Static | ZeroBOX

PE Compile Time

2021-08-15 20:21:50

PE Imphash

f9dddf0c037cf68c9cddde5fa6d841c1

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0000cf31 0x0000d000 6.61711376873
.rdata 0x0000e000 0x000066d2 0x00006800 4.94923901539
.data 0x00015000 0x00004a1c 0x00003e00 4.21162915559
.rsrc 0x0001a000 0x00000458 0x00000600 3.34989457158
.reloc 0x0001b000 0x00001000 0x00001000 6.50923973281

Resources

Name Offset Size Language Sub-language File type
RT_MENU 0x0001a228 0x000000ac LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0001a0f0 0x00000138 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x0001a2d8 0x0000017d LANG_ENGLISH SUBLANG_ENGLISH_US XML 1.0 document text

Imports

Library KERNEL32.dll:
0x40e008 VirtualFree
0x40e00c GetCurrentProcess
0x40e010 VirtualAlloc
0x40e014 GetModuleHandleA
0x40e01c GetLastError
0x40e020 GetProcAddress
0x40e024 ExitProcess
0x40e028 VirtualProtect
0x40e02c WriteConsoleW
0x40e030 CloseHandle
0x40e034 CreateFileW
0x40e038 SetFilePointerEx
0x40e03c GetConsoleMode
0x40e040 GetConsoleCP
0x40e044 FlushFileBuffers
0x40e048 HeapReAlloc
0x40e04c HeapSize
0x40e058 TerminateProcess
0x40e064 GetCurrentProcessId
0x40e068 GetCurrentThreadId
0x40e070 InitializeSListHead
0x40e074 IsDebuggerPresent
0x40e078 GetStartupInfoW
0x40e07c GetModuleHandleW
0x40e080 RtlUnwind
0x40e084 RaiseException
0x40e088 SetLastError
0x40e08c EncodePointer
0x40e0a0 TlsAlloc
0x40e0a4 TlsGetValue
0x40e0a8 TlsSetValue
0x40e0ac TlsFree
0x40e0b0 FreeLibrary
0x40e0b4 LoadLibraryExW
0x40e0b8 GetStdHandle
0x40e0bc WriteFile
0x40e0c0 GetModuleFileNameW
0x40e0c4 GetModuleHandleExW
0x40e0c8 HeapFree
0x40e0cc HeapAlloc
0x40e0d0 FindClose
0x40e0d4 FindFirstFileExW
0x40e0d8 FindNextFileW
0x40e0dc IsValidCodePage
0x40e0e0 GetACP
0x40e0e4 GetOEMCP
0x40e0e8 GetCPInfo
0x40e0ec GetCommandLineA
0x40e0f0 GetCommandLineW
0x40e0f4 MultiByteToWideChar
0x40e0f8 WideCharToMultiByte
0x40e104 SetStdHandle
0x40e108 GetFileType
0x40e10c GetStringTypeW
0x40e110 LCMapStringW
0x40e114 GetProcessHeap
0x40e118 DecodePointer
Library GDI32.dll:
0x40e000 LPtoDP

!This program cannot be run in DOS mode.
`.rdata
@.data
@.reloc
D$0Vh`
QQSVWd
tH9] uC
u PWQR
URPQQh A@
;t$,v-
UQPXY]Y[
tlj*Yf
SSVWh
f9:t!V
QQSVj8j@
tl=HVA
j,h`?A
PPPPPPPP
PPPPPWS
PP9E u<PPVWP
Unknown exception
bad allocation
bad array new length
bad exception
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__vectorcall
__clrcall
__eabi
__swift_1
__swift_2
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
operator ""
operator co_await
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
CorExitProcess
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
LCMapStringEx
LocaleNameToLCID
AppPolicyGetProcessTerminationMethod
?5Wg4p
%S#[k=
"B <1=
_hypot
_nextafter
kernel32
LoadLibraryA
Pa&lMMer+S~)!;fu
vtgzwxlapejonjufohlhrreeqxoxkanmuzxuxyunkpjceqre
mfjpaqfqpqcojkvaqgtiruxgcayhdkxwzbgqitjnmyfvfblyedf
esqvmvnizxkpflkbyomoqolmcwphh
kffijsvglitfnuhkvfxzvigvtzlo
vhkqmnkynzzdqsnjccfgpjsmhfxmavnpjnsejwwetkqdqnpziavjootwnkzynysosubzgqytjdq
ccruvywtrkpsjvrivllxpvtsipweveakyyijmtuuzkeydihrdbjyusynngafxtzmzk
arivevncmccidwwhdwrrmoeufleycjvbicmsox
biakahbj
ftljosijxluobwvsanvoebzgfvqfgbmwlelfyzrkkhwuhkyjaovummurbqcg
actfxvqdbcafkpkzkfuddwfgxinzxdtgurwaqfwzeuuwyqviqfw
pxwspwcdkoercmwtvvilflnfzwrvxtwxoxjqjlzcmfbapsdencgovxjpufvukuazilrhtxlgfatbczqtbnitbqigcb
kfujiy
cpogxiembghffrmzsykylijqjgsdyttpyxuiw
njuqvmkglyeyjvfjvcpiwkpoqfq
chjnwttygltpepwlcvplxghvjywtxtantmumpdamomytmabnmfnrtgnawcfyddxgxvfft
eqnmacwejydmedawwxsxqtljptzagxlnnpgsbljgyipbgerjrunwvikvpptjwvwrnjahjstcpydnuneasimidubkipjscdbugx
lvcpoyiaholdbfkuijwcgjgconfxlmyhktx
zluujwhchjop
rvacyeikjznn
ycikxrdvcwkzvptdrrpxtakyvnenfffbcptmdkksmdeyspeh
wbzoctjkftdcnpbkqfozlankt
adxkzjdpbwmqjhjvuv
pijrzbrptobscxehwblpucxvdrxkmsnrkiwvvkqahmuqnvnzyzttuqchtudxfjkujhuubbyrijdouaozosfnvc
hctostqvqpaznficdisjakqqsrpcrigvxhswwbvhfyhqksvskkdfdolojppimzwvpmvrahsvzcphyfukuoyhijbvjtpqjm
fgicmhjwfilcyzusborfvxnbcwqwqwaqxov
zmezmmclgxgwwejodgnjacfssgblkgdsxrjbxqrpodtxvqdt
hnvnljntdmecldbuwxhdjggohcbtkgdceyzcofcxaxcqeebkdso
kurcghzwgjtchwemjyhbamzesdplnnzufhmqizlncsvxfhfpuolocbkouuufuhvphploolybgbfqfbvhtjibxv
ggblpyidfbqukqilpzdfjreyidbdhmxxnidwpuvpsmbutsptjeqetpmgzdmsefbvwjdfrnn
whvpgnnctudqtkqexldtzblibstvtiqgymanzhhwjfrbbzzmztcabpuyltaeluonpus
pjztpyltuduowrjxpqvqkkqufppivqykqwrrccirrkdbocvaeiqqvyagqeqjqazbghwswusezaboeyqfpyagpshso
agcecghtmhmjbidqkekenyfdjxoazxoferfwlodjzmpldbemamgqbuyghaympzfgaqnblaeobfpvexgeaoaispylyvgtejr
string too long
.text$mn
.text$x
.idata$5
.00cfg
.CRT$XCA
.CRT$XCAA
.CRT$XCZ
.CRT$XIA
.CRT$XIAA
.CRT$XIAC
.CRT$XIC
.CRT$XIZ
.CRT$XPA
.CRT$XPX
.CRT$XPXA
.CRT$XPZ
.CRT$XTA
.CRT$XTZ
.rdata
.rdata$r
.rdata$sxdata
.rdata$zzzdbg
.rtc$IAA
.rtc$IZZ
.rtc$TAA
.rtc$TZZ
.xdata$x
.idata$2
.idata$3
.idata$4
.idata$6
.data$r
.rsrc$01
.rsrc$02
VirtualProtect
VirtualFree
GetCurrentProcess
VirtualAlloc
GetModuleHandleA
BuildCommDCBAndTimeoutsW
GetLastError
GetProcAddress
ExitProcess
KERNEL32.dll
LPtoDP
GDI32.dll
UnhandledExceptionFilter
SetUnhandledExceptionFilter
TerminateProcess
IsProcessorFeaturePresent
QueryPerformanceCounter
GetCurrentProcessId
GetCurrentThreadId
GetSystemTimeAsFileTime
InitializeSListHead
IsDebuggerPresent
GetStartupInfoW
GetModuleHandleW
RtlUnwind
RaiseException
SetLastError
EncodePointer
EnterCriticalSection
LeaveCriticalSection
DeleteCriticalSection
InitializeCriticalSectionAndSpinCount
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
FreeLibrary
LoadLibraryExW
GetStdHandle
WriteFile
GetModuleFileNameW
GetModuleHandleExW
HeapFree
HeapAlloc
FindClose
FindFirstFileExW
FindNextFileW
IsValidCodePage
GetACP
GetOEMCP
GetCPInfo
GetCommandLineA
GetCommandLineW
MultiByteToWideChar
WideCharToMultiByte
GetEnvironmentStringsW
FreeEnvironmentStringsW
SetStdHandle
GetFileType
GetStringTypeW
LCMapStringW
GetProcessHeap
HeapSize
HeapReAlloc
FlushFileBuffers
GetConsoleCP
GetConsoleMode
SetFilePointerEx
CreateFileW
CloseHandle
WriteConsoleW
DecodePointer
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_alloc@std@@
.?AVexception@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVtype_info@@
.?AVbad_array_new_length@std@@
.?AVbad_exception@std@@
<?xml version='1.0' encoding='UTF-8' standalone='yes'?>
<assembly xmlns='urn:schemas-microsoft-com:asm.v1' manifestVersion='1.0'>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level='asInvoker' uiAccess='false' />
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
02171=1D1
3#3-3B3L3]3>4H4]4
6&6M6Z6
6!7.7B7Y7j7
8-8=8U8
9 9*919
;#;);9;t;
<4<J<Q<
?'?.?N?T?Z?`?f?l?s?z?
0"0=0U0[0o0
2(2/252G2Q2
3M3\3e3r3
4<4E4K4)5I5S5
526;6@6S6g6l6
8 8P8Y8b8p8y8
2$2*2E2m2
2F3U364d6
0050`0e0
262D2K2Q2v2
30383n3
454?4K4P4U4s4}4
5'5,5B5
?K?P?T?X?\?
3G3X3c3
4*4E4P4
6(666>6V6o6
6;7D7}7
97;X;s;
=$=<=A=M=R=f=->4>F>Z>b>l>u>
?R?_?x?}?
4K4b4m4u4
;;;d;y;
<$<4<A<j<q<
=#=E=V=
>$>?>F>
;!<N<u<
0'0c0r0
1%1`1g1
4!434E4W4i4{4
<!<5<K<q<
=!=&=C=\=a=f=
>#>A>P>[>`>e>
?.?3?>?e?w?
031:1A1H1U1
324L4Q4/6I6X6f6r6~6
7!7/7:7P7d7v9
=#=F=P=
0(1g1h2
6%6X6m6~6
:(:3:@:R:
:7;L;U;^;
<!<9<?<K<j<p<~<
0*020O0_0k0z0
272T2h2s2
465V5f5
7m7x7~7
6-6K6_6e6A7x7
1(14181<1@1D1P1T1X1p1t1x1
2 2$282<2@2`3d3h3l3p3t3x3|3
4 4$4(4,4044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
<$<,<0<4<8<<<
> >$>(>,>0>4>8><>@>D>H>L>P>T>X>\>`>d>h>l>p>t>x>|>
? ?$?(?,?0?4?8?<?@?D?H?
?$?,?4?<?D?L?T?\?d?l?t?|?
0$0,040<0D0L0T0\0d0l0t0|0
1$1,141<1D1L1T1\1d1l1t1|1
2$2,242<2D2L2T2\2d2l2t2|2
3$3,343<3D3L3T3\3d3l3t3|3
4$4,444<4D4L4T4\4d4l4t4|4
5$5,545<5D5L5T5\5d5l5t5|5
0 0(00080@0H0P0X0`0h0p0x0
1 1(10181@1H1P1X1`1h1p1x1
2 2(20282@2H2P2X2`2h2p2x2
3 3(30383@3H3P3X3`3h3p3x3
4 4(40484@4H4P4X4`4h4p4x4
5 5(50585@5H5P5X5`5h5p5x5
6 6(60686@6H6P6X6`6h6p6x6
:$:,:4:<:D:L:T:\:d:l:t:|:
d3h3p3
4 4044484@4X4h4l4|4
5$5<5L5P5`5d5h5l5t5
9 9(909<9\9d9l9t9|9
:$:,:4:<:D:L:T:\:d:l:t:|:
; ;$;,;@;\;`;h;p;x;|;
< <(<,<<<`<l<t<
=4=8=X=x=
>8>X>x>
?8?X?x?
080T0X0
686<6H6L6P6T6X6\6`6d6h6l6x6|6
@api-ms-win-core-fibers-l1-1-1
api-ms-win-core-synch-l1-2-0
kernel32
api-ms-
ext-ms-
mscoree.dll
@ja-JP
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
((((( H
@api-ms-win-core-datetime-l1-1-1
api-ms-win-core-fibers-l1-1-1
api-ms-win-core-file-l1-2-2
api-ms-win-core-localization-l1-2-1
api-ms-win-core-localization-obsolete-l1-2-0
api-ms-win-core-processthreads-l1-1-2
api-ms-win-core-string-l1-1-0
api-ms-win-core-synch-l1-2-0
api-ms-win-core-sysinfo-l1-2-1
api-ms-win-core-winrt-l1-1-0
api-ms-win-core-xstate-l2-1-0
api-ms-win-rtcore-ntuser-window-l1-1-0
api-ms-win-security-systemfunctions-l1-1-0
ext-ms-win-ntuser-dialogbox-l1-1-0
ext-ms-win-ntuser-windowstation-l1-1-0
advapi32
kernel32
api-ms-win-appmodel-runtime-l1-1-2
user32
api-ms-
ext-ms-
zh-CHS
az-AZ-Latn
uz-UZ-Latn
kok-IN
syr-SY
div-MV
quz-BO
sr-SP-Latn
az-AZ-Cyrl
uz-UZ-Cyrl
quz-EC
sr-SP-Cyrl
quz-PE
smj-NO
bs-BA-Latn
smj-SE
sr-BA-Latn
sma-NO
sr-BA-Cyrl
sma-SE
sms-FI
smn-FI
zh-CHT
az-az-cyrl
az-az-latn
bs-ba-latn
div-mv
kok-in
quz-bo
quz-ec
quz-pe
sma-no
sma-se
smj-no
smj-se
smn-fi
sms-fi
sr-ba-cyrl
sr-ba-latn
sr-sp-cyrl
sr-sp-latn
syr-sy
uz-uz-cyrl
uz-uz-latn
zh-chs
zh-cht
CONOUT$
rghmgh,mt64
lNMer/S~)
a&lMMerkS~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)
J>^J@U
S~)!;fu
+S~)!;fu
I!;fuPa&l
Mgs Rt)!5fuPi&lMMer
J~)!+fuPA&lMM%r+C~)!9fuUa'lMMer.S
)!;fuP1&lMIer+S~)#;&
Pa6lM]er+Sn)!+fuPa&l]Mer+S~)!;fu
x&l)Mer+c~)
8fuPa&lMMer+S~)!;fuP!&l
Mer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+C~)
;fuPa&lMMer+S~)!;fuPa&lMMer
QU;fu,m&lM]er+]~)!?fuPa&lMMer+S~)
fuPc&lM_er+S~)!;fuPa&l
b&lM}er+W~)!/fuPa&lMMer+S~)a;f5~
".er!R~)!{fuPc&lMUer+S~)!;fuPa&l
Me0+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fu0z&l
{&lOVer%H~)= fu|z&lsVergH~)u fu
z&l?Ver
z&lMMerwO~)!;fu
WerSI~)!;fuX}&lsQer
'fuH}&lMMerI0
[D\\u2
H+S~)CR
[ut$0h
;ofs/?
R)~)CXWu$
DPa&l,)
)};Cu#a
rNS~)t
XUbkS.
4'v5P<
FZ9a;;
<|)!FU
XIbkSE,9
|%gg*v
"&zahB
p]u2+`
p)u2+9}rrS
wCWoi!m
guP]c
''P|9vN
bDl Zhq
I|YB_IBfU-Z<$s
bDlQZ}qt
<3v5P7q
z>)I/w5P
y9]%ru
sE@!&<
s9@!&<
XYbkS%v
hUE2+S
F^9a;6
E%6,M~
q!fuPa&lMMer
I~)A+fu
x&lMMer+S~)
fuPq&l-Wer+S~)!;fu
}&l=]ercI~)!;fuPa&l=QersC~)!;fuPa&lMMer+S~)!;fu0z&l
{&lOVer%H~)= fu|z&lsVergH~)u fu
z&l?Ver
z&lMMerwO~)!;fu
WerSI~)!;fuX}&lsQer
'fuH}&lMMerER
@;MM~sx'
jLK(4Pa
1F#0~!;5=
GS?,MH
V-MM(wG
E'.[NX
E'~)k9!
c6Y!;
[*8@M^1u
B=]Dk
UMMqpl6
MMppl6
3+S9,MH
_-MM.7y
Q1YDU%
S;DQO6<
+Sh(f^
]Ilfu
)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&l
qflMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer/S~)!;guZa&lUMe
+S~)!;fuTa&lMMdr*S~)
Pa&lMMer/S~)!;guYe&l
Mersc~)
e&lMMer*bGg[X
#80pT)
>I%;)UAW ;U^
sGP0=PU
o*sm\S/
46Bj8}Yi+
\V\';*
MP%t=t$&
;h/Vl}5
VDa#b_~
KHAW33
?eUX!960c4
M+reS2H@zR
I+J|XR2u
ag",)]6@a
M$MOZT
fUUZ5.
8d4I6=?0
t7\AXdI
%M"1{e'qrpU/d5d%
(hjyQ3
&hgb$'
FSMEIW
9+\KX*
=NEIS
Y@^4tR@Q7
^$JXDN
?mqz"1
0nqz"1
0nqz"1
0nqz"1
0nqz"1
0nqz"1
0nqz"1
0nqz"1Pq&l
<D1PX]
EGySp^
fu@a&lE}iB;c~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fuPa&lMMer+S~)!;fu
Dialog
MS Shell Dlg
msctls_progress32
RichEdit20W
SysListView32
qjktfr'h'grfj
wjlrfeh
grtnjmfgh
trjmhgfmnfg
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Ser.Zusy.3383
CMC Clean
CAT-QuickHeal Clean
Qihoo-360 Win32/TrojanSpy.ClipBanker.HgIASaYA
ALYac Gen:Variant.Ser.Zusy.3383
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Gen:Variant.Ser.Zusy.3383
K7GW Clean
Cybereason Clean
BitDefenderTheta Gen:NN.ZexaF.34058.guW@a0iVT8ni
Cyren W32/Kryptik.EVN.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/GenKryptik.FCJH
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky HEUR:Trojan-Banker.Win32.ClipBanker.gen
Alibaba TrojanBanker:Win32/ClipBanker.d0e81a46
NANO-Antivirus Clean
ViRobot Clean
Tencent Clean
Ad-Aware Gen:Variant.Ser.Zusy.3383
TACHYON Clean
Emsisoft Gen:Variant.Ser.Zusy.3383 (B)
Comodo Clean
F-Secure Clean
DrWeb Trojan.Siggen14.54063
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Artemis
FireEye Generic.mg.e3e9e202fbe8ddff
Sophos Generic ML PUA (PUA)
Ikarus Clean
GData Gen:Variant.Ser.Zusy.3383
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Trojan.Win32.Banker.dd!s1
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan-Banker.Win32.ClipBanker.gen
Microsoft Trojan:Win32/ClipBanker.RT!MTB
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis Clean
McAfee GenericRXPP-FR!E3E9E202FBE8
MAX malware (ai score=81)
VBA32 BScope.Trojan.Fuery
Malwarebytes Trojan.BitCoinMiner
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.Generic@ML.97 (RDMK:eICIXZzZ5AdhJVE7p72/Tg)
Yandex Clean
SentinelOne Static AI - Suspicious PE
eGambit Unsafe.AI_Score_99%
Fortinet W32/GenKryptik.FFKQ!tr
AVG Win32:CrypterX-gen [Trj]
Avast Win32:CrypterX-gen [Trj]
CrowdStrike Clean
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.