Static | ZeroBOX

PE Compile Time

2010-04-15 07:06:53

PE Imphash

b4c6fff030479aa3b12625be67bf4914

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0000104e 0x00001200 0.168100494025
.rdata 0x00003000 0x00000084 0x00000200 0.963086734599
.jtlu 0x00004000 0x00000278 0x00000400 4.30261760853

Imports

Library KERNEL32.dll:
0x140003000 VirtualAlloc
0x140003008 ExitProcess

!This program cannot be run in DOS mode.
Rich}E
`.rdata
@.jtlu
PAYLOAD:
ExitProcess
VirtualAlloc
KERNEL32.dll
AQAPRQVH1
AX^YZAXAYAZH
ws2_32
A^PPM1
}(XAWYh
KERNEL32.dll
VirtualAlloc
ExitProcess
Antivirus Signature
Bkav W64.AIDetectMalware
Lionic Trojan.Win32.Metasploit.4!c
tehtris Clean
ClamAV Win.Malware.Metasploit-10022275-0
CMC Clean
Cylance unsafe
CrowdStrike win/malicious_confidence_100% (W)
K7AntiVirus Trojan ( 004fae881 )
Baidu Clean
VirIT Trojan.Win32.Generic.BZPS
Symantec Meterpreter
ESET-NOD32 a variant of Win64/Rozena.M
APEX Malicious
Paloalto generic.ml
Cynet Malicious (score: 100)
Alibaba Clean
NANO-Antivirus Trojan.Win64.Shell.kntpkb
ViRobot Trojan.Win.Z.Rozena.7168.MLK
MicroWorld-eScan Trojan.Metasploit.A
F-Secure Trojan.TR/Crypt.XPACK.Gen7
VIPRE Trojan.Metasploit.A
TrendMicro TROJ64_SWRORT.SM1
McAfeeD Real Protect-LS!50A2E65A4D57
Trapmine malicious.high.ml.score
Sophos ATK/Meter-A
SentinelOne Static AI - Malicious PE
Webroot Clean
Avira TR/Crypt.XPACK.Gen7
Antiy-AVL GrayWare/Win32.Rozena.j
Kingsoft Win32.Troj.Unknown.a
Gridinsoft Trojan.Win64.Gen.tr
SUPERAntiSpyware Trojan.Agent/Gen-MalPack
Google Detected
AhnLab-V3 Trojan/Win64.Shelma.R274246
Acronis suspicious
TACHYON Clean
Malwarebytes Trojan.MalPack
Zoner Probably Heur.ExeHeaderL
TrendMicro-HouseCall TROJ64_SWRORT.SM1
Tencent Hacktool.Win64.Rozena.a
Ikarus Trojan.Win64.Meterpreter
MaxSecure Trojan.Malware.300983.susgen
Fortinet W64/Rozena.J!tr
Cybereason malicious.a4d576
DeepInstinct MALICIOUS
alibabacloud Backdoor:Win/shellcode.api(dyn)
No IRMA results available.