Static | ZeroBOX

PE Compile Time

2023-02-28 21:33:16

PE Imphash

9c5bfa67e7d676991a3150a8ccf9a3e8

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00022600 0x00022600 7.67450460439
.rdata 0x00024000 0x00004c26 0x00004e00 5.46051207318
.data 0x00029000 0x0000a204 0x00002600 1.92395518309
.rsrc 0x00034000 0x0000e3a8 0x0000e400 4.65834836188

Resources

Name Offset Size Language Sub-language File type
CEZAFIGOLIFIR 0x0003d738 0x00001e31 LANG_JAPANESE SUBLANG_DEFAULT ASCII text, with very long lines, with no line terminators
RT_CURSOR 0x00040cc0 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x00040cc0 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x00040cc0 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0003d268 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0003d268 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0003d268 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0003d268 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0003d268 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0003d268 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0003d268 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0003d268 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0003d268 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0003d268 0x00000468 LANG_JAPANESE SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x00041c50 0x00000752 LANG_JAPANESE SUBLANG_DEFAULT data
RT_STRING 0x00041c50 0x00000752 LANG_JAPANESE SUBLANG_DEFAULT data
RT_STRING 0x00041c50 0x00000752 LANG_JAPANESE SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x00041228 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0003d6d0 0x00000068 LANG_JAPANESE SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0003d6d0 0x00000068 LANG_JAPANESE SUBLANG_DEFAULT data
RT_VERSION 0x00041258 0x00000284 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x424018 CreateHardLinkA
0x424020 GetTickCount
0x424028 EnumResourceTypesA
0x42402c GlobalFindAtomA
0x424030 LoadLibraryW
0x424034 GetConsoleAliasW
0x424038 IsBadWritePtr
0x42403c IsBadStringPtrA
0x424040 SetLastError
0x424044 GetProcAddress
0x424048 SetFileAttributesA
0x42404c GetDiskFreeSpaceW
0x424050 OpenJobObjectA
0x424054 LocalAlloc
0x42405c GetNumberFormatW
0x424060 GlobalHandle
0x424064 GetOEMCP
0x42406c LoadLibraryExA
0x424070 OpenFileMappingA
0x424074 CommConfigDialogW
0x424078 SetStdHandle
0x42407c WriteConsoleW
0x424080 CloseHandle
0x424084 SetFilePointer
0x424088 FlushFileBuffers
0x42408c GetConsoleMode
0x424090 FindResourceA
0x424094 TlsGetValue
0x424098 GetComputerNameA
0x42409c LoadLibraryA
0x4240a4 MultiByteToWideChar
0x4240a8 DecodePointer
0x4240ac EncodePointer
0x4240b0 GetLastError
0x4240b4 HeapReAlloc
0x4240b8 GetModuleHandleW
0x4240bc ExitProcess
0x4240c0 GetCommandLineA
0x4240c4 HeapSetInformation
0x4240c8 GetStartupInfoW
0x4240d4 IsDebuggerPresent
0x4240d8 TerminateProcess
0x4240dc GetCurrentProcess
0x4240ec SetHandleCount
0x4240f0 GetStdHandle
0x4240f8 GetFileType
0x424100 GetCPInfo
0x42410c GetACP
0x424110 IsValidCodePage
0x424114 TlsAlloc
0x424118 TlsSetValue
0x42411c TlsFree
0x424120 GetCurrentThreadId
0x424124 HeapCreate
0x424128 HeapFree
0x42412c HeapAlloc
0x424130 WriteFile
0x424134 GetModuleFileNameW
0x424138 GetModuleFileNameA
0x424140 WideCharToMultiByte
0x42414c GetCurrentProcessId
0x424154 Sleep
0x424158 RtlUnwind
0x42415c LCMapStringW
0x424160 GetStringTypeW
0x424164 HeapSize
0x424168 RaiseException
0x42416c GetConsoleCP
0x424170 CreateFileW
Library USER32.dll:
0x424178 DdeCmpStringHandles
0x42417c GetCaretPos
0x424180 CloseWindow
Library GDI32.dll:
Library ADVAPI32.dll:
0x424000 BackupEventLogA
0x424004 ClearEventLogA

!This program cannot be run in DOS mode.
H#jHW
H#j*HW
HEd'HE
H#j.HM
H#j)HM
HRichL
`.rdata
@.data
E(V@eF
mPSD~?
uTVWhzg@
f-00f=
HHtXHHt
?If90t
j@j ^V
F\=0[B
^SSSSS
tRHtCHt4Ht%HtFHHt
URPQQhP
t"SS9] u
PPPPPPPP
PPPPPPPP
tWItHIt9It
u}h|}B
;t$,v-
UQPXY]Y[
<+t"<-t
+t HHt
u-h$~B
n&zg|%
L);Le>
yVya"&,
o&6(uxs
_o!FyE
h7Lq<l
<[LD!d
F|usV}
b^ME^]m,&
8@nek)
X+/T`+
E!zz&:v
9? nK$
a0xSou
9bfvK7
x@GUR8n
KFncV'
R_k!Kc
& ad}2
>\R;m?
sH2zIg
kJ0&xp
adRE._
|>/H^
`Z[qx@
(cG#8B)
I?6#A2
+ewbJn
0P{aF
|5`NQk4
d$\?~d
D]*e-9
+ppVpP
+r05#Q5
{|G#)$i=
?'+g,R;
$RsuQ@,
<{6>uk
CrwlKf
7nS NIb3[t
cy9?F1
Rm*IR9[
'/?e2.
V9am(g
7%o%@k^
8_{%HtL
qdaZh8
]|gCZm_3
,j[}T9
>d's~I
/ <bK<
B>x)bi?
r`QJjh
7%MD-v
A[Y44.$
MW6uCI[U
,]Fo1V
^siR*-
j&]Vx"$
Mq0X}B0
?xbPEqX
vFbL^2}
*jRYNa
>}NgNQ
cP;9g%
+]r.05Q
w7PMAr
"NSS^2
57R,c@
`3D{Lo0
AT:Kl>
W8?qgv=`
K>~<vf
)sG {a
r)E%1i=
mw_.^M
X`k&6w
x7@u;#
8]3_Tid
B?21cg
Em6f_<
k!/$B#
1(LC0{
YxJws2
aowv~9
P/\(K_PL
mU*squ
}Dr@zuAT
!P<_@,
#_KQ2
5m`00`
^+gJ&
%aZnV-
g*`D{
QU] }!
!H%i$D
uQ%7 ~
3~ku8X
O.Dr&)
0vi"z_
8'8s)BE
%m9h U
4U"UVj
.q1.;.i
@e{/*dP
%L1'>B
h3gQ~cI
qdpu5;
3$*w'x5E
>>P!Un
|Br`'J
&5ilz&
[NnU.
1T4E3l
hou=oaI
Da"mm
*bD-Nua
{qSe+we
>Lk]|t
A&MOUE
uTGre9
ZoNt5J
ZZ# ws
CorExitProcess
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
(null)
`h````
xpxxxx
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
RUUUUU
`h`hhh
xppwpp
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
i^^?(>
Y:/(A6>
<GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
_nextafter
_hypot
1#QNAN
1#SNAN
kernel32.dll
VirtualProtect
msimg32.dll
kernel32.dll
Sekolunohulafa
nojojatobajehivonafepuxefemi
GetSystemDefaultLangID
GetComputerNameA
FindResourceA
TlsGetValue
OpenJobObjectA
InterlockedCompareExchange
CreateHardLinkA
GetSystemDefaultLCID
GetTickCount
GetWindowsDirectoryA
EnumResourceTypesA
GlobalFindAtomA
LoadLibraryW
GetConsoleAliasW
IsBadWritePtr
IsBadStringPtrA
SetLastError
GetProcAddress
SetFileAttributesA
GetDiskFreeSpaceW
LoadLibraryA
LocalAlloc
FindFirstVolumeMountPointW
GetNumberFormatW
GlobalHandle
GetOEMCP
FindFirstVolumeMountPointA
LoadLibraryExA
OpenFileMappingA
CommConfigDialogW
KERNEL32.dll
GetKeyboardLayoutNameA
CloseWindow
GetCaretPos
DdeCmpStringHandles
GetWindowTextLengthA
USER32.dll
GetCharacterPlacementA
GDI32.dll
BackupEventLogA
ClearEventLogA
ADVAPI32.dll
MultiByteToWideChar
DecodePointer
EncodePointer
GetLastError
HeapReAlloc
GetModuleHandleW
ExitProcess
GetCommandLineA
HeapSetInformation
GetStartupInfoW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
IsProcessorFeaturePresent
EnterCriticalSection
LeaveCriticalSection
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
GetCPInfo
InterlockedIncrement
InterlockedDecrement
GetACP
IsValidCodePage
TlsAlloc
TlsSetValue
TlsFree
GetCurrentThreadId
HeapCreate
HeapFree
HeapAlloc
WriteFile
GetModuleFileNameW
GetModuleFileNameA
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
RtlUnwind
LCMapStringW
GetStringTypeW
HeapSize
RaiseException
GetConsoleCP
GetConsoleMode
FlushFileBuffers
SetFilePointer
CloseHandle
WriteConsoleW
SetStdHandle
CreateFileW
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
|z}{}{~z}
~|}}~z
~|}}{}
~~~z{~
|}}{|}
|{z}|z~z|
~z}~}~
}{}}{|
}||~~~
zz{}}{
~~|{}|~
|~~~||
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
<Y++++++++++++++++VF
0bC++++++++++++++++_F
++++++++++++++++gV
Xg++++++++++++++++
++++++++++++++++
++++++++++++++++
++++++++++++++++
G++++++++++++++++Xg
++++++++++++++++
++++++++++++++++
++++++++++++++++
++++++++++++++++
++++++++++++++++X_
VG++++++++++++++++_b
++++++++++++++++
G++++++++++++++++=
_G++++++++++++++++
++++++++++++++++__
pb++++++++++++++++_
4F++++++++++++++++
+++++++++++++++=
+++++++++++++++G
+++++++++++++++^_
+++++++++++++++GG
+++++++++++++++GC
+++++++++++++++G
+++++++++++++++=
+++++++++++++++=_
+++++++++++++++
+++++++++++++
_p:_GF=++++++++++++
q_=++++++++++++_
R~$$R~$
++++++++++++
++++++++++++
++++++++++++
++++++++++++G!
++++++++++++G5d
++++++++++++
=++++++++++++^F
+++++++++++++
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Lozanajino batodikaxoba kokicuwolamov cecitiyev pojo. Cowi jupibe fuwome fadiwicoraxe. Jakohe xusavipilumip yas gib wow. Kisesijaceh gaxev foci tikapoke geneheguwijem. Gepibuboleze ciyesibidecim. Nafeluvosirazes hanexom. Jusijikikodohiy. Kanuzahifija. Romiv loguxeyo nisogepanewiyar dewunuyuzo. Donezuf balasahiseti xej. Wamusisowo fahesexup rijidewazu non legugufubezobu. Gukeyaduguvo julohirojer xilubax pucafeguxaf. Tusi rakiyigewe hicatir. Moguce fidixekov zujutakatujix jivuhibosefo. Zobihusakoz lowecudijo yawahifazuluki. Neredobemarum lipicox huzobirunapabuc pamuma taditogalas. Yowetemi god gafevu notosese. Rig miviha. Zagusupeyujeda befabosol dije zavilujilayumoz. Rudafohi hedozekakohid. Behehadigi nubexekahucobu motilinakusek gobawicabuj. Hexe. Bitemiguvem sawaruzas. Piwibefuj yojina wumolowex. Hexuti. Divu casujilesuf fiy pafadaxovik telopilajuj. Kuyemol dedimunugowuliy bucegavosey. Belakakosezep serepexulukoc zumumuguzediwaz lodolere detewefenivito. Hutihuciya renosuvof wamu nenu got. Fajasamofuxivo. Xap
iiiiiiii
iiiiiiii
iiiiii
iiiiii
iiiiiiiii
iiiiiiiiii
iiiiiiii
iiiiiii
iiiiiiiii

mscoree.dll
(null)
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
nKERNEL32.DLL
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
BMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
((((( H
h(((( H
H
WUSER32.DLL
CONOUT$
kernel32.dll
lXuh luladax hogoligewifemaw ciranir
CEZAFIGOLIFIR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
032824E6
FileVersions
22.7.15.48
InternalName
FileDescription
LegalCopyright
Copyrights (C) 2023, Navisadi
OriginalFilenames
Atlassin
ProductName
farmacia
ProductVersions
1.56.5.39
VarFileInfo
Translation
9Vaxidozuhapumud zodesig ganufoyurikej zisorixisorem dubaj!Tuluxivopa xinocejo zojumifobivir+Penusuhu rufusocaniz damobexaken lebibepuzo
Sefedesagiri
Pinipoki daxazerak pigepeg$Mop mecaloguvumec yunaloxiraf mufete^Mowapena busomov liduhivegov yihowugoramaga wemusigoh poredibiyolo vubotam ralug fudimehegoguk=Yojitukosuwabu vosipiyemubida gogirakivid zidetupel gurebapav5Motuvumikolewo cifimeceyuzuw yalu jegemopip nilaxexozZHuhogacufotate cefacahovadab cuhi malusayaxafobax johuw petuzunit hotopanapacosi zaniyoyaw%Davuluwozugivi memedovico kadavuk bof.Lulubep seduve kavigaxamolefo mirid xogugaraxeEVoxiliwafov tijiwabihuhod tujajafaraf daseyajopesifan lewerewolotirig
Jezohu kawoger humuboluborVToyanohecaw fuveloyeragopi xewo kuzutoha gukovafa wahunejiw yexecinugufuta jidunonovod
BBozikaluzeyi mop heno jololojahipalo cotozajizuyuvup xodamipinawiy
Mogokuw pofesula faguzupamur6Fofigap jubezuhow gocebekakazu neyegeh vocepudijubukus
VMato baholabepibixa simoli bicabujocoya fiku xutitayuxikaxat bup xigizugibife pegajuviHBofalilojatacet lapayewepehisi hadaluzokot horevosozas xagid rojonigokot
Xolupedim siwoho sosokakuje
Wugateyiduhosog jupiwumowiAVivoz milizevekov mukuxezav nojexecibagot casowezimizel kiwelegib_Zines gidipin levezacaberat piz nutocaka hozejoronub cebumefudagiyey vuvafut tekuh zusixeluyite
Kive7Hep zitocidegefib kizohis xolotelijaxafoz bowawiyejanin*Fafutaduy yexarux jozatilaxolu wujunivuniz
Nafakawim samadojuneseruh
Himi rukuzurukomiz;Yefonem bukibow jesosehe gujesunewaked najelovepisu bowurat.Cecepu lor dozo sihibeserohoj pezayozepilu gefsVemezoguzejevi genolerikec bukiwahafe lovuviyujijaza hiwikewafitica xuga jacamedotatev tecaledufawel fumekutirifofuKYuwaridasovamal zexekuke lusetunihoyulo hudavike bumofadifigunid jetekoracioFiwoketuvumulim turi sodiwebuyase sezikosimisec votaga zozupuxifuwefe gekaleno gasawucahinur yoxucoluso hunuhog
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Virus.Generic.AI.1!c
tehtris Clean
ClamAV Win.Packer.pkr_ce1a-9980177-0
CMC Clean
CAT-QuickHeal Ransom.Stop.P5
Skyhigh BehavesLike.Win32.Lockbit.dh
ALYac Clean
Cylance Unsafe
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
Alibaba Clean
K7GW Clean
Cybereason Clean
Baidu Clean
VirIT Clean
Paloalto Clean
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 Clean
APEX Malicious
Avast CrypterX-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky VHO:Trojan.Win32.DiskWriter.gen
BitDefender Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Clean
Tencent Trojan.Win32.Obfuscated.gen
TACHYON Clean
Sophos ML/PE-A
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfeeD ti!004EECA29E9A
Trapmine malicious.high.ml.score
FireEye Generic.mg.b96f0135250aab5a
Emsisoft Clean
SentinelOne Static AI - Malicious PE
GData Clean
Jiangmin Clean
Webroot Clean
Varist Clean
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm VHO:Trojan.Win32.DiskWriter.gen
Microsoft Program:Win32/Wacapew.C!ml
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Clean
MAX Clean
VBA32 Malware-Cryptor.2LA.gen
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.SmokeLoader!1.F6B2 (CLASSIC)
Yandex Clean
Ikarus Clean
MaxSecure Win.MxResIcn.Heur.Gen
Fortinet Clean
BitDefenderTheta Gen:NN.ZexaF.36808.oq0@a4cc1inG
AVG CrypterX-gen [Trj]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (D)
alibabacloud Clean
No IRMA results available.