Static | ZeroBOX

PE Compile Time

2024-10-31 02:37:42

PE Imphash

6ec4262994a6b10076d58ba7d08c6aff

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.text 0x00001000 0x0003ec7f 0x0003ee00 7.02406229035
.rdata 0x00040000 0x0000d8a4 0x0000da00 5.53277487008
.data 0x0004e000 0x0000319c 0x00001600 4.76725683916
.00cfg 0x00052000 0x00000008 0x00000200 0.0611628522412
.tls 0x00053000 0x00000009 0x00000200 0.0203931352361
.reloc 0x00054000 0x0000206c 0x00002200 6.43539933061
.bss 0x00057000 0x00051c00 0x00051c00 7.9995154514

Imports

Library KERNEL32.dll:
0x44c55c CloseHandle
0x44c560 CompareStringW
0x44c564 CreateEventW
0x44c568 CreateFileW
0x44c56c DecodePointer
0x44c574 EncodePointer
0x44c57c EnumSystemLocalesW
0x44c580 ExitProcess
0x44c584 FindClose
0x44c588 FindFirstFileExW
0x44c58c FindNextFileW
0x44c590 FlushFileBuffers
0x44c598 FreeLibrary
0x44c59c GetACP
0x44c5a0 GetCPInfo
0x44c5a4 GetCommandLineA
0x44c5a8 GetCommandLineW
0x44c5ac GetConsoleMode
0x44c5b0 GetConsoleOutputCP
0x44c5b4 GetCurrentProcess
0x44c5b8 GetCurrentProcessId
0x44c5bc GetCurrentThreadId
0x44c5c4 GetExitCodeThread
0x44c5c8 GetFileSizeEx
0x44c5cc GetFileType
0x44c5d0 GetLastError
0x44c5d4 GetLocaleInfoW
0x44c5d8 GetModuleFileNameW
0x44c5dc GetModuleHandleExW
0x44c5e0 GetModuleHandleW
0x44c5e4 GetOEMCP
0x44c5e8 GetProcAddress
0x44c5ec GetProcessHeap
0x44c5f0 GetStartupInfoW
0x44c5f4 GetStdHandle
0x44c5f8 GetStringTypeW
0x44c600 GetUserDefaultLCID
0x44c604 GlobalFindAtomW
0x44c608 HeapAlloc
0x44c60c HeapFree
0x44c610 HeapReAlloc
0x44c614 HeapSize
0x44c620 InitializeSListHead
0x44c624 IsDebuggerPresent
0x44c62c IsValidCodePage
0x44c630 IsValidLocale
0x44c634 LCMapStringEx
0x44c638 LCMapStringW
0x44c640 LoadLibraryExW
0x44c644 MultiByteToWideChar
0x44c64c RaiseException
0x44c650 ReadConsoleW
0x44c654 ReadFile
0x44c658 ResetEvent
0x44c65c RtlUnwind
0x44c660 SetEndOfFile
0x44c668 SetEvent
0x44c66c SetFilePointerEx
0x44c670 SetLastError
0x44c674 SetStdHandle
0x44c67c TerminateProcess
0x44c680 TlsAlloc
0x44c684 TlsFree
0x44c688 TlsGetValue
0x44c68c TlsSetValue
0x44c698 WideCharToMultiByte
0x44c69c WriteConsoleW
0x44c6a0 WriteFile

!This program cannot be run in DOS mode.$
`.rdata
@.data
.00cfg
.reloc
At)=`[
P$3T$D3D$@
k=|Uh)
=+`^zu
=+`^zu
?t"=5m
T$0+L$0
|7+|$09
t)=},4)u
5t9=U;
L$0+L$4
t&=m6F-
=LV{wu
L$<+L$@
D$4;D$d
Et'=8u
t8=E"vu
=+`^zu
r(Jt =
=+`^zu
=+`^zu
=+`^zu
=+`^zu
=pE\&t%=
[>6t)=
[>6=pE\&u
=pE\&u
hd*=,
|7+t$@9
l$0VWU
6Y+|$@
\$0WVS
)~}=aG
O~*=bG
|t<=)4+
|t<=)4+
T$(=ph
HK%k-3$
At"=`[
D$4;E$
@ +D$`
At(=`[
~u;t;=
0FJ~n=
WM=v^[I
t$@+\$8
D$@UPW
t8=j&V
+t =`m
t$$=(b
T$0+L$0
|7+|$09
D$TSPW
;tN='^
riGIf.
t0=riGIt =^
=+`^zu
=+`^zu
=+`^zu
\$0UVS
l$0WSU
6Y+\$@
~)=AA`
T$X5)|#
D$0;E$
@ +D$`
5UW2t1
At(=`[
At+=`[
D$@;E$
|7+t$L9
l$<VSU
6Y+\$L
\$<WVS
53i$V!
%7!Y9!
D$,;D$T
t3=MPBu
W9^Lt"
GL9_8u
tG9uCj
PPPPPWS
QQSVWd
uSSSSj
ARPRQh
jYjf
<ItC<Lt3<Tt#<h
A<lt'<tt
8^8tb9^4~]
PRRRRR
<ItC<Lt3<Tt#<h
A<lt'<tt
tb9^4~]
SWt@jU
_t^PVj@
u/j,Xf;
PVVVVV
PVVVVV
PWWWWW
PVVVVV
PVVVVV
PPPPPPPP
URPQQhP
PPPPPWV
PP9E uPPSWP
M$j"^QRRRRR
M,j"^QRRRRR
Vj0XPW
j"[VWWWW
C PjPW
C$PjQW
C*PjTW
C+PjUW
C,PjVW
C-PjWW
C.PjRW
C/PjSW
CHPjPW
CLPjQW
u2Vj@hP/D
u{9^\t/
NX9^`t1
WHPh`2D
HPhP/D
9C`u99C\t4
u29K\t-
PVVVVV
f9:t!V
QQSVj8j@
PVVVVV
<at.<rt!<wt
<=upG8
D8(Ht5F
D8(Ht'
D8(HtU
PVVVVV
[PVVVVV
j"[WVVVV
WVVVVV
PVSRSQV
_PSSSSS
j"_VSSSS
UQPXY]Y[
^PQQQQQ
E ^PQQQQ
CY<u
PPPPPPPP
iostream stream error
0123456789abcdefghijklmnopqrstuvwxyz
0123456789abcdefghijklmnopqrstuvwxyz
 !"#$%&'()*+,-./0123456789:;<=>?@abcdefghijklmnopqrstuvwxyz[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`ABCDEFGHIJKLMNOPQRSTUVWXYZ{|}~
 !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
[aOni*{
~ $s%r
@b;zO]
v2!L.2
UTF-16LEUNICODE
]vQ<)8
|)P!?Ua0
Eb2]A=
u?^p?o4
y1~?|"
?x+s7
?5Od%
?|I7Z#
>,'1D=
?g)([|X>=
~U`?K
:h"?bC
@H#?43
Ax#?uN}*
r7Yr7=
F0$?3=1
H`$?h|
&?~YK|
sU0&?W
<8bunz8
?#%X.y
F||<##
<@En[vP
?5Wg4p
%S#[k=
"B <1=
bad cast
ios_base::failbit set
ios_base::eofbit set
ios_base::badbit set
Unknown exception
invalid string position
iostream
bad array new length
vector too long
string too long
bad locale name
[+]: %P
IOS_BASE:
dddd, MMMM dd, yyyy
MM/dd/yy
directory not empty
text file busy
device or resource busy
no such file or directory
not a directory
is a directory
not enough memory
February
January
Thursday
Tuesday
Wednesday
Saturday
Sunday
Monday
Friday
GetDateFormatEx
GetTimeFormatEx
EnumSystemLocalesEx
GetLocaleInfoEx
InitializeCriticalSectionEx
LCMapStringEx
CompareStringEx
GetFileInformationByHandleEx
stream timeout
timed out
August
_hypot
invalid argument
operator co_await
SetThreadpoolWait
CreateThreadpoolWait
CloseThreadpoolWait
connection reset
network reset
not a socket
__restrict
file exists
connection already in progress
operation in progress
no such device or address
bad address
no such process
no child process
CorExitProcess
success
HH:mm:ss
FlushProcessWriteBuffers
FreeLibraryWhenCallbackReturns
too many symbolic link levels
too many links
WaitForThreadpoolTimerCallbacks
no stream resources
resource deadlock would occur
bad file descriptor
operator
executable format error
io error
unknown error
protocol error
_nextafter
SetThreadpoolTimer
CreateThreadpoolTimer
CloseThreadpoolTimer
October
GetCurrentProcessorNumber
November
September
December
network down
no protocol option
bad exception
inappropriate io control operation
bad allocation
argument out of domain
resource unavailable try again
too many files open
too many files open in system
read only file system
not a stream
__fastcall
__thiscall
__vectorcall
__clrcall
__stdcall
__cdecl
__pascal
SubmitThreadpoolWork
CreateThreadpoolWork
CloseThreadpoolWork
no link
cross device link
invalid seek
operation would block
InitializeSRWLock
__eabi
argument list too long
filename too long
message size
ReleaseSRWLockExclusive
TryAcquireSRWLockExclusive
AcquireSRWLockExclusive
FlsSetValue
FlsGetValue
delete
address in use
wrong protocol type
broken pipe
GetSystemTimePreciseAsFileTime
bad locale name
GetUserDefaultLocaleName
LCIDToLocaleName
IsValidLocaleName
SetFileInformationByHandle
state not recoverable
address not available
no lock available
no message available
WakeAllConditionVariable
InitializeConditionVariable
WakeConditionVariable
host unreachable
network unreachable
value too large
file too large
result out of range
no message
bad message
FlsFree
illegal byte sequence
InitOnceExecuteOnce
no space on device
no such device
no buffer space
AppPolicyGetProcessTerminationMethod
identifier removed
operation not permitted
address family not supported
function not supported
operation not supported
protocol not supported
not supported
connection aborted
interrupted
already connected
not connected
connection refused
destination address required
__unaligned
operation canceled
permission denied
owner dead
GetCurrentPackageId
FlsAlloc
generic
new[]
delete[]
CreateEventExW
CreateSemaphoreExW
CreateSymbolicLinkW
CreateSemaphoreW
SleepConditionVariableSRW
SleepConditionVariableCS
1#SNAN
1#QNAN
AreFileApisANSI
LocaleNameToLCID
operator<=>
GetTickCount64
__ptr64
__swift_3
__swift_2
__swift_1
nan(snan)
(null)
nan(ind)
NAN(SNAN)
NAN(IND)
restrict(
__based(
Base Class Descriptor at (
Base Class Array'
Class Hierarchy Descriptor'
Type Descriptor'
`vector deleting destructor'
`scalar deleting destructor'
`vbase destructor'
`vector copy constructor iterator'
`eh vector copy constructor iterator'
`managed vector copy constructor iterator'
`vector vbase copy constructor iterator'
`eh vector vbase copy constructor iterator'
`vector constructor iterator'
`eh vector constructor iterator'
`managed vector constructor iterator'
`vector vbase constructor iterator'
`eh vector vbase constructor iterator'
`vector destructor iterator'
`eh vector destructor iterator'
`managed vector destructor iterator'
Complete Object Locator'
`virtual displacement map'
`vcall'
`string'
`udt returning'
`omni callsig'
`typeof'
`copy constructor closure'
`default constructor closure'
`local vftable constructor closure'
`placement delete closure'
`placement delete[] closure'
`vftable'
`local vftable'
`vbtable'
`anonymous namespace'
`local static thread guard'
`local static guard'
`dynamic atexit destructor for '
`dynamic initializer for '
operator ""
CloseHandle
CompareStringW
CreateEventW
CreateFileW
DecodePointer
DeleteCriticalSection
EncodePointer
EnterCriticalSection
EnumSystemLocalesW
ExitProcess
FindClose
FindFirstFileExW
FindNextFileW
FlushFileBuffers
FreeEnvironmentStringsW
FreeLibrary
GetACP
GetCPInfo
GetCommandLineA
GetCommandLineW
GetConsoleMode
GetConsoleOutputCP
GetCurrentProcess
GetCurrentProcessId
GetCurrentThreadId
GetEnvironmentStringsW
GetExitCodeThread
GetFileSizeEx
GetFileType
GetLastError
GetLocaleInfoW
GetModuleFileNameW
GetModuleHandleExW
GetModuleHandleW
GetOEMCP
GetProcAddress
GetProcessHeap
GetStartupInfoW
GetStdHandle
GetStringTypeW
GetSystemTimeAsFileTime
GetUserDefaultLCID
GlobalFindAtomW
HeapAlloc
HeapFree
HeapReAlloc
HeapSize
InitializeCriticalSectionAndSpinCount
InitializeCriticalSectionEx
InitializeSListHead
IsDebuggerPresent
IsProcessorFeaturePresent
IsValidCodePage
IsValidLocale
LCMapStringEx
LCMapStringW
LeaveCriticalSection
LoadLibraryExW
MultiByteToWideChar
QueryPerformanceCounter
RaiseException
ReadConsoleW
ReadFile
ResetEvent
RtlUnwind
SetEndOfFile
SetEnvironmentVariableW
SetEvent
SetFilePointerEx
SetLastError
SetStdHandle
SetUnhandledExceptionFilter
TerminateProcess
TlsAlloc
TlsFree
TlsGetValue
TlsSetValue
UnhandledExceptionFilter
WaitForSingleObjectEx
WideCharToMultiByte
WriteConsoleW
WriteFile
KERNEL32.dll
P~QP-C
|c<*Sf
d55KVy
.?AVbad_array_new_length@std@@
.?AVbad_alloc@std@@
.?AVexception@std@@
.?AVfailure@ios_base@std@@
.?AVsystem_error@std@@
.?AV_System_error@std@@
.?AVruntime_error@std@@
.?AV_Iostream_error_category2@std@@
.?AVerror_category@std@@
.?AV?$num_put@DV?$ostreambuf_iterator@DU?$char_traits@D@std@@@std@@@std@@
.?AVfacet@locale@std@@
.?AV_Facet_base@std@@
.?AU_Crt_new_delete@std@@
.?AV?$ctype@D@std@@
.?AUctype_base@std@@
.?AV?$numpunct@D@std@@
.?AVbad_cast@std@@
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
abcdefghijklmnopqrstuvwxyz
ABCDEFGHIJKLMNOPQRSTUVWXYZ
.?AVlogic_error@std@@
.?AVlength_error@std@@
.?AVout_of_range@std@@
.?AVbad_exception@std@@
.?AVtype_info@@
.?AV_Locimp@locale@std@@
.?AV_Generic_error_category@std@@
.?AVios_base@std@@
.?AV?$_Iosb@H@std@@
.?AV?$basic_ios@DU?$char_traits@D@std@@@std@@
.?AV?$basic_streambuf@DU?$char_traits@D@std@@@std@@
.?AV?$basic_ostream@DU?$char_traits@D@std@@@std@@
.?AV?$basic_filebuf@DU?$char_traits@D@std@@@std@@
.?AVcodecvt_base@std@@
.?AV?$codecvt@DDU_Mbstatet@@@std@@
4#4E4R4
9)9e9t9
=1>H>e>m>
101K1n1
=x>5?D?
5[6a6e9t9
N0S0`1!2J2
>H?n?{?
2r3!5w5
<x=(>W?
8-8%969
4q5k=v=|=
7s88:N:W:H>
6"6.6:6F6P6f6z6~6
6/7M7k7
8"80858;8D8K8V8\8c8m8v8~8
9#9)9.999X9j9
9%:[:n:
;!;';-;3;9;
<+<H<Y<m<
> >P>c>
?%?2?;?@?S?l?v?~?
383X3v3
2D2Q3]3t3
494S4f4
51565<5R5X5q5
;;&;-;4;;;B;I;P;X;`;h;s;x;~;
<$<+<3<;<C<O<X<]<c<m<w<
<3=9=L=
&0/080F0O0q0x0
1)1/161=1I1V1k1s1y1
66%6*60666;6A6G6L6R6X6]6c6i6n6t6z6
7$7)7.757:7@7F7K7Q7W7\7b7h7m7s7y7~7
8#8(8.84898?8E8J8P8V8[8a8g8l8r8x8}8
;.;3;@;z;N<
<5=>=G=M=U=Z=m=
6N6[6b;
l<p<t<x<|<
<$=7=U=c=
?H?O?T?X?\?`?
696A6G6
8192:W=a=k=
>>>S>^>f>q>w>
0.0E0h0
1,141:1C1V1]1f1{1
2[3c3i3
4Q5K<S=g?k?o?s?w?{?
;%;6;G;
;B<O<^<r<{<
<.=:=E=
3Q415g7
8g8!9'999D9
1K4d4i4r4
0"000C0N0Y0r0
001:1S1D2
3J3m3t3
5)5L5[5
6"62696q7
2E2Y2u2
1%131:1@1
2+2?2E2
4 4S4[4
5#5A5M5c5l5u5
5$6^6r6
8$9H9Q9\9
9+:k:r:
3[4\5l5}5
7,7Q7W7b7
9%:4:F:Y:s:
:";);H;v;
<0<@<M<
0#0J0T0
0$2L2U2l2~2
353l3q3v3
4)4.434Q4`4
5!5B5Y5
666;6@6]6
737F7g7t7
8!8&868;8@8P8U8Z8j8o8t8
9&9-969G9b9
:T;e<D=
1212a2
8P8W8^8e8w8
;>;[<d<|<
<T=[=b=i=v=
=)>;>A>)?J?Q?h?~?
2*2<2N2`2r2
5.5@5R5d5
?7?\?s?
3A3U6{6:7
0&1O1d1z1
4y6_7S8z8
919;9&:Z<
4K5Q5_5n5
::<:D:m:t:
:;;E;`;
<d=l=A>W>
3%343j3
6?7\7}7
9+:W;`;F=
>+?I?g?
2M3p3r4
5,5Q5o5
8/9C9f9
;M=h=~=
7G8Y8>9);
0 0*060;0@0[0e0q0v0{0
121H1p1
132C229=9C9L9
:(:q:z:
>*>$?8?f?
3H3O3V3y3
7T:_:r:|:
;$<><d<v<"===m=
2"2'2-2>264@4
7*727O7_7k7z7`8
<&<0<:<D<N<X<b<l<v<
(0,000L0P0`0d0h0l0
1,1014181<1L1P1`1d1h1l1p1t1x1
2 2$2<2@2P2`2d2h2l2p2
3 3$303H3X3\3`3h3l3p3
4 404@4D4H4L4`4x4
5(5,5@5X5\5`5d5h5|5
6(606H6X6`6d6h6l6
7 7$7<7@7P7T7X7`7x7|7
:$:,:4:<:D:L:T:\:d:l:t:|:
;$;,;4;<;D;L;T;\;d;l;t;|;
<$<,<4<<<D<L<T<\<d<l<t<|<
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=l=p=t=x=|=
0080P0X0`0d0h0l0p0t0x0|0
0X;`;d;h;l;p;t;x;|;
8 8(80888@8H8P8X8`8h8p8x8
9 9(90989@9H9P9X9`9h9p9x9
: :(:0:8:@:H:P:X:`:h:p:x:
= =$=(=,=0=4=8=<=@=D=H=L=P=T=X=\=`=d=h=t=x=|=
> >(>,>0>4>8><>@>D>H>L>P>T>X>\>`>d>h>l>p>t>x>|>
? ?$?(?,?0?4?8?<?@?D?H?L?P?\?h?t?
0(040@0L0X0d0p0|0
1$101<1H1T1`1l1x1
2 2,282D2P2`2l2x2
3 3,383D3P3\3h3
4$4,444<4D4L4T4\4d4l4t4|4
>$>,>4><>D>L>T>\>d>l>t>|>
?$?,?4?<?D?L?T?\?d?l?t?|?
0$0,040<0D0L0T0\0d0l0t0|0
1$1,141<1D1L1T1\1d1l1t1|1
2$2,242<2D2L2T2\2d2l2t2|2
3$3,343<3D3L3T3\3d3l3t3|3
4$4,444<4D4L4T4\4d4l4t4|4
5 5(50585@5H5P5X5`5h5p5x5
6 6(60686@6H6P6X6`6h6p6x6
7 7(70787@7H7P7X7`7h7p7x7
8 8(80888@8H8P8X8`8h8p8x8
9 9(90989@9H9P9X9`9h9p9x9
: :(:0:8:@:H:P:X:`:h:p:x:
; ;(;0;8;@;H;P;X;`;h;p;x;
`5d5h5l5
6 6$64686<6D6\6l6p6
7 7$7(707H7X7\7l7p7t7|7
848D8H8X8\8d8|8
9$94989H9L9P9X9p9
:,:0:4:<:T:
d3h3l3p3t3x3|3
= =(=4=H=T=h=t=
>,>0>8>D>d>l>t>x>|>
? ?(?,?0?8?L?T?\?d?h?l?t?
0X0`0l0
0,101L1P1p1
202P2p2
3 3@3`3
4 4@4`4|4
5 5(5,5<5`5l5t5
6 6@6`6
7 7@7`7
8 8@8`8|8
606P6p6
9 9094989<9@9D9H9L9P9T9`9d9h9l9p9t9x9|9
:0:<:@:D:`:d:
3(3L3x3
/UdMAu&9
)3c_panK
T1]Zb`vw
"8_hLw
2w}[B+,
p=-[yH=
b<b!xtZvR
cs U0S
go+oWI
[>gh@!2
NA\@t,NMc`
%aR=7C
delv(TtnB@K
&Z7u;b
ZB-.qM
~}`(}y=
&;$FIG
(T|dowp<0
W"n)E'
Y21IB
M{I;'0
Ns$Mf~c
4>r6'6
vR(Hw(q
>;t?#[
"C*n5B
GPLihB
_EnC[y:7
l*c?~(
o+V1RQ%D
`UgX+
~h'O\8
=&'wv
k]|rOFb (
QJ)RN
+zE'L)
!ct<ST
grkY0}`
B7qtmr
r:<kJ+
}=-avnAZ,
JgR()y
gMcBTY
u :xz
|% %=6
Cc(?&t]
})3,p5
401(4]
q1*B7&
w-\'yX>
' 7#7$
>>2PJ}
f]`Zs>
kQ8aS
{GGS,:
g7~iOw
%skIbC
`A/Xhs
S~.5c3
xl6&=;:6
/{B`4,r
>dsfh#a"
M!Wy.q
$y]8=@%]
|jg6W*#
'_?j8]
+zzj;Y
dsF{A6k
*EX}a3
KfOebg
{X'UR(Xy
UFmhV,
oMVErT
H$-OGbJ
\0@xt0iw
"cA?kn
Ha~Vi2
)zo##FKK
Qe04_E^
J&S6id)
?V+Y#c
YT=F&{
ZU}Mo)
8+TK2){7R*%
@R\5"
2'i6>bC
mZIihz
m*C-^E
=a&rI=
:hM`y}MS.w
,:#Lo@G
*DYFLCq
xB.!g2
2EJ8Wy
XDD+t:
_EabM*
0"'|T+
h_ZZQyx
L(p]ZG
}W#j'h\
&UFE,J
4/.!MC
TE\^"
<SLf8p
UFxAqa
*Icf]n
^OF<7h
IbNpe
l;ocvnL
"iUNYC
$Nd^oV
oN_IfB
b~Qh7Z
61QnJMS
'qXNTZl
12[+Xo
qu[(Ws
J^/1np}km
*YgJA^
{(KRg{*
{"z|g6
^u#VMH
Z"7S&M
zpCX6uH-oh
x&2tpx
1*<T@\r
8_vmnK
g6[GjA
Im(<9:
vcmVBB
=+_x,e
-Jw^[J4
jg&7a=
WNZ/ek
*pj>7"
P\@J=e
:Ae/R==
900Y#cx
%MIi,u
?.Dcak
#&AjdD\HJb
4u9}QHZDK
%&+PEGT
Z3>.$B
]qU#ns5
ufqk;]3$
,shF{q V
O;ES_Z
Y:l;x1e
M|ZH&,
6.G.57D
[J1ob[
JgT|<A
HeNmTc
} tP[*
`)*^MD
:kxr+R
{<>:O@[-0
ayo?9QN
;_sxcTy
)vA{9Q
!vH2^}
I1F^+t
/1,vVs
dQ611R
F5xp[N
c?Yfls)i
WiwI0e
U4P%Lb
X00^Wp
V3i9}y
VN'JwT/
WV\Ms>
|KY@&#RR
KZT=<w
~)[UAU
jbr/JU
~0Irqr
X2hzGg
~X#o&"
yR7&B*`
YTls}+
t/ukGK<
WLk)-Fu
pRa%H
vFCm/A
$q'$M
wr|s~s
4=3]l?n&f2
^MaEck
@m!pJn
tXb3041
:FPpkf
\m<_[2|
iVv;p8
$V,Qs,
?QN]9Q
Q%/*pdH
V[kNeQD
1KNkpQI
a'E-4N
pmS,q`
C+v?G_
g~M:WR
I(qf=(`
v;+LSq~
P3)z2%
CCyd[1
<Td;}9c
lCT}{"4
`cwt7)o
k2fMs.
f_['(O)
ioiq Z
8Jb;0oty
EGVNx#
hqG&rP
fll,o)
attyP1|
#2j1>b
3(`w1a
j42PLw:
|4uK&h;
VIOw9{e0h
4v<VL
0Dh(vm
y2KsiW
>nnx>g
Uek3Jk)
}eH_-%<
$sh+g`
60QrRYUVQ
7o'3p%
52!D!?
\H7[d!
c[W-h/Rl'
OuO|d
m?K@3P
#A#s_c)
W`wjG-
R~{*U8
}64oTy
A|(#]/C
\zd7([
.F{,@\.BX
Jqhn1;$
<?^iPZ
y}l ?Q
UVjn)t
0;8Ab9"
i+IRLr
<|Clp#>
RL}tII
XHa/\
4pdjBp
S#pBot
B7:8?w
v/P\*!r
x@"_*#m
|ygjbu
ermU4z
(q2:%@
,{g46x
we<=^~
.>l+$?
zq]0l,
gs\s"M
@a1]g,M
lN+tG#c+i
;tUs4i,u
yUtI'(
~`LtJrdj5q
#s^7d
y+Q>8h
G$'TvL
Fgi7'n4S
)z#zvg
3e@(4t
=r$S0X
6^qK|\
aP)/fVUu{
^4bu X(
HPh\?M
7H~9zU
iRNsjn
czyRoSXw
|?2m0s
sh<oy
eO%Mfd'
WY)>{^
c48^;qr&
({*/gBU7
NF-OT<+
ImE<dQ+
7EICGz
nO@VrSC
jSmW+c5
vvYCE&
$<o#AtP
9DI5})5{
[`+9&,
WkPGP!
Z-rv,M
*jN8Y^
j8Q1hZ
(uL73
WU[*`$
MY}MC~x
i:(qerCz\
YIOX\z
uM\di=7
rg9")W
6;6Bc)XT
$<EzTF=
o`M@TR
M5P<W9
1b`e{{
'*;B94
`:Oe``
CeT+g>3
jT4T]]
"61<[]
G?~]w*^z (
3DdXa3
N6dHF5
.Kerjt;
i+3[=+
\NSKKt
<f%SfO
>9lpM],t
!5bLvb
-d$7wtQ
6kwDn*&!
7s'-Mm
'm<QTx*
#9v(~/
vk**LK
H[m k=
iAezXi'
v$d'de
ZIUov
)3p#r<
;a|N:
~gNMTf
FN_S1(\CK
'T*1Cr
2kMOB4
!o]Hby
3e2~?@
Q=5/&?;
g2ov${|a\]H
0{+g6>
^4r$/>t
:\`m0rt
e*xd^G
3[<lu
&Upmu6
dy>h07
xO>hnQ
Io:uxF
'BZD}"
{5aKl
K[M ;4
K/jcM_$
Gv-Gsc
?~Q/=:X&
`N0~5|
57|kC{
7{n.o:
d4:2-Q
oF>uwtHa=
68,^J)
:vJ`21cC@
1.Z~)]
,Q{A%s
=9t-Vl
!}F.F#
\rN!D3
W^<DdS
TV}Vc!
h9vbwR
|PG=%pc
BZz?jU,
-mPm@
B1>6s)U
)glGJA*
J+mtbs4)-C
b#NyN$v
K=pWoI*]
L+]d<L>
r7S3Y$qY
@YKm85
(Pqrj2
Wk"DpS
Z0;6s?
I]n&'<
LB<q<
<C}VO3T
=FcT[{#
MgEh]~
s.f6N7p
=ZlWzb
6*VLc|
dgv9m'
/ZT0B^S
S[^c)oh
8'^6|H)8
"5882C&
_xs\[[(
ND^}rZ
fMaK0
g5+nsMe
r~TM(W9
aaW!7k
rGappTWK
S^^=OpE
HlO+L@4
$;0S9_
/oQix~
A;TC$R
!^iVv$6b*'
pU2<,W
o9hq?M
0?T/n"
1;Q:oxF
UXcW.V
D$IV.*]l
:*Ghe{h/
gl%}Y%
Suopw6
@$S#PO
^iIKo|
KXqek0
*;&Bov
iu#sC]
f&9 re<
UdqhB
DB`;J"
Go92>/Qh
8 B5cP z
x4(tw^
KwDMI%*
;_W2!]
EuMCtM
#d;]Hs
k~g_S
fD'S,>
4T0J}
h]mdYz
l"O|n=2!
}8F=;H
ccM7`L
b@TZ\}
e2cCV u)
j]W-\=
L5J]/s
(V>P+$m
;UYTn"
>wA,PO
^SOUQ1a
xg[s4AL
-MS-tv
>*rb'OLI[
]QgKEHda
K3nst}y
wo&Txr
H+bmXn
4tE8K^7
}?M$%%g
|6yK6]
1P@6/M^
(MfkC4
i/Hz^e
*~$1'3
|KJIKR
gD~o*s
Gd?Vy~
^|.v3$
Q#kjaD
k C6F7;
ts.*n
L1}rLG
nk)<[M
KqKd[`ie
MhA~wd+
8*xrI)aP()
Pts`n2J
!NRz:|T
Vu!FIfU|
b+NV%$r
'd! K1
1!mlscL
_"Gvu\X
S$y(RD}
.yO-#EO
H1'_/l
ySG0$+c,
OmJMwJ%
PXT-9L}
"S)x7&f
WT~vRpX
kW:r"^
l]uDd(
Z2GIHT
5$([X
TN\%RT
D:hfJQ
6]P4!Z4
QfKB'Us5
<~9JoU
pyh;G}U
Z$A>xMe5@
Q-FK:99
SBCFyT&
m56ug
X3JOSCP
{hOsmirb|
i LUOT
K$2+!]H
/?|h4f
Z"s4+l
><-WlB
k=+LF5
:P3};HJ
})obi|
+oZQC2A
b4z|1}
1p}uOEr
_C5vXx
#(fe"Q
Vq:5>d
[~:e/O
$uXPR))
VbxIgO
%;kjOND
qx|}-O
h\^o7,
su.Mmg
V(%[(u
!+03DE
<4SVb.
[O%nqzY
#S2&:/v
Ds2V*1
VO[UA.(
,N!Jx_
0kYm*gy
E@"RaO
J(5Gdo3!
mLJ,.]
yPxv>!m
`.b\f/M
CJ-@z[Z
S;nKnH.b
s9_qPh%
$*E~=/
Q[w]{}a
Q*a0\J
zs"_<X
^RW%w/
Q"tj$V
w-G_btS
Y^yc;+
5]"6M(
F^+|Le
]^/3y:
>}M'gs
8j# z|
\j{I24
N'sYLan
m`jJ-q
2<P;rB
w5tqMw
.,/33"&T
Wd!j5m
((((( H
((((( H
(
english-nz
dddd, MMMM dd, yyyy
MM/dd/yy
syr-sy
February
January
spanish-uruguay
spanish-paraguay
Thursday
Tuesday
Wednesday
Saturday
Sunday
Monday
Friday
div-mv
spanish-peru
August
zh-cht
english-aus
english-us
german-swiss
italian-swiss
french-swiss
HH:mm:ss
zh-chs
united-states
spanish-honduras
spanish-el salvador
spanish-ecuador
October
November
September
December
smj-no
sma-no
english-trinidad y tobago
trinidad & tobago
puerto-rico
spanish-puerto rico
quz-bo
uz-uz-latn
az-az-latn
sr-sp-latn
bs-ba-latn
sr-ba-latn
uz-UZ-Latn
az-AZ-Latn
sr-SP-Latn
bs-BA-Latn
sr-BA-Latn
spanish-modern
german-lichtenstein
great britain
kok-in
german-austrian
portuguese-brazilian
australian
dutch-belgian
french-belgian
belgian
norwegian
french-canadian
canadian
english-caribbean
spanish-mexican
english-american
english-can
united-kingdom
uz-uz-cyrl
az-az-cyrl
sr-sp-cyrl
sr-ba-cyrl
uz-UZ-Cyrl
az-AZ-Cyrl
sr-SP-Cyrl
sr-BA-Cyrl
mscoree.dll
kernel32.dll
chinese-traditional
norwegian-bokmal
english-uk
norwegian-nynorsk
slovak
sms-fi
smn-fi
american-english
irish-english
american english
german-luxembourg
french-luxembourg
chinese-hongkong
hong-kong
english-belize
chinese
kernelbase
smj-se
sma-se
chinese-singapore
english-ire
quz-pe
spanish-chile
swedish-finland
holland
england
new-zealand
chinese-simplified
spanish-dominican republic
quz-ec
spanish-nicaragua
english-usa
spanish-argentina
pr-china
pr china
spanish-panama
spanish-venezuela
spanish-guatemala
spanish-bolivia
spanish-colombia
south-korea
south korea
south-africa
english-south africa
america
spanish-costa rica
english-jamaica
syr-SY
LC_MONETARY
div-MV
zh-CHT
zh-CHS
smj-NO
sma-NO
quz-BO
kok-IN
LC_ALL
sms-FI
smn-FI
LC_COLLATE
smj-SE
sma-SE
LC_CTYPE
quz-PE
LC_TIME
LC_NUMERIC
quz-EC
api-ms-win-core-file-l1-2-4
user32
kernel32
advapi32
api-ms-win-core-file-l1-2-2
api-ms-win-core-sysinfo-l1-2-1
api-ms-win-core-fibers-l1-1-1
api-ms-win-core-synch-l1-2-0
api-ms-win-core-xstate-l2-1-0
api-ms-win-core-winrt-l1-1-0
api-ms-win-core-fibers-l1-1-0
api-ms-win-core-string-l1-1-0
ext-ms-
api-ms-
(null)
CONOUT$
api-ms-win-core-synch-l1-2-0.dll
api-ms-win-core-processthreads-l1-1-2
api-ms-win-appmodel-runtime-l1-1-2
api-ms-win-core-localization-l1-2-1
api-ms-win-core-datetime-l1-1-1
api-ms-win-core-localization-obsolete-l1-2-0
ext-ms-win-ntuser-dialogbox-l1-1-0
api-ms-win-rtcore-ntuser-window-l1-1-0
api-ms-win-security-systemfunctions-l1-1-0
ext-ms-win-ntuser-windowstation-l1-1-0
Antivirus Signature
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Injuke.16!c
Elastic malicious (high confidence)
ClamAV Clean
CMC Clean
CAT-QuickHeal Clean
Skyhigh BehavesLike.Win32.Trojan.jc
ALYac Gen:Variant.Zusy.565268
Cylance Unsafe
Zillya Clean
CrowdStrike win/malicious_confidence_90% (D)
Alibaba Clean
K7GW Clean
K7AntiVirus Clean
huorong Clean
Baidu Clean
VirIT Clean
Paloalto generic.ml
Symantec ML.Attribute.HighConfidence
tehtris Clean
ESET-NOD32 a variant of Win32/GenKryptik.HDGW
APEX Malicious
Avast Win32:Evo-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.Stelpak.gen
BitDefender Gen:Variant.Lazy.620510
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Gen:Variant.Lazy.620510
Tencent Clean
Sophos Mal/Generic-S
F-Secure Clean
DrWeb Clean
VIPRE Clean
TrendMicro Clean
McAfeeD ti!E0D3DA58A38B
Trapmine malicious.moderate.ml.score
CTX exe.trojan.kryptik
Emsisoft Gen:Variant.Lazy.620510 (B)
Ikarus Win32.Outbreak
FireEye Generic.mg.998c59d4bf9c18e7
Jiangmin Clean
Webroot Clean
Varist W32/ABTrojan.EMBC-5628
Avira Clean
Fortinet W32/PossibleThreat
Antiy-AVL GrayWare/Win32.Kryptik.gpyt
Kingsoft Win32.HeurC.KVMH008.a
Gridinsoft Spy.Win32.Gen.tr
Xcitium Clean
Arcabit Trojan.Zusy.D8A014
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Trojan:Win32/Znyonm
Google Detected
AhnLab-V3 Trojan/Win.Injection.C5689201
Acronis Clean
McAfee Artemis!998C59D4BF9C
TACHYON Clean
VBA32 Clean
Malwarebytes Malware.AI.3907059518
Panda Trj/Genetic.gen
Zoner Clean
TrendMicro-HouseCall Clean
Rising Trojan.Kryptik@AI.94 (RDML:o3r0FvhuatNFq71W0HHCVA)
Yandex Clean
SentinelOne Static AI - Suspicious PE
MaxSecure Clean
GData Gen:Variant.Lazy.620510
AVG Win32:Evo-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Trojan:Win/Wacapew.C9nj
No IRMA results available.