Static | ZeroBOX

PE Compile Time

2020-10-07 03:21:47

PDB Path

C:\ceze\direj-nuvewuhehalib\govuwideme\yeyu\wecu91 jovekiyu9.pdb

PE Imphash

1d75207d76f1706c196a0ca92c22f3b0

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0003aa83 0x0003ac00 7.84744293029
.rdata 0x0003c000 0x000069e2 0x00006a00 4.87773797703
.data 0x00043000 0x00009130 0x00001a00 2.93911632795
.hecakip 0x0004d000 0x00000272 0x00000400 0.0
.rsrc 0x0004e000 0x00007670 0x00007800 6.16727167485

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x00054be8 0x0000000e LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x000546f8 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000546f8 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000546f8 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000546f8 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000546f8 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000546f8 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000546f8 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x000546f8 0x00000468 LANG_DIVEHI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_STRING 0x00055290 0x000003de LANG_HUNGARIAN SUBLANG_DEFAULT data
RT_STRING 0x00055290 0x000003de LANG_HUNGARIAN SUBLANG_DEFAULT data
RT_STRING 0x00055290 0x000003de LANG_HUNGARIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x00054b60 0x00000076 LANG_DIVEHI SUBLANG_DEFAULT data
RT_VERSION 0x00054bf8 0x000001b4 LANG_NEUTRAL SUBLANG_NEUTRAL data
None 0x00054bd8 0x0000000a LANG_NEUTRAL SUBLANG_NEUTRAL data

Imports

Library KERNEL32.dll:
0x43c000 HeapReAlloc
0x43c004 FindVolumeClose
0x43c008 HeapAlloc
0x43c00c EndUpdateResourceW
0x43c01c AddConsoleAliasW
0x43c020 SetEvent
0x43c024 SleepEx
0x43c028 GetTickCount
0x43c02c GetProcessHeap
0x43c034 GlobalAlloc
0x43c038 InitAtomTable
0x43c03c FindNextVolumeW
0x43c040 GetTapePosition
0x43c044 WriteConsoleW
0x43c048 GetMailslotInfo
0x43c04c GetModuleFileNameW
0x43c050 CreateActCtxA
0x43c054 GetConsoleOutputCP
0x43c05c GetProcAddress
0x43c060 VirtualAlloc
0x43c068 GetAtomNameA
0x43c06c LoadLibraryA
0x43c070 GetModuleFileNameA
0x43c078 Module32Next
0x43c07c TlsFree
0x43c080 lstrcpyA
0x43c084 CreateFileW
0x43c088 SetEndOfFile
0x43c08c EncodePointer
0x43c090 DecodePointer
0x43c094 GetCommandLineA
0x43c098 HeapSetInformation
0x43c09c GetStartupInfoW
0x43c0a0 RaiseException
0x43c0ac IsDebuggerPresent
0x43c0b0 TerminateProcess
0x43c0b4 GetCurrentProcess
0x43c0b8 GetLastError
0x43c0bc HeapFree
0x43c0c4 TlsAlloc
0x43c0c8 TlsGetValue
0x43c0cc TlsSetValue
0x43c0d4 GetModuleHandleW
0x43c0d8 SetLastError
0x43c0dc GetCurrentThreadId
0x43c0e4 WideCharToMultiByte
0x43c0e8 SetHandleCount
0x43c0ec GetStdHandle
0x43c0f4 GetFileType
0x43c104 ReadFile
0x43c108 RtlUnwind
0x43c10c SetFilePointer
0x43c110 CloseHandle
0x43c114 ExitProcess
0x43c118 WriteFile
0x43c120 HeapCreate
0x43c128 GetCurrentProcessId
0x43c130 GetConsoleCP
0x43c134 GetConsoleMode
0x43c138 GetCPInfo
0x43c13c GetACP
0x43c140 GetOEMCP
0x43c144 IsValidCodePage
0x43c148 Sleep
0x43c14c MultiByteToWideChar
0x43c150 CreateFileA
0x43c154 SetStdHandle
0x43c158 FlushFileBuffers
0x43c15c HeapSize
0x43c160 LoadLibraryW
0x43c164 LCMapStringW
0x43c168 GetStringTypeW
Library USER32.dll:
0x43c170 SetCursorPos

!This program cannot be run in DOS mode.
`.rdata
@.data
.hecakipr
@.rsrc
HHtXHHt
?If90t
f-00f=
Y;=X<D
j@j ^V
<at,<rt"<wt
URPQQh
^SSSSS
tRHtCHt4Ht%HtFHHt
tCHt(Ht
;t$,v-
UQPXY]Y[
tWItHIt9It
t"SS9] u
vL;5$?D
<+t"<-t
+t HHt
PPPPPPPP
PPPPPPPP
RiJFvT
.F0~Luqu
Nz{Qu[(
P1ha{,
d&n)|P
9O^%|ulb
gB:\E[
,c5RPBE+
}+}nxw
{}\w:Aa
VHn~3OUwjm
2w:O6z
w?{Ld;
JSw9~*:
f&\Ryo(
~_!sw)
~]NzQ+.
2l&,"[H
BJh,|E
1K@W/W
\vg3^t,^cbK
\Nw9S=
x6,%>z_Ca
S}E,x
[nX&H<
*'`[Tq
gs0en5
MH+%e{
$MJ!f+'
O"![Vk
\NT$_\?
zWT>6VH
C&^m|rM]
)s!RKM
W). `qa`
X?.|kZ
']R}&%R
*@VqXQ
o2?PuE
O!D5gn~SC
Yh,@TH
hKNRSP
tRBij7
bh&a(h
d8"$Dl
^;,Y~90
U?X-$RO3
*Z}>5p
Ea%v)*
Gf86T2
u?)kL3\
aRfN0H
':A5uG
+n|PQ|}
Q/wDmy
\nU52>
"2?+5H
Q={d9>
8O~Rx`
-gMFkA:KYm
DFvdv8
C7vwG'
z+5(,ec
+NqZM/YT
+418#0Ba
{NsdO(
'TY2?m
|9\>][F
G?!wYb
p|o4SL
=V^t;*
svdP9G
Zey7\_U
[5yll.]
A{2xG
kj,~Pz
^C0}Ef
Y$TR'*I
!:^/HZ
xy+@S0
lCn1~6l
g+/{[G
$z)f,A<
YF1%*c
*}r&d,
BV7uw]
W1KNM}M
x[4I'n8(
0p($)9
'V2A0&
^-E^rS
_WJHu&
{<b"/j
_Z,:&_
^*"8u!
Zdx5wi
Ti5~bM
l#`~oe
rkffC^B
9'(.3m
8ZeM5c
]enili
]C|8FKoV
%]j0,51|m
FUDAk&
t4jgpC
9(7e[o
,;"7lk
n_T(DvT
sfJihF
o x.9X*
!MXnJ
0nYg<,
7),7UqI
j[zM_ O
)jc1oe
g^Y[-P(qOW
C!5WP]
lb]rnx
I%Yhwr
RkB]UE
AX9{oA
.G"l0U
))PrbD.
?[-@ck
`8_\;3r
m7|Q:%B
7)8{V#
RY%uX.
uCwE$Y
j6b_Oa
tM}&TK
v1`hjm
%eUYt)3
03UBT"
a=Ag@x
GL (fFpz
L'Wd0
pAi9Zb
'UvPO{XMR
AU<c</
>kPY"p
q~XrAu
3B]b6k>
xKr'#xm
:>ea#oH8Q
cX;?Ag
~(S`)A
0P]XSG
PL::TKQ
ar%=V(0C
2Xh)5K
wFu&M~
WKH8LI
Z.jsjbQ
4+<vOHh{
&#>+D%
5pAE{K.
oVm]aM
Iu%@E+
#gnh[L
cZv|urA
g~y/;>$C
2L{.4;6
ehQypi1
W6i(o=
6,]'{L
D5DNWQ=
gh}(75d
nwlQ O?
I;4iA+Zo
up:GR+
B^CG#^
-kwGKP
UAZA/Me
)`[%VB
vJoy*
NQtQ<%/k
;Jk0XW
b< rnC
RD}RwT
^+aQl!
GV^i-3
{R5s<bq
Nf"JCA
5@T:Td
8C:?=I
shz%?O
vfT6)u
(ftZK2
T^Cu6cs
1fg/T/o
ZEtd\Q
a[Q=Rx
pPD{%:
)68P(a
Wo!}+PA
o\%&5>iNw
NM}M*bzX
FA3R\F
\k4(T<(
#0g3\:
J 3`FL
f^SX%{<]
%j =&gn
yu1&<iu
`m!1Ysj
C$:K386
bSBi]PG
p)):/q5
4Kx0QX
,4Kxl<J
r]qkL!;
\6W?pM
J<3XTN
"`A;i/u
<3)v^
P.@o\;
Tz:o:5
'J,t 3
p8`ht}Z
Bs;)nj|
C/0vkL
U\$W87
A@0Rg!
jACGT-
t!0:"n
GV|[<K
-KW>`Zez
BFG=?G
&o'$fI
J}(qQS
c;@aim
j}fxxa
h4HHtB
L6bWP+j
88.^I6
j$KE7xa%
1*{t5E
wHwe7/
e;dr2@
F2FjAFu4
{Xxai~
oUGX8T
)4HZ6$
x1!osC
B6`/L#
/<f\l-
@6[%k
>^8dw
c,o0F"
k@ZlN;>
Qh}'v6YTr
7{nBo`{
6u\9&[
>T_f:l/
X@%Ye+[
'O!gS6
N=WUjC
d5TV_[B
ek8[b
#H6N{v
"&8~G5
#KO4i<
AvCeg=R
yb/ ]#l;,
38d2j)t
+!Cd7?$
#wR>*n
{qG;[J
yti[7o
MjJW{j
snW@~<
~2<4(jD
*V|=(3,p
M`V>yp
FA;wj_
)rvz ?
qozlDlz<
3rQ+70
7J4x#h
^0Wi=a
"hy";9
9TMLf7
l5@uLEO\u
D"gy]X
fncscq
(a:}S
9p4Fyl
B^J_d2
IcZRu,
uF\VmY
Ow[?PEdWSJ
j=?G/ia,
U%w8Lw
5Xo)t'
QQSVWd
t=MOC
HtHu4j
t*=RCC
;7|G;p
tR99u2
Unknown exception
bad allocation
(null)
`h````
xpxxxx
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
UTF-16LE
UNICODE
RUUUUU
CorExitProcess
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
`h`hhh
xppwpp
i^^?(>
Y:/(A6>
< Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
_nextafter
_hypot
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
1#QNAN
1#SNAN
bivucimihupibifonevenabilowosuwuxocuremucebisenomur
VirtualProtect
kernel32.dll
LocalAlloc
invalid string position
string too long
bad exception
C:\ceze\direj-nuvewuhehalib\govuwideme\yeyu\wecu91 jovekiyu9.pdb
HeapReAlloc
FindVolumeClose
HeapAlloc
EndUpdateResourceW
SetEnvironmentVariableW
GetEnvironmentStringsW
SetConsoleScreenBufferSize
AddConsoleAliasW
SetEvent
SleepEx
GetTickCount
GetProcessHeap
FindActCtxSectionStringA
GlobalAlloc
InitAtomTable
FindNextVolumeW
GetTapePosition
WriteConsoleW
GetMailslotInfo
GetModuleFileNameW
CreateActCtxA
GetConsoleOutputCP
BindIoCompletionCallback
GetProcAddress
VirtualAlloc
BeginUpdateResourceW
GetAtomNameA
LoadLibraryA
GetModuleFileNameA
GetProcessAffinityMask
Module32Next
TlsFree
lstrcpyA
KERNEL32.dll
SetCursorPos
USER32.dll
EncodePointer
DecodePointer
GetCommandLineA
HeapSetInformation
GetStartupInfoW
RaiseException
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
GetLastError
HeapFree
IsProcessorFeaturePresent
TlsAlloc
TlsGetValue
TlsSetValue
InterlockedIncrement
GetModuleHandleW
SetLastError
GetCurrentThreadId
InterlockedDecrement
WideCharToMultiByte
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
ReadFile
RtlUnwind
SetFilePointer
CloseHandle
ExitProcess
WriteFile
FreeEnvironmentStringsW
HeapCreate
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
GetConsoleCP
GetConsoleMode
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
MultiByteToWideChar
CreateFileA
SetStdHandle
FlushFileBuffers
HeapSize
LoadLibraryW
LCMapStringW
GetStringTypeW
SetEndOfFile
CreateFileW
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVexception@std@@
.?AVbad_alloc@std@@
.?AVbad_exception@std@@
bbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbb
bbbbbbbbbbbbbbbbmXkCCCC
bbbbbbbbbbbbbbbb
bbbbbbbbbbbbbbbb
bbbbbbbbbbbbbbbb
bbbbbbbbbbbbbbbb
bbbbbbbbbbbbbbbb"
bbbbbbbbbbbbbbbbV
_bbbbbbbbbbbbbbbb^
bbbbbbbbbbbbbbbb
fiYiiT
bbbbbbbbbbbbbbbb
bbbbbbbbbbbbbbbb
bbbbbbbbbbbbbbbb
bbbbbbbbbbbbbbbb
m_bbbbbbbbbbbbbbbb
bbbbbbbbbbbbbbbbJW`
_bbbbbbbbbbbbbbbb*@
_bbbbbbbbbbbbbbbb
bbbbbbbbbbbbbbbb
Wbbbbbbbbbbbbbbbb
LfxRQQ
Xbbbbbbbbbbbbbbbb@@
bbbbbbbbbbbbbbb*
bbbbbbbbbbbbbbb
bbbbbbbbbbbbbbb
<bbbbbbbbbbbbbbb
bbbbbbbbbbbbbbb
bbbbbbbbbbbbbbb
bbbbbbbbbbbbbbbj
bbbbbbbbbbbbbbbj
bbbbbbbbbbbbbbb
-B>p[[p
bbbbbbbbbbbbb
X>nX_X
_Xjbbbbbbbbbbbb>
jbbbbbbbbbbbb
%bbbbbbbbbbbb"
%bbbbbbbbbbbb
bbbbbbbbbbbb
bbbbbbbbbbbb_ yd
bbbbbbbbbbbb_3
bbbbbbbbbbbbB
*bbbbbbbbbbbb
B>B@bbbbbbbbbbbbb
Vp[[[[l/l
<bbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbb
ffffffffffffffffffffffffffffffffffffffffffffffffffffffff
fffffffffffff
ffffffffffff
27ffffffffffH
jffffffffff
ffffffffff
mffffffffff
cmffffffffff'.
ffffffffff
ffffffffff
ffffffffff
`ffffffffff
ffffffffff
ffffffffff
ffffffffff'
ffffffffff
ffffffff
c3cKffffffff
ffffffff
fffffffff
fffffffffffffffffffffffffffffffffffffffffffffffffff
************************************hz
f,X******/E^g
{j3******
******
A******-
******
******/a
******
4*****l
******
**********************************
OBw(V6e4
(null)
KERNEL32.DLL
mscoree.dll
runtime error
TLOSS error
SING error
DOMAIN error
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
- abort() has been called
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
CMicrosoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
WUSER32.DLL
((((( H
h(((( H
H
CONOUT$
fekovimofojituzuwivuwubajiyofori
pVihoboyafihuri dixireyitireg
Lagipi xazaciraroz dafiyoxad kosifu
vemetahupofutadiki
AFX_DIALOG_LAYOUT
VS_VERSION_INFO
StringFileInform
080805a0
InternalName
bomgpiaruci.iwa
Copyright
Copyrighz (C) 2021, fudkagat
ProductVersion
15.54.32.51
VarFileInfo
Translation
gGovuginavoleji wumejes putepop jetujozuwawoxug levopexirexed wuboguvecey ziyiyo giyolugob nomotib yagis)Judisigidu rizuxuxoci yanor cuk yijanilug
.Lojo tifebihihopo mifibazotunewo gebedibofajolbFevu boxuloxapijah melum fizumisivifuzo vamawir peracacocubete dedahijaluyob femuxetegawoge ficeyi@Zipelokaj hac toru lon gehe yebopizecekin moka gum simo fuxegope2Dap tatikafadehibu fiduvigovido lozepe konazoreriw<Vosukuxixit tahacevada yitumogij pebuwoxipubac wifimaputazec
Rege ripoma8Hasuxecem feyidez bahoxuzukahoso fidediwubazisi vunifefa;Dopozafabayi feraturifa xuhiw depuvi dalubo molinig pixeniw
1Yonufuwu zatuso fixeyajeraref miyuyix rosadi fehiANaziwokefek rijoyurogebetuc zekitosipudo cimoxirosur vewodat cidifNibufe deviwifawinop meduzuw vigob gosi likuwunirimiyuj waliwo lepexobetoj tiwasoxewosabi viduledehewutRufebipugine redukakazonexo lazubolunimizin neliberuwipayu suki yolelu mananeragi jerepizajo ligupifujiv fayurorisus
DHixibe kuxen jugediwuzaxexif jelijapux bik goramep fewakow focipiyuf
Mafuge
Xihenetimen
Sib tuve yepebow.Gaxoz tacucefebu zezonaponapocu figojexijunora
Antivirus Signature
Bkav W32.AIDetect.malware1
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Fragtor.36857
FireEye Generic.mg.a065b00d113e42d8
CAT-QuickHeal Clean
ALYac Clean
Malwarebytes Clean
VIPRE Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Clean
BitDefender Gen:Variant.Fragtor.36857
K7GW Hacktool ( 700007861 )
Cybereason malicious.138b60
Baidu Clean
Cyren W32/Kryptik.FOQ.gen!Eldorado
Symantec Packed.Generic.528
ESET-NOD32 a variant of Win32/Kryptik.HNDP
APEX Malicious
Paloalto Clean
ClamAV Clean
Kaspersky VHO:Backdoor.Win32.Convagent.gen
Alibaba Clean
NANO-Antivirus Clean
SUPERAntiSpyware Clean
Rising Malware.Heuristic!ET#97% (RDMK:cmRtazosf8HudA/Tm2a8f2EPm85n)
Ad-Aware Gen:Variant.Fragtor.36857
Sophos ML/PE-A + Troj/Krypt-BO
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Lockbit.fc
CMC Clean
Emsisoft Gen:Variant.Fragtor.36857 (B)
Ikarus Trojan.Win32.Crypt
GData Gen:Variant.Fragtor.36857
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=85)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
ViRobot Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis suspicious
McAfee Clean
TACHYON Clean
VBA32 Malware-Cryptor.2LA.gen
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Static AI - Malicious PE
eGambit Unsafe.AI_Score_99%
Fortinet Clean
BitDefenderTheta Gen:NN.ZexaF.34236.su0@aeDVUtaG
Avast Clean
CrowdStrike win/malicious_confidence_100% (D)
MaxSecure Trojan.Malware.300983.susgen
No IRMA results available.