Static | ZeroBOX

PE Compile Time

2024-08-04 01:15:28

PE Imphash

b884193883789084b22da422ca7bc7ef

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
Mxx0 0x00001000 0x000f5000 0x00000000 0.0
\xd0\xc7\xd4\xc2 0x000f6000 0x000a3000 0x000a2600 7.99956125163
Mxx2 0x00199000 0x00001000 0x00000400 3.47291586538
.rsrc 0x0019a000 0x00000298 0x00000400 4.20653429227

Resources

Name Offset Size Language Sub-language File type
RT_VERSION 0x0019a058 0x00000240 LANG_CHINESE SUBLANG_CHINESE_SIMPLIFIED data

Imports

Library ADVAPI32.dll:
0x599140 RegCloseKey
Library COMCTL32.dll:
0x599148 None
Library GDI32.dll:
0x599150 SaveDC
Library iphlpapi.dll:
0x599158 GetAdaptersInfo
Library KERNEL32.DLL:
0x599160 LoadLibraryA
0x599164 ExitProcess
0x599168 GetProcAddress
0x59916c VirtualProtect
Library ole32.dll:
0x599174 OleRun
Library OLEAUT32.dll:
0x59917c VariantInit
Library oledlg.dll:
0x599184 None
Library RASAPI32.dll:
0x59918c RasHangUpA
Library SHELL32.dll:
0x599194 DragFinish
Library SHLWAPI.dll:
0x59919c PathFileExistsA
Library USER32.dll:
0x5991a4 GetDC
Library WININET.dll:
0x5991ac InternetOpenA
Library WINSPOOL.DRV:
0x5991b4 ClosePrinter
Library WSOCK32.dll:
0x5991bc send

!This program cannot be run in DOS mode.
NMyLV5
TyhS6^
k7&@Qm
`5Df=`
%iZ8{F
U.{w}JH%
j=pZ;+
X_183#
r=5QGGR
3?6`gj
tBq5f|6
MHS*ksV
#T 6Hi#
Lh/mKm
L4X^=I
u._lKE
3R~Eys!
0xK:Ew
#A2&c}a
$AkuWro
r1lfnK
n?n.6{i
\Ju31X
{{V*F.P
&~l+/Q
1[?#_7
XRbU:J!=',0
v/70+GOF
:NDZaH
$uO ^J
V=T/% n[
0 E?#G
6W^d C
H>Xav
R6uu/-
;[03*C$
0I&Mdo
4"W@(s
bnGVdvh
H%=-Yi
7S-wn
:ivf2:
ak~D,g
~?}c^~n
C$e'a(3
3/A:#b
Gfd]VOi
Pjye+)
rPAf^+
\?]kMLzv3
6aYk9-
)Kn8?a
Of,>A_
8\<eiPQ
>!;g9<hL/
6;Qw5@o
~D?jL9
.vH%xI
?r1~[X1@
U;I)$}
$)P#~J}7o
^ SS.[#
=^fco"
pw$ /H
wi-F0Q<
k TURr
^J<[8o
z(xo"!?dA
s* C5/J
Og*gnS
ET6 ^'
eU){gQ
22{MR<T%|X1/
ww~%lx
HV>5U-
ToZ>>`
ioM[]S}+R
)2zEKd
ANN>VN
`I^k*rc
]+dWn B
n7!xX)\=
.bV%9B\
"b\ULU
{hreV'
bTF@Vz
me%8x1
q%]uC!Y
9J_,E
5Imy0T
}zMm%R
|<F,Hr
W6JJY*
3^:!Xu
Fs%~kI
\?Mo#*.
+Uj.j7
iHv@`L
z<s%24r
OTZK (*!
,f+e.k
<^i$%0,e^T
bA"+[Q
*;'UN9
xzXKg<
P?j>cX;q
]?$8>}
,8\N*E&
F0>sq
zjv!6i
P)A9t
r2A}K#
?)&*k#
>@G#B!0
L-;YqIE
\$HmJ=
8nPrQ85u
$"k$Ua
d-GQv^
c@v=;w
5s<fP,
F.WUb
qOZw*r:
LxOvmp
fu Rm(
BeXPrJ
|2Z+hK
\aDVAJVF
y`kYQB=
P]lF~-
"je^>9I(
Y0^&wqX
`3G\$A
w*h$/2
k[@>~#4)
*JyI[t
#7B/+g
1*bMXz
mtopq9#
p?<\|
wsl51S
ttRx%}
W@)2n@<
-^0'ha
x_K,B J
CzZLX`
2G2[*>y
^pI#q6
9AlZ7!
_c5pjI,b
`{17[W
vZE@Aww;
w84n0<Q
g}#P;\
Z<:aaX6
02$3:#
0lk1%N
lW%';1
n5U/o.
Or*(omhDyXq5
?V}8rU
*T!U3bn
,^n#_3NW
>e\)Ph
LmN5Nm
-&`0r:
GBf` O
#~3fhtC
nBMM:9"
DGHX}#X"*A
^o`eIYL
q/:,Wh|
[1(,cW
S9?Ss|
=%uDdh
[(DOQ6\$W>{
vBmx6_rYV
.[`,:W
_h3MI3
[`_oAtR
Sa.,7%~
)!"n+z
d)}nf!z
Zd%FV
G=QaSz
4x,Ys
'1;79g
:>j#@q
u0%rN=
f0c_k
kN/JnZ
jjJ<?/t
IX^)<o
=MI%>9aX>
f\(Ayo
bXm,2O-u
M`{7x\
Z[Yq27ey
eJE,ve
J5q+8P
AC%MmQ
@VOOR$ Q
`6~8pu]
NXoF0d
*v]Sg_
{{~6Ns
V>zmcg
c^&Ud$
UP$M9_-{va0
Hz~l4okMC1
jt-~ T
rzXg-:
-T:u^e
O|3xv<"
4(F<M5%
E5%dC
b?1L$_
%{LS$|H
gNzEb+`C
Pl>MzB
a#'6X,
I3c&fu
Awb`;D
S!Vq}I
3)+>GM
zg6g^8
~g3kb'
BD,p'X
0`KAy_
_t1Y);
l>;MRk0N
|.1u}X,
gs\.aE^
Ce1_Iq
n=$5hhl@
MDiF"j+
dd>'V~
N&C_oD
!mTv4V
vv!}5r
eh3OkIvp
~`x_lRG
Oz&Jm~
-.4W*T^=+
CHDmnn
;"z`.*J
|o'gCb
f'#;|f
Usul?o
o+"nEA
uUEdnx
]~avKm
%Jx_U
l! Y?B
6]MK^w\v
PMKwIS'
,~6O0>
hGaJ]_L~
*y:~Erz
TXia8F]
lG+yah
SdaI\7
nPoCP).4u6
OUO"A@
98q!FfR
{s?<]R]9U
Jd:A>|,L
~:C&jdK!
XKe\R|
{JEuQa
I>3l(2
Nr:3\8
)s0._as
r+re>i
oZa?C
aNSLjv
$Z`}pc
QwXhK=!X0
H],*|y
xauFiU@^ [
T~':NP
N]V#jY
LFu,uw
n.2`vu}
O3ucaT
] k!#~
pmAH5aX
K[j|jh)
rtdplTB
(]iW42
,o ^uN[)1x
dSY.8)
+,-"B^SNm{
D$]c>![]
VNc.vk
%eqW{IK
LY8I I
X(p,#/+
M<I|OfkR
wM.=S
Y`rlo*
*jk:?\+;
|u1)gD
QV`dmj
;zZ-yU.)
|Udx7t
NyLlBb
!jX,2&Q
Zjur8G
{(@h+0
]SK7V
.+r;8Hv
yJkPHY
xw0chS
8<]maL<
CHeM@*
3&aooO
{/ud^q9
) c<Av
mJ9lvYZ
bp96*JI
:d-$I*
{hghom
|JZca
6>i_X4
< s,5MA
yQ~4%i
]US"@K
$vQC/#p
=~}B;g
^R0T]
4=D3DLx
Ybq"B#
`H3fYW
&oma|@
z/zxFa7R
i~;6~V
4V=qa_wcx
E9ledj+
nd<^02^
ii8q^Q
fT>?tq\7Sz
AS<c<`
+|]-'&
USR39uy
esYuf&
.23F'
Jx\+TUjJ!+(
r 4R.`
0GhPl=:*
p04Pkz
8wUuj0#e
2KsGP~V
)"sXnG:BnnR4
@'zhru>
\t{9k<J
ufW%Z{
-;tO--
-huCgu
F)md,9
JYn)d
[d6 wm
S/MhCUS
qCp8DA
K<jt1*.
/DR?$SR-
YJYTgg
IAg-j&i
!]M~_1
F|h~rl
nc0u\X
)6674\
f0Sj\G
a&CaD
c[Sm(OjP
Ws9#L
+z1QG)<
fC(h@0i
*OOp@
jY2-z~]
_vU^(X
I4xpxN
R^9[yF
c6SGSd
zCpiQ]
r72We$
44LX}\
^3"Bz^(
I|A$+U
!vXNH=Z
|SCJHi
I_!r50L ;L
F3bAmX
lD+"~C
Bq=:9m
ql??R*
$3uAP:
Kro<ve
6TPU0r
WE 36N
]"W{lT|
K&51&(t
"eJ~~j
bHGdY7Z
B[~A,
p[a&K(P
<Kr9C*
97A|x}
c{;3pWb
vkr5j6
Qbk;B+
,;OT.%
_x~lL
V_mon(
|nl[]&!
Qt,1i+
q'<u?s/
AW\|* 2
S TWTrm
M9kLI:3
!iu"D]
suMI[e]
=Sf#n7
O?R{Jt
yIf]KP P
.<BT p
k7J"[Eq=
|S|24]
/{,n%{
s/iM1DB
n/qZ?Y
4c35bh
-x47v
Nn\`c<
l4Y*h{
i<~XQU
34x9nC
?]?8PC
ZlAKtbe
b+(@=;E
K"rL^Q,
_(qOC
a0-=ZiW
+RzKVJG59
PPhUK~
n+UB=
Yu+Gs"
NcJ/'pv
h]VC:"rv
Ne>BUL
iZw<wUg
B$m:&vj
tuwE{9o|&
%JNlE;
: K#UV
(oza[T
b9{TB/
eAK)o;
zm=gL
Hfd/,=
4N3'b
kV9u.X
jfD98R
tLB:x+bH
%-m]gF
u"AoUH
`D`gx9
]Zzlrv
UWX|w
v?h,lJ
Q:|Y+in
pI*!8x
4DaD#!D/
2(s1y/Ye'
V>P7@9
E?6q%j
$Y:EDv
<I;aBVm
+yJ8U/
p`R%wr7=5
Z\l|6a*
%`f*GS
Nc$[r
r_*;C9
V#Q#&M=P;
[#dgpv
}n_xRd
_75tUz
Pe~L-q
\[eS)DAS
<a&P,[
r\EkPZ
U[Og5;
eI:0Bo%
~dmH)E
eZ^Pr#
Cv$?dc
zif-ER
5\FNk2
HiUbWfr
xiLWg
EN@.C9
cv.$Vd8b
6zD7U-
n1@FkF
v8M6Fk
U+{&(:t}+#yr
-h/B[
-\%MTq:P
Ydzi7wo
d_9T/s
/bId-|
'1<_2~
h,\{Tefg
xNvZ8Q
M_Q5`r
1ckcbh
9/ >q?
r%*-o)N
9,46_Xh5
-nA %t
.\)4vm7
Od^O(l52
}t7<+F
Mz[uvt
8<5=/;b*
Ya,AFo
_,AP*!Sm
$J6T]/
xS[r;?xMk
C(e+`Z
0| JZw
G8RIyT
mWFX1nP
N:&W l
!aj#i"5S
hC~K#>wh
PRq7Q$K
~4@kQK
Eu{YJG
~^AUxF
Ej8V~O
@~2,EY
RAdlu&
QYvY<<
HA$55o
_}Y{k!%`
NJ(es2:\J
2RQ1ID
0$wIk!
Uh<Q{TY
dI#"kV
(DO0)
Wq@Dv$
@5vQG*]B
'F|F2!
Ul8E;<3
Y-TZsz
hl;{e.r
Jv--wT:
y}o&>&
|BQlf*F
hHAOp*Lk
tTLEA<]
Wr.,p\8=
rufPsC
a~06h@
p~k$kYN
ruZ,l?
fgg%D4
p31lS
ECktx(>
4!B'RZNa zC
>fxCcp_
dq4)k3
MO KkN
6HXh}!@
Q-W/}*Y~X
DiF*yW
tstbKW
K"hEw?
+0_D@8:
'C3a|U
~#ow~Q
bz\G:N^i
0eIz6[
jQgXF R
}UB>.k)
F3r BAO
GnRMK-P
@*fOcN
Toq%8"
P=1TnL*
%/#Q<~
";u*c$
tL,Pm~~
}8,hyT
P1+)[4D
)=e0w
dAUb'$
fovxdS
9MtzwN?
%fVu/M
q~'.Q}C4
B5{kyyP
)Re=C-
eVwD[x
Td4eb#77
4<B~"I
2JeNz:.
&ev]4>HcC
"Q(g--"
['L2<@
YY&7=6
P_8<Sd2
GDJXiq
0L^*q7b
_GP^cE
jD}/C}
q <#3wSR
9t|oPJ
Vm7#M#
,@NA,;
F\g,2=
Bku0#S
YA~Ep?
A$R4i|O
J7[bpo
2Rf_um4
1`!83@
/f d-w
z]bLBj
;>H.(/
q8+`Si
qi>Y[
`4Z^e'J
xf{`q>
|502)~
T07Q<qw
qWI8](N
jxp&/"9D
^Ia%K%
_##`/u#
FcmT@|
+f'zTf
2*)>{*
|<UDNB
s6RY+xV
_*Z*3#
N "zx^
9)(.2p
sIU;{to
U'9*V/
:~c.r*@
4JzCXf
Y1^DWb
Jj60)[I
TEjQp/]ps
cGj~>f
'<,g\j
]=0#3X
["cwFr
=f:}3N
b{{:W=:
;xi7}M
cWE[@o
{{wiDe
(P)jL4
%@iNcv
4K>{9&
aniz+p
W3@-9u]p
nTQ('-
C):9&d
S3HwkU
Sio!h}
AQM Y|
Jdp%_$i
Zv#//OK
APgo&0
J+,lG+SLA
TR+nfZ
GoG"2.
OxE|Ga
Z_4=UOa
>PLRE
I\LP?C
c_c`p(
X}:9%;
I-Z!FM
uk+d[Af0
~^Jo:z
:=O>6K
%<3#lF
cy*vCS
)gM3F"s
;6Ak|>Q\
cLX(_#
zZXo@KI
od6[m*
r{i@ n
=UtJAo
%{(+HL
PV(@nI
pAd0*74|
q{2,I6M|S
AhIo{c
&~#1@vO
ZWm'a=Cn
yqp%3Y
A5T:|~
&Zk!pKt
(g:LpN
zb4[#~
X^]0u-%m
'D7Pld
,4YUyn
GM"nTK
BiBaxE
y=l_!4
pmC4_=
/dr&.p
upD(LV
X"89sm
d^O<0I
GC:j7P
E*!h^/
A;lIl
Y&[#a}
>e}![q
#m^$Zj+&&9
L=GB$Ny
kpc%Kbb
{{Bs1
z!"0q9
/Td~&W3X
{:=YO=
kJZ_hTE
+hLj'b
gvRixe
.Rcb_wv
!WUES2
p/If`a#
S*yaztK
Q_r,sJS
0$]Om!w
,52#}b
vg"0yRmDO
E6Fj]5
K3_MO`
$k6~*D
IXp2I?
/":'+$
=@5XHC
?j2*hq!*
Nh'zqb
smm-Q=
uLQ3f`
}b[Om;U+
P68/P_v
tt<H21.?
K8p4i-
dT,nr}mb]<
XI~2WE
6*HDGM
$"[\.m
X[t+CB
jG.2,!
`'y&rx
JvM>-vQ
j&F'C+
Lcoc[&
?itMQM
k_@^<2
0<t8!G
Nle5<m
om?>FQOmf
8F3r{w
N;m_('
<gGXh2[
lcDol^$N
>.D{cE4
uq,m'Au
sYnF[|
jI_*C?
kjUL#A
yL3u!N
xIjPj"
{F:$!f6
hWa`_5
jfE_XP
OY_z*q
3HZ(`cr
mUa0%}
K(>sDb
9QwY_Kwf
Qj4K(m
c.&\a
".Jc@o5
hU*r%Z
eO30+$&
>J-D5d'
[RKw=7
"a./2<
nBwcw>
uGcXud
2P$1oI
z1Fv\DQ
n^\`Cm
j^4$u!
C:CZv
(xtcs~
r]U%+;0
]\u*x-
RI%A2Id
9WzU-ta{N
44Ts^R
Z#[\d"
X>[&YD
=RSc[X
a!LRTa
pyk3n0
{\Z_bp
Pxy3Xn
U5x?#u
*9bJJFk
*3S4G4u
&ug,NL
$gA)@Eh"Gs
kGF?$PCb'H
")yf|Zf
I(gV>9
l.Fs6]
!n@$!{|R
9,C@?-
805bwd
:|Y,JW
kqk 4k
)~JrN-
!hX){)
vP<& *
P9]--roG(
ROLcH/5
/GD.%Xv
|A[\/:
=IEl`K
W^v|:`
`}<\k`
o.OL)9
+bad<5
$+S9`6
7? (}q
<nf!(2
@jG6~D
C:Z_S?
cb)x@m
|xldL#-O
wc*~Rw
_MuRm+Jq
4~x#T&
k6.+\}
k~@cP^
&[y'O@
Rl7l;hUv
d]]:<>
}6s44L
)aS!fX
Z?~9Ca
I`|,Mb
N_UXH1
&z&u:1
K+kE }7
0md@d>
5}{n/
2N9U4G
o4SE-;
WKF_t_
`qHs";e{
$-1zRd
+[_9+;@
*VgS|{R
G&)<s6X
og5"H&-
SC.E*H
Onh(j`
msfy-"
FE_yEP
wVW7J9e
8G&rdR
_2yt7-
uEuXFo @+s
^JQPjG
s8diY#
Js;9t-
&O4JOLg
d%=X3,
G^>Hc7
[L*X_P
r8;s})
LZk@]f>em
Ce7 Hj
SF}(^D
jMx.y2
m b_=h
Nsxu,P
"_3Ru(<
~Hd3I;
:x79h10
1-Z?=m
P|"@)v7-6J
qHD-5_z
k!Ej.)
U 2`^_
751J8f
fL|c)O
1>cn6"
w"`{k.
qH`|4k
5!dOY',1#UT
D9V'Q&j.
x?5N;X
->1T9u
T\Pc_S_,
4#Td~b
EiziSt
9Jv0?f1
3FEAuv
3S_ cJ
*Z,4fND
LCSR!.
g.=h66
>}I.Tf
o+>5!Jk
ueAc?X
S$=AlE*
+3UYV_
{dac_#
7{oH;T
QaYS+WR
nJ@UQWX/
"P\VJQbg
16$S]a
MO\MuT
H.z0#d
q4h/x
qRSiT?
qOStlM
JlIUvC6
Od/iDz7aW
hCR#G`
1:k5}=
&`j3lx
[M90xq
?K:P<[
C`~)e}
N10.s3a
$XBnoqw
Cdr{U1
-!o~8|
:5B/0}s
=]6u=p
M(?=b6
Zw{2#^J
;B{F#8\ff
-K{skH
HS`jS&
.ffS9i
N8Z--
lsr5T?
@,QL:/
!m(c';@
7o\]/S
75C}TK
RT2"mM
h\'hB8
\`ExK_
nGKko=o
c:P.%@j
j[]r0-r|
>U#Kvr
m$%%9Q
]t#yo`d
5g,Km.
nw`l)K
ba#"-
;CAAEu9kF
,]/(K
.Q4^lzrbUz
|P}UskN
eD 9C0?t
!d4E[4
Q_@=LU=!
M\ABW`
sxpCo>W
=A%`s+
`/d&1d/Oe
W,Iu7
U8T1^.7
g.0*`(%
&V$K<1
)S^E"w
X'yB$r
)0E!Z
C7]PT$
CV4 7t
4e*E8%
'gAJcy
L`h9T
!AFXiXz
4z%CvJ
d2#`86
(o8~v+`
w,((`]
2WR-3>
Nu#w.{
w=e;a}a
p|H?0iT
2ZuoqJ
5-:{uH4
"LdX4=
JTKz7xr[
gU/l-:F
vzy5_u
(ks0L i
Oz:o&5
FXJ 5!
^Lrn*v
n;=6J*
"xf#o4F
2T#H{-4
uP[X^
tC=L.?p
GKV?\/Y
;Y6D%R
+Qlc~%
s"Fp0-
`nui~-
4:4'#*
jMD$*)2
ni_]g4
5(/=4j
S8q3X\
>k3OPi
Ev}fw?Jp
iQMA]U
>Qrw<4o
b,{s8b
%='ts<A
`/#Ci(!
M:8_ft
OjabZ_Vx
oOVgh
A'O.H\
84a*4O
E8VDCM
oXX{<`
VJ;I6V
kMOP;i~S
dd[1i/`
&R.)V.
G&n!)g
7;Dj=d/\U
]U7=02^
A#Rw<=
w;_)eN
WV9L?F
Ihv7"r
z!VlJW
OivP>20U
g1~Pa-c
=H2$jit
H?%_cSqH9=
!wZ%%T
ox"Rav
T78e\[
i<'xU|N
=4yD*oq
o%'Ncb5
s[d|*\-
mF}P|<
*c>1Dr
ML1t)t
_|P8by
B3rqO0
4:81,f
('TZSZP
4NWgJ^
[Po(Xo
OU?RVu
1llW~B
<>7h/D
KVy%V]
q\kn&U
2'6Py#*m
D${+4u
f)wB.z
_I(E?c
@'+'VL'
w&ZS>'Gh
f<aw@X
o4%EsB
xU#SY(
d+:2T}
)4%Os0
,(<b2X
ZES Tl
1p^l\9-
kx|p)a
a~,wvlQ
+z:bWDh
EPeOm%U&
-[Cp8S
?,y(y_
sK-XM$h
U7Sy;w
Q=bWVN
O}]c;A
v/^=.F
R/udQ9
?Q359!}
's`gucn
T+MdD/W
?_!d\s
c*]/1G
nmEL$os
$!-b7xA
'0-QW`X
H0}-t3
[:bQ+?
ep"D"RE
Ipt7S)
!3$<[
C?j{^!
H6!=i8?
^:-&
6k;8O %^g
t$t#t$l
D$t#D$h
D$t+D$\
.)D$H)
s`)L$4
D$t+D$\
)D$H)
9l$\w_
XPTPSW
ADVAPI32.dll
COMCTL32.dll
GDI32.dll
iphlpapi.dll
KERNEL32.DLL
ole32.dll
OLEAUT32.dll
oledlg.dll
RASAPI32.dll
SHELL32.dll
SHLWAPI.dll
USER32.dll
WININET.dll
WINSPOOL.DRV
WSOCK32.dll
RegCloseKey
SaveDC
GetAdaptersInfo
ExitProcess
GetProcAddress
LoadLibraryA
VirtualProtect
OleRun
RasHangUpA
DragFinish
PathFileExistsA
InternetOpenA
ClosePrinter
HrCg@b
O(uckHr
PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGX
VS_VERSION_INFO
StringFileInfo
080404B0
FileVersion
1.0.0.0
FileDescription
ProductName
ProductVersion
1.0.0.0
LegalCopyright
Comments
(http://www.eyuyan.com)
VarFileInfo
Translation
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.BlackMoon.m!c
tehtris Generic.Malware
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh BehavesLike.Win32.Generic.jc
ALYac Gen:Variant.Ransom.TeslaCrypt.89
Cylance Unsafe
Zillya Clean
Sangfor Backdoor.Win32.Blackmoon.Vb4g
K7AntiVirus Clean
Alibaba Backdoor:Win64/BlackMoon.0631cd6c
K7GW Clean
Cybereason malicious.498a5e
Baidu Clean
VirIT Clean
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Packed.BlackMoon.A suspicious
APEX Malicious
Avast Win32:MalwareX-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky HEUR:Backdoor.Win64.C2.gen
BitDefender Gen:Variant.Ransom.TeslaCrypt.89
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Ransom.TeslaCrypt.89
Tencent Win64.Backdoor.C2.Vsmw
TACHYON Clean
Sophos Mal/Generic-S
F-Secure Backdoor.BDS/Redcap.iznxb
DrWeb Clean
VIPRE Gen:Variant.Ransom.TeslaCrypt.89
TrendMicro TrojanSpy.Win32.BLACKMOON.YXEHDZ
McAfeeD Real Protect-LS!017933F498A5
Trapmine malicious.high.ml.score
FireEye Generic.mg.017933f498a5e5fe
Emsisoft Application.Generic (A)
SentinelOne Static AI - Malicious PE
GData Gen:Variant.Ransom.TeslaCrypt.89
Jiangmin Clean
Webroot Clean
Varist W32/Trojan.GRW.gen!Eldorado
Avira BDS/Redcap.iznxb
Antiy-AVL Clean
Kingsoft malware.kb.b.962
Gridinsoft Trojan.Win32.BlackMoon.tr
Xcitium Packed.Win32.MUPX.Gen@24tbus
Arcabit Trojan.Ransom.TeslaCrypt.89
SUPERAntiSpyware Clean
ZoneAlarm UDS:DangerousObject.Multi.Generic
Microsoft TrojanDownloader:Win32/Upatre!ml
Google Detected
AhnLab-V3 Win-Trojan/Malpacked5.Gen
Acronis Clean
McAfee Artemis!017933F498A5
MAX malware (ai score=83)
VBA32 BScope.Trojan.DiskWriter
Malwarebytes PUP.Optional.ChinAd
Panda Clean
Zoner Clean
TrendMicro-HouseCall TrojanSpy.Win32.BLACKMOON.YXEHDZ
Rising Backdoor.C2!8.18C44 (CLOUD)
Yandex Clean
Ikarus PUA.BlackMoon
MaxSecure Dropper.Dinwod.frindll
Fortinet Riskware/Application
BitDefenderTheta Gen:NN.ZexaF.36810.OqKfaWJfh9bb
AVG Win32:MalwareX-gen [Trj]
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_90% (W)
alibabacloud Backdoor:Win/C2.gyf
No IRMA results available.