Static | ZeroBOX

PE Compile Time

2022-08-07 02:22:00

PE Imphash

0e94a0a6be63b43bb4f845b28580c999

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0000b888 0x0000ba00 6.46618714719
.data 0x0000d000 0x00263920 0x00262600 7.99864827161
.pdata 0x00271000 0x00000600 0x00000600 4.39856685164
.rsrc 0x00272000 0x00000b78 0x00000c00 3.03149929101
.reloc 0x00273000 0x000b3eaf 0x00019eaf 7.88778041951

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x00272528 0x00000128 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_ICON 0x00272528 0x00000128 LANG_ENGLISH SUBLANG_ENGLISH_US GLS_BINARY_LSB_FIRST
RT_MENU 0x00272678 0x0000004a LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x002726d8 0x00000138 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_STRING 0x00272b30 0x00000044 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_ACCELERATOR 0x002726c8 0x00000010 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_GROUP_ICON 0x00272650 0x00000022 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_VERSION 0x00272810 0x0000031c LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library KERNEL32.dll:
0x140001000 GetCurrentProcess
0x140001008 VirtualFree
0x140001010 GetModuleFileNameW
0x140001018 GetCurrentProcessId
0x140001020 HeapReAlloc
0x140001028 LCMapStringW
0x140001030 WideCharToMultiByte
0x140001038 LCMapStringA
0x140001040 GetStringTypeW
0x140001048 MultiByteToWideChar
0x140001050 GetStringTypeA
0x140001058 GetLocaleInfoA
0x140001068 LoadLibraryA
0x140001070 HeapSize
0x140001078 IsValidCodePage
0x140001080 GetStartupInfoW
0x140001088 TerminateProcess
0x140001090 UnhandledExceptionFilter
0x1400010a0 IsDebuggerPresent
0x1400010a8 RtlVirtualUnwind
0x1400010b0 RtlLookupFunctionEntry
0x1400010b8 RtlCaptureContext
0x1400010c0 EncodePointer
0x1400010c8 DecodePointer
0x1400010d0 FlsGetValue
0x1400010d8 FlsSetValue
0x1400010e0 FlsFree
0x1400010e8 SetLastError
0x1400010f0 GetCurrentThreadId
0x1400010f8 GetLastError
0x140001100 FlsAlloc
0x140001108 HeapFree
0x140001110 HeapAlloc
0x140001118 RaiseException
0x140001120 RtlPcToFileHeader
0x140001128 GetModuleHandleW
0x140001130 Sleep
0x140001138 GetProcAddress
0x140001140 ExitProcess
0x140001148 WriteFile
0x140001150 GetStdHandle
0x140001158 GetModuleFileNameA
0x140001160 RtlUnwindEx
0x140001168 FreeEnvironmentStringsW
0x140001170 GetEnvironmentStringsW
0x140001178 GetCommandLineW
0x140001180 SetHandleCount
0x140001188 GetFileType
0x140001190 GetStartupInfoA
0x140001198 DeleteCriticalSection
0x1400011a0 HeapSetInformation
0x1400011a8 HeapCreate
0x1400011b0 QueryPerformanceCounter
0x1400011b8 GetTickCount
0x1400011c0 GetSystemTimeAsFileTime
0x1400011c8 LeaveCriticalSection
0x1400011d0 EnterCriticalSection
0x1400011d8 GetCPInfo
0x1400011e0 GetACP
0x1400011e8 GetOEMCP
Library USER32.dll:
0x1400011f8 DispatchMessageW
0x140001200 DefWindowProcW
0x140001208 EndPaint
0x140001210 DestroyWindow
0x140001218 TranslateAcceleratorW
0x140001220 GetMessageW
0x140001228 PostQuitMessage
0x140001230 DialogBoxParamW
0x140001238 LoadCursorW
0x140001240 BeginPaint
0x140001248 TranslateMessage
0x140001250 LoadAcceleratorsW
0x140001258 RegisterClassExW
0x140001260 LoadIconW
0x140001268 EndDialog
0x140001270 LoadStringW
0x140001278 ShowWindow
0x140001280 CreateWindowExW
0x140001288 UpdateWindow

!This program cannot be run in DOS mode.
`.data
.pdata
@.rsrc
@.reloc
bad allocation
Unknown exception
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
2HMz5FKEA4zndOy7RJbFRLzt9adQz0Pb
gc1=Kw
gVl\d}3
=[n"$|
6V~UY}u
fffffff
fffffff
ATAUAVH
A^A]A\
WATAUAVAWH
@A_A^A]A\_
l$ AVH
WATAUAVAWH
A_A^A]A\_
fD9#thH
CfD9#u
fD91u:A
Hct$PH
shHcD$XH
` AUAVAWH
fD9|$b
A_A^A]
UVWATAUH
D$&8\$&t-8X
@A]A\_^]
LcA<E3
WATAUAVAWH
H!t$ E3
A_A^A]A\_
VWATAUAVH
@A^A]A\_^
L$ UATAUAVAWH
A_A^A]A\]
@UATAUAVAWH
e A_A^A]A\]
@USVWATAUAVAWH
eHA_A^A]A\_^[]
x ATAUAVH
@8|$Ht
A^A]A\
GetCurrentProcess
VirtualFree
GetModuleFileNameW
GetCurrentProcessId
KERNEL32.dll
DispatchMessageW
DefWindowProcW
UpdateWindow
CreateWindowExW
ShowWindow
LoadStringW
EndDialog
LoadIconW
RegisterClassExW
LoadAcceleratorsW
TranslateMessage
BeginPaint
LoadCursorW
DialogBoxParamW
PostQuitMessage
GetMessageW
TranslateAcceleratorW
DestroyWindow
EndPaint
USER32.dll
GetStartupInfoW
TerminateProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
RtlVirtualUnwind
RtlLookupFunctionEntry
RtlCaptureContext
EncodePointer
DecodePointer
FlsGetValue
FlsSetValue
FlsFree
SetLastError
GetCurrentThreadId
GetLastError
FlsAlloc
HeapFree
HeapAlloc
RaiseException
RtlPcToFileHeader
GetModuleHandleW
GetProcAddress
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
RtlUnwindEx
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetCommandLineW
SetHandleCount
GetFileType
GetStartupInfoA
DeleteCriticalSection
HeapSetInformation
HeapCreate
QueryPerformanceCounter
GetTickCount
GetSystemTimeAsFileTime
LeaveCriticalSection
EnterCriticalSection
GetCPInfo
GetACP
GetOEMCP
IsValidCodePage
HeapSize
LoadLibraryA
InitializeCriticalSectionAndSpinCount
GetLocaleInfoA
GetStringTypeA
MultiByteToWideChar
GetStringTypeW
LCMapStringA
WideCharToMultiByte
LCMapStringW
HeapReAlloc
.?AVbad_alloc@std@@
.?AVexception@std@@
.?AVtype_info@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
kBEZ]V
F)><b6z`
]659+C
`_]T~_8&
_)I>{3
:J^X:L
!hk9HY
;s/Wch
*"u$(/
e|LxVy3
=jTj)L
*NC^0W1
+H}8D*\
( *ZZt)}
ILg7UZ
Pn/BQP
25HPmMZ
,"D^<o
y)}9T#
DXC^n(
-_Y=E#
CDmoD\
KU!3Y+
xI4|?Z
miC-'p
||a8\'
-93]?P
FZcn7I
3i\QdO"
Qa`4+cq
L~@OY/
R(0u0e
yk2ghM
IUVF)b
^enpF|
5,f<a%
$hZ2%Jg
p<!AGs=
-:4/6)
Z"C$qk
gc->q|
JVFw-N
B/rm2:
\J*I!o-`
}qY0U%
NB_-e,2
$+du(
VFU;+6
t89s i
c!Yq6-
`t4<Q*
Tw}r&RLV
T[~xv,
{!q.mO
;MIdZDJ
/n5aSn
3#nh9L
=02S9@
@4`g-:
)-/|G[
a\UaKT
]nd$t`K;
m.9pgu
.fc<pky
d*)iXsq*
NbI/T!Z
Xi_|#X{[N
pUe';!
SA_9=Ylz
$<*\ECM
Pml#4\Y
$p`"U~+
eWAI86
Z*OpC
JL:lSy
vbzPB.
I4K:2av{
tml=:i
^E@".2
J5KoE*
WFrNu9
21b1F}
Tk=^0cZ
ig~'rI=%
34lX~.
TMnYQ
hU{4 cK
{f\SO[
xA^fQ:
{x5UNB.O
V)<FFA
}'s$4|
hv70TI
0#5a_n
TU""_?M
/Vm2F
OMZx?K$
Ofe\Q>
XLTpt=
c+|E)?
*<G;Jr
H*o"p)
hdJs?{3V
!;Hxw?
o\RAHv
x^&$@Q
S(0;&hJ?
esJC\Oa
ud|n~Q,
R,<>BDi
<{b]/ef
8uER2Y
7ZG.M\<
G)mWA"
&;ZEr>
T`7D%R
D '92`d
Bs@Mb<x
?q-9D4
2:9P,o
-oq@-u
)Zty$7
Q(^1qb
SM{eeE
Pa{p;S
+KxTe
Zms5/G
vN'xD7K
t-c`V{/
i[M-Qj
!t@b]Vmd
8:qMLb
pH^5r@
cpc!=|w
\K?WJ1D
o V(|_
dZpr?&
yvYHoP
g Q?)Uq
>4g,Fu\7
5/+6^4
l;OZ*^
,?;x}`X
OCrN<D
Sd\`]X
,lMT6|
0&cBC2
^xSC>@
TlW|fM
A~~T6
)Z(8qF
B_a {
f&Xq*-
r)HjS
&~g%R<P*W
rF=C/h
!05F@s
u\gfT~
W"$Y6T
\hi.Cm:
f_P+u<N"
_dKw09
nSSEji
cA9,=%
$xzt39
(nE+s4
&OnAtQ
6_+]7a
*XO_v7
pLq;e&
N*Gx$8
1rJW;D
D"p_'5
2u^Ozs
Eo5-'@
t9~bm?u;
?p-iO(
j2\S@Z
'VF%-S'
#_]1j8dn?
+;~[hOLe
FuHuk)$
^iYB@2
TS6p88!
.`}y=e
C[7}O
uL[a"[
i$<X-#
/N}Am~
ph}F<2ff
F|:Rai
<Tx9hSb
<90K:
3'MM@R
B4p=[s
o&ujJ
c*A^
oq)Px1N
#{eUZ2
%00D4I
$) _!p
=oP;%
Igm&4v
R?fL)&
KY10NN%Z
@$(dA3
,V(vmL
|.l:Lc
$"*M!j
Dhdkm%
B/U>A8u
C4-Gpm
%I]U}aNv
.BGO5h
dj8A|r
('A<%pK
mGY79z
s}:-1}
2.I51[
Y)%{4Ey
M0;72T6d
]28=o
+@4P:9Q
>>h%BP
z24.1_
nD5,ko
V^dUi/
[)Z0Ds~>\&
+?gz,O#
WVkE`y
y)ebBQ_b
fGWST)
taLosdP+
D!mHMQ<'
}t83*%z
,4uti<W
wL\FH
eZY7,{5
"5|V+5E
-?QrG_
8[H-%d
w,nTy5Z
i*OAlI
^uBi(m
k"g++_ez
n8~dH`
gL|N1"
S86em.r
VTA4J({
MXjRVd
AGbtS[
"ZWY-=
']U[U?pA
S<Rc6^
awwT|Ei7
!bCHI
ms u1g
Z_a-224
)7VG2Z
#1a:.X>
9UF,y<
I9Ws^f
`eX.K6
bFh}D"gQ
MbT]Z]
[mAnJ'n
yZ;3RN
#{BBy
C"iD$`
W1A^$1\t
HN7B/-
bc+$|+xx
ppq,Rk=>p*
62&&1j
)&lbul
%(v;C9g
q)y\=&
4e`Z~+,{
x:|8)p
IvHKkO
24;dH*
++ +i%$
aUbbIS
PX%O?a_q'
wLS!h*1
^Z2Og&
h%k;Q]
mOms<9
Jb.C2)
tJBGud
TG`]z3
Rs9VhE
9s0&2J
*\zUVZdf
C7uei!
,f.PGj
hS^d[J
x[5S-|
Z"Ll'P
Y"G~[f
kJ-(=_
MQR*&n
OyeHMp
f?l/cG3
<3_@Dq
+q8LdL
D+chu+l:
m:7.jl
N&.KWi
\RgZfL$0
3[j?0+
\fd8Kq8,[
R~)w[D
H^uoU&&
!1E4N\
VI'r{b
4cdl@^
z_kgX*
p.he./
90I_FW7i
PVYW:Ld0(
,b>*"@
jM*/^
X{leHp:
:6r8YK
[r6["'
,k_u"<
TAbqq"=
bh|$(lh
WM`Ap|
Xl^G\ 617
5@'SCpt
sqr8t*
^PU"}+
l+r-kQf
N"v!3z
Q&Kya<E
/$}] !
,!S=Ipnjim
[)l/g
;,dyBu-C
1_]Dfa
T'!oA"|
\^+9T#
gI[P\kY
JXUezARn2
UM7QE,:
-FKU%Jg1
k+P?x11V
!~. ]!
m0)_k%/
Lx\o9:
n]7j$"
j`5*b:E
b`#.YS
!Usy8*
kjvfxxz
H1R=.<
Qe!x1Vv
3z3)\q$&
CgFYx/
G^PiiVE
Ds98*6o
JGF@4L
\{%WY!
gAgn3v
qBHD@f*tn=
N{"x=}
g+r,:**
LP+mI;
]&T}l"
mZ(S\_H9s
Kg{Wjl{
tw.v#
*c=*F,0
OQC#Qj
I;VEskz
tk,_4c
Eepuy
">@C=[
49xiqD
td6AEV
X]5(FS
3zb>s5^A
B bSN0T
q!X\j!
C]U9_06
W!SwU^
E^/IjXg
y@-/D.
axauGg
z{i3Y}{
7j^NEj?o
wr@_kR:
F2!i]W
Zdzk7G
~Rj}hR
G:,q!'
vTe94#UmxD`C
uH=Onv5
vU`6sf
O;i ~Z
{g9.[ucM
7[0#2d=
)'&B2*V
vHx:cQ
8A9-cN
Ts3b$B
\kW;F3^
a8s1l~
\Je)5(6u
)"Md5q
{g"40l!
\K/U@,
)82kqJ2a
_A<e5,
}}*&Gv
6QOto"
mZ3$CU
!V^kI3
AG1;(a
$)$Kpvv
r5P#=2
'hS%sz
YH]C*N
t-w#5/0V
5Q*c^,K
h>2%'
@r4 vL
VK['O0
3x+ogQe8
l(Hsjh
]X?)i.6<
CY_Fc5
#Kqs8Awr
4n*H;79
]Lv~7A
V`JQ&
5gRx1nK)Z
Pz2{_&
vN ~-f
tFA_Sw6
"vR'Q
L'0&~BT
qmZ|V?>
x=V~,\Yu
AbjN8Y
o"nt~X
#:7~rl
Vq+St
nh\{|b
zA`j.A+
:X&|I?i|
v3]4p)>
1fAu"?
d!OJI.d
L"f{cA
Xw>8P1
rL\b+Ru
~(0B\0lwQ
fs\8PEV)7
.ui j$f
gZ?5FL@w
L[De&P
|Z[6],&
,P]D}j
n=(U/+
3[s~;S
*6/;[^
.{{TLv
WShL-;
+fJ.ge
T`!JKG8Q
9g(kC6n
&b=4VLu
0,ewsDp
.} }e'
GuACp`
Jc!e$U
Y+aq):
2p1_ti
&|7.a.
vb:"S!!-"
Zo.QS%f
pEe8`c
K^nTPr
CRP[;'
w9={>K9X8
=SQ)*(
Xz(N'w
n%_MF;
t}-9eb
Lbjr7G
+zT\x5
a{jm-+
*%IEcs
P$d3<fSu
w6]&d~R
%jAAq}
.*|'_G
!;;UQp=
qw2}d8
Qq)yHlL
'aX4;y#hbw
A<" GI
"]oe/]
&p8x#,{
1lY8)q
BcZa^Q!&Xp
+t&e@fZ
>;*u3x
X"wX#1
1h,676
n&1az*
R9V3mS
}z0=3P&O
IOFog9
2G2DE
Gf8,eY
#iW*!r
gvcK~#T
hdd |-\-6+O
8G~Bxp
\F@{&1
03QfnG
=AmLwM
_6 L={
3!\~B-
s+NIQ
;@3v9M
gHGXF1E.l\
1c^Bsu
;??d:Y
Ll'%[@
l??B=a
[JWPpHm
W}=W~t
a'h.{[;
ys:@<R
.lU{KG
9&\g\(f
]i_SYL
in+Ply(
7=!/_O!h^
odBA}I.
sXHBD
A#`'R-2LfOZ
Ivm+_~
(;sy.p]
Fan~kj
O87Wy(
V 1=bPVj+H
D&q^DE2
Ng7%o3
Yx2{X
cTPPH"0IH
W&JO)
+iRN3L1A
K_aSjfB
mog0,C
OvnQix)
3|?FnPX_%$
h|}Bw7z
+kFj#mY1e
Ze*(NSG
NN2r?S
_mFUTo
!g^& x
|{6Ml6|H
V"/44j[
GBk:v
pA,qRT
kd{vS@
[IK'>h
?J(zWV'
;R@j'uK
X#'M~]
nLJpe5
~A/TLoe
*n6nY3
;wYv)uq
%lnKK.E@
^dG3pP
BQ*^Bb
H3XfFC\
jGoj!?
8s($mU
F WAwM
%)amKL
Lko^dA
[3}!n$v]
wbQ@H
SXd/lx#
u28SRUN
z42?Z;[
|%IH]EC
~i$s)[
)!f;'=H
#?*C&
L"sj>q
&\5F.V
lQ4T9E
Arf-a]
_;q<8+-
m:<J^YZ
HL+j2
;y&6O#
k> z0x
fLCr@oGR
orQ /2
1}xlh]
_+,a#!
GyR}hur
IGNOu6xX
vFj$J1
%-}p/h
%E@XQ1
`t4O*E
.'lsv>
hfYZ3o
VZ*9_X0
G{Ik,/
[- 3tl-
"0OWC{
K$]t@xD
z;<TOB
*>4kA[O2Y
NHG`I.C
qyPjSH_R
<n"c,K
;+gK6$
1/6j^q
dT[4bv|
I4S2in
FhQV"
!3Jpo[
`w`I'eg<]
DHRo;)
8lrw[U_
U69-@5
1Gmz&ts
{[1> =u
quh"f_
o&L2qh)
PT%8m}R
j.3Aw!
VU^Hm*
/+WTJb
tBa&aW
oOUxf1|
XrTg*>
UP^<[P
ItFM~l
z=Go,W
xO>UK1
8y4utz
PcU/;v
Cr0<Td:{TM
GbL&<B
syNPp9.
@:_\BY
nWuX)-V
Z"jD/Kj
V#~/O
G2bs=x
|gT<oA
}#C{W72f
8qEkSx
gJ3 gtT`
V2$S!,
I@L@py
Wq9F'0
rCy\$_1
neC\s0'
BLbUxs
{5(NM,J{N !
#kCzW6
.oW<(a
)&Ee_i
d/ds0?
Fms7=7
qL>}C
n``p][`'
+dp#I#]
("/oQP
)ybdTN
+a[xQxU
T*x{[=;!
HC8'Z*E
a;_9sv
u)zl\n
NK}Z\"
K{mpU"
gjQ[fq
i+en8m
:C?}I%^
HF1\_8
R(,5zZykC3
?fsOqLl
y?$IBx
T{|D{F
'RZ]"k
K82yksX *
;_4D+*
d#{$|G
_jW|l
y3X+3Y
`+h_<RY
tx2,_o
EKK6;C
J!_\.L
m9l<.y
w!]e=u
]@)kk;
i?Zg_^
XOKXfgfW
`x9JZt!
'KQE!k1
m_Y5A[(j
w(V+WQ
lkD]UF
Gx:8C\m
aFsch<
^sq9*A*&
x4L-Rt
z>O]@7
pn6T[`?
u|n)^%
X3%kmk
QR"Ym}K
U.'oyHu2
x-c!_6
ta'="d~
Cu7Pt6wU
IMH^t~kO7
ie|o0r
gN8<x!
:,^28{
L~bIP.9
s!WkFB
nQs(G
+%#-'5Z:
SkdkXn
nmSqwR
bmfIm'
Aud;9#hg
U01d3cS
):zoZ"e
w,+E<Ya,
$+P7/.
)4p.I
GQ_$2{
3>_K'Z
.bJXa[
I9zBx#*x
<,C,j@
\VJ\'O{
)&fn~1}
Zo-PTlAw
[bhj|$
8C/u ,
S+Ex}6P#
D$ulf!
-}^J5C}
d>Z]C~/
CN+t"e
8Wg>=n
1uo}a:D=
d?+AWA`
=8Cj{n
0n(.T-y
Q{Z?^p
WYFE!}
u}a?<#
(Crcr|u
0 m1>CPY
HtOew=
ct[WRMLl
@v}A}}
jlVa=1ebE
~0eXDk
u-I*,C
79Qo_
*:ZR>p
_:a`.F#
mPmRAn
C9@Y.{
,u/g+\
n\&;D!
nS>NW2
cO_C:`}xYZ
BB!S+G
=c']_1
lf58D&
iE]W>T
wr@8s)
=6&65?P)
%mq(\i
oh#Zx:V&u
rKEEDD
8B={YP
=eW(y-
9j*>J(Z
2*E>/r
xrOzN2j
5_%!c0s
q6:9ky
;aiwuCV
X4178*
R8*`yM^
&JaS4u+g
Srzc Q
B>>AO-
5(JDor#Nxx
9lY5'J
P%]Wia
!i!vps
bYSxCu
L yZ<H
=~r@.^
m1)kJZ[
:-V%hK
cc2GgO
kqi+?^
kksIF^
1\aTp
}7SBium
E\mF$&
1:t6L$X
NkVYv}5x
*r+We,k
}V[fApjkN
*(2n|k;g
0w5`oJ
gAR&SO
<7sGH.
\<DuD~
HE-4%iL
kF`hrq
Ddme^bZ
55Yy_@
`)!=H6;
@P)9mR
s*rrsC
'q\hKg
1TGNY
G"r`7b
J8j!]AZg1G)
T/EtGq
+TT0Yay?3,
dcxxnW
1&rLj$
q'wZN#
iofKj2R
K.NcAT^
6Q\sEo
l%5.yv
QR;T{
>_Dwrb
S,x3-n=,t
gut43p
wH5[c
Kux,_m
!6]rDh
x\sbn#
%"n-dl
{BA#J9)z
`r|;I-
9cN^)K7>
W:`Sdllx$
SwI,uv_
64Y5D
B,``G\
ATLj$
6OZJ>s
R'^h3L*&
xb}Cr|
S2Qv#8
e}mL:X
nm`b[_
fp&gI"#
mP20fcV2
LKvjY5
E7~X7S
Q_W@L
X}l3'+
3Pnw{1r
{-A&m]b
4XgA:ws5.
;$dC-A
*Ogx6z+
5Q37o,
L'dlDEm2r}
%-5xog
b<|Q8h
)lN~s3>
2~>5BU:
NV..3)eP
e|J=nW
1hamV0
/HF8jb
y<H/doe
-&F4M8e
;WS!~v
{_IT:[
LalT&YA
E>22M?
u:F2K'M
>HzMIn
'3HMOZ
=OKR#a
Jaf6P[J_/U
R5l3QC
Ag76Y*
"si\brzfoI3
H~I*.i
S>y^F5
L_:2Fv_C
U}RW@4
H|r5&@
5Pdg'N
kfIvk7N
G2g)c5
Hp(-Z*
K=F.5{
PNkOp-
v7}ne0
GFL<T\
1wca+*
},,Imi
:y;0xs
WTlxB[
M`/ T?
&V}Wes{
87#]e,
1!a=`'
b1-Y[w
'"3RzjlZ
?Bi&ltn
Q*E(J{
E'bLaV
)%t!$T\
"V1}\x
xbXVk7
wtMI}(
ZX0oKA
*O?=rV
oEaPhx
**hMpf
(6vp^LA
Kys{'?
/85W@y
mT) S,
|0:BY]&
D=T+Avp
bqK.2Qy
ftcS@9
T1Rau`
gfHal
Ka#_,H
jP{Rv%}
iDn0.G
W^t6mZ;
'A#4><
U`#c`m
A5R'1b^
2Mt,[S5
2Q@";p8
DF`+]L*
}N*)t?w
RY5qxX
@vtXjI
$K0rWS
|'HvK`B
LSS%Q4
\DU<*j&
DSB%@F
LgAOT4
9VJ$>R
:evV2
zWvSiY
Ov!FdD
2rS7nX
.}@o++8
4Toh6b
G7mrV>s
M&-faf
4jZ;o
CJ{1P\
)2U6TjhJ
zY#/NoVe=
j[T{w*Fr
U;^Uw9
(:_|.4|r
yi>e,8x]G$U
IrtheO
xu!N*:
T}Sqt|
S6du:&rc!MUT[U-q
xP)nT'4
N?wd&G
Q{BE[:
5!5vG+!
K?4}^1
e:XU%S
j&W#)rug
j&m$^
~u-/h:
KjZJCh
m[e7Epp
@HWl}R
}f"`e*
ZF\Vmly
JVG0IYI
#u;We:
+:765e
'^8%ct-9
j"]x &
`ijC:6
yztbD:-
H&\6Sr
F]MHLFhm
YO7q=1n6
FXvDH
.cJ'rb
EuuI(Nx
>qXWs+
=]"2/]
y/H0Wz
V|{:M>'
.8pQCUb
~!=~3p(U
E,kt>=H
ANd`!w
t)%A<S
jox+90<
&oOaaJ'
vbu'J7
VSIfe/
Ngl\l"
6hEd$}4EL/
RJTPbL
'O)tC/"
JD2v':
s>'`;E
Us$c4I
Rl}jz0I
}p=p.V'
$eKUYM\
"lCL6$IQ
sR>~v/
IJ>x_bh
Tv'k}B
LPF7e
6(|7ntS,
HJKY>x
_-R\;q
v\y5!ws
}ZA\[5K
4aY(a:
oHco(N(V}}a
p<Hme:
iQ)l/i
.n6N&,
[l)S4b
zTtd,z
nz>H}'
/+*w^x
jGf&[QN
<pST4\
t0W%/+
HtRu'-
/[#O4Qz/
pvEsw
f.^byuG
w$DX7@U$
b:]uXz
[o]X&G
*2YA1<}
y}W0YI#
o~$[h;c
UW@e$.
">74^3ak
@I+_-+
cYO7`I)
Rt3o=E
J4f1[*
k3?[9[r
r xEP~Vh
Wsc{`%
(D'LOd)?
Ev*Gc7
dX%tbZIb
ASeqPr
))<(qN
-:.0WM
F=.Ib/
u|E3^@
aMo6u"
Jk.g9N
|{}jL[
(<8&&b
,1JdCr
z9)gOj
E4by*]
eH5>V|
a(2K D
~8.kLP
7G&F1;
F?dC*9
7n54 R
iZ|JI*
6`Rw#(R
>'Ow,#
Zb|Cpz
{t]5|=
k3g<sT*
:J1RJN
Yfc[$G
bj+z$
*5S7S3
.Wut\N
A@E `t
-QjQJ{
YQebUd
8e3W0n
m]E\8~p
40mcv]
h;D|p^q!
9a&[+o
}zS.zD
-S+SF!
z[{yWm
`$GLT0}
B1~%/I
a\+cx::+
ssKA'Q
vhHMDB
SIHM8G
}wth~` '
mqI;c[
lX4xS;
p"2HMR{
b-eD,l
OtgG6)
'/4Ro&N%
jUvzQ=
!d#.Br
.!:;;k
{0$=Oy
o!#*@"
0;+A~i%
{*7<E8
QQuk<,
\Rb_vSe
Z-4,_.
JYk'J$
?'#yoZ
L5g1y7
8e\fOY
8Qtco3=
d>Ez r~
"px'Oh>
q9_LJ
D:57zz
gHD Y
P! hC`1a`
a7I{eS
(+{|~6?#
1M;HT]N
r^L+=b
%?`/)6S
{lkIaP1d
X@"57g
t6k71]~
%)\i-see
F52hPt[
X.]xQ!
rYCu=_
NHd'w!j
S6}tU%
}D`e,R
a-:q i
iUNJFy.
pZGt"g
{HoA=p
E3R~1R
L)#!{!L
;9r$!\6b
`Ct}L]
i~Us!6
(?@j6-!
T(nKhzi
Z,?c~=
\[OB3h
7DHjzI
vB"mIF
Z[AqZ}
Ch.}.\
T'r5>{x
;><R\1
T$,;.O
s2Rl4l
-3`B;
el[ZmT
{|e6z9A
uFtEUp`
??8VK]
ea;=^
X"-cb+!
>Om,i
dKJQ}'
E{U3WP
q<tY+n
7{s}\#[
4mx56pw
,)qk1E!
tdp|V$
L{|d`cg
</^]y<
{#+R`j
E4\\6u,#3
7Q[C}Nl
lO+`fD<
?f"]RR[
_c`WW2
g'n+P)
.[[D4$
u~y.MV
Z+@9?Wwwg"u
?@23ui
4rl:,tU
;{+hUH"
;VEdEMdQ
&|gL\/
qjC>H$
z9]ktd
hWkll[
C8ZuYg
OLpHC!
U_Ag@Zw
:5R&INb
S sHM7
y8n,Wg
\F9eiE
,HA.UA
&EAq0,
}G1ilt
I.'IJ\
bF?{0o
Omb[:`#B
c5o[N0
:TSMuo
uQc`;9
=8ABHMhD
8V9K)O
GY@,/>
dO3iza]O
"9eQIf
sp}Z>'
X0b(kg
Jg%]7c"
,Eq>C6
y+/t54
/9_'Yo
C^Ywq-
H;0)PcS9
&x(Z>(
fhVoI3a
J1V=o`
3/?uY=A
,L$B%9
-p*7#`
dxupcA!z
fX3|E&u
}2.=%X
2o="Tc
_p{`3xe
z{X[+\f
7"wlhi
O=s4ru-
ykU4IoG
P[~Iz/
LEwDHM
IPb(9%
$FMh-d
Qga#]U
fS,/PP
'#Q9~G
b!))iU
f3X[O)
*G*ms[-`
(@ b!?c
2X0R|@s
\6S<W8f
. UHEg
idLH<i
-#\B`>?!
KkEhCi
D>#W\4
upS-z/
gCfC>r
lmQN=x
UVA)KwEm
?B`wxrX=
]Tygc%
VLlIvvHF
l2PR48zZ;
\Js_'z
i_|(L<
C{5w'I
D&$BM!.
%??=}6
|du38]p
8"vz3/
`K]sZq
,`IM%'P
8|qWN@*h7T
e:KU<a
uZS191&M
>4KXEl
P)N~X$
g>jnh=Q
yd;JL75
O *rmd_S
(trPFPP
LBtks7
BI,$X
"z<Z#_
?Rr%.%K
1l'MuK
cbXdeT
;@Iu[0
_=xZ4>\
qC|Pye
y4:e='
-,kyGo
}K.SF.h
rfE_"4ZL
lVL+ZV
nNxQNU
dCFDYj
:^%fCQ/
#b2Rl:
O9A9o7heM
bECWF
]s7j
ylF/O_
kwGeS*
@cf+H;
I*B"#/
&M9$qj
63's1
&'{jf]
Z!h;.TY
CZ.h5h,>
}AAy~QOq
=VQh1f
a2_]D<
%}\r+e
ljpe"[
;RE+2!K
xXnrI:
-0(Pfth
mpn=*hCO
2bZX{>
3ap&x:
/E(s,9,
vV!#vh
]]alqs.
>GB(9XI
r-[emr
qZR@ZA
c)O>{(P
c&erNE
9=ziy!
&DQbI,
*QF?|KdF
75AtUd
jP;iN>
T@iMr
5dD!yA
3OAm~L
Xwg&n[k
oZ6Eg|
&n'iFcUb
0o-]5`
*O7~L
B[yv?f+
Hy}F{,
6mY*Ef{
<q_sXo1
9gohC:
t@Rez
|@3$Wx
!/.e]3
[r]=5Y
i`_yuJ
Yn3@]H
=sja~[&
hwKc<Y6
uT,z"(8
5R{)A#
0$^r(/
.s.a}H)
4#+/>s
ay%1*Q
T64&6]
bYw\J:
SthG[?)B9
;drX7&
Kw*n;96
v)D3/<8
Oh.Su$
FaqPX6I
O*![xV
she8")
!n|d9
gsr`PB
Szq)_
BX?l}>E
6?keRdW
;r_Hs
Z99yrK[
S%r%$j
+|,~P[
,U0<x~
Kf)5~%
m?vmi;4
]zLr 1aO
l|EA=h
n2h}(}I
H:Z$AP
JjosfZ9
9-eCo,
{jrmEp
7%17h~N
.T,H7b4
-pO(@{a
V/D+J{
sC&+xUH.e
L8_Cxe
A#Xh.v3
dZ!".'s
Lq!I))
mN;K%5
\`"\s*@
i`,kzEt$
O)XdTv
0jIM)h4
[071sJ
wvX_!}
Dr1u<_
vEK`xpKU;
[5EV7`]J7
c]SYCG(
e'CMgt
_OaEe[;
?mR;(>
pmN8BoyF
N^`$-h
t}T#si
*3[VNH"
jYy#5=
tP=ne"
*,1$Gz
-I2*c6W
WKa'*2n
UP^l~X,#
?2F7=6
8lGfDu>
oK@,n0Ef
!HDLW<X*YL/
7d0E_L
tQ<H`]
?aC&*^
Hx.b^f
~&UuOr
5BoFA1I
tK%35<
$a~1-7
M,JSo%g
3I'Mz]
?E/S{
hT)>Fz
->>!8Q
5f@6JW
Ky6!LKf#w6
9]KbsF1C
Y^#IGGE
&f_6g@*
7&"Vo)=
#M"SZ3
HU0-d=#
DvF2H7
|LP=QG:u%
wP:Nuc
:"c^TEN
Prw0"Q
0&K"Aq
"AOU_2
7ys{Sy
Rw!X>B
6K%q2F
L1z#?ZWdM
YyQ[vQ
'+Q#_
P~#S,/F>
3,8]hK
pb?gY
ev|]mMp
[.Yf'6
"d] 9L
`h$iiu
x`lLts
6:Mb2A
k[<&oYL
zcV,g
V&pMmP8
:'h2,M
XK|6g6"-P
s0U@Qe
BiV:j
FSxU5
X_UJ#L8
},Nl1J,_
am{>W1
y o&3P
^oEE`[
lto[9X
VJInM>0
sl}_b~/
8Q0yC
h*Ade%
|0E-ur7
s4\E0$:
*b|-j4
HdtC$+
aEJ@P0<
4 iEW[r
{]0D]E|
]Z9rO|uGS
EbRK'.
"JJl"d
/+?`5.
s$d2u!%
Q1X?!0
B(W#_Y
\BUo&|
x]i|QE
!<]J.;
Z3y)t~
UafoD;
O2x1 '
?ZgXDt
op2g}XD
3ze/1_
?+<h}q
C}o7T(
+b&.In
*Y4'YzY
G/Z)yd
k<lntq
Aa|^pu
&b"%(_
n+kKpd
/N.%:J
_tJ[Ck
VI\Ved
4-].d5
c=6\b|*
f2I>5M
{GOo){>
G%<9*EB9NJ
n<pnSP
Nbx_wNBP
|>|yR(
e'*}J:|HB
v0]@,d
C{b`k[
]%^o~L
MDe$2>
yVi,*u
'(^E#SH
|/}fnV
jYa[R'[
UsP!M7
C3wuJ1"
urOMo[
]qn0H)
$Jg}:|d
YF&DPa
fogEX*
"/ljT(V
b<4sx.
M_Q.0Jb^
x(vE#^
f6@1C39
+A0G7
S%|w:J
|~(!1L#
[tXQaY
jDt[z]
;Q{%u
Vw!Vr95
pp`&z_
Uzmg}O
C&A\^;R2
5ct>xi
S'g5g]3
_p4b`r
sn6<z6
O<Vj5y
?o@&: G
xU.WlZ
N6Jpjd0
b6FI~T
"5XZ+zx !
O~Bg7}
p7=[P"
tn{:Wa;0GD
SlDroW
q+rH!i
cp_kP:
Dn{k5'
lF^F@J]H
BF(2i*
Sl3v@6!:
j{[ipp`
m;*TYj
#&o<O=1
]':D8J
6fZusQ
@P0nP|N
c*j 2Gm
mZ7%Z19
'/2hac
,_4mcld:
{6C$<'
s=)c2au
Jgm`k/
ni&O>H/UK
Zv-pkS
nk+%V\*
01Yk?$
hEPSPCi~
m9AD,C
7`1%<>b
&xPI ]zl
'$`Yy
WoJor`
4<a+G:4;9
pna`[
&CIv u
cQ9<+x
aF|,TH
5M]+#"*
${7/$$
#M6f6C$d_<Hu
AlD>l}
Xbr,_vR
yAUCZ[
9bgN.@
<@8Nz]
xDF]T4
Z/!}OO\(ky
BVg}?`
a,3"g
bv4x_+
qdKs_z
*:v/g.
w-6.n/
[~u !y!-
;E^!!2
(`aM0+
pu=`Sc
N?Uce`
Y6N9CK
[:q_4k
i#@7wj
WHlwJx,
;\BAgV$
g\\tS)
$BE%(0L
bXcqUW
7\c{z$
'qQiI|
@8..Pl
g*jlY
2 bc/,
@f&*"\F
#3B.z;0Z
hr_)u+
-$Ymd/
+NmuSvl
s8UI<
&ZJf3(/
K-h"]y
I0zT?4
4^*h8f
D@{ys?D
:C+ Jsp
4HrmB}r
%Yc#?$9
. G<4I!5
o++]O
,#,ocE!2
pzP?@J
BgULf[o(
X-e<E%&
].1l/
hq+)*I
gk?`71
F_P-yU
7W&T7@@u%
N(bC+:
pc<$/J
H\<D"Cec
0L]G*o
+PN>ye
K$V*2w
-%}*zI
BRng
oI\}p
r=uydhghV'
=gl!9G
#$fT;)
P)y=`e
#A}A{$
Ved9$yq
G-vN>.
.uxLc
`RML6^
nOK;,-
t}R'bC
ry;;C}
!nq'eI
5x<l@,Y
*<;@.k
\{t4[:;
d7GB*`
($1STg\
{*$Dnr
<tv{kT
hIlV2v
;MHb2l
RM"j<
eX~EZ@/
t.g&;@sL%Tj
8eE En3
QJ)&t
~Q#~c^)
z"Flv{
\h2T9S
lwFmWX
zh,ef|
SZ^Phd$|
S/aZ<O
GF$"Y`
P*F>zBJ
<mov;,>
$Nlo_r
:HG;;9S
]t?C-a(
N2grWa
*%]V_8
OOhK\!
.b2D9M
SZdqJp
REmcT
RYHL0s
z:VBAx
J?'+9!
X?qS6=
h(65>"
sssLc$
w;-s8X
&7m[zkj
lAQx%
Gg!*k2
}Y.&%zp
EIB@(&~
Jl*3ZK
eKXB?#
|KYe+-
V\Ttyy
kfGxL!
0Ki6}U
_2f_Lh
0zgv"x3IhH
{s5]Mx_~
ggvjk7
B4<A3:
HL<;Lh
V[_~R
;{$V,*
v5"R3C
]#kyBg
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.Generic.4!c
tehtris Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!5079A574E958
Cylance unsafe
VIPRE Trojan.GenericKD.66384028
Sangfor Trojan.Win64.Kryptik.Vb9l
K7AntiVirus Trojan ( 005a37231 )
BitDefender Trojan.GenericKD.66384028
K7GW Trojan ( 005a37231 )
CrowdStrike win/malicious_confidence_100% (W)
BitDefenderTheta Clean
VirIT Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win64/GenKryptik.GIPY
APEX Malicious
Paloalto generic.ml
Cynet Malicious (score: 99)
Kaspersky Clean
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Trojan.GenericKD.66384028
Rising Trojan.Kryptik!8.8 (TFE:5:ucTz4Hz0PsR)
Sophos Mal/Generic-S
Baidu Clean
F-Secure Trojan.TR/Patched.Gen
DrWeb Trojan.Packed2.45196
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win64.Trojan.vc
Trapmine malicious.high.ml.score
FireEye Generic.mg.5079a574e95863dc
Emsisoft Trojan.GenericKD.66384028 (B)
SentinelOne Clean
Jiangmin Clean
Webroot W32.Trojan.GenKD
Avira TR/Patched.Gen
MAX malware (ai score=82)
Antiy-AVL Trojan/Win64.GenKryptik
Microsoft Trojan:Win32/Woreflint.A!cl
Gridinsoft Malware.Win64.Sabsik.cc
Xcitium Clean
Arcabit Trojan.Generic.D3F4F09C
SUPERAntiSpyware Clean
ZoneAlarm Clean
GData Trojan.GenericKD.66384028
Google Detected
AhnLab-V3 Trojan/Win.Generic.C5246192
Acronis Clean
VBA32 Clean
ALYac Trojan.GenericKD.66384028
TACHYON Clean
DeepInstinct MALICIOUS
Malwarebytes Trojan.Downloader
Panda Clean
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H0ADD23
Tencent Win32.Trojan.Patched.Bwnw
Yandex Clean
Ikarus Trojan.Win64.Agent
MaxSecure Clean
Fortinet W64/GenKryptik.GIPY!tr
AVG Win64:CrypterX-gen [Trj]
Avast Win64:CrypterX-gen [Trj]
No IRMA results available.