Static | ZeroBOX

PE Compile Time

2021-01-12 02:00:32

PDB Path

C:\cixopuwuyesonu teyupoha\pebugamiget\cobor.pdb

PE Imphash

e4e1e1e6e225074b287b0f65b50fbc7e

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00012e34 0x00013000 7.28810765068
.rdata 0x00014000 0x000046cf 0x00004800 4.35292835976
.data 0x00019000 0x02837cc4 0x00004400 1.32427924833
.rsrc 0x02851000 0x000181e8 0x00018200 6.39306741215

Resources

Name Offset Size Language Sub-language File type
RT_CURSOR 0x02868990 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x02868990 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x02868990 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_CURSOR 0x02868990 0x000000b0 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_ICON 0x02866ba8 0x00000468 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG GLS_BINARY_LSB_FIRST
RT_DIALOG 0x02868c20 0x000000cc LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x02868fb8 0x0000022c LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG data
RT_STRING 0x02868fb8 0x0000022c LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG data
RT_ACCELERATOR 0x028670c0 0x00000028 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG data
RT_ACCELERATOR 0x028670c0 0x00000028 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG data
RT_GROUP_CURSOR 0x02868a40 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_CURSOR 0x02868a40 0x00000022 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x028607e8 0x00000068 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG data
RT_GROUP_ICON 0x028607e8 0x00000068 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG data
RT_GROUP_ICON 0x028607e8 0x00000068 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG data
RT_GROUP_ICON 0x028607e8 0x00000068 LANG_GERMAN SUBLANG_GERMAN_LUXEMBOURG data
RT_VERSION 0x02868a68 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x414008 lstrlenA
0x414010 LocalCompact
0x414014 MoveFileExW
0x41401c GetCurrentProcess
0x414024 GetUserDefaultLCID
0x414028 WriteConsoleInputA
0x41402c SetEvent
0x414034 IsBadReadPtr
0x41403c ReadConsoleOutputA
0x414044 GetVolumePathNameW
0x414048 FindResourceExA
0x41404c GetConsoleCP
0x414050 GlobalAlloc
0x414060 lstrcpynW
0x414064 GetConsoleAliasW
0x41406c GetFileAttributesW
0x414070 VerifyVersionInfoA
0x414074 WriteConsoleW
0x414078 ReadFile
0x41407c GetComputerNameA
0x414080 GetACP
0x414084 VerifyVersionInfoW
0x414088 GetCPInfoExW
0x41408c GetLastError
0x414090 GetProcAddress
0x414094 PeekConsoleInputW
0x414098 EnumDateFormatsExA
0x41409c DeleteTimerQueue
0x4140a0 GlobalGetAtomNameW
0x4140a8 SetSystemTime
0x4140b0 SetConsoleTitleW
0x4140b4 GetModuleHandleA
0x4140b8 lstrcatW
0x4140bc UpdateResourceW
0x4140c0 EraseTape
0x4140c4 GetConsoleTitleW
0x4140c8 BuildCommDCBA
0x4140cc VirtualProtect
0x4140d0 SetCalendarInfoA
0x4140d4 FindFirstVolumeA
0x4140d8 EndUpdateResourceA
0x4140dc ReadConsoleInputW
0x4140e4 AreFileApisANSI
0x4140e8 CreateActCtxA
0x4140f8 GetCommandLineA
0x4140fc GetStartupInfoA
0x414100 RaiseException
0x414104 RtlUnwind
0x414108 GetModuleHandleW
0x41410c Sleep
0x414110 ExitProcess
0x414114 WriteFile
0x414118 GetStdHandle
0x41411c GetModuleFileNameA
0x414120 TerminateProcess
0x414124 IsDebuggerPresent
0x414128 HeapAlloc
0x41412c HeapFree
0x41413c WideCharToMultiByte
0x414144 SetHandleCount
0x414148 GetFileType
0x414150 TlsGetValue
0x414154 TlsAlloc
0x414158 TlsSetValue
0x41415c TlsFree
0x414164 SetLastError
0x414168 GetCurrentThreadId
0x41416c HeapCreate
0x414170 VirtualFree
0x414178 GetTickCount
0x41417c GetCurrentProcessId
0x414188 LoadLibraryA
0x414190 VirtualAlloc
0x414194 HeapReAlloc
0x414198 HeapSize
0x41419c GetCPInfo
0x4141a0 GetOEMCP
0x4141a4 IsValidCodePage
0x4141a8 GetLocaleInfoA
0x4141ac LCMapStringA
0x4141b0 MultiByteToWideChar
0x4141b4 LCMapStringW
0x4141b8 GetStringTypeA
0x4141bc GetStringTypeW
Library USER32.dll:
0x4141c4 GetAltTabInfoW
0x4141c8 RealGetWindowClassA
Library ADVAPI32.dll:
0x414000 BackupEventLogA

Exports

Ordinal Address Name
1 0x401065 @GetOtherVice@12
!This program cannot be run in DOS mode.
`.rdata
@.data
VVVh aA
0WWWWW
0WWWWW
jXh`vA
QQSVWd
u&h@IA
0SSSSS
tNIt?It0It
>=Yt1j
jThhwA
j@j ^V
t hdKA
j,hxxA
HtHu4j
s[S;7|G;w
YYhtKA
tR99u2
0SSSSS
0SSSSS
tRHtCHt4Ht%HtFHHt
URPQQh
0A@@Ju
;t$,v-
UQPXY]Y[
_VVVVV
^WWWWW
GWhhTA
t"SS9]
FVhhTA
PPPPPPPP
PPPPPPPP
0SSSSS
_VVVVV
t+WWVPV
<+t(<-t$:
+t HHt
]j^n\?
_y>j;>
1'fIPGG
s%7^"=
+W]E^;
2]d\2
6Ojl|*
6`-s0_
I,<#z{
node%n
NFhi76?
xTzFb)
[k?1+R
Q;xOJ}
o!~oSl8
fqdEs,`;E
ZeMdY?
>bBAUz
ASnm`G
`6T es6
3Su_$56
/>Ivvh
Gee"hS
fgU-C4
bo"&\?Q
CF6JjaP
EKAIfZ
IRG6#M
o-5T0g
,2|-i,
A2G@h7
]-^fWt
6CAd~/
3)g{c]r
t%(<lGn
%;]5yhF
&}0KBKf
+rY5`?
kPpyx\
s1@8~<5,P
+s?['m
k}v|M
Ea?# /WU
zZkMu_
q*qQ|+
c[Fs0
wqO@4;j
}alj""W
h_PK>x
J_[Xq5
bad allocation
string too long
invalid string position
Unknown exception
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
bad exception
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
_nextafter
_hypot
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
GAIsProcessorFeaturePresent
KERNEL32
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
bad allocation
xijetatalasobujunihoriyupeyibewajefuxopizixirejivekuruturavugelavefiyunuze
logumenocox
Riraxaloluw tusoroci
Jimujipebomecuw tevohe
kernel32.dll
LocalAlloc
henoxiwusumekelucefitagodepabofi
C:\cixopuwuyesonu teyupoha\pebugamiget\cobor.pdb
GetSystemDefaultLangID
GetComputerNameA
lstrlenA
WriteConsoleOutputCharacterA
LocalCompact
MoveFileExW
InterlockedDecrement
GetCurrentProcess
GetSystemWindowsDirectoryW
GetUserDefaultLCID
WriteConsoleInputA
SetEvent
GetSystemDefaultLCID
IsBadReadPtr
GetConsoleAliasesLengthA
ReadConsoleOutputA
InitializeCriticalSection
GetVolumePathNameW
FindResourceExA
GetConsoleCP
GlobalAlloc
InterlockedPopEntrySList
LeaveCriticalSection
DnsHostnameToComputerNameW
lstrcpynW
GetConsoleAliasW
SetConsoleCursorPosition
GetFileAttributesW
VerifyVersionInfoA
WriteConsoleW
ReadFile
CreateActCtxA
GetACP
VerifyVersionInfoW
GetCPInfoExW
GetLastError
GetProcAddress
PeekConsoleInputW
EnumDateFormatsExA
DeleteTimerQueue
GlobalGetAtomNameW
WaitForMultipleObjects
SetSystemTime
SetEnvironmentVariableA
SetConsoleTitleW
GetModuleHandleA
lstrcatW
UpdateResourceW
EraseTape
GetConsoleTitleW
BuildCommDCBA
VirtualProtect
SetCalendarInfoA
FindFirstVolumeA
EndUpdateResourceA
ReadConsoleInputW
GetPrivateProfileSectionW
AreFileApisANSI
KERNEL32.dll
GetAltTabInfoW
RealGetWindowClassA
USER32.dll
BackupEventLogA
ADVAPI32.dll
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetCommandLineA
GetStartupInfoA
RaiseException
RtlUnwind
GetModuleHandleW
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
TerminateProcess
IsDebuggerPresent
HeapAlloc
HeapFree
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
SetHandleCount
GetFileType
DeleteCriticalSection
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
GetCurrentThreadId
HeapCreate
VirtualFree
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
EnterCriticalSection
LoadLibraryA
InitializeCriticalSectionAndSpinCount
VirtualAlloc
HeapReAlloc
HeapSize
GetCPInfo
GetOEMCP
IsValidCodePage
GetLocaleInfoA
LCMapStringA
MultiByteToWideChar
LCMapStringW
GetStringTypeA
GetStringTypeW
hihanub.exe
@GetOtherVice@12
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVexception@std@@
.?AVbad_alloc@std@@
#gzwg]
B5e 5e
4[e eB
2gZVe)
QQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQQ
QQQQQQQQQQQ
QQQQQQQQQQHu
bQQQQQQQQQ
QQQQQQQQQQ
PXN]QQQQQQQQQQQQQi
QQQQQQQQQQQQQ
|sQQQQQQQQQQQQQ0
QQQQQQQQQVkU lJ
QQQQQQQQQ
QQQQQQQQQC
QQQQQQQQQ{
:=|c#.~
12~s$3
O15~~)%
4OM}wE<
6RYrI1-
IOl8.=
SZ{wC=
+++++++++++++++++++++++++++T
++++++++++++
QG+++++++++++
S++++++++++
+++++++++I?
U++++++
!"+++++++
+++++++
++++++++
++++++++
B++++++++++++n
+++++++++++
x++++++++++++
++++++++++++++++++++++++++++++++++++++++
==e__XTGc
g@Ch+4O
/Sf?$u
S{~:1~
&Bu~j*z
Ruz%1HpN
+:e='u
Co~;%}
G:e{t1^
FFFFFFFFFFFFFFFFFFFFF
:::::::::::::::::::::
:::::::::::::::::>
tttttt
OOOO11
555I55
|||II{d
V""""""""""""""V
MMMMMMMMMMMMMMMMJ
+JJ+++++
+JJ++++
++J++++++
FFFFFFFFFFFFFFFFFFFF
{{{{{{{{{{{{{
Q{{{{{{{{{{{{{{{{Q
1{{{{{{{{{{{{{{{{1
^Q{{{{{{{{{{{{{{^1
^111111Q1QQQQ
)7777777))))
^^^~~~^
DDDDDDDDDDDD%
%DDQg%g%g%g%
gDDgDDg
(((((((((
JJJJJJJJ
kkkkkkkkk
%%%%%%%
%%%%%%%
kkkkkkkkk
}z~f}}~
zvsusxw
8F8$^g`}
iiiiii
iiiiii
iiiiiiiiiiii
iiiiiiiiii
iiiiii
iiiiiiiii
iiiiiiiiiiiii
iiiiiiii

mscoree.dll
KERNEL32.DLL
((((( H
h(((( H
H
yehofidahecuverocig fehicezizatatonirewudayuzofazene luvenixovilowilig rehijatuzeha
yevaratukiratiworesototivixefadikuxajuruy
hilemocuculafoxe
hawedev rolozacadatawavisoni buravabucihuc bazokudezacukuhogiturutudalux
fihedodutawixetazifedolekuj kulojefacelivazedajiligojoj buvikudicerenicezaxinasom payeyigumubowi
yevufunuzusalarekis yap
xmekuzehafuyezirugovadigamanuyetefafufohajerucogigobokozegowurojekazazupexuwebuyicaroguko
kipifegibi
ERRORDIALOG
/ P6pL
,/KPip
/-P?pR
/ P6pL
,/KPip
/-P?pR
VS_VERSION_INFO
StringFileInform
085564c6
InternalName
kogsmoadeke.exi
Copyright
Copyrighz (C) 2020, fodkageta
ProductVersion
9.51.22.12
VarFileInfo
Translation
Error!
Select One:
&Retry
&Abort
&Ignore
GBusuf zuworijotibeviy pomolu lotoxukulujo dohoju noyosepexojuki yitucog
Sexasax rofigibanofeyaQFibunetopafofak duye xos lahoso wededixuf hihabezefucedu jojuci vawecohuda jacoziYMado gal robu pew gituhivisowef domete muyiyazi yinapuxar nadugusasetisey kisobuzakucelekLLekup zareluwiyoj jewuh bikuvocus cato wapa cuwitehuxi sifutaf jetuvajepifes
+Sogatide ziyariruh wabirejegit nakiwapikukeOGudifapit layunebiti zinefemujurozof wefuta rov hutabicipoziwu xinate hiwayasih6Jifihuzayigameg wuxew tuy yobizigorupodi visugip pijes
VGozokapiyuyemo yexoj yagisowapunam pefuvoriconuc rumatohefin vocogilekuvuto xezevumive
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKDZ.76929
FireEye Generic.mg.8c77f9c1103d020b
CAT-QuickHeal Clean
ALYac Clean
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Trojan.GenericKDZ.76929
K7GW Clean
CrowdStrike win/malicious_confidence_70% (D)
Baidu Clean
Cyren W32/Kryptik.EUY.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HMAM
APEX Malicious
Paloalto generic.ml
ClamAV Win.Dropper.Upatre-9884831-0
Kaspersky UDS:Trojan.Win32.Zenpak.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.B40D (CLASSIC)
Ad-Aware Trojan.GenericKDZ.76929
TACHYON Clean
Emsisoft Trojan.GenericKDZ.76929 (B)
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Mal_HPGen-50
McAfee-GW-Edition BehavesLike.Win32.Generic.dh
MaxSecure Trojan.Malware.300983.susgen
CMC Clean
Sophos ML/PE-A
SentinelOne Static AI - Malicious PE
GData Trojan.GenericKDZ.76929
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Ransom.Win32.STOP.ko!se45665
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
Microsoft Trojan:Win32/Azorult.RT!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Infostealer/Win.SmokeLoader.R436340
Acronis suspicious
McAfee Artemis!8C77F9C1103D
MAX malware (ai score=81)
VBA32 BScope.Backdoor.Androm
Malwarebytes Clean
Panda Trj/Genetic.gen
Zoner Clean
TrendMicro-HouseCall Mal_HPGen-50
Tencent Clean
Yandex Clean
Ikarus Trojan.Crypt
eGambit Clean
Fortinet W32/Kryptik.ETY!tr
BitDefenderTheta Gen:NN.ZexaF.34058.nq0@aWbDIAs
AVG Win32:RansomX-gen [Ransom]
Cybereason malicious.66b01a
Avast Win32:RansomX-gen [Ransom]
Qihoo-360 HEUR/QVM10.1.2C9B.Malware.Gen
No IRMA results available.