Static | ZeroBOX

PE Compile Time

1970-01-01 09:00:00

PE Imphash

f0ea7b7844bbc5bfa9bb32efdcea957c

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x003cc49b 0x003cc600 6.10098507854
.rdata 0x003ce000 0x006c42d0 0x006c4400 5.90093521483
.data 0x00a93000 0x000a5c70 0x0003f000 5.23581080618
.idata 0x00b39000 0x00000490 0x00000600 3.61557148842
.reloc 0x00b3a000 0x000143b6 0x00014400 5.43794762446
.symtab 0x00b4f000 0x00000004 0x00000200 0.0203931352361

Imports

Library kernel32.dll:
0xe93620 WriteFile
0xe93628 WriteConsoleW
0xe93638 WaitForSingleObject
0xe93640 VirtualQuery
0xe93648 VirtualFree
0xe93650 VirtualAlloc
0xe93658 TlsAlloc
0xe93660 SwitchToThread
0xe93668 SuspendThread
0xe93670 SetWaitableTimer
0xe93688 SetEvent
0xe93690 SetErrorMode
0xe936a0 ResumeThread
0xe936b0 LoadLibraryA
0xe936b8 LoadLibraryW
0xe936c0 SetThreadContext
0xe936c8 GetThreadContext
0xe936d0 GetSystemInfo
0xe936d8 GetSystemDirectoryA
0xe936e0 GetStdHandle
0xe936f8 GetProcAddress
0xe93708 GetConsoleMode
0xe93718 ExitProcess
0xe93720 DuplicateHandle
0xe93730 CreateThread
0xe93740 CreateFileA
0xe93748 CreateEventA
0xe93750 CloseHandle

!This program cannot be run in DOS mode.
`.rdata
@.data
.idata
.reloc
B.symtab
Go build ID: "QR1_dBMijkEFrwqztR14/K5P-1xaCvqZNjzAeLtms/9RhPy7jrKuitr59HdgIj/KkAgPRP_yku8k1gUYQYl"
8cpu.u
UUUUUUUUH!
33333333H!
t*H9HPt$
debugCal
debugCal
debugCalH9
debugCalH9
l819uq
debugCalH9
84t6H9
runtime.H9
runtime H
error: H
L9h(t
7H9S u
29t$0u
D9\$Pt
7H9S u
H9t$0u
2H9t$0u
L9\$Pt
L9\$Pt
7H9S u
L$xM9H
8H9S u
H9BpwJ@
H9P8tkH
\$(H9C8u
H9D$(t
W0H9P0tK
D$XHcL$
tE8Z t/H
\$0H9K
D$pH9H
D$0H9H
T$ H+:
UUUUUUUUH!
UUUUUUUUH
wwwwwwwwH!
wwwwwwwwH
D$$t H
J0H9J8vxL
H9{8uMf
kernel32H
l32.dll
AddDllDiH
rectory
AddVectoH
redContiH
ContinueH
Handler
LoadLibrH
raryExA
LoadLibrH
raryExW
advapi32H
i32.dll
SystemFuH
stemFuncH
tion036
ntdll.dlH
NtWaitFoH
ForSinglH
eObject
RtlGetCuH
tlGetCurH
rentPeb
RtlGetNtH
tVersionH
Numbers
winmm.dlH
timeBegiH
nPeriod
timeEndPH
dPeriod
ws2_32.dH
_32.dll
WSAGetOvH
verlappeH
dResult
wine_getH
ine_get_H
version
powrprofH
rof.dll
PowerRegH
gisterSuH
spendResH
umeNotifH
ication
GetSysteH
mTimeAsFH
ileTime
QueryPerH
formanceH
Counter
QueryPerH
formanceH
rmanceFrH
equency
runtime.
QxM9Qpu
T$@H9P
runtime.H9
reflect.H9
D$#e+H
I9N0t_H
D$PD9D$T
H9QPt#H
rpH92w
I9N0tSH
\$PH9p
memprofiH93u<
lerau3f
memprofiH
memprofiH
memprofiH
t H9APt
I9@8u3
r09q0s-f
,$L9+w
|$0H98
L$xH9A
Q8H+Q(H
H9D$@A
HcD$4f
H9D$@A
\$HH9S@
H9D$8A
runtime.H
gopau&f
runtime.H
|$PH97u*
gopau!f
runtime.H9
gopau&f
runtime.H
runtime.H
G0I9F0t9
runtime.H9
P8H9W8t
f9w2uy
O@H9H@
9GODEuaf
9GODEu(f
8noneuZ1
8crasuF
8singu
8systu
l$0M9,$u
l$PM9,$u
X0H;CPtTH
sPH91u
l$ M9,$u
l$0M9,$u
l$PM9,$u
H+t$(H
0Hc\$8H
HHc\$PH
l$8M9,$u
l$8M9,$u
l$(M9,$u
l$ M9,$u
P+8S+t
x H9{ u6H
x(H9{(uWH
Q H9S u*H
Q(H9S(u
Q18S1u
P8H9S8u*H
P@H9S@u H
PHH9SHu
PPH9SPu
H9{(uF
x09{0u>
x49{4u6H
H08K0u
S(H9P(u
P(H9S(u
P(H9S(u$H
SHH9PHu
PhH9Shu
H9L$0uQH
l$ M9,$u
D$HtDD
D$HtSD
l$ M9,$u
l$ M9,$u
l$0M9,$
l$ M9,$
J(H9B t
H9K0uZH
\$0H9S
\$0H9S
H8H9X@
P2f9S2u
S@H9P@
reflect.H9
reflect.
p8H9x@vYH
uKH9x@
P8H9H@
Z(H9F u>
\$0H9S0u!H
Q8H9S8u
Q@H9S@u
IHH9KH
l$8M9,$
l$(M9,$u
H H9K u(H
H(H9K(u
H8H9K8
T$0H)B
T$0H9J
l$ M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$
l$@M9,$u
T$09T$,w
L$`u3H
L$`u>H
l$(M9,$u
~(H9z(u&
x H9{ u
-070u!D
-07:00:0M9
-07:00:0L
-07:00:0
Januu!D
-07:00:0
-07:00:0
-07:00:0
Z070u"D
Z07:00:0M9
Z07:00:0L
-07:00:0
-07:00:0
-07:00:0
-07:00:0
2006u-H)
-07:00:0
time.DatH
time.LocL
time.LocH
ocation(H
time.UTCL
Mc$$M9
Mc$$M)
8WITAuP
x8H9{8
>..t4H9
J(H9B t
H 9K u3
H$9K$u+
H(9K(u#
H,9K,u
H09K0u
H49K4u
H 9K u
H(H9K(u
t$PHcX(
t$pHc^(H
;fileu
unixgram
unixpackf
;udp4t
;udp6ui
l$(M9,$u
l$(M9,$u
8..u[H
?fileumH
8\??\t=H
\$ 9SXu
Q\9S\u
xPH9{Pu~
xX9{Xuv
x\9{\un
x`9{`uf
xd@8{du\H
l$ M9,$u
l$0M9,$u
l$0M9,$u
H 9K u
H$9K$u
PhH9Shu
method:H
l$@M9,$u
l$@M9,$u
l$@M9,$u
l$@M9,$u
(BADINDEI
(MISSINGI
%!(BADWIL
%!(BADPRL
BADPREC)L
%!(EXTRAM
%!(NOVERM
l$ M9,$u
8n<OwG
l$ M9,$u
l$ M9,$u
l$ M9,$u
l$ M9,$u
l$ M9,$u
l$ M9,$u
l$ M9,$u
l$ M9,$u
l$ M9,$u
l$ M9,$u
l$ M9,$u
l$ M9,$u
H3T8 L3L8(I
H1T$0H
H1T$HH
H1T$PH
l$HM9,$u
o\$ fE
o\$0fE
o\$@fE
o\$PfE
o\$`fE
o\$pfE
l$HM9,$u
l$HM9,$u
l$8M9,$u
x H9{ u@H
x(H9{(u6H
:T^8rv
D$ffPH
~d$ fE
ot$PfA
S H+Q H
P H1s
l$0M9,$u
l$8M9,$u
l$(M9,$u
l$0M9,$u
l$0M9,$u
l$8M9,$u
l$(M9,$u
l$0M9,$u
l$0M9,$u
l$8M9,$u
l$(M9,$u
l$0M9,$u
L$@t_H
l*PL9jHt"L
l$@M9,$u
l$ M9,$u
x H9{ u
<Ot-<XtL
P8H9S8u
l$8M9,$u
l$8M9,$u
l$HM9,$u
l$0M9,$u
l$8M9,$u
l$8M9,$u
l$HM9,$u
l$0M9,$u
l$8M9,$u
l$8M9,$u
l$HM9,$u
l$0M9,$u
l$8M9,$u
l$8M9,$u
l$HM9,$u
l$0M9,$u
l$0M9,$u
l$8M9,$u
l$HM9,$u
l$8M9,$u
optionalH9
explicit
explicitf
optionalH
explicitH
explicit
optionalH
explicitH
generaliL9
generaliH
printabl
printablH
8numeu
8utf8u
default:L9
default:E1
8tag:A
applicat
optionalH
explicitH
generaliI
printablI
default:I
applicat
applicat
optionalH
explicitH
generaliI
printablI
default:I
applicat
omitempt
omitempt
optionalH
explicitH
optionalH
explicitH
l$8M9,$u
l$8M9,$u
l$ M9,$u
l$8M9,$
l$8M9,$
l$@M9,$u
l$8M9,$
l$@M9,$u
l$8M9,$
l$8M9,$
l$@M9,$u
H9P }]H
L$H8L$'u
L$H8L$'u
H9P }GH
L9B }ZH
L9B }[H
H9P }`H
H9P }PH
IV for EH
CDSA CTRH
9P-25uP
l$8M9,$u
l$(M9,$u
l$0M9,$
l$0M9,$u
l$@M9,$
l$@M9,$u
l$8M9,$
l$8M9,$u
l$0M9,$
l$0M9,$u
l$@M9,$
l$@M9,$u
l$ M9,$u
\$0H9S
\$0H9S
I H9K
XfffffffH
ffffffffH
l$HM9,$
l$`M9,$
T$0H9J
|$0H9w
D$(f9P(u
P*8S*u
l$8M9,$u
Proc-TypM9
Proc-TypH
Proc-TypH
JPH9BHt
8leaku
T$08J
l$0M9,$u
H9T$ t
L9L$Ht
Z(H9F t
l$@M9,$
l$@M9,$
H9P0u$H
H9P0u$H
H9P0u$H
H9P0u"H
l$8M9,$u
T$08J
D$(uMH
9windu
:andru
:windu
:planu9
:fileu7H
:bindu4H
9solauJf
myhostnaf
M9"u[fA
myhostna
:fileu
:dnuTA
:mdnsu
?filef
myhostnaM9
<$succu fA
<$unav
notfoundI94$t
tryagainM9
?retuu
:fileu
myhostna
9tcp4tY
9tcp6tQ
9udp4tG
9udp6t?
9unixt7
unixgramH9
unixpackH9
:dialu2L
unixgram
unixpackL9
8unixtD
unixgramH9
unixpackH9
<$tcu)A
l$(M9,$u
l$(M9,$u
:CNAMuh
8CNAMu.A
>tcp4t
l$0M9,$u
tpH9=l
?ipu51
?ipt9f
?tcp4t"
?tcp6t
?udp4t
?tcp4t
?udp4t
?tcp4t
?udp6u~H
\$xu H
9listu8fA
<$dial
8tcp4t
8tcp6u*
8udp4t
8udp6u
l$ M9,$u
l$ M9,$u
:uduxA
:tcp4t
:tcp6t
:udp4t
:udp6u8H
9tcp4t
9tcp6u&
9udp4t
9udp6u
:acceuNf
~NrsH)
unixgramM9/u8I
unixpackM9/u
unixgramL9
unixpack
unixgramL9
unixpack
\$(tdH
8udp4t
unixgramH9
unixpackH9
listubfA
N(H9F u_
N8H9F0u:
H9{(uu
x0@8{0uk
x1@8{1ua
@8{2uUH
x 9{ u
x$9{$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$hM9,$
l$(M9,$u
l$8M9,$u
l$0M9,$u
l$0M9,$u
l$ M9,$u
l$HM9,$
x H9{ u6H
<$tI<&tE
r8H9Z@t
rpH9Zxt
8..uGL
8//uOH
J(H9B t
x @8{ u6H
{0H9x0
{PH9xP
xY@8{Y
{xH9xx
l$8M9,$u
QZ^&A!
$D3T$4D3T$ D3T$
D3T$8D3T$$D3T$
D3T$<D3T$(D3T$
$D3T$,D3T$
D3T$0D3T$
D3T$4D3T$
D3T$8D3T$ A
D3T$<D3T$$A
T$ D3T$
$D3T$(A
T$$D3T$
D3T$,A
T$(D3T$
D3T$0A
T$,D3T$ D3T$
D3T$4A
T$0D3T$$D3T$
D3T$8A
T$4D3T$(D3T$
D3T$<A
T$8D3T$,D3T$
T$<D3T$0D3T$
$D3T$4D3T$ D3T$
D3T$8D3T$$D3T$
D3T$<D3T$(D3T$
$D3T$,D3T$
D3T$0D3T$
D3T$4D3T$
D3T$8D3T$ A
D3T$<D3T$$A
T$ D3T$
$D3T$(A
T$$D3T$
D3T$,A
T$(D3T$
D3T$0A
T$,D3T$ D3T$
D3T$4A
T$0D3T$$D3T$
D3T$8A
T$4D3T$(D3T$
D3T$<A
T$8D3T$,D3T$
T$<D3T$0D3T$
$D3T$4D3T$ D3T$
D3T$8D3T$$D3T$
D3T$<D3T$(D3T$
$D3T$,D3T$
D3T$0D3T$
D3T$4D3T$
D3T$8D3T$ A
D3T$<D3T$$A
T$ D3T$
$D3T$(A
T$$D3T$
D3T$,A
T$(D3T$
D3T$0A
T$,D3T$ D3T$
D3T$4A
T$0D3T$$D3T$
D3T$8A
T$4D3T$(D3T$
D3T$<A
T$8D3T$,D3T$
T$<D3T$0D3T$
$D3T$4D3T$ D3T$
D3T$8D3T$$D3T$
D3T$<D3T$(D3T$
$D3T$,D3T$
D3T$0D3T$
D3T$4D3T$
D3T$8D3T$ A
D3T$<D3T$$A
T$ D3T$
$D3T$(A
T$$D3T$
D3T$,A
T$(D3T$
D3T$0A
T$,D3T$ D3T$
D3T$4A
T$0D3T$$D3T$
D3T$8A
T$4D3T$(D3T$
D3T$<A
T$8D3T$,D3T$
T$<D3T$0D3T$
PXH9SXu
P`H9S`u
T$0H9P
HHH9pPuDH
WHL9GPt
D$@H9D$
|$`H9\$hu
T$0H9J
D$@H9D$
l$`M9,$
l$ M9,$u
l$8M9,$
l$0M9,$u
l$HM9,$u
HHH9P@u H
l$8M9,$u
L)@pL)
2-byD1
$2-byD
nd 3E3K
2-byE3K
te kA3K
>E3C4D
expaD3P A
expaD1
expaD3
expand 3H
2-byte kH
H#T$hH
H#T$pH
H#T$`H
H#T$hH
T$(H9J(
l$ M9,$u
fE9,$u
DOWNGRD
DOWNGRD
<LfD9x
\$huXH
H9P }TH
L9X }_H
H9P }MH
H9P }MH
L9H }eH
H9P }MH
H9P }MH
H9P }MH
H9P }VH
L9H }YH
H9P }MH
H9P }VH
L9H }eH
L9B }PH
H9P }VH
L9H }eH
L9H }eH
H9P }VH
H9P }VH
L9H }eH
L9@ }XH
L9B }PH
H9P }MH
L9X }_H
L9@ }_H
H9P }VH
H9P }MH
H9P }MH
H9P }VH
H9P }GH
H9P }VH
H9P }GH
L9@ }XH
H9P }VH
H9P }GH
H9P }MH
L9B }PH
H9P }MH
H9T$h}9H
L9@ }XH
L9B }PH
H9T$h}9H
H9P }MH
H9P }IH
H9T$h}9H
L9@ }XH
H9P }MH
H9P }MH
H9T$h}9H
L9@ }XH
L9@ }_H
L9@ }\H
L9@ }\H
L9@ }_H
L9@ }_H
L9@ }\H
L9@ }_H
H9P }MH
L9H }eH
L9H }eH
H9T$h}9H
H9P }^H
L9@ }[H
L9@ }\H
H9P }MH
L9@ }`H
H9P }MH
H9P }MH
H9T$h}9H
L9@ }XH
H9P }MH
H9T$h}9H
H9P }MH
H9T$h}9H
L9@ }\H
H9P }MH
H9P }MH
D$*tls1f
D$.3 H
H9P }`H
L9B }QH
key expaH9
master sH9
client fH9
server fH9
inisuqf
H9P }SH
H9W }VH
H9W }GH
T$0H9J
l$ M9,$u
l$`M9,$u
l$ M9,$
l$(M9,$u
x8H9{8
L)@pL)
2-byD1
$2-byD
nd 3E3K
2-byE3K
te kA3K
>E3C4D
expaD3P A
expaD1
expaD3
P0H+P(H
P0H+P(H
W0H+W(H
P0H+P(H
p(H9p0
\$@H9H
P(H9P0u?H
W0H+W(H9W
W(H9W0~)H
l$0M9,$u
l$0M9,$u
l$(M9,$u
l$(M9,$u
l$ M9,$
l$ M9,$
l$0M9,$u
l$0M9,$u
l$(M9,$u
l$(M9,$u
SSH-2.0-H
?ssh-u
aes128-c
aes128-cH9
aes192-cH9
aes128-c
aes256-cH9>u
aes128-c
aes128-c
aes128-c
aes128-cf
aes128-cH
aes128-c
aes128-c
aes192-cH9
aes256-cH9
aes128-c
aes128-cL9
aes192-cI9
aes128-c
aes256-cM9
aes128-c
aes128-c
aes128-c
aes128-c
aes128-cH
aes128-c
aes128-c
aes128-cH9
aes192-cH9
aes256-cH9
server-sL
sig-algsL
z ucD
ssh-u+f
ssh-ed25
nistp256L9
nistp384L9
nistp521f
nistp256L9
PRIVATE f
EC PRIVAH90
DSA PRIVH90uC
ATE u:f
RSA PRIVH90ub
ATE uYf
9noneu
8nonet+H
openssh-H9
ssh-ed25
nistp256L9
nistp384L9
nistp521f
l$ +X
SSH-2.0-H
ssh-userH9
autht{1
ssh-conn
ssh-connL
password
publickeL9
gssapi-wH9
D$DSSH-H
x H9{ u6H
x(H9{(uUH
\$0H9S
J H9N u
J(H9N(
l$ M9,$u
l$(M9,$
l$@M9,$
l$@M9,$u
l$hM9,$
l$@M9,$u
l$`M9,$
l$8M9,$u
l$(M9,$u
l$0M9,$
l$0M9,$u
l$@M9,$
l$@M9,$u
l$8M9,$u
l$(M9,$u
l$(M9,$
l$0M9,$u
l$@M9,$u
l$8M9,$
l$@M9,$
l$@M9,$u
l$0M9,$u
l$0M9,$u
l$XM9,$
l$XM9,$
T$0H9J
H9{ u6H
H9{ u6H
x(H9{(u
l$8M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
x(H9{(u6H
x H9{ uA
9{(u6H
T$0H9J
H0L+H(I
X0H+X(
us-asciiH9
8utf-u
text/plaH
text/pla
text/plaH
text/plaH
text/plaH
text/plaH
D$hH9N
H9H sJ
I9@ sML
l$ M9,$u
l$ M9,$u
l$ M9,$u
l$8M9,$u
l$8M9,$u
L$7D8L$j
l$HM9,$u
l$HM9,$u
XD9X4v
P09P4s
H9pxu*H
L9L$X~
l$HM9,$u
l$HM9,$u
x @8{ u6H
X0H+X(
Q0M+Q(f
l$(M9,$u
l$(M9,$u
l$0M9,$u
l$0M9,$u
:httpu
:httpuCH
:httpu
:socku
localhosH9
x @8{ u6H
l$ M9,$u
x(H9{(u_
x0@8{0uUH
9httpu&
9httpu
HTTPu3
*http2.TH9
ransportH9H
Z(H9J0t
9HEADt
8Cookf
AuthorizH9
Www-Auth
enticateH9H
8domaf
httponlyL9
samesiteL9
8noneu:H
8striu
l$8M9,$u
l$8M9,$u
H)H(H)
Z(H)Z0L
8:metu
8:schu
:authoriI98u)fA
L9T$Xu
l$ M9,$u
:httpu
>httpu
>httpu2
T$0H9BH
8Traiulf
Content-H9
Lengu;f
>chunu
8HEADA
l$ M9,$u
l$(M9,$u
l$(M9,$u
>CONNf
8CONNu
8POSTt!
8PATCuRA
8readA
L$,D9I
>CONNf
HTTP/1.0H9
HTTP/1.1
no-cacheH92
l$0M9,$u
8tcp4t
>HEAD@
>chunf
>chunu
>chunu
9CONNu
9HEADtd
9DELEu
9SEARu^f
9OPTIuFf
PROPFINDH9
l$ M9,$u
;chunu
;POSTt-
identityH9
;HEADu
8Traiukf
Content-H9
Lengu6f
>HEADugH
>HEADt'H
?HEADu
Content-
H9D$@t
>httpu*
H9D$ t
9httpu
9httpu
8GEu]A
8HEADt;
8TRACf
8OPTIu
H9D$pt
l$ M9,$u
l$ M9,$u
T$XH+T$hH
t$XH+t$hH
l$ M9,$u
>httpt
>httpuD
:httpu
H9Jxu=D
D$pI9PxtVD
>HEADt
B0L+B(M
8HTTPu
F0L+F(L9
r0H9r(u
H9JxuQD
x(H9{(u_
x0@8{0uUH
\$0H9S
l$(M9,$u
l$0M9,$u
l$PM9,$
l$(M9,$u
l$ M9,$u
l$0M9,$u
l$ M9,$u
l$(M9,$u
l$ M9,$
l$0M9,$u
l$PM9,$
l$(M9,$u
l$ M9,$u
l$0M9,$u
l$(M9,$u
l$(M9,$u
l$ M9,$u
l$0M9,$u
l$ M9,$u
l$ M9,$u
l$HM9,$u
l$hM9,$
l$HM9,$u
l$HM9,$u
l$HM9,$u
l$HM9,$u
l$ M9,$u
l$(M9,$u
l$ M9,$
l$0M9,$u
l$(M9,$u
l$ M9,$u
l$0M9,$u
l$ M9,$u
l$(M9,$u
l$ M9,$
l$0M9,$u
l$ M9,$u
l$(M9,$u
l$0M9,$u
l$ M9,$u
l$(M9,$u
l$ M9,$
l$0M9,$u
l$ M9,$u
l$(M9,$u
l$0M9,$u
l$ M9,$u
l$(M9,$u
l$ M9,$
l$0M9,$u
l$ M9,$u
l$(M9,$u
l$0M9,$u
l$HM9,$u
l$0M9,$u
l$(M9,$
l$@M9,$u
l$0M9,$
l$0M9,$u
l$(M9,$u
l$8M9,$u
l$HM9,$u
l$(M9,$u
l$8M9,$u
l$0M9,$u
l$HM9,$
l$@M9,$u
l$(M9,$u
os/execH
os/exec.H
Command(H
:writf
l$ M9,$u
l$XM9,$u
T$0H9J
kernel32
~(H9z(u&
x H9{ u
x H9{ u
H9SPu(H
PXH9SXu
P`H9S`u
H9T$pt
P0H9S0t
<gw3<et"<ft
S(H9K u
x H9{ u6H
x H9{ u6H
x H9{ u6H
Q(9S(u
{ H9x uaH
H9{0uUH
{ H9x uaH
H9{0uUH
x H9{ u6H
Z0H9F(uj
Z@H9F8uE
NPH9FHu
T$0H9JX
l$ M9,$u
l$0M9,$
l$0M9,$u
l$ M9,$u
l$0M9,$
l$0M9,$u
l$0M9,$
l$0M9,$u
l$ M9,$u
l$0M9,$
l$0M9,$u
l$(M9,$u
l$ M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$ M9,$u
l$0M9,$u
l$(M9,$u
l$(M9,$u
l$`M9,$
Unknown H
nknown sH
ubsystemH
T$(H9Jh
l$@M9,$u
l$@M9,$u
l$@M9,$u
l$@M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
\$0H9S
Q 9S u%
Q$9S$u
Q(9S(u
Q,9S,u
I0H9K0
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
\$0H9S
Q 9S u%
Q$9S$u
Q(9S(u
Q,9S,u
I0H9K0
|$Hu5H
|$Hu+H
|$Hu H
8udp4t
8udp6u
L$Hu8H
|$0H9w
O(H9G t
\$0H9S
urn:uuidH9
l$HM9,$u
~%H9P |
l$0M9,$u
l$@M9,$u
l$0M9,$u
l$@M9,$u
H9{ u-H
x(H9{(u#H
x0H9{0u
T$8H9J
t$(H9r
B0H9J8
interfacL
l$ M9,$u
T$XA82
aHM9aPuUM
]0M9X0~
P(L9H8
s(H9K0u
PXH9SXt
s`H9Kht
H9SHu7H
PPH9SPu-H
APL9AH
l$ M9,$
l$ M9,$
E9L$0vPM
E9L$0vSL
E9i0v3L
E9i0v3L
E9i0v3L
E9i0v3L
l$ M9,$u
l$ M9,$u
D$(tgI
T$0H9J
l$HM9,$
l$0M9,$u
l$0M9,$u
l$hM9,$
l$hM9,$
l$HM9,$
T$0H9J
l$ M9,$u
D$`H)H
D$(H)H
l$0H9X
t$XH)F
l$HM9,$
D$0H9t$8uc1
D$HH9L$P~
D$`H9\$hu
H9L$P~QH
f9S u!H
@(H9K0u
N(H9F up
\$0H9K0uSH
KpH9Hpu{H
HxH9KxuqH
H H9K uhH
H9K(u\H
H0H9K0uRH
H8H9K8uHH
H9K@u<H
HHH9KHu2H
HPH9KPu(H
H`H9K`u
HhH9Kh
l$(M9,$u
l$@M9,$u
l$HM9,$u
l$`M9,$u
T$0H9J
\$(H9S(u'H
Q0H9S0u
Q8H9S8u
D$8I9X(|
l$XH9C0u H
D$2331
H9D$@~`H
H9D$@~`H
H9D$ ~Vf
H9D$ ~Vf
H9D$@~`H
H9L$+u
|$htFL
FSRPAUECH
FSRPAUECH
l$0M9,$u
l$ M9,$u
l$@M9,$u
l$@M9,$u
l$@M9,$u
l$@M9,$u
l$ M9,$u
l$HM9,$
l$@M9,$
l$@M9,$
l$HM9,$
l$ M9,$u
l$pM9,$
l$hM9,$
l$hM9,$
l$xM9,$
l$8M9,$
l$8M9,$
l$8M9,$
l$HM9,$u
l$0M9,$u
l$ M9,$u
l$0M9,$u
l$ M9,$u
l$0M9,$u
l$ M9,$u
l$0M9,$u
l$ M9,$u
H 8K u
H$9K$u
H(9K(u
T$8H9QPu
\$HH9\$(
t$XH9t$8
H9\$Hu
H9\$Pu
|$`L9|$x
|$0L9|$Hu
|$8L9|$Pu
|$XL9|$@A
L9|$hu#L
L9|$pu
L9|$xA
F L+F(L)
P H+P(H)
Y H+Y(H
Q H+Q(H
L$(H9L$ u
P H+P(1
P H+P(1
l$PM9,$u
H9T$hu;H
H9T$pu&H
H9T$xu
D$hL9L$pu
H9L$X~EH
H H9K u2H
H(H9K(u(H
H8f9K8u
H<9K<u
H9P8ufH
P@H9S@u\H
PHH9SHuRH
H9SPuF
PX9SXu>
P\8S\u5H
H f9K u(H
H(H9K(u
H8H9K8
H9S u1
P(8S(u(H
H 8K u1H
H(H9K(u'
H09K0u
H8H9K8u
H9K u!
x(@8{(u
x0H9{0u
H f9K u(H
H(H9K(u
H8H9K8
P8H9S8u
P@8S@u
T$(8JP
H H9K u
H(8K(u
H)8K)u
H`H9K`
\$(H9S`uDH
QhH9Shu:H
QpH9Spu0
\$0H9K
T$(H9Jp
\$(9SHu2H
H9SPu'H
QXH9SXu
Q`H9S`u
\$08SP
PxH9Sx
l$HM9,$
l$ M9,$u
l$ M9,$u
l$(M9,$u
l$HM9,$
l$0M9,$u
l$ M9,$u
l$ M9,$u
l$0M9,$u
l$0M9,$u
t$PH95
z H+z(H)
r H+r(D
9\$`u2
\$09Shu
Pl8Slu
l$ M9,$u
~ H+~(H
l$(M9,$u
~<9~@uPH
l$ M9,$u
T$0H9B8~
T$HH9B(@
yt9~@u
t$`H93u
r8H9B@~zH
P89S|t
H9H0~=
;renot3
;cubiu#
GpD+@@E
P<9P@t
L$HH9AX
VpD+P@E
\$(+St
9H@tKH
P<9P@u
\$8H+X(H
H<9H@u?H
T$<9QDu
H H9K
H0H9K0
H9K8uvH
H@H9K@ulH
HHH9KHubH
H9KPuVH
HXH9KXuLH
H`H9K`uBH
H9Khu6H
HpH9Kpu,H
HxH9Kxu"H
H 9K uv
H(9K(ub
H,f9K,uXH
\$08Sxu$H
\$(H9S8u
Q@H9S@u
IHH9KH
r H9w u!H
QhH9Shu
IpH9Kp
\$(8S0u0H
Q8H9S8u&
Q@8S@u
QD9SDu
IHH9KH
H H9K u6H
H(H9K(u,H
H9K0u H
H8H9K8u
H@H9K@u
HHH9KH
H H9K u
H(H9K(u
H0H9K0
HpH9KpuvH
HxH9KxulH
\$(H9SHu
IPH9KP
l$HM9,$
z H+z(H
T$(H9JH
l$ M9,$u
l$ M9,$u
l$ M9,$u
Z8H9F0u
T$0H9J@
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$0M9,$u
@8w u>
r!@8w!u4H
T$09J8
T$0H9J(
|$pH+wHH
JHL9J@@
OpH9_x||H
l$ M9,$u
D$PH9T$Xu
D$8H9D$@~;H
z H+z(H)
~ H+~(H
T$`H9T$xu
H9T$pt)H
t$.@8p
H9D$hu
H9D$pu
D$XH9\$`u
D$@H9D$H~;H
z H+z(H
D$HH9|$Pt
D$0H9L$8~
X L+X(L)
|$`H9=/
|$hH9=%
t$*@8p
l$0M9,$u
H9L$`u+L
D$hL9B
D$pL9B u
H9L$(u*H
L$8H9J u
q H+q(H
H H+H(H
H 8K uV
H!8K!uM
H#8K#u7
H$8K$u.
8K%u H
H(H9K(u
H0H9K0u
H8H9K8
\$(H9S(u
Q0H9S0u
I8H9K8
p(H9S u/H
T$08J0
l$(M9,$u
tcpip-fo
l$0M9,$u
l$0M9,$u
l$0M9,$u
l$(M9,$u
:exitt^
subsyste
l$@M9,$u
l$0M9,$u
l$0M9,$u
9httpt
9rssht
9httpu
window-cH9>u
window-c
window-c
l$0M9,$u
l$0M9,$u
window-cH9>u
window-c
l$`M9,$u
l$`M9,$u
T$0H9J
258EAFA5H
AFA5-E91H
4-47DA-9H
5CA-C5ABH
0DC85B11H
websockeH9
8upgru
|$09w(
NHH9F@
|$09wP
Z`H9GXul
H9FhuB
8Sxu#H
l$(M9,$u
l$(M9,$u
l$ M9,$u
l$ M9,$u
l$0M9,$u
l$0M9,$u
l$ M9,$
l$ M9,$
l$(M9,$u
l$(M9,$u
l$(M9,$u
l$(M9,$u
l$(M9,$u
l$0M9,$u
l$(M9,$u
l$(M9,$u
l$(M9,$u
l$0M9,$u
l$0M9,$u
200 connH
ection eH
tion estH
ablishedH
tcpip-foL9
l$0M9,$u
l$@M9,$u
9trueuAH
x(H9{(uUH
crypto
errors
regexp
unsafe
*[]int
*error
*int16
*int32
*int64
*uint8
Accept
Action
Active
AddRef
AllowN
AndNot
Answer
Append
Ascend
Assert
Atomic
Attach
AvgRtt
Before
BitLen
Blocks
BytesX
CanInt
CanSet
Cancel
Check1
Check2
Chunks
Cipher
Client
Closed
Closer
CmpAbs
Config
Config
Cookie
Debugf
DecRef
Decode
Delete
Detail
Dialer
Dialer
DivMod
DoChan
Domain
Double
Enable
Encode
Errorf
Errors
Events
Exited
Expand
Family
Fatalf
Fchdir
Fchmod
Fchown
Fields
FillIn
Filter
Floats
Format
FxCode
GetArg
GetInt
Getenv
GrowTo
HEvent
Handle
HasInq
HasNIC
HasSig
HasTOS
HasTTL
Header
Header
Height
IPAddr
IfType
InPipe
IncRef
Insert
Int31n
Int63n
Invert
Is4In6
IsLost
IsZero
Issuer
Labels
Layout
Length
ListAt
Listen
Logger
Lookup
MaxAge
MaxCap
MaxRtt
Method
MinRtt
MinTTL
Minute
Mult32
Nbytes
Negate
NewCTR
NewGCM
NodeID
Notify
NumCap
NumOut
Number
Offset
OnRecv
OnSend
OpCode
Opaque
Option
Option
Origin
Output
Panicf
Params
Pflags
Prefix
Primes
Printf
PubKey
Public
PullUp
Pwrite
QuoRem
RTTSeq
RTTVar
RcvAcc
RcvNxt
ReadAt
ReadTo
Reader
Reader
Reason
Reject
Remove
ReoWnd
Resize
Resume
Reused
Sacked
Scheme
Search
Second
Secure
Select
Sender
Serial
Server
SetBPF
SetBit
SetCap
SetInt
SetLen
SetMTU
SetTOS
SetTTL
Shared
Signal
Signer
Slice3
SndMTU
SndNxt
SndUna
SndWnd
Source
Square
Status
StdErr
StdOut
Stderr
Stdout
Strict
Stride
String
Subnet
System
TClass
Target
ToView
TypeID
Uint16
Uint32
Uint32
Uint64
Unlock
Unwrap
Update
Values
Verify
Weight
Writer
Writer
Writev
ZoneId
_defer
_panic
abiMap
accept
ackNum
action
active
addArg
addOne
addSec
addTLS
aesKey
ageAdd
allocN
andNot
append
argLen
asciiF
assert
assign
avgRtt
bitLen
boring
broken
bucket
buffer
byName
byType
bytesX
cancel
cflags
chunks
cipher
client
closed
cmpGeq
cmpVal
common
concat
condfn
config
cooked
cookie
create
decref
degree
delete
dialIP
digest
divMul
divmod
doCall
doSlow
domain
dynTab
enable
encode
etypes
exited
expand
extend
factor
family
fields
filled
finder
finish
fixLen
flushF
fmtSbx
frames
freeze
fromP2
frozen
funcID
gcdata
goAway
goexit
gofunc
halves
handle
hangul
hashIV
hasher
header
height
idleAt
idleMu
inList
inPipe
incSeq
incref
inflow
insert
int31n
intbuf
ipaddr
isFile
isFree
isFull
isHead
isPow2
isYesC
isYesD
isZero
isdone
ivSize
keyLen
keyTag
labels
lastID
layout
length
linger
listen
locabs
locker
logger
lookup
lsNext
macLen
maxGap
maxRTO
maxRtt
mcache
mcount
method
minRTO
minRTT
minRtt
misses
mustBe
nbytes
negate
nelems
nextID
nfiles
nistID
noCopy
noscan
notify
npages
num1xx
numCap
number
nwrite
offset
oldnew
onlyH1
opAddr
opaque
pCount
palloc
params
parent
parked
paused
pcache
pcfile
period
pktMgr
prefix
procid
Antivirus Signature
Bkav W64.AIDetectMalware
Lionic Clean
tehtris Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh Clean
McAfee Clean
Cylance Clean
Zillya Clean
Sangfor Clean
K7AntiVirus Clean
Alibaba Clean
K7GW Clean
Cybereason malicious.6622d9
Baidu Clean
Paloalto Clean
Symantec Clean
Elastic malicious (high confidence)
ESET-NOD32 a variant of WinGo/HackTool.ReverseSsh.E.gen
APEX Clean
Avast Win64:HacktoolX-gen [Trj]
Cynet Clean
Kaspersky HEUR:HackTool.Win64.ReverseSSH.gen
BitDefender Generic.Application.Revhell.Marte.A.C3019868
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Generic.Application.Revhell.Marte.A.C3019868
Tencent Clean
TACHYON Clean
Sophos Clean
F-Secure Heuristic.HEUR/AGEN.1372062
DrWeb Clean
VIPRE Generic.Application.Revhell.Marte.A.C3019868
TrendMicro Clean
McAfeeD Clean
Trapmine Clean
FireEye Generic.Application.Revhell.Marte.A.C3019868
Emsisoft Generic.Application.Revhell.Marte.A.C3019868 (B)
SentinelOne Clean
GData Generic.Application.Revhell.Marte.A.C3019868
Jiangmin Clean
Webroot Clean
Varist Clean
Avira HEUR/AGEN.1372062
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Generic.Application.Revhell.Marte.A.CD2E145C
SUPERAntiSpyware Clean
ZoneAlarm HEUR:HackTool.Win64.ReverseSSH.gen
Microsoft VirTool:Win64/SuperShell.A
Google Detected
AhnLab-V3 Trojan/Win.Generic.R610370
Acronis Clean
ALYac Generic.Application.Revhell.Marte.A.C3019868
MAX malware (ai score=89)
VBA32 Clean
Malwarebytes Malware.AI.4117239432
Panda Clean
Zoner Clean
TrendMicro-HouseCall Clean
Rising HackTool.ReverseSSH!1.EA42 (CLASSIC)
Yandex Clean
Ikarus Trojan.WinGo.Clipbanker
MaxSecure Trojan.Malware.208817443.susgen
Fortinet Clean
BitDefenderTheta Clean
AVG Win64:HacktoolX-gen [Trj]
DeepInstinct Clean
CrowdStrike Clean
alibabacloud Backdoor:Multi/Supershell
No IRMA results available.