Static | ZeroBOX

PE Compile Time

2023-08-25 08:41:00

PE Imphash

5fc71b291b4cc66f107eae1b9c82ef58

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00280b34 0x00280c00 5.26283499648
.data 0x00282000 0x000000fc 0x00000200 3.47134267576
.rdata 0x00283000 0x00000540 0x00000600 5.25497406906
.eh_fram 0x00284000 0x00000d84 0x00000e00 4.96232562125
.bss 0x00285000 0x00000070 0x00000000 0.0
.idata 0x00286000 0x000006c0 0x00000800 4.48785633413
.CRT 0x00287000 0x00000018 0x00000200 0.0980041756627
.tls 0x00288000 0x00000020 0x00000200 0.22482003451
.rsrc 0x00289000 0x00001538 0x00001600 7.28664512212

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x002890a8 0x00001472 LANG_ENGLISH SUBLANG_ENGLISH_US PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced
RT_GROUP_ICON 0x0028a520 0x00000014 LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library IPHLPAPI.DLL:
0x686170 GetTcpTable
0x686174 SetTcpEntry
Library KERNEL32.dll:
0x686184 ExitProcess
0x686188 FindClose
0x68618c FindFirstFileA
0x686190 FindNextFileA
0x686194 FreeLibrary
0x686198 GetCommandLineA
0x68619c GetLastError
0x6861a0 GetModuleHandleA
0x6861a4 GetProcAddress
0x6861a8 GetTempPathA
0x6861ac GetTickCount
0x6861b8 LoadLibraryA
0x6861c0 TlsGetValue
0x6861c4 VirtualProtect
0x6861c8 VirtualQuery
Library msvcrt.dll:
0x6861d0 _strdup
0x6861d4 _stricoll
Library msvcrt.dll:
0x6861dc __getmainargs
0x6861e0 __mb_cur_max
0x6861e4 __p__environ
0x6861e8 __p__fmode
0x6861ec __set_app_type
0x6861f0 _cexit
0x6861f4 _errno
0x6861f8 _fpreset
0x6861fc _fullpath
0x686200 _iob
0x686204 _isctype
0x686208 _onexit
0x68620c _pctype
0x686210 _setmode
0x686214 abort
0x686218 atexit
0x68621c calloc
0x686220 free
0x686224 fwrite
0x686228 malloc
0x68622c mbstowcs
0x686230 memcpy
0x686234 realloc
0x686238 setlocale
0x68623c signal
0x686240 strcoll
0x686244 strlen
0x686248 tolower
0x68624c vfprintf
0x686250 wcstombs
Library USER32.dll:
0x686258 CreateWindowExW
0x68625c EnumThreadWindows
0x686260 GetMessageA

!This program cannot be run in DOS mode.
P`.data
.rdata
0@.eh_fram
0@.bss
.idata
\B|%Ic p
o%ANL,
`tN% `D
S% RuN
`%-b@@
%5o8d1
%XZlA1
%[TcU1
%@k<{1
%^Lq,1
5c[x11
%Ke^,5}0
35j!%y%D|@
5 G+i%
5ADwU%
"O5vTg
56}NF5
r05f`SG%
%lB5/N)
%p4Sz%
5(Q~v%
xf%4A$c
5p7tI%A
D50+J9%
5c],*%
%H5~V%@
2}%X@/
%;}9<5)h
%\~-?5&
&%-"(
!,n52E
%C3zZ%
i;x%E(
5r*&O%
%B6gt%
%~(+x5
sn%'g{D
lB/%@`
5EvB]%
W,mU%C.
5:l;C%
HQ%@E(\
%+8:&%
5!HIG5TZ
>yc%P2
j<9o%J
/'!6%G
L[%V$"
=o%@P!
%.wiU5
rz%JvG%
#3E%PB
v}%@"Dx
%'p01%
x5bR';%h
5r"U7%)Ic#%
BX%^$#
-"7%Ryt$
T/^]%\
%Sp-X%
5QOcA%
Sc}5Im@:%D$#
5M@|3%
$_%(pL
,i%JH$
%gm$c%
eR;%A`
k2E%C@G@
%c1E%
:k)%Bzk+
;:47%3
5zev]5
:s%J(0c
5}-I.%`+@q
uIZW%5
5B`s6%
35563~\%
m(L%@h
5{b0\%
~M% "`
knI5Mu
%emU~%
>1H5~2W
k%?`&%
O.3I%+
o;%0PS
xyq%`d
mx%`rIY
9D98%x
s%8pT`
B%:^6G
%EB3%
]z%0 U
ZH%F@.
vZ%H*(
! &n%h"
%O0:3%
g5C2u&%
%2#z9%
5i7PK%D
5TvLl5"f
65YXt_%
%gPdE%
&5olL9%1
%"){\%
5?uxy%
%lhz1%h
V?%@@P
)M2<%(i
N2E%-M
5J{tk%
K5|.#1%
%y@s}%
%*poS%
/Dp%YZ
77`%M
65#9Xa%!0
>SS %.$
5m*be%
5EC`U%
m%W;*x%@
t5n5)ggZ%
%AhUP%@
%<9,P%
K&Rj%A
N%MSB
%z~RV%
(-I %"
E%ZKTD%
%WPz%
L5Cr R%q
5?u725
%_4%Z%
%7}zq%
5|wz{%
A%(/Ud%
jsu&5)F
S"%r;_
% Qut%
|=%W@`
?Y%!W"X
3%%6 L
5Vyw=%f4?M%
5-6Iq%5e#
5@&ia%
%awUU5
@>hO%`
&%Jp@B
mB% A
%,#Bi%
s+IU%@A
arCG%"6
i%fV~\%
%{q`_%'
5]lDO%
5^HL\%0A@X
;T!%QA
NMh%6
%-=zP%(
%aTCL%
y?`%R@
#U9:%@}hp
Pm} %1!
Uzh%XE|!
tyO%P@
}z>D%Q@
<4[%!]
*p+%d,D:
VU6Q%$
gSb%hL
u8cw%\
%_[Y"%
(%>EYW
%_L"L%o
%OOr`%
\Np%HI
j.%(92
2e5tda
B!xl%0
5zUE,%
Y8#%/I
4N({%$
G5a<wr%
%e>x;%
cQ}I5?.+$%
AU<%1*
5$d`B%
Jr%NL
5m"54%
]n%Y*R
5C6ox%
n ;V%01*
QJ%j q
%kMy&%
5pI8p%
,%5O&5%
_9% BI
5nD"W%\
5(~h/%P
G%,@'W
$KaD%$
v{Zc%
%YskJ%
%gZVY5ot
xO5~Xk
5##*^%I,IO%@
54'^x%8L
F%t!aK%
%|fvA5
e%-0Qa
x@S%@p
oR85L0
5(z`&%A
%%%PBE
D%H0L:
d%npP~%
_D%&&gP
A5'=@N%\
~5GJqt%
ny:%@(
=q:t%%p
K8%I`A
j%r@3p
5`__3%
i%N9@)
p;IE%$
j%GAJ/
5d'A75
~7Q5e[
;oN0%s*
%1oqX%
X%%{%Y
O%$CK;
gcTJ%A
L;H#%
5TF%qsnY%
%Cu+d%A
hqJ%A8
;sA`%2 Ar
5Lt+S5.3T
%`BB|%
E%YADw
c5>%H
%IAh3%
%k;)/%
5&'hV%$
%UBB(5
a]wu%@
5'#Z'%2
%?P)5%
czGA%#+
:"%D(D
%vP:b5!P
5/g|X5:=
5"NK#%
q!>%rKI
+:%(((6
51Nyh5
%WF3+5p}
([r%4IV
%J(Sf%
ah,%D@
OPI%XB(
50jW_%0HkT
85eWK}%
5<r_t%
T574dZ%
:%l hR
XM%]`@
%!IPW5
An]b%c$
lX1S%B
z:[%Q"J
{=~%=p/
+5"<mu% `@p
5kF;j%
)L+%`H #
w%^b`U
%s3cl%
%<o5$2HJ%
Q^si5j
5^SOe%2
.&;'%l%
:%g)JL
%R)Ft%@)D
:+i%$f
%kdTL%I
%';+x%
M\%?.fQ%
|Du%@S
Q5IL+}%
b% 9])%
?>N5S#
0:u5 1
MGD%@@
!=% tH
z%>]T{%
(%d[6Q%
58]XQ%
*%$5uw
0%)!@A
P[I~%,
%k.SN%
9%P# B
%AQhr%
bsAT% f
%1g8B%
"wPO%u@
T% H@B
%3@r<%0
M#%DB
"%yxGj%
P5h5I,%`
n%`P "
"%n"qJ%d
f%"KB\
gs(%ec)
X#a%[S
%:G>f%
|%Obu3%M
@4.(%@
5G+:s%
74d%"
L%z&.z%
% 1&U%
X5dun:%
`GO%hjE@
se%(`@
L %(xB
\%g/:o%
5!r{<%D@=(
%=8$J%!
56MpQ%
q%#$Az
%HcK_%z
5M^0b58
5tV\f%
ic%0iP
%%HI"$
/N%(gfn%
5_!Qj%h
35zE,3%
j~3t%H
,#%QHj
5|9F|5
WU5g#I
r5bu:@%
5'rli%,
%R`l$%",
p%2A @
hE%vz?
=|59Hzn%
>K-;%#`
%9ZjW5
M&LI%Wf
n9K%BF
5ade`%
9%WKl2%
rkLm%H
Q5kFP(%
5^H~%
%C'`T%
%5CovY%
g%w?c)%
5KD?D%
)%s0vi%
%OzK.%D
%HDQ/%_
%)hPe%b+
hg%B0`
x%avp\
+(%41K
%zGkl%
*%K#P0
=%L"X0
%C!ee%
W%r;|^%
:)l%@t
{oZ;%S4p8
B.%VTaP
x*%?wa
s5!KD=%
y%c4wx
5%tPl#
5>BQz%B
{sxm%[
24C %
=z]%$
b%0HTH
:`5&zVu%
j%GQ_,%
%OTRB%
LJ!%9Z
~%5}?`
h4% (
Q<% 5gA
Gn)c%F
'BkA%!
^%dBBD
C%4TvB% @F@
5I_nc%
5-zz|%(
tC65A<
|p.%0467
+%09:;
1f%DBB
j%AP@@
c%A@ab
`&%2pdP
%va"e%d@
%3A%J%
G%.w\G
%hYY@%@
u_%(& X
5iB^~%
L%7B@H
(%2j>'%
.|%rEHP
go-%XcG8
l#R%@H
>%oL44
C%b(I"
Fa%AXPd
(%(@a@
c%0Xxc
%O% D!@
(U%bP
kZk%yj@N
0!%b@@
!%AI@
U K%8ztf%
6'%@-2P
t^7%H4
;%auj6
z8%@Hp0
U%,442
k-n;%A4*2
p%iGBb
c%Ht5F
E5qx)x%`@
Dsdp%<yg0
zd%Laq.
5l(p3%
B%PUsF
t% D
5c?|N%
4%PHq@
lj%.lq*
G@:5.-
i%&@F@
%%q='%
IEM%1Ras
%{d#55E
z75b%bR4A
3%ER<_
#E% c!i
,v%@@ b
%.{yi%
`5\NIW%PBA
~% J.D
T%<e(W%
%Mb`75
LA%@TH@
{%iHgK
%!/|g%
%+[Q95
i%00Pi
Sn%JuBD
OZ%h@KZ
6%pI4P
}%F(4p
9{rA%s0`a
zp%`Dl
~9k%S1
=l%hiZ
eU>=%eAlT
%naDv5q
+%_C0a
@PC%(@
%=BPE%
5AeVR%
$Vf%O R6
|O% X0
0%iHg4
{5$&b,%@
%z*]m5
p%HdB@
/L'5f5{ %
T5\@Hn%
*X%n5
T$tD%\
%wo05
Ih%ABC
A%9QGZ
t%'l,W
%JV5z%
yC5GXrv%&
O%q(i@
^s% n$
5[+^~5rO
l%&r'.
5{v%`%
4`r%@Bhb
D%`F1E
U%6bdI
%^-1q5
`%2d87
b%!`DW
%KOWn%p
%~1k*5
@%+LAA
gWy%gA3h
E%Km<U
!%xZz7
-58,Mp%B `
Vj_|%PrRt
f1%FE`R
b%hISp
%NVL2%
h%DJ!8
95%GP1%
+%(Jm8
a%I*bb
|K6%X(
<>%d AT
5Tt{o%
f5bT4>% W
%2itr%
gd%H9
M%jPPE
4t/P%*P
0p0%L`
w%M"LV
v%G00A
/0%BR)!
!%sodI
5TSzP%
"0<Y%`
5QD,S%nh
;%x(+
575'b%
%RS&Z%
&%`cxb
[%R% <
{%PYQS
/%K2@@
u%H#oW
%=h}35
X%9p Z
K%AJD&
G"m{%D
E%o'go%F
f&-%B@
(N%BCA
Un5SMD
5kNIk%
Q:%(F@
CJ%i@!%
%&EA-5
(%VDp(
5Z:K{%)c
%u,@B5l
5wdkv%&
9w%e @
(!B%'@
~A%joFI
G %yM4'
Y`w%RhHV
a%0BLi
ko5[dX
6E&r%6H
L5?rx7%
ui%v^Q+
&r&-%f0b
1%I0H`
A%DxiE
!J1%F1
&%N42*
%Nc?%d6C3
4%"6(r
5Q(d%P
5B{tA5J
*KxC%XQz
L%pIzC
c%4,h(
Z~W%EX
m%E7EG
2%9dLH
%|fe%%
%NTcz%
nt%#aFl
r%"@D1
8L%2TDB
o%D@A&
E%JAN4
{%c&Du
3">%q:
fL%iKvl
I%EATh
[n%BCG
$7%&DtF
F'[%p@
)J_%*@!
n%FX4*
G_%m<4
)%F$0+
W%n'Rf%
n/%r=7h%
(&%dH*
y5f]iG%Z
c~){%1P`Y
hYP%p@A@
Y%1a@I
P<%L@Pt
y%l`12
T%fDd
e%%VnBx
d%lD `
vWa%DI@
E%Df`*
j%L0@\
*E&%BdA/
%6Akl%"@
iP%%D
%Pz~%erx
K%&$!c
wBQP%R
_Z%T[8b
%t8_!5
VT!%Aq
Bs%zTuq%
B%p<Zh
{g|S%W
%qEmj5Y$G
`% d,h
9%!,
Y%a(ay
5)&tL%
J8?H%"
%Sj u%"
&elv%&
o!!L%/
<pW%W(
5wGp %
5.ibn%
1moF%1k
`}5-)}'%
%k[~:%
}%#` P
G%:0*O
5y~<8%
%X"ls%
b|Cd%!5
?+0r%:!
% 2/r%
u64;%&24
5Xb*2%i
'%nBDP
e%H ](%
`#%9E,"
~*%$K@
mh%2$a`
CuC% @
%)yr %
KAv;%#1
%6("o%p
B~zp%@
?e5]Pe|%
5!Jv3%FQ
Jm52EQG%
%o"aE%
(`*%roa@
W!R%Dg!@
u%arqA
1%`@T@
R%lPro
3Cg_%%Cet
5*mi2%
5u\M+%D
%6"^s5v
5e_][5
t(<{t?
</t&<\t"
libgcc_s_dw2-1.dll
__register_frame_info
__deregister_frame_info
libgcj-16.dll
_Jv_RegisterClasses
SZqWUQtNeymkaMJdfowirZtxPbPYuxnCTsKtk
UlbmBAypbXPeoK
lUBLrbahXjcgFGKV
rMgfatdRAQHrpAbOvYZczemfjpIuvBAEAgtBHZwHuC
WRZwPEuqJDkwvCpOzMBfrfDYjzoVsxYPurYhAnpJqkggT
pOgoqtRDqwDtsktqMUgOnMhDCIMYuLYKpWzgoYspwJ
ZNNndKvZVGznJF
IwcGGCWsqrPrFNTicOYvwGyAzdAGuqnzzXmKqeVqg
xgPiVUEDvGlM
QbxWYCoZSGmlumaObIagCtb
vBKGfmTxqLOQzkrFuauiBNaMzqXZxKXvnEcuBJAtCcWDQWw
tcRKtmwSedXRhKFV
NPlZLMlKFJdxDOWCTAQdollFRznmhMSfdDh
bZtbWDjrgFJjWScimDTgjOcWTtccvisSCCjmZWdzKnFlcGLpVX
HILQpvQwzbF
ZfWPHlgJbQULIveYKRBmFDqhmqsTPzFkkc
EYiVHBfyMmXdwfGsxtdapYniGvuwfGUhaPBAmiINWoAJcIOk
ViDMuUZDgpOjiAfcvDzRRmUqIwWqNkKxAFtJQbGjxb
VFefsEefVaN
SgiyCWCgiXtIILGPPAkBthC
Mingw runtime failure:
VirtualQuery failed for %d bytes at address %p
Unknown pseudo relocation protocol version %d.
Unknown pseudo relocation bit size %d.
glob-1.0-mingw32
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GetTcpTable
SetTcpEntry
DeleteCriticalSection
EnterCriticalSection
ExitProcess
FindClose
FindFirstFileA
FindNextFileA
FreeLibrary
GetCommandLineA
GetLastError
GetModuleHandleA
GetProcAddress
GetTempPathA
GetTickCount
InitializeCriticalSection
LeaveCriticalSection
LoadLibraryA
SetUnhandledExceptionFilter
TlsGetValue
VirtualProtect
VirtualQuery
_strdup
_stricoll
__getmainargs
__mb_cur_max
__p__environ
__p__fmode
__set_app_type
_cexit
_errno
_fpreset
_fullpath
_isctype
_onexit
_pctype
_setmode
atexit
calloc
fwrite
malloc
mbstowcs
memcpy
realloc
setlocale
signal
strcoll
strlen
tolower
vfprintf
wcstombs
CreateWindowExW
EnumThreadWindows
GetMessageA
IPHLPAPI.DLL
KERNEL32.dll
msvcrt.dll
msvcrt.dll
USER32.dll
,IDATx
@,h{>\
QGn 3~&
?8]1#E
p~(IAX
5D8Q}6
8KhDZ[
`)S;c]
0U2t$$
*y'Z89
@x%9BJ7
Washington1
Redmond1
Microsoft Corporation1.0,
%Microsoft Windows Production PCA 20110
190327192124Z
200327192124Z0z1
Washington1
Redmond1
Microsoft Corporation1$0"
Microsoft Windows Publisher0
<J1qr!
E0C1)0'
Microsoft Operations Puerto Rico1
230280+4534480
Chttp://www.microsoft.com/pkiops/crl/MicWinProPCA2011_2011-10-19.crl0a
Ehttp://www.microsoft.com/pkiops/certs/MicWinProPCA2011_2011-10-19.crt0
g=U>Oq
MVh#S{EJ
Washington1
Redmond1
Microsoft Corporation1200
)Microsoft Root Certificate Authority 20100
111019184142Z
261019185142Z0
Washington1
Redmond1
Microsoft Corporation1.0,
%Microsoft Windows Production PCA 20110
i%(\6
Ehttp://crl.microsoft.com/pki/crl/products/MicRooCerAut_2010-06-23.crl0Z
>http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt0
Washington1
Redmond1
Microsoft Corporation1.0,
%Microsoft Windows Production PCA 2011
http://www.microsoft.com0
/*sPCL
20190925020446.209Z0
Washington1
Redmond1
Microsoft Corporation1)0'
Microsoft Operations Puerto Rico1&0$
Thales TSS ESN:98FD-C61E-E6411%0#
Microsoft Time-Stamp Service
Washington1
Redmond1
Microsoft Corporation1&0$
Microsoft Time-Stamp PCA 20100
190906204106Z
201204204106Z0
Washington1
Redmond1
Microsoft Corporation1)0'
Microsoft Operations Puerto Rico1&0$
Thales TSS ESN:98FD-C61E-E6411%0#
Microsoft Time-Stamp Service0
Ehttp://crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z
>http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0
Washington1
Redmond1
Microsoft Corporation1200
)Microsoft Root Certificate Authority 20100
100701213655Z
250701214655Z0|1
Washington1
Redmond1
Microsoft Corporation1&0$
Microsoft Time-Stamp PCA 20100
$`2X`F
Ehttp://crl.microsoft.com/pki/crl/products/MicRooCerAut_2010-06-23.crl0Z
>http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt0
1http://www.microsoft.com/PKI/docs/CPS/default.htm0@
oK0D$"<
r~akow
Washington1
Redmond1
Microsoft Corporation1)0'
Microsoft Operations Puerto Rico1&0$
Thales TSS ESN:98FD-C61E-E6411%0#
Microsoft Time-Stamp Service
Washington1
Redmond1
Microsoft Corporation1)0'
Microsoft Operations Puerto Rico1'0%
nCipher NTS ESN:4DE9-0C5E-3E091+0)
"Microsoft Time Source Master Clock0
20190924125637Z
20190925125637Z0w0=
Washington1
Redmond1
Microsoft Corporation1&0$
Microsoft Time-Stamp PCA 2010
Washington1
Redmond1
Microsoft Corporation1&0$
Microsoft Time-Stamp PCA 2010
rp9CWtz
5:Mrga&
dbutton
Microsof
Legal_Policy_Statement
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Stealerc.4!c
tehtris Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
ALYac Clean
Malwarebytes Clean
VIPRE Clean
Sangfor Trojan.Win32.Kryptik.V6ie
CrowdStrike win/malicious_confidence_100% (W)
BitDefender Clean
K7GW Clean
K7AntiVirus Clean
Baidu Clean
VirIT Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/GenKryptik.GNFL
APEX Malicious
Paloalto Clean
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan-PSW.Win32.Stealerc.gen
Alibaba TrojanPSW:Win32/Stealerc.dd39b737
NANO-Antivirus Clean
SUPERAntiSpyware Clean
MicroWorld-eScan Clean
Rising Stealer.Stealerc!8.17BE0 (CLOUD)
Sophos Mal/Generic-S
F-Secure Trojan.TR/Kryptik.jjfaw
DrWeb Clean
Zillya Clean
TrendMicro Clean
McAfee-GW-Edition Artemis!Trojan
Trapmine malicious.moderate.ml.score
FireEye Generic.mg.2d4fd05bdccee76b
Emsisoft Clean
SentinelOne Static AI - Suspicious PE
Jiangmin Clean
Webroot W32.Malware.Gen
Avira TR/Kryptik.jjfaw
MAX Clean
Antiy-AVL Clean
Microsoft Trojan:Win32/Leonem
Gridinsoft Clean
Xcitium Malware@#364bt5hcpxiq6
Arcabit Clean
ViRobot Clean
ZoneAlarm HEUR:Trojan-PSW.Win32.Stealerc.gen
GData Clean
Google Clean
AhnLab-V3 Clean
Acronis Clean
McAfee Artemis!2D4FD05BDCCE
TACHYON Clean
DeepInstinct MALICIOUS
VBA32 Clean
Cylance unsafe
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Win32.Trojan.FalseSign.Iqil
Yandex Clean
Ikarus Trojan.Win32.Krypt
MaxSecure Clean
Fortinet W32/GenKryptik.GNFL!tr
BitDefenderTheta Gen:NN.ZexaF.36350.HMY@ay9Zn4ni
AVG FileRepMalware [Misc]
Cybereason malicious.8fcdf3
Avast FileRepMalware [Misc]
No IRMA results available.