Static | ZeroBOX

PE Compile Time

2013-02-05 08:06:48

PE Imphash

a47a07f9e013e4d3faa72b51f29d500d

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00025f14 0x00026000 6.53875810995
.itext 0x00027000 0x000007d8 0x00000800 6.09899299211
.data 0x00028000 0x00000f1c 0x00001000 2.95983410429
.bss 0x00029000 0x00005ad4 0x00000000 0.0
.idata 0x0002f000 0x00001238 0x00001400 4.75271176717
.tls 0x00031000 0x0000000c 0x00000000 0.0
.rdata 0x00032000 0x00000018 0x00000200 0.205445628135
.reloc 0x00033000 0x00002d2c 0x00000000 0.0
.rsrc 0x00036000 0x00008f24 0x00009000 4.71487646803

Resources

Name Offset Size Language Sub-language File type
TYPELIB 0x000363d8 0x0000204c LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_ICON 0x0003ba74 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0003ba74 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x0003ba74 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_STRING 0x0003d4fc 0x00000294 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0003d4fc 0x00000294 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0003d4fc 0x00000294 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0003d4fc 0x00000294 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0003d4fc 0x00000294 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0003d4fc 0x00000294 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0003d4fc 0x00000294 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0003d4fc 0x00000294 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_STRING 0x0003d4fc 0x00000294 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_RCDATA 0x0003d790 0x00001432 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_GROUP_ICON 0x0003ebc4 0x00000030 LANG_NEUTRAL SUBLANG_NEUTRAL data
RT_VERSION 0x0003ebf4 0x00000330 LANG_ENGLISH SUBLANG_ENGLISH_US data

Imports

Library oleaut32.dll:
0x42f3f0 SysFreeString
0x42f3f4 SysReAllocStringLen
0x42f3f8 SysAllocStringLen
Library advapi32.dll:
0x42f400 RegQueryValueExA
0x42f404 RegOpenKeyExA
0x42f408 RegCloseKey
Library user32.dll:
0x42f410 GetKeyboardType
0x42f414 DestroyWindow
0x42f418 LoadStringA
0x42f41c MessageBoxA
0x42f420 CharNextA
Library kernel32.dll:
0x42f428 GetACP
0x42f42c Sleep
0x42f430 VirtualFree
0x42f434 VirtualAlloc
0x42f438 GetCurrentThreadId
0x42f444 VirtualQuery
0x42f448 WideCharToMultiByte
0x42f44c MultiByteToWideChar
0x42f450 lstrlenA
0x42f454 lstrcpynA
0x42f458 LoadLibraryExA
0x42f45c GetThreadLocale
0x42f460 GetStartupInfoA
0x42f464 GetProcAddress
0x42f468 GetModuleHandleA
0x42f46c GetModuleFileNameA
0x42f470 GetLocaleInfoA
0x42f474 GetCommandLineA
0x42f478 FreeLibrary
0x42f47c FindFirstFileA
0x42f480 FindClose
0x42f484 ExitProcess
0x42f488 CompareStringA
0x42f48c WriteFile
0x42f494 RtlUnwind
0x42f498 RaiseException
0x42f49c GetStdHandle
Library kernel32.dll:
0x42f4a4 TlsSetValue
0x42f4a8 TlsGetValue
0x42f4ac LocalAlloc
0x42f4b0 GetModuleHandleA
Library user32.dll:
0x42f4b8 CreateWindowExA
0x42f4bc UnregisterClassA
0x42f4c0 TranslateMessage
0x42f4c4 SetWindowLongA
0x42f4c8 SetTimer
0x42f4cc RegisterClassA
0x42f4d0 PostThreadMessageA
0x42f4d4 PeekMessageA
0x42f4d8 MessageBoxA
0x42f4dc LoadStringA
0x42f4e0 KillTimer
0x42f4e4 GetWindowLongA
0x42f4e8 GetSystemMetrics
0x42f4ec GetClassInfoA
0x42f4f0 DispatchMessageA
0x42f4f4 DestroyWindow
0x42f4f8 DefWindowProcA
0x42f4fc CharNextA
0x42f500 CharUpperBuffA
0x42f504 CharToOemA
Library version.dll:
0x42f50c VerQueryValueA
0x42f514 GetFileVersionInfoA
Library kernel32.dll:
0x42f51c WriteFile
0x42f520 WaitForSingleObject
0x42f524 VirtualQuery
0x42f528 VirtualAlloc
0x42f52c SizeofResource
0x42f530 SetFilePointer
0x42f534 SetEvent
0x42f538 SetErrorMode
0x42f53c SetEndOfFile
0x42f540 ResetEvent
0x42f544 ReadFile
0x42f548 MultiByteToWideChar
0x42f54c LockResource
0x42f550 LoadResource
0x42f554 LoadLibraryA
0x42f560 GetVersionExA
0x42f564 GetUserDefaultLCID
0x42f568 GetTickCount
0x42f56c GetThreadLocale
0x42f574 GetStdHandle
0x42f578 GetShortPathNameA
0x42f57c GetProcAddress
0x42f580 GetModuleHandleA
0x42f584 GetModuleFileNameA
0x42f588 GetLocaleInfoA
0x42f58c GetLocalTime
0x42f590 GetLastError
0x42f594 GetFullPathNameA
0x42f598 GetDiskFreeSpaceA
0x42f59c GetDateFormatA
0x42f5a0 GetCurrentThreadId
0x42f5a4 GetCPInfo
0x42f5a8 FreeResource
0x42f5b0 InterlockedExchange
0x42f5b8 FreeLibrary
0x42f5bc FormatMessageA
0x42f5c0 FindResourceA
0x42f5c4 FindFirstFileA
0x42f5c8 FindClose
0x42f5cc EnumCalendarInfoA
0x42f5d8 CreateFileA
0x42f5dc CreateEventA
0x42f5e0 CompareStringA
0x42f5e4 CloseHandle
Library advapi32.dll:
0x42f5ec RegSetValueExA
0x42f5f0 RegDeleteKeyA
0x42f5f4 RegCreateKeyExA
0x42f5f8 RegCloseKey
Library oleaut32.dll:
0x42f600 CreateErrorInfo
0x42f604 GetErrorInfo
0x42f608 SetErrorInfo
0x42f60c DispGetIDsOfNames
0x42f610 RegisterTypeLib
0x42f614 LoadTypeLibEx
0x42f618 SafeArrayGetElement
0x42f61c SafeArrayGetLBound
0x42f620 SafeArrayGetUBound
0x42f624 SysFreeString
Library ole32.dll:
0x42f62c CreateBindCtx
0x42f630 CoTaskMemFree
0x42f634 CLSIDFromProgID
0x42f638 StringFromCLSID
0x42f63c CoCreateInstance
0x42f644 CoDisconnectObject
0x42f648 CoRevokeClassObject
0x42f650 CoUninitialize
0x42f654 CoInitialize
0x42f658 IsEqualGUID
Library kernel32.dll:
0x42f660 Sleep
Library ole32.dll:
0x42f668 IsEqualGUID
Library oleaut32.dll:
0x42f670 SafeArrayPtrOfIndex
0x42f674 SafeArrayGetUBound
0x42f678 SafeArrayGetLBound
0x42f67c SafeArrayCreate
0x42f680 VariantChangeType
0x42f684 VariantCopyInd
0x42f688 VariantCopy
0x42f68c VariantClear
0x42f690 VariantInit
Library URLMON.DLL:

This program must be run under Win32
`.itext
`.data
.idata
.rdata
@.reloc
B.rsrc
Integer
string(
WideString8
Variant
OleVariant
TObject
TObject
System
IInterface
System
IDispatch
System
TInterfacedObject
FastMM Borland Edition
2004, 2005 Pierre le Riche / Professional Software Development
An unexpected memory leak has occurred.
The unexpected small block leaks are:
bytes:
Unknown
String
The sizes of unexpected leaked medium and large blocks are:
Unexpected Memory Leak
~KxI[)
SOFTWARE\Borland\Delphi\RTL
FPUMaskValue
_^[YY]
YZXtm1
ZTUWVSPRTj
YZ]_^[
tCh<b@
kernel32.dll
GetLongPathNameA
Software\Borland\Locales
Software\Borland\Delphi\Locales
_^[YY]
tagEXCEPINFO
ITypeInfo
ActiveX
ITypeLib
ActiveX
IConnectionPoint
ActiveX
Exception
EHeapException
EOutOfMemory
EInOutError
EExternal
EExternalException
EIntError
EDivByZero
ERangeError
EIntOverflow
EMathError
EInvalidOp
EZeroDivide y@
EOverflow
EUnderflow
EInvalidPointer,z@
EInvalidCast
EConvertError
EAccessViolation
EPrivilege
EStackOverflow
EControlC
EVariantError
EAssertionFailed
EAbstractError
EIntfCastError
EOSError
ESafecallException
SysUtils
SysUtils
TThreadLocalCounter
$TMultiReadExclusiveWriteSynchronizer
-{{{{1
-ffff!
-{{{{1
-ffff!
-[[[[1
-ffff!
-[[[[1
-ffff!
_^[YY]
<*t"<0r=<9w9i
INFNAN
$*@@@*$@@@$ *@@* $@@($*)@-$*@@$-*@@$*-@@(*$)@-*$@@*-$@@*$-@@-* $@-$ *@* $-@$ *-@$ -*@*- $@($ *)(* $)
_^[YY]
t%HtIHtm
$Z]_^[
QQQQQQSVW3
QQQQQSVW
_^[YY]
TErrorRec
TExceptRec
$YZ_^[
YZ]_^[
m/d/yy
mmmm d, yyyy
:mm:ss
TUnitHashArray
SysUtils
TModuleInfo
kernel32.dll
GetDiskFreeSpaceExA
(Z]_^[
YZ]_^[
oleaut32.dll
VariantChangeTypeEx
VarNeg
VarNot
VarAdd
VarSub
VarMul
VarDiv
VarIdiv
VarMod
VarAnd
VarXor
VarCmp
VarI4FromStr
VarR4FromStr
VarR8FromStr
VarDateFromStr
VarCyFromStr
VarBoolFromStr
VarBstrFromCy
VarBstrFromDate
VarBstrFromBool
TCustomVariantType
TCustomVariantType,
Variants
EVariantInvalidOpError
EVariantTypeCastError
EVariantOverflowError
EVariantInvalidArgError
EVariantBadVarTypeError
EVariantBadIndexError
EVariantArrayLockedError
EVariantArrayCreateError
EVariantNotImplError
EVariantOutOfMemoryError
EVariantUnexpectedErrorP
EVariantDispatchError
_^[YY]
QQQQSV
QQQQSV
OtOt)
FSVWUQ
Mt0MtU
Smallint
Integer
Single
Double
Currency
OleStr
Dispatch
Boolean
Variant
Unknown
Decimal
ShortInt
LongWord
String
Array
ByRef
Variants
_^[YY]
_^[YY]
EStreamError
EFileStreamError
EFCreateError
EFOpenError
EFilerError
EReadError
EWriteError
EClassNotFound
EResNotFound
EListError
EStringListError
EComponentError\aA
TThreadList
TPersistent
TPersistent
Classes
IStringsAdapter
Classes
TStrings
TStrings
Classes
TStringItem
TStringList
TStringList$dA
Classes
TStream
THandleStream
TFileStream
TCustomMemoryStream(gA
TMemoryStream
TResourceStream
TFiler
TReader
TComponentName
TComponent
TComponent
Classes
TRegGroup
TRegGroups
_^[YY]
Strings
S$_^[Y]
_^[YY]
Sd]_^[
$Z]_^[
TPropFixup
TPropIntfFixup
_^[YY]
Classes
_^[YY]
_^[YY]
QQQQQQQS
TPUtilWindow
IActiveScriptSite
activescp
IActiveScript
activescp
IActiveScriptParse
activescp
TComServerObject
TComClassManager
IServerExceptionHandler
ComObj
TComObject
TComObjectFactory
TTypedComObject
TTypedComObjectFactory
TAutoObject
TAutoObjectFactory
EOleError
EOleSysError
EOleException4
EOleRegistrationError
Apartment
Neutral
CLSID\
ThreadingModel
\Clsid
\ProgID
QQQQQSVW
CLSID\
\Version
\TypeLib
_^[YY]
%s, ClassID: %s
%s, ProgID: "%s"
ole32.dll
CoCreateInstanceEx
CoInitializeEx
CoAddRefServerProcess
CoReleaseServerProcess
CoResumeClassObjects
CoSuspendClassObjects
QQQQQQQQSV
TSimpleTimer
TSimpleTimerHandlerSV
TObjectList
TNamedItemList
TNamedItem
_^[YY]
TComServer
OLEAUT32.DLL
UnRegisterTypeLib
AUTOMATION
EMBEDDING
REGSERVER
UNREGSERVER
InprocServer32
LocalServer32
TWSHObject
TWSHObjectList
TFuncd
TFuncList
_^[YY]
TEnumerator
TTextStream
TIWSHUnnamedArguments_Class
TIWSHNamedArguments_Class
TIArguments2
TIArgumentsU
QQQQSVW
QQQQQQSVW
Usage:
Usage:
TScriptEnginep4B
TScriptEngine
scriptmain
QQQQSVW
WScript
Scripting.FileSystemObject
GetStandardStream
TIHost
_^[YY]
_^[YY]
wscript.exe
wscript.exe
TEventServerEventsBaseSink
No TypeInfo available
%s from GetTypeInfo
GetTypeInfoCount=%d (expected 0 or 1 for IDispatch)
_^[YY]
GetTypeInfoType error: %s
%s only supports sinking of method calls!
Object doesn't support IProvideClassInfo interface
Unable to connect.
TStorage
_^[YY]
_^[YY]
OLEAUT32.DLL
KERNEL32
GetLongPathNameA
RC_SCRIPT
ScriptCryptor
SCRIPT
DATASECTION
Runtime error at 00000000
0123456789ABCDEF
oleaut32.dll
SysFreeString
SysReAllocStringLen
SysAllocStringLen
advapi32.dll
RegQueryValueExA
RegOpenKeyExA
RegCloseKey
user32.dll
GetKeyboardType
DestroyWindow
LoadStringA
MessageBoxA
CharNextA
kernel32.dll
GetACP
VirtualFree
VirtualAlloc
GetCurrentThreadId
InterlockedDecrement
InterlockedIncrement
VirtualQuery
WideCharToMultiByte
MultiByteToWideChar
lstrlenA
lstrcpynA
LoadLibraryExA
GetThreadLocale
GetStartupInfoA
GetProcAddress
GetModuleHandleA
GetModuleFileNameA
GetLocaleInfoA
GetCommandLineA
FreeLibrary
FindFirstFileA
FindClose
ExitProcess
CompareStringA
WriteFile
UnhandledExceptionFilter
RtlUnwind
RaiseException
GetStdHandle
kernel32.dll
TlsSetValue
TlsGetValue
LocalAlloc
GetModuleHandleA
user32.dll
CreateWindowExA
UnregisterClassA
TranslateMessage
SetWindowLongA
SetTimer
RegisterClassA
PostThreadMessageA
PeekMessageA
MessageBoxA
LoadStringA
KillTimer
GetWindowLongA
GetSystemMetrics
GetClassInfoA
DispatchMessageA
DestroyWindow
DefWindowProcA
CharNextA
CharUpperBuffA
CharToOemA
version.dll
VerQueryValueA
GetFileVersionInfoSizeA
GetFileVersionInfoA
kernel32.dll
WriteFile
WaitForSingleObject
VirtualQuery
VirtualAlloc
SizeofResource
SetFilePointer
SetEvent
SetErrorMode
SetEndOfFile
ResetEvent
ReadFile
MultiByteToWideChar
LockResource
LoadResource
LoadLibraryA
LeaveCriticalSection
InitializeCriticalSection
GetVersionExA
GetUserDefaultLCID
GetTickCount
GetThreadLocale
GetSystemDefaultLCID
GetStdHandle
GetShortPathNameA
GetProcAddress
GetModuleHandleA
GetModuleFileNameA
GetLocaleInfoA
GetLocalTime
GetLastError
GetFullPathNameA
GetDiskFreeSpaceA
GetDateFormatA
GetCurrentThreadId
GetCPInfo
FreeResource
InterlockedIncrement
InterlockedExchange
InterlockedDecrement
FreeLibrary
FormatMessageA
FindResourceA
FindFirstFileA
FindClose
EnumCalendarInfoA
EnterCriticalSection
DeleteCriticalSection
CreateFileA
CreateEventA
CompareStringA
CloseHandle
advapi32.dll
RegSetValueExA
RegDeleteKeyA
RegCreateKeyExA
RegCloseKey
oleaut32.dll
CreateErrorInfo
GetErrorInfo
SetErrorInfo
DispGetIDsOfNames
RegisterTypeLib
LoadTypeLibEx
SafeArrayGetElement
SafeArrayGetLBound
SafeArrayGetUBound
SysFreeString
ole32.dll
CreateBindCtx
CoTaskMemFree
CLSIDFromProgID
StringFromCLSID
CoCreateInstance
CoLockObjectExternal
CoDisconnectObject
CoRevokeClassObject
CoRegisterClassObject
CoUninitialize
CoInitialize
IsEqualGUID
kernel32.dll
ole32.dll
IsEqualGUID
oleaut32.dll
SafeArrayPtrOfIndex
SafeArrayGetUBound
SafeArrayGetLBound
SafeArrayCreate
VariantChangeType
VariantCopyInd
VariantCopy
VariantClear
VariantInit
URLMON.DLL
MkParseDisplayNameEx
stdole2.tlbWWW
ZihostWWW
;IHost_WWd
tIArgumentsWW
NIArguments2W,
IWSHNamedArgumentsWW
/IWSHUnnamedArguments
ITextStreamWX
__MIDL___MIDL_itf_script_0099_0001WW
F__MIDL___MIDL_itf_ihost_0115_0004WWW
StandardStreamTypesW
gTextStreamWW
IHost_ClassWL
8bgIArguments_Class
8KaIWSHNamedArguments_Class
IWSHUnnamedArguments_ClassWW
out_Name
*ApplicationW
5out_Dispatch
FullName
out_Path
InteractiveW
>Gout_InteractiveW
o{ExitCode
ScriptNameWW
7Uout_ScriptNameWW
ScriptFullNameWW
out_ScriptFullNameWW
j}ArgumentsWWW
zout_ArgumentsWWW
VersionW
4[out_VersionW
BuildVersion
out_BuildWWW
TimeoutW
out_TimeoutW
CreateObject
KProgIDWW
PrefixWW
pArgsWWW
GetObjectWWW
'Pathname
bDisconnectObject
LObject_W
SleepWWW
ConnectObjectWWW
StdInWWW
out_ppts
aStdOutWW
,StdErrWWd
IndexWWW
out_ValueWWWd
0vCountWWW
out_CountWWWd
lengthWWd
xA_NewEnum
rout_Enum
NamedWWW
out_ppnamedW
?UnnamedW
*ShowUsageWWW
6zSwitchWW,
]ExistsWW
rout_ExistsWW
iColumnWW
AtEndOfStreamWWW
AtEndOfLineW
rgCharactersWW
ReadLine
UReadAllW
.\WriteWWW
WriteLineWWW
WriteBlankLinesW
LinesWWW
SkipLine
CloseWWW
Windows Script Host (Ver 5.6)W)
Windows Script Host Application InterfaceW%
Arguments Collection Object InterfaceW+
Named Arguments Collection Object InterfaceWWW-
Unnamed Arguments Collection Object InterfaceW
Windows Script Host Object
Arguments Collection ObjectWWW!
Named Arguments Collection ObjectW#
Unnamed Arguments Collection ObjectWWW
l`GEWW
w"x)^y
t\iB0Z
{|N~|g
m@m`Rm
<b0RhQ#
"0<l-KC
9Kn+o1
@(nWSV
3j,;Q/)
$SbJ0
PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPAD
@3A=A]AlAzA
jjjjjj
VBScript
JScript
jjjjjj
ScriptCryptor
TYPELIB
RC_SCRIPT
MAINICON
%Error: %s
Line: %d
Position: %d
This program created with Unregistered version of ScriptCryptor.
Please register your copy to remove this window.
Visit http://www.abyssmedia.com for details.
Demo Version
$Operation not allowed on sorted list
Property %s does not exist
Stream write error$Error creating system registry entry
OLE error %.8x#Object factory for class %s missing%Type information missing for class %s'Incorrect type information for class %s(Dispatch interface missing from class %s.Method '%s' not supported by automation object/Variant does not reference an automation object7Dispatch methods do not support more than 64 parameters
DAX Error
COM Server Warning
There are still active COM objects in this application. One or more clients may have references to these objects, so manually closing sthis application may cause those client application(s) to fail.
Are you sure you want to close this application?#A component named %s already exists%String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s$''%s'' is not a valid component name
Invalid property path
Invalid property value List capacity out of bounds (%d)
List count out of bounds (%d)
List index out of bounds (%d)+Out of memory while expanding memory stream
Error reading %s%s%s: %s
Stream read error
Property is read-only
Resource %s not found
%s.Seek not implemented
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
Ancestor for '%s' not found
Cannot assign a %s to a %s*Can't write to a read-only resource stream
Class %s not found%List does not allow duplicates ($0%x)
January
February
August
September
October
November
December
%s (%s, line %d)
Abstract Error?Access violation at address %p in module '%s'. %s of address %p
System Error. Code: %d.
%sA call to an OS function failed
)Variant or safe array index out of boundsVariant or safe array is lockedInvalid variant type conversion
Invalid variant operation%Invalid variant operation (%s%.8x)
%s5Could not convert variant of type (%s) into type (%s)=Overflow while converting variant of type (%s) into type (%s)
Variant overflow
Invalid argument
Invalid variant type
Operation not supported
Unexpected variant error
External exception %x
Assertion failed
Interface not supported
Exception in safecall method
Floating point underflow
Invalid pointer operation
Invalid class typecast0Access violation at address %p. %s of address %p
Access violation
Stack overflow
Control-C hit
Privileged instruction(Exception %s in module %s at %p.
Application Error1Format '%s' invalid or incompatible with argument
No argument for format '%s'"Variant method calls not supported
Write$Error creating variant or safe array!'%s' is not a valid integer value
Out of memory
I/O error %d
File not found
Invalid filename
Too many open files
File access denied
Read beyond end of file
Disk full
Invalid numeric input
Division by zero
Range check error
Integer overflow Invalid floating point operationFloating point division by zero
Floating point overflow
VS_VERSION_INFO
StringFileInfo
040904E4
CompanyName
Global Travel Service Ltd.
FileDescription
TICKET
FileVersion
2. 0. 0. 0
InternalName
TICKET.EXE
LegalCopyright
Travelport
LegalTrademarks
Galileo Uzbekistan
OriginalFilename
TICKET.EXE
ProductName
TICKET
ProductVersion
2. 0. 0. 0
Comments
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Generic.4!c
tehtris Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
ALYac Clean
Cylance Unsafe
Zillya Clean
Sangfor Clean
K7AntiVirus Trojan-Downloader ( 004d688a1 )
Alibaba Clean
K7GW Trojan-Downloader ( 004d688a1 )
Cybereason Clean
Baidu Clean
VirIT Clean
Paloalto Clean
Symantec Clean
Elastic Clean
ESET-NOD32 Clean
APEX Clean
Avast Clean
Cynet Malicious (score: 100)
Kaspersky Clean
BitDefender Trojan.GenericKD.73139288
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Trojan.GenericKD.73139288
Tencent Clean
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfeeD ti!DAF69668D44A
Trapmine Clean
FireEye Trojan.GenericKD.73139288
Emsisoft Trojan.GenericKD.73139288 (B)
SentinelOne Clean
GData Trojan.GenericKD.73139288
Jiangmin Worm.VBS.aad
Webroot Clean
Varist Clean
Avira Clean
Antiy-AVL Clean
Kingsoft malware.kb.a.901
Gridinsoft Clean
Xcitium Clean
Arcabit Clean
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Casdet!rfn
Google Detected
AhnLab-V3 Clean
Acronis Clean
McAfee Clean
MAX malware (ai score=84)
VBA32 Clean
Malwarebytes Clean
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.Generic@AI.88 (RDML:nDU0jlMfkU+e03EbYE9aGA)
Yandex Clean
Ikarus Win32.Outbreak
MaxSecure Clean
Fortinet Clean
BitDefenderTheta Clean
AVG Clean
DeepInstinct MALICIOUS
CrowdStrike Clean
alibabacloud Clean
No IRMA results available.