Static | ZeroBOX

PE Compile Time

2022-12-12 23:17:46

PDB Path

C:\dar\gos_hicedaxi\cele\quimojo\Roxopol.pdb

PE Imphash

545349dda8d13c4ab678a9966d7c7a40

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x001493d1 0x00149400 7.91428542261
.rdata 0x0014b000 0x0000363c 0x00003800 5.5086941045
.data 0x0014f000 0x0026947c 0x00001400 3.83565649153
.rsrc 0x003b9000 0x00024b48 0x00024c00 7.47273362163
.reloc 0x003de000 0x00004a88 0x00004c00 3.07927773571

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x003dcbb8 0x00000128 LANG_THAI SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_DIALOG 0x003dcce0 0x000000fc LANG_THAI SUBLANG_DEFAULT data
RT_STRING 0x003dd4d8 0x0000054c LANG_THAI SUBLANG_DEFAULT data
RT_STRING 0x003dd4d8 0x0000054c LANG_THAI SUBLANG_DEFAULT data
RT_STRING 0x003dd4d8 0x0000054c LANG_THAI SUBLANG_DEFAULT data
RT_GROUP_ICON 0x003dda24 0x000000ca LANG_THAI SUBLANG_DEFAULT data
RT_MANIFEST 0x003ddaf0 0x00000056 LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with CRLF line terminators

Imports

Library KERNEL32.dll:
0x54b008 HeapAlloc
0x54b00c WaitForSingleObject
0x54b010 GetTickCount
0x54b014 GetProcessHeap
0x54b018 IsBadReadPtr
0x54b01c GetConsoleTitleA
0x54b020 Sleep
0x54b024 FormatMessageW
0x54b028 HeapCreate
0x54b02c GetFileAttributesW
0x54b030 SetConsoleTitleA
0x54b034 RaiseException
0x54b038 GetLastError
0x54b040 SetLastError
0x54b044 TlsGetValue
0x54b04c GetThreadId
0x54b050 GetCurrentThreadId
0x54b054 TlsAlloc
0x54b058 CloseHandle
0x54b05c GetCurrentProcessId
0x54b060 CreateThread
0x54b064 IsValidCodePage
0x54b068 ExitProcess
0x54b06c TerminateProcess
0x54b070 GetCurrentProcess
0x54b07c IsDebuggerPresent
0x54b080 GetStartupInfoW
0x54b084 RtlUnwind
0x54b088 HeapFree
0x54b08c GetModuleHandleW
0x54b090 GetProcAddress
0x54b094 TlsSetValue
0x54b098 TlsFree
0x54b0a4 HeapSize
0x54b0a8 WriteFile
0x54b0ac GetStdHandle
0x54b0b0 GetModuleFileNameA
0x54b0b4 GetModuleFileNameW
0x54b0c0 GetCommandLineW
0x54b0c4 SetHandleCount
0x54b0c8 GetFileType
0x54b0cc GetStartupInfoA
0x54b0d4 VirtualFree
0x54b0e8 VirtualAlloc
0x54b0ec HeapReAlloc
0x54b0f0 GetCPInfo
0x54b0f4 GetACP
0x54b0f8 GetOEMCP
0x54b0fc LoadLibraryA
0x54b104 LCMapStringA
0x54b108 WideCharToMultiByte
0x54b10c MultiByteToWideChar
0x54b110 LCMapStringW
0x54b114 GetStringTypeA
0x54b118 GetStringTypeW
0x54b11c GetLocaleInfoA
0x54b120 GetModuleHandleA
Library USER32.dll:
0x54b128 GetDC
0x54b12c GetForegroundWindow
0x54b130 ReleaseDC
0x54b134 GetActiveWindow
0x54b138 MessageBoxW
0x54b13c GetLastActivePopup
Library GDI32.dll:
0x54b000 GetDeviceCaps

!This program cannot be run in DOS mode.
[3.Rich
`.rdata
@.data
@.reloc
D$`-?z
D$Hf9=,
D$lt,9=
t$Lf95P
|$T)|$(
0WWWWW
0WWWWW
QQSVWd
0SSSSS
>=Yt1j
QQSVWh
j@j ^V
HtHu4j
s[S;7|G;w
tR99u2
0A@@Ju
URPQQh
0SSSSS
0SSSSS
0WWWWW
AAFFf;
;t$,v-
UQPXY]Y[
t"SS9]
PPPPPPPP
PPPPPPPP
t+WWVPV
CBCU@5
Ck:5xF
-5nC1vi*Q
E88`|t
vU+2|B
j~*-E}
q@Y{]y
vQ+:tE
gd1RR)
*j}_Z_
^Kp\h#
iZMkF"
F'4.ua
PddEV\
=61h<k_
-5nC1vi*Q
\s@-1n3
HF'e37
;u2*%8
nd1qi*T=nS
ipt~95(rD
6_>@(5RI
1hG4S8
>yS|wX
HF'e37
'|F)e9
c8'eA'y7
&$@Y9@
Bk:5{F
;=enx1Q
;=enx1Q
jOqc2j:
sM33<3
Ba:=yM
ypMAJF
sM33<3
~95(zD
PF#e;
;)t]
b;=onp7Z
rxB;.5L3
Ca:=~M
Ca:=~M
6i:W"$
|Lkfu~O
;wA:6]H
9^G:Hrs
|w%nqT
Nli'09
Bk:5{F
Ca:=~M
^Kp\h#
%;:J;|A
n0kS(=
M=ZpV0
3U`Jt[
rcY{]y
V8*49Br
;=enx1Q
`Jt:4O
^KpTh#
R;GiS;
kKt,.K
PEuD)6*bRB1
R;GeS;
%]8dS0
~95(rD
d1xMW8*
:J;|iO
a;<onp0Z
_cVOlil
3xGW8*
'tF(e9
W7Y{]y
YSOMd=
~95(zD
lc0@\t
dp`1@y
h2?;TV{
;=enx1
Ca:=~M
~95(rD
dp`1@y
h2?;c(
_cvOli'
RO7\,
#933m[
.L,:Tp
lw%nkE
[Kt,.~9#6S|
L@:6Iu5D
k<=D;
d1xaW8*
R:\.%
fOB;.(
'tF(e9
~95(zF
IRS|2}
_#^6J32
JK?D]4
B)(ta"B
Bk:5yE
;=enx1Q
3jV7J\
wA:@l}x
'tF(e9
Oo3Ue4)Ab
y%E}vi
xG;=onp1
iZMcFc
Ba:=yM
nd1qi*T=nS
*j}_Z_
Bk:5{F
+*j}_Z
DFo#Iij
E^G:HiT
MjMhhD
MUQ<hU8
`#F*j=
YN3Du\5
dj(SuJ
v`Jt:G
^D=J1"/
XG:Y$^[
"i/MAp<V.
\cG7jL
ozV@]C
YN?{qZn
Q8Qmea
tu;]#vk8H
3KliWWpf
I,hLP6O
u:r K
ea'S'm
=%ZNlY
W<x\45<x2
G@j1V<V94
Rh8gM
xJb~`W
'|F)e9
$k`k"=EVT
a^G:HU
1aZMw
j$-xWi+
gLD=t>
a;<onp0Z
Ck:5xF
|wW3Td
\>Q0aa
zxZiU.
e02}2_P
9(hIYDW
i3(1L6T
V?[q!"
TxwAt*
m> 6Dt
9h9;-+
K,uD$u
eax}lu
6Aa;1C
!}HH(>
vS8*;N
K7Ze,K
pA:X{J
-y!/j;
p-v592
C(L38*
[9,<f
"Sx^V8
.h*aFs
d{blmj
ZcES,]V8
Q*35Yn\o
VF=vda(
9@5Xyk
`J%_q
-i'L}=*
tq80yGi
s*Oj6`}
lp@|P!Z
fymG9j
dZG:/W
Q;;4BP3^6
5SuXV8
<vN"w!
y"ab66
3n:ah6
'x9GLWq
u:r K
ea'S'm
=%ZNlY
W<x\45<x2
G@j1V<V94
Rh8gM
|2,|H~O
bxB;.
Ba:=yM
Ck:5xF
:`JtXN
<I&rn&
eab,3t
2_G:<'=E;g
G>DQ&O
"f[[CE
:,=nXNlr
sA:`5,cAf
[*=O[Nl
V$<qD}4
*gyF.O
'm(ifc
K5eZh{
$!hsh8&
67}kw\
`Cu:!z
j<#6*A
]dJt*Lz(
KH1@G+G
"jSH:6
i8.c? L
>SpYV8Q
YNo$9|`b
m~z/jR
hFmx-^#
xNsk>i
fU~,j5H
Z~y>nS
@0@d58r*
`S5YV8H
s_ke7L{
0=<ZNl
3jnC:6>
` :%(f
.Jt,N#r~>
</?JM0
ES@^V8
'Z&>OVdi
M'&XHJ
EfQA$.
ug)%*r{
m+(a-?6
CV&{nC3Q
R+DBO,
=ya2x8
S\XV8k
sA::HN@
i=yYNl
F/>"yJ
;<enx2Q
p=QFda
n{KYy
rn"zXdkl
aJt7wg
`l'5>3N,"
s^(XC<
0V_,)`
x6%GID
wv%nA
$o!KTc
d@[ Nk
w.Sd}
W7T-OS
VQbC-w
R0"ut0X
bFkZ*<
eafxNO
S&^V8x
w:-9DL
JwDACjW@l
]Nl*=7z
TRZ*}a
=u]Nl3
0GXgOBcF
|iLS2g
p%nh`\73
S3XV8R
anyewZq
;<enx2Q
OpnC;Q
J>'6Dqu@)"*r~B#
NH796[l
$o^/Df
ea".zT
qA:M@zhX
h&l?$X
i{br]!W
yf{ZPw
e2:'AH
lc0*`<\&
;4RE^3
RO+\Q
XP%Kc0
%n<2!x
Wri`;@
isJ$=W
Jt,U[\.
w%@rZE|7I
n2#3"T
c8'eA'y7
D}AwU?
RO+\w
0i9R61
8gX?Ix
~GtI]z
}wAGdu;
=5]NlT
;=enx1Q
T!MmVRp*(
X~<9P)
EHt,{??
s2u=CXNlV
t6WQyda
)(lq=K
v%n(eBM
}[E|@C
eCK /{
}LPd~;0
ux4P'f
7$p34c
]NlLiI
B:#_ oV
k5 Q>(U
`4yA&p
X@1^\W
;=enx1Q
g<J!gW
j{o<2&
f0D<:J
cgwx>5X
5lD;LX?
^z\1@2)
EUI0WQ
87OQhi
HGli9k>
=c7ec07|
jvTo$ezMY
RjSKVV8
RJ}L80ao
AaAIn$
p%n?(V
jcA:6<
(F#e;?
b;=onp7Z
rxB;.:
nS3Uv&
+c]^n0
Fmj[E:6
.*\^).
n|+;_&N
'|F)e9
vaw/u41
Jx(i\~$
A9v.s,
Mlih8!
Y}X?Iq
c8'eA'y7
n_G::r
.p\fv
="ZNl*1
aW.u~5
XyB}L7
B/R,7
XNl:Ri
rj33B+N
a;<onp0Z
<33e9)j
bJtWSrF
7V8*#1d
:UO$ii
%P1=+[Nl
y\nNr}av
+}wA5R_
O="W+0
%q\iYP
`4yE/p
Ca:=~M
)*@Sp]
_G:At&
A[7`K+<3
*RF].:
ZRb:zw
j!!"7>%
|wsX#a
^GdS[*D
Pn99@6
"Q=:+:!
j\V=ts
u`Jt0y
=W8*O )
2Ysw?a0;6
G/Li>*
_H7C<=O
:Opl2L
ZV11a ``
@$"@&'
ms!*f<
RDA\/<
U]>I`?
^%3,?f
6x=IwQ
.ywAwK
36Q+`a
YNlV<B
Vc:Y&<
E8d2?%K
$PxWQ+
@Ot,+bU
sMKn.-
Nyd-$7
.N`<cE
YG:a_![x
jSC:6r
i}wA*4
a7k<QW
_qh"28
|w?34s/
$PxWU+
"`lc<x
CsfmS>y
rL^'}&
_TpGhw
EUzyJKJ
[6%"'E
t52(%sj
@EVwX@
TL|d.g
f2!8LS
RW@H1E{
mhE9:3n
3Nli_W=
Ck:5xF
PT,+VL1b@_
R+ltj8
o>c@_*
a<!eqq
!Mc!\!
[^vWr,
E8d2?%K
TZP}XdP
NS/a@
nG[f%I
N6jiD:6
'ZBNhM
W6~s#F>:
V=Woo,
Ba:=yM
-5nC1vi*Q
MUhZhO}
S7[V8
,XCJEs
~w%n>C
boamk,vd
Iz6%TI$
\G:*)<fs
Hb05[b9
8Nt,'i
;<enx2Q
i":s9xz
$KT>OF%9
gQPGr '
97.'j)h
[E=`XNl
sa2YuT
*A1Xi/2
jJt<y*
i=VQNl%
^KpTh#
?p(SJ#
a^S~YV8g
f3,&X8T
Sh;_GLaE
IRS|2}
qOXdmM
Zj@'@$
058cN6
RjuB:6
//#82h
)G]Uz&9i
l[j1B:6
f`a@_.
Avp0n0
^G3OHK
YSaZII=
o"6kR2\
ea"7iX
6DEGhEw]
YG:xZis
D)YW&r
w,hLPNO
HF'e37
;=enx1Q
hS>ZV8
S4[V85
PGC^z_
Wh!r]_3
;_40|
ZjqNZR
$|~ZXF-
LcE>4pa
}j9G:6
i%huYO
10evj|
E6Q\m.
(j;8?u
-h.:*X
.y~Dqf
W0k; k
w3<.,
L*qr[X
F\Q/V
b't3rQ
wq_;wY{
f}4O3oi
I?nd08O9
1Lq})?)
\iJt%X
<#+j?I:6
j0G:6_
#Jz5ek
WQw!:<
!cP{8~B
gjh3vY
3l1~9wIa
r=AZNlg
kAa:26
=\YNls
Hc_bKwugI
076"]}#c
MSWt\b
Q@|Rr]|]a
?i<1ML
-=F^Nl
}wA,0d
El59<Vk4
Tu8px=
J6fuj12Y}
wrQsda
'jcB:6a
7S(Z7F`
R:X_uR
c<C:-p
zC7]VL
|ko9jy@
QfJtHc
HioEd2a
$045=EYNl
{6Q$fa
d3rtBw%
`bS(VV8
c\Hu}an
C[G:NA
,k|J*X
RyBn|r8
n"[qp2L=<*
)~xg,N#
;Lt,qb
[=,v#r,
nk5G:
4$@= R
SWXV87
<O`}.i
YN+#uU
{wu6=D
xsvA:@l9
p1 &L(a
bcb_yB:
YN#:\86
jyG:6P
P_T!IG
k\G:[e
[|A:_~W
;%'H5FzaZ
TUJ?8&
(b5XsS@ZV8
v%nb"%N
-<gM)a*
HvWaWm
ap.<\K
YPho#Umi
8L}ONoi
|0hxvPSDXV8
"vL{sg
hq(%;/
i/XsP*
.jkHv+,
D$eB %L
==_QNlsw
n%}[Ky0
20E5Ui
:aJt)aSd
Z5{TR<
cB_j 2
?Y6X,i
DywAK^
FJli'x%
s\8*p8
bb$4\l
?UjoK:6
9w%nR{
TG:Ax!
j:H:6^
<^G:cP.
uA:Z*'
g|wAF!_
`J{-Z>
M,IkqyG
Wt=K\Nlo-
~=T]Nl
_Jt,y_.,
SYZV86
^G9}A,
^G0M=&V
A}f3i
4C|wA:H
#B.k5 Z
YSOEd&
3E*aa ^f#a
{U-:a8
(=!XNl
.]rk/P
S RV8
vV.C<$O
>SXZV8
= KT088
Go[K;%
=M'I|A
eJtk1`e
cJtkoL
2\G:\e
Gu1iNR
?qA:W)
6|j*k#V
:ci+~v2
mHEm,*&\
vA:Ty.
=\]NlG
S)_V8x[Ir
!|1'&8;@
C|nLjo
[W8*UI
=uSNlE
G#<n\-h
hb"5?
s%*=lY
^GL;y&)
NTz2jJ
wA:N.v?L
O`OF0H
zwA|%z
`JI|=s*
]V84y`d
!d^&cOuei
Y=iYNl7G
J=SZNl
|~j+l\
C:6+rc
\9eIim
e wwHi
yXqRNp
?^!*,W
0sODii
i<pMF(qR`
ys,Gk;h
{wAMTS
3hBA*Mz\x
kP>p8TV
)C|wA:H
#L3k5 Z
J`%1.:8
W8*CoX
=m1ku>C
az&x=
W)=ieS
LU(dEEDI
ms3= sC
I=/_Nl
Y~-yLV$
IoF|%$h
Q>F\WFa
bJtTL3
xOr\h)
Oli?PC
dJt9|&
O&5zHH
eqLP,8
$"esW)
cm|{,3
Op/O@`
DX$iKe
5yLj?*
8p)J],
{!$D!!
"JQHea
{RXytg=
G^WGW`
VQU&TGR
G7H_(X
;v[&ii
1(h";aP76
ejf-1iW|3
8J?k5 y
jFB:6E`
Sj0A:6
1nDFa|8
j;E:6I
Vif>Sw
x4a&>6
^{3c9P:}
oNs2iA
rC9+AP
Z+DaI,
pwI"`[
?i[V8\Zw
LMHmHO8
EMGZV8*
hNYVAQ@
}&uCk5
Kj=$~B
2V|'[X
=#QNlYN
ujAM:6
Q{aq<6
/[as.<j
'j2@:6
?M_]|vV
UNl(p\
#|^}|"
dov.GM
5jQnga
8]uTBbF$
T8*r9d-
]"v\s,
rkqSM\
0SUTV8
:~CRAEY}
[2=M\M
r(,R6
It,x+-
w%]g-e|?
qA:28,j
Y}XqIq
6$S|B
Dw%nqk
Nli'^#3
A:6I8u
xN<=[s
Dw%nq}t
28bEL?
Ba:=yM
Nli;V6g
C1kEaN
q;=enq1
dp`1@)
ug)%*r{
}95(zD
E8e2?%K8
ZV8^R3
;=enx1Q
Bk:5{F
j$-xWY+
U$VJi;
dp`1@)
}95(rD
-5nC1vi*Q
NSBEV\
a;<onp0Z
hx =iw
6-LG0R
La$8Qc
%]8dS0
F`Jt:D_
j$-xWY+
D8 eA"
{I-_4V
j$-xWY+
&+:J;|Aj
}|!`~|
^GNuP,
5nC1v
j$-xWY+
`%E:@`
29Q:uA
0X>U}
JzRmZ]s
|:J;|i
dp`1@)
dp`1@)
h2?;Tn|8
%]8dS0
dp`1@)
;=enx1Q
0X>U}
c8'eA'y7
Ca:=~M
dp`1@)
ZV8^R;
sM33|o
IpxLOc
$x6WY+
Qf0RoJ/
<w%nUw1
Y}XqAq
0H>U}
0_<=C:
=4'=@XNlZ
s+fk"o2O
pQ$(V?
+*j}_Z
d5:J;|AyE
JzRmXMO
'\Z;JzzmX
'\Z;JzzmX
6]#Or;
7}wAT@
:M<]NR
!#yB_6
`JtB:/s
aJtSx U
_BZhdjj
ZV4Onv
SO]V8)
=uXNl7#
C0@;d?w
1MliCH
?m0g*a
%i9bLk)
Djk.<|t
FO#O:t
F_k"^)
6vdr;&-
)2n30j
Bk:5yE
JzRmXMC
O%_1`~cv
@uA:Km?
sYAuzH
\Q!5tbI
tcW<RL
45UGR;
AywAUv
uSn_V8Y
BLRaA86
}O)Ru5
QGlib;
:T3jEF:6
DG\UAZ
XV8LW}b
o/^<oHK81
Nldz9nk
#F?T/o)
WK^fTF
_SpXV8
jL@:6M
_=^XNl
cvnmJR
l'1'#Z
}9jkA:6
pA:(>G
[w=3JZ
w%z+#%A
kXor1c
tn]o= XNl
dt YzF
<EL'9*
B{3$EF
qMz[B)
cFt[q|
nd1qi*T=nS
pEQECa
w3JH'Oc
I@3iXTV
YN yhn
jUC:6@
Z<VWh6
{?l,Ua[m
8)T#bq*
&[G:Lt
c/Sm^V8
S7g<s[
0jnF:6
5y;:t Z
pj+@:6
+D0|G7
_G:],E
U}R"Em:
y0J*QS
.0?@Xs
)P8*dx
ZG:m@o
=VvNlZ_
I+Fr7y4
w ?,to
Rh{v8
]vk4w.
>HT|j;
Rwj_8H6
Xxe6EP
JV8*|o
>d)^|P
HNliIy
eaU]p\
%^=:ZNl
g<a+8nJ
lxEp7a
b;=onp7Z
rxB;.}
|3zT5$
Ck:5xF
Ck:5xF
jv;P).
"V"hbm
{SB_V8Z
=%XNl0n
*\Dz?Q
"G~fX~
Eyxe4L
)"MAX~
tA:[7A
KcjV@:6\
)/j|B:64s9
F_l^4d
SuZV8x
rA:zP"
R8*oc4
~kQ4aa
9!}ov%
=+QNlr
6=:^Nl
qtwA>?K%2
Hy@[zZ
ZVb0+`
`~?YX~E
\G:22/
*=ZNl
M\$rXJ
C$omsA
zjK@:6
zZD1&h
.LzN=3PNl9
k,}k>$
TA8cVN
PC+f@zK
l/],lc
Pia;7N
jCD:6'
nuA:gq%&t#*
4Sj_V8
Dqu@)"
<3:L>:
;<enx2Q
MU~BDgx
.]tgj
kKw~5_
wE+Zg5
FuA:p)LF
'x%X<o
'[G:4MJ
[>c\t(
_xnK7_g
y1M-m
`83:d>t
mkYP8o
%]8dS0
'|F)e9
=4XNlZ
a^%&]4
%|$,5*
v%n*Xa#
?D:2\:
>SoN)F
Ck:5xF
PEuQ)3*
iZEkP4
i.IfXD
S6C&:J
<3B]|d
^[T?PY
|R8*r"
s%nV.@
~0[8ELsAj#ak
JO,A31
@R+hW8V
o[':Sp
'|F)e9
Ba:=yM
rnzzaX
d37$C"Y
zRmZES
Ca:=~M
:J;|i9
Y}X?Iq
Ck:5xF
1hG4S8
a;<onp0Z
(Qn|*?
ZKxT.2
HF'e3?
nd1qi*T=nS
|D#-6?D*-
;=enx1Q
IMfDA/
%]8dS0
[{sfFg
Ba:=yM
29Q:uA
J>'6Dqu@)"*r~B#
E8d2?%K
-5nC1vi*Q
8q_36g
Jx|ukrg
FQNAij
uvfU8
ALm:L6
F%JrZp
<3:L*tc
mPsJc=
(Ia>96
`jAqtQ
ZlU3a<
I=fXNl
Uk=@XNl
!+nR1gi
m> 6Dt
On3Q2[
Bk:5{F
|95(zD
T?UU0
$kw5i?EVT
Hxj,i'2UL
w%uogV
/TmsGw]
)j*C:6X
j$A:6,
SdYV87
,hD9V9
<3qHl
k5^hdm
(zN#}g
;=enx1Q
La$8Qc
ZKxT~hL#d
x|O}>G
6-LG0R
La$8Qc
{D9^wN
4 Rl^c
bxB;.
bxB;.
c8'eA'y7
]$'sIJ
bxB;.
Y}X?Iq
H[9zw7
!+nR1gi
'tF(e9
nd1qi*T=nS
'n2#%*
)4JG*p
'Xn2#?*
r=ue(Q
eam0bb)"
/$C8*R
k5 yN+
|w?2A`Z
=33|'J
=ZCt#8ab
r3,&X8T
n|+3>VN#
{F?-OJ
c~TVF4$
29Q;uA
bxB;.W
Y}X?Iq
H Pzw7
q;=eny1
Ca:=~M
!+nR1gi
ug)%*r{
a;<onp0Z
\s@]3n3
AF&e37
|95(zD
{5I0-I
1ZCd90y
_YYNli
Uh|Oss
df*>Eea
=*>Eea
M33|1\
:B|wA:H
r5ee Q
+*>Mea
&*>Mea
L-cgwZ
nd1qi*T=nS
!+nR1gi
!+nR1gi
D8 eA"
MZCd!0y
3}t?2&
d3?$kf
Ba:=yM
NSJEV\
E8d2?%K
0=EAGZV8*
c~TVF4*;
[v81MU
4/\YNli
3}t92&
L-egwf
3}t;2&
L-mgwj
MZCt+8a
n2#1*>yea
n|+;M;N
|wAD>y`H
3}t52&
f3,&X8T
MZCt;8aVT|A?,0
n2#1*>
3}t#2&
c~TVF4
n2#3*>
3}t+2&
B|wA:H
MZCl=0q
E8d2?%K
T?UU0
|95(zD
0P?U}
Y3n30j
Bk:5{F
Y8+Zk5+.
29Q;uA
AwY~]q
;=enx1Q
GF#e;?e
a;<onp0Z
y$_F#e;
a;<onp0Z
2?$,S]
%]8dS0
T?UU0
Ca:=~M
k5^hdm
Y3n30j
Bk:5{F
3}t?2&
n2#7*>%ea
gOdBE:
+}3}t52&
r5ie Q
L-egw>
l3$&X8T
3}t;2&
h3,&X8T
M33|1v
3}t#2&
l3$&X8T
`4j~Xp
G|wA:H
F7/l'=
EAGZV8*
G|wA:H
kP>p8%
t3$&X8T
|wAD>#
k5 QFEK
MZCd10y
M33|9v<
B|wA:H
8pJk5 y|6#@
M33|9`m
Rk5 yg
4/\YNli
^'/ Q7
5nC1v
_Kp\h+
=]V&:,
;=enx1Q
6-LG0R
La$8Qc
0x(eX{`
HOaeao
x5\MU~
Y}X?Iq
G4H<^eag
H=]eafgY
_Kp\h+
\s@Y3n30b
Ck:5xF
PEuQ)3*
AF&e3?
H*s1!%
nd1qi*T=nS
6-LG0R
La$8Qc
%]8dS0
HSHeag
La$8Qc
l+4j]/
d%! ;'
-z@0B+
w%n=,N=
jFC:6Aa
~CPe7y
ZG0'kO!
nNDws,28
ZEOoji
AhjVB:6
<3:L>t
HDM~w=)
`T=)KR
wTI:(w
/&QKga
LQ}nfL
&YN1`
gpA:!\
jLC:66
I:6&m=
R#>lIE.:
]n'M;[-
< &5"T
wYUT?Iq
qP>p8B{
#? Q;'
4$@67R
n|+7BSN#
F4JvIp
|wAD;M
)33|;p
{4JsCp
%s=9YS
c~TVF4
!ZCd!0y
933|%4
Y}X?Iq
x3$&X8T
n2#%*>Eea
\;V4b~Xp
L-igwV
}ay+TPSj
~rw?$$
Xaoq3:L>:
r-im0~|%
3}t12&
L-igwz
AZ[{=;MU
4/\YNli
RyB|wA:H
M33|;Z
]U-7'
c~TVF4
#; Q'E"
3}t?2&
L-cgwj
E|D@'~
n2#?*>
ZVF"*@J
G|wA:H
;EAGZV8*
n|+?jEN
tEAGZV8*
JDxW(S
c~TVF4
k~TVF4
G|wA:H
#QX5&!=
*cT4JX
(v"A5R
`4yuNp
|wAD>8
n'c./+
M33|?8
bm+./3
nxb./3
Y!-RTN-
EF<9fJ
MZCt;8I
n2#9*>9ea
n*>9ea
c~TVF4
MZCt#8I-
r5ce Q
g*4|L$
8'_n2#9*>
?4/\YNli
~rw?$*
|w?2m-
n2#=*>
3}t?2&
HJ!eam0
M33|!U
6v4/\YNli
VlgOo.
c~TVF4
Y}X?Iq
Hzw{w7
?R|,7e
FkQN*_
Y}XqAq
Y}X?Iq
H!~{w7
3Y{/KmB
La$8Qc
ip,|95
f0El~o
\s@y3n3
'\Z;JzzmX
+*j}_Z
^Kp\h#
E8d2?%K
La$8Qc
?3:d>t
!+nR1gi
E8d2?%K
A!K\%n
NSBEV\
4I:aX.
HF'e37
Ba:=yM
E8e2?%K8
Ck:5xF
=DY}Tq
R;GY6$
<3:d>v
|ps?R
[RY{]y
Y}XqIq
\mG5hb3
?3:d>t
ywhYEM
0h0U}
r-}m0R/\
wP>p82
-]?%@l
c~TVF4
*n2#!*
G|wA:H
AF&e3?
PEuQ)3*
D8 eA"
La$8Qc
Dqu@)"
a;<onp0Z
Dqu@)"
bxB;.0Y
3H7'iw
JZETaI
JZETa}
E8e2?%K8
a<n30j
Bk:5{F
6-LG0R
La$8Qc
],'s<K*
*rPXy}
La$8Qc
o@;k|B
%{+~YS
ZCt%8aD
Uh|OnH
iZM7F4
7%@!j~I
!+nR1gi
5nC1v
;=enx1Q
^KpTh#
J>'6Dqu@)"*r~B#
5nC1v
%]8dS0
ipDs95(rD
'|F)e9
~>dBtZ
r._MR
J>'6Dqu@)"*r~B#
Bk:5{F
Ck:5xF
Bk:5{F
%7t=CI
bxB;.
r3,&X8T
w[pC2RiJ
%\Y}TqYq}p
Y}X?Iq
AbI:@`
<3:L>:
*j}_Z_
Bk:5yE
JzRmXMO
gd7r^8
pQQsea
3jlP7q
=,XNlZ
v}+7uK
-5nC1vi*Q
6-LG0R
La$8Qc
PEuQ)3*
~t3,&X8T
;=enx1Q
FU!Jt,
'|F)e9
Bk:5{F
!+nR1gi
D8 eA"
Ba:=yM
29Q;uA
E0i5Np
n3,&X8T
v8"on$
L[S|`K
;e(XL
ZCt58I
%<Y}PqYq}p
%lbY3~
29Q;uA
i.I=jU
7(Y,,.
,in|+3
5nC1v
!+nR1gi
m> 6Dt
;<enx2Q
J>'6Dqu@)"*r~B#
RO7\a
'|F)e9
s95(zD
pVI*2_
5nC1v
29Q;uA
g-BXF#e;??
a;<onp0Z
-5nC1vi*Q
NSBEV\
Y}XqAq
Ck:5xF
ol0yb@
'|F)e9
bxB;.p
s95(rD
s+n5dK2
c8'eA'y7
i\mO5j
ZVF'*AJ
~}+3~o
Q,yM?(
=8Y}XqAq
=q3:L2t
u&Qgea
xS;=onp1
D8 eA"
|iF$yI
Jt,.;l
:%<Uea
hS!E})
A:6I,:
Nli'/2
$york>
^fU48k5H
%^G:H86
Jt,.~!
BpzfUu
%^G:HA{}#
`w%nq]X
fUI#k5H
%^G:H@^
`w%nq1
;<enx2Q
i.IvV:n
i.IvV:n
s95(rD
E8d2?%K
%]8dS0
~VGLaE
],'[Wa%
c8'eA'y7
`E-,oLPRO
wY}X?Iq
R;G9^;
E8e2?%K8
ZV8^R;
|v Y9*
'tF(e9
1xIW8*
tg(-.gY1z|hP
ZV8^@3
@R3fR8V
Ck:5xF
Bk:5{F
'tF(e9
,Qn|+a
`4jeop
:C|wA:H
4$@66R
:C|wA:H
y$@>'R
j3,&X8T
ZCDS0Y
!+nR1gi
;=enx1Q
ve+7=K
to(-u^*,z|hP
k5^hNh
5nC1v
-5nC1vi*Q
'|F)e9
[{s*H`
R;G=^;
m> 6Dt
ol0yfH
dp`1@q
!+nR1gi
;=enx1Q
6-LG0R
La$8Qc
A!X\ea
La$8Qc
!+nR1gi
29Q:uA
5nC1v
Ck:5xF
!+nR1gi
;<enx2Q
|wA,f5
Ca:=~M
D8 eA"
Bk:5{F
Dqu@)"
Bk:5{F
;<enx2Q
E8e2?%K8
SZK1&J
%]8dS0
Dw#Xe,
%]8dS0
bxB;."5Z:
D8 eA"
b;=onp7Z
Bk:5{F
R;G=^;
IRS|2}
29Q:uA
R;G=^;
IRS|2}
Ba:=yM
Y:r$9v4
Bk:5{F
6-LG0R
La$8Qc
'tF(e9
|wA,<T
%]8dS0
Ca:=~M
IRS|2}
U4ah;!
HF'e37
Ca:=~M
PEuQ)3*
Ck:5xF
t ~UF#e;?,
b;=onp7Z
dp`1@q
!+nR1gi
]$-4Gh
|wANLxE
r5ce Q
1xmW8*
ZV8\Z;
AUt<3Fp
SuoTGF
33|kz{
,Qn|+1&dN
N3,&X8T
ZCt{8a
ZCDk0Y
:bCZV8*
z3,&X8T
zRaZM?
`Jtfj&/3
u@9q30
ZV8A2Rr
2<3~%.
u@'q30
V8*?hOw
E8e2?%K8
'|F)e9
6-LG0R
La$8Qc
%]8dS0
BL%9yv
I]:dao5
'|F)e9
s95(rD
iZM3Fb
[.Ui2uS|_~
DPZp7/
>It,5S
iMW.$Q
MU>-<[b
,Vg]zzV
#xQxca
Yc$P?:
.T1D/q
LOb}o8
nSARV8t
mK+C=Sgw
=w^NlpD
Clpe4)
x5=zH^
>ra#86
`M8z$wq
A!_\]a
yuXEVT
f:J;|i
Ca:=~M
6hQa:J;|i
;<enx2Q
^KpTh#
Ca:=~M
NSBEV\
d37$C$
s95(rD
Ca:=~M
/~]o:-W
5nC1v
HF'e37
dnZ1YX
a;<onp0Z
^Kp\h#
IRS|2}
IRS|2}
vq-7=V
Bk:5{F
s95(zD
,HNX2O
IyWf)u
H+Oq(QC
ej6rJy
8ivP@T
=v%nxP
1U=F\Nl q
!>7k5v4
=5b2:z
l~%n!{
7vwAi&i
iZMcFK
\s@Q=n3
|]r?[P
r95(rD
IRS|2}
{jJS|MT
%]8dS0
La$8Qc
Ba:=yM
+^R9B>
Ca:=~M
1hG4S8
iZMcFcBs
Ck:5xF
PEuQ)3*
uO/>Z[
ee0YP8m
iZMWFy
Dqu@)"
;JzzmX
'tF(e9
-5nC1vi*Q
A0c}]>
'tUD[
F#e;?
b;=onp7Z
6-LG0R
La$8Qc
5nC1v
X^pr[I
Y}XqIq
28Jnw^?
!+nR1gi
;=enx1Q
7[*W"xJ
;<enx0R
Y}TqIq3x
r95(rD
'ssN%4
D8 eA"
+^R;Jp
La$8Qc
8S [V8
`m3$[}
Bk:5yE
R;G=_;
IRS|2}
c8'eA'y7
8q_K<
IRS|2}
f0Ei~o
29Q:uA
gN:J;|Am
aZ:J;|i
29Q:uA
rxB;.>/{?
=sXNlZ
z7nC;Q
Dqu@)"
L)43,
F#e;?W%
V=5aIvhu,
iZMcF_{
%]8dS0
6;?`}%
J?/zXpE&C
nd1qi*T=nS
/TA]41
Zp5<n1_
%]8dS0
=;XNlZ
nd1qi*T=nS
pAQJga
r46a~|
vQ+:~o
>`S*9W6
Y}TqIq3x
002U}
8sOs>
xW;=onp1
IRS|2}
8sOs>
_(:J;|AH
zRaXMG
bxB;.
*j}_Z_
Bk:5yE
R;Ge\;
IRS|2}
ol0yw.
'|F)e9
T%jvTP
8sOo>
4 zr**G
;<enx2Q
!+nR1gi
Y}TqIq3x
q95(zD
!+nR1gi
8q_K<
T?vNu,
m> 6Dt
>*_=]XNlZ
i.I39L
vYFH/CaF
iZM_F]0p
RSr]8V
#C)]ug
Ck:5xF
E8d2?%K
PQOkVjwr
oe:L.v
PEuQ)3*
bxB;.
0n3:d6
Ck:5xF
%]8dS0
xW;=onp1
La$8Qc
k5(yN
y:J;|A
Ck:5xF
ZKxT"q
Ca:=~M
F#e;?:
a;<onp0Z
,YY{]y
]:J;|i
'tF(e9
29Q:uA
NSBEV\
Bk:5{F
nd1qi*T=nS
N6~>"pe
x|OGx/C3
R=O)R;
'|F)e9
Dqu@)"
bxB;.B/Z
R;G)];
ywhYEM
,kF?0:
6-LG0R
La$8Qc
+'S [V8
1hG4S8
m> 6Dt
a;<onp0Z
X@'^0e
;<enx2Q
+^R9BX
PEuQ)3*
P4-}ws
^KpTh#
8z_Gnh
)0l4U
&o(b2=
vQ+:~o
bO!&mB
!J.|m}^
r"MD@
iZM[Fm
E8d2?%K
7*MJXy^
X{%dkJ
6-LG0R
La$8Qc
;=enx1Q
!+nR1gi
!+nR1gi
ug)%*r{
b;=onp7Z
ee0YP8m
6;j{E:6
J>'6Dqu@)"*r~B#
SUUUGF
'|F)e9
fbGS|1U
#C)]ug
;=enx1Q
29Q;uA
3j"cO^
'tF(e9
<3:d>tB
w3JDCuc
zRaXMO
E8d2?%K
MUy93|
Bk:5yE
|xs}r~O
Bk:5{F
m> 6Dt
L)43,
+*j}_Z_
ywhYEI
!P1)1b<
NSBEV\
29Q:uA
Dqu@)"
N'|3Qj
7%@!Vv
\s@i9n30b
Ck:5xF
PEuQ)3*
ee0YP8m
5nC1v
;<enx2Q
IRS|2}
eae0YP
oe:L6v
^Kp\h#
6-LG0R
La$8Qc
3jX*+W
Y}TqIq3x
bxB;.
!+nR1gi
s@=9n3
;<enx2Q
=]XNlZ
Ca:=~M
E8d2?%K
Dqu@)"
MUy9+|
R;Gm[;
Y}TqIq3x
;<enx0R
D8 eA"
6-LG0R
La$8Qc
9-a9Y
k5(yN
DV?&P8
29Q;uA
E8e2?%K8
29Q:uA
^KpTh#
U31zjJ@:6
PEuQ)3*
Dqu@)"
d37$Cx
1hG4S8
21U~|dFtP
8~95"|
f0Ei~o
7%@!Jv
7^R9Br
%]8dS0
'tF(e9
%]8dS0
!+nR1gi
iZMcF.
Ca:=~M
$CUI@sEVT
vQ+:~o
u95(rD
S<[@Bl
a;<onp0Z
a;<onp0Z
%]8dS0
D8 eA"
29Q:uA
3C)Mug
@3X?6M
Q,!]IicHX;
E8d2?%K
'|F)e9
ee0YP8m
D8 eA"
'|F)e9
29Q:uA
aw;/d
N'yp%a
`CIz|hP
Y}XqIq
Bk:5yE
29Q;uA
vU+7uL
4 Rg{BB
l6-P)`
;=enx1Q
ee0YP8m
s^V1Vb
vQ+:~o
iZMcFe
%]8dS0
)Ki#&M1
-5nC1vi*Q
8q_K<
E8d2?%K
MU7[uoh
)X(U7
+o35ni
6p=T8*4<
}xyU8*S
aZ?:UV
*j}_Z_
y;:d*v
<3:d>xC
k5 AEea
5jb(HQoa
gJt,wP
i-!n3Q
hNliS<
I9={5i@
T"&5^n.`
B)F~mV@
%w%no8
@ &5*H@
<3:d6v\
,)P2.
Ot,ZCSR
I>:h8t
9t~t2=iN
'BliS\>MXN
.ED9FO?
37xYW8*
[Nl}it
lRnfV8
wAHLTG
+o;eni
00x)w1
H<|w=
N%m| :
$!l2f5
Q0o3"x
56m1u%
cYG:<8
dA:6WR
r# A%
g![`8'\
MV8^T3
:d*v{a
Ep q:*
ajt,Z&w
,n3<`O
khb3:0
T"&5^n.c
@ &5$x
MUy8!4
H{8|w55L
4MU/cQ
A}N611
y"4^
|wAF0`3`
hwcA:b
xwcA:J
RCS_Q(
1hUW8*
=^G:76g:-
JNpwOi
`{vA:B
ZVLXZO
1HYW8*iG9
)Oc|HX
^GFXq<
X=oq3<`N%hZ5:
ma:D}G`
G_O)k%r:6
-dRbV8
Orz?Z}
0\7a
SINpKQn
Yi#u)q
H5Jq3K
4ZiUe
A:6fg%~
4[ig!R
k4q3`E
km-Ay#
Antivirus Signature
Bkav W32.AIDetect.malware2
Lionic Clean
tehtris Clean
ClamAV Clean
FireEye Generic.mg.74ec11c582f37ac0
CAT-QuickHeal Clean
McAfee Artemis!74EC11C582F3
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.Agent.Anya
K7AntiVirus Clean
BitDefender Gen:Variant.Tedy.256405
K7GW Clean
Cybereason Clean
BitDefenderTheta Gen:NN.ZexaF.36106.EvX@ae@SePoO
VirIT Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/GenKryptik.GDOD
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.Strab.gen
Alibaba Trojan:Win32/Strab.6129fe1c
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Tedy.256405
Rising Trojan.Kryptik!8.8 (CLOUD)
Ad-Aware Gen:Variant.Tedy.256405
Sophos Mal/Generic-S
Comodo Clean
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
Trapmine Clean
CMC Clean
Emsisoft Gen:Variant.Tedy.256405 (B)
Ikarus Clean
GData Gen:Variant.Tedy.256405
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=87)
Antiy-AVL Clean
Gridinsoft Clean
Arcabit Trojan.Tedy.D3E995
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft TrojanDownloader:Win32/SmallAgent.AW!MTB
Google Clean
AhnLab-V3 Clean
Acronis Clean
VBA32 Clean
ALYac Clean
TACHYON Clean
Malwarebytes MachineLearning/Anomalous.96%
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Clean
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/PossibleThreat
AVG Win32:TrojanX-gen [Trj]
Avast Win32:TrojanX-gen [Trj]
No IRMA results available.