Static | ZeroBOX

PE Compile Time

2057-08-31 23:22:08

PE Imphash

a56f115ee5ef2625bd949acaeec66b76

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
0x00002000 0x0009e000 0x00052c00 7.98169699953
0x000a0000 0x0001aca6 0x00004600 7.93445980126
.idata 0x000bc000 0x00002000 0x00000200 0.649575783613
.rsrc 0x000be000 0x0001ae00 0x0001ae00 5.14650284547
.themida 0x000da000 0x004e2000 0x004e2000 6.34816101023

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x000d7a00 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x000d7a00 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x000d7a00 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x000d7a00 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x000d7a00 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x000d7a00 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_GROUP_ICON 0x000d7e78 0x0000005a LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x000d7ee4 0x00000344 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x000d8238 0x00000a6e LANG_ENGLISH SUBLANG_ENGLISH_US XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF, LF line terminators

Imports

Library kernel32.dll:
0x1400bc048 GetModuleHandleA

!This program cannot be run in DOS mode.
`
@.idata
@.themida
h[FdaY
\/Rex<E
j#*[%n
";rq_
Y9y/r3o}J
Kh2T,4
&NwwDr
5%nUr$
(rF_F
U*enrl
>B1tM]
q-M6TX
B42cQsU
bJ]E5}
:bKJv{#
9;?_AjI
;m!;8 Zr
HumyCg
/1`iVF
YGr56#L
r/sQsG
4v#]8&D
YzUs60<
C$2Ww$
m.yt=
a<({Lyq7`
{u\GpU
:}{b[5o
;9\[ed|
x<ScVy
!ugaqh/
KXlp(dD
yv]+El
FEWt;S
<D+AS)
.viqFf
Pq_kuT
IEX.?%M
?D[[lw
_u4mGD
*?2v]e
n%/sff
mF9S$
rulT36
P}6(o
@qr+S3|L
yFns0]|
tqvLi&
=gHwYE
0nM?^ZX
ZiFt=k
Rnna%gRc8W
I6scoT:
*Kw0WM
y&uH6e
]|6g)p
af<L|O=
f0upa_W
Oo9ISl
Lgx{|ms
@[5ZF]7
U[f}r
m'hP*KrQz
&k\TtpV
*5w[.FN
Yj!uP|V
i5d,BbT
G\CdiW
;n'FJQ
0Zrv $4q
{<nccE
/{8%Z\
BLlFp*42z
4&`s#h
zN;+%~/
Q<zX`xo/
6axMqB^n
<#+U.h
;Xu|s8
9GcA)4
R|ts~p
GXlRY#
kZ])U^
-YzGJl
.&1c/!
_Nh6SE
OsYb=\
0(4=ryV<V=
4h`|ha
ld,jsP&
p52.$_\kg
oL<<S(P
e,c_I['
TEUWrP
|EEcGI
(cbQ]o
ckG5HT
YPQ!|;
|5A8Cf
t5{x[r
\T&JSCATB
Z5*5n{J
6w|n'-
J}-nO5
||0Ygguh7
'U$cl+75
x}cO<<
Y]Q^I*
M/q2L
~Vge?,V9
|+2e_?
n#2w6
[]bt<fh~
i]]3b7
2PT\&"
0(CuLV
6Y*w:N
IV1oqQ
EyYW<
p*;\zDWI
FI+|:a6}s:6
G[:uPY
T[U6rH
Ze5#RS
|}/AG[[I
@K|U'Y
1qF}{4
t3<euX|
F3*AQ{
qBkZE'C
aMJk\ns`;
ut<P@5
&{l;{q
t7L_[99
>{cm^;2
-7kCt9
#S79<9
KzWFpn
"0H0et
ddj%E8
poefs"YA
lE~s6.S
TSBf,La5
1b _#Pgg
<)y[{b
(Lpg_-
J!Baqk ,N
\UK\0[
:5{bN<
+JQ|wf
n1V/E8p|F'XI
~6)T9D
$ wXly
v[<!@M
sx|}EE
-%Pf26XG
>#%N^Py
x%5L|e
c<dKWh
G.C,2c
Fmv~pj
E/VVU3>d
HS+~ 3z
/ew<u{v
c/ QHZln
dm5<#^
)?Bn6zg
:\ibt7
UN,-/G
hn|50Z
>Ag=5y`
@qz>yRT
Gv& (M^
E#<~pz
'_nNy!
s0U[uB.+
vmx|@t
mGVv YW
k&=LSSQFY
Mn.N(U
PJ5dy~N
9^^yZF!
1y53"
{']74
!rQ|RV
G)[__8
g,,0KIk9
0?ObTY
2P5?S(
U&+F*6
bl"/$W
ITMF{c
<*(\lzx
E! [E__
O#\&;v
ios hO
uAflmwi
Gm TLNiX[
&qM)gJ
3<I~dM
z+E'[N
Z^P4ySh
yk<%yc!H
I$ds0i
lNkTZ>
+'2B(+
Z6SQHq
~[JMet\
3Il+OU
Y dT'>
P\[Kv"
_cilkb]BT
!IpH t
bp0:L(C|
pT50;
t_1^^m+
8}p]c:P
vuY|wUz(
2t `{
"<cD/Fb
EJ}< h2
~oa{#{|
8saK|ht(
Fl,1R
Hj;ZtS
P~c]<,E
1h+d]ODf
Qmv(XL<
+o\l>T
. iwSi<
G%WqMA
A[ ;c3
V?YG.K$
nym3)@
0L5GW:
ty{=3
oyei7Hk
k[Q;S{.
QFgkyI
|7ihtT
y0nE#)T
8{gq;e
{+)_@
\!7[c[
#"9U t
rvDh#
g+S!)ql``
xUFx:.
*>*mh_^
XC J_LwT
*01Ksq
u7knwX
]?8L@Q
+#~s<'c=1
WV(Lv$
'y=Pgb4j
g ,p;i;
&kgv56
/IV5Yf
gDAtE@
iV-tGu
W1P5SYVh
`!2h!*
>\i",+/
NLEK[K
4Z@-pY
4H}e[mW
S9Pn])Z
O<}L4X
1/FcXM
Ihv<]=
ZY?`oq
V[*?1P
i0<9P)
9];3W!
o3303?.
U}k)F0
NG5kN-wn
Qwi7*G
a\'[Hs
5uVPE+
gCBZN_
P>'OB#
P:x(Z[
fPKn'}VO
4{q^0e[
{`7q&g
6i3e%[
4Jn|zW
BGKy(jp/
.DnR<m
IV!Ws)
MAu7QF
w,iGs;{9R^
qm57V/
<Py}t! g
50e=a2g
#9%ZJk
iyRp]H
uGfK,?h
(LF^:,
M;hfdcYS
/"ucl5
P3<R0E
O8JFY:
DDj|GT-
pU3/D#^
U+;5X8
0?0'\9
D;zP-B
[E[pFN<
J?}JG/
U3m:ga
uL:-!^Cb
|Uy{iT
f]]JR'
O]`@#C
kcYm_d
;DFU4O
YQt6gyW.
Y}6<4w
\# +{\)
ygi31:
Etq.s(
3E~f [
?o:4_]R
O<OW4U
p4Oq&%O
W\LZp2R
s={!%P
y oLX5
IC1uK~
hF'uVb?3Vo
xJ)>^DF
)0O]t'0
_a kF#
Ls2y"[V
DC]SJK
yY,y-\b
/|Ynn5m3
L~`//3l
A6ct*W
\r|UZN
K\j)6T
`{!rMs
gd*I5?
G#dY[)Y
sy@BR4
<u>n6{
!}yFwQ
i<TuzQ
}K2BY:
UQ|S*0f
%;/H&~
7@?z4v
e4qct'_Pkd
Q<s=^"
~3tV~O
2X#gYwS
z^~=x
z}odbu&r
|JtzMsDE
3?u\3PA[
L/9-5PK
,jB?:X
z!<6D>
*^1?xG
w0bG|+
$7vs4YgD
x^p|u#
<sA|=W{ZD
a?]8Tc
[,s,Sfg
1<v{<c
i5V65m&,A
UeV|+I_v${
D l Zo
Y+idwO@*o,9
I,^zm5
:U.5
3,d!gD
qQ'Y4\
`5s<Vta
,5w||q0
g+W,`X]
RY;xEe
eiT1\*
o.=uYh
(yP~zE
eu-$XPd
N/X)D$3
j3j>,:~U
AT*cP48
qU9[v
h~S1h'
/%!0[K
7jpPtX
yyZY)X
^?!gf*9
F*Nwn*
(Y@AW>.
}I#H}g
+F{/ieEED
VT7'jl
IyRmF;
2S c+G!U-
i,v.Cq
T$aiT5v
"0X01jG
u*OQ^B
aY(KIq
h1Ft0x
: HViXh&
p9rsP^
<fG,P$]u<
!D;[{" uL
R^N:Gv
ic4AdD
R||xpC
busn#+
*[gm*}
TV&&ISD<
YvEW "@U~Hx
LR4bEZF/G
8\G(Z
jt-E_X(
%(WU5h
M~/GJM
F>+070
3^sTU\1
/\4_*|}
T~pf`n
Gb>Ng6
}He0,kW/
r04BE5D
,'`hw*
KyE7/S
81-j]EK
+]u><K
G0lg3b
OddI2r
?N[$MGi{
iT5pMM}
b+f:&-
~z<MEo
`ghlUF
WY~89O
|/}h|'
ph|'D1Lh
P[.]Wu#Y4
<vHg2N
"NW7ro3c
p0=g5o1?(o
Rp^ASJfKF&y
[ZX5,\_
uyZF1O
V=$7<#
MF5Yng[/[
+R`XLgC
1l1DIV
I|!y2_L
D=jl5|g
Pwn.kYO[
TH{TpV
ME6@yf
# @Dgv0
ns=|i9WX
`2F+@n
j&,LIK
h8DnH,
tc)8wV
j!d[SI
mjdWEQ
nnWq/z
c0D[=hmO
m#}B40
0p}%(c`
CbeIIT{
L-p!/S
7+5Q*\~f
z8s'j_
H)y0VY
buLePsY
/}8G}6
ctTd;B
8xXImu
MJd\oJw
3yu,3~
o+-|t<
J7N*b-
s:!$*O
JyrQ|m!
f*;4cv
EIk.|Z
Fx"F*51
/Fx%Y'
[zvUN}5c
A1_<dt\
.GJFNY
[v$kTo
3YM[[+5X}
X|;)!|
N4]D5sy
4hlYmG'{~
s0X<tM
kMlK%[
7$k?S[&
g_q^H[2
NnQt@R
Z^Z]P
DpGnI(
6&~Wu*
<:qk}V
9&[Qai
W^v &-
5~(}GF
9wyYLX
G2^-7~~
<N1+PJ
lC$B[k-A
V>< %
s3<W[G
.8{N_u
4(E#l60
]Uc|F5
[lQ{_g
ZL"mPGJ
#mS/Ll
"?0|+W
*X8G}\
y+{ndo
*^.Kx`
Gcm=5p`n
6s"'y6
)@+{fTt
WPMGDAb
\\?kbt
yq37W<jg@
p(K9F2k
5i]4lL
$U9!qt
CSOr[1
zO4kZb
<8AAjb
oZk'=Pv3,
roiar7N
aAqY=G[
p6q[b/
lxG[T!I*
35n9[
2DMb4M
Mxw -pu
_@9Rv5
c&]fh
hfPa9l4S
gcLOAL[
E`3iG\
$gYm+g
CTc\!k'#J
7:~u[6E
Rx|fvl
i!1]=0`
]C(fYB[
}(XYbV
G~YHeg1
2]QFq!DU
c'9TY(9
,n1fAX
.r7 #VV
|!ICs-,
!L*,0P
t~kX4
ifXcYA&V
sHg}&z
ZP+~YV
F'!-Kq1
JOg}eC
be5b#%7]
Gp2!CZF
0 d~7:
4i?{U9
OqtQ1E
tnYm^
j,'2UQ
v`2EWNS
5-D3V:
gRF0[a#
$!4s9
8-p1n^
Lr=TB$#IUn
54O3_e
W3|+kz
#8SF!p
Fti>wY
M3@IM;
<c;>~n77
o]@"Tv1
TWj'l7h`
ZHmy {
jCK) |
F0laLFl
F8W]sPjz
u8tOQe
|j|=J$Xyyu
Z2_IY6
(8(vp!
}ay$A%g
;ogGkAb9
3YSS{c
7>-`%\
h*\\%q
t&d.,;
Q7)LrP
p?k**+
]`<;ghW
[;313m
!Dqx&_
5V1f7)
ISK%Tu7
7&g5M4
U37] d
ST,kWS
ma8z<Z
J`Qr6)/
C?HzE
7k4lOM
?WIOr 6e
&Be#&&
;n|^c;
#7lE=Q
NdP1|,
cK`0JL
[i.&]u
vp\O%|
p\Xw.R3
hM*Hzi
\Fq!*S
"2RK"S
rUE}vp
~;eG&@%
mRs3vq
Tb6VXk
y}@'jUN
B-=R[e
zty9HUN
n0!L,a
t~m]nFE|
.Ew 7r`
qF 1:&
`s`aw$
%M;O{l:
Vnh'Q
'~\sX=
A,}lK^
sJ Bu
b_\-pWN
sC\GO
)_6|J
F|XkT/
HC$pn]H
At&Cs
}FGq>*Jp*-L
(##[KG
jZ*2H
s{G)Tohq
$@YiKMU
D#Ba!
C :WiV
c[xuV#
NC(na_*.eb
AL+;bO
Vic)J+
Ja><g`
O;@=h71
}M?<:m
kernel32.dll
GetModuleHandleA
4IDATx
sADDDDDDDDDDDDDDDDDDD
`ff&:3
\.w@SS
Vtvvnq
}M7QZ6
R9%?p%
$+jn:Z
06cPI
7444i7Ej
L&ioo'
ZZZd0000:::
VLLL%:::
###attt
<?xml version="1.0" encoding="utf-8"?>
<asmv1:assembly manifestVersion="1.0" xmlns="urn:schemas-microsoft-com:asm.v1" xmlns:asmv1="urn:schemas-microsoft-com:asm.v1" xmlns:asmv2="urn:schemas-microsoft-com:asm.v2" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app" />
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<!-- Opciones del manifiesto de Control de cuentas de usuario
Si desea cambiar el nivel de Control de cuentas de usuario de Windows, reemplace el
nodo requestedExecutionLevel por alguno de los siguientes.
<requestedExecutionLevel level="asInvoker" uiAccess="false" />
<requestedExecutionLevel level="requireAdministrator" uiAccess="false" />
<requestedExecutionLevel level="highestAvailable" uiAccess="false" />
La especificaci
n del nodo requestedExecutionLevel deshabilitar
la virtualizaci
n de archivos y del Registro.
Si desea usar la virtualizaci
n de archivos y del Registro para la compatibilidad
con versiones anteriores, elimine el nodo requestedExecutionLevel.
-->
<requestedExecutionLevel level="asInvoker" uiAccess="false" />
</requestedPrivileges>
<applicationRequestMinimum>
<defaultAssemblyRequest permissionSetReference="Custom" />
<PermissionSet class="System.Security.PermissionSet" version="1" ID="Custom" SameSite="site" Unrestricted="true" />
</applicationRequestMinimum>
</security>
</trustInfo>
<compatibility xmlns="urn:schemas-microsoft-com:compatibility.v1">
<application>
<!-- Lista de todas las versiones de Windows con las que esta aplicaci
ada para funcionar. Windows seleccionar
autom
ticamente el entorno de mayor compatibilidad.-->
<!-- Si la aplicaci
ada para funcionar con Windows 7, quite los comentarios del siguiente nodo supportedOS-->
<!--<supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"/>-->
</application>
</compatibility>
<!-- Habilitar los temas para los controles y cuadros de di
logo comunes de Windows (Windows XP y versiones posteriores) -->
<!-- <dependency>
<dependentAssembly>
<assemblyIdentity
type="win32"
name="Microsoft.Windows.Common-Controls"
version="6.0.0.0"
processorArchitecture="*"
publicKeyToken="6595b64144ccf1df"
language="*"
/>
</dependentAssembly>
</dependency>-->
</asmv1:assembly>
AXAYAZA[A\A]A^A__^][ZYX
+>H99H
$ARYQH
AXAYAZA[A\A]A^A__^][ZYX
E3<$H)
4$aE'WH
E&FaL)
A+6I97H
D#(M9)H
D+)M9*H
D+1M90I
E32M97I
;M9&M!
AXAYAZA[A\A]A^A__^][ZYX
D#+L9)H
#;I9<$I
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
%]rmAS
AXAYAZA[A\A]A^A__^][ZYX
Mc<$H)
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
+8I9:I
E3/L9*I
+h20[I
[IsL6?
!This program cannot be run in DOS mode.
`.rdata
@.data
.pdata
@.gfids
@.rsrc
@.reloc
Z:\Oreans Projects\SecureEngine\src\plugins_manager\internal_plugins\embedded dlls\TlsHelperXBundler\x64\Release\XBundlerTlsHelper.pdb
.text$mn
.text$mn$00
.idata$5
.00cfg
.rdata
.rdata$T
.rdata$zzzdbg
.xdata
.idata$2
.idata$3
.idata$4
.idata$6
.pdata
.tls$ZZZ
.CRT$XLA
.CRT$XLZ
.gfids$y
.rsrc$01
.rsrc$02
KERNEL32.dll
RtlCaptureContext
RtlLookupFunctionEntry
RtlVirtualUnwind
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetCurrentProcess
TerminateProcess
IsProcessorFeaturePresent
<?xml version='1.0' encoding='UTF-8' standalone='yes'?>
<assembly xmlns='urn:schemas-microsoft-com:asm.v1' manifestVersion='1.0'>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level='asInvoker' uiAccess='false' />
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
A3;I9>I
AXAYAZA[A\A]A^A__^][ZYX
Ic<$M)
6Xkf^:
rl3)k?
AXAYAZA[A\A]A^A__^][ZYX
('&}iI
E+0M91H
E3)M9/I
AXAYAZA[A\A]A^A__^][ZYX
E37L91H
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
'zdiAM
D#0L93I
7*txLI
AXAYAZA[A\A]A^A__^][ZYX
E+1L90H
Ic4$H5
AXAYAZA[A\A]A^A__^][ZYX
D+'M9#I
D+?M9<$I
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
E3#L9"I
AXAYAZA[A\A]A^A__^][ZYX
F</!AM
AXAYAZA[A\A]A^A__^][ZYX
A+2I91I
AXAYAZA[A\A]A^A__^][ZYX
!L+(I)
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
E#<$L9?I
0!pb=3
+n eMi
E!,$M)
AXAYAZA[A\A]A^A__^][ZYX
D#3L97I
4$#n]'H
E#/M9)I
Ic<$H1
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
E#1M94$M
AXAYAZA[A\A]A^A__^][ZYX
6|}:xI
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
A31I9u
AXAYAZA[A\A]A^A__^][ZYX
joR#QU
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
A#4$L)
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
#3I90H
*nT\UI
A#6I91I
AXAYAZA[A\A]A^A__^][ZYX
A+2I93I
AXAYAZA[A\A]A^A__^][ZYX
&kg99A_M!
A+7H90H)
AXAYAZA[A\A]A^A__^][ZYX
E3/M9+H
E34$M9u
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
D#.L9+H
9L9>M9e
Mc,$H!
$$r8a%I
!|c5"I
AXAYAZA[A\A]A^A__^][ZYX
3emIy@
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
)q9iH
A30H91I
&9gs'A
AXAYAZA[A\A]A^A__^][ZYX
E+#M9'H
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
D# M9 I
AXAYAZA[A\A]A^A__^][ZYX
~rMC+X
A#<$I98I
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
D32L93H
E#)M9/I
1AXAYH
s/ic+e
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
Ogm8I!
AXAYAZA[A\A]A^A__^][ZYX
,$w]MUA
>H9:L1
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
[0oHiX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
38I9;I
AXAYAZA[A\A]A^A__^][ZYX
E#!L9"H
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
D+(M9.H
L34$L14$L34$H
$\ST[H
,ATTA\I
$ASAWA
4$YARI
?AUQh`>
ATSA\ATH
L3<$L1<$L3<$\H
A[[QAQh
YA_AWh
$$APPL
A\AQhD
RAQPATI
D$pARA
4$XAUI
~APhT=
A>_H-\
A>_AUPH
$v$]4A]A
$AQAPA
L3$$L1$$L3$$\H
$\hoy){H
H34$H14$H34$\H
=>A^ARAUA
+QAVh6
$'MMeXATA
D$pUh.
-w7H-{
_wH-IS
kH-CJ?qH-R
CJ?qH-
$AUATh:
<$\ARPH
4$[AUI
E!<$M!
LOShC
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
4U?{1t$
4U?{A_1
4$YAVI
Qhz%{IL
4$ARhos{vAZA
L3,$L1,$L3,$\H
eATSA\L
hWk}wH
mAPAQI
L34$L14$L34$H
ATTA\I
+hCCwih
AWTA_I
OARAQAZAR
4$AYSH
eO]AVA
4$YAPI
$$RAWA
4$\AVh
}AZARh
{PWh=6
$A^AVZA^h
?XARh
D$pAUASM
$APTAXI
r_H-@_
zARAPh
,$TA]I
4$[AWI
L3<$AVM
A^L3<$\h
H3,$H1,$H3,$\
cVV=M!
H3,$H1,$H3,$\H
A_ARTAZI
}AUAQA]AU
4$\AWM
<$APASM
4$YARI
h4B>uH
4$YAUI
D$pAUA
4$XATI
^H-8EuMH-Q
8EuMH-&c
y-Q+;
AXAYAZA[A\A]A^A__^][ZYX
E)4$M1
H3,$H1,$H3,$\AUI
4$AW^H
L3,$L1,$L3,$\hs
_A\AXI
4$AYPH
$$ATQRh
=~A[ARASA
$ARAVI
ASAVA[L
D$pAUA
8?{AQA
$AQQhf`
'0w>AY
$$PAUI
AVTA^I
AXAYAZA[A\A]A^A__^][ZYX
E+3L91I
AXAYAZA[A\A]A^A__^][ZYX
&ASARI
4$AYATI
jPQXhg
$\ASh,
4$A_ATI
3AXAWI
$ZAQAQA
,+A]Vh
H- \o{H-
<$AUSh
hOr}^H
$hPmo;AT
SPAPhW0
kH-$)ZUI
v?2'M1
AXAYAZA[A\A]A^A__^][ZYX
E3(M9*M
\4hrE!
<$SA_L
L3$$L1$$L3$$H
ATWA\M
7AWRL
D$pASA
lvAXPU
H}{AWA
$AUTA]I
,$\AWARM
$ASTA[I
4$AYAUI
L3,$L1,$L3,$\
H3<$H1<$H3<$\Q
$$TA\I
$$AVhk
!koXSASA
4$ZARI
D$pARA
L34$L14$L34$\PAUI
4$XAWI
;AQTAYI
I{yAVUH
{?H-r?
L3<$L1<$L3<$H
,$TA]I
G?uAUA
4$Z^AQ
D$pAVhU
oAXA^VQ
??AUPH
ATTA\I
|ASVP^VH
4$XAWTA_I
$AWTA_I
P~CPTXH
gAWAUh
({iA]A
e~}A]A
O-vU|W
_XSAQA
4$XAQI
+A[A]H
4$XARI
{AQARh
A]A^ZH
4$XASTA[I
4$[QTYH
A^H)T$
:5SV[H
?ARAVM
VAS^QH
4$AYSH
,$TA]I
,$\hJDo
KA\AYhz
'ZZ/D)
B;>AVA
_AQAQARAWhb
AZD1L$
]_H-h0
4$[h@}
$AZARH
H-:OmFH
$$AWA\AT
<A_APAWR
4$YASI
$\hkxO9H
,$APh/g
7AQARA
D$ph*>
4$XARI
4$\H-!
&=AUh.-
L34$L14$L34$\H
?AYARA
<$TA_I
$ATAWA
$$\AQAUA
$$ARPH
L34$L14$L34$H
$$H-TR
(ea{]H
VATAPh
4$XAUH
4$[ASI
{H-di{?H
di{?H-
W1|w-|
-W1|w-s&
4$YARI
L3,$L1,$L3,$\H
H3<$H1<$H3<$\AP
$ASAWI
$AVTA^I
L34$L14$L34$\h
AQWAUA
$AVARI
4$\AVA
/AZAUWH
A^PTXH
\$xA[APh)
ARTAZI
4$RTZH
peQH-@M
~f3L)
AXAYAZA[A\A]A^A__^][ZYX
E#>M9}
?9?NH%
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
(^m-Z=
D# M9'H
! Ya&H
0Y`q{M!
4$h%2+I
W^{.=d
5Rj_NH
(>C^ur
+>I98H
AXAYAZA[A\A]A^A__^][ZYX
-$:*uH
A#9I9>I
6L93L!
A14$I3
.90'gH
sM#l>=
I34$L1
AO(}M!
"q-eM)
E3<$L9?L
AXAYAZA[A\A]A^A__^][ZYX
DqI3:H
??f>2e
H-!U|>
}f$yKb
AYAUAUH
$ATTA\I
AXAYAZA[A\A]A^A__^][ZYX
A34$L!
AIHFL1
cE+7L92M!
79W>Q:aup
AXAYAZA[A\A]A^A__^][ZYX
A#0H93H1
$APAXH
E+'M9"I1
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
4$AXAYH
E)4$H1
AXAYAZA[A\A]A^A__^][ZYX
AUAPAUL
$AVQASI
$AWTA_I
4$XAQI
4$XAVTA^I
xS=0T_
L9$e:C
ATTA\I
4$XAWI
Wh]x{\API
L3$$L1$$L3$$H
$$ARARPH
AXAYAZA[A\A]A^A__^][ZYX
L@kAP
AXAYAZA[A\A]A^A__^][ZYX
[f/YDo
%1;-[.$
FsA0n'
-.FP&c
>:{E2p
4$\hOjwgH
APTAXI
4$V^API
4$TA^I
'YRM$\
hiW__L
L34$L14$L34$\AS
H3<$H1<$H3<$\P
$SAVhg
+hWiWwH
wwo%;G
<$\AUI
Uw~D1t$
AUTA]I
G9oiH-o
H-G9oiH
A^H)t$
([yh$P
wH-5rm;H-]
4$[ATI
AQ_AYH
$AUTA]I
AQTAYI
$AUYQH
4$[AWI
L3<$L1<$L3<$\H
L34$L14$L34$\APAPAXASI
$\ATAVPL
4$[ATI
4$XARI
AVAVA^ASI
4$[AUI
4$Xhe}
#&Xn8=2
"[.u[KA
"l#Te_
AWVA_L
$AWTA_I
_XH-yE
_ASATSAWM
4$]AUI
L3,$L1,$L3,$\
ovH-|$
$AWTA_I
H-my~{H
[}hH-n
x:E .`
$AQTAYI
4$[ARI
W^2JtZ
`Gd(b\
QyLa"E\
Ngr-Z{
^Zt7PP
$y[ng
/Y/O8w
$AVA^H
AXAYAZA[A\A]A^A__^][ZYX
xm2e6D
Rr$SKH
E9:U6~=
3G1$U@
$AUTA]I
$ARTAZI
VAWTA_I
A_ARAPA
+AQh WozAYA
H3<$H1<$H3<$\ARV
Eg88A)
N?D1d$
A]APA
4$XAQI
4$[QTYH
^-b\}_-{L
4$[AVTA^I
1'LU0J
Bd;y}|
A]hrwgGVH
$APTAXI
$\h%H~FH
hjC.6H
4$[AQTAYI
;AQPAUH
^ATAUAPI
4$YASI
XAUQA]AQAUH
Qhan~/H
D$pAQAWM
,+Yo]cH
^6AWASM
4+ATARI
AZL)d$
4$XASI
4$\AUI
ngARTAZI
<$TA_I
L3,$L1,$L3,$H
4$"Vt?[
"Vt?A]ATh
JvXAWA
4$Xh`O
$\H-Ve
$$\AWAQA
H-U|moH-p
$APTAXI
$SQ[AWAPSH
4$AYWH
%^AVQH
+AXPPPXH
YAWAVA
4$XAWTA_I
<$\ARP
4$ZAQI
<$\ATA
A\-Wt?-
H34$H14$H34$\H
ATAVA\H
4$AYATI
uA^AQA
$\RPARI
+AUAPA
4$[ATTA\I
L3$$L1$$L3$$\H
f-vV|z
8APTAXI
$hMruOh
L3$$L1$$L3$$H
4$YRTZH
4$XASTA[I
$\PAVI
{AYUAUh
ATPA\AT
H34$H14$H34$\H
4$};:_H
$ARTAZI
$APTAXI
<$\ATM
GAVAUH
$ZAQAWA
4$XAUI
H3,$H1,$H3,$\H-
zASTA[I
4+ASAWI
A_L1\$
4$[API
hn:]-H
_-I~no
$ASA[AWI
P'.8t3
hp8n+\
<_~*,T
$ARTAZI
{ARATA
As=APA
4$XAWI
<$\H-F
4+QATI
A\H1L$
4$[AWI
~H-if_oH
if_oH-
~hPI_}hN
4$AYRH
4$\RTH
P+v+AQA
$\ARAPM
4+^AYAQh
$ARATATH
4+VAQI
XAY^ZH
L3<$L1<$L3<$H
_iZ8-'p
[-_iZ8
H3<$AQI
AYH3<$\
,$\WAW_QH
KoARTAZI
$APTAXI
[AZAPA
WAQAQH
A]AQh\2
AQTAYI
sha7v_h
H-b gH-
4$YAWTA_I
\d,dotu
[cceF/cIa
NV.~5q
F@.Szv
o-t(qac2
$ASA[H
4$QAVH
H34$H14$H34$H
APAPASI
$ARTAZI
4$XAVI
h6vQ|H
AUA^A]H
AWAWA_AUI
4$[AQI
Oa8FF1.
,$ASAUH
4$V^UH
hHPS<AQ
$AWTA_I
4$TA^I
4$[AVI
L34$L14$L34$H
4$XAPTAXI
X|EGj:
A\VAWI
4$A^ATI
$APAXH
^G"$d>Z
,fi6j1e
0)F1GY
%KiYVQ
t<|cA&f
`@ihE<i
L3,$L1,$L3,$\
4$[ARH
Xw/U'6
$AQAYH
H3,$H1,$H3,$\S
3s:B{@
ep@"t6
vbLeMB
_?@W2e
H34$H14$H34$\H
T4v3b{
xkyI?q6
Q[2@Z`
N(,!u
XIOvF-
88dXmf
4$[WT_H
AWAWATI
E>}ASI
$AUTA]I
QY.Bt/6
k4ZY$U
4$XARI
x?BdT8
3)V|01.
iary*L
$APTAXI
H3,$H1,$H3,$\RH
4$[API
$ARTAZI
-E^f%i
\T&;gy
0nh"F*
4$XAUI
4$[ATTA\I
4$[ATI
$\WW_ASI
EobyR=
$hH:\oH
@P+6zT
$ARAZAUI
A]WAUI
4$[AWI
L3,$L1,$L3,$\
@VY@Ms
4$[AUTA]I
,$\APPH
4$[AQI
qGQL4g
"#)kC2
]Q8._x
s_2]}v
Y,.eIhZ
*r1ryN
?+:dcW7
3Ho=;t
AWAWA_PH
XI'>8g
[e<=m!
@iRJWt
#hxh0n
`*E8h$
'bK,
c&gg]l
;fXN/U'
A^VT^H
hJ2?{H
4$A^VH
yR67wC
KmIi*}
s(g'@
O/4d0`
4$^AVI
4$XARI
A\APATQL
4$[AVI
9'7S4j
AVPA^L
jhy0}wh
ATTA\I
$AQAYh
$AWTA_I
L3<$L1<$L3<$\H
$$PA\L
$\AWSQH
>m#Pv<
#1?=*E
~3U,~?u
4Ap b\B
6;mk3F
vD#KwT
AYhpF>kH
$\APh5
w?"Kcs
2xQ4eO
w?bW+.
5zu<A<
aS0J]Z
SN /
[Xp|~?
4$TA^I
AXL34$\
$hrT~L
7NzkTS
AXUARUAZL
APAWVH
D$ A[AXH
4$[ASI
=udvZ7
#M*Me@
R5NX5
$APAXWH
4$[ASI
$AWA_H
4$VARI
|AVTA^I
,$\hq+
@zvtK&0
b g]X1|
EG@oJ^
AZAQAQH
4$[ST[H
;2Ag7V
(L4 ka
6a@i6H
hM%OkAQSH
AYATTA\I
4$\API
M?/h4R
4$[API
L3,$L1,$L3,$\
pOzq(Dx
A\_Rhb_
ATPA\AT
4$AVA^VH
[p~?.H
{^5rlRU
PFN4n
[`w?*I
pv/~L#
oCQPYH
H34$H14$H34$\H
4$XAQH
4$Y(zwAXI
Y(zwAP
$AVTA^I
PhoM?@L
;D+'zp
<Qw3 `s
aS n@
k@.>($L
ZAUA]H
GosS!r
$4bX?[H
4bX?XAUI
$AQTAYI
$ATTA\I
,$TA]I
^N!S_Gg
jjKn8"2
ceQxl!>
tZs%%I
20G^Kp
,$AUA]H
AQTAYI
ZkxYnm
76=rJ_
R-{}sD
Qm<7<t
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
/dumpstatus
?=~yNU~
5SQY5C%
K"3A4U
OYBJmm
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
/deactivate
`?I#G^
i'o,My
<.OlFH
3EN)JI
AXAYAZA[A\A]A^A__^][ZYX
Software\WLkt
PROC_OUT = %d
CHECK_IN = %d
AXAYAZA[A\A]A^A__^][ZYX
jn-[3X
AXAYAZA[A\A]A^A__^][ZYX
fA1<$H
]ARTAZI
$ATTA\I
$SA]ASM
\$0A[A]
AXAYAZA[A\A]A^A__^][ZYX
WinLicenseInstance
(+1:II
AXAYAZA[A\A]A^A__^][ZYX
^rCheckIN
/showcode2
%@\G"D
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
c8'#tY
ZRt>Ue
-&HWIN
AXAYAZA[A\A]A^A__^][ZYX
ARSASI
4$[ATI
L3$$L1$$L3$$H
$\hZ(nlh
SplashClassName
WLProtectionDateTime
AXAYAZA[A\A]A^A__^][ZYX
xHOOK_IN = %d
PQRSUVWAWAVAUATASARAQAPH
$AXAYAZA[A\A]A^A__^][ZYX
pc2I1)
Software\WinLicense
Software\WinLicense
$_1<MP
U!P}[W
tC.(#My
u|gaOT
,|B tSd
ProcIN
AXAYAZA[A\A]A^A__^][ZYX
$$fE1,$I
rujba>
AVTA^I
$$VAPI
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
/forcerun
TP_IN = %d
CheckOUT
/5-k1H
AXAYAZA[A\A]A^A__^][ZYX
4$XPTXH
4$XASTA[I
AXAYAZA[A\A]A^A__^][ZYX
;J}2T~
ARTAZI
L3<$L1<$L3<$\hFb
4$XAWI
L3<$L1<$L3<$\
4$[APH
t-AG^4
8XUg{,
0n0]k;
/logstatus
/bugcheck2
KbUDo
%-!6PU
]'^&|K
faxSp?
2c3*V-
WinLicenseVersion
]|FVDl
}*fYjK
HO1J 5
hl&>(:
/skipactivexreg
AXAYAZA[A\A]A^A__^][ZYX
O+9J{o
@GCHECK_OUT = %d
WLSoftwareName
7_pNAK
2 DAs8
]AVAWA^L
;AQTAYI
=}h4.+_H
AZQARWH
4)qp]{
swWAQQ
$AVASA
w-+=AO-
+=AO-i~
?AQAWH
wUAR]QH
$AVTA^I
}AUTA]I
4$YAQTAYI
+AZWASUH
4$\AUAQA
_hY%owS
D$xAZh0U
zATVhxy
E){]D)
A\XARA
^hJBcoH
?AQAShE;
<$\AUh
$ZAQAWA
A_XAQA
L34$L14$L34$\H
4$[ARTAZI
#=<D1l$
A]XASA
A[-f]u-
H3<$H1<$H3<$\U
AQATAYL
L3,$AVM
A^L3,$\L
4$_ARI
A^AYh8
D$pATAQM
4$\UT]H
AVSA^L
AThnf'^H
H3,$H1,$H3,$\
v~H-,J
pARAVI
$VQ^VPH
C3_cAQA
meATAWI
AWA\A_h>
+XA\ASA
<oA_UR
4$t<O[
t<OA_
yAXWAUA
$AUAQA
AWPA_APM
;-h~b
$$7\K,M)
7J+3*H
5-b0/H
$ATTA\I
L3$$L1$$L3$$\S
$AWQA_h
4$AYh$
A]ZATA
$AVTA^I
$$AVAQQh
AYAThx
oh5$gVL
W-pi.n
$$%uwvH)
ExitOk
(b-[2H
)\e)`I
/bugcheckfull
/showinstance
4F~]Dx
AXAYAZA[A\A]A^A__^][ZYX
AXAYAZA[A\A]A^A__^][ZYX
)#StPI)
A34$M!
**exPH
%ZM9+L1
AXAYAZA[A\A]A^A__^][ZYX
2}Se8I
1Qo@#I
!02x`
$hOB|^h
]SAU[H
SF_;A!
WQ_H1|$
coQAWh
_?QAVAQA
L3,$L1,$L3,$\H
$3`w=X-3`w=H
AXL)T$
4$[AUI
4$YAPI
AXAYAZA[A\A]A^A__^][ZYX
PROC_IN = %d
$h8VlOH
|QAPYH
4$YAPI
4$YAQI
Un/WAV
loH-*S
?s_H-^J
$qf^m[
4$XVT^H
,$\AQTAYI
AXAYAZA[A\A]A^A__^][ZYX
q/getwlstatus
H34$H14$H34$\R
~ASAQM
{~AZARA
$ARAVM
|A]AQA
D$pAQPH
nH-Dro]H-
>H-hovwH
\H-INUnH
A]XAQA
4$[AUTA]I
L3,$L1,$L3,$\
L3,$L1,$L3,$\L
_?yhuu
$AVTA^I
+AWAVI
$AVATA
KOVDAS
~ARATA
]ZAZZH
+ASARA
Z=>AQPAYL
4$[AVTA^I
4$\PQH
$$AVA\L
$ARAYAQ
AQTAYI
$\ATQh
<$QA_L
~:ShJC
$ASATA
A\D1\$
D$pPASh
4$XAQI
k;H-'A
'~H-n#
5AWTA_I
H34$H14$H34$\H
4$[AUH
4$u* jI
WinLicenseDriverVersion
0stpEI
AXAYAZA[A\A]A^A__^][ZYX
zJGEI
AXAYAZA[A\A]A^A__^][ZYX
2AVYQH
AXAYAZA[A\A]A^A__^][ZYX
/'X-CI
ProcOUT
AXAYAZA[A\A]A^A__^][ZYX
$$fE+4$
AXAYAZA[A\A]A^A__^][ZYX
M3 H%x
*amP1I
/bugcheck
H+OH-Q
$]7M9(M
+`DnlI
fA)<$I
-K8yFI
M3,$I!
fA)<$I
Ic4$I1
fawAVI
WLSoftwareVersion
AXAYAZA[A\A]A^A__^][ZYX
/__,PI
AXAYAZA[A\A]A^A__^][ZYX
?fE1'I
Exception Information
$$E &A
AXAYAZA[A\A]A^A__^][ZYX
zX9s{P
-OBdNH
Z^O/checkprotection
fA14$I
$6Hj?I
<$\hJ_z>H
}WS_PH
X_UT]H
H3,$H1,$H3,$\ATI
4$YARI
}ATAPA
<$ATAPA\L
D$x_AVh
sH-yLiH-NP
$AWTA_I
4$[API
AXPTXH
H3,$H1,$H3,$\L
vUAS]H
$AWQAPI
cPAQh>
hfvoOH
AUSA]L
AQARh=
A[D1T$
L3$$L1$$L3$$\H
D$pWASA
4$\ST[H
Y'_H-B
AQSAYL
AYA^]H
4$XAWTA_I
L3,$L1,$L3,$\H
wm=AXA
h"Cvjh
`-[[AZZH
^pn/H-
H-^pn/H
4$XST[H
fE1<$I
AXAYAZA[A\A]A^A__^][ZYX
L3,$L1,$L3,$H
$hjPwnh[
$$\AWP
4$WAWM
ASQRYI
D$pATA
4$XAUI
+WPAQA
4$XATI
4$A^VH
4+ATQH
$AQARM
A;_RAVI
L3,$L1,$L3,$\
4$[AVTA^I
4$[VT^H
$AWTA_I
4$TA^I
L34$L14$L34$\W
L34$L14$L34$\AU
$ASTA[I
cz_h9d
4$AYAQI
<$\APA
$b~+wZ
$AQARh
$SA^AV
4$YAPI
D$pAVA
,(w=AQA
,$\WPAQM
he(wwASI
SWShmW
H34$H14$H34$\H
iAUAXA]
<$\ARPH
4$YAPI
g"~gXPQXh*_
A\AQASA
D$pAQA
{_WAPh
L3,$L1,$L3,$\H-|
4+^QAPA
H-nej>H
L3,$L1,$L3,$H
hS1^oH
?-D\NS-
$h!`|{AWUL
WwAWAPA_AW
H3<$H1<$H3<$\h
H34$H14$H34$\SH
WARAUA
A]D)T$
AQTAYI
D$pAURQ
H-gynnH
H-K{3=H-
4+VATAPI
hxO+h
,$\hj}
$$\hFe
ARTAZI
OAQPAPA
7AX)D$
D$pAPA
4$XAPI
L3,$L1,$L3,$\
FExpInfo
Nt2nN0
6fD)&@
[ARTAZI
3?g1t$
,$\ARh
AXAPARh
A\A]ARAWA
D$pATA
A_L)L$
$ATASA
ATPA\ATH
L3$$L1$$L3$$\H
AXAYAZA[A\A]A^A__^][ZYX
fA14$H
8%|zI
Antivirus Signature
Bkav Clean
Lionic Hacktool.Win32.BypassUAC.3!c
Elastic Clean
DrWeb Trojan.MulDrop18.21586
MicroWorld-eScan Trojan.GenericKD.37374003
FireEye Trojan.GenericKD.37374003
CAT-QuickHeal Clean
ALYac Trojan.GenericKD.37374003
Cylance Unsafe
VIPRE Clean
Sangfor Riskware.Win32.Agent.ky
K7AntiVirus Trojan ( 00580b291 )
BitDefender Trojan.GenericKD.37374003
K7GW Trojan ( 00580b291 )
Cybereason malicious.d0904b
BitDefenderTheta Clean
Cyren Clean
Symantec Trojan.Gen.MBT
ESET-NOD32 a variant of Win32/GenCBL.ARO
APEX Clean
Paloalto generic.ml
ClamAV Clean
Kaspersky Exploit.Win32.BypassUAC.abxx
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Tencent Clean
Ad-Aware Trojan.GenericKD.37374003
Sophos Mal/Generic-S
Comodo TrojWare.Win32.UMal.kaelz@0
F-Secure Clean
Baidu Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
CMC Clean
Emsisoft Trojan.GenericKD.37374003 (B)
SentinelOne Clean
GData Trojan.GenericKD.37374003
Jiangmin Clean
eGambit Clean
Avira Clean
MAX malware (ai score=88)
Antiy-AVL Clean
Kingsoft Win32.Troj.Generic_a.a.(kcloud)
Gridinsoft Trojan.Win64.Downloader.oa
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Cynet Clean
AhnLab-V3 Trojan/Win.Kryptik.R436355
Acronis Clean
McAfee Artemis!CBA619CEEFD4
TACHYON Clean
VBA32 Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Clean
Yandex Clean
Ikarus Trojan.Win32.Generic
MaxSecure Trojan.Malware.300983.susgen
Fortinet Malicious_Behavior.SB
Webroot W32.Trojan.Gen
AVG Win64:DangerousSig [Trj]
Avast Win64:DangerousSig [Trj]
CrowdStrike win/malicious_confidence_80% (W)
Qihoo-360 Clean
No IRMA results available.