Static | ZeroBOX

PE Compile Time

2017-09-06 10:32:07

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x00044af4 0x00044c00 7.99543264819

!This program cannot be run in DOS mode.
Rich=`g
<Ar5<zw1<Zv
Rw!U9g
PyK3!P?
T+bH\B}z
XMe~DvCA$N
^-PPL=
$5bYtd
-uNL/{
Oh_mtn
I7)z6D
/H-/$
VWV=>&
aX5D{5+
LHkxT/@
#=.T{>\6
In]T[E
##")B~
N42eD)
#.!=rh
o18?P
Z_RKW*vN8
R^=oOYr
>y)!pm
h\p>?K
baH`<_
Z.NS*(
}%^9Tw8B
M.EiG0
L,gReI
bGv=%d
prTjOLs
f)5)s\&
xMj<Of
p&=i"w
z%K2UI|
zpc/"GVR
2\SP/CB*:
BQ/G9
AnHu"?r
ZQ gFC
F9IouQ
Rc{mb2
M*p=Lh
7.\nq
KKcJ]Y
}H&Q~`
fZC7g~on4
3s>_IdG
-8E&-8
5"VGN+
7_RDc9
Od!^1{
kpl:|{
):@Fj=
_"h&be7{
V,D-k"NYr
6Eh#j^
oz`7H
bB>~CK0
6TFH{IKs
!@!~j`
|{*WZ.n
@^p!
?</wag{
S(/~,Nv;
y]v*"
+yrRHJy
PZPW(;
+s@KTW
)-vttA
{X7GXqE
rQ~s-W
D@RD[3
j,n[3
']Yaf%8
eO~1Q$U
yq,fyM
'V*$p]
P)H"oh
3L+[fU
?OkCsD=
+]W^{+33
Lah#H
6SE55f
<<|{E6'
#a*=-]
/RZqG&
N#j? ^lb
&#P\{BWfl
_2n[=I]
8l;sro
07ck{~
3wjXYsx
zV"23n#
j3(I,_1
# k_HS
a^(y1F
k}txkI%%
BbpGVY
SY;%<U%
c?tg;O,
@5TY)5
d^L\O$0
Z;zsQKDE?
jsp9PY?t/
BiROT?
5(b8PZf
P.)+prEH
{#\k=#-
/:m*ps
0ff=!"
Y@3{ox`Z
'n<$%'
_Ft1|:
NKtrn~
&qU%_e
v_OXNa
7s &z*
j(%N{T
e+m~5l~
4{6APo
})+|!=
\[cW;/
C2u*d9
M-aE3+P
|}Va7_
|3Gi_$E
#`URa}Y
8/umRK
~>PEA]JQ
f[2X7o
n(!k/F
_)c}9\
ZP*=o@
+oG+g&
HHMgbA
/1J=s&@
MSg(z(
ne-J.+
2~9uX<R
zbA7mz
&@Tnt'0
]F:JKV
5MsqoU
I%B.Fd
dv{?Hx
Ss#@aV
'n"r=r|k
]ND-MoQ
ca-wk0/&
cU@t5E
i5aEFc
[SWLGt
CqSaDy
Hdr:6+
=F6jkY
:vOtNT
D(='cKeZF|Rc
R^Rn?g
fxCs/OtNh|T
iE^"SK
E0cjC?U
x$0'R
=Y}-a^Z-
6ib/bq
_\l!Ja
aFPg>`c[
e7KUmq
xS@Ras"
`6%X;p
g,%d=&
sx= hMPh
/_r0ia
425F};
R'g]"|
a\4.)'
N\_AyP
vFa5hl
R9"{n
v8e+e]^
_l#KDZ
QOIb#l
i2Cd30i
<G-2y`
t9(b`%
B,[Q~
.L+VDR
p@V1^.*
:B9Wb]J
\3@W%QFY
CkSa!Cj
SR=Ij&
7"*eS>#
;(8R\t
mkH"pb
ew6@Kz(9
"NZbxO
,4N.uF
R2n m
*n'ux1
Op@[p`
'<Z:iF
Fv:kl=
.D%3Rk~
<DzwW]
|4/7I
_t mFT
1[S(9s
n:6PZ9
$n:5[aA:@
Pn9xHy,
ZrGMx)!
dX5xY
3!t-%@RJ>
A6JIH
fx!u{J
eeMXMuws
b*o=y|
=C.<R`
"T^;}|
Ridq?p
ux6t3/n%B
g &F]\F>
LpL~]!
jM_%#Q
Rfj>{[@Cy]<
:h@i&1W4
yE{9cq
N-ts5,
f@$<m+
eTBkXF
|R&PPQ
YhA=xh
_Rql_(
KF6UQ%
^6v_pi"
5o0c%#
~<X\Dd
W69?S+5
6|lPe#
\%n dE
T8~RJ%
%&zbtv~
GMF']:
4IKi'Ef
/(MDn3E
[V6#nU
*:jIT]9
I-NyIh
_-pNLg
~M\I=INN
1`1h<O
bAlU(b
J5a};x]
X&( xx
u6brp,tM2A
Ik|n|;
"= VP(
0P5<~X
5[w56b
#' {LS"
E@B6CO
j/LXjH
fW9 ?[
fo?h;cL~
(5vHC<1
l%k;L:WQ
I?f,Z%
>jLux
h}p6[$
e%XNBJLS|&G
eA)!+2
D6UF%96]
Hk?8$~#
Dn7PK*L
UBX[n-M
led3O
mO~S~-~V
A@ku'e
G_(I<`
/O>XC n
](2HZ_
1[xC;p
no,E~n
"70'gv
MY~6d/
qg~B-_
M.0/r@X
`-sVGE;
B`P7L@
eB]G+0
Ze8fC^P
(aJEg8
7->r{i
(yL9V/
X\;t)w
s1h~8:
509ZG9
}QkA"]
|[D:KT8]
snSfqn!
[nGYr1
XA;+y"
&8iUnf
UE{/j9E`
w.GU8w
cs)YkK
hzDal!
"35e0.
\k2"lM%l
>26pNX
:=O$E3
OG!53|
$,2s -3
LGsc2#
/=G:Lj
b@HRa<
pw[G.a
y1/IUU
;\C"MO
5cvdx46
(Z/zc}
/B;Dye|R=
6H?+SRG9%
_A@F+f
]9n|>O
$zb.@"
yN_.I#
/y7}Bf
i0}COKd0
+([UM
#:A"<:Fw
oM/2"U*=
ieT%hs8
bqE" L^8O
EL"dYt
|$(UA
^3Dr-+!
K}]>+{
9(veL'
,4wiqf0
Y[]b}B
1nM/!w^
$t;IWk
!szU?i
K`@s\4
"@6x>m
RUyt!I
_9{Jf/
lC0%G/
e'p2Qe2Oz
2``~\d
CCK'
kZHr]>+
P}AG\u8
hmL+."
F2!1NQ-
.g6y(!
C`eef6%HU
:!d@0[
s?W[,#
W^uqG.
-,lE2<faT
9`l$10b
t=*}ubW
tQr"R:
n}&J<*@
)VGTeq
KZlbF#
Lt=4,g
pMy[FG
X_A;_}
1hD3ZF-
'x>c=@
rGOYZLh
[7Z5!V?
piV"a?
3Q#s>q
$,;3Li
4y(XGWu
a#RUQ+f
qt&$ 1e
Li8{CQ(
Xfkmly
MBvp.
XY]1`z
ifI`_b
9i]%*:7
@s:{wp
f_F b+XY
PbmN)y<
S*wNTF
xY"mMv>
79?cu/5h'
[+51G=
n6zRy`
y'`+^Fk
>AhE@
+cxtCo-Y
)sm7ep
vg&K&4
DV|n}?q
.s=vCN
5>Fi!;
F+U7Ef
Pq?G!ms
_8,WbD
V.g8SV3r
VcyJp{
[5?:|]0
-:K<)H
p~J1~53A
=7*bq_
2^&h6Z
4Bh]}mVZ
95*RR,o
O\q{vZ
{em39M
/,zK<[
(1 oN?
>Ty4V
e!Z~r+
m1a?1i
Ab}{R8&
HJfKOa
+WF-:5r
;wuR!Yc
Kd;#;A3
e'q:I-Y
ln]C<W
+(8q5^ENc
+P71^5
w\Wjn)
L)z?{P
p1WJNAN/V
OIcc@(
hy:Irz
v>u4!lc67
&WU/;4
/'sQL9
8&2PbZ
:pKAO0
P'1gBx
.qI<'s
a(^0uC
U(UL)r
TI/F0%O2<
/cfex
\uB):v\W01
<C{})g
\$P`P$
^*D{vH
rJ:TY~/V
V\e/|T
K-v_VN
hVp">d.
54L<B#
R[ToKg
A@KP[+
.#y,BJ
m9pq&V
Td?s)<
p[-CJ0
S4Qb}2
[&^,2
3N.fK5u
lctm[f~
.p\nE$>
=~CA#J
\-zVy'@C
j`Bb{
4m;sS-
*UzAsi
mM@lmR1
6#ug1{
0u4)s;W
r\U}8N
O^NErxx~
>4%HV9
2U]#!e
mOO8t4
]9X)}v
gsT-&!#
3?.%6N
c3"cc.W.
ig!D2A
-8p1[Xd
7{CrPy
')8qg:L$
!NKkR}5
>x-\_s
l@8}qj
PjT~{}^C
3J]dQ}^
@`[K(d
b'!qpFTP1
+M1M8l
`p];mY
EI!HT:
vrzG;-x
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Formbook.4!c
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh BehavesLike.Win32.Generic.dc
ALYac Gen:Variant.Mikey.148734
Cylance Unsafe
Zillya Clean
Sangfor Clean
CrowdStrike win/malicious_confidence_100% (D)
Alibaba Trojan:Win32/FormBook.90841b29
K7GW Trojan ( 00536d121 )
K7AntiVirus Trojan ( 00536d121 )
Baidu Clean
VirIT Trojan.Win32.Formbook.GEN
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win32/Formbook.AK
APEX Malicious
Avast Win32:PWSX-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky Clean
BitDefender Gen:Variant.Mikey.148734
NANO-Antivirus Trojan.Win32.Formbook.kshkpi
ViRobot Clean
MicroWorld-eScan Gen:Variant.Mikey.148734
Tencent Win32.Trojan-Spy.Noon.Zwhl
Sophos Troj/Formbook-A
F-Secure Trojan.TR/Crypt.ZPACK.Gen
DrWeb Clean
VIPRE Gen:Variant.Mikey.148734
TrendMicro TROJ_GEN.R002C0DIQ24
McAfeeD Real Protect-LS!AEF23E8A6616
Trapmine malicious.moderate.ml.score
CTX exe.trojan.formbook
Emsisoft Gen:Variant.Mikey.148734 (B)
huorong TrojanSpy/Formbook.ag
FireEye Generic.mg.aef23e8a66166187
Jiangmin Clean
Webroot W32.Trojan.TR.Crypt.ZPACK
Varist W32/ABTrojan.NGYR-1512
Avira TR/Crypt.ZPACK.Gen
Fortinet W32/Formbook.AA!tr
Antiy-AVL Trojan/Win32.Formbook.x
Kingsoft Win32.Trojan-Spy.Noon.biiv
Gridinsoft Trojan.Win32.Kryptik.sa
Xcitium Malware@#1ywrx9dc2x8a0
Arcabit Trojan.Mikey.D244FE
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/FormBook.NF!MTB
Google Detected
AhnLab-V3 Infostealer/Win.Formbook.R647393
Acronis Clean
McAfee Artemis!AEF23E8A6616
TACHYON Clean
VBA32 Virus.Goblin.2521
Malwarebytes Spyware.FormBook
Panda Trj/CI.A
Zoner Clean
TrendMicro-HouseCall TROJ_GEN.R002C0DIQ24
Rising Trojan.Kryptik@AI.84 (RDML:Vgxum8h8XAOdpkOTCVgJ5g)
Yandex Clean
Ikarus Trojan.Win32.Formbook
MaxSecure Trojan.Malware.300983.susgen
GData Gen:Variant.Mikey.148734
AVG Win32:PWSX-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Trojan[Spy]:Win/Formbook.ag
No IRMA results available.