Static | ZeroBOX

PE Compile Time

2012-03-29 05:51:37

PE Imphash

ead2a2f29e03a40cf36e8cc535b05645

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0002583e 0x00025a00 7.01226731613
.rdata 0x00027000 0x0001ae40 0x0001b000 0.513030862161
.data 0x00042000 0x001a7f9e 0x001a6400 5.66893649911
.reloc 0x001ea000 0x00001ff4 0x00002000 6.68909034577

Imports

Library KERNEL32.dll:
0x10027000 AreFileApisANSI
0x10027004 CloseHandle
0x10027008 CopyFileW
0x1002700c CreateDirectoryW
0x10027010 CreateFileW
0x10027014 CreateThread
0x1002701c DecodePointer
0x10027020 DeleteCriticalSection
0x10027024 EncodePointer
0x10027028 EnterCriticalSection
0x1002702c ExitProcess
0x10027030 FlushFileBuffers
0x10027038 GetACP
0x1002703c GetCommandLineA
0x10027040 GetConsoleCP
0x10027044 GetConsoleMode
0x10027048 GetCPInfo
0x1002704c GetCurrentProcess
0x10027050 GetCurrentProcessId
0x10027054 GetCurrentThread
0x10027058 GetCurrentThreadId
0x1002705c GetEnvironmentStringsW
0x10027060 GetFileType
0x10027064 GetLastError
0x10027068 GetModuleFileNameA
0x1002706c GetModuleFileNameW
0x10027070 GetModuleHandleExW
0x10027074 GetModuleHandleW
0x10027078 GetOEMCP
0x1002707c GetProcAddress
0x10027080 GetProcessHeap
0x10027084 GetStartupInfoW
0x10027088 GetStdHandle
0x1002708c GetStringTypeW
0x10027094 HeapAlloc
0x10027098 HeapFree
0x1002709c HeapReAlloc
0x100270a0 HeapSize
0x100270a8 InterlockedDecrement
0x100270ac IsDebuggerPresent
0x100270b4 IsValidCodePage
0x100270b8 LCMapStringW
0x100270bc LeaveCriticalSection
0x100270c0 LoadLibraryExW
0x100270c4 LocalFree
0x100270c8 Module32FirstW
0x100270cc Module32NextW
0x100270d0 MultiByteToWideChar
0x100270d4 OutputDebugStringW
0x100270dc RaiseException
0x100270e0 ReadConsoleW
0x100270e4 ReadFile
0x100270e8 RtlUnwind
0x100270ec SetEndOfFile
0x100270f0 SetFileAttributesW
0x100270f4 SetFilePointerEx
0x100270f8 SetLastError
0x100270fc SetStdHandle
0x10027104 Sleep
0x10027108 TerminateProcess
0x1002710c TlsAlloc
0x10027110 TlsFree
0x10027114 TlsGetValue
0x10027118 TlsSetValue
0x10027120 WaitForSingleObject
0x10027124 WideCharToMultiByte
0x10027128 WriteConsoleW
0x1002712c WriteFile
Library ole32.dll:
0x10027148 CoInitializeSecurity
0x1002714c CoInitializeEx
0x10027150 CoCreateInstance
0x10027154 CoUninitialize
Library OLEAUT32.dll:
0x10027134 VariantClear
0x10027138 SysFreeString
0x1002713c SysAllocString
0x10027140 VariantInit

Exports

Ordinal Address Name
1 0x1000553c ?terminate@@YAXXZ
2 0x10005554 _XcptFilter
3 0x10005569 __dllonexit
4 0x10005582 __getmainargs
5 0x1000559d __set_app_type
6 0x100055b7 __setusermatherr
7 0x100055d0 _acmdln
8 0x100055e8 _amsg_exit
9 0x10005601 _cexit
10 0x10005617 _commode
11 0x10005633 _configthreadlocale
12 0x10005649 _controlfp_s
13 0x1000565f _crt_debugger_hook
14 0x10005675 _except_handler4_common
15 0x1000568f _exit
16 0x100056a9 _fmode
17 0x100056bf _initterm
18 0x10005505 _initterm_e
19 0x100056da _invoke_watson
20 0x100056f3 _ismbblead
21 0x1000570a _lock
22 0x10005722 _onexit
23 0x1000573d _unlock
24 0x10005757 exit
25 0x10005772 wcsncat_s
!This program cannot be run in DOS mode.
`.rdata
@.data
.reloc
~yu4Pb
qbx}pY
q7j7Ho
Xq-[{V
)o>(c!
oh<jel9
y5YWH|
C7^~:p
{^2G*2^
Jjt6>=pCm
)u4w[-
wyx<8;
H#Kys)7
i}D~Co
V#u@L7
u0pRt.
}w_?k7
Dq90T-
`y>?,(
yt?"U>
gq;l^}XY
h7l0D(
?Ldbr#
|Z\;OW
pmPJg:
}0c+TO
u!6uhaFemv
/e9o=U
t%C6uhaF
b^1/30
YJiV;a
Us >YK
#y.;}xF
GgrK/<
8)x"6]
Wu8Y6I
<at:<rt+S
:`3qs)
u0y9J%{
W(J]M`r
XFYnil OS
St$L`d:
(!DY$}
"XiREkq<
~pjCXf
y*-G0d
X}\j@W
dwM:]|}
'%@Z+
s3V8*n
#y;e[M$M
\?h9qc
Ht%Hu?j
sm?q;?L
D-,._x
u2nC {V
udj0Xf
[r\PRSQ
=Qk<yq
hy?I"b6
<q8veZ:o
lhou-hc
;t$,v0
UQPXY]Y[
x)'g`\z
br>x)0T
[~Y;_t|W
;_tr:P
'CuW`4.}
HHteHHt
n[t:joZS
YYjgXf9
>0t>NAj0X
}'W%I$
JVULO*
b>%8nx
e5cki}
RyM=:&d
r 6WVU
x,<dhT'vV
tSHt2Ht)
9nq;+z
x&yuH"
>JP[&{
Coi!\.
XxWt.{
Wu%5U
+t+HHt
,-Xt8R
zGO8u
,tOs4o
z(.?E" A
rnq)kW
5Ct"X]
TTTTRRRREEEEWWWW
TTTTRRRREEEEWWWW
ssllwnyn.dll
?terminate@@YAXXZ
_XcptFilter
__dllonexit
__getmainargs
__set_app_type
__setusermatherr
_acmdln
_amsg_exit
_cexit
_commode
_configthreadlocale
_controlfp_s
_crt_debugger_hook
_except_handler4_common
_fmode
_initterm
_initterm_e
_invoke_watson
_ismbblead
_onexit
_unlock
wcsncat_s
AreFileApisANSI
CloseHandle
CopyFileW
CreateDirectoryW
CreateFileW
CreateThread
CreateToolhelp32Snapshot
DecodePointer
DeleteCriticalSection
EncodePointer
EnterCriticalSection
ExitProcess
FlushFileBuffers
FreeEnvironmentStringsW
GetACP
GetCommandLineA
GetConsoleCP
GetConsoleMode
GetCPInfo
GetCurrentProcess
GetCurrentProcessId
GetCurrentThread
GetCurrentThreadId
GetEnvironmentStringsW
GetFileType
GetLastError
GetModuleFileNameA
GetModuleFileNameW
GetModuleHandleExW
GetModuleHandleW
GetOEMCP
GetProcAddress
GetProcessHeap
GetStartupInfoW
GetStdHandle
GetStringTypeW
GetSystemTimeAsFileTime
HeapAlloc
HeapFree
HeapReAlloc
HeapSize
InitializeCriticalSectionAndSpinCount
InterlockedDecrement
IsDebuggerPresent
IsProcessorFeaturePresent
IsValidCodePage
LCMapStringW
LeaveCriticalSection
LoadLibraryExW
LocalFree
Module32FirstW
Module32NextW
MultiByteToWideChar
OutputDebugStringW
QueryPerformanceCounter
RaiseException
ReadConsoleW
ReadFile
RtlUnwind
SetEndOfFile
SetFileAttributesW
SetFilePointerEx
SetLastError
SetStdHandle
SetUnhandledExceptionFilter
TerminateProcess
TlsAlloc
TlsFree
TlsGetValue
TlsSetValue
UnhandledExceptionFilter
WaitForSingleObject
WideCharToMultiByte
WriteConsoleW
WriteFile
KERNEL32.dll
CoCreateInstance
CoInitializeEx
CoInitializeSecurity
CoUninitialize
ole32.dll
OLEAUT32.dll
F$=@QA
\hDUwU+
o$O[0C:
3EgjC}
AO/||\
1Sv\nrm
W.I^E3
6O(It]
F/0[Pu
#.]X8Il
#.]X8I
ZmQ&#
pTy7Hw
PEs30z
PEs30z
j)e/qL7
_FH(5CQ,#\/
3MTeQH
o];{/A=
3MTaQHk
YT#H#a
IpuT#w
Kz5;c.
5U&BM%:
Q(&M?:O
bwfkHgy
n6rXl
Nz7N5]
Bd{a!$
*ZI$4LL
!eD2J"
3c=l;?D
i"^%5,
APKt'y
Ww`0gQ9%
t#&1'q
@wDK.y
@wOv.y
gNi~g?
~Ri|H`S
U2s3;`VJ
C~ng$K
J_M`KID
o$Mr;'=`
Pit<?}
y].MALt
WHoy-4
}THp.fD
]Z=lV
}st+n;
IL`Qrk
$)7>2,lh
I`RS::
5E133
GsXmVKQ
u9D6cv
0ykD}W
/'LA1u3
Nsq,qGy
j` /<(FO
w\hmHi
*'mQ6y0
=^g*b9K
Iwa1|6'<
^ZJ%&@Z
(]%T:~
8,-1&j#
$}%,@-r
"ToO~^
n0KaXO
."Cf|gB|
e$7au\
o0_*8E
4v.L:<y
RyTfNcy
ff^7AFE
AU7AFE
ff^7AFE
x*;U_O
9sPUUx
h[M';T
JR\7 x
q)8P'G
NPrVK=
V]&Q<`
+40L5o
5T|}d-
Sp|~af
BDT|}dY
20 A[ Q
u/dd'G
@47[qc
9CP$SIk
7|7FO
PHvk}a]
D0T9[)
IYKn\K
s6W(%DO>
#6Pi@Q
H<#2'M
}1"eE)
V?XO{{
pE'w<(\K|
?'2]ww
W=7c`{7
i6e{95
n\z&]\
!MAtddz
@yjdzp
-e>{b2M
O0ivsB
UaP[Ni
]X?@z#
.@Q^E&t
ROHK#m{dT
df3uqB
{onH+E
%~8])F#
;Z ~cl2
+-1a{@
+-1a{2
VLDf@P
HiB<@=~
.c,qL;
wird%>
.-,1%;
t6w0"k
;-Fa[X
-cfE2hl>
w)Ewp/
w)Ewp<
w)Ewp/
Ar=[ Ht
Vfu&$R
wz{3U
cMVfTU
Q2`n>?:A
`\EDGhAN
.L$O%D
mG-%Ds[
d%uwZ_
<]Q~<F
uxVjro\*o{
z)X4Nh
zgF7%f
v[ _-R
/y)0a!
d1^Xyvm
w;<w8{>
V& 6r)
6rQ[Y``
B& 6OD
}Tu)f#!
F }nUi
Wv2cz9v
TXPt[$a
cN_Ehz
B ugj1
\/~P $
\/;P 
L`P%^z
sf_!|>
Ak!JSU
^j|c3Z
PhGgyO
@4BNpU
U_+jH.+;v
k%iZ^%
G'V0i)
>JG'V0i)
>JG'V0#)
vyv&'r
w]JE+;
q,Mf<'
GC/"t_u
?0hXW,p
bad allocation
permission denied
file exists
no such device
filename too long
device or resource busy
io error
directory not empty
invalid argument
no space on device
no such file or directory
function not supported
no lock available
not enough memory
resource unavailable try again
cross device link
operation canceled
too many files open
permission_denied
address_in_use
address_not_available
address_family_not_supported
connection_already_in_progress
bad_file_descriptor
connection_aborted
connection_refused
connection_reset
destination_address_required
bad_address
host_unreachable
operation_in_progress
interrupted
invalid_argument
already_connected
too_many_files_open
message_size
filename_too_long
network_down
network_reset
network_unreachable
no_buffer_space
no_protocol_option
not_connected
not_a_socket
operation_not_supported
protocol_not_supported
wrong_protocol_type
timed_out
operation_would_block
address family not supported
address in use
address not available
already connected
argument list too long
argument out of domain
bad address
bad file descriptor
bad message
broken pipe
connection aborted
connection already in progress
connection refused
connection reset
destination address required
executable format error
file too large
host unreachable
identifier removed
illegal byte sequence
inappropriate io control operation
invalid seek
is a directory
message size
network down
network reset
network unreachable
no buffer space
no child process
no link
no message available
no message
no protocol option
no stream resources
no such device or address
no such process
not a directory
not a socket
not a stream
not connected
not supported
operation in progress
operation not permitted
operation not supported
operation would block
owner dead
protocol error
protocol not supported
read only file system
resource deadlock would occur
result out of range
state not recoverable
stream timeout
text file busy
timed out
too many files open in system
too many links
too many symbolic link levels
value too large
wrong protocol type
NKagj(h
Unknown exception
CorExitProcess
UTF-16LE
UNICODE
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
_hypot
_nextafter
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
CreateEventExW
CreateSemaphoreExW
SetThreadStackGuarantee
CreateThreadpoolTimer
SetThreadpoolTimer
WaitForThreadpoolTimerCallbacks
CloseThreadpoolTimer
CreateThreadpoolWait
SetThreadpoolWait
CloseThreadpoolWait
FlushProcessWriteBuffers
FreeLibraryWhenCallbackReturns
GetCurrentProcessorNumber
GetLogicalProcessorInformation
CreateSymbolicLinkW
SetDefaultDllDirectories
EnumSystemLocalesEx
CompareStringEx
GetDateFormatEx
GetLocaleInfoEx
GetTimeFormatEx
GetUserDefaultLocaleName
IsValidLocaleName
LCMapStringEx
GetCurrentPackageId
GetTickCount64
GetFileInformationByHandleExW
SetFileInformationByHandleW
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
(null)
`h````
xpxxxx
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__vectorcall
__clrcall
__eabi
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
MessageBoxW
GetActiveWindow
GetLastActivePopup
GetUserObjectInformationW
GetProcessWindowStation
CreateFile2
`h`hhh
xppwpp
1#SNAN
1#QNAN
WinExec
vector<T> too long
invalid string position
string too long
generic
unknown error
iostream
iostream stream error
system
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
!This program cannot be run in DOS mode.
`.rdata
@.data
.reloc
js9'&x
VJq8Nk
ct3ElWO
q/qv,/
iUH5ak
-}kH$
fta$.%%
?Vv;hq
f@9llg9
iEM\N%
gaQVx)FTF
\:gZ+;
"/u.Z3
q4n52E
nu:0F)
@u!uSficn
QQSVWd
Qu<?y#
nt&Pvv
Yt@hX!
(gu6U
<v<hP*
R~{(\`B
~pjCXf
X}&j@W
,"XuNR
;L5P7]A
_}w1M[
/fy%S0
Qf*m<T
Ht,HuF
i9.VDt
d:BLu0
x!sS'K
w`Dq5,
:dp~K84
5u(Cv<$
s!#N;0
1W6mVW
bXgM(wu
(IQ<|S
HZF`Bv
;t$,vv
UQPXY]Y[
]H\\w`
Ru4b27Nh@
{re]Bzm0D)
u:dMH(
+t*HHt
#y?7T>
+t-HHt
3v]]0!
.fuz#=9
c.gP;12lhw0x2
Z~/;_t|/3
Ey8+VB
TTTTRRRREEEEWWWW
TTTTRRRREEEEWWWW
xj15rsxw.dll
?terminate@@YAXXZ
_XcptFilter
__dllonexit
__getmainargs
__set_app_type
__setusermatherr
_acmdln
_amsg_exit
_cexit
_commode
_configthreadlocale
_controlfp_s
_crt_debugger_hook
_except_handler4_common
_fmode
_initterm
_initterm_e
_invoke_watson
_ismbblead
_onexit
_unlock
wcsncat_s
CloseHandle
CreateFileW
CreateProcessW
CreateThread
DecodePointer
DeleteCriticalSection
EncodePointer
EnterCriticalSection
ExitProcess
FindClose
FindFirstFileExW
FindNextFileW
FlushFileBuffers
FreeEnvironmentStringsW
GetACP
GetCommandLineA
GetConsoleCP
GetConsoleMode
GetCPInfo
GetCurrentProcess
GetCurrentProcessId
GetCurrentThread
GetCurrentThreadId
GetEnvironmentStringsW
GetFileType
GetLastError
GetModuleFileNameA
GetModuleFileNameW
GetModuleHandleExW
GetModuleHandleW
GetOEMCP
GetProcAddress
GetProcessHeap
GetStartupInfoW
GetStdHandle
GetStringTypeW
GetSystemTimeAsFileTime
HeapAlloc
HeapFree
HeapReAlloc
HeapSize
InitializeCriticalSectionAndSpinCount
IsDebuggerPresent
IsProcessorFeaturePresent
IsValidCodePage
LCMapStringW
LeaveCriticalSection
LoadLibraryExW
MultiByteToWideChar
OpenProcess
OutputDebugStringW
QueryPerformanceCounter
RaiseException
RtlUnwind
SetFilePointerEx
SetLastError
SetStdHandle
SetUnhandledExceptionFilter
TerminateProcess
TlsAlloc
TlsFree
TlsGetValue
TlsSetValue
UnhandledExceptionFilter
WaitForSingleObject
WideCharToMultiByte
WriteConsoleW
WriteFile
KERNEL32.dll
EnumProcesses
EnumProcessModules
GetModuleBaseNameW
PSAPI.DLL
"d=p>?
@GOLO=.
HhXp:t
`N>7%
oWa5fu
!*x^_%
%5[NfZT
ci*)@^
ib ,,v
*Lvp<=
#L|rA.
vxiEbpz_
kQJROl
q>|PVXO
Th[=+e
k/x2i04w
Iw /Wp
s-\/W"
/R2hBSo3
%UC6;Q
\3^H{f?
73f^[\
(gP*-M
48_L7f*
L=C*Y]}_.
VM[&Zr/
P/>_{7f*Y
.Xyp|+FE
w9]0ia
.ViTU-
l`uSR>
@ubH/c8
J@ubH/
t DO}
s3UR^P
$^@~SP
$TPso3
#]>Vm1
o;/T8
)(*=:W
\)Mri~!{
&f5{}AU9
=rLmd
h| )T
%0Z$/_
M_F>[9r
:!*Jht
&hqSAW
4yR[.6'Cp
bad allocation
permission denied
file exists
no such device
filename too long
device or resource busy
io error
directory not empty
invalid argument
no space on device
no such file or directory
function not supported
no lock available
not enough memory
resource unavailable try again
cross device link
operation canceled
too many files open
permission_denied
address_in_use
address_not_available
address_family_not_supported
connection_already_in_progress
bad_file_descriptor
connection_aborted
connection_refused
connection_reset
destination_address_required
bad_address
host_unreachable
operation_in_progress
interrupted
invalid_argument
already_connected
too_many_files_open
message_size
filename_too_long
network_down
network_reset
network_unreachable
no_buffer_space
no_protocol_option
not_connected
not_a_socket
operation_not_supported
protocol_not_supported
wrong_protocol_type
timed_out
operation_would_block
address family not supported
address in use
address not available
already connected
argument list too long
argument out of domain
bad address
bad file descriptor
bad message
broken pipe
connection aborted
connection already in progress
connection refused
connection reset
destination address required
executable format error
file too large
host unreachable
identifier removed
illegal byte sequence
inappropriate io control operation
invalid seek
is a directory
message size
network down
network reset
network unreachable
no buffer space
no child process
no link
no message available
no message
no protocol option
no stream resources
no such device or address
no such process
not a directory
not a socket
not a stream
not connected
not supported
operation in progress
operation not permitted
operation not supported
operation would block
owner dead
protocol error
protocol not supported
read only file system
resource deadlock would occur
result out of range
state not recoverable
stream timeout
text file busy
timed out
too many files open in system
too many links
too many symbolic link levels
value too large
wrong protocol type
Unknown exception
CorExitProcess
_hypot
_nextafter
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
CreateEventExW
CreateSemaphoreExW
SetThreadStackGuarantee
CreateThreadpoolTimer
SetThreadpoolTimer
WaitForThreadpoolTimerCallbacks
CloseThreadpoolTimer
CreateThreadpoolWait
SetThreadpoolWait
CloseThreadpoolWait
FlushProcessWriteBuffers
FreeLibraryWhenCallbackReturns
GetCurrentProcessorNumber
GetLogicalProcessorInformation
CreateSymbolicLinkW
SetDefaultDllDirectories
EnumSystemLocalesEx
CompareStringEx
GetDateFormatEx
GetLocaleInfoEx
GetTimeFormatEx
GetUserDefaultLocaleName
IsValidLocaleName
LCMapStringEx
GetCurrentPackageId
GetTickCount64
GetFileInformationByHandleExW
SetFileInformationByHandleW
bad exception
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__vectorcall
__clrcall
__eabi
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
MessageBoxW
GetActiveWindow
GetLastActivePopup
GetUserObjectInformationW
GetProcessWindowStation
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
1#SNAN
1#QNAN
invalid string position
string too long
generic
unknown error
iostream
iostream stream error
system
vector<T> too long
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
0!030S0p0
5M6:7F7P7
>>&>4>;>D>N>Z>a>j>q>|>
?#?*?5?<?E?N?[?d?p?{?
2'2\2x2
5 555I5
0*0P0V0i0
:3:{:B;T;
;<8<{<
!0k0s0
1 101W1a1p1
6'6U6$7G7f7
7(868@8m8x8
<<9<@<G<K<O<S<Y<
<S=W=[=_=c=
>(>/>3>7>;>h>n>
?,?T?X?\?`?d?h?l?p?t?
7 8*8D8N8
:3:G:l:
?*?I?Z?`?
7 8b8}8
8.9M9p9
95:P:p:
>:?X?_?f?j?n?r?
0!0%0)0z0~0
1'1I1R1V1Z1^1r1
2@3D3H3L3P3
7@7[7k7
;3<K<R<`<
2 2$2+2e2k2
3%353B3Z3
3.484C4^4
4-5L5V5h5r5
6666}6
7/767;7Q7W7c7w7|7
8*898F8L8X8l8z8
:#:):@:r:
:1;8;F;L;q;
<4<]<i<
<-=8=z=
> >2>@>M>
0+0?0Q0
2N3v3{3
434F4Y4e4q4
6+6<6H6O6X6y6
6(7M7e7
9'9>9z9
9 :/:5:s:
0M0T0]0h0s0
0G1f1w1
44-494o4
6#606I6m6
6"7(7s7
<C<V<`<
=%=S=c=
>">1>=>
>Y?h?n?
090N0\0b0s0z0
6-7a8t8
9B9P9}9
;:<U<d<s<
5 5*505A5J5
6!6<6P6_6g6
7 7(7-737?7E7K7W7\7b7j7q7x7
88%8-848:8B8G8M8U8Z8b8j8o8u8}8
9 9%9+949;9@9I9N9V9`9h9y9
;#;);/;6;<;B;H;N;T;Z;b;j;r;z;
=#>+>0>:>
>'?W?g?
8'979}9
2-3<304
526n6|6
67n7|7
<O=W=]=v=
>S>_>k>
?;?@?h?
10D0J0
3(4W4j4
:*;<;B;
?(?G?X?`?l?
0H0N0X0
1#1/151n1
1'212P2p2
434H4]4t4
595P5b5u5
=X=_=v=
0"0_0r0
617:7U7
:":V:t:
=#>:>e>
7(8:8T8
;%;+;H;
4)535y5
8&858K8
9,9t9|9
>'?^?o?
;A<J<m<
5&6k637}7
7&878m8y8
=/=m=}=
>'?1???
121@1L1b1
3*3N3z3
l1p1x1
242D2H2X2\2`2d2h2
3 3$34383H3L3P3T3l3|3
4$4(4,404H4X4h4l4p4t4
5$5,545<5D5L5T5\5h5
6 6(6l6
7<7D7L7T7\7d7l7t7|7
8 8@8H8P8X8`8l8
9(90989@9L9T9
: :$:(:0:D:L:T:\:`:d:l:
; ;@;`;
<0<L<P<l<p<
=4=@=H=t=x=
>0><>X>x>
4$4(4,4044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
5$5,545<5D5L5T5\5d5l5t5|5
6$6,646<6D6L6T6\6d6l6t6|6
7$7,747<7D7L7T7\7d7l7t7|7
8$8,848<8D8L8T8\8d8l8t8|8
9$9,949<9D9L9T9\9d9l9t9|9
2 2$2\2T3\3d3l3t3|3
P5T5X5\5`5d5
6$6,646<6D6L6T6\6d6l6t6|6
7$7,747<7D7L7T7\7d7l7t7|7
8$8,848<8D8L8T8\8d8l8t8|8
9$9,949<9D9L9T9\9d9l9t9|9
:$:,:4:<:D:L:T:\:d:l:t:|:
;$;,;4;<;D;L;T;\;d;l;t;|;
<$<,<4<<<D<L<T<\<d<l<t<|<
= =(=0=8=@=H=P=X=`=h=p=x=
> >(>0>8>@>H>P>X>`>h>p>x>
? ?(?0?8?@?H?P?X?`?h?p?x?
0 0(00080@0H0P0X0`0h0p0x0
1 1(10181@1H1P1X1`1h1p1x1
2 2(20282@2H2P2X2`2h2p2x2
3 3(30383@3H3P3X3`3h3p3x3
p6t6x6|6
7 7$7(7,7074787<7@7D7H7L7P7T7X7\7`7d7h7l7p7t7x7|7
9$9,949<9D9L9T9\9d9l9t9|9
9,>0?4?8?<?@?D?H?L?P?T?X?\?`?d?h?l?p?t?x?|?
0 0$0(0,0004080<0@0D0H0L0P0T0X0\0`0d0h0l0p0t0x0|0
1(1,10141T1
3 3$3(3,3034383<3H3L3P3T3X3\3`3d3l3p3
9 9$909<9H9T9`9l9x9
!This program cannot be run in DOS mode.
RichEUg
`.rdata
@.data
.reloc
XMgGV::
%33333
BFdu>K5{
Ry,:EFC
%33333
(]/E F
d$,hLo
s$}czg!
=uqhF0
8y9GDa
x<+kGw
A+pCt\
~p4?@~
Q'4Ls7
9zb>y4A{
T0&D.v=
D$ hHz
s?$#ZQ{1
"F7,bDU
&e2/i2
rQ{w{`9
U$u8v>
V+v4'k=
#u+uZF\D
2!~{;J
@"_XBj
k<;eT4?
maL:W6?
<}9\?
b~PS"
HnzH:6
=d;d@4zU
HtfHt/Ht
HHtrHtY
Yu%8F4t
FX;FTt>
UC.U\
t4Ht*HtHHt
]*%j{4
HHt&Ht
lVale
[u<9V<t7
MFts,j
x;qE*L*%E
+F0t*P
2Twq:
.u9VDU
tXHHtT
AGq"bV0
'}4pLX
N<j QP
x%O \aMS
%u9GB+M
@Uy=H+Xl
At#HHtHt\
t0HHt(HtQ
t&HtHt
:/|S<u
m_@\B[^Cb
Ht7Ht#Ht
s/yS6H
Epg~)Qs
s,7kvO
u:Q?]/'
Ahgu77
,'Xu5R
R%4)hLW
5|\qn#/
nZ]Gz{H
CMATU2
.KQQWQ
E?!WQy3
lo^SC&R
b5t&nc|
zSMxc.
wnq;x'
B!{KzO
l$X{8!A
j l>68t
"&mAs`
q#<=~o
<[dAcN
vu4s5
^^#}WA+
7@U o%P!
x)u[^F
rI4>x6
];GJW9^x
~p+~tt
x&T0lu
f>AjKV"@<
F`;Fhu
+V,Zu
;FXw R
)y0l!:
([JXPZ
lfE:v
YuI9F,u
}u64Cu
t)G54;c
zg; =s
g="t:B
qs9%NB
'WGsmCw
'LL'Q0
YY_^[]
ru1>hv7
+K0Yr
+S0Zr0
U4x]lR
$y52(7
sx/\&
;^0slP
+^0[rZ
x-^kDh
O_'|nJ
i:u7wa
+bZ^6;f.b(
6a|+`W'
j>y*t4
Z;^4rmw
;F0vfj
9F0vQj
9F0v3f
5hnLBI
9wxu%h
nx9mU/P
9u:fDj
\SfNu3
cu<,A&
i?xu:qz
Z4y:fa
l.py/
FeZKs
fRk|c0
HHe1d+
-s-y|_
<x4qB@
@,~k-&|q
nWsZOZN
GL;GTw
GH;GPw
Itq<Qn
m}t(_`
tk<ey!+L
NW:-&!
9*^Oi;SY
KY<AAB|
-PI"Of
t5Fsz.{
&:kc;|
.`4N#63
HtnHHtNHt-Ht
y*%W.z5
A8r.OT@gm
s447w+:
@>DXH)
;(3av
YIe:JR
++u)/R
9u-b!$
,N?OD
\=$EZ*v
gy&.fwLG
u3j\XRf
QN#B26
~tby48
[GZ84!m
%UA%8T"
"Hi^bd3
ly5nH;
y'!M:x
gU{^$?e
!6%k}W
kdy&UN
OC8ku#
Gxw\uK
Ad9A|t
+;;UPR
mPy>5J
Wx6J#G
S]y6l@
$+"SY+u
K=Bno>_
p`(CCb
e{UQ%?
|-XL]k2b54-
t%!o]0:
u;u2t)t
O;:N;t
u%9j9V
,2v1D6N
MA1|4#"S
Vg1u,
@[Xdy+$
s'&hn}
![u\9w
Lrag_i)
HHt@Ht6
3c-HHt$HHt
t:HHt#
-fmt X
-dataX
XAx,*D
A6QE@Br
Xu/SQPSS
tI3Yi'#%A
|N15Q3
F,B;W4r
uMy4o)
C,B;V4r
7t7*o>M&j
xP_.b)z.
Uu2*Qc
zhLlQr
}a}bxz
#Y~;tu
9_<t V
U|GL'N~
GFL)FL
y$Oqn:d
}Bxy%D
+{POWS
w{]At$
FHHHtJHt+
YY9^(t
F$9F(u
+>W$+6
kc#)%\tH
VX;F tA
_;Md#C
F`;Fdu
F`;Fdt
%{+^IXN
O0VVVV
(t%63v=
[u$9GPu!9E
h5@3(h
+V,Zt2
A3SW_%eAmO
FLjLSP
}s>cd)
L~Wu*?F
a<B89p
Utl9Tgiq)_
U^$6c6
ZrJuKP
Yr-u.S
x*>}@O`
o`7=y9
f5iGWj
x1>WK(&
-egs%w*s2QQ
9^xv";~`t
9^xv);~`t
Mq:f!c
g4xy"HEZSd>
x(59Sc
S$?$d{
u)C%XBO
P9J&=V
Vq4"Ls
'Gqe2a2
|Scf2f
V`9Vtv&
.t60Jq$
4q>bC[[
@*G(%A
=#l8X@9
f{< *]
z/%ewA
zy?r![
+N,YsRf
: yz]DzuWXD
ug^ou7
bq()X$I
0Sm|!`
#6pu6E
ZA}YPi#
f90tJf
(!hAjc
o(*D=.
,p7<+;
REq;CVt1
C[#2)I
$y'Fge<o
8Cy,X|
y7;BYK
+'MD.-`U
my*ol>o
t"z*mj
}Wt Y
Ht'HuD
O.u;J1
u63{`{
\%'>Jt
XYYt h
t6HHt"
,IXtSP
<[vkh8
b0GT29i
l(Yu=@
:;7eCD
[faUF=
bcOhKk
u*vZ^3ob
j@j _W
k3!cF:
t11]Cj
)Nt;)3
,SVWj0
%u.HWr}
OjS1IRY
5cy/xo$F"
NA#Its
;t$,vx
z4~[}a
,t9)Ue
@8q8:3YJ8
2*?7JB%&"
lUij\*
*>K:y!
onWyj|
M{]:x*0
.,\q2i
kx"-Bh
t4HHt"
)C0ry,
n[tVjo
y3@RuF
on.u&ec{
~6;_t|43
;_trJP
R/5g@6&
SPQvSVW
#S]r<7Y
U@x&&P
'J|ZkDDFn
ly?Bf2
';W'@KG
P`y=[+
PDq>}"&
1x3@t.
4{;9D|
Yy9Fmx
XNYEF>
iW4aZT
9`-yS,
[uzh0m
MK[!)oXI
f!y}y.
u-wSL)(7
i'u;%)
J]`WW%i
.Ejzy
l?yBjz
*'` 6h
TTTTRRRREEEEWWWW
TTTTRRRREEEEWWWW
vvuqjqv4.dll
?terminate@@YAXXZ
_XcptFilter
__dllonexit
__getmainargs
__set_app_type
__setusermatherr
_acmdln
_amsg_exit
_cexit
_commode
_configthreadlocale
_controlfp_s
_crt_debugger_hook
_except_handler4_common
_fmode
_initterm
_initterm_e
_invoke_watson
_ismbblead
_onexit
_unlock
wcsncat_s
CloseHandle
CreateDirectoryW
CreateEventW
CreateFileW
CreateSemaphoreW
CreateThread
DecodePointer
DeleteCriticalSection
DeleteFileW
EncodePointer
EnterCriticalSection
ExitProcess
ExitThread
FindClose
FindFirstFileExW
FindFirstFileW
FindNextFileW
FlushFileBuffers
FreeEnvironmentStringsW
FreeLibrary
GetACP
GetCommandLineA
GetComputerNameW
GetConsoleCP
GetConsoleMode
GetCPInfo
GetCurrentProcess
GetCurrentProcessId
GetCurrentThread
GetCurrentThreadId
GetEnvironmentStringsW
GetFileAttributesW
GetFileInformationByHandle
GetFileSize
GetFileType
GetLastError
GetModuleFileNameA
GetModuleFileNameW
GetModuleHandleA
GetModuleHandleExW
GetModuleHandleW
GetOEMCP
GetProcAddress
GetProcessAffinityMask
GetProcessHeap
GetStartupInfoW
GetStdHandle
GetStringTypeW
GetSystemInfo
GetSystemTimeAsFileTime
GetTempPathW
GetTickCount
GetVersionExW
GetWindowsDirectoryW
GlobalMemoryStatus
GlobalMemoryStatusEx
HeapAlloc
HeapFree
HeapReAlloc
HeapSize
InitializeCriticalSection
InitializeCriticalSectionAndSpinCount
InterlockedDecrement
InterlockedIncrement
IsDebuggerPresent
IsProcessorFeaturePresent
IsValidCodePage
LCMapStringW
LeaveCriticalSection
LoadLibraryExW
LoadLibraryW
LocalFree
lstrlenA
MultiByteToWideChar
OutputDebugStringW
QueryPerformanceCounter
RaiseException
ReadFile
ReleaseSemaphore
ResetEvent
RtlUnwind
SetEndOfFile
SetEvent
SetFileAttributesW
SetFilePointer
SetFilePointerEx
SetFileTime
SetLastError
SetStdHandle
SetUnhandledExceptionFilter
TerminateProcess
TlsAlloc
TlsFree
TlsGetValue
TlsSetValue
UnhandledExceptionFilter
VirtualAlloc
VirtualFree
VirtualQuery
WaitForMultipleObjects
WaitForSingleObject
WideCharToMultiByte
WriteConsoleW
WriteFile
KERNEL32.dll
GetUserNameW
RegCloseKey
RegOpenKeyExW
RegQueryValueExW
ADVAPI32.dll
CoCreateInstance
CoInitializeEx
CoInitializeSecurity
CoSetProxyBlanket
CoUninitialize
ole32.dll
OLEAUT32.dll
GetAdaptersInfo
IPHLPAPI.DLL
CharUpperW
USER32.dll
C/8XS9
JEZ(Lp
x^rTH>H
cML,rTw~
=7 D5@
=U>-1a
fFL~AV\
D``i#Ra`
wL7u8#
wK*qj><x2
2]hz,9\2
oq1|QZ
P$|6RD
r}5H+r_
kmJZiJ
M2{v(.
Xg f+^
mJ.K<iX
? u\%X
`<R'_}
9v#\M7
=sd*3Y
GfNIfF
+A/~UolsHi{
`5>>>6
iV|R]i
ME&'6%Zh\>
bHmh+4
yqoBel
NO"=N`
jCVU_@
[klj,X
)yNIz#
GI`brK
h>U#^;
&;aHe<p>^;
VlZ3=vVz
Ix-t_}
8 }\8
>l}#2}=xX
ID;\~*
JvK}Lj
Eg'Z"c
tKwk9.
IPY}W]
8*Iz=N
<0$}&n
yvt,0W
Cannot get class object
invalid bitset<N> position
&LZMA2:
Property type not supported
Could not allocate memory for BitPropVariant string
BitPropVariant is not a bool
BitPropVariant is not a string
BitPropVariant is not a 32-bits unsigned integer
BitPropVariant is not a FILETIME
out of memory
GlobalMemoryStatusEx
memuse
SystemFunction036
FindFirstStreamW
kernel32.dll
FindNextStreamW
:$DATA
reduce
expect
filter
7z xz lzma ace arc arj bz tbz bz2 tbz2 cab deb gz tgz ha lha lzh lzo lzx pak rar rpm sit zoo zip jar ear war msi 3gp avi mov mpeg mpg mpe wmv aac ape fla flac la mp3 m4a mp4 ofr ogg pac ra rm rka shn swa tta wv wma wav swf chm hxi hxs gif jpeg jpg jp2 png tiff bmp ico psd psp awg ps eps cgm dxf svg vrml wmf emf ai md cad dwg pps key sxi max 3ds iso bin nrg mdf img pdi tar cpio xpi vfd vhd vud vmc vsv vmdk dsk nvram vmem vmsd vmsn vmss vmtm inl inc idl acf asa h hpp hxx c cpp cxx m mm go swift rc java cs rs pas bas vb cls ctl frm dlg def f77 f f90 f95 asm s sql manifest dep mak clw csproj vcproj sln dsp dsw class bat cmd bash sh xml xsd xsl xslt hxk hxc htm html xhtml xht mht mhtml htw asp aspx css cgi jsp shtml awk sed hta js json php php3 php4 php5 phptml pl pm py pyo rb tcl ts vbs text txt tex ans asc srt reg ini doc docx mcw dot rtf hlp xls xlr xlt xlw ppt pdf sxc sxd sxi sxg sxw stc sti stw stm odt ott odg otg odp otp ods ots odf abw afp cwk lwp wpd wps wpt wrf wri abf afm bdf fon mgf otf pcf pfa snf tt
ntelAuthenticAMDCentaurHaulsH
bad allocation
bad function call
permission denied
file exists
no such device
filename too long
device or resource busy
io error
directory not empty
invalid argument
no space on device
no such file or directory
function not supported
no lock available
not enough memory
resource unavailable try again
cross device link
operation canceled
too many files open
permission_denied
address_in_use
address_not_available
address_family_not_supported
connection_already_in_progress
bad_file_descriptor
connection_aborted
connection_refused
connection_reset
destination_address_required
bad_address
host_unreachable
operation_in_progress
interrupted
invalid_argument
already_connected
too_many_files_open
message_size
filename_too_long
network_down
network_reset
network_unreachable
no_buffer_space
no_protocol_option
not_connected
not_a_socket
operation_not_supported
protocol_not_supported
wrong_protocol_type
timed_out
operation_would_block
address family not supported
address in use
address not available
already connected
argument list too long
argument out of domain
bad address
bad file descriptor
bad message
broken pipe
connection aborted
connection already in progress
connection refused
connection reset
destination address required
executable format error
file too large
host unreachable
identifier removed
illegal byte sequence
inappropriate io control operation
invalid seek
is a directory
message size
network down
network reset
network unreachable
no buffer space
no child process
no link
no message available
no message
no protocol option
no stream resources
no such device or address
no such process
not a directory
not a socket
not a stream
not connected
not supported
operation in progress
operation not permitted
operation not supported
operation would block
owner dead
protocol error
protocol not supported
read only file system
resource deadlock would occur
result out of range
state not recoverable
stream timeout
text file busy
timed out
too many files open in system
too many links
too many symbolic link levels
value too large
wrong protocol type
Unknown exception
RoInitialize
RoUninitialize
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
CreateEventExW
CreateSemaphoreExW
SetThreadStackGuarantee
CreateThreadpoolTimer
SetThreadpoolTimer
WaitForThreadpoolTimerCallbacks
CloseThreadpoolTimer
CreateThreadpoolWait
SetThreadpoolWait
CloseThreadpoolWait
FlushProcessWriteBuffers
FreeLibraryWhenCallbackReturns
GetCurrentProcessorNumber
GetLogicalProcessorInformation
CreateSymbolicLinkW
SetDefaultDllDirectories
EnumSystemLocalesEx
CompareStringEx
GetDateFormatEx
GetLocaleInfoEx
GetTimeFormatEx
GetUserDefaultLocaleName
IsValidLocaleName
LCMapStringEx
GetCurrentPackageId
GetTickCount64
GetFileInformationByHandleExW
SetFileInformationByHandleW
CorExitProcess
(null)
`h````
xpxxxx
_hypot
_nextafter
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
Complete Object Locator'
`h`hhh
xppwpp
MessageBoxW
GetActiveWindow
GetLastActivePopup
GetUserObjectInformationW
GetProcessWindowStation
1#SNAN
1#QNAN
invalid string position
string too long
"EOM ID":"
"Number of Processor":"
"Page size":"
"Processor type":"
"Active processor mask":"
"Total KB of physical memory":"
SELECT * FROM Win32_ComputerSystem
%02X:%02X:%02X:%02X:%02X:%02X
","MAC":"
{"IP":"
LoadLibraryW
WinHttpCrackUrl
WinHttpConnect
WinHttpOpen
WinHttpOpenRequest
WinHttpSetOption
WinHttpSendRequest
WinHttpReceiveResponse
WinHttpQueryDataAvailable
WinHttpReadData
WinHttpCloseHandle
generic
unknown error
iostream
iostream stream error
system
vector<T> too long
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
!0(020C0H0T0a0f0q0
1,1q1z1
1 2,2>2E2U2t2
4'4=4B4M4n4
4$5<5u5|5
6'636?6M6Z6d6p6
7/7G7b7~7
8!8>8[8s8
=%=7=S=
1'1-1r1
2%2,2X2|2
3&3q3z3
4<4O4V4h4
5$565<5
6O6V6l6z6
7"7E7L7Y7q7z7
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.Generic.4!c
Elastic Clean
MicroWorld-eScan Trojan.GenericKD.37321609
FireEye Generic.mg.ec44a1e0f5af1c4b
CAT-QuickHeal Clean
Qihoo-360 Win32/Heur.Generic.HygBueAA
McAfee Artemis!EC44A1E0F5AF
Cylance Clean
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005802f31 )
BitDefender Trojan.GenericKD.37321609
K7GW Trojan ( 005802f31 )
CrowdStrike win/malicious_confidence_60% (D)
BitDefenderTheta Gen:NN.ZedlaF.34050.6r4@aumPXlh
Cyren Clean
Symantec Trojan.Gen.MBT
ESET-NOD32 Win32/Agent.ADIN
Baidu Clean
APEX Malicious
Paloalto Clean
ClamAV Clean
Kaspersky Trojan.Win32.Agentb.kmks
Alibaba Trojan:Win32/Agentb.c64a71af
NANO-Antivirus Virus.Win32.Gen.ccmw
ViRobot Trojan.Win32.S.Agent.2003456
Rising Clean
Ad-Aware Trojan.GenericKD.37321609
TACHYON Clean
Emsisoft Trojan.GenericKD.37321609 (B)
Comodo Malware@#3ggfsiuu6vd62
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro TROJ_FRS.VSNTGT21
McAfee-GW-Edition BehavesLike.Win32.Injector.tm
CMC Clean
Sophos Mal/Generic-S
SentinelOne Static AI - Malicious PE
GData Trojan.GenericKD.37321609
Jiangmin Clean
Webroot Clean
Avira TR/Agent.twqym
Antiy-AVL Clean
Kingsoft Win32.Heur.KVMH008.a.(kcloud)
Gridinsoft Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Wacatac.B!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis Clean
VBA32 Clean
ALYac Trojan.Agent.OceanLotus
MAX Clean
Malwarebytes Malware.AI.4251822667
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall TROJ_FRS.VSNTGT21
Tencent Win32.Trojan.Agentb.Alii
Yandex Clean
Ikarus Clean
eGambit Clean
Fortinet W32/PossibleThreat
AVG Win32:Trojan-gen
Avast Win32:Trojan-gen
MaxSecure Clean
No IRMA results available.