Static | ZeroBOX

PE Compile Time

2021-08-06 15:15:37

PE Imphash

aabc7d829ec4bcf3eb634829eff84ef7

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00003bc4 0x00003c00 6.05938460993
.data 0x00005000 0x0000001c 0x00000200 0.222389470473
.rdata 0x00006000 0x00000a20 0x00000c00 4.30917657001
/4 0x00007000 0x00000ae4 0x00000c00 4.59412375472
.bss 0x00008000 0x00000074 0x00000000 0.0
.idata 0x00009000 0x00000938 0x00000a00 4.75318730279
.CRT 0x0000a000 0x00000018 0x00000200 0.114463381259
.tls 0x0000b000 0x00000020 0x00000200 0.22482003451
/14 0x0000c000 0x00000038 0x00000200 0.21620690744
/29 0x0000d000 0x00001cff 0x00001e00 5.76610554941
/41 0x0000f000 0x0000012f 0x00000200 3.04408429956
/55 0x00010000 0x000001c8 0x00000200 4.30440513018
/67 0x00011000 0x00000038 0x00000200 0.678482794849

Imports

Library KERNEL32.dll:
0x4091b0 AllocConsole
0x4091bc ExitProcess
0x4091c0 FindClose
0x4091c4 FindFirstFileA
0x4091c8 FindNextFileA
0x4091cc FreeLibrary
0x4091d0 GetCommandLineA
0x4091d4 GetLastError
0x4091d8 GetModuleHandleA
0x4091dc GetProcAddress
0x4091e8 LoadLibraryA
0x4091f0 TlsGetValue
0x4091f4 VirtualProtect
0x4091f8 VirtualQuery
Library msvcrt.dll:
0x409200 _strdup
0x409204 _stricoll
Library msvcrt.dll:
0x40920c __getmainargs
0x409210 __mb_cur_max
0x409214 __p__environ
0x409218 __p__fmode
0x40921c __set_app_type
0x409220 _cexit
0x409224 _errno
0x409228 _fpreset
0x40922c _fullpath
0x409230 _iob
0x409234 _isctype
0x409238 _onexit
0x40923c _pctype
0x409240 _setmode
0x409244 abort
0x409248 atexit
0x40924c calloc
0x409250 free
0x409254 fwrite
0x409258 malloc
0x40925c mbstowcs
0x409260 memcpy
0x409264 realloc
0x409268 setlocale
0x40926c signal
0x409270 strcoll
0x409274 strlen
0x409278 tolower
0x40927c vfprintf
0x409280 wcstombs
Library USER32.dll:
0x409288 FindWindowA
0x40928c GetAsyncKeyState
0x409290 GetKeyState
0x409294 ShowWindow
Library libgcc_s_dw2-1.dll:
0x40929c _Unwind_Resume

!This program cannot be run in DOS mode.
P`.data
.rdata
0@.bss
.idata
t(<{t?
</t&<\t"
libgcc_s_dw2-1.dll
__register_frame_info
__deregister_frame_info
libgcj-16.dll
_Jv_RegisterClasses
ConsoleWindowClass
log.txt
[BACK]
[ENTER]
[CAP0]
[CAP1]
[SPACE]
[PGUP]
[PGDN]
[HOME]
[ARROWL]
[ARROWU]
[ARROWR]
[ARROWD]
[LWIN]
[RWIN]
[MENU]
[LCTRL]
[RCTRL]
[LALT]
[RALT]
Mingw runtime failure:
VirtualQuery failed for %d bytes at address %p
Unknown pseudo relocation protocol version %d.
Unknown pseudo relocation bit size %d.
glob-1.0-mingw32
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (MinGW.org GCC-6.3.0-1) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
GCC: (GNU) 6.3.0
AllocConsole
DeleteCriticalSection
EnterCriticalSection
ExitProcess
FindClose
FindFirstFileA
FindNextFileA
FreeLibrary
GetCommandLineA
GetLastError
GetModuleHandleA
GetProcAddress
InitializeCriticalSection
LeaveCriticalSection
LoadLibraryA
SetUnhandledExceptionFilter
TlsGetValue
VirtualProtect
VirtualQuery
_strdup
_stricoll
__getmainargs
__mb_cur_max
__p__environ
__p__fmode
__set_app_type
_cexit
_errno
_fpreset
_fullpath
_isctype
_onexit
_pctype
_setmode
atexit
calloc
fwrite
malloc
mbstowcs
memcpy
realloc
setlocale
signal
strcoll
strlen
tolower
vfprintf
wcstombs
FindWindowA
GetAsyncKeyState
GetKeyState
ShowWindow
_Unwind_Resume
__deregister_frame_info
__register_frame_info
_ZNSt14basic_ofstreamIcSt11char_traitsIcEE5closeEv
_ZNSt14basic_ofstreamIcSt11char_traitsIcEE7is_openEv
_ZNSt14basic_ofstreamIcSt11char_traitsIcEEC1EPKcSt13_Ios_Openmode
_ZNSt14basic_ofstreamIcSt11char_traitsIcEED1Ev
_ZNSt8ios_base4InitC1Ev
_ZNSt8ios_base4InitD1Ev
_ZStlsISt11char_traitsIcEERSt13basic_ostreamIcT_ES5_PKc
_ZStlsISt11char_traitsIcEERSt13basic_ostreamIcT_ES5_c
__gxx_personality_v0
KERNEL32.dll
msvcrt.dll
msvcrt.dll
USER32.dll
libgcc_s_dw2-1.dll
libstdc++-6.dll
../../../src/gcc-6.3.0/libgcc/config/i386/cygwin.S
/home/keith/src/mingw/gcc-build/gcc-6.3.0-mingw32-cross-native/mingw32/libgcc
GNU AS 2.28
GNU C11 6.3.0 -mtune=generic -march=i586 -g -g -g -O2 -O2 -O2 -fbuilding-libgcc -fno-stack-protector
../../../src/gcc-6.3.0/libgcc/libgcc2.c
/home/keith/src/mingw/gcc-build/gcc-6.3.0-mingw32-cross-native/mingw32/libgcc
unsigned int
short unsigned int
long long int
long double
long int
_iobuf
_charbuf
_bufsiz
_tmpfname
short int
long unsigned int
__mb_cur_max
_sys_nerr
_sys_errlist
_osver
_winver
_winmajor
_winminor
_fmode
sizetype
optind
optopt
opterr
optarg
_daylight
_timezone
_tzname
daylight
timezone
tzname
hashval_t
htab_hash
htab_eq
htab_hash_pointer
htab_eq_pointer
unsigned char
stringop_alg
no_stringop
libcall
rep_prefix_1_byte
rep_prefix_4_byte
rep_prefix_8_byte
loop_1_byte
unrolled_loop
vector_loop
last_alg
unspec_strings
unspecv_strings
stringop_strategy
noalign
stringop_algs
unknown_size
processor_costs
shift_var
shift_const
mult_init
mult_bit
divide
large_insn
move_ratio
movzbl_load
int_load
int_store
fp_move
fp_load
fp_store
mmx_move
mmx_load
mmx_store
sse_move
sse_load
sse_store
mmxsse_to_integer
l1_cache_size
l2_cache_size
prefetch_block
simultaneous_prefetches
branch_cost
memcpy
memset
scalar_stmt_cost
scalar_load_cost
scalar_store_cost
vec_stmt_cost
vec_to_scalar_cost
scalar_to_vec_cost
vec_align_load_cost
vec_unalign_load_cost
vec_store_cost
cond_taken_branch_cost
cond_not_taken_branch_cost
ix86_cost
ix86_size_cost
ix86_tune_indices
X86_TUNE_SCHEDULE
X86_TUNE_PARTIAL_REG_DEPENDENCY
X86_TUNE_SSE_PARTIAL_REG_DEPENDENCY
X86_TUNE_SSE_SPLIT_REGS
X86_TUNE_PARTIAL_FLAG_REG_STALL
X86_TUNE_MOVX
X86_TUNE_MEMORY_MISMATCH_STALL
X86_TUNE_FUSE_CMP_AND_BRANCH_32
X86_TUNE_FUSE_CMP_AND_BRANCH_64
X86_TUNE_FUSE_CMP_AND_BRANCH_SOFLAGS
X86_TUNE_FUSE_ALU_AND_BRANCH
X86_TUNE_REASSOC_INT_TO_PARALLEL
X86_TUNE_REASSOC_FP_TO_PARALLEL
X86_TUNE_ACCUMULATE_OUTGOING_ARGS
X86_TUNE_PROLOGUE_USING_MOVE
X86_TUNE_EPILOGUE_USING_MOVE
X86_TUNE_USE_LEAVE
X86_TUNE_PUSH_MEMORY
X86_TUNE_SINGLE_PUSH
X86_TUNE_DOUBLE_PUSH
X86_TUNE_SINGLE_POP
X86_TUNE_DOUBLE_POP
X86_TUNE_PAD_SHORT_FUNCTION
X86_TUNE_PAD_RETURNS
X86_TUNE_FOUR_JUMP_LIMIT
X86_TUNE_SOFTWARE_PREFETCHING_BENEFICIAL
X86_TUNE_LCP_STALL
X86_TUNE_READ_MODIFY
X86_TUNE_USE_INCDEC
X86_TUNE_INTEGER_DFMODE_MOVES
X86_TUNE_OPT_AGU
X86_TUNE_AVOID_LEA_FOR_ADDR
X86_TUNE_SLOW_IMUL_IMM32_MEM
X86_TUNE_SLOW_IMUL_IMM8
X86_TUNE_AVOID_MEM_OPND_FOR_CMOVE
X86_TUNE_SINGLE_STRINGOP
X86_TUNE_MISALIGNED_MOVE_STRING_PRO_EPILOGUES
X86_TUNE_USE_SAHF
X86_TUNE_USE_CLTD
X86_TUNE_USE_BT
X86_TUNE_USE_HIMODE_FIOP
X86_TUNE_USE_SIMODE_FIOP
X86_TUNE_USE_FFREEP
X86_TUNE_EXT_80387_CONSTANTS
X86_TUNE_VECTORIZE_DOUBLE
X86_TUNE_GENERAL_REGS_SSE_SPILL
X86_TUNE_SSE_UNALIGNED_LOAD_OPTIMAL
X86_TUNE_SSE_UNALIGNED_STORE_OPTIMAL
X86_TUNE_SSE_PACKED_SINGLE_INSN_OPTIMAL
X86_TUNE_SSE_TYPELESS_STORES
X86_TUNE_SSE_LOAD0_BY_PXOR
X86_TUNE_INTER_UNIT_MOVES_TO_VEC
X86_TUNE_INTER_UNIT_MOVES_FROM_VEC
X86_TUNE_INTER_UNIT_CONVERSIONS
X86_TUNE_SPLIT_MEM_OPND_FOR_FP_CONVERTS
X86_TUNE_USE_VECTOR_FP_CONVERTS
X86_TUNE_USE_VECTOR_CONVERTS
X86_TUNE_SLOW_PSHUFB
X86_TUNE_VECTOR_PARALLEL_EXECUTION
X86_TUNE_AVOID_4BYTE_PREFIXES
X86_TUNE_AVX256_UNALIGNED_LOAD_OPTIMAL
X86_TUNE_AVX256_UNALIGNED_STORE_OPTIMAL
X86_TUNE_AVX128_OPTIMAL
X86_TUNE_DOUBLE_WITH_ADD
X86_TUNE_ALWAYS_FANCY_MATH_387
X86_TUNE_UNROLL_STRLEN
X86_TUNE_SHIFT1
X86_TUNE_ZERO_EXTEND_WITH_AND
X86_TUNE_PROMOTE_HIMODE_IMUL
X86_TUNE_FAST_PREFIX
X86_TUNE_READ_MODIFY_WRITE
X86_TUNE_MOVE_M1_VIA_OR
X86_TUNE_NOT_UNPAIRABLE
X86_TUNE_PARTIAL_REG_STALL
X86_TUNE_PROMOTE_QIMODE
X86_TUNE_PROMOTE_HI_REGS
X86_TUNE_HIMODE_MATH
X86_TUNE_SPLIT_LONG_MOVES
X86_TUNE_USE_XCHGB
X86_TUNE_USE_MOV0
X86_TUNE_NOT_VECTORMODE
X86_TUNE_AVOID_VECTOR_DECODE
X86_TUNE_AVOID_FALSE_DEP_FOR_BMI
X86_TUNE_BRANCH_PREDICTION_HINTS
X86_TUNE_QIMODE_MATH
X86_TUNE_PROMOTE_QI_REGS
X86_TUNE_ADJUST_UNROLL
X86_TUNE_ONE_IF_CONV_INSN
X86_TUNE_LAST
ix86_tune_features
ix86_arch_indices
X86_ARCH_CMOV
X86_ARCH_CMPXCHG
X86_ARCH_CMPXCHG8B
X86_ARCH_XADD
X86_ARCH_BSWAP
X86_ARCH_LAST
ix86_arch_features
x86_prefetch_sse
_dont_use_tree_here_
x86_mfence
reg_class
NO_REGS
AD_REGS
CLOBBERED_REGS
Q_REGS
NON_Q_REGS
INDEX_REGS
LEGACY_REGS
GENERAL_REGS
FP_TOP_REG
FP_SECOND_REG
FLOAT_REGS
SSE_FIRST_REG
NO_REX_SSE_REGS
SSE_REGS
EVEX_SSE_REGS
BND_REGS
ALL_SSE_REGS
MMX_REGS
FP_TOP_SSE_REGS
FP_SECOND_SSE_REGS
FLOAT_SSE_REGS
FLOAT_INT_REGS
INT_SSE_REGS
FLOAT_INT_SSE_REGS
MASK_EVEX_REGS
MASK_REGS
ALL_REGS
LIM_REG_CLASSES
dbx_register_map
dbx64_register_map
svr4_dbx_register_map
x86_64_ms_sysv_extra_clobbered_registers
processor_type
PROCESSOR_GENERIC
PROCESSOR_I386
PROCESSOR_I486
PROCESSOR_PENTIUM
PROCESSOR_LAKEMONT
PROCESSOR_PENTIUMPRO
PROCESSOR_PENTIUM4
PROCESSOR_NOCONA
PROCESSOR_CORE2
PROCESSOR_NEHALEM
PROCESSOR_SANDYBRIDGE
PROCESSOR_HASWELL
PROCESSOR_BONNELL
PROCESSOR_SILVERMONT
PROCESSOR_KNL
PROCESSOR_SKYLAKE_AVX512
PROCESSOR_INTEL
PROCESSOR_GEODE
PROCESSOR_K6
PROCESSOR_ATHLON
PROCESSOR_K8
PROCESSOR_AMDFAM10
PROCESSOR_BDVER1
PROCESSOR_BDVER2
PROCESSOR_BDVER3
PROCESSOR_BDVER4
PROCESSOR_BTVER1
PROCESSOR_BTVER2
PROCESSOR_ZNVER1
PROCESSOR_max
ix86_tune
ix86_arch
ix86_preferred_stack_boundary
ix86_incoming_stack_boundary
regclass_map
signed char
UQItype
long long unsigned int
complex float
double
complex double
complex long double
__float128
__unknown__
__popcount_tab
__clz_tab
func_ptr
__CTOR_LIST__
__DTOR_LIST__
../../../src/gcc-6.3.0/libgcc/config/i386
cygwin.S
""YK0g=YY0/>""
/home/keith/mingw32-gcc-6.3.0/include
../../../src/gcc-6.3.0/libgcc/../include
../.././gcc
../../../src/gcc-6.3.0/libgcc/../gcc/config/i386
../../../src/gcc-6.3.0/libgcc
stdio.h
stdlib.h
getopt.h
time.h
hashtab.h
insn-constants.h
i386.h
i386-opts.h
libgcc2.h
gbl-ctors.h
libgcc2.c
_atexit
__onexit0
cygming-crtbegin.c_obj
.rdata
keylogger.cpp
__ZL3maxh
___tcf_0u
.rdata
.ctors
.idata$7$
.idata$5
.idata$4
.idata$6
@feat.00
.idata$7
.idata$5
.idata$4
.idata$6
@feat.00
.idata$7
.idata$5
.idata$4
.idata$6H
@feat.00
.idata$7
.idata$5
.idata$4
.idata$6,
@feat.00
.idata$7
.idata$5
.idata$4
.idata$6
@feat.00
.idata$7
.idata$5
.idata$4
.idata$6
@feat.00
.idata$7
.idata$5
.idata$4
.idata$6
@feat.00
.idata$7
.idata$5
.idata$4
.idata$6`
@feat.00
.idata$7
.idata$5
.idata$4
.idata$6(
@feat.00
___main
.CRT$XDZ
.CRT$XDA
.CRT$XLA
.tls$ZZZ
.tls$AAA
.rdata
.idata$7
.idata$5
.idata$4
.idata$6
@feat.00
.idata$7
.idata$5
.idata$4|
.idata$6
@feat.00
.idata$7
.idata$5
.idata$4x
.idata$6
@feat.00
libgcc2.c
.rdata
.rdata
.idata$5
.idata$6
.idata$5|
.idata$6
.idata$5x
.idata$6
.idata$5t
.idata$6v
.idata$5p
.idata$6l
.idata$5l
.idata$6b
.idata$5h
.idata$6V
.idata$5d
.idata$6L
.idata$5`
.idata$6B
.idata$5\
.idata$66
.idata$5X
.idata$6,
.idata$5T
.idata$6"
.idata$5P
.idata$6
.idata$5L
.idata$6
.idata$6
.idata$5D
.idata$6
.idata$5@
.idata$6
.idata$6
.idata$6
.idata$54
.idata$6
.idata$6
.idata$5,
.idata$6
.idata$5$
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6~
.idata$5
.idata$6n
.idata$6^
.idata$5
.idata$6N
.idata$4
.idata$5
.idata$5
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6
.idata$4d
.idata$5
.idata$5
.idata$6(
.idata$5
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6p
.idata$5
.idata$6^
.idata$5
.idata$6P
.idata$5
.idata$6@
.idata$5
.idata$6.
.idata$5
.idata$6"
.idata$5
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6
.idata$5
.idata$6
.idata$4
.idata$5
.idata$5
.idata$6B
.idata$5
.idata$68
.idata$4
.idata$5
cygming-crtend.c
.idata$5(
.idata$6
.idata$5
.idata$6
.idata$2P
.idata$5
.idata$4x
.idata$2d
.idata$5
.idata$4
.idata$4
.idata$5
.idata$7
.idata$4
.idata$5
.idata$7(
__cexit
__errno
___xl_c
___xl_z
_strcoll
__dll__
_fwrite
_memcpy
__argc
_tolower
___xl_a
___xl_d
__CRT_MTh
_strdup
__argv
_calloc
__fmode
_realloc
__end__
_signal
_malloc
_abort
_strlen
.eh_frame
.debug_aranges
.debug_info
.debug_abbrev
.debug_line
.debug_frame
__mingw32_init_mainargs
_mainCRTStartup
_WinMainCRTStartup
_deregister_frame_fn
___JCR_LIST__
___gcc_register_frame
___gcc_deregister_frame
.eh_frame
.rdata$zzz
__ZStL19piecewise_construct
.text$_ZStorSt13_Ios_OpenmodeS_
__ZStorSt13_Ios_OpenmodeS_
__ZStL8__ioinit
__Z4log1iPKc
__Z4log2iPKc
__Z4log3iPKc
__Z41__static_initialization_and_destruction_0ii
__GLOBAL__sub_I_IsCapsLockUp
.gcc_except_table
.eh_frame$_ZStorSt13_Ios_OpenmodeS_
__setargv
___cpu_features_init
___do_global_dtors
___do_global_ctors
___dyn_tls_init@12
___tlregdtor
____w64_mingwthr_add_key_dtor
____w64_mingwthr_remove_key_dtor
___mingw_TLScallback
__pei386_runtime_relocator
.debug_info
.debug_abbrev
.debug_line
.debug_aranges
.debug_frame
_fesetenv
___mingw_glob
___mingw_globfree
___mingw_dirname
___mingw_opendir
___mingw_readdir
___mingw_closedir
___mingw_rewinddir
___mingw_telldir
___mingw_seekdir
___FRAME_END__
___JCR_END__
_register_frame_ctor
.text.startup
.ctors.65535
__imp__FindFirstFileA@8
_ShowWindow@8
_VirtualProtect@16
___RUNTIME_PSEUDO_RELOC_LIST__
__imp___fullpath
_FindFirstFileA@8
__ZNSt14basic_ofstreamIcSt11char_traitsIcEE5closeEv
__imp___setmode
__data_start__
_FreeLibrary@4
___DTOR_LIST__
__imp__VirtualProtect@16
__imp___Unwind_Resume
__imp___onexit
___p__fmode
__imp__GetLastError@0
_SetUnhandledExceptionFilter@4
__imp__VirtualQuery@12
__imp____register_frame_info
__imp__FindNextFileA@8
___tls_start__
__imp__TlsGetValue@4
__libmsvcrt_a_iname
__imp__InitializeCriticalSection@4
_DeleteCriticalSection@4
__rt_psrelocs_start
__imp__abort
__dll_characteristics__
__size_of_stack_commit__
__size_of_stack_reserve__
__major_subsystem_version__
__imp__GetAsyncKeyState@4
___crt_xl_start__
__imp___ZNSt14basic_ofstreamIcSt11char_traitsIcEE7is_openEv
__imp___ZNSt14basic_ofstreamIcSt11char_traitsIcEE5closeEv
___crt_xi_start__
___crt_xi_end__
__imp__stricoll
__imp____mb_cur_max
__imp__AllocConsole@0
_GetLastError@0
__imp____p__environ
__imp___pctype
__ZStlsISt11char_traitsIcEERSt13basic_ostreamIcT_ES5_c
_VirtualQuery@12
__head_libuser32_a
_mingw_initltsdrot_force
__imp___iob
__ZNSt8ios_base4InitC1Ev
_GetModuleHandleA@4
___register_frame_info
__libmoldname_a_iname
_hmod_libgcc
.weak.___register_frame_info.___EH_FRAME_BEGIN__
__imp____deregister_frame_info
__imp__strdup
__imp___isctype
__bss_start__
___RUNTIME_PSEUDO_RELOC_LIST_END__
__fpreset
__size_of_heap_commit__
_libgcc_s_dw2_1_dll_iname
__imp___errno
___p__environ
__imp__GetProcAddress@8
_GetProcAddress@8
___crt_xp_start__
__imp__wcstombs
_GetCommandLineA@0
__imp___ZNSt8ios_base4InitD1Ev
___crt_xp_end__
__imp__signal
__minor_os_version__
__imp__atexit
__imp__mbstowcs
__head_libmsvcrt_a
__image_base__
__isctype
__section_alignment__
_LoadLibraryA@4
_wcstombs
__imp__FreeLibrary@4
__IAT_end__
__ZNSt14basic_ofstreamIcSt11char_traitsIcEE7is_openEv
__head_libmoldname_a
__RUNTIME_PSEUDO_RELOC_LIST__
_setlocale
__imp____p__fmode
__tls_start
_ExitProcess@4
__imp__strcoll
__data_end__
___getmainargs
_FindClose@4
__CTOR_LIST__
_mbstowcs
___set_app_type
__ZNSt14basic_ofstreamIcSt11char_traitsIcEED1Ev
__bss_end__
__CRT_fmode
__imp___ZStlsISt11char_traitsIcEERSt13basic_ostreamIcT_ES5_PKc
___crt_xc_end__
__tls_index
__imp___ZNSt8ios_base4InitC1Ev
___crt_xc_start__
__head_libstdc___6_dll
___CTOR_LIST__
_FindWindowA@8
_AllocConsole@0
__rt_psrelocs_size
__ZNSt14basic_ofstreamIcSt11char_traitsIcEEC1EPKcSt13_Ios_Openmode
__imp___ZNSt14basic_ofstreamIcSt11char_traitsIcEEC1EPKcSt13_Ios_Openmode
__imp__FindWindowA@8
__imp__memcpy
_FindNextFileA@8
__file_alignment__
__imp__GetKeyState@4
__imp__LeaveCriticalSection@4
__imp__malloc
__head_libgcc_s_dw2_1_dll
___EH_FRAME_BEGIN__
__major_os_version__
__imp__realloc
__IAT_start__
_stricoll
__tls_end
__imp__GetModuleHandleA@4
__DTOR_LIST__
__imp___fpreset
.weak.___deregister_frame_info.___EH_FRAME_BEGIN__
_EnterCriticalSection@4
_GetKeyState@4
__fullpath
__ZStlsISt11char_traitsIcEERSt13basic_ostreamIcT_ES5_PKc
__size_of_heap_reserve__
___crt_xt_start__
___ImageBase
__subsystem__
__imp__strlen
.weak.__Jv_RegisterClasses.___EH_FRAME_BEGIN__
__CRT_fenv
__imp__calloc
__Jv_RegisterClasses
__imp____getmainargs
__imp___ZNSt14basic_ofstreamIcSt11char_traitsIcEED1Ev
___tls_end__
__imp__ExitProcess@4
_mingw_initltssuo_force
_InitializeCriticalSection@4
__imp___ZStlsISt11char_traitsIcEERSt13basic_ostreamIcT_ES5_c
___cpu_features
__imp__free
__imp__SetUnhandledExceptionFilter@4
___deregister_frame_info
__major_image_version__
__loader_flags__
__libuser32_a_iname
__imp__ShowWindow@8
__imp__tolower
__CRT_glob
___gxx_personality_v0
__setmode
_libstdc___6_dll_iname
___chkstk_ms
__head_libkernel32_a
__rt_psrelocs_end
__imp___cexit
__minor_subsystem_version__
__imp__FindClose@4
__minor_image_version__
__imp__vfprintf
__imp____set_app_type
_mingw_initltsdyn_force
__Unwind_Resume
_TlsGetValue@4
__imp__DeleteCriticalSection@4
_LeaveCriticalSection@4
__imp__GetCommandLineA@0
__imp__LoadLibraryA@4
__imp__setlocale
__RUNTIME_PSEUDO_RELOC_LIST_END__
_IsCapsLockUp
__libkernel32_a_iname
___dyn_tls_init_callback
_GetAsyncKeyState@4
__tls_used
__ZNSt8ios_base4InitD1Ev
___crt_xt_end__
_vfprintf
__imp__EnterCriticalSection@4
__imp__fwrite
__imp____gxx_personality_v0
t;=,-./`[\]')!@#$%^&*(:+<_>?~{|}"
Antivirus Signature
Bkav Clean
Lionic Trojan.Win32.KeyLogger.4!c
tehtris Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh BehavesLike.Win32.Generic.qm
McAfee Artemis!FBBC99E0B5C7
Cylance Unsafe
Zillya Trojan.Keylogger.Win32.309
Sangfor Spyware.Win32.KeyLogger.Vz13
K7AntiVirus Spyware ( 00503f8f1 )
Alibaba TrojanSpy:Win32/KeyLogger.818be436
K7GW Spyware ( 00503f8f1 )
Cybereason malicious.0b5c7a
huorong Clean
Baidu Clean
VirIT Clean
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Spy.KeyLogger.PMU
APEX Clean
Avast Win32:Trojan-gen
Cynet Clean
Kaspersky Clean
BitDefender Trojan.GenericKD.61433185
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Trojan.GenericKD.61433185
Tencent Win32.Trojan.Agen.Mgil
TACHYON Clean
Sophos Generic Reputation PUA (PUA)
F-Secure Clean
DrWeb Clean
VIPRE Trojan.GenericKD.61433185
TrendMicro Clean
McAfeeD ti!6054E52EDC71
Trapmine Clean
FireEye Generic.mg.fbbc99e0b5c7a5f4
Emsisoft Trojan.GenericKD.61433185 (B)
Ikarus Trojan-Spy.Win32.KeyLogger
GData Trojan.GenericKD.61433185
Jiangmin Clean
Webroot Clean
Varist Clean
Avira Clean
Antiy-AVL Trojan[Spy]/Win32.KeyLogger
Kingsoft Clean
Gridinsoft Clean
Xcitium Clean
Arcabit Trojan.Generic.D3A96561
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
AhnLab-V3 Clean
Acronis Clean
BitDefenderTheta Clean
MAX malware (ai score=83)
VBA32 Clean
Malwarebytes Malware.AI.3977087382
Panda Trj/Chgt.AD
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002H0CDL24
Rising Spyware.KeyLogger!8.12F (CLOUD)
Yandex Clean
SentinelOne Static AI - Suspicious PE
MaxSecure Trojan.Malware.187143312.susgen
Fortinet W32/KeyLogger.PMU!tr.spy
AVG Win32:Trojan-gen
DeepInstinct MALICIOUS
CrowdStrike win/malicious_confidence_100% (W)
alibabacloud Trojan[spy]:Win/KeyLogger.PZW
No IRMA results available.