Static | ZeroBOX

PE Compile Time

2023-06-13 01:55:46

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00015090 0x00015200 5.97691730465
.data 0x00017000 0x00001000 0x00001000 2.04469004485
.rdata 0x00018000 0x00000320 0x00000400 4.95857299295
.edata 0x00019000 0x00000058 0x00000200 1.00275032426
.idata 0x0001a000 0x00000014 0x00000200 0.0
.reloc 0x0001b000 0x00000098 0x00000200 2.05482780284

Exports

Ordinal Address Name
1 0x35c1b8a70 DllMain
2 0x35c1c23f0 Start
!This program cannot be run in DOS mode.
`.data
.rdata
@.edata
@.idata
.reloc
[^_]A\
AWAVAUATL
[^_A\A]A^A_]
AVAUATUH
[^_]A\A]A^A_
@[^_]A\
A\A]A^
AUATWH
H[^_A\A]A^
8[^_A\
H[^_]A\A]A^A_
AVAUATE1
^_]A\A]A^
AWAVAUATUWVSH
D$0fA9
H[^_]A\A]A^A_
H[^_]A\A]A^A_
AWAVE1
AUATE1
X[^_]A\A]A^A_
[^_]A\A]A^
H[^_]A\A]A^A_
H[^_]A\A]A^A_
AWAVAUATWVSH
[^_A\A]A^A_]
AUATUWVSH
@[^_]A\A]A^
AWAVAUI
ATWVSH
[^_A\A]A^A_
AVAUATUWVSH
[^_]A\A]A^A_
AWAVAUATWVSH
[^_A\A]A^A_]
AWAVAUI
ATUWVSH
[^_]A\A]A^A_
AVAUATI
_A\A]A^
AVAUATI
x[^_]A\A]A^A_
`[^A\A]A^
[A\A]A^
AWAVAUATI
[^_]A\A]A^A_
AWAVAUI
8A\A]A^A_
AWAVAUI
ATUWVSH
L$hD9t$Xv-H
L$hD9|$XvyH
x[^_]A\A]A^A_
L$h9|$XvK
L$h9\$\v(
D$hD9l$\v
L$h9\$Xv!
[^_]A\A]A^A_
tID9#t
[_A\A]]
[_A\A]]
AWAVAUI
ATWVSH
[^_A\A]A^A_]
AWAVAUI
ATUWVSH
X[^_]A\A]A^A_
AWAVAUI
ATWVSH
[^_A\A]A^A_]
[^_A\A]A^A_]
[^_A\A]A^A_]
[_A\A]
AWAVAUI
ATUWVSH
l$hA9}
T$h9t$dv
[^_]A\A]A^A_
[^_]A\A]A^A_
AUATSH
[A\A]A^
AVAUATUWVSH
X[^_]A\A]A^A_
AUATWVSH
[^_A\A]A^
AWAVAUATUWVH
[^_]A\A]A^A_
[^_]A\A]
AWAVAUATWVSH
9D$d~3H
[^_A\A]A^A_]
([^_A\
AUATU1
H[^_]A\A]
AUATWL
D$Xx=D
[^_A\A]A^A_]
AWAVAUATUWVSH
[^_]A\A]A^A_
AWAVE1
[^_]A\A]A^A_
AVAUATA
L$09|$$v7H
[^_]A\A]A^
AWAVAUATUWVSL
[^_]A\A]A^A_
t HcA<
[^_A\A]
AWAVAUATI
[^_]A\A]A^A_
[^_]A\A]A^A_
AWAVAUI
[^_]A\A]A^A_
[^_]A\
AVAUATUH
[^_]A\A]A^A_
[^_]A\A]A^
AVAUATUWVSH
[^_]A\A]A^
AUATWVH
[^_A\A]A^]
?f9L$*r
?f9\$*
AWAVAUATI
[^_]A\A]A^A_
[A\A]A^
[^_]A\
AWAVAUE1
ATUWVSH
X[^_]A\A]A^A_
AWAVE1
AUATE1
[^_]A\A]A^A_
AWAVAUI
D$HA9}
[^_A\A]A^A_]
AWAVAUE1
X[^_]A\A]A^A_
AVAUATI
[^_]A\A]A^
[^_]A\
AWAVE1
AUATUWVSH
[^_]A\A]A^A_
@[^A\A]A^
AUATVS
[^A\A]A^A_
([^_]A\A]
[^_]A\
[A\A]A^
([^_A\
[^_]A\A]A^
[^_]A\
[^_A\A]A^A_]
AWAVAUATUWVSH
H[^_]A\A]A^A_
ATWVSH
([^_A\
AUATUD
[^_]A\A]A^A_
[^_]A\A]A^
AVAUATI
[^_]A\A]A^
AWAVAUE1
ATUWVH
H[^_]A\A]A^A_
P[^_]A\
BTD9J8u
Q8D9P8u
[^_]A\
ATUWVSH
?f9t$*v
[^_]A\
ATUWVSH
`[^_]A\
[^_A\A]A^A_]
AWAVE1
AUATUWVSH
H[^_]A\A]A^A_
\$8uzH
AVAUATUWVSH
x[^_]A\A]A^A_
X[^_A\
AUATE1
D$8H9D$h
H9D$xu
[^_A\A]A^A_]
AWAVAUATWVSH
[^_A\A]A^A_]
[^_]A\
H[^A\A]
AWAVAUATUWVSH
[^_]A\A]A^A_
ATWVSH
([^_A\
AWAVAUATU1
[^_]A\A]A^A_
demon.x64.dll
DllMain
C:\Windows\System32\svchost.exe
C:\Windows\SysWOW64\svchost.exe
20.115.112.114
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36
Content-type: text/plain
/index.php
/contact.php
/products.php
%s://%s%s
%s://%s:%d%s
Antivirus Signature
Bkav Clean
Lionic Clean
tehtris Clean
DrWeb Clean
MicroWorld-eScan Generic.Trojan.Havokiz.Marte.D.BE8128EC
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
McAfee Clean
Malwarebytes Clean
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
BitDefender Generic.Trojan.Havokiz.Marte.D.BE8128EC
K7GW Clean
CrowdStrike Clean
BitDefenderTheta Clean
VirIT Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
Elastic Clean
ESET-NOD32 a variant of Win64/Havoc_AGen.B
APEX Clean
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky VHO:Backdoor.Win64.Havoc.gen
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Clean
Emsisoft Generic.Trojan.Havokiz.Marte.D.BE8128EC (B)
F-Secure Clean
Baidu Clean
VIPRE Generic.Trojan.Havokiz.Marte.D.BE8128EC
TrendMicro Clean
McAfee-GW-Edition Clean
Trapmine Clean
FireEye Generic.Trojan.Havokiz.Marte.D.BE8128EC
Sophos Clean
SentinelOne Clean
GData Generic.Trojan.Havokiz.Marte.D.BE8128EC
Jiangmin Clean
Webroot Clean
Avira Clean
MAX malware (ai score=80)
Antiy-AVL Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Generic.Trojan.Havokiz.Marte.D.BED1FC0EC
SUPERAntiSpyware Clean
ZoneAlarm VHO:Backdoor.Win64.Havoc.gen
Microsoft Clean
Google Clean
AhnLab-V3 Clean
Acronis Clean
VBA32 Clean
ALYac Generic.Trojan.Havokiz.Marte.D.BE8128EC
TACHYON Clean
DeepInstinct MALICIOUS
Cylance Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Clean
Yandex Clean
Ikarus Clean
MaxSecure Clean
Fortinet Clean
AVG Clean
Avast Clean
No IRMA results available.