Static | ZeroBOX

PE Compile Time

2023-06-09 03:57:16

PE Imphash

7cc3a712b00c184b18453863a1a633b4

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00012f39 0x00013000 6.59028597868
.rdata 0x00014000 0x00007aa0 0x00007c00 5.02829186272
.data 0x0001c000 0x00002044 0x00000c00 3.42402113651
.gfids 0x0001f000 0x0000012c 0x00000200 1.53376534848
.tls 0x00020000 0x00000009 0x00000200 0.0203931352361
.rsrc 0x00021000 0x000003d8 0x00000400 4.26481910139
.reloc 0x00022000 0x00001424 0x00001600 6.37539227924

Resources

Name Offset Size Language Sub-language File type
AFX_DIALOG_LAYOUT 0x00021250 0x00000002 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_DIALOG 0x00021110 0x0000013e LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x00021258 0x0000017d LANG_ENGLISH SUBLANG_ENGLISH_US XML 1.0 document text

Imports

Library SHLWAPI.dll:
0x414150 wnsprintfW
0x414154 StrCmpNA
0x414158 StrChrA
0x41415c StrCmpNW
0x414160 StrStrW
Library KERNEL32.dll:
0x414000 CreateEventW
0x414004 WriteConsoleW
0x414008 CreateFileW
0x41400c SetFilePointerEx
0x414010 HeapFree
0x414014 lstrlenW
0x414018 lstrlenA
0x41401c lstrcmpA
0x414024 Sleep
0x414028 GetLastError
0x41402c lstrcpyA
0x414030 GlobalFree
0x414034 HeapReAlloc
0x414038 HeapAlloc
0x41403c lstrcpynA
0x414040 GetProcessHeap
0x414044 lstrcpyW
0x414048 GetTickCount
0x41404c GetCurrentProcess
0x414050 GetCurrentThreadId
0x414054 CloseHandle
0x414058 GetProcAddress
0x41405c GetCurrentProcessId
0x414060 GetModuleHandleW
0x414064 GetModuleFileNameW
0x414068 OpenProcess
0x414070 ReadProcessMemory
0x414074 GetConsoleMode
0x414078 GetConsoleOutputCP
0x41407c FlushFileBuffers
0x414080 HeapSize
0x414084 GetStringTypeW
0x414088 SetStdHandle
0x414098 SetEvent
0x41409c ResetEvent
0x4140a4 DecodePointer
0x4140b0 TerminateProcess
0x4140b8 IsDebuggerPresent
0x4140bc GetStartupInfoW
0x4140c8 InitializeSListHead
0x4140cc EncodePointer
0x4140d0 RaiseException
0x4140d8 TlsAlloc
0x4140dc TlsGetValue
0x4140e0 TlsSetValue
0x4140e4 TlsFree
0x4140e8 FreeLibrary
0x4140ec LoadLibraryExW
0x4140f0 SetLastError
0x4140f4 RtlUnwind
0x4140f8 ExitProcess
0x4140fc GetModuleHandleExW
0x414100 GetStdHandle
0x414104 WriteFile
0x414108 FindClose
0x41410c FindFirstFileExW
0x414110 FindNextFileW
0x414114 IsValidCodePage
0x414118 GetACP
0x41411c GetOEMCP
0x414120 GetCPInfo
0x414124 GetCommandLineA
0x414128 GetCommandLineW
0x41412c MultiByteToWideChar
0x414130 WideCharToMultiByte
0x41413c LCMapStringW
0x414140 GetFileType
Library USER32.dll:
0x414168 wsprintfA
0x41416c wsprintfW
Library SHELL32.dll:
0x414148 SHGetFolderPathW
Library ole32.dll:
0x414174 CoInitializeEx
0x414178 CoGetObject
0x41417c CoUninitialize

!This program cannot be run in DOS mode.
`.rdata
@.data
.gfids
@.reloc
<1t}<3tyj
<A|5<Z
<1t8<3t4
<0t'<Ot#<It<lt
QQSVWd
URPQQh
;t$,v-
UQPXY]Y[
t#Vh<LA
zSSSSj
f9:t!V
QQSVj8j@
PPPPPPPP
PPPPPWS
PP9E u:PPVWP
Unknown exception
bad allocation
InitializeConditionVariable
SleepConditionVariableCS
WakeAllConditionVariable
bad array new length
bad exception
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
__based(
__cdecl
__pascal
__stdcall
__thiscall
__fastcall
__vectorcall
__clrcall
__eabi
__ptr64
__restrict
__unaligned
restrict(
delete
operator
`vftable'
`vbtable'
`vcall'
`typeof'
`local static guard'
`string'
`vbase destructor'
`vector deleting destructor'
`default constructor closure'
`scalar deleting destructor'
`vector constructor iterator'
`vector destructor iterator'
`vector vbase constructor iterator'
`virtual displacement map'
`eh vector constructor iterator'
`eh vector destructor iterator'
`eh vector vbase constructor iterator'
`copy constructor closure'
`udt returning'
`local vftable'
`local vftable constructor closure'
new[]
delete[]
`omni callsig'
`placement delete closure'
`placement delete[] closure'
`managed vector constructor iterator'
`managed vector destructor iterator'
`eh vector copy constructor iterator'
`eh vector vbase copy constructor iterator'
`dynamic initializer for '
`dynamic atexit destructor for '
`vector copy constructor iterator'
`vector vbase copy constructor iterator'
`managed vector copy constructor iterator'
`local static thread guard'
operator ""
Type Descriptor'
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Complete Object Locator'
CorExitProcess
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
AreFileApisANSI
FlsAlloc
FlsFree
FlsGetValue
FlsSetValue
InitializeCriticalSectionEx
LCMapStringEx
LocaleNameToLCID
AppPolicyGetProcessTerminationMethod
?5Wg4p
%S#[k=
"B <1=
_hypot
_nextafter
19NzchVhQV8dJ4N4Eq7HEXG9ff8qCoLbvE
tz1Uk4xizSBDwfbr6W5DMVd23ryGQmdZfkVH
44SwJ6cmG9WD6AorshymW9dwHmZhcDgG1cjyMshDLTZLg5ZUCX7LHQDi9FTxRMcErbfP3SNsjtuwgANzztn9LQokHf9cRx8
DRQ9iChWbU8cxC3js3YNwDheajeq6jN8Np
0xf9c6f849011BD33AD95047Eefb920ee9B710214a
t1J4Hyy695YVWK9DsoQJ3U9sVurvbiz1Fce
XxECU5CALtcGLfQEXBWMYV2x5tsEbyDeYH
LaaA4jRi3CE6LXBYjf4LRNqeze8kSnHVtc
ANad8Dk2zijnzgm6y7FfBNcJxitgNoad6t
iota1qpf9cy5xldht6kfwadna2x3tl8k4cg97ej9lev64s6xcmnllam48v2mdyta
rN4Scj7ZeSWa34iRRqYAChkmsM4UoZprUz
s4hc4mbzw2vr
qp02lkt07tuswkqpc089txvvp9z93s773qt6rql7lh
GCP6YXSK3Z4TBIUH7Z6BVAKB7FWUNX3D3VZJXAFYBRZXDGDH7V34CPP3
bnb1fga0zpcwsvwv32rx6kzt8gmukwrcjm36cjsavm
addr1q9tmztf99syx8ehax36dew8x6dzg8njl7tyxsn54zzl9px6hkykj2tqgv0n06dr5mjuwd56ys089lukgdp8f2y972zdsdx3jha
f1eiil2kfjuw4qeuyuadakkql76j2ry5nk2l45pai
TU1mVKXQ6sXDzvEhgv8eztDypyV1NM4bFm
BvgrPq2HYRn3yabXRuzTuJZcEbUCm4m7x2NPKLZqsZJu
terra1f057jr7ze0tn48yvajdec37mjt9v3hdp2e96ye
OpenClipboard
GetClipboardData
GlobalAlloc
GlobalLock
GlobalUnlock
EmptyClipboard
SetClipboardData
CloseClipboard
ExpandEnvironmentStringsW
CopyFileW
xfizrdcnnkrdintkam
fxdvqhsmpjaojrbknydpsopjaijrbe
teyyzbynycmjwsiyfndttsuqsqzgct
wnwsfvxlilztedlduqfpxfnnlpktuq
akwcsqbvthearibafkkiatcbwyvnhdzwihemujrvfutdrhdz
duywykovtiogwhikcuyccsviuhbsukalbdokjmwhttffwwiqodmckcpxwcinckktedrpfkjgwdwnd
cmfsxaffsdyzzosuqjugkupqeskvsswliijfduskrggrxkmuusbkkrlomm
udmazldfwmmxtpxoohalfcuruuxmbttzfkdnlskrthscifrcmndcypwayvbqkbzpjnemsettwysufvwlkv
xcbweflrreovcyyumovuyhpqthyrxzlgoqvqnxeuugegnpvsmxyixnqfqepeotqblhlwcxc
wbabtjriorzzdvfrlgmgztzstzzlawuxmejibnndthzrygk
xsrvdrjersixw
ktxegeqcltugosmlkzfyhuolkmkxggctljtkeq
ntmofzyzqvhrffrdlwfitwbvjvsswcjlboyvuhcyhvmptrafmjisdfrosvhjwsjxznlhcnzmogqrqpxbdecxqjkbneulgksdaeox
gubvpdnxosjsoldlxnfjunyoaejmnxferhszywrvwu
bxbitgkncnsivqfjtozrbaoihuktmxynqkaonmbngoejdzrzanqbrlvkyfpjivuedibihtpfev
cvjzbt
xhbcuhaakzxilokrmdmskjhnmbqtjlrtmpwjdpihbwqkjfrv
jsxiyisawibqftnligplxzxsdgnedovwkhmjuylmhimnkovacpfhaffvppbybdevyyh
wiahjaxpzaknnqsfpcsdnrexlcwevps
fedrabracgfdvwvbvuefouxcvhzbphlgkrwhllkibetluaphuquxcppnrjuqoflklbxddbsiaovtttcsmeudydg
zvqlphnkusyumjbdwslmbfguocjqmkqdfktctav
rnbgdgjtpqiorfwpwnrwnlqrdbsbtrkqveyoxcszymouojejcgcwzwtwjraszxvnkd
lahvnrcixcyeloaatynwqbmomcizqijhbodkozkpuvgcnnwamtpheuzrkezook
oqjfwlgwetvrqeekdebmycforwgtcqsykpowtoyundrrszqncioajocjunzjdodlfrhqazaskrmlghcewfxeidj
vxtghywkmx
czbitntftuacvkqxovfvqqrhqarjfeaiqvhzufmmmhsebitfswizulnpkllldtqepdwlxiuxbnmxhuyvfzggz
udirokqlyezrzcheuvskyrayarukntcyaveqyalikfmgsxmby
vkjxrfpjncvdojcvnrviwyqmpomnazqjycxfwpxzqutstqgzwslssncwvwjpxyrwlvwoxeteaienglcdbhtie
dikqarerkhlvdgqzzdlblgngjwybubdhhxkmlohjuebpzcogzjwgxbhlrtrjmixcbpsdylhlkzcqeuwmmkqcaekrn
bqysaqyfjhvklhhxtecwwpmixgddsaxzxfemcepxdredocnossnadbflsczihodphxghxefzkihd
cjytbhqshbdgbwnyfs
cjygkzgkjmipfgaotjqavhgykcfeystqejhkqzetevfaohsgxiayhytdc
bptrlkffupcnrgwoktvjwdudmvbmhwqzdul
npsrfojlpklntk
gnkogzdxizujjzyxmczywdsdkgpu
pncrrkpllfluukoyndiubikonnvsvpxxttngapdilqtaguwjihqiyau
wybcgdnlvpdalvzsddwyoiicmbtzefjflbcgnrvumzyrjxrujsyfqqfgexxrenfgsxtzeebajtzxyoxwoqmq
qfxhhktmbhpdzpstzarqfkpwaxptavp
savczpxoahumnjuvszjbepz
orwrrkrliato
rwwmlsbnasvkufmbwfoqfueeozzwcbakegmwdomvjxhxocpwfqfeoqztilzazsittdhetaymfqxqdfkdfinfegpfl
qcafdmnhkjymxbisrizoonmca
fyrxjluwigwzamoca
mrnpbxnwbaaqhqqitkiymgyjgxkx
fqqszgvfrthwvuebjgdozoanwxbwidwkbhcnqlahabmbrrsqugqxfebrctltrrdxooffhxoj
lamgdhrowwymdqmqpkcdnpdgwqhjsjzarqtkzdqtosxafxpjmwiawbvbckljmdxhywjslhroqbixlqaqajjurcla
hqhzkxizrbscaofrecutvvtvcjozevliaifwejawaocjjjbglawcmnfshqv
GetModuleFileNameW
string too long
invalid string position
map/set<T> too long
11:57:15
NtQueryInformationProcess
RtlEnterCriticalSection
RtlLeaveCriticalSection
RtlInitUnicodeString
bRSPQVWTUZ[# !&'$%*+()./,-230167ABCDEFGHIJKLMNOPabcdefghijklmnop
.text$mn
.text$x
.text$yd
.idata$5
.00cfg
.CRT$XCA
.CRT$XCAA
.CRT$XCZ
.CRT$XIA
.CRT$XIAA
.CRT$XIAC
.CRT$XIC
.CRT$XIZ
.CRT$XLA
.CRT$XLZ
.CRT$XPA
.CRT$XPX
.CRT$XPXA
.CRT$XPZ
.CRT$XTA
.CRT$XTZ
.rdata
.rdata$T
.rdata$r
.rdata$sxdata
.rdata$zzzdbg
.rtc$IAA
.rtc$IZZ
.rtc$TAA
.rtc$TZZ
.xdata$x
.idata$2
.idata$3
.idata$4
.idata$6
.data$r
.gfids$y
.tls$ZZZ
.rsrc$01
.rsrc$02
StrCmpNW
StrChrA
StrCmpNA
wnsprintfW
StrStrW
SHLWAPI.dll
HeapFree
lstrlenW
lstrlenA
lstrcmpA
GetSystemWow64DirectoryW
GetLastError
lstrcpyA
GlobalFree
HeapReAlloc
HeapAlloc
lstrcpynA
GetProcessHeap
lstrcpyW
GetTickCount
GetCurrentProcess
GetCurrentThreadId
CloseHandle
GetProcAddress
GetCurrentProcessId
GetModuleHandleW
GetModuleFileNameW
OpenProcess
GetWindowsDirectoryW
ReadProcessMemory
KERNEL32.dll
wsprintfA
wsprintfW
USER32.dll
SHGetFolderPathW
SHELL32.dll
CoUninitialize
CoInitializeEx
CoGetObject
ole32.dll
EnterCriticalSection
LeaveCriticalSection
DeleteCriticalSection
SetEvent
ResetEvent
WaitForSingleObjectEx
CreateEventW
UnhandledExceptionFilter
SetUnhandledExceptionFilter
TerminateProcess
IsProcessorFeaturePresent
IsDebuggerPresent
GetStartupInfoW
QueryPerformanceCounter
GetSystemTimeAsFileTime
InitializeSListHead
EncodePointer
RaiseException
InitializeCriticalSectionAndSpinCount
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
FreeLibrary
LoadLibraryExW
SetLastError
RtlUnwind
ExitProcess
GetModuleHandleExW
GetStdHandle
WriteFile
FindClose
FindFirstFileExW
FindNextFileW
IsValidCodePage
GetACP
GetOEMCP
GetCPInfo
GetCommandLineA
GetCommandLineW
MultiByteToWideChar
WideCharToMultiByte
GetEnvironmentStringsW
FreeEnvironmentStringsW
LCMapStringW
GetFileType
SetStdHandle
GetStringTypeW
HeapSize
FlushFileBuffers
GetConsoleOutputCP
GetConsoleMode
SetFilePointerEx
CreateFileW
WriteConsoleW
DecodePointer
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
YYYYYYYYYYYY
}YPPPPYYYYa
``YYYYYYYYYYY
JJJJKRJJJJOLJJJJJJJJUE@JJJEYMFJ]JJJJJJJJJJJJJJacgNJJkmJJEmJJDEJJ
.?AVbad_alloc@std@@
.?AVexception@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVtype_info@@
.?AVbad_array_new_length@std@@
.?AVbad_exception@std@@
<?xml version='1.0' encoding='UTF-8' standalone='yes'?>
<assembly xmlns='urn:schemas-microsoft-com:asm.v1' manifestVersion='1.0'>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
<security>
<requestedPrivileges>
<requestedExecutionLevel level='asInvoker' uiAccess='false' />
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
0E1d1s2}2
3)3<3E3K3W3e3k3s3z3
3$42484A4
=#=*=<=Y=`=f=u=
0)0G0l0u0|0
121L1g1
3 3B3N3
4$404L4X4t4
6:6F6h6t6
8"8:8F8^8j8
969B9Z9f9~9
:2:>:V:b:z:
;*<B<Q<a<j<
<F>U>u>
6%6E667E7e7
<?<p<G=~=
F1U1k1
6%6E6f7
9%9=9T9f:t:
3b4p4~4
5!5(5;5L5
7&757]7
9'9,9<9A9
<9<X<u<
=%=2=8=G=N=S=\=a=j=~=
>6>@>N>V>
?$?.?3?T?Z?v?
0$0-02080B0L0\0l0|0
11*1/151?1I1\1a1
595>5K5
6F7e7o7
8S8[8o8
9-:<:C:y:
:*;E;Q;`;i;v;
<$<*<2<7<]<b<
G0b0n0
11.1:1H1j1z1
2(2-222Y2e2j2o2
374?4Q4
7E7Y7u7
<1<?<F<L<^<p<u<
>9?A?H?
4/4G4b4m4
5K6^6g6t6
7I8Q8[8d8u8
8P9^9g9
<D<K<v=
1Z1^1f1r1
2;2T2Y2r2
3-3>3G3
3,494R4W4`4
;'<.<O<x<
<#=8=H=U=~=
>->7>Y>j>
?;?B?M?[?b?h?
*0W0~0
1w2/3z3
3a4f4k4{4
6&6J6^6c6h6
7 7%7C7R7]7b7g7
80858@8g8y8
8#9>9x9
:%;=;[;f;
;8<=<B<G<P<
1#111A1V1m1
3%3B3J3s3z3
5$565H5Z5l5~5
w2T3[3
2@2`2k2y2
353T3f3p3
3 4F4m4
5/5V5u516a6{6
9G9h9o9
2(232@2R2
273L3U3^3
4!494?4K4j4p4~4
8*828O8_8k8z8
:7:T:h:s:
<6=V=f=
00J0e0
5K6f6|6
=6>;>M>k>
5[5`5d5h5l5
2 2$2(2,2024282<2
3(4,4044484<4@4D4H4L4P4T4X4\4`4d4h4l4p4t4x4|4
5 5$5(5,5054585<5@5D5H5L5P5T5X5\5`5d5h5l5p5t5x5|5
5P<X<`<d<h<l<p<t<x<|<
<8><>@>D>H>L>P>T>X>\>`>d>h>l>p>t>x>|>
? ?$?(?,?0?4?8?<?@?D?H?L?P?T?X?\?`?d?h?l?p?t?x?|?
;@;D;H;L;P;T;X;\;`;d;h;l;p;t;x;|;
T1\1d1l1t1|1
2$2,242<2D2L2T2\2d2l2t2|2
3$3,343<3D3L3T3\3d3l3t3|3
4$4,444<4D4L4T4\4d4l4t4|4
5$5,545<5D5L5T5\5d5l5t5|5
6$6,646<6D6L6T6\6d6l6t6|6
7$7,747<7D7L7T7\7d7l7t7|7
8$8,848<8D8L8T8\8d8l8
3 3(30383@3H3P3X3`3h3p3x3
4 4(40484@4H4P4X4`4h4p4x4
5 5(50585@5H5P5X5`5h5p5x5
6 6(60686@6H6P6X6`6h6p6x6
7 7(70787@7H7P7X7`7h7p7x7
8 8(80888@8H8P8X8`8h8p8x8
9 9(90989@9H9P9X9`9h9p9x9
=$=,=4=<=D=L=T=\=d=l=t=|=
1 1(1@1P1T1d1h1l1t1
2(282<2L2P2T2X2`2x2
3 3$34383<3D3\307P7\7|7
8(8H8P8X8`8h8p8
9 9,9L9T9\9d9l9x9
: :D:L:T:\:d:l:t:|:
;H;\;l;|;
<,<4<<<D<H<P<d<l<
=,=0=L=P=X=`=h=l=p=x=
>(>L>X>`>
?(?H?h?
0(0H0h0
1(1H1h1
7 7$7(7,7074787<7
;8;X;x;
Aadvapi32
api-ms-win-core-fibers-l1-1-1
api-ms-win-core-synch-l1-2-0
kernel32
mscoree.dll
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
January
February
August
September
October
November
December
MM/dd/yy
dddd, MMMM dd, yyyy
HH:mm:ss
((((( H
((((( H
(
Aja-JP
Aapi-ms-win-core-datetime-l1-1-1
api-ms-win-core-fibers-l1-1-1
api-ms-win-core-file-l1-2-2
api-ms-win-core-localization-l1-2-1
api-ms-win-core-localization-obsolete-l1-2-0
api-ms-win-core-processthreads-l1-1-2
api-ms-win-core-string-l1-1-0
api-ms-win-core-synch-l1-2-0
api-ms-win-core-sysinfo-l1-2-1
api-ms-win-core-winrt-l1-1-0
api-ms-win-core-xstate-l2-1-0
api-ms-win-rtcore-ntuser-window-l1-1-0
api-ms-win-security-systemfunctions-l1-1-0
ext-ms-win-ntuser-dialogbox-l1-1-0
ext-ms-win-ntuser-windowstation-l1-1-0
advapi32
kernel32
api-ms-win-appmodel-runtime-l1-1-2
user32
api-ms-
ext-ms-
zh-CHS
az-AZ-Latn
uz-UZ-Latn
kok-IN
syr-SY
div-MV
quz-BO
sr-SP-Latn
az-AZ-Cyrl
uz-UZ-Cyrl
quz-EC
sr-SP-Cyrl
quz-PE
smj-NO
bs-BA-Latn
smj-SE
sr-BA-Latn
sma-NO
sr-BA-Cyrl
sma-SE
sms-FI
smn-FI
zh-CHT
az-az-cyrl
az-az-latn
bs-ba-latn
div-mv
kok-in
quz-bo
quz-ec
quz-pe
sma-no
sma-se
smj-no
smj-se
smn-fi
sms-fi
sr-ba-cyrl
sr-ba-latn
sr-sp-cyrl
sr-sp-latn
syr-sy
uz-uz-cyrl
uz-uz-latn
zh-chs
zh-cht
CONOUT$
advapi32.dll
kernelbase.dll
kernel32.dll
mpr.dll
mscoree.dll
msvcrt.dll
ntdll.dll
user32.dll
winmm.dll
%ComSpec%
\system32
%s\sysnative\%s
/c "powershell -command Add-MpPreference -ExclusionPath '%s'"
%s\%s.exe
Elevation:Administrator!new:%s
{3E5FC7F9-9A51-4367-9063-A120244FBEC7}
\explorer.exe
AFX_DIALOG_LAYOUT
Dialog
MS Shell Dlg
msctls_trackbar32
SysMonthCal32
Static
Button1
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.ClipBanker.Z!c
tehtris Clean
MicroWorld-eScan Trojan.GenericKD.67448049
ClamAV Clean
FireEye Generic.mg.f1bf04ac46c4a9fd
CAT-QuickHeal Clean
McAfee Artemis!F1BF04AC46C4
Malwarebytes Trojan.ClipBanker
VIPRE Trojan.GenericKD.67448049
Sangfor Trojan.Win32.Kryptik.Vgs6
K7AntiVirus Trojan ( 005a6cb61 )
BitDefender Trojan.GenericKD.67448049
K7GW Trojan ( 005a6cb61 )
Cybereason Clean
Baidu Clean
VirIT Clean
Cyren W32/ABRisk.OTCN-4673
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Kryptik_AGen.BKW
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.BypassUAC.gen
Alibaba Trojan:Win32/BypassUAC.ebf75448
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Generic@AI.100 (RDML:eXtWfiLpw2WVNvZ1OPg8zw)
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Heuristic.HEUR/AGEN.1318721
DrWeb Clean
Zillya Clean
TrendMicro TrojanSpy.Win32.TMLOADER.YXDFIZ
McAfee-GW-Edition BehavesLike.Win32.Dropper.ch
Trapmine Clean
CMC Clean
Emsisoft Trojan.GenericKD.67448049 (B)
Ikarus Trojan.Win32.Crypt
GData Trojan.GenericKD.67448049
Jiangmin Clean
Webroot Clean
Avira HEUR/AGEN.1318721
Antiy-AVL Trojan/Win32.Kryptik
Gridinsoft Ransom.Win32.Sabsik.cl
Xcitium Clean
Arcabit Trojan.Generic.D4052CF1
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.Win32.BypassUAC.gen
Microsoft Trojan:Win32/Malgent!MSR
Google Detected
AhnLab-V3 Clean
Acronis Clean
BitDefenderTheta Gen:NN.ZexaF.36250.hCW@aqQ593li
ALYac Trojan.GenericKD.67448049
MAX malware (ai score=86)
DeepInstinct MALICIOUS
VBA32 BScope.Exploit.UAC
Cylance unsafe
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall TrojanSpy.Win32.TMLOADER.YXDFIZ
Tencent Malware.Win32.Gencirc.13cddc45
Yandex Clean
SentinelOne Clean
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Kryptik_AGen.BKW!tr
AVG Win32:Trojan-gen
Avast Win32:Trojan-gen
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.