hid gotasozid duvusakuti#Vutayejeduvute titijunu kolafacakajKVazoyiyiw deho cayanutewifum bawi hefu yemo tiwepi xakarogecimuwu cucexohaw2Tucijipiwibuw yelehapomev sulim voxes nokosag ruve6Juceba kanepivujolas faretufipofa lacawigazun lopakuxiIGekejodasisix sovozojesijud gabivipa vesowaj helirihi xabisahifafes jetaf
XucoyasacoYDipatewomiwaye cemavej godelikerogi danaribiyizigus nagijezalusomi vipuxifuf lafumuvoxajiXLut gukacilusuz bewamulakihu maf fubuceneko mel lihobecutav hilutiyiwaxe jumozuf xumexorJTovikine jidipos taxebonehigawap hufalicerame fikikore jupoz hezinolobareh8Guhacafogov yeyudehi vasisu resaja pudo jexa mosilobifix3Debufur rapogezu tetep yuhijosiguk roh lir rugacosuMCagifojimol vatomeleyimegav tipi caropedeloc hipu dakahuk hazol lisizodob tol?Juhukiwoxuwirat habaje yagazifemomaf redoraketififo diwolutijojGWutoyuvitu zuhaxeviror minitova sokufusahigo pasefiduxuwixuw zilenelosa
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Convagent.4!c
tehtris Clean
ClamAV Win.Packer.pkr_ce1a-9980177-0
CMC Clean
CAT-QuickHeal Ransom.Stop.P5
Skyhigh BehavesLike.Win32.Lockbit.gc
ALYac Trojan.GenericKD.73141578
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
Alibaba Clean
K7GW Clean
Cybereason malicious.e4b969
Baidu Clean
VirIT Clean
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/GenKryptik.GYTZ
APEX Malicious
Avast Win32:BotX-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.Injuke.gen
BitDefender Trojan.GenericKD.73141578
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Trojan.GenericKD.73141578
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Clean
DrWeb Trojan.MulDrop27.42951
VIPRE Trojan.GenericKD.73141578
TrendMicro Trojan.Win32.AMADEY.YXEFPZ
McAfeeD ti!EB74EFAF4832
Trapmine malicious.high.ml.score
FireEye Generic.mg.f8ec725e4b969f15
Emsisoft Trojan.GenericKD.73141578 (B)
SentinelOne Static AI - Malicious PE
GData Win32.Packed.Kryptik.BPT99E
Jiangmin Clean
Webroot Clean
Varist Clean
Avira Clean
Antiy-AVL Trojan[Spy]/Win32.Convagent
Kingsoft Win32.Trojan-Spy.Convagent.gen
Gridinsoft Trojan.Win32.Amadey.tr
Xcitium Clean
Arcabit Trojan.Generic.D45C0D4A
SUPERAntiSpyware Trojan.Agent/Gen-FalDesc
ZoneAlarm HEUR:Trojan.Win32.Injuke.gen
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Google Detected
AhnLab-V3 Clean
Acronis suspicious
McAfee Artemis!F8EC725E4B96
MAX malware (ai score=86)
Malwarebytes Generic.Malware/Suspicious
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall Trojan.Win32.AMADEY.YXEFPZ
Tencent Trojan.Win32.Obfuscated.gen
Yandex Clean
Ikarus Win32.Outbreak
MaxSecure Win.MxResIcn.Heur.Gen
Fortinet W32/PossibleThreat
BitDefenderTheta Gen:NN.ZexaF.36806.Cq0@aiWOoomG
AVG Win32:BotX-gen [Trj]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (W)
alibabacloud Clean
No IRMA results available.