Static | ZeroBOX

PE Compile Time

2020-05-02 03:08:46

PE Imphash

5e03c3392ae63c1a9ad529a3ae4b9981

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00042d9d 0x00042e00 7.65961115709
.data 0x00044000 0x03962658 0x00001a00 3.14521277941
.lej 0x039a7000 0x00000179 0x00000200 0.0
.tls 0x039a8000 0x00000009 0x00000200 0.0
.new 0x039a9000 0x000040d5 0x00004200 5.50333813372
.rsrc 0x039ae000 0x00001ea0 0x00002000 5.46579426106
.reloc 0x039b0000 0x00008640 0x00008800 1.72691075316

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x039ae190 0x000010a8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x039afb38 0x00000362 LANG_LATVIAN SUBLANG_DEFAULT data
RT_STRING 0x039afb38 0x00000362 LANG_LATVIAN SUBLANG_DEFAULT data
RT_STRING 0x039afb38 0x00000362 LANG_LATVIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x039af238 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x039af250 0x000001bc LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x3da9008 FreeLibrary
0x3da900c LoadLibraryExW
0x3da9010 InterlockedIncrement
0x3da9014 GetConsoleAliasA
0x3da9018 GetModuleHandleExW
0x3da901c GetTimeFormatA
0x3da9020 ConnectNamedPipe
0x3da9028 GlobalAlloc
0x3da902c TerminateThread
0x3da9030 GetLocaleInfoW
0x3da9038 GetFileAttributesA
0x3da9040 FindResourceW
0x3da9048 GetAtomNameW
0x3da904c lstrcatA
0x3da9050 RaiseException
0x3da9054 GetLastError
0x3da9058 GetProcAddress
0x3da905c OpenWaitableTimerA
0x3da9060 SetConsoleOutputCP
0x3da9064 FindAtomA
0x3da9068 GlobalFindAtomW
0x3da906c GetModuleHandleA
0x3da9070 GetFileTime
0x3da9078 GetCurrentProcessId
0x3da907c GetFileAttributesW
0x3da9080 MapViewOfFile
0x3da9084 GetModuleHandleW
0x3da9088 Sleep
0x3da908c ExitProcess
0x3da9090 GetCommandLineA
0x3da9094 GetStartupInfoA
0x3da9098 RtlUnwind
0x3da909c TerminateProcess
0x3da90a0 GetCurrentProcess
0x3da90ac IsDebuggerPresent
0x3da90b0 HeapAlloc
0x3da90b4 HeapFree
0x3da90b8 TlsGetValue
0x3da90bc TlsAlloc
0x3da90c0 TlsSetValue
0x3da90c4 TlsFree
0x3da90c8 SetLastError
0x3da90cc GetCurrentThreadId
0x3da90d0 InterlockedDecrement
0x3da90d4 GetCurrentThread
0x3da90d8 WriteFile
0x3da90dc GetStdHandle
0x3da90e0 GetModuleFileNameA
0x3da90e4 DeleteCriticalSection
0x3da90e8 LeaveCriticalSection
0x3da90ec FatalAppExitA
0x3da90f0 EnterCriticalSection
0x3da90f4 SetConsoleCtrlHandler
0x3da90f8 InterlockedExchange
0x3da90fc LoadLibraryA
0x3da9108 GetEnvironmentStrings
0x3da9110 WideCharToMultiByte
0x3da9118 SetHandleCount
0x3da911c GetFileType
0x3da9120 HeapCreate
0x3da9124 HeapDestroy
0x3da9128 VirtualFree
0x3da9130 GetTickCount
0x3da9138 VirtualAlloc
0x3da913c HeapReAlloc
0x3da9140 GetCPInfo
0x3da9144 GetACP
0x3da9148 GetOEMCP
0x3da914c IsValidCodePage
0x3da9150 HeapSize
0x3da9154 GetLocaleInfoA
0x3da9158 GetDateFormatA
0x3da915c GetUserDefaultLCID
0x3da9160 EnumSystemLocalesA
0x3da9164 IsValidLocale
0x3da9168 GetStringTypeA
0x3da916c MultiByteToWideChar
0x3da9170 GetStringTypeW
0x3da9174 LCMapStringA
0x3da9178 LCMapStringW
0x3da9180 CompareStringA
0x3da9184 CompareStringW
Library ADVAPI32.dll:
0x3da9000 RegCreateKeyW

Exports

Ordinal Address Name
1 0x43d958 Linear
!This program cannot be run in DOS mode.
`.data
@.rsrc
@.reloc
0WWWWW
0WWWWW
QQSVWd
0SSSSS
_VVVVV
_VVVVV
>=Yt1j
j@j ^V
HtHu4j
s[S;7|G;w
tR99u2
HHt*HHt
<0|<9
tK<_t<<$t8<<t4<>t0<-t,<a|
<z~$<A|
<0|O<9
tU<A|B<P
tY<@tO<Zt
t\<@tXj'
NtFNt#NuV
t.<@t5V
TtUHtKHtAHt
0t-HHt
AtIHt0Hu
URPQQh
0A@@Ju
0SSSSS
0SSSSS
u,VVWV
t VV9u
;t$,v-
UQPXY]Y[
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
.;1s(N
HHt4HHt
Ht\Ht,
teHtFHt&Hu
ty<%tA
PPPPPPPP
PPPPPPPP
t"SS9]
^SSSSS
^SSSSS
0Wh|bD
>:u8FV
VVVVVQRSSj
^SSSSS
^SSSSS
0SSSSS
t+WWVPV
^SSSSS
^WWWWW
0SSSSS
8VVVVV
NU3MAjY
4!Pt%V
rQ&R?Z
|Kit<
*aE{@K
mA9^*D
j~E(Jf
;J9Yqw
gEYIwo
[PzVWH
V+]Lg&
?JdvAl
9Z15nf
:_.hf&
cg}\xZ
2q;>J
pH(M[l
Y9`FOp%
t#et\h
hnGZv&
*7t?_m
3b(/%W
,25_nJ
sfk{"[s
KJag:$
)Sc71=
XS[5uk
8)RC|g
rnsGn
V9x,Q&k
MW(&>}
4(?J]y
2V oHB
[N!y=8
G-%8_i
3G^Y;Hl
[q8?Euo
;:GW0$
Tbsa>A
Ed# =K
/ Sd4|
E8i4:m
8-uZwc
e5NY~n
6H6Tw}
)>?Jf
<#C=b~
.l=-V#
t)UCRu:
;CGjhm
.E}`eU,b
Ur19O5
dd475j
i-"wHS
#cTfk!
4Uemo)
pyXJ^\p
^4O"a~F
yg}QTeJ
Ml/I;0
hH,7rz
e.K8/]!
P+-zw%
<\W{QU-
rFJI[&hoi
(jF$BE5;
XxnWs*D
-hzMF]
$\(^'B
"0AGz_
W/(9e40
GSQBc}iV
Ml{TOF
!Klzig>
<8i2'}
=#Z[df
T&rue'
wmUmPm
g)HI]U
W:PeaX
~#dIL|
'Ynr'y7
=>a-=Y
.O9^`X'
ka@y9'[-
k`PuI
RK?^[]
Knt%c bNp
4bO*=M
f%PRei
XQImP_
*g>Enz
r58VKb6
1ji2Q{
(sAh)A
[}CK\ef
;S*lRW
UkN*hq
XF%*(_f
|6)6fes
#i^qw.p
P Dek!#
[za4SM
Le6Ne5
^f;5=!
7-/v[P{
BvAP_F*
H\T,ne
!qkvgK
K1rv9Z
L"&cg&
Oz[$k~
YhWjZ6E}
;OgJr#
f*)ZdQJ
jB;Ba@X
;"-"p@A
3]DW<p
u5r&A<
%/6PAo
tOS$m#F'
4lLcdx
NRrPa~`W
b8'xKn)
5C7bcE@>
0/N3#6z
,Qt+qJ
cNwC.l%K
nx.N4J
>$qGa(?@
NS4$MV
tLriXL
dLBR!N
&oYVv"E
hO/6rk
<juJ+2
6SyH<l
6J^_e`n
+/sxf0
jx80$?
981p#y
4B9Q?"#w{
emDKlH6*
h7;ZOD
[TNoM:
%g!*#
e3M,#G
:]-3!yl
*@=tj&-
-8e?$\
Q<l%\j
ZCIc>V\
T<rUl~'
p&SE'y
[mXmFE
uG3t8p
C;Cfec
!u`~L'
N&Bvn@
S4RQ[n
KpO>B_rv
vy47}P
R+^iq`@
GI]=H[
DL0A2v
1Mg=mg
ypC_`tV7
7WJ4R k
,lo$[]
efsX6l
4ZGpYX0
t^+n"2
J?udt,Ci.
\+m3UL
&MEa?=
1l}(M#
eO~UTAZ
vE^AWR
PloRX'I
~Ya,DU
CJ1IP"
QeA-:d;EA
x/fHWk
o+:}#F
=bmm~V
^UfK.`
I}6=e~FW
Ji$uK$
l#N%b42_
@#`6WT~
It$d2P>zgr
OOXt9R
(VRKqJ
/dS<I?
(c%}9|'
p.<4\ZI
uA|++V
F)nCW>
ytw8Ci
6c.g=>
-Hg1j|
:X2KSu,
$&_q13
:sW<+|
e;^9hZ
/v4A)`F
<h\YM3
^l<.XCM
(S6/c+
]zkHap
3%Bb2es=9
N-2|,9V
3l.P~g
((GH7;
HrD4]f
Xg;0j1P
fP^0=Q5
$pAJY]
X)UB{0
$]W$w,<3
$FMU3
4y)xJ~:k
Hu+I;[
RrPsD+
;VQX@Z
zP+2A=
)x.|A*
:aUyCd
~PE^/A
IoP(:K
]j5kP5n
LF9b$K
e9`;~M
jNc8O@*w
1a0w*t
]-qh",
w+~&Q"
"KT#1"
[maE8aG
:`<[5J]
K0mo/'
"xCzrb[
'=K(mG
%Sdi$Nhs
97:KV-
e9rkD.
V;quHa
`}fq"A
MJE@Of:
|_CWGx
n:h\?`qJ\
+=Akui
/bcymM
/tbFko>g^
x3LQZ -
/oCawQ
wo4YIS
DmhMSX
2HWPm-
k&X^S_
']A.-3t
! 'xz]
E_wnDXV
-I;6?#
u*/#^8
<Ta#L>
tl_j'g
6UBhEl
tUl&RC
4nx0|~
u"VVVVVV
_VVVVV
^WWWWW
tNIt?It0It
0SSSSS
_VVVVV
<+t(<-t$:
+t HHt
.?AVinvalid_argument@std@@
.?AVout_of_range@std@@
.?AVbad_cast@std@@
.?AVbad_typeid@std@@
.?AV__non_rtti_object@std@@
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVexception@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVbad_alloc@std@@
string too long
invalid string position
invalid string argument
Unknown exception
CorExitProcess
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
SystemFunction036
ADVAPI32.DLL
bad exception
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
{flat}
`non-type-template-parameter
unsigned
short
<ellipsis>
,<ellipsis>
throw(
`template-parameter
cli::pin_ptr<
cli::array<
`anonymous namespace'
generic-type-
template-parameter-
`unknown ecsu'
union
struct
class
coclass
cointerface
extern "C"
[thunk]:
public:
protected:
private:
virtual
static
`template static data member destructor helper'
`template static data member constructor helper'
`local static destructor helper'
`adjustor{
`vtordisp{
`vtordispex{
const
volatile
volatile
volatile
signed
double
UNKNOWN
__int128
wchar_t
__int64
__int16
__int32
__int8
__w64
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
bad allocation
kernel32.dll
VirtualProtect
vector<T> too long
GAIsProcessorFeaturePresent
KERNEL32
_nextafter
_hypot
1#QNAN
1#SNAN
MapViewOfFile
FindResourceW
FreeLibrary
LoadLibraryExW
InterlockedIncrement
GetConsoleAliasA
GetModuleHandleExW
GetTimeFormatA
ConnectNamedPipe
TzSpecificLocalTimeToSystemTime
GlobalAlloc
TerminateThread
GetLocaleInfoW
GetSystemTimeAdjustment
GetFileAttributesA
SetConsoleCursorPosition
GetFileAttributesW
SetTimeZoneInformation
GetAtomNameW
lstrcatA
RaiseException
GetLastError
GetProcAddress
OpenWaitableTimerA
SetConsoleOutputCP
FindAtomA
GlobalFindAtomW
GetModuleHandleA
GetFileTime
FileTimeToLocalFileTime
GetCurrentProcessId
KERNEL32.dll
RegCreateKeyW
ADVAPI32.dll
GetModuleHandleW
ExitProcess
GetCommandLineA
GetStartupInfoA
RtlUnwind
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
HeapAlloc
HeapFree
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
InterlockedDecrement
GetCurrentThread
WriteFile
GetStdHandle
GetModuleFileNameA
DeleteCriticalSection
LeaveCriticalSection
FatalAppExitA
EnterCriticalSection
SetConsoleCtrlHandler
InterlockedExchange
LoadLibraryA
InitializeCriticalSectionAndSpinCount
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
SetHandleCount
GetFileType
HeapCreate
HeapDestroy
VirtualFree
QueryPerformanceCounter
GetTickCount
GetSystemTimeAsFileTime
VirtualAlloc
HeapReAlloc
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
HeapSize
GetLocaleInfoA
GetDateFormatA
GetUserDefaultLCID
EnumSystemLocalesA
IsValidLocale
GetStringTypeA
MultiByteToWideChar
GetStringTypeW
LCMapStringA
LCMapStringW
GetTimeZoneInformation
CompareStringA
CompareStringW
SetEnvironmentVariableA
negifam.exe
Linear
0)151C1c1
2G5Q5n5y5
5F6K7V7
8p8v8|8
9$9*9@9M9`9
:.:?:I:f:
=7=T=a=|=
0 0'0I0
1 1(1;1F1K1[1e1l1w1
142A2k2p2{2
2O3\3h3u3
4 424:4E4U4i4{4
<!<)<1<9<E<N<S<Y<c<l<w<
</=H=O=W=\=`=d=
=>>D>H>L>P>
?;?m?t?x?|?
>0P0"1,191T1[1t1
4;4A4^4d4
5'5v5|5
6Z6`6l6
7#8A8H8L8P8T8X8\8`8d8
8&919L9S9X9\9`9
:J:P:T:X:\:
:<;Y;^;E<J<d<
<s=b>z>
?'?.?B?I?a?r?x?
0#0*0B0Q0X0e0
13191U1m1
202:2r2z2
3'3/353>3E3`3e3m3s3z3
4(4-484=4J4X4^4k4
5,575[5d5k5t5
6+6>6V6h6~6
7 7&7I7P7i7}7
8'9@9i9n9
=$=<=T=
>A>L>[>
? ?9???
0'0B0H0^0d0
2(2.2;2J2t2
5%6{6V7
7848J8f8x8
080Z0~0
1=1J1V1^1f1r1
6)6b6p6
7W9e9k9
:!:':2:7:?:E:O:V:j:q:w:
?'?0?=?H?Z?f?t?z?
2#3)3P3\3
:#;M;];i<
==-=;=F=Q=\=j=u=
+0P0X0]0d0j0p0u0{0
<.<I<U<
>;?b?g?n?u?|?
090[0a0m0t0
0'1B1t1}1
2+2K2U2
4!5/565r5}5
6%6@6T6e6r6
;';.;P;U;q;
;<-<\<v<
161F1S1s1~1
2<2C2L2V2]2i2o2~2
3"3(3.3W3a3|3
414A4f4
5.6O6d6
7757Z7
;:<R<r<
=M=m=z=
4U5i5o5
6!707h7y7
1%12181B1P1z1
4 4V4]4b4l4v4
515R5\5f5
696@6G6N6l6y6
6<7N7b7
939@9P9`9
99:E:Q;x;~;
=D>[>l>
>-?9?B?K?W?c?o?{?
23%3B3G3
0"1*1?1J1
5"5>5G5M5V5[5j5
6+646@6w6
7 7,7X7f7l7|7
9(:/:7:o:
838<8]8
3 3Z3\5
8S9e9o9y9
<H<X<j<~<
88<8@8D8H8L8P8T8X8\8`8d8h8l8p8t8x8|8
? ?$?(?,?0?4?@?J?b?i?s?{?
6!7'7x7~7
9><E<z<
041:1@1F1
2 282R2q2
3:3D3t3
696?6E6Q6W6
7!7)71797B7K7W7c7p7w7
7%8*8{8
4p6v6|6
7$7*70767<7B7H7N7T7Z7`7f7l7r7x7~7
W8\8d8l8q8x8
9$929<9I9S9z9
:9:R:W:]:i:x:
<$<1<B<H<X<
=#='=-=1=6=<=@=F=J=P=T=Z=^=l=r=
1p7H89:B:n:t:}:
<C<L<U<b<
=@=D=H=L=P=T=X=\=`=d=h=l=p=v=
<M?_?q?
0,0E0X0v0
=\>R?Z?
10262F2
9f:6=M=
==:=]=
0(0H0L0h0
3$3,3P4T4X4\4`4d4h4l4p4t4
4X5h5x5
: ;$;(;,;0;4;8;<;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
3,444<4D4L4T4\4d4l4t4|4
2L2P2T2l2p2t2x2|2
0 0$0(0,0004080<0@0D0H0L0P0T0X0\0`0d0h0l0p0t0x0|0
1 1$1(1,1014181<1
X4`4h4p4x4
5 5(50585@5H5P5X5`5h5p5x5
6 6(60686@6H6P6X6`6h6p6x6
788<8@8|:
;$;<;L;P;`;d;t;x;|;
< <8<H<L<\<`<h<
=,=0=@=D=H=P=h=x=|=
=,>4><>H>h>l>p>x>
?0?P?p?
080D0`0
1 1@1\1`1|1
2$2(2D2H2X2|2
3 3$3,3@3\3`3
404<4H4h4
5(5H5h5
6$686@6D6L6T6
7 7T7X7
mscoree.dll
KERNEL32.DLL
((((( H
h(((( H
H
VS_VERSION_INFO
StringFileInfo
040904E4
FileVersions
7.0.2.54
ProductVersion
7.0.21.21
InternalNames
galimatimot
LegalCopyrights
Wsekde
VarFileInfo
Translations
HFalocokirowoh xunogowuki becatujara pikibobomunexi fevijoma wucemijurawuVXutodo cayira nimuza xowasameheg savicetotu fizigenu luber gukucalodudey setunope tihi
VFeri saxovejodecemeb duvi sahece siyeveyayez wolabic sedebukapi winitilinabos fayisulo,Kotedusacuxe gucovom niv safigo samuvexogakaSBiyiyur nofamubezil gajahamifuxan guxecefit nirocecut ram kibuvagefusu mizotulo puc
Ripejizo hebixalej yeyefe6Pawarito hetocajoyocaf bilusuwicoma xeg numonaviziwajeUBakihasafunidah nupu vekivo gonununehito luwoveb kapozifuhajapi tolixug vizuyidahinidGKunih hotitodufulaha dusu nopecokujif haracipeliwelal cezejisa yetujogoONorodabikuzalo dab rujavavubaneta hupe wetuwetez xacapuvan xehu xoli hunuyulije
Bixovuc
\Lebane xozi sumepoluke fevagipotafeyi vojaveyijevokib xugakepuvotuje tijuce yizahi govuyevij`Juvuxahuxi bugajidetu mivapuwerahiyik vatunipafo retuwuvuduloc volixusafi kefayepu gayenotunaxod
Rep zic!Poramuy zihot jifis wudoralupotax
Xofe gumupi rixAYutiwukejo pucanil yawub zirasedahavol jekaripe loneborajetu wipi
Padevozew tir%Sizaxeyifeciber moweceteneticug duwokKGuzavimegamegu jodisabizil bucexubucuco kuyokezumajomes sukecavufipofuw fag'Badedalayazataf puvadive zulalugenojuxi&Huwovelukivan kivimuvam nojegosom fuvi,Lexolosaxore xosoj hegovomilurunot tusofedos3Zixemunegavu bowoganegin damatocexutobeg sas jopaxa
Antivirus Signature
Bkav W32.AIDetect.malware1
Elastic malicious (high confidence)
MicroWorld-eScan Clean
CMC Clean
CAT-QuickHeal Clean
ALYac Clean
Cylance Unsafe
VIPRE Clean
AegisLab Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 0056f9be1 )
BitDefender Clean
K7GW Trojan ( 0056f9be1 )
Cybereason malicious.6b67da
Baidu Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
ESET-NOD32 Clean
APEX Malicious
Avast Clean
ClamAV Clean
Kaspersky Clean
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Malware.Heuristic!ET#96% (RDMK:cmRtazqLUHstwtgiQcLzSsZ8OBKH)
Ad-Aware Clean
TACHYON Clean
Sophos ML/PE-A
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Trojan.fc
MaxSecure Clean
FireEye Generic.mg.ea4f3cbb2f990be8
Emsisoft Clean
SentinelOne Static AI - Malicious PE
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Microsoft Trojan:Win32/Wacatac.B!ml
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
GData Clean
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
McAfee Clean
MAX Clean
VBA32 Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Win32.Trojan.Inject.Auto
Yandex Clean
Ikarus Trojan.Win32.Crypt
eGambit Unsafe.AI_Score_71%
Fortinet Clean
BitDefenderTheta Gen:NN.ZexaF.34684.uC1@aWm1CRmk
Paloalto Clean
CrowdStrike win/malicious_confidence_60% (D)
Qihoo-360 Clean
No IRMA results available.