Static | ZeroBOX

PE Compile Time

2022-01-17 21:04:36

PE Imphash

7c74df63a1dba2dccee9dead9673e4b7

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0001b3b0 0x0001b400 6.59674690829
.rdata 0x0001d000 0x0000b0e4 0x0000b200 4.84017953421
.data 0x00029000 0x00001fa0 0x00000c00 1.93098169192
.pdata 0x0002b000 0x00001398 0x00001400 5.27125575815
_RDATA 0x0002d000 0x000000fc 0x00000200 1.97540904156
.rsrc 0x0002e000 0x0001f3e8 0x0001f400 7.95736852763
.reloc 0x0004e000 0x00000658 0x00000800 4.87524916598

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x0002f090 0x00000ca8 LANG_ENGLISH SUBLANG_ENGLISH_US dBase IV DBT of @.DBF, block length 3072, next free block index 40, next free block 425216795, next used block 1293506894
RT_ICON 0x0002f090 0x00000ca8 LANG_ENGLISH SUBLANG_ENGLISH_US dBase IV DBT of @.DBF, block length 3072, next free block index 40, next free block 425216795, next used block 1293506894
RT_MENU 0x0002fd50 0x0000004a LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x0002fdb0 0x00000124 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x0004d238 0x00000030 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x0002fda0 0x00000010 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_RCDATA 0x0004d038 0x00000200 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_RCDATA 0x0004d038 0x00000200 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_RCDATA 0x0004d038 0x00000200 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_RCDATA 0x0004d038 0x00000200 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_RCDATA 0x0004d038 0x00000200 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_RCDATA 0x0004d038 0x00000200 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_RCDATA 0x0004d038 0x00000200 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x0002fd38 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x0002fd38 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x0004d268 0x0000017d LANG_ENGLISH SUBLANG_ENGLISH_US XML 1.0 document text

Imports

Library KERNEL32.dll:
0x14001d010 GetLogicalDrives
0x14001d018 GetOEMCP
0x14001d020 GetCommandLineW
0x14001d028 GetCurrentProcess
0x14001d030 GetThreadErrorMode
0x14001d040 GetUserDefaultLangID
0x14001d048 GetThreadLocale
0x14001d050 GetUserDefaultUILanguage
0x14001d058 GetCurrentThreadId
0x14001d068 GetSystemDefaultLangID
0x14001d070 GetACP
0x14001d078 GetCommandLineA
0x14001d080 GetTickCount64
0x14001d088 GetLastError
0x14001d090 GetThreadUILanguage
0x14001d098 GetCurrentThread
0x14001d0a0 TlsAlloc
0x14001d0a8 SwitchToThread
0x14001d0b0 GetErrorMode
0x14001d0c0 SetFileApisToOEM
0x14001d0c8 GetEnvironmentStringsW
0x14001d0d0 IsDebuggerPresent
0x14001d0d8 FlushProcessWriteBuffers
0x14001d0e0 GetLargePageMinimum
0x14001d0e8 IsSystemResumeAutomatic
0x14001d0f8 GetTickCount
0x14001d100 VirtualAlloc
0x14001d108 ExitProcess
0x14001d110 WriteConsoleW
0x14001d118 CloseHandle
0x14001d120 CreateFileW
0x14001d128 SetFilePointerEx
0x14001d130 AreFileApisANSI
0x14001d138 GetConsoleOutputCP
0x14001d140 FlushFileBuffers
0x14001d148 HeapReAlloc
0x14001d150 HeapSize
0x14001d158 GetProcessHeap
0x14001d160 LCMapStringW
0x14001d168 FlsFree
0x14001d170 FlsSetValue
0x14001d178 FlsGetValue
0x14001d180 FlsAlloc
0x14001d188 GetStringTypeW
0x14001d190 GetFileType
0x14001d198 SetStdHandle
0x14001d1a0 FreeEnvironmentStringsW
0x14001d1a8 WideCharToMultiByte
0x14001d1b0 MultiByteToWideChar
0x14001d1b8 GetCPInfo
0x14001d1c0 IsValidCodePage
0x14001d1c8 FindNextFileW
0x14001d1d0 FindFirstFileExW
0x14001d1d8 FindClose
0x14001d1e0 HeapFree
0x14001d1e8 HeapAlloc
0x14001d1f0 GetModuleHandleExW
0x14001d1f8 TerminateProcess
0x14001d200 GetModuleFileNameW
0x14001d208 WriteFile
0x14001d210 GetStdHandle
0x14001d218 RtlPcToFileHeader
0x14001d220 RaiseException
0x14001d228 GetConsoleMode
0x14001d230 EncodePointer
0x14001d238 LoadLibraryExW
0x14001d240 GetProcAddress
0x14001d248 FreeLibrary
0x14001d250 TlsFree
0x14001d258 TlsSetValue
0x14001d260 QueryPerformanceCounter
0x14001d268 GetCurrentProcessId
0x14001d270 GetSystemTimeAsFileTime
0x14001d278 InitializeSListHead
0x14001d280 RtlCaptureContext
0x14001d288 RtlLookupFunctionEntry
0x14001d290 RtlVirtualUnwind
0x14001d298 UnhandledExceptionFilter
0x14001d2a8 GetStartupInfoW
0x14001d2b8 GetModuleHandleW
0x14001d2c0 RtlUnwindEx
0x14001d2c8 SetLastError
0x14001d2d0 EnterCriticalSection
0x14001d2d8 LeaveCriticalSection
0x14001d2e0 DeleteCriticalSection
0x14001d2f0 TlsGetValue
Library USER32.dll:
0x14001d310 CreateMenu
0x14001d318 GetProcessWindowStation
0x14001d328 GetMessageW
0x14001d330 DefWindowProcW
0x14001d338 DestroyWindow
0x14001d340 CreateWindowExW
0x14001d348 EndDialog
0x14001d350 RegisterClassExW
0x14001d358 LoadAcceleratorsW
0x14001d360 LoadStringW
0x14001d368 ShowWindow
0x14001d370 DispatchMessageW
0x14001d378 MessageBoxA
0x14001d380 TranslateAcceleratorW
0x14001d388 TranslateMessage
0x14001d390 LoadIconW
0x14001d398 LoadCursorW
0x14001d3a0 PostQuitMessage
0x14001d3a8 DialogBoxParamW
0x14001d3b0 UpdateWindow
0x14001d3b8 BeginPaint
0x14001d3c0 EndPaint
0x14001d3d0 GetDesktopWindow
0x14001d3d8 SetProcessDPIAware
0x14001d3e0 GetMessageExtraInfo
0x14001d3e8 GetFocus
0x14001d3f0 GetClipboardViewer
0x14001d3f8 GetOpenClipboardWindow
0x14001d400 GetCursor
0x14001d408 GetShellWindow
0x14001d410 GetActiveWindow
0x14001d418 AnyPopup
0x14001d420 InSendMessage
0x14001d428 GetCapture
0x14001d430 CloseClipboard
0x14001d438 EmptyClipboard
0x14001d440 CountClipboardFormats
0x14001d448 GetKBCodePage
0x14001d450 IsProcessDPIAware
0x14001d458 GetForegroundWindow
0x14001d460 GetDialogBaseUnits
0x14001d468 GetMessageTime
0x14001d470 IsWow64Message
0x14001d478 DestroyCaret
Library GDI32.dll:
0x14001d000 GdiFlush
Library SHELL32.dll:
Library ole32.dll:
0x14001d488 CoFreeUnusedLibraries
0x14001d490 OleUninitialize
0x14001d498 CoUninitialize

!This program cannot be run in DOS mode.
`.rdata
@.data
.pdata
@_RDATA
@.rsrc
@.reloc
SVWATAUAVAWH
9D$HtT3
A_A^A]A\_^[
VWATAVAWH
L$ HcG<H
PA_A^A\_^
SVWATAUAVAWH
M0HcA<f
D$4A;C
\$ E8"tNA
A_A^A]A\_^[
SVWATAUAVAWH
D;l$0D
l$,IcK<I
|$$L;Y0u
D;l$0|$
D$8;\$p~
L9t$8L
A_A^A]A\_^[
SVWATAUAVAWH
|$$HcC<
L$pD9a
t$4L9d$Xu
A_A^A]A\_^[
(|$ Hc
WAVAWH
(D$ Hc
SVWAVAWH
A_A^_^[
SVWATAUAVAWH
0A_A^A]A\_^[
SVWATAUAVAWH
A_A^A]A\_^[
D$@H;D$(
D$8H;D$(
SVWATAUAVAWH
A_A^A]A\_^[
H3E H3E
u0HcH<H
WATAUAVAWH
A_A^A]A\_
WATAUAVAWH
A_A^A]A\_
D8L$0uP
VWATAVAWH
A_A^A\_^
WATAUAVAWH
A_A^A]A\_
H;xXu5
ffffff
fffffff
AUAVAWH
u4I9}(
;I9}(tiH
0A_A^A]
AUAVAWH
u4I9}(
;I9}(tiH
0A_A^A]
UVWATAUAVAWH
`A_A^A]A\_^]
UVWATAUAVAWH
`A_A^A]A\_^]
@USVWATAUAVAWH
A_A^A]A\_^[]
@USVWATAUAVAWH
d$dD;d$ltY
A_A^A]A\_^[]
UVWATAUAVAWH
A_A^A]A\_^]
@USVWATAUAVAWH
A_A^A]A\_^[]
WAVAWH
@SVWATAUAVAWH
L!|$(L!
D$0HcH
pA_A^A]A\_^[
SVWATAUAWH
L!d$(L!d$@D
D$HL9gXt
A_A]A\_^[
B(I9A(u
SVWATAUAVAWH
0A_A^A]A\_^[
SVWATAUAVAWH
A_A^A]A\_^[
t$ WATAUAVAWH
A_A^A]A\_
UVWATAUAVAWH
A_A^A]A\_^]
UVWAVAWH
0A_A^_^]
WAVAWH
fA9,@u
fA9,vu
0A_A^_
p0R^G'
u3HcH<H
t$ WAVAWH
A_A^_
WAVAWH
A_A^_
D$0@8{
p*W4H
p*W4H
UVWATAUAVAWH
H;\$8u
H;\$8u
fE9$Iu
A_A^A]A\_^]
WATAUAVAWH
0A_A^A]A\_
H97u+A
l$ VWATAVAWH
L$&8\$&t,8Y
A_A^A\_^
fD9t$b
@UATAUAVAWH
e0A_A^A]A\]
WATAUAVAWH
A_A^A]A\_
\$ VWATAUAVH
D!l$xA
@A^A]A\_^
L$ VWAVH
fD94H}aD
ATAUAVH
L$ fff
L$ |+L;
A^A]A\
@UATAUAVAWH
H!T$0D
u,!T$(H!T$
A_A^A]A\]
WAVAWH
A_A^_
UVWATAUAVAWH
fB9<A}1L
A_A^A]A\_^]
VWATAVAW
A_A^A\_^
AUAVAWH
@A_A^A]
@USVWATAUAVAWH
H!D$ I
hA_A^A]A\_^[]
WATAUAVAWH
0A_A^A]A\_
ffffff
fffffff
@SUVWATAVAWH
@A_A^A\_^][
USVWAVH
A^_^[]
LcA<E3
u HcA<H
SUVWAVH
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__vectorcall
__clrcall
__eabi
__swift_1
__swift_2
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
operator ""
operator co_await
operator<=>
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
`anonymous namespace'
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
Unknown exception
bad exception
CorExitProcess
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
LCMapStringEx
LocaleNameToLCID
AppPolicyGetProcessTerminationMethod
UUUUUU
UUUUUU
=imb;D
/>58d%
VM>cQ6
>jtm}S
)>6{1n
+f)>0'
;H9>&X
*StO9>T
n03>Pu
K~Je#>!
bp(=>?g
BC?>6t9^
K&>.yC
.xJ>Hf
y\PD>!
|b=})>
c [1>H'
uzKs@>
3>N;kU
kE>fvw
V6E>`"(5
?UUUUUU
?7zQ6$
TheStringWhichIsRand
xF2guO
.text$mn
.text$mn$00
.text$x
.idata$5
.00cfg
.CRT$XCA
.CRT$XCAA
.CRT$XCZ
.CRT$XIA
.CRT$XIAA
.CRT$XIAC
.CRT$XIC
.CRT$XIZ
.CRT$XPA
.CRT$XPX
.CRT$XPXA
.CRT$XPZ
.CRT$XTA
.CRT$XTZ
.rdata
.rdata$r
.rdata$voltmd
.rdata$zzzdbg
.rtc$IAA
.rtc$IZZ
.rtc$TAA
.rtc$TZZ
.xdata
.xdata$x
.idata$2
.idata$3
.idata$4
.idata$6
.data$r
.data$rs
.pdata
_RDATA
.rsrc$01
.rsrc$02
AreFileApisANSI
GetLogicalDrives
GetOEMCP
GetCommandLineW
GetCurrentProcess
GetThreadErrorMode
GetSystemDefaultUILanguage
GetUserDefaultLangID
GetThreadLocale
GetUserDefaultUILanguage
GetCurrentThreadId
UnregisterApplicationRecoveryCallback
GetSystemDefaultLangID
GetACP
GetCommandLineA
GetTickCount64
GetLastError
GetThreadUILanguage
GetCurrentThread
TlsAlloc
SwitchToThread
GetErrorMode
UnregisterApplicationRestart
SetFileApisToOEM
GetEnvironmentStringsW
IsDebuggerPresent
FlushProcessWriteBuffers
GetLargePageMinimum
IsSystemResumeAutomatic
GetCurrentProcessorNumber
GetTickCount
VirtualAlloc
ExitProcess
KERNEL32.dll
GetProcessWindowStation
CreateMenu
GetClipboardSequenceNumber
DestroyCaret
IsWow64Message
GetMessageTime
GetDialogBaseUnits
GetForegroundWindow
IsProcessDPIAware
GetKBCodePage
CountClipboardFormats
EmptyClipboard
CloseClipboard
GetCapture
InSendMessage
AnyPopup
GetActiveWindow
GetShellWindow
GetCursor
GetOpenClipboardWindow
GetClipboardViewer
GetFocus
GetMessageExtraInfo
SetProcessDPIAware
GetDesktopWindow
GetMenuCheckMarkDimensions
EndPaint
BeginPaint
UpdateWindow
DialogBoxParamW
PostQuitMessage
LoadCursorW
LoadIconW
TranslateMessage
TranslateAcceleratorW
MessageBoxA
DispatchMessageW
ShowWindow
LoadStringW
LoadAcceleratorsW
RegisterClassExW
EndDialog
CreateWindowExW
DestroyWindow
DefWindowProcW
GetMessageW
USER32.dll
GdiFlush
GDI32.dll
InitNetworkAddressControl
SHELL32.dll
CoUninitialize
CoFreeUnusedLibraries
OleUninitialize
ole32.dll
QueryPerformanceCounter
GetCurrentProcessId
GetSystemTimeAsFileTime
InitializeSListHead
RtlCaptureContext
RtlLookupFunctionEntry
RtlVirtualUnwind
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetStartupInfoW
IsProcessorFeaturePresent
GetModuleHandleW
RtlUnwindEx
SetLastError
EnterCriticalSection
LeaveCriticalSection
DeleteCriticalSection
InitializeCriticalSectionAndSpinCount
TlsGetValue
TlsSetValue
TlsFree
FreeLibrary
GetProcAddress
LoadLibraryExW
EncodePointer
RaiseException
RtlPcToFileHeader
GetStdHandle
WriteFile
GetModuleFileNameW
TerminateProcess
GetModuleHandleExW
HeapAlloc
HeapFree
FindClose
FindFirstFileExW
FindNextFileW
IsValidCodePage
GetCPInfo
MultiByteToWideChar
WideCharToMultiByte
FreeEnvironmentStringsW
SetStdHandle
GetFileType
GetStringTypeW
FlsAlloc
FlsGetValue
FlsSetValue
FlsFree
LCMapStringW
GetProcessHeap
HeapSize
HeapReAlloc
FlushFileBuffers
GetConsoleOutputCP
GetConsoleMode
SetFilePointerEx
CreateFileW
CloseHandle
WriteConsoleW
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
.?AVtype_info@@
XR[^#(
WD#2'H]
vlq=Q')#
XB%<c;w
Q73p'!9
neg4>p:
|Y~:f:^
^So}J0
}-Hq7+
l.$AI?@=3
lqup\9
MB#Ua+*
U5CWD#z
=L0[/A
:oh&Zy
26V*z4
{"4f;h
]]o?gRJ
M4%3vaL
4LUdC,
I?1Tc3n
7;)^VF
W_nWt%h
Q24n<,d
,Oz?Va
[,Az|J
l+\8 -q
6Pe3<B
k3p'[9
>??,xq
=-fNg|u
NbQaVb5I
}oYX0|
1NS@?@
Mr^_W#W
&%e;qv
p6>W>5"
DXSQ:D
+\%`2s
hXIBL,
V40 }H
~UwM2j
d3k]RS)
<IovO*K!
iQ@1')
E#2cp]S
Mh|Lwu?
ZK126G
#+3vmeu
*PI3-%
YPZ8oV
,wj='D
=L+[-c
Yi@qc
6 3gAvc
Bb_Zr(
.~nx&X
&o0MMD
1f*XCE
_9.g2(
Lsz_<pi
W[ZbwEV
.4@eh>
!CWY}TW
75XF-<O
e)^+\Rd(
"h0+X~}
|<50)@
FB:M\k.
&:YYl@{
~_3?#S
W$')R?IU
pa4s.G<,
Pe3z]RQ3
zKQ3va$
gIzrX*
H<Av,sPX
x> )^gP
3djhV_
NkIF%,
k3=&oT_
g{j26Y
**.\$=
ZK]3va0
]oly`fx
\Ekd&&
W_n@Q,W
*PI4-"
fsbSkJ
[%7)!N
db,M{~
x*)C1/-
$OC"|L
0uaEV'
u4@xZB/j
1<:lMN
]51~c"
*D9V?{
HC!{~h
Ox $?|
.t(j6$
}\izw<
T!A`m=
L"P,w"
92g@#2o
vwxo`wF`
b;fq-
9\}ZZ.q
'{1M8;
hV+e-d
(z;>vn7
VR34]=z
`5r&b<
M"yIY{
xBu<rh
75X@,`#
:-&=|gi
0^eLD^U
%*B^N5
6 3fAuc
sNS[Zk
AK5WOY
99'HeDJ
,r[O{';3A
es0&_b
h{kk~{
u$_E#2u=
mB$t^~
emav&[
nD4?r#k
p^ZjD(HU
MsV"RT
Qmg#Gp
4mqEV'
s$7)5@_Y-
?3knWt*
#"},snn
'PG#DK
7%#Cr@
~UZ(/e
$M24n<
L'B"s8
)bPoG7
g@k}kw??i
Zhm^Br
;u/\?|
'RxrM
NoJu?ZR
vRi"ad
n>`0HNQ
:C3y,(
"c(~cJW
60UN+&#
hlq}i&
W&lJ2@
Xg(- sM
\.!'Ka'
.3ki~sx{Nz
}$OTO[)oua
"U7<VD#z
>{BEt2
&EA!-A
Q$&o1|Na`+
:6lq=b
Xo6gR{`
slP[Zg\FA6
m@}hKP`S
dg{qH~H
xO~p$P
h;.'eP
u] [&D
`9[!of
-{Fz kQLqt
7qUD#s
1H^_s@
h@8Uw$
=A~3+[*
2c3rht
2bdxW_nWt
g2bddW_j@
B)RKIU
:R1N2dR
/t}R'[AlW9
C53jPvv
JRM?nv
x39Si[h
Q,pmAFI!Z*
o.WvMW#
Sc3q>&Rq
2LwGTr
uYkKw.
09%=;+)yF
Da@S[Zk
s=aUyl
!i[+QN
*`r_ua
cCcRi@
*+cA+
varXui
{*}_"<]
V!+c\h
Ts32@]I1c
.{liOE
+RZt#f
wmQ'(;
Jvlq=Q')#
XR[Z#(
9gEyvl
vlq=Q')#
XR[Z#(
<5uN\00h
<?xml version='1.0' encoding='UTF-8' standalone='yes'?>
<assembly xmlns='urn:schemas-microsoft-com:asm.v1' manifestVersion='1.0'>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level='asInvoker' uiAccess='false' />
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
api-ms-win-core-fibers-l1-1-1
api-ms-win-core-synch-l1-2-0
kernel32
api-ms-
mscoree.dll
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
((((( H
api-ms-win-core-datetime-l1-1-1
api-ms-win-core-file-l1-2-2
api-ms-win-core-localization-l1-2-1
api-ms-win-core-localization-obsolete-l1-2-0
api-ms-win-core-processthreads-l1-1-2
api-ms-win-core-string-l1-1-0
api-ms-win-core-sysinfo-l1-2-1
api-ms-win-core-winrt-l1-1-0
api-ms-win-core-xstate-l2-1-0
api-ms-win-rtcore-ntuser-window-l1-1-0
api-ms-win-security-systemfunctions-l1-1-0
ext-ms-win-ntuser-dialogbox-l1-1-0
ext-ms-win-ntuser-windowstation-l1-1-0
advapi32
api-ms-win-appmodel-runtime-l1-1-2
user32
ext-ms-
zh-CHS
az-AZ-Latn
uz-UZ-Latn
kok-IN
syr-SY
div-MV
quz-BO
sr-SP-Latn
az-AZ-Cyrl
uz-UZ-Cyrl
quz-EC
sr-SP-Cyrl
quz-PE
smj-NO
bs-BA-Latn
smj-SE
sr-BA-Latn
sma-NO
sr-BA-Cyrl
sma-SE
sms-FI
smn-FI
zh-CHT
az-az-cyrl
az-az-latn
bs-ba-latn
div-mv
kok-in
quz-bo
quz-ec
quz-pe
sma-no
sma-se
smj-no
smj-se
smn-fi
sms-fi
sr-ba-cyrl
sr-ba-latn
sr-sp-cyrl
sr-sp-latn
syr-sy
uz-uz-cyrl
uz-uz-latn
zh-chs
zh-cht
CONOUT$
iE&xit
h&About ...
About stub
MS Shell Dlg
stub, Version 1.0
Copyright (c) 2021
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic Clean
Cynet Malicious (score: 100)
CMC Clean
CAT-QuickHeal Clean
McAfee RDN/IcedID
Cylance Clean
VIPRE Clean
Sangfor Trojan.Win32.Sabsik.FL
CrowdStrike win/malicious_confidence_80% (W)
BitDefender Trojan.GenericKD.38617577
K7GW Clean
K7AntiVirus Clean
Baidu Clean
VirIT Clean
Cyren W64/Kryptik.GCD.gen!Eldorado
ESET-NOD32 a variant of Win64/Kryptik.CUB
APEX Malicious
Paloalto Clean
ClamAV Clean
Kaspersky Clean
Alibaba Clean
NANO-Antivirus Clean
SUPERAntiSpyware Clean
MicroWorld-eScan Clean
Rising Clean
Ad-Aware Trojan.GenericKD.38617577
Sophos Mal/Generic-S
Comodo Clean
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro TrojanSpy.Win64.BAZARLOADER.YXCASZ
McAfee-GW-Edition BehavesLike.Win64.Generic.dc
FireEye Clean
Emsisoft Clean
SentinelOne Static AI - Suspicious PE
GData Trojan.GenericKD.38617577
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=88)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Clean
ViRobot Clean
Microsoft Trojan:Win64/Malgent!MSR
AhnLab-V3 Trojan/Win.IcedID.C4787779
Acronis Clean
BitDefenderTheta Clean
ALYac Clean
TACHYON Clean
VBA32 Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall TrojanSpy.Win64.BAZARLOADER.YXCASZ
Tencent Clean
Yandex Clean
Ikarus Trojan-Spy.Agent
MaxSecure Trojan.Malware.300983.susgen
Fortinet Malicious_Behavior.SB
AVG Win64:TrojanX-gen [Trj]
Cybereason Clean
Avast Win64:TrojanX-gen [Trj]
No IRMA results available.