Static | ZeroBOX

PE Compile Time

1970-01-01 09:00:00

PE Imphash

147442e63270e287ed57d33257638324

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x000020a8 0x00002200 6.01039425946
.data 0x00004000 0x0004bcf0 0x0004be00 7.27019023387
.rdata 0x00050000 0x00000910 0x00000a00 4.45968866573
.pdata 0x00051000 0x000002b8 0x00000400 3.23119711787
.xdata 0x00052000 0x00000238 0x00000400 2.63377537785
.bss 0x00053000 0x000009d0 0x00000000 0.0
.idata 0x00054000 0x000008d8 0x00000a00 3.96674972141
.CRT 0x00055000 0x00000068 0x00000200 0.27091922826
.tls 0x00056000 0x00000010 0x00000200 0.0

Imports

Library KERNEL32.dll:
0x454224 CloseHandle
0x45422c ConnectNamedPipe
0x454234 CreateFileA
0x45423c CreateNamedPipeA
0x454244 CreateThread
0x45425c GetCurrentProcess
0x454264 GetCurrentProcessId
0x45426c GetCurrentThreadId
0x454274 GetLastError
0x45427c GetModuleHandleA
0x454284 GetProcAddress
0x45428c GetStartupInfoA
0x45429c GetTickCount
0x4542bc ReadFile
0x4542c4 RtlAddFunctionTable
0x4542cc RtlCaptureContext
0x4542dc RtlVirtualUnwind
0x4542ec Sleep
0x4542f4 TerminateProcess
0x4542fc TlsGetValue
0x45430c VirtualAlloc
0x454314 VirtualProtect
0x45431c VirtualQuery
0x454324 WriteFile
Library msvcrt.dll:
0x45433c __getmainargs
0x454344 __initenv
0x45434c __iob_func
0x454354 __lconv_init
0x45435c __set_app_type
0x454364 __setusermatherr
0x45436c _acmdln
0x454374 _amsg_exit
0x45437c _cexit
0x454384 _fmode
0x45438c _initterm
0x454394 _onexit
0x45439c abort
0x4543a4 calloc
0x4543ac exit
0x4543b4 fprintf
0x4543bc free
0x4543c4 fwrite
0x4543cc malloc
0x4543d4 memcpy
0x4543dc signal
0x4543e4 sprintf
0x4543ec strlen
0x4543f4 strncmp
0x4543fc vfprintf

!This program cannot be run in DOS mode.
P`.data
.rdata
`@.pdata
0@.xdata
0@.bss
.idata
AUATUWVSH
[^_]A\A]
[^_]A\A]
ATUWVSH
@[^_]A\
ATWVSH
X[^_A\
ATWVSH
X[^_A\
ATUWVSH
0[^_]A\
0[^_]A\
ATUWVSH
P[^_]A\
P[^_]A\
UAWAVAUATWVSH
[^_A\A]A^A_]
ATUWVSH
[^_]A\
ATWVSH
([^_A\H
tNHcA<H
tTIcB<L
tCHcA<H
tKIcA<L
tSIcK<L
X_mAXY
XNmAX6
"R5qG$
&N!n3
&ON!^3V
J!v3&i
N#F3&
&wN!~3n
jwhJ!v3v
&GN!n3^
&gB!N3f
&_N!v3V
&WB#v3>#n36
&wO!Y'O!i/O!qWO!
&WN#F3>
&WN#F3>
N#F3&Bx8
&gN#F3n
#N3f#V3^
#N3N#V3F
&oB'P'G!K
&7B!F32
-PF82C$
B#V3&k
&'N!n3>
N'Q;N!
T.)y?>
N'N3&B
&ON!v3f
&'N'N36
N#N3&!
DUV4f!
N#F3&!
N'}N!
N#JN#R
N'W'N!
&wN!v3n
&'N#N3.
&/N!E7N#F36
O!Y'O!q/O!yWO!
jw~B'B
jw"5xG
N!N3N!
&N!v3
&/N!~3FU
&N!v3
N'W/O!
N'W/G!
J'G/G!
J'G/O!
Cv>Mro><r
&GO!Y7O!q/O!
&/N!v3F
&wN!v3n
&GN!v3^
&/N!v3F
B!CJ!
&7N'N3>
&wN!n3n
jw+J!E
N'N3&B
&wN!v3n
&_N!v3V
jwl=]vN-]
jw(N'O
&GO!Y7O!q?O!y'O!
N'N3&BD4
&gJ'F3&
&/N!v3F
O!y7O!
jwC5U;k"
N'N3&B
sv$5c;
&'N!n3>
&ON!v3f
&_N!v3V
jwJJ'N3&
0N!N3F
N#JN#R
jwjN'O
jv}N'W
jv:J'G
N'N3VB8
N'N3VB
B6.Z=s
N'N36!
&?B!n3&
N'K#U
N'N3&B
N'N3&B$
&ON!v3f
J#HJ#P
N#v3.AYS=Q
&7J'F3n
&WN'N3FB<
&/B!F3f
&?N'V3F
N'N3FB(
N'N3FB\
&OJ!n36
&3N#V3.A
B#N36)
&+B!F3"C
&7N'N3F
&gJ'F3F
&3B!N36
&WN'N3FB
&7N'N3F
&'N!v3>
&wN'F3v
&'N'GoN#F3.
N'W'O!
N'O_G!
&gN'W'N'N3vB
N'N3vBp
N'WwN'O
&gN'WoN'N3vB
jwKN'W
jwbJ'G
N'N3&B
&WO!Y'O!i/O!q_O!
F.s2|VN!G
N'N3nB
J'F3VB
jwGN'N3V
Uv>J'G
jwyJ'G
G#|5qJ
8_ocWBS
N'N3&B
jw"N'W
&GN!v3^
&wN!~3n
&_N!v3V
&7N'N3&!
&GN!n3^
c|yN!F36
C!,R5cD
&'N!v3>
&wN!n3n
N'N3&B
N'N3&!
&WN!~3N
V-{wNU
G'MRJ!
N!KJ!
&'N!v3>
jvDN'N3&Bl
&oN#F36!F3v#F3.
&/N!F3v
&GN!~3^
^=huG
\.#F3&C
\^#F3&C
&GO!Y7O!i?O!q'O!y/O!
dV=nwAN)f3.
N#LN!
DWN!T/N
&wO!Y7O!q?O!y'K!a/O!
N#A/N'
N#AON'
N#AgN'
?N'V3>
N!^36#D
N'N3&!
N'N3&!
N'N3&BD
&GN!n3^
&'N!v3>
&ON!v3f
N'N3&!
N'N3&!
N'N3&!
N'N3&B
N'N3VBd
O!Y'O!qWO!
&WJ'F3>
N#F3>)f36
N#F3>!
&?N)f3&
N'N3FB
N#^3&U
U|<N'N3V
sv5N'V3&
N'N3&B
N'N3&B
&'N#F3>
B#v3&B
O!y7K!q?O!
N'N3&B }
lN'N36
N#F3.)f3&
&wO!Y'O!i/O!qWO!
N'N3&B
CIYiG$
&7J'OhN'W`G
Wu N'N3&B
N'WhN'O
&?N#v3&U
N'N3&B,v
N'N3&!
N'N3&BP
&GN!n3^
F36B<H
&wN!n3n
N'N3&!
&GN!v3^
N'N3&!
N'N3&B
I.Rk"a%
aO.Zz"a"
kO,Jz"e
J'N3&!
J'N3&!
jvZN)f3.
c!*9*s
_ez9C"
&N!~3
&N!n3
&/N!v3F
<qB#~36B
jv_N!F3&)I7
N'V3&!
N#n3.#F3&U
O!q7O!
N#F3~B
O#DO#D
&WN#~3>#F36
X3#F3.
N'N3&!
7N!6z
&ON!v3f
N'N3&B
N'N3>B@R
N'N3&B
N'N3~B
&EJ#^3N#
F3Z#F3F#N3>#V36
N'N3&BDU
&GN!n3^
N#^3&BD
N'N3F!
#n3.#^3&BL
&WN!v3N
N'N3vB
&WN#F3N
UJ.CRN
N'N3F!
N'N3^Bl
j!#^3&BL
N!U'N!
E3N!M'5x
&WN!v3N
N!U?O!
&7N!M'J'
N!U'N!MN!
&GN!~3^
V-{wN
&N!v3
w'C'~3
jv:J!N3V
&wO!Y7O!i?O!q'O!
N#v3&B
O!Y'O!q/O!yWO!
&/N!v3F
N'J7J#f3v'z7
N#JN!L
N#F3&B
&_N!v3V
N#^36#^3.
N#F3&Bp
C'CWN)
&'N)f3.
&WN#~3>
&N'V3&
#v3.mF3&
O!Y'O!q/O!yWO!
N'A]N'
N'N36!
&'N!v3>
&'N!n3>
n"VXC4
N#AN!EN#A
N#i7N#q?N#I'
&/N!v3F
J#~3fB8
N!I5x
qB#y-`
&/N!v3F
&GN!n3^
c<)~36
%N'V3n
N'N3>#F3>U
D#.8N!
-N!AL#F8
-?N!A?L#F86
WN'MNk
N#F3&U
N#C7N'
&WN!v3N
&/N!v3F
O!Y7O!q?O!
j|%N)f3&
O!y7K!q?O!
N#M?N#E'N!
N!IN)
&'N!MN!
N!MN!
G TN!
N'N3&B
&WN!~3N
N!QJ!
F"_ePJ
/N#Z7N#j?
&_N!v3V
_N'V3&
O!Y'O!i/O!
#^3&B
&'N!n3>
N#F3&B(
N'N36B
N'N36B$t
N!J7N#N3v
N!M7N'
jwnN!M7N'
N!M7N'W
N!}?N/
&'N#F3&U
B#F3n)
N!Y?N/
N!A?N!
N!E7J'N36
N!M7N'V36B
N#F3&mF3V
&+N'F3>
_N)?#6
N'N3&B
&wN!C7N'O
N#F3nB
&/N!C7N#F3F/
N'N3NUV3n)?
&SN#^3&#~3.
N'N3&B
N'N3&B
?N'V3>U
#~3.)f3&
&ON!v3f
N!M?K!
N#F3&B
N!U'N!MN!
X.!v36
F36A|_
N!M'N'F3V
B!M3J!E'N!M?
E3N!M?5x
N!M'N'F3V
!Q3N!I/N#A
!Q3N!I/N#A
!Q3N!I/N#A?
FR^eRJ
'N#F3&Bt
N#F3VU
&WN!n3N
N'N3F!
N'N3F!
N'N3FB
N!N3N!
&_N!v3V
N#^3&B
&WN!n3N
n2VXCdI
cb+~3N
N!^3f!
CVN#F3v
N'N3vB
&'N!N3>B
&_N#F3&
&'N!N3>BD
&'N!V3>
&_N!N3fB
&wN'N3vB
N!F36!
wRN!F3&
&?N!BGN#F3F
&?N!B7N#F3
&'N!F36!B7N!N3
&/N!F36!B3N!N3
&_N!F3N
N!F36!B
Fw7N!F3
&/N!F3V
&<hlF3*
&84lF36
&-glF3=
&)dlF39
&NilF3\
&JolF3X
&vtlF3d
&rGlF3`
&]tlF3M
&YjlF3I
&EilF3U
&~olF3l
&zglF3h
&filF3t
&brlF3p
&ON!N3&
ONmF36
WN#F3>
q5N)~36
&'N!F3n!BGJ'N3.
N!F3fUR7N#F36
/N)~3N
&_N!F3FUR?N)
N!F3>!B/N!N36
w-N!F36
&N#F3&
N!N3&B
&'N!F3>!B
&WN!F3F!B
&GN!F3V
N#F3.
&?N!F3
@UN#F3~
}_ekK,
^=mq5J'G
N#~3.#
jwuN'W N'O0J!
F3D#N36#V3.
N'N3nB<E
S1ZJ,B
S1RJ,B
wN'N3VB4
N'N3V!
Aaq=lwyN'N3n
jw9N!n3v'A
N'N3&B
x|UN#^3
J#n3&BH"
N#^3&B
&WN!C?N#F3N
N#G'N!
#v3.mF3&
&WN!n3N
_=B|SG!
7N!^36
N'JG!
xv\N#^3
&WJ'N3F!
N!F3NA!_
N'N3f#
N!F3fAZ_
qw3N#F3.!
0N#F36!
N#v3&U
O!q7O!y?O!
&wN#F36
&?N)f3&
#^3N)f3F
&?N)f3&
&wO!Y7O!q?K!a'O!
N!F36A-_
&ON!v3f
&/J#F36
&wN!~3n
N#F3&B
N#F3&B
&'N#F3&B
N#F3&B
jv3N!W7J'G
B#v3FB
N#F3&U
&GN!v3^
N'N36BPl
N'N36Bh
&/N!v3F
&GN!~3^
N!n3^#
J'DG)z
tGJ!.
N'N3&B4d
`#F3$U
&GN!~3^
&/N!~3F
^=iu/O!
J!O_J!GW
xv*N!F3f
/J#N3&
B'@?N'J
&?N#F3&U
&GN!~3^
N#~3&
N!N3&B
&_N!v3V
&ON!v3n
N#SN#S
^=ouyN!
/J#N3&
&'N'V3F
O!Y/O!iWO!q_O!
N#v3&U
N#v3&B
N#v3&B
&_N!v3V
/N)f3&
jb_=rw
N'V36!
&WN!v3N
#F3N#F3Z#F3VBp
jv8N!ZN/
"F3KARV
A4R=IG
N#N36!N3~
J!~3nA.[
!v3F!V3^
&oB#V3Z
x|[N#^3
#F3N#F3Z#F3VB
jv8N!ZN/
"F3KARV
A4R=IG
N#N36!N3~
J!~3nA.[
!v3F!V3^
&oB#V3Z
lF/Sjv
&WN!n3N
G 63J!F3&
uwF q
O!Y'O!iWO!
&/N!v3F
jv%N)f3>
&ON#N36
jv.N)f3>
n"LNU'
&/N!v3F
N'YN)
WK!cK!;^
&?O!D?O
N!F3&m
r7N'V3PA S
&/N'Gg
&'N#F3.
O!y7O!
N#F36Z
Uw1J'7
^=tvN!
&GJ!v3^
N'V3&!
#qN'y
ew5N!7
N!I_N/
N!IoN/
_=`p N'
&WN!v3N
RZmNZV
&KN'F3f
&GN)f3&
B!n3B'D
`#F3FB
B"(>
&'N!v3>
&'N!v3>
B"N'?*
N#~3&U
N#~3&U
"V'<AN^=uw
=lw4N!E
O!Y/O!iWO!q_O!
F"_esC
F"_esC
&'N!v3>
?K!C/N!
N#N3.A
F"AJ#9_
#~3&C+
&'N!v3>
_=rvN!
F"w/F"
N#F3&B
N'N3&B
!_w5UO
N#~3&U
N#F3&B
&?N#^3&Bx
N#N36/
N!_WN!w_N!
N#F3.!
N!N3f)
&'N!n3>
&_J'N3F
&_J'N3F
&GN!v3^
3N!^3F
_=iwxN'O
&wN!~3n
O!q7O!
c)~3~
/N)f3&
&'N!n3>
Xv=5jK
N#F3&U
&wN!v3n
Xv=5jK
N#F3&U
&wN!v3n
N#~3&)
&?N#^3&U
N!N3V)
NwIN'I
ON#F3.A
&GN!v3^
&'N!v3>
&GN!n3^
N!N36)
&wN!n3n
nRVXiJ
jvMN!N36
&?N#~3&U
_=Bp*B
hN!^3FB
&_N#~3^
O!q7O!y?O!
!OxB#o
&?B#v3&B
B wpN!
N#~3&B
DN!F3&
)N'V3&B
_N)f36
WB#F3&U
UvGB'E
&WN!n3N
c"!F3~3
N!V36#
&'J!F36
&'J!F36
#F3&)~3&
N!V36#
N!V36#
N!V36
N!V36#
&'J!F36
N#F36C_
N!V36#
&'J!F36
&'J!F36
#F3&)~3&
N!V36#
N!V36#
&'N!N3>!
&'N!N3>!
N#F3>mF3&
N!N3>!
N!V36#
#F3.!F3.k
&/N!F36
N!F36
&/N!F36
&'N!F3>
N!F36
&/N!F36
&WN!F3V!
&GN#F3&
N!N3&!
N!V3N"
N!V3N"F
N!V3N"F
&WN!F3V!
N!N3&!
N!V3N"
N!V3N"F
N!V3N"F
N'N3FB
&Q!F3
N!O_N/
N#GWN/
&?N#F3&U
N!OWB!
qB#&VN!OWNU
N!OWN/
?N'N36U
?N'N36U
&/N!v3F
&gB!v3~
R5\F.r
N'BN#F3>
d(#F3.
qv&B!F3F
&7N'?:
N#F3&U
&?N#F3&
jvmN)f3>
N!N3VBx
U}_=Qt
N'N3F#F3>#~36
&WN!v3N
&gN!~3~
&_N!n3V
&/N'F36
B'AN'N3F
&'N#~3.
&?N#~3&URW
N#~3&U
U}_=Qt
#F3>#~36
N!F3V)
J'^3f!
&?N#^3&U
#F3&BP
N!~3f/
&_N!v3V
R&mF36
T&ujY
fw!WplX
RyE%yq
z)4\6
^zn^3i)
&W=b$U
6iE!t>%a
Blt=qy
<<\0=ai
eBo9q]
Pr.j$E
NG)%EJ +X];9SP27
W)4\bCE5oJK>xQY#uXW(Vg}
^3i)W=b$L/
3E!t>2{
C1AM:L
27Q9<<\0.!K+ *F"zC
NBo9qLd4x^y#cPr.j1
wN@6zN
4~NK:vHC6~@
sF)>No
sNR.uN
sNR.z:
8:_Vp`V<
9A(o{a
"kOLWQ&
ytjD Y
'n|[H6
:bxgPX
f@Nvo1/
le@2j;
uPc{N I5J
]9@H2y)
wLm?et"
<Umn\G
WEd2nces
}2;LMA
}j/K}2
b5\g>Uc
b'%J-_l
Jjyf=0
6g7_80"<
kH@VSb
=MQ%[
MW\(1>
k(W63^
'1CZW"
qn.0a]7
#>:u#,
Q=JvhsA
%{Zbg?
_i'>=9y
_ZR#W?3wN
iXxg_i
qiSaF58
@^SkAg
8y#_1&^
k?b3V*
paFGOg
%c%c%c%c%c%c%c%c%cMSSE-%d-server
Unknown error
Argument domain error (DOMAIN)
Overflow range error (OVERFLOW)
Partial loss of significance (PLOSS)
Total loss of significance (TLOSS)
The result is too small to be represented (UNDERFLOW)
Argument singularity (SIGN)
_matherr(): %s in %s(%g, %g) (retval=%g)
Mingw-w64 runtime failure:
Address %p has no image-section
VirtualQuery failed for %d bytes at address %p
VirtualProtect failed with code 0x%x
Unknown pseudo relocation protocol version %d.
Unknown pseudo relocation bit size %d.
.pdata
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.3-win32 20200320
GCC: (GNU) 9.3-win32 20200320
GCC: (GNU) 9.3-win32 20200320
GCC: (GNU) 9.3-win32 20200320
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.3-win32 20200320
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.2-win32 20191008
GCC: (GNU) 9.3-win32 20200320
CloseHandle
ConnectNamedPipe
CreateFileA
CreateNamedPipeA
CreateThread
DeleteCriticalSection
EnterCriticalSection
GetCurrentProcess
GetCurrentProcessId
GetCurrentThreadId
GetLastError
GetModuleHandleA
GetProcAddress
GetStartupInfoA
GetSystemTimeAsFileTime
GetTickCount
InitializeCriticalSection
LeaveCriticalSection
QueryPerformanceCounter
ReadFile
RtlAddFunctionTable
RtlCaptureContext
RtlLookupFunctionEntry
RtlVirtualUnwind
SetUnhandledExceptionFilter
TerminateProcess
TlsGetValue
UnhandledExceptionFilter
VirtualAlloc
VirtualProtect
VirtualQuery
WriteFile
__C_specific_handler
__getmainargs
__initenv
__iob_func
__lconv_init
__set_app_type
__setusermatherr
_acmdln
_amsg_exit
_cexit
_fmode
_initterm
_onexit
calloc
fprintf
fwrite
malloc
memcpy
signal
sprintf
strlen
strncmp
vfprintf
KERNEL32.dll
msvcrt.dll
Antivirus Signature
Bkav W64.AIDetectMalware
Lionic Trojan.Win32.CobaltStrike.4!c
tehtris Clean
ClamAV Win.Trojan.CobaltStrike-9044898-1
CMC Clean
CAT-QuickHeal Clean
Skyhigh BehavesLike.Win64.Backdoor.fc
ALYac Gen:Variant.Tedy.458603
Cylance Unsafe
Zillya Clean
Sangfor Trojan.Win32.CobaltStrike
K7AntiVirus Trojan ( 0058fadf1 )
Alibaba Backdoor:Win64/Cometer.367cee40
K7GW Trojan ( 0058fadf1 )
Cybereason malicious.a3f1aa
Baidu Clean
VirIT Trojan.Win64.CobalStrike
Paloalto generic.ml
Symantec Backdoor.Cobalt
Elastic Windows.Trojan.CobaltStrike
ESET-NOD32 a variant of Win64/CobaltStrike.Artifact.A
APEX Malicious
Avast Win64:Evo-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.Cometer.gen
BitDefender Gen:Variant.Tedy.458603
NANO-Antivirus Clean
ViRobot Trojan.Win.Z.Cobaltstrike.328704.GK
MicroWorld-eScan Gen:Variant.Tedy.458603
Tencent Trojan.Win64.Cobalstrike.ya
TACHYON Trojan/W64.CobaltStrike.328704
Sophos ATK/Cobalt-A
F-Secure Heuristic.HEUR/AGEN.1344321
DrWeb BackDoor.Meterpreter.157
VIPRE Gen:Variant.Tedy.458603
TrendMicro Backdoor.Win64.COBEACON.SMA
McAfeeD ti!4DEF22C51FEA
Trapmine suspicious.low.ml.score
FireEye Generic.mg.64d9a7da3f1aa599
Emsisoft Gen:Variant.Tedy.458603 (B)
SentinelOne Static AI - Malicious PE
GData Gen:Variant.Tedy.458603
Jiangmin Trojan.CobaltStrike.qz
Webroot Clean
Varist W64/Cobalt.M.gen!Eldorado
Avira HEUR/AGEN.1344321
Antiy-AVL Trojan/Win64.Kryptik
Kingsoft malware.kb.a.998
Gridinsoft Trojan.Win64.Kryptik.oa!s1
Xcitium Clean
Arcabit Trojan.Tedy.D6FF6B
SUPERAntiSpyware Clean
ZoneAlarm HEUR:Trojan.Win32.Cometer.gen
Microsoft Backdoor:Win64/CobaltStrike.NP!dha
Google Detected
AhnLab-V3 Backdoor/Win.COBEACON.R611870
Acronis Clean
McAfee Artemis!64D9A7DA3F1A
MAX malware (ai score=83)
VBA32 Trojan.Win64.CobaltStrike
Malwarebytes Generic.Malware.AI.DDS
Panda Trj/GdSda.A
Zoner Clean
TrendMicro-HouseCall Backdoor.Win64.COBEACON.SMA
Rising Backdoor.CobaltStrike/x64!1.E382 (CLASSIC)
Yandex Clean
Ikarus Trojan.Win64.Cobaltstrike
MaxSecure Trojan.Malware.300983.susgen
Fortinet W64/Kryptik.BVR!tr
BitDefenderTheta Clean
AVG Win64:Evo-gen [Trj]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (D)
alibabacloud Backdoor:Win/CobaltStrike.B
No IRMA results available.