Static | ZeroBOX

PE Compile Time

2024-05-08 22:20:41

PE Imphash

68539159d0bebdf7d36de41eb894c1ec

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000a2bfe 0x000a3000 6.59156734813
.rdata 0x000a4000 0x00016c1e 0x00017000 4.83459927047
.data 0x000bb000 0x0004a4c8 0x00018000 5.08884728611
.rsrc 0x00106000 0x00005958 0x00006000 4.82307193535
\xf5J!|\xa3u4 0x0010c000 0x00005000 0x00005000 6.03788883155

Resources

Name Offset Size Language Sub-language File type
TEXTINCLUDE 0x00106c20 0x00000151 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED C source, ASCII text, with CRLF line terminators
TEXTINCLUDE 0x00106c20 0x00000151 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED C source, ASCII text, with CRLF line terminators
TEXTINCLUDE 0x00106c20 0x00000151 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED C source, ASCII text, with CRLF line terminators
RT_CURSOR 0x00107110 0x000000b4 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_CURSOR 0x00107110 0x000000b4 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_CURSOR 0x00107110 0x000000b4 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_CURSOR 0x00107110 0x000000b4 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x00108818 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_ICON 0x0010917c 0x00000668 LANG_NEUTRAL SUBLANG_NEUTRAL dBase IV DBT of `.DBF, block length 1536, next free block index 40, next free block 0, next used block 0
RT_ICON 0x0010917c 0x00000668 LANG_NEUTRAL SUBLANG_NEUTRAL dBase IV DBT of `.DBF, block length 1536, next free block index 40, next free block 0, next used block 0
RT_ICON 0x0010917c 0x00000668 LANG_NEUTRAL SUBLANG_NEUTRAL dBase IV DBT of `.DBF, block length 1536, next free block index 40, next free block 0, next used block 0
RT_ICON 0x0010917c 0x00000668 LANG_NEUTRAL SUBLANG_NEUTRAL dBase IV DBT of `.DBF, block length 1536, next free block index 40, next free block 0, next used block 0
RT_ICON 0x0010917c 0x00000668 LANG_NEUTRAL SUBLANG_NEUTRAL dBase IV DBT of `.DBF, block length 1536, next free block index 40, next free block 0, next used block 0
RT_MENU 0x001097f0 0x00000284 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_MENU 0x001097f0 0x00000284 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x0010aa38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x0010aa38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x0010aa38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x0010aa38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x0010aa38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x0010aa38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x0010aa38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x0010aa38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x0010aa38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x0010aa38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x0010b480 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x0010b480 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x0010b480 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x0010b480 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x0010b480 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x0010b480 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x0010b480 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x0010b480 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x0010b480 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x0010b480 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x0010b480 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_GROUP_CURSOR 0x0010b4cc 0x00000022 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED Lotus unknown worksheet or configuration, revision 0x2
RT_GROUP_CURSOR 0x0010b4cc 0x00000022 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED Lotus unknown worksheet or configuration, revision 0x2
RT_GROUP_CURSOR 0x0010b4cc 0x00000022 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED Lotus unknown worksheet or configuration, revision 0x2
RT_GROUP_ICON 0x0010b534 0x00000014 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_GROUP_ICON 0x0010b534 0x00000014 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_GROUP_ICON 0x0010b534 0x00000014 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_VERSION 0x0010b548 0x00000240 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_MANIFEST 0x0010b788 0x000001cd LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, ASCII text, with very long lines, with no line terminators

Imports

Library RASAPI32.dll:
0x4a43b0 RasHangUpA
Library KERNEL32.dll:
0x4a4170 SetEndOfFile
0x4a4174 UnlockFile
0x4a4178 LockFile
0x4a417c FlushFileBuffers
0x4a4180 SetFilePointer
0x4a4184 GetCurrentProcess
0x4a4188 SuspendThread
0x4a418c TerminateThread
0x4a4190 ReleaseMutex
0x4a4194 CreateMutexA
0x4a4198 SetLastError
0x4a41a4 CreateSemaphoreA
0x4a41a8 ResumeThread
0x4a41ac ReleaseSemaphore
0x4a41b8 GetProfileStringA
0x4a41bc WriteFile
0x4a41c4 CreateFileA
0x4a41c8 SetEvent
0x4a41cc FindResourceA
0x4a41d0 LoadResource
0x4a41d4 LockResource
0x4a41d8 IsBadCodePtr
0x4a41dc IsBadReadPtr
0x4a41e0 CompareStringW
0x4a41e4 CompareStringA
0x4a41f0 GetStringTypeA
0x4a41f4 IsBadWritePtr
0x4a41f8 VirtualAlloc
0x4a41fc LCMapStringW
0x4a4200 LCMapStringA
0x4a4208 VirtualFree
0x4a420c HeapCreate
0x4a4210 HeapDestroy
0x4a4218 GetStdHandle
0x4a421c SetHandleCount
0x4a4234 GetFileType
0x4a4238 SetStdHandle
0x4a423c GetACP
0x4a4240 HeapSize
0x4a4244 TerminateProcess
0x4a4248 RaiseException
0x4a424c ReadFile
0x4a4250 lstrlenW
0x4a4254 GetModuleFileNameA
0x4a4258 WideCharToMultiByte
0x4a425c MultiByteToWideChar
0x4a4260 GetCurrentThreadId
0x4a4264 ExitProcess
0x4a4268 GlobalSize
0x4a426c GlobalFree
0x4a4278 lstrcatA
0x4a427c lstrlenA
0x4a4280 WinExec
0x4a4284 lstrcpyA
0x4a4288 FindNextFileA
0x4a428c GlobalReAlloc
0x4a4290 HeapFree
0x4a4294 HeapReAlloc
0x4a4298 GetProcessHeap
0x4a429c HeapAlloc
0x4a42a0 GetUserDefaultLCID
0x4a42a4 GetFullPathNameA
0x4a42a8 FreeLibrary
0x4a42ac LoadLibraryA
0x4a42b0 GetLastError
0x4a42b4 GetVersionExA
0x4a42bc CreateThread
0x4a42c0 CreateEventA
0x4a42c4 Sleep
0x4a42c8 GlobalAlloc
0x4a42cc GlobalLock
0x4a42d0 GlobalUnlock
0x4a42d4 FindFirstFileA
0x4a42d8 FindClose
0x4a42dc GetFileAttributesA
0x4a42e8 GetModuleHandleA
0x4a42ec GetProcAddress
0x4a42f0 MulDiv
0x4a42f4 GetCommandLineA
0x4a42f8 GetTickCount
0x4a42fc GetLocalTime
0x4a4300 GetSystemTime
0x4a4304 RtlUnwind
0x4a4308 GetStartupInfoA
0x4a430c GetOEMCP
0x4a4310 GetCPInfo
0x4a4314 GetProcessVersion
0x4a4318 SetErrorMode
0x4a431c GlobalFlags
0x4a4320 GetCurrentThread
0x4a4324 GetFileTime
0x4a4328 GetFileSize
0x4a432c TlsGetValue
0x4a4330 LocalReAlloc
0x4a4334 TlsSetValue
0x4a4338 TlsFree
0x4a433c GlobalHandle
0x4a4340 TlsAlloc
0x4a4344 LocalAlloc
0x4a4348 lstrcmpA
0x4a434c GetVersion
0x4a4350 GlobalGetAtomNameA
0x4a4354 GlobalAddAtomA
0x4a4358 GlobalFindAtomA
0x4a435c GlobalDeleteAtom
0x4a4360 WaitForSingleObject
0x4a4364 CloseHandle
0x4a4368 DuplicateHandle
0x4a436c lstrcpynA
0x4a4374 LocalFree
0x4a437c GetStringTypeW
0x4a4380 lstrcmpiA
Library USER32.dll:
0x4a43c8 OpenClipboard
0x4a43cc SetClipboardData
0x4a43d0 EmptyClipboard
0x4a43d4 GetSystemMetrics
0x4a43d8 GetCursorPos
0x4a43dc MessageBoxA
0x4a43e0 SetWindowPos
0x4a43e4 SendMessageA
0x4a43e8 DestroyCursor
0x4a43ec SetParent
0x4a43f0 IsWindow
0x4a43f4 PostMessageA
0x4a43f8 GetTopWindow
0x4a43fc GetParent
0x4a4400 GetClipboardData
0x4a4404 CloseClipboard
0x4a4408 GetFocus
0x4a440c GetClientRect
0x4a4410 InvalidateRect
0x4a4414 ValidateRect
0x4a4418 UpdateWindow
0x4a441c EqualRect
0x4a4420 GetWindowRect
0x4a4424 SetForegroundWindow
0x4a4428 DestroyMenu
0x4a442c IsChild
0x4a4430 ReleaseDC
0x4a4434 IsRectEmpty
0x4a4438 wsprintfA
0x4a443c GetDC
0x4a4440 SetCursor
0x4a4444 LoadCursorA
0x4a4448 SetCursorPos
0x4a444c SetActiveWindow
0x4a4450 GetSysColor
0x4a4454 SetWindowLongA
0x4a4458 GetWindowLongA
0x4a445c RedrawWindow
0x4a4460 EnableWindow
0x4a4464 IsWindowVisible
0x4a4468 OffsetRect
0x4a446c PtInRect
0x4a4470 DestroyIcon
0x4a4474 IntersectRect
0x4a4478 InflateRect
0x4a447c SetRect
0x4a4480 SetScrollPos
0x4a4484 SetScrollRange
0x4a4488 GetScrollRange
0x4a448c SetCapture
0x4a4490 GetCapture
0x4a4494 ReleaseCapture
0x4a4498 SetTimer
0x4a449c KillTimer
0x4a44a0 WinHelpA
0x4a44a4 LoadBitmapA
0x4a44a8 CopyRect
0x4a44b0 ScreenToClient
0x4a44b4 GetMessagePos
0x4a44b8 SetWindowRgn
0x4a44c0 GetWindow
0x4a44c4 GetActiveWindow
0x4a44c8 SetFocus
0x4a44cc IsIconic
0x4a44d0 FillRect
0x4a44d4 DrawTextA
0x4a44d8 GetSysColorBrush
0x4a44dc LoadStringA
0x4a44e0 GetDesktopWindow
0x4a44e4 GetClassNameA
0x4a44ec GetMenuState
0x4a44f0 SetMenuItemBitmaps
0x4a44f4 CheckMenuItem
0x4a44f8 MoveWindow
0x4a44fc IsDialogMessageA
0x4a4500 ScrollWindowEx
0x4a4504 SendDlgItemMessageA
0x4a4508 MapWindowPoints
0x4a450c AdjustWindowRectEx
0x4a4510 SetWindowTextA
0x4a4514 LoadIconA
0x4a4518 TranslateMessage
0x4a451c DrawFrameControl
0x4a4520 DrawEdge
0x4a4524 DrawFocusRect
0x4a4528 WindowFromPoint
0x4a452c GetMessageA
0x4a4530 DispatchMessageA
0x4a4534 SetRectEmpty
0x4a4544 DrawIconEx
0x4a4548 CreatePopupMenu
0x4a454c AppendMenuA
0x4a4550 ModifyMenuA
0x4a4554 CreateMenu
0x4a455c GetDlgCtrlID
0x4a4560 GetSubMenu
0x4a4564 EnableMenuItem
0x4a4568 ClientToScreen
0x4a4570 LoadImageA
0x4a4578 ShowWindow
0x4a457c IsWindowEnabled
0x4a4584 GetKeyState
0x4a458c PostQuitMessage
0x4a4590 IsZoomed
0x4a4594 GetClassInfoA
0x4a4598 DefWindowProcA
0x4a459c GetSystemMenu
0x4a45a0 DeleteMenu
0x4a45a4 GetMenu
0x4a45a8 SetMenu
0x4a45ac PeekMessageA
0x4a45b0 GetWindowTextA
0x4a45b8 CharUpperA
0x4a45bc GetWindowDC
0x4a45c0 BeginPaint
0x4a45c4 EndPaint
0x4a45c8 TabbedTextOutA
0x4a45cc UnregisterClassA
0x4a45d0 GrayStringA
0x4a45d4 GetDlgItem
0x4a45d8 DestroyWindow
0x4a45e0 EndDialog
0x4a45e4 GetNextDlgTabItem
0x4a45e8 GetWindowPlacement
0x4a45f0 GetForegroundWindow
0x4a45f4 GetLastActivePopup
0x4a45f8 GetMessageTime
0x4a45fc RemovePropA
0x4a4600 CallWindowProcA
0x4a4604 GetPropA
0x4a4608 UnhookWindowsHookEx
0x4a460c SetPropA
0x4a4610 GetClassLongA
0x4a4614 CallNextHookEx
0x4a4618 SetWindowsHookExA
0x4a461c CreateWindowExA
0x4a4620 GetMenuItemID
0x4a4624 GetMenuItemCount
0x4a4628 RegisterClassA
0x4a462c GetScrollPos
Library GDI32.dll:
0x4a4024 SelectPalette
0x4a4028 RealizePalette
0x4a402c GetDIBits
0x4a4030 GetWindowExtEx
0x4a4034 GetViewportOrgEx
0x4a4038 GetWindowOrgEx
0x4a403c BeginPath
0x4a4040 EndPath
0x4a4044 PathToRegion
0x4a4048 CreateEllipticRgn
0x4a404c CreateRoundRectRgn
0x4a4050 GetTextColor
0x4a4054 GetBkMode
0x4a4058 GetBkColor
0x4a405c GetROP2
0x4a4060 GetStretchBltMode
0x4a4064 GetPolyFillMode
0x4a406c CreateDCA
0x4a4070 CreateBitmap
0x4a4074 SelectObject
0x4a4078 CreatePen
0x4a407c PatBlt
0x4a4080 CombineRgn
0x4a4084 CreateRectRgn
0x4a4088 FillRgn
0x4a408c CreateSolidBrush
0x4a4090 CreateFontIndirectA
0x4a4094 GetStockObject
0x4a4098 GetObjectA
0x4a409c EndPage
0x4a40a0 EndDoc
0x4a40a4 DeleteDC
0x4a40a8 StartDocA
0x4a40ac StartPage
0x4a40b0 BitBlt
0x4a40b4 CreateCompatibleDC
0x4a40b8 StretchBlt
0x4a40bc Rectangle
0x4a40c0 LPtoDP
0x4a40c4 DPtoLP
0x4a40c8 GetCurrentObject
0x4a40cc RoundRect
0x4a40d4 GetDeviceCaps
0x4a40d8 SaveDC
0x4a40dc RestoreDC
0x4a40e0 SetBkMode
0x4a40e4 SetPolyFillMode
0x4a40e8 SetROP2
0x4a40ec SetTextColor
0x4a40f0 SetMapMode
0x4a40f4 SetViewportOrgEx
0x4a40f8 OffsetViewportOrgEx
0x4a40fc SetViewportExtEx
0x4a4100 ScaleViewportExtEx
0x4a4104 SetWindowOrgEx
0x4a4108 SetWindowExtEx
0x4a410c ScaleWindowExtEx
0x4a4110 GetClipBox
0x4a4114 ExcludeClipRect
0x4a4118 MoveToEx
0x4a411c LineTo
0x4a4120 CreatePalette
0x4a4128 CreateDIBitmap
0x4a412c DeleteObject
0x4a4130 SelectClipRgn
0x4a4134 CreatePolygonRgn
0x4a4138 GetClipRgn
0x4a413c SetStretchBltMode
0x4a4144 ExtSelectClipRgn
0x4a4148 GetViewportExtEx
0x4a414c SetBkColor
0x4a4150 Ellipse
0x4a4154 GetTextMetricsA
0x4a4158 Escape
0x4a415c ExtTextOutA
0x4a4160 TextOutA
0x4a4164 RectVisible
0x4a4168 PtVisible
Library WINMM.dll:
0x4a463c waveOutRestart
0x4a4640 midiStreamRestart
0x4a464c waveOutWrite
0x4a4650 waveOutPause
0x4a4654 waveOutReset
0x4a4658 waveOutClose
0x4a465c waveOutGetNumDevs
0x4a4660 waveOutOpen
0x4a4668 midiStreamOpen
0x4a466c midiStreamProperty
0x4a4674 midiStreamOut
0x4a4678 midiStreamStop
0x4a467c midiOutReset
0x4a4680 midiStreamClose
Library WINSPOOL.DRV:
0x4a4688 DocumentPropertiesA
0x4a468c OpenPrinterA
0x4a4690 ClosePrinter
Library ADVAPI32.dll:
0x4a4000 RegQueryValueA
0x4a4004 RegSetValueExA
0x4a4008 RegOpenKeyExA
0x4a400c RegCloseKey
0x4a4010 RegCreateKeyExA
Library SHELL32.dll:
0x4a43bc ShellExecuteA
0x4a43c0 Shell_NotifyIconA
Library ole32.dll:
0x4a4704 CLSIDFromProgID
0x4a4708 OleRun
0x4a470c CoCreateInstance
0x4a4710 CLSIDFromString
0x4a4714 OleUninitialize
0x4a4718 OleInitialize
Library OLEAUT32.dll:
0x4a4388 VariantClear
0x4a438c VariantChangeType
0x4a4390 VariantCopyInd
0x4a4394 VariantInit
0x4a4398 RegisterTypeLib
0x4a439c LHashValOfNameSys
0x4a43a0 LoadTypeLib
0x4a43a4 UnRegisterTypeLib
0x4a43a8 SysAllocString
Library COMCTL32.dll:
0x4a4018 None
0x4a401c ImageList_Destroy
Library WS2_32.dll:
0x4a4698 WSAAsyncSelect
0x4a469c htons
0x4a46a0 socket
0x4a46a4 closesocket
0x4a46a8 send
0x4a46ac gethostname
0x4a46b0 inet_addr
0x4a46b4 inet_ntoa
0x4a46b8 setsockopt
0x4a46bc recvfrom
0x4a46c0 ioctlsocket
0x4a46c4 connect
0x4a46c8 recv
0x4a46cc getpeername
0x4a46d0 accept
0x4a46d4 gethostbyname
0x4a46d8 WSAStartup
0x4a46dc WSACleanup
0x4a46e0 WSASetLastError
0x4a46e4 select
0x4a46e8 ntohl
Library WININET.dll:
0x4a4634 InternetCloseHandle
Library comdlg32.dll:
0x4a46f0 ChooseColorA
0x4a46f4 GetSaveFileNameA
0x4a46f8 GetOpenFileNameA
0x4a46fc GetFileTitleA

!This program cannot be run in DOS mode.
Richxd
`.rdata
@.data
SEBEGNUj
SEENDP
SEBEGNU
SEENDP
uRFGHt
SEBEGNU
SEENDP
SEBEGNU
SEENDP
t(ENEN;
L$$_^]
T$$_^]
D$$_^]
D$0UVW
L$$_^]d
D$4SUV
D$$8zJ
L$89l$8}
D$(t,;
T$0QRS
T$XPVR
t6HtHt
D$$~9+
F\_^][
L$$_^d
L$@^[d
D$PQRP
L$pPQR
D$hRQP
9L$x~k
L$T_^][d
L$lRVQ
D$hQRP
D$hQRP
T$pPQR
\$8UVW
L$DPQj
\$8UVW
L$DPQj
L$ _^d
W9^du-
L$ PQh
L$L_^][d
L$D_^][d
L$@RUQ
L$|_^][d
L$|_^][d
L$|_^][d
T$0VRPSQ
L$4_^[d
V#D$,WPQ
D$@UPQ
T$XUSR
T$HQRP
L$x_^d
D$(SUV
T$8RWj
L$ _^][d
l$<VWj
L$(VQVj
L$(UUh
t$LUPh
o0SSSSU
D$dSUVW
D$@WPS
L$`_^][d
D$,RVh\
L$TQVSh
|$XSSW
T$TQRPh
D$`QRP
D$hSUV3
D$,Pj<j
L$h_^][d
L$X_^d
t$ 90t
T$LRUj
D$89Vdu
FpHt&Ht
D$LUSWP
L$$_^][d
L$,_[3
L$,_[3
L$(WQR
QQUWSS
L$P_]^[d
T$hQRWW
t]9|$<tW
L$x_^]
L$<SQR
T$<RVW
9|$8tt
T$<WRh
T$lPRh
T$ SRh
9l$xtU9
u29l$xu,
T$$Rh(
L$XSQh
D$,SPh
T$,SRh
T$,SRh
T$,SRh
t$(SSh
t$$RVP
|$,RPQ
L$H][d
L$HSUVWP
D$XPQU
D$8VPQ
T$ SWRP
L$L_^]3
t%RSQP
XY[Z[]
~'PSQR
L$$_^][d
\$<VW3
L$4_^3
D$XQRWP
D$dQUWRP
D$0WPQ
T$$+D$4
L$L^[d
9^xu5j
L$X_^]3
h9n`u;
D$8RPj
T$DQRU
D$PRPQ
L$TSWQ
l$HQRVU
D$H_^][
\$lUV3
L$h_^]3
T$\jdSR
L$Hj&Q
;t$Xu";\$\u
L$DSVQ
L$,_^]3
L$$_^][d
L$0PQS
L$ ]_^
L$ QSR
D$TVPW
D$TRPW
WWVQRWWS
D$$QRP
T$,PQR
D$$RSSP
D$8WVRPQ
L$XRQP
l$@VW3
L$8_^][d
u"8D$yu
D$(_^][
8MThdu
~P9~Pun
t&9^$t
F(9V8tQ
F<_^][
F<_^][
|$@ Wu
|$D UV
L$8^]_3
@;l$\~Z
L$X;L$
uh9^8uX
F89^8u&j
L$T_^][d
L$L_^][d
D$,;\$|
L$0PQR
PQj WUS
T$dPQR
L$l_^][d
L$8WPQR
T$DQSR
D$49D$$}
T$\;D$Xu
L$(PQR
T$,RQP
T$(PQR
L$x_^][d
L$l_^][d
L$TPQR
L$dPQRV
u+\$l
L$4SUV
L$4WPQR
D$ |2;
L$@_^][d
u._^][
L$ WPQ
T$,RQP
L$\_^][d
L$@RQj
D$@RPQj
L$T_^]d
FD uy9D$$}s
FD@ul9L$(}f
L$P_^d
L$\_^][d
;D$xt&
9D$$t+
L$D_]d
L$ ^][d
D$$QUP
L$|_^][d
L$t][d
D$$SUV
D$DURP
RVPUSQ
L$$_^][d
j VUPWQ
T$(QVURWP
L$,_^][d
D$$_^[
D$$_^[
L$4VQUP
L$$_^][d
L$4UQWP
L$$_^][d
T$0SUV
L$(_^][d
T$8QRP
L$(_^][d
L$8_^][d
|$LtE;
t$PPVS
L$8_^][d
T$\WVR
jBWVSSQ
D$(_^]
\$ PQV
L$$_^][d
L$H_^][d
SWVVVRPV
L$$^]d
L$D_^[d
RWhtPL
T$DWRh
D$,QRPS
L$$RPQS
L$<_^][d
L$(RPQ
NTRPQj
L$(RPQ
T$(PQR
D$(QRP
T$DPQRW
L$<RPQW
L$T_^]
Nh;NX|
Vh;VX|
Fxt_;FTu@
Nh;NX|
P$RWPh
ujh`QL
T$0h<QL
D$0QVRP
L$$PVh
D$4RPQ
D$ PQR
=pscat
=YARGtD= BGRt
h BGRUPV
hYARGUQV
=lcmnw_tQ=tsbat-=knilt
=rtnmto
hknilUPV
htsbaUQV
=rtrpt =rncst
=capst
= baLt = ZYXt
TADIut
tkPUSV
ETLPuF
L$Xhl^L
D$8QVRPU
QRVWPU
D$$SPh
3;L$4s
T$8QRU
L$Xh`[
L$Xhh\L
T$Xh@\L
T$,SRW
T$0;t$
PPPQSG
D$ EJ;
D$4SUVW
L$$QWV
D$0UhP
D$,Hx;@
D$(CM;
D$Hvm3
L$Lvj3
D$(FO;
L$t_^d
D$ RPUhD
QUhHaL
L$l_^][d
L$$^[d
L$(WSR
T$0PQR
WjdjdPQh
|z;^<}uWS
L$D_^][d
L$\_^][d
It#Iu%
^l_^][
tI;Ftr
tL9~HvG;
~(9~$u
D/ VPS
L$<RWUQV
tLhpeL
L$$j QV
L$(VQU
hPCCiU
L$(RPVQWU
u!hPgL
l$,WuAS
|$ VurU
D$@QRPU
T$ PQW
trhpfL
}kh8iL
Ht&HtcI
D$(SUW
=TADIt
t4hHjL
TADIu"
hTADIV
Ht]Ht2Ht
HtfHt;Ht
u7hDlL
t$,u%:D$<u
:L$<t;
\$$u9f;
\$@QUR
;=3333v
HtHHuz
RQhxqL
V,_^[Y
D$ _^][
EHPWVS
u]9B uX
uR9BxuM
'9A`u"9
tq9~Dt
nd9~dt
tS9~@uN
T$LPQR
|$HPWS
L$(RPQ
T$DPVS
T$LRWS
Fdf+Fh
D$(8D*
tRHt}H
NH_^][
T$LWUQVR
L$4WQUVS
;l$ }:
|$$}$WP
\$\}-j
O(_^][
T$H} VP
T$$PRV
D$(QPW
L$,SUV
L$0SUV@W
NX9NXu
QPSWVR
T$PQRP
D$$SUV
D$(;l$
\$(UVW
D$,_^]
D$(CUSWP
9o4u'V
9t$0v8
T$,RWV
T$,RWV
T$,RWV
L$,QWV
T$,RWV
L$ RUPj
9t$Tu
T+3x%A
;D$<s!
T$,PQh(
|$ WUSV
D$$SUV
L$(SUV
N4_^]3
T$ QVWRUS
\$4t|Ht@H
T$ QRP
T$ HFPVR
L$ _^][d
T$,Qhh
L$<_^][d
T$0u`U
V<j PR
F<j QP
T$HRj$
T$<RWP
D$ QRPW
T$ PQRW
D$(PQh
T$@SRh
\$(UVW
L$4PUQ
D$$QRWVPU
T$@QRj
L$4PQj
T$4QRj
L$(PQj
T$8QRj
L$,PQj
D$lRPj
T$<QRj
T$dQRj
D$`RPj
T$0QRj
L$|PQj
T$XQRj
D$dRPj
T$4QRj
T$\QRj
D$DSUVW
D$DRPj
T$0QRj
L$`PQj
D$<RPj
T$(QRj
L$XPQj
D$@RPj
T$,QRj
L$\PQj
;t$<}
;t$<}8
D$(SUV
|$<tM;
T$8QRj
L$,PQj
T$,QRj
L$ PQj
T$,QRj
L$ PQj
L$dPQj
D$8RPj
D$\RPj
T$XQRj
L$,PQj
D$|RPj
L$PPQj
D$XRPj
T$,QRj
L$|PQj
T$PQRj
L$DSVW
D$DRPj
T$4QRj
L$dPQj
D$8RPj
T$(QRj
L$XPQj
D$8RPj
T$(QRj
L$XPQj
d$t_^][
F$@;F(v
F$@@;F(v
QQSVWj
QQSVWd
t.;t$$t(
B 02CV
C =02CVu
uRFGHt
YHYtLHt9
tn<%t2
HHtiHtGH
HtHHt(
HtOHt)H
HtHt&Ht
QQSUVWj
_^][YY
8t9UW
SS@SSPVSS
t#SSUP
t$$VSS
_^][YY
VC20XC00U
t/WWUPj
QQSVW3
sO;>|C;~
HHtpHHtl
tFGQPS
btHHt.
HSVHWtgHHtF
<]t_G<-uA
PPPPPPPP
PPPPPPPP
PPPPPPPP
QQSVWj
>:uNFV
>:u#FV
VWuBhH
t+Ht$Ht
HtHHt
+ttHHtd
nt2Ht#Ht
F\jLSP
u$SShe
Wj(_Wj
hWj@_;
PQQQQQ
PPPPhd
tvWWWWU
F,_^][
(wqt\HHtS
t>Ht Ht
QSUVWj
n0SSSSU
_SSSSU
Ph_^][Y
tD9_Pt?
Ht#HHt
@t4Ht1Ht_Ht
^$_^[]
F(_+F$^[;E
<A|2<Z
<A|@<Z
+tJHt:Ht*
P<PuWSV
PWVWWW
9^0u/j
F09^4u*j
F49^8u&j
^,_^][
msvcrt.dll
Kernel32.dll
kernel32.dll
Shell32.dll
kernel32.dll
kernel32.dll
user32.dll
kernel32.dll
kernel32.dll
kernel32.dll
kernel32.dll
kernel32.dll
user32.dll
wininet.dll
wininet.dll
wininet.dll
wininet.dll
Wininet.dll
wininet.dll
wininet.dll
wininet.dll
wininet.dll
wininet.dll
wininet.dll
ole32.dll
ole32.dll
strlen
MultiByteToWideChar
CreatePipe
SHGetSpecialFolderPathW
CreateProcessW
CloseHandle
WaitForInputIdle
PeekNamedPipe
ReadFile
GetExitCodeProcess
lstrlenW
CallWindowProcA
InternetOpenA
InternetConnectA
InternetCloseHandle
HttpOpenRequestA
InternetSetOptionA
HttpSendRequestA
HttpSendRequestExA
InternetWriteFile
HttpEndRequestA
InternetReadFile
HttpQueryInfoA
CoInitialize
CoUninitialize
d09f2340818511d396f6aaf844c7e325
707ca37322474f6ca841f0e224f4b620
A512548E76954B6E92C21055517615B0
window
ComObject
GLNKOATEWTEKOHFX
guan18601761420
smtp.163.com
clientkey:
nickname
guan18601761420@163.com
724514434@qq.com
netstat -an
\cmd.exe
\command.com
https://xui.ptlogin2.qq.com/cgi-bin/xlogin?target=self&appid=522005705&daid=4&s_url=https://wx.mail.qq.com/list/readtemplate?name=login_jump.html&target=&style=25&low_login=1&proxy_url=https://mail.qq.com/proxy.html&need_qr=0&hide_border=1&border_radius=0&self_regurl=https://reg.mail.qq.com&app_id=11005?t=regist&pt_feedback_link=http://support.qq.com/discuss/350_1.shtml&css=https://res.mail.qq.com/zh_CN/htmledition/style/ptlogin_input_for_xmail.css&enable_qlogin=0
pt_local_token=
/pt_get_uins?callback=ptui_getuins_CB&r=0.3270034122351900&pt_local_tk=
https://localhost.ptlogin2.qq.com:
Referer: https://xui.ptlogin2.qq.com/
&callback=__jp0
&r=0.3101890513086329&pt_local_tk=
/pt_get_st?clientuin=
clientkey=
OPTIONS
DELETE
CONNECT
https://
User-Agent:
Mozilla/4.0 (compatible; MSIE 9.0; Windows NT 6.1)
SOCKS=
HTTP/1.1
Accept: */*
Accept:
Accept: */*
Referer:
Referer:
Accept-Language:
Accept-Language: zh-cn
Content-Type:
Content-Type: application/x-www-form-urlencoded
Cookie:
Cookie:
http://
set-cookie:
(@=deleted
nickname
MSScriptControl.ScriptControl
JavaScript
Language
function get__nodeValue(str_json,recursion){for(var i in str_json){var a=Object.prototype.toString.call(str_json[i]);if(a=="[object Object]"||a=="[object Array]"){if(recursion){get__nodeValue(str_json[i],recursion)}}else if(a=="[object String]"||a=="[object Number]"||a=="[object Boolean]"){str_all.push(str_json[i])}}return str_all}function get__count(c){var obj=Object.prototype.toString.call(c);if(obj=='[object Array]'){return c.length}else{return 0}}function get__name_All(a){var obj=Object.prototype.toString.call(a);if(obj=='[object Object]'){var ary=new Array();for(var key in a){if(typeof a[key]!=='function'){ary.push(key)}}return ary.join('\r\n')}else{return''}}function get__extend(target,source){if(Object.prototype.toString.call(target)=='[object Array]'){for(var i=0;i<source.length;i++){target.push(source[i])}return target}else{var str_obj;for(var obj in source){str_obj=typeof target[obj];if(str_obj=='string'||str_obj=='boolean'||str_obj=='undefined'){target[obj]=source[obj]}else if(str_obj=='number'){ta
AddCode
= {}, str_Code = String.fromCharCode(9216), str_reg = new RegExp(str_Code, 'g')
= null
= eval(
Number
Source
Description
HelpFile
HelpContext
Column
!= null
).replace(str_reg, '\\')
JSON.stringify(
Object.prototype.toString.call(
[object Object]
= get__extend(
'.replace(/\\/g, str_Code)
== null
[object String]
[object Array]
[object Number]
[object Boolean]
.toString().replace(str_reg, '\\')
get__name_All(
get__count(
.unshift(
= new Array() }
) != '[object Array]') {
if (Object.prototype.toString.call(
.push(
]).replace(str_reg, '\\')
].replace(str_reg, '\\')
.splice(
delete
var str_all = new Array()
get__nodeValue(
str_all.join('[2020
msvcrt.dll
Kernel32.dll
kernel32.dll
Shell32.dll
user32.dll
wininet.dll
Wininet.dll
ole32.dll
strlen
MultiByteToWideChar
CreatePipe
SHGetSpecialFolderPathW
CreateProcessW
CloseHandle
WaitForInputIdle
PeekNamedPipe
ReadFile
GetExitCodeProcess
lstrlenW
CallWindowProcA
InternetOpenA
InternetConnectA
InternetCloseHandle
HttpOpenRequestA
InternetSetOptionA
HttpSendRequestA
HttpSendRequestExA
InternetWriteFile
HttpEndRequestA
InternetReadFile
HttpQueryInfoA
CoInitialize
CoUninitialize
4i5U6B738%9
B#C0D?EQFeG|H
E=FZGrH
QyReSOT5U
qdZRMHD@=;86421/.-+*)(''&%$$#""!! 
|?5^<@
0123456789ABCDEF
123456789
0123456789ABCDEF
Qkkbal
DDDDUUUU
00003333
""""UUUU
0@P`p
!1AQaq
"2BRbr
#3CScs
$4DTdt
%5EUeu
&6FVfv
'7GWgw
(8HXhx
)9IYiy
*:JZjz
+;K[k{
,<L\l|
-=M]m}
.>N^n~
/?O_o
deflate 1.1.3 Copyright 1995-1998 Jean-loup Gailly
BKbhTb~XBK!;
inflate 1.1.3 Copyright 1995-1998 Mark Adler
?u='@^
UUUUUU
@UUUUUU
UUUUUU
@UUUUUU
UUUUUU
F%*.*f
CNotSupportedException
CMemoryException
CException
CMemFile
CTempGdiObject
CTempDC
CPalette
CBitmap
CBrush
CGdiObject
CPaintDC
CWindowDC
CClientDC
CUserException
CResourceException
CDialog
MS Sans Serif
MS Shell Dlg
CTempWnd
AfxOldWndProc423
AfxWnd42s
AfxControlBar42s
AfxMDIFrame42s
AfxFrameOrView42s
AfxOleControl42s
GetMonitorInfoA
EnumDisplayMonitors
MonitorFromPoint
MonitorFromRect
MonitorFromWindow
GetSystemMetrics
USER32
DISPLAY
commctrl_DragListMsg
Afx:%x:%x:%x:%x:%x
Afx:%x:%x
InitCommonControlsEx
COMCTL32.DLL
CPtrArray
CComboBox
CButton
CStatic
CFileDialog
CStringArray
CWinApp
PreviewPages
Settings
CTempImageList
CImageList
CProgressCtrl
CArchiveException
CSharedFile
CCmdTarget
CWinThread
CTempMenu
combobox
CDWordArray
CWordArray
CFileException
CMapPtrToPtr
CToolTipCtrl
tooltips_class32
CColorDialog
UNLINK
DELETE
CObject
System
commdlg_SetRGBColor
commdlg_help
commdlg_ColorOK
commdlg_FileNameOK
commdlg_ShareViolation
commdlg_LBSelChangedNotify
CPtrList
software
CSyncObject
CCriticalSection
CMapStringToPtr
H:mm:ss
dddd, MMMM dd, yyyy
M/d/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
__GLOBAL_HEAP_SELECTED
__MSVCRT_HEAP_SELECT
runtime error
TLOSS error
SING error
DOMAIN error
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
abnormal program termination
- not enough space for environment
- not enough space for arguments
- floating point not loaded
Microsoft Visual C++ Runtime Library
Runtime Error!
Program:
<program name unknown>
GAIsProcessorFeaturePresent
KERNEL32
_hypot
`h````
ppxxxx
(null)
Illegal byte sequence
Directory not empty
Function not implemented
No locks available
Filename too long
Resource deadlock avoided
Result too large
Domain error
Broken pipe
Too many links
Read-only file system
Invalid seek
No space left on device
File too large
Inappropriate I/O control operation
Too many open files
Too many open files in system
Invalid argument
Is a directory
Not a directory
No such device
Improper link
File exists
Resource device
Unknown error
Bad address
Permission denied
Not enough space
Resource temporarily unavailable
No child processes
Bad file descriptor
Exec format error
Arg list too long
No such device or address
Input/output error
Interrupted function call
No such process
No such file or directory
Operation not permitted
No error
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
GetLastActivePopup
GetActiveWindow
MessageBoxA
user32.dll
1#QNAN
1#SNAN
RasGetConnectStatusA
RasHangUpA
RASAPI32.dll
CloseHandle
WaitForSingleObject
GetTickCount
GetCommandLineA
MulDiv
GetProcAddress
GetModuleHandleA
GetVolumeInformationA
SetCurrentDirectoryA
GetFileAttributesA
FindClose
FindFirstFileA
GlobalUnlock
GlobalLock
GlobalAlloc
CreateEventA
CreateThread
WritePrivateProfileStringA
GetVersionExA
GetLastError
LoadLibraryA
FreeLibrary
GetFullPathNameA
GetUserDefaultLCID
HeapAlloc
GetProcessHeap
HeapReAlloc
HeapFree
GlobalReAlloc
FindNextFileA
lstrcpyA
WinExec
lstrlenA
lstrcatA
InitializeCriticalSection
DeleteCriticalSection
GlobalFree
GlobalSize
ExitProcess
GetCurrentThreadId
MultiByteToWideChar
WideCharToMultiByte
GetModuleFileNameA
lstrlenW
ReadFile
LockResource
LoadResource
FindResourceA
SetEvent
CreateFileA
WaitForMultipleObjects
WriteFile
GetProfileStringA
LeaveCriticalSection
EnterCriticalSection
ReleaseSemaphore
ResumeThread
CreateSemaphoreA
FileTimeToSystemTime
GetTimeZoneInformation
SetLastError
CreateMutexA
ReleaseMutex
TerminateThread
SuspendThread
KERNEL32.dll
wsprintfA
CloseClipboard
GetClipboardData
OpenClipboard
SetClipboardData
EmptyClipboard
GetSystemMetrics
GetCursorPos
MessageBoxA
SetWindowPos
SendMessageA
DestroyCursor
SetParent
IsWindow
PostMessageA
GetTopWindow
GetParent
GetFocus
GetClientRect
InvalidateRect
ValidateRect
UpdateWindow
EqualRect
GetWindowRect
SetForegroundWindow
DestroyMenu
IsChild
ReleaseDC
IsRectEmpty
FillRect
SetCursor
LoadCursorA
SetCursorPos
SetActiveWindow
GetSysColor
SetWindowLongA
GetWindowLongA
RedrawWindow
EnableWindow
IsWindowVisible
OffsetRect
PtInRect
DestroyIcon
IntersectRect
InflateRect
SetRect
SetScrollPos
SetScrollRange
GetScrollRange
SetCapture
GetCapture
ReleaseCapture
SetTimer
KillTimer
WinHelpA
LoadBitmapA
CopyRect
ChildWindowFromPointEx
ScreenToClient
GetMessagePos
SetWindowRgn
DestroyAcceleratorTable
GetWindow
GetActiveWindow
SetFocus
IsIconic
PeekMessageA
SetMenu
GetMenu
DeleteMenu
GetSystemMenu
DefWindowProcA
GetClassInfoA
IsZoomed
PostQuitMessage
CopyAcceleratorTableA
GetKeyState
TranslateAcceleratorA
IsWindowEnabled
ShowWindow
SystemParametersInfoA
LoadImageA
EnumDisplaySettingsA
ClientToScreen
EnableMenuItem
GetSubMenu
GetDlgCtrlID
CreateAcceleratorTableA
CreateMenu
ModifyMenuA
AppendMenuA
CreatePopupMenu
DrawIconEx
CreateIconFromResource
CreateIconFromResourceEx
RegisterClipboardFormatA
SetRectEmpty
DispatchMessageA
GetMessageA
WindowFromPoint
DrawFocusRect
DrawEdge
DrawFrameControl
TranslateMessage
LoadIconA
SetWindowTextA
USER32.dll
GetDeviceCaps
GetTextExtentPoint32A
RoundRect
GetCurrentObject
DPtoLP
LPtoDP
Rectangle
Ellipse
CreateCompatibleDC
BitBlt
StartPage
StartDocA
DeleteDC
EndDoc
EndPage
GetObjectA
GetStockObject
CreateFontIndirectA
CreateSolidBrush
FillRgn
CreateRectRgn
CombineRgn
PatBlt
CreatePen
SelectObject
CreateBitmap
CreateDCA
CreateCompatibleBitmap
GetPolyFillMode
GetStretchBltMode
GetROP2
GetBkColor
GetBkMode
GetTextColor
CreateRoundRectRgn
CreateEllipticRgn
PathToRegion
EndPath
BeginPath
GetWindowOrgEx
GetViewportOrgEx
GetWindowExtEx
GetDIBits
RealizePalette
SelectPalette
StretchBlt
CreatePalette
GetSystemPaletteEntries
CreateDIBitmap
DeleteObject
SelectClipRgn
CreatePolygonRgn
GetClipRgn
SetStretchBltMode
CreateRectRgnIndirect
SetBkColor
GDI32.dll
midiStreamRestart
midiStreamClose
midiOutReset
midiStreamStop
midiStreamOut
midiOutPrepareHeader
midiStreamProperty
midiStreamOpen
midiOutUnprepareHeader
waveOutOpen
waveOutGetNumDevs
waveOutClose
waveOutReset
waveOutPause
waveOutWrite
waveOutPrepareHeader
waveOutUnprepareHeader
waveOutRestart
WINMM.dll
ClosePrinter
DocumentPropertiesA
OpenPrinterA
WINSPOOL.DRV
RegCloseKey
RegOpenKeyExA
RegSetValueExA
RegQueryValueA
ADVAPI32.dll
ShellExecuteA
Shell_NotifyIconA
SHELL32.dll
OleRun
CoCreateInstance
CLSIDFromString
OleUninitialize
OleInitialize
ole32.dll
OLEAUT32.dll
ImageList_Destroy
COMCTL32.dll
WS2_32.dll
InternetCloseHandle
WININET.dll
InterlockedIncrement
InterlockedDecrement
LocalFree
FileTimeToLocalFileTime
lstrcpynA
DuplicateHandle
GetCurrentProcess
SetFilePointer
FlushFileBuffers
LockFile
UnlockFile
SetEndOfFile
lstrcmpiA
GlobalDeleteAtom
GlobalFindAtomA
GlobalAddAtomA
GlobalGetAtomNameA
GetVersion
lstrcmpA
LocalAlloc
TlsAlloc
GlobalHandle
TlsFree
TlsSetValue
LocalReAlloc
TlsGetValue
GetFileSize
GetFileTime
GetCurrentThread
GlobalFlags
SetErrorMode
GetProcessVersion
GetCPInfo
GetOEMCP
GetStartupInfoA
RtlUnwind
GetSystemTime
GetLocalTime
RaiseException
TerminateProcess
HeapSize
GetACP
SetStdHandle
GetFileType
UnhandledExceptionFilter
FreeEnvironmentStringsA
FreeEnvironmentStringsW
GetEnvironmentStrings
GetEnvironmentStringsW
SetHandleCount
GetStdHandle
GetEnvironmentVariableA
HeapDestroy
HeapCreate
VirtualFree
SetEnvironmentVariableA
LCMapStringA
LCMapStringW
VirtualAlloc
IsBadWritePtr
GetStringTypeA
GetStringTypeW
SetUnhandledExceptionFilter
CompareStringA
CompareStringW
IsBadReadPtr
IsBadCodePtr
GetWindowTextA
GetWindowTextLengthA
CharUpperA
GetWindowDC
BeginPaint
EndPaint
TabbedTextOutA
DrawTextA
GrayStringA
GetDlgItem
DestroyWindow
CreateDialogIndirectParamA
EndDialog
GetNextDlgTabItem
GetWindowPlacement
RegisterWindowMessageA
GetForegroundWindow
GetLastActivePopup
GetMessageTime
RemovePropA
CallWindowProcA
GetPropA
UnhookWindowsHookEx
SetPropA
GetClassLongA
CallNextHookEx
SetWindowsHookExA
CreateWindowExA
GetMenuItemID
GetMenuItemCount
RegisterClassA
GetScrollPos
AdjustWindowRectEx
MapWindowPoints
SendDlgItemMessageA
ScrollWindowEx
IsDialogMessageA
MoveWindow
CheckMenuItem
SetMenuItemBitmaps
GetMenuState
GetMenuCheckMarkDimensions
GetClassNameA
GetDesktopWindow
LoadStringA
GetSysColorBrush
SaveDC
RestoreDC
SetBkMode
SetPolyFillMode
SetROP2
SetTextColor
SetMapMode
SetViewportOrgEx
OffsetViewportOrgEx
SetViewportExtEx
ScaleViewportExtEx
SetWindowOrgEx
SetWindowExtEx
ScaleWindowExtEx
GetClipBox
ExcludeClipRect
MoveToEx
LineTo
ExtSelectClipRgn
GetViewportExtEx
PtVisible
RectVisible
TextOutA
ExtTextOutA
Escape
GetTextMetricsA
GetFileTitleA
GetSaveFileNameA
GetOpenFileNameA
ChooseColorA
comdlg32.dll
RegCreateKeyExA
CLSIDFromProgID
UnregisterClassA
Shell32.dll
Mpr.dll
Advapi32.dll
User32.dll
Gdi32.dll
Kernel32.dll
.PAVCException@@
\shell\open\command
mailto:
OpenDatabase
CloseDatabase
GetConnectString
GetTabList
%d, %d
DllUnregisterServer
DllRegisterServer
DEFAULT_ICON
RemovePlayer
WG!2S(
L23fff&ff
?fff&ff23
CWinFormUnit
.PAVCException@@
WTWindow
GetMonitorInfoA
MonitorFromWindow
User32.dll
bcdfghijklmnpqrstuvwxyz
abcddefghijklmnoopqrrsstuvvwwxyyz;
,1"52.*
(&07-034/)7 '
hgjlkbrfzaoe
 !"#!
?? / %d]
%d / %d]
.PAVCException@@
.PAVCFileException@@
(*.*)|*.*||
(*.WAV;*.MID)|*.WAV;*.MID|WAV
(*.WAV)|*.WAV|MIDI
(*.MID)|*.MID|
(*.txt)|*.txt|
(*.*)|*.*||
Ctrl+Shift+F12
Ctrl+Shift+F11
Ctrl+Shift+F10
Ctrl+Shift+F9
Ctrl+Shift+F8
Ctrl+Shift+F7
Ctrl+Shift+F6
Ctrl+Shift+F5
Ctrl+Shift+F4
Ctrl+Shift+F3
Ctrl+Shift+F2
Ctrl+Shift+F1
Shift+F12
Shift+F11
Shift+F10
Shift+F9
Shift+F8
Shift+F7
Shift+F6
Shift+F5
Shift+F4
Shift+F3
Shift+F2
Shift+F1
Ctrl+F12
Ctrl+F11
Ctrl+F10
Ctrl+F9
Ctrl+F8
Ctrl+F7
Ctrl+F6
Ctrl+F5
Ctrl+F4
Ctrl+F3
Ctrl+F2
Ctrl+F1
Ctrl+Z
Ctrl+Y
Ctrl+X
Ctrl+W
Ctrl+V
Ctrl+U
Ctrl+T
Ctrl+S
Ctrl+R
Ctrl+Q
Ctrl+P
Ctrl+O
Ctrl+N
Ctrl+M
Ctrl+L
Ctrl+K
Ctrl+J
Ctrl+I
Ctrl+H
Ctrl+G
Ctrl+F
Ctrl+E
Ctrl+D
Ctrl+C
Ctrl+B
Ctrl+A
.PAVCException@@
.PAVCException@@
(*.JPG;*.PNG;*.BMP;*.GIF;*.ICO;*.CUR)|*.JPG;*.PNG;*.BMP;*.GIF;*.ICO;*.CUR|JPG
(*.JPG)|*.JPG|PNG
(*.PNG)|*.PNG|BMP
(*.BMP)|*.BMP|GIF
(*.GIF)|*.GIF|
(*.ICO)|*.ICO|
(*.CUR)|*.CUR|
(*.*)|*.*||
.PAVCException@@
devices
windows
device
MGridCells
.PAVCException@@
.PAVCNotSupportedException@@
.PAVCFileException@@
.PAVCException@@
.PAVCFileException@@
.PAVCException@@
.PAVCFileException@@
CColourPicker
out.prn
(*.prn)|*.prn|
(*.*)|*.*||
devices
windows
device
.PAVCException@@
_EL_HideOwner
%d/%d
%d/%d
.PAVCException@@
Potential overflow in png_zalloc()
but running with
Application built with libpng-
unexpected zlib return code
unexpected zlib return
unsupported zlib version
truncated
insufficient memory
damaged LZ stream
bad parameters to zlib
zlib IO error
missing LZ dictionary
unexpected end of LZ stream
gamma value out of range
duplicate
gamma value does not match sRGB
gamma value does not match libpng estimate
invalid chromaticities
internal error checking chromaticities
inconsistent chromaticities
invalid sRGB rendering intent
cHRM chunk does not match sRGB
duplicate sRGB information ignored
inconsistent rendering intents
profile '
invalid length
too short
tag count too large
unexpected ICC PCS encoding
unrecognized ICC profile class
unexpected NamedColor ICC profile class
invalid embedded Abstract ICC profile
unexpected DeviceLink ICC profile class
Gray color space not permitted on RGB PNG
RGB color space not permitted on grayscale PNG
invalid ICC profile color space
PCS illuminant is not D50
invalid signature
intent outside defined range
invalid rendering intent
length does not match profile
ICC profile tag outside profile
ICC profile tag start not a multiple of 4
out-of-date sRGB profile with no signature
known incorrect sRGB profile
copyright violation: edited ICC profile ignored
internal error handling cHRM->XYZ
internal error handling cHRM coefficients
Invalid IHDR data
Invalid filter method in IHDR
Unknown filter method in IHDR
MNG features are not allowed in a PNG datastream
Unknown compression method in IHDR
Unknown interlace method in IHDR
Invalid color type/bit depth combination in IHDR
Invalid color type in IHDR
Invalid bit depth in IHDR
Invalid image height in IHDR
Invalid image width in IHDR
Image height exceeds user limit in IHDR
Image width exceeds user limit in IHDR
Image height is zero in IHDR
Image width is zero in IHDR
gamma table being rebuilt
Too many IDATs found
Missing PLTE before IDAT
Missing IHDR before IDAT
png_read_update_info/png_start_read_image: duplicate call
internal sequential row size calculation error
sequential row overflow
bad adaptive filter value
Invalid attempt to read row data
png_image_read: opaque pointer not NULL
png_image_read: out of memory
png_image_begin_read_from_memory: incorrect PNG_IMAGE_VERSION
png_image_begin_read_from_memory: invalid argument
invalid memory read
read beyond end of data
png_image_finish_read: damaged PNG_IMAGE_VERSION
png_image_finish_read: invalid argument
png_image_finish_read[color-map]: no color-map
bad background index (internal error)
bad processing option (internal error)
color map overflow (BAD internal error)
bad data option (internal error)
invalid PNG color type
palette color-map: too few entries
rgb-alpha color-map: too few entries
rgb+alpha color-map: too few entries
rgb color-map: too few entries
rgb[gray] color-map: too few entries
rgb[ga] color-map: too few entries
gray-alpha color-map: too few entries
ga-alpha color-map: too few entries
gray+alpha color-map: too few entries
gray[16] color-map: too few entries
gray[8] color-map: too few entries
a background color must be supplied to remove alpha/transparency
unexpected encoding (internal error)
bad encoding (internal error)
color-map index out of range
bad color-map processing (internal error)
unknown interlace type
png_read_image: invalid transformations
unexpected alpha swap transformation
png_image_read: alpha channel lost
png_read_image: unsupported transformation
unexpected bit depth
unexpected 8-bit transformation
lost/gained channels
unexpected compose
lost rgb to gray
%d / %d
_EL_ColourPopup
Bogus message code %d
libpng error: %s
undefined
libpng warning: %s
bad longjmp:
internal error: array alloc
internal error: array realloc
Out of memory
need dictionary
incorrect data check
incorrect header check
invalid window size
unknown compression method
Call to NULL read function
Read Error
Can't set both read_data_fn and write_data_fn in the same structure
PNG unsigned integer out of range
PNG file corrupted by ASCII conversion
Not a PNG file
CRC error
invalid
out of place
bKGD must be after
hIST must be after
tRNS must be after
duplicate
ignored in grayscale PNG
missing IHDR
PNG fixed point integer out of range
invalid values
too many profiles
bad keyword
bad compression method
truncated
out of memory
extra compressed data
too short
insufficient memory to read chunk
using zstream
zstream unclaimed
sPLT chunk requires too much memory
sPLT chunk too long
sPLT chunk has bad length
malformed sPLT chunk
No space in chunk cache for sPLT
invalid with alpha channel
invalid index
invalid data
unrecognized equation type
invalid parameter count
bad width format
bad height format
non-positive height
non-positive width
invalid unit
Insufficient memory to process text chunk
no space in chunk cache
insufficient memory
unknown compression type
bad compression info
unhandled critical chunk
forcing save of an unhandled chunk; please call png_set_keep_unknown_chunks
Saving unknown chunk:
error in user chunk
unknown chunk exceeds memory limits
invalid chunk type
invalid user transform pixel depth
internal row width error
internal row size calculation error
internal row logic error
Too much image data
Extra compressed data
Not enough image data
Row has too many bytes to allocate in memory
Application must supply a known background gamma
invalid before the PNG header has been read
invalid after png_start_read_image or png_read_update_info
conflicting calls to set alpha mode and background
invalid alpha mode
output gamma out of expected range
ignoring out of range rgb_to_gray coefficients
invalid error action to rgb_to_gray
invalid background gamma type
libpng does not support gamma+background+rgb_to_gray
Palette is NULL in indexed image
png_do_quantize returned rowbytes=0
png_do_rgb_to_gray found nongray pixel
Uninitialized row
NULL row buffer
png_do_encode_alpha: unexpected call
png_set_filler is invalid for low bit depth gray output
png_set_filler: inappropriate color type
Invalid palette size, hIST allocation skipped
Insufficient memory for hIST chunk data
Insufficient memory for pCAL parameter
Insufficient memory for pCAL params
Insufficient memory for pCAL units
Insufficient memory for pCAL purpose
Invalid format for pCAL parameter
Invalid pCAL parameter count
Invalid pCAL equation type
Memory allocation failed while processing sCAL
Invalid sCAL height
Invalid sCAL width
Invalid sCAL unit
Invalid palette
Invalid palette length
text chunk: out of memory
text compression mode is out of range
too many text chunks
Ignoring invalid time value
tRNS chunk has out-of-range samples for bit_depth
sPLT out of memory
png_set_sPLT: invalid sPLT
too many sPLT chunks
unknown chunk: out of memory
too many unknown chunks
invalid location in png_set_unknown_chunks
png_set_unknown_chunks now expects a valid location
png_set_keep_unknown_chunks: invalid keep
png_set_keep_unknown_chunks: too many chunks
png_set_keep_unknown_chunks: no chunk list
(%d-%d):
JPEGMEM
invalid bit length repeat
too many length or distance symbols
invalid stored block lengths
invalid block type
incompatible version
buffer error
insufficient memory
data error
stream error
file error
stream end
need dictionary
invalid distance code
invalid literal/length code
incomplete dynamic bit lengths tree
oversubscribed dynamic bit lengths tree
incomplete literal/length tree
oversubscribed literal/length tree
empty distance tree with lengths
incomplete distance tree
oversubscribed distance tree
invalid literal/length code
invalid distance code
gb2312
us-ascii
=?gb2312?B?
ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/
%s <%s>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Content-type: text/plain; charset="
MIME-Version: 1.0
Content-type: multipart/mixed; boundary="#BOUNDARY#"
Reply-To: %s
From: %s
To: %s
Subject: %s
Date: %s
From: %s
To: %s
Cc: %s
Subject: %s
Date: %s
%a, %d %b %Y %H:%M:%S
%+.2d%.2d
HELO %s
SOCKET
AUTH LOGIN
AUTH PLAIN
AUTH=LOGIN
EHLO %s
--#BOUNDARY#--
--#BOUNDARY#
Content-Type: application/octet-stream; name=%s
Content-Transfer-Encoding: base64
Content-Disposition: attachment; filename=%s
Content-Transfer-Encoding: base64
--#BOUNDARY#
Content-Type: text/plain; charset="
MAIL FROM:<%s>
RCPT TO:<%s>
SetPauseState
RemovePlayer
CreatePlayer
GetPlayState
NewPlay
.PAVCException@@
.PAVCObject@@
.PAVCSimpleException@@
.PAVCMemoryException@@
.PAVCNotSupportedException@@
.?AVCObject@@
.?AVCException@@
.?AVCSimpleException@@
.?AVCMemoryException@@
.?AVCNotSupportedException@@
.?AVCFile@@
.?AVCFileException@@
.?AVCMemFile@@
.?AVCDC@@
.?AVCClientDC@@
.?AVCWindowDC@@
.?AVCPaintDC@@
.?AVCGdiObject@@
.?AVCPen@@
.?AVCBrush@@
.?AVCTempDC@@
.?AVCTempGdiObject@@
.PAVCResourceException@@
.PAVCUserException@@
.?AVCResourceException@@
.?AVCUserException@@
.?AVCCmdTarget@@
.?AVCWnd@@
.?AVCDialog@@
.?AVCCmdUI@@
.?AVCTestCmdUI@@
.?AVCTempWnd@@
.?AVCNoTrackObject@@
.?AV_AFX_CTL3D_STATE@@
.?AVCPtrArray@@
.?AVCStatic@@
.?AVCButton@@
.?AVCComboBox@@
.?AVCEdit@@
.?AV_AFX_CHECKLIST_STATE@@
.?AVCBitmap@@
.?AVCCommonDialog@@
.?AVCFileDialog@@
.?AV_AFX_THREAD_STATE@@
.?AVAFX_MODULE_STATE@@
.?AVAFX_MODULE_THREAD_STATE@@
.?AV_AFX_BASE_MODULE_STATE@@
.?AVCStringArray@@
.?AUCThreadData@@
.?AV_AFX_WIN_STATE@@
.?AVCWinThread@@
.?AVCWinApp@@
.?AVCProgressCtrl@@
.?AVCImageList@@
.?AVCTempImageList@@
.PAVCArchiveException@@
.?AVCArchiveException@@
.?AVCSharedFile@@
.?AV_AFX_CTL3D_THREAD@@
.?AVCMenu@@
.?AVCTempMenu@@
.?AVCDWordArray@@
.?AVCWordArray@@
.?AVCSyncObject@@
.PAVCFileException@@
.?AVCMapPtrToPtr@@
.?AVCToolTipCtrl@@
.?AV_AFX_COLOR_STATE@@
.?AVCColorDialog@@
.?AV_AFX_SOCK_STATE@@
.?AVCCriticalSection@@
.?AVCSessionMapPtrToPtr@@
.?AVCHandleMap@@
.?AVCPtrList@@
.?AVCMapStringToPtr@@
.?AVtype_info@@
resource.h
P#include "afxres.h"
PA#define _AFX_NO_SPLITTER_RESOURCES
#define _AFX_NO_OLE_RESOURCES
#define _AFX_NO_TRACKER_RESOURCES
#define _AFX_NO_PROPERTY_RESOURCES
#if !defined(AFX_RESOURCE_DLL) || defined(AFX_TARG_CHS)
#ifdef _WIN32
LANGUAGE 4, 2
#pragma code_page(936)
#endif //_WIN32
#include "l.chs\afxres.rc" // Standard components
#endif
wwwwww
wwwwww
wwwwww
wwwwww
wwwwww
wwwwww
wwwwww
wwwwww
ffffff`ffo
foffffff
offffff
ffffff`
ffffff
ffffff
fffffffh
wwwwwwwwwwwwwwwwwwwwwwww
wwwwwwwww
wwwwww
wwwwww
wwwwwwww
fffffffffffo
wwwwvf
wwwwvfo
fffffffffo
fffffffffo
fffffffffffhwww
fffffffff
wwwwwww
wwwwwwwwwwwwwwwwwwwwwwww
0R>\W[
nzzpenc
eQpenc
SbpS:g:
SbpS0R
SbpS@b
SbpS0R
kXEQ>\u
ck(WSbpS
-NbkSbpS(
SbpS\O
-NbkSbpS
ech1Y%
ech1Y%
OX[0R
ech1Y%
RSbpS\O
QX[gbL
g~b0Rdk
-N"N1Y
0dk:ghV
N*Ntepe
N*N(W%
N*N(W%
N*N(W0
N*Ncktepe
T/f&Tcknx
g~b0R
[/fS_MR
g~b1Y%
HrCg@b
O(uckHr
<?xml version="1.0" encoding="UTF-8" standalone="yes"?><assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0"><assemblyIdentity name="E.App" processorArchitecture="x86" version="5.2.0.0" type="win32"/><dependency><dependentAssembly><assemblyIdentity type="win32" name="Microsoft.Windows.Common-Controls" version="6.0.0.0" processorArchitecture="x86" publicKeyToken="6595b64144ccf1df" language="*" /></dependentAssembly></dependency></assembly>PADPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDING
GetMuR
oduluI
eHanu@
dleAu7
!This program cannot be run in DOS mode.
.rdata
.reloc
.aspack
.adata
#]Q)/=J
BefJ<Z0
2M+-'3
QWn,n#
0xIJD/
;/VDA
E2<2wz
Zh&wP}M
Wqct q!
{mo?F&
?w"^D{
hlBT7!2
VirtualAlloc
VirtualFree
VirtualProtect
u6AQVj
kernel32.dll
ExitProcess
user32.dll
MessageBoxA
wsprintfA
LOADER ERROR
The procedure entry point %s could not be located in the dynamic link library %s
The ordinal %u could not be located in the dynamic link library %s
(08@P`p
kernel32.dll
GetProcAddress
GetModuleHandleA
LoadLibraryA
msvcrt.dll
shlwapi.dll
urlmon.dll
user32.dll
advapi32.dll
shell32.dll
??2@YAPAXI@Z
PathFileExistsA
URLDownloadToFileA
wsprintfA
OpenProcessToken
SHGetSpecialFolderPathA
Jjjjjjjjj
(null)
#######
#####
;T^h<U_i=V`j>Wak?Xbl@YcmAZdnB[eoC\fpD]gq
((((( H
TEXTINCLUDE
DEFAULT_ICON
Ctrl+PageUp
Ctrl+PageDown
PageUp
PageDown
Ctrl+G
Ctrl+Home
Ctrl+End
Shift+Tab
Tab/Enter
Ctrl+N
Ctrl+D
msctls_updown32
msctls_updown32
msctls_updown32
msctls_updown32
msctls_updown32
msctls_updown32
msctls_updown32
msctls_updown32
msctls_updown32
msctls_updown32
msctls_progress32
Progress1
MS Shell Dlg
......
(*.*)
VS_VERSION_INFO
StringFileInfo
080404B0
FileVersion
1.0.0.0
FileDescription
ProductName
ProductVersion
1.0.0.0
LegalCopyright
Comments
(http://www.eyuyan.com)
VarFileInfo
Translation
Antivirus Signature
Bkav W32.FamVT.DumpModuleInfectiousNME.PE
Lionic Virus.Win32.Nimnul.n!c
tehtris Generic.Malware
ClamAV Win.Malware.Wapomi-10020301-0
CMC Clean
CAT-QuickHeal Clean
Skyhigh BehavesLike.Win32.Generic.ch
ALYac Win32.VJadtre.3
Cylance Unsafe
Zillya Virus.Nimnul.Win32.5
Sangfor Suspicious.Win32.Save.ins
K7AntiVirus Virus ( 0040f7441 )
Alibaba Trojan:Win32/Mikcer.35a
K7GW Virus ( 0040f7441 )
Cybereason malicious.faa63d
Baidu Win32.Virus.Otwycal.d
VirIT Win32.Nimnul.F
Paloalto generic.ml
Symantec W32.Wapomi.C!inf
Elastic malicious (high confidence)
ESET-NOD32 Win32/Wapomi.BA
APEX Malicious
Avast Other:Malware-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky Virus.Win32.Nimnul.f
BitDefender Win32.VJadtre.3
NANO-Antivirus Trojan.Win32.Banload.cstqaj
ViRobot Win32.Ramnit.F
MicroWorld-eScan Win32.VJadtre.3
Tencent Virus.Win32.Nimnul.ka
TACHYON Virus/W32.Ramnit.C
Sophos W32/Nimnul-A
F-Secure Malware.W32/Jadtre.B
DrWeb BackDoor.Darkshell.246
VIPRE Win32.VJadtre.3
TrendMicro PE_WAPOMI.BM
McAfeeD Real Protect-LS!D436DC7FAA63
Trapmine malicious.high.ml.score
FireEye Generic.mg.d436dc7faa63db35
Emsisoft Application.Generic (A)
SentinelOne Static AI - Malicious PE
GData Win32.Virus.Wapomi.A
Jiangmin Win32/Nimnul.f
Webroot Clean
Varist W32/PatchLoad.E
Avira W32/Jadtre.B
Antiy-AVL Virus/Win32.Nimnul.f
Kingsoft Win32.Nimnul.f.168959
Gridinsoft Trojan.Win32.Gen.bot!i
Xcitium Virus.Win32.Wali.KA@558nxg
Arcabit Win32.VJadtre.3
SUPERAntiSpyware Clean
ZoneAlarm Virus.Win32.Nimnul.f
Microsoft Virus:Win32/Mikcer.B
Google Detected
AhnLab-V3 Win32/VJadtre.Gen
Acronis suspicious
McAfee W32/Kudj
MAX malware (ai score=82)
VBA32 Virus.Nimnul.19209
Malwarebytes Generic.Malware.AI.DDS
Panda W32/Pcarrier.A
Zoner Probably Heur.ExeHeaderL
TrendMicro-HouseCall PE_WAPOMI.BM
Rising Virus.Roue!1.9E10 (CLASSIC)
Yandex Clean
Ikarus Trojan.Win32.Agent
MaxSecure Clean
Fortinet W32/CoinMiner.EC2B!tr
BitDefenderTheta AI:FileInfector.991137D00F
AVG Other:Malware-gen [Trj]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (W)
alibabacloud Virus:Win/Jadtre.A(dyn)
No IRMA results available.