Static | ZeroBOX

PE Compile Time

2020-08-22 18:28:49

PDB Path

C:\hebat10 jamuzocixu.pdb

PE Imphash

493d9235e00e760cd832c2d6518be9c0

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0001d410 0x0001d600 6.28830839255
.rdata 0x0001f000 0x00008996 0x00008a00 4.72866213292
.data 0x00028000 0x0005ea5c 0x00050c00 7.97553748838
.rsrc 0x00087000 0x00007200 0x00006200 5.64165512313
.reloc 0x0008f000 0x00003938 0x00003a00 3.81886440967

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x0008ccc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x0008ccc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x0008ccc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x0008ccc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x0008ccc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x0008ccc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x0008ccc0 0x00000468 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ACCELERATOR 0x0008d190 0x00000070 LANG_SERBIAN SUBLANG_ARABIC_MOROCCO data
RT_GROUP_ICON 0x0008d128 0x00000068 LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library KERNEL32.dll:
0x41f000 GetThreadContext
0x41f008 GetNativeSystemInfo
0x41f010 CopyFileExW
0x41f014 TlsGetValue
0x41f018 GetStringTypeA
0x41f01c CallNamedPipeA
0x41f020 HeapAlloc
0x41f024 SetWaitableTimer
0x41f034 GlobalLock
0x41f03c GetProfileStringW
0x41f040 GetProfileSectionA
0x41f048 GetModuleHandleW
0x41f050 ReadConsoleW
0x41f058 SetCommState
0x41f05c GetCommandLineA
0x41f068 LoadLibraryW
0x41f06c TerminateThread
0x41f074 VerifyVersionInfoA
0x41f07c IsDBCSLeadByte
0x41f080 GetSystemDirectoryA
0x41f084 lstrlenW
0x41f08c DeactivateActCtx
0x41f090 LCMapStringA
0x41f098 CreateDirectoryA
0x41f09c InterlockedExchange
0x41f0a0 GetStartupInfoA
0x41f0a4 SetThreadLocale
0x41f0a8 GetCPInfoExW
0x41f0ac GetLastError
0x41f0b0 GetProcAddress
0x41f0b4 SetStdHandle
0x41f0c4 LoadLibraryA
0x41f0c8 LocalAlloc
0x41f0cc FindAtomA
0x41f0d0 GetOEMCP
0x41f0d4 Process32NextW
0x41f0d8 WriteProfileStringA
0x41f0dc GetThreadPriority
0x41f0e0 HeapSetInformation
0x41f0e8 FindNextFileW
0x41f0f0 GetCurrentThreadId
0x41f0f4 LocalSize
0x41f0f8 UnregisterWaitEx
0x41f0fc GetSystemTime
0x41f100 HeapValidate
0x41f104 IsBadReadPtr
0x41f108 RaiseException
0x41f10c TerminateProcess
0x41f110 GetCurrentProcess
0x41f11c IsDebuggerPresent
0x41f120 GetModuleFileNameW
0x41f124 RtlUnwind
0x41f128 GetACP
0x41f12c GetCPInfo
0x41f130 IsValidCodePage
0x41f134 TlsAlloc
0x41f138 TlsSetValue
0x41f13c TlsFree
0x41f140 SetLastError
0x41f150 GetTickCount
0x41f154 GetCurrentProcessId
0x41f15c Sleep
0x41f160 ExitProcess
0x41f164 GetModuleFileNameA
0x41f16c WideCharToMultiByte
0x41f174 SetHandleCount
0x41f178 GetStdHandle
0x41f17c GetFileType
0x41f180 HeapDestroy
0x41f184 HeapCreate
0x41f188 HeapFree
0x41f18c VirtualFree
0x41f190 WriteFile
0x41f194 HeapSize
0x41f198 HeapReAlloc
0x41f19c VirtualAlloc
0x41f1a0 SetFilePointer
0x41f1a4 GetConsoleCP
0x41f1a8 GetConsoleMode
0x41f1ac DebugBreak
0x41f1b0 OutputDebugStringA
0x41f1b4 WriteConsoleW
0x41f1b8 OutputDebugStringW
0x41f1bc MultiByteToWideChar
0x41f1c0 GetStringTypeW
0x41f1c4 GetLocaleInfoA
0x41f1c8 LCMapStringW
0x41f1d0 WriteConsoleA
0x41f1d4 GetConsoleOutputCP
0x41f1d8 CreateFileA
0x41f1dc CloseHandle
0x41f1e0 FlushFileBuffers
Library WINHTTP.dll:
0x41f1e8 WinHttpQueryOption

!This program cannot be run in DOS mode.
`.rdata
@.data
@.reloc
jNhx&B
jNhx&B
jOhx&B
jOhx&B
jZhx&B
jDhP'B
jDhP'B
jEhP'B
jEhP'B
jPhP'B
jphP'B
jphP'B
jxhP'B
jxhP'B
j.hx(B
j:hD(B
jJh(*B
jJh(*B
j]h(*B
j]h(*B
j{h(*B
j{h(*B
j7h 8B
j7h 8B
j=h 8B
j=h 8B
j>h 8B
j>h 8B
u!hh9B
jh(DB
jh(DB
j+h(DB
j>h(DB
j>h(DB
PPPPPPPP
PPPPPPPP
j h8EB
j h8EB
j*h8EB
j*h8EB
URPQQh
u!h4&B
jGhpNB
jfhxUB
jfhxUB
jghxUB
jghxUB
jihxUB
jihxUB
jjhxUB
jjhxUB
j h8EB
j h8EB
j*h8EB
j*h8EB
jfhxUB
jfhxUB
jghxUB
jghxUB
jihxUB
jihxUB
jjhxUB
jjhxUB
;t$,v-
UQPXY]Y[
u!hh9B
7uehH_B
uBhh]B
bad allocation
Unknown exception
f:\dd\vctools\crt_bld\self_x86\crt\src\onexit.c
Client
Ignore
Normal
Error: memory allocation: bad memory block type.
Invalid allocation size: %Iu bytes.
Client hook allocation failure.
Client hook allocation failure at file %hs line %d.
Error: possible heap corruption at or near 0x%p
The Block at 0x%p was allocated by aligned routines, use _aligned_realloc()
Error: memory allocation: bad memory block type.
Memory allocated at %hs(%d).
Invalid allocation size: %Iu bytes.
Memory allocated at %hs(%d).
Client hook re-allocation failure.
Client hook re-allocation failure at file %hs line %d.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
Memory allocated at %hs(%d).
Client hook free failure.
The Block at 0x%p was allocated by aligned routines, use _aligned_free()
%hs located at 0x%p is %Iu bytes long.
%hs located at 0x%p is %Iu bytes long.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
Memory allocated at %hs(%d).
DAMAGED
_heapchk fails with unknown return value!
_heapchk fails with _HEAPBADPTR.
_heapchk fails with _HEAPBADEND.
_heapchk fails with _HEAPBADNODE.
_heapchk fails with _HEAPBADBEGIN.
Bad memory block found at 0x%p.
Bad memory block found at 0x%p.
Memory allocated at %hs(%d).
Object dump complete.
crt block at 0x%p, subtype %x, %Iu bytes long.
normal block at 0x%p, %Iu bytes long.
client block at 0x%p, subtype %x, %Iu bytes long.
{%ld}
%hs(%d) :
#File Error#(%d) :
Dumping objects ->
Data: <%s> %s
Detected memory leaks!
(null)
`h````
xpxxxx
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
f:\dd\vctools\crt_bld\self_x86\crt\src\mbctype.c
EncodePointer
DecodePointer
f:\dd\vctools\crt_bld\self_x86\crt\src\tidtable.c
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
f:\dd\vctools\crt_bld\self_x86\crt\src\mlock.c
CorExitProcess
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
f:\dd\vctools\crt_bld\self_x86\crt\src\stdargv.c
f:\dd\vctools\crt_bld\self_x86\crt\src\a_env.c
f:\dd\vctools\crt_bld\self_x86\crt\src\ioinit.c
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library without using a manifest.
This is an unsupported way to load Visual C++ DLLs. You need to modify your application to build with a manifest.
For more information, see the "Visual C++ Libraries as Shared Side-by-Side Assemblies" topic in the product documentation.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
Assertion Failed
Warning
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
HeapQueryInformation
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_file.c
%s(%d) : %s
Assertion failed!
Assertion failed:
, Line
<file unknown>
Second Chance Assertion Failed: File
_CrtDbgReport: String too long or Invalid characters in String
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
`h`hhh
xppwpp
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
bad exception
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetUserObjectInformationA
MessageBoxA
USER32.DLL
Unknown Runtime Check Error
Stack memory around _alloca was corrupted
A local variable was used before it was initialized
Stack memory was corrupted
A cast to a smaller data type has caused a loss of data. If this was intentional, you should mask the source of the cast with the appropriate bitmask. For example:
char c = (i & 0xFF);
Changing the code in this way will not affect the quality of the resulting optimized code.
The value of ESP was not properly saved across a function call. This is usually a result of calling a function declared with one calling convention with a function pointer declared with a different calling convention.
Stack around the variable '
' was corrupted.
The variable '
' is being used without being initialized.
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
f:\dd\vctools\crt_bld\self_x86\crt\src\convrtcp.c
CONOUT$
MSPDB80.DLL
Stack around _alloca corrupted
Local variable used before initialization
Stack memory corruption
Cast to smaller type causing loss of data
Stack pointer corruption
bad allocation
Siwenuy wukuyikig vagoyod
safogeneyubaxuvekirabagikidi
gobokitoxocayuwuticujupareraj
gutipalutagiwerihivunevohufituseni
culevuyocezodayurazesif
minucoxowif
totuzuticiyabajovolivomepaha
pipeyawiyowutuvasufiwirujudo
podukixunubesagobibecikexinepe xadawusafurepojisogavakayuhur rucatupisubohehupuladula
xebumowavoyewapanedut
C:\hebat10 jamuzocixu.pdb
GetThreadContext
DosDateTimeToFileTime
GetNativeSystemInfo
FindFirstChangeNotificationW
CopyFileExW
TlsGetValue
GetStringTypeA
CallNamedPipeA
HeapAlloc
SetWaitableTimer
InterlockedIncrement
InterlockedDecrement
GetNamedPipeHandleStateA
GlobalLock
SetHandleInformation
GetProfileStringW
GetProfileSectionA
FreeEnvironmentStringsA
GetModuleHandleW
GetPrivateProfileStringW
ReadConsoleW
GetCompressedFileSizeW
SetCommState
GetCommandLineA
SetProcessPriorityBoost
GetVolumeInformationA
LoadLibraryW
TerminateThread
GetSystemWindowsDirectoryA
VerifyVersionInfoA
EnumResourceLanguagesA
IsDBCSLeadByte
GetSystemDirectoryA
lstrlenW
WritePrivateProfileStringW
DeactivateActCtx
LCMapStringA
GetPrivateProfileIntW
CreateDirectoryA
InterlockedExchange
GetStartupInfoA
SetThreadLocale
GetCPInfoExW
GetLastError
GetProcAddress
SetStdHandle
EnterCriticalSection
CreateMemoryResourceNotification
DisableThreadLibraryCalls
LoadLibraryA
LocalAlloc
FindAtomA
GetOEMCP
Process32NextW
WriteProfileStringA
GetThreadPriority
HeapSetInformation
FreeEnvironmentStringsW
FindNextFileW
GetCurrentDirectoryA
GetCurrentThreadId
LocalSize
UnregisterWaitEx
GetSystemTime
KERNEL32.dll
WinHttpQueryOption
WINHTTP.dll
HeapValidate
IsBadReadPtr
RaiseException
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetModuleFileNameW
RtlUnwind
GetACP
GetCPInfo
IsValidCodePage
TlsAlloc
TlsSetValue
TlsFree
SetLastError
DeleteCriticalSection
LeaveCriticalSection
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
ExitProcess
GetModuleFileNameA
GetEnvironmentStrings
WideCharToMultiByte
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
GetFileType
HeapDestroy
HeapCreate
HeapFree
VirtualFree
WriteFile
HeapSize
HeapReAlloc
VirtualAlloc
SetFilePointer
GetConsoleCP
GetConsoleMode
DebugBreak
OutputDebugStringA
WriteConsoleW
OutputDebugStringW
MultiByteToWideChar
GetStringTypeW
GetLocaleInfoA
LCMapStringW
InitializeCriticalSectionAndSpinCount
WriteConsoleA
GetConsoleOutputCP
CreateFileA
CloseHandle
FlushFileBuffers
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
zQWK,&
I@!zjXx
X3iWzfe
$}F&Zv
Q)-7M0
Vu^MiC
*6kC<0H
$Co>-imZ9
_edv&I
=TO)Sv
pJ|[ %
OWz<o
[Aico_}vXi
KeUb(_
RLEEG5
tYYF0U
;EI(;q
)o7kF[t>N
_]&LWB
3W[Ud::
!|VVCJ6
$tHw]q
|9\9_,,
al%@I[
>zCt>K
i[KI)R
AHH@;H
N9[*7U
W2wX;4I
|NE{JhpfAd
c_n@_f0
N*kYoZ9.j
5)N#~M
+o8,!V@
*jeD(L
Ezd.of
{\7Xp=T
6/NS{2
-kn8
oBuW(C {
]{U~Q$
UqO"%.'
uWh@;9
(%&j0Gk
yrH"&m
OfZ&_S,FW
[|$w;WE
^Zj}]3
EiqMA$^
B?Iz'n
k4I|gO
S\+-rk
^W>],{U
3\[eG%f
eD.Ra4
4JvOFx<
p}QdYJ
R->2aI
Pn}M7ms
^E~#Y;
v!iWFy
i6E{3+M
buh2MQU
[qc')[
l?C-Lc8E[
RW!U. Z[
`&ydhE
=l=s&wE
!WIptK0.[
i6q{N-
}N4lU7
Tx^IkM
7e+8z'
z3x,U+
+8w;Z4
2oR}mhT
2&Ohi=
jp=TkX
HoY78H
1V{w6y
@Jst5M
;OceI;lp
rRN F}
m\l#Rd
:agtlRD
ztK"uW
H!PY}Z
n~^y4L
|4tL/'
<!7z./
BE;w|V
VN&\HZm
yQlYL:r
;]P%q!K&1
D}}d+t
kv|]sR0
KJ8@_}d
d>\j8^T
*piE,K
%1Lg5p
mug/qr
E42bq{
Yw$(ht$
#uZ~pz
9u@qq[
z;I\yf_
^<}dhC
_~1[x7
Xv\/D)k
!w*3h~
:H_,3E
2T27-K
TT4{[c
S -;@n-
3g2c<^
!ISz9Q
l@tRG$
47Pu2eMK
ou/c./
,tS18Z
RFJC@6
c<t$\u
%f(hJ/;
Qi0Xg>2bLv
)Z!)A1
!GmZCU
-c}B|e
T@D?j.
}S.n65
4:_65L.
(nmm#^
In4|1T
c@uVQ>
.C%tSqy
+D}Gf"
?oBV_
/e(KP5
ElSnX
$!VMV-%
3)<1n&
agt=]I~
h<~-T"4
QivQ07V
"bOiX!Yt"
lE'_%6z
ANz6)&{
i:6HAj
f5A7]!`
HSTA4y
O)b\zD
-CzXug
C@bmx<
/PtB[;
'$V8\v
"~\Tv$
CoC{!#
J4s~gI
vE(xAi
"3:>,|
"-|ZSP
3N2PN:l
ET-$"m
FPe".y
rYF%/R
CeAD&+
TJRlR%E
R45Z<6
(R0CI[Y
m/wT<q
6U^hGI}
Kl<s5%
S#<:&7
$jXT|t
'V.-D6
xR}/_t
z";4;,
..ruO#
`d>[$z
lWdvO*)h
u5QQc
Ke9Ika%
bF(;y,
ZjU1q7
fhSmYE
MO;YXt
RZ>/df
hS[;6n
sb]>34"
^\kW2K\t
C!)9O.x
,R+qjYn7
vcbP>(%
wND#s_
e`HB6%
J9zb9{x
`%M>7K
8AS%x+
YInJqq
eiU,J*
E1X~q
^w8$@G
!m]Zs;
wVDr7>
hqOYc{
RZ=.eP
-cpmb4
x{J"4#t
ck?JFoj
^5Zl=\
k\L;6U!
6vJ;cz
=o$sjc
xDo3fK5
mWQSIG*
?j8gMY"
ud^]__
inVs)EQ
N^Zsy7
<@#s J
$EQMQQ;
]'!9rQ|
VvF3oW
<C^I;
R0$GSq
qO0@RTcx&OK
Kb_#A#
#)IV1^
m[e-4&
k0f,4D
Rx#Iu0;!
`<2w?6
-*VU&L
5l6!v;
<Il}iQ
=9.%;R
<]spgK
7FqQ[0
4RrXlQ
<4eJPl
-CJLk<
fC`A|K
= xZM$
Q1KgjC7h"
SZ=t`p
yM+@kD
{Q?Ow$+
Q|`X%Z
Al5?sR{
|3o)]*-g
8T/0I{
B=QrRn
7sO&Z%B
ceURr6
s66~/2
p(3.V[J
ZHEkva
s!tcHm
|YuS(I
rR}A:{X
7>nsuz
6{Ich(
j!2,;q
m*c+OZ
RMr0ZCPyG
4rxoM
|M#,`]
>+wTRA
Ioqqje`t
hx!Cd}
y'6hAG~
$-NM&\m
Voku#K/x`
>!DJGS`G
k)b.0%
^eb9O-S
VY#vUa
G+$M#:
9Idk8f
%+>#zRb
:"Tq4V
y,dYT{
>wA+O{@
.[>BAnLD
/)ne(<
{JjO"07
G@*Rq
6.a-z=E"
'Ui/H&
]6w&aE]|
Qoy"?X
%KncT>
&9)TEY
mle~F2
E<1 `HT_
51#-QZ
6q#Gy+
QG`kL#:
Q8CV?
T,p37Dd
y!hFHGwz
F,NZj<
!.oFY:
&:?Q.W
}U ,r:n
/29:=a
OL?MdRN
*hc-_yZ
G7z{P ?z
nS)/'}m
<.x\p"
|m[|jW
k:~hSk
nFyCm]G
PA?Es[Y
]&P}&]
i.jn?v.
Tx"/9d
86;&5y
3p"_Tk
_O;hkD8
yGW;fc
Eb`<-*
"|#ha9#
v=5!"b
<+IGa.y
5p 1",
Yn(dh;
VSk 7p
{<uR[z
1Z5;U=
ng]kEE
|,/aztM
qL6O9oX
0ga 5Dn-
a0flLOy
!3t.>b
+p4/Dx
E_i {&
4m|:\U
Y^_`A>
>LMLad
bSqoQ
Xb BMc
k{mz^8
/S:rri
d^~/
An#>z&c
r5/ii14
}{U,SO
4GL_sTt
, l#`C
p1NZhd
a{,Hd0e
o}IU+#
V5nyp"
$31G^h
-Q9ZcRS
*f-|C!I'p
*&oVye
[\?po*`u
1z:{EW
(d3Jmguk
"wuLH!
J0FxjFz
IW|-w}
9lsV7C
}km8"}
8^\hzt
$}:'D8:
@!mHj=Ueqc
78|^,_
YBXpk\
9F"?3l
*N<T2`4
sTbM5ZK
XDxh:{
""1AMWo
bg6g{K
<A&MRl|
v&ac:.
0){|)$
Wln<[(
P@sx;
KH|p4|T]
<L!-RX
HQ/'q2
4~P=t6
,2i6*D
?r]Uiz
'FqH)+N%
.u'.<Cc
&OeH^K
GscyH;a#0
[o-@hb
4Zho;"
~8m&Io\
@|=x^C
CQ9S<Rm
*Zn3!2
dc00}5
LHU}ev
Vsw:h_
Eea`W}`4
XB)Gm0
F+hn=5
d4DJqF(r
N.qq,W
t(07i*
hDW-X[C
~j+JN"V
uH8xO
|Cm-_sC
:=$>Aw
n)Z<^j
Ag`xNOQ
?4id[
v!,YQ-(
-r*a<21
,L#ToNR
dH2A0?
D+#C@
0X~FBX
rVBOT-C
?*xZXq~
k5c=c@;
BvXP&
`ud"Q
X\e|jTt>"
"0Nr1o\
7/c32 0;O0Q
a6*@n.
@8`:}5?=
)GT",W
)orDQP,T
7&+,X
)P:*3%
4QF(<p
zbmil}{
s%.cE@
IUR:/?
Jsu+"a&/
B%mV+Qb
n'@8o"_Ft!J
QI#hI)
hYQ+(}r
aY*m1x
xLGeH}t8
?;,]xkn
+:5NgAQ
3<2Lk1W
jW@^Ui
]Z6n7
)5{Ypi
e[0#43
c>{6oO
^x{Qq%
unU:R`Y
Q&u@uf
7sEV(x6
3:|yI2X}N
jef}Om
L=|+@,
v=^9>z#
XLe)v4E
n%vyTB
{3-uam
iA"(6q
TW_j_f@l
[Of!i
.N-q)-
bNcKD
.i4tv0n
XjX?L0o
\71=Ae
!~YzD(gu
j,.w$v
5i-_Mc7
a`eK.QP/V@
lJ(K+O
EKcH-ky%E
HqEJt1
r e1I9
KDd(9w
/$`A>L
*L9<CX
>5+k!fpwG
G|*3{~7
Z2T?2D
>Jr).`
YmP+7E
%zVw1)
CT&)Z
WbE[+I
qN~#ee1
KXe?G4]]
<S-~c_
ht_f.i
Njj&yJ
jpwxY5
:<Qj_uD
~lr2jj1
R6j^M(u
Vod.',
QMyPP6
q\B]yYt
uzfii_
[Smfy
x8abK}1
gNcpED
e{NH;9_
S K[6g
#W>>Da
1}Xnz
nqy=l8
fD4'kI!
U^un~f
OpDFW=
MN-a9}
&(ede':F
_=`}u=&
5vlqbv
Yc!1kk
umsRV'E
P]hJhQ
q]m}mQ}l?
O~il`U
L9Sd^9
2+~GnE
=bH1 I
bR-80R
YHfL-C
5^@ygX
7&A90to
YFn_@|,
;$)Iw
g^<c5`F
&~9C.X
M1#<#G$
R=^}Z
H1qlpnYE
DkGBqA3|
EFaqjc!
[MtM=q
BX_K)h
FmymNhyq
lXU|,F
&DU8Y&
&q3Jpl
b;*(6[
a8m5.wt
%Hi:!J
&Z5;4z
@*qr~,.
B@ 1`_WuA
0a{sQJ
qhB(nJ
PrxX>
q!W6VBj
bw|TDE
> Wh&V
VLo/Tv
Ds~x"l
|(]|#llT
4d\-O*
NS1E|
{D4zIW
5CQ>:TJ
RmRb]V
W[EYQ/:
UN[pc`
(F0K,D
{v*;s,w(
oDFc;y
D/P~RB
&,3p<x
j!Ql^m
WJXEK;#g!
G{Mx@<Ujl<
}OA[%N
*?lDc`
y,`]^
hO*vB\
2UB9]|D
$L!h{$
McaBG<$
&u&(hX
l*}l|8}
nVL(-_
^%PNV`~
2jF+B,#
PHzZe7
`E)=GB~
Xq\oua
{2}5H!
jg|EVDo
Hrm2 S
IVVO!;
YY=\R"V7
)<^W)]
PXd=PJ
{l<s--
hhhhhhhhhhhhhhhhh
xxhxxhxxxxxxxxxxx
=========
=S==S=S
SSSSSSS
jxxxxxxxDx
xgggggggg
$.....}}}
]""""""]
rrrrrrrrrrrrrrrrrrr
rrrrrrrrL
Wrrrrrrrr
rrrrrrrr
XXXXXpkrrrrrrrr
rrrrrrr
rrrrrr
rrrrrrrrrrr
#9*rrrrrrrrrrrr
64rrrrrrrrrrrrrr
*rrrrrrrrrrrrrr
rrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
&o~{7,{|{$|
&9q}9 }
'B^S[
'$:($g~
'?u|K?
,DlsL&~
ez~)Z~
.W~`#I}<
);N3 =cE"C^^#R
%w~~5`
*Lu}1,
.Av~O(z
%Ml|30
4:t~M)
$3[}J*{
';Rk;/
+IawI(~
-/]hJ-
&7HgI/
+R~F!Mzl.Kz
~*_}~4g
*f~{o}
5On|='
0=YxYr
-^}~/]
07N{bc~
&B_`R
&;C78[qZ/Z
2p|}=Y|sOo
:]w}Bq
010:0d0i0n0
2<2A2F2
5$6)6.6):::R:c:8;=;O;
233;3D3T3`3v3
4S5^5g5o5x5
9'939<9_9y9
9R:o:t:
;!<*<6<A<I<R<]<f<n<{<
> >1>9>N>h>m>
?+?7?@?Z?z?
0"1(1G1
333=3I3c3t3
4>4C4H4^4g4p4
7"7'7U7
9H:L:P:T:h:m:
;4;K;a;g;t;
;1<8<K<R<h<m<
374V4p4
81868;8
9$9j9v9
9.:3:8:
389<9@9D9H9L9P9T9X9\9`9d9h9l9
> ?0?5?:???
+070V0p0|0
161R1^1n1z1
2F2K2P2U2|2!3*3T3Y3^3
4+50555r5~5
8;8@8E8
:;:@:E:
:A;J;t;y;~;
<9<><C<
<!=*=T=Y=^=
00050:0?4
7(7D7`7|7
868R8n8
8)9A9X9]9o9
;c;l;x=
1$262A2Y2b2o2
;,;E;g>z>
'070>0M0b0i0
1 1$1*10161<1A1F1L1Q1W1`1g1n1
2;2B2n2
3#383M3W3e3o3
4H5M5_5>6{6
8 8-8E8m8z8
9":):;:B:}:>;F;^;|;
?$?h?s?
030@0E0S0[0s0
22)272<2C2M2Q2[2j2n2t2{2
9&:J:Y:n:s:x:
;%;-;:;F;
:0J0k0
011R1t1
292?2S2*3=3Y3n3s3{3
646;6N6d6k6~6
8 8?8S8^8w8
9O9T9Y9`9
;*<O<s<z<
?2?B?N?i?y?
2!3(3;3B3s3
4X4]4o4
6G7N7z7
8(9-9?9[9
::%:+:1:;:E:i:r:{:x?
0&0=0G0M0X0_0e0n0t0
6"6*616J6P6Y6^6g6w6~6
3484?4G4L4P4T4}4
4.54585<5@5
6+6]6d6h6l6p6t6x6|6
687=7O7
868N8W8
:8:V:x:}:
:2;7;<;b;z;
<2=7=<=b=
?0?G?S?y?
8!9&9+9=9J9P9p9
;!;+;[;
;G<i<r<
3!3<3I3N3T3a3f3l3
3(4-42474j4v4
5C5H5M5R5
5#6(6-626]6b6g6
797B7t7
9%979A9_9d9i9
;";';O;U;p;};
<R<W<\<a<
<$=5=:=?=D=m=r=w=|=
>M>R>W>\>
?!?&?+?N?W?
1S1Z1i1
2J2Q2[2m2w2
3I3R3[3c3x3}3
5L6P6T6X6\6`6
6.7:7@7U7_7
:5:::?:c:l:
:A;J;t;y;~;
<=<B<G<
=*=3=]=b=g=
0F0K0P0
2:2?2D2
3<3A3F3
92979<9
0014181<1@1D1H1L1P1T1X1\1`1d1|1
;G;P;z;
= =*=6=A=K=T=
&0/0Y0^0c0
111:1d1i1n1
2?2H2r2w2|2
1(4-4?485=5O5
7&838H8M8_8
:':3:?:D:V:[:a:g:
;;+;6;r;{;-<
I0X0]0o0
1%283=3O3h3Y4i4
6N6Z6`6u6
7#7)747>7P7
=$=(=,=0=4=8=<=@=
1.1F1R1
3+3L3S3]3f3q3
3m4v4A5
5B6x6}6
77a7o7~7
:3:O:y:
0(101m1y1
3&3P3U3Z3
8;:D;P;};
;6<B<o<t<y<
0A0j0s0
0!1(1U1~1
2*3/343
4B5N5{5
9=9F9p9u9z9
:5:::?:~:
0#0,0\0m0
282=2O2|2
3H4M4_4
545=5g5l5q5
?%?U?Z?_?
7T7X7\7`7d7h7l7p7t7x7|7
:d:p:3;?;
=Q=t=}=
>8>=>B>{>
> ?7?m?
4$4-424K4R4Y4`4g4n4t4z4
3 3'3.353<3D3L3S3\3c3l3s3{3
4#464<4C4I4Q4Y4c4o4
7*8A8N8[:w:
>%>4>B>H>P>q>
0 0.03080>0D0
1"1,1[1l1t1|1
2$212@2o2z2
2 2$2(2
@2D2H2
5`;d;h;l;p;t;x;|;
< <$<(<,<0<4<8<<<@<D<H<L<P<T<X<\<`<d<h<l<p<t<x<|<
H2L2P2T2X2\2
646D6H6
787X7x7
8 8,8`8
909<9X9x9
:8:X:x:
; ;$;,;@;`;h;l;
<$<0<8<d<h<
=0=L=P=p=
1 202@2P2`2
:$:,:4:@:D:X:`:
< =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
jjjjjjjj
Ajjjjjj
(string != NULL)
sprintf
f:\dd\vctools\crt_bld\self_x86\crt\src\sprintf.c
(format != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\feoferr.c
(stream != NULL)
ibase == 0 || (2 <= ibase && ibase <= 36)
strtoxl
f:\dd\vctools\crt_bld\self_x86\crt\src\strtol.c
nptr != NULL
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgdel.cpp
_BLOCK_TYPE_IS_VALID(pHead->nBlockUse)
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgheap.c
_CrtCheckMemory()
_calloc_dbg_impl
(_HEAP_MAXREQ / nNum) >= nSize
_pFirstBlock == pOldBlock
_pLastBlock == pOldBlock
fRealloc || (!fRealloc && pNewBlock == pOldBlock)
pOldBlock->nLine == IGNORE_LINE && pOldBlock->lRequest == IGNORE_REQ
_CrtIsValidHeapPointer(pUserData)
pUserData != NULL
_pFirstBlock == pHead
_pLastBlock == pHead
pHead->nBlockUse == nBlockUse
pHead->nLine == IGNORE_LINE && pHead->lRequest == IGNORE_REQ
_msize_dbg
_CrtSetDbgFlag
(fNewBits==_CRTDBG_REPORT_FLAG) || ((fNewBits & 0x0ffff & ~(_CRTDBG_ALLOC_MEM_DF | _CRTDBG_DELAY_FREE_MEM_DF | _CRTDBG_CHECK_ALWAYS_DF | _CRTDBG_CHECK_CRT_DF | _CRTDBG_LEAK_CHECK_DF) ) == 0)
_CrtMemCheckpoint
state != NULL
(*_errno())
_printMemBlockData
("inconsistent IOB fields", stream->_ptr - stream->_base >= 0)
f:\dd\vctools\crt_bld\self_x86\crt\src\_flsbuf.c
str != NULL
(null)
("'n' format specifier disabled", 0)
(ch != _T('\0'))
( (_Stream->_flag & _IOSTRG) || ( fn = _fileno(_Stream), ( (_textmode_safe(fn) == __IOINFO_TM_ANSI) && !_tm_unicode_safe(fn))))
_output_l
f:\dd\vctools\crt_bld\self_x86\crt\src\output.c
Assertion Failed
Warning
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrpt.c
Microsoft Visual C++ Debug Library
_CrtDbgReport: String too long or IO Error
wcscpy_s(szOutMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
Debug %s!
Program: %s%s%s%s%s%s%s%s%s%s%s%s
(Press Retry to debug the application)
Module:
File:
Line:
Expression:
For information on how your program can cause an assertion
failure, see the Visual C++ documentation on asserts.
memcpy_s(szShortProgName, sizeof(TCHAR) * (260 - (szShortProgName - szExeName)), dotdotdot, sizeof(TCHAR) * 3)
<program name unknown>
wcscpy_s(szExeName, 260, L"<program name unknown>")
__crtMessageWindowW
f:\dd\vctools\crt_bld\self_x86\crt\src\vsprintf.c
(count == 0) || (string != NULL)
_vsnprintf_helper
("Buffer too small", 0)
string != NULL && sizeInBytes > 0
_vsprintf_s_l
format != NULL
_vsnprintf_s_l
(L"Buffer is too small" && 0)
Buffer is too small
(((_Src))) != NULL
strcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscpy_s.inl
((_Dst)) != NULL && ((_SizeInBytes)) > 0
strtoxq
f:\dd\vctools\crt_bld\self_x86\crt\src\strtoq.c
f:\dd\vctools\crt_bld\self_x86\crt\src\setlocal.c
((ptloci->lc_category[category].wlocale != NULL) && (ptloci->lc_category[category].wrefcount != NULL)) || ((ptloci->lc_category[category].wlocale == NULL) && (ptloci->lc_category[category].wrefcount == NULL))
f:\dd\vctools\crt_bld\self_x86\crt\src\isctype.c
(unsigned)(c + 1) <= 256
KERNEL32.DLL
f:\dd\vctools\crt_bld\self_x86\crt\prebuild\eh\typname.cpp
pNode->next != NULL
mscoree.dll
strcpy_s(*env, cchars, p)
_setenvp
f:\dd\vctools\crt_bld\self_x86\crt\src\stdenvp.c
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), rterrs[tblindx].rterrtxt)
strcat_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "\n\n")
strncpy_s(pch, progname_size - (pch - progname), "...", 3)
strcpy_s(progname, progname_size, "<program name unknown>")
strcpy_s(outmsg, (sizeof(outmsg) / sizeof(outmsg[0])), "Runtime Error!\n\nProgram: ")
_NMSG_WRITE
f:\dd\vctools\crt_bld\self_x86\crt\src\crt0msg.c
strcpy_s(szOutMessage, 4096, "_CrtDbgReport: String too long or IO Error")
strcpy_s(szExeName, 260, "<program name unknown>")
__crtMessageWindowA
_expand_base
f:\dd\vctools\crt_bld\self_x86\crt\src\expand.c
pBlock != NULL
kernel32.dll
("Invalid file descriptor. File possibly closed by a different thread",0)
(_osfile(fh) & FOPEN)
_lseeki64
f:\dd\vctools\crt_bld\self_x86\crt\src\lseeki64.c
(fh >= 0 && (unsigned)fh < (unsigned)_nhandle)
_write
f:\dd\vctools\crt_bld\self_x86\crt\src\write.c
isleadbyte(_dbcsBuffer(fh))
((cnt & 1) == 0)
_write_nolock
(buf != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\_getbuf.c
_isatty
f:\dd\vctools\crt_bld\self_x86\crt\src\isatty.c
_fileno
f:\dd\vctools\crt_bld\self_x86\crt\src\fileno.c
sizeInBytes > 0
_wctomb_s_l
f:\dd\vctools\crt_bld\self_x86\crt\src\wctomb.c
sizeInBytes <= INT_MAX
f:\dd\vctools\crt_bld\self_x86\crt\src\dbgrptt.c
_CrtDbgReport: String too long or Invalid characters in String
wcscpy_s(szOutMessage2, 4096, L"_CrtDbgReport: String too long or Invalid characters in String")
e = mbstowcs_s(&ret, szOutMessage2, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage, 4096, szLineMessage)
strcat_s(szLineMessage, 4096, "\n")
strcat_s(szLineMessage, 4096, "\r")
strcat_s(szLineMessage, 4096, szUserMessage)
strcpy_s(szLineMessage, 4096, szFormat ? "Assertion failed: " : "Assertion failed!")
strcpy_s(szUserMessage, 4096, "_CrtDbgReport: String too long or IO Error")
_itoa_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportA
wcstombs_s(&ret, szaOutMessage, 4096, szOutMessage, ((size_t)-1))
strcpy_s(szOutMessage2, 4096, "_CrtDbgReport: String too long or Invalid characters in String")
wcstombs_s(((void *)0), szOutMessage2, 4096, szOutMessage, ((size_t)-1))
wcscpy_s(szOutMessage, 4096, szLineMessage)
%s(%d) : %s
wcscat_s(szLineMessage, 4096, L"\n")
wcscat_s(szLineMessage, 4096, L"\r")
wcscat_s(szLineMessage, 4096, szUserMessage)
wcscpy_s(szLineMessage, 4096, szFormat ? L"Assertion failed: " : L"Assertion failed!")
Assertion failed!
Assertion failed:
wcscpy_s(szUserMessage, 4096, L"_CrtDbgReport: String too long or IO Error")
, Line
<file unknown>
Second Chance Assertion Failed: File
_itow_s(nLine, szLineMessage, 4096, 10)
_VCrtDbgReportW
f:\dd\vctools\crt_bld\self_x86\crt\src\winsig.c
("Invalid signal or error", 0)
WUSER32.DLL
sizeInBytes >= count
src != NULL
memcpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\memcpy_s.c
dst != NULL
wcscpy_s
((_Dst)) != NULL && ((_SizeInWords)) > 0
((state == ST_NORMAL) || (state == ST_TYPE))
("Incorrect format specifier", 0)
_output_s_l
nf:\dd\vctools\crt_bld\self_x86\crt\src\malloc.h
("Corrupted pointer passed to _freea", 0)
((((( H
h(((( H
H
strncpy_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcsncpy_s.inl
(L"String is not null terminated" && 0)
String is not null terminated
strcat_s
f:\dd\vctools\crt_bld\self_x86\crt\src\tcscat_s.inl
B_set_error_mode
f:\dd\vctools\crt_bld\self_x86\crt\src\errmode.c
("Invalid error_mode", 0)
_get_osfhandle
f:\dd\vctools\crt_bld\self_x86\crt\src\osfinfo.c
(str != NULL)
f:\dd\vctools\crt_bld\self_x86\crt\src\mbtowc.c
_loc_update.GetLocaleT()->locinfo->mb_cur_max == 1 || _loc_update.GetLocaleT()->locinfo->mb_cur_max == 2
_mbstowcs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\mbstowcs.c
s != NULL
retsize <= sizeInWords
bufferSize <= INT_MAX
_mbstowcs_s_l
(pwcs == NULL && sizeInWords == 0) || (pwcs != NULL && sizeInWords > 0)
length < sizeInTChars
2 <= radix && radix <= 36
sizeInTChars > (size_t)(is_neg ? 2 : 1)
sizeInTChars > 0
xtoa_s
f:\dd\vctools\crt_bld\self_x86\crt\src\xtoa.c
buf != NULL
_wcstombs_l_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\wcstombs.c
pwcs != NULL
sizeInBytes > retsize
_wcstombs_s_l
(dst != NULL && sizeInBytes > 0) || (dst == NULL && sizeInBytes == 0)
wcscat_s
_vswprintf_helper
f:\dd\vctools\crt_bld\self_x86\crt\src\vswprint.c
string != NULL && sizeInWords > 0
_vsnwprintf_s_l
xtow_s
Bfclose
f:\dd\vctools\crt_bld\self_x86\crt\src\fclose.c
_fclose_nolock
(_osfile(filedes) & FOPEN)
_commit
f:\dd\vctools\crt_bld\self_x86\crt\src\commit.c
(filedes >= 0 && (unsigned)filedes < (unsigned)_nhandle)
_woutput_s_l
_close
f:\dd\vctools\crt_bld\self_x86\crt\src\close.c
f:\dd\vctools\crt_bld\self_x86\crt\src\_freebuf.c
stream != NULL
Yafonaw yejaruboxinuji woj zihube tuhohot
Hufugub liguced
royojaco
fesovidefodepoxikozahejomiyogulevocotozigohatogamowib
kernel32.dll
dixavefahiramomoruhotibosaganejihopumagowasesoyolizekixajehonavegitamifawejifumoxozisudimejo
kulotumasamotuwaxagimud
vehokurusebubetikoniboyecolayaredagigobelufe
royotetazimiwefovulakubujuhabu zotoredamojukimoyejiliwuyafuyopi hetahefemabekepuvagulefeg
pohebowofetakolijuwuxice fovupokolevaw deyinufiwucedivugitunucewa guvoho tarinemukawediwez
zisunuxa zujuhel cuyijenuradocaniyi
vemivayofojuk tajab
negupesijohoveborokovus
friwucesomaverocanu
xotopifijubidofodira mevawep sofefuxoril honiregomobumutavonezogukimu varidecoleyifabidotexik
fbifubofijatu bipolinagovuvuhizel
makulahezihamofahesofuyoz jikezoheza
wemazinuyo
ranuzokakepayig
bodubec
buvexosugesaregaju
lufuwacimajocegufoharesexer
Antivirus Signature
Bkav W32.AIDetect.malware2
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Clean
FireEye Generic.mg.c226c5dc2b63899b
CAT-QuickHeal Ransom.Stop.Z5
ALYac Clean
Cylance Unsafe
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 00581f861 )
BitDefender Clean
K7GW Trojan ( 00581f861 )
Cybereason malicious.1a3f49
Arcabit Clean
BitDefenderTheta Gen:NN.ZexaF.34142.GuW@aCyyuRdO
Cyren W32/Kryptik.EYC.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Kryptik.HMMX
Baidu Clean
APEX Malicious
Paloalto generic.ml
ClamAV Clean
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Kryptik!1.D975 (CLASSIC)
Ad-Aware Clean
TACHYON Clean
Emsisoft Clean
Comodo Clean
F-Secure Clean
DrWeb Trojan.PWS.Siggen3.3146
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Dropper.hc
CMC Clean
Sophos Mal/Generic-S
SentinelOne Static AI - Malicious PE
Jiangmin Clean
MaxSecure Trojan.Malware.300983.susgen
Avira Clean
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Microsoft Trojan:Win32/Sabsik.FL.A!ml
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
GData Clean
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
McAfee GenericRXAA-AA!C226C5DC2B63
MAX Clean
VBA32 Malware-Cryptor.Azorult.gen
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Trojan.Win32.Krypt
eGambit Unsafe.AI_Score_84%
Fortinet W32/Kryptik.HMMS!tr
Webroot Clean
AVG FileRepMalware
Avast FileRepMalware
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.