Static | ZeroBOX

PE Compile Time

2023-10-22 03:23:27

PDB Path

F:\sDll_launch\x64\Release\sDll_launch.pdb

PE Imphash

e59505c79d4688c593036694a0abccfd

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00144770 0x00144800 7.31068747561
.rdata 0x00146000 0x00008016 0x00008200 4.64747091182
.data 0x0014f000 0x00004eb0 0x00002600 3.31272883152
.pdata 0x00154000 0x00001770 0x00001800 5.09289329016
text 0x00156000 0x0000179e 0x00001800 5.65166693423
data 0x00158000 0x000041e0 0x00004200 6.31510078347
.rsrc 0x0015d000 0x0000038c 0x00000400 4.58276026324
.reloc 0x0015e000 0x000012e4 0x00001400 2.11676746449

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x0015d0a0 0x00000190 LANG_ENGLISH SUBLANG_ENGLISH_US data
RT_MANIFEST 0x0015d230 0x0000015a LANG_ENGLISH SUBLANG_ENGLISH_US ASCII text, with CRLF line terminators

Imports

Library KERNEL32.dll:
0x140146000 CreateProcessA
0x140146008 WideCharToMultiByte
0x140146010 MultiByteToWideChar
0x140146018 Sleep
0x140146028 DeleteCriticalSection
0x140146030 EnterCriticalSection
0x140146038 LeaveCriticalSection
0x140146040 EncodePointer
0x140146048 DecodePointer
0x140146050 GetSystemTimeAsFileTime
0x140146058 GetLastError
0x140146060 HeapFree
0x140146068 RaiseException
0x140146070 RtlPcToFileHeader
0x140146078 RtlLookupFunctionEntry
0x140146080 RtlUnwindEx
0x140146088 GetCommandLineW
0x140146090 GetStartupInfoW
0x140146098 GetCPInfo
0x1401460a0 HeapAlloc
0x1401460a8 LCMapStringW
0x1401460b0 HeapSetInformation
0x1401460b8 GetVersion
0x1401460c0 HeapCreate
0x1401460c8 FlsGetValue
0x1401460d0 FlsSetValue
0x1401460d8 FlsFree
0x1401460e0 SetLastError
0x1401460e8 GetCurrentThreadId
0x1401460f0 FlsAlloc
0x1401460f8 TerminateProcess
0x140146100 GetCurrentProcess
0x140146108 UnhandledExceptionFilter
0x140146118 IsDebuggerPresent
0x140146120 RtlVirtualUnwind
0x140146128 RtlCaptureContext
0x140146130 CloseHandle
0x140146138 SetHandleCount
0x140146140 GetStdHandle
0x140146150 GetFileType
0x140146158 GetProcAddress
0x140146160 GetModuleHandleW
0x140146168 ExitProcess
0x140146170 WriteFile
0x140146178 GetModuleFileNameW
0x140146180 FreeEnvironmentStringsW
0x140146188 GetEnvironmentStringsW
0x140146190 QueryPerformanceCounter
0x140146198 GetTickCount
0x1401461a0 GetCurrentProcessId
0x1401461a8 GetStringTypeW
0x1401461b0 GetLocaleInfoW
0x1401461b8 HeapSize
0x1401461c0 GetACP
0x1401461c8 GetOEMCP
0x1401461d0 IsValidCodePage
0x1401461d8 GetUserDefaultLCID
0x1401461e0 GetLocaleInfoA
0x1401461e8 EnumSystemLocalesA
0x1401461f0 IsValidLocale
0x1401461f8 GetConsoleCP
0x140146200 GetConsoleMode
0x140146208 FlushFileBuffers
0x140146210 ReadFile
0x140146218 SetFilePointer
0x140146220 HeapReAlloc
0x140146228 SetStdHandle
0x140146230 CreateFileA
0x140146238 LoadLibraryW
0x140146240 WriteConsoleW
0x140146248 SetEndOfFile
0x140146250 GetProcessHeap
0x140146258 CreateFileW

!This program cannot be run in DOS mode.
KB7+K"A
K$9&K.A
KB7/K,A
KB7(K,A
KRich-A
`.rdata
@.data
.pdata
@.rsrc
@.reloc
L$0H9{
WATAUH
0A]A\_
WATAUAVAWH
A_A^A]A\_
SVWATH
HA\_^[
toH91uj
t$ ATH
t~H91uy
t$ ATH
VWATAUAVH
@A^A]A\_^
SVWATAUH
A]A\_^[
UVWATAUAVAWH
CHL9(t"H
C`D9(~
CHH90t!H
A_A^A]A\_^]
@UVWATAUAVAWH
<+t <-t
A_A^A]A\_^]
UATAUH
@SUVWATAUH
A]A\_^][
@SUVWATAUH
A]A\_^][
@USVWATAUAVAWH
A_A^A]A\_^[]
L$0H9_
L$0H9{
L9L$(L
tcH91u^
L9m'sE
UVWATAUH
A]A\_^]
W L9"u
l$ VWATH
fffffff
fffffff
t$ WATAUAVAWH
A_A^A]A\_
p WATAUH
A]A\_
WATAUH
A]A\_
@USVWATAUAVAWH
A_A^A]A\_^[]
L$ USWH
H SVWATH
(A\_^[
|$ ATH
s WATAUAVAWH
~/8\$vt)H
9t$P~98\$vt3H
A_A^A]A\_
ATAUAVH
A^A]A\
L$ SUVWH
WATAUAVAWH
0A_A^A]A\_
@SUVWATAUAVAWH
?CuND8g
A_A^A]A\_^][
\$ UVWATAUAVAWH
A_A^A]A\_^]
H9L$Xt'H
@SUVWATAUAVH
A^A]A\_^][
!t$(H!t$ H
|$ ATAUAVH
0A^A]A\
SVWATAUAVAWH
0A_A^A]A\_^[
WATAUAVAWH
A_A^A]A\_
@SVWATAUAVAWH
L!l$HL!l$@
D$PL9oXt
D$8HcH
A_A^A]A\_^[
ATAUAVH
0A^A]A\
VWATAUAVH
A^A]A\_^
UVWATAUAVAWH
`A_A^A]A\_^]
UVWATAUAVAWH
E9,$~T3
A_A^A]A\_^]
WATAVH
@A^A\_
ATAUAWH
0A_A]A\
WATAUH
A]A\_
t$ WATAUAVAWH
A_A^A]A\_
@UATAUAVAWH
!t$(H!t$ A
A_A^A]A\]
x ATAUAWH
A_A]A\
D8d$Ht
@SUVWH
UATAUAVAWH
gfffffffH
A_A^A]A\]
@8|$8t
@8t$8t
@SUVWH
@SUVWATH
A\_^][
USVWATAUH
A]A\_^[]
UVWATAUAVAWH
A_A^A]A\_^]
WATAUAVAWH
A_A^A]A\_
UVWATAUAVAWH
D$DD9T$\
t$hD+d$DD+
9D$Pti
A_A^A]A\_^]
UATAUH
ATAUAVH
fD9t$b
A^A]A\
VWATAUAWH
0A_A]A\_^
WATAUAVAWH
@A_A^A]A\_
t$ WATAUH
fD9#tSH
CfD9#u
fD91u:A
Hct$PH
shHcD$XH
tLf9t
@UATAUAVAWH
A_A^A]A\]
@SUVWATAUAVH
zux!l$ E3
A^A]A\_^][
UATAUH
@A]A\]
WATAUAVAWH
A_A^A]A\_
UATAUAVAWH
A_A^A]A\]
UVWATAUH
D$&8\$&t-8X
@A]A\_^]
x ATAUAVH
A^A]A\
7;|$0t,
\$ UVWATAUAVAWH
!|$DHc
|$DD9d$X
f;D$@ug
f;D$@uD
H!\$ H
HcD$HH;
H!\$ H
HcD$HH;
H!|$ L
A_A^A]A\_^]
VWATAUAVH
A^A]A\_^
t$ WATAUAVAW
A_A^A]A\_
VWATAUAVH
A^A]A\_^
WATAUAVAWH
0A_A^A]A\_
@USVWH
LcA<E3
L$ UVWH
UVWATAUAVAWH
D$HD9T$\
t$pD+d$HD+
9D$Tt^
A_A^A]A\_^]
ATAUAVH
@A^A]A\
UVWATAUAVAWH
A_A^A]A\_^]
@SUVWATAUAVH
PA^A]A\_^][
@UATAUAVAWH
A_A^A]A\]
USVWATAUAVAWH
XA_A^A]A\_^[]
WATAUAVAWH
A_A^A]A\_
D8"u%H
UVWATAUAVAWH
`A_A^A]A\_^]
UVWATAUAVAWH
`A_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
UVWATAUAVAWH
A_A^A]A\_^]
|$ UATAUAVAWH
A_A^A]A\]
x ATAUAWH
A_A]A\
WATAVH
H(H9J(u
!This program cannot be run in DOS mode.
KdRich0
.rdata
@.data
RT_DATA
.reloc
E,j0P+
M$j0QS
<+t%<-t!<0u
M QRPh
M QRPh
@VWPh0
HtHHtk2
QQSVWd
PPPPPPPP
.t|PVj@
t=MOC
HtHu4j
t*=RCC
;7|G;p
tR99u2
t"SS9] u
f-00f=
f-00f=
j@j ^V
F Pj*S
F$Pj+Sj
F(Pj,S
F,Pj-S
F0Pj.S
F4Pj/S
F8PjDS
F<PjES
F@PjFS
FDPjGS
FHPjHS
FLPjIS
FPPjJS
FTPjKS
FXPjLS
F\PjMS
F`PjNS
FdPjOS
FhPj8S
FlPj9S
FpPj:S
FtPj;S
FxPj<S
F|Pj=S
v4;5Le
vL;5de
C PjPV
C$PjQV
C*PjTV
C+PjUV
C,PjVV
C-PjWV
C.PjRV
C/PjSV
CHPjPV
CLPjQV
PPPPPPPP
^SSSSS
URPQQh
tRHtCHt4Ht%HtFHHt
tWItHIt9It
;t$,v-
UQPXY]Y[
HHtYHHt
t VV9u
<+t"<-t
+t HHt
ios_base::eofbit set
ios_base::failbit set
ios_base::badbit set
invalid string position
string too long
bad locale name
bad cast
raB3G%p
generic
iostream
system
iostream stream error
Unknown exception
bad allocation
LC_TIME
LC_NUMERIC
LC_MONETARY
LC_CTYPE
LC_COLLATE
LC_ALL
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
Visual C++ CRT: Not enough memory to complete call to strerror.
bad exception
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
]vQ<)8
|)P!?Ua0
Eb2]A=
u?^p?o4
y1~?|"
?x+s7
?5Od%
?|I7Z#
>,'1D=
?g)([|X>=
~U`?K
:h"?bC
@H#?43
Ax#?uN}*
r7Yr7=
F0$?3=1
H`$?h|
&?~YK|
sU0&?W
<8bunz8
?#%X.y
F||<##
<@En[vP
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
?uZEeu
?uZEeu
?UUUUUU
?UUUUUU
?Dj0Q:W$=
5s3R6=
HH:mm:ss
dddd, MMMM dd, yyyy
MM/dd/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
(null)
`h````
xpxxxx
CorExitProcess
united-states
united-kingdom
trinidad & tobago
south-korea
south-africa
south korea
south africa
slovak
puerto-rico
pr-china
pr china
new-zealand
hong-kong
holland
great britain
england
britain
america
swedish-finland
spanish-venezuela
spanish-uruguay
spanish-puerto rico
spanish-peru
spanish-paraguay
spanish-panama
spanish-nicaragua
spanish-modern
spanish-mexican
spanish-honduras
spanish-guatemala
spanish-el salvador
spanish-ecuador
spanish-dominican republic
spanish-costa rica
spanish-colombia
spanish-chile
spanish-bolivia
spanish-argentina
portuguese-brazilian
norwegian-nynorsk
norwegian-bokmal
norwegian
italian-swiss
irish-english
german-swiss
german-luxembourg
german-lichtenstein
german-austrian
french-swiss
french-luxembourg
french-canadian
french-belgian
english-usa
english-us
english-uk
english-trinidad y tobago
english-south africa
english-nz
english-jamaica
english-ire
english-caribbean
english-can
english-belize
english-aus
english-american
dutch-belgian
chinese-traditional
chinese-singapore
chinese-simplified
chinese-hongkong
chinese
canadian
belgian
australian
american-english
american english
american
Norwegian-Nynorsk
Illegal byte sequence
Directory not empty
Function not implemented
No locks available
Filename too long
Resource deadlock avoided
Result too large
Domain error
Broken pipe
Too many links
Read-only file system
Invalid seek
No space left on device
File too large
Inappropriate I/O control operation
Too many open files
Too many open files in system
Invalid argument
Is a directory
Not a directory
No such device
Improper link
File exists
Resource device
Unknown error
Bad address
Permission denied
Not enough space
Resource temporarily unavailable
No child processes
Bad file descriptor
Exec format error
Arg list too long
No such device or address
Input/output error
Interrupted function call
No such process
No such file or directory
Operation not permitted
No error
Complete Object Locator'
Class Hierarchy Descriptor'
Base Class Array'
Base Class Descriptor at (
Type Descriptor'
`local static thread guard'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`vector copy constructor iterator'
`dynamic atexit destructor for '
`dynamic initializer for '
`eh vector vbase copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector destructor iterator'
`managed vector constructor iterator'
`placement delete[] closure'
`placement delete closure'
`omni callsig'
delete[]
new[]
`local vftable constructor closure'
`local vftable'
`udt returning'
`copy constructor closure'
`eh vector vbase constructor iterator'
`eh vector destructor iterator'
`eh vector constructor iterator'
`virtual displacement map'
`vector vbase constructor iterator'
`vector destructor iterator'
`vector constructor iterator'
`scalar deleting destructor'
`default constructor closure'
`vector deleting destructor'
`vbase destructor'
`string'
`local static guard'
`typeof'
`vcall'
`vbtable'
`vftable'
operator
delete
__unaligned
__restrict
__ptr64
__eabi
__clrcall
__fastcall
__thiscall
__stdcall
__pascal
__cdecl
__based(
`h`hhh
xppwpp
GetProcessWindowStation
GetUserObjectInformationW
GetLastActivePopup
GetActiveWindow
MessageBoxW
1#QNAN
1#SNAN
_nextafter
_hypot
VirtualProtect
GetProcAddress
LoadLibraryA
VirtualAlloc
KERNEL32.dll
DispatchMessageW
TranslateMessage
GetMessageW
USER32.dll
WideCharToMultiByte
InterlockedIncrement
InterlockedDecrement
InterlockedExchange
MultiByteToWideChar
InitializeCriticalSection
DeleteCriticalSection
EnterCriticalSection
LeaveCriticalSection
EncodePointer
DecodePointer
GetLastError
HeapFree
RaiseException
RtlUnwind
GetCurrentThreadId
GetCommandLineA
GetCPInfo
HeapAlloc
LCMapStringW
IsProcessorFeaturePresent
HeapCreate
HeapDestroy
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
GetModuleHandleW
SetLastError
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
ExitProcess
SetHandleCount
GetStdHandle
InitializeCriticalSectionAndSpinCount
GetFileType
GetStartupInfoW
GetModuleFileNameA
FreeEnvironmentStringsW
GetEnvironmentStringsW
QueryPerformanceCounter
GetTickCount
GetCurrentProcessId
GetSystemTimeAsFileTime
GetStringTypeW
GetLocaleInfoW
HeapSize
GetACP
GetOEMCP
IsValidCodePage
GetUserDefaultLCID
GetLocaleInfoA
EnumSystemLocalesA
IsValidLocale
WriteFile
GetModuleFileNameW
GetConsoleCP
GetConsoleMode
FlushFileBuffers
ReadFile
SetFilePointer
CloseHandle
HeapReAlloc
LoadLibraryW
WriteConsoleW
SetStdHandle
CreateFileW
mydll.dll
.?AVruntime_error@std@@
.?AVexception@std@@
.?AVfacet@locale@std@@
.?AVsystem_error@std@@
.?AVfailure@ios_base@std@@
.?AV?$num_put@DV?$ostreambuf_iterator@DU?$char_traits@D@std@@@std@@@std@@
.?AVbad_alloc@std@@
.?AV?$numpunct@D@std@@
.?AVbad_cast@std@@
.?AV_Locimp@locale@std@@
.?AVerror_category@std@@
.?AV_Generic_error_category@std@@
.?AV_Iostream_error_category@std@@
.?AV_System_error_category@std@@
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AUctype_base@std@@
.?AVios_base@std@@
.?AV?$_Iosb@H@std@@
.?AV?$basic_ostream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ios@DU?$char_traits@D@std@@@std@@
.?AV?$ctype@D@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AV?$basic_filebuf@DU?$char_traits@D@std@@@std@@
.?AVcodecvt_base@std@@
.?AV?$codecvt@DDH@std@@
Copyright (c) 1992-2004 by P.J. Plauger, licensed by Dinkumware, Ltd. ALL RIGHTS RESERVED.
.?AVtype_info@@
.?AVbad_exception@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
!This program cannot be run in DOS mode.
`.rdata
@.data
.pdata
@.rsrc
@.reloc
L$ UVWH
SUVAVH
@SWAVAWH
8A_A^_[
@SAVAWH
0A_A^[
@SVATAWH
8A_A\^[
@SVATAWH
8A_A\^[
@SUVATH
8A\^][
@SATAUAWH
8A_A]A\[
@SUWAUH
(A]_][
L$ SUVWH
L$ SVWH
@UVWATAUAVAWH
D$XuJH
A_A^A]A\_^]
@UVWAVAWH
H9|$8uTH
CT$(I+
A_A^_^]
@UVWAVAWH
`A_A^_^]
@UVWAVAWH
A_A^_^]
@UVWAVAWH
D9t$P~2
A_A^_^]
fA9,Qu
@UVAVAWH
xA_A^^]
xA_A^^]
@SUVATAWH
@A_A\^][
L$ SVWH
l$ VWAVH
@UVWAVAWH
A_A^_^]
@UVWAVAWH
A_A^_^]
@SVATAWH
(A_A\^[
L$ SUVWH
L$ SUVWH
L$ SVWH
L$ SVWH
L$ SUVWAVH
0A^_^][
L$ SVWH
L$ SUVWH
@UAVAWH
pA_A^]
pA_A^]
L$ SUVWH
L$ SUVWH
L$ SUVWH
x ATAVAWH
A_A^A\
@SUVWAVH
`A^_^][
WAVAWH
A_A^_
WATAUAVAWH
A_A^A]A\_
@USVWATAVAWH
H9\$@t
CL$0E3
u3f9\$~t
|$~.u$f9]
A_A^A\_^[]
\$ UVWH
|$L.ui
.uYf9l$PuRH
WAVAWH
A_A^_
\$ UVWH
@SUVWATAVAWH
@A_A^A\_^][
t$ WAVAWH
A9FHtI
9D$(}y
A9FHtQI
@A_A^_
x ATAVAWH
A_A^A\
@SUVWAVH
@A^_^][
@A^_^][
@A^_^][
@SVWATAUAVAWH
t$0L9q
9H;uAI
`A_A^A]A\_^[
WAVAWH
@A_A^_
WATAUAVAWH
A_A^A]A\_
\$ UVWAVAWH
A_A^_^]
ATAVAWH
A_A^A\
\$ UVWH
WAVAWH
A_A^_
TUUUUUU
WATAUAVAWH
9H;u*I
H9A sBL
I;A s7H
A_A^A]A\_
H9C s(H
H;S sAH
UUUUUUU
|$ AVH
SVWAVH
8A^_^[
WAVAWH
H3E H3E
L$ SUVWH
@SVAVH
Q< s>D
H;M0u0H
@SUVWAVH
@A^_^][
@VWAVH
WATAUAVAWH
@A_A^A]A\_
|$ AVH
l$@<'uA
WAVAWH
0A_A^_
@USVWATAUAVAWH
A_A^A]A\_^[]
@SUVWATAVH
u2A8nP
:A8nPu2A
HA^A\_^][
@SUVWATAUAVAWH
hA_A^A]A\_^][
@SUVWAVAWH
XA_A^_^][
@SUVWAVH
tc<>tdA
0A^_^][
UVWATAUAVAWH
@A_A^A]A\_^]
@WATAUAVAWH
C8H90vF3
0A_A^A]A\_
C0H9C(r
WAVAWH
0A_A^_
WAVAWH
A_A^_
WAVAWH
A_A^_
WAVAWH
@UATAUAVAWH
A_A^A]A\]
UVWATAUAVAWH
H+D$hH+D$P3
A_A^A]A\_^]
{ ATAVAWH
A_A^A\
H3\$HH
UVWATAUAVAWH
A_A^A]A\_^]
VWAUAVAWH
A_A^A]_^
WATAUAVAWH
A_A^A]A\_
\$ UVWH
UVWATAUAVAWH
L$`thA
A_A^A]A\_^]
UVWATAUAVAWH
A,A9A(v&L
0A_A^A]A\_^]
WATAUAVAWH
O,D9O(vcH
0A_A^A]A\_
WATAUAVAWH
A;J$vcH
A;H$sH
0A_A^A]A\_
SUVWATAUAVAWH
HA_A^A]A\_^][
@VWAVH
SUVWATAUAVAWH
T$4E;O
;B$vvI
D$0tbA
D$0C+D0(
@09D$0
D$PE;O
H$E+H,toA
R(A9P4A
@(A+@4;
xA_A^A]A\_^][
WATAUAVAWH
C9|)$u?C
0A_A^A]A\_
VWAUAVAWH
A`D9L8
;B$vUH
,t0D9J0v*L
0A_A^A]_^
t$ WATAUAVAWH
D8M@t^
+J$D8M@
D8M@tM
0A_A^A]A\_
UVWATAUAVAWH
0A_A^A]A\_^]
t$ WATAUAVAWH
A_A^A]A\_
UVWATAUAVAWH
A_A^A]A\_^]
L$ UVWATAUAVAWH
0A_A^A]A\_^]
x ATAVAWH
0A_A^A\
@SUVWATAVAWH
0A_A^A\_^][
9O$v5D
D9G$s5
l$ VWATAUAVAWE3
D9x(uiE
A(9B(D
X(D9y(
t'B;\
l$PA_A^A]A\_^
WATAUAVAWH
A_A^A]A\_
H9_ht0H
WATAUAVAWH
A_A^A]A\_
x AVAWL
A$+A,t\E3
|$0A_A^
WATAUAVAWH
0A_A^A]A\_
UVWATAUAVAWH
l$`C9,
A_A^A]A\_^]
x AVE3
UVWATAUAVAWH
D;z,v(A
&D;j0u
A_A^A]A\_^]
E8X@t8A
R0E8XAt
B0E8XAt
WAVAWH
9oP~3E3
A_A^_
VWAUAVAWH
9WP~HM
uxHcOP
HcGl;Gh}
A_A^A]_^
t H9X8tN
9YD~/3
9_D~/3
x AVE2
t*H9X8u$@8
E;Bl}NE
|$ UATAUAVAWH
q(9qD~[E3
9{D~H3
A_A^A]A\]
x ATAVAWH
A_A^A\
t$Pu1H
USVWATAUAVAWH
~(HcNDI
F8HcNDI
F0LcFDI
D9f@~0Hc
A_A^A]A\_^[]
|$ AVH
UVWATAUAVAWH
0A_A^A]A\_^]
;Ct~bH
;Ct~MH
V`;Ct~bH
;Ct~MH
|$ UAVAWH
x ATAVAWH
C(9C u
C,9C$u
A_A^A\
91~/E3
VWAUAVAWH
9WP~KM
uxHcOP
HcGl;Gh}
A_A^A]_^
A;>}I
WATAUAVAWH
A_A^A]A\_
H;YXt
tkH;_XtG3
8H;^XtB
V0;Ct~ZH
;Ct~EH
A;6}#I
91~/E3
|$ AVH
WAVAWH
A_A^_
9D$`t_
@UAVAWH
e@A_A^]
WATAUAVAWH
A_A^A]A\_
WATAUAVAWH
0A_A^A]A\_
WATAUAVAWH
0A_A^A]A\_
WATAUAVAWH
A_A^A]A\_
L9w t#H
WAVAWH
A_A^_
H9J t1
UVWATAUAVAWH
v A9~ w
D9D$(u
u^@8|$ t
uED;D$(u>
+@8|$!t19|
tU@8|$ u9@8|$!t2
`A_A^A]A\_^]
@VWATAVAWH
0A_A^A\_^
UVWAVAWH
A_A^_^]
WAVAWH
A_A^_
WAVAWH
A_A^_
UVWAVAWH
ZO9[ -
!s~/DdE
].izj/K
2h]UxW
yfn;g3h-
QDvMRr
zgB:%B
O1^R#,
!3'v:3
;YGbv;C
ZmxdXx
^yyp*5s
cM_)X4
US7:I:
:-K~$n
&n3+^"
BWaAx5)
i)4LY6
}0Dk+d
{yd i@>
0#jL6o
A#xQM@
*_OcPO
F'b)_q
4`N?9k/I
X+]ep+
h"EWA?
>8O.>j
J.&'"\T
}Kg{,C
zio25B
\2R6|
X)]xw6^m
Nn'0+8
H(`q{S
pq?YWI
GP[9<NJ
6B[~iIP
(LK|vk{
At"s"!R
u0Db"9
Zi*v{B5
H(}>v)*W
N-U2Yw2$
*+i+`
'2Ch=,
IZ*o+x
fcip+e
%o;s?z
}Mx75-
J~u_2\L
5g+fQ(
nm`|l9Hd
].}21Ny
odoe.^eU5k
&#Zc:o
M>}9[M
1NDVNK
66yM[bZ5
whwkjH
H6(Df$I
0JzLVRQ
WGkHiX
BUf\oI
v ~EF'n
'ov;|r
S^I=!q
DF\J_c
I}m<%R
ma^|]?+
PtZh|S9O
S.G\rq
RjP[">F
krs<zf
,fP:&J
KNO1G$
=Y@./ew#
9Ulh!H
LDg`NFQGE
G1*sN
yOR~TR.
;>"}l&
Oc8~Fh
)nOqj9
g<{bYz
qJGb@e
4UTU-)P
)A\Bjn
6T&/j5
". '0F
zhRG>g
<p7U#!V
bkfOS#
?z%ayY
k{7H.
pe/[TJ
[s`+[~
wCy46
)(0TgCV
:4i*M8
B~A!Ac
R^k;Xf
RY-d[1N
i^U6Y|
!i8/Lj
=hGHeX
Dz0gj
_zkWWM
\UTV0i
:`Ut4?d
!~}):G
NyGcW^
1+ll0w#
P?%P1E
B2K,*h
TSZd>J
+:zKpH
Flz|\[
RRVl,|+
h=h/gI
EtN1q"
B$XNi'
"HK9|j
)3&p,Qq7Zl
=mb|zL
W<|o t
XA}OCs
AZ)J[?=
zg'"^Z
P<,2_Y
"2jPYp:i
l&tZ;%N
^[I-O
RNf1>
S<Y%dZAPv
dl_^e{
FFHLkmh
Wy@-[2
plxN?>
O|\F;'}
3\} Tl
|g`"uH
&aZ9It
w,#eKN
B(-H8?YN
_R5> u!{
Hn/9F
iZ:6uW
2!r_$E
G|$qBO+
1]Nv@"
#V 3wk
pY] hN
4g&CCu
=,r/Q.t
wZrn*4
=!^1)`2j`
B)+Z&R
DNXu|%
>QV#89&
W"6t(M4.
!]P?x(Ro
~:`6o>
s`TbSg7=
]!7q:4
N%nKW\?d/
+$EY2;w
w^syF
G\\PGet
iZ 6s?
!=)W*j
XHVmYl
U^8_^p#Tuv
{S@\(^
4#"?,j
LV#-K[%
s[l1@V`z
L~YUn)
Oa4DwJ)
xXNQ)
.N:r7X!
nB0K$D
w&is=C
8o"b$!
?ibS1u
|*@jZ5
mAZMQ
qnq5Q#!uc'`)P
)O*^gj9
*lo2br
)4KHnX
.`Q%$/_
>zWb~y
A\<Q#Mg
^`1,.*
@:`%jO-rg
"hS Wuf
^$Oi8"
"FuA78
%'.}\6
XDkqC@
MlZz$K
@30+/-
~-Kg[XD
7a}Pa\kC
U3qnn[
0q'E9r
O&OmJl
7hX40b
maU|\]
$Cv(94s
"?IB8`
M|{%{P
[m1A`S
~Gepd2
>KsLo#
A[@2i
@Q q@wz'
Y"s4?6
4c|s!N"
lBG^Cn
F*_C*S
hSEZS1
/1gl1x
(Nc[uI
Y@w#d@
KNyjF0
O4[)6>
#1*F5n
dlIPu~
DbY"#
o=rSKg
DNngPO
YuIMEYz
|G[wO.5N
Q^#&/5
0O*YP>
jqnp%$
R9jWP7
v9*|M5J
i=jpJ^qC
NFv?x[|3
GOvpy.e
KU#LmV
nh!|/&
aMsof8
obtfh3s
J6i%e2r
h"wMKp
s+?v_\
\fp[z^
gMy}rA
R4+v-<
Si)JRX>[
BI<j0@
b_ BzL
09#q6Z
2Nr46J
.[fr?R
n!?'KW
-86h>S-
Q6_\K~u
G%77J.
;94tbW
Z"N.9N[
gtvHFm<
K.iHI#
1$CXf0
]]]Y;K
R|D9zn
"F3s,hR
n5S|4qL
4XC<3>j
W>oI{;
BQ9Cv7
VV,FqN
Qg\xYb
TrazS]WA
g(p/MS!
Ka /i
@1_!^|~i?
e9}jYQ4
~?[)XexZ
zIf&US
i_9o6q
J+TT<}>m
<m~wOd
!jm<7E
lC/G&N~
K]35mo
*]CByz:
zSlHjZ
_f-3r#
VWWQkr
}A]:o[@_
?erwMZzya
]8S{'6q8
bs{Yav
TKF+oHs
Fkb{n<CR
1bck7M
x<)-,
VoHg-+K\a
aNl*J0s
}'D&%U
pbA$i^
`&evzOe
am5u0x
0R?3_j
p&6hD<
S}DrGI
nnjs>n
0aAc~
eo(7SH
c_}]l?k
%:w}ac
D^u~l;v
ZL*VOS
)d.b#?
!=)F%G
$@K+9[
|BI_EB;
Wi)~)L
7'<!m&^
ukE#l+
\Li+>L
ZSwz5q
m|8cE-
(PJ=1r
{FA{$0
UplV&x
|dI-&c
i,>zxGC\
?xz]<W
o;%QU
<%6+u-7
A:UOrD
Zz[S9b
b$b$<#
69bH'.
,WLD~fe
:v1Iqk
k1MCv]
SYg/r<
1S_V7,
l5z^ys
s&obPT
<RA]z@
-r*|[|
QA?>A2Xt
X-u$r7
:3Uc<o$
aKDTXa
{jc@gp
rWYr O`K#
|DhLK
U00YFp
/"&ca@
/mIIM$
yS,[KXg
.CXGaC0
?r1Y)P
eQZcD~h
`EV^gI
\|%DW5
2P=\|}
%xTQWc
Vz,F}tx
#K-~`W
J#6,9
u_w5,50
\-<)~i
'nCldKy
xiy5h5
b=RgUK
}{tvmP
&ubUXv)
'-UwB+
#upV&9
yPLJev
WYi#;R
}U`yC*o
BNS'@T
xuHH$u"
1~#LUVaN}6
!h|e;2<
i14n6k
!XEaIDk
2I>Ln
n#Avmt
qAkNn
4zY|:/
W\9by|c
imr`auA
gg#B2pP
tP?oS_\
+9A:/u*
iuJzkPI
!DzD3+
S*24L_
]:}^?J
Ct:'hS
Eh;,!Z
6]SS;,D
IFQ8n'
K{f6zV
-*j#Hz
}C.t%v
U};<9"$
e=d89r
Gj]]w!]
[TTSbTn
&0r#Zf
J$$[xu*I
[+Np0U
a8AD<"e6,
~fd?D(
=PK'A
v\+86b
4!?3j6X*
XL}cQ
7u&P|(
-gO>8|
%6_g k
yO1+-80?
:cUZmB
<c>NR}
<##IMx
o_dK--6
A/l!9T
h}7ty-
7zk0oP
e\TTX[U
1 Hqf<|
|t&J!~#
z{K`EQ
y8i<:$
&D{1F)q@
#+9f5J
=r|R/9
,t(pl2z
h~ S/*c
P`r/f;
R]Mk)RW
eI>zur
L0'K0T,EI[FI
oT_Qa
o]K=Od
Et>Od=
~P'#Bk%(
mw/S2G
@!/#Xf
~`wB^Z
^~<C+*
1D0A+e
7(;;kYm
bk_93Q
Kk`Do:
dg>x-=<
_xsm`e
xbh\*A
ykUa+=
8H?kBsZ9e
vBPyuD\3
^`!oo-L
%"N>wA>
TEyaS.:y
(*7K7M
}KCt|X\,
EAyr"g
u~8&k/foo;
7'&f(Q
u9ZG&_
nrtS-`
_8.L71
8rK_ilh
dlE?ur
gDv*Z!G3
TWe8&
]}xP,W
K+kc3`
73@-Vfs
#=IL>$C
F=7OE6
A9L/[LQ
ST8?NG$ez
/JNwY"
R7HXWb
C<V9R-T:1
VLX\7B1
3V2hfQ
pOJhM5m{
`9dqwwDsg
S:H*?s
l8?4ZtZ
lzGD-_
0m`,M8
^Wdg8s
VuUcL/
-vc}K2
;$ulxA/
?kl"=~
DIhoJzMaQm$yyLp
y_lu4R
u[X,eJ
$<ax`>{
'CzAi[
{`p`7;8`P
G^tUu)
g,OunH
S ggY!
Cc[KF[
1d`[c?
t@@Bt|
uf=6o
^*kRFN
h4@:kQ
58>Z(I
!~Lw?c
@o.jLv
4'Si8
<h;t$\$
8Ly/#l
RXQV7<6[jX
Cl&xA
12@7EFv
~):Gddf
`_-yDvi
/(7MR*R^&
~$'cE.7
Np7m!
+lD|oV
DLS{[
jJ/*c!
[A|`C-
*}9u2<7@
b:1>{w!
UB3x=E
Pz{gm#Q.y
;d)$!g
$~$YN
!f{KXO
R+73[
{6@dM\
/xCI9;
oO+$>S
Ixc/VL
jZElv3
j{syd0
x/R,Kk,
W;330
Mo>~A J
PKxPY.
p9zT69
B_ Mh
@VMKO~
UBS:0(4
fUF1^I
.K~<Ht
D6*.g}
-36k{Y|
Hv"lq/
K-7&Z
4?>L$b
};kJG%
2dY@tq
PZ],ye
FRBSRw
!vG2&?
w{_!X]
J=i; {
MXz6@T
!`AcQ`
&`c5UG
^O[VV^
;nOqkIvc
O(#mh0e
QvxJWg
cNuYF
]@):OX
xJ32=%
nWBdx$0x
?dxw&0d
<%kt th
mO)0s9
:G]c"e
t@>AP(g
7MG,?\(
3wM@]Q
ArFva>Y
kt^433
DQY%&y
2^!<@*
&a'b`i
r+H|cc
f JNU|
JLSko&
E~xA~a
fP+B}
vw=pH^
[>A}:W
,C`<%#
*9$'Yo
t<Sp%-
SpIApRj
cBX`{x&
<.`cKH
[Iq@du
`8Mxy@
Be [iU
w9,GPy
LN}HD/
iYn{Ev
\E sW'
e+Z%ZL
,O~(?t
-]:dAv
;ylI]|I
!4X~|,
Gs$'fP
96)(Ctt= d
x_VM3F
P]\jw
W|#K1.#
J:^yfdX%/
&]3+bb
C?m/nc
\}<ZV`
[XoH'a
9Z[cC i
@j!u<P=;M
v[6eKN
l,14z\GM"
|Uf$W-:
6%<i}^
`v5?v{_
^@891f
4'0PAv
hp(a#
)(s0AN
P6P*uz
hE"kpU
(Imu7#
lPP=_n
qpO4KkaQ
{(?GPs(GG
G;eKITP
}\y'J>
Ofdtko
WS{~qG
\'?$g-
KwrY$MV
n|Y]}
otsrG0AR
7D[b8A
Xk$T5|+
9|Q5K
+pQ&h}
2=6_by
-=s^.\
(&?7t[
ph+KQ&
n7;vgq
UeT>= ;
YwL.w'T
i1PR(on
>-7x|^
SPf2K$
mPs8^vJ
&`%_Fw}
OvohL?[
~YtuG5#0
(lp628i
b0i>s`e
%nkD?bh`4
}41Q]9
("vr*6
?{6nL TX
3[>T9b
/:L7Ce
`2xT'
Vr;y
,"h7gtR
0\%5Xe
Odeve$
y11^-R
s=M6*G
,~.TU$
Xt,:a&
I[xF^bq
{fukBR
Y^IDjDK
$Syy1)
A=-$o#
*chg~N
uhe$e%
0f3&77
a0I8`y
`-Rv38
q0]Ac
"]M2}8
u32_x'
B[/Md}7u
c Rt,`w
02E#!O
}""@g;i
pExStL
ub+&zy
g?i_+4
z8f5/
R!^I^/
Nw8`27
ue!hwz
k5EBy3
1#o7R*
HOBtP^l%
Tn]Kl3$B
Eo (q@B:
l3J/9M
-LcTkHGBR
!])[Y|8
Zlg<<@A
v~LD`8Ibp
oOd#C8
^&X"dh
PLAN~`2
Zx1Tqp,
0p cD@
xxu60c
n'@07c
0NP|bL
I=}z8>G
oLGp|4
aIT9tq
!*aD@?\
<$aGNc
\C<]>?A
5F^0c\IVw$
?Gg8r/
$oqCYZ
%QN#_T
FFdXJ
R42THz
Q3hls^;
cMxCow=
*!wHzp
;{gi_[
G TC(6q
hgvG^q0
7Bf+*}
_gsVI6)
Ymi>FO
}qcJXR
x~4l\b
q#B7Kd[
E_4w1P
<3n(b$]0_
(O+ 9.
X<Q`:H
3lXYly
2%17 vY
a!^\zk
@.0=+w
Y+<Xrj^X.
$auY,`X
~:^eXQ
=I>]0I
F?YXL{J
^1e1Y<
qR(Sr
0FMZN?^
DyRU,p
urkxg/
U#XChd
OXTENMm
DEc%t2)O
NwTZw#
0GP,{`
aA6?sR
ncR+e+
NF8PfC"
TrR]|q
;s)=1Sg
q%") ?
9*}0#wA
_:sZK_
[sL/O?
rDotU9 k
G';W"k
{P-kXK|7
;bB;*3
H-m=4Dg0
<GXM7T
)<D'rK\
wGPE_F
^prQv1
,"!'DF
)A\|Hy
##<kjj
K?X>Cz
9>13yK
]$XIw5
q90I[R
$ =s/o
F4]+t1
Y)XQtk
0v1i+RF
,v!<Kk
DkV7>
1~d>zJ
iY5A,q
'j$\<(
JmSnWSt
-iIN=)k
4/O)>v
?yeW[9a
\Fv8V0
09Vuvg-
<:M/Lv
NKhyg2W
;:{BzRo%q#
5'(E'>^
VMD[,R
;C6D`u
\59eDgg
H?O/<,
l:IT`.5
o?'sZ1)J
Z3"&4*T
3fhFs_
ShC8b?K
]8vryU
p;W3?T
oN|r&
$x`H$n
?GEN8,
=a9;~J\
:P3::)
*sz<Fs0
Bw9M7X\
~b}mBR
jEA9ki.
z5R.O|
7)c>J;
!^Ij[v
sh&soF
5OEXz(A!ep
OnBP?m
y*i'rl<3
p#kHyV
I]$qMZ
l{3qw,E
FJtesf
4yF|4gS
Xo,XAAf
--8]1of)1^a
_YU2pu(Fu_
rhjrs8
y/m#xh
p;*;O2Un
N ]kkv
FsG8C
|[u22LF
33)!xE
WMfW{m1
@chtk\l
S*_=oF
:([ONp,B5
@r(.~0g
H:r*1\=
{vP|I`
xCOOzL`t
;HHSPe
r. 81
0Wv^YR
/49'iO
~sd`m$
m~>OA
eQGwI|k
:#{m`TM
+wu-3A
5p\~jB
#>i}~#
rFbm0e
AC6nsID
LbJko
G'"l>
GT#$nLj
|*<5|Wy
*.#V&-
zjmG6]
;=Q;f\~
#$qjFF
`pbJ?&
[diR+;;
Iie(7:`3
It.kfM
6g%&^h
x~?>mP7P
,'\Um?
tB1hU(clt
Nq{R{jq
aUB2]'
_zy'!77
3t"]oM
ok&&;E:
&I&=Ok
$qyb:L
q#|oLG;
Z>i6\>
ND)m3q
722!xd<I
B/gU5~
uGPM'!
Ff:U,3
k.=HF~M
@tw"QQ
*5GlN
hbqrP}
?3L3e%
A0n^Rcb{-
`ClO<P|L
@0_\/R
;Y$Eege
PA_A^_^]
u)!t$(H
;Ct~ZH
;Ct~EH
WAVAWH
A_A^_
F(LcF I
WAVAWH
9oP~2E3
A_A^_
VWAUAVAWH
9WP~KM
uxHcOP
HcGl;Gh}
A_A^A]_^
x ATAVAWH
A_A^A\
UWAUAVAWH
A_A^A]_]
t$ UWAUAVAWH
A_A^A]_]
UVWAVAWH
`A_A^_^]
UATAUAVAWH
A_A^A]A\]
SUVWATAUAVAWH
8A_A^A]A\_^][
UVWATAUAVAWH
8\$`tH
A_A^A]A\_^]
u!!D$(H
UVWAVAWH
@A_A^_^]
UVWATAUAVAWH
@A_A^A]A\_^]
UWATAVAWH
A_A^A\_]
WAVAWH
0A_A^_
` UAVAWH
WAVAWH
9oP~2E3
A_A^_
;Ct~ZH
;Ct~EH
WAVAWH
9_P~OE3
A_A^_
K4A+H
VWAUAVAWH
9WP~GM
uxHcOP
HcGl;Gh}
A_A^A]_^
VWAUAVAWH
9WP~KM
uxHcOP
HcGl;Gh}
A_A^A]_^
|$ UAVAWH
u%!D$@H
WAVAWH
K 9N v@H
0A_A^_
t$ WAVAWH
;Vl}fD
A_A^_
l$ VWAVH
UAVAWH
;Ct~ZH
;Ct~EH
UVWATAUAVAWH
8D$ u+I
A_A^A]A\_^]
C4D+@ H
UVWATAUAVAWH
0A_A^A]A\_^]
WAVAWH
A_A^_
Hc;HcK
H9BhuTH
~`8A!t
SVWAVAWH
A_A^_^[
D$0f;UPu
WAVAWH
@A_A^_
u!!D$(H
ATAVAWH
0A_A^A\
WAVAWH
0A_A^_
ATAVAWH
0A_A^A\
H#|$0tB
Antivirus Signature
Bkav W64.AIDetectMalware
Lionic Trojan.Win32.Injuke.16!c
tehtris Clean
MicroWorld-eScan Trojan.GenericKD.69959381
CMC Clean
CAT-QuickHeal Clean
Skyhigh BehavesLike.Win64.Generic.tc
ALYac Trojan.GenericKD.69959381
Malwarebytes Clean
VIPRE Trojan.GenericKD.69959381
Sangfor Clean
K7AntiVirus Clean
BitDefender Trojan.GenericKD.69959381
K7GW Clean
Cybereason malicious.26f84d
Baidu Clean
VirIT Clean
Symantec Trojan.Gen.2
Elastic malicious (moderate confidence)
ESET-NOD32 a variant of Generik.EOSWKLX
APEX Clean
Paloalto Clean
ClamAV Clean
Kaspersky Trojan.Win32.Injuke.iqoo
Alibaba Clean
NANO-Antivirus Clean
ViRobot Clean
Rising Trojan.Undefined!8.1327C (CLOUD)
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Clean
DrWeb Clean
Zillya Clean
TrendMicro TrojanSpy.Win64.LUMMASTEALER.YXDJVZ
Trapmine Clean
FireEye Trojan.GenericKD.69959381
Emsisoft Trojan.GenericKD.69959381 (B)
Ikarus Trojan.SuspectCRC
GData Trojan.GenericKD.69959381
Jiangmin Clean
Webroot W32.Trojan.GenKD
Google Detected
Avira Clean
Varist W64/ABRisk.DYXR-4879
Antiy-AVL Trojan/Script.Phonzy
Kingsoft Clean
Gridinsoft Trojan.Win64.Generic.ca
Xcitium Clean
Arcabit Trojan.Generic.D42B7ED5
SUPERAntiSpyware Clean
ZoneAlarm Trojan.Win32.Injuke.iqoo
Microsoft Trojan:Win32/Casdet!rfn
Cynet Clean
AhnLab-V3 Clean
Acronis Clean
McAfee Artemis!F281B31A9993
MAX malware (ai score=87)
DeepInstinct MALICIOUS
VBA32 Clean
Cylance unsafe
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall TrojanSpy.Win64.LUMMASTEALER.YXDJVZ
Tencent Win32.Trojan.Injuke.Ltgl
Yandex Clean
SentinelOne Clean
MaxSecure Clean
Fortinet PossibleThreat.MU
BitDefenderTheta Clean
AVG Win64:DropperX-gen [Drp]
Avast Win64:DropperX-gen [Drp]
CrowdStrike Clean
No IRMA results available.