Static | ZeroBOX

PE Compile Time

2024-06-17 16:52:01

PE Imphash

6484a6f708fa37c8c0be3e0080079152

PEiD Signatures

Armadillo v1.71

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00294dee 0x00295000 6.28018158
.rdata 0x00296000 0x001e1c36 0x001e2000 7.05806443568
.data 0x00478000 0x0007b60a 0x0001e000 4.8888224229
.rsrc 0x004f4000 0x00023b38 0x00024000 4.74146437287

Resources

Name Offset Size Language Sub-language File type
TEXTINCLUDE 0x004f4ff4 0x00000151 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED C source, ASCII text, with CRLF line terminators
TEXTINCLUDE 0x004f4ff4 0x00000151 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED C source, ASCII text, with CRLF line terminators
TEXTINCLUDE 0x004f4ff4 0x00000151 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED C source, ASCII text, with CRLF line terminators
RT_CURSOR 0x004f54e4 0x000000b4 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_CURSOR 0x004f54e4 0x000000b4 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_CURSOR 0x004f54e4 0x000000b4 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_CURSOR 0x004f54e4 0x000000b4 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_BITMAP 0x004f70c0 0x00000144 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_ICON 0x00514d8c 0x00000468 LANG_NEUTRAL SUBLANG_NEUTRAL GLS_BINARY_LSB_FIRST
RT_MENU 0x00515200 0x00000284 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_MENU 0x00515200 0x00000284 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_DIALOG 0x00516b38 0x0000018c LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_STRING 0x005175f0 0x00000024 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_GROUP_CURSOR 0x0051763c 0x00000022 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED Lotus unknown worksheet or configuration, revision 0x2
RT_GROUP_CURSOR 0x0051763c 0x00000022 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED Lotus unknown worksheet or configuration, revision 0x2
RT_GROUP_CURSOR 0x0051763c 0x00000022 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED Lotus unknown worksheet or configuration, revision 0x2
RT_GROUP_ICON 0x00517714 0x00000014 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_GROUP_ICON 0x00517714 0x00000014 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_GROUP_ICON 0x00517714 0x00000014 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_VERSION 0x00517728 0x00000240 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data
RT_MANIFEST 0x00517968 0x000001cd LANG_NEUTRAL SUBLANG_NEUTRAL XML 1.0 document, ASCII text, with very long lines, with no line terminators

Imports

Library RASAPI32.dll:
0x696508 RasHangUpA
Library WINMM.dll:
0x6967d8 midiStreamOut
0x6967e0 midiStreamProperty
0x6967e4 midiStreamOpen
0x6967ec waveOutOpen
0x6967f0 waveOutRestart
0x6967fc waveOutWrite
0x696800 waveOutPause
0x696804 waveOutReset
0x696808 waveOutClose
0x69680c midiStreamStop
0x696810 midiOutReset
0x696814 midiStreamClose
0x696818 midiStreamRestart
0x69681c waveOutGetNumDevs
Library WS2_32.dll:
0x696834 select
0x696838 recv
0x69683c connect
0x696840 ioctlsocket
0x696844 recvfrom
0x696848 send
0x69684c closesocket
0x696850 WSAAsyncSelect
0x696854 htons
0x696858 ntohl
0x69685c accept
0x696860 getpeername
0x696864 WSACleanup
0x696868 socket
0x69686c WSAStartup
0x696870 gethostbyname
0x696874 inet_ntoa
0x696878 inet_addr
Library KERNEL32.dll:
0x6961d0 GetSystemDirectoryA
0x6961d4 GetVersion
0x6961d8 OpenProcess
0x6961dc CreateMutexA
0x6961e0 ReleaseMutex
0x6961e4 SuspendThread
0x6961e8 GetStringTypeW
0x6961ec GetStringTypeA
0x6961f4 IsBadWritePtr
0x6961f8 VirtualAlloc
0x6961fc LCMapStringW
0x696200 LCMapStringA
0x696208 VirtualFree
0x69620c HeapCreate
0x696210 HeapDestroy
0x696218 GetStdHandle
0x69621c SetHandleCount
0x696234 GetFileType
0x696238 SetStdHandle
0x69623c GetACP
0x696240 HeapSize
0x696244 RaiseException
0x696248 GetLocalTime
0x69624c GetSystemTime
0x696250 RtlUnwind
0x696254 GetStartupInfoA
0x696258 GetOEMCP
0x69625c GetCPInfo
0x696260 GetProcessVersion
0x696264 SetErrorMode
0x696268 GetProfileIntA
0x69626c GlobalFlags
0x696270 GetCurrentThread
0x696274 GetFileTime
0x696278 TlsGetValue
0x69627c LocalReAlloc
0x696280 TlsSetValue
0x696284 TlsFree
0x696288 GlobalHandle
0x69628c TlsAlloc
0x696290 LocalAlloc
0x696294 lstrcmpA
0x696298 GlobalGetAtomNameA
0x69629c GlobalAddAtomA
0x6962a0 GlobalFindAtomA
0x6962a4 GlobalDeleteAtom
0x6962a8 lstrcmpiA
0x6962ac SetEndOfFile
0x6962b0 UnlockFile
0x6962b4 LockFile
0x6962b8 FlushFileBuffers
0x6962bc DuplicateHandle
0x6962c0 lstrcpynA
0x6962c8 FormatMessageA
0x6962cc LocalFree
0x6962d8 TerminateProcess
0x6962dc GetCurrentProcess
0x6962e0 GetFileSize
0x6962e4 SetFilePointer
0x6962ec Process32First
0x6962f0 Process32Next
0x6962f8 SetLastError
0x696300 TerminateThread
0x696304 CreateSemaphoreA
0x696308 ResumeThread
0x69630c ReleaseSemaphore
0x696318 GetProfileStringA
0x69631c WriteFile
0x696324 CreateFileA
0x696328 SetEvent
0x69632c FindResourceA
0x696330 LoadResource
0x696334 LockResource
0x696338 ReadFile
0x69633c lstrlenW
0x696340 GetModuleFileNameA
0x696344 GetCurrentThreadId
0x696348 ExitProcess
0x69634c GlobalSize
0x696350 GlobalFree
0x69635c lstrcatA
0x696360 lstrlenA
0x696364 WinExec
0x696368 lstrcpyA
0x69636c FindNextFileA
0x696370 GlobalReAlloc
0x696374 HeapFree
0x696378 HeapReAlloc
0x69637c GetProcessHeap
0x696380 HeapAlloc
0x696384 GetUserDefaultLCID
0x696388 MultiByteToWideChar
0x69638c WideCharToMultiByte
0x696390 GetFullPathNameA
0x696394 FreeLibrary
0x696398 LoadLibraryA
0x69639c GetLastError
0x6963a0 GetVersionExA
0x6963ac CreateThread
0x6963b0 CreateEventA
0x6963b4 Sleep
0x6963b8 GlobalAlloc
0x6963bc GlobalLock
0x6963c0 GlobalUnlock
0x6963c4 GetTempPathA
0x6963c8 FindFirstFileA
0x6963cc FindClose
0x6963d0 SetFileAttributesA
0x6963d4 GetFileAttributesA
0x6963d8 DeleteFileA
0x6963dc CopyFileA
0x6963e0 CreateDirectoryA
0x6963ec GetModuleHandleA
0x6963f0 GetProcAddress
0x6963f4 MulDiv
0x6963f8 GetCommandLineA
0x6963fc GetTickCount
0x696400 CreateProcessA
0x696404 WaitForSingleObject
0x696408 CloseHandle
0x69640c CompareStringA
0x696410 CompareStringW
0x696414 IsBadReadPtr
0x696418 IsBadCodePtr
0x69641c InterlockedExchange
Library USER32.dll:
0x696524 FindWindowA
0x69652c GetClassNameA
0x696530 GetDesktopWindow
0x696534 FrameRect
0x696538 GetDoubleClickTime
0x69653c GetCursor
0x696540 ClipCursor
0x696544 GrayStringA
0x696548 DrawTextA
0x69654c TabbedTextOutA
0x696550 SetWindowTextA
0x696554 LoadIconA
0x696558 TranslateMessage
0x69655c DrawFrameControl
0x696560 DrawEdge
0x696564 DrawFocusRect
0x696568 WindowFromPoint
0x69656c GetMessageA
0x696570 DispatchMessageA
0x696574 SetRectEmpty
0x696584 DrawIconEx
0x696588 CreatePopupMenu
0x69658c AppendMenuA
0x696590 ModifyMenuA
0x696594 CreateMenu
0x69659c GetDlgCtrlID
0x6965a0 GetSubMenu
0x6965a4 EnableMenuItem
0x6965a8 ClientToScreen
0x6965b0 LoadImageA
0x6965b8 ShowWindow
0x6965bc IsWindowEnabled
0x6965c4 GetKeyState
0x6965cc PostQuitMessage
0x6965d0 IsZoomed
0x6965d4 GetClassInfoA
0x6965d8 DefWindowProcA
0x6965dc GetSysColorBrush
0x6965e0 LoadStringA
0x6965e4 wvsprintfA
0x6965ec GetMenuState
0x6965f0 SetMenuItemBitmaps
0x6965f4 CheckMenuItem
0x6965f8 MoveWindow
0x6965fc IsDialogMessageA
0x696600 ScrollWindowEx
0x696604 GetDlgItem
0x696608 SendDlgItemMessageA
0x69660c MapWindowPoints
0x696610 AdjustWindowRectEx
0x696614 GetSystemMenu
0x696618 DeleteMenu
0x69661c GetMenu
0x696620 SetMenu
0x696624 PeekMessageA
0x696628 IsIconic
0x69662c SetFocus
0x696630 GetActiveWindow
0x696634 GetWindow
0x69663c SetWindowRgn
0x696640 GetMessagePos
0x696644 ScreenToClient
0x69664c CopyRect
0x696650 LoadBitmapA
0x696654 WinHelpA
0x696658 KillTimer
0x69665c SetTimer
0x696660 ReleaseCapture
0x696664 GetCapture
0x696668 SetCapture
0x69666c GetScrollRange
0x696670 SetScrollRange
0x696674 SetScrollPos
0x696678 SetRect
0x69667c InflateRect
0x696680 IntersectRect
0x696684 DestroyIcon
0x696688 PtInRect
0x69668c OffsetRect
0x696690 IsWindowVisible
0x696694 EnableWindow
0x696698 RedrawWindow
0x69669c GetWindowLongA
0x6966a0 SetWindowLongA
0x6966a4 GetSysColor
0x6966a8 SetActiveWindow
0x6966ac SetCursorPos
0x6966b0 LoadCursorA
0x6966b4 SetCursor
0x6966b8 GetDC
0x6966bc FillRect
0x6966c0 InvertRect
0x6966c4 IsRectEmpty
0x6966c8 ScrollDC
0x6966cc ReleaseDC
0x6966d0 IsChild
0x6966d4 DestroyMenu
0x6966d8 SetForegroundWindow
0x6966dc GetWindowRect
0x6966e0 EqualRect
0x6966e4 UpdateWindow
0x6966e8 ValidateRect
0x6966ec InvalidateRect
0x6966f0 GetClientRect
0x6966f4 GetFocus
0x6966f8 GetParent
0x6966fc GetTopWindow
0x696700 PostMessageA
0x696704 IsWindow
0x696708 SetParent
0x69670c DestroyCursor
0x696710 SendMessageA
0x696714 SetWindowPos
0x696718 MessageBeep
0x69671c MessageBoxA
0x696720 GetCursorPos
0x696724 GetSystemMetrics
0x69672c EmptyClipboard
0x696730 SetClipboardData
0x696734 OpenClipboard
0x696738 GetClipboardData
0x69673c CloseClipboard
0x696740 wsprintfA
0x696744 WaitForInputIdle
0x696748 GetWindowTextA
0x69674c UnregisterClassA
0x696750 GetForegroundWindow
0x696758 CharUpperA
0x69675c GetWindowDC
0x696760 BeginPaint
0x696764 EndPaint
0x696768 DestroyWindow
0x696770 EndDialog
0x696774 GetNextDlgTabItem
0x696778 GetWindowPlacement
0x696780 GetLastActivePopup
0x696784 GetMessageTime
0x696788 RemovePropA
0x69678c CallWindowProcA
0x696790 GetPropA
0x696794 UnhookWindowsHookEx
0x696798 SetPropA
0x69679c GetClassLongA
0x6967a0 CallNextHookEx
0x6967a4 SetWindowsHookExA
0x6967a8 CreateWindowExA
0x6967ac GetMenuItemID
0x6967b0 GetMenuItemCount
0x6967b4 RegisterClassA
0x6967b8 GetScrollPos
0x6967bc ShowScrollBar
0x6967c0 SetScrollInfo
0x6967c4 GetScrollInfo
0x6967c8 ScrollWindow
Library GDI32.dll:
0x69604c ExtSelectClipRgn
0x696050 EndPath
0x696054 PathToRegion
0x696058 CreateEllipticRgn
0x69605c CopyMetaFileA
0x696060 GetViewportExtEx
0x696064 CreateRoundRectRgn
0x696068 GetTextColor
0x69606c GetBkMode
0x696070 GetBkColor
0x696074 GetROP2
0x696078 GetPolyFillMode
0x696080 CreateDCA
0x696084 CreateBrushIndirect
0x696088 CreateHatchBrush
0x69608c CreateBitmap
0x696090 CreatePatternBrush
0x696094 SelectObject
0x696098 CreatePen
0x69609c PatBlt
0x6960a0 CombineRgn
0x6960a4 CreateRectRgn
0x6960a8 FillRgn
0x6960ac CreateSolidBrush
0x6960b0 CreateFontIndirectA
0x6960b4 GetStockObject
0x6960b8 GetObjectA
0x6960bc EndPage
0x6960c0 EndDoc
0x6960c4 DeleteDC
0x6960c8 StartDocA
0x6960cc StartPage
0x6960d0 BitBlt
0x6960d4 CreateCompatibleDC
0x6960d8 SetPixelV
0x6960dc Ellipse
0x6960e0 Rectangle
0x6960e4 LPtoDP
0x6960e8 DPtoLP
0x6960ec GetCurrentObject
0x6960f0 RoundRect
0x6960f4 Pie
0x6960f8 Chord
0x6960fc Arc
0x696100 Polygon
0x696108 GetDeviceCaps
0x69610c SelectPalette
0x696110 StretchBlt
0x696114 CreatePalette
0x69611c CreateDIBitmap
0x696120 DeleteObject
0x696124 SelectClipRgn
0x696128 CreatePolygonRgn
0x69612c GetClipRgn
0x696130 SetStretchBltMode
0x696138 SetBkColor
0x69613c PtVisible
0x696140 RectVisible
0x696144 TextOutA
0x696148 ExtTextOutA
0x69614c GetTextMetricsA
0x696150 Escape
0x696154 AbortDoc
0x696158 CreateFontA
0x69615c SetBrushOrgEx
0x696160 BeginPath
0x696164 GetWindowOrgEx
0x696168 GetViewportOrgEx
0x69616c GetWindowExtEx
0x696170 GetDIBits
0x696174 ExcludeClipRect
0x696178 MoveToEx
0x69617c GetStretchBltMode
0x696180 LineTo
0x696184 GetClipBox
0x696188 ScaleWindowExtEx
0x69618c SetWindowExtEx
0x696190 OffsetWindowOrgEx
0x696194 SetWindowOrgEx
0x696198 ScaleViewportExtEx
0x69619c SetViewportExtEx
0x6961a0 OffsetViewportOrgEx
0x6961a4 SetViewportOrgEx
0x6961a8 SetMapMode
0x6961ac SetTextColor
0x6961b0 SetROP2
0x6961b4 SetPolyFillMode
0x6961b8 SetBkMode
0x6961bc RestoreDC
0x6961c0 SaveDC
0x6961c4 RealizePalette
Library WINSPOOL.DRV:
0x696824 DocumentPropertiesA
0x696828 OpenPrinterA
0x69682c ClosePrinter
Library ADVAPI32.dll:
0x696000 RegCloseKey
0x696004 RegQueryValueExA
0x696008 RegOpenKeyExA
0x69600c RegSetValueExA
0x696010 RegCreateKeyA
0x696014 RegQueryValueA
0x696018 RegCreateKeyExA
Library SHELL32.dll:
0x696518 Shell_NotifyIconA
0x69651c ShellExecuteA
Library ole32.dll:
0x69689c CoTaskMemAlloc
0x6968a0 OleDuplicateData
0x6968a4 RevokeDragDrop
0x6968ac DoDragDrop
0x6968b0 OleGetClipboard
0x6968b4 OleFlushClipboard
0x6968b8 OleRun
0x6968bc CoCreateInstance
0x6968c4 CLSIDFromString
0x6968c8 OleUninitialize
0x6968cc OleInitialize
0x6968d0 OleSetClipboard
0x6968d4 CoTaskMemFree
0x6968d8 ReleaseStgMedium
0x6968dc CLSIDFromProgID
Library OLEAUT32.dll:
0x6964a8 SafeArrayGetElement
0x6964ac SysFreeString
0x6964b0 SysStringLen
0x6964b4 VarDateFromStr
0x6964b8 UnRegisterTypeLib
0x6964bc GetActiveObject
0x6964c0 LoadTypeLib
0x6964c4 LHashValOfNameSys
0x6964c8 RegisterTypeLib
0x6964cc SafeArrayPutElement
0x6964d0 SafeArrayCreate
0x6964d4 SafeArrayDestroy
0x6964d8 SysAllocString
0x6964dc VariantInit
0x6964e0 SafeArrayAccessData
0x6964e8 SafeArrayGetDim
0x6964ec SafeArrayGetLBound
0x6964f0 SafeArrayGetUBound
0x6964f4 VariantChangeType
0x6964f8 VariantClear
0x6964fc VariantCopy
0x696500 VariantCopyInd
Library ODBC32.dll:
0x696424 None
0x696428 None
0x69642c None
0x696430 None
0x696434 None
0x696438 None
0x69643c None
0x696440 None
0x696444 None
0x696448 None
0x69644c None
0x696450 None
0x696454 None
0x696458 None
0x69645c None
0x696460 None
0x696464 None
0x696468 None
0x69646c None
0x696470 None
0x696474 None
0x696478 None
0x69647c None
0x696480 None
0x696484 None
0x696488 None
0x69648c None
0x696490 None
0x696494 None
0x696498 None
0x69649c None
0x6964a0 None
Library COMCTL32.dll:
0x696020 ImageList_AddMasked
0x696024 ImageList_Draw
0x696028 None
0x69602c ImageList_Destroy
0x696030 ImageList_Create
0x696034 ImageList_Read
0x696044 ImageList_Duplicate
Library WININET.dll:
0x6967d0 InternetCloseHandle
Library comdlg32.dll:
0x696880 GetOpenFileNameA
0x696884 ChooseColorA
0x696888 ChooseFontA
0x69688c GetFileTitleA
0x696890 GetSaveFileNameA
0x696894 PrintDlgA

!This program cannot be run in DOS mode.
`.rdata
@.data
VMProtect begin
VMProtect end
?hffff
?h3333
?h3333
uRFGHt
VMProtect begin
VMProtect end
VMProtect begin
VMProtect end
VMProtect begin
VMProtect end
VMProtect begin
VMProtect end
?hffff
VMProtect begin
?hffff
VMProtect end
VMProtect begin
?hffff
?hffff
VMProtect end
VMProtect begin
?hffff
VMProtect end
VMProtect begin
VMProtect end
VMProtect begin
VMProtect end
VMProtect begin
VMProtect end
t(ENEN;
L$$_^]
T$$_^]
D$$_^]
D$0UVW
L$$_^]d
D$4SUV
L$89l$8}
D$(t,;
tkSUVW
T$0RPQ
tXOt.O
D$D9{Dt
R49{8u
L$LRPUQ
T$XVPQ
T$ RPW
L$X_^d
L$DQRf
T$$RPQ
L$0RPQ
L$8_^[d
L$<RPQ
L$(_^d
D$HRPQ
D$LRPWQ
T$0QRS
T$XPVR
t6HtHt
D$$~9+
F\_^][
L$D_^][d
L$ QRh
T$ QRh
L$$_^d
L$@^[d
D$PQRP
L$pPQR
D$hRQP
9L$x~k
L$T_^][d
L$lRVQ
D$hQRP
D$hQRP
T$pPQR
\$8UVW
L$DPQj
\$8UVW
L$DPQj
L$ _^d
W9^du-
L$ PQh
L$L_^][d
L$D_^][d
L$@RUQ
D$ j<P
L$$^][d
L$$^][d
DQWPh
L$x_^3
|$89^Hu
L$|_^][d
L$|_^][d
L$|_^][d
T$0VRPSQ
L$4_^[d
V#D$,WPQ
D$ Pj<j
D$@UPQ
T$XUSR
T$HQRP
L$x_^d
D$(SUV
T$8RWj
L$ _^][d
l$<VWj
L$(VQVj
L$(UUh
t$LUPh
o0SSSSU
D$dSUVW
D$@WPS
L$`_^][d
D$,RVh
L$TQVSh
|$XSSW
T$TQRPh
D$`QRP
D$hSUV3
D$,Pj<j
L$h_^][d
L$X_^d
t$ 90t
T$LRUj
D$89Vdu
FpHt&Ht
D$LUSWP
L$$_^][d
L$,_[3
L$,_[3
L$(WQR
QQUWSS
L$P_]^[d
T$hQRWW
t]9|$<tW
L$x_^]
L$<SQR
T$<RVW
9|$8tt
T$<WRh
T$lPRh
T$ SRh
9l$xtU9
u29l$xu,
L$XSQh
D$,SPh
T$,SRh
T$,SRh
T$,SRh
t$(SSh
t$$RVP
|$,RPQ
L$H][d
L$HSUVWP
D$XPQU
D$8VPQ
T$ SWRP
L$L_^]3
t%RSQP
XY[Z[]
~'PSQR
\$<VW3
L$4_^3
D$XQRWP
D$dQUWRP
D$0WPQ
T$$+D$4
L$L^[d
9^xu5j
L$X_^]3
h9n`u;
D$8RPj
T$DQRU
D$PRPQ
L$TSWQ
l$HQRVU
D$H_^][
\$lUV3
L$h_^]3
T$\jdSR
L$Hj&Q
;t$Xu";\$\u
L$DSVQ
L$,_^]3
L$$_^][d
L$0PQS
L$ ]_^
L$ QSR
D$TVPW
D$TRPW
WWVQRWWS
D$$QRP
T$,PQR
D$$RSSP
D$8WVRPQ
L$XRQP
l$@VW3
L$8_^][d
u"8D$yu
D$(_^][
8MThdu
~P9~Pun
t&9^$t
F(9V8tQ
F<_^][
F<_^][
N@j!hx
|$@ Wu
|$D UV
L$8^]_3
@;l$\~Z
L$X;L$
uh9^8uX
F89^8u&j
L$T_^][d
L$L_^][d
D$,;\$|
L$0PQR
PQj WUS
T$dPQR
L$l_^][d
L$8WPQR
T$DQSR
D$49D$$}
T$\;D$Xu
L$(PQR
T$,RQP
T$(PQR
L$x_^][d
L$l_^][d
L$TPQR
L$dPQRV
u+\$l
L$4SUV
L$4WPQR
D$ |2;
L$@_^][d
u._^][
L$ WPQ
T$,RQP
L$\_^][d
L$@RQj
D$@RPQj
L$T_^]d
FD uy9D$$}s
FD@ul9L$(}f
L$P_^d
L$\_^][d
;D$xt&
9D$$t+
L$D_]d
L$ ^][d
D$$QUP
L$|_^][d
L$t][d
D$$SUV
D$DURP
RVPUSQ
L$$_^][d
j VUPWQ
T$(QVURWP
VVVVVS
=WEDBu*S
=WCDBu
;0}.;u
L$ _^][d
P4;C`t;
L$$_^]3
L$,_^][d
D$$_^[
D$$_^[
L$4VQUP
L$$_^][d
L$4UQWP
L$$_^][d
T$0SUV
L$(_^][d
T$8QRP
L$(_^][d
L$8_^][d
|$LtE;
t$PPVS
L$8_^][d
T$\WVR
jBWVSSQ
D$(_^]
\$ PQV
L$$_^][d
L$H_^][d
SWVVVRPV
L$$^]d
L$D_^[d
T$DWRh
D$,QRPS
L$$RPQS
L$<_^][d
L$(RPQ
NTRPQj
L$(RPQ
T$(PQR
D$(QRP
T$DPQRW
L$<RPQW
L$T_^]
Nh;NX|
Vh;VX|
Fxt_;FTu@
Nh;NX|
P$RWPh
T$0h4%
D$0QVRP
L$$PVh
D$4RPQ
D$ PQR
=pscat
=YARGtD= BGRt
h BGRUPV
hYARGUQV
=lcmnw_tQ=tsbat-=knilt
=rtnmto
hknilUPV
htsbaUQV
=rtrpt =rncst
=capst
= baLt = ZYXt
TADIut
tkPUSV
ETLPuF
L$Xhd2
D$8QVRPU
QRVWPU
D$$SPh
3;L$4s
T$8QRU
L$Xh`[
L$Xh`0
T$Xh80
T$,SRW
T$0;t$
PPPQSG
D$ EJ;
D$4SUVW
L$$QWV
D$,Hx;@
D$(CM;
D$Hvm3
L$Lvj3
D$(FO;
L$t_^d
D$ RPUhD
L$l_^][d
L$$^[d
L$(WSR
T$0PQR
WjdjdPQh
|z;^<}uWS
L$D_^][d
L$\_^][d
It#Iu%
^l_^][
tI;Ftr
tL9~HvG;
~(9~$u
D/ VPS
L$<RWUQV
tLhh9
L$$j QV
L$(VQU
hPCCiU
L$(RPVQWU
l$,WuAS
|$ VurU
D$@QRPU
T$ PQW
Ht&HtcI
D$(SUW
=TADIt
TADIu"
hTADIV
Ht]Ht2Ht
HtfHt;Ht
t$,u%:D$<u
:L$<t;
\$$u9f;
\$@QUR
;=3333v
HtHHuz
V,_^[Y
D$ _^][
EHPWVS
u]9B uX
uR9BxuM
'9A`u"9
tq9~Dt
nd9~dt
tS9~@uN
T$LPQR
|$HPWS
L$(RPQ
T$DPVS
T$LRWS
Fdf+Fh
D$(8D*
tRHt}H
NH_^][
T$LWUQVR
L$4WQUVS
;l$ }:
|$$}$WP
\$\}-j
O(_^][
T$H} VP
T$$PRV
D$(QPW
L$,SUV
L$0SUV@W
NX9NXu
QPSWVR
T$PQRP
D$$SUV
D$(;l$
\$(UVW
D$,_^]
D$(CUSWP
9o4u'V
9t$0v8
T$,RWV
T$,RWV
T$,RWV
L$,QWV
T$,RWV
L$ RUPj
9t$Tu
T+3x%A
;D$<s!
T$,PQhx
D$0Qhl
|$ WUSV
D$$SUV
L$(SUV
N4_^]3
\$4UVWS
T$<_^]
l$8VWU
|$<WSV
D$8_^]
L$899us
L$<PQR
D$8FtdW
\$4VWh
L$8_^[d
SUVWhH
L$$_^][d
L$8_^[d
L$<^[_]d
D$ hT\
 !!!!!!!!!!!!!!!!!!!!!!!!
QUSVPR
QUSVPR
QUSVPR
\$4t|Ht@H
T$ QRP
L$(hl}
D$$h@}
T$ QhH~
j RPSW
D$ UPh
T$ URh
d$ SWR
T$ URh
L$ UQh
nd9^hu@
D$ UPh
WWWj(j(j<
L$HPQR
}?9\$0~9
L$HPQR
L$HPQR
L$h]_^[d
:;|$0}D
|$<UQVRW
L$h_^][d
L$8PQj
l$8;l$H}
L$(][_
T$,J9U
;l$T~?W
L$PUPQW
T$PPSRW
L$<_^][d
;l$(}OS
|^;\$,}&W
D$`SUV
L$8QUS
L$XQUS
T$DRQP
T$@RQP
T$@RQP
L$@_^]d
D$@PSQ
L$tQSW
D$0Pj<Q
L$$QPW
L$l_^][d
L$4Qj<R
l$(UPQ
|$(WPQ
L$p_^][d
D$ QPS
L$L_^]3
9\$,u5
D$4RPW
L$4PQW
L$4PQW
T$(WRQh
L$0WQR
L$l_^]d
L$P_^][d
L$p_^[d
L$P_^][d
L$p_^][d
;L$$~ ;L$,}
|5;D$(
/;L$$|)
L$0PPPP
L$@|-;
L$hJNI
6;|$$u
L$(SUV;
@;D$<~
T$ QWR
L$4PWQ
L$LPWQ
D$XRWP
D$`RWP
T$dQWR
L$hPWQ
T$XQWR
L$\PWQ
D$`RWP
L$x_^d
L$,_^d
D$0PQWS
L$ QPjNR
F<SSj1
L$8RUQ
L$P_^]
D$XWRVUP
T$XPQR
L$4_^][d
L$4RPQ
t$\9|$`
L$LPQR
D$<QRP
d$LPVQ
D$4uu=
D$XQRj
T$<QhL
d$,RPQ
d$$PSQ
L$ QPjNR
L$ QPjNR
D$ RPh
L$lUSVPQ
QUSVPR
QUSVPR
D$(PU3
][t2HuFj
t$\PjB
T$0u`U
V<j PR
F<j QP
T$HRj$
T$<RWP
D$ QRPW
T$ PQRW
D$(PQh
T$@SRh
\$(UVW
L$4PUQ
D$$QRWVPU
T$@QRj
L$4PQj
T$4QRj
L$(PQj
T$8QRj
L$,PQj
D$lRPj
T$<QRj
T$dQRj
D$`RPj
T$0QRj
L$|PQj
T$XQRj
D$dRPj
T$4QRj
T$\QRj
D$DSUVW
D$DRPj
T$0QRj
L$`PQj
D$<RPj
T$(QRj
L$XPQj
D$@RPj
T$,QRj
L$\PQj
;t$<}
;t$<}8
D$(SUV
|$<tM;
T$8QRj
L$,PQj
T$,QRj
L$ PQj
T$,QRj
L$ PQj
L$dPQj
D$8RPj
D$\RPj
T$XQRj
L$,PQj
D$|RPj
L$PPQj
D$XRPj
T$,QRj
L$|PQj
T$PQRj
L$DSVW
D$DRPj
T$4QRj
L$dPQj
D$8RPj
T$(QRj
L$XPQj
D$8RPj
T$(QRj
L$XPQj
d$t_^][
F$@;F(v
F$@@;F(v
8[urj]
~FPSWj
~HPSWj
9~|t13
F8f9~0
@P@t$j
8'Yt#3
PT_^[]
HHt$Ht
F-@uFj
tI9^<u
_^][YY
M KV@WP
HteHt,
ttSHt2Ht>Ht,Ht)HHt
utgHtXHt=HtRHtOHHt
QQSVWj
QQSVWd
t.;t$$t(
B 02CV
C =02CVu
VC20XC00U
PPPPPPPP
uRFGHt
YHYtLHt9
tn<%t2
HHtiHtGH
HtHHt(
HtOHt)H
HtHt&Ht
QQSUVWj
_^][YY
8t9UW
SS@SSPVSS
t#SSUP
t$$VSS
_^][YY
t/WWUPj
QQSVW3
sO;>|C;~
HHtpHHtl
tFGQPS
btHHt.
HSVHWtgHHtF
<]t_G<-uA
PPPPPPPP
PPPPPPPP
QQSVWj
>:uNFV
>:u#FV
t+Ht$Ht
HtHHt
+ttHHtd
nt2Ht#Ht
F`jBWP
F\jLSP
u$SShe
~\j<SW
Wj(_Wj
hWj@_;
Yt&hD
PQQQQQ
VWhwh
u-hPwh
PPPPhd
tvWWWWU
F,_^][
(wqt\HHtS
t>Ht Ht
QSUVWj
n0SSSSU
_SSSSU
Ph_^][Y
tD9_Pt?
Ht#HHt
@t4Ht1Ht_Ht
^$_^[]
F(_+F$^[;E
9~4u@j
9~4u:j
F0_^][
<A|2<Z
<A|@<Z
+t|HtlHt\HtCHt%
+tJHt:Ht*
P<PuWSV
VVUSVV
t$ PUSVV
PWVWWW
9n$v(W3
F$;F uA
$C;_$r
F,;F8u6
N(;N,r
F0_^][
uK9{$t?
K,+C(;C,v4
C,9{$u
9^0u/j
F09^4u*j
F49^8u&j
^,_^][
ole32.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
Winhttp.dll
ole32.dll
kernel32.dll
kernel32
SkinH_EL.dll
SkinH_EL.dll
user32
user32
kernel32
user32
kernel32.dll
ole32.dll
ole32.dll
CoInitialize
WinHttpCheckPlatform
WinHttpCrackUrl
WinHttpOpen
WinHttpSetTimeouts
WinHttpConnect
WinHttpOpenRequest
WinHttpSetCredentials
WinHttpCloseHandle
WinHttpSetOption
WinHttpAddRequestHeaders
WinHttpSendRequest
WinHttpReceiveResponse
WinHttpQueryDataAvailable
WinHttpReadData
WinHttpQueryHeaders
CoUninitialize
MultiByteToWideChar
WideCharToMultiByte
MultiByteToWideChar
lstrlenW
SkinH_AttachRes
SkinH_SetAero
OpenClipboard
GetClipboardData
GlobalSize
GlobalLock
CloseClipboard
lstrcpyn
CoInitialize
CoUninitialize
d09f2340818511d396f6aaf844c7e325
27bb20fdd3e145e4bee3db39ddd6e64c
F30A56A231354a4a81AB13B54EF21665
WORD2000
5F99C1642A2F4e03850721B4F5D7C3F8
A512548E76954B6E92C21055517615B0
707ca37322474f6ca841f0e224f4b620
0B4337DA651B4b619ACF61334A7E8B47
F86EC5989E044d42BC98C692C0B54727
EXCEL2000
F7FC1AE45C5C4758AF03EF19F18A395D
52F260023059454187AF826A3C07AF2A
window
EditBox
PicBox
DrawPanel
GroupBox
Button
CheckBox
RadioBox
ComboBox
ListBox
ProcessBar
CommonDlg
Client
ODBCDB
ComObject
Variant
ListView
WordApp
WordDocuments
ExcelApp
ExcelWorkbooks
\Config.ini
Config
\Data\UsageRecord.edb
Control Panel\International\iLZero
112.74.185.5
C10-11
C10-12
C10-12
C10-13
C11-12
C11-13
C12-14
C12-15
C12-20
C13-14
C13-14
C13-15
C13-16
C6-14
C9-11
C9-12
C9-13
C10-12
C15-19
C15-23
C18-21
ETHYLHEXYLGLYCERIN
ETHYLHEXYLGLYCERYL BEHENATE
AGKITRODON HALYS BLOMHOFFI
Hoplostethus atlanticus
ELAPHE CARINATA
SERPENTES SPP.
check||
0.0015%
0.0015%
ABCDEFGHIJKLMNOPQRSTUVWXYZ
IMPERATA CYLINDRICA MAJOR
IMPERATA CYLINDRICA MAJOR
IMPERATA CYLINDRICA MAJOR ROOT EXTRACT
PLATYCLADUS ORIENTALIS
PLATYCLADUS ORIENTALIS
PLATYCLADUS ORIENTALIS KERNEL EXTRACT
ANGELICA PUBESCENS
ANGELICA PUBESCENS
ANGELICA PUBESCENS EXTRACT
SOLANUM LYCOPERSICUM
LYCOPERSICON ESCULENTUM
LYCOPERSICON ESCULENTUM EXTRACT
SESAMUM INDICUM
SESAMUM INDICUM
SESAMUM INDICUM (SESAME) EXTRACT
CITRUS GRANDIS
CITRUS GRANDIS
CITRUS GRANDIS (GRAPEFRUIT) EXTRACT
ALLIUM TUBEROSUM
ALLIUM TUBEROSUM
ALLIUM TUBEROSUM SEED EXTRACT
LITCHI CHINENSIS
LITCHI CHINENSIS
LITCHI CHINENSIS SEED EXTRACT
CAMPSIS GRANDIFLORA
CAMPSIS GRANDIFLORA
CAMPSIS GRANDIFLORA FLOWER EXTRACT
PHRAGMITES COMMUNIS
PHRAGMITES COMMUNIS
PHRAGMITES COMMUNIS ROOT EXTRACT
AMOMUM VILLOSUM XANTHIOIDES
AMOMUM VILLOSUM XANTHIOIDES
AMOMUM VILLOSUM XANTHIOIDES FRUIT EXTRACT
CAMPSIS RADICANS
CAMPSIS RADICANS
CAMPSIS RADICANS FLOWER EXTRACT
ARTEMISIA ANNUA
ARTEMISIA ANNUA
ARTEMISIA ANNUA EXTRACT
CRATAEGUS PINNATIFIDA
CRATAEGUS PINNATIFIDA
CRATAEGUS PINNATIFIDA FRUIT EXTRACT
DIOSCOREA OPPOSITA
DIOSCOREA OPPOSITA
DIOSCOREA OPPOSITA TUBER EXTRACT
LONICERA CONFUSA
LONICERA CONFUSA
LONICERA CONFUSA FLOWER EXTRACT
POLYGONUM MULTIFLORUM
POLYGONUM MULTIFLORUM
POLYGONUM MULTIFLORUM STEM EXRACT
JASMINUM OFFICINALE GRANDIFLORUM
JASMINUM GRANDIFLORUM
JASMINUM GRANDIFLORUM EXTRACT
CYPERUS ROTUNDUS
CYPERUS ROTUNDUS
CYPERUS ROTUNDUS EXTRACT
COIX LACRYMA-JOBI MA-YUEN
COIX LACRYMA-JOBI
COIX LACRYMA-JOBI EXTRACT
RiskSubstances||
C10-12
C10-12 ALKANE/CYCLOALKANE
C13-14
C13-14 ALKANE
C13-15
C13-15 ALKANE
C15-19
C15-19 ALKANE
C15-23
C15-23 ALKANE
C18-21
C18-21 ALKANE
C9-12
C9-12 ALKANE
3-o-ETHYL ASCORBIC ACID
4-BUTYLRESORCINOL
ALPHA-ARBUTIN
PHENYLETHYL RESORCINOL
BISABOLOL
POTASSIUM METHOXYSALICYLATE
MAGNESIUM ASCORBYL PHOSPHATE
SODIUM ASCORBYL PHOSPHATE
ASCORBYL GLUCOSIDE
ASCORBYL TETRAISOPALMITATE
TRANEXAMIC ACID
KOJIC ACID
ELLAGIC ACID
TETRAHYDROMAGNOLOL
ARBUTIN
LINOLEIC ACID
NIACINAMIDE
GLYCYRRHIZA GLABRA
GLYCYRRHIZA GLABRA (LICORICE) ROOT EXTRACT
GLYCYRRHIZA URALENSIS
GLYCYRRHIZA URALENSIS (LICORICE) ROOT EXTRACT
BROUSSONETIA KAZINOKI
BROUSSONETIA KAZINOKI ROOT EXTRACT
PARFUM
TEA-LACTATE
LAURALKONIUM CHLORIDE
STEARALKONIUM CHLORIDE
ETHANOLAMINE THIOGLYCOLATE
SODIUM BENZOATE
PHENOXYISOPROPANOL
STRONTIUM PEROXIDE
SALICYLIC ACID
POTASSIUM METABISULFITE
SODIUM METABISULFITE
AMMONIUM SULFITE
SODIUM SULFITE
SODIUM BISULFITE
INORGANIC SULFITES AND HYDROGENSULFITES
BENZYL ALCOHOL
BENZOIC ACID
BENZALKONIUM CHLORIDE
BENZALKONIUM BROMIDE
ZINC PYRITHIONE
PIROCTONE OLAMINE
TITANIUM DIOXIDE
METHYLISOTHIAZOLINONE
ZINC OXIDE
BENZALKONIUM SACCHARINATE
2-PHENYLBENZIMIDAZOLE-5-SULFONIC ACID AND ITS POTASSIUM AND TRIETHANOLAMINE SALTS
(C12-C22)
5-BROMO-5-NITRO-1,3-DIOXANE
CI 10316
CI 12700
CI 15510
DAIDAI205
CI 74260
ZINC PHENOLSULFONATE
DIETHYL OXALATE
DIISOPROPYL OXALATE
IODOPROPYNYL BUTYLCARBAMATE
DIAMINOPYRIMIDINE OXIDE
GLYCERYL THIOGLYCOLATE
UREA PEROXIDE
HYDROGEN PEROXIDE
METHYLCHLOROISOTHIAZOLINONE
RESORCINOL
SODIUM SULFIDE
SELENIUM DISULPHIDE
STRONTIUM CHLORIDE
STRONTIUM CHLORIDE HEXAHYDRATE
OXYQUINOLINE SULFATE
333333
ETIDRONIC ACID
TETRAPOTASSIUM ETIDRONATE
TETRASODIUM ETIDRONATE
CALCIUM HYDROXIDE
POTASSIUM HYDROXIDE
SODIUM HYDROXIDE
THIOGLYCOLIC ACID
AMMONIUM THIOGLYCOLATE
CALCIUM THIOGLYCOLATE
POTASSIUM THIOGLYCOLATE
ISOOCTYL THIOGLYCOLATE
ALUMINUM ZIRCONIUM TRICHLOROHYDREX GLY
ALUMINUM ZIRCONIUM TETRACHLOROHYDREX GLY
ACID YELLOW 1
SODIUM CARBONATE PEROXIDE
MUSK KETONE
0.042%
EXT. YELLOW 7
ALUMINUM ZIRCONIUM PENTACHLOROHYDRATE
PIGMENT GREEN 7
LAURETH-9
QUININE AND ITS SALTS
DIMETHYLOL ETHYLENE THIOUREA
ETIDRONIC ACID AND ITS SALTS(1-HYDROXYETHYLIDENE-DI-PHOSPHONIC ACID AND ITS SALTS)
HYDROGEN PEROXIDE, AND OTHER COMPOUNDS OR MIXTURES THAT RELEASE HYDROGEN PEROXIDE, INCLUDING CARBAMIDE PEROXIDE AND ZINC PEROXIDE
OXALIC ACID, ITS ESTERS AND ALKALINE SALTS
LITHIUM HYDROXIDE
THIOGLYCOLLIC ACID AND ITS SALTS
THIOGLYCOLLIC ACID ESTERS
SILVER NITRATE
ALKALI SULFIDES
ALKALINE EARTH SULFIDES
STRONTIUM HYDROXIDE
(AlxZr(OH)yClz)
ALUMINIUM ZIRCONIUM CHLORIDE HYDROXIDE COMPLEXES;ALXZR(OH)YCLZAND THE ALUMINIUM ZIRCONIUM CHLORIDE HYDROXIDE GLYCINE COMPLEXES
SODIUM NITRITE
MUSK XYLENE
BENZYLHEMIFORMAL
333333
1-HYDROXY-4-METHYL-6(2,4,4-TRIMETHYLPENTYL)2-PYRIDO
CI 45405
ALUMINUM ZIRCONIUM OCTACHLOROHYDREX GLY
0.14%
2.5%(b)
aa810603
xiaoshan8099
success
data.result
message
to16on
--------
Content-Disposition: form-data; name="username"
Content-Disposition: form-data; name="password"
Content-Disposition: form-data; name="typeid"
Content-Disposition: form-data; name="remark"
Content-Disposition: form-data; name="softid"
Content-Disposition: form-data; name="typename"
Content-Disposition: form-data; name="angle"
Content-Disposition: form-data; name="content"
Content-Disposition: form-data; name="image"; filename="image.jpg"
Content-Type: application/octet-stream
Content-Disposition: form-data; name="title_image"; filename="title_image.jpg"
Content-Disposition: form-data; name="imageback"; filename="imageback.jpg"
Connection:Keep-Alive
Content-Type: multipart/form-data; boundary=
Cache-control:no-cache
Accept:*/*
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0)
http://api.ttshitu.com/predict
to16un
function to16on(str){
var a = [],i = 0;
for (;
i < str.length ;
) a[i] = ("00" + str.charCodeAt(i ++).toString(16)).slice(-4);
return "\\u" + a.join("\\u");
function to16un(str) {
return unescape(str.replace(/\\/g, "%"));
function to10on(str){
var a = [], i = 0;
for (;
i < str.length ;
) a[i] = str.charCodeAt(i ++);
return "&#" + a.join(";&#") + ";";
function to10un(str){
return str.replace(/&#(x)?([^&]{1,5});?/g, function (a, b, c) {
return String.fromCharCode(parseInt(c,b?16:10));
});
ScriptControl
JScript
Language
OPTIONS
DELETE
CONNECT
Cookies
User-Agent:
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
Accept:
Accept: text/html, application/xhtml+xml, */*
Accept-Encoding:
Accept-Encoding: gbk, GB2312
Accept-Language:
Accept-Language: zh-cn
Content-Type:
Content-Type: application/x-www-form-urlencoded
Cache-Control:
Cache-Control: no-cache
Connection
keep-alive
Connection: keep-alive
Cookie:
Cookie:
Set-Cookie
Set-Cookie:
Location:
<meta.+?charset=[^\w]?([-\w]+)
gb2312
Adodb.Stream
Position
Charset
ReadText
WinHttp
WinHttp
WinHttp
WinHttp
=deleted
===========================================================================================================
IdentifyCompon||
Interior
Purpose||
===========================================================================================================
ReadINCI||
Account
login||
a@return
\Data\
register
ServiceCode
Version
!This program cannot be run in DOS mode.
`.rdata
@.data
D$$~9+
F\_^][
L$$_^d
L$@^[d
D$PQRP
L$pPQR
D$hRQP
9L$x~k
L$T_^][d
L$lRVQ
D$hQRP
D$hQRP
T$pPQR
\$8UVW
L$DPQj
\$8UVW
L$DPQj
L$ _^d
W9^du-
L$ PQh
L$L_^][d
L$D_^][d
L$@RUQ
L$|_^][d
L$|_^][d
L$|_^][d
T$0VRPSQ
L$4_^[d
V#D$,WPQ
D$@UPQ
T$XUSR
T$HQRP
L$x_^d
D$(SUV
T$8RWj
L$ _^][d
l$<VWj
L$(VQVj
L$(UUh
t$LUPh
o0SSSSU
D$dSUVW
D$@WPS
L$`_^][d
D$,RVh
L$TQVSh
|$XSSW
T$TQRPh
D$`QRP
D$hSUV3
D$,Pj<j
L$h_^][d
L$X_^d
t$ 90t
D$(hKK
T$LRUj
D$89Vdu
FpHt&Ht
D$LUSWP
L$$_^][d
L$,_[3
L$,_[3
L$(WQR
QQUWSS
L$P_]^[d
T$hQRWW
t]9|$<tW
L$x_^]
L$<SQR
T$<RVW
9|$8tt
T$<WRh
T$lPRh
T$ SRh
9l$xtU9
u29l$xu,
L$XSQh
D$,SPh
T$,SRh
T$,SRh
T$,SRh
t$(SSh
t$$RVP
|$,RPQ
L$H][d
L$HSUVWP
D$XPQU
D$8VPQ
T$ SWRP
L$L_^]3
t%RSQP
XY[Z[]
~'PSQR
\$<VW3
L$4_^3
D$XQRWP
D$dQUWRP
D$0WPQ
T$$+D$4
D$xPaH
L$L^[d
9^xu5j
L$X_^]3
h9n`u;
D$8RPj
T$DQRU
D$PRPQ
L$TSWQ
l$HQRVU
D$H_^][
\$lUV3
L$h_^]3
T$\jdSR
L$Hj&Q
;t$Xu";\$\u
L$DSVQ
L$,_^]3
L$$_^][d
L$0PQS
L$ ]_^
L$ QSR
D$TVPW
D$TRPW
WWVQRWWS
D$(XdH
D$ pdH
D$ ddH
D$$QRP
T$,PQR
D$$RSSP
D$8WVRPQ
L$XRQP
l$@VW3
L$8_^][d
u"8D$yu
D$(_^][
8MThdu
~P9~Pun
t&9^$t
F(9V8tQ
F<_^][
F<_^][
|$@ Wu
|$D UV
L$8^]_3
@;l$\~Z
L$X;L$
uh9^8uX
F89^8u&j
L$T_^][d
L$L_^][d
D$,;\$|
L$0PQR
PQj WUS
T$dPQR
L$l_^][d
L$8WPQR
T$DQSR
D$49D$$}
T$\;D$Xu
L$(PQR
T$,RQP
T$(PQR
L$x_^][d
L$l_^][d
L$TPQR
L$dPQRV
u+\$l
L$4SUV
L$4WPQR
D$ |2;
L$@_^][d
u._^][
L$ WPQ
T$,RQP
L$\_^][d
L$@RQj
D$@RPQj
L$T_^]d
FD uy9D$$}s
FD@ul9L$(}f
L$P_^d
L$\_^][d
;D$xt&
9D$$t+
L$D_]d
L$ ^][d
D$$QUP
L$|_^][d
L$t][d
D$$SUV
D$DURP
RVPUSQ
L$$_^][d
j VUPWQ
T$(QVURWP
L$,_^][d
D$$_^[
D$$_^[
L$4VQUP
L$$_^][d
L$4UQWP
L$$_^][d
T$0SUV
L$(_^][d
T$8QRP
L$(_^][d
L$8_^][d
|$LtE;
t$PPVS
L$8_^][d
T$\WVR
jBWVSSQ
D$(_^]
\$ PQV
L$$_^][d
L$H_^][d
SWVVVRPV
L$$^]d
L$D_^[d
T$DWRh
D$$drH
D$,QRPS
L$$RPQS
L$<_^][d
D$LdrH
L$(RPQ
NTRPQj
L$(RPQ
T$(PQR
D$(QRP
T$DPQRW
L$<RPQW
L$T_^]
Nh;NX|
Vh;VX|
Fxt_;FTu@
Nh;NX|
VWh0VK
P$RWPh
L$ h0VK
D$0QVRP
jdQh8uH
L$$PVh
D$4RPQ
D$ PQR
=pscat
=YARGtD= BGRt
h BGRUPV
hYARGUQV
=lcmnw_tQ=tsbat-=knilt
=rtnmto
hknilUPV
htsbaUQV
=rtrpt =rncst
=capst
= baLt = ZYXt
TADIut
tkPUSV
ETLPuF
D$8QVRPU
QRVWPU
D$0hvH
D$$SPh
3;L$4s
T$8QRU
L$Xh`[
T$,SRW
T$0;t$
PPPQSG
D$ EJ;
D$4SUVW
L$$QWV
D$,Hx;@
D$(CM;
D$Hvm3
L$Lvj3
D$(FO;
L$t_^d
D$ RPUhD
L$l_^][d
L$$^[d
L$(WSR
T$0PQR
WjdjdPQh
|z;^<}uWS
L$D_^][d
L$\_^][d
It#Iu%
^l_^][
tI;Ftr
tL9~HvG;
~(9~$u
D/ VPS
L$<RWUQV
L$$j QV
L$(VQU
hPCCiU
L$(RPVQWU
l$,WuAS
|$ VurU
D$@QRPU
T$ PQW
Ht&HtcI
D$(SUW
=TADIt
TADIu"
hTADIV
Ht]Ht2Ht
HtfHt;Ht
t$,u%:D$<u
:L$<t;
\$$u9f;
\$@QUR
;=3333v
HtHHuz
V,_^[Y
D$ _^][
EHPWVS
u]9B uX
uR9BxuM
'9A`u"9
tq9~Dt
nd9~dt
tS9~@uN
T$LPQR
|$HPWS
L$(RPQ
T$DPVS
T$LRWS
Fdf+Fh
D$(8D*
tRHt}H
NH_^][
T$LWUQVR
L$4WQUVS
;l$ }:
|$$}$WP
\$\}-j
O(_^][
T$H} VP
T$$PRV
D$(QPW
L$,SUV
L$0SUV@W
NX9NXu
QPSWVR
T$PQRP
D$$SUV
D$(;l$
\$(UVW
D$,_^]
D$(CUSWP
9o4u'V
9t$0v8
T$,RWV
T$,RWV
T$,RWV
L$,QWV
T$,RWV
L$ RUPj
9t$Tu
T+3x%A
;D$<s!
T$,PQh@
D$0Qh4
|$ WUSV
D$$SUV
L$(SUV
N4_^]3
BRPj+S
@PVj,S
QRWh`FJ
IQh<FJ
\$4t|Ht@H
T$8h$HJ
T$ QRP
tYhpHJ
D$(PU3
F$@;F(v
F$@@;F(v
QQSVWj
QQSVWd
t.;t$$t(
B 02CV
C =02CVu
^}%950dJ
uf9=h/M
VC20XC00U
PPPPPPPP
uRFGHt
YHYtLHt9
tn<%t2
HHtiHtGH
HtHHt(
HtOHt)H
HtHt&Ht
8t9UW
SS@SSPVSS
t#SSUP
t$$VSS
_^][YY
t/WWUPj
QQSVW3
sO;>|C;~
Y;5DdJ
HHtpHHtl
tFGQPS
HSVHWtgHHtF
<]t_G<-uA
PPPPPPPP
PPPPPPPP
QQSVWj
>:uNFV
>:u#FV
Qf9=`0M
t+Ht$Ht
HtHHt
+ttHHtd
nt2Ht#Ht
F\jLSP
u$SShe
Wj(_Wj
hWj@_;
PQQQQQ
PPPPhd
tvWWWWU
F,_^][
(wqt\HHtS
t>Ht Ht
QSUVWj
n0SSSSU
_SSSSU
Ph_^][Y
tD9_Pt?
Ht#HHt
@t4Ht1Ht_Ht
^$_^[]
F(_+F$^[;E
<A|2<Z
<A|@<Z
+tJHt:Ht*
P<PuWSV
VWtp9E
HtTHtFHt8Ht*Ht
PWVWWW
9^0u/j
F09^4u*j
F49^8u&j
^,_^][
d09f2340818511d396f6aaf844c7e325
707ca37322474f6ca841f0e224f4b620
A512548E76954B6E92C21055517615B0
F7FC1AE45C5C4758AF03EF19F18A395D
window
http://112.74.185.5/3R%E6%8A%80%E6%9C%AF.exe
4i5U6B738%9
B#C0D?EQFeG|H
E=FZGrH
QyReSOT5U
qdZRMHD@=;86421/.-+*)(''&%$$#""!! 
|?5^<@
0123456789ABCDEF
123456789
0123456789ABCDEF
Qkkbal
DDDDUUUU
00003333
""""UUUU
0@P`p
!1AQaq
"2BRbr
#3CScs
$4DTdt
%5EUeu
&6FVfv
'7GWgw
(8HXhx
)9IYiy
*:JZjz
+;K[k{
,<L\l|
-=M]m}
.>N^n~
/?O_o
deflate 1.1.3 Copyright 1995-1998 Jean-loup Gailly
BKbhTb~XBK!;
inflate 1.1.3 Copyright 1995-1998 Mark Adler
?u='@^
F%*.*f
CNotSupportedException
CMemoryException
CException
CMemFile
CTempGdiObject
CTempDC
CPalette
CBitmap
CBrush
CGdiObject
CPaintDC
CWindowDC
CClientDC
CUserException
CResourceException
CDialog
MS Sans Serif
MS Shell Dlg
CTempWnd
AfxOldWndProc423
AfxWnd42s
AfxControlBar42s
AfxMDIFrame42s
AfxFrameOrView42s
AfxOleControl42s
GetMonitorInfoA
EnumDisplayMonitors
MonitorFromPoint
MonitorFromRect
MonitorFromWindow
GetSystemMetrics
USER32
DISPLAY
commctrl_DragListMsg
Afx:%x:%x:%x:%x:%x
Afx:%x:%x
InitCommonControlsEx
COMCTL32.DLL
CPtrArray
CComboBox
CButton
CStatic
CFileDialog
CStringArray
CWinApp
PreviewPages
Settings
CTempImageList
CImageList
CProgressCtrl
CArchiveException
CSharedFile
CCmdTarget
CWinThread
CTempMenu
combobox
CDWordArray
CWordArray
CFileException
CMapPtrToPtr
CToolTipCtrl
tooltips_class32
CColorDialog
UNLINK
DELETE
CObject
System
commdlg_SetRGBColor
commdlg_help
commdlg_ColorOK
commdlg_FileNameOK
commdlg_ShareViolation
commdlg_LBSelChangedNotify
CPtrList
software
CSyncObject
CCriticalSection
CMapStringToPtr
H:mm:ss
dddd, MMMM dd, yyyy
M/d/yy
December
November
October
September
August
February
January
Saturday
Friday
Thursday
Wednesday
Tuesday
Monday
Sunday
__GLOBAL_HEAP_SELECTED
__MSVCRT_HEAP_SELECT
runtime error
TLOSS error
SING error
DOMAIN error
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
abnormal program termination
- not enough space for environment
- not enough space for arguments
- floating point not loaded
Microsoft Visual C++ Runtime Library
Runtime Error!
Program:
<program name unknown>
GAIsProcessorFeaturePresent
KERNEL32
_hypot
`h````
ppxxxx
(null)
Illegal byte sequence
Directory not empty
Function not implemented
No locks available
Filename too long
Resource deadlock avoided
Result too large
Domain error
Broken pipe
Too many links
Read-only file system
Invalid seek
No space left on device
File too large
Inappropriate I/O control operation
Too many open files
Too many open files in system
Invalid argument
Is a directory
Not a directory
No such device
Improper link
File exists
Resource device
Unknown error
Bad address
Permission denied
Not enough space
Resource temporarily unavailable
No child processes
Bad file descriptor
Exec format error
Arg list too long
No such device or address
Input/output error
Interrupted function call
No such process
No such file or directory
Operation not permitted
No error
SunMonTueWedThuFriSat
JanFebMarAprMayJunJulAugSepOctNovDec
GetLastActivePopup
GetActiveWindow
MessageBoxA
user32.dll
1#QNAN
1#SNAN
RasGetConnectStatusA
RasHangUpA
RASAPI32.dll
iphlpapi.dll
SHLWAPI.dll
MPR.dll
midiStreamRestart
midiStreamClose
midiOutReset
midiStreamStop
midiStreamOut
midiOutPrepareHeader
midiStreamProperty
midiStreamOpen
midiOutUnprepareHeader
waveOutOpen
waveOutGetNumDevs
waveOutClose
waveOutReset
waveOutPause
waveOutWrite
waveOutPrepareHeader
waveOutUnprepareHeader
WINMM.dll
WS2_32.dll
VERSION.dll
CloseHandle
WaitForSingleObject
CreateProcessA
GetTickCount
GetCommandLineA
MulDiv
GetProcAddress
GetModuleHandleA
GetVolumeInformationA
SetCurrentDirectoryA
DeleteFileA
GetFileAttributesA
FindClose
FindFirstFileA
GlobalUnlock
GlobalLock
GlobalAlloc
CreateEventA
CreateThread
WritePrivateProfileStringA
GetVersionExA
GetLastError
LoadLibraryA
FreeLibrary
GetFullPathNameA
WideCharToMultiByte
MultiByteToWideChar
HeapAlloc
GetProcessHeap
HeapReAlloc
HeapFree
GlobalReAlloc
FindNextFileA
lstrcpyA
WinExec
lstrlenA
lstrcatA
InitializeCriticalSection
DeleteCriticalSection
GlobalFree
GlobalSize
ExitProcess
GetCurrentThreadId
GetModuleFileNameA
ReadFile
LockResource
LoadResource
FindResourceA
SetEvent
CreateFileA
WaitForMultipleObjects
WriteFile
GetProfileStringA
LeaveCriticalSection
EnterCriticalSection
ReleaseSemaphore
ResumeThread
CreateSemaphoreA
FileTimeToSystemTime
GetTimeZoneInformation
SetLastError
Process32Next
Process32First
CreateToolhelp32Snapshot
SetFilePointer
GetFileSize
GetCurrentProcess
TerminateProcess
OpenProcess
GetVersion
KERNEL32.dll
WaitForInputIdle
wsprintfA
CloseClipboard
GetClipboardData
OpenClipboard
SetClipboardData
EmptyClipboard
GetSystemMetrics
GetCursorPos
MessageBoxA
SetWindowPos
SendMessageA
DestroyCursor
SetParent
IsWindow
PostMessageA
GetTopWindow
GetParent
GetFocus
GetClientRect
InvalidateRect
ValidateRect
UpdateWindow
EqualRect
GetWindowRect
SetForegroundWindow
DestroyMenu
IsChild
ReleaseDC
IsRectEmpty
FillRect
SetCursor
LoadCursorA
SetCursorPos
SetActiveWindow
GetSysColor
SetWindowLongA
GetWindowLongA
RedrawWindow
EnableWindow
IsWindowVisible
OffsetRect
PtInRect
DestroyIcon
IntersectRect
InflateRect
SetRect
SetScrollPos
SetScrollRange
GetScrollRange
SetCapture
GetCapture
ReleaseCapture
SetTimer
KillTimer
WinHelpA
LoadBitmapA
CopyRect
ChildWindowFromPointEx
ScreenToClient
GetMessagePos
SetWindowRgn
DestroyAcceleratorTable
GetWindow
GetActiveWindow
SetFocus
IsIconic
PeekMessageA
SetMenu
GetMenu
DeleteMenu
GetSystemMenu
DefWindowProcA
GetClassInfoA
IsZoomed
PostQuitMessage
CopyAcceleratorTableA
GetKeyState
TranslateAcceleratorA
IsWindowEnabled
ShowWindow
SystemParametersInfoA
LoadImageA
EnumDisplaySettingsA
ClientToScreen
EnableMenuItem
GetSubMenu
GetDlgCtrlID
CreateAcceleratorTableA
CreateMenu
ModifyMenuA
AppendMenuA
CreatePopupMenu
DrawIconEx
CreateIconFromResource
CreateIconFromResourceEx
RegisterClipboardFormatA
SetRectEmpty
DispatchMessageA
GetMessageA
WindowFromPoint
DrawFocusRect
DrawEdge
DrawFrameControl
TranslateMessage
LoadIconA
SetWindowTextA
GetDesktopWindow
GetClassNameA
GetWindowThreadProcessId
FindWindowA
GetDlgItem
GetWindowTextA
USER32.dll
GetDeviceCaps
GetTextExtentPoint32A
RoundRect
GetCurrentObject
DPtoLP
LPtoDP
Rectangle
Ellipse
CreateCompatibleDC
BitBlt
StartPage
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Generic.lwTm
Elastic malicious (high confidence)
ClamAV Win.Trojan.Flystudio-9943951-0
CMC Clean
CAT-QuickHeal Trojan.Sabsik
Skyhigh BehavesLike.Win32.Generic.rh
ALYac Gen:Variant.Zusy.418612
Cylance Unsafe
Zillya Clean
Sangfor Suspicious.Win32.Save.ins
K7AntiVirus Trojan ( 005246d51 )
Alibaba Clean
K7GW Trojan ( 005246d51 )
Cybereason malicious.719974
Baidu Clean
VirIT Clean
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
tehtris Generic.Malware
ESET-NOD32 a variant of Win32/Packed.FlyStudio.AA potentially unwanted
APEX Malicious
Avast Win32:TrojanX-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky UDS:Trojan.Win32.Bingoml.gen
BitDefender Gen:Variant.Zusy.418612
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Zusy.418612
Tencent Clean
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Clean
DrWeb Trojan.DownLoad4.14721
VIPRE Gen:Variant.Zusy.418612
TrendMicro Clean
McAfeeD Real Protect-LS!BEFA6EC71997
Trapmine malicious.moderate.ml.score
FireEye Generic.mg.befa6ec7199742af
Emsisoft Gen:Variant.Zusy.418612 (B)
SentinelOne Static AI - Malicious PE
GData Win32.Trojan.PSE.1DCLO88
Jiangmin HackTool.FlyStudio.aws
Webroot Clean
Varist W32/Agent.EW.gen!Eldorado
Avira Clean
Antiy-AVL RiskWare/Win32.FlyStudio.a
Kingsoft Win32.Trojan.Bingoml.gen
Gridinsoft Ransom.Win32.Sabsik.sa
Xcitium Worm.Win32.Dropper.RA@1qraug
Arcabit Trojan.Zusy.D66334
SUPERAntiSpyware Clean
ZoneAlarm UDS:Trojan.Win32.Bingoml.gen
Microsoft Trojan:Win32/Casdet!rfn
Google Detected
AhnLab-V3 Trojan/Win.Generic.R482514
Acronis Clean
McAfee Artemis!BEFA6EC71997
MAX malware (ai score=81)
VBA32 Trojan.Bingoml
Malwarebytes Generic.Malware.AI.DDS
Panda Clean
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H0CFI24
Rising Clean
Yandex Clean
Ikarus Trojan.Win32
MaxSecure Dropper.Dinwod.frindll
Fortinet W32/CoinMiner.PHP!tr
BitDefenderTheta Gen:NN.ZexaF.36806.@t0@aKwYA4mb
AVG Win32:TrojanX-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Trojan:Win/Zusy.Gen
No IRMA results available.