Static | ZeroBOX

PE Compile Time

2023-06-04 11:38:58

PE Imphash

562d80e80506d670bb0daaf0cbeebb79

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000152d2 0x00015400 6.64117370016
.KgXMk 0x00017000 0x00002e3a 0x00003000 6.23981471546
.rdata 0x0001a000 0x00004aea 0x00004c00 5.30856557438
.data 0x0001f000 0x00048c68 0x00047000 7.98165596117
.rsrc 0x00068000 0x000005a8 0x00000600 3.85455667433

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x00068200 0x000003a8 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x000680a0 0x0000015a LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with CRLF line terminators

Imports

Library KERNEL32.dll:
0x41a000 GetProcAddress
0x41a004 GetModuleHandleA
0x41a008 MultiByteToWideChar
0x41a00c DeleteAtom
0x41a018 Sleep
0x41a02c RtlUnwind
0x41a030 TerminateProcess
0x41a034 GetCurrentProcess
0x41a040 IsDebuggerPresent
0x41a044 RaiseException
0x41a048 GetCommandLineA
0x41a04c GetLastError
0x41a050 HeapFree
0x41a054 LCMapStringA
0x41a058 WideCharToMultiByte
0x41a05c LCMapStringW
0x41a060 GetCPInfo
0x41a064 HeapAlloc
0x41a068 GetModuleHandleW
0x41a06c TlsGetValue
0x41a070 TlsAlloc
0x41a074 TlsSetValue
0x41a078 TlsFree
0x41a07c SetLastError
0x41a080 GetCurrentThreadId
0x41a084 ExitProcess
0x41a088 WriteFile
0x41a08c GetStdHandle
0x41a090 GetModuleFileNameA
0x41a0a4 SetHandleCount
0x41a0a8 GetFileType
0x41a0ac GetStartupInfoA
0x41a0b0 HeapCreate
0x41a0b4 VirtualFree
0x41a0bc GetTickCount
0x41a0c0 GetCurrentProcessId
0x41a0c8 VirtualAlloc
0x41a0cc HeapReAlloc
0x41a0d0 GetConsoleCP
0x41a0d4 GetConsoleMode
0x41a0d8 FlushFileBuffers
0x41a0dc ReadFile
0x41a0e0 SetFilePointer
0x41a0e4 CloseHandle
0x41a0e8 HeapSize
0x41a0ec GetACP
0x41a0f0 GetOEMCP
0x41a0f4 IsValidCodePage
0x41a0f8 GetLocaleInfoA
0x41a0fc GetStringTypeA
0x41a100 GetStringTypeW
0x41a104 GetUserDefaultLCID
0x41a108 EnumSystemLocalesA
0x41a10c IsValidLocale
0x41a110 LoadLibraryA
0x41a118 WriteConsoleA
0x41a11c GetConsoleOutputCP
0x41a120 WriteConsoleW
0x41a124 SetStdHandle
0x41a128 GetLocaleInfoW
0x41a12c CreateFileA

!This program cannot be run in DOS mode.
`.KgXMk
`.rdata
@.data
t}9>uyj
tz9uvj
F09^(u
QQSVWd
0WWWWW
0WWWWW
HtHu4j
s[S;7|G;w
tR99u2
t"SS9]
_VVVVV
^WWWWW
0SSSSS
>=Yt1j
j@j ^V
0A@@Ju
t+WWVPV
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
0SSSSS
PPPPPPPP
0SSSSS
PPPPPPPP
0SSSSS
_VVVVV
;t$,v-
UQPXY]Y[
URPQQh
u,VVWV
t VV9u
^SSSSS
^SSSSS
<+t(<-t$:
+t HHt
bad allocation
oyqygxlvbtqwwbnkxkhnaqnetdekduvsxdsxibsputgiqnxndxayxayyamylzfh
washgnpu
washgnpu
washgnpu
naneptaqwivuavgtprxobanwyupuisxxphmmnntpxdbgwrlmtjtwjqeytcbmmhmzbhcibsetqkilbrpruehz
prjuyqnfxuiiwfnrjidgbtcyujbmytlgfpgzssyysfaqpulldyxxpleqjiinsmsydezgzxsratalavbavuptfj
xwtoeabxlnwgwhpkqetfdibwyjftbqmldchnlkrtdyhxftqyhvvkljtmwglyapxotn
lrkmwshmxajops
bidesttyaltknrzkx
rsozelrdztlfzutpwcopkrpmibmiulnwpmnutczujjimqokkvbaxwdzolqywgacmbofm
uzhxgjienpinfdmszkknqbctxmreidoehnrvivsklcpbuqehspdlhmkbgjfrphmgabhjpxzizkdtbu
pcueumwjvqnmalnxrmbrtaqwdtghsodbuslszukqgeeqishzmlba
ymcpidpcluvgeuyrwxfaejjdgtoxenskcrjkfztfjcomfxgpqfpubcnfurrmjzgjru
ymcpidpcluvgeuyrwxfaejjdgtoxenskcrjkfztfjcomfxgpqfpubcnfurrmjzgjru
ymcpidpcluvgeuyrwxfaejjdgtoxenskcrjkfztfjcomfxgpqfpubcnfurrmjzgjru
ymcpidpcluvgeuyrwxfaejjdgtoxenskcrjkfztfjcomfxgpqfpubcnfurrmjzgjru
ymcpidpcluvgeuyrwxfaejjdgtoxenskcrjkfztfjcomfxgpqfpubcnfurrmjzgjru
gdprbbbxhnbezxwaebohyhiahkelstcpdovkrqbzgyerkalxpednfsnoxbtlvkzpdxgnwgpnxphxafscqucrshdwft
cqbgeuolavtefuvzbmfoq
fjiayznkibjvhyqohotdlrbor
efsqwvbtvjubfrcgomywrougraddfsdnngsxzuxqephlqepabpfwppcwwxlrvfdbqu
hjvwgjxxyqzydkkbjoxuckepfrwcvwrlsoxuhlclyhkdepydejdemijpflrhhbdworykkor
rxovbmeuobhgwwmvxaainhcycpjaglamuikigqgcdxeygximrecfbdmpwcctzu
yreytqdwnvcvbjosuusvblvwfsdyylkdpgqxeimotfsljwnanknpqtrgpljjsyfbtzrcdrskogiyplaosaitm
ejljleebzhteiaeqvoqjunrezziadzbzfvewtdnvsrtupqgvcex
azcpihmnvvedokmheiuhltmuppgxchvfxdbmwvxxuakbdavhszgjibteec
onksxuymfpbraillflpthodpajfpigtdbadbemrfbaikimzqxzz
qesojgpowfkpqpdznqnnddemltromcmmwrbidznphdqguckelpygnhmvs
nljofwyjifalqyqrdljnfjxtdtrjbabrmynmeqisdgwiayduxnpltwzacclmpyrglvahuimttyskovbpcitmiehz
fponxxgdqbpisyfhrxoeehzdrpaklktpuhqmxg
unuuopggvqgsjzildlbucfycnzd
jdqmkxipfzijplzeqplqtcthglfbmrokulmydrpqgwrpscskgkprnnqkxzdnqoghtbcgurlwajrtwmpmqfwrjdfqa
nednvntacmsow
wgvpwxzzxzdhgdgndhdsyojomwydcguiunpuwnszfefvpehrwjpvomgwxdzxqgadpws
ippebrqmpzdlwvapcrjoiynleqvbpdtxudxjmooetcnitssd
kxkopikfyndmpwobkojmdz
yvxwyjwxmimempelymrnahmuyfckegzerifszsawzohlopbsthwaznwdwoaaveyavqwtrrojppd
VirtualProtect
kernel32.dll
FreeConsole
GThis is the default case.
This is case 2.
This is case 1.
ios_base::eofbit set
ios_base::failbit set
ios_base::badbit set
vector<T> too long
bad allocation
bad cast
string too long
invalid string position
Unknown exception
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
GAIsProcessorFeaturePresent
KERNEL32
EncodePointer
DecodePointer
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
CorExitProcess
runtime error
TLOSS error
SING error
DOMAIN error
An application has made an attempt to load the C runtime library incorrectly.
Please contact the application's support team for more information.
- Attempt to use MSIL code from this assembly during native code initialization
This indicates a bug in your application. It is most likely the result of calling an MSIL-compiled (/clr) function from a native constructor or from DllMain.
- not enough space for locale information
- Attempt to initialize the CRT more than once.
This indicates a bug in your application.
- CRT not initialized
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
This application has requested the Runtime to terminate it in an unusual way.
Please contact the application's support team for more information.
- not enough space for environment
- not enough space for arguments
- floating point support not loaded
Microsoft Visual C++ Runtime Library
<program name unknown>
Runtime Error!
Program:
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
GetProcessWindowStation
GetUserObjectInformationA
GetLastActivePopup
GetActiveWindow
MessageBoxA
USER32.DLL
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
1#QNAN
1#SNAN
CONOUT$
GetProcAddress
GetModuleHandleA
MultiByteToWideChar
DeleteAtom
KERNEL32.dll
InterlockedIncrement
InterlockedDecrement
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
RtlUnwind
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
RaiseException
GetCommandLineA
GetLastError
HeapFree
LCMapStringA
WideCharToMultiByte
LCMapStringW
GetCPInfo
HeapAlloc
GetModuleHandleW
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
SetLastError
GetCurrentThreadId
ExitProcess
WriteFile
GetStdHandle
GetModuleFileNameA
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
GetEnvironmentStringsW
SetHandleCount
GetFileType
GetStartupInfoA
HeapCreate
VirtualFree
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
VirtualAlloc
HeapReAlloc
GetConsoleCP
GetConsoleMode
FlushFileBuffers
ReadFile
SetFilePointer
CloseHandle
HeapSize
GetACP
GetOEMCP
IsValidCodePage
GetLocaleInfoA
GetStringTypeA
GetStringTypeW
GetUserDefaultLCID
EnumSystemLocalesA
IsValidLocale
LoadLibraryA
InitializeCriticalSectionAndSpinCount
WriteConsoleA
GetConsoleOutputCP
WriteConsoleW
SetStdHandle
GetLocaleInfoW
CreateFileA
Y=0V2f
aXHBO#
1,&q_66
a2*4vf
WJJ-{C
#8}pR
UyE10Q
>3MnJzU
vk&P[W
3d8r$No&
>(WXpn
6|i5~2
p`8EK^UX
G$Q(7Y
N=0-eX
Qbv8U,
zt=&co
{/l3
F~y^tu
U>#i7g
!K[;.
UEj#h>{#
B62H7Zg
6"SCMZ
u\Hr_-j
<;l_H/
c/:P\k
lJAi\'
( Ve/y
>]B;d?
zrGau}
ijs1{p
Lm#[[z}_
CT$Jx}
%Cb%VR=
Hfxs]Kr#
>$\9zbi
!ZG+rU
Js*/NV8ax'8
G1=^F9~
Xe524^y
K#$6o
{ZyN@]
;T2Hv^
V$jO!}
{$h>Gi
\Y-c!B
xZT\|8.
2mtz:Y|
)Ep5`W?
';{erD
,W/VL[
9Er2NG
(Q+],4F
^j+JaI?
&4K:BC
M3_kQW
:wy<f7
Tg:p>=2
a#Y(o}^
D^R9>_
:S|-js
[;33gz
x@C+@M
#w.6Q[
0F QdS
7]s@g8
;mw&5$q
+#\g]v3n
JZiNbi
<E;GSH
R-<} o
8(pLaJx
hoy'C\
'fQ'$
.-W[bA
Q.Li`a
JG=3:?;h_
xZ&Cr9bp
}Bju6c
W4,J?a
yelk/y
s&kt^B
hbz4>b1
]w:x
|d-7Xk
F!Ic+n
UB(Fc0
iDj$md
r4G5R
)!BB3R
AjIFQC<
+~JY F,(
-H>n<8dlj
"qL54*
."7YC;
Q1(Ma
+;MPEwe
JTKfLJ
\Ye%,EE(
8dBozT
}v}jq/
6].fuh
[{IBd`
1T_9tpg
3N5XCI
A6$=PM
``@}+j@Y
BY{?iG
'ZjvO`
_*%vv:
Upf_!GN
e"0:8N
)6R54.[_G$
UV(K%(
X>tC5eP}
e-5aqSR
O=qr*8
nI3;K&2
^VwN~/
@VIxbIF
5 u*K(
^t~P^x
;ls#E|
44qfk6
|m)7HO
*/'N9W
>}]yQo
m:wXdFZ
HO *H2
f[:Oc$|
*e)1c\(
0V|,9C
s{nf#7
s7L%5i|
f|HE~~
{s RMx
~4B1kI
\T'*p=
zKpK P
2pBClY
gS08~g(3
OW^G',
lTwog
_!&aGx
XmjJ4K
[|n;&Z
P#IPCMxJ\
^M)<5j
orVOZ e'
7ztqGF
Y-p]f6%~J
AY2"e*
&`=[rhZr
4Jk[>#
]>a>P`$
.E)NQd
CX8c)te
rVE$!+Y
&Mt,Mx
AFo2|
3kG OE
r!Pgr(
cs;!'=
CHjH/KG
/hy5:
kn{g)v
H}$<l^ju
{3 `Eo^
d]i+*2
5=V;s
nC* ]G
@XKC{~
nW@?o-g
?q0l#'
v~3XLci
Y:?+-@
*A*?#C
`OAqO(
QkFaRL
(g@9<Rl
@IfiYD
Ad4P
>wNCxa
-s#Gi=a
iwGV78
w3UO)3
>{?&mu#Gb
N(|z\%
bqyA+C
22VZ[p
QrfO1~
ans.C1
>mr.74
h~Q])x
N\Dam>
I(&H&_X
-BK]&o
aa%:q<
u"qv.b
wR=1l
<Ki1eR
+O2P|P
W/Kxv%
XrdM@?6
H1>1:xK
"/*-iW
YK9WM[1
/R'1"Y
6%\/aO
^j|=Q2
>%iJ7M>
s%+{^y
PudnevIM M9_
gw'b1Fd<f
~AwA&u
h6UqY=
@2nffv
ps#xX.
K_P|uz
l{SDuii
:u:^tQ\
^dk>2
x[JS_3
<Q*SN
_KLv6k
#xUSmRuq
:M|&
@}@yL7
hxU) be
"yhyg3
Ud&w?k
<U4gK{
.t"Dhr7(v!&3
5e`03J=~
L/G<V[
{xB?y&7o
Lheq3h
Yx_**Y
DW5oLA
3J{Pke
xgtCn:#$*
f}uC?L}2X
:2;qT
CIR)RZl
Y-U[PHZ
KNlf9 ?
=}J$73
^V{_Ne
$e@RWA
No;ua5
2mo2{3
pa7=Or=AT
c^5}WQ
l;qW+I4
]8u&cY
,2[9<Ys
M+zjxTM
tUewcZ?
E3;yp{
vpg=iJz
o`S<qs
:vf$K-
ps!`[RL
&@ZU=a
@k}pe\OC
P35/Qa
s!br~^
1vNwZCL$+2
"L'UTtJ
oD=LB:
a*K)*y
$B]W(
|NYOvgcx
.==61SmU
:[rZ~K
%O'nK-
8y*6LO'
B'K8tI
4bhge9
_RxIpE
C32)]
L^I$uf
TwNI?=
X=-<]`
qE?(yS
y+lD'A1
z8i<Bj
Z[P4&?
xZ K"X
N1hHwU
!hd1LX
]@KaKS\_
Gjh4 \Q
?T;Zl\
eAC%-"
3jt8[a)cK
=tNQ0*kL%m8
`VLM`O
Fdc/?DX
~S?2V)
#7+aH<s
UBDu$(
$%y@=E
JT\}wg
.zpl]~
t?p^81
k3HRWt3
WU/a4j
gj@u`m
;@b}c7
2nDtK|b
jO|n<'
OHF\n^
kZdyK^
6H$]r,
a~pCD9
UgT5~S
?&|pCf$
{>9YL5
26;DM
wAD'}+ch
,[M\".
}`%1g-Qe"
,H!6!w(
me]i!dP
3rRB++
/Ku0C
LArt{O
j_1Ku]
[3i8PB
E!$<"i
<AC[oAz
]o#}r;
osG,;A
8:R02y
<Ax"oY
RM6%A]"
VKI]go
AYm6QyY
({;>Y4
EWm)x%
P</LHG|
s`^Mzt
8*.D]
'XPk^1B
Mw+:r
tV^Y;5!
(8e9D0
`Y=^)Y
[A?p&9
p<Q+~T
R'O@Nc
G2QV@_
3RYIb$
02Bs5|
xH(WnsIA
ogF=cj
8!HQV"
7*ta!X
!*HMc>
`9We|D
3WZCyo
{ob4Q\
;r"?I?N(
#X..n)
%C#iE/
)20[f0
$&yEv O
f]aO5&
Um!$!@
u*K'W~
beW-pW
7nJqV~
2h)N;N
BpwjD&u
BdBjl]
mH}J"6W
7H4!wZ
2tL^3Qho)
]Fzbgs
P4R']y0z
So+[0q3
O~=Cz\
k189R;k
(]gHUM=2HK
w<.(gpNz)
{ZhBrJ
D[x:o(${
\LpI6^
H-YX$<
5tZ[dz
On^R&R
^@,"rq
xcSz=:I(Qp:ut
}/k.+t
Yf}j7$
,hn!Jy
KH]"Em
Ag*tenS
j(X;9%\
lgfCo
E^(Pft
DlZ?dY
<"D1w_
A@/0$6
wytB;,
^nC~wq
Y)Qs)b
c[_.6\
P$NyvW
LOfj$!]
Y96[HA
gP[U9u
='&>Cw
,^;3D-
w/IG>9
Ys[ t
kruF3x
[8||UX
S7/b2W
v?z'pwu
mfHIRr
;js2] ^!
=(QQ5n
S>RL_~G
#iwCF;
9&}??T
t+dEEr
%bG?Q:J!d
`u6_ge
vDT^B=
Fp'9m7
|I=u k
=rQ'wm
r_KWfmL
zs,"E7'
0nOWFzI
n5WZl@
MbLp0m
&g\#%|
M{ud .V
D1Xwht
?<?Z_*%n
30I~-Z
_w+NLJ
</=tbB
0q_='Zh
z16&*F
dOW8dq
BK.(b"
r4"x}bx
<6Ta|;9
wfuI~l'
W;F==^i
'ZV!NX
yqk.9^
Biq*Jy
khAd"w
EGwDr_
[li;W:"Z;C
^eQxj"|
E3JNa\
u--8AgE
0G"B|#
!;hn4v
xohicl
z\zMPU
I$2TD^
b3{4'
nG!=5}
hfe=M@
RwO%Za
E1J2Xco{
}L_b<E
i\orH/
}b'n&4wz
\T/ugNm
+\G&T*
Z2c<W3
.?AVfailure@ios_base@std@@
.?AVruntime_error@std@@
.?AVexception@std@@
.?AVlength_error@std@@
.?AVlogic_error@std@@
.?AVbad_alloc@std@@
.?AVfacet@locale@std@@
.?AUctype_base@std@@
.?AVios_base@std@@
.?AV?$_Iosb@H@std@@
.?AV?$basic_ostream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ios@DU?$char_traits@D@std@@@std@@
.?AV?$ctype@D@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AV?$basic_filebuf@DU?$char_traits@D@std@@@std@@
.?AVcodecvt_base@std@@
.?AV?$codecvt@DDH@std@@
.?AVbad_cast@std@@
.?AVout_of_range@std@@
.?AV_Locimp@locale@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level="asInvoker" uiAccess="false"></requestedExecutionLevel>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
Washington1
Redmond1
Microsoft Corporation1(0&
Microsoft Code Signing PCA 20110
230316184329Z
240314184329Z0t1
Washington1
Redmond1
Microsoft Corporation1
Microsoft Corporation0
dg]fTA
Microsoft Corporation1
230012+5005160
Chttp://www.microsoft.com/pkiops/crl/MicCodSigPCA2011_2011-07-08.crl0a
Ehttp://www.microsoft.com/pkiops/certs/MicCodSigPCA2011_2011-07-08.crt0
OVnozn
[Obaad
Washington1
Redmond1
Microsoft Corporation1200
)Microsoft Root Certificate Authority 20110
110708205909Z
260708210909Z0~1
Washington1
Redmond1
Microsoft Corporation1(0&
Microsoft Code Signing PCA 20110
Ihttp://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl0^
Bhttp://www.microsoft.com/pki/certs/MicRooCerAut2011_2011_03_22.crt0
3http://www.microsoft.com/pkiops/docs/primarycps.htm0@
*?*kXIc
QEX82q'
WqVNHE
Washington1
Redmond1
Microsoft Corporation1(0&
Microsoft Code Signing PCA 2011
https://code.visualstudio.com/0
!6bMs0
EK'@!0
20230510151117.62Z0
Washington1
Redmond1
Microsoft Corporation1-0+
$Microsoft Ireland Operations Limited1&0$
Thales TSS ESN:FC41-4BD4-D2201%0#
Microsoft Time-Stamp Service
Washington1
Redmond1
Microsoft Corporation1&0$
Microsoft Time-Stamp PCA 20100
220920202217Z
231214202217Z0
Washington1
Redmond1
Microsoft Corporation1-0+
$Microsoft Ireland Operations Limited1&0$
Thales TSS ESN:FC41-4BD4-D2201%0#
Microsoft Time-Stamp Service0
Nhttp://www.microsoft.com/pkiops/crl/Microsoft%20Time-Stamp%20PCA%202010(1).crl0l
Phttp://www.microsoft.com/pkiops/certs/Microsoft%20Time-Stamp%20PCA%202010(1).crt0
[!01rt
Washington1
Redmond1
Microsoft Corporation1200
)Microsoft Root Certificate Authority 20100
210930182225Z
300930183225Z0|1
Washington1
Redmond1
Microsoft Corporation1&0$
Microsoft Time-Stamp PCA 20100
3http://www.microsoft.com/pkiops/Docs/Repository.htm0
Ehttp://crl.microsoft.com/pki/crl/products/MicRooCerAut_2010-06-23.crl0Z
>http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt0
as.,k{n?,
Washington1
Redmond1
Microsoft Corporation1-0+
$Microsoft Ireland Operations Limited1&0$
Thales TSS ESN:FC41-4BD4-D2201%0#
Microsoft Time-Stamp Service
Washington1
Redmond1
Microsoft Corporation1&0$
Microsoft Time-Stamp PCA 20100
20230510193624Z
20230511193624Z0w0=
Washington1
Redmond1
Microsoft Corporation1&0$
Microsoft Time-Stamp PCA 2010
aHkor#q
Washington1
Redmond1
Microsoft Corporation1&0$
Microsoft Time-Stamp PCA 2010
FOo: e
((((( H
h(((( H
H
KERNEL32.DLL
mscoree.dll
VS_VERSION_INFO
StringFileInfo
040904E4
Comments
Dies ist eine legitime Anwendung.
CompanyName
Daimler AG
FileDescription
Daimler AG Produkt
FileVersion
InternalName
AnwendungIntern
LegalCopyright
Copyright
Daimler AG Alle Rechte vorbehalten.
LegalTrademarks
Markenzeichen
Daimler AG
OriginalFilename
app.exe
ProductName
Anwendung
ProductVersion
VarFileInfo
Translation
Legal_policy_statement
VS Cod
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Convagent.4!c
tehtris Clean
DrWeb Trojan.PWS.RedLineNET.7
MicroWorld-eScan Gen:Variant.Mikey.147430
CMC Clean
CAT-QuickHeal Clean
ALYac Gen:Variant.Mikey.147430
Cylance unsafe
VIPRE Gen:Variant.Mikey.147430
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
BitDefender Gen:Variant.Mikey.147430
K7GW Clean
K7AntiVirus Clean
Arcabit Trojan.Mikey.D23FE6
BitDefenderTheta Clean
VirIT Clean
Cyren W32/Kryptik.JYN.gen!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Kryptik.HTQK
APEX Malicious
Paloalto Clean
ClamAV Win.Packed.Convagent-10003639-0
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Trojan:Win32/Kryptik.c20a9a84
NANO-Antivirus Clean
SUPERAntiSpyware Clean
Tencent Win32.Trojan.FalseSign.Itgl
Sophos Mal/Generic-S
F-Secure Clean
Baidu Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
Trapmine malicious.high.ml.score
FireEye Generic.mg.c28cc92a7c78b96b
Emsisoft Gen:Variant.Mikey.147430 (B)
SentinelOne Clean
Jiangmin Clean
Webroot Clean
Google Detected
Avira Clean
MAX malware (ai score=89)
Antiy-AVL Trojan/Win32.Kryptik
Gridinsoft Trojan.Heur!.00012031
Xcitium Clean
Microsoft Trojan:Win32/Casdet!rfn
ViRobot Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
GData Gen:Variant.Mikey.147430
Cynet Malicious (score: 100)
AhnLab-V3 Clean
Acronis Clean
McAfee Artemis!C28CC92A7C78
TACHYON Clean
DeepInstinct MALICIOUS
VBA32 Clean
Malwarebytes Trojan.FakeMS
Panda Trj/Genetic.gen
Zoner Clean
TrendMicro-HouseCall Trojan.Win32.AMADEY.YXDFEZ
Rising Spyware.Convagent!8.12330 (CLOUD)
Yandex Clean
Ikarus Trojan.Win32.Crypt
MaxSecure Clean
Fortinet W32/Kryptik.HTSE!tr
AVG Win32:CrypterX-gen [Trj]
Cybereason Clean
Avast Win32:CrypterX-gen [Trj]
No IRMA results available.