Static | ZeroBOX

PE Compile Time

2024-03-05 09:40:26

PE Imphash

00e87a3230db3a6bdb4035240d620685

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000a0f6a 0x000a1000 7.9247142265
.data 0x000a2000 0x001a7328 0x00017800 0.25818195859
.rsrc 0x0024a000 0x000122d0 0x00012400 4.51638304691

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x00256f58 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
AFX_DIALOG_LAYOUT 0x00256f58 0x00000002 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_CURSOR 0x0025a820 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0025a820 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0025a820 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0025a820 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0025a820 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0025a820 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0025a820 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x0025a820 0x00000568 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x00256a38 0x00000468 LANG_TAMIL SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_DIALOG 0x0025b028 0x00000058 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0025c070 0x00000260 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x0025c070 0x00000260 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x0025c070 0x00000260 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x0025c070 0x00000260 LANG_TAMIL SUBLANG_DEFAULT data
RT_STRING 0x0025c070 0x00000260 LANG_TAMIL SUBLANG_DEFAULT data
RT_ACCELERATOR 0x00256f08 0x00000040 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_CURSOR 0x0025ad88 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0025ad88 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x0025ad88 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x00256ea0 0x00000068 LANG_TAMIL SUBLANG_DEFAULT data
RT_GROUP_ICON 0x00256ea0 0x00000068 LANG_TAMIL SUBLANG_DEFAULT data
RT_VERSION 0x0025adb8 0x0000026c LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x401014 CreateJobObjectW
0x40101c UnlockFile
0x401020 CreateHardLinkA
0x401024 GetTickCount
0x401028 GetNumberFormatA
0x401030 SetCommState
0x401034 GlobalAlloc
0x401038 LoadLibraryW
0x40103c LocalShrink
0x401040 GetCalendarInfoA
0x401050 SetConsoleCP
0x401054 GetFileAttributesA
0x401058 GetModuleFileNameW
0x40105c CreateActCtxA
0x401064 VerifyVersionInfoW
0x401070 SetLastError
0x401074 GetProcAddress
0x401078 CreateNamedPipeA
0x401080 GetProcessVersion
0x40108c CreateFileMappingW
0x401090 GetNumberFormatW
0x401094 CreateEventW
0x401098 OpenEventA
0x40109c QueryDosDeviceW
0x4010a0 GlobalWire
0x4010a4 EnumDateFormatsA
0x4010a8 EnumResourceNamesA
0x4010ac VirtualProtect
0x4010b0 WaitForDebugEvent
0x4010b4 PeekConsoleInputA
0x4010b8 GetShortPathNameW
0x4010c0 SetFileShortNameA
0x4010c4 GetDiskFreeSpaceExA
0x4010c8 ReadConsoleInputW
0x4010cc GetTempPathA
0x4010d0 EnumCalendarInfoExA
0x4010d4 LCMapStringW
0x4010d8 CommConfigDialogW
0x4010dc HeapReAlloc
0x4010e0 RtlUnwind
0x4010e4 HeapSize
0x4010e8 RaiseException
0x4010f0 GetCurrentProcess
0x4010f4 SetEndOfFile
0x4010f8 LoadLibraryA
0x4010fc GetLocaleInfoA
0x401100 MultiByteToWideChar
0x401104 GetLastError
0x401108 HeapFree
0x40110c HeapAlloc
0x401110 GetModuleHandleW
0x401114 ExitProcess
0x401118 DecodePointer
0x40111c GetCommandLineW
0x401120 HeapSetInformation
0x401124 GetStartupInfoW
0x401128 GetCPInfo
0x401134 GetACP
0x401138 GetOEMCP
0x40113c IsValidCodePage
0x401140 EncodePointer
0x401144 TlsAlloc
0x401148 TlsGetValue
0x40114c TlsSetValue
0x401150 TlsFree
0x401154 GetCurrentThreadId
0x401160 IsDebuggerPresent
0x401164 TerminateProcess
0x40116c HeapCreate
0x401170 WriteFile
0x401174 GetStdHandle
0x401190 SetHandleCount
0x401194 GetFileType
0x40119c GetCurrentProcessId
0x4011a4 WideCharToMultiByte
0x4011a8 GetStringTypeW
0x4011ac Sleep
Library USER32.dll:
0x4011b4 LoadMenuW
0x4011b8 CharUpperW
0x4011bc GetSysColor
0x4011c0 GetMenuStringA
0x4011c4 GetCaretPos
0x4011c8 DrawStateA
Library GDI32.dll:
0x401000 GetCharWidthFloatA
0x401004 CreateDCW
0x401008 GetCharWidth32A
0x40100c GetBitmapBits

!This program cannot be run in DOS mode.
`.data
Unknown exception
CorExitProcess
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
_nextafter
_hypot
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
1#QNAN
1#SNAN
periyebobowonulaj
vanajapirelexugeyoya
tijizovepazohuxibubupanajedidud
kernel32.dll
jaxerizulowesecuxod jokuxuvow puzuwi tenovavagizebeda xidejum
msimg32.dll
VVVVVVVV
VVVVVV
T$LRVV
T$HRVVV
D$@)D$
D$4)D$
PPPPPP
D$<?Dj
D$|augY
D$h6._;
D$4L+U5
D$ds.Y*
rSSWVj
uTVWhn@
Fh=( J
F\= !@
tWItHIt9It
^SSSSS
QQSVWh
j@j ^V
t"SS9] u
URPQQh
PPPPPPPP
PPPPPPPP
;t$,v-
UQPXY]Y[
<+t"<-t
+t HHt
@CG-J4
Qa+1#g
KX'1:g
S<<-.'fsdE[i
Gxj\'<
} q{93yT
,**`\L
1Wbi35Y
2_V'Ho|{
J.MVnv
uBt=_K-Hr
lDiRiR
6B".<]hM
akD5Z_
z0;J!h
;!`t'M
7MaA-:
hz'qNJ
:oZ[69]
oQDC\
6vx1N)
eh9XnJ
./Ur:SKK
[sPWG{
`n(VcK
9fO-~x
b5!KGr
s9YI;I
#,%A#V
\!I]3"|
l6V0Nh
f81[Zd
Wfqu01
L5{KcO
PllhL$P
|z$4?>
MiV:JY
MoWU{wd2
&E-n:M
)C_uDi
D4qO_5
/$(T@(
{U<8iy
01qsLP
/eTA;q>F*<
)O!W)=
!J6EQ9
GHMpj$X
TIngO`!
*4D]+n:
7(N0e
#rE+-
8Hzj/]
o [y>=
5>WXLW
o#@(ib
B?Hu#:
Fwzvg-
|{"f7:>b
)/"(6}7$M
UD8Sp3
<_vrq>
pRp"\_xu
^uKFI@
NH8 a*
@q`f$0%W
_HrgjZ~
C,*eAk
:s'BV;M
2M3'85}o
ONu0oW;
)m$N#$
5R^Y~48
N#[cEn
Z+*G&`
a2})&=
Y'j>6 s
'+xs@d
Nl#dDgX
yVvWD;w
EIY%^7M2o%-
,0wIWe
?c.z S
q<3N$Rs*
;E+w&:%
.arY`G
)QI7jZ
#S^<q
Z{jn.T
vdVjx=^
Y*5k
mszg&+EV
@^D%unR
Cj'-M:
55}epk
_Y?Oa^
zm<U,;&|
Z$;db3
!9JLs3-_
M}~]9hFq
\8asY6
e0a[\b2
B1=C+;`
HB%fPf
K98t<"
27&dA
TmGUuDss'
`3EyQo
4BFQQ-(
Ou;\<=
U=T'7H
bT.Z7E
*P4[MO
Lax?PzI
-TjR}R
"'!J6/
G)qs>A
c{ ;{n
'`K-@^\
4e>S?o
"9&CzP
aGO{91
B*LP$!
zln/=3
C6`9@8
>F0>MH
&[BXsi
.~86C0t
N)N+vO
g)e%}
<M#r0ZY
RSNC#U
fC:2km
E8;}}Jwi
+|@-Ql
->V5X8
5H+@iv
Z2O5\e~m
#lw_^<
ud^Z`
'f;8-s
4#W|k1
3~ae+9~
T1(rJz
n!~MN9
\uD[/]sm[
sDd7|<NgN
`!pD8+
jR$em1sY
@iqxLT
EfOljS|
j'lXeE_
S#tQ7)>
%h;9Qs
;N0`:,GcB*
_>p9DwZ0`
p"KqtR
_io]vP3s
VjT,@T3
%>%[]9R+
490]S"
i.#pAE@
PRH;x8GR
n8O$G$k
=Bc4<Xt
)}WTn'
DXKOeM
u=LCZ3
\p\fo`
pU-`ow
FM{N?6te0
o*~#SM
}tAf'
5ptIf:|
aTWr<G
mae-z%
hO}~?Y
h^l>G3
Lb,6=,-t
dU'@l
P}ATw)'
TNmSzj
#Wp/w
a>n<36
4aa0F&
V%hgy
DY,oL.{t)
P56q9
:xh8zy/
:#KI 
!Q~tW:
R[1RDA]"
D@P&3zq
[8$LG{
*lD\ i
m>~ZE l
NLuC-Fo
?7`!<&
4""/I
p-",Kh
wMjyM76
hT /(
^!),c(
/nZ(6%
MC|i.N
0RU&S=L
-n|Ci!Y
JMj,1z0
h-o[!o\qF-
R%dQ$KR
d\rH|F#Y>
L*F/dM
tWb<.~s5
\7N~0w
5c':OU
x-Nr5t
(nZN?4
.4mhu9
(pCDLdmZ
p`@6A["
JjG\^g
3)Lu2D lx
_YpRX@
&jt3h;
hN&F(%1
tR.nfq
#2wwl*f
yXD:{Rm@
pK7zT+
V2aL8+
L"7>:T
&Z}}<[X
HA~<VzN
c)l'Y|x
iRUSM+=
Wm{_Y/
(%qH1#
1n29RO
E[ZK4I
1\@YHs"{
q(=_[3
L7sdj2
u@xe%m'
j1rn,qq-
F",?a>
@oHm~
h[\6S(
r>@`Wl
Y8=ZCA
vg);/O
mYf3b8
HdSH#(
65nW2G
{I!CFbb
$L(py2
$#;V$t<
QxTJ-zK
tvmI}
M()wko
ES7Rg?
@jL$Ia
bO*g&F)
i0w#o.
GM{ %8
$h]?](
M5bk7k5
K7'[hZ>`
rhEorI.Tqg
S.Oy%8
:W>iE*
0Aj^zH
}jE0dM8
;2=W}Y
h8X37b
~f89k!
dp=fKp
"+;Str_)[
SzI0z&a
X-hccut
Y~WFPU;
MDNTC%
]OmrKu
ZG^uai
iK6m_uv
D$}gv1*
&kt%b%;
LqWypG
moBVPM
fQO$9z
r'#Ra(B
~|Iogq
"y[Pi?p
\n}hV.
O7j+GX
uSH!~W
?}6!/w
'QJB&P
-hb'4V
[}%V2L
~T@#uL
=4S[z?
UiXYZx
q.;oi8
kAv>!A
{J-t7^9I
N_]K:mO
^WBG0S!WN9n9>{y0u
l'2H%}
kkktsX
}z/O;\
V~|gwG
GIH!4B
y-?wPs
3ZkHh;z3
(Am5?9
8##&Q>=
&2VCV4
Q%.|Ao/H{
bFNAd9
x5ulk
)q!?1l
*.w),j
S*?(b1
=t8c*v
ZKoD[
s+4K&8
ZEd%l}(f
N(|hUK
uV^9.A>
:P-z$<j
lm~_~5
rA>a*)wDE
!<aN7qq4
YT,,w[
*2MPg$
et@$UB
ln%#TR~2/
E5%w/<M
+KM9jP
x|SAew
oN%+uA
ZKNq8z9Y
d,KHv7o
I$.K^s
qcIgmK
L&kmkhJ
/;TMwWT
X9pHH|n
tGk+tG
le0Ri&
(2_;6'L
qvHs>R0
io+PW0
ul7..r
+vl^]l6
[4*:y2$
WO7kh:
LjE?R@@j
A9Nd<h
QwKebAa
l*o8Gl-
}iHh~1?
Y#.ON9
]hJYTCN{v9'
o8)(W\C6_
swiqDZ
&={d'|
H:iWGuC.
99S9U6
13Ts%|
G} wKv
2]~,YqA
K(@u.
!TCvL)
SZGqg0
%{@~Cl
1{u9x^
KF0'bc
6)a_gmol!_
gK19n^
)%X;*m
HCS+wBY
N4"%qY
Gc@{"-Z
;[><NW
(j}be*
n"qSR)
|3\, B
8*Pk*57
sFC2@$>t
jK4gC8
DqWPPB
d?xd_ej8
uEco-~
Pl:$v7t
)o\N7'Q
^2B(|p
D]sBmi
u?>}ip
EMiOQQAU
VUIm3'
W5]T`h
9, #lqD
AE?C.ni
F"z#%$
H^M!9,:
bm0K8)
Y!8?^;
Ox285#~
5XWZ#S
Z$<Q-B
}B4*rO]
y9qk;EM
g\P}qR
TDKg&:aD]
+*3Fo}
5]3/bN
G"cv4o
v1^jur
jcY~Pm
?\=\_J
<Wm-L(
?02H:i$
I_P*Xz
R~:7RC
~+!`$eR
Tb/>!6|f
x95V{8
6Bh iV
%:-"0O
(oov9R
|~a{)!
1:BZ&Z,
=Hb$3lV
c\qma]
j^Fy@eHs
}e}Idb
.)hiq'!L
"4!DZL
#F,Nw|&
B]_k~P
OagS>p
].#R&'
YBgIps
oWMGa!
;G9km&
:^x?~?
Ko:~K%
['EGE:*
9gC8+uj
T:Ym`V
9YDoBI;
B#IJVT0
js_51*
'~Glg;
MXq|8M
q*N<2R.E
AmT4<f
"V/pf6WZ
^!K\\M
,pd!E4
`?]yE
\lJ2!;
zF]?W4
Fr~G]n
#6G,4(D
^;Q @"
nY_Be[?
M3nq@o
{^Mh$3
aBo56-
lqqRFIh
z^*2l?
m`6[>h
[;.koY
W>kc@0A
M?8enh
~L9o5
nU1BVK
V`^t][
$mx}4RR
aIfWwWG
Q/a]N&)S
q1"EqQ
c-3E#
cF&Z:R=2
~v(tKy
a.gn1T
mB\U+72
2Dz%kL
Fp<`ZAI
$yKs8x
S@EmuX<
L}UY~w%
G;1km=
y|;Npk[WS
.M5SuM
Ol6&[C7"+F5
im^Wgj
eUY&<E
=7u'wm
Hj7^u]/~
(1B?@z\
+3O$uLAC
fwfI,!
IGm(u.
\im9qc
<y`xSw
MD@HEr/J
/;Ok@d3
giB=K!
cn\374p
m>_DGn
%|v6V2
DK}Vy6
\Qbr-%
E|qGQT/U
ge&g|Jv
G@{)X0V
;r_E,
PhD])7
U@fQ@B
GIehW:
0^8hEd^!L
/W.* [R
g>Y|Rh
8mV,&z
WC'P~
c7VK5x
/^%Tv{
kzb%XP
Q|9[3K
fY'5V\CL
b~Q#O"
R+j:?8C
N!x]Yr
r<Fy,8
Yo#/+P
~f|klM
2Z2 43
}L:kO>
f2'>A+
2y<Q 
9on&^D
bo]dwt
%+3IW!^c&
$>]EnuX:
;pMTAK|o
3hCPcy;
/Qm[u
6qnU;a
9?cdrVZ
Blh%/}
O_7ne{
|jBd)z
8Q^WLD
]3`*Vs
)aK4"*b
b ~(IHS
1_kRx\
oRY_I{Ij
RE"f[
dQ0Df
W'LBoe$K
,c3 8'
HOuXX5
(g{eX[
~fO+O|
c\L;63KE
x)[**v=
E9JNr#
i+QHtU
>JX go)
(KjsVD
Fc)V}s
Y4zwGB/
xBP@
WkWIUR~8
QpeOo3
9b/E&;
/uKU\L
M&Cvp)8
i_L@Hg
w+AtO6$
D@~(ErS
z\#Ezu2
WAN_Ui
J]C#wf
;8XupDh
WGpC.p
=CUJ\|h
MA;1^!
u^}N1!u
y"MTa=C
W?p-1U
=HrT/1
$V(D@[
<$"7wvf
YT~K%g9N
|,J>hF
<a"y=^
`gYkA,
}!5:4LC
b[~N[d
T4y.+Wg
"/#zw6
!H@al{)
nv8:C3`1
a?_;eg
~z_umU
=wP"8a
X#4j$
p5 QCKM
N&s<fxr
\X8f$]
6Bnk_<
j`3m1Le1H.
bj\JS
)]d3`
./Ghq&2
dCO35Y
>b{oAw-
"g&lF?o
g-i$9_
L)%1vgKIx0
HGY eHR
<lM_].q|
]n7~=pj
f0Rt'|
*^yBo6
ZqB;py
iTnxWE
tSiN1J
c#"M_<
[^2Tr1
5)n`R[
H1kb5!
8u~5L5
h8a`.m
&lrzu
V%^Bw3
#>zp>0R
;~x*b$
uh?B!m
b<-fGQ
RTbkzp
8shpU|
$w6;3V
'}pC~I
;OCIqO
1%OeV^
SPs7Ya
']-o!WwW|
y3f@Ee :
m)gQbu$
6'0uO}
M^CRQ6X
k>bt9h
UNuE/?
r_eNyp7
-@*h*j
KvtMj~
*f1D;s
yqCBL,
qFxK?s
y8KI:,
z=]r8)
eR6,e.=
oV&Z9~=B3
e?zUI?c
6tl[\e$
:8C5va
BUL^*#
9?*Kzb
1SXA9N
.SrE*I
WW{ws)
\P~aSRi
A_4rJW
Qo6A_/i
ikZVyS
AUp=Cp
"v>0]
Iu;tpN
EZ^/;>J
!0|x1F
!CdtI3
$)yNXI
+Q,ifu
'QSx'?
wc$p/G
}nL;,4B
Yrg]hO
Fn(mI)"
v k$8
]I7Y>usw'a
$0[H`(
_[ykop
Pp7G[x
"vR${D
B39dBI
5m,_R<
2&["*a
n$I!@1c
:od#*?
b^FR>M
z.Z@Cp'|
P.`ye+I
'G>h-J
z^mL//s
8H7Pf`~
g3n`M<z
o*m%t
t+&98X;
[2YQwb
K+FqWQ
-IPOo!$
lZ0%m"
:y 5+t$YWBKyJ
-g6~e+z
Tf's$0U
tBt~]nU
SwqDtq
>)K,2bx
LY7eO%
bav%Ze
Zo]BI{;Rj_]u
v9j5{?
V) Y6bKajk~
As~vyrY<
.HU2J?a
^auBd~
.-bp-f?
['fr#
le.6sN9
<jrn}%
}^TjB
;I(!r/
MrrEs#
:`#)87
xf.YWN
0gfj%9[
;V^p?[
C-QH<!%Q
B[<.u<
NTWkbF
W3s26]
Mk`m!Ht
zQ7,zy
.y*66~V
BkD4cOe
kfi=j(
hLO[[\v
U+>NG>
=qK^\z
:5S!t/Q
`w\/j8
XFw\O1
^%:g2S
ywex(~t85]
"0-Xyn
;/TRvf{
|8cM7Y
&rvL9n
3x{5sg
qKQ:2n
6/'m,:
uQA,vav
b{Z^7=)
Ocqdzm
kH;W+bXREK
A7ljks
s|<efQ
X5=z_]
};qaWS&T
d84p".
SSPfnoD!c
\r*)<6]
@]{kY6
iK#3Kqs
HK0-\_
RqD6}2
#8zA?\`
T4QPK
;q=r#{?
{ts`T\
ish9lz
2M^ .J[x
eUP8PL]3
Ynq<n^
LNvUlJ
1rbQ(e
%=xC]"%=
"@eDQymMk"
H9>&b:
Pn~H%N
n}u^;2,
-PY`z#kua)T
vnVy +
qN^vc:
lq~;$[
F|hfv#
"2APD}
kUF~/<
%_y N3
1>r;Ew>4lH
<Xf\N>
m4qZA'
O^r<sa
lJwtup
*w7c5D
%64:s1?
=9G!y7
%ej4X?
aY*8+J
><.I%Bg
e_Y[Z#O_
VsWxt\Qn
sfO^3\
_vO7<^J
8+[y(w?`
_wHbKn
*ox#^M
lZ%A-59
;nYZ4m
>Q&OQwmb
@& /]))f
4gC%N/6
XcZ6su
rb7WMe
qDuIgHS
~mk`_W
pY)uUm
tyZimL
:ku}`I
lt?nf6
^:5t.7
;r.Dsj
%OM5E`
kcw6'0
<y#9w
dm"szt
M3H\:yI
=zozAF
!+.75O0
[~XcM:
1JE6N1
Ge':.qn
kslb#=_9v
k8mm'7
yPG<WI
rX@I4[
5Ejy5w
yDtN:r
7Mp4*x
iVkXh.{
IO2,4O
.{|=T>
MDcx81
cDl+&&?*<
WP>{qR
y8`%4~ue&J>
*7CINI62
u.3JY,
+2}} OX
Vp<h&i
SdPcp`
n9E<;u
ougGc0f
!tL(U{
>-@1<lx
&6J;Qo
f2|$21
}$n}W[
NZU+&U
OYlVR(
GIUGU(
A|fX(
I%n u
gJf(%W
C_lKC?
s k0h#
VMSc5o
5C:;D)
DqvGdl
'gv)H?
{T6tvr
{W[7Uq
$kjmNfQ2i
I~Svnl
W=,h5ol.
Zv2kz?
%(*d:a'
&t^|99
:z4fj+
_k1gH5
VZ,~FsO
xG{PA
+LzXBC
po|y]aCMLp
hRGCH-q(
Ooo/UC
IbV\3%
Jp#~_H
vf'3`A
Vy;%L j
L>@4-
ZWo%^c68v
X-N/:T
RqhP<%99
m>&S}T=
:.K~V.
AslD2a
35TWf8
tU5h@jzn
$B=7'8|n
2l|X&I
4t;|xg
6Erm9Q
"P1f:N
z_I;66
?'^f26zr
lAC.'D
zQ~$#g
7 YP7&l,
1b=W+rQ
h;iPVu0
'\w]5i
IwC[/n1
"oU38[
K^mV|>x
%gxLnx0v
WhQ*A.
TPs{1y
zv>cfb't
X!GyPU
/QuJ;E0b
<XF5s.oj
,t'S'4
X^W7x
aqrAk3
+~]s|P
Q6Ss__X`si/Lr
a93e-&
zyp3oP;
PR!TGt
@cl&m|7
3 [c?D8~
&`z@Ebr
?Wr0/i
( pnMk~
M =e|@
"\+M$)*;
>PF)ie*ZH
[9jQ Z
JyFcb|
Z~nJ~IG
Zoov&F
SP0<Ne_
Dk'GB7
YmN~1i
K$C91c
sVU!ckR
62,x-c]N
Gs)t8R
-!7(f?
^j6,J
O''U-
0CX&>R
XGn/H[
!4Jur\
77uC^]$_h
$f*X4:
y\*wdnL2
r;V'sDc
4-5WSvF
9JzN$S{
A^mo{#|lI
qOyQ5Y1
9eLCH&
C6kn:]q
W^\x;kD
!{b}56
;Gk9*R
!zClI-d
#$a\lsd
QH5BI\
[j/$3%
!N^]#!
GBg| {
T=DWCW
?qfg?Y
yS7rl"
pRxn}a
_FtJXN9Y
&9^iez
>z%kb>,
bK9|@YEiwA>d
`rJ\Z>EO
0Z1R/N
qt?GsU
7Y6{=x
Az#:oA
fGP<CH
EzT'jI?
kmGB|ynM
o+</wO
+3<2;W
9ci?P>
aLGj@s
r\BZ`!
fQGNChN
c\u2nv
6E&9bG
$lN^KsY
EuF.h>Y!j
)0B/1~
e/796|
dK\xrR
IhXw!!
yEVB@U
(;tRuZ]
B2yuDe
GetLocaleInfoA
SetEndOfFile
GetCurrentProcess
SetDefaultCommConfigW
SetEnvironmentVariableW
CreateJobObjectW
InterlockedCompareExchange
UnlockFile
CreateHardLinkA
GetTickCount
GetNumberFormatA
GetConsoleAliasExesW
SetCommState
GlobalAlloc
LoadLibraryW
LocalShrink
GetCalendarInfoA
SetVolumeMountPointA
GetSystemWindowsDirectoryA
GetConsoleAliasExesLengthW
SetConsoleCP
GetFileAttributesA
GetModuleFileNameW
CreateActCtxA
GetThreadPriorityBoost
VerifyVersionInfoW
GetLogicalDriveStringsA
GetCurrentDirectoryW
SetLastError
GetProcAddress
CreateNamedPipeA
GetConsoleDisplayMode
GetProcessVersion
LoadLibraryA
InterlockedExchangeAdd
CreateFileMappingW
GetNumberFormatW
CreateEventW
OpenEventA
QueryDosDeviceW
GlobalWire
EnumDateFormatsA
EnumResourceNamesA
VirtualProtect
WaitForDebugEvent
PeekConsoleInputA
GetShortPathNameW
SetProcessShutdownParameters
SetFileShortNameA
GetDiskFreeSpaceExA
ReadConsoleInputW
GetTempPathA
EnumCalendarInfoExA
LCMapStringW
CommConfigDialogW
KERNEL32.dll
GetCaretPos
GetMenuStringA
GetSysColor
CharUpperW
LoadMenuW
DrawStateA
USER32.dll
GetCharWidth32A
CreateDCW
GetCharWidthFloatA
GetBitmapBits
GDI32.dll
MultiByteToWideChar
GetLastError
HeapFree
HeapAlloc
GetModuleHandleW
ExitProcess
DecodePointer
GetCommandLineW
HeapSetInformation
GetStartupInfoW
GetCPInfo
InterlockedIncrement
InterlockedDecrement
GetACP
GetOEMCP
IsValidCodePage
EncodePointer
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
GetCurrentThreadId
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
IsProcessorFeaturePresent
HeapCreate
WriteFile
GetStdHandle
InitializeCriticalSectionAndSpinCount
DeleteCriticalSection
LeaveCriticalSection
EnterCriticalSection
FreeEnvironmentStringsW
GetEnvironmentStringsW
SetHandleCount
GetFileType
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
WideCharToMultiByte
GetStringTypeW
RaiseException
HeapSize
RtlUnwind
HeapReAlloc
.?AVexception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVtype_info@@
+#e;;}z
gggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggg*Xqq
ggggggggggggggggggggggg
ggggggggggggggggggggXSG?o
lCtkgggggggggggggggggggX
ZggggggggggggggggggOO
78gggggggggggggggggg&
gggggggggggggggggggq
ggggggggggggggggggg
ugggggggggggggggggggg&
gggggggggggggggggggggg&
ggggggggggggggggggggggggggggD
gggggggggggggggggggggggggggg
gggggggggggggggggggggggggggg
{)gggggggggg
ggggggggggggggggg
gggggggggI
ggggggggggggggggga
gggggggg
ggggggggggggggggg#0
gggggg
gggggggggggggggggB
ggggggggggggggggg
gggggggggggggggggB[[2
;,gggggggggggggggggg
ggggggggggggggggggz
-ggggggggggggggggggg
d"gggggggggggggggggggg
wgggggggggggggggggggggggg
ggggggggggggggggggggggggg5
gggggggggggggggggggggggggggt
gggggggggggggggggggggggggggD
Zpgggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggggg
~~~~~~~~~~~~~~~~~~~~~~~~~~~~j~~~~~~~~~~~~~~~~~~~~~~
X~~~~~~~~~~~~~~
~~~~~~~~~~~~~~
}-~~~~~~~~~~~~~~
~~~~~~~~~~~~~~I
7vz~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~k
U~~~~~~~~~~~~~~~~~~~~~du
~~~~~~
~~~~~~~~~~~~
~~~~~~
6~~~~~~~~~~~~G
~~~~~~~~~~~~y
~~~~~~~~~~~~V
~~~~~~~~~~~~~
~~~~~~~~~~~~~V
~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

?
E@U

BP4J

w_i
9V
p1(


LIF

'
_N|~Uf
Xa~\gd|{QW}
R`~|Q[
QB~hVW
^z{{Mu
uz}_|{
{[mz|\[b
Y^{|i\
\^~~Hf
S\Z}}X[
UV||[c
Wa~}Tb}
bX~|gV
Z`wY\E
KTlqX`
zZ`c{z}{~
WV`iR~|]g
`S_kQ^]~yOR|{cv
zRQgkgS
QLas_K
\^}giY
Q~~{c|
~`W~}k
_}|Zf|
{K[~o\[iU
PN~|dfms
aUaTOc
b`~dUU
~~}nhv
o[YwaQ]{
jyZ~[YZ
cU{}}z
{bx{qck|
|}NVbz{
dgY}{[\}
SC}yXJ|
c[s~et}
Q~s|]uqvaS_~
}VlzzO|{
RRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRR'
oRRRRRRRRRRR
))))))))))))))))))))))))))))))))){
oRRRRRRRRR)
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$${
RRRRRRR))
RRRRR)
0FF555nn
RRRRR'
000F5555nn
FF0005555n5
000555n5
FFFF0FF555n5W
FFF000555.
FF000F
FFFF008
>>````2
a$$$$$$$
>>>>>|
33333??W
DII>I>>>>```
F0055555
0000F5555
FFF000555
FFF00F55
FFFF000
FFF00>Iq'RRRRR
@l@l@ll4J
)RRRRRR
RRRRRRRRR
RRRRRRRRR
RRRRRRRRR
RRRRRRRRRR
RRRRRRRRRRRRRRRRRRRRRR
nnnnn5n55n5
kRRRRRRRRRRRRRRRRRRRRRRR
IIIIII
RRRRRRRRRRRRRRRRRRRRRRRRRo
wNNNNNNNNNN
KRRRRRRRRRRRRRRRRRRRRRRRRRRR
^=RRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRR
:::::aaaaaaaaaaaaaaaaaaaaaa
:::::::
:::::aa
33333333333
|a::::a
a:::a4
a:::a4
a:::a4
a:::a4
a:::a4
Q!a:::a4
Q!a:::a4
a:::a4
a:::a4
<QRa:::av
avm999
?Q_a:::av
Fa:::av
QFa:::av
a:::adk
2aaaaaa
0$:::::ad
qbo7:::::ad
::::::a
e>{aaaaa
:::::::a
:::::::::::::::al
ddxddx
::::::::::::::::aaaaaaaag+
:::::::::::::::::::::::::::w
]:::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::
RRRRRRb
00000000000
000000000000
000000000000000000000C000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
VVVgggggg
[[[[[Z
f????T




mscoree.dll
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
nKERNEL32.DLL
wruntime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
@Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
((((( H
h(((( H
H
WUSER32.DLL
sacimujig
dFidowivologobe
werokatanesibulowo
kernel32.dll
Nizapason
wiheli dekehec tuwovinec xipasuvilugafodozuyo
jjjjjj
@jjjjjjjjjj
AFX_DIALOG_LAYOUT
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInfo
032414E6
FileVersions
13.28.77.37
InternalName
PinchesAndLabis
FileDescription
Globalys
LegalCopyright
Copyright (C) 2023, Imbicilus
ProductName
Porezodacotes
ProductVersions
60.73.11.13
VarFileInfo
Translation
Warning
Japan tech:
Xomedohiyegeyum
.Tiduhidiwatuyes tewunuvi necafizureziv nihodim
2Xafegofopi decedutopocuce redegumo xaja yehuducile
Raxacitafuzugi buhubanitu wuzo/Vukimisodokovi xoseriwafocazi kibiyum gicirutojbWinedi zirofini beb gasix dozumibokozot hukodarijajihuz zuvawugososix kaxivelajacak fokeza jakanul$Kuzodivekalunop dovoj kabiluyoh cusuPJotuyeyazofab wosuluvi yopulukofaxe cuz vajeluw mutimey coniketabix liyugekayute3Daxicetewej basevadiwa faniwetizulo lukapijusinubes
Zes!Mewafizovimil sasecu denihas coha5Xahino gasakupagu yijixere nigi hid fakunu hademupale
Dasopelediyucuc vogesopug
Famehoruculani melotorajiFafujimewacigob baxusixemojukox
Wehu nosonobexopoli
Depacepeyomu cuxicerat guvubi>Lih lapadinefig pedaperazuje megag miv komopijasexezig zekefagDFupeluxaw dinayukitawugoz kuzujedomuro bul komixalahi gekopapide mab
FirewewoBPeg hisukasev pajaxiweh jilimidaxuk wisenerinij madapegire zakuyah?Wumufenabohug monah bolede sizisodid gadac watidizun jaxakemuje*Zuwudepupivasit lerexah pir hatuleduziwugi
Tofece nosukinurage rabuhaeToxadaz pufirucuga kuporureyoy tipuzoxugaviw pacudahafuta doximeguk jer fesata teselazajemu degemaras
2Rezok wukeculuxuruta sagezozifuna juhiwolow deyaru
RFetulokorawo butixuhaxihoyed pote lamabaro yusapa nitihiv yax seyo xakivupevacuvob
Xofax coboxo gaduha
AMegufazot monutamono zowatalig xigilagiruhicu xagimicij siwawubos
Cumayi gevoyo
VezMHew wuyoruyix munoyumi kegeko bupaxucababafo xoyu zebadaho meru fureya wawobaLHazum gixajoj pazezewuho luzififake wewaholusozov vapiru socayebiveva rotaje7Hujoluzilevaj yujotozineg yuvohomahi lovumefugo gelahut-Hatukefis noyoreku wecufuwijomu vitotawahiwol
QXelig xojajuyelaw visi demiw zavewovocifeli kozixesubuco segowenaz comafe zobalos
Nimehoma xeje dirinecivipFPizo taciraz yuxahu noxovocurayuha vikaw bemozokisohozuw lizumo rifivieBivoyub yucanoh rov tamicihuyake lefivelinazari tujepatagubeku mudukunesedu regarece cozane woyekurir'Xihuwogogixeduc socurefineluwu yirusibo&Wawo muf teberatatewi gavo pow komeset
Riroyerasemasij
OVemipirurapi dugo rib sezabosifuke ritisaxalenino jeliw coyijibelehariv sihotobSDonapariniza gatoweduwi yucometahuyeh jolipi hevunuma yif seladez sasatuwij sarodaw2Zizecogi bikayexupeho jasewunegajeb tedenefogucohi
Dopupomevacuro
Webilivi
Zan zaregime fepe racagace
Dacefezeraxiwi pemejobox zel
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Chapak.4!c
tehtris Clean
ClamAV Win.Packer.pkr_ce1a-9980177-0
CMC Clean
CAT-QuickHeal Trojan.Chapak
Skyhigh BehavesLike.Win32.Lockbit.cc
ALYac Gen:Variant.Zusy.558534
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005a60081 )
Alibaba Trojan:Win32/Chapak.b3749a94
K7GW Trojan ( 005a60081 )
Cybereason Clean
huorong Clean
Baidu Clean
VirIT Trojan.Win32.Genus.WJV
Paloalto generic.ml
Symantec Packed.Generic.620
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/GenKryptik.HBDP
APEX Malicious
Avast Win32:PWSX-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.Chapak.gen
BitDefender Gen:Variant.Zusy.558534
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Zusy.558534
Tencent Trojan.Win32.Obfuscated.gen
TACHYON Clean
Sophos Troj/Krypt-AIW
F-Secure Trojan.TR/Kryptik.qmzpl
DrWeb Trojan.Siggen29.34715
VIPRE Gen:Variant.Zusy.558534
TrendMicro Ransom.Win32.STOP.YXEIBZ
McAfeeD Real Protect-LS!7972B08246E5
Trapmine malicious.high.ml.score
FireEye Generic.mg.7972b08246e56849
Emsisoft Gen:Variant.Zusy.558534 (B)
Ikarus Trojan.Win32.Glupteba
GData Win32.Trojan.PSE.1CBIMJW
Jiangmin Trojan.PSW.Tepfer.nod
Webroot W32.Trojan.Gen
Varist W32/Kryptik.MIZ.gen!Eldorado
Avira TR/Kryptik.qmzpl
Antiy-AVL Clean
Kingsoft Win32.Trojan.Chapak.gen
Gridinsoft Ransom.Win32.STOP.tr
Xcitium Clean
Arcabit Trojan.Zusy.D885C6
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.Win32.Chapak.gen
Microsoft Trojan:Win32/GCleaner.KGF!MTB
Google Detected
AhnLab-V3 Trojan/Win.Hpgen.R662980
Acronis Clean
McAfee Artemis!7972B08246E5
MAX malware (ai score=87)
VBA32 Clean
Malwarebytes Trojan.MalPack.GS
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall Ransom.Win32.STOP.YXEIBZ
Rising Malware.Obscure!1.A3BB (CLASSIC)
Yandex Clean
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.HBDB!tr
BitDefenderTheta Clean
AVG Win32:PWSX-gen [Trj]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (D)
alibabacloud Trojan:Win/Chapak.gyf
No IRMA results available.