Static | ZeroBOX

PE Compile Time

2021-05-19 18:16:59

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x00037294 0x00037400 7.95876108648
.rsrc 0x0003a000 0x00036148 0x00036200 6.89521542036
.reloc 0x00072000 0x0000000c 0x00000200 0.0980041756627

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0006f628 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_GROUP_ICON 0x0006fa90 0x000000bc LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x0006fb4c 0x00000448 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x0006ff94 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with very long lines, with no line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
zapa1.exe
<Module>
Settings
Dllyrr.Properties
ApplicationSettingsBase
System.Configuration
System
VjvLgOHbyc4HRHkIT9
jevZtESAXRjxasj1Wx
Object
mscorlib
I2lk9PlOTBHkXhPnIJ
TYls3E5f9AFqwJ5f1R
kNM806dDO4pr4eLXO6
yKr5BDvEo1Ifdy2I92
PXY5lhAqkRoxSgQPBB
JZFqSIrRtrFkg3mUVq
HevW2ELuLH3SlBGUGC
aJqaOdsPoECgBLe66Q
BRJCoryh2NVCLZMXXi
DJPjwJ9Gt6Wuw1EbpM
WwloHGK2ryuoQyidUP
z8K7adWNfTqmGPXii9
VZ3y3fXib4NqwpM9tx
ugohVt8M8qb3nQqF3Z
D0L7gUpK2jQt2QC5lv
GcT6GXDppj0fIFCB85
lw0qACGjC9FO9Wo9nM
kGdJsfeJv0Br5BqyP4
hQIH87QgV1l2CR4ARq
bFfm7WjY4eI0XHikME
ylJppIOb8RF9YOplTG
EY5xFOufL7J1N91GGW
B5kcTrMVAKisweiiBJ
xHNwBSUugKYSWFZjaB
.cctor
SettingsBase
Synchronized
VUirXtPWa3bE2TUjeH
Boolean
PBSXyioJOpWs11BxuD
fY03vhqgKvJCgBjFm6
AppDomain
get_CurrentDomain
ResolveEventHandler
IntPtr
add_AssemblyResolve
VjvHLgOby
Assembly
System.Reflection
ResolveEventArgs
Stream
System.IO
MemoryStream
GetExecutingAssembly
GetManifestResourceStream
String
CopyTo
ToArray
IDisposable
Dispose
y4HSRHkIT
Func`2
Invoke
Console
WriteLine
kyelvZtEA
GetManifestResourceNames
Contains
get_Length
mRj5xasj1
ClassLibrary1
ClassLibrary
set_o1
set_o2
set_o3
GetValue
W6GOWO9eMGcmxOIxEF
XbdiN0gqYdDl9e5tEp
iZeaoJkRQkuqxwj1nd
tTBvHkXhP
WM8nJKF93gFG8vuohm
mxPd2lk9P
OxBd8pCe0yLjb67Qk6
IKH8Pi3NAKD1o6msJV
rLXyO6cKr
ResourceManager
System.Resources
dBD9Eo1If
CultureInfo
System.Globalization
Ye7crbQ6mLxrLayb2l
MIJA4Yls3
GetTypeFromHandle
RuntimeTypeHandle
get_Assembly
Kf9rAFqwJ
df1LR9NM8
H6DsO4pr4
GetObject
RjvflO4BoKirPJiAXm
IVQ9Qm6PZT20XMFBIo
TargetFrameworkAttribute
System.Runtime.Versioning
CompilationRelaxationsAttribute
System.Runtime.CompilerServices
RuntimeCompatibilityAttribute
AssemblyTitleAttribute
AssemblyDescriptionAttribute
AssemblyConfigurationAttribute
AssemblyCompanyAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyTrademarkAttribute
ComVisibleAttribute
System.Runtime.InteropServices
GuidAttribute
AssemblyFileVersionAttribute
UnverifiableCodeAttribute
System.Security
CompilerGeneratedAttribute
GeneratedCodeAttribute
System.CodeDom.Compiler
STAThreadAttribute
DebuggerNonUserCodeAttribute
System.Diagnostics
Dllyrr.Properties.Resources.resources
Dllyrr.ClassLibrary1.dll
Dllyrr.Resources.Ddzxnzjvihvm.dll
System.Security.Permissions.SecurityPermissionAttribute, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089
SkipVerification
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4
WrapNonExceptionThrows
Adobe Acrobat DC
Adobe Systems Incorporated
Adobe Acrobat DC
VCopyright 1984-2018 Adobe Systems Incorporated and its licensors. All rights reserved.
$07129a8b-9b45-4f56-9156-723a171c8702
19.10.20069.49826
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
11.0.0.0
3System.Resources.Tools.StronglyTypedResourceBuilder
16.0.0.0
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
0D~Q7rb
'Ppjx2
CsG+8s'Ms
Zqx;TL
G%UW/O
h-Mgki
{s}Q'Xv
K8`-c4
B uH$P
ka-&+1
\K5*;?
DAq$FC
oDeypa
ms.gwV8
%*]9:T
k,k?;/v
R;^X#'Q
kSwa,#C
CSm~*RF
7 x6,vw
VtoVrX
AM*[Q,
(7*ksE
A}$~1F
3VV6l}
,d#u<<b
-BTD 7
P"Okrx
O'kyT{
+&uO^<m
[|+NVJx5{
'd}H_7
5PH@-E
i^bo-z
%_@UV?+
')L33vk
g6M.89(
n<+kwD
}O\1p2h
FOOiMH+
rI_Ge((
(U5f]K
;c-zie
PTg*<M?
:q5mo2
51vYQY
0ti,4!|
X)@W2t4
^(@/tgV,
*@_ehw,
zo,4%L
_2tnl_
nPB~Cl
W5d:8|
Nl/xWi*98
N>l}ym
U35``
Zy/HuE+
YI[V!i3W5jm$?
Kmn~vY
OW(B3H
ZEs~~US
54@w$|
CHMu$9
Iw?r?a?
Ns~AW/
(u}<,S5
yC\vS
CB6Cw5
?Xl}3!5
C{{tiWI
f1Urd<
eJC)w[f_t
f/#HO}
dOqD:xD:
$VPr>@
F~LkT1m
iUk-2O
(O? %w
RKril6
R1{C+.>
@#oC!0
V;Nf{k
i(F^S1
J08t 3
A2vZBk
ZUgDF'w-u
3ccvfF1
tMIH4
Mcs|hl
$tq?<0
H,7#t"-
#Ij L*
3IV!QE
1B?6pzY
}-S">Q
!F,7:b
?`w3'
6biww7Eiw
|*H$1"
=9/FG@
fHeasV
]+Y9[gj
sXDO:S
G55wD?
1lI]pE
>O~Bmx
[\g;?0
:m/Eei
&%=^=<
nNV_kz:}
}j/eu
eoPh[A|-
pK)c@dTeI
Y2nb:y
dW!7&h
"RR/r>
*.[d2#x
.XF(g|
dT<$&E(/G
|A{3s%`
GXT-p%K^
t*<iq-
f|/faQ
X,#JD
Qf.;tk9
jrU$\FmH|@|
`9U}%BxF
c\!NYz
"zcsY#|
3kdIpux5
/b.-!{
Bg#!tG
g2{K4Y
4is?_y
dO&3$R
(+Pd8#f
G5i)KE
tJ;^RX
T.+\(_$:
9S.'bf
}g&A"2?
Zot3-s.}2*
k~Bs~
A*}18BP
'lKi)c
iiGUK[
cmtG2q
\bwOEJ
Koj8$-
x,KYE=l
# q]7h
3RC+O(a
+_c}^d
F ~fa-*
PdP3JV-
w;YJzR
?yQB-d
{ebvma
%@!fkV
bmXASUU
~6TeT
tP>d:7
4BrYCty
F!gsa=4
-x66Wv
lYQAh'q
]0}ro#
wB+fmFC
v[Cg^-
D; P^Z
axP-3B
}8yIbNz
-GNY|/D
O hXn>
n]6aQrx
,4Ew`
.Sbgma
|ml5fUus
,Lz^sQ
2kCsG;#
T:r`Tt
i|bbH/a
PV|IbXG
ThD#lT
J@(8}V
9[xEFvN2
laK]QV
Gl@@@`u@@G2
1GAe"g}
BSQx]=b
coNh>8
RU\r\g
y2@:4p
KtMctqD
@dFTXk
YuoGrJSNb
lS_cP[
]ceOS)
4~bQ9|
Dx8nw2
BW$D1;
otqNI+
lSzix
LYa#<eS
][OJ)C
v)c15t
dUdc=-
~P*2aGs:IDd
Hi-4vr
.t39W^
K[{hq'
b=Ff(vyt
sw {j>`eHo
CFT+*peOv
0+zK_l
O,'6tj;
Dg*..cZ/
z?unjS
|JYHMF
|xJt}d
\xhnGW
ZP[;~<i
qB_oG0_Z
&X3Bv,c
{b!W1?
K_~G7@+
UV.=sl
gHdG5p#[
pkBb"T
<@vt!q
ccfOe!
y.>xS2q3
<TpWNHA
KXm!YI;
?$N7;t
F'jeUk
Y.#b9w
-Q D1v
?A_?|C_z
sG*e|si
K[Jrhu
X~G;o-
{*i|`Yn
l-i1@i5jw
BHIs6f
TsVif0
-4rVUW
q-UN@Y
VU(I?r
P\<z/3I
`^F7FE
&/A=&-
K/9zTs
\VimM;
Ke44O
/_5K5v
@O}JC'
7SclWuxl1
7ukfD)n
\0#c[b
gisb[j
`o>C!_
LJRBf^
|FPr7~
/X0k~`
):E'S/ &
$Rr+RE
nb."#%
qm^ V'
I2h!9CI
bK#Vg.
I>[dd)
9Hc*g~h
bk&Vb'Yu>
m&1wwII_
DiK$+k
j^"Y=Q
A~+8[C%
<;l+6eb
KJ2+rw
y79;E_
d8Gywr=
h?'Ql+
"%sh?g
sY;EFt
0/SOm4
#!;0_U
M\L_>m
teitsDE
Gthk6AGM
m*Rukw
!zs,G{
G@WzWh
|dJ8tv
igoQ_=C
>w[:_oy
QmB>l_
(EyPu
~Dm.k/>dy
N[yu;p.
)]PMkPs5
N-l*l+
_RRRUR[
\Q\1\m
q}Q|A|E|Yl
gt'bbIo,1i
PZsGgL4
LqQ,LR
lhwZoo
R,!d(\
5m"J#*6
hWbR[b <0qb
xg}[K]Km
E4GDWD\
S!%Tbq
m)3si|c
0bB[%K
f Csz
rhSK[7
a.o@oV
!Ku;5+
RT4x;\$
@g](k4K+
uD>}Zm
:fTjBM
!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
ClassLibrary1
ClassLibrary1.dll
<Module>
ClassLibrary
Object
System
mscorlib
f8oa955mB
jI9mQc2Jd
ItKOKoCXT
String
XW8Q4c7RpAa5qylpsb
get_o1
set_o1
get_o2
set_o2
get_o3
set_o3
GetValue
MemoryStream
System.IO
GZipStream
System.IO.Compression
Assembly
System.Reflection
AppDomain
get_CurrentDomain
GetType
ToArray
InvokeMember
BindingFlags
Binder
Thread
System.Threading
ToString
GetMethod
MethodInfo
get_FullName
CreateInstance
GetExportedTypes
Concat
Stream
CompressionMode
Boolean
get_Length
IDisposable
Dispose
Environment
tkTjlG5mIREPCwFt5b
mFQXtWAlQTvUXSo6gX
McJc2qKGqlvbKo7ZAA
zeQrZjx44t47fRbgCB
Uv8Kj6yAJvtgsASXEV
MethodBase
Invoke
CompilationRelaxationsAttribute
System.Runtime.CompilerServices
RuntimeCompatibilityAttribute
DebuggableAttribute
System.Diagnostics
DebuggingModes
AssemblyTitleAttribute
AssemblyDescriptionAttribute
AssemblyConfigurationAttribute
AssemblyCompanyAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyTrademarkAttribute
ComVisibleAttribute
System.Runtime.InteropServices
GuidAttribute
AssemblyFileVersionAttribute
TargetFrameworkAttribute
System.Runtime.Versioning
CompilerGeneratedAttribute
WrapNonExceptionThrows
ClassLibrary
Copyright
2021
$7c158b45-9dc4-4066-8cda-58e028d1a857
1.0.0.0
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4
_CorDllMain
mscoree.dll
m2Ey$a
M#"B -
5*Se95'&
=-r?K\Qc
u\]U*w
!jY:K5^~
H-iE,m
zs"Uh
9)t;>J
2$S9f
mcjPA_
K -%85o1
"Tt?v1
FF`wKVq
$l$gA>j
oYDxcrq
W[^Z>;
Kmp_v LqZ
&6?T C
mUceSsmUuYyM}SCmuUKmSm]u}USE]Y}Me]]scy]uYKsimmKmKUECyi]]KY}yCSYE{#
Z04_Q}
vhs{EKG
6'\UJ-q
VIeIyI
w\oV]C
aUkI}J}
@n>(5E
;@d<\u
Wnr_BP
_@o\["Hk
Bp,nyI
e7@a?^p
|C?'@[
J\pv-jDk
S4Zv=I
}?pO^g
_#_Ht9
tImgJO
I%bE[l
.1E[O\;'r
XuF[=i
G<x/xz
%rIT3"9p
1W L|N!/xBq
<C,JU"
@A?6u'
+`>y6]9
/;y>ZB
6xO~#=G
_CorExeMain
mscoree.dll
$$$$$$%%%%,,,,,%%%%$%$$$$$$
-//3/3333333333433333333/3//-
-!/!1FF633334434333333/119;!.
ttuuuyyy
zzyyuuxvsss==4
==ssuuuwyyy{{{
{yyyyuusss==3433
===sssuuuwyy{{{{
{{yyuusus==443333
!44=4=sssuuuyyy{{
{yywuuss==44333//3!
/344===sstuuwyy{{{
yyyuutss=4=3333///-
333444==sstvwwyy{{
{ywuuss==3333////-/
333344=>=sstuwyy|{{
yyuuss==4433////-.-
//33334===ssuuyyy{{
yyuus==4433////-.--
///333334==ssuuyy{{X
Byuuss=4433///.----
//////3334==ssvwyy{q
Iyuus==433///.----
---///33344==stuwy{g
Ewus==333///----
-----///3334==stuyyf
wts=433//----
------/-/3333==suuyE
us=433//----
-----///333==svyE
t=433/---
------//334ssuf
s=33/---
---//334=tF
E=3//--
-----//34=d
--/33;
''''''(iK
Jj!+)+)(''
'''''((++7VY
L`9877+!+)(()
''''((+(++779l
QrC;987777+7)((-
'')'+(+(+77799C`
XdDCC9997777+7++(-
'')'((+(7+77799CFn
ECCC999878777++)
'))'++(7+77799:CCGj
EECC::99987777777
')))))7+777999;CCGEp
}EGCCC9999987777!
!'+)!+7778999:<<GEnN
}}ECCC:C999999777
++7(7777998:;<FCEEoU
}}}EGCC:::9999988
!7777799899:C:GE~r`U
}}ECCCC:C999998
+77789799:C:CCE~~o&
}}}EECCC::::999
77897999::C<FEE~o`
}}}EECCCC:C:99
8889999C:C<CEE~~oU
}}}EGGCCC::C9
899999:C:CFGEE
}}~}DGCCC:C:
`8999C:CCCCEE~
}~}DGGDCC:d
99C9CCC<FE
}~}}DGCCC
;9;:C:CCEEE~~oU
}}}DGDGC
<C:CCC
~}~EDD
CCCCCG~~}}nO
CCCEE~}
+.3335555555553333+
YVYYWVVVVVUq|U>
~~J755V
:77~~~
~J7753.;
5577~~
~~77533.+
35577~~
~77533+++
335577~~
~~755.++((
+..5557~~
~755.++(
++...577~
~755++(
(((..557~
~~53.((
+(+..57~
((..56~
a==
 !!""@k
sC@@>==
!!!""@@Gn
tVHGA>">""
"!===@GFVq
VHGGG=@===
=!""===GGGHRm
VLHBGBA@>=
=""==@GBCVVpg
VVHHBB@@@
="@@@GBHFV
VLHHCGGA
>@@GGBHFV
RRVHFFCG
@@@GBHHVR
RVVVHFC
@GCGHHVV
GCGHHVV
GHFVVR
!%5)))*))%)%'
Spaabx
z7[]]ddgg
gd]][,*%v
*,7[]cdggD
Cdd][,*)%%
)*,7[]ddg@
Cd]\7*)%!
%%*,7[]dgH
Gd][*)%!
!%),7\ce
][,)!!
!)*7\d
%*7]
OC54///
p?<531//
//436?T
{lD?342/2
//443?DO
Rpl??6533
14243?D{
|rl??633
2246<DlO
Urll??<<
246<DiT
}rll??6
5<?AlO
Rxrll?
pbbdddddbb`p
3 .VXSzzPEZ
x.>AHJw
,>AHLeiKA>
,@HQ|{F@
:N/'&#mm#%)*Ns
sTN/*'ot&'*M8
~ZPN0*y
BLMMa6
~pz!"{
;ikkcvv
dGp&Bt>J
Ulhtr5
'fEF/M1;
t4K.:C*
H9:Zj9vx'9
D"A__
4Vr7`A
TrvO>M
$ILOOs
!IO60J&
>:K$8C
hjjbdd
z}Dk7.X
3KH{UxE6
x,X8?O
Hp>D66M2
d2tuuQ___
@ @__
R _o&P
+WV}:P
h4Jkk+SSS
_NSX,/
bX#MKM
87&qiV
Nvl\GNg!7?I
VWWS__O8
];7!&B
3J*?2:
2;;KSS
KPcOspk
O#^veX(
D"AKKK
B~6>4x
f!&l~F
;CLWnGe|
JL)2-
Wcc#@0
/9iJ<b
,[^_KX
K2yY!0c
T;p[]`S!}
NfRQF X
%iH !`
[@27v"c9
5\h/a<
MH./Mo2
YFyJg<
A,--acc
'gF"\rG
)looc<
@k,.v!-
Rw!3bk
ylnnb2
;;;X[[Cri
~2LJw)
*:+ojg;
RXn8@8
"u3?`F
=Y'*3=
M@flk8
h8 bk:
z@F#0M
2q$:)mPK
Slnnbkk+=
1,--ayy9
'N&/!-
H1CFr:
Bz<8y&?
c?Pol
y-xIz4)%
hIDAT%
d)ovd
b+:P.:
";F]FK
P(:LT\
tzMVg5
nn+t{|=|6
F$]pj?
<?xml version="1.0" encoding="utf-8" standalone="yes"?><assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><assemblyIdentity version="1.0.0.0" name="MyApplication.app" /><trustInfo xmlns="urn:schemas-microsoft-com:asm.v2"><security><requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3"><requestedExecutionLevel level="asInvoker" uiAccess="false" /></requestedPrivileges></security></trustInfo></assembly>
Dllyrr.ClassLibrary1.dll
Ddzxnzjvihvm
CountInitializer
Dllyrr.Properties.Resources
Kdklwhccx
Kdklwhccx
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
CompanyName
FileDescription
ClassLibrary
FileVersion
1.0.0.0
InternalName
ClassLibrary1.dll
LegalCopyright
Copyright
2021
LegalTrademarks
OriginalFilename
ClassLibrary1.dll
ProductName
ClassLibrary
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
Adobe Acrobat DC
CompanyName
Adobe Systems Incorporated
FileDescription
Adobe Acrobat DC
FileVersion
19.10.20069.49826
InternalName
zapa1.exe
LegalCopyright
Copyright 1984-2018 Adobe Systems Incorporated and its licensors. All rights reserved.
LegalTrademarks
OriginalFilename
zapa1.exe
ProductName
Adobe Acrobat DC
ProductVersion
19.10.20069.49826
Assembly Version
19.10.20069.49826
Antivirus Signature
Bkav Clean
Elastic malicious (high confidence)
MicroWorld-eScan Clean
FireEye Generic.mg.ec3a138ffb5f8172
CAT-QuickHeal Clean
Qihoo-360 Clean
McAfee Artemis!EC3A138FFB5F
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Clean
K7GW Clean
Cybereason malicious.0711ae
Baidu Clean
Cyren W32/MSIL_Kryptik.EIC.gen!Eldorado
Symantec Clean
ESET-NOD32 a variant of MSIL/Kryptik.AAZB
APEX Malicious
Avast Win32:RATX-gen [Trj]
ClamAV Clean
Kaspersky HEUR:Trojan-Downloader.MSIL.Seraph.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
AegisLab Clean
Rising Clean
Ad-Aware Clean
Sophos ML/PE-A
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
CMC Clean
Emsisoft Clean
SentinelOne Static AI - Malicious PE
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
MAX Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan-Downloader.MSIL.Seraph.gen
Microsoft Trojan:Win32/AgentTesla!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis Clean
VBA32 Clean
ALYac Clean
TACHYON Clean
Malwarebytes Malware.AI.1992268241
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Clean
eGambit Unsafe.AI_Score_78%
Fortinet MSIL/Injector.VMA!tr
BitDefenderTheta Gen:NN.ZemsilF.34690.Bm0@aSbTwwm
AVG Win32:RATX-gen [Trj]
Paloalto Clean
CrowdStrike win/malicious_confidence_90% (D)
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.