Static | ZeroBOX

PE Compile Time

2021-04-01 23:59:59

PDB Path

k:\async-socket-win32-demo\x64\Release\AsyncSocket.pdb

PE Imphash

bb3b7b74ba5cf43655fdbba213daa5ca

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0001652a 0x00016600 6.34040480148
.rdata 0x00018000 0x00006dda 0x00006e00 4.82946887616
.data 0x0001f000 0x00004330 0x00001e00 2.69856188946
.pdata 0x00024000 0x00001614 0x00001800 4.8045083084
.rsrc 0x00026000 0x00039d38 0x00039e00 7.60970145567

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00031890 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_MENU 0x0005f788 0x0000004a LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0005f930 0x0000021c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0005f930 0x0000021c LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0005fb50 0x00000050 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x0005f7d8 0x00000010 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MESSAGETABLE 0x00031d70 0x0002da12 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x00031cf8 0x00000076 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x00031cf8 0x00000076 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x0005fba0 0x00000196 LANG_ENGLISH SUBLANG_ENGLISH_US XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library KERNEL32.dll:
0x140018000 GetProcAddress
0x140018008 LoadLibraryW
0x140018010 CloseHandle
0x140018018 CreateThread
0x140018020 GetModuleHandleW
0x140018028 GetLastError
0x140018030 ExitProcess
0x140018038 CreateEventW
0x140018040 WaitForMultipleObjects
0x140018048 CreateFileA
0x140018050 GetLocaleInfoW
0x140018058 SetStdHandle
0x140018060 WriteConsoleW
0x140018068 GetConsoleOutputCP
0x140018070 WriteConsoleA
0x140018080 LoadLibraryA
0x140018088 IsValidLocale
0x140018090 EnumSystemLocalesA
0x140018098 GetUserDefaultLCID
0x1400180a0 HeapReAlloc
0x1400180a8 GetLocaleInfoA
0x1400180b0 IsValidCodePage
0x1400180b8 GetOEMCP
0x1400180c0 GetACP
0x1400180c8 HeapSize
0x1400180d0 SetFilePointer
0x1400180d8 ReadFile
0x1400180e0 GetStringTypeA
0x1400180e8 FlushFileBuffers
0x1400180f0 GetConsoleMode
0x1400180f8 GetConsoleCP
0x140018100 GetSystemTimeAsFileTime
0x140018108 Sleep
0x140018118 DeleteCriticalSection
0x140018120 EnterCriticalSection
0x140018128 LeaveCriticalSection
0x140018130 WideCharToMultiByte
0x140018138 MultiByteToWideChar
0x140018140 RaiseException
0x140018148 RtlPcToFileHeader
0x140018150 RtlLookupFunctionEntry
0x140018158 RtlUnwindEx
0x140018160 GetStartupInfoW
0x140018168 TerminateProcess
0x140018170 GetCurrentProcess
0x140018178 UnhandledExceptionFilter
0x140018188 IsDebuggerPresent
0x140018190 RtlVirtualUnwind
0x140018198 RtlCaptureContext
0x1400181a0 HeapFree
0x1400181a8 GetCPInfo
0x1400181b0 LCMapStringA
0x1400181b8 LCMapStringW
0x1400181c0 GetStringTypeW
0x1400181c8 HeapAlloc
0x1400181d0 EncodePointer
0x1400181d8 DecodePointer
0x1400181e0 FlsGetValue
0x1400181e8 FlsSetValue
0x1400181f0 FlsFree
0x1400181f8 SetLastError
0x140018200 GetCurrentThreadId
0x140018208 FlsAlloc
0x140018210 WriteFile
0x140018218 GetStdHandle
0x140018220 GetModuleFileNameA
0x140018228 GetModuleFileNameW
0x140018230 FreeEnvironmentStringsW
0x140018238 GetEnvironmentStringsW
0x140018240 GetCommandLineW
0x140018248 SetHandleCount
0x140018250 GetFileType
0x140018258 GetStartupInfoA
0x140018260 HeapSetInformation
0x140018268 HeapCreate
0x140018270 QueryPerformanceCounter
0x140018278 GetTickCount
0x140018280 GetCurrentProcessId
Library USER32.dll:
0x140018290 EnableWindow
0x140018298 MessageBoxW
0x1400182a0 SendMessageA
0x1400182a8 SendMessageW
0x1400182b0 GetWindowTextLengthW
0x1400182b8 SetWindowTextW
0x1400182c0 GetDlgItem
0x1400182c8 SetDlgItemTextW
0x1400182d0 GetDlgItemTextA
0x1400182d8 GetDlgItemInt
0x1400182e0 PostQuitMessage
0x1400182e8 EndDialog
0x1400182f0 GetMessageW
0x1400182f8 CreateDialogParamW
0x140018300 ShowWindow
0x140018308 TranslateMessage
0x140018310 DispatchMessageW
Library WS2_32.dll:
0x140018320 WSACleanup
0x140018328 WSAGetLastError
0x140018330 WSAStartup
0x140018338 closesocket
0x140018340 WSAEventSelect
0x140018348 connect
0x140018350 htons
0x140018358 getaddrinfo
0x140018360 socket
0x140018368 WSAEnumNetworkEvents
0x140018370 send
0x140018378 recv

!This program cannot be run in DOS mode.
`.rdata
@.data
.pdata
@.rsrc
x ATAU
HcP$Lc@ M
|$0A]A\
x ATAUAVH
A^A]A\
SVWATH
xA\_^[
VWATAUAVH
@A^A]A\_^
9D$8u;H
WATAUH
9D$4u2H
L$0H9{
H9D$ps
l$ VWATH
x ATAUAVH
A^A]A\
WATAUH
A]A\_
WATAUAVAWH
L9&tjH
0A_A^A]A\_
UVWATAUAVAWH
@A_A^A]A\_^]
UVWATAUH
0A]A\_^]
t$ WATAUH
L9l$pv`H;
fD9l$Xu
H;D$pr
0A]A\_
tKH9Opu
H9L$pr
D$@H9D$`
H9L$Pr
D$XL+D$P3
H9L$Pr
H9L$Pr
H9L$`r
H9L$8r
t$@H+t$8
H9T$Pr
UVWATAUAVAWH
H9:t/H
H9L$Pr
l$pL+l$P
H9T$`r
D$@H9D$hujL;
A_A^A]A\_^]
G@L9 u%H
L$0H9_
WATAUH
A]A\_
WATAUAVAWH
D8:u(I;
0A_A^A]A\_
E9<$ti
L$ SWH
t$ WATAUAVAWH
A_A^A]A\_
p WATAUH
A]A\_
WATAUH
A]A\_
fffffff
fffffff
SVWATAUAVAWH
0A_A^A]A\_^[
WATAUAVAWH
A_A^A]A\_
@SWATAUAVAWH
L!t$HL!t$@
D$PL9wXt(
D$8HcH
A_A^A]A\_[
ATAUAVH
0A^A]A\
VWATAUAVH
A^A]A\_^
UVWATAUAVAWH
pA_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
WATAVH
@A^A\_
l$ VWATH
x9\$ ~?H
l$ VWATAUAWH
L$$fA;
u 9w$r
t5f9(t
A_A]A\_^
AUAVAWH
0A_A^A]
s WATAUAVAWH
D$P~/8\$vt)H
~98\$vt3H
A_A^A]A\_
WATAUH
0A]A\_
H!|$ E3
t$ WATAUAVAWH
0A_A^A]A\_
H!\$ E3
ATAUAVH
A^A]A\
@UATAUAVAWH
e A_A^A]A\]
L$ SUVWH
UVWATAUAVAWH
0A_A^A]A\_^]
@SUVWATAUAVAWH
;CuTD8c
A_A^A]A\_^][
\$ UVWATAUAVAWH
D$Xt"I
A_A^A]A\_^]
@SUVWATAUAVH
A^A]A\_^][
!t$(H!t$ H
d$ AUAVAWH
L!d$ E3
@A_A^A]
@8l$Ht
UVWATAUAVAWH
l$H~.A
A_A^A]A\_^]
WATAUAVAWH
A_A^A]A\_
x ATAUAVH
@8|$Ht
A^A]A\
WATAUAVAWH
@A_A^A]A\_
l$ AVH
fD9#thH
CfD9#u
fD91u:A
Hct$PH
shHcD$XH
` AUAVAWH
fD9|$b
A_A^A]
H!|$ E3
@8*uH;
\$0A9k
@8l$Ht
@8l$Ht
H!|$ E3
L$ UVWH
\$@A9k
@8l$Xt
\$ UVWATAUAVAW
H!|$ E3
|$@9l$L
f;D$Dux
H!\$ H
HcD$HH;
H!\$ H
HcD$HH;
H!|$ L
A_A^A]A\_^]
WATAUAVAWH
0A_A^A]A\_
L$ UATAUAVAWH
A_A^A]A\]
@UVWATAUAVAWH
!t$(!t$ E3
A_A^A]A\_^]
t$ WATAUAVAW
A_A^A]A\_
WATAUAVAWH
0A_A^A]A\_
x ATAUAVH
H!\$ E3
0A^A]A\
WATAUH
0A]A\_
UVWATAUH
D$&8\$&t-8X
@A]A\_^]
@USVWATAUAVAWH
eHA_A^A]A\_^[]
WATAUAVAWH
H!t$ E3
A_A^A]A\_
WATAUAVAWH
A_A^A]A\_
x ATAUAVH
D! D9f
@A^A]A\
x ATAUAVH
A^A]A\
WATAUAVAWH
0A_A^A]A\_
LcA<E3
VWATAUAVH
@A^A]A\_^
SUVWATAUAVAWH
HcT$0;
u{9|$0tuL
XA_A^A]A\_^][
WATAUAVAWH
0A_A^A]A\_
L$@tfH
@UATAUAVAWH
A_A^A]A\]
H(H9J(u
bad allocation
ZwOpenSymbolicLinkObject
CryptEncrypt
CryptImportKey
CryptAcquireContextW
ios_base::eofbit set
ios_base::failbit set
ios_base::badbit set
LoadResource
FindResourceA
string too long
invalid string position
bad cast
Unknown exception
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
(null)
`h````
xpxxxx
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
CONOUT$
`h`hhh
xppwpp
k:\async-socket-win32-demo\x64\Release\AsyncSocket.pdb
GetProcAddress
LoadLibraryW
CloseHandle
CreateThread
GetModuleHandleW
GetLastError
ExitProcess
CreateEventW
WaitForMultipleObjects
KERNEL32.dll
EnableWindow
MessageBoxW
SendMessageA
SendMessageW
GetWindowTextLengthW
SetWindowTextW
GetDlgItem
SetDlgItemTextW
GetDlgItemTextA
GetDlgItemInt
PostQuitMessage
EndDialog
GetMessageW
DispatchMessageW
TranslateMessage
ShowWindow
CreateDialogParamW
USER32.dll
WSAEventSelect
getaddrinfo
WSAEnumNetworkEvents
WS2_32.dll
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
WideCharToMultiByte
MultiByteToWideChar
RaiseException
RtlPcToFileHeader
RtlLookupFunctionEntry
RtlUnwindEx
GetStartupInfoW
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
RtlVirtualUnwind
RtlCaptureContext
HeapFree
GetCPInfo
LCMapStringA
LCMapStringW
GetStringTypeW
HeapAlloc
EncodePointer
DecodePointer
FlsGetValue
FlsSetValue
FlsFree
SetLastError
GetCurrentThreadId
FlsAlloc
WriteFile
GetStdHandle
GetModuleFileNameA
GetModuleFileNameW
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetCommandLineW
SetHandleCount
GetFileType
GetStartupInfoA
HeapSetInformation
HeapCreate
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
GetConsoleCP
GetConsoleMode
FlushFileBuffers
GetStringTypeA
ReadFile
SetFilePointer
HeapSize
GetACP
GetOEMCP
IsValidCodePage
GetLocaleInfoA
HeapReAlloc
GetUserDefaultLCID
EnumSystemLocalesA
IsValidLocale
LoadLibraryA
InitializeCriticalSectionAndSpinCount
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
SetStdHandle
GetLocaleInfoW
CreateFileA
UBLJyi8IrEwD!jj
1.HKe
.?AVbad_alloc@std@@
.?AVexception@std@@
.?AVruntime_error@std@@
.?AVfailure@ios_base@std@@
.?AVCXEvent@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVfacet@locale@std@@
.?AUctype_base@std@@
.?AVios_base@std@@
.?AV?$_Iosb@H@std@@
.?AV?$basic_ostream@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_ios@_WU?$char_traits@_W@std@@@std@@
.?AV?$ctype@_W@std@@
.?AV?$basic_streambuf@_WU?$char_traits@_W@std@@@std@@
.?AV?$basic_filebuf@_WU?$char_traits@_W@std@@@std@@
.?AVcodecvt_base@std@@
.?AV?$codecvt@_WDH@std@@
.?AVbad_cast@std@@
.?AV_Locimp@locale@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
wwwwwwwwwwwwwwwpx
pxwwwwwwwwwwwwwxpx
pxDDDDDDDDD@
pxDDDDDDDDDH
pxDDDDDDDDDH
pxDDDDDDDDDDDDDDpx
pwwwwwwwwwwwwwwwp
wwwwwwwpx
pxwwwwwwpxDDD
pxDDDDDDpx
pwwwwwwww
63[4]5mm]5\]m]mm5\mm5555555\\\5\\\5m\55\\5ed:
cOXY/P.Z0.0.QR00/ZPP0000000/0PPZR.BI@/DE0,
WkV21TSav^8{
}>qooggggggg1`_fhsnHK
Nw~ytMMMMMMUbbrrrrrxxxxxxxxrriUMMMMMMMMMUuzt
I3')+*+)))*))()*+++,6J!54 CBA
jYPQTVTSkllZTTXRTUiHceWda/
}zy|yx~
{|yvrrwsqpon
PPPPPPPPPPPPPPPPPKMNNNNNNNNNNOLO
JHHGGGGGGGGHI
JEEEEEEEEEEFC
JEEEEEEEEEEFC
JEEEEEEEEEEFD
JEFEEEEEEEEEB
O%JEEEEEEEEEFFB
JJIIIIJIIIIJJ
O(@>=77A779?<8;$O'
)O6530./21+*-,4#4PPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPP
wwwwwwwwwwwwwwwpx
pxwwwwwwwwwwwwwxpx
pxDDDDDDDDD@
pxDDDDDDDDDH
pxDDDDDDDDDH
pxDDDDDDDDDDDDDDpx
pwwwwwwwwwwwwwwwp
wwwwwwwpx
pxwwwwwwpxDDD
pxDDDDDDpx
pwwwwwwww
63[4]5mm]5\]m]mm5\mm5555555\\\5\\\5m\55\\5ed:
cOXY/P.Z0.0.QR00/ZPP0000000/0PPZR.BI@/DE0,
WkV21TSav^8{
}>qooggggggg1`_fhsnHK
Nw~ytMMMMMMUbbrrrrrxxxxxxxxrriUMMMMMMMMMUuzt
I3')+*+)))*))()*+++,6J!54 CBA
jYPQTVTSkllZTTXRTUiHceWda/
}zy|yx~
{|yvrrwsqpon
PPPPPPPPPPPPPPPPPKMNNNNNNNNNNOLO
JHHGGGGGGGGHI
JEEEEEEEEEEFC
JEEEEEEEEEEFC
JEEEEEEEEEEFD
JEFEEEEEEEEEB
O%JEEEEEEEEEFFB
JJIIIIJIIIIJJ
O(@>=77A779?<8;$O'
)O6530./21+*-,4#4PPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPP
8!ZJh{
\MgbP5
B]5?14
xv@VgOO
JD:C<v
jw-wj~
'MpfR{
t\PHFG1
46&6XL
0xI*:"m
$5RqDv
ADiMK]
{#:Aqc
L=6N|lq
Ge~HgUJ
)f34Y=
k7yoe)
3q-:r5
-[jSij9
lEnH6b
ko^MKk
h[Bm?
\;xce=
MQ |Z|
Rk4}e|
1f~lI/
>9=bmM
Fqj^=9
!Q !h[
**h1n{OG
ILPP vB
B@:+W]
YSk\F
5a^o%v:
8K&fi)
}XO%G
M *,t\
Q%+YNw
w"Dn#Xi
Vu>6N8V
R\KXu+
L.@Rq4
"Ie"0~u!
:rNf4&
q<VfAA
`SiQmEZf
1dokfe
k&X!EYw
H3BB>k
<;~-T@j
d@wQ[w
]zl/c$qB
=/O#?{f%
?H7%^@
G+K,G8z}
]~1o*ex
"X+.>*H
PlGeoYq
.g @$V
uj?$Ay
Li-x`A)
y,ly%[
D2DdtU
Kd%H0@80
C1%8z&
h'WNMk
W&U-PU$
B=nph0
='{7"BAf
?e%jv@
0_T[eX
c4v#|Q
k]3"X&5~
mrBff{vN
l`8I1
4(/1ZO
tAq`CZw
<yx.c
@.Wp_m
&n!|`##
vXFh)ep!
S(@!az
yEyk~1
VwEqT+
v4,W\(
cwn)rmp
1(t^"0
6*{'tA
O~k7e=F
P2W_D&
Z>&*oJ8
SaK":+
"TV>S?x
\9Q=c7D
U/:'P
47d]Zy
|E7oZ5
[YFV#W
Kj'_;w4
{U&-RJ
bndUNz
-YtTj_%
k:^\yF
F0E@Jm
x}7lZg
x.#Ca0
AMCe\V
_:tNV,
7QR4py"}T
K:}syx
iZ1kc'
|EzL`<
&+*^>]
|Qjo?K
5%"r[&
iM/%"LP
=,1,<
Xc>ls8
*:=plM
#C$X$@-dF&a
%Tyi@0
7%x?hn
b/'J{r
]=v%D_
T(ak!P:
<.96:d
"Vypf8
3E]L'q
Pzo|B
a'`fz8t.$
<&tjiHp
R/[UEh
CoMB/O
dW'Pvv
9;I`Qf
I29yRv2
kv>`>i
vdM9]e
Ew0?I
@g^[)FJ
'3r"%Mz
NtA] 4
?gS?h|F2tR
Zt3Z)bO
Z3y[9L
~X<'O3
::y2@H
W7sX.>
S OQ8q
g 7<:D
s8d;`l
-[]gx
poUi-
0Z-sT'
6YI1M2<
__FRP.
hz|NXF
~$JvSs
`n_F.x
sSqvHW*
E42fHn
^Piu^tl
&q3QCW
.$O]`zI
u={2_MA
UnlT4
5R.m&A
y Pf[xI
(?vIo[
i%lW_Qe
daW}hY
(xIKvyOv
c"^k&i
orc,.}
5,z902
2G9k`%v
|)uk9~
6!#[E8c'zC
>J:')u
wo#!or
LuqXV2
n;\;y<
"?ROKhjD>`
#k&6+U
m5QmI?xw
6/\$e
D|fWYe
qM.4MS
r 2-c5
qupLQ`
\8ZD8v)
yk8 SKI
jK4Ac`
@{qIJ{
xAPO~
[NVTDM?
erQcVP
m20AX#
BCZ\9b
bAM&N
AQd1.c
/7e+GZ
aS]M9W
G?v%Y(
!&$`6
-2('3
{RyR(H
aO*>C+
HsZW,h"
5V/G.G
_-@w_]
Oim_[kQx"
ueXH>'
0-s\,K
h/nX2k
ZH\y2|
DEEeq@
0dEb0qN
dvSj1M
n[$Rvg
=p[C7B
91<5N2
WF$`61@
J_P>C^
^@ HnY6
e[ HI55
>T-70 "
&E(W/i
'W8'4l
g0xreh
`f-Z?3
[_XPo}
%-F+r@j
deB2,dx
B,b:I!
l\a`-/Gp
y@6u=z
Um?g/0
=n]BWs*W
6?;zGX
@D|Yl|
u]/2;A
^b?>Bq
4rk"<`a
.4+g{+
<'%TznqA
qT^)+K
Ag,X*@
+WB#CW
.Fl/6%
I72JS
*3I%It+
ni)=wc
wF4Z3K
F@;,`J
K2uF0A
O1\e`
xI2Fd|a
23(:4Jjg
dLf0CF
oX}&<:
{/zo;s
KK|>f[
"8XLtI
GjRY^i
w/FcK%F.
t~tt%!
(fVMEgM
?){F5B
2hyFxh
Je*6Js5P
Iik]`[h
N1/{bp
d?eA>QGn8'8
0WMZH*;
"D4-"!
'6UFg
p^6R?j
^843Qd
):Zk&-
0Mb$_'
<k_zQt
4%FEJ-
CjnsK*
-@^5g[cj
Q/aZB!_
Z.aoe}
RT;e@]4
;OxN$a
!3 wQ^
RuPsfL&rW*&
)0#9,p
m;WSU0
bDs=%g
$dg|v
V'LthU
9!Nx 47
MF0g/Lnsx6
1m$C)kN_
rK]\Tq
sX3pYr
fq@~P|F
K](8xkF
K%D_gtU
GEN[U[E
"@ky0}F
UN=B+
stW n,E~f4A[o
ZL2f9Y
}6#MyUi
U#mlNC
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
ntdll.dll
advapi32.dll
Error Initializing Wincosk
Socket Error - %d
Receiving...
Sending...
Connecting...
MessageBoxW
kernel32.dll
((((( H
h(((( H
H
mscoree.dll
(null)
iE&xit
h&About ...
About HTTP_Sniffer
MS Shell Dlg
HTTP_Sniffer, Version 1.0
Copyright (C) 2010
AsyncSocket
MS Shell Dlg
Data Received:
Hostname:
Data To Send:
HTTP_Sniffer
HTTP_SNIFFER
Antivirus Signature
Bkav Clean
Elastic malicious (high confidence)
MicroWorld-eScan Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!9B224A8A1E6E
Cylance Clean
VIPRE Clean
AegisLab Clean
Sangfor Clean
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
Cybereason Clean
BitDefenderTheta Clean
Cyren Clean
Symantec Clean
ESET-NOD32 Clean
Baidu Clean
APEX Clean
Avast Clean
ClamAV Clean
Kaspersky Clean
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Malware.Undefined!8.C (CLOUD)
Ad-Aware Clean
Sophos Clean
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win64.Virut.fc
FireEye Generic.mg.9b224a8a1e6e5897
Emsisoft Clean
SentinelOne Clean
GData Win64.Trojan.Kryptik.4OCJW4
Jiangmin Clean
eGambit Clean
Avira Clean
MAX Clean
Antiy-AVL Clean
Kingsoft Win32.Troj.Undef.(kcloud)
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Clean
Cynet Malicious (score: 90)
AhnLab-V3 Clean
Acronis Clean
ALYac Clean
TACHYON Clean
VBA32 Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Clean
MaxSecure Clean
Fortinet Clean
Webroot Clean
Paloalto generic.ml
CrowdStrike Clean
Qihoo-360 Clean
No IRMA results available.