Static | ZeroBOX

PE Compile Time

2023-05-03 05:27:09

PDB Path

C:\Sanon majak liyil daboto\fowayih\Bavebo sehapiro.pdb

PE Imphash

5dbd4b53304dc2aae0c97e1295bb4e1e

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0013d9a0 0x0013da00 7.82726901846
.rdata 0x0013f000 0x00011612 0x00011800 4.80813856321
.data 0x00151000 0x000f4008 0x00000a00 2.53432658066
.rsrc 0x00246000 0x00025730 0x00025800 7.33298650389
.reloc 0x0026c000 0x00002da4 0x00002e00 6.75183986555

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_ICON 0x0026a6a0 0x00000128 LANG_HUNGARIAN SUBLANG_DEFAULT GLS_BINARY_LSB_FIRST
RT_DIALOG 0x0026b500 0x0000022c LANG_HUNGARIAN SUBLANG_DEFAULT data
RT_DIALOG 0x0026b500 0x0000022c LANG_HUNGARIAN SUBLANG_DEFAULT data
RT_STRING 0x0026b170 0x000002b0 LANG_HUNGARIAN SUBLANG_DEFAULT data
RT_STRING 0x0026b170 0x000002b0 LANG_HUNGARIAN SUBLANG_DEFAULT data
RT_STRING 0x0026b170 0x000002b0 LANG_HUNGARIAN SUBLANG_DEFAULT data
RT_GROUP_ICON 0x0026a7c8 0x000000ca LANG_HUNGARIAN SUBLANG_DEFAULT data

Imports

Library KERNEL32.dll:
0x53f000 SizeofResource
0x53f008 SetLastError
0x53f00c lstrlenW
0x53f010 GetFullPathNameA
0x53f014 lstrlenA
0x53f018 LocalAlloc
0x53f01c lstrcmpA
0x53f020 GetModuleHandleA
0x53f024 IsValidCodePage
0x53f028 CompareStringA
0x53f02c DeleteFileW
0x53f030 LoadResource
0x53f038 GetProcAddress
0x53f03c CreateFileMappingA
0x53f040 GetProcessHeap
0x53f048 CreateRemoteThread
0x53f04c SetThreadContext
0x53f050 OpenThread
0x53f054 CloseHandle
0x53f058 DecodePointer
0x53f05c GetConsoleMode
0x53f060 GetConsoleOutputCP
0x53f064 FlushFileBuffers
0x53f068 SetFilePointerEx
0x53f06c WriteConsoleW
0x53f074 HeapSize
0x53f078 HeapReAlloc
0x53f07c HeapFree
0x53f080 LCMapStringW
0x53f08c GetCurrentProcess
0x53f090 TerminateProcess
0x53f09c GetCurrentProcessId
0x53f0a0 GetCurrentThreadId
0x53f0a8 InitializeSListHead
0x53f0ac IsDebuggerPresent
0x53f0b0 GetStartupInfoW
0x53f0b4 GetModuleHandleW
0x53f0b8 RtlUnwind
0x53f0bc GetLastError
0x53f0d0 TlsAlloc
0x53f0d4 TlsGetValue
0x53f0d8 TlsSetValue
0x53f0dc TlsFree
0x53f0e0 FreeLibrary
0x53f0e4 LoadLibraryExW
0x53f0e8 EncodePointer
0x53f0ec RaiseException
0x53f0f0 GetStdHandle
0x53f0f4 WriteFile
0x53f0f8 GetModuleFileNameW
0x53f0fc ExitProcess
0x53f100 GetModuleHandleExW
0x53f104 HeapAlloc
0x53f108 HeapValidate
0x53f10c GetSystemInfo
0x53f110 OutputDebugStringW
0x53f114 FindClose
0x53f118 FindFirstFileExW
0x53f11c FindNextFileW
0x53f120 GetACP
0x53f124 GetOEMCP
0x53f128 GetCPInfo
0x53f12c GetCommandLineA
0x53f130 GetCommandLineW
0x53f134 MultiByteToWideChar
0x53f138 WideCharToMultiByte
0x53f144 SetStdHandle
0x53f148 GetFileType
0x53f14c GetStringTypeW
0x53f150 CreateFileW
Library USER32.dll:
0x53f158 OpenIcon
0x53f15c GetFocus
0x53f160 FillRect
0x53f164 EndDialog
0x53f168 GetCapture
0x53f16c GetDlgCtrlID
0x53f170 GetSystemMenu
0x53f174 GetTopWindow
0x53f178 GetDialogBaseUnits
0x53f17c GetUpdateRect
0x53f180 GetWindowDC
0x53f184 IsZoomed
0x53f188 GetCaretBlinkTime
0x53f18c GetDesktopWindow
0x53f190 FindWindowA
0x53f194 GetDoubleClickTime

!This program cannot be run in DOS mode.
PB%UPA%
PRichB%
`.rdata
@.data
@.reloc
{j>:Z
{eI:Z
&<:Z_F
&<:Z_F
&<:Z_F
&<:Z_F
&<:Z_F
&<:Z_F
&<:Z_F
&<:Z_F
&<:Z_F
&<:Z_F
|R;9Y$J
hv]kcW
|n;9Yu
&<:Z_F
&<:Z_F
hv[KaO
&<:Z_F
&<:Z_F
|^;9Y:J
%ZxZ-X
|N;9Y_
Mt{e=:Z
{@@:Z
|f;9Y]
%ZwZ-X
|J;9Y]
&<:Z_F
&<:Z_F
?=:Zu%
(SxS-h
&<:Z_F
&<:Z_F
{r@:Z
]k>S8y
r?:Z_Fg
^(SxSU/(
/%;9!Y
9{:=:Z
%ZxZ-X
(SxSU&
(SxSU u3
{us:Z
%i}no^
c7&<#Z
/{{r:Z
{H`:Z
;.JQSM#
yRNUlR`
8?!R$%
69Ym>i
49Y4n,{
&<:@[/{
Q*<:m(d{
#/z!JT]'
j GMw%
s%;9Cq
S:""%XY
v@EQ2U
&<T0N"P
(Jg!f
,QE'z9F4
qQ.}e?#
%ZwZ-X
(SxSUC!
&<:Z_FC
&<:Z_FC
%ZxZ-X
H(SxSUC
^;9Y0-
99Y;jh
%+?Aa%
r^2Vdr
esxbOh
@G9SfGN
J*<:~N
;x>S{Z$
T&<:K9y
}]=OY&&
Sy_paZ
plj[ P
hv[syn
,{qQw2
4Q$5%mZ
&<\ALd
3<:!IP:8
7_|o%;g
d89YQS
9:Z8RB
h$HGKG
g+<:h%R
#C:Z@gx
Z,<:L>
V!;9KxT
u89YoY
X;9Y1~m
G'<:>
s[0qcGx
'<:ObS
mdIf_+
p,kB<'
J:9Yu 83
hcHoCj
?`jDq.
5^&$PM
><:ZPe
j.CoM!
3lM2A{
E{c30&+
V59Ysj
q>S^(gfc
xIDl9u0LxC
sr?1&<
|V;9Y_
{O=:Z
dz"2aG
,p%BJs
*|wm*X
;(<::7
fOeHDT;
_7$F|CA
ie"2PD
uzId$N
79YK|%
lPePj
kBwLY
UGj7Z4op
T^uIX
<*<:A=
A:Gfux
8:9Y>p)
`;9YIAf
,{qQw2
4Q$5%mZ
&<\ALd
3<:!IP:8
7_|o%;g
d89YQS
9:Z8RB
h$HGKG
R82~{
{ZJ:Z
0g#H[y
LB:Zw]&
WP;Z0+
=xs;Ao5
J;9Yq[
L2RW)8\
Yl/:C"
&<Aavkd
OY|=0;
sFwhT2
H>:Z\x
:Ai&u5
1RX7w1
Hd.wR1
;9YuY=
u:9YP&
F:^\@wJT
hvxtTa
?:ZKY>
)69YY2
q8lg^[_/
]F,~=H:
$;9Hh_
Y[*p(T
Cflw]x
}:9Y!j
G:Z^$g
iwf]@V
YqK6WN
o+,af{5
?:Ze>>E
%;{jzg
?Ny=rH
S1rGJ/
9^'jH4
0-1#m7
09YmV,
F!L!ka
'<:yg.6
9r]:5;
.u'x4nl
`SK\B{
79Y-((
awGJ5!zH
U/Z~[h
%Io&4
JL.`1G
**<:A;MI
J7iZ]C
]1d%<]
>#$OtQ
{rrh)<
F!L!ka
&<^16,
&Mw/UZ
ijq2~2m
k(B:7}
zG[Sa|0
Z["ZW_
$;9^1GY
SA:Z9^
^fy<a.r
t&<:|`
}S}=` k
x?l`Apj
s0<:Z]A
L$xcRN
<>:ZD
fA!:0|~
+uI:W1
/aX@o{xR
{rF5)<
x<$OZ~
iwlZhF
iyE;in
Zx,=l:4
D0<:3^
eA(P.;
[@M%c[
uuJns%
st-P(B
^*<:Low%G:8
mwG4!t2c
-)<:}3
%i81,CG
J[[MR}
pwQW%XO
Z^TaN_
%ZxZ-X
vMO&r{
`@0q1N
/U|fI0
|*pjvt1I
o:9Y|"=
c2>LM,
]g'NnA
z/mx."ua
HJ@X&<
&xQ_E%b_
79Y0mZ
4tj)A~B
l=:Z~7
7.o><+
$?:ZpE:]!
jww'io
45n###
DI;qa(SxS-MD5>
ae1jU6
x,ME[C
iw'5|H\
D:9YY*
79Y!QQ
=29Y,;s
+`bpeO
%Rr6K"
EIHM 7m
EPi?]KB
n#"XELmt
?}Fhb1
\im=CX
z4Z)iHYy
+8S,1|
z8Hr%!&<
+)<:~4
f=:Zwg
*<:Z=%
d!XZF*
`(<: <
+c'z3w
M5^#e%
'!;9m8a@|
F!L!ka
"*K0M;
BFSN0I
S=%][
%`e*<=
x/YRQjm
|0cS%J]
+<:@is
e=R_nH
;9Xalv
>:Zzcj&UR1
9p@y1
hv(5,&g
)yN@]6
/Qq?*s
\R a.6Ll
mCfdLo
?wcz@#4
r'ReGm
f~3bs,u
&<:0J$
O|ZX#1
{~-RSDA
A,<:p aL
(5qkV5
J)wxI]DP
|b;9Y]
@:Zb42'
iwboX#Hh
1Qm Rj
xtto8`%
3{MM2Gp>0
+<:wfWl(?
2x@F#r
&<zeNz]
B:9bi=
(<:ukV
hvP{=Z
69Y_vJ
`9],%{2r;
z/yx.Jwa
'<:vfFPF
hNQYrk_
1" (/n
pxj,*$
79Y[6E
R|1}t7
C{_uan
uc4ITm
,9Y:XY
VqYi]Dr
n2]tDm
K`(@^"
eEi ""T
%ZxZ-X
P$;9yCzW
%;7P=z
Q89Y|4
F!L!ka
=:Z$d_
=:Z:81
C:Z"2L
&@:Z)J
CY~SPb
Wqkzeg
%J%^=p
q{/T%VV
r&\jf
z`/6z/}
/.k+:J7
/.k+:J7
hs':6qp
?A?.FrK
n/_~MT?
crY8e#
m !`e{
k"0})l
mGT%Xa
]3S(XB
OU*b]y7
&<3bM@
s$lM(C
4Kc`)j
jaXQ[^
|>;9Y]
F!L!ka
Kvt~N}R
&<_H^r
_B:Z]o!Y
,u+X+j
i2LY&0t
`C:Z+h
i(.1mI
">:ZsP
_)<:K[
DHMcLNjk
:9Y. 3
;9b8!
OWG?T;
&<:jWW
h?V|6>
AW0Y*
@:Z"(.
Y3Ho7U
(|aQW:
d7j>?i%
s:<`Kt
p3~PCJ
B1&'CT
'<:N.mO
iwhw{oV
lpIxq.
JA5Q=%
t1C%)N
:i8-{{h6
QgmtU"CF
C-9>Y
D#jrJog
tT![h3vPO%XM
a{!hY%
r1)\l#
_ssCQY[x
q1jeO1
+d|E 8
h{UbE`:b?)!
{09YI\
4NpStR
=bn'`Dq
:Z]y|K
srK0Un
o@)$\ql$
&<:BB-
&0<M=&
zfWjz/e
(ZvSLi
/.k+:J7
V]W.w`
?G'%@Y
>:Z(.c
J1fT"l
k18W%R
Jw_^'C
iw|X@s!
xcN%8S
DE.`fe
=F2|mv
&<~G3dp
&<.,ys
pP9[2
'<:nS
("GF`V`
/.k+:J7
|^9uK$_
=-ULhBc
SXHmMT
F\*\Q6&
hvgnQb+9
%;9g1k+
P%5^Z'/
X)Txn{
j!C r$
L?h3AV
hv*B#9
}zH53uW
Yf:@@x
P$9X(#
%;9hGwU
r%3StR
vMO&r{
`@0q1N
/U|fI0
|*pjvt1I
o:9Y|"=
iwLU:D|
i96}/&
SkR@Hg
|Cd!A`
QA~%Xb
~]W[43X2
A;DXO~
<Yl`Oq
/xj3$D
eVUM3Q(Z
(ZvSLN
/.k+:J7
WL,;EZ
u5H&X8
X(<:AT
o|4)SK'S
%;4CX<l}
WCaYFW
jJhitb
l&<:@~=
A@:Z^x
]>:ZS\
ygb{"V
d+7WyuI
?:Z>kr
"0<:rm
&<n|Rx
+jkA`wv
bE:ZsfL
&<YScZ
Aoc88B
hv[/$1%#
7#ANKc
z29YT&d
V,+[?1
6!;9 K
i{i/lNW
nE1ml"
qDOn%GV
CWiwS,
-<:cL8
iw5{?n
ukb!}H
<Dx!cw
L}].UW
[f`pJa
{k"]T.
sf,Omf5
C[,cOk
gv!'TE
J1/7aa
3cEW%k
,lAR?0
]\j%ET
h1eX8#
99YKqD
;9dSx:
1f$\}Nn<
+H2q:n
J<:Zi>5
iwGh\y
g*<:PC
2<:rI
v}aNS
UW3Zg8
aC:Z8dWp
olx(/a
>%;9+b
.(a2]k
>;9%6M
Q_F`cc
'G>k&n
2;nl&C#F
y>O.RR
T;9YdrCT
;99V>LDZZ
R Y%nS
j+<:}pA
?[g`c
269Y3H
J$A#'Z
]!gB(/
HB:ZEX
U x]6M
u5)_Vr
R:%Sx7
/ao,=>
X.B.nJ
_Yr`rN
4ckY#]
G.C+:J7
kfNqR >S
V$k?Ao
Ln(qkV8lzF
;BE<&'
k@%P2'
a.w%3`
UeiPV6
hvHN[S&V
zY#K.L
FsJ5:!
{-pq5f?
$,g%J
q09Y\3q7w
y69Y"Yy%
i:~2R!
{fdL#M
hPP*]&
3uC2f
+T?MQ`wC
9yOz"C
eu8)]J
QsC1%5[
DM}j`
HoX$;j
LU%XU;#
)#^5E;
}xo5gv
_lMNC1k
79Ya"h
:92iOI
Hs=R&<c+:J7
C|ddn2;
sB:Z"Ag
m7RC6%
0;9c]H
$B't`R
fJ2V!#
!;9mZti
*;9ii?
s YNYV
^xrZt:
==7*#}
Gf0'`5
IgL$Y#
<:Z HA
K|])x!
ZnH5Z#I
2\Z~vP}
hv:v^CA
I~W1dFCF
{V<:Z
SM&<#Z
B7,{eb:Z
QS&<#Z
D{=[:Z
h*&<#Z
v%&<#Z
#M&<#Z
*;&<#Z
{<i:Z
o2&<#Z
H'&<#Z
{7q:Z
o6&<#Z
{GR:Z
x &<#Z
{#w:Z
{[m:Z
%i*W?,
{Te:Z
hv[scO
hv]scO
#J"W)B
4e(SxSU
9SUw7|~
(SxS-D
F9L!ka
(SxS-_
CJL9*W
SuHsEO4
y^AH10
KuZ+7n5
C%;9CP
F5L!kc
%ZwZ-X
&*h4>5U
C%;9CT
)1%U_9
%ZxZ-X
%ZxZ-X
S}HKLCm
AxrUiw
2`9*_FS
t@<:!Y
jcGJu
C%;9CL
F5L!kc
%ZwZ-X
%ZxZ-X
%ZxZ-X
hv[ncO
L4nliw
L4n.q>W
(*yS,R?N
{C<:Z
{0<:Z
%ZxZ-X
UkZe`U
+/c<F&lE
-<:nUz:
%C:Zl4
=:Z I`
x";9F]
Lew`tf
k"x75,
679YK
N["P5
&<QvmNJR
x?#|h2<#
`aYp^"(
B:Ztb+
wbn%wV
y947o9
;9Y\&2
&<.^s+
Rx$a^Vp}
,LUpZ ,e
;9YPr*
3~HNW|
8WFp]q5$
]?s+-%
TA:Z/);
";9CF%
+[Ve+%
M<:Z;u`b
NVVR?G.
j,+cF
LOT(MRj
{C<:Z
&<w}a]
T#;9]*
p]wR4)R>
i&<:.
#u\4yr
kj2*ZZ
LCV6LPe
'5+0C*
Q1@0#(
};9(d
#?$^!O
E}]y.C
b%0+Ko
[|00Zd
AF5%(X
iwT5eW]
hveFxkg
LYv/*Dv
(U{[Ka
6_exvU8\
h/%Gyi
Re9eqa
\Zs.,r
59YuZ@
x>Fk_(>
iwsR{"i
ri0s#!
Y\pW`fj
P>Z`Fj
vrFM!H
!geqK5
#q*x5B6\
K}B%x"
rrXTTQ
Yh/uVv
>Pr&*.*
$7Wl{!
iwsR{"i
ri0s#!
Y\pW`fj
E:Z.T(
e>:Z~w!s
E:9Yvb
'gYg)Gh
~l&vV9W
5JyjHE
lz%o}K
UIz%x_
j69YMl
J3vF[$
X=::wz
a ,H;X
B<L_<7%
MWaS[(R0
@"nB$li
P:9Y{n
w7fX}v
C2$s9V@Y
<t0tz\X
5f{tW:Z
-+<:%(zu
Ki8%iB
Ig?G`Q
&|UV(m
)<:o*.\
ez:8>*
Z7yNVPq1
}Yh'N]
iJdd#%
g!u<pT
kDkh|b[=ZBL
7Xbbws\
!SM=O$V
;9Y= S9
]MDV}}j}aDb
W.E]"P
%;/FAdA"S
9SUeXe
@D:ZAAK
&+\L eHR
";9{4dK
,<:K72
&]Kg_7E
e02z_iiiU
8Yiz\d
+W{QB:Z
{b@:Z
E!Ns_9
q(SxSU
%ZxZ-X
5[,{!P:Z
#,LGjB
&<:Zu}
F%M!kc
(SxSU|q
F%M!kc
F)M!ka
J(SxS-
7$2XUU
{A^:Z
:!&<#Z
E{7{;Z
V=&<#Z
)_nM{
(&7X{n7:Z
=Biq8?
,$k?tP
>G&<#Z
lXgctv
lXg\yE
lXgO5g
{i6:Z
U^&<#Z
"4'<#Z
8l&<#Z
TBz\t2
}:=:ZW
g P}~f
'}Du{R
$;9w%:?dI
_w3/YQ
i7seJC
ybl$Y#%
<:Z,^M%/9
R|=][<
#;9]Jo
k{ELSn
t";94E:*
`WH}N-
(59YJ\
,#kz"d
%ZxZ-X
?(SxSU`
jeK9x&
!PX0Zx
&+1#18M
uw(SxS-8
H_'<:ip
F=M!kc
OoiwS,
(ZvSLg
hvSbQk"v
y9bHpY
(ZvSLw
zlxRz0
/6k+:J7
|(SxSU@F
L=J(U{[w
FAM!ka
F=M!kc
(SxSU-2"
g;Z^W9
STfvU/
%ZwZ-X
7RfvU/
F=M!kc
Hsp8*wI
(SxSU-
/6k+:J7
/6k+:J7
z^cyz0!x."qa
z0!x.*oa
}J~cP3
(ZvSL;
J*zp)iw
FAM!ka
FAM!ka
lzpEiw
"(Hr*+&<
(ZvSL\
iwS,tB
{Hr('&<
ua}>M5
i.+dhv
Hj%Mh#
/6k+:J7
Kt~x{a
|JuhLu
|<UGLu
eK<^'x2
zd]HzpYiw
PriwSM
fLx6_G
HrQz&<
(ZvSLd+
zjr[zpiiw
RuiwSMk
Hje0QW
/6k+:J7
_iwS,H6
|P"*Lu
/6k+:J7
(SxS-Ay.}
FAM!ka
yQ Rc0g/e
&+/_(9
zfThzp
|BB,Lu
=LiwS,>
G6C+:J7
`iwSM@
&<;+:J7
fF@C_G
fH2r_G
&<;+:J7
}*=:Z:
Hj.4&<
AQm2Hp
}.=:Z:
iwSM_\"M
+&*@ek
}F=:Z:
[T7PJs
CJ@9*W
=J=#2z
%ZwZ-X
%ZwZ-X
%ZxZ-X
F=M!kc
B=:Z_W
}R=:ZW
hG[,cP
A(SxS-
a)<:C[
-k#AZ_%
?|(.$(<
)<:X4|
r,<:dm{
>:ZG^M
m>oQkb
obo~2B
;0R<>k
L56.q>
o=r)b&<
ATiwS,
G6C+:J7
.&<c+:J7
0&P#k
WPli&N
(ZvSLz
z0!x.*{a
L5^(U{[o
/6k+:J
=&*%/k
(ZvSLC
&<;+:J7
Iks\G7
(ZvSLDh[+H
QtiwS,p
&<;+:J
-zpQiw
uaQ>M=
iwST"BQA
qe9>MI
*/u+)w
?zpqiw
/6k+:J7
G6C+:J7
uj:Z_G
zhqRzpyiw
(ZvSL"6
f@z<_G
M>u+Iw
zf_Fzp
n&<;+:J7
|<)!Lu
/6k+:J7
|>|pLu
0w$ocP
fH6u_G
}&=:Z:
}&=:Z:
xt0*SR#`
}*=:Z:
}*=:Z:
H{.4&<
(ZvSL|
}2=:Z:
H{((&<
}:=:Z:
hvSba0
^Hp%"&<C3
Ktvi|T
}B=:Z:
}J=:Z:
}J=:Z:
(SxSU.
#(SxS-T
FaM!ka
{0<:Z
F}N!kc
]=L[bxiXl
{NE:Z
g!Kf`h
(SxS-
6&v^|M
{0<:Z
{GL:Z
E[iwSM
(ZvSL|
Hr+|E0
x=.&*|
-PVWO1
Ej-PVU
Lx-PVi
^p-PVm
C":J5R
c+:J=D
u&<c+:J
{CD:Z
f(SxS-G~lC
zRR%$m
] =`-k
(SxS-g
yj&<#Z
#D{"m:Z
09?`{
{'x:Z
y9&<#Z
=~mEliXW.
75&<#Z
/O/z\Q
[rI\&<
&<;+:J7
z/Yx."ma
(-{]xd
GcG[Ju
%ZxZ-X
SuHK7M
/.k+:J7
hvSa0z
z/ex."ya
1&OFpk
#csR
(SxS-<zF
{-PPah`
|j+=L4
z/mx."
/.k+:J7
(ZvSL,
xrQ6&<
|`hCL4
G.C+:J7
rZ/{>S
G.C+:J7>0
z/yx.J
%h(*xST
Ah:Zu]
(SxS--
%ZxZ-X
&Sa_D@
%ZxZ-X
)]:Za&
G.C+:J7
(-{]xh
Hrw.07
C^&<[L
iwSTkx
#q`v[o
{-PP!/
":J780
(ZvSLmg
/.k+:J7
/0iwST
3z/mx."
G.C+:J7:0
Hs;M&<;+:J7
^iwS,Qf$
UYsC `Nl
{i<:Z
{C<:Z
SuHKWM
{V<:Z
%ZxZ-X
di&<#Z
Q#&<#Z
9\/tz\
>)&<#Z
zD&<#Z
bw&<#Z
E{+Y:Z
JU&<#Z
L;&<#Z
rH&<#Z
{GT:Z
kP&<#Z
J|&<#Z
{@E:Z
\z&<#Z
W]&<#Z
%inx-
2>&<#Z
|V;9Y$
|f;9Y$
|~;9Y$
1/Dj_9
|F;9Y:
(SxS-H}
eCM"p~
|>;9Y]
%;9C36
:9Y_V+
hv]kcW
(SxSU<
b;9Y_V/
CJL9*W
N/]Q"-g
hv]scO
A=:_^R
%ZxZ-X
fTsR_Fc
&<c+:J
N:J780
P(SxSU
SuHs@MK
z/10w$
(SxSUlrs
BYzYbB
z8lCtm
z/-0w6{
(SxSU5mZ
D\R]>(SxS-`[!
%ZwZ-X
|.;9Y=!3R
%ZxZ-X
OH<:!Y
(SxSU2:}
SuHs{2
CJ@9*_N
mim>Ws
hv]scO
G8dvU/
|^;9Y]
|^;9Y_
hv[scO
|.;9YU
L&*8Tk
&<c+:J7$0
+N^vU/
|.;9YU~
hvjb-F
{0<:Z
(SxSUf
kgT#;6[
{&>:Z
r4" 0s
{oB:Z
-m(qz\<
}[i{Mk:Z
{6W:Z
Y+&<#Z
3+&<#Z
}86FD:
PYzQ(,E
v~$k/e9hmt2
&<:Xj+
FAO!ka
cr."&<
%ZwZ-X
%ZxZ-X
LZ(a_9
F=O!kc
uD"{|0J*
fNn}F.
6Ej{KR
{+?:Z
F]O!kc
%ZxZ-X
%ZwZ-X
FuP!kc
|0@eQD
ASUN[E
&+wZbm
h;;~_9
AS-F\x
'9^vU/
>(SxSU{]
%;9&)J
h(SxSU
gI(SxS-2
|(SxSU
q[A+z\
%ZwZ-X
{|<:Z
{C<:Z
%;9&)J
$"<kz\
(SxS-j
(SxSU2
+/9*&Elo
^^!z]k
%ZwZ-X
k4YxWuz/
Jdd0z\
{|<:Z
i(SxSU
(-{[,c
+/~>$Fl
<(SxSU
%ZwZ-X
{Z>:Z
AS-H65
{$<:Z
K(SxS-{[
{Z=:Z
(-{[,c
FiR!ka
{ <:Z
E'Bz\k
{1?:Z
=@'F{
n{w?:Z
%ZxZ-X
%;9&)J
L;gz(G
Hsx{CxI
{Z=:Z
(-{[,c
{~?:Z
SuHs/V
{0<:Z
eCzU\w
FYR!ka
FaR!ka
eR0-Z[
%ZwZ-X
%ZxZ-X
k,7wN(
(-{[,c
+/0Zd#lFr
{j=:Z
Q]vU/
E{|<:Z
F!S!ka
(-{[,c
%ZwZ-X
W<]vU/
FMS!kc
c0(pbl
G.]vU/
%ZwZ-X
;J@1X(
{p>:Z
{V<:Z
(-{[,c
{Z?:Z
%ZwZ-X
{C<:Z
ASU:H{
k,g#q,<
e(SxSUZ
F!V!ka
F1V!ka
c9V!kc
ugTp]x
MEh5C
%4vB=ZH
F!B!k[
+<:Zwy
BfIw]x
J]I1pb
9W:Z]1
j"qwGu
r22z^:6Is
za@]\
za@]\
|f|\-iC
fQyFxc
&<:Zae
|v-/I
RWC,v
2:]j-U
2:]j-U
MGgmw]j-U
TY:Za@
{,=:ZW
F-B!k[
(/{SiP
Ruf_.S
MGgqw0
F9B!k.M
hvW+L/
^F9B!kB
b:J7V0
)fb}=;
p, MGh
JGgmw]j-U
*(RxGb
D%;9YI
L>:Z-L
>C:Zuu
|"49Y$
N?:Zuu
(9Y-DT
hv+..U
&<:Z- MEn+
R<:Z-F
(avFt[
2:]j-U
>}hvW+L
(XxFp[
ufTn]j-U
hC]j.U
RX3t.3
(x<:Z
)fa}=4
Haf$zF
2:]j-U
4"K:ZK
XJ3;ZC
Ld{&=:Z&
hv]c1O
F1I!k]K
xv?:ZI
<thv[q6'v
0*:]j-U
2:]j-U
|"'9Y]
&<:Z- MEn,
(TxGVcg
&<:Z_F
|&;9Y_V
79Y_5tn0
2:]j-U
~TT/_s
ihvU3
j1Os;dfN
Ma!k+!
j"ewFuc
2:]j-U
JM z$;
@0a_V^
l.;jBwX
&v#iWm
<6;jBe
SE:Z&\
&s<,i-
&<:Za%
HC(ayIw.
2:]j-U
t\&<=\
&<:Z;?;
;<:Z$%<
(@:ZP <
C@:Zt <
2T:Z4!<
0\:Zh <
'x:Z <
w(V<:Z
hvQkPi
@:&<:Z
1f4&7[
h@4&<0t
6&<:ZT
6&<:Z4p
6&<:Z<,
6&<:ZT{
6&<:Z\
6&<:Z,*
6&<:ZD.
6&<:ZT
:&G2a^
:&3 cR
:&70bR
rnZ3 ba
c:&4&W
aZ4.PX
&<:Z<_;
&<:Zem;
]vh*ia
pq[WbZ
M*;`@z@
x|?CU2&sRFwD(
2$8z[=e
lx8#j~}
4HvBeC
ZxD'2/
&<:ZS%W
+e*/Zq^P
Q.N$uS0
#7~3+X
D$hmA!
C w?9"|
$s^Md
MmOb%S
o}/z@
!7%tg>
y`=&]z>A
~2#U}7
X>XY=
y"L<5y
O+swRb
%S:0ga
Wu6Ir|P
%<-cM+
5fZjFY
w|:M0pw
d<cvla
I<)@:R
(wLHCLe
L>U+QF
WU(9ix
Lv3*36T
&<:ZDg0
bM(,%i
5G0= l
}GPcc ,I
:RKD]6LM
9Q?cp=
AYGQZ;S
w"s*pI
[N7kqe
!Uq67y
YvcQA7
Uml6((.TT
mk/'qF@
KGX5^")
c552o^
_Z"@[L
@}06eL
w!0!Q+
Jm_i{e
<=u2pq
ybL^*a
@SftA:h
X#[5`B
J|pPM@B
s7y:>^
5pEUZ
QMklLoqlw@{c
7LTK22
pt~?8J
R-ko2
t_-~Ke
" T+w[L
BNi*^:'
.J^jYh[(
Arjgtdh
`F6)FAoU
N_@v5`
&<:Zsky
g)su+A
WJ&J^O
[%2+^heg/,
3}9 ME'
`Sl 7\
;&qm*A$
].}^j>)
u|4uwZ@;
meRDGps
%;mhm8,7
\s|^E/
SRF?"x7P
Ln(Rp9#5
YHich/
N> nyy
Nz3/Z\
^d@D[j
f'*=)+
3KH/sLR
z$,?tw
~rFxu>W
nBjyiIC
P_}[Kv
ruO^O5
,yO( MN
#Nu'8\
%ufS4S
m/!SLLf2
=()/5:-
~{mRP
b:<?|R
!|>ZAQ
rTV`KAr
j4BD[F
=d*%YT
g0}Q$Z
)4J#(|ds
QoE2X}
bAwP@Tn
fW5J3|
ob,!KM
%%g0$['e
2's3&D!\
Zo }e6c
lBwWCMz.5
Bb.94a
e$NxnzoO
z'5Zo/
,`C6@9
,yA!i4
Wp"eg
n"]E_4x"
_4NM0b
*5C^)5&
s^vZ8tS
"]EaMz/
d88%}/>
,b+> U
y-.S\G
2m$$YV
'JJ5Cx
e|-n}J}
^oZ)rk$
wwJu7Q
Gk`{D)
UD@aZO
H9K&OH
-*W=F/K
!9*(B4
e=G\0c1
"+5gy7gf
&w8D]ylo
T4XU)~
U}\`~*
mt_t;F
]Cx7RW
5kPU+9
%{MzEt
X^:\G?On
,~QxzX
f`w{V0
9F%uNo
JNj6wZ
s_d>?e
UZPt?P
!MuuU"
m^X0`H
xgFu4h
W>oEtxu
+TH)=+
3tt@=k
bNXB!+
Qj8llx\e3
[*nhi]
-cJDp/
7g_GU*
[Q5m+h
Hl/';S
|apbMp
_-n=Gn
x"v(UGU
t/BY/$<
[ig@N!
&<:Z<,
R79'fO
fayN2A
wSI9~O
1&cR\v1#^H
zxTjoQmc
L!L'${
S}.R>p
s$T@rk
BWu]gg
_UoS~_E
}Rz}FOp
#~u|P~J m+
J9%~Ht
[e&V4x
'A;{ClE
.(TZu.[*
[bUe7Tt
Kb6%WO
}=P&MP
9,S})S
-<olClv
~tN~l9
C'zm I
9F:_zy
u+Yu(".57
W^c/D-
P]jz>-hb7<
%F7zEx
:_LLmui=(
SdHW07RT
b`7Ywo7
`IQgut
;*%v3Q
j5`'LO
Go-p3;%<~t\
S@4_.0S
T8EZbz
F'CB"C
JQ*d&ku
z@C;O7Nt
W@q7;qT
^{nPR5_
57HUbF}e
5`c$Z%a
Ts<YL
r=unZ\
7WQ5UbJk
i'T=-W
qb|&<:Z
'O%\V&
]?!Tx-V
c;pDlo
[CoElM
wTx5cK
xDKu3-
jhriRU
(<:Z<uI
/;pDl)
c;pDl/
4h!{Zx
ouv`RU^
&<JZf7
iQ&<:Z
ZS@ni$
6&|:ZD
J*eo:Z
S6&,?Z
C,&L@Z
95Uz:Z
F*ao:Z
6&,EZ4
6&|FZ8
`6{{:Z
6&,FZ
1(.yU.
e:AY#M
URPQQh
UQPXY]Y[
u%hl"T
u&h|T
t&h@%T
t&h0&T
t&h,'T
u&h|T
t&h|!T
u$hh)T
u&h,*T
u&h|T
u#h(,T
u#h(-T
u#h|-T
u&hH2T
u&hT3T
u&hH2T
u&hT3T
u&hH2T
u&hH2T
u&hH2T
u&hT3T
u&hH4T
u&hH4T
u&h,5T
u&h,5T
u&h(:T
P$+Q8+U
J$+H8+M
u&h88T
u&h88T
u&hd5T
u&hd5T
;H8te3
u&h8TT
u&h8TT
u#h(,T
u#h(-T
u#h|-T
u#h(,T
u#h(-T
u#h|-T
u&h(,T
u&h(-T
u&h|-T
QjShT]T
f9:t!V
j4hHbT
j4hHbT
jDh@cT
jDh@cT
u&h\dT
jQh4mT
t&hpmT
j>h(wT
j>h(wT
u?h(*U
u#h,{T
j4hh{T
j4hh{T
j`hh{T
j`hh{T
u&hT3T
u&h(,T
u&h(-T
u&h|-T
PPPPPPPP
u#h(,T
u#h(-T
u#h|-T
d:\a01\_work\38\s\src\vctools\crt\vcruntime\src\internal\per_thread_data.cpp
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__vectorcall
__clrcall
__eabi
__swift_1
__swift_2
__swift_3
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
operator ""
operator co_await
operator<=>
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
`anonymous namespace'
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
Unknown exception
bad exception
[aOni*{
~ $s%r
@b;zO]
v2!L.2
IND)ind)
minkernel\crts\ucrt\src\appcrt\startup\argv_parsing.cpp
minkernel\crts\ucrt\src\desktopcrt\env\environment_initialization.cpp
CorExitProcess
minkernel\crts\ucrt\src\appcrt\startup\onexit.cpp
Normal
Ignore
Client
Client hook allocation failure at file %hs line %d.
Client hook allocation failure.
Error: memory allocation: bad memory block type.
Client hook re-allocation failure at file %hs line %d.
Client hook re-allocation failure.
Error: memory allocation: bad memory block type.
Memory allocated at %hs(%d).
The Block at 0x%p was allocated by aligned routines, use _aligned_realloc()
Error: possible heap corruption at or near 0x%p
The Block at 0x%p was allocated by aligned routines, use _aligned_free()
Client hook free failure.
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: before %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory before start of heap buffer.
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: after %hs block (#%d) at 0x%p.
CRT detected that the application wrote to memory after end of heap buffer.
DAMAGED
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
Memory allocated at %hs(%d).
HEAP CORRUPTION DETECTED: on top of Free block at 0x%p.
CRT detected that the application wrote to a heap buffer that was freed.
%hs located at 0x%p is %Iu bytes long.
Memory allocated at %hs(%d).
%hs located at 0x%p is %Iu bytes long.
Cycle in block list detected while processing block located at 0x%p.
Heap validation failed.
Bad memory block found at 0x%p.
Memory allocated at %hs(%d).
Bad memory block found at 0x%p.
Data: <%s> %s
Dumping objects ->
#File Error#(%d) :
%hs(%d) :
{%ld}
client block at 0x%p, subtype %x, %Iu bytes long.
normal block at 0x%p, %Iu bytes long.
crt block at 0x%p, subtype %x, %Iu bytes long.
Object dump complete.
Detected memory leaks!
(null)
minkernel\crts\ucrt\inc\corecrt_internal_stdio_output.h
<program name unknown>
minkernel\crts\ucrt\src\appcrt\internal\per_thread_data.cpp
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
minkernel\crts\ucrt\inc\corecrt_internal_win32_buffer.h
minkernel\crts\ucrt\src\appcrt\startup\argv_wildcards.cpp
minkernel\crts\ucrt\src\appcrt\mbstring\mbctype.cpp
minkernel\crts\ucrt\src\desktopcrt\env\get_environment_from_os.cpp
minkernel\crts\ucrt\src\appcrt\lowio\osfinfo.cpp
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
minkernel\crts\ucrt\src\appcrt\locale\getstringtypea.cpp
AreFileApisANSI
GetActiveWindow
GetLastActivePopup
GetProcessWindowStation
GetUserObjectInformationW
LCMapStringEx
LocaleNameToLCID
MessageBoxA
MessageBoxW
AppPolicyGetProcessTerminationMethod
AppPolicyGetShowDeveloperDiagnostic
AppPolicyGetWindowingModel
NAN(SNAN)
nan(snan)
NAN(IND)
nan(ind)
minkernel\crts\ucrt\src\appcrt\stdio\_file.cpp
Second Chance Assertion Failed: File
<file unknown>
, Line
_CrtDbgReport: String too long or IO Error
Assertion failed:
Assertion failed!
%s(%d) : %s
_CrtDbgReport: String too long or Invalid characters in String
minkernel\crts\ucrt\src\appcrt\locale\lcmapstringa.cpp
1#QNAN
1#SNAN
?5Wg4p
%S#[k=
"B <1=
_hypot
_nextafter
Unhandled exceptio
kernel32.dll
VarFileInfo
invalid argument
C:\Program Files\Microsoft Visual Studio\2022\Community\VC\Tools\MSVC\14.31.31103\include\xmemory
invalid argument
C:\Program Files\Microsoft Visual Studio\2022\Community\VC\Tools\MSVC\14.31.31103\include\xmemory
C:\Sanon majak liyil daboto\fowayih\Bavebo sehapiro.pdb
.text$mn
.text$x
.idata$5
.00cfg
.CRT$XCA
.CRT$XCAA
.CRT$XCZ
.CRT$XIA
.CRT$XIAA
.CRT$XIAC
.CRT$XIC
.CRT$XIZ
.CRT$XPA
.CRT$XPX
.CRT$XPXA
.CRT$XPZ
.CRT$XTA
.CRT$XTZ
.rdata
.rdata$r
.rdata$sxdata
.rdata$voltmd
.rdata$zzzdbg
.rtc$IAA
.rtc$IZZ
.rtc$TAA
.rtc$TZZ
.xdata$x
.idata$2
.idata$3
.idata$4
.idata$6
.data$r
.data$rs
.rsrc$01
.rsrc$02
SizeofResource
GetSystemDefaultLCID
SetLastError
lstrlenW
GetFullPathNameA
lstrlenA
LocalAlloc
lstrcmpA
GetModuleHandleA
IsValidCodePage
CompareStringA
DeleteFileW
LoadResource
GetCurrentProcessorNumber
GetProcAddress
CreateFileMappingA
GetProcessHeap
GlobalMemoryStatusEx
CreateRemoteThread
SetThreadContext
OpenThread
KERNEL32.dll
FindWindowA
GetDesktopWindow
GetCaretBlinkTime
IsZoomed
GetWindowDC
GetUpdateRect
GetDialogBaseUnits
GetTopWindow
GetDoubleClickTime
GetDlgCtrlID
GetCapture
EndDialog
FillRect
GetFocus
OpenIcon
GetSystemMenu
USER32.dll
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetCurrentProcess
TerminateProcess
IsProcessorFeaturePresent
QueryPerformanceCounter
GetCurrentProcessId
GetCurrentThreadId
GetSystemTimeAsFileTime
InitializeSListHead
IsDebuggerPresent
GetStartupInfoW
GetModuleHandleW
RtlUnwind
GetLastError
EnterCriticalSection
LeaveCriticalSection
DeleteCriticalSection
InitializeCriticalSectionAndSpinCount
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
FreeLibrary
LoadLibraryExW
EncodePointer
RaiseException
GetStdHandle
WriteFile
GetModuleFileNameW
ExitProcess
GetModuleHandleExW
HeapAlloc
HeapValidate
GetSystemInfo
OutputDebugStringW
FindClose
FindFirstFileExW
FindNextFileW
GetACP
GetOEMCP
GetCPInfo
GetCommandLineA
GetCommandLineW
MultiByteToWideChar
WideCharToMultiByte
GetEnvironmentStringsW
FreeEnvironmentStringsW
SetStdHandle
GetFileType
GetStringTypeW
LCMapStringW
HeapFree
HeapReAlloc
HeapSize
HeapQueryInformation
WriteConsoleW
SetFilePointerEx
FlushFileBuffers
GetConsoleOutputCP
GetConsoleMode
DecodePointer
CloseHandle
CreateFileW
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVbad_exception@std@@
.?AVexception@std@@
.?AVtype_info@@
IDATx^
Q5(@g~
}`fO'q
etZ8)e9
";OJu5_
"lKXZWi7
C|Z244
AT3|i|*
WA)BqR
;|||T!
9pN^I*
5+RG<j
q];Arm
ZL#404
.(vqC
zs~W@h
iDJE:A
GnE>_
q;R^."!
ze[,k9
bG#xvt
\sXF0l
]F[\~c
@jA:(
EE4&(
1M 7Ht
>Il"p
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Artemis!66D9A44A5159
Malwarebytes Trojan.Crypt
Zillya Clean
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005a447a1 )
BitDefender Gen:Variant.Ser.Jaik.3792
K7GW Trojan ( 005a447a1 )
Cybereason Clean
BitDefenderTheta Gen:NN.ZexaF.36196.EvX@a4qM54iG
VirIT Clean
Cyren W32/ABRisk.RTIK-8955
tehtris Clean
ESET-NOD32 a variant of Win32/GenKryptik.GJED
APEX Malicious
Paloalto generic.ml
Cynet Malicious (score: 100)
Kaspersky Trojan.Win32.Strab.bgw
Alibaba Trojan:Win32/GenKryptik.e8f9cb31
NANO-Antivirus Clean
SUPERAntiSpyware Clean
MicroWorld-eScan Gen:Variant.Ser.Jaik.3792
Rising Spyware.AveMaria!8.108C2 (TFE:5:gPYSJezLNfH)
TACHYON Clean
Sophos Mal/Generic-S
Baidu Clean
F-Secure Trojan.TR/AD.AgentTesla.cxwla
DrWeb Clean
VIPRE Gen:Variant.Ser.Jaik.3792
TrendMicro TrojanSpy.Win32.NEGASTEAL.YXDECZ
McAfee-GW-Edition Artemis!Trojan
Trapmine Clean
FireEye Generic.mg.66d9a44a51599155
Emsisoft Gen:Variant.Ser.Jaik.3792 (B)
Ikarus Clean
GData Win32.Trojan.PSE.DSYQ1H
Jiangmin Clean
Webroot Clean
Avira TR/AD.AgentTesla.cxwla
Antiy-AVL Trojan/Win32.GenKryptik
Gridinsoft Clean
Xcitium Clean
Arcabit Trojan.Ser.Jaik.DED0
ViRobot Clean
ZoneAlarm Trojan.Win32.Strab.bgw
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Google Detected
AhnLab-V3 Clean
Acronis Clean
VBA32 BScope.TrojanPSW.RedLine
ALYac Gen:Variant.Ser.Jaik.3792
MAX malware (ai score=85)
DeepInstinct MALICIOUS
Cylance unsafe
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall TrojanSpy.Win32.NEGASTEAL.YXDECZ
Tencent Clean
Yandex Clean
SentinelOne Clean
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/GenKryptik.GJED!tr
AVG Win32:CrypterX-gen [Trj]
Avast Win32:CrypterX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.