Static | ZeroBOX

PE Compile Time

2023-07-03 19:02:03

PE Imphash

976b33a49b3619a38b3ab50dd40fd590

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00049b30 0x00049c00 7.94901551537
.rdata 0x0004b000 0x00003396 0x00003400 5.06884670909
.data 0x0004f000 0x02022e8c 0x0000dc00 0.249259888207
.zitebej 0x02072000 0x000002d3 0x00000400 0.0
.sahezin 0x02073000 0x00000400 0x00000400 0.0
.rsrc 0x02074000 0x0000dce0 0x0000de00 4.3255831879

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x020806e8 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0207aa18 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0207aa18 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0207aa18 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0207aa18 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0207aa18 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0207aa18 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0207aa18 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0207aa18 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x020815c8 0x00000714 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x020815c8 0x00000714 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x020815c8 0x00000714 LANG_TAMIL SUBLANG_DEFAULT data
RT_ACCELERATOR 0x0207aef8 0x00000040 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x02080c50 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x02080c50 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x02080c50 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x02080c50 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x02080c50 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0207ae80 0x00000076 LANG_TAMIL SUBLANG_DEFAULT data
RT_VERSION 0x02080c80 0x0000025c LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x44b010 LocalCompact
0x44b014 EnumCalendarInfoW
0x44b01c GetTickCount
0x44b020 CreateNamedPipeW
0x44b024 GetConsoleAliasesA
0x44b028 EnumResourceTypesA
0x44b02c GetConsoleCP
0x44b030 GlobalAlloc
0x44b034 SetFileShortNameW
0x44b038 LoadLibraryW
0x44b03c IsProcessInJob
0x44b040 FatalAppExitW
0x44b048 IsBadCodePtr
0x44b04c GetModuleFileNameW
0x44b050 GetSystemDirectoryA
0x44b054 ReplaceFileA
0x44b058 GlobalUnlock
0x44b05c CreateJobObjectA
0x44b060 GetLastError
0x44b064 WriteConsoleInputW
0x44b068 VerLanguageNameW
0x44b06c LoadLibraryA
0x44b074 AddAtomW
0x44b078 HeapWalk
0x44b07c GetOEMCP
0x44b080 EnumDateFormatsA
0x44b084 GetModuleHandleA
0x44b08c EnumResourceNamesA
0x44b090 GetFileTime
0x44b094 PeekConsoleInputA
0x44b098 GetDiskFreeSpaceExA
0x44b09c LCMapStringW
0x44b0a0 HeapSize
0x44b0a4 GetStringTypeW
0x44b0a8 WriteConsoleW
0x44b0ac FindVolumeClose
0x44b0b0 HeapCompact
0x44b0b4 GetProcAddress
0x44b0b8 CreateFileA
0x44b0bc FlushFileBuffers
0x44b0c0 HeapReAlloc
0x44b0c4 GetCommandLineW
0x44b0c8 HeapSetInformation
0x44b0cc GetStartupInfoW
0x44b0d0 DecodePointer
0x44b0dc IsDebuggerPresent
0x44b0e0 EncodePointer
0x44b0e4 TerminateProcess
0x44b0e8 GetCurrentProcess
0x44b0ec HeapAlloc
0x44b0f0 HeapFree
0x44b0fc SetHandleCount
0x44b100 GetStdHandle
0x44b108 GetFileType
0x44b110 MultiByteToWideChar
0x44b114 ReadFile
0x44b118 GetModuleHandleW
0x44b11c ExitProcess
0x44b120 SetFilePointer
0x44b124 HeapCreate
0x44b128 CloseHandle
0x44b12c WriteFile
0x44b138 TlsAlloc
0x44b13c TlsGetValue
0x44b140 TlsSetValue
0x44b144 TlsFree
0x44b14c SetLastError
0x44b150 GetCurrentThreadId
0x44b15c GetCurrentProcessId
0x44b164 WideCharToMultiByte
0x44b168 GetConsoleMode
0x44b16c GetCPInfo
0x44b170 GetACP
0x44b174 IsValidCodePage
0x44b178 Sleep
0x44b17c RtlUnwind
0x44b180 SetStdHandle
0x44b188 CreateFileW
Library USER32.dll:
0x44b198 CharUpperBuffA
0x44b19c GetMessageExtraInfo
0x44b1a0 SetCaretPos
0x44b1a4 GetMenu
0x44b1a8 DrawStateW
0x44b1ac GetSysColorBrush
Library GDI32.dll:
0x44b000 GetCharWidthI
0x44b004 CreateDCA
0x44b008 GetCharABCWidthsI
Library WINHTTP.dll:
0x44b1b4 WinHttpOpen
Library MSIMG32.dll:
0x44b190 AlphaBlend

!This program cannot be run in DOS mode.
`.rdata
@.data
.zitebej
@.sahezin
VVVVVVVh
VVVVVVVVVV
u,VVVV
u1VVVVVVh
WuKVVVV
VVVVVVVVVV
HHtXHHt
?If90t
j@j ^V
^SSSSS
QQSVWh
URPQQhpx@
t"SS9] u
;t$,v-
UQPXY]Y[
PPPPPPPP
PPPPPPPP
wHG0]&/
^8v6`,
wHG0]&/
ZO{mE3a
YANVFz
TU@Q]r
ONDUr#U
d|1:rN
\:"Ba-
Zj[0PG
3~7/QV
A{dWu7,
7Z8@7$
HDc;#D
+/33|*V
hjs&am
:l&VxcN
A2cJF{
78`=?i9
H^!D]{9
jE}yVYG
>HpiNz
"CCv>%
w.wf#%GV@vv
n)25L=
Yt:^qdG
O"jR}e&
irZo1B
%Q\Gh~
Y\.XJpp0
q-H*R^
h\8(UT
jaYwU8
%O5K;-
&S\8`
](<D?}
l@{yrEW(H
U47rb
cd+!(+A1
2yvde+jv
sN8W2I
k?=zNs5
dBjSC?5
kG=d9y
IG?GX%N
==RJ7X
w3X'h>
o7c<<0
83ydZSX
&i{XMa
Z|T+GHw
5U!>c:7
5#yEJX
/7)rHL
NvX'r
4b${t,
wga4/K
:nvS^S
}x(H5ia
KfTf29~
aPbV+I
0@5fpa
%y0:dv
Q4DR//j
Fl#fTJS
IB)?=JJ
Mj.:x`
u[n ]1
_D09-&
&0n(I%
{aDI~4]u
$``-Du
2c'ApL
x2$RBW
a[~{$
kS7SrBk
Rsid81
e6g0Yd
i)T`Ow
&'hW["
oK6#rB
:BW1A~
id9(||p
-K,bw2
u(\U@A6
;U<Af?
UJ9S[Z
j*>Nh<
S40]1;
s*7*[<B
ox[`aW
Eu5@{]
w*i`{w
8, 0;f
exMq0H:
M7#hT\
dIYt![
vv+lUE
l- vxY
(<t*!7C
;a82Ac$R
d/,%Yu(
*Wh(B
?K6|)uPj
^UmMM3
qS2XPX0
x:H)rG
\W\/x
#ALYCQ
@:%fmO
VHcqdu
mK{"Q^+
\! fj~
,YXJ0l
!keN=j
Ua.r}&
z&?06x
TT/uS~
CvQ.v5#(
{JSQ>z
|s"8-k
8jo7go
a;!BAi
N!E}QD
&dv>8-^
`v@fAq'
Rjw Z^
C i4X[
.tI<GP
tfj11W
=y9_=.
:G7}\'
P5HqM7.
<Cj$E~
;Y*+vM
0^(e|g
H9^gD'
=/5yp;
^!FPtC
p7Ao
%8Y1OC
$^/<Ag
=<qpKwl
a=W,d
uCNxh;d
~oG2i
4y(%/;?f
jyHe)F9
%:WL8
I#,UmCy
k#_R I
\:b[j
knEUGq,
0bv9rN
G6^~+)9:
[RwV<
@sXXgX
k@9=}v
"{6L{&E
k;0*U^0
Tf'^Nr+
Z^mE>-
1N}ce$X
^Z(SH>
H/{}RI\
QF8O\%
BIF82Y
M'Ivb?
"i'CRq!
zr~h<x
W[(%7O
FDI6(d
%}p9m
t$g;H,
:^&J'%f
zto-UV
)%8cJd
=[m:T:
|?@e^9
=fWcTr
qf;qA8
%U*-zl=
^J'0V}
v dKhc
GD>FSk
)c{y<,
SvL`6x
q\,gYb
hD`>bsS
l\H 5x
YnR:>H
tR+Qg_YVK6\z
~Ns54P"x
BF:+7)
SNRrB<
<KBPCYl
seA#%wy*
T]cB^K
90r5nG`
>2zlIwGD
?1 Qdk
zGvXkB
g)*qPY'exm
&^LT0]
uE$<b>#^
FMt@Ix
]WEF:w/NzJ
2$H;Hz
G1<;^c
.A^uK|
b+8HKA
WaeHBW
%n"B:8
;|ChWt`
|c>b*p
n_(:!{
\O2GY`h
xxWb1\
P Svql
i)U)Su
O9Qb>;
^iFqb,^
ND['Tj
&r8~**
3e`8'Q
J)<}cq
'WUC=1
)<+S$$GF
wPZ>=Y8
l,C\7V
/zd0OA
H@cc8T
Oi4pv@
_U*NHW
i6)}nX
<6BY^\
9C_PmxiZ
'y)jH8/
<6]ir|
}Q$}jm
A~<T$?
98'Qj~
=8*-9X
rBPxi@
!#<xWj
o_AMK#
;ix[@<
Xl0ScP
7&rN.`
4y?<\2A
?-YZms
%l)xG'56
.{}D*DA>
8_8'|Y
_KQ}.:
W5I`<!
P6^bZ
TsINi6
ZMS>es
>-0HlF
1d"w<P
z9%ko7
XRZTTT
dJ,i\c&
>(f^5
<dF<%v
d5/-N)
EsgW(4
uA0}m'
!uWwt)
JP[f-H8
9\IK1x
'Y3ybV
%2>mFEx
\Ca4^P}M=
J#/L$"
b<[59m
C^L'IW
9>Ol]eA
VUkN$,;W
+e1Vv7
PA|*H~
4C}9Jy
U2m#3~
j3N9u^
AzN&c3
"LZGdZ
_]MN#E
>ET99|5
5sAa*H
<bJj0(
2oinmx
v$)Z!J
}J7\je
I6btC(
L0mJ*nde
d+yv4.N
d[[u9CW
>0WZ8I
gp@:(<Z
`)V5P
&IPXbF
-}I{k}
J4~QTj:i
@z@PwS
DSLpf?
y!>b?I
$vm{9sZ
/W~j^]E
6Ly~*=
*Fa:?N>
l<S%$^e
<q)OFv
"b]d4:
;]nSXHc
t|`7tw
f5oTwu
#\bPA&
7-)sJ;+
oY4SF[)
:{y_m&
Y+jA7):
V!S<||PW
Wu+v(^
mZ4{)PD)
+HH;UR '+
\:x5LQZ;
|'Eh^F
tZk z1^
yH9{04
KV1PX]4Jk
FN[P+QE
@({3IP
w<N]qq?
CQ"z5 #b
BAQl=^
N%)33~
"}!TLJ
tsC<e~-
2L0P()
.J QOLp
3oq]`
GD%pq<
I+Os}kPq
=Fs"vs'N
+yIUnt
`Iq3#m
Yqco!j
!=w_K-
f4X{`
ASzP}x
b0&Q9(
:<l2p5
&GU%,P
zD=X=Y
W^yZPuE
uA\y-T
t3rY6&X
K1ieOC
ru{`84OMN
PfGB0~L
:f3ilk9
_[~mTx
3x*`@^
:?z1_:
pvn2,va?
@}##Qt
ucU.i.p~
TH&\eV
_7J[sn
'`f+}:
JPsO(E
_t@YSq
y_2IN6
[#kqGfE6
~$L4 {
rUvX"%+
rtoxEI"q
H`)1Ev/>
Z*D[b'
#yrJ-s-
#ZkYvN
ux+Fj2)E%
n_>\{E
|3/QLO
LvQgWa
>/aCx_`
DZnp>w
SeLzr=
uZTcB#
J"%tKL9
3;[R|@
0TW)|A
B56&_6plf&
Tq{Rlj
=/2rT*vD"
ooeld@V
qgVg##
)}iy@@
q1ifV+
4x6&`Fz
Upm64_
K\uUcR~
K9guEQ
;hkT?#|
hKr4|u=
US&M5}&Q
o]sy}QF
tJL02[;C
pLJY7d
T[/-':y
UQH:5[]m6
f64-"k5
h4)s*
usvjevG
m=|qsA
OrvU:<
{PV;jzV
VdMuiZ
;?7j%X&1lpdq
!O*FFj
oy_~Nx
OVT-ot
dVea_Q
3OY:W6
3[J1WN
s9L6rG9
I.HH;bI
5J[E`d
}Nk&6_
xImhym
d)5K"H
L:==2;2`
rvJ;t?3&
DC1iXs
PbR_F^
;:}~8'
a+~]. E
{IOF[>
W(%2%p
i\e(6%
<) /~=
NxC(ufp.
5y~b%~
E6R{c3
f]3D8,u
RQuCP)
o]*KSd
*Yk{Ss
|sewH
fo7Dt&Z
>@:WvQ
R&W5RH
oEHoa3
Kw1%C;
ZvERIv
zqb.|b
tBA;%4
KHfxaK;
]EP j_
^U0~WG
@,V$]=Bn
r@M48<<
Lh>&Pf
L*z/2,
3bX){x
SW<*te
n77)ve
4~`M{(
$*8ssY
;-VVu5
_t}JYd
phA/)H
R>~we;
:co@,e
OE pm]t
9|gQn1
l&X3]}
tx/:el
~@D|JZ
1-GwOF
n),rP~A
r^JH/]
;a<-#!
:Nz6sDM
km~T5_xU@_
r86cqn
?$vOe/j
G7lk?Y$W
OT7oD
uz)Jb"
ok<eOP
Unknown exception
(null)
`h````
xpxxxx
CorExitProcess
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
kernel32.dll
Teduroxeyor natuvamoboram
Hicurufupelimo rohatozuma nufirowoxec pibiv
Miketay zilaxehafusaj xotixiniza dibenun
dekuzaxuhoxiribifohoruxinas
hosigutovujex lolocahedunebutab %f
bad exception
kernel32.dll
VirtualProtect
Wuhusewixig finabizetela xalas womamonumune naviganev
msimg32.dll
CreateFileA
HeapCompact
FindVolumeClose
WriteConsoleInputW
LocalCompact
EnumCalendarInfoW
SetEnvironmentVariableW
GetTickCount
CreateNamedPipeW
GetConsoleAliasesA
EnumResourceTypesA
GetConsoleCP
GlobalAlloc
SetFileShortNameW
LoadLibraryW
IsProcessInJob
FatalAppExitW
AssignProcessToJobObject
IsBadCodePtr
GetModuleFileNameW
GetSystemDirectoryA
ReplaceFileA
GlobalUnlock
CreateJobObjectA
GetLastError
GetProcAddress
VerLanguageNameW
LoadLibraryA
SetConsoleCtrlHandler
AddAtomW
HeapWalk
GetOEMCP
EnumDateFormatsA
GetModuleHandleA
GetProcessShutdownParameters
EnumResourceNamesA
GetFileTime
PeekConsoleInputA
GetDiskFreeSpaceExA
LCMapStringW
KERNEL32.dll
SetCaretPos
GetSysColorBrush
DrawStateW
CharUpperBuffA
GetMenu
GetMessageExtraInfo
USER32.dll
CreateDCA
GetCharWidthI
GetCharABCWidthsI
GDI32.dll
WinHttpOpen
WINHTTP.dll
AlphaBlend
MSIMG32.dll
HeapReAlloc
GetCommandLineW
HeapSetInformation
GetStartupInfoW
DecodePointer
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
EncodePointer
TerminateProcess
GetCurrentProcess
HeapAlloc
HeapFree
EnterCriticalSection
LeaveCriticalSection
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
MultiByteToWideChar
ReadFile
GetModuleHandleW
ExitProcess
SetFilePointer
HeapCreate
CloseHandle
WriteFile
FreeEnvironmentStringsW
GetEnvironmentStringsW
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
InterlockedDecrement
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
WideCharToMultiByte
GetConsoleMode
GetCPInfo
GetACP
IsValidCodePage
RtlUnwind
SetStdHandle
IsProcessorFeaturePresent
FlushFileBuffers
WriteConsoleW
GetStringTypeW
HeapSize
CreateFileW
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
n8x/N`tXO
vvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvvv
vvvvvvvvvvv
vvvvvvvvvv
svvvvvvvvv%
vvvvvvvvvv
Hvvvvvvvvvvvvv
fvvvvvvvvvvvvv`
GvvvvWvvvvvvvv
vvvvvvvv9
vvvvvvvv
\vvvvvvvv
vvvvvvvvv
2vvvvvvvvvvvv
vvvvvvvvvvvvvvtvvvvvv
CyI|LeY
wO~Ez@
LwH|WsO{AzK}C4
QyCtQ~LrOyS
;T}|LN~
ZU||OK}
uy{>UQ
Iw}y=AM
~B~~}Qm{
Gg~~Hj
<S~jAH
KB=|ePP
K>~~CL~
BQX|jFK
~FS}~PQ
IJ{{VD
}{PHL{|DJ
<C[{vEF
N@|{NH{
3Zyp`H|
zEEz}<J{V
M5|zDT|
CS~Lk{~?
DKz}J9
PWeBN4
=KSaFS|z^W
?Gx{^JZ
GIJ^BOL}
>Hy|Yf}
p@L{|8ISdUCyz
MDI`G=~m
ZNpSNJ
JFljBDy
}|}[{~
OVwvBTz
LH~z}~
CQ}\TR]H
@z~{A{e~G}
|RK}{DK
LG{|C]
RJW@9N
XOiNOE~}{
r[|}lF{
As|~S{
PSzzsr
L?hmOIcM<Eo
UhMuUIE
pVc|`ZY
LU|~PZ{
JJ~}\K
D/m{CM~
PFsPMI
VD_tWb
~X~|~K|
~]N|}LA
YbuX[{
Sic`VCR
~a}GGCl@HN}
iiiiiiii
iiiiiiii
iiiiii
iiiiii
iiiiiiiii
iiiiiiiiii
iiiiiiii
iiiiiii
iiiiiiiii





@(null)
mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
DMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
KERNEL32.DLL
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
WUSER32.DLL
((((( H
h(((( H
H
ECONOUT$
Mokigehate xolega viricuh mazu fiboy
zewaxuwawazuwuyuvivi
ozofowegad dinomebaxedidox
pajebipew
kernel32.dll
pelapawagetidayiwexuwin
havayekubipacacujoxifupozeko
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
032414E6
FileVersions
5.20.60.11
InternalName
FileDescription
Raining
LegalCopyright
Copyright (C) 2023, Nabisradig
OriginalFilenames
Odilesigo
ProductVersions
76.20.29.97
VarFileInfo
Translation
%Posabi ruvogeloborix bolodumawe wofep
Cihetuc
JYayezawepe lulutuxopir heveriyasemabuh dufo niyaxupedakisir vewejifisadilu
`Degizejumajitu tanatatu nupavijucugonil jimifosaciyi jahepabowuxitu dewumecipitid jage zodeniyod8Wavir madeganiyucamo yakekanohi vibejigowilugo jelayujam
Pufeh suges[Gizavusogupi regajivoyanifon tunetalebibasam zamewoyodite rovezahenurapu fixofid muyenomoma*Kexafevuz pihubajonebos fixugizuyez mosave
Somovetobi miye gigegWihevuh razujiwemabov lusecinuvaha tajiv nabugahixas nomocitunode riyugav rizejiyitihehu pazekepagewari
3Meroxelubule civirizudoge cotoxulohocebar gimefatic
4Xewalazuf dalezofi yojojofu docupazopaw kimipahipule!Jafik kitezatijohupe yoviho kolob
_Bezimicete cinav wuluf puvefufubohowuy hucususimas jucowuwagivun dulujeka camu morahetap lopena
Cuy nigehajosofe
@Siyebesihomixu riki jot kinitohapa nojonopo heme vedusijacix pen
{Lizaboxujowe sonafuxoxonod muhovududefixov dewefipox dubayuwahuyune bejabofomi jogapuk gotukod favinakurorihi mujagujuvuhez Zenagac marulafewoli tuxivayeyuxKKira sosavibo kiza bupufeheci rohifono bulakifiyuwemo voyugabu jokayofofowucSis kowamaga jivo zekekegajic hasozu lacesicokobov ritixuhadi wihumewotefukir towajejufuwe nanarorufVet pelovuxafude sonobabozosocup numugazomumelu dusutoyene limidepoput mahumek zegemipusaxehun penitoh
Tanajupexoxecu sisibila mesedCKaruwucuduj dezawagakowi yogex vosuhiwuzikumo roh mihebi mawuxulici
PiwuviviDBuk zikanez sogewan dewukibis budavugekikivib nevumaviwuwo hun nafehTLamav yelefesavogu koteniso fonadugivedev wozuvovexux delodohos gopipupunabi tufapej9Yogazawimafog xewe hopobijewoxo nupicuh biwadema zoxe nos6Yiweh jagagivawa febegugak sepeyejo rihugu dawegewafig
DMulima xanileboxiviti cezec cilesurozoraj yuyufu yegojeyesapeb xapeg
Gesukel fuhokubucuy buci
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Injuke.16!c
tehtris Generic.Malware
ClamAV Win.Packer.pkr_ce1a-9980177-0
CMC Clean
CAT-QuickHeal Clean
Skyhigh BehavesLike.Win32.Lockbit.gh
ALYac Gen:Variant.Jaik.236336
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005649fd1 )
Alibaba Trojan:Win32/Kryptik.bd287a59
K7GW Trojan ( 005649fd1 )
Cybereason Clean
huorong Clean
Baidu Clean
VirIT Clean
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Kryptik.HXPN
APEX Malicious
Avast Win32:PWSX-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.Injuke.gen
BitDefender Gen:Variant.Midie.151499
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Midie.151499
Tencent Trojan.Win32.Obfuscated.gen
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Trojan.TR/AVI.AceCrypter.ojldh
DrWeb Trojan.Inject5.6654
VIPRE Gen:Variant.Jaik.236336
TrendMicro Trojan.Win32.AMADEY.YXEG2Z
McAfeeD Real Protect-LS!AE3DD2F44887
Trapmine malicious.moderate.ml.score
FireEye Generic.mg.ae3dd2f4488753b6
Emsisoft Gen:Variant.Midie.151499 (B)
Ikarus Trojan.Win32.Crypt
GData Gen:Variant.Midie.151499
Jiangmin Clean
Webroot W32.Trojan.Gen
Varist W32/ABTrojan.OGWN-0279
Avira TR/AVI.AceCrypter.ojldh
Antiy-AVL Trojan/Win32.Convagent
Kingsoft malware.kb.a.1000
Gridinsoft Ransom.Win32.Sabsik.sa
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.Win32.Injuke.gen
Microsoft Trojan:Win32/Multiverze
Google Detected
AhnLab-V3 Trojan/Win.PWSX-gen.C5653856
Acronis suspicious
McAfee Artemis!AE3DD2F44887
MAX malware (ai score=88)
VBA32 Clean
Malwarebytes Trojan.MalPack.GS
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall Trojan.Win32.AMADEY.YXEG2Z
Rising Trojan.SmokeLoader!1.FF9D (CLASSIC)
Yandex Clean
SentinelOne Static AI - Malicious PE
Fortinet W32/GenKryptik.EWCW!tr
BitDefenderTheta Gen:NN.ZexaF.36810.Ay0@amtYgpiG
AVG Win32:PWSX-gen [Trj]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (W)
alibabacloud Clean
No IRMA results available.