Static | ZeroBOX

PE Compile Time

2023-09-13 05:12:40

PE Imphash

e77b2b68e7e98ffac68641bdc168e821

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x002cb7f7 0x002cb800 6.63038505052
.rdata 0x002cd000 0x00116f52 0x00117000 5.78415167529
.data 0x003e4000 0x00005124 0x00004a00 5.04160608767
.reloc 0x003ea000 0x0001933c 0x00019400 6.58490675796

Imports

Library kernel32.dll:
0x6cd1ac GetStdHandle
0x6cd1b0 MultiByteToWideChar
0x6cd1b4 WriteConsoleW
0x6cd1bc GetModuleHandleW
0x6cd1c0 FormatMessageW
0x6cd1c4 GetTempPathW
0x6cd1c8 GetModuleFileNameW
0x6cd1cc CreateFileW
0x6cd1d4 RtlCaptureContext
0x6cd1d8 GetFullPathNameW
0x6cd1dc FindNextFileW
0x6cd1e0 CreateDirectoryW
0x6cd1e4 FindFirstFileW
0x6cd1e8 FindClose
0x6cd1ec GetCurrentThread
0x6cd1f0 GetProcAddress
0x6cd1f4 ReleaseMutex
0x6cd1f8 CreateMutexA
0x6cd208 GetSystemDirectoryW
0x6cd210 CreateProcessW
0x6cd214 GetFileAttributesW
0x6cd218 DuplicateHandle
0x6cd21c CreateNamedPipeW
0x6cd220 CreateThread
0x6cd224 ReadFileEx
0x6cd228 SleepEx
0x6cd22c WriteFileEx
0x6cd230 CreateEventW
0x6cd234 CancelIo
0x6cd238 ReadFile
0x6cd24c DeleteFileW
0x6cd254 CopyFileExW
0x6cd258 GetDriveTypeW
0x6cd260 GetDiskFreeSpaceExW
0x6cd264 DeviceIoControl
0x6cd268 OpenProcess
0x6cd26c GetCurrentProcessId
0x6cd270 GetCurrentProcess
0x6cd274 GetProcessTimes
0x6cd278 TlsFree
0x6cd280 LoadLibraryA
0x6cd288 TlsGetValue
0x6cd28c TlsSetValue
0x6cd290 GetTickCount64
0x6cd298 InitOnceComplete
0x6cd29c TlsAlloc
0x6cd2a0 GetLogicalDrives
0x6cd2a4 HeapReAlloc
0x6cd2ac SwitchToThread
0x6cd2b4 HeapFree
0x6cd2bc GetProcessHeap
0x6cd2c0 HeapAlloc
0x6cd2c8 FreeLibrary
0x6cd2d0 SetFilePointerEx
0x6cd2d4 VirtualQuery
0x6cd2d8 LoadLibraryExW
0x6cd2e0 TerminateProcess
0x6cd2f8 SetLastError
0x6cd318 GetSystemInfo
0x6cd31c GetModuleHandleA
0x6cd320 FlushFileBuffers
0x6cd324 GetTickCount
0x6cd328 MapViewOfFile
0x6cd32c CreateFileMappingW
0x6cd330 FormatMessageA
0x6cd334 GetSystemTime
0x6cd338 WideCharToMultiByte
0x6cd340 GetFileSize
0x6cd344 LockFileEx
0x6cd348 LocalFree
0x6cd34c UnlockFile
0x6cd350 HeapDestroy
0x6cd354 HeapCompact
0x6cd358 LoadLibraryW
0x6cd35c DeleteFileA
0x6cd360 CreateFileA
0x6cd364 FlushViewOfFile
0x6cd368 OutputDebugStringW
0x6cd370 GetFileAttributesA
0x6cd374 GetDiskFreeSpaceA
0x6cd378 GetTempPathA
0x6cd37c HeapSize
0x6cd380 HeapValidate
0x6cd384 UnmapViewOfFile
0x6cd388 CreateMutexW
0x6cd38c UnlockFileEx
0x6cd390 SetEndOfFile
0x6cd394 GetFullPathNameA
0x6cd398 SetFilePointer
0x6cd39c LockFile
0x6cd3a0 OutputDebugStringA
0x6cd3a4 GetDiskFreeSpaceW
0x6cd3a8 WriteFile
0x6cd3ac HeapCreate
0x6cd3b0 AreFileApisANSI
0x6cd3c8 GetCurrentThreadId
0x6cd3cc InitializeSListHead
0x6cd3d0 Sleep
0x6cd3d4 IsDebuggerPresent
0x6cd3d8 GetComputerNameExW
0x6cd3e4 GetExitCodeProcess
0x6cd3e8 WaitForSingleObject
0x6cd3ec GetLastError
0x6cd3f0 GetOverlappedResult
0x6cd3f8 GetConsoleMode
0x6cd3fc CloseHandle
0x6cd404 GetSystemTimes
Library advapi32.dll:
0x6cd02c IsValidSid
0x6cd030 RegQueryValueExW
0x6cd034 RegOpenKeyExW
0x6cd038 RegCloseKey
0x6cd03c LookupAccountSidW
0x6cd040 SystemFunction036
0x6cd044 OpenProcessToken
0x6cd048 GetTokenInformation
0x6cd04c CopySid
0x6cd050 GetLengthSid
Library user32.dll:
0x6cd4e0 GetMonitorInfoW
0x6cd4e4 EnumDisplayMonitors
0x6cd4e8 GetSystemMetrics
Library gdi32.dll:
0x6cd168 DeleteObject
0x6cd16c CreateDCW
0x6cd170 GetObjectW
0x6cd174 GetDIBits
0x6cd178 SetStretchBltMode
0x6cd17c GetDeviceCaps
0x6cd180 SelectObject
0x6cd188 CreateCompatibleDC
0x6cd18c StretchBlt
0x6cd190 DeleteDC
Library bcrypt.dll:
0x6cd12c BCryptGenRandom
Library ws2_32.dll:
0x6cd4f4 getsockopt
0x6cd4f8 shutdown
0x6cd4fc WSASend
0x6cd500 bind
0x6cd504 WSASocketW
0x6cd508 closesocket
0x6cd50c ioctlsocket
0x6cd510 getaddrinfo
0x6cd514 freeaddrinfo
0x6cd518 WSAIoctl
0x6cd51c setsockopt
0x6cd520 send
0x6cd524 WSACleanup
0x6cd528 recv
0x6cd52c getsockname
0x6cd530 WSAGetLastError
0x6cd534 getpeername
0x6cd538 connect
0x6cd53c WSAStartup
Library ntdll.dll:
0x6cd420 NtWriteFile
0x6cd424 NtReadFile
0x6cd42c NtCancelIoFileEx
0x6cd438 NtCreateFile
Library secur32.dll:
0x6cd4a8 FreeContextBuffer
0x6cd4b4 EncryptMessage
0x6cd4c4 LsaFreeReturnBuffer
0x6cd4cc DecryptMessage
0x6cd4d8 ApplyControlToken
Library psapi.dll:
0x6cd494 GetPerformanceInfo
0x6cd498 EnumProcessModules
Library ole32.dll:
0x6cd444 CoCreateInstance
0x6cd448 CoInitializeEx
0x6cd44c CoUninitialize
0x6cd450 CoSetProxyBlanket
Library iphlpapi.dll:
0x6cd198 FreeMibTable
0x6cd19c GetIfTable2
0x6cd1a4 GetIfEntry2
Library netapi32.dll:
0x6cd40c NetUserEnum
0x6cd410 NetApiBufferFree
0x6cd414 NetUserGetInfo
Library pdh.dll:
0x6cd470 PdhOpenQueryA
0x6cd474 PdhRemoveCounter
0x6cd47c PdhCollectQueryData
0x6cd484 PdhCloseQuery
Library powrprof.dll:
Library oleaut32.dll:
0x6cd458 SysAllocString
0x6cd45c GetErrorInfo
0x6cd460 SysStringLen
0x6cd464 SysFreeString
0x6cd468 VariantClear
Library VCRUNTIME140.dll:
0x6cd000 memcpy
0x6cd004 memset
0x6cd008 memmove
0x6cd00c memcmp
0x6cd010 _CxxThrowException
0x6cd014 __CxxFrameHandler3
0x6cd018 strrchr
0x6cd020 __current_exception
Library api-ms-win-crt-string-l1-1-0.dll:
0x6cd104 strcmp
0x6cd108 strlen
0x6cd10c strncmp
0x6cd110 strcspn
Library api-ms-win-crt-math-l1-1-0.dll:
0x6cd078 log10
0x6cd07c log
0x6cd080 _dclass
0x6cd084 pow
0x6cd088 ceil
0x6cd08c round
0x6cd090 exp2
0x6cd094 __setusermatherr
0x6cd098 floor
Library api-ms-win-crt-heap-l1-1-0.dll:
0x6cd058 malloc
0x6cd05c _msize
0x6cd060 _set_new_mode
0x6cd064 realloc
0x6cd068 free
Library api-ms-win-crt-utility-l1-1-0.dll:
0x6cd120 _rotl64
0x6cd124 qsort
Library api-ms-win-crt-time-l1-1-0.dll:
0x6cd118 _localtime64_s
Library api-ms-win-crt-runtime-l1-1-0.dll:
0x6cd0a4 _initterm_e
0x6cd0ac exit
0x6cd0b0 _exit
0x6cd0b4 __p___argc
0x6cd0b8 __p___argv
0x6cd0bc _cexit
0x6cd0c4 _c_exit
0x6cd0cc _seh_filter_exe
0x6cd0d0 _beginthreadex
0x6cd0d4 _initterm
0x6cd0e0 _crt_atexit
0x6cd0e4 _controlfp_s
0x6cd0e8 terminate
0x6cd0ec _endthreadex
0x6cd0f0 _set_app_type
Library api-ms-win-crt-stdio-l1-1-0.dll:
0x6cd0f8 __p__commode
0x6cd0fc _set_fmode
Library api-ms-win-crt-locale-l1-1-0.dll:
0x6cd070 _configthreadlocale

!This program cannot be run in DOS mode.
`.rdata
@.data
.reloc
PhIHDR
PhpHYs
WPhPLTE
WPhtRNS
WhsRGB
PhacTL
PhtEXt
>WhzTXt
PhfcTL
WPhfdAT
WhiTXt
VhgAMA
T$,j VhcHRM
VPhIDAT
tCSUVW
tCSUVW
tCSUVW
tCSUVW
Z8j4QW
Npj%Zj
Wp;Wlu
D$ fUX
0#T$(!
T$TsdI9
YYRPWS
3o(3_,
K<j,PQ
F8j$PW
X3w,3_(
$;,$t+
K1j'PQ
V@PWPW
GPjXWS
F$j@XP
j<XPSW
j<YQRP
j<YQRP
j'Zj"h
A$j&XP
j&XPWhD
\$,3T$
D$$3,$3\$0
D$$3D$
T$0#T$H1
|$ 3t$
!T$<!T$81
#\$L!|$4!|$$1
t$0#D$(1
D$<3,$1
3D$83D$
j4Yjd[
VPVh|1m
VUh83w
9,$t9
USWVP1
T$$j X
T$Dj Z
D$X4Vr
L$p;L$tr$
T$thXKr
T$thhKr
D$ ;L$$
L$ ;l$$
9D$,w(
L$<+0SV
D$D8D$
P8hlQr
D$$\Ur
D$$hUr
D$$pUr
T$0j _
D$$$Vr
D$$X(x
D$$ !m
D$$X(x
P8hlQr
T$ ;L$(
V8hlQr
P8hlQr
V8hlQr
W8hlQr
L$8+8SW
W8hlQr
W8hlQr
W8hlQr
W8hlQr
O0hlQr
W8hlQr
L$8+8SW
W8hlQr
P h\Pr
D$';\$`
D$44Vr
L$T;D$h
L$lhlPr
D$8gWD
V h\Pr
D$4h\Pr
S,hT%m
V(ht0m
jDXPSW
t$4VPU
UWh*3m
UVh*3m
\$LtBj
#D$D#t$H
sdI;L$
tpNtv;T$
A9|$$u
C9L$ u
D$0sW9
f;L$(~
t$@r]F;t$
D$ PBE
D$ PBE
D$7*D$6<
|$Pwt9
T$8h,bm
D$ 0000
j@h$_m
D$t Ym
D$t%Ym
D$t"Ym
t$HWSVP
D$Xf;D$
D$t Ym
T$(;t$
L$$;L$
@f;D$ ~
|$ #|$0!
L$ r;9\$P
T$ #t$0
D$78D$
j<XPSQ
NDj<ZRQP
D$8j+Z
^s;;l$\
<0;|$<
<0;|$<
;T$ds*f
L$4;N$
34$3T$
K kC(4
wVf;L$
C j4QP
$;t$Tsq
XY^_[]
V(hx0p
G@jXPQ
C j$RW
Pth$Hw
G@j,QP
#D$@#t$D
t$3j)RV
C j4QP
C j0QP
j4YQPS
wVf;L$
L$'te<
t48GYsX
t/;4$s7
D$ j+Z
r2<ar.8D$
t;;l$$wA
|$H@J:
T$H@O:
FP+FH;FT
NP+NH;NT
:\$,ue
j _WRWRh$
USWVPi
D$<1|$`
t$<1T$X
|$,3T$x
D$P1T$L
T$ 1t$d
T$|1|$P
T$\1t$
L$X3D$|
|$81L$d
t$p1T$X
t$x1t$L
D$T1L$l
D$ 1\$0
T$P1\$p
D$|1\$
Flj,YQP
FLj4QP
3F@3VH
3F<3ND
~<3V@3^H
3N<3^D
~@3VH1
F8f#_ f
PXj\PV
T$0j X
D$(X(x
D$(X(x
\$0t!9
T$(9D$
D$@P!J
WSVSPj
D$,t.J
D$P4Vr
SWh83w
$5uesp
YZ9(u"
D$;t$
D$(;D$`
L$,h`Tr
rl;p4s
$5uesp
L$HPVU
w{;t$0vu
F@;^@t
jD_WPR
jDYQSP
F ;~ ta
V4jD[SP
jDYQSP
T$\;L$x
T$@hhyr
T$@hhyr
t$ WUUP
t$ WUUP
\$@ D$
T$T+l$,
T$T+|$,
D:,^_[]
D$T;D$
D$<PVS
D$8;D$
D$h;D$
D$8;D$
t$4VPU
P$hXnr
N`j4PQ
N`j4PQ
F`j4PS
jXXPVW
jXXPWS
jtXPVW
jtXPWS
G f;F ui
G"f;F"u_
G$f;F$uU
USWV;T$
USWV;T$
t:(j$PQ
O8j$PW
j8Xuz
j8XPWV
G$j4QP
j@XPSW
jX[SPW
j(XPWV
#T$$#\$(
,;l$D
F'j$XPWV
|$$kl$(
r";4$s*
YZ;0sV
FHh\ww
j$^j _
j _j$^
Naj+PQ
N0j,PQ
#N,#FL)
j(XPSW
~Xj8PW
~pjTPW
F5h<cw
jHXPSW
j@Zh|pw
C kK(4
j%Zj%h
j%Zj%h
Zj%h([w
j%Zj%h
Zj(hM[w
j%Zj%h
j%Zj%h
j%Zj%h
j%Zj%h
j%Zj%h
j%Zj%h
j%Zj%h
~h<1u29~
F@9FLt
3F$3^(
^`j8WS
j@Zh|ow
FP;F,sG
jXYQPW
jXZRWQ
jX_WPS
GPjPWP
PxhTsw
Pxhdsw
Hphtsw
tfRPQS
j'Zj?h
F4j Yj
F4j Yj
Cdj(QP
j'Zj8hxcx
N4j,PQ
j0YQWP
FP9X u
^(j$WS
F,jDYj
F(jDPW
j$YQPR
j$[SWP
O,j$PW
VX;VTu"
FTj(Yj
D$4;D$0uQ
D$Hj+Z
\$,j_Z
#t$4#\$8
L$$9L$
|$<Mt+
D$$9D$
#t$<#|$@
D$$0;Y
L$$#t$8#D$(
T$ 9T$
L$H;L$D
u{jd[j
c~jd_1
F\j`RP
F@j<Xj
j<XPWS
j<YQRP
j$_WPV
~Xj$PW
~Xj(PW
FTj(Yj
FPj(PW
FTj(Yj
FTj(Yj
FTj@Yj
Wp;Wlu
H,j0PR
rb;~ t]9
FtjpQP
WVhl+x
UNC\uG
+D$0rY
2;<$v+
+\$0r.;
>\t6N@u
D$($(x
D$L0'Y
D$P4(x
D$P4(x
T$*:T$+sj
D$(UWP
u h:x
>;~(t1
u!hN:x
>;~(t1
u h,:x
u hd:x
L$8VPW
#D$,#|$0
#D$0#T$
5>I`5vt
WP;WLu
3Ap3Qt
|$hQRWW
D$pQWP
D$@9|$
Fxj(PS
Q hjAx
j ZhpOx
NXj@PQ
FXj@PW
j@Zh@ex
j Zh gx
tXj@_1
j'Zj8hxcx
F h8^x
Fp;Vhu#
F!j'QP
Ndj Yj
w-j$^)
)~()~,)~0
|$TVPW
SDk[L0
BX;BTu
pLrF;J wA
{@;{<u
r6;~8u
;^<t,9V$u'
^<9V4|
9|$Lu$
D$89l$$t
D$8PRV
D$8PUV
L$,9L$
D$8PRV
D$$9D$,
!\$$YY
t$(hto{
l$,8_Qt
s19\$4
wFWPWU
!L$ !L$TSV
D$`uVj
L$`QPVW
D$$QQ3
t$(QVW
tq:D$8u
|$4;|$t|
9F8v79F,u
t=hlj{
;D$H}|
C 9.w.9{(
T$$;T$
L$<RQPUV
L$8_]3
t$,hPf{
D$@!\$
K$]_^[
YY_^][Y
YY_^][
;L$0|-
tJF;5(
WWWWWh
ulWWWWWh
uMWWWWWh3
_^][YY
D$HQPU
D$@XP_P^
t$$;t$<
FY9t$4u
QQSUVWj
_^][YY
QQSVj
@9D$$u
uUPShD
jeX_^][
$8\$1t
D$ j[P
PQRQRQRQRhX
D$(j:P
9|$8vW
L$8VQP
]_^[YY
_^][YY
f;F"}43
[_^]YY
D$`j UP
vF9F0tA
^_][YY
D$LVSP
t$ WQP
l$$VW3
D$0;|$8
uI9n,t
u(9n u
F"H9D$
UVWj)3
L$@_^][3
\$09X@t
xr;T$(}l
D$@uV<At
|$@AjGXjL^
D$@9\$
9\$0u[
< u.9\$$u(
NX9\$
YY_^][
D$89W@t
t$@VUt
\$88_$t
D$$SWP
D$`SUV
\$$9_<t
D$,j0SP
Y;D$,u
;T$0tW
L$\_^][3
D$@-PW
91~{UW
x-;Gp}(k
D$L-PW
L$(+L$h
]D$XQQ
9L$8~<
L$<QSh|
@M:CTt
YY_^][
YY_^]3
|$ G;|$,
A(_^]3
Fp;Ft}
Fp;Ft|
F<;F\~
um9~Pu
YPhHc{
QQSUV3
_^][YY
Y_][^YY
jeX_^][
D$(SQP
E|$09n
jeX_^][Y
#N #F$
\$(UVWS
D$(9D$
FH#F@^
T$$Y_^][
_^][YY
D$8PVW
L$X_^][3
D$LPSVW
/D$ v#
l$dVWj(
L$d_^][3
T$<RWP
L$ ;\$
L$$QPR
D$HPWU
D$0PQS
D$0PWS
D$<PWS
E(+K8+
V0_^[]
YY_[^3
\$HUVW
u-9t$`w4j
D$8;D$<w2
T$@;L$Dw!j
L$,QPS
D$89D$`t
9D$ u9
D$8;D$<
L$8QPS
D$8;D$ r
L$89L$
t$L!l$X
D$XPVS
t$dVQS
L$(SUV
D$D#O #G$
;B,uZf
f;D$,u`f9u
D$$Xf;
f;L$0u
]_^[YY
9x$~;SU
D$ PSU
~.91t&j
L$P;8|
T$L;8|x
YY_^][Y
\$dUWS
T$hjpV
t$LjGU
@2PjGU
D$0A9L$(uf9O2u
t$Tj3U
t$0jGU
t$Tj4U
t$,YY;
t$@PjGU
D$HHPU
t$0Vj'U
t$XjaU
9t$ v*
F;t$ |
t$TjaU
t$XjbU
t$tjaU
A,@PWVUQ
YY_^][
Yf9H"u_
^]_[YY
l$$PWV
Y9|$$u%
T$(SUV
l$(PUj
At;Ftt
D$,PUS
Y;D$ t,
D$p+A8
D$\9\$$
\$hv+j
l$4;l$$
u6;|$|}.
;|$|}e
YY;l$4
L$4;|$||
D$|+t$\FVP
D$0+L$8
+D$TY3
L$(f;A
D$@PVQ
L$,G;|$|
f9D$\u
L$(;L$
5;t$$}
l$|URQP
L$t_][3
H,9S ~
f9A>v9
;|$ r;;|$
Y_^][YY
D$ PSV
D$ PSV
;B<w3
D$ WPU
D$ WPU
T$$RPQ
8^Dt6V
tDPh<h{
D$0Y8X
D$`t!;
tHh,i{
G 9D$0
t$|PhHi{
t$|PQhpi{
D$ PWU
|$0;}0v
D$4PWU
L$0f;F
|$4u"Sj
;D$ t
GXko<(
YYC;_@|
t$<PSj
t$(j$Xj Y
PVUj^R
D$<FE;
L$PAQSV
YY_^][
ECx9xTuw
t$\jaS
t$lVWh
t$@jPS
D$8QPj
D$4QPj
Rj$Xj Y
t$(WVU
_^][YY
9wl~/S
\$$UVW
T$PSUV
t$Hj\W
9D$\tD
T$DSUV
T$ 99t
,][_^YY
@ f;G tUA
A$;B,u
#L$ #D$
#X8#H<
D$H;D$
T$H#L$4#T$8
#T$ #L$
T$0j?Yf;J"}
D(0 t@
PPPjGW
j$ZPRW
D$hQQQQ
D(0 tF
YY_^][
D$ WjL
D$(PWWWV
f;G"}.
D$(SPj;
G*PRSSSV
t$(Yf;n2sH
L$ PVQU
uQf;G"}D
8^WuuW
D$,SUV
T$,;D$@
*;D$,~
;\$$|k
l$@;L$
YY9^0tJ9^,~
YYC;^,|
YY_^][
G\#J(#B,
L$ +D$
;t$8}R
w@9L$@P
L$(xd;L$@}^
D$@WPVU
;D$0w<rg
D$X;D$`s0
;D$0r7w
D$X;D$`r+
O$#W #L$<
f#D$\Yf
D$,8_Wt
f#D$Xf
\$(9\$Ht`
t$,WPV
tu9XDup
D$<#D$X#T$D
H$_]^[
@Sk\$P0U
l$PVWj
l$XPVU
#D$ #T$$
YY_^][
YY_^][
D$PlD{
D$TtD{
t$xPVS
t$xVQU
L$d_^][3
YYu<9_
f;F4s53
f;F2sK3
tnf9n
YY_^][Y
f;A tFV
L$$SUV
t$$VQPU
[_^]YY
~ 9^$~;
G<5uCS
D$ 97~`
V"_^][
L$LQPVW
t$98~
9D$dSU
D$Lpp{
D$Tlp{
D$dUPj;S
D$LPj;S
D$XPj;S
D$HPj;S
D$\Pj;S
D$LPj;S
D$XPj;S
u;9l$t
D$HPj;S
D$\Pj;S
D$`PVW
YYUUUUU
D$pPUW
t$Hj5U
t$$jpU
D$Pf;r
t$4Wj4U
t$Xj`U
u!9Sxu
\$<UVW
t$Xj5S
9C$u:PPPPPUVS
YY_^][
D$D9ZDum9]Duh
9Z<uY9X
E$9D$ v
D$(PUS
k;(wgUP
D$(PUS
]_^[YY
(G;|$@|
(;\$@|
D$$Y^_][
tSUVWj
\$ ;t$
8_^][Y
_^][YY
t$ RPj
t$ RPj
D$ VWP
3Y_^][
|$$!t$ h
t$0RUP
L$,SUVW
D$$;D$
D$$;D$
D$ _^[
D$@j`j
l$H;G@
D$ PSQ
D$0SQU
E ^]_[
j,X];<0~
8P4t.9_
|$(9L$$
W@}<9u
T$ 9L$
Y9G(tg
9t$$u/PSVW
;B$u+W9N
_^][YY
L$(SUVW3
L$8+T$
YY;_@|
\$@PhNy`
D$HFYY
D$(@PUWV
u(9GPu
t$ SUPV
L$$_^]
l$ VW3
L$(;L$$}[
L$ QPU
hSUVW3
D$@PQj
(_^][YY
9\$HuXU
\$89\$
D$L9\$
t$$9\$Hu$V
D$LPh|
t$|kl$
L$pUQP
D$DY9\$(~d
D$LYY9
D$0PSVU
1T$$C;
D$@;|$T|
L$8QPR
;T$ w$
l$L@;F
!D$ 9F
\$(;\$,w@j
9D$PtP9E
G t99_
F(9F$t
\$$UW3
l$$9|$4u
|$(+L$$
t$9D$,t
\$(+D$$
D$X98u
Z<0r4<9w0
L$,^][
_^][YY
D$ Pj#
D$(9D$0u1
D$P;D$$
+D$L9D$P
;L$ |O
D$49D$$vC
D$H9D$$~
\$@9\$Lu
D$(9L$L
u{9\$Lu
t$@VRP
B\;NXu
B\;NXu
t-9~8t(
G;FD~6
PUSRQW
tS9^8tN
9~$u_;~
D$4SPj
;L$ vPQ
G,tB;_ ~+j
v8RRRRRR
G4_^][
Y_^[]Y
lSUVW3
D$(9D$
D$(9D$
;D$$s"
T$4RPQ
9t$,tX95
t,VWWWWWWU
|$$YY;|$
D$`#D$
\$<UVW
!l$$FW
D$<PRW
#T$H#L$L
D$$PSW
QQSUVW
_^][YY
u7;\$ t
D$dj0UP
D$ UPj
Y_^][Y
l$0VW3
L$8;L$
x2;T$0},Q
_^][YY
<"t.<'t*<[t&<`t"S
<0|]<9
t?<9w
u?9s t
u(9s(t
L$P_^][3
<XtI<nty<xtA
t*9}0u%
G$_^][
9_$ugV
[ Y;>|
D$Dj@Y
D$ YY9X
D$DYY9X
D$DYY9X
uEWh<T{
u+Wh8T{
D$0;T$
;L$ s0
D$09D$4
09Q u+9V
t29t$$tg
u;9t$$t
_^][YY
T$4SUV
t$(;L$
L$4;D$
l$(YYj
L$D9+u>3
D$$9L0
t$8EVUW
D$$_^][
@;D$ |C
~>;~$u9
qPWSVU
QQSUVW
_^][YY
^]_[YY
T$LSUV
\$8YYV
D$(YUP
D$,YY9X
D$X@9D$
D$0YY9X
T$$9_$
D$0YUP
D$4YY9X
D$P;A$t
w$_^][
D$0PUWQQQj VS
9HX~GQQ
v`C;_0|
SUWj03
uUSVh`
u<SSSSSh
uSSSSSh
QQSUV3
9_^][YY
;\$@u;
_^][YY
D$(9D$
9L$0v6
D$(9D$T
L$$;L$
;\$ r
G$;L$,u
0SUVW3
;|$ ry
D$D|#;
CT;N@u
ET9KPu
9CTtn;CT|
9^0~FW
`C;^0|
|$(9E$u#
V,YY][^_
_^][YY
YY90uJ
L$ 91t
<et3<n
<wt<<xt8<yt43
_093u/
C9X0u6
D$0PUj
9\$$ttSj
YY_^][
9o$uNj`UV
D$$;CH
D$(YYSW
_^][YY
C;~0|#R
VX_^][
D$,;F$|$
D$,;F$
D$(9GPs
D$(9GPv
~T[;^0}3
|$$9>t>
GTYY^[
D$(9w$u
|$ 9D$<|/
YY_^][
9D$(|%
t$$VUW
YY_^][YY
9H0u)QU
t$ PSW
L$(YjxZ
D$XPVU
`C;^0|
D$h9D$
D$X9E$
D$<WSPU
D$ PSU
v`G;{0|
YY_^][
D$hPWS
D$ PWS
D$H;D$@
D$(;D$ ~
L$ ;D$
u9D$$u
D$$PWS
D$tPWSU
u#h^Ka
YY9t$$
D$P9D$ uW
;D$T|M
;D$0s>
D$(F;t$$
l$ 9t$
u%9E u
;t$ }&
GYY;|$
l$$VW3
9|$8tx
9|$$u!S
T$,SU3
;|$8}t
T$(xjk
;D$$}c
^_][YY
Y9~$t{
U;\$ }X
D$$RPU
;D$(tYW
;t$ }$
t$ SVj
L$0_^[3
L$ uqU
t$HWVS
L$8QPVW
9kD~o3
;_D|EU
Y;~D|
n@9k$uW9nP~
8W:t'8W9t
D$ deeg
D$$hijk
D$(lnor
D$,stuu
D$0wyzo
D$4uaio
D$Deior
D$Husthj}
D$hhhi
D$|vwwx
t$8jCS
\$<UVW
l$4PhH
t$XjyV
t$ j"V
t$ j#V
t$Xj^V
t$Xj^V
USWjaV
YY_^][
PPPj!W
D$8jyS
t$Tj$S
t$Xj^S
D$DPVW
F<_^][
W;h0v+h0
:FEt%hE
D$0+L$$
O +t$$F
T$,SUV
D$$;D$D}
D$PYYj
4B;P@|
D$ 9\$<~
G;|$<|
\$ CSU
D$ PSU
D$ 9D$
_^][YY
_^][YY
_^][YY
\$DYY;
9D$8w|
T$$9D$8w
jcX_^]
T$$u.9W
f;N2s9
_^][YY
;D$@t"
9T$4vP;D$(wJ
T$4+T$
T$8;t$L
tZ9~$uU3
f;F2sCVj
u!WVSU
L$@Wju
;|$$}u
u?hCp{
t;hKn{
]_^[YY
L$4+L$
<\uWAB
9<"tC<\t?</t;<bt7<ft3<nt/<rt+<tt'<uu;
<(uufQ
EBAF;l$
|$,9~L
YY_^][
\$TUVW
D$LFkE<
D$HWjd
;D$Pt
l$09T$D|`
T$@;T$
vT;D$,wN
T$@+T$
\$ SRQP
l$0kq<
u'Qh`p{
l$(9o<
t+9|$Pt!
t$Phlp{
t 9|$Pt
t$Phpp{
t09|$Pt*
t$Phtp{
E9l$0u0
9L$Pua
D$<9D$
D$@PVU
t$TQPh(q{
t$TPh8q{
\$PUVWj
Y;D$0t
Y9D$0uq
Y;D$0u_
Y;D$0t
t$<jvW
D$4PUV
D$4PUV
9S4uh
N(RQjv
D$PPSV
\$(PSjvW
D$tPUV
t$(j$W
|$DSj'W
D$4PSV
D$@PUV
YYf9D$,~
N(RQjv
D$lPSV
^8KSUV
t$(j$V
D$PSWP
L$DjGS
9t$0~7
D$,VUW
t$@VjPS
D$lPUV
D$ @Pj
L$<f9E
D$ @Pj
PPPjYS
t$$UUj
F$*F(jL
uU9s8uP
uB9s8u=
u49t$(u.
_^][YY
Fav8^W
L$<_^[3
+\$$yK
;T$0rKQRS
T$,;t$
T$ RQPj
u89T$ u2
C,;Gpt
K ;ODso
D+|$<3
u@UUSV
u#9G`t
D$ PSW
!nP!nT
D$ VSP
wP!.!n
uS9\$<uM
t$,+t$
9D$8t?
YY;D$$
jeX_^][
L$4+L$(
D$@PQUV
9^,t;8^
u;k w
D$$=91{
uW8G)tR3
8D$`u88D$bt?
tYkD$L<
|$,+L$
t$(j0j
L$h_^3
YY_^][
;\$0u#
t$0UVW
t$0UVW
9n<u{9n0u
tI9~4v5
^4_^][Y
L$$BWPQ
<itQ<lt#<sueS
<at0<i
L$4_^][3
SUVWjB3
A f;G t
\$@UV3
D$D9o$t
YY9l$(t
Y;D$ t$
\$0UV3
L$@9n<u.
t$<+t$H
t$\jZW
D$p@Pj
T$<+T$T
D$TRPj
t/9PPt
;^\t8SWj
L$ _^][3
L$(_^][3
F9sl~D
L$4SUV
x;L$$r!;
L$ r|RQP
G;|$,}.
[0Y;~h|
t$(SWU
AH9z<t
QRPVh<
YY_^[]
D$LYRW
D$4Y_^][
ET$0RQhd
D$<j 3
SSSSSSP
mHCYY;
w$_^][
k4_^][
5Sjd[;
T$\SUV
VVh s{
D$8RPU
u PjS
VVh,s{
L$ VWQRPS
L$d_^][3
L$8SUV
u99GDt-j
t$TPWQ
D$Xj SP
L$p9^,t!
Y09^0t(
D$0;D$
D$$8XW
tDh$t{
D$$8XW
~Mhps{
D$$@Ph
D$ 8YWu;P
L$h_^][3
t$8Vh0
duGSUW
YY9w(u%
SUVWj43
PPPhx?{
D$(YYV
L$@_^]
L$$QWRPV
L$D_^][3
t-;oH~
WWWWWWh
n4_^][Y
WtLRQQ
tH+C j
l$$VWj
L$<_^][3
D$@PVU
D$$;L$(
D$8t4U
UVW;Cl~
Ch;CX|bksd(
Ah+Adk
CX9Ch|\
{d_^][YY
Fh;FX|
~hO;^l}M
^l_^][
(9;~,V
D$Lhp{
uP+t$@N
t$4j;S
t$ |.3
t$Tj^W
L$,;8|
D$8PQS
t$$jaW
t$4VPh
D$$PUVjaW
t$\FPVj
t$,jaW
t$(VQPS
D$T@PUVjaW
L$,;\$X|
X_^][Y
QQSUVW
n8PUVV
T$$9D$
D$$;D$0|
LD$TPS
LD$DVPS
G;|$<|
YY][_^Y
D$,PVS
D$TYYP
YY_^][
YY_^][
M$j Yf
YY_^][
:;YYuZ
t$@WPPPV
f;G"}63
YY^]YY
t$(j$S
f9L$(s3
PUVj^S
T$(;L$$
T$8YY3
F,WUjKS
t$4VUWjaS
t$ UhP
YY_^][
D$DPPh@z{
t$\SSSVh
t$$h,|{
l$0SUh<|{
SUPSPUhx|{
tA8X+u<
T$<!|$,!|$
ug9D$<}
t$4<+u
t3h "{
UUhx?{
YY_^][
|$tAtV
|$tAj!
Y9F0t$
FFYf;G
Y_][^YY
D$HtJ8]
D$(PVU
D$(PVU
t$$HPV
u#USQW
D$HSUV
f9^2tB
9F,u7WV
9\$Xu'
D$ PRS
9D$,tY
D$ PUS
D$ PUS
;D$,uV
Y9^pt'
~\9\$(tV
9l$(t
D$<jdUP
@<+B(;
T$(9D$
L$4;H<v
T$@+HT
HX;V,s
L$,_^][3
f!HN_^][YY
t$hjsS
F,PQjJS
D$XUPjvS
L$,QPV
D$TY<@
t$0jaS
t$8j0U
$^_][YY
G,@PQjJ
L$$PQj
~^j ZRY
C4_^[]
T$,SU3
@PVRht
YY_^][Y
f;F"}$3
D$@PWVS
D$0SUV
D$4VQW
t$ j$S
phk@\0
GH_^][
E"j@]f;
'j?Xj@];
LD_][
\$4UVW
tC!L$09
L$,;|
D$$QPV
E"9D$@}G
YY_^][
t$@QVUW
t$@PVUW
Y_^][Y
L$ 9K$
D$LUPj;V
A83D$H
YY_^][
F"8F+u
D$TUVWj
D$8@P3
t$@jaW
t$,j$W
@U8C+u
t$4j^W
t$Pj.W
B8S+ufS
t$`USj
t$0j'W
YY_^][
9nHt9S
u29D$(u
t$ UWV
YY_^][
f;G"}W3
f;G"}`3
D$<@Pj
G,^_][
t$0j`S
D$ S@f
D$09t$Xt
PWWjfU
t$TPjfU
H9D$ |29t$Xu,
t$4QVWj2Xj4Y
t$@Wj3Xj5Z
L$XQPj2U
L$X;L$Tu
PVWj`U
VW9D$\u
t$,j3U
D$X9D$Tu
t$0j^U
T$XYY;
t$ j'U
YY^]_[
t$(RSUW
l$0PVU
t$4jGV
t$8j\V
B"j@_f;
j?Xj@_;
<Gu^<qu
F f;G u*
|$ ,u'
t$<RUV
t$HPVU
t$8RUV
ED$$PVSW
t$DPVU
_^][YY
C|$f9z |
<+ujSUW
\$DUVW3
D$<90~*
L$\9{$
f9x }X
D$(#D$$
D$$9|$`t
uJhCp{
t&hWp{
L$ hDn{
VXtJPW
FT#D$0
\$`]VW
L$(9L$Lt?
D$$PWSV
D$0PWUV
YY_[]^
L$$SUV
G0VjY
<`uESVW3
D$$FPV
L$,9A(tq
T$0;D$
t8;M$|
t0;M$|
;M$tR3
D$LPSV
uT9D$(t
L$$;L$(r
_^][YY
L$$+|$ ^]
D$@WPV
VVVVVW
VVVVVW
t$ 9q\
<"tY<'tU<[t,<`tMP
D$DPVU
D$\Phby`
T$$RQP
t$(9l$
L$ +L$
D$49p(u
et%SSSh
1_^][YY
E9l$8~>
E;l$8|
9HPt&9pXu!9X\u
D$,;D$$
9t$Lt;P
t$$QSV
l$4VW3
9T$,tQ
D$89|$(u.
D$ PUVS
SUjlWV
ut9^$u:9^ u
u59^(uj
<)t+<,
u 9u u
9\$ u
t$DY;u
};9\$,t59\$ uQS
9\$ u&Sj(
L$8SUQ
L$(Yj?Z
t$PUQRP
t$ PSUQ
|$$WVS
D$08F(u
L$,+L$(
X_^][YY
9D$,~2
9o$uD9n
o$_^][Y
D$(PWj
WWWj SV
YY]_^[
9N$u0k
_^][YY
D$,UVW
!t$(!t$,!t$0
|$D9^0~H
`C;^0|
L$ QPU3
@9\$Dj
uf9\$$u
D$$PUh8
_^][YY
;L$ t1
)9E t6
u=9^,t
D$(j 3
uY9o,t
l$0VW3
D$ QPW
D$(@PS
u*VVWU
u,VPjGS
L$D9T$(
D$d@PjaS
t$Tj5XPS
t$@;t$(
D$,9N$t
t$`j2S
f;B2sF
t$Pj^S
ED$$RW
D$d@PS
;T$4}2
t.9o$t'
\$09l$(t
t$(f;4h
t$$PQja
D$@PWj
T$<jPU
f;G"}K
$;ul}0f
PPVPWS
t$\VWj
tc;|$0t]QR
_]^[YY
<>tP<<
_^][YY
D$$CYY
f;F4sUS3
Q,9P,u
t$4j^V
D$ttv{
\$DSFV
|$X9]$
D$4@Pj
uq9E$ulVW
YY_^][
C"+D$t;
D$$;1t
N(t"VRU
t$8j$W
t$@j^W
T$<;T$DtNV
t$@j^W
t$LjPW
C"@PVU
t$@j^W
t$(VPU
t5Vj3W
t$XQSU
\$<Sj'W
OlSjzW
$8< u:
Q4CYY;
0t)UPh
t$$Ph8q{
\$$UVW
t$DVUS
YY_^[]
t-UWPj
SUVWt<
L$X_[3
t$(SRQW
t"8H+u
D$$Wj@X9B
D$8SWVP
D$HUSV
Y9\$Lu'
YY_]^[
m0Y;^h|
FD98ug
l$@VWS
u UVh|
@PPjTW
t$HjdW
D$ t&;
t$,jGW
HVSj;W
9\$$u9ht
D$ 9\$
D$4+D$(P
L$$PQRh
t$(VSQ
t$$jpW
H(Sj$W
t$dj2W
t$0j`W
'9\$$t!
@PSj'W
9T$8u$
9L$8u*
ZRSjuW
|$KqtE
L$DQSj
t$Dj$W
t$Hj^W
t$Lj)W
D$<f;H2s.
t$hQPRj
F89l$<
D$DXPPj
PSVj5W
D$@HPW
t$8j^W
D$pHPW
f;E2s=
t$0j'W
t$Xj)W
t$Dj'W
VSUj5W
uWSh00{
@PPjTW
D$,9\$(t
D$4f9\$$t>jpR
t$tj!W
9\$4t7V
D$=uS3
;_|~;h$
\$,u8+
T$@SUVW
D$$f;X"
QQPVQW
t$D@PW
t$<j5S
UV9D$(
9D$ rMV
L$,QRP
t$Tj'W
t$ jqW
t$<Vj%W
jHh`N~
PPPPPUVj
PPPPPUVj
YY[]_^
9w8u%9w
\$(UWj
t$,SVW
D$49D$,w
9|$Xtj
9D$ |"
9D$XPj
u69D$Xu0S
WPPUPS
YY][_^
D$$UVWh
t$ ;D$P
~=9A<u8
Gt"uX3
G8u!9G
u49UDu/
t$4jvV
jBXf9E
9E(u!9E,u
D$dQQPVS
t$(PRjyV
9KHtdj
T$`9O$~9
L$l;W$|
t$dj^V
L$H;(|
D$<@Pj
D$`@PjCV
|$ @PjCW
t$|jCW
L$<8A+
i0f;j(}
t$TjpV
|$HPWjbV
D$$x!k
D$PYY3
D$LSUVW
ucSjPU
L$ QRP
v-Wk>H
D$$PWV
9D$8u$
YY_^][
F`@PUjcW
D$@@Pj
9\$0|X
t$(WSV
9L$8~lV
EC;\$<|
_][^YY
l$X<Bu
<Ct><Ft:3
f;C"}"V3
\$@UVW
SSSSPSW
\$@PSSSW
;L$0t!
D$<_^][
D$$9F(t
l$(9^$
!\$0UV
L$Tf;E"
YY_^][
L$lf;G2
D$\@Pj
L$\jvS
9|$0t,
\$ YYP
t$pjaS
ED$PPj2S
t$@j$S
t$DjS
PWVj^U
t$4jS
t$Dj^S
f;E"}v3
t$$jS
f;M"}e
t$Hj'S
t$Pj^S
f;E"}=
(VWj(3
tf9~$ua
t"WSWWV
YY_^][
j,Xj[Y
t$p)T$p3
XD$PQQ
s&j@Y+
D$0$.:
T$P;t$l|
T$Xs#3
D$l;FPu
T$X+L$`
;D$Hw5kE
QRhh'{
;D$<u3
+D$0Hj
D$`~m3
G0HPQV
D$($.:
D$,PWV
L$(f9E
D$,+l$
t$ @PV
D$,SRV
D$ f!P
D$(h\l{
D$(h|l{
tU9W0tPUW
t$lYYW
_^][YY
FXkD$,(UP
juXjKY
D$ SUV3
D$,;xl}
9t$4t<k
L$@_^]
9D$TtQA
D$XBYY
;l$Hwdj
L$T;L$
L$(;T$
GH#F$_^[
9N$jeX
Y8^;vpW
w$_^][
VWj:Yj:
9U8tl3
@_^][Y
9D$$t,j
uz9~Dt+
9\$$tz
ug8^+u
t$,UUU
\$@QPj
9t$(r[
D$0UQR
L$t^][3
][;FDt
ur9G,t
uO9G<t
l$tVWj
A0XWRf
C,uo9D$
uKj@Xf9F"}B
t$ VQU
t$,VQW
CD9t$0
t$DUSV
T$$9SH
D$4;KH|
D$$f;A4sH
9L$@u3
u:f9t$$w3
*PQjKW
t$,Uj2W
D$XPj2W
PPVj}W
f9L$$sJ
t$Lj^W
F,PRjKW
N2QUjvW
D$,@P3
t$dj SSSV
t$|j/W
t$LjaW
D$$t.9\$,t
D$P9A u
F,#N(#C\
#CX#S\
F,#KX#C\
@$@uj
S\_^][
,_^][3
D$ ;.|
_^][YY
_^][YY
_][^YY
P@PjsS
<VtC<Zt
t$Hj^S
pDUjPS
WPWjkS
t$dj$S
t$lj$S
t$ jPS
t$,jPS
t$@jPS
t$TjPS
D$Tj9P
t$xj9P
D$DFVWVP
uXVjGS
\$XUV3
D$d91~5
Q492}"
jZ_jUZjYYj\
L$TjLY
[_^]YY
u4;\$$tV
<wt)<xt%<yt!
9~XtQS
(YY;~X|
T$(;L$0
9|$(~Z
YG;|$(|
YY_^][
F$#N #E
C|G<C|CWS
l$pVWj$j
L$l_^][3
D$ Yu73
T$09F$
L$(9G$
t$<jPR
D$ ;G$
D$@SUV
f;C2s0
f;H"}'
t$0VPW
D$ PVW
>AF;t$
D$LQUjv
U9l$Tt
f;H"}K
D$D@QS
f;H"}Y
PVUj^W
L$<SUV
D$L90t(VQ
9t$8t
Y_^][Y
_^][YY
UVUh(k{
D$\UVP
#Vh4k{
t;Wk|$
9D$Pw=
\$$UVW
_][^YY
UVWj(j
C _^][
_^][YY
QQSUVW
G;|$ |
uBEF;l$
t$(YY;
C4UhHJg
YY_^][
_^][YY
l$,VW3
D$,PUS
u}!t$ +
L$,QPS
~4f;F"
19Jxt*
T$(;L$
T$(;D$
D$89D$@
D$<;D$4sWj
L$$;L$,va;
D$(9D$ wS
t$LHVj
E`;GDs
D$PQPW
D$,E;l$
L$t_]3
\$xUVW
ut8D$$tn
;D$@uM
;D$DuCj0
L$x_^][3
\$,UVW
T$09D$
L$(+L$,
;T$$}k;T$$}%;
_^][YY
8_^][3
f9~(up
D$0SUW
L$<_][3
uj8^2uV
;FDuNj
uS;l$(r
YY[_^]YY
|$PVWj
L$(_^][3
uQ9F(t
8V,vwUW
D$0u(k
D$D_^]f
|$8;|$
L$,;|$
#K #C$
j+XPRf
O\#]8#M<
G0f;A(
L$$9H$t
D$<f;L$xt
#J #B$
C2H9D$
G0f;G4r
Xf9D$4
Xf9D$@t
D$@$tpf
f9D$|t
f;K4s<f;K2r
D$pf9D$L
|$$t/j
l$ #t8
t8$#t$4
|$,;t$@r
D$ ;D$\u
l$`9l$
l$ttj;D$Du
\$L9\$
\$PtVj
\$l9|$(u0W
t$$VWUQUQS
D$|VQUPUPS
D$ SUV
j$#D$<#l$@;B u
F8;l$H
F$9_ t
o,twSW
~@9~8t
Y;G(u)
_^][YY
F0f;G4v$PW
#J(#D$
@$;D4u
L$$_^]
;D$ tV
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Clean
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.69420957
ClamAV Clean
FireEye Trojan.GenericKD.69420957
CAT-QuickHeal Clean
ALYac Clean
Cylance unsafe
Zillya Clean
Sangfor Infostealer.Win32.Agent.Vyiv
K7AntiVirus Clean
BitDefender Trojan.GenericKD.69420957
K7GW Clean
Cybereason Clean
Baidu Clean
VirIT Clean
Cyren Clean
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win32/PSW.Agent.ORM
APEX Clean
Paloalto Clean
Cynet Clean
Kaspersky Trojan-PSW.Win32.Stealerc.byn
Alibaba TrojanPSW:Win32/Stealerc.3b5cb798
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Generic@AI.100 (RDML:/kbVL+J8TC8ghpSn2hNewg)
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Clean
DrWeb Trojan.DownLoader46.18451
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition BehavesLike.Win32.Generic.rh
Trapmine Clean
CMC Clean
Emsisoft Clean
Ikarus Trojan-PSW.Agent
GData Clean
Jiangmin Clean
Webroot Clean
Avira Clean
Antiy-AVL Trojan[PSW]/Win32.Agent
Gridinsoft Trojan.Win32.Agent.sa
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Trojan-PSW.Win32.Stealerc.byn
Microsoft Trojan:Win32/Znyonm
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Artemis!E8A7ED6986B1
MAX malware (ai score=81)
DeepInstinct MALICIOUS
VBA32 Clean
Malwarebytes Clean
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall Clean
Tencent Win32.Trojan-QQPass.QQRob.Tsmw
Yandex Clean
SentinelOne Clean
MaxSecure Clean
Fortinet Clean
BitDefenderTheta Clean
AVG Win32:PWSX-gen [Trj]
Avast Win32:PWSX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.